[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for zoneminder CVEs

Salvatore Bonaccorso carnil at debian.org
Wed Feb 20 05:35:10 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
07f1b3c0 by Salvatore Bonaccorso at 2019-02-20T05:34:41Z
Add Debian bug reference for zoneminder CVEs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1026,19 +1026,19 @@ CVE-2019-8431
 CVE-2019-8430
 	RESERVED
 CVE-2019-8429 (ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8428 (ZoneMinder before 1.32.3 has SQL Injection via the ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8427 (daemonControl in includes/functions.php in ZoneMinder before 1.32.3 ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8426 (skins/classic/views/controlcap.php in ZoneMinder before 1.32.3 has XSS ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8425 (includes/database.php in ZoneMinder before 1.32.3 has XSS in the ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8424 (ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php sort ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8423 (ZoneMinder through 1.32.3 has SQL Injection via the ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 CVE-2019-8422 (A SQL Injection vulnerability exists in PbootCMS v1.3.2 via the ...)
 	NOT-FOR-US: PbootCMS
 CVE-2019-8421 (upload/protected/modules/admini/views/post/index.php in BageCMS through ...)
@@ -3509,88 +3509,88 @@ CVE-2019-7353 [Leak of Confidential Issue and Merge Request Titles]
 	- gitlab <not-affected> (Only affects 11.7)
 	NOTE: https://about.gitlab.com/2019/02/05/critical-security-release-gitlab-11-dot-7-dot-4-released/
 CVE-2019-7352 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2475
 CVE-2019-7351 (Log Injection exists in ZoneMinder through 1.32.3, as an attacker can ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2466
 CVE-2019-7350 (Session fixation exists in ZoneMinder through 1.32.3, as an attacker ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2471
 CVE-2019-7349 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2465
 CVE-2019-7348 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2467
 CVE-2019-7347 (A Time-of-check Time-of-use (TOCTOU) Race Condition exists in ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2476
 CVE-2019-7346 (A CSRF check issue exists in ZoneMinder through 1.32.3 as whenever a ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2469
 CVE-2019-7345 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2468
 CVE-2019-7344 (Reflected XSS exists in ZoneMinder through 1.32.3, allowing an attacker ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2455
 CVE-2019-7343 (Reflected - Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2464
 CVE-2019-7342 (POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2461
 CVE-2019-7341 (Reflected - Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2463
 CVE-2019-7340 (POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2462
 CVE-2019-7339 (POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2460
 CVE-2019-7338 (Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2454
 CVE-2019-7337 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2456
 CVE-2019-7336 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2457
 CVE-2019-7335 (Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2453
 CVE-2019-7334 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2443
 CVE-2019-7333 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2441
 CVE-2019-7332 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2442
 CVE-2019-7331 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2451
 CVE-2019-7330 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2448
 CVE-2019-7329 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2446
 CVE-2019-7328 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2449
 CVE-2019-7327 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2447
 CVE-2019-7326 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2452
 CVE-2019-7325 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
-	- zoneminder <unfixed>
+	- zoneminder <unfixed> (bug #922724)
 	NOTE: https://github.com/ZoneMinder/zoneminder/issues/2450
 CVE-2019-7324 (app/Core/Paginator.php in Kanboard before 1.2.8 has XSS in pagination ...)
 	- kanboard <itp> (bug #790814)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/07f1b3c0072a2b945cfe130497ca82d45e2612dd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/07f1b3c0072a2b945cfe130497ca82d45e2612dd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190220/56b3b2da/attachment.html>


More information about the debian-security-tracker-commits mailing list