Added Issue 38

This commit is contained in:
Gianluca Brindisi
2012-10-16 15:39:17 +02:00
parent b9ff53dfa7
commit b3cfd08718
2 changed files with 163 additions and 3 deletions

View File

@@ -22,6 +22,14 @@ ryandewhurst at gmail
TYPE = ["SQLI", "MULTI", "REDIRECT", "RCE", "RFI", "LFI", "UPLOAD", "UNKNOWN", "XSS", "CSRF"]
-->
<vulnerabilities>
<plugin name="bbpress">
<vulnerability>
<title>ABtest Directory Traversal </title>
<reference>http://scott-herbert.com/blog/2012/10/11/wordpress-plugin-abtest-vulnerable-to-a-directory-traversal-attack-1110</reference>
<type>UNKNOWN</type>
</vulnerability>
</plugin>
<plugin name="bbpress">
<vulnerability>
<title>BBPress SQL Injection / Path Disclosure</title>