From 1442731e52ffb5865da036dddc718876347c612a Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 28 Nov 2024 05:16:19 +0000 Subject: [PATCH] Advisory Database Sync --- .../01/GHSA-qcq7-c3jg-v7g4/GHSA-qcq7-c3jg-v7g4.json | 4 +--- .../04/GHSA-2264-54r3-3rjm/GHSA-2264-54r3-3rjm.json | 12 +++--------- .../04/GHSA-24rh-3pgw-777c/GHSA-24rh-3pgw-777c.json | 12 +++--------- .../04/GHSA-2753-chm6-qr3j/GHSA-2753-chm6-qr3j.json | 12 +++--------- .../04/GHSA-2fjp-fr4m-265h/GHSA-2fjp-fr4m-265h.json | 8 ++------ .../04/GHSA-2g4v-qc3v-672p/GHSA-2g4v-qc3v-672p.json | 8 ++------ .../04/GHSA-2gfg-p5mp-gf94/GHSA-2gfg-p5mp-gf94.json | 12 +++--------- .../04/GHSA-2gr9-3f9h-5pc3/GHSA-2gr9-3f9h-5pc3.json | 8 ++------ .../04/GHSA-2hm5-gw4v-jffr/GHSA-2hm5-gw4v-jffr.json | 12 +++--------- .../04/GHSA-2jx3-m5vv-rvc6/GHSA-2jx3-m5vv-rvc6.json | 8 ++------ .../04/GHSA-2v6g-rfjx-x852/GHSA-2v6g-rfjx-x852.json | 8 ++------ .../04/GHSA-34w9-p2mc-gqxq/GHSA-34w9-p2mc-gqxq.json | 12 +++--------- .../04/GHSA-354x-gx8f-qvm6/GHSA-354x-gx8f-qvm6.json | 8 ++------ .../04/GHSA-35jf-fw8j-m7v3/GHSA-35jf-fw8j-m7v3.json | 12 +++--------- .../04/GHSA-3g7c-5v2x-h72w/GHSA-3g7c-5v2x-h72w.json | 8 ++------ .../04/GHSA-3hph-r3fh-24mv/GHSA-3hph-r3fh-24mv.json | 12 +++--------- .../04/GHSA-3jpg-j7r7-3wm6/GHSA-3jpg-j7r7-3wm6.json | 8 ++------ .../04/GHSA-3mpv-vc7v-xpc6/GHSA-3mpv-vc7v-xpc6.json | 8 ++------ .../04/GHSA-3vq7-qx2x-qqw3/GHSA-3vq7-qx2x-qqw3.json | 8 ++------ .../04/GHSA-4683-gq97-9p3g/GHSA-4683-gq97-9p3g.json | 12 +++--------- .../04/GHSA-46p9-c28x-c7x9/GHSA-46p9-c28x-c7x9.json | 12 +++--------- .../04/GHSA-4747-c4gm-2j5q/GHSA-4747-c4gm-2j5q.json | 8 ++------ .../04/GHSA-48c9-rw99-398v/GHSA-48c9-rw99-398v.json | 8 ++------ .../04/GHSA-48g3-9q4j-7w5f/GHSA-48g3-9q4j-7w5f.json | 8 ++------ .../04/GHSA-4j68-mmq7-4c57/GHSA-4j68-mmq7-4c57.json | 12 +++--------- .../04/GHSA-4j8m-c6hq-7wpj/GHSA-4j8m-c6hq-7wpj.json | 12 +++--------- .../04/GHSA-4pqr-83q4-35m7/GHSA-4pqr-83q4-35m7.json | 12 +++--------- .../04/GHSA-4v27-cw49-q24f/GHSA-4v27-cw49-q24f.json | 8 ++------ .../04/GHSA-4vv4-wwgv-w267/GHSA-4vv4-wwgv-w267.json | 8 ++------ .../04/GHSA-5342-24w2-77w3/GHSA-5342-24w2-77w3.json | 12 +++--------- .../04/GHSA-5366-ff25-5h7f/GHSA-5366-ff25-5h7f.json | 8 ++------ .../04/GHSA-544j-365h-qj92/GHSA-544j-365h-qj92.json | 8 ++------ .../04/GHSA-54v2-68v5-6xj9/GHSA-54v2-68v5-6xj9.json | 12 +++--------- .../04/GHSA-5657-h9cj-f78j/GHSA-5657-h9cj-f78j.json | 8 ++------ .../04/GHSA-56m5-x4c2-m4p5/GHSA-56m5-x4c2-m4p5.json | 12 +++--------- .../04/GHSA-5f99-qr48-9xhf/GHSA-5f99-qr48-9xhf.json | 8 ++------ .../04/GHSA-5pm7-5jwh-3rhh/GHSA-5pm7-5jwh-3rhh.json | 8 ++------ .../04/GHSA-5w64-w3wc-5m39/GHSA-5w64-w3wc-5m39.json | 8 ++------ .../04/GHSA-5wg6-v5wg-r8c6/GHSA-5wg6-v5wg-r8c6.json | 8 ++------ .../04/GHSA-63rh-cqhw-45cw/GHSA-63rh-cqhw-45cw.json | 12 +++--------- .../04/GHSA-689v-wffr-56c5/GHSA-689v-wffr-56c5.json | 12 +++--------- .../04/GHSA-699x-pfvf-q2fj/GHSA-699x-pfvf-q2fj.json | 12 +++--------- .../04/GHSA-69q2-4j65-gwmx/GHSA-69q2-4j65-gwmx.json | 8 ++------ .../04/GHSA-6p48-4gww-9f6q/GHSA-6p48-4gww-9f6q.json | 8 ++------ .../04/GHSA-6qrr-f5fp-qfjw/GHSA-6qrr-f5fp-qfjw.json | 12 +++--------- .../04/GHSA-6v48-6q4p-265q/GHSA-6v48-6q4p-265q.json | 8 ++------ .../04/GHSA-7g5g-x3hv-jj7j/GHSA-7g5g-x3hv-jj7j.json | 12 +++--------- .../04/GHSA-7jvw-hwxq-x996/GHSA-7jvw-hwxq-x996.json | 12 +++--------- .../04/GHSA-7p4w-wg6m-2x69/GHSA-7p4w-wg6m-2x69.json | 12 +++--------- .../04/GHSA-7qfj-mrcg-vg5q/GHSA-7qfj-mrcg-vg5q.json | 12 +++--------- .../04/GHSA-7rpp-xg8m-55hx/GHSA-7rpp-xg8m-55hx.json | 8 ++------ .../04/GHSA-7w6v-fp3h-4qv8/GHSA-7w6v-fp3h-4qv8.json | 8 ++------ .../04/GHSA-83mw-jhfh-84qc/GHSA-83mw-jhfh-84qc.json | 8 ++------ .../04/GHSA-8482-vc4v-pr7x/GHSA-8482-vc4v-pr7x.json | 8 ++------ .../04/GHSA-87v8-5rxx-33vv/GHSA-87v8-5rxx-33vv.json | 8 ++------ .../04/GHSA-898p-fmh8-7xpx/GHSA-898p-fmh8-7xpx.json | 12 +++--------- .../04/GHSA-8f22-6rp9-r7h8/GHSA-8f22-6rp9-r7h8.json | 12 +++--------- .../04/GHSA-8fpc-7gj8-q327/GHSA-8fpc-7gj8-q327.json | 8 ++------ .../04/GHSA-8fvh-8jx9-xcm5/GHSA-8fvh-8jx9-xcm5.json | 8 ++------ .../04/GHSA-8h35-26pg-5q6f/GHSA-8h35-26pg-5q6f.json | 12 +++--------- .../04/GHSA-8h6p-4g37-2h83/GHSA-8h6p-4g37-2h83.json | 8 ++------ .../04/GHSA-8rjq-mvw5-whpr/GHSA-8rjq-mvw5-whpr.json | 12 +++--------- .../04/GHSA-8rx9-vf5f-c3m8/GHSA-8rx9-vf5f-c3m8.json | 8 ++------ .../04/GHSA-8w8x-r834-7x5x/GHSA-8w8x-r834-7x5x.json | 12 +++--------- .../04/GHSA-8wvr-jmcr-x4r3/GHSA-8wvr-jmcr-x4r3.json | 8 ++------ .../04/GHSA-8xcp-44vr-gqpx/GHSA-8xcp-44vr-gqpx.json | 8 ++------ .../04/GHSA-953c-c526-jfh6/GHSA-953c-c526-jfh6.json | 8 ++------ .../04/GHSA-962w-cpjq-678w/GHSA-962w-cpjq-678w.json | 12 +++--------- .../04/GHSA-9cmq-xm5p-pqc3/GHSA-9cmq-xm5p-pqc3.json | 12 +++--------- .../04/GHSA-9hfq-jf6w-xh6p/GHSA-9hfq-jf6w-xh6p.json | 12 +++--------- .../04/GHSA-9j95-hw5q-64g3/GHSA-9j95-hw5q-64g3.json | 8 ++------ .../04/GHSA-9xh2-cv46-rpfc/GHSA-9xh2-cv46-rpfc.json | 12 +++--------- .../04/GHSA-9xjg-v22q-53px/GHSA-9xjg-v22q-53px.json | 8 ++------ .../04/GHSA-c6gw-433r-2p8m/GHSA-c6gw-433r-2p8m.json | 12 +++--------- .../04/GHSA-c853-r8gf-rppm/GHSA-c853-r8gf-rppm.json | 12 +++--------- .../04/GHSA-ch3f-x93w-643v/GHSA-ch3f-x93w-643v.json | 12 +++--------- .../04/GHSA-cm4r-3xmv-vwh3/GHSA-cm4r-3xmv-vwh3.json | 8 ++------ .../04/GHSA-cmgv-q9jw-74mx/GHSA-cmgv-q9jw-74mx.json | 12 +++--------- .../04/GHSA-cq5g-jq4c-qqp3/GHSA-cq5g-jq4c-qqp3.json | 8 ++------ .../04/GHSA-cv48-p55x-22xg/GHSA-cv48-p55x-22xg.json | 8 ++------ .../04/GHSA-cv5m-wg8q-wv2m/GHSA-cv5m-wg8q-wv2m.json | 12 +++--------- .../04/GHSA-cw7c-35x2-c833/GHSA-cw7c-35x2-c833.json | 12 +++--------- .../04/GHSA-cwr8-3mh6-89cx/GHSA-cwr8-3mh6-89cx.json | 8 ++------ .../04/GHSA-f3jf-vg7f-63fc/GHSA-f3jf-vg7f-63fc.json | 8 ++------ .../04/GHSA-f7p2-wh6x-gfmm/GHSA-f7p2-wh6x-gfmm.json | 8 ++------ .../04/GHSA-fh94-5622-c6w9/GHSA-fh94-5622-c6w9.json | 12 +++--------- .../04/GHSA-fmmr-mxj7-qvpw/GHSA-fmmr-mxj7-qvpw.json | 8 ++------ .../04/GHSA-fp9g-8p62-5fqm/GHSA-fp9g-8p62-5fqm.json | 8 ++------ .../04/GHSA-fpvx-p6fm-93fg/GHSA-fpvx-p6fm-93fg.json | 8 ++------ .../04/GHSA-fqg8-8594-3gf8/GHSA-fqg8-8594-3gf8.json | 12 +++--------- .../04/GHSA-fqm5-3pc9-5x8g/GHSA-fqm5-3pc9-5x8g.json | 8 ++------ .../04/GHSA-fr78-grw8-43p6/GHSA-fr78-grw8-43p6.json | 12 +++--------- .../04/GHSA-fx79-25g4-6rfm/GHSA-fx79-25g4-6rfm.json | 12 +++--------- .../04/GHSA-g4xf-44vp-f7mq/GHSA-g4xf-44vp-f7mq.json | 12 +++--------- .../04/GHSA-g5ww-8j5m-f3wq/GHSA-g5ww-8j5m-f3wq.json | 8 ++------ .../04/GHSA-g92c-j3f9-j6gh/GHSA-g92c-j3f9-j6gh.json | 12 +++--------- .../04/GHSA-gh35-vjg8-m9xj/GHSA-gh35-vjg8-m9xj.json | 8 ++------ .../04/GHSA-ghf5-97qh-xr8c/GHSA-ghf5-97qh-xr8c.json | 12 +++--------- .../04/GHSA-ghwm-jm66-72j7/GHSA-ghwm-jm66-72j7.json | 8 ++------ .../04/GHSA-gj2q-93q4-5fjx/GHSA-gj2q-93q4-5fjx.json | 12 +++--------- .../04/GHSA-gpmc-5q92-m4gq/GHSA-gpmc-5q92-m4gq.json | 8 ++------ .../04/GHSA-h457-7gvf-jx74/GHSA-h457-7gvf-jx74.json | 8 ++------ .../04/GHSA-h83c-7v84-94w9/GHSA-h83c-7v84-94w9.json | 8 ++------ .../04/GHSA-h8jc-hm24-8hqq/GHSA-h8jc-hm24-8hqq.json | 8 ++------ .../04/GHSA-hcw3-qmmj-pxw7/GHSA-hcw3-qmmj-pxw7.json | 8 ++------ .../04/GHSA-hm72-hh47-rvg2/GHSA-hm72-hh47-rvg2.json | 12 +++--------- .../04/GHSA-hp28-h2jq-hvjw/GHSA-hp28-h2jq-hvjw.json | 8 ++------ .../04/GHSA-j383-c8g2-grr5/GHSA-j383-c8g2-grr5.json | 12 +++--------- .../04/GHSA-j86h-qxmj-2v4h/GHSA-j86h-qxmj-2v4h.json | 12 +++--------- .../04/GHSA-j8jj-4m9f-87xj/GHSA-j8jj-4m9f-87xj.json | 12 +++--------- .../04/GHSA-j9jf-v6vm-xv8j/GHSA-j9jf-v6vm-xv8j.json | 12 +++--------- .../04/GHSA-j9xh-275w-pxxw/GHSA-j9xh-275w-pxxw.json | 12 +++--------- .../04/GHSA-jrmh-qf4p-w726/GHSA-jrmh-qf4p-w726.json | 12 +++--------- .../04/GHSA-jv3w-8m4c-qjj2/GHSA-jv3w-8m4c-qjj2.json | 12 +++--------- .../04/GHSA-jv4m-wm77-j9vv/GHSA-jv4m-wm77-j9vv.json | 8 ++------ .../04/GHSA-m298-p45c-x364/GHSA-m298-p45c-x364.json | 8 ++------ .../04/GHSA-m2jc-49g8-v2f9/GHSA-m2jc-49g8-v2f9.json | 12 +++--------- .../04/GHSA-m5m3-q47w-gjf4/GHSA-m5m3-q47w-gjf4.json | 12 +++--------- .../04/GHSA-m683-5cw9-vw4j/GHSA-m683-5cw9-vw4j.json | 12 +++--------- .../04/GHSA-m7h7-mfr3-qw5x/GHSA-m7h7-mfr3-qw5x.json | 12 +++--------- .../04/GHSA-m87c-4frp-hf77/GHSA-m87c-4frp-hf77.json | 12 +++--------- .../04/GHSA-mfvg-2vxv-fr75/GHSA-mfvg-2vxv-fr75.json | 8 ++------ .../04/GHSA-mgwp-rqvp-7867/GHSA-mgwp-rqvp-7867.json | 8 ++------ .../04/GHSA-mrjx-cpjh-p346/GHSA-mrjx-cpjh-p346.json | 12 +++--------- .../04/GHSA-mxqp-2426-6mxr/GHSA-mxqp-2426-6mxr.json | 8 ++------ .../04/GHSA-p383-vg63-ppj8/GHSA-p383-vg63-ppj8.json | 8 ++------ .../04/GHSA-p4j5-w3r3-5p3h/GHSA-p4j5-w3r3-5p3h.json | 8 ++------ .../04/GHSA-p598-2cg3-8qjf/GHSA-p598-2cg3-8qjf.json | 12 +++--------- .../04/GHSA-p6f6-mqx8-c8mp/GHSA-p6f6-mqx8-c8mp.json | 12 +++--------- .../04/GHSA-p7qv-6mfc-mw6g/GHSA-p7qv-6mfc-mw6g.json | 12 +++--------- .../04/GHSA-p8qj-wvcq-4w5f/GHSA-p8qj-wvcq-4w5f.json | 8 ++------ .../04/GHSA-p985-7qhp-pf5j/GHSA-p985-7qhp-pf5j.json | 8 ++------ .../04/GHSA-pc7m-pc6h-rfx3/GHSA-pc7m-pc6h-rfx3.json | 12 +++--------- .../04/GHSA-pcrc-g73f-8fw4/GHSA-pcrc-g73f-8fw4.json | 12 +++--------- .../04/GHSA-q3j3-gqv2-9qmp/GHSA-q3j3-gqv2-9qmp.json | 8 ++------ .../04/GHSA-q7jr-h9w5-jgx2/GHSA-q7jr-h9w5-jgx2.json | 8 ++------ .../04/GHSA-q959-v446-rf26/GHSA-q959-v446-rf26.json | 8 ++------ .../04/GHSA-qj29-9598-wmgp/GHSA-qj29-9598-wmgp.json | 8 ++------ .../04/GHSA-qprv-w86x-qw2w/GHSA-qprv-w86x-qw2w.json | 12 +++--------- .../04/GHSA-qxh7-4xcw-xqvm/GHSA-qxh7-4xcw-xqvm.json | 8 ++------ .../04/GHSA-r994-mqvv-9vxr/GHSA-r994-mqvv-9vxr.json | 12 +++--------- .../04/GHSA-r9rp-5v8q-f7p8/GHSA-r9rp-5v8q-f7p8.json | 8 ++------ .../04/GHSA-rvfv-82qg-gr7m/GHSA-rvfv-82qg-gr7m.json | 8 ++------ .../04/GHSA-rwwc-m7v9-48v9/GHSA-rwwc-m7v9-48v9.json | 12 +++--------- .../04/GHSA-rx6q-7jmv-mc9j/GHSA-rx6q-7jmv-mc9j.json | 12 +++--------- .../04/GHSA-v5wm-xchq-76vh/GHSA-v5wm-xchq-76vh.json | 8 ++------ .../04/GHSA-v8j7-q554-rjj8/GHSA-v8j7-q554-rjj8.json | 12 +++--------- .../04/GHSA-vc85-g439-4m62/GHSA-vc85-g439-4m62.json | 12 +++--------- .../04/GHSA-vcxw-6r9g-hhw5/GHSA-vcxw-6r9g-hhw5.json | 12 +++--------- .../04/GHSA-vvqx-5g43-3476/GHSA-vvqx-5g43-3476.json | 12 +++--------- .../04/GHSA-vvvx-48pw-6mwx/GHSA-vvvx-48pw-6mwx.json | 8 ++------ .../04/GHSA-vwgc-45gc-993q/GHSA-vwgc-45gc-993q.json | 12 +++--------- .../04/GHSA-w3vj-p2cf-85rg/GHSA-w3vj-p2cf-85rg.json | 12 +++--------- .../04/GHSA-w3wm-rw5r-53pq/GHSA-w3wm-rw5r-53pq.json | 12 +++--------- .../04/GHSA-w4mj-xwvw-pc54/GHSA-w4mj-xwvw-pc54.json | 12 +++--------- .../04/GHSA-w4xc-8www-f4gx/GHSA-w4xc-8www-f4gx.json | 8 ++------ .../04/GHSA-w76w-v64m-qrv5/GHSA-w76w-v64m-qrv5.json | 8 ++------ .../04/GHSA-w7fr-cp8f-6qjg/GHSA-w7fr-cp8f-6qjg.json | 8 ++------ .../04/GHSA-wc57-w8f9-32p8/GHSA-wc57-w8f9-32p8.json | 8 ++------ .../04/GHSA-wgcp-pcqp-g3jx/GHSA-wgcp-pcqp-g3jx.json | 12 +++--------- .../04/GHSA-wq7c-gv3r-8f5j/GHSA-wq7c-gv3r-8f5j.json | 8 ++------ .../04/GHSA-wwfc-8866-37gw/GHSA-wwfc-8866-37gw.json | 8 ++------ .../04/GHSA-x2cm-2g9q-p73v/GHSA-x2cm-2g9q-p73v.json | 8 ++------ .../04/GHSA-x2hr-29w2-c5r2/GHSA-x2hr-29w2-c5r2.json | 12 +++--------- .../04/GHSA-x367-6564-4q6f/GHSA-x367-6564-4q6f.json | 12 +++--------- .../04/GHSA-x5xr-55mj-qgw2/GHSA-x5xr-55mj-qgw2.json | 8 ++------ .../04/GHSA-x9f4-5mh2-hqp8/GHSA-x9f4-5mh2-hqp8.json | 8 ++------ .../04/GHSA-xcgg-7jq8-m3f6/GHSA-xcgg-7jq8-m3f6.json | 8 ++------ .../04/GHSA-xhx4-qmff-87w3/GHSA-xhx4-qmff-87w3.json | 8 ++------ .../04/GHSA-xq7p-w257-hcj2/GHSA-xq7p-w257-hcj2.json | 8 ++------ .../04/GHSA-xrj4-x4gq-r76x/GHSA-xrj4-x4gq-r76x.json | 12 +++--------- .../05/GHSA-22wf-j8j6-f67g/GHSA-22wf-j8j6-f67g.json | 12 +++--------- .../05/GHSA-23rx-f2xv-5pg9/GHSA-23rx-f2xv-5pg9.json | 12 +++--------- .../05/GHSA-23w3-pmw9-p5xf/GHSA-23w3-pmw9-p5xf.json | 12 +++--------- .../05/GHSA-24xq-3fcv-v34c/GHSA-24xq-3fcv-v34c.json | 12 +++--------- .../05/GHSA-259m-497m-7gx5/GHSA-259m-497m-7gx5.json | 12 +++--------- .../05/GHSA-25vq-w6f5-5w2h/GHSA-25vq-w6f5-5w2h.json | 12 +++--------- .../05/GHSA-262w-gwhq-grfq/GHSA-262w-gwhq-grfq.json | 12 +++--------- .../05/GHSA-2677-vh42-vx74/GHSA-2677-vh42-vx74.json | 12 +++--------- .../05/GHSA-26p5-m65h-vvjg/GHSA-26p5-m65h-vvjg.json | 12 +++--------- .../05/GHSA-26xv-4xf9-c953/GHSA-26xv-4xf9-c953.json | 4 +--- .../05/GHSA-27gx-92r4-wr88/GHSA-27gx-92r4-wr88.json | 12 +++--------- .../05/GHSA-27rm-4c27-5jqc/GHSA-27rm-4c27-5jqc.json | 12 +++--------- .../05/GHSA-28c5-pqwm-84r5/GHSA-28c5-pqwm-84r5.json | 8 ++------ .../05/GHSA-295x-2rv5-vf3f/GHSA-295x-2rv5-vf3f.json | 12 +++--------- .../05/GHSA-297j-25fr-6hh8/GHSA-297j-25fr-6hh8.json | 12 +++--------- .../05/GHSA-2c74-m64v-xv3x/GHSA-2c74-m64v-xv3x.json | 8 ++------ .../05/GHSA-2fc8-wj99-h595/GHSA-2fc8-wj99-h595.json | 8 ++------ .../05/GHSA-2gq5-2fcp-29m9/GHSA-2gq5-2fcp-29m9.json | 12 +++--------- .../05/GHSA-2j88-c6j2-6283/GHSA-2j88-c6j2-6283.json | 12 +++--------- .../05/GHSA-2jph-wvx4-hmjh/GHSA-2jph-wvx4-hmjh.json | 12 +++--------- .../05/GHSA-2jw7-x2xj-fwh5/GHSA-2jw7-x2xj-fwh5.json | 12 +++--------- .../05/GHSA-2mx3-6gff-v3gh/GHSA-2mx3-6gff-v3gh.json | 12 +++--------- .../05/GHSA-2p78-cf3j-x8wj/GHSA-2p78-cf3j-x8wj.json | 12 +++--------- .../05/GHSA-2p9j-94vg-6vx9/GHSA-2p9j-94vg-6vx9.json | 12 +++--------- .../05/GHSA-2pmm-f975-w6hm/GHSA-2pmm-f975-w6hm.json | 12 +++--------- .../05/GHSA-2q9f-3pgp-rwm7/GHSA-2q9f-3pgp-rwm7.json | 12 +++--------- .../05/GHSA-2qch-v5gg-365x/GHSA-2qch-v5gg-365x.json | 12 +++--------- .../05/GHSA-2qhw-v6v2-pp46/GHSA-2qhw-v6v2-pp46.json | 12 +++--------- .../05/GHSA-2rpx-jj49-wf29/GHSA-2rpx-jj49-wf29.json | 8 ++------ .../05/GHSA-2vjr-cvf4-9474/GHSA-2vjr-cvf4-9474.json | 12 +++--------- .../05/GHSA-2w76-6rhm-5g2v/GHSA-2w76-6rhm-5g2v.json | 8 ++------ .../05/GHSA-2wx7-3qvr-gm34/GHSA-2wx7-3qvr-gm34.json | 12 +++--------- .../05/GHSA-326x-92j6-q56j/GHSA-326x-92j6-q56j.json | 8 ++------ .../05/GHSA-347c-6459-qw24/GHSA-347c-6459-qw24.json | 12 +++--------- .../05/GHSA-3482-hrx3-vgcg/GHSA-3482-hrx3-vgcg.json | 12 +++--------- .../05/GHSA-355q-c24p-mj2m/GHSA-355q-c24p-mj2m.json | 12 +++--------- .../05/GHSA-362w-636h-jrw7/GHSA-362w-636h-jrw7.json | 12 +++--------- .../05/GHSA-366j-383q-83cc/GHSA-366j-383q-83cc.json | 12 +++--------- .../05/GHSA-3724-xmqw-2wwv/GHSA-3724-xmqw-2wwv.json | 12 +++--------- .../05/GHSA-37cc-5cqg-xx92/GHSA-37cc-5cqg-xx92.json | 12 +++--------- .../05/GHSA-37qc-g79h-4wcg/GHSA-37qc-g79h-4wcg.json | 12 +++--------- .../05/GHSA-37vj-5xqx-3r34/GHSA-37vj-5xqx-3r34.json | 12 +++--------- .../05/GHSA-383v-q8rj-89v9/GHSA-383v-q8rj-89v9.json | 12 +++--------- .../05/GHSA-386r-5f2r-6m92/GHSA-386r-5f2r-6m92.json | 8 ++------ .../05/GHSA-388h-g8mc-3g8v/GHSA-388h-g8mc-3g8v.json | 12 +++--------- .../05/GHSA-38f6-jcm3-35jc/GHSA-38f6-jcm3-35jc.json | 12 +++--------- .../05/GHSA-38wx-782h-g32v/GHSA-38wx-782h-g32v.json | 12 +++--------- .../05/GHSA-399m-8cpm-hqf8/GHSA-399m-8cpm-hqf8.json | 12 +++--------- .../05/GHSA-3cm9-2f69-3m66/GHSA-3cm9-2f69-3m66.json | 12 +++--------- .../05/GHSA-3fhc-vgqv-22vj/GHSA-3fhc-vgqv-22vj.json | 12 +++--------- .../05/GHSA-3frm-32ff-qqhp/GHSA-3frm-32ff-qqhp.json | 12 +++--------- .../05/GHSA-3hqr-gm3g-jc4f/GHSA-3hqr-gm3g-jc4f.json | 12 +++--------- .../05/GHSA-3jc4-cv85-6h9g/GHSA-3jc4-cv85-6h9g.json | 12 +++--------- .../05/GHSA-3mfr-w4jw-vhm6/GHSA-3mfr-w4jw-vhm6.json | 12 +++--------- .../05/GHSA-3mrr-qqw5-mqj9/GHSA-3mrr-qqw5-mqj9.json | 12 +++--------- .../05/GHSA-3mx6-gj69-jg8v/GHSA-3mx6-gj69-jg8v.json | 12 +++--------- .../05/GHSA-3p24-qq22-3v59/GHSA-3p24-qq22-3v59.json | 12 +++--------- .../05/GHSA-3p34-6p74-74v3/GHSA-3p34-6p74-74v3.json | 8 ++------ .../05/GHSA-3p44-pgj6-cf97/GHSA-3p44-pgj6-cf97.json | 4 +--- .../05/GHSA-3p5v-4gv6-58hf/GHSA-3p5v-4gv6-58hf.json | 12 +++--------- .../05/GHSA-3p8h-m2x9-m6x7/GHSA-3p8h-m2x9-m6x7.json | 8 ++------ .../05/GHSA-3pr6-628v-q5g4/GHSA-3pr6-628v-q5g4.json | 12 +++--------- .../05/GHSA-3qgf-m686-2pqj/GHSA-3qgf-m686-2pqj.json | 12 +++--------- .../05/GHSA-3qm9-8m3h-5r34/GHSA-3qm9-8m3h-5r34.json | 8 ++------ .../05/GHSA-3qp7-hh2h-39wp/GHSA-3qp7-hh2h-39wp.json | 12 +++--------- .../05/GHSA-3qwm-q2c3-qv6x/GHSA-3qwm-q2c3-qv6x.json | 8 ++------ .../05/GHSA-3whq-m5gj-947w/GHSA-3whq-m5gj-947w.json | 8 ++------ .../05/GHSA-3x2w-qx4w-qjhr/GHSA-3x2w-qx4w-qjhr.json | 12 +++--------- .../05/GHSA-3xv6-f2f8-6gf4/GHSA-3xv6-f2f8-6gf4.json | 8 ++------ .../05/GHSA-432q-7x98-83cg/GHSA-432q-7x98-83cg.json | 8 ++------ .../05/GHSA-43f5-6jwp-r376/GHSA-43f5-6jwp-r376.json | 12 +++--------- .../05/GHSA-43g3-9hv3-rp7w/GHSA-43g3-9hv3-rp7w.json | 12 +++--------- .../05/GHSA-447j-36p3-9hxr/GHSA-447j-36p3-9hxr.json | 12 +++--------- .../05/GHSA-4482-3457-4p5j/GHSA-4482-3457-4p5j.json | 12 +++--------- .../05/GHSA-44gg-h64p-j6pj/GHSA-44gg-h64p-j6pj.json | 12 +++--------- .../05/GHSA-4596-vv4r-8q24/GHSA-4596-vv4r-8q24.json | 12 +++--------- .../05/GHSA-45gj-vhmv-w7fr/GHSA-45gj-vhmv-w7fr.json | 12 +++--------- .../05/GHSA-45r5-vh4c-92vx/GHSA-45r5-vh4c-92vx.json | 12 +++--------- .../05/GHSA-46rf-9j25-mr47/GHSA-46rf-9j25-mr47.json | 8 ++------ .../05/GHSA-46v9-6x8x-35pw/GHSA-46v9-6x8x-35pw.json | 12 +++--------- .../05/GHSA-4965-jf7x-7ccv/GHSA-4965-jf7x-7ccv.json | 12 +++--------- .../05/GHSA-4c53-6259-p3rj/GHSA-4c53-6259-p3rj.json | 12 +++--------- .../05/GHSA-4cmh-3844-84q2/GHSA-4cmh-3844-84q2.json | 12 +++--------- .../05/GHSA-4f72-c7gm-9h2j/GHSA-4f72-c7gm-9h2j.json | 12 +++--------- .../05/GHSA-4frw-675p-hfmg/GHSA-4frw-675p-hfmg.json | 12 +++--------- .../05/GHSA-4g9q-qhpj-x27q/GHSA-4g9q-qhpj-x27q.json | 8 ++------ .../05/GHSA-4h43-v6pq-58m2/GHSA-4h43-v6pq-58m2.json | 12 +++--------- .../05/GHSA-4hp8-3763-63r8/GHSA-4hp8-3763-63r8.json | 8 ++------ .../05/GHSA-4j5g-66wh-5764/GHSA-4j5g-66wh-5764.json | 12 +++--------- .../05/GHSA-4m2f-rpgh-x4cm/GHSA-4m2f-rpgh-x4cm.json | 8 ++------ .../05/GHSA-4m2j-hvj5-qhq7/GHSA-4m2j-hvj5-qhq7.json | 12 +++--------- .../05/GHSA-4m9m-w7cw-37wv/GHSA-4m9m-w7cw-37wv.json | 12 +++--------- .../05/GHSA-4p2g-rhmv-24f7/GHSA-4p2g-rhmv-24f7.json | 12 +++--------- .../05/GHSA-4p9w-fg69-wcvg/GHSA-4p9w-fg69-wcvg.json | 12 +++--------- .../05/GHSA-4pgr-2c6g-3fhf/GHSA-4pgr-2c6g-3fhf.json | 8 ++------ .../05/GHSA-4pw9-qw5j-7xr6/GHSA-4pw9-qw5j-7xr6.json | 8 ++------ .../05/GHSA-4q3w-mqx4-gcw2/GHSA-4q3w-mqx4-gcw2.json | 12 +++--------- .../05/GHSA-4qfh-xcp4-cgp9/GHSA-4qfh-xcp4-cgp9.json | 12 +++--------- .../05/GHSA-4qgw-9x4q-fwqx/GHSA-4qgw-9x4q-fwqx.json | 12 +++--------- .../05/GHSA-4r2q-5ff4-r8pg/GHSA-4r2q-5ff4-r8pg.json | 12 +++--------- .../05/GHSA-4r2w-rq9g-2cgf/GHSA-4r2w-rq9g-2cgf.json | 12 +++--------- .../05/GHSA-4r6p-ff6w-vwv3/GHSA-4r6p-ff6w-vwv3.json | 12 +++--------- .../05/GHSA-4v5g-r6mf-cq6v/GHSA-4v5g-r6mf-cq6v.json | 12 +++--------- .../05/GHSA-4vcj-p6rj-9c62/GHSA-4vcj-p6rj-9c62.json | 12 +++--------- .../05/GHSA-4vh6-rxvj-rwh4/GHSA-4vh6-rxvj-rwh4.json | 12 +++--------- .../05/GHSA-4vvr-9gf5-xjc4/GHSA-4vvr-9gf5-xjc4.json | 12 +++--------- .../05/GHSA-4w83-xc44-r8rq/GHSA-4w83-xc44-r8rq.json | 8 ++------ .../05/GHSA-4x49-mjxg-f5jc/GHSA-4x49-mjxg-f5jc.json | 12 +++--------- .../05/GHSA-4xr5-jcrf-96w3/GHSA-4xr5-jcrf-96w3.json | 12 +++--------- .../05/GHSA-4xwg-h49w-4q68/GHSA-4xwg-h49w-4q68.json | 12 +++--------- .../05/GHSA-52f4-cjg2-mpf2/GHSA-52f4-cjg2-mpf2.json | 12 +++--------- .../05/GHSA-534r-p456-vxp5/GHSA-534r-p456-vxp5.json | 12 +++--------- .../05/GHSA-5392-cgm7-m28v/GHSA-5392-cgm7-m28v.json | 12 +++--------- .../05/GHSA-53gr-vc32-vmmg/GHSA-53gr-vc32-vmmg.json | 12 +++--------- .../05/GHSA-5546-r4rx-4cwq/GHSA-5546-r4rx-4cwq.json | 12 +++--------- .../05/GHSA-55r5-rgrm-3p3h/GHSA-55r5-rgrm-3p3h.json | 12 +++--------- .../05/GHSA-567v-x3qm-7m8r/GHSA-567v-x3qm-7m8r.json | 12 +++--------- .../05/GHSA-57f9-hc62-m959/GHSA-57f9-hc62-m959.json | 12 +++--------- .../05/GHSA-57qq-hwp2-xmcj/GHSA-57qq-hwp2-xmcj.json | 4 +--- .../05/GHSA-5972-jjp3-vqm8/GHSA-5972-jjp3-vqm8.json | 12 +++--------- .../05/GHSA-598p-9996-xww3/GHSA-598p-9996-xww3.json | 12 +++--------- .../05/GHSA-5c69-945h-vfxc/GHSA-5c69-945h-vfxc.json | 12 +++--------- .../05/GHSA-5cj2-hj3j-2hv4/GHSA-5cj2-hj3j-2hv4.json | 12 +++--------- .../05/GHSA-5cm9-wppc-4mxm/GHSA-5cm9-wppc-4mxm.json | 12 +++--------- .../05/GHSA-5crh-973f-rf4c/GHSA-5crh-973f-rf4c.json | 12 +++--------- .../05/GHSA-5cvx-2qx8-xfqp/GHSA-5cvx-2qx8-xfqp.json | 8 ++------ .../05/GHSA-5fr2-pwj5-vp23/GHSA-5fr2-pwj5-vp23.json | 8 ++------ .../05/GHSA-5hmf-9xw5-54xx/GHSA-5hmf-9xw5-54xx.json | 12 +++--------- .../05/GHSA-5j6j-wj48-h95x/GHSA-5j6j-wj48-h95x.json | 12 +++--------- .../05/GHSA-5jf3-c8qv-652g/GHSA-5jf3-c8qv-652g.json | 12 +++--------- .../05/GHSA-5jp2-26h4-r89j/GHSA-5jp2-26h4-r89j.json | 8 ++------ .../05/GHSA-5m7v-v37g-x24f/GHSA-5m7v-v37g-x24f.json | 12 +++--------- .../05/GHSA-5mjw-pf7p-h387/GHSA-5mjw-pf7p-h387.json | 12 +++--------- .../05/GHSA-5px2-pxjc-8255/GHSA-5px2-pxjc-8255.json | 12 +++--------- .../05/GHSA-5v2g-7w37-62pw/GHSA-5v2g-7w37-62pw.json | 8 ++------ .../05/GHSA-5vqx-2rf2-p3rm/GHSA-5vqx-2rf2-p3rm.json | 12 +++--------- .../05/GHSA-5x63-mggh-9qxw/GHSA-5x63-mggh-9qxw.json | 12 +++--------- .../05/GHSA-62pp-pvjj-2j6c/GHSA-62pp-pvjj-2j6c.json | 12 +++--------- .../05/GHSA-644f-46g4-r68h/GHSA-644f-46g4-r68h.json | 8 ++------ .../05/GHSA-645r-m8hj-xrhv/GHSA-645r-m8hj-xrhv.json | 12 +++--------- .../05/GHSA-65fw-j36g-4qvw/GHSA-65fw-j36g-4qvw.json | 12 +++--------- .../05/GHSA-65vm-3xf4-hv4c/GHSA-65vm-3xf4-hv4c.json | 12 +++--------- .../05/GHSA-65x6-98fh-f57m/GHSA-65x6-98fh-f57m.json | 12 +++--------- .../05/GHSA-66p2-f6m3-8846/GHSA-66p2-f6m3-8846.json | 12 +++--------- .../05/GHSA-66pv-97pv-f4qx/GHSA-66pv-97pv-f4qx.json | 4 +--- .../05/GHSA-69fw-6gfj-m3v8/GHSA-69fw-6gfj-m3v8.json | 8 ++------ .../05/GHSA-69rm-q725-53hr/GHSA-69rm-q725-53hr.json | 4 +--- .../05/GHSA-69xc-p83f-62p4/GHSA-69xc-p83f-62p4.json | 8 ++------ .../05/GHSA-6f6m-86w4-jpj7/GHSA-6f6m-86w4-jpj7.json | 12 +++--------- .../05/GHSA-6hgj-4388-m7p8/GHSA-6hgj-4388-m7p8.json | 12 +++--------- .../05/GHSA-6jhp-v7mw-4v9f/GHSA-6jhp-v7mw-4v9f.json | 4 +--- .../05/GHSA-6m87-rx2w-j7jv/GHSA-6m87-rx2w-j7jv.json | 4 +--- .../05/GHSA-6mcg-qcwq-jvvg/GHSA-6mcg-qcwq-jvvg.json | 8 ++------ .../05/GHSA-6mcw-6382-8vjx/GHSA-6mcw-6382-8vjx.json | 12 +++--------- .../05/GHSA-6qpc-px67-mpr3/GHSA-6qpc-px67-mpr3.json | 12 +++--------- .../05/GHSA-6qwv-4g82-ff2c/GHSA-6qwv-4g82-ff2c.json | 12 +++--------- .../05/GHSA-6qxp-5vv2-4xcx/GHSA-6qxp-5vv2-4xcx.json | 12 +++--------- .../05/GHSA-6vj4-982w-qwc7/GHSA-6vj4-982w-qwc7.json | 12 +++--------- .../05/GHSA-6xq2-jg23-w9hh/GHSA-6xq2-jg23-w9hh.json | 8 ++------ .../05/GHSA-724c-3c45-6hc3/GHSA-724c-3c45-6hc3.json | 12 +++--------- .../05/GHSA-72pf-46cp-4rhv/GHSA-72pf-46cp-4rhv.json | 8 ++------ .../05/GHSA-73xv-cpq8-rgqm/GHSA-73xv-cpq8-rgqm.json | 12 +++--------- .../05/GHSA-74hm-w4g9-33c9/GHSA-74hm-w4g9-33c9.json | 12 +++--------- .../05/GHSA-74m7-g265-p4vc/GHSA-74m7-g265-p4vc.json | 12 +++--------- .../05/GHSA-74vv-6p4c-8fhj/GHSA-74vv-6p4c-8fhj.json | 8 ++------ .../05/GHSA-7524-h548-9j8v/GHSA-7524-h548-9j8v.json | 12 +++--------- .../05/GHSA-755v-mjhh-9xgf/GHSA-755v-mjhh-9xgf.json | 8 ++------ .../05/GHSA-75f9-cww2-h3jx/GHSA-75f9-cww2-h3jx.json | 12 +++--------- .../05/GHSA-75x4-rg87-h92v/GHSA-75x4-rg87-h92v.json | 12 +++--------- .../05/GHSA-768m-jvp8-9hq6/GHSA-768m-jvp8-9hq6.json | 8 ++------ .../05/GHSA-76m8-3m5g-47j9/GHSA-76m8-3m5g-47j9.json | 12 +++--------- .../05/GHSA-7823-v93f-78h8/GHSA-7823-v93f-78h8.json | 12 +++--------- .../05/GHSA-784w-qwm8-7p5h/GHSA-784w-qwm8-7p5h.json | 8 ++------ .../05/GHSA-79hh-8f48-rmmr/GHSA-79hh-8f48-rmmr.json | 8 ++------ .../05/GHSA-7cg3-666j-3r3x/GHSA-7cg3-666j-3r3x.json | 12 +++--------- .../05/GHSA-7ch3-c2vf-pvjm/GHSA-7ch3-c2vf-pvjm.json | 12 +++--------- .../05/GHSA-7hc9-3247-569c/GHSA-7hc9-3247-569c.json | 12 +++--------- .../05/GHSA-7hxj-fcfx-69p5/GHSA-7hxj-fcfx-69p5.json | 12 +++--------- .../05/GHSA-7mrc-7xm4-g3ff/GHSA-7mrc-7xm4-g3ff.json | 8 ++------ .../05/GHSA-7pg9-w9pq-869f/GHSA-7pg9-w9pq-869f.json | 8 ++------ .../05/GHSA-7qvw-crqm-r4rj/GHSA-7qvw-crqm-r4rj.json | 12 +++--------- .../05/GHSA-7rgh-8689-572j/GHSA-7rgh-8689-572j.json | 12 +++--------- .../05/GHSA-7rw5-8cqx-4h7v/GHSA-7rw5-8cqx-4h7v.json | 12 +++--------- .../05/GHSA-7v2v-c4mv-64w9/GHSA-7v2v-c4mv-64w9.json | 12 +++--------- .../05/GHSA-7vm9-6fjc-32rg/GHSA-7vm9-6fjc-32rg.json | 12 +++--------- .../05/GHSA-7w28-5fw7-hhhg/GHSA-7w28-5fw7-hhhg.json | 12 +++--------- .../05/GHSA-7w3r-3wwf-35pg/GHSA-7w3r-3wwf-35pg.json | 12 +++--------- .../05/GHSA-7w4x-rwm4-mh9f/GHSA-7w4x-rwm4-mh9f.json | 12 +++--------- .../05/GHSA-7wwm-59v9-9266/GHSA-7wwm-59v9-9266.json | 12 +++--------- .../05/GHSA-7x38-fmxv-rwg3/GHSA-7x38-fmxv-rwg3.json | 12 +++--------- .../05/GHSA-832v-mqgg-q26f/GHSA-832v-mqgg-q26f.json | 12 +++--------- .../05/GHSA-83cc-h2c5-hc5w/GHSA-83cc-h2c5-hc5w.json | 12 +++--------- .../05/GHSA-83qm-rx53-p98j/GHSA-83qm-rx53-p98j.json | 12 +++--------- .../05/GHSA-85vr-v8cj-mr3v/GHSA-85vr-v8cj-mr3v.json | 12 +++--------- .../05/GHSA-85x9-xxvc-qxxh/GHSA-85x9-xxvc-qxxh.json | 8 ++------ .../05/GHSA-8622-g8rv-r7m7/GHSA-8622-g8rv-r7m7.json | 12 +++--------- .../05/GHSA-86hx-53qx-q365/GHSA-86hx-53qx-q365.json | 12 +++--------- .../05/GHSA-87cx-954r-687p/GHSA-87cx-954r-687p.json | 12 +++--------- .../05/GHSA-87jj-fh8g-jj9v/GHSA-87jj-fh8g-jj9v.json | 12 +++--------- .../05/GHSA-89xq-595m-2wqw/GHSA-89xq-595m-2wqw.json | 8 ++------ .../05/GHSA-8c64-mcfm-8hcq/GHSA-8c64-mcfm-8hcq.json | 12 +++--------- .../05/GHSA-8gr3-v464-4cw5/GHSA-8gr3-v464-4cw5.json | 12 +++--------- .../05/GHSA-8h5w-8rr3-mrx4/GHSA-8h5w-8rr3-mrx4.json | 8 ++------ .../05/GHSA-8j6m-9pgp-366m/GHSA-8j6m-9pgp-366m.json | 12 +++--------- .../05/GHSA-8jf9-vxwp-57f5/GHSA-8jf9-vxwp-57f5.json | 12 +++--------- .../05/GHSA-8mcv-3m3p-3wwr/GHSA-8mcv-3m3p-3wwr.json | 12 +++--------- .../05/GHSA-8mhp-wg44-9rxg/GHSA-8mhp-wg44-9rxg.json | 12 +++--------- .../05/GHSA-8p2f-w48f-wfgg/GHSA-8p2f-w48f-wfgg.json | 12 +++--------- .../05/GHSA-8r2m-h4m5-j4ch/GHSA-8r2m-h4m5-j4ch.json | 8 ++------ .../05/GHSA-8r3c-6cqq-7rmm/GHSA-8r3c-6cqq-7rmm.json | 8 ++------ .../05/GHSA-8rhg-h664-m46h/GHSA-8rhg-h664-m46h.json | 12 +++--------- .../05/GHSA-8v7v-63cg-hhq4/GHSA-8v7v-63cg-hhq4.json | 12 +++--------- .../05/GHSA-8w25-g47g-6c6x/GHSA-8w25-g47g-6c6x.json | 12 +++--------- .../05/GHSA-92g3-wmcp-c83c/GHSA-92g3-wmcp-c83c.json | 12 +++--------- .../05/GHSA-94jr-wpq5-r766/GHSA-94jr-wpq5-r766.json | 8 ++------ .../05/GHSA-95q7-g98v-q42w/GHSA-95q7-g98v-q42w.json | 12 +++--------- .../05/GHSA-974c-8cm8-f97g/GHSA-974c-8cm8-f97g.json | 12 +++--------- .../05/GHSA-97jq-9v52-mx6q/GHSA-97jq-9v52-mx6q.json | 8 ++------ .../05/GHSA-988q-42c6-39xw/GHSA-988q-42c6-39xw.json | 12 +++--------- .../05/GHSA-98jv-62cv-8xwv/GHSA-98jv-62cv-8xwv.json | 12 +++--------- .../05/GHSA-9cx5-f6g9-f95q/GHSA-9cx5-f6g9-f95q.json | 12 +++--------- .../05/GHSA-9f5q-h27q-h397/GHSA-9f5q-h27q-h397.json | 8 ++------ .../05/GHSA-9fm6-75rg-rff2/GHSA-9fm6-75rg-rff2.json | 12 +++--------- .../05/GHSA-9hgv-c655-h58q/GHSA-9hgv-c655-h58q.json | 12 +++--------- .../05/GHSA-9j2r-7wv5-9gxw/GHSA-9j2r-7wv5-9gxw.json | 12 +++--------- .../05/GHSA-9m65-6w3f-4rmv/GHSA-9m65-6w3f-4rmv.json | 8 ++------ .../05/GHSA-9mjj-vxm5-rcp6/GHSA-9mjj-vxm5-rcp6.json | 12 +++--------- .../05/GHSA-9mm9-qw6c-8v7p/GHSA-9mm9-qw6c-8v7p.json | 8 ++------ .../05/GHSA-9p3r-vprr-2c27/GHSA-9p3r-vprr-2c27.json | 4 +--- .../05/GHSA-9pww-q6hm-99qq/GHSA-9pww-q6hm-99qq.json | 12 +++--------- .../05/GHSA-9qv9-jp9q-c8qh/GHSA-9qv9-jp9q-c8qh.json | 8 ++------ .../05/GHSA-9rfp-vf6g-gxv7/GHSA-9rfp-vf6g-gxv7.json | 12 +++--------- .../05/GHSA-9rmm-vmrf-4wgf/GHSA-9rmm-vmrf-4wgf.json | 12 +++--------- .../05/GHSA-9rxj-qpwg-4hwc/GHSA-9rxj-qpwg-4hwc.json | 4 +--- .../05/GHSA-9w3v-8h48-46jq/GHSA-9w3v-8h48-46jq.json | 4 +--- .../05/GHSA-9www-r6hf-5rv2/GHSA-9www-r6hf-5rv2.json | 12 +++--------- .../05/GHSA-9x8q-p3qp-r24w/GHSA-9x8q-p3qp-r24w.json | 8 ++------ .../05/GHSA-9xgc-vw4p-6c9m/GHSA-9xgc-vw4p-6c9m.json | 8 ++------ .../05/GHSA-9xjh-2mc3-48px/GHSA-9xjh-2mc3-48px.json | 12 +++--------- .../05/GHSA-c2r9-m6vm-hvxj/GHSA-c2r9-m6vm-hvxj.json | 12 +++--------- .../05/GHSA-c3jx-hw4g-497f/GHSA-c3jx-hw4g-497f.json | 8 ++------ .../05/GHSA-c3wf-86mc-7ggp/GHSA-c3wf-86mc-7ggp.json | 12 +++--------- .../05/GHSA-c3xr-38x3-m6x2/GHSA-c3xr-38x3-m6x2.json | 12 +++--------- .../05/GHSA-c5m8-w4wc-7446/GHSA-c5m8-w4wc-7446.json | 12 +++--------- .../05/GHSA-c5qj-vv9j-m42f/GHSA-c5qj-vv9j-m42f.json | 12 +++--------- .../05/GHSA-c7h3-g28j-x6jq/GHSA-c7h3-g28j-x6jq.json | 12 +++--------- .../05/GHSA-c85p-qv79-g52f/GHSA-c85p-qv79-g52f.json | 12 +++--------- .../05/GHSA-c8g8-5ccr-8q6v/GHSA-c8g8-5ccr-8q6v.json | 12 +++--------- .../05/GHSA-c94j-x67v-fc73/GHSA-c94j-x67v-fc73.json | 12 +++--------- .../05/GHSA-c9ff-9v66-p9cp/GHSA-c9ff-9v66-p9cp.json | 12 +++--------- .../05/GHSA-cc8r-88h9-67f7/GHSA-cc8r-88h9-67f7.json | 8 ++------ .../05/GHSA-cf2g-8x42-fqvf/GHSA-cf2g-8x42-fqvf.json | 4 +--- .../05/GHSA-cf5r-m6qv-vfqf/GHSA-cf5r-m6qv-vfqf.json | 12 +++--------- .../05/GHSA-cg5j-mr76-38vr/GHSA-cg5j-mr76-38vr.json | 8 ++------ .../05/GHSA-chh3-9qmw-g849/GHSA-chh3-9qmw-g849.json | 12 +++--------- .../05/GHSA-cj7h-5rjr-x64q/GHSA-cj7h-5rjr-x64q.json | 8 ++------ .../05/GHSA-cjg4-jg6m-g6pw/GHSA-cjg4-jg6m-g6pw.json | 12 +++--------- .../05/GHSA-cjmp-4cxm-hrf6/GHSA-cjmp-4cxm-hrf6.json | 12 +++--------- .../05/GHSA-cm69-fqmx-m729/GHSA-cm69-fqmx-m729.json | 12 +++--------- .../05/GHSA-cmg9-pf33-9q72/GHSA-cmg9-pf33-9q72.json | 8 ++------ .../05/GHSA-cmvh-xx7q-427v/GHSA-cmvh-xx7q-427v.json | 12 +++--------- .../05/GHSA-cqcc-c563-84qx/GHSA-cqcc-c563-84qx.json | 4 +--- .../05/GHSA-cqcc-f4j6-cmh9/GHSA-cqcc-f4j6-cmh9.json | 12 +++--------- .../05/GHSA-cr8q-xm9p-34xm/GHSA-cr8q-xm9p-34xm.json | 12 +++--------- .../05/GHSA-cr9m-fr8r-v7vg/GHSA-cr9m-fr8r-v7vg.json | 12 +++--------- .../05/GHSA-crwj-6pw8-226h/GHSA-crwj-6pw8-226h.json | 12 +++--------- .../05/GHSA-cvq9-v475-8x82/GHSA-cvq9-v475-8x82.json | 12 +++--------- .../05/GHSA-cvrm-7p45-fx4m/GHSA-cvrm-7p45-fx4m.json | 12 +++--------- .../05/GHSA-cw87-f64q-cj99/GHSA-cw87-f64q-cj99.json | 8 ++------ .../05/GHSA-cx4r-57h5-mw23/GHSA-cx4r-57h5-mw23.json | 8 ++------ .../05/GHSA-cxhv-qfhw-63ww/GHSA-cxhv-qfhw-63ww.json | 12 +++--------- .../05/GHSA-f22m-r62p-8qrj/GHSA-f22m-r62p-8qrj.json | 12 +++--------- .../05/GHSA-f294-2h7r-gx55/GHSA-f294-2h7r-gx55.json | 8 ++------ .../05/GHSA-f2rj-wpff-j4qw/GHSA-f2rj-wpff-j4qw.json | 12 +++--------- .../05/GHSA-f43m-w22p-wcp2/GHSA-f43m-w22p-wcp2.json | 8 ++------ .../05/GHSA-f4r2-pjj6-jmj8/GHSA-f4r2-pjj6-jmj8.json | 12 +++--------- .../05/GHSA-f68q-r7fp-qq3f/GHSA-f68q-r7fp-qq3f.json | 12 +++--------- .../05/GHSA-f694-frrr-wm9w/GHSA-f694-frrr-wm9w.json | 12 +++--------- .../05/GHSA-f6fp-wvjq-6rx9/GHSA-f6fp-wvjq-6rx9.json | 12 +++--------- .../05/GHSA-f6wx-j385-2c9h/GHSA-f6wx-j385-2c9h.json | 12 +++--------- .../05/GHSA-f7pp-5pqm-g7c9/GHSA-f7pp-5pqm-g7c9.json | 12 +++--------- .../05/GHSA-f8vm-vvwr-8prm/GHSA-f8vm-vvwr-8prm.json | 12 +++--------- .../05/GHSA-f988-3hg9-75wq/GHSA-f988-3hg9-75wq.json | 12 +++--------- .../05/GHSA-f9gr-h4g2-j2pw/GHSA-f9gr-h4g2-j2pw.json | 12 +++--------- .../05/GHSA-f9w6-jq77-26g5/GHSA-f9w6-jq77-26g5.json | 12 +++--------- .../05/GHSA-fc6f-xwvr-m5xg/GHSA-fc6f-xwvr-m5xg.json | 8 ++------ .../05/GHSA-fcw9-f4mv-hhcg/GHSA-fcw9-f4mv-hhcg.json | 12 +++--------- .../05/GHSA-ff2h-w98c-mqf9/GHSA-ff2h-w98c-mqf9.json | 12 +++--------- .../05/GHSA-ff73-2p85-hmv6/GHSA-ff73-2p85-hmv6.json | 12 +++--------- .../05/GHSA-fg8x-qfj7-cj7c/GHSA-fg8x-qfj7-cj7c.json | 12 +++--------- .../05/GHSA-fgc7-88p2-vwpp/GHSA-fgc7-88p2-vwpp.json | 12 +++--------- .../05/GHSA-fhv4-qrh6-mmh4/GHSA-fhv4-qrh6-mmh4.json | 12 +++--------- .../05/GHSA-fjf3-7gx3-grmg/GHSA-fjf3-7gx3-grmg.json | 12 +++--------- .../05/GHSA-fjpj-hq84-g2mc/GHSA-fjpj-hq84-g2mc.json | 12 +++--------- .../05/GHSA-fpm7-m99x-8x97/GHSA-fpm7-m99x-8x97.json | 12 +++--------- .../05/GHSA-fpr9-pr9g-872c/GHSA-fpr9-pr9g-872c.json | 12 +++--------- .../05/GHSA-fqx2-86jp-wcjv/GHSA-fqx2-86jp-wcjv.json | 12 +++--------- .../05/GHSA-fr93-xp6x-vx2q/GHSA-fr93-xp6x-vx2q.json | 8 ++------ .../05/GHSA-frrj-4qmc-2536/GHSA-frrj-4qmc-2536.json | 12 +++--------- .../05/GHSA-fxr3-63w8-hvhx/GHSA-fxr3-63w8-hvhx.json | 8 ++------ .../05/GHSA-g394-5cmh-8vvj/GHSA-g394-5cmh-8vvj.json | 12 +++--------- .../05/GHSA-g48c-mxp7-x4g2/GHSA-g48c-mxp7-x4g2.json | 12 +++--------- .../05/GHSA-g4ph-3r63-c5p9/GHSA-g4ph-3r63-c5p9.json | 8 ++------ .../05/GHSA-g5h6-q6hr-6pr7/GHSA-g5h6-q6hr-6pr7.json | 12 +++--------- .../05/GHSA-g5v9-3hmq-xg2r/GHSA-g5v9-3hmq-xg2r.json | 12 +++--------- .../05/GHSA-g7r6-pv38-wphr/GHSA-g7r6-pv38-wphr.json | 12 +++--------- .../05/GHSA-g7w4-j39f-84mq/GHSA-g7w4-j39f-84mq.json | 12 +++--------- .../05/GHSA-g8hp-5cff-26v7/GHSA-g8hp-5cff-26v7.json | 12 +++--------- .../05/GHSA-g8x5-f6c3-qfrw/GHSA-g8x5-f6c3-qfrw.json | 12 +++--------- .../05/GHSA-g9cv-262r-m62h/GHSA-g9cv-262r-m62h.json | 12 +++--------- .../05/GHSA-gfmp-h9cc-j8h6/GHSA-gfmp-h9cc-j8h6.json | 8 ++------ .../05/GHSA-ggvp-98r6-cx25/GHSA-ggvp-98r6-cx25.json | 12 +++--------- .../05/GHSA-gh78-r2f2-5jp2/GHSA-gh78-r2f2-5jp2.json | 12 +++--------- .../05/GHSA-ghw5-qw6q-8394/GHSA-ghw5-qw6q-8394.json | 8 ++------ .../05/GHSA-gmgg-6xrw-f299/GHSA-gmgg-6xrw-f299.json | 12 +++--------- .../05/GHSA-gpvh-m7r4-4wg2/GHSA-gpvh-m7r4-4wg2.json | 12 +++--------- .../05/GHSA-gq6q-gh85-7w3x/GHSA-gq6q-gh85-7w3x.json | 12 +++--------- .../05/GHSA-gqgg-2mqq-wgc2/GHSA-gqgg-2mqq-wgc2.json | 12 +++--------- .../05/GHSA-gqjv-9xmw-cfqh/GHSA-gqjv-9xmw-cfqh.json | 12 +++--------- .../05/GHSA-gqqr-qcv3-9xg2/GHSA-gqqr-qcv3-9xg2.json | 12 +++--------- .../05/GHSA-grvc-29p3-99fv/GHSA-grvc-29p3-99fv.json | 12 +++--------- .../05/GHSA-grvm-c676-wgqq/GHSA-grvm-c676-wgqq.json | 12 +++--------- .../05/GHSA-gv38-5c8r-gmgf/GHSA-gv38-5c8r-gmgf.json | 12 +++--------- .../05/GHSA-gv5h-qcxx-985h/GHSA-gv5h-qcxx-985h.json | 12 +++--------- .../05/GHSA-gwr5-2hgp-6jq9/GHSA-gwr5-2hgp-6jq9.json | 12 +++--------- .../05/GHSA-gxjf-97vj-jhcg/GHSA-gxjf-97vj-jhcg.json | 12 +++--------- .../05/GHSA-gxw4-x2rm-fgmv/GHSA-gxw4-x2rm-fgmv.json | 12 +++--------- .../05/GHSA-h235-6g2w-f84v/GHSA-h235-6g2w-f84v.json | 8 ++------ .../05/GHSA-h4rw-8g46-q3rm/GHSA-h4rw-8g46-q3rm.json | 12 +++--------- .../05/GHSA-h4wq-fxpq-gmg2/GHSA-h4wq-fxpq-gmg2.json | 8 ++------ .../05/GHSA-h593-gfrx-wwgq/GHSA-h593-gfrx-wwgq.json | 4 +--- .../05/GHSA-h66p-9m5v-v38w/GHSA-h66p-9m5v-v38w.json | 12 +++--------- .../05/GHSA-h6xh-46r8-grfh/GHSA-h6xh-46r8-grfh.json | 8 ++------ .../05/GHSA-h8h3-697g-vpc3/GHSA-h8h3-697g-vpc3.json | 12 +++--------- .../05/GHSA-h94p-vgvq-w45v/GHSA-h94p-vgvq-w45v.json | 8 ++------ .../05/GHSA-h966-gw6c-fp38/GHSA-h966-gw6c-fp38.json | 12 +++--------- .../05/GHSA-h97v-5798-x5c6/GHSA-h97v-5798-x5c6.json | 12 +++--------- .../05/GHSA-h9cp-3469-6f4v/GHSA-h9cp-3469-6f4v.json | 8 ++------ .../05/GHSA-h9h5-vhcx-37v8/GHSA-h9h5-vhcx-37v8.json | 12 +++--------- .../05/GHSA-h9j4-wp2q-j88v/GHSA-h9j4-wp2q-j88v.json | 12 +++--------- .../05/GHSA-h9wq-jm3g-952g/GHSA-h9wq-jm3g-952g.json | 12 +++--------- .../05/GHSA-hf4m-2399-3jjv/GHSA-hf4m-2399-3jjv.json | 8 ++------ .../05/GHSA-hf65-vmp8-jp86/GHSA-hf65-vmp8-jp86.json | 12 +++--------- .../05/GHSA-hfjp-mm4w-hgxg/GHSA-hfjp-mm4w-hgxg.json | 12 +++--------- .../05/GHSA-hfm4-3rg3-394f/GHSA-hfm4-3rg3-394f.json | 12 +++--------- .../05/GHSA-hfxg-vggv-f594/GHSA-hfxg-vggv-f594.json | 12 +++--------- .../05/GHSA-hg9w-6vrm-h78g/GHSA-hg9w-6vrm-h78g.json | 12 +++--------- .../05/GHSA-hhh4-f287-7w56/GHSA-hhh4-f287-7w56.json | 12 +++--------- .../05/GHSA-hhj2-6x24-45x4/GHSA-hhj2-6x24-45x4.json | 12 +++--------- .../05/GHSA-hjg2-p9cv-5xvp/GHSA-hjg2-p9cv-5xvp.json | 12 +++--------- .../05/GHSA-hq39-xv9r-chrv/GHSA-hq39-xv9r-chrv.json | 12 +++--------- .../05/GHSA-hq7r-pxqp-4g8p/GHSA-hq7r-pxqp-4g8p.json | 12 +++--------- .../05/GHSA-hr7j-g23v-9qm9/GHSA-hr7j-g23v-9qm9.json | 12 +++--------- .../05/GHSA-hv69-r3wr-rq9m/GHSA-hv69-r3wr-rq9m.json | 12 +++--------- .../05/GHSA-hwm7-hpqp-5g8w/GHSA-hwm7-hpqp-5g8w.json | 12 +++--------- .../05/GHSA-hx9r-wh6w-pp9p/GHSA-hx9r-wh6w-pp9p.json | 12 +++--------- .../05/GHSA-hxrj-xc7h-73qh/GHSA-hxrj-xc7h-73qh.json | 12 +++--------- .../05/GHSA-hxw5-5p78-xcwh/GHSA-hxw5-5p78-xcwh.json | 12 +++--------- .../05/GHSA-j3j2-mcvq-8p35/GHSA-j3j2-mcvq-8p35.json | 12 +++--------- .../05/GHSA-j42p-4m2g-2gc3/GHSA-j42p-4m2g-2gc3.json | 12 +++--------- .../05/GHSA-j4f7-hvfg-j9g2/GHSA-j4f7-hvfg-j9g2.json | 12 +++--------- .../05/GHSA-j4qx-g6w4-j6j4/GHSA-j4qx-g6w4-j6j4.json | 12 +++--------- .../05/GHSA-j5fc-76g4-5m5m/GHSA-j5fc-76g4-5m5m.json | 12 +++--------- .../05/GHSA-j5p6-2277-5xjv/GHSA-j5p6-2277-5xjv.json | 12 +++--------- .../05/GHSA-j5wc-79fh-wvjw/GHSA-j5wc-79fh-wvjw.json | 12 +++--------- .../05/GHSA-j6g5-q83j-9gxv/GHSA-j6g5-q83j-9gxv.json | 12 +++--------- .../05/GHSA-j6pf-pr39-qpvj/GHSA-j6pf-pr39-qpvj.json | 12 +++--------- .../05/GHSA-j6xw-84jp-rwq9/GHSA-j6xw-84jp-rwq9.json | 12 +++--------- .../05/GHSA-j8fm-w3vm-qgpv/GHSA-j8fm-w3vm-qgpv.json | 12 +++--------- .../05/GHSA-j9r4-wggr-vqrx/GHSA-j9r4-wggr-vqrx.json | 12 +++--------- .../05/GHSA-jc85-96x7-c99v/GHSA-jc85-96x7-c99v.json | 12 +++--------- .../05/GHSA-jcjj-hqg4-gr43/GHSA-jcjj-hqg4-gr43.json | 4 +--- .../05/GHSA-jcw7-jj6m-83gf/GHSA-jcw7-jj6m-83gf.json | 12 +++--------- .../05/GHSA-jf29-p6xm-2pmr/GHSA-jf29-p6xm-2pmr.json | 8 ++------ .../05/GHSA-jgf9-34c8-xvj6/GHSA-jgf9-34c8-xvj6.json | 12 +++--------- .../05/GHSA-jgwh-rghq-wr66/GHSA-jgwh-rghq-wr66.json | 12 +++--------- .../05/GHSA-jgwq-j9j9-hh5x/GHSA-jgwq-j9j9-hh5x.json | 12 +++--------- .../05/GHSA-jgwr-cv67-x929/GHSA-jgwr-cv67-x929.json | 8 ++------ .../05/GHSA-jh8r-rcp3-r2w9/GHSA-jh8r-rcp3-r2w9.json | 12 +++--------- .../05/GHSA-jhqr-4whv-fgcp/GHSA-jhqr-4whv-fgcp.json | 12 +++--------- .../05/GHSA-jjjm-2v77-2785/GHSA-jjjm-2v77-2785.json | 12 +++--------- .../05/GHSA-jjvm-4qf9-pxv8/GHSA-jjvm-4qf9-pxv8.json | 12 +++--------- .../05/GHSA-jm4r-px6v-v7q6/GHSA-jm4r-px6v-v7q6.json | 8 ++------ .../05/GHSA-jqr2-j347-fpx4/GHSA-jqr2-j347-fpx4.json | 12 +++--------- .../05/GHSA-jqr5-ffrr-c4m7/GHSA-jqr5-ffrr-c4m7.json | 12 +++--------- .../05/GHSA-jr59-h8cw-h9p9/GHSA-jr59-h8cw-h9p9.json | 12 +++--------- .../05/GHSA-jrg4-wvq2-j9f7/GHSA-jrg4-wvq2-j9f7.json | 12 +++--------- .../05/GHSA-jrx5-j8x7-p42r/GHSA-jrx5-j8x7-p42r.json | 12 +++--------- .../05/GHSA-jv4f-49pf-8gfq/GHSA-jv4f-49pf-8gfq.json | 12 +++--------- .../05/GHSA-jv8c-vh95-8c34/GHSA-jv8c-vh95-8c34.json | 12 +++--------- .../05/GHSA-jvvj-q942-m597/GHSA-jvvj-q942-m597.json | 12 +++--------- .../05/GHSA-jxph-j64g-2vgm/GHSA-jxph-j64g-2vgm.json | 12 +++--------- .../05/GHSA-m24v-9j67-px23/GHSA-m24v-9j67-px23.json | 12 +++--------- .../05/GHSA-m257-p3ch-g723/GHSA-m257-p3ch-g723.json | 4 +--- .../05/GHSA-m265-9cv9-6vq9/GHSA-m265-9cv9-6vq9.json | 12 +++--------- .../05/GHSA-m3g4-f98h-fg66/GHSA-m3g4-f98h-fg66.json | 12 +++--------- .../05/GHSA-m474-22p6-39cr/GHSA-m474-22p6-39cr.json | 12 +++--------- .../05/GHSA-m4mj-5hcj-76vr/GHSA-m4mj-5hcj-76vr.json | 4 +--- .../05/GHSA-m84w-qw3w-rpg2/GHSA-m84w-qw3w-rpg2.json | 12 +++--------- .../05/GHSA-m8hv-442x-vvx3/GHSA-m8hv-442x-vvx3.json | 12 +++--------- .../05/GHSA-m8j6-cx9x-6pxx/GHSA-m8j6-cx9x-6pxx.json | 12 +++--------- .../05/GHSA-m8r4-259x-767p/GHSA-m8r4-259x-767p.json | 12 +++--------- .../05/GHSA-m94r-7gjj-544q/GHSA-m94r-7gjj-544q.json | 12 +++--------- .../05/GHSA-m9hw-vp6q-5jjm/GHSA-m9hw-vp6q-5jjm.json | 12 +++--------- .../05/GHSA-m9m2-fqcj-qww8/GHSA-m9m2-fqcj-qww8.json | 12 +++--------- .../05/GHSA-mc5g-g767-pr48/GHSA-mc5g-g767-pr48.json | 8 ++------ .../05/GHSA-mcj6-f8p9-qpgc/GHSA-mcj6-f8p9-qpgc.json | 12 +++--------- .../05/GHSA-mf23-9v58-x7jv/GHSA-mf23-9v58-x7jv.json | 12 +++--------- .../05/GHSA-mf4c-7jx4-wgmm/GHSA-mf4c-7jx4-wgmm.json | 12 +++--------- .../05/GHSA-mfc3-c99j-vmcg/GHSA-mfc3-c99j-vmcg.json | 8 ++------ .../05/GHSA-mg44-xqjw-5phc/GHSA-mg44-xqjw-5phc.json | 12 +++--------- .../05/GHSA-mmfc-hpg2-c48v/GHSA-mmfc-hpg2-c48v.json | 12 +++--------- .../05/GHSA-mprw-h52g-r89g/GHSA-mprw-h52g-r89g.json | 12 +++--------- .../05/GHSA-mqfc-mw2x-x89c/GHSA-mqfc-mw2x-x89c.json | 12 +++--------- .../05/GHSA-mqmq-69c9-vm4c/GHSA-mqmq-69c9-vm4c.json | 4 +--- .../05/GHSA-mqrp-5655-6gmq/GHSA-mqrp-5655-6gmq.json | 12 +++--------- .../05/GHSA-mr37-x76p-q88v/GHSA-mr37-x76p-q88v.json | 12 +++--------- .../05/GHSA-mv2x-9h7w-52q7/GHSA-mv2x-9h7w-52q7.json | 8 ++------ .../05/GHSA-mx56-653q-vrf3/GHSA-mx56-653q-vrf3.json | 12 +++--------- .../05/GHSA-mx68-p78j-fv2c/GHSA-mx68-p78j-fv2c.json | 12 +++--------- .../05/GHSA-mxf2-xjp5-4w4p/GHSA-mxf2-xjp5-4w4p.json | 12 +++--------- .../05/GHSA-p2mj-g72q-wq82/GHSA-p2mj-g72q-wq82.json | 4 +--- .../05/GHSA-p44r-qm4c-m42v/GHSA-p44r-qm4c-m42v.json | 12 +++--------- .../05/GHSA-p69p-29pp-hh3g/GHSA-p69p-29pp-hh3g.json | 12 +++--------- .../05/GHSA-p6f9-jr47-69fq/GHSA-p6f9-jr47-69fq.json | 12 +++--------- .../05/GHSA-p7jx-q735-v62j/GHSA-p7jx-q735-v62j.json | 12 +++--------- .../05/GHSA-p7mh-mqrg-wx2f/GHSA-p7mh-mqrg-wx2f.json | 12 +++--------- .../05/GHSA-p9gq-h366-q2cq/GHSA-p9gq-h366-q2cq.json | 12 +++--------- .../05/GHSA-p9r3-92g3-xhjf/GHSA-p9r3-92g3-xhjf.json | 8 ++------ .../05/GHSA-p9w5-hjj9-xmfq/GHSA-p9w5-hjj9-xmfq.json | 12 +++--------- .../05/GHSA-pgcj-qjv8-fw45/GHSA-pgcj-qjv8-fw45.json | 12 +++--------- .../05/GHSA-pgj5-5qc2-xrrf/GHSA-pgj5-5qc2-xrrf.json | 12 +++--------- .../05/GHSA-ph7c-j5j3-82fp/GHSA-ph7c-j5j3-82fp.json | 12 +++--------- .../05/GHSA-pjp5-qqvr-jhhc/GHSA-pjp5-qqvr-jhhc.json | 12 +++--------- .../05/GHSA-pjv9-jp9x-c23m/GHSA-pjv9-jp9x-c23m.json | 12 +++--------- .../05/GHSA-pmfh-pqqv-q8ww/GHSA-pmfh-pqqv-q8ww.json | 12 +++--------- .../05/GHSA-pp3r-96j3-85hh/GHSA-pp3r-96j3-85hh.json | 8 ++------ .../05/GHSA-ppc7-r3c2-6p3q/GHSA-ppc7-r3c2-6p3q.json | 12 +++--------- .../05/GHSA-pq82-hmr3-5jpv/GHSA-pq82-hmr3-5jpv.json | 12 +++--------- .../05/GHSA-pq95-gj94-4r5p/GHSA-pq95-gj94-4r5p.json | 8 ++------ .../05/GHSA-pqrp-q5rh-86qx/GHSA-pqrp-q5rh-86qx.json | 12 +++--------- .../05/GHSA-pwr4-4q52-jj45/GHSA-pwr4-4q52-jj45.json | 12 +++--------- .../05/GHSA-pwvj-86cg-mpr2/GHSA-pwvj-86cg-mpr2.json | 12 +++--------- .../05/GHSA-pww2-wm88-cp3p/GHSA-pww2-wm88-cp3p.json | 4 +--- .../05/GHSA-px39-46h2-2hqq/GHSA-px39-46h2-2hqq.json | 12 +++--------- .../05/GHSA-px4x-42rw-7qmg/GHSA-px4x-42rw-7qmg.json | 12 +++--------- .../05/GHSA-q2fx-gcj5-2r88/GHSA-q2fx-gcj5-2r88.json | 12 +++--------- .../05/GHSA-q2rf-82ch-fpf3/GHSA-q2rf-82ch-fpf3.json | 12 +++--------- .../05/GHSA-q43f-hqc8-97vg/GHSA-q43f-hqc8-97vg.json | 12 +++--------- .../05/GHSA-q4fr-rpgm-w8gm/GHSA-q4fr-rpgm-w8gm.json | 8 ++------ .../05/GHSA-q4h3-8jhm-mq6c/GHSA-q4h3-8jhm-mq6c.json | 12 +++--------- .../05/GHSA-q4jj-29vv-j9rw/GHSA-q4jj-29vv-j9rw.json | 12 +++--------- .../05/GHSA-q5cg-2988-52xm/GHSA-q5cg-2988-52xm.json | 8 ++------ .../05/GHSA-q5p4-cr98-99w2/GHSA-q5p4-cr98-99w2.json | 12 +++--------- .../05/GHSA-q6g3-jqvg-wvmq/GHSA-q6g3-jqvg-wvmq.json | 8 ++------ .../05/GHSA-q7f3-6hm8-23cp/GHSA-q7f3-6hm8-23cp.json | 4 +--- .../05/GHSA-q7g3-x679-vpwf/GHSA-q7g3-x679-vpwf.json | 12 +++--------- .../05/GHSA-q7h5-gg5c-c3pj/GHSA-q7h5-gg5c-c3pj.json | 8 ++------ .../05/GHSA-q7pw-pfcw-v5m9/GHSA-q7pw-pfcw-v5m9.json | 12 +++--------- .../05/GHSA-q8gg-8cmf-8w9m/GHSA-q8gg-8cmf-8w9m.json | 12 +++--------- .../05/GHSA-q8jq-xc6q-f8gw/GHSA-q8jq-xc6q-f8gw.json | 12 +++--------- .../05/GHSA-qcf5-r7vw-m375/GHSA-qcf5-r7vw-m375.json | 8 ++------ .../05/GHSA-qcjj-g4c3-q7f2/GHSA-qcjj-g4c3-q7f2.json | 8 ++------ .../05/GHSA-qff6-q69c-q2gg/GHSA-qff6-q69c-q2gg.json | 12 +++--------- .../05/GHSA-qg5v-4mmw-68cp/GHSA-qg5v-4mmw-68cp.json | 12 +++--------- .../05/GHSA-qh93-4h58-j8h6/GHSA-qh93-4h58-j8h6.json | 8 ++------ .../05/GHSA-qhc4-4fcq-jv7q/GHSA-qhc4-4fcq-jv7q.json | 8 ++------ .../05/GHSA-qhp9-jj2m-362w/GHSA-qhp9-jj2m-362w.json | 12 +++--------- .../05/GHSA-qhw5-55vv-fxcp/GHSA-qhw5-55vv-fxcp.json | 12 +++--------- .../05/GHSA-qjj8-cxhj-v73f/GHSA-qjj8-cxhj-v73f.json | 12 +++--------- .../05/GHSA-qjv9-4w7c-6vhq/GHSA-qjv9-4w7c-6vhq.json | 12 +++--------- .../05/GHSA-qm5p-2mv2-7jv5/GHSA-qm5p-2mv2-7jv5.json | 12 +++--------- .../05/GHSA-qmv7-5rj3-38m7/GHSA-qmv7-5rj3-38m7.json | 12 +++--------- .../05/GHSA-qp9r-gj7p-4862/GHSA-qp9r-gj7p-4862.json | 12 +++--------- .../05/GHSA-qpm6-5778-wjjq/GHSA-qpm6-5778-wjjq.json | 12 +++--------- .../05/GHSA-qqc9-822v-wvjh/GHSA-qqc9-822v-wvjh.json | 12 +++--------- .../05/GHSA-qqhr-68c9-jq8w/GHSA-qqhr-68c9-jq8w.json | 12 +++--------- .../05/GHSA-qqhw-hqj9-7pv5/GHSA-qqhw-hqj9-7pv5.json | 12 +++--------- .../05/GHSA-qqqg-w8xg-6985/GHSA-qqqg-w8xg-6985.json | 12 +++--------- .../05/GHSA-qqvc-2cgm-c3hw/GHSA-qqvc-2cgm-c3hw.json | 8 ++------ .../05/GHSA-qr3r-xgjr-g75m/GHSA-qr3r-xgjr-g75m.json | 12 +++--------- .../05/GHSA-qr3v-p7wc-vxr8/GHSA-qr3v-p7wc-vxr8.json | 12 +++--------- .../05/GHSA-qrmx-r457-p377/GHSA-qrmx-r457-p377.json | 12 +++--------- .../05/GHSA-qvpq-4365-gf49/GHSA-qvpq-4365-gf49.json | 12 +++--------- .../05/GHSA-qvqp-rgwq-w6mc/GHSA-qvqp-rgwq-w6mc.json | 12 +++--------- .../05/GHSA-qwp9-wc7v-7pg4/GHSA-qwp9-wc7v-7pg4.json | 8 ++------ .../05/GHSA-qx7p-pcrw-fhh5/GHSA-qx7p-pcrw-fhh5.json | 12 +++--------- .../05/GHSA-r2j8-359w-74xc/GHSA-r2j8-359w-74xc.json | 8 ++------ .../05/GHSA-r33c-x62x-68pw/GHSA-r33c-x62x-68pw.json | 12 +++--------- .../05/GHSA-r4j3-wp5r-ggj9/GHSA-r4j3-wp5r-ggj9.json | 12 +++--------- .../05/GHSA-r5vv-f9v9-8r8w/GHSA-r5vv-f9v9-8r8w.json | 12 +++--------- .../05/GHSA-r69f-q9p6-8j8j/GHSA-r69f-q9p6-8j8j.json | 8 ++------ .../05/GHSA-r725-cr62-vvc3/GHSA-r725-cr62-vvc3.json | 12 +++--------- .../05/GHSA-r729-qp33-j5c6/GHSA-r729-qp33-j5c6.json | 12 +++--------- .../05/GHSA-r7vv-r4jh-cvgj/GHSA-r7vv-r4jh-cvgj.json | 12 +++--------- .../05/GHSA-r8f8-9w3c-hjwv/GHSA-r8f8-9w3c-hjwv.json | 8 ++------ .../05/GHSA-r9qw-88qf-r66q/GHSA-r9qw-88qf-r66q.json | 8 ++------ .../05/GHSA-rc99-w763-6gp7/GHSA-rc99-w763-6gp7.json | 12 +++--------- .../05/GHSA-rc9m-wr77-pxf4/GHSA-rc9m-wr77-pxf4.json | 12 +++--------- .../05/GHSA-rf3q-qph6-mx79/GHSA-rf3q-qph6-mx79.json | 12 +++--------- .../05/GHSA-rfqp-jmwx-gg9r/GHSA-rfqp-jmwx-gg9r.json | 12 +++--------- .../05/GHSA-rgxw-5339-wg7q/GHSA-rgxw-5339-wg7q.json | 12 +++--------- .../05/GHSA-rh53-4vm2-q4c8/GHSA-rh53-4vm2-q4c8.json | 12 +++--------- .../05/GHSA-rhrf-w5v6-jgp3/GHSA-rhrf-w5v6-jgp3.json | 8 ++------ .../05/GHSA-rjr6-c78c-px55/GHSA-rjr6-c78c-px55.json | 12 +++--------- .../05/GHSA-rmfh-4vqx-qf9v/GHSA-rmfh-4vqx-qf9v.json | 12 +++--------- .../05/GHSA-rpf4-c4vh-8jcx/GHSA-rpf4-c4vh-8jcx.json | 12 +++--------- .../05/GHSA-rqh7-rj86-g755/GHSA-rqh7-rj86-g755.json | 12 +++--------- .../05/GHSA-rqmp-w279-4536/GHSA-rqmp-w279-4536.json | 12 +++--------- .../05/GHSA-rqw8-5cfg-cppr/GHSA-rqw8-5cfg-cppr.json | 12 +++--------- .../05/GHSA-rr8j-3q27-jmv3/GHSA-rr8j-3q27-jmv3.json | 12 +++--------- .../05/GHSA-rw9x-xc95-2xcw/GHSA-rw9x-xc95-2xcw.json | 12 +++--------- .../05/GHSA-rx2h-mpg9-8fgm/GHSA-rx2h-mpg9-8fgm.json | 12 +++--------- .../05/GHSA-v3cf-6qqq-jmch/GHSA-v3cf-6qqq-jmch.json | 12 +++--------- .../05/GHSA-v43v-r57x-cxjw/GHSA-v43v-r57x-cxjw.json | 8 ++------ .../05/GHSA-v4fx-qwhg-pg57/GHSA-v4fx-qwhg-pg57.json | 12 +++--------- .../05/GHSA-v4r6-962q-6q53/GHSA-v4r6-962q-6q53.json | 12 +++--------- .../05/GHSA-v8j9-4m8p-cv77/GHSA-v8j9-4m8p-cv77.json | 12 +++--------- .../05/GHSA-v8m2-2m5m-qrhp/GHSA-v8m2-2m5m-qrhp.json | 12 +++--------- .../05/GHSA-v972-vhh2-2h9q/GHSA-v972-vhh2-2h9q.json | 12 +++--------- .../05/GHSA-v9p6-xj6q-xr4h/GHSA-v9p6-xj6q-xr4h.json | 8 ++------ .../05/GHSA-vc96-3vqc-fj8m/GHSA-vc96-3vqc-fj8m.json | 12 +++--------- .../05/GHSA-vcxg-5hc5-gw9m/GHSA-vcxg-5hc5-gw9m.json | 12 +++--------- .../05/GHSA-vh2c-9j78-fvh2/GHSA-vh2c-9j78-fvh2.json | 12 +++--------- .../05/GHSA-vjg4-2j2m-2g7m/GHSA-vjg4-2j2m-2g7m.json | 12 +++--------- .../05/GHSA-vm4g-7vxg-x22v/GHSA-vm4g-7vxg-x22v.json | 12 +++--------- .../05/GHSA-vmhh-cg3j-vcv3/GHSA-vmhh-cg3j-vcv3.json | 12 +++--------- .../05/GHSA-vp4c-3hqp-3f9q/GHSA-vp4c-3hqp-3f9q.json | 12 +++--------- .../05/GHSA-vqmj-6jfg-6w99/GHSA-vqmj-6jfg-6w99.json | 12 +++--------- .../05/GHSA-vvmc-4jqr-3x8w/GHSA-vvmc-4jqr-3x8w.json | 12 +++--------- .../05/GHSA-vww7-hrp4-685m/GHSA-vww7-hrp4-685m.json | 12 +++--------- .../05/GHSA-vwwp-rpjx-7fmp/GHSA-vwwp-rpjx-7fmp.json | 12 +++--------- .../05/GHSA-vx49-pgjf-xgv6/GHSA-vx49-pgjf-xgv6.json | 12 +++--------- .../05/GHSA-vxcj-679q-r6q8/GHSA-vxcj-679q-r6q8.json | 8 ++------ .../05/GHSA-vxjj-c2q3-jm5g/GHSA-vxjj-c2q3-jm5g.json | 12 +++--------- .../05/GHSA-vxvf-jh64-7wvg/GHSA-vxvf-jh64-7wvg.json | 12 +++--------- .../05/GHSA-w3qw-ch2v-whr8/GHSA-w3qw-ch2v-whr8.json | 12 +++--------- .../05/GHSA-w3w2-fx8h-h255/GHSA-w3w2-fx8h-h255.json | 12 +++--------- .../05/GHSA-w4ch-47jf-r44c/GHSA-w4ch-47jf-r44c.json | 12 +++--------- .../05/GHSA-w4f9-wxqm-hcwj/GHSA-w4f9-wxqm-hcwj.json | 12 +++--------- .../05/GHSA-w585-6hjj-c4pg/GHSA-w585-6hjj-c4pg.json | 12 +++--------- .../05/GHSA-w5gx-8f97-r4f7/GHSA-w5gx-8f97-r4f7.json | 12 +++--------- .../05/GHSA-w5vx-qj99-7fmg/GHSA-w5vx-qj99-7fmg.json | 8 ++------ .../05/GHSA-w79x-7x76-qxrp/GHSA-w79x-7x76-qxrp.json | 12 +++--------- .../05/GHSA-w8w7-rvcv-2v9w/GHSA-w8w7-rvcv-2v9w.json | 12 +++--------- .../05/GHSA-wch4-qfc4-9f6m/GHSA-wch4-qfc4-9f6m.json | 12 +++--------- .../05/GHSA-wh7j-jjqj-c566/GHSA-wh7j-jjqj-c566.json | 12 +++--------- .../05/GHSA-wh8w-v6q4-fgcv/GHSA-wh8w-v6q4-fgcv.json | 12 +++--------- .../05/GHSA-wh94-h427-879v/GHSA-wh94-h427-879v.json | 12 +++--------- .../05/GHSA-whhj-9q9w-qff6/GHSA-whhj-9q9w-qff6.json | 4 +--- .../05/GHSA-wj3j-vfvc-g245/GHSA-wj3j-vfvc-g245.json | 8 ++------ .../05/GHSA-wmq6-wmq9-8m88/GHSA-wmq6-wmq9-8m88.json | 12 +++--------- .../05/GHSA-wr79-387j-7jm9/GHSA-wr79-387j-7jm9.json | 12 +++--------- .../05/GHSA-wrpp-7f2q-3j8m/GHSA-wrpp-7f2q-3j8m.json | 12 +++--------- .../05/GHSA-wrx9-6qv7-wvvw/GHSA-wrx9-6qv7-wvvw.json | 12 +++--------- .../05/GHSA-wvg3-wq8x-32m8/GHSA-wvg3-wq8x-32m8.json | 12 +++--------- .../05/GHSA-wvpx-9v99-j88h/GHSA-wvpx-9v99-j88h.json | 12 +++--------- .../05/GHSA-ww4m-7862-x5f3/GHSA-ww4m-7862-x5f3.json | 12 +++--------- .../05/GHSA-wwj6-4977-fvxh/GHSA-wwj6-4977-fvxh.json | 12 +++--------- .../05/GHSA-wwrp-583h-frrp/GHSA-wwrp-583h-frrp.json | 8 ++------ .../05/GHSA-wx73-f633-64gg/GHSA-wx73-f633-64gg.json | 8 ++------ .../05/GHSA-x222-6c25-wc8w/GHSA-x222-6c25-wc8w.json | 12 +++--------- .../05/GHSA-x66p-h7w6-9fqw/GHSA-x66p-h7w6-9fqw.json | 12 +++--------- .../05/GHSA-x6q7-jxq7-3h45/GHSA-x6q7-jxq7-3h45.json | 12 +++--------- .../05/GHSA-x7h9-rrcq-c95j/GHSA-x7h9-rrcq-c95j.json | 12 +++--------- .../05/GHSA-x8r7-r9w9-jrv6/GHSA-x8r7-r9w9-jrv6.json | 12 +++--------- .../05/GHSA-x9pc-2xp2-2gh9/GHSA-x9pc-2xp2-2gh9.json | 8 ++------ .../05/GHSA-xg2j-3226-439m/GHSA-xg2j-3226-439m.json | 12 +++--------- .../05/GHSA-xg2w-hq3g-4636/GHSA-xg2w-hq3g-4636.json | 12 +++--------- .../05/GHSA-xg6m-4668-h9qh/GHSA-xg6m-4668-h9qh.json | 12 +++--------- .../05/GHSA-xghj-v4x3-gwvf/GHSA-xghj-v4x3-gwvf.json | 8 ++------ .../05/GHSA-xhj3-g58j-7g7v/GHSA-xhj3-g58j-7g7v.json | 12 +++--------- .../05/GHSA-xhm5-c3wf-v4h4/GHSA-xhm5-c3wf-v4h4.json | 12 +++--------- .../05/GHSA-xhp5-pvv6-r659/GHSA-xhp5-pvv6-r659.json | 12 +++--------- .../05/GHSA-xj48-mr94-q545/GHSA-xj48-mr94-q545.json | 8 ++------ .../05/GHSA-xm2g-jw84-7vcv/GHSA-xm2g-jw84-7vcv.json | 12 +++--------- .../05/GHSA-xp3h-ccqh-r6p9/GHSA-xp3h-ccqh-r6p9.json | 12 +++--------- .../05/GHSA-xpm5-w5vx-3xw6/GHSA-xpm5-w5vx-3xw6.json | 12 +++--------- .../05/GHSA-xprj-64cf-h29h/GHSA-xprj-64cf-h29h.json | 12 +++--------- .../05/GHSA-xqwh-qf77-hvhx/GHSA-xqwh-qf77-hvhx.json | 12 +++--------- .../05/GHSA-xrj3-j65c-j9gg/GHSA-xrj3-j65c-j9gg.json | 12 +++--------- .../05/GHSA-xv29-v763-663c/GHSA-xv29-v763-663c.json | 12 +++--------- .../05/GHSA-xvjq-vrrj-vrmg/GHSA-xvjq-vrrj-vrmg.json | 12 +++--------- .../05/GHSA-xw2r-q7pv-2r5q/GHSA-xw2r-q7pv-2r5q.json | 12 +++--------- .../05/GHSA-xwf3-8452-8j2v/GHSA-xwf3-8452-8j2v.json | 12 +++--------- .../05/GHSA-xx27-vcf5-wm84/GHSA-xx27-vcf5-wm84.json | 12 +++--------- .../05/GHSA-xxmv-mjx9-wg53/GHSA-xxmv-mjx9-wg53.json | 8 ++------ .../11/GHSA-cj9x-22ff-w7h8/GHSA-cj9x-22ff-w7h8.json | 4 +--- .../11/GHSA-cjhx-7pr5-4vmp/GHSA-cjhx-7pr5-4vmp.json | 4 +--- .../11/GHSA-mm7h-p3v8-j9f3/GHSA-mm7h-p3v8-j9f3.json | 4 +--- .../11/GHSA-rf7p-43wm-xppq/GHSA-rf7p-43wm-xppq.json | 4 +--- .../07/GHSA-ppfv-9rmx-jjrq/GHSA-ppfv-9rmx-jjrq.json | 4 +--- .../04/GHSA-p26g-v4j8-8qc5/GHSA-p26g-v4j8-8qc5.json | 8 ++------ .../05/GHSA-29vf-q3vj-x378/GHSA-29vf-q3vj-x378.json | 4 +--- .../05/GHSA-2cf5-v9qq-xv7v/GHSA-2cf5-v9qq-xv7v.json | 4 +--- .../05/GHSA-2frj-c98p-mhg3/GHSA-2frj-c98p-mhg3.json | 4 +--- .../05/GHSA-2jrj-24m8-rmrv/GHSA-2jrj-24m8-rmrv.json | 8 ++------ .../05/GHSA-2mqg-9v38-rpr6/GHSA-2mqg-9v38-rpr6.json | 4 +--- .../05/GHSA-2qxx-wjxw-fg87/GHSA-2qxx-wjxw-fg87.json | 4 +--- .../05/GHSA-2r93-mg8p-xx85/GHSA-2r93-mg8p-xx85.json | 8 ++------ .../05/GHSA-2wmc-xmv6-fhjq/GHSA-2wmc-xmv6-fhjq.json | 4 +--- .../05/GHSA-32q4-6g3f-wq36/GHSA-32q4-6g3f-wq36.json | 4 +--- .../05/GHSA-33xc-pj2q-h2rm/GHSA-33xc-pj2q-h2rm.json | 8 ++------ .../05/GHSA-34r8-fv4m-hxcv/GHSA-34r8-fv4m-hxcv.json | 4 +--- .../05/GHSA-3563-pvjf-xg5g/GHSA-3563-pvjf-xg5g.json | 12 +++--------- .../05/GHSA-36j3-2772-j983/GHSA-36j3-2772-j983.json | 8 ++------ .../05/GHSA-3c75-fpmc-wjhf/GHSA-3c75-fpmc-wjhf.json | 8 ++------ .../05/GHSA-3fx2-9cxr-pgrx/GHSA-3fx2-9cxr-pgrx.json | 8 ++------ .../05/GHSA-3g4v-p46q-rp5h/GHSA-3g4v-p46q-rp5h.json | 4 +--- .../05/GHSA-3mwv-hr6q-qhg5/GHSA-3mwv-hr6q-qhg5.json | 4 +--- .../05/GHSA-3pgg-fxm7-xv3p/GHSA-3pgg-fxm7-xv3p.json | 4 +--- .../05/GHSA-3r64-w67f-5vfx/GHSA-3r64-w67f-5vfx.json | 4 +--- .../05/GHSA-45qr-p7v6-rhwv/GHSA-45qr-p7v6-rhwv.json | 8 ++------ .../05/GHSA-46qx-cv76-mrg4/GHSA-46qx-cv76-mrg4.json | 4 +--- .../05/GHSA-48hg-jgx7-3qf5/GHSA-48hg-jgx7-3qf5.json | 4 +--- .../05/GHSA-48vf-pq83-g67j/GHSA-48vf-pq83-g67j.json | 4 +--- .../05/GHSA-4h95-2x33-pw42/GHSA-4h95-2x33-pw42.json | 8 ++------ .../05/GHSA-4hj4-pj6v-jj6q/GHSA-4hj4-pj6v-jj6q.json | 4 +--- .../05/GHSA-4jgx-c2mv-3qmc/GHSA-4jgx-c2mv-3qmc.json | 4 +--- .../05/GHSA-4qcf-w92c-26h6/GHSA-4qcf-w92c-26h6.json | 4 +--- .../05/GHSA-4whf-wfxv-5x64/GHSA-4whf-wfxv-5x64.json | 4 +--- .../05/GHSA-52wr-qfvp-rcxr/GHSA-52wr-qfvp-rcxr.json | 4 +--- .../05/GHSA-55r5-grwq-562w/GHSA-55r5-grwq-562w.json | 4 +--- .../05/GHSA-58w9-v8v9-gjq4/GHSA-58w9-v8v9-gjq4.json | 4 +--- .../05/GHSA-5cwh-6h2g-6hfc/GHSA-5cwh-6h2g-6hfc.json | 4 +--- .../05/GHSA-5fj3-qh5c-64g3/GHSA-5fj3-qh5c-64g3.json | 4 +--- .../05/GHSA-5g4h-3xj2-7jr8/GHSA-5g4h-3xj2-7jr8.json | 4 +--- .../05/GHSA-5hjg-chj2-7wf8/GHSA-5hjg-chj2-7wf8.json | 8 ++------ .../05/GHSA-5j77-4768-gfxq/GHSA-5j77-4768-gfxq.json | 8 ++------ .../05/GHSA-5jpr-j92r-8ppm/GHSA-5jpr-j92r-8ppm.json | 4 +--- .../05/GHSA-5m6x-5xrq-f4hv/GHSA-5m6x-5xrq-f4hv.json | 4 +--- .../05/GHSA-5qf5-xcc6-qrmw/GHSA-5qf5-xcc6-qrmw.json | 4 +--- .../05/GHSA-5qxw-g92h-6p89/GHSA-5qxw-g92h-6p89.json | 4 +--- .../05/GHSA-5xvh-qhhj-5v4v/GHSA-5xvh-qhhj-5v4v.json | 4 +--- .../05/GHSA-625g-2phw-x35x/GHSA-625g-2phw-x35x.json | 8 ++------ .../05/GHSA-65xw-m2hr-mgc4/GHSA-65xw-m2hr-mgc4.json | 4 +--- .../05/GHSA-675q-h7hw-82g4/GHSA-675q-h7hw-82g4.json | 8 ++------ .../05/GHSA-6cfr-gxcq-rvxr/GHSA-6cfr-gxcq-rvxr.json | 4 +--- .../05/GHSA-6gcr-m3gw-825g/GHSA-6gcr-m3gw-825g.json | 8 ++------ .../05/GHSA-6gf8-6jhr-vrww/GHSA-6gf8-6jhr-vrww.json | 4 +--- .../05/GHSA-6jcq-5j67-2qh3/GHSA-6jcq-5j67-2qh3.json | 4 +--- .../05/GHSA-6mm4-6fv2-2r26/GHSA-6mm4-6fv2-2r26.json | 4 +--- .../05/GHSA-6mr9-w244-4v7m/GHSA-6mr9-w244-4v7m.json | 8 ++------ .../05/GHSA-6mxw-ww5r-4fqq/GHSA-6mxw-ww5r-4fqq.json | 8 ++------ .../05/GHSA-6rv3-q74h-h7v3/GHSA-6rv3-q74h-h7v3.json | 8 ++------ .../05/GHSA-6v26-2m6m-3xjp/GHSA-6v26-2m6m-3xjp.json | 4 +--- .../05/GHSA-6v8p-vh6x-pghw/GHSA-6v8p-vh6x-pghw.json | 4 +--- .../05/GHSA-6w47-73p5-43gv/GHSA-6w47-73p5-43gv.json | 8 ++------ .../05/GHSA-7643-2fwv-2483/GHSA-7643-2fwv-2483.json | 8 ++------ .../05/GHSA-78fw-7x7x-3gwf/GHSA-78fw-7x7x-3gwf.json | 4 +--- .../05/GHSA-7p6x-vmqm-g4wc/GHSA-7p6x-vmqm-g4wc.json | 8 ++------ .../05/GHSA-7pc5-hxvc-3h98/GHSA-7pc5-hxvc-3h98.json | 4 +--- .../05/GHSA-7v23-ggpr-r58j/GHSA-7v23-ggpr-r58j.json | 4 +--- .../05/GHSA-829x-599p-43vg/GHSA-829x-599p-43vg.json | 4 +--- .../05/GHSA-86cm-6r27-h7c6/GHSA-86cm-6r27-h7c6.json | 4 +--- .../05/GHSA-899m-qj3x-m494/GHSA-899m-qj3x-m494.json | 8 ++------ .../05/GHSA-8c9g-w38h-qxj2/GHSA-8c9g-w38h-qxj2.json | 12 +++--------- .../05/GHSA-8cpp-w4p7-vjq4/GHSA-8cpp-w4p7-vjq4.json | 8 ++------ .../05/GHSA-8cw6-3v7h-5jxr/GHSA-8cw6-3v7h-5jxr.json | 4 +--- .../05/GHSA-8hh7-xjj5-hfr6/GHSA-8hh7-xjj5-hfr6.json | 4 +--- .../05/GHSA-8hqc-m445-x46q/GHSA-8hqc-m445-x46q.json | 8 ++------ .../05/GHSA-8mrm-5f5v-g6v4/GHSA-8mrm-5f5v-g6v4.json | 4 +--- .../05/GHSA-8q3w-rh8p-p597/GHSA-8q3w-rh8p-p597.json | 4 +--- .../05/GHSA-8xmw-rw82-vwq9/GHSA-8xmw-rw82-vwq9.json | 4 +--- .../05/GHSA-8xqm-fcrc-hfc2/GHSA-8xqm-fcrc-hfc2.json | 4 +--- .../05/GHSA-95gx-q433-7q5x/GHSA-95gx-q433-7q5x.json | 8 ++------ .../05/GHSA-9f23-fjmq-42p8/GHSA-9f23-fjmq-42p8.json | 4 +--- .../05/GHSA-9f66-8q8q-hcr5/GHSA-9f66-8q8q-hcr5.json | 4 +--- .../05/GHSA-9g46-vg36-jfrh/GHSA-9g46-vg36-jfrh.json | 4 +--- .../05/GHSA-9j76-vhxq-c93p/GHSA-9j76-vhxq-c93p.json | 4 +--- .../05/GHSA-9jcm-v2gm-fpx9/GHSA-9jcm-v2gm-fpx9.json | 4 +--- .../05/GHSA-9mgf-hh2m-346c/GHSA-9mgf-hh2m-346c.json | 8 ++------ .../05/GHSA-9pqc-cpp8-5mgq/GHSA-9pqc-cpp8-5mgq.json | 8 ++------ .../05/GHSA-9q25-42cq-gfc7/GHSA-9q25-42cq-gfc7.json | 8 ++------ .../05/GHSA-9rg3-rx78-443j/GHSA-9rg3-rx78-443j.json | 4 +--- .../05/GHSA-9rp9-4vx9-p834/GHSA-9rp9-4vx9-p834.json | 4 +--- .../05/GHSA-9xgx-pghh-rxhj/GHSA-9xgx-pghh-rxhj.json | 4 +--- .../05/GHSA-c567-7qg2-3q96/GHSA-c567-7qg2-3q96.json | 4 +--- .../05/GHSA-c58x-2x8h-gwq3/GHSA-c58x-2x8h-gwq3.json | 4 +--- .../05/GHSA-c89w-7vg6-jwf8/GHSA-c89w-7vg6-jwf8.json | 4 +--- .../05/GHSA-cg84-5q9m-25fg/GHSA-cg84-5q9m-25fg.json | 8 ++------ .../05/GHSA-cmw3-49qh-hmrx/GHSA-cmw3-49qh-hmrx.json | 4 +--- .../05/GHSA-cppw-g2r8-74hj/GHSA-cppw-g2r8-74hj.json | 4 +--- .../05/GHSA-cwgp-23hp-834m/GHSA-cwgp-23hp-834m.json | 4 +--- .../05/GHSA-cwrr-rgjr-h7qv/GHSA-cwrr-rgjr-h7qv.json | 4 +--- .../05/GHSA-f3jp-2j8m-99gg/GHSA-f3jp-2j8m-99gg.json | 4 +--- .../05/GHSA-f5r7-653f-66mv/GHSA-f5r7-653f-66mv.json | 12 +++--------- .../05/GHSA-fcq8-3x5r-8cpc/GHSA-fcq8-3x5r-8cpc.json | 4 +--- .../05/GHSA-fmjg-m7v7-76wx/GHSA-fmjg-m7v7-76wx.json | 4 +--- .../05/GHSA-fq2p-4p8g-3975/GHSA-fq2p-4p8g-3975.json | 4 +--- .../05/GHSA-frfw-jrj7-8fg6/GHSA-frfw-jrj7-8fg6.json | 4 +--- .../05/GHSA-fvxc-8783-g54p/GHSA-fvxc-8783-g54p.json | 8 ++------ .../05/GHSA-fwhj-j6cr-5qw4/GHSA-fwhj-j6cr-5qw4.json | 4 +--- .../05/GHSA-g2f6-h5vw-x98w/GHSA-g2f6-h5vw-x98w.json | 4 +--- .../05/GHSA-g3r5-h3r8-7552/GHSA-g3r5-h3r8-7552.json | 4 +--- .../05/GHSA-g46f-wcpw-hwv7/GHSA-g46f-wcpw-hwv7.json | 4 +--- .../05/GHSA-g4mw-24j5-44qj/GHSA-g4mw-24j5-44qj.json | 4 +--- .../05/GHSA-g4p7-qhc7-8m3v/GHSA-g4p7-qhc7-8m3v.json | 4 +--- .../05/GHSA-g69m-pxw8-9r4c/GHSA-g69m-pxw8-9r4c.json | 4 +--- .../05/GHSA-g749-g2h4-gjcm/GHSA-g749-g2h4-gjcm.json | 4 +--- .../05/GHSA-g78h-6697-3h7r/GHSA-g78h-6697-3h7r.json | 8 ++------ .../05/GHSA-g7f3-xvjg-6grj/GHSA-g7f3-xvjg-6grj.json | 4 +--- .../05/GHSA-g82j-wprp-q9q9/GHSA-g82j-wprp-q9q9.json | 4 +--- .../05/GHSA-ggcw-7gr7-458r/GHSA-ggcw-7gr7-458r.json | 8 ++------ .../05/GHSA-gwvv-qc8g-gmwc/GHSA-gwvv-qc8g-gmwc.json | 8 ++------ .../05/GHSA-gww7-xg42-6356/GHSA-gww7-xg42-6356.json | 4 +--- .../05/GHSA-h262-6v4r-hfm3/GHSA-h262-6v4r-hfm3.json | 4 +--- .../05/GHSA-h2gr-w6qq-3rf4/GHSA-h2gr-w6qq-3rf4.json | 4 +--- .../05/GHSA-h399-7836-2p9c/GHSA-h399-7836-2p9c.json | 4 +--- .../05/GHSA-h4hg-8g88-jp73/GHSA-h4hg-8g88-jp73.json | 4 +--- .../05/GHSA-h525-7gmx-5gmx/GHSA-h525-7gmx-5gmx.json | 4 +--- .../05/GHSA-h96m-wf7f-j6gj/GHSA-h96m-wf7f-j6gj.json | 8 ++------ .../05/GHSA-hcx3-vjpp-qv3j/GHSA-hcx3-vjpp-qv3j.json | 4 +--- .../05/GHSA-hj4c-xf5q-wc53/GHSA-hj4c-xf5q-wc53.json | 4 +--- .../05/GHSA-hxwm-2grv-7xcx/GHSA-hxwm-2grv-7xcx.json | 4 +--- .../05/GHSA-j3rm-rcwj-h793/GHSA-j3rm-rcwj-h793.json | 4 +--- .../05/GHSA-j5mg-7pph-vc9m/GHSA-j5mg-7pph-vc9m.json | 8 ++------ .../05/GHSA-j6qv-7j22-7rcw/GHSA-j6qv-7j22-7rcw.json | 4 +--- .../05/GHSA-j7gw-w87q-96q6/GHSA-j7gw-w87q-96q6.json | 4 +--- .../05/GHSA-j87v-mhh9-96qj/GHSA-j87v-mhh9-96qj.json | 4 +--- .../05/GHSA-jc94-r73q-r924/GHSA-jc94-r73q-r924.json | 4 +--- .../05/GHSA-jcw2-6v8c-w2h9/GHSA-jcw2-6v8c-w2h9.json | 8 ++------ .../05/GHSA-jhwx-4jpp-wcw2/GHSA-jhwx-4jpp-wcw2.json | 4 +--- .../05/GHSA-jjrv-72p3-frpm/GHSA-jjrv-72p3-frpm.json | 4 +--- .../05/GHSA-jvh2-3fx8-5h29/GHSA-jvh2-3fx8-5h29.json | 4 +--- .../05/GHSA-jvw5-wg85-v57m/GHSA-jvw5-wg85-v57m.json | 4 +--- .../05/GHSA-jxmr-fmcp-48cp/GHSA-jxmr-fmcp-48cp.json | 4 +--- .../05/GHSA-m346-f556-rxqp/GHSA-m346-f556-rxqp.json | 4 +--- .../05/GHSA-m367-63cg-9gx2/GHSA-m367-63cg-9gx2.json | 8 ++------ .../05/GHSA-m662-x5x5-33fp/GHSA-m662-x5x5-33fp.json | 4 +--- .../05/GHSA-mcc5-758p-xgwj/GHSA-mcc5-758p-xgwj.json | 4 +--- .../05/GHSA-mcxh-3pw2-4rmg/GHSA-mcxh-3pw2-4rmg.json | 8 ++------ .../05/GHSA-mf6h-rjrh-vq8g/GHSA-mf6h-rjrh-vq8g.json | 4 +--- .../05/GHSA-mm8w-v3g6-hcq2/GHSA-mm8w-v3g6-hcq2.json | 4 +--- .../05/GHSA-mqff-r9wc-53gp/GHSA-mqff-r9wc-53gp.json | 4 +--- .../05/GHSA-mvg2-4m23-mpp3/GHSA-mvg2-4m23-mpp3.json | 12 +++--------- .../05/GHSA-mwh4-gh4p-8gqp/GHSA-mwh4-gh4p-8gqp.json | 12 +++--------- .../05/GHSA-p435-prrh-xm57/GHSA-p435-prrh-xm57.json | 12 +++--------- .../05/GHSA-p4q2-hmcp-5f94/GHSA-p4q2-hmcp-5f94.json | 8 ++------ .../05/GHSA-p6c6-92jc-qwcx/GHSA-p6c6-92jc-qwcx.json | 4 +--- .../05/GHSA-p7p5-3hmf-xx69/GHSA-p7p5-3hmf-xx69.json | 4 +--- .../05/GHSA-p8rh-53x8-6ww5/GHSA-p8rh-53x8-6ww5.json | 4 +--- .../05/GHSA-pcq6-24qx-69mp/GHSA-pcq6-24qx-69mp.json | 4 +--- .../05/GHSA-pfc9-pj4x-5f23/GHSA-pfc9-pj4x-5f23.json | 8 ++------ .../05/GHSA-pgfq-hx82-xvvx/GHSA-pgfq-hx82-xvvx.json | 4 +--- .../05/GHSA-pgpf-456j-2558/GHSA-pgpf-456j-2558.json | 12 +++--------- .../05/GHSA-phjr-8rg9-m4gg/GHSA-phjr-8rg9-m4gg.json | 4 +--- .../05/GHSA-phqq-qx84-9jff/GHSA-phqq-qx84-9jff.json | 4 +--- .../05/GHSA-pp3c-36rx-j2jw/GHSA-pp3c-36rx-j2jw.json | 8 ++------ .../05/GHSA-pqq5-pxj4-264m/GHSA-pqq5-pxj4-264m.json | 4 +--- .../05/GHSA-prmm-jjm7-hjjw/GHSA-prmm-jjm7-hjjw.json | 4 +--- .../05/GHSA-q887-j27x-jj4x/GHSA-q887-j27x-jj4x.json | 4 +--- .../05/GHSA-qggf-x7gv-2c34/GHSA-qggf-x7gv-2c34.json | 8 ++------ .../05/GHSA-qggv-3v78-c7cg/GHSA-qggv-3v78-c7cg.json | 4 +--- .../05/GHSA-qh33-r66h-4p62/GHSA-qh33-r66h-4p62.json | 4 +--- .../05/GHSA-qhcp-3fxf-c8vc/GHSA-qhcp-3fxf-c8vc.json | 4 +--- .../05/GHSA-qpgv-mj64-p6gw/GHSA-qpgv-mj64-p6gw.json | 4 +--- .../05/GHSA-qqfm-c56j-938w/GHSA-qqfm-c56j-938w.json | 4 +--- .../05/GHSA-qr2r-jf3h-cxvg/GHSA-qr2r-jf3h-cxvg.json | 4 +--- .../05/GHSA-r33w-h5p8-qwc2/GHSA-r33w-h5p8-qwc2.json | 4 +--- .../05/GHSA-r7p4-7jh5-pmjp/GHSA-r7p4-7jh5-pmjp.json | 4 +--- .../05/GHSA-r938-r8hx-g8cx/GHSA-r938-r8hx-g8cx.json | 4 +--- .../05/GHSA-rc7c-g7c4-9hrh/GHSA-rc7c-g7c4-9hrh.json | 4 +--- .../05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json | 4 +--- .../05/GHSA-rh23-c55h-3vx9/GHSA-rh23-c55h-3vx9.json | 8 ++------ .../05/GHSA-rjhc-r32r-cc5w/GHSA-rjhc-r32r-cc5w.json | 4 +--- .../05/GHSA-rmhw-r566-6398/GHSA-rmhw-r566-6398.json | 12 +++--------- .../05/GHSA-rmwv-r4r7-j48f/GHSA-rmwv-r4r7-j48f.json | 4 +--- .../05/GHSA-rp8c-6q45-8g4v/GHSA-rp8c-6q45-8g4v.json | 8 ++------ .../05/GHSA-rpjh-2px8-r4m7/GHSA-rpjh-2px8-r4m7.json | 4 +--- .../05/GHSA-rrpp-c73c-8rg9/GHSA-rrpp-c73c-8rg9.json | 4 +--- .../05/GHSA-rrvh-w4fw-7gmv/GHSA-rrvh-w4fw-7gmv.json | 4 +--- .../05/GHSA-rw4r-2f9m-m4gf/GHSA-rw4r-2f9m-m4gf.json | 4 +--- .../05/GHSA-rxmc-r56m-843f/GHSA-rxmc-r56m-843f.json | 4 +--- .../05/GHSA-v2jj-6wcp-962x/GHSA-v2jj-6wcp-962x.json | 8 ++------ .../05/GHSA-v44q-vw7w-v5f6/GHSA-v44q-vw7w-v5f6.json | 4 +--- .../05/GHSA-v484-r27j-mv8x/GHSA-v484-r27j-mv8x.json | 4 +--- .../05/GHSA-v8cf-xr7x-x7g3/GHSA-v8cf-xr7x-x7g3.json | 4 +--- .../05/GHSA-vgwq-9qw6-2xjv/GHSA-vgwq-9qw6-2xjv.json | 8 ++------ .../05/GHSA-vhc5-hfx4-87r4/GHSA-vhc5-hfx4-87r4.json | 4 +--- .../05/GHSA-vp28-9cm6-hpwg/GHSA-vp28-9cm6-hpwg.json | 8 ++------ .../05/GHSA-vp76-3v52-p6vj/GHSA-vp76-3v52-p6vj.json | 4 +--- .../05/GHSA-vqvr-9cjv-m5wg/GHSA-vqvr-9cjv-m5wg.json | 4 +--- .../05/GHSA-vrw8-cjgh-777g/GHSA-vrw8-cjgh-777g.json | 4 +--- .../05/GHSA-w6j9-gj52-h6wf/GHSA-w6j9-gj52-h6wf.json | 4 +--- .../05/GHSA-w99p-36hq-4282/GHSA-w99p-36hq-4282.json | 4 +--- .../05/GHSA-wcwp-h7r9-hxrf/GHSA-wcwp-h7r9-hxrf.json | 4 +--- .../05/GHSA-wg9j-px8c-pwpc/GHSA-wg9j-px8c-pwpc.json | 4 +--- .../05/GHSA-wjg2-hjqv-2pvp/GHSA-wjg2-hjqv-2pvp.json | 8 ++------ .../05/GHSA-wjph-q6c3-pvg8/GHSA-wjph-q6c3-pvg8.json | 4 +--- .../05/GHSA-wmf5-j34h-gm23/GHSA-wmf5-j34h-gm23.json | 4 +--- .../05/GHSA-wr68-32ff-7373/GHSA-wr68-32ff-7373.json | 4 +--- .../05/GHSA-wrjw-52pw-744r/GHSA-wrjw-52pw-744r.json | 4 +--- .../05/GHSA-wv6x-vvqc-64v2/GHSA-wv6x-vvqc-64v2.json | 4 +--- .../05/GHSA-wx5j-6m42-hwj9/GHSA-wx5j-6m42-hwj9.json | 4 +--- .../05/GHSA-wxj3-qj8p-4936/GHSA-wxj3-qj8p-4936.json | 4 +--- .../05/GHSA-x4rw-prfw-9mq5/GHSA-x4rw-prfw-9mq5.json | 4 +--- .../05/GHSA-x7h2-j795-83vg/GHSA-x7h2-j795-83vg.json | 4 +--- .../05/GHSA-x9pv-2vfg-2257/GHSA-x9pv-2vfg-2257.json | 4 +--- .../05/GHSA-xf7f-8qhq-f75q/GHSA-xf7f-8qhq-f75q.json | 8 ++------ .../05/GHSA-xhvc-5m26-373f/GHSA-xhvc-5m26-373f.json | 4 +--- .../05/GHSA-xmcr-r54g-jx72/GHSA-xmcr-r54g-jx72.json | 4 +--- .../05/GHSA-xp9h-4j67-rh5p/GHSA-xp9h-4j67-rh5p.json | 8 ++------ .../05/GHSA-xvxq-7q9x-g29m/GHSA-xvxq-7q9x-g29m.json | 8 ++------ 975 files changed, 2318 insertions(+), 6954 deletions(-) diff --git a/advisories/unreviewed/2022/01/GHSA-qcq7-c3jg-v7g4/GHSA-qcq7-c3jg-v7g4.json b/advisories/unreviewed/2022/01/GHSA-qcq7-c3jg-v7g4/GHSA-qcq7-c3jg-v7g4.json index bede6354c82..eaa89aafe16 100644 --- a/advisories/unreviewed/2022/01/GHSA-qcq7-c3jg-v7g4/GHSA-qcq7-c3jg-v7g4.json +++ b/advisories/unreviewed/2022/01/GHSA-qcq7-c3jg-v7g4/GHSA-qcq7-c3jg-v7g4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2264-54r3-3rjm/GHSA-2264-54r3-3rjm.json b/advisories/unreviewed/2022/04/GHSA-2264-54r3-3rjm/GHSA-2264-54r3-3rjm.json index ef81bbf9b3e..b924e856a46 100644 --- a/advisories/unreviewed/2022/04/GHSA-2264-54r3-3rjm/GHSA-2264-54r3-3rjm.json +++ b/advisories/unreviewed/2022/04/GHSA-2264-54r3-3rjm/GHSA-2264-54r3-3rjm.json @@ -7,12 +7,8 @@ "CVE-2003-0693" ], "details": "A \"buffer management error\" in buffer_append_space of buffer.c for OpenSSH before 3.7 may allow remote attackers to execute arbitrary code by causing an incorrect amount of memory to be freed and corrupting the heap, a different vulnerability than CVE-2003-0695.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-24rh-3pgw-777c/GHSA-24rh-3pgw-777c.json b/advisories/unreviewed/2022/04/GHSA-24rh-3pgw-777c/GHSA-24rh-3pgw-777c.json index 8baaec600c5..2cbbe614f0b 100644 --- a/advisories/unreviewed/2022/04/GHSA-24rh-3pgw-777c/GHSA-24rh-3pgw-777c.json +++ b/advisories/unreviewed/2022/04/GHSA-24rh-3pgw-777c/GHSA-24rh-3pgw-777c.json @@ -7,12 +7,8 @@ "CVE-2003-1306" ], "details": "Microsoft URLScan 2.5, with the RemoveServerHeader option enabled, allows remote attackers to obtain sensitive information (server name and version) via an HTTP request that generates certain errors such as 400 \"Bad Request,\" which leak the Server header in the response.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2753-chm6-qr3j/GHSA-2753-chm6-qr3j.json b/advisories/unreviewed/2022/04/GHSA-2753-chm6-qr3j/GHSA-2753-chm6-qr3j.json index 42cf1367ec2..583870ed8a6 100644 --- a/advisories/unreviewed/2022/04/GHSA-2753-chm6-qr3j/GHSA-2753-chm6-qr3j.json +++ b/advisories/unreviewed/2022/04/GHSA-2753-chm6-qr3j/GHSA-2753-chm6-qr3j.json @@ -7,12 +7,8 @@ "CVE-2003-1447" ], "details": "IBM WebSphere Advanced Server Edition 4.0.4 uses a weak encryption algorithm (XOR and base64 encoding), which allows local users to decrypt passwords when the configuration file is exported to XML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2fjp-fr4m-265h/GHSA-2fjp-fr4m-265h.json b/advisories/unreviewed/2022/04/GHSA-2fjp-fr4m-265h/GHSA-2fjp-fr4m-265h.json index 50e4a797bf6..5849ed66a92 100644 --- a/advisories/unreviewed/2022/04/GHSA-2fjp-fr4m-265h/GHSA-2fjp-fr4m-265h.json +++ b/advisories/unreviewed/2022/04/GHSA-2fjp-fr4m-265h/GHSA-2fjp-fr4m-265h.json @@ -7,12 +7,8 @@ "CVE-2003-1365" ], "details": "The escape_dangerous_chars function in CGI::Lite 2.0 and earlier does not correctly remove special characters including (1) \"\\\" (backslash), (2) \"?\", (3) \"~\" (tilde), (4) \"^\" (carat), (5) newline, or (6) carriage return, which could allow remote attackers to read or write arbitrary files, or execute arbitrary commands, in shell scripts that rely on CGI::Lite to filter such dangerous inputs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2g4v-qc3v-672p/GHSA-2g4v-qc3v-672p.json b/advisories/unreviewed/2022/04/GHSA-2g4v-qc3v-672p/GHSA-2g4v-qc3v-672p.json index 90edd3248ef..4ae527c0f8f 100644 --- a/advisories/unreviewed/2022/04/GHSA-2g4v-qc3v-672p/GHSA-2g4v-qc3v-672p.json +++ b/advisories/unreviewed/2022/04/GHSA-2g4v-qc3v-672p/GHSA-2g4v-qc3v-672p.json @@ -7,12 +7,8 @@ "CVE-2003-1369" ], "details": "Buffer overflow in ByteCatcher FTP client 1.04b allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2gfg-p5mp-gf94/GHSA-2gfg-p5mp-gf94.json b/advisories/unreviewed/2022/04/GHSA-2gfg-p5mp-gf94/GHSA-2gfg-p5mp-gf94.json index ff943c355e5..0d238073699 100644 --- a/advisories/unreviewed/2022/04/GHSA-2gfg-p5mp-gf94/GHSA-2gfg-p5mp-gf94.json +++ b/advisories/unreviewed/2022/04/GHSA-2gfg-p5mp-gf94/GHSA-2gfg-p5mp-gf94.json @@ -7,12 +7,8 @@ "CVE-2003-1392" ], "details": "CryptoBuddy 1.0 and 1.2 does not use the user-supplied passphrase to encrypt data, which could allow local users to use their own passphrase to decrypt the data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2gr9-3f9h-5pc3/GHSA-2gr9-3f9h-5pc3.json b/advisories/unreviewed/2022/04/GHSA-2gr9-3f9h-5pc3/GHSA-2gr9-3f9h-5pc3.json index e04cdfe749a..458b4638427 100644 --- a/advisories/unreviewed/2022/04/GHSA-2gr9-3f9h-5pc3/GHSA-2gr9-3f9h-5pc3.json +++ b/advisories/unreviewed/2022/04/GHSA-2gr9-3f9h-5pc3/GHSA-2gr9-3f9h-5pc3.json @@ -7,12 +7,8 @@ "CVE-2003-1443" ], "details": "Kaspersky Antivirus (KAV) 4.0.9.0 does not detect viruses in files with MS-DOS device names in their filenames, which allows local users to bypass virus protection, as demonstrated using aux.vbs and aux.com.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2hm5-gw4v-jffr/GHSA-2hm5-gw4v-jffr.json b/advisories/unreviewed/2022/04/GHSA-2hm5-gw4v-jffr/GHSA-2hm5-gw4v-jffr.json index 8099f3bce77..9adc3904a50 100644 --- a/advisories/unreviewed/2022/04/GHSA-2hm5-gw4v-jffr/GHSA-2hm5-gw4v-jffr.json +++ b/advisories/unreviewed/2022/04/GHSA-2hm5-gw4v-jffr/GHSA-2hm5-gw4v-jffr.json @@ -7,12 +7,8 @@ "CVE-2003-1454" ], "details": "Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator password in a cookie in plaintext, which could allow remote attackers to gain access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2jx3-m5vv-rvc6/GHSA-2jx3-m5vv-rvc6.json b/advisories/unreviewed/2022/04/GHSA-2jx3-m5vv-rvc6/GHSA-2jx3-m5vv-rvc6.json index 77073f8ff12..897c3bb7e29 100644 --- a/advisories/unreviewed/2022/04/GHSA-2jx3-m5vv-rvc6/GHSA-2jx3-m5vv-rvc6.json +++ b/advisories/unreviewed/2022/04/GHSA-2jx3-m5vv-rvc6/GHSA-2jx3-m5vv-rvc6.json @@ -7,12 +7,8 @@ "CVE-2003-1445" ], "details": "Stack-based buffer overflow in Far Manager 1.70beta1 and earlier allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2v6g-rfjx-x852/GHSA-2v6g-rfjx-x852.json b/advisories/unreviewed/2022/04/GHSA-2v6g-rfjx-x852/GHSA-2v6g-rfjx-x852.json index 7756e8f9997..fb0d7f76d7b 100644 --- a/advisories/unreviewed/2022/04/GHSA-2v6g-rfjx-x852/GHSA-2v6g-rfjx-x852.json +++ b/advisories/unreviewed/2022/04/GHSA-2v6g-rfjx-x852/GHSA-2v6g-rfjx-x852.json @@ -7,12 +7,8 @@ "CVE-2003-1407" ], "details": "Buffer overflow in cmd.exe in Windows NT 4.0 may allow local users to execute arbitrary code via a long pathname argument to the cd command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-34w9-p2mc-gqxq/GHSA-34w9-p2mc-gqxq.json b/advisories/unreviewed/2022/04/GHSA-34w9-p2mc-gqxq/GHSA-34w9-p2mc-gqxq.json index 9e4e3eef1df..9bc1cc796e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-34w9-p2mc-gqxq/GHSA-34w9-p2mc-gqxq.json +++ b/advisories/unreviewed/2022/04/GHSA-34w9-p2mc-gqxq/GHSA-34w9-p2mc-gqxq.json @@ -7,12 +7,8 @@ "CVE-2003-1333" ], "details": "Unspecified vulnerability in the Cache' Server Page (CSP) implementation in InterSystems Cache' 4.0.3 through 5.0.5 allows remote attackers to \"gain complete control\" of a server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-354x-gx8f-qvm6/GHSA-354x-gx8f-qvm6.json b/advisories/unreviewed/2022/04/GHSA-354x-gx8f-qvm6/GHSA-354x-gx8f-qvm6.json index 2b0fc5c6acf..bf02529cbcd 100644 --- a/advisories/unreviewed/2022/04/GHSA-354x-gx8f-qvm6/GHSA-354x-gx8f-qvm6.json +++ b/advisories/unreviewed/2022/04/GHSA-354x-gx8f-qvm6/GHSA-354x-gx8f-qvm6.json @@ -7,12 +7,8 @@ "CVE-2003-1370" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Nuked-Klan 1.2b allow remote attackers to inject arbitrary HTML or web script via (1) the Author field in the Guestbook module, (2) the Titre or Pseudo fields in the Forum module, or (3) \"La Tribune Libre\" in the Shoutbox module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-35jf-fw8j-m7v3/GHSA-35jf-fw8j-m7v3.json b/advisories/unreviewed/2022/04/GHSA-35jf-fw8j-m7v3/GHSA-35jf-fw8j-m7v3.json index 55ccb60010a..60a41f4fe9c 100644 --- a/advisories/unreviewed/2022/04/GHSA-35jf-fw8j-m7v3/GHSA-35jf-fw8j-m7v3.json +++ b/advisories/unreviewed/2022/04/GHSA-35jf-fw8j-m7v3/GHSA-35jf-fw8j-m7v3.json @@ -7,12 +7,8 @@ "CVE-2003-1457" ], "details": "Auerswald COMsuite CTI ControlCenter 3.1 creates a default \"runasositron\" user account with an easily guessable password, which allows local users or remote attackers to gain access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3g7c-5v2x-h72w/GHSA-3g7c-5v2x-h72w.json b/advisories/unreviewed/2022/04/GHSA-3g7c-5v2x-h72w/GHSA-3g7c-5v2x-h72w.json index 57feef3e97e..1c7ea304751 100644 --- a/advisories/unreviewed/2022/04/GHSA-3g7c-5v2x-h72w/GHSA-3g7c-5v2x-h72w.json +++ b/advisories/unreviewed/2022/04/GHSA-3g7c-5v2x-h72w/GHSA-3g7c-5v2x-h72w.json @@ -7,12 +7,8 @@ "CVE-2003-1405" ], "details": "DotBr 0.1 allows remote attackers to execute arbitrary shell commands via the cmd parameter to (1) exec.php3 or (2) system.php3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-3hph-r3fh-24mv/GHSA-3hph-r3fh-24mv.json b/advisories/unreviewed/2022/04/GHSA-3hph-r3fh-24mv/GHSA-3hph-r3fh-24mv.json index c1f9b266e61..c823e689ec6 100644 --- a/advisories/unreviewed/2022/04/GHSA-3hph-r3fh-24mv/GHSA-3hph-r3fh-24mv.json +++ b/advisories/unreviewed/2022/04/GHSA-3hph-r3fh-24mv/GHSA-3hph-r3fh-24mv.json @@ -7,12 +7,8 @@ "CVE-2003-1389" ], "details": "RTS CryptoBuddy 1.2 and earlier truncates long passphrases without warning the user, which may make it easier to conduct certain brute force guessing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3jpg-j7r7-3wm6/GHSA-3jpg-j7r7-3wm6.json b/advisories/unreviewed/2022/04/GHSA-3jpg-j7r7-3wm6/GHSA-3jpg-j7r7-3wm6.json index 7ad486ac383..c299bb53a11 100644 --- a/advisories/unreviewed/2022/04/GHSA-3jpg-j7r7-3wm6/GHSA-3jpg-j7r7-3wm6.json +++ b/advisories/unreviewed/2022/04/GHSA-3jpg-j7r7-3wm6/GHSA-3jpg-j7r7-3wm6.json @@ -7,12 +7,8 @@ "CVE-2003-1375" ], "details": "Buffer overflow in wall for HP-UX 10.20 through 11.11 may allow local users to execute arbitrary code by calling wall with a large file as an argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-3mpv-vc7v-xpc6/GHSA-3mpv-vc7v-xpc6.json b/advisories/unreviewed/2022/04/GHSA-3mpv-vc7v-xpc6/GHSA-3mpv-vc7v-xpc6.json index cf9a4da65ef..dd0a464e602 100644 --- a/advisories/unreviewed/2022/04/GHSA-3mpv-vc7v-xpc6/GHSA-3mpv-vc7v-xpc6.json +++ b/advisories/unreviewed/2022/04/GHSA-3mpv-vc7v-xpc6/GHSA-3mpv-vc7v-xpc6.json @@ -7,12 +7,8 @@ "CVE-2003-1385" ], "details": "ipchat.php in Invision Power Board 1.1.1 allows remote attackers to execute arbitrary PHP code, if register_globals is enabled, by modifying the root_path parameter to reference a URL on a remote web server that contains the code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-3vq7-qx2x-qqw3/GHSA-3vq7-qx2x-qqw3.json b/advisories/unreviewed/2022/04/GHSA-3vq7-qx2x-qqw3/GHSA-3vq7-qx2x-qqw3.json index d023f06b68a..0816f871057 100644 --- a/advisories/unreviewed/2022/04/GHSA-3vq7-qx2x-qqw3/GHSA-3vq7-qx2x-qqw3.json +++ b/advisories/unreviewed/2022/04/GHSA-3vq7-qx2x-qqw3/GHSA-3vq7-qx2x-qqw3.json @@ -7,12 +7,8 @@ "CVE-2003-1384" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in PY-Livredor 1.0 allows remote attackers to insert arbitrary web script or HTML via the (1) titre, (2) Votre pseudo, (3) Votre e-mail, or (4) Votre message fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4683-gq97-9p3g/GHSA-4683-gq97-9p3g.json b/advisories/unreviewed/2022/04/GHSA-4683-gq97-9p3g/GHSA-4683-gq97-9p3g.json index c3167068887..1abd0bad2b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-4683-gq97-9p3g/GHSA-4683-gq97-9p3g.json +++ b/advisories/unreviewed/2022/04/GHSA-4683-gq97-9p3g/GHSA-4683-gq97-9p3g.json @@ -7,12 +7,8 @@ "CVE-2003-1439" ], "details": "Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores passwords and sessions in plaintext in memory, which could allow local users to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-46p9-c28x-c7x9/GHSA-46p9-c28x-c7x9.json b/advisories/unreviewed/2022/04/GHSA-46p9-c28x-c7x9/GHSA-46p9-c28x-c7x9.json index a367e6e9a1a..8f04921abb1 100644 --- a/advisories/unreviewed/2022/04/GHSA-46p9-c28x-c7x9/GHSA-46p9-c28x-c7x9.json +++ b/advisories/unreviewed/2022/04/GHSA-46p9-c28x-c7x9/GHSA-46p9-c28x-c7x9.json @@ -7,12 +7,8 @@ "CVE-2003-1317" ], "details": "Cross-site scripting (XSS) vulnerability in mod.php in eNdonesia 8.2 allows remote attackers to inject arbitrary web script or HTML via the mod parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4747-c4gm-2j5q/GHSA-4747-c4gm-2j5q.json b/advisories/unreviewed/2022/04/GHSA-4747-c4gm-2j5q/GHSA-4747-c4gm-2j5q.json index 493f169351a..d6abacf63e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-4747-c4gm-2j5q/GHSA-4747-c4gm-2j5q.json +++ b/advisories/unreviewed/2022/04/GHSA-4747-c4gm-2j5q/GHSA-4747-c4gm-2j5q.json @@ -7,12 +7,8 @@ "CVE-2003-1408" ], "details": "Lotus Domino Server 5.0 and 6.0 allows remote attackers to read the source code for files via an HTTP request with a filename with a trailing dot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-48c9-rw99-398v/GHSA-48c9-rw99-398v.json b/advisories/unreviewed/2022/04/GHSA-48c9-rw99-398v/GHSA-48c9-rw99-398v.json index 1f6e1420f7a..dd2c40e0883 100644 --- a/advisories/unreviewed/2022/04/GHSA-48c9-rw99-398v/GHSA-48c9-rw99-398v.json +++ b/advisories/unreviewed/2022/04/GHSA-48c9-rw99-398v/GHSA-48c9-rw99-398v.json @@ -7,12 +7,8 @@ "CVE-2003-1336" ], "details": "Buffer overflow in mIRC before 6.11 allows remote attackers to execute arbitrary code via a long irc:// URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-48g3-9q4j-7w5f/GHSA-48g3-9q4j-7w5f.json b/advisories/unreviewed/2022/04/GHSA-48g3-9q4j-7w5f/GHSA-48g3-9q4j-7w5f.json index 2c6e7796bd7..f6a8fd9311d 100644 --- a/advisories/unreviewed/2022/04/GHSA-48g3-9q4j-7w5f/GHSA-48g3-9q4j-7w5f.json +++ b/advisories/unreviewed/2022/04/GHSA-48g3-9q4j-7w5f/GHSA-48g3-9q4j-7w5f.json @@ -7,12 +7,8 @@ "CVE-2003-1413" ], "details": "parse_xml.cgi in Apple Darwin Streaming Server 4.1.1 allows remote attackers to determine the existence of arbitrary files by using \"..\" sequences in the filename parameter and comparing the resulting error messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4j68-mmq7-4c57/GHSA-4j68-mmq7-4c57.json b/advisories/unreviewed/2022/04/GHSA-4j68-mmq7-4c57/GHSA-4j68-mmq7-4c57.json index 3ff2eaeb104..f15c26ec7f7 100644 --- a/advisories/unreviewed/2022/04/GHSA-4j68-mmq7-4c57/GHSA-4j68-mmq7-4c57.json +++ b/advisories/unreviewed/2022/04/GHSA-4j68-mmq7-4c57/GHSA-4j68-mmq7-4c57.json @@ -7,12 +7,8 @@ "CVE-2003-1319" ], "details": "Multiple buffer overflows in SmartFTP 1.0.973, and other versions before 1.0.976, allow remote attackers to execute arbitrary code via (1) a long response to a PWD command, which triggers a stack-based overflow, and (2) a long line in a response to a file LIST command, which triggers a heap-based overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4j8m-c6hq-7wpj/GHSA-4j8m-c6hq-7wpj.json b/advisories/unreviewed/2022/04/GHSA-4j8m-c6hq-7wpj/GHSA-4j8m-c6hq-7wpj.json index 1e60142a729..468fcf2a356 100644 --- a/advisories/unreviewed/2022/04/GHSA-4j8m-c6hq-7wpj/GHSA-4j8m-c6hq-7wpj.json +++ b/advisories/unreviewed/2022/04/GHSA-4j8m-c6hq-7wpj/GHSA-4j8m-c6hq-7wpj.json @@ -7,12 +7,8 @@ "CVE-2003-1422" ], "details": "Multiple unspecified vulnerabilities in the installer for SYSLINUX 2.01, when running setuid root, allow local users to gain privileges via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4pqr-83q4-35m7/GHSA-4pqr-83q4-35m7.json b/advisories/unreviewed/2022/04/GHSA-4pqr-83q4-35m7/GHSA-4pqr-83q4-35m7.json index 299855149bf..292aee8181b 100644 --- a/advisories/unreviewed/2022/04/GHSA-4pqr-83q4-35m7/GHSA-4pqr-83q4-35m7.json +++ b/advisories/unreviewed/2022/04/GHSA-4pqr-83q4-35m7/GHSA-4pqr-83q4-35m7.json @@ -7,12 +7,8 @@ "CVE-2003-1361" ], "details": "Unknown vulnerability in VERITAS Bare Metal Restore (BMR) of Tivoli Storage Manager (TSM) 3.1.0 through 3.2.1 allows remote attackers to gain root privileges on the BMR Main Server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4v27-cw49-q24f/GHSA-4v27-cw49-q24f.json b/advisories/unreviewed/2022/04/GHSA-4v27-cw49-q24f/GHSA-4v27-cw49-q24f.json index 41bb022d449..711fe94f620 100644 --- a/advisories/unreviewed/2022/04/GHSA-4v27-cw49-q24f/GHSA-4v27-cw49-q24f.json +++ b/advisories/unreviewed/2022/04/GHSA-4v27-cw49-q24f/GHSA-4v27-cw49-q24f.json @@ -7,12 +7,8 @@ "CVE-2003-1350" ], "details": "List Site Pro 2.0 allows remote attackers to hijack user accounts by inserting a \"|\" (pipe), which is used as a field delimiter, into the bannerurl field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4vv4-wwgv-w267/GHSA-4vv4-wwgv-w267.json b/advisories/unreviewed/2022/04/GHSA-4vv4-wwgv-w267/GHSA-4vv4-wwgv-w267.json index 374b3494ebd..4f4ac193c2a 100644 --- a/advisories/unreviewed/2022/04/GHSA-4vv4-wwgv-w267/GHSA-4vv4-wwgv-w267.json +++ b/advisories/unreviewed/2022/04/GHSA-4vv4-wwgv-w267/GHSA-4vv4-wwgv-w267.json @@ -7,12 +7,8 @@ "CVE-2003-1354" ], "details": "Multiple GameSpy 3D 2.62 compatible gaming servers generate very large UDP responses to small requests, which allows remote attackers to use the servers as an amplifier in DDoS attacks with spoofed UDP query packets, as demonstrated using Battlefield 1942.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-5342-24w2-77w3/GHSA-5342-24w2-77w3.json b/advisories/unreviewed/2022/04/GHSA-5342-24w2-77w3/GHSA-5342-24w2-77w3.json index f6f1395b2d8..86d80f677f2 100644 --- a/advisories/unreviewed/2022/04/GHSA-5342-24w2-77w3/GHSA-5342-24w2-77w3.json +++ b/advisories/unreviewed/2022/04/GHSA-5342-24w2-77w3/GHSA-5342-24w2-77w3.json @@ -7,12 +7,8 @@ "CVE-2003-1314" ], "details": "PHP remote file inclusion vulnerability in admin/auth.php in EternalMart Guestbook (EMGB) 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the emgb_admin_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5366-ff25-5h7f/GHSA-5366-ff25-5h7f.json b/advisories/unreviewed/2022/04/GHSA-5366-ff25-5h7f/GHSA-5366-ff25-5h7f.json index 89342489561..1cadbfdbdfa 100644 --- a/advisories/unreviewed/2022/04/GHSA-5366-ff25-5h7f/GHSA-5366-ff25-5h7f.json +++ b/advisories/unreviewed/2022/04/GHSA-5366-ff25-5h7f/GHSA-5366-ff25-5h7f.json @@ -7,12 +7,8 @@ "CVE-2003-1406" ], "details": "PHP remote file inclusion vulnerability in D-Forum 1.00 through 1.11 allows remote attackers to execute arbitrary PHP code via a URL in the (1) my_header parameter to header.php3 or (2) my_footer parameter to footer.php3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-544j-365h-qj92/GHSA-544j-365h-qj92.json b/advisories/unreviewed/2022/04/GHSA-544j-365h-qj92/GHSA-544j-365h-qj92.json index c86b10facb4..54e64b419b9 100644 --- a/advisories/unreviewed/2022/04/GHSA-544j-365h-qj92/GHSA-544j-365h-qj92.json +++ b/advisories/unreviewed/2022/04/GHSA-544j-365h-qj92/GHSA-544j-365h-qj92.json @@ -7,12 +7,8 @@ "CVE-2003-1438" ], "details": "Race condition in BEA WebLogic Server and Express 5.1 through 7.0.0.1, when using in-memory session replication or replicated stateful session beans, causes the same buffer to be provided to two users, which could allow one user to see session data that was intended for another user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-54v2-68v5-6xj9/GHSA-54v2-68v5-6xj9.json b/advisories/unreviewed/2022/04/GHSA-54v2-68v5-6xj9/GHSA-54v2-68v5-6xj9.json index 72b6a55d5b7..e0d0796eb9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-54v2-68v5-6xj9/GHSA-54v2-68v5-6xj9.json +++ b/advisories/unreviewed/2022/04/GHSA-54v2-68v5-6xj9/GHSA-54v2-68v5-6xj9.json @@ -7,12 +7,8 @@ "CVE-2003-1391" ], "details": "RTS CryptoBuddy 1.0 and 1.2 uses a weak encryption algorithm for the passphrase and generates predictable keys, which makes it easier for attackers to guess the passphrase.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5657-h9cj-f78j/GHSA-5657-h9cj-f78j.json b/advisories/unreviewed/2022/04/GHSA-5657-h9cj-f78j/GHSA-5657-h9cj-f78j.json index 25d417b5110..a02e8e98c2b 100644 --- a/advisories/unreviewed/2022/04/GHSA-5657-h9cj-f78j/GHSA-5657-h9cj-f78j.json +++ b/advisories/unreviewed/2022/04/GHSA-5657-h9cj-f78j/GHSA-5657-h9cj-f78j.json @@ -7,12 +7,8 @@ "CVE-2003-1359" ], "details": "Buffer overflow in stmkfont utility of HP-UX 10.0 through 11.22 allows local users to gain privileges via a long command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-56m5-x4c2-m4p5/GHSA-56m5-x4c2-m4p5.json b/advisories/unreviewed/2022/04/GHSA-56m5-x4c2-m4p5/GHSA-56m5-x4c2-m4p5.json index 6c9fbd43c94..c2d7f12594c 100644 --- a/advisories/unreviewed/2022/04/GHSA-56m5-x4c2-m4p5/GHSA-56m5-x4c2-m4p5.json +++ b/advisories/unreviewed/2022/04/GHSA-56m5-x4c2-m4p5/GHSA-56m5-x4c2-m4p5.json @@ -7,12 +7,8 @@ "CVE-2003-1460" ], "details": "Worker Filemanager 1.0 through 2.7 sets the permissions on the destination directory to world-readable and executable while copying data, which could allow local users to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5f99-qr48-9xhf/GHSA-5f99-qr48-9xhf.json b/advisories/unreviewed/2022/04/GHSA-5f99-qr48-9xhf/GHSA-5f99-qr48-9xhf.json index 7469d919087..60e50ba2062 100644 --- a/advisories/unreviewed/2022/04/GHSA-5f99-qr48-9xhf/GHSA-5f99-qr48-9xhf.json +++ b/advisories/unreviewed/2022/04/GHSA-5f99-qr48-9xhf/GHSA-5f99-qr48-9xhf.json @@ -7,12 +7,8 @@ "CVE-2003-1446" ], "details": "Buffer overflow in the save_into_file function in save.c for Rogue 5.2-2 allows local users to execute arbitrary code with games group privileges by setting a long HOME environment variable and invoking the save game function with a ~ (tilde).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-5pm7-5jwh-3rhh/GHSA-5pm7-5jwh-3rhh.json b/advisories/unreviewed/2022/04/GHSA-5pm7-5jwh-3rhh/GHSA-5pm7-5jwh-3rhh.json index 2414de72787..5abd588fa06 100644 --- a/advisories/unreviewed/2022/04/GHSA-5pm7-5jwh-3rhh/GHSA-5pm7-5jwh-3rhh.json +++ b/advisories/unreviewed/2022/04/GHSA-5pm7-5jwh-3rhh/GHSA-5pm7-5jwh-3rhh.json @@ -7,12 +7,8 @@ "CVE-2003-1455" ], "details": "Multiple buffer overflows in the launch_bcrelay function in pptpctrl.c in PoPToP 1.1.4-b1 through PoPToP 1.1.4-b3 allow local users to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-5w64-w3wc-5m39/GHSA-5w64-w3wc-5m39.json b/advisories/unreviewed/2022/04/GHSA-5w64-w3wc-5m39/GHSA-5w64-w3wc-5m39.json index 0a1d7cadb0b..a4d3471f9b8 100644 --- a/advisories/unreviewed/2022/04/GHSA-5w64-w3wc-5m39/GHSA-5w64-w3wc-5m39.json +++ b/advisories/unreviewed/2022/04/GHSA-5w64-w3wc-5m39/GHSA-5w64-w3wc-5m39.json @@ -7,12 +7,8 @@ "CVE-2003-1430" ], "details": "Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known files via a \"..\" (dot dot) in an unreal:// URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-5wg6-v5wg-r8c6/GHSA-5wg6-v5wg-r8c6.json b/advisories/unreviewed/2022/04/GHSA-5wg6-v5wg-r8c6/GHSA-5wg6-v5wg-r8c6.json index 4868d14495f..efc609ab512 100644 --- a/advisories/unreviewed/2022/04/GHSA-5wg6-v5wg-r8c6/GHSA-5wg6-v5wg-r8c6.json +++ b/advisories/unreviewed/2022/04/GHSA-5wg6-v5wg-r8c6/GHSA-5wg6-v5wg-r8c6.json @@ -7,12 +7,8 @@ "CVE-2003-1373" ], "details": "Directory traversal vulnerability in auth.php for PhpBB 1.4.0 through 1.4.4 allows remote attackers to read and include arbitrary files via .. (dot dot) sequences followed by NULL (%00) characters in CGI parameters, as demonstrated using the lang parameter in prefs.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-63rh-cqhw-45cw/GHSA-63rh-cqhw-45cw.json b/advisories/unreviewed/2022/04/GHSA-63rh-cqhw-45cw/GHSA-63rh-cqhw-45cw.json index 16be645161f..fe512a83291 100644 --- a/advisories/unreviewed/2022/04/GHSA-63rh-cqhw-45cw/GHSA-63rh-cqhw-45cw.json +++ b/advisories/unreviewed/2022/04/GHSA-63rh-cqhw-45cw/GHSA-63rh-cqhw-45cw.json @@ -7,12 +7,8 @@ "CVE-2003-1327" ], "details": "Buffer overflow in the SockPrintf function in wu-ftpd 2.6.2 and earlier, when compiled with MAIL_ADMIN option enabled on a system that supports very long pathnames, might allow remote anonymous users to execute arbitrary code by uploading a file with a long pathname, which triggers the overflow when wu-ftpd constructs a notification message to the administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-689v-wffr-56c5/GHSA-689v-wffr-56c5.json b/advisories/unreviewed/2022/04/GHSA-689v-wffr-56c5/GHSA-689v-wffr-56c5.json index 28cac93676c..b2ecdd34149 100644 --- a/advisories/unreviewed/2022/04/GHSA-689v-wffr-56c5/GHSA-689v-wffr-56c5.json +++ b/advisories/unreviewed/2022/04/GHSA-689v-wffr-56c5/GHSA-689v-wffr-56c5.json @@ -7,12 +7,8 @@ "CVE-2003-1342" ], "details": "Trend Micro Virus Control System (TVCS) 1.8 running with IIS allows remote attackers to cause a denial of service (memory consumption) in IIS via multiple URL requests for ActiveSupport.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-699x-pfvf-q2fj/GHSA-699x-pfvf-q2fj.json b/advisories/unreviewed/2022/04/GHSA-699x-pfvf-q2fj/GHSA-699x-pfvf-q2fj.json index a8687fcc130..32681bedf7c 100644 --- a/advisories/unreviewed/2022/04/GHSA-699x-pfvf-q2fj/GHSA-699x-pfvf-q2fj.json +++ b/advisories/unreviewed/2022/04/GHSA-699x-pfvf-q2fj/GHSA-699x-pfvf-q2fj.json @@ -7,12 +7,8 @@ "CVE-2003-1437" ], "details": "BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-69q2-4j65-gwmx/GHSA-69q2-4j65-gwmx.json b/advisories/unreviewed/2022/04/GHSA-69q2-4j65-gwmx/GHSA-69q2-4j65-gwmx.json index 9b51aed0934..07519ffa6d5 100644 --- a/advisories/unreviewed/2022/04/GHSA-69q2-4j65-gwmx/GHSA-69q2-4j65-gwmx.json +++ b/advisories/unreviewed/2022/04/GHSA-69q2-4j65-gwmx/GHSA-69q2-4j65-gwmx.json @@ -7,12 +7,8 @@ "CVE-2003-1461" ], "details": "Buffer overflow in rwrite for HP-UX 11.0 could allow local users to execute arbitrary code via a long argument. NOTE: the vendor was unable to reproduce the problem on a system that had been patched for an lp vulnerability (CVE-2002-1473).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-6p48-4gww-9f6q/GHSA-6p48-4gww-9f6q.json b/advisories/unreviewed/2022/04/GHSA-6p48-4gww-9f6q/GHSA-6p48-4gww-9f6q.json index e5b358f0a6e..7a24248882a 100644 --- a/advisories/unreviewed/2022/04/GHSA-6p48-4gww-9f6q/GHSA-6p48-4gww-9f6q.json +++ b/advisories/unreviewed/2022/04/GHSA-6p48-4gww-9f6q/GHSA-6p48-4gww-9f6q.json @@ -7,12 +7,8 @@ "CVE-2003-1400" ], "details": "Cross-site scripting (XSS) vulnerability in the Your_Account module for PHP-Nuke 5.0 through 6.0 allows remote attackers to inject arbitrary web script or HTML via the user_avatar parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-6qrr-f5fp-qfjw/GHSA-6qrr-f5fp-qfjw.json b/advisories/unreviewed/2022/04/GHSA-6qrr-f5fp-qfjw/GHSA-6qrr-f5fp-qfjw.json index 683ad704d8f..14847d6599f 100644 --- a/advisories/unreviewed/2022/04/GHSA-6qrr-f5fp-qfjw/GHSA-6qrr-f5fp-qfjw.json +++ b/advisories/unreviewed/2022/04/GHSA-6qrr-f5fp-qfjw/GHSA-6qrr-f5fp-qfjw.json @@ -7,12 +7,8 @@ "CVE-2003-1399" ], "details": "eject 2.0.10, when installed setuid on systems such as SuSE Linux 7.3, generates different error messages depending on whether a specified file exists or not, which allows local users to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6v48-6q4p-265q/GHSA-6v48-6q4p-265q.json b/advisories/unreviewed/2022/04/GHSA-6v48-6q4p-265q/GHSA-6v48-6q4p-265q.json index af13a693e89..9bf2dd69f67 100644 --- a/advisories/unreviewed/2022/04/GHSA-6v48-6q4p-265q/GHSA-6v48-6q4p-265q.json +++ b/advisories/unreviewed/2022/04/GHSA-6v48-6q4p-265q/GHSA-6v48-6q4p-265q.json @@ -7,12 +7,8 @@ "CVE-2003-1442" ], "details": "The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remote attackers to gain access from the LAN side.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-7g5g-x3hv-jj7j/GHSA-7g5g-x3hv-jj7j.json b/advisories/unreviewed/2022/04/GHSA-7g5g-x3hv-jj7j/GHSA-7g5g-x3hv-jj7j.json index 20e8574356c..65f1de20743 100644 --- a/advisories/unreviewed/2022/04/GHSA-7g5g-x3hv-jj7j/GHSA-7g5g-x3hv-jj7j.json +++ b/advisories/unreviewed/2022/04/GHSA-7g5g-x3hv-jj7j/GHSA-7g5g-x3hv-jj7j.json @@ -7,12 +7,8 @@ "CVE-2003-1315" ], "details": "SQL injection vulnerability in auth.php in Land Down Under (LDU) v601 and earlier allows remote attackers to execute arbitrary SQL commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7jvw-hwxq-x996/GHSA-7jvw-hwxq-x996.json b/advisories/unreviewed/2022/04/GHSA-7jvw-hwxq-x996/GHSA-7jvw-hwxq-x996.json index b218d62f3a8..8c3fdf780f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-7jvw-hwxq-x996/GHSA-7jvw-hwxq-x996.json +++ b/advisories/unreviewed/2022/04/GHSA-7jvw-hwxq-x996/GHSA-7jvw-hwxq-x996.json @@ -7,12 +7,8 @@ "CVE-2003-1324" ], "details": "Race condition in the can_open function in Elm ME+ 2.4, when installed setgid mail and the operating system lacks POSIX saved ID support, allows local users to read and modify certain files with the privileges of the mail group.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7p4w-wg6m-2x69/GHSA-7p4w-wg6m-2x69.json b/advisories/unreviewed/2022/04/GHSA-7p4w-wg6m-2x69/GHSA-7p4w-wg6m-2x69.json index 9aa872fce7f..56a9841da06 100644 --- a/advisories/unreviewed/2022/04/GHSA-7p4w-wg6m-2x69/GHSA-7p4w-wg6m-2x69.json +++ b/advisories/unreviewed/2022/04/GHSA-7p4w-wg6m-2x69/GHSA-7p4w-wg6m-2x69.json @@ -7,12 +7,8 @@ "CVE-2003-1296" ], "details": "Easy File Sharing (EFS) Web Server 1.2 allows remote authenticated users to cause a denial of service via (1) an \"empty symbol\" in the Title field or (2) certain data in the Your Message field, possibly a long argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7qfj-mrcg-vg5q/GHSA-7qfj-mrcg-vg5q.json b/advisories/unreviewed/2022/04/GHSA-7qfj-mrcg-vg5q/GHSA-7qfj-mrcg-vg5q.json index 085d9c9dbac..b7267a137fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-7qfj-mrcg-vg5q/GHSA-7qfj-mrcg-vg5q.json +++ b/advisories/unreviewed/2022/04/GHSA-7qfj-mrcg-vg5q/GHSA-7qfj-mrcg-vg5q.json @@ -7,12 +7,8 @@ "CVE-2003-1352" ], "details": "Gabber 0.8.7 sends an email to a specific address during user login and logout, which allows remote attackers to obtain user session activity and Gabber version number by sniffing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7rpp-xg8m-55hx/GHSA-7rpp-xg8m-55hx.json b/advisories/unreviewed/2022/04/GHSA-7rpp-xg8m-55hx/GHSA-7rpp-xg8m-55hx.json index eb0683ed6c3..3faa6a5139a 100644 --- a/advisories/unreviewed/2022/04/GHSA-7rpp-xg8m-55hx/GHSA-7rpp-xg8m-55hx.json +++ b/advisories/unreviewed/2022/04/GHSA-7rpp-xg8m-55hx/GHSA-7rpp-xg8m-55hx.json @@ -7,12 +7,8 @@ "CVE-2003-1459" ], "details": "Multiple PHP remote file inclusion vulnerabilities in ttCMS 2.2 and ttForum allow remote attackers to execute arbitrary PHP code via the (1) template parameter in News.php or (2) installdir parameter in install.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-7w6v-fp3h-4qv8/GHSA-7w6v-fp3h-4qv8.json b/advisories/unreviewed/2022/04/GHSA-7w6v-fp3h-4qv8/GHSA-7w6v-fp3h-4qv8.json index c19dc42d671..b88e888885e 100644 --- a/advisories/unreviewed/2022/04/GHSA-7w6v-fp3h-4qv8/GHSA-7w6v-fp3h-4qv8.json +++ b/advisories/unreviewed/2022/04/GHSA-7w6v-fp3h-4qv8/GHSA-7w6v-fp3h-4qv8.json @@ -7,12 +7,8 @@ "CVE-2003-1451" ], "details": "Buffer overflow in Symantec Norton AntiVirus 2002 allows remote attackers to execute arbitrary code via an e-mail attachment with a compressed ZIP file that contains a file with a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-83mw-jhfh-84qc/GHSA-83mw-jhfh-84qc.json b/advisories/unreviewed/2022/04/GHSA-83mw-jhfh-84qc/GHSA-83mw-jhfh-84qc.json index a762b941ff7..cca96075e05 100644 --- a/advisories/unreviewed/2022/04/GHSA-83mw-jhfh-84qc/GHSA-83mw-jhfh-84qc.json +++ b/advisories/unreviewed/2022/04/GHSA-83mw-jhfh-84qc/GHSA-83mw-jhfh-84qc.json @@ -7,12 +7,8 @@ "CVE-2003-1409" ], "details": "TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter to (1) in.php or (2) out.php, which reveals the path to the TOPo directory in the error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8482-vc4v-pr7x/GHSA-8482-vc4v-pr7x.json b/advisories/unreviewed/2022/04/GHSA-8482-vc4v-pr7x/GHSA-8482-vc4v-pr7x.json index 99d1afe4e46..e0a3231d0b7 100644 --- a/advisories/unreviewed/2022/04/GHSA-8482-vc4v-pr7x/GHSA-8482-vc4v-pr7x.json +++ b/advisories/unreviewed/2022/04/GHSA-8482-vc4v-pr7x/GHSA-8482-vc4v-pr7x.json @@ -7,12 +7,8 @@ "CVE-2003-1393" ], "details": "Buffer overflow in Gupta SQLBase 8.1.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long EXECUTE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-87v8-5rxx-33vv/GHSA-87v8-5rxx-33vv.json b/advisories/unreviewed/2022/04/GHSA-87v8-5rxx-33vv/GHSA-87v8-5rxx-33vv.json index c68f34dab37..396e7db5cef 100644 --- a/advisories/unreviewed/2022/04/GHSA-87v8-5rxx-33vv/GHSA-87v8-5rxx-33vv.json +++ b/advisories/unreviewed/2022/04/GHSA-87v8-5rxx-33vv/GHSA-87v8-5rxx-33vv.json @@ -7,12 +7,8 @@ "CVE-2003-1348" ], "details": "Cross-site scripting (XSS) vulnerability in guestbook.cgi in ftls.org Guestbook 1.1 allows remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) name, or (3) title field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-898p-fmh8-7xpx/GHSA-898p-fmh8-7xpx.json b/advisories/unreviewed/2022/04/GHSA-898p-fmh8-7xpx/GHSA-898p-fmh8-7xpx.json index a36f6ac20fe..09e475840f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-898p-fmh8-7xpx/GHSA-898p-fmh8-7xpx.json +++ b/advisories/unreviewed/2022/04/GHSA-898p-fmh8-7xpx/GHSA-898p-fmh8-7xpx.json @@ -7,12 +7,8 @@ "CVE-2003-1301" ], "details": "Sun Java Runtime Environment (JRE) 1.x before 1.4.2_11 and 1.5.x before 1.5.0_06, and as used in multiple web browsers, allows remote attackers to cause a denial of service (application crash) via deeply nested object arrays, which are not properly handled by the garbage collector and trigger invalid memory accesses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8f22-6rp9-r7h8/GHSA-8f22-6rp9-r7h8.json b/advisories/unreviewed/2022/04/GHSA-8f22-6rp9-r7h8/GHSA-8f22-6rp9-r7h8.json index 7c3ae0833ce..24ad849ede2 100644 --- a/advisories/unreviewed/2022/04/GHSA-8f22-6rp9-r7h8/GHSA-8f22-6rp9-r7h8.json +++ b/advisories/unreviewed/2022/04/GHSA-8f22-6rp9-r7h8/GHSA-8f22-6rp9-r7h8.json @@ -7,12 +7,8 @@ "CVE-2003-1424" ], "details": "message.php in Petitforum does not properly authenticate users, which allows remote attackers to impersonate forum users via a modified connect cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8fpc-7gj8-q327/GHSA-8fpc-7gj8-q327.json b/advisories/unreviewed/2022/04/GHSA-8fpc-7gj8-q327/GHSA-8fpc-7gj8-q327.json index 7ee641d5234..0098697d9e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-8fpc-7gj8-q327/GHSA-8fpc-7gj8-q327.json +++ b/advisories/unreviewed/2022/04/GHSA-8fpc-7gj8-q327/GHSA-8fpc-7gj8-q327.json @@ -7,12 +7,8 @@ "CVE-2003-1419" ], "details": "Netscape 7.0 allows remote attackers to cause a denial of service (crash) via a web page with an invalid regular expression argument to the JavaScript reformatDate function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8fvh-8jx9-xcm5/GHSA-8fvh-8jx9-xcm5.json b/advisories/unreviewed/2022/04/GHSA-8fvh-8jx9-xcm5/GHSA-8fvh-8jx9-xcm5.json index 574e6ad5a15..a87354df0b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-8fvh-8jx9-xcm5/GHSA-8fvh-8jx9-xcm5.json +++ b/advisories/unreviewed/2022/04/GHSA-8fvh-8jx9-xcm5/GHSA-8fvh-8jx9-xcm5.json @@ -7,12 +7,8 @@ "CVE-2003-1415" ], "details": "NetCharts XBRL Server 4.0.0 allows remote attackers to obtain sensitive information via an HTTP request with an invalid chunked transfer encoding specification.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8h35-26pg-5q6f/GHSA-8h35-26pg-5q6f.json b/advisories/unreviewed/2022/04/GHSA-8h35-26pg-5q6f/GHSA-8h35-26pg-5q6f.json index 8651ae6abd3..10700c4858e 100644 --- a/advisories/unreviewed/2022/04/GHSA-8h35-26pg-5q6f/GHSA-8h35-26pg-5q6f.json +++ b/advisories/unreviewed/2022/04/GHSA-8h35-26pg-5q6f/GHSA-8h35-26pg-5q6f.json @@ -7,12 +7,8 @@ "CVE-2003-1401" ], "details": "login.php in php-Board 1.0 stores plaintext passwords in $username.txt with insufficient access control under the web document root, which allows remote attackers to obtain sensitive information via a direct request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8h6p-4g37-2h83/GHSA-8h6p-4g37-2h83.json b/advisories/unreviewed/2022/04/GHSA-8h6p-4g37-2h83/GHSA-8h6p-4g37-2h83.json index 8137fc0f5ba..6b2634496d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-8h6p-4g37-2h83/GHSA-8h6p-4g37-2h83.json +++ b/advisories/unreviewed/2022/04/GHSA-8h6p-4g37-2h83/GHSA-8h6p-4g37-2h83.json @@ -7,12 +7,8 @@ "CVE-2003-1380" ], "details": "Directory traversal vulnerability in BisonFTP Server 4 release 2 allows remote attackers to (1) list directories above the root via an 'ls @../' command, or (2) list files above the root via a \"mget @../FILE\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8rjq-mvw5-whpr/GHSA-8rjq-mvw5-whpr.json b/advisories/unreviewed/2022/04/GHSA-8rjq-mvw5-whpr/GHSA-8rjq-mvw5-whpr.json index 67f86187d26..7f33fed0088 100644 --- a/advisories/unreviewed/2022/04/GHSA-8rjq-mvw5-whpr/GHSA-8rjq-mvw5-whpr.json +++ b/advisories/unreviewed/2022/04/GHSA-8rjq-mvw5-whpr/GHSA-8rjq-mvw5-whpr.json @@ -7,12 +7,8 @@ "CVE-2003-1310" ], "details": "The DeviceIoControl function in the Norton Device Driver (NAVAP.sys) in Symantec Norton AntiVirus 2002 allows local users to gain privileges by overwriting memory locations via certain control codes (aka \"Device Driver Attack\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8rx9-vf5f-c3m8/GHSA-8rx9-vf5f-c3m8.json b/advisories/unreviewed/2022/04/GHSA-8rx9-vf5f-c3m8/GHSA-8rx9-vf5f-c3m8.json index bd1701a7dbd..019fedfa498 100644 --- a/advisories/unreviewed/2022/04/GHSA-8rx9-vf5f-c3m8/GHSA-8rx9-vf5f-c3m8.json +++ b/advisories/unreviewed/2022/04/GHSA-8rx9-vf5f-c3m8/GHSA-8rx9-vf5f-c3m8.json @@ -7,12 +7,8 @@ "CVE-2003-1404" ], "details": "DotBr 0.1 stores config.inc with insufficient access control under the web document root, which allows remote attackers to obtain sensitive information such as SQL usernames and passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8w8x-r834-7x5x/GHSA-8w8x-r834-7x5x.json b/advisories/unreviewed/2022/04/GHSA-8w8x-r834-7x5x/GHSA-8w8x-r834-7x5x.json index 508ddb6c341..2ca81d1f415 100644 --- a/advisories/unreviewed/2022/04/GHSA-8w8x-r834-7x5x/GHSA-8w8x-r834-7x5x.json +++ b/advisories/unreviewed/2022/04/GHSA-8w8x-r834-7x5x/GHSA-8w8x-r834-7x5x.json @@ -7,12 +7,8 @@ "CVE-2003-1322" ], "details": "Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers to execute arbitrary code via a long (1) EXAMINE, (2) DELETE, (3) SUBSCRIBE, (4) RENAME, (5) UNSUBSCRIBE, (6) LIST, (7) LSUB, (8) STATUS, (9) LOGIN, (10) CREATE, or (11) SELECT command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8wvr-jmcr-x4r3/GHSA-8wvr-jmcr-x4r3.json b/advisories/unreviewed/2022/04/GHSA-8wvr-jmcr-x4r3/GHSA-8wvr-jmcr-x4r3.json index 1dbf0326892..8adb4adf1ff 100644 --- a/advisories/unreviewed/2022/04/GHSA-8wvr-jmcr-x4r3/GHSA-8wvr-jmcr-x4r3.json +++ b/advisories/unreviewed/2022/04/GHSA-8wvr-jmcr-x4r3/GHSA-8wvr-jmcr-x4r3.json @@ -7,12 +7,8 @@ "CVE-2003-1364" ], "details": "Aprelium Technologies Abyss Web Server 1.1.2, and possibly other versions before 1.1.4, allows remote attackers to cause a denial of service (crash) via an HTTP GET message with empty (1) Connection or (2) Range fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-8xcp-44vr-gqpx/GHSA-8xcp-44vr-gqpx.json b/advisories/unreviewed/2022/04/GHSA-8xcp-44vr-gqpx/GHSA-8xcp-44vr-gqpx.json index 5cc132e5fb1..aba56a6c254 100644 --- a/advisories/unreviewed/2022/04/GHSA-8xcp-44vr-gqpx/GHSA-8xcp-44vr-gqpx.json +++ b/advisories/unreviewed/2022/04/GHSA-8xcp-44vr-gqpx/GHSA-8xcp-44vr-gqpx.json @@ -7,12 +7,8 @@ "CVE-2003-1343" ], "details": "Trend Micro ScanMail for Exchange (SMEX) before 3.81 and before 6.1 might install a back door account in smg_Smxcfg30.exe, which allows remote attackers to gain access to the web management interface via the vcc parameter, possibly \"3560121183d3\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-953c-c526-jfh6/GHSA-953c-c526-jfh6.json b/advisories/unreviewed/2022/04/GHSA-953c-c526-jfh6/GHSA-953c-c526-jfh6.json index 68fd85b168a..f9d714272f7 100644 --- a/advisories/unreviewed/2022/04/GHSA-953c-c526-jfh6/GHSA-953c-c526-jfh6.json +++ b/advisories/unreviewed/2022/04/GHSA-953c-c526-jfh6/GHSA-953c-c526-jfh6.json @@ -7,12 +7,8 @@ "CVE-2003-1339" ], "details": "Stack-based buffer overflow in eZnet.exe, as used in eZ (a) eZphotoshare, (b) eZmeeting, (c) eZnetwork, and (d) eZshare allows remote attackers to cause a denial of service (crash) or execute arbitrary code, as demonstrated via (1) a long GET request and (2) a long operation or autologin parameter to SwEzModule.dll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-962w-cpjq-678w/GHSA-962w-cpjq-678w.json b/advisories/unreviewed/2022/04/GHSA-962w-cpjq-678w/GHSA-962w-cpjq-678w.json index 3d509ce1f70..16f69b5251f 100644 --- a/advisories/unreviewed/2022/04/GHSA-962w-cpjq-678w/GHSA-962w-cpjq-678w.json +++ b/advisories/unreviewed/2022/04/GHSA-962w-cpjq-678w/GHSA-962w-cpjq-678w.json @@ -7,12 +7,8 @@ "CVE-2003-1300" ], "details": "Baby FTP Server (BabyFTP) 1.2, and possibly other versions before May 31, 2003, allows remote attackers to cause a denial of service via a large number of connections from the same IP address, which triggers an access violation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9cmq-xm5p-pqc3/GHSA-9cmq-xm5p-pqc3.json b/advisories/unreviewed/2022/04/GHSA-9cmq-xm5p-pqc3/GHSA-9cmq-xm5p-pqc3.json index 89695ca9cea..df78ffc0787 100644 --- a/advisories/unreviewed/2022/04/GHSA-9cmq-xm5p-pqc3/GHSA-9cmq-xm5p-pqc3.json +++ b/advisories/unreviewed/2022/04/GHSA-9cmq-xm5p-pqc3/GHSA-9cmq-xm5p-pqc3.json @@ -7,12 +7,8 @@ "CVE-2003-1323" ], "details": "Elm ME+ 2.4 before PL109S, when installed setgid mail and the operating system lacks POSIX saved ID support, allows local users to read and modify certain files with the privileges of the mail group via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9hfq-jf6w-xh6p/GHSA-9hfq-jf6w-xh6p.json b/advisories/unreviewed/2022/04/GHSA-9hfq-jf6w-xh6p/GHSA-9hfq-jf6w-xh6p.json index 5ebd37f7c7f..701937a4384 100644 --- a/advisories/unreviewed/2022/04/GHSA-9hfq-jf6w-xh6p/GHSA-9hfq-jf6w-xh6p.json +++ b/advisories/unreviewed/2022/04/GHSA-9hfq-jf6w-xh6p/GHSA-9hfq-jf6w-xh6p.json @@ -7,12 +7,8 @@ "CVE-2003-1452" ], "details": "Untrusted search path vulnerability in Qualcomm qpopper 4.0 through 4.05 allows local users to execute arbitrary code by modifying the PATH environment variable to reference a malicious smbpasswd program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9j95-hw5q-64g3/GHSA-9j95-hw5q-64g3.json b/advisories/unreviewed/2022/04/GHSA-9j95-hw5q-64g3/GHSA-9j95-hw5q-64g3.json index ae15043590c..b45575ee6d5 100644 --- a/advisories/unreviewed/2022/04/GHSA-9j95-hw5q-64g3/GHSA-9j95-hw5q-64g3.json +++ b/advisories/unreviewed/2022/04/GHSA-9j95-hw5q-64g3/GHSA-9j95-hw5q-64g3.json @@ -7,12 +7,8 @@ "CVE-2003-1337" ], "details": "Heap-based buffer overflow in Aprelium Abyss Web Server 1.1.2 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-9xh2-cv46-rpfc/GHSA-9xh2-cv46-rpfc.json b/advisories/unreviewed/2022/04/GHSA-9xh2-cv46-rpfc/GHSA-9xh2-cv46-rpfc.json index 7f1422f0a0d..5ed7335dc7d 100644 --- a/advisories/unreviewed/2022/04/GHSA-9xh2-cv46-rpfc/GHSA-9xh2-cv46-rpfc.json +++ b/advisories/unreviewed/2022/04/GHSA-9xh2-cv46-rpfc/GHSA-9xh2-cv46-rpfc.json @@ -7,12 +7,8 @@ "CVE-2003-1394" ], "details": "CoffeeCup Software Password Wizard 4.0 stores sensitive information such as usernames and passwords in a .apw file under the web document root with insufficient access control, which allows remote attackers to obtain that information via a direct request for the file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9xjg-v22q-53px/GHSA-9xjg-v22q-53px.json b/advisories/unreviewed/2022/04/GHSA-9xjg-v22q-53px/GHSA-9xjg-v22q-53px.json index d504bc5b65f..d15851c8dac 100644 --- a/advisories/unreviewed/2022/04/GHSA-9xjg-v22q-53px/GHSA-9xjg-v22q-53px.json +++ b/advisories/unreviewed/2022/04/GHSA-9xjg-v22q-53px/GHSA-9xjg-v22q-53px.json @@ -7,12 +7,8 @@ "CVE-2003-1379" ], "details": "clarkconnectd in ClarkConnect Linux 1.2 allows remote attackers to obtain sensitive information about the server via the characters (1) A, which reveals the date and time, (2) F, (3) M, which reveals 'ifconfig' information, (4) P, which lists the processes, (5) Y, which reveals the snort log files, or (6) b, which reveals /var/log/messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-c6gw-433r-2p8m/GHSA-c6gw-433r-2p8m.json b/advisories/unreviewed/2022/04/GHSA-c6gw-433r-2p8m/GHSA-c6gw-433r-2p8m.json index 693b46a0978..bf9245058a5 100644 --- a/advisories/unreviewed/2022/04/GHSA-c6gw-433r-2p8m/GHSA-c6gw-433r-2p8m.json +++ b/advisories/unreviewed/2022/04/GHSA-c6gw-433r-2p8m/GHSA-c6gw-433r-2p8m.json @@ -7,12 +7,8 @@ "CVE-2003-1449" ], "details": "Aladdin Knowlege Systems eSafe Gateway 3.5.126.0 does not check the entire stream of Content Vectoring Protocol (CVP) data, which allows remote attackers to bypass virus protection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c853-r8gf-rppm/GHSA-c853-r8gf-rppm.json b/advisories/unreviewed/2022/04/GHSA-c853-r8gf-rppm/GHSA-c853-r8gf-rppm.json index addaef605e6..4df3fe1cf43 100644 --- a/advisories/unreviewed/2022/04/GHSA-c853-r8gf-rppm/GHSA-c853-r8gf-rppm.json +++ b/advisories/unreviewed/2022/04/GHSA-c853-r8gf-rppm/GHSA-c853-r8gf-rppm.json @@ -7,12 +7,8 @@ "CVE-2003-1316" ], "details": "mod.php in eNdonesia 8.2 allows remote attackers to obtain sensitive information via a ' (quote) value in the lng parameter, which reveals the path in an error message. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ch3f-x93w-643v/GHSA-ch3f-x93w-643v.json b/advisories/unreviewed/2022/04/GHSA-ch3f-x93w-643v/GHSA-ch3f-x93w-643v.json index 35150c9d47f..4d1a70c916f 100644 --- a/advisories/unreviewed/2022/04/GHSA-ch3f-x93w-643v/GHSA-ch3f-x93w-643v.json +++ b/advisories/unreviewed/2022/04/GHSA-ch3f-x93w-643v/GHSA-ch3f-x93w-643v.json @@ -7,12 +7,8 @@ "CVE-2003-1303" ], "details": "Buffer overflow in the imap_fetch_overview function in the IMAP functionality (php_imap.c) in PHP before 4.3.3 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long e-mail address in a (1) To or (2) From header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cm4r-3xmv-vwh3/GHSA-cm4r-3xmv-vwh3.json b/advisories/unreviewed/2022/04/GHSA-cm4r-3xmv-vwh3/GHSA-cm4r-3xmv-vwh3.json index 54fb53a09af..c24eb0c9c39 100644 --- a/advisories/unreviewed/2022/04/GHSA-cm4r-3xmv-vwh3/GHSA-cm4r-3xmv-vwh3.json +++ b/advisories/unreviewed/2022/04/GHSA-cm4r-3xmv-vwh3/GHSA-cm4r-3xmv-vwh3.json @@ -7,12 +7,8 @@ "CVE-2003-1431" ], "details": "Buffer overflow in Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (crash) via a long host string in the Unreal URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-cmgv-q9jw-74mx/GHSA-cmgv-q9jw-74mx.json b/advisories/unreviewed/2022/04/GHSA-cmgv-q9jw-74mx/GHSA-cmgv-q9jw-74mx.json index 83c033c2b04..7208ab14093 100644 --- a/advisories/unreviewed/2022/04/GHSA-cmgv-q9jw-74mx/GHSA-cmgv-q9jw-74mx.json +++ b/advisories/unreviewed/2022/04/GHSA-cmgv-q9jw-74mx/GHSA-cmgv-q9jw-74mx.json @@ -7,12 +7,8 @@ "CVE-2003-1357" ], "details": "ProxyView has a default administrator password of Administrator for Embedded Windows NT, which allows remote attackers to gain access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cq5g-jq4c-qqp3/GHSA-cq5g-jq4c-qqp3.json b/advisories/unreviewed/2022/04/GHSA-cq5g-jq4c-qqp3/GHSA-cq5g-jq4c-qqp3.json index f563c330580..a506ee91c89 100644 --- a/advisories/unreviewed/2022/04/GHSA-cq5g-jq4c-qqp3/GHSA-cq5g-jq4c-qqp3.json +++ b/advisories/unreviewed/2022/04/GHSA-cq5g-jq4c-qqp3/GHSA-cq5g-jq4c-qqp3.json @@ -7,12 +7,8 @@ "CVE-2003-1360" ], "details": "Buffer overflow in the setupterm function of (1) lanadmin and (2) landiag programs of HP-UX 10.0 through 10.34 allows local users to execute arbitrary code via a long TERM environment variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-cv48-p55x-22xg/GHSA-cv48-p55x-22xg.json b/advisories/unreviewed/2022/04/GHSA-cv48-p55x-22xg/GHSA-cv48-p55x-22xg.json index 65068c9a1d7..59640e7642b 100644 --- a/advisories/unreviewed/2022/04/GHSA-cv48-p55x-22xg/GHSA-cv48-p55x-22xg.json +++ b/advisories/unreviewed/2022/04/GHSA-cv48-p55x-22xg/GHSA-cv48-p55x-22xg.json @@ -7,12 +7,8 @@ "CVE-2003-1388" ], "details": "Buffer overflow in Opera 7.02 Build 2668 allows remote attackers to crash Opera via a long HTTP request ending in a .ZIP extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-cv5m-wg8q-wv2m/GHSA-cv5m-wg8q-wv2m.json b/advisories/unreviewed/2022/04/GHSA-cv5m-wg8q-wv2m/GHSA-cv5m-wg8q-wv2m.json index fdf6e5eacd2..dbadfee70c7 100644 --- a/advisories/unreviewed/2022/04/GHSA-cv5m-wg8q-wv2m/GHSA-cv5m-wg8q-wv2m.json +++ b/advisories/unreviewed/2022/04/GHSA-cv5m-wg8q-wv2m/GHSA-cv5m-wg8q-wv2m.json @@ -7,12 +7,8 @@ "CVE-2003-1285" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Sambar Server before 6.0 beta 6 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) isapi/testisa.dll, (2) testcgi.exe, (3) environ.pl, (4) the query parameter to samples/search.dll, (5) the price parameter to mortgage.pl, (6) the query string in dumpenv.pl, (7) the query string to dumpenv.pl, and (8) the E-Mail field of the guestbook script (book.pl).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cw7c-35x2-c833/GHSA-cw7c-35x2-c833.json b/advisories/unreviewed/2022/04/GHSA-cw7c-35x2-c833/GHSA-cw7c-35x2-c833.json index dc8d31a43ae..1d932e7d67d 100644 --- a/advisories/unreviewed/2022/04/GHSA-cw7c-35x2-c833/GHSA-cw7c-35x2-c833.json +++ b/advisories/unreviewed/2022/04/GHSA-cw7c-35x2-c833/GHSA-cw7c-35x2-c833.json @@ -7,12 +7,8 @@ "CVE-2003-1313" ], "details": "Multiple PHP remote file inclusion vulnerabilities in EternalMart Mailing List Manager (EMLM) 1.32 allow remote attackers to execute arbitrary PHP code via a URL in (1) the emml_admin_path parameter to admin/auth.php or (2) the emml_path parameter to emml_email_func.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cwr8-3mh6-89cx/GHSA-cwr8-3mh6-89cx.json b/advisories/unreviewed/2022/04/GHSA-cwr8-3mh6-89cx/GHSA-cwr8-3mh6-89cx.json index 7a89dcf569b..289c1300c1b 100644 --- a/advisories/unreviewed/2022/04/GHSA-cwr8-3mh6-89cx/GHSA-cwr8-3mh6-89cx.json +++ b/advisories/unreviewed/2022/04/GHSA-cwr8-3mh6-89cx/GHSA-cwr8-3mh6-89cx.json @@ -7,12 +7,8 @@ "CVE-2003-1403" ], "details": "foo.php3 in DotBr 0.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpinfo function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-f3jf-vg7f-63fc/GHSA-f3jf-vg7f-63fc.json b/advisories/unreviewed/2022/04/GHSA-f3jf-vg7f-63fc/GHSA-f3jf-vg7f-63fc.json index a88d784eac0..27009a8e031 100644 --- a/advisories/unreviewed/2022/04/GHSA-f3jf-vg7f-63fc/GHSA-f3jf-vg7f-63fc.json +++ b/advisories/unreviewed/2022/04/GHSA-f3jf-vg7f-63fc/GHSA-f3jf-vg7f-63fc.json @@ -7,12 +7,8 @@ "CVE-2003-1427" ], "details": "Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows remote attackers to read arbitrary files, such as the netgear.cfg configuration file, via a hex-encoded (%2e%2e%2f) ../ (dot dot slash) in the port parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-f7p2-wh6x-gfmm/GHSA-f7p2-wh6x-gfmm.json b/advisories/unreviewed/2022/04/GHSA-f7p2-wh6x-gfmm/GHSA-f7p2-wh6x-gfmm.json index 5a1c35dec7d..ef8010b8a21 100644 --- a/advisories/unreviewed/2022/04/GHSA-f7p2-wh6x-gfmm/GHSA-f7p2-wh6x-gfmm.json +++ b/advisories/unreviewed/2022/04/GHSA-f7p2-wh6x-gfmm/GHSA-f7p2-wh6x-gfmm.json @@ -7,12 +7,8 @@ "CVE-2003-1372" ], "details": "Cross-site scripting (XSS) vulnerability in links.php script in myPHPNuke 1.8.8, and possibly earlier versions, allows remote attackers to inject arbitrary HTML and web script via the (1) ratenum or (2) query parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fh94-5622-c6w9/GHSA-fh94-5622-c6w9.json b/advisories/unreviewed/2022/04/GHSA-fh94-5622-c6w9/GHSA-fh94-5622-c6w9.json index 2a4a6441ae3..6ee9990b207 100644 --- a/advisories/unreviewed/2022/04/GHSA-fh94-5622-c6w9/GHSA-fh94-5622-c6w9.json +++ b/advisories/unreviewed/2022/04/GHSA-fh94-5622-c6w9/GHSA-fh94-5622-c6w9.json @@ -7,12 +7,8 @@ "CVE-2003-1330" ], "details": "Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom \"on strip unsuccessful\" hooks, which allows remote attackers to bypass e-mail attachment filtering policies via an attachment that MAILsweeper can detect but not remove.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fmmr-mxj7-qvpw/GHSA-fmmr-mxj7-qvpw.json b/advisories/unreviewed/2022/04/GHSA-fmmr-mxj7-qvpw/GHSA-fmmr-mxj7-qvpw.json index 60cdc50d3e6..ad1c7db1cc1 100644 --- a/advisories/unreviewed/2022/04/GHSA-fmmr-mxj7-qvpw/GHSA-fmmr-mxj7-qvpw.json +++ b/advisories/unreviewed/2022/04/GHSA-fmmr-mxj7-qvpw/GHSA-fmmr-mxj7-qvpw.json @@ -7,12 +7,8 @@ "CVE-2003-1440" ], "details": "SpamProbe 0.8a allows remote attackers to cause a denial of service (crash) via HTML e-mail with newline characters within an href tag, which is not properly handled by certain regular expressions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fp9g-8p62-5fqm/GHSA-fp9g-8p62-5fqm.json b/advisories/unreviewed/2022/04/GHSA-fp9g-8p62-5fqm/GHSA-fp9g-8p62-5fqm.json index 32867cfacf7..56301d0946f 100644 --- a/advisories/unreviewed/2022/04/GHSA-fp9g-8p62-5fqm/GHSA-fp9g-8p62-5fqm.json +++ b/advisories/unreviewed/2022/04/GHSA-fp9g-8p62-5fqm/GHSA-fp9g-8p62-5fqm.json @@ -7,12 +7,8 @@ "CVE-2003-1396" ], "details": "Heap-based buffer overflow in Opera 6.05 through 7.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a filename with a long extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fpvx-p6fm-93fg/GHSA-fpvx-p6fm-93fg.json b/advisories/unreviewed/2022/04/GHSA-fpvx-p6fm-93fg/GHSA-fpvx-p6fm-93fg.json index f2d83b48d51..cc1cf5b9d15 100644 --- a/advisories/unreviewed/2022/04/GHSA-fpvx-p6fm-93fg/GHSA-fpvx-p6fm-93fg.json +++ b/advisories/unreviewed/2022/04/GHSA-fpvx-p6fm-93fg/GHSA-fpvx-p6fm-93fg.json @@ -7,12 +7,8 @@ "CVE-2003-1444" ], "details": "Kaspersky Antivirus (KAV) 4.0.9.0 allows local users to cause a denial of service (CPU consumption or crash) and prevent malicious code from being detected via a file with a long pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fqg8-8594-3gf8/GHSA-fqg8-8594-3gf8.json b/advisories/unreviewed/2022/04/GHSA-fqg8-8594-3gf8/GHSA-fqg8-8594-3gf8.json index 01ee63b13a5..a79d1c045e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-fqg8-8594-3gf8/GHSA-fqg8-8594-3gf8.json +++ b/advisories/unreviewed/2022/04/GHSA-fqg8-8594-3gf8/GHSA-fqg8-8594-3gf8.json @@ -7,12 +7,8 @@ "CVE-2003-1367" ], "details": "The which_access variable for Majordomo 2.0 through 1.94.4, and possibly earlier versions, is set to \"open\" by default, which allows remote attackers to identify the email addresses of members of mailing lists via a \"which\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fqm5-3pc9-5x8g/GHSA-fqm5-3pc9-5x8g.json b/advisories/unreviewed/2022/04/GHSA-fqm5-3pc9-5x8g/GHSA-fqm5-3pc9-5x8g.json index fe24eaf9130..db1a108b48e 100644 --- a/advisories/unreviewed/2022/04/GHSA-fqm5-3pc9-5x8g/GHSA-fqm5-3pc9-5x8g.json +++ b/advisories/unreviewed/2022/04/GHSA-fqm5-3pc9-5x8g/GHSA-fqm5-3pc9-5x8g.json @@ -7,12 +7,8 @@ "CVE-2003-1349" ], "details": "Directory traversal vulnerability in NITE ftp-server (NiteServer) 1.83 allows remote attackers to list arbitrary directories via a \"\\..\" (backslash dot dot) in the CD (CWD) command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fr78-grw8-43p6/GHSA-fr78-grw8-43p6.json b/advisories/unreviewed/2022/04/GHSA-fr78-grw8-43p6/GHSA-fr78-grw8-43p6.json index bd93fbef75b..95ffb84d498 100644 --- a/advisories/unreviewed/2022/04/GHSA-fr78-grw8-43p6/GHSA-fr78-grw8-43p6.json +++ b/advisories/unreviewed/2022/04/GHSA-fr78-grw8-43p6/GHSA-fr78-grw8-43p6.json @@ -7,12 +7,8 @@ "CVE-2003-1358" ], "details": "rs.F300 for HP-UX 10.0 through 11.22 uses the PATH environment variable to find and execute programs such as rm while operating at raised privileges, which allows local users to gain privileges by modifying the path to point to a malicious rm program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fx79-25g4-6rfm/GHSA-fx79-25g4-6rfm.json b/advisories/unreviewed/2022/04/GHSA-fx79-25g4-6rfm/GHSA-fx79-25g4-6rfm.json index 01bfe629668..41cc2b2b86f 100644 --- a/advisories/unreviewed/2022/04/GHSA-fx79-25g4-6rfm/GHSA-fx79-25g4-6rfm.json +++ b/advisories/unreviewed/2022/04/GHSA-fx79-25g4-6rfm/GHSA-fx79-25g4-6rfm.json @@ -7,12 +7,8 @@ "CVE-2003-1341" ], "details": "The default installation of Trend Micro OfficeScan 3.0 through 3.54 and 5.x allows remote attackers to bypass authentication from cgiChkMasterPasswd.exe and gain access to the web management console via a direct request to cgiMasterPwd.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g4xf-44vp-f7mq/GHSA-g4xf-44vp-f7mq.json b/advisories/unreviewed/2022/04/GHSA-g4xf-44vp-f7mq/GHSA-g4xf-44vp-f7mq.json index ccce949ef81..5f3f1a337a7 100644 --- a/advisories/unreviewed/2022/04/GHSA-g4xf-44vp-f7mq/GHSA-g4xf-44vp-f7mq.json +++ b/advisories/unreviewed/2022/04/GHSA-g4xf-44vp-f7mq/GHSA-g4xf-44vp-f7mq.json @@ -7,12 +7,8 @@ "CVE-2003-1426" ], "details": "Openwebmail in cPanel 5.0, when run using suid Perl, adds the directory in the SCRIPT_FILENAME environment variable to Perl's @INC include array, which allows local users to execute arbitrary code by modifying SCRIPT_FILENAME to reference a directory containing a malicious openwebmail-shared.pl executable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g5ww-8j5m-f3wq/GHSA-g5ww-8j5m-f3wq.json b/advisories/unreviewed/2022/04/GHSA-g5ww-8j5m-f3wq/GHSA-g5ww-8j5m-f3wq.json index 29e87c398a1..c664af07dda 100644 --- a/advisories/unreviewed/2022/04/GHSA-g5ww-8j5m-f3wq/GHSA-g5ww-8j5m-f3wq.json +++ b/advisories/unreviewed/2022/04/GHSA-g5ww-8j5m-f3wq/GHSA-g5ww-8j5m-f3wq.json @@ -7,12 +7,8 @@ "CVE-2003-1398" ], "details": "Cisco IOS 12.0 through 12.2, when IP routing is disabled, accepts false ICMP redirect messages, which allows remote attackers to cause a denial of service (network routing modification).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-g92c-j3f9-j6gh/GHSA-g92c-j3f9-j6gh.json b/advisories/unreviewed/2022/04/GHSA-g92c-j3f9-j6gh/GHSA-g92c-j3f9-j6gh.json index b888f646e02..93c895142fc 100644 --- a/advisories/unreviewed/2022/04/GHSA-g92c-j3f9-j6gh/GHSA-g92c-j3f9-j6gh.json +++ b/advisories/unreviewed/2022/04/GHSA-g92c-j3f9-j6gh/GHSA-g92c-j3f9-j6gh.json @@ -7,12 +7,8 @@ "CVE-2003-1332" ], "details": "Stack-based buffer overflow in the reply_nttrans function in Samba 2.2.7a and earlier allows remote attackers to execute arbitrary code via a crafted request, a different vulnerability than CVE-2003-0201.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gh35-vjg8-m9xj/GHSA-gh35-vjg8-m9xj.json b/advisories/unreviewed/2022/04/GHSA-gh35-vjg8-m9xj/GHSA-gh35-vjg8-m9xj.json index 59fd5c4cfdf..be684b162af 100644 --- a/advisories/unreviewed/2022/04/GHSA-gh35-vjg8-m9xj/GHSA-gh35-vjg8-m9xj.json +++ b/advisories/unreviewed/2022/04/GHSA-gh35-vjg8-m9xj/GHSA-gh35-vjg8-m9xj.json @@ -7,12 +7,8 @@ "CVE-2003-1340" ], "details": "Multiple SQL injection vulnerabilities in Francisco Burzi PHP-Nuke 5.6 and 6.5 allow remote authenticated users to execute arbitrary SQL commands via (1) a uid (user) cookie to modules.php; and allow remote attackers to execute arbitrary SQL commands via an aid (admin) cookie to the Web_Links module in a (2) viewlink, (3) MostPopular, or (4) NewLinksDate action, different vectors than CVE-2003-0279.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-ghf5-97qh-xr8c/GHSA-ghf5-97qh-xr8c.json b/advisories/unreviewed/2022/04/GHSA-ghf5-97qh-xr8c/GHSA-ghf5-97qh-xr8c.json index 02d05dfc66e..67c25968c86 100644 --- a/advisories/unreviewed/2022/04/GHSA-ghf5-97qh-xr8c/GHSA-ghf5-97qh-xr8c.json +++ b/advisories/unreviewed/2022/04/GHSA-ghf5-97qh-xr8c/GHSA-ghf5-97qh-xr8c.json @@ -7,12 +7,8 @@ "CVE-2003-1304" ], "details": "EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive database information via a direct request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ghwm-jm66-72j7/GHSA-ghwm-jm66-72j7.json b/advisories/unreviewed/2022/04/GHSA-ghwm-jm66-72j7/GHSA-ghwm-jm66-72j7.json index 58a30916c75..f0476cb04ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-ghwm-jm66-72j7/GHSA-ghwm-jm66-72j7.json +++ b/advisories/unreviewed/2022/04/GHSA-ghwm-jm66-72j7/GHSA-ghwm-jm66-72j7.json @@ -7,12 +7,8 @@ "CVE-2003-1381" ], "details": "Format string vulnerability in AMX 0.9.2 and earlier, a plugin for Valve Software's Half-Life Server, allows remote attackers to execute arbitrary commands via format string specifiers in the amx_say command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-gj2q-93q4-5fjx/GHSA-gj2q-93q4-5fjx.json b/advisories/unreviewed/2022/04/GHSA-gj2q-93q4-5fjx/GHSA-gj2q-93q4-5fjx.json index 7f39dd3b56f..6f89eb75458 100644 --- a/advisories/unreviewed/2022/04/GHSA-gj2q-93q4-5fjx/GHSA-gj2q-93q4-5fjx.json +++ b/advisories/unreviewed/2022/04/GHSA-gj2q-93q4-5fjx/GHSA-gj2q-93q4-5fjx.json @@ -7,12 +7,8 @@ "CVE-2003-1428" ], "details": "Gallery 1.3.3 creates directories with insecure permissions, which allows local users to read, modify, or delete photos.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gpmc-5q92-m4gq/GHSA-gpmc-5q92-m4gq.json b/advisories/unreviewed/2022/04/GHSA-gpmc-5q92-m4gq/GHSA-gpmc-5q92-m4gq.json index 6a0a18d383b..4fea4bf0caf 100644 --- a/advisories/unreviewed/2022/04/GHSA-gpmc-5q92-m4gq/GHSA-gpmc-5q92-m4gq.json +++ b/advisories/unreviewed/2022/04/GHSA-gpmc-5q92-m4gq/GHSA-gpmc-5q92-m4gq.json @@ -7,12 +7,8 @@ "CVE-2003-1412" ], "details": "PHP remote file inclusion vulnerability in index.php for GONiCUS System Administrator (GOsa) 1.0 allows remote attackers to execute arbitrary PHP code via the plugin parameter to (1) 3fax/1blocklists/index.php; (2) 6departamentadmin/index.php, (3) 5terminals/index.php, (4) 4mailinglists/index.php, (5) 3departaments/index.php, and (6) 2groupd/index.php in 2administration/; or (7) the base parameter to include/help.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-h457-7gvf-jx74/GHSA-h457-7gvf-jx74.json b/advisories/unreviewed/2022/04/GHSA-h457-7gvf-jx74/GHSA-h457-7gvf-jx74.json index b3b71696844..40f10c75d04 100644 --- a/advisories/unreviewed/2022/04/GHSA-h457-7gvf-jx74/GHSA-h457-7gvf-jx74.json +++ b/advisories/unreviewed/2022/04/GHSA-h457-7gvf-jx74/GHSA-h457-7gvf-jx74.json @@ -7,12 +7,8 @@ "CVE-2003-1432" ], "details": "Epic Games Unreal Engine 226f through 436 allows remote attackers to cause a denial of service (CPU consumption or crash) and possibly execute arbitrary code via (1) a packet with a negative size value, which is treated as a large positive number during memory allocation, or (2) a negative size value in a package file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-h83c-7v84-94w9/GHSA-h83c-7v84-94w9.json b/advisories/unreviewed/2022/04/GHSA-h83c-7v84-94w9/GHSA-h83c-7v84-94w9.json index 5f6e1a6c60b..a01d5c835c0 100644 --- a/advisories/unreviewed/2022/04/GHSA-h83c-7v84-94w9/GHSA-h83c-7v84-94w9.json +++ b/advisories/unreviewed/2022/04/GHSA-h83c-7v84-94w9/GHSA-h83c-7v84-94w9.json @@ -7,12 +7,8 @@ "CVE-2003-1377" ], "details": "Buffer overflow in the reverse DNS lookup of Smart IRC Daemon (SIRCD) 0.4.0 and 0.4.4 allows remote attackers to execute arbitrary code via a client with a long hostname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-h8jc-hm24-8hqq/GHSA-h8jc-hm24-8hqq.json b/advisories/unreviewed/2022/04/GHSA-h8jc-hm24-8hqq/GHSA-h8jc-hm24-8hqq.json index b6e1ad5ad80..0583338075a 100644 --- a/advisories/unreviewed/2022/04/GHSA-h8jc-hm24-8hqq/GHSA-h8jc-hm24-8hqq.json +++ b/advisories/unreviewed/2022/04/GHSA-h8jc-hm24-8hqq/GHSA-h8jc-hm24-8hqq.json @@ -7,12 +7,8 @@ "CVE-2003-1382" ], "details": "Buffer overflow in ISMail 1.4.3 and earlier allow remote attackers to execute arbitrary code via long domain names in (1) MAIL FROM or (2) RCPT TO fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-hcw3-qmmj-pxw7/GHSA-hcw3-qmmj-pxw7.json b/advisories/unreviewed/2022/04/GHSA-hcw3-qmmj-pxw7/GHSA-hcw3-qmmj-pxw7.json index ea9986b48e9..af71c28ed99 100644 --- a/advisories/unreviewed/2022/04/GHSA-hcw3-qmmj-pxw7/GHSA-hcw3-qmmj-pxw7.json +++ b/advisories/unreviewed/2022/04/GHSA-hcw3-qmmj-pxw7/GHSA-hcw3-qmmj-pxw7.json @@ -7,12 +7,8 @@ "CVE-2003-1371" ], "details": "Nuked-Klan 1.3b, and possibly earlier versions, allows remote attackers to obtain sensitive server information via an op parameter set to phpinfo for the (1) Team, (2) News, or (3) Liens modules.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-hm72-hh47-rvg2/GHSA-hm72-hh47-rvg2.json b/advisories/unreviewed/2022/04/GHSA-hm72-hh47-rvg2/GHSA-hm72-hh47-rvg2.json index bacf2920a8b..1ed78ec776d 100644 --- a/advisories/unreviewed/2022/04/GHSA-hm72-hh47-rvg2/GHSA-hm72-hh47-rvg2.json +++ b/advisories/unreviewed/2022/04/GHSA-hm72-hh47-rvg2/GHSA-hm72-hh47-rvg2.json @@ -7,12 +7,8 @@ "CVE-2003-1383" ], "details": "WEB-ERP 0.1.4 and earlier allows remote attackers to obtain sensitive information via an HTTP request for the logicworks.ini file, which contains the MySQL database username and password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hp28-h2jq-hvjw/GHSA-hp28-h2jq-hvjw.json b/advisories/unreviewed/2022/04/GHSA-hp28-h2jq-hvjw/GHSA-hp28-h2jq-hvjw.json index 056418d86c2..60b5b8aa5a0 100644 --- a/advisories/unreviewed/2022/04/GHSA-hp28-h2jq-hvjw/GHSA-hp28-h2jq-hvjw.json +++ b/advisories/unreviewed/2022/04/GHSA-hp28-h2jq-hvjw/GHSA-hp28-h2jq-hvjw.json @@ -7,12 +7,8 @@ "CVE-2003-1434" ], "details": "login_ldap 3.1 and 3.2 allows remote attackers to initiate unauthenticated bind requests if (1) bind_anon_dn is on, which allows a bind with no password provided, (2) bind_anon_cred is on, which allows a bind with no DN, or (3) bind_anon is on, which allows a bind with no DN or password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-j383-c8g2-grr5/GHSA-j383-c8g2-grr5.json b/advisories/unreviewed/2022/04/GHSA-j383-c8g2-grr5/GHSA-j383-c8g2-grr5.json index d4a85567929..134f42ec755 100644 --- a/advisories/unreviewed/2022/04/GHSA-j383-c8g2-grr5/GHSA-j383-c8g2-grr5.json +++ b/advisories/unreviewed/2022/04/GHSA-j383-c8g2-grr5/GHSA-j383-c8g2-grr5.json @@ -7,12 +7,8 @@ "CVE-2003-1421" ], "details": "Unspecified vulnerability in mod_mysql_logger shared object in SuckBot 0.006 allows remote attackers to cause a denial of service (seg fault) via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j86h-qxmj-2v4h/GHSA-j86h-qxmj-2v4h.json b/advisories/unreviewed/2022/04/GHSA-j86h-qxmj-2v4h/GHSA-j86h-qxmj-2v4h.json index 6734c08f5e2..6d4bff709be 100644 --- a/advisories/unreviewed/2022/04/GHSA-j86h-qxmj-2v4h/GHSA-j86h-qxmj-2v4h.json +++ b/advisories/unreviewed/2022/04/GHSA-j86h-qxmj-2v4h/GHSA-j86h-qxmj-2v4h.json @@ -7,12 +7,8 @@ "CVE-2003-1362" ], "details": "Bastille B.02.00.00 of HP-UX 11.00 and 11.11 does not properly configure the (1) NOVRFY and (2) NOEXPN options in the sendmail.cf file, which could allow remote attackers to verify the existence of system users and expand defined sendmail aliases.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j8jj-4m9f-87xj/GHSA-j8jj-4m9f-87xj.json b/advisories/unreviewed/2022/04/GHSA-j8jj-4m9f-87xj/GHSA-j8jj-4m9f-87xj.json index a8972817c1b..dcaa81f8788 100644 --- a/advisories/unreviewed/2022/04/GHSA-j8jj-4m9f-87xj/GHSA-j8jj-4m9f-87xj.json +++ b/advisories/unreviewed/2022/04/GHSA-j8jj-4m9f-87xj/GHSA-j8jj-4m9f-87xj.json @@ -7,12 +7,8 @@ "CVE-2003-1298" ], "details": "Multiple directory traversal vulnerabilities in siteman.php3 in AnyPortal(php) 12 MAY 00 allow remote attackers to (1) create, (2) delete, (3) save, and (4) upload files by navigating to the root directory and entering a filename beginning with \"./..\" (dot slash dot dot).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j9jf-v6vm-xv8j/GHSA-j9jf-v6vm-xv8j.json b/advisories/unreviewed/2022/04/GHSA-j9jf-v6vm-xv8j/GHSA-j9jf-v6vm-xv8j.json index 2e8a55061cf..0294c598ff2 100644 --- a/advisories/unreviewed/2022/04/GHSA-j9jf-v6vm-xv8j/GHSA-j9jf-v6vm-xv8j.json +++ b/advisories/unreviewed/2022/04/GHSA-j9jf-v6vm-xv8j/GHSA-j9jf-v6vm-xv8j.json @@ -7,12 +7,8 @@ "CVE-2003-1344" ], "details": "Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords, and other sensitive information via a URL request for getservers.exe with the action parameter set to \"selects1\", which returns log files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j9xh-275w-pxxw/GHSA-j9xh-275w-pxxw.json b/advisories/unreviewed/2022/04/GHSA-j9xh-275w-pxxw/GHSA-j9xh-275w-pxxw.json index d10cd0bd881..860e1ee4c16 100644 --- a/advisories/unreviewed/2022/04/GHSA-j9xh-275w-pxxw/GHSA-j9xh-275w-pxxw.json +++ b/advisories/unreviewed/2022/04/GHSA-j9xh-275w-pxxw/GHSA-j9xh-275w-pxxw.json @@ -7,12 +7,8 @@ "CVE-2003-1338" ], "details": "CRLF injection vulnerability in Aprelium Abyss Web Server 1.1.2 and earlier allows remote attackers to inject arbitrary HTTP headers and possibly conduct HTTP Response Splitting attacks via CRLF sequences in the Location header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jrmh-qf4p-w726/GHSA-jrmh-qf4p-w726.json b/advisories/unreviewed/2022/04/GHSA-jrmh-qf4p-w726/GHSA-jrmh-qf4p-w726.json index 3489f029d61..d61e33377de 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrmh-qf4p-w726/GHSA-jrmh-qf4p-w726.json +++ b/advisories/unreviewed/2022/04/GHSA-jrmh-qf4p-w726/GHSA-jrmh-qf4p-w726.json @@ -7,12 +7,8 @@ "CVE-2003-1302" ], "details": "The IMAP functionality in PHP before 4.3.1 allows remote attackers to cause a denial of service via an e-mail message with a (1) To or (2) From header with an address that contains a large number of \"\\\" (backslash) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jv3w-8m4c-qjj2/GHSA-jv3w-8m4c-qjj2.json b/advisories/unreviewed/2022/04/GHSA-jv3w-8m4c-qjj2/GHSA-jv3w-8m4c-qjj2.json index 3dacb5bfae6..3a857938f2d 100644 --- a/advisories/unreviewed/2022/04/GHSA-jv3w-8m4c-qjj2/GHSA-jv3w-8m4c-qjj2.json +++ b/advisories/unreviewed/2022/04/GHSA-jv3w-8m4c-qjj2/GHSA-jv3w-8m4c-qjj2.json @@ -7,12 +7,8 @@ "CVE-2003-1326" ], "details": "Microsoft Internet Explorer 5.5 and 6.0 allows remote attackers to bypass the cross-domain security model to run malicious script or arbitrary programs via dialog boxes, aka \"Improper Cross Domain Security Validation with dialog box.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jv4m-wm77-j9vv/GHSA-jv4m-wm77-j9vv.json b/advisories/unreviewed/2022/04/GHSA-jv4m-wm77-j9vv/GHSA-jv4m-wm77-j9vv.json index 45971fb800b..3ecad201ad6 100644 --- a/advisories/unreviewed/2022/04/GHSA-jv4m-wm77-j9vv/GHSA-jv4m-wm77-j9vv.json +++ b/advisories/unreviewed/2022/04/GHSA-jv4m-wm77-j9vv/GHSA-jv4m-wm77-j9vv.json @@ -7,12 +7,8 @@ "CVE-2003-1355" ], "details": "Buffer overflow in the remote console (rcon) in Battlefield 1942 1.2 and 1.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long user name and password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-m298-p45c-x364/GHSA-m298-p45c-x364.json b/advisories/unreviewed/2022/04/GHSA-m298-p45c-x364/GHSA-m298-p45c-x364.json index 3de7bb0420d..11f488f9cbe 100644 --- a/advisories/unreviewed/2022/04/GHSA-m298-p45c-x364/GHSA-m298-p45c-x364.json +++ b/advisories/unreviewed/2022/04/GHSA-m298-p45c-x364/GHSA-m298-p45c-x364.json @@ -7,12 +7,8 @@ "CVE-2003-1458" ], "details": "SQL injection vulnerability in Profile.php in ttCMS 2.2 and ttForum allows remote attackers to execute arbitrary SQL commands via the member name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-m2jc-49g8-v2f9/GHSA-m2jc-49g8-v2f9.json b/advisories/unreviewed/2022/04/GHSA-m2jc-49g8-v2f9/GHSA-m2jc-49g8-v2f9.json index 43899005594..a62d7dfb140 100644 --- a/advisories/unreviewed/2022/04/GHSA-m2jc-49g8-v2f9/GHSA-m2jc-49g8-v2f9.json +++ b/advisories/unreviewed/2022/04/GHSA-m2jc-49g8-v2f9/GHSA-m2jc-49g8-v2f9.json @@ -7,12 +7,8 @@ "CVE-2003-1376" ], "details": "WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m5m3-q47w-gjf4/GHSA-m5m3-q47w-gjf4.json b/advisories/unreviewed/2022/04/GHSA-m5m3-q47w-gjf4/GHSA-m5m3-q47w-gjf4.json index 8c6acbdd4b0..0d333352c01 100644 --- a/advisories/unreviewed/2022/04/GHSA-m5m3-q47w-gjf4/GHSA-m5m3-q47w-gjf4.json +++ b/advisories/unreviewed/2022/04/GHSA-m5m3-q47w-gjf4/GHSA-m5m3-q47w-gjf4.json @@ -7,12 +7,8 @@ "CVE-2003-1423" ], "details": "Petitforum stores the liste.txt data file under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as e-mail addresses and encrypted passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m683-5cw9-vw4j/GHSA-m683-5cw9-vw4j.json b/advisories/unreviewed/2022/04/GHSA-m683-5cw9-vw4j/GHSA-m683-5cw9-vw4j.json index 81cb9a00528..c6296f982f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-m683-5cw9-vw4j/GHSA-m683-5cw9-vw4j.json +++ b/advisories/unreviewed/2022/04/GHSA-m683-5cw9-vw4j/GHSA-m683-5cw9-vw4j.json @@ -7,12 +7,8 @@ "CVE-2003-1417" ], "details": "nCipher Support Software 6.00, when using generatekey KeySafe to import keys, does not delete the temporary copies of the key, which may allow local users to gain access to the key by reading the (1) key.pem or (2) key.der files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m7h7-mfr3-qw5x/GHSA-m7h7-mfr3-qw5x.json b/advisories/unreviewed/2022/04/GHSA-m7h7-mfr3-qw5x/GHSA-m7h7-mfr3-qw5x.json index 6bfa7380c30..34c8b082b54 100644 --- a/advisories/unreviewed/2022/04/GHSA-m7h7-mfr3-qw5x/GHSA-m7h7-mfr3-qw5x.json +++ b/advisories/unreviewed/2022/04/GHSA-m7h7-mfr3-qw5x/GHSA-m7h7-mfr3-qw5x.json @@ -7,12 +7,8 @@ "CVE-2003-1325" ], "details": "The SV_CheckForDuplicateNames function in Valve Software Half-Life CSTRIKE Dedicated Server 1.1.1.0 and earlier allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) via a certain connection string to UDP port 27015 that represents \"absence of player informations,\" a related issue to CVE-2006-0734.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m87c-4frp-hf77/GHSA-m87c-4frp-hf77.json b/advisories/unreviewed/2022/04/GHSA-m87c-4frp-hf77/GHSA-m87c-4frp-hf77.json index af6f2e15fdd..28b82be14af 100644 --- a/advisories/unreviewed/2022/04/GHSA-m87c-4frp-hf77/GHSA-m87c-4frp-hf77.json +++ b/advisories/unreviewed/2022/04/GHSA-m87c-4frp-hf77/GHSA-m87c-4frp-hf77.json @@ -7,12 +7,8 @@ "CVE-2003-1311" ], "details": "siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder does not ensure that the TARGET parameter names a valid redirection resource, which allows remote attackers to construct a URL that might trick users into visiting an arbitrary web site referenced by this parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mfvg-2vxv-fr75/GHSA-mfvg-2vxv-fr75.json b/advisories/unreviewed/2022/04/GHSA-mfvg-2vxv-fr75/GHSA-mfvg-2vxv-fr75.json index b4d26dafa2f..7c642bd85ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-mfvg-2vxv-fr75/GHSA-mfvg-2vxv-fr75.json +++ b/advisories/unreviewed/2022/04/GHSA-mfvg-2vxv-fr75/GHSA-mfvg-2vxv-fr75.json @@ -7,12 +7,8 @@ "CVE-2003-1456" ], "details": "Album.pl 6.1 allows remote attackers to execute arbitrary commands, when an alternative configuration file is used, via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mgwp-rqvp-7867/GHSA-mgwp-rqvp-7867.json b/advisories/unreviewed/2022/04/GHSA-mgwp-rqvp-7867/GHSA-mgwp-rqvp-7867.json index 6fd8065251a..ccc024f9a5b 100644 --- a/advisories/unreviewed/2022/04/GHSA-mgwp-rqvp-7867/GHSA-mgwp-rqvp-7867.json +++ b/advisories/unreviewed/2022/04/GHSA-mgwp-rqvp-7867/GHSA-mgwp-rqvp-7867.json @@ -7,12 +7,8 @@ "CVE-2003-1347" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Geeklog 1.3.7 allow remote attackers to inject arbitrary web script or HTML via the (1) cid parameter to comment.php, (2) uid parameter to profiles.php, (3) uid to users.php, and (4) homepage field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mrjx-cpjh-p346/GHSA-mrjx-cpjh-p346.json b/advisories/unreviewed/2022/04/GHSA-mrjx-cpjh-p346/GHSA-mrjx-cpjh-p346.json index 3ec24f8ba92..7e3b6b138f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-mrjx-cpjh-p346/GHSA-mrjx-cpjh-p346.json +++ b/advisories/unreviewed/2022/04/GHSA-mrjx-cpjh-p346/GHSA-mrjx-cpjh-p346.json @@ -7,12 +7,8 @@ "CVE-2003-1295" ], "details": "Unspecified vulnerability in xscreensaver 4.12, and possibly other versions, allows attackers to cause xscreensaver to crash via unspecified vectors \"while verifying the user-password.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mxqp-2426-6mxr/GHSA-mxqp-2426-6mxr.json b/advisories/unreviewed/2022/04/GHSA-mxqp-2426-6mxr/GHSA-mxqp-2426-6mxr.json index a6fcae20fec..c9c2d30c792 100644 --- a/advisories/unreviewed/2022/04/GHSA-mxqp-2426-6mxr/GHSA-mxqp-2426-6mxr.json +++ b/advisories/unreviewed/2022/04/GHSA-mxqp-2426-6mxr/GHSA-mxqp-2426-6mxr.json @@ -7,12 +7,8 @@ "CVE-2003-1387" ], "details": "Buffer overflow in Opera 6.05 and 6.06, and possibly other versions, allows remote attackers to execute arbitrary code via a URL with a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-p383-vg63-ppj8/GHSA-p383-vg63-ppj8.json b/advisories/unreviewed/2022/04/GHSA-p383-vg63-ppj8/GHSA-p383-vg63-ppj8.json index a190154d3a3..2c265f525cc 100644 --- a/advisories/unreviewed/2022/04/GHSA-p383-vg63-ppj8/GHSA-p383-vg63-ppj8.json +++ b/advisories/unreviewed/2022/04/GHSA-p383-vg63-ppj8/GHSA-p383-vg63-ppj8.json @@ -7,12 +7,8 @@ "CVE-2003-1335" ], "details": "Directory traversal vulnerability in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) before 1.2.5 allows remote attackers to download files from locations above the snif directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-p4j5-w3r3-5p3h/GHSA-p4j5-w3r3-5p3h.json b/advisories/unreviewed/2022/04/GHSA-p4j5-w3r3-5p3h/GHSA-p4j5-w3r3-5p3h.json index 79bb4213592..ba065430982 100644 --- a/advisories/unreviewed/2022/04/GHSA-p4j5-w3r3-5p3h/GHSA-p4j5-w3r3-5p3h.json +++ b/advisories/unreviewed/2022/04/GHSA-p4j5-w3r3-5p3h/GHSA-p4j5-w3r3-5p3h.json @@ -7,12 +7,8 @@ "CVE-2003-1450" ], "details": "BitchX 75p3 and 1.0c16 through 1.0c20cvs allows remote attackers to cause a denial of service (segmentation fault) via a malformed RPL_NAMREPLY numeric 353 message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-p598-2cg3-8qjf/GHSA-p598-2cg3-8qjf.json b/advisories/unreviewed/2022/04/GHSA-p598-2cg3-8qjf/GHSA-p598-2cg3-8qjf.json index e782e91f6dc..2de075191d1 100644 --- a/advisories/unreviewed/2022/04/GHSA-p598-2cg3-8qjf/GHSA-p598-2cg3-8qjf.json +++ b/advisories/unreviewed/2022/04/GHSA-p598-2cg3-8qjf/GHSA-p598-2cg3-8qjf.json @@ -7,12 +7,8 @@ "CVE-2003-1328" ], "details": "The showHelp() function in Microsoft Internet Explorer 5.01, 5.5, and 6.0 supports certain types of pluggable protocols that allow remote attackers to bypass the cross-domain security model and execute arbitrary code, aka \"Improper Cross Domain Security Validation with ShowHelp functionality.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6f6-mqx8-c8mp/GHSA-p6f6-mqx8-c8mp.json b/advisories/unreviewed/2022/04/GHSA-p6f6-mqx8-c8mp/GHSA-p6f6-mqx8-c8mp.json index 47dca2b2a58..9fc46062585 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6f6-mqx8-c8mp/GHSA-p6f6-mqx8-c8mp.json +++ b/advisories/unreviewed/2022/04/GHSA-p6f6-mqx8-c8mp/GHSA-p6f6-mqx8-c8mp.json @@ -7,12 +7,8 @@ "CVE-2003-1386" ], "details": "AXIS 2400 Video Server 2.00 through 2.33 allows remote attackers to obtain sensitive information via an HTTP request to /support/messages, which displays the server's /var/log/messages file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p7qv-6mfc-mw6g/GHSA-p7qv-6mfc-mw6g.json b/advisories/unreviewed/2022/04/GHSA-p7qv-6mfc-mw6g/GHSA-p7qv-6mfc-mw6g.json index aa23dcebedf..5ae303c51d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-p7qv-6mfc-mw6g/GHSA-p7qv-6mfc-mw6g.json +++ b/advisories/unreviewed/2022/04/GHSA-p7qv-6mfc-mw6g/GHSA-p7qv-6mfc-mw6g.json @@ -7,12 +7,8 @@ "CVE-2003-1320" ], "details": "SonicWALL firmware before 6.4.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted Internet Key Exchange (IKE) response packets, possibly including (1) a large Security Parameter Index (SPI) field, (2) a large number of payloads, or (3) a long payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p8qj-wvcq-4w5f/GHSA-p8qj-wvcq-4w5f.json b/advisories/unreviewed/2022/04/GHSA-p8qj-wvcq-4w5f/GHSA-p8qj-wvcq-4w5f.json index 9930ed37453..4af4fa49b94 100644 --- a/advisories/unreviewed/2022/04/GHSA-p8qj-wvcq-4w5f/GHSA-p8qj-wvcq-4w5f.json +++ b/advisories/unreviewed/2022/04/GHSA-p8qj-wvcq-4w5f/GHSA-p8qj-wvcq-4w5f.json @@ -7,12 +7,8 @@ "CVE-2003-1368" ], "details": "Buffer overflow in the 32bit FTP client 9.49.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-p985-7qhp-pf5j/GHSA-p985-7qhp-pf5j.json b/advisories/unreviewed/2022/04/GHSA-p985-7qhp-pf5j/GHSA-p985-7qhp-pf5j.json index 094bb793e82..c93942f7022 100644 --- a/advisories/unreviewed/2022/04/GHSA-p985-7qhp-pf5j/GHSA-p985-7qhp-pf5j.json +++ b/advisories/unreviewed/2022/04/GHSA-p985-7qhp-pf5j/GHSA-p985-7qhp-pf5j.json @@ -7,12 +7,8 @@ "CVE-2003-1425" ], "details": "guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-pc7m-pc6h-rfx3/GHSA-pc7m-pc6h-rfx3.json b/advisories/unreviewed/2022/04/GHSA-pc7m-pc6h-rfx3/GHSA-pc7m-pc6h-rfx3.json index bf6d72c8bf2..405f45197c1 100644 --- a/advisories/unreviewed/2022/04/GHSA-pc7m-pc6h-rfx3/GHSA-pc7m-pc6h-rfx3.json +++ b/advisories/unreviewed/2022/04/GHSA-pc7m-pc6h-rfx3/GHSA-pc7m-pc6h-rfx3.json @@ -7,12 +7,8 @@ "CVE-2003-1318" ], "details": "Twilight Webserver 1.3.3.0 allows remote attackers to cause a denial of service (application crash) via a GET request for a long URI, a different vulnerability than CVE-2004-2376.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pcrc-g73f-8fw4/GHSA-pcrc-g73f-8fw4.json b/advisories/unreviewed/2022/04/GHSA-pcrc-g73f-8fw4/GHSA-pcrc-g73f-8fw4.json index 20aad21a7e9..57ab8d7e11c 100644 --- a/advisories/unreviewed/2022/04/GHSA-pcrc-g73f-8fw4/GHSA-pcrc-g73f-8fw4.json +++ b/advisories/unreviewed/2022/04/GHSA-pcrc-g73f-8fw4/GHSA-pcrc-g73f-8fw4.json @@ -7,12 +7,8 @@ "CVE-2003-1363" ], "details": "The remote web management interface of Aprelium Technologies Abyss Web Server 1.1.2 and earlier does not log connection attempts to the web management port (9999), which allows remote attackers to mount brute force attacks on the administration console without detection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q3j3-gqv2-9qmp/GHSA-q3j3-gqv2-9qmp.json b/advisories/unreviewed/2022/04/GHSA-q3j3-gqv2-9qmp/GHSA-q3j3-gqv2-9qmp.json index 60749ea8a75..1512838e8d6 100644 --- a/advisories/unreviewed/2022/04/GHSA-q3j3-gqv2-9qmp/GHSA-q3j3-gqv2-9qmp.json +++ b/advisories/unreviewed/2022/04/GHSA-q3j3-gqv2-9qmp/GHSA-q3j3-gqv2-9qmp.json @@ -7,12 +7,8 @@ "CVE-2003-1435" ], "details": "SQL injection vulnerability in PHP-Nuke 5.6 and 6.0 allows remote attackers to execute arbitrary SQL commands via the days parameter to the search module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-q7jr-h9w5-jgx2/GHSA-q7jr-h9w5-jgx2.json b/advisories/unreviewed/2022/04/GHSA-q7jr-h9w5-jgx2/GHSA-q7jr-h9w5-jgx2.json index b41fdd26ad4..401bdc3bc90 100644 --- a/advisories/unreviewed/2022/04/GHSA-q7jr-h9w5-jgx2/GHSA-q7jr-h9w5-jgx2.json +++ b/advisories/unreviewed/2022/04/GHSA-q7jr-h9w5-jgx2/GHSA-q7jr-h9w5-jgx2.json @@ -7,12 +7,8 @@ "CVE-2003-1414" ], "details": "Directory traversal vulnerability in parse_xml.cg Apple Darwin Streaming Server 4.1.2 and Apple Quicktime Streaming Server 4.1.1 allows remote attackers to read arbitrary files via a ... (triple dot) in the filename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-q959-v446-rf26/GHSA-q959-v446-rf26.json b/advisories/unreviewed/2022/04/GHSA-q959-v446-rf26/GHSA-q959-v446-rf26.json index 384fe649350..130e8379fac 100644 --- a/advisories/unreviewed/2022/04/GHSA-q959-v446-rf26/GHSA-q959-v446-rf26.json +++ b/advisories/unreviewed/2022/04/GHSA-q959-v446-rf26/GHSA-q959-v446-rf26.json @@ -7,12 +7,8 @@ "CVE-2003-1433" ], "details": "Epic Games Unreal Engine 226f through 436 does not validate the challenge key, which allows remote attackers to exhaust the player limit by joining the game multiple times.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-qj29-9598-wmgp/GHSA-qj29-9598-wmgp.json b/advisories/unreviewed/2022/04/GHSA-qj29-9598-wmgp/GHSA-qj29-9598-wmgp.json index f1ee8788c25..579c7a94cbd 100644 --- a/advisories/unreviewed/2022/04/GHSA-qj29-9598-wmgp/GHSA-qj29-9598-wmgp.json +++ b/advisories/unreviewed/2022/04/GHSA-qj29-9598-wmgp/GHSA-qj29-9598-wmgp.json @@ -7,12 +7,8 @@ "CVE-2003-1334" ], "details": "Cross-site scripting (XSS) vulnerability in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) before 1.2.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-qprv-w86x-qw2w/GHSA-qprv-w86x-qw2w.json b/advisories/unreviewed/2022/04/GHSA-qprv-w86x-qw2w/GHSA-qprv-w86x-qw2w.json index 3e678236681..a3cf5f276a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-qprv-w86x-qw2w/GHSA-qprv-w86x-qw2w.json +++ b/advisories/unreviewed/2022/04/GHSA-qprv-w86x-qw2w/GHSA-qprv-w86x-qw2w.json @@ -7,12 +7,8 @@ "CVE-2003-1292" ], "details": "PHP remote file include vulnerability in Derek Ashauer ashNews 0.83 allows remote attackers to include and execute arbitrary remote files via a URL in the pathtoashnews parameter to (1) ashnews.php and (2) ashheadlines.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qxh7-4xcw-xqvm/GHSA-qxh7-4xcw-xqvm.json b/advisories/unreviewed/2022/04/GHSA-qxh7-4xcw-xqvm/GHSA-qxh7-4xcw-xqvm.json index 35a09fc9ebc..290f30b05f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-qxh7-4xcw-xqvm/GHSA-qxh7-4xcw-xqvm.json +++ b/advisories/unreviewed/2022/04/GHSA-qxh7-4xcw-xqvm/GHSA-qxh7-4xcw-xqvm.json @@ -7,12 +7,8 @@ "CVE-2003-1397" ], "details": "The PluginContext object of Opera 6.05 and 7.0 allows remote attackers to cause a denial of service (crash) via an HTTP request containing a long string that gets passed to the ShowDocument method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-r994-mqvv-9vxr/GHSA-r994-mqvv-9vxr.json b/advisories/unreviewed/2022/04/GHSA-r994-mqvv-9vxr/GHSA-r994-mqvv-9vxr.json index adc3a08eab0..a84c1a1c2fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-r994-mqvv-9vxr/GHSA-r994-mqvv-9vxr.json +++ b/advisories/unreviewed/2022/04/GHSA-r994-mqvv-9vxr/GHSA-r994-mqvv-9vxr.json @@ -7,12 +7,8 @@ "CVE-2003-1308" ], "details": "CRLF injection vulnerability in fvwm-menu-directory for fvwm 2.5.x before 2.5.10 and 2.4.x before 2.4.18 allows local users to execute arbitrary commands via carriage returns in a filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r9rp-5v8q-f7p8/GHSA-r9rp-5v8q-f7p8.json b/advisories/unreviewed/2022/04/GHSA-r9rp-5v8q-f7p8/GHSA-r9rp-5v8q-f7p8.json index 97f989f9e6a..a14ccb5d77b 100644 --- a/advisories/unreviewed/2022/04/GHSA-r9rp-5v8q-f7p8/GHSA-r9rp-5v8q-f7p8.json +++ b/advisories/unreviewed/2022/04/GHSA-r9rp-5v8q-f7p8/GHSA-r9rp-5v8q-f7p8.json @@ -7,12 +7,8 @@ "CVE-2003-1453" ], "details": "Cross-site scripting (XSS) vulnerability in the MytextSanitizer function in XOOPS 1.3.5 through 1.3.9 and XOOPS 2.0 through 2.0.1 allows remote attackers to inject arbitrary web script or HTML via a javascript: URL in an IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-rvfv-82qg-gr7m/GHSA-rvfv-82qg-gr7m.json b/advisories/unreviewed/2022/04/GHSA-rvfv-82qg-gr7m/GHSA-rvfv-82qg-gr7m.json index ca718f6de5e..7a0e40624f0 100644 --- a/advisories/unreviewed/2022/04/GHSA-rvfv-82qg-gr7m/GHSA-rvfv-82qg-gr7m.json +++ b/advisories/unreviewed/2022/04/GHSA-rvfv-82qg-gr7m/GHSA-rvfv-82qg-gr7m.json @@ -7,12 +7,8 @@ "CVE-2003-1402" ], "details": "PHP remote file inclusion vulnerability in hit.php for Kietu 2.0 and 2.3 allows remote attackers to execute arbitrary PHP code via the url_hit parameter, a different vulnerability than CVE-2006-5015.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-rwwc-m7v9-48v9/GHSA-rwwc-m7v9-48v9.json b/advisories/unreviewed/2022/04/GHSA-rwwc-m7v9-48v9/GHSA-rwwc-m7v9-48v9.json index b41b9d10be0..be3ccf3e05f 100644 --- a/advisories/unreviewed/2022/04/GHSA-rwwc-m7v9-48v9/GHSA-rwwc-m7v9-48v9.json +++ b/advisories/unreviewed/2022/04/GHSA-rwwc-m7v9-48v9/GHSA-rwwc-m7v9-48v9.json @@ -7,12 +7,8 @@ "CVE-2003-1299" ], "details": "Directory traversal vulnerability in Baby FTP Server 1.2, and possibly other versions before May 31, 2003 allows remote authenticated users to list arbitrary directories and possibly read files via \"...\" (triple dot) manipulations to the CWD command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rx6q-7jmv-mc9j/GHSA-rx6q-7jmv-mc9j.json b/advisories/unreviewed/2022/04/GHSA-rx6q-7jmv-mc9j/GHSA-rx6q-7jmv-mc9j.json index de850ff2bee..e3e9f47bc53 100644 --- a/advisories/unreviewed/2022/04/GHSA-rx6q-7jmv-mc9j/GHSA-rx6q-7jmv-mc9j.json +++ b/advisories/unreviewed/2022/04/GHSA-rx6q-7jmv-mc9j/GHSA-rx6q-7jmv-mc9j.json @@ -7,12 +7,8 @@ "CVE-2003-1378" ], "details": "Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs via an HTML email with the CODEBASE parameter set to the program, a vulnerability similar to CAN-2002-0077.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v5wm-xchq-76vh/GHSA-v5wm-xchq-76vh.json b/advisories/unreviewed/2022/04/GHSA-v5wm-xchq-76vh/GHSA-v5wm-xchq-76vh.json index d9ef30c85a1..11fdeb31b0e 100644 --- a/advisories/unreviewed/2022/04/GHSA-v5wm-xchq-76vh/GHSA-v5wm-xchq-76vh.json +++ b/advisories/unreviewed/2022/04/GHSA-v5wm-xchq-76vh/GHSA-v5wm-xchq-76vh.json @@ -7,12 +7,8 @@ "CVE-2003-1351" ], "details": "Directory traversal vulnerability in edittag.cgi in EditTag 1.1 allows remote attackers to read arbitrary files via a \"%2F..\" (encoded slash dot dot) in the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-v8j7-q554-rjj8/GHSA-v8j7-q554-rjj8.json b/advisories/unreviewed/2022/04/GHSA-v8j7-q554-rjj8/GHSA-v8j7-q554-rjj8.json index 8e6c3e8a4a1..f26bcb05af0 100644 --- a/advisories/unreviewed/2022/04/GHSA-v8j7-q554-rjj8/GHSA-v8j7-q554-rjj8.json +++ b/advisories/unreviewed/2022/04/GHSA-v8j7-q554-rjj8/GHSA-v8j7-q554-rjj8.json @@ -7,12 +7,8 @@ "CVE-2003-1356" ], "details": "The \"file handling\" in sort in HP-UX 10.01 through 10.20, and 11.00 through 11.11 is \"incorrect,\" which allows attackers to gain access or cause a denial of service via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vc85-g439-4m62/GHSA-vc85-g439-4m62.json b/advisories/unreviewed/2022/04/GHSA-vc85-g439-4m62/GHSA-vc85-g439-4m62.json index dcf3c01f562..23c63c466db 100644 --- a/advisories/unreviewed/2022/04/GHSA-vc85-g439-4m62/GHSA-vc85-g439-4m62.json +++ b/advisories/unreviewed/2022/04/GHSA-vc85-g439-4m62/GHSA-vc85-g439-4m62.json @@ -7,12 +7,8 @@ "CVE-2003-1312" ], "details": "siteminderagent/SmMakeCookie.ccc in Netegrity SiteMinder places a session ID string in the value of the SMSESSION parameter in a URL, which might allow remote attackers to obtain the ID by sniffing, reading Referer logs, or other methods.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vcxw-6r9g-hhw5/GHSA-vcxw-6r9g-hhw5.json b/advisories/unreviewed/2022/04/GHSA-vcxw-6r9g-hhw5/GHSA-vcxw-6r9g-hhw5.json index b39f93f3ab5..b73e0c4dad0 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcxw-6r9g-hhw5/GHSA-vcxw-6r9g-hhw5.json +++ b/advisories/unreviewed/2022/04/GHSA-vcxw-6r9g-hhw5/GHSA-vcxw-6r9g-hhw5.json @@ -7,12 +7,8 @@ "CVE-2003-1462" ], "details": "mod_survey 3.0.0 through 3.0.15-pre6 does not check whether a survey exists before creating a subdirectory for it, which allows remote attackers to cause a denial of service (disk consumption and possible crash).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vvqx-5g43-3476/GHSA-vvqx-5g43-3476.json b/advisories/unreviewed/2022/04/GHSA-vvqx-5g43-3476/GHSA-vvqx-5g43-3476.json index 1637225851d..db5a466828d 100644 --- a/advisories/unreviewed/2022/04/GHSA-vvqx-5g43-3476/GHSA-vvqx-5g43-3476.json +++ b/advisories/unreviewed/2022/04/GHSA-vvqx-5g43-3476/GHSA-vvqx-5g43-3476.json @@ -7,12 +7,8 @@ "CVE-2003-1390" ], "details": "RTS CryptoBuddy 1.2 and earlier stores bytes 53 through 55 of a 55-byte passphrase in plaintext, which makes it easier for local users to guess the passphrase.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vvvx-48pw-6mwx/GHSA-vvvx-48pw-6mwx.json b/advisories/unreviewed/2022/04/GHSA-vvvx-48pw-6mwx/GHSA-vvvx-48pw-6mwx.json index b2bd9cec918..153b9485f37 100644 --- a/advisories/unreviewed/2022/04/GHSA-vvvx-48pw-6mwx/GHSA-vvvx-48pw-6mwx.json +++ b/advisories/unreviewed/2022/04/GHSA-vvvx-48pw-6mwx/GHSA-vvvx-48pw-6mwx.json @@ -7,12 +7,8 @@ "CVE-2003-1441" ], "details": "Posadis 0.50.4 through 0.50.8 allows remote attackers to cause a denial of service (crash) via a DNS message without a question section, which triggers null dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-vwgc-45gc-993q/GHSA-vwgc-45gc-993q.json b/advisories/unreviewed/2022/04/GHSA-vwgc-45gc-993q/GHSA-vwgc-45gc-993q.json index 1efd5c141de..d3788c4347b 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwgc-45gc-993q/GHSA-vwgc-45gc-993q.json +++ b/advisories/unreviewed/2022/04/GHSA-vwgc-45gc-993q/GHSA-vwgc-45gc-993q.json @@ -7,12 +7,8 @@ "CVE-2003-1290" ], "details": "BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, with RMI and anonymous admin lookup enabled, allows remote attackers to obtain configuration information by accessing MBeanHome via the Java Naming and Directory Interface (JNDI).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w3vj-p2cf-85rg/GHSA-w3vj-p2cf-85rg.json b/advisories/unreviewed/2022/04/GHSA-w3vj-p2cf-85rg/GHSA-w3vj-p2cf-85rg.json index dc057eb3b14..c4d34424fea 100644 --- a/advisories/unreviewed/2022/04/GHSA-w3vj-p2cf-85rg/GHSA-w3vj-p2cf-85rg.json +++ b/advisories/unreviewed/2022/04/GHSA-w3vj-p2cf-85rg/GHSA-w3vj-p2cf-85rg.json @@ -7,12 +7,8 @@ "CVE-2003-1331" ], "details": "Stack-based buffer overflow in the mysql_real_connect function in the MySql client library (libmysqlclient) 4.0.13 and earlier allows local users to execute arbitrary code via a long socket name, a different vulnerability than CVE-2001-1453.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w3wm-rw5r-53pq/GHSA-w3wm-rw5r-53pq.json b/advisories/unreviewed/2022/04/GHSA-w3wm-rw5r-53pq/GHSA-w3wm-rw5r-53pq.json index ce90ebe6592..5514f4c0080 100644 --- a/advisories/unreviewed/2022/04/GHSA-w3wm-rw5r-53pq/GHSA-w3wm-rw5r-53pq.json +++ b/advisories/unreviewed/2022/04/GHSA-w3wm-rw5r-53pq/GHSA-w3wm-rw5r-53pq.json @@ -7,12 +7,8 @@ "CVE-2003-1305" ], "details": "Microsoft Internet Explorer allows remote attackers to cause a denial of service (resource consumption) via a Javascript src attribute that recursively loads the current web page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4mj-xwvw-pc54/GHSA-w4mj-xwvw-pc54.json b/advisories/unreviewed/2022/04/GHSA-w4mj-xwvw-pc54/GHSA-w4mj-xwvw-pc54.json index 7dc0e730b5d..a6418ccfae7 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4mj-xwvw-pc54/GHSA-w4mj-xwvw-pc54.json +++ b/advisories/unreviewed/2022/04/GHSA-w4mj-xwvw-pc54/GHSA-w4mj-xwvw-pc54.json @@ -7,12 +7,8 @@ "CVE-2003-1346" ], "details": "D-Link wireless access point DWL-900AP+ 2.2, 2.3 and possibly 2.5 allows remote attackers to set factory default settings by upgrading the firmware using AirPlus Access Point Manager.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4xc-8www-f4gx/GHSA-w4xc-8www-f4gx.json b/advisories/unreviewed/2022/04/GHSA-w4xc-8www-f4gx/GHSA-w4xc-8www-f4gx.json index e9d7f8a04ab..303b2ff976b 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4xc-8www-f4gx/GHSA-w4xc-8www-f4gx.json +++ b/advisories/unreviewed/2022/04/GHSA-w4xc-8www-f4gx/GHSA-w4xc-8www-f4gx.json @@ -7,12 +7,8 @@ "CVE-2003-1374" ], "details": "Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-w76w-v64m-qrv5/GHSA-w76w-v64m-qrv5.json b/advisories/unreviewed/2022/04/GHSA-w76w-v64m-qrv5/GHSA-w76w-v64m-qrv5.json index d57d92252ff..16392403ada 100644 --- a/advisories/unreviewed/2022/04/GHSA-w76w-v64m-qrv5/GHSA-w76w-v64m-qrv5.json +++ b/advisories/unreviewed/2022/04/GHSA-w76w-v64m-qrv5/GHSA-w76w-v64m-qrv5.json @@ -7,12 +7,8 @@ "CVE-2003-1418" ], "details": "Apache HTTP Server 1.3.22 through 1.3.27 on OpenBSD allows remote attackers to obtain sensitive information via (1) the ETag header, which reveals the inode number, or (2) multipart MIME boundary, which reveals child process IDs (PID).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-w7fr-cp8f-6qjg/GHSA-w7fr-cp8f-6qjg.json b/advisories/unreviewed/2022/04/GHSA-w7fr-cp8f-6qjg/GHSA-w7fr-cp8f-6qjg.json index 6b61d2bc746..8899f5e6fc0 100644 --- a/advisories/unreviewed/2022/04/GHSA-w7fr-cp8f-6qjg/GHSA-w7fr-cp8f-6qjg.json +++ b/advisories/unreviewed/2022/04/GHSA-w7fr-cp8f-6qjg/GHSA-w7fr-cp8f-6qjg.json @@ -7,12 +7,8 @@ "CVE-2003-1366" ], "details": "chpass in OpenBSD 2.0 through 3.2 allows local users to read portions of arbitrary files via a hard link attack on a temporary file used to store user database information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wc57-w8f9-32p8/GHSA-wc57-w8f9-32p8.json b/advisories/unreviewed/2022/04/GHSA-wc57-w8f9-32p8/GHSA-wc57-w8f9-32p8.json index d2268fbfcfb..8cc06c94e3e 100644 --- a/advisories/unreviewed/2022/04/GHSA-wc57-w8f9-32p8/GHSA-wc57-w8f9-32p8.json +++ b/advisories/unreviewed/2022/04/GHSA-wc57-w8f9-32p8/GHSA-wc57-w8f9-32p8.json @@ -7,12 +7,8 @@ "CVE-2003-1345" ], "details": "Directory traversal vulnerability in s.dll in WebCollection Plus 5.00 allows remote attackers to view arbitrary files in c:\\ via a full pathname in the d parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wgcp-pcqp-g3jx/GHSA-wgcp-pcqp-g3jx.json b/advisories/unreviewed/2022/04/GHSA-wgcp-pcqp-g3jx/GHSA-wgcp-pcqp-g3jx.json index 5a2febb5918..c1d31af9c4f 100644 --- a/advisories/unreviewed/2022/04/GHSA-wgcp-pcqp-g3jx/GHSA-wgcp-pcqp-g3jx.json +++ b/advisories/unreviewed/2022/04/GHSA-wgcp-pcqp-g3jx/GHSA-wgcp-pcqp-g3jx.json @@ -7,12 +7,8 @@ "CVE-2003-1448" ], "details": "Memory leak in the Windows 2000 kernel allows remote attackers to cause a denial of service (SMB request hang) via a NetBIOS continuation packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wq7c-gv3r-8f5j/GHSA-wq7c-gv3r-8f5j.json b/advisories/unreviewed/2022/04/GHSA-wq7c-gv3r-8f5j/GHSA-wq7c-gv3r-8f5j.json index c1bc3ce835b..d67199133b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-wq7c-gv3r-8f5j/GHSA-wq7c-gv3r-8f5j.json +++ b/advisories/unreviewed/2022/04/GHSA-wq7c-gv3r-8f5j/GHSA-wq7c-gv3r-8f5j.json @@ -7,12 +7,8 @@ "CVE-2003-1411" ], "details": "PHP remote file inclusion vulnerability in emailreader_execute_on_each_page.inc.php in Cedric Email Reader 0.4 allows remote attackers to execute arbitrary PHP code via the emailreader_ini parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wwfc-8866-37gw/GHSA-wwfc-8866-37gw.json b/advisories/unreviewed/2022/04/GHSA-wwfc-8866-37gw/GHSA-wwfc-8866-37gw.json index 7e1857c114f..07326b519ec 100644 --- a/advisories/unreviewed/2022/04/GHSA-wwfc-8866-37gw/GHSA-wwfc-8866-37gw.json +++ b/advisories/unreviewed/2022/04/GHSA-wwfc-8866-37gw/GHSA-wwfc-8866-37gw.json @@ -7,12 +7,8 @@ "CVE-2003-1420" ], "details": "Cross-site scripting (XSS) vulnerability in Opera 6.0 through 7.0 with automatic redirection disabled allows remote attackers to inject arbitrary web script or HTML via the HTTP Location header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-x2cm-2g9q-p73v/GHSA-x2cm-2g9q-p73v.json b/advisories/unreviewed/2022/04/GHSA-x2cm-2g9q-p73v/GHSA-x2cm-2g9q-p73v.json index 8370b230840..ebcf0bed8fa 100644 --- a/advisories/unreviewed/2022/04/GHSA-x2cm-2g9q-p73v/GHSA-x2cm-2g9q-p73v.json +++ b/advisories/unreviewed/2022/04/GHSA-x2cm-2g9q-p73v/GHSA-x2cm-2g9q-p73v.json @@ -7,12 +7,8 @@ "CVE-2003-1436" ], "details": "PHP remote file inclusion vulnerability in nukebrowser.php in Nukebrowser 2.1 to 2.5 allows remote attackers to execute arbitrary PHP code via the filhead parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-x2hr-29w2-c5r2/GHSA-x2hr-29w2-c5r2.json b/advisories/unreviewed/2022/04/GHSA-x2hr-29w2-c5r2/GHSA-x2hr-29w2-c5r2.json index d03d79daa26..e842adbad70 100644 --- a/advisories/unreviewed/2022/04/GHSA-x2hr-29w2-c5r2/GHSA-x2hr-29w2-c5r2.json +++ b/advisories/unreviewed/2022/04/GHSA-x2hr-29w2-c5r2/GHSA-x2hr-29w2-c5r2.json @@ -7,12 +7,8 @@ "CVE-2003-1309" ], "details": "The DeviceIoControl function in the TrueVector Device Driver (VSDATANT) in ZoneAlarm before 3.7.211, Pro before 4.0.146.029, and Plus before 4.0.146.029 allows local users to gain privileges via certain signals (aka \"Device Driver Attack\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x367-6564-4q6f/GHSA-x367-6564-4q6f.json b/advisories/unreviewed/2022/04/GHSA-x367-6564-4q6f/GHSA-x367-6564-4q6f.json index 5a21ad6197f..412d7ce16e6 100644 --- a/advisories/unreviewed/2022/04/GHSA-x367-6564-4q6f/GHSA-x367-6564-4q6f.json +++ b/advisories/unreviewed/2022/04/GHSA-x367-6564-4q6f/GHSA-x367-6564-4q6f.json @@ -7,12 +7,8 @@ "CVE-2003-1297" ], "details": "Easy File Sharing (EFS) Web Server 1.2 stores the (1) option.ini (aka options.ini) file and (2) log directory under the web root with insufficient access control, which allows remote attackers to obtain sensitive information including an SMTP account username and password hash, the server configuration, and server log files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x5xr-55mj-qgw2/GHSA-x5xr-55mj-qgw2.json b/advisories/unreviewed/2022/04/GHSA-x5xr-55mj-qgw2/GHSA-x5xr-55mj-qgw2.json index 6af87641a3e..a84f1691f68 100644 --- a/advisories/unreviewed/2022/04/GHSA-x5xr-55mj-qgw2/GHSA-x5xr-55mj-qgw2.json +++ b/advisories/unreviewed/2022/04/GHSA-x5xr-55mj-qgw2/GHSA-x5xr-55mj-qgw2.json @@ -7,12 +7,8 @@ "CVE-2003-1395" ], "details": "Buffer overflow in KaZaA Media Desktop 2.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a response to the ad server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-x9f4-5mh2-hqp8/GHSA-x9f4-5mh2-hqp8.json b/advisories/unreviewed/2022/04/GHSA-x9f4-5mh2-hqp8/GHSA-x9f4-5mh2-hqp8.json index b5b503b5835..d6a9fa4ad8a 100644 --- a/advisories/unreviewed/2022/04/GHSA-x9f4-5mh2-hqp8/GHSA-x9f4-5mh2-hqp8.json +++ b/advisories/unreviewed/2022/04/GHSA-x9f4-5mh2-hqp8/GHSA-x9f4-5mh2-hqp8.json @@ -7,12 +7,8 @@ "CVE-2003-1353" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Outreach Project Tool (OPT) 0.946b allow remote attackers to inject arbitrary web script or HTML, as demonstrated using the news field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xcgg-7jq8-m3f6/GHSA-xcgg-7jq8-m3f6.json b/advisories/unreviewed/2022/04/GHSA-xcgg-7jq8-m3f6/GHSA-xcgg-7jq8-m3f6.json index 8659c8d0b57..7baabad8535 100644 --- a/advisories/unreviewed/2022/04/GHSA-xcgg-7jq8-m3f6/GHSA-xcgg-7jq8-m3f6.json +++ b/advisories/unreviewed/2022/04/GHSA-xcgg-7jq8-m3f6/GHSA-xcgg-7jq8-m3f6.json @@ -7,12 +7,8 @@ "CVE-2003-1429" ], "details": "Buffer overflow in Proxomitron Naoko 4.4 allows remote attackers to execute arbitrary code via a long request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xhx4-qmff-87w3/GHSA-xhx4-qmff-87w3.json b/advisories/unreviewed/2022/04/GHSA-xhx4-qmff-87w3/GHSA-xhx4-qmff-87w3.json index 41ac4374984..69a28ccb664 100644 --- a/advisories/unreviewed/2022/04/GHSA-xhx4-qmff-87w3/GHSA-xhx4-qmff-87w3.json +++ b/advisories/unreviewed/2022/04/GHSA-xhx4-qmff-87w3/GHSA-xhx4-qmff-87w3.json @@ -7,12 +7,8 @@ "CVE-2003-1410" ], "details": "PHP remote file inclusion vulnerability in email.php (aka email.php3) in Cedric Email Reader 0.2 and 0.3 allows remote attackers to execute arbitrary PHP code via the cer_skin parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xq7p-w257-hcj2/GHSA-xq7p-w257-hcj2.json b/advisories/unreviewed/2022/04/GHSA-xq7p-w257-hcj2/GHSA-xq7p-w257-hcj2.json index be975791c5c..cbd3934aa33 100644 --- a/advisories/unreviewed/2022/04/GHSA-xq7p-w257-hcj2/GHSA-xq7p-w257-hcj2.json +++ b/advisories/unreviewed/2022/04/GHSA-xq7p-w257-hcj2/GHSA-xq7p-w257-hcj2.json @@ -7,12 +7,8 @@ "CVE-2003-1416" ], "details": "BisonFTP Server 4 release 2 allows remote attackers to cause a denial of service (CPU consumption) via a long (1) ls or (2) cwd command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xrj4-x4gq-r76x/GHSA-xrj4-x4gq-r76x.json b/advisories/unreviewed/2022/04/GHSA-xrj4-x4gq-r76x/GHSA-xrj4-x4gq-r76x.json index 65acaef09f0..31aa7f93e15 100644 --- a/advisories/unreviewed/2022/04/GHSA-xrj4-x4gq-r76x/GHSA-xrj4-x4gq-r76x.json +++ b/advisories/unreviewed/2022/04/GHSA-xrj4-x4gq-r76x/GHSA-xrj4-x4gq-r76x.json @@ -7,12 +7,8 @@ "CVE-2003-1321" ], "details": "Buffer overflow in Avant Browser 8.02 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-22wf-j8j6-f67g/GHSA-22wf-j8j6-f67g.json b/advisories/unreviewed/2022/05/GHSA-22wf-j8j6-f67g/GHSA-22wf-j8j6-f67g.json index d79dabb58b1..264a78b11d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-22wf-j8j6-f67g/GHSA-22wf-j8j6-f67g.json +++ b/advisories/unreviewed/2022/05/GHSA-22wf-j8j6-f67g/GHSA-22wf-j8j6-f67g.json @@ -7,12 +7,8 @@ "CVE-2019-20747" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.58, D7800 before 1.0.1.40, R7500v2 before 1.0.3.34, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.3.16, RAX120 before 1.0.0.74, RBK20 before 2.3.0.22, RBR20 before 2.3.0.22, RBS20 before 2.3.0.22, RBK50 before 2.3.0.22, RBR50 before 2.3.0.22, RBS50 before 2.3.0.22, RBK40 before 2.3.0.22, RBS40 before 2.3.0.22, SRK60 before 2.2.0.64, SRR60 before 2.2.0.64, SRS60 before 2.2.0.64, WNDR3700v4 before 1.0.2.102, WNDR4300 before 1.0.2.104, WNDR4300v2 before 1.0.0.56, WNDR4500v3 before 1.0.0.56, and WNR2000v5 before 1.0.0.66.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23rx-f2xv-5pg9/GHSA-23rx-f2xv-5pg9.json b/advisories/unreviewed/2022/05/GHSA-23rx-f2xv-5pg9/GHSA-23rx-f2xv-5pg9.json index bf2ff46cc12..e8e246449fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-23rx-f2xv-5pg9/GHSA-23rx-f2xv-5pg9.json +++ b/advisories/unreviewed/2022/05/GHSA-23rx-f2xv-5pg9/GHSA-23rx-f2xv-5pg9.json @@ -7,12 +7,8 @@ "CVE-2019-10622" ], "details": "Out of bound memory access can happen while parsing ADSP message due to lack of check of size of payload received from userspace in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8096AU, IPQ4019, IPQ6018, IPQ8064, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, QCN7605, QCS605, SC8180X, SDM710, SDX24, SDX55, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23w3-pmw9-p5xf/GHSA-23w3-pmw9-p5xf.json b/advisories/unreviewed/2022/05/GHSA-23w3-pmw9-p5xf/GHSA-23w3-pmw9-p5xf.json index 3658988a621..83f94c85a6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-23w3-pmw9-p5xf/GHSA-23w3-pmw9-p5xf.json +++ b/advisories/unreviewed/2022/05/GHSA-23w3-pmw9-p5xf/GHSA-23w3-pmw9-p5xf.json @@ -7,12 +7,8 @@ "CVE-2019-14127" ], "details": "Possible buffer overflow while playing mkv clip due to lack of validation of atom size buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-24xq-3fcv-v34c/GHSA-24xq-3fcv-v34c.json b/advisories/unreviewed/2022/05/GHSA-24xq-3fcv-v34c/GHSA-24xq-3fcv-v34c.json index d44d2a3d919..80d7ae05477 100644 --- a/advisories/unreviewed/2022/05/GHSA-24xq-3fcv-v34c/GHSA-24xq-3fcv-v34c.json +++ b/advisories/unreviewed/2022/05/GHSA-24xq-3fcv-v34c/GHSA-24xq-3fcv-v34c.json @@ -7,12 +7,8 @@ "CVE-2017-18800" ], "details": "Certain NETGEAR devices are affected by reflected XSS. This affects R6700v2 before 1.1.0.42 and R6800 before 1.1.0.42.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-259m-497m-7gx5/GHSA-259m-497m-7gx5.json b/advisories/unreviewed/2022/05/GHSA-259m-497m-7gx5/GHSA-259m-497m-7gx5.json index dde999e5fcf..d7a553ab932 100644 --- a/advisories/unreviewed/2022/05/GHSA-259m-497m-7gx5/GHSA-259m-497m-7gx5.json +++ b/advisories/unreviewed/2022/05/GHSA-259m-497m-7gx5/GHSA-259m-497m-7gx5.json @@ -7,12 +7,8 @@ "CVE-2020-2809" ], "details": "Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Business Suite (component: DBI Setups). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle E-Business Intelligence. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle E-Business Intelligence, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle E-Business Intelligence accessible data as well as unauthorized update, insert or delete access to some of Oracle E-Business Intelligence accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-25vq-w6f5-5w2h/GHSA-25vq-w6f5-5w2h.json b/advisories/unreviewed/2022/05/GHSA-25vq-w6f5-5w2h/GHSA-25vq-w6f5-5w2h.json index 3f96ca30a65..f9b3f0a67df 100644 --- a/advisories/unreviewed/2022/05/GHSA-25vq-w6f5-5w2h/GHSA-25vq-w6f5-5w2h.json +++ b/advisories/unreviewed/2022/05/GHSA-25vq-w6f5-5w2h/GHSA-25vq-w6f5-5w2h.json @@ -7,12 +7,8 @@ "CVE-2020-2811" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle WebLogic Server, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle WebLogic Server accessible data as well as unauthorized read access to a subset of Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-262w-gwhq-grfq/GHSA-262w-gwhq-grfq.json b/advisories/unreviewed/2022/05/GHSA-262w-gwhq-grfq/GHSA-262w-gwhq-grfq.json index a9439ab2d19..984d0763c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-262w-gwhq-grfq/GHSA-262w-gwhq-grfq.json +++ b/advisories/unreviewed/2022/05/GHSA-262w-gwhq-grfq/GHSA-262w-gwhq-grfq.json @@ -7,12 +7,8 @@ "CVE-2020-2920" ], "details": "Vulnerability in the Oracle Agile PLM product of Oracle Supply Chain (component: Security). Supported versions that are affected are 9.3.3, 9.3.5 and 9.3.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Agile PLM. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Agile PLM, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Agile PLM accessible data as well as unauthorized read access to a subset of Oracle Agile PLM accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2677-vh42-vx74/GHSA-2677-vh42-vx74.json b/advisories/unreviewed/2022/05/GHSA-2677-vh42-vx74/GHSA-2677-vh42-vx74.json index a33cc98ae89..723c71a2792 100644 --- a/advisories/unreviewed/2022/05/GHSA-2677-vh42-vx74/GHSA-2677-vh42-vx74.json +++ b/advisories/unreviewed/2022/05/GHSA-2677-vh42-vx74/GHSA-2677-vh42-vx74.json @@ -7,12 +7,8 @@ "CVE-2020-2942" ], "details": "Vulnerability in the Oracle Financial Services Price Creation and Discovery product of Oracle Financial Services Applications (component: User Interface). The supported version that is affected is 8.0.7. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Price Creation and Discovery. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Price Creation and Discovery accessible data as well as unauthorized read access to a subset of Oracle Financial Services Price Creation and Discovery accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-26p5-m65h-vvjg/GHSA-26p5-m65h-vvjg.json b/advisories/unreviewed/2022/05/GHSA-26p5-m65h-vvjg/GHSA-26p5-m65h-vvjg.json index c3f7da4ed04..6e65534c4cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-26p5-m65h-vvjg/GHSA-26p5-m65h-vvjg.json +++ b/advisories/unreviewed/2022/05/GHSA-26p5-m65h-vvjg/GHSA-26p5-m65h-vvjg.json @@ -7,12 +7,8 @@ "CVE-2020-2848" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-26xv-4xf9-c953/GHSA-26xv-4xf9-c953.json b/advisories/unreviewed/2022/05/GHSA-26xv-4xf9-c953/GHSA-26xv-4xf9-c953.json index d897496c526..1c84e142cd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-26xv-4xf9-c953/GHSA-26xv-4xf9-c953.json +++ b/advisories/unreviewed/2022/05/GHSA-26xv-4xf9-c953/GHSA-26xv-4xf9-c953.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27gx-92r4-wr88/GHSA-27gx-92r4-wr88.json b/advisories/unreviewed/2022/05/GHSA-27gx-92r4-wr88/GHSA-27gx-92r4-wr88.json index cb95380c123..d341c5c1b3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-27gx-92r4-wr88/GHSA-27gx-92r4-wr88.json +++ b/advisories/unreviewed/2022/05/GHSA-27gx-92r4-wr88/GHSA-27gx-92r4-wr88.json @@ -7,12 +7,8 @@ "CVE-2020-3273" ], "details": "A vulnerability in the 802.11 Generic Advertisement Service (GAS) frame processing function of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS). The vulnerability is due to incomplete input validation of the 802.11 GAS frames that are processed by an affected device. An attacker could exploit this vulnerability by sending a crafted 802.11 GAS frame over the air to an access point (AP), and that frame would then be relayed to the affected WLC. Also, an attacker with Layer 3 connectivity to the WLC could exploit this vulnerability by sending a malicious 802.11 GAS payload in a Control and Provisioning of Wireless Access Points (CAPWAP) packet to the device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-27rm-4c27-5jqc/GHSA-27rm-4c27-5jqc.json b/advisories/unreviewed/2022/05/GHSA-27rm-4c27-5jqc/GHSA-27rm-4c27-5jqc.json index 1e435afc11c..ae01495f993 100644 --- a/advisories/unreviewed/2022/05/GHSA-27rm-4c27-5jqc/GHSA-27rm-4c27-5jqc.json +++ b/advisories/unreviewed/2022/05/GHSA-27rm-4c27-5jqc/GHSA-27rm-4c27-5jqc.json @@ -7,12 +7,8 @@ "CVE-2020-7082" ], "details": "A use-after-free vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to code execution on a system running it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-28c5-pqwm-84r5/GHSA-28c5-pqwm-84r5.json b/advisories/unreviewed/2022/05/GHSA-28c5-pqwm-84r5/GHSA-28c5-pqwm-84r5.json index 389c998225d..f5f7d09ee98 100644 --- a/advisories/unreviewed/2022/05/GHSA-28c5-pqwm-84r5/GHSA-28c5-pqwm-84r5.json +++ b/advisories/unreviewed/2022/05/GHSA-28c5-pqwm-84r5/GHSA-28c5-pqwm-84r5.json @@ -7,12 +7,8 @@ "CVE-2020-7483" ], "details": "**VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability could cause certain data to be visible on the network when the 'password' feature is enabled. This vulnerability was discovered in and remediated in versions v4.9.1 and v4.10.1 on May 30, 2013. The 'password' feature is an additional optional check performed by TS1131 that it is connected to a specific controller. This data is sent as clear text and is visible on the network. This feature is not present in TriStation 1131 versions v4.9.1 and v4.10.1 through current. Therefore, the vulnerability is not present in these versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-295x-2rv5-vf3f/GHSA-295x-2rv5-vf3f.json b/advisories/unreviewed/2022/05/GHSA-295x-2rv5-vf3f/GHSA-295x-2rv5-vf3f.json index 49542137cc6..91f07f32c3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-295x-2rv5-vf3f/GHSA-295x-2rv5-vf3f.json +++ b/advisories/unreviewed/2022/05/GHSA-295x-2rv5-vf3f/GHSA-295x-2rv5-vf3f.json @@ -7,12 +7,8 @@ "CVE-2020-2855" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Admin). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-297j-25fr-6hh8/GHSA-297j-25fr-6hh8.json b/advisories/unreviewed/2022/05/GHSA-297j-25fr-6hh8/GHSA-297j-25fr-6hh8.json index 0627f0ed85a..a3095e8afad 100644 --- a/advisories/unreviewed/2022/05/GHSA-297j-25fr-6hh8/GHSA-297j-25fr-6hh8.json +++ b/advisories/unreviewed/2022/05/GHSA-297j-25fr-6hh8/GHSA-297j-25fr-6hh8.json @@ -7,12 +7,8 @@ "CVE-2019-12001" ], "details": "A remote session reuse vulnerability leading to access restriction bypass was discovered in HPE MSA 2040 SAN Storage; HPE MSA 1040 SAN Storage; HPE MSA 1050 SAN Storage; HPE MSA 2042 SAN Storage; HPE MSA 2050 SAN Storage; HPE MSA 2052 SAN Storage version(s): GL225P001 and earlier; GL225P001 and earlier; VE270R001-01 and earlier; GL225P001 and earlier; VL270R001-01 and earlier; VL270R001-01 and earlier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2c74-m64v-xv3x/GHSA-2c74-m64v-xv3x.json b/advisories/unreviewed/2022/05/GHSA-2c74-m64v-xv3x/GHSA-2c74-m64v-xv3x.json index 34ffe69214c..16547a30db0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c74-m64v-xv3x/GHSA-2c74-m64v-xv3x.json +++ b/advisories/unreviewed/2022/05/GHSA-2c74-m64v-xv3x/GHSA-2c74-m64v-xv3x.json @@ -7,12 +7,8 @@ "CVE-2020-2889" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle CRM Technical Foundation accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fc8-wj99-h595/GHSA-2fc8-wj99-h595.json b/advisories/unreviewed/2022/05/GHSA-2fc8-wj99-h595/GHSA-2fc8-wj99-h595.json index 029111e16d1..7bb93cbb220 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fc8-wj99-h595/GHSA-2fc8-wj99-h595.json +++ b/advisories/unreviewed/2022/05/GHSA-2fc8-wj99-h595/GHSA-2fc8-wj99-h595.json @@ -7,12 +7,8 @@ "CVE-2020-3954" ], "details": "Open Redirect vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2gq5-2fcp-29m9/GHSA-2gq5-2fcp-29m9.json b/advisories/unreviewed/2022/05/GHSA-2gq5-2fcp-29m9/GHSA-2gq5-2fcp-29m9.json index a04d44b365d..e413cc970bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gq5-2fcp-29m9/GHSA-2gq5-2fcp-29m9.json +++ b/advisories/unreviewed/2022/05/GHSA-2gq5-2fcp-29m9/GHSA-2gq5-2fcp-29m9.json @@ -7,12 +7,8 @@ "CVE-2020-2940" ], "details": "Vulnerability in the Oracle Financial Services Profitability Management product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 and 8.0.7. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Profitability Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Profitability Management accessible data as well as unauthorized read access to a subset of Oracle Financial Services Profitability Management accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2j88-c6j2-6283/GHSA-2j88-c6j2-6283.json b/advisories/unreviewed/2022/05/GHSA-2j88-c6j2-6283/GHSA-2j88-c6j2-6283.json index cd3d668c84e..db4bbd671fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j88-c6j2-6283/GHSA-2j88-c6j2-6283.json +++ b/advisories/unreviewed/2022/05/GHSA-2j88-c6j2-6283/GHSA-2j88-c6j2-6283.json @@ -7,12 +7,8 @@ "CVE-2017-18761" ], "details": "NETGEAR R8000 devices before 1.0.4.2 are affected by a stack-based buffer overflow by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2jph-wvx4-hmjh/GHSA-2jph-wvx4-hmjh.json b/advisories/unreviewed/2022/05/GHSA-2jph-wvx4-hmjh/GHSA-2jph-wvx4-hmjh.json index c1910136372..41c5c197166 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jph-wvx4-hmjh/GHSA-2jph-wvx4-hmjh.json +++ b/advisories/unreviewed/2022/05/GHSA-2jph-wvx4-hmjh/GHSA-2jph-wvx4-hmjh.json @@ -7,12 +7,8 @@ "CVE-2017-18846" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow. This affects R6250 before 1.0.4.12, R6400v2 before 1.0.2.32, R7000P/R6900P before 1.0.0.56, R7900 before 1.0.1.18, R8300 before 1.0.2.100_1.0.82, R8500 before 1.0.2.100_1.0.82, and D8500 before 1.0.3.29.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2jw7-x2xj-fwh5/GHSA-2jw7-x2xj-fwh5.json b/advisories/unreviewed/2022/05/GHSA-2jw7-x2xj-fwh5/GHSA-2jw7-x2xj-fwh5.json index de9d708daa9..d6c3f544c10 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jw7-x2xj-fwh5/GHSA-2jw7-x2xj-fwh5.json +++ b/advisories/unreviewed/2022/05/GHSA-2jw7-x2xj-fwh5/GHSA-2jw7-x2xj-fwh5.json @@ -7,12 +7,8 @@ "CVE-2019-20718" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before 1.0.0.52, D8500 before 1.0.3.43, R6250 before 1.0.4.34, R6400 before 1.0.1.44, R6400v2 before 1.0.2.62, R7100LG before 1.0.0.48, R7300DST before 1.0.0.68, R7900 before 1.0.3.8, R7900P before 1.4.1.30, R8000 before 1.0.4.28, R8000P before 1.4.1.30, R8300 before 1.0.2.128, and R8500 before 1.0.2.128.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2mx3-6gff-v3gh/GHSA-2mx3-6gff-v3gh.json b/advisories/unreviewed/2022/05/GHSA-2mx3-6gff-v3gh/GHSA-2mx3-6gff-v3gh.json index b36a5e60c4d..f79c1b327d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mx3-6gff-v3gh/GHSA-2mx3-6gff-v3gh.json +++ b/advisories/unreviewed/2022/05/GHSA-2mx3-6gff-v3gh/GHSA-2mx3-6gff-v3gh.json @@ -7,12 +7,8 @@ "CVE-2020-8842" ], "details": "Unquoted search path vulnerability in MSI True Color before 3.0.52.0 allows privilege escalation to SYSTEM.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p78-cf3j-x8wj/GHSA-2p78-cf3j-x8wj.json b/advisories/unreviewed/2022/05/GHSA-2p78-cf3j-x8wj/GHSA-2p78-cf3j-x8wj.json index fddcadfdbe5..faa6c743352 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p78-cf3j-x8wj/GHSA-2p78-cf3j-x8wj.json +++ b/advisories/unreviewed/2022/05/GHSA-2p78-cf3j-x8wj/GHSA-2p78-cf3j-x8wj.json @@ -7,12 +7,8 @@ "CVE-2020-2953" ], "details": "Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications (component: Promotions). The supported version that is affected is 18.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Retail Customer Management and Segmentation Foundation. Successful attacks of this vulnerability can result in takeover of Oracle Retail Customer Management and Segmentation Foundation. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p9j-94vg-6vx9/GHSA-2p9j-94vg-6vx9.json b/advisories/unreviewed/2022/05/GHSA-2p9j-94vg-6vx9/GHSA-2p9j-94vg-6vx9.json index 4ebb3ab33e2..49005daa522 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p9j-94vg-6vx9/GHSA-2p9j-94vg-6vx9.json +++ b/advisories/unreviewed/2022/05/GHSA-2p9j-94vg-6vx9/GHSA-2p9j-94vg-6vx9.json @@ -7,12 +7,8 @@ "CVE-2020-8099" ], "details": "A vulnerability in the improper handling of junctions in Bitdefender Antivirus Free can allow an unprivileged user to substitute a quarantined file, and restore it to a privileged location. This issue affects: Bitdefender Antivirus Free versions prior to 1.0.17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2pmm-f975-w6hm/GHSA-2pmm-f975-w6hm.json b/advisories/unreviewed/2022/05/GHSA-2pmm-f975-w6hm/GHSA-2pmm-f975-w6hm.json index 876ca4d5771..c585d5a2b45 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pmm-f975-w6hm/GHSA-2pmm-f975-w6hm.json +++ b/advisories/unreviewed/2022/05/GHSA-2pmm-f975-w6hm/GHSA-2pmm-f975-w6hm.json @@ -7,12 +7,8 @@ "CVE-2020-2905" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2q9f-3pgp-rwm7/GHSA-2q9f-3pgp-rwm7.json b/advisories/unreviewed/2022/05/GHSA-2q9f-3pgp-rwm7/GHSA-2q9f-3pgp-rwm7.json index 56968b81c5e..38b6dde05fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q9f-3pgp-rwm7/GHSA-2q9f-3pgp-rwm7.json +++ b/advisories/unreviewed/2022/05/GHSA-2q9f-3pgp-rwm7/GHSA-2q9f-3pgp-rwm7.json @@ -7,12 +7,8 @@ "CVE-2019-14122" ], "details": "Memory failure in SKB if it fails to to add the requested padding to the skb in low memory targets or targets with major memory fragmentation in Snapdragon Auto, Snapdragon Mobile in Saipan, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qch-v5gg-365x/GHSA-2qch-v5gg-365x.json b/advisories/unreviewed/2022/05/GHSA-2qch-v5gg-365x/GHSA-2qch-v5gg-365x.json index a5d425620a3..c1a1228d729 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qch-v5gg-365x/GHSA-2qch-v5gg-365x.json +++ b/advisories/unreviewed/2022/05/GHSA-2qch-v5gg-365x/GHSA-2qch-v5gg-365x.json @@ -7,12 +7,8 @@ "CVE-2017-18833" ], "details": "Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qhw-v6v2-pp46/GHSA-2qhw-v6v2-pp46.json b/advisories/unreviewed/2022/05/GHSA-2qhw-v6v2-pp46/GHSA-2qhw-v6v2-pp46.json index 359b4391895..02d053bc164 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qhw-v6v2-pp46/GHSA-2qhw-v6v2-pp46.json +++ b/advisories/unreviewed/2022/05/GHSA-2qhw-v6v2-pp46/GHSA-2qhw-v6v2-pp46.json @@ -7,12 +7,8 @@ "CVE-2020-2866" ], "details": "Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Attachments / File Upload). Supported versions that are affected are 12.2.5-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Framework. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Applications Framework accessible data. CVSS 3.0 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2rpx-jj49-wf29/GHSA-2rpx-jj49-wf29.json b/advisories/unreviewed/2022/05/GHSA-2rpx-jj49-wf29/GHSA-2rpx-jj49-wf29.json index c7906fe092c..c402c9ec5d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rpx-jj49-wf29/GHSA-2rpx-jj49-wf29.json +++ b/advisories/unreviewed/2022/05/GHSA-2rpx-jj49-wf29/GHSA-2rpx-jj49-wf29.json @@ -7,12 +7,8 @@ "CVE-2019-7306" ], "details": "Byobu Apport hook may disclose sensitive information since it automatically uploads the local user's .screenrc which may contain private hostnames, usernames and passwords. This issue affects: byobu", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vjr-cvf4-9474/GHSA-2vjr-cvf4-9474.json b/advisories/unreviewed/2022/05/GHSA-2vjr-cvf4-9474/GHSA-2vjr-cvf4-9474.json index 333d670f0ca..24f17947aef 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vjr-cvf4-9474/GHSA-2vjr-cvf4-9474.json +++ b/advisories/unreviewed/2022/05/GHSA-2vjr-cvf4-9474/GHSA-2vjr-cvf4-9474.json @@ -7,12 +7,8 @@ "CVE-2020-10505" ], "details": "The School Manage System, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of SQL Injection, allowing attackers to inject SQL commands into the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2w76-6rhm-5g2v/GHSA-2w76-6rhm-5g2v.json b/advisories/unreviewed/2022/05/GHSA-2w76-6rhm-5g2v/GHSA-2w76-6rhm-5g2v.json index 7a2f621ae4f..855e0ea17da 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w76-6rhm-5g2v/GHSA-2w76-6rhm-5g2v.json +++ b/advisories/unreviewed/2022/05/GHSA-2w76-6rhm-5g2v/GHSA-2w76-6rhm-5g2v.json @@ -7,12 +7,8 @@ "CVE-2019-20694" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects GS728TP before 6.0.0.48, GS728TPPv2 before 6.0.0.48, GS728TPv2 before 6.0.0.48, GS752TPP before 6.0.0.48, and GS752TPv2 before 6.0.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wx7-3qvr-gm34/GHSA-2wx7-3qvr-gm34.json b/advisories/unreviewed/2022/05/GHSA-2wx7-3qvr-gm34/GHSA-2wx7-3qvr-gm34.json index 58a239398cd..7ffd608e222 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wx7-3qvr-gm34/GHSA-2wx7-3qvr-gm34.json +++ b/advisories/unreviewed/2022/05/GHSA-2wx7-3qvr-gm34/GHSA-2wx7-3qvr-gm34.json @@ -7,12 +7,8 @@ "CVE-2020-3261" ], "details": "A vulnerability in the web-based management interface of Cisco Mobility Express Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. The vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected device. An attacker could exploit this vulnerability by persuading a user with an active session on an affected device to follow a malicious link. A successful exploit could allow the attacker to perform arbitrary actions, including modifying the configuration, with the privilege level of the user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-326x-92j6-q56j/GHSA-326x-92j6-q56j.json b/advisories/unreviewed/2022/05/GHSA-326x-92j6-q56j/GHSA-326x-92j6-q56j.json index 7648e1f6d82..befd32f7bd3 100644 --- a/advisories/unreviewed/2022/05/GHSA-326x-92j6-q56j/GHSA-326x-92j6-q56j.json +++ b/advisories/unreviewed/2022/05/GHSA-326x-92j6-q56j/GHSA-326x-92j6-q56j.json @@ -7,12 +7,8 @@ "CVE-2019-10547" ], "details": "When issuing IOCTL calls to ION, Memory leak can occur due to failure in unassign pages under certain conditions in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8053, APQ8096AU, APQ8098, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8953, MSM8996AU, Nicobar, QCN7605, QCS605, Rennell, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM710, SDX24, SDX55, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-347c-6459-qw24/GHSA-347c-6459-qw24.json b/advisories/unreviewed/2022/05/GHSA-347c-6459-qw24/GHSA-347c-6459-qw24.json index 398b7451557..bd686f371d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-347c-6459-qw24/GHSA-347c-6459-qw24.json +++ b/advisories/unreviewed/2022/05/GHSA-347c-6459-qw24/GHSA-347c-6459-qw24.json @@ -7,12 +7,8 @@ "CVE-2017-18843" ], "details": "Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, and D7000 before 1.0.1.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3482-hrx3-vgcg/GHSA-3482-hrx3-vgcg.json b/advisories/unreviewed/2022/05/GHSA-3482-hrx3-vgcg/GHSA-3482-hrx3-vgcg.json index 7192e95c40a..d368ac79258 100644 --- a/advisories/unreviewed/2022/05/GHSA-3482-hrx3-vgcg/GHSA-3482-hrx3-vgcg.json +++ b/advisories/unreviewed/2022/05/GHSA-3482-hrx3-vgcg/GHSA-3482-hrx3-vgcg.json @@ -7,12 +7,8 @@ "CVE-2020-3239" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-355q-c24p-mj2m/GHSA-355q-c24p-mj2m.json b/advisories/unreviewed/2022/05/GHSA-355q-c24p-mj2m/GHSA-355q-c24p-mj2m.json index ef54427ad8f..4172702698b 100644 --- a/advisories/unreviewed/2022/05/GHSA-355q-c24p-mj2m/GHSA-355q-c24p-mj2m.json +++ b/advisories/unreviewed/2022/05/GHSA-355q-c24p-mj2m/GHSA-355q-c24p-mj2m.json @@ -7,12 +7,8 @@ "CVE-2017-18829" ], "details": "Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-362w-636h-jrw7/GHSA-362w-636h-jrw7.json b/advisories/unreviewed/2022/05/GHSA-362w-636h-jrw7/GHSA-362w-636h-jrw7.json index d1b9747fc4c..aa539d3bc5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-362w-636h-jrw7/GHSA-362w-636h-jrw7.json +++ b/advisories/unreviewed/2022/05/GHSA-362w-636h-jrw7/GHSA-362w-636h-jrw7.json @@ -7,12 +7,8 @@ "CVE-2020-2900" ], "details": "Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle GraalVM (component: Tools). Supported versions that are affected are 19.3.1 and 20.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle GraalVM Enterprise Edition accessible data as well as unauthorized read access to a subset of Oracle GraalVM Enterprise Edition accessible data. CVSS 3.0 Base Score 3.7 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-366j-383q-83cc/GHSA-366j-383q-83cc.json b/advisories/unreviewed/2022/05/GHSA-366j-383q-83cc/GHSA-366j-383q-83cc.json index e63601f73c7..24dcfa4c88f 100644 --- a/advisories/unreviewed/2022/05/GHSA-366j-383q-83cc/GHSA-366j-383q-83cc.json +++ b/advisories/unreviewed/2022/05/GHSA-366j-383q-83cc/GHSA-366j-383q-83cc.json @@ -7,12 +7,8 @@ "CVE-2020-2938" ], "details": "Vulnerability in the Oracle Financial Services Loan Loss Forecasting and Provisioning product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 - 8.0.8. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Loan Loss Forecasting and Provisioning. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Loan Loss Forecasting and Provisioning accessible data as well as unauthorized read access to a subset of Oracle Financial Services Loan Loss Forecasting and Provisioning accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3724-xmqw-2wwv/GHSA-3724-xmqw-2wwv.json b/advisories/unreviewed/2022/05/GHSA-3724-xmqw-2wwv/GHSA-3724-xmqw-2wwv.json index 3ab656bc04e..1aa1829ca21 100644 --- a/advisories/unreviewed/2022/05/GHSA-3724-xmqw-2wwv/GHSA-3724-xmqw-2wwv.json +++ b/advisories/unreviewed/2022/05/GHSA-3724-xmqw-2wwv/GHSA-3724-xmqw-2wwv.json @@ -7,12 +7,8 @@ "CVE-2020-9445" ], "details": "Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-37cc-5cqg-xx92/GHSA-37cc-5cqg-xx92.json b/advisories/unreviewed/2022/05/GHSA-37cc-5cqg-xx92/GHSA-37cc-5cqg-xx92.json index 06233ec639c..949b21bbc74 100644 --- a/advisories/unreviewed/2022/05/GHSA-37cc-5cqg-xx92/GHSA-37cc-5cqg-xx92.json +++ b/advisories/unreviewed/2022/05/GHSA-37cc-5cqg-xx92/GHSA-37cc-5cqg-xx92.json @@ -7,12 +7,8 @@ "CVE-2020-7083" ], "details": "An intager overflow vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to denial of service of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-37qc-g79h-4wcg/GHSA-37qc-g79h-4wcg.json b/advisories/unreviewed/2022/05/GHSA-37qc-g79h-4wcg/GHSA-37qc-g79h-4wcg.json index b28fc335081..d5c99bc19ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-37qc-g79h-4wcg/GHSA-37qc-g79h-4wcg.json +++ b/advisories/unreviewed/2022/05/GHSA-37qc-g79h-4wcg/GHSA-37qc-g79h-4wcg.json @@ -7,12 +7,8 @@ "CVE-2017-18796" ], "details": "Certain NETGEAR devices are affected by command injection. This affects R6400 before 1.0.1.24, R6700 before 1.0.1.26, R6900 before 1.0.1.28, R7000 before 1.0.9.10, R7000P before 1.0.1.16, R6900P before 1.0.1.16, and R7800 before 1.0.2.36.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-37vj-5xqx-3r34/GHSA-37vj-5xqx-3r34.json b/advisories/unreviewed/2022/05/GHSA-37vj-5xqx-3r34/GHSA-37vj-5xqx-3r34.json index a614b3b70c9..86453f4f8b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-37vj-5xqx-3r34/GHSA-37vj-5xqx-3r34.json +++ b/advisories/unreviewed/2022/05/GHSA-37vj-5xqx-3r34/GHSA-37vj-5xqx-3r34.json @@ -7,12 +7,8 @@ "CVE-2019-20714" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D7800 before 1.0.1.44, DM200 before 1.0.0.58, R7500v2 before 1.0.3.40, R7800 before 1.0.2.60, R8900 before 1.0.4.12, R9000 before 1.0.4.12, RBK20 before 2.3.0.22, RBR20 before 2.3.0.22, RBS20 before 2.3.0.22, RBK50 before 2.3.0.22, RBR50 before 2.3.0.22, RBS50 before 2.3.0.22, RBS40 before 2.3.0.22, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.60, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, and WNR2000v5 before 1.0.0.68.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-383v-q8rj-89v9/GHSA-383v-q8rj-89v9.json b/advisories/unreviewed/2022/05/GHSA-383v-q8rj-89v9/GHSA-383v-q8rj-89v9.json index 697657a76fa..aa1a24b9414 100644 --- a/advisories/unreviewed/2022/05/GHSA-383v-q8rj-89v9/GHSA-383v-q8rj-89v9.json +++ b/advisories/unreviewed/2022/05/GHSA-383v-q8rj-89v9/GHSA-383v-q8rj-89v9.json @@ -7,12 +7,8 @@ "CVE-2019-20727" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6100 before 1.0.0.63, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-386r-5f2r-6m92/GHSA-386r-5f2r-6m92.json b/advisories/unreviewed/2022/05/GHSA-386r-5f2r-6m92/GHSA-386r-5f2r-6m92.json index 2cf2f8689cb..f0af98d55ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-386r-5f2r-6m92/GHSA-386r-5f2r-6m92.json +++ b/advisories/unreviewed/2022/05/GHSA-386r-5f2r-6m92/GHSA-386r-5f2r-6m92.json @@ -7,12 +7,8 @@ "CVE-2019-20701" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-388h-g8mc-3g8v/GHSA-388h-g8mc-3g8v.json b/advisories/unreviewed/2022/05/GHSA-388h-g8mc-3g8v/GHSA-388h-g8mc-3g8v.json index 62504c13bf0..5d2f20fd46a 100644 --- a/advisories/unreviewed/2022/05/GHSA-388h-g8mc-3g8v/GHSA-388h-g8mc-3g8v.json +++ b/advisories/unreviewed/2022/05/GHSA-388h-g8mc-3g8v/GHSA-388h-g8mc-3g8v.json @@ -7,12 +7,8 @@ "CVE-2020-7255" ], "details": "Privilege escalation vulnerability in the administrative user interface in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to gain elevated privileges via ENS not checking user permissions when editing configuration in the ENS client interface. Administrators can lock the ENS client interface through ePO to prevent users being able to edit the configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-38f6-jcm3-35jc/GHSA-38f6-jcm3-35jc.json b/advisories/unreviewed/2022/05/GHSA-38f6-jcm3-35jc/GHSA-38f6-jcm3-35jc.json index 60d989dc5a7..53dd5846244 100644 --- a/advisories/unreviewed/2022/05/GHSA-38f6-jcm3-35jc/GHSA-38f6-jcm3-35jc.json +++ b/advisories/unreviewed/2022/05/GHSA-38f6-jcm3-35jc/GHSA-38f6-jcm3-35jc.json @@ -7,12 +7,8 @@ "CVE-2019-20724" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, D7800 before 1.0.1.44, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS20 before 2.3.0.28, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, RBS50 before 2.3.0.32, RBS40 before 2.3.0.28, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-38wx-782h-g32v/GHSA-38wx-782h-g32v.json b/advisories/unreviewed/2022/05/GHSA-38wx-782h-g32v/GHSA-38wx-782h-g32v.json index 7a681a3a323..594a61167b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-38wx-782h-g32v/GHSA-38wx-782h-g32v.json +++ b/advisories/unreviewed/2022/05/GHSA-38wx-782h-g32v/GHSA-38wx-782h-g32v.json @@ -7,12 +7,8 @@ "CVE-2020-2806" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Compiling). Supported versions that are affected are 5.7.28 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-399m-8cpm-hqf8/GHSA-399m-8cpm-hqf8.json b/advisories/unreviewed/2022/05/GHSA-399m-8cpm-hqf8/GHSA-399m-8cpm-hqf8.json index 1cbc5952eca..10b814ab68f 100644 --- a/advisories/unreviewed/2022/05/GHSA-399m-8cpm-hqf8/GHSA-399m-8cpm-hqf8.json +++ b/advisories/unreviewed/2022/05/GHSA-399m-8cpm-hqf8/GHSA-399m-8cpm-hqf8.json @@ -7,12 +7,8 @@ "CVE-2020-2874" ], "details": "Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Customer Search). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Email Center, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Email Center accessible data as well as unauthorized update, insert or delete access to some of Oracle Email Center accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3cm9-2f69-3m66/GHSA-3cm9-2f69-3m66.json b/advisories/unreviewed/2022/05/GHSA-3cm9-2f69-3m66/GHSA-3cm9-2f69-3m66.json index 43308121fd6..df11c6883bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cm9-2f69-3m66/GHSA-3cm9-2f69-3m66.json +++ b/advisories/unreviewed/2022/05/GHSA-3cm9-2f69-3m66/GHSA-3cm9-2f69-3m66.json @@ -7,12 +7,8 @@ "CVE-2020-2927" ], "details": "Vulnerability in the Oracle Solaris product of Oracle Systems (component: Common Desktop Environment). Supported versions that are affected are 10 and 11. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Solaris executes to compromise Oracle Solaris. While the vulnerability is in Oracle Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle Solaris. CVSS 3.0 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3fhc-vgqv-22vj/GHSA-3fhc-vgqv-22vj.json b/advisories/unreviewed/2022/05/GHSA-3fhc-vgqv-22vj/GHSA-3fhc-vgqv-22vj.json index 0274e64b125..a028ec24861 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fhc-vgqv-22vj/GHSA-3fhc-vgqv-22vj.json +++ b/advisories/unreviewed/2022/05/GHSA-3fhc-vgqv-22vj/GHSA-3fhc-vgqv-22vj.json @@ -7,12 +7,8 @@ "CVE-2020-2834" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3frm-32ff-qqhp/GHSA-3frm-32ff-qqhp.json b/advisories/unreviewed/2022/05/GHSA-3frm-32ff-qqhp/GHSA-3frm-32ff-qqhp.json index 8abbf5e3b42..c11e8875d24 100644 --- a/advisories/unreviewed/2022/05/GHSA-3frm-32ff-qqhp/GHSA-3frm-32ff-qqhp.json +++ b/advisories/unreviewed/2022/05/GHSA-3frm-32ff-qqhp/GHSA-3frm-32ff-qqhp.json @@ -7,12 +7,8 @@ "CVE-2020-2878" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Mail). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hqr-gm3g-jc4f/GHSA-3hqr-gm3g-jc4f.json b/advisories/unreviewed/2022/05/GHSA-3hqr-gm3g-jc4f/GHSA-3hqr-gm3g-jc4f.json index 46749cb2a7a..1bc47c2b7e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hqr-gm3g-jc4f/GHSA-3hqr-gm3g-jc4f.json +++ b/advisories/unreviewed/2022/05/GHSA-3hqr-gm3g-jc4f/GHSA-3hqr-gm3g-jc4f.json @@ -7,12 +7,8 @@ "CVE-2019-20719" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before 1.0.0.52, D8500 before 1.0.3.43, R6250 before 1.0.4.34, R6400 before 1.0.1.44, R6400v2 before 1.0.2.62, R7000P before 1.4.1.30, R7100LG before 1.0.0.48, R7300DST before 1.0.0.68, R7900 before 1.0.3.8, R7900P before 1.4.1.30, R8000 before 1.0.4.28, R8000P before 1.4.1.30, R8300 before 1.0.2.128, and R8500 before 1.0.2.128.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3jc4-cv85-6h9g/GHSA-3jc4-cv85-6h9g.json b/advisories/unreviewed/2022/05/GHSA-3jc4-cv85-6h9g/GHSA-3jc4-cv85-6h9g.json index 52698ed428a..ed481f3a24f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jc4-cv85-6h9g/GHSA-3jc4-cv85-6h9g.json +++ b/advisories/unreviewed/2022/05/GHSA-3jc4-cv85-6h9g/GHSA-3jc4-cv85-6h9g.json @@ -7,12 +7,8 @@ "CVE-2020-0078" ], "details": "In releaseSecureStops of DrmPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-144766455", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mfr-w4jw-vhm6/GHSA-3mfr-w4jw-vhm6.json b/advisories/unreviewed/2022/05/GHSA-3mfr-w4jw-vhm6/GHSA-3mfr-w4jw-vhm6.json index 905b8e71f32..7447ca1df79 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mfr-w4jw-vhm6/GHSA-3mfr-w4jw-vhm6.json +++ b/advisories/unreviewed/2022/05/GHSA-3mfr-w4jw-vhm6/GHSA-3mfr-w4jw-vhm6.json @@ -7,12 +7,8 @@ "CVE-2020-2840" ], "details": "Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Business Suite (component: DBI Setups). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle E-Business Intelligence. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle E-Business Intelligence, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle E-Business Intelligence accessible data as well as unauthorized update, insert or delete access to some of Oracle E-Business Intelligence accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mrr-qqw5-mqj9/GHSA-3mrr-qqw5-mqj9.json b/advisories/unreviewed/2022/05/GHSA-3mrr-qqw5-mqj9/GHSA-3mrr-qqw5-mqj9.json index aecf9d3fe16..a5c9e8749cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mrr-qqw5-mqj9/GHSA-3mrr-qqw5-mqj9.json +++ b/advisories/unreviewed/2022/05/GHSA-3mrr-qqw5-mqj9/GHSA-3mrr-qqw5-mqj9.json @@ -7,12 +7,8 @@ "CVE-2020-10506" ], "details": "The School Manage System, developed by ALLE INFORMATION CO., LTD., contains a vulnerability of Path Traversal, allowing attackers to access arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mx6-gj69-jg8v/GHSA-3mx6-gj69-jg8v.json b/advisories/unreviewed/2022/05/GHSA-3mx6-gj69-jg8v/GHSA-3mx6-gj69-jg8v.json index 528f3a3de53..d4f7467eb72 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mx6-gj69-jg8v/GHSA-3mx6-gj69-jg8v.json +++ b/advisories/unreviewed/2022/05/GHSA-3mx6-gj69-jg8v/GHSA-3mx6-gj69-jg8v.json @@ -7,12 +7,8 @@ "CVE-2020-7276" ], "details": "Authentication bypass vulnerability in MfeUpgradeTool in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows administrator users to access policy settings via running this tool.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3p24-qq22-3v59/GHSA-3p24-qq22-3v59.json b/advisories/unreviewed/2022/05/GHSA-3p24-qq22-3v59/GHSA-3p24-qq22-3v59.json index 22add1e48ee..87b4704f4b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p24-qq22-3v59/GHSA-3p24-qq22-3v59.json +++ b/advisories/unreviewed/2022/05/GHSA-3p24-qq22-3v59/GHSA-3p24-qq22-3v59.json @@ -7,12 +7,8 @@ "CVE-2020-3243" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3p34-6p74-74v3/GHSA-3p34-6p74-74v3.json b/advisories/unreviewed/2022/05/GHSA-3p34-6p74-74v3/GHSA-3p34-6p74-74v3.json index d78c65e78f5..b1e7dc12495 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p34-6p74-74v3/GHSA-3p34-6p74-74v3.json +++ b/advisories/unreviewed/2022/05/GHSA-3p34-6p74-74v3/GHSA-3p34-6p74-74v3.json @@ -7,12 +7,8 @@ "CVE-2019-20744" ], "details": "NETGEAR WAC510 devices before 5.0.10.2 are affected by disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3p44-pgj6-cf97/GHSA-3p44-pgj6-cf97.json b/advisories/unreviewed/2022/05/GHSA-3p44-pgj6-cf97/GHSA-3p44-pgj6-cf97.json index 3c93ca4c6da..409b9f77ac0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p44-pgj6-cf97/GHSA-3p44-pgj6-cf97.json +++ b/advisories/unreviewed/2022/05/GHSA-3p44-pgj6-cf97/GHSA-3p44-pgj6-cf97.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3p5v-4gv6-58hf/GHSA-3p5v-4gv6-58hf.json b/advisories/unreviewed/2022/05/GHSA-3p5v-4gv6-58hf/GHSA-3p5v-4gv6-58hf.json index 86c2c1df16d..30855a98f3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p5v-4gv6-58hf/GHSA-3p5v-4gv6-58hf.json +++ b/advisories/unreviewed/2022/05/GHSA-3p5v-4gv6-58hf/GHSA-3p5v-4gv6-58hf.json @@ -7,12 +7,8 @@ "CVE-2020-2947" ], "details": "Vulnerability in the PeopleSoft Enterprise HCM Absence Management product of Oracle PeopleSoft (component: Absence Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM Absence Management. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM Absence Management accessible data. CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3p8h-m2x9-m6x7/GHSA-3p8h-m2x9-m6x7.json b/advisories/unreviewed/2022/05/GHSA-3p8h-m2x9-m6x7/GHSA-3p8h-m2x9-m6x7.json index 8f5b6c83014..1078dff6954 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p8h-m2x9-m6x7/GHSA-3p8h-m2x9-m6x7.json +++ b/advisories/unreviewed/2022/05/GHSA-3p8h-m2x9-m6x7/GHSA-3p8h-m2x9-m6x7.json @@ -7,12 +7,8 @@ "CVE-2019-20704" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3pr6-628v-q5g4/GHSA-3pr6-628v-q5g4.json b/advisories/unreviewed/2022/05/GHSA-3pr6-628v-q5g4/GHSA-3pr6-628v-q5g4.json index 7c163e42d28..da7c93d9b99 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pr6-628v-q5g4/GHSA-3pr6-628v-q5g4.json +++ b/advisories/unreviewed/2022/05/GHSA-3pr6-628v-q5g4/GHSA-3pr6-628v-q5g4.json @@ -7,12 +7,8 @@ "CVE-2020-2833" ], "details": "Vulnerability in the Oracle Quoting product of Oracle E-Business Suite (component: Courseware). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Quoting. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Quoting, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Quoting accessible data as well as unauthorized update, insert or delete access to some of Oracle Quoting accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3qgf-m686-2pqj/GHSA-3qgf-m686-2pqj.json b/advisories/unreviewed/2022/05/GHSA-3qgf-m686-2pqj/GHSA-3qgf-m686-2pqj.json index 234dba944e7..c60b16d96d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qgf-m686-2pqj/GHSA-3qgf-m686-2pqj.json +++ b/advisories/unreviewed/2022/05/GHSA-3qgf-m686-2pqj/GHSA-3qgf-m686-2pqj.json @@ -7,12 +7,8 @@ "CVE-2020-2887" ], "details": "Vulnerability in the Oracle Customer Interaction History product of Oracle E-Business Suite (component: Outcome-Result). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Customer Interaction History. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Customer Interaction History accessible data. CVSS 3.0 Base Score 5.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3qm9-8m3h-5r34/GHSA-3qm9-8m3h-5r34.json b/advisories/unreviewed/2022/05/GHSA-3qm9-8m3h-5r34/GHSA-3qm9-8m3h-5r34.json index 2795c62ea21..4f2414678f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qm9-8m3h-5r34/GHSA-3qm9-8m3h-5r34.json +++ b/advisories/unreviewed/2022/05/GHSA-3qm9-8m3h-5r34/GHSA-3qm9-8m3h-5r34.json @@ -7,12 +7,8 @@ "CVE-2020-0068" ], "details": "In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: Android. Versions: Android kernel. Android ID: A-139354541", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qp7-hh2h-39wp/GHSA-3qp7-hh2h-39wp.json b/advisories/unreviewed/2022/05/GHSA-3qp7-hh2h-39wp/GHSA-3qp7-hh2h-39wp.json index 138a5ec01ee..a75fc9d3c60 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qp7-hh2h-39wp/GHSA-3qp7-hh2h-39wp.json +++ b/advisories/unreviewed/2022/05/GHSA-3qp7-hh2h-39wp/GHSA-3qp7-hh2h-39wp.json @@ -7,12 +7,8 @@ "CVE-2017-18785" ], "details": "Certain NETGEAR devices are affected by XSS. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D6100 before 1.0.0.56, D6200 before 1.1.00.24, D6220 before 1.0.0.32, D6400 before 1.0.0.66, D7000 before 1.0.1.52, D7000v2 before 1.0.0.44, D7800 before 1.0.1.30, D8500 before 1.0.3.35, DGN2200v4 before 1.0.0.96, DGN2200Bv4 before 1.0.0.96, EX2700 before 1.0.1.28, EX6100v2 before 1.0.1.54, EX6150v2 before 1.0.1.54, EX6200v2 before 1.0.1.52, EX6400 before 1.0.1.72, EX7300 before 1.0.1.72, EX8000 before 1.0.0.102, JNR1010v2 before 1.1.0.44, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6080 before 1.0.0.26, R6100 before 1.0.1.20, R6250 before 1.0.4.16, R6300v2 before 1.0.4.18, R6400 before 1.0.1.32, R6400v2 before 1.0.2.46, R6700 before 1.0.1.36, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, R6700v2 before 1.2.0.12, R6900 before 1.0.1.34, R6900P before 1.3.0.8, R7000 before 1.0.9.18, R7000P before 1.3.0.8, R7100LG before 1.0.0.34, R7300DST before 1.0.0.58, R7500 before 1.0.0.118, R7500v2 before 1.0.3.24, R7800 before 1.0.2.40, R7900 before 1.0.2.4, R7900P before 1.1.5.14, R8000 before 1.0.4.4, R8000P before 1.1.5.14, R8500 before 1.0.2.110, R8300 before 1.0.2.110, R9000 before 1.0.2.52, WN2000RPTv3 before 1.0.1.8, WN3000RPv3 before 1.0.2.50, WN3100RPv2 before 1.0.0.42, WNDR3400v3 before 1.0.1.16, WNDR3700v4 before 1.0.2.94, WNDR4300 before 1.0.2.96, WNDR4300v2 before 1.0.0.50, WNDR4500v3 before 1.0.0.50, WNR1000v4 before 1.1.0.44, WNR2000v5 before 1.0.0.62, WNR2020 before 1.1.0.44, WNR2050 before 1.1.0.44, and WNR3500Lv2 before 1.2.0.46.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3qwm-q2c3-qv6x/GHSA-3qwm-q2c3-qv6x.json b/advisories/unreviewed/2022/05/GHSA-3qwm-q2c3-qv6x/GHSA-3qwm-q2c3-qv6x.json index 67246f8b1e6..c740e90b7ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qwm-q2c3-qv6x/GHSA-3qwm-q2c3-qv6x.json +++ b/advisories/unreviewed/2022/05/GHSA-3qwm-q2c3-qv6x/GHSA-3qwm-q2c3-qv6x.json @@ -7,12 +7,8 @@ "CVE-2020-4260" ], "details": "IBM UrbanCode Deploy (UCD) 7.0.5 could allow a user with special permissions to obtain sensitive information via generic processes. IBM X-Force ID: 175639.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3whq-m5gj-947w/GHSA-3whq-m5gj-947w.json b/advisories/unreviewed/2022/05/GHSA-3whq-m5gj-947w/GHSA-3whq-m5gj-947w.json index 60b3da90934..229b98df5b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3whq-m5gj-947w/GHSA-3whq-m5gj-947w.json +++ b/advisories/unreviewed/2022/05/GHSA-3whq-m5gj-947w/GHSA-3whq-m5gj-947w.json @@ -7,12 +7,8 @@ "CVE-2020-7113" ], "details": "A vulnerability was found when an attacker, while communicating with the ClearPass management interface, is able to intercept and change parameters in the HTTP packets resulting in the compromise of some of ClearPass' service accounts. Resolution: Fixed in 6.7.10, 6.8.1, 6.9.0 and higher.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x2w-qx4w-qjhr/GHSA-3x2w-qx4w-qjhr.json b/advisories/unreviewed/2022/05/GHSA-3x2w-qx4w-qjhr/GHSA-3x2w-qx4w-qjhr.json index d1363496eec..6cf1434f3d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x2w-qx4w-qjhr/GHSA-3x2w-qx4w-qjhr.json +++ b/advisories/unreviewed/2022/05/GHSA-3x2w-qx4w-qjhr/GHSA-3x2w-qx4w-qjhr.json @@ -7,12 +7,8 @@ "CVE-2019-20770" ], "details": "An issue was discovered on LG mobile devices with Android OS 9.0 software. The HAL service has a buffer overflow that leads to arbitrary code execution. The LG ID is LVE-SMP-190013 (September 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xv6-f2f8-6gf4/GHSA-3xv6-f2f8-6gf4.json b/advisories/unreviewed/2022/05/GHSA-3xv6-f2f8-6gf4/GHSA-3xv6-f2f8-6gf4.json index 03f61493502..84003e5c5e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xv6-f2f8-6gf4/GHSA-3xv6-f2f8-6gf4.json +++ b/advisories/unreviewed/2022/05/GHSA-3xv6-f2f8-6gf4/GHSA-3xv6-f2f8-6gf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-432q-7x98-83cg/GHSA-432q-7x98-83cg.json b/advisories/unreviewed/2022/05/GHSA-432q-7x98-83cg/GHSA-432q-7x98-83cg.json index 800b6a2c4f3..482913d3251 100644 --- a/advisories/unreviewed/2022/05/GHSA-432q-7x98-83cg/GHSA-432q-7x98-83cg.json +++ b/advisories/unreviewed/2022/05/GHSA-432q-7x98-83cg/GHSA-432q-7x98-83cg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-43f5-6jwp-r376/GHSA-43f5-6jwp-r376.json b/advisories/unreviewed/2022/05/GHSA-43f5-6jwp-r376/GHSA-43f5-6jwp-r376.json index c40ea64bdd9..97b58cea629 100644 --- a/advisories/unreviewed/2022/05/GHSA-43f5-6jwp-r376/GHSA-43f5-6jwp-r376.json +++ b/advisories/unreviewed/2022/05/GHSA-43f5-6jwp-r376/GHSA-43f5-6jwp-r376.json @@ -7,12 +7,8 @@ "CVE-2020-2928" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-43g3-9hv3-rp7w/GHSA-43g3-9hv3-rp7w.json b/advisories/unreviewed/2022/05/GHSA-43g3-9hv3-rp7w/GHSA-43g3-9hv3-rp7w.json index 21285e8ce06..17dd0da3b3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-43g3-9hv3-rp7w/GHSA-43g3-9hv3-rp7w.json +++ b/advisories/unreviewed/2022/05/GHSA-43g3-9hv3-rp7w/GHSA-43g3-9hv3-rp7w.json @@ -7,12 +7,8 @@ "CVE-2019-20748" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D7800 before 1.0.1.44, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS20 before 2.3.0.28, RBK40 before 2.3.0.28, RBS40 before 2.3.0.28, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, and RBS50 before 2.3.0.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-447j-36p3-9hxr/GHSA-447j-36p3-9hxr.json b/advisories/unreviewed/2022/05/GHSA-447j-36p3-9hxr/GHSA-447j-36p3-9hxr.json index 63bb36bf587..ba87fe77607 100644 --- a/advisories/unreviewed/2022/05/GHSA-447j-36p3-9hxr/GHSA-447j-36p3-9hxr.json +++ b/advisories/unreviewed/2022/05/GHSA-447j-36p3-9hxr/GHSA-447j-36p3-9hxr.json @@ -7,12 +7,8 @@ "CVE-2020-2847" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4482-3457-4p5j/GHSA-4482-3457-4p5j.json b/advisories/unreviewed/2022/05/GHSA-4482-3457-4p5j/GHSA-4482-3457-4p5j.json index f2a68d9f0f9..8a0960b26da 100644 --- a/advisories/unreviewed/2022/05/GHSA-4482-3457-4p5j/GHSA-4482-3457-4p5j.json +++ b/advisories/unreviewed/2022/05/GHSA-4482-3457-4p5j/GHSA-4482-3457-4p5j.json @@ -7,12 +7,8 @@ "CVE-2020-2906" ], "details": "Vulnerability in the PeopleSoft Enterprise SCM Purchasing product of Oracle PeopleSoft (component: Supplier Change). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise SCM Purchasing. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise SCM Purchasing accessible data. CVSS 3.0 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-44gg-h64p-j6pj/GHSA-44gg-h64p-j6pj.json b/advisories/unreviewed/2022/05/GHSA-44gg-h64p-j6pj/GHSA-44gg-h64p-j6pj.json index 34a3d5917d5..e24e20dcca5 100644 --- a/advisories/unreviewed/2022/05/GHSA-44gg-h64p-j6pj/GHSA-44gg-h64p-j6pj.json +++ b/advisories/unreviewed/2022/05/GHSA-44gg-h64p-j6pj/GHSA-44gg-h64p-j6pj.json @@ -7,12 +7,8 @@ "CVE-2020-11873" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A stack-based buffer overflow in the logging tool could allow an attacker to gain privileges. The LG ID is LVE-SMP-200005 (April 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4596-vv4r-8q24/GHSA-4596-vv4r-8q24.json b/advisories/unreviewed/2022/05/GHSA-4596-vv4r-8q24/GHSA-4596-vv4r-8q24.json index a9d76153679..25adb59d6b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4596-vv4r-8q24/GHSA-4596-vv4r-8q24.json +++ b/advisories/unreviewed/2022/05/GHSA-4596-vv4r-8q24/GHSA-4596-vv4r-8q24.json @@ -7,12 +7,8 @@ "CVE-2017-18758" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R6700v2 before 1.1.0.42, R6800 before 1.1.0.42, and R6900v2 before 1.1.0.42.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-45gj-vhmv-w7fr/GHSA-45gj-vhmv-w7fr.json b/advisories/unreviewed/2022/05/GHSA-45gj-vhmv-w7fr/GHSA-45gj-vhmv-w7fr.json index 18aef3f0c6e..b24c5911424 100644 --- a/advisories/unreviewed/2022/05/GHSA-45gj-vhmv-w7fr/GHSA-45gj-vhmv-w7fr.json +++ b/advisories/unreviewed/2022/05/GHSA-45gj-vhmv-w7fr/GHSA-45gj-vhmv-w7fr.json @@ -7,12 +7,8 @@ "CVE-2020-2865" ], "details": "Vulnerability in the Oracle Configurator product of Oracle Supply Chain (component: Installation). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Configurator. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Configurator accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-45r5-vh4c-92vx/GHSA-45r5-vh4c-92vx.json b/advisories/unreviewed/2022/05/GHSA-45r5-vh4c-92vx/GHSA-45r5-vh4c-92vx.json index 0804504827f..951bd6dfb2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-45r5-vh4c-92vx/GHSA-45r5-vh4c-92vx.json +++ b/advisories/unreviewed/2022/05/GHSA-45r5-vh4c-92vx/GHSA-45r5-vh4c-92vx.json @@ -7,12 +7,8 @@ "CVE-2019-20734" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D6220 before 1.0.0.40, D8500 before 1.0.3.39, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.22, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6300v2 before 1.0.4.18, R6400 before 1.0.1.24, R6400v2 before 1.0.2.32, R6700 before 1.0.1.22, R6700v3 before 1.0.2.32, R6900 before 1.0.1.22, R7000 before 1.0.9.6, R6900P before 1.0.0.56, R7000P before 1.0.0.56, R7100LG before 1.0.0.42, R7300DST before 1.0.0.54, R7900 before 1.0.1.26, R8300 before 1.0.2.106, R8500 before 1.0.2.106, WN2500RPv2 before 1.0.1.54, and WNR3500Lv2 before 1.2.0.46.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46rf-9j25-mr47/GHSA-46rf-9j25-mr47.json b/advisories/unreviewed/2022/05/GHSA-46rf-9j25-mr47/GHSA-46rf-9j25-mr47.json index ca1fa9a187a..3fe15503df1 100644 --- a/advisories/unreviewed/2022/05/GHSA-46rf-9j25-mr47/GHSA-46rf-9j25-mr47.json +++ b/advisories/unreviewed/2022/05/GHSA-46rf-9j25-mr47/GHSA-46rf-9j25-mr47.json @@ -7,12 +7,8 @@ "CVE-2020-3194" ], "details": "A vulnerability in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exists due to insufficient validation of certain elements with a Webex recording stored in either the Advanced Recording Format (ARF) or the Webex Recording Format (WRF). An attacker could exploit this vulnerability by sending a user a malicious ARF or WRF file through a link or email attachment and persuading the user to open the file with the affected software on the local system. A successful exploit could allow the attacker to execute arbitrary code on the affected system with the privileges of the targeted user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46v9-6x8x-35pw/GHSA-46v9-6x8x-35pw.json b/advisories/unreviewed/2022/05/GHSA-46v9-6x8x-35pw/GHSA-46v9-6x8x-35pw.json index 6fda5dc4372..36f63a7a449 100644 --- a/advisories/unreviewed/2022/05/GHSA-46v9-6x8x-35pw/GHSA-46v9-6x8x-35pw.json +++ b/advisories/unreviewed/2022/05/GHSA-46v9-6x8x-35pw/GHSA-46v9-6x8x-35pw.json @@ -7,12 +7,8 @@ "CVE-2017-18776" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects D6100 before V1.0.0.55, D7000 before V1.0.1.50, D7800 before V1.0.1.24, JNR1010v2 before 1.1.0.40, JWNR2010v5 before 1.1.0.40, R6100 before 1.0.1.12, R6220 before 1.1.0.50, R7500 before 1.0.0.108, R7500v2 before 1.0.3.10, WNDR4300v1 before 1.0.2.88, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, WNR1000v4 before 1.1.0.40, WNR2000v5 before 1.0.0.42, WNR2020 before 1.1.0.40, and WNR2050 before 1.1.0.40.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4965-jf7x-7ccv/GHSA-4965-jf7x-7ccv.json b/advisories/unreviewed/2022/05/GHSA-4965-jf7x-7ccv/GHSA-4965-jf7x-7ccv.json index b4c20551ef3..65a85bab989 100644 --- a/advisories/unreviewed/2022/05/GHSA-4965-jf7x-7ccv/GHSA-4965-jf7x-7ccv.json +++ b/advisories/unreviewed/2022/05/GHSA-4965-jf7x-7ccv/GHSA-4965-jf7x-7ccv.json @@ -7,12 +7,8 @@ "CVE-2019-20733" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.0.0.44, D6400 before 1.0.0.78, D7000v2 before 1.0.0.51, D8500 before 1.0.3.42, DGN2200v4 before 1.0.0.110, DGND2200Bv4 before 1.0.0.110, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.24, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6250 before 1.0.4.26, R6300v2 before 1.0.4.28, R6400 before 1.0.1.36, R6400v2 before 1.0.2.52, R6700 before 1.0.1.46, R6900 before 1.0.1.46, R7000 before 1.0.9.28, R6900P before 1.3.1.64, R7000P before 1.3.1.64, R7100LG before 1.0.0.46, R7300DST before 1.0.0.68, R7900 before 1.0.2.10, R8000 before 1.0.4.12, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.122, R8500 before 1.0.2.122, WN2500RPv2 before 1.0.1.54, WNDR3400v3 before 1.0.1.22, and WNR3500Lv2 before 1.2.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4c53-6259-p3rj/GHSA-4c53-6259-p3rj.json b/advisories/unreviewed/2022/05/GHSA-4c53-6259-p3rj/GHSA-4c53-6259-p3rj.json index 0fc29f2ffdf..d0ca01f8302 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c53-6259-p3rj/GHSA-4c53-6259-p3rj.json +++ b/advisories/unreviewed/2022/05/GHSA-4c53-6259-p3rj/GHSA-4c53-6259-p3rj.json @@ -7,12 +7,8 @@ "CVE-2019-20778" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. The Backup subsystem does not properly restrict operations or validate their input. The LG ID is LVE-SMP-190004 (June 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4cmh-3844-84q2/GHSA-4cmh-3844-84q2.json b/advisories/unreviewed/2022/05/GHSA-4cmh-3844-84q2/GHSA-4cmh-3844-84q2.json index b0d2b4e3279..b33db3a135f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cmh-3844-84q2/GHSA-4cmh-3844-84q2.json +++ b/advisories/unreviewed/2022/05/GHSA-4cmh-3844-84q2/GHSA-4cmh-3844-84q2.json @@ -7,12 +7,8 @@ "CVE-2020-2818" ], "details": "Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Universal Work Queue, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Universal Work Queue accessible data as well as unauthorized update, insert or delete access to some of Oracle Universal Work Queue accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4f72-c7gm-9h2j/GHSA-4f72-c7gm-9h2j.json b/advisories/unreviewed/2022/05/GHSA-4f72-c7gm-9h2j/GHSA-4f72-c7gm-9h2j.json index 341afd7295d..3af4222b675 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f72-c7gm-9h2j/GHSA-4f72-c7gm-9h2j.json +++ b/advisories/unreviewed/2022/05/GHSA-4f72-c7gm-9h2j/GHSA-4f72-c7gm-9h2j.json @@ -7,12 +7,8 @@ "CVE-2020-2854" ], "details": "Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Advanced Outbound Telephony. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Advanced Outbound Telephony, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Advanced Outbound Telephony accessible data as well as unauthorized update, insert or delete access to some of Oracle Advanced Outbound Telephony accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4frw-675p-hfmg/GHSA-4frw-675p-hfmg.json b/advisories/unreviewed/2022/05/GHSA-4frw-675p-hfmg/GHSA-4frw-675p-hfmg.json index f56f4df0d12..c09b7ac9ffc 100644 --- a/advisories/unreviewed/2022/05/GHSA-4frw-675p-hfmg/GHSA-4frw-675p-hfmg.json +++ b/advisories/unreviewed/2022/05/GHSA-4frw-675p-hfmg/GHSA-4frw-675p-hfmg.json @@ -7,12 +7,8 @@ "CVE-2019-20777" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. WapService mishandles OTA Provisioning on V40 and G7 devices. The LG ID is LVE-SMP-190006 (July 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4g9q-qhpj-x27q/GHSA-4g9q-qhpj-x27q.json b/advisories/unreviewed/2022/05/GHSA-4g9q-qhpj-x27q/GHSA-4g9q-qhpj-x27q.json index 337905471f9..8020cd60805 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g9q-qhpj-x27q/GHSA-4g9q-qhpj-x27q.json +++ b/advisories/unreviewed/2022/05/GHSA-4g9q-qhpj-x27q/GHSA-4g9q-qhpj-x27q.json @@ -7,12 +7,8 @@ "CVE-2019-20779" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. A TrustZone trusted application can crash via crafted input. The LG ID is LVE-SMP-190003 (May 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h43-v6pq-58m2/GHSA-4h43-v6pq-58m2.json b/advisories/unreviewed/2022/05/GHSA-4h43-v6pq-58m2/GHSA-4h43-v6pq-58m2.json index 725a3566b76..0989d48de0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h43-v6pq-58m2/GHSA-4h43-v6pq-58m2.json +++ b/advisories/unreviewed/2022/05/GHSA-4h43-v6pq-58m2/GHSA-4h43-v6pq-58m2.json @@ -7,12 +7,8 @@ "CVE-2020-2931" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Web Applications - InfoCenter). Supported versions that are affected are 8.6.0-8.6.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks of this vulnerability can result in takeover of Oracle Knowledge. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hp8-3763-63r8/GHSA-4hp8-3763-63r8.json b/advisories/unreviewed/2022/05/GHSA-4hp8-3763-63r8/GHSA-4hp8-3763-63r8.json index d41de68860a..377fed4de86 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hp8-3763-63r8/GHSA-4hp8-3763-63r8.json +++ b/advisories/unreviewed/2022/05/GHSA-4hp8-3763-63r8/GHSA-4hp8-3763-63r8.json @@ -7,12 +7,8 @@ "CVE-2019-20745" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WAC505 before 5.0.10.2 and WAC510 before 5.0.10.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j5g-66wh-5764/GHSA-4j5g-66wh-5764.json b/advisories/unreviewed/2022/05/GHSA-4j5g-66wh-5764/GHSA-4j5g-66wh-5764.json index f85b25b822b..033321cf550 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j5g-66wh-5764/GHSA-4j5g-66wh-5764.json +++ b/advisories/unreviewed/2022/05/GHSA-4j5g-66wh-5764/GHSA-4j5g-66wh-5764.json @@ -7,12 +7,8 @@ "CVE-2020-2832" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4m2f-rpgh-x4cm/GHSA-4m2f-rpgh-x4cm.json b/advisories/unreviewed/2022/05/GHSA-4m2f-rpgh-x4cm/GHSA-4m2f-rpgh-x4cm.json index 26acde6ea93..fe6e7cedad1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m2f-rpgh-x4cm/GHSA-4m2f-rpgh-x4cm.json +++ b/advisories/unreviewed/2022/05/GHSA-4m2f-rpgh-x4cm/GHSA-4m2f-rpgh-x4cm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4m2j-hvj5-qhq7/GHSA-4m2j-hvj5-qhq7.json b/advisories/unreviewed/2022/05/GHSA-4m2j-hvj5-qhq7/GHSA-4m2j-hvj5-qhq7.json index 58df4ea0b41..9f49a2acde1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m2j-hvj5-qhq7/GHSA-4m2j-hvj5-qhq7.json +++ b/advisories/unreviewed/2022/05/GHSA-4m2j-hvj5-qhq7/GHSA-4m2j-hvj5-qhq7.json @@ -7,12 +7,8 @@ "CVE-2020-2891" ], "details": "Vulnerability in the Oracle Financial Services Liquidity Risk Management product of Oracle Financial Services Applications (component: User Interfaces). The supported version that is affected is 8.0.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Liquidity Risk Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Liquidity Risk Management accessible data as well as unauthorized read access to a subset of Oracle Financial Services Liquidity Risk Management accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4m9m-w7cw-37wv/GHSA-4m9m-w7cw-37wv.json b/advisories/unreviewed/2022/05/GHSA-4m9m-w7cw-37wv/GHSA-4m9m-w7cw-37wv.json index a71f7e9043f..e34e6843b09 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m9m-w7cw-37wv/GHSA-4m9m-w7cw-37wv.json +++ b/advisories/unreviewed/2022/05/GHSA-4m9m-w7cw-37wv/GHSA-4m9m-w7cw-37wv.json @@ -7,12 +7,8 @@ "CVE-2020-2827" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p2g-rhmv-24f7/GHSA-4p2g-rhmv-24f7.json b/advisories/unreviewed/2022/05/GHSA-4p2g-rhmv-24f7/GHSA-4p2g-rhmv-24f7.json index c2c17080f1d..1261c15003a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p2g-rhmv-24f7/GHSA-4p2g-rhmv-24f7.json +++ b/advisories/unreviewed/2022/05/GHSA-4p2g-rhmv-24f7/GHSA-4p2g-rhmv-24f7.json @@ -7,12 +7,8 @@ "CVE-2020-2945" ], "details": "Vulnerability in the Oracle Financial Services Deposit Insurance Calculations for Liquidity Risk Management product of Oracle Financial Services Applications (component: User Interfaces). Supported versions that are affected are 8.0.7 and 8.0.8. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Deposit Insurance Calculations for Liquidity Risk Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Deposit Insurance Calculations for Liquidity Risk Management accessible data as well as unauthorized read access to a subset of Oracle Financial Services Deposit Insurance Calculations for Liquidity Risk Management accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p9w-fg69-wcvg/GHSA-4p9w-fg69-wcvg.json b/advisories/unreviewed/2022/05/GHSA-4p9w-fg69-wcvg/GHSA-4p9w-fg69-wcvg.json index 9f066277f1f..388d261a0a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p9w-fg69-wcvg/GHSA-4p9w-fg69-wcvg.json +++ b/advisories/unreviewed/2022/05/GHSA-4p9w-fg69-wcvg/GHSA-4p9w-fg69-wcvg.json @@ -7,12 +7,8 @@ "CVE-2020-7259" ], "details": "Exploitation of Privilege/Trust vulnerability in file in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to bypass local security protection via a carefully crafted input file", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4pgr-2c6g-3fhf/GHSA-4pgr-2c6g-3fhf.json b/advisories/unreviewed/2022/05/GHSA-4pgr-2c6g-3fhf/GHSA-4pgr-2c6g-3fhf.json index 77e600a433d..0492f8c67c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pgr-2c6g-3fhf/GHSA-4pgr-2c6g-3fhf.json +++ b/advisories/unreviewed/2022/05/GHSA-4pgr-2c6g-3fhf/GHSA-4pgr-2c6g-3fhf.json @@ -7,12 +7,8 @@ "CVE-2020-11891" ], "details": "An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized editing of usergroups.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pw9-qw5j-7xr6/GHSA-4pw9-qw5j-7xr6.json b/advisories/unreviewed/2022/05/GHSA-4pw9-qw5j-7xr6/GHSA-4pw9-qw5j-7xr6.json index bf5018c73a9..92bf75873ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pw9-qw5j-7xr6/GHSA-4pw9-qw5j-7xr6.json +++ b/advisories/unreviewed/2022/05/GHSA-4pw9-qw5j-7xr6/GHSA-4pw9-qw5j-7xr6.json @@ -7,12 +7,8 @@ "CVE-2020-0918" ], "details": "An elevation of privilege vulnerability exists when Windows Hyper-V on a host server fails to properly handle objects in memory, aka 'Windows Hyper-V Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0917.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4q3w-mqx4-gcw2/GHSA-4q3w-mqx4-gcw2.json b/advisories/unreviewed/2022/05/GHSA-4q3w-mqx4-gcw2/GHSA-4q3w-mqx4-gcw2.json index 463bc7387ca..b0a9f1b8340 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q3w-mqx4-gcw2/GHSA-4q3w-mqx4-gcw2.json +++ b/advisories/unreviewed/2022/05/GHSA-4q3w-mqx4-gcw2/GHSA-4q3w-mqx4-gcw2.json @@ -7,12 +7,8 @@ "CVE-2018-21150" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D7800 before 1.0.1.34, DM200 before 1.0.0.50, R6100 before 1.0.1.22, R7500 before 1.0.0.122, R7500v2 before 1.0.3.26, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.54, WNDR4500v3 before 1.0.0.54, and WNR2000v5 before 1.0.0.64.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4qfh-xcp4-cgp9/GHSA-4qfh-xcp4-cgp9.json b/advisories/unreviewed/2022/05/GHSA-4qfh-xcp4-cgp9/GHSA-4qfh-xcp4-cgp9.json index 5f79de961d5..728109f5c76 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qfh-xcp4-cgp9/GHSA-4qfh-xcp4-cgp9.json +++ b/advisories/unreviewed/2022/05/GHSA-4qfh-xcp4-cgp9/GHSA-4qfh-xcp4-cgp9.json @@ -7,12 +7,8 @@ "CVE-2019-14111" ], "details": "Possible buffer overflow while handling NAN reception of NMF in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018, IPQ8074, Nicobar, QCA6390, QCA8081, QCN7605, QCS404, QCS405, Rennell, SC7180, SC8180X, SM6150, SM7150, SM8150, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4qgw-9x4q-fwqx/GHSA-4qgw-9x4q-fwqx.json b/advisories/unreviewed/2022/05/GHSA-4qgw-9x4q-fwqx/GHSA-4qgw-9x4q-fwqx.json index 11728312318..449a93e2e8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qgw-9x4q-fwqx/GHSA-4qgw-9x4q-fwqx.json +++ b/advisories/unreviewed/2022/05/GHSA-4qgw-9x4q-fwqx/GHSA-4qgw-9x4q-fwqx.json @@ -7,12 +7,8 @@ "CVE-2020-2899" ], "details": "Vulnerability in the PeopleSoft Enterprise SCM Purchasing product of Oracle PeopleSoft (component: Purchasing). The supported version that is affected is 9.2. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise SCM Purchasing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise SCM Purchasing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise SCM Purchasing accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise SCM Purchasing accessible data. CVSS 3.0 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4r2q-5ff4-r8pg/GHSA-4r2q-5ff4-r8pg.json b/advisories/unreviewed/2022/05/GHSA-4r2q-5ff4-r8pg/GHSA-4r2q-5ff4-r8pg.json index 97922e0d9fa..500bc10386f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r2q-5ff4-r8pg/GHSA-4r2q-5ff4-r8pg.json +++ b/advisories/unreviewed/2022/05/GHSA-4r2q-5ff4-r8pg/GHSA-4r2q-5ff4-r8pg.json @@ -7,12 +7,8 @@ "CVE-2018-21111" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.60, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WNDR3700v4 before 1.0.2.102, WNDR4300 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, and WNR2000v5 before 1.0.0.66.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4r2w-rq9g-2cgf/GHSA-4r2w-rq9g-2cgf.json b/advisories/unreviewed/2022/05/GHSA-4r2w-rq9g-2cgf/GHSA-4r2w-rq9g-2cgf.json index d4ef4c57d1e..e95a7290ad1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r2w-rq9g-2cgf/GHSA-4r2w-rq9g-2cgf.json +++ b/advisories/unreviewed/2022/05/GHSA-4r2w-rq9g-2cgf/GHSA-4r2w-rq9g-2cgf.json @@ -7,12 +7,8 @@ "CVE-2019-20697" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects GS728TPPv2 before 6.0.0.48, GS728TPv2 before 6.0.0.48, GS750E before 1.0.1.4, GS752TPP before 6.0.0.48, and GS752TPv2 before 6.0.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4r6p-ff6w-vwv3/GHSA-4r6p-ff6w-vwv3.json b/advisories/unreviewed/2022/05/GHSA-4r6p-ff6w-vwv3/GHSA-4r6p-ff6w-vwv3.json index f09c8a93c88..828885ec1e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r6p-ff6w-vwv3/GHSA-4r6p-ff6w-vwv3.json +++ b/advisories/unreviewed/2022/05/GHSA-4r6p-ff6w-vwv3/GHSA-4r6p-ff6w-vwv3.json @@ -7,12 +7,8 @@ "CVE-2017-18815" ], "details": "NETGEAR ReadyNAS OS 6 devices, running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v5g-r6mf-cq6v/GHSA-4v5g-r6mf-cq6v.json b/advisories/unreviewed/2022/05/GHSA-4v5g-r6mf-cq6v/GHSA-4v5g-r6mf-cq6v.json index 896cae49fe8..9cad9ffbafe 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v5g-r6mf-cq6v/GHSA-4v5g-r6mf-cq6v.json +++ b/advisories/unreviewed/2022/05/GHSA-4v5g-r6mf-cq6v/GHSA-4v5g-r6mf-cq6v.json @@ -7,12 +7,8 @@ "CVE-2019-4762" ], "details": "IBM MQ 9.0 and 9.1 is vulnerable to a denial of service attack due to an error in the Channel processing function. IBM X-Force ID: 173625.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4vcj-p6rj-9c62/GHSA-4vcj-p6rj-9c62.json b/advisories/unreviewed/2022/05/GHSA-4vcj-p6rj-9c62/GHSA-4vcj-p6rj-9c62.json index 9f4e36a31c6..8c59f66362b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vcj-p6rj-9c62/GHSA-4vcj-p6rj-9c62.json +++ b/advisories/unreviewed/2022/05/GHSA-4vcj-p6rj-9c62/GHSA-4vcj-p6rj-9c62.json @@ -7,12 +7,8 @@ "CVE-2017-18788" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D6100 before 1.0.0.56, D6200 before 1.1.00.24, D6220 before 1.0.0.32, D6400 before 1.0.0.66, D7000 before 1.0.1.52, D7000v2 before 1.0.0.44, D7800 before 1.0.1.30, D8500 before 1.0.3.35, DGN2200v4 before 1.0.0.96, DGN2200Bv4 before 1.0.0.96, EX2700 before 1.0.1.28, EX6150v2 before 1.0.1.54, EX6100v2 before 1.0.1.54, EX6200v2 before 1.0.1.52, EX6400 before 1.0.1.72, EX7300 before 1.0.1.72, EX8000 before 1.0.0.102, JNR1010v2 before 1.1.0.44, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6100 before 1.0.1.20, R6250 before 1.0.4.16, R6300v2 before 1.0.4.18, R6400 before 1.0.1.32, R6400v2 before 1.0.2.46, R6700 before 1.0.1.36, R6900 before 1.0.1.34, R7000 before 1.0.9.18, R6900P before 1.3.0.8, R7000P before 1.3.0.8, R7100LG before 1.0.0.34, R7300DST before 1.0.0.58, R7500 before 1.0.0.118, R7500v2 before 1.0.3.24, R7800 before 1.0.2.40, R7900 before 1.0.2.4, R8000 before 1.0.4.4_1.1.42, R7900P before 1.1.5.14, R8000P before 1.1.5.14, R8300 before 1.0.2.110, R8500 before 1.0.2.110, R9000 before 1.0.2.52, WN2000RPTv3 before 1.0.1.14, WN3000RPv3 before 1.0.2.50, WN3100RPv2 before 1.0.0.40, WNDR3400v3 before 1.0.1.16, WNDR3700v4 before 1.0.2.94, WNDR4300 before 1.0.2.96, WNDR4300v2 before 1.0.0.50, WNDR4500v3 before 1.0.0.50, WNR1000v4 before 1.1.0.44, WNR2000v5 before 1.0.0.62, WNR2020 before 1.1.0.44, WNR2050 before 1.1.0.44, and WNR3500Lv2 before 1.2.0.46.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4vh6-rxvj-rwh4/GHSA-4vh6-rxvj-rwh4.json b/advisories/unreviewed/2022/05/GHSA-4vh6-rxvj-rwh4/GHSA-4vh6-rxvj-rwh4.json index 0d557bfd109..5e70f6d64fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vh6-rxvj-rwh4/GHSA-4vh6-rxvj-rwh4.json +++ b/advisories/unreviewed/2022/05/GHSA-4vh6-rxvj-rwh4/GHSA-4vh6-rxvj-rwh4.json @@ -7,12 +7,8 @@ "CVE-2020-9277" ], "details": "An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. Authentication can be bypassed when accessing cgi modules. This allows one to perform administrative tasks (e.g., modify the admin password) with no authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4vvr-9gf5-xjc4/GHSA-4vvr-9gf5-xjc4.json b/advisories/unreviewed/2022/05/GHSA-4vvr-9gf5-xjc4/GHSA-4vvr-9gf5-xjc4.json index 563fec22f6b..9e0322364e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vvr-9gf5-xjc4/GHSA-4vvr-9gf5-xjc4.json +++ b/advisories/unreviewed/2022/05/GHSA-4vvr-9gf5-xjc4/GHSA-4vvr-9gf5-xjc4.json @@ -7,12 +7,8 @@ "CVE-2019-10589" ], "details": "Lack of length check of response buffer can lead to buffer over-flow while GP command response buffer handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8098, MDM9206, MDM9607, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, QM215, SDA660, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4w83-xc44-r8rq/GHSA-4w83-xc44-r8rq.json b/advisories/unreviewed/2022/05/GHSA-4w83-xc44-r8rq/GHSA-4w83-xc44-r8rq.json index 842066784e1..05e486244d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w83-xc44-r8rq/GHSA-4w83-xc44-r8rq.json +++ b/advisories/unreviewed/2022/05/GHSA-4w83-xc44-r8rq/GHSA-4w83-xc44-r8rq.json @@ -7,12 +7,8 @@ "CVE-2019-20703" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4x49-mjxg-f5jc/GHSA-4x49-mjxg-f5jc.json b/advisories/unreviewed/2022/05/GHSA-4x49-mjxg-f5jc/GHSA-4x49-mjxg-f5jc.json index 9ff9d71aeb9..79f32d676af 100644 --- a/advisories/unreviewed/2022/05/GHSA-4x49-mjxg-f5jc/GHSA-4x49-mjxg-f5jc.json +++ b/advisories/unreviewed/2022/05/GHSA-4x49-mjxg-f5jc/GHSA-4x49-mjxg-f5jc.json @@ -7,12 +7,8 @@ "CVE-2017-18812" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xr5-jcrf-96w3/GHSA-4xr5-jcrf-96w3.json b/advisories/unreviewed/2022/05/GHSA-4xr5-jcrf-96w3/GHSA-4xr5-jcrf-96w3.json index a7e86fde9b9..34d5cb11f05 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xr5-jcrf-96w3/GHSA-4xr5-jcrf-96w3.json +++ b/advisories/unreviewed/2022/05/GHSA-4xr5-jcrf-96w3/GHSA-4xr5-jcrf-96w3.json @@ -7,12 +7,8 @@ "CVE-2020-7484" ], "details": "**VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability with the former 'password' feature could allow a denial of service attack if the user is not following documented guidelines pertaining to dedicated TriStation connection and key-switch protection. This vulnerability was discovered and remediated in versions v4.9.1 and v4.10.1 on May 30, 2013. This feature is not present in version v4.9.1 and v4.10.1 through current. Therefore, the vulnerability is not present in these versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xwg-h49w-4q68/GHSA-4xwg-h49w-4q68.json b/advisories/unreviewed/2022/05/GHSA-4xwg-h49w-4q68/GHSA-4xwg-h49w-4q68.json index cd5a6d69fe7..231fa1d61c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xwg-h49w-4q68/GHSA-4xwg-h49w-4q68.json +++ b/advisories/unreviewed/2022/05/GHSA-4xwg-h49w-4q68/GHSA-4xwg-h49w-4q68.json @@ -7,12 +7,8 @@ "CVE-2019-14020" ], "details": "Multiple Read overflows issue due to improper length check while decoding dedicated_eps_bearer_req/ act_def_context_req/ cs_serv_notification/ emm_info/ guti_realloc_cmd in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-52f4-cjg2-mpf2/GHSA-52f4-cjg2-mpf2.json b/advisories/unreviewed/2022/05/GHSA-52f4-cjg2-mpf2/GHSA-52f4-cjg2-mpf2.json index 738c3dc61aa..0ac5766e1d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-52f4-cjg2-mpf2/GHSA-52f4-cjg2-mpf2.json +++ b/advisories/unreviewed/2022/05/GHSA-52f4-cjg2-mpf2/GHSA-52f4-cjg2-mpf2.json @@ -7,12 +7,8 @@ "CVE-2019-20753" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects DGN2200v1 before 1.0.0.58, D8500 before 1.0.3.42, D7000v2 before 1.0.0.51, D6400 before 1.0.0.78, D6220 before 1.0.0.44, JNDR3000 before 1.0.0.24, R8000 before 1.0.4.18, R8500 before 1.0.2.122, R8300 before 1.0.2.122, R7900 before 1.0.2.16, R7000P before 1.3.2.34, R7300DST before 1.0.0.68, R7100LG before 1.0.0.46, R6900P before 1.3.2.34, R7000 before 1.0.9.28, R6900 before 1.0.1.46, R6700 before 1.0.1.46, R6400v2 before 1.0.2.56, R6400 before 1.0.1.42, R6300v2 before 1.0.4.28, R6250 before 1.0.4.26, WNDR3400v3 before 1.0.1.22, WNDR4500v2 before 1.0.0.72, and WNR3500Lv2 before 1.2.0.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-534r-p456-vxp5/GHSA-534r-p456-vxp5.json b/advisories/unreviewed/2022/05/GHSA-534r-p456-vxp5/GHSA-534r-p456-vxp5.json index b7a096ee77c..1daa2db5796 100644 --- a/advisories/unreviewed/2022/05/GHSA-534r-p456-vxp5/GHSA-534r-p456-vxp5.json +++ b/advisories/unreviewed/2022/05/GHSA-534r-p456-vxp5/GHSA-534r-p456-vxp5.json @@ -7,12 +7,8 @@ "CVE-2020-11811" ], "details": "In qdPM 9.1, an attacker can upload a malicious .php file to the server by exploiting the Add Profile Photo capability with a crafted content-type value. After that, the attacker can execute an arbitrary command on the server using this malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5392-cgm7-m28v/GHSA-5392-cgm7-m28v.json b/advisories/unreviewed/2022/05/GHSA-5392-cgm7-m28v/GHSA-5392-cgm7-m28v.json index 4f564f713fe..80d36ff31e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5392-cgm7-m28v/GHSA-5392-cgm7-m28v.json +++ b/advisories/unreviewed/2022/05/GHSA-5392-cgm7-m28v/GHSA-5392-cgm7-m28v.json @@ -7,12 +7,8 @@ "CVE-2020-2932" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console). Supported versions that are affected are 8.6.0-8.6.3. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Knowledge. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53gr-vc32-vmmg/GHSA-53gr-vc32-vmmg.json b/advisories/unreviewed/2022/05/GHSA-53gr-vc32-vmmg/GHSA-53gr-vc32-vmmg.json index 32fc4c54f58..8e6dc642bcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-53gr-vc32-vmmg/GHSA-53gr-vc32-vmmg.json +++ b/advisories/unreviewed/2022/05/GHSA-53gr-vc32-vmmg/GHSA-53gr-vc32-vmmg.json @@ -7,12 +7,8 @@ "CVE-2020-2808" ], "details": "Vulnerability in the Oracle E-Business Intelligence product of Oracle E-Business Suite (component: DBI Setups). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle E-Business Intelligence. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle E-Business Intelligence, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle E-Business Intelligence accessible data as well as unauthorized update, insert or delete access to some of Oracle E-Business Intelligence accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5546-r4rx-4cwq/GHSA-5546-r4rx-4cwq.json b/advisories/unreviewed/2022/05/GHSA-5546-r4rx-4cwq/GHSA-5546-r4rx-4cwq.json index 836f3ae0edb..9807f3b70f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5546-r4rx-4cwq/GHSA-5546-r4rx-4cwq.json +++ b/advisories/unreviewed/2022/05/GHSA-5546-r4rx-4cwq/GHSA-5546-r4rx-4cwq.json @@ -7,12 +7,8 @@ "CVE-2019-14112" ], "details": "Potential buffer overflow while processing CBF frames due to lack of check of buffer length before copy in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8098, IPQ6018, IPQ8074, MSM8998, Nicobar, QCA8081, QCN7605, QCS404, QCS605, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-55r5-rgrm-3p3h/GHSA-55r5-rgrm-3p3h.json b/advisories/unreviewed/2022/05/GHSA-55r5-rgrm-3p3h/GHSA-55r5-rgrm-3p3h.json index 1bd1b043add..0c087427317 100644 --- a/advisories/unreviewed/2022/05/GHSA-55r5-rgrm-3p3h/GHSA-55r5-rgrm-3p3h.json +++ b/advisories/unreviewed/2022/05/GHSA-55r5-rgrm-3p3h/GHSA-55r5-rgrm-3p3h.json @@ -7,12 +7,8 @@ "CVE-2020-2861" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-567v-x3qm-7m8r/GHSA-567v-x3qm-7m8r.json b/advisories/unreviewed/2022/05/GHSA-567v-x3qm-7m8r/GHSA-567v-x3qm-7m8r.json index 42dfe0b79f1..8439e493499 100644 --- a/advisories/unreviewed/2022/05/GHSA-567v-x3qm-7m8r/GHSA-567v-x3qm-7m8r.json +++ b/advisories/unreviewed/2022/05/GHSA-567v-x3qm-7m8r/GHSA-567v-x3qm-7m8r.json @@ -7,12 +7,8 @@ "CVE-2019-20782" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. LG Advanced Flash (LAF) has a buffer overflow. The LG ID is LVE-SMP-190001 (March 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-57f9-hc62-m959/GHSA-57f9-hc62-m959.json b/advisories/unreviewed/2022/05/GHSA-57f9-hc62-m959/GHSA-57f9-hc62-m959.json index c86ad3fc52c..b405db3cc77 100644 --- a/advisories/unreviewed/2022/05/GHSA-57f9-hc62-m959/GHSA-57f9-hc62-m959.json +++ b/advisories/unreviewed/2022/05/GHSA-57f9-hc62-m959/GHSA-57f9-hc62-m959.json @@ -7,12 +7,8 @@ "CVE-2020-2912" ], "details": "Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Self-Service). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise CS Campus Community. While the vulnerability is in PeopleSoft Enterprise CS Campus Community, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise CS Campus Community accessible data. CVSS 3.0 Base Score 5.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-57qq-hwp2-xmcj/GHSA-57qq-hwp2-xmcj.json b/advisories/unreviewed/2022/05/GHSA-57qq-hwp2-xmcj/GHSA-57qq-hwp2-xmcj.json index 267f1a16ad5..960e956ef4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-57qq-hwp2-xmcj/GHSA-57qq-hwp2-xmcj.json +++ b/advisories/unreviewed/2022/05/GHSA-57qq-hwp2-xmcj/GHSA-57qq-hwp2-xmcj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5972-jjp3-vqm8/GHSA-5972-jjp3-vqm8.json b/advisories/unreviewed/2022/05/GHSA-5972-jjp3-vqm8/GHSA-5972-jjp3-vqm8.json index af52d19a8ce..8198a4b30c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-5972-jjp3-vqm8/GHSA-5972-jjp3-vqm8.json +++ b/advisories/unreviewed/2022/05/GHSA-5972-jjp3-vqm8/GHSA-5972-jjp3-vqm8.json @@ -7,12 +7,8 @@ "CVE-2020-11815" ], "details": "In Rukovoditel 2.5.2, attackers can upload arbitrary file to the server by just changing the content-type value. As a result of that, an attacker can execute a command on the server. This specific attack only occurs without the Maintenance Mode setting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-598p-9996-xww3/GHSA-598p-9996-xww3.json b/advisories/unreviewed/2022/05/GHSA-598p-9996-xww3/GHSA-598p-9996-xww3.json index 871448ed183..8e5b5d53c8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-598p-9996-xww3/GHSA-598p-9996-xww3.json +++ b/advisories/unreviewed/2022/05/GHSA-598p-9996-xww3/GHSA-598p-9996-xww3.json @@ -7,12 +7,8 @@ "CVE-2020-5730" ], "details": "In OpenMRS 2.9 and prior, the sessionLocation parameter for the login page is vulnerable to cross-site scripting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5c69-945h-vfxc/GHSA-5c69-945h-vfxc.json b/advisories/unreviewed/2022/05/GHSA-5c69-945h-vfxc/GHSA-5c69-945h-vfxc.json index e03779fc2be..33448c68a7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c69-945h-vfxc/GHSA-5c69-945h-vfxc.json +++ b/advisories/unreviewed/2022/05/GHSA-5c69-945h-vfxc/GHSA-5c69-945h-vfxc.json @@ -7,12 +7,8 @@ "CVE-2020-2949" ], "details": "Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching, CacheStore, Invocation). Supported versions that are affected are 3.7.1.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Coherence accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cj2-hj3j-2hv4/GHSA-5cj2-hj3j-2hv4.json b/advisories/unreviewed/2022/05/GHSA-5cj2-hj3j-2hv4/GHSA-5cj2-hj3j-2hv4.json index 3f06700ab3f..27554c8ff6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cj2-hj3j-2hv4/GHSA-5cj2-hj3j-2hv4.json +++ b/advisories/unreviewed/2022/05/GHSA-5cj2-hj3j-2hv4/GHSA-5cj2-hj3j-2hv4.json @@ -7,12 +7,8 @@ "CVE-2019-10551" ], "details": "String error while processing non standard SIP messages received can lead to buffer overread and then denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cm9-wppc-4mxm/GHSA-5cm9-wppc-4mxm.json b/advisories/unreviewed/2022/05/GHSA-5cm9-wppc-4mxm/GHSA-5cm9-wppc-4mxm.json index 5d4d304de4e..3480b2efffd 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cm9-wppc-4mxm/GHSA-5cm9-wppc-4mxm.json +++ b/advisories/unreviewed/2022/05/GHSA-5cm9-wppc-4mxm/GHSA-5cm9-wppc-4mxm.json @@ -7,12 +7,8 @@ "CVE-2020-2850" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5crh-973f-rf4c/GHSA-5crh-973f-rf4c.json b/advisories/unreviewed/2022/05/GHSA-5crh-973f-rf4c/GHSA-5crh-973f-rf4c.json index f87bbba2773..0144a0d4899 100644 --- a/advisories/unreviewed/2022/05/GHSA-5crh-973f-rf4c/GHSA-5crh-973f-rf4c.json +++ b/advisories/unreviewed/2022/05/GHSA-5crh-973f-rf4c/GHSA-5crh-973f-rf4c.json @@ -7,12 +7,8 @@ "CVE-2017-18809" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cvx-2qx8-xfqp/GHSA-5cvx-2qx8-xfqp.json b/advisories/unreviewed/2022/05/GHSA-5cvx-2qx8-xfqp/GHSA-5cvx-2qx8-xfqp.json index 42683ef4eb5..705aa8dc1ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cvx-2qx8-xfqp/GHSA-5cvx-2qx8-xfqp.json +++ b/advisories/unreviewed/2022/05/GHSA-5cvx-2qx8-xfqp/GHSA-5cvx-2qx8-xfqp.json @@ -7,12 +7,8 @@ "CVE-2019-20705" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fr2-pwj5-vp23/GHSA-5fr2-pwj5-vp23.json b/advisories/unreviewed/2022/05/GHSA-5fr2-pwj5-vp23/GHSA-5fr2-pwj5-vp23.json index 98669db1411..57313304d27 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fr2-pwj5-vp23/GHSA-5fr2-pwj5-vp23.json +++ b/advisories/unreviewed/2022/05/GHSA-5fr2-pwj5-vp23/GHSA-5fr2-pwj5-vp23.json @@ -7,12 +7,8 @@ "CVE-2019-14113" ], "details": "Buffer overflow can occur in In WLAN firmware while unwraping data using CCMP cipher suite during parsing of EAPOL handshake frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996AU, MSM8998, Nicobar, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS404, QCS405, QCS605, Rennell, SA6155P, SC7180, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hmf-9xw5-54xx/GHSA-5hmf-9xw5-54xx.json b/advisories/unreviewed/2022/05/GHSA-5hmf-9xw5-54xx/GHSA-5hmf-9xw5-54xx.json index 9465b98b60a..54667c6ff27 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hmf-9xw5-54xx/GHSA-5hmf-9xw5-54xx.json +++ b/advisories/unreviewed/2022/05/GHSA-5hmf-9xw5-54xx/GHSA-5hmf-9xw5-54xx.json @@ -7,12 +7,8 @@ "CVE-2019-20685" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6200 before 1.1.00.32, D7000 before 1.0.1.68, DM200 before 1.0.0.58, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.40, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, WNR2020 before 1.1.0.62, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5j6j-wj48-h95x/GHSA-5j6j-wj48-h95x.json b/advisories/unreviewed/2022/05/GHSA-5j6j-wj48-h95x/GHSA-5j6j-wj48-h95x.json index ab75a337844..56651490e20 100644 --- a/advisories/unreviewed/2022/05/GHSA-5j6j-wj48-h95x/GHSA-5j6j-wj48-h95x.json +++ b/advisories/unreviewed/2022/05/GHSA-5j6j-wj48-h95x/GHSA-5j6j-wj48-h95x.json @@ -7,12 +7,8 @@ "CVE-2019-20726" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5jf3-c8qv-652g/GHSA-5jf3-c8qv-652g.json b/advisories/unreviewed/2022/05/GHSA-5jf3-c8qv-652g/GHSA-5jf3-c8qv-652g.json index 74663ab6b93..a6b9be619d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jf3-c8qv-652g/GHSA-5jf3-c8qv-652g.json +++ b/advisories/unreviewed/2022/05/GHSA-5jf3-c8qv-652g/GHSA-5jf3-c8qv-652g.json @@ -7,12 +7,8 @@ "CVE-2020-7257" ], "details": "Privilege escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows local users to cause the deletion and creation of files they would not normally have permission to through altering the target of symbolic links whilst an anti-virus scan was in progress. This is timing dependent.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5jp2-26h4-r89j/GHSA-5jp2-26h4-r89j.json b/advisories/unreviewed/2022/05/GHSA-5jp2-26h4-r89j/GHSA-5jp2-26h4-r89j.json index c9587b3110d..88ca070e198 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jp2-26h4-r89j/GHSA-5jp2-26h4-r89j.json +++ b/advisories/unreviewed/2022/05/GHSA-5jp2-26h4-r89j/GHSA-5jp2-26h4-r89j.json @@ -7,12 +7,8 @@ "CVE-2020-3953" ], "details": "Cross Site Scripting (XSS) vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5m7v-v37g-x24f/GHSA-5m7v-v37g-x24f.json b/advisories/unreviewed/2022/05/GHSA-5m7v-v37g-x24f/GHSA-5m7v-v37g-x24f.json index 2ba84731133..df25270d874 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m7v-v37g-x24f/GHSA-5m7v-v37g-x24f.json +++ b/advisories/unreviewed/2022/05/GHSA-5m7v-v37g-x24f/GHSA-5m7v-v37g-x24f.json @@ -7,12 +7,8 @@ "CVE-2019-20739" ], "details": "NETGEAR R8500 devices before v1.0.2.128 are affected by a buffer overflow by an unauthenticated attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mjw-pf7p-h387/GHSA-5mjw-pf7p-h387.json b/advisories/unreviewed/2022/05/GHSA-5mjw-pf7p-h387/GHSA-5mjw-pf7p-h387.json index 2dc7d2f9834..101d0d5e38f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mjw-pf7p-h387/GHSA-5mjw-pf7p-h387.json +++ b/advisories/unreviewed/2022/05/GHSA-5mjw-pf7p-h387/GHSA-5mjw-pf7p-h387.json @@ -7,12 +7,8 @@ "CVE-2019-20760" ], "details": "NETGEAR R9000 devices before 1.0.4.26 are affected by authentication bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5px2-pxjc-8255/GHSA-5px2-pxjc-8255.json b/advisories/unreviewed/2022/05/GHSA-5px2-pxjc-8255/GHSA-5px2-pxjc-8255.json index 5770058745b..54b1ecd8513 100644 --- a/advisories/unreviewed/2022/05/GHSA-5px2-pxjc-8255/GHSA-5px2-pxjc-8255.json +++ b/advisories/unreviewed/2022/05/GHSA-5px2-pxjc-8255/GHSA-5px2-pxjc-8255.json @@ -7,12 +7,8 @@ "CVE-2020-11814" ], "details": "A Host Header Injection vulnerability in qdPM 9.1 may allow an attacker to spoof a particular header and redirect users to malicious websites.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5v2g-7w37-62pw/GHSA-5v2g-7w37-62pw.json b/advisories/unreviewed/2022/05/GHSA-5v2g-7w37-62pw/GHSA-5v2g-7w37-62pw.json index 7169fcb7a19..43b263584e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5v2g-7w37-62pw/GHSA-5v2g-7w37-62pw.json +++ b/advisories/unreviewed/2022/05/GHSA-5v2g-7w37-62pw/GHSA-5v2g-7w37-62pw.json @@ -7,12 +7,8 @@ "CVE-2019-20702" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vqx-2rf2-p3rm/GHSA-5vqx-2rf2-p3rm.json b/advisories/unreviewed/2022/05/GHSA-5vqx-2rf2-p3rm/GHSA-5vqx-2rf2-p3rm.json index db34dc466e9..a3acf860bec 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vqx-2rf2-p3rm/GHSA-5vqx-2rf2-p3rm.json +++ b/advisories/unreviewed/2022/05/GHSA-5vqx-2rf2-p3rm/GHSA-5vqx-2rf2-p3rm.json @@ -7,12 +7,8 @@ "CVE-2020-11874" ], "details": "An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9, and 10 software. Attackers can bypass Factory Reset Protection (FRP). The LG ID is LVE-SMP-200004 (March 2020).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5x63-mggh-9qxw/GHSA-5x63-mggh-9qxw.json b/advisories/unreviewed/2022/05/GHSA-5x63-mggh-9qxw/GHSA-5x63-mggh-9qxw.json index eb62728d36d..2403e4fbe20 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x63-mggh-9qxw/GHSA-5x63-mggh-9qxw.json +++ b/advisories/unreviewed/2022/05/GHSA-5x63-mggh-9qxw/GHSA-5x63-mggh-9qxw.json @@ -7,12 +7,8 @@ "CVE-2020-2802" ], "details": "Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle GraalVM (component: GraalVM Compiler). Supported versions that are affected are 19.3.1 and 20.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise Oracle GraalVM Enterprise Edition. While the vulnerability is in Oracle GraalVM Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle GraalVM Enterprise Edition. CVSS 3.0 Base Score 7.7 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62pp-pvjj-2j6c/GHSA-62pp-pvjj-2j6c.json b/advisories/unreviewed/2022/05/GHSA-62pp-pvjj-2j6c/GHSA-62pp-pvjj-2j6c.json index ffebc4f2b5a..d88d435b312 100644 --- a/advisories/unreviewed/2022/05/GHSA-62pp-pvjj-2j6c/GHSA-62pp-pvjj-2j6c.json +++ b/advisories/unreviewed/2022/05/GHSA-62pp-pvjj-2j6c/GHSA-62pp-pvjj-2j6c.json @@ -7,12 +7,8 @@ "CVE-2019-10623" ], "details": "Possible integer overflow can happen in host driver while processing user controlled string due to improper validation on data received. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCN7605, QCS605, Rennell, SC8180X, SDA845, SDM710, SDX24, SDX55, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-644f-46g4-r68h/GHSA-644f-46g4-r68h.json b/advisories/unreviewed/2022/05/GHSA-644f-46g4-r68h/GHSA-644f-46g4-r68h.json index d371b2397f2..8008ff39a41 100644 --- a/advisories/unreviewed/2022/05/GHSA-644f-46g4-r68h/GHSA-644f-46g4-r68h.json +++ b/advisories/unreviewed/2022/05/GHSA-644f-46g4-r68h/GHSA-644f-46g4-r68h.json @@ -7,12 +7,8 @@ "CVE-2019-20771" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. WapService allows unconfirmed configuration changes via a modified OMACP message. The LG ID is LVE-SMP-190006 (August 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-645r-m8hj-xrhv/GHSA-645r-m8hj-xrhv.json b/advisories/unreviewed/2022/05/GHSA-645r-m8hj-xrhv/GHSA-645r-m8hj-xrhv.json index df1521c9d45..86320383a66 100644 --- a/advisories/unreviewed/2022/05/GHSA-645r-m8hj-xrhv/GHSA-645r-m8hj-xrhv.json +++ b/advisories/unreviewed/2022/05/GHSA-645r-m8hj-xrhv/GHSA-645r-m8hj-xrhv.json @@ -7,12 +7,8 @@ "CVE-2017-18756" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6220 before 1.0.0.32, D6400 before 1.0.0.66, D8500 before 1.0.3.35, DGN2200Bv4 before 1.0.0.94, DGN2200v4 before 1.0.0.94, R6250 before 1.0.4.14, R6300v2 before 1.0.4.18, R6400 before 1.01.32, R6400v2 before 1.0.2.44, R6700 before 1.0.1.36, R6900 before 1.0.1.30, R6900P before 1.3.0.8, R7000 before 1.0.9.14, R7000P before 1.3.0.8, R7100LG before 1.0.0.34, R7900 before 1.0.2.4, R8000 before 1.0.4.2, WN2500RPv2 before 1.0.1.50, WNDR3400v3 before 1.0.1.14, and WNDR4000 before 1.0.2.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65fw-j36g-4qvw/GHSA-65fw-j36g-4qvw.json b/advisories/unreviewed/2022/05/GHSA-65fw-j36g-4qvw/GHSA-65fw-j36g-4qvw.json index e37191ceecc..bb0b0b3e3b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-65fw-j36g-4qvw/GHSA-65fw-j36g-4qvw.json +++ b/advisories/unreviewed/2022/05/GHSA-65fw-j36g-4qvw/GHSA-65fw-j36g-4qvw.json @@ -7,12 +7,8 @@ "CVE-2019-20749" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.47, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WN2000RPTv3 before 1.0.1.32, WN3000RPv3 before 1.0.2.70, and WN3100RPv2 before 1.0.0.66.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65vm-3xf4-hv4c/GHSA-65vm-3xf4-hv4c.json b/advisories/unreviewed/2022/05/GHSA-65vm-3xf4-hv4c/GHSA-65vm-3xf4-hv4c.json index 8e43d014b2c..573a1d0ce87 100644 --- a/advisories/unreviewed/2022/05/GHSA-65vm-3xf4-hv4c/GHSA-65vm-3xf4-hv4c.json +++ b/advisories/unreviewed/2022/05/GHSA-65vm-3xf4-hv4c/GHSA-65vm-3xf4-hv4c.json @@ -7,12 +7,8 @@ "CVE-2020-2870" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65x6-98fh-f57m/GHSA-65x6-98fh-f57m.json b/advisories/unreviewed/2022/05/GHSA-65x6-98fh-f57m/GHSA-65x6-98fh-f57m.json index 4b0ac9cf245..98953594604 100644 --- a/advisories/unreviewed/2022/05/GHSA-65x6-98fh-f57m/GHSA-65x6-98fh-f57m.json +++ b/advisories/unreviewed/2022/05/GHSA-65x6-98fh-f57m/GHSA-65x6-98fh-f57m.json @@ -7,12 +7,8 @@ "CVE-2020-0073" ], "details": "In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-147309942", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66p2-f6m3-8846/GHSA-66p2-f6m3-8846.json b/advisories/unreviewed/2022/05/GHSA-66p2-f6m3-8846/GHSA-66p2-f6m3-8846.json index e0008668531..eb314c8512c 100644 --- a/advisories/unreviewed/2022/05/GHSA-66p2-f6m3-8846/GHSA-66p2-f6m3-8846.json +++ b/advisories/unreviewed/2022/05/GHSA-66p2-f6m3-8846/GHSA-66p2-f6m3-8846.json @@ -7,12 +7,8 @@ "CVE-2020-2822" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Claims). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66pv-97pv-f4qx/GHSA-66pv-97pv-f4qx.json b/advisories/unreviewed/2022/05/GHSA-66pv-97pv-f4qx/GHSA-66pv-97pv-f4qx.json index 32e058d089a..c55e9a51555 100644 --- a/advisories/unreviewed/2022/05/GHSA-66pv-97pv-f4qx/GHSA-66pv-97pv-f4qx.json +++ b/advisories/unreviewed/2022/05/GHSA-66pv-97pv-f4qx/GHSA-66pv-97pv-f4qx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-69fw-6gfj-m3v8/GHSA-69fw-6gfj-m3v8.json b/advisories/unreviewed/2022/05/GHSA-69fw-6gfj-m3v8/GHSA-69fw-6gfj-m3v8.json index b985e93b237..a0aee684d5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-69fw-6gfj-m3v8/GHSA-69fw-6gfj-m3v8.json +++ b/advisories/unreviewed/2022/05/GHSA-69fw-6gfj-m3v8/GHSA-69fw-6gfj-m3v8.json @@ -7,12 +7,8 @@ "CVE-2020-8948" ], "details": "The Sierra Wireless Windows Mobile Broadband Driver Packages (MBDP) before build 5043 allows an unprivileged user to overwrite arbitrary files in arbitrary folders using hard links. An unprivileged user could leverage this vulnerability to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-69rm-q725-53hr/GHSA-69rm-q725-53hr.json b/advisories/unreviewed/2022/05/GHSA-69rm-q725-53hr/GHSA-69rm-q725-53hr.json index 1b1364dc55c..eef86d29af0 100644 --- a/advisories/unreviewed/2022/05/GHSA-69rm-q725-53hr/GHSA-69rm-q725-53hr.json +++ b/advisories/unreviewed/2022/05/GHSA-69rm-q725-53hr/GHSA-69rm-q725-53hr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-69xc-p83f-62p4/GHSA-69xc-p83f-62p4.json b/advisories/unreviewed/2022/05/GHSA-69xc-p83f-62p4/GHSA-69xc-p83f-62p4.json index e3fd7d408bb..f9bb5e01ea1 100644 --- a/advisories/unreviewed/2022/05/GHSA-69xc-p83f-62p4/GHSA-69xc-p83f-62p4.json +++ b/advisories/unreviewed/2022/05/GHSA-69xc-p83f-62p4/GHSA-69xc-p83f-62p4.json @@ -7,12 +7,8 @@ "CVE-2019-4446" ], "details": "IBM Maximo Asset Management 7.6 could allow an authenticated user perform actions they are not authorized to by modifying request parameters. IBM X-Force ID: 163490.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f6m-86w4-jpj7/GHSA-6f6m-86w4-jpj7.json b/advisories/unreviewed/2022/05/GHSA-6f6m-86w4-jpj7/GHSA-6f6m-86w4-jpj7.json index 428b825de84..212527e9e4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f6m-86w4-jpj7/GHSA-6f6m-86w4-jpj7.json +++ b/advisories/unreviewed/2022/05/GHSA-6f6m-86w4-jpj7/GHSA-6f6m-86w4-jpj7.json @@ -7,12 +7,8 @@ "CVE-2019-12002" ], "details": "A remote session reuse vulnerability leading to access restriction bypass was discovered in HPE MSA 2040 SAN Storage; HPE MSA 1040 SAN Storage; HPE MSA 1050 SAN Storage; HPE MSA 2042 SAN Storage; HPE MSA 2050 SAN Storage; HPE MSA 2052 SAN Storage version(s): GL225P001 and earlier; GL225P001 and earlier; VE270R001-01 and earlier; GL225P001 and earlier; VL270R001-01 and earlier; VL270R001-01 and earlier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6hgj-4388-m7p8/GHSA-6hgj-4388-m7p8.json b/advisories/unreviewed/2022/05/GHSA-6hgj-4388-m7p8/GHSA-6hgj-4388-m7p8.json index 6a06f3ab14a..87f51d961b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hgj-4388-m7p8/GHSA-6hgj-4388-m7p8.json +++ b/advisories/unreviewed/2022/05/GHSA-6hgj-4388-m7p8/GHSA-6hgj-4388-m7p8.json @@ -7,12 +7,8 @@ "CVE-2020-0079" ], "details": "In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds write due to stale pointer. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-144506242", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6jhp-v7mw-4v9f/GHSA-6jhp-v7mw-4v9f.json b/advisories/unreviewed/2022/05/GHSA-6jhp-v7mw-4v9f/GHSA-6jhp-v7mw-4v9f.json index 08b0c614062..f15daecc6f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jhp-v7mw-4v9f/GHSA-6jhp-v7mw-4v9f.json +++ b/advisories/unreviewed/2022/05/GHSA-6jhp-v7mw-4v9f/GHSA-6jhp-v7mw-4v9f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6m87-rx2w-j7jv/GHSA-6m87-rx2w-j7jv.json b/advisories/unreviewed/2022/05/GHSA-6m87-rx2w-j7jv/GHSA-6m87-rx2w-j7jv.json index 413434b20c4..415413fee3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m87-rx2w-j7jv/GHSA-6m87-rx2w-j7jv.json +++ b/advisories/unreviewed/2022/05/GHSA-6m87-rx2w-j7jv/GHSA-6m87-rx2w-j7jv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mcg-qcwq-jvvg/GHSA-6mcg-qcwq-jvvg.json b/advisories/unreviewed/2022/05/GHSA-6mcg-qcwq-jvvg/GHSA-6mcg-qcwq-jvvg.json index a0da16158cc..89cb0e51914 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mcg-qcwq-jvvg/GHSA-6mcg-qcwq-jvvg.json +++ b/advisories/unreviewed/2022/05/GHSA-6mcg-qcwq-jvvg/GHSA-6mcg-qcwq-jvvg.json @@ -7,12 +7,8 @@ "CVE-2020-11828" ], "details": "In ColorOS (oppo mobile phone operating system, based on AOSP frameworks/native code position/services/surfaceflinger surfaceflinger.CPP), RGB is defined on the stack but uninitialized, so when the screenShot function to RGB value assignment, will not initialize the value is returned to the attackers, leading to values on the stack information leakage, the vulnerability can be used to bypass attackers ALSR.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mcw-6382-8vjx/GHSA-6mcw-6382-8vjx.json b/advisories/unreviewed/2022/05/GHSA-6mcw-6382-8vjx/GHSA-6mcw-6382-8vjx.json index ae341284cfb..7996193d7c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mcw-6382-8vjx/GHSA-6mcw-6382-8vjx.json +++ b/advisories/unreviewed/2022/05/GHSA-6mcw-6382-8vjx/GHSA-6mcw-6382-8vjx.json @@ -7,12 +7,8 @@ "CVE-2019-20720" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D7800 before 1.0.1.47, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WN2000RPTv3 before 1.0.1.32, WN3000RPv3 before 1.0.2.70, and WN3100RPv2 before 1.0.0.66.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qpc-px67-mpr3/GHSA-6qpc-px67-mpr3.json b/advisories/unreviewed/2022/05/GHSA-6qpc-px67-mpr3/GHSA-6qpc-px67-mpr3.json index 93b61b7701b..1653146bbbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qpc-px67-mpr3/GHSA-6qpc-px67-mpr3.json +++ b/advisories/unreviewed/2022/05/GHSA-6qpc-px67-mpr3/GHSA-6qpc-px67-mpr3.json @@ -7,12 +7,8 @@ "CVE-2020-7079" ], "details": "An improper signature validation vulnerability in Autodesk Dynamo BIM versions 2.5.1 and 2.5.0 may lead to code execution through maliciously crafted DLL files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qwv-4g82-ff2c/GHSA-6qwv-4g82-ff2c.json b/advisories/unreviewed/2022/05/GHSA-6qwv-4g82-ff2c/GHSA-6qwv-4g82-ff2c.json index e559085a4e3..e2ce0fdf026 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qwv-4g82-ff2c/GHSA-6qwv-4g82-ff2c.json +++ b/advisories/unreviewed/2022/05/GHSA-6qwv-4g82-ff2c/GHSA-6qwv-4g82-ff2c.json @@ -7,12 +7,8 @@ "CVE-2019-20732" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.40, D7000v2 before 1.0.0.74, D8500 before 1.0.3.39, DGN2200v4 before 1.0.0.102, DGND2200Bv4 before 1.0.0.102, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.22, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6250 before 1.0.4.20, R6300v2 before 1.0.4.24, R6400 before 1.0.1.32, R6400v2 before 1.0.2.44, R6700 before 1.0.1.46, R6900 before 1.0.1.46, R7000 before 1.0.9.26, R6900P before 1.3.0.20, R7000P before 1.3.0.20, R7100LG before 1.0.0.40, R7300DST before 1.0.0.62, R7900 before 1.0.2.10, R8000 before 1.0.4.12, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.106, R8500 before 1.0.2.106, WN2500RPv2 before 1.0.1.54, WNDR3400v3 before 1.0.1.18, and WNR3500Lv2 before 1.2.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qxp-5vv2-4xcx/GHSA-6qxp-5vv2-4xcx.json b/advisories/unreviewed/2022/05/GHSA-6qxp-5vv2-4xcx/GHSA-6qxp-5vv2-4xcx.json index 60a78aa32ba..caf3dc7a017 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qxp-5vv2-4xcx/GHSA-6qxp-5vv2-4xcx.json +++ b/advisories/unreviewed/2022/05/GHSA-6qxp-5vv2-4xcx/GHSA-6qxp-5vv2-4xcx.json @@ -7,12 +7,8 @@ "CVE-2017-18782" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JR6150 before 1.0.1.12, JNR1010v2 before 1.1.0.44, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vj4-982w-qwc7/GHSA-6vj4-982w-qwc7.json b/advisories/unreviewed/2022/05/GHSA-6vj4-982w-qwc7/GHSA-6vj4-982w-qwc7.json index fb84fb757cd..3de0f4eee46 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vj4-982w-qwc7/GHSA-6vj4-982w-qwc7.json +++ b/advisories/unreviewed/2022/05/GHSA-6vj4-982w-qwc7/GHSA-6vj4-982w-qwc7.json @@ -7,12 +7,8 @@ "CVE-2018-21125" ], "details": "NETGEAR WAC510 devices before 5.0.0.17 are affected by authentication bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6xq2-jg23-w9hh/GHSA-6xq2-jg23-w9hh.json b/advisories/unreviewed/2022/05/GHSA-6xq2-jg23-w9hh/GHSA-6xq2-jg23-w9hh.json index fb013b1f46c..77dce424b67 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xq2-jg23-w9hh/GHSA-6xq2-jg23-w9hh.json +++ b/advisories/unreviewed/2022/05/GHSA-6xq2-jg23-w9hh/GHSA-6xq2-jg23-w9hh.json @@ -7,12 +7,8 @@ "CVE-2020-2908" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-724c-3c45-6hc3/GHSA-724c-3c45-6hc3.json b/advisories/unreviewed/2022/05/GHSA-724c-3c45-6hc3/GHSA-724c-3c45-6hc3.json index 8a57e47a52b..7df0ac57985 100644 --- a/advisories/unreviewed/2022/05/GHSA-724c-3c45-6hc3/GHSA-724c-3c45-6hc3.json +++ b/advisories/unreviewed/2022/05/GHSA-724c-3c45-6hc3/GHSA-724c-3c45-6hc3.json @@ -7,12 +7,8 @@ "CVE-2020-2898" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Charsets). The supported version that is affected is 8.0.19. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72pf-46cp-4rhv/GHSA-72pf-46cp-4rhv.json b/advisories/unreviewed/2022/05/GHSA-72pf-46cp-4rhv/GHSA-72pf-46cp-4rhv.json index 1fd58b03ed7..2749fb94ff5 100644 --- a/advisories/unreviewed/2022/05/GHSA-72pf-46cp-4rhv/GHSA-72pf-46cp-4rhv.json +++ b/advisories/unreviewed/2022/05/GHSA-72pf-46cp-4rhv/GHSA-72pf-46cp-4rhv.json @@ -7,12 +7,8 @@ "CVE-2019-20783" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 (North America CDMA) software. The LTE protocol implementation allows a bypass of AKA (Authentication and Key Agreement). The LG ID is LVE-SMP-180014 (February 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73xv-cpq8-rgqm/GHSA-73xv-cpq8-rgqm.json b/advisories/unreviewed/2022/05/GHSA-73xv-cpq8-rgqm/GHSA-73xv-cpq8-rgqm.json index 9b040980d21..a27e33d8849 100644 --- a/advisories/unreviewed/2022/05/GHSA-73xv-cpq8-rgqm/GHSA-73xv-cpq8-rgqm.json +++ b/advisories/unreviewed/2022/05/GHSA-73xv-cpq8-rgqm/GHSA-73xv-cpq8-rgqm.json @@ -7,12 +7,8 @@ "CVE-2017-18789" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects R6250 before V1.0.4.8, R6400 before V1.0.1.22, R6400v2 before V1.0.2.32, R7100LG before V1.0.0.32, R7300 before V1.0.0.52, R8300 before V1.0.2.94, R8500 before V1.0.2.100, D6220 before V1.0.0.28, D6400 before V1.0.0.60, and D8500 before V1.0.3.29.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74hm-w4g9-33c9/GHSA-74hm-w4g9-33c9.json b/advisories/unreviewed/2022/05/GHSA-74hm-w4g9-33c9/GHSA-74hm-w4g9-33c9.json index 38c93998d12..015d825597f 100644 --- a/advisories/unreviewed/2022/05/GHSA-74hm-w4g9-33c9/GHSA-74hm-w4g9-33c9.json +++ b/advisories/unreviewed/2022/05/GHSA-74hm-w4g9-33c9/GHSA-74hm-w4g9-33c9.json @@ -7,12 +7,8 @@ "CVE-2020-2810" ], "details": "Vulnerability in the Oracle iStore product of Oracle E-Business Suite (component: Shopping Cart). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iStore, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle iStore accessible data. CVSS 3.0 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74m7-g265-p4vc/GHSA-74m7-g265-p4vc.json b/advisories/unreviewed/2022/05/GHSA-74m7-g265-p4vc/GHSA-74m7-g265-p4vc.json index a2b36bdd00c..668af6519bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-74m7-g265-p4vc/GHSA-74m7-g265-p4vc.json +++ b/advisories/unreviewed/2022/05/GHSA-74m7-g265-p4vc/GHSA-74m7-g265-p4vc.json @@ -7,12 +7,8 @@ "CVE-2020-2910" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle VM VirtualBox accessible data. CVSS 3.0 Base Score 6.5 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74vv-6p4c-8fhj/GHSA-74vv-6p4c-8fhj.json b/advisories/unreviewed/2022/05/GHSA-74vv-6p4c-8fhj/GHSA-74vv-6p4c-8fhj.json index 3b929988cb1..1b94bf7ea17 100644 --- a/advisories/unreviewed/2022/05/GHSA-74vv-6p4c-8fhj/GHSA-74vv-6p4c-8fhj.json +++ b/advisories/unreviewed/2022/05/GHSA-74vv-6p4c-8fhj/GHSA-74vv-6p4c-8fhj.json @@ -7,12 +7,8 @@ "CVE-2020-3161" ], "details": "A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in a denial of service (DoS) condition. The vulnerability is due to a lack of proper input validation of HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web server of a targeted device. A successful exploit could allow the attacker to remotely execute code with root privileges or cause a reload of an affected IP phone, resulting in a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7524-h548-9j8v/GHSA-7524-h548-9j8v.json b/advisories/unreviewed/2022/05/GHSA-7524-h548-9j8v/GHSA-7524-h548-9j8v.json index aa931673ad6..5f9b48b0f1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7524-h548-9j8v/GHSA-7524-h548-9j8v.json +++ b/advisories/unreviewed/2022/05/GHSA-7524-h548-9j8v/GHSA-7524-h548-9j8v.json @@ -7,12 +7,8 @@ "CVE-2019-20712" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.52, D6400 before 1.0.0.86, D7000v2 before 1.0.0.53, D8500 before 1.0.3.44, DGN2200v4 before 1.0.0.110, DGND2200Bv4 before 1.0.0.109, R6250 before 1.0.4.34, R6300v2 before 1.0.4.32, R6400 before 1.0.1.46, R6400v2 before 1.0.2.62, R6700 before 1.0.2.6, R6900 before 1.0.2.4, R6900P before 1.3.1.64, R7000 before 1.0.9.60, R7000P before 1.3.1.64, R7100LG before 1.0.0.52, R7300DST before 1.0.0.70, R7900 before 1.0.3.8, R7900P before 1.4.1.30, R8000 before 1.0.4.28, R8000P before 1.4.1.30, R8300 before 1.0.2.128, R8500 before 1.0.2.128, WNDR3400v3 before 1.0.1.24, and WNR3500Lv2 before 1.2.0.56.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-755v-mjhh-9xgf/GHSA-755v-mjhh-9xgf.json b/advisories/unreviewed/2022/05/GHSA-755v-mjhh-9xgf/GHSA-755v-mjhh-9xgf.json index eef6a391793..e6ec92ebfe3 100644 --- a/advisories/unreviewed/2022/05/GHSA-755v-mjhh-9xgf/GHSA-755v-mjhh-9xgf.json +++ b/advisories/unreviewed/2022/05/GHSA-755v-mjhh-9xgf/GHSA-755v-mjhh-9xgf.json @@ -7,12 +7,8 @@ "CVE-2020-10787" ], "details": "An elevation of privilege in Vesta Control Panel through 0.9.8-26 allows an attacker to gain root system access from the admin account via v-change-user-password (aka the user password change script).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75f9-cww2-h3jx/GHSA-75f9-cww2-h3jx.json b/advisories/unreviewed/2022/05/GHSA-75f9-cww2-h3jx/GHSA-75f9-cww2-h3jx.json index 60596164d1b..048023b6e56 100644 --- a/advisories/unreviewed/2022/05/GHSA-75f9-cww2-h3jx/GHSA-75f9-cww2-h3jx.json +++ b/advisories/unreviewed/2022/05/GHSA-75f9-cww2-h3jx/GHSA-75f9-cww2-h3jx.json @@ -7,12 +7,8 @@ "CVE-2020-2937" ], "details": "Vulnerability in the Oracle Insurance Accounting Analyzer product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 - 8.0.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Insurance Accounting Analyzer. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Insurance Accounting Analyzer accessible data as well as unauthorized read access to a subset of Oracle Insurance Accounting Analyzer accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75x4-rg87-h92v/GHSA-75x4-rg87-h92v.json b/advisories/unreviewed/2022/05/GHSA-75x4-rg87-h92v/GHSA-75x4-rg87-h92v.json index 876c6f47ffb..bd4549bd57d 100644 --- a/advisories/unreviewed/2022/05/GHSA-75x4-rg87-h92v/GHSA-75x4-rg87-h92v.json +++ b/advisories/unreviewed/2022/05/GHSA-75x4-rg87-h92v/GHSA-75x4-rg87-h92v.json @@ -7,12 +7,8 @@ "CVE-2019-20743" ], "details": "NETGEAR WAC510 devices before 8.0.1.3 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-768m-jvp8-9hq6/GHSA-768m-jvp8-9hq6.json b/advisories/unreviewed/2022/05/GHSA-768m-jvp8-9hq6/GHSA-768m-jvp8-9hq6.json index c7fae996607..8955eb3f6d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-768m-jvp8-9hq6/GHSA-768m-jvp8-9hq6.json +++ b/advisories/unreviewed/2022/05/GHSA-768m-jvp8-9hq6/GHSA-768m-jvp8-9hq6.json @@ -7,12 +7,8 @@ "CVE-2019-20707" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R7800 before 1.0.2.60 and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76m8-3m5g-47j9/GHSA-76m8-3m5g-47j9.json b/advisories/unreviewed/2022/05/GHSA-76m8-3m5g-47j9/GHSA-76m8-3m5g-47j9.json index f4542584b3a..64b8b99509e 100644 --- a/advisories/unreviewed/2022/05/GHSA-76m8-3m5g-47j9/GHSA-76m8-3m5g-47j9.json +++ b/advisories/unreviewed/2022/05/GHSA-76m8-3m5g-47j9/GHSA-76m8-3m5g-47j9.json @@ -7,12 +7,8 @@ "CVE-2017-18792" ], "details": "NETGEAR D6100 devices before 1.0.0.50_0.0.50 are affected by command injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7823-v93f-78h8/GHSA-7823-v93f-78h8.json b/advisories/unreviewed/2022/05/GHSA-7823-v93f-78h8/GHSA-7823-v93f-78h8.json index 62d8fad291e..f073fb1189d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7823-v93f-78h8/GHSA-7823-v93f-78h8.json +++ b/advisories/unreviewed/2022/05/GHSA-7823-v93f-78h8/GHSA-7823-v93f-78h8.json @@ -7,12 +7,8 @@ "CVE-2018-21114" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.44, EX6150v2 before 1.0.1.70, EX6100v2 before 1.0.1.70, EX6200v2 before 1.0.1.64, EX7300 before 1.0.2.136, EX6400 before 1.0.2.136, R6100 before 1.0.1.16, R7500 before 1.0.0.110, R7800 before 1.0.2.32, R9000 before 1.0.4.12, WN3000RPv2 before 1.0.0.56, WN3000RPv3 before 1.0.2.52, WNDR4300v2 before 1.0.0.50, and WNDR4500v3 before 1.0.0.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-784w-qwm8-7p5h/GHSA-784w-qwm8-7p5h.json b/advisories/unreviewed/2022/05/GHSA-784w-qwm8-7p5h/GHSA-784w-qwm8-7p5h.json index bdf941f0820..eb9b2a95f2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-784w-qwm8-7p5h/GHSA-784w-qwm8-7p5h.json +++ b/advisories/unreviewed/2022/05/GHSA-784w-qwm8-7p5h/GHSA-784w-qwm8-7p5h.json @@ -7,12 +7,8 @@ "CVE-2020-1803" ], "details": "Huawei smartphones Honor V20 with versions earlier than 10.0.0.179(C636E3R4P3),versions earlier than 10.0.0.180(C185E3R3P3),versions earlier than 10.0.0.180(C432E10R3P4) have an information disclosure vulnerability. The device does not sufficiently validate the identity of smart wearable device in certain specific scenario, the attacker need to gain certain information in the victim's smartphone to launch the attack, successful exploit could cause information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-79hh-8f48-rmmr/GHSA-79hh-8f48-rmmr.json b/advisories/unreviewed/2022/05/GHSA-79hh-8f48-rmmr/GHSA-79hh-8f48-rmmr.json index ad65b2f33c5..b3bac5dd9a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-79hh-8f48-rmmr/GHSA-79hh-8f48-rmmr.json +++ b/advisories/unreviewed/2022/05/GHSA-79hh-8f48-rmmr/GHSA-79hh-8f48-rmmr.json @@ -7,12 +7,8 @@ "CVE-2019-20706" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R7800 before 1.0.2.60 and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cg3-666j-3r3x/GHSA-7cg3-666j-3r3x.json b/advisories/unreviewed/2022/05/GHSA-7cg3-666j-3r3x/GHSA-7cg3-666j-3r3x.json index 1ca34c9b2c3..fe9bf7cbf09 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cg3-666j-3r3x/GHSA-7cg3-666j-3r3x.json +++ b/advisories/unreviewed/2022/05/GHSA-7cg3-666j-3r3x/GHSA-7cg3-666j-3r3x.json @@ -7,12 +7,8 @@ "CVE-2018-21122" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects GS110EMX before 1.0.0.9, GS810EMX before 1.0.0.5, XS512EM before 1.0.0.6, and XS724EM before 1.0.0.6.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7ch3-c2vf-pvjm/GHSA-7ch3-c2vf-pvjm.json b/advisories/unreviewed/2022/05/GHSA-7ch3-c2vf-pvjm/GHSA-7ch3-c2vf-pvjm.json index ac97d082444..0cd488983ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-7ch3-c2vf-pvjm/GHSA-7ch3-c2vf-pvjm.json +++ b/advisories/unreviewed/2022/05/GHSA-7ch3-c2vf-pvjm/GHSA-7ch3-c2vf-pvjm.json @@ -7,12 +7,8 @@ "CVE-2019-20764" ], "details": "NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hc9-3247-569c/GHSA-7hc9-3247-569c.json b/advisories/unreviewed/2022/05/GHSA-7hc9-3247-569c/GHSA-7hc9-3247-569c.json index 206e7e19450..fc73dcb19f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hc9-3247-569c/GHSA-7hc9-3247-569c.json +++ b/advisories/unreviewed/2022/05/GHSA-7hc9-3247-569c/GHSA-7hc9-3247-569c.json @@ -7,12 +7,8 @@ "CVE-2020-2863" ], "details": "Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Advanced Outbound Telephony. While the vulnerability is in Oracle Advanced Outbound Telephony, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Advanced Outbound Telephony accessible data as well as unauthorized update, insert or delete access to some of Oracle Advanced Outbound Telephony accessible data. CVSS 3.0 Base Score 8.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hxj-fcfx-69p5/GHSA-7hxj-fcfx-69p5.json b/advisories/unreviewed/2022/05/GHSA-7hxj-fcfx-69p5/GHSA-7hxj-fcfx-69p5.json index c2313ed9c43..7571d2905b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hxj-fcfx-69p5/GHSA-7hxj-fcfx-69p5.json +++ b/advisories/unreviewed/2022/05/GHSA-7hxj-fcfx-69p5/GHSA-7hxj-fcfx-69p5.json @@ -7,12 +7,8 @@ "CVE-2020-7275" ], "details": "Accessing, modifying or executing executable files vulnerability in the uninstaller in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to execute arbitrary code via a carefully crafted input file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mrc-7xm4-g3ff/GHSA-7mrc-7xm4-g3ff.json b/advisories/unreviewed/2022/05/GHSA-7mrc-7xm4-g3ff/GHSA-7mrc-7xm4-g3ff.json index c26040e0921..67ce704d0f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mrc-7xm4-g3ff/GHSA-7mrc-7xm4-g3ff.json +++ b/advisories/unreviewed/2022/05/GHSA-7mrc-7xm4-g3ff/GHSA-7mrc-7xm4-g3ff.json @@ -7,12 +7,8 @@ "CVE-2020-10786" ], "details": "A remote command execution in Vesta Control Panel through 0.9.8-26 allows any authenticated user to execute arbitrary commands on the system via cron jobs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7pg9-w9pq-869f/GHSA-7pg9-w9pq-869f.json b/advisories/unreviewed/2022/05/GHSA-7pg9-w9pq-869f/GHSA-7pg9-w9pq-869f.json index 3b04fe0c605..89498f6961c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pg9-w9pq-869f/GHSA-7pg9-w9pq-869f.json +++ b/advisories/unreviewed/2022/05/GHSA-7pg9-w9pq-869f/GHSA-7pg9-w9pq-869f.json @@ -7,12 +7,8 @@ "CVE-2020-10947" ], "details": "Mac Endpoint for Sophos Central before 9.9.6 and Mac Endpoint for Sophos Home before 2.2.6 allow Privilege Escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qvw-crqm-r4rj/GHSA-7qvw-crqm-r4rj.json b/advisories/unreviewed/2022/05/GHSA-7qvw-crqm-r4rj/GHSA-7qvw-crqm-r4rj.json index 539c53d80c5..09ff3d01ec2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qvw-crqm-r4rj/GHSA-7qvw-crqm-r4rj.json +++ b/advisories/unreviewed/2022/05/GHSA-7qvw-crqm-r4rj/GHSA-7qvw-crqm-r4rj.json @@ -7,12 +7,8 @@ "CVE-2020-2890" ], "details": "Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Framework. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Applications Framework, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Applications Framework accessible data as well as unauthorized update, insert or delete access to some of Oracle Applications Framework accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rgh-8689-572j/GHSA-7rgh-8689-572j.json b/advisories/unreviewed/2022/05/GHSA-7rgh-8689-572j/GHSA-7rgh-8689-572j.json index b8d8b95990b..b07769e39fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rgh-8689-572j/GHSA-7rgh-8689-572j.json +++ b/advisories/unreviewed/2022/05/GHSA-7rgh-8689-572j/GHSA-7rgh-8689-572j.json @@ -7,12 +7,8 @@ "CVE-2017-18848" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects R6300v2 before 1.0.0.36, AC1450 before 1.0.0.36, R7300 before 1.0.0.54, and R8500 before 1.0.2.94.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rw5-8cqx-4h7v/GHSA-7rw5-8cqx-4h7v.json b/advisories/unreviewed/2022/05/GHSA-7rw5-8cqx-4h7v/GHSA-7rw5-8cqx-4h7v.json index 9b4d0628c4d..22c0605be69 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rw5-8cqx-4h7v/GHSA-7rw5-8cqx-4h7v.json +++ b/advisories/unreviewed/2022/05/GHSA-7rw5-8cqx-4h7v/GHSA-7rw5-8cqx-4h7v.json @@ -7,12 +7,8 @@ "CVE-2017-18759" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R8300 before 1.0.2.104 and R8500 before 1.0.2.104.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7v2v-c4mv-64w9/GHSA-7v2v-c4mv-64w9.json b/advisories/unreviewed/2022/05/GHSA-7v2v-c4mv-64w9/GHSA-7v2v-c4mv-64w9.json index a4ce0713d83..b97dedaa9c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v2v-c4mv-64w9/GHSA-7v2v-c4mv-64w9.json +++ b/advisories/unreviewed/2022/05/GHSA-7v2v-c4mv-64w9/GHSA-7v2v-c4mv-64w9.json @@ -7,12 +7,8 @@ "CVE-2020-2829" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Management Services). The supported version that is affected is 10.3.6.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 4.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vm9-6fjc-32rg/GHSA-7vm9-6fjc-32rg.json b/advisories/unreviewed/2022/05/GHSA-7vm9-6fjc-32rg/GHSA-7vm9-6fjc-32rg.json index 6e31b7e4522..2e8612d77a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vm9-6fjc-32rg/GHSA-7vm9-6fjc-32rg.json +++ b/advisories/unreviewed/2022/05/GHSA-7vm9-6fjc-32rg/GHSA-7vm9-6fjc-32rg.json @@ -7,12 +7,8 @@ "CVE-2019-10625" ], "details": "Out of bound access in diag services when DCI command buffer reallocation is not done properly with required capacity in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, QCS605, Rennell, SC8180X, SDM429W, SDM710, SDX55, SM7150, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7w28-5fw7-hhhg/GHSA-7w28-5fw7-hhhg.json b/advisories/unreviewed/2022/05/GHSA-7w28-5fw7-hhhg/GHSA-7w28-5fw7-hhhg.json index 7a077c7f8ab..bdcc45ecd6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w28-5fw7-hhhg/GHSA-7w28-5fw7-hhhg.json +++ b/advisories/unreviewed/2022/05/GHSA-7w28-5fw7-hhhg/GHSA-7w28-5fw7-hhhg.json @@ -7,12 +7,8 @@ "CVE-2020-2904" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7w3r-3wwf-35pg/GHSA-7w3r-3wwf-35pg.json b/advisories/unreviewed/2022/05/GHSA-7w3r-3wwf-35pg/GHSA-7w3r-3wwf-35pg.json index 7d85b2f8bad..ef58135ba85 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w3r-3wwf-35pg/GHSA-7w3r-3wwf-35pg.json +++ b/advisories/unreviewed/2022/05/GHSA-7w3r-3wwf-35pg/GHSA-7w3r-3wwf-35pg.json @@ -7,12 +7,8 @@ "CVE-2018-21148" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D7800 before 1.0.1.34, DM200 before 1.0.0.50, R6100 before 1.0.1.22, R7500 before 1.0.0.122, R7500v2 before 1.0.3.26, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.54, WNDR4500v3 before 1.0.0.54, and WNR2000v5 before 1.0.0.64.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7w4x-rwm4-mh9f/GHSA-7w4x-rwm4-mh9f.json b/advisories/unreviewed/2022/05/GHSA-7w4x-rwm4-mh9f/GHSA-7w4x-rwm4-mh9f.json index d2fe4aa983d..f2425177790 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w4x-rwm4-mh9f/GHSA-7w4x-rwm4-mh9f.json +++ b/advisories/unreviewed/2022/05/GHSA-7w4x-rwm4-mh9f/GHSA-7w4x-rwm4-mh9f.json @@ -7,12 +7,8 @@ "CVE-2018-21124" ], "details": "NETGEAR WAC510 devices before 5.0.0.17 are affected by privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7wwm-59v9-9266/GHSA-7wwm-59v9-9266.json b/advisories/unreviewed/2022/05/GHSA-7wwm-59v9-9266/GHSA-7wwm-59v9-9266.json index 0e2670bf7c0..a4285736b05 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wwm-59v9-9266/GHSA-7wwm-59v9-9266.json +++ b/advisories/unreviewed/2022/05/GHSA-7wwm-59v9-9266/GHSA-7wwm-59v9-9266.json @@ -7,12 +7,8 @@ "CVE-2018-21141" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects R6100 before 1.0.1.22, R7500 before 1.0.0.122, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.54, WNDR4500v3 before 1.0.0.54, and WNR2000v5 before 1.0.0.64.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7x38-fmxv-rwg3/GHSA-7x38-fmxv-rwg3.json b/advisories/unreviewed/2022/05/GHSA-7x38-fmxv-rwg3/GHSA-7x38-fmxv-rwg3.json index b60abd6acf3..75d1ef0622e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x38-fmxv-rwg3/GHSA-7x38-fmxv-rwg3.json +++ b/advisories/unreviewed/2022/05/GHSA-7x38-fmxv-rwg3/GHSA-7x38-fmxv-rwg3.json @@ -7,12 +7,8 @@ "CVE-2018-21126" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-832v-mqgg-q26f/GHSA-832v-mqgg-q26f.json b/advisories/unreviewed/2022/05/GHSA-832v-mqgg-q26f/GHSA-832v-mqgg-q26f.json index 99bf16a1a3e..5ea5059cd1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-832v-mqgg-q26f/GHSA-832v-mqgg-q26f.json +++ b/advisories/unreviewed/2022/05/GHSA-832v-mqgg-q26f/GHSA-832v-mqgg-q26f.json @@ -7,12 +7,8 @@ "CVE-2020-2958" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-83cc-h2c5-hc5w/GHSA-83cc-h2c5-hc5w.json b/advisories/unreviewed/2022/05/GHSA-83cc-h2c5-hc5w/GHSA-83cc-h2c5-hc5w.json index f4912bc39ae..7dc650bf2a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-83cc-h2c5-hc5w/GHSA-83cc-h2c5-hc5w.json +++ b/advisories/unreviewed/2022/05/GHSA-83cc-h2c5-hc5w/GHSA-83cc-h2c5-hc5w.json @@ -7,12 +7,8 @@ "CVE-2019-14021" ], "details": "Possible buffer overrun when processing EFS filename and payload sent over diag interface due to lack of check for filename length and payload size received in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-83qm-rx53-p98j/GHSA-83qm-rx53-p98j.json b/advisories/unreviewed/2022/05/GHSA-83qm-rx53-p98j/GHSA-83qm-rx53-p98j.json index 0e4583bfa67..a08a8a7d1c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-83qm-rx53-p98j/GHSA-83qm-rx53-p98j.json +++ b/advisories/unreviewed/2022/05/GHSA-83qm-rx53-p98j/GHSA-83qm-rx53-p98j.json @@ -7,12 +7,8 @@ "CVE-2020-2839" ], "details": "Vulnerability in the Oracle Service Intelligence product of Oracle E-Business Suite (component: Internal Operations- Search). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Service Intelligence. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Service Intelligence, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Service Intelligence accessible data as well as unauthorized update, insert or delete access to some of Oracle Service Intelligence accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-85vr-v8cj-mr3v/GHSA-85vr-v8cj-mr3v.json b/advisories/unreviewed/2022/05/GHSA-85vr-v8cj-mr3v/GHSA-85vr-v8cj-mr3v.json index 91c94a5082c..1d9119daa7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-85vr-v8cj-mr3v/GHSA-85vr-v8cj-mr3v.json +++ b/advisories/unreviewed/2022/05/GHSA-85vr-v8cj-mr3v/GHSA-85vr-v8cj-mr3v.json @@ -7,12 +7,8 @@ "CVE-2020-7274" ], "details": "Privilege escalation vulnerability in McTray.exe in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to spawn unrelated processes with elevated privileges via the system administrator granting McTray.exe elevated privileges (by default it runs with the current user's privileges).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-85x9-xxvc-qxxh/GHSA-85x9-xxvc-qxxh.json b/advisories/unreviewed/2022/05/GHSA-85x9-xxvc-qxxh/GHSA-85x9-xxvc-qxxh.json index 655561ae7e1..0c241cd61c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-85x9-xxvc-qxxh/GHSA-85x9-xxvc-qxxh.json +++ b/advisories/unreviewed/2022/05/GHSA-85x9-xxvc-qxxh/GHSA-85x9-xxvc-qxxh.json @@ -7,12 +7,8 @@ "CVE-2020-0957" ], "details": "An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0956, CVE-2020-0958.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8622-g8rv-r7m7/GHSA-8622-g8rv-r7m7.json b/advisories/unreviewed/2022/05/GHSA-8622-g8rv-r7m7/GHSA-8622-g8rv-r7m7.json index 5b0632ba77e..75d85a0d8fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-8622-g8rv-r7m7/GHSA-8622-g8rv-r7m7.json +++ b/advisories/unreviewed/2022/05/GHSA-8622-g8rv-r7m7/GHSA-8622-g8rv-r7m7.json @@ -7,12 +7,8 @@ "CVE-2017-18835" ], "details": "Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-86hx-53qx-q365/GHSA-86hx-53qx-q365.json b/advisories/unreviewed/2022/05/GHSA-86hx-53qx-q365/GHSA-86hx-53qx-q365.json index dd5cb38292d..774482d443f 100644 --- a/advisories/unreviewed/2022/05/GHSA-86hx-53qx-q365/GHSA-86hx-53qx-q365.json +++ b/advisories/unreviewed/2022/05/GHSA-86hx-53qx-q365/GHSA-86hx-53qx-q365.json @@ -7,12 +7,8 @@ "CVE-2020-2836" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-87cx-954r-687p/GHSA-87cx-954r-687p.json b/advisories/unreviewed/2022/05/GHSA-87cx-954r-687p/GHSA-87cx-954r-687p.json index b280187eda3..e2a02769c35 100644 --- a/advisories/unreviewed/2022/05/GHSA-87cx-954r-687p/GHSA-87cx-954r-687p.json +++ b/advisories/unreviewed/2022/05/GHSA-87cx-954r-687p/GHSA-87cx-954r-687p.json @@ -7,12 +7,8 @@ "CVE-2020-2909" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Oracle VM VirtualBox. CVSS 3.0 Base Score 2.8 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-87jj-fh8g-jj9v/GHSA-87jj-fh8g-jj9v.json b/advisories/unreviewed/2022/05/GHSA-87jj-fh8g-jj9v/GHSA-87jj-fh8g-jj9v.json index 21dc4cf2112..3608cf88983 100644 --- a/advisories/unreviewed/2022/05/GHSA-87jj-fh8g-jj9v/GHSA-87jj-fh8g-jj9v.json +++ b/advisories/unreviewed/2022/05/GHSA-87jj-fh8g-jj9v/GHSA-87jj-fh8g-jj9v.json @@ -7,12 +7,8 @@ "CVE-2017-18834" ], "details": "Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-89xq-595m-2wqw/GHSA-89xq-595m-2wqw.json b/advisories/unreviewed/2022/05/GHSA-89xq-595m-2wqw/GHSA-89xq-595m-2wqw.json index 837ca3d1239..ab9184d4788 100644 --- a/advisories/unreviewed/2022/05/GHSA-89xq-595m-2wqw/GHSA-89xq-595m-2wqw.json +++ b/advisories/unreviewed/2022/05/GHSA-89xq-595m-2wqw/GHSA-89xq-595m-2wqw.json @@ -7,12 +7,8 @@ "CVE-2019-20773" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. Unprivileged applications can execute shell commands via the connectivity service. The LG ID is LVE-SMP-190008 (August 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8c64-mcfm-8hcq/GHSA-8c64-mcfm-8hcq.json b/advisories/unreviewed/2022/05/GHSA-8c64-mcfm-8hcq/GHSA-8c64-mcfm-8hcq.json index 00a1f906fe5..366dc64336c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c64-mcfm-8hcq/GHSA-8c64-mcfm-8hcq.json +++ b/advisories/unreviewed/2022/05/GHSA-8c64-mcfm-8hcq/GHSA-8c64-mcfm-8hcq.json @@ -7,12 +7,8 @@ "CVE-2020-11816" ], "details": "Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the reports_id (POST) parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8gr3-v464-4cw5/GHSA-8gr3-v464-4cw5.json b/advisories/unreviewed/2022/05/GHSA-8gr3-v464-4cw5/GHSA-8gr3-v464-4cw5.json index 7cc3015a7b0..e9751bc4164 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gr3-v464-4cw5/GHSA-8gr3-v464-4cw5.json +++ b/advisories/unreviewed/2022/05/GHSA-8gr3-v464-4cw5/GHSA-8gr3-v464-4cw5.json @@ -7,12 +7,8 @@ "CVE-2018-21129" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8h5w-8rr3-mrx4/GHSA-8h5w-8rr3-mrx4.json b/advisories/unreviewed/2022/05/GHSA-8h5w-8rr3-mrx4/GHSA-8h5w-8rr3-mrx4.json index 31f70fc0f5d..e9c1a6268db 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h5w-8rr3-mrx4/GHSA-8h5w-8rr3-mrx4.json +++ b/advisories/unreviewed/2022/05/GHSA-8h5w-8rr3-mrx4/GHSA-8h5w-8rr3-mrx4.json @@ -7,12 +7,8 @@ "CVE-2020-2888" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Partners). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Marketing accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8j6m-9pgp-366m/GHSA-8j6m-9pgp-366m.json b/advisories/unreviewed/2022/05/GHSA-8j6m-9pgp-366m/GHSA-8j6m-9pgp-366m.json index a02110f3073..6bb84d908f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j6m-9pgp-366m/GHSA-8j6m-9pgp-366m.json +++ b/advisories/unreviewed/2022/05/GHSA-8j6m-9pgp-366m/GHSA-8j6m-9pgp-366m.json @@ -7,12 +7,8 @@ "CVE-2020-2869" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 4.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jf9-vxwp-57f5/GHSA-8jf9-vxwp-57f5.json b/advisories/unreviewed/2022/05/GHSA-8jf9-vxwp-57f5/GHSA-8jf9-vxwp-57f5.json index 8a73e42460d..260ed162f2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jf9-vxwp-57f5/GHSA-8jf9-vxwp-57f5.json +++ b/advisories/unreviewed/2022/05/GHSA-8jf9-vxwp-57f5/GHSA-8jf9-vxwp-57f5.json @@ -7,12 +7,8 @@ "CVE-2017-18773" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6100 before V1.0.0.55, D7800 before V1.0.1.24, EX6150v2 before 1.0.0.48, R6100 before 1.0.1.14, R7500 before 1.0.0.110, R7500v2 before V1.0.3.16, R7800 before V1.0.2.36, WNDR4300v1 before 1.0.2.90, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, and WNR2000v5 before 1.0.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8mcv-3m3p-3wwr/GHSA-8mcv-3m3p-3wwr.json b/advisories/unreviewed/2022/05/GHSA-8mcv-3m3p-3wwr/GHSA-8mcv-3m3p-3wwr.json index d13c7b75e02..f47c073c521 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mcv-3m3p-3wwr/GHSA-8mcv-3m3p-3wwr.json +++ b/advisories/unreviewed/2022/05/GHSA-8mcv-3m3p-3wwr/GHSA-8mcv-3m3p-3wwr.json @@ -7,12 +7,8 @@ "CVE-2020-2930" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Parser). Supported versions that are affected are 8.0.19 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8mhp-wg44-9rxg/GHSA-8mhp-wg44-9rxg.json b/advisories/unreviewed/2022/05/GHSA-8mhp-wg44-9rxg/GHSA-8mhp-wg44-9rxg.json index c1db8b7bde8..fa8b854db44 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mhp-wg44-9rxg/GHSA-8mhp-wg44-9rxg.json +++ b/advisories/unreviewed/2022/05/GHSA-8mhp-wg44-9rxg/GHSA-8mhp-wg44-9rxg.json @@ -7,12 +7,8 @@ "CVE-2019-20690" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.30, D7000 before 1.0.1.66, R6020 before 1.0.0.34, R6080 before 1.0.0.34, R6120 before 1.0.0.44, R6220 before 1.1.0.68, WNR2020 before 1.1.0.54, and WNR614 before 1.1.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8p2f-w48f-wfgg/GHSA-8p2f-w48f-wfgg.json b/advisories/unreviewed/2022/05/GHSA-8p2f-w48f-wfgg/GHSA-8p2f-w48f-wfgg.json index f174032ea1f..5eee9c851c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p2f-w48f-wfgg/GHSA-8p2f-w48f-wfgg.json +++ b/advisories/unreviewed/2022/05/GHSA-8p2f-w48f-wfgg/GHSA-8p2f-w48f-wfgg.json @@ -7,12 +7,8 @@ "CVE-2019-20721" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.47, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.66, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.66, XR450 before 2.3.2.32, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8r2m-h4m5-j4ch/GHSA-8r2m-h4m5-j4ch.json b/advisories/unreviewed/2022/05/GHSA-8r2m-h4m5-j4ch/GHSA-8r2m-h4m5-j4ch.json index de0edd0252c..d91cd2dee9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r2m-h4m5-j4ch/GHSA-8r2m-h4m5-j4ch.json +++ b/advisories/unreviewed/2022/05/GHSA-8r2m-h4m5-j4ch/GHSA-8r2m-h4m5-j4ch.json @@ -7,12 +7,8 @@ "CVE-2019-20709" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8r3c-6cqq-7rmm/GHSA-8r3c-6cqq-7rmm.json b/advisories/unreviewed/2022/05/GHSA-8r3c-6cqq-7rmm/GHSA-8r3c-6cqq-7rmm.json index 2924a5e8e51..bd98e04a73f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r3c-6cqq-7rmm/GHSA-8r3c-6cqq-7rmm.json +++ b/advisories/unreviewed/2022/05/GHSA-8r3c-6cqq-7rmm/GHSA-8r3c-6cqq-7rmm.json @@ -7,12 +7,8 @@ "CVE-2019-14135" ], "details": "Possible integer overflow to buffer overflow in WLAN while parsing nonstandard NAN IE messages. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA4010, QCA6174A, QCA6574AU, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS405, QCS605, SA6155P, Saipan, SDA845, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8rhg-h664-m46h/GHSA-8rhg-h664-m46h.json b/advisories/unreviewed/2022/05/GHSA-8rhg-h664-m46h/GHSA-8rhg-h664-m46h.json index 5f404327321..67bf5aa60c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rhg-h664-m46h/GHSA-8rhg-h664-m46h.json +++ b/advisories/unreviewed/2022/05/GHSA-8rhg-h664-m46h/GHSA-8rhg-h664-m46h.json @@ -7,12 +7,8 @@ "CVE-2017-18795" ], "details": "Certain NETGEAR devices are affected by command injection. This affects D6220 before 1.0.0.28 and D6100 before 1.0.0.50_0.0.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8v7v-63cg-hhq4/GHSA-8v7v-63cg-hhq4.json b/advisories/unreviewed/2022/05/GHSA-8v7v-63cg-hhq4/GHSA-8v7v-63cg-hhq4.json index d1ec298e371..23b87b4aafe 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v7v-63cg-hhq4/GHSA-8v7v-63cg-hhq4.json +++ b/advisories/unreviewed/2022/05/GHSA-8v7v-63cg-hhq4/GHSA-8v7v-63cg-hhq4.json @@ -7,12 +7,8 @@ "CVE-2018-21146" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.34, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR4300v2 before 1.0.0.54, and WNDR4500v3 before 1.0.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8w25-g47g-6c6x/GHSA-8w25-g47g-6c6x.json b/advisories/unreviewed/2022/05/GHSA-8w25-g47g-6c6x/GHSA-8w25-g47g-6c6x.json index a7ec31c7d26..3e5a093055f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w25-g47g-6c6x/GHSA-8w25-g47g-6c6x.json +++ b/advisories/unreviewed/2022/05/GHSA-8w25-g47g-6c6x/GHSA-8w25-g47g-6c6x.json @@ -7,12 +7,8 @@ "CVE-2020-2913" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 7.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-92g3-wmcp-c83c/GHSA-92g3-wmcp-c83c.json b/advisories/unreviewed/2022/05/GHSA-92g3-wmcp-c83c/GHSA-92g3-wmcp-c83c.json index cde639cdb99..078dee42fda 100644 --- a/advisories/unreviewed/2022/05/GHSA-92g3-wmcp-c83c/GHSA-92g3-wmcp-c83c.json +++ b/advisories/unreviewed/2022/05/GHSA-92g3-wmcp-c83c/GHSA-92g3-wmcp-c83c.json @@ -7,12 +7,8 @@ "CVE-2020-3248" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94jr-wpq5-r766/GHSA-94jr-wpq5-r766.json b/advisories/unreviewed/2022/05/GHSA-94jr-wpq5-r766/GHSA-94jr-wpq5-r766.json index 10aea456357..156beee1fc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-94jr-wpq5-r766/GHSA-94jr-wpq5-r766.json +++ b/advisories/unreviewed/2022/05/GHSA-94jr-wpq5-r766/GHSA-94jr-wpq5-r766.json @@ -7,12 +7,8 @@ "CVE-2019-14007" ], "details": "Due to the use of non-time-constant comparison functions there is issue in timing side channels which can be used as a potential side channel for SUI corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9650, MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCS404, QCS405, QCS605, QM215, Rennell, SA6155P, SC7180, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95q7-g98v-q42w/GHSA-95q7-g98v-q42w.json b/advisories/unreviewed/2022/05/GHSA-95q7-g98v-q42w/GHSA-95q7-g98v-q42w.json index 990ff30b0c3..36e56b12b29 100644 --- a/advisories/unreviewed/2022/05/GHSA-95q7-g98v-q42w/GHSA-95q7-g98v-q42w.json +++ b/advisories/unreviewed/2022/05/GHSA-95q7-g98v-q42w/GHSA-95q7-g98v-q42w.json @@ -7,12 +7,8 @@ "CVE-2020-2849" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-974c-8cm8-f97g/GHSA-974c-8cm8-f97g.json b/advisories/unreviewed/2022/05/GHSA-974c-8cm8-f97g/GHSA-974c-8cm8-f97g.json index 9be5cd2fefe..2d3ca38dd37 100644 --- a/advisories/unreviewed/2022/05/GHSA-974c-8cm8-f97g/GHSA-974c-8cm8-f97g.json +++ b/advisories/unreviewed/2022/05/GHSA-974c-8cm8-f97g/GHSA-974c-8cm8-f97g.json @@ -7,12 +7,8 @@ "CVE-2019-17525" ], "details": "The login page on D-Link DIR-615 T1 20.10 devices allows remote attackers to bypass the CAPTCHA protection mechanism and conduct brute-force attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-97jq-9v52-mx6q/GHSA-97jq-9v52-mx6q.json b/advisories/unreviewed/2022/05/GHSA-97jq-9v52-mx6q/GHSA-97jq-9v52-mx6q.json index d3b14aa0c69..bb125de1f24 100644 --- a/advisories/unreviewed/2022/05/GHSA-97jq-9v52-mx6q/GHSA-97jq-9v52-mx6q.json +++ b/advisories/unreviewed/2022/05/GHSA-97jq-9v52-mx6q/GHSA-97jq-9v52-mx6q.json @@ -7,12 +7,8 @@ "CVE-2019-10483" ], "details": "Side channel issue in QTEE due to usage of non-time-constant comparison function such as memcmp or strcmp in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8016, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, IPQ8074, MDM9150, MDM9205, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, QCA8081, QCS404, QCS605, QM215, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX55, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-988q-42c6-39xw/GHSA-988q-42c6-39xw.json b/advisories/unreviewed/2022/05/GHSA-988q-42c6-39xw/GHSA-988q-42c6-39xw.json index 8cbd221aeb7..7bf98dfc547 100644 --- a/advisories/unreviewed/2022/05/GHSA-988q-42c6-39xw/GHSA-988q-42c6-39xw.json +++ b/advisories/unreviewed/2022/05/GHSA-988q-42c6-39xw/GHSA-988q-42c6-39xw.json @@ -7,12 +7,8 @@ "CVE-2020-7278" ], "details": "Exploiting incorrectly configured access control security levels vulnerability in ENS Firewall in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 and 10.6.1 April 2020 updates allows remote attackers and local users to allow or block unauthorized traffic via pre-existing rules not being handled correctly when updating to the February 2020 updates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-98jv-62cv-8xwv/GHSA-98jv-62cv-8xwv.json b/advisories/unreviewed/2022/05/GHSA-98jv-62cv-8xwv/GHSA-98jv-62cv-8xwv.json index e88102fd1ee..8a040798dd3 100644 --- a/advisories/unreviewed/2022/05/GHSA-98jv-62cv-8xwv/GHSA-98jv-62cv-8xwv.json +++ b/advisories/unreviewed/2022/05/GHSA-98jv-62cv-8xwv/GHSA-98jv-62cv-8xwv.json @@ -7,12 +7,8 @@ "CVE-2020-3252" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cx5-f6g9-f95q/GHSA-9cx5-f6g9-f95q.json b/advisories/unreviewed/2022/05/GHSA-9cx5-f6g9-f95q/GHSA-9cx5-f6g9-f95q.json index d585b104069..728e6543a55 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cx5-f6g9-f95q/GHSA-9cx5-f6g9-f95q.json +++ b/advisories/unreviewed/2022/05/GHSA-9cx5-f6g9-f95q/GHSA-9cx5-f6g9-f95q.json @@ -7,12 +7,8 @@ "CVE-2019-10575" ], "details": "Wlan binary which is not signed with OEMs RoT is working on secure device without authentication failure in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in SDA845, SDM845, SDM850", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9f5q-h27q-h397/GHSA-9f5q-h27q-h397.json b/advisories/unreviewed/2022/05/GHSA-9f5q-h27q-h397/GHSA-9f5q-h27q-h397.json index cd723f7a94c..001926e26b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9f5q-h27q-h397/GHSA-9f5q-h27q-h397.json +++ b/advisories/unreviewed/2022/05/GHSA-9f5q-h27q-h397/GHSA-9f5q-h27q-h397.json @@ -7,12 +7,8 @@ "CVE-2019-20687" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.70, JR6150 before 1.0.1.18, R6050 before 1.0.1.18, and WNR2020 before 1.1.0.62.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fm6-75rg-rff2/GHSA-9fm6-75rg-rff2.json b/advisories/unreviewed/2022/05/GHSA-9fm6-75rg-rff2/GHSA-9fm6-75rg-rff2.json index 2e2ac405616..22d829ca160 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fm6-75rg-rff2/GHSA-9fm6-75rg-rff2.json +++ b/advisories/unreviewed/2022/05/GHSA-9fm6-75rg-rff2/GHSA-9fm6-75rg-rff2.json @@ -7,12 +7,8 @@ "CVE-2020-2886" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.0 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9hgv-c655-h58q/GHSA-9hgv-c655-h58q.json b/advisories/unreviewed/2022/05/GHSA-9hgv-c655-h58q/GHSA-9hgv-c655-h58q.json index 72166393aa3..f19f73bb174 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hgv-c655-h58q/GHSA-9hgv-c655-h58q.json +++ b/advisories/unreviewed/2022/05/GHSA-9hgv-c655-h58q/GHSA-9hgv-c655-h58q.json @@ -7,12 +7,8 @@ "CVE-2020-2817" ], "details": "Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Miscellaneous). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Scripting, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Scripting accessible data as well as unauthorized update, insert or delete access to some of Oracle Scripting accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9j2r-7wv5-9gxw/GHSA-9j2r-7wv5-9gxw.json b/advisories/unreviewed/2022/05/GHSA-9j2r-7wv5-9gxw/GHSA-9j2r-7wv5-9gxw.json index 74e17d570e7..7e73794a170 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j2r-7wv5-9gxw/GHSA-9j2r-7wv5-9gxw.json +++ b/advisories/unreviewed/2022/05/GHSA-9j2r-7wv5-9gxw/GHSA-9j2r-7wv5-9gxw.json @@ -7,12 +7,8 @@ "CVE-2019-20740" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects DGN2200v4 before 1.0.0.110, DGND2200Bv4 before 1.0.0.109, R7300 before 1.0.0.70, R8300 before 1.0.2.130, and R8500 before 1.0.2.130.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9m65-6w3f-4rmv/GHSA-9m65-6w3f-4rmv.json b/advisories/unreviewed/2022/05/GHSA-9m65-6w3f-4rmv/GHSA-9m65-6w3f-4rmv.json index d9d2b753f0d..537cb9495c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9m65-6w3f-4rmv/GHSA-9m65-6w3f-4rmv.json +++ b/advisories/unreviewed/2022/05/GHSA-9m65-6w3f-4rmv/GHSA-9m65-6w3f-4rmv.json @@ -7,12 +7,8 @@ "CVE-2020-11660" ], "details": "CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows privileged users to view restricted sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mjj-vxm5-rcp6/GHSA-9mjj-vxm5-rcp6.json b/advisories/unreviewed/2022/05/GHSA-9mjj-vxm5-rcp6/GHSA-9mjj-vxm5-rcp6.json index 9baa304bc4f..9c82d451c16 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mjj-vxm5-rcp6/GHSA-9mjj-vxm5-rcp6.json +++ b/advisories/unreviewed/2022/05/GHSA-9mjj-vxm5-rcp6/GHSA-9mjj-vxm5-rcp6.json @@ -7,12 +7,8 @@ "CVE-2020-2880" ], "details": "Vulnerability in the Oracle Learning Management product of Oracle E-Business Suite (component: OTA Training Activities). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Learning Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Learning Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Learning Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Learning Management accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mm9-qw6c-8v7p/GHSA-9mm9-qw6c-8v7p.json b/advisories/unreviewed/2022/05/GHSA-9mm9-qw6c-8v7p/GHSA-9mm9-qw6c-8v7p.json index 9ab37574735..dd17768dbf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mm9-qw6c-8v7p/GHSA-9mm9-qw6c-8v7p.json +++ b/advisories/unreviewed/2022/05/GHSA-9mm9-qw6c-8v7p/GHSA-9mm9-qw6c-8v7p.json @@ -7,12 +7,8 @@ "CVE-2020-4347" ], "details": "IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could be subject to attacks based on privilege escalation due to inappropriate file permissions for files used by WebSphere Application Server Network Deployment. IBM X-Force ID: 178412.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9p3r-vprr-2c27/GHSA-9p3r-vprr-2c27.json b/advisories/unreviewed/2022/05/GHSA-9p3r-vprr-2c27/GHSA-9p3r-vprr-2c27.json index a01a856b186..43deb9ddb82 100644 --- a/advisories/unreviewed/2022/05/GHSA-9p3r-vprr-2c27/GHSA-9p3r-vprr-2c27.json +++ b/advisories/unreviewed/2022/05/GHSA-9p3r-vprr-2c27/GHSA-9p3r-vprr-2c27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pww-q6hm-99qq/GHSA-9pww-q6hm-99qq.json b/advisories/unreviewed/2022/05/GHSA-9pww-q6hm-99qq/GHSA-9pww-q6hm-99qq.json index df0bdbaf34d..60918312b56 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pww-q6hm-99qq/GHSA-9pww-q6hm-99qq.json +++ b/advisories/unreviewed/2022/05/GHSA-9pww-q6hm-99qq/GHSA-9pww-q6hm-99qq.json @@ -7,12 +7,8 @@ "CVE-2020-2921" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versions that are affected are 8.0.19 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9qv9-jp9q-c8qh/GHSA-9qv9-jp9q-c8qh.json b/advisories/unreviewed/2022/05/GHSA-9qv9-jp9q-c8qh/GHSA-9qv9-jp9q-c8qh.json index 86f2c33949a..3ccc2cd8a00 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qv9-jp9q-c8qh/GHSA-9qv9-jp9q-c8qh.json +++ b/advisories/unreviewed/2022/05/GHSA-9qv9-jp9q-c8qh/GHSA-9qv9-jp9q-c8qh.json @@ -7,12 +7,8 @@ "CVE-2020-2902" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rfp-vf6g-gxv7/GHSA-9rfp-vf6g-gxv7.json b/advisories/unreviewed/2022/05/GHSA-9rfp-vf6g-gxv7/GHSA-9rfp-vf6g-gxv7.json index 5bcb7db6694..1af3604acc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rfp-vf6g-gxv7/GHSA-9rfp-vf6g-gxv7.json +++ b/advisories/unreviewed/2022/05/GHSA-9rfp-vf6g-gxv7/GHSA-9rfp-vf6g-gxv7.json @@ -7,12 +7,8 @@ "CVE-2017-18803" ], "details": "NETGEAR R7800 devices before 1.0.2.30 are affected by incorrect configuration of security settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9rmm-vmrf-4wgf/GHSA-9rmm-vmrf-4wgf.json b/advisories/unreviewed/2022/05/GHSA-9rmm-vmrf-4wgf/GHSA-9rmm-vmrf-4wgf.json index e1cbddc0e77..2677c5b3916 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rmm-vmrf-4wgf/GHSA-9rmm-vmrf-4wgf.json +++ b/advisories/unreviewed/2022/05/GHSA-9rmm-vmrf-4wgf/GHSA-9rmm-vmrf-4wgf.json @@ -7,12 +7,8 @@ "CVE-2020-11793" ], "details": "A use-after-free issue exists in WebKitGTK before 2.28.1 and WPE WebKit before 2.28.1 via crafted web content that allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9rxj-qpwg-4hwc/GHSA-9rxj-qpwg-4hwc.json b/advisories/unreviewed/2022/05/GHSA-9rxj-qpwg-4hwc/GHSA-9rxj-qpwg-4hwc.json index d7ef7853110..491a6854d26 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rxj-qpwg-4hwc/GHSA-9rxj-qpwg-4hwc.json +++ b/advisories/unreviewed/2022/05/GHSA-9rxj-qpwg-4hwc/GHSA-9rxj-qpwg-4hwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9w3v-8h48-46jq/GHSA-9w3v-8h48-46jq.json b/advisories/unreviewed/2022/05/GHSA-9w3v-8h48-46jq/GHSA-9w3v-8h48-46jq.json index c2154fb858e..e6d40bbee5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w3v-8h48-46jq/GHSA-9w3v-8h48-46jq.json +++ b/advisories/unreviewed/2022/05/GHSA-9w3v-8h48-46jq/GHSA-9w3v-8h48-46jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9www-r6hf-5rv2/GHSA-9www-r6hf-5rv2.json b/advisories/unreviewed/2022/05/GHSA-9www-r6hf-5rv2/GHSA-9www-r6hf-5rv2.json index ae717db45a2..7a8dcdd02b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9www-r6hf-5rv2/GHSA-9www-r6hf-5rv2.json +++ b/advisories/unreviewed/2022/05/GHSA-9www-r6hf-5rv2/GHSA-9www-r6hf-5rv2.json @@ -7,12 +7,8 @@ "CVE-2020-2860" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9x8q-p3qp-r24w/GHSA-9x8q-p3qp-r24w.json b/advisories/unreviewed/2022/05/GHSA-9x8q-p3qp-r24w/GHSA-9x8q-p3qp-r24w.json index 76ad0cb769b..ee1b226b05d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x8q-p3qp-r24w/GHSA-9x8q-p3qp-r24w.json +++ b/advisories/unreviewed/2022/05/GHSA-9x8q-p3qp-r24w/GHSA-9x8q-p3qp-r24w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9xgc-vw4p-6c9m/GHSA-9xgc-vw4p-6c9m.json b/advisories/unreviewed/2022/05/GHSA-9xgc-vw4p-6c9m/GHSA-9xgc-vw4p-6c9m.json index 493ce8816d6..34431140f7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xgc-vw4p-6c9m/GHSA-9xgc-vw4p-6c9m.json +++ b/advisories/unreviewed/2022/05/GHSA-9xgc-vw4p-6c9m/GHSA-9xgc-vw4p-6c9m.json @@ -7,12 +7,8 @@ "CVE-2019-20741" ], "details": "NETGEAR WAC510 devices before 5.0.10.2 are affected by disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xjh-2mc3-48px/GHSA-9xjh-2mc3-48px.json b/advisories/unreviewed/2022/05/GHSA-9xjh-2mc3-48px/GHSA-9xjh-2mc3-48px.json index 3df14facee9..c400b16527f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xjh-2mc3-48px/GHSA-9xjh-2mc3-48px.json +++ b/advisories/unreviewed/2022/05/GHSA-9xjh-2mc3-48px/GHSA-9xjh-2mc3-48px.json @@ -7,12 +7,8 @@ "CVE-2019-4644" ], "details": "IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 170880.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2r9-m6vm-hvxj/GHSA-c2r9-m6vm-hvxj.json b/advisories/unreviewed/2022/05/GHSA-c2r9-m6vm-hvxj/GHSA-c2r9-m6vm-hvxj.json index 1dcccbb4ec0..935aded077d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2r9-m6vm-hvxj/GHSA-c2r9-m6vm-hvxj.json +++ b/advisories/unreviewed/2022/05/GHSA-c2r9-m6vm-hvxj/GHSA-c2r9-m6vm-hvxj.json @@ -7,12 +7,8 @@ "CVE-2020-2936" ], "details": "Vulnerability in the Oracle Financial Services Balance Sheet Planning product of Oracle Financial Services Applications (component: User Interface). The supported version that is affected is 8.0.8. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Balance Sheet Planning. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Balance Sheet Planning accessible data as well as unauthorized read access to a subset of Oracle Financial Services Balance Sheet Planning accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3jx-hw4g-497f/GHSA-c3jx-hw4g-497f.json b/advisories/unreviewed/2022/05/GHSA-c3jx-hw4g-497f/GHSA-c3jx-hw4g-497f.json index d6da421bcf5..3870c508ed4 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3jx-hw4g-497f/GHSA-c3jx-hw4g-497f.json +++ b/advisories/unreviewed/2022/05/GHSA-c3jx-hw4g-497f/GHSA-c3jx-hw4g-497f.json @@ -7,12 +7,8 @@ "CVE-2020-2862" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 4.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3wf-86mc-7ggp/GHSA-c3wf-86mc-7ggp.json b/advisories/unreviewed/2022/05/GHSA-c3wf-86mc-7ggp/GHSA-c3wf-86mc-7ggp.json index 219363428a7..bf1ef8bae41 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3wf-86mc-7ggp/GHSA-c3wf-86mc-7ggp.json +++ b/advisories/unreviewed/2022/05/GHSA-c3wf-86mc-7ggp/GHSA-c3wf-86mc-7ggp.json @@ -7,12 +7,8 @@ "CVE-2019-14132" ], "details": "Buffer over-write when this 0-byte buffer is typecasted to some other structure and hence memory corruption in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in QCS605, SA6155P, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3xr-38x3-m6x2/GHSA-c3xr-38x3-m6x2.json b/advisories/unreviewed/2022/05/GHSA-c3xr-38x3-m6x2/GHSA-c3xr-38x3-m6x2.json index e2975bd007f..d531427b5e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3xr-38x3-m6x2/GHSA-c3xr-38x3-m6x2.json +++ b/advisories/unreviewed/2022/05/GHSA-c3xr-38x3-m6x2/GHSA-c3xr-38x3-m6x2.json @@ -7,12 +7,8 @@ "CVE-2018-21113" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D6100 before 1.0.0.58, D7800 before 1.0.1.42, R6100 before 1.0.1.28, R7500 before 1.0.0.130, R7500v2 before 1.0.3.36, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WNDR3700v4 before 1.0.2.102, WNDR4300 before 1.0.2.104, WNDR4300v2 before 1.0.0.56, and WNDR4500v3 before 1.0.0.56.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c5m8-w4wc-7446/GHSA-c5m8-w4wc-7446.json b/advisories/unreviewed/2022/05/GHSA-c5m8-w4wc-7446/GHSA-c5m8-w4wc-7446.json index c73068b21a5..a4b63a76734 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5m8-w4wc-7446/GHSA-c5m8-w4wc-7446.json +++ b/advisories/unreviewed/2022/05/GHSA-c5m8-w4wc-7446/GHSA-c5m8-w4wc-7446.json @@ -7,12 +7,8 @@ "CVE-2017-18805" ], "details": "Certain NETGEAR devices are affected by command injection. This affects WAC510 before 1.3.0.10, WAC120 before 2.1.4, WNDAP620 before 2.1.3, WND930 before 2.1.2, WN604 before 3.3.7, WNDAP660 before 3.7.4.0, WNDAP350 before 3.7.4.0, WNAP320 before 3.7.4.0, WNAP210v2 before 3.7.4.0, and WNDAP360 before 3.7.4.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c5qj-vv9j-m42f/GHSA-c5qj-vv9j-m42f.json b/advisories/unreviewed/2022/05/GHSA-c5qj-vv9j-m42f/GHSA-c5qj-vv9j-m42f.json index 1cd5d430a80..8fd88a69dfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5qj-vv9j-m42f/GHSA-c5qj-vv9j-m42f.json +++ b/advisories/unreviewed/2022/05/GHSA-c5qj-vv9j-m42f/GHSA-c5qj-vv9j-m42f.json @@ -7,12 +7,8 @@ "CVE-2017-18757" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7800 before 1.0.1.30, R6100 before 1.0.1.16, R7500 before 1.0.0.116, R7500v2 before 1.0.3.20, R7800 before 1.0.2.36, R9000 before 1.0.2.40, WNDR4300v2 before 1.0.0.48, WNDR4300v1 before 1.0.2.90, and WNDR4500v3 before 1.0.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c7h3-g28j-x6jq/GHSA-c7h3-g28j-x6jq.json b/advisories/unreviewed/2022/05/GHSA-c7h3-g28j-x6jq/GHSA-c7h3-g28j-x6jq.json index 44e5dd1f240..11a785de9b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7h3-g28j-x6jq/GHSA-c7h3-g28j-x6jq.json +++ b/advisories/unreviewed/2022/05/GHSA-c7h3-g28j-x6jq/GHSA-c7h3-g28j-x6jq.json @@ -7,12 +7,8 @@ "CVE-2020-1699" ], "details": "A path traversal flaw was found in the Ceph dashboard implemented in upstream versions v14.2.5, v14.2.6, v15.0.0 of Ceph storage and has been fixed in versions 14.2.7 and 15.1.0. An unauthenticated attacker could use this flaw to cause information disclosure on the host machine running the Ceph dashboard.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c85p-qv79-g52f/GHSA-c85p-qv79-g52f.json b/advisories/unreviewed/2022/05/GHSA-c85p-qv79-g52f/GHSA-c85p-qv79-g52f.json index 4601db701c6..b0a4cf38ebe 100644 --- a/advisories/unreviewed/2022/05/GHSA-c85p-qv79-g52f/GHSA-c85p-qv79-g52f.json +++ b/advisories/unreviewed/2022/05/GHSA-c85p-qv79-g52f/GHSA-c85p-qv79-g52f.json @@ -7,12 +7,8 @@ "CVE-2019-20684" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.40, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, WNR2020 before 1.1.0.62, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c8g8-5ccr-8q6v/GHSA-c8g8-5ccr-8q6v.json b/advisories/unreviewed/2022/05/GHSA-c8g8-5ccr-8q6v/GHSA-c8g8-5ccr-8q6v.json index 86e1cfd65d5..87704cc8b67 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8g8-5ccr-8q6v/GHSA-c8g8-5ccr-8q6v.json +++ b/advisories/unreviewed/2022/05/GHSA-c8g8-5ccr-8q6v/GHSA-c8g8-5ccr-8q6v.json @@ -7,12 +7,8 @@ "CVE-2020-2903" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Connection Handling). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c94j-x67v-fc73/GHSA-c94j-x67v-fc73.json b/advisories/unreviewed/2022/05/GHSA-c94j-x67v-fc73/GHSA-c94j-x67v-fc73.json index 2b59d24a5e2..d99cd8aba80 100644 --- a/advisories/unreviewed/2022/05/GHSA-c94j-x67v-fc73/GHSA-c94j-x67v-fc73.json +++ b/advisories/unreviewed/2022/05/GHSA-c94j-x67v-fc73/GHSA-c94j-x67v-fc73.json @@ -7,12 +7,8 @@ "CVE-2020-11886" ], "details": "OpenNMS Horizon and Meridian allows HQL Injection in element/nodeList.htm (aka the NodeListController) via snmpParm or snmpParmValue to addCriteriaForSnmpParm. This affects Horizon before 25.2.1, Meridian 2019 before 2019.1.4, Meridian 2018 before 2018.1.16, and Meridian 2017 before 2017.1.21.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9ff-9v66-p9cp/GHSA-c9ff-9v66-p9cp.json b/advisories/unreviewed/2022/05/GHSA-c9ff-9v66-p9cp/GHSA-c9ff-9v66-p9cp.json index 29705eb86a5..b7ec9903c53 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9ff-9v66-p9cp/GHSA-c9ff-9v66-p9cp.json +++ b/advisories/unreviewed/2022/05/GHSA-c9ff-9v66-p9cp/GHSA-c9ff-9v66-p9cp.json @@ -7,12 +7,8 @@ "CVE-2018-21151" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D7800 before 1.0.1.34, R7500v2 before 1.0.3.26, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR4300v2 before 1.0.0.54, and WNDR4500v3 before 1.0.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cc8r-88h9-67f7/GHSA-cc8r-88h9-67f7.json b/advisories/unreviewed/2022/05/GHSA-cc8r-88h9-67f7/GHSA-cc8r-88h9-67f7.json index 3829f2173ce..c6ac5fb3f41 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc8r-88h9-67f7/GHSA-cc8r-88h9-67f7.json +++ b/advisories/unreviewed/2022/05/GHSA-cc8r-88h9-67f7/GHSA-cc8r-88h9-67f7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cf2g-8x42-fqvf/GHSA-cf2g-8x42-fqvf.json b/advisories/unreviewed/2022/05/GHSA-cf2g-8x42-fqvf/GHSA-cf2g-8x42-fqvf.json index 9dd2a8cfffc..15ddabe01fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf2g-8x42-fqvf/GHSA-cf2g-8x42-fqvf.json +++ b/advisories/unreviewed/2022/05/GHSA-cf2g-8x42-fqvf/GHSA-cf2g-8x42-fqvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cf5r-m6qv-vfqf/GHSA-cf5r-m6qv-vfqf.json b/advisories/unreviewed/2022/05/GHSA-cf5r-m6qv-vfqf/GHSA-cf5r-m6qv-vfqf.json index c4448edc017..7dae9464b7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf5r-m6qv-vfqf/GHSA-cf5r-m6qv-vfqf.json +++ b/advisories/unreviewed/2022/05/GHSA-cf5r-m6qv-vfqf/GHSA-cf5r-m6qv-vfqf.json @@ -7,12 +7,8 @@ "CVE-2020-2895" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg5j-mr76-38vr/GHSA-cg5j-mr76-38vr.json b/advisories/unreviewed/2022/05/GHSA-cg5j-mr76-38vr/GHSA-cg5j-mr76-38vr.json index 819b3f9f550..cb8762e17ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg5j-mr76-38vr/GHSA-cg5j-mr76-38vr.json +++ b/advisories/unreviewed/2022/05/GHSA-cg5j-mr76-38vr/GHSA-cg5j-mr76-38vr.json @@ -7,12 +7,8 @@ "CVE-2019-20772" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. The Account subsystem allows authorization bypass. The LG ID is LVE-SMP-190007 (August 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-chh3-9qmw-g849/GHSA-chh3-9qmw-g849.json b/advisories/unreviewed/2022/05/GHSA-chh3-9qmw-g849/GHSA-chh3-9qmw-g849.json index 8afec40d57f..35806001bea 100644 --- a/advisories/unreviewed/2022/05/GHSA-chh3-9qmw-g849/GHSA-chh3-9qmw-g849.json +++ b/advisories/unreviewed/2022/05/GHSA-chh3-9qmw-g849/GHSA-chh3-9qmw-g849.json @@ -7,12 +7,8 @@ "CVE-2017-18811" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cj7h-5rjr-x64q/GHSA-cj7h-5rjr-x64q.json b/advisories/unreviewed/2022/05/GHSA-cj7h-5rjr-x64q/GHSA-cj7h-5rjr-x64q.json index 697c4ee6b45..9de903e3b90 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj7h-5rjr-x64q/GHSA-cj7h-5rjr-x64q.json +++ b/advisories/unreviewed/2022/05/GHSA-cj7h-5rjr-x64q/GHSA-cj7h-5rjr-x64q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjg4-jg6m-g6pw/GHSA-cjg4-jg6m-g6pw.json b/advisories/unreviewed/2022/05/GHSA-cjg4-jg6m-g6pw/GHSA-cjg4-jg6m-g6pw.json index 81b7cc8890f..38613009cb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjg4-jg6m-g6pw/GHSA-cjg4-jg6m-g6pw.json +++ b/advisories/unreviewed/2022/05/GHSA-cjg4-jg6m-g6pw/GHSA-cjg4-jg6m-g6pw.json @@ -7,12 +7,8 @@ "CVE-2019-20751" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.60, DM200 before 1.0.0.61, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.26, R9000 before 1.0.4.26, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.66, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, and WNR2000v5 before 1.0.0.68.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjmp-4cxm-hrf6/GHSA-cjmp-4cxm-hrf6.json b/advisories/unreviewed/2022/05/GHSA-cjmp-4cxm-hrf6/GHSA-cjmp-4cxm-hrf6.json index fc292dc2ae5..a51ec5bbb07 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjmp-4cxm-hrf6/GHSA-cjmp-4cxm-hrf6.json +++ b/advisories/unreviewed/2022/05/GHSA-cjmp-4cxm-hrf6/GHSA-cjmp-4cxm-hrf6.json @@ -7,12 +7,8 @@ "CVE-2019-20713" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D8500 before 1.0.3.44, R6250 before 1.0.4.34, R6300v2 before 1.0.4.32, R6400 before 1.0.1.46, R6700 before 1.0.2.6, R6900 before 1.0.2.4, R6900P before 1.3.1.64, R7000 before 1.0.9.42, R7000P before 1.3.1.64, R7100LG before 1.0.0.50, R7300DST before 1.0.0.70, R7900 before 1.0.3.8, R7900P before 1.4.1.30, R8000 before 1.0.4.28, R8000P before 1.4.1.30, R8300 before 1.0.2.128, and R8500 before 1.0.2.128.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cm69-fqmx-m729/GHSA-cm69-fqmx-m729.json b/advisories/unreviewed/2022/05/GHSA-cm69-fqmx-m729/GHSA-cm69-fqmx-m729.json index 1165d539bf5..d206de6b750 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm69-fqmx-m729/GHSA-cm69-fqmx-m729.json +++ b/advisories/unreviewed/2022/05/GHSA-cm69-fqmx-m729/GHSA-cm69-fqmx-m729.json @@ -7,12 +7,8 @@ "CVE-2020-2946" ], "details": "Vulnerability in the Application Performance Management product of Oracle Enterprise Manager (component: EM Request Monitoring). Supported versions that are affected are 12.1.0.5, 13.2.0.0 and 13.3.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Application Performance Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Application Performance Management accessible data as well as unauthorized update, insert or delete access to some of Application Performance Management accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Application Performance Management. CVSS 3.0 Base Score 6.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmg9-pf33-9q72/GHSA-cmg9-pf33-9q72.json b/advisories/unreviewed/2022/05/GHSA-cmg9-pf33-9q72/GHSA-cmg9-pf33-9q72.json index daba2e6b635..22fef67f77c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmg9-pf33-9q72/GHSA-cmg9-pf33-9q72.json +++ b/advisories/unreviewed/2022/05/GHSA-cmg9-pf33-9q72/GHSA-cmg9-pf33-9q72.json @@ -7,12 +7,8 @@ "CVE-2020-11889" ], "details": "An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized deletion of usergroups.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmvh-xx7q-427v/GHSA-cmvh-xx7q-427v.json b/advisories/unreviewed/2022/05/GHSA-cmvh-xx7q-427v/GHSA-cmvh-xx7q-427v.json index c0d2bfc09f1..c3ff2a26738 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmvh-xx7q-427v/GHSA-cmvh-xx7q-427v.json +++ b/advisories/unreviewed/2022/05/GHSA-cmvh-xx7q-427v/GHSA-cmvh-xx7q-427v.json @@ -7,12 +7,8 @@ "CVE-2019-20756" ], "details": "Certain NETGEAR devices are affected by reflected XSS. This affects EX7000 before 1.0.0.64, EX6200 before 1.0.3.86, EX6150 before 1.0.0.38, EX6130 before 1.0.0.22, EX6120 before 1.0.0.40, EX6100 before 1.0.2.22, EX6000 before 1.0.0.30, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, R8300 before 1.0.2.94, R7300DST before 1.0.0.62, R7000P before 1.3.0.20, R6900P before 1.3.0.20, R6400 before 1.0.1.32, R6300v2 before 1.0.4.24, R8500 before 1.0.2.94, WNDR3400v3 before 1.0.1.18, and WN2500RPv2 before 1.0.1.52.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cqcc-c563-84qx/GHSA-cqcc-c563-84qx.json b/advisories/unreviewed/2022/05/GHSA-cqcc-c563-84qx/GHSA-cqcc-c563-84qx.json index de5de105678..cbfd7fec24b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqcc-c563-84qx/GHSA-cqcc-c563-84qx.json +++ b/advisories/unreviewed/2022/05/GHSA-cqcc-c563-84qx/GHSA-cqcc-c563-84qx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqcc-f4j6-cmh9/GHSA-cqcc-f4j6-cmh9.json b/advisories/unreviewed/2022/05/GHSA-cqcc-f4j6-cmh9/GHSA-cqcc-f4j6-cmh9.json index 163f1d87415..569465a8efa 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqcc-f4j6-cmh9/GHSA-cqcc-f4j6-cmh9.json +++ b/advisories/unreviewed/2022/05/GHSA-cqcc-f4j6-cmh9/GHSA-cqcc-f4j6-cmh9.json @@ -7,12 +7,8 @@ "CVE-2020-2804" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Memcached). Supported versions that are affected are 5.6.47 and prior, 5.7.29 and prior and 8.0.19 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cr8q-xm9p-34xm/GHSA-cr8q-xm9p-34xm.json b/advisories/unreviewed/2022/05/GHSA-cr8q-xm9p-34xm/GHSA-cr8q-xm9p-34xm.json index 4bfa230b270..df5630af0e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr8q-xm9p-34xm/GHSA-cr8q-xm9p-34xm.json +++ b/advisories/unreviewed/2022/05/GHSA-cr8q-xm9p-34xm/GHSA-cr8q-xm9p-34xm.json @@ -7,12 +7,8 @@ "CVE-2017-18779" ], "details": "Certain NETGEAR devices are affected by a buffer overflow. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cr9m-fr8r-v7vg/GHSA-cr9m-fr8r-v7vg.json b/advisories/unreviewed/2022/05/GHSA-cr9m-fr8r-v7vg/GHSA-cr9m-fr8r-v7vg.json index 6c4f004887f..73b318d6bad 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr9m-fr8r-v7vg/GHSA-cr9m-fr8r-v7vg.json +++ b/advisories/unreviewed/2022/05/GHSA-cr9m-fr8r-v7vg/GHSA-cr9m-fr8r-v7vg.json @@ -7,12 +7,8 @@ "CVE-2019-20736" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6000 before 1.0.0.72, D6100 before 1.0.0.63, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-crwj-6pw8-226h/GHSA-crwj-6pw8-226h.json b/advisories/unreviewed/2022/05/GHSA-crwj-6pw8-226h/GHSA-crwj-6pw8-226h.json index bcb7945228a..fb2a9cb4e13 100644 --- a/advisories/unreviewed/2022/05/GHSA-crwj-6pw8-226h/GHSA-crwj-6pw8-226h.json +++ b/advisories/unreviewed/2022/05/GHSA-crwj-6pw8-226h/GHSA-crwj-6pw8-226h.json @@ -7,12 +7,8 @@ "CVE-2017-18847" ], "details": "Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects R6400v2 before 1.0.2.32, R7000P/R6900P before 1.0.0.56, R7900 before 1.0.1.18, R8300 before 1.0.2.100_1.0.82, R8500 before 1.0.2.100_1.0.82, and D8500 before 1.0.3.29.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvq9-v475-8x82/GHSA-cvq9-v475-8x82.json b/advisories/unreviewed/2022/05/GHSA-cvq9-v475-8x82/GHSA-cvq9-v475-8x82.json index 42a3cb904f8..1bc428ce953 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvq9-v475-8x82/GHSA-cvq9-v475-8x82.json +++ b/advisories/unreviewed/2022/05/GHSA-cvq9-v475-8x82/GHSA-cvq9-v475-8x82.json @@ -7,12 +7,8 @@ "CVE-2019-20752" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D7800 before 1.0.1.44, DM200 before 1.0.0.58, R7800 before 1.0.2.58, R8900 before 1.0.4.12, R9000 before 1.0.4.12, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS20 before 2.3.0.28, RBK40 before 2.3.0.28, RBS40 before 2.3.0.28, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, RBS50 before 2.3.0.32, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.60, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, and WNR2000v5 before 1.0.0.68.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvrm-7p45-fx4m/GHSA-cvrm-7p45-fx4m.json b/advisories/unreviewed/2022/05/GHSA-cvrm-7p45-fx4m/GHSA-cvrm-7p45-fx4m.json index 23b46219847..dfd82420d79 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvrm-7p45-fx4m/GHSA-cvrm-7p45-fx4m.json +++ b/advisories/unreviewed/2022/05/GHSA-cvrm-7p45-fx4m/GHSA-cvrm-7p45-fx4m.json @@ -7,12 +7,8 @@ "CVE-2017-18806" ], "details": "Certain NETGEAR devices are affected by command injection. This affects WAC510 before 1.3.0.10, WAC120 before 2.1.4, WNDAP620 before 2.1.3, WND930 before 2.1.2, WN604 before 3.3.7, WNDAP660 before 3.7.4.0, WNDAP350 before 3.7.4.0, WNAP320 before 3.7.4.0, WNAP210v2 before 3.7.4.0, and WNDAP360 before 3.7.4.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cw87-f64q-cj99/GHSA-cw87-f64q-cj99.json b/advisories/unreviewed/2022/05/GHSA-cw87-f64q-cj99/GHSA-cw87-f64q-cj99.json index 73a7d2a0c15..50ee5d1db13 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw87-f64q-cj99/GHSA-cw87-f64q-cj99.json +++ b/advisories/unreviewed/2022/05/GHSA-cw87-f64q-cj99/GHSA-cw87-f64q-cj99.json @@ -7,12 +7,8 @@ "CVE-2019-10624" ], "details": "While handling the vendor command there is an integer truncation issue that could yield a buffer overflow due to int data type copied to u8 data type in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8096AU, MSM8996AU, QCA6574AU, QCN7605, Rennell, SC8180X, SDM710, SDX55, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cx4r-57h5-mw23/GHSA-cx4r-57h5-mw23.json b/advisories/unreviewed/2022/05/GHSA-cx4r-57h5-mw23/GHSA-cx4r-57h5-mw23.json index 0e1b47fbefc..38664e58c57 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx4r-57h5-mw23/GHSA-cx4r-57h5-mw23.json +++ b/advisories/unreviewed/2022/05/GHSA-cx4r-57h5-mw23/GHSA-cx4r-57h5-mw23.json @@ -7,12 +7,8 @@ "CVE-2019-10574" ], "details": "Lack of boundary checks for data offsets received from HLOS can lead to out-of-bound read in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8016, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, QCM2150, QCS605, QM215, Rennell, SC7180, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxhv-qfhw-63ww/GHSA-cxhv-qfhw-63ww.json b/advisories/unreviewed/2022/05/GHSA-cxhv-qfhw-63ww/GHSA-cxhv-qfhw-63ww.json index 6c245dfa5a0..b382e9a5078 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxhv-qfhw-63ww/GHSA-cxhv-qfhw-63ww.json +++ b/advisories/unreviewed/2022/05/GHSA-cxhv-qfhw-63ww/GHSA-cxhv-qfhw-63ww.json @@ -7,12 +7,8 @@ "CVE-2017-18849" ], "details": "Certain NETGEAR devices are affected by command injection. This affects D6220 before 1.0.0.26, D6400 before 1.0.0.60, D8500 before 1.0.3.29, R6250 before 1.0.4.12, R6400 before 1.01.24, R6400v2 before 1.0.2.30, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R6900P before 1.0.0.56, R7000 before 1.0.9.4, R7000P before 1.0.0.56, R7100LG before 1.0.0.32, R7300DST before 1.0.0.54, R7900 before 1.0.1.18, R8000 before 1.0.3.44, R8300 before 1.0.2.100_1.0.82, and R8500 before 1.0.2.100_1.0.82.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f22m-r62p-8qrj/GHSA-f22m-r62p-8qrj.json b/advisories/unreviewed/2022/05/GHSA-f22m-r62p-8qrj/GHSA-f22m-r62p-8qrj.json index a6da902222a..848fd98d0fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-f22m-r62p-8qrj/GHSA-f22m-r62p-8qrj.json +++ b/advisories/unreviewed/2022/05/GHSA-f22m-r62p-8qrj/GHSA-f22m-r62p-8qrj.json @@ -7,12 +7,8 @@ "CVE-2020-2852" ], "details": "Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: Calendar). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Advanced Outbound Telephony. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Advanced Outbound Telephony, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Advanced Outbound Telephony accessible data as well as unauthorized update, insert or delete access to some of Oracle Advanced Outbound Telephony accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f294-2h7r-gx55/GHSA-f294-2h7r-gx55.json b/advisories/unreviewed/2022/05/GHSA-f294-2h7r-gx55/GHSA-f294-2h7r-gx55.json index a6bcef7e153..20bda5208ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-f294-2h7r-gx55/GHSA-f294-2h7r-gx55.json +++ b/advisories/unreviewed/2022/05/GHSA-f294-2h7r-gx55/GHSA-f294-2h7r-gx55.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f2rj-wpff-j4qw/GHSA-f2rj-wpff-j4qw.json b/advisories/unreviewed/2022/05/GHSA-f2rj-wpff-j4qw/GHSA-f2rj-wpff-j4qw.json index c74a2a814d8..f307ed54c85 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2rj-wpff-j4qw/GHSA-f2rj-wpff-j4qw.json +++ b/advisories/unreviewed/2022/05/GHSA-f2rj-wpff-j4qw/GHSA-f2rj-wpff-j4qw.json @@ -7,12 +7,8 @@ "CVE-2017-18765" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects R6300v2 before 1.0.4.8, R6400 before 1.0.1.22, R6400v2 before 1.0.2.32, R6700 before 1.0.1.20, R6900 before 1.0.1.20, WNR3500Lv2 before 1.2.0.44, and WNR2000v2 before 1.2.0.8.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f43m-w22p-wcp2/GHSA-f43m-w22p-wcp2.json b/advisories/unreviewed/2022/05/GHSA-f43m-w22p-wcp2/GHSA-f43m-w22p-wcp2.json index 8b24bf233a3..4128d7ca3f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f43m-w22p-wcp2/GHSA-f43m-w22p-wcp2.json +++ b/advisories/unreviewed/2022/05/GHSA-f43m-w22p-wcp2/GHSA-f43m-w22p-wcp2.json @@ -7,12 +7,8 @@ "CVE-2019-20688" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3100RPv2 before 1.0.0.60, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4r2-pjj6-jmj8/GHSA-f4r2-pjj6-jmj8.json b/advisories/unreviewed/2022/05/GHSA-f4r2-pjj6-jmj8/GHSA-f4r2-pjj6-jmj8.json index ee05861efd4..2ec7589ef18 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4r2-pjj6-jmj8/GHSA-f4r2-pjj6-jmj8.json +++ b/advisories/unreviewed/2022/05/GHSA-f4r2-pjj6-jmj8/GHSA-f4r2-pjj6-jmj8.json @@ -7,12 +7,8 @@ "CVE-2019-10621" ], "details": "Use after free issue when MAP and UNMAP calls at same time as data structure used my MAP may be freed by UNMAP function in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in Nicobar, QCS405, Rennell, Saipan, SC8180X, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f68q-r7fp-qq3f/GHSA-f68q-r7fp-qq3f.json b/advisories/unreviewed/2022/05/GHSA-f68q-r7fp-qq3f/GHSA-f68q-r7fp-qq3f.json index 9b1bc740386..aea2e44df90 100644 --- a/advisories/unreviewed/2022/05/GHSA-f68q-r7fp-qq3f/GHSA-f68q-r7fp-qq3f.json +++ b/advisories/unreviewed/2022/05/GHSA-f68q-r7fp-qq3f/GHSA-f68q-r7fp-qq3f.json @@ -7,12 +7,8 @@ "CVE-2020-10211" ], "details": "A remote code execution vulnerability in UCB component of Mitel MiVoice Connect before 19.1 SP1 could allow an unauthenticated remote attacker to execute arbitrary scripts due to insufficient validation of URL parameters. A successful exploit could allow an attacker to gain access to sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f694-frrr-wm9w/GHSA-f694-frrr-wm9w.json b/advisories/unreviewed/2022/05/GHSA-f694-frrr-wm9w/GHSA-f694-frrr-wm9w.json index 2eab2a3a7c1..6e4109b250d 100644 --- a/advisories/unreviewed/2022/05/GHSA-f694-frrr-wm9w/GHSA-f694-frrr-wm9w.json +++ b/advisories/unreviewed/2022/05/GHSA-f694-frrr-wm9w/GHSA-f694-frrr-wm9w.json @@ -7,12 +7,8 @@ "CVE-2017-18770" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R7800 before 1.0.2.36, PLW1000v2 before 1.0.0.14, and PLW1010v2 before 1.0.0.14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f6fp-wvjq-6rx9/GHSA-f6fp-wvjq-6rx9.json b/advisories/unreviewed/2022/05/GHSA-f6fp-wvjq-6rx9/GHSA-f6fp-wvjq-6rx9.json index 0695899123b..5280732dedf 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6fp-wvjq-6rx9/GHSA-f6fp-wvjq-6rx9.json +++ b/advisories/unreviewed/2022/05/GHSA-f6fp-wvjq-6rx9/GHSA-f6fp-wvjq-6rx9.json @@ -7,12 +7,8 @@ "CVE-2019-20763" ], "details": "NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f6wx-j385-2c9h/GHSA-f6wx-j385-2c9h.json b/advisories/unreviewed/2022/05/GHSA-f6wx-j385-2c9h/GHSA-f6wx-j385-2c9h.json index 4a4fe913da5..db9cf7c63fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6wx-j385-2c9h/GHSA-f6wx-j385-2c9h.json +++ b/advisories/unreviewed/2022/05/GHSA-f6wx-j385-2c9h/GHSA-f6wx-j385-2c9h.json @@ -7,12 +7,8 @@ "CVE-2020-2929" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7pp-5pqm-g7c9/GHSA-f7pp-5pqm-g7c9.json b/advisories/unreviewed/2022/05/GHSA-f7pp-5pqm-g7c9/GHSA-f7pp-5pqm-g7c9.json index b861baf8217..931fd60f379 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7pp-5pqm-g7c9/GHSA-f7pp-5pqm-g7c9.json +++ b/advisories/unreviewed/2022/05/GHSA-f7pp-5pqm-g7c9/GHSA-f7pp-5pqm-g7c9.json @@ -7,12 +7,8 @@ "CVE-2019-20746" ], "details": "Certain NETGEAR devices are affected by reflected XSS. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D7800 before 1.0.1.44, DM200 before 1.0.0.58, R7800 before 1.0.2.58, R8900 before 1.0.4.12, R9000 before 1.0.4.8, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS20 before 2.3.0.28, RBK40 before 2.3.0.28, RBS40 before 2.3.0.28, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, RBS50 before 2.3.0.32, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.60, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, and WNR2000v5 before 1.0.0.68.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f8vm-vvwr-8prm/GHSA-f8vm-vvwr-8prm.json b/advisories/unreviewed/2022/05/GHSA-f8vm-vvwr-8prm/GHSA-f8vm-vvwr-8prm.json index 3b92500f138..b347dba2972 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8vm-vvwr-8prm/GHSA-f8vm-vvwr-8prm.json +++ b/advisories/unreviewed/2022/05/GHSA-f8vm-vvwr-8prm/GHSA-f8vm-vvwr-8prm.json @@ -7,12 +7,8 @@ "CVE-2020-11820" ], "details": "Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the entities_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f988-3hg9-75wq/GHSA-f988-3hg9-75wq.json b/advisories/unreviewed/2022/05/GHSA-f988-3hg9-75wq/GHSA-f988-3hg9-75wq.json index 7aef0141c46..f8a144e19cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-f988-3hg9-75wq/GHSA-f988-3hg9-75wq.json +++ b/advisories/unreviewed/2022/05/GHSA-f988-3hg9-75wq/GHSA-f988-3hg9-75wq.json @@ -7,12 +7,8 @@ "CVE-2018-21145" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D7800 before 1.0.1.34, DM200 before 1.0.0.50, R6100 before 1.0.1.22, R7500 before 1.0.0.122, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.54, WNDR4500v3 before 1.0.0.54, and WNR2000v5 before 1.0.0.64.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f9gr-h4g2-j2pw/GHSA-f9gr-h4g2-j2pw.json b/advisories/unreviewed/2022/05/GHSA-f9gr-h4g2-j2pw/GHSA-f9gr-h4g2-j2pw.json index 4f312efa68a..93a048d3513 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9gr-h4g2-j2pw/GHSA-f9gr-h4g2-j2pw.json +++ b/advisories/unreviewed/2022/05/GHSA-f9gr-h4g2-j2pw/GHSA-f9gr-h4g2-j2pw.json @@ -7,12 +7,8 @@ "CVE-2017-18816" ], "details": "NETGEAR ReadyNAS OS 6 devices, running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f9w6-jq77-26g5/GHSA-f9w6-jq77-26g5.json b/advisories/unreviewed/2022/05/GHSA-f9w6-jq77-26g5/GHSA-f9w6-jq77-26g5.json index ef012f4fa97..73405adde0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9w6-jq77-26g5/GHSA-f9w6-jq77-26g5.json +++ b/advisories/unreviewed/2022/05/GHSA-f9w6-jq77-26g5/GHSA-f9w6-jq77-26g5.json @@ -7,12 +7,8 @@ "CVE-2020-11894" ], "details": "Ming (aka libming) 0.4.8 has a heap-based buffer over-read (8 bytes) in the function decompileIF() in decompile.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fc6f-xwvr-m5xg/GHSA-fc6f-xwvr-m5xg.json b/advisories/unreviewed/2022/05/GHSA-fc6f-xwvr-m5xg/GHSA-fc6f-xwvr-m5xg.json index 9c675114705..82143b57dc2 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc6f-xwvr-m5xg/GHSA-fc6f-xwvr-m5xg.json +++ b/advisories/unreviewed/2022/05/GHSA-fc6f-xwvr-m5xg/GHSA-fc6f-xwvr-m5xg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fcw9-f4mv-hhcg/GHSA-fcw9-f4mv-hhcg.json b/advisories/unreviewed/2022/05/GHSA-fcw9-f4mv-hhcg/GHSA-fcw9-f4mv-hhcg.json index 06a5a36ce5e..ddcb44ca69b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fcw9-f4mv-hhcg/GHSA-fcw9-f4mv-hhcg.json +++ b/advisories/unreviewed/2022/05/GHSA-fcw9-f4mv-hhcg/GHSA-fcw9-f4mv-hhcg.json @@ -7,12 +7,8 @@ "CVE-2020-2793" ], "details": "Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Infrastructure). Supported versions that are affected are 8.0.6 - 8.0.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Analytical Applications Infrastructure. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Analytical Applications Infrastructure accessible data as well as unauthorized read access to a subset of Oracle Financial Services Analytical Applications Infrastructure accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ff2h-w98c-mqf9/GHSA-ff2h-w98c-mqf9.json b/advisories/unreviewed/2022/05/GHSA-ff2h-w98c-mqf9/GHSA-ff2h-w98c-mqf9.json index 7f3d4261fb0..5cb2c762e1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff2h-w98c-mqf9/GHSA-ff2h-w98c-mqf9.json +++ b/advisories/unreviewed/2022/05/GHSA-ff2h-w98c-mqf9/GHSA-ff2h-w98c-mqf9.json @@ -7,12 +7,8 @@ "CVE-2017-18755" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects R6300v2 before 1.0.4.8, R6400v2 before 1.0.2.32, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R7000P before 1.0.0.86, R6900P before 1.0.0.56, R7300 before 1.0.0.54, R8300 before 1.0.2.106, R8500 before 1.0.2.106, DGN2200v4 before 1.0.0.86, DGND2200Bv4 before 1.0.0.86, R6050 before 1.0.0.86, JR6150 before 1.0.1.10, R6220 before 1.1.0.50, and WNDR3700v5 before V1.1.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ff73-2p85-hmv6/GHSA-ff73-2p85-hmv6.json b/advisories/unreviewed/2022/05/GHSA-ff73-2p85-hmv6/GHSA-ff73-2p85-hmv6.json index 53431ba4953..d6120bc72db 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff73-2p85-hmv6/GHSA-ff73-2p85-hmv6.json +++ b/advisories/unreviewed/2022/05/GHSA-ff73-2p85-hmv6/GHSA-ff73-2p85-hmv6.json @@ -7,12 +7,8 @@ "CVE-2020-11812" ], "details": "Rukovoditel 2.5.2 is affected by a SQL injection vulnerability because of improper handling of the filters[0][value] or filters[1][value] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fg8x-qfj7-cj7c/GHSA-fg8x-qfj7-cj7c.json b/advisories/unreviewed/2022/05/GHSA-fg8x-qfj7-cj7c/GHSA-fg8x-qfj7-cj7c.json index e0ab63d34c2..74a4668fe72 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg8x-qfj7-cj7c/GHSA-fg8x-qfj7-cj7c.json +++ b/advisories/unreviewed/2022/05/GHSA-fg8x-qfj7-cj7c/GHSA-fg8x-qfj7-cj7c.json @@ -7,12 +7,8 @@ "CVE-2017-18810" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fgc7-88p2-vwpp/GHSA-fgc7-88p2-vwpp.json b/advisories/unreviewed/2022/05/GHSA-fgc7-88p2-vwpp/GHSA-fgc7-88p2-vwpp.json index 9496cc2bf9a..c085a4eccee 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgc7-88p2-vwpp/GHSA-fgc7-88p2-vwpp.json +++ b/advisories/unreviewed/2022/05/GHSA-fgc7-88p2-vwpp/GHSA-fgc7-88p2-vwpp.json @@ -7,12 +7,8 @@ "CVE-2020-5729" ], "details": "In OpenMRS 2.9 and prior, the UI Framework Error Page reflects arbitrary, user-supplied input back to the browser, which can result in XSS. Any page that is able to trigger a UI Framework Error is susceptible to this issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fhv4-qrh6-mmh4/GHSA-fhv4-qrh6-mmh4.json b/advisories/unreviewed/2022/05/GHSA-fhv4-qrh6-mmh4/GHSA-fhv4-qrh6-mmh4.json index 367eda19a3e..67a68955699 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhv4-qrh6-mmh4/GHSA-fhv4-qrh6-mmh4.json +++ b/advisories/unreviewed/2022/05/GHSA-fhv4-qrh6-mmh4/GHSA-fhv4-qrh6-mmh4.json @@ -7,12 +7,8 @@ "CVE-2017-18844" ], "details": "Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, and D7000 before 1.0.1.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fjf3-7gx3-grmg/GHSA-fjf3-7gx3-grmg.json b/advisories/unreviewed/2022/05/GHSA-fjf3-7gx3-grmg/GHSA-fjf3-7gx3-grmg.json index 3f7a22bf552..8a46cc4a38a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjf3-7gx3-grmg/GHSA-fjf3-7gx3-grmg.json +++ b/advisories/unreviewed/2022/05/GHSA-fjf3-7gx3-grmg/GHSA-fjf3-7gx3-grmg.json @@ -7,12 +7,8 @@ "CVE-2020-0077" ], "details": "In authorize_enroll of the FPC IRIS TrustZone app, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-146055840", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fjpj-hq84-g2mc/GHSA-fjpj-hq84-g2mc.json b/advisories/unreviewed/2022/05/GHSA-fjpj-hq84-g2mc/GHSA-fjpj-hq84-g2mc.json index 9885d775b18..2e9fa5bd3ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjpj-hq84-g2mc/GHSA-fjpj-hq84-g2mc.json +++ b/advisories/unreviewed/2022/05/GHSA-fjpj-hq84-g2mc/GHSA-fjpj-hq84-g2mc.json @@ -7,12 +7,8 @@ "CVE-2020-2885" ], "details": "Vulnerability in the Oracle Document Management and Collaboration product of Oracle E-Business Suite (component: Attachments). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Document Management and Collaboration. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Document Management and Collaboration, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Document Management and Collaboration accessible data as well as unauthorized update, insert or delete access to some of Oracle Document Management and Collaboration accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fpm7-m99x-8x97/GHSA-fpm7-m99x-8x97.json b/advisories/unreviewed/2022/05/GHSA-fpm7-m99x-8x97/GHSA-fpm7-m99x-8x97.json index e468b861bae..6cab2f56e85 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpm7-m99x-8x97/GHSA-fpm7-m99x-8x97.json +++ b/advisories/unreviewed/2022/05/GHSA-fpm7-m99x-8x97/GHSA-fpm7-m99x-8x97.json @@ -7,12 +7,8 @@ "CVE-2020-0072" ], "details": "In rw_t2t_handle_tlv_detect_rsp of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-147310271", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fpr9-pr9g-872c/GHSA-fpr9-pr9g-872c.json b/advisories/unreviewed/2022/05/GHSA-fpr9-pr9g-872c/GHSA-fpr9-pr9g-872c.json index 576e3c1d818..71635c3841e 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpr9-pr9g-872c/GHSA-fpr9-pr9g-872c.json +++ b/advisories/unreviewed/2022/05/GHSA-fpr9-pr9g-872c/GHSA-fpr9-pr9g-872c.json @@ -7,12 +7,8 @@ "CVE-2020-3177" ], "details": "A vulnerability in the Tool for Auto-Registered Phones Support (TAPS) of Cisco Unified Communications Manager (UCM) and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote attacker to conduct directory traversal attacks on an affected device. The vulnerability is due to insufficient validation of user-supplied input to the TAPS interface of the affected device. An attacker could exploit this vulnerability by sending a crafted request to the TAPS interface. A successful exploit could allow the attacker to read arbitrary files in the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fqx2-86jp-wcjv/GHSA-fqx2-86jp-wcjv.json b/advisories/unreviewed/2022/05/GHSA-fqx2-86jp-wcjv/GHSA-fqx2-86jp-wcjv.json index bb0b0f347e5..9ab5cff8340 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqx2-86jp-wcjv/GHSA-fqx2-86jp-wcjv.json +++ b/advisories/unreviewed/2022/05/GHSA-fqx2-86jp-wcjv/GHSA-fqx2-86jp-wcjv.json @@ -7,12 +7,8 @@ "CVE-2019-14009" ], "details": "Out of bound memory access while processing TZ command handler due to improper input validation on response length received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8098, MDM9150, MDM9607, MDM9650, MSM8905, MSM8909, MSM8998, SDA660, SDA845, SDM630, SDM636, SDM660, SDM845, SDM850, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fr93-xp6x-vx2q/GHSA-fr93-xp6x-vx2q.json b/advisories/unreviewed/2022/05/GHSA-fr93-xp6x-vx2q/GHSA-fr93-xp6x-vx2q.json index 13275e03156..51b2cb28730 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr93-xp6x-vx2q/GHSA-fr93-xp6x-vx2q.json +++ b/advisories/unreviewed/2022/05/GHSA-fr93-xp6x-vx2q/GHSA-fr93-xp6x-vx2q.json @@ -7,12 +7,8 @@ "CVE-2020-9275" ], "details": "An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A cfm UDP service listening on port 65002 allows remote, unauthenticated exfiltration of administrative credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-frrj-4qmc-2536/GHSA-frrj-4qmc-2536.json b/advisories/unreviewed/2022/05/GHSA-frrj-4qmc-2536/GHSA-frrj-4qmc-2536.json index 069d8f2248c..6f3bb97b554 100644 --- a/advisories/unreviewed/2022/05/GHSA-frrj-4qmc-2536/GHSA-frrj-4qmc-2536.json +++ b/advisories/unreviewed/2022/05/GHSA-frrj-4qmc-2536/GHSA-frrj-4qmc-2536.json @@ -7,12 +7,8 @@ "CVE-2019-14033" ], "details": "Multiple Read overflows issue due to improper length check while decoding tau reject/tau accept/detach request/attach reject/attach accept in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fxr3-63w8-hvhx/GHSA-fxr3-63w8-hvhx.json b/advisories/unreviewed/2022/05/GHSA-fxr3-63w8-hvhx/GHSA-fxr3-63w8-hvhx.json index 1c799ac2c77..7ca6762df36 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxr3-63w8-hvhx/GHSA-fxr3-63w8-hvhx.json +++ b/advisories/unreviewed/2022/05/GHSA-fxr3-63w8-hvhx/GHSA-fxr3-63w8-hvhx.json @@ -7,12 +7,8 @@ "CVE-2020-10377" ], "details": "A weak encryption vulnerability in Mitel MiVoice Connect Client before 214.100.1214.0 could allow an unauthenticated attacker to gain access to user credentials. A successful exploit could allow an attacker to access the system with compromised user credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g394-5cmh-8vvj/GHSA-g394-5cmh-8vvj.json b/advisories/unreviewed/2022/05/GHSA-g394-5cmh-8vvj/GHSA-g394-5cmh-8vvj.json index fd1496341d4..0e3385696b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-g394-5cmh-8vvj/GHSA-g394-5cmh-8vvj.json +++ b/advisories/unreviewed/2022/05/GHSA-g394-5cmh-8vvj/GHSA-g394-5cmh-8vvj.json @@ -7,12 +7,8 @@ "CVE-2020-2815" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Profile). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g48c-mxp7-x4g2/GHSA-g48c-mxp7-x4g2.json b/advisories/unreviewed/2022/05/GHSA-g48c-mxp7-x4g2/GHSA-g48c-mxp7-x4g2.json index 84c527f664e..9fce1805a48 100644 --- a/advisories/unreviewed/2022/05/GHSA-g48c-mxp7-x4g2/GHSA-g48c-mxp7-x4g2.json +++ b/advisories/unreviewed/2022/05/GHSA-g48c-mxp7-x4g2/GHSA-g48c-mxp7-x4g2.json @@ -7,12 +7,8 @@ "CVE-2017-18790" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects R6700 before 1.0.1.26, R7000 before 1.0.9.10, R7100LG before 1.0.0.32, R7900 before 1.0.1.18, R8000 before 1.0.3.54, and R8500 before 1.0.2.100.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4ph-3r63-c5p9/GHSA-g4ph-3r63-c5p9.json b/advisories/unreviewed/2022/05/GHSA-g4ph-3r63-c5p9/GHSA-g4ph-3r63-c5p9.json index 1393a0a4691..dc192dce53c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4ph-3r63-c5p9/GHSA-g4ph-3r63-c5p9.json +++ b/advisories/unreviewed/2022/05/GHSA-g4ph-3r63-c5p9/GHSA-g4ph-3r63-c5p9.json @@ -7,12 +7,8 @@ "CVE-2019-20717" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D7800 before 1.0.1.44, EX2700 before 1.0.1.52, EX6200v2 before 1.0.1.74, EX8000 before 1.0.1.180, R7500v2 before 1.0.3.38, R7800 before 1.0.2.58, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS20 before 2.3.0.28, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, RBS50 before 2.3.0.32, RBS40 before 2.3.0.28, SRK60 before 2.2.1.210, SRR60 before 2.2.1.210, SRS60 before 2.2.1.210, WN2000RPTv3 before 1.0.1.34, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.60, WNDR4300v2 before 1.0.0.58, and WNDR4500v3 before 1.0.0.58.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5h6-q6hr-6pr7/GHSA-g5h6-q6hr-6pr7.json b/advisories/unreviewed/2022/05/GHSA-g5h6-q6hr-6pr7/GHSA-g5h6-q6hr-6pr7.json index fa284e50d7d..542fa002e38 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5h6-q6hr-6pr7/GHSA-g5h6-q6hr-6pr7.json +++ b/advisories/unreviewed/2022/05/GHSA-g5h6-q6hr-6pr7/GHSA-g5h6-q6hr-6pr7.json @@ -7,12 +7,8 @@ "CVE-2019-20683" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.40, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, WNR2020 before 1.1.0.62, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5v9-3hmq-xg2r/GHSA-g5v9-3hmq-xg2r.json b/advisories/unreviewed/2022/05/GHSA-g5v9-3hmq-xg2r/GHSA-g5v9-3hmq-xg2r.json index 547817118fe..fa35d881484 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5v9-3hmq-xg2r/GHSA-g5v9-3hmq-xg2r.json +++ b/advisories/unreviewed/2022/05/GHSA-g5v9-3hmq-xg2r/GHSA-g5v9-3hmq-xg2r.json @@ -7,12 +7,8 @@ "CVE-2020-5737" ], "details": "Stored XSS in Tenable.Sc before 5.14.0 could allow an authenticated remote attacker to craft a request to execute arbitrary script code in a user's browser session. Updated input validation techniques have been implemented to correct this issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7r6-pv38-wphr/GHSA-g7r6-pv38-wphr.json b/advisories/unreviewed/2022/05/GHSA-g7r6-pv38-wphr/GHSA-g7r6-pv38-wphr.json index 251e54bab9a..0a76f2470a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7r6-pv38-wphr/GHSA-g7r6-pv38-wphr.json +++ b/advisories/unreviewed/2022/05/GHSA-g7r6-pv38-wphr/GHSA-g7r6-pv38-wphr.json @@ -7,12 +7,8 @@ "CVE-2019-20725" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7w4-j39f-84mq/GHSA-g7w4-j39f-84mq.json b/advisories/unreviewed/2022/05/GHSA-g7w4-j39f-84mq/GHSA-g7w4-j39f-84mq.json index 4bf80a07725..0f98eb610a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7w4-j39f-84mq/GHSA-g7w4-j39f-84mq.json +++ b/advisories/unreviewed/2022/05/GHSA-g7w4-j39f-84mq/GHSA-g7w4-j39f-84mq.json @@ -7,12 +7,8 @@ "CVE-2017-18822" ], "details": "Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8hp-5cff-26v7/GHSA-g8hp-5cff-26v7.json b/advisories/unreviewed/2022/05/GHSA-g8hp-5cff-26v7/GHSA-g8hp-5cff-26v7.json index 7da40015c53..5546ac88e7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8hp-5cff-26v7/GHSA-g8hp-5cff-26v7.json +++ b/advisories/unreviewed/2022/05/GHSA-g8hp-5cff-26v7/GHSA-g8hp-5cff-26v7.json @@ -7,12 +7,8 @@ "CVE-2017-18838" ], "details": "Certain NETGEAR devices are affected by privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8x5-f6c3-qfrw/GHSA-g8x5-f6c3-qfrw.json b/advisories/unreviewed/2022/05/GHSA-g8x5-f6c3-qfrw/GHSA-g8x5-f6c3-qfrw.json index 52554149e4a..d9796385943 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8x5-f6c3-qfrw/GHSA-g8x5-f6c3-qfrw.json +++ b/advisories/unreviewed/2022/05/GHSA-g8x5-f6c3-qfrw/GHSA-g8x5-f6c3-qfrw.json @@ -7,12 +7,8 @@ "CVE-2017-18842" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects R7300 before 1.0.0.54, R8500 before 1.0.2.94, DGN2200v1 before 1.0.0.55, and D2200D/D2200DW-1FRNAS before 1.0.0.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g9cv-262r-m62h/GHSA-g9cv-262r-m62h.json b/advisories/unreviewed/2022/05/GHSA-g9cv-262r-m62h/GHSA-g9cv-262r-m62h.json index a4e8cd88305..2259b9370f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9cv-262r-m62h/GHSA-g9cv-262r-m62h.json +++ b/advisories/unreviewed/2022/05/GHSA-g9cv-262r-m62h/GHSA-g9cv-262r-m62h.json @@ -7,12 +7,8 @@ "CVE-2020-2959" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via MLD to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.0 Base Score 8.6 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gfmp-h9cc-j8h6/GHSA-gfmp-h9cc-j8h6.json b/advisories/unreviewed/2022/05/GHSA-gfmp-h9cc-j8h6/GHSA-gfmp-h9cc-j8h6.json index 3abae780fe0..3e785939a46 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfmp-h9cc-j8h6/GHSA-gfmp-h9cc-j8h6.json +++ b/advisories/unreviewed/2022/05/GHSA-gfmp-h9cc-j8h6/GHSA-gfmp-h9cc-j8h6.json @@ -7,12 +7,8 @@ "CVE-2020-2743" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.36, prior to 6.0.16 and prior to 6.1.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.0 Base Score 6.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ggvp-98r6-cx25/GHSA-ggvp-98r6-cx25.json b/advisories/unreviewed/2022/05/GHSA-ggvp-98r6-cx25/GHSA-ggvp-98r6-cx25.json index 9e5990ea0e1..e88e66fff1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggvp-98r6-cx25/GHSA-ggvp-98r6-cx25.json +++ b/advisories/unreviewed/2022/05/GHSA-ggvp-98r6-cx25/GHSA-ggvp-98r6-cx25.json @@ -7,12 +7,8 @@ "CVE-2020-2873" ], "details": "Vulnerability in the Oracle Customer Interaction History product of Oracle E-Business Suite (component: Outcome-Result). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Customer Interaction History. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Customer Interaction History, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Customer Interaction History accessible data as well as unauthorized update, insert or delete access to some of Oracle Customer Interaction History accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gh78-r2f2-5jp2/GHSA-gh78-r2f2-5jp2.json b/advisories/unreviewed/2022/05/GHSA-gh78-r2f2-5jp2/GHSA-gh78-r2f2-5jp2.json index f77155bd29a..171e4180caa 100644 --- a/advisories/unreviewed/2022/05/GHSA-gh78-r2f2-5jp2/GHSA-gh78-r2f2-5jp2.json +++ b/advisories/unreviewed/2022/05/GHSA-gh78-r2f2-5jp2/GHSA-gh78-r2f2-5jp2.json @@ -7,12 +7,8 @@ "CVE-2020-2901" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghw5-qw6q-8394/GHSA-ghw5-qw6q-8394.json b/advisories/unreviewed/2022/05/GHSA-ghw5-qw6q-8394/GHSA-ghw5-qw6q-8394.json index ed2c3c2c257..6f59294bbcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghw5-qw6q-8394/GHSA-ghw5-qw6q-8394.json +++ b/advisories/unreviewed/2022/05/GHSA-ghw5-qw6q-8394/GHSA-ghw5-qw6q-8394.json @@ -7,12 +7,8 @@ "CVE-2019-14131" ], "details": "Out of bound write can occur in radio measurement request if STA receives multiple invalid rrm measurement request from AP in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, APQ8096AU, MSM8998, Nicobar, QCA6574AU, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDM660, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmgg-6xrw-f299/GHSA-gmgg-6xrw-f299.json b/advisories/unreviewed/2022/05/GHSA-gmgg-6xrw-f299/GHSA-gmgg-6xrw-f299.json index 37db94f5b41..1c6b9649c14 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmgg-6xrw-f299/GHSA-gmgg-6xrw-f299.json +++ b/advisories/unreviewed/2022/05/GHSA-gmgg-6xrw-f299/GHSA-gmgg-6xrw-f299.json @@ -7,12 +7,8 @@ "CVE-2019-20762" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D8500 before 1.0.3.43, R8500 before 1.0.2.128, R8300 before 1.0.2.128, R8000 before 1.0.4.28, R7300DST before 1.0.0.68, R7100LG before 1.0.0.48, R6900P before 1.3.1.44, R7900P before 1.4.1.30, R8000P before 1.4.1.30, R7000P before 1.3.1.44, R7000 before 1.0.9.34, R6900 before 1.0.2.4, R6700 before 1.0.2.6, and R6400 before 1.0.1.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gpvh-m7r4-4wg2/GHSA-gpvh-m7r4-4wg2.json b/advisories/unreviewed/2022/05/GHSA-gpvh-m7r4-4wg2/GHSA-gpvh-m7r4-4wg2.json index cc048d18eb2..592e89e5549 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpvh-m7r4-4wg2/GHSA-gpvh-m7r4-4wg2.json +++ b/advisories/unreviewed/2022/05/GHSA-gpvh-m7r4-4wg2/GHSA-gpvh-m7r4-4wg2.json @@ -7,12 +7,8 @@ "CVE-2020-5732" ], "details": "In OpenMRS 2.9 and prior, he import functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows unauthenticated users to use a feature typically restricted to administrators.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gq6q-gh85-7w3x/GHSA-gq6q-gh85-7w3x.json b/advisories/unreviewed/2022/05/GHSA-gq6q-gh85-7w3x/GHSA-gq6q-gh85-7w3x.json index bd7691909b7..3c562ce0bcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq6q-gh85-7w3x/GHSA-gq6q-gh85-7w3x.json +++ b/advisories/unreviewed/2022/05/GHSA-gq6q-gh85-7w3x/GHSA-gq6q-gh85-7w3x.json @@ -7,12 +7,8 @@ "CVE-2020-9444" ], "details": "Zulip Server before 2.1.3 allows reverse tabnabbing via the Markdown functionality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqgg-2mqq-wgc2/GHSA-gqgg-2mqq-wgc2.json b/advisories/unreviewed/2022/05/GHSA-gqgg-2mqq-wgc2/GHSA-gqgg-2mqq-wgc2.json index d6e1817afec..1e59d54ff65 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqgg-2mqq-wgc2/GHSA-gqgg-2mqq-wgc2.json +++ b/advisories/unreviewed/2022/05/GHSA-gqgg-2mqq-wgc2/GHSA-gqgg-2mqq-wgc2.json @@ -7,12 +7,8 @@ "CVE-2019-20728" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6400 before 1.0.0.74, D7000v2 before 1.0.0.74, D7800 before 1.0.1.34, D8500 before 1.0.3.39, DGN2200v4 before 1.0.0.102, DGND2200Bv4 before 1.0.0.102, DM200 before 1.0.0.52, JNDR3000 before 1.0.0.22, RBK50 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, RBW30 before 2.1.2.6, R6250 before 1.0.4.26, R6300v2 before 1.0.4.24, R6400 before 1.0.1.36, R6400v2 before 1.0.2.52, R6700 before 1.0.1.44, R6900 before 1.0.1.44, R7000 before 1.0.9.26, R6900P before 1.3.0.20, R7000P before 1.3.0.20, R7100LG before 1.0.0.40, R7300DST before 1.0.0.62, R7500v2 before 1.0.3.26, R7800 before 1.0.2.44, R7900 before 1.0.2.10, R8000 before 1.0.4.12, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.116, R8500 before 1.0.2.116, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR3400v3 before 1.0.1.18, WNDR3700v4 before 1.0.2.96, WNDR4300v1 before 1.0.2.98, WNDR4300v2 before 1.0.0.54, WNDR4500v3 before 1.0.0.54, WNR2000v5 before 1.0.0.64, and WNR3500Lv2 before 1.2.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqjv-9xmw-cfqh/GHSA-gqjv-9xmw-cfqh.json b/advisories/unreviewed/2022/05/GHSA-gqjv-9xmw-cfqh/GHSA-gqjv-9xmw-cfqh.json index 845e66c82db..83b82eab50a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqjv-9xmw-cfqh/GHSA-gqjv-9xmw-cfqh.json +++ b/advisories/unreviewed/2022/05/GHSA-gqjv-9xmw-cfqh/GHSA-gqjv-9xmw-cfqh.json @@ -7,12 +7,8 @@ "CVE-2020-11890" ], "details": "An issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqqr-qcv3-9xg2/GHSA-gqqr-qcv3-9xg2.json b/advisories/unreviewed/2022/05/GHSA-gqqr-qcv3-9xg2/GHSA-gqqr-qcv3-9xg2.json index 57dd09e4fd1..1bb4b17c358 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqqr-qcv3-9xg2/GHSA-gqqr-qcv3-9xg2.json +++ b/advisories/unreviewed/2022/05/GHSA-gqqr-qcv3-9xg2/GHSA-gqqr-qcv3-9xg2.json @@ -7,12 +7,8 @@ "CVE-2020-5721" ], "details": "MikroTik WinBox 3.22 and below stores the user's cleartext password in the settings.cfg.viw configuration file when the Keep Password field is set and no Master Password is set. Keep Password is set by default and, by default Master Password is not set. An attacker with access to the configuration file can extract a username and password to gain access to the router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-grvc-29p3-99fv/GHSA-grvc-29p3-99fv.json b/advisories/unreviewed/2022/05/GHSA-grvc-29p3-99fv/GHSA-grvc-29p3-99fv.json index 9dae12edf9d..c2589498496 100644 --- a/advisories/unreviewed/2022/05/GHSA-grvc-29p3-99fv/GHSA-grvc-29p3-99fv.json +++ b/advisories/unreviewed/2022/05/GHSA-grvc-29p3-99fv/GHSA-grvc-29p3-99fv.json @@ -7,12 +7,8 @@ "CVE-2020-2892" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-grvm-c676-wgqq/GHSA-grvm-c676-wgqq.json b/advisories/unreviewed/2022/05/GHSA-grvm-c676-wgqq/GHSA-grvm-c676-wgqq.json index 3d081b3d02e..5e60c71207d 100644 --- a/advisories/unreviewed/2022/05/GHSA-grvm-c676-wgqq/GHSA-grvm-c676-wgqq.json +++ b/advisories/unreviewed/2022/05/GHSA-grvm-c676-wgqq/GHSA-grvm-c676-wgqq.json @@ -7,12 +7,8 @@ "CVE-2019-20735" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before V1.0.0.75, D6100 before V1.0.0.63, R7800 before v1.0.2.52, R8900 before v1.0.4.2, R9000 before v1.0.4.2, RBK50 before v2.3.0.32, RBR50 before v2.3.0.32, RBS50 before v2.3.0.32, WNDR3700v4 before V1.0.2.102, WNDR4300v1 before V1.0.2.104, WNDR4300v2 before v1.0.0.58, WNDR4500v3 before v1.0.0.58, WNR2000v5 before v1.0.0.68, and XR500 before V2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gv38-5c8r-gmgf/GHSA-gv38-5c8r-gmgf.json b/advisories/unreviewed/2022/05/GHSA-gv38-5c8r-gmgf/GHSA-gv38-5c8r-gmgf.json index aaa153aed96..e77520284db 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv38-5c8r-gmgf/GHSA-gv38-5c8r-gmgf.json +++ b/advisories/unreviewed/2022/05/GHSA-gv38-5c8r-gmgf/GHSA-gv38-5c8r-gmgf.json @@ -7,12 +7,8 @@ "CVE-2020-2954" ], "details": "Vulnerability in the PeopleSoft Enterprise HRMS product of Oracle PeopleSoft (component: Candidate Gateway). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise HRMS. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise HRMS, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HRMS accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HRMS accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gv5h-qcxx-985h/GHSA-gv5h-qcxx-985h.json b/advisories/unreviewed/2022/05/GHSA-gv5h-qcxx-985h/GHSA-gv5h-qcxx-985h.json index bee5580067a..82f60500ab3 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv5h-qcxx-985h/GHSA-gv5h-qcxx-985h.json +++ b/advisories/unreviewed/2022/05/GHSA-gv5h-qcxx-985h/GHSA-gv5h-qcxx-985h.json @@ -7,12 +7,8 @@ "CVE-2020-2952" ], "details": "Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Web Listener). The supported version that is affected is 11.1.1.9.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle HTTP Server. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle HTTP Server accessible data as well as unauthorized read access to a subset of Oracle HTTP Server accessible data. CVSS 3.0 Base Score 6.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gwr5-2hgp-6jq9/GHSA-gwr5-2hgp-6jq9.json b/advisories/unreviewed/2022/05/GHSA-gwr5-2hgp-6jq9/GHSA-gwr5-2hgp-6jq9.json index 2a16a49b387..ecdf9cef494 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwr5-2hgp-6jq9/GHSA-gwr5-2hgp-6jq9.json +++ b/advisories/unreviewed/2022/05/GHSA-gwr5-2hgp-6jq9/GHSA-gwr5-2hgp-6jq9.json @@ -7,12 +7,8 @@ "CVE-2019-20785" ], "details": "An issue was discovered on LG mobile devices with Android OS 8.0 and 8.1 software for the DTAG carrier. RILD in the radio layer uses an uninitialized variable. The LG ID is LVE-SMP-180013 (January 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gxjf-97vj-jhcg/GHSA-gxjf-97vj-jhcg.json b/advisories/unreviewed/2022/05/GHSA-gxjf-97vj-jhcg/GHSA-gxjf-97vj-jhcg.json index 1b60125c592..db3715434c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxjf-97vj-jhcg/GHSA-gxjf-97vj-jhcg.json +++ b/advisories/unreviewed/2022/05/GHSA-gxjf-97vj-jhcg/GHSA-gxjf-97vj-jhcg.json @@ -7,12 +7,8 @@ "CVE-2020-11930" ], "details": "The GTranslate plugin before 2.8.52 for WordPress has Reflected XSS via a crafted link. This requires use of the hreflang tags feature within a sub-domain or sub-directory paid option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gxw4-x2rm-fgmv/GHSA-gxw4-x2rm-fgmv.json b/advisories/unreviewed/2022/05/GHSA-gxw4-x2rm-fgmv/GHSA-gxw4-x2rm-fgmv.json index 094c42f20a2..5b6436ed350 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxw4-x2rm-fgmv/GHSA-gxw4-x2rm-fgmv.json +++ b/advisories/unreviewed/2022/05/GHSA-gxw4-x2rm-fgmv/GHSA-gxw4-x2rm-fgmv.json @@ -7,12 +7,8 @@ "CVE-2017-18850" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects D6220 before 1.0.0.26, D6400 before 1.0.0.60, D8500 before 1.0.3.29, R6250 before 1.0.4.12, R6400 before 1.01.24, R6400v2 before 1.0.2.30, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R6900P before 1.0.0.56, R7000 before 1.0.9.4, R7000P before 1.0.0.56, R7100LG before 1.0.0.32, R7300DST before 1.0.0.54, R7900 before 1.0.1.18, R8000 before 1.0.3.44, R8300 before 1.0.2.100_1.0.82, and R8500 before 1.0.2.100_1.0.82.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h235-6g2w-f84v/GHSA-h235-6g2w-f84v.json b/advisories/unreviewed/2022/05/GHSA-h235-6g2w-f84v/GHSA-h235-6g2w-f84v.json index 2b95b822f81..640b901b62b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h235-6g2w-f84v/GHSA-h235-6g2w-f84v.json +++ b/advisories/unreviewed/2022/05/GHSA-h235-6g2w-f84v/GHSA-h235-6g2w-f84v.json @@ -7,12 +7,8 @@ "CVE-2019-2056" ], "details": "There is a possible disclosure of RAM using a shared crypto key due to improperly used crypto. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140879284", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4rw-8g46-q3rm/GHSA-h4rw-8g46-q3rm.json b/advisories/unreviewed/2022/05/GHSA-h4rw-8g46-q3rm/GHSA-h4rw-8g46-q3rm.json index 43ef5889010..0542d9decb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4rw-8g46-q3rm/GHSA-h4rw-8g46-q3rm.json +++ b/advisories/unreviewed/2022/05/GHSA-h4rw-8g46-q3rm/GHSA-h4rw-8g46-q3rm.json @@ -7,12 +7,8 @@ "CVE-2020-0954" ], "details": "A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka 'Microsoft Office SharePoint XSS Vulnerability'. This CVE ID is unique from CVE-2020-0923, CVE-2020-0924, CVE-2020-0925, CVE-2020-0926, CVE-2020-0927, CVE-2020-0930, CVE-2020-0933, CVE-2020-0973, CVE-2020-0978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h4wq-fxpq-gmg2/GHSA-h4wq-fxpq-gmg2.json b/advisories/unreviewed/2022/05/GHSA-h4wq-fxpq-gmg2/GHSA-h4wq-fxpq-gmg2.json index d3b502a4ef9..b1a665df0e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4wq-fxpq-gmg2/GHSA-h4wq-fxpq-gmg2.json +++ b/advisories/unreviewed/2022/05/GHSA-h4wq-fxpq-gmg2/GHSA-h4wq-fxpq-gmg2.json @@ -7,12 +7,8 @@ "CVE-2020-3262" ], "details": "A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol handler of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of CAPWAP packets. An attacker could exploit this vulnerability by sending a malformed CAPWAP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to restart, resulting in a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h593-gfrx-wwgq/GHSA-h593-gfrx-wwgq.json b/advisories/unreviewed/2022/05/GHSA-h593-gfrx-wwgq/GHSA-h593-gfrx-wwgq.json index 90df356ac15..b4e4b34deb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h593-gfrx-wwgq/GHSA-h593-gfrx-wwgq.json +++ b/advisories/unreviewed/2022/05/GHSA-h593-gfrx-wwgq/GHSA-h593-gfrx-wwgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h66p-9m5v-v38w/GHSA-h66p-9m5v-v38w.json b/advisories/unreviewed/2022/05/GHSA-h66p-9m5v-v38w/GHSA-h66p-9m5v-v38w.json index a771e7ec9ab..16d1980a8ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-h66p-9m5v-v38w/GHSA-h66p-9m5v-v38w.json +++ b/advisories/unreviewed/2022/05/GHSA-h66p-9m5v-v38w/GHSA-h66p-9m5v-v38w.json @@ -7,12 +7,8 @@ "CVE-2019-14011" ], "details": "Multiple Read overflows issue due to improper length check while decoding 3G attach accept/ SMS/ pdn connection reject/ esm data transport/ bearer modify context reject in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9207C, MDM9607, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h6xh-46r8-grfh/GHSA-h6xh-46r8-grfh.json b/advisories/unreviewed/2022/05/GHSA-h6xh-46r8-grfh/GHSA-h6xh-46r8-grfh.json index c1cf75633d3..6840c02d6eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6xh-46r8-grfh/GHSA-h6xh-46r8-grfh.json +++ b/advisories/unreviewed/2022/05/GHSA-h6xh-46r8-grfh/GHSA-h6xh-46r8-grfh.json @@ -7,12 +7,8 @@ "CVE-2019-6203" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2. An attacker in a privileged network position may be able to intercept network traffic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8h3-697g-vpc3/GHSA-h8h3-697g-vpc3.json b/advisories/unreviewed/2022/05/GHSA-h8h3-697g-vpc3/GHSA-h8h3-697g-vpc3.json index 836b948e7e5..e1a4d5ace80 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8h3-697g-vpc3/GHSA-h8h3-697g-vpc3.json +++ b/advisories/unreviewed/2022/05/GHSA-h8h3-697g-vpc3/GHSA-h8h3-697g-vpc3.json @@ -7,12 +7,8 @@ "CVE-2017-18752" ], "details": "Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, EX6120 before 1.0.0.32, EX6130 before 1.0.0.16, R6300v2 before 1.0.4.12, R6700 before 1.0.1.26, R6900 before 1.0.1.22, R7000 before 1.0.9.6, R7300DST before 1.0.0.52, R7900 before 1.0.1.12, R8000 before 1.0.3.24, and R8500 before 1.0.2.94.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h94p-vgvq-w45v/GHSA-h94p-vgvq-w45v.json b/advisories/unreviewed/2022/05/GHSA-h94p-vgvq-w45v/GHSA-h94p-vgvq-w45v.json index fea0ff2c6c0..25fd5aaed41 100644 --- a/advisories/unreviewed/2022/05/GHSA-h94p-vgvq-w45v/GHSA-h94p-vgvq-w45v.json +++ b/advisories/unreviewed/2022/05/GHSA-h94p-vgvq-w45v/GHSA-h94p-vgvq-w45v.json @@ -7,12 +7,8 @@ "CVE-2019-20769" ], "details": "An issue was discovered in LG PC Suite for LG G3 and earlier (aka LG PC Suite v5.3.27 and earlier). DLL Hijacking can occur via a Trojan horse DLL in the current working directory. The LG ID is LVE-MOT-190001 (November 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h966-gw6c-fp38/GHSA-h966-gw6c-fp38.json b/advisories/unreviewed/2022/05/GHSA-h966-gw6c-fp38/GHSA-h966-gw6c-fp38.json index dbe8e200b06..fe893a17bd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-h966-gw6c-fp38/GHSA-h966-gw6c-fp38.json +++ b/advisories/unreviewed/2022/05/GHSA-h966-gw6c-fp38/GHSA-h966-gw6c-fp38.json @@ -7,12 +7,8 @@ "CVE-2019-20737" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.0.0.44, D6400 before 1.0.0.78, D7000v2 before 1.0.0.51, D8500 before 1.0.3.42, DGN2200v4 before 1.0.0.106, DGND2200Bv4 before 1.0.0.106, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.24, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6400 before 1.0.1.42, R6700 before 1.0.1.46, R6700v3 before 1.0.2.52, R6900 before 1.0.1.46, R7000 before 1.0.9.28, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.122, R8500 before 1.0.2.122, WN2500RPv2 before 1.0.1.54, WNDR3400v3 before 1.0.1.24, and WNR3500Lv2 before 1.2.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h97v-5798-x5c6/GHSA-h97v-5798-x5c6.json b/advisories/unreviewed/2022/05/GHSA-h97v-5798-x5c6/GHSA-h97v-5798-x5c6.json index 442babfcb51..18016d27ea9 100644 --- a/advisories/unreviewed/2022/05/GHSA-h97v-5798-x5c6/GHSA-h97v-5798-x5c6.json +++ b/advisories/unreviewed/2022/05/GHSA-h97v-5798-x5c6/GHSA-h97v-5798-x5c6.json @@ -7,12 +7,8 @@ "CVE-2018-21140" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0.76.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9cp-3469-6f4v/GHSA-h9cp-3469-6f4v.json b/advisories/unreviewed/2022/05/GHSA-h9cp-3469-6f4v/GHSA-h9cp-3469-6f4v.json index ff9712a1220..51d4c82c087 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9cp-3469-6f4v/GHSA-h9cp-3469-6f4v.json +++ b/advisories/unreviewed/2022/05/GHSA-h9cp-3469-6f4v/GHSA-h9cp-3469-6f4v.json @@ -7,12 +7,8 @@ "CVE-2019-20757" ], "details": "NETGEAR R7800 devices before 1.0.2.62 are affected by command injection by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9h5-vhcx-37v8/GHSA-h9h5-vhcx-37v8.json b/advisories/unreviewed/2022/05/GHSA-h9h5-vhcx-37v8/GHSA-h9h5-vhcx-37v8.json index d1bb13c6cde..48d8846b6b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9h5-vhcx-37v8/GHSA-h9h5-vhcx-37v8.json +++ b/advisories/unreviewed/2022/05/GHSA-h9h5-vhcx-37v8/GHSA-h9h5-vhcx-37v8.json @@ -7,12 +7,8 @@ "CVE-2019-20715" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 before 1.0.0.63, D7800 before 1.0.1.47, DM200 before 1.0.0.61, R7500v2 before 1.0.3.40, R7800 before 1.0.2.60, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, and RBS50 before 2.3.0.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9j4-wp2q-j88v/GHSA-h9j4-wp2q-j88v.json b/advisories/unreviewed/2022/05/GHSA-h9j4-wp2q-j88v/GHSA-h9j4-wp2q-j88v.json index 4dc5d4732f4..980467f616a 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9j4-wp2q-j88v/GHSA-h9j4-wp2q-j88v.json +++ b/advisories/unreviewed/2022/05/GHSA-h9j4-wp2q-j88v/GHSA-h9j4-wp2q-j88v.json @@ -7,12 +7,8 @@ "CVE-2020-4268" ], "details": "IBM QRadar 7.3.0 to 7.3.3 Patch 2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-ForceID: 175841.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9wq-jm3g-952g/GHSA-h9wq-jm3g-952g.json b/advisories/unreviewed/2022/05/GHSA-h9wq-jm3g-952g/GHSA-h9wq-jm3g-952g.json index 55ef3ef334f..00edd5c5085 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9wq-jm3g-952g/GHSA-h9wq-jm3g-952g.json +++ b/advisories/unreviewed/2022/05/GHSA-h9wq-jm3g-952g/GHSA-h9wq-jm3g-952g.json @@ -7,12 +7,8 @@ "CVE-2017-18775" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects R6100 before 1.0.1.12, R7500 before 1.0.0.108, WNDR3700v4 before 1.0.2.86, WNDR4300v1 before 1.0.2.88, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, and WNR2000v5 before 1.0.0.42.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hf4m-2399-3jjv/GHSA-hf4m-2399-3jjv.json b/advisories/unreviewed/2022/05/GHSA-hf4m-2399-3jjv/GHSA-hf4m-2399-3jjv.json index 67596866494..53bc4dedd8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf4m-2399-3jjv/GHSA-hf4m-2399-3jjv.json +++ b/advisories/unreviewed/2022/05/GHSA-hf4m-2399-3jjv/GHSA-hf4m-2399-3jjv.json @@ -7,12 +7,8 @@ "CVE-2019-20711" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf65-vmp8-jp86/GHSA-hf65-vmp8-jp86.json b/advisories/unreviewed/2022/05/GHSA-hf65-vmp8-jp86/GHSA-hf65-vmp8-jp86.json index e36045e9df0..6a20d71b547 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf65-vmp8-jp86/GHSA-hf65-vmp8-jp86.json +++ b/advisories/unreviewed/2022/05/GHSA-hf65-vmp8-jp86/GHSA-hf65-vmp8-jp86.json @@ -7,12 +7,8 @@ "CVE-2020-5733" ], "details": "In OpenMRS 2.9 and prior, the export functionality of the Data Exchange Module does not properly redirect to a login page when an unauthenticated user attempts to access it. This allows the export of potentially sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfjp-mm4w-hgxg/GHSA-hfjp-mm4w-hgxg.json b/advisories/unreviewed/2022/05/GHSA-hfjp-mm4w-hgxg/GHSA-hfjp-mm4w-hgxg.json index b162d982b33..b0b19e69c9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfjp-mm4w-hgxg/GHSA-hfjp-mm4w-hgxg.json +++ b/advisories/unreviewed/2022/05/GHSA-hfjp-mm4w-hgxg/GHSA-hfjp-mm4w-hgxg.json @@ -7,12 +7,8 @@ "CVE-2020-9276" ], "details": "An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The function do_cgi(), which processes cgi requests supplied to the device's web servers, is vulnerable to a remotely exploitable stack-based buffer overflow. Unauthenticated exploitation is possible by combining this vulnerability with CVE-2020-9277.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfm4-3rg3-394f/GHSA-hfm4-3rg3-394f.json b/advisories/unreviewed/2022/05/GHSA-hfm4-3rg3-394f/GHSA-hfm4-3rg3-394f.json index d65711f0bc7..d8cba0b7cc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfm4-3rg3-394f/GHSA-hfm4-3rg3-394f.json +++ b/advisories/unreviewed/2022/05/GHSA-hfm4-3rg3-394f/GHSA-hfm4-3rg3-394f.json @@ -7,12 +7,8 @@ "CVE-2020-5350" ], "details": "Dell EMC Integrated Data Protection Appliance versions 2.0, 2.1, 2.2, 2.3, 2.4 contain a command injection vulnerability in the ACM component. A remote authenticated malicious user with root privileges could inject parameters in the ACM component APIs that could lead to manipulation of passwords and execution of malicious commands on ACM component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfxg-vggv-f594/GHSA-hfxg-vggv-f594.json b/advisories/unreviewed/2022/05/GHSA-hfxg-vggv-f594/GHSA-hfxg-vggv-f594.json index 9596ae2cdd7..2b73e680683 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfxg-vggv-f594/GHSA-hfxg-vggv-f594.json +++ b/advisories/unreviewed/2022/05/GHSA-hfxg-vggv-f594/GHSA-hfxg-vggv-f594.json @@ -7,12 +7,8 @@ "CVE-2020-11818" ], "details": "In Rukovoditel 2.5.2 has a form_session_token value to prevent CSRF attacks. This protection mechanism can be bypassed with another user's valid token. Thus, an attacker can change the Admin password by using a CSRF attack and escalate his/her privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hg9w-6vrm-h78g/GHSA-hg9w-6vrm-h78g.json b/advisories/unreviewed/2022/05/GHSA-hg9w-6vrm-h78g/GHSA-hg9w-6vrm-h78g.json index f01ee16b0d0..e9e784e7cf5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg9w-6vrm-h78g/GHSA-hg9w-6vrm-h78g.json +++ b/advisories/unreviewed/2022/05/GHSA-hg9w-6vrm-h78g/GHSA-hg9w-6vrm-h78g.json @@ -7,12 +7,8 @@ "CVE-2017-18845" ], "details": "Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects R6700v2 before 1.1.0.38 and R6800 before 1.1.0.38.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hhh4-f287-7w56/GHSA-hhh4-f287-7w56.json b/advisories/unreviewed/2022/05/GHSA-hhh4-f287-7w56/GHSA-hhh4-f287-7w56.json index 4b922afd6e5..0e88da064d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhh4-f287-7w56/GHSA-hhh4-f287-7w56.json +++ b/advisories/unreviewed/2022/05/GHSA-hhh4-f287-7w56/GHSA-hhh4-f287-7w56.json @@ -7,12 +7,8 @@ "CVE-2020-2926" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.19 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.4 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hhj2-6x24-45x4/GHSA-hhj2-6x24-45x4.json b/advisories/unreviewed/2022/05/GHSA-hhj2-6x24-45x4/GHSA-hhj2-6x24-45x4.json index 7067ee4e3a3..6bea0e0943d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhj2-6x24-45x4/GHSA-hhj2-6x24-45x4.json +++ b/advisories/unreviewed/2022/05/GHSA-hhj2-6x24-45x4/GHSA-hhj2-6x24-45x4.json @@ -7,12 +7,8 @@ "CVE-2017-18819" ], "details": "NETGEAR ReadyNAS OS 6 devices, running ReadyNAS OS versions prior to 6.8.0 are affected by incorrect configuration of security settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hjg2-p9cv-5xvp/GHSA-hjg2-p9cv-5xvp.json b/advisories/unreviewed/2022/05/GHSA-hjg2-p9cv-5xvp/GHSA-hjg2-p9cv-5xvp.json index 1eae1e1b708..6a262df4279 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjg2-p9cv-5xvp/GHSA-hjg2-p9cv-5xvp.json +++ b/advisories/unreviewed/2022/05/GHSA-hjg2-p9cv-5xvp/GHSA-hjg2-p9cv-5xvp.json @@ -7,12 +7,8 @@ "CVE-2019-10620" ], "details": "Kernel memory error in debug module due to improper check of user data length before copying into memory in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8096AU, APQ8098, MSM8996AU, QCN7605, SDM439, SDX24, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hq39-xv9r-chrv/GHSA-hq39-xv9r-chrv.json b/advisories/unreviewed/2022/05/GHSA-hq39-xv9r-chrv/GHSA-hq39-xv9r-chrv.json index 2259b97846f..2e25badf94b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq39-xv9r-chrv/GHSA-hq39-xv9r-chrv.json +++ b/advisories/unreviewed/2022/05/GHSA-hq39-xv9r-chrv/GHSA-hq39-xv9r-chrv.json @@ -7,12 +7,8 @@ "CVE-2019-10608" ], "details": "Information disclosure issue occurs as there is no binding between the secure keypad session and the secure display session that allows user to take control of the REE to stop the secure keypad session and read the keypad input. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, MSM8905, MSM8909", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hq7r-pxqp-4g8p/GHSA-hq7r-pxqp-4g8p.json b/advisories/unreviewed/2022/05/GHSA-hq7r-pxqp-4g8p/GHSA-hq7r-pxqp-4g8p.json index c9e119f0b27..c51e76ddcdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq7r-pxqp-4g8p/GHSA-hq7r-pxqp-4g8p.json +++ b/advisories/unreviewed/2022/05/GHSA-hq7r-pxqp-4g8p/GHSA-hq7r-pxqp-4g8p.json @@ -7,12 +7,8 @@ "CVE-2017-18851" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D8500 through 1.0.3.28, R6400 through 1.0.1.22, R6400v2 through 1.0.2.18, R8300 through 1.0.2.94, R8500 through 1.0.2.94, and R6100 through 1.0.1.12.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hr7j-g23v-9qm9/GHSA-hr7j-g23v-9qm9.json b/advisories/unreviewed/2022/05/GHSA-hr7j-g23v-9qm9/GHSA-hr7j-g23v-9qm9.json index 60fcfffdc40..14f90eb4e39 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr7j-g23v-9qm9/GHSA-hr7j-g23v-9qm9.json +++ b/advisories/unreviewed/2022/05/GHSA-hr7j-g23v-9qm9/GHSA-hr7j-g23v-9qm9.json @@ -7,12 +7,8 @@ "CVE-2020-2842" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hv69-r3wr-rq9m/GHSA-hv69-r3wr-rq9m.json b/advisories/unreviewed/2022/05/GHSA-hv69-r3wr-rq9m/GHSA-hv69-r3wr-rq9m.json index 868d4429d63..046a670e573 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv69-r3wr-rq9m/GHSA-hv69-r3wr-rq9m.json +++ b/advisories/unreviewed/2022/05/GHSA-hv69-r3wr-rq9m/GHSA-hv69-r3wr-rq9m.json @@ -7,12 +7,8 @@ "CVE-2020-2853" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.18 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hwm7-hpqp-5g8w/GHSA-hwm7-hpqp-5g8w.json b/advisories/unreviewed/2022/05/GHSA-hwm7-hpqp-5g8w/GHSA-hwm7-hpqp-5g8w.json index 539b67be8b6..f870411e339 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwm7-hpqp-5g8w/GHSA-hwm7-hpqp-5g8w.json +++ b/advisories/unreviewed/2022/05/GHSA-hwm7-hpqp-5g8w/GHSA-hwm7-hpqp-5g8w.json @@ -7,12 +7,8 @@ "CVE-2019-14075" ], "details": "Null pointer dereference issue in radio interface layer due to lack of null check in sapmodule destructor in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9607, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, Nicobar, QCS605, Rennell, Saipan, SDM450, SDM630, SDM636, SDM660, SDM670, SDM710, SM6150, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hx9r-wh6w-pp9p/GHSA-hx9r-wh6w-pp9p.json b/advisories/unreviewed/2022/05/GHSA-hx9r-wh6w-pp9p/GHSA-hx9r-wh6w-pp9p.json index 554b5d7e357..ac10058beca 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx9r-wh6w-pp9p/GHSA-hx9r-wh6w-pp9p.json +++ b/advisories/unreviewed/2022/05/GHSA-hx9r-wh6w-pp9p/GHSA-hx9r-wh6w-pp9p.json @@ -7,12 +7,8 @@ "CVE-2018-21121" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects GS810EMX before 1.0.0.5, XS512EM before 1.0.0.6, and XS724EM before 1.0.0.6.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxrj-xc7h-73qh/GHSA-hxrj-xc7h-73qh.json b/advisories/unreviewed/2022/05/GHSA-hxrj-xc7h-73qh/GHSA-hxrj-xc7h-73qh.json index c20483252ac..cc00f4bf56e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxrj-xc7h-73qh/GHSA-hxrj-xc7h-73qh.json +++ b/advisories/unreviewed/2022/05/GHSA-hxrj-xc7h-73qh/GHSA-hxrj-xc7h-73qh.json @@ -7,12 +7,8 @@ "CVE-2019-4749" ], "details": "IBM Maximo Asset Management 7.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 173308.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxw5-5p78-xcwh/GHSA-hxw5-5p78-xcwh.json b/advisories/unreviewed/2022/05/GHSA-hxw5-5p78-xcwh/GHSA-hxw5-5p78-xcwh.json index 4d7c8a2ef3c..f5a6757532c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxw5-5p78-xcwh/GHSA-hxw5-5p78-xcwh.json +++ b/advisories/unreviewed/2022/05/GHSA-hxw5-5p78-xcwh/GHSA-hxw5-5p78-xcwh.json @@ -7,12 +7,8 @@ "CVE-2018-21147" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D7800 before 1.0.1.34, R7500v2 before 1.0.3.26, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.10, WNDR4300v2 before 1.0.0.54, and WNDR4500v3 before 1.0.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j3j2-mcvq-8p35/GHSA-j3j2-mcvq-8p35.json b/advisories/unreviewed/2022/05/GHSA-j3j2-mcvq-8p35/GHSA-j3j2-mcvq-8p35.json index 074108a614d..d18f81e636a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3j2-mcvq-8p35/GHSA-j3j2-mcvq-8p35.json +++ b/advisories/unreviewed/2022/05/GHSA-j3j2-mcvq-8p35/GHSA-j3j2-mcvq-8p35.json @@ -7,12 +7,8 @@ "CVE-2017-18836" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j42p-4m2g-2gc3/GHSA-j42p-4m2g-2gc3.json b/advisories/unreviewed/2022/05/GHSA-j42p-4m2g-2gc3/GHSA-j42p-4m2g-2gc3.json index 2ce56737c57..7a7d0ec0583 100644 --- a/advisories/unreviewed/2022/05/GHSA-j42p-4m2g-2gc3/GHSA-j42p-4m2g-2gc3.json +++ b/advisories/unreviewed/2022/05/GHSA-j42p-4m2g-2gc3/GHSA-j42p-4m2g-2gc3.json @@ -7,12 +7,8 @@ "CVE-2019-8960" ], "details": "A Denial of Service vulnerability related to command handling has been identified in FlexNet Publisher lmadmin.exe version 11.16.2. The message reading function used in lmadmin.exe can, given a certain message, call itself again and then wait for a further message. With a particular flag set in the original message, but no second message received, the function eventually return an unexpected value which leads to an exception being thrown. The end result can be process termination.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j4f7-hvfg-j9g2/GHSA-j4f7-hvfg-j9g2.json b/advisories/unreviewed/2022/05/GHSA-j4f7-hvfg-j9g2/GHSA-j4f7-hvfg-j9g2.json index 4bc2257192f..6558b781f58 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4f7-hvfg-j9g2/GHSA-j4f7-hvfg-j9g2.json +++ b/advisories/unreviewed/2022/05/GHSA-j4f7-hvfg-j9g2/GHSA-j4f7-hvfg-j9g2.json @@ -7,12 +7,8 @@ "CVE-2019-20766" ], "details": "NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j4qx-g6w4-j6j4/GHSA-j4qx-g6w4-j6j4.json b/advisories/unreviewed/2022/05/GHSA-j4qx-g6w4-j6j4/GHSA-j4qx-g6w4-j6j4.json index 526f32220d2..c352cfbf15f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4qx-g6w4-j6j4/GHSA-j4qx-g6w4-j6j4.json +++ b/advisories/unreviewed/2022/05/GHSA-j4qx-g6w4-j6j4/GHSA-j4qx-g6w4-j6j4.json @@ -7,12 +7,8 @@ "CVE-2017-18808" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by incorrect configuration of security settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j5fc-76g4-5m5m/GHSA-j5fc-76g4-5m5m.json b/advisories/unreviewed/2022/05/GHSA-j5fc-76g4-5m5m/GHSA-j5fc-76g4-5m5m.json index 0f1eeaeeca2..46bf6732d90 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5fc-76g4-5m5m/GHSA-j5fc-76g4-5m5m.json +++ b/advisories/unreviewed/2022/05/GHSA-j5fc-76g4-5m5m/GHSA-j5fc-76g4-5m5m.json @@ -7,12 +7,8 @@ "CVE-2017-18820" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j5p6-2277-5xjv/GHSA-j5p6-2277-5xjv.json b/advisories/unreviewed/2022/05/GHSA-j5p6-2277-5xjv/GHSA-j5p6-2277-5xjv.json index 12417490c60..18ee4482394 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5p6-2277-5xjv/GHSA-j5p6-2277-5xjv.json +++ b/advisories/unreviewed/2022/05/GHSA-j5p6-2277-5xjv/GHSA-j5p6-2277-5xjv.json @@ -7,12 +7,8 @@ "CVE-2020-5731" ], "details": "In OpenMRS 2.9 and prior, the app parameter for the ActiveVisit's page is vulnerable to cross-site scripting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j5wc-79fh-wvjw/GHSA-j5wc-79fh-wvjw.json b/advisories/unreviewed/2022/05/GHSA-j5wc-79fh-wvjw/GHSA-j5wc-79fh-wvjw.json index 0da19c8ea62..f9f6abc329b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5wc-79fh-wvjw/GHSA-j5wc-79fh-wvjw.json +++ b/advisories/unreviewed/2022/05/GHSA-j5wc-79fh-wvjw/GHSA-j5wc-79fh-wvjw.json @@ -7,12 +7,8 @@ "CVE-2017-18762" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6100 before 1.0.0.57, R6100 before 1.0.1.16, R6900P before 1.2.0.22, R7000 before 1.0.9.10, R7000P before 1.2.0.22, R7100LG before 1.0.0.40, WNDR3700v4 before 1.0.2.88, WNDR4300v1 before 1.0.2.90, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, and WNR2000v5 before 1.0.0.58.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6g5-q83j-9gxv/GHSA-j6g5-q83j-9gxv.json b/advisories/unreviewed/2022/05/GHSA-j6g5-q83j-9gxv/GHSA-j6g5-q83j-9gxv.json index 421d01ae90f..15e577943ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6g5-q83j-9gxv/GHSA-j6g5-q83j-9gxv.json +++ b/advisories/unreviewed/2022/05/GHSA-j6g5-q83j-9gxv/GHSA-j6g5-q83j-9gxv.json @@ -7,12 +7,8 @@ "CVE-2017-18840" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6pf-pr39-qpvj/GHSA-j6pf-pr39-qpvj.json b/advisories/unreviewed/2022/05/GHSA-j6pf-pr39-qpvj/GHSA-j6pf-pr39-qpvj.json index e7a32308f7f..dec4ce4be5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6pf-pr39-qpvj/GHSA-j6pf-pr39-qpvj.json +++ b/advisories/unreviewed/2022/05/GHSA-j6pf-pr39-qpvj/GHSA-j6pf-pr39-qpvj.json @@ -7,12 +7,8 @@ "CVE-2017-18830" ], "details": "Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6xw-84jp-rwq9/GHSA-j6xw-84jp-rwq9.json b/advisories/unreviewed/2022/05/GHSA-j6xw-84jp-rwq9/GHSA-j6xw-84jp-rwq9.json index d1f89e56f27..f67a1f813f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6xw-84jp-rwq9/GHSA-j6xw-84jp-rwq9.json +++ b/advisories/unreviewed/2022/05/GHSA-j6xw-84jp-rwq9/GHSA-j6xw-84jp-rwq9.json @@ -7,12 +7,8 @@ "CVE-2019-14104" ], "details": "Slab-out-of-bounds access can occur if the context pointer is invalid due to lack of null check on pointer before accessing it in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8053, SC8180X, SDX55, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8fm-w3vm-qgpv/GHSA-j8fm-w3vm-qgpv.json b/advisories/unreviewed/2022/05/GHSA-j8fm-w3vm-qgpv/GHSA-j8fm-w3vm-qgpv.json index 512c65cf83d..877a893afbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8fm-w3vm-qgpv/GHSA-j8fm-w3vm-qgpv.json +++ b/advisories/unreviewed/2022/05/GHSA-j8fm-w3vm-qgpv/GHSA-j8fm-w3vm-qgpv.json @@ -7,12 +7,8 @@ "CVE-2017-18839" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9r4-wggr-vqrx/GHSA-j9r4-wggr-vqrx.json b/advisories/unreviewed/2022/05/GHSA-j9r4-wggr-vqrx/GHSA-j9r4-wggr-vqrx.json index cf5155dbfb2..6ce0e7c7593 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9r4-wggr-vqrx/GHSA-j9r4-wggr-vqrx.json +++ b/advisories/unreviewed/2022/05/GHSA-j9r4-wggr-vqrx/GHSA-j9r4-wggr-vqrx.json @@ -7,12 +7,8 @@ "CVE-2019-14116" ], "details": "Privilege escalation by using an altered debug policy image can occur as the XPU protecting the debug policy regions are disabled during the crash dump boot flow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jc85-96x7-c99v/GHSA-jc85-96x7-c99v.json b/advisories/unreviewed/2022/05/GHSA-jc85-96x7-c99v/GHSA-jc85-96x7-c99v.json index 56e04bac10a..3349a89da4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jc85-96x7-c99v/GHSA-jc85-96x7-c99v.json +++ b/advisories/unreviewed/2022/05/GHSA-jc85-96x7-c99v/GHSA-jc85-96x7-c99v.json @@ -7,12 +7,8 @@ "CVE-2018-21123" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects WC7500 before 6.5.3.9, WC7520 before 6.5.3.9, WC7600v1 before 6.5.3.9, and WC7600v2 before 6.5.3.9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jcjj-hqg4-gr43/GHSA-jcjj-hqg4-gr43.json b/advisories/unreviewed/2022/05/GHSA-jcjj-hqg4-gr43/GHSA-jcjj-hqg4-gr43.json index 832b75da4dd..9ba5b575f3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcjj-hqg4-gr43/GHSA-jcjj-hqg4-gr43.json +++ b/advisories/unreviewed/2022/05/GHSA-jcjj-hqg4-gr43/GHSA-jcjj-hqg4-gr43.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcw7-jj6m-83gf/GHSA-jcw7-jj6m-83gf.json b/advisories/unreviewed/2022/05/GHSA-jcw7-jj6m-83gf/GHSA-jcw7-jj6m-83gf.json index 0639f53e363..045f7daa119 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcw7-jj6m-83gf/GHSA-jcw7-jj6m-83gf.json +++ b/advisories/unreviewed/2022/05/GHSA-jcw7-jj6m-83gf/GHSA-jcw7-jj6m-83gf.json @@ -7,12 +7,8 @@ "CVE-2020-0082" ], "details": "In ExternalVibration of ExternalVibration.java, there is a possible activation of an arbitrary intent due to unsafe deserialization. This could lead to local escalation of privilege to system_server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-140417434", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jf29-p6xm-2pmr/GHSA-jf29-p6xm-2pmr.json b/advisories/unreviewed/2022/05/GHSA-jf29-p6xm-2pmr/GHSA-jf29-p6xm-2pmr.json index 24fee812bd4..ae3707f8459 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf29-p6xm-2pmr/GHSA-jf29-p6xm-2pmr.json +++ b/advisories/unreviewed/2022/05/GHSA-jf29-p6xm-2pmr/GHSA-jf29-p6xm-2pmr.json @@ -7,12 +7,8 @@ "CVE-2020-2907" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jgf9-34c8-xvj6/GHSA-jgf9-34c8-xvj6.json b/advisories/unreviewed/2022/05/GHSA-jgf9-34c8-xvj6/GHSA-jgf9-34c8-xvj6.json index 610982944c8..bffeff8791b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgf9-34c8-xvj6/GHSA-jgf9-34c8-xvj6.json +++ b/advisories/unreviewed/2022/05/GHSA-jgf9-34c8-xvj6/GHSA-jgf9-34c8-xvj6.json @@ -7,12 +7,8 @@ "CVE-2017-18787" ], "details": "Certain NETGEAR devices are affected by command injection. This affects D6200 before 1.1.00.24, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6050, before 1.0.1.12, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgwh-rghq-wr66/GHSA-jgwh-rghq-wr66.json b/advisories/unreviewed/2022/05/GHSA-jgwh-rghq-wr66/GHSA-jgwh-rghq-wr66.json index 6a9ae03fd3f..bfb321a5f77 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgwh-rghq-wr66/GHSA-jgwh-rghq-wr66.json +++ b/advisories/unreviewed/2022/05/GHSA-jgwh-rghq-wr66/GHSA-jgwh-rghq-wr66.json @@ -7,12 +7,8 @@ "CVE-2018-21128" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgwq-j9j9-hh5x/GHSA-jgwq-j9j9-hh5x.json b/advisories/unreviewed/2022/05/GHSA-jgwq-j9j9-hh5x/GHSA-jgwq-j9j9-hh5x.json index eb86b23e0a7..d449fb9b0cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgwq-j9j9-hh5x/GHSA-jgwq-j9j9-hh5x.json +++ b/advisories/unreviewed/2022/05/GHSA-jgwq-j9j9-hh5x/GHSA-jgwq-j9j9-hh5x.json @@ -7,12 +7,8 @@ "CVE-2017-18841" ], "details": "Certain NETGEAR devices are affected by command injection. This affects R6220 before 1.1.0.46, R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, WNDR3700v5 before 1.1.0.46, and D7000 before 1.0.1.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgwr-cv67-x929/GHSA-jgwr-cv67-x929.json b/advisories/unreviewed/2022/05/GHSA-jgwr-cv67-x929/GHSA-jgwr-cv67-x929.json index aade28bc314..dd1589fdebb 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgwr-cv67-x929/GHSA-jgwr-cv67-x929.json +++ b/advisories/unreviewed/2022/05/GHSA-jgwr-cv67-x929/GHSA-jgwr-cv67-x929.json @@ -7,12 +7,8 @@ "CVE-2019-20761" ], "details": "NETGEAR R7800 devices before 1.0.2.62 are affected by command injection by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh8r-rcp3-r2w9/GHSA-jh8r-rcp3-r2w9.json b/advisories/unreviewed/2022/05/GHSA-jh8r-rcp3-r2w9/GHSA-jh8r-rcp3-r2w9.json index b1475d02a1d..1e37809db92 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh8r-rcp3-r2w9/GHSA-jh8r-rcp3-r2w9.json +++ b/advisories/unreviewed/2022/05/GHSA-jh8r-rcp3-r2w9/GHSA-jh8r-rcp3-r2w9.json @@ -7,12 +7,8 @@ "CVE-2020-1050" ], "details": "A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server, aka 'Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability'. This CVE ID is unique from CVE-2020-1049.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jhqr-4whv-fgcp/GHSA-jhqr-4whv-fgcp.json b/advisories/unreviewed/2022/05/GHSA-jhqr-4whv-fgcp/GHSA-jhqr-4whv-fgcp.json index dd80107508d..6359e2d3bb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhqr-4whv-fgcp/GHSA-jhqr-4whv-fgcp.json +++ b/advisories/unreviewed/2022/05/GHSA-jhqr-4whv-fgcp/GHSA-jhqr-4whv-fgcp.json @@ -7,12 +7,8 @@ "CVE-2020-2858" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjjm-2v77-2785/GHSA-jjjm-2v77-2785.json b/advisories/unreviewed/2022/05/GHSA-jjjm-2v77-2785/GHSA-jjjm-2v77-2785.json index 4c98064b7eb..77a39570d8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjjm-2v77-2785/GHSA-jjjm-2v77-2785.json +++ b/advisories/unreviewed/2022/05/GHSA-jjjm-2v77-2785/GHSA-jjjm-2v77-2785.json @@ -7,12 +7,8 @@ "CVE-2019-20755" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6220 before 1.0.0.46, D6400 before 1.0.0.80, D7000v2 before 1.0.0.51, D8500 before 1.0.3.42, DGN2200v1 before 1.0.0.58, DGN2200B before 1.0.0.58, JNDR3000 before 1.0.0.24, RBW30 before 2.1.4.16, R6250 before 1.0.4.26, R6300v2 before 1.0.4.28, R6400 before 1.0.1.42, R6400v2 before 1.0.2.56, R6700 before 1.0.1.46, R6900 before 1.0.1.46, R7000 before 1.0.9.32, R6900P before 1.3.1.44, R7100LG before 1.0.0.46, R7300DST before 1.0.0.68, R7000P before 1.3.1.44, R7900 before 1.0.2.16, R8000P before 1.4.0.10, R7900P before 1.4.0.10, R8300 before 1.0.2.122, R8500 before 1.0.2.122, R8000 before 1.0.4.18, WNDR3400v3 before 1.0.1.22, WNDR4500v2 before 1.0.0.72, WNR3500Lv2 before 1.2.0.54, WN3100RP before 1.0.0.20, and WN2500RPv2 before 1.0.1.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjvm-4qf9-pxv8/GHSA-jjvm-4qf9-pxv8.json b/advisories/unreviewed/2022/05/GHSA-jjvm-4qf9-pxv8/GHSA-jjvm-4qf9-pxv8.json index b72700f3e35..81f884929bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjvm-4qf9-pxv8/GHSA-jjvm-4qf9-pxv8.json +++ b/advisories/unreviewed/2022/05/GHSA-jjvm-4qf9-pxv8/GHSA-jjvm-4qf9-pxv8.json @@ -7,12 +7,8 @@ "CVE-2018-21127" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jm4r-px6v-v7q6/GHSA-jm4r-px6v-v7q6.json b/advisories/unreviewed/2022/05/GHSA-jm4r-px6v-v7q6/GHSA-jm4r-px6v-v7q6.json index fdaf7a80c50..c6c4a92305e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jm4r-px6v-v7q6/GHSA-jm4r-px6v-v7q6.json +++ b/advisories/unreviewed/2022/05/GHSA-jm4r-px6v-v7q6/GHSA-jm4r-px6v-v7q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jqr2-j347-fpx4/GHSA-jqr2-j347-fpx4.json b/advisories/unreviewed/2022/05/GHSA-jqr2-j347-fpx4/GHSA-jqr2-j347-fpx4.json index 78aae0dbee5..79f84c5bc72 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqr2-j347-fpx4/GHSA-jqr2-j347-fpx4.json +++ b/advisories/unreviewed/2022/05/GHSA-jqr2-j347-fpx4/GHSA-jqr2-j347-fpx4.json @@ -7,12 +7,8 @@ "CVE-2017-18783" ], "details": "Certain NETGEAR devices are affected by XSS. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jqr5-ffrr-c4m7/GHSA-jqr5-ffrr-c4m7.json b/advisories/unreviewed/2022/05/GHSA-jqr5-ffrr-c4m7/GHSA-jqr5-ffrr-c4m7.json index a080fda18c8..d06b066f355 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqr5-ffrr-c4m7/GHSA-jqr5-ffrr-c4m7.json +++ b/advisories/unreviewed/2022/05/GHSA-jqr5-ffrr-c4m7/GHSA-jqr5-ffrr-c4m7.json @@ -7,12 +7,8 @@ "CVE-2019-20700" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.0.0.44, D6400 before 1.0.0.78, D7000v2 before 1.0.0.51, D8500 before 1.0.3.42, DGN2200v4 before 1.0.0.110, DGND2200Bv4 before 1.0.0.110, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.24, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6250 before 1.0.4.26, R6300v2 before 1.0.4.28, R6400 before 1.0.1.36, R6400v2 before 1.0.2.52, R6700 before 1.0.1.46, R6900 before 1.0.1.46, R7000 before 1.0.9.28, R7900 before 1.0.2.10, R8000 before 1.0.4.12, R8300 before 1.0.2.122, R8500 before 1.0.2.122, R6900P before 1.3.1.64, R7000P before 1.3.1.64, R7100LG before 1.0.0.46, R7300DST before 1.0.0.68, R7900P before 1.3.0.10, R8000P before 1.3.0.10, WN2500RPv2 before 1.0.1.54, WNDR3400v3 before 1.0.1.22, and WNR3500Lv2 before 1.2.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jr59-h8cw-h9p9/GHSA-jr59-h8cw-h9p9.json b/advisories/unreviewed/2022/05/GHSA-jr59-h8cw-h9p9/GHSA-jr59-h8cw-h9p9.json index 9a961c7bf88..7f8e6e53242 100644 --- a/advisories/unreviewed/2022/05/GHSA-jr59-h8cw-h9p9/GHSA-jr59-h8cw-h9p9.json +++ b/advisories/unreviewed/2022/05/GHSA-jr59-h8cw-h9p9/GHSA-jr59-h8cw-h9p9.json @@ -7,12 +7,8 @@ "CVE-2019-14105" ], "details": "Kernel was reading the CSL defined reserved field as uint16 instead of uint32 which could lead to memory overflow in Snapdragon Industrial IOT, Snapdragon Mobile in SDA845, SDM845, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jrg4-wvq2-j9f7/GHSA-jrg4-wvq2-j9f7.json b/advisories/unreviewed/2022/05/GHSA-jrg4-wvq2-j9f7/GHSA-jrg4-wvq2-j9f7.json index 5cdbd5ef9bc..68e968d1f1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrg4-wvq2-j9f7/GHSA-jrg4-wvq2-j9f7.json +++ b/advisories/unreviewed/2022/05/GHSA-jrg4-wvq2-j9f7/GHSA-jrg4-wvq2-j9f7.json @@ -7,12 +7,8 @@ "CVE-2020-0076" ], "details": "In get_auth_result of the FPC IRIS TrustZone app, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-146056878", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jrx5-j8x7-p42r/GHSA-jrx5-j8x7-p42r.json b/advisories/unreviewed/2022/05/GHSA-jrx5-j8x7-p42r/GHSA-jrx5-j8x7-p42r.json index cb8af23750e..a0cd5cae2b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrx5-j8x7-p42r/GHSA-jrx5-j8x7-p42r.json +++ b/advisories/unreviewed/2022/05/GHSA-jrx5-j8x7-p42r/GHSA-jrx5-j8x7-p42r.json @@ -7,12 +7,8 @@ "CVE-2017-18784" ], "details": "Certain NETGEAR devices are affected by XSS. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jv4f-49pf-8gfq/GHSA-jv4f-49pf-8gfq.json b/advisories/unreviewed/2022/05/GHSA-jv4f-49pf-8gfq/GHSA-jv4f-49pf-8gfq.json index 89f5a6d0118..2616d3fe9d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv4f-49pf-8gfq/GHSA-jv4f-49pf-8gfq.json +++ b/advisories/unreviewed/2022/05/GHSA-jv4f-49pf-8gfq/GHSA-jv4f-49pf-8gfq.json @@ -7,12 +7,8 @@ "CVE-2020-2867" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container). Supported versions that are affected are 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle WebLogic Server accessible data as well as unauthorized read access to a subset of Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jv8c-vh95-8c34/GHSA-jv8c-vh95-8c34.json b/advisories/unreviewed/2022/05/GHSA-jv8c-vh95-8c34/GHSA-jv8c-vh95-8c34.json index 8bcdac1d5e8..d3afd13dac3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv8c-vh95-8c34/GHSA-jv8c-vh95-8c34.json +++ b/advisories/unreviewed/2022/05/GHSA-jv8c-vh95-8c34/GHSA-jv8c-vh95-8c34.json @@ -7,12 +7,8 @@ "CVE-2017-18781" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JWNR2010v5 before 1.1.0.44, JR6150 before 1.0.1.12, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jvvj-q942-m597/GHSA-jvvj-q942-m597.json b/advisories/unreviewed/2022/05/GHSA-jvvj-q942-m597/GHSA-jvvj-q942-m597.json index e5328be9d0e..9475794c4ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvvj-q942-m597/GHSA-jvvj-q942-m597.json +++ b/advisories/unreviewed/2022/05/GHSA-jvvj-q942-m597/GHSA-jvvj-q942-m597.json @@ -7,12 +7,8 @@ "CVE-2019-20692" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.0.0.44, D6400 before 1.0.0.78, D7000v2 before 1.0.0.51, D8500 before 1.0.3.42, DGN2200v4 before 1.0.0.110, DGND2200Bv4 before 1.0.0.109, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.24, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6250 before 1.0.4.26, R6300v2 before 1.0.4.28, R6400 before 1.0.1.36, R6400v2 before 1.0.2.52, R6700 before 1.0.1.46, R6900 before 1.0.1.46, R7000 before 1.0.9.28, R6900P before 1.3.1.44, R7000P before 1.3.1.44, R7100LG before 1.0.0.46, R7300DST before 1.0.0.68, R7900 before 1.0.2.10, R8000 before 1.0.4.12, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.122, R8500 before 1.0.2.122, WN2500RPv2 before 1.0.1.54, WNDR3400v3 before 1.0.1.22, and WNR3500Lv2 before 1.2.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jxph-j64g-2vgm/GHSA-jxph-j64g-2vgm.json b/advisories/unreviewed/2022/05/GHSA-jxph-j64g-2vgm/GHSA-jxph-j64g-2vgm.json index 42d4f0b711d..9cd6c4cbc39 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxph-j64g-2vgm/GHSA-jxph-j64g-2vgm.json +++ b/advisories/unreviewed/2022/05/GHSA-jxph-j64g-2vgm/GHSA-jxph-j64g-2vgm.json @@ -7,12 +7,8 @@ "CVE-2020-2821" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Budget). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m24v-9j67-px23/GHSA-m24v-9j67-px23.json b/advisories/unreviewed/2022/05/GHSA-m24v-9j67-px23/GHSA-m24v-9j67-px23.json index 99d34139132..882cb23d850 100644 --- a/advisories/unreviewed/2022/05/GHSA-m24v-9j67-px23/GHSA-m24v-9j67-px23.json +++ b/advisories/unreviewed/2022/05/GHSA-m24v-9j67-px23/GHSA-m24v-9j67-px23.json @@ -7,12 +7,8 @@ "CVE-2019-20722" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.44, DM200 before 1.0.0.58, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, RBK20 before 2.3.0.28, RBR20 before 2.3.0.28, RBS20 before 2.3.0.28, RBK50 before 2.3.0.32, RBR50 before 2.3.0.32, RBS50 before 2.3.0.32, RBS40 before 2.3.0.28, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m257-p3ch-g723/GHSA-m257-p3ch-g723.json b/advisories/unreviewed/2022/05/GHSA-m257-p3ch-g723/GHSA-m257-p3ch-g723.json index ea25cb05eb6..7978a140fcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-m257-p3ch-g723/GHSA-m257-p3ch-g723.json +++ b/advisories/unreviewed/2022/05/GHSA-m257-p3ch-g723/GHSA-m257-p3ch-g723.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m265-9cv9-6vq9/GHSA-m265-9cv9-6vq9.json b/advisories/unreviewed/2022/05/GHSA-m265-9cv9-6vq9/GHSA-m265-9cv9-6vq9.json index cd57dd778f4..17e1ba0c378 100644 --- a/advisories/unreviewed/2022/05/GHSA-m265-9cv9-6vq9/GHSA-m265-9cv9-6vq9.json +++ b/advisories/unreviewed/2022/05/GHSA-m265-9cv9-6vq9/GHSA-m265-9cv9-6vq9.json @@ -7,12 +7,8 @@ "CVE-2020-3249" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3g4-f98h-fg66/GHSA-m3g4-f98h-fg66.json b/advisories/unreviewed/2022/05/GHSA-m3g4-f98h-fg66/GHSA-m3g4-f98h-fg66.json index af01e30be1b..c12fd4c7635 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3g4-f98h-fg66/GHSA-m3g4-f98h-fg66.json +++ b/advisories/unreviewed/2022/05/GHSA-m3g4-f98h-fg66/GHSA-m3g4-f98h-fg66.json @@ -7,12 +7,8 @@ "CVE-2017-18794" ], "details": "Certain NETGEAR devices are affected by command injection. This affects R6300v2 before 1.0.4.8_10.0.77, R6400 before 1.0.1.24, R6700 before 1.0.1.26, R7000 before 1.0.9.10, R7100LG before 1.0.0.32, R7900 before 1.0.1.18, R8000 before 1.0.3.54, R8500 before 1.0.2.100, and D6100 before 1.0.0.50_0.0.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m474-22p6-39cr/GHSA-m474-22p6-39cr.json b/advisories/unreviewed/2022/05/GHSA-m474-22p6-39cr/GHSA-m474-22p6-39cr.json index 9f6a0277267..fd526e43ff6 100644 --- a/advisories/unreviewed/2022/05/GHSA-m474-22p6-39cr/GHSA-m474-22p6-39cr.json +++ b/advisories/unreviewed/2022/05/GHSA-m474-22p6-39cr/GHSA-m474-22p6-39cr.json @@ -7,12 +7,8 @@ "CVE-2019-14012" ], "details": "Possibility of null pointer deference as the array of video codecs from media info is referenced without null checking while processing SDP messages in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, Nicobar, QCM2150, QM215, Rennell, SC7180, SC8180X, SDA845, SDM429, SDM439, SDM450, SDM632, SDM845, SDM850, SDX24, SM6150, SM7150, SM8150", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m4mj-5hcj-76vr/GHSA-m4mj-5hcj-76vr.json b/advisories/unreviewed/2022/05/GHSA-m4mj-5hcj-76vr/GHSA-m4mj-5hcj-76vr.json index 52ec24f23c2..8ecd734559a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4mj-5hcj-76vr/GHSA-m4mj-5hcj-76vr.json +++ b/advisories/unreviewed/2022/05/GHSA-m4mj-5hcj-76vr/GHSA-m4mj-5hcj-76vr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m84w-qw3w-rpg2/GHSA-m84w-qw3w-rpg2.json b/advisories/unreviewed/2022/05/GHSA-m84w-qw3w-rpg2/GHSA-m84w-qw3w-rpg2.json index 569670db1bb..1ed09a343ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-m84w-qw3w-rpg2/GHSA-m84w-qw3w-rpg2.json +++ b/advisories/unreviewed/2022/05/GHSA-m84w-qw3w-rpg2/GHSA-m84w-qw3w-rpg2.json @@ -7,12 +7,8 @@ "CVE-2017-18813" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8hv-442x-vvx3/GHSA-m8hv-442x-vvx3.json b/advisories/unreviewed/2022/05/GHSA-m8hv-442x-vvx3/GHSA-m8hv-442x-vvx3.json index b57431dc96a..e51554b93ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8hv-442x-vvx3/GHSA-m8hv-442x-vvx3.json +++ b/advisories/unreviewed/2022/05/GHSA-m8hv-442x-vvx3/GHSA-m8hv-442x-vvx3.json @@ -7,12 +7,8 @@ "CVE-2019-20750" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.47, EX6150v2 before 1.0.1.76, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WN2000RPTv3 before 1.0.1.32, WN3000RPv3 before 1.0.2.70, and WN3100RPv2 before 1.0.0.66.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8j6-cx9x-6pxx/GHSA-m8j6-cx9x-6pxx.json b/advisories/unreviewed/2022/05/GHSA-m8j6-cx9x-6pxx/GHSA-m8j6-cx9x-6pxx.json index 11bbcdb7c31..4c9f2483947 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8j6-cx9x-6pxx/GHSA-m8j6-cx9x-6pxx.json +++ b/advisories/unreviewed/2022/05/GHSA-m8j6-cx9x-6pxx/GHSA-m8j6-cx9x-6pxx.json @@ -7,12 +7,8 @@ "CVE-2020-7114" ], "details": "A vulnerability exists allowing attackers, when present in the same network segment as ClearPass' management interface, to make changes to certain databases in ClearPass by crafting HTTP packets. As a result of this attack, a possible complete cluster compromise might occur. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8r4-259x-767p/GHSA-m8r4-259x-767p.json b/advisories/unreviewed/2022/05/GHSA-m8r4-259x-767p/GHSA-m8r4-259x-767p.json index 931c2c0780f..d013ffbfb30 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8r4-259x-767p/GHSA-m8r4-259x-767p.json +++ b/advisories/unreviewed/2022/05/GHSA-m8r4-259x-767p/GHSA-m8r4-259x-767p.json @@ -7,12 +7,8 @@ "CVE-2017-18814" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m94r-7gjj-544q/GHSA-m94r-7gjj-544q.json b/advisories/unreviewed/2022/05/GHSA-m94r-7gjj-544q/GHSA-m94r-7gjj-544q.json index 80898fe71ea..04989dc18e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m94r-7gjj-544q/GHSA-m94r-7gjj-544q.json +++ b/advisories/unreviewed/2022/05/GHSA-m94r-7gjj-544q/GHSA-m94r-7gjj-544q.json @@ -7,12 +7,8 @@ "CVE-2020-2872" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Profile). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m9hw-vp6q-5jjm/GHSA-m9hw-vp6q-5jjm.json b/advisories/unreviewed/2022/05/GHSA-m9hw-vp6q-5jjm/GHSA-m9hw-vp6q-5jjm.json index 035a3801dcf..1cd3ff65621 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9hw-vp6q-5jjm/GHSA-m9hw-vp6q-5jjm.json +++ b/advisories/unreviewed/2022/05/GHSA-m9hw-vp6q-5jjm/GHSA-m9hw-vp6q-5jjm.json @@ -7,12 +7,8 @@ "CVE-2020-2857" ], "details": "Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Advanced Outbound Telephony. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Advanced Outbound Telephony, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Advanced Outbound Telephony accessible data as well as unauthorized update, insert or delete access to some of Oracle Advanced Outbound Telephony accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m9m2-fqcj-qww8/GHSA-m9m2-fqcj-qww8.json b/advisories/unreviewed/2022/05/GHSA-m9m2-fqcj-qww8/GHSA-m9m2-fqcj-qww8.json index 481ecc184ab..6549b7b0a86 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9m2-fqcj-qww8/GHSA-m9m2-fqcj-qww8.json +++ b/advisories/unreviewed/2022/05/GHSA-m9m2-fqcj-qww8/GHSA-m9m2-fqcj-qww8.json @@ -7,12 +7,8 @@ "CVE-2020-2799" ], "details": "Vulnerability in the Oracle GraalVM Enterprise Edition product of Oracle GraalVM (component: GraalVM Compiler). Supported versions that are affected are 19.3.1 and 20.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise Oracle GraalVM Enterprise Edition. While the vulnerability is in Oracle GraalVM Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle GraalVM Enterprise Edition accessible data. CVSS 3.0 Base Score 6.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mc5g-g767-pr48/GHSA-mc5g-g767-pr48.json b/advisories/unreviewed/2022/05/GHSA-mc5g-g767-pr48/GHSA-mc5g-g767-pr48.json index 40c28c1a3eb..0537eeed636 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc5g-g767-pr48/GHSA-mc5g-g767-pr48.json +++ b/advisories/unreviewed/2022/05/GHSA-mc5g-g767-pr48/GHSA-mc5g-g767-pr48.json @@ -7,12 +7,8 @@ "CVE-2020-0945" ], "details": "An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Foundation Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-0937, CVE-2020-0939, CVE-2020-0946, CVE-2020-0947.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mcj6-f8p9-qpgc/GHSA-mcj6-f8p9-qpgc.json b/advisories/unreviewed/2022/05/GHSA-mcj6-f8p9-qpgc/GHSA-mcj6-f8p9-qpgc.json index b7106b357a1..3e74a523dc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcj6-f8p9-qpgc/GHSA-mcj6-f8p9-qpgc.json +++ b/advisories/unreviewed/2022/05/GHSA-mcj6-f8p9-qpgc/GHSA-mcj6-f8p9-qpgc.json @@ -7,12 +7,8 @@ "CVE-2020-3247" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf23-9v58-x7jv/GHSA-mf23-9v58-x7jv.json b/advisories/unreviewed/2022/05/GHSA-mf23-9v58-x7jv/GHSA-mf23-9v58-x7jv.json index 21096ba5cea..532e9e1f28e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf23-9v58-x7jv/GHSA-mf23-9v58-x7jv.json +++ b/advisories/unreviewed/2022/05/GHSA-mf23-9v58-x7jv/GHSA-mf23-9v58-x7jv.json @@ -7,12 +7,8 @@ "CVE-2020-11878" ], "details": "The Jitsi Meet (aka docker-jitsi-meet) stack on Docker before stable-4384-1 uses default passwords (such as passw0rd) for system accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf4c-7jx4-wgmm/GHSA-mf4c-7jx4-wgmm.json b/advisories/unreviewed/2022/05/GHSA-mf4c-7jx4-wgmm/GHSA-mf4c-7jx4-wgmm.json index e8f38fb9e6b..bc88917a4fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf4c-7jx4-wgmm/GHSA-mf4c-7jx4-wgmm.json +++ b/advisories/unreviewed/2022/05/GHSA-mf4c-7jx4-wgmm/GHSA-mf4c-7jx4-wgmm.json @@ -7,12 +7,8 @@ "CVE-2020-9523" ], "details": "Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6. The vulnerability could allow an attacker to transmit hashed credentials for the user account running the Micro Focus Directory Server (MFDS) to an arbitrary site, compromising that account's security.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mfc3-c99j-vmcg/GHSA-mfc3-c99j-vmcg.json b/advisories/unreviewed/2022/05/GHSA-mfc3-c99j-vmcg/GHSA-mfc3-c99j-vmcg.json index 0939d65441f..b7008897b63 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfc3-c99j-vmcg/GHSA-mfc3-c99j-vmcg.json +++ b/advisories/unreviewed/2022/05/GHSA-mfc3-c99j-vmcg/GHSA-mfc3-c99j-vmcg.json @@ -7,12 +7,8 @@ "CVE-2020-11872" ], "details": "The Cloud Functions subsystem in OpenTrace 1.0 might allow fabrication attacks by making billions of TempID requests before an AES-256-GCM key rotation occurs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mg44-xqjw-5phc/GHSA-mg44-xqjw-5phc.json b/advisories/unreviewed/2022/05/GHSA-mg44-xqjw-5phc/GHSA-mg44-xqjw-5phc.json index 30c859e8721..3cd639f9244 100644 --- a/advisories/unreviewed/2022/05/GHSA-mg44-xqjw-5phc/GHSA-mg44-xqjw-5phc.json +++ b/advisories/unreviewed/2022/05/GHSA-mg44-xqjw-5phc/GHSA-mg44-xqjw-5phc.json @@ -7,12 +7,8 @@ "CVE-2020-5569" ], "details": "An unquoted search path vulnerability exists HDD Password tool (for Windows) in version 1.20.6620 and earlier which is stored in CANVIO PREMIUM 3TB(HD-MB30TY, HD-MA30TY, HD-MB30TS, HD-MA30TS), CANVIO PREMIUM 2TB(HD-MB20TY, HD-MA20TY, HD-MB20TS, HD-MA20TS), CANVIO PREMIUM 1TB(HD-MB10TY, HD-MA10TY, HD-MB10TS, HD-MA10TS), CANVIO SLIM 1TB(HD-SB10TK, HD-SB10TS), and CANVIO SLIM 500GB(HD-SB50GK, HD-SA50GK, HD-SB50GS, HD-SA50GS), and which was downloaded before 2020 May 10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mmfc-hpg2-c48v/GHSA-mmfc-hpg2-c48v.json b/advisories/unreviewed/2022/05/GHSA-mmfc-hpg2-c48v/GHSA-mmfc-hpg2-c48v.json index 451fb376862..aad5595dfb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmfc-hpg2-c48v/GHSA-mmfc-hpg2-c48v.json +++ b/advisories/unreviewed/2022/05/GHSA-mmfc-hpg2-c48v/GHSA-mmfc-hpg2-c48v.json @@ -7,12 +7,8 @@ "CVE-2018-21143" ], "details": "NETGEAR GS810EMX devices before 1.0.0.5 are affected by disclosure of sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mprw-h52g-r89g/GHSA-mprw-h52g-r89g.json b/advisories/unreviewed/2022/05/GHSA-mprw-h52g-r89g/GHSA-mprw-h52g-r89g.json index 574c4ac2b6b..7ad4f6a67ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-mprw-h52g-r89g/GHSA-mprw-h52g-r89g.json +++ b/advisories/unreviewed/2022/05/GHSA-mprw-h52g-r89g/GHSA-mprw-h52g-r89g.json @@ -7,12 +7,8 @@ "CVE-2020-2896" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mqfc-mw2x-x89c/GHSA-mqfc-mw2x-x89c.json b/advisories/unreviewed/2022/05/GHSA-mqfc-mw2x-x89c/GHSA-mqfc-mw2x-x89c.json index d3b04fb3b43..6eef1784089 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqfc-mw2x-x89c/GHSA-mqfc-mw2x-x89c.json +++ b/advisories/unreviewed/2022/05/GHSA-mqfc-mw2x-x89c/GHSA-mqfc-mw2x-x89c.json @@ -7,12 +7,8 @@ "CVE-2020-3260" ], "details": "A vulnerability in Cisco Aironet Series Access Points Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to the improper processing of client packets that are sent to an affected access point (AP). An attacker could exploit this vulnerability by sending a large number of sustained client packets to the affected AP. A successful exploit could allow the attacker to cause the affected AP to crash, resulting in a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mqmq-69c9-vm4c/GHSA-mqmq-69c9-vm4c.json b/advisories/unreviewed/2022/05/GHSA-mqmq-69c9-vm4c/GHSA-mqmq-69c9-vm4c.json index e36969c2d20..7d5e08f8cb7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqmq-69c9-vm4c/GHSA-mqmq-69c9-vm4c.json +++ b/advisories/unreviewed/2022/05/GHSA-mqmq-69c9-vm4c/GHSA-mqmq-69c9-vm4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqrp-5655-6gmq/GHSA-mqrp-5655-6gmq.json b/advisories/unreviewed/2022/05/GHSA-mqrp-5655-6gmq/GHSA-mqrp-5655-6gmq.json index a1908403fe3..68fed360146 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqrp-5655-6gmq/GHSA-mqrp-5655-6gmq.json +++ b/advisories/unreviewed/2022/05/GHSA-mqrp-5655-6gmq/GHSA-mqrp-5655-6gmq.json @@ -7,12 +7,8 @@ "CVE-2020-2879" ], "details": "Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Miscellaneous). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Scripting. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Scripting, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Scripting accessible data as well as unauthorized update, insert or delete access to some of Oracle Scripting accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr37-x76p-q88v/GHSA-mr37-x76p-q88v.json b/advisories/unreviewed/2022/05/GHSA-mr37-x76p-q88v/GHSA-mr37-x76p-q88v.json index b0012722dfd..5edda4d244a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr37-x76p-q88v/GHSA-mr37-x76p-q88v.json +++ b/advisories/unreviewed/2022/05/GHSA-mr37-x76p-q88v/GHSA-mr37-x76p-q88v.json @@ -7,12 +7,8 @@ "CVE-2019-10556" ], "details": "Missing length check before copying the data from kernel space to userspace through the copy function can lead to buffer overflow in some cases in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, MSM8909W, MSM8917, MSM8953, Nicobar, QCN7605, QCS405, QCS605, QM215, Rennell, Saipan, SC8180X, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mv2x-9h7w-52q7/GHSA-mv2x-9h7w-52q7.json b/advisories/unreviewed/2022/05/GHSA-mv2x-9h7w-52q7/GHSA-mv2x-9h7w-52q7.json index 6b6df9bb8f7..2e609033e07 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv2x-9h7w-52q7/GHSA-mv2x-9h7w-52q7.json +++ b/advisories/unreviewed/2022/05/GHSA-mv2x-9h7w-52q7/GHSA-mv2x-9h7w-52q7.json @@ -7,12 +7,8 @@ "CVE-2020-5728" ], "details": "OpenMRS 2.9 and prior copies \"Referrer\" header values into an html element named \"redirectUrl\" within many webpages (such as login.htm). There is insufficient validation for this parameter, which allows for the possibility of cross-site scripting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx56-653q-vrf3/GHSA-mx56-653q-vrf3.json b/advisories/unreviewed/2022/05/GHSA-mx56-653q-vrf3/GHSA-mx56-653q-vrf3.json index 68b1ca00efa..3161344e9a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx56-653q-vrf3/GHSA-mx56-653q-vrf3.json +++ b/advisories/unreviewed/2022/05/GHSA-mx56-653q-vrf3/GHSA-mx56-653q-vrf3.json @@ -7,12 +7,8 @@ "CVE-2020-11813" ], "details": "In Rukovoditel 2.5.2, there is a stored XSS vulnerability on the configuration page via the copyright text input. Thus, an attacker can inject a malicious script to steal all users' valuable data. This copyright text is on every page so this attack vector can be very dangerous.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mx68-p78j-fv2c/GHSA-mx68-p78j-fv2c.json b/advisories/unreviewed/2022/05/GHSA-mx68-p78j-fv2c/GHSA-mx68-p78j-fv2c.json index f51b2801eab..af19d25d7f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx68-p78j-fv2c/GHSA-mx68-p78j-fv2c.json +++ b/advisories/unreviewed/2022/05/GHSA-mx68-p78j-fv2c/GHSA-mx68-p78j-fv2c.json @@ -7,12 +7,8 @@ "CVE-2020-6996" ], "details": "Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source code libraries are affected:3.16.00 through 3.25.01. A specially crafted message may cause a stack-based buffer overflow. Authentication is not required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mxf2-xjp5-4w4p/GHSA-mxf2-xjp5-4w4p.json b/advisories/unreviewed/2022/05/GHSA-mxf2-xjp5-4w4p/GHSA-mxf2-xjp5-4w4p.json index 882da926211..f48e7a5ce36 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxf2-xjp5-4w4p/GHSA-mxf2-xjp5-4w4p.json +++ b/advisories/unreviewed/2022/05/GHSA-mxf2-xjp5-4w4p/GHSA-mxf2-xjp5-4w4p.json @@ -7,12 +7,8 @@ "CVE-2017-18821" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p2mj-g72q-wq82/GHSA-p2mj-g72q-wq82.json b/advisories/unreviewed/2022/05/GHSA-p2mj-g72q-wq82/GHSA-p2mj-g72q-wq82.json index 2f5f9e62dfc..2c80a68d295 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2mj-g72q-wq82/GHSA-p2mj-g72q-wq82.json +++ b/advisories/unreviewed/2022/05/GHSA-p2mj-g72q-wq82/GHSA-p2mj-g72q-wq82.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p44r-qm4c-m42v/GHSA-p44r-qm4c-m42v.json b/advisories/unreviewed/2022/05/GHSA-p44r-qm4c-m42v/GHSA-p44r-qm4c-m42v.json index 4ce93b8c7c7..6daa6f7b0aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-p44r-qm4c-m42v/GHSA-p44r-qm4c-m42v.json +++ b/advisories/unreviewed/2022/05/GHSA-p44r-qm4c-m42v/GHSA-p44r-qm4c-m42v.json @@ -7,12 +7,8 @@ "CVE-2019-14019" ], "details": "Multiple Read overflows issue due to improper length check while decoding RAU accept/PDN disconnect Rej/Modify EPS ctxt req/bearer resource alloc Rej/Deact EPs bearer REq in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9207C, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p69p-29pp-hh3g/GHSA-p69p-29pp-hh3g.json b/advisories/unreviewed/2022/05/GHSA-p69p-29pp-hh3g/GHSA-p69p-29pp-hh3g.json index 5beb00ad53b..5109769aa0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-p69p-29pp-hh3g/GHSA-p69p-29pp-hh3g.json +++ b/advisories/unreviewed/2022/05/GHSA-p69p-29pp-hh3g/GHSA-p69p-29pp-hh3g.json @@ -7,12 +7,8 @@ "CVE-2017-18827" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p6f9-jr47-69fq/GHSA-p6f9-jr47-69fq.json b/advisories/unreviewed/2022/05/GHSA-p6f9-jr47-69fq/GHSA-p6f9-jr47-69fq.json index fc9f8722fa5..75fee342575 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6f9-jr47-69fq/GHSA-p6f9-jr47-69fq.json +++ b/advisories/unreviewed/2022/05/GHSA-p6f9-jr47-69fq/GHSA-p6f9-jr47-69fq.json @@ -7,12 +7,8 @@ "CVE-2019-20765" ], "details": "NETGEAR R7800 devices before 1.0.2.52 are affected by a stack-based buffer overflow by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p7jx-q735-v62j/GHSA-p7jx-q735-v62j.json b/advisories/unreviewed/2022/05/GHSA-p7jx-q735-v62j/GHSA-p7jx-q735-v62j.json index cdefdee1bba..f26bcfefd87 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7jx-q735-v62j/GHSA-p7jx-q735-v62j.json +++ b/advisories/unreviewed/2022/05/GHSA-p7jx-q735-v62j/GHSA-p7jx-q735-v62j.json @@ -7,12 +7,8 @@ "CVE-2020-7250" ], "details": "Symbolic link manipulation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update allows authenticated local user to potentially gain an escalation of privileges by pointing the link to files which the user which not normally have permission to alter via carefully creating symbolic links from the ENS log file directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p7mh-mqrg-wx2f/GHSA-p7mh-mqrg-wx2f.json b/advisories/unreviewed/2022/05/GHSA-p7mh-mqrg-wx2f/GHSA-p7mh-mqrg-wx2f.json index 827c5987b6d..6e602b719a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7mh-mqrg-wx2f/GHSA-p7mh-mqrg-wx2f.json +++ b/advisories/unreviewed/2022/05/GHSA-p7mh-mqrg-wx2f/GHSA-p7mh-mqrg-wx2f.json @@ -7,12 +7,8 @@ "CVE-2019-20716" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects DGN2200v4 before 1.0.0.110 and DGND2200Bv4 before 1.0.0.109.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9gq-h366-q2cq/GHSA-p9gq-h366-q2cq.json b/advisories/unreviewed/2022/05/GHSA-p9gq-h366-q2cq/GHSA-p9gq-h366-q2cq.json index aa27d004ea0..6ea4e70a832 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9gq-h366-q2cq/GHSA-p9gq-h366-q2cq.json +++ b/advisories/unreviewed/2022/05/GHSA-p9gq-h366-q2cq/GHSA-p9gq-h366-q2cq.json @@ -7,12 +7,8 @@ "CVE-2017-18772" ], "details": "Certain NETGEAR devices are affected by authentication bypass. This affects EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, EX6120 before 1.0.0.32, EX6130 before 1.0.0.16, R6300v2 before 1.0.4.12, R6700 before 1.0.1.26, R6900 before 1.0.1.22, R7000 before 1.0.9.6, R7300DST before 1.0.0.52, R7900 before 1.0.1.12, R8000 before 1.0.3.24, R8500 before 1.0.2.74, and WNR2000v2 before 1.2.0.8.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9r3-92g3-xhjf/GHSA-p9r3-92g3-xhjf.json b/advisories/unreviewed/2022/05/GHSA-p9r3-92g3-xhjf/GHSA-p9r3-92g3-xhjf.json index afbfe1cf38f..9cdb10c80d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9r3-92g3-xhjf/GHSA-p9r3-92g3-xhjf.json +++ b/advisories/unreviewed/2022/05/GHSA-p9r3-92g3-xhjf/GHSA-p9r3-92g3-xhjf.json @@ -7,12 +7,8 @@ "CVE-2019-20708" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9w5-hjj9-xmfq/GHSA-p9w5-hjj9-xmfq.json b/advisories/unreviewed/2022/05/GHSA-p9w5-hjj9-xmfq/GHSA-p9w5-hjj9-xmfq.json index 69e82a13c39..09ef85c64de 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9w5-hjj9-xmfq/GHSA-p9w5-hjj9-xmfq.json +++ b/advisories/unreviewed/2022/05/GHSA-p9w5-hjj9-xmfq/GHSA-p9w5-hjj9-xmfq.json @@ -7,12 +7,8 @@ "CVE-2019-20738" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects D6100 before 1.0.0.58, D7800 before 1.0.1.34, JNR1010v2 before 1.1.0.50, JWNR2010v5 before 1.1.0.50, RBK50 before 2.3.5.30, RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, R6020 before 1.0.0.30, R6080 before 1.0.0.30, R6100 before 1.0.1.16, R6120 before 1.0.0.40, R6700v2 before 1.2.0.14, R6800 before 1.2.0.14, R6900v2 before 1.2.0.14, R7500v2 before 1.0.3.26, R7800 before 1.0.2.46, R9000 before 1.0.4.2, WN3000RPv2 before 1.0.0.52, WN3000RPv3 before 1.0.2.78, WNDR3700v4 before 1.0.2.102, WNDR3700v5 before 1.1.0.54, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, WNR1000v4 before 1.1.0.50, WNR2000v5 before 1.0.0.64, WNR2020 before 1.1.0.50, and WNR2050 before 1.1.0.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pgcj-qjv8-fw45/GHSA-pgcj-qjv8-fw45.json b/advisories/unreviewed/2022/05/GHSA-pgcj-qjv8-fw45/GHSA-pgcj-qjv8-fw45.json index 559e883606e..dfc5ab5e3a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgcj-qjv8-fw45/GHSA-pgcj-qjv8-fw45.json +++ b/advisories/unreviewed/2022/05/GHSA-pgcj-qjv8-fw45/GHSA-pgcj-qjv8-fw45.json @@ -7,12 +7,8 @@ "CVE-2017-18823" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pgj5-5qc2-xrrf/GHSA-pgj5-5qc2-xrrf.json b/advisories/unreviewed/2022/05/GHSA-pgj5-5qc2-xrrf/GHSA-pgj5-5qc2-xrrf.json index 89a1823309a..c446f56e3aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgj5-5qc2-xrrf/GHSA-pgj5-5qc2-xrrf.json +++ b/advisories/unreviewed/2022/05/GHSA-pgj5-5qc2-xrrf/GHSA-pgj5-5qc2-xrrf.json @@ -7,12 +7,8 @@ "CVE-2020-2796" ], "details": "Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Message Display). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Email Center, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Email Center accessible data as well as unauthorized update, insert or delete access to some of Oracle Email Center accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ph7c-j5j3-82fp/GHSA-ph7c-j5j3-82fp.json b/advisories/unreviewed/2022/05/GHSA-ph7c-j5j3-82fp/GHSA-ph7c-j5j3-82fp.json index e4a44445abf..35086ec1a19 100644 --- a/advisories/unreviewed/2022/05/GHSA-ph7c-j5j3-82fp/GHSA-ph7c-j5j3-82fp.json +++ b/advisories/unreviewed/2022/05/GHSA-ph7c-j5j3-82fp/GHSA-ph7c-j5j3-82fp.json @@ -7,12 +7,8 @@ "CVE-2020-2925" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: PS). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pjp5-qqvr-jhhc/GHSA-pjp5-qqvr-jhhc.json b/advisories/unreviewed/2022/05/GHSA-pjp5-qqvr-jhhc/GHSA-pjp5-qqvr-jhhc.json index 844da80ea6b..78e32799283 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjp5-qqvr-jhhc/GHSA-pjp5-qqvr-jhhc.json +++ b/advisories/unreviewed/2022/05/GHSA-pjp5-qqvr-jhhc/GHSA-pjp5-qqvr-jhhc.json @@ -7,12 +7,8 @@ "CVE-2017-18825" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pjv9-jp9x-c23m/GHSA-pjv9-jp9x-c23m.json b/advisories/unreviewed/2022/05/GHSA-pjv9-jp9x-c23m/GHSA-pjv9-jp9x-c23m.json index 4e7b00db08b..fe13edf5f5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjv9-jp9x-c23m/GHSA-pjv9-jp9x-c23m.json +++ b/advisories/unreviewed/2022/05/GHSA-pjv9-jp9x-c23m/GHSA-pjv9-jp9x-c23m.json @@ -7,12 +7,8 @@ "CVE-2018-21115" ], "details": "NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmfh-pqqv-q8ww/GHSA-pmfh-pqqv-q8ww.json b/advisories/unreviewed/2022/05/GHSA-pmfh-pqqv-q8ww/GHSA-pmfh-pqqv-q8ww.json index 6a12b3dc64f..c7f805c890e 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmfh-pqqv-q8ww/GHSA-pmfh-pqqv-q8ww.json +++ b/advisories/unreviewed/2022/05/GHSA-pmfh-pqqv-q8ww/GHSA-pmfh-pqqv-q8ww.json @@ -7,12 +7,8 @@ "CVE-2020-2813" ], "details": "Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: KB Search). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Email Center, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Email Center accessible data as well as unauthorized update, insert or delete access to some of Oracle Email Center accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pp3r-96j3-85hh/GHSA-pp3r-96j3-85hh.json b/advisories/unreviewed/2022/05/GHSA-pp3r-96j3-85hh/GHSA-pp3r-96j3-85hh.json index 3ee75668e17..6a62d91c432 100644 --- a/advisories/unreviewed/2022/05/GHSA-pp3r-96j3-85hh/GHSA-pp3r-96j3-85hh.json +++ b/advisories/unreviewed/2022/05/GHSA-pp3r-96j3-85hh/GHSA-pp3r-96j3-85hh.json @@ -7,12 +7,8 @@ "CVE-2020-2864" ], "details": "Vulnerability in the Oracle iSupplier Portal product of Oracle E-Business Suite (component: Accounts). Supported versions that are affected are 12.1.3 and 12.2.5-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupplier Portal. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle iSupplier Portal accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppc7-r3c2-6p3q/GHSA-ppc7-r3c2-6p3q.json b/advisories/unreviewed/2022/05/GHSA-ppc7-r3c2-6p3q/GHSA-ppc7-r3c2-6p3q.json index c0c78aaa020..24675362b35 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppc7-r3c2-6p3q/GHSA-ppc7-r3c2-6p3q.json +++ b/advisories/unreviewed/2022/05/GHSA-ppc7-r3c2-6p3q/GHSA-ppc7-r3c2-6p3q.json @@ -7,12 +7,8 @@ "CVE-2017-18797" ], "details": "Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects R6400 before 1.0.1.24, R7900 before 1.0.1.18, R8000 before 1.0.3.54, and R8500 before 1.0.2.100.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq82-hmr3-5jpv/GHSA-pq82-hmr3-5jpv.json b/advisories/unreviewed/2022/05/GHSA-pq82-hmr3-5jpv/GHSA-pq82-hmr3-5jpv.json index d72c9e61f9a..db1cc4e9996 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq82-hmr3-5jpv/GHSA-pq82-hmr3-5jpv.json +++ b/advisories/unreviewed/2022/05/GHSA-pq82-hmr3-5jpv/GHSA-pq82-hmr3-5jpv.json @@ -7,12 +7,8 @@ "CVE-2017-18826" ], "details": "Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq95-gj94-4r5p/GHSA-pq95-gj94-4r5p.json b/advisories/unreviewed/2022/05/GHSA-pq95-gj94-4r5p/GHSA-pq95-gj94-4r5p.json index 4601032e296..d2379fac551 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq95-gj94-4r5p/GHSA-pq95-gj94-4r5p.json +++ b/advisories/unreviewed/2022/05/GHSA-pq95-gj94-4r5p/GHSA-pq95-gj94-4r5p.json @@ -7,12 +7,8 @@ "CVE-2019-20780" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. Certain security settings, related to whether packages are verified and accepted only from known sources, are mishandled. The LG ID is LVE-SMP-190002 (April 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqrp-q5rh-86qx/GHSA-pqrp-q5rh-86qx.json b/advisories/unreviewed/2022/05/GHSA-pqrp-q5rh-86qx/GHSA-pqrp-q5rh-86qx.json index 9bc9c542686..947e574c96f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqrp-q5rh-86qx/GHSA-pqrp-q5rh-86qx.json +++ b/advisories/unreviewed/2022/05/GHSA-pqrp-q5rh-86qx/GHSA-pqrp-q5rh-86qx.json @@ -7,12 +7,8 @@ "CVE-2020-2939" ], "details": "Vulnerability in the Oracle Financial Services Asset Liability Management product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 and 8.0.7. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Asset Liability Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Asset Liability Management accessible data as well as unauthorized read access to a subset of Oracle Financial Services Asset Liability Management accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pwr4-4q52-jj45/GHSA-pwr4-4q52-jj45.json b/advisories/unreviewed/2022/05/GHSA-pwr4-4q52-jj45/GHSA-pwr4-4q52-jj45.json index 52de9f4ed9c..d3b8d188c49 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwr4-4q52-jj45/GHSA-pwr4-4q52-jj45.json +++ b/advisories/unreviewed/2022/05/GHSA-pwr4-4q52-jj45/GHSA-pwr4-4q52-jj45.json @@ -7,12 +7,8 @@ "CVE-2017-18852" ], "details": "Certain NETGEAR devices are affected by CSRF and authentication bypass. This affects R7300DST before 1.0.0.54, R8300 before 1.0.2.100_1.0.82, R8500 before 1.0.2.100_1.0.82, and WNDR3400v3 before 1.0.1.14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pwvj-86cg-mpr2/GHSA-pwvj-86cg-mpr2.json b/advisories/unreviewed/2022/05/GHSA-pwvj-86cg-mpr2/GHSA-pwvj-86cg-mpr2.json index bd4e05604dc..df71b86c48b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwvj-86cg-mpr2/GHSA-pwvj-86cg-mpr2.json +++ b/advisories/unreviewed/2022/05/GHSA-pwvj-86cg-mpr2/GHSA-pwvj-86cg-mpr2.json @@ -7,12 +7,8 @@ "CVE-2020-7085" ], "details": "A heap overflow vulnerability in the Autodesk FBX-SDK versions 2019.2 and earlier may lead to arbitrary code execution on a system running it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pww2-wm88-cp3p/GHSA-pww2-wm88-cp3p.json b/advisories/unreviewed/2022/05/GHSA-pww2-wm88-cp3p/GHSA-pww2-wm88-cp3p.json index 5a3eb16c242..d4104bbfb0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pww2-wm88-cp3p/GHSA-pww2-wm88-cp3p.json +++ b/advisories/unreviewed/2022/05/GHSA-pww2-wm88-cp3p/GHSA-pww2-wm88-cp3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-px39-46h2-2hqq/GHSA-px39-46h2-2hqq.json b/advisories/unreviewed/2022/05/GHSA-px39-46h2-2hqq/GHSA-px39-46h2-2hqq.json index a9661109309..9d1e839ce16 100644 --- a/advisories/unreviewed/2022/05/GHSA-px39-46h2-2hqq/GHSA-px39-46h2-2hqq.json +++ b/advisories/unreviewed/2022/05/GHSA-px39-46h2-2hqq/GHSA-px39-46h2-2hqq.json @@ -7,12 +7,8 @@ "CVE-2019-20699" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects GS105Ev2 before 1.6.0.4, GS105PE before 1.6.0.4, GS408EPP before 1.0.0.15, GS808E before 1.7.0.7, GS908E before 1.7.0.3, GSS108E before 1.6.0.4, and GSS108EPP before 1.0.0.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-px4x-42rw-7qmg/GHSA-px4x-42rw-7qmg.json b/advisories/unreviewed/2022/05/GHSA-px4x-42rw-7qmg/GHSA-px4x-42rw-7qmg.json index 93b0b451ccf..329a763286e 100644 --- a/advisories/unreviewed/2022/05/GHSA-px4x-42rw-7qmg/GHSA-px4x-42rw-7qmg.json +++ b/advisories/unreviewed/2022/05/GHSA-px4x-42rw-7qmg/GHSA-px4x-42rw-7qmg.json @@ -7,12 +7,8 @@ "CVE-2017-18798" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, D7000 before 1.0.1.50, and D1500 before 1.0.0.25.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2fx-gcj5-2r88/GHSA-q2fx-gcj5-2r88.json b/advisories/unreviewed/2022/05/GHSA-q2fx-gcj5-2r88/GHSA-q2fx-gcj5-2r88.json index 113e630943b..c90ce8577b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2fx-gcj5-2r88/GHSA-q2fx-gcj5-2r88.json +++ b/advisories/unreviewed/2022/05/GHSA-q2fx-gcj5-2r88/GHSA-q2fx-gcj5-2r88.json @@ -7,12 +7,8 @@ "CVE-2017-18837" ], "details": "Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2rf-82ch-fpf3/GHSA-q2rf-82ch-fpf3.json b/advisories/unreviewed/2022/05/GHSA-q2rf-82ch-fpf3/GHSA-q2rf-82ch-fpf3.json index 6d45018b153..442b94a4ee9 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2rf-82ch-fpf3/GHSA-q2rf-82ch-fpf3.json +++ b/advisories/unreviewed/2022/05/GHSA-q2rf-82ch-fpf3/GHSA-q2rf-82ch-fpf3.json @@ -7,12 +7,8 @@ "CVE-2020-7273" ], "details": "Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endpoint Security (ENS) for Windows Prior to 10.7.0 April 2020 Update allows local users to delete or rename programs in the autorun key via manipulation of some parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q43f-hqc8-97vg/GHSA-q43f-hqc8-97vg.json b/advisories/unreviewed/2022/05/GHSA-q43f-hqc8-97vg/GHSA-q43f-hqc8-97vg.json index cff8951a493..8b3a697f69a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q43f-hqc8-97vg/GHSA-q43f-hqc8-97vg.json +++ b/advisories/unreviewed/2022/05/GHSA-q43f-hqc8-97vg/GHSA-q43f-hqc8-97vg.json @@ -7,12 +7,8 @@ "CVE-2017-18768" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects EX6100 before 1.0.2.16_1.1.130, EX6100v2 before 1.0.1.70, EX6150v2 before 1.0.1.54, EX6200v2 before 1.0.1.50, EX6400 before 1.0.1.60, EX7300 before 1.0.1.60, and WN3000RPv3 before 1.0.2.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4fr-rpgm-w8gm/GHSA-q4fr-rpgm-w8gm.json b/advisories/unreviewed/2022/05/GHSA-q4fr-rpgm-w8gm/GHSA-q4fr-rpgm-w8gm.json index 6693f8060a9..1fd5b3f8400 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4fr-rpgm-w8gm/GHSA-q4fr-rpgm-w8gm.json +++ b/advisories/unreviewed/2022/05/GHSA-q4fr-rpgm-w8gm/GHSA-q4fr-rpgm-w8gm.json @@ -7,12 +7,8 @@ "CVE-2020-3932" ], "details": "A vulnerable SNMP in Draytek VigorAP910C cannot be disabled, which may cause information leakage.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4h3-8jhm-mq6c/GHSA-q4h3-8jhm-mq6c.json b/advisories/unreviewed/2022/05/GHSA-q4h3-8jhm-mq6c/GHSA-q4h3-8jhm-mq6c.json index 4369dbd3fc9..ff5374c3d9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4h3-8jhm-mq6c/GHSA-q4h3-8jhm-mq6c.json +++ b/advisories/unreviewed/2022/05/GHSA-q4h3-8jhm-mq6c/GHSA-q4h3-8jhm-mq6c.json @@ -7,12 +7,8 @@ "CVE-2017-18804" ], "details": "Certain NETGEAR devices are affected by command injection. This affects R7800 before 1.0.2.16 and R9000 before 1.0.2.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4jj-29vv-j9rw/GHSA-q4jj-29vv-j9rw.json b/advisories/unreviewed/2022/05/GHSA-q4jj-29vv-j9rw/GHSA-q4jj-29vv-j9rw.json index 3771ae83806..61cb90dd453 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4jj-29vv-j9rw/GHSA-q4jj-29vv-j9rw.json +++ b/advisories/unreviewed/2022/05/GHSA-q4jj-29vv-j9rw/GHSA-q4jj-29vv-j9rw.json @@ -7,12 +7,8 @@ "CVE-2020-2845" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q5cg-2988-52xm/GHSA-q5cg-2988-52xm.json b/advisories/unreviewed/2022/05/GHSA-q5cg-2988-52xm/GHSA-q5cg-2988-52xm.json index cd90040c798..0d1b1f1bace 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5cg-2988-52xm/GHSA-q5cg-2988-52xm.json +++ b/advisories/unreviewed/2022/05/GHSA-q5cg-2988-52xm/GHSA-q5cg-2988-52xm.json @@ -7,12 +7,8 @@ "CVE-2019-20696" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WAC505 before V5.6.8.3 and WAC510 before V5.6.8.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5p4-cr98-99w2/GHSA-q5p4-cr98-99w2.json b/advisories/unreviewed/2022/05/GHSA-q5p4-cr98-99w2/GHSA-q5p4-cr98-99w2.json index 0cc327a756b..364284a9b90 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5p4-cr98-99w2/GHSA-q5p4-cr98-99w2.json +++ b/advisories/unreviewed/2022/05/GHSA-q5p4-cr98-99w2/GHSA-q5p4-cr98-99w2.json @@ -7,12 +7,8 @@ "CVE-2020-0070" ], "details": "In rw_t2t_update_lock_attributes of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-148159613", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6g3-jqvg-wvmq/GHSA-q6g3-jqvg-wvmq.json b/advisories/unreviewed/2022/05/GHSA-q6g3-jqvg-wvmq/GHSA-q6g3-jqvg-wvmq.json index 7d4f0cab37e..9c5ff2efea5 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6g3-jqvg-wvmq/GHSA-q6g3-jqvg-wvmq.json +++ b/advisories/unreviewed/2022/05/GHSA-q6g3-jqvg-wvmq/GHSA-q6g3-jqvg-wvmq.json @@ -7,12 +7,8 @@ "CVE-2020-0958" ], "details": "An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0956, CVE-2020-0957.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7f3-6hm8-23cp/GHSA-q7f3-6hm8-23cp.json b/advisories/unreviewed/2022/05/GHSA-q7f3-6hm8-23cp/GHSA-q7f3-6hm8-23cp.json index 77c8dcf3c6b..e66c3ae0076 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7f3-6hm8-23cp/GHSA-q7f3-6hm8-23cp.json +++ b/advisories/unreviewed/2022/05/GHSA-q7f3-6hm8-23cp/GHSA-q7f3-6hm8-23cp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7g3-x679-vpwf/GHSA-q7g3-x679-vpwf.json b/advisories/unreviewed/2022/05/GHSA-q7g3-x679-vpwf/GHSA-q7g3-x679-vpwf.json index e3caa657687..d038f5911f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7g3-x679-vpwf/GHSA-q7g3-x679-vpwf.json +++ b/advisories/unreviewed/2022/05/GHSA-q7g3-x679-vpwf/GHSA-q7g3-x679-vpwf.json @@ -7,12 +7,8 @@ "CVE-2020-2797" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Process Scheduler). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7h5-gg5c-c3pj/GHSA-q7h5-gg5c-c3pj.json b/advisories/unreviewed/2022/05/GHSA-q7h5-gg5c-c3pj/GHSA-q7h5-gg5c-c3pj.json index 107df0be40d..77e4d9976fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7h5-gg5c-c3pj/GHSA-q7h5-gg5c-c3pj.json +++ b/advisories/unreviewed/2022/05/GHSA-q7h5-gg5c-c3pj/GHSA-q7h5-gg5c-c3pj.json @@ -7,12 +7,8 @@ "CVE-2020-0080" ], "details": "In onOpActiveChanged and related methods of AppOpsControllerImpl.java, there is a possible way to display an app overlaying other apps without the notification icon that it's overlaying. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-144092031", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7pw-pfcw-v5m9/GHSA-q7pw-pfcw-v5m9.json b/advisories/unreviewed/2022/05/GHSA-q7pw-pfcw-v5m9/GHSA-q7pw-pfcw-v5m9.json index 21155ef2d13..fde7c5585df 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7pw-pfcw-v5m9/GHSA-q7pw-pfcw-v5m9.json +++ b/advisories/unreviewed/2022/05/GHSA-q7pw-pfcw-v5m9/GHSA-q7pw-pfcw-v5m9.json @@ -7,12 +7,8 @@ "CVE-2020-2897" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8gg-8cmf-8w9m/GHSA-q8gg-8cmf-8w9m.json b/advisories/unreviewed/2022/05/GHSA-q8gg-8cmf-8w9m/GHSA-q8gg-8cmf-8w9m.json index 51d1d2b7238..90ccd348389 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8gg-8cmf-8w9m/GHSA-q8gg-8cmf-8w9m.json +++ b/advisories/unreviewed/2022/05/GHSA-q8gg-8cmf-8w9m/GHSA-q8gg-8cmf-8w9m.json @@ -7,12 +7,8 @@ "CVE-2017-18802" ], "details": "Certain NETGEAR devices are affected by command injection. This affects R6100 before 1.0.1.14, R7500 before 1.0.0.110, R7500v2 before 1.0.3.16, R7800 before 1.0.2.32, EX6200v2 before 1.0.1.50, and D7800 before 1.0.1.22.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8jq-xc6q-f8gw/GHSA-q8jq-xc6q-f8gw.json b/advisories/unreviewed/2022/05/GHSA-q8jq-xc6q-f8gw/GHSA-q8jq-xc6q-f8gw.json index ad2abc823f1..e9c43390ad3 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8jq-xc6q-f8gw/GHSA-q8jq-xc6q-f8gw.json +++ b/advisories/unreviewed/2022/05/GHSA-q8jq-xc6q-f8gw/GHSA-q8jq-xc6q-f8gw.json @@ -7,12 +7,8 @@ "CVE-2019-14018" ], "details": "Possible out of bound array access as there is no check on carrier index passed in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qcf5-r7vw-m375/GHSA-qcf5-r7vw-m375.json b/advisories/unreviewed/2022/05/GHSA-qcf5-r7vw-m375/GHSA-qcf5-r7vw-m375.json index bfd6403c326..b61c05ee128 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcf5-r7vw-m375/GHSA-qcf5-r7vw-m375.json +++ b/advisories/unreviewed/2022/05/GHSA-qcf5-r7vw-m375/GHSA-qcf5-r7vw-m375.json @@ -7,12 +7,8 @@ "CVE-2020-4277" ], "details": "IBM TRIRIGA Application Platform 3.5.3 and 3.6.1 discloses sensitive information in error messages that could aid an attacker formulate future attacks. IBM X-Force ID: 175993.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qcjj-g4c3-q7f2/GHSA-qcjj-g4c3-q7f2.json b/advisories/unreviewed/2022/05/GHSA-qcjj-g4c3-q7f2/GHSA-qcjj-g4c3-q7f2.json index bab1c0769a7..11f1e68fb42 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcjj-g4c3-q7f2/GHSA-qcjj-g4c3-q7f2.json +++ b/advisories/unreviewed/2022/05/GHSA-qcjj-g4c3-q7f2/GHSA-qcjj-g4c3-q7f2.json @@ -7,12 +7,8 @@ "CVE-2020-2838" ], "details": "Vulnerability in the Oracle CRM Gateway for Mobile Devices product of Oracle E-Business Suite (component: Setup of Mobile Applications). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Gateway for Mobile Devices. While the vulnerability is in Oracle CRM Gateway for Mobile Devices, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Gateway for Mobile Devices accessible data. CVSS 3.0 Base Score 8.6 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qff6-q69c-q2gg/GHSA-qff6-q69c-q2gg.json b/advisories/unreviewed/2022/05/GHSA-qff6-q69c-q2gg/GHSA-qff6-q69c-q2gg.json index cfedc5d5722..7a502c8505a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qff6-q69c-q2gg/GHSA-qff6-q69c-q2gg.json +++ b/advisories/unreviewed/2022/05/GHSA-qff6-q69c-q2gg/GHSA-qff6-q69c-q2gg.json @@ -7,12 +7,8 @@ "CVE-2020-2837" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qg5v-4mmw-68cp/GHSA-qg5v-4mmw-68cp.json b/advisories/unreviewed/2022/05/GHSA-qg5v-4mmw-68cp/GHSA-qg5v-4mmw-68cp.json index 86985ed16ad..e9b01d36d6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg5v-4mmw-68cp/GHSA-qg5v-4mmw-68cp.json +++ b/advisories/unreviewed/2022/05/GHSA-qg5v-4mmw-68cp/GHSA-qg5v-4mmw-68cp.json @@ -7,12 +7,8 @@ "CVE-2020-7080" ], "details": "A buffer overflow vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to arbitrary code execution on a system running it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qh93-4h58-j8h6/GHSA-qh93-4h58-j8h6.json b/advisories/unreviewed/2022/05/GHSA-qh93-4h58-j8h6/GHSA-qh93-4h58-j8h6.json index 54e5ab3dc5b..9bbdf3b49ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-qh93-4h58-j8h6/GHSA-qh93-4h58-j8h6.json +++ b/advisories/unreviewed/2022/05/GHSA-qh93-4h58-j8h6/GHSA-qh93-4h58-j8h6.json @@ -7,12 +7,8 @@ "CVE-2019-20729" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects JNDR3000 before 1.0.0.22, R6250 before 1.0.4.26, R6300v2 before 1.0.4.22, R6400 before 1.0.1.36, R6400v2 before 1.0.2.52, R6700 before 1.0.1.44, R6900 before 1.0.1.44, R7000 before 1.0.9.28, R6900P before 1.3.1.26, R7000P before 1.3.1.26, R7300DST before 1.0.0.62, R7900 before 1.0.2.16, R8000 before 1.0.4.18, R7900P before 1.4.1.42, R8000P before 1.4.1.42, R8300 before 1.0.2.116, R8500 before 1.0.2.116, WNDR3400v3 before 1.0.1.18, WNDR4500v2 before 1.0.0.68, and WNR3500Lv2 before 1.2.0.48.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhc4-4fcq-jv7q/GHSA-qhc4-4fcq-jv7q.json b/advisories/unreviewed/2022/05/GHSA-qhc4-4fcq-jv7q/GHSA-qhc4-4fcq-jv7q.json index a0bba6cfe0f..b9be15f3467 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhc4-4fcq-jv7q/GHSA-qhc4-4fcq-jv7q.json +++ b/advisories/unreviewed/2022/05/GHSA-qhc4-4fcq-jv7q/GHSA-qhc4-4fcq-jv7q.json @@ -7,12 +7,8 @@ "CVE-2019-20775" ], "details": "An issue was discovered on LG mobile devices with Android OS 9.0 (Qualcomm SDM450, SDM845, SM6150, and SM8150 chipsets) software. Weak encryption leads to local information disclosure. The LG ID is LVE-SMP-190010 (August 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhp9-jj2m-362w/GHSA-qhp9-jj2m-362w.json b/advisories/unreviewed/2022/05/GHSA-qhp9-jj2m-362w/GHSA-qhp9-jj2m-362w.json index d3882cef061..73a58138bb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhp9-jj2m-362w/GHSA-qhp9-jj2m-362w.json +++ b/advisories/unreviewed/2022/05/GHSA-qhp9-jj2m-362w/GHSA-qhp9-jj2m-362w.json @@ -7,12 +7,8 @@ "CVE-2020-2820" ], "details": "Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Notes). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Common Applications Calendar. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Common Applications Calendar, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Common Applications Calendar accessible data as well as unauthorized update, insert or delete access to some of Oracle Common Applications Calendar accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qhw5-55vv-fxcp/GHSA-qhw5-55vv-fxcp.json b/advisories/unreviewed/2022/05/GHSA-qhw5-55vv-fxcp/GHSA-qhw5-55vv-fxcp.json index 17c8b09b7e3..77a3f23b5df 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhw5-55vv-fxcp/GHSA-qhw5-55vv-fxcp.json +++ b/advisories/unreviewed/2022/05/GHSA-qhw5-55vv-fxcp/GHSA-qhw5-55vv-fxcp.json @@ -7,12 +7,8 @@ "CVE-2020-7110" ], "details": "ClearPass is vulnerable to Stored Cross Site Scripting by allowing a malicious administrator, or a compromised administrator account, to save malicious scripts within ClearPass that could be executed resulting in a privilege escalation attack. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qjj8-cxhj-v73f/GHSA-qjj8-cxhj-v73f.json b/advisories/unreviewed/2022/05/GHSA-qjj8-cxhj-v73f/GHSA-qjj8-cxhj-v73f.json index 75203931f97..603a29f7542 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjj8-cxhj-v73f/GHSA-qjj8-cxhj-v73f.json +++ b/advisories/unreviewed/2022/05/GHSA-qjj8-cxhj-v73f/GHSA-qjj8-cxhj-v73f.json @@ -7,12 +7,8 @@ "CVE-2020-2941" ], "details": "Vulnerability in the Oracle Financial Services Funds Transfer Pricing product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 and 8.0.7. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Funds Transfer Pricing. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Funds Transfer Pricing accessible data as well as unauthorized read access to a subset of Oracle Financial Services Funds Transfer Pricing accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qjv9-4w7c-6vhq/GHSA-qjv9-4w7c-6vhq.json b/advisories/unreviewed/2022/05/GHSA-qjv9-4w7c-6vhq/GHSA-qjv9-4w7c-6vhq.json index 167d22774ac..80e9e6ec639 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjv9-4w7c-6vhq/GHSA-qjv9-4w7c-6vhq.json +++ b/advisories/unreviewed/2022/05/GHSA-qjv9-4w7c-6vhq/GHSA-qjv9-4w7c-6vhq.json @@ -7,12 +7,8 @@ "CVE-2020-0075" ], "details": "In set_shared_key of the FPC IRIS TrustZone app, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-146057864", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qm5p-2mv2-7jv5/GHSA-qm5p-2mv2-7jv5.json b/advisories/unreviewed/2022/05/GHSA-qm5p-2mv2-7jv5/GHSA-qm5p-2mv2-7jv5.json index 6c56a50231b..c548da8be65 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm5p-2mv2-7jv5/GHSA-qm5p-2mv2-7jv5.json +++ b/advisories/unreviewed/2022/05/GHSA-qm5p-2mv2-7jv5/GHSA-qm5p-2mv2-7jv5.json @@ -7,12 +7,8 @@ "CVE-2019-19394" ], "details": "Northern.tech CFEngine Enterprise before 3.10.7, 3.11.x and 3.12.x before 3.12.3, 3.13.x, and 3.14.x allows XSS. This is fixed in 3.10.7, 3.12.3, and 3.15.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmv7-5rj3-38m7/GHSA-qmv7-5rj3-38m7.json b/advisories/unreviewed/2022/05/GHSA-qmv7-5rj3-38m7/GHSA-qmv7-5rj3-38m7.json index 012e838c72a..a3e7200b6d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmv7-5rj3-38m7/GHSA-qmv7-5rj3-38m7.json +++ b/advisories/unreviewed/2022/05/GHSA-qmv7-5rj3-38m7/GHSA-qmv7-5rj3-38m7.json @@ -7,12 +7,8 @@ "CVE-2017-18780" ], "details": "Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R6800 before 1.2.0.12, R6900v2 before 1.2.0.12, WNDR3700v5 before 1.1.0.50, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qp9r-gj7p-4862/GHSA-qp9r-gj7p-4862.json b/advisories/unreviewed/2022/05/GHSA-qp9r-gj7p-4862/GHSA-qp9r-gj7p-4862.json index 84d76f7bd64..4d96f8c0456 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp9r-gj7p-4862/GHSA-qp9r-gj7p-4862.json +++ b/advisories/unreviewed/2022/05/GHSA-qp9r-gj7p-4862/GHSA-qp9r-gj7p-4862.json @@ -7,12 +7,8 @@ "CVE-2019-11999" ], "details": "Potential security vulnerabilities have been identified in HPE OpenCall Media Platform (OCMP) resulting in remote arbitrary file download and cross site scripting. HPE has made the following updates available to resolve the vulnerability in the impacted versions of OCMP. * For OCMP version 4.4.X - please upgrade to OCMP 4.4.8 and then install RP806 * For OCMP 4.5.x please contact HPE Technical Support to obtain the necessary software updates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qpm6-5778-wjjq/GHSA-qpm6-5778-wjjq.json b/advisories/unreviewed/2022/05/GHSA-qpm6-5778-wjjq/GHSA-qpm6-5778-wjjq.json index 88c1a8ec47b..25794e3360f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpm6-5778-wjjq/GHSA-qpm6-5778-wjjq.json +++ b/advisories/unreviewed/2022/05/GHSA-qpm6-5778-wjjq/GHSA-qpm6-5778-wjjq.json @@ -7,12 +7,8 @@ "CVE-2017-18824" ], "details": "Certain NETGEAR devices are affected by directory traversal. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqc9-822v-wvjh/GHSA-qqc9-822v-wvjh.json b/advisories/unreviewed/2022/05/GHSA-qqc9-822v-wvjh/GHSA-qqc9-822v-wvjh.json index 26c1c5f6398..09591bae494 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqc9-822v-wvjh/GHSA-qqc9-822v-wvjh.json +++ b/advisories/unreviewed/2022/05/GHSA-qqc9-822v-wvjh/GHSA-qqc9-822v-wvjh.json @@ -7,12 +7,8 @@ "CVE-2020-2943" ], "details": "Vulnerability in the Oracle Financial Services Liquidity Risk Measurement and Management product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.7 and 8.0.8. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Liquidity Risk Measurement and Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Liquidity Risk Measurement and Management accessible data as well as unauthorized read access to a subset of Oracle Financial Services Liquidity Risk Measurement and Management accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqhr-68c9-jq8w/GHSA-qqhr-68c9-jq8w.json b/advisories/unreviewed/2022/05/GHSA-qqhr-68c9-jq8w/GHSA-qqhr-68c9-jq8w.json index b5727930dc7..cfd2a07312d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqhr-68c9-jq8w/GHSA-qqhr-68c9-jq8w.json +++ b/advisories/unreviewed/2022/05/GHSA-qqhr-68c9-jq8w/GHSA-qqhr-68c9-jq8w.json @@ -7,12 +7,8 @@ "CVE-2020-2876" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqhw-hqj9-7pv5/GHSA-qqhw-hqj9-7pv5.json b/advisories/unreviewed/2022/05/GHSA-qqhw-hqj9-7pv5/GHSA-qqhw-hqj9-7pv5.json index e21499dbde7..038a13ec330 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqhw-hqj9-7pv5/GHSA-qqhw-hqj9-7pv5.json +++ b/advisories/unreviewed/2022/05/GHSA-qqhw-hqj9-7pv5/GHSA-qqhw-hqj9-7pv5.json @@ -7,12 +7,8 @@ "CVE-2017-18764" ], "details": "Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D6100 before 1.0.0.55, D7000 before 1.0.1.50, D7800 before 1.0.1.28, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.10, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.18, R6050 before 1.0.1.10, R6100 before 1.0.1.14, R6120 before 1.0.0.30, R6220 before 1.1.0.50, R6700v2 before 1.2.0.4, R6800 before 1.2.0.4, R6900v2 before 1.2.0.4, R7500 before 1.0.0.110, R7500v2 before 1.0.3.20, R7800 before 1.0.2.36, R9000 before 1.0.2.52, WN3000RPv3 before 1.0.2.50, WNDR3700v4 before 1.0.2.88, WNDR3700v5 before 1.1.0.48, WNDR4300v1 before 1.0.2.90, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, WNR1000v4 before 1.1.0.44, WNR2000v5 before 1.0.0.58, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqqg-w8xg-6985/GHSA-qqqg-w8xg-6985.json b/advisories/unreviewed/2022/05/GHSA-qqqg-w8xg-6985/GHSA-qqqg-w8xg-6985.json index ee00f52bd1b..1206f90cc8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqqg-w8xg-6985/GHSA-qqqg-w8xg-6985.json +++ b/advisories/unreviewed/2022/05/GHSA-qqqg-w8xg-6985/GHSA-qqqg-w8xg-6985.json @@ -7,12 +7,8 @@ "CVE-2019-20731" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000v2 before 1.0.0.74, D8500 before 1.0.3.39, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.22, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, R6250 before 1.0.4.20, R6300v2 before 1.0.4.18, R6400v2 before 1.0.2.52, R6700 before 1.0.1.44, R6900 before 1.0.1.46, R7000 before 1.0.9.26, R6900P before 1.3.0.20, R7000P before 1.3.0.20, R7100LG before 1.0.0.34, R7300DST before 1.0.0.62, R8000 before 1.0.4.12, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.116, R8500 before 1.0.2.116, WN2500RPv2 before 1.0.1.54, and WNDR3400v3 before 1.0.1.18.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqvc-2cgm-c3hw/GHSA-qqvc-2cgm-c3hw.json b/advisories/unreviewed/2022/05/GHSA-qqvc-2cgm-c3hw/GHSA-qqvc-2cgm-c3hw.json index d4007d64ea3..40dc800782c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqvc-2cgm-c3hw/GHSA-qqvc-2cgm-c3hw.json +++ b/advisories/unreviewed/2022/05/GHSA-qqvc-2cgm-c3hw/GHSA-qqvc-2cgm-c3hw.json @@ -7,12 +7,8 @@ "CVE-2019-20689" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6000 before 1.0.0.75, D6100 before 1.0.0.63, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3100RPv2 before 1.0.0.60, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qr3r-xgjr-g75m/GHSA-qr3r-xgjr-g75m.json b/advisories/unreviewed/2022/05/GHSA-qr3r-xgjr-g75m/GHSA-qr3r-xgjr-g75m.json index b2ad26011c6..955e8f11821 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr3r-xgjr-g75m/GHSA-qr3r-xgjr-g75m.json +++ b/advisories/unreviewed/2022/05/GHSA-qr3r-xgjr-g75m/GHSA-qr3r-xgjr-g75m.json @@ -7,12 +7,8 @@ "CVE-2018-21118" ], "details": "NETGEAR XR500 devices before 2.3.2.32 are affected by authentication bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qr3v-p7wc-vxr8/GHSA-qr3v-p7wc-vxr8.json b/advisories/unreviewed/2022/05/GHSA-qr3v-p7wc-vxr8/GHSA-qr3v-p7wc-vxr8.json index f1cf2898a26..8739ac655b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr3v-p7wc-vxr8/GHSA-qr3v-p7wc-vxr8.json +++ b/advisories/unreviewed/2022/05/GHSA-qr3v-p7wc-vxr8/GHSA-qr3v-p7wc-vxr8.json @@ -7,12 +7,8 @@ "CVE-2020-2924" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qrmx-r457-p377/GHSA-qrmx-r457-p377.json b/advisories/unreviewed/2022/05/GHSA-qrmx-r457-p377/GHSA-qrmx-r457-p377.json index 31ab9597f3c..ed90cab3b8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrmx-r457-p377/GHSA-qrmx-r457-p377.json +++ b/advisories/unreviewed/2022/05/GHSA-qrmx-r457-p377/GHSA-qrmx-r457-p377.json @@ -7,12 +7,8 @@ "CVE-2020-2877" ], "details": "Vulnerability in the Oracle Partner Management product of Oracle E-Business Suite (component: Attribute Admin Setup). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Partner Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Partner Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Partner Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Partner Management accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qvpq-4365-gf49/GHSA-qvpq-4365-gf49.json b/advisories/unreviewed/2022/05/GHSA-qvpq-4365-gf49/GHSA-qvpq-4365-gf49.json index 893b8375276..0bc51522b5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvpq-4365-gf49/GHSA-qvpq-4365-gf49.json +++ b/advisories/unreviewed/2022/05/GHSA-qvpq-4365-gf49/GHSA-qvpq-4365-gf49.json @@ -7,12 +7,8 @@ "CVE-2020-2825" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qvqp-rgwq-w6mc/GHSA-qvqp-rgwq-w6mc.json b/advisories/unreviewed/2022/05/GHSA-qvqp-rgwq-w6mc/GHSA-qvqp-rgwq-w6mc.json index 175e7bb6be8..476ebc69629 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvqp-rgwq-w6mc/GHSA-qvqp-rgwq-w6mc.json +++ b/advisories/unreviewed/2022/05/GHSA-qvqp-rgwq-w6mc/GHSA-qvqp-rgwq-w6mc.json @@ -7,12 +7,8 @@ "CVE-2020-2794" ], "details": "Vulnerability in the Oracle Email Center product of Oracle E-Business Suite (component: Email Address list and Message Display). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Email Center. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Email Center, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Email Center accessible data as well as unauthorized update, insert or delete access to some of Oracle Email Center accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qwp9-wc7v-7pg4/GHSA-qwp9-wc7v-7pg4.json b/advisories/unreviewed/2022/05/GHSA-qwp9-wc7v-7pg4/GHSA-qwp9-wc7v-7pg4.json index 73645c91d92..246e524e5de 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwp9-wc7v-7pg4/GHSA-qwp9-wc7v-7pg4.json +++ b/advisories/unreviewed/2022/05/GHSA-qwp9-wc7v-7pg4/GHSA-qwp9-wc7v-7pg4.json @@ -7,12 +7,8 @@ "CVE-2020-3162" ], "details": "A vulnerability in the Constrained Application Protocol (CoAP) implementation of Cisco IoT Field Network Director could allow an unauthenticated remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation of incoming CoAP traffic. An attacker could exploit this vulnerability by sending a malformed CoAP packet to an affected device. A successful exploit could allow the attacker to force the CoAP server to stop, interrupting communication to the IoT endpoints.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qx7p-pcrw-fhh5/GHSA-qx7p-pcrw-fhh5.json b/advisories/unreviewed/2022/05/GHSA-qx7p-pcrw-fhh5/GHSA-qx7p-pcrw-fhh5.json index 9ba5f687a6d..d800cbabe5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx7p-pcrw-fhh5/GHSA-qx7p-pcrw-fhh5.json +++ b/advisories/unreviewed/2022/05/GHSA-qx7p-pcrw-fhh5/GHSA-qx7p-pcrw-fhh5.json @@ -7,12 +7,8 @@ "CVE-2017-18777" ], "details": "Certain NETGEAR devices are affected by administrative password disclosure. This affects D6220 before V1.0.0.28, D6400 before V1.0.0.60, D8500 before V1.0.3.29, DGN2200v4 before 1.0.0.82, DGN2200Bv4 before 1.0.0.82, R6300v2 before 1.0.4.8, R6400 before 1.0.1.20, R6700 before 1.0.1.20, R6900 before 1.0.1.20, R7000 before 1.0.7.10, R7100LG before V1.0.0.32, R7300DST before 1.0.0.52, R7900 before 1.0.1.16, R8000 before 1.0.3.36, R8300 before 1.0.2.94, R8500 before 1.0.2.94, WNDR3400v3 before 1.0.1.12, and WNR3500Lv2 before 1.2.0.40.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2j8-359w-74xc/GHSA-r2j8-359w-74xc.json b/advisories/unreviewed/2022/05/GHSA-r2j8-359w-74xc/GHSA-r2j8-359w-74xc.json index 471e55712c6..980465b5549 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2j8-359w-74xc/GHSA-r2j8-359w-74xc.json +++ b/advisories/unreviewed/2022/05/GHSA-r2j8-359w-74xc/GHSA-r2j8-359w-74xc.json @@ -7,12 +7,8 @@ "CVE-2019-20695" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects SRK60 before 2.3.5.106, SRR60 before 2.3.5.106, and SRS60 before 2.3.5.106.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r33c-x62x-68pw/GHSA-r33c-x62x-68pw.json b/advisories/unreviewed/2022/05/GHSA-r33c-x62x-68pw/GHSA-r33c-x62x-68pw.json index 9ce8ad90b94..d92006142d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-r33c-x62x-68pw/GHSA-r33c-x62x-68pw.json +++ b/advisories/unreviewed/2022/05/GHSA-r33c-x62x-68pw/GHSA-r33c-x62x-68pw.json @@ -7,12 +7,8 @@ "CVE-2017-18766" ], "details": "Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects DST6501 before 1.1.0.6 and WNR2000v2 before 1.2.0.8.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r4j3-wp5r-ggj9/GHSA-r4j3-wp5r-ggj9.json b/advisories/unreviewed/2022/05/GHSA-r4j3-wp5r-ggj9/GHSA-r4j3-wp5r-ggj9.json index e7029cdab43..2d392bde34d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r4j3-wp5r-ggj9/GHSA-r4j3-wp5r-ggj9.json +++ b/advisories/unreviewed/2022/05/GHSA-r4j3-wp5r-ggj9/GHSA-r4j3-wp5r-ggj9.json @@ -7,12 +7,8 @@ "CVE-2019-20758" ], "details": "NETGEAR R7000 devices before 1.0.9.42 are affected by a buffer overflow by an authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5vv-f9v9-8r8w/GHSA-r5vv-f9v9-8r8w.json b/advisories/unreviewed/2022/05/GHSA-r5vv-f9v9-8r8w/GHSA-r5vv-f9v9-8r8w.json index c461e162e61..6a6f58125c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5vv-f9v9-8r8w/GHSA-r5vv-f9v9-8r8w.json +++ b/advisories/unreviewed/2022/05/GHSA-r5vv-f9v9-8r8w/GHSA-r5vv-f9v9-8r8w.json @@ -7,12 +7,8 @@ "CVE-2019-14110" ], "details": "Buffer overflow can occur in function wlan firmware while copying association frame content if frame length is more than the maximum buffer size in case of SAP mode in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA4531, QCA6174A, QCA6564, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS404, QCS405, QCS605, Rennell, SA6155P, SC7180, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r69f-q9p6-8j8j/GHSA-r69f-q9p6-8j8j.json b/advisories/unreviewed/2022/05/GHSA-r69f-q9p6-8j8j/GHSA-r69f-q9p6-8j8j.json index e07c11005f5..c20c99486c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r69f-q9p6-8j8j/GHSA-r69f-q9p6-8j8j.json +++ b/advisories/unreviewed/2022/05/GHSA-r69f-q9p6-8j8j/GHSA-r69f-q9p6-8j8j.json @@ -7,12 +7,8 @@ "CVE-2019-20698" ], "details": "Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WAC505 before 8.0.5.5 and WAC510 before 8.0.5.5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r725-cr62-vvc3/GHSA-r725-cr62-vvc3.json b/advisories/unreviewed/2022/05/GHSA-r725-cr62-vvc3/GHSA-r725-cr62-vvc3.json index 2318e966826..9c04978ccf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-r725-cr62-vvc3/GHSA-r725-cr62-vvc3.json +++ b/advisories/unreviewed/2022/05/GHSA-r725-cr62-vvc3/GHSA-r725-cr62-vvc3.json @@ -7,12 +7,8 @@ "CVE-2019-4327" ], "details": "\"HCL AppScan Enterprise uses hard-coded credentials which can be exploited by attackers to get unauthorized access to application's encrypted files.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r729-qp33-j5c6/GHSA-r729-qp33-j5c6.json b/advisories/unreviewed/2022/05/GHSA-r729-qp33-j5c6/GHSA-r729-qp33-j5c6.json index 51e6d68c8c9..156cf15632d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r729-qp33-j5c6/GHSA-r729-qp33-j5c6.json +++ b/advisories/unreviewed/2022/05/GHSA-r729-qp33-j5c6/GHSA-r729-qp33-j5c6.json @@ -7,12 +7,8 @@ "CVE-2020-2868" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Diagnostic Framework). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7vv-r4jh-cvgj/GHSA-r7vv-r4jh-cvgj.json b/advisories/unreviewed/2022/05/GHSA-r7vv-r4jh-cvgj/GHSA-r7vv-r4jh-cvgj.json index 18ae4cea235..729e49349ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7vv-r4jh-cvgj/GHSA-r7vv-r4jh-cvgj.json +++ b/advisories/unreviewed/2022/05/GHSA-r7vv-r4jh-cvgj/GHSA-r7vv-r4jh-cvgj.json @@ -7,12 +7,8 @@ "CVE-2020-2843" ], "details": "Vulnerability in the Oracle iSupport product of Oracle E-Business Suite (component: Profile). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8f8-9w3c-hjwv/GHSA-r8f8-9w3c-hjwv.json b/advisories/unreviewed/2022/05/GHSA-r8f8-9w3c-hjwv/GHSA-r8f8-9w3c-hjwv.json index 8a0dfc7952a..8720d091027 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8f8-9w3c-hjwv/GHSA-r8f8-9w3c-hjwv.json +++ b/advisories/unreviewed/2022/05/GHSA-r8f8-9w3c-hjwv/GHSA-r8f8-9w3c-hjwv.json @@ -7,12 +7,8 @@ "CVE-2020-3652" ], "details": "Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack of check of length of variable received. in Snapdragon Compute, Snapdragon Connectivity in MSM8998, QCA6390, SC7180, SC8180X, SDM850", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9qw-88qf-r66q/GHSA-r9qw-88qf-r66q.json b/advisories/unreviewed/2022/05/GHSA-r9qw-88qf-r66q/GHSA-r9qw-88qf-r66q.json index a5d122ec5fa..6ec77ab2b29 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9qw-88qf-r66q/GHSA-r9qw-88qf-r66q.json +++ b/advisories/unreviewed/2022/05/GHSA-r9qw-88qf-r66q/GHSA-r9qw-88qf-r66q.json @@ -7,12 +7,8 @@ "CVE-2019-14070" ], "details": "Possible use after free issue in pcm volume controls due to race condition exist in private data used in mixer controls in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, IPQ4019, IPQ6018, IPQ8064, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9615, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc99-w763-6gp7/GHSA-rc99-w763-6gp7.json b/advisories/unreviewed/2022/05/GHSA-rc99-w763-6gp7/GHSA-rc99-w763-6gp7.json index e9d1e843324..a20581343b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc99-w763-6gp7/GHSA-rc99-w763-6gp7.json +++ b/advisories/unreviewed/2022/05/GHSA-rc99-w763-6gp7/GHSA-rc99-w763-6gp7.json @@ -7,12 +7,8 @@ "CVE-2020-2844" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc9m-wr77-pxf4/GHSA-rc9m-wr77-pxf4.json b/advisories/unreviewed/2022/05/GHSA-rc9m-wr77-pxf4/GHSA-rc9m-wr77-pxf4.json index cc2f11b0a15..f652f9ef558 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc9m-wr77-pxf4/GHSA-rc9m-wr77-pxf4.json +++ b/advisories/unreviewed/2022/05/GHSA-rc9m-wr77-pxf4/GHSA-rc9m-wr77-pxf4.json @@ -7,12 +7,8 @@ "CVE-2017-18799" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects R6200v2 before 1.0.3.14, R6250 before 1.0.4.8, R6300v2 before 1.0.4.8, R6700 before 1.1.1.20, R7000 before 1.0.7.10, R7000P/R6900P before 1.0.0.56, R7100LG before 1.0.0.30, R7900 before 1.0.1.14, R8000 before 1.0.3.22, R8500 before 1.0.2.74, and D8500 before 1.0.3.28.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf3q-qph6-mx79/GHSA-rf3q-qph6-mx79.json b/advisories/unreviewed/2022/05/GHSA-rf3q-qph6-mx79/GHSA-rf3q-qph6-mx79.json index b1dce15e334..06cc1a686da 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf3q-qph6-mx79/GHSA-rf3q-qph6-mx79.json +++ b/advisories/unreviewed/2022/05/GHSA-rf3q-qph6-mx79/GHSA-rf3q-qph6-mx79.json @@ -7,12 +7,8 @@ "CVE-2020-2893" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rfqp-jmwx-gg9r/GHSA-rfqp-jmwx-gg9r.json b/advisories/unreviewed/2022/05/GHSA-rfqp-jmwx-gg9r/GHSA-rfqp-jmwx-gg9r.json index 846d6227981..e8940a1efba 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfqp-jmwx-gg9r/GHSA-rfqp-jmwx-gg9r.json +++ b/advisories/unreviewed/2022/05/GHSA-rfqp-jmwx-gg9r/GHSA-rfqp-jmwx-gg9r.json @@ -7,12 +7,8 @@ "CVE-2020-2914" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 7.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgxw-5339-wg7q/GHSA-rgxw-5339-wg7q.json b/advisories/unreviewed/2022/05/GHSA-rgxw-5339-wg7q/GHSA-rgxw-5339-wg7q.json index 9b86279d22d..ed54b31ab13 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgxw-5339-wg7q/GHSA-rgxw-5339-wg7q.json +++ b/advisories/unreviewed/2022/05/GHSA-rgxw-5339-wg7q/GHSA-rgxw-5339-wg7q.json @@ -7,12 +7,8 @@ "CVE-2020-7084" ], "details": "A NULL pointer dereference vulnerability in the Autodesk FBX-SDK versions 2019.0 and earlier may lead to denial of service of the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rh53-4vm2-q4c8/GHSA-rh53-4vm2-q4c8.json b/advisories/unreviewed/2022/05/GHSA-rh53-4vm2-q4c8/GHSA-rh53-4vm2-q4c8.json index b680a2db958..78490984c62 100644 --- a/advisories/unreviewed/2022/05/GHSA-rh53-4vm2-q4c8/GHSA-rh53-4vm2-q4c8.json +++ b/advisories/unreviewed/2022/05/GHSA-rh53-4vm2-q4c8/GHSA-rh53-4vm2-q4c8.json @@ -7,12 +7,8 @@ "CVE-2020-2795" ], "details": "Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Information Manager Console). Supported versions that are affected are 8.6.0-8.6.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Knowledge executes to compromise Oracle Knowledge. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of Oracle Knowledge. CVSS 3.0 Base Score 6.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rhrf-w5v6-jgp3/GHSA-rhrf-w5v6-jgp3.json b/advisories/unreviewed/2022/05/GHSA-rhrf-w5v6-jgp3/GHSA-rhrf-w5v6-jgp3.json index 373a0a369bc..d01dcf732d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhrf-w5v6-jgp3/GHSA-rhrf-w5v6-jgp3.json +++ b/advisories/unreviewed/2022/05/GHSA-rhrf-w5v6-jgp3/GHSA-rhrf-w5v6-jgp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjr6-c78c-px55/GHSA-rjr6-c78c-px55.json b/advisories/unreviewed/2022/05/GHSA-rjr6-c78c-px55/GHSA-rjr6-c78c-px55.json index 341981324c6..757f2bf8a33 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjr6-c78c-px55/GHSA-rjr6-c78c-px55.json +++ b/advisories/unreviewed/2022/05/GHSA-rjr6-c78c-px55/GHSA-rjr6-c78c-px55.json @@ -7,12 +7,8 @@ "CVE-2020-7111" ], "details": "A server side injection vulnerability exists which could allow an authenticated administrative user to achieve Remote Code Execution in ClearPass. Resolution: Fixed in 6.7.13, 6.8.4, 6.9.0 and higher.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rmfh-4vqx-qf9v/GHSA-rmfh-4vqx-qf9v.json b/advisories/unreviewed/2022/05/GHSA-rmfh-4vqx-qf9v/GHSA-rmfh-4vqx-qf9v.json index 4e36ff7adec..76d20bc4d10 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmfh-4vqx-qf9v/GHSA-rmfh-4vqx-qf9v.json +++ b/advisories/unreviewed/2022/05/GHSA-rmfh-4vqx-qf9v/GHSA-rmfh-4vqx-qf9v.json @@ -7,12 +7,8 @@ "CVE-2020-0071" ], "details": "In rw_t2t_extract_default_locks_info of rw_t2t_ndef.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution over NFC with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-147310721", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rpf4-c4vh-8jcx/GHSA-rpf4-c4vh-8jcx.json b/advisories/unreviewed/2022/05/GHSA-rpf4-c4vh-8jcx/GHSA-rpf4-c4vh-8jcx.json index b0943733a1e..39174ca84db 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpf4-c4vh-8jcx/GHSA-rpf4-c4vh-8jcx.json +++ b/advisories/unreviewed/2022/05/GHSA-rpf4-c4vh-8jcx/GHSA-rpf4-c4vh-8jcx.json @@ -7,12 +7,8 @@ "CVE-2019-10610" ], "details": "Possible buffer over read when trying to process SDP message Video media line with frame-size attribute in video Media line in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqh7-rj86-g755/GHSA-rqh7-rj86-g755.json b/advisories/unreviewed/2022/05/GHSA-rqh7-rj86-g755/GHSA-rqh7-rj86-g755.json index be7fe6824c3..943b3fcf0ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqh7-rj86-g755/GHSA-rqh7-rj86-g755.json +++ b/advisories/unreviewed/2022/05/GHSA-rqh7-rj86-g755/GHSA-rqh7-rj86-g755.json @@ -7,12 +7,8 @@ "CVE-2020-3651" ], "details": "Active command timeout since WM status change cmd is not removed from active queue if peer sends multiple deauth frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCM2150, QCN7605, QCS605, QM215, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM845, SDX20, SDX24, SDX55, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqmp-w279-4536/GHSA-rqmp-w279-4536.json b/advisories/unreviewed/2022/05/GHSA-rqmp-w279-4536/GHSA-rqmp-w279-4536.json index 95ddd835196..e7270562903 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqmp-w279-4536/GHSA-rqmp-w279-4536.json +++ b/advisories/unreviewed/2022/05/GHSA-rqmp-w279-4536/GHSA-rqmp-w279-4536.json @@ -7,12 +7,8 @@ "CVE-2019-20686" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.40, R6080 before 1.0.0.40, R6050 before 1.0.1.18, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, and WNR2020 before 1.1.0.62.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqw8-5cfg-cppr/GHSA-rqw8-5cfg-cppr.json b/advisories/unreviewed/2022/05/GHSA-rqw8-5cfg-cppr/GHSA-rqw8-5cfg-cppr.json index 60c50b52099..2ac14896ad4 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqw8-5cfg-cppr/GHSA-rqw8-5cfg-cppr.json +++ b/advisories/unreviewed/2022/05/GHSA-rqw8-5cfg-cppr/GHSA-rqw8-5cfg-cppr.json @@ -7,12 +7,8 @@ "CVE-2019-10523" ], "details": "Target specific data is being sent to remote server and leads to information exposure in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, QCA6574AU, QCS605, Rennell, SDA660, SDM429W, SDM439, SDM450, SDM710, SDM845, SM7150, SM8150, SM8250, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rr8j-3q27-jmv3/GHSA-rr8j-3q27-jmv3.json b/advisories/unreviewed/2022/05/GHSA-rr8j-3q27-jmv3/GHSA-rr8j-3q27-jmv3.json index 06f33ce9edd..865b3f3c3d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr8j-3q27-jmv3/GHSA-rr8j-3q27-jmv3.json +++ b/advisories/unreviewed/2022/05/GHSA-rr8j-3q27-jmv3/GHSA-rr8j-3q27-jmv3.json @@ -7,12 +7,8 @@ "CVE-2020-3251" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rw9x-xc95-2xcw/GHSA-rw9x-xc95-2xcw.json b/advisories/unreviewed/2022/05/GHSA-rw9x-xc95-2xcw/GHSA-rw9x-xc95-2xcw.json index 59f62a262e0..cd90a9c8f00 100644 --- a/advisories/unreviewed/2022/05/GHSA-rw9x-xc95-2xcw/GHSA-rw9x-xc95-2xcw.json +++ b/advisories/unreviewed/2022/05/GHSA-rw9x-xc95-2xcw/GHSA-rw9x-xc95-2xcw.json @@ -7,12 +7,8 @@ "CVE-2020-2871" ], "details": "Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Advanced Outbound Telephony. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Advanced Outbound Telephony, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Advanced Outbound Telephony accessible data as well as unauthorized update, insert or delete access to some of Oracle Advanced Outbound Telephony accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rx2h-mpg9-8fgm/GHSA-rx2h-mpg9-8fgm.json b/advisories/unreviewed/2022/05/GHSA-rx2h-mpg9-8fgm/GHSA-rx2h-mpg9-8fgm.json index 1c7ee31d597..3f601f232eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx2h-mpg9-8fgm/GHSA-rx2h-mpg9-8fgm.json +++ b/advisories/unreviewed/2022/05/GHSA-rx2h-mpg9-8fgm/GHSA-rx2h-mpg9-8fgm.json @@ -7,12 +7,8 @@ "CVE-2020-2831" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v3cf-6qqq-jmch/GHSA-v3cf-6qqq-jmch.json b/advisories/unreviewed/2022/05/GHSA-v3cf-6qqq-jmch/GHSA-v3cf-6qqq-jmch.json index 44d70771975..4eb183225f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3cf-6qqq-jmch/GHSA-v3cf-6qqq-jmch.json +++ b/advisories/unreviewed/2022/05/GHSA-v3cf-6qqq-jmch/GHSA-v3cf-6qqq-jmch.json @@ -7,12 +7,8 @@ "CVE-2018-21116" ], "details": "NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v43v-r57x-cxjw/GHSA-v43v-r57x-cxjw.json b/advisories/unreviewed/2022/05/GHSA-v43v-r57x-cxjw/GHSA-v43v-r57x-cxjw.json index 2804c5bfa37..535854f22b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-v43v-r57x-cxjw/GHSA-v43v-r57x-cxjw.json +++ b/advisories/unreviewed/2022/05/GHSA-v43v-r57x-cxjw/GHSA-v43v-r57x-cxjw.json @@ -7,12 +7,8 @@ "CVE-2019-8961" ], "details": "A Denial of Service vulnerability related to stack exhaustion has been identified in FlexNet Publisher lmadmin.exe 11.16.2. Because the message reading function calls itself recursively given a certain condition in the received message, an unauthenticated remote attacker can repeatedly send messages of that type to cause a stack exhaustion condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4fx-qwhg-pg57/GHSA-v4fx-qwhg-pg57.json b/advisories/unreviewed/2022/05/GHSA-v4fx-qwhg-pg57/GHSA-v4fx-qwhg-pg57.json index 4ffcbb3a493..6baca65f7d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4fx-qwhg-pg57/GHSA-v4fx-qwhg-pg57.json +++ b/advisories/unreviewed/2022/05/GHSA-v4fx-qwhg-pg57/GHSA-v4fx-qwhg-pg57.json @@ -7,12 +7,8 @@ "CVE-2020-2881" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data as well as unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4r6-962q-6q53/GHSA-v4r6-962q-6q53.json b/advisories/unreviewed/2022/05/GHSA-v4r6-962q-6q53/GHSA-v4r6-962q-6q53.json index 71799fb0c00..ea76cb4bd81 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4r6-962q-6q53/GHSA-v4r6-962q-6q53.json +++ b/advisories/unreviewed/2022/05/GHSA-v4r6-962q-6q53/GHSA-v4r6-962q-6q53.json @@ -7,12 +7,8 @@ "CVE-2020-10813" ], "details": "A buffer overflow vulnerability in FTPDMIN 0.96 allows attackers to crash the server via a crafted packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8j9-4m8p-cv77/GHSA-v8j9-4m8p-cv77.json b/advisories/unreviewed/2022/05/GHSA-v8j9-4m8p-cv77/GHSA-v8j9-4m8p-cv77.json index be6e475293e..a693caa044c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8j9-4m8p-cv77/GHSA-v8j9-4m8p-cv77.json +++ b/advisories/unreviewed/2022/05/GHSA-v8j9-4m8p-cv77/GHSA-v8j9-4m8p-cv77.json @@ -7,12 +7,8 @@ "CVE-2020-2819" ], "details": "Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Universal Work Queue, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Universal Work Queue accessible data as well as unauthorized update, insert or delete access to some of Oracle Universal Work Queue accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8m2-2m5m-qrhp/GHSA-v8m2-2m5m-qrhp.json b/advisories/unreviewed/2022/05/GHSA-v8m2-2m5m-qrhp/GHSA-v8m2-2m5m-qrhp.json index 7d4fc833044..556ad0c06ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8m2-2m5m-qrhp/GHSA-v8m2-2m5m-qrhp.json +++ b/advisories/unreviewed/2022/05/GHSA-v8m2-2m5m-qrhp/GHSA-v8m2-2m5m-qrhp.json @@ -7,12 +7,8 @@ "CVE-2017-18767" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.34, D8500 before 1.0.3.39, R6400 before 1.0.1.14, R6400v2 before 1.0.2.32, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R7000 before 1.0.9.4, R7100LG before 1.0.0.32, R7300 before 1.0.0.56, R7800 before 1.0.2.36, R7900 before 1.0.2.10, R8000 before 1.0.3.24, R8300 before 1.0.2.74, and R8500 before 1.0.2.74.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v972-vhh2-2h9q/GHSA-v972-vhh2-2h9q.json b/advisories/unreviewed/2022/05/GHSA-v972-vhh2-2h9q/GHSA-v972-vhh2-2h9q.json index a1dc7b33c8d..2499516f2b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-v972-vhh2-2h9q/GHSA-v972-vhh2-2h9q.json +++ b/advisories/unreviewed/2022/05/GHSA-v972-vhh2-2h9q/GHSA-v972-vhh2-2h9q.json @@ -7,12 +7,8 @@ "CVE-2017-18786" ], "details": "Certain NETGEAR devices are affected by command injection. This affects D6200 before 1.1.00.24, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6050 before 1.0.1.12, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9p6-xj6q-xr4h/GHSA-v9p6-xj6q-xr4h.json b/advisories/unreviewed/2022/05/GHSA-v9p6-xj6q-xr4h/GHSA-v9p6-xj6q-xr4h.json index b4f2fae0554..916004ccccd 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9p6-xj6q-xr4h/GHSA-v9p6-xj6q-xr4h.json +++ b/advisories/unreviewed/2022/05/GHSA-v9p6-xj6q-xr4h/GHSA-v9p6-xj6q-xr4h.json @@ -7,12 +7,8 @@ "CVE-2020-9070" ], "details": "Huawei smartphones Taurus-AL00B with versions earlier than 10.0.0.205(C00E201R7P2) have an improper authentication vulnerability. The software insufficiently validate the user's identity when a user wants to do certain operation. An attacker can trick user into installing a malicious application to exploit this vulnerability. Successful exploit may cause some information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vc96-3vqc-fj8m/GHSA-vc96-3vqc-fj8m.json b/advisories/unreviewed/2022/05/GHSA-vc96-3vqc-fj8m/GHSA-vc96-3vqc-fj8m.json index b6bc6d81746..c9ddc8d946e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vc96-3vqc-fj8m/GHSA-vc96-3vqc-fj8m.json +++ b/advisories/unreviewed/2022/05/GHSA-vc96-3vqc-fj8m/GHSA-vc96-3vqc-fj8m.json @@ -7,12 +7,8 @@ "CVE-2017-18832" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vcxg-5hc5-gw9m/GHSA-vcxg-5hc5-gw9m.json b/advisories/unreviewed/2022/05/GHSA-vcxg-5hc5-gw9m/GHSA-vcxg-5hc5-gw9m.json index 9df41e0724e..86cc5747b54 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcxg-5hc5-gw9m/GHSA-vcxg-5hc5-gw9m.json +++ b/advisories/unreviewed/2022/05/GHSA-vcxg-5hc5-gw9m/GHSA-vcxg-5hc5-gw9m.json @@ -7,12 +7,8 @@ "CVE-2019-20723" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, DM200 before 1.0.0.58, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3000RPv3 before 1.0.2.70, WN3100RPv2 before 1.0.0.60, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vh2c-9j78-fvh2/GHSA-vh2c-9j78-fvh2.json b/advisories/unreviewed/2022/05/GHSA-vh2c-9j78-fvh2/GHSA-vh2c-9j78-fvh2.json index 3b07d7664ff..7b8b744592d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vh2c-9j78-fvh2/GHSA-vh2c-9j78-fvh2.json +++ b/advisories/unreviewed/2022/05/GHSA-vh2c-9j78-fvh2/GHSA-vh2c-9j78-fvh2.json @@ -7,12 +7,8 @@ "CVE-2017-18754" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WNDR3700v4 before 1.0.2.88, WNDR4300v1 before 1.0.2.90, and WNR2000v5 before 1.0.0.58.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vjg4-2j2m-2g7m/GHSA-vjg4-2j2m-2g7m.json b/advisories/unreviewed/2022/05/GHSA-vjg4-2j2m-2g7m/GHSA-vjg4-2j2m-2g7m.json index 034404b2ed1..38617760ece 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjg4-2j2m-2g7m/GHSA-vjg4-2j2m-2g7m.json +++ b/advisories/unreviewed/2022/05/GHSA-vjg4-2j2m-2g7m/GHSA-vjg4-2j2m-2g7m.json @@ -7,12 +7,8 @@ "CVE-2020-2955" ], "details": "Vulnerability in the Oracle FLEXCUBE Core Banking product of Oracle Financial Services Applications (component: Transaction Processing). The supported version that is affected is 4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Core Banking. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle FLEXCUBE Core Banking accessible data as well as unauthorized read access to a subset of Oracle FLEXCUBE Core Banking accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle FLEXCUBE Core Banking. CVSS 3.0 Base Score 6.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vm4g-7vxg-x22v/GHSA-vm4g-7vxg-x22v.json b/advisories/unreviewed/2022/05/GHSA-vm4g-7vxg-x22v/GHSA-vm4g-7vxg-x22v.json index dc1bfb689f9..e834f81849d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vm4g-7vxg-x22v/GHSA-vm4g-7vxg-x22v.json +++ b/advisories/unreviewed/2022/05/GHSA-vm4g-7vxg-x22v/GHSA-vm4g-7vxg-x22v.json @@ -7,12 +7,8 @@ "CVE-2020-2923" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmhh-cg3j-vcv3/GHSA-vmhh-cg3j-vcv3.json b/advisories/unreviewed/2022/05/GHSA-vmhh-cg3j-vcv3/GHSA-vmhh-cg3j-vcv3.json index 4a310b5544d..1f0bb86b3fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmhh-cg3j-vcv3/GHSA-vmhh-cg3j-vcv3.json +++ b/advisories/unreviewed/2022/05/GHSA-vmhh-cg3j-vcv3/GHSA-vmhh-cg3j-vcv3.json @@ -7,12 +7,8 @@ "CVE-2020-11944" ], "details": "Abe (aka bitcoin-abe) through 0.7.2, and 0.8pre, allows XSS in __call__ in abe.py because the PATH_INFO environment variable is mishandled during a PageNotFound exception.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vp4c-3hqp-3f9q/GHSA-vp4c-3hqp-3f9q.json b/advisories/unreviewed/2022/05/GHSA-vp4c-3hqp-3f9q/GHSA-vp4c-3hqp-3f9q.json index db4c4ce8525..b67ba73f540 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp4c-3hqp-3f9q/GHSA-vp4c-3hqp-3f9q.json +++ b/advisories/unreviewed/2022/05/GHSA-vp4c-3hqp-3f9q/GHSA-vp4c-3hqp-3f9q.json @@ -7,12 +7,8 @@ "CVE-2020-2823" ], "details": "Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Notes). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Common Applications Calendar. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Common Applications Calendar, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Common Applications Calendar accessible data as well as unauthorized update, insert or delete access to some of Oracle Common Applications Calendar accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqmj-6jfg-6w99/GHSA-vqmj-6jfg-6w99.json b/advisories/unreviewed/2022/05/GHSA-vqmj-6jfg-6w99/GHSA-vqmj-6jfg-6w99.json index c7813af9dfb..c856666e0f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqmj-6jfg-6w99/GHSA-vqmj-6jfg-6w99.json +++ b/advisories/unreviewed/2022/05/GHSA-vqmj-6jfg-6w99/GHSA-vqmj-6jfg-6w99.json @@ -7,12 +7,8 @@ "CVE-2018-21144" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects DM200 before 1.0.0.52, R7500 before 1.0.0.122, R7800 before 1.0.2.42, R8900 before 1.0.3.10, R9000 before 1.0.3.16, WNDR3700v4 before 1.0.2.96, WNDR4300 before 1.0.2.98, WNDR4300v2 before 1.0.0.54, WNDR4500v3 before 1.0.0.54, and WNR2000v5 before 1.0.0.64.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vvmc-4jqr-3x8w/GHSA-vvmc-4jqr-3x8w.json b/advisories/unreviewed/2022/05/GHSA-vvmc-4jqr-3x8w/GHSA-vvmc-4jqr-3x8w.json index 11e8893eb96..8b91e6d1a42 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvmc-4jqr-3x8w/GHSA-vvmc-4jqr-3x8w.json +++ b/advisories/unreviewed/2022/05/GHSA-vvmc-4jqr-3x8w/GHSA-vvmc-4jqr-3x8w.json @@ -7,12 +7,8 @@ "CVE-2020-2856" ], "details": "Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Advanced Outbound Telephony. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Advanced Outbound Telephony, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Advanced Outbound Telephony accessible data as well as unauthorized update, insert or delete access to some of Oracle Advanced Outbound Telephony accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vww7-hrp4-685m/GHSA-vww7-hrp4-685m.json b/advisories/unreviewed/2022/05/GHSA-vww7-hrp4-685m/GHSA-vww7-hrp4-685m.json index 0bcaba8fc61..f660bae8bcc 100644 --- a/advisories/unreviewed/2022/05/GHSA-vww7-hrp4-685m/GHSA-vww7-hrp4-685m.json +++ b/advisories/unreviewed/2022/05/GHSA-vww7-hrp4-685m/GHSA-vww7-hrp4-685m.json @@ -7,12 +7,8 @@ "CVE-2017-18828" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vwwp-rpjx-7fmp/GHSA-vwwp-rpjx-7fmp.json b/advisories/unreviewed/2022/05/GHSA-vwwp-rpjx-7fmp/GHSA-vwwp-rpjx-7fmp.json index b5df862db7f..c58f4fb7c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwwp-rpjx-7fmp/GHSA-vwwp-rpjx-7fmp.json +++ b/advisories/unreviewed/2022/05/GHSA-vwwp-rpjx-7fmp/GHSA-vwwp-rpjx-7fmp.json @@ -7,12 +7,8 @@ "CVE-2020-2846" ], "details": "Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: Estimate and Actual Charges). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Depot Repair, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Depot Repair accessible data as well as unauthorized update, insert or delete access to some of Oracle Depot Repair accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vx49-pgjf-xgv6/GHSA-vx49-pgjf-xgv6.json b/advisories/unreviewed/2022/05/GHSA-vx49-pgjf-xgv6/GHSA-vx49-pgjf-xgv6.json index dca9a18fda3..a53a73f3d16 100644 --- a/advisories/unreviewed/2022/05/GHSA-vx49-pgjf-xgv6/GHSA-vx49-pgjf-xgv6.json +++ b/advisories/unreviewed/2022/05/GHSA-vx49-pgjf-xgv6/GHSA-vx49-pgjf-xgv6.json @@ -7,12 +7,8 @@ "CVE-2018-21120" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects WAC120 before 2.1.7, WAC505 before 5.0.5.4, WAC510 before 5.0.5.4, WNAP320 before 3.7.11.4, WNAP210v2 before 3.7.11.4, WNDAP350 before 3.7.11.4, WNDAP360 before 3.7.11.4, WNDAP660 before 3.7.11.4, WNDAP620 before 2.1.7, WND930 before 2.1.5, and WN604 before 3.3.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vxcj-679q-r6q8/GHSA-vxcj-679q-r6q8.json b/advisories/unreviewed/2022/05/GHSA-vxcj-679q-r6q8/GHSA-vxcj-679q-r6q8.json index e179b64a3ce..fc4bce04b8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxcj-679q-r6q8/GHSA-vxcj-679q-r6q8.json +++ b/advisories/unreviewed/2022/05/GHSA-vxcj-679q-r6q8/GHSA-vxcj-679q-r6q8.json @@ -7,12 +7,8 @@ "CVE-2020-7486" ], "details": "**VERSION NOT SUPPORTED WHEN ASSIGNED** A vulnerability could cause TCM modules to reset when under high network load in TCM v10.4.x and in system v10.3.x. This vulnerability was discovered and remediated in version v10.5.x on August 13, 2009. TCMs from v10.5.x and on will no longer exhibit this behavior.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vxjj-c2q3-jm5g/GHSA-vxjj-c2q3-jm5g.json b/advisories/unreviewed/2022/05/GHSA-vxjj-c2q3-jm5g/GHSA-vxjj-c2q3-jm5g.json index 7ee99683b5e..9e4ad5ff27d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxjj-c2q3-jm5g/GHSA-vxjj-c2q3-jm5g.json +++ b/advisories/unreviewed/2022/05/GHSA-vxjj-c2q3-jm5g/GHSA-vxjj-c2q3-jm5g.json @@ -7,12 +7,8 @@ "CVE-2017-18831" ], "details": "Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vxvf-jh64-7wvg/GHSA-vxvf-jh64-7wvg.json b/advisories/unreviewed/2022/05/GHSA-vxvf-jh64-7wvg/GHSA-vxvf-jh64-7wvg.json index 522ec277da3..45ba2072f88 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxvf-jh64-7wvg/GHSA-vxvf-jh64-7wvg.json +++ b/advisories/unreviewed/2022/05/GHSA-vxvf-jh64-7wvg/GHSA-vxvf-jh64-7wvg.json @@ -7,12 +7,8 @@ "CVE-2017-18778" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6220 before 1.0.0.28, D6400 before 1.0.0.60, D7000 before 1.0.1.52, D7000v2 before 1.0.0.38, D7800 before 1.0.1.24, D8500 before 1.0.3.29, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.14, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6050 before 1.0.1.14, R6220 before 1.1.0.60, R6400 before 1.1.0.26, R6400v2 before 1.0.2.46, R6700v2 before 1.2.0.2, R6800 before 1.2.0.2, R6900v2 before 1.2.0.2, R7100LG before 1.0.0.32, R7300DST before 1.0.0.56, R7500 before 1.0.0.112, R7500v2 before 1.0.3.24, R7800 before 1.0.2.36, R7900P before 1.1.4.6, R8000P before 1.1.4.6, R8300 before 1.0.2.104, R8500 before 1.0.2.104, R9000 before 1.0.2.52, WNDR3700v4 before 1.0.2.94, WNDR3700v5 before 1.1.0.50, WNDR4300v1 before 1.0.2.96, WNDR4300v2 before 1.0.0.52, WNDR4500v3 before 1.0.0.52, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3qw-ch2v-whr8/GHSA-w3qw-ch2v-whr8.json b/advisories/unreviewed/2022/05/GHSA-w3qw-ch2v-whr8/GHSA-w3qw-ch2v-whr8.json index 5738d0bca49..b6c6e89a4b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3qw-ch2v-whr8/GHSA-w3qw-ch2v-whr8.json +++ b/advisories/unreviewed/2022/05/GHSA-w3qw-ch2v-whr8/GHSA-w3qw-ch2v-whr8.json @@ -7,12 +7,8 @@ "CVE-2020-2951" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.0 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3w2-fx8h-h255/GHSA-w3w2-fx8h-h255.json b/advisories/unreviewed/2022/05/GHSA-w3w2-fx8h-h255/GHSA-w3w2-fx8h-h255.json index f2d128e9dd3..7a7675aacfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3w2-fx8h-h255/GHSA-w3w2-fx8h-h255.json +++ b/advisories/unreviewed/2022/05/GHSA-w3w2-fx8h-h255/GHSA-w3w2-fx8h-h255.json @@ -7,12 +7,8 @@ "CVE-2020-9279" ], "details": "An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. A hard-coded account allows management-interface login with high privileges. The logged-in user can perform critical tasks and take full control of the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4ch-47jf-r44c/GHSA-w4ch-47jf-r44c.json b/advisories/unreviewed/2022/05/GHSA-w4ch-47jf-r44c/GHSA-w4ch-47jf-r44c.json index a8eca8c5ff8..b65c4f11d9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4ch-47jf-r44c/GHSA-w4ch-47jf-r44c.json +++ b/advisories/unreviewed/2022/05/GHSA-w4ch-47jf-r44c/GHSA-w4ch-47jf-r44c.json @@ -7,12 +7,8 @@ "CVE-2018-21119" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WAC505 before 5.0.5.4 and WAC510 before 5.0.5.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4f9-wxqm-hcwj/GHSA-w4f9-wxqm-hcwj.json b/advisories/unreviewed/2022/05/GHSA-w4f9-wxqm-hcwj/GHSA-w4f9-wxqm-hcwj.json index 63c9d073f2a..5027abe9525 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4f9-wxqm-hcwj/GHSA-w4f9-wxqm-hcwj.json +++ b/advisories/unreviewed/2022/05/GHSA-w4f9-wxqm-hcwj/GHSA-w4f9-wxqm-hcwj.json @@ -7,12 +7,8 @@ "CVE-2017-18769" ], "details": "Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000 before 1.0.1.60, D7800 before 1.0.1.34, D8500 before 1.0.3.39, DGN2200v4 before 1.0.0.94, DGN2200Bv4 before 1.0.0.94, EX6200v2 before 1.0.1.50, EX7000 before 1.0.0.56, JR6150 before 1.0.1.18, R6050 before 1.0.1.10J, R6100 before 1.0.1.16, R6150 before 1.0.1.10, R6220 before 1.1.0.50, R6250 before 1.0.4.12, R6300v2 before 1.0.4.12, R6400 before 1.0.1.24, R6400v2 before 1.0.2.32, R6700 before 1.0.1.26, R6700v2 before 1.2.0.4, R6800 before 1.0.1.10, R6900 before 1.0.1.26, R6900P before 1.0.0.58, R6900v2 before 1.2.0.4, R7000 before 1.0.9.6, R7000P before 1.0.0.58, R7100LG before 1.0.0.32, R7300 before 1.0.0.54, R7500 before 1.0.0.112, R7500v2 before 1.0.3.20, R7800 before 1.0.2.36, R7900 before 1.0.1.18, R8000 before 1.0.3.48, R8300 before 1.0.2.104, R8500 before 1.0.2.104, R9000 before 1.0.2.40, WNDR3400v3 before 1.0.1.14, WNDR3700v4 before 1.0.2.96, WNDR4300v1 before 1.0.2.98, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, and WNR3500Lv2 before 1.2.0.44.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w585-6hjj-c4pg/GHSA-w585-6hjj-c4pg.json b/advisories/unreviewed/2022/05/GHSA-w585-6hjj-c4pg/GHSA-w585-6hjj-c4pg.json index 0f790837749..5351db30737 100644 --- a/advisories/unreviewed/2022/05/GHSA-w585-6hjj-c4pg/GHSA-w585-6hjj-c4pg.json +++ b/advisories/unreviewed/2022/05/GHSA-w585-6hjj-c4pg/GHSA-w585-6hjj-c4pg.json @@ -7,12 +7,8 @@ "CVE-2018-21112" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7800 before 1.0.1.44, R7500v2 before 1.0.3.38, R7800 before 1.0.2.52, R8900 before 1.0.4.12, and R9000 before 1.0.4.12.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w5gx-8f97-r4f7/GHSA-w5gx-8f97-r4f7.json b/advisories/unreviewed/2022/05/GHSA-w5gx-8f97-r4f7/GHSA-w5gx-8f97-r4f7.json index 343b1e2df34..2d21ff310f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5gx-8f97-r4f7/GHSA-w5gx-8f97-r4f7.json +++ b/advisories/unreviewed/2022/05/GHSA-w5gx-8f97-r4f7/GHSA-w5gx-8f97-r4f7.json @@ -7,12 +7,8 @@ "CVE-2017-18807" ], "details": "NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w5vx-qj99-7fmg/GHSA-w5vx-qj99-7fmg.json b/advisories/unreviewed/2022/05/GHSA-w5vx-qj99-7fmg/GHSA-w5vx-qj99-7fmg.json index 3be34290e7f..243bfe0537e 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5vx-qj99-7fmg/GHSA-w5vx-qj99-7fmg.json +++ b/advisories/unreviewed/2022/05/GHSA-w5vx-qj99-7fmg/GHSA-w5vx-qj99-7fmg.json @@ -7,12 +7,8 @@ "CVE-2019-10588" ], "details": "Copying RTCP messages into the output buffer without checking the destination buffer size which could lead to a remote stack overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w79x-7x76-qxrp/GHSA-w79x-7x76-qxrp.json b/advisories/unreviewed/2022/05/GHSA-w79x-7x76-qxrp/GHSA-w79x-7x76-qxrp.json index de3c05ecb1a..6a39af5f096 100644 --- a/advisories/unreviewed/2022/05/GHSA-w79x-7x76-qxrp/GHSA-w79x-7x76-qxrp.json +++ b/advisories/unreviewed/2022/05/GHSA-w79x-7x76-qxrp/GHSA-w79x-7x76-qxrp.json @@ -7,12 +7,8 @@ "CVE-2019-20759" ], "details": "NETGEAR R9000 devices before 1.0.4.26 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8w7-rvcv-2v9w/GHSA-w8w7-rvcv-2v9w.json b/advisories/unreviewed/2022/05/GHSA-w8w7-rvcv-2v9w/GHSA-w8w7-rvcv-2v9w.json index 7380ac892f6..b988042e0de 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8w7-rvcv-2v9w/GHSA-w8w7-rvcv-2v9w.json +++ b/advisories/unreviewed/2022/05/GHSA-w8w7-rvcv-2v9w/GHSA-w8w7-rvcv-2v9w.json @@ -7,12 +7,8 @@ "CVE-2020-10935" ], "details": "Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wch4-qfc4-9f6m/GHSA-wch4-qfc4-9f6m.json b/advisories/unreviewed/2022/05/GHSA-wch4-qfc4-9f6m/GHSA-wch4-qfc4-9f6m.json index 5922e699708..e4520c974c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wch4-qfc4-9f6m/GHSA-wch4-qfc4-9f6m.json +++ b/advisories/unreviewed/2022/05/GHSA-wch4-qfc4-9f6m/GHSA-wch4-qfc4-9f6m.json @@ -7,12 +7,8 @@ "CVE-2019-20730" ], "details": "Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1.00.28, D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000 before 1.0.1.60, D7000v2 before 1.0.0.74, D7800 before 1.0.1.34, D8500 before 1.0.3.39, DC112A before 1.0.0.40, EX8000 before 1.0.0.118, JR6150 before 1.0.1.18, R6050 before 1.0.1.18, R6220 before 1.1.0.66, R6250 before 1.0.4.26, R6300v2 before 1.0.4.24, R6400 before 1.0.1.36, R6400v2 before 1.0.2.52, R6700 before 1.0.1.44, R6700v2 before 1.2.0.16, R6800 before 1.2.0.16, R6900v2 before 1.2.0.16, R6900 before 1.0.1.44, R7000 before 1.0.9.26, R6900P before 1.3.0.20, R7000P before 1.3.0.20, R7100LG before 1.0.0.40, R7300DST before 1.0.0.62, R7500 before 1.0.0.118, R7500v2 before 1.0.3.26, R7800 before 1.0.2.40, R7900 before 1.0.2.10, R8000 before 1.0.4.12, R7900P before 1.3.0.10, R8000P before 1.3.0.10, R8300 before 1.0.2.116, R8500 before 1.0.2.116, R8900 before 1.0.3.6, R9000 before 1.0.3.10, WNDR3700v4 before 1.0.2.102, WNDR3700v5 before 1.1.0.54, WNDR4300v1 before 1.0.2.98, WNDR4300v2 before 1.0.0.56, and WNDR4500v3 before 1.0.0.56.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh7j-jjqj-c566/GHSA-wh7j-jjqj-c566.json b/advisories/unreviewed/2022/05/GHSA-wh7j-jjqj-c566/GHSA-wh7j-jjqj-c566.json index 81a8b4a6940..5935c49d4c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh7j-jjqj-c566/GHSA-wh7j-jjqj-c566.json +++ b/advisories/unreviewed/2022/05/GHSA-wh7j-jjqj-c566/GHSA-wh7j-jjqj-c566.json @@ -7,12 +7,8 @@ "CVE-2019-20742" ], "details": "NETGEAR WAC510 devices before 8.0.1.3 are affected by stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh8w-v6q4-fgcv/GHSA-wh8w-v6q4-fgcv.json b/advisories/unreviewed/2022/05/GHSA-wh8w-v6q4-fgcv/GHSA-wh8w-v6q4-fgcv.json index 6db3b45c444..dbb31aa72eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh8w-v6q4-fgcv/GHSA-wh8w-v6q4-fgcv.json +++ b/advisories/unreviewed/2022/05/GHSA-wh8w-v6q4-fgcv/GHSA-wh8w-v6q4-fgcv.json @@ -7,12 +7,8 @@ "CVE-2019-20691" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects D3600 before 1.0.0.72, D6000 before 1.0.0.72, EX3700 before 1.0.0.70, EX3800 before 1.0.0.70, EX6000 before 1.0.0.30, EX6100 before 1.0.2.24, EX6120 before 1.0.0.40, EX6130 before 1.0.0.22, EX6150v1 before 1.0.0.42, EX6200 before 1.0.3.88, EX7000 before 1.0.0.66, and WN2500RPv2 before 1.0.1.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh94-h427-879v/GHSA-wh94-h427-879v.json b/advisories/unreviewed/2022/05/GHSA-wh94-h427-879v/GHSA-wh94-h427-879v.json index 9692e8ff346..3786bcc47f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh94-h427-879v/GHSA-wh94-h427-879v.json +++ b/advisories/unreviewed/2022/05/GHSA-wh94-h427-879v/GHSA-wh94-h427-879v.json @@ -7,12 +7,8 @@ "CVE-2019-10609" ], "details": "Out of bound write can happen due to lack of check of array index value while calculating it. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8076, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9205, MDM9206, MDM9607, MDM9615, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-whhj-9q9w-qff6/GHSA-whhj-9q9w-qff6.json b/advisories/unreviewed/2022/05/GHSA-whhj-9q9w-qff6/GHSA-whhj-9q9w-qff6.json index 9a6d9a23c53..71c7ffd2368 100644 --- a/advisories/unreviewed/2022/05/GHSA-whhj-9q9w-qff6/GHSA-whhj-9q9w-qff6.json +++ b/advisories/unreviewed/2022/05/GHSA-whhj-9q9w-qff6/GHSA-whhj-9q9w-qff6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj3j-vfvc-g245/GHSA-wj3j-vfvc-g245.json b/advisories/unreviewed/2022/05/GHSA-wj3j-vfvc-g245/GHSA-wj3j-vfvc-g245.json index 627185d84bc..13852dfd975 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj3j-vfvc-g245/GHSA-wj3j-vfvc-g245.json +++ b/advisories/unreviewed/2022/05/GHSA-wj3j-vfvc-g245/GHSA-wj3j-vfvc-g245.json @@ -7,12 +7,8 @@ "CVE-2020-9278" ], "details": "An issue was discovered on D-Link DSL-2640B B2 EU_4.01B devices. The device can be reset to its default configuration by accessing an unauthenticated URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmq6-wmq9-8m88/GHSA-wmq6-wmq9-8m88.json b/advisories/unreviewed/2022/05/GHSA-wmq6-wmq9-8m88/GHSA-wmq6-wmq9-8m88.json index c6ac555683d..73301f913ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmq6-wmq9-8m88/GHSA-wmq6-wmq9-8m88.json +++ b/advisories/unreviewed/2022/05/GHSA-wmq6-wmq9-8m88/GHSA-wmq6-wmq9-8m88.json @@ -7,12 +7,8 @@ "CVE-2020-2935" ], "details": "Vulnerability in the Oracle Financial Services Hedge Management and IFRS Valuations product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 - 8.0.8. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Hedge Management and IFRS Valuations. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Hedge Management and IFRS Valuations accessible data as well as unauthorized read access to a subset of Oracle Financial Services Hedge Management and IFRS Valuations accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wr79-387j-7jm9/GHSA-wr79-387j-7jm9.json b/advisories/unreviewed/2022/05/GHSA-wr79-387j-7jm9/GHSA-wr79-387j-7jm9.json index 66ea2a91dab..8afaf746d17 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr79-387j-7jm9/GHSA-wr79-387j-7jm9.json +++ b/advisories/unreviewed/2022/05/GHSA-wr79-387j-7jm9/GHSA-wr79-387j-7jm9.json @@ -7,12 +7,8 @@ "CVE-2019-20784" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 (MTK chipsets) software. Interaction of GPS with 911 emergency calls is mishandled. The LG ID is LVE-SMP-180012 (January 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrpp-7f2q-3j8m/GHSA-wrpp-7f2q-3j8m.json b/advisories/unreviewed/2022/05/GHSA-wrpp-7f2q-3j8m/GHSA-wrpp-7f2q-3j8m.json index 65d786a9180..a7d3b15f5fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrpp-7f2q-3j8m/GHSA-wrpp-7f2q-3j8m.json +++ b/advisories/unreviewed/2022/05/GHSA-wrpp-7f2q-3j8m/GHSA-wrpp-7f2q-3j8m.json @@ -7,12 +7,8 @@ "CVE-2020-4338" ], "details": "IBM MQ 9.1.4 could allow a local attacker to obtain sensitive information by inclusion of sensitive data within runmqras data. IBM X-Force ID: 177937.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrx9-6qv7-wvvw/GHSA-wrx9-6qv7-wvvw.json b/advisories/unreviewed/2022/05/GHSA-wrx9-6qv7-wvvw/GHSA-wrx9-6qv7-wvvw.json index 6aca31470a0..049671018f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrx9-6qv7-wvvw/GHSA-wrx9-6qv7-wvvw.json +++ b/advisories/unreviewed/2022/05/GHSA-wrx9-6qv7-wvvw/GHSA-wrx9-6qv7-wvvw.json @@ -7,12 +7,8 @@ "CVE-2019-19108" ], "details": "An authentication weakness in the SNMP service in B&R Automation Runtime versions 2.96, 3.00, 3.01, 3.06 to 3.10, 4.00 to 4.63, 4.72 and above allows unauthenticated users to modify the configuration of B&R products via SNMP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wvg3-wq8x-32m8/GHSA-wvg3-wq8x-32m8.json b/advisories/unreviewed/2022/05/GHSA-wvg3-wq8x-32m8/GHSA-wvg3-wq8x-32m8.json index 226c5727a02..be75fd5ae10 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvg3-wq8x-32m8/GHSA-wvg3-wq8x-32m8.json +++ b/advisories/unreviewed/2022/05/GHSA-wvg3-wq8x-32m8/GHSA-wvg3-wq8x-32m8.json @@ -7,12 +7,8 @@ "CVE-2019-20682" ], "details": "Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.40, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, R6900v2 before 1.2.0.36, WNR2020 before 1.1.0.62, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wvpx-9v99-j88h/GHSA-wvpx-9v99-j88h.json b/advisories/unreviewed/2022/05/GHSA-wvpx-9v99-j88h/GHSA-wvpx-9v99-j88h.json index 920c4deb56d..8915ba96820 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvpx-9v99-j88h/GHSA-wvpx-9v99-j88h.json +++ b/advisories/unreviewed/2022/05/GHSA-wvpx-9v99-j88h/GHSA-wvpx-9v99-j88h.json @@ -7,12 +7,8 @@ "CVE-2020-2835" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ww4m-7862-x5f3/GHSA-ww4m-7862-x5f3.json b/advisories/unreviewed/2022/05/GHSA-ww4m-7862-x5f3/GHSA-ww4m-7862-x5f3.json index 3ec4775322e..fadb5b74f63 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww4m-7862-x5f3/GHSA-ww4m-7862-x5f3.json +++ b/advisories/unreviewed/2022/05/GHSA-ww4m-7862-x5f3/GHSA-ww4m-7862-x5f3.json @@ -7,12 +7,8 @@ "CVE-2020-2807" ], "details": "Vulnerability in the Oracle Marketing Encyclopedia System product of Oracle E-Business Suite (component: Administration). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing Encyclopedia System. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing Encyclopedia System, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing Encyclopedia System accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing Encyclopedia System accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wwj6-4977-fvxh/GHSA-wwj6-4977-fvxh.json b/advisories/unreviewed/2022/05/GHSA-wwj6-4977-fvxh/GHSA-wwj6-4977-fvxh.json index 43d2188cc24..a664f547f11 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwj6-4977-fvxh/GHSA-wwj6-4977-fvxh.json +++ b/advisories/unreviewed/2022/05/GHSA-wwj6-4977-fvxh/GHSA-wwj6-4977-fvxh.json @@ -7,12 +7,8 @@ "CVE-2020-2841" ], "details": "Vulnerability in the Oracle Knowledge Management product of Oracle E-Business Suite (component: Setup, Admin). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Knowledge Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Knowledge Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Knowledge Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Knowledge Management accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wwrp-583h-frrp/GHSA-wwrp-583h-frrp.json b/advisories/unreviewed/2022/05/GHSA-wwrp-583h-frrp/GHSA-wwrp-583h-frrp.json index 811f52f815a..179a47419de 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwrp-583h-frrp/GHSA-wwrp-583h-frrp.json +++ b/advisories/unreviewed/2022/05/GHSA-wwrp-583h-frrp/GHSA-wwrp-583h-frrp.json @@ -7,12 +7,8 @@ "CVE-2019-20776" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, and 8.1 software. A TZ trusted application can crash via crafted input. The LG ID is LVE-SMP-190005 (July 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wx73-f633-64gg/GHSA-wx73-f633-64gg.json b/advisories/unreviewed/2022/05/GHSA-wx73-f633-64gg/GHSA-wx73-f633-64gg.json index 2ea03b5c415..20137716b92 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx73-f633-64gg/GHSA-wx73-f633-64gg.json +++ b/advisories/unreviewed/2022/05/GHSA-wx73-f633-64gg/GHSA-wx73-f633-64gg.json @@ -7,12 +7,8 @@ "CVE-2019-20710" ], "details": "Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x222-6c25-wc8w/GHSA-x222-6c25-wc8w.json b/advisories/unreviewed/2022/05/GHSA-x222-6c25-wc8w/GHSA-x222-6c25-wc8w.json index 28c631e4300..8a1d2be6948 100644 --- a/advisories/unreviewed/2022/05/GHSA-x222-6c25-wc8w/GHSA-x222-6c25-wc8w.json +++ b/advisories/unreviewed/2022/05/GHSA-x222-6c25-wc8w/GHSA-x222-6c25-wc8w.json @@ -7,12 +7,8 @@ "CVE-2020-7261" ], "details": "Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.7.0 February 2020 Update allows local users to disable Endpoint Security via a carefully crafted user input.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x66p-h7w6-9fqw/GHSA-x66p-h7w6-9fqw.json b/advisories/unreviewed/2022/05/GHSA-x66p-h7w6-9fqw/GHSA-x66p-h7w6-9fqw.json index ab63dd2612f..9871ec15345 100644 --- a/advisories/unreviewed/2022/05/GHSA-x66p-h7w6-9fqw/GHSA-x66p-h7w6-9fqw.json +++ b/advisories/unreviewed/2022/05/GHSA-x66p-h7w6-9fqw/GHSA-x66p-h7w6-9fqw.json @@ -7,12 +7,8 @@ "CVE-2019-14114" ], "details": "Buffer overflow in WLAN firmware while parsing GTK IE containing GTK key having length more than the buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, IPQ6018, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8996AU, MSM8998, Nicobar, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCN7605, QCS404, QCS405, QCS605, Rennell, SA6155P, SC7180, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SM6150, SM7150, SM8150, SXR1130, SXR2130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6q7-jxq7-3h45/GHSA-x6q7-jxq7-3h45.json b/advisories/unreviewed/2022/05/GHSA-x6q7-jxq7-3h45/GHSA-x6q7-jxq7-3h45.json index 295ca98a1bb..93a01681f72 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6q7-jxq7-3h45/GHSA-x6q7-jxq7-3h45.json +++ b/advisories/unreviewed/2022/05/GHSA-x6q7-jxq7-3h45/GHSA-x6q7-jxq7-3h45.json @@ -7,12 +7,8 @@ "CVE-2017-18801" ], "details": "Certain NETGEAR devices are affected by command injection. This affects R6220 before 1.1.0.50, R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, WNDR3700v5 before 1.1.0.48, and D7000 before 1.0.1.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x7h9-rrcq-c95j/GHSA-x7h9-rrcq-c95j.json b/advisories/unreviewed/2022/05/GHSA-x7h9-rrcq-c95j/GHSA-x7h9-rrcq-c95j.json index 967de09cc29..d901a10efb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7h9-rrcq-c95j/GHSA-x7h9-rrcq-c95j.json +++ b/advisories/unreviewed/2022/05/GHSA-x7h9-rrcq-c95j/GHSA-x7h9-rrcq-c95j.json @@ -7,12 +7,8 @@ "CVE-2019-20754" ], "details": "Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects DGN2200 before 1.0.0.58, DGN2200B before 1.0.0.58, D8500 before 1.0.3.42, D7000v2 before 1.0.0.51, D6400 before 1.0.0.80, D6220 before 1.0.0.44, EX7000 before 1.0.0.66, EX6200 before 1.0.3.88, EX6150 before 1.0.0.42, EX7500 before 1.0.0.46, JNDR3000 before 1.0.0.24, R8000 before 1.0.4.18, R8500 before 1.0.2.122, R8300 before 1.0.2.122, R7900P before 1.4.0.10, R8000P before 1.4.0.10, R7900 before 1.0.2.16, R7000P before 1.3.1.44, R7300DST before 1.0.0.68, R7100LG before 1.0.0.46, R6900P before 1.3.1.44, R7000 before 1.0.9.32, R6900 before 1.0.1.46, R6700 before 1.0.1.46, R6400v2 before 1.0.2.56, R6400 before 1.0.1.42, R6300v2 before 1.0.4.28, R6250 before 1.0.4.26, WNDR4500v2 before 1.0.0.72, and WNR3500Lv2 before 1.2.0.54.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8r7-r9w9-jrv6/GHSA-x8r7-r9w9-jrv6.json b/advisories/unreviewed/2022/05/GHSA-x8r7-r9w9-jrv6/GHSA-x8r7-r9w9-jrv6.json index cf72f3207c5..d0657d11caa 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8r7-r9w9-jrv6/GHSA-x8r7-r9w9-jrv6.json +++ b/advisories/unreviewed/2022/05/GHSA-x8r7-r9w9-jrv6/GHSA-x8r7-r9w9-jrv6.json @@ -7,12 +7,8 @@ "CVE-2020-2859" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: nVision). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of PeopleSoft Enterprise PeopleTools. CVSS 3.0 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x9pc-2xp2-2gh9/GHSA-x9pc-2xp2-2gh9.json b/advisories/unreviewed/2022/05/GHSA-x9pc-2xp2-2gh9/GHSA-x9pc-2xp2-2gh9.json index f2941ddda1b..a797a69b6ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9pc-2xp2-2gh9/GHSA-x9pc-2xp2-2gh9.json +++ b/advisories/unreviewed/2022/05/GHSA-x9pc-2xp2-2gh9/GHSA-x9pc-2xp2-2gh9.json @@ -7,12 +7,8 @@ "CVE-2020-3653" ], "details": "Possible buffer over-read in windows wlan driver function due to lack of check of length of variable received from userspace in Snapdragon Compute, Snapdragon Connectivity in MSM8998, QCA6390, SC7180, SC8180X, SDM850", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg2j-3226-439m/GHSA-xg2j-3226-439m.json b/advisories/unreviewed/2022/05/GHSA-xg2j-3226-439m/GHSA-xg2j-3226-439m.json index b49ec68cf60..9d17c5cf94b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg2j-3226-439m/GHSA-xg2j-3226-439m.json +++ b/advisories/unreviewed/2022/05/GHSA-xg2j-3226-439m/GHSA-xg2j-3226-439m.json @@ -7,12 +7,8 @@ "CVE-2020-2964" ], "details": "Vulnerability in the Oracle Financial Services Data Foundation product of Oracle Financial Services Applications (component: User Interface). Supported versions that are affected are 8.0.6 - 8.0.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Financial Services Data Foundation. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Financial Services Data Foundation accessible data as well as unauthorized read access to a subset of Oracle Financial Services Data Foundation accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xg2w-hq3g-4636/GHSA-xg2w-hq3g-4636.json b/advisories/unreviewed/2022/05/GHSA-xg2w-hq3g-4636/GHSA-xg2w-hq3g-4636.json index dc324dc2384..3dd342bcc8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg2w-hq3g-4636/GHSA-xg2w-hq3g-4636.json +++ b/advisories/unreviewed/2022/05/GHSA-xg2w-hq3g-4636/GHSA-xg2w-hq3g-4636.json @@ -7,12 +7,8 @@ "CVE-2020-2826" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xg6m-4668-h9qh/GHSA-xg6m-4668-h9qh.json b/advisories/unreviewed/2022/05/GHSA-xg6m-4668-h9qh/GHSA-xg6m-4668-h9qh.json index bcbc11dcb57..fff3d9ad14b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg6m-4668-h9qh/GHSA-xg6m-4668-h9qh.json +++ b/advisories/unreviewed/2022/05/GHSA-xg6m-4668-h9qh/GHSA-xg6m-4668-h9qh.json @@ -7,12 +7,8 @@ "CVE-2020-7277" ], "details": "Protection mechanism failure in all processes in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 April 2020 Update allows local users to stop certain McAfee ENS processes, reducing the protection offered.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xghj-v4x3-gwvf/GHSA-xghj-v4x3-gwvf.json b/advisories/unreviewed/2022/05/GHSA-xghj-v4x3-gwvf/GHSA-xghj-v4x3-gwvf.json index 7fa16d9147d..969efb0288a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xghj-v4x3-gwvf/GHSA-xghj-v4x3-gwvf.json +++ b/advisories/unreviewed/2022/05/GHSA-xghj-v4x3-gwvf/GHSA-xghj-v4x3-gwvf.json @@ -7,12 +7,8 @@ "CVE-2020-11819" ], "details": "In Rukovoditel 2.5.2, an attacker may inject an arbitrary .php file location instead of a language file and thus achieve command execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhj3-g58j-7g7v/GHSA-xhj3-g58j-7g7v.json b/advisories/unreviewed/2022/05/GHSA-xhj3-g58j-7g7v/GHSA-xhj3-g58j-7g7v.json index ae25aa28b3a..bd5d7923464 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhj3-g58j-7g7v/GHSA-xhj3-g58j-7g7v.json +++ b/advisories/unreviewed/2022/05/GHSA-xhj3-g58j-7g7v/GHSA-xhj3-g58j-7g7v.json @@ -7,12 +7,8 @@ "CVE-2020-2911" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.40, prior to 6.0.20 and prior to 6.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Oracle VM VirtualBox. CVSS 3.0 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xhm5-c3wf-v4h4/GHSA-xhm5-c3wf-v4h4.json b/advisories/unreviewed/2022/05/GHSA-xhm5-c3wf-v4h4/GHSA-xhm5-c3wf-v4h4.json index 1a72a410fce..fe135fa0c09 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhm5-c3wf-v4h4/GHSA-xhm5-c3wf-v4h4.json +++ b/advisories/unreviewed/2022/05/GHSA-xhm5-c3wf-v4h4/GHSA-xhm5-c3wf-v4h4.json @@ -7,12 +7,8 @@ "CVE-2017-18793" ], "details": "NETGEAR R7800 devices before 1.0.2.36 are affected by command injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xhp5-pvv6-r659/GHSA-xhp5-pvv6-r659.json b/advisories/unreviewed/2022/05/GHSA-xhp5-pvv6-r659/GHSA-xhp5-pvv6-r659.json index 79c1ec14859..7cbcf2d38c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhp5-pvv6-r659/GHSA-xhp5-pvv6-r659.json +++ b/advisories/unreviewed/2022/05/GHSA-xhp5-pvv6-r659/GHSA-xhp5-pvv6-r659.json @@ -7,12 +7,8 @@ "CVE-2020-3240" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xj48-mr94-q545/GHSA-xj48-mr94-q545.json b/advisories/unreviewed/2022/05/GHSA-xj48-mr94-q545/GHSA-xj48-mr94-q545.json index 3d23eb8031a..1713a6e7412 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj48-mr94-q545/GHSA-xj48-mr94-q545.json +++ b/advisories/unreviewed/2022/05/GHSA-xj48-mr94-q545/GHSA-xj48-mr94-q545.json @@ -7,12 +7,8 @@ "CVE-2019-20774" ], "details": "An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. A system service allows local retrieval of the user's password. The LG ID is LVE-SMP-190009 (August 2019).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm2g-jw84-7vcv/GHSA-xm2g-jw84-7vcv.json b/advisories/unreviewed/2022/05/GHSA-xm2g-jw84-7vcv/GHSA-xm2g-jw84-7vcv.json index f2715c31365..ad5bb238573 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm2g-jw84-7vcv/GHSA-xm2g-jw84-7vcv.json +++ b/advisories/unreviewed/2022/05/GHSA-xm2g-jw84-7vcv/GHSA-xm2g-jw84-7vcv.json @@ -7,12 +7,8 @@ "CVE-2020-3250" ], "details": "Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xp3h-ccqh-r6p9/GHSA-xp3h-ccqh-r6p9.json b/advisories/unreviewed/2022/05/GHSA-xp3h-ccqh-r6p9/GHSA-xp3h-ccqh-r6p9.json index b0eca4d2112..03db9e8fd6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp3h-ccqh-r6p9/GHSA-xp3h-ccqh-r6p9.json +++ b/advisories/unreviewed/2022/05/GHSA-xp3h-ccqh-r6p9/GHSA-xp3h-ccqh-r6p9.json @@ -7,12 +7,8 @@ "CVE-2020-2824" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xpm5-w5vx-3xw6/GHSA-xpm5-w5vx-3xw6.json b/advisories/unreviewed/2022/05/GHSA-xpm5-w5vx-3xw6/GHSA-xpm5-w5vx-3xw6.json index 16a101c3dfb..e5eb1877d71 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpm5-w5vx-3xw6/GHSA-xpm5-w5vx-3xw6.json +++ b/advisories/unreviewed/2022/05/GHSA-xpm5-w5vx-3xw6/GHSA-xpm5-w5vx-3xw6.json @@ -7,12 +7,8 @@ "CVE-2020-2961" ], "details": "Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Discovery Framework (Oracle OHS)). Supported versions that are affected are 13.2.0.0 and 13.3.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Enterprise Manager Base Platform. Successful attacks of this vulnerability can result in takeover of Enterprise Manager Base Platform. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xprj-64cf-h29h/GHSA-xprj-64cf-h29h.json b/advisories/unreviewed/2022/05/GHSA-xprj-64cf-h29h/GHSA-xprj-64cf-h29h.json index 5bfa1030dfe..2c07f80a592 100644 --- a/advisories/unreviewed/2022/05/GHSA-xprj-64cf-h29h/GHSA-xprj-64cf-h29h.json +++ b/advisories/unreviewed/2022/05/GHSA-xprj-64cf-h29h/GHSA-xprj-64cf-h29h.json @@ -7,12 +7,8 @@ "CVE-2018-21117" ], "details": "NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers via the traceroute handler.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xqwh-qf77-hvhx/GHSA-xqwh-qf77-hvhx.json b/advisories/unreviewed/2022/05/GHSA-xqwh-qf77-hvhx/GHSA-xqwh-qf77-hvhx.json index 4d599960a11..c05a31216b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqwh-qf77-hvhx/GHSA-xqwh-qf77-hvhx.json +++ b/advisories/unreviewed/2022/05/GHSA-xqwh-qf77-hvhx/GHSA-xqwh-qf77-hvhx.json @@ -7,12 +7,8 @@ "CVE-2019-14022" ], "details": "Error occurs While extracting the ipv6_header having an invalid length due to lack of length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8096AU, MDM9205, MDM9206, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, Nicobar, QCM2150, QCS605, QM215, Rennell, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrj3-j65c-j9gg/GHSA-xrj3-j65c-j9gg.json b/advisories/unreviewed/2022/05/GHSA-xrj3-j65c-j9gg/GHSA-xrj3-j65c-j9gg.json index ddcbba8c043..8e23d612329 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrj3-j65c-j9gg/GHSA-xrj3-j65c-j9gg.json +++ b/advisories/unreviewed/2022/05/GHSA-xrj3-j65c-j9gg/GHSA-xrj3-j65c-j9gg.json @@ -7,12 +7,8 @@ "CVE-2017-18791" ], "details": "Certain NETGEAR devices are affected by CSRF. This affects R6050/JR6150 before 1.0.1.7, PR2000 before 1.0.0.17, R6220 before 1.1.0.50, WNDR3700v5 before 1.1.0.48, JNR1010v2 before 1.1.0.40, JWNR2010v5 before 1.1.0.40, WNR1000v4 before 1.1.0.40, WNR2020 before 1.1.0.40, WNR2050 before 1.1.0.40, WNR614 before 1.1.0.40, WNR618 before 1.1.0.40, and D7000 before 1.0.1.50.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xv29-v763-663c/GHSA-xv29-v763-663c.json b/advisories/unreviewed/2022/05/GHSA-xv29-v763-663c/GHSA-xv29-v763-663c.json index 250317f4d3a..4c1ae6b6c88 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv29-v763-663c/GHSA-xv29-v763-663c.json +++ b/advisories/unreviewed/2022/05/GHSA-xv29-v763-663c/GHSA-xv29-v763-663c.json @@ -7,12 +7,8 @@ "CVE-2017-18763" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects JNR1010v2 before 1.1.0.42, JR6150 before 1.0.1.10, JWNR2010v5 before 1.1.0.42, PR2000 before 1.0.0.18, R6050 before 1.0.1.10, R6120 before 1.0.0.30, R6220 before 1.1.0.50, R6700v2 before 1.2.0.4, R6800 before 1.2.0.4, R6900v2 before 1.2.0.4, WNDR3700v5 before 1.1.0.48, WNR1000v4 before 1.1.0.42, WNR2020 before 1.1.0.42, and WNR2050 before 1.1.0.42.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvjq-vrrj-vrmg/GHSA-xvjq-vrrj-vrmg.json b/advisories/unreviewed/2022/05/GHSA-xvjq-vrrj-vrmg/GHSA-xvjq-vrrj-vrmg.json index 834686a9a27..20eb2765bbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvjq-vrrj-vrmg/GHSA-xvjq-vrrj-vrmg.json +++ b/advisories/unreviewed/2022/05/GHSA-xvjq-vrrj-vrmg/GHSA-xvjq-vrrj-vrmg.json @@ -7,12 +7,8 @@ "CVE-2019-20693" ], "details": "Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects WAC505 before 8.0.6.4 and WAC510 before 8.0.6.4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xw2r-q7pv-2r5q/GHSA-xw2r-q7pv-2r5q.json b/advisories/unreviewed/2022/05/GHSA-xw2r-q7pv-2r5q/GHSA-xw2r-q7pv-2r5q.json index 4948b836287..773cc64e2ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw2r-q7pv-2r5q/GHSA-xw2r-q7pv-2r5q.json +++ b/advisories/unreviewed/2022/05/GHSA-xw2r-q7pv-2r5q/GHSA-xw2r-q7pv-2r5q.json @@ -7,12 +7,8 @@ "CVE-2020-6992" ], "details": "A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and prior. If exploited, this vulnerability could allow an adversary to modify the system, leading to the arbitrary execution of code. This vulnerability is only exploitable if an attacker has access to an authenticated session. GE Digital CIMPLICITY v11.0, released January 2020, contains mitigation for this local privilege escalation vulnerability. GE Digital recommends all users upgrade to GE CIMPLICITY v11.0 or newer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xwf3-8452-8j2v/GHSA-xwf3-8452-8j2v.json b/advisories/unreviewed/2022/05/GHSA-xwf3-8452-8j2v/GHSA-xwf3-8452-8j2v.json index dba70be362d..f53c32e3204 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwf3-8452-8j2v/GHSA-xwf3-8452-8j2v.json +++ b/advisories/unreviewed/2022/05/GHSA-xwf3-8452-8j2v/GHSA-xwf3-8452-8j2v.json @@ -7,12 +7,8 @@ "CVE-2019-14134" ], "details": "Possible out of bound access in WLAN handler when the received value of length in rx path is shorter than the expected value of country IE in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ8074, QCA8081, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xx27-vcf5-wm84/GHSA-xx27-vcf5-wm84.json b/advisories/unreviewed/2022/05/GHSA-xx27-vcf5-wm84/GHSA-xx27-vcf5-wm84.json index 274f9e7cb3e..bf5c2b5e07f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xx27-vcf5-wm84/GHSA-xx27-vcf5-wm84.json +++ b/advisories/unreviewed/2022/05/GHSA-xx27-vcf5-wm84/GHSA-xx27-vcf5-wm84.json @@ -7,12 +7,8 @@ "CVE-2019-14001" ], "details": "Wrong public key usage from existing oem_keystore for hash generation in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8953, MSM8996AU, QM215, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDX20", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxmv-mjx9-wg53/GHSA-xxmv-mjx9-wg53.json b/advisories/unreviewed/2022/05/GHSA-xxmv-mjx9-wg53/GHSA-xxmv-mjx9-wg53.json index ad46eae3673..7e09761de50 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxmv-mjx9-wg53/GHSA-xxmv-mjx9-wg53.json +++ b/advisories/unreviewed/2022/05/GHSA-xxmv-mjx9-wg53/GHSA-xxmv-mjx9-wg53.json @@ -7,12 +7,8 @@ "CVE-2020-11826" ], "details": "Users can lock their notes with a password in Memono version 3.8. Thus, users needs to know a password to read notes. However, these notes are stored in a database without encryption and an attacker can read the password-protected notes without having the password. Notes are stored in the ZENTITY table in the memono.sqlite database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-cj9x-22ff-w7h8/GHSA-cj9x-22ff-w7h8.json b/advisories/unreviewed/2022/11/GHSA-cj9x-22ff-w7h8/GHSA-cj9x-22ff-w7h8.json index 910f073a9dc..a8473348f48 100644 --- a/advisories/unreviewed/2022/11/GHSA-cj9x-22ff-w7h8/GHSA-cj9x-22ff-w7h8.json +++ b/advisories/unreviewed/2022/11/GHSA-cj9x-22ff-w7h8/GHSA-cj9x-22ff-w7h8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-cjhx-7pr5-4vmp/GHSA-cjhx-7pr5-4vmp.json b/advisories/unreviewed/2022/11/GHSA-cjhx-7pr5-4vmp/GHSA-cjhx-7pr5-4vmp.json index 1a3aaf1eade..340ebceb220 100644 --- a/advisories/unreviewed/2022/11/GHSA-cjhx-7pr5-4vmp/GHSA-cjhx-7pr5-4vmp.json +++ b/advisories/unreviewed/2022/11/GHSA-cjhx-7pr5-4vmp/GHSA-cjhx-7pr5-4vmp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-mm7h-p3v8-j9f3/GHSA-mm7h-p3v8-j9f3.json b/advisories/unreviewed/2022/11/GHSA-mm7h-p3v8-j9f3/GHSA-mm7h-p3v8-j9f3.json index f689e1269ef..0d4f1ce6cfe 100644 --- a/advisories/unreviewed/2022/11/GHSA-mm7h-p3v8-j9f3/GHSA-mm7h-p3v8-j9f3.json +++ b/advisories/unreviewed/2022/11/GHSA-mm7h-p3v8-j9f3/GHSA-mm7h-p3v8-j9f3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-rf7p-43wm-xppq/GHSA-rf7p-43wm-xppq.json b/advisories/unreviewed/2022/11/GHSA-rf7p-43wm-xppq/GHSA-rf7p-43wm-xppq.json index 8e3a33576f9..98fa7c99e70 100644 --- a/advisories/unreviewed/2022/11/GHSA-rf7p-43wm-xppq/GHSA-rf7p-43wm-xppq.json +++ b/advisories/unreviewed/2022/11/GHSA-rf7p-43wm-xppq/GHSA-rf7p-43wm-xppq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-ppfv-9rmx-jjrq/GHSA-ppfv-9rmx-jjrq.json b/advisories/unreviewed/2023/07/GHSA-ppfv-9rmx-jjrq/GHSA-ppfv-9rmx-jjrq.json index b3599ddd021..a21e61714f6 100644 --- a/advisories/unreviewed/2023/07/GHSA-ppfv-9rmx-jjrq/GHSA-ppfv-9rmx-jjrq.json +++ b/advisories/unreviewed/2023/07/GHSA-ppfv-9rmx-jjrq/GHSA-ppfv-9rmx-jjrq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-p26g-v4j8-8qc5/GHSA-p26g-v4j8-8qc5.json b/advisories/unreviewed/2024/04/GHSA-p26g-v4j8-8qc5/GHSA-p26g-v4j8-8qc5.json index e8dc4a9e00c..6afbc3ea8e5 100644 --- a/advisories/unreviewed/2024/04/GHSA-p26g-v4j8-8qc5/GHSA-p26g-v4j8-8qc5.json +++ b/advisories/unreviewed/2024/04/GHSA-p26g-v4j8-8qc5/GHSA-p26g-v4j8-8qc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-29vf-q3vj-x378/GHSA-29vf-q3vj-x378.json b/advisories/unreviewed/2024/05/GHSA-29vf-q3vj-x378/GHSA-29vf-q3vj-x378.json index b3da0fe87ab..920aee47886 100644 --- a/advisories/unreviewed/2024/05/GHSA-29vf-q3vj-x378/GHSA-29vf-q3vj-x378.json +++ b/advisories/unreviewed/2024/05/GHSA-29vf-q3vj-x378/GHSA-29vf-q3vj-x378.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2cf5-v9qq-xv7v/GHSA-2cf5-v9qq-xv7v.json b/advisories/unreviewed/2024/05/GHSA-2cf5-v9qq-xv7v/GHSA-2cf5-v9qq-xv7v.json index df661556b66..8bb29dd7f8f 100644 --- a/advisories/unreviewed/2024/05/GHSA-2cf5-v9qq-xv7v/GHSA-2cf5-v9qq-xv7v.json +++ b/advisories/unreviewed/2024/05/GHSA-2cf5-v9qq-xv7v/GHSA-2cf5-v9qq-xv7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2frj-c98p-mhg3/GHSA-2frj-c98p-mhg3.json b/advisories/unreviewed/2024/05/GHSA-2frj-c98p-mhg3/GHSA-2frj-c98p-mhg3.json index 1fbcfab7313..d0768ddac45 100644 --- a/advisories/unreviewed/2024/05/GHSA-2frj-c98p-mhg3/GHSA-2frj-c98p-mhg3.json +++ b/advisories/unreviewed/2024/05/GHSA-2frj-c98p-mhg3/GHSA-2frj-c98p-mhg3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2jrj-24m8-rmrv/GHSA-2jrj-24m8-rmrv.json b/advisories/unreviewed/2024/05/GHSA-2jrj-24m8-rmrv/GHSA-2jrj-24m8-rmrv.json index bb2438ab5dc..224438b984c 100644 --- a/advisories/unreviewed/2024/05/GHSA-2jrj-24m8-rmrv/GHSA-2jrj-24m8-rmrv.json +++ b/advisories/unreviewed/2024/05/GHSA-2jrj-24m8-rmrv/GHSA-2jrj-24m8-rmrv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-2mqg-9v38-rpr6/GHSA-2mqg-9v38-rpr6.json b/advisories/unreviewed/2024/05/GHSA-2mqg-9v38-rpr6/GHSA-2mqg-9v38-rpr6.json index de3da55ec54..c640715b8fa 100644 --- a/advisories/unreviewed/2024/05/GHSA-2mqg-9v38-rpr6/GHSA-2mqg-9v38-rpr6.json +++ b/advisories/unreviewed/2024/05/GHSA-2mqg-9v38-rpr6/GHSA-2mqg-9v38-rpr6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2qxx-wjxw-fg87/GHSA-2qxx-wjxw-fg87.json b/advisories/unreviewed/2024/05/GHSA-2qxx-wjxw-fg87/GHSA-2qxx-wjxw-fg87.json index 7ea61bf73af..d1d4b21f527 100644 --- a/advisories/unreviewed/2024/05/GHSA-2qxx-wjxw-fg87/GHSA-2qxx-wjxw-fg87.json +++ b/advisories/unreviewed/2024/05/GHSA-2qxx-wjxw-fg87/GHSA-2qxx-wjxw-fg87.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2r93-mg8p-xx85/GHSA-2r93-mg8p-xx85.json b/advisories/unreviewed/2024/05/GHSA-2r93-mg8p-xx85/GHSA-2r93-mg8p-xx85.json index bb37fb11619..acbe572281a 100644 --- a/advisories/unreviewed/2024/05/GHSA-2r93-mg8p-xx85/GHSA-2r93-mg8p-xx85.json +++ b/advisories/unreviewed/2024/05/GHSA-2r93-mg8p-xx85/GHSA-2r93-mg8p-xx85.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-2wmc-xmv6-fhjq/GHSA-2wmc-xmv6-fhjq.json b/advisories/unreviewed/2024/05/GHSA-2wmc-xmv6-fhjq/GHSA-2wmc-xmv6-fhjq.json index 00977594c6f..d73b93a185b 100644 --- a/advisories/unreviewed/2024/05/GHSA-2wmc-xmv6-fhjq/GHSA-2wmc-xmv6-fhjq.json +++ b/advisories/unreviewed/2024/05/GHSA-2wmc-xmv6-fhjq/GHSA-2wmc-xmv6-fhjq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-32q4-6g3f-wq36/GHSA-32q4-6g3f-wq36.json b/advisories/unreviewed/2024/05/GHSA-32q4-6g3f-wq36/GHSA-32q4-6g3f-wq36.json index 5aaa05090a3..8c8fbd23aef 100644 --- a/advisories/unreviewed/2024/05/GHSA-32q4-6g3f-wq36/GHSA-32q4-6g3f-wq36.json +++ b/advisories/unreviewed/2024/05/GHSA-32q4-6g3f-wq36/GHSA-32q4-6g3f-wq36.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-33xc-pj2q-h2rm/GHSA-33xc-pj2q-h2rm.json b/advisories/unreviewed/2024/05/GHSA-33xc-pj2q-h2rm/GHSA-33xc-pj2q-h2rm.json index 6c064038c5b..ee9ddd84ab5 100644 --- a/advisories/unreviewed/2024/05/GHSA-33xc-pj2q-h2rm/GHSA-33xc-pj2q-h2rm.json +++ b/advisories/unreviewed/2024/05/GHSA-33xc-pj2q-h2rm/GHSA-33xc-pj2q-h2rm.json @@ -7,12 +7,8 @@ "CVE-2024-4424" ], "details": "The access control in CemiPark software does not properly validate user-entered data, which allows the stored cross-site scripting (XSS) attack. The parameters used to enter data into the system do not have appropriate validation, which makes possible to smuggle in HTML/JavaScript code. This code will be executed in the user's browser space.This issue affects CemiPark software: 4.5, 4.7, 5.03 and potentially others. The vendor refused to provide the specific range of affected products.\n\n", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-34r8-fv4m-hxcv/GHSA-34r8-fv4m-hxcv.json b/advisories/unreviewed/2024/05/GHSA-34r8-fv4m-hxcv/GHSA-34r8-fv4m-hxcv.json index 6a56228a411..e052d42a0ea 100644 --- a/advisories/unreviewed/2024/05/GHSA-34r8-fv4m-hxcv/GHSA-34r8-fv4m-hxcv.json +++ b/advisories/unreviewed/2024/05/GHSA-34r8-fv4m-hxcv/GHSA-34r8-fv4m-hxcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3563-pvjf-xg5g/GHSA-3563-pvjf-xg5g.json b/advisories/unreviewed/2024/05/GHSA-3563-pvjf-xg5g/GHSA-3563-pvjf-xg5g.json index b91927eab8b..88abbd89a52 100644 --- a/advisories/unreviewed/2024/05/GHSA-3563-pvjf-xg5g/GHSA-3563-pvjf-xg5g.json +++ b/advisories/unreviewed/2024/05/GHSA-3563-pvjf-xg5g/GHSA-3563-pvjf-xg5g.json @@ -7,12 +7,8 @@ "CVE-2024-3582" ], "details": "The UnGallery WordPress plugin through 2.2.4 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-36j3-2772-j983/GHSA-36j3-2772-j983.json b/advisories/unreviewed/2024/05/GHSA-36j3-2772-j983/GHSA-36j3-2772-j983.json index 1d42693f088..51c0e08915e 100644 --- a/advisories/unreviewed/2024/05/GHSA-36j3-2772-j983/GHSA-36j3-2772-j983.json +++ b/advisories/unreviewed/2024/05/GHSA-36j3-2772-j983/GHSA-36j3-2772-j983.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3c75-fpmc-wjhf/GHSA-3c75-fpmc-wjhf.json b/advisories/unreviewed/2024/05/GHSA-3c75-fpmc-wjhf/GHSA-3c75-fpmc-wjhf.json index d75dac66ffe..9ad0ba83970 100644 --- a/advisories/unreviewed/2024/05/GHSA-3c75-fpmc-wjhf/GHSA-3c75-fpmc-wjhf.json +++ b/advisories/unreviewed/2024/05/GHSA-3c75-fpmc-wjhf/GHSA-3c75-fpmc-wjhf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3fx2-9cxr-pgrx/GHSA-3fx2-9cxr-pgrx.json b/advisories/unreviewed/2024/05/GHSA-3fx2-9cxr-pgrx/GHSA-3fx2-9cxr-pgrx.json index d52fd604b11..ead5a021d0c 100644 --- a/advisories/unreviewed/2024/05/GHSA-3fx2-9cxr-pgrx/GHSA-3fx2-9cxr-pgrx.json +++ b/advisories/unreviewed/2024/05/GHSA-3fx2-9cxr-pgrx/GHSA-3fx2-9cxr-pgrx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3g4v-p46q-rp5h/GHSA-3g4v-p46q-rp5h.json b/advisories/unreviewed/2024/05/GHSA-3g4v-p46q-rp5h/GHSA-3g4v-p46q-rp5h.json index fe0df0b6276..940603db40d 100644 --- a/advisories/unreviewed/2024/05/GHSA-3g4v-p46q-rp5h/GHSA-3g4v-p46q-rp5h.json +++ b/advisories/unreviewed/2024/05/GHSA-3g4v-p46q-rp5h/GHSA-3g4v-p46q-rp5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3mwv-hr6q-qhg5/GHSA-3mwv-hr6q-qhg5.json b/advisories/unreviewed/2024/05/GHSA-3mwv-hr6q-qhg5/GHSA-3mwv-hr6q-qhg5.json index b7f21aeaba9..b0a04e11dfe 100644 --- a/advisories/unreviewed/2024/05/GHSA-3mwv-hr6q-qhg5/GHSA-3mwv-hr6q-qhg5.json +++ b/advisories/unreviewed/2024/05/GHSA-3mwv-hr6q-qhg5/GHSA-3mwv-hr6q-qhg5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3pgg-fxm7-xv3p/GHSA-3pgg-fxm7-xv3p.json b/advisories/unreviewed/2024/05/GHSA-3pgg-fxm7-xv3p/GHSA-3pgg-fxm7-xv3p.json index 12456c66a0e..7bcbaf3d7f9 100644 --- a/advisories/unreviewed/2024/05/GHSA-3pgg-fxm7-xv3p/GHSA-3pgg-fxm7-xv3p.json +++ b/advisories/unreviewed/2024/05/GHSA-3pgg-fxm7-xv3p/GHSA-3pgg-fxm7-xv3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3r64-w67f-5vfx/GHSA-3r64-w67f-5vfx.json b/advisories/unreviewed/2024/05/GHSA-3r64-w67f-5vfx/GHSA-3r64-w67f-5vfx.json index d5ac1ac2b7f..865fafe5152 100644 --- a/advisories/unreviewed/2024/05/GHSA-3r64-w67f-5vfx/GHSA-3r64-w67f-5vfx.json +++ b/advisories/unreviewed/2024/05/GHSA-3r64-w67f-5vfx/GHSA-3r64-w67f-5vfx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-45qr-p7v6-rhwv/GHSA-45qr-p7v6-rhwv.json b/advisories/unreviewed/2024/05/GHSA-45qr-p7v6-rhwv/GHSA-45qr-p7v6-rhwv.json index b13b1be49b8..c777e9a93c2 100644 --- a/advisories/unreviewed/2024/05/GHSA-45qr-p7v6-rhwv/GHSA-45qr-p7v6-rhwv.json +++ b/advisories/unreviewed/2024/05/GHSA-45qr-p7v6-rhwv/GHSA-45qr-p7v6-rhwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-46qx-cv76-mrg4/GHSA-46qx-cv76-mrg4.json b/advisories/unreviewed/2024/05/GHSA-46qx-cv76-mrg4/GHSA-46qx-cv76-mrg4.json index 352d02b655a..c8984cb8352 100644 --- a/advisories/unreviewed/2024/05/GHSA-46qx-cv76-mrg4/GHSA-46qx-cv76-mrg4.json +++ b/advisories/unreviewed/2024/05/GHSA-46qx-cv76-mrg4/GHSA-46qx-cv76-mrg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-48hg-jgx7-3qf5/GHSA-48hg-jgx7-3qf5.json b/advisories/unreviewed/2024/05/GHSA-48hg-jgx7-3qf5/GHSA-48hg-jgx7-3qf5.json index d1b435ae1bc..b77956927ec 100644 --- a/advisories/unreviewed/2024/05/GHSA-48hg-jgx7-3qf5/GHSA-48hg-jgx7-3qf5.json +++ b/advisories/unreviewed/2024/05/GHSA-48hg-jgx7-3qf5/GHSA-48hg-jgx7-3qf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-48vf-pq83-g67j/GHSA-48vf-pq83-g67j.json b/advisories/unreviewed/2024/05/GHSA-48vf-pq83-g67j/GHSA-48vf-pq83-g67j.json index 460d63bcf12..02589190e86 100644 --- a/advisories/unreviewed/2024/05/GHSA-48vf-pq83-g67j/GHSA-48vf-pq83-g67j.json +++ b/advisories/unreviewed/2024/05/GHSA-48vf-pq83-g67j/GHSA-48vf-pq83-g67j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4h95-2x33-pw42/GHSA-4h95-2x33-pw42.json b/advisories/unreviewed/2024/05/GHSA-4h95-2x33-pw42/GHSA-4h95-2x33-pw42.json index ff844203ff9..74b452a2f2a 100644 --- a/advisories/unreviewed/2024/05/GHSA-4h95-2x33-pw42/GHSA-4h95-2x33-pw42.json +++ b/advisories/unreviewed/2024/05/GHSA-4h95-2x33-pw42/GHSA-4h95-2x33-pw42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-4hj4-pj6v-jj6q/GHSA-4hj4-pj6v-jj6q.json b/advisories/unreviewed/2024/05/GHSA-4hj4-pj6v-jj6q/GHSA-4hj4-pj6v-jj6q.json index 52f3b51d41d..ee6fcf43894 100644 --- a/advisories/unreviewed/2024/05/GHSA-4hj4-pj6v-jj6q/GHSA-4hj4-pj6v-jj6q.json +++ b/advisories/unreviewed/2024/05/GHSA-4hj4-pj6v-jj6q/GHSA-4hj4-pj6v-jj6q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4jgx-c2mv-3qmc/GHSA-4jgx-c2mv-3qmc.json b/advisories/unreviewed/2024/05/GHSA-4jgx-c2mv-3qmc/GHSA-4jgx-c2mv-3qmc.json index 36bbcdce33c..b585616387e 100644 --- a/advisories/unreviewed/2024/05/GHSA-4jgx-c2mv-3qmc/GHSA-4jgx-c2mv-3qmc.json +++ b/advisories/unreviewed/2024/05/GHSA-4jgx-c2mv-3qmc/GHSA-4jgx-c2mv-3qmc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4qcf-w92c-26h6/GHSA-4qcf-w92c-26h6.json b/advisories/unreviewed/2024/05/GHSA-4qcf-w92c-26h6/GHSA-4qcf-w92c-26h6.json index 7c00c1a95da..3149a960cdd 100644 --- a/advisories/unreviewed/2024/05/GHSA-4qcf-w92c-26h6/GHSA-4qcf-w92c-26h6.json +++ b/advisories/unreviewed/2024/05/GHSA-4qcf-w92c-26h6/GHSA-4qcf-w92c-26h6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4whf-wfxv-5x64/GHSA-4whf-wfxv-5x64.json b/advisories/unreviewed/2024/05/GHSA-4whf-wfxv-5x64/GHSA-4whf-wfxv-5x64.json index 4733bcba93b..8ed36094166 100644 --- a/advisories/unreviewed/2024/05/GHSA-4whf-wfxv-5x64/GHSA-4whf-wfxv-5x64.json +++ b/advisories/unreviewed/2024/05/GHSA-4whf-wfxv-5x64/GHSA-4whf-wfxv-5x64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-52wr-qfvp-rcxr/GHSA-52wr-qfvp-rcxr.json b/advisories/unreviewed/2024/05/GHSA-52wr-qfvp-rcxr/GHSA-52wr-qfvp-rcxr.json index f6436b291ee..d2c304c6049 100644 --- a/advisories/unreviewed/2024/05/GHSA-52wr-qfvp-rcxr/GHSA-52wr-qfvp-rcxr.json +++ b/advisories/unreviewed/2024/05/GHSA-52wr-qfvp-rcxr/GHSA-52wr-qfvp-rcxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-55r5-grwq-562w/GHSA-55r5-grwq-562w.json b/advisories/unreviewed/2024/05/GHSA-55r5-grwq-562w/GHSA-55r5-grwq-562w.json index 8aba1fccd5b..48717b17fa7 100644 --- a/advisories/unreviewed/2024/05/GHSA-55r5-grwq-562w/GHSA-55r5-grwq-562w.json +++ b/advisories/unreviewed/2024/05/GHSA-55r5-grwq-562w/GHSA-55r5-grwq-562w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-58w9-v8v9-gjq4/GHSA-58w9-v8v9-gjq4.json b/advisories/unreviewed/2024/05/GHSA-58w9-v8v9-gjq4/GHSA-58w9-v8v9-gjq4.json index ba343bb1638..9e8010e1478 100644 --- a/advisories/unreviewed/2024/05/GHSA-58w9-v8v9-gjq4/GHSA-58w9-v8v9-gjq4.json +++ b/advisories/unreviewed/2024/05/GHSA-58w9-v8v9-gjq4/GHSA-58w9-v8v9-gjq4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5cwh-6h2g-6hfc/GHSA-5cwh-6h2g-6hfc.json b/advisories/unreviewed/2024/05/GHSA-5cwh-6h2g-6hfc/GHSA-5cwh-6h2g-6hfc.json index 9a5d4864f53..0bcf984b6b9 100644 --- a/advisories/unreviewed/2024/05/GHSA-5cwh-6h2g-6hfc/GHSA-5cwh-6h2g-6hfc.json +++ b/advisories/unreviewed/2024/05/GHSA-5cwh-6h2g-6hfc/GHSA-5cwh-6h2g-6hfc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5fj3-qh5c-64g3/GHSA-5fj3-qh5c-64g3.json b/advisories/unreviewed/2024/05/GHSA-5fj3-qh5c-64g3/GHSA-5fj3-qh5c-64g3.json index 8a15983aff4..bc749d5f3cc 100644 --- a/advisories/unreviewed/2024/05/GHSA-5fj3-qh5c-64g3/GHSA-5fj3-qh5c-64g3.json +++ b/advisories/unreviewed/2024/05/GHSA-5fj3-qh5c-64g3/GHSA-5fj3-qh5c-64g3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5g4h-3xj2-7jr8/GHSA-5g4h-3xj2-7jr8.json b/advisories/unreviewed/2024/05/GHSA-5g4h-3xj2-7jr8/GHSA-5g4h-3xj2-7jr8.json index fe0bee2f910..26d7fc7c2cc 100644 --- a/advisories/unreviewed/2024/05/GHSA-5g4h-3xj2-7jr8/GHSA-5g4h-3xj2-7jr8.json +++ b/advisories/unreviewed/2024/05/GHSA-5g4h-3xj2-7jr8/GHSA-5g4h-3xj2-7jr8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5hjg-chj2-7wf8/GHSA-5hjg-chj2-7wf8.json b/advisories/unreviewed/2024/05/GHSA-5hjg-chj2-7wf8/GHSA-5hjg-chj2-7wf8.json index 5acbaa9edd8..8fbe0008da0 100644 --- a/advisories/unreviewed/2024/05/GHSA-5hjg-chj2-7wf8/GHSA-5hjg-chj2-7wf8.json +++ b/advisories/unreviewed/2024/05/GHSA-5hjg-chj2-7wf8/GHSA-5hjg-chj2-7wf8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-5j77-4768-gfxq/GHSA-5j77-4768-gfxq.json b/advisories/unreviewed/2024/05/GHSA-5j77-4768-gfxq/GHSA-5j77-4768-gfxq.json index e26c50b6ec1..c6799afc68a 100644 --- a/advisories/unreviewed/2024/05/GHSA-5j77-4768-gfxq/GHSA-5j77-4768-gfxq.json +++ b/advisories/unreviewed/2024/05/GHSA-5j77-4768-gfxq/GHSA-5j77-4768-gfxq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-5jpr-j92r-8ppm/GHSA-5jpr-j92r-8ppm.json b/advisories/unreviewed/2024/05/GHSA-5jpr-j92r-8ppm/GHSA-5jpr-j92r-8ppm.json index bd5a74e53d5..5a336e0e4dc 100644 --- a/advisories/unreviewed/2024/05/GHSA-5jpr-j92r-8ppm/GHSA-5jpr-j92r-8ppm.json +++ b/advisories/unreviewed/2024/05/GHSA-5jpr-j92r-8ppm/GHSA-5jpr-j92r-8ppm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5m6x-5xrq-f4hv/GHSA-5m6x-5xrq-f4hv.json b/advisories/unreviewed/2024/05/GHSA-5m6x-5xrq-f4hv/GHSA-5m6x-5xrq-f4hv.json index 68b608337a4..6c9df7670d7 100644 --- a/advisories/unreviewed/2024/05/GHSA-5m6x-5xrq-f4hv/GHSA-5m6x-5xrq-f4hv.json +++ b/advisories/unreviewed/2024/05/GHSA-5m6x-5xrq-f4hv/GHSA-5m6x-5xrq-f4hv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5qf5-xcc6-qrmw/GHSA-5qf5-xcc6-qrmw.json b/advisories/unreviewed/2024/05/GHSA-5qf5-xcc6-qrmw/GHSA-5qf5-xcc6-qrmw.json index 7365edf93cb..9ea96985516 100644 --- a/advisories/unreviewed/2024/05/GHSA-5qf5-xcc6-qrmw/GHSA-5qf5-xcc6-qrmw.json +++ b/advisories/unreviewed/2024/05/GHSA-5qf5-xcc6-qrmw/GHSA-5qf5-xcc6-qrmw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5qxw-g92h-6p89/GHSA-5qxw-g92h-6p89.json b/advisories/unreviewed/2024/05/GHSA-5qxw-g92h-6p89/GHSA-5qxw-g92h-6p89.json index 25aa6ee076c..9519e08748e 100644 --- a/advisories/unreviewed/2024/05/GHSA-5qxw-g92h-6p89/GHSA-5qxw-g92h-6p89.json +++ b/advisories/unreviewed/2024/05/GHSA-5qxw-g92h-6p89/GHSA-5qxw-g92h-6p89.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5xvh-qhhj-5v4v/GHSA-5xvh-qhhj-5v4v.json b/advisories/unreviewed/2024/05/GHSA-5xvh-qhhj-5v4v/GHSA-5xvh-qhhj-5v4v.json index 8f1cbb12765..f49ccadf27f 100644 --- a/advisories/unreviewed/2024/05/GHSA-5xvh-qhhj-5v4v/GHSA-5xvh-qhhj-5v4v.json +++ b/advisories/unreviewed/2024/05/GHSA-5xvh-qhhj-5v4v/GHSA-5xvh-qhhj-5v4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-625g-2phw-x35x/GHSA-625g-2phw-x35x.json b/advisories/unreviewed/2024/05/GHSA-625g-2phw-x35x/GHSA-625g-2phw-x35x.json index cdba3c6f8d2..3b2e1b60858 100644 --- a/advisories/unreviewed/2024/05/GHSA-625g-2phw-x35x/GHSA-625g-2phw-x35x.json +++ b/advisories/unreviewed/2024/05/GHSA-625g-2phw-x35x/GHSA-625g-2phw-x35x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-65xw-m2hr-mgc4/GHSA-65xw-m2hr-mgc4.json b/advisories/unreviewed/2024/05/GHSA-65xw-m2hr-mgc4/GHSA-65xw-m2hr-mgc4.json index 59944cf61c6..87cab9a6948 100644 --- a/advisories/unreviewed/2024/05/GHSA-65xw-m2hr-mgc4/GHSA-65xw-m2hr-mgc4.json +++ b/advisories/unreviewed/2024/05/GHSA-65xw-m2hr-mgc4/GHSA-65xw-m2hr-mgc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-675q-h7hw-82g4/GHSA-675q-h7hw-82g4.json b/advisories/unreviewed/2024/05/GHSA-675q-h7hw-82g4/GHSA-675q-h7hw-82g4.json index c1a8cc7721c..9254a6c3714 100644 --- a/advisories/unreviewed/2024/05/GHSA-675q-h7hw-82g4/GHSA-675q-h7hw-82g4.json +++ b/advisories/unreviewed/2024/05/GHSA-675q-h7hw-82g4/GHSA-675q-h7hw-82g4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-6cfr-gxcq-rvxr/GHSA-6cfr-gxcq-rvxr.json b/advisories/unreviewed/2024/05/GHSA-6cfr-gxcq-rvxr/GHSA-6cfr-gxcq-rvxr.json index 50cbefe2be7..e63de9d9182 100644 --- a/advisories/unreviewed/2024/05/GHSA-6cfr-gxcq-rvxr/GHSA-6cfr-gxcq-rvxr.json +++ b/advisories/unreviewed/2024/05/GHSA-6cfr-gxcq-rvxr/GHSA-6cfr-gxcq-rvxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6gcr-m3gw-825g/GHSA-6gcr-m3gw-825g.json b/advisories/unreviewed/2024/05/GHSA-6gcr-m3gw-825g/GHSA-6gcr-m3gw-825g.json index c76a2855c96..5dd7cd75a7c 100644 --- a/advisories/unreviewed/2024/05/GHSA-6gcr-m3gw-825g/GHSA-6gcr-m3gw-825g.json +++ b/advisories/unreviewed/2024/05/GHSA-6gcr-m3gw-825g/GHSA-6gcr-m3gw-825g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-6gf8-6jhr-vrww/GHSA-6gf8-6jhr-vrww.json b/advisories/unreviewed/2024/05/GHSA-6gf8-6jhr-vrww/GHSA-6gf8-6jhr-vrww.json index edb0e3aaa3b..9b8a9622f68 100644 --- a/advisories/unreviewed/2024/05/GHSA-6gf8-6jhr-vrww/GHSA-6gf8-6jhr-vrww.json +++ b/advisories/unreviewed/2024/05/GHSA-6gf8-6jhr-vrww/GHSA-6gf8-6jhr-vrww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6jcq-5j67-2qh3/GHSA-6jcq-5j67-2qh3.json b/advisories/unreviewed/2024/05/GHSA-6jcq-5j67-2qh3/GHSA-6jcq-5j67-2qh3.json index 1c059594d2f..84be008b356 100644 --- a/advisories/unreviewed/2024/05/GHSA-6jcq-5j67-2qh3/GHSA-6jcq-5j67-2qh3.json +++ b/advisories/unreviewed/2024/05/GHSA-6jcq-5j67-2qh3/GHSA-6jcq-5j67-2qh3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6mm4-6fv2-2r26/GHSA-6mm4-6fv2-2r26.json b/advisories/unreviewed/2024/05/GHSA-6mm4-6fv2-2r26/GHSA-6mm4-6fv2-2r26.json index a4ba12967d7..2f735b31a1f 100644 --- a/advisories/unreviewed/2024/05/GHSA-6mm4-6fv2-2r26/GHSA-6mm4-6fv2-2r26.json +++ b/advisories/unreviewed/2024/05/GHSA-6mm4-6fv2-2r26/GHSA-6mm4-6fv2-2r26.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6mr9-w244-4v7m/GHSA-6mr9-w244-4v7m.json b/advisories/unreviewed/2024/05/GHSA-6mr9-w244-4v7m/GHSA-6mr9-w244-4v7m.json index 434c673f8c4..45189280be5 100644 --- a/advisories/unreviewed/2024/05/GHSA-6mr9-w244-4v7m/GHSA-6mr9-w244-4v7m.json +++ b/advisories/unreviewed/2024/05/GHSA-6mr9-w244-4v7m/GHSA-6mr9-w244-4v7m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-6mxw-ww5r-4fqq/GHSA-6mxw-ww5r-4fqq.json b/advisories/unreviewed/2024/05/GHSA-6mxw-ww5r-4fqq/GHSA-6mxw-ww5r-4fqq.json index 9f7b9c4fd91..4110cd4811d 100644 --- a/advisories/unreviewed/2024/05/GHSA-6mxw-ww5r-4fqq/GHSA-6mxw-ww5r-4fqq.json +++ b/advisories/unreviewed/2024/05/GHSA-6mxw-ww5r-4fqq/GHSA-6mxw-ww5r-4fqq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-6rv3-q74h-h7v3/GHSA-6rv3-q74h-h7v3.json b/advisories/unreviewed/2024/05/GHSA-6rv3-q74h-h7v3/GHSA-6rv3-q74h-h7v3.json index 0f247c26718..ad09a13f42a 100644 --- a/advisories/unreviewed/2024/05/GHSA-6rv3-q74h-h7v3/GHSA-6rv3-q74h-h7v3.json +++ b/advisories/unreviewed/2024/05/GHSA-6rv3-q74h-h7v3/GHSA-6rv3-q74h-h7v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-6v26-2m6m-3xjp/GHSA-6v26-2m6m-3xjp.json b/advisories/unreviewed/2024/05/GHSA-6v26-2m6m-3xjp/GHSA-6v26-2m6m-3xjp.json index 1b1160c7621..8a23cbba42d 100644 --- a/advisories/unreviewed/2024/05/GHSA-6v26-2m6m-3xjp/GHSA-6v26-2m6m-3xjp.json +++ b/advisories/unreviewed/2024/05/GHSA-6v26-2m6m-3xjp/GHSA-6v26-2m6m-3xjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6v8p-vh6x-pghw/GHSA-6v8p-vh6x-pghw.json b/advisories/unreviewed/2024/05/GHSA-6v8p-vh6x-pghw/GHSA-6v8p-vh6x-pghw.json index 44424982073..1debe380806 100644 --- a/advisories/unreviewed/2024/05/GHSA-6v8p-vh6x-pghw/GHSA-6v8p-vh6x-pghw.json +++ b/advisories/unreviewed/2024/05/GHSA-6v8p-vh6x-pghw/GHSA-6v8p-vh6x-pghw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-6w47-73p5-43gv/GHSA-6w47-73p5-43gv.json b/advisories/unreviewed/2024/05/GHSA-6w47-73p5-43gv/GHSA-6w47-73p5-43gv.json index 779b28f7674..f14b978bb73 100644 --- a/advisories/unreviewed/2024/05/GHSA-6w47-73p5-43gv/GHSA-6w47-73p5-43gv.json +++ b/advisories/unreviewed/2024/05/GHSA-6w47-73p5-43gv/GHSA-6w47-73p5-43gv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-7643-2fwv-2483/GHSA-7643-2fwv-2483.json b/advisories/unreviewed/2024/05/GHSA-7643-2fwv-2483/GHSA-7643-2fwv-2483.json index eff6f2491a7..0af83a48db5 100644 --- a/advisories/unreviewed/2024/05/GHSA-7643-2fwv-2483/GHSA-7643-2fwv-2483.json +++ b/advisories/unreviewed/2024/05/GHSA-7643-2fwv-2483/GHSA-7643-2fwv-2483.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-78fw-7x7x-3gwf/GHSA-78fw-7x7x-3gwf.json b/advisories/unreviewed/2024/05/GHSA-78fw-7x7x-3gwf/GHSA-78fw-7x7x-3gwf.json index 03167da2fc9..aa956cc58c1 100644 --- a/advisories/unreviewed/2024/05/GHSA-78fw-7x7x-3gwf/GHSA-78fw-7x7x-3gwf.json +++ b/advisories/unreviewed/2024/05/GHSA-78fw-7x7x-3gwf/GHSA-78fw-7x7x-3gwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7p6x-vmqm-g4wc/GHSA-7p6x-vmqm-g4wc.json b/advisories/unreviewed/2024/05/GHSA-7p6x-vmqm-g4wc/GHSA-7p6x-vmqm-g4wc.json index 4af23c07f35..6dbad4de992 100644 --- a/advisories/unreviewed/2024/05/GHSA-7p6x-vmqm-g4wc/GHSA-7p6x-vmqm-g4wc.json +++ b/advisories/unreviewed/2024/05/GHSA-7p6x-vmqm-g4wc/GHSA-7p6x-vmqm-g4wc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-7pc5-hxvc-3h98/GHSA-7pc5-hxvc-3h98.json b/advisories/unreviewed/2024/05/GHSA-7pc5-hxvc-3h98/GHSA-7pc5-hxvc-3h98.json index b924136b2bc..6c3e505095b 100644 --- a/advisories/unreviewed/2024/05/GHSA-7pc5-hxvc-3h98/GHSA-7pc5-hxvc-3h98.json +++ b/advisories/unreviewed/2024/05/GHSA-7pc5-hxvc-3h98/GHSA-7pc5-hxvc-3h98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7v23-ggpr-r58j/GHSA-7v23-ggpr-r58j.json b/advisories/unreviewed/2024/05/GHSA-7v23-ggpr-r58j/GHSA-7v23-ggpr-r58j.json index 327487cbd00..5b60fa9f1dc 100644 --- a/advisories/unreviewed/2024/05/GHSA-7v23-ggpr-r58j/GHSA-7v23-ggpr-r58j.json +++ b/advisories/unreviewed/2024/05/GHSA-7v23-ggpr-r58j/GHSA-7v23-ggpr-r58j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-829x-599p-43vg/GHSA-829x-599p-43vg.json b/advisories/unreviewed/2024/05/GHSA-829x-599p-43vg/GHSA-829x-599p-43vg.json index b5ba4ff1527..8e4bc84855b 100644 --- a/advisories/unreviewed/2024/05/GHSA-829x-599p-43vg/GHSA-829x-599p-43vg.json +++ b/advisories/unreviewed/2024/05/GHSA-829x-599p-43vg/GHSA-829x-599p-43vg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-86cm-6r27-h7c6/GHSA-86cm-6r27-h7c6.json b/advisories/unreviewed/2024/05/GHSA-86cm-6r27-h7c6/GHSA-86cm-6r27-h7c6.json index e863ce11052..e6d16f42458 100644 --- a/advisories/unreviewed/2024/05/GHSA-86cm-6r27-h7c6/GHSA-86cm-6r27-h7c6.json +++ b/advisories/unreviewed/2024/05/GHSA-86cm-6r27-h7c6/GHSA-86cm-6r27-h7c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-899m-qj3x-m494/GHSA-899m-qj3x-m494.json b/advisories/unreviewed/2024/05/GHSA-899m-qj3x-m494/GHSA-899m-qj3x-m494.json index 8768249e71c..4639dce7443 100644 --- a/advisories/unreviewed/2024/05/GHSA-899m-qj3x-m494/GHSA-899m-qj3x-m494.json +++ b/advisories/unreviewed/2024/05/GHSA-899m-qj3x-m494/GHSA-899m-qj3x-m494.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-8c9g-w38h-qxj2/GHSA-8c9g-w38h-qxj2.json b/advisories/unreviewed/2024/05/GHSA-8c9g-w38h-qxj2/GHSA-8c9g-w38h-qxj2.json index ea9cf4bbbad..d22262b0310 100644 --- a/advisories/unreviewed/2024/05/GHSA-8c9g-w38h-qxj2/GHSA-8c9g-w38h-qxj2.json +++ b/advisories/unreviewed/2024/05/GHSA-8c9g-w38h-qxj2/GHSA-8c9g-w38h-qxj2.json @@ -7,12 +7,8 @@ "CVE-2024-3941" ], "details": "The reCAPTCHA Jetpack WordPress plugin through 0.2.2 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged-in admin add Stored XSS payloads via a CSRF attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-8cpp-w4p7-vjq4/GHSA-8cpp-w4p7-vjq4.json b/advisories/unreviewed/2024/05/GHSA-8cpp-w4p7-vjq4/GHSA-8cpp-w4p7-vjq4.json index 68f61618af0..5d814cacc41 100644 --- a/advisories/unreviewed/2024/05/GHSA-8cpp-w4p7-vjq4/GHSA-8cpp-w4p7-vjq4.json +++ b/advisories/unreviewed/2024/05/GHSA-8cpp-w4p7-vjq4/GHSA-8cpp-w4p7-vjq4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-8cw6-3v7h-5jxr/GHSA-8cw6-3v7h-5jxr.json b/advisories/unreviewed/2024/05/GHSA-8cw6-3v7h-5jxr/GHSA-8cw6-3v7h-5jxr.json index 648c37ef8ee..f2a0766ea17 100644 --- a/advisories/unreviewed/2024/05/GHSA-8cw6-3v7h-5jxr/GHSA-8cw6-3v7h-5jxr.json +++ b/advisories/unreviewed/2024/05/GHSA-8cw6-3v7h-5jxr/GHSA-8cw6-3v7h-5jxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8hh7-xjj5-hfr6/GHSA-8hh7-xjj5-hfr6.json b/advisories/unreviewed/2024/05/GHSA-8hh7-xjj5-hfr6/GHSA-8hh7-xjj5-hfr6.json index f8a6987c2b6..2def0678682 100644 --- a/advisories/unreviewed/2024/05/GHSA-8hh7-xjj5-hfr6/GHSA-8hh7-xjj5-hfr6.json +++ b/advisories/unreviewed/2024/05/GHSA-8hh7-xjj5-hfr6/GHSA-8hh7-xjj5-hfr6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8hqc-m445-x46q/GHSA-8hqc-m445-x46q.json b/advisories/unreviewed/2024/05/GHSA-8hqc-m445-x46q/GHSA-8hqc-m445-x46q.json index 235d6e5c150..06c12c6fe8b 100644 --- a/advisories/unreviewed/2024/05/GHSA-8hqc-m445-x46q/GHSA-8hqc-m445-x46q.json +++ b/advisories/unreviewed/2024/05/GHSA-8hqc-m445-x46q/GHSA-8hqc-m445-x46q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-8mrm-5f5v-g6v4/GHSA-8mrm-5f5v-g6v4.json b/advisories/unreviewed/2024/05/GHSA-8mrm-5f5v-g6v4/GHSA-8mrm-5f5v-g6v4.json index f5b10b1609a..bc217e40cf7 100644 --- a/advisories/unreviewed/2024/05/GHSA-8mrm-5f5v-g6v4/GHSA-8mrm-5f5v-g6v4.json +++ b/advisories/unreviewed/2024/05/GHSA-8mrm-5f5v-g6v4/GHSA-8mrm-5f5v-g6v4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8q3w-rh8p-p597/GHSA-8q3w-rh8p-p597.json b/advisories/unreviewed/2024/05/GHSA-8q3w-rh8p-p597/GHSA-8q3w-rh8p-p597.json index 126cd040490..2776b22b3ad 100644 --- a/advisories/unreviewed/2024/05/GHSA-8q3w-rh8p-p597/GHSA-8q3w-rh8p-p597.json +++ b/advisories/unreviewed/2024/05/GHSA-8q3w-rh8p-p597/GHSA-8q3w-rh8p-p597.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8xmw-rw82-vwq9/GHSA-8xmw-rw82-vwq9.json b/advisories/unreviewed/2024/05/GHSA-8xmw-rw82-vwq9/GHSA-8xmw-rw82-vwq9.json index 05decc571de..e66edbab87c 100644 --- a/advisories/unreviewed/2024/05/GHSA-8xmw-rw82-vwq9/GHSA-8xmw-rw82-vwq9.json +++ b/advisories/unreviewed/2024/05/GHSA-8xmw-rw82-vwq9/GHSA-8xmw-rw82-vwq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8xqm-fcrc-hfc2/GHSA-8xqm-fcrc-hfc2.json b/advisories/unreviewed/2024/05/GHSA-8xqm-fcrc-hfc2/GHSA-8xqm-fcrc-hfc2.json index a2eeb4e90ef..968a8568b7f 100644 --- a/advisories/unreviewed/2024/05/GHSA-8xqm-fcrc-hfc2/GHSA-8xqm-fcrc-hfc2.json +++ b/advisories/unreviewed/2024/05/GHSA-8xqm-fcrc-hfc2/GHSA-8xqm-fcrc-hfc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-95gx-q433-7q5x/GHSA-95gx-q433-7q5x.json b/advisories/unreviewed/2024/05/GHSA-95gx-q433-7q5x/GHSA-95gx-q433-7q5x.json index 2d33a7b8407..8c8ec66045d 100644 --- a/advisories/unreviewed/2024/05/GHSA-95gx-q433-7q5x/GHSA-95gx-q433-7q5x.json +++ b/advisories/unreviewed/2024/05/GHSA-95gx-q433-7q5x/GHSA-95gx-q433-7q5x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-9f23-fjmq-42p8/GHSA-9f23-fjmq-42p8.json b/advisories/unreviewed/2024/05/GHSA-9f23-fjmq-42p8/GHSA-9f23-fjmq-42p8.json index 59f881d7300..437b5d40c5f 100644 --- a/advisories/unreviewed/2024/05/GHSA-9f23-fjmq-42p8/GHSA-9f23-fjmq-42p8.json +++ b/advisories/unreviewed/2024/05/GHSA-9f23-fjmq-42p8/GHSA-9f23-fjmq-42p8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9f66-8q8q-hcr5/GHSA-9f66-8q8q-hcr5.json b/advisories/unreviewed/2024/05/GHSA-9f66-8q8q-hcr5/GHSA-9f66-8q8q-hcr5.json index 931432afd18..7d4fc7a27bd 100644 --- a/advisories/unreviewed/2024/05/GHSA-9f66-8q8q-hcr5/GHSA-9f66-8q8q-hcr5.json +++ b/advisories/unreviewed/2024/05/GHSA-9f66-8q8q-hcr5/GHSA-9f66-8q8q-hcr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9g46-vg36-jfrh/GHSA-9g46-vg36-jfrh.json b/advisories/unreviewed/2024/05/GHSA-9g46-vg36-jfrh/GHSA-9g46-vg36-jfrh.json index 23bd8020032..173821b3fba 100644 --- a/advisories/unreviewed/2024/05/GHSA-9g46-vg36-jfrh/GHSA-9g46-vg36-jfrh.json +++ b/advisories/unreviewed/2024/05/GHSA-9g46-vg36-jfrh/GHSA-9g46-vg36-jfrh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9j76-vhxq-c93p/GHSA-9j76-vhxq-c93p.json b/advisories/unreviewed/2024/05/GHSA-9j76-vhxq-c93p/GHSA-9j76-vhxq-c93p.json index 4d7a36ed0d8..4aa5f5c4d7b 100644 --- a/advisories/unreviewed/2024/05/GHSA-9j76-vhxq-c93p/GHSA-9j76-vhxq-c93p.json +++ b/advisories/unreviewed/2024/05/GHSA-9j76-vhxq-c93p/GHSA-9j76-vhxq-c93p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9jcm-v2gm-fpx9/GHSA-9jcm-v2gm-fpx9.json b/advisories/unreviewed/2024/05/GHSA-9jcm-v2gm-fpx9/GHSA-9jcm-v2gm-fpx9.json index 459039d32e2..7e06d8a0b91 100644 --- a/advisories/unreviewed/2024/05/GHSA-9jcm-v2gm-fpx9/GHSA-9jcm-v2gm-fpx9.json +++ b/advisories/unreviewed/2024/05/GHSA-9jcm-v2gm-fpx9/GHSA-9jcm-v2gm-fpx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9mgf-hh2m-346c/GHSA-9mgf-hh2m-346c.json b/advisories/unreviewed/2024/05/GHSA-9mgf-hh2m-346c/GHSA-9mgf-hh2m-346c.json index b3074515759..e99563eef80 100644 --- a/advisories/unreviewed/2024/05/GHSA-9mgf-hh2m-346c/GHSA-9mgf-hh2m-346c.json +++ b/advisories/unreviewed/2024/05/GHSA-9mgf-hh2m-346c/GHSA-9mgf-hh2m-346c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-9pqc-cpp8-5mgq/GHSA-9pqc-cpp8-5mgq.json b/advisories/unreviewed/2024/05/GHSA-9pqc-cpp8-5mgq/GHSA-9pqc-cpp8-5mgq.json index 26606926038..bbdf1849168 100644 --- a/advisories/unreviewed/2024/05/GHSA-9pqc-cpp8-5mgq/GHSA-9pqc-cpp8-5mgq.json +++ b/advisories/unreviewed/2024/05/GHSA-9pqc-cpp8-5mgq/GHSA-9pqc-cpp8-5mgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-9q25-42cq-gfc7/GHSA-9q25-42cq-gfc7.json b/advisories/unreviewed/2024/05/GHSA-9q25-42cq-gfc7/GHSA-9q25-42cq-gfc7.json index 5a0e18ff92f..84c51d723c1 100644 --- a/advisories/unreviewed/2024/05/GHSA-9q25-42cq-gfc7/GHSA-9q25-42cq-gfc7.json +++ b/advisories/unreviewed/2024/05/GHSA-9q25-42cq-gfc7/GHSA-9q25-42cq-gfc7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-9rg3-rx78-443j/GHSA-9rg3-rx78-443j.json b/advisories/unreviewed/2024/05/GHSA-9rg3-rx78-443j/GHSA-9rg3-rx78-443j.json index f0aefcd98ef..6d05f976cce 100644 --- a/advisories/unreviewed/2024/05/GHSA-9rg3-rx78-443j/GHSA-9rg3-rx78-443j.json +++ b/advisories/unreviewed/2024/05/GHSA-9rg3-rx78-443j/GHSA-9rg3-rx78-443j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9rp9-4vx9-p834/GHSA-9rp9-4vx9-p834.json b/advisories/unreviewed/2024/05/GHSA-9rp9-4vx9-p834/GHSA-9rp9-4vx9-p834.json index ba94e2e5a67..7f3f3763435 100644 --- a/advisories/unreviewed/2024/05/GHSA-9rp9-4vx9-p834/GHSA-9rp9-4vx9-p834.json +++ b/advisories/unreviewed/2024/05/GHSA-9rp9-4vx9-p834/GHSA-9rp9-4vx9-p834.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-9xgx-pghh-rxhj/GHSA-9xgx-pghh-rxhj.json b/advisories/unreviewed/2024/05/GHSA-9xgx-pghh-rxhj/GHSA-9xgx-pghh-rxhj.json index b717b04f740..59960b50cb3 100644 --- a/advisories/unreviewed/2024/05/GHSA-9xgx-pghh-rxhj/GHSA-9xgx-pghh-rxhj.json +++ b/advisories/unreviewed/2024/05/GHSA-9xgx-pghh-rxhj/GHSA-9xgx-pghh-rxhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-c567-7qg2-3q96/GHSA-c567-7qg2-3q96.json b/advisories/unreviewed/2024/05/GHSA-c567-7qg2-3q96/GHSA-c567-7qg2-3q96.json index 09206d73935..76be636a2fe 100644 --- a/advisories/unreviewed/2024/05/GHSA-c567-7qg2-3q96/GHSA-c567-7qg2-3q96.json +++ b/advisories/unreviewed/2024/05/GHSA-c567-7qg2-3q96/GHSA-c567-7qg2-3q96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-c58x-2x8h-gwq3/GHSA-c58x-2x8h-gwq3.json b/advisories/unreviewed/2024/05/GHSA-c58x-2x8h-gwq3/GHSA-c58x-2x8h-gwq3.json index 7eb73a2b413..3106443f81e 100644 --- a/advisories/unreviewed/2024/05/GHSA-c58x-2x8h-gwq3/GHSA-c58x-2x8h-gwq3.json +++ b/advisories/unreviewed/2024/05/GHSA-c58x-2x8h-gwq3/GHSA-c58x-2x8h-gwq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-c89w-7vg6-jwf8/GHSA-c89w-7vg6-jwf8.json b/advisories/unreviewed/2024/05/GHSA-c89w-7vg6-jwf8/GHSA-c89w-7vg6-jwf8.json index 6fa9462c37e..a4ced5345bf 100644 --- a/advisories/unreviewed/2024/05/GHSA-c89w-7vg6-jwf8/GHSA-c89w-7vg6-jwf8.json +++ b/advisories/unreviewed/2024/05/GHSA-c89w-7vg6-jwf8/GHSA-c89w-7vg6-jwf8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cg84-5q9m-25fg/GHSA-cg84-5q9m-25fg.json b/advisories/unreviewed/2024/05/GHSA-cg84-5q9m-25fg/GHSA-cg84-5q9m-25fg.json index 875b48607fd..b142b08e873 100644 --- a/advisories/unreviewed/2024/05/GHSA-cg84-5q9m-25fg/GHSA-cg84-5q9m-25fg.json +++ b/advisories/unreviewed/2024/05/GHSA-cg84-5q9m-25fg/GHSA-cg84-5q9m-25fg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-cmw3-49qh-hmrx/GHSA-cmw3-49qh-hmrx.json b/advisories/unreviewed/2024/05/GHSA-cmw3-49qh-hmrx/GHSA-cmw3-49qh-hmrx.json index dc02e7e9942..1bfa8074f4b 100644 --- a/advisories/unreviewed/2024/05/GHSA-cmw3-49qh-hmrx/GHSA-cmw3-49qh-hmrx.json +++ b/advisories/unreviewed/2024/05/GHSA-cmw3-49qh-hmrx/GHSA-cmw3-49qh-hmrx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cppw-g2r8-74hj/GHSA-cppw-g2r8-74hj.json b/advisories/unreviewed/2024/05/GHSA-cppw-g2r8-74hj/GHSA-cppw-g2r8-74hj.json index a8edcc3691d..205abc83f6c 100644 --- a/advisories/unreviewed/2024/05/GHSA-cppw-g2r8-74hj/GHSA-cppw-g2r8-74hj.json +++ b/advisories/unreviewed/2024/05/GHSA-cppw-g2r8-74hj/GHSA-cppw-g2r8-74hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cwgp-23hp-834m/GHSA-cwgp-23hp-834m.json b/advisories/unreviewed/2024/05/GHSA-cwgp-23hp-834m/GHSA-cwgp-23hp-834m.json index 47f742c9a38..afa857317d3 100644 --- a/advisories/unreviewed/2024/05/GHSA-cwgp-23hp-834m/GHSA-cwgp-23hp-834m.json +++ b/advisories/unreviewed/2024/05/GHSA-cwgp-23hp-834m/GHSA-cwgp-23hp-834m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cwrr-rgjr-h7qv/GHSA-cwrr-rgjr-h7qv.json b/advisories/unreviewed/2024/05/GHSA-cwrr-rgjr-h7qv/GHSA-cwrr-rgjr-h7qv.json index 257e57076bf..5c57a8077f5 100644 --- a/advisories/unreviewed/2024/05/GHSA-cwrr-rgjr-h7qv/GHSA-cwrr-rgjr-h7qv.json +++ b/advisories/unreviewed/2024/05/GHSA-cwrr-rgjr-h7qv/GHSA-cwrr-rgjr-h7qv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-f3jp-2j8m-99gg/GHSA-f3jp-2j8m-99gg.json b/advisories/unreviewed/2024/05/GHSA-f3jp-2j8m-99gg/GHSA-f3jp-2j8m-99gg.json index 6d556f8479d..2bf3a8accd1 100644 --- a/advisories/unreviewed/2024/05/GHSA-f3jp-2j8m-99gg/GHSA-f3jp-2j8m-99gg.json +++ b/advisories/unreviewed/2024/05/GHSA-f3jp-2j8m-99gg/GHSA-f3jp-2j8m-99gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-f5r7-653f-66mv/GHSA-f5r7-653f-66mv.json b/advisories/unreviewed/2024/05/GHSA-f5r7-653f-66mv/GHSA-f5r7-653f-66mv.json index a73cc4e7667..352511f2579 100644 --- a/advisories/unreviewed/2024/05/GHSA-f5r7-653f-66mv/GHSA-f5r7-653f-66mv.json +++ b/advisories/unreviewed/2024/05/GHSA-f5r7-653f-66mv/GHSA-f5r7-653f-66mv.json @@ -7,12 +7,8 @@ "CVE-2024-22910" ], "details": "Cross Site Scripting (XSS) vulnerability in CrushFTP v.10.6.0 and v.10.5.5 allows an attacker to execute arbitrary code via a crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-fcq8-3x5r-8cpc/GHSA-fcq8-3x5r-8cpc.json b/advisories/unreviewed/2024/05/GHSA-fcq8-3x5r-8cpc/GHSA-fcq8-3x5r-8cpc.json index a19aacb47bd..defed7eac17 100644 --- a/advisories/unreviewed/2024/05/GHSA-fcq8-3x5r-8cpc/GHSA-fcq8-3x5r-8cpc.json +++ b/advisories/unreviewed/2024/05/GHSA-fcq8-3x5r-8cpc/GHSA-fcq8-3x5r-8cpc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fmjg-m7v7-76wx/GHSA-fmjg-m7v7-76wx.json b/advisories/unreviewed/2024/05/GHSA-fmjg-m7v7-76wx/GHSA-fmjg-m7v7-76wx.json index e1cd0bb573e..7b9953d4d1b 100644 --- a/advisories/unreviewed/2024/05/GHSA-fmjg-m7v7-76wx/GHSA-fmjg-m7v7-76wx.json +++ b/advisories/unreviewed/2024/05/GHSA-fmjg-m7v7-76wx/GHSA-fmjg-m7v7-76wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fq2p-4p8g-3975/GHSA-fq2p-4p8g-3975.json b/advisories/unreviewed/2024/05/GHSA-fq2p-4p8g-3975/GHSA-fq2p-4p8g-3975.json index 02485609319..d126d74a87f 100644 --- a/advisories/unreviewed/2024/05/GHSA-fq2p-4p8g-3975/GHSA-fq2p-4p8g-3975.json +++ b/advisories/unreviewed/2024/05/GHSA-fq2p-4p8g-3975/GHSA-fq2p-4p8g-3975.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-frfw-jrj7-8fg6/GHSA-frfw-jrj7-8fg6.json b/advisories/unreviewed/2024/05/GHSA-frfw-jrj7-8fg6/GHSA-frfw-jrj7-8fg6.json index 8786c2b6950..8cd6b33a5d7 100644 --- a/advisories/unreviewed/2024/05/GHSA-frfw-jrj7-8fg6/GHSA-frfw-jrj7-8fg6.json +++ b/advisories/unreviewed/2024/05/GHSA-frfw-jrj7-8fg6/GHSA-frfw-jrj7-8fg6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fvxc-8783-g54p/GHSA-fvxc-8783-g54p.json b/advisories/unreviewed/2024/05/GHSA-fvxc-8783-g54p/GHSA-fvxc-8783-g54p.json index b14dd8ee5d0..94438af7996 100644 --- a/advisories/unreviewed/2024/05/GHSA-fvxc-8783-g54p/GHSA-fvxc-8783-g54p.json +++ b/advisories/unreviewed/2024/05/GHSA-fvxc-8783-g54p/GHSA-fvxc-8783-g54p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-fwhj-j6cr-5qw4/GHSA-fwhj-j6cr-5qw4.json b/advisories/unreviewed/2024/05/GHSA-fwhj-j6cr-5qw4/GHSA-fwhj-j6cr-5qw4.json index 35c2b87d74a..e484dedac16 100644 --- a/advisories/unreviewed/2024/05/GHSA-fwhj-j6cr-5qw4/GHSA-fwhj-j6cr-5qw4.json +++ b/advisories/unreviewed/2024/05/GHSA-fwhj-j6cr-5qw4/GHSA-fwhj-j6cr-5qw4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g2f6-h5vw-x98w/GHSA-g2f6-h5vw-x98w.json b/advisories/unreviewed/2024/05/GHSA-g2f6-h5vw-x98w/GHSA-g2f6-h5vw-x98w.json index a4c6ebe4bf9..f3ab40af15f 100644 --- a/advisories/unreviewed/2024/05/GHSA-g2f6-h5vw-x98w/GHSA-g2f6-h5vw-x98w.json +++ b/advisories/unreviewed/2024/05/GHSA-g2f6-h5vw-x98w/GHSA-g2f6-h5vw-x98w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g3r5-h3r8-7552/GHSA-g3r5-h3r8-7552.json b/advisories/unreviewed/2024/05/GHSA-g3r5-h3r8-7552/GHSA-g3r5-h3r8-7552.json index 906c0d80264..16364e962fa 100644 --- a/advisories/unreviewed/2024/05/GHSA-g3r5-h3r8-7552/GHSA-g3r5-h3r8-7552.json +++ b/advisories/unreviewed/2024/05/GHSA-g3r5-h3r8-7552/GHSA-g3r5-h3r8-7552.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g46f-wcpw-hwv7/GHSA-g46f-wcpw-hwv7.json b/advisories/unreviewed/2024/05/GHSA-g46f-wcpw-hwv7/GHSA-g46f-wcpw-hwv7.json index 672540f799f..c2f925d8e56 100644 --- a/advisories/unreviewed/2024/05/GHSA-g46f-wcpw-hwv7/GHSA-g46f-wcpw-hwv7.json +++ b/advisories/unreviewed/2024/05/GHSA-g46f-wcpw-hwv7/GHSA-g46f-wcpw-hwv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g4mw-24j5-44qj/GHSA-g4mw-24j5-44qj.json b/advisories/unreviewed/2024/05/GHSA-g4mw-24j5-44qj/GHSA-g4mw-24j5-44qj.json index 270423a2371..fefb05116ab 100644 --- a/advisories/unreviewed/2024/05/GHSA-g4mw-24j5-44qj/GHSA-g4mw-24j5-44qj.json +++ b/advisories/unreviewed/2024/05/GHSA-g4mw-24j5-44qj/GHSA-g4mw-24j5-44qj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g4p7-qhc7-8m3v/GHSA-g4p7-qhc7-8m3v.json b/advisories/unreviewed/2024/05/GHSA-g4p7-qhc7-8m3v/GHSA-g4p7-qhc7-8m3v.json index bec9737f10f..2500bc87e3b 100644 --- a/advisories/unreviewed/2024/05/GHSA-g4p7-qhc7-8m3v/GHSA-g4p7-qhc7-8m3v.json +++ b/advisories/unreviewed/2024/05/GHSA-g4p7-qhc7-8m3v/GHSA-g4p7-qhc7-8m3v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g69m-pxw8-9r4c/GHSA-g69m-pxw8-9r4c.json b/advisories/unreviewed/2024/05/GHSA-g69m-pxw8-9r4c/GHSA-g69m-pxw8-9r4c.json index c517b81a951..47cf5e6f3f1 100644 --- a/advisories/unreviewed/2024/05/GHSA-g69m-pxw8-9r4c/GHSA-g69m-pxw8-9r4c.json +++ b/advisories/unreviewed/2024/05/GHSA-g69m-pxw8-9r4c/GHSA-g69m-pxw8-9r4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g749-g2h4-gjcm/GHSA-g749-g2h4-gjcm.json b/advisories/unreviewed/2024/05/GHSA-g749-g2h4-gjcm/GHSA-g749-g2h4-gjcm.json index a1b2175dae9..aaec007bfad 100644 --- a/advisories/unreviewed/2024/05/GHSA-g749-g2h4-gjcm/GHSA-g749-g2h4-gjcm.json +++ b/advisories/unreviewed/2024/05/GHSA-g749-g2h4-gjcm/GHSA-g749-g2h4-gjcm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g78h-6697-3h7r/GHSA-g78h-6697-3h7r.json b/advisories/unreviewed/2024/05/GHSA-g78h-6697-3h7r/GHSA-g78h-6697-3h7r.json index 1f247550d26..e6e47e385f3 100644 --- a/advisories/unreviewed/2024/05/GHSA-g78h-6697-3h7r/GHSA-g78h-6697-3h7r.json +++ b/advisories/unreviewed/2024/05/GHSA-g78h-6697-3h7r/GHSA-g78h-6697-3h7r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-g7f3-xvjg-6grj/GHSA-g7f3-xvjg-6grj.json b/advisories/unreviewed/2024/05/GHSA-g7f3-xvjg-6grj/GHSA-g7f3-xvjg-6grj.json index ca4634b0f01..63b1bb27ef7 100644 --- a/advisories/unreviewed/2024/05/GHSA-g7f3-xvjg-6grj/GHSA-g7f3-xvjg-6grj.json +++ b/advisories/unreviewed/2024/05/GHSA-g7f3-xvjg-6grj/GHSA-g7f3-xvjg-6grj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-g82j-wprp-q9q9/GHSA-g82j-wprp-q9q9.json b/advisories/unreviewed/2024/05/GHSA-g82j-wprp-q9q9/GHSA-g82j-wprp-q9q9.json index 31a5a6979e6..992dcc1d858 100644 --- a/advisories/unreviewed/2024/05/GHSA-g82j-wprp-q9q9/GHSA-g82j-wprp-q9q9.json +++ b/advisories/unreviewed/2024/05/GHSA-g82j-wprp-q9q9/GHSA-g82j-wprp-q9q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-ggcw-7gr7-458r/GHSA-ggcw-7gr7-458r.json b/advisories/unreviewed/2024/05/GHSA-ggcw-7gr7-458r/GHSA-ggcw-7gr7-458r.json index 495cedb29b9..a8222e53d93 100644 --- a/advisories/unreviewed/2024/05/GHSA-ggcw-7gr7-458r/GHSA-ggcw-7gr7-458r.json +++ b/advisories/unreviewed/2024/05/GHSA-ggcw-7gr7-458r/GHSA-ggcw-7gr7-458r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-gwvv-qc8g-gmwc/GHSA-gwvv-qc8g-gmwc.json b/advisories/unreviewed/2024/05/GHSA-gwvv-qc8g-gmwc/GHSA-gwvv-qc8g-gmwc.json index e271b0f0c4a..3b730557dd0 100644 --- a/advisories/unreviewed/2024/05/GHSA-gwvv-qc8g-gmwc/GHSA-gwvv-qc8g-gmwc.json +++ b/advisories/unreviewed/2024/05/GHSA-gwvv-qc8g-gmwc/GHSA-gwvv-qc8g-gmwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-gww7-xg42-6356/GHSA-gww7-xg42-6356.json b/advisories/unreviewed/2024/05/GHSA-gww7-xg42-6356/GHSA-gww7-xg42-6356.json index b23365bedbf..665c17f4647 100644 --- a/advisories/unreviewed/2024/05/GHSA-gww7-xg42-6356/GHSA-gww7-xg42-6356.json +++ b/advisories/unreviewed/2024/05/GHSA-gww7-xg42-6356/GHSA-gww7-xg42-6356.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h262-6v4r-hfm3/GHSA-h262-6v4r-hfm3.json b/advisories/unreviewed/2024/05/GHSA-h262-6v4r-hfm3/GHSA-h262-6v4r-hfm3.json index a38a2946754..938af5caeab 100644 --- a/advisories/unreviewed/2024/05/GHSA-h262-6v4r-hfm3/GHSA-h262-6v4r-hfm3.json +++ b/advisories/unreviewed/2024/05/GHSA-h262-6v4r-hfm3/GHSA-h262-6v4r-hfm3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h2gr-w6qq-3rf4/GHSA-h2gr-w6qq-3rf4.json b/advisories/unreviewed/2024/05/GHSA-h2gr-w6qq-3rf4/GHSA-h2gr-w6qq-3rf4.json index 214b0b1e077..1d5760591ec 100644 --- a/advisories/unreviewed/2024/05/GHSA-h2gr-w6qq-3rf4/GHSA-h2gr-w6qq-3rf4.json +++ b/advisories/unreviewed/2024/05/GHSA-h2gr-w6qq-3rf4/GHSA-h2gr-w6qq-3rf4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h399-7836-2p9c/GHSA-h399-7836-2p9c.json b/advisories/unreviewed/2024/05/GHSA-h399-7836-2p9c/GHSA-h399-7836-2p9c.json index a4bf9660062..4f9e1e5c13b 100644 --- a/advisories/unreviewed/2024/05/GHSA-h399-7836-2p9c/GHSA-h399-7836-2p9c.json +++ b/advisories/unreviewed/2024/05/GHSA-h399-7836-2p9c/GHSA-h399-7836-2p9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h4hg-8g88-jp73/GHSA-h4hg-8g88-jp73.json b/advisories/unreviewed/2024/05/GHSA-h4hg-8g88-jp73/GHSA-h4hg-8g88-jp73.json index fa6d5e5e235..230613166c8 100644 --- a/advisories/unreviewed/2024/05/GHSA-h4hg-8g88-jp73/GHSA-h4hg-8g88-jp73.json +++ b/advisories/unreviewed/2024/05/GHSA-h4hg-8g88-jp73/GHSA-h4hg-8g88-jp73.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h525-7gmx-5gmx/GHSA-h525-7gmx-5gmx.json b/advisories/unreviewed/2024/05/GHSA-h525-7gmx-5gmx/GHSA-h525-7gmx-5gmx.json index ee0f1f7669c..a15f84837bb 100644 --- a/advisories/unreviewed/2024/05/GHSA-h525-7gmx-5gmx/GHSA-h525-7gmx-5gmx.json +++ b/advisories/unreviewed/2024/05/GHSA-h525-7gmx-5gmx/GHSA-h525-7gmx-5gmx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h96m-wf7f-j6gj/GHSA-h96m-wf7f-j6gj.json b/advisories/unreviewed/2024/05/GHSA-h96m-wf7f-j6gj/GHSA-h96m-wf7f-j6gj.json index e9bbfc8230c..4df51e1ef6e 100644 --- a/advisories/unreviewed/2024/05/GHSA-h96m-wf7f-j6gj/GHSA-h96m-wf7f-j6gj.json +++ b/advisories/unreviewed/2024/05/GHSA-h96m-wf7f-j6gj/GHSA-h96m-wf7f-j6gj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-hcx3-vjpp-qv3j/GHSA-hcx3-vjpp-qv3j.json b/advisories/unreviewed/2024/05/GHSA-hcx3-vjpp-qv3j/GHSA-hcx3-vjpp-qv3j.json index 54655004a99..bbc05d43f63 100644 --- a/advisories/unreviewed/2024/05/GHSA-hcx3-vjpp-qv3j/GHSA-hcx3-vjpp-qv3j.json +++ b/advisories/unreviewed/2024/05/GHSA-hcx3-vjpp-qv3j/GHSA-hcx3-vjpp-qv3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hj4c-xf5q-wc53/GHSA-hj4c-xf5q-wc53.json b/advisories/unreviewed/2024/05/GHSA-hj4c-xf5q-wc53/GHSA-hj4c-xf5q-wc53.json index 23c0172ae1b..5386fadf6ff 100644 --- a/advisories/unreviewed/2024/05/GHSA-hj4c-xf5q-wc53/GHSA-hj4c-xf5q-wc53.json +++ b/advisories/unreviewed/2024/05/GHSA-hj4c-xf5q-wc53/GHSA-hj4c-xf5q-wc53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hxwm-2grv-7xcx/GHSA-hxwm-2grv-7xcx.json b/advisories/unreviewed/2024/05/GHSA-hxwm-2grv-7xcx/GHSA-hxwm-2grv-7xcx.json index 356e61c5307..e73899e01a5 100644 --- a/advisories/unreviewed/2024/05/GHSA-hxwm-2grv-7xcx/GHSA-hxwm-2grv-7xcx.json +++ b/advisories/unreviewed/2024/05/GHSA-hxwm-2grv-7xcx/GHSA-hxwm-2grv-7xcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j3rm-rcwj-h793/GHSA-j3rm-rcwj-h793.json b/advisories/unreviewed/2024/05/GHSA-j3rm-rcwj-h793/GHSA-j3rm-rcwj-h793.json index 149d203f604..6e7887c2456 100644 --- a/advisories/unreviewed/2024/05/GHSA-j3rm-rcwj-h793/GHSA-j3rm-rcwj-h793.json +++ b/advisories/unreviewed/2024/05/GHSA-j3rm-rcwj-h793/GHSA-j3rm-rcwj-h793.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j5mg-7pph-vc9m/GHSA-j5mg-7pph-vc9m.json b/advisories/unreviewed/2024/05/GHSA-j5mg-7pph-vc9m/GHSA-j5mg-7pph-vc9m.json index ed0e9a88f08..0b44ee0093d 100644 --- a/advisories/unreviewed/2024/05/GHSA-j5mg-7pph-vc9m/GHSA-j5mg-7pph-vc9m.json +++ b/advisories/unreviewed/2024/05/GHSA-j5mg-7pph-vc9m/GHSA-j5mg-7pph-vc9m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-j6qv-7j22-7rcw/GHSA-j6qv-7j22-7rcw.json b/advisories/unreviewed/2024/05/GHSA-j6qv-7j22-7rcw/GHSA-j6qv-7j22-7rcw.json index c1479399150..b5bc28d9967 100644 --- a/advisories/unreviewed/2024/05/GHSA-j6qv-7j22-7rcw/GHSA-j6qv-7j22-7rcw.json +++ b/advisories/unreviewed/2024/05/GHSA-j6qv-7j22-7rcw/GHSA-j6qv-7j22-7rcw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j7gw-w87q-96q6/GHSA-j7gw-w87q-96q6.json b/advisories/unreviewed/2024/05/GHSA-j7gw-w87q-96q6/GHSA-j7gw-w87q-96q6.json index 7265d736fe2..42552b6ef55 100644 --- a/advisories/unreviewed/2024/05/GHSA-j7gw-w87q-96q6/GHSA-j7gw-w87q-96q6.json +++ b/advisories/unreviewed/2024/05/GHSA-j7gw-w87q-96q6/GHSA-j7gw-w87q-96q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j87v-mhh9-96qj/GHSA-j87v-mhh9-96qj.json b/advisories/unreviewed/2024/05/GHSA-j87v-mhh9-96qj/GHSA-j87v-mhh9-96qj.json index aeb3e690968..0d9966a523f 100644 --- a/advisories/unreviewed/2024/05/GHSA-j87v-mhh9-96qj/GHSA-j87v-mhh9-96qj.json +++ b/advisories/unreviewed/2024/05/GHSA-j87v-mhh9-96qj/GHSA-j87v-mhh9-96qj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jc94-r73q-r924/GHSA-jc94-r73q-r924.json b/advisories/unreviewed/2024/05/GHSA-jc94-r73q-r924/GHSA-jc94-r73q-r924.json index 429fd718a10..492bc30fb5e 100644 --- a/advisories/unreviewed/2024/05/GHSA-jc94-r73q-r924/GHSA-jc94-r73q-r924.json +++ b/advisories/unreviewed/2024/05/GHSA-jc94-r73q-r924/GHSA-jc94-r73q-r924.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jcw2-6v8c-w2h9/GHSA-jcw2-6v8c-w2h9.json b/advisories/unreviewed/2024/05/GHSA-jcw2-6v8c-w2h9/GHSA-jcw2-6v8c-w2h9.json index cb429671f08..05245e1acc4 100644 --- a/advisories/unreviewed/2024/05/GHSA-jcw2-6v8c-w2h9/GHSA-jcw2-6v8c-w2h9.json +++ b/advisories/unreviewed/2024/05/GHSA-jcw2-6v8c-w2h9/GHSA-jcw2-6v8c-w2h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-jhwx-4jpp-wcw2/GHSA-jhwx-4jpp-wcw2.json b/advisories/unreviewed/2024/05/GHSA-jhwx-4jpp-wcw2/GHSA-jhwx-4jpp-wcw2.json index 7d6cf13c79b..ecd02472d1d 100644 --- a/advisories/unreviewed/2024/05/GHSA-jhwx-4jpp-wcw2/GHSA-jhwx-4jpp-wcw2.json +++ b/advisories/unreviewed/2024/05/GHSA-jhwx-4jpp-wcw2/GHSA-jhwx-4jpp-wcw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jjrv-72p3-frpm/GHSA-jjrv-72p3-frpm.json b/advisories/unreviewed/2024/05/GHSA-jjrv-72p3-frpm/GHSA-jjrv-72p3-frpm.json index c79b130f556..09656d3f78f 100644 --- a/advisories/unreviewed/2024/05/GHSA-jjrv-72p3-frpm/GHSA-jjrv-72p3-frpm.json +++ b/advisories/unreviewed/2024/05/GHSA-jjrv-72p3-frpm/GHSA-jjrv-72p3-frpm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jvh2-3fx8-5h29/GHSA-jvh2-3fx8-5h29.json b/advisories/unreviewed/2024/05/GHSA-jvh2-3fx8-5h29/GHSA-jvh2-3fx8-5h29.json index 5b80f637684..f8b03d82ffa 100644 --- a/advisories/unreviewed/2024/05/GHSA-jvh2-3fx8-5h29/GHSA-jvh2-3fx8-5h29.json +++ b/advisories/unreviewed/2024/05/GHSA-jvh2-3fx8-5h29/GHSA-jvh2-3fx8-5h29.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jvw5-wg85-v57m/GHSA-jvw5-wg85-v57m.json b/advisories/unreviewed/2024/05/GHSA-jvw5-wg85-v57m/GHSA-jvw5-wg85-v57m.json index 7ff04c21e81..187df2ce3b2 100644 --- a/advisories/unreviewed/2024/05/GHSA-jvw5-wg85-v57m/GHSA-jvw5-wg85-v57m.json +++ b/advisories/unreviewed/2024/05/GHSA-jvw5-wg85-v57m/GHSA-jvw5-wg85-v57m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-jxmr-fmcp-48cp/GHSA-jxmr-fmcp-48cp.json b/advisories/unreviewed/2024/05/GHSA-jxmr-fmcp-48cp/GHSA-jxmr-fmcp-48cp.json index a7487b28141..18344de901d 100644 --- a/advisories/unreviewed/2024/05/GHSA-jxmr-fmcp-48cp/GHSA-jxmr-fmcp-48cp.json +++ b/advisories/unreviewed/2024/05/GHSA-jxmr-fmcp-48cp/GHSA-jxmr-fmcp-48cp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-m346-f556-rxqp/GHSA-m346-f556-rxqp.json b/advisories/unreviewed/2024/05/GHSA-m346-f556-rxqp/GHSA-m346-f556-rxqp.json index 9978d492e71..d3da7ded62d 100644 --- a/advisories/unreviewed/2024/05/GHSA-m346-f556-rxqp/GHSA-m346-f556-rxqp.json +++ b/advisories/unreviewed/2024/05/GHSA-m346-f556-rxqp/GHSA-m346-f556-rxqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-m367-63cg-9gx2/GHSA-m367-63cg-9gx2.json b/advisories/unreviewed/2024/05/GHSA-m367-63cg-9gx2/GHSA-m367-63cg-9gx2.json index e6da09be9ea..36e64ed7921 100644 --- a/advisories/unreviewed/2024/05/GHSA-m367-63cg-9gx2/GHSA-m367-63cg-9gx2.json +++ b/advisories/unreviewed/2024/05/GHSA-m367-63cg-9gx2/GHSA-m367-63cg-9gx2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-m662-x5x5-33fp/GHSA-m662-x5x5-33fp.json b/advisories/unreviewed/2024/05/GHSA-m662-x5x5-33fp/GHSA-m662-x5x5-33fp.json index 0d897e7c892..0861d869859 100644 --- a/advisories/unreviewed/2024/05/GHSA-m662-x5x5-33fp/GHSA-m662-x5x5-33fp.json +++ b/advisories/unreviewed/2024/05/GHSA-m662-x5x5-33fp/GHSA-m662-x5x5-33fp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mcc5-758p-xgwj/GHSA-mcc5-758p-xgwj.json b/advisories/unreviewed/2024/05/GHSA-mcc5-758p-xgwj/GHSA-mcc5-758p-xgwj.json index 09eb549e082..d53cf9a195f 100644 --- a/advisories/unreviewed/2024/05/GHSA-mcc5-758p-xgwj/GHSA-mcc5-758p-xgwj.json +++ b/advisories/unreviewed/2024/05/GHSA-mcc5-758p-xgwj/GHSA-mcc5-758p-xgwj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mcxh-3pw2-4rmg/GHSA-mcxh-3pw2-4rmg.json b/advisories/unreviewed/2024/05/GHSA-mcxh-3pw2-4rmg/GHSA-mcxh-3pw2-4rmg.json index 4382c4f8a94..cec2cdc6b77 100644 --- a/advisories/unreviewed/2024/05/GHSA-mcxh-3pw2-4rmg/GHSA-mcxh-3pw2-4rmg.json +++ b/advisories/unreviewed/2024/05/GHSA-mcxh-3pw2-4rmg/GHSA-mcxh-3pw2-4rmg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-mf6h-rjrh-vq8g/GHSA-mf6h-rjrh-vq8g.json b/advisories/unreviewed/2024/05/GHSA-mf6h-rjrh-vq8g/GHSA-mf6h-rjrh-vq8g.json index d0118548672..b5f197a24c4 100644 --- a/advisories/unreviewed/2024/05/GHSA-mf6h-rjrh-vq8g/GHSA-mf6h-rjrh-vq8g.json +++ b/advisories/unreviewed/2024/05/GHSA-mf6h-rjrh-vq8g/GHSA-mf6h-rjrh-vq8g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mm8w-v3g6-hcq2/GHSA-mm8w-v3g6-hcq2.json b/advisories/unreviewed/2024/05/GHSA-mm8w-v3g6-hcq2/GHSA-mm8w-v3g6-hcq2.json index 262fa8817e8..ca84bb5fdab 100644 --- a/advisories/unreviewed/2024/05/GHSA-mm8w-v3g6-hcq2/GHSA-mm8w-v3g6-hcq2.json +++ b/advisories/unreviewed/2024/05/GHSA-mm8w-v3g6-hcq2/GHSA-mm8w-v3g6-hcq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mqff-r9wc-53gp/GHSA-mqff-r9wc-53gp.json b/advisories/unreviewed/2024/05/GHSA-mqff-r9wc-53gp/GHSA-mqff-r9wc-53gp.json index 03e9a9d54e3..f487a275953 100644 --- a/advisories/unreviewed/2024/05/GHSA-mqff-r9wc-53gp/GHSA-mqff-r9wc-53gp.json +++ b/advisories/unreviewed/2024/05/GHSA-mqff-r9wc-53gp/GHSA-mqff-r9wc-53gp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-mvg2-4m23-mpp3/GHSA-mvg2-4m23-mpp3.json b/advisories/unreviewed/2024/05/GHSA-mvg2-4m23-mpp3/GHSA-mvg2-4m23-mpp3.json index 30c491247e5..aae32d21aca 100644 --- a/advisories/unreviewed/2024/05/GHSA-mvg2-4m23-mpp3/GHSA-mvg2-4m23-mpp3.json +++ b/advisories/unreviewed/2024/05/GHSA-mvg2-4m23-mpp3/GHSA-mvg2-4m23-mpp3.json @@ -7,12 +7,8 @@ "CVE-2023-52655" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nusb: aqc111: check packet for fixup for true limit\n\nIf a device sends a packet that is inbetween 0\nand sizeof(u64) the value passed to skb_trim()\nas length will wrap around ending up as some very\nlarge value.\n\nThe driver will then proceed to parse the header\nlocated at that position, which will either oops or\nprocess some random value.\n\nThe fix is to check against sizeof(u64) rather than\n0, which the driver currently does. The issue exists\nsince the introduction of the driver.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-mwh4-gh4p-8gqp/GHSA-mwh4-gh4p-8gqp.json b/advisories/unreviewed/2024/05/GHSA-mwh4-gh4p-8gqp/GHSA-mwh4-gh4p-8gqp.json index a1e705c9a02..213e8694676 100644 --- a/advisories/unreviewed/2024/05/GHSA-mwh4-gh4p-8gqp/GHSA-mwh4-gh4p-8gqp.json +++ b/advisories/unreviewed/2024/05/GHSA-mwh4-gh4p-8gqp/GHSA-mwh4-gh4p-8gqp.json @@ -7,12 +7,8 @@ "CVE-2024-33878" ], "details": "Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-p435-prrh-xm57/GHSA-p435-prrh-xm57.json b/advisories/unreviewed/2024/05/GHSA-p435-prrh-xm57/GHSA-p435-prrh-xm57.json index 42535cec697..3e304a70db9 100644 --- a/advisories/unreviewed/2024/05/GHSA-p435-prrh-xm57/GHSA-p435-prrh-xm57.json +++ b/advisories/unreviewed/2024/05/GHSA-p435-prrh-xm57/GHSA-p435-prrh-xm57.json @@ -7,12 +7,8 @@ "CVE-2023-52654" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring/af_unix: disable sending io_uring over sockets\n\nFile reference cycles have caused lots of problems for io_uring\nin the past, and it still doesn't work exactly right and races with\nunix_stream_read_generic(). The safest fix would be to completely\ndisallow sending io_uring files via sockets via SCM_RIGHT, so there\nare no possible cycles invloving registered files and thus rendering\nSCM accounting on the io_uring side unnecessary.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-p4q2-hmcp-5f94/GHSA-p4q2-hmcp-5f94.json b/advisories/unreviewed/2024/05/GHSA-p4q2-hmcp-5f94/GHSA-p4q2-hmcp-5f94.json index 33861dbab02..51b0da2249e 100644 --- a/advisories/unreviewed/2024/05/GHSA-p4q2-hmcp-5f94/GHSA-p4q2-hmcp-5f94.json +++ b/advisories/unreviewed/2024/05/GHSA-p4q2-hmcp-5f94/GHSA-p4q2-hmcp-5f94.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-p6c6-92jc-qwcx/GHSA-p6c6-92jc-qwcx.json b/advisories/unreviewed/2024/05/GHSA-p6c6-92jc-qwcx/GHSA-p6c6-92jc-qwcx.json index 4aa635b1ec1..76c2f07561a 100644 --- a/advisories/unreviewed/2024/05/GHSA-p6c6-92jc-qwcx/GHSA-p6c6-92jc-qwcx.json +++ b/advisories/unreviewed/2024/05/GHSA-p6c6-92jc-qwcx/GHSA-p6c6-92jc-qwcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-p7p5-3hmf-xx69/GHSA-p7p5-3hmf-xx69.json b/advisories/unreviewed/2024/05/GHSA-p7p5-3hmf-xx69/GHSA-p7p5-3hmf-xx69.json index d3342988f12..7d7d7abe1c7 100644 --- a/advisories/unreviewed/2024/05/GHSA-p7p5-3hmf-xx69/GHSA-p7p5-3hmf-xx69.json +++ b/advisories/unreviewed/2024/05/GHSA-p7p5-3hmf-xx69/GHSA-p7p5-3hmf-xx69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-p8rh-53x8-6ww5/GHSA-p8rh-53x8-6ww5.json b/advisories/unreviewed/2024/05/GHSA-p8rh-53x8-6ww5/GHSA-p8rh-53x8-6ww5.json index dd753b41f5e..6e680c7ef18 100644 --- a/advisories/unreviewed/2024/05/GHSA-p8rh-53x8-6ww5/GHSA-p8rh-53x8-6ww5.json +++ b/advisories/unreviewed/2024/05/GHSA-p8rh-53x8-6ww5/GHSA-p8rh-53x8-6ww5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-pcq6-24qx-69mp/GHSA-pcq6-24qx-69mp.json b/advisories/unreviewed/2024/05/GHSA-pcq6-24qx-69mp/GHSA-pcq6-24qx-69mp.json index beb58e226d6..8183591a0b8 100644 --- a/advisories/unreviewed/2024/05/GHSA-pcq6-24qx-69mp/GHSA-pcq6-24qx-69mp.json +++ b/advisories/unreviewed/2024/05/GHSA-pcq6-24qx-69mp/GHSA-pcq6-24qx-69mp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-pfc9-pj4x-5f23/GHSA-pfc9-pj4x-5f23.json b/advisories/unreviewed/2024/05/GHSA-pfc9-pj4x-5f23/GHSA-pfc9-pj4x-5f23.json index 4ecdcbc6724..617ae72b7e8 100644 --- a/advisories/unreviewed/2024/05/GHSA-pfc9-pj4x-5f23/GHSA-pfc9-pj4x-5f23.json +++ b/advisories/unreviewed/2024/05/GHSA-pfc9-pj4x-5f23/GHSA-pfc9-pj4x-5f23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-pgfq-hx82-xvvx/GHSA-pgfq-hx82-xvvx.json b/advisories/unreviewed/2024/05/GHSA-pgfq-hx82-xvvx/GHSA-pgfq-hx82-xvvx.json index 556737970d2..68ce74b303c 100644 --- a/advisories/unreviewed/2024/05/GHSA-pgfq-hx82-xvvx/GHSA-pgfq-hx82-xvvx.json +++ b/advisories/unreviewed/2024/05/GHSA-pgfq-hx82-xvvx/GHSA-pgfq-hx82-xvvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-pgpf-456j-2558/GHSA-pgpf-456j-2558.json b/advisories/unreviewed/2024/05/GHSA-pgpf-456j-2558/GHSA-pgpf-456j-2558.json index 8b03e0a5c61..f34f52670a7 100644 --- a/advisories/unreviewed/2024/05/GHSA-pgpf-456j-2558/GHSA-pgpf-456j-2558.json +++ b/advisories/unreviewed/2024/05/GHSA-pgpf-456j-2558/GHSA-pgpf-456j-2558.json @@ -7,12 +7,8 @@ "CVE-2023-26863" ], "details": "Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-phjr-8rg9-m4gg/GHSA-phjr-8rg9-m4gg.json b/advisories/unreviewed/2024/05/GHSA-phjr-8rg9-m4gg/GHSA-phjr-8rg9-m4gg.json index 87edd0f1344..5f88a692c78 100644 --- a/advisories/unreviewed/2024/05/GHSA-phjr-8rg9-m4gg/GHSA-phjr-8rg9-m4gg.json +++ b/advisories/unreviewed/2024/05/GHSA-phjr-8rg9-m4gg/GHSA-phjr-8rg9-m4gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-phqq-qx84-9jff/GHSA-phqq-qx84-9jff.json b/advisories/unreviewed/2024/05/GHSA-phqq-qx84-9jff/GHSA-phqq-qx84-9jff.json index a3e3da655cf..f1a389b1321 100644 --- a/advisories/unreviewed/2024/05/GHSA-phqq-qx84-9jff/GHSA-phqq-qx84-9jff.json +++ b/advisories/unreviewed/2024/05/GHSA-phqq-qx84-9jff/GHSA-phqq-qx84-9jff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-pp3c-36rx-j2jw/GHSA-pp3c-36rx-j2jw.json b/advisories/unreviewed/2024/05/GHSA-pp3c-36rx-j2jw/GHSA-pp3c-36rx-j2jw.json index a7a9f5dbc95..ab971b94fad 100644 --- a/advisories/unreviewed/2024/05/GHSA-pp3c-36rx-j2jw/GHSA-pp3c-36rx-j2jw.json +++ b/advisories/unreviewed/2024/05/GHSA-pp3c-36rx-j2jw/GHSA-pp3c-36rx-j2jw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-pqq5-pxj4-264m/GHSA-pqq5-pxj4-264m.json b/advisories/unreviewed/2024/05/GHSA-pqq5-pxj4-264m/GHSA-pqq5-pxj4-264m.json index c23ae725e8c..f2fed6d07b9 100644 --- a/advisories/unreviewed/2024/05/GHSA-pqq5-pxj4-264m/GHSA-pqq5-pxj4-264m.json +++ b/advisories/unreviewed/2024/05/GHSA-pqq5-pxj4-264m/GHSA-pqq5-pxj4-264m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-prmm-jjm7-hjjw/GHSA-prmm-jjm7-hjjw.json b/advisories/unreviewed/2024/05/GHSA-prmm-jjm7-hjjw/GHSA-prmm-jjm7-hjjw.json index 32ecd019b1e..30ebfdc0661 100644 --- a/advisories/unreviewed/2024/05/GHSA-prmm-jjm7-hjjw/GHSA-prmm-jjm7-hjjw.json +++ b/advisories/unreviewed/2024/05/GHSA-prmm-jjm7-hjjw/GHSA-prmm-jjm7-hjjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-q887-j27x-jj4x/GHSA-q887-j27x-jj4x.json b/advisories/unreviewed/2024/05/GHSA-q887-j27x-jj4x/GHSA-q887-j27x-jj4x.json index 0e69ffa67cd..82f41ad7fe3 100644 --- a/advisories/unreviewed/2024/05/GHSA-q887-j27x-jj4x/GHSA-q887-j27x-jj4x.json +++ b/advisories/unreviewed/2024/05/GHSA-q887-j27x-jj4x/GHSA-q887-j27x-jj4x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qggf-x7gv-2c34/GHSA-qggf-x7gv-2c34.json b/advisories/unreviewed/2024/05/GHSA-qggf-x7gv-2c34/GHSA-qggf-x7gv-2c34.json index cd456d86479..a786f98e5ae 100644 --- a/advisories/unreviewed/2024/05/GHSA-qggf-x7gv-2c34/GHSA-qggf-x7gv-2c34.json +++ b/advisories/unreviewed/2024/05/GHSA-qggf-x7gv-2c34/GHSA-qggf-x7gv-2c34.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-qggv-3v78-c7cg/GHSA-qggv-3v78-c7cg.json b/advisories/unreviewed/2024/05/GHSA-qggv-3v78-c7cg/GHSA-qggv-3v78-c7cg.json index 03d14384334..d6e16c8c04d 100644 --- a/advisories/unreviewed/2024/05/GHSA-qggv-3v78-c7cg/GHSA-qggv-3v78-c7cg.json +++ b/advisories/unreviewed/2024/05/GHSA-qggv-3v78-c7cg/GHSA-qggv-3v78-c7cg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qh33-r66h-4p62/GHSA-qh33-r66h-4p62.json b/advisories/unreviewed/2024/05/GHSA-qh33-r66h-4p62/GHSA-qh33-r66h-4p62.json index 193ff34cfd2..9c14e9feabd 100644 --- a/advisories/unreviewed/2024/05/GHSA-qh33-r66h-4p62/GHSA-qh33-r66h-4p62.json +++ b/advisories/unreviewed/2024/05/GHSA-qh33-r66h-4p62/GHSA-qh33-r66h-4p62.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qhcp-3fxf-c8vc/GHSA-qhcp-3fxf-c8vc.json b/advisories/unreviewed/2024/05/GHSA-qhcp-3fxf-c8vc/GHSA-qhcp-3fxf-c8vc.json index 3201bc9d0a8..69b794f838b 100644 --- a/advisories/unreviewed/2024/05/GHSA-qhcp-3fxf-c8vc/GHSA-qhcp-3fxf-c8vc.json +++ b/advisories/unreviewed/2024/05/GHSA-qhcp-3fxf-c8vc/GHSA-qhcp-3fxf-c8vc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qpgv-mj64-p6gw/GHSA-qpgv-mj64-p6gw.json b/advisories/unreviewed/2024/05/GHSA-qpgv-mj64-p6gw/GHSA-qpgv-mj64-p6gw.json index a899140296c..2471a84405f 100644 --- a/advisories/unreviewed/2024/05/GHSA-qpgv-mj64-p6gw/GHSA-qpgv-mj64-p6gw.json +++ b/advisories/unreviewed/2024/05/GHSA-qpgv-mj64-p6gw/GHSA-qpgv-mj64-p6gw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qqfm-c56j-938w/GHSA-qqfm-c56j-938w.json b/advisories/unreviewed/2024/05/GHSA-qqfm-c56j-938w/GHSA-qqfm-c56j-938w.json index 8e5f2e52426..1aeabfe6038 100644 --- a/advisories/unreviewed/2024/05/GHSA-qqfm-c56j-938w/GHSA-qqfm-c56j-938w.json +++ b/advisories/unreviewed/2024/05/GHSA-qqfm-c56j-938w/GHSA-qqfm-c56j-938w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qr2r-jf3h-cxvg/GHSA-qr2r-jf3h-cxvg.json b/advisories/unreviewed/2024/05/GHSA-qr2r-jf3h-cxvg/GHSA-qr2r-jf3h-cxvg.json index ded1c708fa5..18858514d65 100644 --- a/advisories/unreviewed/2024/05/GHSA-qr2r-jf3h-cxvg/GHSA-qr2r-jf3h-cxvg.json +++ b/advisories/unreviewed/2024/05/GHSA-qr2r-jf3h-cxvg/GHSA-qr2r-jf3h-cxvg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-r33w-h5p8-qwc2/GHSA-r33w-h5p8-qwc2.json b/advisories/unreviewed/2024/05/GHSA-r33w-h5p8-qwc2/GHSA-r33w-h5p8-qwc2.json index efb3de2db89..1b102218dfa 100644 --- a/advisories/unreviewed/2024/05/GHSA-r33w-h5p8-qwc2/GHSA-r33w-h5p8-qwc2.json +++ b/advisories/unreviewed/2024/05/GHSA-r33w-h5p8-qwc2/GHSA-r33w-h5p8-qwc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-r7p4-7jh5-pmjp/GHSA-r7p4-7jh5-pmjp.json b/advisories/unreviewed/2024/05/GHSA-r7p4-7jh5-pmjp/GHSA-r7p4-7jh5-pmjp.json index 22844c56bf7..43aaf1b177f 100644 --- a/advisories/unreviewed/2024/05/GHSA-r7p4-7jh5-pmjp/GHSA-r7p4-7jh5-pmjp.json +++ b/advisories/unreviewed/2024/05/GHSA-r7p4-7jh5-pmjp/GHSA-r7p4-7jh5-pmjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-r938-r8hx-g8cx/GHSA-r938-r8hx-g8cx.json b/advisories/unreviewed/2024/05/GHSA-r938-r8hx-g8cx/GHSA-r938-r8hx-g8cx.json index bf1ea8519e4..bc2392b7dea 100644 --- a/advisories/unreviewed/2024/05/GHSA-r938-r8hx-g8cx/GHSA-r938-r8hx-g8cx.json +++ b/advisories/unreviewed/2024/05/GHSA-r938-r8hx-g8cx/GHSA-r938-r8hx-g8cx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rc7c-g7c4-9hrh/GHSA-rc7c-g7c4-9hrh.json b/advisories/unreviewed/2024/05/GHSA-rc7c-g7c4-9hrh/GHSA-rc7c-g7c4-9hrh.json index 3dc044ebc89..bd5ad516532 100644 --- a/advisories/unreviewed/2024/05/GHSA-rc7c-g7c4-9hrh/GHSA-rc7c-g7c4-9hrh.json +++ b/advisories/unreviewed/2024/05/GHSA-rc7c-g7c4-9hrh/GHSA-rc7c-g7c4-9hrh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json b/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json index 18fb60c86e9..d95c352f663 100644 --- a/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json +++ b/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rh23-c55h-3vx9/GHSA-rh23-c55h-3vx9.json b/advisories/unreviewed/2024/05/GHSA-rh23-c55h-3vx9/GHSA-rh23-c55h-3vx9.json index 067194acbd8..880f92f3c7a 100644 --- a/advisories/unreviewed/2024/05/GHSA-rh23-c55h-3vx9/GHSA-rh23-c55h-3vx9.json +++ b/advisories/unreviewed/2024/05/GHSA-rh23-c55h-3vx9/GHSA-rh23-c55h-3vx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-rjhc-r32r-cc5w/GHSA-rjhc-r32r-cc5w.json b/advisories/unreviewed/2024/05/GHSA-rjhc-r32r-cc5w/GHSA-rjhc-r32r-cc5w.json index c7ef3260038..cd08fdaf5b2 100644 --- a/advisories/unreviewed/2024/05/GHSA-rjhc-r32r-cc5w/GHSA-rjhc-r32r-cc5w.json +++ b/advisories/unreviewed/2024/05/GHSA-rjhc-r32r-cc5w/GHSA-rjhc-r32r-cc5w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rmhw-r566-6398/GHSA-rmhw-r566-6398.json b/advisories/unreviewed/2024/05/GHSA-rmhw-r566-6398/GHSA-rmhw-r566-6398.json index 597c2676b15..1e1d735727d 100644 --- a/advisories/unreviewed/2024/05/GHSA-rmhw-r566-6398/GHSA-rmhw-r566-6398.json +++ b/advisories/unreviewed/2024/05/GHSA-rmhw-r566-6398/GHSA-rmhw-r566-6398.json @@ -7,12 +7,8 @@ "CVE-2024-34749" ], "details": "Phormer prior to version 3.35 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote unauthenticated attacker may execute an arbitrary script on the web browser of the user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-rmwv-r4r7-j48f/GHSA-rmwv-r4r7-j48f.json b/advisories/unreviewed/2024/05/GHSA-rmwv-r4r7-j48f/GHSA-rmwv-r4r7-j48f.json index bd3fae1d51a..c4114a4d7a8 100644 --- a/advisories/unreviewed/2024/05/GHSA-rmwv-r4r7-j48f/GHSA-rmwv-r4r7-j48f.json +++ b/advisories/unreviewed/2024/05/GHSA-rmwv-r4r7-j48f/GHSA-rmwv-r4r7-j48f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rp8c-6q45-8g4v/GHSA-rp8c-6q45-8g4v.json b/advisories/unreviewed/2024/05/GHSA-rp8c-6q45-8g4v/GHSA-rp8c-6q45-8g4v.json index e91ea2e7388..55e775e42da 100644 --- a/advisories/unreviewed/2024/05/GHSA-rp8c-6q45-8g4v/GHSA-rp8c-6q45-8g4v.json +++ b/advisories/unreviewed/2024/05/GHSA-rp8c-6q45-8g4v/GHSA-rp8c-6q45-8g4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-rpjh-2px8-r4m7/GHSA-rpjh-2px8-r4m7.json b/advisories/unreviewed/2024/05/GHSA-rpjh-2px8-r4m7/GHSA-rpjh-2px8-r4m7.json index bd93ab3f3a1..78c087ef7bf 100644 --- a/advisories/unreviewed/2024/05/GHSA-rpjh-2px8-r4m7/GHSA-rpjh-2px8-r4m7.json +++ b/advisories/unreviewed/2024/05/GHSA-rpjh-2px8-r4m7/GHSA-rpjh-2px8-r4m7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rrpp-c73c-8rg9/GHSA-rrpp-c73c-8rg9.json b/advisories/unreviewed/2024/05/GHSA-rrpp-c73c-8rg9/GHSA-rrpp-c73c-8rg9.json index cc1b360d337..3f3d2088d96 100644 --- a/advisories/unreviewed/2024/05/GHSA-rrpp-c73c-8rg9/GHSA-rrpp-c73c-8rg9.json +++ b/advisories/unreviewed/2024/05/GHSA-rrpp-c73c-8rg9/GHSA-rrpp-c73c-8rg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rrvh-w4fw-7gmv/GHSA-rrvh-w4fw-7gmv.json b/advisories/unreviewed/2024/05/GHSA-rrvh-w4fw-7gmv/GHSA-rrvh-w4fw-7gmv.json index 21484bd06c0..e07a275b534 100644 --- a/advisories/unreviewed/2024/05/GHSA-rrvh-w4fw-7gmv/GHSA-rrvh-w4fw-7gmv.json +++ b/advisories/unreviewed/2024/05/GHSA-rrvh-w4fw-7gmv/GHSA-rrvh-w4fw-7gmv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rw4r-2f9m-m4gf/GHSA-rw4r-2f9m-m4gf.json b/advisories/unreviewed/2024/05/GHSA-rw4r-2f9m-m4gf/GHSA-rw4r-2f9m-m4gf.json index 52d489f069d..40ce41055ba 100644 --- a/advisories/unreviewed/2024/05/GHSA-rw4r-2f9m-m4gf/GHSA-rw4r-2f9m-m4gf.json +++ b/advisories/unreviewed/2024/05/GHSA-rw4r-2f9m-m4gf/GHSA-rw4r-2f9m-m4gf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rxmc-r56m-843f/GHSA-rxmc-r56m-843f.json b/advisories/unreviewed/2024/05/GHSA-rxmc-r56m-843f/GHSA-rxmc-r56m-843f.json index 04c73f0ce79..a20a903d400 100644 --- a/advisories/unreviewed/2024/05/GHSA-rxmc-r56m-843f/GHSA-rxmc-r56m-843f.json +++ b/advisories/unreviewed/2024/05/GHSA-rxmc-r56m-843f/GHSA-rxmc-r56m-843f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v2jj-6wcp-962x/GHSA-v2jj-6wcp-962x.json b/advisories/unreviewed/2024/05/GHSA-v2jj-6wcp-962x/GHSA-v2jj-6wcp-962x.json index 514bb9b5320..eafa88a09ff 100644 --- a/advisories/unreviewed/2024/05/GHSA-v2jj-6wcp-962x/GHSA-v2jj-6wcp-962x.json +++ b/advisories/unreviewed/2024/05/GHSA-v2jj-6wcp-962x/GHSA-v2jj-6wcp-962x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-v44q-vw7w-v5f6/GHSA-v44q-vw7w-v5f6.json b/advisories/unreviewed/2024/05/GHSA-v44q-vw7w-v5f6/GHSA-v44q-vw7w-v5f6.json index 922abcd5686..341c2f9d53b 100644 --- a/advisories/unreviewed/2024/05/GHSA-v44q-vw7w-v5f6/GHSA-v44q-vw7w-v5f6.json +++ b/advisories/unreviewed/2024/05/GHSA-v44q-vw7w-v5f6/GHSA-v44q-vw7w-v5f6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v484-r27j-mv8x/GHSA-v484-r27j-mv8x.json b/advisories/unreviewed/2024/05/GHSA-v484-r27j-mv8x/GHSA-v484-r27j-mv8x.json index 669e8a3a0e7..cb08beb7697 100644 --- a/advisories/unreviewed/2024/05/GHSA-v484-r27j-mv8x/GHSA-v484-r27j-mv8x.json +++ b/advisories/unreviewed/2024/05/GHSA-v484-r27j-mv8x/GHSA-v484-r27j-mv8x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v8cf-xr7x-x7g3/GHSA-v8cf-xr7x-x7g3.json b/advisories/unreviewed/2024/05/GHSA-v8cf-xr7x-x7g3/GHSA-v8cf-xr7x-x7g3.json index bfef39aa55a..c909c8f47ec 100644 --- a/advisories/unreviewed/2024/05/GHSA-v8cf-xr7x-x7g3/GHSA-v8cf-xr7x-x7g3.json +++ b/advisories/unreviewed/2024/05/GHSA-v8cf-xr7x-x7g3/GHSA-v8cf-xr7x-x7g3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vgwq-9qw6-2xjv/GHSA-vgwq-9qw6-2xjv.json b/advisories/unreviewed/2024/05/GHSA-vgwq-9qw6-2xjv/GHSA-vgwq-9qw6-2xjv.json index 2ee4282f207..c4aea6e651a 100644 --- a/advisories/unreviewed/2024/05/GHSA-vgwq-9qw6-2xjv/GHSA-vgwq-9qw6-2xjv.json +++ b/advisories/unreviewed/2024/05/GHSA-vgwq-9qw6-2xjv/GHSA-vgwq-9qw6-2xjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-vhc5-hfx4-87r4/GHSA-vhc5-hfx4-87r4.json b/advisories/unreviewed/2024/05/GHSA-vhc5-hfx4-87r4/GHSA-vhc5-hfx4-87r4.json index 807b08c95e6..e83387e3c59 100644 --- a/advisories/unreviewed/2024/05/GHSA-vhc5-hfx4-87r4/GHSA-vhc5-hfx4-87r4.json +++ b/advisories/unreviewed/2024/05/GHSA-vhc5-hfx4-87r4/GHSA-vhc5-hfx4-87r4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vp28-9cm6-hpwg/GHSA-vp28-9cm6-hpwg.json b/advisories/unreviewed/2024/05/GHSA-vp28-9cm6-hpwg/GHSA-vp28-9cm6-hpwg.json index 0e5cbf39f36..02d937d94a2 100644 --- a/advisories/unreviewed/2024/05/GHSA-vp28-9cm6-hpwg/GHSA-vp28-9cm6-hpwg.json +++ b/advisories/unreviewed/2024/05/GHSA-vp28-9cm6-hpwg/GHSA-vp28-9cm6-hpwg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-vp76-3v52-p6vj/GHSA-vp76-3v52-p6vj.json b/advisories/unreviewed/2024/05/GHSA-vp76-3v52-p6vj/GHSA-vp76-3v52-p6vj.json index e160eddf93b..4c67223acd9 100644 --- a/advisories/unreviewed/2024/05/GHSA-vp76-3v52-p6vj/GHSA-vp76-3v52-p6vj.json +++ b/advisories/unreviewed/2024/05/GHSA-vp76-3v52-p6vj/GHSA-vp76-3v52-p6vj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vqvr-9cjv-m5wg/GHSA-vqvr-9cjv-m5wg.json b/advisories/unreviewed/2024/05/GHSA-vqvr-9cjv-m5wg/GHSA-vqvr-9cjv-m5wg.json index 3708b4b12f0..8f5c86a3420 100644 --- a/advisories/unreviewed/2024/05/GHSA-vqvr-9cjv-m5wg/GHSA-vqvr-9cjv-m5wg.json +++ b/advisories/unreviewed/2024/05/GHSA-vqvr-9cjv-m5wg/GHSA-vqvr-9cjv-m5wg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vrw8-cjgh-777g/GHSA-vrw8-cjgh-777g.json b/advisories/unreviewed/2024/05/GHSA-vrw8-cjgh-777g/GHSA-vrw8-cjgh-777g.json index aa5ee2e2c15..8710130a664 100644 --- a/advisories/unreviewed/2024/05/GHSA-vrw8-cjgh-777g/GHSA-vrw8-cjgh-777g.json +++ b/advisories/unreviewed/2024/05/GHSA-vrw8-cjgh-777g/GHSA-vrw8-cjgh-777g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-w6j9-gj52-h6wf/GHSA-w6j9-gj52-h6wf.json b/advisories/unreviewed/2024/05/GHSA-w6j9-gj52-h6wf/GHSA-w6j9-gj52-h6wf.json index 31e090e1303..b79e8b6e98f 100644 --- a/advisories/unreviewed/2024/05/GHSA-w6j9-gj52-h6wf/GHSA-w6j9-gj52-h6wf.json +++ b/advisories/unreviewed/2024/05/GHSA-w6j9-gj52-h6wf/GHSA-w6j9-gj52-h6wf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-w99p-36hq-4282/GHSA-w99p-36hq-4282.json b/advisories/unreviewed/2024/05/GHSA-w99p-36hq-4282/GHSA-w99p-36hq-4282.json index 5dd7c5da20a..f68dce3dc3b 100644 --- a/advisories/unreviewed/2024/05/GHSA-w99p-36hq-4282/GHSA-w99p-36hq-4282.json +++ b/advisories/unreviewed/2024/05/GHSA-w99p-36hq-4282/GHSA-w99p-36hq-4282.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wcwp-h7r9-hxrf/GHSA-wcwp-h7r9-hxrf.json b/advisories/unreviewed/2024/05/GHSA-wcwp-h7r9-hxrf/GHSA-wcwp-h7r9-hxrf.json index 92aceb579e3..49eb6769105 100644 --- a/advisories/unreviewed/2024/05/GHSA-wcwp-h7r9-hxrf/GHSA-wcwp-h7r9-hxrf.json +++ b/advisories/unreviewed/2024/05/GHSA-wcwp-h7r9-hxrf/GHSA-wcwp-h7r9-hxrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wg9j-px8c-pwpc/GHSA-wg9j-px8c-pwpc.json b/advisories/unreviewed/2024/05/GHSA-wg9j-px8c-pwpc/GHSA-wg9j-px8c-pwpc.json index 7c92caa3d1e..ef9fdcdf17f 100644 --- a/advisories/unreviewed/2024/05/GHSA-wg9j-px8c-pwpc/GHSA-wg9j-px8c-pwpc.json +++ b/advisories/unreviewed/2024/05/GHSA-wg9j-px8c-pwpc/GHSA-wg9j-px8c-pwpc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wjg2-hjqv-2pvp/GHSA-wjg2-hjqv-2pvp.json b/advisories/unreviewed/2024/05/GHSA-wjg2-hjqv-2pvp/GHSA-wjg2-hjqv-2pvp.json index a789c11ac0a..1c699c1a915 100644 --- a/advisories/unreviewed/2024/05/GHSA-wjg2-hjqv-2pvp/GHSA-wjg2-hjqv-2pvp.json +++ b/advisories/unreviewed/2024/05/GHSA-wjg2-hjqv-2pvp/GHSA-wjg2-hjqv-2pvp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-wjph-q6c3-pvg8/GHSA-wjph-q6c3-pvg8.json b/advisories/unreviewed/2024/05/GHSA-wjph-q6c3-pvg8/GHSA-wjph-q6c3-pvg8.json index d610a85589b..27609982899 100644 --- a/advisories/unreviewed/2024/05/GHSA-wjph-q6c3-pvg8/GHSA-wjph-q6c3-pvg8.json +++ b/advisories/unreviewed/2024/05/GHSA-wjph-q6c3-pvg8/GHSA-wjph-q6c3-pvg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wmf5-j34h-gm23/GHSA-wmf5-j34h-gm23.json b/advisories/unreviewed/2024/05/GHSA-wmf5-j34h-gm23/GHSA-wmf5-j34h-gm23.json index 59fff6f2d26..7f84d07518a 100644 --- a/advisories/unreviewed/2024/05/GHSA-wmf5-j34h-gm23/GHSA-wmf5-j34h-gm23.json +++ b/advisories/unreviewed/2024/05/GHSA-wmf5-j34h-gm23/GHSA-wmf5-j34h-gm23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wr68-32ff-7373/GHSA-wr68-32ff-7373.json b/advisories/unreviewed/2024/05/GHSA-wr68-32ff-7373/GHSA-wr68-32ff-7373.json index 0b757e67bbb..e1ea0d91771 100644 --- a/advisories/unreviewed/2024/05/GHSA-wr68-32ff-7373/GHSA-wr68-32ff-7373.json +++ b/advisories/unreviewed/2024/05/GHSA-wr68-32ff-7373/GHSA-wr68-32ff-7373.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wrjw-52pw-744r/GHSA-wrjw-52pw-744r.json b/advisories/unreviewed/2024/05/GHSA-wrjw-52pw-744r/GHSA-wrjw-52pw-744r.json index 813babf19cd..e98dde52d15 100644 --- a/advisories/unreviewed/2024/05/GHSA-wrjw-52pw-744r/GHSA-wrjw-52pw-744r.json +++ b/advisories/unreviewed/2024/05/GHSA-wrjw-52pw-744r/GHSA-wrjw-52pw-744r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wv6x-vvqc-64v2/GHSA-wv6x-vvqc-64v2.json b/advisories/unreviewed/2024/05/GHSA-wv6x-vvqc-64v2/GHSA-wv6x-vvqc-64v2.json index 5153c1e0c9b..0d6c6f95a5d 100644 --- a/advisories/unreviewed/2024/05/GHSA-wv6x-vvqc-64v2/GHSA-wv6x-vvqc-64v2.json +++ b/advisories/unreviewed/2024/05/GHSA-wv6x-vvqc-64v2/GHSA-wv6x-vvqc-64v2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wx5j-6m42-hwj9/GHSA-wx5j-6m42-hwj9.json b/advisories/unreviewed/2024/05/GHSA-wx5j-6m42-hwj9/GHSA-wx5j-6m42-hwj9.json index fb5f3f66396..71844a672ef 100644 --- a/advisories/unreviewed/2024/05/GHSA-wx5j-6m42-hwj9/GHSA-wx5j-6m42-hwj9.json +++ b/advisories/unreviewed/2024/05/GHSA-wx5j-6m42-hwj9/GHSA-wx5j-6m42-hwj9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wxj3-qj8p-4936/GHSA-wxj3-qj8p-4936.json b/advisories/unreviewed/2024/05/GHSA-wxj3-qj8p-4936/GHSA-wxj3-qj8p-4936.json index f518d40d914..49576535673 100644 --- a/advisories/unreviewed/2024/05/GHSA-wxj3-qj8p-4936/GHSA-wxj3-qj8p-4936.json +++ b/advisories/unreviewed/2024/05/GHSA-wxj3-qj8p-4936/GHSA-wxj3-qj8p-4936.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x4rw-prfw-9mq5/GHSA-x4rw-prfw-9mq5.json b/advisories/unreviewed/2024/05/GHSA-x4rw-prfw-9mq5/GHSA-x4rw-prfw-9mq5.json index 84423f67ff5..215c9726c05 100644 --- a/advisories/unreviewed/2024/05/GHSA-x4rw-prfw-9mq5/GHSA-x4rw-prfw-9mq5.json +++ b/advisories/unreviewed/2024/05/GHSA-x4rw-prfw-9mq5/GHSA-x4rw-prfw-9mq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x7h2-j795-83vg/GHSA-x7h2-j795-83vg.json b/advisories/unreviewed/2024/05/GHSA-x7h2-j795-83vg/GHSA-x7h2-j795-83vg.json index aaa33d22e78..7ebc7f5c722 100644 --- a/advisories/unreviewed/2024/05/GHSA-x7h2-j795-83vg/GHSA-x7h2-j795-83vg.json +++ b/advisories/unreviewed/2024/05/GHSA-x7h2-j795-83vg/GHSA-x7h2-j795-83vg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x9pv-2vfg-2257/GHSA-x9pv-2vfg-2257.json b/advisories/unreviewed/2024/05/GHSA-x9pv-2vfg-2257/GHSA-x9pv-2vfg-2257.json index 3ceebf8bed3..dd155da36a9 100644 --- a/advisories/unreviewed/2024/05/GHSA-x9pv-2vfg-2257/GHSA-x9pv-2vfg-2257.json +++ b/advisories/unreviewed/2024/05/GHSA-x9pv-2vfg-2257/GHSA-x9pv-2vfg-2257.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xf7f-8qhq-f75q/GHSA-xf7f-8qhq-f75q.json b/advisories/unreviewed/2024/05/GHSA-xf7f-8qhq-f75q/GHSA-xf7f-8qhq-f75q.json index 41138e58d16..79a486c85f8 100644 --- a/advisories/unreviewed/2024/05/GHSA-xf7f-8qhq-f75q/GHSA-xf7f-8qhq-f75q.json +++ b/advisories/unreviewed/2024/05/GHSA-xf7f-8qhq-f75q/GHSA-xf7f-8qhq-f75q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-xhvc-5m26-373f/GHSA-xhvc-5m26-373f.json b/advisories/unreviewed/2024/05/GHSA-xhvc-5m26-373f/GHSA-xhvc-5m26-373f.json index b81c2daf3c5..b3388c8841d 100644 --- a/advisories/unreviewed/2024/05/GHSA-xhvc-5m26-373f/GHSA-xhvc-5m26-373f.json +++ b/advisories/unreviewed/2024/05/GHSA-xhvc-5m26-373f/GHSA-xhvc-5m26-373f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xmcr-r54g-jx72/GHSA-xmcr-r54g-jx72.json b/advisories/unreviewed/2024/05/GHSA-xmcr-r54g-jx72/GHSA-xmcr-r54g-jx72.json index cdf378600ed..4714d7a68ce 100644 --- a/advisories/unreviewed/2024/05/GHSA-xmcr-r54g-jx72/GHSA-xmcr-r54g-jx72.json +++ b/advisories/unreviewed/2024/05/GHSA-xmcr-r54g-jx72/GHSA-xmcr-r54g-jx72.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xp9h-4j67-rh5p/GHSA-xp9h-4j67-rh5p.json b/advisories/unreviewed/2024/05/GHSA-xp9h-4j67-rh5p/GHSA-xp9h-4j67-rh5p.json index 1db9f3d508a..19ad977acf4 100644 --- a/advisories/unreviewed/2024/05/GHSA-xp9h-4j67-rh5p/GHSA-xp9h-4j67-rh5p.json +++ b/advisories/unreviewed/2024/05/GHSA-xp9h-4j67-rh5p/GHSA-xp9h-4j67-rh5p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-xvxq-7q9x-g29m/GHSA-xvxq-7q9x-g29m.json b/advisories/unreviewed/2024/05/GHSA-xvxq-7q9x-g29m/GHSA-xvxq-7q9x-g29m.json index 965a2e5b46c..1ee829d2321 100644 --- a/advisories/unreviewed/2024/05/GHSA-xvxq-7q9x-g29m/GHSA-xvxq-7q9x-g29m.json +++ b/advisories/unreviewed/2024/05/GHSA-xvxq-7q9x-g29m/GHSA-xvxq-7q9x-g29m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null,