Update plugin_vulns.xml

This commit is contained in:
Peter
2013-12-29 22:26:22 +01:00
parent 175bb9206e
commit 25be97e65c

View File

@@ -1835,7 +1835,7 @@
<plugin name="plugin-newsletter">
<vulnerability>
<title>Plugin: Newsletter 1.5 - Remote File Disclosure Vulnerability</title>
<title>Plugin Newsletter 1.5 - Remote File Disclosure Vulnerability</title>
<references>
<osvdb>82703</osvdb>
<cve>2012-3588</cve>
@@ -6088,9 +6088,12 @@
<fixed_in>3.0.9</fixed_in>
</vulnerability>
<vulnerability>
<title>Newsletter - "alert" Cross-Site Scripting Vulnerability</title>
<title>Newsletter 3.2.6 - "alert" Cross-Site Scripting Vulnerability</title>
<references>
<osvdb>93421</osvdb>
<secunia>53398</secunia>
<url>http://packetstormsecurity.com/files/121634/</url>
<url>http://www.securityfocus.com/bid/59856</url>
<url>http://www.zeroscience.mk/en/vulnerabilities/ZSL-2013-5141.php</url>
</references>
<type>XSS</type>
@@ -7000,12 +7003,14 @@
<plugin name="mail-on-update">
<vulnerability>
<title>mail-on-update - CSRF</title>
<title>Mail On Update 5.1.0 - Email Option Manipulation CSRF</title>
<references>
<osvdb>93452</osvdb>
<secunia>53449</secunia>
<url>http://www.openwall.com/lists/oss-security/2013/05/16/8</url>
</references>
<type>CSRF</type>
<fixed_in>5.2.0</fixed_in>
</vulnerability>
</plugin>
@@ -7517,6 +7522,7 @@
<references>
<osvdb>95627</osvdb>
<cve>2013-4625</cve>
<url>http://packetstormsecurity.com/files/122535/</url>
</references>
<type>XSS</type>
<fixed_in>0.4.5</fixed_in>
@@ -8494,14 +8500,24 @@
<plugin name="social-sharing-toolkit">
<vulnerability>
<title>Social Sharing Toolkit 2.2.1 - Setting Manipulation CSRF</title>
<title>Social Sharing Toolkit 2.1.1 - Setting Manipulation CSRF</title>
<references>
<osvdb>98717</osvdb>
<cve>2013-2701</cve>
<secunia>52951</secunia>
<url>http://www.securityfocus.com/bid/63198</url>
</references>
<type>CSRF</type>
</vulnerability>
<vulnerability>
<title>Social Sharing Toolkit 2.1.1 - Unspecified XSS</title>
<references>
<osvdb>98931</osvdb>
<cve>2013-6280</cve>
</references>
<type>XSS</type>
<fixed_in>2.1.2</fixed_in>
</vulnerability>
</plugin>
<plugin name="videowall">