diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 1388d9a7..579c5c22 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -1464,21 +1464,24 @@ - RSVPMaker 2.5.4 - Persistent XSS + RSVPMaker 2.5.4 - index.php RSVP Form Multiple Field XSS - 20474 + 84749 50289 + 20474 XSS + 2.5.5 - Mz-jajak <= 2.1 - SQL Injection Vulnerability + Mz-jajak <= 2.1 - index.php id Parameter SQL Injection - 20416 + 84698 50217 + 20416 SQLI @@ -1488,6 +1491,9 @@ Resume Submissions Job Posting 2.5.1 - Unrestricted File Upload + 83807 + 49896 + 19791 http://packetstormsecurity.com/files/114716/ UPLOAD @@ -1498,8 +1504,9 @@ WP-Predict 1.0 - Blind SQL Injection + 83697 + 49843 19715 - SQLI @@ -1507,10 +1514,11 @@ - Backup - Information Disclosure + Backup 2.0.1 - Information Disclosure - 19524 + 83701 50038 + 19524 UNKNOWN 2.1 @@ -1519,8 +1527,10 @@ - MoodThingy Widget 0.8.7 - Blind SQL Injection + MoodThingy Widget 0.8.7 - admin-ajax.php Multiple Parameter lydl_store_results Function SQL Injection + 83632 + 49805 19572 SQLI @@ -1529,8 +1539,9 @@ - Paid Business Listings 1.0.2 - Blind SQL Injection + Paid Business Listings 1.0.2 - Form Submission pbl_listing_pkg_id Parameter SQL Injection + 83768 19481 SQLI @@ -1539,8 +1550,10 @@ - Website FAQ 1.0 - SQL Injection + Website FAQ 1.0 - wp-admin/admin-ajax.php category Parameter SQL injection + 83265 + 49682 19400 SQLI @@ -1551,6 +1564,8 @@ Fancy Gallery 1.2.4 - Shell Upload + 83410 + 19398 http://packetstormsecurity.com/files/114114/ UPLOAD @@ -1579,8 +1594,10 @@ - Schreikasten 0.14.13 - XSS + Schreikasten 0.14.13 - wp-admin/admin-ajax.php Multiple Parameter XSS + 83152 + 49600 19294 XSS @@ -1589,11 +1606,15 @@ - Automatic 2.0.3 - CSRF + Automatic 2.0.3 - csv.php q Parameter SQL Injection + 82971 + 49573 + 19187 http://packetstormsecurity.com/files/113763/ - CSRF + SQLI + 2.0.4