[Git][security-tracker-team/security-tracker][master] Process more NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Dec 7 20:02:24 GMT 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
14999e09 by Salvatore Bonaccorso at 2023-12-07T21:02:00+01:00
Process more NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -17,7 +17,7 @@ CVE-2023-5710 (The System Dashboard plugin for WordPress is vulnerable to unauth
 CVE-2023-49225 (A cross-site-scripting vulnerability exists in Ruckus Access Point pro ...)
 	NOT-FOR-US: Ruckus
 CVE-2023-48861 (DLL hijacking vulnerability in TTplayer version 7.0.2, allows local at ...)
-	TODO: check
+	NOT-FOR-US: TTplayer
 CVE-2023-48860 (TOTOLINK N300RT version 3.2.4-B20180730.0906 has a post-authentication ...)
 	NOT-FOR-US: TOTOLINK
 CVE-2023-48841 (Appointment Scheduler 3.0 is vulnerable to CSV Injection via a Languag ...)
@@ -53,7 +53,7 @@ CVE-2023-48825 (Availability Booking Calendar 5.0 is vulnerable to Multiple HTML
 CVE-2023-48824 (BoidCMS 2.0.1 is vulnerable to Multiple Stored Cross-Site Scripting (X ...)
 	NOT-FOR-US: BoidCMS
 CVE-2023-48823 (A Blind SQL injection issue in ajax.php in GaatiTrack Courier Manageme ...)
-	TODO: check
+	NOT-FOR-US: GaatiTrack Courier Management System
 CVE-2023-48208 (A Cross Site Scripting vulnerability in Availability Booking Calendar  ...)
 	NOT-FOR-US: Availability Booking Calendar
 CVE-2023-48207 (Availability Booking Calendar 5.0 allows CSV injection via the unique  ...)
@@ -71,7 +71,7 @@ CVE-2023-46354 (In the module "Orders (CSV, Excel) Export PRO" (ordersexport) <
 CVE-2023-46353 (In the module "Product Tag Icons Pro" (ticons) before 1.8.4 from MyPre ...)
 	NOT-FOR-US: PrestaShop module
 CVE-2023-46307 (An issue was discovered in server.js in etcd-browser 87ae63d75260. By  ...)
-	TODO: check
+	NOT-FOR-US: etcd-browser
 CVE-2023-43304 (An issue in PARK DANDAN mini-app on Line v13.6.1 allows attackers to s ...)
 	NOT-FOR-US: PARK DANDAN mini-app on Line
 CVE-2023-43303 (An issue in craftbeer bar canvas mini-app on Line v13.6.1 allows attac ...)
@@ -247,7 +247,7 @@ CVE-2023-6448 (Unitronics Vision Series PLCs and HMIs use default administrative
 CVE-2023-6357 (A low-privileged remote attacker could exploit the vulnerability and i ...)
 	NOT-FOR-US: CODESYS
 CVE-2023-6180 (The tokio-boring library in version 4.0.0 is affected by a memory leak ...)
-	TODO: check
+	NOT-FOR-US: tokio-boring Rust library
 CVE-2023-49448 (JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forger ...)
 	NOT-FOR-US: JFinalCMS
 CVE-2023-49447 (JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forger ...)
@@ -191865,7 +191865,7 @@ CVE-2021-27797 (Brocade Fabric OS before Brocade Fabric OS v8.2.1c, v8.1.2h, and
 CVE-2021-27796 (A vulnerability in Brocade Fabric OS versions before Brocade Fabric OS ...)
 	NOT-FOR-US: Brocade
 CVE-2021-27795 (Brocade Fabric OS (FOS) hardware  platforms running any version of Bro ...)
-	TODO: check
+	NOT-FOR-US: Broadcom (various producs relating to Brocade Fabric OS hardware and software)
 CVE-2021-27794 (A vulnerability in the authentication mechanism of Brocade Fabric OS v ...)
 	NOT-FOR-US: Brocade Fabric OS
 CVE-2021-27793 (ntermittent authorization failure in aaa tacacs+ with Brocade Fabric O ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14999e094e5f382b2e31361e1b73afdf11bc1f6b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/14999e094e5f382b2e31361e1b73afdf11bc1f6b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231207/552dc862/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list