[Secure-testing-commits] r25456 - data/CVE

Federico Ceratto federico-guest at moszumanska.debian.org
Sat Feb 1 10:41:38 UTC 2014


Author: federico-guest
Date: 2014-02-01 10:41:38 +0000 (Sat, 01 Feb 2014)
New Revision: 25456

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-31 22:38:27 UTC (rev 25455)
+++ data/CVE/list	2014-02-01 10:41:38 UTC (rev 25456)
@@ -325,7 +325,7 @@
 CVE-2014-1695
 	RESERVED
 CVE-2013-7318 (Cross-site scripting (XSS) vulnerability in BusinessFlow/login in ...)
-	TODO: check
+	NOT-FOR-US: AlgoSec Firewall Analyzer
 CVE-2014-1750
 	RESERVED
 	NOT-FOR-US: WordPress plugin nokia-mapsplaces
@@ -1851,13 +1851,13 @@
 CVE-2014-0839
 	RESERVED
 CVE-2014-0838 (The AutoUpdate package before 6.4 for IBM Security QRadar SIEM 7.2 MR1 ...)
-	TODO: check
+	NOT-FOR-US: IBM Security QRadar SIEM
 CVE-2014-0837 (The AutoUpdate process in IBM Security QRadar SIEM 7.2 MR1 and earlier ...)
-	TODO: check
+	NOT-FOR-US: IBM Security QRadar SIEM
 CVE-2014-0836 (Cross-site scripting (XSS) vulnerability in IBM Security QRadar SIEM ...)
-	TODO: check
+	NOT-FOR-US: IBM Security QRadar SIEM
 CVE-2014-0835 (Cross-site request forgery (CSRF) vulnerability in IBM Security QRadar ...)
-	TODO: check
+	NOT-FOR-US: IBM Security QRadar SIEM
 CVE-2014-0834
 	RESERVED
 CVE-2014-0833
@@ -1907,7 +1907,7 @@
 CVE-2014-0811
 	RESERVED
 CVE-2014-0810 (Unspecified vulnerability in JustSystems Sanshiro 2007 before update ...)
-	TODO: check
+	NOT-FOR-US: JustSystems Sanshiro 2007
 CVE-2014-0809 (Directory traversal vulnerability in the Gapless Player SimZip (aka ...)
 	NOT-FOR-US: Gapless Player SimZip
 CVE-2014-0808 (The lfCheckError function in ...)
@@ -2386,9 +2386,9 @@
 CVE-2013-7250 (Cross-site scripting (XSS) vulnerability in the JsonBuilder ...)
 	NOT-FOR-US: ProjectForge
 CVE-2013-7248 (Franklin Fueling Systems TS-550 evo with firmware 2.0.0.6833 and other ...)
-	TODO: check
+	NOT-FOR-US: Franklin Fueling Systems TS-550
 CVE-2013-7247 (cgi-bin/tsaws.cgi in Franklin Fueling Systems TS-550 evo with firmware ...)
-	TODO: check
+	NOT-FOR-US: Franklin Fueling Systems TS-550
 CVE-2013-7246
 	RESERVED
 CVE-2013-7245
@@ -2845,7 +2845,7 @@
 CVE-2013-7176
 	RESERVED
 CVE-2013-7175 (Multiple SQL injection vulnerabilities in Avanset Visual CertExam ...)
-	TODO: check
+	NOT-FOR-US: Avanset Visual CertExam Manager
 CVE-2013-7174 (Absolute path traversal vulnerability in cgi-bin/jc.cgi in QNAP QTS ...)
 	NOT-FOR-US: QNAP QTS
 CVE-2013-7173
@@ -3914,9 +3914,9 @@
 CVE-2013-6932 (Buffer overflow in IrfanView before 4.37, when a multibyte-character ...)
 	NOT-FOR-US: IrfanView
 CVE-2013-6931 (SQL injection vulnerability in the API in Cybozu Garoon 3.7.x before ...)
-	TODO: check
+	NOT-FOR-US: Cybozu Garoon
 CVE-2013-6930 (SQL injection vulnerability in the page-navigation implementation in ...)
-	TODO: check
+	NOT-FOR-US: Cybozu Garoon
 CVE-2013-6929 (SQL injection vulnerability in Cybozu Garoon 3.7 SP2 and earlier ...)
 	NOT-FOR-US: Cybozu Garoon
 CVE-2013-6928
@@ -4931,7 +4931,7 @@
 CVE-2013-6787 (SQL injection vulnerability in the check_user_password function in ...)
 	NOT-FOR-US: Chamilo LMS
 CVE-2013-6786 (Cross-site scripting (XSS) vulnerability in Allegro RomPager before ...)
-	TODO: check
+	NOT-FOR-US: Allegro RomPager
 CVE-2013-6785
 	RESERVED
 CVE-2013-6784
@@ -5004,11 +5004,11 @@
 CVE-2013-6750
 	RESERVED
 CVE-2013-6749 (Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr ...)
-	TODO: check
+	NOT-FOR-US: IBM Lotus Quickr
 CVE-2013-6748 (Buffer overflow in the ActiveX control in qp2.cab in IBM Lotus Quickr ...)
-	TODO: check
+	NOT-FOR-US: IBM Lotus Quickr
 CVE-2013-6747 (IBM GSKit 7.x before 7.0.4.48 and 8.x before 8.0.50.16, as used in IBM ...)
-	TODO: check
+	NOT-FOR-US: IBM GSKit
 CVE-2013-6746 (Cross-site scripting (XSS) vulnerability in FileNet P8 Platform ...)
 	TODO: check
 CVE-2013-6745 (Cross-site scripting (XSS) vulnerability in the IMS server before Ifix ...)




More information about the Secure-testing-commits mailing list