[Git][security-tracker-team/security-tracker][master] NFUs
Moritz Muehlenhoff
jmm at debian.org
Thu Oct 18 11:03:11 BST 2018
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker
Commits:
b2dd3106 by Moritz Muehlenhoff at 2018-10-18T10:02:45Z
NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
CVE-2018-18461 (The Arigato Autoresponder and Newsletter (aka bft-autoresponder) ...)
- TODO: check
+ NOT-FOR-US: Arigato
CVE-2018-18460 (XSS exists in the wp-live-chat-support v8.0.15 plugin for WordPress via ...)
- TODO: check
+ NOT-FOR-US: Wordpress plugin
CVE-2018-18459 (The function DCTStream::getBlock in Stream.cc in Xpdf 4.00 allows ...)
TODO: check
CVE-2018-18458 (The function DCTStream::decodeImage in Stream.cc in Xpdf 4.00 allows ...)
@@ -21,7 +21,7 @@ CVE-2018-18452
CVE-2018-18451
RESERVED
CVE-2018-18450 (apps\admin\controller\content\SingleController.php in PbootCMS ...)
- TODO: check
+ NOT-FOR-US: PbooCMS
CVE-2018-18449
RESERVED
CVE-2018-18448
@@ -152,7 +152,7 @@ CVE-2018-18391
CVE-2018-18390
RESERVED
CVE-2018-18389 (Due to incorrect access control in Neo4j Enterprise Database Server ...)
- TODO: check
+ NOT-FOR-US: Neo4J server
CVE-2018-18388
RESERVED
CVE-2018-18387
@@ -194,9 +194,9 @@ CVE-2018-18375 (goform/getProfileList in Orange AirBox Y858_FL_01.16_04 allows .
CVE-2018-18374 (XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid ...)
NOT-FOR-US: MetInfo
CVE-2018-18373 (In the Schiocco "Support Board - Chat And Help Desk" plugin 1.2.3 for ...)
- TODO: check
+ NOT-FOR-US: Wordpress plugin
CVE-2018-18372 (A Stored XSS vulnerability has been discovered in KAASoft Library CMS ...)
- TODO: check
+ NOT-FOR-US: KAASoft Library CMS
CVE-2018-18371
RESERVED
CVE-2018-18370
@@ -332,9 +332,9 @@ CVE-2018-18309 (An issue was discovered in the Binary File Descriptor (BFD) libr
NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=23770
NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=0930cb3021b8078b34cf216e79eb8608d017864f
CVE-2018-18308 (In the 4.2.23 version of BigTree, a Stored XSS vulnerability has been ...)
- TODO: check
+ NOT-FOR-US: BigTree CMS
CVE-2018-18307 (A Stored XSS vulnerability has been discovered in version 4.1.0 of ...)
- TODO: check
+ NOT-FOR-US: AlchemyCMS
CVE-2018-18306
RESERVED
CVE-2018-18305
@@ -429,7 +429,7 @@ CVE-2018-18264
CVE-2018-18263
RESERVED
CVE-2018-18262 (Zoho ManageEngine OpManager 12.3 before build 123214 has XSS. ...)
- TODO: check
+ NOT-FOR-US: Zoho
CVE-2018-18261
RESERVED
CVE-2018-18260 (In the 2.4 version of Camaleon CMS, Stored XSS has been discovered. ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b2dd310610f41b82e6160253ba8369934baa1490
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/b2dd310610f41b82e6160253ba8369934baa1490
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181018/eb650135/attachment.html>
More information about the debian-security-tracker-commits
mailing list