[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Oct 28 09:19:27 BST 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
147b30eb by Salvatore Bonaccorso at 2022-10-28T10:18:23+02:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1832,11 +1832,11 @@ CVE-2022-3718 (A vulnerability, which was classified as problematic, was found i
 CVE-2022-3717 (A vulnerability, which was classified as critical, has been found in E ...)
 	TODO: check
 CVE-2022-3716 (A vulnerability classified as problematic was found in SourceCodester  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Online Medicine Ordering System
 CVE-2022-3715
 	RESERVED
 CVE-2022-3714 (A vulnerability classified as critical has been found in SourceCodeste ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Online Medicine Ordering System
 CVE-2022-43945
 	RESERVED
 CVE-2022-43944
@@ -2975,7 +2975,7 @@ CVE-2022-42460
 CVE-2022-42459
 	RESERVED
 CVE-2022-41996 (Cross-Site Request Forgery (CSRF) vulnerability in ThemeFusion Avada p ...)
-	TODO: check
+	NOT-FOR-US: WordPress theme
 CVE-2022-41995
 	RESERVED
 CVE-2022-41992
@@ -3427,13 +3427,13 @@ CVE-2022-43369
 CVE-2022-43368
 	RESERVED
 CVE-2022-43367 (IP-COM EW9 V15.11.0.14(9732) was discovered to contain a command injec ...)
-	TODO: check
+	NOT-FOR-US: IP-COM EW9
 CVE-2022-43366 (IP-COM EW9 V15.11.0.14(9732) allows unauthenticated attackers to acces ...)
-	TODO: check
+	NOT-FOR-US: IP-COM EW9
 CVE-2022-43365 (IP-COM EW9 V15.11.0.14(9732) was discovered to contain a buffer overfl ...)
-	TODO: check
+	NOT-FOR-US: IP-COM EW9
 CVE-2022-43364 (An access control issue in the password reset page of IP-COM EW9 V15.1 ...)
-	TODO: check
+	NOT-FOR-US: IP-COM EW9
 CVE-2022-43363
 	RESERVED
 CVE-2022-43362
@@ -3481,7 +3481,7 @@ CVE-2022-43342
 CVE-2022-43341
 	RESERVED
 CVE-2022-43340 (A Cross-Site Request Forgery (CSRF) in dzzoffice 2.02.1_SC_UTF8 allows ...)
-	TODO: check
+	NOT-FOR-US: dzzoffice
 CVE-2022-43339
 	RESERVED
 CVE-2022-43338
@@ -4195,11 +4195,11 @@ CVE-2022-42995
 CVE-2022-42994
 	RESERVED
 CVE-2022-42993 (Password Storage Application v1.0 was discovered to contain a cross-si ...)
-	TODO: check
+	NOT-FOR-US: Password Storage Application
 CVE-2022-42992 (Multiple stored cross-site scripting (XSS) vulnerabilities in Train Sc ...)
-	TODO: check
+	NOT-FOR-US: Train Scheduler App
 CVE-2022-42991 (A stored cross-site scripting (XSS) vulnerability in Simple Online Pub ...)
-	TODO: check
+	NOT-FOR-US: Simple Online Public Access Catalog
 CVE-2022-42990
 	RESERVED
 CVE-2022-42989



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/147b30eb5390dbb71c09be3667a87a55b7d1adaf

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/147b30eb5390dbb71c09be3667a87a55b7d1adaf
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221028/982a0c3e/attachment.htm>


More information about the debian-security-tracker-commits mailing list