id: wordpress-plugins-ultimate-member info: name: WordPress Plugin Ultimate Member author: pussycat0x severity: info description: Searches for sensitive directories present in the ultimate-member plugin. reference: - https://www.exploit-db.com/ghdb/6998 metadata: max-request: 1 tags: wordpress,listing,plugin,edb http: - method: GET path: - "{{BaseURL}}/wp-content/plugins/ultimate-member/" matchers-condition: and matchers: - type: word words: - "Index of" - "/wp-content/plugins/ultimate-member/" condition: and - type: status status: - 200 # digest: 4a0a00473045022100e9a601e5705d654dab5409a2c3ea0dab1bd39884416a0e716bc47470d51b84cf022072070706f0c2a517988cc2e7e44ccc203f0a79c998ded43b862c4944e856e832:922c64590222798bb761d5b6d8e72950