[wp-trac] [WordPress Trac] #46270: Wrong number detection if redirection WPscan

WordPress Trac noreply at wordpress.org
Mon Feb 18 04:56:50 UTC 2019


#46270: Wrong number detection if redirection WPscan
------------------------------+-----------------------------
 Reporter:  enderphan         |      Owner:  (none)
     Type:  defect (bug)      |     Status:  new
 Priority:  normal            |  Milestone:  Awaiting Review
Component:  Build/Test Tools  |    Version:
 Severity:  major             |   Keywords:
  Focuses:                    |
------------------------------+-----------------------------
 Webstie: www.quanta.im

 Command line:
 {{{
 sudo wpscan --url quanta.im
 }}}


 Issue: Different answer for redirection gives different output

 It asks for redirection: [Yes] answer


   [i] The remote host tried to redirect to: https://www.quanta.im/
   [?] Do you want follow the redirection ? [Y]es [N]o [A]bort, default:
 [N] Y
   [+] WordPress version 4.9.8 identified from advanced fingerprinting
 (Released on 2018-08-02)
   [!] 7 vulnerabilities identified from the version number


 It asks for redirection: [No] answer


   [i] The remote host tried to redirect to: https://www.quanta.im/
   [?] Do you want follow the redirection ? [Y]es [N]o [A]bort, default:
 [N]N
   [+] URL: http://quanta.im/
   [+] Started: Mon Feb 18 11:49:26 2019
   [+] Interesting header: CF-RAY: 4aadde046bc4a356-HKG
   [+] Interesting header: SERVER: cloudflare
   [+] WordPress version 5.0.3 identified from meta generator (Released on
 2019-01-09)

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/46270>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list