[Secure-testing-commits] r28070 - data/CVE

Michael Gilbert mgilbert at moszumanska.debian.org
Sun Aug 3 18:44:11 UTC 2014


Author: mgilbert
Date: 2014-08-03 18:44:11 +0000 (Sun, 03 Aug 2014)
New Revision: 28070

Modified:
   data/CVE/list
Log:
nfus

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-03 09:14:12 UTC (rev 28069)
+++ data/CVE/list	2014-08-03 18:44:11 UTC (rev 28070)
@@ -129,7 +129,7 @@
 CVE-2014-5115 (Absolute path traversal vulnerability in DirPHP 1.0 allows remote ...)
 	NOT-FOR-US: DirPHP
 CVE-2014-5114 (WeBid 1.1.1 allows remote attackers to conduct an LDAP injection ...)
-	TODO: check
+	NOT-FOR-US: WeBid Auction Script
 CVE-2014-5113 (Multiple cross-site scripting (XSS) vulnerabilities in test.php in ...)
 	NOT-FOR-US: Visualwave MyConnection Server
 CVE-2014-5112 (maint/modules/home/index.php in Fonality trixbox allows remote ...)
@@ -155,7 +155,7 @@
 CVE-2014-5102 (SQL injection vulnerability in vBulletin 5.0.4 through 5.1.3 Alpha 5 ...)
 	TODO: check
 CVE-2014-5101 (Multiple cross-site scripting (XSS) vulnerabilities in WeBid 1.1.1 ...)
-	TODO: check
+	NOT-FOR-US: WeBid Auction Script
 CVE-2014-5100 (Multiple cross-site request forgery (CSRF) vulnerabilities in Omeka ...)
 	NOT-FOR-US: Omeka
 CVE-2014-5099
@@ -485,7 +485,7 @@
 CVE-2014-4981
 	RESERVED
 CVE-2014-4980 (The /server/properties resource in Tenable Web UI before 2.3.5 for ...)
-	TODO: check
+	NOT-FOR-US: Tenable Web UI for Nessus
 CVE-2014-4979 (Apple QuickTime allows remote attackers to execute arbitrary code or ...)
 	NOT-FOR-US: Apple QuickTime
 CVE-2014-4977 (Multiple SQL injection vulnerabilities in Dell SonicWall Scrutinizer ...)




More information about the Secure-testing-commits mailing list