erwanlr
|
80ec2ec86e
|
Added 4 premium themes FPD
|
2013-01-06 15:33:53 +01:00 |
|
erwanlr
|
192b5862b4
|
grou-random-image-widget FPD
|
2013-01-06 15:25:49 +01:00 |
|
erwanlr
|
6f406fe807
|
Sintic_gallery FPD & file upload
|
2013-01-06 15:23:21 +01:00 |
|
erwanlr
|
ba2a4fa0aa
|
Theme vulns identation
|
2013-01-06 15:05:38 +01:00 |
|
erwanlr
|
f8ba2b71f8
|
Added Moneymasters FDP & File upload
|
2013-01-06 15:02:39 +01:00 |
|
erwanlr
|
2f76277a28
|
Added wp-useronline Persistent XSS & FPD
|
2013-01-04 16:35:51 +01:00 |
|
erwanlr
|
e2bb5dc24f
|
Added Shopping cart multi (SQLi & file upload)
|
2013-01-03 16:35:07 +01:00 |
|
erwanlr
|
473a2446ae
|
Added Reflex Gallery file upload
|
2013-01-03 16:33:08 +01:00 |
|
erwanlr
|
a91c45e548
|
Added uploader 1.0.4 file upload
|
2013-01-03 16:19:54 +01:00 |
|
erwanlr
|
716ff61ff9
|
Added xerte-online upload file
|
2013-01-03 15:50:57 +01:00 |
|
erwanlr
|
c850b231e0
|
Added advanced-custom-fields <= 3.5.1 RFI
|
2013-01-03 15:01:46 +01:00 |
|
erwanlr
|
b95110375e
|
sitepress-multilingual-cms FPD added
|
2013-01-01 16:09:12 +01:00 |
|
Mark Stanislav
|
56e96dc97b
|
Addition of an AUTHBYPASS type for plugins that will operate without a valid WordPress session and/or adequate privilege, creating a vulnerability due to its functionality. Also, added a portable-phpMyAdmin vulnerability to the plugin vulnerability listing utilizing the aforementioned new type.
|
2012-12-13 14:07:22 -05:00 |
|
ethicalhack3r
|
19bcc9263c
|
Fixed typo
|
2012-12-12 20:34:09 +01:00 |
|
ethicalhack3r
|
194645eb5d
|
Added asset-manager plugin vuln to db
|
2012-12-12 20:20:17 +01:00 |
|
erwanlr
|
962da638b9
|
Missing 's'
|
2012-12-11 20:31:13 +01:00 |
|
erwanlr
|
32506ca830
|
Scoring system removed from version finderprinting
|
2012-12-11 20:29:50 +01:00 |
|
erwanlr
|
b43a56fd38
|
WP 3.5 fingerprinting
|
2012-12-11 20:07:53 +01:00 |
|
erwanlr
|
1663cdb301
|
Ref #33 Options to find dead reference urls --cvru | check-vuln-ref-urls
|
2012-12-07 17:16:21 +01:00 |
|
Christian Mehlmauer
|
4c9048ceec
|
updated theme and plugin lists
|
2012-11-24 19:46:02 +01:00 |
|
Gianluca Brindisi
|
dda043d7f7
|
Added http://brindi.si/g/blog/vulnerable-swf-bundled-in-wordpress-plugins.html
|
2012-11-22 11:31:14 +01:00 |
|
Erwan
|
4b2acde84a
|
Fix #64 (closing <vulnerability> tag)
|
2012-11-13 14:21:30 +01:00 |
|
ethicalhack3r
|
04c1d32cd9
|
Added http://seclists.org/fulldisclosure/2012/Nov/51 to wp_vulns.xml
|
2012-11-10 00:03:47 +01:00 |
|
Gianluca Brindisi
|
ed9dc03ddb
|
Added http://seclists.org/bugtraq/2012/Nov/33
|
2012-11-07 17:50:36 +01:00 |
|
Gianluca Brindisi
|
9b8b573f83
|
Added http://www.securityfocus.com/archive/1/524625/30/0/threaded
|
2012-11-05 17:04:51 +01:00 |
|
Gianluca Brindisi
|
dcc2320ad6
|
http://packetstormsecurity.org/files/117820/wpcatalog-xss.txt
|
2012-11-03 18:19:57 +01:00 |
|
Gianluca Brindisi
|
783d95c56d
|
Fixed slug in Wordfence XSS vulnerability
|
2012-11-03 18:18:41 +01:00 |
|
Gianluca Brindisi
|
9785c815c0
|
Added http://packetstormsecurity.org/files/117768
|
2012-10-31 10:24:25 +01:00 |
|
ethicalhack3r
|
7dc4fd6fb2
|
Added some WP vulns from info on cvedetails.com. See issue #33
|
2012-10-27 23:03:14 +02:00 |
|
Gianluca Brindisi
|
ad8b5e78ba
|
Added http://packetstormsecurity.org/files/117665/
|
2012-10-26 10:56:11 +02:00 |
|
ethicalhack3r
|
38d335193f
|
Added wordfence plugin vuln.
|
2012-10-23 10:25:49 +02:00 |
|
ethicalhack3r
|
ea77b431da
|
Added Better WP Security v3.4.3 plugin vuln
|
2012-10-19 00:47:17 +02:00 |
|
Gianluca Brindisi
|
f576f7ee18
|
Added http://www.waraxe.us/advisory-92.html and http://www.waraxe.us/advisory-93.html
|
2012-10-18 15:44:19 +02:00 |
|
Gianluca Brindisi
|
249616ab3a
|
Fixed typo Issue 38
|
2012-10-16 18:02:27 +02:00 |
|
Gianluca Brindisi
|
b3cfd08718
|
Added Issue 38
|
2012-10-16 15:39:17 +02:00 |
|
Christian Mehlmauer
|
55fa6422b2
|
rpsec tests
|
2012-09-22 10:19:37 +02:00 |
|
Christian Mehlmauer
|
48b0e88c95
|
regex escaping when using variables
|
2012-09-20 22:26:34 +02:00 |
|
Christian Mehlmauer
|
04414ebc69
|
Timthumb enumeration now working
|
2012-09-16 23:31:03 +02:00 |
|
Christian Mehlmauer
|
e706efd9f0
|
Bugfixing
|
2012-09-13 14:03:24 +02:00 |
|
erwanlr
|
075ff4dc87
|
Merge pull request #25 from FireFart/pluginlist
Pluginlist
|
2012-09-12 08:35:28 -07:00 |
|
Gianluca Brindisi
|
7f92fa0c1b
|
Added http://www.reactionpenetrationtesting.co.uk/wordpress-download-monitor-xss.html
|
2012-09-11 18:13:30 +02:00 |
|
Christian Mehlmauer
|
1e51532ba1
|
Added full plugin list
|
2012-09-10 23:21:14 +02:00 |
|
Erwan
|
91cfa5a060
|
Advanced fingerprinting version for wp 3.4.2
|
2012-09-06 23:40:14 +02:00 |
|
Gianluca Brindisi
|
013ef9d117
|
Fix #16
|
2012-09-06 11:44:10 +02:00 |
|
Erwan
|
64cf6bff6c
|
Most popular plugins updated
|
2012-09-04 18:54:46 +02:00 |
|
Gianluca Brindisi
|
18a40ec69c
|
Added packetstormsecurity.org/files/116123/ and packetstormsecurity.org/files/116150/
|
2012-09-01 18:02:40 +02:00 |
|
Gianluca Brindisi
|
6d3eb2a3a1
|
Added http://packetstormsecurity.org/files/115904/
|
2012-08-30 11:54:41 +02:00 |
|
Gianluca Brindisi
|
fad9e173b8
|
added http://packetstormsecurity.org/files/115630
|
2012-08-30 11:52:18 +02:00 |
|
Erwan
|
65b2a3d15b
|
Plugins vuln added (rich widget & Monsters Editor)
|
2012-08-24 08:40:17 +02:00 |
|
Erwan
|
f9609ee295
|
Some wp plugins vulnerabilities added
Most popular plugins updated
|
2012-08-19 18:58:27 +02:00 |
|