[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Mar 27 21:18:07 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0d140606 by Salvatore Bonaccorso at 2023-03-27T22:17:42+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -77,7 +77,7 @@ CVE-2023-1661
 CVE-2023-1660
 	RESERVED
 CVE-2023-1659 (This CVE ID has been rejected or withdrawn by its CVE Numbering Author ...)
-	TODO: check
+	NOT-FOR-US: rejected CVE
 CVE-2023-1658
 	RESERVED
 CVE-2023-1657
@@ -101,13 +101,13 @@ CVE-2023-1649
 CVE-2023-1648
 	RESERVED
 CVE-2022-48429 (In JetBrains Hub before 2022.3.15573, 2022.2.15572, 2022.1.15583 refle ...)
-	TODO: check
+	NOT-FOR-US: JetBrains Hub
 CVE-2022-48428 (In JetBrains TeamCity before 2022.10.3 stored XSS on the SSH keys page ...)
-	TODO: check
+	NOT-FOR-US: JetBrains TeamCity
 CVE-2022-48427 (In JetBrains TeamCity before 2022.10.3 stored XSS on “Pending ch ...)
-	TODO: check
+	NOT-FOR-US: JetBrains TeamCity
 CVE-2022-48426 (In JetBrains TeamCity before 2022.10.3 stored XSS in Perforce connecti ...)
-	TODO: check
+	NOT-FOR-US: JetBrains TeamCity
 CVE-2023-28892
 	RESERVED
 CVE-2023-28891
@@ -1975,7 +1975,7 @@ CVE-2023-1401
 CVE-2023-1400 (The Modern Events Calendar Lite WordPress plugin through 5.16.2 does n ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2023-1399 (N6854A Geolocation Server versions 2.4.2 are vulnerable to untrusted d ...)
-	TODO: check
+	NOT-FOR-US: N6854A Geolocation Server
 CVE-2023-1398 (A vulnerability classified as critical was found in XiaoBingBy TeaCMS  ...)
 	NOT-FOR-US: XiaoBingBy TeaCMS
 CVE-2023-1397 (A vulnerability classified as problematic has been found in SourceCode ...)
@@ -3695,7 +3695,7 @@ CVE-2023-27849
 CVE-2023-27848
 	RESERVED
 CVE-2023-27847 (SQL injection vulnerability found in PrestaShop xipblog v.2.0.1 and be ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop
 CVE-2023-27846
 	RESERVED
 CVE-2023-27845
@@ -3797,7 +3797,7 @@ CVE-2023-27798
 CVE-2023-27797
 	RESERVED
 CVE-2023-27796 (RG-EW1200G PRO Wireless Routers EW_3.0(1)B11P204, RG-EW1800GX PRO Wire ...)
-	TODO: check
+	NOT-FOR-US: RG-EW1200G PRO Wireless Routers
 CVE-2023-27795
 	RESERVED
 CVE-2023-27794
@@ -4612,31 +4612,31 @@ CVE-2023-1147 (Cross-site Scripting (XSS) - Stored in GitHub repository flatpres
 CVE-2023-1146 (Cross-site Scripting (XSS) - Generic in GitHub repository flatpressblo ...)
 	NOT-FOR-US: flatpressblog
 CVE-2023-1145 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1144 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 con ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1143 (In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1142 (In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1141 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 con ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1140 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 con ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1139 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1138 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 con ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1137 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 con ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1136 (In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1135 (In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1134 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1133 (Delta Electronics InfraSuite Device Master versions prior to 1.0.5 con ...)
-	TODO: check
+	NOT-FOR-US: Delta Electronics
 CVE-2023-1132
 	RESERVED
 CVE-2023-1131 (A vulnerability has been found in SourceCodester Computer Parts Sales  ...)
@@ -5166,7 +5166,7 @@ CVE-2023-1083
 CVE-2023-1082
 	RESERVED
 CVE-2023-27296 (Deserialization of Untrusted Data vulnerability in Apache Software Fou ...)
-	TODO: check
+	NOT-FOR-US: Apache InLong
 CVE-2023-27295 (Cross-site request forgery is facilitated by OpenCATS failure to requi ...)
 	NOT-FOR-US: OpenCATS
 CVE-2023-27294 (Improper neutralization of input during web page generation allows an  ...)
@@ -5393,7 +5393,7 @@ CVE-2023-27243
 CVE-2023-27242 (SourceCodester Loan Management System v1.0 was discovered to contain a ...)
 	NOT-FOR-US: SourceCodester Loan Management System
 CVE-2023-27241 (SourceCodester Water Billing System v1.0 was discovered to contain a c ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Water Billing System
 CVE-2023-27240 (Tenda AX3 V16.03.12.11 was discovered to contain a command injection v ...)
 	NOT-FOR-US: Tenda
 CVE-2023-27239 (Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via  ...)
@@ -5976,9 +5976,9 @@ CVE-2023-26961
 CVE-2023-26960
 	RESERVED
 CVE-2023-26959 (Phpgurukul Park Ticketing Management System 1.0 is vulnerable to SQL I ...)
-	TODO: check
+	NOT-FOR-US: Phpgurukul Park Ticketing Management System
 CVE-2023-26958 (Phpgurukul Park Ticketing Management System 1.0 is vulnerable to Cross ...)
-	TODO: check
+	NOT-FOR-US: Phpgurukul Park Ticketing Management System
 CVE-2023-26957 (onekeyadmin v1.3.9 was discovered to contain an arbitrary file delete  ...)
 	NOT-FOR-US: onekeyadmin
 CVE-2023-26956 (onekeyadmin v1.3.9 was discovered to contain an arbitrary file read vu ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d140606b06d117413fc31286fcb80aa541e4019

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0d140606b06d117413fc31286fcb80aa541e4019
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230327/7ea91017/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list