[Git][security-tracker-team/security-tracker][master] Process some NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Oct 4 09:25:55 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
f2cea996 by Salvatore Bonaccorso at 2023-10-04T10:25:22+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -5,45 +5,45 @@ CVE-2023-5369 (Before correction, thecopy_file_rangesystem call checked only for
CVE-2023-5368 (On an msdosfs filesystem, the 'truncate' or 'ftruncate' system calls u ...)
TODO: check
CVE-2023-5357 (The Instagram for WordPress plugin for WordPress is vulnerable to Stor ...)
- TODO: check
+ NOT-FOR-US: Instagram for WordPress plugin for WordPress
CVE-2023-5291 (The Blog Filter plugin for WordPress is vulnerable to Stored Cross-Sit ...)
- TODO: check
+ NOT-FOR-US: Blog Filter plugin for WordPress
CVE-2023-44974 (An arbitrary file upload vulnerability in the component /admin/plugin. ...)
- TODO: check
+ NOT-FOR-US: emlog
CVE-2023-44973 (An arbitrary file upload vulnerability in the component /content/templ ...)
- TODO: check
+ NOT-FOR-US: emlog
CVE-2023-44272 (A cross-site scripting vulnerability exists in Citadel versions prior ...)
- citadel <removed>
CVE-2023-43953 (SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vul ...)
- TODO: check
+ NOT-FOR-US: SSCMS
CVE-2023-43952 (SSCMS 7.2.2 was discovered to contain a stored cross-site scripting (X ...)
- TODO: check
+ NOT-FOR-US: SSCMS
CVE-2023-43951 (SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vul ...)
- TODO: check
+ NOT-FOR-US: SSCMS
CVE-2023-43898 (Nothings stb 2.28 was discovered to contain a Null Pointer Dereference ...)
TODO: check
CVE-2023-43176 (A deserialization vulnerability in Afterlogic Aurora Files v9.7.3 allo ...)
- TODO: check
+ NOT-FOR-US: Afterlogic Aurora Files
CVE-2023-40519 (A cross-site scripting (XSS) vulnerability in the bpk-common/auth/logi ...)
- TODO: check
+ NOT-FOR-US: Broadpeak Centralized Accounts Management Auth Agent
CVE-2023-3213 (The WP Mail SMTP Pro plugin for WordPress is vulnerable to unauthorize ...)
- TODO: check
+ NOT-FOR-US: WP Mail SMTP Pro plugin for WordPress
CVE-2023-39651 (Improper neutralization of SQL parameter in Theme Volty CMS BrandList ...)
- TODO: check
+ NOT-FOR-US: PrestaShop module
CVE-2023-39649 (Improper neutralization of SQL parameter in Theme Volty CMS Category S ...)
- TODO: check
+ NOT-FOR-US: PrestaShop module
CVE-2023-39648 (Improper neutralization of SQL parameter in Theme Volty CMS Testimonia ...)
- TODO: check
+ NOT-FOR-US: PrestaShop module
CVE-2023-39647 (Improper neutralization of SQL parameter in Theme Volty CMS Category P ...)
- TODO: check
+ NOT-FOR-US: PrestaShop module
CVE-2023-39646 (Improper neutralization of SQL parameter in Theme Volty CMS Category C ...)
- TODO: check
+ NOT-FOR-US: PrestaShop module
CVE-2023-39645 (Improper neutralization of SQL parameter in Theme Volty CMS Payment Ic ...)
- TODO: check
+ NOT-FOR-US: PrestaShop module
CVE-2023-37404 (IBM Observability with Instana 1.0.243 through 1.0.254 could allow an ...)
- TODO: check
+ NOT-FOR-US: IBM
CVE-2023-35905 (IBM FileNet Content Manager 5.5.8, 5.5.10, and 5.5.11 is vulnerable to ...)
- TODO: check
+ NOT-FOR-US: IBM
CVE-2023-33273 (An issue was discovered in DTS Monitoring 3.57.0. The parameter url wi ...)
TODO: check
CVE-2023-33272 (An issue was discovered in DTS Monitoring 3.57.0. The parameter ip wit ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f2cea996418011639f740351bd670b3b56ff9eec
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f2cea996418011639f740351bd670b3b56ff9eec
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20231004/b28ad9de/attachment.htm>
More information about the debian-security-tracker-commits
mailing list