Used to test the quality and security of a Magento site you don’t have access to. This is a scanner for Magento
https://github.com/steverobbins/magescan
Installation
1. Download it from https://github.com/steverobbins/magescan/releases. (.phar file)
2. Show help
-h, –help = Display this help message
- php magescan.phar –help
3. Display version of the app
-V, –version = Display this application version
- php magescan.phar –version
4. List commands
list = Lists commands
- php magescan.phar list
Types of scan
1. Locate the .phar file and run it using PHP. Run all types of scans
scan:all = Run all scans
- php magescan.phar scan:all 10.10.10.140
2. Run a specific scan
Select the scan type
- php magescan.phar scan:catalog 10.10.10.140