Analyzing and discovering vulnerabilities in CMS web applications
In this section, we will cover some of the tools that can be used to discover vulnerabilities in CMS web applications such as WordPress and Joomla.
For example, we might be interested in determining the type of CMS as well as the vulnerabilities at the administrative interface level relative to users and groups that are configured.
CMSs have become an especially tempting target for attackers due to their growth and large presence on the internet.
The ease with which a website can be created without any technical knowledge leads many companies and individuals to use applications with numerous vulnerabilities due to the use of outdated plugins and poor configurations on the server where they are hosted. CMSs also include third-party plugins to facilitate tasks such as login and session management and searches, and some include shopping cart modules. The main problem is that we can usually find security issues...