Web Cms Scanning

CMS-specific scans — WordPress (wpscan), Joomla, Drupal version detection.

purpleailab 375c64c 938 B Updated

File contents

CMS-Specific Scanning

Once tech fingerprinting (or HTML inspection) confirms a CMS, switch from generic discovery to CMS-aware tooling — version, plugins/themes, user enum, and CMS-specific RCE entry points.

WordPress

# wpscan (comprehensive)
wpscan --url https://<target> --enumerate vp,vt,u,be --api-token <WP_API_TOKEN>

# Quick checks
curl -s "https://<target>/wp-json/wp/v2/users" | python3 -m json.tool
curl -s "https://<target>/xmlrpc.php" -d '<methodCall><methodName>system.listMethods</methodName></methodCall>'
curl -s "https://<target>/?author=1" -I | grep Location

Joomla

# Version detection
curl -s "https://<target>/administrator/manifests/files/joomla.xml" | grep -oP '<version>\K[^<]+'

Drupal

curl -s "https://<target>/CHANGELOG.txt" | head -5

purpleailab/decepticon/tree/main/packages/decepticon/decepticon/skills/standard/recon/web-recon/cms-scanning commit 375c64c946

Frequently asked questions

npx skillmds@latest add purpleailab/web-cms-scanning