[Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso
carnil at debian.org
Mon Jan 20 08:34:23 GMT 2020
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
2b4552a3 by Salvatore Bonaccorso at 2020-01-20T09:34:00+01:00
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,17 +3,17 @@ CVE-2020-7238
CVE-2020-7237 (Cacti 1.2.8 allows Remote Code Execution (by privileged users) via she ...)
TODO: check
CVE-2020-7236 (UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cw2?td= ...)
- TODO: check
+ NOT-FOR-US: UHP UHP-100 devices
CVE-2020-7235 (UHP UHP-100 3.4.1.15, 3.4.2.4, and 3.4.3 devices allow XSS via cB3?ta= ...)
- TODO: check
+ NOT-FOR-US: UHP UHP-100 devices
CVE-2020-7234 (Ruckus ZoneFlex R310 104.0.0.0.1347 devices allow Stored XSS via the S ...)
- TODO: check
+ NOT-FOR-US: Ruckus ZoneFlex R310 devices
CVE-2020-7233 (KMS Controls BAC-A1616BC BACnet devices have a cleartext password of s ...)
- TODO: check
+ NOT-FOR-US: KMS Controls BAC-A1616BC BACnet devices
CVE-2020-7232 (Evoko Home 1.31 devices allow remote attackers to obtain sensitive inf ...)
- TODO: check
+ NOT-FOR-US: Evoko Home devices
CVE-2020-7231 (Evoko Home 1.31 devices provide different error messages for failed lo ...)
- TODO: check
+ NOT-FOR-US: Evoko Home devices
CVE-2019-20381 (TestLink before 1.9.20 allows XSS via non-lowercase javascript: in the ...)
TODO: check
CVE-2016-11018
@@ -49,7 +49,7 @@ CVE-2020-7217
CVE-2020-7216
RESERVED
CVE-2020-7215 (An issue was discovered in Gallagher Command Centre 7.x before 7.90.99 ...)
- TODO: check
+ NOT-FOR-US: Gallagher Command Centre
CVE-2020-7214
RESERVED
CVE-2020-7213
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/2b4552a303c5b76e12ed327dc1370dde7e542363
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/2b4552a303c5b76e12ed327dc1370dde7e542363
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200120/55907a8b/attachment.html>
More information about the debian-security-tracker-commits
mailing list