Update vuln db

This commit is contained in:
Peter
2014-03-24 23:17:23 +01:00
parent a0f476fb24
commit 667b1e9f99

View File

@@ -3101,6 +3101,62 @@
<type>XSS</type> <type>XSS</type>
<fixed_in>1.9.2</fixed_in> <fixed_in>1.9.2</fixed_in>
</vulnerability> </vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-activity-classes.php Multiple Parameter SQL Injection</title>
<references>
<osvdb>104761</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-blogs-classes.php Multiple Parameter SQL Injection</title>
<references>
<osvdb>104761</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-friends/bp-friends-classes.php Multiple Parameter SQL Injection</title>
<references>
<osvdb>104760</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-core/bp-core-classes.php Multiple Parameter SQL Injection</title>
<references>
<osvdb>104759</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-core/bp-core-functions.php page_ids Parameter SQL Injection</title>
<references>
<osvdb>104758</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-core/bp-core-filters.php user_ids Parameter SQL Injection</title>
<references>
<osvdb>104757</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability>
<title>BuddyPress 1.7.1 - bp-core/bp-core-cache.php object_ids Parameter SQL Injection</title>
<references>
<osvdb>104755</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.7.2</fixed_in>
</vulnerability>
<vulnerability> <vulnerability>
<title>Buddypress - player.swf / jwplayer.swf playerready Parameter XSS</title> <title>Buddypress - player.swf / jwplayer.swf playerready Parameter XSS</title>
<references> <references>
@@ -3119,6 +3175,14 @@
<type>SQLI</type> <type>SQLI</type>
<fixed_in>1.5.5</fixed_in> <fixed_in>1.5.5</fixed_in>
</vulnerability> </vulnerability>
<vulnerability>
<title>BuddyPress 1.2.9 - groups/test-group/activity/ activity_ids Parameter SQL Injection</title>
<references>
<osvdb>104756</osvdb>
</references>
<type>SQLI</type>
<fixed_in>1.2.10</fixed_in>
</vulnerability>
</plugin> </plugin>
<plugin name="register-plus-redux"> <plugin name="register-plus-redux">
@@ -11617,4 +11681,23 @@
</vulnerability> </vulnerability>
</plugin> </plugin>
<plugin name="analytics360">
<vulnerability>
<title>Analytics360 1.2.1 - analytics360.php Multiple Action CSRF</title>
<references>
<osvdb>104743</osvdb>
</references>
<type>CSRF</type>
<fixed_in>1.2.2</fixed_in>
</vulnerability>
<vulnerability>
<title>Analytics360 1.2 - analytics360.php a360_error Parameter Reflected XSS</title>
<references>
<osvdb>104744</osvdb>
</references>
<type>XSS</type>
<fixed_in>1.2.1</fixed_in>
</vulnerability>
</plugin>
</vulnerabilities> </vulnerabilities>