From 3a53936a882fc3af1dfa74269b1eb9aa8f979c46 Mon Sep 17 00:00:00 2001 From: erwanlr Date: Fri, 2 Aug 2013 16:10:17 +0200 Subject: [PATCH] Aded WP vuln: 3.4 - 3.5.1 wp-admin/users.php FPD --- data/wp_vulns.xml | 37 ++++++++++++++++++++++++++++++++++++- 1 file changed, 36 insertions(+), 1 deletion(-) diff --git a/data/wp_vulns.xml b/data/wp_vulns.xml index e25f10c6..b72ab01e 100644 --- a/data/wp_vulns.xml +++ b/data/wp_vulns.xml @@ -13,6 +13,13 @@ + + Wordpress 3.4 - 3.5.1 /wp-admin/users.php Malformed s Parameter Path Disclosure + http://osvdb.org/95060 + http://seclists.org/fulldisclosure/2013/Jul/70 + FPD + 3.5.2 + CVE-2013-2173: WordPress 3.4-3.5.1 DoS in class-phpass.php http://seclists.org/fulldisclosure/2013/Jun/65 @@ -34,7 +41,7 @@ UNKNOWN - WordPress File Upload Unspecified Path Disclosure + WordPress File Upload Unspecified Path Disclosure http://osvdb.org/94788 UNKNOWN @@ -56,6 +63,13 @@ + + Wordpress 3.4 - 3.5.1 /wp-admin/users.php Malformed s Parameter Path Disclosure + http://osvdb.org/95060 + http://seclists.org/fulldisclosure/2013/Jul/70 + FPD + 3.5.2 + CVE-2013-2173: WordPress 3.4-3.5.1 DoS in class-phpass.php http://seclists.org/fulldisclosure/2013/Jun/65 @@ -81,6 +95,13 @@ + + Wordpress 3.4 - 3.5.1 /wp-admin/users.php Malformed s Parameter Path Disclosure + http://osvdb.org/95060 + http://seclists.org/fulldisclosure/2013/Jul/70 + FPD + 3.5.2 + CVE-2013-2173: WordPress 3.4-3.5.1 DoS in class-phpass.php http://seclists.org/fulldisclosure/2013/Jun/65 @@ -111,6 +132,13 @@ + + Wordpress 3.4 - 3.5.1 /wp-admin/users.php Malformed s Parameter Path Disclosure + http://osvdb.org/95060 + http://seclists.org/fulldisclosure/2013/Jul/70 + FPD + 3.5.2 + CVE-2013-2173: WordPress 3.4-3.5.1 DoS in class-phpass.php http://seclists.org/fulldisclosure/2013/Jun/65 @@ -136,6 +164,13 @@ + + Wordpress 3.4 - 3.5.1 /wp-admin/users.php Malformed s Parameter Path Disclosure + http://osvdb.org/95060 + http://seclists.org/fulldisclosure/2013/Jul/70 + FPD + 3.5.2 + CVE-2013-2173: WordPress 3.4-3.5.1 DoS in class-phpass.php http://seclists.org/fulldisclosure/2013/Jun/65