From 76f45f128dcf6d9343a40868db3a4e0af2c358a5 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Sun, 6 Oct 2013 14:14:08 +0200 Subject: [PATCH 1/2] Updade Crayon Syntax Highlighter vuln. --- data/plugin_vulns.xml | 14 ++------------ 1 file changed, 2 insertions(+), 12 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index ba9e5b41..3257565b 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -117,13 +117,14 @@ - Crayon Syntax Highlighter Remote File Inclusion + Crayon Syntax Highlighter Remote File Inclusion Vulnerability 50804 http://ceriksen.com/2012/10/15/wordpress-crayon-syntax-highlighter-remote-file-inclusion-vulnerability/ RFI + 1.13 @@ -4683,17 +4684,6 @@ - - - WordPress Crayon Syntax Highlighter Plugin "wp_load" Remote File Inclusion Vulnerability - - 50804 - - RFI - 1.13 - - - WordPress eShop Magic Plugin "file" Arbitrary File Disclosure Vulnerability From 30d75e9f1eaacdf13f649e7368a41eb2b578a530 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Sun, 6 Oct 2013 16:29:03 +0200 Subject: [PATCH 2/2] Added OSVDB #97662 --- data/plugin_vulns.xml | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 3257565b..3e861703 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -6557,4 +6557,17 @@ + + + Lazy SEO lazyseo.php File Upload Arbitrary Code Execution + + http://packetstormsecurity.com/files/123349/wplazyseo-shell.txt + 97662 + 2013-5961 + 28452 + + UPLOAD + + +