Navigation X
ALERT
Click here to register with a few steps and explore all our cool stuff we have to offer!



 780

is it possible to hack this site ? http://www.mathplus.fr/

by Muhammad8888 - 23 December, 2020 - 12:44 PM
This post is by a banned member (Muhammad8888) - Unhide
22
Posts
1
Threads
4 Years of service
#1
hi
want to know if it possible to get acces in the panel admin of this site : http://www.mathplus.fr/
is not very secure, but i dont have the knowledges to do that Pepe
This post is by a banned member (GravityData) - Unhide
This post is by a banned member (Muhammad8888) - Unhide
22
Posts
1
Threads
4 Years of service
#3
(23 December, 2020 - 12:44 PM)GravityData Wrote: Show More
Add me on discord Gravity#0420

sent friend request
This post is by a banned member (Invoked) - Unhide
Invoked  
Registered
345
Posts
129
Threads
5 Years of service
#4
hi. i am very bored so sure ill help you why not.

step 1 enumerate website. it seems to be using wordpress cms and wordpress is notorious for basically giving you the admin username.

[i] User(s) Identified:

[+] MathPlus
 | Found By: Rss Generator (Passive Detection)
 | Confirmed By: Rss Generator (Aggressive Detection)

[+] mathplus
 | Found By: Oembed API - Author URL (Aggressive Detection)
 |  - http://www.mathplus.fr/wp-json/oembed/1....ormat=json
 | Confirmed By: Author Id Brute Forcing - Author Pattern (Aggressive Detection)

step 2, so we have the username, we can double check by trying to login as mathplus:123 and it would say this password isnt correct for this username or some bs confirming we have the right username. from here you can easily bruteforce the password or exploit vuln plugins it uses.

digital gangster 4 life fuck my ass aaaaaaaaaaaaaaaaa

Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
or
Sign in
Already have an account? Sign in here.


Forum Jump:


Users browsing this thread: 1 Guest(s)