[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Oct 4 09:25:55 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f2cea996 by Salvatore Bonaccorso at 2023-10-04T10:25:22+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5,45 +5,45 @@ CVE-2023-5369 (Before correction, thecopy_file_rangesystem call checked only for
 CVE-2023-5368 (On an msdosfs filesystem, the 'truncate' or 'ftruncate' system calls u ...)
 	TODO: check
 CVE-2023-5357 (The Instagram for WordPress plugin for WordPress is vulnerable to Stor ...)
-	TODO: check
+	NOT-FOR-US: Instagram for WordPress plugin for WordPress
 CVE-2023-5291 (The Blog Filter plugin for WordPress is vulnerable to Stored Cross-Sit ...)
-	TODO: check
+	NOT-FOR-US: Blog Filter plugin for WordPress
 CVE-2023-44974 (An arbitrary file upload vulnerability in the component /admin/plugin. ...)
-	TODO: check
+	NOT-FOR-US: emlog
 CVE-2023-44973 (An arbitrary file upload vulnerability in the component /content/templ ...)
-	TODO: check
+	NOT-FOR-US: emlog
 CVE-2023-44272 (A cross-site scripting vulnerability exists in Citadel versions prior  ...)
 	- citadel <removed>
 CVE-2023-43953 (SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vul ...)
-	TODO: check
+	NOT-FOR-US: SSCMS
 CVE-2023-43952 (SSCMS 7.2.2 was discovered to contain a stored cross-site scripting (X ...)
-	TODO: check
+	NOT-FOR-US: SSCMS
 CVE-2023-43951 (SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vul ...)
-	TODO: check
+	NOT-FOR-US: SSCMS
 CVE-2023-43898 (Nothings stb 2.28 was discovered to contain a Null Pointer Dereference ...)
 	TODO: check
 CVE-2023-43176 (A deserialization vulnerability in Afterlogic Aurora Files v9.7.3 allo ...)
-	TODO: check
+	NOT-FOR-US: Afterlogic Aurora Files
 CVE-2023-40519 (A cross-site scripting (XSS) vulnerability in the bpk-common/auth/logi ...)
-	TODO: check
+	NOT-FOR-US: Broadpeak Centralized Accounts Management Auth Agent
 CVE-2023-3213 (The WP Mail SMTP Pro plugin for WordPress is vulnerable to unauthorize ...)
-	TODO: check
+	NOT-FOR-US: WP Mail SMTP Pro plugin for WordPress
 CVE-2023-39651 (Improper neutralization of SQL parameter in Theme Volty CMS BrandList  ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop module
 CVE-2023-39649 (Improper neutralization of SQL parameter in Theme Volty CMS Category S ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop module
 CVE-2023-39648 (Improper neutralization of SQL parameter in Theme Volty CMS Testimonia ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop module
 CVE-2023-39647 (Improper neutralization of SQL parameter in Theme Volty CMS Category P ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop module
 CVE-2023-39646 (Improper neutralization of SQL parameter in Theme Volty CMS Category C ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop module
 CVE-2023-39645 (Improper neutralization of SQL parameter in Theme Volty CMS Payment Ic ...)
-	TODO: check
+	NOT-FOR-US: PrestaShop module
 CVE-2023-37404 (IBM Observability with Instana 1.0.243 through 1.0.254 could allow an  ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-35905 (IBM FileNet Content Manager 5.5.8, 5.5.10, and 5.5.11 is vulnerable to ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2023-33273 (An issue was discovered in DTS Monitoring 3.57.0. The parameter url wi ...)
 	TODO: check
 CVE-2023-33272 (An issue was discovered in DTS Monitoring 3.57.0. The parameter ip wit ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f2cea996418011639f740351bd670b3b56ff9eec

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f2cea996418011639f740351bd670b3b56ff9eec
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231004/b28ad9de/attachment.htm>


More information about the debian-security-tracker-commits mailing list