[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Mon Nov 26 20:15:17 GMT 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b9fb7365 by Salvatore Bonaccorso at 2018-11-26T20:14:44Z
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -599,7 +599,7 @@ CVE-2019-0237
 CVE-2019-0236
 	RESERVED
 CVE-2018-19564 (Stored XSS was discovered in the Easy Testimonials plugin 3.2 for ...)
-	TODO: check
+	NOT-FOR-US: Easy Testimonials plugin for WordPress
 CVE-2018-19563
 	RESERVED
 CVE-2018-19562 (An issue was discovered in PHPok 4.9.015. admin.php?c=update&f=unzip ...)
@@ -611,15 +611,15 @@ CVE-2018-19560 (BageCMS 3.1.3 has CSRF via upload/index.php?r=admini/admin/owner
 CVE-2018-19559 (CuppaCMS before 2018-11-12 has SQL Injection in ...)
 	NOT-FOR-US: CuppaCMS
 CVE-2018-19558 (An issue was discovered in arcms through 2018-03-19. SQL injection ...)
-	TODO: check
+	NOT-FOR-US: arcms
 CVE-2018-19557 (An issue was discovered in arcms through 2018-03-19. No authentication ...)
-	TODO: check
+	NOT-FOR-US: arcms
 CVE-2018-19556 (zb_system/admin/index.php?act=UploadMng in Z-BlogPHP 1.5 mishandles ...)
 	NOT-FOR-US: Z-BlogPHP
 CVE-2018-19555 (tp4a TELEPORT 3.1.0 has CSRF via user/do-reset-password to change any ...)
 	NOT-FOR-US: tp4a TELEPORT
 CVE-2018-19554 (An issue was discovered in Dotcms through 5.0.3. Attackers may perform ...)
-	TODO: check
+	NOT-FOR-US: dotCMS
 CVE-2018-19553 (Interspire Email Marketer through 6.1.6 has SQL Injection via an ...)
 	NOT-FOR-US: Interspire Email Marketer
 CVE-2018-19552 (Interspire Email Marketer through 6.1.6 has SQL Injection via a ...)
@@ -48504,7 +48504,7 @@ CVE-2018-1907
 CVE-2018-1906
 	RESERVED
 CVE-2018-1905 (IBM WebSphere Application Server 9.0.0.0 through 9.0.0.9 is vulnerable ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2018-1904
 	RESERVED
 CVE-2018-1903
@@ -101739,7 +101739,7 @@ CVE-2017-1420
 CVE-2017-1419
 	RESERVED
 CVE-2017-1418 (IBM Integration Bus 9.0.0.0, 9.0.0.11, 10.0.0.0, and 10.0.0.14 ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1417
 	RESERVED
 CVE-2017-1416



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b9fb7365cc6b12c3ee677c259f83b2baf38d409e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b9fb7365cc6b12c3ee677c259f83b2baf38d409e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181126/7a9c4d39/attachment.html>


More information about the debian-security-tracker-commits mailing list