From b95110375e763360d03f8a4da52bef6faf671aac Mon Sep 17 00:00:00 2001 From: erwanlr Date: Tue, 1 Jan 2013 16:09:12 +0100 Subject: [PATCH] sitepress-multilingual-cms FPD added --- data/plugin_vulns.xml | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 4a203491..5f43eb35 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -18,7 +18,7 @@ along with this program. If not, see . ryandewhurst at gmail This file contains vulnerabilities associated with WordPress plugins. - TYPE = ["SQLI", "MULTI", "REDIRECT", "RCE", "RFI", "LFI", "UPLOAD", "UNKNOWN", "XSS", "CSRF", "AUTHBYPASS"] + TYPE = ["SQLI", "MULTI", "REDIRECT", "RCE", "RFI", "LFI", "UPLOAD", "UNKNOWN", "XSS", "CSRF", "AUTHBYPASS", "FPD"] @@ -30,6 +30,13 @@ ryandewhurst at gmail --> + + + Wordpress sitepress-multilingual-cms Full Path Disclosure + http://1337day.com/exploit/20067 + FPD + + WordPress plugin Asset manager upload.php Arbitrary Code Execution