[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Nov 22 08:16:40 GMT 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
03060355 by Salvatore Bonaccorso at 2018-11-22T08:16:19Z
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,5 +1,5 @@
 CVE-2018-19437 (UCMS 1.4.7 allows remote authenticated users to change the ...)
-	TODO: check
+	NOT-FOR-US: UCMS
 CVE-2018-19436 (An issue was discovered in the Manufacturing component in webERP 4.15. ...)
 	TODO: check
 CVE-2018-19435 (An issue was discovered in the Sales component in webERP 4.15. ...)
@@ -25,15 +25,15 @@ CVE-2018-19426
 CVE-2018-19425
 	RESERVED
 CVE-2018-19424 (ClipperCMS 1.3.3 allows remote authenticated administrators to upload ...)
-	TODO: check
+	NOT-FOR-US: ClipperCMS
 CVE-2018-19423 (Codiad 2.8.4 allows remote authenticated administrators to execute ...)
 	TODO: check
 CVE-2018-19422 (/panel/uploads in Subrion CMS 4.2.1 allows remote attackers to execute ...)
-	TODO: check
+	NOT-FOR-US: Subrion CMS
 CVE-2018-19421 (In GetSimpleCMS 3.3.15, admin/upload.php blocks .html uploads but ...)
-	TODO: check
+	NOT-FOR-US: GetSimpleCMS
 CVE-2018-19420 (In GetSimpleCMS 3.3.15, admin/upload.php blocks .html uploads but there ...)
-	TODO: check
+	NOT-FOR-US: GetSimpleCMS
 CVE-2018-19419
 	RESERVED
 CVE-2018-19418



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/03060355537f31c6d0a8e6f67744d24f40357fd8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/03060355537f31c6d0a8e6f67744d24f40357fd8
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181122/22006f0f/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list