Wordpress
WPScan
don't forget to setup URL variable
Initial Scan
Plugin Enumeration (Aggressive)
note:
akismet --> just ignore it
Get a shell from Admin
theme = twentyseventeen
go to header.php
input shell in the php script.
Last updated