diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 215667cc..74fe9c91 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -8432,6 +8432,14 @@ + + EELV Newsletter 3.4.3 - lettreinfo.php Unspecified XSS + + 104875 + + XSS + 3.5.0 + EELV Newsletter - Cross-Site Scripting Vulnerability @@ -11029,6 +11037,13 @@ + + Global Flash Galleries - popup.php id Parameter SQL Injection + + 104907 + + SQLI + Global Flash Galleries - swfupload.php Unauthenticated Image Upload Weakness @@ -11700,4 +11715,59 @@ + + + The Events Calendar 3.0 - lib/template-classes/month.php tribe-bar-search Parameter Reflected XSS + + 104785 + + XSS + 3.0.1 + + + + + + Form Maker 1.6.4 - front_end_form_maker.php Unspecified XSS + + 104870 + + XSS + 1.6.6 + + + + + + ZooEffect 1.08 - wp-1pluginjquery.php HTTP Referer Header Reflected XSS + + 104876 + + XSS + 1.09 + + + + + + Google Analytics Dashboard 2.0.4 - gad-admin-pages-posts.php pid Parameter SQL Injection + + 104877 + + SQLI + 2.0.5 + + + + + + blogVault 1.05 - admin.php blogVault Key Setting CSRF + + 104906 + + SQLI + 1.06 + + +