CMSmap
Tool and Usage
Project details
- Inception
- License
- GPLv3
- Programming language
- Python
- Author
- Mike Manzotti
- Latest release
- No release found
Project health
Why this tool?
CMSmap helps saving time in the process of detecting what CMS is used for a given web application. It performs reconnaissance and can do additional vulnerability scanning.
How it works
CMSmap scans a web application by looking at HTTP headers and returned HTML code. Upon detection of the used CMS, the tool will start more specific tests for that CMS. It may go for the detection of particular themes, user names, or plugins.
Background information
Supported CMS:
- WordPress
- Joomla
- Drupal
Usage and audience
CMSmap is commonly used for application testing, information gathering, vulnerability scanning, or web application analysis. Target users for this tool are pentesters, security professionals, and system administrators.
Example usage and output
Tool review and remarks
The review and analysis of this project resulted in the following remarks for this security tool:
Strengths
- + More than 500 contributors
- + The source code of this software is available
Weaknesses
- - No releases on GitHub available
- - No updates for a while
Installation
Supported operating systems
CMSmap is known to work on Linux.
Installation options
To use CMSmap, install it via the following method below.
git-clone-cmsmap
git clone https://github.com/Dionach/CMSmap
After installation, check the version number of the program and compare it with the one on this page. Be aware of versions that are outdated, as they may contain bugs or even security vulnerabilities.
CMSmap alternatives
Similar tools to CMSmap:
CMSeeK
CMSeeK is a security scanner for content management systems (CMS) and used for security assessments. Read how it works in this review.
Th3inspector
Th3inspector is an information gathering tool to collect information about domains, DNS, web applications, and more. It may be used for security assessments.
This tool page was updated at . Found an improvement? Help the community by submitting an update.
Related tool information
Categories
This tool is categorized as a application detection tool, CMS scanner, vulnerability scanner, web application reconnaissance tool, and website reconnaissance tool.