id: wp-iwp-client-listing info: name: WordPress Plugin Iwp-client Listing author: pussycat0x severity: info description: Searches for sensitive directories present in the iwp-client plugin. reference: - https://www.exploit-db.com/ghdb/6427 metadata: max-request: 1 tags: wordpress,listing,plugin,edb http: - method: GET path: - "{{BaseURL}}/wp-content/plugins/iwp-client/" matchers-condition: and matchers: - type: word words: - "Index of" - "wp-content/plugins/iwp-client/" condition: and - type: status status: - 200 # digest: 490a0046304402204561cb16c2d173488139989f893bcd8f50ac7877d77360bd7f9026cfdb96b5db022048fb10551ef70047c675a60f84e33481f13cbeca9f25a75285c49cdf0f51f4ea:922c64590222798bb761d5b6d8e72950