@@ -6052,8 +6052,7 @@
|
|||||||
<title>social-media-widget - malicious code</title>
|
<title>social-media-widget - malicious code</title>
|
||||||
<references>
|
<references>
|
||||||
<url>http://plugins.trac.wordpress.org/changeset?reponame=&old=691839%40social-media-widget%2Ftrunk&new=693941%40social-media-widget%2Ftrunk</url>
|
<url>http://plugins.trac.wordpress.org/changeset?reponame=&old=691839%40social-media-widget%2Ftrunk&new=693941%40social-media-widget%2Ftrunk</url>
|
||||||
<url>http://slashdot.org/submission/2592777/top-wordpress-widget-sold-off-turned-into-seo-spambot
|
<url>http://slashdot.org/submission/2592777/top-wordpress-widget-sold-off-turned-into-seo-spambot</url>
|
||||||
</url>
|
|
||||||
</references>
|
</references>
|
||||||
<type>UNKNOWN</type>
|
<type>UNKNOWN</type>
|
||||||
<fixed_in>4.0.2</fixed_in>
|
<fixed_in>4.0.2</fixed_in>
|
||||||
@@ -7577,7 +7576,16 @@
|
|||||||
</references>
|
</references>
|
||||||
<type>XSS</type>
|
<type>XSS</type>
|
||||||
</vulnerability>
|
</vulnerability>
|
||||||
|
</plugin>
|
||||||
|
|
||||||
|
<plugin name="blue-wrench-videos-widget">
|
||||||
|
<vulnerability>
|
||||||
|
<title>Blue Wrench Video-Widget CSRF and Persistent XSS 0day Disclosure</title>
|
||||||
|
<references>
|
||||||
|
<url>http://securityundefined.com/wordpress-plugin-blue-wrench-video-widget-csrf-persistent-xss-0day-disclosure/</url>
|
||||||
|
</references>
|
||||||
|
<type>MULTI</type>
|
||||||
|
</vulnerability>
|
||||||
</plugin>
|
</plugin>
|
||||||
|
|
||||||
<plugin name="wp-mailup">
|
<plugin name="wp-mailup">
|
||||||
|
|||||||
@@ -1246,6 +1246,16 @@
|
|||||||
</vulnerability>
|
</vulnerability>
|
||||||
</theme>
|
</theme>
|
||||||
|
|
||||||
|
<theme name="DailyDeal">
|
||||||
|
<vulnerability>
|
||||||
|
<title>DailyDeal - Shell Upload</title>
|
||||||
|
<references>
|
||||||
|
<url>http://packetstormsecurity.com/files/123748/</url>
|
||||||
|
</references>
|
||||||
|
<type>RCE</type>
|
||||||
|
</vulnerability>
|
||||||
|
</theme>
|
||||||
|
|
||||||
<theme name="dailyedition">
|
<theme name="dailyedition">
|
||||||
<vulnerability>
|
<vulnerability>
|
||||||
<title>WooThemes WooFramework Remote Unauthenticated Shortcode Execution</title>
|
<title>WooThemes WooFramework Remote Unauthenticated Shortcode Execution</title>
|
||||||
@@ -1690,6 +1700,7 @@
|
|||||||
<vulnerability>
|
<vulnerability>
|
||||||
<title>Slash WP - FPD, XSS and CS vulnerabilities</title>
|
<title>Slash WP - FPD, XSS and CS vulnerabilities</title>
|
||||||
<references>
|
<references>
|
||||||
|
<url>http://packetstormsecurity.com/files/123748/</url>
|
||||||
<url>http://seclists.org/fulldisclosure/2013/Jun/166</url>
|
<url>http://seclists.org/fulldisclosure/2013/Jun/166</url>
|
||||||
</references>
|
</references>
|
||||||
<type>MULTI</type>
|
<type>MULTI</type>
|
||||||
|
|||||||
Reference in New Issue
Block a user