Commit Graph

515 Commits

Author SHA1 Message Date
erwanlr
692c8e27fa Add leaguemanager 3.8 SQLi 2013-03-15 09:58:18 +01:00
erwanlr
b6188cb0ba New line char has to be double quoted 2013-03-12 15:37:51 +01:00
erwanlr
28300814f5 More error details for XSD checks 2013-03-12 15:34:25 +01:00
erwanlr
a298e431cc Add line & column of the malformation in XML checks 2013-03-12 15:12:32 +01:00
erwanlr
0a50bcadc2 Add terillion-reviews XSS 2013-03-12 15:00:04 +01:00
erwanlr
de3d62ba92 Creation of a function xml instead of a hack for Nokogiri::XML 2013-03-11 17:59:26 +01:00
erwanlr
64c3c29597 StatsPlugin code factoring 2013-03-11 17:52:19 +01:00
erwanlr
ae61b95707 Most popular plugins updated 2013-03-11 17:44:50 +01:00
erwanlr
669bb3892e ListGeneratorPlugin code factoring 2013-03-11 17:44:20 +01:00
erwanlr
c0312bbbe5 WpUser code factoring 2013-03-11 17:28:32 +01:00
erwanlr
2f14be09b5 All hacks moved to hacks.rb 2013-03-11 17:21:09 +01:00
erwanlr
9b5ee28f04 Missing file 2013-03-11 17:18:48 +01:00
erwanlr
2043adb76e Nokogiri::XML hack to set the default option to NOBLANKS 2013-03-11 17:18:05 +01:00
erwanlr
eaffb139ef Bug Fix : Wp 3.5 & 3.5.1 not detected from advanced fingerprinting. Trying to reduce the complexity of WpVersion::find_from_advanced_fingerprinting 2013-03-11 16:53:05 +01:00
erwanlr
763bd5a10c scan_url_for_pattern renamed to scan_url 2013-03-11 16:17:25 +01:00
erwanlr
5f7ca09e55 WpVersion code factoring 2013-03-11 15:59:38 +01:00
erwanlr
eadebd387a Fixes #145 : vkontakte-api XSS added 2013-03-11 10:59:59 +01:00
ethicalhack3r
9434db242b Fixed syntax error. 2013-03-10 23:54:07 +01:00
ethicalhack3r
97ec9a6aa7 Refactored #default_wp_content_dir_exists? spec. 2013-03-10 23:52:36 +01:00
ethicalhack3r
7a9a72d285 Added CVE number to CVE-2013-1808 plugin vulns. 2013-03-10 12:30:45 +01:00
ethicalhack3r
ae6485bfd1 Added snazzy-archives plugin vuln, see Issue #143. 2013-03-10 12:25:44 +01:00
ethicalhack3r
19d7c3122d Added more CVE-2013-1808 vulns, see Issue #142. Thanks Henri! 2013-03-10 12:22:48 +01:00
ethicalhack3r
ed2eb44b38 Added default wp-content dir detection, see Issue #141. 2013-03-10 12:08:49 +01:00
Christian Mehlmauer
7c110bf6d3 added checks for well formed xml 2013-03-05 21:52:41 +01:00
ethicalhack3r
a4656c1837 Fixed stupid mistake where I broke the XML. >.< 2013-03-05 20:42:50 +01:00
ethicalhack3r
fd4359433c Added themes vulnerable to ZeroClipboard XSS. 2013-03-05 20:39:48 +01:00
ethicalhack3r
8d5ae7f94f Added plugins affected by ZeroClipboard XSS. 2013-03-05 20:23:00 +01:00
erwanlr
08e66a86ce Fixes code coverage for common libs 2013-03-05 14:21:13 +01:00
erwanlr
9525b33988 Require homogenization 2013-03-05 14:13:15 +01:00
erwanlr
b8ccfa23d9 Fixes #140 xml_rpc_url in the body 2013-03-05 13:49:47 +01:00
erwanlr
5f584f92a7 Browser code factoring 2013-03-05 12:50:26 +01:00
erwanlr
1adadcb4bb Complexity of Browser#proxy_auth= reduced 2013-03-05 10:34:11 +01:00
erwanlr
2607e91833 Changed version specifiers for Typhoeus & Webmock (>= instead of ~>) 2013-03-04 16:53:38 +01:00
erwanlr
8bc8d7e7cd Fixes WebSite#xml_rpc_url bug (Thanks Patrick for the report) 2013-03-04 16:34:49 +01:00
erwanlr
80c817b2e2 Bump to version 2.1 2.1 2013-03-04 11:30:24 +01:00
erwanlr
cd17429357 Merge branch 'typhoeus-support' 2013-03-04 11:29:11 +01:00
erwanlr
2453ad7ace cache_key reduced to 32 chars 2013-03-04 11:20:20 +01:00
erwanlr
ae76db5238 Typhoeus::Request#cache_key comment updated 2013-03-04 11:17:40 +01:00
erwanlr
a4b3c30099 Uses Typhoeus 0.6.2 instead of master 2013-03-04 11:00:18 +01:00
Christian Mehlmauer
18062bca84 added vulns 2013-03-03 22:07:37 +01:00
ethicalhack3r
727c186ca1 Added php-shell plugin, see Issue #138. 2013-03-03 19:55:50 +01:00
erwanlr
a71765034b Request#cache_key implementation 2013-03-01 15:20:53 +01:00
ethicalhack3r
54c819ae78 Added Ruby 2.0.0 to Travis, Issue #136. 2013-02-28 10:19:02 +01:00
ethicalhack3r
a9d097643b Merged plugin vuln 2013-02-28 10:12:11 +01:00
ethicalhack3r
c568d28b70 Added comment-rating plugin SQLi and bypass. 2013-02-28 10:09:57 +01:00
erwanlr
a583c61f50 updated smart-flv references 2013-02-27 10:48:27 +01:00
erwanlr
747472a947 GoogleAlertandtwitterplugin Vulns 2013-02-25 22:37:17 +01:00
erwanlr
a4f6690919 Ref #104 smart-flv XSS added 2013-02-25 17:26:13 +01:00
ethicalhack3r
8bf2ff21b2 Added specific error to spec. 2013-02-24 15:47:10 +01:00
ethicalhack3r
3c6292e9b4 Added symlink check to load_config. 2013-02-24 15:44:24 +01:00