diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 4a203491..5f43eb35 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -18,7 +18,7 @@ along with this program. If not, see . ryandewhurst at gmail This file contains vulnerabilities associated with WordPress plugins. - TYPE = ["SQLI", "MULTI", "REDIRECT", "RCE", "RFI", "LFI", "UPLOAD", "UNKNOWN", "XSS", "CSRF", "AUTHBYPASS"] + TYPE = ["SQLI", "MULTI", "REDIRECT", "RCE", "RFI", "LFI", "UPLOAD", "UNKNOWN", "XSS", "CSRF", "AUTHBYPASS", "FPD"] @@ -30,6 +30,13 @@ ryandewhurst at gmail --> + + + Wordpress sitepress-multilingual-cms Full Path Disclosure + http://1337day.com/exploit/20067 + FPD + + WordPress plugin Asset manager upload.php Arbitrary Code Execution