Sha256: 7775030cf0ffc9292b025f6f6f330fe143b61ff8a9372ff28af4b7d2322b8475

Contents?: true

Size: 818 Bytes

Versions: 19

Compression:

Stored size: 818 Bytes

Contents

# frozen_string_literal: true

module WPScan
  module Finders
    module InterestingFindings
      # Emergency Password Reset Script finder
      class EmergencyPwdResetScript < CMSScanner::Finders::Finder
        # @return [ InterestingFinding ]
        def aggressive(_opts = {})
          path = 'emergency.php'
          res  = target.head_and_get(path)

          return unless res.code == 200 && !target.homepage_or_404?(res)

          Model::EmergencyPwdResetScript.new(
            target.url(path),
            confidence: /password/i.match?(res.body) ? 100 : 40,
            found_by: DIRECT_ACCESS,
            references: {
              url: 'https://codex.wordpress.org/Resetting_Your_Password#Using_the_Emergency_Password_Reset_Script'
            }
          )
        end
      end
    end
  end
end

Version data entries

19 entries across 19 versions & 1 rubygems

Version Path
wpscan-3.7.9 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.8 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.7 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.6 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.5 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.4 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.3 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.2 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.1 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.7.0 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.6.3 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.6.2 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.6.1 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.6.0 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.5.5 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.5.4 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.5.3 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.5.2 app/finders/interesting_findings/emergency_pwd_reset_script.rb
wpscan-3.5.1 app/finders/interesting_findings/emergency_pwd_reset_script.rb