Added some WP vulns from info on cvedetails.com. See issue #33

This commit is contained in:
ethicalhack3r
2012-10-27 23:03:14 +02:00
parent 418ff33f6d
commit 7dc4fd6fb2

View File

@@ -23,6 +23,14 @@ This file contains vulnerabilities associated with WordPress verions.
-->
<vulnerabilities>
<wordpress version="3.4.2">
<vulnerability>
<title>WordPress 3.4.2 Cross Site Request Forgery</title>
<reference>http://packetstormsecurity.org/files/116785/WordPress-3.4.2-Cross-Site-Request-Forgery.html</reference>
</vulnerability>
</wordpress>
<wordpress version="3.4-beta4">
<vulnerability>
<title>Wordpress 3.3.1 Multiple CSRF Vulnerabilities</title>
@@ -73,6 +81,13 @@ This file contains vulnerabilities associated with WordPress verions.
</vulnerability>
</wordpress>
<wordpress version="3.1.1">
<vulnerability>
<title>WordPress wp-includes/formatting.php make_clickable() PCRE Library Remote DoS</title>
<reference>http://osvdb.org/show/osvdb/72142</reference>
</vulnerability>
</wordpress>
<wordpress version="3.0.3">
<vulnerability>
<title>SQL injection vulnerability in do_trackbacks() Wordpress function</title>
@@ -84,6 +99,20 @@ This file contains vulnerabilities associated with WordPress verions.
</vulnerability>
</wordpress>
<wordpress version="3.0.2">
<vulnerability>
<title>WordPress XML-RPC Interface Access Restriction Bypass</title>
<reference>http://osvdb.org/69761</reference>
</vulnerability>
</wordpress>
<wordpress version="3.0.1">
<vulnerability>
<title>WordPress: Information Disclosure via SQL Injection Attack</title>
<reference>http://blog.sjinks.pro/wordpress/858-information-disclosure-via-sql-injection-attack/</reference>
</vulnerability>
</wordpress>
<wordpress version="2.9">
<vulnerability>
<title>WordPress 2.9 Failure to Restrict URL Access</title>