From f1936fea6bac4940129ba520e75430504fae61d0 Mon Sep 17 00:00:00 2001 From: Peter Date: Sat, 28 Dec 2013 21:49:57 +0100 Subject: [PATCH] Update plugin_vulns.xml --- data/plugin_vulns.xml | 36 ++++++++++++++++++++++++++++++++++-- 1 file changed, 34 insertions(+), 2 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index e97a0741..e0962f16 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -73,7 +73,7 @@ - VideoJS Cross - Site Scripting Vulnerability + S3 Video <= 0.97 - VideoJS Cross Site Scripting Vulnerability 53437 http://seclists.org/fulldisclosure/2013/May/66 @@ -81,6 +81,15 @@ XSS 0.98 + + S3 Video 0.982 - preview_video.php base Parameter XSS + + 101388 + 56167 + + XSS + 0.983 + @@ -2436,11 +2445,24 @@ - Download Manager <= 2.2 - Cross Site Scripting + Download Manager 2.5.8 - Download Package file Parameter Stored XSS + 101143 + 55969 + http://www.securityfocus.com/bid/64159 + + XSS + 2.5.9 + + + Download Manager <= 2.2.2 - admin.php cid Parameter XSS + + 81449 + 48927 http://packetstormsecurity.com/files/112708/ XSS + 2.2.3 @@ -3895,6 +3917,7 @@ Page Flip Image Gallery - Remote File Upload Vulnerability + 100748 http://packetstormsecurity.com/files/124316/ UPLOAD @@ -9033,6 +9056,7 @@ DZS Video Gallery 3.1.3 - Remote File Disclosure + 100750 http://packetstormsecurity.com/files/124317/ FPD @@ -9049,6 +9073,14 @@ CSRF + + AskApache Firefox Adsense 3.0 - askapache-firefox-adsense.php aafireadcode Parameter Stored XSS Weakness + + 101435 + http://seclists.org/bugtraq/2013/Dec/142 + + CSRF +