[Secure-testing-commits] r23367 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Wed Aug 21 05:53:43 UTC 2013


Author: carnil
Date: 2013-08-21 05:53:43 +0000 (Wed, 21 Aug 2013)
New Revision: 23367

Modified:
   data/CVE/list
Log:
three NFU in typo3 third party component

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-08-21 05:49:40 UTC (rev 23366)
+++ data/CVE/list	2013-08-21 05:53:43 UTC (rev 23367)
@@ -19,11 +19,11 @@
 CVE-2013-5306 (SQL injection vulnerability in the Browser - TYPO3 without PHP ...)
 	TODO: check
 CVE-2013-5305 (Cross-site scripting (XSS) vulnerability in the Store Locator ...)
-	TODO: check
+	NOT-FOR-US: typo3 third party component (locator)
 CVE-2013-5304 (SQL injection vulnerability in the Store Locator (locator) extension ...)
-	TODO: check
+	NOT-FOR-US: typo3 third party component (locator)
 CVE-2013-5303 (Unspecified vulnerability in the Store Locator (locator) extension ...)
-	TODO: check
+	NOT-FOR-US: typo3 third party component (locator)
 CVE-2013-5302 (SQL injection vulnerability in the Faceted Search (ke_search) ...)
 	NOT-FOR-US: Faceted Search Typo3 extension
 CVE-2013-5301 (Directory traversal vulnerability in help.php in Trustport Webfilter ...)




More information about the Secure-testing-commits mailing list