From 1886b90be78e02ab884bae3ce5131224798b1119 Mon Sep 17 00:00:00 2001 From: Peter Date: Fri, 11 Apr 2014 18:42:03 +0200 Subject: [PATCH] Update vuln db --- data/plugin_vulns.xml | 14 ++++++++++++-- 1 file changed, 12 insertions(+), 2 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 69d9168f..111b1ced 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -10379,6 +10379,15 @@ + + Contact Form 7 <= 3.7.1 - Security Bypass Vulnerability + + CVE-2014-2265 + http://www.securityfocus.com/bid/66381/ + + AUTHBYPASS + 3.7.2 + Contact Form 7 3.5.3 - Crafted File Extension Upload Remote Code Execution @@ -11705,6 +11714,7 @@ LayerSlider 4.6.1 - LayerSlider/editor.php skin Parameter Remote Path Traversal File Access 104394 + 57309 http://packetstormsecurity.com/files/125637/ AUTHBYPASS @@ -12212,7 +12222,7 @@ - CSRF and stored XSS in Quick Page/Post Redirect Plugin + Quick Page Post Redirect - CSRF and stored XSS https://security.dxw.com/advisories/csrf-and-stored-xss-in-quick-pagepost-redirect-plugin/ 2014-2598 @@ -12224,7 +12234,7 @@ - CSRF/XSS vulnerability in Twitget 3.3.1 + Twitget 3.3.1 - CSRF/XSS vulnerability https://security.dxw.com/advisories/csrfxss-vulnerability-in-twitget-3-3-1/ 2014-2559