[Secure-testing-commits] r13639 - data/CVE

Steffen Joeris white at alioth.debian.org
Wed Dec 23 21:40:42 UTC 2009


Author: white
Date: 2009-12-23 21:40:42 +0000 (Wed, 23 Dec 2009)
New Revision: 13639

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-12-23 21:14:17 UTC (rev 13638)
+++ data/CVE/list	2009-12-23 21:40:42 UTC (rev 13639)
@@ -1,49 +1,49 @@
 CVE-2009-4401 (SQL injection vulnerability in the Parish Administration Database ...)
-	TODO: check
+	NOT-FOR-US: ste_parish_admin typo3 extension
 CVE-2009-4400 (Cross-site scripting (XSS) vulnerability in the Parish Administration ...)
-	TODO: check
+	NOT-FOR-US: ste_parish_admin typo3 extension
 CVE-2009-4399 (SQL injection vulnerability in the Parish of the Holy Spirit Religious ...)
-	TODO: check
+	NOT-FOR-US: hs_religiousartgallery typo3 extension
 CVE-2009-4398 (Cross-site scripting (XSS) vulnerability in the Parish of the Holy ...)
-	TODO: check
+	NOT-FOR-US: hs_religiousartgallery typo3 extension
 CVE-2009-4397 (Cross-site scripting (XSS) vulnerability in the Diocese of Portsmouth ...)
-	TODO: check
+	NOT-FOR-US: pd_resources typo3 extension
 CVE-2009-4396 (SQL injection vulnerability in the Diocese of Portsmouth Resources ...)
-	TODO: check
+	NOT-FOR-US: pd_resources typo3 extension
 CVE-2009-4395 (Cross-site scripting (XSS) vulnerability in the Random Prayer 2 ...)
-	TODO: check
+	NOT-FOR-US: ste_prayer2 typo3 extension
 CVE-2009-4394 (SQL injection vulnerability in the Random Prayer 2 (ste_prayer2) ...)
-	TODO: check
+	NOT-FOR-US: ste_prayer2 typo3 extension
 CVE-2009-4393 (SQL injection vulnerability in the Document Directorys ...)
-	TODO: check
+	NOT-FOR-US: danp_documentdirs
 CVE-2009-4392 (SQL injection vulnerability in the XDS Staff List (xds_staff) ...)
-	TODO: check
+	NOT-FOR-US: xds_staff typo3 extension
 CVE-2009-4391 (Cross-site scripting (XSS) vulnerability in the File list (dr_blob) ...)
-	TODO: check
+	NOT-FOR-US: dr_blob typo3 extension
 CVE-2009-4390 (SQL injection vulnerability in the Car (car) extension 0.1.1 for TYPO3 ...)
-	TODO: check
+	NOT-FOR-US: car typo3 extension
 CVE-2009-4389 (Unspecified vulnerability in the Watchdog (aba_watchdog) extension ...)
-	TODO: check
+	NOT-FOR-US: aba_watchdog typo3 extension
 CVE-2009-4388 (Cross-site scripting (XSS) vulnerability in the ListMan (nl_listman) ...)
-	TODO: check
+	NOT-FOR-US: nl_listman typo3 extension
 CVE-2009-4387 (The cross-site scripting (XSS) protection mechanism in ...)
-	TODO: check
+	NOT-FOR-US: ManageEngine Password Manager Pro (PMP)
 CVE-2009-4386 (SQL injection vulnerability in hotel_tiempolibre_ext.php in Venalsur ...)
-	TODO: check
+	NOT-FOR-US: Venalsur Booking Centre Booking System
 CVE-2009-4385 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: Scriptsez.net Ez Poll Hoster 
 CVE-2009-4384 (Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net ...)
-	TODO: check
+	NOT-FOR-US: Scriptsez.net Ez Poll Hoster 
 CVE-2009-4383 (Directory traversal vulnerability in Pforum.php in Rocomotion P forum ...)
-	TODO: check
+	NOT-FOR-US: Rocomotion P forum
 CVE-2009-4382 (Cross-site scripting (XSS) vulnerability in module.php in PHPFABER ...)
-	TODO: check
+	NOT-FOR-US: PHPFABER CMS
 CVE-2009-4381 (Cross-site scripting (XSS) vulnerability in index.php in texmedia ...)
-	TODO: check
+	NOT-FOR-US: texmedia Million Pixel Script
 CVE-2009-4380 (Multiple SQL injection vulnerabilities in Valarsoft Webmatic before ...)
-	TODO: check
+	NOT-FOR-US: Valarsoft Webmatic
 CVE-2009-4379 (Multiple cross-site scripting (XSS) vulnerabilities in Valarsoft ...)
-	TODO: check
+	NOT-FOR-US: Valarsoft Webmatic
 CVE-2010-0095
 	RESERVED
 CVE-2010-0094




More information about the Secure-testing-commits mailing list