Added plupload XSS issue to older versions of wp.
This commit is contained in:
@@ -40,6 +40,11 @@
|
||||
</wordpress>
|
||||
|
||||
<wordpress version="3.4.2">
|
||||
<vulnerability>
|
||||
<title>WordPress 3.5 Cross-Site Scripting (XSS) (Issue 3)</title>
|
||||
<reference>https://github.com/wpscanteam/wpscan/wiki/WordPress-3.5-Issues</reference>
|
||||
<type>XSS</type>
|
||||
</vulnerability>
|
||||
<vulnerability>
|
||||
<title>WordPress 3.4.2 Cross Site Request Forgery</title>
|
||||
<reference>http://packetstormsecurity.org/files/116785/WordPress-3.4.2-Cross-Site-Request-Forgery.html</reference>
|
||||
@@ -58,6 +63,11 @@
|
||||
</wordpress>
|
||||
|
||||
<wordpress version="3.4.1">
|
||||
<vulnerability>
|
||||
<title>WordPress 3.5 Cross-Site Scripting (XSS) (Issue 3)</title>
|
||||
<reference>https://github.com/wpscanteam/wpscan/wiki/WordPress-3.5-Issues</reference>
|
||||
<type>XSS</type>
|
||||
</vulnerability>
|
||||
<vulnerability>
|
||||
<title>XMLRPC Pingback API Internal/External Port Scanning</title>
|
||||
<reference>https://github.com/FireFart/WordpressPingbackPortScanner</reference>
|
||||
@@ -71,6 +81,11 @@
|
||||
</wordpress>
|
||||
|
||||
<wordpress version="3.4">
|
||||
<vulnerability>
|
||||
<title>WordPress 3.5 Cross-Site Scripting (XSS) (Issue 3)</title>
|
||||
<reference>https://github.com/wpscanteam/wpscan/wiki/WordPress-3.5-Issues</reference>
|
||||
<type>XSS</type>
|
||||
</vulnerability>
|
||||
<vulnerability>
|
||||
<title>XMLRPC Pingback API Internal/External Port Scanning</title>
|
||||
<reference>https://github.com/FireFart/WordpressPingbackPortScanner</reference>
|
||||
@@ -84,6 +99,11 @@
|
||||
</wordpress>
|
||||
|
||||
<wordpress version="3.4-beta4">
|
||||
<vulnerability>
|
||||
<title>WordPress 3.5 Cross-Site Scripting (XSS) (Issue 3)</title>
|
||||
<reference>https://github.com/wpscanteam/wpscan/wiki/WordPress-3.5-Issues</reference>
|
||||
<type>XSS</type>
|
||||
</vulnerability>
|
||||
<vulnerability>
|
||||
<title>Wordpress 3.3.1 Multiple CSRF Vulnerabilities</title>
|
||||
<reference>http://www.exploit-db.com/exploits/18791/</reference>
|
||||
@@ -102,6 +122,11 @@
|
||||
</wordpress>
|
||||
|
||||
<wordpress version="3.3.3">
|
||||
<vulnerability>
|
||||
<title>WordPress 3.5 Cross-Site Scripting (XSS) (Issue 3)</title>
|
||||
<reference>https://github.com/wpscanteam/wpscan/wiki/WordPress-3.5-Issues</reference>
|
||||
<type>XSS</type>
|
||||
</vulnerability>
|
||||
<vulnerability>
|
||||
<title>XMLRPC Pingback API Internal/External Port Scanning</title>
|
||||
<reference>https://github.com/FireFart/WordpressPingbackPortScanner</reference>
|
||||
@@ -115,6 +140,11 @@
|
||||
</wordpress>
|
||||
|
||||
<wordpress version="3.3.2">
|
||||
<vulnerability>
|
||||
<title>WordPress 3.5 Cross-Site Scripting (XSS) (Issue 3)</title>
|
||||
<reference>https://github.com/wpscanteam/wpscan/wiki/WordPress-3.5-Issues</reference>
|
||||
<type>XSS</type>
|
||||
</vulnerability>
|
||||
<vulnerability>
|
||||
<title>Wordpress 3.3.1 Multiple CSRF Vulnerabilities</title>
|
||||
<reference>http://www.exploit-db.com/exploits/18791/</reference>
|
||||
|
||||
Reference in New Issue
Block a user