[Git][security-tracker-team/security-tracker][master] Process NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Sep 4 08:24:40 BST 2023



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0803eb26 by Salvatore Bonaccorso at 2023-09-04T09:24:13+02:00
Process NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3,43 +3,43 @@ CVE-2023-4751 (Heap-based Buffer Overflow in GitHub repository vim/vim prior to
 	NOTE: https://github.com/vim/vim/commit/e1121b139480f53d1b06f84f3e4574048108fa0b (v9.0.1331)
 	NOTE: https://huntr.dev/bounties/db7be8d6-6cb7-4ae5-9c4e-805423afa378
 CVE-2023-4740 (A vulnerability, which was classified as critical, was found in IBOS O ...)
-	TODO: check
+	NOT-FOR-US: IBOS OA
 CVE-2023-4739 (A vulnerability, which was classified as critical, has been found in B ...)
-	TODO: check
+	NOT-FOR-US: Beijing Baichuo Smart S85F Management Platform
 CVE-2023-3703 (Proscend Advice ICR Series routers FW version 1.76- CWE-1392: Use of D ...)
-	TODO: check
+	NOT-FOR-US: Proscend Advice ICR Series routers FW
 CVE-2023-39374 (ForeScout NAC SecureConnector version 11.2 -CWE-427: Uncontrolled Sear ...)
-	TODO: check
+	NOT-FOR-US: ForeScout NAC SecureConnector
 CVE-2023-39373 (A Hyundai model (2017) - CWE-294: Authentication Bypass by Capture-rep ...)
-	TODO: check
+	NOT-FOR-US: Hyundai
 CVE-2023-39372 (StarTrinity Softswitch version 2023-02-16 -Multiple CSRF (CWE-352))
-	TODO: check
+	NOT-FOR-US: StarTrinity Softswitch
 CVE-2023-39371 (StarTrinity Softswitch version 2023-02-16 -Open Redirect (CWE-601))
-	TODO: check
+	NOT-FOR-US: StarTrinity Softswitch
 CVE-2023-39370 (StarTrinity Softswitch version 2023-02-16 -Persistent XSS (CWE-79))
-	TODO: check
+	NOT-FOR-US: StarTrinity Softswitch
 CVE-2023-39369 (StarTrinity Softswitch version 2023-02-16- Multiple Reflected XSS (CWE ...)
-	TODO: check
+	NOT-FOR-US: StarTrinity Softswitch
 CVE-2023-38521 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Exif ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-38518 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Visu ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-38517 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Real ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-38516 (Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability i ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-38482 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Qual ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-38476 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Suit ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-38387 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Elas ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2023-37222 (Farsight Tech Nordic AB ProVide version 14.5- Multiple XSS vulnerabili ...)
-	TODO: check
+	NOT-FOR-US: Farsight Tech Nordic AB ProVide
 CVE-2023-37221 (7Twenty BOT - CWE-79: Improper Neutralization of Input During Web Page ...)
-	TODO: check
+	NOT-FOR-US: 7Twenty BOT
 CVE-2023-37220 (Synel Terminals - CWE-494: Download of Code Without Integrity Check)
-	TODO: check
+	NOT-FOR-US: Synel Terminals
 CVE-2023-41180 (Incorrect certificate validation in InvokeHTTP on Apache NiFi MiNiFi C ...)
 	NOT-FOR-US: Apache NiFi
 CVE-2023-4738 (Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0803eb26bb5accedad8ec181a8213780e1180b50

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0803eb26bb5accedad8ec181a8213780e1180b50
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230904/c3a3c043/attachment.htm>


More information about the debian-security-tracker-commits mailing list