diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 1651ce0b..81fd4a8d 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -10500,7 +10500,7 @@ 3.7.2 - Contact Form 7 3.5.3 - Crafted File Extension Upload Remote Code Execution + Contact Form 7 & Old WP Versions - Crafted File Extension Upload Remote Code Execution 102776 http://packetstormsecurity.com/files/125018/ @@ -10637,6 +10637,13 @@ FPD + + DZS Video Gallery - Flash Files Content Spoofing & Cross-Site Scripting + + http://seclists.org/fulldisclosure/2014/May/157 + + MULTI + @@ -12306,7 +12313,7 @@ 1.0.4 - + WP Business intelligence lite <= 1.0.6 - Remote Code Execution Exploit @@ -12585,7 +12592,7 @@ 1.2 - + Photo-Gallery - UploadHandler.php File Upload CSRF @@ -12708,6 +12715,7 @@ bib2html 0.9.3 - /OSBiB/create/index.php styleShortName Parameter XSS 107296 + 2014-3870 http://packetstormsecurity.com/files/126782/ http://www.securityfocus.com/bid/67589 @@ -12727,4 +12735,71 @@ + + + Cool Video Gallery 1.8 - admin/gallery-details.php Multiple Actions CSRF + + 107354 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - admin/gallery-manage.php Gallery Deletion CSRF + + 107355 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - admin/gallery-settings.php Gallery Settings Manipulation CSRF + + 107356 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - admin/gallery-sort.php Gallery Sort Order Manipulation CSRF + + 107357 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - admin/player-settings.php Player Settings Manipulation CSRF + + 107358 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - admin/plugin-uninstall.php Plugin Uninstallation CSRF + + 107359 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - admin/video-sitemap.php XML Video Sitemap Generation CSRF + + 107360 + + CSRF + 1.9 + + + Cool Video Gallery 1.8 - lib/core.php Multiple Actions CSRF + + 107361 + + CSRF + 1.9 + + +