[Git][security-tracker-team/security-tracker][master] NFUs

Moritz Muehlenhoff jmm at debian.org
Thu Oct 18 11:03:11 BST 2018


Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b2dd3106 by Moritz Muehlenhoff at 2018-10-18T10:02:45Z
NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2018-18461 (The Arigato Autoresponder and Newsletter (aka bft-autoresponder) ...)
-	TODO: check
+	NOT-FOR-US: Arigato
 CVE-2018-18460 (XSS exists in the wp-live-chat-support v8.0.15 plugin for WordPress via ...)
-	TODO: check
+	NOT-FOR-US: Wordpress plugin
 CVE-2018-18459 (The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows ...)
 	TODO: check
 CVE-2018-18458 (The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows ...)
@@ -21,7 +21,7 @@ CVE-2018-18452
 CVE-2018-18451
 	RESERVED
 CVE-2018-18450 (apps\admin\controller\content\SingleController.php in PbootCMS ...)
-	TODO: check
+	NOT-FOR-US: PbooCMS
 CVE-2018-18449
 	RESERVED
 CVE-2018-18448
@@ -152,7 +152,7 @@ CVE-2018-18391
 CVE-2018-18390
 	RESERVED
 CVE-2018-18389 (Due to incorrect access control in Neo4j Enterprise Database Server ...)
-	TODO: check
+	NOT-FOR-US: Neo4J server
 CVE-2018-18388
 	RESERVED
 CVE-2018-18387
@@ -194,9 +194,9 @@ CVE-2018-18375 (goform/getProfileList in Orange AirBox Y858_FL_01.16_04 allows .
 CVE-2018-18374 (XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid ...)
 	NOT-FOR-US: MetInfo
 CVE-2018-18373 (In the Schiocco "Support Board - Chat And Help Desk" plugin 1.2.3 for ...)
-	TODO: check
+	NOT-FOR-US: Wordpress plugin
 CVE-2018-18372 (A Stored XSS vulnerability has been discovered in KAASoft Library CMS ...)
-	TODO: check
+	NOT-FOR-US: KAASoft Library CMS
 CVE-2018-18371
 	RESERVED
 CVE-2018-18370
@@ -332,9 +332,9 @@ CVE-2018-18309 (An issue was discovered in the Binary File Descriptor (BFD) libr
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=23770
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=0930cb3021b8078b34cf216e79eb8608d017864f
 CVE-2018-18308 (In the 4.2.23 version of BigTree, a Stored XSS vulnerability has been ...)
-	TODO: check
+	NOT-FOR-US: BigTree CMS
 CVE-2018-18307 (A Stored XSS vulnerability has been discovered in version 4.1.0 of ...)
-	TODO: check
+	NOT-FOR-US: AlchemyCMS
 CVE-2018-18306
 	RESERVED
 CVE-2018-18305
@@ -429,7 +429,7 @@ CVE-2018-18264
 CVE-2018-18263
 	RESERVED
 CVE-2018-18262 (Zoho ManageEngine OpManager 12.3 before build 123214 has XSS. ...)
-	TODO: check
+	NOT-FOR-US: Zoho
 CVE-2018-18261
 	RESERVED
 CVE-2018-18260 (In the 2.4 version of Camaleon CMS, Stored XSS has been discovered. ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b2dd310610f41b82e6160253ba8369934baa1490

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b2dd310610f41b82e6160253ba8369934baa1490
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181018/eb650135/attachment.html>


More information about the debian-security-tracker-commits mailing list