Merge pull request #363 from pvdl/vulns
Update WordPress Vulnerabilities
This commit is contained in:
@@ -7936,11 +7936,23 @@
|
|||||||
<vulnerability>
|
<vulnerability>
|
||||||
<title>Polldaddy Polls and Ratings 2.0.20 - Cross-Site Request Forgery Vulnerability</title>
|
<title>Polldaddy Polls and Ratings 2.0.20 - Cross-Site Request Forgery Vulnerability</title>
|
||||||
<references>
|
<references>
|
||||||
|
<osvdb>99515</osvdb>
|
||||||
<secunia>55464</secunia>
|
<secunia>55464</secunia>
|
||||||
|
<url>http://www.securityfocus.com/bid/63557</url>
|
||||||
</references>
|
</references>
|
||||||
<type>CSRF</type>
|
<type>CSRF</type>
|
||||||
<fixed_in>2.0.21</fixed_in>
|
<fixed_in>2.0.21</fixed_in>
|
||||||
</vulnerability>
|
</vulnerability>
|
||||||
</plugin>
|
</plugin>
|
||||||
|
|
||||||
|
<plugin name="jigoshop">
|
||||||
|
<vulnerability>
|
||||||
|
<title>Jigoshop 1.8 - Multiple Script Direct Request Path Disclosure</title>
|
||||||
|
<references>
|
||||||
|
<osvdb>99485</osvdb>
|
||||||
|
</references>
|
||||||
|
<type>FPD</type>
|
||||||
|
</vulnerability>
|
||||||
|
</plugin>
|
||||||
|
|
||||||
</vulnerabilities>
|
</vulnerabilities>
|
||||||
|
|||||||
@@ -2014,4 +2014,16 @@
|
|||||||
</vulnerability>
|
</vulnerability>
|
||||||
</theme>
|
</theme>
|
||||||
|
|
||||||
|
<theme name="kernel-theme">
|
||||||
|
<vulnerability>
|
||||||
|
<title>Kernel Theme - functions/upload-handler.php File Upload Remote Code Execution</title>
|
||||||
|
<references>
|
||||||
|
<osvdb>99553</osvdb>
|
||||||
|
<exploitdb>29482</exploitdb>
|
||||||
|
<url>http://packetstormsecurity.com/files/123954/</url>
|
||||||
|
</references>
|
||||||
|
<type>RCE</type>
|
||||||
|
</vulnerability>
|
||||||
|
</theme>
|
||||||
|
|
||||||
</vulnerabilities>
|
</vulnerabilities>
|
||||||
|
|||||||
Reference in New Issue
Block a user