漏洞描述
WordPress WP Maintenance Mode plugin is vulnerable to full path disclosure via direct access to plugin files.
id: wp-maintenance-mode-fpd
info:
name: WordPress WP Maintenance Mode - Full Path Disclosure
author: ritikchaddha
severity: low
description: |
WordPress WP Maintenance Mode plugin is vulnerable to full path disclosure via direct access to plugin files.
reference:
- https://wordpress.org/plugins/wp-maintenance-mode/
metadata:
verified: true
max-request: 3
vendor: developer
product: wp-maintenance-mode
framework: wordpress
fofa-query: body="/wp-content/plugins/wp-maintenance-mode/"
tags: wp,wordpress,wp-plugin,fpd,maintenance-mode,exposure
http:
- method: GET
path:
- "{{BaseURL}}/wp-content/plugins/wp-maintenance-mode/includes/classes/class-wp-maintenance-mode.php"
- "{{BaseURL}}/wp-content/plugins/wp-maintenance-mode/includes/classes/class-wp-maintenance-mode-admin.php"
- "{{BaseURL}}/wp-content/plugins/wp-maintenance-mode/views/maintenance.php"
stop-at-first-match: true
matchers-condition: and
matchers:
- type: word
part: body
words:
- 'Fatal error'
- 'wp-maintenance-mode'
- 'Uncaught Error:'
condition: and
- type: status
status:
- 200
# digest: 4a0a004730450220779bbc545f41ce65896e6afb5eaa49ce44da0f91174c15148e15b1914a73286e022100a912115d26e5c9d9a342bffde96f252ba928ec4d1d86589da4b11c32d1d761a2:922c64590222798bb761d5b6d8e72950