From c6cae028e4afb8d873ad9b42e4f2b091686fa309 Mon Sep 17 00:00:00 2001 From: Peter van der Laan Date: Wed, 9 Oct 2013 23:25:15 +0200 Subject: [PATCH] Update plugin_vulns.xml --- data/plugin_vulns.xml | 74 +++++++++++++++++++++++++++++++++++++++++-- 1 file changed, 72 insertions(+), 2 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 0ee20eae..2b72de98 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -2003,12 +2003,23 @@ - BulletProof Security <= 0.47 Cross Site Scripting + BulletProof Security <= 0.47 - Cross Site Scripting http://packetstormsecurity.com/files/112618/ XSS + + BulletProof Security - Security Log Script Insertion Vulnerability + + 95928 + 95929 + 95930 + 2013-3487 + 53614 + + 0.49 + @@ -6570,10 +6581,12 @@ - CSRF in sexybookmarks + SexyBookmarks - Setting Manipulation CSRF http://wordpress.org/plugins/sexybookmarks/changelog/ + 95908 2013-3256 + 53138 CSRF 6.1.5.0 @@ -7003,4 +7016,61 @@ + + + Booking System - events_facualty_list.php eid Parameter Reflected XSS + + 96740 + + XSS + + + + + + JS Restaurant - popup.php restuarant_id Parameter SQL Injection + + 96743 + http://packetstormsecurity.com/files/122316/ + + SQLI + + + + + + FlagEm Plugin - flagit.php cID Parameter XSS + + 98226 + http://www.securityfocus.com/bid/61401 + http://xforce.iss.net/xforce/xfdb/85925 + http://packetstormsecurity.com/files/122505/ + + XSS + + + + + + Chat - message Parameter XSS + + 95984 + 54403 + + XSS + + + + + + Shareaholic - Unspecified CSRF + + 96321 + 54529 + + CSRF + 7.0.3.4/fixed_in> + + +