diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 1cefdadf..aad4889d 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -7524,10 +7524,12 @@ - wp-realty - MySQL Time Based Injection + WP Realty - MySQL Time Based Injection + 98748 29021 - http://www.exploit-db.com/exploits/29021/ + http://packetstormsecurity.com/files/123655/ + http://www.securityfocus.com/bid/63217 SQLI @@ -7601,11 +7603,22 @@ - Blue Wrench Video-Widget CSRF and Persistent XSS 0day Disclosure + Blue Wrench Video Widget 1.0.2 - admin.php bw-videos Page Multiple Action CSRF + 98922 + 55456 http://securityundefined.com/wordpress-plugin-blue-wrench-video-widget-csrf-persistent-xss-0day-disclosure/ - MULTI + CSRF + + + Blue-Wrench-Video-Widget 1.0.2 - admin.php bw-videos Page Multiple Parameter Stored XSS + + 98923 + 55456 + http://securityundefined.com/wordpress-plugin-blue-wrench-video-widget-csrf-persistent-xss-0day-disclosure/ + + XSS @@ -7641,4 +7654,27 @@ + + + Payment Gateways Caller for WP e-Commerce 0.1.0 - load_merchant Parameter Traversal Local file Inclusion + + 98916 + http://packetstormsecurity.com/files/123744/ + + LFI + 0.1.1 + + + + + + Easy Photo Album 1.1.5 - Album Information Disclosure + + 98802 + + AUTHBYPASS + 1.1.6 + + +