[Git][security-tracker-team/security-tracker][master] Process NFUs
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Sep 4 08:24:40 BST 2023
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
0803eb26 by Salvatore Bonaccorso at 2023-09-04T09:24:13+02:00
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -3,43 +3,43 @@ CVE-2023-4751 (Heap-based Buffer Overflow in GitHub repository vim/vim prior to
NOTE: https://github.com/vim/vim/commit/e1121b139480f53d1b06f84f3e4574048108fa0b (v9.0.1331)
NOTE: https://huntr.dev/bounties/db7be8d6-6cb7-4ae5-9c4e-805423afa378
CVE-2023-4740 (A vulnerability, which was classified as critical, was found in IBOS O ...)
- TODO: check
+ NOT-FOR-US: IBOS OA
CVE-2023-4739 (A vulnerability, which was classified as critical, has been found in B ...)
- TODO: check
+ NOT-FOR-US: Beijing Baichuo Smart S85F Management Platform
CVE-2023-3703 (Proscend Advice ICR Series routers FW version 1.76- CWE-1392: Use of D ...)
- TODO: check
+ NOT-FOR-US: Proscend Advice ICR Series routers FW
CVE-2023-39374 (ForeScout NAC SecureConnector version 11.2 -CWE-427: Uncontrolled Sear ...)
- TODO: check
+ NOT-FOR-US: ForeScout NAC SecureConnector
CVE-2023-39373 (A Hyundai model (2017) - CWE-294: Authentication Bypass by Capture-rep ...)
- TODO: check
+ NOT-FOR-US: Hyundai
CVE-2023-39372 (StarTrinity Softswitch version 2023-02-16 -Multiple CSRF (CWE-352))
- TODO: check
+ NOT-FOR-US: StarTrinity Softswitch
CVE-2023-39371 (StarTrinity Softswitch version 2023-02-16 -Open Redirect (CWE-601))
- TODO: check
+ NOT-FOR-US: StarTrinity Softswitch
CVE-2023-39370 (StarTrinity Softswitch version 2023-02-16 -Persistent XSS (CWE-79))
- TODO: check
+ NOT-FOR-US: StarTrinity Softswitch
CVE-2023-39369 (StarTrinity Softswitch version 2023-02-16- Multiple Reflected XSS (CWE ...)
- TODO: check
+ NOT-FOR-US: StarTrinity Softswitch
CVE-2023-38521 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Exif ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-38518 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Visu ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-38517 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Real ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-38516 (Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability i ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-38482 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Qual ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-38476 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Suit ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-38387 (Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Elas ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2023-37222 (Farsight Tech Nordic AB ProVide version 14.5- Multiple XSS vulnerabili ...)
- TODO: check
+ NOT-FOR-US: Farsight Tech Nordic AB ProVide
CVE-2023-37221 (7Twenty BOT - CWE-79: Improper Neutralization of Input During Web Page ...)
- TODO: check
+ NOT-FOR-US: 7Twenty BOT
CVE-2023-37220 (Synel Terminals - CWE-494: Download of Code Without Integrity Check)
- TODO: check
+ NOT-FOR-US: Synel Terminals
CVE-2023-41180 (Incorrect certificate validation in InvokeHTTP on Apache NiFi MiNiFi C ...)
NOT-FOR-US: Apache NiFi
CVE-2023-4738 (Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1 ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0803eb26bb5accedad8ec181a8213780e1180b50
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0803eb26bb5accedad8ec181a8213780e1180b50
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230904/c3a3c043/attachment.htm>
More information about the debian-security-tracker-commits
mailing list