[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Apr 8 21:21:17 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ee6cdf4b by Salvatore Bonaccorso at 2024-04-08T22:20:49+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,89 +1,89 @@
 CVE-2024-3464 (A vulnerability was found in SourceCodester Laundry Management System  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Laundry Management System
 CVE-2024-3463 (A vulnerability has been found in SourceCodester Laundry Management Sy ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Laundry Management System
 CVE-2024-3458 (A vulnerability classified as critical was found in Netentsec NS-ASG A ...)
-	TODO: check
+	NOT-FOR-US: Netentsec NS-ASG Application Security Gateway
 CVE-2024-3457 (A vulnerability classified as critical has been found in Netentsec NS- ...)
-	TODO: check
+	NOT-FOR-US: Netentsec NS-ASG Application Security Gateway
 CVE-2024-3456 (A vulnerability was found in Netentsec NS-ASG Application Security Gat ...)
-	TODO: check
+	NOT-FOR-US: Netentsec NS-ASG Application Security Gateway
 CVE-2024-3455 (A vulnerability was found in Netentsec NS-ASG Application Security Gat ...)
-	TODO: check
+	NOT-FOR-US: Netentsec NS-ASG Application Security Gateway
 CVE-2024-3445 (A vulnerability was found in SourceCodester Laundry Management System  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Laundry Management System
 CVE-2024-3444 (A vulnerability was found in Wangshen SecGate 3600 up to 20240408. It  ...)
 	TODO: check
 CVE-2024-3443 (A vulnerability classified as problematic was found in SourceCodester  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Prison Management System
 CVE-2024-3442 (A vulnerability classified as critical has been found in SourceCodeste ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Prison Management System
 CVE-2024-3441 (A vulnerability was found in SourceCodester Prison Management System 1 ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Prison Management System
 CVE-2024-3440 (A vulnerability was found in SourceCodester Prison Management System 1 ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Prison Management System
 CVE-2024-3439 (A vulnerability was found in SourceCodester Prison Management System 1 ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Prison Management System
 CVE-2024-3438 (A vulnerability was found in SourceCodester Prison Management System 1 ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Prison Management System
 CVE-2024-31817 (In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensi ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31816 (In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensi ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31815 (In TOTOLINK EX200 V4.0.3c.7314_B20191204, an attacker can obtain the c ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31814 (TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to bypass login ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31813 (TOTOLINK EX200 V4.0.3c.7646_B20201211 does not contain an authenticati ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31812 (In TOTOLINK EX200 V4.0.3c.7646_B20201211, an attacker can obtain sensi ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31811 (TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remo ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31809 (TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remo ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31808 (TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remo ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31807 (TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a remo ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31806 (TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a Deni ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31805 (TOTOLINK EX200 V4.0.3c.7646_B20201211 allows attackers to start the Te ...)
-	TODO: check
+	NOT-FOR-US: TOTOLINK
 CVE-2024-31447 (Shopware 6 is an open commerce platform based on Symfony Framework and ...)
-	TODO: check
+	NOT-FOR-US: Shopware
 CVE-2024-31442 (Redon Hub is a Roblox Product Delivery Bot, also known as a Hub. In al ...)
-	TODO: check
+	NOT-FOR-US: Redon Hub
 CVE-2024-31375 (Missing Authorization vulnerability in Saleswonder.Biz Team WP2LEADS.T ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31357 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-31224 (GPT Academic provides interactive interfaces for large language models ...)
-	TODO: check
+	NOT-FOR-US: GPT Academic
 CVE-2024-31221 (Sunshine is a self-hosted game stream host for Moonlight. Starting in  ...)
-	TODO: check
+	NOT-FOR-US: Sunshine
 CVE-2024-31205 (Saleor is an e-commerce platform. Starting in version 3.10.0 and prior ...)
-	TODO: check
+	NOT-FOR-US: Saleor
 CVE-2024-30269 (DataEase, an open source data visualization and analysis tool, has a d ...)
-	TODO: check
+	NOT-FOR-US: DataEase
 CVE-2024-2834 (A Stored Cross-Site Scripting (XSS) vulnerability has been identified  ...)
 	TODO: check
 CVE-2024-28732 (An issue was discovered in OFPMatch in parser.py in Faucet SDN Ryu ver ...)
-	TODO: check
+	NOT-FOR-US: Faucet SDN Ryu
 CVE-2024-28270 (An issue discovered in web-flash v3.0 allows attackers to reset passwo ...)
 	TODO: check
 CVE-2024-28224 (Ollama before 0.1.29 has a DNS rebinding vulnerability that can inadve ...)
 	TODO: check
 CVE-2024-28066 (In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a h ...)
-	TODO: check
+	NOT-FOR-US: Unify CP IP Phone firmware
 CVE-2024-27897 (Input verification vulnerability in the call module. Impact: Successfu ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2024-27896 (Input verification vulnerability in the log module. Impact: Successful ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2024-27895 (Vulnerability of permission control in the window module. Successful e ...)
-	TODO: check
+	NOT-FOR-US: Huawei
 CVE-2024-26574 (Insecure Permissions vulnerability in Wondershare Filmora v.13.0.51 al ...)
-	TODO: check
+	NOT-FOR-US: Wondershare Filmora
 CVE-2024-24279 (An issue in secdiskapp 1.5.1 (management program for NewQ Fingerprint  ...)
 	TODO: check
 CVE-2024-23192 (RSS feeds that contain malicious data- attributes could be abused to i ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee6cdf4b20e4e7cec9e902b166b83b492b4da2af

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ee6cdf4b20e4e7cec9e902b166b83b492b4da2af
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240408/2570b2e7/attachment.htm>


More information about the debian-security-tracker-commits mailing list