[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 10 21:21:32 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
03d64094 by Salvatore Bonaccorso at 2024-07-10T22:20:42+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,57 +1,57 @@
 CVE-2024-6649 (A vulnerability has been found in SourceCodester Employee and Visitor  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Employee and Visitor Gate Pass Logging System
 CVE-2024-6647 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical ...)
-	TODO: check
+	NOT-FOR-US: Croogo
 CVE-2024-6646 (A vulnerability was found in Netgear WN604 up to 20240710. It has been ...)
-	TODO: check
+	NOT-FOR-US: Netgear
 CVE-2024-6645 (A vulnerability was found in WuKongOpenSource Wukong_nocode up to 2023 ...)
-	TODO: check
+	NOT-FOR-US: WuKongOpenSource Wukong_nocode
 CVE-2024-6644 (A vulnerability was found in zmops ArgusDBM up to 0.1.0. It has been c ...)
-	TODO: check
+	NOT-FOR-US: zmops ArgusDBM
 CVE-2024-6642
 	REJECTED
 CVE-2024-6630
 	REJECTED
 CVE-2024-6556 (The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plug ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-6235 (Sensitive information disclosureinNetScaler Console)
-	TODO: check
+	NOT-FOR-US: Citrix
 CVE-2024-5913 (An improper input validation vulnerability in Palo Alto Networks PAN-O ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks PAN-OS
 CVE-2024-5912 (An improper file signature check in Palo Alto Networks Cortex XDR agen ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2024-5911 (An arbitrary file upload vulnerability in Palo Alto Networks Panorama  ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2024-5910 (Missing authentication for a critical function in Palo Alto Networks E ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2024-5492 (Open redirect vulnerability allows a remote unauthenticated attacker t ...)
-	TODO: check
+	NOT-FOR-US: Citrix
 CVE-2024-5491 (Denial of Service in NetScaler ADC and NetScaler Gateway in NetScaler)
-	TODO: check
+	NOT-FOR-US: Citrix
 CVE-2024-5217 (ServiceNow has addressed an input validation vulnerability that was id ...)
-	TODO: check
+	NOT-FOR-US: ServiceNow
 CVE-2024-5178 (ServiceNow has addressed a sensitive file read vulnerability that was  ...)
-	TODO: check
+	NOT-FOR-US: ServiceNow
 CVE-2024-4879 (ServiceNow has addressed an input validation vulnerability that was id ...)
-	TODO: check
+	NOT-FOR-US: ServiceNow
 CVE-2024-40417 (A vulnerability was found in Tenda AX1806 1.0.0.1. Affected by this is ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-40412 (Tenda AX12 v1.0 v22.03.01.46 contains a stack overflow in the deviceLi ...)
-	TODO: check
+	NOT-FOR-US: Tenda
 CVE-2024-40336 (idccms v1.35 is vulnerable to Cross Site Scripting (XSS) within the 'I ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-40334 (idccms v1.35 was discovered to contain a Cross-Site Request Forgery (C ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-40333 (idccms v1.35 was discovered to contain a Cross-Site Request Forgery (C ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-40332 (idccms v1.35 was discovered to contain a Cross-Site Request Forgery (C ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-40331 (idccms v1.35 was discovered to contain a Cross-Site Request Forgery (C ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-40329 (idccms v1.35 was discovered to contain a Cross-Site Request Forgery (C ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-40328 (idccms v1.35 was discovered to contain a Cross-Site Request Forgery (C ...)
-	TODO: check
+	NOT-FOR-US: idccms
 CVE-2024-3799 (Insecure handling of POST header parameter bodyincluded in requests be ...)
 	TODO: check
 CVE-2024-3798 (Insecure handling of GET header parameter fileincluded in requests bei ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/03d6409408a383cf88f3efaf232b6b27321e1b91

-- 
This project does not include diff previews in email notifications.
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/03d6409408a383cf88f3efaf232b6b27321e1b91
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240710/2e73bf76/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list