[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for zoneminder CVEs
Salvatore Bonaccorso
carnil at debian.org
Wed Feb 20 05:35:10 GMT 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
07f1b3c0 by Salvatore Bonaccorso at 2019-02-20T05:34:41Z
Add Debian bug reference for zoneminder CVEs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1026,19 +1026,19 @@ CVE-2019-8431
CVE-2019-8430
RESERVED
CVE-2019-8429 (ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8428 (ZoneMinder before 1.32.3 has SQL Injection via the ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8427 (daemonControl in includes/functions.php in ZoneMinder before 1.32.3 ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8426 (skins/classic/views/controlcap.php in ZoneMinder before 1.32.3 has XSS ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8425 (includes/database.php in ZoneMinder before 1.32.3 has XSS in the ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8424 (ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php sort ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8423 (ZoneMinder through 1.32.3 has SQL Injection via the ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
CVE-2019-8422 (A SQL Injection vulnerability exists in PbootCMS v1.3.2 via the ...)
NOT-FOR-US: PbootCMS
CVE-2019-8421 (upload/protected/modules/admini/views/post/index.php in BageCMS through ...)
@@ -3509,88 +3509,88 @@ CVE-2019-7353 [Leak of Confidential Issue and Merge Request Titles]
- gitlab <not-affected> (Only affects 11.7)
NOTE: https://about.gitlab.com/2019/02/05/critical-security-release-gitlab-11-dot-7-dot-4-released/
CVE-2019-7352 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2475
CVE-2019-7351 (Log Injection exists in ZoneMinder through 1.32.3, as an attacker can ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2466
CVE-2019-7350 (Session fixation exists in ZoneMinder through 1.32.3, as an attacker ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2471
CVE-2019-7349 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2465
CVE-2019-7348 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2467
CVE-2019-7347 (A Time-of-check Time-of-use (TOCTOU) Race Condition exists in ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2476
CVE-2019-7346 (A CSRF check issue exists in ZoneMinder through 1.32.3 as whenever a ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2469
CVE-2019-7345 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2468
CVE-2019-7344 (Reflected XSS exists in ZoneMinder through 1.32.3, allowing an attacker ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2455
CVE-2019-7343 (Reflected - Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2464
CVE-2019-7342 (POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2461
CVE-2019-7341 (Reflected - Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2463
CVE-2019-7340 (POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2462
CVE-2019-7339 (POST - Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2460
CVE-2019-7338 (Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2454
CVE-2019-7337 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2456
CVE-2019-7336 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2457
CVE-2019-7335 (Self - Stored XSS exists in ZoneMinder through 1.32.3, allowing an ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2453
CVE-2019-7334 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2443
CVE-2019-7333 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2441
CVE-2019-7332 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2442
CVE-2019-7331 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2451
CVE-2019-7330 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2448
CVE-2019-7329 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2446
CVE-2019-7328 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2449
CVE-2019-7327 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2447
CVE-2019-7326 (Self - Stored Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2452
CVE-2019-7325 (Reflected Cross Site Scripting (XSS) exists in ZoneMinder through ...)
- - zoneminder <unfixed>
+ - zoneminder <unfixed> (bug #922724)
NOTE: https://github.com/ZoneMinder/zoneminder/issues/2450
CVE-2019-7324 (app/Core/Paginator.php in Kanboard before 1.2.8 has XSS in pagination ...)
- kanboard <itp> (bug #790814)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/07f1b3c0072a2b945cfe130497ca82d45e2612dd
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/07f1b3c0072a2b945cfe130497ca82d45e2612dd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190220/56b3b2da/attachment.html>
More information about the debian-security-tracker-commits
mailing list