diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 2034321e..1033d647 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -482,9 +482,12 @@ http://packetstormsecurity.com/files/119221/ 51037 + 23856 + 87353 exploit/unix/webapp/wp_advanced_custom_fields_exec RFI + 3.5.2 @@ -1611,10 +1614,14 @@ - WP-Property 1.35.0 Arbitrary File Upload + WP Property <=1.35.0 - Arbitrary File Upload 18987 - + 23651 + 82656 + 49394 + http://packetstormsecurity.com/files/113274/ + UPLOAD @@ -1683,6 +1690,7 @@ Track That Stat <= 1.0.8 Cross Site Scripting http://packetstormsecurity.com/files/112722/ + http://www.securityfocus.com/bid/53551 XSS @@ -3712,6 +3720,13 @@ SQLI + + VideoWhisper Video Presentation 3.17 - 'vw_upload.php' Arbitrary File Upload Vulnerability + + http://www.securityfocus.com/bid/53851 + + UPLOAD + @@ -4575,7 +4590,7 @@ - Events Manager - Multiple XSS Vulnerabilities + Events Manager 5.3.3 - Multiple XSS Vulnerabilities 51869 @@ -4583,7 +4598,7 @@ 5.3.4 - Events Manager - Multiple XSS Vulnerabilities + Events Manager 5.3.8 - Multiple XSS Vulnerabilities http://www.securityfocus.com/bid/60078 53478 @@ -4593,8 +4608,9 @@ 5.3.9 - Events Manager - Multiple Unspecified XSS Vulnerabilities + Events Manager 5.5.1 - Multiple Unspecified XSS Vulnerabilities + 98198 55182 XSS @@ -5683,6 +5699,7 @@ Simply Poll Plugin 1.4.1 - Multiple Vulnerabilities 24850 + 91446 MULTI @@ -5693,6 +5710,7 @@ Occasions Plugin 1.0.4 - CSRF Vulnerability 24858 + 91490 CSRF @@ -6732,8 +6750,11 @@ All in One SEO Pack <= 2.3.0 - XSS Vulnerability + 98023 + 2013-5988 http://archives.neohapsis.com/archives/bugtraq/2013-10/0006.html http://packetstormsecurity.com/files/123490/ + http://www.securityfocus.com/bid/62784 55133 2.3.0.1 @@ -6941,4 +6962,32 @@ + + + Email Newsletter 8.0 - 'option' Parameter Information Disclosure Vulnerability + + http://www.securityfocus.com/bid/53850 + + + + + + + IndiaNIC FAQs Manager Plugin 1.0 - Multiple Vulnerabilities + + 24867 + 91625 + + MULTI + + + IndiaNIC FAQs Manager Plugin 1.0 - Blind SQL Injection + + 24868 + 91623 + + SQLI + + +