[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 1 20:18:26 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fc8d997f by Salvatore Bonaccorso at 2023-12-01T21:17:58+01:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,35 +1,35 @@
 CVE-2023-6461 (Cross-site Scripting (XSS) - Reflected in GitHub repository viliusle/m ...)
 	TODO: check
 CVE-2023-6449 (The Contact Form 7 plugin for WordPress is vulnerable to arbitrary fil ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-5637 (Unrestricted Upload of File with Dangerous Type vulnerability in Arsla ...)
-	TODO: check
+	NOT-FOR-US: ArslanSoft Education Portal
 CVE-2023-5636 (Unrestricted Upload of File with Dangerous Type vulnerability in Arsla ...)
-	TODO: check
+	NOT-FOR-US: ArslanSoft Education Portal
 CVE-2023-5635 (Improper Protection for Outbound Error Messages and Alert Signals vuln ...)
-	TODO: check
+	NOT-FOR-US: ArslanSoft Education Portal
 CVE-2023-5634 (Improper Neutralization of Special Elements used in an SQL Command ('S ...)
-	TODO: check
+	NOT-FOR-US: ArslanSoft Education Portal
 CVE-2023-5427 (A local non-privileged user can make improper GPU processing operation ...)
 	TODO: check
 CVE-2023-4518 (A vulnerability exists in the input validation of the GOOSE  messages  ...)
 	TODO: check
 CVE-2023-49371 (RuoYi up to v4.6 was discovered to contain a SQL injection vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: RuoYi
 CVE-2023-48893 (Senayan Library Management Systems SLIMS 9 Bulian v9.6.1 is vulnerable ...)
-	TODO: check
+	NOT-FOR-US: Senayan Library Management Systems SLIMS 9 Bulian
 CVE-2023-48842 (D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command in ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2023-48813 (Senayan Library Management Systems (Slims) 9 Bulian v9.6.1 is vulnerab ...)
-	TODO: check
+	NOT-FOR-US: Senayan Library Management Systems (Slims) 9 Bulian
 CVE-2023-45168 (IBM AIX 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-43015 (IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scr ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-42006 (IBM Administration Runtime Expert for i 7.2, 7.3, 7.4, and 7.5 could a ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-38268 (IBM InfoSphere Information Server 11.7 is vulnerable to cross-site req ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-6396
 	- gitlab <not-affected> (Specific to EE)
 CVE-2023-6442 (A vulnerability was found in PHPGurukul Nipah Virus Testing Management ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc8d997ffdabdfca0ebf89f5a50994d5d701bfa2

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fc8d997ffdabdfca0ebf89f5a50994d5d701bfa2
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231201/e27913a7/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list