erwanlr
de30802491
Better-WP-Security v3.4.3 XSS vuln title & fixed_in tag
2013-08-08 13:48:13 +02:00
erwanlr
973c0da4f2
Typo
2013-08-02 16:34:13 +02:00
erwanlr
3a3cbfdf7d
Typo
2013-08-02 16:18:58 +02:00
erwanlr
21663ae519
Aded plugin vuln: sharebar CSRF
2013-08-02 16:15:25 +02:00
erwanlr
3a53936a88
Aded WP vuln: 3.4 - 3.5.1 wp-admin/users.php FPD
2013-08-02 16:10:17 +02:00
erwanlr
eac24ebbc8
Aded plugin vuln: pie-register XSS
2013-08-02 16:02:34 +02:00
erwanlr
9a70b8e2af
Aded plugin vuln: spicy-blogroll RFI
2013-08-02 15:51:43 +02:00
erwanlr
e9374e4fe3
Aded plugin vuln: woocommerce XSS
2013-08-02 15:49:20 +02:00
erwanlr
5afdbded7e
Aded plugin vuln: citizen-space CSRF
2013-08-02 15:46:03 +02:00
erwanlr
3f6087b180
Added Refence: wp-better-security Stored XSS
2013-08-02 15:43:49 +02:00
erwanlr
1c577084b1
Added plugin vuln: duplicator XSS
2013-08-02 15:39:58 +02:00
erwanlr
a242ca094e
Fix #252 Events Calendar references (& XSS Added)
2013-08-02 15:27:57 +02:00
ethicalhack3r
c3b9611f76
Added WP 3.6 advanced fingerprint hash. See Issue #255 .
2013-08-02 11:31:05 +02:00
ethicalhack3r
d32b20a529
Added another fixed_in paramter
2013-07-30 21:08:49 +02:00
ethicalhack3r
f4946525bb
Missed fixed_in parameter for better-wp-security plugin
2013-07-30 20:50:37 +02:00
ethicalhack3r
3eb7639ce7
Better WP Security Plugin Stored XSS. See Issue #251 .
2013-07-30 20:06:00 +02:00
Christian Mehlmauer
48e6ba4a1c
Merge pull request #250 from za/master
...
just fixing typo at data/wp_versions.xml
2013-07-29 00:43:21 -07:00
Zaki Akhmad
41f6cf1463
fix typo at wp_versions.xml comment: verions->versions
2013-07-29 14:26:12 +07:00
ethicalhack3r
1722025a2c
Added SWFUpload Content Spoofing in 3.5.2 see issue #243
2013-07-26 14:45:03 +02:00
ethicalhack3r
697b72836d
Missunderstood known_headers array, removed security headers
2013-07-25 20:01:55 +02:00
ethicalhack3r
b6777fd0d7
Added security headers
2013-07-25 19:56:06 +02:00
ethicalhack3r
6d2165acc3
Little refactoring
2013-07-25 19:47:16 +02:00
ethicalhack3r
c33e553175
Handle when there are 2 headers of the same name
2013-07-25 19:41:03 +02:00
erwanlr
ab1381e830
WpItems::Detectable#passive_detection Complexity Reduced
2013-07-24 14:35:15 +02:00
erwanlr
669e1458da
Fix #208 - Fixed vulnerable plugins still appear in the results
2013-07-24 14:18:02 +02:00
erwanlr
73f42bb73d
Merge pull request #247 from za/master
...
Update plugin_vulns.xml: SQL injection fixed in events-calendar version ...
2013-07-24 01:01:47 -07:00
Zaki Akhmad
f50a6477bc
Update plugin_vulns.xml: SQL injection fixed in events-calendar version 6.7.10
2013-07-24 14:01:59 +07:00
Christian Mehlmauer
501fbd825a
clean logfile on wpstools too
2013-07-23 19:10:51 +02:00
Christian Mehlmauer
02111bf9b4
updated data files
2013-07-23 18:17:24 +02:00
Christian Mehlmauer
0f7bc49992
wordpress.org is really unstable at the moment
2013-07-23 18:16:48 +02:00
Christian Mehlmauer
2fb6f7169a
fix issue #245
2013-07-23 12:20:26 +02:00
Christian Mehlmauer
95b1264f7f
Merge branch 'master' of github.com:wpscanteam/wpscan
2013-07-20 22:40:13 +02:00
Christian Mehlmauer
fc2ba604ea
Added pingback header
2013-07-20 22:39:01 +02:00
erwanlr
9743f60991
Merge pull request #246 from anantshri/master
...
removed feed plugin vulnerability issue
2013-07-20 04:50:32 -07:00
Anant Shrivastava
7239c8d848
removed feed plugin vulnerability issue
...
Removed Feed plugin vulnerability as this is not provable as well as there is no publically listed plugin nor any traces or a private plugin of such name. this corresponds to issue no #244
2013-07-20 16:05:00 +05:30
Christian Mehlmauer
bf10b25291
docs
2013-07-19 23:10:56 +02:00
Christian Mehlmauer
3b4790163c
fix rspecs
2013-07-19 23:07:58 +02:00
Christian Mehlmauer
fd1e0da4df
- Wordpress.com is instable
...
- request_timeout and connect_timeout implemented
2013-07-19 22:53:50 +02:00
Christian Mehlmauer
57755417f9
bugfix on output
2013-07-19 21:59:52 +02:00
Christian Mehlmauer
9caabfd586
docs
2013-07-19 21:51:04 +02:00
Christian Mehlmauer
37bffd6f1c
docs
2013-07-19 21:50:23 +02:00
Christian Mehlmauer
99ea17127d
docs
2013-07-19 21:49:57 +02:00
Christian Mehlmauer
bb35837ea1
output interesting http-headers
2013-07-19 14:14:13 +02:00
ethicalhack3r
f49b53b095
WPScan updated in backtrack.
2013-07-18 13:31:52 +02:00
ethicalhack3r
e93daabd8b
Small typo
2013-07-16 18:59:42 +02:00
ethicalhack3r
6bb6dfff2d
Added CVE-2008-1930 to WP 2.5
2013-07-16 18:57:18 +02:00
erwanlr
0f8f49f19c
Fix #241
2013-07-16 17:49:25 +02:00
erwanlr
85b4f987bb
Ensure that brute forcing results are output even if an error occurs or the user exits
2013-07-05 10:47:00 +02:00
erwanlr
a75dae8128
Added vulns & refs
2013-07-05 10:39:38 +02:00
ethicalhack3r
f2fc5294e8
Added Xorbin vlovk plugin vulns.
2013-07-01 10:14:06 +02:00