[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Jul 26 09:22:09 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
90a22d37 by Salvatore Bonaccorso at 2018-07-26T10:21:25+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -286,7 +286,7 @@ CVE-2018-14495
 CVE-2018-14494
 	RESERVED
 CVE-2018-14493 (Cross-site scripting (XSS) vulnerability in the Groups Page in ...)
-	TODO: check
+	NOT-FOR-US: Open-Audit Community
 CVE-2018-14492 (Tenda AC7 through V15.03.06.44_CN, AC9 through V15.03.05.19(6318)_CN, ...)
 	NOT-FOR-US: Tenda devices
 CVE-2018-1999022 (PEAR HTML_QuickForm version 3.2.14 contains an eval injection (CWE-95) ...)
@@ -444,7 +444,7 @@ CVE-2018-14432 [GET /v3/OS-FEDERATION/projects leaks project information]
 CVE-2018-14431
 	RESERVED
 CVE-2018-14430 (The Mondula Multi Step Form plugin through 1.2.5 for WordPress allows ...)
-	TODO: check
+	NOT-FOR-US:  Mondula Multi Step Form plugin for WordPress
 CVE-2018-14429
 	RESERVED
 CVE-2018-14428
@@ -1299,7 +1299,7 @@ CVE-2018-14085 (An issue was discovered in a smart contract implementation for .
 CVE-2018-14084 (An issue was discovered in a smart contract implementation for MKCB, an ...)
 	NOT-FOR-US: smart contract implementation for MKCB
 CVE-2018-14083 (LICA miniCMTS E8K(u/i/...) devices allow remote attackers to obtain ...)
-	TODO: check
+	NOT-FOR-US: LICA miniCMTS E8K(u/i/...) devices
 CVE-2018-14082 (PHP Scripts Mall JOB SITE (aka Job Portal) 3.0.1 has Cross-site ...)
 	NOT-FOR-US: PHP Scripts Mall JOB SITE (aka Job Portal)
 CVE-2018-14081
@@ -7822,9 +7822,9 @@ CVE-2018-11454
 CVE-2018-11453
 	RESERVED
 CVE-2018-11452 (A vulnerability has been identified in Firmware variant IEC 61850 for ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2018-11451 (A vulnerability has been identified in Firmware variant IEC 61850 for ...)
-	TODO: check
+	NOT-FOR-US: Siemens
 CVE-2018-11450 (A reflected Cross-Site-Scripting (XSS) vulnerability has been ...)
 	NOT-FOR-US: Siemens PLM Software TEAMCENTER
 CVE-2018-11449 (A vulnerability has been identified in SCALANCE M875 (All versions). ...)
@@ -16313,7 +16313,7 @@ CVE-2018-8092 (Mautic before 2.13.0 allows CSV injection. ...)
 CVE-2018-8091
 	RESERVED
 CVE-2018-8090 (Quick Heal Total Security 64 bit 17.00 (QHTS64.exe), (QHTSFT64.exe) - ...)
-	TODO: check
+	NOT-FOR-US: Quick Heal
 CVE-2018-8089
 	RESERVED
 CVE-2018-8088 (org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before ...)
@@ -59050,11 +59050,11 @@ CVE-2017-10938
 CVE-2017-10937 (SQL injection vulnerability in all versions prior to V2.01.05.09 of ...)
 	TODO: check
 CVE-2017-10936 (SQL injection vulnerability in all versions prior to V4.01.01 of the ...)
-	TODO: check
+	NOT-FOR-US: ZTE ZXCDN-SNS
 CVE-2017-10935 (All versions prior to ZSRV2 V3.00.40 of the ZTE ZXR10 1800-2S products ...)
-	TODO: check
+	NOT-FOR-US: ZTE ZXR10 1800-2S products
 CVE-2017-10934 (All versions prior to V5.09.02.02T4 of the ZTE ZXIPTV-EPG product use ...)
-	TODO: check
+	NOT-FOR-US: ZTE ZXIPTV-EPG product
 CVE-2017-10933 (All versions prior to V2.06.00.00 of ZTE ZXDT22 SF01, an monitoring ...)
 	NOT-FOR-US: ZTE ZXDT22 SF01
 CVE-2017-10932 (All versions prior to V12.17.20 of the ZTE Microwave NR8000 series ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/90a22d373a0c3bae9129736a71dc6b414ec8c46a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/90a22d373a0c3bae9129736a71dc6b414ec8c46a
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180726/2980a0d0/attachment.html>


More information about the debian-security-tracker-commits mailing list