id: wp-arforms-listing info: name: WordPress Plugin Arforms Listing author: pussycat0x severity: info description: Searches for sensitive directories present in the arforms plugin. reference: - https://www.exploit-db.com/ghdb/6424 metadata: max-request: 1 tags: listing,plugin,edb,wordpress,vuln http: - method: GET path: - "{{BaseURL}}/wp-content/plugins/arforms/" matchers-condition: and matchers: - type: word words: - "Index of" - "wp-content/plugins/arforms/" condition: and - type: status status: - 200 # digest: 4b0a00483046022100ece45389b1fb210751430599ee1366b33890557355caa327084fa39fe5687b5c022100b2180d6a8c23313b93bd44f08a214216339981bcf1dad25ef25b935e740a75de:922c64590222798bb761d5b6d8e72950