WPScan WordPress Security Scanner

preview_player
Показать описание
The WPScan CLI tool is a free, for non-commercial use, black box WordPress security scanner written for security professionals and blog maintainers to test the security of their sites. The WPScan CLI tool uses our database of 26,485 WordPress vulnerabilities.
What does WPScan check for?
The version of WordPress installed and any associated vulnerabilities
What plugins are installed and any associated vulnerabilities
What themes are installed and any associated vulnerabilities
Username enumeration
Users with weak passwords via password brute forcing
Database dumps that may be publicly accessible
If error logs are exposed by plugins
Media file enumeration
Vulnerable Timthumb files
If the WordPress readme file is present
If WP-Cron is enabled
If user registration is enabled
Full Path Disclose
Upload directory listing
And much more...

Рекомендации по теме