Commit Graph

2496 Commits

Author SHA1 Message Date
ethicalhack3r
749128855a Slight changes 2012-11-12 17:52:40 +01:00
ethicalhack3r
9efd0ecca2 Added "Windows not supported" 2012-11-12 17:50:14 +01:00
ethicalhack3r
4052ea3789 Updated install instructions. 2012-11-12 17:49:31 +01:00
ethicalhack3r
0a236e1651 Updated install instructions & other bits 2012-11-12 17:38:13 +01:00
ethicalhack3r
04c1d32cd9 Added http://seclists.org/fulldisclosure/2012/Nov/51 to wp_vulns.xml 2012-11-10 00:03:47 +01:00
Gianluca Brindisi
ed9dc03ddb Added http://seclists.org/bugtraq/2012/Nov/33 2012-11-07 17:50:36 +01:00
ethicalhack3r
964f542ce3 Removed global request URI.encode. Added URI.encode on wp 2012-11-07 14:06:15 +01:00
ethicalhack3r
9e534fd95d Removed unnessesary shorthand cli arguments. 2012-11-06 16:44:24 +01:00
ethicalhack3r
d22c104fb2 Added shorthand params to wpstools cli arguments. URI encoding URL before request, see Issue #55. 2012-11-06 14:53:06 +01:00
Gianluca Brindisi
9b8b573f83 Added http://www.securityfocus.com/archive/1/524625/30/0/threaded 2012-11-05 17:04:51 +01:00
Gianluca Brindisi
dcc2320ad6 http://packetstormsecurity.org/files/117820/wpcatalog-xss.txt 2012-11-03 18:19:57 +01:00
Gianluca Brindisi
783d95c56d Fixed slug in Wordfence XSS vulnerability 2012-11-03 18:18:41 +01:00
Gianluca Brindisi
9785c815c0 Added http://packetstormsecurity.org/files/117768 2012-10-31 10:24:25 +01:00
ethicalhack3r
d21e15e149 Updated install instructions to use bundler. 2012-10-30 18:41:39 +01:00
ethicalhack3r
ad8e92444c Added specific version to Typhoeus in Gemfile 2012-10-30 16:19:49 +01:00
ethicalhack3r
7dc4fd6fb2 Added some WP vulns from info on cvedetails.com. See issue #33 2012-10-27 23:03:14 +02:00
ethicalhack3r
418ff33f6d Added version fingerprint from RDF and ATOM feeds. See issue #50. Specs added and passed. 2012-10-27 17:10:38 +02:00
ethicalhack3r
68027cbd17 Fixed FP in rss version fingerprint. See Issue: #48 2012-10-26 13:10:48 +02:00
Gianluca Brindisi
ad8b5e78ba Added http://packetstormsecurity.org/files/117665/ 2012-10-26 10:56:11 +02:00
ethicalhack3r
8a95fd9aab Removed Gemfile.lock and added it to .gitignore 2012-10-24 16:18:19 +02:00
ethicalhack3r
b3aa114c96 Added .*.swp to .gitignore 2012-10-24 12:54:34 +02:00
ethicalhack3r
02b6db9fa0 Removed accidently pushed lib/.browser.rb.swp file 2012-10-24 12:44:32 +02:00
ethicalhack3r
5b1f2f7391 Added spec for wp_content_dir when url has trailing slash, see commit 50436a83b5 2012-10-24 12:41:50 +02:00
Erwan
7e8d06ac0a Rspec for previous commit
URI.escape is now only overriden for ruby >= 1.9.2
RDoc
2012-10-23 18:44:41 +02:00
Erwan
d438f37f57 Warnings from URI::escape (obsolete since ruby 1.9.2) and some instance variables not initialized fixed 2012-10-23 16:36:57 +02:00
Erwan
ddeb288171 Rspec indentation & code factoring 2012-10-23 13:48:49 +02:00
Erwan
fd5cf4785c Rspec fixes 2012-10-23 12:19:16 +02:00
ethicalhack3r
38d335193f Added wordfence plugin vuln. 2012-10-23 10:25:49 +02:00
ethicalhack3r
50436a83b5 WpTarget.wp_content_dir regex was not matching if path was '/'. Removed path from first regex. 2012-10-21 02:04:16 +02:00
ethicalhack3r
ebf45da742 Turned add_http_protocol & add_trailing_slash methods into ternary operators. 2012-10-21 01:43:50 +02:00
ethicalhack3r
ea77b431da Added Better WP Security v3.4.3 plugin vuln 2012-10-19 00:47:17 +02:00
Gianluca Brindisi
f576f7ee18 Added http://www.waraxe.us/advisory-92.html and http://www.waraxe.us/advisory-93.html 2012-10-18 15:44:19 +02:00
Gianluca Brindisi
249616ab3a Fixed typo Issue 38 2012-10-16 18:02:27 +02:00
Gianluca Brindisi
b3cfd08718 Added Issue 38 2012-10-16 15:39:17 +02:00
ethicalhack3r
b9ff53dfa7 Merge pull request #44 from jrose400/master
Added wp-config.txt backup file check
2012-10-12 01:02:57 -07:00
Jon
ce988d48f4 added wp-config.txt backup file 2012-10-10 10:57:21 -04:00
Erwan
4997d5509f Themes enumeration option added to readme 2012-09-28 17:55:39 +02:00
Erwan
671bb3cfe5 Fix #37 Needed packages for nokogiri added to readme, and while the missing gem detected is nokogiri 2012-09-28 17:52:22 +02:00
erwanlr
417dd5a413 Merge pull request #35 from FireFart/themes
New features
2012-09-25 11:16:43 -07:00
Christian Mehlmauer
30fa90987c space 2012-09-25 17:16:39 +02:00
Christian Mehlmauer
41c6e0f18c rdoc 2012-09-24 23:03:38 +02:00
Christian Mehlmauer
0accd32102 fix formatting 2012-09-24 22:54:13 +02:00
Christian Mehlmauer
8df37a425d fix registration detection
rspec tests
2012-09-24 22:36:22 +02:00
Christian Mehlmauer
2e4a622cec -) Check if userregistration is enabled
-) Check if blog is a multisite
2012-09-24 20:46:26 +02:00
Christian Mehlmauer
fe1191a51e bugfixing and rspec tests 2012-09-24 18:07:22 +02:00
Christian Mehlmauer
7056d4ecd7 added link 2012-09-24 15:20:40 +02:00
Christian Mehlmauer
14e5552a25 get wordpress version from wp-links-opml.php 2012-09-24 14:57:33 +02:00
Christian Mehlmauer
b4655e7d5a locate searchreplacedb2.php. this file reads database credentials 2012-09-24 14:39:05 +02:00
Christian Mehlmauer
db1303caa5 examples 2012-09-23 23:14:55 +02:00
Christian Mehlmauer
abebcc5686 rspec tests 2012-09-23 23:04:12 +02:00