[Git][security-tracker-team/security-tracker][master] Add some new piwigo issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue May 23 21:39:42 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4029192d by Salvatore Bonaccorso at 2023-05-23T22:39:15+02:00
Add some new piwigo issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3,11 +3,11 @@ CVE-2023-33617 (An OS Command Injection vulnerability in Parks Fiberlink 210 fir
 CVE-2023-33599 (EasyImages2.0 \u2264 2.8.1 is vulnerable to Cross Site Scripting (XSS) ...)
 	NOT-FOR-US: EasyImages2.0
 CVE-2023-33362 (Piwigo 13.6.0 is vulnerable to SQL Injection via in the "profile" func ...)
-	TODO: check
+	- piwigo <removed>
 CVE-2023-33361 (Piwigo 13.6.0 is vulnerable to SQL Injection via /admin/permalinks.php ...)
-	TODO: check
+	- piwigo <removed>
 CVE-2023-33359 (Piwigo 13.6.0 is vulnerable to Cross Site Request Forgery (CSRF) in th ...)
-	TODO: check
+	- piwigo <removed>
 CVE-2023-33338 (Old Age Home Management 1.0 is vulnerable to SQL Injection via the use ...)
 	NOT-FOR-US: Old Age Home Management
 CVE-2023-31860 (Wuzhi CMS v3.1.2 has a storage type XSS vulnerability in the backend o ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4029192d55f240a323fc040aead96fd022644217

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4029192d55f240a323fc040aead96fd022644217
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230523/19894209/attachment.htm>


More information about the debian-security-tracker-commits mailing list