SavitarX
Ctrlk
LinkedinTryHackme
  • README
  • CERTIFICATIONS & notes
    • My Roadmap to Becoming a Penetration Tester & Red Team
    • Start here
    • Telecom
    • Red Team
    • Blue Team
    • Web Pentesting
      • CBBH
        • Web Requests
        • Information Gathering - Web Edition
        • Attacking Web Applications with Ffuf
        • JavaScript Deobfuscation
        • Cross-Site Scripting (XSS)
        • SQL Injection Fundamentals
        • SQLMap Essentials
        • Command Injections
        • File Upload Attacks
        • Server-Side Attacks
        • Login Brute Forcing
        • Broken Authentication
        • Web Attacks
        • File Inclusion
        • Hacking WordPress
          • WordPress Core Version Enumeration
          • Plugins and Themes Enumeration
          • Directory Indexing
          • User Enumeration
          • WPScan Enumeration
          • Exploiting a Vulnerable Plugin
          • Attacking WordPress Users
          • Remote Code Execution (RCE) via the Theme Editor
          • Attacking WordPress with Metasploit
  • Writeups
    • Tryhackme
  • Machines to pratice for
    • CPTS Preparation
    • OSEP
  • The Computer Science and Engineering program
    • Read this
    • Semester 1
    • Semester 2
Powered by GitBook
On this page
  1. CERTIFICATIONS & notes
  2. Web Pentesting
  3. CBBH

Hacking WordPress

WordPress Core Version EnumerationPlugins and Themes EnumerationDirectory IndexingUser EnumerationWPScan EnumerationExploiting a Vulnerable PluginAttacking WordPress UsersRemote Code Execution (RCE) via the Theme EditorAttacking WordPress with Metasploit
PreviousAutomation and PreventionNextWordPress Core Version Enumeration