From 5459b8bb7ab03c854f02b08edd09444240272f6a Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Thu, 20 Feb 2014 20:00:25 +0100 Subject: [PATCH] Update vuln db --- data/plugin_vulns.xml | 40 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 40 insertions(+) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 51a03e66..241024b8 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -4086,6 +4086,8 @@ NextGEN Gallery 2.0.0 - Directory Traversal + 103473 + http://seclists.org/fulldisclosure/2014/Feb/171 https://security.dxw.com/advisories/directory-traversal-in-nextgen-gallery-2-0-0/ UNKNOWN @@ -9244,6 +9246,33 @@ + + Group Documents 1.2.1 - Document Upload Multiple Field Stored XSS + + 103475 + http://seclists.org/fulldisclosure/2014/Feb/170 + + XSS + 1.2.2 + + + Group Documents 1.2.1 - bp-group-documents-settings.php file Parameter Remote Path Traversal File Location Manipulation + + 103476 + http://seclists.org/fulldisclosure/2014/Feb/170 + + UNKNOWN + 1.2.2 + + + Group Documents 1.2.1 - Document Property Manipulation CSRF + + 103477 + http://seclists.org/fulldisclosure/2014/Feb/170 + + CSRF + 1.2.2 + Group Documents 1.2 - File Uploading Multiple Parameter Stored XSS @@ -10966,4 +10995,15 @@ + + + Acunetix WP Security 4.0.3 - /wp-admin/admin.php wps-database Page Backup Generation CSRF Weakness + + 103467 + http://packetstormsecurity.com/files/125218/ + + CSRF + + +