[Git][security-tracker-team/security-tracker][master] Add some new piwigo issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue May 23 21:39:42 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4029192d by Salvatore Bonaccorso at 2023-05-23T22:39:15+02:00
Add some new piwigo issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,11 +3,11 @@ CVE-2023-33617 (An OS Command Injection vulnerability in Parks Fiberlink 210 fir
CVE-2023-33599 (EasyImages2.0 \u2264 2.8.1 is vulnerable to Cross Site Scripting (XSS) ...)
NOT-FOR-US: EasyImages2.0
CVE-2023-33362 (Piwigo 13.6.0 is vulnerable to SQL Injection via in the "profile" func ...)
- TODO: check
+ - piwigo <removed>
CVE-2023-33361 (Piwigo 13.6.0 is vulnerable to SQL Injection via /admin/permalinks.php ...)
- TODO: check
+ - piwigo <removed>
CVE-2023-33359 (Piwigo 13.6.0 is vulnerable to Cross Site Request Forgery (CSRF) in th ...)
- TODO: check
+ - piwigo <removed>
CVE-2023-33338 (Old Age Home Management 1.0 is vulnerable to SQL Injection via the use ...)
NOT-FOR-US: Old Age Home Management
CVE-2023-31860 (Wuzhi CMS v3.1.2 has a storage type XSS vulnerability in the backend o ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4029192d55f240a323fc040aead96fd022644217
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4029192d55f240a323fc040aead96fd022644217
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230523/19894209/attachment.htm>
More information about the debian-security-tracker-commits
mailing list