Commit Graph

  • 474816762f Use less memory when brute forcing with a large wordlist erwanlr 2013-10-05 20:03:34 +01:00
  • 90ade58842 Memory Usage output erwanlr 2013-10-05 13:06:56 +01:00
  • f4460f315e Fix #249 & #275 erwanlr 2013-10-02 15:36:02 +01:00
  • 8adfcf5866 Added CVE-2013-5916 - Fix #291 erwanlr 2013-09-30 16:44:13 +01:00
  • 06ab77b2fc Ref # 271 'too' removed erwanlr 2013-09-19 12:22:53 +01:00
  • d1ceb9cc72 Fix #271 Further Instructions added to the Mac Install erwanlr 2013-09-19 12:21:59 +01:00
  • 7128cd2844 Forgot to commit spec changes. ethicalhack3r 2013-09-18 15:18:44 +02:00
  • ae4c0c5405 Merge branch 'master' of https://github.com/sullo/wpscan into sullo-master ethicalhack3r 2013-09-18 15:14:28 +02:00
  • 27acb896c6 Typo erwanlr 2013-09-17 14:37:02 +01:00
  • 95557ce095 Some vulns added erwanlr 2013-09-17 14:34:33 +01:00
  • 4a4df8e1c4 Fix #285 Platinum SEO Plugin XSS erwanlr 2013-09-16 20:21:13 +01:00
  • 2cbb48f23f Merge pull request #283 from za/master erwanlr 2013-09-13 01:41:28 -07:00
  • 61001c2aef Add PHP Object Injection vulnerability disclosed by Tom Van Goethem Zaki Akhmad 2013-09-13 14:16:07 +07:00
  • 6b93a0191c Ref #280 WP 3.6.1 fingerprint erwanlr 2013-09-12 16:12:04 +02:00
  • 870201de14 Don't skip passwords that start with a hash. This is fairly common (see RockYou list for example). sullo 2013-09-12 09:30:23 -04:00
  • 2c6ec234ac Merge pull request #279 from adegol/master erwanlr 2013-09-11 10:01:17 -07:00
  • 39af0d5541 Added fixed_in tag on HMS Testimonial and Usernoise. IndiaNIC Testimonals remains unfixed but is removed from plugin directory Adéla Goldová 2013-09-11 18:51:55 +02:00
  • d833940f3b Fixed typo Adéla Goldová 2013-09-11 14:14:49 +02:00
  • e00dddaac6 Added Usernoise Adéla Goldová 2013-09-11 00:18:20 +02:00
  • 5bfdde158a Added IndiaNIC Testimonial Adéla Goldová 2013-09-11 00:15:17 +02:00
  • 8a26848086 Added HMS Testimonials Adéla Goldová 2013-09-11 00:14:11 +02:00
  • c54fb6ee23 Updated MD5 hash of WP 3.6 detection. See Issue #277. ethicalhack3r 2013-09-10 11:48:15 +02:00
  • 176bc75a71 Merge pull request #272 from fgeek/master erwanlr 2013-08-30 05:22:07 -07:00
  • 125f4102bd Typofix Henri Salo 2013-08-30 15:15:06 +03:00
  • 1c3146359e CVE-2013-4626 Henri Salo 2013-08-30 15:07:11 +03:00
  • c00269c905 rspecs Christian Mehlmauer 2013-08-25 11:05:01 +02:00
  • 5cc9df9599 urls Christian Mehlmauer 2013-08-25 09:38:25 +02:00
  • a032b7c134 more reference tags, fixes issue #268 Christian Mehlmauer 2013-08-24 11:16:39 +02:00
  • 115241f16c cve tags Christian Mehlmauer 2013-08-23 14:06:54 +02:00
  • fc75b315f9 bugfix Christian Mehlmauer 2013-08-23 14:02:58 +02:00
  • 1f5cb4b0a0 added cve tag to xml file Christian Mehlmauer 2013-08-23 14:02:09 +02:00
  • 55089646c2 Added other CVE. See Issue #264. ethicalhack3r 2013-08-23 12:59:08 +02:00
  • 25915b0cbb Refactored version method to use ternary operator. ethicalhack3r 2013-08-23 12:57:37 +02:00
  • f704efb2af Vulnerable plugin updates. See Issue #264 ethicalhack3r 2013-08-23 12:55:04 +02:00
  • a97f9cd695 add documentation to readme Christian Mehlmauer 2013-08-22 17:05:17 +02:00
  • 259004e226 use online documentation Christian Mehlmauer 2013-08-21 15:34:36 +02:00
  • 7c1241c6f6 user prompt on same line Christian Mehlmauer 2013-08-18 15:47:30 +02:00
  • 03f8b02ac1 add --version switch Christian Mehlmauer 2013-08-18 15:40:55 +02:00
  • 81f9612de2 clean up rspecs Christian Mehlmauer 2013-08-17 12:19:54 +02:00
  • 264bc834b5 remove reference Christian Mehlmauer 2013-08-17 11:35:53 +02:00
  • 7acea5f4b2 fix issue #266 - passive detection regex Christian Mehlmauer 2013-08-17 11:33:25 +02:00
  • 9015834b15 fix issue #265 - remove base64 images before passive detection Christian Mehlmauer 2013-08-17 10:54:28 +02:00
  • 086e6e86a5 ruby-progressbar Gemfile version bump ethicalhack3r 2013-08-13 10:14:52 +02:00
  • d107613e40 fix issue #262 Christian Mehlmauer 2013-08-12 22:01:24 +02:00
  • 8896f8bf79 docs Christian Mehlmauer 2013-08-11 08:58:28 +02:00
  • 6cedd672cb removed comment Christian Mehlmauer 2013-08-10 13:31:20 +02:00
  • 3583db6a92 banner artwork Christian Mehlmauer 2013-08-10 13:30:24 +02:00
  • faf234b482 docs Christian Mehlmauer 2013-08-10 12:47:52 +02:00
  • 5ea911c9b3 Header names are case insensitive Move header checks to web_site Christian Mehlmauer 2013-08-10 11:49:30 +02:00
  • 6c008015e9 parse robots.txt Christian Mehlmauer 2013-08-10 11:35:17 +02:00
  • 6c8e76060a - update headers - show twitter usernames Christian Mehlmauer 2013-08-09 23:41:34 +02:00
  • 57d0af562e Merge branch 'master' of github.com:wpscanteam/wpscan erwanlr 2013-08-09 15:25:17 +02:00
  • 94ee5e15ac Ref #260 Fixes Travis Fail, due to rspec-mock v2.14.3 erwanlr 2013-08-09 15:24:28 +02:00
  • 678184e24b Another Travis-CI possible fix... ethicalhack3r 2013-08-09 13:45:35 +02:00
  • fa0e4658cb Another Travis-CI attempt to fix ethicalhack3r 2013-08-09 13:33:52 +02:00
  • 7951e442a8 Attempted Travis-CI fix. ethicalhack3r 2013-08-09 13:26:39 +02:00
  • 3870fc0b2c Typo fix. Also Travis-CI test... ethicalhack3r 2013-08-09 13:04:50 +02:00
  • 2a9bd99f97 Fix for xmlrpc false positive. Issue #260. ethicalhack3r 2013-08-09 12:54:10 +02:00
  • de30802491 Better-WP-Security v3.4.3 XSS vuln title & fixed_in tag erwanlr 2013-08-08 13:48:13 +02:00
  • 973c0da4f2 Typo erwanlr 2013-08-02 16:34:13 +02:00
  • 3a3cbfdf7d Typo erwanlr 2013-08-02 16:16:42 +02:00
  • 21663ae519 Aded plugin vuln: sharebar CSRF erwanlr 2013-08-02 16:13:44 +02:00
  • 3a53936a88 Aded WP vuln: 3.4 - 3.5.1 wp-admin/users.php FPD erwanlr 2013-08-02 16:10:17 +02:00
  • eac24ebbc8 Aded plugin vuln: pie-register XSS erwanlr 2013-08-02 16:02:34 +02:00
  • 9a70b8e2af Aded plugin vuln: spicy-blogroll RFI erwanlr 2013-08-02 15:51:43 +02:00
  • e9374e4fe3 Aded plugin vuln: woocommerce XSS erwanlr 2013-08-02 15:49:20 +02:00
  • 5afdbded7e Aded plugin vuln: citizen-space CSRF erwanlr 2013-08-02 15:46:03 +02:00
  • 3f6087b180 Added Refence: wp-better-security Stored XSS erwanlr 2013-08-02 15:43:49 +02:00
  • 1c577084b1 Added plugin vuln: duplicator XSS erwanlr 2013-08-02 15:39:58 +02:00
  • a242ca094e Fix #252 Events Calendar references (& XSS Added) erwanlr 2013-08-02 15:27:57 +02:00
  • c3b9611f76 Added WP 3.6 advanced fingerprint hash. See Issue #255. ethicalhack3r 2013-08-02 11:31:05 +02:00
  • d32b20a529 Added another fixed_in paramter ethicalhack3r 2013-07-30 21:08:49 +02:00
  • f4946525bb Missed fixed_in parameter for better-wp-security plugin ethicalhack3r 2013-07-30 20:50:37 +02:00
  • 3eb7639ce7 Better WP Security Plugin Stored XSS. See Issue #251. ethicalhack3r 2013-07-30 20:06:00 +02:00
  • 48e6ba4a1c Merge pull request #250 from za/master Christian Mehlmauer 2013-07-29 00:43:21 -07:00
  • 41f6cf1463 fix typo at wp_versions.xml comment: verions->versions Zaki Akhmad 2013-07-29 14:26:12 +07:00
  • 1722025a2c Added SWFUpload Content Spoofing in 3.5.2 see issue #243 ethicalhack3r 2013-07-26 14:45:03 +02:00
  • 697b72836d Missunderstood known_headers array, removed security headers ethicalhack3r 2013-07-25 20:01:55 +02:00
  • b6777fd0d7 Added security headers ethicalhack3r 2013-07-25 19:56:06 +02:00
  • 6d2165acc3 Little refactoring ethicalhack3r 2013-07-25 19:47:16 +02:00
  • c33e553175 Handle when there are 2 headers of the same name ethicalhack3r 2013-07-25 19:41:03 +02:00
  • ab1381e830 WpItems::Detectable#passive_detection Complexity Reduced erwanlr 2013-07-24 14:35:15 +02:00
  • 669e1458da Fix #208 - Fixed vulnerable plugins still appear in the results erwanlr 2013-07-24 14:18:02 +02:00
  • 73f42bb73d Merge pull request #247 from za/master erwanlr 2013-07-24 01:01:47 -07:00
  • f50a6477bc Update plugin_vulns.xml: SQL injection fixed in events-calendar version 6.7.10 Zaki Akhmad 2013-07-24 14:01:59 +07:00
  • 501fbd825a clean logfile on wpstools too Christian Mehlmauer 2013-07-23 19:10:51 +02:00
  • 02111bf9b4 updated data files Christian Mehlmauer 2013-07-23 18:17:24 +02:00
  • 0f7bc49992 wordpress.org is really unstable at the moment Christian Mehlmauer 2013-07-23 18:16:48 +02:00
  • 2fb6f7169a fix issue #245 Christian Mehlmauer 2013-07-23 12:20:26 +02:00
  • 95b1264f7f Merge branch 'master' of github.com:wpscanteam/wpscan Christian Mehlmauer 2013-07-20 22:40:13 +02:00
  • fc2ba604ea Added pingback header Christian Mehlmauer 2013-07-20 22:39:01 +02:00
  • 9743f60991 Merge pull request #246 from anantshri/master erwanlr 2013-07-20 04:50:32 -07:00
  • 7239c8d848 removed feed plugin vulnerability issue Anant Shrivastava 2013-07-20 16:05:00 +05:30
  • bf10b25291 docs Christian Mehlmauer 2013-07-19 23:10:56 +02:00
  • 3b4790163c fix rspecs Christian Mehlmauer 2013-07-19 23:07:58 +02:00
  • fd1e0da4df - Wordpress.com is instable - request_timeout and connect_timeout implemented Christian Mehlmauer 2013-07-19 22:53:50 +02:00
  • 57755417f9 bugfix on output Christian Mehlmauer 2013-07-19 21:59:52 +02:00
  • 9caabfd586 docs Christian Mehlmauer 2013-07-19 21:51:04 +02:00
  • 37bffd6f1c docs Christian Mehlmauer 2013-07-19 21:50:23 +02:00
  • 99ea17127d docs Christian Mehlmauer 2013-07-19 21:49:57 +02:00