[Secure-testing-commits] r50914 - data/CVE
    security tracker role 
    sectracker at moszumanska.debian.org
       
    Sat Apr 22 09:10:12 UTC 2017
    
    
  
Author: sectracker
Date: 2017-04-22 09:10:12 +0000 (Sat, 22 Apr 2017)
New Revision: 50914
Modified:
   data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-22 08:06:12 UTC (rev 50913)
+++ data/CVE/list	2017-04-22 09:10:12 UTC (rev 50914)
@@ -1,3 +1,5 @@
+CVE-2017-8052 (Craft CMS before 2.6.2974 allows XSS attacks. ...)
+	TODO: check
 CVE-2017-8051 (Tenable Appliance 3.5 - 4.4.0, and possibly prior versions, contains a ...)
 	NOT-FOR-US: Tenable Appliance
 CVE-2017-8050 (Tenable Appliance 4.4.0, and possibly prior, contains a flaw in the Web ...)
@@ -123,8 +125,8 @@
 	NOT-FOR-US: Heartland Payment Systems Payment Gateway PHP SDK
 CVE-2016-10348
 	RESERVED
-CVE-2017-7991
-	RESERVED
+CVE-2017-7991 (Exponent CMS 2.4.1 and earlier has SQL injection via a base64 ...)
+	TODO: check
 CVE-2017-7990 (The Reporting Module 1.12.0 for OpenMRS allows CSRF attacks with ...)
 	NOT-FOR-US: OpenMRS
 CVE-2017-7989
    
    
More information about the Secure-testing-commits
mailing list