diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 435eb2ac..50fed326 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -2887,12 +2887,18 @@ - NextGEN Smooth Gallery Blind SQL Injection Vulnerability + NextGEN Smooth Gallery - Blind SQL Injection Vulnerability 14541 SQLI + + NextGen Smooth Gallery - XSS + + http://packetstormsecurity.com/files/123074/ + + XSS @@ -3279,7 +3285,7 @@ - plugin fGallery 2.4.1 fimrss.php SQL Injection Vulnerability + fGallery 2.4.1 - fimrss.php SQL Injection Vulnerability 4993 @@ -6577,38 +6583,46 @@ - /admin/walkthrough/walkthrough.php step Parameter Reflected XSS + Design Approval System 3.6 - XSS Vulnerability http://seclists.org/bugtraq/2013/Sep/54 + http://packetstormsecurity.com/files/123227/ 2013-5711 97279 3.7 - + XSS + - Multiple Administrator Action CSRF + Event Easy Calendar 1.0.0 - Multiple Administrator Action CSRF 97042 + http://packetstormsecurity.com/files/123132/ + CSRF - Multiple Unspecified XSS + Event Easy Calendar 1.0.0 - Multiple Unspecified XSS 97041 + http://packetstormsecurity.com/files/123132/ + XSS - falha.php URI Reflected XSS + Bradesco - falha.php URI Reflected XSS 97624 2013-5916 + http://packetstormsecurity.com/files/123356/ + XSS @@ -6742,4 +6756,54 @@ + + + Woopra - Remote Code Execution + + http://packetstormsecurity.com/files/123525/ + + RCE + + + + + + fGallery_Plus - XSS + + http://packetstormsecurity.com/files/123347/ + + XSS + + + + + + NOSpamPTI 2.1 - Blind SQL Injection + + http://packetstormsecurity.com/files/123331/ + + SQLI + + + + + + Comment Attachment 1.0 - XSS Vulnerability + + http://packetstormsecurity.com/files/123327/ + + XSS + + + + + + Mukioplayer 1.6 - SQL Injection + + http://packetstormsecurity.com/files/123231/ + + SQLI + + +