[Secure-testing-commits] r58507 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Dec 13 06:10:40 UTC 2017


Author: carnil
Date: 2017-12-13 06:10:40 +0000 (Wed, 13 Dec 2017)
New Revision: 58507

Modified:
   data/CVE/list
Log:
Add CVE-2017-11507/check-mk

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-13 05:42:21 UTC (rev 58506)
+++ data/CVE/list	2017-12-13 06:10:40 UTC (rev 58507)
@@ -20403,7 +20403,9 @@
 CVE-2017-11508 (SecurityCenter versions 5.5.0, 5.5.1 and 5.5.2 contain a SQL Injection ...)
 	NOT-FOR-US: SecurityCenter
 CVE-2017-11507 (A cross site scripting (XSS) vulnerability exists in Check_MK versions ...)
-	TODO: check
+	- check-mk 1.2.8p26-1
+	NOTE: http://mathias-kettner.com/check_mk_werks.php?werk_id=7661
+	NOTE: https://www.tenable.com/security/research/tra-2017-20
 CVE-2017-11506 (When linking a Nessus scanner or agent to Tenable.io or other manager, ...)
 	NOT-FOR-US: Nessus
 CVE-2017-11565 (debian/tor.init in the Debian tor_0.2.9.11-1~deb9u1 package for Tor was ...)




More information about the Secure-testing-commits mailing list