[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Oct 4 21:35:39 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
06f67a80 by Salvatore Bonaccorso at 2018-10-04T20:35:18Z
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -209,9 +209,9 @@ CVE-2018-17884 (XSS exists in admin/gb-dashboard-widget.php in the Gwolle Guestb
 CVE-2018-17882
 	RESERVED
 CVE-2018-17881 (On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration ...)
-	TODO: check
+	NOT-FOR-US: D-Link DIR-823G 2018-09-19 devices
 CVE-2018-17880 (On D-Link DIR-823G 2018-09-19 devices, the GoAhead configuration ...)
-	TODO: check
+	NOT-FOR-US: D-Link DIR-823G 2018-09-19 devices
 CVE-2018-17879
 	RESERVED
 CVE-2018-17878
@@ -219,7 +219,7 @@ CVE-2018-17878
 CVE-2018-17877
 	RESERVED
 CVE-2018-17876 (A Stored XSS vulnerability has been discovered in the v5.5.0 version ...)
-	TODO: check
+	NOT-FOR-US: Coaster CMS
 CVE-2018-17875
 	RESERVED
 CVE-2018-17874 (ExpressionEngine before 4.3.5 has reflected XSS. ...)
@@ -227,9 +227,9 @@ CVE-2018-17874 (ExpressionEngine before 4.3.5 has reflected XSS. ...)
 CVE-2018-17873
 	RESERVED
 CVE-2018-17872 (Verba Collaboration Compliance and Quality Management Platform before ...)
-	TODO: check
+	NOT-FOR-US: Verba Collaboration Compliance and Quality Management Platform
 CVE-2018-17871 (Verba Collaboration Compliance and Quality Management Platform before ...)
-	TODO: check
+	NOT-FOR-US: Verba Collaboration Compliance and Quality Management Platform
 CVE-2018-17870 (An issue was discovered in BTITeam XBTIT 2.5.4. The "returnto" ...)
 	NOT-FOR-US: BTITeam XBTIT
 CVE-2018-17869 (DASAN H660GW devices do not implement any CSRF protection mechanism. ...)
@@ -896,9 +896,9 @@ CVE-2018-17555 (The web component on ARRIS TG2492LG-NA 061213 devices allows rem
 CVE-2018-17554
 	RESERVED
 CVE-2018-17553 (An "Unrestricted Upload of File with Dangerous Type" issue with ...)
-	TODO: check
+	NOT-FOR-US: Naviwebs Navigate CMS
 CVE-2018-17552 (SQL Injection in login.php in Naviwebs Navigate CMS 2.8 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Naviwebs Navigate CMS
 CVE-2018-17551
 	RESERVED
 CVE-2018-17550
@@ -1177,7 +1177,7 @@ CVE-2018-17430
 CVE-2018-17429
 	RESERVED
 CVE-2018-17428 (An issue was discovered in OPAC EasyWeb Five 5.7. There is SQL ...)
-	TODO: check
+	NOT-FOR-US: OPAC EasyWeb Five
 CVE-2018-17427 (SIMDComp before 0.1.0 allows remote attackers to cause a denial of ...)
 	NOT-FOR-US: SIMDComp
 CVE-2018-17426
@@ -1217,7 +1217,7 @@ CVE-2018-17410 (Horus CMS allows SQL Injection, as demonstrated by a request to
 CVE-2018-17409
 	RESERVED
 CVE-2018-17408 (Stack-based buffer overflows in Zahir Accounting Enterprise Plus 6 ...)
-	TODO: check
+	NOT-FOR-US: Zahir Accounting Enterprise Plus
 CVE-2018-17406
 	RESERVED
 CVE-2018-17405



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/06f67a8038c1d95e9cd3f0b013a91fe022d41389

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/06f67a8038c1d95e9cd3f0b013a91fe022d41389
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181004/bbeeb1d9/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list