[Git][security-tracker-team/security-tracker][master] Proces some NFUs

Salvatore Bonaccorso carnil at debian.org
Thu Aug 15 21:25:24 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5a2aec6b by Salvatore Bonaccorso at 2019-08-15T20:24:28Z
Proces some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -812,7 +812,7 @@ CVE-2017-18486 (Jitbit Helpdesk before 9.0.3 allows remote attackers to escalate
 CVE-2019-14801 (The FV Flowplayer Video Player plugin before 7.3.15.727 for WordPress  ...)
 	NOT-FOR-US: FV Flowplayer Video Player plugin for WordPress
 CVE-2019-14800 (The FV Flowplayer Video Player plugin before 7.3.15.727 for WordPress  ...)
-	TODO: check
+	NOT-FOR-US: FV Flowplayer Video Player plugin for WordPress
 CVE-2019-14799 (The FV Flowplayer Video Player plugin before 7.3.14.727 for WordPress  ...)
 	NOT-FOR-US: FV Flowplayer Video Player plugin for WordPress
 CVE-2019-14798 (The 10Web Photo Gallery plugin before 1.5.25 for WordPress has Authent ...)
@@ -822,7 +822,7 @@ CVE-2019-14797 (The 10Web Photo Gallery plugin before 1.5.23 for WordPress has a
 CVE-2019-14796 (The mq-woocommerce-products-price-bulk-edit (aka Woocommerce Products  ...)
 	NOT-FOR-US: mq-woocommerce-products-price-bulk-edit (aka Woocommerce Products Price Bulk Edit) plugin for WordPress
 CVE-2019-14795 (The toggle-the-title (aka Toggle The Title) plugin 1.4 for WordPress h ...)
-	TODO: check
+	NOT-FOR-US: toggle-the-title (aka Toggle The Title) plugin for WordPress
 CVE-2019-14794 (The Meta Box plugin before 4.16.2 for WordPress mishandles the uploadi ...)
 	NOT-FOR-US: Meta Box plugin for WordPress
 CVE-2019-14793 (The Meta Box plugin before 4.16.3 for WordPress allows file deletion v ...)
@@ -832,19 +832,19 @@ CVE-2019-14792 (The WP Google Maps plugin before 7.11.35 for WordPress allows XS
 CVE-2019-14791 (The Appointment Booking Calendar plugin 1.3.18 for WordPress allows XS ...)
 	NOT-FOR-US: Appointment Booking Calendar plugin for WordPress
 CVE-2019-14790 (The limb-gallery (aka Limb Gallery) plugin 1.4.0 for WordPress has XSS ...)
-	TODO: check
+	NOT-FOR-US: limb-gallery (aka Limb Gallery) plugin for WordPress
 CVE-2019-14789 (The Custom 404 Pro plugin 3.2.8 for WordPress has XSS via the wp-admin ...)
-	TODO: check
+	NOT-FOR-US: Custom 404 Pro plugin for WordPress
 CVE-2019-14788 (wp-admin/admin-ajax.php?action=newsletters_exportmultiple in the Tribu ...)
-	TODO: check
+	NOT-FOR-US: Tribulant Newsletters plugin for WordPress
 CVE-2019-14787 (The Tribulant Newsletters plugin before 4.6.19 for WordPress allows XS ...)
 	NOT-FOR-US: Tribulant Newsletters plugin for WordPress
 CVE-2019-14786 (The Rank Math SEO plugin 1.0.27 for WordPress allows non-admin users t ...)
-	TODO: check
+	NOT-FOR-US: Rank Math SEO plugin for WordPress
 CVE-2019-14785 (The "CP Contact Form with PayPal" plugin before 1.2.99 for WordPress h ...)
 	NOT-FOR-US: "CP Contact Form with PayPal" plugin for WordPress
 CVE-2019-14784 (The "CP Contact Form with PayPal" plugin before 1.2.98 for WordPress h ...)
-	TODO: check
+	NOT-FOR-US: "CP Contact Form with PayPal" plugin for WordPress
 CVE-2019-14783 (On Samsung mobile devices with N(7.x), and O(8.x), P(9.0) software, Fo ...)
 	NOT-FOR-US: Samsung
 CVE-2019-14782
@@ -5311,7 +5311,7 @@ CVE-2019-13580
 CVE-2019-13579
 	RESERVED
 CVE-2019-13578 (A SQL injection vulnerability exists in the Impress GiveWP Give plugin ...)
-	TODO: check
+	NOT-FOR-US: Impress GiveWP Give plugin for WordPress
 CVE-2019-13577 (SnmpAdm.exe in MAPLE WBT SNMP Administrator v2.0.195.15 has an Unauthe ...)
 	NOT-FOR-US: SnmpAdm.exe in MAPLE WBT SNMP Administrator
 CVE-2018-20852 (http.cookiejar.DefaultPolicy.domain_return_ok in Lib/http/cookiejar.py ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a2aec6b4027780b86de2dea18f8cb133749dcbd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/5a2aec6b4027780b86de2dea18f8cb133749dcbd
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190815/0d96cc3b/attachment.html>


More information about the debian-security-tracker-commits mailing list