diff --git a/data/wp_vulns.xml b/data/wp_vulns.xml index a3b2360e..e35ecafa 100644 --- a/data/wp_vulns.xml +++ b/data/wp_vulns.xml @@ -65,6 +65,19 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + Wordpress 3.3.1 Multiple CSRF Vulnerabilities @@ -83,6 +96,19 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + Wordpress 3.3.1 Multiple CSRF Vulnerabilities @@ -590,6 +616,24 @@ + + + XSS vulnerability in swfupload in WordPress + http://seclists.org/fulldisclosure/2012/Nov/51 + XSS + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + Wordpress 2.8.1 (url) Remote Cross Site Scripting Exploit @@ -821,6 +865,32 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + Wordpress <= 2.3.1 Charset Remote SQL Injection Vulnerability @@ -839,6 +909,58 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + WordPress 2.2 (wp-app.php) Arbitrary File Upload Exploit @@ -898,6 +1020,97 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + Wordpress <= 2.0.6 wp-trackback.php Remote SQL Injection Exploit @@ -934,6 +1147,32 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + WordPress <= 2.0.2 (cache) Remote Shell Injection Exploit @@ -952,6 +1191,45 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + + Wordpress <= 1.5.1.3 Remote Code Execution eXploit (metasploit) @@ -1011,4 +1289,17 @@ + + + XMLRPC Pingback API Internal/External Port Scanning + https://github.com/FireFart/WordpressPingbackPortScanner + UNKNOWN + + + WordPress XMLRPC pingback additional issues + http://lab.onsec.ru/2013/01/wordpress-xmlrpc-pingback-additional.html + UNKNOWN + + +