[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso carnil at debian.org
Tue Sep 1 21:18:24 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
6e4dcfd2 by Salvatore Bonaccorso at 2020-09-01T22:17:51+02:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1057,7 +1057,7 @@ CVE-2020-24614 (Fossil before 2.10.2, 2.11.x before 2.11.2, and 2.12.x before 2.
 CVE-2020-24555
 	RESERVED
 CVE-2020-24554 (The redirect module in Liferay Portal before 7.3.3 does not limit the  ...)
-	TODO: check
+	NOT-FOR-US: Liferay
 CVE-2020-24553
 	RESERVED
 CVE-2020-24552
@@ -2149,7 +2149,7 @@ CVE-2020-24036
 CVE-2020-24035
 	RESERVED
 CVE-2020-24034 (Sagemcom F at ST 5280 routers using firmware version 1.150.61 have insecu ...)
-	TODO: check
+	NOT-FOR-US: Sagemcom F at ST 5280 routers
 CVE-2020-24033
 	RESERVED
 CVE-2020-24032 (tz.pl on XoruX LPAR2RRD and STOR2RRD 2.70 virtual appliances allows cm ...)
@@ -2275,7 +2275,7 @@ CVE-2020-23973 (KandNconcepts Club CMS 1.1 and 1.2 has SQL Injection via the 'te
 CVE-2020-23972 (In Joomla Component GMapFP Version J3.5 and J3.5free, an attacker can  ...)
 	NOT-FOR-US: Joomla Component GMapFP
 CVE-2020-23971 (gmapfp.org Joomla Component GMapFP J3.30pro is affected by Insecure Pe ...)
-	TODO: check
+	NOT-FOR-US: gmapfp.org Joomla Component GMapFP
 CVE-2020-23970
 	RESERVED
 CVE-2020-23969
@@ -2539,15 +2539,15 @@ CVE-2020-23841
 CVE-2020-23840
 	RESERVED
 CVE-2020-23839 (A Reflected Cross-Site Scripting (XSS) vulnerability in GetSimple CMS  ...)
-	TODO: check
+	NOT-FOR-US: GetSimple CMS
 CVE-2020-23838
 	RESERVED
 CVE-2020-23837
 	RESERVED
 CVE-2020-23836 (A Cross-Site Request Forgery (CSRF) vulnerability in edit_user.php in  ...)
-	TODO: check
+	NOT-FOR-US: OSWAPP Warehouse Inventory System
 CVE-2020-23835 (A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Tailor Management System
 CVE-2020-23834
 	RESERVED
 CVE-2020-23833
@@ -2555,11 +2555,11 @@ CVE-2020-23833
 CVE-2020-23832
 	RESERVED
 CVE-2020-23831 (A Reflected Cross-Site Scripting (XSS) vulnerability in the index.php  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Stock Management System
 CVE-2020-23830
 	RESERVED
 CVE-2020-23829 (interface/new/new_comprehensive_save.php in LibreHealth EHR 2.0.0 suff ...)
-	TODO: check
+	NOT-FOR-US: LibreHealth EHR
 CVE-2020-23828
 	RESERVED
 CVE-2020-23827
@@ -23126,7 +23126,7 @@ CVE-2020-14180
 CVE-2020-14179
 	RESERVED
 CVE-2020-14178 (Affected versions of Atlassian Jira Server and Data Center allow remot ...)
-	TODO: check
+	NOT-FOR-US: Atlassian
 CVE-2020-14177
 	RESERVED
 CVE-2020-14176
@@ -26664,7 +26664,7 @@ CVE-2020-12778 (Combodo iTop does not validate inputted parameters, attackers ca
 CVE-2020-12777 (A function in Combodo iTop contains a vulnerability of Broken Access C ...)
 	NOT-FOR-US: Combodo iTop
 CVE-2020-12776 (Openfind Mail2000 contains Broken Access Control vulnerability, which  ...)
-	TODO: check
+	NOT-FOR-US: Openfind Mail2000
 CVE-2020-12775
 	RESERVED
 CVE-2020-12774 (D-Link DSL-7740C does not properly validate user input, which allows a ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6e4dcfd2ba515e94bb2c0b40307569f72e7f937c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/6e4dcfd2ba515e94bb2c0b40307569f72e7f937c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200901/e18ef280/attachment.html>


More information about the debian-security-tracker-commits mailing list