diff --git a/WordPress Bug Scanner/result.php b/WordPress Bug Scanner/result.php new file mode 100644 index 0000000..34c72ed --- /dev/null +++ b/WordPress Bug Scanner/result.php @@ -0,0 +1,146 @@ + + + + + Result WordPress + + + + + + + +
+

List WordPress Username

+ + + + + + "; + echo ""; + echo ""; + echo ""; + } + ?> +
NomerUsername Wordpress
".$nomer++."".$json[$i]["slug"]."
+

Denial of Service load-scripts.php

+ Check in here for full payload'; + } else { + echo "

Not vuln

"; + } + ?> +

Denial of Service load-styles.php

+ Check in here for full payload'; + } else { + echo "

Not vuln

"; + } + ?> +

Log files WordPress

+ '.$url4.''; + } else { + echo "

Not found

"; + } + ?> +

Backup file wp-config.php

+ '.$url5.''; + } else if (getHttpcode($url6) == "200") { + echo ''.$url6.''; + } else if (getHttpcode($url7) == "200") { + echo ''.$url7.''; + } else if (getHttpcode($url8) == "200") { + echo ''.$url8.''; + } else if (getHttpcode($url9) == "200") { + echo ''.$url9.''; + } else if (getHttpcode($url10) == "200") { + echo ''.$url10.''; + } else if (getHttpcode($url11) == "200") { + echo ''.$url11.''; + } else if (getHttpcode($url12) == "200") { + echo ''.$url12.''; + } else if (getHttpcode($url13) == "200") { + echo ''.$url13.''; + } else if (getHttpcode($url14) == "200") { + echo ''.$url14.''; + } else if (getHttpcode($url15) == "200") { + echo ''.$url15.''; + } else if (getHttpcode($url16) == "200") { + echo ''.$url16.''; + } else if (getHttpcode($url17) == "200") { + echo ''.$url17.''; + } else { + echo "

Not found

"; + } + ?> +

XML-RPC WordPress

+ '.$url18.''; + } else { + echo "

Not vuln

"; + } + ?> +
+ +