[Git][security-tracker-team/security-tracker][master] Process some more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 17 21:45:43 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
79bd1030 by Salvatore Bonaccorso at 2023-08-17T22:45:13+02:00
Process some more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -60,37 +60,37 @@ CVE-2023-36844 (A PHP External Variable Modification vulnerability in J-Web of J
 CVE-2023-36106 (An incorrect access control vulnerability in powerjob 4.3.2 and earlie ...)
 	TODO: check
 CVE-2023-34419 (A buffer overflow has been identified in the SetupUtility driver in so ...)
-	TODO: check
+	NOT-FOR-US: Lenovo
 CVE-2023-34412 (A vulnerability in Red Lion Europe mbNET/mbNET.rokey and Helmholz REX  ...)
-	TODO: check
+	NOT-FOR-US: Red Lion Europe mbNET/mbNET.rokey and Helmholz REX 200 and REX 250 devices
 CVE-2023-31946 (File Upload vulnerability found in Online Travel Agency System v.1.0 a ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31945 (SQL injection vulnerability found in Online Travel Agency System v.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31944 (SQL injection vulnerability found in Online Travel Agency System v.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31943 (SQL injection vulnerability found in Online Travel Agency System v.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31942 (Cross Site Scripting vulnerability found in Online Travel Agency Syste ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31941 (File Upload vulnerability found in Online Travel Agency System v.1.0 a ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31940 (SQL injection vulnerability found in Online Travel Agency System v.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31939 (SQL injection vulnerability found in Online Travel Agency System v.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-31938 (SQL injection vulnerability found in Online Travel Agency System v.1.0 ...)
-	TODO: check
+	NOT-FOR-US: Online Travel Agency System
 CVE-2023-2917 (The Rockwell Automation Thinmanager Thinserver is impacted by an impro ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation
 CVE-2023-2915 (The Rockwell Automation Thinmanager Thinserver is impacted by an impro ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation
 CVE-2023-2914 (The Rockwell Automation Thinmanager Thinserver is impacted by an impro ...)
-	TODO: check
+	NOT-FOR-US: Rockwell Automation
 CVE-2023-2910 (Improper neutralization of special elements used in a command ('Comman ...)
-	TODO: check
+	NOT-FOR-US: ASUSTOR
 CVE-2023-4395 (Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/co ...)
-	TODO: check
+	NOT-FOR-US: Cockpit Content Platform (different from src:cockpit)
 CVE-2023-4392 (A vulnerability was found in Control iD Gerencia Web 1.30 and classifi ...)
 	NOT-FOR-US: Control iD Gerencia Web
 CVE-2023-40281 (EC-CUBE 2.11.0 to 2.17.2-p1 contain a cross-site scripting vulnerabili ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/79bd103074299f3d70d72049dc57c318a3a30636

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/79bd103074299f3d70d72049dc57c318a3a30636
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230817/46b07135/attachment.htm>


More information about the debian-security-tracker-commits mailing list