Author Topic: I have brute forced wordpress site, what to do now?  (Read 1056 times)

0 Members and 1 Guest are viewing this topic.

Offline Day_dreamer

  • Serf
  • *
  • Posts: 45
  • Cookies: -20
    • View Profile
I have brute forced wordpress site, what to do now?
« on: October 02, 2015, 12:47:53 pm »
although I'm logged as admin but not as super admin so my privileges a very limited to:
1>comments regulation
2>upload pages
3>upload gallery

I cannot install any plugins for sure

Question: is there anyway I can install a php shell?
                 is there a way to extract admin password hash with these privileges?
                 
I have checked its vulnerable plugins, themes ,TT but to no avail =(
Do you guys have any suggestions please?
Don't trust anyone.

Offline white-knight

  • Knight
  • **
  • Posts: 190
  • Cookies: 26
    • View Profile
Re: I have brute forced wordpress site, what to do now?
« Reply #1 on: October 02, 2015, 01:47:27 pm »
Have you tried WPscan to get creds ?

When u get admin creds you can go into themes and change the header code to get a shell ..


Offline hcac

  • Serf
  • *
  • Posts: 25
  • Cookies: 4
    • View Profile
Re: I have brute forced wordpress site, what to do now?
« Reply #2 on: October 02, 2015, 01:49:18 pm »
One can hardly ever do an xss, but check if you can do one through posts or gallery (differes based on version, mostly you can't upload .html files).
You didn't say anything about themes, do you have any perm? I guess the only way to directly put a php is the theme (-plugins).

Offline Day_dreamer

  • Serf
  • *
  • Posts: 45
  • Cookies: -20
    • View Profile
Re: I have brute forced wordpress site, what to do now?
« Reply #3 on: October 03, 2015, 09:07:59 am »
Have you tried WPscan to get creds ?

When u get admin creds you can go into themes and change the header code to get a shell ..

Yup tried WPscan and later used CMSmap to but plugins as well as themes are not exploitable, that is where I  decided to use a wordlist attack. Unfortunately the only account that was cracked isn't the super admin, thus I can't have access to either themes of plugins.

I guess I'll just keep on trying to brute force the super admin's password, untill a fresh exploit are published soon. 
Don't trust anyone.

Offline Day_dreamer

  • Serf
  • *
  • Posts: 45
  • Cookies: -20
    • View Profile
Re: I have brute forced wordpress site, what to do now?
« Reply #4 on: October 03, 2015, 09:10:29 am »
One can hardly ever do an xss, but check if you can do one through posts or gallery (differes based on version, mostly you can't upload .html files).
You didn't say anything about themes, do you have any perm? I guess the only way to directly put a php is the theme (-plugins).

Sorry I'm not familiar, what do you mean by "perm"?
Don't trust anyone.

Offline .goethe

  • /dev/null
  • *
  • Posts: 8
  • Cookies: 2
  • /dev/null
    • View Profile
Re: I have brute forced wordpress site, what to do now?
« Reply #5 on: October 03, 2015, 02:28:43 pm »
Sorry I'm not familiar, what do you mean by "perm"?

he means permission.

Offline Day_dreamer

  • Serf
  • *
  • Posts: 45
  • Cookies: -20
    • View Profile
Re: I have brute forced wordpress site, what to do now?
« Reply #6 on: October 05, 2015, 06:58:00 am »
Don't trust anyone.