[Secure-testing-commits] r54033 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jul 28 21:07:03 UTC 2017


Author: carnil
Date: 2017-07-28 21:07:03 +0000 (Fri, 28 Jul 2017)
New Revision: 54033

Modified:
   data/CVE/list
Log:
Add two glpi issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-28 21:06:53 UTC (rev 54032)
+++ data/CVE/list	2017-07-28 21:07:03 UTC (rev 54033)
@@ -1372,9 +1372,11 @@
 CVE-2017-11185
 	RESERVED
 CVE-2017-11184 (SQL injection exists in front/devicesoundcard.php in GLPI before 9.1.5 ...)
-	TODO: check
+	- glpi <removed> (unimportant)
+	NOTE: Only supported behind an authenticated HTTP zone
 CVE-2017-11183 (front/backup.php in GLPI before 9.1.5 allows remote authenticated ...)
-	TODO: check
+	- glpi <removed> (unimportant)
+	NOTE: Only supported behind an authenticated HTTP zone
 CVE-2017-11182 (In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found ...)
 	NOT-FOR-US: Rise Ultimate Project Manager
 CVE-2017-11181 (In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found ...)




More information about the Secure-testing-commits mailing list