Wordpress
Enumeration (manual)
User-agent: *
Disallow: /wp-admin/
Allow: /wp-admin/admin-ajax.php
Disallow: /wp-content/uploads/wpforms/
Sitemap: https://inlanefreight.local/wp-sitemap.xmlDirectory
Type
#Identify Wordpress
curl -s http://blog.inlanefreight.local | grep WordPress
<meta name="generator" content="WordPress 5.8" /
# msf module to enumerate logged on users on wordpress
Use auxiliary/scanner/http/wordpress_login_enum
WPSCAN
Enumeration
Attacks
Last updated