Nmap Development mailing list archives

Re: [NSE] http-wp-plugins, retrieve installed Wordpress plugins


From: Gutek <ange.gutek () gmail com>
Date: Thu, 28 Apr 2011 23:19:48 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Le 28/04/2011 20:26, Henri Doreau a écrit :
Hi,

Thanks again Ange for this script, here are some comments and a
slightly modified version (attached).

My first concern is about the usage hint displayed in the output in
case the script found something. In my opinion, it would make more
sense to display it in case we have no match in the tested range.

I made a set of little modifications too:
  - start the plugin_count counter at zero instead of one (line 96)
  - set the default search range as a constant at the beginning of the
script (DEFAULT_PLUGINS_SEARCH)
  - removed the 1000000 limit that was set to represent the whole
range, not because I think that the database could exceed this size
soon, but because it was not actually needed.
  - standardized the indentation from mixed tabs and spaces to two spaces only.

Regards.

Thanks for your comments and changes. I'm always afraid that casual
script users don't actually read the script's documentation, hence I
must admit that I tend to provide too much text on my outputs !

I also realize that in my previous mail I've mentionned a perl script to
generate the plugins list, without providing it. No big deal, but for
the record here it is.

And by the way, you can also find attached an updated wp-plugins list,
growing from 13.405 plugins to 14.170

A.G.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.12 (GNU/Linux)
Comment: Using GnuPG with SUSE - http://enigmail.mozdev.org/

iEYEARECAAYFAk252fQACgkQ3aDTTO0ha7h7HgCfSVNzqbc+T1dLNzDJEarjVIgc
e3cAnRrNL1WRXK56Bd1SSw6jbVOfE/IO
=LIk5
-----END PGP SIGNATURE-----

Attachment: wp-plugins.lst.tar.gz
Description:

Attachment: wp-plugins.pl
Description:

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/

Current thread: