[Secure-testing-commits] r14181 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Thu Mar 4 02:37:11 UTC 2010


Author: gilbert-guest
Date: 2010-03-04 02:37:08 +0000 (Thu, 04 Mar 2010)
New Revision: 14181

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-03-04 02:07:18 UTC (rev 14180)
+++ data/CVE/list	2010-03-04 02:37:08 UTC (rev 14181)
@@ -39,25 +39,25 @@
 CVE-2010-0805
 	RESERVED
 CVE-2010-0804 (Cross-site scripting (XSS) vulnerability in index.php in iBoutique 4.0 ...)
-	TODO: check
+	NOT-FOR-US: iBoutique
 CVE-2010-0803 (SQL injection vulnerability in the jVideoDirect (com_jvideodirect) ...)
-	TODO: check
+	NOT-FOR-US: jVideoDirect
 CVE-2010-0802 (SQL injection vulnerability in index.php in (nv2) Awards 1.1.0, a ...)
-	TODO: check
+	NOT-FOR-US: Invision Power Board
 CVE-2010-0801 (Directory traversal vulnerability in the AutartiTarot ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0800 (SQL injection vulnerability in the Ossolution Team Documents Seller ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0799 (Directory traversal vulnerability in misc/tell_a_friend/tell.php in ...)
-	TODO: check
+	NOT-FOR-US: phpunity.newsmanager
 CVE-2010-0798 (SQL injection vulnerability in the T3BLOG extension 0.6.2 and earlier ...)
 	TODO: check
 CVE-2010-0797 (Cross-site scripting (XSS) vulnerability in the T3BLOG extension 0.6.2 ...)
 	TODO: check
 CVE-2010-0796 (SQL injection vulnerability in the JE Quiz (com_jequizmanagement) ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0795 (SQL injection vulnerability in the JE Event Calendars ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0794
 	RESERVED
 CVE-2010-0793
@@ -119,33 +119,33 @@
 CVE-2010-0766
 	RESERVED
 CVE-2010-0765 (fipsForum 2.6 stores sensitive information under the web root with ...)
-	TODO: check
+	NOT-FOR-US: fipsForum
 CVE-2010-0764 (SQL injection vulnerability in index.php in KuwaitPHP eSmile allows ...)
-	TODO: check
+	NOT-FOR-US: KuwaitPHP eSmile
 CVE-2010-0763 (SQL injection vulnerability in index.php in CommodityRentals Vacation ...)
-	TODO: check
+	NOT-FOR-US: ComodityRentals Vacation Rental Software
 CVE-2010-0762 (SQL injection vulnerability in index.php in CommodityRentals CD Rental ...)
-	TODO: check
+	NOT-FOR-US: CommodityRentals CD Rental Software
 CVE-2010-0761 (SQL injection vulnerability in index.php in CommodityRentals ...)
-	TODO: check
+	NOT-FOR-US: CommodityRentals Books/eBooks Rentals Script
 CVE-2010-0760 (Multiple directory traversal vulnerabilities in the Core Design ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0759 (Directory traversal vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0758 (SQL injection vulnerability in news_desc.php in Softbiz Jobs allows ...)
-	TODO: check
+	NOT-FOR-US: Softbiz Jobs
 CVE-2010-0757 (Unrestricted file upload vulnerability in index.php/Attach in WikyBlog ...)
-	TODO: check
+	NOT-FOR-US: WikyBlog
 CVE-2010-0756 (Session fixation vulnerability in WikyBlog 1.7.3 rc2 allows remote ...)
-	TODO: check
+	NOT-FOR-US: WikyBlog
 CVE-2010-0755 (PHP remote file inclusion vulnerability in include/WBmap.php in ...)
-	TODO: check
+	NOT-FOR-US: WikyBlog
 CVE-2010-0754 (Cross-site scripting (XSS) vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: WikyBlog
 CVE-2010-0753 (SQL injection vulnerability in the SQL Reports (com_sqlreport) ...)
-	TODO: check
+	NOT-FOR-US: Joomla!
 CVE-2010-0752 (The week_post_page function in the Weekly Archive by Node Type module ...)
-	TODO: check
+	NOT-FOR-US: Weekly Archive by Node Type (Drupal module)
 CVE-2010-0751
 	RESERVED
 CVE-2010-0750
@@ -203,9 +203,9 @@
 CVE-2009-4652 (The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in ...)
 	TODO: check
 CVE-2003-1590 (Unspecified vulnerability in Sun ONE (aka iPlanet) Web Server 6.0 SP3 ...)
-	TODO: check
+	NOT-FOR-US: Sun ONE Web Server
 CVE-2003-1589 (Unspecified vulnerability in Sun ONE (aka iPlanet) Web Server 4.1 ...)
-	TODO: check
+	NOT-FOR-US: Sun ONE Web Server
 CVE-2010-0725 (Cross-site scripting (XSS) vulnerability in showimg.php in Arab Cart ...)
 	NOT-FOR-US: Arab Cart
 CVE-2010-0724 (SQL injection vulnerability in showimg.php in Arab Cart 1.0.2.0 allows ...)
@@ -1032,9 +1032,9 @@
 CVE-2010-0418
 	RESERVED
 CVE-2010-0417 (Buffer overflow in common/util/rlstate.cpp in Helix Player 1.0.6 and ...)
-	TODO: check
+	NOT-FOR-US: RealPlayer/Helix Player
 CVE-2010-0416 (Buffer overflow in the Unescape function in common/util/hxurl.cpp and ...)
-	TODO: check
+	NOT-FOR-US: RealPlayer/Helix Player
 CVE-2010-0415 (The do_pages_move function in mm/migrate.c in the Linux kernel before ...)
 	{DSA-2005-1 DSA-2003-1 DSA-1996-1}
 	- linux-2.6 2.6.32-8




More information about the Secure-testing-commits mailing list