added vulns

This commit is contained in:
Christian Mehlmauer
2013-01-30 22:30:05 +01:00
parent 9a4a55e9ed
commit df66a7496a

View File

@@ -511,6 +511,11 @@
</plugin>
<plugin name="wp-homepage-slideshow">
<vulnerability>
<title>wp-homepage-slideshow Arbitrary File Upload Vulnerability</title>
<reference>http://www.1337day.com/exploit/20260</reference>
<type>UPLOAD</type>
</vulnerability>
<vulnerability>
<title>SWF Vulnerable to XSS Bundled in Many Wordpress Plugins</title>
<reference>http://brindi.si/g/blog/vulnerable-swf-bundled-in-wordpress-plugins.html</reference>
@@ -519,6 +524,11 @@
</plugin>
<plugin name="wp-image-news-slider">
<vulnerability>
<title>wp-image-news-slider Arbitrary File Upload Vulnerability</title>
<reference>http://www.1337day.com/exploit/20259</reference>
<type>UPLOAD</type>
</vulnerability>
<vulnerability>
<title>SWF Vulnerable to XSS Bundled in Many Wordpress Plugins</title>
<reference>http://brindi.si/g/blog/vulnerable-swf-bundled-in-wordpress-plugins.html</reference>
@@ -566,6 +576,11 @@
</plugin>
<plugin name="wp-royal-gallery">
<vulnerability>
<title>wp-royal-gallery Arbitrary File Upload Vulnerability</title>
<reference>http://www.1337day.com/exploit/20261</reference>
<type>UPLOAD</type>
</vulnerability>
<vulnerability>
<title>SWF Vulnerable to XSS Bundled in Many Wordpress Plugins</title>
<reference>http://brindi.si/g/blog/vulnerable-swf-bundled-in-wordpress-plugins.html</reference>
@@ -3555,5 +3570,13 @@
</vulnerability>
</plugin>
<plugin name="RLSWordPressSearch">
<vulnerability>
<title>Wordpress RLSWordPressSearch plugin SQL Injection</title>
<reference>http://www.exploit-db.com/exploits/24440/</reference>
<type>SQLI</type>
</vulnerability>
</plugin>
</vulnerabilities>