From 1c398fe0dda43e72e42271f7c325db23903428d4 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Tue, 3 Dec 2024 05:05:30 +0000 Subject: [PATCH] Advisory Database Sync --- .../06/GHSA-8j8c-7jfh-h6hx/GHSA-8j8c-7jfh-h6hx.json | 8 ++------ .../06/GHSA-q42p-pg8m-cqh6/GHSA-q42p-pg8m-cqh6.json | 4 +--- .../05/GHSA-8jfx-h6q2-v4g3/GHSA-8jfx-h6q2-v4g3.json | 4 +--- .../05/GHSA-pv88-j6rg-r56p/GHSA-pv88-j6rg-r56p.json | 8 ++------ .../05/GHSA-rxfv-gm5x-9wqj/GHSA-rxfv-gm5x-9wqj.json | 8 ++------ .../05/GHSA-vrh7-99jh-3fmm/GHSA-vrh7-99jh-3fmm.json | 4 +--- .../05/GHSA-vxc6-wvh8-fpxw/GHSA-vxc6-wvh8-fpxw.json | 4 +--- .../11/GHSA-8g2p-5pqh-5jmc/GHSA-8g2p-5pqh-5jmc.json | 4 +--- .../04/GHSA-2fch-hv74-fgw9/GHSA-2fch-hv74-fgw9.json | 8 ++------ .../05/GHSA-g8ph-74m6-8m7r/GHSA-g8ph-74m6-8m7r.json | 8 ++------ .../01/GHSA-wpxw-5xfm-x22v/GHSA-wpxw-5xfm-x22v.json | 4 +--- .../12/GHSA-h3r6-368v-w6xc/GHSA-h3r6-368v-w6xc.json | 4 +--- .../01/GHSA-xvgc-v9fj-5m69/GHSA-xvgc-v9fj-5m69.json | 4 +--- .../04/GHSA-2j2f-h2gf-6r4c/GHSA-2j2f-h2gf-6r4c.json | 4 +--- .../04/GHSA-7rhp-mjch-qq88/GHSA-7rhp-mjch-qq88.json | 4 +--- .../04/GHSA-hg32-p8hw-8g3x/GHSA-hg32-p8hw-8g3x.json | 4 +--- .../04/GHSA-mx9g-mg46-cf6g/GHSA-mx9g-mg46-cf6g.json | 4 +--- .../04/GHSA-q8p7-6fhh-3h44/GHSA-q8p7-6fhh-3h44.json | 4 +--- .../04/GHSA-xc2p-7wgh-ffh3/GHSA-xc2p-7wgh-ffh3.json | 4 +--- .../05/GHSA-222c-qv22-f3wj/GHSA-222c-qv22-f3wj.json | 12 +++--------- .../05/GHSA-22cp-6jm2-7pjh/GHSA-22cp-6jm2-7pjh.json | 8 ++------ .../05/GHSA-22m7-r3qp-8jxg/GHSA-22m7-r3qp-8jxg.json | 8 ++------ .../05/GHSA-23pj-gg2f-pmvj/GHSA-23pj-gg2f-pmvj.json | 8 ++------ .../05/GHSA-24jj-74cf-p75p/GHSA-24jj-74cf-p75p.json | 8 ++------ .../05/GHSA-24wp-2mp6-6g43/GHSA-24wp-2mp6-6g43.json | 12 +++--------- .../05/GHSA-2736-7x8v-6v3p/GHSA-2736-7x8v-6v3p.json | 12 +++--------- .../05/GHSA-277j-v92f-57q6/GHSA-277j-v92f-57q6.json | 8 ++------ .../05/GHSA-27jj-5xgw-m6qw/GHSA-27jj-5xgw-m6qw.json | 8 ++------ .../05/GHSA-27pg-cfc8-4p42/GHSA-27pg-cfc8-4p42.json | 12 +++--------- .../05/GHSA-28w3-369m-84x8/GHSA-28w3-369m-84x8.json | 8 ++------ .../05/GHSA-2977-c3c9-wqxf/GHSA-2977-c3c9-wqxf.json | 8 ++------ .../05/GHSA-29c4-j685-rvr3/GHSA-29c4-j685-rvr3.json | 8 ++------ .../05/GHSA-2ffp-p9mj-92cf/GHSA-2ffp-p9mj-92cf.json | 4 +--- .../05/GHSA-2fm9-mpfh-qw5j/GHSA-2fm9-mpfh-qw5j.json | 12 +++--------- .../05/GHSA-2fq3-p8p7-3cvw/GHSA-2fq3-p8p7-3cvw.json | 12 +++--------- .../05/GHSA-2fvm-hcc8-v9vr/GHSA-2fvm-hcc8-v9vr.json | 12 +++--------- .../05/GHSA-2gcm-4527-j663/GHSA-2gcm-4527-j663.json | 8 ++------ .../05/GHSA-2gfq-wp47-xc5f/GHSA-2gfq-wp47-xc5f.json | 12 +++--------- .../05/GHSA-2gp8-fw4p-p6jj/GHSA-2gp8-fw4p-p6jj.json | 4 +--- .../05/GHSA-2jh9-p5pg-q6f4/GHSA-2jh9-p5pg-q6f4.json | 8 ++------ .../05/GHSA-2m33-fq4w-f79p/GHSA-2m33-fq4w-f79p.json | 12 +++--------- .../05/GHSA-2m9h-jfmc-6h86/GHSA-2m9h-jfmc-6h86.json | 12 +++--------- .../05/GHSA-2p2p-xpf9-5p78/GHSA-2p2p-xpf9-5p78.json | 8 ++------ .../05/GHSA-2p9p-xfg3-2fr3/GHSA-2p9p-xfg3-2fr3.json | 12 +++--------- .../05/GHSA-2pfw-x8hw-9289/GHSA-2pfw-x8hw-9289.json | 12 +++--------- .../05/GHSA-2q3w-j9mq-c9c9/GHSA-2q3w-j9mq-c9c9.json | 8 ++------ .../05/GHSA-2q84-j32v-48rc/GHSA-2q84-j32v-48rc.json | 12 +++--------- .../05/GHSA-2qmf-3w3w-mfq6/GHSA-2qmf-3w3w-mfq6.json | 12 +++--------- .../05/GHSA-2qpj-g893-v358/GHSA-2qpj-g893-v358.json | 8 ++------ .../05/GHSA-2r44-w7m9-h3hc/GHSA-2r44-w7m9-h3hc.json | 8 ++------ .../05/GHSA-2r8h-ccmx-mmjc/GHSA-2r8h-ccmx-mmjc.json | 12 +++--------- .../05/GHSA-2rfx-cf2v-2f6c/GHSA-2rfx-cf2v-2f6c.json | 8 ++------ .../05/GHSA-2rgh-3c29-qm63/GHSA-2rgh-3c29-qm63.json | 4 +--- .../05/GHSA-2v65-hq48-rqrv/GHSA-2v65-hq48-rqrv.json | 12 +++--------- .../05/GHSA-2vgw-2m97-5c4f/GHSA-2vgw-2m97-5c4f.json | 8 ++------ .../05/GHSA-2w2c-jqh6-rwvr/GHSA-2w2c-jqh6-rwvr.json | 12 +++--------- .../05/GHSA-2w7g-w6qh-q8wj/GHSA-2w7g-w6qh-q8wj.json | 12 +++--------- .../05/GHSA-2wcq-5m3f-4rfw/GHSA-2wcq-5m3f-4rfw.json | 8 ++------ .../05/GHSA-2wgx-r6j7-j62r/GHSA-2wgx-r6j7-j62r.json | 12 +++--------- .../05/GHSA-2xwc-ff9j-7r5h/GHSA-2xwc-ff9j-7r5h.json | 8 ++------ .../05/GHSA-32pg-5795-jh5m/GHSA-32pg-5795-jh5m.json | 8 ++------ .../05/GHSA-32wp-p7j2-grh2/GHSA-32wp-p7j2-grh2.json | 8 ++------ .../05/GHSA-34rw-q4gp-cwxm/GHSA-34rw-q4gp-cwxm.json | 12 +++--------- .../05/GHSA-3524-9jx8-82v5/GHSA-3524-9jx8-82v5.json | 12 +++--------- .../05/GHSA-35p6-jmhj-fg2v/GHSA-35p6-jmhj-fg2v.json | 12 +++--------- .../05/GHSA-35wj-849x-phrf/GHSA-35wj-849x-phrf.json | 12 +++--------- .../05/GHSA-362c-mvq7-4vmp/GHSA-362c-mvq7-4vmp.json | 12 +++--------- .../05/GHSA-3657-w454-hxhx/GHSA-3657-w454-hxhx.json | 8 ++------ .../05/GHSA-3679-c5fh-7q7w/GHSA-3679-c5fh-7q7w.json | 12 +++--------- .../05/GHSA-36qc-mhwr-pgr8/GHSA-36qc-mhwr-pgr8.json | 12 +++--------- .../05/GHSA-36vx-prg4-m6g2/GHSA-36vx-prg4-m6g2.json | 8 ++------ .../05/GHSA-3747-557g-7h35/GHSA-3747-557g-7h35.json | 4 +--- .../05/GHSA-3769-594w-8mvc/GHSA-3769-594w-8mvc.json | 8 ++------ .../05/GHSA-38pv-hgp9-59rp/GHSA-38pv-hgp9-59rp.json | 8 ++------ .../05/GHSA-398r-4xmm-8gch/GHSA-398r-4xmm-8gch.json | 8 ++------ .../05/GHSA-39jx-6759-44c6/GHSA-39jx-6759-44c6.json | 4 +--- .../05/GHSA-39vp-wwfv-g5fj/GHSA-39vp-wwfv-g5fj.json | 8 ++------ .../05/GHSA-3cff-26h6-w48r/GHSA-3cff-26h6-w48r.json | 8 ++------ .../05/GHSA-3gc4-7jhv-jgfc/GHSA-3gc4-7jhv-jgfc.json | 12 +++--------- .../05/GHSA-3ggh-v6pr-hc9h/GHSA-3ggh-v6pr-hc9h.json | 12 +++--------- .../05/GHSA-3hxx-7wff-xwh8/GHSA-3hxx-7wff-xwh8.json | 12 +++--------- .../05/GHSA-3jg2-8xp4-m2fx/GHSA-3jg2-8xp4-m2fx.json | 8 ++------ .../05/GHSA-3jpx-33f8-9xxc/GHSA-3jpx-33f8-9xxc.json | 8 ++------ .../05/GHSA-3m5q-4mj3-9362/GHSA-3m5q-4mj3-9362.json | 8 ++------ .../05/GHSA-3mf4-grcw-4c92/GHSA-3mf4-grcw-4c92.json | 12 +++--------- .../05/GHSA-3mjc-9976-q699/GHSA-3mjc-9976-q699.json | 8 ++------ .../05/GHSA-3mpq-x397-f3cg/GHSA-3mpq-x397-f3cg.json | 8 ++------ .../05/GHSA-3pq5-xxv9-fj58/GHSA-3pq5-xxv9-fj58.json | 8 ++------ .../05/GHSA-3q5x-3fpw-pfv9/GHSA-3q5x-3fpw-pfv9.json | 4 +--- .../05/GHSA-3q94-6qx8-j4xw/GHSA-3q94-6qx8-j4xw.json | 8 ++------ .../05/GHSA-3qjc-52vw-gmrg/GHSA-3qjc-52vw-gmrg.json | 8 ++------ .../05/GHSA-3qjg-973r-4w6w/GHSA-3qjg-973r-4w6w.json | 8 ++------ .../05/GHSA-3r5p-998x-5m4f/GHSA-3r5p-998x-5m4f.json | 8 ++------ .../05/GHSA-3vvg-7h3p-gmv3/GHSA-3vvg-7h3p-gmv3.json | 12 +++--------- .../05/GHSA-3w7r-ghxm-95w6/GHSA-3w7r-ghxm-95w6.json | 8 ++------ .../05/GHSA-3x3p-75r6-3954/GHSA-3x3p-75r6-3954.json | 12 +++--------- .../05/GHSA-3x8g-wg8m-8443/GHSA-3x8g-wg8m-8443.json | 8 ++------ .../05/GHSA-3xj7-5rr9-482h/GHSA-3xj7-5rr9-482h.json | 8 ++------ .../05/GHSA-3xwc-546j-255h/GHSA-3xwc-546j-255h.json | 8 ++------ .../05/GHSA-426g-wxf4-8rhw/GHSA-426g-wxf4-8rhw.json | 4 +--- .../05/GHSA-42c3-r2c7-ghj3/GHSA-42c3-r2c7-ghj3.json | 12 +++--------- .../05/GHSA-42cg-5gpq-7hrm/GHSA-42cg-5gpq-7hrm.json | 12 +++--------- .../05/GHSA-42jr-443g-g58q/GHSA-42jr-443g-g58q.json | 12 +++--------- .../05/GHSA-42m2-ww59-87vv/GHSA-42m2-ww59-87vv.json | 12 +++--------- .../05/GHSA-42r3-wgqh-9v9h/GHSA-42r3-wgqh-9v9h.json | 12 +++--------- .../05/GHSA-43pq-r97m-pgc4/GHSA-43pq-r97m-pgc4.json | 8 ++------ .../05/GHSA-445r-27v9-x6w7/GHSA-445r-27v9-x6w7.json | 8 ++------ .../05/GHSA-4472-77jr-3q62/GHSA-4472-77jr-3q62.json | 12 +++--------- .../05/GHSA-448v-xwm2-9qr5/GHSA-448v-xwm2-9qr5.json | 12 +++--------- .../05/GHSA-44gv-7gp8-m9mw/GHSA-44gv-7gp8-m9mw.json | 12 +++--------- .../05/GHSA-4532-5878-vcc3/GHSA-4532-5878-vcc3.json | 8 ++------ .../05/GHSA-453r-pmqf-ww9g/GHSA-453r-pmqf-ww9g.json | 12 +++--------- .../05/GHSA-457j-cjp6-q7h3/GHSA-457j-cjp6-q7h3.json | 8 ++------ .../05/GHSA-47fc-5829-4cxj/GHSA-47fc-5829-4cxj.json | 8 ++------ .../05/GHSA-495j-2cpg-h2g3/GHSA-495j-2cpg-h2g3.json | 8 ++------ .../05/GHSA-49ww-c2gw-f75j/GHSA-49ww-c2gw-f75j.json | 8 ++------ .../05/GHSA-4c2v-p982-wgvx/GHSA-4c2v-p982-wgvx.json | 12 +++--------- .../05/GHSA-4cg4-4695-q899/GHSA-4cg4-4695-q899.json | 12 +++--------- .../05/GHSA-4ch8-r5h5-w889/GHSA-4ch8-r5h5-w889.json | 8 ++------ .../05/GHSA-4f4q-2g4m-9h57/GHSA-4f4q-2g4m-9h57.json | 12 +++--------- .../05/GHSA-4fc7-9mv4-pp8w/GHSA-4fc7-9mv4-pp8w.json | 12 +++--------- .../05/GHSA-4frq-5fwv-f2w3/GHSA-4frq-5fwv-f2w3.json | 12 +++--------- .../05/GHSA-4g9j-hp5m-7j2p/GHSA-4g9j-hp5m-7j2p.json | 8 ++------ .../05/GHSA-4g9j-m5r7-mvh4/GHSA-4g9j-m5r7-mvh4.json | 12 +++--------- .../05/GHSA-4gq2-9rxc-45pg/GHSA-4gq2-9rxc-45pg.json | 4 +--- .../05/GHSA-4gq7-2m92-2hrw/GHSA-4gq7-2m92-2hrw.json | 12 +++--------- .../05/GHSA-4h4c-7mxx-xhjj/GHSA-4h4c-7mxx-xhjj.json | 12 +++--------- .../05/GHSA-4hq4-73p9-hvch/GHSA-4hq4-73p9-hvch.json | 12 +++--------- .../05/GHSA-4hwj-h887-xw3m/GHSA-4hwj-h887-xw3m.json | 12 +++--------- .../05/GHSA-4j4j-45pm-jf8h/GHSA-4j4j-45pm-jf8h.json | 8 ++------ .../05/GHSA-4j4x-29c6-hvrh/GHSA-4j4x-29c6-hvrh.json | 8 ++------ .../05/GHSA-4j63-gr7g-p9pj/GHSA-4j63-gr7g-p9pj.json | 12 +++--------- .../05/GHSA-4jfc-29qj-3q46/GHSA-4jfc-29qj-3q46.json | 8 ++------ .../05/GHSA-4mvg-rx8p-7w6c/GHSA-4mvg-rx8p-7w6c.json | 12 +++--------- .../05/GHSA-4p85-2vx8-762m/GHSA-4p85-2vx8-762m.json | 12 +++--------- .../05/GHSA-4pg5-rffm-vpmp/GHSA-4pg5-rffm-vpmp.json | 12 +++--------- .../05/GHSA-4pmm-77fx-g9g6/GHSA-4pmm-77fx-g9g6.json | 12 +++--------- .../05/GHSA-4q82-xq88-g8g4/GHSA-4q82-xq88-g8g4.json | 8 ++------ .../05/GHSA-4qvq-xp3p-8jfq/GHSA-4qvq-xp3p-8jfq.json | 8 ++------ .../05/GHSA-4r8g-96wp-vqm6/GHSA-4r8g-96wp-vqm6.json | 8 ++------ .../05/GHSA-4r9m-prw4-64m4/GHSA-4r9m-prw4-64m4.json | 8 ++------ .../05/GHSA-4rhv-54g5-f4cm/GHSA-4rhv-54g5-f4cm.json | 8 ++------ .../05/GHSA-4rvj-5qmg-gmxv/GHSA-4rvj-5qmg-gmxv.json | 12 +++--------- .../05/GHSA-4v4f-p5gf-h336/GHSA-4v4f-p5gf-h336.json | 8 ++------ .../05/GHSA-4v8w-428c-cm63/GHSA-4v8w-428c-cm63.json | 8 ++------ .../05/GHSA-4vhh-rr3r-2p8j/GHSA-4vhh-rr3r-2p8j.json | 12 +++--------- .../05/GHSA-4w3v-xg6m-mghp/GHSA-4w3v-xg6m-mghp.json | 8 ++------ .../05/GHSA-4wg8-4rmc-5234/GHSA-4wg8-4rmc-5234.json | 12 +++--------- .../05/GHSA-52q3-cgph-xhf4/GHSA-52q3-cgph-xhf4.json | 8 ++------ .../05/GHSA-52xq-wv9w-6fxm/GHSA-52xq-wv9w-6fxm.json | 12 +++--------- .../05/GHSA-5348-x87r-x9hj/GHSA-5348-x87r-x9hj.json | 8 ++------ .../05/GHSA-53c3-c3pf-mjfg/GHSA-53c3-c3pf-mjfg.json | 12 +++--------- .../05/GHSA-53qv-mxhg-4g97/GHSA-53qv-mxhg-4g97.json | 8 ++------ .../05/GHSA-5449-j6vm-5wc2/GHSA-5449-j6vm-5wc2.json | 12 +++--------- .../05/GHSA-545x-w2c3-gjv5/GHSA-545x-w2c3-gjv5.json | 8 ++------ .../05/GHSA-54p5-g8h5-9c9x/GHSA-54p5-g8h5-9c9x.json | 8 ++------ .../05/GHSA-55gw-qcg5-xjrx/GHSA-55gw-qcg5-xjrx.json | 8 ++------ .../05/GHSA-56xw-8wf9-j3x9/GHSA-56xw-8wf9-j3x9.json | 4 +--- .../05/GHSA-5793-9787-qp7m/GHSA-5793-9787-qp7m.json | 12 +++--------- .../05/GHSA-589g-vgq7-8xv6/GHSA-589g-vgq7-8xv6.json | 8 ++------ .../05/GHSA-58rc-hpq4-f2gh/GHSA-58rc-hpq4-f2gh.json | 8 ++------ .../05/GHSA-58v3-xw4q-v5wp/GHSA-58v3-xw4q-v5wp.json | 8 ++------ .../05/GHSA-5956-24pp-59rq/GHSA-5956-24pp-59rq.json | 8 ++------ .../05/GHSA-59p2-jp4m-68q6/GHSA-59p2-jp4m-68q6.json | 12 +++--------- .../05/GHSA-5c5j-3cq6-f3m3/GHSA-5c5j-3cq6-f3m3.json | 8 ++------ .../05/GHSA-5c69-r476-v7h2/GHSA-5c69-r476-v7h2.json | 8 ++------ .../05/GHSA-5chj-892r-cfh4/GHSA-5chj-892r-cfh4.json | 12 +++--------- .../05/GHSA-5fhf-vchf-8m4q/GHSA-5fhf-vchf-8m4q.json | 8 ++------ .../05/GHSA-5fp5-r88m-3ph7/GHSA-5fp5-r88m-3ph7.json | 12 +++--------- .../05/GHSA-5g3j-37m8-6v8f/GHSA-5g3j-37m8-6v8f.json | 12 +++--------- .../05/GHSA-5g58-6469-p6x8/GHSA-5g58-6469-p6x8.json | 12 +++--------- .../05/GHSA-5g5h-p2gm-9j6p/GHSA-5g5h-p2gm-9j6p.json | 8 ++------ .../05/GHSA-5g9q-h772-m2pq/GHSA-5g9q-h772-m2pq.json | 8 ++------ .../05/GHSA-5gq9-qhr6-c66r/GHSA-5gq9-qhr6-c66r.json | 12 +++--------- .../05/GHSA-5gxv-3pxq-mmxj/GHSA-5gxv-3pxq-mmxj.json | 8 ++------ .../05/GHSA-5hf6-7gxx-55wg/GHSA-5hf6-7gxx-55wg.json | 4 +--- .../05/GHSA-5hv3-87wh-h8h8/GHSA-5hv3-87wh-h8h8.json | 8 ++------ .../05/GHSA-5jc3-j88w-98gp/GHSA-5jc3-j88w-98gp.json | 8 ++------ .../05/GHSA-5jf7-29p2-6rfv/GHSA-5jf7-29p2-6rfv.json | 8 ++------ .../05/GHSA-5m7m-mrc8-69mh/GHSA-5m7m-mrc8-69mh.json | 12 +++--------- .../05/GHSA-5mqp-g99f-6r5f/GHSA-5mqp-g99f-6r5f.json | 12 +++--------- .../05/GHSA-5p82-mxgj-w2gc/GHSA-5p82-mxgj-w2gc.json | 12 +++--------- .../05/GHSA-5p9h-8pmj-7qhf/GHSA-5p9h-8pmj-7qhf.json | 12 +++--------- .../05/GHSA-5pm6-mxvg-938j/GHSA-5pm6-mxvg-938j.json | 12 +++--------- .../05/GHSA-5pqp-vqfr-x6rf/GHSA-5pqp-vqfr-x6rf.json | 8 ++------ .../05/GHSA-5pvm-xfh9-cf8m/GHSA-5pvm-xfh9-cf8m.json | 8 ++------ .../05/GHSA-5pvv-j5jp-5762/GHSA-5pvv-j5jp-5762.json | 12 +++--------- .../05/GHSA-5r7w-vjmq-g46c/GHSA-5r7w-vjmq-g46c.json | 8 ++------ .../05/GHSA-5rfc-ghhv-7rg5/GHSA-5rfc-ghhv-7rg5.json | 8 ++------ .../05/GHSA-5v2q-2wj9-7j5x/GHSA-5v2q-2wj9-7j5x.json | 8 ++------ .../05/GHSA-5v58-xf49-c495/GHSA-5v58-xf49-c495.json | 12 +++--------- .../05/GHSA-5xjg-wggg-qh5w/GHSA-5xjg-wggg-qh5w.json | 8 ++------ .../05/GHSA-5xww-5f35-hfhp/GHSA-5xww-5f35-hfhp.json | 12 +++--------- .../05/GHSA-62fv-c64m-ffwf/GHSA-62fv-c64m-ffwf.json | 12 +++--------- .../05/GHSA-63gx-gp99-wcgc/GHSA-63gx-gp99-wcgc.json | 4 +--- .../05/GHSA-63jh-72mh-4j8p/GHSA-63jh-72mh-4j8p.json | 12 +++--------- .../05/GHSA-64vg-cqcc-3v6g/GHSA-64vg-cqcc-3v6g.json | 12 +++--------- .../05/GHSA-64vh-q3qf-wgf8/GHSA-64vh-q3qf-wgf8.json | 4 +--- .../05/GHSA-6546-f2h5-84c9/GHSA-6546-f2h5-84c9.json | 8 ++------ .../05/GHSA-659m-4hw2-pcg3/GHSA-659m-4hw2-pcg3.json | 8 ++------ .../05/GHSA-65fc-r6mj-6v9j/GHSA-65fc-r6mj-6v9j.json | 12 +++--------- .../05/GHSA-65jr-xp2m-mpxq/GHSA-65jr-xp2m-mpxq.json | 8 ++------ .../05/GHSA-65m6-pr6v-g87w/GHSA-65m6-pr6v-g87w.json | 12 +++--------- .../05/GHSA-669r-j85h-hf68/GHSA-669r-j85h-hf68.json | 8 ++------ .../05/GHSA-66rg-464w-8q32/GHSA-66rg-464w-8q32.json | 12 +++--------- .../05/GHSA-67cg-hqpj-xmm9/GHSA-67cg-hqpj-xmm9.json | 12 +++--------- .../05/GHSA-67pv-grw8-c32m/GHSA-67pv-grw8-c32m.json | 8 ++------ .../05/GHSA-68gv-xmrh-j5g5/GHSA-68gv-xmrh-j5g5.json | 8 ++------ .../05/GHSA-68hw-8fjw-9pjh/GHSA-68hw-8fjw-9pjh.json | 12 +++--------- .../05/GHSA-6942-4w7c-pqj8/GHSA-6942-4w7c-pqj8.json | 12 +++--------- .../05/GHSA-695f-w22f-6vhg/GHSA-695f-w22f-6vhg.json | 12 +++--------- .../05/GHSA-69q5-wxg3-975x/GHSA-69q5-wxg3-975x.json | 12 +++--------- .../05/GHSA-6f2j-xq53-97gq/GHSA-6f2j-xq53-97gq.json | 8 ++------ .../05/GHSA-6fmc-jx85-mmx4/GHSA-6fmc-jx85-mmx4.json | 8 ++------ .../05/GHSA-6fvg-8hhr-r65p/GHSA-6fvg-8hhr-r65p.json | 8 ++------ .../05/GHSA-6g3w-8gqx-wp66/GHSA-6g3w-8gqx-wp66.json | 8 ++------ .../05/GHSA-6g4r-52jh-xv73/GHSA-6g4r-52jh-xv73.json | 12 +++--------- .../05/GHSA-6ggm-pwph-pqv3/GHSA-6ggm-pwph-pqv3.json | 12 +++--------- .../05/GHSA-6gjj-93cg-cj2v/GHSA-6gjj-93cg-cj2v.json | 8 ++------ .../05/GHSA-6gv9-w2gh-cw82/GHSA-6gv9-w2gh-cw82.json | 8 ++------ .../05/GHSA-6h2g-jwhf-r5c6/GHSA-6h2g-jwhf-r5c6.json | 12 +++--------- .../05/GHSA-6hgc-m2jj-hh5x/GHSA-6hgc-m2jj-hh5x.json | 8 ++------ .../05/GHSA-6hr4-x74v-qxgm/GHSA-6hr4-x74v-qxgm.json | 12 +++--------- .../05/GHSA-6hrh-m86r-6pjc/GHSA-6hrh-m86r-6pjc.json | 8 ++------ .../05/GHSA-6j26-qg9p-xqqm/GHSA-6j26-qg9p-xqqm.json | 12 +++--------- .../05/GHSA-6j3g-5ggq-5m62/GHSA-6j3g-5ggq-5m62.json | 8 ++------ .../05/GHSA-6j4v-9f2q-v33c/GHSA-6j4v-9f2q-v33c.json | 8 ++------ .../05/GHSA-6j7w-4w4r-9xwr/GHSA-6j7w-4w4r-9xwr.json | 12 +++--------- .../05/GHSA-6jpg-grj3-vm57/GHSA-6jpg-grj3-vm57.json | 12 +++--------- .../05/GHSA-6m4w-j5fc-2m7r/GHSA-6m4w-j5fc-2m7r.json | 8 ++------ .../05/GHSA-6p3r-79mc-w88g/GHSA-6p3r-79mc-w88g.json | 12 +++--------- .../05/GHSA-6p79-qp56-xj76/GHSA-6p79-qp56-xj76.json | 8 ++------ .../05/GHSA-6pp2-r37j-3rhq/GHSA-6pp2-r37j-3rhq.json | 12 +++--------- .../05/GHSA-6q5f-v462-fpjh/GHSA-6q5f-v462-fpjh.json | 12 +++--------- .../05/GHSA-6qjv-pcp7-rgfm/GHSA-6qjv-pcp7-rgfm.json | 12 +++--------- .../05/GHSA-6r53-qvwr-m586/GHSA-6r53-qvwr-m586.json | 8 ++------ .../05/GHSA-6rxj-38xv-j69g/GHSA-6rxj-38xv-j69g.json | 12 +++--------- .../05/GHSA-6vcp-6rcg-7642/GHSA-6vcp-6rcg-7642.json | 12 +++--------- .../05/GHSA-6vmr-mj5p-3jfh/GHSA-6vmr-mj5p-3jfh.json | 12 +++--------- .../05/GHSA-6w8q-vjhq-6qf2/GHSA-6w8q-vjhq-6qf2.json | 8 ++------ .../05/GHSA-6wgv-wjfv-42f8/GHSA-6wgv-wjfv-42f8.json | 8 ++------ .../05/GHSA-6whw-vgfh-5mch/GHSA-6whw-vgfh-5mch.json | 12 +++--------- .../05/GHSA-6x6x-3qjf-jrp3/GHSA-6x6x-3qjf-jrp3.json | 8 ++------ .../05/GHSA-6xc6-38fw-mpv2/GHSA-6xc6-38fw-mpv2.json | 8 ++------ .../05/GHSA-727v-v8qj-j7hq/GHSA-727v-v8qj-j7hq.json | 8 ++------ .../05/GHSA-72cc-8g3w-p9rf/GHSA-72cc-8g3w-p9rf.json | 8 ++------ .../05/GHSA-72fh-93mx-wg3m/GHSA-72fh-93mx-wg3m.json | 8 ++------ .../05/GHSA-742x-98m9-g236/GHSA-742x-98m9-g236.json | 8 ++------ .../05/GHSA-74jg-v6qv-47p6/GHSA-74jg-v6qv-47p6.json | 8 ++------ .../05/GHSA-74p3-m43j-523p/GHSA-74p3-m43j-523p.json | 8 ++------ .../05/GHSA-754r-c6vv-mv5g/GHSA-754r-c6vv-mv5g.json | 12 +++--------- .../05/GHSA-755g-9f69-83cm/GHSA-755g-9f69-83cm.json | 12 +++--------- .../05/GHSA-75rh-cj3q-gpq7/GHSA-75rh-cj3q-gpq7.json | 12 +++--------- .../05/GHSA-75wq-g7g6-fpm6/GHSA-75wq-g7g6-fpm6.json | 8 ++------ .../05/GHSA-76v2-q54h-r7wc/GHSA-76v2-q54h-r7wc.json | 12 +++--------- .../05/GHSA-77cq-2r3w-6xhj/GHSA-77cq-2r3w-6xhj.json | 8 ++------ .../05/GHSA-77x9-9vv7-m53g/GHSA-77x9-9vv7-m53g.json | 8 ++------ .../05/GHSA-78rm-x38x-8fwp/GHSA-78rm-x38x-8fwp.json | 8 ++------ .../05/GHSA-793h-2rhx-h6r4/GHSA-793h-2rhx-h6r4.json | 8 ++------ .../05/GHSA-7967-3g5v-3pfc/GHSA-7967-3g5v-3pfc.json | 8 ++------ .../05/GHSA-7c97-97wj-vp33/GHSA-7c97-97wj-vp33.json | 12 +++--------- .../05/GHSA-7crj-j86f-65vw/GHSA-7crj-j86f-65vw.json | 8 ++------ .../05/GHSA-7f5c-7r4j-r8cc/GHSA-7f5c-7r4j-r8cc.json | 12 +++--------- .../05/GHSA-7f8x-2qmr-vpm2/GHSA-7f8x-2qmr-vpm2.json | 8 ++------ .../05/GHSA-7fgf-gwfr-hp5w/GHSA-7fgf-gwfr-hp5w.json | 8 ++------ .../05/GHSA-7g8w-vphh-j565/GHSA-7g8w-vphh-j565.json | 12 +++--------- .../05/GHSA-7grg-p5c8-59hg/GHSA-7grg-p5c8-59hg.json | 8 ++------ .../05/GHSA-7hjw-w33m-2jqc/GHSA-7hjw-w33m-2jqc.json | 12 +++--------- .../05/GHSA-7hp8-hwrp-vfhp/GHSA-7hp8-hwrp-vfhp.json | 8 ++------ .../05/GHSA-7j23-jgvg-w62h/GHSA-7j23-jgvg-w62h.json | 12 +++--------- .../05/GHSA-7j7c-fpxp-8wjc/GHSA-7j7c-fpxp-8wjc.json | 8 ++------ .../05/GHSA-7jr7-p2g8-6cfq/GHSA-7jr7-p2g8-6cfq.json | 12 +++--------- .../05/GHSA-7mcc-6vvm-m53x/GHSA-7mcc-6vvm-m53x.json | 8 ++------ .../05/GHSA-7mcw-6r84-frfh/GHSA-7mcw-6r84-frfh.json | 8 ++------ .../05/GHSA-7mg2-6qgr-3p64/GHSA-7mg2-6qgr-3p64.json | 12 +++--------- .../05/GHSA-7p7h-58wp-83q6/GHSA-7p7h-58wp-83q6.json | 4 +--- .../05/GHSA-7pr6-6xvw-9gq7/GHSA-7pr6-6xvw-9gq7.json | 8 ++------ .../05/GHSA-7r9c-232f-pq69/GHSA-7r9c-232f-pq69.json | 8 ++------ .../05/GHSA-7rpx-j367-5grh/GHSA-7rpx-j367-5grh.json | 12 +++--------- .../05/GHSA-7vrx-w4v5-hwph/GHSA-7vrx-w4v5-hwph.json | 4 +--- .../05/GHSA-7w8g-7q9j-4m8v/GHSA-7w8g-7q9j-4m8v.json | 8 ++------ .../05/GHSA-7x24-m435-6p35/GHSA-7x24-m435-6p35.json | 8 ++------ .../05/GHSA-7xgr-cxmr-5q3f/GHSA-7xgr-cxmr-5q3f.json | 8 ++------ .../05/GHSA-7xwr-ggr5-9p9v/GHSA-7xwr-ggr5-9p9v.json | 8 ++------ .../05/GHSA-824g-39r8-p8w4/GHSA-824g-39r8-p8w4.json | 8 ++------ .../05/GHSA-828f-jqq8-fh9w/GHSA-828f-jqq8-fh9w.json | 12 +++--------- .../05/GHSA-82c2-q9r7-c94r/GHSA-82c2-q9r7-c94r.json | 12 +++--------- .../05/GHSA-82j8-6pp8-485c/GHSA-82j8-6pp8-485c.json | 8 ++------ .../05/GHSA-833p-5v27-qv7x/GHSA-833p-5v27-qv7x.json | 12 +++--------- .../05/GHSA-838g-ff3f-wpf6/GHSA-838g-ff3f-wpf6.json | 8 ++------ .../05/GHSA-83p9-rx59-w8cr/GHSA-83p9-rx59-w8cr.json | 8 ++------ .../05/GHSA-849f-xm79-q5pg/GHSA-849f-xm79-q5pg.json | 12 +++--------- .../05/GHSA-855f-vpmx-8c43/GHSA-855f-vpmx-8c43.json | 8 ++------ .../05/GHSA-85r2-29qv-9cmr/GHSA-85r2-29qv-9cmr.json | 8 ++------ .../05/GHSA-86vr-cgmf-qfp3/GHSA-86vr-cgmf-qfp3.json | 12 +++--------- .../05/GHSA-875q-qqc7-vvpg/GHSA-875q-qqc7-vvpg.json | 8 ++------ .../05/GHSA-87j5-gppq-mq6h/GHSA-87j5-gppq-mq6h.json | 4 +--- .../05/GHSA-87x4-2c3p-r924/GHSA-87x4-2c3p-r924.json | 12 +++--------- .../05/GHSA-88jg-r73m-6589/GHSA-88jg-r73m-6589.json | 8 ++------ .../05/GHSA-88m9-g755-gjf2/GHSA-88m9-g755-gjf2.json | 8 ++------ .../05/GHSA-88r7-g8q7-p769/GHSA-88r7-g8q7-p769.json | 12 +++--------- .../05/GHSA-89gq-vp5v-fw85/GHSA-89gq-vp5v-fw85.json | 8 ++------ .../05/GHSA-8f72-282j-f5f8/GHSA-8f72-282j-f5f8.json | 12 +++--------- .../05/GHSA-8fgf-qjq6-rg8m/GHSA-8fgf-qjq6-rg8m.json | 8 ++------ .../05/GHSA-8fjr-4fgp-chvf/GHSA-8fjr-4fgp-chvf.json | 12 +++--------- .../05/GHSA-8frw-h99g-7h23/GHSA-8frw-h99g-7h23.json | 8 ++------ .../05/GHSA-8hj3-27pm-6v64/GHSA-8hj3-27pm-6v64.json | 12 +++--------- .../05/GHSA-8j95-63h3-gqvw/GHSA-8j95-63h3-gqvw.json | 12 +++--------- .../05/GHSA-8m6f-jm2w-hq3h/GHSA-8m6f-jm2w-hq3h.json | 12 +++--------- .../05/GHSA-8m7g-3wf3-3hff/GHSA-8m7g-3wf3-3hff.json | 8 ++------ .../05/GHSA-8m94-mr2v-9fhp/GHSA-8m94-mr2v-9fhp.json | 12 +++--------- .../05/GHSA-8p62-8jvq-2hh6/GHSA-8p62-8jvq-2hh6.json | 4 +--- .../05/GHSA-8p9h-cf62-j26q/GHSA-8p9h-cf62-j26q.json | 8 ++------ .../05/GHSA-8pc9-qhj9-cjc3/GHSA-8pc9-qhj9-cjc3.json | 8 ++------ .../05/GHSA-8pjf-mf88-ccv8/GHSA-8pjf-mf88-ccv8.json | 8 ++------ .../05/GHSA-8pwq-jc34-j7q9/GHSA-8pwq-jc34-j7q9.json | 8 ++------ .../05/GHSA-8q29-pxvg-f8q6/GHSA-8q29-pxvg-f8q6.json | 12 +++--------- .../05/GHSA-8qc6-g8vf-6hgp/GHSA-8qc6-g8vf-6hgp.json | 12 +++--------- .../05/GHSA-8r37-j9gc-53g7/GHSA-8r37-j9gc-53g7.json | 8 ++------ .../05/GHSA-8rj8-7q6h-g4g9/GHSA-8rj8-7q6h-g4g9.json | 4 +--- .../05/GHSA-8w48-v6c6-mw8h/GHSA-8w48-v6c6-mw8h.json | 12 +++--------- .../05/GHSA-8w8r-x75f-4wvv/GHSA-8w8r-x75f-4wvv.json | 8 ++------ .../05/GHSA-8wc9-qc22-p84p/GHSA-8wc9-qc22-p84p.json | 12 +++--------- .../05/GHSA-8wq4-qwwj-mvjj/GHSA-8wq4-qwwj-mvjj.json | 12 +++--------- .../05/GHSA-8wrc-c7jv-4q34/GHSA-8wrc-c7jv-4q34.json | 8 ++------ .../05/GHSA-8wvc-qm7p-5pq5/GHSA-8wvc-qm7p-5pq5.json | 12 +++--------- .../05/GHSA-8wx4-qqgw-5fv2/GHSA-8wx4-qqgw-5fv2.json | 8 ++------ .../05/GHSA-8xvp-wq7g-q2vj/GHSA-8xvp-wq7g-q2vj.json | 12 +++--------- .../05/GHSA-9387-39pg-qwg6/GHSA-9387-39pg-qwg6.json | 8 ++------ .../05/GHSA-9399-p33p-285c/GHSA-9399-p33p-285c.json | 8 ++------ .../05/GHSA-939q-vfrh-p4c9/GHSA-939q-vfrh-p4c9.json | 8 ++------ .../05/GHSA-93vc-2h9g-v2wq/GHSA-93vc-2h9g-v2wq.json | 12 +++--------- .../05/GHSA-94c4-qg85-58m3/GHSA-94c4-qg85-58m3.json | 12 +++--------- .../05/GHSA-94j2-2w6f-7qp9/GHSA-94j2-2w6f-7qp9.json | 12 +++--------- .../05/GHSA-94r2-v2xw-w95p/GHSA-94r2-v2xw-w95p.json | 12 +++--------- .../05/GHSA-95vr-vmv6-h6qj/GHSA-95vr-vmv6-h6qj.json | 8 ++------ .../05/GHSA-95w6-27hf-p635/GHSA-95w6-27hf-p635.json | 12 +++--------- .../05/GHSA-976g-x9w5-4h78/GHSA-976g-x9w5-4h78.json | 8 ++------ .../05/GHSA-97p2-p7rw-rggc/GHSA-97p2-p7rw-rggc.json | 8 ++------ .../05/GHSA-9897-h8f9-rg64/GHSA-9897-h8f9-rg64.json | 12 +++--------- .../05/GHSA-98fj-2mhw-486f/GHSA-98fj-2mhw-486f.json | 8 ++------ .../05/GHSA-98g7-ggp2-2q96/GHSA-98g7-ggp2-2q96.json | 8 ++------ .../05/GHSA-98j9-pc95-qjw3/GHSA-98j9-pc95-qjw3.json | 12 +++--------- .../05/GHSA-99fg-5jg8-x79m/GHSA-99fg-5jg8-x79m.json | 8 ++------ .../05/GHSA-9gcq-4h5g-5wx6/GHSA-9gcq-4h5g-5wx6.json | 8 ++------ .../05/GHSA-9ghx-rj25-wxc9/GHSA-9ghx-rj25-wxc9.json | 12 +++--------- .../05/GHSA-9gqf-m6rq-xw2m/GHSA-9gqf-m6rq-xw2m.json | 8 ++------ .../05/GHSA-9h27-8cv4-44j6/GHSA-9h27-8cv4-44j6.json | 8 ++------ .../05/GHSA-9h85-4fv6-58pj/GHSA-9h85-4fv6-58pj.json | 8 ++------ .../05/GHSA-9hh6-fxg3-qpgc/GHSA-9hh6-fxg3-qpgc.json | 8 ++------ .../05/GHSA-9j9x-qw8r-p5pq/GHSA-9j9x-qw8r-p5pq.json | 8 ++------ .../05/GHSA-9jjc-8wp4-j2mp/GHSA-9jjc-8wp4-j2mp.json | 8 ++------ .../05/GHSA-9mq3-v894-gjm6/GHSA-9mq3-v894-gjm6.json | 12 +++--------- .../05/GHSA-9p5c-9rhf-4q9x/GHSA-9p5c-9rhf-4q9x.json | 8 ++------ .../05/GHSA-9q2j-c74h-2vcr/GHSA-9q2j-c74h-2vcr.json | 8 ++------ .../05/GHSA-9qfc-3x74-jp38/GHSA-9qfc-3x74-jp38.json | 8 ++------ .../05/GHSA-9qxh-6993-386r/GHSA-9qxh-6993-386r.json | 8 ++------ .../05/GHSA-9v7m-xcpp-wfqx/GHSA-9v7m-xcpp-wfqx.json | 8 ++------ .../05/GHSA-9v7p-64xp-q6jf/GHSA-9v7p-64xp-q6jf.json | 12 +++--------- .../05/GHSA-9vm3-476v-v37g/GHSA-9vm3-476v-v37g.json | 8 ++------ .../05/GHSA-9vwm-p764-2vh2/GHSA-9vwm-p764-2vh2.json | 12 +++--------- .../05/GHSA-9w39-p67f-3c97/GHSA-9w39-p67f-3c97.json | 8 ++------ .../05/GHSA-9x38-862g-jg8w/GHSA-9x38-862g-jg8w.json | 12 +++--------- .../05/GHSA-9x8g-36jg-fvcv/GHSA-9x8g-36jg-fvcv.json | 12 +++--------- .../05/GHSA-9xcj-87h6-65v2/GHSA-9xcj-87h6-65v2.json | 8 ++------ .../05/GHSA-9xpj-rc37-234v/GHSA-9xpj-rc37-234v.json | 12 +++--------- .../05/GHSA-c2cv-ghmr-h386/GHSA-c2cv-ghmr-h386.json | 8 ++------ .../05/GHSA-c3jg-hcmc-rg93/GHSA-c3jg-hcmc-rg93.json | 12 +++--------- .../05/GHSA-c3vg-6xr9-vmj9/GHSA-c3vg-6xr9-vmj9.json | 8 ++------ .../05/GHSA-c426-xr6j-jp5v/GHSA-c426-xr6j-jp5v.json | 8 ++------ .../05/GHSA-c4jw-hx2x-f4j8/GHSA-c4jw-hx2x-f4j8.json | 12 +++--------- .../05/GHSA-c4q8-jg8m-p6pw/GHSA-c4q8-jg8m-p6pw.json | 4 +--- .../05/GHSA-c4rf-ff72-rpgr/GHSA-c4rf-ff72-rpgr.json | 12 +++--------- .../05/GHSA-c54g-4qr4-6pfm/GHSA-c54g-4qr4-6pfm.json | 12 +++--------- .../05/GHSA-c67x-wr29-p7p6/GHSA-c67x-wr29-p7p6.json | 8 ++------ .../05/GHSA-c6g5-cm8q-mv7g/GHSA-c6g5-cm8q-mv7g.json | 8 ++------ .../05/GHSA-c6qx-5wv4-9972/GHSA-c6qx-5wv4-9972.json | 8 ++------ .../05/GHSA-c746-rx52-w5cm/GHSA-c746-rx52-w5cm.json | 8 ++------ .../05/GHSA-c8p5-6xf7-qcx4/GHSA-c8p5-6xf7-qcx4.json | 8 ++------ .../05/GHSA-c8w3-89m7-qfwc/GHSA-c8w3-89m7-qfwc.json | 12 +++--------- .../05/GHSA-c9pm-wqw2-p2v7/GHSA-c9pm-wqw2-p2v7.json | 12 +++--------- .../05/GHSA-cc4q-35f8-jwmg/GHSA-cc4q-35f8-jwmg.json | 8 ++------ .../05/GHSA-ccvf-fmjm-6rwv/GHSA-ccvf-fmjm-6rwv.json | 4 +--- .../05/GHSA-cfvw-hpqm-vv6h/GHSA-cfvw-hpqm-vv6h.json | 12 +++--------- .../05/GHSA-cg34-q4xv-v6xv/GHSA-cg34-q4xv-v6xv.json | 12 +++--------- .../05/GHSA-cg3x-2572-rpvr/GHSA-cg3x-2572-rpvr.json | 12 +++--------- .../05/GHSA-cg8p-xj6f-g83m/GHSA-cg8p-xj6f-g83m.json | 12 +++--------- .../05/GHSA-ch7p-82hg-j456/GHSA-ch7p-82hg-j456.json | 12 +++--------- .../05/GHSA-cmc9-m547-x8f2/GHSA-cmc9-m547-x8f2.json | 12 +++--------- .../05/GHSA-cpqr-cpwc-vxwv/GHSA-cpqr-cpwc-vxwv.json | 8 ++------ .../05/GHSA-cqp5-r2pj-gw95/GHSA-cqp5-r2pj-gw95.json | 12 +++--------- .../05/GHSA-crvv-782p-52cr/GHSA-crvv-782p-52cr.json | 8 ++------ .../05/GHSA-crxg-42h5-fw55/GHSA-crxg-42h5-fw55.json | 12 +++--------- .../05/GHSA-cvfv-748g-qpfc/GHSA-cvfv-748g-qpfc.json | 4 +--- .../05/GHSA-cw46-2282-7m47/GHSA-cw46-2282-7m47.json | 8 ++------ .../05/GHSA-cw7r-xrhg-xv22/GHSA-cw7r-xrhg-xv22.json | 8 ++------ .../05/GHSA-cw97-jmj5-gm8h/GHSA-cw97-jmj5-gm8h.json | 8 ++------ .../05/GHSA-cwfp-wwxr-hhq6/GHSA-cwfp-wwxr-hhq6.json | 12 +++--------- .../05/GHSA-f23h-24h4-f4x9/GHSA-f23h-24h4-f4x9.json | 12 +++--------- .../05/GHSA-f23x-fj23-ppj4/GHSA-f23x-fj23-ppj4.json | 8 ++------ .../05/GHSA-f25x-q2hm-wq52/GHSA-f25x-q2hm-wq52.json | 8 ++------ .../05/GHSA-f37f-gw6p-38r2/GHSA-f37f-gw6p-38r2.json | 8 ++------ .../05/GHSA-f3jg-h6j3-rg6h/GHSA-f3jg-h6j3-rg6h.json | 12 +++--------- .../05/GHSA-f3jx-26gh-ppcx/GHSA-f3jx-26gh-ppcx.json | 8 ++------ .../05/GHSA-f45g-v429-c6px/GHSA-f45g-v429-c6px.json | 8 ++------ .../05/GHSA-f48q-jvj9-xmwh/GHSA-f48q-jvj9-xmwh.json | 12 +++--------- .../05/GHSA-f4p2-64fc-c2r9/GHSA-f4p2-64fc-c2r9.json | 8 ++------ .../05/GHSA-f4x7-2w77-444m/GHSA-f4x7-2w77-444m.json | 8 ++------ .../05/GHSA-f5f8-hv26-rgx9/GHSA-f5f8-hv26-rgx9.json | 8 ++------ .../05/GHSA-f5rx-x946-jm33/GHSA-f5rx-x946-jm33.json | 12 +++--------- .../05/GHSA-f6vq-5p8m-v2h5/GHSA-f6vq-5p8m-v2h5.json | 8 ++------ .../05/GHSA-f74m-jmww-q4m2/GHSA-f74m-jmww-q4m2.json | 12 +++--------- .../05/GHSA-f786-x4vc-7rj4/GHSA-f786-x4vc-7rj4.json | 12 +++--------- .../05/GHSA-f78m-qr4v-qgmc/GHSA-f78m-qr4v-qgmc.json | 8 ++------ .../05/GHSA-f884-hg8h-4m66/GHSA-f884-hg8h-4m66.json | 12 +++--------- .../05/GHSA-f89g-prcc-gc59/GHSA-f89g-prcc-gc59.json | 8 ++------ .../05/GHSA-f8mj-3ccw-359h/GHSA-f8mj-3ccw-359h.json | 8 ++------ .../05/GHSA-f8xj-3764-2w44/GHSA-f8xj-3764-2w44.json | 12 +++--------- .../05/GHSA-f93c-x9q3-9rh9/GHSA-f93c-x9q3-9rh9.json | 8 ++------ .../05/GHSA-fcqq-mm95-6mqp/GHSA-fcqq-mm95-6mqp.json | 8 ++------ .../05/GHSA-ffgr-2fqr-wrm5/GHSA-ffgr-2fqr-wrm5.json | 8 ++------ .../05/GHSA-fg69-fq4r-3w28/GHSA-fg69-fq4r-3w28.json | 8 ++------ .../05/GHSA-fg9r-mq2g-292x/GHSA-fg9r-mq2g-292x.json | 8 ++------ .../05/GHSA-fh23-xmjc-5cw7/GHSA-fh23-xmjc-5cw7.json | 8 ++------ .../05/GHSA-fjp3-x79g-grgm/GHSA-fjp3-x79g-grgm.json | 8 ++------ .../05/GHSA-fp84-6pq7-h5cw/GHSA-fp84-6pq7-h5cw.json | 12 +++--------- .../05/GHSA-fq5j-826m-h5wc/GHSA-fq5j-826m-h5wc.json | 4 +--- .../05/GHSA-frgp-qr7c-8f9q/GHSA-frgp-qr7c-8f9q.json | 8 ++------ .../05/GHSA-frm6-2pc6-6cxf/GHSA-frm6-2pc6-6cxf.json | 8 ++------ .../05/GHSA-fv95-xjj6-g8qc/GHSA-fv95-xjj6-g8qc.json | 12 +++--------- .../05/GHSA-fvv2-374f-gmhr/GHSA-fvv2-374f-gmhr.json | 8 ++------ .../05/GHSA-fx5h-623c-jvh7/GHSA-fx5h-623c-jvh7.json | 12 +++--------- .../05/GHSA-g22j-gg6w-5f84/GHSA-g22j-gg6w-5f84.json | 8 ++------ .../05/GHSA-g2vh-rcx2-8pp8/GHSA-g2vh-rcx2-8pp8.json | 12 +++--------- .../05/GHSA-g3fm-rgq3-h9w3/GHSA-g3fm-rgq3-h9w3.json | 4 +--- .../05/GHSA-g4jv-x7wv-j698/GHSA-g4jv-x7wv-j698.json | 12 +++--------- .../05/GHSA-g4x4-8fj2-6pwg/GHSA-g4x4-8fj2-6pwg.json | 12 +++--------- .../05/GHSA-g5j6-vhp8-xrgj/GHSA-g5j6-vhp8-xrgj.json | 12 +++--------- .../05/GHSA-g5m2-66gg-cgc4/GHSA-g5m2-66gg-cgc4.json | 12 +++--------- .../05/GHSA-g5p3-8rp5-m2r4/GHSA-g5p3-8rp5-m2r4.json | 8 ++------ .../05/GHSA-g5q4-36jf-94r5/GHSA-g5q4-36jf-94r5.json | 8 ++------ .../05/GHSA-g5r9-wqjm-6653/GHSA-g5r9-wqjm-6653.json | 8 ++------ .../05/GHSA-g5x4-8v96-9hwx/GHSA-g5x4-8v96-9hwx.json | 8 ++------ .../05/GHSA-g62f-837m-h27x/GHSA-g62f-837m-h27x.json | 12 +++--------- .../05/GHSA-g73r-mgv6-gcj5/GHSA-g73r-mgv6-gcj5.json | 8 ++------ .../05/GHSA-g7jc-5wm7-65m8/GHSA-g7jc-5wm7-65m8.json | 12 +++--------- .../05/GHSA-g7rq-8jpp-277q/GHSA-g7rq-8jpp-277q.json | 8 ++------ .../05/GHSA-g7vf-8pww-hmqm/GHSA-g7vf-8pww-hmqm.json | 8 ++------ .../05/GHSA-g7vj-rmhg-q3rh/GHSA-g7vj-rmhg-q3rh.json | 8 ++------ .../05/GHSA-g7x2-68r5-j48j/GHSA-g7x2-68r5-j48j.json | 8 ++------ .../05/GHSA-g82f-w5wm-qcw6/GHSA-g82f-w5wm-qcw6.json | 12 +++--------- .../05/GHSA-g8xp-5hv7-77f4/GHSA-g8xp-5hv7-77f4.json | 8 ++------ .../05/GHSA-g94q-cc43-mm5v/GHSA-g94q-cc43-mm5v.json | 8 ++------ .../05/GHSA-g999-rfhc-4ch4/GHSA-g999-rfhc-4ch4.json | 8 ++------ .../05/GHSA-g9jf-m93c-whqj/GHSA-g9jf-m93c-whqj.json | 8 ++------ .../05/GHSA-g9rc-hj23-83gf/GHSA-g9rc-hj23-83gf.json | 8 ++------ .../05/GHSA-g9rm-5r89-23xg/GHSA-g9rm-5r89-23xg.json | 12 +++--------- .../05/GHSA-g9xm-ww44-j6j9/GHSA-g9xm-ww44-j6j9.json | 8 ++------ .../05/GHSA-gc42-5x7j-2448/GHSA-gc42-5x7j-2448.json | 8 ++------ .../05/GHSA-gcjm-3w9r-jvf4/GHSA-gcjm-3w9r-jvf4.json | 8 ++------ .../05/GHSA-gf4r-624h-wwhq/GHSA-gf4r-624h-wwhq.json | 8 ++------ .../05/GHSA-ggq7-6p9v-29vh/GHSA-ggq7-6p9v-29vh.json | 12 +++--------- .../05/GHSA-ggwg-9wjf-jg8c/GHSA-ggwg-9wjf-jg8c.json | 12 +++--------- .../05/GHSA-gj49-ph64-rrxv/GHSA-gj49-ph64-rrxv.json | 12 +++--------- .../05/GHSA-gj5f-4m6m-67f6/GHSA-gj5f-4m6m-67f6.json | 12 +++--------- .../05/GHSA-gjph-m3rc-hxq6/GHSA-gjph-m3rc-hxq6.json | 8 ++------ .../05/GHSA-gmm2-xpxc-5x86/GHSA-gmm2-xpxc-5x86.json | 12 +++--------- .../05/GHSA-gmpw-376j-24w5/GHSA-gmpw-376j-24w5.json | 4 +--- .../05/GHSA-gp2g-r8rq-q4j9/GHSA-gp2g-r8rq-q4j9.json | 8 ++------ .../05/GHSA-gp37-fp87-2hq5/GHSA-gp37-fp87-2hq5.json | 8 ++------ .../05/GHSA-gph4-ppxc-ppv3/GHSA-gph4-ppxc-ppv3.json | 12 +++--------- .../05/GHSA-gphr-mgq4-9ghp/GHSA-gphr-mgq4-9ghp.json | 12 +++--------- .../05/GHSA-gpv2-xp96-53xg/GHSA-gpv2-xp96-53xg.json | 8 ++------ .../05/GHSA-gqx8-cxgc-96jv/GHSA-gqx8-cxgc-96jv.json | 8 ++------ .../05/GHSA-grh2-c998-g4gm/GHSA-grh2-c998-g4gm.json | 8 ++------ .../05/GHSA-gvpc-rxf3-j5f7/GHSA-gvpc-rxf3-j5f7.json | 8 ++------ .../05/GHSA-gw7f-74vw-qm4j/GHSA-gw7f-74vw-qm4j.json | 12 +++--------- .../05/GHSA-gx4q-56cq-46h2/GHSA-gx4q-56cq-46h2.json | 8 ++------ .../05/GHSA-gxc6-jrc3-x89v/GHSA-gxc6-jrc3-x89v.json | 12 +++--------- .../05/GHSA-h267-7942-cfp5/GHSA-h267-7942-cfp5.json | 12 +++--------- .../05/GHSA-h2mw-974c-6pw2/GHSA-h2mw-974c-6pw2.json | 12 +++--------- .../05/GHSA-h38x-629j-fv6c/GHSA-h38x-629j-fv6c.json | 8 ++------ .../05/GHSA-h436-qgjj-x35v/GHSA-h436-qgjj-x35v.json | 8 ++------ .../05/GHSA-h437-74pf-466p/GHSA-h437-74pf-466p.json | 12 +++--------- .../05/GHSA-h468-v7vm-426v/GHSA-h468-v7vm-426v.json | 8 ++------ .../05/GHSA-h4hr-vrvh-q8pp/GHSA-h4hr-vrvh-q8pp.json | 12 +++--------- .../05/GHSA-h543-cmp6-x5ph/GHSA-h543-cmp6-x5ph.json | 12 +++--------- .../05/GHSA-h583-hf4f-hpxw/GHSA-h583-hf4f-hpxw.json | 12 +++--------- .../05/GHSA-h6cf-mqwr-2mxq/GHSA-h6cf-mqwr-2mxq.json | 8 ++------ .../05/GHSA-h749-xp26-rq5p/GHSA-h749-xp26-rq5p.json | 12 +++--------- .../05/GHSA-h768-g6c9-cwmw/GHSA-h768-g6c9-cwmw.json | 8 ++------ .../05/GHSA-h7hj-hjcj-pwpj/GHSA-h7hj-hjcj-pwpj.json | 12 +++--------- .../05/GHSA-h83h-c72m-vp62/GHSA-h83h-c72m-vp62.json | 12 +++--------- .../05/GHSA-h8hq-vp3m-hv4f/GHSA-h8hq-vp3m-hv4f.json | 12 +++--------- .../05/GHSA-h8jm-2fp8-hwf5/GHSA-h8jm-2fp8-hwf5.json | 12 +++--------- .../05/GHSA-h98r-2r7c-g497/GHSA-h98r-2r7c-g497.json | 8 ++------ .../05/GHSA-h9cc-4rm6-chr3/GHSA-h9cc-4rm6-chr3.json | 8 ++------ .../05/GHSA-h9mp-jg98-m7vh/GHSA-h9mp-jg98-m7vh.json | 12 +++--------- .../05/GHSA-h9r2-943c-qg8v/GHSA-h9r2-943c-qg8v.json | 8 ++------ .../05/GHSA-h9x7-6vv2-h94q/GHSA-h9x7-6vv2-h94q.json | 8 ++------ .../05/GHSA-hf94-884j-c7fj/GHSA-hf94-884j-c7fj.json | 8 ++------ .../05/GHSA-hfwh-42mw-69v8/GHSA-hfwh-42mw-69v8.json | 8 ++------ .../05/GHSA-hghp-8wjq-vgpp/GHSA-hghp-8wjq-vgpp.json | 12 +++--------- .../05/GHSA-hjfw-fr7q-7pjp/GHSA-hjfw-fr7q-7pjp.json | 12 +++--------- .../05/GHSA-hmf5-2rc2-q7f8/GHSA-hmf5-2rc2-q7f8.json | 12 +++--------- .../05/GHSA-hmvh-j8x6-vjm4/GHSA-hmvh-j8x6-vjm4.json | 12 +++--------- .../05/GHSA-hp7g-4p49-x89c/GHSA-hp7g-4p49-x89c.json | 8 ++------ .../05/GHSA-hqqf-pc7m-42m5/GHSA-hqqf-pc7m-42m5.json | 12 +++--------- .../05/GHSA-hr4m-h57x-5p2p/GHSA-hr4m-h57x-5p2p.json | 8 ++------ .../05/GHSA-hv89-3xxg-f733/GHSA-hv89-3xxg-f733.json | 12 +++--------- .../05/GHSA-hvpc-22m7-jg3m/GHSA-hvpc-22m7-jg3m.json | 8 ++------ .../05/GHSA-hvpw-g59w-9xjx/GHSA-hvpw-g59w-9xjx.json | 8 ++------ .../05/GHSA-hvxv-9v6h-xhg5/GHSA-hvxv-9v6h-xhg5.json | 12 +++--------- .../05/GHSA-hx33-6cv9-3m88/GHSA-hx33-6cv9-3m88.json | 8 ++------ .../05/GHSA-hx45-5mww-w2r8/GHSA-hx45-5mww-w2r8.json | 8 ++------ .../05/GHSA-hx6h-99v5-fcf4/GHSA-hx6h-99v5-fcf4.json | 12 +++--------- .../05/GHSA-hxjg-cjpx-x3x5/GHSA-hxjg-cjpx-x3x5.json | 12 +++--------- .../05/GHSA-j2g9-p996-478m/GHSA-j2g9-p996-478m.json | 12 +++--------- .../05/GHSA-j4cp-47vm-442g/GHSA-j4cp-47vm-442g.json | 12 +++--------- .../05/GHSA-j4f4-j4v7-f684/GHSA-j4f4-j4v7-f684.json | 8 ++------ .../05/GHSA-j5r3-wq62-8gp5/GHSA-j5r3-wq62-8gp5.json | 4 +--- .../05/GHSA-j5vp-xx87-j2xg/GHSA-j5vp-xx87-j2xg.json | 12 +++--------- .../05/GHSA-j6w3-479p-g3p9/GHSA-j6w3-479p-g3p9.json | 4 +--- .../05/GHSA-j7hw-9rwh-r263/GHSA-j7hw-9rwh-r263.json | 12 +++--------- .../05/GHSA-j8c7-5jh6-f92f/GHSA-j8c7-5jh6-f92f.json | 8 ++------ .../05/GHSA-j8hp-c69x-fw53/GHSA-j8hp-c69x-fw53.json | 8 ++------ .../05/GHSA-j8vv-cjg2-mmg2/GHSA-j8vv-cjg2-mmg2.json | 12 +++--------- .../05/GHSA-j9v2-xqcm-89x8/GHSA-j9v2-xqcm-89x8.json | 12 +++--------- .../05/GHSA-j9vh-gjh2-275f/GHSA-j9vh-gjh2-275f.json | 8 ++------ .../05/GHSA-jcc3-24pc-wmg9/GHSA-jcc3-24pc-wmg9.json | 8 ++------ .../05/GHSA-jccc-47h3-6r27/GHSA-jccc-47h3-6r27.json | 8 ++------ .../05/GHSA-jchr-vxfj-2cxw/GHSA-jchr-vxfj-2cxw.json | 12 +++--------- .../05/GHSA-jcjm-7m47-q6p8/GHSA-jcjm-7m47-q6p8.json | 8 ++------ .../05/GHSA-jgp9-92r7-vr6g/GHSA-jgp9-92r7-vr6g.json | 12 +++--------- .../05/GHSA-jgr2-j5h5-p995/GHSA-jgr2-j5h5-p995.json | 8 ++------ .../05/GHSA-jh75-h74m-97h7/GHSA-jh75-h74m-97h7.json | 8 ++------ .../05/GHSA-jh8x-c6rr-68gq/GHSA-jh8x-c6rr-68gq.json | 8 ++------ .../05/GHSA-jhrj-hv6x-7x2p/GHSA-jhrj-hv6x-7x2p.json | 8 ++------ .../05/GHSA-jjg5-ggfc-3m8p/GHSA-jjg5-ggfc-3m8p.json | 8 ++------ .../05/GHSA-jjrr-wr64-x97h/GHSA-jjrr-wr64-x97h.json | 8 ++------ .../05/GHSA-jm4r-9249-898c/GHSA-jm4r-9249-898c.json | 8 ++------ .../05/GHSA-jmhx-g9g6-gpx4/GHSA-jmhx-g9g6-gpx4.json | 12 +++--------- .../05/GHSA-jpcj-8f59-9q4h/GHSA-jpcj-8f59-9q4h.json | 12 +++--------- .../05/GHSA-jpp6-jhf5-8fqg/GHSA-jpp6-jhf5-8fqg.json | 8 ++------ .../05/GHSA-jpr3-gg36-wv7f/GHSA-jpr3-gg36-wv7f.json | 8 ++------ .../05/GHSA-jq7r-cmm5-2qjr/GHSA-jq7r-cmm5-2qjr.json | 8 ++------ .../05/GHSA-jqfj-5p8v-wpjh/GHSA-jqfj-5p8v-wpjh.json | 12 +++--------- .../05/GHSA-jqw9-9p4w-5g4f/GHSA-jqw9-9p4w-5g4f.json | 8 ++------ .../05/GHSA-jrmq-vqww-4jq8/GHSA-jrmq-vqww-4jq8.json | 8 ++------ .../05/GHSA-jv8c-ggjv-cc68/GHSA-jv8c-ggjv-cc68.json | 8 ++------ .../05/GHSA-jvfw-7f9c-qp8r/GHSA-jvfw-7f9c-qp8r.json | 12 +++--------- .../05/GHSA-jvpp-5xxm-9qcg/GHSA-jvpp-5xxm-9qcg.json | 8 ++------ .../05/GHSA-jvw4-xfqp-q5qh/GHSA-jvw4-xfqp-q5qh.json | 4 +--- .../05/GHSA-jvxj-m6p9-r354/GHSA-jvxj-m6p9-r354.json | 12 +++--------- .../05/GHSA-jwf7-c2x3-76h8/GHSA-jwf7-c2x3-76h8.json | 8 ++------ .../05/GHSA-jwfx-h8qj-v94c/GHSA-jwfx-h8qj-v94c.json | 8 ++------ .../05/GHSA-jxfh-j4h3-3ppj/GHSA-jxfh-j4h3-3ppj.json | 8 ++------ .../05/GHSA-m286-23j4-m2p5/GHSA-m286-23j4-m2p5.json | 12 +++--------- .../05/GHSA-m2j7-ph2m-w822/GHSA-m2j7-ph2m-w822.json | 8 ++------ .../05/GHSA-m2jr-636c-qqmv/GHSA-m2jr-636c-qqmv.json | 12 +++--------- .../05/GHSA-m2rf-mf3r-f836/GHSA-m2rf-mf3r-f836.json | 12 +++--------- .../05/GHSA-m327-jjcq-v72h/GHSA-m327-jjcq-v72h.json | 8 ++------ .../05/GHSA-m3j6-7jq9-r5qv/GHSA-m3j6-7jq9-r5qv.json | 12 +++--------- .../05/GHSA-m3r9-2fp3-p448/GHSA-m3r9-2fp3-p448.json | 12 +++--------- .../05/GHSA-m523-2w8w-xf3g/GHSA-m523-2w8w-xf3g.json | 8 ++------ .../05/GHSA-m53c-m27f-r2r9/GHSA-m53c-m27f-r2r9.json | 12 +++--------- .../05/GHSA-m5cg-xh84-2p2r/GHSA-m5cg-xh84-2p2r.json | 8 ++------ .../05/GHSA-m5pw-gjvh-jgrh/GHSA-m5pw-gjvh-jgrh.json | 8 ++------ .../05/GHSA-m78g-fv9h-7r65/GHSA-m78g-fv9h-7r65.json | 8 ++------ .../05/GHSA-m7jg-f799-8948/GHSA-m7jg-f799-8948.json | 12 +++--------- .../05/GHSA-m7mv-96xv-qq37/GHSA-m7mv-96xv-qq37.json | 8 ++------ .../05/GHSA-m7x4-hr3g-38q5/GHSA-m7x4-hr3g-38q5.json | 8 ++------ .../05/GHSA-m87q-vm9x-pfmr/GHSA-m87q-vm9x-pfmr.json | 12 +++--------- .../05/GHSA-m8jv-w6r8-59q6/GHSA-m8jv-w6r8-59q6.json | 12 +++--------- .../05/GHSA-m8mp-x56m-fcpf/GHSA-m8mp-x56m-fcpf.json | 8 ++------ .../05/GHSA-m9h3-f3g9-fqrf/GHSA-m9h3-f3g9-fqrf.json | 4 +--- .../05/GHSA-mcf9-pq3p-q6q8/GHSA-mcf9-pq3p-q6q8.json | 8 ++------ .../05/GHSA-mcj9-qvgm-3xf8/GHSA-mcj9-qvgm-3xf8.json | 8 ++------ .../05/GHSA-mf23-rh92-325x/GHSA-mf23-rh92-325x.json | 8 ++------ .../05/GHSA-mf73-m82g-g4hv/GHSA-mf73-m82g-g4hv.json | 12 +++--------- .../05/GHSA-mfc8-v3vr-2h43/GHSA-mfc8-v3vr-2h43.json | 8 ++------ .../05/GHSA-mfxm-ch85-27q4/GHSA-mfxm-ch85-27q4.json | 12 +++--------- .../05/GHSA-mgph-49qr-42q3/GHSA-mgph-49qr-42q3.json | 8 ++------ .../05/GHSA-mgw4-gv3f-g57j/GHSA-mgw4-gv3f-g57j.json | 8 ++------ .../05/GHSA-mh3v-wwhj-j4pq/GHSA-mh3v-wwhj-j4pq.json | 12 +++--------- .../05/GHSA-mh9h-9rjj-5gp4/GHSA-mh9h-9rjj-5gp4.json | 8 ++------ .../05/GHSA-mhm2-wvr8-3737/GHSA-mhm2-wvr8-3737.json | 12 +++--------- .../05/GHSA-mhw3-773g-72wx/GHSA-mhw3-773g-72wx.json | 4 +--- .../05/GHSA-mjg5-5qf3-5mwg/GHSA-mjg5-5qf3-5mwg.json | 8 ++------ .../05/GHSA-mmq8-m72q-qgm4/GHSA-mmq8-m72q-qgm4.json | 4 +--- .../05/GHSA-mp2h-r29x-p8v7/GHSA-mp2h-r29x-p8v7.json | 12 +++--------- .../05/GHSA-mp5m-jpf6-cg5g/GHSA-mp5m-jpf6-cg5g.json | 8 ++------ .../05/GHSA-mq9g-j3p5-r7xg/GHSA-mq9g-j3p5-r7xg.json | 8 ++------ .../05/GHSA-mr2p-cwj7-r6xj/GHSA-mr2p-cwj7-r6xj.json | 12 +++--------- .../05/GHSA-mr8q-567w-34vp/GHSA-mr8q-567w-34vp.json | 8 ++------ .../05/GHSA-mrh4-qfxq-r33w/GHSA-mrh4-qfxq-r33w.json | 8 ++------ .../05/GHSA-mv3h-r8j8-38cc/GHSA-mv3h-r8j8-38cc.json | 4 +--- .../05/GHSA-mv5h-x4p7-38mc/GHSA-mv5h-x4p7-38mc.json | 8 ++------ .../05/GHSA-mvcc-q3f8-gccx/GHSA-mvcc-q3f8-gccx.json | 12 +++--------- .../05/GHSA-mw25-vxhh-vf58/GHSA-mw25-vxhh-vf58.json | 12 +++--------- .../05/GHSA-mw4x-77fp-773c/GHSA-mw4x-77fp-773c.json | 12 +++--------- .../05/GHSA-mwwx-6vj5-5v8f/GHSA-mwwx-6vj5-5v8f.json | 8 ++------ .../05/GHSA-p23w-f9f7-7w5r/GHSA-p23w-f9f7-7w5r.json | 12 +++--------- .../05/GHSA-p2hf-5x82-896v/GHSA-p2hf-5x82-896v.json | 8 ++------ .../05/GHSA-p388-jxx8-mrh3/GHSA-p388-jxx8-mrh3.json | 12 +++--------- .../05/GHSA-p3c7-v49f-23mp/GHSA-p3c7-v49f-23mp.json | 12 +++--------- .../05/GHSA-p3hr-944c-g4qr/GHSA-p3hr-944c-g4qr.json | 12 +++--------- .../05/GHSA-p4m7-9364-7j9j/GHSA-p4m7-9364-7j9j.json | 8 ++------ .../05/GHSA-p54f-fcg2-57wc/GHSA-p54f-fcg2-57wc.json | 12 +++--------- .../05/GHSA-p5jg-vgvr-v22f/GHSA-p5jg-vgvr-v22f.json | 8 ++------ .../05/GHSA-p5vj-j6hc-25p4/GHSA-p5vj-j6hc-25p4.json | 8 ++------ .../05/GHSA-p5w3-55x8-h8jw/GHSA-p5w3-55x8-h8jw.json | 12 +++--------- .../05/GHSA-p65f-qm2h-fr27/GHSA-p65f-qm2h-fr27.json | 8 ++------ .../05/GHSA-p66x-hgpx-35w5/GHSA-p66x-hgpx-35w5.json | 8 ++------ .../05/GHSA-p6qx-pxww-v5xv/GHSA-p6qx-pxww-v5xv.json | 8 ++------ .../05/GHSA-p73v-h98c-33pg/GHSA-p73v-h98c-33pg.json | 8 ++------ .../05/GHSA-p828-q7f9-f38x/GHSA-p828-q7f9-f38x.json | 8 ++------ .../05/GHSA-p829-jg83-8jr6/GHSA-p829-jg83-8jr6.json | 8 ++------ .../05/GHSA-p84v-jr8v-r7f4/GHSA-p84v-jr8v-r7f4.json | 12 +++--------- .../05/GHSA-p8h5-wr3j-h43x/GHSA-p8h5-wr3j-h43x.json | 12 +++--------- .../05/GHSA-p8hw-7ch3-xcp2/GHSA-p8hw-7ch3-xcp2.json | 12 +++--------- .../05/GHSA-p94m-h527-55cx/GHSA-p94m-h527-55cx.json | 4 +--- .../05/GHSA-p955-f64f-7qv7/GHSA-p955-f64f-7qv7.json | 8 ++------ .../05/GHSA-p9f4-9pfr-g2fp/GHSA-p9f4-9pfr-g2fp.json | 8 ++------ .../05/GHSA-p9qf-76h3-fg7r/GHSA-p9qf-76h3-fg7r.json | 12 +++--------- .../05/GHSA-pc3f-v6x4-2qhm/GHSA-pc3f-v6x4-2qhm.json | 12 +++--------- .../05/GHSA-pc59-5wq3-w9vr/GHSA-pc59-5wq3-w9vr.json | 8 ++------ .../05/GHSA-pc5r-gv46-hg46/GHSA-pc5r-gv46-hg46.json | 12 +++--------- .../05/GHSA-pc6r-6288-xqwh/GHSA-pc6r-6288-xqwh.json | 8 ++------ .../05/GHSA-pc74-63g2-pjp2/GHSA-pc74-63g2-pjp2.json | 8 ++------ .../05/GHSA-pcxx-jh3f-2gx3/GHSA-pcxx-jh3f-2gx3.json | 8 ++------ .../05/GHSA-pfj8-2727-hwr9/GHSA-pfj8-2727-hwr9.json | 8 ++------ .../05/GHSA-pg6j-wgxm-fp8g/GHSA-pg6j-wgxm-fp8g.json | 12 +++--------- .../05/GHSA-phfg-g4q8-45r5/GHSA-phfg-g4q8-45r5.json | 12 +++--------- .../05/GHSA-phqx-w8fw-293w/GHSA-phqx-w8fw-293w.json | 8 ++------ .../05/GHSA-pj2v-wrvx-hgcc/GHSA-pj2v-wrvx-hgcc.json | 8 ++------ .../05/GHSA-pjcw-f7fm-qgjc/GHSA-pjcw-f7fm-qgjc.json | 8 ++------ .../05/GHSA-pmx6-78qj-835g/GHSA-pmx6-78qj-835g.json | 12 +++--------- .../05/GHSA-pp5x-jfjw-9p5x/GHSA-pp5x-jfjw-9p5x.json | 8 ++------ .../05/GHSA-pphv-7r2p-9rxv/GHSA-pphv-7r2p-9rxv.json | 12 +++--------- .../05/GHSA-pq8r-7hph-pwj2/GHSA-pq8r-7hph-pwj2.json | 8 ++------ .../05/GHSA-prhp-4vw3-h923/GHSA-prhp-4vw3-h923.json | 8 ++------ .../05/GHSA-prjv-5g97-fjwx/GHSA-prjv-5g97-fjwx.json | 8 ++------ .../05/GHSA-prrj-m673-5r3j/GHSA-prrj-m673-5r3j.json | 12 +++--------- .../05/GHSA-pv99-5h3p-2qmr/GHSA-pv99-5h3p-2qmr.json | 8 ++------ .../05/GHSA-pvxq-693v-vc3x/GHSA-pvxq-693v-vc3x.json | 12 +++--------- .../05/GHSA-pww4-c7mq-vj87/GHSA-pww4-c7mq-vj87.json | 8 ++------ .../05/GHSA-pxc8-mqgf-jh84/GHSA-pxc8-mqgf-jh84.json | 8 ++------ .../05/GHSA-pxhw-m5jj-mmp6/GHSA-pxhw-m5jj-mmp6.json | 12 +++--------- .../05/GHSA-pxr7-r9vh-7q86/GHSA-pxr7-r9vh-7q86.json | 8 ++------ .../05/GHSA-q287-w67r-grmg/GHSA-q287-w67r-grmg.json | 12 +++--------- .../05/GHSA-q2qq-4jfp-7w3h/GHSA-q2qq-4jfp-7w3h.json | 8 ++------ .../05/GHSA-q33h-xmcx-jm3h/GHSA-q33h-xmcx-jm3h.json | 8 ++------ .../05/GHSA-q3x6-x3m5-f2j3/GHSA-q3x6-x3m5-f2j3.json | 12 +++--------- .../05/GHSA-q43m-485x-8692/GHSA-q43m-485x-8692.json | 8 ++------ .../05/GHSA-q48q-r88f-6j34/GHSA-q48q-r88f-6j34.json | 12 +++--------- .../05/GHSA-q574-jmrv-grv3/GHSA-q574-jmrv-grv3.json | 8 ++------ .../05/GHSA-q5wm-274q-f3v6/GHSA-q5wm-274q-f3v6.json | 4 +--- .../05/GHSA-q6fv-25xg-7q8j/GHSA-q6fv-25xg-7q8j.json | 12 +++--------- .../05/GHSA-q6vj-cjm6-x954/GHSA-q6vj-cjm6-x954.json | 12 +++--------- .../05/GHSA-q799-3qfw-88p4/GHSA-q799-3qfw-88p4.json | 12 +++--------- .../05/GHSA-q7rh-6wjh-vj6q/GHSA-q7rh-6wjh-vj6q.json | 12 +++--------- .../05/GHSA-q7vp-7fgq-v95q/GHSA-q7vp-7fgq-v95q.json | 8 ++------ .../05/GHSA-q8gp-3ff8-crhh/GHSA-q8gp-3ff8-crhh.json | 4 +--- .../05/GHSA-qc39-q4xv-pxc8/GHSA-qc39-q4xv-pxc8.json | 12 +++--------- .../05/GHSA-qc53-vxvp-927p/GHSA-qc53-vxvp-927p.json | 12 +++--------- .../05/GHSA-qgq2-3q9g-gc52/GHSA-qgq2-3q9g-gc52.json | 8 ++------ .../05/GHSA-qgvq-cfgg-vpmj/GHSA-qgvq-cfgg-vpmj.json | 8 ++------ .../05/GHSA-qhpf-56xh-5j88/GHSA-qhpf-56xh-5j88.json | 12 +++--------- .../05/GHSA-qhxh-892c-372c/GHSA-qhxh-892c-372c.json | 12 +++--------- .../05/GHSA-qj7f-5543-55f6/GHSA-qj7f-5543-55f6.json | 8 ++------ .../05/GHSA-qjm2-h4v8-qrj8/GHSA-qjm2-h4v8-qrj8.json | 12 +++--------- .../05/GHSA-qjqp-hxrh-q5xg/GHSA-qjqp-hxrh-q5xg.json | 12 +++--------- .../05/GHSA-qjvg-h5fp-2m6w/GHSA-qjvg-h5fp-2m6w.json | 8 ++------ .../05/GHSA-qjvj-64rf-p4qg/GHSA-qjvj-64rf-p4qg.json | 8 ++------ .../05/GHSA-qm9f-p7c7-h3m4/GHSA-qm9f-p7c7-h3m4.json | 12 +++--------- .../05/GHSA-qmjv-2w2w-gcpf/GHSA-qmjv-2w2w-gcpf.json | 12 +++--------- .../05/GHSA-qp7p-gj3v-w2r8/GHSA-qp7p-gj3v-w2r8.json | 8 ++------ .../05/GHSA-qp9c-3hc3-5g3f/GHSA-qp9c-3hc3-5g3f.json | 8 ++------ .../05/GHSA-qp9v-cq87-3m4w/GHSA-qp9v-cq87-3m4w.json | 12 +++--------- .../05/GHSA-qpgh-7c9w-g22c/GHSA-qpgh-7c9w-g22c.json | 12 +++--------- .../05/GHSA-qpr7-hfx5-hx7x/GHSA-qpr7-hfx5-hx7x.json | 8 ++------ .../05/GHSA-qpvq-h769-rrw8/GHSA-qpvq-h769-rrw8.json | 12 +++--------- .../05/GHSA-qpwq-5q26-wp3v/GHSA-qpwq-5q26-wp3v.json | 12 +++--------- .../05/GHSA-qq53-pmwh-gwr8/GHSA-qq53-pmwh-gwr8.json | 12 +++--------- .../05/GHSA-qqh6-qfcc-jm42/GHSA-qqh6-qfcc-jm42.json | 8 ++------ .../05/GHSA-qr7w-wgw7-hp4g/GHSA-qr7w-wgw7-hp4g.json | 8 ++------ .../05/GHSA-qv3f-r72j-7p98/GHSA-qv3f-r72j-7p98.json | 8 ++------ .../05/GHSA-qv9g-qcj8-8wvc/GHSA-qv9g-qcj8-8wvc.json | 8 ++------ .../05/GHSA-qvjj-p3vv-998f/GHSA-qvjj-p3vv-998f.json | 8 ++------ .../05/GHSA-qwf4-gh23-f5jj/GHSA-qwf4-gh23-f5jj.json | 4 +--- .../05/GHSA-qx3x-f526-c288/GHSA-qx3x-f526-c288.json | 8 ++------ .../05/GHSA-qx7v-7w2j-x42w/GHSA-qx7v-7w2j-x42w.json | 8 ++------ .../05/GHSA-r223-9cmx-jch2/GHSA-r223-9cmx-jch2.json | 12 +++--------- .../05/GHSA-r259-hgff-26h8/GHSA-r259-hgff-26h8.json | 12 +++--------- .../05/GHSA-r26w-q32j-r7gv/GHSA-r26w-q32j-r7gv.json | 12 +++--------- .../05/GHSA-r29f-frxq-qmmp/GHSA-r29f-frxq-qmmp.json | 12 +++--------- .../05/GHSA-r2rp-7qxc-5hp6/GHSA-r2rp-7qxc-5hp6.json | 8 ++------ .../05/GHSA-r2x3-54v8-fgvm/GHSA-r2x3-54v8-fgvm.json | 8 ++------ .../05/GHSA-r3cr-84p4-932f/GHSA-r3cr-84p4-932f.json | 8 ++------ .../05/GHSA-r3hf-fq8h-jqg4/GHSA-r3hf-fq8h-jqg4.json | 12 +++--------- .../05/GHSA-r3rc-v556-7p45/GHSA-r3rc-v556-7p45.json | 8 ++------ .../05/GHSA-r43x-8cfv-3xjp/GHSA-r43x-8cfv-3xjp.json | 12 +++--------- .../05/GHSA-r443-h767-83gp/GHSA-r443-h767-83gp.json | 8 ++------ .../05/GHSA-r464-9g6c-3r67/GHSA-r464-9g6c-3r67.json | 8 ++------ .../05/GHSA-r55q-8w8x-hx84/GHSA-r55q-8w8x-hx84.json | 8 ++------ .../05/GHSA-r59v-2j67-g78p/GHSA-r59v-2j67-g78p.json | 12 +++--------- .../05/GHSA-r5w6-x2jg-4mj3/GHSA-r5w6-x2jg-4mj3.json | 8 ++------ .../05/GHSA-r6mg-56rx-qjx4/GHSA-r6mg-56rx-qjx4.json | 12 +++--------- .../05/GHSA-r77g-m785-86fv/GHSA-r77g-m785-86fv.json | 8 ++------ .../05/GHSA-r86q-856p-4q9q/GHSA-r86q-856p-4q9q.json | 4 +--- .../05/GHSA-r8fv-8649-pcmh/GHSA-r8fv-8649-pcmh.json | 12 +++--------- .../05/GHSA-r8rw-mg4x-cj8c/GHSA-r8rw-mg4x-cj8c.json | 12 +++--------- .../05/GHSA-r8vj-5v6h-v5v5/GHSA-r8vj-5v6h-v5v5.json | 12 +++--------- .../05/GHSA-r94r-923f-r5j2/GHSA-r94r-923f-r5j2.json | 12 +++--------- .../05/GHSA-r9jq-chpq-69vv/GHSA-r9jq-chpq-69vv.json | 8 ++------ .../05/GHSA-r9m7-q848-wx2q/GHSA-r9m7-q848-wx2q.json | 12 +++--------- .../05/GHSA-r9r4-h3rx-qrv6/GHSA-r9r4-h3rx-qrv6.json | 8 ++------ .../05/GHSA-rc82-2cq5-6rjx/GHSA-rc82-2cq5-6rjx.json | 12 +++--------- .../05/GHSA-rccg-5mcc-m2cf/GHSA-rccg-5mcc-m2cf.json | 4 +--- .../05/GHSA-rcm3-2g9j-cvpp/GHSA-rcm3-2g9j-cvpp.json | 8 ++------ .../05/GHSA-rf4p-r2hm-hch6/GHSA-rf4p-r2hm-hch6.json | 8 ++------ .../05/GHSA-rfjx-pw2c-9r44/GHSA-rfjx-pw2c-9r44.json | 12 +++--------- .../05/GHSA-rgcj-4qc4-rj56/GHSA-rgcj-4qc4-rj56.json | 8 ++------ .../05/GHSA-rgxv-h9h8-fc97/GHSA-rgxv-h9h8-fc97.json | 8 ++------ .../05/GHSA-rh7w-88h7-qfcv/GHSA-rh7w-88h7-qfcv.json | 12 +++--------- .../05/GHSA-rhmm-97pw-h98x/GHSA-rhmm-97pw-h98x.json | 12 +++--------- .../05/GHSA-rj5f-77wg-8qgv/GHSA-rj5f-77wg-8qgv.json | 12 +++--------- .../05/GHSA-rj95-w5x7-gjvc/GHSA-rj95-w5x7-gjvc.json | 12 +++--------- .../05/GHSA-rjc6-f69q-7393/GHSA-rjc6-f69q-7393.json | 12 +++--------- .../05/GHSA-rjcp-7w9x-r3q7/GHSA-rjcp-7w9x-r3q7.json | 12 +++--------- .../05/GHSA-rjr8-9crx-pj6h/GHSA-rjr8-9crx-pj6h.json | 8 ++------ .../05/GHSA-rjrf-755g-4mrq/GHSA-rjrf-755g-4mrq.json | 8 ++------ .../05/GHSA-rmqq-qjmx-q7xq/GHSA-rmqq-qjmx-q7xq.json | 12 +++--------- .../05/GHSA-rrfm-4fhv-2623/GHSA-rrfm-4fhv-2623.json | 8 ++------ .../05/GHSA-rv98-p9rj-2p37/GHSA-rv98-p9rj-2p37.json | 12 +++--------- .../05/GHSA-rw9r-ggxf-2434/GHSA-rw9r-ggxf-2434.json | 12 +++--------- .../05/GHSA-rx3f-6c7m-5whv/GHSA-rx3f-6c7m-5whv.json | 8 ++------ .../05/GHSA-rxph-v937-qhh8/GHSA-rxph-v937-qhh8.json | 12 +++--------- .../05/GHSA-rxqj-7gj2-prpm/GHSA-rxqj-7gj2-prpm.json | 12 +++--------- .../05/GHSA-v258-w2jm-qxhr/GHSA-v258-w2jm-qxhr.json | 8 ++------ .../05/GHSA-v363-hq4v-f5m4/GHSA-v363-hq4v-f5m4.json | 12 +++--------- .../05/GHSA-v387-j7f2-8xf9/GHSA-v387-j7f2-8xf9.json | 8 ++------ .../05/GHSA-v38j-x7mr-5hmv/GHSA-v38j-x7mr-5hmv.json | 8 ++------ .../05/GHSA-v3j6-5rcm-pcwj/GHSA-v3j6-5rcm-pcwj.json | 8 ++------ .../05/GHSA-v3xg-vw65-m6vm/GHSA-v3xg-vw65-m6vm.json | 12 +++--------- .../05/GHSA-v4cm-4r8r-3fpq/GHSA-v4cm-4r8r-3fpq.json | 12 +++--------- .../05/GHSA-v5wh-4c86-6pvj/GHSA-v5wh-4c86-6pvj.json | 8 ++------ .../05/GHSA-v64f-mchw-j235/GHSA-v64f-mchw-j235.json | 8 ++------ .../05/GHSA-v656-qh9j-wmj6/GHSA-v656-qh9j-wmj6.json | 12 +++--------- .../05/GHSA-v6hg-x8c9-r375/GHSA-v6hg-x8c9-r375.json | 12 +++--------- .../05/GHSA-v79g-3wjc-8pvp/GHSA-v79g-3wjc-8pvp.json | 8 ++------ .../05/GHSA-v79v-rjff-38ph/GHSA-v79v-rjff-38ph.json | 12 +++--------- .../05/GHSA-v8rw-wfg3-g44g/GHSA-v8rw-wfg3-g44g.json | 12 +++--------- .../05/GHSA-v8w6-5443-cpph/GHSA-v8w6-5443-cpph.json | 8 ++------ .../05/GHSA-v9jr-23rj-wr7x/GHSA-v9jr-23rj-wr7x.json | 8 ++------ .../05/GHSA-vc3f-f54f-2jfx/GHSA-vc3f-f54f-2jfx.json | 8 ++------ .../05/GHSA-vcw7-c2c6-j546/GHSA-vcw7-c2c6-j546.json | 8 ++------ .../05/GHSA-vffh-48qx-8xgf/GHSA-vffh-48qx-8xgf.json | 8 ++------ .../05/GHSA-vfh4-wq8r-c2xv/GHSA-vfh4-wq8r-c2xv.json | 12 +++--------- .../05/GHSA-vfq8-637p-vg8j/GHSA-vfq8-637p-vg8j.json | 8 ++------ .../05/GHSA-vhwp-mggx-mfqp/GHSA-vhwp-mggx-mfqp.json | 8 ++------ .../05/GHSA-vj2h-vccp-x4xr/GHSA-vj2h-vccp-x4xr.json | 12 +++--------- .../05/GHSA-vjq2-qqgv-fxw5/GHSA-vjq2-qqgv-fxw5.json | 12 +++--------- .../05/GHSA-vmrj-vj6q-3rpq/GHSA-vmrj-vj6q-3rpq.json | 8 ++------ .../05/GHSA-vmxg-px44-w6m2/GHSA-vmxg-px44-w6m2.json | 8 ++------ .../05/GHSA-vpv3-qgmw-47f8/GHSA-vpv3-qgmw-47f8.json | 12 +++--------- .../05/GHSA-vqf3-4m76-q67q/GHSA-vqf3-4m76-q67q.json | 8 ++------ .../05/GHSA-vqgq-wj7q-x376/GHSA-vqgq-wj7q-x376.json | 12 +++--------- .../05/GHSA-vr2g-vj4r-ggc9/GHSA-vr2g-vj4r-ggc9.json | 12 +++--------- .../05/GHSA-vv9f-p8wq-vp27/GHSA-vv9f-p8wq-vp27.json | 8 ++------ .../05/GHSA-vw3m-jmhx-vxc5/GHSA-vw3m-jmhx-vxc5.json | 8 ++------ .../05/GHSA-vx2g-j38v-c6xw/GHSA-vx2g-j38v-c6xw.json | 8 ++------ .../05/GHSA-w226-g6hj-jc8p/GHSA-w226-g6hj-jc8p.json | 12 +++--------- .../05/GHSA-w2hp-v5c3-39q4/GHSA-w2hp-v5c3-39q4.json | 12 +++--------- .../05/GHSA-w3v7-x856-3frj/GHSA-w3v7-x856-3frj.json | 12 +++--------- .../05/GHSA-w48p-j73x-8hw8/GHSA-w48p-j73x-8hw8.json | 8 ++------ .../05/GHSA-w4p3-9jw4-3vwr/GHSA-w4p3-9jw4-3vwr.json | 8 ++------ .../05/GHSA-w675-9q69-cp3f/GHSA-w675-9q69-cp3f.json | 8 ++------ .../05/GHSA-w686-r764-pjr6/GHSA-w686-r764-pjr6.json | 12 +++--------- .../05/GHSA-w69h-w8m8-xgqf/GHSA-w69h-w8m8-xgqf.json | 8 ++------ .../05/GHSA-w6h2-rg9q-p285/GHSA-w6h2-rg9q-p285.json | 8 ++------ .../05/GHSA-w6qx-m68c-85w8/GHSA-w6qx-m68c-85w8.json | 8 ++------ .../05/GHSA-w76v-j738-xmxx/GHSA-w76v-j738-xmxx.json | 8 ++------ .../05/GHSA-w7rr-g4c2-26cq/GHSA-w7rr-g4c2-26cq.json | 8 ++------ .../05/GHSA-w863-8736-g2vg/GHSA-w863-8736-g2vg.json | 12 +++--------- .../05/GHSA-w878-qxgr-hjc8/GHSA-w878-qxgr-hjc8.json | 8 ++------ .../05/GHSA-w879-m4wh-92f9/GHSA-w879-m4wh-92f9.json | 12 +++--------- .../05/GHSA-w894-vq8g-mxr7/GHSA-w894-vq8g-mxr7.json | 12 +++--------- .../05/GHSA-w94p-63xh-3mj8/GHSA-w94p-63xh-3mj8.json | 8 ++------ .../05/GHSA-wc72-922g-4fvx/GHSA-wc72-922g-4fvx.json | 8 ++------ .../05/GHSA-wc77-pp72-82qv/GHSA-wc77-pp72-82qv.json | 12 +++--------- .../05/GHSA-wcmh-4pfq-jg4p/GHSA-wcmh-4pfq-jg4p.json | 12 +++--------- .../05/GHSA-wf8r-7846-mgqj/GHSA-wf8r-7846-mgqj.json | 12 +++--------- .../05/GHSA-wfcp-r54j-frmq/GHSA-wfcp-r54j-frmq.json | 8 ++------ .../05/GHSA-wg6g-7g6h-p73r/GHSA-wg6g-7g6h-p73r.json | 8 ++------ .../05/GHSA-wgcv-657c-p955/GHSA-wgcv-657c-p955.json | 8 ++------ .../05/GHSA-wgcv-9qcc-vx54/GHSA-wgcv-9qcc-vx54.json | 12 +++--------- .../05/GHSA-wh76-4mjv-gqjw/GHSA-wh76-4mjv-gqjw.json | 8 ++------ .../05/GHSA-wj8g-mf9j-qxgf/GHSA-wj8g-mf9j-qxgf.json | 12 +++--------- .../05/GHSA-wm2x-wp62-hmvx/GHSA-wm2x-wp62-hmvx.json | 4 +--- .../05/GHSA-wp6h-4j7c-vh23/GHSA-wp6h-4j7c-vh23.json | 8 ++------ .../05/GHSA-wpwf-88p7-vqf6/GHSA-wpwf-88p7-vqf6.json | 8 ++------ .../05/GHSA-wqm8-5hfp-cx2w/GHSA-wqm8-5hfp-cx2w.json | 12 +++--------- .../05/GHSA-wr9p-qxcp-857h/GHSA-wr9p-qxcp-857h.json | 8 ++------ .../05/GHSA-wrfc-893h-w7fc/GHSA-wrfc-893h-w7fc.json | 12 +++--------- .../05/GHSA-wrm5-w67c-xm7j/GHSA-wrm5-w67c-xm7j.json | 12 +++--------- .../05/GHSA-wrqr-r5rj-5p7r/GHSA-wrqr-r5rj-5p7r.json | 8 ++------ .../05/GHSA-wv6c-mphw-ggxf/GHSA-wv6c-mphw-ggxf.json | 12 +++--------- .../05/GHSA-wv82-x4r2-74j9/GHSA-wv82-x4r2-74j9.json | 8 ++------ .../05/GHSA-ww87-xv54-4xg7/GHSA-ww87-xv54-4xg7.json | 12 +++--------- .../05/GHSA-wxc7-vw25-7jmv/GHSA-wxc7-vw25-7jmv.json | 12 +++--------- .../05/GHSA-x3m2-j237-rq6j/GHSA-x3m2-j237-rq6j.json | 8 ++------ .../05/GHSA-x3mq-qq8q-g844/GHSA-x3mq-qq8q-g844.json | 8 ++------ .../05/GHSA-x3pw-x548-2h9h/GHSA-x3pw-x548-2h9h.json | 8 ++------ .../05/GHSA-x445-q75c-3845/GHSA-x445-q75c-3845.json | 8 ++------ .../05/GHSA-x472-rm3h-4j28/GHSA-x472-rm3h-4j28.json | 8 ++------ .../05/GHSA-x5jr-g6pf-rrxm/GHSA-x5jr-g6pf-rrxm.json | 12 +++--------- .../05/GHSA-x6fh-9494-hx2r/GHSA-x6fh-9494-hx2r.json | 12 +++--------- .../05/GHSA-x6p3-h7fg-w5cp/GHSA-x6p3-h7fg-w5cp.json | 12 +++--------- .../05/GHSA-x6ph-237v-4pgj/GHSA-x6ph-237v-4pgj.json | 8 ++------ .../05/GHSA-x7gm-5fh7-5xr3/GHSA-x7gm-5fh7-5xr3.json | 12 +++--------- .../05/GHSA-x84c-w887-qq98/GHSA-x84c-w887-qq98.json | 12 +++--------- .../05/GHSA-x89m-vq45-vjjr/GHSA-x89m-vq45-vjjr.json | 12 +++--------- .../05/GHSA-x8r6-c7pf-w6m4/GHSA-x8r6-c7pf-w6m4.json | 12 +++--------- .../05/GHSA-x8w2-j4r4-76v8/GHSA-x8w2-j4r4-76v8.json | 8 ++------ .../05/GHSA-x9fj-vxmr-hcmm/GHSA-x9fj-vxmr-hcmm.json | 8 ++------ .../05/GHSA-x9j8-m658-xw5v/GHSA-x9j8-m658-xw5v.json | 8 ++------ .../05/GHSA-xcff-45fg-j54m/GHSA-xcff-45fg-j54m.json | 12 +++--------- .../05/GHSA-xcqh-55w8-858c/GHSA-xcqh-55w8-858c.json | 8 ++------ .../05/GHSA-xf3f-qvj8-j3m2/GHSA-xf3f-qvj8-j3m2.json | 8 ++------ .../05/GHSA-xf59-c653-rhw8/GHSA-xf59-c653-rhw8.json | 12 +++--------- .../05/GHSA-xf8q-jwvc-h35w/GHSA-xf8q-jwvc-h35w.json | 8 ++------ .../05/GHSA-xfgm-rcpf-gf3q/GHSA-xfgm-rcpf-gf3q.json | 12 +++--------- .../05/GHSA-xfj2-7ff5-qr45/GHSA-xfj2-7ff5-qr45.json | 8 ++------ .../05/GHSA-xfjh-7pm8-fr99/GHSA-xfjh-7pm8-fr99.json | 8 ++------ .../05/GHSA-xfr4-984j-rh45/GHSA-xfr4-984j-rh45.json | 8 ++------ .../05/GHSA-xg7c-hpj9-r697/GHSA-xg7c-hpj9-r697.json | 12 +++--------- .../05/GHSA-xghm-ffg2-3jq3/GHSA-xghm-ffg2-3jq3.json | 12 +++--------- .../05/GHSA-xh4c-c9p9-cjx3/GHSA-xh4c-c9p9-cjx3.json | 8 ++------ .../05/GHSA-xh85-x2mp-5m6p/GHSA-xh85-x2mp-5m6p.json | 8 ++------ .../05/GHSA-xj8q-vqrm-hvqr/GHSA-xj8q-vqrm-hvqr.json | 8 ++------ .../05/GHSA-xj8x-pf8g-x973/GHSA-xj8x-pf8g-x973.json | 8 ++------ .../05/GHSA-xjcv-f3gw-h9m2/GHSA-xjcv-f3gw-h9m2.json | 12 +++--------- .../05/GHSA-xjfx-xwf6-5c7w/GHSA-xjfx-xwf6-5c7w.json | 12 +++--------- .../05/GHSA-xjj5-69gv-xxqg/GHSA-xjj5-69gv-xxqg.json | 12 +++--------- .../05/GHSA-xpcm-5q5j-h76x/GHSA-xpcm-5q5j-h76x.json | 12 +++--------- .../05/GHSA-xppx-r8rj-fw45/GHSA-xppx-r8rj-fw45.json | 8 ++------ .../05/GHSA-xqj5-jf43-pwhr/GHSA-xqj5-jf43-pwhr.json | 12 +++--------- .../05/GHSA-xr5q-3f3c-4cmf/GHSA-xr5q-3f3c-4cmf.json | 8 ++------ .../05/GHSA-xrfj-rj8v-v2j3/GHSA-xrfj-rj8v-v2j3.json | 8 ++------ .../05/GHSA-xrp6-5g58-699g/GHSA-xrp6-5g58-699g.json | 8 ++------ .../05/GHSA-xv3r-wcc2-gmq8/GHSA-xv3r-wcc2-gmq8.json | 8 ++------ .../05/GHSA-xv4p-4459-7rgr/GHSA-xv4p-4459-7rgr.json | 12 +++--------- .../05/GHSA-xv92-wq9x-wgm4/GHSA-xv92-wq9x-wgm4.json | 12 +++--------- .../05/GHSA-xv9p-fx29-877q/GHSA-xv9p-fx29-877q.json | 12 +++--------- .../05/GHSA-xvv2-rghp-v26j/GHSA-xvv2-rghp-v26j.json | 8 ++------ .../05/GHSA-xw78-vx8x-r728/GHSA-xw78-vx8x-r728.json | 8 ++------ .../05/GHSA-xwmf-vq46-mhwp/GHSA-xwmf-vq46-mhwp.json | 4 +--- .../05/GHSA-xxv4-g7pv-f62m/GHSA-xxv4-g7pv-f62m.json | 12 +++--------- .../09/GHSA-rj75-2px6-36w6/GHSA-rj75-2px6-36w6.json | 4 +--- .../11/GHSA-78x9-jhxm-553x/GHSA-78x9-jhxm-553x.json | 8 ++------ .../01/GHSA-2xhc-425v-mmxp/GHSA-2xhc-425v-mmxp.json | 4 +--- .../01/GHSA-3f6q-pc55-vgqv/GHSA-3f6q-pc55-vgqv.json | 4 +--- .../01/GHSA-5w78-c46h-gqxq/GHSA-5w78-c46h-gqxq.json | 4 +--- .../01/GHSA-7884-ggpr-27rj/GHSA-7884-ggpr-27rj.json | 4 +--- .../01/GHSA-7fx8-7jc6-6whx/GHSA-7fx8-7jc6-6whx.json | 4 +--- .../01/GHSA-87ww-8m9q-337f/GHSA-87ww-8m9q-337f.json | 4 +--- .../01/GHSA-cmwf-3gwf-hmjq/GHSA-cmwf-3gwf-hmjq.json | 4 +--- .../01/GHSA-g2qg-fxj7-jg27/GHSA-g2qg-fxj7-jg27.json | 4 +--- .../01/GHSA-gm54-wj7g-5mp3/GHSA-gm54-wj7g-5mp3.json | 4 +--- .../01/GHSA-h6r5-hjf4-84m4/GHSA-h6r5-hjf4-84m4.json | 4 +--- .../01/GHSA-mj4m-mqjg-cm54/GHSA-mj4m-mqjg-cm54.json | 4 +--- .../01/GHSA-p983-rj5f-9qwf/GHSA-p983-rj5f-9qwf.json | 8 ++------ .../01/GHSA-pp35-jc5m-6rpv/GHSA-pp35-jc5m-6rpv.json | 4 +--- .../01/GHSA-q2vp-hgh9-qp96/GHSA-q2vp-hgh9-qp96.json | 4 +--- .../01/GHSA-q8r9-rm68-q588/GHSA-q8r9-rm68-q588.json | 4 +--- .../01/GHSA-qhx4-r2q6-6pv6/GHSA-qhx4-r2q6-6pv6.json | 4 +--- .../03/GHSA-2v4g-w3qw-prh4/GHSA-2v4g-w3qw-prh4.json | 4 +--- .../03/GHSA-32w3-98f9-fhjm/GHSA-32w3-98f9-fhjm.json | 4 +--- .../03/GHSA-hmv7-wgxc-xvjj/GHSA-hmv7-wgxc-xvjj.json | 4 +--- .../03/GHSA-hq4v-9j7v-jcvr/GHSA-hq4v-9j7v-jcvr.json | 4 +--- .../03/GHSA-q3c4-7524-h583/GHSA-q3c4-7524-h583.json | 4 +--- .../03/GHSA-vm76-j474-w5fr/GHSA-vm76-j474-w5fr.json | 4 +--- .../04/GHSA-29j9-xmmx-g9r4/GHSA-29j9-xmmx-g9r4.json | 12 +++--------- .../04/GHSA-c7xr-8x4j-9789/GHSA-c7xr-8x4j-9789.json | 12 +++--------- .../04/GHSA-cxxh-7h4c-gvgj/GHSA-cxxh-7h4c-gvgj.json | 4 +--- .../04/GHSA-hcfw-vh28-wc58/GHSA-hcfw-vh28-wc58.json | 4 +--- .../04/GHSA-jw72-cmc9-886w/GHSA-jw72-cmc9-886w.json | 12 +++--------- .../04/GHSA-rqfx-p88v-f7ff/GHSA-rqfx-p88v-f7ff.json | 12 +++--------- .../12/GHSA-22xq-5w5r-xjvc/GHSA-22xq-5w5r-xjvc.json | 4 +--- .../12/GHSA-2425-vp2m-7vgq/GHSA-2425-vp2m-7vgq.json | 4 +--- .../12/GHSA-24jj-2qmr-wg2p/GHSA-24jj-2qmr-wg2p.json | 4 +--- .../12/GHSA-2rf4-76f7-fgvp/GHSA-2rf4-76f7-fgvp.json | 4 +--- .../12/GHSA-3439-3gp9-6qx5/GHSA-3439-3gp9-6qx5.json | 4 +--- .../12/GHSA-3hqh-q7j7-8x29/GHSA-3hqh-q7j7-8x29.json | 4 +--- .../12/GHSA-3r8w-fh9f-pf9m/GHSA-3r8w-fh9f-pf9m.json | 4 +--- .../12/GHSA-3x54-hx35-g26f/GHSA-3x54-hx35-g26f.json | 4 +--- .../12/GHSA-478v-pqpc-fvm9/GHSA-478v-pqpc-fvm9.json | 4 +--- .../12/GHSA-48cq-h92p-rwqp/GHSA-48cq-h92p-rwqp.json | 4 +--- .../12/GHSA-527j-hqx2-2j3w/GHSA-527j-hqx2-2j3w.json | 4 +--- .../12/GHSA-59g8-xjfp-rm2m/GHSA-59g8-xjfp-rm2m.json | 4 +--- .../12/GHSA-59hf-2q3w-grfv/GHSA-59hf-2q3w-grfv.json | 4 +--- .../12/GHSA-5p2h-52rq-x7jj/GHSA-5p2h-52rq-x7jj.json | 4 +--- .../12/GHSA-6336-q33c-4m9j/GHSA-6336-q33c-4m9j.json | 4 +--- .../12/GHSA-666q-7g9j-r6v3/GHSA-666q-7g9j-r6v3.json | 4 +--- .../12/GHSA-6r46-xr9j-7q78/GHSA-6r46-xr9j-7q78.json | 4 +--- .../12/GHSA-8mw9-p2g7-32fh/GHSA-8mw9-p2g7-32fh.json | 4 +--- .../12/GHSA-8rw5-qcc7-wjxj/GHSA-8rw5-qcc7-wjxj.json | 4 +--- .../12/GHSA-8w23-fmjg-p9r9/GHSA-8w23-fmjg-p9r9.json | 4 +--- .../12/GHSA-c87j-rr9v-p59c/GHSA-c87j-rr9v-p59c.json | 4 +--- .../12/GHSA-cgc2-hg63-pp32/GHSA-cgc2-hg63-pp32.json | 4 +--- .../12/GHSA-chg5-j9rc-wmww/GHSA-chg5-j9rc-wmww.json | 4 +--- .../12/GHSA-cxwv-5x4r-whcp/GHSA-cxwv-5x4r-whcp.json | 4 +--- .../12/GHSA-f83r-24gp-4hph/GHSA-f83r-24gp-4hph.json | 12 +++--------- .../12/GHSA-fmq4-hhg6-4qrr/GHSA-fmq4-hhg6-4qrr.json | 4 +--- .../12/GHSA-fqcc-8cm3-78jm/GHSA-fqcc-8cm3-78jm.json | 4 +--- .../12/GHSA-fxqj-j899-54mr/GHSA-fxqj-j899-54mr.json | 4 +--- .../12/GHSA-g6j2-wc36-fmcv/GHSA-g6j2-wc36-fmcv.json | 4 +--- .../12/GHSA-g7mr-j745-73x6/GHSA-g7mr-j745-73x6.json | 4 +--- .../12/GHSA-h43c-5rvg-2rrr/GHSA-h43c-5rvg-2rrr.json | 4 +--- .../12/GHSA-hmp3-2467-qx2h/GHSA-hmp3-2467-qx2h.json | 4 +--- .../12/GHSA-j7hx-w9r8-hvcq/GHSA-j7hx-w9r8-hvcq.json | 4 +--- .../12/GHSA-jj4v-gw85-c5c6/GHSA-jj4v-gw85-c5c6.json | 4 +--- .../12/GHSA-jxmm-4p7f-fp5v/GHSA-jxmm-4p7f-fp5v.json | 4 +--- .../12/GHSA-m485-gmr9-jqg3/GHSA-m485-gmr9-jqg3.json | 4 +--- .../12/GHSA-m4gg-844w-9h85/GHSA-m4gg-844w-9h85.json | 4 +--- .../12/GHSA-mfhv-63cw-qm77/GHSA-mfhv-63cw-qm77.json | 4 +--- .../12/GHSA-mvwx-xmwm-v4x2/GHSA-mvwx-xmwm-v4x2.json | 4 +--- .../12/GHSA-pf46-89f4-fw5m/GHSA-pf46-89f4-fw5m.json | 4 +--- .../12/GHSA-pg92-hqjw-q679/GHSA-pg92-hqjw-q679.json | 4 +--- .../12/GHSA-q87v-2f9c-89c7/GHSA-q87v-2f9c-89c7.json | 4 +--- .../12/GHSA-qqgw-m967-9p9j/GHSA-qqgw-m967-9p9j.json | 4 +--- .../12/GHSA-qrpq-xj6p-7f3r/GHSA-qrpq-xj6p-7f3r.json | 4 +--- .../12/GHSA-r275-q95r-mr46/GHSA-r275-q95r-mr46.json | 8 ++------ .../12/GHSA-rgrq-pg8h-w7h3/GHSA-rgrq-pg8h-w7h3.json | 4 +--- .../12/GHSA-rqg9-w7qg-29ff/GHSA-rqg9-w7qg-29ff.json | 4 +--- .../12/GHSA-vf3g-7v3f-4589/GHSA-vf3g-7v3f-4589.json | 4 +--- .../12/GHSA-wvw6-cw89-mr92/GHSA-wvw6-cw89-mr92.json | 4 +--- .../12/GHSA-x2rx-c59q-42rg/GHSA-x2rx-c59q-42rg.json | 4 +--- .../12/GHSA-xj28-57qv-77hc/GHSA-xj28-57qv-77hc.json | 4 +--- .../12/GHSA-xmx6-5pw4-x52x/GHSA-xmx6-5pw4-x52x.json | 4 +--- .../12/GHSA-xw8p-h6jm-76hg/GHSA-xw8p-h6jm-76hg.json | 4 +--- .../12/GHSA-xxv8-wfjw-6w8f/GHSA-xxv8-wfjw-6w8f.json | 4 +--- .../01/GHSA-3r8w-gj6v-wq3r/GHSA-3r8w-gj6v-wq3r.json | 4 +--- .../01/GHSA-3w6w-r9vq-3r79/GHSA-3w6w-r9vq-3r79.json | 4 +--- .../01/GHSA-4c3x-wrfg-6pjr/GHSA-4c3x-wrfg-6pjr.json | 4 +--- .../01/GHSA-7wff-94vq-2q76/GHSA-7wff-94vq-2q76.json | 8 ++------ .../01/GHSA-988v-v47j-cj4p/GHSA-988v-v47j-cj4p.json | 4 +--- .../01/GHSA-9fpx-vc83-vhpf/GHSA-9fpx-vc83-vhpf.json | 4 +--- .../01/GHSA-h49c-jgw7-9grp/GHSA-h49c-jgw7-9grp.json | 4 +--- .../01/GHSA-h53r-v36g-3338/GHSA-h53r-v36g-3338.json | 4 +--- .../01/GHSA-p687-9x5q-6prq/GHSA-p687-9x5q-6prq.json | 4 +--- .../01/GHSA-v334-55hv-wvc6/GHSA-v334-55hv-wvc6.json | 4 +--- .../03/GHSA-3q8h-8f45-42g6/GHSA-3q8h-8f45-42g6.json | 4 +--- .../03/GHSA-5w28-7mvj-3c7j/GHSA-5w28-7mvj-3c7j.json | 12 +++--------- .../03/GHSA-6gxx-vpw4-r22r/GHSA-6gxx-vpw4-r22r.json | 4 +--- .../03/GHSA-6wq8-pg78-64gw/GHSA-6wq8-pg78-64gw.json | 4 +--- .../03/GHSA-7xmw-55r7-4xvc/GHSA-7xmw-55r7-4xvc.json | 8 ++------ .../03/GHSA-j32f-6x6r-56fq/GHSA-j32f-6x6r-56fq.json | 4 +--- .../04/GHSA-2xvf-jhh8-xv4f/GHSA-2xvf-jhh8-xv4f.json | 4 +--- .../04/GHSA-6wpm-mvc7-c878/GHSA-6wpm-mvc7-c878.json | 8 ++------ .../04/GHSA-frvq-2rgm-73qv/GHSA-frvq-2rgm-73qv.json | 8 ++------ .../04/GHSA-h933-77ww-w86w/GHSA-h933-77ww-w86w.json | 8 ++------ .../04/GHSA-hj29-7gh7-97xr/GHSA-hj29-7gh7-97xr.json | 8 ++------ .../04/GHSA-j4j9-wc5g-p586/GHSA-j4j9-wc5g-p586.json | 8 ++------ .../04/GHSA-r692-wrf3-rhfw/GHSA-r692-wrf3-rhfw.json | 8 ++------ .../04/GHSA-v5rg-5x87-5xv9/GHSA-v5rg-5x87-5xv9.json | 8 ++------ .../04/GHSA-vgjg-mpj8-9q8q/GHSA-vgjg-mpj8-9q8q.json | 8 ++------ 969 files changed, 2164 insertions(+), 6492 deletions(-) diff --git a/advisories/github-reviewed/2019/06/GHSA-8j8c-7jfh-h6hx/GHSA-8j8c-7jfh-h6hx.json b/advisories/github-reviewed/2019/06/GHSA-8j8c-7jfh-h6hx/GHSA-8j8c-7jfh-h6hx.json index 5a8a4baf2a9..9fd03bcc025 100644 --- a/advisories/github-reviewed/2019/06/GHSA-8j8c-7jfh-h6hx/GHSA-8j8c-7jfh-h6hx.json +++ b/advisories/github-reviewed/2019/06/GHSA-8j8c-7jfh-h6hx/GHSA-8j8c-7jfh-h6hx.json @@ -3,14 +3,10 @@ "id": "GHSA-8j8c-7jfh-h6hx", "modified": "2020-08-31T18:36:43Z", "published": "2019-06-04T20:14:07Z", - "aliases": [ - - ], + "aliases": [], "summary": "Code Injection in js-yaml", "details": "Versions of `js-yaml` prior to 3.13.1 are vulnerable to Code Injection. The `load()` function may execute arbitrary code injected through a malicious YAML file. Objects that have `toString` as key, JavaScript code as value and are used as explicit mapping keys allow attackers to execute the supplied code through the `load()` function. The `safeLoad()` function is unaffected.\n\nAn example payload is \n`{ toString: ! 'function (){return Date.now()}' } : 1` \nwhich returns the object \n{\n \"1553107949161\": 1\n}\n\n\n## Recommendation\n\nUpgrade to version 3.13.1.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2019/06/GHSA-q42p-pg8m-cqh6/GHSA-q42p-pg8m-cqh6.json b/advisories/github-reviewed/2019/06/GHSA-q42p-pg8m-cqh6/GHSA-q42p-pg8m-cqh6.json index 6fa545582c7..d09cfe5fdcd 100644 --- a/advisories/github-reviewed/2019/06/GHSA-q42p-pg8m-cqh6/GHSA-q42p-pg8m-cqh6.json +++ b/advisories/github-reviewed/2019/06/GHSA-q42p-pg8m-cqh6/GHSA-q42p-pg8m-cqh6.json @@ -3,9 +3,7 @@ "id": "GHSA-q42p-pg8m-cqh6", "modified": "2021-08-04T20:54:05Z", "published": "2019-06-05T14:07:48Z", - "aliases": [ - - ], + "aliases": [], "summary": "Prototype Pollution in handlebars", "details": "Versions of `handlebars` prior to 4.0.14 are vulnerable to Prototype Pollution. Templates may alter an Objects' prototype, thus allowing an attacker to execute arbitrary code on the server.\n\n\n## Recommendation\n\nFor handlebars 4.1.x upgrade to 4.1.2 or later.\nFor handlebars 4.0.x upgrade to 4.0.14 or later.", "severity": [ diff --git a/advisories/github-reviewed/2022/05/GHSA-8jfx-h6q2-v4g3/GHSA-8jfx-h6q2-v4g3.json b/advisories/github-reviewed/2022/05/GHSA-8jfx-h6q2-v4g3/GHSA-8jfx-h6q2-v4g3.json index c6bbf8f9ea2..3bb8a5af3b6 100644 --- a/advisories/github-reviewed/2022/05/GHSA-8jfx-h6q2-v4g3/GHSA-8jfx-h6q2-v4g3.json +++ b/advisories/github-reviewed/2022/05/GHSA-8jfx-h6q2-v4g3/GHSA-8jfx-h6q2-v4g3.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins session fixation vulnerability", "details": "Session fixation vulnerability in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to hijack web sessions via vectors involving the \"override\" of Jenkins cookies.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-pv88-j6rg-r56p/GHSA-pv88-j6rg-r56p.json b/advisories/github-reviewed/2022/05/GHSA-pv88-j6rg-r56p/GHSA-pv88-j6rg-r56p.json index 4b5e2efd7e8..38261718f08 100644 --- a/advisories/github-reviewed/2022/05/GHSA-pv88-j6rg-r56p/GHSA-pv88-j6rg-r56p.json +++ b/advisories/github-reviewed/2022/05/GHSA-pv88-j6rg-r56p/GHSA-pv88-j6rg-r56p.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins allows attackers to obtain sensitive information", "details": "The doIndex function in hudson/util/RemotingDiagnostics.java in CloudBees Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users with the ADMINISTER permission to obtain sensitive information via vectors related to heapDump.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -74,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2024-03-05T14:36:40Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-rxfv-gm5x-9wqj/GHSA-rxfv-gm5x-9wqj.json b/advisories/github-reviewed/2022/05/GHSA-rxfv-gm5x-9wqj/GHSA-rxfv-gm5x-9wqj.json index 929761825d6..56fb15f024a 100644 --- a/advisories/github-reviewed/2022/05/GHSA-rxfv-gm5x-9wqj/GHSA-rxfv-gm5x-9wqj.json +++ b/advisories/github-reviewed/2022/05/GHSA-rxfv-gm5x-9wqj/GHSA-rxfv-gm5x-9wqj.json @@ -8,9 +8,7 @@ ], "summary": "Jenkin allows attackers to obtain passwords by reading the HTML source code", "details": "The input control in PasswordParameterDefinition in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to obtain passwords by reading the HTML source code, related to the default value.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -74,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-03-05T14:38:10Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-vrh7-99jh-3fmm/GHSA-vrh7-99jh-3fmm.json b/advisories/github-reviewed/2022/05/GHSA-vrh7-99jh-3fmm/GHSA-vrh7-99jh-3fmm.json index e3211716374..316a386b4fc 100644 --- a/advisories/github-reviewed/2022/05/GHSA-vrh7-99jh-3fmm/GHSA-vrh7-99jh-3fmm.json +++ b/advisories/github-reviewed/2022/05/GHSA-vrh7-99jh-3fmm/GHSA-vrh7-99jh-3fmm.json @@ -8,9 +8,7 @@ ], "summary": "Puppet arbitrary files overwrite via a symlink attack", "details": "Puppet 0.24.x before 0.24.9 and 0.25.x before 0.25.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/daemonout, (2) /tmp/puppetdoc.txt, (3) /tmp/puppetdoc.tex, or (4) /tmp/puppetdoc.aux temporary file.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-vxc6-wvh8-fpxw/GHSA-vxc6-wvh8-fpxw.json b/advisories/github-reviewed/2022/05/GHSA-vxc6-wvh8-fpxw/GHSA-vxc6-wvh8-fpxw.json index 5eedbd7ecba..c1ff5415fb1 100644 --- a/advisories/github-reviewed/2022/05/GHSA-vxc6-wvh8-fpxw/GHSA-vxc6-wvh8-fpxw.json +++ b/advisories/github-reviewed/2022/05/GHSA-vxc6-wvh8-fpxw/GHSA-vxc6-wvh8-fpxw.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins does not invalidate the API token when a user is deleted", "details": "Jenkins before 1.551 and LTS before 1.532.2 does not invalidate the API token when a user is deleted, which allows remote authenticated users to retain access via the token.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/11/GHSA-8g2p-5pqh-5jmc/GHSA-8g2p-5pqh-5jmc.json b/advisories/github-reviewed/2022/11/GHSA-8g2p-5pqh-5jmc/GHSA-8g2p-5pqh-5jmc.json index 96618bfcd30..0a3a0037e62 100644 --- a/advisories/github-reviewed/2022/11/GHSA-8g2p-5pqh-5jmc/GHSA-8g2p-5pqh-5jmc.json +++ b/advisories/github-reviewed/2022/11/GHSA-8g2p-5pqh-5jmc/GHSA-8g2p-5pqh-5jmc.json @@ -106,9 +106,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2022-11-08T23:00:22Z", diff --git a/advisories/github-reviewed/2023/04/GHSA-2fch-hv74-fgw9/GHSA-2fch-hv74-fgw9.json b/advisories/github-reviewed/2023/04/GHSA-2fch-hv74-fgw9/GHSA-2fch-hv74-fgw9.json index 5457cac96f2..5a2e0bc397a 100644 --- a/advisories/github-reviewed/2023/04/GHSA-2fch-hv74-fgw9/GHSA-2fch-hv74-fgw9.json +++ b/advisories/github-reviewed/2023/04/GHSA-2fch-hv74-fgw9/GHSA-2fch-hv74-fgw9.json @@ -3,14 +3,10 @@ "id": "GHSA-2fch-hv74-fgw9", "modified": "2023-04-26T19:42:30Z", "published": "2023-04-26T19:42:30Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cross site scripting (XSS) in wwbn/avideo", "details": "Description:\n\nWhile making an account in demo.avideo.com I found a parameter \"?success=\" which did not sanitize any symbol character properly which leads to XSS attack.\n\nImpact:\n\nSince there's an Admin account on demo.avideo.com attacker can use this attack to Takeover the admin's account\n\nStep to Reproduce:\n\n1. Click the link below\n\n[https://demo.avideo.com/user?success=\">\n\n2. Then XSS will be executed", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/05/GHSA-g8ph-74m6-8m7r/GHSA-g8ph-74m6-8m7r.json b/advisories/github-reviewed/2023/05/GHSA-g8ph-74m6-8m7r/GHSA-g8ph-74m6-8m7r.json index b3230172bcb..c394133d24e 100644 --- a/advisories/github-reviewed/2023/05/GHSA-g8ph-74m6-8m7r/GHSA-g8ph-74m6-8m7r.json +++ b/advisories/github-reviewed/2023/05/GHSA-g8ph-74m6-8m7r/GHSA-g8ph-74m6-8m7r.json @@ -3,9 +3,7 @@ "id": "GHSA-g8ph-74m6-8m7r", "modified": "2023-05-12T20:18:51Z", "published": "2023-05-12T20:18:51Z", - "aliases": [ - - ], + "aliases": [], "summary": "ClickHouse vulnerable to client certificate password exposure in client exception", "details": "### Summary\nAs initially reported in issue #1331, when client certificate authentication is enabled with password protection, the password (referred to as the client option `sslkey`) may be exposed in client exceptions (e.g., ClickHouseException or SQLException). This vulnerability can potentially lead to unauthorized access, data breaches, and violations of user privacy.\n\n### Details\nDuring the handling of ClickHouseException, the client certificate password may be inadvertently exposed when sslkey is specified. This issue can arise when an exception is thrown during the execution of a query or a database operation. The client certificate password is then included in the exception message, which could be logged or exposed to unauthorized parties.\n\n### Impact\nThis vulnerability enables an attacker with access to client exception error messages or logs to obtain client certificate passwords, potentially allowing unauthorized access to sensitive information, data manipulation, and denial of service attacks. The extent of the risk depends on the specific implementation and usage of the affected systems. However, any exposure of client certificate passwords should be treated as a high-priority security concern.\n", "severity": [ @@ -96,9 +94,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-05-12T20:18:51Z", diff --git a/advisories/github-reviewed/2024/01/GHSA-wpxw-5xfm-x22v/GHSA-wpxw-5xfm-x22v.json b/advisories/github-reviewed/2024/01/GHSA-wpxw-5xfm-x22v/GHSA-wpxw-5xfm-x22v.json index 57245b9775b..045481d154e 100644 --- a/advisories/github-reviewed/2024/01/GHSA-wpxw-5xfm-x22v/GHSA-wpxw-5xfm-x22v.json +++ b/advisories/github-reviewed/2024/01/GHSA-wpxw-5xfm-x22v/GHSA-wpxw-5xfm-x22v.json @@ -62,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-01-29T22:28:55Z", diff --git a/advisories/unreviewed/2021/12/GHSA-h3r6-368v-w6xc/GHSA-h3r6-368v-w6xc.json b/advisories/unreviewed/2021/12/GHSA-h3r6-368v-w6xc/GHSA-h3r6-368v-w6xc.json index 1c32e44deea..c2234158359 100644 --- a/advisories/unreviewed/2021/12/GHSA-h3r6-368v-w6xc/GHSA-h3r6-368v-w6xc.json +++ b/advisories/unreviewed/2021/12/GHSA-h3r6-368v-w6xc/GHSA-h3r6-368v-w6xc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/01/GHSA-xvgc-v9fj-5m69/GHSA-xvgc-v9fj-5m69.json b/advisories/unreviewed/2022/01/GHSA-xvgc-v9fj-5m69/GHSA-xvgc-v9fj-5m69.json index 0e78f8b9bc6..5e65ea0830e 100644 --- a/advisories/unreviewed/2022/01/GHSA-xvgc-v9fj-5m69/GHSA-xvgc-v9fj-5m69.json +++ b/advisories/unreviewed/2022/01/GHSA-xvgc-v9fj-5m69/GHSA-xvgc-v9fj-5m69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2j2f-h2gf-6r4c/GHSA-2j2f-h2gf-6r4c.json b/advisories/unreviewed/2022/04/GHSA-2j2f-h2gf-6r4c/GHSA-2j2f-h2gf-6r4c.json index 9bf479a4e5b..9bc92a63a7d 100644 --- a/advisories/unreviewed/2022/04/GHSA-2j2f-h2gf-6r4c/GHSA-2j2f-h2gf-6r4c.json +++ b/advisories/unreviewed/2022/04/GHSA-2j2f-h2gf-6r4c/GHSA-2j2f-h2gf-6r4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-7rhp-mjch-qq88/GHSA-7rhp-mjch-qq88.json b/advisories/unreviewed/2022/04/GHSA-7rhp-mjch-qq88/GHSA-7rhp-mjch-qq88.json index ad7662d926e..4a2e209d924 100644 --- a/advisories/unreviewed/2022/04/GHSA-7rhp-mjch-qq88/GHSA-7rhp-mjch-qq88.json +++ b/advisories/unreviewed/2022/04/GHSA-7rhp-mjch-qq88/GHSA-7rhp-mjch-qq88.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-hg32-p8hw-8g3x/GHSA-hg32-p8hw-8g3x.json b/advisories/unreviewed/2022/04/GHSA-hg32-p8hw-8g3x/GHSA-hg32-p8hw-8g3x.json index 8d1cdccbad8..70facc1835c 100644 --- a/advisories/unreviewed/2022/04/GHSA-hg32-p8hw-8g3x/GHSA-hg32-p8hw-8g3x.json +++ b/advisories/unreviewed/2022/04/GHSA-hg32-p8hw-8g3x/GHSA-hg32-p8hw-8g3x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mx9g-mg46-cf6g/GHSA-mx9g-mg46-cf6g.json b/advisories/unreviewed/2022/04/GHSA-mx9g-mg46-cf6g/GHSA-mx9g-mg46-cf6g.json index eee2f80c021..196c774f6bf 100644 --- a/advisories/unreviewed/2022/04/GHSA-mx9g-mg46-cf6g/GHSA-mx9g-mg46-cf6g.json +++ b/advisories/unreviewed/2022/04/GHSA-mx9g-mg46-cf6g/GHSA-mx9g-mg46-cf6g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-q8p7-6fhh-3h44/GHSA-q8p7-6fhh-3h44.json b/advisories/unreviewed/2022/04/GHSA-q8p7-6fhh-3h44/GHSA-q8p7-6fhh-3h44.json index 2d57d0f2479..dcbbbaede55 100644 --- a/advisories/unreviewed/2022/04/GHSA-q8p7-6fhh-3h44/GHSA-q8p7-6fhh-3h44.json +++ b/advisories/unreviewed/2022/04/GHSA-q8p7-6fhh-3h44/GHSA-q8p7-6fhh-3h44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xc2p-7wgh-ffh3/GHSA-xc2p-7wgh-ffh3.json b/advisories/unreviewed/2022/04/GHSA-xc2p-7wgh-ffh3/GHSA-xc2p-7wgh-ffh3.json index 877085d2f36..91ab719abc4 100644 --- a/advisories/unreviewed/2022/04/GHSA-xc2p-7wgh-ffh3/GHSA-xc2p-7wgh-ffh3.json +++ b/advisories/unreviewed/2022/04/GHSA-xc2p-7wgh-ffh3/GHSA-xc2p-7wgh-ffh3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-222c-qv22-f3wj/GHSA-222c-qv22-f3wj.json b/advisories/unreviewed/2022/05/GHSA-222c-qv22-f3wj/GHSA-222c-qv22-f3wj.json index 69db996187a..bec62b95a4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-222c-qv22-f3wj/GHSA-222c-qv22-f3wj.json +++ b/advisories/unreviewed/2022/05/GHSA-222c-qv22-f3wj/GHSA-222c-qv22-f3wj.json @@ -7,12 +7,8 @@ "CVE-2010-0106" ], "details": "The on-demand scanning in Symantec AntiVirus 10.0.x and 10.1.x before MR9, AntiVirus 10.2.x, and Client Security 3.0.x and 3.1.x before MR9, when Tamper protection is disabled, allows remote attackers to cause a denial of service (prevention of on-demand scanning) via \"specific events\" that prevent the user from having read access to unspecified resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-22cp-6jm2-7pjh/GHSA-22cp-6jm2-7pjh.json b/advisories/unreviewed/2022/05/GHSA-22cp-6jm2-7pjh/GHSA-22cp-6jm2-7pjh.json index c369e35e66c..3291e939cc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-22cp-6jm2-7pjh/GHSA-22cp-6jm2-7pjh.json +++ b/advisories/unreviewed/2022/05/GHSA-22cp-6jm2-7pjh/GHSA-22cp-6jm2-7pjh.json @@ -7,12 +7,8 @@ "CVE-2010-0620" ], "details": "Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 allows remote attackers to overwrite arbitrary files with any content, and consequently execute arbitrary code, via a .. (dot dot) in an unspecified parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-22m7-r3qp-8jxg/GHSA-22m7-r3qp-8jxg.json b/advisories/unreviewed/2022/05/GHSA-22m7-r3qp-8jxg/GHSA-22m7-r3qp-8jxg.json index a99f451587e..c86321c0032 100644 --- a/advisories/unreviewed/2022/05/GHSA-22m7-r3qp-8jxg/GHSA-22m7-r3qp-8jxg.json +++ b/advisories/unreviewed/2022/05/GHSA-22m7-r3qp-8jxg/GHSA-22m7-r3qp-8jxg.json @@ -7,12 +7,8 @@ "CVE-2010-0284" ], "details": "Directory traversal vulnerability in the getEntry method in the PortalModuleInstallManager component in a servlet in nps.jar in the Administration Console (aka Access Management Console) in Novell Access Manager 3.1 before 3.1.2-281 on Windows allows remote attackers to create arbitrary files with any contents, and consequently execute arbitrary code, via a .. (dot dot) in a parameter, aka ZDI-CAN-678.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23pj-gg2f-pmvj/GHSA-23pj-gg2f-pmvj.json b/advisories/unreviewed/2022/05/GHSA-23pj-gg2f-pmvj/GHSA-23pj-gg2f-pmvj.json index 6cfcfe99f32..54aa4381482 100644 --- a/advisories/unreviewed/2022/05/GHSA-23pj-gg2f-pmvj/GHSA-23pj-gg2f-pmvj.json +++ b/advisories/unreviewed/2022/05/GHSA-23pj-gg2f-pmvj/GHSA-23pj-gg2f-pmvj.json @@ -7,12 +7,8 @@ "CVE-2010-0803" ], "details": "SQL injection vulnerability in the jVideoDirect (com_jvideodirect) component 1.1 RC3b for Joomla! allows remote attackers to execute arbitrary SQL commands via the v parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24jj-74cf-p75p/GHSA-24jj-74cf-p75p.json b/advisories/unreviewed/2022/05/GHSA-24jj-74cf-p75p/GHSA-24jj-74cf-p75p.json index 0137c2e9017..4c2b3d4ae6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-24jj-74cf-p75p/GHSA-24jj-74cf-p75p.json +++ b/advisories/unreviewed/2022/05/GHSA-24jj-74cf-p75p/GHSA-24jj-74cf-p75p.json @@ -7,12 +7,8 @@ "CVE-2010-0601" ], "details": "The MGCP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug ID CSCsl39126.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24wp-2mp6-6g43/GHSA-24wp-2mp6-6g43.json b/advisories/unreviewed/2022/05/GHSA-24wp-2mp6-6g43/GHSA-24wp-2mp6-6g43.json index 11fcb25694e..3a3b47f5811 100644 --- a/advisories/unreviewed/2022/05/GHSA-24wp-2mp6-6g43/GHSA-24wp-2mp6-6g43.json +++ b/advisories/unreviewed/2022/05/GHSA-24wp-2mp6-6g43/GHSA-24wp-2mp6-6g43.json @@ -7,12 +7,8 @@ "CVE-2010-0870" ], "details": "Unspecified vulnerability in the Change Data Capture component in Oracle Database 9.2.0.8 and 9.2.0.8DV allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMS_CDC_PUBLISH.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2736-7x8v-6v3p/GHSA-2736-7x8v-6v3p.json b/advisories/unreviewed/2022/05/GHSA-2736-7x8v-6v3p/GHSA-2736-7x8v-6v3p.json index bb82a0f1d7c..59751afac02 100644 --- a/advisories/unreviewed/2022/05/GHSA-2736-7x8v-6v3p/GHSA-2736-7x8v-6v3p.json +++ b/advisories/unreviewed/2022/05/GHSA-2736-7x8v-6v3p/GHSA-2736-7x8v-6v3p.json @@ -7,12 +7,8 @@ "CVE-2010-0525" ], "details": "Mail in Apple Mac OS X before 10.6.3 does not properly enforce the key usage extension during processing of a keychain that specifies multiple certificates for an e-mail recipient, which might make it easier for remote attackers to obtain sensitive information via a brute-force attack on a weakly encrypted e-mail message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-277j-v92f-57q6/GHSA-277j-v92f-57q6.json b/advisories/unreviewed/2022/05/GHSA-277j-v92f-57q6/GHSA-277j-v92f-57q6.json index df639287005..b43c19fd313 100644 --- a/advisories/unreviewed/2022/05/GHSA-277j-v92f-57q6/GHSA-277j-v92f-57q6.json +++ b/advisories/unreviewed/2022/05/GHSA-277j-v92f-57q6/GHSA-277j-v92f-57q6.json @@ -7,12 +7,8 @@ "CVE-2010-0264" ], "details": "Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka \"Microsoft Office Excel DbOrParamQry Record Parsing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27jj-5xgw-m6qw/GHSA-27jj-5xgw-m6qw.json b/advisories/unreviewed/2022/05/GHSA-27jj-5xgw-m6qw/GHSA-27jj-5xgw-m6qw.json index 25bf8dc6a22..a459e25fe60 100644 --- a/advisories/unreviewed/2022/05/GHSA-27jj-5xgw-m6qw/GHSA-27jj-5xgw-m6qw.json +++ b/advisories/unreviewed/2022/05/GHSA-27jj-5xgw-m6qw/GHSA-27jj-5xgw-m6qw.json @@ -7,12 +7,8 @@ "CVE-2010-0624" ], "details": "Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of service (memory corruption) or possibly execute arbitrary code by sending more data than was requested, related to archive filenames that contain a : (colon) character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27pg-cfc8-4p42/GHSA-27pg-cfc8-4p42.json b/advisories/unreviewed/2022/05/GHSA-27pg-cfc8-4p42/GHSA-27pg-cfc8-4p42.json index 05af77e2bf5..2729af0bee3 100644 --- a/advisories/unreviewed/2022/05/GHSA-27pg-cfc8-4p42/GHSA-27pg-cfc8-4p42.json +++ b/advisories/unreviewed/2022/05/GHSA-27pg-cfc8-4p42/GHSA-27pg-cfc8-4p42.json @@ -7,12 +7,8 @@ "CVE-2010-0268" ], "details": "Unspecified vulnerability in the Windows Media Player ActiveX control in Windows Media Player (WMP) 9 on Microsoft Windows 2000 SP4 and XP SP2 and SP3 allows remote attackers to execute arbitrary code via crafted media content, aka \"Media Player Remote Code Execution Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-28w3-369m-84x8/GHSA-28w3-369m-84x8.json b/advisories/unreviewed/2022/05/GHSA-28w3-369m-84x8/GHSA-28w3-369m-84x8.json index eb86e862af8..40244a8cf61 100644 --- a/advisories/unreviewed/2022/05/GHSA-28w3-369m-84x8/GHSA-28w3-369m-84x8.json +++ b/advisories/unreviewed/2022/05/GHSA-28w3-369m-84x8/GHSA-28w3-369m-84x8.json @@ -7,12 +7,8 @@ "CVE-2010-0550" ], "details": "admin.htm in Geo++ GNCASTER 1.4.0.7 and earlier does not properly enforce HTTP Digest Authentication, which allows remote authenticated users to use HTTP Basic Authentication, bypassing intended server policy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2977-c3c9-wqxf/GHSA-2977-c3c9-wqxf.json b/advisories/unreviewed/2022/05/GHSA-2977-c3c9-wqxf/GHSA-2977-c3c9-wqxf.json index 7e6dcc9dc8a..b8afb59f1a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-2977-c3c9-wqxf/GHSA-2977-c3c9-wqxf.json +++ b/advisories/unreviewed/2022/05/GHSA-2977-c3c9-wqxf/GHSA-2977-c3c9-wqxf.json @@ -7,12 +7,8 @@ "CVE-2010-0636" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29c4-j685-rvr3/GHSA-29c4-j685-rvr3.json b/advisories/unreviewed/2022/05/GHSA-29c4-j685-rvr3/GHSA-29c4-j685-rvr3.json index 81487155737..7a62e2bb988 100644 --- a/advisories/unreviewed/2022/05/GHSA-29c4-j685-rvr3/GHSA-29c4-j685-rvr3.json +++ b/advisories/unreviewed/2022/05/GHSA-29c4-j685-rvr3/GHSA-29c4-j685-rvr3.json @@ -7,12 +7,8 @@ "CVE-2010-0706" ], "details": "Cross-site scripting (XSS) vulnerability in the login/prompt component in Subex Nikira Fraud Management System allows remote attackers to inject arbitrary web script or HTML via the message parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2ffp-p9mj-92cf/GHSA-2ffp-p9mj-92cf.json b/advisories/unreviewed/2022/05/GHSA-2ffp-p9mj-92cf/GHSA-2ffp-p9mj-92cf.json index b8ec64d01ab..aba597c4767 100644 --- a/advisories/unreviewed/2022/05/GHSA-2ffp-p9mj-92cf/GHSA-2ffp-p9mj-92cf.json +++ b/advisories/unreviewed/2022/05/GHSA-2ffp-p9mj-92cf/GHSA-2ffp-p9mj-92cf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fm9-mpfh-qw5j/GHSA-2fm9-mpfh-qw5j.json b/advisories/unreviewed/2022/05/GHSA-2fm9-mpfh-qw5j/GHSA-2fm9-mpfh-qw5j.json index 6b10a8d2d38..32f39bb4472 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fm9-mpfh-qw5j/GHSA-2fm9-mpfh-qw5j.json +++ b/advisories/unreviewed/2022/05/GHSA-2fm9-mpfh-qw5j/GHSA-2fm9-mpfh-qw5j.json @@ -7,12 +7,8 @@ "CVE-2010-0095" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0093.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -156,9 +152,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2fq3-p8p7-3cvw/GHSA-2fq3-p8p7-3cvw.json b/advisories/unreviewed/2022/05/GHSA-2fq3-p8p7-3cvw/GHSA-2fq3-p8p7-3cvw.json index c957259f13a..8a0eda0fed0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fq3-p8p7-3cvw/GHSA-2fq3-p8p7-3cvw.json +++ b/advisories/unreviewed/2022/05/GHSA-2fq3-p8p7-3cvw/GHSA-2fq3-p8p7-3cvw.json @@ -7,12 +7,8 @@ "CVE-2010-0068" ], "details": "Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.0, 9.1, 9.2MP2, and 10.0 allows remote attackers to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2fvm-hcc8-v9vr/GHSA-2fvm-hcc8-v9vr.json b/advisories/unreviewed/2022/05/GHSA-2fvm-hcc8-v9vr/GHSA-2fvm-hcc8-v9vr.json index 45fa50f05a9..aa3c9b32ae4 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fvm-hcc8-v9vr/GHSA-2fvm-hcc8-v9vr.json +++ b/advisories/unreviewed/2022/05/GHSA-2fvm-hcc8-v9vr/GHSA-2fvm-hcc8-v9vr.json @@ -7,12 +7,8 @@ "CVE-2009-5118" ], "details": "Untrusted search path vulnerability in McAfee VirusScan Enterprise before 8.7i allows local users to gain privileges via a Trojan horse DLL in an unspecified directory, as demonstrated by scanning a document located on a remote share.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2gcm-4527-j663/GHSA-2gcm-4527-j663.json b/advisories/unreviewed/2022/05/GHSA-2gcm-4527-j663/GHSA-2gcm-4527-j663.json index dc2dcf1ca5b..6117515f5f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gcm-4527-j663/GHSA-2gcm-4527-j663.json +++ b/advisories/unreviewed/2022/05/GHSA-2gcm-4527-j663/GHSA-2gcm-4527-j663.json @@ -7,12 +7,8 @@ "CVE-2010-0438" ], "details": "Multiple SQL injection vulnerabilities in Kernel/System/Ticket.pm in OTRS-Core in Open Ticket Request System (OTRS) 2.1.x before 2.1.9, 2.2.x before 2.2.9, 2.3.x before 2.3.5, and 2.4.x before 2.4.7 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2gfq-wp47-xc5f/GHSA-2gfq-wp47-xc5f.json b/advisories/unreviewed/2022/05/GHSA-2gfq-wp47-xc5f/GHSA-2gfq-wp47-xc5f.json index d8830114184..72fdde5ad8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gfq-wp47-xc5f/GHSA-2gfq-wp47-xc5f.json +++ b/advisories/unreviewed/2022/05/GHSA-2gfq-wp47-xc5f/GHSA-2gfq-wp47-xc5f.json @@ -7,12 +7,8 @@ "CVE-2010-0028" ], "details": "Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted JPEG (.JPG) file, aka \"MS Paint Integer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2gp8-fw4p-p6jj/GHSA-2gp8-fw4p-p6jj.json b/advisories/unreviewed/2022/05/GHSA-2gp8-fw4p-p6jj/GHSA-2gp8-fw4p-p6jj.json index 21391450c05..e609cd5915a 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gp8-fw4p-p6jj/GHSA-2gp8-fw4p-p6jj.json +++ b/advisories/unreviewed/2022/05/GHSA-2gp8-fw4p-p6jj/GHSA-2gp8-fw4p-p6jj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jh9-p5pg-q6f4/GHSA-2jh9-p5pg-q6f4.json b/advisories/unreviewed/2022/05/GHSA-2jh9-p5pg-q6f4/GHSA-2jh9-p5pg-q6f4.json index b4c8b9b823d..92bfc1fe847 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jh9-p5pg-q6f4/GHSA-2jh9-p5pg-q6f4.json +++ b/advisories/unreviewed/2022/05/GHSA-2jh9-p5pg-q6f4/GHSA-2jh9-p5pg-q6f4.json @@ -7,12 +7,8 @@ "CVE-2010-0404" ], "details": "Multiple SQL injection vulnerabilities in phpGroupWare (phpgw) before 0.9.16.016 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) class.sessions_db.inc.php, (2) class.translation_sql.inc.php, or (3) class.auth_sql.inc.php in phpgwapi/inc/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2m33-fq4w-f79p/GHSA-2m33-fq4w-f79p.json b/advisories/unreviewed/2022/05/GHSA-2m33-fq4w-f79p/GHSA-2m33-fq4w-f79p.json index f69e10275bf..a514f19ea26 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m33-fq4w-f79p/GHSA-2m33-fq4w-f79p.json +++ b/advisories/unreviewed/2022/05/GHSA-2m33-fq4w-f79p/GHSA-2m33-fq4w-f79p.json @@ -7,12 +7,8 @@ "CVE-2010-0885" ], "details": "Unspecified vulnerability in the Sun Java System Communications Express component in Oracle Sun Product Suite 6 2005Q4 (6.2) and and 6.3 allows remote authenticated users to affect confidentiality via unknown vectors related to Address Book.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2m9h-jfmc-6h86/GHSA-2m9h-jfmc-6h86.json b/advisories/unreviewed/2022/05/GHSA-2m9h-jfmc-6h86/GHSA-2m9h-jfmc-6h86.json index 998b37c1a12..340b3977e11 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m9h-jfmc-6h86/GHSA-2m9h-jfmc-6h86.json +++ b/advisories/unreviewed/2022/05/GHSA-2m9h-jfmc-6h86/GHSA-2m9h-jfmc-6h86.json @@ -7,12 +7,8 @@ "CVE-2010-0715" ], "details": "Open redirect vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management (WCM), and IBM Lotus Workplace Web Content Management 5.1.0.0 through 5.1.0.5, 6.0.0.0 through 6.0.0.4, 6.0.1.0 through 6.0.1.7, 6.1.0.0 through 6.1.0.3, and 6.1.5.0; and IBM Lotus Quickr services 8.0, 8.0.0.2, 8.1, 8.1.1, and 8.1.1.1 for WebSphere Portal; allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p2p-xpf9-5p78/GHSA-2p2p-xpf9-5p78.json b/advisories/unreviewed/2022/05/GHSA-2p2p-xpf9-5p78/GHSA-2p2p-xpf9-5p78.json index 65ba46eba38..8ef6b0d62de 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p2p-xpf9-5p78/GHSA-2p2p-xpf9-5p78.json +++ b/advisories/unreviewed/2022/05/GHSA-2p2p-xpf9-5p78/GHSA-2p2p-xpf9-5p78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -71,9 +69,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p9p-xfg3-2fr3/GHSA-2p9p-xfg3-2fr3.json b/advisories/unreviewed/2022/05/GHSA-2p9p-xfg3-2fr3/GHSA-2p9p-xfg3-2fr3.json index 4d538b6a6ad..592a45a65e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p9p-xfg3-2fr3/GHSA-2p9p-xfg3-2fr3.json +++ b/advisories/unreviewed/2022/05/GHSA-2p9p-xfg3-2fr3/GHSA-2p9p-xfg3-2fr3.json @@ -7,12 +7,8 @@ "CVE-2010-0213" ], "details": "BIND 9.7.1 and 9.7.1-P1, when a recursive validating server has a trust anchor that is configured statically or via DNSSEC Lookaside Validation (DLV), allows remote attackers to cause a denial of service (infinite loop) via a query for an RRSIG record whose answer is not in the cache, which causes BIND to repeatedly send RRSIG queries to the authoritative servers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2pfw-x8hw-9289/GHSA-2pfw-x8hw-9289.json b/advisories/unreviewed/2022/05/GHSA-2pfw-x8hw-9289/GHSA-2pfw-x8hw-9289.json index bc593b6fd69..66e29873b34 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pfw-x8hw-9289/GHSA-2pfw-x8hw-9289.json +++ b/advisories/unreviewed/2022/05/GHSA-2pfw-x8hw-9289/GHSA-2pfw-x8hw-9289.json @@ -7,12 +7,8 @@ "CVE-2010-0186" ], "details": "Cross-domain vulnerability in Adobe Flash Player before 10.0.45.2, Adobe AIR before 1.5.3.9130, and Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows remote attackers to bypass intended sandbox restrictions and make cross-domain requests via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2q3w-j9mq-c9c9/GHSA-2q3w-j9mq-c9c9.json b/advisories/unreviewed/2022/05/GHSA-2q3w-j9mq-c9c9/GHSA-2q3w-j9mq-c9c9.json index fac85d74414..a25e0b4175e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q3w-j9mq-c9c9/GHSA-2q3w-j9mq-c9c9.json +++ b/advisories/unreviewed/2022/05/GHSA-2q3w-j9mq-c9c9/GHSA-2q3w-j9mq-c9c9.json @@ -7,12 +7,8 @@ "CVE-2010-0718" ], "details": "Buffer overflow in Microsoft Windows Media Player 9 and 11.0.5721.5145 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted .mpg file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2q84-j32v-48rc/GHSA-2q84-j32v-48rc.json b/advisories/unreviewed/2022/05/GHSA-2q84-j32v-48rc/GHSA-2q84-j32v-48rc.json index 5d8cd5632d0..b3db9f3e227 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q84-j32v-48rc/GHSA-2q84-j32v-48rc.json +++ b/advisories/unreviewed/2022/05/GHSA-2q84-j32v-48rc/GHSA-2q84-j32v-48rc.json @@ -7,12 +7,8 @@ "CVE-2010-0577" ], "details": "Cisco IOS 12.2 through 12.4, when certain PMTUD, SNAT, or window-size configurations are used, allows remote attackers to cause a denial of service (infinite loop, and device reload or hang) via a TCP segment with crafted options, aka Bug ID CSCsz75186.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qmf-3w3w-mfq6/GHSA-2qmf-3w3w-mfq6.json b/advisories/unreviewed/2022/05/GHSA-2qmf-3w3w-mfq6/GHSA-2qmf-3w3w-mfq6.json index 7e65d3fa5c0..a3c94002964 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qmf-3w3w-mfq6/GHSA-2qmf-3w3w-mfq6.json +++ b/advisories/unreviewed/2022/05/GHSA-2qmf-3w3w-mfq6/GHSA-2qmf-3w3w-mfq6.json @@ -7,12 +7,8 @@ "CVE-2010-0164" ], "details": "Use-after-free vulnerability in the imgContainer::InternalAddFrameHelper function in src/imgContainer.cpp in libpr0n in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a multipart/x-mixed-replace animation in which the frames have different bits-per-pixel (bpp) values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qpj-g893-v358/GHSA-2qpj-g893-v358.json b/advisories/unreviewed/2022/05/GHSA-2qpj-g893-v358/GHSA-2qpj-g893-v358.json index d1dae6fab79..a60f27c27d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qpj-g893-v358/GHSA-2qpj-g893-v358.json +++ b/advisories/unreviewed/2022/05/GHSA-2qpj-g893-v358/GHSA-2qpj-g893-v358.json @@ -7,12 +7,8 @@ "CVE-2010-0723" ], "details": "SQL injection vulnerability in news.php in Ero Auktion 2.0 and 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r44-w7m9-h3hc/GHSA-2r44-w7m9-h3hc.json b/advisories/unreviewed/2022/05/GHSA-2r44-w7m9-h3hc/GHSA-2r44-w7m9-h3hc.json index d61fbeac39f..4c31079b0ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r44-w7m9-h3hc/GHSA-2r44-w7m9-h3hc.json +++ b/advisories/unreviewed/2022/05/GHSA-2r44-w7m9-h3hc/GHSA-2r44-w7m9-h3hc.json @@ -7,12 +7,8 @@ "CVE-2010-0455" ], "details": "Cross-site scripting (XSS) vulnerability in forum/viewtopic.php in PunBB 1.3 allows remote attackers to inject arbitrary web script or HTML via the pid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r8h-ccmx-mmjc/GHSA-2r8h-ccmx-mmjc.json b/advisories/unreviewed/2022/05/GHSA-2r8h-ccmx-mmjc/GHSA-2r8h-ccmx-mmjc.json index 0f2c82385c2..c728d70ee95 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r8h-ccmx-mmjc/GHSA-2r8h-ccmx-mmjc.json +++ b/advisories/unreviewed/2022/05/GHSA-2r8h-ccmx-mmjc/GHSA-2r8h-ccmx-mmjc.json @@ -7,12 +7,8 @@ "CVE-2010-0076" ], "details": "Unspecified vulnerability in the Application Express Application Builder component in Oracle Database 3.2.1.00.10 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2rfx-cf2v-2f6c/GHSA-2rfx-cf2v-2f6c.json b/advisories/unreviewed/2022/05/GHSA-2rfx-cf2v-2f6c/GHSA-2rfx-cf2v-2f6c.json index 0f62b306ade..feacf089905 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rfx-cf2v-2f6c/GHSA-2rfx-cf2v-2f6c.json +++ b/advisories/unreviewed/2022/05/GHSA-2rfx-cf2v-2f6c/GHSA-2rfx-cf2v-2f6c.json @@ -7,12 +7,8 @@ "CVE-2010-0139" ], "details": "Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.2, and possibly 5 does not properly validate SQL commands, which allows remote attackers to create, modify, or delete data in a database via unspecified vectors, aka Bug ID CSCtc39691.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rgh-3c29-qm63/GHSA-2rgh-3c29-qm63.json b/advisories/unreviewed/2022/05/GHSA-2rgh-3c29-qm63/GHSA-2rgh-3c29-qm63.json index c110ffbe7d0..9b63d55bfec 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rgh-3c29-qm63/GHSA-2rgh-3c29-qm63.json +++ b/advisories/unreviewed/2022/05/GHSA-2rgh-3c29-qm63/GHSA-2rgh-3c29-qm63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2v65-hq48-rqrv/GHSA-2v65-hq48-rqrv.json b/advisories/unreviewed/2022/05/GHSA-2v65-hq48-rqrv/GHSA-2v65-hq48-rqrv.json index d1a536e60c7..74dd3c8ca02 100644 --- a/advisories/unreviewed/2022/05/GHSA-2v65-hq48-rqrv/GHSA-2v65-hq48-rqrv.json +++ b/advisories/unreviewed/2022/05/GHSA-2v65-hq48-rqrv/GHSA-2v65-hq48-rqrv.json @@ -7,12 +7,8 @@ "CVE-2010-0616" ], "details": "evalSMSI 2.1.03 stores passwords in cleartext in the database, which allows attackers with database access to gain privileges. NOTE: remote attack vectors are possible by leveraging a separate SQL injection vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vgw-2m97-5c4f/GHSA-2vgw-2m97-5c4f.json b/advisories/unreviewed/2022/05/GHSA-2vgw-2m97-5c4f/GHSA-2vgw-2m97-5c4f.json index d1e039fa801..54202592294 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vgw-2m97-5c4f/GHSA-2vgw-2m97-5c4f.json +++ b/advisories/unreviewed/2022/05/GHSA-2vgw-2m97-5c4f/GHSA-2vgw-2m97-5c4f.json @@ -7,12 +7,8 @@ "CVE-2010-0790" ], "details": "sutil/ncpumount.c in ncpumount in ncpfs 2.2.6 produces certain detailed error messages about the results of privileged file-access attempts, which allows local users to determine the existence of arbitrary files via the mountpoint name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2w2c-jqh6-rwvr/GHSA-2w2c-jqh6-rwvr.json b/advisories/unreviewed/2022/05/GHSA-2w2c-jqh6-rwvr/GHSA-2w2c-jqh6-rwvr.json index d1b285e00d8..1497fb585b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w2c-jqh6-rwvr/GHSA-2w2c-jqh6-rwvr.json +++ b/advisories/unreviewed/2022/05/GHSA-2w2c-jqh6-rwvr/GHSA-2w2c-jqh6-rwvr.json @@ -7,12 +7,8 @@ "CVE-2010-0685" ], "details": "The design of the dialplan functionality in Asterisk Open Source 1.2.x, 1.4.x, and 1.6.x; and Asterisk Business Edition B.x.x and C.x.x, when using the ${EXTEN} channel variable and wildcard pattern matches, allows context-dependent attackers to inject strings into the dialplan using metacharacters that are injected when the variable is expanded, as demonstrated using the Dial application to process a crafted SIP INVITE message that adds an unintended outgoing channel leg. NOTE: it could be argued that this is not a vulnerability in Asterisk, but a class of vulnerabilities that can occur in any program that uses this feature without the associated filtering functionality that is already available.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2w7g-w6qh-q8wj/GHSA-2w7g-w6qh-q8wj.json b/advisories/unreviewed/2022/05/GHSA-2w7g-w6qh-q8wj/GHSA-2w7g-w6qh-q8wj.json index 7405216f542..c1e7333a205 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w7g-w6qh-q8wj/GHSA-2w7g-w6qh-q8wj.json +++ b/advisories/unreviewed/2022/05/GHSA-2w7g-w6qh-q8wj/GHSA-2w7g-w6qh-q8wj.json @@ -7,12 +7,8 @@ "CVE-2010-0292" ], "details": "The read_from_cmd_socket function in cmdmon.c in chronyd in Chrony before 1.23.1, and 1.24-pre1, allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by sending a spoofed cmdmon packet that triggers a continuous exchange of NOHOSTACCESS messages between two daemons, a related issue to CVE-2009-3563.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wcq-5m3f-4rfw/GHSA-2wcq-5m3f-4rfw.json b/advisories/unreviewed/2022/05/GHSA-2wcq-5m3f-4rfw/GHSA-2wcq-5m3f-4rfw.json index fe3861aff3e..7a945a0fa8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wcq-5m3f-4rfw/GHSA-2wcq-5m3f-4rfw.json +++ b/advisories/unreviewed/2022/05/GHSA-2wcq-5m3f-4rfw/GHSA-2wcq-5m3f-4rfw.json @@ -7,12 +7,8 @@ "CVE-2010-0341" ], "details": "SQL injection vulnerability in the BB Simple Jobs (bb_simplejobs) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wgx-r6j7-j62r/GHSA-2wgx-r6j7-j62r.json b/advisories/unreviewed/2022/05/GHSA-2wgx-r6j7-j62r/GHSA-2wgx-r6j7-j62r.json index 7588d229b27..d611f15ff93 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wgx-r6j7-j62r/GHSA-2wgx-r6j7-j62r.json +++ b/advisories/unreviewed/2022/05/GHSA-2wgx-r6j7-j62r/GHSA-2wgx-r6j7-j62r.json @@ -7,12 +7,8 @@ "CVE-2010-0481" ], "details": "The kernel in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly translate a registry key's virtual path to its real path, which allows local users to cause a denial of service (reboot) via a crafted application, aka \"Windows Virtual Path Parsing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2xwc-ff9j-7r5h/GHSA-2xwc-ff9j-7r5h.json b/advisories/unreviewed/2022/05/GHSA-2xwc-ff9j-7r5h/GHSA-2xwc-ff9j-7r5h.json index c3a6c33b54f..a7c6c1334aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xwc-ff9j-7r5h/GHSA-2xwc-ff9j-7r5h.json +++ b/advisories/unreviewed/2022/05/GHSA-2xwc-ff9j-7r5h/GHSA-2xwc-ff9j-7r5h.json @@ -7,12 +7,8 @@ "CVE-2009-5141" ], "details": "Format string vulnerability in War FTP Daemon (warftpd) 1.82 RC 12 allows remote authenticated users to cause a denial of service (crash) via format string specifiers in a LIST command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32pg-5795-jh5m/GHSA-32pg-5795-jh5m.json b/advisories/unreviewed/2022/05/GHSA-32pg-5795-jh5m/GHSA-32pg-5795-jh5m.json index 901b0c20070..3f6eca18fcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-32pg-5795-jh5m/GHSA-32pg-5795-jh5m.json +++ b/advisories/unreviewed/2022/05/GHSA-32pg-5795-jh5m/GHSA-32pg-5795-jh5m.json @@ -7,12 +7,8 @@ "CVE-2010-0532" ], "details": "Race condition in the installation package in Apple iTunes before 9.1 on Windows allows local users to gain privileges by replacing an unspecified file with a Trojan horse.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32wp-p7j2-grh2/GHSA-32wp-p7j2-grh2.json b/advisories/unreviewed/2022/05/GHSA-32wp-p7j2-grh2/GHSA-32wp-p7j2-grh2.json index 920f07b6813..450d619df79 100644 --- a/advisories/unreviewed/2022/05/GHSA-32wp-p7j2-grh2/GHSA-32wp-p7j2-grh2.json +++ b/advisories/unreviewed/2022/05/GHSA-32wp-p7j2-grh2/GHSA-32wp-p7j2-grh2.json @@ -7,12 +7,8 @@ "CVE-2010-0305" ], "details": "ejabberd_c2s.erl in ejabberd before 2.1.3 allows remote attackers to cause a denial of service (daemon crash) via a large number of c2s (aka client2server) messages that trigger a queue overload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-34rw-q4gp-cwxm/GHSA-34rw-q4gp-cwxm.json b/advisories/unreviewed/2022/05/GHSA-34rw-q4gp-cwxm/GHSA-34rw-q4gp-cwxm.json index 4845ff5e9aa..6edfa7a2f75 100644 --- a/advisories/unreviewed/2022/05/GHSA-34rw-q4gp-cwxm/GHSA-34rw-q4gp-cwxm.json +++ b/advisories/unreviewed/2022/05/GHSA-34rw-q4gp-cwxm/GHSA-34rw-q4gp-cwxm.json @@ -7,12 +7,8 @@ "CVE-2010-0172" ], "details": "toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3524-9jx8-82v5/GHSA-3524-9jx8-82v5.json b/advisories/unreviewed/2022/05/GHSA-3524-9jx8-82v5/GHSA-3524-9jx8-82v5.json index eda72ec37e8..6912036f013 100644 --- a/advisories/unreviewed/2022/05/GHSA-3524-9jx8-82v5/GHSA-3524-9jx8-82v5.json +++ b/advisories/unreviewed/2022/05/GHSA-3524-9jx8-82v5/GHSA-3524-9jx8-82v5.json @@ -7,12 +7,8 @@ "CVE-2010-0079" ], "details": "Multiple vulnerabilities in the JRockit component in BEA Product Suite R27.6.5 using JRE/JDK 1.4.2, 5, and 6 allow remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this CVE identifier overlaps CVE-2009-3867, CVE-2009-3868, CVE-2009-3869, CVE-2009-3871, CVE-2009-3872, CVE-2009-3873, CVE-2009-3874, CVE-2009-3875, CVE-2009-3876, and CVE-2009-3877.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-35p6-jmhj-fg2v/GHSA-35p6-jmhj-fg2v.json b/advisories/unreviewed/2022/05/GHSA-35p6-jmhj-fg2v/GHSA-35p6-jmhj-fg2v.json index 0209a5b946f..ceb6da521ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-35p6-jmhj-fg2v/GHSA-35p6-jmhj-fg2v.json +++ b/advisories/unreviewed/2022/05/GHSA-35p6-jmhj-fg2v/GHSA-35p6-jmhj-fg2v.json @@ -7,12 +7,8 @@ "CVE-2010-0220" ], "details": "The nsObserverList::FillObserverArray function in xpcom/ds/nsObserverList.cpp in Mozilla Firefox before 3.5.7 allows remote attackers to cause a denial of service (application crash) via a crafted web site that triggers memory consumption and an accompanying Low Memory alert dialog, and also triggers attempted removal of an observer from an empty observers array.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-35wj-849x-phrf/GHSA-35wj-849x-phrf.json b/advisories/unreviewed/2022/05/GHSA-35wj-849x-phrf/GHSA-35wj-849x-phrf.json index 9a7b4d00468..11fd4cd5c5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-35wj-849x-phrf/GHSA-35wj-849x-phrf.json +++ b/advisories/unreviewed/2022/05/GHSA-35wj-849x-phrf/GHSA-35wj-849x-phrf.json @@ -7,12 +7,8 @@ "CVE-2010-0527" ], "details": "Integer overflow in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-362c-mvq7-4vmp/GHSA-362c-mvq7-4vmp.json b/advisories/unreviewed/2022/05/GHSA-362c-mvq7-4vmp/GHSA-362c-mvq7-4vmp.json index c395f827d46..1825798d45e 100644 --- a/advisories/unreviewed/2022/05/GHSA-362c-mvq7-4vmp/GHSA-362c-mvq7-4vmp.json +++ b/advisories/unreviewed/2022/05/GHSA-362c-mvq7-4vmp/GHSA-362c-mvq7-4vmp.json @@ -7,12 +7,8 @@ "CVE-2010-0535" ], "details": "Dovecot in Apple Mac OS X 10.6 before 10.6.3, when Kerberos is enabled, does not properly enforce the service access control list (SACL) for sending and receiving e-mail, which allows remote authenticated users to bypass intended access restrictions via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3657-w454-hxhx/GHSA-3657-w454-hxhx.json b/advisories/unreviewed/2022/05/GHSA-3657-w454-hxhx/GHSA-3657-w454-hxhx.json index 4a8433e39a2..e3573e04cc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3657-w454-hxhx/GHSA-3657-w454-hxhx.json +++ b/advisories/unreviewed/2022/05/GHSA-3657-w454-hxhx/GHSA-3657-w454-hxhx.json @@ -7,12 +7,8 @@ "CVE-2010-0475" ], "details": "Cross-site scripting (XSS) vulnerability in esp/editUser.esp in the Palo Alto Networks firewall 3.0.x before 3.0.9 and 3.1.x before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the role parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3679-c5fh-7q7w/GHSA-3679-c5fh-7q7w.json b/advisories/unreviewed/2022/05/GHSA-3679-c5fh-7q7w/GHSA-3679-c5fh-7q7w.json index a0354d6334d..43bcf82e93c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3679-c5fh-7q7w/GHSA-3679-c5fh-7q7w.json +++ b/advisories/unreviewed/2022/05/GHSA-3679-c5fh-7q7w/GHSA-3679-c5fh-7q7w.json @@ -7,12 +7,8 @@ "CVE-2010-0838" ], "details": "Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a stack-based buffer overflow using an untrusted size value in the readMabCurveData function in the CMM module in the JVM.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -168,9 +164,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36qc-mhwr-pgr8/GHSA-36qc-mhwr-pgr8.json b/advisories/unreviewed/2022/05/GHSA-36qc-mhwr-pgr8/GHSA-36qc-mhwr-pgr8.json index cebe8b55390..6785553f3ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-36qc-mhwr-pgr8/GHSA-36qc-mhwr-pgr8.json +++ b/advisories/unreviewed/2022/05/GHSA-36qc-mhwr-pgr8/GHSA-36qc-mhwr-pgr8.json @@ -7,12 +7,8 @@ "CVE-2010-0855" ], "details": "Unspecified vulnerability in the Portal component in Oracle Fusion Middleware 10.1.2.3 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2010-0086.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36vx-prg4-m6g2/GHSA-36vx-prg4-m6g2.json b/advisories/unreviewed/2022/05/GHSA-36vx-prg4-m6g2/GHSA-36vx-prg4-m6g2.json index 320f453cbe2..282b696c398 100644 --- a/advisories/unreviewed/2022/05/GHSA-36vx-prg4-m6g2/GHSA-36vx-prg4-m6g2.json +++ b/advisories/unreviewed/2022/05/GHSA-36vx-prg4-m6g2/GHSA-36vx-prg4-m6g2.json @@ -7,12 +7,8 @@ "CVE-2010-0356" ], "details": "Stack-based buffer overflow in the MOVIEPLAYER.MoviePlayerCtrl.1 ActiveX control in MoviePlayer.ocx 6.8.0.0 in Viscom Software Movie Player Pro SDK ActiveX 6.8 allows remote attackers to execute arbitrary code via a long strFontName parameter to the DrawText method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3747-557g-7h35/GHSA-3747-557g-7h35.json b/advisories/unreviewed/2022/05/GHSA-3747-557g-7h35/GHSA-3747-557g-7h35.json index da5fbb1257c..8b6e1c438db 100644 --- a/advisories/unreviewed/2022/05/GHSA-3747-557g-7h35/GHSA-3747-557g-7h35.json +++ b/advisories/unreviewed/2022/05/GHSA-3747-557g-7h35/GHSA-3747-557g-7h35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3769-594w-8mvc/GHSA-3769-594w-8mvc.json b/advisories/unreviewed/2022/05/GHSA-3769-594w-8mvc/GHSA-3769-594w-8mvc.json index 5bfd2db9476..108c6ef8eb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3769-594w-8mvc/GHSA-3769-594w-8mvc.json +++ b/advisories/unreviewed/2022/05/GHSA-3769-594w-8mvc/GHSA-3769-594w-8mvc.json @@ -7,12 +7,8 @@ "CVE-2010-0452" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in HP Project and Portfolio Management Center (PPMC, formerly Mercury IT Governance) 7.1 through SP10 and 7.5 through SP3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38pv-hgp9-59rp/GHSA-38pv-hgp9-59rp.json b/advisories/unreviewed/2022/05/GHSA-38pv-hgp9-59rp/GHSA-38pv-hgp9-59rp.json index 19e5614c7e0..5a680783ea5 100644 --- a/advisories/unreviewed/2022/05/GHSA-38pv-hgp9-59rp/GHSA-38pv-hgp9-59rp.json +++ b/advisories/unreviewed/2022/05/GHSA-38pv-hgp9-59rp/GHSA-38pv-hgp9-59rp.json @@ -7,12 +7,8 @@ "CVE-2010-0652" ], "details": "Microsoft Internet Explorer permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote HTTP servers to obtain sensitive information via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-398r-4xmm-8gch/GHSA-398r-4xmm-8gch.json b/advisories/unreviewed/2022/05/GHSA-398r-4xmm-8gch/GHSA-398r-4xmm-8gch.json index 66bce5675a5..8e41b0ac293 100644 --- a/advisories/unreviewed/2022/05/GHSA-398r-4xmm-8gch/GHSA-398r-4xmm-8gch.json +++ b/advisories/unreviewed/2022/05/GHSA-398r-4xmm-8gch/GHSA-398r-4xmm-8gch.json @@ -7,12 +7,8 @@ "CVE-2010-0686" ], "details": "WebAccess in VMware VirtualCenter 2.0.2 and 2.5, VMware Server 2.0, and VMware ESX 3.0.3 and 3.5 allows remote attackers to leverage proxy-server functionality to spoof the origin of requests via unspecified vectors, related to a \"URL forwarding vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-39jx-6759-44c6/GHSA-39jx-6759-44c6.json b/advisories/unreviewed/2022/05/GHSA-39jx-6759-44c6/GHSA-39jx-6759-44c6.json index 229d2dccbb4..e650f91b072 100644 --- a/advisories/unreviewed/2022/05/GHSA-39jx-6759-44c6/GHSA-39jx-6759-44c6.json +++ b/advisories/unreviewed/2022/05/GHSA-39jx-6759-44c6/GHSA-39jx-6759-44c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-39vp-wwfv-g5fj/GHSA-39vp-wwfv-g5fj.json b/advisories/unreviewed/2022/05/GHSA-39vp-wwfv-g5fj/GHSA-39vp-wwfv-g5fj.json index 8cd623f0b32..d4b3e13b579 100644 --- a/advisories/unreviewed/2022/05/GHSA-39vp-wwfv-g5fj/GHSA-39vp-wwfv-g5fj.json +++ b/advisories/unreviewed/2022/05/GHSA-39vp-wwfv-g5fj/GHSA-39vp-wwfv-g5fj.json @@ -7,12 +7,8 @@ "CVE-2010-0726" ], "details": "Cross-site scripting (XSS) vulnerability in the tb-send.rb (TrackBack transmission) plugin in tDiary 2.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly related to the (1) plugin_tb_url and (2) plugin_tb_excerpt parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cff-26h6-w48r/GHSA-3cff-26h6-w48r.json b/advisories/unreviewed/2022/05/GHSA-3cff-26h6-w48r/GHSA-3cff-26h6-w48r.json index 282a5e893a2..a8d96c87422 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cff-26h6-w48r/GHSA-3cff-26h6-w48r.json +++ b/advisories/unreviewed/2022/05/GHSA-3cff-26h6-w48r/GHSA-3cff-26h6-w48r.json @@ -7,12 +7,8 @@ "CVE-2010-0805" ], "details": "The Tabular Data Control (TDC) ActiveX control in Microsoft Internet Explorer 5.01 SP4, 6 on Windows XP SP2 and SP3, and 6 SP1 allows remote attackers to execute arbitrary code via a long URL (DataURL parameter) that triggers memory corruption in the CTDCCtl::SecurityCHeckDataURL function, aka \"Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gc4-7jhv-jgfc/GHSA-3gc4-7jhv-jgfc.json b/advisories/unreviewed/2022/05/GHSA-3gc4-7jhv-jgfc/GHSA-3gc4-7jhv-jgfc.json index c6ea80bd003..4cd30ec7a84 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gc4-7jhv-jgfc/GHSA-3gc4-7jhv-jgfc.json +++ b/advisories/unreviewed/2022/05/GHSA-3gc4-7jhv-jgfc/GHSA-3gc4-7jhv-jgfc.json @@ -7,12 +7,8 @@ "CVE-2010-0444" ], "details": "HP Operations Agent 8.51, 8.52, 8.53, and 8.60 on Solaris 10 uses a blank password for the opc_op account, which allows remote attackers to execute arbitrary code via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3ggh-v6pr-hc9h/GHSA-3ggh-v6pr-hc9h.json b/advisories/unreviewed/2022/05/GHSA-3ggh-v6pr-hc9h/GHSA-3ggh-v6pr-hc9h.json index 82c5592c0c3..2a0107fc4c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-3ggh-v6pr-hc9h/GHSA-3ggh-v6pr-hc9h.json +++ b/advisories/unreviewed/2022/05/GHSA-3ggh-v6pr-hc9h/GHSA-3ggh-v6pr-hc9h.json @@ -7,12 +7,8 @@ "CVE-2009-5111" ], "details": "GoAhead WebServer allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hxx-7wff-xwh8/GHSA-3hxx-7wff-xwh8.json b/advisories/unreviewed/2022/05/GHSA-3hxx-7wff-xwh8/GHSA-3hxx-7wff-xwh8.json index 923c1b257a3..b4bf2ddc73a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hxx-7wff-xwh8/GHSA-3hxx-7wff-xwh8.json +++ b/advisories/unreviewed/2022/05/GHSA-3hxx-7wff-xwh8/GHSA-3hxx-7wff-xwh8.json @@ -7,12 +7,8 @@ "CVE-2010-0650" ], "details": "WebKit, as used in Google Chrome before 4.0.249.78 and Apple Safari, allows remote attackers to bypass intended restrictions on popup windows via crafted use of a mouse click event.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3jg2-8xp4-m2fx/GHSA-3jg2-8xp4-m2fx.json b/advisories/unreviewed/2022/05/GHSA-3jg2-8xp4-m2fx/GHSA-3jg2-8xp4-m2fx.json index 63a83c3ff36..8a9eb85292c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jg2-8xp4-m2fx/GHSA-3jg2-8xp4-m2fx.json +++ b/advisories/unreviewed/2022/05/GHSA-3jg2-8xp4-m2fx/GHSA-3jg2-8xp4-m2fx.json @@ -7,12 +7,8 @@ "CVE-2010-0711" ], "details": "Cross-site request forgery (CSRF) vulnerability in default.asp in ASPCode CMS 1.5.8, 2.0.0 Build 103, and possibly other versions, allows remote attackers to hijack the authentication of an administrator for requests that (1) delete users via the delete action in the ma2 parameter or (2) create administrators via the update action in the ma2 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3jpx-33f8-9xxc/GHSA-3jpx-33f8-9xxc.json b/advisories/unreviewed/2022/05/GHSA-3jpx-33f8-9xxc/GHSA-3jpx-33f8-9xxc.json index a8b24e64df0..81448b8a8b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jpx-33f8-9xxc/GHSA-3jpx-33f8-9xxc.json +++ b/advisories/unreviewed/2022/05/GHSA-3jpx-33f8-9xxc/GHSA-3jpx-33f8-9xxc.json @@ -7,12 +7,8 @@ "CVE-2010-0335" ], "details": "Cross-site scripting (XSS) vulnerability in the Vote rank for news (vote_for_tt_news) extension 1.0.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3m5q-4mj3-9362/GHSA-3m5q-4mj3-9362.json b/advisories/unreviewed/2022/05/GHSA-3m5q-4mj3-9362/GHSA-3m5q-4mj3-9362.json index 759c7f00ab4..004c1ab7429 100644 --- a/advisories/unreviewed/2022/05/GHSA-3m5q-4mj3-9362/GHSA-3m5q-4mj3-9362.json +++ b/advisories/unreviewed/2022/05/GHSA-3m5q-4mj3-9362/GHSA-3m5q-4mj3-9362.json @@ -7,12 +7,8 @@ "CVE-2010-0832" ], "details": "pam_motd (aka the MOTD module) in libpam-modules before 1.1.0-2ubuntu1.1 in PAM on Ubuntu 9.10 and libpam-modules before 1.1.1-2ubuntu5 in PAM on Ubuntu 10.04 LTS allows local users to change the ownership of arbitrary files via a symlink attack on .cache in a user's home directory, related to \"user file stamps\" and the motd.legal-notice file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mf4-grcw-4c92/GHSA-3mf4-grcw-4c92.json b/advisories/unreviewed/2022/05/GHSA-3mf4-grcw-4c92/GHSA-3mf4-grcw-4c92.json index 7228fdf6032..672ca97ced4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mf4-grcw-4c92/GHSA-3mf4-grcw-4c92.json +++ b/advisories/unreviewed/2022/05/GHSA-3mf4-grcw-4c92/GHSA-3mf4-grcw-4c92.json @@ -7,12 +7,8 @@ "CVE-2010-0689" ], "details": "The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allows remote attackers to execute arbitrary commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mjc-9976-q699/GHSA-3mjc-9976-q699.json b/advisories/unreviewed/2022/05/GHSA-3mjc-9976-q699/GHSA-3mjc-9976-q699.json index 19e0b21b012..26d82e1b145 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mjc-9976-q699/GHSA-3mjc-9976-q699.json +++ b/advisories/unreviewed/2022/05/GHSA-3mjc-9976-q699/GHSA-3mjc-9976-q699.json @@ -7,12 +7,8 @@ "CVE-2010-0155" ], "details": "CRLF injection vulnerability in load.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the javaVersion parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mpq-x397-f3cg/GHSA-3mpq-x397-f3cg.json b/advisories/unreviewed/2022/05/GHSA-3mpq-x397-f3cg/GHSA-3mpq-x397-f3cg.json index ae91c3f6066..02273f3dbc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mpq-x397-f3cg/GHSA-3mpq-x397-f3cg.json +++ b/advisories/unreviewed/2022/05/GHSA-3mpq-x397-f3cg/GHSA-3mpq-x397-f3cg.json @@ -7,12 +7,8 @@ "CVE-2010-0496" ], "details": "FreeBit ServersMan 3.1.5 on Apple iPhone OS 3.1.2, and iPhone OS for iPod touch, allows remote attackers to cause a denial of service (daemon crash) via a HEAD request for the / URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3pq5-xxv9-fj58/GHSA-3pq5-xxv9-fj58.json b/advisories/unreviewed/2022/05/GHSA-3pq5-xxv9-fj58/GHSA-3pq5-xxv9-fj58.json index 9bbe0afbe51..815607dd043 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pq5-xxv9-fj58/GHSA-3pq5-xxv9-fj58.json +++ b/advisories/unreviewed/2022/05/GHSA-3pq5-xxv9-fj58/GHSA-3pq5-xxv9-fj58.json @@ -7,12 +7,8 @@ "CVE-2010-0552" ], "details": "Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via multiple requests for a non-existent file using a long URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3q5x-3fpw-pfv9/GHSA-3q5x-3fpw-pfv9.json b/advisories/unreviewed/2022/05/GHSA-3q5x-3fpw-pfv9/GHSA-3q5x-3fpw-pfv9.json index c1994783a55..055510b4924 100644 --- a/advisories/unreviewed/2022/05/GHSA-3q5x-3fpw-pfv9/GHSA-3q5x-3fpw-pfv9.json +++ b/advisories/unreviewed/2022/05/GHSA-3q5x-3fpw-pfv9/GHSA-3q5x-3fpw-pfv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3q94-6qx8-j4xw/GHSA-3q94-6qx8-j4xw.json b/advisories/unreviewed/2022/05/GHSA-3q94-6qx8-j4xw/GHSA-3q94-6qx8-j4xw.json index d4713845c88..3d59d45bf0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3q94-6qx8-j4xw/GHSA-3q94-6qx8-j4xw.json +++ b/advisories/unreviewed/2022/05/GHSA-3q94-6qx8-j4xw/GHSA-3q94-6qx8-j4xw.json @@ -7,12 +7,8 @@ "CVE-2010-0199" ], "details": "Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0202, and CVE-2010-0203.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qjc-52vw-gmrg/GHSA-3qjc-52vw-gmrg.json b/advisories/unreviewed/2022/05/GHSA-3qjc-52vw-gmrg/GHSA-3qjc-52vw-gmrg.json index 89612ea4f28..96f963255b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qjc-52vw-gmrg/GHSA-3qjc-52vw-gmrg.json +++ b/advisories/unreviewed/2022/05/GHSA-3qjc-52vw-gmrg/GHSA-3qjc-52vw-gmrg.json @@ -7,12 +7,8 @@ "CVE-2010-0059" ], "details": "CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDM2 encoding, which triggers a buffer overflow due to inconsistent length fields, related to QDCA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qjg-973r-4w6w/GHSA-3qjg-973r-4w6w.json b/advisories/unreviewed/2022/05/GHSA-3qjg-973r-4w6w/GHSA-3qjg-973r-4w6w.json index 70a98befbcd..7d926a34d87 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qjg-973r-4w6w/GHSA-3qjg-973r-4w6w.json +++ b/advisories/unreviewed/2022/05/GHSA-3qjg-973r-4w6w/GHSA-3qjg-973r-4w6w.json @@ -7,12 +7,8 @@ "CVE-2010-0244" ], "details": "Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka \"Uninitialized Memory Corruption Vulnerability,\" a different vulnerability than CVE-2009-2530 and CVE-2009-2531.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3r5p-998x-5m4f/GHSA-3r5p-998x-5m4f.json b/advisories/unreviewed/2022/05/GHSA-3r5p-998x-5m4f/GHSA-3r5p-998x-5m4f.json index b011c6e58f9..38ec6c4d70f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3r5p-998x-5m4f/GHSA-3r5p-998x-5m4f.json +++ b/advisories/unreviewed/2022/05/GHSA-3r5p-998x-5m4f/GHSA-3r5p-998x-5m4f.json @@ -7,12 +7,8 @@ "CVE-2010-0252" ], "details": "The Microsoft Data Analyzer ActiveX control (aka the Office Excel ActiveX control for Data Analysis) in max3activex.dll in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote attackers to execute arbitrary code via a crafted web page that corrupts the \"system state,\" aka \"Microsoft Data Analyzer ActiveX Control Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3vvg-7h3p-gmv3/GHSA-3vvg-7h3p-gmv3.json b/advisories/unreviewed/2022/05/GHSA-3vvg-7h3p-gmv3/GHSA-3vvg-7h3p-gmv3.json index d981b0c41c9..1a17bebc5c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vvg-7h3p-gmv3/GHSA-3vvg-7h3p-gmv3.json +++ b/advisories/unreviewed/2022/05/GHSA-3vvg-7h3p-gmv3/GHSA-3vvg-7h3p-gmv3.json @@ -7,12 +7,8 @@ "CVE-2010-0293" ], "details": "The client logging functionality in chronyd in Chrony before 1.23.1 does not restrict the amount of memory used for storage of client information, which allows remote attackers to cause a denial of service (memory consumption) via spoofed (1) NTP or (2) cmdmon packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3w7r-ghxm-95w6/GHSA-3w7r-ghxm-95w6.json b/advisories/unreviewed/2022/05/GHSA-3w7r-ghxm-95w6/GHSA-3w7r-ghxm-95w6.json index 12c6a6e710b..f8f8cea3b85 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w7r-ghxm-95w6/GHSA-3w7r-ghxm-95w6.json +++ b/advisories/unreviewed/2022/05/GHSA-3w7r-ghxm-95w6/GHSA-3w7r-ghxm-95w6.json @@ -7,12 +7,8 @@ "CVE-2010-0256" ], "details": "Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 and SP2 does not properly calculate unspecified indexes associated with Visio files, which allows remote attackers to execute arbitrary code via a crafted file, aka \"Visio Index Calculation Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x3p-75r6-3954/GHSA-3x3p-75r6-3954.json b/advisories/unreviewed/2022/05/GHSA-3x3p-75r6-3954/GHSA-3x3p-75r6-3954.json index 834e9a846e7..2dff140e4cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x3p-75r6-3954/GHSA-3x3p-75r6-3954.json +++ b/advisories/unreviewed/2022/05/GHSA-3x3p-75r6-3954/GHSA-3x3p-75r6-3954.json @@ -7,12 +7,8 @@ "CVE-2010-0664" ], "details": "Stack consumption vulnerability in the ChildProcessSecurityPolicy::CanRequestURL function in browser/child_process_security_policy.cc in Google Chrome before 4.0.249.78 allows remote attackers to cause a denial of service (memory consumption and application crash) via a URL that specifies multiple protocols, as demonstrated by a URL that begins with many repetitions of the view-source: substring.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3x8g-wg8m-8443/GHSA-3x8g-wg8m-8443.json b/advisories/unreviewed/2022/05/GHSA-3x8g-wg8m-8443/GHSA-3x8g-wg8m-8443.json index 4d1f5e99c37..b0df1e12532 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x8g-wg8m-8443/GHSA-3x8g-wg8m-8443.json +++ b/advisories/unreviewed/2022/05/GHSA-3x8g-wg8m-8443/GHSA-3x8g-wg8m-8443.json @@ -7,12 +7,8 @@ "CVE-2010-0594" ], "details": "Cross-site scripting (XSS) vulnerability in Cisco Router and Security Device Manager (SDM) allows remote attackers to inject arbitrary web script or HTML via unknown vectors, aka Bug ID CSCtb38467.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xj7-5rr9-482h/GHSA-3xj7-5rr9-482h.json b/advisories/unreviewed/2022/05/GHSA-3xj7-5rr9-482h/GHSA-3xj7-5rr9-482h.json index dc2bfb1caf4..3a5b027df25 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xj7-5rr9-482h/GHSA-3xj7-5rr9-482h.json +++ b/advisories/unreviewed/2022/05/GHSA-3xj7-5rr9-482h/GHSA-3xj7-5rr9-482h.json @@ -7,12 +7,8 @@ "CVE-2010-0135" ], "details": "Heap-based buffer overflow in the WordPerfect 5.x reader (wosr.dll), as used in Autonomy KeyView 10.4 and 10.9 and possibly other products, allows remote attackers to execute arbitrary code via unspecified vectors related to \"data blocks.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xwc-546j-255h/GHSA-3xwc-546j-255h.json b/advisories/unreviewed/2022/05/GHSA-3xwc-546j-255h/GHSA-3xwc-546j-255h.json index 0fa72b040b8..a97cab36cd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xwc-546j-255h/GHSA-3xwc-546j-255h.json +++ b/advisories/unreviewed/2022/05/GHSA-3xwc-546j-255h/GHSA-3xwc-546j-255h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-426g-wxf4-8rhw/GHSA-426g-wxf4-8rhw.json b/advisories/unreviewed/2022/05/GHSA-426g-wxf4-8rhw/GHSA-426g-wxf4-8rhw.json index aabe9a42db3..1694549bb5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-426g-wxf4-8rhw/GHSA-426g-wxf4-8rhw.json +++ b/advisories/unreviewed/2022/05/GHSA-426g-wxf4-8rhw/GHSA-426g-wxf4-8rhw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42c3-r2c7-ghj3/GHSA-42c3-r2c7-ghj3.json b/advisories/unreviewed/2022/05/GHSA-42c3-r2c7-ghj3/GHSA-42c3-r2c7-ghj3.json index fc61bb6bd04..8a936054e61 100644 --- a/advisories/unreviewed/2022/05/GHSA-42c3-r2c7-ghj3/GHSA-42c3-r2c7-ghj3.json +++ b/advisories/unreviewed/2022/05/GHSA-42c3-r2c7-ghj3/GHSA-42c3-r2c7-ghj3.json @@ -7,12 +7,8 @@ "CVE-2010-0665" ], "details": "JAG (Just Another Guestbook) 1.14 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request for jag/database.sql.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42cg-5gpq-7hrm/GHSA-42cg-5gpq-7hrm.json b/advisories/unreviewed/2022/05/GHSA-42cg-5gpq-7hrm/GHSA-42cg-5gpq-7hrm.json index 003e6e75a24..63fe0e046bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-42cg-5gpq-7hrm/GHSA-42cg-5gpq-7hrm.json +++ b/advisories/unreviewed/2022/05/GHSA-42cg-5gpq-7hrm/GHSA-42cg-5gpq-7hrm.json @@ -7,12 +7,8 @@ "CVE-2010-0173" ], "details": "Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -108,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42jr-443g-g58q/GHSA-42jr-443g-g58q.json b/advisories/unreviewed/2022/05/GHSA-42jr-443g-g58q/GHSA-42jr-443g-g58q.json index 2bd246c8533..55bc4987431 100644 --- a/advisories/unreviewed/2022/05/GHSA-42jr-443g-g58q/GHSA-42jr-443g-g58q.json +++ b/advisories/unreviewed/2022/05/GHSA-42jr-443g-g58q/GHSA-42jr-443g-g58q.json @@ -7,12 +7,8 @@ "CVE-2010-0015" ], "details": "nis/nss_nis/nis-pwd.c in the GNU C Library (aka glibc or libc6) 2.7 and Embedded GLIBC (EGLIBC) 2.10.2 adds information from the passwd.adjunct.byname map to entries in the passwd map, which allows remote attackers to obtain the encrypted passwords of NIS accounts by calling the getpwnam function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42m2-ww59-87vv/GHSA-42m2-ww59-87vv.json b/advisories/unreviewed/2022/05/GHSA-42m2-ww59-87vv/GHSA-42m2-ww59-87vv.json index 8398197e19b..40078d84ddb 100644 --- a/advisories/unreviewed/2022/05/GHSA-42m2-ww59-87vv/GHSA-42m2-ww59-87vv.json +++ b/advisories/unreviewed/2022/05/GHSA-42m2-ww59-87vv/GHSA-42m2-ww59-87vv.json @@ -7,12 +7,8 @@ "CVE-2010-0124" ], "details": "Employee Timeclock Software 0.99 places the database password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42r3-wgqh-9v9h/GHSA-42r3-wgqh-9v9h.json b/advisories/unreviewed/2022/05/GHSA-42r3-wgqh-9v9h/GHSA-42r3-wgqh-9v9h.json index be61e68c580..fc23cd1ade4 100644 --- a/advisories/unreviewed/2022/05/GHSA-42r3-wgqh-9v9h/GHSA-42r3-wgqh-9v9h.json +++ b/advisories/unreviewed/2022/05/GHSA-42r3-wgqh-9v9h/GHSA-42r3-wgqh-9v9h.json @@ -7,12 +7,8 @@ "CVE-2010-0300" ], "details": "cache.c in ircd-ratbox before 2.2.9 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a HELP command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-43pq-r97m-pgc4/GHSA-43pq-r97m-pgc4.json b/advisories/unreviewed/2022/05/GHSA-43pq-r97m-pgc4/GHSA-43pq-r97m-pgc4.json index f41a2c02146..35fa9d57b30 100644 --- a/advisories/unreviewed/2022/05/GHSA-43pq-r97m-pgc4/GHSA-43pq-r97m-pgc4.json +++ b/advisories/unreviewed/2022/05/GHSA-43pq-r97m-pgc4/GHSA-43pq-r97m-pgc4.json @@ -7,12 +7,8 @@ "CVE-2010-0387" ], "details": "Multiple heap-based buffer overflows in (1) webservd and (2) the admin server in Sun Java System Web Server 7.0 Update 7 allow remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via a long string in an \"Authorization: Digest\" HTTP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-445r-27v9-x6w7/GHSA-445r-27v9-x6w7.json b/advisories/unreviewed/2022/05/GHSA-445r-27v9-x6w7/GHSA-445r-27v9-x6w7.json index 861eb6d6e1b..cdc49b5d6fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-445r-27v9-x6w7/GHSA-445r-27v9-x6w7.json +++ b/advisories/unreviewed/2022/05/GHSA-445r-27v9-x6w7/GHSA-445r-27v9-x6w7.json @@ -7,12 +7,8 @@ "CVE-2010-0724" ], "details": "SQL injection vulnerability in showimg.php in Arab Cart 1.0.2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4472-77jr-3q62/GHSA-4472-77jr-3q62.json b/advisories/unreviewed/2022/05/GHSA-4472-77jr-3q62/GHSA-4472-77jr-3q62.json index 93f80660060..3c4b413e0c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4472-77jr-3q62/GHSA-4472-77jr-3q62.json +++ b/advisories/unreviewed/2022/05/GHSA-4472-77jr-3q62/GHSA-4472-77jr-3q62.json @@ -7,12 +7,8 @@ "CVE-2010-0649" ], "details": "Integer overflow in the CrossCallParamsEx::CreateFromBuffer function in sandbox/src/crosscall_server.cc in Google Chrome before 4.0.249.89 allows attackers to leverage renderer access to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via a malformed message, related to deserializing of sandbox messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-448v-xwm2-9qr5/GHSA-448v-xwm2-9qr5.json b/advisories/unreviewed/2022/05/GHSA-448v-xwm2-9qr5/GHSA-448v-xwm2-9qr5.json index bf07b3febbf..5b2fc667175 100644 --- a/advisories/unreviewed/2022/05/GHSA-448v-xwm2-9qr5/GHSA-448v-xwm2-9qr5.json +++ b/advisories/unreviewed/2022/05/GHSA-448v-xwm2-9qr5/GHSA-448v-xwm2-9qr5.json @@ -7,12 +7,8 @@ "CVE-2010-0073" ], "details": "Unspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, and 10.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-44gv-7gp8-m9mw/GHSA-44gv-7gp8-m9mw.json b/advisories/unreviewed/2022/05/GHSA-44gv-7gp8-m9mw/GHSA-44gv-7gp8-m9mw.json index c4e01bc3669..6b0fcd69c7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-44gv-7gp8-m9mw/GHSA-44gv-7gp8-m9mw.json +++ b/advisories/unreviewed/2022/05/GHSA-44gv-7gp8-m9mw/GHSA-44gv-7gp8-m9mw.json @@ -7,12 +7,8 @@ "CVE-2010-0405" ], "details": "Integer overflow in the BZ2_decompress function in decompress.c in bzip2 and libbzip2 before 1.0.6 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted compressed file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4532-5878-vcc3/GHSA-4532-5878-vcc3.json b/advisories/unreviewed/2022/05/GHSA-4532-5878-vcc3/GHSA-4532-5878-vcc3.json index ca0d2719dd8..2af036d5bad 100644 --- a/advisories/unreviewed/2022/05/GHSA-4532-5878-vcc3/GHSA-4532-5878-vcc3.json +++ b/advisories/unreviewed/2022/05/GHSA-4532-5878-vcc3/GHSA-4532-5878-vcc3.json @@ -7,12 +7,8 @@ "CVE-2010-0381" ], "details": "SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a show_stats action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-453r-pmqf-ww9g/GHSA-453r-pmqf-ww9g.json b/advisories/unreviewed/2022/05/GHSA-453r-pmqf-ww9g/GHSA-453r-pmqf-ww9g.json index b3a1d29ed8e..f2cc3d48698 100644 --- a/advisories/unreviewed/2022/05/GHSA-453r-pmqf-ww9g/GHSA-453r-pmqf-ww9g.json +++ b/advisories/unreviewed/2022/05/GHSA-453r-pmqf-ww9g/GHSA-453r-pmqf-ww9g.json @@ -7,12 +7,8 @@ "CVE-2010-0280" ], "details": "Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-457j-cjp6-q7h3/GHSA-457j-cjp6-q7h3.json b/advisories/unreviewed/2022/05/GHSA-457j-cjp6-q7h3/GHSA-457j-cjp6-q7h3.json index d788c98c5b5..fc53073b715 100644 --- a/advisories/unreviewed/2022/05/GHSA-457j-cjp6-q7h3/GHSA-457j-cjp6-q7h3.json +++ b/advisories/unreviewed/2022/05/GHSA-457j-cjp6-q7h3/GHSA-457j-cjp6-q7h3.json @@ -7,12 +7,8 @@ "CVE-2010-0190" ], "details": "Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-47fc-5829-4cxj/GHSA-47fc-5829-4cxj.json b/advisories/unreviewed/2022/05/GHSA-47fc-5829-4cxj/GHSA-47fc-5829-4cxj.json index 02889740ccf..464b7605e2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-47fc-5829-4cxj/GHSA-47fc-5829-4cxj.json +++ b/advisories/unreviewed/2022/05/GHSA-47fc-5829-4cxj/GHSA-47fc-5829-4cxj.json @@ -7,12 +7,8 @@ "CVE-2010-0377" ], "details": "SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-495j-2cpg-h2g3/GHSA-495j-2cpg-h2g3.json b/advisories/unreviewed/2022/05/GHSA-495j-2cpg-h2g3/GHSA-495j-2cpg-h2g3.json index 32c9777c81e..27f631576f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-495j-2cpg-h2g3/GHSA-495j-2cpg-h2g3.json +++ b/advisories/unreviewed/2022/05/GHSA-495j-2cpg-h2g3/GHSA-495j-2cpg-h2g3.json @@ -7,12 +7,8 @@ "CVE-2010-0031" ], "details": "Array index error in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3, and PowerPoint in Office 2004 for Mac, allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka \"PowerPoint OEPlaceholderAtom 'placementId' Invalid Array Indexing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49ww-c2gw-f75j/GHSA-49ww-c2gw-f75j.json b/advisories/unreviewed/2022/05/GHSA-49ww-c2gw-f75j/GHSA-49ww-c2gw-f75j.json index 5432f7b8eff..3dada3aa476 100644 --- a/advisories/unreviewed/2022/05/GHSA-49ww-c2gw-f75j/GHSA-49ww-c2gw-f75j.json +++ b/advisories/unreviewed/2022/05/GHSA-49ww-c2gw-f75j/GHSA-49ww-c2gw-f75j.json @@ -7,12 +7,8 @@ "CVE-2010-0319" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Docmint 1.0 and 2.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4c2v-p982-wgvx/GHSA-4c2v-p982-wgvx.json b/advisories/unreviewed/2022/05/GHSA-4c2v-p982-wgvx/GHSA-4c2v-p982-wgvx.json index 5223d9fafcb..6adfb04b571 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c2v-p982-wgvx/GHSA-4c2v-p982-wgvx.json +++ b/advisories/unreviewed/2022/05/GHSA-4c2v-p982-wgvx/GHSA-4c2v-p982-wgvx.json @@ -7,12 +7,8 @@ "CVE-2010-0854" ], "details": "Unspecified vulnerability in the Audit component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect integrity, related to \"SELECT, INSERT or DELETE on tables subject to auditing.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4cg4-4695-q899/GHSA-4cg4-4695-q899.json b/advisories/unreviewed/2022/05/GHSA-4cg4-4695-q899/GHSA-4cg4-4695-q899.json index 7e1fd24cc12..bdaf1cc5e51 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cg4-4695-q899/GHSA-4cg4-4695-q899.json +++ b/advisories/unreviewed/2022/05/GHSA-4cg4-4695-q899/GHSA-4cg4-4695-q899.json @@ -7,12 +7,8 @@ "CVE-2010-0534" ], "details": "Wiki Server in Apple Mac OS X 10.6 before 10.6.3 does not enforce the service access control list (SACL) for weblogs during weblog creation, which allows remote authenticated users to publish content via HTTP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4ch8-r5h5-w889/GHSA-4ch8-r5h5-w889.json b/advisories/unreviewed/2022/05/GHSA-4ch8-r5h5-w889/GHSA-4ch8-r5h5-w889.json index 28045de0be9..917a3046c39 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ch8-r5h5-w889/GHSA-4ch8-r5h5-w889.json +++ b/advisories/unreviewed/2022/05/GHSA-4ch8-r5h5-w889/GHSA-4ch8-r5h5-w889.json @@ -7,12 +7,8 @@ "CVE-2010-0676" ], "details": "Directory traversal vulnerability in index.php in the RWCards (com_rwcards) component 3.0.18 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4f4q-2g4m-9h57/GHSA-4f4q-2g4m-9h57.json b/advisories/unreviewed/2022/05/GHSA-4f4q-2g4m-9h57/GHSA-4f4q-2g4m-9h57.json index 538332783a8..5e689ab0ab5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f4q-2g4m-9h57/GHSA-4f4q-2g4m-9h57.json +++ b/advisories/unreviewed/2022/05/GHSA-4f4q-2g4m-9h57/GHSA-4f4q-2g4m-9h57.json @@ -7,12 +7,8 @@ "CVE-2010-0472" ], "details": "kuddb2 in Tivoli Monitoring for DB2, as distributed in IBM DB2 9.7 FP1 on Linux, allows remote attackers to cause a denial of service (daemon crash) via a certain byte sequence.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4fc7-9mv4-pp8w/GHSA-4fc7-9mv4-pp8w.json b/advisories/unreviewed/2022/05/GHSA-4fc7-9mv4-pp8w/GHSA-4fc7-9mv4-pp8w.json index a39c0166c08..67044c212c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fc7-9mv4-pp8w/GHSA-4fc7-9mv4-pp8w.json +++ b/advisories/unreviewed/2022/05/GHSA-4fc7-9mv4-pp8w/GHSA-4fc7-9mv4-pp8w.json @@ -7,12 +7,8 @@ "CVE-2010-0161" ], "details": "The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 on Windows Vista, Windows Server 2008 R2, and Windows 7 allows remote SMTP, IMAP, and POP servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via crafted data in a session that uses SSPI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4frq-5fwv-f2w3/GHSA-4frq-5fwv-f2w3.json b/advisories/unreviewed/2022/05/GHSA-4frq-5fwv-f2w3/GHSA-4frq-5fwv-f2w3.json index 8fee1c13d5b..fe3ecf2e71c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4frq-5fwv-f2w3/GHSA-4frq-5fwv-f2w3.json +++ b/advisories/unreviewed/2022/05/GHSA-4frq-5fwv-f2w3/GHSA-4frq-5fwv-f2w3.json @@ -7,12 +7,8 @@ "CVE-2010-0092" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, and 5.0 Update 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -148,9 +144,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4g9j-hp5m-7j2p/GHSA-4g9j-hp5m-7j2p.json b/advisories/unreviewed/2022/05/GHSA-4g9j-hp5m-7j2p/GHSA-4g9j-hp5m-7j2p.json index 48dd8fc69fa..f0dd35638f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g9j-hp5m-7j2p/GHSA-4g9j-hp5m-7j2p.json +++ b/advisories/unreviewed/2022/05/GHSA-4g9j-hp5m-7j2p/GHSA-4g9j-hp5m-7j2p.json @@ -7,12 +7,8 @@ "CVE-2010-0136" ], "details": "OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remote attackers to run arbitrary macros via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g9j-m5r7-mvh4/GHSA-4g9j-m5r7-mvh4.json b/advisories/unreviewed/2022/05/GHSA-4g9j-m5r7-mvh4/GHSA-4g9j-m5r7-mvh4.json index 64e65884de5..840b5e627b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g9j-m5r7-mvh4/GHSA-4g9j-m5r7-mvh4.json +++ b/advisories/unreviewed/2022/05/GHSA-4g9j-m5r7-mvh4/GHSA-4g9j-m5r7-mvh4.json @@ -7,12 +7,8 @@ "CVE-2010-0539" ], "details": "Integer signedness error in the window drawing implementation in Apple Java for Mac OS X 10.5 before Update 7 and Java for Mac OS X 10.6 before Update 2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted applet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4gq2-9rxc-45pg/GHSA-4gq2-9rxc-45pg.json b/advisories/unreviewed/2022/05/GHSA-4gq2-9rxc-45pg/GHSA-4gq2-9rxc-45pg.json index 781c4b03c15..1161119b4f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gq2-9rxc-45pg/GHSA-4gq2-9rxc-45pg.json +++ b/advisories/unreviewed/2022/05/GHSA-4gq2-9rxc-45pg/GHSA-4gq2-9rxc-45pg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4gq7-2m92-2hrw/GHSA-4gq7-2m92-2hrw.json b/advisories/unreviewed/2022/05/GHSA-4gq7-2m92-2hrw/GHSA-4gq7-2m92-2hrw.json index bf0b9fa9c9f..0dba8f96713 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gq7-2m92-2hrw/GHSA-4gq7-2m92-2hrw.json +++ b/advisories/unreviewed/2022/05/GHSA-4gq7-2m92-2hrw/GHSA-4gq7-2m92-2hrw.json @@ -7,12 +7,8 @@ "CVE-2010-0865" ], "details": "Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle E-Business Suite 6.1.1.0 allows remote attackers to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4h4c-7mxx-xhjj/GHSA-4h4c-7mxx-xhjj.json b/advisories/unreviewed/2022/05/GHSA-4h4c-7mxx-xhjj/GHSA-4h4c-7mxx-xhjj.json index 270ebdbd313..158a27f2e24 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h4c-7mxx-xhjj/GHSA-4h4c-7mxx-xhjj.json +++ b/advisories/unreviewed/2022/05/GHSA-4h4c-7mxx-xhjj/GHSA-4h4c-7mxx-xhjj.json @@ -7,12 +7,8 @@ "CVE-2010-0574" ], "details": "Unspecified vulnerability in Cisco Wireless LAN Controller (WLC) software 3.2 before 3.2.215.0; 4.1 and 4.2 before 4.2.205.0; 4.1M and 4.2M before 4.2.207.54M; 5.0, 5.1, and 6.0 before 6.0.188.0; and 5.2 before 5.2.193.11 allows remote attackers to cause a denial of service (device reload) via a crafted IKE packet, aka Bug ID CSCta56653.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hq4-73p9-hvch/GHSA-4hq4-73p9-hvch.json b/advisories/unreviewed/2022/05/GHSA-4hq4-73p9-hvch/GHSA-4hq4-73p9-hvch.json index eb79a1d519c..ffdc9678f16 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hq4-73p9-hvch/GHSA-4hq4-73p9-hvch.json +++ b/advisories/unreviewed/2022/05/GHSA-4hq4-73p9-hvch/GHSA-4hq4-73p9-hvch.json @@ -7,12 +7,8 @@ "CVE-2010-0590" ], "details": "The CMSIPUtility component in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.x before 7.1(3a)su1 and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP Register message, aka Bug ID CSCtc37188.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hwj-h887-xw3m/GHSA-4hwj-h887-xw3m.json b/advisories/unreviewed/2022/05/GHSA-4hwj-h887-xw3m/GHSA-4hwj-h887-xw3m.json index 42454efd719..abd49ff8a32 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hwj-h887-xw3m/GHSA-4hwj-h887-xw3m.json +++ b/advisories/unreviewed/2022/05/GHSA-4hwj-h887-xw3m/GHSA-4hwj-h887-xw3m.json @@ -7,12 +7,8 @@ "CVE-2010-0196" ], "details": "Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0192 and CVE-2010-0193.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4j4j-45pm-jf8h/GHSA-4j4j-45pm-jf8h.json b/advisories/unreviewed/2022/05/GHSA-4j4j-45pm-jf8h/GHSA-4j4j-45pm-jf8h.json index 0ef83f4d6c5..0dec07d0601 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j4j-45pm-jf8h/GHSA-4j4j-45pm-jf8h.json +++ b/advisories/unreviewed/2022/05/GHSA-4j4j-45pm-jf8h/GHSA-4j4j-45pm-jf8h.json @@ -7,12 +7,8 @@ "CVE-2010-0637" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to hijack the authentication of administrators for requests that (1) delete an event or (2) ban an IP address from posting via unknown vectors. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j4x-29c6-hvrh/GHSA-4j4x-29c6-hvrh.json b/advisories/unreviewed/2022/05/GHSA-4j4x-29c6-hvrh/GHSA-4j4x-29c6-hvrh.json index 01d99d9d0c2..2abfc9d0b72 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j4x-29c6-hvrh/GHSA-4j4x-29c6-hvrh.json +++ b/advisories/unreviewed/2022/05/GHSA-4j4x-29c6-hvrh/GHSA-4j4x-29c6-hvrh.json @@ -7,12 +7,8 @@ "CVE-2010-0392" ], "details": "Stack-based buffer overflow in vpnconf.exe in TheGreenBow IPSec VPN Client 4.51.001, 4.65.003, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a long OpenScriptAfterUp parameter in a policy (.tgb) file, related to \"phase 2.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j63-gr7g-p9pj/GHSA-4j63-gr7g-p9pj.json b/advisories/unreviewed/2022/05/GHSA-4j63-gr7g-p9pj/GHSA-4j63-gr7g-p9pj.json index 73cbf34f81d..19d6636934a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j63-gr7g-p9pj/GHSA-4j63-gr7g-p9pj.json +++ b/advisories/unreviewed/2022/05/GHSA-4j63-gr7g-p9pj/GHSA-4j63-gr7g-p9pj.json @@ -7,12 +7,8 @@ "CVE-2010-0599" ], "details": "Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt XML RPC sessions from operator workstations, which allows remote attackers to discover Administrator credentials by sniffing the network, aka Bug ID CSCtb83505.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4jfc-29qj-3q46/GHSA-4jfc-29qj-3q46.json b/advisories/unreviewed/2022/05/GHSA-4jfc-29qj-3q46/GHSA-4jfc-29qj-3q46.json index 4ca42ad5196..da2372c07d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jfc-29qj-3q46/GHSA-4jfc-29qj-3q46.json +++ b/advisories/unreviewed/2022/05/GHSA-4jfc-29qj-3q46/GHSA-4jfc-29qj-3q46.json @@ -7,12 +7,8 @@ "CVE-2010-0339" ], "details": "SQL injection vulnerability in the User Links (vm19_userlinks) extension 0.1.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4mvg-rx8p-7w6c/GHSA-4mvg-rx8p-7w6c.json b/advisories/unreviewed/2022/05/GHSA-4mvg-rx8p-7w6c/GHSA-4mvg-rx8p-7w6c.json index 65e00afea6f..6d8b3318dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mvg-rx8p-7w6c/GHSA-4mvg-rx8p-7w6c.json +++ b/advisories/unreviewed/2022/05/GHSA-4mvg-rx8p-7w6c/GHSA-4mvg-rx8p-7w6c.json @@ -7,12 +7,8 @@ "CVE-2010-0851" ], "details": "Unspecified vulnerability in the XML DB component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p85-2vx8-762m/GHSA-4p85-2vx8-762m.json b/advisories/unreviewed/2022/05/GHSA-4p85-2vx8-762m/GHSA-4p85-2vx8-762m.json index bf6af0c31e2..1d0bd4641e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p85-2vx8-762m/GHSA-4p85-2vx8-762m.json +++ b/advisories/unreviewed/2022/05/GHSA-4p85-2vx8-762m/GHSA-4p85-2vx8-762m.json @@ -7,12 +7,8 @@ "CVE-2010-0066" ], "details": "Unspecified vulnerability in the Access Manager Identity Server component in Oracle Application Server 7.0.4.3 and 10.1.4.2 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4pg5-rffm-vpmp/GHSA-4pg5-rffm-vpmp.json b/advisories/unreviewed/2022/05/GHSA-4pg5-rffm-vpmp/GHSA-4pg5-rffm-vpmp.json index bc1f548a963..f072fd6bdae 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pg5-rffm-vpmp/GHSA-4pg5-rffm-vpmp.json +++ b/advisories/unreviewed/2022/05/GHSA-4pg5-rffm-vpmp/GHSA-4pg5-rffm-vpmp.json @@ -7,12 +7,8 @@ "CVE-2009-5143" ], "details": "GE Healthcare Discovery 530C has a password of #bigguy1 for the (1) acqservice user and (2) wsservice user of the Xeleris System, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4pmm-77fx-g9g6/GHSA-4pmm-77fx-g9g6.json b/advisories/unreviewed/2022/05/GHSA-4pmm-77fx-g9g6/GHSA-4pmm-77fx-g9g6.json index 07ae8bdfb48..c93aa03829d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pmm-77fx-g9g6/GHSA-4pmm-77fx-g9g6.json +++ b/advisories/unreviewed/2022/05/GHSA-4pmm-77fx-g9g6/GHSA-4pmm-77fx-g9g6.json @@ -7,12 +7,8 @@ "CVE-2010-0836" ], "details": "Unspecified vulnerability in the Oracle Knowledge Management component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4q82-xq88-g8g4/GHSA-4q82-xq88-g8g4.json b/advisories/unreviewed/2022/05/GHSA-4q82-xq88-g8g4/GHSA-4q82-xq88-g8g4.json index fb79bc0f7d7..a7f19508c73 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q82-xq88-g8g4/GHSA-4q82-xq88-g8g4.json +++ b/advisories/unreviewed/2022/05/GHSA-4q82-xq88-g8g4/GHSA-4q82-xq88-g8g4.json @@ -7,12 +7,8 @@ "CVE-2010-0360" ], "details": "Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to overwrite memory locations in the heap, and discover the contents of memory locations, via a malformed HTTP TRACE request that includes a long URI and many empty headers, related to an \"overflow.\" NOTE: this might overlap CVE-2010-0272 and CVE-2010-0273.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qvq-xp3p-8jfq/GHSA-4qvq-xp3p-8jfq.json b/advisories/unreviewed/2022/05/GHSA-4qvq-xp3p-8jfq/GHSA-4qvq-xp3p-8jfq.json index ba481d07feb..e1d34cfdfda 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qvq-xp3p-8jfq/GHSA-4qvq-xp3p-8jfq.json +++ b/advisories/unreviewed/2022/05/GHSA-4qvq-xp3p-8jfq/GHSA-4qvq-xp3p-8jfq.json @@ -7,12 +7,8 @@ "CVE-2010-0631" ], "details": "Multiple SQL injection vulnerabilities in index.php in Eicra Car Rental-Script, when the plugin_id parameter is 4, allow remote attackers to execute arbitrary SQL commands via the (1) users (username) and (2) passwords parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4r8g-96wp-vqm6/GHSA-4r8g-96wp-vqm6.json b/advisories/unreviewed/2022/05/GHSA-4r8g-96wp-vqm6/GHSA-4r8g-96wp-vqm6.json index cda44e8a3e3..691c27d9ef5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r8g-96wp-vqm6/GHSA-4r8g-96wp-vqm6.json +++ b/advisories/unreviewed/2022/05/GHSA-4r8g-96wp-vqm6/GHSA-4r8g-96wp-vqm6.json @@ -7,12 +7,8 @@ "CVE-2009-5116" ], "details": "McAfee LinuxShield 1.5.1 and earlier does not properly implement client authentication, which allows remote authenticated users to obtain Admin access to the statistics server by leveraging a client account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4r9m-prw4-64m4/GHSA-4r9m-prw4-64m4.json b/advisories/unreviewed/2022/05/GHSA-4r9m-prw4-64m4/GHSA-4r9m-prw4-64m4.json index 4bf09c93dac..637e3ddf375 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r9m-prw4-64m4/GHSA-4r9m-prw4-64m4.json +++ b/advisories/unreviewed/2022/05/GHSA-4r9m-prw4-64m4/GHSA-4r9m-prw4-64m4.json @@ -7,12 +7,8 @@ "CVE-2010-0324" ], "details": "SQL injection vulnerability in the Customer Reference List (ref_list) extension 1.0.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rhv-54g5-f4cm/GHSA-4rhv-54g5-f4cm.json b/advisories/unreviewed/2022/05/GHSA-4rhv-54g5-f4cm/GHSA-4rhv-54g5-f4cm.json index 240dcb6df32..a9d52036956 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rhv-54g5-f4cm/GHSA-4rhv-54g5-f4cm.json +++ b/advisories/unreviewed/2022/05/GHSA-4rhv-54g5-f4cm/GHSA-4rhv-54g5-f4cm.json @@ -7,12 +7,8 @@ "CVE-2010-0202" ], "details": "Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0199, and CVE-2010-0203.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rvj-5qmg-gmxv/GHSA-4rvj-5qmg-gmxv.json b/advisories/unreviewed/2022/05/GHSA-4rvj-5qmg-gmxv/GHSA-4rvj-5qmg-gmxv.json index 97b48a766ad..69e0da71139 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rvj-5qmg-gmxv/GHSA-4rvj-5qmg-gmxv.json +++ b/advisories/unreviewed/2022/05/GHSA-4rvj-5qmg-gmxv/GHSA-4rvj-5qmg-gmxv.json @@ -7,12 +7,8 @@ "CVE-2009-5127" ], "details": "The Antivirus component in Comodo Internet Security before 3.8.64739.471 allows remote attackers to cause a denial of service (application crash) via a crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v4f-p5gf-h336/GHSA-4v4f-p5gf-h336.json b/advisories/unreviewed/2022/05/GHSA-4v4f-p5gf-h336/GHSA-4v4f-p5gf-h336.json index fdd1e7581b7..face2cd7e72 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v4f-p5gf-h336/GHSA-4v4f-p5gf-h336.json +++ b/advisories/unreviewed/2022/05/GHSA-4v4f-p5gf-h336/GHSA-4v4f-p5gf-h336.json @@ -7,12 +7,8 @@ "CVE-2010-0394" ], "details": "PyGIT.py in the Trac Git plugin (trac-git) before 0.0.20080710-3+lenny1 and before 0.0.20090320-1 on Debian GNU/Linux, when enabled in Trac, allows remote attackers to execute arbitrary commands via shell metacharacters in a crafted HTTP query that is used to generate a certain git command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4v8w-428c-cm63/GHSA-4v8w-428c-cm63.json b/advisories/unreviewed/2022/05/GHSA-4v8w-428c-cm63/GHSA-4v8w-428c-cm63.json index 7682a7055d5..19f05d531ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v8w-428c-cm63/GHSA-4v8w-428c-cm63.json +++ b/advisories/unreviewed/2022/05/GHSA-4v8w-428c-cm63/GHSA-4v8w-428c-cm63.json @@ -7,12 +7,8 @@ "CVE-2010-0756" ], "details": "Session fixation vulnerability in WikyBlog 1.7.3 rc2 allows remote attackers to hijack web sessions by setting the jsessionid parameter to (1) index.php/Comment/Main, (2) index.php/Comment/Main/Home_Wiky, or (3) index.php/Edit/Main.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4vhh-rr3r-2p8j/GHSA-4vhh-rr3r-2p8j.json b/advisories/unreviewed/2022/05/GHSA-4vhh-rr3r-2p8j/GHSA-4vhh-rr3r-2p8j.json index c46dc462dee..e4f37d0fb59 100644 --- a/advisories/unreviewed/2022/05/GHSA-4vhh-rr3r-2p8j/GHSA-4vhh-rr3r-2p8j.json +++ b/advisories/unreviewed/2022/05/GHSA-4vhh-rr3r-2p8j/GHSA-4vhh-rr3r-2p8j.json @@ -7,12 +7,8 @@ "CVE-2010-0279" ], "details": "Unrestricted file upload vulnerability in upload.php in BTS-GI Read excel 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4w3v-xg6m-mghp/GHSA-4w3v-xg6m-mghp.json b/advisories/unreviewed/2022/05/GHSA-4w3v-xg6m-mghp/GHSA-4w3v-xg6m-mghp.json index 5d8817f11b8..c3a93abeae5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w3v-xg6m-mghp/GHSA-4w3v-xg6m-mghp.json +++ b/advisories/unreviewed/2022/05/GHSA-4w3v-xg6m-mghp/GHSA-4w3v-xg6m-mghp.json @@ -7,12 +7,8 @@ "CVE-2010-0108" ], "details": "Buffer overflow in the cliproxy.objects.1 ActiveX control in the Symantec Client Proxy (CLIproxy.dll) in Symantec AntiVirus 10.0.x, 10.1.x before MR9, and 10.2.x before MR4; and Symantec Client Security 3.0.x and 3.1.x before MR9 allows remote attackers to execute arbitrary code via a long argument to the SetRemoteComputerName function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4wg8-4rmc-5234/GHSA-4wg8-4rmc-5234.json b/advisories/unreviewed/2022/05/GHSA-4wg8-4rmc-5234/GHSA-4wg8-4rmc-5234.json index b04fb2d5f84..0a433d85e68 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wg8-4rmc-5234/GHSA-4wg8-4rmc-5234.json +++ b/advisories/unreviewed/2022/05/GHSA-4wg8-4rmc-5234/GHSA-4wg8-4rmc-5234.json @@ -7,12 +7,8 @@ "CVE-2010-0276" ], "details": "IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 does not properly handle navigation of the \"Try Lotus iNotes anyway\" link from the page that reports use of an unsupported browser, which has unspecified impact and attack vectors, aka SPR LSHR7TBMQU.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-52q3-cgph-xhf4/GHSA-52q3-cgph-xhf4.json b/advisories/unreviewed/2022/05/GHSA-52q3-cgph-xhf4/GHSA-52q3-cgph-xhf4.json index 7e077713130..afe5c7d50dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-52q3-cgph-xhf4/GHSA-52q3-cgph-xhf4.json +++ b/advisories/unreviewed/2022/05/GHSA-52q3-cgph-xhf4/GHSA-52q3-cgph-xhf4.json @@ -7,12 +7,8 @@ "CVE-2010-0759" ], "details": "Directory traversal vulnerability in plugins/system/cdscriptegrator/libraries/highslide/js/jsloader.php in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allows remote attackers to read, and possibly include and execute, arbitrary files via directory traversal sequences in the files[] parameter, a different vector than CVE-2010-0760.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-52xq-wv9w-6fxm/GHSA-52xq-wv9w-6fxm.json b/advisories/unreviewed/2022/05/GHSA-52xq-wv9w-6fxm/GHSA-52xq-wv9w-6fxm.json index 52235b66a23..2213a0cca17 100644 --- a/advisories/unreviewed/2022/05/GHSA-52xq-wv9w-6fxm/GHSA-52xq-wv9w-6fxm.json +++ b/advisories/unreviewed/2022/05/GHSA-52xq-wv9w-6fxm/GHSA-52xq-wv9w-6fxm.json @@ -7,12 +7,8 @@ "CVE-2010-0230" ], "details": "SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5348-x87r-x9hj/GHSA-5348-x87r-x9hj.json b/advisories/unreviewed/2022/05/GHSA-5348-x87r-x9hj/GHSA-5348-x87r-x9hj.json index d2c5c271222..5e67030c08b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5348-x87r-x9hj/GHSA-5348-x87r-x9hj.json +++ b/advisories/unreviewed/2022/05/GHSA-5348-x87r-x9hj/GHSA-5348-x87r-x9hj.json @@ -7,12 +7,8 @@ "CVE-2010-0367" ], "details": "Multiple PHP remote file inclusion vulnerabilities in BitScripts Bits Video Script 2.05 Gold Beta, and possibly 2.04, allow remote attackers to execute arbitrary PHP code via a URL in the rowptem[template] parameter to (1) showcasesearch.php and (2) showcase2search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53c3-c3pf-mjfg/GHSA-53c3-c3pf-mjfg.json b/advisories/unreviewed/2022/05/GHSA-53c3-c3pf-mjfg/GHSA-53c3-c3pf-mjfg.json index 1bfd062116c..33846728b4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-53c3-c3pf-mjfg/GHSA-53c3-c3pf-mjfg.json +++ b/advisories/unreviewed/2022/05/GHSA-53c3-c3pf-mjfg/GHSA-53c3-c3pf-mjfg.json @@ -7,12 +7,8 @@ "CVE-2010-0088" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0085.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -156,9 +152,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53qv-mxhg-4g97/GHSA-53qv-mxhg-4g97.json b/advisories/unreviewed/2022/05/GHSA-53qv-mxhg-4g97/GHSA-53qv-mxhg-4g97.json index 5e8733c3232..d6f67339604 100644 --- a/advisories/unreviewed/2022/05/GHSA-53qv-mxhg-4g97/GHSA-53qv-mxhg-4g97.json +++ b/advisories/unreviewed/2022/05/GHSA-53qv-mxhg-4g97/GHSA-53qv-mxhg-4g97.json @@ -7,12 +7,8 @@ "CVE-2009-5113" ], "details": "Cross-site scripting (XSS) vulnerability in wgarcmin.cgi in WebGlimpse 2.18.7 and earlier allows remote attackers to inject arbitrary web script or HTML via the DOC parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5449-j6vm-5wc2/GHSA-5449-j6vm-5wc2.json b/advisories/unreviewed/2022/05/GHSA-5449-j6vm-5wc2/GHSA-5449-j6vm-5wc2.json index dd66eff509b..e9d71969ca2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5449-j6vm-5wc2/GHSA-5449-j6vm-5wc2.json +++ b/advisories/unreviewed/2022/05/GHSA-5449-j6vm-5wc2/GHSA-5449-j6vm-5wc2.json @@ -7,12 +7,8 @@ "CVE-2010-0193" ], "details": "Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0192 and CVE-2010-0196.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-545x-w2c3-gjv5/GHSA-545x-w2c3-gjv5.json b/advisories/unreviewed/2022/05/GHSA-545x-w2c3-gjv5/GHSA-545x-w2c3-gjv5.json index c87014f8adb..74cb45d8c3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-545x-w2c3-gjv5/GHSA-545x-w2c3-gjv5.json +++ b/advisories/unreviewed/2022/05/GHSA-545x-w2c3-gjv5/GHSA-545x-w2c3-gjv5.json @@ -7,12 +7,8 @@ "CVE-2010-0181" ], "details": "Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, executes a mail application in situations where an IMG element has a SRC attribute that is a redirect to a mailto: URL, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many images.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54p5-g8h5-9c9x/GHSA-54p5-g8h5-9c9x.json b/advisories/unreviewed/2022/05/GHSA-54p5-g8h5-9c9x/GHSA-54p5-g8h5-9c9x.json index 8a691fbe4c0..203b8893b01 100644 --- a/advisories/unreviewed/2022/05/GHSA-54p5-g8h5-9c9x/GHSA-54p5-g8h5-9c9x.json +++ b/advisories/unreviewed/2022/05/GHSA-54p5-g8h5-9c9x/GHSA-54p5-g8h5-9c9x.json @@ -7,12 +7,8 @@ "CVE-2010-0563" ], "details": "The Single Sign-on (SSO) functionality in IBM WebSphere Application Server (WAS) 7.0.0.0 through 7.0.0.8 does not recognize the Requires SSL configuration option, which might allow remote attackers to obtain sensitive information by sniffing network sessions that were expected to be encrypted.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55gw-qcg5-xjrx/GHSA-55gw-qcg5-xjrx.json b/advisories/unreviewed/2022/05/GHSA-55gw-qcg5-xjrx/GHSA-55gw-qcg5-xjrx.json index 4d69879e7bc..9051bfcd290 100644 --- a/advisories/unreviewed/2022/05/GHSA-55gw-qcg5-xjrx/GHSA-55gw-qcg5-xjrx.json +++ b/advisories/unreviewed/2022/05/GHSA-55gw-qcg5-xjrx/GHSA-55gw-qcg5-xjrx.json @@ -7,12 +7,8 @@ "CVE-2010-0787" ], "details": "client/mount.cifs.c in mount.cifs in smbfs in Samba 3.0.22, 3.0.28a, 3.2.3, 3.3.2, 3.4.0, and 3.4.5 allows local users to mount a CIFS share on an arbitrary mountpoint, and gain privileges, via a symlink attack on the mountpoint directory file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56xw-8wf9-j3x9/GHSA-56xw-8wf9-j3x9.json b/advisories/unreviewed/2022/05/GHSA-56xw-8wf9-j3x9/GHSA-56xw-8wf9-j3x9.json index 3d6fce7fdc5..564160120c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-56xw-8wf9-j3x9/GHSA-56xw-8wf9-j3x9.json +++ b/advisories/unreviewed/2022/05/GHSA-56xw-8wf9-j3x9/GHSA-56xw-8wf9-j3x9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5793-9787-qp7m/GHSA-5793-9787-qp7m.json b/advisories/unreviewed/2022/05/GHSA-5793-9787-qp7m/GHSA-5793-9787-qp7m.json index 313ec764dde..c5d2fb13f77 100644 --- a/advisories/unreviewed/2022/05/GHSA-5793-9787-qp7m/GHSA-5793-9787-qp7m.json +++ b/advisories/unreviewed/2022/05/GHSA-5793-9787-qp7m/GHSA-5793-9787-qp7m.json @@ -7,12 +7,8 @@ "CVE-2010-0674" ], "details": "StatCounteX 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for path/stats.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-589g-vgq7-8xv6/GHSA-589g-vgq7-8xv6.json b/advisories/unreviewed/2022/05/GHSA-589g-vgq7-8xv6/GHSA-589g-vgq7-8xv6.json index c0a49a03b80..0c0dd96f9a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-589g-vgq7-8xv6/GHSA-589g-vgq7-8xv6.json +++ b/advisories/unreviewed/2022/05/GHSA-589g-vgq7-8xv6/GHSA-589g-vgq7-8xv6.json @@ -7,12 +7,8 @@ "CVE-2010-0245" ], "details": "Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka \"Uninitialized Memory Corruption Vulnerability,\" a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0246.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58rc-hpq4-f2gh/GHSA-58rc-hpq4-f2gh.json b/advisories/unreviewed/2022/05/GHSA-58rc-hpq4-f2gh/GHSA-58rc-hpq4-f2gh.json index 96e0c9dfbb0..613108b9444 100644 --- a/advisories/unreviewed/2022/05/GHSA-58rc-hpq4-f2gh/GHSA-58rc-hpq4-f2gh.json +++ b/advisories/unreviewed/2022/05/GHSA-58rc-hpq4-f2gh/GHSA-58rc-hpq4-f2gh.json @@ -7,12 +7,8 @@ "CVE-2010-0529" ], "details": "Heap-based buffer overflow in QuickTime.qts in Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a PICT image with a BkPixPat opcode (0x12) containing crafted values that are used in a calculation for memory allocation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58v3-xw4q-v5wp/GHSA-58v3-xw4q-v5wp.json b/advisories/unreviewed/2022/05/GHSA-58v3-xw4q-v5wp/GHSA-58v3-xw4q-v5wp.json index cd52cb14232..7519cf1e34d 100644 --- a/advisories/unreviewed/2022/05/GHSA-58v3-xw4q-v5wp/GHSA-58v3-xw4q-v5wp.json +++ b/advisories/unreviewed/2022/05/GHSA-58v3-xw4q-v5wp/GHSA-58v3-xw4q-v5wp.json @@ -7,12 +7,8 @@ "CVE-2010-0312" ], "details": "The do_extendedOp function in ibmslapd in IBM Tivoli Directory Server (TDS) 6.2 on Linux allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted SecureWay 3.2 Event Registration Request (aka a 1.3.18.0.2.12.1 request).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5956-24pp-59rq/GHSA-5956-24pp-59rq.json b/advisories/unreviewed/2022/05/GHSA-5956-24pp-59rq/GHSA-5956-24pp-59rq.json index 082246cce3d..6aafc58f160 100644 --- a/advisories/unreviewed/2022/05/GHSA-5956-24pp-59rq/GHSA-5956-24pp-59rq.json +++ b/advisories/unreviewed/2022/05/GHSA-5956-24pp-59rq/GHSA-5956-24pp-59rq.json @@ -7,12 +7,8 @@ "CVE-2010-0157" ], "details": "Directory traversal vulnerability in the Bible Study (com_biblestudy) component 6.1 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter in a studieslist action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-59p2-jp4m-68q6/GHSA-59p2-jp4m-68q6.json b/advisories/unreviewed/2022/05/GHSA-59p2-jp4m-68q6/GHSA-59p2-jp4m-68q6.json index c32820ad83d..eefbd8e8dba 100644 --- a/advisories/unreviewed/2022/05/GHSA-59p2-jp4m-68q6/GHSA-59p2-jp4m-68q6.json +++ b/advisories/unreviewed/2022/05/GHSA-59p2-jp4m-68q6/GHSA-59p2-jp4m-68q6.json @@ -7,12 +7,8 @@ "CVE-2009-5110" ], "details": "dhttpd allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5c5j-3cq6-f3m3/GHSA-5c5j-3cq6-f3m3.json b/advisories/unreviewed/2022/05/GHSA-5c5j-3cq6-f3m3/GHSA-5c5j-3cq6-f3m3.json index 5603ec3cfe0..2cd0b465321 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c5j-3cq6-f3m3/GHSA-5c5j-3cq6-f3m3.json +++ b/advisories/unreviewed/2022/05/GHSA-5c5j-3cq6-f3m3/GHSA-5c5j-3cq6-f3m3.json @@ -7,12 +7,8 @@ "CVE-2010-0407" ], "details": "Multiple buffer overflows in the MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite before 1.5.4 allow local users to gain privileges via crafted message data, which is improperly demarshalled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c69-r476-v7h2/GHSA-5c69-r476-v7h2.json b/advisories/unreviewed/2022/05/GHSA-5c69-r476-v7h2/GHSA-5c69-r476-v7h2.json index 54d669356b6..7b4f16bf0c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c69-r476-v7h2/GHSA-5c69-r476-v7h2.json +++ b/advisories/unreviewed/2022/05/GHSA-5c69-r476-v7h2/GHSA-5c69-r476-v7h2.json @@ -7,12 +7,8 @@ "CVE-2009-5123" ], "details": "The Antivirus component in Comodo Internet Security before 3.11.108364.552 allows remote attackers to cause a denial of service (memory consumption) via a crafted compressed file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5chj-892r-cfh4/GHSA-5chj-892r-cfh4.json b/advisories/unreviewed/2022/05/GHSA-5chj-892r-cfh4/GHSA-5chj-892r-cfh4.json index 73947a7bb86..ad4b78f0777 100644 --- a/advisories/unreviewed/2022/05/GHSA-5chj-892r-cfh4/GHSA-5chj-892r-cfh4.json +++ b/advisories/unreviewed/2022/05/GHSA-5chj-892r-cfh4/GHSA-5chj-892r-cfh4.json @@ -7,12 +7,8 @@ "CVE-2010-0222" ], "details": "Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5fhf-vchf-8m4q/GHSA-5fhf-vchf-8m4q.json b/advisories/unreviewed/2022/05/GHSA-5fhf-vchf-8m4q/GHSA-5fhf-vchf-8m4q.json index 608574ae4ec..3a8ac6fc30c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fhf-vchf-8m4q/GHSA-5fhf-vchf-8m4q.json +++ b/advisories/unreviewed/2022/05/GHSA-5fhf-vchf-8m4q/GHSA-5fhf-vchf-8m4q.json @@ -7,12 +7,8 @@ "CVE-2010-0030" ], "details": "Heap-based buffer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka \"PowerPoint LinkedSlideAtom Heap Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fp5-r88m-3ph7/GHSA-5fp5-r88m-3ph7.json b/advisories/unreviewed/2022/05/GHSA-5fp5-r88m-3ph7/GHSA-5fp5-r88m-3ph7.json index b20c34e155a..c15b7387a9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fp5-r88m-3ph7/GHSA-5fp5-r88m-3ph7.json +++ b/advisories/unreviewed/2022/05/GHSA-5fp5-r88m-3ph7/GHSA-5fp5-r88m-3ph7.json @@ -7,12 +7,8 @@ "CVE-2010-0316" ], "details": "Integer overflow in Google SketchUp before 7.1 M2 allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via a crafted SKP file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g3j-37m8-6v8f/GHSA-5g3j-37m8-6v8f.json b/advisories/unreviewed/2022/05/GHSA-5g3j-37m8-6v8f/GHSA-5g3j-37m8-6v8f.json index c2f69971891..2e3294fb277 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g3j-37m8-6v8f/GHSA-5g3j-37m8-6v8f.json +++ b/advisories/unreviewed/2022/05/GHSA-5g3j-37m8-6v8f/GHSA-5g3j-37m8-6v8f.json @@ -7,12 +7,8 @@ "CVE-2010-0509" ], "details": "SFLServer in OS Services in Apple Mac OS X before 10.6.3 allows local users to gain privileges via vectors related to use of wheel group membership during access to the home directories of user accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g58-6469-p6x8/GHSA-5g58-6469-p6x8.json b/advisories/unreviewed/2022/05/GHSA-5g58-6469-p6x8/GHSA-5g58-6469-p6x8.json index 871be5ea42f..d33b09ce6a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g58-6469-p6x8/GHSA-5g58-6469-p6x8.json +++ b/advisories/unreviewed/2022/05/GHSA-5g58-6469-p6x8/GHSA-5g58-6469-p6x8.json @@ -7,12 +7,8 @@ "CVE-2010-0587" ], "details": "Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x before 4.3(2)SR2, 6.x before 6.1(5), 7.x before 7.1(3a)su1, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SCCP StationCapabilitiesRes message with an invalid MaxCap field, aka Bug ID CSCtc38985.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g5h-p2gm-9j6p/GHSA-5g5h-p2gm-9j6p.json b/advisories/unreviewed/2022/05/GHSA-5g5h-p2gm-9j6p/GHSA-5g5h-p2gm-9j6p.json index 1d8ccd888f4..21250266883 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g5h-p2gm-9j6p/GHSA-5g5h-p2gm-9j6p.json +++ b/advisories/unreviewed/2022/05/GHSA-5g5h-p2gm-9j6p/GHSA-5g5h-p2gm-9j6p.json @@ -7,12 +7,8 @@ "CVE-2010-0487" ], "details": "The Authenticode Signature verification functionality in cabview.dll in Cabinet File Viewer Shell Extension 5.1, 6.0, and 6.1 in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly use unspecified fields in a file digest, which allows remote attackers to execute arbitrary code via a modified cabinet (aka .CAB) file that incorrectly appears to have a valid signature, aka \"Cabview Corruption Validation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5g9q-h772-m2pq/GHSA-5g9q-h772-m2pq.json b/advisories/unreviewed/2022/05/GHSA-5g9q-h772-m2pq/GHSA-5g9q-h772-m2pq.json index 0d26a071761..df043a1e7c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g9q-h772-m2pq/GHSA-5g9q-h772-m2pq.json +++ b/advisories/unreviewed/2022/05/GHSA-5g9q-h772-m2pq/GHSA-5g9q-h772-m2pq.json @@ -7,12 +7,8 @@ "CVE-2010-0430" ], "details": "libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 and possibly other products, allows guest OS users to read from or write to arbitrary QEMU memory by modifying the address that is used by Cairo for memory mappings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gq9-qhr6-c66r/GHSA-5gq9-qhr6-c66r.json b/advisories/unreviewed/2022/05/GHSA-5gq9-qhr6-c66r/GHSA-5gq9-qhr6-c66r.json index a716f72c43c..9026435c4dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gq9-qhr6-c66r/GHSA-5gq9-qhr6-c66r.json +++ b/advisories/unreviewed/2022/05/GHSA-5gq9-qhr6-c66r/GHSA-5gq9-qhr6-c66r.json @@ -7,12 +7,8 @@ "CVE-2010-0830" ], "details": "Integer signedness error in the elf_get_dynamic_info function in elf/dynamic-link.h in ld.so in the GNU C Library (aka glibc or libc6) 2.0.1 through 2.11.1, when the --verify option is used, allows user-assisted remote attackers to execute arbitrary code via a crafted ELF program with a negative value for a certain d_tag structure member in the ELF header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5gxv-3pxq-mmxj/GHSA-5gxv-3pxq-mmxj.json b/advisories/unreviewed/2022/05/GHSA-5gxv-3pxq-mmxj/GHSA-5gxv-3pxq-mmxj.json index 60ad6720e66..0566916807c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gxv-3pxq-mmxj/GHSA-5gxv-3pxq-mmxj.json +++ b/advisories/unreviewed/2022/05/GHSA-5gxv-3pxq-mmxj/GHSA-5gxv-3pxq-mmxj.json @@ -7,12 +7,8 @@ "CVE-2010-0721" ], "details": "SQL injection vulnerability in news.php in Auktionshaus Gelb 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hf6-7gxx-55wg/GHSA-5hf6-7gxx-55wg.json b/advisories/unreviewed/2022/05/GHSA-5hf6-7gxx-55wg/GHSA-5hf6-7gxx-55wg.json index 0cc3f0ca289..f5c1500b1d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hf6-7gxx-55wg/GHSA-5hf6-7gxx-55wg.json +++ b/advisories/unreviewed/2022/05/GHSA-5hf6-7gxx-55wg/GHSA-5hf6-7gxx-55wg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hv3-87wh-h8h8/GHSA-5hv3-87wh-h8h8.json b/advisories/unreviewed/2022/05/GHSA-5hv3-87wh-h8h8/GHSA-5hv3-87wh-h8h8.json index 8da6eb47305..80657917604 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hv3-87wh-h8h8/GHSA-5hv3-87wh-h8h8.json +++ b/advisories/unreviewed/2022/05/GHSA-5hv3-87wh-h8h8/GHSA-5hv3-87wh-h8h8.json @@ -7,12 +7,8 @@ "CVE-2010-0056" ], "details": "Buffer overflow in Cocoa spell checking in AppKit in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jc3-j88w-98gp/GHSA-5jc3-j88w-98gp.json b/advisories/unreviewed/2022/05/GHSA-5jc3-j88w-98gp/GHSA-5jc3-j88w-98gp.json index 3f80ee1f5fd..d9bf70ff78c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jc3-j88w-98gp/GHSA-5jc3-j88w-98gp.json +++ b/advisories/unreviewed/2022/05/GHSA-5jc3-j88w-98gp/GHSA-5jc3-j88w-98gp.json @@ -7,12 +7,8 @@ "CVE-2010-0602" ], "details": "The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug ID CSCsk32606.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jf7-29p2-6rfv/GHSA-5jf7-29p2-6rfv.json b/advisories/unreviewed/2022/05/GHSA-5jf7-29p2-6rfv/GHSA-5jf7-29p2-6rfv.json index 11e130f4f2a..144e36b2cd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jf7-29p2-6rfv/GHSA-5jf7-29p2-6rfv.json +++ b/advisories/unreviewed/2022/05/GHSA-5jf7-29p2-6rfv/GHSA-5jf7-29p2-6rfv.json @@ -7,12 +7,8 @@ "CVE-2009-5102" ], "details": "SQL injection vulnerability in default.asp in ATCOM Netvolution 1.0 ASP allows remote attackers to execute arbitrary SQL commands via the bpe_nid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5m7m-mrc8-69mh/GHSA-5m7m-mrc8-69mh.json b/advisories/unreviewed/2022/05/GHSA-5m7m-mrc8-69mh/GHSA-5m7m-mrc8-69mh.json index 1f7d002a582..66ea0d38920 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m7m-mrc8-69mh/GHSA-5m7m-mrc8-69mh.json +++ b/advisories/unreviewed/2022/05/GHSA-5m7m-mrc8-69mh/GHSA-5m7m-mrc8-69mh.json @@ -7,12 +7,8 @@ "CVE-2010-0593" ], "details": "The Cisco RVS4000 4-port Gigabit Security Router before 1.3.2.0, PVC2300 Business Internet Video Camera before 1.1.2.6, WVC200 Wireless-G PTZ Internet Video Camera before 1.1.1.15, WVC210 Wireless-G PTZ Internet Video Camera before 1.1.1.15, and WVC2300 Wireless-G Business Internet Video Camera before 1.1.2.6 do not properly restrict read access to passwords, which allows context-dependent attackers to obtain sensitive information, related to (1) access by remote authenticated users to a PVC2300 or WVC2300 via a crafted URL, (2) leveraging setup privileges on a WVC200 or WVC210, and (3) leveraging administrative privileges on an RVS4000, aka Bug ID CSCte64726.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mqp-g99f-6r5f/GHSA-5mqp-g99f-6r5f.json b/advisories/unreviewed/2022/05/GHSA-5mqp-g99f-6r5f/GHSA-5mqp-g99f-6r5f.json index c341935c996..f53c63607e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mqp-g99f-6r5f/GHSA-5mqp-g99f-6r5f.json +++ b/advisories/unreviewed/2022/05/GHSA-5mqp-g99f-6r5f/GHSA-5mqp-g99f-6r5f.json @@ -7,12 +7,8 @@ "CVE-2010-0842" ], "details": "Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is an uncontrolled array index that allows remote attackers to execute arbitrary code via a MIDI file with a crafted MixerSequencer object, related to the GM_Song structure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5p82-mxgj-w2gc/GHSA-5p82-mxgj-w2gc.json b/advisories/unreviewed/2022/05/GHSA-5p82-mxgj-w2gc/GHSA-5p82-mxgj-w2gc.json index 50217de5f81..9823364f45a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5p82-mxgj-w2gc/GHSA-5p82-mxgj-w2gc.json +++ b/advisories/unreviewed/2022/05/GHSA-5p82-mxgj-w2gc/GHSA-5p82-mxgj-w2gc.json @@ -7,12 +7,8 @@ "CVE-2010-0537" ], "details": "DesktopServices in Apple Mac OS X 10.6 before 10.6.3 does not properly resolve pathnames in certain circumstances involving an application's save panel, which allows user-assisted remote attackers to trigger unintended remote file copying via a crafted share name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5p9h-8pmj-7qhf/GHSA-5p9h-8pmj-7qhf.json b/advisories/unreviewed/2022/05/GHSA-5p9h-8pmj-7qhf/GHSA-5p9h-8pmj-7qhf.json index 59897c6a27c..0d522164607 100644 --- a/advisories/unreviewed/2022/05/GHSA-5p9h-8pmj-7qhf/GHSA-5p9h-8pmj-7qhf.json +++ b/advisories/unreviewed/2022/05/GHSA-5p9h-8pmj-7qhf/GHSA-5p9h-8pmj-7qhf.json @@ -7,12 +7,8 @@ "CVE-2010-0192" ], "details": "Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0193 and CVE-2010-0196.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5pm6-mxvg-938j/GHSA-5pm6-mxvg-938j.json b/advisories/unreviewed/2022/05/GHSA-5pm6-mxvg-938j/GHSA-5pm6-mxvg-938j.json index 32e9290522c..9633c2569b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pm6-mxvg-938j/GHSA-5pm6-mxvg-938j.json +++ b/advisories/unreviewed/2022/05/GHSA-5pm6-mxvg-938j/GHSA-5pm6-mxvg-938j.json @@ -7,12 +7,8 @@ "CVE-2010-0512" ], "details": "The Accounts Preferences implementation in Apple Mac OS X 10.6 before 10.6.3, when a network account server is used, does not support Login Window access control that is based solely on group membership, which allows attackers to bypass intended access restrictions by entering login credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5pqp-vqfr-x6rf/GHSA-5pqp-vqfr-x6rf.json b/advisories/unreviewed/2022/05/GHSA-5pqp-vqfr-x6rf/GHSA-5pqp-vqfr-x6rf.json index 287c2b355df..88a35884c1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pqp-vqfr-x6rf/GHSA-5pqp-vqfr-x6rf.json +++ b/advisories/unreviewed/2022/05/GHSA-5pqp-vqfr-x6rf/GHSA-5pqp-vqfr-x6rf.json @@ -7,12 +7,8 @@ "CVE-2010-0240" ], "details": "The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when a custom network driver is used, does not properly handle local fragmentation of Encapsulating Security Payload (ESP) over UDP packets, which allows remote attackers to execute arbitrary code via crafted packets, aka \"Header MDL Fragmentation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pvm-xfh9-cf8m/GHSA-5pvm-xfh9-cf8m.json b/advisories/unreviewed/2022/05/GHSA-5pvm-xfh9-cf8m/GHSA-5pvm-xfh9-cf8m.json index 36f73041e91..ecc92fd231d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pvm-xfh9-cf8m/GHSA-5pvm-xfh9-cf8m.json +++ b/advisories/unreviewed/2022/05/GHSA-5pvm-xfh9-cf8m/GHSA-5pvm-xfh9-cf8m.json @@ -7,12 +7,8 @@ "CVE-2010-0663" ], "details": "The ParamTraits::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not initialize the memory locations that will hold bitmap data, which might allow remote attackers to obtain potentially sensitive information from process memory by providing insufficient data, related to use of a (1) thumbnail database or (2) HTML canvas.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pvv-j5jp-5762/GHSA-5pvv-j5jp-5762.json b/advisories/unreviewed/2022/05/GHSA-5pvv-j5jp-5762/GHSA-5pvv-j5jp-5762.json index 457f23ae0da..b3b88ddd29a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pvv-j5jp-5762/GHSA-5pvv-j5jp-5762.json +++ b/advisories/unreviewed/2022/05/GHSA-5pvv-j5jp-5762/GHSA-5pvv-j5jp-5762.json @@ -7,12 +7,8 @@ "CVE-2010-0078" ], "details": "Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.0, 9.1, 9.2MP3, 10.0MP2, and 10.3.1 allows remote attackers to affect availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5r7w-vjmq-g46c/GHSA-5r7w-vjmq-g46c.json b/advisories/unreviewed/2022/05/GHSA-5r7w-vjmq-g46c/GHSA-5r7w-vjmq-g46c.json index 2a3d79cd4f2..1fe1e46f97f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r7w-vjmq-g46c/GHSA-5r7w-vjmq-g46c.json +++ b/advisories/unreviewed/2022/05/GHSA-5r7w-vjmq-g46c/GHSA-5r7w-vjmq-g46c.json @@ -7,12 +7,8 @@ "CVE-2010-0119" ], "details": "Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to \"echoing.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rfc-ghhv-7rg5/GHSA-5rfc-ghhv-7rg5.json b/advisories/unreviewed/2022/05/GHSA-5rfc-ghhv-7rg5/GHSA-5rfc-ghhv-7rg5.json index 35143e5b58b..babbb442e14 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rfc-ghhv-7rg5/GHSA-5rfc-ghhv-7rg5.json +++ b/advisories/unreviewed/2022/05/GHSA-5rfc-ghhv-7rg5/GHSA-5rfc-ghhv-7rg5.json @@ -7,12 +7,8 @@ "CVE-2009-5128" ], "details": "The Websense V10000 appliance before 1.0.1 allows remote attackers to cause a denial of service (memory consumption and process crash) via a large file that is not properly handled during buffering.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5v2q-2wj9-7j5x/GHSA-5v2q-2wj9-7j5x.json b/advisories/unreviewed/2022/05/GHSA-5v2q-2wj9-7j5x/GHSA-5v2q-2wj9-7j5x.json index d64b50ec179..16a313bc99d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5v2q-2wj9-7j5x/GHSA-5v2q-2wj9-7j5x.json +++ b/advisories/unreviewed/2022/05/GHSA-5v2q-2wj9-7j5x/GHSA-5v2q-2wj9-7j5x.json @@ -7,12 +7,8 @@ "CVE-2010-0486" ], "details": "The WinVerifyTrust function in Authenticode Signature Verification 5.1, 6.0, and 6.1 in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly use unspecified fields in a file digest, which allows user-assisted remote attackers to execute arbitrary code via a modified (1) Portable Executable (PE) or (2) cabinet (aka .CAB) file that incorrectly appears to have a valid signature, aka \"WinVerifyTrust Signature Validation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5v58-xf49-c495/GHSA-5v58-xf49-c495.json b/advisories/unreviewed/2022/05/GHSA-5v58-xf49-c495/GHSA-5v58-xf49-c495.json index 4a7c47e8a38..384ed23c8d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5v58-xf49-c495/GHSA-5v58-xf49-c495.json +++ b/advisories/unreviewed/2022/05/GHSA-5v58-xf49-c495/GHSA-5v58-xf49-c495.json @@ -7,12 +7,8 @@ "CVE-2010-0884" ], "details": "Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3.1 and 3.2 allows local users to affect confidentiality via unknown vectors related to Data Service for Oracle E-Business Suite, a different vulnerability than CVE-2010-0883.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5xjg-wggg-qh5w/GHSA-5xjg-wggg-qh5w.json b/advisories/unreviewed/2022/05/GHSA-5xjg-wggg-qh5w/GHSA-5xjg-wggg-qh5w.json index 0cfbc69b2b2..4c8685ed84c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xjg-wggg-qh5w/GHSA-5xjg-wggg-qh5w.json +++ b/advisories/unreviewed/2022/05/GHSA-5xjg-wggg-qh5w/GHSA-5xjg-wggg-qh5w.json @@ -7,12 +7,8 @@ "CVE-2010-0358" ], "details": "Heap-based buffer overflow in the server in IBM Lotus Domino 7 and 8.5 FP1 allows remote attackers to cause a denial of service (daemon exit) and possibly have unspecified other impact via a long string in a crafted LDAP message to a TCP port, a different vulnerability than CVE-2009-3087.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5xww-5f35-hfhp/GHSA-5xww-5f35-hfhp.json b/advisories/unreviewed/2022/05/GHSA-5xww-5f35-hfhp/GHSA-5xww-5f35-hfhp.json index 524fbdf10b6..4013a41facd 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xww-5f35-hfhp/GHSA-5xww-5f35-hfhp.json +++ b/advisories/unreviewed/2022/05/GHSA-5xww-5f35-hfhp/GHSA-5xww-5f35-hfhp.json @@ -7,12 +7,8 @@ "CVE-2010-0159" ], "details": "The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -144,9 +140,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62fv-c64m-ffwf/GHSA-62fv-c64m-ffwf.json b/advisories/unreviewed/2022/05/GHSA-62fv-c64m-ffwf/GHSA-62fv-c64m-ffwf.json index 847538ebf48..353e4acaafc 100644 --- a/advisories/unreviewed/2022/05/GHSA-62fv-c64m-ffwf/GHSA-62fv-c64m-ffwf.json +++ b/advisories/unreviewed/2022/05/GHSA-62fv-c64m-ffwf/GHSA-62fv-c64m-ffwf.json @@ -7,12 +7,8 @@ "CVE-2010-0575" ], "details": "Cisco Wireless LAN Controller (WLC) software, possibly 6.0.x or possibly 4.1 through 6.0.x, allows remote attackers to bypass ACLs in the controller CPU, and consequently send network traffic to unintended segments or devices, via unspecified vectors, a different vulnerability than CVE-2010-3034.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-63gx-gp99-wcgc/GHSA-63gx-gp99-wcgc.json b/advisories/unreviewed/2022/05/GHSA-63gx-gp99-wcgc/GHSA-63gx-gp99-wcgc.json index 6a7ba1bcc06..845a9ea28f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-63gx-gp99-wcgc/GHSA-63gx-gp99-wcgc.json +++ b/advisories/unreviewed/2022/05/GHSA-63gx-gp99-wcgc/GHSA-63gx-gp99-wcgc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63jh-72mh-4j8p/GHSA-63jh-72mh-4j8p.json b/advisories/unreviewed/2022/05/GHSA-63jh-72mh-4j8p/GHSA-63jh-72mh-4j8p.json index 7c782b78bdd..1e91f11d658 100644 --- a/advisories/unreviewed/2022/05/GHSA-63jh-72mh-4j8p/GHSA-63jh-72mh-4j8p.json +++ b/advisories/unreviewed/2022/05/GHSA-63jh-72mh-4j8p/GHSA-63jh-72mh-4j8p.json @@ -7,12 +7,8 @@ "CVE-2010-0273" ], "details": "Unspecified vulnerability in Sun Java System Web Server 7.0 Update 6 on Linux allows remote attackers to execute arbitrary code by sending a process memory address and crafted data to TCP port 80, as demonstrated by the vd_sjws2 module in VulnDisco. NOTE: as of 20100106, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-64vg-cqcc-3v6g/GHSA-64vg-cqcc-3v6g.json b/advisories/unreviewed/2022/05/GHSA-64vg-cqcc-3v6g/GHSA-64vg-cqcc-3v6g.json index dbf07dd06c6..e20cdf9e5c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-64vg-cqcc-3v6g/GHSA-64vg-cqcc-3v6g.json +++ b/advisories/unreviewed/2022/05/GHSA-64vg-cqcc-3v6g/GHSA-64vg-cqcc-3v6g.json @@ -7,12 +7,8 @@ "CVE-2010-0503" ], "details": "Use-after-free vulnerability in iChat Server in Apple Mac OS X Server 10.5.8 allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-64vh-q3qf-wgf8/GHSA-64vh-q3qf-wgf8.json b/advisories/unreviewed/2022/05/GHSA-64vh-q3qf-wgf8/GHSA-64vh-q3qf-wgf8.json index 4645f082c3b..20868dc3c26 100644 --- a/advisories/unreviewed/2022/05/GHSA-64vh-q3qf-wgf8/GHSA-64vh-q3qf-wgf8.json +++ b/advisories/unreviewed/2022/05/GHSA-64vh-q3qf-wgf8/GHSA-64vh-q3qf-wgf8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6546-f2h5-84c9/GHSA-6546-f2h5-84c9.json b/advisories/unreviewed/2022/05/GHSA-6546-f2h5-84c9/GHSA-6546-f2h5-84c9.json index 7d6c076724c..d5691f54ea2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6546-f2h5-84c9/GHSA-6546-f2h5-84c9.json +++ b/advisories/unreviewed/2022/05/GHSA-6546-f2h5-84c9/GHSA-6546-f2h5-84c9.json @@ -7,12 +7,8 @@ "CVE-2009-5124" ], "details": "The Antivirus component in Comodo Internet Security before 3.11.108364.552 allows remote attackers to cause a denial of service (application crash) via a crafted packed file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-659m-4hw2-pcg3/GHSA-659m-4hw2-pcg3.json b/advisories/unreviewed/2022/05/GHSA-659m-4hw2-pcg3/GHSA-659m-4hw2-pcg3.json index 7404cf2df2f..47eed43a5e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-659m-4hw2-pcg3/GHSA-659m-4hw2-pcg3.json +++ b/advisories/unreviewed/2022/05/GHSA-659m-4hw2-pcg3/GHSA-659m-4hw2-pcg3.json @@ -7,12 +7,8 @@ "CVE-2010-0697" ], "details": "Cross-site scripting (XSS) vulnerability in the iTweak Upload module 6.x-1.x before 6.x-1.2 and 6.x-2.x before 6.x-2.3 for Drupal allows remote authenticated users, with create content and upload file permissions, to inject arbitrary web script or HTML via the file name of an uploaded file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-65fc-r6mj-6v9j/GHSA-65fc-r6mj-6v9j.json b/advisories/unreviewed/2022/05/GHSA-65fc-r6mj-6v9j/GHSA-65fc-r6mj-6v9j.json index 1132453dd8e..35a989195c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-65fc-r6mj-6v9j/GHSA-65fc-r6mj-6v9j.json +++ b/advisories/unreviewed/2022/05/GHSA-65fc-r6mj-6v9j/GHSA-65fc-r6mj-6v9j.json @@ -7,12 +7,8 @@ "CVE-2010-0734" ], "details": "content_encoding.c in libcurl 7.10.5 through 7.19.7, when zlib is enabled, does not properly restrict the amount of callback data sent to an application that requests automatic decompression, which might allow remote attackers to cause a denial of service (application crash) or have unspecified other impact by sending crafted compressed data to an application that relies on the intended data-length limit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65jr-xp2m-mpxq/GHSA-65jr-xp2m-mpxq.json b/advisories/unreviewed/2022/05/GHSA-65jr-xp2m-mpxq/GHSA-65jr-xp2m-mpxq.json index 23614fe44f7..2ca5d97a375 100644 --- a/advisories/unreviewed/2022/05/GHSA-65jr-xp2m-mpxq/GHSA-65jr-xp2m-mpxq.json +++ b/advisories/unreviewed/2022/05/GHSA-65jr-xp2m-mpxq/GHSA-65jr-xp2m-mpxq.json @@ -7,12 +7,8 @@ "CVE-2009-5103" ], "details": "Cross-site scripting (XSS) vulnerability in ATCOM Netvolution 1.0 ASP allows remote attackers to inject arbitrary web script or HTML via the email variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-65m6-pr6v-g87w/GHSA-65m6-pr6v-g87w.json b/advisories/unreviewed/2022/05/GHSA-65m6-pr6v-g87w/GHSA-65m6-pr6v-g87w.json index 64183bd95fe..2be9baef992 100644 --- a/advisories/unreviewed/2022/05/GHSA-65m6-pr6v-g87w/GHSA-65m6-pr6v-g87w.json +++ b/advisories/unreviewed/2022/05/GHSA-65m6-pr6v-g87w/GHSA-65m6-pr6v-g87w.json @@ -7,12 +7,8 @@ "CVE-2010-0269" ], "details": "The SMB client in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly allocate memory for SMB responses, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted (1) SMBv1 or (2) SMBv2 response, aka \"SMB Client Memory Allocation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-669r-j85h-hf68/GHSA-669r-j85h-hf68.json b/advisories/unreviewed/2022/05/GHSA-669r-j85h-hf68/GHSA-669r-j85h-hf68.json index 96267e00b0f..0511ef2df25 100644 --- a/advisories/unreviewed/2022/05/GHSA-669r-j85h-hf68/GHSA-669r-j85h-hf68.json +++ b/advisories/unreviewed/2022/05/GHSA-669r-j85h-hf68/GHSA-669r-j85h-hf68.json @@ -7,12 +7,8 @@ "CVE-2010-0490" ], "details": "Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka \"Uninitialized Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-66rg-464w-8q32/GHSA-66rg-464w-8q32.json b/advisories/unreviewed/2022/05/GHSA-66rg-464w-8q32/GHSA-66rg-464w-8q32.json index 719049bcbf1..3b1b0dd6d1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-66rg-464w-8q32/GHSA-66rg-464w-8q32.json +++ b/advisories/unreviewed/2022/05/GHSA-66rg-464w-8q32/GHSA-66rg-464w-8q32.json @@ -7,12 +7,8 @@ "CVE-2010-0323" ], "details": "Unspecified vulnerability in the Photo Book (goof_fotoboek) extension 1.7.14 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67cg-hqpj-xmm9/GHSA-67cg-hqpj-xmm9.json b/advisories/unreviewed/2022/05/GHSA-67cg-hqpj-xmm9/GHSA-67cg-hqpj-xmm9.json index 2fadd320679..e13873394d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-67cg-hqpj-xmm9/GHSA-67cg-hqpj-xmm9.json +++ b/advisories/unreviewed/2022/05/GHSA-67cg-hqpj-xmm9/GHSA-67cg-hqpj-xmm9.json @@ -7,12 +7,8 @@ "CVE-2010-0141" ], "details": "MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote attackers to discover usernames, passwords, and unspecified other data from the user database via a modified authentication sequence to the Audio Server, aka Bug ID CSCsv76935.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67pv-grw8-c32m/GHSA-67pv-grw8-c32m.json b/advisories/unreviewed/2022/05/GHSA-67pv-grw8-c32m/GHSA-67pv-grw8-c32m.json index 65cb896a6bc..52b2b1dc77d 100644 --- a/advisories/unreviewed/2022/05/GHSA-67pv-grw8-c32m/GHSA-67pv-grw8-c32m.json +++ b/advisories/unreviewed/2022/05/GHSA-67pv-grw8-c32m/GHSA-67pv-grw8-c32m.json @@ -7,12 +7,8 @@ "CVE-2010-0337" ], "details": "SQL injection vulnerability in the tt_news Mail alert (dl3_tt_news_alerts) extension 0.2.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68gv-xmrh-j5g5/GHSA-68gv-xmrh-j5g5.json b/advisories/unreviewed/2022/05/GHSA-68gv-xmrh-j5g5/GHSA-68gv-xmrh-j5g5.json index ff8e68d6423..0a17381b467 100644 --- a/advisories/unreviewed/2022/05/GHSA-68gv-xmrh-j5g5/GHSA-68gv-xmrh-j5g5.json +++ b/advisories/unreviewed/2022/05/GHSA-68gv-xmrh-j5g5/GHSA-68gv-xmrh-j5g5.json @@ -7,12 +7,8 @@ "CVE-2010-0165" ], "details": "The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via vectors involving certain indirect calls to the JavaScript eval function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68hw-8fjw-9pjh/GHSA-68hw-8fjw-9pjh.json b/advisories/unreviewed/2022/05/GHSA-68hw-8fjw-9pjh/GHSA-68hw-8fjw-9pjh.json index bef3d993549..e3334b2f6c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-68hw-8fjw-9pjh/GHSA-68hw-8fjw-9pjh.json +++ b/advisories/unreviewed/2022/05/GHSA-68hw-8fjw-9pjh/GHSA-68hw-8fjw-9pjh.json @@ -7,12 +7,8 @@ "CVE-2010-0446" ], "details": "Unspecified vulnerability on the HP DreamScreen 100 and 130 with firmware before 1.6.0.0, when using a web-connected configuration, allows remote attackers to obtain sensitive information via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6942-4w7c-pqj8/GHSA-6942-4w7c-pqj8.json b/advisories/unreviewed/2022/05/GHSA-6942-4w7c-pqj8/GHSA-6942-4w7c-pqj8.json index f9d3a1cfbdb..f940163d01a 100644 --- a/advisories/unreviewed/2022/05/GHSA-6942-4w7c-pqj8/GHSA-6942-4w7c-pqj8.json +++ b/advisories/unreviewed/2022/05/GHSA-6942-4w7c-pqj8/GHSA-6942-4w7c-pqj8.json @@ -7,12 +7,8 @@ "CVE-2009-5120" ], "details": "The default configuration of Apache Tomcat in Websense Manager in Websense Web Security 7.0 and Web Filter 7.0 allows connections to TCP port 1812 from arbitrary source IP addresses, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via UTF-7 text to the 404 error page of a Project Woodstock service on this port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-695f-w22f-6vhg/GHSA-695f-w22f-6vhg.json b/advisories/unreviewed/2022/05/GHSA-695f-w22f-6vhg/GHSA-695f-w22f-6vhg.json index 58662a51d32..bb8d5eba166 100644 --- a/advisories/unreviewed/2022/05/GHSA-695f-w22f-6vhg/GHSA-695f-w22f-6vhg.json +++ b/advisories/unreviewed/2022/05/GHSA-695f-w22f-6vhg/GHSA-695f-w22f-6vhg.json @@ -7,12 +7,8 @@ "CVE-2010-0058" ], "details": "freshclam in ClamAV in Apple Mac OS X 10.5.8 with Security Update 2009-005 has an incorrect launchd.plist ProgramArguments key and consequently does not run, which might allow remote attackers to introduce viruses into the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-69q5-wxg3-975x/GHSA-69q5-wxg3-975x.json b/advisories/unreviewed/2022/05/GHSA-69q5-wxg3-975x/GHSA-69q5-wxg3-975x.json index 5ad23def003..a376836ab1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-69q5-wxg3-975x/GHSA-69q5-wxg3-975x.json +++ b/advisories/unreviewed/2022/05/GHSA-69q5-wxg3-975x/GHSA-69q5-wxg3-975x.json @@ -7,12 +7,8 @@ "CVE-2010-0414" ], "details": "gnome-screensaver before 2.28.2 allows physically proximate attackers to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then disconnecting that monitor.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6f2j-xq53-97gq/GHSA-6f2j-xq53-97gq.json b/advisories/unreviewed/2022/05/GHSA-6f2j-xq53-97gq/GHSA-6f2j-xq53-97gq.json index 8e5453f1aed..204b3a56c82 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f2j-xq53-97gq/GHSA-6f2j-xq53-97gq.json +++ b/advisories/unreviewed/2022/05/GHSA-6f2j-xq53-97gq/GHSA-6f2j-xq53-97gq.json @@ -7,12 +7,8 @@ "CVE-2010-0361" ], "details": "Stack-based buffer overflow in the WebDAV implementation in webservd in Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via a long URI in an HTTP OPTIONS request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6fmc-jx85-mmx4/GHSA-6fmc-jx85-mmx4.json b/advisories/unreviewed/2022/05/GHSA-6fmc-jx85-mmx4/GHSA-6fmc-jx85-mmx4.json index 0a805deedaa..e109cd53d69 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fmc-jx85-mmx4/GHSA-6fmc-jx85-mmx4.json +++ b/advisories/unreviewed/2022/05/GHSA-6fmc-jx85-mmx4/GHSA-6fmc-jx85-mmx4.json @@ -7,12 +7,8 @@ "CVE-2009-5137" ], "details": "Stack-based buffer overflow in Mini-stream CastRipper 2.50.70 allows remote attackers to execute arbitrary code via a long URL in the [playlist] section in a .pls file, a different vector than CVE-2009-1667.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6fvg-8hhr-r65p/GHSA-6fvg-8hhr-r65p.json b/advisories/unreviewed/2022/05/GHSA-6fvg-8hhr-r65p/GHSA-6fvg-8hhr-r65p.json index 1f9ab807334..99263dfef2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fvg-8hhr-r65p/GHSA-6fvg-8hhr-r65p.json +++ b/advisories/unreviewed/2022/05/GHSA-6fvg-8hhr-r65p/GHSA-6fvg-8hhr-r65p.json @@ -7,12 +7,8 @@ "CVE-2010-0488" ], "details": "Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 does not properly handle unspecified \"encoding strings,\" which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site, aka \"Post Encoding Information Disclosure Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6g3w-8gqx-wp66/GHSA-6g3w-8gqx-wp66.json b/advisories/unreviewed/2022/05/GHSA-6g3w-8gqx-wp66/GHSA-6g3w-8gqx-wp66.json index 890b2806ef6..4cc862718d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g3w-8gqx-wp66/GHSA-6g3w-8gqx-wp66.json +++ b/advisories/unreviewed/2022/05/GHSA-6g3w-8gqx-wp66/GHSA-6g3w-8gqx-wp66.json @@ -7,12 +7,8 @@ "CVE-2010-0819" ], "details": "Unspecified vulnerability in the Windows OpenType Compact Font Format (CFF) driver in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 allows local users to execute arbitrary code via unknown vectors related to improper validation when copying data from user mode to kernel mode, aka \"OpenType CFF Font Driver Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6g4r-52jh-xv73/GHSA-6g4r-52jh-xv73.json b/advisories/unreviewed/2022/05/GHSA-6g4r-52jh-xv73/GHSA-6g4r-52jh-xv73.json index de88303262f..fb60161d892 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g4r-52jh-xv73/GHSA-6g4r-52jh-xv73.json +++ b/advisories/unreviewed/2022/05/GHSA-6g4r-52jh-xv73/GHSA-6g4r-52jh-xv73.json @@ -7,12 +7,8 @@ "CVE-2010-0545" ], "details": "The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an \"Apply to enclosed items\" action, which allows local users to bypass intended access restrictions via normal filesystem operations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6ggm-pwph-pqv3/GHSA-6ggm-pwph-pqv3.json b/advisories/unreviewed/2022/05/GHSA-6ggm-pwph-pqv3/GHSA-6ggm-pwph-pqv3.json index d0f408dbc2a..6a2308b76e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ggm-pwph-pqv3/GHSA-6ggm-pwph-pqv3.json +++ b/advisories/unreviewed/2022/05/GHSA-6ggm-pwph-pqv3/GHSA-6ggm-pwph-pqv3.json @@ -7,12 +7,8 @@ "CVE-2009-5115" ], "details": "McAfee Common Management Agent (CMA) 3.5.5 through 3.5.5.588 and 3.6.0 through 3.6.0.608, and McAfee Agent 4.0 before Patch 3, allows remote authenticated users to overwrite arbitrary files by accessing a report-writing ActiveX control COM object.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6gjj-93cg-cj2v/GHSA-6gjj-93cg-cj2v.json b/advisories/unreviewed/2022/05/GHSA-6gjj-93cg-cj2v/GHSA-6gjj-93cg-cj2v.json index ae96babeb60..307568d7fab 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gjj-93cg-cj2v/GHSA-6gjj-93cg-cj2v.json +++ b/advisories/unreviewed/2022/05/GHSA-6gjj-93cg-cj2v/GHSA-6gjj-93cg-cj2v.json @@ -7,12 +7,8 @@ "CVE-2010-0811" ], "details": "Multiple unspecified vulnerabilities in the Microsoft Internet Explorer 8 Developer Tools ActiveX control in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allow remote attackers to execute arbitrary code via unknown vectors that \"corrupt the system state,\" aka \"Microsoft Internet Explorer 8 Developer Tools Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gv9-w2gh-cw82/GHSA-6gv9-w2gh-cw82.json b/advisories/unreviewed/2022/05/GHSA-6gv9-w2gh-cw82/GHSA-6gv9-w2gh-cw82.json index 752df1412bd..1cbb925927e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gv9-w2gh-cw82/GHSA-6gv9-w2gh-cw82.json +++ b/advisories/unreviewed/2022/05/GHSA-6gv9-w2gh-cw82/GHSA-6gv9-w2gh-cw82.json @@ -7,12 +7,8 @@ "CVE-2010-0257" ], "details": "Microsoft Office Excel 2002 SP3 does not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka \"Microsoft Office Excel Record Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6h2g-jwhf-r5c6/GHSA-6h2g-jwhf-r5c6.json b/advisories/unreviewed/2022/05/GHSA-6h2g-jwhf-r5c6/GHSA-6h2g-jwhf-r5c6.json index fbf105a8e52..2fe89921865 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h2g-jwhf-r5c6/GHSA-6h2g-jwhf-r5c6.json +++ b/advisories/unreviewed/2022/05/GHSA-6h2g-jwhf-r5c6/GHSA-6h2g-jwhf-r5c6.json @@ -7,12 +7,8 @@ "CVE-2010-0882" ], "details": "Unspecified vulnerability in the Solaris component in Oracle Sun Product Suite 10 and OpenSolaris snv_134 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Trusted Extensions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6hgc-m2jj-hh5x/GHSA-6hgc-m2jj-hh5x.json b/advisories/unreviewed/2022/05/GHSA-6hgc-m2jj-hh5x/GHSA-6hgc-m2jj-hh5x.json index d37c39e3006..f200f41f202 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hgc-m2jj-hh5x/GHSA-6hgc-m2jj-hh5x.json +++ b/advisories/unreviewed/2022/05/GHSA-6hgc-m2jj-hh5x/GHSA-6hgc-m2jj-hh5x.json @@ -7,12 +7,8 @@ "CVE-2010-0619" ], "details": "Stack-based buffer overflow in the base, IPDS DLE, Forms DLE, Barcode DLE, Prescribe DLE, and Printcryption DLE components on certain Lexmark laser printers and multi-function printers allows remote attackers to execute arbitrary code or cause a denial of service (device hang) via a long argument to a PJL INQUIRE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hr4-x74v-qxgm/GHSA-6hr4-x74v-qxgm.json b/advisories/unreviewed/2022/05/GHSA-6hr4-x74v-qxgm/GHSA-6hr4-x74v-qxgm.json index 87200a61ea7..7475aa44b89 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hr4-x74v-qxgm/GHSA-6hr4-x74v-qxgm.json +++ b/advisories/unreviewed/2022/05/GHSA-6hr4-x74v-qxgm/GHSA-6hr4-x74v-qxgm.json @@ -7,12 +7,8 @@ "CVE-2010-0070" ], "details": "Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6hrh-m86r-6pjc/GHSA-6hrh-m86r-6pjc.json b/advisories/unreviewed/2022/05/GHSA-6hrh-m86r-6pjc/GHSA-6hrh-m86r-6pjc.json index cb6563dfc65..3dfdb981beb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hrh-m86r-6pjc/GHSA-6hrh-m86r-6pjc.json +++ b/advisories/unreviewed/2022/05/GHSA-6hrh-m86r-6pjc/GHSA-6hrh-m86r-6pjc.json @@ -7,12 +7,8 @@ "CVE-2010-0678" ], "details": "PHP remote file inclusion vulnerability in includes/moderation.php in Katalog Stron Hurricane 1.3.5, and possibly earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the includes_directory parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6j26-qg9p-xqqm/GHSA-6j26-qg9p-xqqm.json b/advisories/unreviewed/2022/05/GHSA-6j26-qg9p-xqqm/GHSA-6j26-qg9p-xqqm.json index 8ed0a8fb327..452de64d395 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j26-qg9p-xqqm/GHSA-6j26-qg9p-xqqm.json +++ b/advisories/unreviewed/2022/05/GHSA-6j26-qg9p-xqqm/GHSA-6j26-qg9p-xqqm.json @@ -7,12 +7,8 @@ "CVE-2010-0393" ], "details": "The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine the file that provides localized message strings, which allows local users to gain privileges via a file that contains crafted localization data with format string specifiers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6j3g-5ggq-5m62/GHSA-6j3g-5ggq-5m62.json b/advisories/unreviewed/2022/05/GHSA-6j3g-5ggq-5m62/GHSA-6j3g-5ggq-5m62.json index 6f6e26a1a7d..1f9bd31a399 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j3g-5ggq-5m62/GHSA-6j3g-5ggq-5m62.json +++ b/advisories/unreviewed/2022/05/GHSA-6j3g-5ggq-5m62/GHSA-6j3g-5ggq-5m62.json @@ -7,12 +7,8 @@ "CVE-2010-0722" ], "details": "SQL injection vulnerability in news.php in Php Auktion Pro allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6j4v-9f2q-v33c/GHSA-6j4v-9f2q-v33c.json b/advisories/unreviewed/2022/05/GHSA-6j4v-9f2q-v33c/GHSA-6j4v-9f2q-v33c.json index b4ea6269019..ea9f2abc8b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j4v-9f2q-v33c/GHSA-6j4v-9f2q-v33c.json +++ b/advisories/unreviewed/2022/05/GHSA-6j4v-9f2q-v33c/GHSA-6j4v-9f2q-v33c.json @@ -7,12 +7,8 @@ "CVE-2010-0357" ], "details": "Cross-site scripting (XSS) vulnerability in the Login page in IBM Lotus Web Content Management (WCM) 6.0.1.4, 6.0.1.5, and 6.0.1.6 before iFix 32; and 6.1.0.1 and 6.1.0.2 before iFix 24; for WebSphere Portal allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6j7w-4w4r-9xwr/GHSA-6j7w-4w4r-9xwr.json b/advisories/unreviewed/2022/05/GHSA-6j7w-4w4r-9xwr/GHSA-6j7w-4w4r-9xwr.json index f325e5fdac9..926a2f9bcbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j7w-4w4r-9xwr/GHSA-6j7w-4w4r-9xwr.json +++ b/advisories/unreviewed/2022/05/GHSA-6j7w-4w4r-9xwr/GHSA-6j7w-4w4r-9xwr.json @@ -7,12 +7,8 @@ "CVE-2010-0039" ], "details": "The Application-Level Gateway (ALG) on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 modifies PORT commands in incoming FTP traffic, which allows remote attackers to use the device's IP address for arbitrary intranet TCP traffic by leveraging write access to an intranet FTP server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6jpg-grj3-vm57/GHSA-6jpg-grj3-vm57.json b/advisories/unreviewed/2022/05/GHSA-6jpg-grj3-vm57/GHSA-6jpg-grj3-vm57.json index 44a36969201..3a5b5b4e5bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jpg-grj3-vm57/GHSA-6jpg-grj3-vm57.json +++ b/advisories/unreviewed/2022/05/GHSA-6jpg-grj3-vm57/GHSA-6jpg-grj3-vm57.json @@ -7,12 +7,8 @@ "CVE-2010-0581" ], "details": "Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attackers to execute arbitrary code via a malformed SIP message, aka Bug ID CSCsz89904, the \"SIP Packet Parsing Arbitrary Code Execution Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6m4w-j5fc-2m7r/GHSA-6m4w-j5fc-2m7r.json b/advisories/unreviewed/2022/05/GHSA-6m4w-j5fc-2m7r/GHSA-6m4w-j5fc-2m7r.json index 3c0c2bc30f1..388d535c03e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m4w-j5fc-2m7r/GHSA-6m4w-j5fc-2m7r.json +++ b/advisories/unreviewed/2022/05/GHSA-6m4w-j5fc-2m7r/GHSA-6m4w-j5fc-2m7r.json @@ -7,12 +7,8 @@ "CVE-2009-5097" ], "details": "Palm Pre WebOS 1.1 and earlier processes JavaScript in email messages, which allows remote attackers to execute arbitrary JavaScript, as demonstrated by reading PalmDatabase.db3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6p3r-79mc-w88g/GHSA-6p3r-79mc-w88g.json b/advisories/unreviewed/2022/05/GHSA-6p3r-79mc-w88g/GHSA-6p3r-79mc-w88g.json index aca8877cd48..fc405d7164f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p3r-79mc-w88g/GHSA-6p3r-79mc-w88g.json +++ b/advisories/unreviewed/2022/05/GHSA-6p3r-79mc-w88g/GHSA-6p3r-79mc-w88g.json @@ -7,12 +7,8 @@ "CVE-2010-0845" ], "details": "Unspecified vulnerability in the HotSpot Server component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -108,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6p79-qp56-xj76/GHSA-6p79-qp56-xj76.json b/advisories/unreviewed/2022/05/GHSA-6p79-qp56-xj76/GHSA-6p79-qp56-xj76.json index 0bddef7e8df..9dc30143ab9 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p79-qp56-xj76/GHSA-6p79-qp56-xj76.json +++ b/advisories/unreviewed/2022/05/GHSA-6p79-qp56-xj76/GHSA-6p79-qp56-xj76.json @@ -7,12 +7,8 @@ "CVE-2010-0016" ], "details": "The SMB client implementation in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly validate response fields, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted response, aka \"SMB Client Pool Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6pp2-r37j-3rhq/GHSA-6pp2-r37j-3rhq.json b/advisories/unreviewed/2022/05/GHSA-6pp2-r37j-3rhq/GHSA-6pp2-r37j-3rhq.json index ece5fbfa559..d1efbd44378 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pp2-r37j-3rhq/GHSA-6pp2-r37j-3rhq.json +++ b/advisories/unreviewed/2022/05/GHSA-6pp2-r37j-3rhq/GHSA-6pp2-r37j-3rhq.json @@ -7,12 +7,8 @@ "CVE-2010-0094" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18 and 5.0 Update 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is due to missing privilege checks during deserialization of RMIConnectionImpl objects, which allows remote attackers to call system-level Java functions via the ClassLoader of a constructor that is being deserialized.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6q5f-v462-fpjh/GHSA-6q5f-v462-fpjh.json b/advisories/unreviewed/2022/05/GHSA-6q5f-v462-fpjh/GHSA-6q5f-v462-fpjh.json index bc9883b054a..c6c2b01f395 100644 --- a/advisories/unreviewed/2022/05/GHSA-6q5f-v462-fpjh/GHSA-6q5f-v462-fpjh.json +++ b/advisories/unreviewed/2022/05/GHSA-6q5f-v462-fpjh/GHSA-6q5f-v462-fpjh.json @@ -7,12 +7,8 @@ "CVE-2010-0074" ], "details": "Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 7.0SP7, 8.1SP6, 9.0, 9.1, 9.2MP3, 10.0MP2, and 10.3.1 allows remote attackers to affect availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6qjv-pcp7-rgfm/GHSA-6qjv-pcp7-rgfm.json b/advisories/unreviewed/2022/05/GHSA-6qjv-pcp7-rgfm/GHSA-6qjv-pcp7-rgfm.json index c1963c8feb4..2c689c3ff11 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qjv-pcp7-rgfm/GHSA-6qjv-pcp7-rgfm.json +++ b/advisories/unreviewed/2022/05/GHSA-6qjv-pcp7-rgfm/GHSA-6qjv-pcp7-rgfm.json @@ -7,12 +7,8 @@ "CVE-2010-0634" ], "details": "Unspecified vulnerability in Fast Lexical Analyzer Generator (flex) before 2.5.35 has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6r53-qvwr-m586/GHSA-6r53-qvwr-m586.json b/advisories/unreviewed/2022/05/GHSA-6r53-qvwr-m586/GHSA-6r53-qvwr-m586.json index ff0385e058a..4cf19e977f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r53-qvwr-m586/GHSA-6r53-qvwr-m586.json +++ b/advisories/unreviewed/2022/05/GHSA-6r53-qvwr-m586/GHSA-6r53-qvwr-m586.json @@ -7,12 +7,8 @@ "CVE-2010-0431" ], "details": "QEMU-KVM, as used in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and KVM 83, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rxj-38xv-j69g/GHSA-6rxj-38xv-j69g.json b/advisories/unreviewed/2022/05/GHSA-6rxj-38xv-j69g/GHSA-6rxj-38xv-j69g.json index 6f84f774305..9822195291d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rxj-38xv-j69g/GHSA-6rxj-38xv-j69g.json +++ b/advisories/unreviewed/2022/05/GHSA-6rxj-38xv-j69g/GHSA-6rxj-38xv-j69g.json @@ -7,12 +7,8 @@ "CVE-2012-2143" ], "details": "The crypt_des (aka DES-based crypt) function in FreeBSD before 9.0-RELEASE-p2, as used in PHP, PostgreSQL, and other products, does not process the complete cleartext password if this password contains a 0x80 character, which makes it easier for context-dependent attackers to obtain access via an authentication attempt with an initial substring of the intended password, as demonstrated by a Unicode password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -124,9 +120,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vcp-6rcg-7642/GHSA-6vcp-6rcg-7642.json b/advisories/unreviewed/2022/05/GHSA-6vcp-6rcg-7642/GHSA-6vcp-6rcg-7642.json index ddf14359ce7..3ef866f2118 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vcp-6rcg-7642/GHSA-6vcp-6rcg-7642.json +++ b/advisories/unreviewed/2022/05/GHSA-6vcp-6rcg-7642/GHSA-6vcp-6rcg-7642.json @@ -7,12 +7,8 @@ "CVE-2010-0069" ], "details": "Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 7.0, SP7, 8.1SP6, 9.0, 9.1, 9.2MP3, 10.0MP1, and 10.3.0 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vmr-mj5p-3jfh/GHSA-6vmr-mj5p-3jfh.json b/advisories/unreviewed/2022/05/GHSA-6vmr-mj5p-3jfh/GHSA-6vmr-mj5p-3jfh.json index 988d278a922..b1f85765a76 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vmr-mj5p-3jfh/GHSA-6vmr-mj5p-3jfh.json +++ b/advisories/unreviewed/2022/05/GHSA-6vmr-mj5p-3jfh/GHSA-6vmr-mj5p-3jfh.json @@ -7,12 +7,8 @@ "CVE-2010-0570" ], "details": "Cisco Digital Media Manager (DMM) 5.0.x and 5.1.x has a default password for the Tomcat administration account, which makes it easier for remote attackers to execute arbitrary code via a crafted web application, aka Bug ID CSCta03378.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6w8q-vjhq-6qf2/GHSA-6w8q-vjhq-6qf2.json b/advisories/unreviewed/2022/05/GHSA-6w8q-vjhq-6qf2/GHSA-6w8q-vjhq-6qf2.json index 40edd8a3a60..c9aaa1e376c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w8q-vjhq-6qf2/GHSA-6w8q-vjhq-6qf2.json +++ b/advisories/unreviewed/2022/05/GHSA-6w8q-vjhq-6qf2/GHSA-6w8q-vjhq-6qf2.json @@ -7,12 +7,8 @@ "CVE-2010-0460" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in staff/index.php in Kayako SupportSuite 3.60.04 and earlier allow remote authenticated users to inject arbitrary web script or HTML via the (1) subject parameter and (2) contents parameter (aka body) in an insertquestion action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wgv-wjfv-42f8/GHSA-6wgv-wjfv-42f8.json b/advisories/unreviewed/2022/05/GHSA-6wgv-wjfv-42f8/GHSA-6wgv-wjfv-42f8.json index eab1fb149b0..124601252b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wgv-wjfv-42f8/GHSA-6wgv-wjfv-42f8.json +++ b/advisories/unreviewed/2022/05/GHSA-6wgv-wjfv-42f8/GHSA-6wgv-wjfv-42f8.json @@ -7,12 +7,8 @@ "CVE-2010-0266" ], "details": "Microsoft Office Outlook 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_ATTACH_METHOD property value of ATTACH_BY_REFERENCE, which allows user-assisted remote attackers to execute arbitrary code via a crafted message, aka \"Microsoft Outlook SMB Attachment Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6whw-vgfh-5mch/GHSA-6whw-vgfh-5mch.json b/advisories/unreviewed/2022/05/GHSA-6whw-vgfh-5mch/GHSA-6whw-vgfh-5mch.json index 1127c4ae90a..184349da1d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6whw-vgfh-5mch/GHSA-6whw-vgfh-5mch.json +++ b/advisories/unreviewed/2022/05/GHSA-6whw-vgfh-5mch/GHSA-6whw-vgfh-5mch.json @@ -7,12 +7,8 @@ "CVE-2010-0052" ], "details": "Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to \"callbacks for HTML elements.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6x6x-3qjf-jrp3/GHSA-6x6x-3qjf-jrp3.json b/advisories/unreviewed/2022/05/GHSA-6x6x-3qjf-jrp3/GHSA-6x6x-3qjf-jrp3.json index ff4c84225eb..d29262f6d15 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x6x-3qjf-jrp3/GHSA-6x6x-3qjf-jrp3.json +++ b/advisories/unreviewed/2022/05/GHSA-6x6x-3qjf-jrp3/GHSA-6x6x-3qjf-jrp3.json @@ -7,12 +7,8 @@ "CVE-2010-0062" ], "details": "Heap-based buffer overflow in quicktime.qts in CoreMedia and QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed .3g2 movie file with H.263 encoding that triggers an incorrect buffer length calculation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6xc6-38fw-mpv2/GHSA-6xc6-38fw-mpv2.json b/advisories/unreviewed/2022/05/GHSA-6xc6-38fw-mpv2/GHSA-6xc6-38fw-mpv2.json index fd90b26dcb7..f7889724e2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xc6-38fw-mpv2/GHSA-6xc6-38fw-mpv2.json +++ b/advisories/unreviewed/2022/05/GHSA-6xc6-38fw-mpv2/GHSA-6xc6-38fw-mpv2.json @@ -7,12 +7,8 @@ "CVE-2010-0246" ], "details": "Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka \"Uninitialized Memory Corruption Vulnerability,\" a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0245.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-727v-v8qj-j7hq/GHSA-727v-v8qj-j7hq.json b/advisories/unreviewed/2022/05/GHSA-727v-v8qj-j7hq/GHSA-727v-v8qj-j7hq.json index c619b722471..cd6787e323d 100644 --- a/advisories/unreviewed/2022/05/GHSA-727v-v8qj-j7hq/GHSA-727v-v8qj-j7hq.json +++ b/advisories/unreviewed/2022/05/GHSA-727v-v8qj-j7hq/GHSA-727v-v8qj-j7hq.json @@ -7,12 +7,8 @@ "CVE-2010-0328" ], "details": "Cross-site scripting (XSS) vulnerability in the Unit Converter (cs2_unitconv) extension 1.0.4 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72cc-8g3w-p9rf/GHSA-72cc-8g3w-p9rf.json b/advisories/unreviewed/2022/05/GHSA-72cc-8g3w-p9rf/GHSA-72cc-8g3w-p9rf.json index 968f1ed8ba5..d4ecbec0fe7 100644 --- a/advisories/unreviewed/2022/05/GHSA-72cc-8g3w-p9rf/GHSA-72cc-8g3w-p9rf.json +++ b/advisories/unreviewed/2022/05/GHSA-72cc-8g3w-p9rf/GHSA-72cc-8g3w-p9rf.json @@ -7,12 +7,8 @@ "CVE-2010-0261" ], "details": "Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2 and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted spreadsheet in which \"a MDXSET record is broken up into several records,\" aka \"Microsoft Office Excel MDXSET Record Heap Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72fh-93mx-wg3m/GHSA-72fh-93mx-wg3m.json b/advisories/unreviewed/2022/05/GHSA-72fh-93mx-wg3m/GHSA-72fh-93mx-wg3m.json index 15269fb3f95..6e2903a49a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-72fh-93mx-wg3m/GHSA-72fh-93mx-wg3m.json +++ b/advisories/unreviewed/2022/05/GHSA-72fh-93mx-wg3m/GHSA-72fh-93mx-wg3m.json @@ -7,12 +7,8 @@ "CVE-2010-0376" ], "details": "Cross-site scripting (XSS) vulnerability in product_list.php in JCE-Tech PHP Calendars, downloaded 2010-01-11, allows remote attackers to inject arbitrary web script or HTML via the cat parameter. NOTE: this issue is reportedly resultant from a forced SQL error message that occurs from exploitation of CVE-2010-0375.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-742x-98m9-g236/GHSA-742x-98m9-g236.json b/advisories/unreviewed/2022/05/GHSA-742x-98m9-g236/GHSA-742x-98m9-g236.json index ffebf1a538b..b8487678a82 100644 --- a/advisories/unreviewed/2022/05/GHSA-742x-98m9-g236/GHSA-742x-98m9-g236.json +++ b/advisories/unreviewed/2022/05/GHSA-742x-98m9-g236/GHSA-742x-98m9-g236.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74jg-v6qv-47p6/GHSA-74jg-v6qv-47p6.json b/advisories/unreviewed/2022/05/GHSA-74jg-v6qv-47p6/GHSA-74jg-v6qv-47p6.json index becfcd0c652..4b15bc9cf66 100644 --- a/advisories/unreviewed/2022/05/GHSA-74jg-v6qv-47p6/GHSA-74jg-v6qv-47p6.json +++ b/advisories/unreviewed/2022/05/GHSA-74jg-v6qv-47p6/GHSA-74jg-v6qv-47p6.json @@ -7,12 +7,8 @@ "CVE-2010-0303" ], "details": "mystring.c in hybserv in IRCD-Hybrid (aka Hybrid2 IRC Services) 1.9.2 through 1.9.4 allows remote attackers to cause a denial of service (daemon crash) via a \":help \\t\" private message to the MemoServ service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74p3-m43j-523p/GHSA-74p3-m43j-523p.json b/advisories/unreviewed/2022/05/GHSA-74p3-m43j-523p/GHSA-74p3-m43j-523p.json index 08e3aafed14..5474d493f73 100644 --- a/advisories/unreviewed/2022/05/GHSA-74p3-m43j-523p/GHSA-74p3-m43j-523p.json +++ b/advisories/unreviewed/2022/05/GHSA-74p3-m43j-523p/GHSA-74p3-m43j-523p.json @@ -7,12 +7,8 @@ "CVE-2010-0551" ], "details": "HTTP authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to read authentication headers of other users via a large request with an incorrect authentication attempt, which includes sensitive memory in the response. NOTE: this is referred to as a \"memory leak\" by some sources, but is better characterized as \"memory disclosure.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-754r-c6vv-mv5g/GHSA-754r-c6vv-mv5g.json b/advisories/unreviewed/2022/05/GHSA-754r-c6vv-mv5g/GHSA-754r-c6vv-mv5g.json index dfab0026855..a439ecf0167 100644 --- a/advisories/unreviewed/2022/05/GHSA-754r-c6vv-mv5g/GHSA-754r-c6vv-mv5g.json +++ b/advisories/unreviewed/2022/05/GHSA-754r-c6vv-mv5g/GHSA-754r-c6vv-mv5g.json @@ -7,12 +7,8 @@ "CVE-2009-5138" ], "details": "GnuTLS before 2.7.6, when the GNUTLS_VERIFY_ALLOW_X509_V1_CA_CRT flag is not enabled, treats version 1 X.509 certificates as intermediate CAs, which allows remote attackers to bypass intended restrictions by leveraging a X.509 V1 certificate from a trusted CA to issue new certificates, a different vulnerability than CVE-2014-1959.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-755g-9f69-83cm/GHSA-755g-9f69-83cm.json b/advisories/unreviewed/2022/05/GHSA-755g-9f69-83cm/GHSA-755g-9f69-83cm.json index 878a99d23ed..993b00accda 100644 --- a/advisories/unreviewed/2022/05/GHSA-755g-9f69-83cm/GHSA-755g-9f69-83cm.json +++ b/advisories/unreviewed/2022/05/GHSA-755g-9f69-83cm/GHSA-755g-9f69-83cm.json @@ -7,12 +7,8 @@ "CVE-2010-0423" ], "details": "gtkimhtml.c in Pidgin before 2.6.6 allows remote attackers to cause a denial of service (CPU consumption and application hang) by sending many smileys in a (1) IM or (2) chat.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -124,9 +120,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75rh-cj3q-gpq7/GHSA-75rh-cj3q-gpq7.json b/advisories/unreviewed/2022/05/GHSA-75rh-cj3q-gpq7/GHSA-75rh-cj3q-gpq7.json index 26453f520c6..d44277974db 100644 --- a/advisories/unreviewed/2022/05/GHSA-75rh-cj3q-gpq7/GHSA-75rh-cj3q-gpq7.json +++ b/advisories/unreviewed/2022/05/GHSA-75rh-cj3q-gpq7/GHSA-75rh-cj3q-gpq7.json @@ -7,12 +7,8 @@ "CVE-2010-0531" ], "details": "Apple iTunes before 9.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted MP4 podcast file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75wq-g7g6-fpm6/GHSA-75wq-g7g6-fpm6.json b/advisories/unreviewed/2022/05/GHSA-75wq-g7g6-fpm6/GHSA-75wq-g7g6-fpm6.json index b5d1a9b371b..d1fa201f94c 100644 --- a/advisories/unreviewed/2022/05/GHSA-75wq-g7g6-fpm6/GHSA-75wq-g7g6-fpm6.json +++ b/advisories/unreviewed/2022/05/GHSA-75wq-g7g6-fpm6/GHSA-75wq-g7g6-fpm6.json @@ -7,12 +7,8 @@ "CVE-2010-0638" ], "details": "Cross-site request forgery (CSRF) vulnerability in WebCalendar 1.2.0 allows remote attackers to hijack the authentication of administrators for requests that change the administrative password via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76v2-q54h-r7wc/GHSA-76v2-q54h-r7wc.json b/advisories/unreviewed/2022/05/GHSA-76v2-q54h-r7wc/GHSA-76v2-q54h-r7wc.json index c350d5786c1..8aaf28c6cca 100644 --- a/advisories/unreviewed/2022/05/GHSA-76v2-q54h-r7wc/GHSA-76v2-q54h-r7wc.json +++ b/advisories/unreviewed/2022/05/GHSA-76v2-q54h-r7wc/GHSA-76v2-q54h-r7wc.json @@ -7,12 +7,8 @@ "CVE-2010-0728" ], "details": "smbd in Samba 3.3.11, 3.4.6, and 3.5.0, when libcap support is enabled, runs with the CAP_DAC_OVERRIDE capability, which allows remote authenticated users to bypass intended file permissions via standard filesystem operations with any client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-77cq-2r3w-6xhj/GHSA-77cq-2r3w-6xhj.json b/advisories/unreviewed/2022/05/GHSA-77cq-2r3w-6xhj/GHSA-77cq-2r3w-6xhj.json index 9efed1d654a..0b74563aedb 100644 --- a/advisories/unreviewed/2022/05/GHSA-77cq-2r3w-6xhj/GHSA-77cq-2r3w-6xhj.json +++ b/advisories/unreviewed/2022/05/GHSA-77cq-2r3w-6xhj/GHSA-77cq-2r3w-6xhj.json @@ -7,12 +7,8 @@ "CVE-2010-0421" ], "details": "Array index error in the hb_ot_layout_build_glyph_classes function in pango/opentype/hb-ot-layout.cc in Pango before 1.27.1 allows context-dependent attackers to cause a denial of service (application crash) via a crafted font file, related to building a synthetic Glyph Definition (aka GDEF) table by using this font's charmap and the Unicode property database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77x9-9vv7-m53g/GHSA-77x9-9vv7-m53g.json b/advisories/unreviewed/2022/05/GHSA-77x9-9vv7-m53g/GHSA-77x9-9vv7-m53g.json index 8f3ba076041..f54196a4771 100644 --- a/advisories/unreviewed/2022/05/GHSA-77x9-9vv7-m53g/GHSA-77x9-9vv7-m53g.json +++ b/advisories/unreviewed/2022/05/GHSA-77x9-9vv7-m53g/GHSA-77x9-9vv7-m53g.json @@ -7,12 +7,8 @@ "CVE-2010-0029" ], "details": "Buffer overflow in Microsoft Office PowerPoint 2002 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka \"PowerPoint File Path Handling Buffer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-78rm-x38x-8fwp/GHSA-78rm-x38x-8fwp.json b/advisories/unreviewed/2022/05/GHSA-78rm-x38x-8fwp/GHSA-78rm-x38x-8fwp.json index dd20c7c981a..709b3a3ec42 100644 --- a/advisories/unreviewed/2022/05/GHSA-78rm-x38x-8fwp/GHSA-78rm-x38x-8fwp.json +++ b/advisories/unreviewed/2022/05/GHSA-78rm-x38x-8fwp/GHSA-78rm-x38x-8fwp.json @@ -7,12 +7,8 @@ "CVE-2009-5101" ], "details": "Pentaho BI Server 1.7.0.1062 and earlier includes the session ID (JSESSIONID) in the URL, which allows attackers to obtain it from session history, referer headers, or sniffing of web traffic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-793h-2rhx-h6r4/GHSA-793h-2rhx-h6r4.json b/advisories/unreviewed/2022/05/GHSA-793h-2rhx-h6r4/GHSA-793h-2rhx-h6r4.json index 9182c6f0cdd..334c28c2e73 100644 --- a/advisories/unreviewed/2022/05/GHSA-793h-2rhx-h6r4/GHSA-793h-2rhx-h6r4.json +++ b/advisories/unreviewed/2022/05/GHSA-793h-2rhx-h6r4/GHSA-793h-2rhx-h6r4.json @@ -7,12 +7,8 @@ "CVE-2010-0642" ], "details": "Cisco Collaboration Server (CCS) 5 allows remote attackers to read the source code of JHTML files via URL encoded characters in the filename extension, as demonstrated by (1) changing .jhtml to %2Ejhtml, (2) changing .jhtml to .jhtm%6C, (3) appending %00 after .jhtml, and (4) appending %c0%80 after .jhtml, related to the (a) doc/docindex.jhtml, (b) browserId/wizardForm.jhtml, (c) webline/html/forms/callback.jhtml, (d) webline/html/forms/callbackICM.jhtml, (e) webline/html/agent/AgentFrame.jhtml, (f) webline/html/agent/default/badlogin.jhtml, (g) callme/callForm.jhtml, (h) webline/html/multichatui/nowDefunctWindow.jhtml, (i) browserId/wizard.jhtml, (j) admin/CiscoAdmin.jhtml, (k) msccallme/mscCallForm.jhtml, and (l) webline/html/admin/wcs/LoginPage.jhtml components.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7967-3g5v-3pfc/GHSA-7967-3g5v-3pfc.json b/advisories/unreviewed/2022/05/GHSA-7967-3g5v-3pfc/GHSA-7967-3g5v-3pfc.json index 382f89d2937..73557acb44e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7967-3g5v-3pfc/GHSA-7967-3g5v-3pfc.json +++ b/advisories/unreviewed/2022/05/GHSA-7967-3g5v-3pfc/GHSA-7967-3g5v-3pfc.json @@ -7,12 +7,8 @@ "CVE-2010-0021" ], "details": "Multiple race conditions in the SMB implementation in the Server service in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allow remote attackers to cause a denial of service (system hang) via a crafted (1) SMBv1 or (2) SMBv2 Negotiate packet, aka \"SMB Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7c97-97wj-vp33/GHSA-7c97-97wj-vp33.json b/advisories/unreviewed/2022/05/GHSA-7c97-97wj-vp33/GHSA-7c97-97wj-vp33.json index 6dc9c59869f..ddb8d8d2cc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c97-97wj-vp33/GHSA-7c97-97wj-vp33.json +++ b/advisories/unreviewed/2022/05/GHSA-7c97-97wj-vp33/GHSA-7c97-97wj-vp33.json @@ -7,12 +7,8 @@ "CVE-2010-0419" ], "details": "The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not properly restrict writing of segment selectors to segment registers, which might allow guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7crj-j86f-65vw/GHSA-7crj-j86f-65vw.json b/advisories/unreviewed/2022/05/GHSA-7crj-j86f-65vw/GHSA-7crj-j86f-65vw.json index d070083b9cc..63a0f8cb38d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7crj-j86f-65vw/GHSA-7crj-j86f-65vw.json +++ b/advisories/unreviewed/2022/05/GHSA-7crj-j86f-65vw/GHSA-7crj-j86f-65vw.json @@ -7,12 +7,8 @@ "CVE-2010-0701" ], "details": "SQL injection vulnerability in ForceChangePassword.jsp in Newgen Software OmniDocs allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7f5c-7r4j-r8cc/GHSA-7f5c-7r4j-r8cc.json b/advisories/unreviewed/2022/05/GHSA-7f5c-7r4j-r8cc/GHSA-7f5c-7r4j-r8cc.json index f32ba9fe660..fbd596f2b6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f5c-7r4j-r8cc/GHSA-7f5c-7r4j-r8cc.json +++ b/advisories/unreviewed/2022/05/GHSA-7f5c-7r4j-r8cc/GHSA-7f5c-7r4j-r8cc.json @@ -7,12 +7,8 @@ "CVE-2010-0757" ], "details": "Unrestricted file upload vulnerability in index.php/Attach in WikyBlog 1.7.3rc2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension using the uploadform action, then accessing it via a direct request to the file in userfiles/[username]/uploaded/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f8x-2qmr-vpm2/GHSA-7f8x-2qmr-vpm2.json b/advisories/unreviewed/2022/05/GHSA-7f8x-2qmr-vpm2/GHSA-7f8x-2qmr-vpm2.json index 36d678ad612..83d5249d8ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f8x-2qmr-vpm2/GHSA-7f8x-2qmr-vpm2.json +++ b/advisories/unreviewed/2022/05/GHSA-7f8x-2qmr-vpm2/GHSA-7f8x-2qmr-vpm2.json @@ -7,12 +7,8 @@ "CVE-2010-0673" ], "details": "SQL injection vulnerability in cplphoto.php in the Copperleaf Photolog plugin 0.16, and possibly earlier, for WordPress allows remote attackers to execute arbitrary SQL commands via the postid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7fgf-gwfr-hp5w/GHSA-7fgf-gwfr-hp5w.json b/advisories/unreviewed/2022/05/GHSA-7fgf-gwfr-hp5w/GHSA-7fgf-gwfr-hp5w.json index 7e128993cf5..e6651d3b21f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fgf-gwfr-hp5w/GHSA-7fgf-gwfr-hp5w.json +++ b/advisories/unreviewed/2022/05/GHSA-7fgf-gwfr-hp5w/GHSA-7fgf-gwfr-hp5w.json @@ -7,12 +7,8 @@ "CVE-2010-0400" ], "details": "SQL injection vulnerability in lib/user.php in mahara 1.0.4 allows remote attackers to execute arbitrary SQL commands via a username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g8w-vphh-j565/GHSA-7g8w-vphh-j565.json b/advisories/unreviewed/2022/05/GHSA-7g8w-vphh-j565/GHSA-7g8w-vphh-j565.json index 2b3d916031c..4041f71fd2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g8w-vphh-j565/GHSA-7g8w-vphh-j565.json +++ b/advisories/unreviewed/2022/05/GHSA-7g8w-vphh-j565/GHSA-7g8w-vphh-j565.json @@ -7,12 +7,8 @@ "CVE-2010-0386" ], "details": "The default configuration of Sun Java System Application Server 7 and 7 2004Q2 enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authentication credentials via a cross-site tracing (XST) attack, a related issue to CVE-2004-2763 and CVE-2005-3398.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7grg-p5c8-59hg/GHSA-7grg-p5c8-59hg.json b/advisories/unreviewed/2022/05/GHSA-7grg-p5c8-59hg/GHSA-7grg-p5c8-59hg.json index 26c0e7250a1..7c5c1cac974 100644 --- a/advisories/unreviewed/2022/05/GHSA-7grg-p5c8-59hg/GHSA-7grg-p5c8-59hg.json +++ b/advisories/unreviewed/2022/05/GHSA-7grg-p5c8-59hg/GHSA-7grg-p5c8-59hg.json @@ -7,12 +7,8 @@ "CVE-2010-0347" ], "details": "Cross-site scripting (XSS) vulnerability in the VD / Geomap (vd_geomap) extension 0.3.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hjw-w33m-2jqc/GHSA-7hjw-w33m-2jqc.json b/advisories/unreviewed/2022/05/GHSA-7hjw-w33m-2jqc/GHSA-7hjw-w33m-2jqc.json index e7e4de3f0e8..239c1b8d95c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hjw-w33m-2jqc/GHSA-7hjw-w33m-2jqc.json +++ b/advisories/unreviewed/2022/05/GHSA-7hjw-w33m-2jqc/GHSA-7hjw-w33m-2jqc.json @@ -7,12 +7,8 @@ "CVE-2010-0150" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.2), 8.1 before 8.1(2.37), and 8.2 before 8.2(1.16); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCsy91157.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hp8-hwrp-vfhp/GHSA-7hp8-hwrp-vfhp.json b/advisories/unreviewed/2022/05/GHSA-7hp8-hwrp-vfhp/GHSA-7hp8-hwrp-vfhp.json index 9e3bedc8c75..f2d2b67598c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hp8-hwrp-vfhp/GHSA-7hp8-hwrp-vfhp.json +++ b/advisories/unreviewed/2022/05/GHSA-7hp8-hwrp-vfhp/GHSA-7hp8-hwrp-vfhp.json @@ -7,12 +7,8 @@ "CVE-2010-0243" ], "details": "Buffer overflow in MSO.DLL in Microsoft Office XP SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via a crafted Office document, aka \"MSO.DLL Buffer Overflow.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7j23-jgvg-w62h/GHSA-7j23-jgvg-w62h.json b/advisories/unreviewed/2022/05/GHSA-7j23-jgvg-w62h/GHSA-7j23-jgvg-w62h.json index 52903a0f783..84d04751347 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j23-jgvg-w62h/GHSA-7j23-jgvg-w62h.json +++ b/advisories/unreviewed/2022/05/GHSA-7j23-jgvg-w62h/GHSA-7j23-jgvg-w62h.json @@ -7,12 +7,8 @@ "CVE-2010-0180" ], "details": "Install/Filesystem.pm in Bugzilla 3.5.1 through 3.6 and 3.7, when use_suexec is enabled, uses world-readable permissions for the localconfig files, which allows local users to read sensitive configuration fields, as demonstrated by the database password field and the site_wide_secret field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7j7c-fpxp-8wjc/GHSA-7j7c-fpxp-8wjc.json b/advisories/unreviewed/2022/05/GHSA-7j7c-fpxp-8wjc/GHSA-7j7c-fpxp-8wjc.json index 988b8562483..206acd085a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j7c-fpxp-8wjc/GHSA-7j7c-fpxp-8wjc.json +++ b/advisories/unreviewed/2022/05/GHSA-7j7c-fpxp-8wjc/GHSA-7j7c-fpxp-8wjc.json @@ -7,12 +7,8 @@ "CVE-2010-0334" ], "details": "SQL injection vulnerability in the Vote rank for news (vote_for_tt_news) extension 1.0.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jr7-p2g8-6cfq/GHSA-7jr7-p2g8-6cfq.json b/advisories/unreviewed/2022/05/GHSA-7jr7-p2g8-6cfq/GHSA-7jr7-p2g8-6cfq.json index 512ab407efd..7125ceabb4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jr7-p2g8-6cfq/GHSA-7jr7-p2g8-6cfq.json +++ b/advisories/unreviewed/2022/05/GHSA-7jr7-p2g8-6cfq/GHSA-7jr7-p2g8-6cfq.json @@ -7,12 +7,8 @@ "CVE-2010-0117" ], "details": "RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows do not properly handle dimensions during YUV420 transformations, which might allow remote attackers to execute arbitrary code via crafted MP4 content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mcc-6vvm-m53x/GHSA-7mcc-6vvm-m53x.json b/advisories/unreviewed/2022/05/GHSA-7mcc-6vvm-m53x/GHSA-7mcc-6vvm-m53x.json index 0cccae8915f..f51319089e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mcc-6vvm-m53x/GHSA-7mcc-6vvm-m53x.json +++ b/advisories/unreviewed/2022/05/GHSA-7mcc-6vvm-m53x/GHSA-7mcc-6vvm-m53x.json @@ -7,12 +7,8 @@ "CVE-2010-0214" ], "details": "The administrative interface on the PolyVision RoomWizard with firmware 3.2.3 places the Sync Connector Active Directory (AD) credentials in a web form that is accessed over HTTP on port 80, which allows remote attackers to obtain sensitive information by reading the HTML source code corresponding to the /admin/sign/DeviceSynch URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mcw-6r84-frfh/GHSA-7mcw-6r84-frfh.json b/advisories/unreviewed/2022/05/GHSA-7mcw-6r84-frfh/GHSA-7mcw-6r84-frfh.json index 2b0ca2ae596..bea2e6da8d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mcw-6r84-frfh/GHSA-7mcw-6r84-frfh.json +++ b/advisories/unreviewed/2022/05/GHSA-7mcw-6r84-frfh/GHSA-7mcw-6r84-frfh.json @@ -7,12 +7,8 @@ "CVE-2010-0191" ], "details": "Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified vectors, related to a \"prefix protocol handler vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mg2-6qgr-3p64/GHSA-7mg2-6qgr-3p64.json b/advisories/unreviewed/2022/05/GHSA-7mg2-6qgr-3p64/GHSA-7mg2-6qgr-3p64.json index 90eb4f03ac5..257489fedcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mg2-6qgr-3p64/GHSA-7mg2-6qgr-3p64.json +++ b/advisories/unreviewed/2022/05/GHSA-7mg2-6qgr-3p64/GHSA-7mg2-6qgr-3p64.json @@ -7,12 +7,8 @@ "CVE-2010-0301" ], "details": "main.C in maildrop 2.3.0 and earlier, when run by root with the -d option, uses the gid of root for execution of the .mailfilter file in a user's home directory, which allows local users to gain privileges via a crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7p7h-58wp-83q6/GHSA-7p7h-58wp-83q6.json b/advisories/unreviewed/2022/05/GHSA-7p7h-58wp-83q6/GHSA-7p7h-58wp-83q6.json index 109801c0e8d..00ef87483c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p7h-58wp-83q6/GHSA-7p7h-58wp-83q6.json +++ b/advisories/unreviewed/2022/05/GHSA-7p7h-58wp-83q6/GHSA-7p7h-58wp-83q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7pr6-6xvw-9gq7/GHSA-7pr6-6xvw-9gq7.json b/advisories/unreviewed/2022/05/GHSA-7pr6-6xvw-9gq7/GHSA-7pr6-6xvw-9gq7.json index ebc9197d251..83ac2943c68 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pr6-6xvw-9gq7/GHSA-7pr6-6xvw-9gq7.json +++ b/advisories/unreviewed/2022/05/GHSA-7pr6-6xvw-9gq7/GHSA-7pr6-6xvw-9gq7.json @@ -7,12 +7,8 @@ "CVE-2010-0814" ], "details": "The Microsoft Access Wizard Controls in ACCWIZ.dll in Microsoft Office Access 2003 SP3 and 2007 SP1 and SP2 do not properly interact with the memory-allocation approach used by Internet Explorer during instantiation, which allows remote attackers to execute arbitrary code via a web site that references multiple ActiveX controls, as demonstrated by the ImexGrid and FieldList controls, aka \"Access ActiveX Control Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7r9c-232f-pq69/GHSA-7r9c-232f-pq69.json b/advisories/unreviewed/2022/05/GHSA-7r9c-232f-pq69/GHSA-7r9c-232f-pq69.json index 9316dec964d..7f69a00e7f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r9c-232f-pq69/GHSA-7r9c-232f-pq69.json +++ b/advisories/unreviewed/2022/05/GHSA-7r9c-232f-pq69/GHSA-7r9c-232f-pq69.json @@ -7,12 +7,8 @@ "CVE-2010-0494" ], "details": "Cross-domain vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted HTML document in a situation where the client user drags one browser window across another browser window, aka \"HTML Element Cross-Domain Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7rpx-j367-5grh/GHSA-7rpx-j367-5grh.json b/advisories/unreviewed/2022/05/GHSA-7rpx-j367-5grh/GHSA-7rpx-j367-5grh.json index e1792d76884..465fc1fa219 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rpx-j367-5grh/GHSA-7rpx-j367-5grh.json +++ b/advisories/unreviewed/2022/05/GHSA-7rpx-j367-5grh/GHSA-7rpx-j367-5grh.json @@ -7,12 +7,8 @@ "CVE-2010-0389" ], "details": "The admin server in Sun Java System Web Server 7.0 Update 6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an HTTP request that lacks a method token.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vrx-w4v5-hwph/GHSA-7vrx-w4v5-hwph.json b/advisories/unreviewed/2022/05/GHSA-7vrx-w4v5-hwph/GHSA-7vrx-w4v5-hwph.json index 8a61fd0a569..578db731f67 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vrx-w4v5-hwph/GHSA-7vrx-w4v5-hwph.json +++ b/advisories/unreviewed/2022/05/GHSA-7vrx-w4v5-hwph/GHSA-7vrx-w4v5-hwph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w8g-7q9j-4m8v/GHSA-7w8g-7q9j-4m8v.json b/advisories/unreviewed/2022/05/GHSA-7w8g-7q9j-4m8v/GHSA-7w8g-7q9j-4m8v.json index 5059b105862..bb91c51c1eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w8g-7q9j-4m8v/GHSA-7w8g-7q9j-4m8v.json +++ b/advisories/unreviewed/2022/05/GHSA-7w8g-7q9j-4m8v/GHSA-7w8g-7q9j-4m8v.json @@ -7,12 +7,8 @@ "CVE-2010-0793" ], "details": "Buffer overflow in BarnOwl before 1.5.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted CC: header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7x24-m435-6p35/GHSA-7x24-m435-6p35.json b/advisories/unreviewed/2022/05/GHSA-7x24-m435-6p35/GHSA-7x24-m435-6p35.json index a61a7f0485e..175cc33ca7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x24-m435-6p35/GHSA-7x24-m435-6p35.json +++ b/advisories/unreviewed/2022/05/GHSA-7x24-m435-6p35/GHSA-7x24-m435-6p35.json @@ -7,12 +7,8 @@ "CVE-2010-0320" ], "details": "Cross-site scripting (XSS) vulnerability in submitlink.php in Glitter Central Script allows remote attackers to inject arbitrary web script or HTML via the catid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7xgr-cxmr-5q3f/GHSA-7xgr-cxmr-5q3f.json b/advisories/unreviewed/2022/05/GHSA-7xgr-cxmr-5q3f/GHSA-7xgr-cxmr-5q3f.json index 7b48bf46138..e16dc0680b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xgr-cxmr-5q3f/GHSA-7xgr-cxmr-5q3f.json +++ b/advisories/unreviewed/2022/05/GHSA-7xgr-cxmr-5q3f/GHSA-7xgr-cxmr-5q3f.json @@ -7,12 +7,8 @@ "CVE-2010-0019" ], "details": "Microsoft Silverlight 3 before 3.0.50611.0 on Windows, and before 3.0.41130.0 on Mac OS X, does not properly handle pointers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and framework outage) via a crafted web site, aka \"Microsoft Silverlight Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7xwr-ggr5-9p9v/GHSA-7xwr-ggr5-9p9v.json b/advisories/unreviewed/2022/05/GHSA-7xwr-ggr5-9p9v/GHSA-7xwr-ggr5-9p9v.json index a372724dacb..7cfc3b464e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xwr-ggr5-9p9v/GHSA-7xwr-ggr5-9p9v.json +++ b/advisories/unreviewed/2022/05/GHSA-7xwr-ggr5-9p9v/GHSA-7xwr-ggr5-9p9v.json @@ -7,12 +7,8 @@ "CVE-2010-0562" ], "details": "The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-824g-39r8-p8w4/GHSA-824g-39r8-p8w4.json b/advisories/unreviewed/2022/05/GHSA-824g-39r8-p8w4/GHSA-824g-39r8-p8w4.json index 9b39377b8e8..513afa4550d 100644 --- a/advisories/unreviewed/2022/05/GHSA-824g-39r8-p8w4/GHSA-824g-39r8-p8w4.json +++ b/advisories/unreviewed/2022/05/GHSA-824g-39r8-p8w4/GHSA-824g-39r8-p8w4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -63,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-828f-jqq8-fh9w/GHSA-828f-jqq8-fh9w.json b/advisories/unreviewed/2022/05/GHSA-828f-jqq8-fh9w/GHSA-828f-jqq8-fh9w.json index 39c95ad7895..10fe33bfc6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-828f-jqq8-fh9w/GHSA-828f-jqq8-fh9w.json +++ b/advisories/unreviewed/2022/05/GHSA-828f-jqq8-fh9w/GHSA-828f-jqq8-fh9w.json @@ -7,12 +7,8 @@ "CVE-2010-0448" ], "details": "Unspecified vulnerability in HP SOA Registry Foundation 6.63 and 6.64 allows remote attackers to obtain \"unauthorized access to data\" via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-82c2-q9r7-c94r/GHSA-82c2-q9r7-c94r.json b/advisories/unreviewed/2022/05/GHSA-82c2-q9r7-c94r/GHSA-82c2-q9r7-c94r.json index 24531fe37f1..6c2d8d59e37 100644 --- a/advisories/unreviewed/2022/05/GHSA-82c2-q9r7-c94r/GHSA-82c2-q9r7-c94r.json +++ b/advisories/unreviewed/2022/05/GHSA-82c2-q9r7-c94r/GHSA-82c2-q9r7-c94r.json @@ -7,12 +7,8 @@ "CVE-2010-0422" ], "details": "gnome-screensaver 2.28.x before 2.28.3 does not properly synchronize the state of screen locking and the unlock dialog in situations involving a change to the number of monitors, which allows physically proximate attackers to bypass screen locking and access an unattended workstation by connecting and disconnecting monitors multiple times, a related issue to CVE-2010-0414.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-82j8-6pp8-485c/GHSA-82j8-6pp8-485c.json b/advisories/unreviewed/2022/05/GHSA-82j8-6pp8-485c/GHSA-82j8-6pp8-485c.json index f3b57d1f6b8..74271e013f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-82j8-6pp8-485c/GHSA-82j8-6pp8-485c.json +++ b/advisories/unreviewed/2022/05/GHSA-82j8-6pp8-485c/GHSA-82j8-6pp8-485c.json @@ -7,12 +7,8 @@ "CVE-2010-0345" ], "details": "Cross-site scripting (XSS) vulnerability in the Majordomo extension 1.1.3 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-833p-5v27-qv7x/GHSA-833p-5v27-qv7x.json b/advisories/unreviewed/2022/05/GHSA-833p-5v27-qv7x/GHSA-833p-5v27-qv7x.json index abaad685995..7ccf3224103 100644 --- a/advisories/unreviewed/2022/05/GHSA-833p-5v27-qv7x/GHSA-833p-5v27-qv7x.json +++ b/advisories/unreviewed/2022/05/GHSA-833p-5v27-qv7x/GHSA-833p-5v27-qv7x.json @@ -7,12 +7,8 @@ "CVE-2010-0018" ], "details": "Integer overflow in the Embedded OpenType (EOT) Font Engine (t2embed.dll) in Microsoft Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows remote attackers to execute arbitrary code via compressed data that represents a crafted EOT font, aka \"Microtype Express Compressed Fonts Integer Flaw in the LZCOMP Decompressor Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-838g-ff3f-wpf6/GHSA-838g-ff3f-wpf6.json b/advisories/unreviewed/2022/05/GHSA-838g-ff3f-wpf6/GHSA-838g-ff3f-wpf6.json index c58940646c2..208816d6028 100644 --- a/advisories/unreviewed/2022/05/GHSA-838g-ff3f-wpf6/GHSA-838g-ff3f-wpf6.json +++ b/advisories/unreviewed/2022/05/GHSA-838g-ff3f-wpf6/GHSA-838g-ff3f-wpf6.json @@ -7,12 +7,8 @@ "CVE-2010-0829" ], "details": "Multiple array index errors in set.c in dvipng 1.11 and 1.12, and teTeX, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed DVI file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-83p9-rx59-w8cr/GHSA-83p9-rx59-w8cr.json b/advisories/unreviewed/2022/05/GHSA-83p9-rx59-w8cr/GHSA-83p9-rx59-w8cr.json index fb1da01144c..baa7a3957d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-83p9-rx59-w8cr/GHSA-83p9-rx59-w8cr.json +++ b/advisories/unreviewed/2022/05/GHSA-83p9-rx59-w8cr/GHSA-83p9-rx59-w8cr.json @@ -7,12 +7,8 @@ "CVE-2010-0696" ], "details": "Directory traversal vulnerability in includes/download.php in the JoomlaWorks AllVideos (Jw_allVideos) plugin 3.0 through 3.2 for Joomla! allows remote attackers to read arbitrary files via a ./../.../ (modified dot dot) in the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-849f-xm79-q5pg/GHSA-849f-xm79-q5pg.json b/advisories/unreviewed/2022/05/GHSA-849f-xm79-q5pg/GHSA-849f-xm79-q5pg.json index acf1aa1c278..16e44dd4cbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-849f-xm79-q5pg/GHSA-849f-xm79-q5pg.json +++ b/advisories/unreviewed/2022/05/GHSA-849f-xm79-q5pg/GHSA-849f-xm79-q5pg.json @@ -7,12 +7,8 @@ "CVE-2010-0708" ], "details": "Multiple unspecified vulnerabilities in (1) ns-slapd and (2) slapd.exe in Sun Directory Server Enterprise Edition 7.0, Sun Java System Directory Server 5.2, and Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 allow remote attackers to cause a denial of service (daemon crash) via a crafted LDAP search request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-855f-vpmx-8c43/GHSA-855f-vpmx-8c43.json b/advisories/unreviewed/2022/05/GHSA-855f-vpmx-8c43/GHSA-855f-vpmx-8c43.json index 448c1547ab7..a3c91968de1 100644 --- a/advisories/unreviewed/2022/05/GHSA-855f-vpmx-8c43/GHSA-855f-vpmx-8c43.json +++ b/advisories/unreviewed/2022/05/GHSA-855f-vpmx-8c43/GHSA-855f-vpmx-8c43.json @@ -7,12 +7,8 @@ "CVE-2010-0122" ], "details": "Multiple SQL injection vulnerabilities in Employee Timeclock Software 0.99 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to (a) auth.php or (b) login_action.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85r2-29qv-9cmr/GHSA-85r2-29qv-9cmr.json b/advisories/unreviewed/2022/05/GHSA-85r2-29qv-9cmr/GHSA-85r2-29qv-9cmr.json index bebeb6ea9f3..0c1bcd9fe13 100644 --- a/advisories/unreviewed/2022/05/GHSA-85r2-29qv-9cmr/GHSA-85r2-29qv-9cmr.json +++ b/advisories/unreviewed/2022/05/GHSA-85r2-29qv-9cmr/GHSA-85r2-29qv-9cmr.json @@ -7,12 +7,8 @@ "CVE-2010-0343" ], "details": "SQL injection vulnerability in the Clan Users List (pb_clanlist) extension 0.0.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86vr-cgmf-qfp3/GHSA-86vr-cgmf-qfp3.json b/advisories/unreviewed/2022/05/GHSA-86vr-cgmf-qfp3/GHSA-86vr-cgmf-qfp3.json index b142f57cc01..6737c0eacf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-86vr-cgmf-qfp3/GHSA-86vr-cgmf-qfp3.json +++ b/advisories/unreviewed/2022/05/GHSA-86vr-cgmf-qfp3/GHSA-86vr-cgmf-qfp3.json @@ -7,12 +7,8 @@ "CVE-2010-0064" ], "details": "DesktopServices in Apple Mac OS X 10.6 before 10.6.3 preserves file ownership during an authenticated Finder copy, which might allow local users to bypass intended disk-quota restrictions and have unspecified other impact by copying files owned by other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-875q-qqc7-vvpg/GHSA-875q-qqc7-vvpg.json b/advisories/unreviewed/2022/05/GHSA-875q-qqc7-vvpg/GHSA-875q-qqc7-vvpg.json index 235fede77cd..147c35780dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-875q-qqc7-vvpg/GHSA-875q-qqc7-vvpg.json +++ b/advisories/unreviewed/2022/05/GHSA-875q-qqc7-vvpg/GHSA-875q-qqc7-vvpg.json @@ -7,12 +7,8 @@ "CVE-2010-0403" ], "details": "Directory traversal vulnerability in about.php in phpGroupWare (phpgw) before 0.9.16.016 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the app parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-87j5-gppq-mq6h/GHSA-87j5-gppq-mq6h.json b/advisories/unreviewed/2022/05/GHSA-87j5-gppq-mq6h/GHSA-87j5-gppq-mq6h.json index 0c7c8333dca..8e1f2f991a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-87j5-gppq-mq6h/GHSA-87j5-gppq-mq6h.json +++ b/advisories/unreviewed/2022/05/GHSA-87j5-gppq-mq6h/GHSA-87j5-gppq-mq6h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-87x4-2c3p-r924/GHSA-87x4-2c3p-r924.json b/advisories/unreviewed/2022/05/GHSA-87x4-2c3p-r924/GHSA-87x4-2c3p-r924.json index 362a48c78bc..5e55934433c 100644 --- a/advisories/unreviewed/2022/05/GHSA-87x4-2c3p-r924/GHSA-87x4-2c3p-r924.json +++ b/advisories/unreviewed/2022/05/GHSA-87x4-2c3p-r924/GHSA-87x4-2c3p-r924.json @@ -7,12 +7,8 @@ "CVE-2010-0294" ], "details": "chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88jg-r73m-6589/GHSA-88jg-r73m-6589.json b/advisories/unreviewed/2022/05/GHSA-88jg-r73m-6589/GHSA-88jg-r73m-6589.json index e86b9b11cbd..46d7238314b 100644 --- a/advisories/unreviewed/2022/05/GHSA-88jg-r73m-6589/GHSA-88jg-r73m-6589.json +++ b/advisories/unreviewed/2022/05/GHSA-88jg-r73m-6589/GHSA-88jg-r73m-6589.json @@ -7,12 +7,8 @@ "CVE-2010-0346" ], "details": "Cross-site scripting (XSS) vulnerability in the Tip many friends (mimi_tipfriends) extension 0.0.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88m9-g755-gjf2/GHSA-88m9-g755-gjf2.json b/advisories/unreviewed/2022/05/GHSA-88m9-g755-gjf2/GHSA-88m9-g755-gjf2.json index 0784aaacaab..927638bfd21 100644 --- a/advisories/unreviewed/2022/05/GHSA-88m9-g755-gjf2/GHSA-88m9-g755-gjf2.json +++ b/advisories/unreviewed/2022/05/GHSA-88m9-g755-gjf2/GHSA-88m9-g755-gjf2.json @@ -7,12 +7,8 @@ "CVE-2009-5100" ], "details": "Pentaho BI Server 1.7.0.1062 and earlier does not set the autocomplete tag to off on web pages using a password field, which might allow physically proximate attackers to obtain the password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88r7-g8q7-p769/GHSA-88r7-g8q7-p769.json b/advisories/unreviewed/2022/05/GHSA-88r7-g8q7-p769/GHSA-88r7-g8q7-p769.json index bb9b9cc3f99..381e962d245 100644 --- a/advisories/unreviewed/2022/05/GHSA-88r7-g8q7-p769/GHSA-88r7-g8q7-p769.json +++ b/advisories/unreviewed/2022/05/GHSA-88r7-g8q7-p769/GHSA-88r7-g8q7-p769.json @@ -7,12 +7,8 @@ "CVE-2010-0810" ], "details": "The kernel in Microsoft Windows Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2, does not properly handle unspecified exceptions, which allows local users to cause a denial of service (reboot) via a crafted application, aka \"Windows Kernel Exception Handler Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-89gq-vp5v-fw85/GHSA-89gq-vp5v-fw85.json b/advisories/unreviewed/2022/05/GHSA-89gq-vp5v-fw85/GHSA-89gq-vp5v-fw85.json index 6c6ab68beff..8ad0b9752ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-89gq-vp5v-fw85/GHSA-89gq-vp5v-fw85.json +++ b/advisories/unreviewed/2022/05/GHSA-89gq-vp5v-fw85/GHSA-89gq-vp5v-fw85.json @@ -7,12 +7,8 @@ "CVE-2010-0004" ], "details": "ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f72-282j-f5f8/GHSA-8f72-282j-f5f8.json b/advisories/unreviewed/2022/05/GHSA-8f72-282j-f5f8/GHSA-8f72-282j-f5f8.json index 9f7d3d3114f..ece7e3a4bb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f72-282j-f5f8/GHSA-8f72-282j-f5f8.json +++ b/advisories/unreviewed/2022/05/GHSA-8f72-282j-f5f8/GHSA-8f72-282j-f5f8.json @@ -7,12 +7,8 @@ "CVE-2010-0071" ], "details": "Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8fgf-qjq6-rg8m/GHSA-8fgf-qjq6-rg8m.json b/advisories/unreviewed/2022/05/GHSA-8fgf-qjq6-rg8m/GHSA-8fgf-qjq6-rg8m.json index 85aa33b31ad..9bbe5c62597 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fgf-qjq6-rg8m/GHSA-8fgf-qjq6-rg8m.json +++ b/advisories/unreviewed/2022/05/GHSA-8fgf-qjq6-rg8m/GHSA-8fgf-qjq6-rg8m.json @@ -7,12 +7,8 @@ "CVE-2010-0265" ], "details": "Buffer overflow in Microsoft Windows Movie Maker 2.1, 2.6, and 6.0, and Microsoft Producer 2003, allows remote attackers to execute arbitrary code via a crafted project (.MSWMM) file, aka \"Movie Maker and Producer Buffer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fjr-4fgp-chvf/GHSA-8fjr-4fgp-chvf.json b/advisories/unreviewed/2022/05/GHSA-8fjr-4fgp-chvf/GHSA-8fjr-4fgp-chvf.json index 882f941c9c1..166b98c9324 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fjr-4fgp-chvf/GHSA-8fjr-4fgp-chvf.json +++ b/advisories/unreviewed/2022/05/GHSA-8fjr-4fgp-chvf/GHSA-8fjr-4fgp-chvf.json @@ -7,12 +7,8 @@ "CVE-2010-0237" ], "details": "The kernel in Microsoft Windows 2000 SP4 and XP SP2 and SP3 allows local users to gain privileges by creating a symbolic link from an untrusted registry hive to a trusted registry hive, aka \"Windows Kernel Symbolic Link Creation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8frw-h99g-7h23/GHSA-8frw-h99g-7h23.json b/advisories/unreviewed/2022/05/GHSA-8frw-h99g-7h23/GHSA-8frw-h99g-7h23.json index d3bf0e95907..35dc47b3bdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-8frw-h99g-7h23/GHSA-8frw-h99g-7h23.json +++ b/advisories/unreviewed/2022/05/GHSA-8frw-h99g-7h23/GHSA-8frw-h99g-7h23.json @@ -7,12 +7,8 @@ "CVE-2010-0564" ], "details": "Buffer overflow in Trend Micro URL Filtering Engine (TMUFE) in OfficeScan 8.0 before SP1 Patch 5 - Build 3510, possibly tmufeng.dll before 3.0.0.1029, allows attackers to cause a denial of service (crash or OfficeScan hang) via unspecified vectors. NOTE: it is likely that this issue also affects tmufeng.dll before 2.0.0.1049 for OfficeScan 10.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hj3-27pm-6v64/GHSA-8hj3-27pm-6v64.json b/advisories/unreviewed/2022/05/GHSA-8hj3-27pm-6v64/GHSA-8hj3-27pm-6v64.json index 3d13c78a9e1..0bb38e936fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hj3-27pm-6v64/GHSA-8hj3-27pm-6v64.json +++ b/advisories/unreviewed/2022/05/GHSA-8hj3-27pm-6v64/GHSA-8hj3-27pm-6v64.json @@ -7,12 +7,8 @@ "CVE-2010-0683" ], "details": "Unspecified vulnerability in TIBRepoServer5.jar in TIBCO Administrator 5.4.0 through 5.6.0, when JMS transport is used, allows remote authenticated users to execute arbitrary code on all domain nodes via vectors related to leveraging administrative credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j95-63h3-gqvw/GHSA-8j95-63h3-gqvw.json b/advisories/unreviewed/2022/05/GHSA-8j95-63h3-gqvw/GHSA-8j95-63h3-gqvw.json index 3c59f059ea0..b6c2427b1ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j95-63h3-gqvw/GHSA-8j95-63h3-gqvw.json +++ b/advisories/unreviewed/2022/05/GHSA-8j95-63h3-gqvw/GHSA-8j95-63h3-gqvw.json @@ -7,12 +7,8 @@ "CVE-2010-0584" ], "details": "Unspecified vulnerability in Cisco IOS 12.4, when NAT SCCP fragmentation support is enabled, allows remote attackers to cause a denial of service (device reload) via crafted Skinny Client Control Protocol (SCCP) packets, aka Bug ID CSCsy09250.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8m6f-jm2w-hq3h/GHSA-8m6f-jm2w-hq3h.json b/advisories/unreviewed/2022/05/GHSA-8m6f-jm2w-hq3h/GHSA-8m6f-jm2w-hq3h.json index fa56bddfcdc..f816beeaefa 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m6f-jm2w-hq3h/GHSA-8m6f-jm2w-hq3h.json +++ b/advisories/unreviewed/2022/05/GHSA-8m6f-jm2w-hq3h/GHSA-8m6f-jm2w-hq3h.json @@ -7,12 +7,8 @@ "CVE-2010-0586" ], "details": "Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed Skinny Client Control Protocol (SCCP) message, aka Bug ID CSCsz49741, the \"SCCP Request Handling Denial of Service Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8m7g-3wf3-3hff/GHSA-8m7g-3wf3-3hff.json b/advisories/unreviewed/2022/05/GHSA-8m7g-3wf3-3hff/GHSA-8m7g-3wf3-3hff.json index 59b878ba1ea..39ed429ee40 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m7g-3wf3-3hff/GHSA-8m7g-3wf3-3hff.json +++ b/advisories/unreviewed/2022/05/GHSA-8m7g-3wf3-3hff/GHSA-8m7g-3wf3-3hff.json @@ -7,12 +7,8 @@ "CVE-2010-0178" ], "details": "Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, does not prevent applets from interpreting mouse clicks as drag-and-drop actions, which allows remote attackers to execute arbitrary JavaScript with Chrome privileges by loading a chrome: URL and then loading a javascript: URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m94-mr2v-9fhp/GHSA-8m94-mr2v-9fhp.json b/advisories/unreviewed/2022/05/GHSA-8m94-mr2v-9fhp/GHSA-8m94-mr2v-9fhp.json index 52cc03d882b..e4bdd88d1c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m94-mr2v-9fhp/GHSA-8m94-mr2v-9fhp.json +++ b/advisories/unreviewed/2022/05/GHSA-8m94-mr2v-9fhp/GHSA-8m94-mr2v-9fhp.json @@ -7,12 +7,8 @@ "CVE-2010-0140" ], "details": "Multiple unspecified vulnerabilities in the web server in Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.3, and possibly 5 allow remote attackers to create (1) user or (2) administrator accounts via a crafted URL in a request to the internal interface, aka Bug IDs CSCtc59231 and CSCtd40661.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8p62-8jvq-2hh6/GHSA-8p62-8jvq-2hh6.json b/advisories/unreviewed/2022/05/GHSA-8p62-8jvq-2hh6/GHSA-8p62-8jvq-2hh6.json index 048360b82b3..9ad8e14bba7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p62-8jvq-2hh6/GHSA-8p62-8jvq-2hh6.json +++ b/advisories/unreviewed/2022/05/GHSA-8p62-8jvq-2hh6/GHSA-8p62-8jvq-2hh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p9h-cf62-j26q/GHSA-8p9h-cf62-j26q.json b/advisories/unreviewed/2022/05/GHSA-8p9h-cf62-j26q/GHSA-8p9h-cf62-j26q.json index 84c5b5862cd..f9a040751be 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p9h-cf62-j26q/GHSA-8p9h-cf62-j26q.json +++ b/advisories/unreviewed/2022/05/GHSA-8p9h-cf62-j26q/GHSA-8p9h-cf62-j26q.json @@ -7,12 +7,8 @@ "CVE-2010-0396" ], "details": "Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify arbitrary files via a crafted Debian source archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pc9-qhj9-cjc3/GHSA-8pc9-qhj9-cjc3.json b/advisories/unreviewed/2022/05/GHSA-8pc9-qhj9-cjc3/GHSA-8pc9-qhj9-cjc3.json index 25b31865fe9..4dda343e2da 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pc9-qhj9-cjc3/GHSA-8pc9-qhj9-cjc3.json +++ b/advisories/unreviewed/2022/05/GHSA-8pc9-qhj9-cjc3/GHSA-8pc9-qhj9-cjc3.json @@ -7,12 +7,8 @@ "CVE-2010-0702" ], "details": "SQL injection vulnerability in cisco/services/PhonecDirectory.php in Fonality Trixbox 2.2.4 allows remote attackers to execute arbitrary SQL commands via the ID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pjf-mf88-ccv8/GHSA-8pjf-mf88-ccv8.json b/advisories/unreviewed/2022/05/GHSA-8pjf-mf88-ccv8/GHSA-8pjf-mf88-ccv8.json index a8b436a2b71..c964787871e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pjf-mf88-ccv8/GHSA-8pjf-mf88-ccv8.json +++ b/advisories/unreviewed/2022/05/GHSA-8pjf-mf88-ccv8/GHSA-8pjf-mf88-ccv8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8pwq-jc34-j7q9/GHSA-8pwq-jc34-j7q9.json b/advisories/unreviewed/2022/05/GHSA-8pwq-jc34-j7q9/GHSA-8pwq-jc34-j7q9.json index 33604e234ea..48c8b9bc765 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pwq-jc34-j7q9/GHSA-8pwq-jc34-j7q9.json +++ b/advisories/unreviewed/2022/05/GHSA-8pwq-jc34-j7q9/GHSA-8pwq-jc34-j7q9.json @@ -7,12 +7,8 @@ "CVE-2010-0471" ], "details": "SQL injection vulnerability in the comment submission interface (includes/comment.php) in Enano CMS before 1.0.6pl1 allows remote attackers to execute arbitrary SQL commands via unspecified parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8q29-pxvg-f8q6/GHSA-8q29-pxvg-f8q6.json b/advisories/unreviewed/2022/05/GHSA-8q29-pxvg-f8q6/GHSA-8q29-pxvg-f8q6.json index a02a4ad00fd..117f25ff1c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8q29-pxvg-f8q6/GHSA-8q29-pxvg-f8q6.json +++ b/advisories/unreviewed/2022/05/GHSA-8q29-pxvg-f8q6/GHSA-8q29-pxvg-f8q6.json @@ -7,12 +7,8 @@ "CVE-2010-0812" ], "details": "Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allow remote attackers to bypass intended IPv4 source-address restrictions via a mismatched IPv6 source address in a tunneled ISATAP packet, aka \"ISATAP IPv6 Source Address Spoofing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qc6-g8vf-6hgp/GHSA-8qc6-g8vf-6hgp.json b/advisories/unreviewed/2022/05/GHSA-8qc6-g8vf-6hgp/GHSA-8qc6-g8vf-6hgp.json index 83442662a9c..d2592b47f8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qc6-g8vf-6hgp/GHSA-8qc6-g8vf-6hgp.json +++ b/advisories/unreviewed/2022/05/GHSA-8qc6-g8vf-6hgp/GHSA-8qc6-g8vf-6hgp.json @@ -7,12 +7,8 @@ "CVE-2010-0445" ], "details": "Unspecified vulnerability in HP Network Node Manager (NNM) 8.10, 8.11, 8.12, and 8.13 allows remote attackers to execute arbitrary commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8r37-j9gc-53g7/GHSA-8r37-j9gc-53g7.json b/advisories/unreviewed/2022/05/GHSA-8r37-j9gc-53g7/GHSA-8r37-j9gc-53g7.json index 16474b1f322..7d96df3fffd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r37-j9gc-53g7/GHSA-8r37-j9gc-53g7.json +++ b/advisories/unreviewed/2022/05/GHSA-8r37-j9gc-53g7/GHSA-8r37-j9gc-53g7.json @@ -7,12 +7,8 @@ "CVE-2009-5134" ], "details": "Buffer overflow in the \"create torrent dialog\" functionality in uTorrent 1.8.3 build 15772, and possibly other versions before 1.8.3 (Build 16010), allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a text file containing a large string. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8rj8-7q6h-g4g9/GHSA-8rj8-7q6h-g4g9.json b/advisories/unreviewed/2022/05/GHSA-8rj8-7q6h-g4g9/GHSA-8rj8-7q6h-g4g9.json index 373163a1501..5fe46b7217e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rj8-7q6h-g4g9/GHSA-8rj8-7q6h-g4g9.json +++ b/advisories/unreviewed/2022/05/GHSA-8rj8-7q6h-g4g9/GHSA-8rj8-7q6h-g4g9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w48-v6c6-mw8h/GHSA-8w48-v6c6-mw8h.json b/advisories/unreviewed/2022/05/GHSA-8w48-v6c6-mw8h/GHSA-8w48-v6c6-mw8h.json index 645b6617312..567219859a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w48-v6c6-mw8h/GHSA-8w48-v6c6-mw8h.json +++ b/advisories/unreviewed/2022/05/GHSA-8w48-v6c6-mw8h/GHSA-8w48-v6c6-mw8h.json @@ -7,12 +7,8 @@ "CVE-2010-0054" ], "details": "Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving HTML IMG elements.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8w8r-x75f-4wvv/GHSA-8w8r-x75f-4wvv.json b/advisories/unreviewed/2022/05/GHSA-8w8r-x75f-4wvv/GHSA-8w8r-x75f-4wvv.json index 072034edf86..a0aba367115 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w8r-x75f-4wvv/GHSA-8w8r-x75f-4wvv.json +++ b/advisories/unreviewed/2022/05/GHSA-8w8r-x75f-4wvv/GHSA-8w8r-x75f-4wvv.json @@ -7,12 +7,8 @@ "CVE-2010-0197" ], "details": "Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0194, CVE-2010-0201, and CVE-2010-0204.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wc9-qc22-p84p/GHSA-8wc9-qc22-p84p.json b/advisories/unreviewed/2022/05/GHSA-8wc9-qc22-p84p/GHSA-8wc9-qc22-p84p.json index dd260b3fb9a..14fa21d46eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wc9-qc22-p84p/GHSA-8wc9-qc22-p84p.json +++ b/advisories/unreviewed/2022/05/GHSA-8wc9-qc22-p84p/GHSA-8wc9-qc22-p84p.json @@ -7,12 +7,8 @@ "CVE-2010-0604" ], "details": "Unspecified vulnerability in the SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S10 allows remote attackers to cause a denial of service (device crash) via unknown SIP traffic, as demonstrated by \"SIP testing,\" aka Bug ID CSCsk38165.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wq4-qwwj-mvjj/GHSA-8wq4-qwwj-mvjj.json b/advisories/unreviewed/2022/05/GHSA-8wq4-qwwj-mvjj/GHSA-8wq4-qwwj-mvjj.json index 288e1414d68..89235dd6955 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wq4-qwwj-mvjj/GHSA-8wq4-qwwj-mvjj.json +++ b/advisories/unreviewed/2022/05/GHSA-8wq4-qwwj-mvjj/GHSA-8wq4-qwwj-mvjj.json @@ -7,12 +7,8 @@ "CVE-2010-0556" ], "details": "browser/login/login_prompt.cc in Google Chrome before 4.0.249.89 populates an authentication dialog with credentials that were stored by Password Manager for a different web site, which allows user-assisted remote HTTP servers to obtain sensitive information via a URL that requires authentication, as demonstrated by a URL in the SRC attribute of an IMG element.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wrc-c7jv-4q34/GHSA-8wrc-c7jv-4q34.json b/advisories/unreviewed/2022/05/GHSA-8wrc-c7jv-4q34/GHSA-8wrc-c7jv-4q34.json index e398e1cfcf7..dd92703ec87 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wrc-c7jv-4q34/GHSA-8wrc-c7jv-4q34.json +++ b/advisories/unreviewed/2022/05/GHSA-8wrc-c7jv-4q34/GHSA-8wrc-c7jv-4q34.json @@ -7,12 +7,8 @@ "CVE-2010-0691" ], "details": "SQL injection vulnerability in druckansicht.php in JTL-Shop 2 allows remote attackers to execute arbitrary SQL commands via the s parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wvc-qm7p-5pq5/GHSA-8wvc-qm7p-5pq5.json b/advisories/unreviewed/2022/05/GHSA-8wvc-qm7p-5pq5/GHSA-8wvc-qm7p-5pq5.json index 816568abfae..c74a544b6f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wvc-qm7p-5pq5/GHSA-8wvc-qm7p-5pq5.json +++ b/advisories/unreviewed/2022/05/GHSA-8wvc-qm7p-5pq5/GHSA-8wvc-qm7p-5pq5.json @@ -7,12 +7,8 @@ "CVE-2010-0216" ], "details": "authenticate_ad_setup_finished.cfm in MediaCAST 8 and earlier allows remote attackers to discover usernames and cleartext passwords by reading the error messages returned for requests that use the UserID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wx4-qqgw-5fv2/GHSA-8wx4-qqgw-5fv2.json b/advisories/unreviewed/2022/05/GHSA-8wx4-qqgw-5fv2/GHSA-8wx4-qqgw-5fv2.json index 06134ec11e6..767a639d68a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wx4-qqgw-5fv2/GHSA-8wx4-qqgw-5fv2.json +++ b/advisories/unreviewed/2022/05/GHSA-8wx4-qqgw-5fv2/GHSA-8wx4-qqgw-5fv2.json @@ -7,12 +7,8 @@ "CVE-2010-0370" ], "details": "Cross-site scripting (XSS) vulnerability in the Node Blocks module 5.x-1.1 and earlier, and 6.x-1.3 and earlier, a module for Drupal, allows remote authenticated users, with permissions to create or edit content and administer blocks, to inject arbitrary web script or HTML via the edit-title parameter (aka block title).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8xvp-wq7g-q2vj/GHSA-8xvp-wq7g-q2vj.json b/advisories/unreviewed/2022/05/GHSA-8xvp-wq7g-q2vj/GHSA-8xvp-wq7g-q2vj.json index 1d83292a341..22a9845f2f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xvp-wq7g-q2vj/GHSA-8xvp-wq7g-q2vj.json +++ b/advisories/unreviewed/2022/05/GHSA-8xvp-wq7g-q2vj/GHSA-8xvp-wq7g-q2vj.json @@ -7,12 +7,8 @@ "CVE-2010-0010" ], "details": "Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -112,9 +108,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9387-39pg-qwg6/GHSA-9387-39pg-qwg6.json b/advisories/unreviewed/2022/05/GHSA-9387-39pg-qwg6/GHSA-9387-39pg-qwg6.json index b4c4b544dca..c00ab043116 100644 --- a/advisories/unreviewed/2022/05/GHSA-9387-39pg-qwg6/GHSA-9387-39pg-qwg6.json +++ b/advisories/unreviewed/2022/05/GHSA-9387-39pg-qwg6/GHSA-9387-39pg-qwg6.json @@ -7,12 +7,8 @@ "CVE-2010-0700" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in WampServer 2.0i allows remote attackers to inject arbitrary web script or HTML via the lang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9399-p33p-285c/GHSA-9399-p33p-285c.json b/advisories/unreviewed/2022/05/GHSA-9399-p33p-285c/GHSA-9399-p33p-285c.json index f19a3d34365..a981091ed28 100644 --- a/advisories/unreviewed/2022/05/GHSA-9399-p33p-285c/GHSA-9399-p33p-285c.json +++ b/advisories/unreviewed/2022/05/GHSA-9399-p33p-285c/GHSA-9399-p33p-285c.json @@ -7,12 +7,8 @@ "CVE-2010-0795" ], "details": "SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in an event action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-939q-vfrh-p4c9/GHSA-939q-vfrh-p4c9.json b/advisories/unreviewed/2022/05/GHSA-939q-vfrh-p4c9/GHSA-939q-vfrh-p4c9.json index 3b630036b3e..68ed9ed063f 100644 --- a/advisories/unreviewed/2022/05/GHSA-939q-vfrh-p4c9/GHSA-939q-vfrh-p4c9.json +++ b/advisories/unreviewed/2022/05/GHSA-939q-vfrh-p4c9/GHSA-939q-vfrh-p4c9.json @@ -7,12 +7,8 @@ "CVE-2010-0342" ], "details": "SQL injection vulnerability in the Reports for Job (job_reports) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-93vc-2h9g-v2wq/GHSA-93vc-2h9g-v2wq.json b/advisories/unreviewed/2022/05/GHSA-93vc-2h9g-v2wq/GHSA-93vc-2h9g-v2wq.json index 7560f201fd1..129596b8c6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-93vc-2h9g-v2wq/GHSA-93vc-2h9g-v2wq.json +++ b/advisories/unreviewed/2022/05/GHSA-93vc-2h9g-v2wq/GHSA-93vc-2h9g-v2wq.json @@ -7,12 +7,8 @@ "CVE-2010-0255" ], "details": "Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving JavaScript exploit code that constructs a reference to a file://127.0.0.1 URL, aka the dynamic OBJECT tag vulnerability, as demonstrated by obtaining the data from an index.dat file, a variant of CVE-2009-1140 and related to CVE-2008-1448.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94c4-qg85-58m3/GHSA-94c4-qg85-58m3.json b/advisories/unreviewed/2022/05/GHSA-94c4-qg85-58m3/GHSA-94c4-qg85-58m3.json index 9f9ff47f01c..25eb8437d4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-94c4-qg85-58m3/GHSA-94c4-qg85-58m3.json +++ b/advisories/unreviewed/2022/05/GHSA-94c4-qg85-58m3/GHSA-94c4-qg85-58m3.json @@ -7,12 +7,8 @@ "CVE-2009-5132" ], "details": "The Filtering Service in Websense Web Security and Web Filter before 6.3.1 Hotfix 106 and 7.x before 7.1 allow remote attackers to cause a denial of service (filtering outage) via a crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94j2-2w6f-7qp9/GHSA-94j2-2w6f-7qp9.json b/advisories/unreviewed/2022/05/GHSA-94j2-2w6f-7qp9/GHSA-94j2-2w6f-7qp9.json index 767f9c6e5b9..6ac90ce5b72 100644 --- a/advisories/unreviewed/2022/05/GHSA-94j2-2w6f-7qp9/GHSA-94j2-2w6f-7qp9.json +++ b/advisories/unreviewed/2022/05/GHSA-94j2-2w6f-7qp9/GHSA-94j2-2w6f-7qp9.json @@ -7,12 +7,8 @@ "CVE-2010-0864" ], "details": "Unspecified vulnerability in the Retail - Oracle Retail Place In-Season component in Oracle Industry Product Suite 12.2 allows remote attackers to affect integrity via unknown vectors related to Online Help.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94r2-v2xw-w95p/GHSA-94r2-v2xw-w95p.json b/advisories/unreviewed/2022/05/GHSA-94r2-v2xw-w95p/GHSA-94r2-v2xw-w95p.json index 6969bd66dbc..b92483551fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-94r2-v2xw-w95p/GHSA-94r2-v2xw-w95p.json +++ b/advisories/unreviewed/2022/05/GHSA-94r2-v2xw-w95p/GHSA-94r2-v2xw-w95p.json @@ -7,12 +7,8 @@ "CVE-2010-0055" ], "details": "xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-95vr-vmv6-h6qj/GHSA-95vr-vmv6-h6qj.json b/advisories/unreviewed/2022/05/GHSA-95vr-vmv6-h6qj/GHSA-95vr-vmv6-h6qj.json index d3dd93ca374..9baef0cd365 100644 --- a/advisories/unreviewed/2022/05/GHSA-95vr-vmv6-h6qj/GHSA-95vr-vmv6-h6qj.json +++ b/advisories/unreviewed/2022/05/GHSA-95vr-vmv6-h6qj/GHSA-95vr-vmv6-h6qj.json @@ -7,12 +7,8 @@ "CVE-2010-0350" ], "details": "Directory traversal vulnerability in the Photo Book (goof_fotoboek) extension 1.7.14 and earlier for TYPO3 has unknown impact and remote attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95w6-27hf-p635/GHSA-95w6-27hf-p635.json b/advisories/unreviewed/2022/05/GHSA-95w6-27hf-p635/GHSA-95w6-27hf-p635.json index 08f7bf58d79..608803facc0 100644 --- a/advisories/unreviewed/2022/05/GHSA-95w6-27hf-p635/GHSA-95w6-27hf-p635.json +++ b/advisories/unreviewed/2022/05/GHSA-95w6-27hf-p635/GHSA-95w6-27hf-p635.json @@ -7,12 +7,8 @@ "CVE-2010-0082" ], "details": "Unspecified vulnerability in the HotSpot Server component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -132,9 +128,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-976g-x9w5-4h78/GHSA-976g-x9w5-4h78.json b/advisories/unreviewed/2022/05/GHSA-976g-x9w5-4h78/GHSA-976g-x9w5-4h78.json index 537862f2523..11065f44e7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-976g-x9w5-4h78/GHSA-976g-x9w5-4h78.json +++ b/advisories/unreviewed/2022/05/GHSA-976g-x9w5-4h78/GHSA-976g-x9w5-4h78.json @@ -7,12 +7,8 @@ "CVE-2010-0643" ], "details": "Google Chrome before 4.0.249.89 attempts to make direct connections to web sites when all configured proxy servers are unavailable, which allows remote HTTP servers to obtain potentially sensitive information about the identity of a client user via standard HTTP logging, as demonstrated by a proxy server that was configured for the purpose of anonymity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97p2-p7rw-rggc/GHSA-97p2-p7rw-rggc.json b/advisories/unreviewed/2022/05/GHSA-97p2-p7rw-rggc/GHSA-97p2-p7rw-rggc.json index 710a8bcdb96..84ae82eb21b 100644 --- a/advisories/unreviewed/2022/05/GHSA-97p2-p7rw-rggc/GHSA-97p2-p7rw-rggc.json +++ b/advisories/unreviewed/2022/05/GHSA-97p2-p7rw-rggc/GHSA-97p2-p7rw-rggc.json @@ -7,12 +7,8 @@ "CVE-2010-0688" ], "details": "Stack-based buffer overflow in Orbital Viewer 1.04 allows user-assisted remote attackers to execute arbitrary code via a crafted (1) .orb or (2) .ov file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9897-h8f9-rg64/GHSA-9897-h8f9-rg64.json b/advisories/unreviewed/2022/05/GHSA-9897-h8f9-rg64/GHSA-9897-h8f9-rg64.json index 9fdb29d1e7d..fbeb47d6d9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9897-h8f9-rg64/GHSA-9897-h8f9-rg64.json +++ b/advisories/unreviewed/2022/05/GHSA-9897-h8f9-rg64/GHSA-9897-h8f9-rg64.json @@ -7,12 +7,8 @@ "CVE-2010-0873" ], "details": "Unspecified vulnerability in the Data Server component in Oracle TimesTen In-Memory Database 7.0.6.0 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-98fj-2mhw-486f/GHSA-98fj-2mhw-486f.json b/advisories/unreviewed/2022/05/GHSA-98fj-2mhw-486f/GHSA-98fj-2mhw-486f.json index b853c909085..d1a5d69e7b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-98fj-2mhw-486f/GHSA-98fj-2mhw-486f.json +++ b/advisories/unreviewed/2022/05/GHSA-98fj-2mhw-486f/GHSA-98fj-2mhw-486f.json @@ -7,12 +7,8 @@ "CVE-2010-0758" ], "details": "SQL injection vulnerability in news_desc.php in Softbiz Jobs allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98g7-ggp2-2q96/GHSA-98g7-ggp2-2q96.json b/advisories/unreviewed/2022/05/GHSA-98g7-ggp2-2q96/GHSA-98g7-ggp2-2q96.json index 5ed28cedf84..7f5de6225ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-98g7-ggp2-2q96/GHSA-98g7-ggp2-2q96.json +++ b/advisories/unreviewed/2022/05/GHSA-98g7-ggp2-2q96/GHSA-98g7-ggp2-2q96.json @@ -7,12 +7,8 @@ "CVE-2010-0203" ], "details": "Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0199, and CVE-2010-0202.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98j9-pc95-qjw3/GHSA-98j9-pc95-qjw3.json b/advisories/unreviewed/2022/05/GHSA-98j9-pc95-qjw3/GHSA-98j9-pc95-qjw3.json index 1a6ebcebd99..385f5b4a91a 100644 --- a/advisories/unreviewed/2022/05/GHSA-98j9-pc95-qjw3/GHSA-98j9-pc95-qjw3.json +++ b/advisories/unreviewed/2022/05/GHSA-98j9-pc95-qjw3/GHSA-98j9-pc95-qjw3.json @@ -7,12 +7,8 @@ "CVE-2010-0236" ], "details": "The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Vista Gold does not properly allocate memory for the destination key associated with a symbolic-link registry key, which allows local users to gain privileges via a crafted application, aka \"Windows Kernel Memory Allocation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-99fg-5jg8-x79m/GHSA-99fg-5jg8-x79m.json b/advisories/unreviewed/2022/05/GHSA-99fg-5jg8-x79m/GHSA-99fg-5jg8-x79m.json index 0db201f46ef..eb9a5616358 100644 --- a/advisories/unreviewed/2022/05/GHSA-99fg-5jg8-x79m/GHSA-99fg-5jg8-x79m.json +++ b/advisories/unreviewed/2022/05/GHSA-99fg-5jg8-x79m/GHSA-99fg-5jg8-x79m.json @@ -7,12 +7,8 @@ "CVE-2010-0725" ], "details": "Cross-site scripting (XSS) vulnerability in showimg.php in Arab Cart 1.0.2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gcq-4h5g-5wx6/GHSA-9gcq-4h5g-5wx6.json b/advisories/unreviewed/2022/05/GHSA-9gcq-4h5g-5wx6/GHSA-9gcq-4h5g-5wx6.json index 6a2beb1042a..3d03eb3fac9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gcq-4h5g-5wx6/GHSA-9gcq-4h5g-5wx6.json +++ b/advisories/unreviewed/2022/05/GHSA-9gcq-4h5g-5wx6/GHSA-9gcq-4h5g-5wx6.json @@ -7,12 +7,8 @@ "CVE-2010-0680" ], "details": "Directory traversal vulnerability in index.php in ZeusCMS 0.2 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9ghx-rj25-wxc9/GHSA-9ghx-rj25-wxc9.json b/advisories/unreviewed/2022/05/GHSA-9ghx-rj25-wxc9/GHSA-9ghx-rj25-wxc9.json index 8f0c75d0094..b519125c6a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ghx-rj25-wxc9/GHSA-9ghx-rj25-wxc9.json +++ b/advisories/unreviewed/2022/05/GHSA-9ghx-rj25-wxc9/GHSA-9ghx-rj25-wxc9.json @@ -7,12 +7,8 @@ "CVE-2010-0595" ], "details": "Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 has a default password for the administrative user account and unspecified other accounts, which makes it easier for remote attackers to obtain privileged access, aka Bug ID CSCtb83495.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9gqf-m6rq-xw2m/GHSA-9gqf-m6rq-xw2m.json b/advisories/unreviewed/2022/05/GHSA-9gqf-m6rq-xw2m/GHSA-9gqf-m6rq-xw2m.json index 5a2a2d081da..b68b3f9706e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gqf-m6rq-xw2m/GHSA-9gqf-m6rq-xw2m.json +++ b/advisories/unreviewed/2022/05/GHSA-9gqf-m6rq-xw2m/GHSA-9gqf-m6rq-xw2m.json @@ -7,12 +7,8 @@ "CVE-2010-0133" ], "details": "Multiple stack-based buffer overflows in the SpreadSheet Lotus 123 reader (wkssr.dll) in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allow remote attackers to execute arbitrary code via unspecified vectors related to \"certain records.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h27-8cv4-44j6/GHSA-9h27-8cv4-44j6.json b/advisories/unreviewed/2022/05/GHSA-9h27-8cv4-44j6/GHSA-9h27-8cv4-44j6.json index 27490522815..6b15efa952b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h27-8cv4-44j6/GHSA-9h27-8cv4-44j6.json +++ b/advisories/unreviewed/2022/05/GHSA-9h27-8cv4-44j6/GHSA-9h27-8cv4-44j6.json @@ -7,12 +7,8 @@ "CVE-2010-0120" ], "details": "Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows allows remote attackers to execute arbitrary code via large size values in QCP audio content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h85-4fv6-58pj/GHSA-9h85-4fv6-58pj.json b/advisories/unreviewed/2022/05/GHSA-9h85-4fv6-58pj/GHSA-9h85-4fv6-58pj.json index dc315ebc1ca..e1a30231838 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h85-4fv6-58pj/GHSA-9h85-4fv6-58pj.json +++ b/advisories/unreviewed/2022/05/GHSA-9h85-4fv6-58pj/GHSA-9h85-4fv6-58pj.json @@ -7,12 +7,8 @@ "CVE-2010-0461" ], "details": "SQL injection vulnerability in the casino (com_casino) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a (1) category or (2) player action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9hh6-fxg3-qpgc/GHSA-9hh6-fxg3-qpgc.json b/advisories/unreviewed/2022/05/GHSA-9hh6-fxg3-qpgc/GHSA-9hh6-fxg3-qpgc.json index ab28b8c774a..9e1a7723e8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hh6-fxg3-qpgc/GHSA-9hh6-fxg3-qpgc.json +++ b/advisories/unreviewed/2022/05/GHSA-9hh6-fxg3-qpgc/GHSA-9hh6-fxg3-qpgc.json @@ -7,12 +7,8 @@ "CVE-2010-0132" ], "details": "Cross-site scripting (XSS) vulnerability in ViewVC 1.1 before 1.1.5 and 1.0 before 1.0.11, when the regular expression search functionality is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors related to \"search_re input,\" a different vulnerability than CVE-2010-0736.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9j9x-qw8r-p5pq/GHSA-9j9x-qw8r-p5pq.json b/advisories/unreviewed/2022/05/GHSA-9j9x-qw8r-p5pq/GHSA-9j9x-qw8r-p5pq.json index 7a54b71edc6..75f72bd26be 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j9x-qw8r-p5pq/GHSA-9j9x-qw8r-p5pq.json +++ b/advisories/unreviewed/2022/05/GHSA-9j9x-qw8r-p5pq/GHSA-9j9x-qw8r-p5pq.json @@ -7,12 +7,8 @@ "CVE-2010-0051" ], "details": "WebKit in Apple Safari before 4.0.5 does not properly validate the cross-origin loading of stylesheets, which allows remote attackers to obtain sensitive information via a crafted HTML document. NOTE: this might overlap CVE-2010-0651.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jjc-8wp4-j2mp/GHSA-9jjc-8wp4-j2mp.json b/advisories/unreviewed/2022/05/GHSA-9jjc-8wp4-j2mp/GHSA-9jjc-8wp4-j2mp.json index 8cf26f4811d..0c3b9f11e06 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jjc-8wp4-j2mp/GHSA-9jjc-8wp4-j2mp.json +++ b/advisories/unreviewed/2022/05/GHSA-9jjc-8wp4-j2mp/GHSA-9jjc-8wp4-j2mp.json @@ -7,12 +7,8 @@ "CVE-2010-0760" ], "details": "Multiple directory traversal vulnerabilities in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) file parameter to libraries/jquery/js/ui/jsloader.php and the (2) files[] parameter to libraries/jquery/js/jsloader.php, a different vector than CVE-2010-0759. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mq3-v894-gjm6/GHSA-9mq3-v894-gjm6.json b/advisories/unreviewed/2022/05/GHSA-9mq3-v894-gjm6/GHSA-9mq3-v894-gjm6.json index 39a6406f1a9..cf99dda90b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mq3-v894-gjm6/GHSA-9mq3-v894-gjm6.json +++ b/advisories/unreviewed/2022/05/GHSA-9mq3-v894-gjm6/GHSA-9mq3-v894-gjm6.json @@ -7,12 +7,8 @@ "CVE-2010-0476" ], "details": "The SMB client in Microsoft Windows Server 2003 SP2, Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2 allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and reboot) via a crafted SMB transaction response that uses (1) SMBv1 or (2) SMBv2, aka \"SMB Client Response Parsing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9p5c-9rhf-4q9x/GHSA-9p5c-9rhf-4q9x.json b/advisories/unreviewed/2022/05/GHSA-9p5c-9rhf-4q9x/GHSA-9p5c-9rhf-4q9x.json index 72f46258f38..ed41cf0f032 100644 --- a/advisories/unreviewed/2022/05/GHSA-9p5c-9rhf-4q9x/GHSA-9p5c-9rhf-4q9x.json +++ b/advisories/unreviewed/2022/05/GHSA-9p5c-9rhf-4q9x/GHSA-9p5c-9rhf-4q9x.json @@ -7,12 +7,8 @@ "CVE-2010-0833" ], "details": "The pam_lsass library in Likewise Open 5.4 and CIFS 5.4 before build 8046, and 6.0 before build 8234, as used in HP StorageWorks X9000 Network Storage Systems and possibly other products, uses \"SetPassword logic\" when running as part of a root service, which allows remote attackers to bypass authentication for a Likewise Security Authority (lsassd) account whose password is marked as expired.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9q2j-c74h-2vcr/GHSA-9q2j-c74h-2vcr.json b/advisories/unreviewed/2022/05/GHSA-9q2j-c74h-2vcr/GHSA-9q2j-c74h-2vcr.json index 93a7cc6bc2f..df4274b15e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9q2j-c74h-2vcr/GHSA-9q2j-c74h-2vcr.json +++ b/advisories/unreviewed/2022/05/GHSA-9q2j-c74h-2vcr/GHSA-9q2j-c74h-2vcr.json @@ -7,12 +7,8 @@ "CVE-2010-0698" ], "details": "SQL injection vulnerability in backoffice/login.asp in Dynamicsoft WSC CMS 2.2 allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9qfc-3x74-jp38/GHSA-9qfc-3x74-jp38.json b/advisories/unreviewed/2022/05/GHSA-9qfc-3x74-jp38/GHSA-9qfc-3x74-jp38.json index 7535b9d07f9..c0d93a58406 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qfc-3x74-jp38/GHSA-9qfc-3x74-jp38.json +++ b/advisories/unreviewed/2022/05/GHSA-9qfc-3x74-jp38/GHSA-9qfc-3x74-jp38.json @@ -7,12 +7,8 @@ "CVE-2010-0692" ], "details": "SQL injection vulnerability in the IP-Tech JQuarks (com_jquarks) Component 0.2.3, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9qxh-6993-386r/GHSA-9qxh-6993-386r.json b/advisories/unreviewed/2022/05/GHSA-9qxh-6993-386r/GHSA-9qxh-6993-386r.json index 4d863bb47e4..cd4bde77c5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qxh-6993-386r/GHSA-9qxh-6993-386r.json +++ b/advisories/unreviewed/2022/05/GHSA-9qxh-6993-386r/GHSA-9qxh-6993-386r.json @@ -7,12 +7,8 @@ "CVE-2010-0533" ], "details": "Directory traversal vulnerability in AFP Server in Apple Mac OS X before 10.6.3 allows remote attackers to list a share root's parent directory, and read and modify files in that directory, via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v7m-xcpp-wfqx/GHSA-9v7m-xcpp-wfqx.json b/advisories/unreviewed/2022/05/GHSA-9v7m-xcpp-wfqx/GHSA-9v7m-xcpp-wfqx.json index 1efa1af27e5..b9c5079a43b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v7m-xcpp-wfqx/GHSA-9v7m-xcpp-wfqx.json +++ b/advisories/unreviewed/2022/05/GHSA-9v7m-xcpp-wfqx/GHSA-9v7m-xcpp-wfqx.json @@ -7,12 +7,8 @@ "CVE-2010-0617" ], "details": "Cross-site scripting (XSS) vulnerability in ajax.php in evalSMSI 2.1.03 allows remote attackers to inject arbitrary web script or HTML via the return parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v7p-64xp-q6jf/GHSA-9v7p-64xp-q6jf.json b/advisories/unreviewed/2022/05/GHSA-9v7p-64xp-q6jf/GHSA-9v7p-64xp-q6jf.json index 4ffa5e46195..f1a2247de61 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v7p-64xp-q6jf/GHSA-9v7p-64xp-q6jf.json +++ b/advisories/unreviewed/2022/05/GHSA-9v7p-64xp-q6jf/GHSA-9v7p-64xp-q6jf.json @@ -7,12 +7,8 @@ "CVE-2010-0524" ], "details": "The default configuration of the FreeRADIUS server in Apple Mac OS X Server before 10.6.3 permits EAP-TLS authenticated connections on the basis of an arbitrary client certificate, which allows remote attackers to obtain network connectivity via a crafted RADIUS Access Request message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9vm3-476v-v37g/GHSA-9vm3-476v-v37g.json b/advisories/unreviewed/2022/05/GHSA-9vm3-476v-v37g/GHSA-9vm3-476v-v37g.json index 5026300aaab..289be73f7b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vm3-476v-v37g/GHSA-9vm3-476v-v37g.json +++ b/advisories/unreviewed/2022/05/GHSA-9vm3-476v-v37g/GHSA-9vm3-476v-v37g.json @@ -7,12 +7,8 @@ "CVE-2010-0608" ], "details": "SQL injection vulnerability in index.php in NovaBoard 1.1.2 allows remote attackers to execute arbitrary SQL commands via the forums[] parameter in a search action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vwm-p764-2vh2/GHSA-9vwm-p764-2vh2.json b/advisories/unreviewed/2022/05/GHSA-9vwm-p764-2vh2/GHSA-9vwm-p764-2vh2.json index c1f4d410c1b..c8a55c1f613 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vwm-p764-2vh2/GHSA-9vwm-p764-2vh2.json +++ b/advisories/unreviewed/2022/05/GHSA-9vwm-p764-2vh2/GHSA-9vwm-p764-2vh2.json @@ -7,12 +7,8 @@ "CVE-2010-0224" ], "details": "SanDisk Cruzer Enterprise USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9w39-p67f-3c97/GHSA-9w39-p67f-3c97.json b/advisories/unreviewed/2022/05/GHSA-9w39-p67f-3c97/GHSA-9w39-p67f-3c97.json index 680aa01dec1..0f186d00a65 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w39-p67f-3c97/GHSA-9w39-p67f-3c97.json +++ b/advisories/unreviewed/2022/05/GHSA-9w39-p67f-3c97/GHSA-9w39-p67f-3c97.json @@ -7,12 +7,8 @@ "CVE-2010-0153" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 allow remote attackers to hijack the authentication of administrators for requests that (1) change settings or (2) conduct denial of service attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9x38-862g-jg8w/GHSA-9x38-862g-jg8w.json b/advisories/unreviewed/2022/05/GHSA-9x38-862g-jg8w/GHSA-9x38-862g-jg8w.json index af6cb2f4ca5..875c1777a03 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x38-862g-jg8w/GHSA-9x38-862g-jg8w.json +++ b/advisories/unreviewed/2022/05/GHSA-9x38-862g-jg8w/GHSA-9x38-862g-jg8w.json @@ -7,12 +7,8 @@ "CVE-2010-0219" ], "details": "Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier for remote attackers to execute arbitrary code by uploading a crafted web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9x8g-36jg-fvcv/GHSA-9x8g-36jg-fvcv.json b/advisories/unreviewed/2022/05/GHSA-9x8g-36jg-fvcv/GHSA-9x8g-36jg-fvcv.json index dd6d5cbc751..a6fcdee34ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x8g-36jg-fvcv/GHSA-9x8g-36jg-fvcv.json +++ b/advisories/unreviewed/2022/05/GHSA-9x8g-36jg-fvcv/GHSA-9x8g-36jg-fvcv.json @@ -7,12 +7,8 @@ "CVE-2010-0825" ], "details": "lib-src/movemail.c in movemail in emacs 22 and 23 allows local users to read, modify, or delete arbitrary mailbox files via a symlink attack, related to improper file-permission checks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9xcj-87h6-65v2/GHSA-9xcj-87h6-65v2.json b/advisories/unreviewed/2022/05/GHSA-9xcj-87h6-65v2/GHSA-9xcj-87h6-65v2.json index 9ae3ac256cb..e32655b38ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xcj-87h6-65v2/GHSA-9xcj-87h6-65v2.json +++ b/advisories/unreviewed/2022/05/GHSA-9xcj-87h6-65v2/GHSA-9xcj-87h6-65v2.json @@ -7,12 +7,8 @@ "CVE-2010-0060" ], "details": "CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDMC encoding.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xpj-rc37-234v/GHSA-9xpj-rc37-234v.json b/advisories/unreviewed/2022/05/GHSA-9xpj-rc37-234v/GHSA-9xpj-rc37-234v.json index 0282dff6ebb..87fd6165148 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xpj-rc37-234v/GHSA-9xpj-rc37-234v.json +++ b/advisories/unreviewed/2022/05/GHSA-9xpj-rc37-234v/GHSA-9xpj-rc37-234v.json @@ -7,12 +7,8 @@ "CVE-2010-0023" ], "details": "The Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly kill processes after a logout, which allows local users to obtain sensitive information or gain privileges via a crafted application that continues to execute throughout the logout of one user and the login session of the next user, aka \"CSRSS Local Privilege Elevation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c2cv-ghmr-h386/GHSA-c2cv-ghmr-h386.json b/advisories/unreviewed/2022/05/GHSA-c2cv-ghmr-h386/GHSA-c2cv-ghmr-h386.json index 844fdf11612..85e3bc1d6fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2cv-ghmr-h386/GHSA-c2cv-ghmr-h386.json +++ b/advisories/unreviewed/2022/05/GHSA-c2cv-ghmr-h386/GHSA-c2cv-ghmr-h386.json @@ -7,12 +7,8 @@ "CVE-2010-0115" ], "details": "SQL injection vulnerability in login.php in the GUI management console in Symantec Web Gateway 4.5 before 4.5.0.376 allows remote attackers to execute arbitrary SQL commands via the USERNAME parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3jg-hcmc-rg93/GHSA-c3jg-hcmc-rg93.json b/advisories/unreviewed/2022/05/GHSA-c3jg-hcmc-rg93/GHSA-c3jg-hcmc-rg93.json index 3f055d6e682..47535e8e610 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3jg-hcmc-rg93/GHSA-c3jg-hcmc-rg93.json +++ b/advisories/unreviewed/2022/05/GHSA-c3jg-hcmc-rg93/GHSA-c3jg-hcmc-rg93.json @@ -7,12 +7,8 @@ "CVE-2010-0086" ], "details": "Unspecified vulnerability in the Portal component in Oracle Fusion Middleware 10.1.2.3 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2010-0855.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3vg-6xr9-vmj9/GHSA-c3vg-6xr9-vmj9.json b/advisories/unreviewed/2022/05/GHSA-c3vg-6xr9-vmj9/GHSA-c3vg-6xr9-vmj9.json index 3036f6b1580..1cde92c7574 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3vg-6xr9-vmj9/GHSA-c3vg-6xr9-vmj9.json +++ b/advisories/unreviewed/2022/05/GHSA-c3vg-6xr9-vmj9/GHSA-c3vg-6xr9-vmj9.json @@ -7,12 +7,8 @@ "CVE-2009-5109" ], "details": "Stack-based buffer overflow in Mini-Stream Ripper 3.0.1.1 allows remote attackers to execute arbitrary code via a long entry in a .pls file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c426-xr6j-jp5v/GHSA-c426-xr6j-jp5v.json b/advisories/unreviewed/2022/05/GHSA-c426-xr6j-jp5v/GHSA-c426-xr6j-jp5v.json index ffa55c961a4..08dc943c9d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-c426-xr6j-jp5v/GHSA-c426-xr6j-jp5v.json +++ b/advisories/unreviewed/2022/05/GHSA-c426-xr6j-jp5v/GHSA-c426-xr6j-jp5v.json @@ -7,12 +7,8 @@ "CVE-2010-0625" ], "details": "Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4jw-hx2x-f4j8/GHSA-c4jw-hx2x-f4j8.json b/advisories/unreviewed/2022/05/GHSA-c4jw-hx2x-f4j8/GHSA-c4jw-hx2x-f4j8.json index 7c471fae801..fe4cfba518a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4jw-hx2x-f4j8/GHSA-c4jw-hx2x-f4j8.json +++ b/advisories/unreviewed/2022/05/GHSA-c4jw-hx2x-f4j8/GHSA-c4jw-hx2x-f4j8.json @@ -7,12 +7,8 @@ "CVE-2010-0057" ], "details": "AFP Server in Apple Mac OS X before 10.6.3 does not prevent guest use of AFP shares when guest access is disabled, which allows remote attackers to bypass intended access restrictions via a mount request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c4q8-jg8m-p6pw/GHSA-c4q8-jg8m-p6pw.json b/advisories/unreviewed/2022/05/GHSA-c4q8-jg8m-p6pw/GHSA-c4q8-jg8m-p6pw.json index c626d6eb5bb..01190ecf2f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4q8-jg8m-p6pw/GHSA-c4q8-jg8m-p6pw.json +++ b/advisories/unreviewed/2022/05/GHSA-c4q8-jg8m-p6pw/GHSA-c4q8-jg8m-p6pw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4rf-ff72-rpgr/GHSA-c4rf-ff72-rpgr.json b/advisories/unreviewed/2022/05/GHSA-c4rf-ff72-rpgr/GHSA-c4rf-ff72-rpgr.json index 84f2048509c..fe8fec6d385 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4rf-ff72-rpgr/GHSA-c4rf-ff72-rpgr.json +++ b/advisories/unreviewed/2022/05/GHSA-c4rf-ff72-rpgr/GHSA-c4rf-ff72-rpgr.json @@ -7,12 +7,8 @@ "CVE-2010-0560" ], "details": "Unspecified vulnerability in the BIOS in Intel Desktop Board DB, DG, DH, DP, and DQ Series allows local administrators to execute arbitrary code in System Management Mode (SSM) via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c54g-4qr4-6pfm/GHSA-c54g-4qr4-6pfm.json b/advisories/unreviewed/2022/05/GHSA-c54g-4qr4-6pfm/GHSA-c54g-4qr4-6pfm.json index 6dc30ab9122..8fee7c93548 100644 --- a/advisories/unreviewed/2022/05/GHSA-c54g-4qr4-6pfm/GHSA-c54g-4qr4-6pfm.json +++ b/advisories/unreviewed/2022/05/GHSA-c54g-4qr4-6pfm/GHSA-c54g-4qr4-6pfm.json @@ -7,12 +7,8 @@ "CVE-2010-0451" ], "details": "The installation process for NFS/ONCplus B.11.31_08 and earlier on HP HP-UX B.11.31 changes the NFS_SERVER setting in the nfsconf file, which might allow remote attackers to obtain filesystem access via NFS requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c67x-wr29-p7p6/GHSA-c67x-wr29-p7p6.json b/advisories/unreviewed/2022/05/GHSA-c67x-wr29-p7p6/GHSA-c67x-wr29-p7p6.json index 6c696a48a58..53192bc5102 100644 --- a/advisories/unreviewed/2022/05/GHSA-c67x-wr29-p7p6/GHSA-c67x-wr29-p7p6.json +++ b/advisories/unreviewed/2022/05/GHSA-c67x-wr29-p7p6/GHSA-c67x-wr29-p7p6.json @@ -7,12 +7,8 @@ "CVE-2010-0713" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in Zenoss 2.3.3, and other versions before 2.5, allow remote attackers to hijack the authentication of an administrator for (1) requests that reset user passwords via zport/dmd/ZenUsers/admin, and (2) requests that change user commands, which allows for remote execution of system commands via zport/dmd/userCommands/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6g5-cm8q-mv7g/GHSA-c6g5-cm8q-mv7g.json b/advisories/unreviewed/2022/05/GHSA-c6g5-cm8q-mv7g/GHSA-c6g5-cm8q-mv7g.json index c8ef89c4432..c545e30496a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6g5-cm8q-mv7g/GHSA-c6g5-cm8q-mv7g.json +++ b/advisories/unreviewed/2022/05/GHSA-c6g5-cm8q-mv7g/GHSA-c6g5-cm8q-mv7g.json @@ -7,12 +7,8 @@ "CVE-2010-0418" ], "details": "The web interface in chumby one before 1.0.4 and chumby classic before 1.7.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6qx-5wv4-9972/GHSA-c6qx-5wv4-9972.json b/advisories/unreviewed/2022/05/GHSA-c6qx-5wv4-9972/GHSA-c6qx-5wv4-9972.json index 8aabf6a78ae..5709c450d8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6qx-5wv4-9972/GHSA-c6qx-5wv4-9972.json +++ b/advisories/unreviewed/2022/05/GHSA-c6qx-5wv4-9972/GHSA-c6qx-5wv4-9972.json @@ -7,12 +7,8 @@ "CVE-2010-0632" ], "details": "SQL injection vulnerability in the Parkview Consultants SimpleFAQ (com_simplefaq) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a display action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c746-rx52-w5cm/GHSA-c746-rx52-w5cm.json b/advisories/unreviewed/2022/05/GHSA-c746-rx52-w5cm/GHSA-c746-rx52-w5cm.json index 0b2c163555b..96077ae9841 100644 --- a/advisories/unreviewed/2022/05/GHSA-c746-rx52-w5cm/GHSA-c746-rx52-w5cm.json +++ b/advisories/unreviewed/2022/05/GHSA-c746-rx52-w5cm/GHSA-c746-rx52-w5cm.json @@ -7,12 +7,8 @@ "CVE-2010-0267" ], "details": "Microsoft Internet Explorer 6, 6 SP1, and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka \"Uninitialized Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8p5-6xf7-qcx4/GHSA-c8p5-6xf7-qcx4.json b/advisories/unreviewed/2022/05/GHSA-c8p5-6xf7-qcx4/GHSA-c8p5-6xf7-qcx4.json index 75f99abf22c..3c29dc52315 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8p5-6xf7-qcx4/GHSA-c8p5-6xf7-qcx4.json +++ b/advisories/unreviewed/2022/05/GHSA-c8p5-6xf7-qcx4/GHSA-c8p5-6xf7-qcx4.json @@ -7,12 +7,8 @@ "CVE-2010-0111" ], "details": "HDNLRSVC.EXE in the Intel Alert Handler service (aka Symantec Intel Handler service) in Intel Alert Management System (aka AMS or AMS2), as used in Symantec AntiVirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allows remote attackers to execute arbitrary programs by sending msgsys.exe a UNC share pathname, which is used directly in a CreateProcessA (aka CreateProcess) call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8w3-89m7-qfwc/GHSA-c8w3-89m7-qfwc.json b/advisories/unreviewed/2022/05/GHSA-c8w3-89m7-qfwc/GHSA-c8w3-89m7-qfwc.json index fdba6574643..0ee8ff7cb0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8w3-89m7-qfwc/GHSA-c8w3-89m7-qfwc.json +++ b/advisories/unreviewed/2022/05/GHSA-c8w3-89m7-qfwc/GHSA-c8w3-89m7-qfwc.json @@ -7,12 +7,8 @@ "CVE-2010-0875" ], "details": "Unspecified vulnerability in the Life Sciences - Oracle Thesaurus Management System component in Oracle Industry Product Suite 4.5.2, 4.6, and 4.6.1 allows remote attackers to affect integrity, related to TMS Browser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9pm-wqw2-p2v7/GHSA-c9pm-wqw2-p2v7.json b/advisories/unreviewed/2022/05/GHSA-c9pm-wqw2-p2v7/GHSA-c9pm-wqw2-p2v7.json index b3c7682e783..cfbf71d10b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9pm-wqw2-p2v7/GHSA-c9pm-wqw2-p2v7.json +++ b/advisories/unreviewed/2022/05/GHSA-c9pm-wqw2-p2v7/GHSA-c9pm-wqw2-p2v7.json @@ -7,12 +7,8 @@ "CVE-2010-0163" ], "details": "Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 process e-mail attachments with a parser that performs casts and line termination incorrectly, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted message, related to message indexing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cc4q-35f8-jwmg/GHSA-cc4q-35f8-jwmg.json b/advisories/unreviewed/2022/05/GHSA-cc4q-35f8-jwmg/GHSA-cc4q-35f8-jwmg.json index 87f3235934f..2bd2f321838 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc4q-35f8-jwmg/GHSA-cc4q-35f8-jwmg.json +++ b/advisories/unreviewed/2022/05/GHSA-cc4q-35f8-jwmg/GHSA-cc4q-35f8-jwmg.json @@ -7,12 +7,8 @@ "CVE-2010-0209" ], "details": "Adobe Flash Player before 9.0.280 and 10.x before 10.1.82.76, and Adobe AIR before 2.0.3, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2213, CVE-2010-2214, and CVE-2010-2216.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ccvf-fmjm-6rwv/GHSA-ccvf-fmjm-6rwv.json b/advisories/unreviewed/2022/05/GHSA-ccvf-fmjm-6rwv/GHSA-ccvf-fmjm-6rwv.json index 9a83214735b..241fee318ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccvf-fmjm-6rwv/GHSA-ccvf-fmjm-6rwv.json +++ b/advisories/unreviewed/2022/05/GHSA-ccvf-fmjm-6rwv/GHSA-ccvf-fmjm-6rwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfvw-hpqm-vv6h/GHSA-cfvw-hpqm-vv6h.json b/advisories/unreviewed/2022/05/GHSA-cfvw-hpqm-vv6h/GHSA-cfvw-hpqm-vv6h.json index deaba2029dd..ed2b9f7a196 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfvw-hpqm-vv6h/GHSA-cfvw-hpqm-vv6h.json +++ b/advisories/unreviewed/2022/05/GHSA-cfvw-hpqm-vv6h/GHSA-cfvw-hpqm-vv6h.json @@ -7,12 +7,8 @@ "CVE-2010-0318" ], "details": "The replay functionality for ZFS Intent Log (ZIL) in FreeBSD 7.1, 7.2, and 8.0, when creating files during replay of a setattr transaction, uses 7777 permissions instead of the original permissions, which might allow local users to read or modify unauthorized files in opportunistic circumstances after a system crash or power failure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg34-q4xv-v6xv/GHSA-cg34-q4xv-v6xv.json b/advisories/unreviewed/2022/05/GHSA-cg34-q4xv-v6xv/GHSA-cg34-q4xv-v6xv.json index f5bd50bc1a1..78b1c4e79eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg34-q4xv-v6xv/GHSA-cg34-q4xv-v6xv.json +++ b/advisories/unreviewed/2022/05/GHSA-cg34-q4xv-v6xv/GHSA-cg34-q4xv-v6xv.json @@ -7,12 +7,8 @@ "CVE-2010-0401" ], "details": "OpenTTD before 1.0.1 accepts a company password for authentication in response to a request for the server password, which allows remote authenticated users to bypass intended access restrictions or cause a denial of service (daemon crash) by sending a company password packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg3x-2572-rpvr/GHSA-cg3x-2572-rpvr.json b/advisories/unreviewed/2022/05/GHSA-cg3x-2572-rpvr/GHSA-cg3x-2572-rpvr.json index 94c95886b25..9cf160400c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg3x-2572-rpvr/GHSA-cg3x-2572-rpvr.json +++ b/advisories/unreviewed/2022/05/GHSA-cg3x-2572-rpvr/GHSA-cg3x-2572-rpvr.json @@ -7,12 +7,8 @@ "CVE-2010-0639" ], "details": "The htcpHandleTstRequest function in htcp.c in Squid 2.x before 2.6.STABLE24 and 2.7 before 2.7.STABLE8, and htcp.cc in 3.0 before 3.0.STABLE24, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted packets to the HTCP port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg8p-xj6f-g83m/GHSA-cg8p-xj6f-g83m.json b/advisories/unreviewed/2022/05/GHSA-cg8p-xj6f-g83m/GHSA-cg8p-xj6f-g83m.json index 4cc5a31f9fd..cd543c04774 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg8p-xj6f-g83m/GHSA-cg8p-xj6f-g83m.json +++ b/advisories/unreviewed/2022/05/GHSA-cg8p-xj6f-g83m/GHSA-cg8p-xj6f-g83m.json @@ -7,12 +7,8 @@ "CVE-2010-0228" ], "details": "Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ch7p-82hg-j456/GHSA-ch7p-82hg-j456.json b/advisories/unreviewed/2022/05/GHSA-ch7p-82hg-j456/GHSA-ch7p-82hg-j456.json index 50bd924cc70..2d2aa670162 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch7p-82hg-j456/GHSA-ch7p-82hg-j456.json +++ b/advisories/unreviewed/2022/05/GHSA-ch7p-82hg-j456/GHSA-ch7p-82hg-j456.json @@ -7,12 +7,8 @@ "CVE-2010-0837" ], "details": "Unspecified vulnerability in the Pack200 component in Oracle Java SE and Java for Business 6 Update 18, 5.0, Update, and 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmc9-m547-x8f2/GHSA-cmc9-m547-x8f2.json b/advisories/unreviewed/2022/05/GHSA-cmc9-m547-x8f2/GHSA-cmc9-m547-x8f2.json index 46a78d6c39a..e0b3be9dca4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmc9-m547-x8f2/GHSA-cmc9-m547-x8f2.json +++ b/advisories/unreviewed/2022/05/GHSA-cmc9-m547-x8f2/GHSA-cmc9-m547-x8f2.json @@ -7,12 +7,8 @@ "CVE-2010-0558" ], "details": "The default configuration of Oracle OpenSolaris snv_77 through snv_131 allows attackers to have an unspecified impact via vectors related to using smbadm to join a Windows Active Directory domain.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cpqr-cpwc-vxwv/GHSA-cpqr-cpwc-vxwv.json b/advisories/unreviewed/2022/05/GHSA-cpqr-cpwc-vxwv/GHSA-cpqr-cpwc-vxwv.json index 980a584b3c9..0f3b1f59c3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpqr-cpwc-vxwv/GHSA-cpqr-cpwc-vxwv.json +++ b/advisories/unreviewed/2022/05/GHSA-cpqr-cpwc-vxwv/GHSA-cpqr-cpwc-vxwv.json @@ -7,12 +7,8 @@ "CVE-2010-0815" ], "details": "VBE6.DLL in Microsoft Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Visual Basic for Applications (VBA), and VBA SDK 6.3 through 6.5 does not properly search for ActiveX controls that are embedded in documents, which allows remote attackers to execute arbitrary code via a crafted document, aka \"VBE6.DLL Stack Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqp5-r2pj-gw95/GHSA-cqp5-r2pj-gw95.json b/advisories/unreviewed/2022/05/GHSA-cqp5-r2pj-gw95/GHSA-cqp5-r2pj-gw95.json index e9a1340af83..0929e09068c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqp5-r2pj-gw95/GHSA-cqp5-r2pj-gw95.json +++ b/advisories/unreviewed/2022/05/GHSA-cqp5-r2pj-gw95/GHSA-cqp5-r2pj-gw95.json @@ -7,12 +7,8 @@ "CVE-2010-0125" ], "details": "RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, and Mac RealPlayer 11.0 through 12.0.0.1444 do not properly parse spectral data in AAC files, which has unspecified impact and remote attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-crvv-782p-52cr/GHSA-crvv-782p-52cr.json b/advisories/unreviewed/2022/05/GHSA-crvv-782p-52cr/GHSA-crvv-782p-52cr.json index b8d757f17d7..10c5828e929 100644 --- a/advisories/unreviewed/2022/05/GHSA-crvv-782p-52cr/GHSA-crvv-782p-52cr.json +++ b/advisories/unreviewed/2022/05/GHSA-crvv-782p-52cr/GHSA-crvv-782p-52cr.json @@ -7,12 +7,8 @@ "CVE-2010-0046" ], "details": "The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted format arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crxg-42h5-fw55/GHSA-crxg-42h5-fw55.json b/advisories/unreviewed/2022/05/GHSA-crxg-42h5-fw55/GHSA-crxg-42h5-fw55.json index 6453c5de1b7..6c5dd7b513b 100644 --- a/advisories/unreviewed/2022/05/GHSA-crxg-42h5-fw55/GHSA-crxg-42h5-fw55.json +++ b/advisories/unreviewed/2022/05/GHSA-crxg-42h5-fw55/GHSA-crxg-42h5-fw55.json @@ -7,12 +7,8 @@ "CVE-2010-0580" ], "details": "Unspecified vulnerability in the SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attackers to execute arbitrary code via a malformed SIP message, aka Bug ID CSCsz48680, the \"SIP Message Processing Arbitrary Code Execution Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvfv-748g-qpfc/GHSA-cvfv-748g-qpfc.json b/advisories/unreviewed/2022/05/GHSA-cvfv-748g-qpfc/GHSA-cvfv-748g-qpfc.json index 9275d6c6c4b..dd6b267e235 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvfv-748g-qpfc/GHSA-cvfv-748g-qpfc.json +++ b/advisories/unreviewed/2022/05/GHSA-cvfv-748g-qpfc/GHSA-cvfv-748g-qpfc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw46-2282-7m47/GHSA-cw46-2282-7m47.json b/advisories/unreviewed/2022/05/GHSA-cw46-2282-7m47/GHSA-cw46-2282-7m47.json index 7c783787255..bf1becf332d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw46-2282-7m47/GHSA-cw46-2282-7m47.json +++ b/advisories/unreviewed/2022/05/GHSA-cw46-2282-7m47/GHSA-cw46-2282-7m47.json @@ -7,12 +7,8 @@ "CVE-2010-0768" ], "details": "Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.9 allows remote attackers to inject arbitrary web script or HTML via the URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw7r-xrhg-xv22/GHSA-cw7r-xrhg-xv22.json b/advisories/unreviewed/2022/05/GHSA-cw7r-xrhg-xv22/GHSA-cw7r-xrhg-xv22.json index bfb9beaa9ed..eebb2214f0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw7r-xrhg-xv22/GHSA-cw7r-xrhg-xv22.json +++ b/advisories/unreviewed/2022/05/GHSA-cw7r-xrhg-xv22/GHSA-cw7r-xrhg-xv22.json @@ -7,12 +7,8 @@ "CVE-2010-0348" ], "details": "Directory traversal vulnerability in C3 Corp. WebCalenderC3 0.32 and earlier allows remote attackers to read arbitrary files via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw97-jmj5-gm8h/GHSA-cw97-jmj5-gm8h.json b/advisories/unreviewed/2022/05/GHSA-cw97-jmj5-gm8h/GHSA-cw97-jmj5-gm8h.json index 1695981f716..277ce140569 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw97-jmj5-gm8h/GHSA-cw97-jmj5-gm8h.json +++ b/advisories/unreviewed/2022/05/GHSA-cw97-jmj5-gm8h/GHSA-cw97-jmj5-gm8h.json @@ -7,12 +7,8 @@ "CVE-2010-0480" ], "details": "Multiple stack-based buffer overflows in the MPEG Layer-3 audio codecs in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allow remote attackers to execute arbitrary code via a crafted AVI file, aka \"MPEG Layer-3 Audio Decoder Stack Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwfp-wwxr-hhq6/GHSA-cwfp-wwxr-hhq6.json b/advisories/unreviewed/2022/05/GHSA-cwfp-wwxr-hhq6/GHSA-cwfp-wwxr-hhq6.json index 69ef7bb9f60..5936d470159 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwfp-wwxr-hhq6/GHSA-cwfp-wwxr-hhq6.json +++ b/advisories/unreviewed/2022/05/GHSA-cwfp-wwxr-hhq6/GHSA-cwfp-wwxr-hhq6.json @@ -7,12 +7,8 @@ "CVE-2010-0542" ], "details": "The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls, which allows remote attackers to cause a denial of service (NULL pointer dereference or heap memory corruption) or possibly execute arbitrary code via a crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f23h-24h4-f4x9/GHSA-f23h-24h4-f4x9.json b/advisories/unreviewed/2022/05/GHSA-f23h-24h4-f4x9/GHSA-f23h-24h4-f4x9.json index 6606798727e..4fed5e202bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-f23h-24h4-f4x9/GHSA-f23h-24h4-f4x9.json +++ b/advisories/unreviewed/2022/05/GHSA-f23h-24h4-f4x9/GHSA-f23h-24h4-f4x9.json @@ -7,12 +7,8 @@ "CVE-2010-0184" ], "details": "The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime Agent (TRA) before 5.6.2, as used in TIBCO ActiveMatrix BusinessWorks and other products, set weak permissions on domain properties files, which allows local users to obtain domain administrator credentials, and gain privileges on all domain systems, via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f23x-fj23-ppj4/GHSA-f23x-fj23-ppj4.json b/advisories/unreviewed/2022/05/GHSA-f23x-fj23-ppj4/GHSA-f23x-fj23-ppj4.json index ee30ba714e9..98985a0888e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f23x-fj23-ppj4/GHSA-f23x-fj23-ppj4.json +++ b/advisories/unreviewed/2022/05/GHSA-f23x-fj23-ppj4/GHSA-f23x-fj23-ppj4.json @@ -7,12 +7,8 @@ "CVE-2010-0225" ], "details": "SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f25x-q2hm-wq52/GHSA-f25x-q2hm-wq52.json b/advisories/unreviewed/2022/05/GHSA-f25x-q2hm-wq52/GHSA-f25x-q2hm-wq52.json index 8c5ef8a359d..97ad268af2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-f25x-q2hm-wq52/GHSA-f25x-q2hm-wq52.json +++ b/advisories/unreviewed/2022/05/GHSA-f25x-q2hm-wq52/GHSA-f25x-q2hm-wq52.json @@ -7,12 +7,8 @@ "CVE-2010-0332" ], "details": "SQL injection vulnerability in the TV21 Talkshow (tv21_talkshow) extension 1.0.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f37f-gw6p-38r2/GHSA-f37f-gw6p-38r2.json b/advisories/unreviewed/2022/05/GHSA-f37f-gw6p-38r2/GHSA-f37f-gw6p-38r2.json index 5011a2b03b0..5c81cab4735 100644 --- a/advisories/unreviewed/2022/05/GHSA-f37f-gw6p-38r2/GHSA-f37f-gw6p-38r2.json +++ b/advisories/unreviewed/2022/05/GHSA-f37f-gw6p-38r2/GHSA-f37f-gw6p-38r2.json @@ -7,12 +7,8 @@ "CVE-2010-0653" ], "details": "Opera before 10.10 permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote attackers to obtain sensitive information via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3jg-h6j3-rg6h/GHSA-f3jg-h6j3-rg6h.json b/advisories/unreviewed/2022/05/GHSA-f3jg-h6j3-rg6h/GHSA-f3jg-h6j3-rg6h.json index 55134b52339..2eeca41d20e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3jg-h6j3-rg6h/GHSA-f3jg-h6j3-rg6h.json +++ b/advisories/unreviewed/2022/05/GHSA-f3jg-h6j3-rg6h/GHSA-f3jg-h6j3-rg6h.json @@ -7,12 +7,8 @@ "CVE-2010-0866" ], "details": "Unspecified vulnerability in the JavaVM component in Oracle Database 11.1.0.7 and 11.2.0.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f3jx-26gh-ppcx/GHSA-f3jx-26gh-ppcx.json b/advisories/unreviewed/2022/05/GHSA-f3jx-26gh-ppcx/GHSA-f3jx-26gh-ppcx.json index df1c483a5a8..b6d2f8c854d 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3jx-26gh-ppcx/GHSA-f3jx-26gh-ppcx.json +++ b/advisories/unreviewed/2022/05/GHSA-f3jx-26gh-ppcx/GHSA-f3jx-26gh-ppcx.json @@ -7,12 +7,8 @@ "CVE-2010-0002" ], "details": "The /etc/profile.d/60alias.sh script in the Mandriva bash package for Bash 2.05b, 3.0, 3.2, 3.2.48, and 4.0 enables the --show-control-chars option in LS_OPTIONS, which allows local users to send escape sequences to terminal emulators, or hide the existence of a file, via a crafted filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f45g-v429-c6px/GHSA-f45g-v429-c6px.json b/advisories/unreviewed/2022/05/GHSA-f45g-v429-c6px/GHSA-f45g-v429-c6px.json index ce3b2ac2b21..b1a1d64d101 100644 --- a/advisories/unreviewed/2022/05/GHSA-f45g-v429-c6px/GHSA-f45g-v429-c6px.json +++ b/advisories/unreviewed/2022/05/GHSA-f45g-v429-c6px/GHSA-f45g-v429-c6px.json @@ -7,12 +7,8 @@ "CVE-2010-0703" ], "details": "Cross-site scripting (XSS) vulnerability in wa/auth in PortWise SSL VPN 4.6 allows remote attackers to inject arbitrary web script or HTML via the reloadFrame parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f48q-jvj9-xmwh/GHSA-f48q-jvj9-xmwh.json b/advisories/unreviewed/2022/05/GHSA-f48q-jvj9-xmwh/GHSA-f48q-jvj9-xmwh.json index 475d30df796..ea1cf769cae 100644 --- a/advisories/unreviewed/2022/05/GHSA-f48q-jvj9-xmwh/GHSA-f48q-jvj9-xmwh.json +++ b/advisories/unreviewed/2022/05/GHSA-f48q-jvj9-xmwh/GHSA-f48q-jvj9-xmwh.json @@ -7,12 +7,8 @@ "CVE-2010-0618" ], "details": "The flood-protection feature in the base, IPDS DLE, Forms DLE, Barcode DLE, Prescribe DLE, and Printcryption DLE components on certain Lexmark laser and inkjet printers and MarkNet devices allows remote attackers to cause a denial of service (TCP outage) by making many passive FTP connections and then aborting these connections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f4p2-64fc-c2r9/GHSA-f4p2-64fc-c2r9.json b/advisories/unreviewed/2022/05/GHSA-f4p2-64fc-c2r9/GHSA-f4p2-64fc-c2r9.json index 3ae37bbc0c1..c2fdf02065e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4p2-64fc-c2r9/GHSA-f4p2-64fc-c2r9.json +++ b/advisories/unreviewed/2022/05/GHSA-f4p2-64fc-c2r9/GHSA-f4p2-64fc-c2r9.json @@ -7,12 +7,8 @@ "CVE-2010-0730" ], "details": "The MMIO instruction decoder in the Xen hypervisor in the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows guest OS users to cause a denial of service (32-bit guest OS crash) via vectors that trigger an unspecified instruction emulation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4x7-2w77-444m/GHSA-f4x7-2w77-444m.json b/advisories/unreviewed/2022/05/GHSA-f4x7-2w77-444m/GHSA-f4x7-2w77-444m.json index 2ca7ee4768f..da617f18d41 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4x7-2w77-444m/GHSA-f4x7-2w77-444m.json +++ b/advisories/unreviewed/2022/05/GHSA-f4x7-2w77-444m/GHSA-f4x7-2w77-444m.json @@ -7,12 +7,8 @@ "CVE-2010-0736" ], "details": "Cross-site scripting (XSS) vulnerability in the view_queryform function in lib/viewvc.py in ViewVC before 1.0.10, and 1.1.x before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via \"user-provided input.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5f8-hv26-rgx9/GHSA-f5f8-hv26-rgx9.json b/advisories/unreviewed/2022/05/GHSA-f5f8-hv26-rgx9/GHSA-f5f8-hv26-rgx9.json index e608a4283a0..d56d6ccceff 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5f8-hv26-rgx9/GHSA-f5f8-hv26-rgx9.json +++ b/advisories/unreviewed/2022/05/GHSA-f5f8-hv26-rgx9/GHSA-f5f8-hv26-rgx9.json @@ -7,12 +7,8 @@ "CVE-2010-0822" ], "details": "Stack-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 for Mac, Office 2008 for Mac, and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted OBJ (0x5D) record, aka \"Excel Object Stack Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5rx-x946-jm33/GHSA-f5rx-x946-jm33.json b/advisories/unreviewed/2022/05/GHSA-f5rx-x946-jm33/GHSA-f5rx-x946-jm33.json index 069d258a72c..41e22111361 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5rx-x946-jm33/GHSA-f5rx-x946-jm33.json +++ b/advisories/unreviewed/2022/05/GHSA-f5rx-x946-jm33/GHSA-f5rx-x946-jm33.json @@ -7,12 +7,8 @@ "CVE-2010-0806" ], "details": "Use-after-free vulnerability in the Peer Objects component (aka iepeers.dll) in Microsoft Internet Explorer 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via vectors involving access to an invalid pointer after the deletion of an object, as exploited in the wild in March 2010, aka \"Uninitialized Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f6vq-5p8m-v2h5/GHSA-f6vq-5p8m-v2h5.json b/advisories/unreviewed/2022/05/GHSA-f6vq-5p8m-v2h5/GHSA-f6vq-5p8m-v2h5.json index 23af938179a..48a2e06fc05 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6vq-5p8m-v2h5/GHSA-f6vq-5p8m-v2h5.json +++ b/advisories/unreviewed/2022/05/GHSA-f6vq-5p8m-v2h5/GHSA-f6vq-5p8m-v2h5.json @@ -7,12 +7,8 @@ "CVE-2010-0544" ], "details": "Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to inject arbitrary web script or HTML via vectors related to a malformed URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f74m-jmww-q4m2/GHSA-f74m-jmww-q4m2.json b/advisories/unreviewed/2022/05/GHSA-f74m-jmww-q4m2/GHSA-f74m-jmww-q4m2.json index 228b2f3e8fc..630f7ab378c 100644 --- a/advisories/unreviewed/2022/05/GHSA-f74m-jmww-q4m2/GHSA-f74m-jmww-q4m2.json +++ b/advisories/unreviewed/2022/05/GHSA-f74m-jmww-q4m2/GHSA-f74m-jmww-q4m2.json @@ -7,12 +7,8 @@ "CVE-2010-0175" ], "details": "Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors that trigger a call to the handler for the select event for XUL tree items.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -156,9 +152,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f786-x4vc-7rj4/GHSA-f786-x4vc-7rj4.json b/advisories/unreviewed/2022/05/GHSA-f786-x4vc-7rj4/GHSA-f786-x4vc-7rj4.json index 6e1f11bece7..ce5d6fb2112 100644 --- a/advisories/unreviewed/2022/05/GHSA-f786-x4vc-7rj4/GHSA-f786-x4vc-7rj4.json +++ b/advisories/unreviewed/2022/05/GHSA-f786-x4vc-7rj4/GHSA-f786-x4vc-7rj4.json @@ -7,12 +7,8 @@ "CVE-2010-0860" ], "details": "Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to the Create User privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f78m-qr4v-qgmc/GHSA-f78m-qr4v-qgmc.json b/advisories/unreviewed/2022/05/GHSA-f78m-qr4v-qgmc/GHSA-f78m-qr4v-qgmc.json index 91e5a6ca0a3..a057edd7fa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-f78m-qr4v-qgmc/GHSA-f78m-qr4v-qgmc.json +++ b/advisories/unreviewed/2022/05/GHSA-f78m-qr4v-qgmc/GHSA-f78m-qr4v-qgmc.json @@ -7,12 +7,8 @@ "CVE-2010-0804" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in iBoutique 4.0 allows remote attackers to inject arbitrary web script or HTML via the key parameter in a products action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f884-hg8h-4m66/GHSA-f884-hg8h-4m66.json b/advisories/unreviewed/2022/05/GHSA-f884-hg8h-4m66/GHSA-f884-hg8h-4m66.json index 6822ffbb5c0..75bd33668f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-f884-hg8h-4m66/GHSA-f884-hg8h-4m66.json +++ b/advisories/unreviewed/2022/05/GHSA-f884-hg8h-4m66/GHSA-f884-hg8h-4m66.json @@ -7,12 +7,8 @@ "CVE-2010-0658" ], "details": "Multiple integer overflows in Skia, as used in Google Chrome before 4.0.249.78, allow remote attackers to execute arbitrary code in the Chrome sandbox or cause a denial of service (memory corruption and application crash) via vectors involving CANVAS elements.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f89g-prcc-gc59/GHSA-f89g-prcc-gc59.json b/advisories/unreviewed/2022/05/GHSA-f89g-prcc-gc59/GHSA-f89g-prcc-gc59.json index cb5d000f1ee..1ddec8bd227 100644 --- a/advisories/unreviewed/2022/05/GHSA-f89g-prcc-gc59/GHSA-f89g-prcc-gc59.json +++ b/advisories/unreviewed/2022/05/GHSA-f89g-prcc-gc59/GHSA-f89g-prcc-gc59.json @@ -7,12 +7,8 @@ "CVE-2010-0507" ], "details": "Buffer overflow in Image RAW in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PEF image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8mj-3ccw-359h/GHSA-f8mj-3ccw-359h.json b/advisories/unreviewed/2022/05/GHSA-f8mj-3ccw-359h/GHSA-f8mj-3ccw-359h.json index 7229d9a364a..bf8263effce 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8mj-3ccw-359h/GHSA-f8mj-3ccw-359h.json +++ b/advisories/unreviewed/2022/05/GHSA-f8mj-3ccw-359h/GHSA-f8mj-3ccw-359h.json @@ -7,12 +7,8 @@ "CVE-2010-0468" ], "details": "Cross-site scripting (XSS) vulnerability in utilities/longproc.cfm in PaperThin CommonSpot Content Server allows remote attackers to inject arbitrary web script or HTML via the url parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8xj-3764-2w44/GHSA-f8xj-3764-2w44.json b/advisories/unreviewed/2022/05/GHSA-f8xj-3764-2w44/GHSA-f8xj-3764-2w44.json index 33fb2e135a2..88822c6ae70 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8xj-3764-2w44/GHSA-f8xj-3764-2w44.json +++ b/advisories/unreviewed/2022/05/GHSA-f8xj-3764-2w44/GHSA-f8xj-3764-2w44.json @@ -7,12 +7,8 @@ "CVE-2010-0646" ], "details": "Multiple integer signedness errors in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arbitrary code in the Chrome sandbox via crafted use of JavaScript arrays.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f93c-x9q3-9rh9/GHSA-f93c-x9q3-9rh9.json b/advisories/unreviewed/2022/05/GHSA-f93c-x9q3-9rh9/GHSA-f93c-x9q3-9rh9.json index 40f619ed81e..4eced001ab7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f93c-x9q3-9rh9/GHSA-f93c-x9q3-9rh9.json +++ b/advisories/unreviewed/2022/05/GHSA-f93c-x9q3-9rh9/GHSA-f93c-x9q3-9rh9.json @@ -7,12 +7,8 @@ "CVE-2010-0331" ], "details": "Cross-site scripting (XSS) vulnerability in the TV21 Talkshow (tv21_talkshow) extension 1.0.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fcqq-mm95-6mqp/GHSA-fcqq-mm95-6mqp.json b/advisories/unreviewed/2022/05/GHSA-fcqq-mm95-6mqp/GHSA-fcqq-mm95-6mqp.json index 2aab6cf69b9..6d581fb4379 100644 --- a/advisories/unreviewed/2022/05/GHSA-fcqq-mm95-6mqp/GHSA-fcqq-mm95-6mqp.json +++ b/advisories/unreviewed/2022/05/GHSA-fcqq-mm95-6mqp/GHSA-fcqq-mm95-6mqp.json @@ -7,12 +7,8 @@ "CVE-2010-0831" ], "details": "Directory traversal vulnerability in the extract_jar function in jartool.c in FastJar 0.98 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in a non-initial pathname component in a filename within a .jar archive, a related issue to CVE-2005-1080. NOTE: this vulnerability exists because of an incomplete fix for CVE-2006-3619.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffgr-2fqr-wrm5/GHSA-ffgr-2fqr-wrm5.json b/advisories/unreviewed/2022/05/GHSA-ffgr-2fqr-wrm5/GHSA-ffgr-2fqr-wrm5.json index 963c3c7db2f..1a69ae7334d 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffgr-2fqr-wrm5/GHSA-ffgr-2fqr-wrm5.json +++ b/advisories/unreviewed/2022/05/GHSA-ffgr-2fqr-wrm5/GHSA-ffgr-2fqr-wrm5.json @@ -7,12 +7,8 @@ "CVE-2009-5130" ], "details": "The Rules Service in Websense Email Security before 7.1 allows remote attackers to cause a denial of service (service crash) via an attachment with a crafted size.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg69-fq4r-3w28/GHSA-fg69-fq4r-3w28.json b/advisories/unreviewed/2022/05/GHSA-fg69-fq4r-3w28/GHSA-fg69-fq4r-3w28.json index ebc32e0309e..252e8ce5573 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg69-fq4r-3w28/GHSA-fg69-fq4r-3w28.json +++ b/advisories/unreviewed/2022/05/GHSA-fg69-fq4r-3w28/GHSA-fg69-fq4r-3w28.json @@ -7,12 +7,8 @@ "CVE-2010-0505" ], "details": "Heap-based buffer overflow in ImageIO in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 (JPEG2000) image, related to incorrect calculation and the CGImageReadGetBytesAtOffset function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg9r-mq2g-292x/GHSA-fg9r-mq2g-292x.json b/advisories/unreviewed/2022/05/GHSA-fg9r-mq2g-292x/GHSA-fg9r-mq2g-292x.json index 8e84d138817..60aa4d0ac79 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg9r-mq2g-292x/GHSA-fg9r-mq2g-292x.json +++ b/advisories/unreviewed/2022/05/GHSA-fg9r-mq2g-292x/GHSA-fg9r-mq2g-292x.json @@ -7,12 +7,8 @@ "CVE-2010-0147" ], "details": "SQL injection vulnerability in the Management Center for Cisco Security Agents 5.1 before 5.1.0.117, 5.2 before 5.2.0.296, and 6.0 before 6.0.1.132 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fh23-xmjc-5cw7/GHSA-fh23-xmjc-5cw7.json b/advisories/unreviewed/2022/05/GHSA-fh23-xmjc-5cw7/GHSA-fh23-xmjc-5cw7.json index d39f2ee0b60..52f54d51aaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh23-xmjc-5cw7/GHSA-fh23-xmjc-5cw7.json +++ b/advisories/unreviewed/2022/05/GHSA-fh23-xmjc-5cw7/GHSA-fh23-xmjc-5cw7.json @@ -7,12 +7,8 @@ "CVE-2010-0014" ], "details": "System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjp3-x79g-grgm/GHSA-fjp3-x79g-grgm.json b/advisories/unreviewed/2022/05/GHSA-fjp3-x79g-grgm/GHSA-fjp3-x79g-grgm.json index b34c1b99aa4..fcbb0dfaf44 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjp3-x79g-grgm/GHSA-fjp3-x79g-grgm.json +++ b/advisories/unreviewed/2022/05/GHSA-fjp3-x79g-grgm/GHSA-fjp3-x79g-grgm.json @@ -7,12 +7,8 @@ "CVE-2010-0263" ], "details": "Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; and Office SharePoint Server 2007 SP1 and SP2 do not validate ZIP headers during decompression of Open XML (.XLSX) documents, which allows remote attackers to execute arbitrary code via a crafted document that triggers access to uninitialized memory locations, aka \"Microsoft Office Excel XLSX File Parsing Code Execution Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fp84-6pq7-h5cw/GHSA-fp84-6pq7-h5cw.json b/advisories/unreviewed/2022/05/GHSA-fp84-6pq7-h5cw/GHSA-fp84-6pq7-h5cw.json index 881223218e1..ea0ade92dfd 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp84-6pq7-h5cw/GHSA-fp84-6pq7-h5cw.json +++ b/advisories/unreviewed/2022/05/GHSA-fp84-6pq7-h5cw/GHSA-fp84-6pq7-h5cw.json @@ -7,12 +7,8 @@ "CVE-2010-0770" ], "details": "IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.9 allows remote authenticated users to cause a denial of service (ORB ListenerThread hang) by aborting an SSL handshake.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fq5j-826m-h5wc/GHSA-fq5j-826m-h5wc.json b/advisories/unreviewed/2022/05/GHSA-fq5j-826m-h5wc/GHSA-fq5j-826m-h5wc.json index 703d645a1e6..eb24d21cfd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq5j-826m-h5wc/GHSA-fq5j-826m-h5wc.json +++ b/advisories/unreviewed/2022/05/GHSA-fq5j-826m-h5wc/GHSA-fq5j-826m-h5wc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-frgp-qr7c-8f9q/GHSA-frgp-qr7c-8f9q.json b/advisories/unreviewed/2022/05/GHSA-frgp-qr7c-8f9q/GHSA-frgp-qr7c-8f9q.json index f4f7613d397..69b4fc8b76a 100644 --- a/advisories/unreviewed/2022/05/GHSA-frgp-qr7c-8f9q/GHSA-frgp-qr7c-8f9q.json +++ b/advisories/unreviewed/2022/05/GHSA-frgp-qr7c-8f9q/GHSA-frgp-qr7c-8f9q.json @@ -7,12 +7,8 @@ "CVE-2010-0801" ], "details": "Directory traversal vulnerability in the AutartiTarot (com_autartitarot) component 1.0.3 for Joomla! allows remote authenticated users, with \"Public Back-end\" group permissions, to read arbitrary files via directory traversal sequences in the controller parameter in an edit task to administrator/index.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-frm6-2pc6-6cxf/GHSA-frm6-2pc6-6cxf.json b/advisories/unreviewed/2022/05/GHSA-frm6-2pc6-6cxf/GHSA-frm6-2pc6-6cxf.json index 4e1e5f22f2e..9c7b1a918d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-frm6-2pc6-6cxf/GHSA-frm6-2pc6-6cxf.json +++ b/advisories/unreviewed/2022/05/GHSA-frm6-2pc6-6cxf/GHSA-frm6-2pc6-6cxf.json @@ -7,12 +7,8 @@ "CVE-2010-0498" ], "details": "Directory Services in Apple Mac OS X before 10.6.3 does not properly perform authorization during processing of record names, which allows local users to gain privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv95-xjj6-g8qc/GHSA-fv95-xjj6-g8qc.json b/advisories/unreviewed/2022/05/GHSA-fv95-xjj6-g8qc/GHSA-fv95-xjj6-g8qc.json index 05213a8ceff..20294498b99 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv95-xjj6-g8qc/GHSA-fv95-xjj6-g8qc.json +++ b/advisories/unreviewed/2022/05/GHSA-fv95-xjj6-g8qc/GHSA-fv95-xjj6-g8qc.json @@ -7,12 +7,8 @@ "CVE-2010-0628" ], "details": "The spnego_gss_accept_sec_context function in lib/gssapi/spnego/spnego_mech.c in the SPNEGO GSS-API functionality in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2 and 1.8 before 1.8.1 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via an invalid packet that triggers incorrect preparation of an error token.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fvv2-374f-gmhr/GHSA-fvv2-374f-gmhr.json b/advisories/unreviewed/2022/05/GHSA-fvv2-374f-gmhr/GHSA-fvv2-374f-gmhr.json index 1b760ef6186..1c46f61508f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvv2-374f-gmhr/GHSA-fvv2-374f-gmhr.json +++ b/advisories/unreviewed/2022/05/GHSA-fvv2-374f-gmhr/GHSA-fvv2-374f-gmhr.json @@ -7,12 +7,8 @@ "CVE-2010-0365" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in BitScripts Bits Video Script 2.04 and 2.05 Gold Beta allows remote attackers to inject arbitrary web script or HTML via the order parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fx5h-623c-jvh7/GHSA-fx5h-623c-jvh7.json b/advisories/unreviewed/2022/05/GHSA-fx5h-623c-jvh7/GHSA-fx5h-623c-jvh7.json index de9ff009263..2ca5ea46fe6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx5h-623c-jvh7/GHSA-fx5h-623c-jvh7.json +++ b/advisories/unreviewed/2022/05/GHSA-fx5h-623c-jvh7/GHSA-fx5h-623c-jvh7.json @@ -7,12 +7,8 @@ "CVE-2010-0288" ], "details": "A typo in the administrator permission check in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25b allows remote attackers to gain privileges and access closed wikis by editing current ACL statements, as demonstrated in the wild in January 2010.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g22j-gg6w-5f84/GHSA-g22j-gg6w-5f84.json b/advisories/unreviewed/2022/05/GHSA-g22j-gg6w-5f84/GHSA-g22j-gg6w-5f84.json index 35055243610..63edcf95d3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g22j-gg6w-5f84/GHSA-g22j-gg6w-5f84.json +++ b/advisories/unreviewed/2022/05/GHSA-g22j-gg6w-5f84/GHSA-g22j-gg6w-5f84.json @@ -7,12 +7,8 @@ "CVE-2010-0459" ], "details": "SQL injection vulnerability in the Mochigames (com_mochigames) component 0.51 and possibly other versions for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2vh-rcx2-8pp8/GHSA-g2vh-rcx2-8pp8.json b/advisories/unreviewed/2022/05/GHSA-g2vh-rcx2-8pp8/GHSA-g2vh-rcx2-8pp8.json index e9cb775f6b9..bff5573464e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2vh-rcx2-8pp8/GHSA-g2vh-rcx2-8pp8.json +++ b/advisories/unreviewed/2022/05/GHSA-g2vh-rcx2-8pp8/GHSA-g2vh-rcx2-8pp8.json @@ -7,12 +7,8 @@ "CVE-2010-0443" ], "details": "Unspecified vulnerability in Record Management Services (RMS) before VMS83A_RMS-V1100 for HP OpenVMS on the Alpha platform allows local users to gain privileges via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g3fm-rgq3-h9w3/GHSA-g3fm-rgq3-h9w3.json b/advisories/unreviewed/2022/05/GHSA-g3fm-rgq3-h9w3/GHSA-g3fm-rgq3-h9w3.json index 7c0e2748127..1f1bf8f0347 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3fm-rgq3-h9w3/GHSA-g3fm-rgq3-h9w3.json +++ b/advisories/unreviewed/2022/05/GHSA-g3fm-rgq3-h9w3/GHSA-g3fm-rgq3-h9w3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4jv-x7wv-j698/GHSA-g4jv-x7wv-j698.json b/advisories/unreviewed/2022/05/GHSA-g4jv-x7wv-j698/GHSA-g4jv-x7wv-j698.json index aadc3cfd545..9564c4475df 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4jv-x7wv-j698/GHSA-g4jv-x7wv-j698.json +++ b/advisories/unreviewed/2022/05/GHSA-g4jv-x7wv-j698/GHSA-g4jv-x7wv-j698.json @@ -7,12 +7,8 @@ "CVE-2010-0557" ], "details": "IBM Cognos Express 9.0 allows attackers to obtain unspecified access to the Tomcat Manager component, and cause a denial of service, by leveraging hardcoded credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4x4-8fj2-6pwg/GHSA-g4x4-8fj2-6pwg.json b/advisories/unreviewed/2022/05/GHSA-g4x4-8fj2-6pwg/GHSA-g4x4-8fj2-6pwg.json index 0591ef087c8..355f0194b80 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4x4-8fj2-6pwg/GHSA-g4x4-8fj2-6pwg.json +++ b/advisories/unreviewed/2022/05/GHSA-g4x4-8fj2-6pwg/GHSA-g4x4-8fj2-6pwg.json @@ -7,12 +7,8 @@ "CVE-2010-0177" ], "details": "Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, frees the contents of the window.navigator.plugins array while a reference to an array element is still active, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors, related to a \"dangling pointer vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -124,9 +120,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5j6-vhp8-xrgj/GHSA-g5j6-vhp8-xrgj.json b/advisories/unreviewed/2022/05/GHSA-g5j6-vhp8-xrgj/GHSA-g5j6-vhp8-xrgj.json index 1e174d5ff22..2fbc14afb83 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5j6-vhp8-xrgj/GHSA-g5j6-vhp8-xrgj.json +++ b/advisories/unreviewed/2022/05/GHSA-g5j6-vhp8-xrgj/GHSA-g5j6-vhp8-xrgj.json @@ -7,12 +7,8 @@ "CVE-2010-0053" ], "details": "Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the run-in Cascading Style Sheets (CSS) display property.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5m2-66gg-cgc4/GHSA-g5m2-66gg-cgc4.json b/advisories/unreviewed/2022/05/GHSA-g5m2-66gg-cgc4/GHSA-g5m2-66gg-cgc4.json index 67764eac954..f7b9332d77f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5m2-66gg-cgc4/GHSA-g5m2-66gg-cgc4.json +++ b/advisories/unreviewed/2022/05/GHSA-g5m2-66gg-cgc4/GHSA-g5m2-66gg-cgc4.json @@ -7,12 +7,8 @@ "CVE-2010-0075" ], "details": "Unspecified vulnerability in the Oracle HRMS (Self Service) component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.1 allows remote attackers to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g5p3-8rp5-m2r4/GHSA-g5p3-8rp5-m2r4.json b/advisories/unreviewed/2022/05/GHSA-g5p3-8rp5-m2r4/GHSA-g5p3-8rp5-m2r4.json index 2fbf7e249f7..9dfe715b205 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5p3-8rp5-m2r4/GHSA-g5p3-8rp5-m2r4.json +++ b/advisories/unreviewed/2022/05/GHSA-g5p3-8rp5-m2r4/GHSA-g5p3-8rp5-m2r4.json @@ -7,12 +7,8 @@ "CVE-2010-0504" ], "details": "Multiple stack-based buffer overflows in iChat Server in Apple Mac OS X Server before 10.6.3 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5q4-36jf-94r5/GHSA-g5q4-36jf-94r5.json b/advisories/unreviewed/2022/05/GHSA-g5q4-36jf-94r5/GHSA-g5q4-36jf-94r5.json index d6e2ff5ee80..c3e5363ef78 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5q4-36jf-94r5/GHSA-g5q4-36jf-94r5.json +++ b/advisories/unreviewed/2022/05/GHSA-g5q4-36jf-94r5/GHSA-g5q4-36jf-94r5.json @@ -7,12 +7,8 @@ "CVE-2010-0656" ], "details": "WebKit before r51295, as used in Google Chrome before 4.0.249.78, presents a directory-listing page in response to an XMLHttpRequest for a file:/// URL that corresponds to a directory, which allows attackers to obtain sensitive information or possibly have unspecified other impact via a crafted local HTML document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5r9-wqjm-6653/GHSA-g5r9-wqjm-6653.json b/advisories/unreviewed/2022/05/GHSA-g5r9-wqjm-6653/GHSA-g5r9-wqjm-6653.json index cef07b26438..7217b01e7c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5r9-wqjm-6653/GHSA-g5r9-wqjm-6653.json +++ b/advisories/unreviewed/2022/05/GHSA-g5r9-wqjm-6653/GHSA-g5r9-wqjm-6653.json @@ -7,12 +7,8 @@ "CVE-2010-0607" ], "details": "Cross-site scripting (XSS) vulnerability in Forms/status_statistics_1 in the Sterlite SAM300 AX Router allows remote attackers to inject arbitrary web script or HTML via the Stat_Radio parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5x4-8v96-9hwx/GHSA-g5x4-8v96-9hwx.json b/advisories/unreviewed/2022/05/GHSA-g5x4-8v96-9hwx/GHSA-g5x4-8v96-9hwx.json index 57abcaeee5b..30be7c389e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5x4-8v96-9hwx/GHSA-g5x4-8v96-9hwx.json +++ b/advisories/unreviewed/2022/05/GHSA-g5x4-8v96-9hwx/GHSA-g5x4-8v96-9hwx.json @@ -7,12 +7,8 @@ "CVE-2010-0166" ], "details": "The gfxTextRun::SanitizeGlyphRuns function in gfx/thebes/src/gfxFont.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 on Mac OS X, when the Core Text API is used, does not properly perform certain deletions, which allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via an HTML document containing invisible Unicode characters, as demonstrated by the U+FEFF, U+FFF9, U+FFFA, and U+FFFB characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g62f-837m-h27x/GHSA-g62f-837m-h27x.json b/advisories/unreviewed/2022/05/GHSA-g62f-837m-h27x/GHSA-g62f-837m-h27x.json index e341b5825b1..00dc5a2943d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g62f-837m-h27x/GHSA-g62f-837m-h27x.json +++ b/advisories/unreviewed/2022/05/GHSA-g62f-837m-h27x/GHSA-g62f-837m-h27x.json @@ -7,12 +7,8 @@ "CVE-2010-0835" ], "details": "Unspecified vulnerability in the Wireless component in Oracle Fusion Middleware 10.1.2.3 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g73r-mgv6-gcj5/GHSA-g73r-mgv6-gcj5.json b/advisories/unreviewed/2022/05/GHSA-g73r-mgv6-gcj5/GHSA-g73r-mgv6-gcj5.json index 072ff9bfe3c..c46cee6b6e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-g73r-mgv6-gcj5/GHSA-g73r-mgv6-gcj5.json +++ b/advisories/unreviewed/2022/05/GHSA-g73r-mgv6-gcj5/GHSA-g73r-mgv6-gcj5.json @@ -7,12 +7,8 @@ "CVE-2010-0671" ], "details": "SQL injection vulnerability in index.php in KR MEDIA Pogodny CMS allows remote attackers to execute arbitrary SQL commands via the id parameter in a niusy action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7jc-5wm7-65m8/GHSA-g7jc-5wm7-65m8.json b/advisories/unreviewed/2022/05/GHSA-g7jc-5wm7-65m8/GHSA-g7jc-5wm7-65m8.json index 25f619558db..b72f4f79f5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7jc-5wm7-65m8/GHSA-g7jc-5wm7-65m8.json +++ b/advisories/unreviewed/2022/05/GHSA-g7jc-5wm7-65m8/GHSA-g7jc-5wm7-65m8.json @@ -7,12 +7,8 @@ "CVE-2010-0585" ], "details": "Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed Skinny Client Control Protocol (SCCP) message, aka Bug ID CSCsz48614, the \"SCCP Packet Processing Denial of Service Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7rq-8jpp-277q/GHSA-g7rq-8jpp-277q.json b/advisories/unreviewed/2022/05/GHSA-g7rq-8jpp-277q/GHSA-g7rq-8jpp-277q.json index afe0a4b3123..7489dd5423d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7rq-8jpp-277q/GHSA-g7rq-8jpp-277q.json +++ b/advisories/unreviewed/2022/05/GHSA-g7rq-8jpp-277q/GHSA-g7rq-8jpp-277q.json @@ -7,12 +7,8 @@ "CVE-2010-0330" ], "details": "SQL injection vulnerability in the Googlemaps for tt_news (jf_easymaps) extension 1.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7vf-8pww-hmqm/GHSA-g7vf-8pww-hmqm.json b/advisories/unreviewed/2022/05/GHSA-g7vf-8pww-hmqm/GHSA-g7vf-8pww-hmqm.json index f0647d9f523..4f853142b9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7vf-8pww-hmqm/GHSA-g7vf-8pww-hmqm.json +++ b/advisories/unreviewed/2022/05/GHSA-g7vf-8pww-hmqm/GHSA-g7vf-8pww-hmqm.json @@ -7,12 +7,8 @@ "CVE-2010-0675" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in BGSvetionik BGS CMS 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the search parameter in a search action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7vj-rmhg-q3rh/GHSA-g7vj-rmhg-q3rh.json b/advisories/unreviewed/2022/05/GHSA-g7vj-rmhg-q3rh/GHSA-g7vj-rmhg-q3rh.json index 9fe303903a7..21327e7c851 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7vj-rmhg-q3rh/GHSA-g7vj-rmhg-q3rh.json +++ b/advisories/unreviewed/2022/05/GHSA-g7vj-rmhg-q3rh/GHSA-g7vj-rmhg-q3rh.json @@ -7,12 +7,8 @@ "CVE-2010-0364" ], "details": "Stack-based buffer overflow in VideoLAN VLC Media Player 0.8.6 allows user-assisted remote attackers to execute arbitrary code via an ogg file with a crafted Advanced SubStation Alpha Subtitle (.ass) file, probably involving the Dialogue field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7x2-68r5-j48j/GHSA-g7x2-68r5-j48j.json b/advisories/unreviewed/2022/05/GHSA-g7x2-68r5-j48j/GHSA-g7x2-68r5-j48j.json index ac04c987fa6..72bc92890de 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7x2-68r5-j48j/GHSA-g7x2-68r5-j48j.json +++ b/advisories/unreviewed/2022/05/GHSA-g7x2-68r5-j48j/GHSA-g7x2-68r5-j48j.json @@ -7,12 +7,8 @@ "CVE-2010-0648" ], "details": "Mozilla Firefox, possibly before 3.6, allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value, related to an IFRAME element.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g82f-w5wm-qcw6/GHSA-g82f-w5wm-qcw6.json b/advisories/unreviewed/2022/05/GHSA-g82f-w5wm-qcw6/GHSA-g82f-w5wm-qcw6.json index d1ec653a7ac..26861854e9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g82f-w5wm-qcw6/GHSA-g82f-w5wm-qcw6.json +++ b/advisories/unreviewed/2022/05/GHSA-g82f-w5wm-qcw6/GHSA-g82f-w5wm-qcw6.json @@ -7,12 +7,8 @@ "CVE-2010-0380" ], "details": "install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8xp-5hv7-77f4/GHSA-g8xp-5hv7-77f4.json b/advisories/unreviewed/2022/05/GHSA-g8xp-5hv7-77f4/GHSA-g8xp-5hv7-77f4.json index c1120639727..8d9332fec6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8xp-5hv7-77f4/GHSA-g8xp-5hv7-77f4.json +++ b/advisories/unreviewed/2022/05/GHSA-g8xp-5hv7-77f4/GHSA-g8xp-5hv7-77f4.json @@ -7,12 +7,8 @@ "CVE-2010-0731" ], "details": "The gnutls_x509_crt_get_serial function in the GnuTLS library before 1.2.1, when running on big-endian, 64-bit platforms, calls the asn1_read_value with a pointer to the wrong data type and the wrong length value, which allows remote attackers to bypass the certificate revocation list (CRL) check and cause a stack-based buffer overflow via a crafted X.509 certificate, related to extraction of a serial number.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g94q-cc43-mm5v/GHSA-g94q-cc43-mm5v.json b/advisories/unreviewed/2022/05/GHSA-g94q-cc43-mm5v/GHSA-g94q-cc43-mm5v.json index dd8fce9a5fd..df3ec7e518a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g94q-cc43-mm5v/GHSA-g94q-cc43-mm5v.json +++ b/advisories/unreviewed/2022/05/GHSA-g94q-cc43-mm5v/GHSA-g94q-cc43-mm5v.json @@ -7,12 +7,8 @@ "CVE-2010-0162" ], "details": "Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly support the application/octet-stream content type as a protection mechanism against execution of web script in certain circumstances involving SVG and the EMBED element, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via an embedded SVG document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g999-rfhc-4ch4/GHSA-g999-rfhc-4ch4.json b/advisories/unreviewed/2022/05/GHSA-g999-rfhc-4ch4/GHSA-g999-rfhc-4ch4.json index 716c7087c2b..f6c1564385c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g999-rfhc-4ch4/GHSA-g999-rfhc-4ch4.json +++ b/advisories/unreviewed/2022/05/GHSA-g999-rfhc-4ch4/GHSA-g999-rfhc-4ch4.json @@ -7,12 +7,8 @@ "CVE-2010-0603" ], "details": "The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S10 allows remote attackers to cause a denial of service (device crash) via a malformed session attribute, aka Bug ID CSCsk40030.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9jf-m93c-whqj/GHSA-g9jf-m93c-whqj.json b/advisories/unreviewed/2022/05/GHSA-g9jf-m93c-whqj/GHSA-g9jf-m93c-whqj.json index bd9e1640391..43438be0770 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9jf-m93c-whqj/GHSA-g9jf-m93c-whqj.json +++ b/advisories/unreviewed/2022/05/GHSA-g9jf-m93c-whqj/GHSA-g9jf-m93c-whqj.json @@ -7,12 +7,8 @@ "CVE-2010-0710" ], "details": "SQL injection vulnerability in default.asp in ASPCode CMS 1.5.8, 2.0.0 Build 103, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the newsid parameter when the sec parameter is 26. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9rc-hj23-83gf/GHSA-g9rc-hj23-83gf.json b/advisories/unreviewed/2022/05/GHSA-g9rc-hj23-83gf/GHSA-g9rc-hj23-83gf.json index a5ec5002ed0..5bdad485795 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9rc-hj23-83gf/GHSA-g9rc-hj23-83gf.json +++ b/advisories/unreviewed/2022/05/GHSA-g9rc-hj23-83gf/GHSA-g9rc-hj23-83gf.json @@ -7,12 +7,8 @@ "CVE-2010-0526" ], "details": "Heap-based buffer overflow in QuickTimeMPEG.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted genl atom in a QuickTime movie file with MPEG encoding, which is not properly handled during decompression.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9rm-5r89-23xg/GHSA-g9rm-5r89-23xg.json b/advisories/unreviewed/2022/05/GHSA-g9rm-5r89-23xg/GHSA-g9rm-5r89-23xg.json index c0f216e66e0..4aa1e6f7b16 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9rm-5r89-23xg/GHSA-g9rm-5r89-23xg.json +++ b/advisories/unreviewed/2022/05/GHSA-g9rm-5r89-23xg/GHSA-g9rm-5r89-23xg.json @@ -7,12 +7,8 @@ "CVE-2010-0229" ], "details": "Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g9xm-ww44-j6j9/GHSA-g9xm-ww44-j6j9.json b/advisories/unreviewed/2022/05/GHSA-g9xm-ww44-j6j9/GHSA-g9xm-ww44-j6j9.json index dadd433aaa6..dd76ce43020 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9xm-ww44-j6j9/GHSA-g9xm-ww44-j6j9.json +++ b/advisories/unreviewed/2022/05/GHSA-g9xm-ww44-j6j9/GHSA-g9xm-ww44-j6j9.json @@ -7,12 +7,8 @@ "CVE-2010-0463" ], "details": "Horde IMP 4.3.6 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gc42-5x7j-2448/GHSA-gc42-5x7j-2448.json b/advisories/unreviewed/2022/05/GHSA-gc42-5x7j-2448/GHSA-gc42-5x7j-2448.json index 35f0a600e3d..7bb469e9171 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc42-5x7j-2448/GHSA-gc42-5x7j-2448.json +++ b/advisories/unreviewed/2022/05/GHSA-gc42-5x7j-2448/GHSA-gc42-5x7j-2448.json @@ -7,12 +7,8 @@ "CVE-2010-0333" ], "details": "SQL injection vulnerability in the Helpdesk (mg_help) extension 1.1.6 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcjm-3w9r-jvf4/GHSA-gcjm-3w9r-jvf4.json b/advisories/unreviewed/2022/05/GHSA-gcjm-3w9r-jvf4/GHSA-gcjm-3w9r-jvf4.json index 9a0d6e3113b..d5aa0c58f45 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcjm-3w9r-jvf4/GHSA-gcjm-3w9r-jvf4.json +++ b/advisories/unreviewed/2022/05/GHSA-gcjm-3w9r-jvf4/GHSA-gcjm-3w9r-jvf4.json @@ -7,12 +7,8 @@ "CVE-2010-0763" ], "details": "SQL injection vulnerability in index.php in CommodityRentals Vacation Rental Software allows remote attackers to execute arbitrary SQL commands via the rental_id parameter in a CalendarView action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gf4r-624h-wwhq/GHSA-gf4r-624h-wwhq.json b/advisories/unreviewed/2022/05/GHSA-gf4r-624h-wwhq/GHSA-gf4r-624h-wwhq.json index 29fb7656641..6c279dd6e60 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf4r-624h-wwhq/GHSA-gf4r-624h-wwhq.json +++ b/advisories/unreviewed/2022/05/GHSA-gf4r-624h-wwhq/GHSA-gf4r-624h-wwhq.json @@ -7,12 +7,8 @@ "CVE-2010-0250" ], "details": "Heap-based buffer overflow in DirectShow in Microsoft DirectX, as used in the AVI Filter on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2, and in Quartz on Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, allows remote attackers to execute arbitrary code via an AVI file with a crafted length field in an unspecified video stream, which is not properly handled by the RLE video decompressor, aka \"DirectShow Heap Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ggq7-6p9v-29vh/GHSA-ggq7-6p9v-29vh.json b/advisories/unreviewed/2022/05/GHSA-ggq7-6p9v-29vh/GHSA-ggq7-6p9v-29vh.json index 71358fe637f..6c5bcf32486 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggq7-6p9v-29vh/GHSA-ggq7-6p9v-29vh.json +++ b/advisories/unreviewed/2022/05/GHSA-ggq7-6p9v-29vh/GHSA-ggq7-6p9v-29vh.json @@ -7,12 +7,8 @@ "CVE-2009-5119" ], "details": "The default configuration of Apache Tomcat in Websense Manager in Websense Web Security 7.0 and Web Filter 7.0 enables weak SSL ciphers in conf/server.xml, which makes it easier for remote attackers to obtain sensitive information by sniffing the network and then conducting a brute-force attack against encrypted session data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ggwg-9wjf-jg8c/GHSA-ggwg-9wjf-jg8c.json b/advisories/unreviewed/2022/05/GHSA-ggwg-9wjf-jg8c/GHSA-ggwg-9wjf-jg8c.json index 0085aedf0c6..f2c45926354 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggwg-9wjf-jg8c/GHSA-ggwg-9wjf-jg8c.json +++ b/advisories/unreviewed/2022/05/GHSA-ggwg-9wjf-jg8c/GHSA-ggwg-9wjf-jg8c.json @@ -7,12 +7,8 @@ "CVE-2010-0035" ], "details": "The Key Distribution Center (KDC) in Kerberos in Microsoft Windows 2000 SP4, Server 2003 SP2, and Server 2008 Gold and SP2, when a trust relationship with a non-Windows Kerberos realm exists, allows remote authenticated users to cause a denial of service (NULL pointer dereference and domain controller outage) via a crafted Ticket Granting Ticket (TGT) renewal request, aka \"Kerberos Null Pointer Dereference Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gj49-ph64-rrxv/GHSA-gj49-ph64-rrxv.json b/advisories/unreviewed/2022/05/GHSA-gj49-ph64-rrxv/GHSA-gj49-ph64-rrxv.json index 769f6c15395..2bd0107b47a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj49-ph64-rrxv/GHSA-gj49-ph64-rrxv.json +++ b/advisories/unreviewed/2022/05/GHSA-gj49-ph64-rrxv/GHSA-gj49-ph64-rrxv.json @@ -7,12 +7,8 @@ "CVE-2010-0406" ], "details": "OpenTTD before 1.0.1 allows remote attackers to cause a denial of service (file-descriptor exhaustion and daemon crash) by performing incomplete downloads of the map.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gj5f-4m6m-67f6/GHSA-gj5f-4m6m-67f6.json b/advisories/unreviewed/2022/05/GHSA-gj5f-4m6m-67f6/GHSA-gj5f-4m6m-67f6.json index 03c14b9246e..456d663d8f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj5f-4m6m-67f6/GHSA-gj5f-4m6m-67f6.json +++ b/advisories/unreviewed/2022/05/GHSA-gj5f-4m6m-67f6/GHSA-gj5f-4m6m-67f6.json @@ -7,12 +7,8 @@ "CVE-2010-0242" ], "details": "The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 allows remote attackers to cause a denial of service (system hang) via crafted packets with malformed TCP selective acknowledgement (SACK) values, aka \"TCP/IP Selective Acknowledgement Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gjph-m3rc-hxq6/GHSA-gjph-m3rc-hxq6.json b/advisories/unreviewed/2022/05/GHSA-gjph-m3rc-hxq6/GHSA-gjph-m3rc-hxq6.json index 47143d5f627..0c630e2ef0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjph-m3rc-hxq6/GHSA-gjph-m3rc-hxq6.json +++ b/advisories/unreviewed/2022/05/GHSA-gjph-m3rc-hxq6/GHSA-gjph-m3rc-hxq6.json @@ -7,12 +7,8 @@ "CVE-2010-0453" ], "details": "The ucode_ioctl function in intel/io/ucode_drv.c in Sun Solaris 10 and OpenSolaris snv_69 through snv_133, when running on x86 architectures, allows local users to cause a denial of service (panic) via a request with a 0 size value to the UCODE_GET_VERSION IOCTL, which triggers a NULL pointer dereference in the ucode_get_rev function, related to retrieval of the microcode revision.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmm2-xpxc-5x86/GHSA-gmm2-xpxc-5x86.json b/advisories/unreviewed/2022/05/GHSA-gmm2-xpxc-5x86/GHSA-gmm2-xpxc-5x86.json index 5293b9c3ba4..dd74029d649 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmm2-xpxc-5x86/GHSA-gmm2-xpxc-5x86.json +++ b/advisories/unreviewed/2022/05/GHSA-gmm2-xpxc-5x86/GHSA-gmm2-xpxc-5x86.json @@ -7,12 +7,8 @@ "CVE-2010-0005" ], "details": "query.py in the query interface in ViewVC before 1.1.3 does not reject configurations that specify an unsupported authorizer for a root, which might allow remote attackers to bypass intended access restrictions via a query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmpw-376j-24w5/GHSA-gmpw-376j-24w5.json b/advisories/unreviewed/2022/05/GHSA-gmpw-376j-24w5/GHSA-gmpw-376j-24w5.json index 894f2b5829b..5a57b8e8b76 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmpw-376j-24w5/GHSA-gmpw-376j-24w5.json +++ b/advisories/unreviewed/2022/05/GHSA-gmpw-376j-24w5/GHSA-gmpw-376j-24w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gp2g-r8rq-q4j9/GHSA-gp2g-r8rq-q4j9.json b/advisories/unreviewed/2022/05/GHSA-gp2g-r8rq-q4j9/GHSA-gp2g-r8rq-q4j9.json index b2eeea46476..6b4a7f48e7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp2g-r8rq-q4j9/GHSA-gp2g-r8rq-q4j9.json +++ b/advisories/unreviewed/2022/05/GHSA-gp2g-r8rq-q4j9/GHSA-gp2g-r8rq-q4j9.json @@ -7,12 +7,8 @@ "CVE-2010-0027" ], "details": "The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, does not properly process input parameters, which allows remote attackers to execute arbitrary local programs via a crafted URL, aka \"URL Validation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gp37-fp87-2hq5/GHSA-gp37-fp87-2hq5.json b/advisories/unreviewed/2022/05/GHSA-gp37-fp87-2hq5/GHSA-gp37-fp87-2hq5.json index 9780a4f7283..45a93f4f711 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp37-fp87-2hq5/GHSA-gp37-fp87-2hq5.json +++ b/advisories/unreviewed/2022/05/GHSA-gp37-fp87-2hq5/GHSA-gp37-fp87-2hq5.json @@ -7,12 +7,8 @@ "CVE-2010-0484" ], "details": "The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2 \"do not properly validate changes in certain kernel objects,\" which allows local users to execute arbitrary code via vectors related to Device Contexts (DC) and the GetDCEx function, aka \"Win32k Improper Data Validation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gph4-ppxc-ppv3/GHSA-gph4-ppxc-ppv3.json b/advisories/unreviewed/2022/05/GHSA-gph4-ppxc-ppv3/GHSA-gph4-ppxc-ppv3.json index 794efbd14de..6e4d16f54ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-gph4-ppxc-ppv3/GHSA-gph4-ppxc-ppv3.json +++ b/advisories/unreviewed/2022/05/GHSA-gph4-ppxc-ppv3/GHSA-gph4-ppxc-ppv3.json @@ -7,12 +7,8 @@ "CVE-2010-0081" ], "details": "Unspecified vulnerability in the Application Server Control component in Oracle Fusion Middleware 10.1.2.3 and 10.1.4.0.1 allows remote authenticated users to affect integrity via unknown vectors, a different vulnerability than CVE-2010-2381.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gphr-mgq4-9ghp/GHSA-gphr-mgq4-9ghp.json b/advisories/unreviewed/2022/05/GHSA-gphr-mgq4-9ghp/GHSA-gphr-mgq4-9ghp.json index bc119fb9ba4..a3020b31ca6 100644 --- a/advisories/unreviewed/2022/05/GHSA-gphr-mgq4-9ghp/GHSA-gphr-mgq4-9ghp.json +++ b/advisories/unreviewed/2022/05/GHSA-gphr-mgq4-9ghp/GHSA-gphr-mgq4-9ghp.json @@ -7,12 +7,8 @@ "CVE-2009-5121" ], "details": "Websense Email Security 7.1 before Hotfix 4 allows remote attackers to bypass the sender-based blacklist by using the 8BITMIME EHLO keyword in the SMTP session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gpv2-xp96-53xg/GHSA-gpv2-xp96-53xg.json b/advisories/unreviewed/2022/05/GHSA-gpv2-xp96-53xg/GHSA-gpv2-xp96-53xg.json index af0bdfe6a3d..52a324d1268 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpv2-xp96-53xg/GHSA-gpv2-xp96-53xg.json +++ b/advisories/unreviewed/2022/05/GHSA-gpv2-xp96-53xg/GHSA-gpv2-xp96-53xg.json @@ -7,12 +7,8 @@ "CVE-2010-0751" ], "details": "The ip_evictor function in ip_fragment.c in libnids before 1.24, as used in dsniff and possibly other products, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via crafted fragmented packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqx8-cxgc-96jv/GHSA-gqx8-cxgc-96jv.json b/advisories/unreviewed/2022/05/GHSA-gqx8-cxgc-96jv/GHSA-gqx8-cxgc-96jv.json index a65532bf771..02f69869517 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqx8-cxgc-96jv/GHSA-gqx8-cxgc-96jv.json +++ b/advisories/unreviewed/2022/05/GHSA-gqx8-cxgc-96jv/GHSA-gqx8-cxgc-96jv.json @@ -7,12 +7,8 @@ "CVE-2010-0776" ], "details": "The Web Container in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.43, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.11 does not properly handle chunked transfer encoding during a call to response.sendRedirect, which allows remote attackers to cause a denial of service via a GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grh2-c998-g4gm/GHSA-grh2-c998-g4gm.json b/advisories/unreviewed/2022/05/GHSA-grh2-c998-g4gm/GHSA-grh2-c998-g4gm.json index 3dd3757f635..0832b3f84ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-grh2-c998-g4gm/GHSA-grh2-c998-g4gm.json +++ b/advisories/unreviewed/2022/05/GHSA-grh2-c998-g4gm/GHSA-grh2-c998-g4gm.json @@ -7,12 +7,8 @@ "CVE-2010-0154" ], "details": "Directory traversal vulnerability in sla/index.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the l parameter, related to an \"Insecure Direct Object Reference vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gvpc-rxf3-j5f7/GHSA-gvpc-rxf3-j5f7.json b/advisories/unreviewed/2022/05/GHSA-gvpc-rxf3-j5f7/GHSA-gvpc-rxf3-j5f7.json index 09b4358df67..e7eea0494f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvpc-rxf3-j5f7/GHSA-gvpc-rxf3-j5f7.json +++ b/advisories/unreviewed/2022/05/GHSA-gvpc-rxf3-j5f7/GHSA-gvpc-rxf3-j5f7.json @@ -7,12 +7,8 @@ "CVE-2010-0034" ], "details": "Stack-based buffer overflow in Microsoft Office PowerPoint 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka \"Office PowerPoint Viewer TextCharsAtom Record Stack Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gw7f-74vw-qm4j/GHSA-gw7f-74vw-qm4j.json b/advisories/unreviewed/2022/05/GHSA-gw7f-74vw-qm4j/GHSA-gw7f-74vw-qm4j.json index c1a90b1b395..d53c7f61822 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw7f-74vw-qm4j/GHSA-gw7f-74vw-qm4j.json +++ b/advisories/unreviewed/2022/05/GHSA-gw7f-74vw-qm4j/GHSA-gw7f-74vw-qm4j.json @@ -7,12 +7,8 @@ "CVE-2010-0879" ], "details": "Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.26 and 8.50.07 allows remote authenticated users to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gx4q-56cq-46h2/GHSA-gx4q-56cq-46h2.json b/advisories/unreviewed/2022/05/GHSA-gx4q-56cq-46h2/GHSA-gx4q-56cq-46h2.json index 5bc06b804e9..5d7046064fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx4q-56cq-46h2/GHSA-gx4q-56cq-46h2.json +++ b/advisories/unreviewed/2022/05/GHSA-gx4q-56cq-46h2/GHSA-gx4q-56cq-46h2.json @@ -7,12 +7,8 @@ "CVE-2010-0514" ], "details": "Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.261 encoding.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxc6-jrc3-x89v/GHSA-gxc6-jrc3-x89v.json b/advisories/unreviewed/2022/05/GHSA-gxc6-jrc3-x89v/GHSA-gxc6-jrc3-x89v.json index f4016815476..9c5daade9f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxc6-jrc3-x89v/GHSA-gxc6-jrc3-x89v.json +++ b/advisories/unreviewed/2022/05/GHSA-gxc6-jrc3-x89v/GHSA-gxc6-jrc3-x89v.json @@ -7,12 +7,8 @@ "CVE-2010-0844" ], "details": "Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is for improper parsing of a crafted MIDI stream when creating a MixerSequencer object, which causes a pointer to be corrupted and allows a NULL byte to be written to arbitrary memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -144,9 +140,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h267-7942-cfp5/GHSA-h267-7942-cfp5.json b/advisories/unreviewed/2022/05/GHSA-h267-7942-cfp5/GHSA-h267-7942-cfp5.json index 3612661467f..f00396a750a 100644 --- a/advisories/unreviewed/2022/05/GHSA-h267-7942-cfp5/GHSA-h267-7942-cfp5.json +++ b/advisories/unreviewed/2022/05/GHSA-h267-7942-cfp5/GHSA-h267-7942-cfp5.json @@ -7,12 +7,8 @@ "CVE-2010-0084" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality via unknown vectors, a different vulnerability than CVE-2010-0091.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2mw-974c-6pw2/GHSA-h2mw-974c-6pw2.json b/advisories/unreviewed/2022/05/GHSA-h2mw-974c-6pw2/GHSA-h2mw-974c-6pw2.json index d8ef3d7142a..efc6d0b1ad3 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2mw-974c-6pw2/GHSA-h2mw-974c-6pw2.json +++ b/advisories/unreviewed/2022/05/GHSA-h2mw-974c-6pw2/GHSA-h2mw-974c-6pw2.json @@ -7,12 +7,8 @@ "CVE-2010-0285" ], "details": "gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h38x-629j-fv6c/GHSA-h38x-629j-fv6c.json b/advisories/unreviewed/2022/05/GHSA-h38x-629j-fv6c/GHSA-h38x-629j-fv6c.json index c2881ca6ce0..3eee3ff4dc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h38x-629j-fv6c/GHSA-h38x-629j-fv6c.json +++ b/advisories/unreviewed/2022/05/GHSA-h38x-629j-fv6c/GHSA-h38x-629j-fv6c.json @@ -7,12 +7,8 @@ "CVE-2010-0189" ], "details": "A certain ActiveX control in NOS Microsystems getPlus Download Manager (aka DLM or Downloader) 1.5.2.35, as used in Adobe Download Manager, improperly validates requests involving web sites that are not in subdomains, which allows remote attackers to force the download and installation of arbitrary programs via a crafted name for a download site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h436-qgjj-x35v/GHSA-h436-qgjj-x35v.json b/advisories/unreviewed/2022/05/GHSA-h436-qgjj-x35v/GHSA-h436-qgjj-x35v.json index 29db32be86f..c3bc4f7005e 100644 --- a/advisories/unreviewed/2022/05/GHSA-h436-qgjj-x35v/GHSA-h436-qgjj-x35v.json +++ b/advisories/unreviewed/2022/05/GHSA-h436-qgjj-x35v/GHSA-h436-qgjj-x35v.json @@ -7,12 +7,8 @@ "CVE-2010-0359" ], "details": "Buffer overflow in the SSLv2 support in Zeus Web Server before 4.3r5 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long string in an invalid Client Hello message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h437-74pf-466p/GHSA-h437-74pf-466p.json b/advisories/unreviewed/2022/05/GHSA-h437-74pf-466p/GHSA-h437-74pf-466p.json index 7c47d942b1a..fd301a70a14 100644 --- a/advisories/unreviewed/2022/05/GHSA-h437-74pf-466p/GHSA-h437-74pf-466p.json +++ b/advisories/unreviewed/2022/05/GHSA-h437-74pf-466p/GHSA-h437-74pf-466p.json @@ -7,12 +7,8 @@ "CVE-2010-0600" ], "details": "Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not properly restrict network access to an unspecified configuration file, which allows remote attackers to read passwords and unspecified other account details via a (1) XML RPC or (2) XML RPC over HTTPS session, aka Bug ID CSCtb83512.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h468-v7vm-426v/GHSA-h468-v7vm-426v.json b/advisories/unreviewed/2022/05/GHSA-h468-v7vm-426v/GHSA-h468-v7vm-426v.json index 641add3ec82..20933b2753f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h468-v7vm-426v/GHSA-h468-v7vm-426v.json +++ b/advisories/unreviewed/2022/05/GHSA-h468-v7vm-426v/GHSA-h468-v7vm-426v.json @@ -7,12 +7,8 @@ "CVE-2010-0615" ], "details": "Cross-site scripting (XSS) vulnerability in assess.php in evalSMSI 2.1.03 allows remote attackers to inject arbitrary web script or HTML via the reports comment box in a continue_assess action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4hr-vrvh-q8pp/GHSA-h4hr-vrvh-q8pp.json b/advisories/unreviewed/2022/05/GHSA-h4hr-vrvh-q8pp/GHSA-h4hr-vrvh-q8pp.json index 3ed30c67e0a..708a5d629a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4hr-vrvh-q8pp/GHSA-h4hr-vrvh-q8pp.json +++ b/advisories/unreviewed/2022/05/GHSA-h4hr-vrvh-q8pp/GHSA-h4hr-vrvh-q8pp.json @@ -7,12 +7,8 @@ "CVE-2010-0623" ], "details": "The futex_lock_pi function in kernel/futex.c in the Linux kernel before 2.6.33-rc7 does not properly manage a certain reference count, which allows local users to cause a denial of service (OOPS) via vectors involving an unmount of an ext3 filesystem.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h543-cmp6-x5ph/GHSA-h543-cmp6-x5ph.json b/advisories/unreviewed/2022/05/GHSA-h543-cmp6-x5ph/GHSA-h543-cmp6-x5ph.json index 2b8f1dab618..fd1d97ad389 100644 --- a/advisories/unreviewed/2022/05/GHSA-h543-cmp6-x5ph/GHSA-h543-cmp6-x5ph.json +++ b/advisories/unreviewed/2022/05/GHSA-h543-cmp6-x5ph/GHSA-h543-cmp6-x5ph.json @@ -7,12 +7,8 @@ "CVE-2010-0565" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.2 before 7.2(4.45), 8.0 before 8.0(4.44), 8.1 before 8.1(2.35), and 8.2 before 8.2(1.10), allows remote attackers to cause a denial of service (page fault and device reload) via a malformed DTLS message, aka Bug ID CSCtb64913 and \"WebVPN DTLS Denial of Service Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h583-hf4f-hpxw/GHSA-h583-hf4f-hpxw.json b/advisories/unreviewed/2022/05/GHSA-h583-hf4f-hpxw/GHSA-h583-hf4f-hpxw.json index 5f83c88d1fc..a162119f81c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h583-hf4f-hpxw/GHSA-h583-hf4f-hpxw.json +++ b/advisories/unreviewed/2022/05/GHSA-h583-hf4f-hpxw/GHSA-h583-hf4f-hpxw.json @@ -7,12 +7,8 @@ "CVE-2010-0861" ], "details": "Unspecified vulnerability in the Oracle HRMS (Self Service) component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h6cf-mqwr-2mxq/GHSA-h6cf-mqwr-2mxq.json b/advisories/unreviewed/2022/05/GHSA-h6cf-mqwr-2mxq/GHSA-h6cf-mqwr-2mxq.json index 384a35bfac6..866587d084a 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6cf-mqwr-2mxq/GHSA-h6cf-mqwr-2mxq.json +++ b/advisories/unreviewed/2022/05/GHSA-h6cf-mqwr-2mxq/GHSA-h6cf-mqwr-2mxq.json @@ -7,12 +7,8 @@ "CVE-2010-0630" ], "details": "SQL injection vulnerability in viewjokes.php in Evernew Free Joke Script 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h749-xp26-rq5p/GHSA-h749-xp26-rq5p.json b/advisories/unreviewed/2022/05/GHSA-h749-xp26-rq5p/GHSA-h749-xp26-rq5p.json index 384f8041afb..f35eb8105f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-h749-xp26-rq5p/GHSA-h749-xp26-rq5p.json +++ b/advisories/unreviewed/2022/05/GHSA-h749-xp26-rq5p/GHSA-h749-xp26-rq5p.json @@ -7,12 +7,8 @@ "CVE-2010-0215" ], "details": "ActiveCollab before 2.3.2 allows remote authenticated users to bypass intended access restrictions, and (1) delete an attachment or (2) subscribe to an object, via a crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h768-g6c9-cwmw/GHSA-h768-g6c9-cwmw.json b/advisories/unreviewed/2022/05/GHSA-h768-g6c9-cwmw/GHSA-h768-g6c9-cwmw.json index 1353198fe71..588f4825ce2 100644 --- a/advisories/unreviewed/2022/05/GHSA-h768-g6c9-cwmw/GHSA-h768-g6c9-cwmw.json +++ b/advisories/unreviewed/2022/05/GHSA-h768-g6c9-cwmw/GHSA-h768-g6c9-cwmw.json @@ -7,12 +7,8 @@ "CVE-2010-0170" ], "details": "Mozilla Firefox 3.6 before 3.6.2 does not offer plugins the expected window.location protection mechanism, which might allow remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via vectors that are specific to each affected plugin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h7hj-hjcj-pwpj/GHSA-h7hj-hjcj-pwpj.json b/advisories/unreviewed/2022/05/GHSA-h7hj-hjcj-pwpj/GHSA-h7hj-hjcj-pwpj.json index 22a12a83418..de222f93032 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7hj-hjcj-pwpj/GHSA-h7hj-hjcj-pwpj.json +++ b/advisories/unreviewed/2022/05/GHSA-h7hj-hjcj-pwpj/GHSA-h7hj-hjcj-pwpj.json @@ -7,12 +7,8 @@ "CVE-2010-0298" ], "details": "The x86 emulator in KVM 83 does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) in determining the memory access available to CPL3 code, which allows guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, a related issue to CVE-2010-0306.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h83h-c72m-vp62/GHSA-h83h-c72m-vp62.json b/advisories/unreviewed/2022/05/GHSA-h83h-c72m-vp62/GHSA-h83h-c72m-vp62.json index 046218382d9..f44055ea623 100644 --- a/advisories/unreviewed/2022/05/GHSA-h83h-c72m-vp62/GHSA-h83h-c72m-vp62.json +++ b/advisories/unreviewed/2022/05/GHSA-h83h-c72m-vp62/GHSA-h83h-c72m-vp62.json @@ -7,12 +7,8 @@ "CVE-2010-0169" ], "details": "The CSSLoaderImpl::DoSheetComplete function in layout/style/nsCSSLoader.cpp in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 changes the case of certain strings in a stylesheet before adding this stylesheet to the XUL cache, which might allow remote attackers to modify the browser's font and other CSS attributes, and potentially disrupt rendering of a web page, by forcing the browser to perform this erroneous stylesheet caching.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h8hq-vp3m-hv4f/GHSA-h8hq-vp3m-hv4f.json b/advisories/unreviewed/2022/05/GHSA-h8hq-vp3m-hv4f/GHSA-h8hq-vp3m-hv4f.json index 38d66c286aa..2db9b63c591 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8hq-vp3m-hv4f/GHSA-h8hq-vp3m-hv4f.json +++ b/advisories/unreviewed/2022/05/GHSA-h8hq-vp3m-hv4f/GHSA-h8hq-vp3m-hv4f.json @@ -7,12 +7,8 @@ "CVE-2010-0011" ], "details": "The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run method of the Uzbl object, which allows remote attackers to execute arbitrary commands via JavaScript code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h8jm-2fp8-hwf5/GHSA-h8jm-2fp8-hwf5.json b/advisories/unreviewed/2022/05/GHSA-h8jm-2fp8-hwf5/GHSA-h8jm-2fp8-hwf5.json index ff2ccb60232..8b3905e7b16 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8jm-2fp8-hwf5/GHSA-h8jm-2fp8-hwf5.json +++ b/advisories/unreviewed/2022/05/GHSA-h8jm-2fp8-hwf5/GHSA-h8jm-2fp8-hwf5.json @@ -7,12 +7,8 @@ "CVE-2010-0450" ], "details": "Unspecified vulnerability in HP SOA Registry Foundation 6.63 and 6.64 allows remote authenticated users to gain privileges via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h98r-2r7c-g497/GHSA-h98r-2r7c-g497.json b/advisories/unreviewed/2022/05/GHSA-h98r-2r7c-g497/GHSA-h98r-2r7c-g497.json index 81c99682380..65cb2645d48 100644 --- a/advisories/unreviewed/2022/05/GHSA-h98r-2r7c-g497/GHSA-h98r-2r7c-g497.json +++ b/advisories/unreviewed/2022/05/GHSA-h98r-2r7c-g497/GHSA-h98r-2r7c-g497.json @@ -7,12 +7,8 @@ "CVE-2010-0182" ], "details": "The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9cc-4rm6-chr3/GHSA-h9cc-4rm6-chr3.json b/advisories/unreviewed/2022/05/GHSA-h9cc-4rm6-chr3/GHSA-h9cc-4rm6-chr3.json index 6f8d111fa90..b0d1d79f2d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9cc-4rm6-chr3/GHSA-h9cc-4rm6-chr3.json +++ b/advisories/unreviewed/2022/05/GHSA-h9cc-4rm6-chr3/GHSA-h9cc-4rm6-chr3.json @@ -7,12 +7,8 @@ "CVE-2010-0485" ], "details": "The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 Gold and SP2, Windows 7, and Server 2008 R2 \"do not properly validate all callback parameters when creating a new window,\" which allows local users to execute arbitrary code, aka \"Win32k Window Creation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9mp-jg98-m7vh/GHSA-h9mp-jg98-m7vh.json b/advisories/unreviewed/2022/05/GHSA-h9mp-jg98-m7vh/GHSA-h9mp-jg98-m7vh.json index 13f7dca7f79..fd7fa7d3619 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9mp-jg98-m7vh/GHSA-h9mp-jg98-m7vh.json +++ b/advisories/unreviewed/2022/05/GHSA-h9mp-jg98-m7vh/GHSA-h9mp-jg98-m7vh.json @@ -7,12 +7,8 @@ "CVE-2010-0682" ], "details": "WordPress 2.9 before 2.9.2 allows remote authenticated users to read trash posts from other authors via a direct request with a modified p parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9r2-943c-qg8v/GHSA-h9r2-943c-qg8v.json b/advisories/unreviewed/2022/05/GHSA-h9r2-943c-qg8v/GHSA-h9r2-943c-qg8v.json index 048241fbc34..4c2b37607d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9r2-943c-qg8v/GHSA-h9r2-943c-qg8v.json +++ b/advisories/unreviewed/2022/05/GHSA-h9r2-943c-qg8v/GHSA-h9r2-943c-qg8v.json @@ -7,12 +7,8 @@ "CVE-2010-0541" ], "details": "Cross-site scripting (XSS) vulnerability in the WEBrick HTTP server in Ruby in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows remote attackers to inject arbitrary web script or HTML via a crafted URI that triggers a UTF-7 error page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9x7-6vv2-h94q/GHSA-h9x7-6vv2-h94q.json b/advisories/unreviewed/2022/05/GHSA-h9x7-6vv2-h94q/GHSA-h9x7-6vv2-h94q.json index c6df96dc154..ca356653054 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9x7-6vv2-h94q/GHSA-h9x7-6vv2-h94q.json +++ b/advisories/unreviewed/2022/05/GHSA-h9x7-6vv2-h94q/GHSA-h9x7-6vv2-h94q.json @@ -7,12 +7,8 @@ "CVE-2010-0042" ], "details": "ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted TIFF image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf94-884j-c7fj/GHSA-hf94-884j-c7fj.json b/advisories/unreviewed/2022/05/GHSA-hf94-884j-c7fj/GHSA-hf94-884j-c7fj.json index 36796bd21c5..3dddb8f1871 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf94-884j-c7fj/GHSA-hf94-884j-c7fj.json +++ b/advisories/unreviewed/2022/05/GHSA-hf94-884j-c7fj/GHSA-hf94-884j-c7fj.json @@ -7,12 +7,8 @@ "CVE-2010-0699" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in VideoSearchScript Pro 3.5 allows remote attackers to inject arbitrary web script or HTML via the q parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfwh-42mw-69v8/GHSA-hfwh-42mw-69v8.json b/advisories/unreviewed/2022/05/GHSA-hfwh-42mw-69v8/GHSA-hfwh-42mw-69v8.json index 982b12c164c..fe7de209df7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfwh-42mw-69v8/GHSA-hfwh-42mw-69v8.json +++ b/advisories/unreviewed/2022/05/GHSA-hfwh-42mw-69v8/GHSA-hfwh-42mw-69v8.json @@ -7,12 +7,8 @@ "CVE-2010-0540" ], "details": "Cross-site request forgery (CSRF) vulnerability in the web interface in CUPS before 1.4.4, as used on Apple Mac OS X 10.5.8, Mac OS X 10.6 before 10.6.4, and other platforms, allows remote attackers to hijack the authentication of administrators for requests that change settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hghp-8wjq-vgpp/GHSA-hghp-8wjq-vgpp.json b/advisories/unreviewed/2022/05/GHSA-hghp-8wjq-vgpp/GHSA-hghp-8wjq-vgpp.json index ca443b29e4c..9c06b681769 100644 --- a/advisories/unreviewed/2022/05/GHSA-hghp-8wjq-vgpp/GHSA-hghp-8wjq-vgpp.json +++ b/advisories/unreviewed/2022/05/GHSA-hghp-8wjq-vgpp/GHSA-hghp-8wjq-vgpp.json @@ -7,12 +7,8 @@ "CVE-2010-0566" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(4.44), 8.1 before 8.1(2.35), and 8.2 before 8.2(1.10) allows remote attackers to cause a denial of service (device reload) via a malformed TCP segment when certain NAT translation and Cisco AIP-SSM configurations are used, aka Bug ID CSCtb37219.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hjfw-fr7q-7pjp/GHSA-hjfw-fr7q-7pjp.json b/advisories/unreviewed/2022/05/GHSA-hjfw-fr7q-7pjp/GHSA-hjfw-fr7q-7pjp.json index a1ce58e508b..ed0f5e528cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjfw-fr7q-7pjp/GHSA-hjfw-fr7q-7pjp.json +++ b/advisories/unreviewed/2022/05/GHSA-hjfw-fr7q-7pjp/GHSA-hjfw-fr7q-7pjp.json @@ -7,12 +7,8 @@ "CVE-2010-0876" ], "details": "Unspecified vulnerability in the Life Sciences - Oracle Clinical Remote Data Capture Option component in Oracle Industry Product Suite 4.5.3 and 4.6 allows remote attackers to affect integrity, related to RDC Onsite.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hmf5-2rc2-q7f8/GHSA-hmf5-2rc2-q7f8.json b/advisories/unreviewed/2022/05/GHSA-hmf5-2rc2-q7f8/GHSA-hmf5-2rc2-q7f8.json index fcf37e872e6..d0185107540 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmf5-2rc2-q7f8/GHSA-hmf5-2rc2-q7f8.json +++ b/advisories/unreviewed/2022/05/GHSA-hmf5-2rc2-q7f8/GHSA-hmf5-2rc2-q7f8.json @@ -7,12 +7,8 @@ "CVE-2010-0846" ], "details": "Unspecified vulnerability in the ImageIO component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a heap-based buffer overflow that allows remote attackers to execute arbitrary code, related to an \"invalid assignment\" and inconsistent length values in a JPEG image encoder (JPEGImageEncoderImpl).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hmvh-j8x6-vjm4/GHSA-hmvh-j8x6-vjm4.json b/advisories/unreviewed/2022/05/GHSA-hmvh-j8x6-vjm4/GHSA-hmvh-j8x6-vjm4.json index 47b7000dcdd..fa9eefb8e80 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmvh-j8x6-vjm4/GHSA-hmvh-j8x6-vjm4.json +++ b/advisories/unreviewed/2022/05/GHSA-hmvh-j8x6-vjm4/GHSA-hmvh-j8x6-vjm4.json @@ -7,12 +7,8 @@ "CVE-2010-0883" ], "details": "Unspecified vulnerability in the Sun Cluster component in Oracle Sun Product Suite 3.1 and 3.2 allows local users to affect confidentiality via unknown vectors related to Data Service for Oracle E-Business Suite, a different vulnerability than CVE-2010-0884.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hp7g-4p49-x89c/GHSA-hp7g-4p49-x89c.json b/advisories/unreviewed/2022/05/GHSA-hp7g-4p49-x89c/GHSA-hp7g-4p49-x89c.json index 1fd22f64c82..b8617d179e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp7g-4p49-x89c/GHSA-hp7g-4p49-x89c.json +++ b/advisories/unreviewed/2022/05/GHSA-hp7g-4p49-x89c/GHSA-hp7g-4p49-x89c.json @@ -7,12 +7,8 @@ "CVE-2010-0179" ], "details": "Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqqf-pc7m-42m5/GHSA-hqqf-pc7m-42m5.json b/advisories/unreviewed/2022/05/GHSA-hqqf-pc7m-42m5/GHSA-hqqf-pc7m-42m5.json index 9a149544ae6..2f99ddda4ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqqf-pc7m-42m5/GHSA-hqqf-pc7m-42m5.json +++ b/advisories/unreviewed/2022/05/GHSA-hqqf-pc7m-42m5/GHSA-hqqf-pc7m-42m5.json @@ -7,12 +7,8 @@ "CVE-2010-0880" ], "details": "Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.26 and 8.50.07 allows remote attackers to affect confidentiality and integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hr4m-h57x-5p2p/GHSA-hr4m-h57x-5p2p.json b/advisories/unreviewed/2022/05/GHSA-hr4m-h57x-5p2p/GHSA-hr4m-h57x-5p2p.json index ffa0c7c67cd..a9394d4d74e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr4m-h57x-5p2p/GHSA-hr4m-h57x-5p2p.json +++ b/advisories/unreviewed/2022/05/GHSA-hr4m-h57x-5p2p/GHSA-hr4m-h57x-5p2p.json @@ -7,12 +7,8 @@ "CVE-2010-0432" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Apache Open For Business Project (aka OFBiz) 09.04 and earlier, as used in Opentaps, Neogia, and Entente Oya, allow remote attackers to inject arbitrary web script or HTML via (1) the productStoreId parameter to control/exportProductListing, (2) the partyId parameter to partymgr/control/viewprofile (aka partymgr/control/login), (3) the start parameter to myportal/control/showPortalPage, (4) an invalid URI beginning with /facility/control/ReceiveReturn (aka /crmsfa/control/ReceiveReturn or /cms/control/ReceiveReturn), (5) the contentId parameter (aka the entityName variable) to ecommerce/control/ViewBlogArticle, (6) the entityName parameter to webtools/control/FindGeneric, or the (7) subject or (8) content parameter to an unspecified component under ecommerce/control/contactus.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hv89-3xxg-f733/GHSA-hv89-3xxg-f733.json b/advisories/unreviewed/2022/05/GHSA-hv89-3xxg-f733/GHSA-hv89-3xxg-f733.json index 75fb61f2c65..8959f3b59bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv89-3xxg-f733/GHSA-hv89-3xxg-f733.json +++ b/advisories/unreviewed/2022/05/GHSA-hv89-3xxg-f733/GHSA-hv89-3xxg-f733.json @@ -7,12 +7,8 @@ "CVE-2010-0044" ], "details": "PubSub in Apple Safari before 4.0.5 does not properly implement use of the Accept Cookies preference to block cookies, which makes it easier for remote web servers to track users by setting a cookie in a (1) RSS or (2) Atom feed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hvpc-22m7-jg3m/GHSA-hvpc-22m7-jg3m.json b/advisories/unreviewed/2022/05/GHSA-hvpc-22m7-jg3m/GHSA-hvpc-22m7-jg3m.json index dd4e9153f58..a66622fdc9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvpc-22m7-jg3m/GHSA-hvpc-22m7-jg3m.json +++ b/advisories/unreviewed/2022/05/GHSA-hvpc-22m7-jg3m/GHSA-hvpc-22m7-jg3m.json @@ -7,12 +7,8 @@ "CVE-2010-0439" ], "details": "Chip Salzenberg Deliver allows local users to cause a denial of service, obtain sensitive information, and possibly change the ownership of arbitrary files via a symlink attack on an unspecified file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvpw-g59w-9xjx/GHSA-hvpw-g59w-9xjx.json b/advisories/unreviewed/2022/05/GHSA-hvpw-g59w-9xjx/GHSA-hvpw-g59w-9xjx.json index f91abc192f5..f970e47f63c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvpw-g59w-9xjx/GHSA-hvpw-g59w-9xjx.json +++ b/advisories/unreviewed/2022/05/GHSA-hvpw-g59w-9xjx/GHSA-hvpw-g59w-9xjx.json @@ -7,12 +7,8 @@ "CVE-2010-0417" ], "details": "Buffer overflow in common/util/rlstate.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a RuleBook structure with a large number of rule-separator characters that trigger heap memory corruption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvxv-9v6h-xhg5/GHSA-hvxv-9v6h-xhg5.json b/advisories/unreviewed/2022/05/GHSA-hvxv-9v6h-xhg5/GHSA-hvxv-9v6h-xhg5.json index 7cd62baad0e..6f14907f99f 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvxv-9v6h-xhg5/GHSA-hvxv-9v6h-xhg5.json +++ b/advisories/unreviewed/2022/05/GHSA-hvxv-9v6h-xhg5/GHSA-hvxv-9v6h-xhg5.json @@ -7,12 +7,8 @@ "CVE-2010-0657" ], "details": "Google Chrome before 4.0.249.78 on Windows does not perform the expected encoding, escaping, and quoting for the URL in the --app argument in a desktop shortcut, which allows user-assisted remote attackers to execute arbitrary programs or obtain sensitive information by tricking a user into creating a crafted shortcut.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hx33-6cv9-3m88/GHSA-hx33-6cv9-3m88.json b/advisories/unreviewed/2022/05/GHSA-hx33-6cv9-3m88/GHSA-hx33-6cv9-3m88.json index 3e35532384d..e6d2dd4b140 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx33-6cv9-3m88/GHSA-hx33-6cv9-3m88.json +++ b/advisories/unreviewed/2022/05/GHSA-hx33-6cv9-3m88/GHSA-hx33-6cv9-3m88.json @@ -7,12 +7,8 @@ "CVE-2010-0025" ], "details": "The SMTP component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Server 2008 Gold, SP2, and R2, and Exchange Server 2000 SP3, does not properly allocate memory for SMTP command replies, which allows remote attackers to read fragments of e-mail messages by sending a series of invalid commands and then sending a STARTTLS command, aka \"SMTP Memory Allocation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hx45-5mww-w2r8/GHSA-hx45-5mww-w2r8.json b/advisories/unreviewed/2022/05/GHSA-hx45-5mww-w2r8/GHSA-hx45-5mww-w2r8.json index 0497dea5b3e..bb8838464bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx45-5mww-w2r8/GHSA-hx45-5mww-w2r8.json +++ b/advisories/unreviewed/2022/05/GHSA-hx45-5mww-w2r8/GHSA-hx45-5mww-w2r8.json @@ -7,12 +7,8 @@ "CVE-2010-0321" ], "details": "Cross-site scripting (XSS) vulnerability in jobs/index.php in Jamit Job Board 3.0 allows remote attackers to inject arbitrary web script or HTML via the post_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hx6h-99v5-fcf4/GHSA-hx6h-99v5-fcf4.json b/advisories/unreviewed/2022/05/GHSA-hx6h-99v5-fcf4/GHSA-hx6h-99v5-fcf4.json index 721abbfb5ae..57bb6c5b612 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx6h-99v5-fcf4/GHSA-hx6h-99v5-fcf4.json +++ b/advisories/unreviewed/2022/05/GHSA-hx6h-99v5-fcf4/GHSA-hx6h-99v5-fcf4.json @@ -7,12 +7,8 @@ "CVE-2010-0645" ], "details": "Multiple integer overflows in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arbitrary code in the Chrome sandbox via crafted use of JavaScript arrays.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxjg-cjpx-x3x5/GHSA-hxjg-cjpx-x3x5.json b/advisories/unreviewed/2022/05/GHSA-hxjg-cjpx-x3x5/GHSA-hxjg-cjpx-x3x5.json index 7f760ea9f78..9677837f81c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxjg-cjpx-x3x5/GHSA-hxjg-cjpx-x3x5.json +++ b/advisories/unreviewed/2022/05/GHSA-hxjg-cjpx-x3x5/GHSA-hxjg-cjpx-x3x5.json @@ -7,12 +7,8 @@ "CVE-2010-0104" ], "details": "Unspecified vulnerability in the Broadcom Integrated NIC Management Firmware 1.x before 1.40.0.0 and 8.x before 8.08 on the HP Small Form Factor and Microtower platforms allows remote attackers to execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j2g9-p996-478m/GHSA-j2g9-p996-478m.json b/advisories/unreviewed/2022/05/GHSA-j2g9-p996-478m/GHSA-j2g9-p996-478m.json index 6d7c1db7363..7fca3429087 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2g9-p996-478m/GHSA-j2g9-p996-478m.json +++ b/advisories/unreviewed/2022/05/GHSA-j2g9-p996-478m/GHSA-j2g9-p996-478m.json @@ -7,12 +7,8 @@ "CVE-2010-0134" ], "details": "Integer signedness error in rtfsr.dll in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted \\ls keyword in a list override table entry in an RTF file, which triggers a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j4cp-47vm-442g/GHSA-j4cp-47vm-442g.json b/advisories/unreviewed/2022/05/GHSA-j4cp-47vm-442g/GHSA-j4cp-47vm-442g.json index c8a56d7bf86..7cbecae089d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4cp-47vm-442g/GHSA-j4cp-47vm-442g.json +++ b/advisories/unreviewed/2022/05/GHSA-j4cp-47vm-442g/GHSA-j4cp-47vm-442g.json @@ -7,12 +7,8 @@ "CVE-2010-0579" ], "details": "The SIP implementation in Cisco IOS 12.3 and 12.4 allows remote attackers to cause a denial of service (device reload) via a malformed SIP message, aka Bug ID CSCtb93416, the \"SIP Message Handling Denial of Service Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j4f4-j4v7-f684/GHSA-j4f4-j4v7-f684.json b/advisories/unreviewed/2022/05/GHSA-j4f4-j4v7-f684/GHSA-j4f4-j4v7-f684.json index 5c16fc05fe8..3776f1e145f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4f4-j4v7-f684/GHSA-j4f4-j4v7-f684.json +++ b/advisories/unreviewed/2022/05/GHSA-j4f4-j4v7-f684/GHSA-j4f4-j4v7-f684.json @@ -7,12 +7,8 @@ "CVE-2010-0572" ], "details": "Cisco Digital Media Manager (DMM) before 5.2 allows remote authenticated users to discover Cisco Digital Media Player credentials via vectors related to reading a (1) error log or (2) stack trace, aka Bug ID CSCtc46050.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5r3-wq62-8gp5/GHSA-j5r3-wq62-8gp5.json b/advisories/unreviewed/2022/05/GHSA-j5r3-wq62-8gp5/GHSA-j5r3-wq62-8gp5.json index 4191444cf19..f1e6779f3ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5r3-wq62-8gp5/GHSA-j5r3-wq62-8gp5.json +++ b/advisories/unreviewed/2022/05/GHSA-j5r3-wq62-8gp5/GHSA-j5r3-wq62-8gp5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5vp-xx87-j2xg/GHSA-j5vp-xx87-j2xg.json b/advisories/unreviewed/2022/05/GHSA-j5vp-xx87-j2xg/GHSA-j5vp-xx87-j2xg.json index 07f8ba731c9..0f287dcf11d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5vp-xx87-j2xg/GHSA-j5vp-xx87-j2xg.json +++ b/advisories/unreviewed/2022/05/GHSA-j5vp-xx87-j2xg/GHSA-j5vp-xx87-j2xg.json @@ -7,12 +7,8 @@ "CVE-2010-0314" ], "details": "Apple Safari allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6w3-479p-g3p9/GHSA-j6w3-479p-g3p9.json b/advisories/unreviewed/2022/05/GHSA-j6w3-479p-g3p9/GHSA-j6w3-479p-g3p9.json index 451f3696c75..44f0ac87567 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6w3-479p-g3p9/GHSA-j6w3-479p-g3p9.json +++ b/advisories/unreviewed/2022/05/GHSA-j6w3-479p-g3p9/GHSA-j6w3-479p-g3p9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j7hw-9rwh-r263/GHSA-j7hw-9rwh-r263.json b/advisories/unreviewed/2022/05/GHSA-j7hw-9rwh-r263/GHSA-j7hw-9rwh-r263.json index 91d7677b6ea..4c0b22e7d3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7hw-9rwh-r263/GHSA-j7hw-9rwh-r263.json +++ b/advisories/unreviewed/2022/05/GHSA-j7hw-9rwh-r263/GHSA-j7hw-9rwh-r263.json @@ -7,12 +7,8 @@ "CVE-2010-0311" ], "details": "Unspecified vulnerability in Sun Java System Identity Manager (aka IdM) 8.1.0.5 and 8.1.0.6, when Sun Java System Access Manager, OpenSSO Enterprise 8.0, or IBM Tivoli Access Manager is used, allows remote attackers to obtain administrative access via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8c7-5jh6-f92f/GHSA-j8c7-5jh6-f92f.json b/advisories/unreviewed/2022/05/GHSA-j8c7-5jh6-f92f/GHSA-j8c7-5jh6-f92f.json index b702e225691..0aa6be6dc22 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8c7-5jh6-f92f/GHSA-j8c7-5jh6-f92f.json +++ b/advisories/unreviewed/2022/05/GHSA-j8c7-5jh6-f92f/GHSA-j8c7-5jh6-f92f.json @@ -7,12 +7,8 @@ "CVE-2010-0385" ], "details": "Tor before 0.2.1.22, and 0.2.2.x before 0.2.2.7-alpha, when functioning as a bridge directory authority, allows remote attackers to obtain sensitive information about bridge identities and bridge descriptors via a dbg-stability.txt directory query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8hp-c69x-fw53/GHSA-j8hp-c69x-fw53.json b/advisories/unreviewed/2022/05/GHSA-j8hp-c69x-fw53/GHSA-j8hp-c69x-fw53.json index d9e8df3bc94..1a63c6e68f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8hp-c69x-fw53/GHSA-j8hp-c69x-fw53.json +++ b/advisories/unreviewed/2022/05/GHSA-j8hp-c69x-fw53/GHSA-j8hp-c69x-fw53.json @@ -7,12 +7,8 @@ "CVE-2010-0690" ], "details": "SQL injection vulnerability in index.php in CommodityRentals Video Games Rentals allows remote attackers to execute arbitrary SQL commands via the pfid parameter in a catalog action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8vv-cjg2-mmg2/GHSA-j8vv-cjg2-mmg2.json b/advisories/unreviewed/2022/05/GHSA-j8vv-cjg2-mmg2/GHSA-j8vv-cjg2-mmg2.json index 00ec73b2f78..e6bb30865b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8vv-cjg2-mmg2/GHSA-j8vv-cjg2-mmg2.json +++ b/advisories/unreviewed/2022/05/GHSA-j8vv-cjg2-mmg2/GHSA-j8vv-cjg2-mmg2.json @@ -7,12 +7,8 @@ "CVE-2010-0502" ], "details": "iChat Server in Apple Mac OS X Server before 10.6.3, when group chat is used, does not perform logging for all types of messages, which might allow remote attackers to avoid message auditing via an unspecified selection of message type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9v2-xqcm-89x8/GHSA-j9v2-xqcm-89x8.json b/advisories/unreviewed/2022/05/GHSA-j9v2-xqcm-89x8/GHSA-j9v2-xqcm-89x8.json index 2dfd70c8bfa..73df131d778 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9v2-xqcm-89x8/GHSA-j9v2-xqcm-89x8.json +++ b/advisories/unreviewed/2022/05/GHSA-j9v2-xqcm-89x8/GHSA-j9v2-xqcm-89x8.json @@ -7,12 +7,8 @@ "CVE-2010-0729" ], "details": "A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently gain privileges, via vectors related to a missing ptrace_check_attach call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9vh-gjh2-275f/GHSA-j9vh-gjh2-275f.json b/advisories/unreviewed/2022/05/GHSA-j9vh-gjh2-275f/GHSA-j9vh-gjh2-275f.json index 7e2813df3a1..3b8577b0b04 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9vh-gjh2-275f/GHSA-j9vh-gjh2-275f.json +++ b/advisories/unreviewed/2022/05/GHSA-j9vh-gjh2-275f/GHSA-j9vh-gjh2-275f.json @@ -7,12 +7,8 @@ "CVE-2010-0287" ], "details": "Directory traversal vulnerability in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25b allows remote attackers to list the contents of arbitrary directories via a .. (dot dot) in the ns parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcc3-24pc-wmg9/GHSA-jcc3-24pc-wmg9.json b/advisories/unreviewed/2022/05/GHSA-jcc3-24pc-wmg9/GHSA-jcc3-24pc-wmg9.json index 7f8af09df71..6b3d7e2dd42 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcc3-24pc-wmg9/GHSA-jcc3-24pc-wmg9.json +++ b/advisories/unreviewed/2022/05/GHSA-jcc3-24pc-wmg9/GHSA-jcc3-24pc-wmg9.json @@ -7,12 +7,8 @@ "CVE-2010-0479" ], "details": "Buffer overflow in Microsoft Office Publisher 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka \"Microsoft Office Publisher File Conversion TextBox Processing Buffer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jccc-47h3-6r27/GHSA-jccc-47h3-6r27.json b/advisories/unreviewed/2022/05/GHSA-jccc-47h3-6r27/GHSA-jccc-47h3-6r27.json index da12f8c56e1..46592e72972 100644 --- a/advisories/unreviewed/2022/05/GHSA-jccc-47h3-6r27/GHSA-jccc-47h3-6r27.json +++ b/advisories/unreviewed/2022/05/GHSA-jccc-47h3-6r27/GHSA-jccc-47h3-6r27.json @@ -7,12 +7,8 @@ "CVE-2010-0388" ], "details": "Format string vulnerability in the WebDAV implementation in webservd in Sun Java System Web Server 7.0 Update 6 allows remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in the encoding attribute of the XML declaration in a PROPFIND request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jchr-vxfj-2cxw/GHSA-jchr-vxfj-2cxw.json b/advisories/unreviewed/2022/05/GHSA-jchr-vxfj-2cxw/GHSA-jchr-vxfj-2cxw.json index d7ce1ddd651..6db96298e4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jchr-vxfj-2cxw/GHSA-jchr-vxfj-2cxw.json +++ b/advisories/unreviewed/2022/05/GHSA-jchr-vxfj-2cxw/GHSA-jchr-vxfj-2cxw.json @@ -7,12 +7,8 @@ "CVE-2010-0576" ], "details": "Unspecified vulnerability in Cisco IOS 12.0 through 12.4, IOS XE 2.1.x through 2.3.x before 2.3.2, and IOS XR 3.2.x through 3.4.3, when Multiprotocol Label Switching (MPLS) and Label Distribution Protocol (LDP) are enabled, allows remote attackers to cause a denial of service (device reload or process restart) via a crafted LDP packet, aka Bug IDs CSCsz45567 and CSCsj25893.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jcjm-7m47-q6p8/GHSA-jcjm-7m47-q6p8.json b/advisories/unreviewed/2022/05/GHSA-jcjm-7m47-q6p8/GHSA-jcjm-7m47-q6p8.json index b986114987f..5a08c1d66a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcjm-7m47-q6p8/GHSA-jcjm-7m47-q6p8.json +++ b/advisories/unreviewed/2022/05/GHSA-jcjm-7m47-q6p8/GHSA-jcjm-7m47-q6p8.json @@ -7,12 +7,8 @@ "CVE-2010-0764" ], "details": "SQL injection vulnerability in index.php in KuwaitPHP eSmile allows remote attackers to execute arbitrary SQL commands via the cid parameter in a show action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jgp9-92r7-vr6g/GHSA-jgp9-92r7-vr6g.json b/advisories/unreviewed/2022/05/GHSA-jgp9-92r7-vr6g/GHSA-jgp9-92r7-vr6g.json index eabcd50f516..519f347f6a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgp9-92r7-vr6g/GHSA-jgp9-92r7-vr6g.json +++ b/advisories/unreviewed/2022/05/GHSA-jgp9-92r7-vr6g/GHSA-jgp9-92r7-vr6g.json @@ -7,12 +7,8 @@ "CVE-2010-0113" ], "details": "The Symantec Norton Mobile Security application 1.0 Beta for Android records setup details, possibly including wipe/lock credentials, in the device logs, which allows user-assisted remote attackers to obtain potentially sensitive information by leveraging the ability of a separate crafted application to read these logs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jgr2-j5h5-p995/GHSA-jgr2-j5h5-p995.json b/advisories/unreviewed/2022/05/GHSA-jgr2-j5h5-p995/GHSA-jgr2-j5h5-p995.json index 9cbc55a1aab..45ef01a634a 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgr2-j5h5-p995/GHSA-jgr2-j5h5-p995.json +++ b/advisories/unreviewed/2022/05/GHSA-jgr2-j5h5-p995/GHSA-jgr2-j5h5-p995.json @@ -7,12 +7,8 @@ "CVE-2010-0373" ], "details": "SQL injection vulnerability in the libros (com_libros) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh75-h74m-97h7/GHSA-jh75-h74m-97h7.json b/advisories/unreviewed/2022/05/GHSA-jh75-h74m-97h7/GHSA-jh75-h74m-97h7.json index 5f4402d1fbb..a65b427a37f 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh75-h74m-97h7/GHSA-jh75-h74m-97h7.json +++ b/advisories/unreviewed/2022/05/GHSA-jh75-h74m-97h7/GHSA-jh75-h74m-97h7.json @@ -7,12 +7,8 @@ "CVE-2009-5099" ], "details": "Cross-site scripting (XSS) vulnerability in ViewAction in Pentaho BI Server 1.7.0.1062 and earlier allows remote attackers to inject arbitrary web script or HTML via the outputType parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh8x-c6rr-68gq/GHSA-jh8x-c6rr-68gq.json b/advisories/unreviewed/2022/05/GHSA-jh8x-c6rr-68gq/GHSA-jh8x-c6rr-68gq.json index 54fd9885107..25c1899698c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh8x-c6rr-68gq/GHSA-jh8x-c6rr-68gq.json +++ b/advisories/unreviewed/2022/05/GHSA-jh8x-c6rr-68gq/GHSA-jh8x-c6rr-68gq.json @@ -7,12 +7,8 @@ "CVE-2010-0754" ], "details": "Cross-site scripting (XSS) vulnerability in index.php/Special/Main/Templates in WikyBlog 1.7.2 and 1.7.3 rc2 allows remote attackers to inject arbitrary web script or HTML via the which parameter in a copy action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhrj-hv6x-7x2p/GHSA-jhrj-hv6x-7x2p.json b/advisories/unreviewed/2022/05/GHSA-jhrj-hv6x-7x2p/GHSA-jhrj-hv6x-7x2p.json index 0f724b6477e..7b4626baefb 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhrj-hv6x-7x2p/GHSA-jhrj-hv6x-7x2p.json +++ b/advisories/unreviewed/2022/05/GHSA-jhrj-hv6x-7x2p/GHSA-jhrj-hv6x-7x2p.json @@ -7,12 +7,8 @@ "CVE-2010-0641" ], "details": "Cross-site scripting (XSS) vulnerability in webline/html/admin/wcs/LoginPage.jhtml in Cisco Collaboration Server (CCS) 5 allows remote attackers to inject arbitrary web script or HTML via the dest parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjg5-ggfc-3m8p/GHSA-jjg5-ggfc-3m8p.json b/advisories/unreviewed/2022/05/GHSA-jjg5-ggfc-3m8p/GHSA-jjg5-ggfc-3m8p.json index bf64108e8a7..898c8eb8078 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjg5-ggfc-3m8p/GHSA-jjg5-ggfc-3m8p.json +++ b/advisories/unreviewed/2022/05/GHSA-jjg5-ggfc-3m8p/GHSA-jjg5-ggfc-3m8p.json @@ -7,12 +7,8 @@ "CVE-2010-0694" ], "details": "SQL injection vulnerability in the PerchaGallery (com_perchagallery) component before 1.5b for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an editunidad action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjrr-wr64-x97h/GHSA-jjrr-wr64-x97h.json b/advisories/unreviewed/2022/05/GHSA-jjrr-wr64-x97h/GHSA-jjrr-wr64-x97h.json index 7753b8fa656..81d58cf4c77 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjrr-wr64-x97h/GHSA-jjrr-wr64-x97h.json +++ b/advisories/unreviewed/2022/05/GHSA-jjrr-wr64-x97h/GHSA-jjrr-wr64-x97h.json @@ -7,12 +7,8 @@ "CVE-2010-0065" ], "details": "Disk Images in Apple Mac OS X before 10.6.3 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted disk image with bzip2 compression.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jm4r-9249-898c/GHSA-jm4r-9249-898c.json b/advisories/unreviewed/2022/05/GHSA-jm4r-9249-898c/GHSA-jm4r-9249-898c.json index 8d03828501c..d02e128e42e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jm4r-9249-898c/GHSA-jm4r-9249-898c.json +++ b/advisories/unreviewed/2022/05/GHSA-jm4r-9249-898c/GHSA-jm4r-9249-898c.json @@ -7,12 +7,8 @@ "CVE-2010-0677" ], "details": "SQL injection vulnerability in index.php in Katalog Stron Hurricane 1.3.5, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the get parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmhx-g9g6-gpx4/GHSA-jmhx-g9g6-gpx4.json b/advisories/unreviewed/2022/05/GHSA-jmhx-g9g6-gpx4/GHSA-jmhx-g9g6-gpx4.json index d22baede6f9..e03bc92c083 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmhx-g9g6-gpx4/GHSA-jmhx-g9g6-gpx4.json +++ b/advisories/unreviewed/2022/05/GHSA-jmhx-g9g6-gpx4/GHSA-jmhx-g9g6-gpx4.json @@ -7,12 +7,8 @@ "CVE-2010-0863" ], "details": "Unspecified vulnerability in the Retail - Oracle Retail Plan In-Season component in Oracle Industry Product Suite 12.2 allows remote attackers to affect integrity via unknown vectors related to Online Help.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpcj-8f59-9q4h/GHSA-jpcj-8f59-9q4h.json b/advisories/unreviewed/2022/05/GHSA-jpcj-8f59-9q4h/GHSA-jpcj-8f59-9q4h.json index efcf53c0474..713e6ef9254 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpcj-8f59-9q4h/GHSA-jpcj-8f59-9q4h.json +++ b/advisories/unreviewed/2022/05/GHSA-jpcj-8f59-9q4h/GHSA-jpcj-8f59-9q4h.json @@ -7,12 +7,8 @@ "CVE-2010-0160" ], "details": "The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpp6-jhf5-8fqg/GHSA-jpp6-jhf5-8fqg.json b/advisories/unreviewed/2022/05/GHSA-jpp6-jhf5-8fqg/GHSA-jpp6-jhf5-8fqg.json index 9447946c990..ceb3dbefe76 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpp6-jhf5-8fqg/GHSA-jpp6-jhf5-8fqg.json +++ b/advisories/unreviewed/2022/05/GHSA-jpp6-jhf5-8fqg/GHSA-jpp6-jhf5-8fqg.json @@ -7,12 +7,8 @@ "CVE-2010-0647" ], "details": "WebKit before r53525, as used in Google Chrome before 4.0.249.89, allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed RUBY element, as demonstrated by a > sequence.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpr3-gg36-wv7f/GHSA-jpr3-gg36-wv7f.json b/advisories/unreviewed/2022/05/GHSA-jpr3-gg36-wv7f/GHSA-jpr3-gg36-wv7f.json index d0f1b966279..fb580b050e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpr3-gg36-wv7f/GHSA-jpr3-gg36-wv7f.json +++ b/advisories/unreviewed/2022/05/GHSA-jpr3-gg36-wv7f/GHSA-jpr3-gg36-wv7f.json @@ -7,12 +7,8 @@ "CVE-2010-0304" ], "details": "Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stack-based buffer overflow to the dissect_getaddrsbyname_request function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jq7r-cmm5-2qjr/GHSA-jq7r-cmm5-2qjr.json b/advisories/unreviewed/2022/05/GHSA-jq7r-cmm5-2qjr/GHSA-jq7r-cmm5-2qjr.json index 63023a832b1..24cffbf6e89 100644 --- a/advisories/unreviewed/2022/05/GHSA-jq7r-cmm5-2qjr/GHSA-jq7r-cmm5-2qjr.json +++ b/advisories/unreviewed/2022/05/GHSA-jq7r-cmm5-2qjr/GHSA-jq7r-cmm5-2qjr.json @@ -7,12 +7,8 @@ "CVE-2010-0515" ], "details": "QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with H.264 encoding.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqfj-5p8v-wpjh/GHSA-jqfj-5p8v-wpjh.json b/advisories/unreviewed/2022/05/GHSA-jqfj-5p8v-wpjh/GHSA-jqfj-5p8v-wpjh.json index 8b3f43ee11c..5002c333223 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqfj-5p8v-wpjh/GHSA-jqfj-5p8v-wpjh.json +++ b/advisories/unreviewed/2022/05/GHSA-jqfj-5p8v-wpjh/GHSA-jqfj-5p8v-wpjh.json @@ -7,12 +7,8 @@ "CVE-2010-0183" ], "details": "Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a crafted HTML document, related to an improper frame construction process for menus.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jqw9-9p4w-5g4f/GHSA-jqw9-9p4w-5g4f.json b/advisories/unreviewed/2022/05/GHSA-jqw9-9p4w-5g4f/GHSA-jqw9-9p4w-5g4f.json index f154ed5ff65..f4abf53a66c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqw9-9p4w-5g4f/GHSA-jqw9-9p4w-5g4f.json +++ b/advisories/unreviewed/2022/05/GHSA-jqw9-9p4w-5g4f/GHSA-jqw9-9p4w-5g4f.json @@ -7,12 +7,8 @@ "CVE-2010-0131" ], "details": "Stack-based buffer overflow in the SpreadSheet Lotus 123 reader (wkssr.dll), as used in Autonomy KeyView 10.4 and 10.9, Symantec Mail Security, and possibly other products, allows remote attackers to execute arbitrary code via unspecified vectors related to floating point conversion in unknown record types.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jrmq-vqww-4jq8/GHSA-jrmq-vqww-4jq8.json b/advisories/unreviewed/2022/05/GHSA-jrmq-vqww-4jq8/GHSA-jrmq-vqww-4jq8.json index 583424bdee2..1bbca315ba2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrmq-vqww-4jq8/GHSA-jrmq-vqww-4jq8.json +++ b/advisories/unreviewed/2022/05/GHSA-jrmq-vqww-4jq8/GHSA-jrmq-vqww-4jq8.json @@ -7,12 +7,8 @@ "CVE-2010-0198" ], "details": "Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0199, CVE-2010-0202, and CVE-2010-0203.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jv8c-ggjv-cc68/GHSA-jv8c-ggjv-cc68.json b/advisories/unreviewed/2022/05/GHSA-jv8c-ggjv-cc68/GHSA-jv8c-ggjv-cc68.json index 001dc8e77a5..1bda27c2911 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv8c-ggjv-cc68/GHSA-jv8c-ggjv-cc68.json +++ b/advisories/unreviewed/2022/05/GHSA-jv8c-ggjv-cc68/GHSA-jv8c-ggjv-cc68.json @@ -7,12 +7,8 @@ "CVE-2010-0201" ], "details": "Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0194, CVE-2010-0197, and CVE-2010-0204.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvfw-7f9c-qp8r/GHSA-jvfw-7f9c-qp8r.json b/advisories/unreviewed/2022/05/GHSA-jvfw-7f9c-qp8r/GHSA-jvfw-7f9c-qp8r.json index e1575a94c67..89db6a38a0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvfw-7f9c-qp8r/GHSA-jvfw-7f9c-qp8r.json +++ b/advisories/unreviewed/2022/05/GHSA-jvfw-7f9c-qp8r/GHSA-jvfw-7f9c-qp8r.json @@ -7,12 +7,8 @@ "CVE-2010-0231" ], "details": "The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not use a sufficient source of entropy, which allows remote attackers to obtain access to files and other SMB resources via a large number of authentication requests, related to server-generated challenges, certain \"duplicate values,\" and spoofing of an authentication token, aka \"SMB NTLM Authentication Lack of Entropy Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jvpp-5xxm-9qcg/GHSA-jvpp-5xxm-9qcg.json b/advisories/unreviewed/2022/05/GHSA-jvpp-5xxm-9qcg/GHSA-jvpp-5xxm-9qcg.json index 7d7f4ef8098..32bcec65161 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvpp-5xxm-9qcg/GHSA-jvpp-5xxm-9qcg.json +++ b/advisories/unreviewed/2022/05/GHSA-jvpp-5xxm-9qcg/GHSA-jvpp-5xxm-9qcg.json @@ -7,12 +7,8 @@ "CVE-2010-0234" ], "details": "The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 does not properly validate a registry-key argument to an unspecified system call, which allows local users to cause a denial of service (reboot) via a crafted application, aka \"Windows Kernel Null Pointer Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvw4-xfqp-q5qh/GHSA-jvw4-xfqp-q5qh.json b/advisories/unreviewed/2022/05/GHSA-jvw4-xfqp-q5qh/GHSA-jvw4-xfqp-q5qh.json index c58a05f6470..974e757ad69 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvw4-xfqp-q5qh/GHSA-jvw4-xfqp-q5qh.json +++ b/advisories/unreviewed/2022/05/GHSA-jvw4-xfqp-q5qh/GHSA-jvw4-xfqp-q5qh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvxj-m6p9-r354/GHSA-jvxj-m6p9-r354.json b/advisories/unreviewed/2022/05/GHSA-jvxj-m6p9-r354/GHSA-jvxj-m6p9-r354.json index 351de630537..8079f7a2641 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvxj-m6p9-r354/GHSA-jvxj-m6p9-r354.json +++ b/advisories/unreviewed/2022/05/GHSA-jvxj-m6p9-r354/GHSA-jvxj-m6p9-r354.json @@ -7,12 +7,8 @@ "CVE-2010-0275" ], "details": "Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 does not properly handle script commands in the status-alerts URL, which has unspecified impact and attack vectors, aka SPR LSHR7TBM58.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jwf7-c2x3-76h8/GHSA-jwf7-c2x3-76h8.json b/advisories/unreviewed/2022/05/GHSA-jwf7-c2x3-76h8/GHSA-jwf7-c2x3-76h8.json index 53a081ac025..672533f128f 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwf7-c2x3-76h8/GHSA-jwf7-c2x3-76h8.json +++ b/advisories/unreviewed/2022/05/GHSA-jwf7-c2x3-76h8/GHSA-jwf7-c2x3-76h8.json @@ -7,12 +7,8 @@ "CVE-2010-0009" ], "details": "Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jwfx-h8qj-v94c/GHSA-jwfx-h8qj-v94c.json b/advisories/unreviewed/2022/05/GHSA-jwfx-h8qj-v94c/GHSA-jwfx-h8qj-v94c.json index 697360359ee..98029a2c082 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwfx-h8qj-v94c/GHSA-jwfx-h8qj-v94c.json +++ b/advisories/unreviewed/2022/05/GHSA-jwfx-h8qj-v94c/GHSA-jwfx-h8qj-v94c.json @@ -7,12 +7,8 @@ "CVE-2010-0283" ], "details": "The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2, and 1.8 alpha, allows remote attackers to cause a denial of service (assertion failure and daemon crash) via an invalid (1) AS-REQ or (2) TGS-REQ request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jxfh-j4h3-3ppj/GHSA-jxfh-j4h3-3ppj.json b/advisories/unreviewed/2022/05/GHSA-jxfh-j4h3-3ppj/GHSA-jxfh-j4h3-3ppj.json index 59a5392d180..57b9a5a301a 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxfh-j4h3-3ppj/GHSA-jxfh-j4h3-3ppj.json +++ b/advisories/unreviewed/2022/05/GHSA-jxfh-j4h3-3ppj/GHSA-jxfh-j4h3-3ppj.json @@ -7,12 +7,8 @@ "CVE-2010-0554" ], "details": "The HTTP Authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier uses the same nonce for all authentication, which allows remote attackers to hijack web sessions or bypass authentication via a replay attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m286-23j4-m2p5/GHSA-m286-23j4-m2p5.json b/advisories/unreviewed/2022/05/GHSA-m286-23j4-m2p5/GHSA-m286-23j4-m2p5.json index a1cd293fb71..a9092fa6220 100644 --- a/advisories/unreviewed/2022/05/GHSA-m286-23j4-m2p5/GHSA-m286-23j4-m2p5.json +++ b/advisories/unreviewed/2022/05/GHSA-m286-23j4-m2p5/GHSA-m286-23j4-m2p5.json @@ -7,12 +7,8 @@ "CVE-2010-0578" ], "details": "The IKE implementation in Cisco IOS 12.2 through 12.4 on Cisco 7200 and 7301 routers with VAM2+ allows remote attackers to cause a denial of service (device reload) via a malformed IKE packet, aka Bug ID CSCtb13491.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m2j7-ph2m-w822/GHSA-m2j7-ph2m-w822.json b/advisories/unreviewed/2022/05/GHSA-m2j7-ph2m-w822/GHSA-m2j7-ph2m-w822.json index e2ba5e0e8c0..215cfe7aed3 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2j7-ph2m-w822/GHSA-m2j7-ph2m-w822.json +++ b/advisories/unreviewed/2022/05/GHSA-m2j7-ph2m-w822/GHSA-m2j7-ph2m-w822.json @@ -7,12 +7,8 @@ "CVE-2010-0523" ], "details": "Wiki Server in Apple Mac OS X 10.5.8 does not restrict the file types of uploaded files, which allows remote attackers to obtain sensitive information or possibly have unspecified other impact via a crafted file, as demonstrated by a Java applet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2jr-636c-qqmv/GHSA-m2jr-636c-qqmv.json b/advisories/unreviewed/2022/05/GHSA-m2jr-636c-qqmv/GHSA-m2jr-636c-qqmv.json index ab02d0666b5..fc5d4d2a16c 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2jr-636c-qqmv/GHSA-m2jr-636c-qqmv.json +++ b/advisories/unreviewed/2022/05/GHSA-m2jr-636c-qqmv/GHSA-m2jr-636c-qqmv.json @@ -7,12 +7,8 @@ "CVE-2010-0151" ], "details": "The Cisco Firewall Services Module (FWSM) 4.0 before 4.0(8), as used in for the Cisco Catalyst 6500 switches, Cisco 7600 routers, and ASA 5500 Adaptive Security Appliances, allows remote attackers to cause a denial of service (crash) via a malformed Skinny Client Control Protocol (SCCP) message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m2rf-mf3r-f836/GHSA-m2rf-mf3r-f836.json b/advisories/unreviewed/2022/05/GHSA-m2rf-mf3r-f836/GHSA-m2rf-mf3r-f836.json index a9867662c83..75869ca7eeb 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2rf-mf3r-f836/GHSA-m2rf-mf3r-f836.json +++ b/advisories/unreviewed/2022/05/GHSA-m2rf-mf3r-f836/GHSA-m2rf-mf3r-f836.json @@ -7,12 +7,8 @@ "CVE-2010-0666" ], "details": "Unspecified vulnerability in eMBox in Novell eDirectory 8.8 SP5 Patch 2 and earlier allows remote attackers to cause a denial of service (crash) via unknown a crafted SOAP request, a different issue than CVE-2008-0926.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m327-jjcq-v72h/GHSA-m327-jjcq-v72h.json b/advisories/unreviewed/2022/05/GHSA-m327-jjcq-v72h/GHSA-m327-jjcq-v72h.json index 26e38c44e30..df51717ccbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-m327-jjcq-v72h/GHSA-m327-jjcq-v72h.json +++ b/advisories/unreviewed/2022/05/GHSA-m327-jjcq-v72h/GHSA-m327-jjcq-v72h.json @@ -7,12 +7,8 @@ "CVE-2010-0032" ], "details": "Use-after-free vulnerability in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka \"OEPlaceholderAtom Use After Free Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3j6-7jq9-r5qv/GHSA-m3j6-7jq9-r5qv.json b/advisories/unreviewed/2022/05/GHSA-m3j6-7jq9-r5qv/GHSA-m3j6-7jq9-r5qv.json index 13af737f347..190cd343228 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3j6-7jq9-r5qv/GHSA-m3j6-7jq9-r5qv.json +++ b/advisories/unreviewed/2022/05/GHSA-m3j6-7jq9-r5qv/GHSA-m3j6-7jq9-r5qv.json @@ -7,12 +7,8 @@ "CVE-2010-0144" ], "details": "Unspecified vulnerability in the WebSafe DistributorServlet in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote attackers to read arbitrary files via unknown vectors, aka IronPort Bug 65922.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3r9-2fp3-p448/GHSA-m3r9-2fp3-p448.json b/advisories/unreviewed/2022/05/GHSA-m3r9-2fp3-p448/GHSA-m3r9-2fp3-p448.json index e61111bbf7a..3d2c5b2f22a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3r9-2fp3-p448/GHSA-m3r9-2fp3-p448.json +++ b/advisories/unreviewed/2022/05/GHSA-m3r9-2fp3-p448/GHSA-m3r9-2fp3-p448.json @@ -7,12 +7,8 @@ "CVE-2010-0105" ], "details": "The hfs implementation in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 supports hard links to directories and does not prevent certain deeply nested directory structures, which allows local users to cause a denial of service (filesystem corruption) via a crafted application that calls the mkdir and link functions, related to the fsck_hfs program in the diskdev_cmds component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m523-2w8w-xf3g/GHSA-m523-2w8w-xf3g.json b/advisories/unreviewed/2022/05/GHSA-m523-2w8w-xf3g/GHSA-m523-2w8w-xf3g.json index 40122e62e1a..d80e710f107 100644 --- a/advisories/unreviewed/2022/05/GHSA-m523-2w8w-xf3g/GHSA-m523-2w8w-xf3g.json +++ b/advisories/unreviewed/2022/05/GHSA-m523-2w8w-xf3g/GHSA-m523-2w8w-xf3g.json @@ -7,12 +7,8 @@ "CVE-2010-0501" ], "details": "Directory traversal vulnerability in FTP Server in Apple Mac OS X Server before 10.6.3 allows remote authenticated users to read arbitrary files via crafted filenames.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m53c-m27f-r2r9/GHSA-m53c-m27f-r2r9.json b/advisories/unreviewed/2022/05/GHSA-m53c-m27f-r2r9/GHSA-m53c-m27f-r2r9.json index fe3f2a3a674..49bd653b918 100644 --- a/advisories/unreviewed/2022/05/GHSA-m53c-m27f-r2r9/GHSA-m53c-m27f-r2r9.json +++ b/advisories/unreviewed/2022/05/GHSA-m53c-m27f-r2r9/GHSA-m53c-m27f-r2r9.json @@ -7,12 +7,8 @@ "CVE-2010-0856" ], "details": "Unspecified vulnerability in the Portal component in Oracle Fusion Middleware 10.1.2.3 and 10.1.4.2 allows remote attackers to affect availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m5cg-xh84-2p2r/GHSA-m5cg-xh84-2p2r.json b/advisories/unreviewed/2022/05/GHSA-m5cg-xh84-2p2r/GHSA-m5cg-xh84-2p2r.json index 2ac1014647e..3642e0e461b 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5cg-xh84-2p2r/GHSA-m5cg-xh84-2p2r.json +++ b/advisories/unreviewed/2022/05/GHSA-m5cg-xh84-2p2r/GHSA-m5cg-xh84-2p2r.json @@ -7,12 +7,8 @@ "CVE-2010-0118" ], "details": "Bournal before 1.4.1 allows local users to overwrite arbitrary files via a symlink attack on unspecified temporary files associated with a --hack_the_gibson update check.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m5pw-gjvh-jgrh/GHSA-m5pw-gjvh-jgrh.json b/advisories/unreviewed/2022/05/GHSA-m5pw-gjvh-jgrh/GHSA-m5pw-gjvh-jgrh.json index 0c4b27e744d..379f4ed23d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5pw-gjvh-jgrh/GHSA-m5pw-gjvh-jgrh.json +++ b/advisories/unreviewed/2022/05/GHSA-m5pw-gjvh-jgrh/GHSA-m5pw-gjvh-jgrh.json @@ -7,12 +7,8 @@ "CVE-2010-0402" ], "details": "OpenTTD before 1.0.1 does not properly validate index values of certain items, which allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted in-game command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m78g-fv9h-7r65/GHSA-m78g-fv9h-7r65.json b/advisories/unreviewed/2022/05/GHSA-m78g-fv9h-7r65/GHSA-m78g-fv9h-7r65.json index 82d93ac6c2b..06f2429eca4 100644 --- a/advisories/unreviewed/2022/05/GHSA-m78g-fv9h-7r65/GHSA-m78g-fv9h-7r65.json +++ b/advisories/unreviewed/2022/05/GHSA-m78g-fv9h-7r65/GHSA-m78g-fv9h-7r65.json @@ -7,12 +7,8 @@ "CVE-2010-0152" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 allow remote attackers to inject arbitrary web script or HTML via (1) the date1 parameter to pvm_messagestore.php, (2) the userfilter parameter to pvm_user_management.php, (3) the ping parameter to sys_tools.php in a sys_ping.php action, (4) the action parameter to pvm_cert_commaction.php, (5) the action parameter to pvm_cert_serveraction.php, (6) the action parameter to pvm_smtpstore.php, (7) the l parameter to sla/index.php, or (8) unspecified stored data; and allow remote authenticated users to inject arbitrary web script or HTML via (9) saved search filters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m7jg-f799-8948/GHSA-m7jg-f799-8948.json b/advisories/unreviewed/2022/05/GHSA-m7jg-f799-8948/GHSA-m7jg-f799-8948.json index 481a578aeff..f92657467c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7jg-f799-8948/GHSA-m7jg-f799-8948.json +++ b/advisories/unreviewed/2022/05/GHSA-m7jg-f799-8948/GHSA-m7jg-f799-8948.json @@ -7,12 +7,8 @@ "CVE-2010-0072" ], "details": "Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a buffer overflow in observiced.exe that allows remote attackers to execute arbitrary code via vectors related to a \"reverse lookup of connections\" to TCP port 10000.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m7mv-96xv-qq37/GHSA-m7mv-96xv-qq37.json b/advisories/unreviewed/2022/05/GHSA-m7mv-96xv-qq37/GHSA-m7mv-96xv-qq37.json index b7e17ce3497..3f980920c87 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7mv-96xv-qq37/GHSA-m7mv-96xv-qq37.json +++ b/advisories/unreviewed/2022/05/GHSA-m7mv-96xv-qq37/GHSA-m7mv-96xv-qq37.json @@ -7,12 +7,8 @@ "CVE-2010-0640" ], "details": "Cross-site scripting (XSS) vulnerability in CA eHealth Performance Manager 6.0.x through 6.2.x, when malicious HTML detection is disabled, allows remote attackers to inject arbitrary web script or HTML via a crafted request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m7x4-hr3g-38q5/GHSA-m7x4-hr3g-38q5.json b/advisories/unreviewed/2022/05/GHSA-m7x4-hr3g-38q5/GHSA-m7x4-hr3g-38q5.json index afd14ee838c..b71a71f8bc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7x4-hr3g-38q5/GHSA-m7x4-hr3g-38q5.json +++ b/advisories/unreviewed/2022/05/GHSA-m7x4-hr3g-38q5/GHSA-m7x4-hr3g-38q5.json @@ -7,12 +7,8 @@ "CVE-2010-0614" ], "details": "SQL injection vulnerability in ajax.php in evalSMSI 2.1.03 allows remote attackers to execute arbitrary SQL commands via the query parameter in the (1) question action, and possibly the (2) sub_par or (3) num_quest actions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m87q-vm9x-pfmr/GHSA-m87q-vm9x-pfmr.json b/advisories/unreviewed/2022/05/GHSA-m87q-vm9x-pfmr/GHSA-m87q-vm9x-pfmr.json index 5013e689e93..64a4395ad73 100644 --- a/advisories/unreviewed/2022/05/GHSA-m87q-vm9x-pfmr/GHSA-m87q-vm9x-pfmr.json +++ b/advisories/unreviewed/2022/05/GHSA-m87q-vm9x-pfmr/GHSA-m87q-vm9x-pfmr.json @@ -7,12 +7,8 @@ "CVE-2010-0148" ], "details": "Unspecified vulnerability in Cisco Security Agent 5.2 before 5.2.0.285, when running on Linux, allows remote attackers to cause a denial of service (kernel panic) via \"a series of TCP packets.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8jv-w6r8-59q6/GHSA-m8jv-w6r8-59q6.json b/advisories/unreviewed/2022/05/GHSA-m8jv-w6r8-59q6/GHSA-m8jv-w6r8-59q6.json index c271300fa9c..7683b8a475f 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8jv-w6r8-59q6/GHSA-m8jv-w6r8-59q6.json +++ b/advisories/unreviewed/2022/05/GHSA-m8jv-w6r8-59q6/GHSA-m8jv-w6r8-59q6.json @@ -7,12 +7,8 @@ "CVE-2010-0336" ], "details": "Unspecified vulnerability in the kiddog_mysqldumper (kiddog_mysqldumper) extension 0.0.3 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8mp-x56m-fcpf/GHSA-m8mp-x56m-fcpf.json b/advisories/unreviewed/2022/05/GHSA-m8mp-x56m-fcpf/GHSA-m8mp-x56m-fcpf.json index f2f30f2f059..0f3316910f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8mp-x56m-fcpf/GHSA-m8mp-x56m-fcpf.json +++ b/advisories/unreviewed/2022/05/GHSA-m8mp-x56m-fcpf/GHSA-m8mp-x56m-fcpf.json @@ -7,12 +7,8 @@ "CVE-2010-0606" ], "details": "Cross-site scripting (XSS) vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users to inject arbitrary web script or HTML via the f parameter, possibly related to an error message generated by scp/admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m9h3-f3g9-fqrf/GHSA-m9h3-f3g9-fqrf.json b/advisories/unreviewed/2022/05/GHSA-m9h3-f3g9-fqrf/GHSA-m9h3-f3g9-fqrf.json index 856de94705e..d1ecc4530b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9h3-f3g9-fqrf/GHSA-m9h3-f3g9-fqrf.json +++ b/advisories/unreviewed/2022/05/GHSA-m9h3-f3g9-fqrf/GHSA-m9h3-f3g9-fqrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mcf9-pq3p-q6q8/GHSA-mcf9-pq3p-q6q8.json b/advisories/unreviewed/2022/05/GHSA-mcf9-pq3p-q6q8/GHSA-mcf9-pq3p-q6q8.json index 5a2c333f90c..c9884f5bfc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcf9-pq3p-q6q8/GHSA-mcf9-pq3p-q6q8.json +++ b/advisories/unreviewed/2022/05/GHSA-mcf9-pq3p-q6q8/GHSA-mcf9-pq3p-q6q8.json @@ -7,12 +7,8 @@ "CVE-2010-0416" ], "details": "Buffer overflow in the Unescape function in common/util/hxurl.cpp and player/hxclientkit/src/CHXClientSink.cpp in Helix Player 1.0.6 and RealPlayer allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a URL argument containing a % (percent) character that is not followed by two hex digits.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mcj9-qvgm-3xf8/GHSA-mcj9-qvgm-3xf8.json b/advisories/unreviewed/2022/05/GHSA-mcj9-qvgm-3xf8/GHSA-mcj9-qvgm-3xf8.json index 693c6f2f5c7..5a7b85442d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcj9-qvgm-3xf8/GHSA-mcj9-qvgm-3xf8.json +++ b/advisories/unreviewed/2022/05/GHSA-mcj9-qvgm-3xf8/GHSA-mcj9-qvgm-3xf8.json @@ -7,12 +7,8 @@ "CVE-2010-0518" ], "details": "QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with Sorenson encoding.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mf23-rh92-325x/GHSA-mf23-rh92-325x.json b/advisories/unreviewed/2022/05/GHSA-mf23-rh92-325x/GHSA-mf23-rh92-325x.json index 2bb0edb6067..f12c40a2392 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf23-rh92-325x/GHSA-mf23-rh92-325x.json +++ b/advisories/unreviewed/2022/05/GHSA-mf23-rh92-325x/GHSA-mf23-rh92-325x.json @@ -7,12 +7,8 @@ "CVE-2010-0821" ], "details": "Unspecified vulnerability in Microsoft Office Excel 2002 SP3, 2003 SP3, 2007 SP1 and SP2; Office 2004 for mac; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; allows remote attackers to execute arbitrary code via an Excel file with a crafted SxView record, related to improper validation of unspecified structures, aka \"Excel Record Parsing Memory Corruption Vulnerability,\" a different vulnerability than CVE-2010-0824 and CVE-2010-1245.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mf73-m82g-g4hv/GHSA-mf73-m82g-g4hv.json b/advisories/unreviewed/2022/05/GHSA-mf73-m82g-g4hv/GHSA-mf73-m82g-g4hv.json index 686676c852f..25f90442e90 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf73-m82g-g4hv/GHSA-mf73-m82g-g4hv.json +++ b/advisories/unreviewed/2022/05/GHSA-mf73-m82g-g4hv/GHSA-mf73-m82g-g4hv.json @@ -7,12 +7,8 @@ "CVE-2010-0429" ], "details": "libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly restrict the addresses upon which memory-management actions are performed, which allows guest OS users to cause a denial of service (guest OS crash) or possibly gain privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mfc8-v3vr-2h43/GHSA-mfc8-v3vr-2h43.json b/advisories/unreviewed/2022/05/GHSA-mfc8-v3vr-2h43/GHSA-mfc8-v3vr-2h43.json index ca21758c725..d941196c842 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfc8-v3vr-2h43/GHSA-mfc8-v3vr-2h43.json +++ b/advisories/unreviewed/2022/05/GHSA-mfc8-v3vr-2h43/GHSA-mfc8-v3vr-2h43.json @@ -7,12 +7,8 @@ "CVE-2010-0521" ], "details": "Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mfxm-ch85-27q4/GHSA-mfxm-ch85-27q4.json b/advisories/unreviewed/2022/05/GHSA-mfxm-ch85-27q4/GHSA-mfxm-ch85-27q4.json index 63ba79b72a9..508f94159b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfxm-ch85-27q4/GHSA-mfxm-ch85-27q4.json +++ b/advisories/unreviewed/2022/05/GHSA-mfxm-ch85-27q4/GHSA-mfxm-ch85-27q4.json @@ -7,12 +7,8 @@ "CVE-2010-0867" ], "details": "Unspecified vulnerability in the JavaVM component in Oracle Database 10.2.0.4, 11.1.0.7, and 11.2.0.1.0 allows remote authenticated users to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mgph-49qr-42q3/GHSA-mgph-49qr-42q3.json b/advisories/unreviewed/2022/05/GHSA-mgph-49qr-42q3/GHSA-mgph-49qr-42q3.json index 3c925fb9add..ca2d992685f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgph-49qr-42q3/GHSA-mgph-49qr-42q3.json +++ b/advisories/unreviewed/2022/05/GHSA-mgph-49qr-42q3/GHSA-mgph-49qr-42q3.json @@ -7,12 +7,8 @@ "CVE-2010-0371" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in Hitmaaan Gallery 1.3 allow remote attackers to inject arbitrary web script or HTML via the (1) gall and (2) levela parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mgw4-gv3f-g57j/GHSA-mgw4-gv3f-g57j.json b/advisories/unreviewed/2022/05/GHSA-mgw4-gv3f-g57j/GHSA-mgw4-gv3f-g57j.json index ecda38d137e..3be42495ada 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgw4-gv3f-g57j/GHSA-mgw4-gv3f-g57j.json +++ b/advisories/unreviewed/2022/05/GHSA-mgw4-gv3f-g57j/GHSA-mgw4-gv3f-g57j.json @@ -7,12 +7,8 @@ "CVE-2010-0329" ], "details": "SQL injection vulnerability in the powermail extension 1.5.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to the \"SQL selection field\" and \"typoscript.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mh3v-wwhj-j4pq/GHSA-mh3v-wwhj-j4pq.json b/advisories/unreviewed/2022/05/GHSA-mh3v-wwhj-j4pq/GHSA-mh3v-wwhj-j4pq.json index 89a221b3461..8ed66ff7377 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh3v-wwhj-j4pq/GHSA-mh3v-wwhj-j4pq.json +++ b/advisories/unreviewed/2022/05/GHSA-mh3v-wwhj-j4pq/GHSA-mh3v-wwhj-j4pq.json @@ -7,12 +7,8 @@ "CVE-2010-0555" ], "details": "Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving the product's use of text/html as the default content type for files that are encountered after a redirection, aka the URLMON sniffing vulnerability, a variant of CVE-2009-1140 and related to CVE-2008-1448.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mh9h-9rjj-5gp4/GHSA-mh9h-9rjj-5gp4.json b/advisories/unreviewed/2022/05/GHSA-mh9h-9rjj-5gp4/GHSA-mh9h-9rjj-5gp4.json index ab166fee5b7..41b7a9b390d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh9h-9rjj-5gp4/GHSA-mh9h-9rjj-5gp4.json +++ b/advisories/unreviewed/2022/05/GHSA-mh9h-9rjj-5gp4/GHSA-mh9h-9rjj-5gp4.json @@ -7,12 +7,8 @@ "CVE-2010-0520" ], "details": "Heap-based buffer overflow in QuickTimeAuthoring.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC file, related to crafted DELTA_FLI chunks and untrusted length values in a .fli file, which are not properly handled during decompression.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhm2-wvr8-3737/GHSA-mhm2-wvr8-3737.json b/advisories/unreviewed/2022/05/GHSA-mhm2-wvr8-3737/GHSA-mhm2-wvr8-3737.json index 7857f2ba55b..46ce0c9c725 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhm2-wvr8-3737/GHSA-mhm2-wvr8-3737.json +++ b/advisories/unreviewed/2022/05/GHSA-mhm2-wvr8-3737/GHSA-mhm2-wvr8-3737.json @@ -7,12 +7,8 @@ "CVE-2010-0310" ], "details": "Trusted Extensions in Sun Solaris 10 allows local users to gain privileges via vectors related to omission of unspecified libraries from software updates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mhw3-773g-72wx/GHSA-mhw3-773g-72wx.json b/advisories/unreviewed/2022/05/GHSA-mhw3-773g-72wx/GHSA-mhw3-773g-72wx.json index 7ebb3684df0..8c51149f6cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhw3-773g-72wx/GHSA-mhw3-773g-72wx.json +++ b/advisories/unreviewed/2022/05/GHSA-mhw3-773g-72wx/GHSA-mhw3-773g-72wx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjg5-5qf3-5mwg/GHSA-mjg5-5qf3-5mwg.json b/advisories/unreviewed/2022/05/GHSA-mjg5-5qf3-5mwg/GHSA-mjg5-5qf3-5mwg.json index c6c28da9268..076a55484b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjg5-5qf3-5mwg/GHSA-mjg5-5qf3-5mwg.json +++ b/advisories/unreviewed/2022/05/GHSA-mjg5-5qf3-5mwg/GHSA-mjg5-5qf3-5mwg.json @@ -7,12 +7,8 @@ "CVE-2010-0750" ], "details": "pkexec.c in pkexec in libpolkit in PolicyKit 0.96 allows local users to determine the existence of arbitrary files via the argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mmq8-m72q-qgm4/GHSA-mmq8-m72q-qgm4.json b/advisories/unreviewed/2022/05/GHSA-mmq8-m72q-qgm4/GHSA-mmq8-m72q-qgm4.json index 38c7c039c4d..90052c413d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmq8-m72q-qgm4/GHSA-mmq8-m72q-qgm4.json +++ b/advisories/unreviewed/2022/05/GHSA-mmq8-m72q-qgm4/GHSA-mmq8-m72q-qgm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mp2h-r29x-p8v7/GHSA-mp2h-r29x-p8v7.json b/advisories/unreviewed/2022/05/GHSA-mp2h-r29x-p8v7/GHSA-mp2h-r29x-p8v7.json index 8201060d361..8ef7d813c2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp2h-r29x-p8v7/GHSA-mp2h-r29x-p8v7.json +++ b/advisories/unreviewed/2022/05/GHSA-mp2h-r29x-p8v7/GHSA-mp2h-r29x-p8v7.json @@ -7,12 +7,8 @@ "CVE-2009-5131" ], "details": "The Receive Service in Websense Email Security before 7.1 does not recognize domain extensions in the blacklist, which allows remote attackers to bypass intended access restrictions and send e-mail messages via an SMTP session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mp5m-jpf6-cg5g/GHSA-mp5m-jpf6-cg5g.json b/advisories/unreviewed/2022/05/GHSA-mp5m-jpf6-cg5g/GHSA-mp5m-jpf6-cg5g.json index b6926d2d02d..5392612e12d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp5m-jpf6-cg5g/GHSA-mp5m-jpf6-cg5g.json +++ b/advisories/unreviewed/2022/05/GHSA-mp5m-jpf6-cg5g/GHSA-mp5m-jpf6-cg5g.json @@ -7,12 +7,8 @@ "CVE-2010-0204" ], "details": "Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0194, CVE-2010-0197, and CVE-2010-0201.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mq9g-j3p5-r7xg/GHSA-mq9g-j3p5-r7xg.json b/advisories/unreviewed/2022/05/GHSA-mq9g-j3p5-r7xg/GHSA-mq9g-j3p5-r7xg.json index 0e296c25eed..3786a367085 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq9g-j3p5-r7xg/GHSA-mq9g-j3p5-r7xg.json +++ b/advisories/unreviewed/2022/05/GHSA-mq9g-j3p5-r7xg/GHSA-mq9g-j3p5-r7xg.json @@ -7,12 +7,8 @@ "CVE-2010-0456" ], "details": "SQL injection vulnerability in the indianpulse Game Server (com_gameserver) component 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the grp parameter in a gameserver action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mr2p-cwj7-r6xj/GHSA-mr2p-cwj7-r6xj.json b/advisories/unreviewed/2022/05/GHSA-mr2p-cwj7-r6xj/GHSA-mr2p-cwj7-r6xj.json index 5bb1be8b30a..3017e6f962a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr2p-cwj7-r6xj/GHSA-mr2p-cwj7-r6xj.json +++ b/advisories/unreviewed/2022/05/GHSA-mr2p-cwj7-r6xj/GHSA-mr2p-cwj7-r6xj.json @@ -7,12 +7,8 @@ "CVE-2010-0226" ], "details": "SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr8q-567w-34vp/GHSA-mr8q-567w-34vp.json b/advisories/unreviewed/2022/05/GHSA-mr8q-567w-34vp/GHSA-mr8q-567w-34vp.json index f2f0f169319..b1f129f5389 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr8q-567w-34vp/GHSA-mr8q-567w-34vp.json +++ b/advisories/unreviewed/2022/05/GHSA-mr8q-567w-34vp/GHSA-mr8q-567w-34vp.json @@ -7,12 +7,8 @@ "CVE-2010-0834" ], "details": "The base-files package before 5.0.0ubuntu7.1 on Ubuntu 9.10 and before 5.0.0ubuntu20.10.04.2 on Ubuntu 10.04 LTS, as shipped on Dell Latitude 2110 netbooks, does not require authentication for package installation, which allows remote archive servers and man-in-the-middle attackers to execute arbitrary code via a crafted package.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrh4-qfxq-r33w/GHSA-mrh4-qfxq-r33w.json b/advisories/unreviewed/2022/05/GHSA-mrh4-qfxq-r33w/GHSA-mrh4-qfxq-r33w.json index 04ca2f482eb..0f01c7def05 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrh4-qfxq-r33w/GHSA-mrh4-qfxq-r33w.json +++ b/advisories/unreviewed/2022/05/GHSA-mrh4-qfxq-r33w/GHSA-mrh4-qfxq-r33w.json @@ -7,12 +7,8 @@ "CVE-2009-5096" ], "details": "Cross-site scripting (XSS) vulnerability in the Flag Content module 5.x-2.x before 5.x-2.10 for Drupal allows remote attackers to inject arbitrary web script or HTML via the Reason parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv3h-r8j8-38cc/GHSA-mv3h-r8j8-38cc.json b/advisories/unreviewed/2022/05/GHSA-mv3h-r8j8-38cc/GHSA-mv3h-r8j8-38cc.json index 8e502d83984..673c3b89890 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv3h-r8j8-38cc/GHSA-mv3h-r8j8-38cc.json +++ b/advisories/unreviewed/2022/05/GHSA-mv3h-r8j8-38cc/GHSA-mv3h-r8j8-38cc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv5h-x4p7-38mc/GHSA-mv5h-x4p7-38mc.json b/advisories/unreviewed/2022/05/GHSA-mv5h-x4p7-38mc/GHSA-mv5h-x4p7-38mc.json index 52d524f95e0..3b7d9ad1e75 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv5h-x4p7-38mc/GHSA-mv5h-x4p7-38mc.json +++ b/advisories/unreviewed/2022/05/GHSA-mv5h-x4p7-38mc/GHSA-mv5h-x4p7-38mc.json @@ -7,12 +7,8 @@ "CVE-2010-0366" ], "details": "Multiple unrestricted file upload vulnerabilities in (1) register.php and (2) addvideo.php in BitScripts Bits Video Script 2.04 and 2.05 Gold Beta allow remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mvcc-q3f8-gccx/GHSA-mvcc-q3f8-gccx.json b/advisories/unreviewed/2022/05/GHSA-mvcc-q3f8-gccx/GHSA-mvcc-q3f8-gccx.json index 938f5947e71..f0c35d9b5b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvcc-q3f8-gccx/GHSA-mvcc-q3f8-gccx.json +++ b/advisories/unreviewed/2022/05/GHSA-mvcc-q3f8-gccx/GHSA-mvcc-q3f8-gccx.json @@ -7,12 +7,8 @@ "CVE-2010-0477" ], "details": "The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly handle (1) SMBv1 and (2) SMBv2 response packets, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted packet that causes the client to read the entirety of the response, and then improperly interact with the Winsock Kernel (WSK), aka \"SMB Client Message Size Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mw25-vxhh-vf58/GHSA-mw25-vxhh-vf58.json b/advisories/unreviewed/2022/05/GHSA-mw25-vxhh-vf58/GHSA-mw25-vxhh-vf58.json index f311ef882c8..3fbe9ed130c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mw25-vxhh-vf58/GHSA-mw25-vxhh-vf58.json +++ b/advisories/unreviewed/2022/05/GHSA-mw25-vxhh-vf58/GHSA-mw25-vxhh-vf58.json @@ -7,12 +7,8 @@ "CVE-2010-0379" ], "details": "Multiple unspecified vulnerabilities in the Macromedia Flash ActiveX control in Adobe Flash Player 6, as distributed in Microsoft Windows XP SP2 and SP3, might allow remote attackers to execute arbitrary code via unspecified vectors that are not related to the use-after-free \"Movie Unloading Vulnerability\" (CVE-2010-0378). NOTE: due to lack of details, it is not clear whether this overlaps any other CVE item.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mw4x-77fp-773c/GHSA-mw4x-77fp-773c.json b/advisories/unreviewed/2022/05/GHSA-mw4x-77fp-773c/GHSA-mw4x-77fp-773c.json index d869935ea16..d1b712d2df5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mw4x-77fp-773c/GHSA-mw4x-77fp-773c.json +++ b/advisories/unreviewed/2022/05/GHSA-mw4x-77fp-773c/GHSA-mw4x-77fp-773c.json @@ -7,12 +7,8 @@ "CVE-2010-0567" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.1), 8.1 before 8.1(2.37), and 8.2 before 8.2(1.15); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (active IPsec tunnel loss and prevention of new tunnels) via a malformed IKE message through an existing tunnel to UDP port 4500, aka Bug ID CSCtc47782.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mwwx-6vj5-5v8f/GHSA-mwwx-6vj5-5v8f.json b/advisories/unreviewed/2022/05/GHSA-mwwx-6vj5-5v8f/GHSA-mwwx-6vj5-5v8f.json index e2eafcee830..e2e18ccee2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwwx-6vj5-5v8f/GHSA-mwwx-6vj5-5v8f.json +++ b/advisories/unreviewed/2022/05/GHSA-mwwx-6vj5-5v8f/GHSA-mwwx-6vj5-5v8f.json @@ -7,12 +7,8 @@ "CVE-2010-0126" ], "details": "Heap-based buffer overflow in an unspecified library in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted compound file, as demonstrated using a Quattro Pro file, which is not properly handled by the Quattro speed reader (qpssr.dll).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p23w-f9f7-7w5r/GHSA-p23w-f9f7-7w5r.json b/advisories/unreviewed/2022/05/GHSA-p23w-f9f7-7w5r/GHSA-p23w-f9f7-7w5r.json index e2396443864..84438a166e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p23w-f9f7-7w5r/GHSA-p23w-f9f7-7w5r.json +++ b/advisories/unreviewed/2022/05/GHSA-p23w-f9f7-7w5r/GHSA-p23w-f9f7-7w5r.json @@ -7,12 +7,8 @@ "CVE-2010-0085" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0088.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -156,9 +152,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p2hf-5x82-896v/GHSA-p2hf-5x82-896v.json b/advisories/unreviewed/2022/05/GHSA-p2hf-5x82-896v/GHSA-p2hf-5x82-896v.json index 082e5d252f4..5285eb29745 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2hf-5x82-896v/GHSA-p2hf-5x82-896v.json +++ b/advisories/unreviewed/2022/05/GHSA-p2hf-5x82-896v/GHSA-p2hf-5x82-896v.json @@ -7,12 +7,8 @@ "CVE-2010-0553" ], "details": "Geo++ GNCASTER 1.4.0.7 and earlier allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a long NMEA data sentence.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p388-jxx8-mrh3/GHSA-p388-jxx8-mrh3.json b/advisories/unreviewed/2022/05/GHSA-p388-jxx8-mrh3/GHSA-p388-jxx8-mrh3.json index 6a36e16774b..78acc2a340b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p388-jxx8-mrh3/GHSA-p388-jxx8-mrh3.json +++ b/advisories/unreviewed/2022/05/GHSA-p388-jxx8-mrh3/GHSA-p388-jxx8-mrh3.json @@ -7,12 +7,8 @@ "CVE-2010-0591" ], "details": "Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5), 7.x before 7.1(3b)SU2, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP REG message, related to an overflow of the Telephone-URL field, aka Bug ID CSCtc62362.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3c7-v49f-23mp/GHSA-p3c7-v49f-23mp.json b/advisories/unreviewed/2022/05/GHSA-p3c7-v49f-23mp/GHSA-p3c7-v49f-23mp.json index e7088941180..bc0ff0d0bf4 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3c7-v49f-23mp/GHSA-p3c7-v49f-23mp.json +++ b/advisories/unreviewed/2022/05/GHSA-p3c7-v49f-23mp/GHSA-p3c7-v49f-23mp.json @@ -7,12 +7,8 @@ "CVE-2010-0878" ], "details": "Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.26 and 8.50.07 allows remote authenticated users to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3hr-944c-g4qr/GHSA-p3hr-944c-g4qr.json b/advisories/unreviewed/2022/05/GHSA-p3hr-944c-g4qr/GHSA-p3hr-944c-g4qr.json index d7b7a4ef344..6958a7ec124 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3hr-944c-g4qr/GHSA-p3hr-944c-g4qr.json +++ b/advisories/unreviewed/2022/05/GHSA-p3hr-944c-g4qr/GHSA-p3hr-944c-g4qr.json @@ -7,12 +7,8 @@ "CVE-2010-0089" ], "details": "Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -124,9 +120,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p4m7-9364-7j9j/GHSA-p4m7-9364-7j9j.json b/advisories/unreviewed/2022/05/GHSA-p4m7-9364-7j9j/GHSA-p4m7-9364-7j9j.json index 4b6f221794c..a7cdc49530f 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4m7-9364-7j9j/GHSA-p4m7-9364-7j9j.json +++ b/advisories/unreviewed/2022/05/GHSA-p4m7-9364-7j9j/GHSA-p4m7-9364-7j9j.json @@ -7,12 +7,8 @@ "CVE-2010-0195" ], "details": "Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, do not properly handle fonts, which allows attackers to execute arbitrary code via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p54f-fcg2-57wc/GHSA-p54f-fcg2-57wc.json b/advisories/unreviewed/2022/05/GHSA-p54f-fcg2-57wc/GHSA-p54f-fcg2-57wc.json index 43387fe5879..05a86c12560 100644 --- a/advisories/unreviewed/2022/05/GHSA-p54f-fcg2-57wc/GHSA-p54f-fcg2-57wc.json +++ b/advisories/unreviewed/2022/05/GHSA-p54f-fcg2-57wc/GHSA-p54f-fcg2-57wc.json @@ -7,12 +7,8 @@ "CVE-2010-0218" ], "details": "ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive information via a DNS query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p5jg-vgvr-v22f/GHSA-p5jg-vgvr-v22f.json b/advisories/unreviewed/2022/05/GHSA-p5jg-vgvr-v22f/GHSA-p5jg-vgvr-v22f.json index 5abb4f5f4f7..483743763bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5jg-vgvr-v22f/GHSA-p5jg-vgvr-v22f.json +++ b/advisories/unreviewed/2022/05/GHSA-p5jg-vgvr-v22f/GHSA-p5jg-vgvr-v22f.json @@ -7,12 +7,8 @@ "CVE-2010-0714" ], "details": "Cross-site scripting (XSS) vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management (WCM), and IBM Lotus Workplace Web Content Management 5.1.0.0 through 5.1.0.5, 6.0.0.0 through 6.0.0.4, 6.0.1.0 through 6.0.1.7, 6.1.0.0 through 6.1.0.3, and 6.1.5.0; and IBM Lotus Quickr services 8.0, 8.0.0.2, 8.1, 8.1.1, and 8.1.1.1 for WebSphere Portal; allows remote attackers to inject arbitrary web script or HTML via the query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5vj-j6hc-25p4/GHSA-p5vj-j6hc-25p4.json b/advisories/unreviewed/2022/05/GHSA-p5vj-j6hc-25p4/GHSA-p5vj-j6hc-25p4.json index 360cb657e92..4863ffb68d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5vj-j6hc-25p4/GHSA-p5vj-j6hc-25p4.json +++ b/advisories/unreviewed/2022/05/GHSA-p5vj-j6hc-25p4/GHSA-p5vj-j6hc-25p4.json @@ -7,12 +7,8 @@ "CVE-2010-0753" ], "details": "SQL injection vulnerability in the SQL Reports (com_sqlreport) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter to ajax/print.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5w3-55x8-h8jw/GHSA-p5w3-55x8-h8jw.json b/advisories/unreviewed/2022/05/GHSA-p5w3-55x8-h8jw/GHSA-p5w3-55x8-h8jw.json index 85d9e2d8c9e..9a81adb6695 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5w3-55x8-h8jw/GHSA-p5w3-55x8-h8jw.json +++ b/advisories/unreviewed/2022/05/GHSA-p5w3-55x8-h8jw/GHSA-p5w3-55x8-h8jw.json @@ -7,12 +7,8 @@ "CVE-2010-0661" ], "details": "WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp in WebKit before r52401, as used in Google Chrome before 4.0.249.78, allows remote attackers to bypass the Same Origin Policy via vectors involving the window.open method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p65f-qm2h-fr27/GHSA-p65f-qm2h-fr27.json b/advisories/unreviewed/2022/05/GHSA-p65f-qm2h-fr27/GHSA-p65f-qm2h-fr27.json index 8743d54acde..fb764a0d18c 100644 --- a/advisories/unreviewed/2022/05/GHSA-p65f-qm2h-fr27/GHSA-p65f-qm2h-fr27.json +++ b/advisories/unreviewed/2022/05/GHSA-p65f-qm2h-fr27/GHSA-p65f-qm2h-fr27.json @@ -7,12 +7,8 @@ "CVE-2010-0470" ], "details": "Cross-site scripting (XSS) vulnerability in scvrtsrv.cmd in Comtrend CT-507IT ADSL Router allows remote attackers to inject arbitrary web script or HTML via the srvName parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p66x-hgpx-35w5/GHSA-p66x-hgpx-35w5.json b/advisories/unreviewed/2022/05/GHSA-p66x-hgpx-35w5/GHSA-p66x-hgpx-35w5.json index 60ad90bf4ac..f833a69bd3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-p66x-hgpx-35w5/GHSA-p66x-hgpx-35w5.json +++ b/advisories/unreviewed/2022/05/GHSA-p66x-hgpx-35w5/GHSA-p66x-hgpx-35w5.json @@ -7,12 +7,8 @@ "CVE-2010-0375" ], "details": "SQL injection vulnerability in product_list.php in JCE-Tech PHP Calendars, downloaded 2010-01-11, allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p6qx-pxww-v5xv/GHSA-p6qx-pxww-v5xv.json b/advisories/unreviewed/2022/05/GHSA-p6qx-pxww-v5xv/GHSA-p6qx-pxww-v5xv.json index 76d234d2684..c85802256aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6qx-pxww-v5xv/GHSA-p6qx-pxww-v5xv.json +++ b/advisories/unreviewed/2022/05/GHSA-p6qx-pxww-v5xv/GHSA-p6qx-pxww-v5xv.json @@ -7,12 +7,8 @@ "CVE-2010-0716" ], "details": "_layouts/Upload.aspx in the Documents module in Microsoft SharePoint before 2010 uses URLs with the same hostname and port number for a web site's primary files and individual users' uploaded files (aka attachments), which allows remote authenticated users to leverage same-origin relationships and conduct cross-site scripting (XSS) attacks by uploading TXT files, a related issue to CVE-2008-5026. NOTE: the vendor disputes the significance of this issue, because cross-domain isolation can be implemented when needed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p73v-h98c-33pg/GHSA-p73v-h98c-33pg.json b/advisories/unreviewed/2022/05/GHSA-p73v-h98c-33pg/GHSA-p73v-h98c-33pg.json index 6cbf9a40fe4..39b29f32f28 100644 --- a/advisories/unreviewed/2022/05/GHSA-p73v-h98c-33pg/GHSA-p73v-h98c-33pg.json +++ b/advisories/unreviewed/2022/05/GHSA-p73v-h98c-33pg/GHSA-p73v-h98c-33pg.json @@ -7,12 +7,8 @@ "CVE-2010-0778" ], "details": "Cross-site scripting (XSS) vulnerability in the Administration Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.33 and 7.0 before 7.0.0.11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p828-q7f9-f38x/GHSA-p828-q7f9-f38x.json b/advisories/unreviewed/2022/05/GHSA-p828-q7f9-f38x/GHSA-p828-q7f9-f38x.json index 02d8e3aec57..11a7f0cbded 100644 --- a/advisories/unreviewed/2022/05/GHSA-p828-q7f9-f38x/GHSA-p828-q7f9-f38x.json +++ b/advisories/unreviewed/2022/05/GHSA-p828-q7f9-f38x/GHSA-p828-q7f9-f38x.json @@ -7,12 +7,8 @@ "CVE-2010-0792" ], "details": "fcrontab in fcron before 3.0.5 allows local users to read arbitrary files via a symlink attack on an unspecified file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p829-jg83-8jr6/GHSA-p829-jg83-8jr6.json b/advisories/unreviewed/2022/05/GHSA-p829-jg83-8jr6/GHSA-p829-jg83-8jr6.json index 467bd236a5b..6a62a9fc181 100644 --- a/advisories/unreviewed/2022/05/GHSA-p829-jg83-8jr6/GHSA-p829-jg83-8jr6.json +++ b/advisories/unreviewed/2022/05/GHSA-p829-jg83-8jr6/GHSA-p829-jg83-8jr6.json @@ -7,12 +7,8 @@ "CVE-2010-0017" ], "details": "Race condition in the SMB client implementation in Microsoft Windows Server 2008 R2 and Windows 7 allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code, and in the SMB client implementation in Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 allows local users to gain privileges, via a crafted SMB Negotiate response, aka \"SMB Client Race Condition Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p84v-jr8v-r7f4/GHSA-p84v-jr8v-r7f4.json b/advisories/unreviewed/2022/05/GHSA-p84v-jr8v-r7f4/GHSA-p84v-jr8v-r7f4.json index da0bf0e3114..154cd19595a 100644 --- a/advisories/unreviewed/2022/05/GHSA-p84v-jr8v-r7f4/GHSA-p84v-jr8v-r7f4.json +++ b/advisories/unreviewed/2022/05/GHSA-p84v-jr8v-r7f4/GHSA-p84v-jr8v-r7f4.json @@ -7,12 +7,8 @@ "CVE-2010-0185" ], "details": "The default configuration of Adobe ColdFusion 9.0 does not restrict access to collections that have been created by the Solr Service, which allows remote attackers to obtain collection metadata, search information, and index data via a request to an unspecified URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p8h5-wr3j-h43x/GHSA-p8h5-wr3j-h43x.json b/advisories/unreviewed/2022/05/GHSA-p8h5-wr3j-h43x/GHSA-p8h5-wr3j-h43x.json index 26076a73702..3b3c3fd7fe5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8h5-wr3j-h43x/GHSA-p8h5-wr3j-h43x.json +++ b/advisories/unreviewed/2022/05/GHSA-p8h5-wr3j-h43x/GHSA-p8h5-wr3j-h43x.json @@ -7,12 +7,8 @@ "CVE-2010-0881" ], "details": "Unspecified vulnerability in the User Interface Components in Oracle Collaboration Suite 10.1.2.4 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p8hw-7ch3-xcp2/GHSA-p8hw-7ch3-xcp2.json b/advisories/unreviewed/2022/05/GHSA-p8hw-7ch3-xcp2/GHSA-p8hw-7ch3-xcp2.json index 607f56f9f56..a44e84ba5ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8hw-7ch3-xcp2/GHSA-p8hw-7ch3-xcp2.json +++ b/advisories/unreviewed/2022/05/GHSA-p8hw-7ch3-xcp2/GHSA-p8hw-7ch3-xcp2.json @@ -7,12 +7,8 @@ "CVE-2010-0745" ], "details": "Unspecified vulnerability in Dovecot 1.2.x before 1.2.11 allows remote attackers to cause a denial of service (CPU consumption) via long headers in an e-mail message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p94m-h527-55cx/GHSA-p94m-h527-55cx.json b/advisories/unreviewed/2022/05/GHSA-p94m-h527-55cx/GHSA-p94m-h527-55cx.json index 02d15a85d90..36e2260e717 100644 --- a/advisories/unreviewed/2022/05/GHSA-p94m-h527-55cx/GHSA-p94m-h527-55cx.json +++ b/advisories/unreviewed/2022/05/GHSA-p94m-h527-55cx/GHSA-p94m-h527-55cx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p955-f64f-7qv7/GHSA-p955-f64f-7qv7.json b/advisories/unreviewed/2022/05/GHSA-p955-f64f-7qv7/GHSA-p955-f64f-7qv7.json index 91d6d04ddd7..09bdd7d691b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p955-f64f-7qv7/GHSA-p955-f64f-7qv7.json +++ b/advisories/unreviewed/2022/05/GHSA-p955-f64f-7qv7/GHSA-p955-f64f-7qv7.json @@ -7,12 +7,8 @@ "CVE-2010-0465" ], "details": "Cross-site scripting (XSS) vulnerability in the online Documents functionality in SugarCRM 5.2.x before 5.2.0l and 5.5.x before 5.5.0a allows remote authenticated users to inject arbitrary web script or HTML via the Document Name field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9f4-9pfr-g2fp/GHSA-p9f4-9pfr-g2fp.json b/advisories/unreviewed/2022/05/GHSA-p9f4-9pfr-g2fp/GHSA-p9f4-9pfr-g2fp.json index 34d024f4458..5d076c7c58b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9f4-9pfr-g2fp/GHSA-p9f4-9pfr-g2fp.json +++ b/advisories/unreviewed/2022/05/GHSA-p9f4-9pfr-g2fp/GHSA-p9f4-9pfr-g2fp.json @@ -7,12 +7,8 @@ "CVE-2010-0744" ], "details": "aMSN (aka Alvaro's Messenger) 0.98.3 and earlier, when SSL is used, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) field or a Subject Alternative Name field of the X.509 certificate, which allows man-in-the-middle attackers to spoof an MSN server via an arbitrary certificate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9qf-76h3-fg7r/GHSA-p9qf-76h3-fg7r.json b/advisories/unreviewed/2022/05/GHSA-p9qf-76h3-fg7r/GHSA-p9qf-76h3-fg7r.json index 055ca1efcba..d5d85452811 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9qf-76h3-fg7r/GHSA-p9qf-76h3-fg7r.json +++ b/advisories/unreviewed/2022/05/GHSA-p9qf-76h3-fg7r/GHSA-p9qf-76h3-fg7r.json @@ -7,12 +7,8 @@ "CVE-2010-0149" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.2 before 7.2(4.46), 8.0 before 8.0(4.38), 8.1 before 8.1(2.29), and 8.2 before 8.2(1.5); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (prevention of new connections) via crafted TCP segments during termination of the TCP connection that cause the connection to remain in CLOSEWAIT status, aka \"TCP Connection Exhaustion Denial of Service Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pc3f-v6x4-2qhm/GHSA-pc3f-v6x4-2qhm.json b/advisories/unreviewed/2022/05/GHSA-pc3f-v6x4-2qhm/GHSA-pc3f-v6x4-2qhm.json index 36ccbdc2688..d9f95feba0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc3f-v6x4-2qhm/GHSA-pc3f-v6x4-2qhm.json +++ b/advisories/unreviewed/2022/05/GHSA-pc3f-v6x4-2qhm/GHSA-pc3f-v6x4-2qhm.json @@ -7,12 +7,8 @@ "CVE-2010-0858" ], "details": "Unspecified vulnerability in the E-Business Intelligence component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote authenticated users to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pc59-5wq3-w9vr/GHSA-pc59-5wq3-w9vr.json b/advisories/unreviewed/2022/05/GHSA-pc59-5wq3-w9vr/GHSA-pc59-5wq3-w9vr.json index f3558cf23b5..593f2873dd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc59-5wq3-w9vr/GHSA-pc59-5wq3-w9vr.json +++ b/advisories/unreviewed/2022/05/GHSA-pc59-5wq3-w9vr/GHSA-pc59-5wq3-w9vr.json @@ -7,12 +7,8 @@ "CVE-2010-0609" ], "details": "SQL injection vulnerability in header.php in NovaBoard 1.1.2 allows remote attackers to execute arbitrary SQL commands via the nova_name cookie parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pc5r-gv46-hg46/GHSA-pc5r-gv46-hg46.json b/advisories/unreviewed/2022/05/GHSA-pc5r-gv46-hg46/GHSA-pc5r-gv46-hg46.json index 18da3027b18..e0c3145fb0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc5r-gv46-hg46/GHSA-pc5r-gv46-hg46.json +++ b/advisories/unreviewed/2022/05/GHSA-pc5r-gv46-hg46/GHSA-pc5r-gv46-hg46.json @@ -7,12 +7,8 @@ "CVE-2010-0223" ], "details": "Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pc6r-6288-xqwh/GHSA-pc6r-6288-xqwh.json b/advisories/unreviewed/2022/05/GHSA-pc6r-6288-xqwh/GHSA-pc6r-6288-xqwh.json index c0f5950ca7a..8a0abdd364f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc6r-6288-xqwh/GHSA-pc6r-6288-xqwh.json +++ b/advisories/unreviewed/2022/05/GHSA-pc6r-6288-xqwh/GHSA-pc6r-6288-xqwh.json @@ -7,12 +7,8 @@ "CVE-2010-0483" ], "details": "vbscript.dll in VBScript 5.1, 5.6, 5.7, and 5.8 in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, when Internet Explorer is used, allows user-assisted remote attackers to execute arbitrary code by referencing a (1) local pathname, (2) UNC share pathname, or (3) WebDAV server with a crafted .hlp file in the fourth argument (aka helpfile argument) to the MsgBox function, leading to code execution involving winhlp32.exe when the F1 key is pressed, aka \"VBScript Help Keypress Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pc74-63g2-pjp2/GHSA-pc74-63g2-pjp2.json b/advisories/unreviewed/2022/05/GHSA-pc74-63g2-pjp2/GHSA-pc74-63g2-pjp2.json index f41e73ba2c6..242c7c155b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc74-63g2-pjp2/GHSA-pc74-63g2-pjp2.json +++ b/advisories/unreviewed/2022/05/GHSA-pc74-63g2-pjp2/GHSA-pc74-63g2-pjp2.json @@ -7,12 +7,8 @@ "CVE-2010-0187" ], "details": "Adobe Flash Player before 10.0.45.2 and Adobe AIR before 1.5.3.9130 allow remote attackers to cause a denial of service (application crash) via a modified SWF file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pcxx-jh3f-2gx3/GHSA-pcxx-jh3f-2gx3.json b/advisories/unreviewed/2022/05/GHSA-pcxx-jh3f-2gx3/GHSA-pcxx-jh3f-2gx3.json index 9d254e74783..d30e8897942 100644 --- a/advisories/unreviewed/2022/05/GHSA-pcxx-jh3f-2gx3/GHSA-pcxx-jh3f-2gx3.json +++ b/advisories/unreviewed/2022/05/GHSA-pcxx-jh3f-2gx3/GHSA-pcxx-jh3f-2gx3.json @@ -7,12 +7,8 @@ "CVE-2010-0363" ], "details": "Cross-site scripting (XSS) vulnerability in Zeus Web Server before 4.3r5, when SSL is enabled for the admin server, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2002-1785.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pfj8-2727-hwr9/GHSA-pfj8-2727-hwr9.json b/advisories/unreviewed/2022/05/GHSA-pfj8-2727-hwr9/GHSA-pfj8-2727-hwr9.json index 3fe4ead3b02..520fb870130 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfj8-2727-hwr9/GHSA-pfj8-2727-hwr9.json +++ b/advisories/unreviewed/2022/05/GHSA-pfj8-2727-hwr9/GHSA-pfj8-2727-hwr9.json @@ -7,12 +7,8 @@ "CVE-2010-0167" ], "details": "The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via vectors related to (1) layout/generic/nsBlockFrame.cpp and (2) the _evaluate function in modules/plugin/base/src/nsNPAPIPlugin.cpp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pg6j-wgxm-fp8g/GHSA-pg6j-wgxm-fp8g.json b/advisories/unreviewed/2022/05/GHSA-pg6j-wgxm-fp8g/GHSA-pg6j-wgxm-fp8g.json index 2d6c6529210..6c8a5c528e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg6j-wgxm-fp8g/GHSA-pg6j-wgxm-fp8g.json +++ b/advisories/unreviewed/2022/05/GHSA-pg6j-wgxm-fp8g/GHSA-pg6j-wgxm-fp8g.json @@ -7,12 +7,8 @@ "CVE-2010-0848" ], "details": "Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -172,9 +168,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-phfg-g4q8-45r5/GHSA-phfg-g4q8-45r5.json b/advisories/unreviewed/2022/05/GHSA-phfg-g4q8-45r5/GHSA-phfg-g4q8-45r5.json index 06d6fc376c3..a5ff0c99ec2 100644 --- a/advisories/unreviewed/2022/05/GHSA-phfg-g4q8-45r5/GHSA-phfg-g4q8-45r5.json +++ b/advisories/unreviewed/2022/05/GHSA-phfg-g4q8-45r5/GHSA-phfg-g4q8-45r5.json @@ -7,12 +7,8 @@ "CVE-2010-0278" ], "details": "A certain ActiveX control in msgsc.14.0.8089.726.dll in Microsoft Windows Live Messenger 2009 build 14.0.8089.726 on Windows Vista and Windows 7 allows remote attackers to cause a denial of service (msnmsgr.exe crash) by calling the ViewProfile method with a crafted argument during an MSN Messenger session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-phqx-w8fw-293w/GHSA-phqx-w8fw-293w.json b/advisories/unreviewed/2022/05/GHSA-phqx-w8fw-293w/GHSA-phqx-w8fw-293w.json index 706fb53fb91..21194f8df6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-phqx-w8fw-293w/GHSA-phqx-w8fw-293w.json +++ b/advisories/unreviewed/2022/05/GHSA-phqx-w8fw-293w/GHSA-phqx-w8fw-293w.json @@ -7,12 +7,8 @@ "CVE-2010-0020" ], "details": "The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate request fields, which allows remote authenticated users to execute arbitrary code via a malformed request, aka \"SMB Pathname Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj2v-wrvx-hgcc/GHSA-pj2v-wrvx-hgcc.json b/advisories/unreviewed/2022/05/GHSA-pj2v-wrvx-hgcc/GHSA-pj2v-wrvx-hgcc.json index 0c6c84e9b9c..9512ea1ec5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj2v-wrvx-hgcc/GHSA-pj2v-wrvx-hgcc.json +++ b/advisories/unreviewed/2022/05/GHSA-pj2v-wrvx-hgcc/GHSA-pj2v-wrvx-hgcc.json @@ -7,12 +7,8 @@ "CVE-2010-0338" ], "details": "SQL injection vulnerability in the TT_Products editor (ttpedit) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjcw-f7fm-qgjc/GHSA-pjcw-f7fm-qgjc.json b/advisories/unreviewed/2022/05/GHSA-pjcw-f7fm-qgjc/GHSA-pjcw-f7fm-qgjc.json index c95e36c7c9d..86de071a0f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjcw-f7fm-qgjc/GHSA-pjcw-f7fm-qgjc.json +++ b/advisories/unreviewed/2022/05/GHSA-pjcw-f7fm-qgjc/GHSA-pjcw-f7fm-qgjc.json @@ -7,12 +7,8 @@ "CVE-2010-0783" ], "details": "Cross-site scripting (XSS) vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.13 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pmx6-78qj-835g/GHSA-pmx6-78qj-835g.json b/advisories/unreviewed/2022/05/GHSA-pmx6-78qj-835g/GHSA-pmx6-78qj-835g.json index 1dafb1301b3..a0f85462897 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmx6-78qj-835g/GHSA-pmx6-78qj-835g.json +++ b/advisories/unreviewed/2022/05/GHSA-pmx6-78qj-835g/GHSA-pmx6-78qj-835g.json @@ -7,12 +7,8 @@ "CVE-2009-5098" ], "details": "The LunaSysMgr process in Palm Pre WebOS 1.1 and earlier, when not viewing web pages in landscape mode, allows remote attackers to cause a denial of service (crash) via a web page containing a long string following a refresh tag, which triggers a floating point exception.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pp5x-jfjw-9p5x/GHSA-pp5x-jfjw-9p5x.json b/advisories/unreviewed/2022/05/GHSA-pp5x-jfjw-9p5x/GHSA-pp5x-jfjw-9p5x.json index fc3a46c9ae2..c36b49c3791 100644 --- a/advisories/unreviewed/2022/05/GHSA-pp5x-jfjw-9p5x/GHSA-pp5x-jfjw-9p5x.json +++ b/advisories/unreviewed/2022/05/GHSA-pp5x-jfjw-9p5x/GHSA-pp5x-jfjw-9p5x.json @@ -7,12 +7,8 @@ "CVE-2010-0660" ], "details": "Google Chrome before 4.0.249.78 sends an https URL in the Referer header of an http request in certain circumstances involving https to http redirection, which allows remote HTTP servers to obtain potentially sensitive information via standard HTTP logging.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pphv-7r2p-9rxv/GHSA-pphv-7r2p-9rxv.json b/advisories/unreviewed/2022/05/GHSA-pphv-7r2p-9rxv/GHSA-pphv-7r2p-9rxv.json index 2b9942a7196..efa1b00e61b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pphv-7r2p-9rxv/GHSA-pphv-7r2p-9rxv.json +++ b/advisories/unreviewed/2022/05/GHSA-pphv-7r2p-9rxv/GHSA-pphv-7r2p-9rxv.json @@ -7,12 +7,8 @@ "CVE-2010-0315" ], "details": "WebKit before r53607, as used in Google Chrome before 4.0.249.89, allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value, related to an IFRAME element.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq8r-7hph-pwj2/GHSA-pq8r-7hph-pwj2.json b/advisories/unreviewed/2022/05/GHSA-pq8r-7hph-pwj2/GHSA-pq8r-7hph-pwj2.json index 82f571688ec..4182c433fea 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq8r-7hph-pwj2/GHSA-pq8r-7hph-pwj2.json +++ b/advisories/unreviewed/2022/05/GHSA-pq8r-7hph-pwj2/GHSA-pq8r-7hph-pwj2.json @@ -7,12 +7,8 @@ "CVE-2010-0705" ], "details": "Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000 and XP does not properly validate input to IOCTL 0xb2d60030, which allows local users to cause a denial of service (system crash) or execute arbitrary code to gain privileges via IOCTL requests using crafted kernel addresses that trigger memory corruption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-prhp-4vw3-h923/GHSA-prhp-4vw3-h923.json b/advisories/unreviewed/2022/05/GHSA-prhp-4vw3-h923/GHSA-prhp-4vw3-h923.json index 995827b8126..793b8046a52 100644 --- a/advisories/unreviewed/2022/05/GHSA-prhp-4vw3-h923/GHSA-prhp-4vw3-h923.json +++ b/advisories/unreviewed/2022/05/GHSA-prhp-4vw3-h923/GHSA-prhp-4vw3-h923.json @@ -7,12 +7,8 @@ "CVE-2010-0823" ], "details": "Unspecified vulnerability in Microsoft Office Excel 2002 SP3, 2003 SP3, 2007 SP1 and SP2; Office 2004 for mac; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; allows remote attackers to execute arbitrary code via a crafted Excel file, aka \"Excel Memory Corruption Vulnerability,\" a different vulnerability than CVE-2010-1247 and CVE-2010-1249.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-prjv-5g97-fjwx/GHSA-prjv-5g97-fjwx.json b/advisories/unreviewed/2022/05/GHSA-prjv-5g97-fjwx/GHSA-prjv-5g97-fjwx.json index 3bd63bab945..ceebbaec8e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-prjv-5g97-fjwx/GHSA-prjv-5g97-fjwx.json +++ b/advisories/unreviewed/2022/05/GHSA-prjv-5g97-fjwx/GHSA-prjv-5g97-fjwx.json @@ -7,12 +7,8 @@ "CVE-2010-0644" ], "details": "Google Chrome before 4.0.249.89, when a SOCKS 5 proxy server is configured, sends DNS queries directly, which allows remote DNS servers to obtain potentially sensitive information about the identity of a client user via request logging, as demonstrated by a proxy server that was configured for the purpose of anonymity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-prrj-m673-5r3j/GHSA-prrj-m673-5r3j.json b/advisories/unreviewed/2022/05/GHSA-prrj-m673-5r3j/GHSA-prrj-m673-5r3j.json index c65d9574d61..c7026035507 100644 --- a/advisories/unreviewed/2022/05/GHSA-prrj-m673-5r3j/GHSA-prrj-m673-5r3j.json +++ b/advisories/unreviewed/2022/05/GHSA-prrj-m673-5r3j/GHSA-prrj-m673-5r3j.json @@ -7,12 +7,8 @@ "CVE-2010-0622" ], "details": "The wake_futex_pi function in kernel/futex.c in the Linux kernel before 2.6.33-rc7 does not properly handle certain unlock operations for a Priority Inheritance (PI) futex, which allows local users to cause a denial of service (OOPS) and possibly have unspecified other impact via vectors involving modification of the futex value from user space.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -108,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pv99-5h3p-2qmr/GHSA-pv99-5h3p-2qmr.json b/advisories/unreviewed/2022/05/GHSA-pv99-5h3p-2qmr/GHSA-pv99-5h3p-2qmr.json index e5de7d1888c..576fe6f1373 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv99-5h3p-2qmr/GHSA-pv99-5h3p-2qmr.json +++ b/advisories/unreviewed/2022/05/GHSA-pv99-5h3p-2qmr/GHSA-pv99-5h3p-2qmr.json @@ -7,12 +7,8 @@ "CVE-2010-0613" ], "details": "Directory traversal vulnerability in viewfile.php in ARWScripts Fonts Script allows remote attackers to read arbitrary local files via directory traversal sequences in a base64-encoded f parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvxq-693v-vc3x/GHSA-pvxq-693v-vc3x.json b/advisories/unreviewed/2022/05/GHSA-pvxq-693v-vc3x/GHSA-pvxq-693v-vc3x.json index 68662ba6082..cf5d37f8f32 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvxq-693v-vc3x/GHSA-pvxq-693v-vc3x.json +++ b/advisories/unreviewed/2022/05/GHSA-pvxq-693v-vc3x/GHSA-pvxq-693v-vc3x.json @@ -7,12 +7,8 @@ "CVE-2010-0511" ], "details": "Podcast Producer in Apple Mac OS X 10.6 before 10.6.3 deletes the access restrictions of a Podcast Composer workflow when this workflow is overwritten, which allows attackers to access a workflow via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pww4-c7mq-vj87/GHSA-pww4-c7mq-vj87.json b/advisories/unreviewed/2022/05/GHSA-pww4-c7mq-vj87/GHSA-pww4-c7mq-vj87.json index 39a1cd6b27b..3093a64b745 100644 --- a/advisories/unreviewed/2022/05/GHSA-pww4-c7mq-vj87/GHSA-pww4-c7mq-vj87.json +++ b/advisories/unreviewed/2022/05/GHSA-pww4-c7mq-vj87/GHSA-pww4-c7mq-vj87.json @@ -7,12 +7,8 @@ "CVE-2010-0712" ], "details": "Multiple SQL injection vulnerabilities in zport/dmd/Events/getJSONEventsInfo in Zenoss 2.3.3, and other versions before 2.5, allow remote authenticated users to execute arbitrary SQL commands via the (1) severity, (2) state, (3) filter, (4) offset, and (5) count parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxc8-mqgf-jh84/GHSA-pxc8-mqgf-jh84.json b/advisories/unreviewed/2022/05/GHSA-pxc8-mqgf-jh84/GHSA-pxc8-mqgf-jh84.json index 186bbb008a1..34fb01d354d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxc8-mqgf-jh84/GHSA-pxc8-mqgf-jh84.json +++ b/advisories/unreviewed/2022/05/GHSA-pxc8-mqgf-jh84/GHSA-pxc8-mqgf-jh84.json @@ -7,12 +7,8 @@ "CVE-2010-0349" ], "details": "Cross-site scripting (XSS) vulnerability in C3 Corp. WebCalenderC3 0.32 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors. NOTE: this issue could not be reproduced by the vendor, but a patch was provided anyway. The original researcher is reliable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxhw-m5jj-mmp6/GHSA-pxhw-m5jj-mmp6.json b/advisories/unreviewed/2022/05/GHSA-pxhw-m5jj-mmp6/GHSA-pxhw-m5jj-mmp6.json index 9a0575ee22e..3e10d27839a 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxhw-m5jj-mmp6/GHSA-pxhw-m5jj-mmp6.json +++ b/advisories/unreviewed/2022/05/GHSA-pxhw-m5jj-mmp6/GHSA-pxhw-m5jj-mmp6.json @@ -7,12 +7,8 @@ "CVE-2010-0313" ], "details": "The core_get_proxyauth_dn function in ns-slapd in Sun Java System Directory Server Enterprise Edition 7.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted LDAP Search Request message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pxr7-r9vh-7q86/GHSA-pxr7-r9vh-7q86.json b/advisories/unreviewed/2022/05/GHSA-pxr7-r9vh-7q86/GHSA-pxr7-r9vh-7q86.json index e939f89c1b3..abf11702c77 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxr7-r9vh-7q86/GHSA-pxr7-r9vh-7q86.json +++ b/advisories/unreviewed/2022/05/GHSA-pxr7-r9vh-7q86/GHSA-pxr7-r9vh-7q86.json @@ -7,12 +7,8 @@ "CVE-2010-0454" ], "details": "SQL injection vulnerability in cgi/cgilua.exe/sys/start.htm in Publique! 2.3 allows remote attackers to execute arbitrary SQL commands via the sid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q287-w67r-grmg/GHSA-q287-w67r-grmg.json b/advisories/unreviewed/2022/05/GHSA-q287-w67r-grmg/GHSA-q287-w67r-grmg.json index 9af65cc6937..fe72b1f6699 100644 --- a/advisories/unreviewed/2022/05/GHSA-q287-w67r-grmg/GHSA-q287-w67r-grmg.json +++ b/advisories/unreviewed/2022/05/GHSA-q287-w67r-grmg/GHSA-q287-w67r-grmg.json @@ -7,12 +7,8 @@ "CVE-2010-0325" ], "details": "Unspecified vulnerability in the SB Folderdownload (sb_folderdownload) extension 0.2.2 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2qq-4jfp-7w3h/GHSA-q2qq-4jfp-7w3h.json b/advisories/unreviewed/2022/05/GHSA-q2qq-4jfp-7w3h/GHSA-q2qq-4jfp-7w3h.json index 3a15119a0e1..8e9c173b92c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2qq-4jfp-7w3h/GHSA-q2qq-4jfp-7w3h.json +++ b/advisories/unreviewed/2022/05/GHSA-q2qq-4jfp-7w3h/GHSA-q2qq-4jfp-7w3h.json @@ -7,12 +7,8 @@ "CVE-2010-0441" ], "details": "Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q33h-xmcx-jm3h/GHSA-q33h-xmcx-jm3h.json b/advisories/unreviewed/2022/05/GHSA-q33h-xmcx-jm3h/GHSA-q33h-xmcx-jm3h.json index 4f359f1c85a..585fb1aab5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-q33h-xmcx-jm3h/GHSA-q33h-xmcx-jm3h.json +++ b/advisories/unreviewed/2022/05/GHSA-q33h-xmcx-jm3h/GHSA-q33h-xmcx-jm3h.json @@ -7,12 +7,8 @@ "CVE-2010-0464" ], "details": "Roundcube 0.3.1 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3x6-x3m5-f2j3/GHSA-q3x6-x3m5-f2j3.json b/advisories/unreviewed/2022/05/GHSA-q3x6-x3m5-f2j3/GHSA-q3x6-x3m5-f2j3.json index 4c3d166c7b5..c8fc471ea9f 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3x6-x3m5-f2j3/GHSA-q3x6-x3m5-f2j3.json +++ b/advisories/unreviewed/2022/05/GHSA-q3x6-x3m5-f2j3/GHSA-q3x6-x3m5-f2j3.json @@ -7,12 +7,8 @@ "CVE-2010-0116" ], "details": "Integer overflow in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows might allow remote attackers to execute arbitrary code via a crafted QCP file that triggers a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q43m-485x-8692/GHSA-q43m-485x-8692.json b/advisories/unreviewed/2022/05/GHSA-q43m-485x-8692/GHSA-q43m-485x-8692.json index 5019396b44e..0499700ef13 100644 --- a/advisories/unreviewed/2022/05/GHSA-q43m-485x-8692/GHSA-q43m-485x-8692.json +++ b/advisories/unreviewed/2022/05/GHSA-q43m-485x-8692/GHSA-q43m-485x-8692.json @@ -7,12 +7,8 @@ "CVE-2010-0513" ], "details": "Stack-based buffer overflow in PS Normalizer in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PostScript document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q48q-r88f-6j34/GHSA-q48q-r88f-6j34.json b/advisories/unreviewed/2022/05/GHSA-q48q-r88f-6j34/GHSA-q48q-r88f-6j34.json index 7f54f5a129b..d445ce6329a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q48q-r88f-6j34/GHSA-q48q-r88f-6j34.json +++ b/advisories/unreviewed/2022/05/GHSA-q48q-r88f-6j34/GHSA-q48q-r88f-6j34.json @@ -7,12 +7,8 @@ "CVE-2010-0853" ], "details": "Unspecified vulnerability in the Oracle Internet Directory component in Oracle Database 9.2.0.8, 9.2.0.8, and DV; and Oracle Fusion Middleware 10.1.2.3 and 10.1.4.0.1; allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q574-jmrv-grv3/GHSA-q574-jmrv-grv3.json b/advisories/unreviewed/2022/05/GHSA-q574-jmrv-grv3/GHSA-q574-jmrv-grv3.json index 37a62ed0a55..de51c2098e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-q574-jmrv-grv3/GHSA-q574-jmrv-grv3.json +++ b/advisories/unreviewed/2022/05/GHSA-q574-jmrv-grv3/GHSA-q574-jmrv-grv3.json @@ -7,12 +7,8 @@ "CVE-2010-0247" ], "details": "Microsoft Internet Explorer 5.01 SP4, 6, and 6 SP1 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka \"Uninitialized Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5wm-274q-f3v6/GHSA-q5wm-274q-f3v6.json b/advisories/unreviewed/2022/05/GHSA-q5wm-274q-f3v6/GHSA-q5wm-274q-f3v6.json index a288d99d096..9b8d5b5c98e 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5wm-274q-f3v6/GHSA-q5wm-274q-f3v6.json +++ b/advisories/unreviewed/2022/05/GHSA-q5wm-274q-f3v6/GHSA-q5wm-274q-f3v6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q6fv-25xg-7q8j/GHSA-q6fv-25xg-7q8j.json b/advisories/unreviewed/2022/05/GHSA-q6fv-25xg-7q8j/GHSA-q6fv-25xg-7q8j.json index 8be0dc13e24..49a106f437e 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6fv-25xg-7q8j/GHSA-q6fv-25xg-7q8j.json +++ b/advisories/unreviewed/2022/05/GHSA-q6fv-25xg-7q8j/GHSA-q6fv-25xg-7q8j.json @@ -7,12 +7,8 @@ "CVE-2010-0143" ], "details": "Unspecified vulnerability in the administrative interface in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote attackers to read arbitrary files via unknown vectors, aka IronPort Bug 65921.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6vj-cjm6-x954/GHSA-q6vj-cjm6-x954.json b/advisories/unreviewed/2022/05/GHSA-q6vj-cjm6-x954/GHSA-q6vj-cjm6-x954.json index 40e00fe8ac8..e74f520cb48 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6vj-cjm6-x954/GHSA-q6vj-cjm6-x954.json +++ b/advisories/unreviewed/2022/05/GHSA-q6vj-cjm6-x954/GHSA-q6vj-cjm6-x954.json @@ -7,12 +7,8 @@ "CVE-2010-0847" ], "details": "Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a heap-based buffer overflow that allows arbitrary code execution via a crafted image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q799-3qfw-88p4/GHSA-q799-3qfw-88p4.json b/advisories/unreviewed/2022/05/GHSA-q799-3qfw-88p4/GHSA-q799-3qfw-88p4.json index 36357212ca8..a8347e88707 100644 --- a/advisories/unreviewed/2022/05/GHSA-q799-3qfw-88p4/GHSA-q799-3qfw-88p4.json +++ b/advisories/unreviewed/2022/05/GHSA-q799-3qfw-88p4/GHSA-q799-3qfw-88p4.json @@ -7,12 +7,8 @@ "CVE-2010-0752" ], "details": "The week_post_page function in the Weekly Archive by Node Type module 6.x before 6.x-2.7 for Drupal does not properly implement node access restrictions when constructing SQL queries, which allows remote attackers to read restricted node listings via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7rh-6wjh-vj6q/GHSA-q7rh-6wjh-vj6q.json b/advisories/unreviewed/2022/05/GHSA-q7rh-6wjh-vj6q/GHSA-q7rh-6wjh-vj6q.json index 02c95e6e8b6..2c609b41e80 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7rh-6wjh-vj6q/GHSA-q7rh-6wjh-vj6q.json +++ b/advisories/unreviewed/2022/05/GHSA-q7rh-6wjh-vj6q/GHSA-q7rh-6wjh-vj6q.json @@ -7,12 +7,8 @@ "CVE-2010-0774" ], "details": "The (1) JAX-RPC WS-Security 1.0 and (2) JAX-WS runtime implementations in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.11 do not properly handle WebServices PKCS#7 and PKIPath tokens, which allows remote attackers to bypass intended access restrictions via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7vp-7fgq-v95q/GHSA-q7vp-7fgq-v95q.json b/advisories/unreviewed/2022/05/GHSA-q7vp-7fgq-v95q/GHSA-q7vp-7fgq-v95q.json index a53b5df1c3c..1ad259ac471 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7vp-7fgq-v95q/GHSA-q7vp-7fgq-v95q.json +++ b/advisories/unreviewed/2022/05/GHSA-q7vp-7fgq-v95q/GHSA-q7vp-7fgq-v95q.json @@ -7,12 +7,8 @@ "CVE-2010-0272" ], "details": "Heap-based buffer overflow in Sun Java System Web Server 7.0 Update 6 on Linux allows remote attackers to discover process memory locations via crafted data to TCP port 80, as demonstrated by the vd_sjws2 module in VulnDisco. NOTE: as of 20100106, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q8gp-3ff8-crhh/GHSA-q8gp-3ff8-crhh.json b/advisories/unreviewed/2022/05/GHSA-q8gp-3ff8-crhh/GHSA-q8gp-3ff8-crhh.json index 368d1a314a5..8588f108431 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8gp-3ff8-crhh/GHSA-q8gp-3ff8-crhh.json +++ b/advisories/unreviewed/2022/05/GHSA-q8gp-3ff8-crhh/GHSA-q8gp-3ff8-crhh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qc39-q4xv-pxc8/GHSA-qc39-q4xv-pxc8.json b/advisories/unreviewed/2022/05/GHSA-qc39-q4xv-pxc8/GHSA-qc39-q4xv-pxc8.json index 7de15a7596c..17c0d1d88d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc39-q4xv-pxc8/GHSA-qc39-q4xv-pxc8.json +++ b/advisories/unreviewed/2022/05/GHSA-qc39-q4xv-pxc8/GHSA-qc39-q4xv-pxc8.json @@ -7,12 +7,8 @@ "CVE-2010-0850" ], "details": "Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qc53-vxvp-927p/GHSA-qc53-vxvp-927p.json b/advisories/unreviewed/2022/05/GHSA-qc53-vxvp-927p/GHSA-qc53-vxvp-927p.json index 1d21f3ce036..315380e28e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc53-vxvp-927p/GHSA-qc53-vxvp-927p.json +++ b/advisories/unreviewed/2022/05/GHSA-qc53-vxvp-927p/GHSA-qc53-vxvp-927p.json @@ -7,12 +7,8 @@ "CVE-2010-0080" ], "details": "Unspecified vulnerability in the PeopleSoft Enterprise HCM - eProfile component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.9 Bundle, #21 and 9.0 Bundle #11 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qgq2-3q9g-gc52/GHSA-qgq2-3q9g-gc52.json b/advisories/unreviewed/2022/05/GHSA-qgq2-3q9g-gc52/GHSA-qgq2-3q9g-gc52.json index 80e6398ffbd..5a9c096791e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgq2-3q9g-gc52/GHSA-qgq2-3q9g-gc52.json +++ b/advisories/unreviewed/2022/05/GHSA-qgq2-3q9g-gc52/GHSA-qgq2-3q9g-gc52.json @@ -7,12 +7,8 @@ "CVE-2010-0458" ], "details": "Multiple SQL injection vulnerabilities in NetArt Media Blog System 1.5 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to index.php and the (2) note parameter to blog.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qgvq-cfgg-vpmj/GHSA-qgvq-cfgg-vpmj.json b/advisories/unreviewed/2022/05/GHSA-qgvq-cfgg-vpmj/GHSA-qgvq-cfgg-vpmj.json index 33de7879e5d..2af3c19b69e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgvq-cfgg-vpmj/GHSA-qgvq-cfgg-vpmj.json +++ b/advisories/unreviewed/2022/05/GHSA-qgvq-cfgg-vpmj/GHSA-qgvq-cfgg-vpmj.json @@ -7,12 +7,8 @@ "CVE-2010-0610" ], "details": "Multiple SQL injection vulnerabilities in the Photoblog (com_photoblog) component for Joomla! allow remote attackers to execute arbitrary SQL commands via the blog parameter in an images action to index.php. NOTE: a separate vector for the id parameter to detail.php may also exist.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhpf-56xh-5j88/GHSA-qhpf-56xh-5j88.json b/advisories/unreviewed/2022/05/GHSA-qhpf-56xh-5j88/GHSA-qhpf-56xh-5j88.json index f5a4d526a91..e0541e4df33 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhpf-56xh-5j88/GHSA-qhpf-56xh-5j88.json +++ b/advisories/unreviewed/2022/05/GHSA-qhpf-56xh-5j88/GHSA-qhpf-56xh-5j88.json @@ -7,12 +7,8 @@ "CVE-2010-0137" ], "details": "Unspecified vulnerability in the sshd_child_handler process in the SSH server in Cisco IOS XR 3.4.1 through 3.7.0 allows remote attackers to cause a denial of service (process crash and memory consumption) via a crafted SSH2 packet, aka Bug ID CSCsu10574.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qhxh-892c-372c/GHSA-qhxh-892c-372c.json b/advisories/unreviewed/2022/05/GHSA-qhxh-892c-372c/GHSA-qhxh-892c-372c.json index f6fe5e206e1..9748565d5a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhxh-892c-372c/GHSA-qhxh-892c-372c.json +++ b/advisories/unreviewed/2022/05/GHSA-qhxh-892c-372c/GHSA-qhxh-892c-372c.json @@ -7,12 +7,8 @@ "CVE-2010-0772" ], "details": "Unspecified vulnerability in the channel process in IBM WebSphere MQ 7.0 before 7.0.1.2 allows remote authenticated users to cause a denial of service (daemon crash) via \"incorrect channel control data.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qj7f-5543-55f6/GHSA-qj7f-5543-55f6.json b/advisories/unreviewed/2022/05/GHSA-qj7f-5543-55f6/GHSA-qj7f-5543-55f6.json index 2b87a5bca7a..e382332580c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj7f-5543-55f6/GHSA-qj7f-5543-55f6.json +++ b/advisories/unreviewed/2022/05/GHSA-qj7f-5543-55f6/GHSA-qj7f-5543-55f6.json @@ -7,12 +7,8 @@ "CVE-2010-0707" ], "details": "Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote attackers to hijack the authentication of an administrator for requests that create new administrative users. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjm2-h4v8-qrj8/GHSA-qjm2-h4v8-qrj8.json b/advisories/unreviewed/2022/05/GHSA-qjm2-h4v8-qrj8/GHSA-qjm2-h4v8-qrj8.json index 5bad33394e9..74539f4ad90 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjm2-h4v8-qrj8/GHSA-qjm2-h4v8-qrj8.json +++ b/advisories/unreviewed/2022/05/GHSA-qjm2-h4v8-qrj8/GHSA-qjm2-h4v8-qrj8.json @@ -7,12 +7,8 @@ "CVE-2010-0382" ], "details": "ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta handles out-of-bailiwick data accompanying a secure response without re-fetching from the original source, which allows remote attackers to have an unspecified impact via a crafted response, aka Bug 20819. NOTE: this vulnerability exists because of a regression during the fix for CVE-2009-4022.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qjqp-hxrh-q5xg/GHSA-qjqp-hxrh-q5xg.json b/advisories/unreviewed/2022/05/GHSA-qjqp-hxrh-q5xg/GHSA-qjqp-hxrh-q5xg.json index d02f0f8161c..5e1a21c1a14 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjqp-hxrh-q5xg/GHSA-qjqp-hxrh-q5xg.json +++ b/advisories/unreviewed/2022/05/GHSA-qjqp-hxrh-q5xg/GHSA-qjqp-hxrh-q5xg.json @@ -7,12 +7,8 @@ "CVE-2010-0857" ], "details": "Unspecified vulnerability in the Oracle Workflow Cartridge component in Oracle E-Business Suite 11.5.10.2 allows remote authenticated users to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qjvg-h5fp-2m6w/GHSA-qjvg-h5fp-2m6w.json b/advisories/unreviewed/2022/05/GHSA-qjvg-h5fp-2m6w/GHSA-qjvg-h5fp-2m6w.json index 605cccb408d..fe3c2b4d68f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjvg-h5fp-2m6w/GHSA-qjvg-h5fp-2m6w.json +++ b/advisories/unreviewed/2022/05/GHSA-qjvg-h5fp-2m6w/GHSA-qjvg-h5fp-2m6w.json @@ -7,12 +7,8 @@ "CVE-2010-0818" ], "details": "The MPEG-4 codec in the Windows Media codecs in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2 does not properly handle crafted media content with MPEG-4 video encoding, which allows remote attackers to execute arbitrary code via a file in an unspecified \"supported format,\" aka \"MPEG-4 Codec Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjvj-64rf-p4qg/GHSA-qjvj-64rf-p4qg.json b/advisories/unreviewed/2022/05/GHSA-qjvj-64rf-p4qg/GHSA-qjvj-64rf-p4qg.json index 05477abe91b..d9e893e5574 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjvj-64rf-p4qg/GHSA-qjvj-64rf-p4qg.json +++ b/advisories/unreviewed/2022/05/GHSA-qjvj-64rf-p4qg/GHSA-qjvj-64rf-p4qg.json @@ -7,12 +7,8 @@ "CVE-2010-0205" ], "details": "The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which allows remote attackers to cause a denial of service (memory and CPU consumption, and application hang) via a crafted PNG file, as demonstrated by use of the deflate compression method on data composed of many occurrences of the same character, related to a \"decompression bomb\" attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qm9f-p7c7-h3m4/GHSA-qm9f-p7c7-h3m4.json b/advisories/unreviewed/2022/05/GHSA-qm9f-p7c7-h3m4/GHSA-qm9f-p7c7-h3m4.json index c402642427e..8c565674633 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm9f-p7c7-h3m4/GHSA-qm9f-p7c7-h3m4.json +++ b/advisories/unreviewed/2022/05/GHSA-qm9f-p7c7-h3m4/GHSA-qm9f-p7c7-h3m4.json @@ -7,12 +7,8 @@ "CVE-2010-0742" ], "details": "The Cryptographic Message Syntax (CMS) implementation in crypto/cms/cms_asn1.c in OpenSSL before 0.9.8o and 1.x before 1.0.0a does not properly handle structures that contain OriginatorInfo, which allows context-dependent attackers to modify invalid memory locations or conduct double-free attacks, and possibly execute arbitrary code, via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmjv-2w2w-gcpf/GHSA-qmjv-2w2w-gcpf.json b/advisories/unreviewed/2022/05/GHSA-qmjv-2w2w-gcpf/GHSA-qmjv-2w2w-gcpf.json index 4a81f897f10..f742cf67ba2 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmjv-2w2w-gcpf/GHSA-qmjv-2w2w-gcpf.json +++ b/advisories/unreviewed/2022/05/GHSA-qmjv-2w2w-gcpf/GHSA-qmjv-2w2w-gcpf.json @@ -7,12 +7,8 @@ "CVE-2010-0597" ], "details": "Unspecified vulnerability in Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 allows remote authenticated users to read or modify the device configuration, and gain privileges or cause a denial of service (device reload), via a (1) XML RPC or (2) XML RPC over HTTPS request, aka Bug ID CSCtb83618.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qp7p-gj3v-w2r8/GHSA-qp7p-gj3v-w2r8.json b/advisories/unreviewed/2022/05/GHSA-qp7p-gj3v-w2r8/GHSA-qp7p-gj3v-w2r8.json index 7edae5a07ff..e02ad9470e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp7p-gj3v-w2r8/GHSA-qp7p-gj3v-w2r8.json +++ b/advisories/unreviewed/2022/05/GHSA-qp7p-gj3v-w2r8/GHSA-qp7p-gj3v-w2r8.json @@ -7,12 +7,8 @@ "CVE-2010-0045" ], "details": "Apple Safari before 4.0.5 on Windows does not properly validate external URL schemes, which allows remote attackers to open local files and execute arbitrary code via a crafted HTML document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qp9c-3hc3-5g3f/GHSA-qp9c-3hc3-5g3f.json b/advisories/unreviewed/2022/05/GHSA-qp9c-3hc3-5g3f/GHSA-qp9c-3hc3-5g3f.json index eebde60351f..45b97c19985 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp9c-3hc3-5g3f/GHSA-qp9c-3hc3-5g3f.json +++ b/advisories/unreviewed/2022/05/GHSA-qp9c-3hc3-5g3f/GHSA-qp9c-3hc3-5g3f.json @@ -7,12 +7,8 @@ "CVE-2010-0720" ], "details": "SQL injection vulnerability in news.php in Erotik Auktionshaus allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qp9v-cq87-3m4w/GHSA-qp9v-cq87-3m4w.json b/advisories/unreviewed/2022/05/GHSA-qp9v-cq87-3m4w/GHSA-qp9v-cq87-3m4w.json index 61aa9c444a2..9956b6d23ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp9v-cq87-3m4w/GHSA-qp9v-cq87-3m4w.json +++ b/advisories/unreviewed/2022/05/GHSA-qp9v-cq87-3m4w/GHSA-qp9v-cq87-3m4w.json @@ -7,12 +7,8 @@ "CVE-2010-0872" ], "details": "Unspecified vulnerability in the Oracle Internet Directory component in Oracle Fusion Middleware 10.1.2.3 and 10.1.4.3 allows remote attackers to affect availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qpgh-7c9w-g22c/GHSA-qpgh-7c9w-g22c.json b/advisories/unreviewed/2022/05/GHSA-qpgh-7c9w-g22c/GHSA-qpgh-7c9w-g22c.json index f83b17a50ab..a71013441ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpgh-7c9w-g22c/GHSA-qpgh-7c9w-g22c.json +++ b/advisories/unreviewed/2022/05/GHSA-qpgh-7c9w-g22c/GHSA-qpgh-7c9w-g22c.json @@ -7,12 +7,8 @@ "CVE-2010-0090" ], "details": "Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18 allows remote attackers to affect integrity and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -112,9 +108,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qpr7-hfx5-hx7x/GHSA-qpr7-hfx5-hx7x.json b/advisories/unreviewed/2022/05/GHSA-qpr7-hfx5-hx7x/GHSA-qpr7-hfx5-hx7x.json index a4f0fa86679..a5bca4516bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpr7-hfx5-hx7x/GHSA-qpr7-hfx5-hx7x.json +++ b/advisories/unreviewed/2022/05/GHSA-qpr7-hfx5-hx7x/GHSA-qpr7-hfx5-hx7x.json @@ -7,12 +7,8 @@ "CVE-2010-0605" ], "details": "SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with \"Staff\" permissions, to execute arbitrary SQL commands via the input parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpvq-h769-rrw8/GHSA-qpvq-h769-rrw8.json b/advisories/unreviewed/2022/05/GHSA-qpvq-h769-rrw8/GHSA-qpvq-h769-rrw8.json index d51f66be43c..28c9d89a825 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpvq-h769-rrw8/GHSA-qpvq-h769-rrw8.json +++ b/advisories/unreviewed/2022/05/GHSA-qpvq-h769-rrw8/GHSA-qpvq-h769-rrw8.json @@ -7,12 +7,8 @@ "CVE-2010-0040" ], "details": "Integer overflow in ColorSync in Apple Safari before 4.0.5 on Windows, and iTunes before 9.1, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an image with a crafted color profile that triggers a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qpwq-5q26-wp3v/GHSA-qpwq-5q26-wp3v.json b/advisories/unreviewed/2022/05/GHSA-qpwq-5q26-wp3v/GHSA-qpwq-5q26-wp3v.json index 24488151d64..02194c58341 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpwq-5q26-wp3v/GHSA-qpwq-5q26-wp3v.json +++ b/advisories/unreviewed/2022/05/GHSA-qpwq-5q26-wp3v/GHSA-qpwq-5q26-wp3v.json @@ -7,12 +7,8 @@ "CVE-2010-0538" ], "details": "Apple Java for Mac OS X 10.5 before Update 7 and Java for Mac OS X 10.6 before Update 2 do not properly handle mediaLibImage objects, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds memory access and application crash) via a crafted applet, related to the com.sun.medialib.mlib package.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq53-pmwh-gwr8/GHSA-qq53-pmwh-gwr8.json b/advisories/unreviewed/2022/05/GHSA-qq53-pmwh-gwr8/GHSA-qq53-pmwh-gwr8.json index c2d23c91a0a..8c4112786e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq53-pmwh-gwr8/GHSA-qq53-pmwh-gwr8.json +++ b/advisories/unreviewed/2022/05/GHSA-qq53-pmwh-gwr8/GHSA-qq53-pmwh-gwr8.json @@ -7,12 +7,8 @@ "CVE-2010-0573" ], "details": "Unspecified vulnerability on the Cisco Digital Media Player before 5.2 allows remote attackers to hijack the source of (1) video or (2) data for a display via unknown vectors, related to a \"content injection\" issue, aka Bug ID CSCtc46024.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqh6-qfcc-jm42/GHSA-qqh6-qfcc-jm42.json b/advisories/unreviewed/2022/05/GHSA-qqh6-qfcc-jm42/GHSA-qqh6-qfcc-jm42.json index 6eaf3e38cd0..9d055b40963 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqh6-qfcc-jm42/GHSA-qqh6-qfcc-jm42.json +++ b/advisories/unreviewed/2022/05/GHSA-qqh6-qfcc-jm42/GHSA-qqh6-qfcc-jm42.json @@ -7,12 +7,8 @@ "CVE-2010-0528" ], "details": "Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted color tables in a movie file, related to malformed MediaVideo data, a sample description atom (STSD), and a crafted length value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qr7w-wgw7-hp4g/GHSA-qr7w-wgw7-hp4g.json b/advisories/unreviewed/2022/05/GHSA-qr7w-wgw7-hp4g/GHSA-qr7w-wgw7-hp4g.json index 88b8dc306ed..8790f29d847 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr7w-wgw7-hp4g/GHSA-qr7w-wgw7-hp4g.json +++ b/advisories/unreviewed/2022/05/GHSA-qr7w-wgw7-hp4g/GHSA-qr7w-wgw7-hp4g.json @@ -7,12 +7,8 @@ "CVE-2010-0138" ], "details": "Buffer overflow in Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 and earlier on Windows, as distributed in CiscoWorks LAN Management Solution (LMS), allows remote attackers to execute arbitrary code via a malformed getProcessName CORBA General Inter-ORB Protocol (GIOP) request, related to a \"third-party component,\" aka Bug ID CSCsv62350.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qv3f-r72j-7p98/GHSA-qv3f-r72j-7p98.json b/advisories/unreviewed/2022/05/GHSA-qv3f-r72j-7p98/GHSA-qv3f-r72j-7p98.json index 410bdc4c0e3..e3c45bad58f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv3f-r72j-7p98/GHSA-qv3f-r72j-7p98.json +++ b/advisories/unreviewed/2022/05/GHSA-qv3f-r72j-7p98/GHSA-qv3f-r72j-7p98.json @@ -7,12 +7,8 @@ "CVE-2009-5142" ], "details": "Cross-site scripting (XSS) vulnerability in timthumb.php in TimThumb 1.09 and earlier, as used in Mimbo Pro 2.3.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the src parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qv9g-qcj8-8wvc/GHSA-qv9g-qcj8-8wvc.json b/advisories/unreviewed/2022/05/GHSA-qv9g-qcj8-8wvc/GHSA-qv9g-qcj8-8wvc.json index 556292befff..943dc945780 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv9g-qcj8-8wvc/GHSA-qv9g-qcj8-8wvc.json +++ b/advisories/unreviewed/2022/05/GHSA-qv9g-qcj8-8wvc/GHSA-qv9g-qcj8-8wvc.json @@ -7,12 +7,8 @@ "CVE-2010-0506" ], "details": "Buffer overflow in Image RAW in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted NEF image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qvjj-p3vv-998f/GHSA-qvjj-p3vv-998f.json b/advisories/unreviewed/2022/05/GHSA-qvjj-p3vv-998f/GHSA-qvjj-p3vv-998f.json index 4285c57a411..a1130eee5fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvjj-p3vv-998f/GHSA-qvjj-p3vv-998f.json +++ b/advisories/unreviewed/2022/05/GHSA-qvjj-p3vv-998f/GHSA-qvjj-p3vv-998f.json @@ -7,12 +7,8 @@ "CVE-2010-0762" ], "details": "SQL injection vulnerability in index.php in CommodityRentals CD Rental Software allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a catalog action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwf4-gh23-f5jj/GHSA-qwf4-gh23-f5jj.json b/advisories/unreviewed/2022/05/GHSA-qwf4-gh23-f5jj/GHSA-qwf4-gh23-f5jj.json index c500bfd8d8b..643281097b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwf4-gh23-f5jj/GHSA-qwf4-gh23-f5jj.json +++ b/advisories/unreviewed/2022/05/GHSA-qwf4-gh23-f5jj/GHSA-qwf4-gh23-f5jj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qx3x-f526-c288/GHSA-qx3x-f526-c288.json b/advisories/unreviewed/2022/05/GHSA-qx3x-f526-c288/GHSA-qx3x-f526-c288.json index 65f2dd47329..67f78b8ff1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx3x-f526-c288/GHSA-qx3x-f526-c288.json +++ b/advisories/unreviewed/2022/05/GHSA-qx3x-f526-c288/GHSA-qx3x-f526-c288.json @@ -7,12 +7,8 @@ "CVE-2010-0796" ], "details": "SQL injection vulnerability in the JE Quiz (com_jequizmanagement) component 1.b01 for Joomla! allows remote attackers to execute arbitrary SQL commands via the eid parameter in a question action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qx7v-7w2j-x42w/GHSA-qx7v-7w2j-x42w.json b/advisories/unreviewed/2022/05/GHSA-qx7v-7w2j-x42w/GHSA-qx7v-7w2j-x42w.json index 454c56c2de4..498c557a96e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx7v-7w2j-x42w/GHSA-qx7v-7w2j-x42w.json +++ b/advisories/unreviewed/2022/05/GHSA-qx7v-7w2j-x42w/GHSA-qx7v-7w2j-x42w.json @@ -7,12 +7,8 @@ "CVE-2009-5136" ], "details": "The policy definition evaluator in Condor before 7.4.2 does not properly handle attributes in a WANT_SUSPEND policy that evaluate to an UNDEFINED state, which allows remote authenticated users to cause a denial of service (condor_startd exit) via a crafted job.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r223-9cmx-jch2/GHSA-r223-9cmx-jch2.json b/advisories/unreviewed/2022/05/GHSA-r223-9cmx-jch2/GHSA-r223-9cmx-jch2.json index 1efffeffb4b..4e2c3b3d211 100644 --- a/advisories/unreviewed/2022/05/GHSA-r223-9cmx-jch2/GHSA-r223-9cmx-jch2.json +++ b/advisories/unreviewed/2022/05/GHSA-r223-9cmx-jch2/GHSA-r223-9cmx-jch2.json @@ -7,12 +7,8 @@ "CVE-2010-0227" ], "details": "Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r259-hgff-26h8/GHSA-r259-hgff-26h8.json b/advisories/unreviewed/2022/05/GHSA-r259-hgff-26h8/GHSA-r259-hgff-26h8.json index f28729028f0..6148320850c 100644 --- a/advisories/unreviewed/2022/05/GHSA-r259-hgff-26h8/GHSA-r259-hgff-26h8.json +++ b/advisories/unreviewed/2022/05/GHSA-r259-hgff-26h8/GHSA-r259-hgff-26h8.json @@ -7,12 +7,8 @@ "CVE-2010-0781" ], "details": "Unspecified vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.33 allows remote authenticated users to cause a denial of service (CPU consumption) via a crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r26w-q32j-r7gv/GHSA-r26w-q32j-r7gv.json b/advisories/unreviewed/2022/05/GHSA-r26w-q32j-r7gv/GHSA-r26w-q32j-r7gv.json index 0bd90497c5e..667b46607a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-r26w-q32j-r7gv/GHSA-r26w-q32j-r7gv.json +++ b/advisories/unreviewed/2022/05/GHSA-r26w-q32j-r7gv/GHSA-r26w-q32j-r7gv.json @@ -7,12 +7,8 @@ "CVE-2010-0852" ], "details": "Unspecified vulnerability in the XML DB component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r29f-frxq-qmmp/GHSA-r29f-frxq-qmmp.json b/advisories/unreviewed/2022/05/GHSA-r29f-frxq-qmmp/GHSA-r29f-frxq-qmmp.json index e9b9adc1877..756d02e6c05 100644 --- a/advisories/unreviewed/2022/05/GHSA-r29f-frxq-qmmp/GHSA-r29f-frxq-qmmp.json +++ b/advisories/unreviewed/2022/05/GHSA-r29f-frxq-qmmp/GHSA-r29f-frxq-qmmp.json @@ -7,12 +7,8 @@ "CVE-2010-0569" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.2), 8.1 before 8.1(2.37), and 8.2 before 8.2(1.16); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCtc96018.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2rp-7qxc-5hp6/GHSA-r2rp-7qxc-5hp6.json b/advisories/unreviewed/2022/05/GHSA-r2rp-7qxc-5hp6/GHSA-r2rp-7qxc-5hp6.json index ee005d262c0..9de374e26c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2rp-7qxc-5hp6/GHSA-r2rp-7qxc-5hp6.json +++ b/advisories/unreviewed/2022/05/GHSA-r2rp-7qxc-5hp6/GHSA-r2rp-7qxc-5hp6.json @@ -7,12 +7,8 @@ "CVE-2010-0344" ], "details": "SQL injection vulnerability in the zak_store_management extension 1.0.0 and earlier TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r2x3-54v8-fgvm/GHSA-r2x3-54v8-fgvm.json b/advisories/unreviewed/2022/05/GHSA-r2x3-54v8-fgvm/GHSA-r2x3-54v8-fgvm.json index 96b400e872f..395a02acbf4 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2x3-54v8-fgvm/GHSA-r2x3-54v8-fgvm.json +++ b/advisories/unreviewed/2022/05/GHSA-r2x3-54v8-fgvm/GHSA-r2x3-54v8-fgvm.json @@ -7,12 +7,8 @@ "CVE-2010-0262" ], "details": "Microsoft Office Excel 2007 SP1 and SP2 and Office 2004 for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet that triggers access of an uninitialized stack variable, aka \"Microsoft Office Excel FNGROUPNAME Record Uninitialized Memory Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3cr-84p4-932f/GHSA-r3cr-84p4-932f.json b/advisories/unreviewed/2022/05/GHSA-r3cr-84p4-932f/GHSA-r3cr-84p4-932f.json index 9d5b4552b4a..867fee95cad 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3cr-84p4-932f/GHSA-r3cr-84p4-932f.json +++ b/advisories/unreviewed/2022/05/GHSA-r3cr-84p4-932f/GHSA-r3cr-84p4-932f.json @@ -7,12 +7,8 @@ "CVE-2010-0101" ], "details": "The embedded HTTP server in multiple Lexmark laser and inkjet printers and MarkNet devices, including X94x, W840, T656, N4000, E462, C935dn, 25xxN, and other models, allows remote attackers to cause a denial of service (operating system halt) via a malformed HTTP Authorization header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3hf-fq8h-jqg4/GHSA-r3hf-fq8h-jqg4.json b/advisories/unreviewed/2022/05/GHSA-r3hf-fq8h-jqg4/GHSA-r3hf-fq8h-jqg4.json index 829f0a0424e..9f119d4c28e 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3hf-fq8h-jqg4/GHSA-r3hf-fq8h-jqg4.json +++ b/advisories/unreviewed/2022/05/GHSA-r3hf-fq8h-jqg4/GHSA-r3hf-fq8h-jqg4.json @@ -7,12 +7,8 @@ "CVE-2010-0395" ], "details": "OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro directory structure is previewed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -120,9 +116,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3rc-v556-7p45/GHSA-r3rc-v556-7p45.json b/advisories/unreviewed/2022/05/GHSA-r3rc-v556-7p45/GHSA-r3rc-v556-7p45.json index 00d027e3406..65a26797e27 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3rc-v556-7p45/GHSA-r3rc-v556-7p45.json +++ b/advisories/unreviewed/2022/05/GHSA-r3rc-v556-7p45/GHSA-r3rc-v556-7p45.json @@ -7,12 +7,8 @@ "CVE-2010-0420" ], "details": "libpurple in Finch in Pidgin before 2.6.6, when an XMPP multi-user chat (MUC) room is used, does not properly parse nicknames containing
sequences, which allows remote attackers to cause a denial of service (application crash) via a crafted nickname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r43x-8cfv-3xjp/GHSA-r43x-8cfv-3xjp.json b/advisories/unreviewed/2022/05/GHSA-r43x-8cfv-3xjp/GHSA-r43x-8cfv-3xjp.json index 42c39ff948d..c8e7f6bd780 100644 --- a/advisories/unreviewed/2022/05/GHSA-r43x-8cfv-3xjp/GHSA-r43x-8cfv-3xjp.json +++ b/advisories/unreviewed/2022/05/GHSA-r43x-8cfv-3xjp/GHSA-r43x-8cfv-3xjp.json @@ -7,12 +7,8 @@ "CVE-2010-0221" ], "details": "Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r443-h767-83gp/GHSA-r443-h767-83gp.json b/advisories/unreviewed/2022/05/GHSA-r443-h767-83gp/GHSA-r443-h767-83gp.json index 30810df3eef..2a0f540254e 100644 --- a/advisories/unreviewed/2022/05/GHSA-r443-h767-83gp/GHSA-r443-h767-83gp.json +++ b/advisories/unreviewed/2022/05/GHSA-r443-h767-83gp/GHSA-r443-h767-83gp.json @@ -7,12 +7,8 @@ "CVE-2010-0103" ], "details": "UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Arucer.dll file in the %WINDIR%\\system32 directory, which allows remote attackers to download arbitrary programs onto a Windows PC, and execute these programs, via a request to TCP port 7777.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r464-9g6c-3r67/GHSA-r464-9g6c-3r67.json b/advisories/unreviewed/2022/05/GHSA-r464-9g6c-3r67/GHSA-r464-9g6c-3r67.json index d058425bcf6..d1fc71a5ae3 100644 --- a/advisories/unreviewed/2022/05/GHSA-r464-9g6c-3r67/GHSA-r464-9g6c-3r67.json +++ b/advisories/unreviewed/2022/05/GHSA-r464-9g6c-3r67/GHSA-r464-9g6c-3r67.json @@ -7,12 +7,8 @@ "CVE-2010-0372" ], "details": "SQL injection vulnerability in the Articlemanager (com_articlemanager) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the artid parameter in a display action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r55q-8w8x-hx84/GHSA-r55q-8w8x-hx84.json b/advisories/unreviewed/2022/05/GHSA-r55q-8w8x-hx84/GHSA-r55q-8w8x-hx84.json index a73347db103..0beb305e0ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-r55q-8w8x-hx84/GHSA-r55q-8w8x-hx84.json +++ b/advisories/unreviewed/2022/05/GHSA-r55q-8w8x-hx84/GHSA-r55q-8w8x-hx84.json @@ -7,12 +7,8 @@ "CVE-2010-0670" ], "details": "Unspecified vulnerability in the IP-Tech JQuarks (com_jquarks) Component before 0.2.4 for Joomla! allows attackers to obtain the installation path for Joomla! via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r59v-2j67-g78p/GHSA-r59v-2j67-g78p.json b/advisories/unreviewed/2022/05/GHSA-r59v-2j67-g78p/GHSA-r59v-2j67-g78p.json index f0e91d08188..9a8db0f39cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-r59v-2j67-g78p/GHSA-r59v-2j67-g78p.json +++ b/advisories/unreviewed/2022/05/GHSA-r59v-2j67-g78p/GHSA-r59v-2j67-g78p.json @@ -7,12 +7,8 @@ "CVE-2010-0271" ], "details": "hald in Sun OpenSolaris snv_51 through snv_130 does not have the proc_audit privilege during unspecified attempts to write to the auditing log, which makes it easier for physically proximate attackers to avoid detection of changes to the set of connected hardware devices supporting the Hardware Abstraction Layer (HAL) specification.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5w6-x2jg-4mj3/GHSA-r5w6-x2jg-4mj3.json b/advisories/unreviewed/2022/05/GHSA-r5w6-x2jg-4mj3/GHSA-r5w6-x2jg-4mj3.json index 87c6803a3e9..cc4730337e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5w6-x2jg-4mj3/GHSA-r5w6-x2jg-4mj3.json +++ b/advisories/unreviewed/2022/05/GHSA-r5w6-x2jg-4mj3/GHSA-r5w6-x2jg-4mj3.json @@ -7,12 +7,8 @@ "CVE-2010-0457" ], "details": "SQL injection vulnerability in home.php in magic-portal 2.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r6mg-56rx-qjx4/GHSA-r6mg-56rx-qjx4.json b/advisories/unreviewed/2022/05/GHSA-r6mg-56rx-qjx4/GHSA-r6mg-56rx-qjx4.json index c9c94d2ab3e..e40974a517a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6mg-56rx-qjx4/GHSA-r6mg-56rx-qjx4.json +++ b/advisories/unreviewed/2022/05/GHSA-r6mg-56rx-qjx4/GHSA-r6mg-56rx-qjx4.json @@ -7,12 +7,8 @@ "CVE-2010-0780" ], "details": "IBM WebSphere MQ 7.x before 7.0.1.4 allows remote attackers to cause a denial of service (disk consumption) via multiple connection attempts to a stopped queue manager.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r77g-m785-86fv/GHSA-r77g-m785-86fv.json b/advisories/unreviewed/2022/05/GHSA-r77g-m785-86fv/GHSA-r77g-m785-86fv.json index 23ef0ad5f21..5903e062ff2 100644 --- a/advisories/unreviewed/2022/05/GHSA-r77g-m785-86fv/GHSA-r77g-m785-86fv.json +++ b/advisories/unreviewed/2022/05/GHSA-r77g-m785-86fv/GHSA-r77g-m785-86fv.json @@ -7,12 +7,8 @@ "CVE-2010-0704" ], "details": "Cross-site scripting (XSS) vulnerability in the Portlet Palette in IBM WebSphere Portal 6.0.1.5 wp6015_008_01 allows remote attackers to inject arbitrary web script or HTML via the search field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r86q-856p-4q9q/GHSA-r86q-856p-4q9q.json b/advisories/unreviewed/2022/05/GHSA-r86q-856p-4q9q/GHSA-r86q-856p-4q9q.json index 8f8303a2075..bdf8ebf6cfe 100644 --- a/advisories/unreviewed/2022/05/GHSA-r86q-856p-4q9q/GHSA-r86q-856p-4q9q.json +++ b/advisories/unreviewed/2022/05/GHSA-r86q-856p-4q9q/GHSA-r86q-856p-4q9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8fv-8649-pcmh/GHSA-r8fv-8649-pcmh.json b/advisories/unreviewed/2022/05/GHSA-r8fv-8649-pcmh/GHSA-r8fv-8649-pcmh.json index ccfcb06ef5d..74a176bea5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8fv-8649-pcmh/GHSA-r8fv-8649-pcmh.json +++ b/advisories/unreviewed/2022/05/GHSA-r8fv-8649-pcmh/GHSA-r8fv-8649-pcmh.json @@ -7,12 +7,8 @@ "CVE-2010-0571" ], "details": "Unspecified vulnerability in Cisco Digital Media Manager (DMM) 5.0.x and 5.1.x allows remote authenticated users to gain privileges via unknown vectors, and consequently execute arbitrary code via a crafted web application, aka Bug ID CSCtc46008.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8rw-mg4x-cj8c/GHSA-r8rw-mg4x-cj8c.json b/advisories/unreviewed/2022/05/GHSA-r8rw-mg4x-cj8c/GHSA-r8rw-mg4x-cj8c.json index a027011550b..9dfe1d1e64b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8rw-mg4x-cj8c/GHSA-r8rw-mg4x-cj8c.json +++ b/advisories/unreviewed/2022/05/GHSA-r8rw-mg4x-cj8c/GHSA-r8rw-mg4x-cj8c.json @@ -7,12 +7,8 @@ "CVE-2010-0561" ], "details": "Integer signedness error in NetBSD 4.0, 5.0, and NetBSD-current before 2010-01-21 allows local users to cause a denial of service (kernel panic) via a negative mixer index number being passed to (1) the azalia_query_devinfo function in the azalia audio driver (src/sys/dev/pci/azalia.c) or (2) the hdaudio_afg_query_devinfo function in the hdaudio audio driver (src/sys/dev/pci/hdaudio/hdaudio_afg.c).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8vj-5v6h-v5v5/GHSA-r8vj-5v6h-v5v5.json b/advisories/unreviewed/2022/05/GHSA-r8vj-5v6h-v5v5/GHSA-r8vj-5v6h-v5v5.json index ba25947dea3..bcc4092f00d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8vj-5v6h-v5v5/GHSA-r8vj-5v6h-v5v5.json +++ b/advisories/unreviewed/2022/05/GHSA-r8vj-5v6h-v5v5/GHSA-r8vj-5v6h-v5v5.json @@ -7,12 +7,8 @@ "CVE-2010-0869" ], "details": "Unspecified vulnerability in the Oracle Transportation Management component in Oracle E-Business Suite 5.5.05.07, 5.5.06.00, and 6.0.03 allows remote attackers to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r94r-923f-r5j2/GHSA-r94r-923f-r5j2.json b/advisories/unreviewed/2022/05/GHSA-r94r-923f-r5j2/GHSA-r94r-923f-r5j2.json index ac2941f060d..ac322355339 100644 --- a/advisories/unreviewed/2022/05/GHSA-r94r-923f-r5j2/GHSA-r94r-923f-r5j2.json +++ b/advisories/unreviewed/2022/05/GHSA-r94r-923f-r5j2/GHSA-r94r-923f-r5j2.json @@ -7,12 +7,8 @@ "CVE-2010-0871" ], "details": "Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9jq-chpq-69vv/GHSA-r9jq-chpq-69vv.json b/advisories/unreviewed/2022/05/GHSA-r9jq-chpq-69vv/GHSA-r9jq-chpq-69vv.json index a7ae38893ca..d6f3f90c2b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9jq-chpq-69vv/GHSA-r9jq-chpq-69vv.json +++ b/advisories/unreviewed/2022/05/GHSA-r9jq-chpq-69vv/GHSA-r9jq-chpq-69vv.json @@ -7,12 +7,8 @@ "CVE-2010-0107" ], "details": "Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential 2006 through 2008; and Symantec Client Security 3.0.x before 3.1 MR9, and 3.1.x before MR9; allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors. NOTE: this is only a vulnerability if the attacker can \"masquerade as an authorized site.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9m7-q848-wx2q/GHSA-r9m7-q848-wx2q.json b/advisories/unreviewed/2022/05/GHSA-r9m7-q848-wx2q/GHSA-r9m7-q848-wx2q.json index 3abf25c3d30..d5e55d0d9e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9m7-q848-wx2q/GHSA-r9m7-q848-wx2q.json +++ b/advisories/unreviewed/2022/05/GHSA-r9m7-q848-wx2q/GHSA-r9m7-q848-wx2q.json @@ -7,12 +7,8 @@ "CVE-2009-5125" ], "details": "Comodo Internet Security before 3.9.95478.509 allows remote attackers to bypass malware detection in an RAR archive via an unspecified manipulation of the archive file format.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9r4-h3rx-qrv6/GHSA-r9r4-h3rx-qrv6.json b/advisories/unreviewed/2022/05/GHSA-r9r4-h3rx-qrv6/GHSA-r9r4-h3rx-qrv6.json index 9c72dd9ce50..bea9b353539 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9r4-h3rx-qrv6/GHSA-r9r4-h3rx-qrv6.json +++ b/advisories/unreviewed/2022/05/GHSA-r9r4-h3rx-qrv6/GHSA-r9r4-h3rx-qrv6.json @@ -7,12 +7,8 @@ "CVE-2010-0384" ], "details": "Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent logging of the client IP address upon detection of erroneous client behavior, which might make it easier for local users to discover the identities of clients in opportunistic circumstances by reading log files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc82-2cq5-6rjx/GHSA-rc82-2cq5-6rjx.json b/advisories/unreviewed/2022/05/GHSA-rc82-2cq5-6rjx/GHSA-rc82-2cq5-6rjx.json index 6c4a4ea9cf2..8fa88888622 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc82-2cq5-6rjx/GHSA-rc82-2cq5-6rjx.json +++ b/advisories/unreviewed/2022/05/GHSA-rc82-2cq5-6rjx/GHSA-rc82-2cq5-6rjx.json @@ -7,12 +7,8 @@ "CVE-2010-0655" ], "details": "Use-after-free vulnerability in Google Chrome before 4.0.249.78 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving the display of a blocked popup window during navigation to a different web site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rccg-5mcc-m2cf/GHSA-rccg-5mcc-m2cf.json b/advisories/unreviewed/2022/05/GHSA-rccg-5mcc-m2cf/GHSA-rccg-5mcc-m2cf.json index 50613a666c6..9baf5cff9c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-rccg-5mcc-m2cf/GHSA-rccg-5mcc-m2cf.json +++ b/advisories/unreviewed/2022/05/GHSA-rccg-5mcc-m2cf/GHSA-rccg-5mcc-m2cf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcm3-2g9j-cvpp/GHSA-rcm3-2g9j-cvpp.json b/advisories/unreviewed/2022/05/GHSA-rcm3-2g9j-cvpp/GHSA-rcm3-2g9j-cvpp.json index 953de5d364b..fd0ae8be764 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcm3-2g9j-cvpp/GHSA-rcm3-2g9j-cvpp.json +++ b/advisories/unreviewed/2022/05/GHSA-rcm3-2g9j-cvpp/GHSA-rcm3-2g9j-cvpp.json @@ -7,12 +7,8 @@ "CVE-2010-0611" ], "details": "Multiple SQL injection vulnerabilities in adminlogin.php in Baal Systems 3.8 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rf4p-r2hm-hch6/GHSA-rf4p-r2hm-hch6.json b/advisories/unreviewed/2022/05/GHSA-rf4p-r2hm-hch6/GHSA-rf4p-r2hm-hch6.json index 341a08a530a..0e2d92c69a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf4p-r2hm-hch6/GHSA-rf4p-r2hm-hch6.json +++ b/advisories/unreviewed/2022/05/GHSA-rf4p-r2hm-hch6/GHSA-rf4p-r2hm-hch6.json @@ -7,12 +7,8 @@ "CVE-2010-0327" ], "details": "Cross-site scripting (XSS) vulnerability in the KJ: Imagelightbox (kj_imagelightbox2) extension 2.0.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2008-2490.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rfjx-pw2c-9r44/GHSA-rfjx-pw2c-9r44.json b/advisories/unreviewed/2022/05/GHSA-rfjx-pw2c-9r44/GHSA-rfjx-pw2c-9r44.json index 93cee80d839..e96e5df656f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfjx-pw2c-9r44/GHSA-rfjx-pw2c-9r44.json +++ b/advisories/unreviewed/2022/05/GHSA-rfjx-pw2c-9r44/GHSA-rfjx-pw2c-9r44.json @@ -7,12 +7,8 @@ "CVE-2010-0877" ], "details": "Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.26 and 8.50.07 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgcj-4qc4-rj56/GHSA-rgcj-4qc4-rj56.json b/advisories/unreviewed/2022/05/GHSA-rgcj-4qc4-rj56/GHSA-rgcj-4qc4-rj56.json index 7dfbac3ce1b..d3e8588f632 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgcj-4qc4-rj56/GHSA-rgcj-4qc4-rj56.json +++ b/advisories/unreviewed/2022/05/GHSA-rgcj-4qc4-rj56/GHSA-rgcj-4qc4-rj56.json @@ -7,12 +7,8 @@ "CVE-2010-0546" ], "details": "Folder Manager in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows local users to delete arbitrary folders via a symlink attack in conjunction with an unmount operation on a crafted volume, related to the Cleanup At Startup folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rgxv-h9h8-fc97/GHSA-rgxv-h9h8-fc97.json b/advisories/unreviewed/2022/05/GHSA-rgxv-h9h8-fc97/GHSA-rgxv-h9h8-fc97.json index 7741883eb3c..fbc34e27440 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgxv-h9h8-fc97/GHSA-rgxv-h9h8-fc97.json +++ b/advisories/unreviewed/2022/05/GHSA-rgxv-h9h8-fc97/GHSA-rgxv-h9h8-fc97.json @@ -7,12 +7,8 @@ "CVE-2010-0383" ], "details": "Tor before 0.2.1.22, and 0.2.2.x before 0.2.2.7-alpha, uses deprecated identity keys for certain directory authorities, which makes it easier for man-in-the-middle attackers to compromise the anonymity of traffic sources and destinations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rh7w-88h7-qfcv/GHSA-rh7w-88h7-qfcv.json b/advisories/unreviewed/2022/05/GHSA-rh7w-88h7-qfcv/GHSA-rh7w-88h7-qfcv.json index f63cc2f8e4c..f5fd8c6670f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rh7w-88h7-qfcv/GHSA-rh7w-88h7-qfcv.json +++ b/advisories/unreviewed/2022/05/GHSA-rh7w-88h7-qfcv/GHSA-rh7w-88h7-qfcv.json @@ -7,12 +7,8 @@ "CVE-2010-0568" ], "details": "Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.7), 8.1 before 8.1(2.40), and 8.2 before 8.2(2.1); and Cisco PIX 500 Series Security Appliance; allows remote attackers to bypass NTLMv1 authentication via a crafted username, aka Bug ID CSCte21953.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rhmm-97pw-h98x/GHSA-rhmm-97pw-h98x.json b/advisories/unreviewed/2022/05/GHSA-rhmm-97pw-h98x/GHSA-rhmm-97pw-h98x.json index 5fd60f9db12..80597a547dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhmm-97pw-h98x/GHSA-rhmm-97pw-h98x.json +++ b/advisories/unreviewed/2022/05/GHSA-rhmm-97pw-h98x/GHSA-rhmm-97pw-h98x.json @@ -7,12 +7,8 @@ "CVE-2010-0598" ], "details": "Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt HTTP sessions from operator workstations, which allows remote attackers to discover Administrator credentials by sniffing the network, aka Bug ID CSCtb83631.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rj5f-77wg-8qgv/GHSA-rj5f-77wg-8qgv.json b/advisories/unreviewed/2022/05/GHSA-rj5f-77wg-8qgv/GHSA-rj5f-77wg-8qgv.json index 41728440f0d..4e1fb098a37 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj5f-77wg-8qgv/GHSA-rj5f-77wg-8qgv.json +++ b/advisories/unreviewed/2022/05/GHSA-rj5f-77wg-8qgv/GHSA-rj5f-77wg-8qgv.json @@ -7,12 +7,8 @@ "CVE-2010-0277" ], "details": "slp.c in the MSN protocol plugin in libpurple in Pidgin before 2.6.6, including 2.6.4, and Adium 1.3.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a malformed MSNSLP INVITE request in an SLP message, a different issue than CVE-2010-0013.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -124,9 +120,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rj95-w5x7-gjvc/GHSA-rj95-w5x7-gjvc.json b/advisories/unreviewed/2022/05/GHSA-rj95-w5x7-gjvc/GHSA-rj95-w5x7-gjvc.json index d10f5c183fd..0e9fab1f1e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj95-w5x7-gjvc/GHSA-rj95-w5x7-gjvc.json +++ b/advisories/unreviewed/2022/05/GHSA-rj95-w5x7-gjvc/GHSA-rj95-w5x7-gjvc.json @@ -7,12 +7,8 @@ "CVE-2010-0588" ], "details": "Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x before 6.1(5), 7.x before 7.1(3a)su1, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SCCP (1) RegAvailableLines or (2) FwdStatReq message with an invalid Line number, aka Bug ID CSCtc47823.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjc6-f69q-7393/GHSA-rjc6-f69q-7393.json b/advisories/unreviewed/2022/05/GHSA-rjc6-f69q-7393/GHSA-rjc6-f69q-7393.json index 3af675d30e2..cfbe3bf2ffb 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjc6-f69q-7393/GHSA-rjc6-f69q-7393.json +++ b/advisories/unreviewed/2022/05/GHSA-rjc6-f69q-7393/GHSA-rjc6-f69q-7393.json @@ -7,12 +7,8 @@ "CVE-2010-0390" ], "details": "Unrestricted file upload vulnerability in maxImageUpload/index.php in PHP F1 Max's Image Uploader 1.0, when Apache is not configured to handle the mime-type for files with pjpeg or jpeg extensions, allows remote attackers to execute arbitrary code by uploading a file with a pjpeg or jpeg extension, then accessing it via a direct request to the file in original/. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjcp-7w9x-r3q7/GHSA-rjcp-7w9x-r3q7.json b/advisories/unreviewed/2022/05/GHSA-rjcp-7w9x-r3q7/GHSA-rjcp-7w9x-r3q7.json index 1d94a0ba583..a07c12deba9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjcp-7w9x-r3q7/GHSA-rjcp-7w9x-r3q7.json +++ b/advisories/unreviewed/2022/05/GHSA-rjcp-7w9x-r3q7/GHSA-rjcp-7w9x-r3q7.json @@ -7,12 +7,8 @@ "CVE-2009-5126" ], "details": "The Antivirus component in Comodo Internet Security before 3.8.65951.477 allows remote attackers to cause a denial of service (application crash) via a crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjr8-9crx-pj6h/GHSA-rjr8-9crx-pj6h.json b/advisories/unreviewed/2022/05/GHSA-rjr8-9crx-pj6h/GHSA-rjr8-9crx-pj6h.json index 1d451151d94..2a03281465c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjr8-9crx-pj6h/GHSA-rjr8-9crx-pj6h.json +++ b/advisories/unreviewed/2022/05/GHSA-rjr8-9crx-pj6h/GHSA-rjr8-9crx-pj6h.json @@ -7,12 +7,8 @@ "CVE-2010-0024" ], "details": "The SMTP component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Server 2008 Gold, SP2, and R2, and Exchange Server 2003 SP2, does not properly parse MX records, which allows remote DNS servers to cause a denial of service (service outage) via a crafted response to a DNS MX record query, aka \"SMTP Server MX Record Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rjrf-755g-4mrq/GHSA-rjrf-755g-4mrq.json b/advisories/unreviewed/2022/05/GHSA-rjrf-755g-4mrq/GHSA-rjrf-755g-4mrq.json index f49b34073fe..94fbb7297d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjrf-755g-4mrq/GHSA-rjrf-755g-4mrq.json +++ b/advisories/unreviewed/2022/05/GHSA-rjrf-755g-4mrq/GHSA-rjrf-755g-4mrq.json @@ -7,12 +7,8 @@ "CVE-2010-0826" ], "details": "The Free Software Foundation (FSF) Berkeley DB NSS module (aka libnss-db) 2.2.3pre1 reads the DB_CONFIG file in the current working directory, which allows local users to obtain sensitive information via a symlink attack involving a setgid or setuid application that uses this module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rmqq-qjmx-q7xq/GHSA-rmqq-qjmx-q7xq.json b/advisories/unreviewed/2022/05/GHSA-rmqq-qjmx-q7xq/GHSA-rmqq-qjmx-q7xq.json index 2ddc1cd768f..aedbe18e85d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmqq-qjmx-q7xq/GHSA-rmqq-qjmx-q7xq.json +++ b/advisories/unreviewed/2022/05/GHSA-rmqq-qjmx-q7xq/GHSA-rmqq-qjmx-q7xq.json @@ -7,12 +7,8 @@ "CVE-2010-0859" ], "details": "Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 ATG RUP6 allows remote attackers to affect confidentiality and integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rrfm-4fhv-2623/GHSA-rrfm-4fhv-2623.json b/advisories/unreviewed/2022/05/GHSA-rrfm-4fhv-2623/GHSA-rrfm-4fhv-2623.json index 5654737e58f..6caef8bed57 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrfm-4fhv-2623/GHSA-rrfm-4fhv-2623.json +++ b/advisories/unreviewed/2022/05/GHSA-rrfm-4fhv-2623/GHSA-rrfm-4fhv-2623.json @@ -7,12 +7,8 @@ "CVE-2010-0589" ], "details": "The Web Install ActiveX control (CSDWebInstaller) in Cisco Secure Desktop (CSD) before 3.5.841 does not properly verify the signatures of downloaded programs, which allows remote attackers to force the download and execution of arbitrary files via a crafted web page, aka Bug ID CSCta25876.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv98-p9rj-2p37/GHSA-rv98-p9rj-2p37.json b/advisories/unreviewed/2022/05/GHSA-rv98-p9rj-2p37/GHSA-rv98-p9rj-2p37.json index bb2c365c7fe..0c1e51949fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv98-p9rj-2p37/GHSA-rv98-p9rj-2p37.json +++ b/advisories/unreviewed/2022/05/GHSA-rv98-p9rj-2p37/GHSA-rv98-p9rj-2p37.json @@ -7,12 +7,8 @@ "CVE-2010-0049" ], "details": "Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via HTML elements with right-to-left (RTL) text directionality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rw9r-ggxf-2434/GHSA-rw9r-ggxf-2434.json b/advisories/unreviewed/2022/05/GHSA-rw9r-ggxf-2434/GHSA-rw9r-ggxf-2434.json index ce3a0097d93..4759a860dcc 100644 --- a/advisories/unreviewed/2022/05/GHSA-rw9r-ggxf-2434/GHSA-rw9r-ggxf-2434.json +++ b/advisories/unreviewed/2022/05/GHSA-rw9r-ggxf-2434/GHSA-rw9r-ggxf-2434.json @@ -7,12 +7,8 @@ "CVE-2010-0362" ], "details": "Zeus Web Server before 4.3r5 does not use random transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rx3f-6c7m-5whv/GHSA-rx3f-6c7m-5whv.json b/advisories/unreviewed/2022/05/GHSA-rx3f-6c7m-5whv/GHSA-rx3f-6c7m-5whv.json index 4e354c6012c..893611eefd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx3f-6c7m-5whv/GHSA-rx3f-6c7m-5whv.json +++ b/advisories/unreviewed/2022/05/GHSA-rx3f-6c7m-5whv/GHSA-rx3f-6c7m-5whv.json @@ -7,12 +7,8 @@ "CVE-2010-0549" ], "details": "Unspecified vulnerability in the Network Controller in Xerox WorkCentre 6400 System Software 060.070.109.11407 through 060.070.109.29510, and Net Controller 060.079.11410 through 060.079.29310, allows remote attackers to access \"directory structure\" via a crafted PostScript file, aka \"Unauthorized Directory Structure Access Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxph-v937-qhh8/GHSA-rxph-v937-qhh8.json b/advisories/unreviewed/2022/05/GHSA-rxph-v937-qhh8/GHSA-rxph-v937-qhh8.json index fdf141a43b9..a822bea6354 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxph-v937-qhh8/GHSA-rxph-v937-qhh8.json +++ b/advisories/unreviewed/2022/05/GHSA-rxph-v937-qhh8/GHSA-rxph-v937-qhh8.json @@ -7,12 +7,8 @@ "CVE-2010-0874" ], "details": "Unspecified vulnerability in the Communications - Oracle Communications Unified Inventory Management component in Oracle Industry Product Suite 7.1 allows remote attackers to affect integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxqj-7gj2-prpm/GHSA-rxqj-7gj2-prpm.json b/advisories/unreviewed/2022/05/GHSA-rxqj-7gj2-prpm/GHSA-rxqj-7gj2-prpm.json index 81f70befea9..cfbdae177a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxqj-7gj2-prpm/GHSA-rxqj-7gj2-prpm.json +++ b/advisories/unreviewed/2022/05/GHSA-rxqj-7gj2-prpm/GHSA-rxqj-7gj2-prpm.json @@ -7,12 +7,8 @@ "CVE-2010-0087" ], "details": "Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -128,9 +124,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v258-w2jm-qxhr/GHSA-v258-w2jm-qxhr.json b/advisories/unreviewed/2022/05/GHSA-v258-w2jm-qxhr/GHSA-v258-w2jm-qxhr.json index cc17e3b8980..dbb95aae191 100644 --- a/advisories/unreviewed/2022/05/GHSA-v258-w2jm-qxhr/GHSA-v258-w2jm-qxhr.json +++ b/advisories/unreviewed/2022/05/GHSA-v258-w2jm-qxhr/GHSA-v258-w2jm-qxhr.json @@ -7,12 +7,8 @@ "CVE-2010-0478" ], "details": "Stack-based buffer overflow in nsum.exe in the Windows Media Unicast Service in Media Services for Microsoft Windows 2000 Server SP4 allows remote attackers to execute arbitrary code via crafted packets associated with transport information, aka \"Media Services Stack-based Buffer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v363-hq4v-f5m4/GHSA-v363-hq4v-f5m4.json b/advisories/unreviewed/2022/05/GHSA-v363-hq4v-f5m4/GHSA-v363-hq4v-f5m4.json index 22169ed06ae..0df33fd56c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-v363-hq4v-f5m4/GHSA-v363-hq4v-f5m4.json +++ b/advisories/unreviewed/2022/05/GHSA-v363-hq4v-f5m4/GHSA-v363-hq4v-f5m4.json @@ -7,12 +7,8 @@ "CVE-2010-0765" ], "details": "fipsForum 2.6 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for _database/forumFips.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v387-j7f2-8xf9/GHSA-v387-j7f2-8xf9.json b/advisories/unreviewed/2022/05/GHSA-v387-j7f2-8xf9/GHSA-v387-j7f2-8xf9.json index 8bcb9493d0b..ab7e004d0f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-v387-j7f2-8xf9/GHSA-v387-j7f2-8xf9.json +++ b/advisories/unreviewed/2022/05/GHSA-v387-j7f2-8xf9/GHSA-v387-j7f2-8xf9.json @@ -7,12 +7,8 @@ "CVE-2010-0326" ], "details": "Cross-site scripting (XSS) vulnerability in the Developer log (devlog) extension 2.9.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v38j-x7mr-5hmv/GHSA-v38j-x7mr-5hmv.json b/advisories/unreviewed/2022/05/GHSA-v38j-x7mr-5hmv/GHSA-v38j-x7mr-5hmv.json index 6b1f1c86ac6..68959343546 100644 --- a/advisories/unreviewed/2022/05/GHSA-v38j-x7mr-5hmv/GHSA-v38j-x7mr-5hmv.json +++ b/advisories/unreviewed/2022/05/GHSA-v38j-x7mr-5hmv/GHSA-v38j-x7mr-5hmv.json @@ -7,12 +7,8 @@ "CVE-2010-0270" ], "details": "The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate fields in SMB transaction responses, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and reboot) via a crafted (1) SMBv1 or (2) SMBv2 response, aka \"SMB Client Transaction Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v3j6-5rcm-pcwj/GHSA-v3j6-5rcm-pcwj.json b/advisories/unreviewed/2022/05/GHSA-v3j6-5rcm-pcwj/GHSA-v3j6-5rcm-pcwj.json index 7a56d15694a..907265a01bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3j6-5rcm-pcwj/GHSA-v3j6-5rcm-pcwj.json +++ b/advisories/unreviewed/2022/05/GHSA-v3j6-5rcm-pcwj/GHSA-v3j6-5rcm-pcwj.json @@ -7,12 +7,8 @@ "CVE-2010-0340" ], "details": "SQL injection vulnerability in the MJS Event Pro (mjseventpro) extension 0.2.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v3xg-vw65-m6vm/GHSA-v3xg-vw65-m6vm.json b/advisories/unreviewed/2022/05/GHSA-v3xg-vw65-m6vm/GHSA-v3xg-vw65-m6vm.json index e3a442be2df..93e02b74264 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3xg-vw65-m6vm/GHSA-v3xg-vw65-m6vm.json +++ b/advisories/unreviewed/2022/05/GHSA-v3xg-vw65-m6vm/GHSA-v3xg-vw65-m6vm.json @@ -7,12 +7,8 @@ "CVE-2010-0067" ], "details": "Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4cm-4r8r-3fpq/GHSA-v4cm-4r8r-3fpq.json b/advisories/unreviewed/2022/05/GHSA-v4cm-4r8r-3fpq/GHSA-v4cm-4r8r-3fpq.json index 17e2a7f523a..c9e14611b96 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4cm-4r8r-3fpq/GHSA-v4cm-4r8r-3fpq.json +++ b/advisories/unreviewed/2022/05/GHSA-v4cm-4r8r-3fpq/GHSA-v4cm-4r8r-3fpq.json @@ -7,12 +7,8 @@ "CVE-2010-0766" ], "details": "Integer overflow in the Swap4 function in valet4.dll in Luxology Modo 401 allows user-assisted remote attackers to execute arbitrary code via a .LXO file containing a CHNL subchunk associated with an invalid length.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v5wh-4c86-6pvj/GHSA-v5wh-4c86-6pvj.json b/advisories/unreviewed/2022/05/GHSA-v5wh-4c86-6pvj/GHSA-v5wh-4c86-6pvj.json index c16bae86e21..4a39522065a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5wh-4c86-6pvj/GHSA-v5wh-4c86-6pvj.json +++ b/advisories/unreviewed/2022/05/GHSA-v5wh-4c86-6pvj/GHSA-v5wh-4c86-6pvj.json @@ -7,12 +7,8 @@ "CVE-2010-0322" ], "details": "SQL injection vulnerability in the init function in MK-AnydropdownMenu (mk_anydropdownmenu) extension 0.3.28 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v64f-mchw-j235/GHSA-v64f-mchw-j235.json b/advisories/unreviewed/2022/05/GHSA-v64f-mchw-j235/GHSA-v64f-mchw-j235.json index fe5405e1c4a..e8bcc3b4bc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-v64f-mchw-j235/GHSA-v64f-mchw-j235.json +++ b/advisories/unreviewed/2022/05/GHSA-v64f-mchw-j235/GHSA-v64f-mchw-j235.json @@ -7,12 +7,8 @@ "CVE-2009-5112" ], "details": "wgarcmin.cgi in WebGlimpse 2.18.7 and earlier allows remote attackers to obtain the installation path via a crafted request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v656-qh9j-wmj6/GHSA-v656-qh9j-wmj6.json b/advisories/unreviewed/2022/05/GHSA-v656-qh9j-wmj6/GHSA-v656-qh9j-wmj6.json index 3cdc34b442e..d69707a918c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v656-qh9j-wmj6/GHSA-v656-qh9j-wmj6.json +++ b/advisories/unreviewed/2022/05/GHSA-v656-qh9j-wmj6/GHSA-v656-qh9j-wmj6.json @@ -7,12 +7,8 @@ "CVE-2010-0596" ], "details": "Unspecified vulnerability in Cisco Mediator Framework 2.2 before 2.2.1.dev.1 and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 allows remote authenticated users to read or modify the device configuration, and gain privileges, via a (1) HTTP or (2) HTTPS request, aka Bug ID CSCtb83607.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v6hg-x8c9-r375/GHSA-v6hg-x8c9-r375.json b/advisories/unreviewed/2022/05/GHSA-v6hg-x8c9-r375/GHSA-v6hg-x8c9-r375.json index 7a6ac7e44e1..92f4334f95e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6hg-x8c9-r375/GHSA-v6hg-x8c9-r375.json +++ b/advisories/unreviewed/2022/05/GHSA-v6hg-x8c9-r375/GHSA-v6hg-x8c9-r375.json @@ -7,12 +7,8 @@ "CVE-2010-0174" ], "details": "Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -148,9 +144,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v79g-3wjc-8pvp/GHSA-v79g-3wjc-8pvp.json b/advisories/unreviewed/2022/05/GHSA-v79g-3wjc-8pvp/GHSA-v79g-3wjc-8pvp.json index bb2ce39328c..c6b10f44986 100644 --- a/advisories/unreviewed/2022/05/GHSA-v79g-3wjc-8pvp/GHSA-v79g-3wjc-8pvp.json +++ b/advisories/unreviewed/2022/05/GHSA-v79g-3wjc-8pvp/GHSA-v79g-3wjc-8pvp.json @@ -7,12 +7,8 @@ "CVE-2010-0808" ], "details": "Microsoft Internet Explorer 6 and 7 on Windows XP and Vista does not prevent script from simulating user interaction with the AutoComplete feature, which allows remote attackers to obtain sensitive form information via a crafted web site, aka \"AutoComplete Information Disclosure Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v79v-rjff-38ph/GHSA-v79v-rjff-38ph.json b/advisories/unreviewed/2022/05/GHSA-v79v-rjff-38ph/GHSA-v79v-rjff-38ph.json index 8641e0e8cbe..e01f19be1da 100644 --- a/advisories/unreviewed/2022/05/GHSA-v79v-rjff-38ph/GHSA-v79v-rjff-38ph.json +++ b/advisories/unreviewed/2022/05/GHSA-v79v-rjff-38ph/GHSA-v79v-rjff-38ph.json @@ -7,12 +7,8 @@ "CVE-2009-5149" ], "details": "Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have predictable technician passwords, which makes it easier for remote attackers to obtain access via the web management interface, related to a \"password of the day\" issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8rw-wfg3-g44g/GHSA-v8rw-wfg3-g44g.json b/advisories/unreviewed/2022/05/GHSA-v8rw-wfg3-g44g/GHSA-v8rw-wfg3-g44g.json index dd9bc6f0b35..8dcd2447752 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8rw-wfg3-g44g/GHSA-v8rw-wfg3-g44g.json +++ b/advisories/unreviewed/2022/05/GHSA-v8rw-wfg3-g44g/GHSA-v8rw-wfg3-g44g.json @@ -7,12 +7,8 @@ "CVE-2010-0145" ], "details": "Unspecified vulnerability in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote attackers to execute arbitrary code via unknown vectors, aka IronPort Bug 65923.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8w6-5443-cpph/GHSA-v8w6-5443-cpph.json b/advisories/unreviewed/2022/05/GHSA-v8w6-5443-cpph/GHSA-v8w6-5443-cpph.json index a829f7b7bd8..fec84247341 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8w6-5443-cpph/GHSA-v8w6-5443-cpph.json +++ b/advisories/unreviewed/2022/05/GHSA-v8w6-5443-cpph/GHSA-v8w6-5443-cpph.json @@ -7,12 +7,8 @@ "CVE-2010-0672" ], "details": "SQL injection vulnerability in index.php in WSN Guest 1.02 allows remote attackers to execute arbitrary SQL commands via the orderlinks parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9jr-23rj-wr7x/GHSA-v9jr-23rj-wr7x.json b/advisories/unreviewed/2022/05/GHSA-v9jr-23rj-wr7x/GHSA-v9jr-23rj-wr7x.json index 17d9241609c..4046eae16ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9jr-23rj-wr7x/GHSA-v9jr-23rj-wr7x.json +++ b/advisories/unreviewed/2022/05/GHSA-v9jr-23rj-wr7x/GHSA-v9jr-23rj-wr7x.json @@ -7,12 +7,8 @@ "CVE-2010-0440" ], "details": "Cross-site scripting (XSS) vulnerability in +CSCOT+/translation in Cisco Secure Desktop 3.4.2048, and other versions before 3.5; as used in Cisco ASA appliance before 8.2(1), 8.1(2.7), and 8.0(5); allows remote attackers to inject arbitrary web script or HTML via a crafted POST parameter, which is not properly handled by an eval statement in binary/mainv.js that writes to start.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vc3f-f54f-2jfx/GHSA-vc3f-f54f-2jfx.json b/advisories/unreviewed/2022/05/GHSA-vc3f-f54f-2jfx/GHSA-vc3f-f54f-2jfx.json index 705f40f42fe..8c2cbc269ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-vc3f-f54f-2jfx/GHSA-vc3f-f54f-2jfx.json +++ b/advisories/unreviewed/2022/05/GHSA-vc3f-f54f-2jfx/GHSA-vc3f-f54f-2jfx.json @@ -7,12 +7,8 @@ "CVE-2010-0409" ], "details": "Buffer overflow in the GMIME_UUENCODE_LEN macro in gmime/gmime-encodings.h in GMime before 2.4.15 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via input data for a uuencode operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcw7-c2c6-j546/GHSA-vcw7-c2c6-j546.json b/advisories/unreviewed/2022/05/GHSA-vcw7-c2c6-j546/GHSA-vcw7-c2c6-j546.json index 3036c81f470..9292667281c 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcw7-c2c6-j546/GHSA-vcw7-c2c6-j546.json +++ b/advisories/unreviewed/2022/05/GHSA-vcw7-c2c6-j546/GHSA-vcw7-c2c6-j546.json @@ -7,12 +7,8 @@ "CVE-2010-0755" ], "details": "PHP remote file inclusion vulnerability in include/WBmap.php in WikyBlog 1.7.3 rc2 allows remote attackers to execute arbitrary PHP code via a URL in the langFile parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vffh-48qx-8xgf/GHSA-vffh-48qx-8xgf.json b/advisories/unreviewed/2022/05/GHSA-vffh-48qx-8xgf/GHSA-vffh-48qx-8xgf.json index 51cadbd10e8..2f4d908e219 100644 --- a/advisories/unreviewed/2022/05/GHSA-vffh-48qx-8xgf/GHSA-vffh-48qx-8xgf.json +++ b/advisories/unreviewed/2022/05/GHSA-vffh-48qx-8xgf/GHSA-vffh-48qx-8xgf.json @@ -7,12 +7,8 @@ "CVE-2010-0651" ], "details": "WebKit before r52784, as used in Google Chrome before 4.0.249.78 and Apple Safari before 4.0.5, permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote attackers to obtain sensitive information via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vfh4-wq8r-c2xv/GHSA-vfh4-wq8r-c2xv.json b/advisories/unreviewed/2022/05/GHSA-vfh4-wq8r-c2xv/GHSA-vfh4-wq8r-c2xv.json index 5c57acfbdde..e4edebbc3dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfh4-wq8r-c2xv/GHSA-vfh4-wq8r-c2xv.json +++ b/advisories/unreviewed/2022/05/GHSA-vfh4-wq8r-c2xv/GHSA-vfh4-wq8r-c2xv.json @@ -7,12 +7,8 @@ "CVE-2010-0582" ], "details": "Cisco IOS 12.1 through 12.4, and 15.0M before 15.0(1)M1, allows remote attackers to cause a denial of service (interface queue wedge) via malformed H.323 packets, aka Bug ID CSCta19962.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vfq8-637p-vg8j/GHSA-vfq8-637p-vg8j.json b/advisories/unreviewed/2022/05/GHSA-vfq8-637p-vg8j/GHSA-vfq8-637p-vg8j.json index c441b6bd304..d93ac39f213 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfq8-637p-vg8j/GHSA-vfq8-637p-vg8j.json +++ b/advisories/unreviewed/2022/05/GHSA-vfq8-637p-vg8j/GHSA-vfq8-637p-vg8j.json @@ -7,12 +7,8 @@ "CVE-2010-0500" ], "details": "Event Monitor in Apple Mac OS X before 10.6.3 does not properly validate hostnames of SSH clients, which allows remote attackers to cause a denial of service (arbitrary client blacklisting) via a crafted DNS PTR record, related to a \"plist injection issue.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vhwp-mggx-mfqp/GHSA-vhwp-mggx-mfqp.json b/advisories/unreviewed/2022/05/GHSA-vhwp-mggx-mfqp/GHSA-vhwp-mggx-mfqp.json index 9e81eaf2fb8..f7405f99cdd 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhwp-mggx-mfqp/GHSA-vhwp-mggx-mfqp.json +++ b/advisories/unreviewed/2022/05/GHSA-vhwp-mggx-mfqp/GHSA-vhwp-mggx-mfqp.json @@ -7,12 +7,8 @@ "CVE-2010-0786" ], "details": "The Web Services Security component in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.13 does not properly implement the Java API for XML Web Services (aka JAX-WS), which allows remote attackers to cause a denial of service (data corruption) via a crafted JAX-WS request that leads to incorrectly encoded data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vj2h-vccp-x4xr/GHSA-vj2h-vccp-x4xr.json b/advisories/unreviewed/2022/05/GHSA-vj2h-vccp-x4xr/GHSA-vj2h-vccp-x4xr.json index 69dd6384510..119e719c2c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj2h-vccp-x4xr/GHSA-vj2h-vccp-x4xr.json +++ b/advisories/unreviewed/2022/05/GHSA-vj2h-vccp-x4xr/GHSA-vj2h-vccp-x4xr.json @@ -7,12 +7,8 @@ "CVE-2010-0559" ], "details": "The default configuration of Oracle OpenSolaris snv_91 through snv_131 allows attackers to have an unspecified impact via vectors related to using kclient to join a Windows Active Directory domain.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vjq2-qqgv-fxw5/GHSA-vjq2-qqgv-fxw5.json b/advisories/unreviewed/2022/05/GHSA-vjq2-qqgv-fxw5/GHSA-vjq2-qqgv-fxw5.json index b24d9696a3f..381a4a2bb6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjq2-qqgv-fxw5/GHSA-vjq2-qqgv-fxw5.json +++ b/advisories/unreviewed/2022/05/GHSA-vjq2-qqgv-fxw5/GHSA-vjq2-qqgv-fxw5.json @@ -7,12 +7,8 @@ "CVE-2010-0491" ], "details": "Use-after-free vulnerability in Microsoft Internet Explorer 5.01 SP4, 6, and 6 SP1 allows remote attackers to execute arbitrary code by changing unspecified properties of an HTML object that has an onreadystatechange event handler, aka \"HTML Object Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmrj-vj6q-3rpq/GHSA-vmrj-vj6q-3rpq.json b/advisories/unreviewed/2022/05/GHSA-vmrj-vj6q-3rpq/GHSA-vmrj-vj6q-3rpq.json index 7c4c8b5d296..ecba529de7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmrj-vj6q-3rpq/GHSA-vmrj-vj6q-3rpq.json +++ b/advisories/unreviewed/2022/05/GHSA-vmrj-vj6q-3rpq/GHSA-vmrj-vj6q-3rpq.json @@ -7,12 +7,8 @@ "CVE-2010-0635" ], "details": "SQL injection vulnerability in the plgSearchEventsearch::onSearch method in eventsearch.php in the JEvents Search plugin 1.5 through 1.5.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmxg-px44-w6m2/GHSA-vmxg-px44-w6m2.json b/advisories/unreviewed/2022/05/GHSA-vmxg-px44-w6m2/GHSA-vmxg-px44-w6m2.json index 19a18b323a3..9dfeb8305fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmxg-px44-w6m2/GHSA-vmxg-px44-w6m2.json +++ b/advisories/unreviewed/2022/05/GHSA-vmxg-px44-w6m2/GHSA-vmxg-px44-w6m2.json @@ -7,12 +7,8 @@ "CVE-2010-0110" ], "details": "Multiple stack-based buffer overflows in Intel Alert Management System (aka AMS or AMS2), as used in Symantec AntiVirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allow remote attackers to execute arbitrary code via (1) a long string to msgsys.exe, related to the AMSSendAlertAct function in AMSLIB.dll in the Intel Alert Handler service (aka Symantec Intel Handler service); a long (2) modem string or (3) PIN number to msgsys.exe, related to pagehndl.dll in the Intel Alert Handler service; or (4) a message to msgsys.exe, related to iao.exe in the Intel Alert Originator service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vpv3-qgmw-47f8/GHSA-vpv3-qgmw-47f8.json b/advisories/unreviewed/2022/05/GHSA-vpv3-qgmw-47f8/GHSA-vpv3-qgmw-47f8.json index 7c0649cac08..c88b9e65157 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpv3-qgmw-47f8/GHSA-vpv3-qgmw-47f8.json +++ b/advisories/unreviewed/2022/05/GHSA-vpv3-qgmw-47f8/GHSA-vpv3-qgmw-47f8.json @@ -7,12 +7,8 @@ "CVE-2010-0168" ], "details": "The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 before 3.6.2 does not apply scheme restrictions and policy restrictions to the image's URL, which might allow remote attackers to cause a denial of service (application crash or hang) or hijack the functionality of the browser's add-ons via a crafted SRC attribute of an IMG element, as demonstrated by remote command execution through an ssh: URL in a configuration that supports gnome-vfs with a nonstandard network.gnomevfs.supported-protocols setting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqf3-4m76-q67q/GHSA-vqf3-4m76-q67q.json b/advisories/unreviewed/2022/05/GHSA-vqf3-4m76-q67q/GHSA-vqf3-4m76-q67q.json index f544f67a62e..993e205eed4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqf3-4m76-q67q/GHSA-vqf3-4m76-q67q.json +++ b/advisories/unreviewed/2022/05/GHSA-vqf3-4m76-q67q/GHSA-vqf3-4m76-q67q.json @@ -7,12 +7,8 @@ "CVE-2010-0026" ], "details": "The Hyper-V server implementation in Microsoft Windows Server 2008 Gold, SP2, and R2 on the x64 platform allows guest OS users to cause a denial of service (host OS hang) via a crafted application that executes a malformed series of machine instructions, aka \"Hyper-V Instruction Set Validation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqgq-wj7q-x376/GHSA-vqgq-wj7q-x376.json b/advisories/unreviewed/2022/05/GHSA-vqgq-wj7q-x376/GHSA-vqgq-wj7q-x376.json index 68510056423..cb121b6f7b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqgq-wj7q-x376/GHSA-vqgq-wj7q-x376.json +++ b/advisories/unreviewed/2022/05/GHSA-vqgq-wj7q-x376/GHSA-vqgq-wj7q-x376.json @@ -7,12 +7,8 @@ "CVE-2010-0397" ], "details": "The xmlrpc extension in PHP 5.3.1 does not properly handle a missing methodName element in the first argument to the xmlrpc_decode_request function, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) and possibly have unspecified other impact via a crafted argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vr2g-vj4r-ggc9/GHSA-vr2g-vj4r-ggc9.json b/advisories/unreviewed/2022/05/GHSA-vr2g-vj4r-ggc9/GHSA-vr2g-vj4r-ggc9.json index b310bacbad2..f99e4674e29 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr2g-vj4r-ggc9/GHSA-vr2g-vj4r-ggc9.json +++ b/advisories/unreviewed/2022/05/GHSA-vr2g-vj4r-ggc9/GHSA-vr2g-vj4r-ggc9.json @@ -7,12 +7,8 @@ "CVE-2010-0508" ], "details": "Mail in Apple Mac OS X before 10.6.3 does not disable the filter rules associated with a deleted mail account, which has unspecified impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vv9f-p8wq-vp27/GHSA-vv9f-p8wq-vp27.json b/advisories/unreviewed/2022/05/GHSA-vv9f-p8wq-vp27/GHSA-vv9f-p8wq-vp27.json index 76a9a36aceb..f6f6958c52a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv9f-p8wq-vp27/GHSA-vv9f-p8wq-vp27.json +++ b/advisories/unreviewed/2022/05/GHSA-vv9f-p8wq-vp27/GHSA-vv9f-p8wq-vp27.json @@ -7,12 +7,8 @@ "CVE-2010-0171" ], "details": "Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allow remote attackers to perform cross-origin keystroke capture, and possibly conduct cross-site scripting (XSS) attacks, by using the addEventListener and setTimeout functions in conjunction with a wrapped object. NOTE: this vulnerability exists because of an incomplete fix for CVE-2007-3736.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw3m-jmhx-vxc5/GHSA-vw3m-jmhx-vxc5.json b/advisories/unreviewed/2022/05/GHSA-vw3m-jmhx-vxc5/GHSA-vw3m-jmhx-vxc5.json index 35c2d5dfb1f..09448b15209 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw3m-jmhx-vxc5/GHSA-vw3m-jmhx-vxc5.json +++ b/advisories/unreviewed/2022/05/GHSA-vw3m-jmhx-vxc5/GHSA-vw3m-jmhx-vxc5.json @@ -7,12 +7,8 @@ "CVE-2009-5135" ], "details": "The Java XML parser in Echo before 2.1.1 and 3.x before 3.0.b6 allows remote attackers to read arbitrary files via a request containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vx2g-j38v-c6xw/GHSA-vx2g-j38v-c6xw.json b/advisories/unreviewed/2022/05/GHSA-vx2g-j38v-c6xw/GHSA-vx2g-j38v-c6xw.json index b8cc1b645ec..3cd20eb370d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vx2g-j38v-c6xw/GHSA-vx2g-j38v-c6xw.json +++ b/advisories/unreviewed/2022/05/GHSA-vx2g-j38v-c6xw/GHSA-vx2g-j38v-c6xw.json @@ -7,12 +7,8 @@ "CVE-2010-0447" ], "details": "The helpmanager servlet in the web server in HP OpenView Performance Insight (OVPI) 5.4 and earlier does not properly authenticate and validate requests, which allows remote attackers to execute arbitrary commands via vectors involving upload of a JSP document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w226-g6hj-jc8p/GHSA-w226-g6hj-jc8p.json b/advisories/unreviewed/2022/05/GHSA-w226-g6hj-jc8p/GHSA-w226-g6hj-jc8p.json index a57efbdb3f2..eb7860f1049 100644 --- a/advisories/unreviewed/2022/05/GHSA-w226-g6hj-jc8p/GHSA-w226-g6hj-jc8p.json +++ b/advisories/unreviewed/2022/05/GHSA-w226-g6hj-jc8p/GHSA-w226-g6hj-jc8p.json @@ -7,12 +7,8 @@ "CVE-2010-0142" ], "details": "MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote authenticated users to gain privileges via a modified authentication sequence, aka Bug ID CSCsv66530.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w2hp-v5c3-39q4/GHSA-w2hp-v5c3-39q4.json b/advisories/unreviewed/2022/05/GHSA-w2hp-v5c3-39q4/GHSA-w2hp-v5c3-39q4.json index dd08623750a..6f42eaf7f5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2hp-v5c3-39q4/GHSA-w2hp-v5c3-39q4.json +++ b/advisories/unreviewed/2022/05/GHSA-w2hp-v5c3-39q4/GHSA-w2hp-v5c3-39q4.json @@ -7,12 +7,8 @@ "CVE-2010-0093" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0095.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -136,9 +132,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3v7-x856-3frj/GHSA-w3v7-x856-3frj.json b/advisories/unreviewed/2022/05/GHSA-w3v7-x856-3frj/GHSA-w3v7-x856-3frj.json index f7eafb087fd..6be784a78ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3v7-x856-3frj/GHSA-w3v7-x856-3frj.json +++ b/advisories/unreviewed/2022/05/GHSA-w3v7-x856-3frj/GHSA-w3v7-x856-3frj.json @@ -7,12 +7,8 @@ "CVE-2010-0510" ], "details": "Password Server in Apple Mac OS X Server before 10.6.3 does not properly perform password replication, which might allow remote authenticated users to obtain login access via an expired password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w48p-j73x-8hw8/GHSA-w48p-j73x-8hw8.json b/advisories/unreviewed/2022/05/GHSA-w48p-j73x-8hw8/GHSA-w48p-j73x-8hw8.json index c8ae7b50cf0..34ade6fbf55 100644 --- a/advisories/unreviewed/2022/05/GHSA-w48p-j73x-8hw8/GHSA-w48p-j73x-8hw8.json +++ b/advisories/unreviewed/2022/05/GHSA-w48p-j73x-8hw8/GHSA-w48p-j73x-8hw8.json @@ -7,12 +7,8 @@ "CVE-2010-0022" ], "details": "The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate the share and servername fields in SMB packets, which allows remote attackers to cause a denial of service (system hang) via a crafted packet, aka \"SMB Null Pointer Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4p3-9jw4-3vwr/GHSA-w4p3-9jw4-3vwr.json b/advisories/unreviewed/2022/05/GHSA-w4p3-9jw4-3vwr/GHSA-w4p3-9jw4-3vwr.json index d57f812c2e7..d5aed06dbe0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4p3-9jw4-3vwr/GHSA-w4p3-9jw4-3vwr.json +++ b/advisories/unreviewed/2022/05/GHSA-w4p3-9jw4-3vwr/GHSA-w4p3-9jw4-3vwr.json @@ -7,12 +7,8 @@ "CVE-2010-0194" ], "details": "Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0197, CVE-2010-0201, and CVE-2010-0204.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w675-9q69-cp3f/GHSA-w675-9q69-cp3f.json b/advisories/unreviewed/2022/05/GHSA-w675-9q69-cp3f/GHSA-w675-9q69-cp3f.json index 40da01ee5f1..7ba6d56c0f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-w675-9q69-cp3f/GHSA-w675-9q69-cp3f.json +++ b/advisories/unreviewed/2022/05/GHSA-w675-9q69-cp3f/GHSA-w675-9q69-cp3f.json @@ -7,12 +7,8 @@ "CVE-2010-0548" ], "details": "Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknown vectors that bypass Scan to Mailbox authorization or (2) read device configuration information via via unknown vectors that bypass web server authorization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w686-r764-pjr6/GHSA-w686-r764-pjr6.json b/advisories/unreviewed/2022/05/GHSA-w686-r764-pjr6/GHSA-w686-r764-pjr6.json index 08aa1ef93c0..ecf03c123d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-w686-r764-pjr6/GHSA-w686-r764-pjr6.json +++ b/advisories/unreviewed/2022/05/GHSA-w686-r764-pjr6/GHSA-w686-r764-pjr6.json @@ -7,12 +7,8 @@ "CVE-2010-0633" ], "details": "Unspecified vulnerability in Citrix XenServer 5.0 Update 3 and earlier, and 5.5, allows local users to bypass authentication and execute unspecified Xen API (XAPI) calls via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w69h-w8m8-xgqf/GHSA-w69h-w8m8-xgqf.json b/advisories/unreviewed/2022/05/GHSA-w69h-w8m8-xgqf/GHSA-w69h-w8m8-xgqf.json index 830e6f64373..0bc1ddebc8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-w69h-w8m8-xgqf/GHSA-w69h-w8m8-xgqf.json +++ b/advisories/unreviewed/2022/05/GHSA-w69h-w8m8-xgqf/GHSA-w69h-w8m8-xgqf.json @@ -7,12 +7,8 @@ "CVE-2010-0112" ], "details": "Multiple SQL injection vulnerabilities in the Administrative Interface in the IIS extension in Symantec IM Manager before 8.4.16 allow remote attackers to execute arbitrary SQL commands via (1) the rdReport parameter to rdpageimlogic.aspx, related to the sGetDefinition function in rdServer.dll, and SQL statements contained within a certain report file; (2) unspecified parameters in a DetailReportGroup (aka DetailReportGroup.lgx) action to rdpageimlogic.aspx; the (3) selclause, (4) whereTrendTimeClause, (5) TrendTypeForReport, (6) whereProtocolClause, or (7) groupClause parameter in a SummaryReportGroup (aka SummaryReportGroup.lgx) action to rdpageimlogic.aspx; the (8) loginTimeStamp, (9) dbo, (10) dateDiffParam, or (11) whereClause parameter in a LoggedInUsers (aka LoggedInUSers.lgx) action to (a) rdpageimlogic.aspx or (b) rdPage.aspx; the (12) selclause, (13) whereTrendTimeClause, (14) TrendTypeForReport, (15) whereProtocolClause, or (16) groupClause parameter to rdpageimlogic.aspx; (17) the groupList parameter to IMAdminReportTrendFormRun.asp; or (18) the email parameter to IMAdminScheduleReport.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w6h2-rg9q-p285/GHSA-w6h2-rg9q-p285.json b/advisories/unreviewed/2022/05/GHSA-w6h2-rg9q-p285/GHSA-w6h2-rg9q-p285.json index 1673cdd0d31..97d626d2093 100644 --- a/advisories/unreviewed/2022/05/GHSA-w6h2-rg9q-p285/GHSA-w6h2-rg9q-p285.json +++ b/advisories/unreviewed/2022/05/GHSA-w6h2-rg9q-p285/GHSA-w6h2-rg9q-p285.json @@ -7,12 +7,8 @@ "CVE-2010-0033" ], "details": "Stack-based buffer overflow in Microsoft Office PowerPoint 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka \"PowerPoint Viewer TextBytesAtom Record Stack Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w6qx-m68c-85w8/GHSA-w6qx-m68c-85w8.json b/advisories/unreviewed/2022/05/GHSA-w6qx-m68c-85w8/GHSA-w6qx-m68c-85w8.json index c80442b35db..ac0e0d74009 100644 --- a/advisories/unreviewed/2022/05/GHSA-w6qx-m68c-85w8/GHSA-w6qx-m68c-85w8.json +++ b/advisories/unreviewed/2022/05/GHSA-w6qx-m68c-85w8/GHSA-w6qx-m68c-85w8.json @@ -7,12 +7,8 @@ "CVE-2010-0235" ], "details": "The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Vista Gold does not perform the expected validation before creating a symbolic link, which allows local users to cause a denial of service (reboot) via a crafted application, aka \"Windows Kernel Symbolic Link Value Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w76v-j738-xmxx/GHSA-w76v-j738-xmxx.json b/advisories/unreviewed/2022/05/GHSA-w76v-j738-xmxx/GHSA-w76v-j738-xmxx.json index c4b5b4f1bdb..2ca0ad9fe8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-w76v-j738-xmxx/GHSA-w76v-j738-xmxx.json +++ b/advisories/unreviewed/2022/05/GHSA-w76v-j738-xmxx/GHSA-w76v-j738-xmxx.json @@ -7,12 +7,8 @@ "CVE-2010-0146" ], "details": "Directory traversal vulnerability in the Management Center for Cisco Security Agents 6.0 allows remote authenticated users to read arbitrary files via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7rr-g4c2-26cq/GHSA-w7rr-g4c2-26cq.json b/advisories/unreviewed/2022/05/GHSA-w7rr-g4c2-26cq/GHSA-w7rr-g4c2-26cq.json index c751534a254..0c902b3768d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7rr-g4c2-26cq/GHSA-w7rr-g4c2-26cq.json +++ b/advisories/unreviewed/2022/05/GHSA-w7rr-g4c2-26cq/GHSA-w7rr-g4c2-26cq.json @@ -7,12 +7,8 @@ "CVE-2010-0241" ], "details": "The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Route Information packets, which allows remote attackers to execute arbitrary code via crafted packets, aka \"ICMPv6 Route Information Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w863-8736-g2vg/GHSA-w863-8736-g2vg.json b/advisories/unreviewed/2022/05/GHSA-w863-8736-g2vg/GHSA-w863-8736-g2vg.json index 0731479ae7a..ec2e8ddf8e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w863-8736-g2vg/GHSA-w863-8736-g2vg.json +++ b/advisories/unreviewed/2022/05/GHSA-w863-8736-g2vg/GHSA-w863-8736-g2vg.json @@ -7,12 +7,8 @@ "CVE-2010-0612" ], "details": "Unspecified vulnerability in DocumentManager before 4.0 has unknown impact and attack vectors, related to file rights.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w878-qxgr-hjc8/GHSA-w878-qxgr-hjc8.json b/advisories/unreviewed/2022/05/GHSA-w878-qxgr-hjc8/GHSA-w878-qxgr-hjc8.json index e1f52fb5831..54c66e3a620 100644 --- a/advisories/unreviewed/2022/05/GHSA-w878-qxgr-hjc8/GHSA-w878-qxgr-hjc8.json +++ b/advisories/unreviewed/2022/05/GHSA-w878-qxgr-hjc8/GHSA-w878-qxgr-hjc8.json @@ -7,12 +7,8 @@ "CVE-2010-0391" ], "details": "Multiple stack-based buffer overflows in Embarcadero Technologies InterBase SMP 2009 9.0.3.437 allow remote attackers to execute arbitrary code via unknown vectors involving crafted packets. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w879-m4wh-92f9/GHSA-w879-m4wh-92f9.json b/advisories/unreviewed/2022/05/GHSA-w879-m4wh-92f9/GHSA-w879-m4wh-92f9.json index 71db8cfff1a..7c15a42079c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w879-m4wh-92f9/GHSA-w879-m4wh-92f9.json +++ b/advisories/unreviewed/2022/05/GHSA-w879-m4wh-92f9/GHSA-w879-m4wh-92f9.json @@ -7,12 +7,8 @@ "CVE-2010-0212" ], "details": "OpenLDAP 2.4.22 allows remote attackers to cause a denial of service (crash) via a modrdn call with a zero-length RDN destination string, which is not properly handled by the smr_normalize function and triggers a NULL pointer dereference in the IA5StringNormalize function in schema_init.c, as demonstrated using the Codenomicon LDAPv3 test suite.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w894-vq8g-mxr7/GHSA-w894-vq8g-mxr7.json b/advisories/unreviewed/2022/05/GHSA-w894-vq8g-mxr7/GHSA-w894-vq8g-mxr7.json index 9e99c304ef6..33c09f2ec30 100644 --- a/advisories/unreviewed/2022/05/GHSA-w894-vq8g-mxr7/GHSA-w894-vq8g-mxr7.json +++ b/advisories/unreviewed/2022/05/GHSA-w894-vq8g-mxr7/GHSA-w894-vq8g-mxr7.json @@ -7,12 +7,8 @@ "CVE-2010-0592" ], "details": "The CTI Manager service in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x before 4.3(2)sr1a, 6.x before 6.1(3), 7.0x before 7.0(2), 7.1x before 7.1(2), and 8.x before 8.0(1) allows remote attackers to cause a denial of service (service failure) via a malformed message, aka Bug ID CSCsu31800.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w94p-63xh-3mj8/GHSA-w94p-63xh-3mj8.json b/advisories/unreviewed/2022/05/GHSA-w94p-63xh-3mj8/GHSA-w94p-63xh-3mj8.json index d3812fff01a..908e6f1e98c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w94p-63xh-3mj8/GHSA-w94p-63xh-3mj8.json +++ b/advisories/unreviewed/2022/05/GHSA-w94p-63xh-3mj8/GHSA-w94p-63xh-3mj8.json @@ -7,12 +7,8 @@ "CVE-2010-0719" ], "details": "An unspecified API in Microsoft Windows 2000, Windows XP, Windows Server 2003, Windows Vista, Windows Server 2008, and Windows 7 does not validate arguments, which allows local users to cause a denial of service (system crash) via a crafted application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wc72-922g-4fvx/GHSA-wc72-922g-4fvx.json b/advisories/unreviewed/2022/05/GHSA-wc72-922g-4fvx/GHSA-wc72-922g-4fvx.json index 2c0378ce9b7..858cbd691cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc72-922g-4fvx/GHSA-wc72-922g-4fvx.json +++ b/advisories/unreviewed/2022/05/GHSA-wc72-922g-4fvx/GHSA-wc72-922g-4fvx.json @@ -7,12 +7,8 @@ "CVE-2010-0260" ], "details": "Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted spreadsheet in which \"a MDXTUPLE record is broken up into several records,\" aka \"Microsoft Office Excel MDXTUPLE Record Heap Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wc77-pp72-82qv/GHSA-wc77-pp72-82qv.json b/advisories/unreviewed/2022/05/GHSA-wc77-pp72-82qv/GHSA-wc77-pp72-82qv.json index 3e3907c0fe4..3665922848e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc77-pp72-82qv/GHSA-wc77-pp72-82qv.json +++ b/advisories/unreviewed/2022/05/GHSA-wc77-pp72-82qv/GHSA-wc77-pp72-82qv.json @@ -7,12 +7,8 @@ "CVE-2010-0816" ], "details": "Integer overflow in inetcomm.dll in Microsoft Outlook Express 5.5 SP2, 6, and 6 SP1; Windows Live Mail on Windows XP SP2 and SP3, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7; and Windows Mail on Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote e-mail servers and man-in-the-middle attackers to execute arbitrary code via a crafted (1) POP3 or (2) IMAP response, as demonstrated by a certain +OK response on TCP port 110, aka \"Outlook Express and Windows Mail Integer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wcmh-4pfq-jg4p/GHSA-wcmh-4pfq-jg4p.json b/advisories/unreviewed/2022/05/GHSA-wcmh-4pfq-jg4p/GHSA-wcmh-4pfq-jg4p.json index af9082d9043..85db7d800a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcmh-4pfq-jg4p/GHSA-wcmh-4pfq-jg4p.json +++ b/advisories/unreviewed/2022/05/GHSA-wcmh-4pfq-jg4p/GHSA-wcmh-4pfq-jg4p.json @@ -7,12 +7,8 @@ "CVE-2010-0176" ], "details": "Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a \"dangling pointer vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -144,9 +140,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wf8r-7846-mgqj/GHSA-wf8r-7846-mgqj.json b/advisories/unreviewed/2022/05/GHSA-wf8r-7846-mgqj/GHSA-wf8r-7846-mgqj.json index 9bb587a99b1..a41360d172d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wf8r-7846-mgqj/GHSA-wf8r-7846-mgqj.json +++ b/advisories/unreviewed/2022/05/GHSA-wf8r-7846-mgqj/GHSA-wf8r-7846-mgqj.json @@ -7,12 +7,8 @@ "CVE-2010-0659" ], "details": "The image decoder in WebKit before r52833, as used in Google Chrome before 4.0.249.78, does not properly handle a failure of memory allocation, which allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed GIF file that specifies a large size.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wfcp-r54j-frmq/GHSA-wfcp-r54j-frmq.json b/advisories/unreviewed/2022/05/GHSA-wfcp-r54j-frmq/GHSA-wfcp-r54j-frmq.json index f7af566de55..2c01ffae1d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfcp-r54j-frmq/GHSA-wfcp-r54j-frmq.json +++ b/advisories/unreviewed/2022/05/GHSA-wfcp-r54j-frmq/GHSA-wfcp-r54j-frmq.json @@ -7,12 +7,8 @@ "CVE-2010-0489" ], "details": "Race condition in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted HTML document that triggers memory corruption, aka \"Race Condition Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg6g-7g6h-p73r/GHSA-wg6g-7g6h-p73r.json b/advisories/unreviewed/2022/05/GHSA-wg6g-7g6h-p73r/GHSA-wg6g-7g6h-p73r.json index be8c9b1d8fe..61f73f671a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg6g-7g6h-p73r/GHSA-wg6g-7g6h-p73r.json +++ b/advisories/unreviewed/2022/05/GHSA-wg6g-7g6h-p73r/GHSA-wg6g-7g6h-p73r.json @@ -7,12 +7,8 @@ "CVE-2010-0308" ], "details": "lib/rfc1035.c in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15 allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wgcv-657c-p955/GHSA-wgcv-657c-p955.json b/advisories/unreviewed/2022/05/GHSA-wgcv-657c-p955/GHSA-wgcv-657c-p955.json index 54e349faecc..aa40254211a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgcv-657c-p955/GHSA-wgcv-657c-p955.json +++ b/advisories/unreviewed/2022/05/GHSA-wgcv-657c-p955/GHSA-wgcv-657c-p955.json @@ -7,12 +7,8 @@ "CVE-2010-0802" ], "details": "SQL injection vulnerability in index.php in (nv2) Awards 1.1.0, a modification for Invision Power Board, allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wgcv-9qcc-vx54/GHSA-wgcv-9qcc-vx54.json b/advisories/unreviewed/2022/05/GHSA-wgcv-9qcc-vx54/GHSA-wgcv-9qcc-vx54.json index 6acef36c46c..6b58e4a43e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgcv-9qcc-vx54/GHSA-wgcv-9qcc-vx54.json +++ b/advisories/unreviewed/2022/05/GHSA-wgcv-9qcc-vx54/GHSA-wgcv-9qcc-vx54.json @@ -7,12 +7,8 @@ "CVE-2010-0868" ], "details": "Unspecified vulnerability in the Oracle iStore component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh76-4mjv-gqjw/GHSA-wh76-4mjv-gqjw.json b/advisories/unreviewed/2022/05/GHSA-wh76-4mjv-gqjw/GHSA-wh76-4mjv-gqjw.json index dd0fce23048..8035dca3e7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh76-4mjv-gqjw/GHSA-wh76-4mjv-gqjw.json +++ b/advisories/unreviewed/2022/05/GHSA-wh76-4mjv-gqjw/GHSA-wh76-4mjv-gqjw.json @@ -7,12 +7,8 @@ "CVE-2009-5129" ], "details": "The Websense V10000 appliance before 1.0.1 allows remote attackers to cause a denial of service (intermittent LDAP authentication outage) via a login attempt with an incorrect password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj8g-mf9j-qxgf/GHSA-wj8g-mf9j-qxgf.json b/advisories/unreviewed/2022/05/GHSA-wj8g-mf9j-qxgf/GHSA-wj8g-mf9j-qxgf.json index e191a6ed755..a5f7668cead 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj8g-mf9j-qxgf/GHSA-wj8g-mf9j-qxgf.json +++ b/advisories/unreviewed/2022/05/GHSA-wj8g-mf9j-qxgf/GHSA-wj8g-mf9j-qxgf.json @@ -7,12 +7,8 @@ "CVE-2010-0519" ], "details": "Integer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a FlashPix image with a malformed SubImage Header Stream containing a NumberOfTiles field with a large value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wm2x-wp62-hmvx/GHSA-wm2x-wp62-hmvx.json b/advisories/unreviewed/2022/05/GHSA-wm2x-wp62-hmvx/GHSA-wm2x-wp62-hmvx.json index 87ed66e8d90..76e2eee4e88 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm2x-wp62-hmvx/GHSA-wm2x-wp62-hmvx.json +++ b/advisories/unreviewed/2022/05/GHSA-wm2x-wp62-hmvx/GHSA-wm2x-wp62-hmvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wp6h-4j7c-vh23/GHSA-wp6h-4j7c-vh23.json b/advisories/unreviewed/2022/05/GHSA-wp6h-4j7c-vh23/GHSA-wp6h-4j7c-vh23.json index a332880c394..3ecbd2640b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp6h-4j7c-vh23/GHSA-wp6h-4j7c-vh23.json +++ b/advisories/unreviewed/2022/05/GHSA-wp6h-4j7c-vh23/GHSA-wp6h-4j7c-vh23.json @@ -7,12 +7,8 @@ "CVE-2010-0824" ], "details": "Unspecified vulnerability in Microsoft Office Excel 2002 SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Excel file with a malformed WOPT (0x80B) record, aka \"Excel Record Memory Corruption Vulnerability,\" a different vulnerability than CVE-2010-0821 and CVE-2010-1245.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpwf-88p7-vqf6/GHSA-wpwf-88p7-vqf6.json b/advisories/unreviewed/2022/05/GHSA-wpwf-88p7-vqf6/GHSA-wpwf-88p7-vqf6.json index 6031e023297..bbb7b9ceddc 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpwf-88p7-vqf6/GHSA-wpwf-88p7-vqf6.json +++ b/advisories/unreviewed/2022/05/GHSA-wpwf-88p7-vqf6/GHSA-wpwf-88p7-vqf6.json @@ -7,12 +7,8 @@ "CVE-2010-0798" ], "details": "SQL injection vulnerability in the T3BLOG extension 0.6.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wqm8-5hfp-cx2w/GHSA-wqm8-5hfp-cx2w.json b/advisories/unreviewed/2022/05/GHSA-wqm8-5hfp-cx2w/GHSA-wqm8-5hfp-cx2w.json index 8149e7fb7ed..207a6c24cec 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqm8-5hfp-cx2w/GHSA-wqm8-5hfp-cx2w.json +++ b/advisories/unreviewed/2022/05/GHSA-wqm8-5hfp-cx2w/GHSA-wqm8-5hfp-cx2w.json @@ -7,12 +7,8 @@ "CVE-2010-0841" ], "details": "Unspecified vulnerability in the ImageIO component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is an integer overflow in the Java Runtime Environment that allows remote attackers to execute arbitrary code via a JPEG image that contains subsample dimensions with large values, related to JPEGImageReader and \"stepX\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wr9p-qxcp-857h/GHSA-wr9p-qxcp-857h.json b/advisories/unreviewed/2022/05/GHSA-wr9p-qxcp-857h/GHSA-wr9p-qxcp-857h.json index 8e4658f2859..0e8f652f96d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr9p-qxcp-857h/GHSA-wr9p-qxcp-857h.json +++ b/advisories/unreviewed/2022/05/GHSA-wr9p-qxcp-857h/GHSA-wr9p-qxcp-857h.json @@ -7,12 +7,8 @@ "CVE-2010-0536" ], "details": "Apple QuickTime before 7.6.6 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted BMP image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wrfc-893h-w7fc/GHSA-wrfc-893h-w7fc.json b/advisories/unreviewed/2022/05/GHSA-wrfc-893h-w7fc/GHSA-wrfc-893h-w7fc.json index 581a4812932..37845a8249c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrfc-893h-w7fc/GHSA-wrfc-893h-w7fc.json +++ b/advisories/unreviewed/2022/05/GHSA-wrfc-893h-w7fc/GHSA-wrfc-893h-w7fc.json @@ -7,12 +7,8 @@ "CVE-2010-0077" ], "details": "Unspecified vulnerability in the CRM Technical Foundation (mobile) component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrm5-w67c-xm7j/GHSA-wrm5-w67c-xm7j.json b/advisories/unreviewed/2022/05/GHSA-wrm5-w67c-xm7j/GHSA-wrm5-w67c-xm7j.json index 6eba2a51b21..2b10d254355 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrm5-w67c-xm7j/GHSA-wrm5-w67c-xm7j.json +++ b/advisories/unreviewed/2022/05/GHSA-wrm5-w67c-xm7j/GHSA-wrm5-w67c-xm7j.json @@ -7,12 +7,8 @@ "CVE-2010-0662" ], "details": "The ParamTraits::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not use the correct variables in calculations designed to prevent integer overflows, which allows attackers to leverage renderer access to cause a denial of service or possibly have unspecified other impact via bitmap data, related to deserialization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrqr-r5rj-5p7r/GHSA-wrqr-r5rj-5p7r.json b/advisories/unreviewed/2022/05/GHSA-wrqr-r5rj-5p7r/GHSA-wrqr-r5rj-5p7r.json index dfee56e3acb..e1c14cda316 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrqr-r5rj-5p7r/GHSA-wrqr-r5rj-5p7r.json +++ b/advisories/unreviewed/2022/05/GHSA-wrqr-r5rj-5p7r/GHSA-wrqr-r5rj-5p7r.json @@ -7,12 +7,8 @@ "CVE-2010-0709" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in Limny 2.0 allow remote attackers to (1) hijack the authentication of users or administrators for requests that change the email address or password via the user action to index.php, and (2) hijack the authentication of the administrator for requests that create a new user via the admin/modules/user/new action to limny/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wv6c-mphw-ggxf/GHSA-wv6c-mphw-ggxf.json b/advisories/unreviewed/2022/05/GHSA-wv6c-mphw-ggxf/GHSA-wv6c-mphw-ggxf.json index 4a61c62257f..d1623579158 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv6c-mphw-ggxf/GHSA-wv6c-mphw-ggxf.json +++ b/advisories/unreviewed/2022/05/GHSA-wv6c-mphw-ggxf/GHSA-wv6c-mphw-ggxf.json @@ -7,12 +7,8 @@ "CVE-2010-0425" ], "details": "modules/arch/win32/mod_isapi.c in mod_isapi in the Apache HTTP Server 2.0.37 through 2.0.63, 2.2.0 through 2.2.14, and 2.3.x before 2.3.7, when running on Windows, does not ensure that request processing is complete before calling isapi_unload for an ISAPI .dll module, which allows remote attackers to execute arbitrary code via unspecified vectors related to a crafted request, a reset packet, and \"orphaned callback pointers.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -188,9 +184,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wv82-x4r2-74j9/GHSA-wv82-x4r2-74j9.json b/advisories/unreviewed/2022/05/GHSA-wv82-x4r2-74j9/GHSA-wv82-x4r2-74j9.json index b618f42cef6..0bd74008ad9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv82-x4r2-74j9/GHSA-wv82-x4r2-74j9.json +++ b/advisories/unreviewed/2022/05/GHSA-wv82-x4r2-74j9/GHSA-wv82-x4r2-74j9.json @@ -7,12 +7,8 @@ "CVE-2010-0374" ], "details": "Cross-site scripting (XSS) vulnerability in the Marketplace (com_marketplace) component 1.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the catid parameter in a show_category action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww87-xv54-4xg7/GHSA-ww87-xv54-4xg7.json b/advisories/unreviewed/2022/05/GHSA-ww87-xv54-4xg7/GHSA-ww87-xv54-4xg7.json index 77e6a525b36..73b99855a4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww87-xv54-4xg7/GHSA-ww87-xv54-4xg7.json +++ b/advisories/unreviewed/2022/05/GHSA-ww87-xv54-4xg7/GHSA-ww87-xv54-4xg7.json @@ -7,12 +7,8 @@ "CVE-2010-0530" ], "details": "Apple QuickTime before 7.6.9 on Windows sets weak permissions for the Apple Computer directory in the profile of a user account, which allows local users to obtain sensitive information by reading files in this directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wxc7-vw25-7jmv/GHSA-wxc7-vw25-7jmv.json b/advisories/unreviewed/2022/05/GHSA-wxc7-vw25-7jmv/GHSA-wxc7-vw25-7jmv.json index 6bc2003d679..a995f380dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxc7-vw25-7jmv/GHSA-wxc7-vw25-7jmv.json +++ b/advisories/unreviewed/2022/05/GHSA-wxc7-vw25-7jmv/GHSA-wxc7-vw25-7jmv.json @@ -7,12 +7,8 @@ "CVE-2010-0091" ], "details": "Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality via unknown vectors, a different vulnerability than CVE-2010-0084.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x3m2-j237-rq6j/GHSA-x3m2-j237-rq6j.json b/advisories/unreviewed/2022/05/GHSA-x3m2-j237-rq6j/GHSA-x3m2-j237-rq6j.json index 15f983ff46f..f0db14d5a8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3m2-j237-rq6j/GHSA-x3m2-j237-rq6j.json +++ b/advisories/unreviewed/2022/05/GHSA-x3m2-j237-rq6j/GHSA-x3m2-j237-rq6j.json @@ -7,12 +7,8 @@ "CVE-2010-0746" ], "details": "Directory traversal vulnerability in DeviceKit-disks in DeviceKit, as used in Fedora 11 and 12 and possibly other operating systems, allows local users to gain privileges via .. (dot dot) sequences in the label for a pluggable storage device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3mq-qq8q-g844/GHSA-x3mq-qq8q-g844.json b/advisories/unreviewed/2022/05/GHSA-x3mq-qq8q-g844/GHSA-x3mq-qq8q-g844.json index 51fb30cc378..5b459f8d6da 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3mq-qq8q-g844/GHSA-x3mq-qq8q-g844.json +++ b/advisories/unreviewed/2022/05/GHSA-x3mq-qq8q-g844/GHSA-x3mq-qq8q-g844.json @@ -7,12 +7,8 @@ "CVE-2010-0679" ], "details": "Multiple stack-based buffer overflows in the HyleosChemView.HLChemView ActiveX control (HyleosChemView.ocx) in Hyleos ChemView 1.9.5.1 allow remote attackers to execute arbitrary code via a large number of white space characters in the filename argument to the (1) SaveasMolFile and (2) ReadMolFile methods.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3pw-x548-2h9h/GHSA-x3pw-x548-2h9h.json b/advisories/unreviewed/2022/05/GHSA-x3pw-x548-2h9h/GHSA-x3pw-x548-2h9h.json index a5a6c3ac89a..60c3d4b0191 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3pw-x548-2h9h/GHSA-x3pw-x548-2h9h.json +++ b/advisories/unreviewed/2022/05/GHSA-x3pw-x548-2h9h/GHSA-x3pw-x548-2h9h.json @@ -7,12 +7,8 @@ "CVE-2010-0239" ], "details": "The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Router Advertisement packets, which allows remote attackers to execute arbitrary code via crafted packets, aka \"ICMPv6 Router Advertisement Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x445-q75c-3845/GHSA-x445-q75c-3845.json b/advisories/unreviewed/2022/05/GHSA-x445-q75c-3845/GHSA-x445-q75c-3845.json index 562b764c769..ef274f45ba0 100644 --- a/advisories/unreviewed/2022/05/GHSA-x445-q75c-3845/GHSA-x445-q75c-3845.json +++ b/advisories/unreviewed/2022/05/GHSA-x445-q75c-3845/GHSA-x445-q75c-3845.json @@ -7,12 +7,8 @@ "CVE-2009-5114" ], "details": "Directory traversal vulnerability in wgarcmin.cgi in WebGlimpse 2.18.7 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the DOC parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x472-rm3h-4j28/GHSA-x472-rm3h-4j28.json b/advisories/unreviewed/2022/05/GHSA-x472-rm3h-4j28/GHSA-x472-rm3h-4j28.json index 604e97a6adf..3f70d57ce3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x472-rm3h-4j28/GHSA-x472-rm3h-4j28.json +++ b/advisories/unreviewed/2022/05/GHSA-x472-rm3h-4j28/GHSA-x472-rm3h-4j28.json @@ -7,12 +7,8 @@ "CVE-2010-0238" ], "details": "Unspecified vulnerability in registry-key validation in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Vista Gold allows local users to cause a denial of service (reboot) via a crafted application, aka \"Windows Kernel Registry Key Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x5jr-g6pf-rrxm/GHSA-x5jr-g6pf-rrxm.json b/advisories/unreviewed/2022/05/GHSA-x5jr-g6pf-rrxm/GHSA-x5jr-g6pf-rrxm.json index 48e22422757..c59c596211f 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5jr-g6pf-rrxm/GHSA-x5jr-g6pf-rrxm.json +++ b/advisories/unreviewed/2022/05/GHSA-x5jr-g6pf-rrxm/GHSA-x5jr-g6pf-rrxm.json @@ -7,12 +7,8 @@ "CVE-2010-0522" ], "details": "Server Admin in Apple Mac OS X Server 10.5.8 does not properly determine the privileges of users who had former membership in the admin group, which allows remote authenticated users to leverage this former membership to obtain a server connection via screen sharing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6fh-9494-hx2r/GHSA-x6fh-9494-hx2r.json b/advisories/unreviewed/2022/05/GHSA-x6fh-9494-hx2r/GHSA-x6fh-9494-hx2r.json index 4b92a56f1a8..88862f47d35 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6fh-9494-hx2r/GHSA-x6fh-9494-hx2r.json +++ b/advisories/unreviewed/2022/05/GHSA-x6fh-9494-hx2r/GHSA-x6fh-9494-hx2r.json @@ -7,12 +7,8 @@ "CVE-2010-0063" ], "details": "Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X before 10.6.3 makes it easier for user-assisted remote attackers to execute arbitrary JavaScript via a web page that offers a download with a Content-Type value that is not on the list of possibly unsafe content types for Safari, as demonstrated by the values for the (1) .ibplugin and (2) .url extensions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6p3-h7fg-w5cp/GHSA-x6p3-h7fg-w5cp.json b/advisories/unreviewed/2022/05/GHSA-x6p3-h7fg-w5cp/GHSA-x6p3-h7fg-w5cp.json index 11c729d363d..f92466a3f7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6p3-h7fg-w5cp/GHSA-x6p3-h7fg-w5cp.json +++ b/advisories/unreviewed/2022/05/GHSA-x6p3-h7fg-w5cp/GHSA-x6p3-h7fg-w5cp.json @@ -7,12 +7,8 @@ "CVE-2010-0497" ], "details": "Disk Images in Apple Mac OS X before 10.6.3 does not provide the expected warning for an unsafe file type in an internet enabled disk image, which makes it easier for user-assisted remote attackers to execute arbitrary code via a package file type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6ph-237v-4pgj/GHSA-x6ph-237v-4pgj.json b/advisories/unreviewed/2022/05/GHSA-x6ph-237v-4pgj/GHSA-x6ph-237v-4pgj.json index 6f03db1a0b4..9e3e1ecc3a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6ph-237v-4pgj/GHSA-x6ph-237v-4pgj.json +++ b/advisories/unreviewed/2022/05/GHSA-x6ph-237v-4pgj/GHSA-x6ph-237v-4pgj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x7gm-5fh7-5xr3/GHSA-x7gm-5fh7-5xr3.json b/advisories/unreviewed/2022/05/GHSA-x7gm-5fh7-5xr3/GHSA-x7gm-5fh7-5xr3.json index a0277d2d6c6..bfdccbe18ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7gm-5fh7-5xr3/GHSA-x7gm-5fh7-5xr3.json +++ b/advisories/unreviewed/2022/05/GHSA-x7gm-5fh7-5xr3/GHSA-x7gm-5fh7-5xr3.json @@ -7,12 +7,8 @@ "CVE-2010-0123" ], "details": "The database backup implementation in Employee Timeclock Software 0.99 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for a \"semi-predictable file name.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x84c-w887-qq98/GHSA-x84c-w887-qq98.json b/advisories/unreviewed/2022/05/GHSA-x84c-w887-qq98/GHSA-x84c-w887-qq98.json index 536b77fb2dc..9f2d177b3ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-x84c-w887-qq98/GHSA-x84c-w887-qq98.json +++ b/advisories/unreviewed/2022/05/GHSA-x84c-w887-qq98/GHSA-x84c-w887-qq98.json @@ -7,12 +7,8 @@ "CVE-2010-0083" ], "details": "Unspecified vulnerability in Oracle OpenSolaris 8, 9, and 10 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x89m-vq45-vjjr/GHSA-x89m-vq45-vjjr.json b/advisories/unreviewed/2022/05/GHSA-x89m-vq45-vjjr/GHSA-x89m-vq45-vjjr.json index d4120aec481..ee1704f5b3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-x89m-vq45-vjjr/GHSA-x89m-vq45-vjjr.json +++ b/advisories/unreviewed/2022/05/GHSA-x89m-vq45-vjjr/GHSA-x89m-vq45-vjjr.json @@ -7,12 +7,8 @@ "CVE-2010-0217" ], "details": "Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or Tomcat daemon crash) via a brute-force attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8r6-c7pf-w6m4/GHSA-x8r6-c7pf-w6m4.json b/advisories/unreviewed/2022/05/GHSA-x8r6-c7pf-w6m4/GHSA-x8r6-c7pf-w6m4.json index da170ce9fb6..29df18c40ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8r6-c7pf-w6m4/GHSA-x8r6-c7pf-w6m4.json +++ b/advisories/unreviewed/2022/05/GHSA-x8r6-c7pf-w6m4/GHSA-x8r6-c7pf-w6m4.json @@ -7,12 +7,8 @@ "CVE-2010-0295" ], "details": "lighttpd before 1.4.26, and 1.5.x, allocates a buffer for each read operation that occurs for a request, which allows remote attackers to cause a denial of service (memory consumption) by breaking a request into small pieces that are sent at a slow rate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8w2-j4r4-76v8/GHSA-x8w2-j4r4-76v8.json b/advisories/unreviewed/2022/05/GHSA-x8w2-j4r4-76v8/GHSA-x8w2-j4r4-76v8.json index cd32482fe11..e06eebcd052 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8w2-j4r4-76v8/GHSA-x8w2-j4r4-76v8.json +++ b/advisories/unreviewed/2022/05/GHSA-x8w2-j4r4-76v8/GHSA-x8w2-j4r4-76v8.json @@ -7,12 +7,8 @@ "CVE-2010-0543" ], "details": "ImageIO in Apple Mac OS X 10.5.8, and 10.6 before 10.6.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with MPEG2 encoding.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x9fj-vxmr-hcmm/GHSA-x9fj-vxmr-hcmm.json b/advisories/unreviewed/2022/05/GHSA-x9fj-vxmr-hcmm/GHSA-x9fj-vxmr-hcmm.json index 2c86257b6a4..26995e2074d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9fj-vxmr-hcmm/GHSA-x9fj-vxmr-hcmm.json +++ b/advisories/unreviewed/2022/05/GHSA-x9fj-vxmr-hcmm/GHSA-x9fj-vxmr-hcmm.json @@ -7,12 +7,8 @@ "CVE-2010-0254" ], "details": "Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 and SP2 does not properly validate attributes in Visio files, which allows remote attackers to execute arbitrary code via a crafted file, aka \"Visio Attribute Validation Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x9j8-m658-xw5v/GHSA-x9j8-m658-xw5v.json b/advisories/unreviewed/2022/05/GHSA-x9j8-m658-xw5v/GHSA-x9j8-m658-xw5v.json index b3af84c3f1d..014c0002b6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9j8-m658-xw5v/GHSA-x9j8-m658-xw5v.json +++ b/advisories/unreviewed/2022/05/GHSA-x9j8-m658-xw5v/GHSA-x9j8-m658-xw5v.json @@ -7,12 +7,8 @@ "CVE-2010-0761" ], "details": "SQL injection vulnerability in index.php in CommodityRentals Books/eBooks Rentals Script allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a gamecatalog action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xcff-45fg-j54m/GHSA-xcff-45fg-j54m.json b/advisories/unreviewed/2022/05/GHSA-xcff-45fg-j54m/GHSA-xcff-45fg-j54m.json index fd0a5de1f1f..c3d42f3e4d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xcff-45fg-j54m/GHSA-xcff-45fg-j54m.json +++ b/advisories/unreviewed/2022/05/GHSA-xcff-45fg-j54m/GHSA-xcff-45fg-j54m.json @@ -7,12 +7,8 @@ "CVE-2010-0121" ], "details": "The cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, Mac RealPlayer 11.0 through 12.0.0.1444, and Linux RealPlayer 11.0.2.1744 does not properly perform initialization, which has unspecified impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xcqh-55w8-858c/GHSA-xcqh-55w8-858c.json b/advisories/unreviewed/2022/05/GHSA-xcqh-55w8-858c/GHSA-xcqh-55w8-858c.json index 9b9ffd5c1b1..dd7a0f6de7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xcqh-55w8-858c/GHSA-xcqh-55w8-858c.json +++ b/advisories/unreviewed/2022/05/GHSA-xcqh-55w8-858c/GHSA-xcqh-55w8-858c.json @@ -7,12 +7,8 @@ "CVE-2010-0516" ], "details": "Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with RLE encoding, which triggers memory corruption when the length of decompressed data exceeds that of the allocated heap chunk.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xf3f-qvj8-j3m2/GHSA-xf3f-qvj8-j3m2.json b/advisories/unreviewed/2022/05/GHSA-xf3f-qvj8-j3m2/GHSA-xf3f-qvj8-j3m2.json index 05afcd4187d..28c3e6c708b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf3f-qvj8-j3m2/GHSA-xf3f-qvj8-j3m2.json +++ b/advisories/unreviewed/2022/05/GHSA-xf3f-qvj8-j3m2/GHSA-xf3f-qvj8-j3m2.json @@ -7,12 +7,8 @@ "CVE-2010-0449" ], "details": "Cross-site scripting (XSS) vulnerability in HP SOA Registry Foundation 6.63 and 6.64 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xf59-c653-rhw8/GHSA-xf59-c653-rhw8.json b/advisories/unreviewed/2022/05/GHSA-xf59-c653-rhw8/GHSA-xf59-c653-rhw8.json index 5854adeac84..d8f6224425d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf59-c653-rhw8/GHSA-xf59-c653-rhw8.json +++ b/advisories/unreviewed/2022/05/GHSA-xf59-c653-rhw8/GHSA-xf59-c653-rhw8.json @@ -7,12 +7,8 @@ "CVE-2010-0317" ], "details": "Novell Netware 6.5 SP8 allows remote attackers to cause a denial of service (NULL pointer dereference, memory consumption, ABEND, and crash) via a large number of malformed or AFP requests that are not properly handled by (1) the CIFS functionality in CIFS.nlm Semantic Agent (Build 163 MP) 3.27 or (2) the AFP functionality in AFPTCP.nlm Build 163 SP 3.27. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf8q-jwvc-h35w/GHSA-xf8q-jwvc-h35w.json b/advisories/unreviewed/2022/05/GHSA-xf8q-jwvc-h35w/GHSA-xf8q-jwvc-h35w.json index 4c269f8cb0a..3f71d076ee6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf8q-jwvc-h35w/GHSA-xf8q-jwvc-h35w.json +++ b/advisories/unreviewed/2022/05/GHSA-xf8q-jwvc-h35w/GHSA-xf8q-jwvc-h35w.json @@ -7,12 +7,8 @@ "CVE-2010-0695" ], "details": "Cross-site scripting (XSS) vulnerability in pages/index.php in BASIC-CMS allows remote attackers to inject arbitrary web script or HTML via the nav_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xfgm-rcpf-gf3q/GHSA-xfgm-rcpf-gf3q.json b/advisories/unreviewed/2022/05/GHSA-xfgm-rcpf-gf3q/GHSA-xfgm-rcpf-gf3q.json index a3c2245bf67..d5982554f37 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfgm-rcpf-gf3q/GHSA-xfgm-rcpf-gf3q.json +++ b/advisories/unreviewed/2022/05/GHSA-xfgm-rcpf-gf3q/GHSA-xfgm-rcpf-gf3q.json @@ -7,12 +7,8 @@ "CVE-2010-0727" ], "details": "The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a (1) GFS or (2) GFS2 filesystem, and then changing this file's permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xfj2-7ff5-qr45/GHSA-xfj2-7ff5-qr45.json b/advisories/unreviewed/2022/05/GHSA-xfj2-7ff5-qr45/GHSA-xfj2-7ff5-qr45.json index 6a0f69bb541..976573b8d0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfj2-7ff5-qr45/GHSA-xfj2-7ff5-qr45.json +++ b/advisories/unreviewed/2022/05/GHSA-xfj2-7ff5-qr45/GHSA-xfj2-7ff5-qr45.json @@ -7,12 +7,8 @@ "CVE-2010-0517" ], "details": "Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with M-JPEG encoding, which causes QuickTime to calculate a buffer size using height and width fields, but to use a different field to control the length of a copy operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xfjh-7pm8-fr99/GHSA-xfjh-7pm8-fr99.json b/advisories/unreviewed/2022/05/GHSA-xfjh-7pm8-fr99/GHSA-xfjh-7pm8-fr99.json index d90587e9302..b265f01df16 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfjh-7pm8-fr99/GHSA-xfjh-7pm8-fr99.json +++ b/advisories/unreviewed/2022/05/GHSA-xfjh-7pm8-fr99/GHSA-xfjh-7pm8-fr99.json @@ -7,12 +7,8 @@ "CVE-2010-0482" ], "details": "The kernel in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate relocation sections of image files, which allows local users to cause a denial of service (reboot) via a crafted file, aka \"Windows Kernel Malformed Image Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xfr4-984j-rh45/GHSA-xfr4-984j-rh45.json b/advisories/unreviewed/2022/05/GHSA-xfr4-984j-rh45/GHSA-xfr4-984j-rh45.json index 1f279670e2a..8d9e326ed7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfr4-984j-rh45/GHSA-xfr4-984j-rh45.json +++ b/advisories/unreviewed/2022/05/GHSA-xfr4-984j-rh45/GHSA-xfr4-984j-rh45.json @@ -7,12 +7,8 @@ "CVE-2010-0043" ], "details": "ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted TIFF image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg7c-hpj9-r697/GHSA-xg7c-hpj9-r697.json b/advisories/unreviewed/2022/05/GHSA-xg7c-hpj9-r697/GHSA-xg7c-hpj9-r697.json index 7ce155707e3..170e3f9e67b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg7c-hpj9-r697/GHSA-xg7c-hpj9-r697.json +++ b/advisories/unreviewed/2022/05/GHSA-xg7c-hpj9-r697/GHSA-xg7c-hpj9-r697.json @@ -7,12 +7,8 @@ "CVE-2010-0038" ], "details": "Recovery Mode in Apple iPhone OS 1.0 through 3.1.2, and iPhone OS for iPod touch 1.1 through 3.1.2, allows physically proximate attackers to bypass device locking, and read or modify arbitrary data, via a USB control message that triggers memory corruption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xghm-ffg2-3jq3/GHSA-xghm-ffg2-3jq3.json b/advisories/unreviewed/2022/05/GHSA-xghm-ffg2-3jq3/GHSA-xghm-ffg2-3jq3.json index dfab42a0ddd..cb7af01fa86 100644 --- a/advisories/unreviewed/2022/05/GHSA-xghm-ffg2-3jq3/GHSA-xghm-ffg2-3jq3.json +++ b/advisories/unreviewed/2022/05/GHSA-xghm-ffg2-3jq3/GHSA-xghm-ffg2-3jq3.json @@ -7,12 +7,8 @@ "CVE-2010-0681" ], "details": "ZeusCMS 0.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request for admin/backup.sql.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xh4c-c9p9-cjx3/GHSA-xh4c-c9p9-cjx3.json b/advisories/unreviewed/2022/05/GHSA-xh4c-c9p9-cjx3/GHSA-xh4c-c9p9-cjx3.json index 8336d4975af..dd3cbb3c199 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh4c-c9p9-cjx3/GHSA-xh4c-c9p9-cjx3.json +++ b/advisories/unreviewed/2022/05/GHSA-xh4c-c9p9-cjx3/GHSA-xh4c-c9p9-cjx3.json @@ -7,12 +7,8 @@ "CVE-2010-0693" ], "details": "SQL injection vulnerability in products.php in CommodityRentals Trade Manager Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xh85-x2mp-5m6p/GHSA-xh85-x2mp-5m6p.json b/advisories/unreviewed/2022/05/GHSA-xh85-x2mp-5m6p/GHSA-xh85-x2mp-5m6p.json index bd3e1f8a5a1..4e00c825212 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh85-x2mp-5m6p/GHSA-xh85-x2mp-5m6p.json +++ b/advisories/unreviewed/2022/05/GHSA-xh85-x2mp-5m6p/GHSA-xh85-x2mp-5m6p.json @@ -7,12 +7,8 @@ "CVE-2010-0428" ], "details": "libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj8q-vqrm-hvqr/GHSA-xj8q-vqrm-hvqr.json b/advisories/unreviewed/2022/05/GHSA-xj8q-vqrm-hvqr/GHSA-xj8q-vqrm-hvqr.json index 96c6431ccdf..c3d743aa016 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj8q-vqrm-hvqr/GHSA-xj8q-vqrm-hvqr.json +++ b/advisories/unreviewed/2022/05/GHSA-xj8q-vqrm-hvqr/GHSA-xj8q-vqrm-hvqr.json @@ -7,12 +7,8 @@ "CVE-2010-0817" ], "details": "Cross-site scripting (XSS) vulnerability in _layouts/help.aspx in Microsoft SharePoint Server 2007 12.0.0.6421 and possibly earlier, and SharePoint Services 3.0 SP1 and SP2, versions, allows remote attackers to inject arbitrary web script or HTML via the cid0 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj8x-pf8g-x973/GHSA-xj8x-pf8g-x973.json b/advisories/unreviewed/2022/05/GHSA-xj8x-pf8g-x973/GHSA-xj8x-pf8g-x973.json index 238fdc7f0bb..3d3fe1a8c66 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj8x-pf8g-x973/GHSA-xj8x-pf8g-x973.json +++ b/advisories/unreviewed/2022/05/GHSA-xj8x-pf8g-x973/GHSA-xj8x-pf8g-x973.json @@ -7,12 +7,8 @@ "CVE-2009-5117" ], "details": "The Web Post Protection feature in McAfee Host Data Loss Prevention (DLP) 3.x before 3.0.100.10 and 9.x before 9.0.0.422, when HTTP Capture mode is enabled, allows local users to obtain sensitive information from web traffic by reading unspecified files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xjcv-f3gw-h9m2/GHSA-xjcv-f3gw-h9m2.json b/advisories/unreviewed/2022/05/GHSA-xjcv-f3gw-h9m2/GHSA-xjcv-f3gw-h9m2.json index f738a01a518..4e3bdaa7432 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjcv-f3gw-h9m2/GHSA-xjcv-f3gw-h9m2.json +++ b/advisories/unreviewed/2022/05/GHSA-xjcv-f3gw-h9m2/GHSA-xjcv-f3gw-h9m2.json @@ -7,12 +7,8 @@ "CVE-2010-0839" ], "details": "Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xjfx-xwf6-5c7w/GHSA-xjfx-xwf6-5c7w.json b/advisories/unreviewed/2022/05/GHSA-xjfx-xwf6-5c7w/GHSA-xjfx-xwf6-5c7w.json index 2fca1b126db..a93007c9b43 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjfx-xwf6-5c7w/GHSA-xjfx-xwf6-5c7w.json +++ b/advisories/unreviewed/2022/05/GHSA-xjfx-xwf6-5c7w/GHSA-xjfx-xwf6-5c7w.json @@ -7,12 +7,8 @@ "CVE-2010-0098" ], "details": "ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xjj5-69gv-xxqg/GHSA-xjj5-69gv-xxqg.json b/advisories/unreviewed/2022/05/GHSA-xjj5-69gv-xxqg/GHSA-xjj5-69gv-xxqg.json index 6ed2bad53c6..11289cdab0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjj5-69gv-xxqg/GHSA-xjj5-69gv-xxqg.json +++ b/advisories/unreviewed/2022/05/GHSA-xjj5-69gv-xxqg/GHSA-xjj5-69gv-xxqg.json @@ -7,12 +7,8 @@ "CVE-2010-0849" ], "details": "Unspecified vulnerability in the Java 2D component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a heap-based buffer overflow in a decoding routine used by the JPEGImageDecoderImpl interface, which allows code execution via a crafted JPEG image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xpcm-5q5j-h76x/GHSA-xpcm-5q5j-h76x.json b/advisories/unreviewed/2022/05/GHSA-xpcm-5q5j-h76x/GHSA-xpcm-5q5j-h76x.json index d8740519525..56e05298335 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpcm-5q5j-h76x/GHSA-xpcm-5q5j-h76x.json +++ b/advisories/unreviewed/2022/05/GHSA-xpcm-5q5j-h76x/GHSA-xpcm-5q5j-h76x.json @@ -7,12 +7,8 @@ "CVE-2010-0306" ], "details": "The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) to restrict instruction execution, which allows guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch, a related issue to CVE-2010-0298.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xppx-r8rj-fw45/GHSA-xppx-r8rj-fw45.json b/advisories/unreviewed/2022/05/GHSA-xppx-r8rj-fw45/GHSA-xppx-r8rj-fw45.json index 51a370d7ff3..2e8db466c3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xppx-r8rj-fw45/GHSA-xppx-r8rj-fw45.json +++ b/advisories/unreviewed/2022/05/GHSA-xppx-r8rj-fw45/GHSA-xppx-r8rj-fw45.json @@ -7,12 +7,8 @@ "CVE-2010-0547" ], "details": "client/mount.cifs.c in mount.cifs in smbfs in Samba 3.4.5 and earlier does not verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqj5-jf43-pwhr/GHSA-xqj5-jf43-pwhr.json b/advisories/unreviewed/2022/05/GHSA-xqj5-jf43-pwhr/GHSA-xqj5-jf43-pwhr.json index 3714a30d280..01dd0346363 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqj5-jf43-pwhr/GHSA-xqj5-jf43-pwhr.json +++ b/advisories/unreviewed/2022/05/GHSA-xqj5-jf43-pwhr/GHSA-xqj5-jf43-pwhr.json @@ -7,12 +7,8 @@ "CVE-2010-0843" ], "details": "Unspecified vulnerability in the Sound component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is related to XNewPtr and improper handling of an integer parameter when allocating heap memory in the com.sun.media.sound libraries, which allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -156,9 +152,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xr5q-3f3c-4cmf/GHSA-xr5q-3f3c-4cmf.json b/advisories/unreviewed/2022/05/GHSA-xr5q-3f3c-4cmf/GHSA-xr5q-3f3c-4cmf.json index 805cf9ec662..3800c329c83 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr5q-3f3c-4cmf/GHSA-xr5q-3f3c-4cmf.json +++ b/advisories/unreviewed/2022/05/GHSA-xr5q-3f3c-4cmf/GHSA-xr5q-3f3c-4cmf.json @@ -7,12 +7,8 @@ "CVE-2010-0041" ], "details": "ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted BMP image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xrfj-rj8v-v2j3/GHSA-xrfj-rj8v-v2j3.json b/advisories/unreviewed/2022/05/GHSA-xrfj-rj8v-v2j3/GHSA-xrfj-rj8v-v2j3.json index f93bd1ea0bf..f6280675b60 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrfj-rj8v-v2j3/GHSA-xrfj-rj8v-v2j3.json +++ b/advisories/unreviewed/2022/05/GHSA-xrfj-rj8v-v2j3/GHSA-xrfj-rj8v-v2j3.json @@ -7,12 +7,8 @@ "CVE-2010-0114" ], "details": "fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote attackers to bypass intended restrictions on report generation, overwrite arbitrary PHP scripts, and execute arbitrary code via a crafted request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xrp6-5g58-699g/GHSA-xrp6-5g58-699g.json b/advisories/unreviewed/2022/05/GHSA-xrp6-5g58-699g/GHSA-xrp6-5g58-699g.json index b05e919d6b9..01d3d087070 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrp6-5g58-699g/GHSA-xrp6-5g58-699g.json +++ b/advisories/unreviewed/2022/05/GHSA-xrp6-5g58-699g/GHSA-xrp6-5g58-699g.json @@ -7,12 +7,8 @@ "CVE-2010-0469" ], "details": "SQL injection vulnerability in Files2Links F2L 3000 appliance 4.0.0, and possibly other versions and models, allows remote attackers to execute arbitrary SQL commands via unspecified parameters to the login page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xv3r-wcc2-gmq8/GHSA-xv3r-wcc2-gmq8.json b/advisories/unreviewed/2022/05/GHSA-xv3r-wcc2-gmq8/GHSA-xv3r-wcc2-gmq8.json index 561f531799c..f142b939b59 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv3r-wcc2-gmq8/GHSA-xv3r-wcc2-gmq8.json +++ b/advisories/unreviewed/2022/05/GHSA-xv3r-wcc2-gmq8/GHSA-xv3r-wcc2-gmq8.json @@ -7,12 +7,8 @@ "CVE-2010-0654" ], "details": "Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 permit cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote attackers to obtain sensitive information via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xv4p-4459-7rgr/GHSA-xv4p-4459-7rgr.json b/advisories/unreviewed/2022/05/GHSA-xv4p-4459-7rgr/GHSA-xv4p-4459-7rgr.json index 5ac7adb77bf..4beeefa63d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv4p-4459-7rgr/GHSA-xv4p-4459-7rgr.json +++ b/advisories/unreviewed/2022/05/GHSA-xv4p-4459-7rgr/GHSA-xv4p-4459-7rgr.json @@ -7,12 +7,8 @@ "CVE-2010-0274" ], "details": "Unspecified vulnerability in the Edit Contact scene in Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 has unknown impact and attack vectors, aka SPR LSHR7TBLY5.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xv92-wq9x-wgm4/GHSA-xv92-wq9x-wgm4.json b/advisories/unreviewed/2022/05/GHSA-xv92-wq9x-wgm4/GHSA-xv92-wq9x-wgm4.json index b81035719e2..4d967b3a6ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv92-wq9x-wgm4/GHSA-xv92-wq9x-wgm4.json +++ b/advisories/unreviewed/2022/05/GHSA-xv92-wq9x-wgm4/GHSA-xv92-wq9x-wgm4.json @@ -7,12 +7,8 @@ "CVE-2010-0286" ], "details": "Unspecified vulnerability in the OpenID Identity Authentication extension in TYPO3 4.3.0 allows remote attackers to bypass authentication and gain access to a backend user account via unknown attack vectors in which both the attacker and victim have an OpenID provider that discards identities during authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xv9p-fx29-877q/GHSA-xv9p-fx29-877q.json b/advisories/unreviewed/2022/05/GHSA-xv9p-fx29-877q/GHSA-xv9p-fx29-877q.json index 41fcf2cb236..e784de2a5cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv9p-fx29-877q/GHSA-xv9p-fx29-877q.json +++ b/advisories/unreviewed/2022/05/GHSA-xv9p-fx29-877q/GHSA-xv9p-fx29-877q.json @@ -7,12 +7,8 @@ "CVE-2010-0583" ], "details": "Memory leak in the H.323 implementation in Cisco IOS 12.1 through 12.4, and 15.0M before 15.0(1)M1, allows remote attackers to cause a denial of service (memory consumption and device reload) via malformed H.323 packets, aka Bug ID CSCtb93855.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvv2-rghp-v26j/GHSA-xvv2-rghp-v26j.json b/advisories/unreviewed/2022/05/GHSA-xvv2-rghp-v26j/GHSA-xvv2-rghp-v26j.json index 71e486a0513..ffb07e16204 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvv2-rghp-v26j/GHSA-xvv2-rghp-v26j.json +++ b/advisories/unreviewed/2022/05/GHSA-xvv2-rghp-v26j/GHSA-xvv2-rghp-v26j.json @@ -7,12 +7,8 @@ "CVE-2009-5122" ], "details": "The Personal Email Manager component in Websense Email Security before 7.2 allows remote attackers to obtain potentially sensitive information from the JBoss status page via an unspecified query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw78-vx8x-r728/GHSA-xw78-vx8x-r728.json b/advisories/unreviewed/2022/05/GHSA-xw78-vx8x-r728/GHSA-xw78-vx8x-r728.json index 9b1988560e9..f8eda9f580c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw78-vx8x-r728/GHSA-xw78-vx8x-r728.json +++ b/advisories/unreviewed/2022/05/GHSA-xw78-vx8x-r728/GHSA-xw78-vx8x-r728.json @@ -7,12 +7,8 @@ "CVE-2010-0289" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25c allow remote attackers to hijack the authentication of administrators for requests that modify access control rules, and other unspecified requests, via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xwmf-vq46-mhwp/GHSA-xwmf-vq46-mhwp.json b/advisories/unreviewed/2022/05/GHSA-xwmf-vq46-mhwp/GHSA-xwmf-vq46-mhwp.json index 3b9ae674e64..2d98eed1e1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwmf-vq46-mhwp/GHSA-xwmf-vq46-mhwp.json +++ b/advisories/unreviewed/2022/05/GHSA-xwmf-vq46-mhwp/GHSA-xwmf-vq46-mhwp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xxv4-g7pv-f62m/GHSA-xxv4-g7pv-f62m.json b/advisories/unreviewed/2022/05/GHSA-xxv4-g7pv-f62m/GHSA-xxv4-g7pv-f62m.json index b2d16c0988b..64dc408cdab 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxv4-g7pv-f62m/GHSA-xxv4-g7pv-f62m.json +++ b/advisories/unreviewed/2022/05/GHSA-xxv4-g7pv-f62m/GHSA-xxv4-g7pv-f62m.json @@ -7,12 +7,8 @@ "CVE-2010-0233" ], "details": "Double free vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows local users to gain privileges via a crafted application, aka \"Windows Kernel Double Free Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-rj75-2px6-36w6/GHSA-rj75-2px6-36w6.json b/advisories/unreviewed/2022/09/GHSA-rj75-2px6-36w6/GHSA-rj75-2px6-36w6.json index 4ad9f255ac9..8b42318a982 100644 --- a/advisories/unreviewed/2022/09/GHSA-rj75-2px6-36w6/GHSA-rj75-2px6-36w6.json +++ b/advisories/unreviewed/2022/09/GHSA-rj75-2px6-36w6/GHSA-rj75-2px6-36w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-78x9-jhxm-553x/GHSA-78x9-jhxm-553x.json b/advisories/unreviewed/2022/11/GHSA-78x9-jhxm-553x/GHSA-78x9-jhxm-553x.json index 61ad4d3fe71..55c3c487bef 100644 --- a/advisories/unreviewed/2022/11/GHSA-78x9-jhxm-553x/GHSA-78x9-jhxm-553x.json +++ b/advisories/unreviewed/2022/11/GHSA-78x9-jhxm-553x/GHSA-78x9-jhxm-553x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-2xhc-425v-mmxp/GHSA-2xhc-425v-mmxp.json b/advisories/unreviewed/2023/01/GHSA-2xhc-425v-mmxp/GHSA-2xhc-425v-mmxp.json index 18b2b239e62..33deab7926f 100644 --- a/advisories/unreviewed/2023/01/GHSA-2xhc-425v-mmxp/GHSA-2xhc-425v-mmxp.json +++ b/advisories/unreviewed/2023/01/GHSA-2xhc-425v-mmxp/GHSA-2xhc-425v-mmxp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-3f6q-pc55-vgqv/GHSA-3f6q-pc55-vgqv.json b/advisories/unreviewed/2023/01/GHSA-3f6q-pc55-vgqv/GHSA-3f6q-pc55-vgqv.json index fbf5be0a3b2..8a759a8ae35 100644 --- a/advisories/unreviewed/2023/01/GHSA-3f6q-pc55-vgqv/GHSA-3f6q-pc55-vgqv.json +++ b/advisories/unreviewed/2023/01/GHSA-3f6q-pc55-vgqv/GHSA-3f6q-pc55-vgqv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-5w78-c46h-gqxq/GHSA-5w78-c46h-gqxq.json b/advisories/unreviewed/2023/01/GHSA-5w78-c46h-gqxq/GHSA-5w78-c46h-gqxq.json index ccfbd0c358f..950741ca9c0 100644 --- a/advisories/unreviewed/2023/01/GHSA-5w78-c46h-gqxq/GHSA-5w78-c46h-gqxq.json +++ b/advisories/unreviewed/2023/01/GHSA-5w78-c46h-gqxq/GHSA-5w78-c46h-gqxq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-7884-ggpr-27rj/GHSA-7884-ggpr-27rj.json b/advisories/unreviewed/2023/01/GHSA-7884-ggpr-27rj/GHSA-7884-ggpr-27rj.json index d77a75a0235..94880a42835 100644 --- a/advisories/unreviewed/2023/01/GHSA-7884-ggpr-27rj/GHSA-7884-ggpr-27rj.json +++ b/advisories/unreviewed/2023/01/GHSA-7884-ggpr-27rj/GHSA-7884-ggpr-27rj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-7fx8-7jc6-6whx/GHSA-7fx8-7jc6-6whx.json b/advisories/unreviewed/2023/01/GHSA-7fx8-7jc6-6whx/GHSA-7fx8-7jc6-6whx.json index 5f477f31e7b..d2a598282b2 100644 --- a/advisories/unreviewed/2023/01/GHSA-7fx8-7jc6-6whx/GHSA-7fx8-7jc6-6whx.json +++ b/advisories/unreviewed/2023/01/GHSA-7fx8-7jc6-6whx/GHSA-7fx8-7jc6-6whx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-87ww-8m9q-337f/GHSA-87ww-8m9q-337f.json b/advisories/unreviewed/2023/01/GHSA-87ww-8m9q-337f/GHSA-87ww-8m9q-337f.json index 89323ef0da2..ea1eafa549b 100644 --- a/advisories/unreviewed/2023/01/GHSA-87ww-8m9q-337f/GHSA-87ww-8m9q-337f.json +++ b/advisories/unreviewed/2023/01/GHSA-87ww-8m9q-337f/GHSA-87ww-8m9q-337f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cmwf-3gwf-hmjq/GHSA-cmwf-3gwf-hmjq.json b/advisories/unreviewed/2023/01/GHSA-cmwf-3gwf-hmjq/GHSA-cmwf-3gwf-hmjq.json index 461ae7db8f1..f895ae8ed81 100644 --- a/advisories/unreviewed/2023/01/GHSA-cmwf-3gwf-hmjq/GHSA-cmwf-3gwf-hmjq.json +++ b/advisories/unreviewed/2023/01/GHSA-cmwf-3gwf-hmjq/GHSA-cmwf-3gwf-hmjq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-g2qg-fxj7-jg27/GHSA-g2qg-fxj7-jg27.json b/advisories/unreviewed/2023/01/GHSA-g2qg-fxj7-jg27/GHSA-g2qg-fxj7-jg27.json index 12ac931cc4d..40cf4bf73b1 100644 --- a/advisories/unreviewed/2023/01/GHSA-g2qg-fxj7-jg27/GHSA-g2qg-fxj7-jg27.json +++ b/advisories/unreviewed/2023/01/GHSA-g2qg-fxj7-jg27/GHSA-g2qg-fxj7-jg27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-gm54-wj7g-5mp3/GHSA-gm54-wj7g-5mp3.json b/advisories/unreviewed/2023/01/GHSA-gm54-wj7g-5mp3/GHSA-gm54-wj7g-5mp3.json index f2c0a31a731..0bd5339c1f0 100644 --- a/advisories/unreviewed/2023/01/GHSA-gm54-wj7g-5mp3/GHSA-gm54-wj7g-5mp3.json +++ b/advisories/unreviewed/2023/01/GHSA-gm54-wj7g-5mp3/GHSA-gm54-wj7g-5mp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-h6r5-hjf4-84m4/GHSA-h6r5-hjf4-84m4.json b/advisories/unreviewed/2023/01/GHSA-h6r5-hjf4-84m4/GHSA-h6r5-hjf4-84m4.json index fcc3f40e303..1743ee5a2c7 100644 --- a/advisories/unreviewed/2023/01/GHSA-h6r5-hjf4-84m4/GHSA-h6r5-hjf4-84m4.json +++ b/advisories/unreviewed/2023/01/GHSA-h6r5-hjf4-84m4/GHSA-h6r5-hjf4-84m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-mj4m-mqjg-cm54/GHSA-mj4m-mqjg-cm54.json b/advisories/unreviewed/2023/01/GHSA-mj4m-mqjg-cm54/GHSA-mj4m-mqjg-cm54.json index 914be6d0578..d3503de0113 100644 --- a/advisories/unreviewed/2023/01/GHSA-mj4m-mqjg-cm54/GHSA-mj4m-mqjg-cm54.json +++ b/advisories/unreviewed/2023/01/GHSA-mj4m-mqjg-cm54/GHSA-mj4m-mqjg-cm54.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-p983-rj5f-9qwf/GHSA-p983-rj5f-9qwf.json b/advisories/unreviewed/2023/01/GHSA-p983-rj5f-9qwf/GHSA-p983-rj5f-9qwf.json index 857c607dbf4..4cc41b885d7 100644 --- a/advisories/unreviewed/2023/01/GHSA-p983-rj5f-9qwf/GHSA-p983-rj5f-9qwf.json +++ b/advisories/unreviewed/2023/01/GHSA-p983-rj5f-9qwf/GHSA-p983-rj5f-9qwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-pp35-jc5m-6rpv/GHSA-pp35-jc5m-6rpv.json b/advisories/unreviewed/2023/01/GHSA-pp35-jc5m-6rpv/GHSA-pp35-jc5m-6rpv.json index f76e7408782..12babdb35cf 100644 --- a/advisories/unreviewed/2023/01/GHSA-pp35-jc5m-6rpv/GHSA-pp35-jc5m-6rpv.json +++ b/advisories/unreviewed/2023/01/GHSA-pp35-jc5m-6rpv/GHSA-pp35-jc5m-6rpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-q2vp-hgh9-qp96/GHSA-q2vp-hgh9-qp96.json b/advisories/unreviewed/2023/01/GHSA-q2vp-hgh9-qp96/GHSA-q2vp-hgh9-qp96.json index bb08187026a..9e9bc742fa3 100644 --- a/advisories/unreviewed/2023/01/GHSA-q2vp-hgh9-qp96/GHSA-q2vp-hgh9-qp96.json +++ b/advisories/unreviewed/2023/01/GHSA-q2vp-hgh9-qp96/GHSA-q2vp-hgh9-qp96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-q8r9-rm68-q588/GHSA-q8r9-rm68-q588.json b/advisories/unreviewed/2023/01/GHSA-q8r9-rm68-q588/GHSA-q8r9-rm68-q588.json index a422c428138..b0e4dd62e67 100644 --- a/advisories/unreviewed/2023/01/GHSA-q8r9-rm68-q588/GHSA-q8r9-rm68-q588.json +++ b/advisories/unreviewed/2023/01/GHSA-q8r9-rm68-q588/GHSA-q8r9-rm68-q588.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-qhx4-r2q6-6pv6/GHSA-qhx4-r2q6-6pv6.json b/advisories/unreviewed/2023/01/GHSA-qhx4-r2q6-6pv6/GHSA-qhx4-r2q6-6pv6.json index d325c1250dc..a7eeed9a16f 100644 --- a/advisories/unreviewed/2023/01/GHSA-qhx4-r2q6-6pv6/GHSA-qhx4-r2q6-6pv6.json +++ b/advisories/unreviewed/2023/01/GHSA-qhx4-r2q6-6pv6/GHSA-qhx4-r2q6-6pv6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-2v4g-w3qw-prh4/GHSA-2v4g-w3qw-prh4.json b/advisories/unreviewed/2023/03/GHSA-2v4g-w3qw-prh4/GHSA-2v4g-w3qw-prh4.json index 8495b528bc2..18fe95a3bb6 100644 --- a/advisories/unreviewed/2023/03/GHSA-2v4g-w3qw-prh4/GHSA-2v4g-w3qw-prh4.json +++ b/advisories/unreviewed/2023/03/GHSA-2v4g-w3qw-prh4/GHSA-2v4g-w3qw-prh4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-32w3-98f9-fhjm/GHSA-32w3-98f9-fhjm.json b/advisories/unreviewed/2023/03/GHSA-32w3-98f9-fhjm/GHSA-32w3-98f9-fhjm.json index d2e3c48e4b3..457f4bd73f3 100644 --- a/advisories/unreviewed/2023/03/GHSA-32w3-98f9-fhjm/GHSA-32w3-98f9-fhjm.json +++ b/advisories/unreviewed/2023/03/GHSA-32w3-98f9-fhjm/GHSA-32w3-98f9-fhjm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-hmv7-wgxc-xvjj/GHSA-hmv7-wgxc-xvjj.json b/advisories/unreviewed/2023/03/GHSA-hmv7-wgxc-xvjj/GHSA-hmv7-wgxc-xvjj.json index 0217db9985b..2662ac43394 100644 --- a/advisories/unreviewed/2023/03/GHSA-hmv7-wgxc-xvjj/GHSA-hmv7-wgxc-xvjj.json +++ b/advisories/unreviewed/2023/03/GHSA-hmv7-wgxc-xvjj/GHSA-hmv7-wgxc-xvjj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-hq4v-9j7v-jcvr/GHSA-hq4v-9j7v-jcvr.json b/advisories/unreviewed/2023/03/GHSA-hq4v-9j7v-jcvr/GHSA-hq4v-9j7v-jcvr.json index 8d19548ad79..16fa237bcfe 100644 --- a/advisories/unreviewed/2023/03/GHSA-hq4v-9j7v-jcvr/GHSA-hq4v-9j7v-jcvr.json +++ b/advisories/unreviewed/2023/03/GHSA-hq4v-9j7v-jcvr/GHSA-hq4v-9j7v-jcvr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-q3c4-7524-h583/GHSA-q3c4-7524-h583.json b/advisories/unreviewed/2023/03/GHSA-q3c4-7524-h583/GHSA-q3c4-7524-h583.json index 23e92f66de9..7bf19455dd2 100644 --- a/advisories/unreviewed/2023/03/GHSA-q3c4-7524-h583/GHSA-q3c4-7524-h583.json +++ b/advisories/unreviewed/2023/03/GHSA-q3c4-7524-h583/GHSA-q3c4-7524-h583.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-vm76-j474-w5fr/GHSA-vm76-j474-w5fr.json b/advisories/unreviewed/2023/03/GHSA-vm76-j474-w5fr/GHSA-vm76-j474-w5fr.json index f295bdd1334..62e10bc1968 100644 --- a/advisories/unreviewed/2023/03/GHSA-vm76-j474-w5fr/GHSA-vm76-j474-w5fr.json +++ b/advisories/unreviewed/2023/03/GHSA-vm76-j474-w5fr/GHSA-vm76-j474-w5fr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-29j9-xmmx-g9r4/GHSA-29j9-xmmx-g9r4.json b/advisories/unreviewed/2023/04/GHSA-29j9-xmmx-g9r4/GHSA-29j9-xmmx-g9r4.json index 8eac951bb40..683d8b12f37 100644 --- a/advisories/unreviewed/2023/04/GHSA-29j9-xmmx-g9r4/GHSA-29j9-xmmx-g9r4.json +++ b/advisories/unreviewed/2023/04/GHSA-29j9-xmmx-g9r4/GHSA-29j9-xmmx-g9r4.json @@ -7,12 +7,8 @@ "CVE-2023-26937" ], "details": "Buffer Overflow vulnerability found in XPDF v.4.04 allows an attacker to cause a Denial of Service via GString::resize located in goo/GString.cc", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-c7xr-8x4j-9789/GHSA-c7xr-8x4j-9789.json b/advisories/unreviewed/2023/04/GHSA-c7xr-8x4j-9789/GHSA-c7xr-8x4j-9789.json index 585e0e91868..22f421de4ff 100644 --- a/advisories/unreviewed/2023/04/GHSA-c7xr-8x4j-9789/GHSA-c7xr-8x4j-9789.json +++ b/advisories/unreviewed/2023/04/GHSA-c7xr-8x4j-9789/GHSA-c7xr-8x4j-9789.json @@ -7,12 +7,8 @@ "CVE-2023-26938" ], "details": "Buffer Overflow vulnerability found in XPDF v.4.04 allows an attacker to cause a Denial of Service viaSharedFile::readBlock located in goo/gfile.cc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-cxxh-7h4c-gvgj/GHSA-cxxh-7h4c-gvgj.json b/advisories/unreviewed/2023/04/GHSA-cxxh-7h4c-gvgj/GHSA-cxxh-7h4c-gvgj.json index ba9ef270e8f..715fd7f16d7 100644 --- a/advisories/unreviewed/2023/04/GHSA-cxxh-7h4c-gvgj/GHSA-cxxh-7h4c-gvgj.json +++ b/advisories/unreviewed/2023/04/GHSA-cxxh-7h4c-gvgj/GHSA-cxxh-7h4c-gvgj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-hcfw-vh28-wc58/GHSA-hcfw-vh28-wc58.json b/advisories/unreviewed/2023/04/GHSA-hcfw-vh28-wc58/GHSA-hcfw-vh28-wc58.json index 4ac9b35dee7..be8ed48e640 100644 --- a/advisories/unreviewed/2023/04/GHSA-hcfw-vh28-wc58/GHSA-hcfw-vh28-wc58.json +++ b/advisories/unreviewed/2023/04/GHSA-hcfw-vh28-wc58/GHSA-hcfw-vh28-wc58.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-jw72-cmc9-886w/GHSA-jw72-cmc9-886w.json b/advisories/unreviewed/2023/04/GHSA-jw72-cmc9-886w/GHSA-jw72-cmc9-886w.json index c9f96bebea3..f1179666767 100644 --- a/advisories/unreviewed/2023/04/GHSA-jw72-cmc9-886w/GHSA-jw72-cmc9-886w.json +++ b/advisories/unreviewed/2023/04/GHSA-jw72-cmc9-886w/GHSA-jw72-cmc9-886w.json @@ -7,12 +7,8 @@ "CVE-2023-26935" ], "details": "Buffer Overflow vulnerability found in XPDF v.4.04 allows an attacker to cause a Denial of Service via SharedFile::readBlock at /xpdf/Stream.cc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-rqfx-p88v-f7ff/GHSA-rqfx-p88v-f7ff.json b/advisories/unreviewed/2023/04/GHSA-rqfx-p88v-f7ff/GHSA-rqfx-p88v-f7ff.json index 888c1b685f6..f1fa759216f 100644 --- a/advisories/unreviewed/2023/04/GHSA-rqfx-p88v-f7ff/GHSA-rqfx-p88v-f7ff.json +++ b/advisories/unreviewed/2023/04/GHSA-rqfx-p88v-f7ff/GHSA-rqfx-p88v-f7ff.json @@ -7,12 +7,8 @@ "CVE-2023-26936" ], "details": "Buffer Overflow vulnerability found in XPDF v.4.04 allows an attacker to cause a Denial of Service via gmalloc in gmem.cc", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-22xq-5w5r-xjvc/GHSA-22xq-5w5r-xjvc.json b/advisories/unreviewed/2023/12/GHSA-22xq-5w5r-xjvc/GHSA-22xq-5w5r-xjvc.json index 40313e26bc2..495b8dcd2b5 100644 --- a/advisories/unreviewed/2023/12/GHSA-22xq-5w5r-xjvc/GHSA-22xq-5w5r-xjvc.json +++ b/advisories/unreviewed/2023/12/GHSA-22xq-5w5r-xjvc/GHSA-22xq-5w5r-xjvc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2425-vp2m-7vgq/GHSA-2425-vp2m-7vgq.json b/advisories/unreviewed/2023/12/GHSA-2425-vp2m-7vgq/GHSA-2425-vp2m-7vgq.json index efe2cdab49a..bdf4283562e 100644 --- a/advisories/unreviewed/2023/12/GHSA-2425-vp2m-7vgq/GHSA-2425-vp2m-7vgq.json +++ b/advisories/unreviewed/2023/12/GHSA-2425-vp2m-7vgq/GHSA-2425-vp2m-7vgq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-24jj-2qmr-wg2p/GHSA-24jj-2qmr-wg2p.json b/advisories/unreviewed/2023/12/GHSA-24jj-2qmr-wg2p/GHSA-24jj-2qmr-wg2p.json index cc309de1678..6c31444f5aa 100644 --- a/advisories/unreviewed/2023/12/GHSA-24jj-2qmr-wg2p/GHSA-24jj-2qmr-wg2p.json +++ b/advisories/unreviewed/2023/12/GHSA-24jj-2qmr-wg2p/GHSA-24jj-2qmr-wg2p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2rf4-76f7-fgvp/GHSA-2rf4-76f7-fgvp.json b/advisories/unreviewed/2023/12/GHSA-2rf4-76f7-fgvp/GHSA-2rf4-76f7-fgvp.json index 9f00a5317e0..8b0bdd4d93e 100644 --- a/advisories/unreviewed/2023/12/GHSA-2rf4-76f7-fgvp/GHSA-2rf4-76f7-fgvp.json +++ b/advisories/unreviewed/2023/12/GHSA-2rf4-76f7-fgvp/GHSA-2rf4-76f7-fgvp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-3439-3gp9-6qx5/GHSA-3439-3gp9-6qx5.json b/advisories/unreviewed/2023/12/GHSA-3439-3gp9-6qx5/GHSA-3439-3gp9-6qx5.json index f3825565957..303995f1d84 100644 --- a/advisories/unreviewed/2023/12/GHSA-3439-3gp9-6qx5/GHSA-3439-3gp9-6qx5.json +++ b/advisories/unreviewed/2023/12/GHSA-3439-3gp9-6qx5/GHSA-3439-3gp9-6qx5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-3hqh-q7j7-8x29/GHSA-3hqh-q7j7-8x29.json b/advisories/unreviewed/2023/12/GHSA-3hqh-q7j7-8x29/GHSA-3hqh-q7j7-8x29.json index 36668079cc4..8875e0ed4c2 100644 --- a/advisories/unreviewed/2023/12/GHSA-3hqh-q7j7-8x29/GHSA-3hqh-q7j7-8x29.json +++ b/advisories/unreviewed/2023/12/GHSA-3hqh-q7j7-8x29/GHSA-3hqh-q7j7-8x29.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-3r8w-fh9f-pf9m/GHSA-3r8w-fh9f-pf9m.json b/advisories/unreviewed/2023/12/GHSA-3r8w-fh9f-pf9m/GHSA-3r8w-fh9f-pf9m.json index 03610928cfe..f18285e8c78 100644 --- a/advisories/unreviewed/2023/12/GHSA-3r8w-fh9f-pf9m/GHSA-3r8w-fh9f-pf9m.json +++ b/advisories/unreviewed/2023/12/GHSA-3r8w-fh9f-pf9m/GHSA-3r8w-fh9f-pf9m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-3x54-hx35-g26f/GHSA-3x54-hx35-g26f.json b/advisories/unreviewed/2023/12/GHSA-3x54-hx35-g26f/GHSA-3x54-hx35-g26f.json index 368fff3ac5e..47100608d7c 100644 --- a/advisories/unreviewed/2023/12/GHSA-3x54-hx35-g26f/GHSA-3x54-hx35-g26f.json +++ b/advisories/unreviewed/2023/12/GHSA-3x54-hx35-g26f/GHSA-3x54-hx35-g26f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-478v-pqpc-fvm9/GHSA-478v-pqpc-fvm9.json b/advisories/unreviewed/2023/12/GHSA-478v-pqpc-fvm9/GHSA-478v-pqpc-fvm9.json index bf5a24e464c..4444d32be89 100644 --- a/advisories/unreviewed/2023/12/GHSA-478v-pqpc-fvm9/GHSA-478v-pqpc-fvm9.json +++ b/advisories/unreviewed/2023/12/GHSA-478v-pqpc-fvm9/GHSA-478v-pqpc-fvm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-48cq-h92p-rwqp/GHSA-48cq-h92p-rwqp.json b/advisories/unreviewed/2023/12/GHSA-48cq-h92p-rwqp/GHSA-48cq-h92p-rwqp.json index c2e040b4670..3dd4aab8d6d 100644 --- a/advisories/unreviewed/2023/12/GHSA-48cq-h92p-rwqp/GHSA-48cq-h92p-rwqp.json +++ b/advisories/unreviewed/2023/12/GHSA-48cq-h92p-rwqp/GHSA-48cq-h92p-rwqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-527j-hqx2-2j3w/GHSA-527j-hqx2-2j3w.json b/advisories/unreviewed/2023/12/GHSA-527j-hqx2-2j3w/GHSA-527j-hqx2-2j3w.json index 0376bffa970..90d85e4d9d3 100644 --- a/advisories/unreviewed/2023/12/GHSA-527j-hqx2-2j3w/GHSA-527j-hqx2-2j3w.json +++ b/advisories/unreviewed/2023/12/GHSA-527j-hqx2-2j3w/GHSA-527j-hqx2-2j3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-59g8-xjfp-rm2m/GHSA-59g8-xjfp-rm2m.json b/advisories/unreviewed/2023/12/GHSA-59g8-xjfp-rm2m/GHSA-59g8-xjfp-rm2m.json index 02bd374b587..a5c78d55e1d 100644 --- a/advisories/unreviewed/2023/12/GHSA-59g8-xjfp-rm2m/GHSA-59g8-xjfp-rm2m.json +++ b/advisories/unreviewed/2023/12/GHSA-59g8-xjfp-rm2m/GHSA-59g8-xjfp-rm2m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-59hf-2q3w-grfv/GHSA-59hf-2q3w-grfv.json b/advisories/unreviewed/2023/12/GHSA-59hf-2q3w-grfv/GHSA-59hf-2q3w-grfv.json index 9554f757eeb..5c720655eb8 100644 --- a/advisories/unreviewed/2023/12/GHSA-59hf-2q3w-grfv/GHSA-59hf-2q3w-grfv.json +++ b/advisories/unreviewed/2023/12/GHSA-59hf-2q3w-grfv/GHSA-59hf-2q3w-grfv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5p2h-52rq-x7jj/GHSA-5p2h-52rq-x7jj.json b/advisories/unreviewed/2023/12/GHSA-5p2h-52rq-x7jj/GHSA-5p2h-52rq-x7jj.json index d9d18c033f1..6a59109a157 100644 --- a/advisories/unreviewed/2023/12/GHSA-5p2h-52rq-x7jj/GHSA-5p2h-52rq-x7jj.json +++ b/advisories/unreviewed/2023/12/GHSA-5p2h-52rq-x7jj/GHSA-5p2h-52rq-x7jj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6336-q33c-4m9j/GHSA-6336-q33c-4m9j.json b/advisories/unreviewed/2023/12/GHSA-6336-q33c-4m9j/GHSA-6336-q33c-4m9j.json index e780c3fc04b..05ee0a32902 100644 --- a/advisories/unreviewed/2023/12/GHSA-6336-q33c-4m9j/GHSA-6336-q33c-4m9j.json +++ b/advisories/unreviewed/2023/12/GHSA-6336-q33c-4m9j/GHSA-6336-q33c-4m9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-666q-7g9j-r6v3/GHSA-666q-7g9j-r6v3.json b/advisories/unreviewed/2023/12/GHSA-666q-7g9j-r6v3/GHSA-666q-7g9j-r6v3.json index 2c3201a2ff2..2010877fc7e 100644 --- a/advisories/unreviewed/2023/12/GHSA-666q-7g9j-r6v3/GHSA-666q-7g9j-r6v3.json +++ b/advisories/unreviewed/2023/12/GHSA-666q-7g9j-r6v3/GHSA-666q-7g9j-r6v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6r46-xr9j-7q78/GHSA-6r46-xr9j-7q78.json b/advisories/unreviewed/2023/12/GHSA-6r46-xr9j-7q78/GHSA-6r46-xr9j-7q78.json index 2a437657972..c716fb41074 100644 --- a/advisories/unreviewed/2023/12/GHSA-6r46-xr9j-7q78/GHSA-6r46-xr9j-7q78.json +++ b/advisories/unreviewed/2023/12/GHSA-6r46-xr9j-7q78/GHSA-6r46-xr9j-7q78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8mw9-p2g7-32fh/GHSA-8mw9-p2g7-32fh.json b/advisories/unreviewed/2023/12/GHSA-8mw9-p2g7-32fh/GHSA-8mw9-p2g7-32fh.json index 9302e40907e..47dc577802a 100644 --- a/advisories/unreviewed/2023/12/GHSA-8mw9-p2g7-32fh/GHSA-8mw9-p2g7-32fh.json +++ b/advisories/unreviewed/2023/12/GHSA-8mw9-p2g7-32fh/GHSA-8mw9-p2g7-32fh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8rw5-qcc7-wjxj/GHSA-8rw5-qcc7-wjxj.json b/advisories/unreviewed/2023/12/GHSA-8rw5-qcc7-wjxj/GHSA-8rw5-qcc7-wjxj.json index 6f770b45254..01d9859df7b 100644 --- a/advisories/unreviewed/2023/12/GHSA-8rw5-qcc7-wjxj/GHSA-8rw5-qcc7-wjxj.json +++ b/advisories/unreviewed/2023/12/GHSA-8rw5-qcc7-wjxj/GHSA-8rw5-qcc7-wjxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8w23-fmjg-p9r9/GHSA-8w23-fmjg-p9r9.json b/advisories/unreviewed/2023/12/GHSA-8w23-fmjg-p9r9/GHSA-8w23-fmjg-p9r9.json index 793c5a7f8b8..02aba682e26 100644 --- a/advisories/unreviewed/2023/12/GHSA-8w23-fmjg-p9r9/GHSA-8w23-fmjg-p9r9.json +++ b/advisories/unreviewed/2023/12/GHSA-8w23-fmjg-p9r9/GHSA-8w23-fmjg-p9r9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c87j-rr9v-p59c/GHSA-c87j-rr9v-p59c.json b/advisories/unreviewed/2023/12/GHSA-c87j-rr9v-p59c/GHSA-c87j-rr9v-p59c.json index 572f3c102a6..5ffa41ddfe9 100644 --- a/advisories/unreviewed/2023/12/GHSA-c87j-rr9v-p59c/GHSA-c87j-rr9v-p59c.json +++ b/advisories/unreviewed/2023/12/GHSA-c87j-rr9v-p59c/GHSA-c87j-rr9v-p59c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cgc2-hg63-pp32/GHSA-cgc2-hg63-pp32.json b/advisories/unreviewed/2023/12/GHSA-cgc2-hg63-pp32/GHSA-cgc2-hg63-pp32.json index ce6283a22fe..9f561deae30 100644 --- a/advisories/unreviewed/2023/12/GHSA-cgc2-hg63-pp32/GHSA-cgc2-hg63-pp32.json +++ b/advisories/unreviewed/2023/12/GHSA-cgc2-hg63-pp32/GHSA-cgc2-hg63-pp32.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-chg5-j9rc-wmww/GHSA-chg5-j9rc-wmww.json b/advisories/unreviewed/2023/12/GHSA-chg5-j9rc-wmww/GHSA-chg5-j9rc-wmww.json index 5f2d0139eda..de681b0a19c 100644 --- a/advisories/unreviewed/2023/12/GHSA-chg5-j9rc-wmww/GHSA-chg5-j9rc-wmww.json +++ b/advisories/unreviewed/2023/12/GHSA-chg5-j9rc-wmww/GHSA-chg5-j9rc-wmww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cxwv-5x4r-whcp/GHSA-cxwv-5x4r-whcp.json b/advisories/unreviewed/2023/12/GHSA-cxwv-5x4r-whcp/GHSA-cxwv-5x4r-whcp.json index 4ed4dffb8d5..0768f476aeb 100644 --- a/advisories/unreviewed/2023/12/GHSA-cxwv-5x4r-whcp/GHSA-cxwv-5x4r-whcp.json +++ b/advisories/unreviewed/2023/12/GHSA-cxwv-5x4r-whcp/GHSA-cxwv-5x4r-whcp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-f83r-24gp-4hph/GHSA-f83r-24gp-4hph.json b/advisories/unreviewed/2023/12/GHSA-f83r-24gp-4hph/GHSA-f83r-24gp-4hph.json index c648b46abca..a8f75b00b1d 100644 --- a/advisories/unreviewed/2023/12/GHSA-f83r-24gp-4hph/GHSA-f83r-24gp-4hph.json +++ b/advisories/unreviewed/2023/12/GHSA-f83r-24gp-4hph/GHSA-f83r-24gp-4hph.json @@ -7,12 +7,8 @@ "CVE-2023-31813" ], "details": "Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-2804. Reason: This record is a duplicate of CVE-2023-2804. Notes: All CVE users should reference CVE-2023-2804 instead of this record. All references and descriptions in this record have been removed to prevent accidental usage.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-fmq4-hhg6-4qrr/GHSA-fmq4-hhg6-4qrr.json b/advisories/unreviewed/2023/12/GHSA-fmq4-hhg6-4qrr/GHSA-fmq4-hhg6-4qrr.json index 681833cefd8..6d4a45fb681 100644 --- a/advisories/unreviewed/2023/12/GHSA-fmq4-hhg6-4qrr/GHSA-fmq4-hhg6-4qrr.json +++ b/advisories/unreviewed/2023/12/GHSA-fmq4-hhg6-4qrr/GHSA-fmq4-hhg6-4qrr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fqcc-8cm3-78jm/GHSA-fqcc-8cm3-78jm.json b/advisories/unreviewed/2023/12/GHSA-fqcc-8cm3-78jm/GHSA-fqcc-8cm3-78jm.json index ff70da9d09c..a067b285cb3 100644 --- a/advisories/unreviewed/2023/12/GHSA-fqcc-8cm3-78jm/GHSA-fqcc-8cm3-78jm.json +++ b/advisories/unreviewed/2023/12/GHSA-fqcc-8cm3-78jm/GHSA-fqcc-8cm3-78jm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fxqj-j899-54mr/GHSA-fxqj-j899-54mr.json b/advisories/unreviewed/2023/12/GHSA-fxqj-j899-54mr/GHSA-fxqj-j899-54mr.json index 04ee88a0e31..3f957d8c5c5 100644 --- a/advisories/unreviewed/2023/12/GHSA-fxqj-j899-54mr/GHSA-fxqj-j899-54mr.json +++ b/advisories/unreviewed/2023/12/GHSA-fxqj-j899-54mr/GHSA-fxqj-j899-54mr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g6j2-wc36-fmcv/GHSA-g6j2-wc36-fmcv.json b/advisories/unreviewed/2023/12/GHSA-g6j2-wc36-fmcv/GHSA-g6j2-wc36-fmcv.json index b7b9b84c203..2bb85d176b3 100644 --- a/advisories/unreviewed/2023/12/GHSA-g6j2-wc36-fmcv/GHSA-g6j2-wc36-fmcv.json +++ b/advisories/unreviewed/2023/12/GHSA-g6j2-wc36-fmcv/GHSA-g6j2-wc36-fmcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g7mr-j745-73x6/GHSA-g7mr-j745-73x6.json b/advisories/unreviewed/2023/12/GHSA-g7mr-j745-73x6/GHSA-g7mr-j745-73x6.json index 30c24b908e9..3f2b02b7fa0 100644 --- a/advisories/unreviewed/2023/12/GHSA-g7mr-j745-73x6/GHSA-g7mr-j745-73x6.json +++ b/advisories/unreviewed/2023/12/GHSA-g7mr-j745-73x6/GHSA-g7mr-j745-73x6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-h43c-5rvg-2rrr/GHSA-h43c-5rvg-2rrr.json b/advisories/unreviewed/2023/12/GHSA-h43c-5rvg-2rrr/GHSA-h43c-5rvg-2rrr.json index e4836e31de1..f7e23841b0c 100644 --- a/advisories/unreviewed/2023/12/GHSA-h43c-5rvg-2rrr/GHSA-h43c-5rvg-2rrr.json +++ b/advisories/unreviewed/2023/12/GHSA-h43c-5rvg-2rrr/GHSA-h43c-5rvg-2rrr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-hmp3-2467-qx2h/GHSA-hmp3-2467-qx2h.json b/advisories/unreviewed/2023/12/GHSA-hmp3-2467-qx2h/GHSA-hmp3-2467-qx2h.json index 49354b7cfea..a279f31c6a8 100644 --- a/advisories/unreviewed/2023/12/GHSA-hmp3-2467-qx2h/GHSA-hmp3-2467-qx2h.json +++ b/advisories/unreviewed/2023/12/GHSA-hmp3-2467-qx2h/GHSA-hmp3-2467-qx2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-j7hx-w9r8-hvcq/GHSA-j7hx-w9r8-hvcq.json b/advisories/unreviewed/2023/12/GHSA-j7hx-w9r8-hvcq/GHSA-j7hx-w9r8-hvcq.json index 1d00d9eab63..e79bede5fdd 100644 --- a/advisories/unreviewed/2023/12/GHSA-j7hx-w9r8-hvcq/GHSA-j7hx-w9r8-hvcq.json +++ b/advisories/unreviewed/2023/12/GHSA-j7hx-w9r8-hvcq/GHSA-j7hx-w9r8-hvcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jj4v-gw85-c5c6/GHSA-jj4v-gw85-c5c6.json b/advisories/unreviewed/2023/12/GHSA-jj4v-gw85-c5c6/GHSA-jj4v-gw85-c5c6.json index d8599cfd221..f46a4cc3a66 100644 --- a/advisories/unreviewed/2023/12/GHSA-jj4v-gw85-c5c6/GHSA-jj4v-gw85-c5c6.json +++ b/advisories/unreviewed/2023/12/GHSA-jj4v-gw85-c5c6/GHSA-jj4v-gw85-c5c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jxmm-4p7f-fp5v/GHSA-jxmm-4p7f-fp5v.json b/advisories/unreviewed/2023/12/GHSA-jxmm-4p7f-fp5v/GHSA-jxmm-4p7f-fp5v.json index 8974832ed94..52acf5a7d6d 100644 --- a/advisories/unreviewed/2023/12/GHSA-jxmm-4p7f-fp5v/GHSA-jxmm-4p7f-fp5v.json +++ b/advisories/unreviewed/2023/12/GHSA-jxmm-4p7f-fp5v/GHSA-jxmm-4p7f-fp5v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-m485-gmr9-jqg3/GHSA-m485-gmr9-jqg3.json b/advisories/unreviewed/2023/12/GHSA-m485-gmr9-jqg3/GHSA-m485-gmr9-jqg3.json index df3c679dfbf..6bea1dc4e18 100644 --- a/advisories/unreviewed/2023/12/GHSA-m485-gmr9-jqg3/GHSA-m485-gmr9-jqg3.json +++ b/advisories/unreviewed/2023/12/GHSA-m485-gmr9-jqg3/GHSA-m485-gmr9-jqg3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-m4gg-844w-9h85/GHSA-m4gg-844w-9h85.json b/advisories/unreviewed/2023/12/GHSA-m4gg-844w-9h85/GHSA-m4gg-844w-9h85.json index 1b18ec26cd9..b498f53c62a 100644 --- a/advisories/unreviewed/2023/12/GHSA-m4gg-844w-9h85/GHSA-m4gg-844w-9h85.json +++ b/advisories/unreviewed/2023/12/GHSA-m4gg-844w-9h85/GHSA-m4gg-844w-9h85.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mfhv-63cw-qm77/GHSA-mfhv-63cw-qm77.json b/advisories/unreviewed/2023/12/GHSA-mfhv-63cw-qm77/GHSA-mfhv-63cw-qm77.json index 79223e9d56f..b091563abb7 100644 --- a/advisories/unreviewed/2023/12/GHSA-mfhv-63cw-qm77/GHSA-mfhv-63cw-qm77.json +++ b/advisories/unreviewed/2023/12/GHSA-mfhv-63cw-qm77/GHSA-mfhv-63cw-qm77.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mvwx-xmwm-v4x2/GHSA-mvwx-xmwm-v4x2.json b/advisories/unreviewed/2023/12/GHSA-mvwx-xmwm-v4x2/GHSA-mvwx-xmwm-v4x2.json index c3d5c13431a..979fd7bc71f 100644 --- a/advisories/unreviewed/2023/12/GHSA-mvwx-xmwm-v4x2/GHSA-mvwx-xmwm-v4x2.json +++ b/advisories/unreviewed/2023/12/GHSA-mvwx-xmwm-v4x2/GHSA-mvwx-xmwm-v4x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-pf46-89f4-fw5m/GHSA-pf46-89f4-fw5m.json b/advisories/unreviewed/2023/12/GHSA-pf46-89f4-fw5m/GHSA-pf46-89f4-fw5m.json index 9e9fec08709..b28497d995d 100644 --- a/advisories/unreviewed/2023/12/GHSA-pf46-89f4-fw5m/GHSA-pf46-89f4-fw5m.json +++ b/advisories/unreviewed/2023/12/GHSA-pf46-89f4-fw5m/GHSA-pf46-89f4-fw5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-pg92-hqjw-q679/GHSA-pg92-hqjw-q679.json b/advisories/unreviewed/2023/12/GHSA-pg92-hqjw-q679/GHSA-pg92-hqjw-q679.json index 2b43684322f..267501418bb 100644 --- a/advisories/unreviewed/2023/12/GHSA-pg92-hqjw-q679/GHSA-pg92-hqjw-q679.json +++ b/advisories/unreviewed/2023/12/GHSA-pg92-hqjw-q679/GHSA-pg92-hqjw-q679.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-q87v-2f9c-89c7/GHSA-q87v-2f9c-89c7.json b/advisories/unreviewed/2023/12/GHSA-q87v-2f9c-89c7/GHSA-q87v-2f9c-89c7.json index 8006de14c87..5982768378f 100644 --- a/advisories/unreviewed/2023/12/GHSA-q87v-2f9c-89c7/GHSA-q87v-2f9c-89c7.json +++ b/advisories/unreviewed/2023/12/GHSA-q87v-2f9c-89c7/GHSA-q87v-2f9c-89c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qqgw-m967-9p9j/GHSA-qqgw-m967-9p9j.json b/advisories/unreviewed/2023/12/GHSA-qqgw-m967-9p9j/GHSA-qqgw-m967-9p9j.json index 2f6497152bf..754f6ae60d1 100644 --- a/advisories/unreviewed/2023/12/GHSA-qqgw-m967-9p9j/GHSA-qqgw-m967-9p9j.json +++ b/advisories/unreviewed/2023/12/GHSA-qqgw-m967-9p9j/GHSA-qqgw-m967-9p9j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qrpq-xj6p-7f3r/GHSA-qrpq-xj6p-7f3r.json b/advisories/unreviewed/2023/12/GHSA-qrpq-xj6p-7f3r/GHSA-qrpq-xj6p-7f3r.json index 4163282c862..a402a9a5dff 100644 --- a/advisories/unreviewed/2023/12/GHSA-qrpq-xj6p-7f3r/GHSA-qrpq-xj6p-7f3r.json +++ b/advisories/unreviewed/2023/12/GHSA-qrpq-xj6p-7f3r/GHSA-qrpq-xj6p-7f3r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-r275-q95r-mr46/GHSA-r275-q95r-mr46.json b/advisories/unreviewed/2023/12/GHSA-r275-q95r-mr46/GHSA-r275-q95r-mr46.json index 77a69f7b900..3651cf0d443 100644 --- a/advisories/unreviewed/2023/12/GHSA-r275-q95r-mr46/GHSA-r275-q95r-mr46.json +++ b/advisories/unreviewed/2023/12/GHSA-r275-q95r-mr46/GHSA-r275-q95r-mr46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-rgrq-pg8h-w7h3/GHSA-rgrq-pg8h-w7h3.json b/advisories/unreviewed/2023/12/GHSA-rgrq-pg8h-w7h3/GHSA-rgrq-pg8h-w7h3.json index 612d271ee53..ec85643245c 100644 --- a/advisories/unreviewed/2023/12/GHSA-rgrq-pg8h-w7h3/GHSA-rgrq-pg8h-w7h3.json +++ b/advisories/unreviewed/2023/12/GHSA-rgrq-pg8h-w7h3/GHSA-rgrq-pg8h-w7h3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rqg9-w7qg-29ff/GHSA-rqg9-w7qg-29ff.json b/advisories/unreviewed/2023/12/GHSA-rqg9-w7qg-29ff/GHSA-rqg9-w7qg-29ff.json index 9a984de66cb..c39b70766bb 100644 --- a/advisories/unreviewed/2023/12/GHSA-rqg9-w7qg-29ff/GHSA-rqg9-w7qg-29ff.json +++ b/advisories/unreviewed/2023/12/GHSA-rqg9-w7qg-29ff/GHSA-rqg9-w7qg-29ff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vf3g-7v3f-4589/GHSA-vf3g-7v3f-4589.json b/advisories/unreviewed/2023/12/GHSA-vf3g-7v3f-4589/GHSA-vf3g-7v3f-4589.json index be25f450385..b323138e21f 100644 --- a/advisories/unreviewed/2023/12/GHSA-vf3g-7v3f-4589/GHSA-vf3g-7v3f-4589.json +++ b/advisories/unreviewed/2023/12/GHSA-vf3g-7v3f-4589/GHSA-vf3g-7v3f-4589.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-wvw6-cw89-mr92/GHSA-wvw6-cw89-mr92.json b/advisories/unreviewed/2023/12/GHSA-wvw6-cw89-mr92/GHSA-wvw6-cw89-mr92.json index 5e98b659e2c..852933b4a3a 100644 --- a/advisories/unreviewed/2023/12/GHSA-wvw6-cw89-mr92/GHSA-wvw6-cw89-mr92.json +++ b/advisories/unreviewed/2023/12/GHSA-wvw6-cw89-mr92/GHSA-wvw6-cw89-mr92.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-x2rx-c59q-42rg/GHSA-x2rx-c59q-42rg.json b/advisories/unreviewed/2023/12/GHSA-x2rx-c59q-42rg/GHSA-x2rx-c59q-42rg.json index a14a47c5e91..88a0a85f092 100644 --- a/advisories/unreviewed/2023/12/GHSA-x2rx-c59q-42rg/GHSA-x2rx-c59q-42rg.json +++ b/advisories/unreviewed/2023/12/GHSA-x2rx-c59q-42rg/GHSA-x2rx-c59q-42rg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xj28-57qv-77hc/GHSA-xj28-57qv-77hc.json b/advisories/unreviewed/2023/12/GHSA-xj28-57qv-77hc/GHSA-xj28-57qv-77hc.json index 7d09a34734a..09c32f1735e 100644 --- a/advisories/unreviewed/2023/12/GHSA-xj28-57qv-77hc/GHSA-xj28-57qv-77hc.json +++ b/advisories/unreviewed/2023/12/GHSA-xj28-57qv-77hc/GHSA-xj28-57qv-77hc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xmx6-5pw4-x52x/GHSA-xmx6-5pw4-x52x.json b/advisories/unreviewed/2023/12/GHSA-xmx6-5pw4-x52x/GHSA-xmx6-5pw4-x52x.json index df928f7eaeb..87a9154fa17 100644 --- a/advisories/unreviewed/2023/12/GHSA-xmx6-5pw4-x52x/GHSA-xmx6-5pw4-x52x.json +++ b/advisories/unreviewed/2023/12/GHSA-xmx6-5pw4-x52x/GHSA-xmx6-5pw4-x52x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xw8p-h6jm-76hg/GHSA-xw8p-h6jm-76hg.json b/advisories/unreviewed/2023/12/GHSA-xw8p-h6jm-76hg/GHSA-xw8p-h6jm-76hg.json index e321b65f1fa..ebe443b6006 100644 --- a/advisories/unreviewed/2023/12/GHSA-xw8p-h6jm-76hg/GHSA-xw8p-h6jm-76hg.json +++ b/advisories/unreviewed/2023/12/GHSA-xw8p-h6jm-76hg/GHSA-xw8p-h6jm-76hg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xxv8-wfjw-6w8f/GHSA-xxv8-wfjw-6w8f.json b/advisories/unreviewed/2023/12/GHSA-xxv8-wfjw-6w8f/GHSA-xxv8-wfjw-6w8f.json index f75befa4bb3..c9d3823a924 100644 --- a/advisories/unreviewed/2023/12/GHSA-xxv8-wfjw-6w8f/GHSA-xxv8-wfjw-6w8f.json +++ b/advisories/unreviewed/2023/12/GHSA-xxv8-wfjw-6w8f/GHSA-xxv8-wfjw-6w8f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-3r8w-gj6v-wq3r/GHSA-3r8w-gj6v-wq3r.json b/advisories/unreviewed/2024/01/GHSA-3r8w-gj6v-wq3r/GHSA-3r8w-gj6v-wq3r.json index b3a938a2a63..aade1851cb4 100644 --- a/advisories/unreviewed/2024/01/GHSA-3r8w-gj6v-wq3r/GHSA-3r8w-gj6v-wq3r.json +++ b/advisories/unreviewed/2024/01/GHSA-3r8w-gj6v-wq3r/GHSA-3r8w-gj6v-wq3r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-3w6w-r9vq-3r79/GHSA-3w6w-r9vq-3r79.json b/advisories/unreviewed/2024/01/GHSA-3w6w-r9vq-3r79/GHSA-3w6w-r9vq-3r79.json index 9e430ce2498..66218de680c 100644 --- a/advisories/unreviewed/2024/01/GHSA-3w6w-r9vq-3r79/GHSA-3w6w-r9vq-3r79.json +++ b/advisories/unreviewed/2024/01/GHSA-3w6w-r9vq-3r79/GHSA-3w6w-r9vq-3r79.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4c3x-wrfg-6pjr/GHSA-4c3x-wrfg-6pjr.json b/advisories/unreviewed/2024/01/GHSA-4c3x-wrfg-6pjr/GHSA-4c3x-wrfg-6pjr.json index 3962af7e630..e49b6fd50b7 100644 --- a/advisories/unreviewed/2024/01/GHSA-4c3x-wrfg-6pjr/GHSA-4c3x-wrfg-6pjr.json +++ b/advisories/unreviewed/2024/01/GHSA-4c3x-wrfg-6pjr/GHSA-4c3x-wrfg-6pjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-7wff-94vq-2q76/GHSA-7wff-94vq-2q76.json b/advisories/unreviewed/2024/01/GHSA-7wff-94vq-2q76/GHSA-7wff-94vq-2q76.json index 0686a500929..808512494fb 100644 --- a/advisories/unreviewed/2024/01/GHSA-7wff-94vq-2q76/GHSA-7wff-94vq-2q76.json +++ b/advisories/unreviewed/2024/01/GHSA-7wff-94vq-2q76/GHSA-7wff-94vq-2q76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-988v-v47j-cj4p/GHSA-988v-v47j-cj4p.json b/advisories/unreviewed/2024/01/GHSA-988v-v47j-cj4p/GHSA-988v-v47j-cj4p.json index 0cc442f4673..2a988e9eb36 100644 --- a/advisories/unreviewed/2024/01/GHSA-988v-v47j-cj4p/GHSA-988v-v47j-cj4p.json +++ b/advisories/unreviewed/2024/01/GHSA-988v-v47j-cj4p/GHSA-988v-v47j-cj4p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-9fpx-vc83-vhpf/GHSA-9fpx-vc83-vhpf.json b/advisories/unreviewed/2024/01/GHSA-9fpx-vc83-vhpf/GHSA-9fpx-vc83-vhpf.json index ac3beb07efd..a2aa3ca962b 100644 --- a/advisories/unreviewed/2024/01/GHSA-9fpx-vc83-vhpf/GHSA-9fpx-vc83-vhpf.json +++ b/advisories/unreviewed/2024/01/GHSA-9fpx-vc83-vhpf/GHSA-9fpx-vc83-vhpf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-h49c-jgw7-9grp/GHSA-h49c-jgw7-9grp.json b/advisories/unreviewed/2024/01/GHSA-h49c-jgw7-9grp/GHSA-h49c-jgw7-9grp.json index f2a2fbbdf5a..d487901850c 100644 --- a/advisories/unreviewed/2024/01/GHSA-h49c-jgw7-9grp/GHSA-h49c-jgw7-9grp.json +++ b/advisories/unreviewed/2024/01/GHSA-h49c-jgw7-9grp/GHSA-h49c-jgw7-9grp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-h53r-v36g-3338/GHSA-h53r-v36g-3338.json b/advisories/unreviewed/2024/01/GHSA-h53r-v36g-3338/GHSA-h53r-v36g-3338.json index b9a06202c28..4f20ea90f91 100644 --- a/advisories/unreviewed/2024/01/GHSA-h53r-v36g-3338/GHSA-h53r-v36g-3338.json +++ b/advisories/unreviewed/2024/01/GHSA-h53r-v36g-3338/GHSA-h53r-v36g-3338.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-p687-9x5q-6prq/GHSA-p687-9x5q-6prq.json b/advisories/unreviewed/2024/01/GHSA-p687-9x5q-6prq/GHSA-p687-9x5q-6prq.json index 23b3da393ce..d5e9b53f8e8 100644 --- a/advisories/unreviewed/2024/01/GHSA-p687-9x5q-6prq/GHSA-p687-9x5q-6prq.json +++ b/advisories/unreviewed/2024/01/GHSA-p687-9x5q-6prq/GHSA-p687-9x5q-6prq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-v334-55hv-wvc6/GHSA-v334-55hv-wvc6.json b/advisories/unreviewed/2024/01/GHSA-v334-55hv-wvc6/GHSA-v334-55hv-wvc6.json index 523f83add08..3e00ea76663 100644 --- a/advisories/unreviewed/2024/01/GHSA-v334-55hv-wvc6/GHSA-v334-55hv-wvc6.json +++ b/advisories/unreviewed/2024/01/GHSA-v334-55hv-wvc6/GHSA-v334-55hv-wvc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-3q8h-8f45-42g6/GHSA-3q8h-8f45-42g6.json b/advisories/unreviewed/2024/03/GHSA-3q8h-8f45-42g6/GHSA-3q8h-8f45-42g6.json index 1d686aae03b..e8ea5b95af7 100644 --- a/advisories/unreviewed/2024/03/GHSA-3q8h-8f45-42g6/GHSA-3q8h-8f45-42g6.json +++ b/advisories/unreviewed/2024/03/GHSA-3q8h-8f45-42g6/GHSA-3q8h-8f45-42g6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-5w28-7mvj-3c7j/GHSA-5w28-7mvj-3c7j.json b/advisories/unreviewed/2024/03/GHSA-5w28-7mvj-3c7j/GHSA-5w28-7mvj-3c7j.json index 1569064f9ee..af31d8615c3 100644 --- a/advisories/unreviewed/2024/03/GHSA-5w28-7mvj-3c7j/GHSA-5w28-7mvj-3c7j.json +++ b/advisories/unreviewed/2024/03/GHSA-5w28-7mvj-3c7j/GHSA-5w28-7mvj-3c7j.json @@ -7,12 +7,8 @@ "CVE-2020-36827" ], "details": "The XAO::Web module before 1.84 for Perl mishandles < and > characters in JSON output during use of json-embed in Web::Action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-6gxx-vpw4-r22r/GHSA-6gxx-vpw4-r22r.json b/advisories/unreviewed/2024/03/GHSA-6gxx-vpw4-r22r/GHSA-6gxx-vpw4-r22r.json index b04fc25b0a2..484cb696332 100644 --- a/advisories/unreviewed/2024/03/GHSA-6gxx-vpw4-r22r/GHSA-6gxx-vpw4-r22r.json +++ b/advisories/unreviewed/2024/03/GHSA-6gxx-vpw4-r22r/GHSA-6gxx-vpw4-r22r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-6wq8-pg78-64gw/GHSA-6wq8-pg78-64gw.json b/advisories/unreviewed/2024/03/GHSA-6wq8-pg78-64gw/GHSA-6wq8-pg78-64gw.json index 5132ba9a8fd..29c30eb7123 100644 --- a/advisories/unreviewed/2024/03/GHSA-6wq8-pg78-64gw/GHSA-6wq8-pg78-64gw.json +++ b/advisories/unreviewed/2024/03/GHSA-6wq8-pg78-64gw/GHSA-6wq8-pg78-64gw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-7xmw-55r7-4xvc/GHSA-7xmw-55r7-4xvc.json b/advisories/unreviewed/2024/03/GHSA-7xmw-55r7-4xvc/GHSA-7xmw-55r7-4xvc.json index 1c17f45e9d5..1c662af26a2 100644 --- a/advisories/unreviewed/2024/03/GHSA-7xmw-55r7-4xvc/GHSA-7xmw-55r7-4xvc.json +++ b/advisories/unreviewed/2024/03/GHSA-7xmw-55r7-4xvc/GHSA-7xmw-55r7-4xvc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-j32f-6x6r-56fq/GHSA-j32f-6x6r-56fq.json b/advisories/unreviewed/2024/03/GHSA-j32f-6x6r-56fq/GHSA-j32f-6x6r-56fq.json index 612d8c9a313..ba468712833 100644 --- a/advisories/unreviewed/2024/03/GHSA-j32f-6x6r-56fq/GHSA-j32f-6x6r-56fq.json +++ b/advisories/unreviewed/2024/03/GHSA-j32f-6x6r-56fq/GHSA-j32f-6x6r-56fq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-2xvf-jhh8-xv4f/GHSA-2xvf-jhh8-xv4f.json b/advisories/unreviewed/2024/04/GHSA-2xvf-jhh8-xv4f/GHSA-2xvf-jhh8-xv4f.json index a8286c94036..1269db73270 100644 --- a/advisories/unreviewed/2024/04/GHSA-2xvf-jhh8-xv4f/GHSA-2xvf-jhh8-xv4f.json +++ b/advisories/unreviewed/2024/04/GHSA-2xvf-jhh8-xv4f/GHSA-2xvf-jhh8-xv4f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-6wpm-mvc7-c878/GHSA-6wpm-mvc7-c878.json b/advisories/unreviewed/2024/04/GHSA-6wpm-mvc7-c878/GHSA-6wpm-mvc7-c878.json index 9c4011f58ba..6797b67b468 100644 --- a/advisories/unreviewed/2024/04/GHSA-6wpm-mvc7-c878/GHSA-6wpm-mvc7-c878.json +++ b/advisories/unreviewed/2024/04/GHSA-6wpm-mvc7-c878/GHSA-6wpm-mvc7-c878.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-frvq-2rgm-73qv/GHSA-frvq-2rgm-73qv.json b/advisories/unreviewed/2024/04/GHSA-frvq-2rgm-73qv/GHSA-frvq-2rgm-73qv.json index 247a9ad6546..9698dad4b36 100644 --- a/advisories/unreviewed/2024/04/GHSA-frvq-2rgm-73qv/GHSA-frvq-2rgm-73qv.json +++ b/advisories/unreviewed/2024/04/GHSA-frvq-2rgm-73qv/GHSA-frvq-2rgm-73qv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-h933-77ww-w86w/GHSA-h933-77ww-w86w.json b/advisories/unreviewed/2024/04/GHSA-h933-77ww-w86w/GHSA-h933-77ww-w86w.json index d56b52b09d3..df4559a2b31 100644 --- a/advisories/unreviewed/2024/04/GHSA-h933-77ww-w86w/GHSA-h933-77ww-w86w.json +++ b/advisories/unreviewed/2024/04/GHSA-h933-77ww-w86w/GHSA-h933-77ww-w86w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-hj29-7gh7-97xr/GHSA-hj29-7gh7-97xr.json b/advisories/unreviewed/2024/04/GHSA-hj29-7gh7-97xr/GHSA-hj29-7gh7-97xr.json index f5dcd517d51..c9f32df724e 100644 --- a/advisories/unreviewed/2024/04/GHSA-hj29-7gh7-97xr/GHSA-hj29-7gh7-97xr.json +++ b/advisories/unreviewed/2024/04/GHSA-hj29-7gh7-97xr/GHSA-hj29-7gh7-97xr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-j4j9-wc5g-p586/GHSA-j4j9-wc5g-p586.json b/advisories/unreviewed/2024/04/GHSA-j4j9-wc5g-p586/GHSA-j4j9-wc5g-p586.json index a2c728db9ab..c49501b2581 100644 --- a/advisories/unreviewed/2024/04/GHSA-j4j9-wc5g-p586/GHSA-j4j9-wc5g-p586.json +++ b/advisories/unreviewed/2024/04/GHSA-j4j9-wc5g-p586/GHSA-j4j9-wc5g-p586.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-r692-wrf3-rhfw/GHSA-r692-wrf3-rhfw.json b/advisories/unreviewed/2024/04/GHSA-r692-wrf3-rhfw/GHSA-r692-wrf3-rhfw.json index 0609d86041b..d976a054fba 100644 --- a/advisories/unreviewed/2024/04/GHSA-r692-wrf3-rhfw/GHSA-r692-wrf3-rhfw.json +++ b/advisories/unreviewed/2024/04/GHSA-r692-wrf3-rhfw/GHSA-r692-wrf3-rhfw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-v5rg-5x87-5xv9/GHSA-v5rg-5x87-5xv9.json b/advisories/unreviewed/2024/04/GHSA-v5rg-5x87-5xv9/GHSA-v5rg-5x87-5xv9.json index 8213c8c3283..bd103cd23dc 100644 --- a/advisories/unreviewed/2024/04/GHSA-v5rg-5x87-5xv9/GHSA-v5rg-5x87-5xv9.json +++ b/advisories/unreviewed/2024/04/GHSA-v5rg-5x87-5xv9/GHSA-v5rg-5x87-5xv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-vgjg-mpj8-9q8q/GHSA-vgjg-mpj8-9q8q.json b/advisories/unreviewed/2024/04/GHSA-vgjg-mpj8-9q8q/GHSA-vgjg-mpj8-9q8q.json index 76a04bc14c0..15948911069 100644 --- a/advisories/unreviewed/2024/04/GHSA-vgjg-mpj8-9q8q/GHSA-vgjg-mpj8-9q8q.json +++ b/advisories/unreviewed/2024/04/GHSA-vgjg-mpj8-9q8q/GHSA-vgjg-mpj8-9q8q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null,