[Secure-testing-commits] r28267 - data/CVE
Henri Salo
fgeek-guest at moszumanska.debian.org
Thu Aug 14 06:11:21 UTC 2014
Author: fgeek-guest
Date: 2014-08-14 06:11:21 +0000 (Thu, 14 Aug 2014)
New Revision: 28267
Modified:
data/CVE/list
Log:
NFUs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-08-14 06:05:57 UTC (rev 28266)
+++ data/CVE/list 2014-08-14 06:11:21 UTC (rev 28267)
@@ -51,53 +51,53 @@
CVE-2014-5208
RESERVED
CVE-2014-5202 (Cross-site scripting (XSS) vulnerability in compfight-search.php in ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin compfight
CVE-2014-5201 (SQL injection vulnerability in the Gallery Objects plugin 0.4 for ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin gallery-objects
CVE-2014-5200 (SQL injection vulnerability in game_play.php in the FB Gorilla plugin ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin fbgorilla
CVE-2014-5199 (Cross-site request forgery (CSRF) vulnerability in the WordPress File ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin wp-file-upload
CVE-2014-5198 (Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk ...)
TODO: check
CVE-2014-5197 (Directory traversal vulnerability in (1) Splunk Web or the (2) Splunkd ...)
TODO: check
CVE-2014-5196 (Cross-site scripting (XSS) vulnerability in ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin improved-user-search-in-backend
CVE-2014-5195 (Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not ...)
TODO: check
CVE-2014-5194 (Static code injection vulnerability in admin/admin.php in Sphider ...)
- TODO: check
+ NOT-FOR-US: Sphider
CVE-2014-5193 (Cross-site scripting (XSS) vulnerability in admin/admin.php in Sphider ...)
- TODO: check
+ NOT-FOR-US: Sphider
CVE-2014-5192 (SQL injection vulnerability in admin/admin.php in Sphider 1.3.6 allows ...)
- TODO: check
+ NOT-FOR-US: Sphider
CVE-2014-5191 (Cross-site scripting (XSS) vulnerability in the Preview plugin before ...)
TODO: check
CVE-2014-5190 (Cross-site scripting (XSS) vulnerability in ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin SI CAPTCHA Anti-Spam
CVE-2014-5189 (SQL injection vulnerability in lib/optin/optin_page.php in the Lead ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin Lead-Octopus-Power
CVE-2014-5188 (Cross-site scripting (XSS) vulnerability in doemailpassword.tml in ...)
- TODO: check
+ NOT-FOR-US: Lyris ListManager
CVE-2014-5187 (Directory traversal vulnerability in the Tom M8te (tom-m8te) plugin ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin tom-m8te
CVE-2014-5186 (SQL injection vulnerability in the All Video Gallery ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin all-video-gallery
CVE-2014-5185 (SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin quartz
CVE-2014-5184 (SQL injection vulnerability in the stripshow-storylines page in the ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin stripshow
CVE-2014-5183 (SQL injection vulnerability in includes/mode-edit.php in the Simple ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin simple-retail-menus
CVE-2014-5182 (Multiple SQL injection vulnerabilities in the yawpp plugin 1.2 for ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin yawpp
CVE-2014-5181 (Directory traversal vulnerability in lastfm-proxy.php in the Last.fm ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin lastfm-rotation
CVE-2014-5180 (SQL injection vulnerability in the videos page in the HDW Player ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin hdw-player-video-player-video-gallery
CVE-2014-5178 (Multiple cross-site scripting (XSS) vulnerabilities in Easy File ...)
- TODO: check
+ NOT-FOR-US: Easy File Sharing
CVE-2014-5176 (SAP FI Manager Self-Service has a hard-coded user name, which makes it ...)
TODO: check
CVE-2014-5175 (The License Measurement servlet in SAP Solution Manager 7.1 allows ...)
@@ -406,7 +406,7 @@
CVE-2014-5083
RESERVED
CVE-2014-5082 (Multiple SQL injection vulnerabilities in admin/admin.php in Sphider ...)
- TODO: check
+ NOT-FOR-US: Sphider
CVE-2014-5081
RESERVED
CVE-2014-5080
More information about the Secure-testing-commits
mailing list