[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Apr 22 09:51:42 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5e2d406d by Salvatore Bonaccorso at 2022-04-22T10:51:14+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2022-29578
 	RESERVED
 CVE-2022-29577 (OWASP AntiSamy before 1.6.7 allows XSS via HTML tag smuggling on STYLE ...)
-	TODO: check
+	NOT-FOR-US: OWASP AntiSamy
 CVE-2022-29576
 	RESERVED
 CVE-2022-29575
@@ -2083,7 +2083,7 @@ CVE-2022-28745
 CVE-2022-28744
 	RESERVED
 CVE-2022-28743 (Time-of-check Time-of-use (TOCTOU) Race Condition vulerability in Fosc ...)
-	TODO: check
+	NOT-FOR-US: Foscam R2C IP camera
 CVE-2022-28742
 	RESERVED
 CVE-2022-28741
@@ -2899,77 +2899,77 @@ CVE-2022-28447
 CVE-2022-28446
 	RESERVED
 CVE-2022-28445 (KiteCMS v1.1.1 was discovered to contain an arbitrary file read vulner ...)
-	TODO: check
+	NOT-FOR-US: KiteCMS
 CVE-2022-28444 (UCMS v1.6 was discovered to contain an arbitrary file read vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: UCMS
 CVE-2022-28443 (UCMS v1.6 was discovered to contain an arbitrary file deletion vulnera ...)
-	TODO: check
+	NOT-FOR-US: UCMS
 CVE-2022-28442
 	RESERVED
 CVE-2022-28441
 	RESERVED
 CVE-2022-28440 (An arbitrary file upload vulnerability in UCMS v1.6 allows attackers t ...)
-	TODO: check
+	NOT-FOR-US: UCMS
 CVE-2022-28439 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28438 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28437 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28436 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28435 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28434 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28433 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28432 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28431 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28430
 	RESERVED
 CVE-2022-28429 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28428
 	RESERVED
 CVE-2022-28427 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28426 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28425 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28424 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28423 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28422 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28421 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28420 (Baby Care System v1.0 was discovered to contain a SQL injection vulner ...)
-	TODO: check
+	NOT-FOR-US: Baby Care System
 CVE-2022-28419
 	RESERVED
 CVE-2022-28418
 	RESERVED
 CVE-2022-28417 (Home Owners Collection Management System v1.0 was discovered to contai ...)
-	TODO: check
+	NOT-FOR-US: Home Owners Collection Management System
 CVE-2022-28416 (Home Owners Collection Management System v1.0 was discovered to contai ...)
-	TODO: check
+	NOT-FOR-US: Home Owners Collection Management System
 CVE-2022-28415 (Home Owners Collection Management System v1.0 was discovered to contai ...)
-	TODO: check
+	NOT-FOR-US: Home Owners Collection Management System
 CVE-2022-28414 (Home Owners Collection Management System v1.0 was discovered to contai ...)
-	TODO: check
+	NOT-FOR-US: Home Owners Collection Management System
 CVE-2022-28413 (Car Driving School Management System v1.0 was discovered to contain a  ...)
-	TODO: check
+	NOT-FOR-US: Car Driving School Management System
 CVE-2022-28412 (Car Driving School Managment System v1.0 was discovered to contain a S ...)
-	TODO: check
+	NOT-FOR-US: Car Driving School Managment System
 CVE-2022-28411 (Simple Real Estate Portal System v1.0 was discovered to contain a SQL  ...)
-	TODO: check
+	NOT-FOR-US: Simple Real Estate Portal System
 CVE-2022-28410 (Simple Real Estate Portal System v1.0 was discovered to contain a SQL  ...)
-	TODO: check
+	NOT-FOR-US: Simple Real Estate Portal System
 CVE-2022-28409
 	RESERVED
 CVE-2022-28408



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5e2d406dd772ca9e12f72058f7d1e342194e7e1b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5e2d406dd772ca9e12f72058f7d1e342194e7e1b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220422/43d7408b/attachment.htm>


More information about the debian-security-tracker-commits mailing list