[Git][security-tracker-team/security-tracker][master] Process some NFUs

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu May 16 23:07:46 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ccad9d02 by Salvatore Bonaccorso at 2024-05-17T00:07:06+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,45 +1,45 @@
 CVE-2024-5023 (Improper Neutralization of Special Elements used in a Command ('Comman ...)
-	TODO: check
+	NOT-FOR-US: Netflix ConsoleMe
 CVE-2024-4999 (A vulnerability in the web-based management interface of multiple Ligo ...)
-	TODO: check
+	NOT-FOR-US: Ligowave devices
 CVE-2024-4993 (Vulnerability in SiAdmin 1.1 that allows XSS via the /show.php query p ...)
-	TODO: check
+	NOT-FOR-US: SiAdmin
 CVE-2024-4992 (Vulnerability in SiAdmin 1.1 that allows SQL injection via the /modul/ ...)
-	TODO: check
+	NOT-FOR-US: SiAdmin
 CVE-2024-4991 (Vulnerability in SiAdmin 1.1 that allows SQL injection via the /modul/ ...)
-	TODO: check
+	NOT-FOR-US: SiAdmin
 CVE-2024-4984 (The Yoast SEO plugin for WordPress is vulnerable to Stored Cross-Site  ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4976 (Out-of-bounds array write in Xpdf 4.05 and earlier, due to missing obj ...)
 	TODO: check
 CVE-2024-4975 (A vulnerability, which was classified as problematic, has been found i ...)
-	TODO: check
+	NOT-FOR-US: code-projects Simple Chat System
 CVE-2024-4974 (A vulnerability, which was classified as problematic, was found in cod ...)
-	TODO: check
+	NOT-FOR-US: code-projects Simple Chat System
 CVE-2024-4973 (A vulnerability classified as critical was found in code-projects Simp ...)
-	TODO: check
+	NOT-FOR-US: code-projects Simple Chat System
 CVE-2024-4972 (A vulnerability classified as critical has been found in code-projects ...)
-	TODO: check
+	NOT-FOR-US: code-projects Simple Chat System
 CVE-2024-4968 (A vulnerability was found in SourceCodester Interactive Map with Marke ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Interactive Map with Marker
 CVE-2024-4967 (A vulnerability was found in SourceCodester Interactive Map with Marke ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Interactive Map with Marker
 CVE-2024-4966 (A vulnerability was found in SourceCodester SchoolWebTech 1.0. It has  ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester SchoolWebTech
 CVE-2024-4965 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DA ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-4964 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Li ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-4963 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified  ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-4962 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified  ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-4961 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-4960 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical ...)
-	TODO: check
+	NOT-FOR-US: D-Link
 CVE-2024-4956 (Path Traversal in Sonatype Nexus Repository 3 allows an unauthenticate ...)
-	TODO: check
+	NOT-FOR-US: Sonatype Nexus Repository
 CVE-2024-4950 (Inappropriate implementation in Downloads in Google Chrome prior to 12 ...)
 	TODO: check
 CVE-2024-4949 (Use after free in V8 in Google Chrome prior to 125.0.6422.60 allowed a ...)
@@ -49,61 +49,61 @@ CVE-2024-4948 (Use after free in Dawn in Google Chrome prior to 125.0.6422.60 al
 CVE-2024-4947 (Type Confusion in V8 in Google Chrome prior to 125.0.6422.60 allowed a ...)
 	TODO: check
 CVE-2024-4946 (A vulnerability was found in SourceCodester Online Art Gallery Managem ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Online Art Gallery Management System
 CVE-2024-4945 (A vulnerability was found in SourceCodester Best Courier Management Sy ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Best Courier Management System
 CVE-2024-4933 (A vulnerability has been found in SourceCodester Simple Online Bidding ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4932 (A vulnerability, which was classified as critical, was found in Source ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4931 (A vulnerability, which was classified as critical, has been found in S ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4930 (A vulnerability classified as critical was found in SourceCodester Sim ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4929 (A vulnerability classified as problematic has been found in SourceCode ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4928 (A vulnerability was found in SourceCodester Simple Online Bidding Syst ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4927 (A vulnerability was found in SourceCodester Simple Online Bidding Syst ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Online Bidding System
 CVE-2024-4926 (A vulnerability was found in SourceCodester School Intramurals Student ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester School Intramurals Student Attendance Management System
 CVE-2024-4925 (A vulnerability was found in SourceCodester School Intramurals Student ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester School Intramurals Student Attendance Management System
 CVE-2024-4923 (A vulnerability has been found in Codezips E-Commerce Site 1.0 and cla ...)
-	TODO: check
+	NOT-FOR-US: Codezips E-Commerce Site
 CVE-2024-4922 (A vulnerability, which was classified as problematic, was found in Sou ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Simple Image Stack Website
 CVE-2024-4921 (A vulnerability classified as critical has been found in SourceCodeste ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Employee and Visitor Gate Pass Logging System
 CVE-2024-4920 (A vulnerability was found in SourceCodester Online Discussion Forum Si ...)
-	TODO: check
+	NOT-FOR-US: SourceCodester Online Discussion Forum Site
 CVE-2024-4919 (A vulnerability was found in Campcodes Online Examination System 1.0.  ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4918 (A vulnerability was found in Campcodes Online Examination System 1.0.  ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4917 (A vulnerability was found in Campcodes Online Examination System 1.0 a ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4916 (A vulnerability has been found in Campcodes Online Examination System  ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4915 (A vulnerability, which was classified as critical, was found in Campco ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4914 (A vulnerability, which was classified as critical, has been found in C ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4913 (A vulnerability classified as critical was found in Campcodes Online E ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4912 (A vulnerability classified as critical has been found in Campcodes Onl ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Online Examination System
 CVE-2024-4911 (A vulnerability was found in Campcodes Complete Web-Based School Manag ...)
-	TODO: check
+	NOT-FOR-US: Campcodes Complete Web-Based School Management System
 CVE-2024-4844 (Hardcoded credentials vulnerability in Trellix ePolicy Orchestrator (e ...)
-	TODO: check
+	NOT-FOR-US: Trellix
 CVE-2024-4843 (ePO doesn't allow a regular privileged user to delete tasks or assignm ...)
-	TODO: check
+	NOT-FOR-US: Trellix
 CVE-2024-4838 (The ConvertPlus plugin for WordPress is vulnerable to PHP Object Injec ...)
-	TODO: check
+	NOT-FOR-US: WordPress plugin
 CVE-2024-4826 (SQL injection vulnerability in Simple PHP Shopping Cart affecting vers ...)
-	TODO: check
+	NOT-FOR-US: Simple PHP Shopping Cart
 CVE-2024-4760 (A voltage glitch during the startup of EEFC NVM controllers on Microch ...)
 	TODO: check
 CVE-2024-4733 (The ShiftController Employee Shift Scheduling plugin is vulnerable to  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ccad9d02f2fd62f6b7894d00e3bc23716dff1946

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ccad9d02f2fd62f6b7894d00e3bc23716dff1946
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240516/f2ded4b8/attachment.htm>


More information about the debian-security-tracker-commits mailing list