diff --git a/advisories/unreviewed/2022/05/GHSA-4px9-cjxh-m369/GHSA-4px9-cjxh-m369.json b/advisories/unreviewed/2022/05/GHSA-4px9-cjxh-m369/GHSA-4px9-cjxh-m369.json index 6c3de5bfc9f..aa09d943b58 100644 --- a/advisories/unreviewed/2022/05/GHSA-4px9-cjxh-m369/GHSA-4px9-cjxh-m369.json +++ b/advisories/unreviewed/2022/05/GHSA-4px9-cjxh-m369/GHSA-4px9-cjxh-m369.json @@ -26,6 +26,10 @@ "type": "WEB", "url": "https://kb.juniper.net/KB27375" }, + { + "type": "WEB", + "url": "https://supportportal.juniper.net/JSA10568" + }, { "type": "WEB", "url": "http://secunia.com/advisories/53359" diff --git a/advisories/unreviewed/2024/01/GHSA-22x3-v6j4-627v/GHSA-22x3-v6j4-627v.json b/advisories/unreviewed/2024/01/GHSA-22x3-v6j4-627v/GHSA-22x3-v6j4-627v.json index 67ff9190890..3f1322c0ab3 100644 --- a/advisories/unreviewed/2024/01/GHSA-22x3-v6j4-627v/GHSA-22x3-v6j4-627v.json +++ b/advisories/unreviewed/2024/01/GHSA-22x3-v6j4-627v/GHSA-22x3-v6j4-627v.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/01/GHSA-257p-qfc7-7ff5/GHSA-257p-qfc7-7ff5.json b/advisories/unreviewed/2024/01/GHSA-257p-qfc7-7ff5/GHSA-257p-qfc7-7ff5.json new file mode 100644 index 00000000000..05d19dc896e --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-257p-qfc7-7ff5/GHSA-257p-qfc7-7ff5.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-257p-qfc7-7ff5", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-23747" + ], + "details": "The Moderna Sistemas ModernaNet Hospital Management System 2024 is susceptible to an Insecure Direct Object Reference (IDOR) vulnerability. This vulnerability resides in the system's handling of user data access through a /Modernanet/LAUDO/LAU0000100/Laudo?id= URI. By manipulating this id parameter, an attacker can gain access to sensitive medical information.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-23747" + }, + { + "type": "WEB", + "url": "https://github.com/louiselalanne/CVE-2024-23747" + }, + { + "type": "WEB", + "url": "https://modernasistemas.com.br/sitems/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-25g8-7mhh-fm84/GHSA-25g8-7mhh-fm84.json b/advisories/unreviewed/2024/01/GHSA-25g8-7mhh-fm84/GHSA-25g8-7mhh-fm84.json new file mode 100644 index 00000000000..4038fee7b10 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-25g8-7mhh-fm84/GHSA-25g8-7mhh-fm84.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-25g8-7mhh-fm84", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2023-7200" + ], + "details": "The EventON WordPress plugin before 4.4.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7200" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/586cf0a5-515c-43ea-8c03-f2f47ed13c2c/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-2w8f-25gq-9g77/GHSA-2w8f-25gq-9g77.json b/advisories/unreviewed/2024/01/GHSA-2w8f-25gq-9g77/GHSA-2w8f-25gq-9g77.json new file mode 100644 index 00000000000..739a153494b --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-2w8f-25gq-9g77/GHSA-2w8f-25gq-9g77.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2w8f-25gq-9g77", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-5956" + ], + "details": "The Wp-Adv-Quiz WordPress plugin through 1.0.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-5956" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/b3d1fbae-88c9-45d1-92c6-0a529b21e3b2/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-3hv7-66gj-8929/GHSA-3hv7-66gj-8929.json b/advisories/unreviewed/2024/01/GHSA-3hv7-66gj-8929/GHSA-3hv7-66gj-8929.json new file mode 100644 index 00000000000..dea5bb2b50f --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-3hv7-66gj-8929/GHSA-3hv7-66gj-8929.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3hv7-66gj-8929", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6390" + ], + "details": "The WordPress Users WordPress plugin through 1.4 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6390" + }, + { + "type": "WEB", + "url": "https://magos-securitas.com/txt/2023-6390.txt" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/a0ca68d3-f885-46c9-9f6b-b77ad387d25d/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-3vvc-v8c2-43r7/GHSA-3vvc-v8c2-43r7.json b/advisories/unreviewed/2024/01/GHSA-3vvc-v8c2-43r7/GHSA-3vvc-v8c2-43r7.json new file mode 100644 index 00000000000..96869ffa6d7 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-3vvc-v8c2-43r7/GHSA-3vvc-v8c2-43r7.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3vvc-v8c2-43r7", + "modified": "2024-01-29T15:30:25Z", + "published": "2024-01-29T15:30:25Z", + "aliases": [ + "CVE-2023-29055" + ], + "details": "In Apache Kylin version 2.0.0 to 4.0.3, there is a Server Config web interface that displays the content of file 'kylin.properties', that may contain serverside credentials. When the kylin service runs over HTTP (or other plain text protocol), it is possible for network sniffers to hijack the HTTP payload and get access to the content of kylin.properties and potentially the containing credentials.\n\nTo avoid this threat, users are recommended to \n\n * Always turn on HTTPS so that network payload is encrypted.\n\n * Avoid putting credentials in kylin.properties, or at least not in plain text.\n * Use network firewalls to protect the serverside such that it is not accessible to external attackers.\n\n * Upgrade to version Apache Kylin 4.0.4, which filters out the sensitive content that goes to the Server Config web interface.\n\n", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29055" + }, + { + "type": "WEB", + "url": "https://lists.apache.org/thread/o1bvyv9wnfkx7dxpfjlor20nykgsoh6r" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2024/01/29/1" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-522" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T13:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-3w6h-g7wc-c8rx/GHSA-3w6h-g7wc-c8rx.json b/advisories/unreviewed/2024/01/GHSA-3w6h-g7wc-c8rx/GHSA-3w6h-g7wc-c8rx.json index 5bac325abf6..2eb4ee6acc1 100644 --- a/advisories/unreviewed/2024/01/GHSA-3w6h-g7wc-c8rx/GHSA-3w6h-g7wc-c8rx.json +++ b/advisories/unreviewed/2024/01/GHSA-3w6h-g7wc-c8rx/GHSA-3w6h-g7wc-c8rx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3w6h-g7wc-c8rx", - "modified": "2024-01-20T06:30:25Z", + "modified": "2024-01-29T15:30:23Z", "published": "2024-01-20T06:30:25Z", "aliases": [ "CVE-2023-46447" ], "details": "The POPS! Rebel application 5.0 for Android, in POPS! Rebel Bluetooth Glucose Monitoring System, sends unencrypted glucose measurements over BLE.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-319" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-20T05:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-3wf6-8fcq-f34q/GHSA-3wf6-8fcq-f34q.json b/advisories/unreviewed/2024/01/GHSA-3wf6-8fcq-f34q/GHSA-3wf6-8fcq-f34q.json new file mode 100644 index 00000000000..1e460089049 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-3wf6-8fcq-f34q/GHSA-3wf6-8fcq-f34q.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3wf6-8fcq-f34q", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6278" + ], + "details": "The Biteship: Plugin Ongkos Kirim Kurir Instant, Reguler, Kargo WordPress plugin before 2.2.25 does not sanitise and escape the biteship_error and biteship_message parameters before outputting them back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6278" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/dfe5001f-31b9-4de2-a240-f7f5a992ac49/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-5jgq-vcw8-3624/GHSA-5jgq-vcw8-3624.json b/advisories/unreviewed/2024/01/GHSA-5jgq-vcw8-3624/GHSA-5jgq-vcw8-3624.json new file mode 100644 index 00000000000..f7d8bd6c7a3 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-5jgq-vcw8-3624/GHSA-5jgq-vcw8-3624.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5jgq-vcw8-3624", + "modified": "2024-01-29T15:30:26Z", + "published": "2024-01-29T15:30:26Z", + "aliases": [ + "CVE-2024-0997" + ], + "details": "A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216 and classified as critical. Affected by this issue is the function setOpModeCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument pppoeUser leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-252266 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0997" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-setOpModeCfg-9faac02b13d84bd3b7fe84aab68c7add?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252266" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252266" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-5pp3-xch3-9qv7/GHSA-5pp3-xch3-9qv7.json b/advisories/unreviewed/2024/01/GHSA-5pp3-xch3-9qv7/GHSA-5pp3-xch3-9qv7.json new file mode 100644 index 00000000000..9aff2514c91 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-5pp3-xch3-9qv7/GHSA-5pp3-xch3-9qv7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5pp3-xch3-9qv7", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-22559" + ], + "details": "LightCMS v2.0 is vulnerable to Cross Site Scripting (XSS) in the Content Management - Articles field.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-22559" + }, + { + "type": "WEB", + "url": "https://github.com/eddy8/LightCMS/issues/34" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-6px6-2jx5-44xw/GHSA-6px6-2jx5-44xw.json b/advisories/unreviewed/2024/01/GHSA-6px6-2jx5-44xw/GHSA-6px6-2jx5-44xw.json index 36df4f6c12c..63e16c0ec55 100644 --- a/advisories/unreviewed/2024/01/GHSA-6px6-2jx5-44xw/GHSA-6px6-2jx5-44xw.json +++ b/advisories/unreviewed/2024/01/GHSA-6px6-2jx5-44xw/GHSA-6px6-2jx5-44xw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6px6-2jx5-44xw", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0811" ], "details": "Inappropriate implementation in Extensions API in Google Chrome prior to 121.0.6167.85 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: Low)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-7c4r-p7c4-2rmg/GHSA-7c4r-p7c4-2rmg.json b/advisories/unreviewed/2024/01/GHSA-7c4r-p7c4-2rmg/GHSA-7c4r-p7c4-2rmg.json new file mode 100644 index 00000000000..e120d1bb17d --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-7c4r-p7c4-2rmg/GHSA-7c4r-p7c4-2rmg.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7c4r-p7c4-2rmg", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-1001" + ], + "details": "A vulnerability classified as critical has been found in Totolink N200RE 9.3.5u.6139_B20201216. Affected is the function main of the file /cgi-bin/cstecgi.cgi. The manipulation leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-252270 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1001" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-main-942df77e9c70495390e4aed2a29f3d13?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252270" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252270" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-7cf2-63mg-hv4j/GHSA-7cf2-63mg-hv4j.json b/advisories/unreviewed/2024/01/GHSA-7cf2-63mg-hv4j/GHSA-7cf2-63mg-hv4j.json new file mode 100644 index 00000000000..7eac788230b --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-7cf2-63mg-hv4j/GHSA-7cf2-63mg-hv4j.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7cf2-63mg-hv4j", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-40548" + ], + "details": "A buffer overflow was found in Shim in the 32-bit system. The overflow happens due to an addition operation involving a user-controlled value parsed from the PE binary being used by Shim. This value is further used for memory allocation operations, leading to a heap-based buffer overflow. This flaw causes memory corruption and can lead to a crash or data integrity issues during the boot phase.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-40548" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/security/cve/CVE-2023-40548" + }, + { + "type": "WEB", + "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2241782" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-122" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-7cm4-cx64-v496/GHSA-7cm4-cx64-v496.json b/advisories/unreviewed/2024/01/GHSA-7cm4-cx64-v496/GHSA-7cm4-cx64-v496.json new file mode 100644 index 00000000000..3283c0d8131 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-7cm4-cx64-v496/GHSA-7cm4-cx64-v496.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7cm4-cx64-v496", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6165" + ], + "details": "The Restrict Usernames Emails Characters WordPress plugin before 3.1.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6165" + }, + { + "type": "WEB", + "url": "https://github.com/youki992/youki992.github.io/blob/master/others/apply2.md" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/aba62286-9a82-4d5b-9b47-1fddde5da487/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-7fpg-4q3m-78rq/GHSA-7fpg-4q3m-78rq.json b/advisories/unreviewed/2024/01/GHSA-7fpg-4q3m-78rq/GHSA-7fpg-4q3m-78rq.json new file mode 100644 index 00000000000..b2b7c508552 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-7fpg-4q3m-78rq/GHSA-7fpg-4q3m-78rq.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7fpg-4q3m-78rq", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6391" + ], + "details": "The Custom User CSS WordPress plugin through 0.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6391" + }, + { + "type": "WEB", + "url": "https://magos-securitas.com/txt/CVE-2023-6391.txt" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/4098b18d-6ff3-462c-af05-48adb6599cf3/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-7jg3-fhmp-w7fm/GHSA-7jg3-fhmp-w7fm.json b/advisories/unreviewed/2024/01/GHSA-7jg3-fhmp-w7fm/GHSA-7jg3-fhmp-w7fm.json index 5566542e4c6..3dfab467489 100644 --- a/advisories/unreviewed/2024/01/GHSA-7jg3-fhmp-w7fm/GHSA-7jg3-fhmp-w7fm.json +++ b/advisories/unreviewed/2024/01/GHSA-7jg3-fhmp-w7fm/GHSA-7jg3-fhmp-w7fm.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/01/GHSA-82g7-hvfx-485f/GHSA-82g7-hvfx-485f.json b/advisories/unreviewed/2024/01/GHSA-82g7-hvfx-485f/GHSA-82g7-hvfx-485f.json new file mode 100644 index 00000000000..ba59c9ef0ac --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-82g7-hvfx-485f/GHSA-82g7-hvfx-485f.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-82g7-hvfx-485f", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2023-7089" + ], + "details": "The Easy SVG Allow WordPress plugin through 1.0 does not sanitize uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7089" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/3b8ba734-7764-4ab6-a7e2-8de55bd46bed/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-8622-rmmr-47jv/GHSA-8622-rmmr-47jv.json b/advisories/unreviewed/2024/01/GHSA-8622-rmmr-47jv/GHSA-8622-rmmr-47jv.json new file mode 100644 index 00000000000..dcd7e086860 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-8622-rmmr-47jv/GHSA-8622-rmmr-47jv.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8622-rmmr-47jv", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6389" + ], + "details": "The WordPress Toolbar WordPress plugin through 2.2.6 redirects to any URL via the \"wptbto\" parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6389" + }, + { + "type": "WEB", + "url": "https://magos-securitas.com/txt/CVE-2023-6389.txt" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/04dafc55-3a8d-4dd2-96da-7a8b100e5a81/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-867h-h9jh-9vf4/GHSA-867h-h9jh-9vf4.json b/advisories/unreviewed/2024/01/GHSA-867h-h9jh-9vf4/GHSA-867h-h9jh-9vf4.json index b1303230b9a..79101295ef4 100644 --- a/advisories/unreviewed/2024/01/GHSA-867h-h9jh-9vf4/GHSA-867h-h9jh-9vf4.json +++ b/advisories/unreviewed/2024/01/GHSA-867h-h9jh-9vf4/GHSA-867h-h9jh-9vf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-867h-h9jh-9vf4", - "modified": "2024-01-24T00:30:33Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:33Z", "aliases": [ "CVE-2024-0813" ], "details": "Use after free in Reading Mode in Google Chrome prior to 121.0.6167.85 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via specific UI interaction. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-8p7h-9gqv-5fx9/GHSA-8p7h-9gqv-5fx9.json b/advisories/unreviewed/2024/01/GHSA-8p7h-9gqv-5fx9/GHSA-8p7h-9gqv-5fx9.json new file mode 100644 index 00000000000..402034ac392 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-8p7h-9gqv-5fx9/GHSA-8p7h-9gqv-5fx9.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8p7h-9gqv-5fx9", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2023-6633" + ], + "details": "The Site Notes WordPress plugin through 2.0.0 does not have CSRF checks in some of its functionalities, which could allow attackers to make logged in users perform unwanted actions, such as deleting administration notes, via CSRF attacks", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6633" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/eb983d82-b894-41c5-b51f-94d4bba3ba39/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-8r62-6w8q-xrq2/GHSA-8r62-6w8q-xrq2.json b/advisories/unreviewed/2024/01/GHSA-8r62-6w8q-xrq2/GHSA-8r62-6w8q-xrq2.json index fd487da3fda..1ec2cbb8f4e 100644 --- a/advisories/unreviewed/2024/01/GHSA-8r62-6w8q-xrq2/GHSA-8r62-6w8q-xrq2.json +++ b/advisories/unreviewed/2024/01/GHSA-8r62-6w8q-xrq2/GHSA-8r62-6w8q-xrq2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8r62-6w8q-xrq2", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0805" ], "details": "Inappropriate implementation in Downloads in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to perform domain spoofing via a crafted domain name. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:07Z" diff --git a/advisories/unreviewed/2024/01/GHSA-8vhj-m4qr-2chr/GHSA-8vhj-m4qr-2chr.json b/advisories/unreviewed/2024/01/GHSA-8vhj-m4qr-2chr/GHSA-8vhj-m4qr-2chr.json new file mode 100644 index 00000000000..64f632d3746 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-8vhj-m4qr-2chr/GHSA-8vhj-m4qr-2chr.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8vhj-m4qr-2chr", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2024-1004" + ], + "details": "A vulnerability, which was classified as critical, was found in Totolink N200RE 9.3.5u.6139_B20201216. This affects the function loginAuth of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument http_host leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-252273 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1004" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-loginAuth-cbde48da404049328cb698394b6c0641?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252273" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252273" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-9gmp-mjhc-r22w/GHSA-9gmp-mjhc-r22w.json b/advisories/unreviewed/2024/01/GHSA-9gmp-mjhc-r22w/GHSA-9gmp-mjhc-r22w.json new file mode 100644 index 00000000000..833df4f12e5 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-9gmp-mjhc-r22w/GHSA-9gmp-mjhc-r22w.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9gmp-mjhc-r22w", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-5943" + ], + "details": "The Wp-Adv-Quiz WordPress plugin before 1.0.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-5943" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/18fbe9d5-4829-450b-988c-8ba4becd032a/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-9h4j-w5f8-xjpc/GHSA-9h4j-w5f8-xjpc.json b/advisories/unreviewed/2024/01/GHSA-9h4j-w5f8-xjpc/GHSA-9h4j-w5f8-xjpc.json new file mode 100644 index 00000000000..52e8395b25c --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-9h4j-w5f8-xjpc/GHSA-9h4j-w5f8-xjpc.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9h4j-w5f8-xjpc", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2024-1003" + ], + "details": "A vulnerability, which was classified as critical, has been found in Totolink N200RE 9.3.5u.6139_B20201216. Affected by this issue is the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument lang leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252272. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1003" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-setLanguageCfg-72357294db1e4f8096b29d3f2592d1fc?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252272" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252272" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-9p23-87ch-pcgg/GHSA-9p23-87ch-pcgg.json b/advisories/unreviewed/2024/01/GHSA-9p23-87ch-pcgg/GHSA-9p23-87ch-pcgg.json index 85c48b8b738..48f5413270b 100644 --- a/advisories/unreviewed/2024/01/GHSA-9p23-87ch-pcgg/GHSA-9p23-87ch-pcgg.json +++ b/advisories/unreviewed/2024/01/GHSA-9p23-87ch-pcgg/GHSA-9p23-87ch-pcgg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9p23-87ch-pcgg", - "modified": "2024-01-22T06:30:31Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-22T06:30:31Z", "aliases": [ "CVE-2024-22113" ], "details": "Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote unauthenticated attacker to redirect users to arbitrary websites and conduct phishing attacks via a specially crafted URL.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-601" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-22T05:15:09Z" diff --git a/advisories/unreviewed/2024/01/GHSA-9x52-pxhj-x4j7/GHSA-9x52-pxhj-x4j7.json b/advisories/unreviewed/2024/01/GHSA-9x52-pxhj-x4j7/GHSA-9x52-pxhj-x4j7.json new file mode 100644 index 00000000000..02e05126379 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-9x52-pxhj-x4j7/GHSA-9x52-pxhj-x4j7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9x52-pxhj-x4j7", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-1015" + ], + "details": " Remote command execution vulnerability in SE-elektronic GmbH E-DDC3.3 affecting versions 03.07.03 and higher. An attacker could send different commands from the operating system to the system via the web configuration functionality of the device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1015" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-se-elektronic-gmbh-products" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-9xv5-7pc9-8rr3/GHSA-9xv5-7pc9-8rr3.json b/advisories/unreviewed/2024/01/GHSA-9xv5-7pc9-8rr3/GHSA-9xv5-7pc9-8rr3.json new file mode 100644 index 00000000000..e928e9db9cb --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-9xv5-7pc9-8rr3/GHSA-9xv5-7pc9-8rr3.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9xv5-7pc9-8rr3", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6279" + ], + "details": "The Woostify Sites Library WordPress plugin before 1.4.8 does not have authorisation in an AJAX action, allowing any authenticated users, such as subscriber to update arbitrary blog options and set them to 'activated' which could lead to DoS when using a specific option name", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6279" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/626bbc7d-0d0f-4418-ac61-666278a1cbdb/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-c352-2vg8-m9gr/GHSA-c352-2vg8-m9gr.json b/advisories/unreviewed/2024/01/GHSA-c352-2vg8-m9gr/GHSA-c352-2vg8-m9gr.json index 456de9b2f21..59f8645a8ff 100644 --- a/advisories/unreviewed/2024/01/GHSA-c352-2vg8-m9gr/GHSA-c352-2vg8-m9gr.json +++ b/advisories/unreviewed/2024/01/GHSA-c352-2vg8-m9gr/GHSA-c352-2vg8-m9gr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c352-2vg8-m9gr", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0810" ], "details": "Insufficient policy enforcement in DevTools in Google Chrome prior to 121.0.6167.85 allowed an attacker who convinced a user to install a malicious extension to leak cross-origin data via a crafted Chrome Extension. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-f44w-wxhf-f354/GHSA-f44w-wxhf-f354.json b/advisories/unreviewed/2024/01/GHSA-f44w-wxhf-f354/GHSA-f44w-wxhf-f354.json new file mode 100644 index 00000000000..f9545339316 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-f44w-wxhf-f354/GHSA-f44w-wxhf-f354.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f44w-wxhf-f354", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2023-7199" + ], + "details": "The Relevanssi WordPress plugin before 4.22.0, Relevanssi Premium WordPress plugin before 2.25.0 allows any unauthenticated user to read draft and private posts via a crafted request", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7199" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/0c96a128-4473-41f5-82ce-94bba33ca4a3/" + }, + { + "type": "WEB", + "url": "https://www.relevanssi.com/release-notes/premium-2-25-free-4-22-release-notes/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-f7x7-cw3q-5rm9/GHSA-f7x7-cw3q-5rm9.json b/advisories/unreviewed/2024/01/GHSA-f7x7-cw3q-5rm9/GHSA-f7x7-cw3q-5rm9.json index 3f0e53217f5..c0c4aafb6a5 100644 --- a/advisories/unreviewed/2024/01/GHSA-f7x7-cw3q-5rm9/GHSA-f7x7-cw3q-5rm9.json +++ b/advisories/unreviewed/2024/01/GHSA-f7x7-cw3q-5rm9/GHSA-f7x7-cw3q-5rm9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f7x7-cw3q-5rm9", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0806" ], "details": "Use after free in Passwords in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially exploit heap corruption via specific UI interaction. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:07Z" diff --git a/advisories/unreviewed/2024/01/GHSA-fp4h-ppqj-prv5/GHSA-fp4h-ppqj-prv5.json b/advisories/unreviewed/2024/01/GHSA-fp4h-ppqj-prv5/GHSA-fp4h-ppqj-prv5.json new file mode 100644 index 00000000000..06e40156015 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-fp4h-ppqj-prv5/GHSA-fp4h-ppqj-prv5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fp4h-ppqj-prv5", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-1014" + ], + "details": "Uncontrolled resource consumption vulnerability in SE-elektronic GmbH E-DDC3.3 affecting versions 03.07.03 and higher. An attacker could interrupt the availability of the administration panel by sending multiple ICMP packets.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1014" + }, + { + "type": "WEB", + "url": "https://www.incibe.es/en/incibe-cert/notices/aviso-sci/multiple-vulnerabilities-se-elektronic-gmbh-products" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-fppg-744g-mv5h/GHSA-fppg-744g-mv5h.json b/advisories/unreviewed/2024/01/GHSA-fppg-744g-mv5h/GHSA-fppg-744g-mv5h.json index 9ba4921374c..3aab65d4b04 100644 --- a/advisories/unreviewed/2024/01/GHSA-fppg-744g-mv5h/GHSA-fppg-744g-mv5h.json +++ b/advisories/unreviewed/2024/01/GHSA-fppg-744g-mv5h/GHSA-fppg-744g-mv5h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fppg-744g-mv5h", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0812" ], "details": "Inappropriate implementation in Accessibility in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-gf9w-j28x-vmch/GHSA-gf9w-j28x-vmch.json b/advisories/unreviewed/2024/01/GHSA-gf9w-j28x-vmch/GHSA-gf9w-j28x-vmch.json new file mode 100644 index 00000000000..05d64887d2a --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-gf9w-j28x-vmch/GHSA-gf9w-j28x-vmch.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gf9w-j28x-vmch", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6503" + ], + "details": "The WP Plugin Lister WordPress plugin through 2.1.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6503" + }, + { + "type": "WEB", + "url": "https://magos-securitas.com/txt/CVE-2023-6503.txt" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/0d95de23-e8f6-4342-b19c-57cd22b2fee2/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-h3vc-4gq7-6h97/GHSA-h3vc-4gq7-6h97.json b/advisories/unreviewed/2024/01/GHSA-h3vc-4gq7-6h97/GHSA-h3vc-4gq7-6h97.json new file mode 100644 index 00000000000..46cea6ad48a --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-h3vc-4gq7-6h97/GHSA-h3vc-4gq7-6h97.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h3vc-4gq7-6h97", + "modified": "2024-01-29T15:30:27Z", + "published": "2024-01-29T15:30:27Z", + "aliases": [ + "CVE-2024-0998" + ], + "details": "A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been classified as critical. This affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ip leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252267. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0998" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-setDiagnosisCfg-b2d36451543e4c6da063646721a24604?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252267" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252267" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T13:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-h5f8-8ppp-6wxq/GHSA-h5f8-8ppp-6wxq.json b/advisories/unreviewed/2024/01/GHSA-h5f8-8ppp-6wxq/GHSA-h5f8-8ppp-6wxq.json index 3ba22d885bf..0eb456bedf7 100644 --- a/advisories/unreviewed/2024/01/GHSA-h5f8-8ppp-6wxq/GHSA-h5f8-8ppp-6wxq.json +++ b/advisories/unreviewed/2024/01/GHSA-h5f8-8ppp-6wxq/GHSA-h5f8-8ppp-6wxq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h5f8-8ppp-6wxq", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0809" ], "details": "Inappropriate implementation in Autofill in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to bypass Autofill restrictions via a crafted HTML page. (Chromium security severity: Low)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-hjm7-v5pw-x89r/GHSA-hjm7-v5pw-x89r.json b/advisories/unreviewed/2024/01/GHSA-hjm7-v5pw-x89r/GHSA-hjm7-v5pw-x89r.json index 2c57391442e..6ca663ddcb6 100644 --- a/advisories/unreviewed/2024/01/GHSA-hjm7-v5pw-x89r/GHSA-hjm7-v5pw-x89r.json +++ b/advisories/unreviewed/2024/01/GHSA-hjm7-v5pw-x89r/GHSA-hjm7-v5pw-x89r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hjm7-v5pw-x89r", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0807" ], "details": "Use after free in Web Audio in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:07Z" diff --git a/advisories/unreviewed/2024/01/GHSA-hpcp-jfj7-rjww/GHSA-hpcp-jfj7-rjww.json b/advisories/unreviewed/2024/01/GHSA-hpcp-jfj7-rjww/GHSA-hpcp-jfj7-rjww.json new file mode 100644 index 00000000000..63475ad93c0 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-hpcp-jfj7-rjww/GHSA-hpcp-jfj7-rjww.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hpcp-jfj7-rjww", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-5124" + ], + "details": "The Page Builder: Pagelayer WordPress plugin before 1.8.0 doesn't prevent attackers with administrator privileges from inserting malicious JavaScript inside a post's header or footer code, even when unfiltered_html is disallowed, such as in multi-site WordPress configurations.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-5124" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/1ef86546-3467-432c-a863-1ca3e5c65bd4/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-j8jv-qh5w-hrq5/GHSA-j8jv-qh5w-hrq5.json b/advisories/unreviewed/2024/01/GHSA-j8jv-qh5w-hrq5/GHSA-j8jv-qh5w-hrq5.json new file mode 100644 index 00000000000..01081033b8d --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-j8jv-qh5w-hrq5/GHSA-j8jv-qh5w-hrq5.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j8jv-qh5w-hrq5", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-1002" + ], + "details": "A vulnerability classified as critical was found in Totolink N200RE 9.3.5u.6139_B20201216. Affected by this vulnerability is the function setIpPortFilterRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ePort leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-252271. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1002" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-setIpPortFilterRules-71c3f0a947e14b7f95fa19b7d6676994?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252271" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252271" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-jj7g-c984-hr2m/GHSA-jj7g-c984-hr2m.json b/advisories/unreviewed/2024/01/GHSA-jj7g-c984-hr2m/GHSA-jj7g-c984-hr2m.json index 8fa2291080e..a5cdec42a68 100644 --- a/advisories/unreviewed/2024/01/GHSA-jj7g-c984-hr2m/GHSA-jj7g-c984-hr2m.json +++ b/advisories/unreviewed/2024/01/GHSA-jj7g-c984-hr2m/GHSA-jj7g-c984-hr2m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jj7g-c984-hr2m", - "modified": "2024-01-21T06:30:22Z", + "modified": "2024-01-29T15:30:23Z", "published": "2024-01-21T06:30:22Z", "aliases": [ "CVE-2024-23726" ], "details": "Ubee DDW365 XCNDDW365 and DDW366 XCNDXW3WB devices have predictable default WPA2 PSKs that could lead to unauthorized remote access. A remote attacker (in proximity to a Wi-Fi network) can derive the default WPA2-PSK value by observing a beacon frame. A PSK is generated by using the first six characters of the SSID and the last six of the BSSID, decrementing the last digit.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-798" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-21T04:15:19Z" diff --git a/advisories/unreviewed/2024/01/GHSA-jxfv-m3f6-ch5r/GHSA-jxfv-m3f6-ch5r.json b/advisories/unreviewed/2024/01/GHSA-jxfv-m3f6-ch5r/GHSA-jxfv-m3f6-ch5r.json index 04bb5a376f8..2e2e4e3a1f1 100644 --- a/advisories/unreviewed/2024/01/GHSA-jxfv-m3f6-ch5r/GHSA-jxfv-m3f6-ch5r.json +++ b/advisories/unreviewed/2024/01/GHSA-jxfv-m3f6-ch5r/GHSA-jxfv-m3f6-ch5r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jxfv-m3f6-ch5r", - "modified": "2024-01-24T00:30:33Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:33Z", "aliases": [ "CVE-2024-0814" ], "details": "Incorrect security UI in Payments in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially spoof security UI via a crafted HTML page. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-346" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:08Z" diff --git a/advisories/unreviewed/2024/01/GHSA-m2r6-996j-pvf6/GHSA-m2r6-996j-pvf6.json b/advisories/unreviewed/2024/01/GHSA-m2r6-996j-pvf6/GHSA-m2r6-996j-pvf6.json index 7cddab10c9d..63abc0907c0 100644 --- a/advisories/unreviewed/2024/01/GHSA-m2r6-996j-pvf6/GHSA-m2r6-996j-pvf6.json +++ b/advisories/unreviewed/2024/01/GHSA-m2r6-996j-pvf6/GHSA-m2r6-996j-pvf6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m2r6-996j-pvf6", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0804" ], "details": "Insufficient policy enforcement in iOS Security UI in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:07Z" diff --git a/advisories/unreviewed/2024/01/GHSA-m653-22c6-v2w8/GHSA-m653-22c6-v2w8.json b/advisories/unreviewed/2024/01/GHSA-m653-22c6-v2w8/GHSA-m653-22c6-v2w8.json new file mode 100644 index 00000000000..873c6c7fb88 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-m653-22c6-v2w8/GHSA-m653-22c6-v2w8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m653-22c6-v2w8", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2023-7204" + ], + "details": "The WP STAGING WordPress Backup plugin before 3.2.0 allows access to cache files during the cloning process which provides", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7204" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/65a8cf83-d6cc-4d4c-a482-288a83a69879/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-qrpx-55hc-9pr8/GHSA-qrpx-55hc-9pr8.json b/advisories/unreviewed/2024/01/GHSA-qrpx-55hc-9pr8/GHSA-qrpx-55hc-9pr8.json new file mode 100644 index 00000000000..2cedaa762a8 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-qrpx-55hc-9pr8/GHSA-qrpx-55hc-9pr8.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qrpx-55hc-9pr8", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2024-1000" + ], + "details": "A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been rated as critical. This issue affects the function setTracerouteCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument command leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-252269 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1000" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-setTracerouteCfg-b6b3fe05b4a945a3bc460dbcb61dfc75?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252269" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252269" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-rm8m-jx8f-gg9f/GHSA-rm8m-jx8f-gg9f.json b/advisories/unreviewed/2024/01/GHSA-rm8m-jx8f-gg9f/GHSA-rm8m-jx8f-gg9f.json new file mode 100644 index 00000000000..7e59230dc6b --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-rm8m-jx8f-gg9f/GHSA-rm8m-jx8f-gg9f.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rm8m-jx8f-gg9f", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2023-7074" + ], + "details": "The WP SOCIAL BOOKMARK MENU WordPress plugin through 1.2 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7074" + }, + { + "type": "WEB", + "url": "https://magos-securitas.com/txt/CVE-2023-7074.txt" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/7906c349-97b0-4d82-aef0-97a1175ae88e/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-w6c8-6gw8-5gvp/GHSA-w6c8-6gw8-5gvp.json b/advisories/unreviewed/2024/01/GHSA-w6c8-6gw8-5gvp/GHSA-w6c8-6gw8-5gvp.json new file mode 100644 index 00000000000..5d94e23093a --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-w6c8-6gw8-5gvp/GHSA-w6c8-6gw8-5gvp.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w6c8-6gw8-5gvp", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6946" + ], + "details": "The Autotitle for WordPress plugin through 1.0.3 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6946" + }, + { + "type": "WEB", + "url": "https://magos-securitas.com/txt/CVE-2023-6946" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/54a00416-c7e3-44f3-8dd2-ed9e748055e6/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-wxxj-43fh-x378/GHSA-wxxj-43fh-x378.json b/advisories/unreviewed/2024/01/GHSA-wxxj-43fh-x378/GHSA-wxxj-43fh-x378.json new file mode 100644 index 00000000000..73784411d67 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-wxxj-43fh-x378/GHSA-wxxj-43fh-x378.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wxxj-43fh-x378", + "modified": "2024-01-29T15:30:30Z", + "published": "2024-01-29T15:30:30Z", + "aliases": [ + "CVE-2024-1005" + ], + "details": "A vulnerability has been found in Shanxi Diankeyun Technology NODERP up to 6.0.2 and classified as critical. This vulnerability affects unknown code of the file /runtime/log. The manipulation leads to files or directories accessible. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-252274 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-1005" + }, + { + "type": "WEB", + "url": "https://note.zhaoj.in/share/M9ERphWTXUPj" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252274" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252274" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-552" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-x83f-9m8f-428q/GHSA-x83f-9m8f-428q.json b/advisories/unreviewed/2024/01/GHSA-x83f-9m8f-428q/GHSA-x83f-9m8f-428q.json index 0b229cc835c..5ca6dbcac48 100644 --- a/advisories/unreviewed/2024/01/GHSA-x83f-9m8f-428q/GHSA-x83f-9m8f-428q.json +++ b/advisories/unreviewed/2024/01/GHSA-x83f-9m8f-428q/GHSA-x83f-9m8f-428q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x83f-9m8f-428q", - "modified": "2024-01-24T00:30:32Z", + "modified": "2024-01-29T15:30:24Z", "published": "2024-01-24T00:30:32Z", "aliases": [ "CVE-2024-0808" ], "details": "Integer underflow in WebUI in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially exploit heap corruption via a malicious file. (Chromium security severity: High)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-191" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-01-24T00:15:07Z" diff --git a/advisories/unreviewed/2024/01/GHSA-xqff-gxc3-2x4v/GHSA-xqff-gxc3-2x4v.json b/advisories/unreviewed/2024/01/GHSA-xqff-gxc3-2x4v/GHSA-xqff-gxc3-2x4v.json new file mode 100644 index 00000000000..7052a5fd2a9 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-xqff-gxc3-2x4v/GHSA-xqff-gxc3-2x4v.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xqff-gxc3-2x4v", + "modified": "2024-01-29T15:30:29Z", + "published": "2024-01-29T15:30:29Z", + "aliases": [ + "CVE-2023-6530" + ], + "details": "The TJ Shortcodes WordPress plugin through 0.1.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-6530" + }, + { + "type": "WEB", + "url": "https://research.cleantalk.org/cve-2023-6530-tj-shortcodes-stored-xss-poc/" + }, + { + "type": "WEB", + "url": "https://wpscan.com/vulnerability/8e63bf7c-7827-4c4d-b0e3-66354b218bee/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T15:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/01/GHSA-xw8g-vjxc-xg4v/GHSA-xw8g-vjxc-xg4v.json b/advisories/unreviewed/2024/01/GHSA-xw8g-vjxc-xg4v/GHSA-xw8g-vjxc-xg4v.json new file mode 100644 index 00000000000..2e4acaabff6 --- /dev/null +++ b/advisories/unreviewed/2024/01/GHSA-xw8g-vjxc-xg4v/GHSA-xw8g-vjxc-xg4v.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xw8g-vjxc-xg4v", + "modified": "2024-01-29T15:30:28Z", + "published": "2024-01-29T15:30:28Z", + "aliases": [ + "CVE-2024-0999" + ], + "details": "A vulnerability was found in Totolink N200RE 9.3.5u.6139_B20201216. It has been declared as critical. This vulnerability affects the function setParentalRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument eTime leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-252268. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-0999" + }, + { + "type": "WEB", + "url": "https://jylsec.notion.site/TOTOLINK-N200RE-has-stack-buffer-overflow-vulnerability-in-setParentalRules-f891c062b86349a596ee173cb456b4f6?pvs=4" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.252268" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.252268" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-01-29T13:15:08Z" + } +} \ No newline at end of file