[Canvas] Agora 2.20 is out

Yuriy Gurkin audit at gleg.net
Mon Feb 25 13:40:41 EST 2013


Hi list,
Agora 2.20 is out with bunch of nice web exploits targeting highly
popular web related software.
For example "Powered By Piwigo" yields more than 4 millions in google.
A new version of wordpress scanner tool with new modules added to it
will also be helpfull in your tests.
highlighted modules list:
- WordPress Advanced Custom Fields Plugin Remote File Inclusion
- Piwigo 2.4.6 Remote Arbitrary File Read and Delete
- Hiverr v2.2 Get the administrator password
- Cometchat Remote PHP Code Execution
Regards.


More information about the Canvas mailing list