diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 112b9664..57de6d79 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -13093,4 +13093,15 @@ + + + AdminOnline - download.php file Parameter Remote Path Traversal File Access + + 108024 + http://packetstormsecurity.com/files/127046/ + + AUTHBYPASS + + + diff --git a/data/theme_vulns.xml b/data/theme_vulns.xml index 09aabe13..f820ba74 100644 --- a/data/theme_vulns.xml +++ b/data/theme_vulns.xml @@ -2768,6 +2768,14 @@ + + Elegance - lib/scripts/dl-skin.php _mysite_download_skin Parameter Absolute Path Traversal Remote File Access + + 108100 + http://packetstormsecurity.com/files/126989/ + + RFI + Elegance 2.4 - dl-skin.php _mysite_delete_skin_zip Parameter Absolute Path Traversal Remote Directory Deletion @@ -2969,6 +2977,14 @@ + + InFocus - lib/scripts/dl-skin.php _mysite_download_skin Parameter Absolute Path Traversal Remote File Access + + 108099 + http://packetstormsecurity.com/files/126988/ + + RFI + InFocus - prettyPhoto Cross-Site Scripting Vulnerability