[Secure-testing-commits] r28267 - data/CVE

Henri Salo fgeek-guest at moszumanska.debian.org
Thu Aug 14 06:11:21 UTC 2014


Author: fgeek-guest
Date: 2014-08-14 06:11:21 +0000 (Thu, 14 Aug 2014)
New Revision: 28267

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-14 06:05:57 UTC (rev 28266)
+++ data/CVE/list	2014-08-14 06:11:21 UTC (rev 28267)
@@ -51,53 +51,53 @@
 CVE-2014-5208
 	RESERVED
 CVE-2014-5202 (Cross-site scripting (XSS) vulnerability in compfight-search.php in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin compfight
 CVE-2014-5201 (SQL injection vulnerability in the Gallery Objects plugin 0.4 for ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin gallery-objects
 CVE-2014-5200 (SQL injection vulnerability in game_play.php in the FB Gorilla plugin ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin fbgorilla
 CVE-2014-5199 (Cross-site request forgery (CSRF) vulnerability in the WordPress File ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin wp-file-upload
 CVE-2014-5198 (Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk ...)
 	TODO: check
 CVE-2014-5197 (Directory traversal vulnerability in (1) Splunk Web or the (2) Splunkd ...)
 	TODO: check
 CVE-2014-5196 (Cross-site scripting (XSS) vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin improved-user-search-in-backend
 CVE-2014-5195 (Unity before 7.2.3 and 7.3.x before 7.3.1, as used in Ubuntu, does not ...)
 	TODO: check
 CVE-2014-5194 (Static code injection vulnerability in admin/admin.php in Sphider ...)
-	TODO: check
+	NOT-FOR-US: Sphider
 CVE-2014-5193 (Cross-site scripting (XSS) vulnerability in admin/admin.php in Sphider ...)
-	TODO: check
+	NOT-FOR-US: Sphider
 CVE-2014-5192 (SQL injection vulnerability in admin/admin.php in Sphider 1.3.6 allows ...)
-	TODO: check
+	NOT-FOR-US: Sphider
 CVE-2014-5191 (Cross-site scripting (XSS) vulnerability in the Preview plugin before ...)
 	TODO: check
 CVE-2014-5190 (Cross-site scripting (XSS) vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin SI CAPTCHA Anti-Spam
 CVE-2014-5189 (SQL injection vulnerability in lib/optin/optin_page.php in the Lead ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin Lead-Octopus-Power
 CVE-2014-5188 (Cross-site scripting (XSS) vulnerability in doemailpassword.tml in ...)
-	TODO: check
+	NOT-FOR-US: Lyris ListManager
 CVE-2014-5187 (Directory traversal vulnerability in the Tom M8te (tom-m8te) plugin ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin tom-m8te
 CVE-2014-5186 (SQL injection vulnerability in the All Video Gallery ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin all-video-gallery
 CVE-2014-5185 (SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin quartz
 CVE-2014-5184 (SQL injection vulnerability in the stripshow-storylines page in the ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin stripshow
 CVE-2014-5183 (SQL injection vulnerability in includes/mode-edit.php in the Simple ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin simple-retail-menus
 CVE-2014-5182 (Multiple SQL injection vulnerabilities in the yawpp plugin 1.2 for ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin yawpp
 CVE-2014-5181 (Directory traversal vulnerability in lastfm-proxy.php in the Last.fm ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin lastfm-rotation
 CVE-2014-5180 (SQL injection vulnerability in the videos page in the HDW Player ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin hdw-player-video-player-video-gallery
 CVE-2014-5178 (Multiple cross-site scripting (XSS) vulnerabilities in Easy File ...)
-	TODO: check
+	NOT-FOR-US: Easy File Sharing
 CVE-2014-5176 (SAP FI Manager Self-Service has a hard-coded user name, which makes it ...)
 	TODO: check
 CVE-2014-5175 (The License Measurement servlet in SAP Solution Manager 7.1 allows ...)
@@ -406,7 +406,7 @@
 CVE-2014-5083
 	RESERVED
 CVE-2014-5082 (Multiple SQL injection vulnerabilities in admin/admin.php in Sphider ...)
-	TODO: check
+	NOT-FOR-US: Sphider
 CVE-2014-5081
 	RESERVED
 CVE-2014-5080




More information about the Secure-testing-commits mailing list