diff --git a/data/wp_vulns.xml b/data/wp_vulns.xml index 49994955..6e3ece13 100644 --- a/data/wp_vulns.xml +++ b/data/wp_vulns.xml @@ -2103,6 +2103,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + WordPress 2.0 - 2.7.1 admin.php Module Configuration Security Bypass Vulnerability @@ -2127,6 +2134,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + WordPress 2.0 - 2.7.1 admin.php Module Configuration Security Bypass Vulnerability @@ -2151,6 +2165,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + XMLRPC Pingback API Internal/External Port Scanning @@ -2168,6 +2189,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + Wordpress <= 1.5.1.3 Remote Code Execution eXploit (metasploit) @@ -2192,6 +2220,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + Wordpress <= 1.5.1.2 xmlrpc Interface SQL Injection Exploit @@ -2226,6 +2261,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + WordPress <= 1.5.1.1 "add new admin" SQL Injection Exploit @@ -2257,6 +2299,13 @@ + + Wordpress wp-register.php Multiple Parameter XSS + + 8577 + + XSS + XMLRPC Pingback API Internal/External Port Scanning