[Secure-testing-commits] r19414 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Sun Jun 3 07:07:18 UTC 2012


Author: fgeek-guest
Date: 2012-06-03 07:07:17 +0000 (Sun, 03 Jun 2012)
New Revision: 19414

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-06-02 21:14:35 UTC (rev 19413)
+++ data/CVE/list	2012-06-03 07:07:17 UTC (rev 19414)
@@ -299,7 +299,7 @@
 CVE-2012-2953
 	RESERVED
 CVE-2012-2952 (SQL injection vulnerability in add_ons.php in Jaow 2.4.5 and earlier ...)
-	TODO: check
+	NOT-FOR-US: Jaow
 CVE-2012-2951 (SQL injection vulnerability in plog-rss.php in Plogger allows remote ...)
 	NOT-FOR-US: Plogger
 CVE-2012-2950
@@ -382,15 +382,15 @@
 CVE-2012-2921 (Universal Feed Parser (aka feedparser or python-feedparser) before ...)
 	- feedparser 5.1.2-1 (bug #674167)
 CVE-2012-2920 (Cross-site scripting (XSS) vulnerability in the userphoto_options_page ...)
-	TODO: check
+	NOT-FOR-US: WordPress User Photo plugin
 CVE-2012-2919 (Directory traversal vulnerability in Upload/engine.php in Chevereto ...)
 	NOT-FOR-US: Chevereto
 CVE-2012-2918 (Cross-site scripting (XSS) vulnerability in Upload/engine.php in ...)
 	NOT-FOR-US: Chevereto
 CVE-2012-2917 (Cross-site scripting (XSS) vulnerability in the Share and Follow ...)
-	TODO: check
+	NOT-FOR-US: WordPress Share and Follow plugin
 CVE-2012-2916 (Cross-site scripting (XSS) vulnerability in sabre_class_admin.php in ...)
-	TODO: check
+	NOT-FOR-US: WordPress SABRE plugin
 CVE-2012-2915 (Stack-based buffer overflow in Lattice Semiconductor PAC-Designer ...)
 	NOT-FOR-US: Lattice Semiconductor PAC-Designer
 CVE-2012-2914 (Cross-site scripting (XSS) vulnerability in captchademo.php in ...)




More information about the Secure-testing-commits mailing list