WMAP(web application vulnerability scanner)
WMAP is a web application vulnerability scanner that allows to conduct and automate web server enumeration and scanning from within the Metasploit Framework.
Available as a fully integrated MSF plugin
Utilizes the in-built MSF auxiliary modules
Load WMAP extension within
msfconsole
Add WMAP site
Specify the target URL
Show only the MSF modules that will be able to be run against target
Run the web app vulnerability scan
this will run all enabled modules against the target web server
Analyze the results produced by WMAP.
List WMAP found vulnerabilities
Last updated