Commit Graph

603 Commits

Author SHA1 Message Date
erwanlr
f8ba2b71f8 Added Moneymasters FDP & File upload 2013-01-06 15:02:39 +01:00
erwanlr
2f76277a28 Added wp-useronline Persistent XSS & FPD 2013-01-04 16:35:51 +01:00
erwanlr
e2bb5dc24f Added Shopping cart multi (SQLi & file upload) 2013-01-03 16:35:07 +01:00
erwanlr
473a2446ae Added Reflex Gallery file upload 2013-01-03 16:33:08 +01:00
erwanlr
a91c45e548 Added uploader 1.0.4 file upload 2013-01-03 16:19:54 +01:00
erwanlr
716ff61ff9 Added xerte-online upload file 2013-01-03 15:50:57 +01:00
erwanlr
c850b231e0 Added advanced-custom-fields <= 3.5.1 RFI 2013-01-03 15:01:46 +01:00
erwanlr
b95110375e sitepress-multilingual-cms FPD added 2013-01-01 16:09:12 +01:00
Mark Stanislav
56e96dc97b Addition of an AUTHBYPASS type for plugins that will operate without a valid WordPress session and/or adequate privilege, creating a vulnerability due to its functionality. Also, added a portable-phpMyAdmin vulnerability to the plugin vulnerability listing utilizing the aforementioned new type. 2012-12-13 14:07:22 -05:00
ethicalhack3r
19bcc9263c Fixed typo 2012-12-12 20:34:09 +01:00
ethicalhack3r
194645eb5d Added asset-manager plugin vuln to db 2012-12-12 20:20:17 +01:00
erwanlr
962da638b9 Missing 's' 2012-12-11 20:31:13 +01:00
erwanlr
32506ca830 Scoring system removed from version finderprinting 2012-12-11 20:29:50 +01:00
erwanlr
b43a56fd38 WP 3.5 fingerprinting 2012-12-11 20:07:53 +01:00
erwanlr
1663cdb301 Ref #33 Options to find dead reference urls --cvru | check-vuln-ref-urls 2012-12-07 17:16:21 +01:00
Christian Mehlmauer
4c9048ceec updated theme and plugin lists 2012-11-24 19:46:02 +01:00
Gianluca Brindisi
dda043d7f7 Added http://brindi.si/g/blog/vulnerable-swf-bundled-in-wordpress-plugins.html 2012-11-22 11:31:14 +01:00
Erwan
4b2acde84a Fix #64 (closing <vulnerability> tag) 2012-11-13 14:21:30 +01:00
ethicalhack3r
04c1d32cd9 Added http://seclists.org/fulldisclosure/2012/Nov/51 to wp_vulns.xml 2012-11-10 00:03:47 +01:00
Gianluca Brindisi
ed9dc03ddb Added http://seclists.org/bugtraq/2012/Nov/33 2012-11-07 17:50:36 +01:00
Gianluca Brindisi
9b8b573f83 Added http://www.securityfocus.com/archive/1/524625/30/0/threaded 2012-11-05 17:04:51 +01:00
Gianluca Brindisi
dcc2320ad6 http://packetstormsecurity.org/files/117820/wpcatalog-xss.txt 2012-11-03 18:19:57 +01:00
Gianluca Brindisi
783d95c56d Fixed slug in Wordfence XSS vulnerability 2012-11-03 18:18:41 +01:00
Gianluca Brindisi
9785c815c0 Added http://packetstormsecurity.org/files/117768 2012-10-31 10:24:25 +01:00
ethicalhack3r
7dc4fd6fb2 Added some WP vulns from info on cvedetails.com. See issue #33 2012-10-27 23:03:14 +02:00
Gianluca Brindisi
ad8b5e78ba Added http://packetstormsecurity.org/files/117665/ 2012-10-26 10:56:11 +02:00
ethicalhack3r
38d335193f Added wordfence plugin vuln. 2012-10-23 10:25:49 +02:00
ethicalhack3r
ea77b431da Added Better WP Security v3.4.3 plugin vuln 2012-10-19 00:47:17 +02:00
Gianluca Brindisi
f576f7ee18 Added http://www.waraxe.us/advisory-92.html and http://www.waraxe.us/advisory-93.html 2012-10-18 15:44:19 +02:00
Gianluca Brindisi
249616ab3a Fixed typo Issue 38 2012-10-16 18:02:27 +02:00
Gianluca Brindisi
b3cfd08718 Added Issue 38 2012-10-16 15:39:17 +02:00
Christian Mehlmauer
55fa6422b2 rpsec tests 2012-09-22 10:19:37 +02:00
Christian Mehlmauer
48b0e88c95 regex escaping when using variables 2012-09-20 22:26:34 +02:00
Christian Mehlmauer
04414ebc69 Timthumb enumeration now working 2012-09-16 23:31:03 +02:00
Christian Mehlmauer
e706efd9f0 Bugfixing 2012-09-13 14:03:24 +02:00
erwanlr
075ff4dc87 Merge pull request #25 from FireFart/pluginlist
Pluginlist
2012-09-12 08:35:28 -07:00
Gianluca Brindisi
7f92fa0c1b Added http://www.reactionpenetrationtesting.co.uk/wordpress-download-monitor-xss.html 2012-09-11 18:13:30 +02:00
Christian Mehlmauer
1e51532ba1 Added full plugin list 2012-09-10 23:21:14 +02:00
Erwan
91cfa5a060 Advanced fingerprinting version for wp 3.4.2 2012-09-06 23:40:14 +02:00
Gianluca Brindisi
013ef9d117 Fix #16 2012-09-06 11:44:10 +02:00
Erwan
64cf6bff6c Most popular plugins updated 2012-09-04 18:54:46 +02:00
Gianluca Brindisi
18a40ec69c Added packetstormsecurity.org/files/116123/ and packetstormsecurity.org/files/116150/ 2012-09-01 18:02:40 +02:00
Gianluca Brindisi
6d3eb2a3a1 Added http://packetstormsecurity.org/files/115904/ 2012-08-30 11:54:41 +02:00
Gianluca Brindisi
fad9e173b8 added http://packetstormsecurity.org/files/115630 2012-08-30 11:52:18 +02:00
Erwan
65b2a3d15b Plugins vuln added (rich widget & Monsters Editor) 2012-08-24 08:40:17 +02:00
Erwan
f9609ee295 Some wp plugins vulnerabilities added
Most popular plugins updated
2012-08-19 18:58:27 +02:00
Gianluca Brindisi
6dd2ca6a0d Added http://www.exploit-db.com/exploits/20083 2012-07-24 17:55:18 +02:00
Gianluca Brindisi
c917f68579 Added Site5 Wordpress themes email spoofing vulnerabilities 2012-07-20 10:44:26 +02:00
Gianluca Brindisi
901b501198 Added http://t.co/3jjf1z5l 2012-07-20 10:35:28 +02:00
Erwan
26cbf6c0e6 Most popular plugins updated 2012-07-17 17:14:32 +02:00