From 71e8b22849faae42d89a6172969817142a0f992b Mon Sep 17 00:00:00 2001 From: Peter Date: Thu, 20 Mar 2014 09:49:57 +0100 Subject: [PATCH 1/2] Update vuln db --- data/plugin_vulns.xml | 76 +++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 76 insertions(+) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index fbd22dae..ba1f56da 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -11516,4 +11516,80 @@ + + + Duplicate Post 2.5 - duplicate-post-admin.php User Login Cookie Value SQL Injection + + 104669 + + SQLI + 2.6 + + + Duplicate Post 2.5 - options-general.php post Parameter Reflected XSS + + 104670 + + XSS + 2.6 + + + + + + mTouch Quiz 3.0.6 - question.php quiz Parameter Reflected XSS + + 104667 + http://www.securityfocus.com/bid/66306 + + XSS + 3.0.7 + + + mTouch Quiz 3.0.6 - question.php quiz Parameter SQL Injection + + 104668 + http://www.securityfocus.com/bid/66306 + + SQLI + 3.0.7 + + + + + + Simple Retail Menus 4.0.1 - includes/actions.php targetmenu Parameter SQL Injection + + 104680 + + SQLI + 4.1 + + + Simple Retail Menus 4.0.1 - includes/mode-edit.php targetmenu Parameter SQL Injection + + 104682 + + SQLI + 4.1 + + + + + + User Domain Whitelist 1.4 - user-domain-whitelist.php domain_whitelist Parameter Stored XSS + + 104681 + + XSS + + + User Domain Whitelist 1.4 - user-domain-whitelist.php Domain Whitelisting Manipulation CSRF + + 104683 + + CSRF + 1.5 + + From 010df5a08169a06177fc136680d788116745ac81 Mon Sep 17 00:00:00 2001 From: Peter Date: Fri, 21 Mar 2014 07:58:24 +0100 Subject: [PATCH 2/2] Update vuln db --- data/plugin_vulns.xml | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index ba1f56da..c77ba5a2 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -11592,4 +11592,28 @@ 1.5 + + + + Subscribe To Comments Reloaded 140204 - options/index.php manager_page Parameter Stored XSS Weakness + + 104698 + 57015 + http://www.securityfocus.com/bid/66288 + + XSS + 140219 + + + Subscribe To Comments Reloaded 140204 - options/index.php Admin Settings Manipulation CSRF + + 104699 + 57015 + http://www.securityfocus.com/bid/66288 + + CSRF + 140219 + + +