wpscanteam / wpscan

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
https://wpscan.com/wordpress-cli-scanner
Other
8.54k stars 1.26k forks source link

WP version detection from query parameters of upgrade.php etc. #1837

Open lynt-smitka opened 5 months ago

lynt-smitka commented 5 months ago

In wpscan 3.0.3 you implemented my method of detecting WP version by query parameters at upgrade/install.php.

https://github.com/wpscanteam/wpscan/issues/1055#issuecomment-281821411

https://smitka.me/2017/02/22/wordpress-version-to-hide-or-not-to-hide/

This functionality seems to have disappeared over time and wp-scan now has issues with detecting WP version.

Is there any reason why this test was removed? I think it greatly improved the reliability of WP version detection.