[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso carnil at debian.org
Fri Sep 18 09:57:39 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
91968cb6 by Salvatore Bonaccorso at 2020-09-18T10:56:52+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -25,9 +25,9 @@ CVE-2020-25753
 CVE-2020-25752
 	RESERVED
 CVE-2020-25751 (The paGO Commerce plugin 2.5.9.0 for Joomla! allows SQL Injection via  ...)
-	TODO: check
+	NOT-FOR-US: paGO Commerce plugin for Joomla!
 CVE-2020-25750 (** UNSUPPORTED WHEN ASSIGNED ** An issue was discovered in DotPlant2 b ...)
-	TODO: check
+	NOT-FOR-US: DotPlant2
 CVE-2020-25749
 	RESERVED
 CVE-2020-25748
@@ -39,7 +39,7 @@ CVE-2020-25746
 CVE-2020-25745
 	RESERVED
 CVE-2020-25744 (SaferVPN before 5.0.3.3 on Windows could allow low-privileged users to ...)
-	TODO: check
+	NOT-FOR-US: SaferVPN
 CVE-2020-25743
 	RESERVED
 CVE-2020-25742
@@ -57,11 +57,11 @@ CVE-2020-25737
 CVE-2020-25736
 	RESERVED
 CVE-2020-25735 (webTareas through 2.1 allows XSS in clients/editclient.php, extensions ...)
-	TODO: check
+	NOT-FOR-US: webTareas
 CVE-2020-25734 (webTareas through 2.1 allows files/Default/ Directory Listing. ...)
-	TODO: check
+	NOT-FOR-US: webTareas
 CVE-2020-25733 (webTareas through 2.1 allows upload of the dangerous .exe and .shtml f ...)
-	TODO: check
+	NOT-FOR-US: webTareas
 CVE-2020-25732
 	RESERVED
 CVE-2020-25731
@@ -21973,9 +21973,9 @@ CVE-2020-15185 (In Helm before versions 2.16.11 and 3.3.2, a Helm repository can
 CVE-2020-15184 (In Helm before versions 2.16.11 and 3.3.2 there is a bug in which the  ...)
 	TODO: check
 CVE-2020-15183 (SoyCMS 3.0.2 and earlier is affected by Reflected Cross-Site Scripting ...)
-	TODO: check
+	NOT-FOR-US: SoyCMS
 CVE-2020-15182 (The SOY Inquiry component of SOY CMS is affected by Cross-site Request ...)
-	TODO: check
+	NOT-FOR-US: SoyCMS
 CVE-2020-15181
 	RESERVED
 CVE-2020-15180
@@ -47772,9 +47772,9 @@ CVE-2020-5631
 CVE-2020-5630
 	RESERVED
 CVE-2020-5629 (UNIQLO App for Android versions 7.3.3 and earlier allows remote attack ...)
-	TODO: check
+	NOT-FOR-US: UNIQLO App for Android
 CVE-2020-5628 (UNIQLO App for Android versions 7.3.3 and earlier allows remote attack ...)
-	TODO: check
+	NOT-FOR-US: UNIQLO App for Android
 CVE-2020-5627 (Yodobashi App for Android versions 1.8.7 and earlier allows remote att ...)
 	NOT-FOR-US: Yodobashi App for Android
 CVE-2020-5626
@@ -47818,9 +47818,9 @@ CVE-2020-5608 (CAMS for HIS CENTUM CS 3000 (includes CENTUM CS 3000 Small) R3.08
 CVE-2020-5607 (Open redirect vulnerability in SHIRASAGI v1.13.1 and earlier allows re ...)
 	NOT-FOR-US: SHIRASAGI
 CVE-2020-5606 (Cross-site scripting vulnerability in WHR-G54S firmware 1.43 and earli ...)
-	TODO: check
+	NOT-FOR-US: WHR-G54S firmware
 CVE-2020-5605 (Directory traversal vulnerability in WHR-G54S firmware 1.43 and earlie ...)
-	TODO: check
+	NOT-FOR-US: WHR-G54S firmware
 CVE-2020-5604 (Android App 'Mercari' (Japan version) prior to version 3.52.0 allows a ...)
 	NOT-FOR-US: Mercari
 CVE-2020-5603 (Uncontrolled resource consumption vulnerability in Mitsubishi Electori ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/91968cb673b8169b2d74adf66005e5633c99a30e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/91968cb673b8169b2d74adf66005e5633c99a30e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200918/f4a9974b/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list