wpscanteam / wpscan

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com
https://wpscan.com/wordpress-cli-scanner
Other
8.63k stars 1.27k forks source link

The target respond with a 403 with installed plugins but wpscan says there are not #1865

Open jedai47 opened 1 month ago

jedai47 commented 1 month ago

I am using the last version of wpscan

Steps to reproduce

As you can see it on this site : formation.ch-cholet.fr in the source code there is a plugin called /contact-form-7/includes/css/styles.css?ver=5.9.8 but wpscan doesnt show it as I can see that with the head request we got a 403 from the server contrary to plugins that are not there that answer with a 301.