Merge pull request #298 from pvdl/master

Update WP Vulns.
This commit is contained in:
Ryan Dewhurst
2013-10-06 13:53:45 -07:00

View File

@@ -4176,8 +4176,10 @@
<type>SQLI</type>
</vulnerability>
<vulnerability>
<title>WP Photo Album Plus &lt;= 4.8.12 Cross-Site Scripting</title>
<title>WP Photo Album Plus &lt;= 4.8.12 wp-photo-album-plus.php wppa-searchstring XSS</title>
<references>
<osvdb>88851</osvdb>
<secunia>51669</secunia>
<secunia>51679</secunia>
</references>
<type>XSS</type>
@@ -4191,24 +4193,19 @@
<fixed_in>4.9.1</fixed_in>
</vulnerability>
<vulnerability>
<title>WP Photo Album Plus XSS</title>
<title>WP Photo Album Plus index.php wppa-tag Parameter XSS</title>
<references>
<osvdb>89165</osvdb>
<secunia>51829</secunia>
</references>
<type>XSS</type>
<fixed_in>4.9.3</fixed_in>
</vulnerability>
<vulnerability>
<title>WP Photo Album Plus XSS</title>
<references>
<secunia>51669</secunia>
</references>
<type>XSS</type>
<fixed_in>4.9.3</fixed_in>
</vulnerability>
<vulnerability>
<title>WordPress WP Photo Album Plus Plugin "commentid" Cross-Site Scripting Vulnerability</title>
<title>WordPress WP Photo Album Plus "commentid" Cross-Site Scripting Vulnerability</title>
<references>
<osvdb>93033</osvdb>
<cve>2013-3254</cve>
<secunia>53105</secunia>
</references>
<type>XSS</type>
@@ -4218,6 +4215,7 @@
<title>WP Photo Album Plus wp-admin/admin.php edit_id Parameter XSS</title>
<references>
<osvdb>94465</osvdb>
<secunia>53915</secunia>
</references>
<type>XSS</type>
<fixed_in>5.0.11</fixed_in>
@@ -4256,6 +4254,8 @@
<vulnerability>
<title>portable-phpMyAdmin Authentication Bypass</title>
<references>
<osvdb>88391</osvdb>
<cve>2012-5469</cve>
<exploitdb>23356</exploitdb>
<secunia>51520</secunia>
</references>