[Secure-testing-commits] r27647 - data/CVE

Henri Salo fgeek-guest at moszumanska.debian.org
Tue Jul 8 09:31:47 UTC 2014


Author: fgeek-guest
Date: 2014-07-08 09:31:47 +0000 (Tue, 08 Jul 2014)
New Revision: 27647

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-07-08 09:14:12 UTC (rev 27646)
+++ data/CVE/list	2014-07-08 09:31:47 UTC (rev 27647)
@@ -3,13 +3,13 @@
 	- libemail-address-perl 1.905-1
 	[squeeze] - libemail-address-perl 1.889-2+deb6u1
 CVE-2014-4719 (Cross-site scripting (XSS) vulnerability in the login panel ...)
-	TODO: check
+	NOT-FOR-US: User-Friendly SVN
 CVE-2014-4718 (Multiple cross-site request forgery (CSRF) vulnerabilities in Lunar ...)
-	TODO: check
+	NOT-FOR-US: Lunar CMS
 CVE-2014-4717 (Multiple cross-site request forgery (CSRF) vulnerabilities in the ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin simple-share-buttons-adder
 CVE-2014-4716 (Cross-site request forgery (CSRF) vulnerability in Thomson TWG87OUIR ...)
-	TODO: check
+	NOT-FOR-US: Thomson TWG87OUIR
 CVE-2014-4714
 	RESERVED
 CVE-2014-4713
@@ -72,25 +72,25 @@
 CVE-2014-4697
 	RESERVED
 CVE-2014-4696 (Multiple open redirect vulnerabilities in the Suricata package before ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4695 (Multiple open redirect vulnerabilities in the Snort package before ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4694 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4693 (Multiple cross-site scripting (XSS) vulnerabilities in the Snort ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4692 (pfSense before 2.1.4, when HTTP is used, does not include the HTTPOnly ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4691 (Session fixation vulnerability in pfSense before 2.1.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4690 (Multiple directory traversal vulnerabilities in pfSense before 2.1.4 ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4689 (Absolute path traversal vulnerability in pkg_edit.php in pfSense ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4688 (pfSense before 2.1.4 allows remote authenticated users to execute ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4687 (Multiple cross-site scripting (XSS) vulnerabilities in pfSense before ...)
-	TODO: check
+	NOT-FOR-US: pfSense
 CVE-2014-4686
 	RESERVED
 CVE-2014-4685
@@ -301,43 +301,43 @@
 	- lzo <removed>
 	- lzo2 <unfixed> (bug #752861)
 CVE-2014-4606 (Cross-site scripting (XSS) vulnerability in redirect_to_zeenshare.php ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin ZeenShare
 CVE-2014-4605 (Cross-site scripting (XSS) vulnerability in cal/test.php in the ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin ZdStatistics
 CVE-2014-4604 (Cross-site scripting (XSS) vulnerability in settings/pwsettings.php in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin Your Text Manager
 CVE-2014-4603 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin Yahoo Updates
 CVE-2014-4602 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin XEN Carousel
 CVE-2014-4601 (Cross-site scripting (XSS) vulnerability in wu-ratepost.php in the ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin Wu-Rating
 CVE-2014-4600 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP Ultimate Email Marketer
 CVE-2014-4599 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP-Business Directory
 CVE-2014-4598 (Cross-site scripting (XSS) vulnerability in wp-tmkm-amazon-search.php ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin wp-tmkm-amazon
 CVE-2014-4597 (Cross-site scripting (XSS) vulnerability in test.php in the WP Social ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP Social Invitations
 CVE-2014-4596 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin SnapApp
 CVE-2014-4595 (Multiple cross-site scripting (XSS) vulnerabilities in the WP RESTful ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP RESTful
 CVE-2014-4594 (Cross-site scripting (XSS) vulnerability in index.php in the WordPress ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin Responsive Preview
 CVE-2014-4593 (Cross-site scripting (XSS) vulnerability in wp-plugins-net/index.php ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP Plugin Manager
 CVE-2014-4592
 	RESERVED
 CVE-2014-4591 (Cross-site scripting (XSS) vulnerability in picasa_upload.php in the ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP-Picasa-Image
 CVE-2014-4590 (Cross-site scripting (XSS) vulnerability in get.php in the WP ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin WP Microblogs
 CVE-2014-4589 (Cross-site scripting (XSS) vulnerability in uploader.php in the WP ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin wp-media-player
 CVE-2014-4588 (Cross-site scripting (XSS) vulnerability in tpls/editmedia.php in the ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin wphotfiles
 CVE-2014-4587 (Multiple cross-site scripting (XSS) vulnerabilities in the WP GuestMap ...)
 	TODO: check
 CVE-2014-4586




More information about the Secure-testing-commits mailing list