lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-Id: <201311051445.rA5EjA8O007543@sf01web3.securityfocus.com> Date: Tue, 5 Nov 2013 14:45:10 GMT From: iedb.team@...il.com To: bugtraq@...urityfocus.com Subject: wordpress jigoshop Plugin path disclosure vulnerabilities the following directories is vulnerable to path disclosure vulnerability in wordpress jigoshop Plugin 1.8 ################################# # # @@@ @@@@@@@@@@@ @@@@@ @@@@@@@@@@ @@@ @@@@@@@ # @@@ @@@@@@@@@@@ @@@ @@ @@@ @@ @@@ @@@@@@@@ # @@@ @@@ @@@ @@ @@@ @@ @@@ @@@ @@@ # @@@ @@@ @@@ @@ @@@ @@ @@@ @@@ @@@ # @@@ @@@@@@@@@@@ @@@ @ @@@@@@@@@@ @@@ @@@@@@ # @@@ @@@@@@@@@@@ @@@ @@ @@@ @@ @@@ @@@@@@ # @@@ @@@ @@@ @@ @@@ @@ @@@ @@@ @@@ @@@ # @@@ @@@ @@@ @@ @@@ @@ @@@ @@@ @@@ @@@ # @@@ @@@@@@@@@@@ @@@@@ @@@@@@@@@@ @@@ @@@ @@@ @@@ # ##################################### # Iranian Exploit DataBase # Exploit Title : wordpress jigoshop Plugin path disclosure vulnerabilities # Author : Iranian Exploit DataBase # Discovered By : IeDb # Email : IeDb.Team@...il.com # Home : http://iedb.ir - http://iedb.ir/acc # Fb Page : https://www.facebook.com/pages/Exploit-And-Security-Team-iedbir/199266860256538 # Software Link : http://wordpress.org/plugins/jigoshop # Version : 1.8 # Security Risk : Low # Tested on : Linux # Dork : inurl:/wp-content/plugins/jigoshop/ ################################# # BuG : # http://site.com/wp-content/plugins/jigoshop/jigoshop_cron.php # http://site.com/wp-content/plugins/jigoshop/jigoshop.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_emails.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_query.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_shortcodes.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_actions.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_taxonomy.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_template_actions.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_template_functions.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_templates.php # http://site.com/wp-content/plugins/jigoshop/jigoshop_widgets.php # Dem0 : # http://friedemodin.com/wp-content/plugins/jigoshop/jigoshop_actions.php # http://www.improviseforreal.com/wp-content/plugins/jigoshop/jigoshop_cron.php # http://3plus1architectes.fr/societe/wp-content/plugins/jigoshop/jigoshop_query.php # http://www.marite-creations.com/smtb/wp-content/plugins/jigoshop/jigoshop_taxonomy.php # http://www.toysonfurnishing.com/wp-content/plugins/jigoshop/jigoshop_widgets.php ################################# # Tnx To : Behzad - Medrik - Bl4ck M4n - F@riD - TaK.FaNaR - ErfanMs - r3d_s0urc3 - Dr_Evil # 0x0ptim0us - ARTA - 0Day - Det3cT0r - Dj.TiniVini - E2MA3N - H-SK33PY - l4tr0d3ctism - E2MA3N # All Member In Iedb.ir/acc & Iranian Hackers ################################# # Exploit Archive = http://www.iedb.ir/exploits-810.html #################################