WordPress 1 flash gallery listing

By kannthu

What is the "WordPress 1 flash gallery listing?" module?

The "WordPress 1 flash gallery listing" module is a test case designed to detect sensitive directories present in the 1-flash-gallery plugin for WordPress. It focuses on identifying potential misconfigurations or vulnerabilities within the plugin. The severity of this module is classified as informative, meaning it provides valuable information but does not pose an immediate threat. The original author of this module is pussycat0x.


How does the module work?

The "WordPress 1 flash gallery listing" module utilizes HTTP request templates and matching conditions to perform its scan. It sends GET requests to specific paths associated with the 1-flash-gallery plugin, such as "/wp-content/plugins/1-flash-gallery/" and "/blog/wp-content/plugins/1-flash-gallery/". The module then applies matching conditions to the responses received from these requests.

For this module, the matching conditions include:

- Checking if the response contains the phrase "Index of" and "/wp-content/plugins/1-flash-gallery". - Verifying that the response status is 200 (indicating a successful request).

If both matching conditions are met, the module considers the directory as potentially sensitive. The module can perform multiple requests, but the maximum number of requests for this module is set to 2.

By analyzing the responses and matching conditions, the module provides insights into the presence of sensitive directories within the 1-flash-gallery plugin.

Module preview

Concurrent Requests (1)
1. HTTP Request template
Matching conditions
word: Index of, /wp-content/plugins/1-flash-ga...and
status: 200
Passive global matcher
No matching conditions.
On match action
Report vulnerability