From f16692e3aee50645eae454bf372432b725e93f78 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Tue, 12 Nov 2013 12:18:57 +0100 Subject: [PATCH 1/6] Added some vulns from Security Focus --- data/plugin_vulns.xml | 40 +++++++++++++++++++++++++++++++++++++++- 1 file changed, 39 insertions(+), 1 deletion(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index bda8e428..5272a7e9 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -583,6 +583,14 @@ XSS + + Blaze Slideshow 2.1 - Unspecified Security Vulnerability + + http://www.securityfocus.com/bid/52677 + + UNKNOWN + 2.2 + @@ -1710,6 +1718,14 @@ UPLOAD + + WP Marketplace 1.2.1 - File Enumeration Weakness and File Upload Vulnerabilities + + http://www.securityfocus.com/bid/52960 + + UPLOAD + 1.2.2 + @@ -1951,7 +1967,7 @@ XSS - LeagueManager v3.8 - SQL Injection + LeagueManager 3.8 - SQL Injection 24789 2013-1852 @@ -2441,8 +2457,10 @@ Count Per Day 3.1.1 - Cross Site Scripting http://packetstormsecurity.com/files/114787/ + http://www.securityfocus.com/bid/54258 XSS + 3.2 Count Per Day <= 3.1.1 - Multiple Vulnerabilities @@ -7963,4 +7981,24 @@ + + + FCChat 2.2.11-2.2.13 - Upload.php Arbitrary File Upload Vulnerability + + http://www.securityfocus.com/bid/53855 + + UPLOAD + + + + + + Another WordPress Classifieds - Unspecified Image Upload Vulnerability + + http://www.securityfocus.com/bid/52861 + + UPLOAD + + + From f833181d81186ac2c40c231098599775637a0cb9 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Tue, 12 Nov 2013 13:59:24 +0100 Subject: [PATCH 2/6] Update plugin_vulns.xml --- data/plugin_vulns.xml | 27 +++++++++++++++++++++++++-- 1 file changed, 25 insertions(+), 2 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 5272a7e9..ff3fc046 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -1492,6 +1492,7 @@ PICA Photo Gallery 1.0 - Remote File Disclosure 19016 + http://www.securityfocus.com/bid/53893 UNKNOWN @@ -4651,16 +4652,21 @@ - ripe-hd-player 1.0 - SQL Injection + ripe-hd-player 1.0 - ripe-hd-player/config.php id Parameter SQL Injection + 89437 24229 + http://xforce.iss.net/xforce/xfdb/81415 SQLI - ripe-hd-player 1.0 - Full Path Disclosure + ripe-hd-player 1.0 - Multiple Script Direct Request Path Disclosure + 89438 24229 + http://www.securityfocus.com/bid/57473 + http://xforce.iss.net/xforce/xfdb/81414 FPD @@ -7174,6 +7180,13 @@ http://seclists.org/fulldisclosure/2013/Nov/30 XSS + + LBG Zoominoutslider - add_banner.php Unspecified XSS + + 99320 + http://packetstormsecurity.com/files/123367/ + + XSS LBG Zoominoutslider - Multiple Script Direct Request Path Disclosure @@ -8001,4 +8014,14 @@ + + + Picturesurf Gallery 1.2 - upload.php Arbitrary File Upload Vulnerability + + http://www.securityfocus.com/bid/53894 + + UPLOAD + + + From 4e069394631d975f1752fe7cbf0145ba935dfe34 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Tue, 12 Nov 2013 16:31:36 +0100 Subject: [PATCH 3/6] Update plugin_vulns.xml --- data/plugin_vulns.xml | 86 ++++++++++++++++++++++++++++++++++++++++--- 1 file changed, 80 insertions(+), 6 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index ff3fc046..4aa964b6 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -493,7 +493,14 @@ UPLOAD - + + Uploader 1.0.4 - notify.php blog Parameter XSS + + 90840 + 52465 + + XSS + @@ -2447,6 +2454,22 @@ XSS + + Count Per Day 3.2.3 - notes.php Malformed Requests Remote DoS + + 90833 + http://seclists.org/fulldisclosure/2013/Mar/43 + + UNKNOWN + + + Count Per Day 3.2.3 - Multiple Script Direct Request Path Disclosure + + 90832 + http://seclists.org/fulldisclosure/2013/Mar/43 + + FPD + Count Per Day 3.2.3 - Cross Site Scripting @@ -4832,6 +4855,33 @@ XSS 5.3.4 + + Events Manager 5.3.5 - wp-admin/admin-ajax.php dbem_phone Parameter XSS + + 90913 + 52475 + + XSS + 5.3.6 + + + Events Manager 5.3.5 - index.php event_owner_name Parameter XSS + + 90914 + 52475 + + XSS + 5.3.6 + + + Events Manager 5.3.5 - wp-admin/post.php Multiple Parameter XSS + + 90915 + 52475 + + XSS + 5.3.6 + Events Manager 5.3.8 - Multiple XSS Vulnerabilities @@ -5555,9 +5605,19 @@ - Contact Form - XSS + Contact Form 3.34 - contact_form.php cntctfrm_contact_message Parameter XSS + + 90502 + 52179 + + XSS + 3.35 + + + Contact Form 3.36 - contact_form.php cntctfrm_contact_email Parameter XSS 90503 + 52250 XSS @@ -5608,9 +5668,11 @@ - Responsive Logo Slideshow - Cross Site Scripting + Responsive Logo Slideshow - URL and Image Field XSS + 90406 http://packetstormsecurity.com/files/120379/ + http://seclists.org/bugtraq/2013/Feb/84 XSS @@ -6420,8 +6482,11 @@ - Feedweb - 'wp_post_id' Parameter XSS + Feedweb 1.8.8 - widget_remove.php wp_post_id Parameter XSS + 91951 + 2013-3720 + 52855 http://www.securityfocus.com/bid/58771 XSS @@ -6502,9 +6567,10 @@ - xili-language - XSS + xili-language - index.php lang Parameter XSS - http://wordpress.org/plugins/xili-language/changelog/ + 93233 + 53364 XSS 2.8.6 @@ -6528,6 +6594,14 @@ XSS + + WordPress SEO 1.4.6 - Reset Settings Feature Access Restriction Bypass + + 92147 + 52949 + + UNKNOWN> + From e18f2c99882e6ecd63ca44e2f88ec657b79e7a8e Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Tue, 12 Nov 2013 16:44:43 +0100 Subject: [PATCH 4/6] Update plugin_vulns.xml --- data/plugin_vulns.xml | 1 + 1 file changed, 1 insertion(+) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 4aa964b6..f32c8d41 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -501,6 +501,7 @@ XSS + From a39145321314fe2d26d6be7a0d741a492bd3ed9e Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Tue, 12 Nov 2013 16:57:10 +0100 Subject: [PATCH 5/6] Update plugin_vulns.xml --- data/plugin_vulns.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index f32c8d41..63f4ca4f 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -6601,7 +6601,7 @@ 92147 52949 - UNKNOWN> + UNKNOWN From d4758bd22f982fb67e3c1eb15eedfea3791b8717 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Tue, 12 Nov 2013 17:19:42 +0100 Subject: [PATCH 6/6] Update plugin_vulns.xml --- data/plugin_vulns.xml | 32 ++++++++++++++++++++++++++------ 1 file changed, 26 insertions(+), 6 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 63f4ca4f..68dfc20c 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -2742,16 +2742,20 @@ SQLI - WP Symposium - "u" XSS + WP Symposium 13.02 - wp-symposium/invite.php u Parameter XSS + 92275 + 2013-2695 52864 XSS 13.04 - WP Symposium - "u" Redirection Weakness + WP Symposium 13.02 - invite.php u Parameter Arbitrary Site Redirect + 92274 + 2013-2694 52925 REDIRECT @@ -6225,7 +6229,7 @@ - social-media-widget - malicious code + Social Media Widget - malicious code http://plugins.trac.wordpress.org/changeset?reponame=&old=691839%40social-media-widget%2Ftrunk&new=693941%40social-media-widget%2Ftrunk http://slashdot.org/submission/2592777/top-wordpress-widget-sold-off-turned-into-seo-spambot @@ -6233,6 +6237,17 @@ UNKNOWN 4.0.2 + + Social Media Widget 4.0 - social-widget.php MITM Weakness Arbitrary Code Injection + + 92312 + 2013-1949 + 53020 + http://seclists.org/oss-sec/2013/q2/10 + + UNKNOWN + 4.0.1 + @@ -6327,8 +6342,9 @@ - top-10 - CSRF + top-10 1.9.2 - Setting Manipulation CSRF + 92849 53205 CSRF @@ -6461,8 +6477,9 @@ - Contextual Related Posts - Cross-Site Request Forgery Vulnerability + Contextual Related Posts 1.8.6 - Cross-Site Request Forgery Vulnerability + 93088 52960 CSRF @@ -6472,8 +6489,10 @@ - Calendar - Cross-Site Request Forgery Vulnerability + Calendar 1.3.2 - Entry Addition CSRF + 93025 + 2013-2698 52841 CSRF @@ -7256,6 +7275,7 @@ XSS + LBG Zoominoutslider - add_banner.php Unspecified XSS 99320