Commit Graph

515 Commits

Author SHA1 Message Date
erwanlr
a91c45e548 Added uploader 1.0.4 file upload 2013-01-03 16:19:54 +01:00
erwanlr
716ff61ff9 Added xerte-online upload file 2013-01-03 15:50:57 +01:00
erwanlr
c850b231e0 Added advanced-custom-fields <= 3.5.1 RFI 2013-01-03 15:01:46 +01:00
erwanlr
b95110375e sitepress-multilingual-cms FPD added 2013-01-01 16:09:12 +01:00
erwanlr
6ebf8dc32f Fix #97 Added ruby-dev to package installation 2013-01-01 15:35:20 +01:00
erwanlr
a4ace91e68 Fix #96 Username detection from header location when a trailing slash is present 2013-01-01 15:30:01 +01:00
erwanlr
9b14a8d038 Fix #54 False positive when a plugin directory redirects to the homepage 2012-12-21 12:21:40 +01:00
erwanlr
c0a05a4119 Ref #52 RSS url detection 2012-12-20 17:46:06 +01:00
erwanlr
221068ef1b Indentation 2012-12-20 17:02:43 +01:00
erwanlr
6df6cdc997 Typo & indentation 2012-12-20 16:57:17 +01:00
erwanlr
42ee4b9183 Ref #54 Implementation of WebSite.homepage_hash 2012-12-20 16:53:13 +01:00
erwanlr
b5390be6b5 WpTarget.error_404_hash moved to WebSite module 2012-12-20 16:22:04 +01:00
erwanlr
38c81384e8 WebSite module reworked 2012-12-19 17:53:11 +01:00
erwanlr
052721a8a2 @thesp0nge added to contributors (basic authentification) 2012-12-19 16:40:39 +01:00
erwanlr
9d74a289f8 Group development & test created in Gemfile, README updated to reflect it 2012-12-19 16:33:11 +01:00
Ryan Dewhurst
36b10250d1 Merge pull request #89 from mstanislav/master
Addition of AUTHBYPASS type and new vulnerability
2012-12-13 11:15:22 -08:00
Mark Stanislav
56e96dc97b Addition of an AUTHBYPASS type for plugins that will operate without a valid WordPress session and/or adequate privilege, creating a vulnerability due to its functionality. Also, added a portable-phpMyAdmin vulnerability to the plugin vulnerability listing utilizing the aforementioned new type. 2012-12-13 14:07:22 -05:00
erwanlr
d77a312844 Merge pull request #88 from FireFart/xmlrpc
Detect XML Pingback URL
2012-12-13 08:17:59 -08:00
Christian Mehlmauer
5415af538a docs 2012-12-13 16:47:05 +01:00
Christian Mehlmauer
509a400add Bugfixes and rspecs 2012-12-13 16:46:52 +01:00
erwanlr
56573b8a28 Merge branch 'master' of github.com:wpscanteam/wpscan 2012-12-13 13:48:18 +01:00
erwanlr
60b1d20aa2 --proxy, --proxy-auth help updated 2012-12-13 13:42:07 +01:00
erwanlr
b775838e96 Readme updated for basic auth 2012-12-13 13:36:09 +01:00
erwanlr
c661f8dd9a Error raised when the website needs a basic authentification but none was provided 2012-12-13 13:30:40 +01:00
erwanlr
809311ee04 Useless code removed 2012-12-13 13:26:04 +01:00
Christian Mehlmauer
4d852b5983 Detect XML Pingback URL 2012-12-13 11:41:08 +01:00
ethicalhack3r
19bcc9263c Fixed typo 2012-12-12 20:34:09 +01:00
ethicalhack3r
194645eb5d Added asset-manager plugin vuln to db 2012-12-12 20:20:17 +01:00
erwanlr
2a782e9680 Basic auth 2012-12-12 17:05:06 +01:00
erwanlr
962da638b9 Missing 's' 2012-12-11 20:31:13 +01:00
erwanlr
32506ca830 Scoring system removed from version finderprinting 2012-12-11 20:29:50 +01:00
erwanlr
b43a56fd38 WP 3.5 fingerprinting 2012-12-11 20:07:53 +01:00
erwanlr
0b7d67419e Merge pull request #85 from FireFart/readme
Removed old problems
2012-12-08 14:08:07 -08:00
Christian Mehlmauer
c46ac44c43 Removed old problems 2012-12-08 23:00:08 +01:00
ethicalhack3r
bbfb54ebf6 Merge pull request #82 from FireFart/docs
updated docs
2012-12-07 11:28:23 -08:00
Christian Mehlmauer
b3cf67c8f3 updated docs 2012-12-07 20:18:02 +01:00
erwanlr
b85ce58fb2 Wpstools : update moved to the beginning (was at the end) 2012-12-07 17:31:57 +01:00
erwanlr
1663cdb301 Ref #33 Options to find dead reference urls --cvru | check-vuln-ref-urls 2012-12-07 17:16:21 +01:00
erwanlr
079b43a33d Merge pull request #78 from FireFart/users
Fixing empty usernames (#66)
2012-12-06 12:03:01 -08:00
erwanlr
a7df9feabf Fix #77 facebook.com detected as a custom wp-content directory 2012-12-06 21:01:14 -06:00
erwanlr
dc6c8b2eb8 Fix #57 Plugins form passive detection no longer loaded when enumerating only vulnerable plugins 2012-12-06 17:04:16 -06:00
erwanlr
ab59bd1eb3 Fix #24 --exclude-content-based option added 2012-12-06 16:50:59 -06:00
Christian Mehlmauer
2b6c36ff4a Fixing empty usernames 2012-12-06 20:58:40 +01:00
erwanlr
fb3d0dafff webmock forced to use version 1.8.11 2012-12-06 11:52:47 -06:00
erwanlr
da738b7c35 README.md style again 2012-12-06 11:44:44 -06:00
erwanlr
35b430c2b4 README.md style 2012-12-06 11:43:02 -06:00
erwanlr
011f1002ab Instruction for readline gem issue #42 2012-12-06 11:39:38 -06:00
erwanlr
9e1af4e837 Instruction for curl installation from sources 2012-12-06 11:11:26 -06:00
ethicalhack3r
fd591a0675 Some small refactoring and fix for issue #66 2012-11-30 22:00:23 +01:00
ethicalhack3r
c34145220d changed rspec_helper requires 2012-11-30 21:29:57 +01:00