From fdd685d20c1a1da92cadc053fd2222ebcf990013 Mon Sep 17 00:00:00 2001 From: Peter Date: Tue, 31 Dec 2013 10:00:41 +0100 Subject: [PATCH] Update plugin_vulns.xml --- data/plugin_vulns.xml | 35 +++++++++++++++++++++++++++++++---- 1 file changed, 31 insertions(+), 4 deletions(-) diff --git a/data/plugin_vulns.xml b/data/plugin_vulns.xml index 7ccb36d3..b401b35c 100644 --- a/data/plugin_vulns.xml +++ b/data/plugin_vulns.xml @@ -17,9 +17,11 @@ - WP Cron DashBoard <= 1.1.5 - Cross Site Scripting + WP Cron DashBoard <= 1.1.5 - wp-cron-dashboard.php procname Parameter Reflected XSS + 100660 2013-6991 + http://packetstormsecurity.com/files/124602/ https://www.htbridge.com/advisory/HTB23189 XSS @@ -2346,19 +2348,22 @@ - LeagueManager <= 3.7 - Cross Site Scripting + LeagueManager <= 3.7 - wp-admin/admin.php Multiple Parameter XSS - http://packetstormsecurity.com/files/112698/ + 82266 49949 + http://packetstormsecurity.com/files/112698/ + http://www.securityfocus.com/bid/53525 + http://xforce.iss.net/xforce/xfdb/75629 XSS LeagueManager 3.8 - SQL Injection + 91442 24789 2013-1852 - 91442 SQLI @@ -9448,4 +9453,26 @@ + + + SEM WYSIWYG - Arbitrary File Upload + + http://packetstormsecurity.com/files/115789/ + + UPLOAD + + + + + + Recommend a friend 2.0.2 - inc/raf_form.php current_url Parameter Reflected XSS + + 101487 + 56209 + http://packetstormsecurity.com/files/124587/ + + XSS + + +