From 262c53145ca7d1aad234896ff490992ce326e776 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 2 Dec 2024 05:14:57 +0000 Subject: [PATCH] Advisory Database Sync --- .../05/GHSA-2frx-j9hj-6c65/GHSA-2frx-j9hj-6c65.json | 8 ++------ .../05/GHSA-7h5v-85w9-pq6c/GHSA-7h5v-85w9-pq6c.json | 8 ++------ .../05/GHSA-8796-gc9j-63rv/GHSA-8796-gc9j-63rv.json | 4 +--- .../05/GHSA-9vxv-wpv4-f52p/GHSA-9vxv-wpv4-f52p.json | 8 ++------ .../05/GHSA-f6p7-8xfw-fjqq/GHSA-f6p7-8xfw-fjqq.json | 8 ++------ .../05/GHSA-g2qj-pmxm-9f8f/GHSA-g2qj-pmxm-9f8f.json | 8 ++------ .../05/GHSA-vwpg-f6gw-rjvf/GHSA-vwpg-f6gw-rjvf.json | 4 +--- .../06/GHSA-gq67-pp9w-43gp/GHSA-gq67-pp9w-43gp.json | 4 +--- .../12/GHSA-gxjj-f44v-qm94/GHSA-gxjj-f44v-qm94.json | 4 +--- .../02/GHSA-m6j2-v3gq-45r5/GHSA-m6j2-v3gq-45r5.json | 4 +--- .../05/GHSA-3hvc-xwjp-xr8m/GHSA-3hvc-xwjp-xr8m.json | 4 +--- .../05/GHSA-5jph-mvfm-r27p/GHSA-5jph-mvfm-r27p.json | 4 +--- .../05/GHSA-6q78-6xvr-26fg/GHSA-6q78-6xvr-26fg.json | 4 +--- .../05/GHSA-96vx-qf28-6f8m/GHSA-96vx-qf28-6f8m.json | 4 +--- .../05/GHSA-9rj9-5wcv-xgf2/GHSA-9rj9-5wcv-xgf2.json | 8 ++------ .../05/GHSA-x73x-7gmx-w835/GHSA-x73x-7gmx-w835.json | 4 +--- .../12/GHSA-9qcm-fqj9-93m4/GHSA-9qcm-fqj9-93m4.json | 8 ++------ .../02/GHSA-4xgv-j62q-h3rj/GHSA-4xgv-j62q-h3rj.json | 8 ++------ .../04/GHSA-m5pg-8h68-j225/GHSA-m5pg-8h68-j225.json | 4 +--- .../05/GHSA-wp3v-g466-8g44/GHSA-wp3v-g466-8g44.json | 4 +--- .../02/GHSA-6vpr-3pgw-5q44/GHSA-6vpr-3pgw-5q44.json | 4 +--- .../02/GHSA-mpgq-6jmr-6c67/GHSA-mpgq-6jmr-6c67.json | 4 +--- .../02/GHSA-p4ff-2hpq-9x64/GHSA-p4ff-2hpq-9x64.json | 4 +--- .../02/GHSA-r67m-52qx-gfgc/GHSA-r67m-52qx-gfgc.json | 4 +--- .../03/GHSA-6g4g-f39p-q93f/GHSA-6g4g-f39p-q93f.json | 4 +--- .../03/GHSA-fvgm-c3gh-jgmj/GHSA-fvgm-c3gh-jgmj.json | 4 +--- .../03/GHSA-qcv2-jjq2-95wj/GHSA-qcv2-jjq2-95wj.json | 4 +--- .../04/GHSA-24fr-xcq3-rqjr/GHSA-24fr-xcq3-rqjr.json | 4 +--- .../04/GHSA-m665-jg8v-5m5r/GHSA-m665-jg8v-5m5r.json | 4 +--- .../05/GHSA-22rg-5392-7gh6/GHSA-22rg-5392-7gh6.json | 8 ++------ .../05/GHSA-23c2-5fj7-4rv3/GHSA-23c2-5fj7-4rv3.json | 12 +++--------- .../05/GHSA-23p9-r47f-2m64/GHSA-23p9-r47f-2m64.json | 8 ++------ .../05/GHSA-23r2-7v4m-m7mp/GHSA-23r2-7v4m-m7mp.json | 8 ++------ .../05/GHSA-274p-j7q8-fx9w/GHSA-274p-j7q8-fx9w.json | 8 ++------ .../05/GHSA-27gp-rrp2-6hg8/GHSA-27gp-rrp2-6hg8.json | 8 ++------ .../05/GHSA-27mm-4p4v-5qpj/GHSA-27mm-4p4v-5qpj.json | 4 +--- .../05/GHSA-27r8-w6vh-wf65/GHSA-27r8-w6vh-wf65.json | 8 ++------ .../05/GHSA-29rr-mhwv-g7pr/GHSA-29rr-mhwv-g7pr.json | 4 +--- .../05/GHSA-2c28-f73p-mgcc/GHSA-2c28-f73p-mgcc.json | 4 +--- .../05/GHSA-2cj5-9fm4-hqv6/GHSA-2cj5-9fm4-hqv6.json | 12 +++--------- .../05/GHSA-2gmw-j4qh-8xwv/GHSA-2gmw-j4qh-8xwv.json | 8 ++------ .../05/GHSA-2hcm-f2ff-9x8w/GHSA-2hcm-f2ff-9x8w.json | 8 ++------ .../05/GHSA-2j4w-p5m4-8q93/GHSA-2j4w-p5m4-8q93.json | 8 ++------ .../05/GHSA-2j6p-5g3r-q3w2/GHSA-2j6p-5g3r-q3w2.json | 8 ++------ .../05/GHSA-2jhx-f223-wqrm/GHSA-2jhx-f223-wqrm.json | 8 ++------ .../05/GHSA-2mpf-g3vg-qccm/GHSA-2mpf-g3vg-qccm.json | 4 +--- .../05/GHSA-2p55-mr3x-rqxj/GHSA-2p55-mr3x-rqxj.json | 8 ++------ .../05/GHSA-2p66-4gvq-xrrq/GHSA-2p66-4gvq-xrrq.json | 8 ++------ .../05/GHSA-2q96-rrqq-jj73/GHSA-2q96-rrqq-jj73.json | 8 ++------ .../05/GHSA-2r2x-228p-fxrg/GHSA-2r2x-228p-fxrg.json | 12 +++--------- .../05/GHSA-2w3r-4r55-xfpw/GHSA-2w3r-4r55-xfpw.json | 8 ++------ .../05/GHSA-2x4c-6mv7-7vgr/GHSA-2x4c-6mv7-7vgr.json | 8 ++------ .../05/GHSA-2x6f-xp8w-cxqp/GHSA-2x6f-xp8w-cxqp.json | 8 ++------ .../05/GHSA-2x8p-q777-q3mr/GHSA-2x8p-q777-q3mr.json | 8 ++------ .../05/GHSA-32mg-gg62-gfq3/GHSA-32mg-gg62-gfq3.json | 12 +++--------- .../05/GHSA-3367-rc54-37jp/GHSA-3367-rc54-37jp.json | 8 ++------ .../05/GHSA-338w-rmx2-4pjj/GHSA-338w-rmx2-4pjj.json | 8 ++------ .../05/GHSA-356f-694x-6f4f/GHSA-356f-694x-6f4f.json | 12 +++--------- .../05/GHSA-365w-p6xj-xpfw/GHSA-365w-p6xj-xpfw.json | 8 ++------ .../05/GHSA-379x-8r69-fqm5/GHSA-379x-8r69-fqm5.json | 8 ++------ .../05/GHSA-38qp-942w-qgjg/GHSA-38qp-942w-qgjg.json | 8 ++------ .../05/GHSA-38r5-mjj7-3mh2/GHSA-38r5-mjj7-3mh2.json | 8 ++------ .../05/GHSA-3953-4q36-9572/GHSA-3953-4q36-9572.json | 8 ++------ .../05/GHSA-3c3f-93qj-h99f/GHSA-3c3f-93qj-h99f.json | 8 ++------ .../05/GHSA-3cjj-gggc-r85p/GHSA-3cjj-gggc-r85p.json | 12 +++--------- .../05/GHSA-3cmj-3c3j-rrq7/GHSA-3cmj-3c3j-rrq7.json | 8 ++------ .../05/GHSA-3hrq-4v7v-gjm4/GHSA-3hrq-4v7v-gjm4.json | 8 ++------ .../05/GHSA-3hrv-5j8v-742x/GHSA-3hrv-5j8v-742x.json | 8 ++------ .../05/GHSA-3mg4-jfgr-m2q6/GHSA-3mg4-jfgr-m2q6.json | 8 ++------ .../05/GHSA-3mhh-v2cc-54m6/GHSA-3mhh-v2cc-54m6.json | 8 ++------ .../05/GHSA-3r5f-vjfp-r32c/GHSA-3r5f-vjfp-r32c.json | 8 ++------ .../05/GHSA-3rjm-xww9-gmm6/GHSA-3rjm-xww9-gmm6.json | 8 ++------ .../05/GHSA-3rq3-f864-789r/GHSA-3rq3-f864-789r.json | 8 ++------ .../05/GHSA-3rxf-pgrv-pg2w/GHSA-3rxf-pgrv-pg2w.json | 8 ++------ .../05/GHSA-3vcm-3w42-g672/GHSA-3vcm-3w42-g672.json | 8 ++------ .../05/GHSA-3vmj-7qg7-gvfg/GHSA-3vmj-7qg7-gvfg.json | 8 ++------ .../05/GHSA-3w4g-jj6x-f73c/GHSA-3w4g-jj6x-f73c.json | 12 +++--------- .../05/GHSA-3wvv-6gj7-cmfj/GHSA-3wvv-6gj7-cmfj.json | 12 +++--------- .../05/GHSA-3x4f-24vq-5mhp/GHSA-3x4f-24vq-5mhp.json | 8 ++------ .../05/GHSA-3x69-mjh4-vwh4/GHSA-3x69-mjh4-vwh4.json | 12 +++--------- .../05/GHSA-3x7r-r5xh-2v32/GHSA-3x7r-r5xh-2v32.json | 8 ++------ .../05/GHSA-3xj7-pg63-vr53/GHSA-3xj7-pg63-vr53.json | 8 ++------ .../05/GHSA-3xqg-ghf3-8qvm/GHSA-3xqg-ghf3-8qvm.json | 8 ++------ .../05/GHSA-3xv2-3jvj-rc6h/GHSA-3xv2-3jvj-rc6h.json | 8 ++------ .../05/GHSA-4274-f6v9-qg7w/GHSA-4274-f6v9-qg7w.json | 8 ++------ .../05/GHSA-42hr-xhpv-jwj8/GHSA-42hr-xhpv-jwj8.json | 4 +--- .../05/GHSA-43xj-hvp7-hp7w/GHSA-43xj-hvp7-hp7w.json | 8 ++------ .../05/GHSA-458q-r95h-835g/GHSA-458q-r95h-835g.json | 8 ++------ .../05/GHSA-4597-8mcf-pw36/GHSA-4597-8mcf-pw36.json | 8 ++------ .../05/GHSA-46fw-hr68-x354/GHSA-46fw-hr68-x354.json | 4 +--- .../05/GHSA-46wh-944c-9f4p/GHSA-46wh-944c-9f4p.json | 12 +++--------- .../05/GHSA-479q-g97m-m3g5/GHSA-479q-g97m-m3g5.json | 8 ++------ .../05/GHSA-482g-8988-9gwh/GHSA-482g-8988-9gwh.json | 12 +++--------- .../05/GHSA-48h7-qpc2-7cjw/GHSA-48h7-qpc2-7cjw.json | 12 +++--------- .../05/GHSA-48wh-3c8h-65w6/GHSA-48wh-3c8h-65w6.json | 4 +--- .../05/GHSA-49wq-h6fq-vf8p/GHSA-49wq-h6fq-vf8p.json | 4 +--- .../05/GHSA-4cp8-qgwm-4g56/GHSA-4cp8-qgwm-4g56.json | 8 ++------ .../05/GHSA-4fvq-5jgr-vrhq/GHSA-4fvq-5jgr-vrhq.json | 8 ++------ .../05/GHSA-4fwq-hhhj-mfgx/GHSA-4fwq-hhhj-mfgx.json | 8 ++------ .../05/GHSA-4g99-f82w-mhgr/GHSA-4g99-f82w-mhgr.json | 8 ++------ .../05/GHSA-4gvx-xvm4-3hc5/GHSA-4gvx-xvm4-3hc5.json | 8 ++------ .../05/GHSA-4hp9-6953-26vh/GHSA-4hp9-6953-26vh.json | 8 ++------ .../05/GHSA-4hpv-cqpp-cqw7/GHSA-4hpv-cqpp-cqw7.json | 8 ++------ .../05/GHSA-4jx6-7475-4qwh/GHSA-4jx6-7475-4qwh.json | 8 ++------ .../05/GHSA-4m2p-89qj-vmq6/GHSA-4m2p-89qj-vmq6.json | 12 +++--------- .../05/GHSA-4m8c-6ghq-qm6f/GHSA-4m8c-6ghq-qm6f.json | 8 ++------ .../05/GHSA-4qw8-hv2v-vwqf/GHSA-4qw8-hv2v-vwqf.json | 8 ++------ .../05/GHSA-4v8r-37jq-35mj/GHSA-4v8r-37jq-35mj.json | 8 ++------ .../05/GHSA-4wxc-phqq-75fh/GHSA-4wxc-phqq-75fh.json | 12 +++--------- .../05/GHSA-4xfh-7qvx-mp6f/GHSA-4xfh-7qvx-mp6f.json | 4 +--- .../05/GHSA-4xgw-8327-423r/GHSA-4xgw-8327-423r.json | 8 ++------ .../05/GHSA-533x-6564-c9jh/GHSA-533x-6564-c9jh.json | 12 +++--------- .../05/GHSA-53cx-mxm9-g44r/GHSA-53cx-mxm9-g44r.json | 8 ++------ .../05/GHSA-53f4-jqhv-7mjh/GHSA-53f4-jqhv-7mjh.json | 8 ++------ .../05/GHSA-54h5-43hp-6q48/GHSA-54h5-43hp-6q48.json | 8 ++------ .../05/GHSA-54mf-48cv-vq2x/GHSA-54mf-48cv-vq2x.json | 12 +++--------- .../05/GHSA-559v-rr5w-cq76/GHSA-559v-rr5w-cq76.json | 8 ++------ .../05/GHSA-5644-f3cx-vpmf/GHSA-5644-f3cx-vpmf.json | 12 +++--------- .../05/GHSA-569v-h22j-3gcc/GHSA-569v-h22j-3gcc.json | 8 ++------ .../05/GHSA-56c9-96xp-rwg3/GHSA-56c9-96xp-rwg3.json | 8 ++------ .../05/GHSA-56ff-2p4q-7rvj/GHSA-56ff-2p4q-7rvj.json | 8 ++------ .../05/GHSA-56vf-qhhq-rrc2/GHSA-56vf-qhhq-rrc2.json | 4 +--- .../05/GHSA-573h-wp83-cr6f/GHSA-573h-wp83-cr6f.json | 8 ++------ .../05/GHSA-58jw-fvhj-42v3/GHSA-58jw-fvhj-42v3.json | 12 +++--------- .../05/GHSA-58wr-4w95-xjcc/GHSA-58wr-4w95-xjcc.json | 8 ++------ .../05/GHSA-598g-8pp7-hcwv/GHSA-598g-8pp7-hcwv.json | 8 ++------ .../05/GHSA-59rm-f3qj-r4jw/GHSA-59rm-f3qj-r4jw.json | 12 +++--------- .../05/GHSA-5c2q-f98f-4ff3/GHSA-5c2q-f98f-4ff3.json | 8 ++------ .../05/GHSA-5c58-823g-jp65/GHSA-5c58-823g-jp65.json | 8 ++------ .../05/GHSA-5cj6-x2gg-fq5g/GHSA-5cj6-x2gg-fq5g.json | 4 +--- .../05/GHSA-5cv3-wf6w-ffmx/GHSA-5cv3-wf6w-ffmx.json | 4 +--- .../05/GHSA-5g8c-mfvh-j87f/GHSA-5g8c-mfvh-j87f.json | 4 +--- .../05/GHSA-5gwr-h45h-hxgj/GHSA-5gwr-h45h-hxgj.json | 12 +++--------- .../05/GHSA-5hq8-x3r7-7389/GHSA-5hq8-x3r7-7389.json | 12 +++--------- .../05/GHSA-5hrf-r266-wmhh/GHSA-5hrf-r266-wmhh.json | 8 ++------ .../05/GHSA-5m8g-mxhg-m5v5/GHSA-5m8g-mxhg-m5v5.json | 8 ++------ .../05/GHSA-5phr-hxgg-p3j8/GHSA-5phr-hxgg-p3j8.json | 8 ++------ .../05/GHSA-5q5f-4v35-9pq8/GHSA-5q5f-4v35-9pq8.json | 8 ++------ .../05/GHSA-5q7q-g35p-7m8v/GHSA-5q7q-g35p-7m8v.json | 4 +--- .../05/GHSA-5qfv-7x2h-3988/GHSA-5qfv-7x2h-3988.json | 12 +++--------- .../05/GHSA-5qhh-8qq2-8p3g/GHSA-5qhh-8qq2-8p3g.json | 8 ++------ .../05/GHSA-5qjf-pqqq-p29w/GHSA-5qjf-pqqq-p29w.json | 12 +++--------- .../05/GHSA-5r2p-qrfm-r88j/GHSA-5r2p-qrfm-r88j.json | 8 ++------ .../05/GHSA-5vh8-vx9c-m2vw/GHSA-5vh8-vx9c-m2vw.json | 8 ++------ .../05/GHSA-5x7h-r96h-5fjp/GHSA-5x7h-r96h-5fjp.json | 8 ++------ .../05/GHSA-5x8w-vff3-wh78/GHSA-5x8w-vff3-wh78.json | 8 ++------ .../05/GHSA-622c-3525-jxfp/GHSA-622c-3525-jxfp.json | 12 +++--------- .../05/GHSA-63xq-wq3m-pq2p/GHSA-63xq-wq3m-pq2p.json | 12 +++--------- .../05/GHSA-64rw-mj5q-w82v/GHSA-64rw-mj5q-w82v.json | 8 ++------ .../05/GHSA-65mv-34r4-vcq5/GHSA-65mv-34r4-vcq5.json | 4 +--- .../05/GHSA-6628-6x4p-hh34/GHSA-6628-6x4p-hh34.json | 8 ++------ .../05/GHSA-674g-c7wh-2qvj/GHSA-674g-c7wh-2qvj.json | 8 ++------ .../05/GHSA-6826-c5xm-mv7f/GHSA-6826-c5xm-mv7f.json | 12 +++--------- .../05/GHSA-68jr-4mc7-f45r/GHSA-68jr-4mc7-f45r.json | 8 ++------ .../05/GHSA-697x-wwx6-cm5r/GHSA-697x-wwx6-cm5r.json | 12 +++--------- .../05/GHSA-69rf-m6w3-jf8j/GHSA-69rf-m6w3-jf8j.json | 8 ++------ .../05/GHSA-6cmr-6f4q-j55j/GHSA-6cmr-6f4q-j55j.json | 8 ++------ .../05/GHSA-6cq4-9r5q-c4x7/GHSA-6cq4-9r5q-c4x7.json | 12 +++--------- .../05/GHSA-6fgm-5wrg-4p5q/GHSA-6fgm-5wrg-4p5q.json | 12 +++--------- .../05/GHSA-6fjq-rq4w-7295/GHSA-6fjq-rq4w-7295.json | 8 ++------ .../05/GHSA-6g57-2gxq-6m6r/GHSA-6g57-2gxq-6m6r.json | 8 ++------ .../05/GHSA-6ggc-83v2-v33w/GHSA-6ggc-83v2-v33w.json | 8 ++------ .../05/GHSA-6h84-rvpp-p247/GHSA-6h84-rvpp-p247.json | 8 ++------ .../05/GHSA-6hjr-885q-f58r/GHSA-6hjr-885q-f58r.json | 4 +--- .../05/GHSA-6hm2-f7j6-jpfj/GHSA-6hm2-f7j6-jpfj.json | 8 ++------ .../05/GHSA-6jp7-m35q-p736/GHSA-6jp7-m35q-p736.json | 8 ++------ .../05/GHSA-6p6q-jpg9-mwpp/GHSA-6p6q-jpg9-mwpp.json | 8 ++------ .../05/GHSA-6p85-rrmv-fxvw/GHSA-6p85-rrmv-fxvw.json | 8 ++------ .../05/GHSA-6pwc-353h-qw4p/GHSA-6pwc-353h-qw4p.json | 8 ++------ .../05/GHSA-6w64-qv3w-w28w/GHSA-6w64-qv3w-w28w.json | 8 ++------ .../05/GHSA-6wwf-x53r-5qqq/GHSA-6wwf-x53r-5qqq.json | 12 +++--------- .../05/GHSA-6wxh-628h-9qjv/GHSA-6wxh-628h-9qjv.json | 8 ++------ .../05/GHSA-6x3f-5896-c4jp/GHSA-6x3f-5896-c4jp.json | 8 ++------ .../05/GHSA-6x5w-mmqq-q3vj/GHSA-6x5w-mmqq-q3vj.json | 8 ++------ .../05/GHSA-6x7h-634p-8jfg/GHSA-6x7h-634p-8jfg.json | 8 ++------ .../05/GHSA-6xqf-p6pc-2r56/GHSA-6xqf-p6pc-2r56.json | 8 ++------ .../05/GHSA-73wp-hmmc-88j6/GHSA-73wp-hmmc-88j6.json | 8 ++------ .../05/GHSA-74m4-9qcx-fg79/GHSA-74m4-9qcx-fg79.json | 8 ++------ .../05/GHSA-74xw-2qgh-v93w/GHSA-74xw-2qgh-v93w.json | 4 +--- .../05/GHSA-75vj-rfc7-48cc/GHSA-75vj-rfc7-48cc.json | 8 ++------ .../05/GHSA-75x7-9jvj-4jw2/GHSA-75x7-9jvj-4jw2.json | 8 ++------ .../05/GHSA-7674-8v7x-j3vh/GHSA-7674-8v7x-j3vh.json | 8 ++------ .../05/GHSA-769h-wfhv-w6xx/GHSA-769h-wfhv-w6xx.json | 8 ++------ .../05/GHSA-76gc-c529-wjrc/GHSA-76gc-c529-wjrc.json | 8 ++------ .../05/GHSA-773f-3254-99j9/GHSA-773f-3254-99j9.json | 4 +--- .../05/GHSA-774p-6p9r-qvwv/GHSA-774p-6p9r-qvwv.json | 8 ++------ .../05/GHSA-7787-j9w7-fmxm/GHSA-7787-j9w7-fmxm.json | 8 ++------ .../05/GHSA-778r-j33v-4mr3/GHSA-778r-j33v-4mr3.json | 8 ++------ .../05/GHSA-77c9-x7gr-m8x8/GHSA-77c9-x7gr-m8x8.json | 8 ++------ .../05/GHSA-77xj-v2qv-wvf3/GHSA-77xj-v2qv-wvf3.json | 12 +++--------- .../05/GHSA-788g-cgcf-p4x6/GHSA-788g-cgcf-p4x6.json | 8 ++------ .../05/GHSA-793m-hgfj-gwq5/GHSA-793m-hgfj-gwq5.json | 4 +--- .../05/GHSA-7cj7-cgpm-7cgj/GHSA-7cj7-cgpm-7cgj.json | 12 +++--------- .../05/GHSA-7f49-8w55-7r4r/GHSA-7f49-8w55-7r4r.json | 12 +++--------- .../05/GHSA-7f8x-7rcp-rcjq/GHSA-7f8x-7rcp-rcjq.json | 8 ++------ .../05/GHSA-7g3f-h9r7-66xv/GHSA-7g3f-h9r7-66xv.json | 8 ++------ .../05/GHSA-7g3p-6vc8-v995/GHSA-7g3p-6vc8-v995.json | 8 ++------ .../05/GHSA-7hcc-qmpc-f7xq/GHSA-7hcc-qmpc-f7xq.json | 8 ++------ .../05/GHSA-7jvx-p33v-mw2x/GHSA-7jvx-p33v-mw2x.json | 4 +--- .../05/GHSA-7m75-j44m-f9x9/GHSA-7m75-j44m-f9x9.json | 4 +--- .../05/GHSA-7pqc-rm57-cjg8/GHSA-7pqc-rm57-cjg8.json | 8 ++------ .../05/GHSA-7r3x-77pv-99w6/GHSA-7r3x-77pv-99w6.json | 8 ++------ .../05/GHSA-7w8f-xwjh-jcgp/GHSA-7w8f-xwjh-jcgp.json | 12 +++--------- .../05/GHSA-7wc9-px2p-j49m/GHSA-7wc9-px2p-j49m.json | 8 ++------ .../05/GHSA-82jf-vh7j-48rv/GHSA-82jf-vh7j-48rv.json | 8 ++------ .../05/GHSA-838x-5x2j-rwg2/GHSA-838x-5x2j-rwg2.json | 8 ++------ .../05/GHSA-839v-v77x-fcq7/GHSA-839v-v77x-fcq7.json | 12 +++--------- .../05/GHSA-83x4-5j8r-jg4m/GHSA-83x4-5j8r-jg4m.json | 12 +++--------- .../05/GHSA-8465-g5g2-73f3/GHSA-8465-g5g2-73f3.json | 8 ++------ .../05/GHSA-84cx-g986-wvj7/GHSA-84cx-g986-wvj7.json | 12 +++--------- .../05/GHSA-84p2-w287-8v6p/GHSA-84p2-w287-8v6p.json | 8 ++------ .../05/GHSA-84pr-ch9h-f9wm/GHSA-84pr-ch9h-f9wm.json | 8 ++------ .../05/GHSA-856m-qvrj-mfjh/GHSA-856m-qvrj-mfjh.json | 4 +--- .../05/GHSA-85m3-3j3g-mhv6/GHSA-85m3-3j3g-mhv6.json | 8 ++------ .../05/GHSA-864g-gg6m-gp3x/GHSA-864g-gg6m-gp3x.json | 8 ++------ .../05/GHSA-868h-px43-4m5p/GHSA-868h-px43-4m5p.json | 8 ++------ .../05/GHSA-86mm-qq2x-p28p/GHSA-86mm-qq2x-p28p.json | 8 ++------ .../05/GHSA-86pf-m96w-8m3f/GHSA-86pf-m96w-8m3f.json | 4 +--- .../05/GHSA-8756-x628-mfxg/GHSA-8756-x628-mfxg.json | 12 +++--------- .../05/GHSA-886m-rmg5-rwvm/GHSA-886m-rmg5-rwvm.json | 8 ++------ .../05/GHSA-893r-4xqw-4w3q/GHSA-893r-4xqw-4w3q.json | 8 ++------ .../05/GHSA-89rc-4jgm-q84x/GHSA-89rc-4jgm-q84x.json | 8 ++------ .../05/GHSA-89rc-rfgc-g2j3/GHSA-89rc-rfgc-g2j3.json | 8 ++------ .../05/GHSA-8c66-9w2h-5cm9/GHSA-8c66-9w2h-5cm9.json | 8 ++------ .../05/GHSA-8cvw-43cv-8xmh/GHSA-8cvw-43cv-8xmh.json | 8 ++------ .../05/GHSA-8f44-ww46-87xp/GHSA-8f44-ww46-87xp.json | 8 ++------ .../05/GHSA-8f73-86rh-w9fj/GHSA-8f73-86rh-w9fj.json | 12 +++--------- .../05/GHSA-8fr7-p5q2-h3qh/GHSA-8fr7-p5q2-h3qh.json | 8 ++------ .../05/GHSA-8fx4-47hw-m452/GHSA-8fx4-47hw-m452.json | 12 +++--------- .../05/GHSA-8ggj-j64g-w9r2/GHSA-8ggj-j64g-w9r2.json | 4 +--- .../05/GHSA-8ghr-p5r5-7qp8/GHSA-8ghr-p5r5-7qp8.json | 12 +++--------- .../05/GHSA-8gmm-53jc-x5c2/GHSA-8gmm-53jc-x5c2.json | 8 ++------ .../05/GHSA-8gpg-xh2m-p68h/GHSA-8gpg-xh2m-p68h.json | 8 ++------ .../05/GHSA-8gqr-m8rh-5q87/GHSA-8gqr-m8rh-5q87.json | 8 ++------ .../05/GHSA-8jr5-7gwg-pj88/GHSA-8jr5-7gwg-pj88.json | 8 ++------ .../05/GHSA-8jwc-8ww6-25xw/GHSA-8jwc-8ww6-25xw.json | 4 +--- .../05/GHSA-8m8f-h54p-vqgg/GHSA-8m8f-h54p-vqgg.json | 8 ++------ .../05/GHSA-8mv6-3mvr-36hm/GHSA-8mv6-3mvr-36hm.json | 8 ++------ .../05/GHSA-8p5w-j26w-7656/GHSA-8p5w-j26w-7656.json | 8 ++------ .../05/GHSA-8pg3-5757-xvh2/GHSA-8pg3-5757-xvh2.json | 8 ++------ .../05/GHSA-8pvm-7g2w-965w/GHSA-8pvm-7g2w-965w.json | 8 ++------ .../05/GHSA-8qmr-c2vp-p9wp/GHSA-8qmr-c2vp-p9wp.json | 8 ++------ .../05/GHSA-8qvq-3854-4v5p/GHSA-8qvq-3854-4v5p.json | 8 ++------ .../05/GHSA-8r96-j25h-hj4g/GHSA-8r96-j25h-hj4g.json | 4 +--- .../05/GHSA-8rh4-h2wx-5jpx/GHSA-8rh4-h2wx-5jpx.json | 8 ++------ .../05/GHSA-8v4g-559x-qqxm/GHSA-8v4g-559x-qqxm.json | 12 +++--------- .../05/GHSA-8wvc-vg4w-745v/GHSA-8wvc-vg4w-745v.json | 8 ++------ .../05/GHSA-8wxg-8gj7-8j93/GHSA-8wxg-8gj7-8j93.json | 8 ++------ .../05/GHSA-924x-9756-qq8p/GHSA-924x-9756-qq8p.json | 12 +++--------- .../05/GHSA-928q-2w4h-73pr/GHSA-928q-2w4h-73pr.json | 8 ++------ .../05/GHSA-928x-rqfw-p623/GHSA-928x-rqfw-p623.json | 12 +++--------- .../05/GHSA-92f3-r9r6-rrfr/GHSA-92f3-r9r6-rrfr.json | 8 ++------ .../05/GHSA-92gf-gvw9-h948/GHSA-92gf-gvw9-h948.json | 8 ++------ .../05/GHSA-93c2-4crx-rhm7/GHSA-93c2-4crx-rhm7.json | 8 ++------ .../05/GHSA-93gh-j29f-4h3w/GHSA-93gh-j29f-4h3w.json | 8 ++------ .../05/GHSA-94fc-cpf4-hqmc/GHSA-94fc-cpf4-hqmc.json | 4 +--- .../05/GHSA-94rc-32qx-6f25/GHSA-94rc-32qx-6f25.json | 12 +++--------- .../05/GHSA-94xg-xrqj-c42f/GHSA-94xg-xrqj-c42f.json | 8 ++------ .../05/GHSA-954q-pwww-w7g3/GHSA-954q-pwww-w7g3.json | 8 ++------ .../05/GHSA-95g3-39r5-4xw6/GHSA-95g3-39r5-4xw6.json | 12 +++--------- .../05/GHSA-95m3-rmvx-9837/GHSA-95m3-rmvx-9837.json | 12 +++--------- .../05/GHSA-968p-vgm4-6fq2/GHSA-968p-vgm4-6fq2.json | 8 ++------ .../05/GHSA-96g4-h8rh-2j3p/GHSA-96g4-h8rh-2j3p.json | 8 ++------ .../05/GHSA-96w6-j24f-q2rg/GHSA-96w6-j24f-q2rg.json | 8 ++------ .../05/GHSA-9758-6rv3-3xpp/GHSA-9758-6rv3-3xpp.json | 8 ++------ .../05/GHSA-9797-8q37-6fhx/GHSA-9797-8q37-6fhx.json | 12 +++--------- .../05/GHSA-979h-w3gc-xrmq/GHSA-979h-w3gc-xrmq.json | 8 ++------ .../05/GHSA-97qf-jfmw-g24f/GHSA-97qf-jfmw-g24f.json | 12 +++--------- .../05/GHSA-984m-qj9q-3464/GHSA-984m-qj9q-3464.json | 8 ++------ .../05/GHSA-9888-hh6w-x446/GHSA-9888-hh6w-x446.json | 8 ++------ .../05/GHSA-98hm-w38p-p29q/GHSA-98hm-w38p-p29q.json | 8 ++------ .../05/GHSA-98pw-fhg5-r374/GHSA-98pw-fhg5-r374.json | 8 ++------ .../05/GHSA-99f8-xrvq-qw36/GHSA-99f8-xrvq-qw36.json | 8 ++------ .../05/GHSA-99r6-932q-94cq/GHSA-99r6-932q-94cq.json | 8 ++------ .../05/GHSA-99w4-7q97-w5hm/GHSA-99w4-7q97-w5hm.json | 8 ++------ .../05/GHSA-9cg2-j36g-w4x9/GHSA-9cg2-j36g-w4x9.json | 8 ++------ .../05/GHSA-9f36-8pjv-r7jv/GHSA-9f36-8pjv-r7jv.json | 8 ++------ .../05/GHSA-9fhq-mmq4-6fp7/GHSA-9fhq-mmq4-6fp7.json | 4 +--- .../05/GHSA-9fhw-hh7f-rjv2/GHSA-9fhw-hh7f-rjv2.json | 12 +++--------- .../05/GHSA-9fhx-gfxq-vgv6/GHSA-9fhx-gfxq-vgv6.json | 8 ++------ .../05/GHSA-9g8f-cj25-pc9g/GHSA-9g8f-cj25-pc9g.json | 12 +++--------- .../05/GHSA-9g9j-vr2v-2964/GHSA-9g9j-vr2v-2964.json | 12 +++--------- .../05/GHSA-9gqh-5752-rjf6/GHSA-9gqh-5752-rjf6.json | 4 +--- .../05/GHSA-9h86-cwj7-w2g4/GHSA-9h86-cwj7-w2g4.json | 8 ++------ .../05/GHSA-9h9r-mqj8-gh3f/GHSA-9h9r-mqj8-gh3f.json | 8 ++------ .../05/GHSA-9j66-49wf-hg9g/GHSA-9j66-49wf-hg9g.json | 8 ++------ .../05/GHSA-9jgp-35qp-4rc3/GHSA-9jgp-35qp-4rc3.json | 8 ++------ .../05/GHSA-9jjg-55mj-jf5f/GHSA-9jjg-55mj-jf5f.json | 8 ++------ .../05/GHSA-9jpc-mpc7-cwp7/GHSA-9jpc-mpc7-cwp7.json | 8 ++------ .../05/GHSA-9m22-mqrh-x6c3/GHSA-9m22-mqrh-x6c3.json | 4 +--- .../05/GHSA-9mfc-vm32-v9f4/GHSA-9mfc-vm32-v9f4.json | 12 +++--------- .../05/GHSA-9mgc-v8jw-6hx5/GHSA-9mgc-v8jw-6hx5.json | 8 ++------ .../05/GHSA-9mvg-27jr-h6m8/GHSA-9mvg-27jr-h6m8.json | 4 +--- .../05/GHSA-9mx8-9vhh-5qr7/GHSA-9mx8-9vhh-5qr7.json | 4 +--- .../05/GHSA-9phq-v8w7-m26h/GHSA-9phq-v8w7-m26h.json | 8 ++------ .../05/GHSA-9pr2-6qr7-7436/GHSA-9pr2-6qr7-7436.json | 8 ++------ .../05/GHSA-9pr5-4vgc-9h8r/GHSA-9pr5-4vgc-9h8r.json | 8 ++------ .../05/GHSA-9q33-9x86-9cj9/GHSA-9q33-9x86-9cj9.json | 8 ++------ .../05/GHSA-9qcj-gpqg-c7cw/GHSA-9qcj-gpqg-c7cw.json | 8 ++------ .../05/GHSA-9r49-qjrv-qpw8/GHSA-9r49-qjrv-qpw8.json | 8 ++------ .../05/GHSA-9r75-h3r2-c7wf/GHSA-9r75-h3r2-c7wf.json | 8 ++------ .../05/GHSA-9r8v-84h2-969g/GHSA-9r8v-84h2-969g.json | 8 ++------ .../05/GHSA-9rhj-8q3f-7x84/GHSA-9rhj-8q3f-7x84.json | 4 +--- .../05/GHSA-9rrh-v242-4w5j/GHSA-9rrh-v242-4w5j.json | 8 ++------ .../05/GHSA-9rxg-g79x-598m/GHSA-9rxg-g79x-598m.json | 8 ++------ .../05/GHSA-9v89-92j4-g2v6/GHSA-9v89-92j4-g2v6.json | 8 ++------ .../05/GHSA-9w32-w4h7-5mwf/GHSA-9w32-w4h7-5mwf.json | 4 +--- .../05/GHSA-9w75-p6x3-6qwp/GHSA-9w75-p6x3-6qwp.json | 8 ++------ .../05/GHSA-9wg7-hr3f-68p7/GHSA-9wg7-hr3f-68p7.json | 8 ++------ .../05/GHSA-9wm7-g493-2j99/GHSA-9wm7-g493-2j99.json | 8 ++------ .../05/GHSA-9x4r-8c43-c5p6/GHSA-9x4r-8c43-c5p6.json | 8 ++------ .../05/GHSA-9xp9-7jfc-g93g/GHSA-9xp9-7jfc-g93g.json | 8 ++------ .../05/GHSA-c23j-93x4-f392/GHSA-c23j-93x4-f392.json | 8 ++------ .../05/GHSA-c26m-x7g7-gpjq/GHSA-c26m-x7g7-gpjq.json | 8 ++------ .../05/GHSA-c32q-m2jw-8jp8/GHSA-c32q-m2jw-8jp8.json | 8 ++------ .../05/GHSA-c45j-w8w5-mjxv/GHSA-c45j-w8w5-mjxv.json | 12 +++--------- .../05/GHSA-c4gw-5qv5-6333/GHSA-c4gw-5qv5-6333.json | 4 +--- .../05/GHSA-c4h6-p7gp-39x2/GHSA-c4h6-p7gp-39x2.json | 12 +++--------- .../05/GHSA-c4qg-278v-p8ch/GHSA-c4qg-278v-p8ch.json | 8 ++------ .../05/GHSA-c4qh-g652-rc2g/GHSA-c4qh-g652-rc2g.json | 8 ++------ .../05/GHSA-c53x-4hw4-h68r/GHSA-c53x-4hw4-h68r.json | 8 ++------ .../05/GHSA-c5hr-c549-fjcx/GHSA-c5hr-c549-fjcx.json | 8 ++------ .../05/GHSA-c5jv-q5g8-55g4/GHSA-c5jv-q5g8-55g4.json | 12 +++--------- .../05/GHSA-c7hp-m6ff-5q28/GHSA-c7hp-m6ff-5q28.json | 8 ++------ .../05/GHSA-c7x5-cxpv-wm4m/GHSA-c7x5-cxpv-wm4m.json | 8 ++------ .../05/GHSA-c88g-ppxf-5fv6/GHSA-c88g-ppxf-5fv6.json | 8 ++------ .../05/GHSA-c88w-8m4x-2r4w/GHSA-c88w-8m4x-2r4w.json | 8 ++------ .../05/GHSA-c8qv-vc58-v9rv/GHSA-c8qv-vc58-v9rv.json | 12 +++--------- .../05/GHSA-c9g5-h8rc-q6m5/GHSA-c9g5-h8rc-q6m5.json | 8 ++------ .../05/GHSA-cf3c-97fx-vhmf/GHSA-cf3c-97fx-vhmf.json | 12 +++--------- .../05/GHSA-cfww-x5rc-hmv9/GHSA-cfww-x5rc-hmv9.json | 8 ++------ .../05/GHSA-cgc3-4454-62c5/GHSA-cgc3-4454-62c5.json | 12 +++--------- .../05/GHSA-cggf-9qjh-g2mc/GHSA-cggf-9qjh-g2mc.json | 12 +++--------- .../05/GHSA-ch2x-2fc5-pg69/GHSA-ch2x-2fc5-pg69.json | 8 ++------ .../05/GHSA-ch8v-mr53-jpw7/GHSA-ch8v-mr53-jpw7.json | 8 ++------ .../05/GHSA-chvw-pr2x-vpmr/GHSA-chvw-pr2x-vpmr.json | 8 ++------ .../05/GHSA-cj3x-qg3h-5v73/GHSA-cj3x-qg3h-5v73.json | 8 ++------ .../05/GHSA-cjhq-3qxp-7658/GHSA-cjhq-3qxp-7658.json | 8 ++------ .../05/GHSA-cjvq-xvv5-f922/GHSA-cjvq-xvv5-f922.json | 4 +--- .../05/GHSA-cm59-m98p-76g5/GHSA-cm59-m98p-76g5.json | 8 ++------ .../05/GHSA-cm74-jg3x-hghv/GHSA-cm74-jg3x-hghv.json | 12 +++--------- .../05/GHSA-cm92-v326-7gh8/GHSA-cm92-v326-7gh8.json | 8 ++------ .../05/GHSA-cmj9-rpfq-5hc2/GHSA-cmj9-rpfq-5hc2.json | 12 +++--------- .../05/GHSA-cmq8-mf7c-53h9/GHSA-cmq8-mf7c-53h9.json | 4 +--- .../05/GHSA-cp3h-563p-cmfg/GHSA-cp3h-563p-cmfg.json | 8 ++------ .../05/GHSA-cp6g-8qmw-2h69/GHSA-cp6g-8qmw-2h69.json | 4 +--- .../05/GHSA-cp86-7jxj-wqfv/GHSA-cp86-7jxj-wqfv.json | 8 ++------ .../05/GHSA-cpm7-pgmm-3mfr/GHSA-cpm7-pgmm-3mfr.json | 8 ++------ .../05/GHSA-cpxg-5m58-xm8c/GHSA-cpxg-5m58-xm8c.json | 4 +--- .../05/GHSA-cq3g-fvgf-3m32/GHSA-cq3g-fvgf-3m32.json | 8 ++------ .../05/GHSA-cq83-pmg7-mjwj/GHSA-cq83-pmg7-mjwj.json | 8 ++------ .../05/GHSA-crc4-6mw2-jj89/GHSA-crc4-6mw2-jj89.json | 8 ++------ .../05/GHSA-crfq-x56q-fh5h/GHSA-crfq-x56q-fh5h.json | 8 ++------ .../05/GHSA-cv3j-xx9h-6hf5/GHSA-cv3j-xx9h-6hf5.json | 4 +--- .../05/GHSA-cv9q-2p8x-2xxf/GHSA-cv9q-2p8x-2xxf.json | 8 ++------ .../05/GHSA-cvxv-m3wh-fqjf/GHSA-cvxv-m3wh-fqjf.json | 8 ++------ .../05/GHSA-cw52-x4mw-m42c/GHSA-cw52-x4mw-m42c.json | 8 ++------ .../05/GHSA-cwm5-ch2x-hx68/GHSA-cwm5-ch2x-hx68.json | 8 ++------ .../05/GHSA-cwp2-23c5-767r/GHSA-cwp2-23c5-767r.json | 12 +++--------- .../05/GHSA-cwqw-89qh-jmrr/GHSA-cwqw-89qh-jmrr.json | 8 ++------ .../05/GHSA-cwx2-6cm4-jr73/GHSA-cwx2-6cm4-jr73.json | 8 ++------ .../05/GHSA-cxfr-2cwv-2928/GHSA-cxfr-2cwv-2928.json | 4 +--- .../05/GHSA-cxvp-6fh6-vm2m/GHSA-cxvp-6fh6-vm2m.json | 12 +++--------- .../05/GHSA-f257-m4rp-7242/GHSA-f257-m4rp-7242.json | 8 ++------ .../05/GHSA-f2g9-97mc-79j6/GHSA-f2g9-97mc-79j6.json | 4 +--- .../05/GHSA-f2hm-6r67-2w7v/GHSA-f2hm-6r67-2w7v.json | 8 ++------ .../05/GHSA-f2j3-w598-jqhx/GHSA-f2j3-w598-jqhx.json | 8 ++------ .../05/GHSA-f329-4wvc-4h42/GHSA-f329-4wvc-4h42.json | 12 +++--------- .../05/GHSA-f37x-2cx7-rh6g/GHSA-f37x-2cx7-rh6g.json | 8 ++------ .../05/GHSA-f3cp-f6ph-xxhj/GHSA-f3cp-f6ph-xxhj.json | 8 ++------ .../05/GHSA-f3rg-mx46-665p/GHSA-f3rg-mx46-665p.json | 8 ++------ .../05/GHSA-f423-79c7-g4mq/GHSA-f423-79c7-g4mq.json | 4 +--- .../05/GHSA-f452-fg56-fx5m/GHSA-f452-fg56-fx5m.json | 8 ++------ .../05/GHSA-f475-c2j6-hj26/GHSA-f475-c2j6-hj26.json | 12 +++--------- .../05/GHSA-f4gm-v37p-h557/GHSA-f4gm-v37p-h557.json | 8 ++------ .../05/GHSA-f4x8-rxpq-gg98/GHSA-f4x8-rxpq-gg98.json | 8 ++------ .../05/GHSA-f5ch-mxxg-jrgr/GHSA-f5ch-mxxg-jrgr.json | 12 +++--------- .../05/GHSA-f5f8-7c8q-x28m/GHSA-f5f8-7c8q-x28m.json | 4 +--- .../05/GHSA-f5hm-hjxq-fhw3/GHSA-f5hm-hjxq-fhw3.json | 4 +--- .../05/GHSA-f5qf-9pc8-pr89/GHSA-f5qf-9pc8-pr89.json | 8 ++------ .../05/GHSA-f5r8-j6cr-3q26/GHSA-f5r8-j6cr-3q26.json | 8 ++------ .../05/GHSA-f5xr-w782-5rg9/GHSA-f5xr-w782-5rg9.json | 12 +++--------- .../05/GHSA-f66g-86x9-56j9/GHSA-f66g-86x9-56j9.json | 8 ++------ .../05/GHSA-f68w-gqr4-452p/GHSA-f68w-gqr4-452p.json | 8 ++------ .../05/GHSA-f6r7-wmff-5w4f/GHSA-f6r7-wmff-5w4f.json | 8 ++------ .../05/GHSA-f72f-rm67-r857/GHSA-f72f-rm67-r857.json | 12 +++--------- .../05/GHSA-f74w-6ww8-3438/GHSA-f74w-6ww8-3438.json | 12 +++--------- .../05/GHSA-f896-64x6-54qp/GHSA-f896-64x6-54qp.json | 4 +--- .../05/GHSA-f8x4-pv8v-wwwr/GHSA-f8x4-pv8v-wwwr.json | 8 ++------ .../05/GHSA-fc3v-jjjq-68v3/GHSA-fc3v-jjjq-68v3.json | 8 ++------ .../05/GHSA-fc4m-c6c6-c2h9/GHSA-fc4m-c6c6-c2h9.json | 4 +--- .../05/GHSA-fc9c-chwq-c97j/GHSA-fc9c-chwq-c97j.json | 8 ++------ .../05/GHSA-ffhc-mxrh-vv2p/GHSA-ffhc-mxrh-vv2p.json | 8 ++------ .../05/GHSA-ffjc-ccp9-8jjj/GHSA-ffjc-ccp9-8jjj.json | 8 ++------ .../05/GHSA-ffjm-vf3c-hf85/GHSA-ffjm-vf3c-hf85.json | 8 ++------ .../05/GHSA-fg47-8fhh-p6fc/GHSA-fg47-8fhh-p6fc.json | 4 +--- .../05/GHSA-fgfj-c256-6c84/GHSA-fgfj-c256-6c84.json | 8 ++------ .../05/GHSA-fgvr-vmvg-whg2/GHSA-fgvr-vmvg-whg2.json | 8 ++------ .../05/GHSA-fh72-rfmx-8whj/GHSA-fh72-rfmx-8whj.json | 8 ++------ .../05/GHSA-fjh4-c964-7cc5/GHSA-fjh4-c964-7cc5.json | 4 +--- .../05/GHSA-fjhf-p3hr-pvv7/GHSA-fjhf-p3hr-pvv7.json | 8 ++------ .../05/GHSA-fm48-g92r-6m48/GHSA-fm48-g92r-6m48.json | 8 ++------ .../05/GHSA-fmwm-hqvf-ch74/GHSA-fmwm-hqvf-ch74.json | 8 ++------ .../05/GHSA-fprm-74q4-pj4w/GHSA-fprm-74q4-pj4w.json | 8 ++------ .../05/GHSA-fpxg-2rm2-vpj4/GHSA-fpxg-2rm2-vpj4.json | 8 ++------ .../05/GHSA-fq6f-9mhj-9mhq/GHSA-fq6f-9mhj-9mhq.json | 4 +--- .../05/GHSA-fqgv-5vgp-2frw/GHSA-fqgv-5vgp-2frw.json | 8 ++------ .../05/GHSA-fqgv-6p4g-cc4p/GHSA-fqgv-6p4g-cc4p.json | 12 +++--------- .../05/GHSA-frw2-vw3f-v47q/GHSA-frw2-vw3f-v47q.json | 4 +--- .../05/GHSA-frx4-39mr-82xv/GHSA-frx4-39mr-82xv.json | 4 +--- .../05/GHSA-fv5q-8pqq-9g92/GHSA-fv5q-8pqq-9g92.json | 12 +++--------- .../05/GHSA-fv6g-wv47-2g94/GHSA-fv6g-wv47-2g94.json | 8 ++------ .../05/GHSA-fv8w-wmhg-965x/GHSA-fv8w-wmhg-965x.json | 12 +++--------- .../05/GHSA-fvf7-58x3-4492/GHSA-fvf7-58x3-4492.json | 4 +--- .../05/GHSA-fvmw-j93h-3272/GHSA-fvmw-j93h-3272.json | 8 ++------ .../05/GHSA-fw2x-37cc-fvp5/GHSA-fw2x-37cc-fvp5.json | 8 ++------ .../05/GHSA-fw6q-gw8w-464v/GHSA-fw6q-gw8w-464v.json | 4 +--- .../05/GHSA-fwqh-jqxf-956w/GHSA-fwqh-jqxf-956w.json | 8 ++------ .../05/GHSA-fwv9-q69x-v7q2/GHSA-fwv9-q69x-v7q2.json | 4 +--- .../05/GHSA-fx4x-q794-whc6/GHSA-fx4x-q794-whc6.json | 8 ++------ .../05/GHSA-fxff-28gh-86mj/GHSA-fxff-28gh-86mj.json | 8 ++------ .../05/GHSA-fxq3-4vfx-993f/GHSA-fxq3-4vfx-993f.json | 8 ++------ .../05/GHSA-fxxv-cmpr-cvx2/GHSA-fxxv-cmpr-cvx2.json | 12 +++--------- .../05/GHSA-g22f-95g3-fg47/GHSA-g22f-95g3-fg47.json | 8 ++------ .../05/GHSA-g23j-wvjf-2p27/GHSA-g23j-wvjf-2p27.json | 8 ++------ .../05/GHSA-g2gm-pxjg-4f7v/GHSA-g2gm-pxjg-4f7v.json | 12 +++--------- .../05/GHSA-g2hg-j8m2-ppxr/GHSA-g2hg-j8m2-ppxr.json | 8 ++------ .../05/GHSA-g2rh-3q72-5cq4/GHSA-g2rh-3q72-5cq4.json | 8 ++------ .../05/GHSA-g35v-3fjw-w5pj/GHSA-g35v-3fjw-w5pj.json | 4 +--- .../05/GHSA-g3jh-qj7f-284p/GHSA-g3jh-qj7f-284p.json | 8 ++------ .../05/GHSA-g3qc-wqfg-m6jq/GHSA-g3qc-wqfg-m6jq.json | 12 +++--------- .../05/GHSA-g44h-jfwm-hrw7/GHSA-g44h-jfwm-hrw7.json | 12 +++--------- .../05/GHSA-g4qp-4jm9-8cv6/GHSA-g4qp-4jm9-8cv6.json | 12 +++--------- .../05/GHSA-g4x2-jqmh-jhvf/GHSA-g4x2-jqmh-jhvf.json | 8 ++------ .../05/GHSA-g5hv-2cgx-v479/GHSA-g5hv-2cgx-v479.json | 12 +++--------- .../05/GHSA-g67v-2hj4-m27f/GHSA-g67v-2hj4-m27f.json | 8 ++------ .../05/GHSA-g6ph-6cq5-3xgm/GHSA-g6ph-6cq5-3xgm.json | 12 +++--------- .../05/GHSA-g6qh-xx4v-9c9p/GHSA-g6qh-xx4v-9c9p.json | 12 +++--------- .../05/GHSA-g72w-p563-r83r/GHSA-g72w-p563-r83r.json | 8 ++------ .../05/GHSA-g75f-42vw-m3xv/GHSA-g75f-42vw-m3xv.json | 12 +++--------- .../05/GHSA-g864-c2g5-ph57/GHSA-g864-c2g5-ph57.json | 8 ++------ .../05/GHSA-g87c-rc5c-2p9f/GHSA-g87c-rc5c-2p9f.json | 12 +++--------- .../05/GHSA-g883-f564-phwg/GHSA-g883-f564-phwg.json | 8 ++------ .../05/GHSA-g8h5-wv99-85v5/GHSA-g8h5-wv99-85v5.json | 12 +++--------- .../05/GHSA-g8wh-vch5-x6pw/GHSA-g8wh-vch5-x6pw.json | 8 ++------ .../05/GHSA-g9wm-m86j-f72h/GHSA-g9wm-m86j-f72h.json | 12 +++--------- .../05/GHSA-g9wx-8wph-hmgw/GHSA-g9wx-8wph-hmgw.json | 4 +--- .../05/GHSA-gc6g-q4xc-587g/GHSA-gc6g-q4xc-587g.json | 8 ++------ .../05/GHSA-gcfx-wr8q-hc44/GHSA-gcfx-wr8q-hc44.json | 8 ++------ .../05/GHSA-gcgq-25hp-55pm/GHSA-gcgq-25hp-55pm.json | 8 ++------ .../05/GHSA-gcjc-g9wr-67f2/GHSA-gcjc-g9wr-67f2.json | 8 ++------ .../05/GHSA-gf43-jcc9-q7jf/GHSA-gf43-jcc9-q7jf.json | 12 +++--------- .../05/GHSA-gfh5-jm3w-g7pr/GHSA-gfh5-jm3w-g7pr.json | 4 +--- .../05/GHSA-gfqx-vp9r-hwg6/GHSA-gfqx-vp9r-hwg6.json | 12 +++--------- .../05/GHSA-gg5v-54h4-pcp8/GHSA-gg5v-54h4-pcp8.json | 8 ++------ .../05/GHSA-gh4f-5wmx-wwgh/GHSA-gh4f-5wmx-wwgh.json | 8 ++------ .../05/GHSA-ghg7-vhxc-mhv7/GHSA-ghg7-vhxc-mhv7.json | 8 ++------ .../05/GHSA-gjc9-vw3q-w437/GHSA-gjc9-vw3q-w437.json | 12 +++--------- .../05/GHSA-gjr5-grmx-f66w/GHSA-gjr5-grmx-f66w.json | 12 +++--------- .../05/GHSA-gm62-vfww-h3xp/GHSA-gm62-vfww-h3xp.json | 8 ++------ .../05/GHSA-gmcr-cvch-ppg6/GHSA-gmcr-cvch-ppg6.json | 4 +--- .../05/GHSA-gmhg-6h4v-m38c/GHSA-gmhg-6h4v-m38c.json | 12 +++--------- .../05/GHSA-gmmg-mg5x-45rp/GHSA-gmmg-mg5x-45rp.json | 8 ++------ .../05/GHSA-gmpc-xgf5-4prf/GHSA-gmpc-xgf5-4prf.json | 8 ++------ .../05/GHSA-gp6r-4r54-hf2x/GHSA-gp6r-4r54-hf2x.json | 8 ++------ .../05/GHSA-gpvf-c684-3rmh/GHSA-gpvf-c684-3rmh.json | 4 +--- .../05/GHSA-gpw6-2q4r-p826/GHSA-gpw6-2q4r-p826.json | 4 +--- .../05/GHSA-gq6p-fh2m-44wj/GHSA-gq6p-fh2m-44wj.json | 8 ++------ .../05/GHSA-gqjp-r446-ff55/GHSA-gqjp-r446-ff55.json | 8 ++------ .../05/GHSA-gqm6-mm85-h8ch/GHSA-gqm6-mm85-h8ch.json | 8 ++------ .../05/GHSA-gr6j-5w7g-m5v2/GHSA-gr6j-5w7g-m5v2.json | 8 ++------ .../05/GHSA-gr6x-gf4c-24g4/GHSA-gr6x-gf4c-24g4.json | 8 ++------ .../05/GHSA-grfq-486p-2f5m/GHSA-grfq-486p-2f5m.json | 8 ++------ .../05/GHSA-grpg-9h7c-ff7x/GHSA-grpg-9h7c-ff7x.json | 8 ++------ .../05/GHSA-gv3c-929j-rc7p/GHSA-gv3c-929j-rc7p.json | 12 +++--------- .../05/GHSA-gwqw-2c53-7v9m/GHSA-gwqw-2c53-7v9m.json | 8 ++------ .../05/GHSA-gwxm-wf2r-4qv5/GHSA-gwxm-wf2r-4qv5.json | 12 +++--------- .../05/GHSA-h25m-5xq7-8h6q/GHSA-h25m-5xq7-8h6q.json | 12 +++--------- .../05/GHSA-h2vh-q3r8-9vv4/GHSA-h2vh-q3r8-9vv4.json | 8 ++------ .../05/GHSA-h335-xjw9-4rf2/GHSA-h335-xjw9-4rf2.json | 8 ++------ .../05/GHSA-h33c-59r7-5m89/GHSA-h33c-59r7-5m89.json | 8 ++------ .../05/GHSA-h37c-7pv8-rxfg/GHSA-h37c-7pv8-rxfg.json | 8 ++------ .../05/GHSA-h388-6737-2grv/GHSA-h388-6737-2grv.json | 8 ++------ .../05/GHSA-h39h-mv79-2m42/GHSA-h39h-mv79-2m42.json | 12 +++--------- .../05/GHSA-h3mw-q2vh-qc2j/GHSA-h3mw-q2vh-qc2j.json | 8 ++------ .../05/GHSA-h44x-3xxx-8jpc/GHSA-h44x-3xxx-8jpc.json | 12 +++--------- .../05/GHSA-h475-82mv-h7q7/GHSA-h475-82mv-h7q7.json | 8 ++------ .../05/GHSA-h4gv-m9gr-hhjw/GHSA-h4gv-m9gr-hhjw.json | 4 +--- .../05/GHSA-h4q5-v8j4-8ph5/GHSA-h4q5-v8j4-8ph5.json | 4 +--- .../05/GHSA-h544-jq49-ggwh/GHSA-h544-jq49-ggwh.json | 8 ++------ .../05/GHSA-h567-wg66-2v4f/GHSA-h567-wg66-2v4f.json | 12 +++--------- .../05/GHSA-h577-vm6j-5p38/GHSA-h577-vm6j-5p38.json | 8 ++------ .../05/GHSA-h579-367q-7pc3/GHSA-h579-367q-7pc3.json | 12 +++--------- .../05/GHSA-h57w-xmc5-xhmg/GHSA-h57w-xmc5-xhmg.json | 8 ++------ .../05/GHSA-h5cr-94cg-hxmr/GHSA-h5cr-94cg-hxmr.json | 8 ++------ .../05/GHSA-h5rm-gc4m-cp24/GHSA-h5rm-gc4m-cp24.json | 12 +++--------- .../05/GHSA-h635-5m37-x3p5/GHSA-h635-5m37-x3p5.json | 8 ++------ .../05/GHSA-h65f-q687-6mjg/GHSA-h65f-q687-6mjg.json | 8 ++------ .../05/GHSA-h6pf-c244-8chr/GHSA-h6pf-c244-8chr.json | 4 +--- .../05/GHSA-h79w-h983-cvxf/GHSA-h79w-h983-cvxf.json | 8 ++------ .../05/GHSA-h7hf-j688-9vmp/GHSA-h7hf-j688-9vmp.json | 8 ++------ .../05/GHSA-h96r-5v99-5m55/GHSA-h96r-5v99-5m55.json | 8 ++------ .../05/GHSA-h97f-mg55-8293/GHSA-h97f-mg55-8293.json | 8 ++------ .../05/GHSA-h97p-5fjq-c93c/GHSA-h97p-5fjq-c93c.json | 8 ++------ .../05/GHSA-h9g3-j7h6-8f7m/GHSA-h9g3-j7h6-8f7m.json | 12 +++--------- .../05/GHSA-h9wh-q83g-2p6c/GHSA-h9wh-q83g-2p6c.json | 8 ++------ .../05/GHSA-hc9j-xc69-hppx/GHSA-hc9j-xc69-hppx.json | 8 ++------ .../05/GHSA-hcmf-34f9-qxh7/GHSA-hcmf-34f9-qxh7.json | 8 ++------ .../05/GHSA-hcpv-5mx9-q6h3/GHSA-hcpv-5mx9-q6h3.json | 8 ++------ .../05/GHSA-hfph-9grv-x5x5/GHSA-hfph-9grv-x5x5.json | 4 +--- .../05/GHSA-hg47-m38x-5m72/GHSA-hg47-m38x-5m72.json | 8 ++------ .../05/GHSA-hg64-rxxv-ff3c/GHSA-hg64-rxxv-ff3c.json | 8 ++------ .../05/GHSA-hg9j-r439-gp76/GHSA-hg9j-r439-gp76.json | 12 +++--------- .../05/GHSA-hgg7-rrqq-66fx/GHSA-hgg7-rrqq-66fx.json | 8 ++------ .../05/GHSA-hgh6-vp5r-48rp/GHSA-hgh6-vp5r-48rp.json | 4 +--- .../05/GHSA-hhgm-j3w3-6p82/GHSA-hhgm-j3w3-6p82.json | 8 ++------ .../05/GHSA-hjq3-j9hq-m46w/GHSA-hjq3-j9hq-m46w.json | 12 +++--------- .../05/GHSA-hjq8-666x-qj67/GHSA-hjq8-666x-qj67.json | 8 ++------ .../05/GHSA-hmc9-48x2-j657/GHSA-hmc9-48x2-j657.json | 4 +--- .../05/GHSA-hmj3-h4pf-vc5h/GHSA-hmj3-h4pf-vc5h.json | 8 ++------ .../05/GHSA-hpjv-59xv-jpr5/GHSA-hpjv-59xv-jpr5.json | 4 +--- .../05/GHSA-hpm9-f4wh-88hj/GHSA-hpm9-f4wh-88hj.json | 8 ++------ .../05/GHSA-hpq5-x75j-q4f2/GHSA-hpq5-x75j-q4f2.json | 8 ++------ .../05/GHSA-hpw3-432w-cv6v/GHSA-hpw3-432w-cv6v.json | 12 +++--------- .../05/GHSA-hq5w-vrxc-xx2g/GHSA-hq5w-vrxc-xx2g.json | 12 +++--------- .../05/GHSA-hq86-cqgq-p75f/GHSA-hq86-cqgq-p75f.json | 4 +--- .../05/GHSA-hqm3-mx3r-hfq5/GHSA-hqm3-mx3r-hfq5.json | 8 ++------ .../05/GHSA-hqv4-9647-qxr5/GHSA-hqv4-9647-qxr5.json | 8 ++------ .../05/GHSA-hqwp-wj7r-gf8j/GHSA-hqwp-wj7r-gf8j.json | 8 ++------ .../05/GHSA-hr2q-xf62-r4hc/GHSA-hr2q-xf62-r4hc.json | 8 ++------ .../05/GHSA-hr97-4x5j-vc8q/GHSA-hr97-4x5j-vc8q.json | 12 +++--------- .../05/GHSA-hrjv-7r66-xfwr/GHSA-hrjv-7r66-xfwr.json | 8 ++------ .../05/GHSA-hv9h-jqcx-2c2p/GHSA-hv9h-jqcx-2c2p.json | 8 ++------ .../05/GHSA-hvfr-v2x6-hcr4/GHSA-hvfr-v2x6-hcr4.json | 12 +++--------- .../05/GHSA-hvm7-mwfr-vm66/GHSA-hvm7-mwfr-vm66.json | 8 ++------ .../05/GHSA-hvmf-hx9f-ccx5/GHSA-hvmf-hx9f-ccx5.json | 8 ++------ .../05/GHSA-hvp5-54cx-25q6/GHSA-hvp5-54cx-25q6.json | 4 +--- .../05/GHSA-hvpq-m9vj-27gf/GHSA-hvpq-m9vj-27gf.json | 8 ++------ .../05/GHSA-hw8j-q3v2-5j9q/GHSA-hw8j-q3v2-5j9q.json | 8 ++------ .../05/GHSA-hxcg-7v57-386x/GHSA-hxcg-7v57-386x.json | 8 ++------ .../05/GHSA-hxj4-xxrj-q2gx/GHSA-hxj4-xxrj-q2gx.json | 4 +--- .../05/GHSA-hxpm-jgp4-m58r/GHSA-hxpm-jgp4-m58r.json | 8 ++------ .../05/GHSA-j232-863r-9977/GHSA-j232-863r-9977.json | 8 ++------ .../05/GHSA-j256-qqq8-59jw/GHSA-j256-qqq8-59jw.json | 8 ++------ .../05/GHSA-j2cv-j24w-c67w/GHSA-j2cv-j24w-c67w.json | 8 ++------ .../05/GHSA-j2x4-hphx-h7rg/GHSA-j2x4-hphx-h7rg.json | 8 ++------ .../05/GHSA-j34m-wm68-9hx7/GHSA-j34m-wm68-9hx7.json | 8 ++------ .../05/GHSA-j36f-9rx3-62hj/GHSA-j36f-9rx3-62hj.json | 8 ++------ .../05/GHSA-j459-p3wg-g3q2/GHSA-j459-p3wg-g3q2.json | 12 +++--------- .../05/GHSA-j59v-276v-qwjv/GHSA-j59v-276v-qwjv.json | 8 ++------ .../05/GHSA-j5j3-h5ww-vvph/GHSA-j5j3-h5ww-vvph.json | 8 ++------ .../05/GHSA-j5v6-h83f-h9j9/GHSA-j5v6-h83f-h9j9.json | 8 ++------ .../05/GHSA-j5w2-6mxx-vrmv/GHSA-j5w2-6mxx-vrmv.json | 12 +++--------- .../05/GHSA-j73j-p6cq-cmxj/GHSA-j73j-p6cq-cmxj.json | 12 +++--------- .../05/GHSA-j7wp-2pxv-m6g9/GHSA-j7wp-2pxv-m6g9.json | 8 ++------ .../05/GHSA-j839-cx92-9fpc/GHSA-j839-cx92-9fpc.json | 8 ++------ .../05/GHSA-j8hm-6qv5-gj2w/GHSA-j8hm-6qv5-gj2w.json | 8 ++------ .../05/GHSA-j8r9-mcxg-mjg4/GHSA-j8r9-mcxg-mjg4.json | 8 ++------ .../05/GHSA-jc8q-w279-7g62/GHSA-jc8q-w279-7g62.json | 8 ++------ .../05/GHSA-jf63-8279-v8vq/GHSA-jf63-8279-v8vq.json | 8 ++------ .../05/GHSA-jfxr-q6v5-hrc4/GHSA-jfxr-q6v5-hrc4.json | 8 ++------ .../05/GHSA-jhqw-c6wg-mrq8/GHSA-jhqw-c6wg-mrq8.json | 8 ++------ .../05/GHSA-jjpq-g68f-x6cx/GHSA-jjpq-g68f-x6cx.json | 8 ++------ .../05/GHSA-jmfc-j352-6j46/GHSA-jmfc-j352-6j46.json | 12 +++--------- .../05/GHSA-jp78-pvj8-v3x5/GHSA-jp78-pvj8-v3x5.json | 8 ++------ .../05/GHSA-jp7r-rh2x-fm7j/GHSA-jp7r-rh2x-fm7j.json | 8 ++------ .../05/GHSA-jq8j-c4c7-g7gx/GHSA-jq8j-c4c7-g7gx.json | 8 ++------ .../05/GHSA-jqc5-m6xw-qrg5/GHSA-jqc5-m6xw-qrg5.json | 8 ++------ .../05/GHSA-jv45-q4h8-r5qj/GHSA-jv45-q4h8-r5qj.json | 8 ++------ .../05/GHSA-jx2g-2vg3-x8rp/GHSA-jx2g-2vg3-x8rp.json | 8 ++------ .../05/GHSA-m28r-x4mj-p22v/GHSA-m28r-x4mj-p22v.json | 8 ++------ .../05/GHSA-m6m3-cpjp-mwgw/GHSA-m6m3-cpjp-mwgw.json | 8 ++------ .../05/GHSA-m842-x747-7p5p/GHSA-m842-x747-7p5p.json | 8 ++------ .../05/GHSA-m89f-6fx2-639p/GHSA-m89f-6fx2-639p.json | 12 +++--------- .../05/GHSA-m8xh-c6xx-vm9r/GHSA-m8xh-c6xx-vm9r.json | 12 +++--------- .../05/GHSA-m922-4jf2-phjf/GHSA-m922-4jf2-phjf.json | 4 +--- .../05/GHSA-mc36-m4g2-3jjf/GHSA-mc36-m4g2-3jjf.json | 8 ++------ .../05/GHSA-mc7m-8hwv-hq4r/GHSA-mc7m-8hwv-hq4r.json | 8 ++------ .../05/GHSA-mcjh-g82m-8wfj/GHSA-mcjh-g82m-8wfj.json | 12 +++--------- .../05/GHSA-mf46-j8qw-427c/GHSA-mf46-j8qw-427c.json | 8 ++------ .../05/GHSA-mgjr-3gvp-wpc2/GHSA-mgjr-3gvp-wpc2.json | 12 +++--------- .../05/GHSA-mgmv-gxwr-mfmr/GHSA-mgmv-gxwr-mfmr.json | 8 ++------ .../05/GHSA-mgrc-7p8m-89r3/GHSA-mgrc-7p8m-89r3.json | 8 ++------ .../05/GHSA-mh85-c5xv-9rcv/GHSA-mh85-c5xv-9rcv.json | 8 ++------ .../05/GHSA-mjm3-xc4w-f4mw/GHSA-mjm3-xc4w-f4mw.json | 8 ++------ .../05/GHSA-mjv7-8463-x7pq/GHSA-mjv7-8463-x7pq.json | 4 +--- .../05/GHSA-mmhr-jvw2-9rx9/GHSA-mmhr-jvw2-9rx9.json | 8 ++------ .../05/GHSA-mp3g-r67x-h2fg/GHSA-mp3g-r67x-h2fg.json | 8 ++------ .../05/GHSA-mq3w-5326-vcvq/GHSA-mq3w-5326-vcvq.json | 8 ++------ .../05/GHSA-mqgp-9pfx-9gj4/GHSA-mqgp-9pfx-9gj4.json | 8 ++------ .../05/GHSA-mqxg-3j3q-fm6f/GHSA-mqxg-3j3q-fm6f.json | 8 ++------ .../05/GHSA-mrp9-3c39-p2gx/GHSA-mrp9-3c39-p2gx.json | 8 ++------ .../05/GHSA-mv45-47cr-x39v/GHSA-mv45-47cr-x39v.json | 8 ++------ .../05/GHSA-mv7v-jm2g-787q/GHSA-mv7v-jm2g-787q.json | 8 ++------ .../05/GHSA-mwqr-4g48-mmj8/GHSA-mwqr-4g48-mmj8.json | 8 ++------ .../05/GHSA-p234-3j3r-x8wh/GHSA-p234-3j3r-x8wh.json | 4 +--- .../05/GHSA-p24j-8j47-64q3/GHSA-p24j-8j47-64q3.json | 8 ++------ .../05/GHSA-p25m-vqf3-vqr2/GHSA-p25m-vqf3-vqr2.json | 8 ++------ .../05/GHSA-p284-p85f-wmhx/GHSA-p284-p85f-wmhx.json | 8 ++------ .../05/GHSA-p2p9-vhrp-wv8p/GHSA-p2p9-vhrp-wv8p.json | 8 ++------ .../05/GHSA-p3j9-q9vj-jx3p/GHSA-p3j9-q9vj-jx3p.json | 8 ++------ .../05/GHSA-p3xf-24rj-r72x/GHSA-p3xf-24rj-r72x.json | 8 ++------ .../05/GHSA-p426-497v-jr36/GHSA-p426-497v-jr36.json | 12 +++--------- .../05/GHSA-p45x-6rjm-x9qf/GHSA-p45x-6rjm-x9qf.json | 12 +++--------- .../05/GHSA-p47x-r9f4-v8c6/GHSA-p47x-r9f4-v8c6.json | 8 ++------ .../05/GHSA-p4qj-94p5-hxgw/GHSA-p4qj-94p5-hxgw.json | 8 ++------ .../05/GHSA-p57j-9mpq-mpx6/GHSA-p57j-9mpq-mpx6.json | 4 +--- .../05/GHSA-p59f-h3wr-46jg/GHSA-p59f-h3wr-46jg.json | 8 ++------ .../05/GHSA-p5j3-7j2x-qq65/GHSA-p5j3-7j2x-qq65.json | 12 +++--------- .../05/GHSA-p72r-g2h2-xjj2/GHSA-p72r-g2h2-xjj2.json | 4 +--- .../05/GHSA-p7x9-mq6w-vw9r/GHSA-p7x9-mq6w-vw9r.json | 8 ++------ .../05/GHSA-p88m-3v2c-3rqc/GHSA-p88m-3v2c-3rqc.json | 8 ++------ .../05/GHSA-p8g6-hcv2-45w4/GHSA-p8g6-hcv2-45w4.json | 8 ++------ .../05/GHSA-p8v7-4ppq-3h6m/GHSA-p8v7-4ppq-3h6m.json | 8 ++------ .../05/GHSA-p958-hfq6-5xfg/GHSA-p958-hfq6-5xfg.json | 12 +++--------- .../05/GHSA-p9mq-62hj-475x/GHSA-p9mq-62hj-475x.json | 8 ++------ .../05/GHSA-p9xp-4jv8-8r8f/GHSA-p9xp-4jv8-8r8f.json | 12 +++--------- .../05/GHSA-pc34-hh6r-6f5x/GHSA-pc34-hh6r-6f5x.json | 8 ++------ .../05/GHSA-pcr6-jw4p-x349/GHSA-pcr6-jw4p-x349.json | 8 ++------ .../05/GHSA-pf78-r4pc-w83f/GHSA-pf78-r4pc-w83f.json | 4 +--- .../05/GHSA-pfvv-5q7w-g93r/GHSA-pfvv-5q7w-g93r.json | 12 +++--------- .../05/GHSA-pgx7-wrrj-29jh/GHSA-pgx7-wrrj-29jh.json | 8 ++------ .../05/GHSA-phqf-vpmf-pr93/GHSA-phqf-vpmf-pr93.json | 12 +++--------- .../05/GHSA-pj98-w72v-7m4m/GHSA-pj98-w72v-7m4m.json | 12 +++--------- .../05/GHSA-pjfm-8r7q-49p6/GHSA-pjfm-8r7q-49p6.json | 8 ++------ .../05/GHSA-pjj7-pr69-8w54/GHSA-pjj7-pr69-8w54.json | 8 ++------ .../05/GHSA-pm5m-9h5r-xcrg/GHSA-pm5m-9h5r-xcrg.json | 8 ++------ .../05/GHSA-pp6w-fwmc-mg7c/GHSA-pp6w-fwmc-mg7c.json | 8 ++------ .../05/GHSA-pp7w-86q6-r4x9/GHSA-pp7w-86q6-r4x9.json | 8 ++------ .../05/GHSA-pqpx-pr88-73hq/GHSA-pqpx-pr88-73hq.json | 8 ++------ .../05/GHSA-prjg-c9x4-p593/GHSA-prjg-c9x4-p593.json | 8 ++------ .../05/GHSA-pvfw-g6m7-hcq2/GHSA-pvfw-g6m7-hcq2.json | 12 +++--------- .../05/GHSA-pwc6-cf6q-wrx8/GHSA-pwc6-cf6q-wrx8.json | 8 ++------ .../05/GHSA-pxgq-qc9r-qfj4/GHSA-pxgq-qc9r-qfj4.json | 8 ++------ .../05/GHSA-pxqv-4rrp-wmpm/GHSA-pxqv-4rrp-wmpm.json | 8 ++------ .../05/GHSA-q23q-vqjp-vwv2/GHSA-q23q-vqjp-vwv2.json | 8 ++------ .../05/GHSA-q244-mfxp-9v7p/GHSA-q244-mfxp-9v7p.json | 12 +++--------- .../05/GHSA-q334-xpwh-2c6w/GHSA-q334-xpwh-2c6w.json | 8 ++------ .../05/GHSA-q3wm-x327-jm28/GHSA-q3wm-x327-jm28.json | 8 ++------ .../05/GHSA-q4cf-5q7c-rjwq/GHSA-q4cf-5q7c-rjwq.json | 8 ++------ .../05/GHSA-q4f9-vjvh-mj9g/GHSA-q4f9-vjvh-mj9g.json | 8 ++------ .../05/GHSA-q553-45jw-h629/GHSA-q553-45jw-h629.json | 8 ++------ .../05/GHSA-q586-9vp6-cjff/GHSA-q586-9vp6-cjff.json | 8 ++------ .../05/GHSA-q5vg-rh33-mggr/GHSA-q5vg-rh33-mggr.json | 8 ++------ .../05/GHSA-q74g-vcr2-qqqf/GHSA-q74g-vcr2-qqqf.json | 8 ++------ .../05/GHSA-q76f-qpfv-q3c3/GHSA-q76f-qpfv-q3c3.json | 8 ++------ .../05/GHSA-q783-99c3-p38v/GHSA-q783-99c3-p38v.json | 8 ++------ .../05/GHSA-q7xq-7q78-w7qh/GHSA-q7xq-7q78-w7qh.json | 8 ++------ .../05/GHSA-q929-cmpr-rxf4/GHSA-q929-cmpr-rxf4.json | 8 ++------ .../05/GHSA-q9fr-r9vg-8qvh/GHSA-q9fr-r9vg-8qvh.json | 8 ++------ .../05/GHSA-qc5h-5mc6-5cc9/GHSA-qc5h-5mc6-5cc9.json | 8 ++------ .../05/GHSA-qf5r-6wjw-cj95/GHSA-qf5r-6wjw-cj95.json | 8 ++------ .../05/GHSA-qg3h-7xjj-r5g4/GHSA-qg3h-7xjj-r5g4.json | 12 +++--------- .../05/GHSA-qg8w-4xw5-c8px/GHSA-qg8w-4xw5-c8px.json | 8 ++------ .../05/GHSA-qgr7-56g7-hq4g/GHSA-qgr7-56g7-hq4g.json | 8 ++------ .../05/GHSA-qjmw-97wq-2689/GHSA-qjmw-97wq-2689.json | 8 ++------ .../05/GHSA-qjxh-ph22-2wcj/GHSA-qjxh-ph22-2wcj.json | 8 ++------ .../05/GHSA-qq2x-j84f-pf8v/GHSA-qq2x-j84f-pf8v.json | 12 +++--------- .../05/GHSA-qqg3-83j7-fvhj/GHSA-qqg3-83j7-fvhj.json | 8 ++------ .../05/GHSA-qr44-66jp-647q/GHSA-qr44-66jp-647q.json | 8 ++------ .../05/GHSA-qrhf-2wgr-7482/GHSA-qrhf-2wgr-7482.json | 8 ++------ .../05/GHSA-qrm3-ww98-8r4q/GHSA-qrm3-ww98-8r4q.json | 8 ++------ .../05/GHSA-qw26-gjw2-7hcf/GHSA-qw26-gjw2-7hcf.json | 8 ++------ .../05/GHSA-qxr5-2c92-fj86/GHSA-qxr5-2c92-fj86.json | 4 +--- .../05/GHSA-r54g-7x82-7cf5/GHSA-r54g-7x82-7cf5.json | 8 ++------ .../05/GHSA-r56q-2pqm-447v/GHSA-r56q-2pqm-447v.json | 8 ++------ .../05/GHSA-r68f-vv58-jpgh/GHSA-r68f-vv58-jpgh.json | 12 +++--------- .../05/GHSA-r766-h5wh-3jf8/GHSA-r766-h5wh-3jf8.json | 8 ++------ .../05/GHSA-r78f-5rrq-2mm3/GHSA-r78f-5rrq-2mm3.json | 12 +++--------- .../05/GHSA-r832-r6x8-hgp3/GHSA-r832-r6x8-hgp3.json | 8 ++------ .../05/GHSA-r874-7872-gp98/GHSA-r874-7872-gp98.json | 8 ++------ .../05/GHSA-r8vj-4mwf-hc6x/GHSA-r8vj-4mwf-hc6x.json | 8 ++------ .../05/GHSA-rcfw-ggjf-vmfj/GHSA-rcfw-ggjf-vmfj.json | 12 +++--------- .../05/GHSA-rcmx-rx26-vhpv/GHSA-rcmx-rx26-vhpv.json | 8 ++------ .../05/GHSA-rf8x-wv8r-4xxm/GHSA-rf8x-wv8r-4xxm.json | 8 ++------ .../05/GHSA-rfg8-m894-j49x/GHSA-rfg8-m894-j49x.json | 8 ++------ .../05/GHSA-rhcm-fwc8-8vhm/GHSA-rhcm-fwc8-8vhm.json | 8 ++------ .../05/GHSA-rj58-f4r4-fgj5/GHSA-rj58-f4r4-fgj5.json | 8 ++------ .../05/GHSA-rj5h-39v8-hch3/GHSA-rj5h-39v8-hch3.json | 8 ++------ .../05/GHSA-rjf2-c9wx-9h7g/GHSA-rjf2-c9wx-9h7g.json | 8 ++------ .../05/GHSA-rjfj-2398-v5jh/GHSA-rjfj-2398-v5jh.json | 8 ++------ .../05/GHSA-rmqj-97wc-2526/GHSA-rmqj-97wc-2526.json | 8 ++------ .../05/GHSA-rmrh-q9r6-cqxq/GHSA-rmrh-q9r6-cqxq.json | 12 +++--------- .../05/GHSA-rp38-h7w4-j9m3/GHSA-rp38-h7w4-j9m3.json | 8 ++------ .../05/GHSA-rr8g-9x6h-ggvf/GHSA-rr8g-9x6h-ggvf.json | 8 ++------ .../05/GHSA-rrgm-3qrm-8r6m/GHSA-rrgm-3qrm-8r6m.json | 8 ++------ .../05/GHSA-rv8p-rcvp-x7qg/GHSA-rv8p-rcvp-x7qg.json | 8 ++------ .../05/GHSA-rwm5-j4gw-46m8/GHSA-rwm5-j4gw-46m8.json | 8 ++------ .../05/GHSA-rxx9-mrvw-53f7/GHSA-rxx9-mrvw-53f7.json | 8 ++------ .../05/GHSA-v24j-r79f-w838/GHSA-v24j-r79f-w838.json | 8 ++------ .../05/GHSA-v2mw-g73g-923h/GHSA-v2mw-g73g-923h.json | 12 +++--------- .../05/GHSA-v2p8-7jjc-gfv9/GHSA-v2p8-7jjc-gfv9.json | 4 +--- .../05/GHSA-v2w9-vg3g-gcmw/GHSA-v2w9-vg3g-gcmw.json | 8 ++------ .../05/GHSA-v439-7jcj-2c2j/GHSA-v439-7jcj-2c2j.json | 8 ++------ .../05/GHSA-v4jc-mmh3-qj2w/GHSA-v4jc-mmh3-qj2w.json | 8 ++------ .../05/GHSA-v4vg-v399-3gx2/GHSA-v4vg-v399-3gx2.json | 8 ++------ .../05/GHSA-v4x7-h7pv-94wj/GHSA-v4x7-h7pv-94wj.json | 8 ++------ .../05/GHSA-v57r-q7qp-7jg8/GHSA-v57r-q7qp-7jg8.json | 8 ++------ .../05/GHSA-v5ff-7w82-r6g5/GHSA-v5ff-7w82-r6g5.json | 8 ++------ .../05/GHSA-v74x-h8vc-p3j5/GHSA-v74x-h8vc-p3j5.json | 8 ++------ .../05/GHSA-v7vf-rv5x-3j8g/GHSA-v7vf-rv5x-3j8g.json | 8 ++------ .../05/GHSA-v897-w6q7-m59x/GHSA-v897-w6q7-m59x.json | 8 ++------ .../05/GHSA-v9cv-623f-mpwx/GHSA-v9cv-623f-mpwx.json | 8 ++------ .../05/GHSA-v9m2-f663-9952/GHSA-v9m2-f663-9952.json | 8 ++------ .../05/GHSA-vf7c-ccwg-92rf/GHSA-vf7c-ccwg-92rf.json | 8 ++------ .../05/GHSA-vfmc-vxg8-88xg/GHSA-vfmc-vxg8-88xg.json | 12 +++--------- .../05/GHSA-vfvg-4xhm-9ppq/GHSA-vfvg-4xhm-9ppq.json | 8 ++------ .../05/GHSA-vfx3-5xwg-q5jm/GHSA-vfx3-5xwg-q5jm.json | 8 ++------ .../05/GHSA-vg8x-r8gm-9mcp/GHSA-vg8x-r8gm-9mcp.json | 12 +++--------- .../05/GHSA-vgrp-wvp9-2pfm/GHSA-vgrp-wvp9-2pfm.json | 12 +++--------- .../05/GHSA-vgvv-3x6g-xpx5/GHSA-vgvv-3x6g-xpx5.json | 8 ++------ .../05/GHSA-vhf3-3f7m-h82m/GHSA-vhf3-3f7m-h82m.json | 8 ++------ .../05/GHSA-vhhg-wfx6-rjw6/GHSA-vhhg-wfx6-rjw6.json | 8 ++------ .../05/GHSA-vj89-m86v-pp2w/GHSA-vj89-m86v-pp2w.json | 8 ++------ .../05/GHSA-vjpx-8gm7-4pxc/GHSA-vjpx-8gm7-4pxc.json | 12 +++--------- .../05/GHSA-vm53-43cv-j7p2/GHSA-vm53-43cv-j7p2.json | 8 ++------ .../05/GHSA-vp2f-jrfq-qr4m/GHSA-vp2f-jrfq-qr4m.json | 12 +++--------- .../05/GHSA-vq56-9vcf-xwq4/GHSA-vq56-9vcf-xwq4.json | 8 ++------ .../05/GHSA-vq5g-4pw8-m6rw/GHSA-vq5g-4pw8-m6rw.json | 8 ++------ .../05/GHSA-vqmc-89mm-v3q9/GHSA-vqmc-89mm-v3q9.json | 12 +++--------- .../05/GHSA-vqxw-7xc2-mjhv/GHSA-vqxw-7xc2-mjhv.json | 8 ++------ .../05/GHSA-vw9w-whc3-87rm/GHSA-vw9w-whc3-87rm.json | 8 ++------ .../05/GHSA-vxv8-22w3-3cgm/GHSA-vxv8-22w3-3cgm.json | 12 +++--------- .../05/GHSA-w34c-rmp4-8hrh/GHSA-w34c-rmp4-8hrh.json | 12 +++--------- .../05/GHSA-w3gc-4qj5-r5xm/GHSA-w3gc-4qj5-r5xm.json | 8 ++------ .../05/GHSA-w47q-rrrf-67w3/GHSA-w47q-rrrf-67w3.json | 8 ++------ .../05/GHSA-w48m-7fx4-rwmx/GHSA-w48m-7fx4-rwmx.json | 8 ++------ .../05/GHSA-w4fv-wh95-32j3/GHSA-w4fv-wh95-32j3.json | 8 ++------ .../05/GHSA-w4h4-2742-q7rr/GHSA-w4h4-2742-q7rr.json | 8 ++------ .../05/GHSA-w6xh-7r58-f4hq/GHSA-w6xh-7r58-f4hq.json | 8 ++------ .../05/GHSA-w75g-pf4w-q85j/GHSA-w75g-pf4w-q85j.json | 12 +++--------- .../05/GHSA-w7c5-5hpg-529h/GHSA-w7c5-5hpg-529h.json | 8 ++------ .../05/GHSA-w847-ffvp-553c/GHSA-w847-ffvp-553c.json | 8 ++------ .../05/GHSA-w93p-79pv-qwgc/GHSA-w93p-79pv-qwgc.json | 4 +--- .../05/GHSA-wc34-94x4-v5r4/GHSA-wc34-94x4-v5r4.json | 8 ++------ .../05/GHSA-wcc3-x47q-2m82/GHSA-wcc3-x47q-2m82.json | 8 ++------ .../05/GHSA-wcw8-xmrj-c45h/GHSA-wcw8-xmrj-c45h.json | 8 ++------ .../05/GHSA-wf8r-hqj6-cr36/GHSA-wf8r-hqj6-cr36.json | 8 ++------ .../05/GHSA-wh8f-x7rp-h62h/GHSA-wh8f-x7rp-h62h.json | 8 ++------ .../05/GHSA-whrj-rv6r-cv2v/GHSA-whrj-rv6r-cv2v.json | 8 ++------ .../05/GHSA-wj44-vm9q-56xc/GHSA-wj44-vm9q-56xc.json | 4 +--- .../05/GHSA-wjww-59jc-83xc/GHSA-wjww-59jc-83xc.json | 12 +++--------- .../05/GHSA-wmfj-qw37-mw3q/GHSA-wmfj-qw37-mw3q.json | 12 +++--------- .../05/GHSA-wmwg-4ppq-2pvx/GHSA-wmwg-4ppq-2pvx.json | 12 +++--------- .../05/GHSA-wq2c-7m9f-vjwv/GHSA-wq2c-7m9f-vjwv.json | 8 ++------ .../05/GHSA-wqcp-cvwj-hr22/GHSA-wqcp-cvwj-hr22.json | 8 ++------ .../05/GHSA-wqmg-q854-x6x6/GHSA-wqmg-q854-x6x6.json | 8 ++------ .../05/GHSA-wv79-p5j7-rg6p/GHSA-wv79-p5j7-rg6p.json | 4 +--- .../05/GHSA-wv99-66q7-v8jf/GHSA-wv99-66q7-v8jf.json | 8 ++------ .../05/GHSA-ww6f-jp5h-g5hq/GHSA-ww6f-jp5h-g5hq.json | 8 ++------ .../05/GHSA-ww89-94rw-5jpj/GHSA-ww89-94rw-5jpj.json | 4 +--- .../05/GHSA-wwqf-vvjr-rmw4/GHSA-wwqf-vvjr-rmw4.json | 4 +--- .../05/GHSA-wx8f-9362-6rfq/GHSA-wx8f-9362-6rfq.json | 8 ++------ .../05/GHSA-wx8f-jm47-79q2/GHSA-wx8f-jm47-79q2.json | 8 ++------ .../05/GHSA-wxc4-9h3r-gjqp/GHSA-wxc4-9h3r-gjqp.json | 8 ++------ .../05/GHSA-x35g-72f7-68c2/GHSA-x35g-72f7-68c2.json | 8 ++------ .../05/GHSA-x3j9-5xh7-mxxf/GHSA-x3j9-5xh7-mxxf.json | 8 ++------ .../05/GHSA-x3w4-f7g4-5q46/GHSA-x3w4-f7g4-5q46.json | 4 +--- .../05/GHSA-x3x6-8hwq-3mg4/GHSA-x3x6-8hwq-3mg4.json | 8 ++------ .../05/GHSA-x42g-qgc8-x79q/GHSA-x42g-qgc8-x79q.json | 8 ++------ .../05/GHSA-x47p-5cqv-9c4w/GHSA-x47p-5cqv-9c4w.json | 8 ++------ .../05/GHSA-x5x8-54j8-pvh6/GHSA-x5x8-54j8-pvh6.json | 12 +++--------- .../05/GHSA-x6rv-c4jg-frh2/GHSA-x6rv-c4jg-frh2.json | 8 ++------ .../05/GHSA-x6xc-r9j4-hqp7/GHSA-x6xc-r9j4-hqp7.json | 4 +--- .../05/GHSA-x7xc-gpw2-j5mw/GHSA-x7xc-gpw2-j5mw.json | 8 ++------ .../05/GHSA-x826-r76q-3v66/GHSA-x826-r76q-3v66.json | 8 ++------ .../05/GHSA-x8cq-94r7-3vvq/GHSA-x8cq-94r7-3vvq.json | 8 ++------ .../05/GHSA-x8h2-3299-96fr/GHSA-x8h2-3299-96fr.json | 12 +++--------- .../05/GHSA-x8hv-5jw9-w467/GHSA-x8hv-5jw9-w467.json | 8 ++------ .../05/GHSA-xc9v-r8v4-3r62/GHSA-xc9v-r8v4-3r62.json | 8 ++------ .../05/GHSA-xcxj-rfmv-wfv3/GHSA-xcxj-rfmv-wfv3.json | 8 ++------ .../05/GHSA-xf2g-m4p8-7r3c/GHSA-xf2g-m4p8-7r3c.json | 8 ++------ .../05/GHSA-xffw-v379-pm86/GHSA-xffw-v379-pm86.json | 8 ++------ .../05/GHSA-xfhg-32qj-f5r2/GHSA-xfhg-32qj-f5r2.json | 8 ++------ .../05/GHSA-xfq3-pwqj-rm62/GHSA-xfq3-pwqj-rm62.json | 8 ++------ .../05/GHSA-xg92-g8h7-v7r4/GHSA-xg92-g8h7-v7r4.json | 4 +--- .../05/GHSA-xgf9-9fpj-mv3c/GHSA-xgf9-9fpj-mv3c.json | 4 +--- .../05/GHSA-xj96-hvw8-2mj2/GHSA-xj96-hvw8-2mj2.json | 12 +++--------- .../05/GHSA-xm75-gvqm-4ffq/GHSA-xm75-gvqm-4ffq.json | 8 ++------ .../05/GHSA-xm9f-gqc6-828p/GHSA-xm9f-gqc6-828p.json | 8 ++------ .../05/GHSA-xmqp-rfcw-jxfj/GHSA-xmqp-rfcw-jxfj.json | 8 ++------ .../05/GHSA-xp6f-58mg-33c6/GHSA-xp6f-58mg-33c6.json | 8 ++------ .../05/GHSA-xp84-wmvr-25h3/GHSA-xp84-wmvr-25h3.json | 8 ++------ .../05/GHSA-xphg-6xr4-x7rp/GHSA-xphg-6xr4-x7rp.json | 12 +++--------- .../05/GHSA-xpj8-hw7p-pxp2/GHSA-xpj8-hw7p-pxp2.json | 8 ++------ .../05/GHSA-xpvc-gvmh-mpmj/GHSA-xpvc-gvmh-mpmj.json | 12 +++--------- .../05/GHSA-xr7f-4hm8-fh72/GHSA-xr7f-4hm8-fh72.json | 8 ++------ .../05/GHSA-xv88-33jr-r66f/GHSA-xv88-33jr-r66f.json | 12 +++--------- .../05/GHSA-xvh8-gxxm-2h9g/GHSA-xvh8-gxxm-2h9g.json | 8 ++------ .../05/GHSA-xvpp-959v-c63p/GHSA-xvpp-959v-c63p.json | 12 +++--------- .../05/GHSA-xwpx-jmv4-36rg/GHSA-xwpx-jmv4-36rg.json | 12 +++--------- .../05/GHSA-xxcm-x786-q6gg/GHSA-xxcm-x786-q6gg.json | 12 +++--------- .../05/GHSA-xxm4-8498-pwrr/GHSA-xxm4-8498-pwrr.json | 8 ++------ .../05/GHSA-xxp7-f9hw-8j74/GHSA-xxp7-f9hw-8j74.json | 4 +--- .../08/GHSA-789c-4pgv-92rh/GHSA-789c-4pgv-92rh.json | 4 +--- .../08/GHSA-7j8w-jqvj-386m/GHSA-7j8w-jqvj-386m.json | 4 +--- .../08/GHSA-fp9w-4hqx-5jxj/GHSA-fp9w-4hqx-5jxj.json | 4 +--- .../08/GHSA-wx26-9fw6-5vr5/GHSA-wx26-9fw6-5vr5.json | 4 +--- .../09/GHSA-v7hc-jc7g-98g9/GHSA-v7hc-jc7g-98g9.json | 4 +--- .../10/GHSA-6p9q-3fp4-ff53/GHSA-6p9q-3fp4-ff53.json | 8 ++------ .../10/GHSA-7h2h-qrhm-554p/GHSA-7h2h-qrhm-554p.json | 4 +--- .../10/GHSA-8whj-56g5-vq26/GHSA-8whj-56g5-vq26.json | 4 +--- .../10/GHSA-fq9q-qcfp-qgp2/GHSA-fq9q-qcfp-qgp2.json | 4 +--- .../10/GHSA-x27x-7595-v3m5/GHSA-x27x-7595-v3m5.json | 4 +--- .../11/GHSA-2227-8m6h-q7c2/GHSA-2227-8m6h-q7c2.json | 4 +--- .../11/GHSA-2rxc-97gh-gwr2/GHSA-2rxc-97gh-gwr2.json | 4 +--- .../11/GHSA-3j83-m58c-vrr9/GHSA-3j83-m58c-vrr9.json | 4 +--- .../11/GHSA-42mr-8vj5-9j9x/GHSA-42mr-8vj5-9j9x.json | 4 +--- .../11/GHSA-54hj-fg79-qhg7/GHSA-54hj-fg79-qhg7.json | 8 ++------ .../11/GHSA-5529-988r-7c93/GHSA-5529-988r-7c93.json | 4 +--- .../11/GHSA-55r5-94v7-868j/GHSA-55r5-94v7-868j.json | 4 +--- .../11/GHSA-5m2g-whv8-xj9q/GHSA-5m2g-whv8-xj9q.json | 4 +--- .../11/GHSA-76hh-c32p-qpf2/GHSA-76hh-c32p-qpf2.json | 4 +--- .../11/GHSA-978q-8v4p-796v/GHSA-978q-8v4p-796v.json | 4 +--- .../11/GHSA-fh27-97r5-49gq/GHSA-fh27-97r5-49gq.json | 4 +--- .../11/GHSA-fv7q-rvfh-pg5h/GHSA-fv7q-rvfh-pg5h.json | 4 +--- .../11/GHSA-fvjh-rh68-qmhg/GHSA-fvjh-rh68-qmhg.json | 4 +--- .../11/GHSA-gmj6-42q6-cwrf/GHSA-gmj6-42q6-cwrf.json | 4 +--- .../11/GHSA-m496-649x-hgmr/GHSA-m496-649x-hgmr.json | 4 +--- .../11/GHSA-mhv9-pjh5-g3cf/GHSA-mhv9-pjh5-g3cf.json | 4 +--- .../11/GHSA-q4r3-rj3j-6c93/GHSA-q4r3-rj3j-6c93.json | 4 +--- .../01/GHSA-489f-78mr-mq29/GHSA-489f-78mr-mq29.json | 4 +--- .../01/GHSA-8h8q-pcwj-rx99/GHSA-8h8q-pcwj-rx99.json | 4 +--- .../01/GHSA-cm4x-r333-vvv9/GHSA-cm4x-r333-vvv9.json | 4 +--- .../01/GHSA-g5qg-593p-j5gq/GHSA-g5qg-593p-j5gq.json | 8 ++------ .../01/GHSA-rj78-2fm5-wrfp/GHSA-rj78-2fm5-wrfp.json | 4 +--- .../01/GHSA-rwwv-hvjg-wcrp/GHSA-rwwv-hvjg-wcrp.json | 4 +--- .../01/GHSA-vfm9-f37f-c9j3/GHSA-vfm9-f37f-c9j3.json | 8 ++------ .../01/GHSA-wp84-qf9p-3vp8/GHSA-wp84-qf9p-3vp8.json | 4 +--- .../01/GHSA-xfq3-69mc-84pr/GHSA-xfq3-69mc-84pr.json | 4 +--- .../02/GHSA-27g3-qf2q-r4wm/GHSA-27g3-qf2q-r4wm.json | 4 +--- .../02/GHSA-2hfg-hghr-46wq/GHSA-2hfg-hghr-46wq.json | 4 +--- .../02/GHSA-2w6h-738h-38w6/GHSA-2w6h-738h-38w6.json | 4 +--- .../02/GHSA-3jp8-9qj5-8cv3/GHSA-3jp8-9qj5-8cv3.json | 4 +--- .../02/GHSA-3wcx-w5qh-8gcx/GHSA-3wcx-w5qh-8gcx.json | 4 +--- .../02/GHSA-4h4v-hcr3-cjc9/GHSA-4h4v-hcr3-cjc9.json | 4 +--- .../02/GHSA-4pv9-28wr-pgch/GHSA-4pv9-28wr-pgch.json | 4 +--- .../02/GHSA-5j52-cw8c-xpw2/GHSA-5j52-cw8c-xpw2.json | 4 +--- .../02/GHSA-5qqc-77m4-694h/GHSA-5qqc-77m4-694h.json | 4 +--- .../02/GHSA-647w-72c4-73xq/GHSA-647w-72c4-73xq.json | 4 +--- .../02/GHSA-6646-357c-xmmh/GHSA-6646-357c-xmmh.json | 8 ++------ .../02/GHSA-66f3-5m77-hrqg/GHSA-66f3-5m77-hrqg.json | 4 +--- .../02/GHSA-66rx-339r-mm8j/GHSA-66rx-339r-mm8j.json | 4 +--- .../02/GHSA-67q3-fvq7-75c8/GHSA-67q3-fvq7-75c8.json | 4 +--- .../02/GHSA-83hr-hwqh-94w5/GHSA-83hr-hwqh-94w5.json | 4 +--- .../02/GHSA-8q3r-wcm3-84jc/GHSA-8q3r-wcm3-84jc.json | 4 +--- .../02/GHSA-92hx-58m2-fcvh/GHSA-92hx-58m2-fcvh.json | 4 +--- .../02/GHSA-999m-wm5p-rpj8/GHSA-999m-wm5p-rpj8.json | 4 +--- .../02/GHSA-99w2-8wxr-wm2j/GHSA-99w2-8wxr-wm2j.json | 8 ++------ .../02/GHSA-c2x6-rvvf-2x2v/GHSA-c2x6-rvvf-2x2v.json | 4 +--- .../02/GHSA-cr32-g7qv-w888/GHSA-cr32-g7qv-w888.json | 4 +--- .../02/GHSA-fqww-44f8-q7w7/GHSA-fqww-44f8-q7w7.json | 4 +--- .../02/GHSA-frq2-jgm9-3p6x/GHSA-frq2-jgm9-3p6x.json | 4 +--- .../02/GHSA-fxh3-p58p-8jx5/GHSA-fxh3-p58p-8jx5.json | 4 +--- .../02/GHSA-hqhj-gh6r-4grg/GHSA-hqhj-gh6r-4grg.json | 4 +--- .../02/GHSA-hr44-hqgh-6mf2/GHSA-hr44-hqgh-6mf2.json | 4 +--- .../02/GHSA-p6wr-f2hq-5mh6/GHSA-p6wr-f2hq-5mh6.json | 4 +--- .../02/GHSA-p86c-7jgw-fvwf/GHSA-p86c-7jgw-fvwf.json | 4 +--- .../02/GHSA-pj6x-87qc-w9f6/GHSA-pj6x-87qc-w9f6.json | 4 +--- .../02/GHSA-q84g-j4pw-hjh5/GHSA-q84g-j4pw-hjh5.json | 4 +--- .../02/GHSA-qvqm-f8p9-vr4c/GHSA-qvqm-f8p9-vr4c.json | 4 +--- .../02/GHSA-qx7f-p25m-8c56/GHSA-qx7f-p25m-8c56.json | 4 +--- .../02/GHSA-r3fh-95rm-cx6p/GHSA-r3fh-95rm-cx6p.json | 4 +--- .../02/GHSA-r8jg-664j-5xqf/GHSA-r8jg-664j-5xqf.json | 4 +--- .../02/GHSA-r9hq-v925-r8jc/GHSA-r9hq-v925-r8jc.json | 4 +--- .../02/GHSA-x28p-2rmr-cx3p/GHSA-x28p-2rmr-cx3p.json | 4 +--- .../02/GHSA-x4xc-8g7v-c85h/GHSA-x4xc-8g7v-c85h.json | 4 +--- .../02/GHSA-xr6g-gv3h-f4fw/GHSA-xr6g-gv3h-f4fw.json | 8 ++------ .../05/GHSA-22j5-63rc-6cq9/GHSA-22j5-63rc-6cq9.json | 4 +--- .../05/GHSA-2xgc-j2vj-q7gf/GHSA-2xgc-j2vj-q7gf.json | 4 +--- .../05/GHSA-34c4-3wv9-23ch/GHSA-34c4-3wv9-23ch.json | 4 +--- .../05/GHSA-3mhw-f79r-crmm/GHSA-3mhw-f79r-crmm.json | 12 +++--------- .../05/GHSA-3qh7-pv9c-8cxc/GHSA-3qh7-pv9c-8cxc.json | 4 +--- .../05/GHSA-48vc-2479-rfvr/GHSA-48vc-2479-rfvr.json | 12 +++--------- .../05/GHSA-4vgj-rwj6-4gwr/GHSA-4vgj-rwj6-4gwr.json | 4 +--- .../05/GHSA-4wj3-7p36-wmrw/GHSA-4wj3-7p36-wmrw.json | 4 +--- .../05/GHSA-5chv-gxjv-3g37/GHSA-5chv-gxjv-3g37.json | 4 +--- .../05/GHSA-69pf-4hfw-vpvh/GHSA-69pf-4hfw-vpvh.json | 4 +--- .../05/GHSA-7265-32xx-ffhx/GHSA-7265-32xx-ffhx.json | 4 +--- .../05/GHSA-7grh-8hh5-88pf/GHSA-7grh-8hh5-88pf.json | 4 +--- .../05/GHSA-977m-qww6-wq3m/GHSA-977m-qww6-wq3m.json | 8 ++------ .../05/GHSA-c592-6f6m-vm4h/GHSA-c592-6f6m-vm4h.json | 4 +--- .../05/GHSA-f6pr-3mcc-9v92/GHSA-f6pr-3mcc-9v92.json | 4 +--- .../05/GHSA-fq23-5997-3879/GHSA-fq23-5997-3879.json | 4 +--- .../05/GHSA-frv4-f3cq-3x3v/GHSA-frv4-f3cq-3x3v.json | 4 +--- .../05/GHSA-gv23-mcr7-vrqf/GHSA-gv23-mcr7-vrqf.json | 4 +--- .../05/GHSA-h394-8gc3-g7pj/GHSA-h394-8gc3-g7pj.json | 4 +--- .../05/GHSA-hwq4-p9m3-4cjm/GHSA-hwq4-p9m3-4cjm.json | 4 +--- .../05/GHSA-j5j7-c96c-3p39/GHSA-j5j7-c96c-3p39.json | 4 +--- .../05/GHSA-qffg-p58p-854c/GHSA-qffg-p58p-854c.json | 4 +--- .../05/GHSA-v863-wq9j-pjg4/GHSA-v863-wq9j-pjg4.json | 4 +--- .../05/GHSA-vhmj-v5p6-jwhv/GHSA-vhmj-v5p6-jwhv.json | 4 +--- .../05/GHSA-w6q8-c6q3-jvxr/GHSA-w6q8-c6q3-jvxr.json | 4 +--- .../05/GHSA-w9q2-p57h-r357/GHSA-w9q2-p57h-r357.json | 4 +--- .../05/GHSA-wg7h-v937-9wh2/GHSA-wg7h-v937-9wh2.json | 4 +--- .../05/GHSA-wpgr-gpcm-6xw3/GHSA-wpgr-gpcm-6xw3.json | 4 +--- .../05/GHSA-wq56-88x3-qc5r/GHSA-wq56-88x3-qc5r.json | 4 +--- .../05/GHSA-x3r4-5hf3-cxgc/GHSA-x3r4-5hf3-cxgc.json | 4 +--- .../05/GHSA-x865-q275-326g/GHSA-x865-q275-326g.json | 4 +--- 899 files changed, 1746 insertions(+), 5238 deletions(-) diff --git a/advisories/github-reviewed/2021/05/GHSA-2frx-j9hj-6c65/GHSA-2frx-j9hj-6c65.json b/advisories/github-reviewed/2021/05/GHSA-2frx-j9hj-6c65/GHSA-2frx-j9hj-6c65.json index 91269e85a97..2ad242a688a 100644 --- a/advisories/github-reviewed/2021/05/GHSA-2frx-j9hj-6c65/GHSA-2frx-j9hj-6c65.json +++ b/advisories/github-reviewed/2021/05/GHSA-2frx-j9hj-6c65/GHSA-2frx-j9hj-6c65.json @@ -3,14 +3,10 @@ "id": "GHSA-2frx-j9hj-6c65", "modified": "2021-10-08T21:21:39Z", "published": "2021-05-17T20:52:21Z", - "aliases": [ - - ], + "aliases": [], "summary": "User enumeration in authentication mechanisms", "details": "Description\n-----------\n\nThe ability to enumerate users was possible without relevant permissions due to different exception messages depending on whether the user existed or not. \n\nResolution\n----------\n\nWe now ensure that a generic message is returned whether the user exists or not if the password is invalid or if the user does not exist.\n\nThe patch for this issue is available [here](https://github.com/lexik/LexikJWTAuthenticationBundle/commit/a175d6dab968d93e96a3e4f80c495435f71d5eb7) for branch 2.10.x and 2.x.\n\nCredits\n-------\n\nI would like to thank James Isaac and Mathias Brodala for reporting the issue and Robin Chalas for fixing the issue.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/05/GHSA-7h5v-85w9-pq6c/GHSA-7h5v-85w9-pq6c.json b/advisories/github-reviewed/2021/05/GHSA-7h5v-85w9-pq6c/GHSA-7h5v-85w9-pq6c.json index 3debea251f9..12f5adea091 100644 --- a/advisories/github-reviewed/2021/05/GHSA-7h5v-85w9-pq6c/GHSA-7h5v-85w9-pq6c.json +++ b/advisories/github-reviewed/2021/05/GHSA-7h5v-85w9-pq6c/GHSA-7h5v-85w9-pq6c.json @@ -3,14 +3,10 @@ "id": "GHSA-7h5v-85w9-pq6c", "modified": "2021-05-19T19:34:56Z", "published": "2021-05-19T23:01:45Z", - "aliases": [ - - ], + "aliases": [], "summary": "Denial of service (via resource exhaustion) due to improper input validation in third-party identifier endpoint", "details": "### Impact\nMissing input validation of some parameters on the endpoints used to confirm third-party identifiers could cause excessive use of disk space and memory leading to resource exhaustion.\n\n### Patches\nThe issue is fixed by https://github.com/matrix-org/synapse/pull/9855.\n\n### Workarounds\nThere are no known workarounds.\n\n### References\nn/a\n\n### For more information\nIf you have any questions or comments about this advisory, email us at security@matrix.org.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/05/GHSA-8796-gc9j-63rv/GHSA-8796-gc9j-63rv.json b/advisories/github-reviewed/2021/05/GHSA-8796-gc9j-63rv/GHSA-8796-gc9j-63rv.json index aeccb823631..8ad9fbdc911 100644 --- a/advisories/github-reviewed/2021/05/GHSA-8796-gc9j-63rv/GHSA-8796-gc9j-63rv.json +++ b/advisories/github-reviewed/2021/05/GHSA-8796-gc9j-63rv/GHSA-8796-gc9j-63rv.json @@ -3,9 +3,7 @@ "id": "GHSA-8796-gc9j-63rv", "modified": "2021-10-05T16:31:48Z", "published": "2021-05-17T20:51:16Z", - "aliases": [ - - ], + "aliases": [], "summary": "File upload local preview can run embedded scripts after user interaction", "details": "### Impact\n\nWhen uploading a file, the local file preview can lead to execution of scripts embedded in the uploaded file, but only after several user interactions to open the preview in a separate tab. This only impacts the local user while in the process of uploading. It cannot be exploited remotely or by other users.\n\n### Patches\n\nThis has been fixed by https://github.com/matrix-org/matrix-react-sdk/pull/5981, which is included in 3.21.0.\n\n### Workarounds\n\nThere are no known workarounds.", "severity": [ diff --git a/advisories/github-reviewed/2021/05/GHSA-9vxv-wpv4-f52p/GHSA-9vxv-wpv4-f52p.json b/advisories/github-reviewed/2021/05/GHSA-9vxv-wpv4-f52p/GHSA-9vxv-wpv4-f52p.json index ffde7e4317b..097ac9d0bfc 100644 --- a/advisories/github-reviewed/2021/05/GHSA-9vxv-wpv4-f52p/GHSA-9vxv-wpv4-f52p.json +++ b/advisories/github-reviewed/2021/05/GHSA-9vxv-wpv4-f52p/GHSA-9vxv-wpv4-f52p.json @@ -3,14 +3,10 @@ "id": "GHSA-9vxv-wpv4-f52p", "modified": "2021-05-18T16:06:57Z", "published": "2021-05-21T14:29:33Z", - "aliases": [ - - ], + "aliases": [], "summary": "Information leakage in Error Handler", "details": "### Impact\nInformation leakage in Error Handler\n\n### Patches\nWe recommend updating to the current version 5.6.10. You can get the update to 5.6.10 regularly via the Auto-Updater or directly via the download overview.\n\nFor older versions you can use the Security Plugin:\nhttps://store.shopware.com/en/swag575294366635f/shopware-security-plugin.html\n\n\n### References\nhttps://docs.shopware.com/en/shopware-5-en/security-updates/security-update-05-2021", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/05/GHSA-f6p7-8xfw-fjqq/GHSA-f6p7-8xfw-fjqq.json b/advisories/github-reviewed/2021/05/GHSA-f6p7-8xfw-fjqq/GHSA-f6p7-8xfw-fjqq.json index 6a2eb7e70ba..613267181f0 100644 --- a/advisories/github-reviewed/2021/05/GHSA-f6p7-8xfw-fjqq/GHSA-f6p7-8xfw-fjqq.json +++ b/advisories/github-reviewed/2021/05/GHSA-f6p7-8xfw-fjqq/GHSA-f6p7-8xfw-fjqq.json @@ -3,14 +3,10 @@ "id": "GHSA-f6p7-8xfw-fjqq", "modified": "2021-05-18T16:08:07Z", "published": "2021-05-21T14:29:26Z", - "aliases": [ - - ], + "aliases": [], "summary": "Authenticated Stored XSS in Administration", "details": "### Impact\nAuthenticated Stored XSS in Administration\n\n### Patches\nWe recommend updating to the current version 5.6.10. You can get the update to 5.6.10 regularly via the Auto-Updater or directly via the download overview.\n\nFor older versions you can use the Security Plugin:\nhttps://store.shopware.com/en/swag575294366635f/shopware-security-plugin.html\n\n\n### References\nhttps://docs.shopware.com/en/shopware-5-en/security-updates/security-update-05-2021", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/05/GHSA-g2qj-pmxm-9f8f/GHSA-g2qj-pmxm-9f8f.json b/advisories/github-reviewed/2021/05/GHSA-g2qj-pmxm-9f8f/GHSA-g2qj-pmxm-9f8f.json index 6fa484fbc02..20dba46d3f9 100644 --- a/advisories/github-reviewed/2021/05/GHSA-g2qj-pmxm-9f8f/GHSA-g2qj-pmxm-9f8f.json +++ b/advisories/github-reviewed/2021/05/GHSA-g2qj-pmxm-9f8f/GHSA-g2qj-pmxm-9f8f.json @@ -3,14 +3,10 @@ "id": "GHSA-g2qj-pmxm-9f8f", "modified": "2021-10-08T21:21:12Z", "published": "2021-05-17T20:52:32Z", - "aliases": [ - - ], + "aliases": [], "summary": "User enumeration in authentication mechanisms", "details": "Description\n-----------\n\nThe ability to enumerate users was possible without relevant permissions due to different exception messages depending on whether the user existed or not. It was also possible to enumerate users by using a timing attack, by comparing time elapsed when authenticating an existing user and authenticating a non-existing user.\n\nResolution\n----------\n\nWe now ensure that 403s are returned whether the user exists or not if the password is invalid or if the user does not exist.\n\nThe patch for this issue is available [here](https://github.com/symfony/symfony/commit/2a581d22cc621b33d5464ed65c4bc2057f72f011) for branch 3.4.\n\nCredits\n-------\n\nI would like to thank James Isaac and Mathias Brodala for reporting the issue and Robin Chalas for fixing the issue.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/05/GHSA-vwpg-f6gw-rjvf/GHSA-vwpg-f6gw-rjvf.json b/advisories/github-reviewed/2021/05/GHSA-vwpg-f6gw-rjvf/GHSA-vwpg-f6gw-rjvf.json index d49cedb8eff..667ce468be5 100644 --- a/advisories/github-reviewed/2021/05/GHSA-vwpg-f6gw-rjvf/GHSA-vwpg-f6gw-rjvf.json +++ b/advisories/github-reviewed/2021/05/GHSA-vwpg-f6gw-rjvf/GHSA-vwpg-f6gw-rjvf.json @@ -8,9 +8,7 @@ ], "summary": "Incorrect Authorization in Spring Cloud Netflix Zuul", "details": "Applications using the “Sensitive Headers” functionality in Spring Cloud Netflix Zuul 2.2.6.RELEASE and below may be vulnerable to bypassing the “Sensitive Headers” restriction when executing requests with specially constructed URLs. Applications that use Spring Security's StrictHttpFirewall (enabled by default for all URLs) are not affected by the vulnerability, as they reject requests that allow bypassing.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/06/GHSA-gq67-pp9w-43gp/GHSA-gq67-pp9w-43gp.json b/advisories/github-reviewed/2021/06/GHSA-gq67-pp9w-43gp/GHSA-gq67-pp9w-43gp.json index d33062cc72b..5994b91ba10 100644 --- a/advisories/github-reviewed/2021/06/GHSA-gq67-pp9w-43gp/GHSA-gq67-pp9w-43gp.json +++ b/advisories/github-reviewed/2021/06/GHSA-gq67-pp9w-43gp/GHSA-gq67-pp9w-43gp.json @@ -8,9 +8,7 @@ ], "summary": "Cryptographically weak CSRF tokens in Apache MyFaces", "details": "In the default configuration, Apache MyFaces Core versions 2.2.0 to 2.2.13, 2.3.0 to 2.3.7, 2.3-next-M1 to 2.3-next-M4, and 3.0.0-RC1 use cryptographically weak implicit and explicit cross-site request forgery (CSRF) tokens. Due to that limitation, it is possible (although difficult) for an attacker to calculate a future CSRF token value and to use that value to trick a user into executing unwanted actions on an application.\n\n\nMitigation:\nExisting web.xml configuration parameters can be used to direct\nMyFaces to use SecureRandom for CSRF token generation:\n\norg.apache.myfaces.RANDOM_KEY_IN_VIEW_STATE_SESSION_TOKEN=secureRandom\norg.apache.myfaces.RANDOM_KEY_IN_CSRF_SESSION_TOKEN=secureRandom\norg.apache.myfaces.RANDOM_KEY_IN_WEBSOCKET_SESSION_TOKEN=secureRandom", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/12/GHSA-gxjj-f44v-qm94/GHSA-gxjj-f44v-qm94.json b/advisories/github-reviewed/2021/12/GHSA-gxjj-f44v-qm94/GHSA-gxjj-f44v-qm94.json index 1b154abcc85..db5a4f00cc5 100644 --- a/advisories/github-reviewed/2021/12/GHSA-gxjj-f44v-qm94/GHSA-gxjj-f44v-qm94.json +++ b/advisories/github-reviewed/2021/12/GHSA-gxjj-f44v-qm94/GHSA-gxjj-f44v-qm94.json @@ -4,9 +4,7 @@ "modified": "2021-12-14T18:14:54Z", "published": "2021-12-14T18:14:04Z", "withdrawn": "2021-05-27T19:07:52Z", - "aliases": [ - - ], + "aliases": [], "summary": "Open Redirect in Flask-Security-Too", "details": "# Withdrawn\n\nDuplicate of GHSA-6qmf-fj6m-686c\n\n# Original description\n\nFlask-Security-Too allows redirects after many successful views (e.g. /login) by honoring the ?next query param. There is code in FS to validate that the url specified in the next parameter is either relative OR has the same netloc (network location) as the requesting URL.\n\nThis check utilizes Pythons urlsplit library. However many browsers are very lenient on the kind of URL they accept and 'fill in the blanks' when presented with a possibly incomplete URL. As a concrete example - setting http://login?next=\\\\\\github.com\nwill pass FS's relative URL check however many browsers will gladly convert this to http://github.com. Thus an attacker could send such a link to an unwitting user, using a legitimate site and have it redirect to whatever site they want.\n\nThis is considered a low severity due to the fact that if Werkzeug is used (which is very common with Flask applications) as the WSGI layer, it by default ALWAYS ensures that the Location header is absolute - thus making this attack vector mute. It is possible for application writers to modify this default behavior by setting the 'autocorrect_location_header=False`.", "severity": [ diff --git a/advisories/github-reviewed/2022/02/GHSA-m6j2-v3gq-45r5/GHSA-m6j2-v3gq-45r5.json b/advisories/github-reviewed/2022/02/GHSA-m6j2-v3gq-45r5/GHSA-m6j2-v3gq-45r5.json index 7353acab7f9..30a1cf881fd 100644 --- a/advisories/github-reviewed/2022/02/GHSA-m6j2-v3gq-45r5/GHSA-m6j2-v3gq-45r5.json +++ b/advisories/github-reviewed/2022/02/GHSA-m6j2-v3gq-45r5/GHSA-m6j2-v3gq-45r5.json @@ -8,9 +8,7 @@ ], "summary": "Cross-site Scripting in aurelia-framework", "details": "The HTMLSanitizer class in html-sanitizer.ts in all released versions of the Aurelia framework 1.x repository is vulnerable to XSS. The sanitizer only attempts to filter SCRIPT elements, which makes it feasible for remote attackers to conduct XSS attacks via (for example) JavaScript code in an attribute of various other elements. An attacker might also exploit a bug in how the SCRIPT string is processed by splitting and nesting them for example.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-3hvc-xwjp-xr8m/GHSA-3hvc-xwjp-xr8m.json b/advisories/github-reviewed/2022/05/GHSA-3hvc-xwjp-xr8m/GHSA-3hvc-xwjp-xr8m.json index 434277b6543..e61e2975ba8 100644 --- a/advisories/github-reviewed/2022/05/GHSA-3hvc-xwjp-xr8m/GHSA-3hvc-xwjp-xr8m.json +++ b/advisories/github-reviewed/2022/05/GHSA-3hvc-xwjp-xr8m/GHSA-3hvc-xwjp-xr8m.json @@ -62,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-12-15T15:25:20Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-5jph-mvfm-r27p/GHSA-5jph-mvfm-r27p.json b/advisories/github-reviewed/2022/05/GHSA-5jph-mvfm-r27p/GHSA-5jph-mvfm-r27p.json index 700fb237644..33066b97fca 100644 --- a/advisories/github-reviewed/2022/05/GHSA-5jph-mvfm-r27p/GHSA-5jph-mvfm-r27p.json +++ b/advisories/github-reviewed/2022/05/GHSA-5jph-mvfm-r27p/GHSA-5jph-mvfm-r27p.json @@ -8,9 +8,7 @@ ], "summary": "Moodle cross-site request forgery (CSRF) vulnerability", "details": "Cross-site request forgery (CSRF) vulnerability in auth/shibboleth/logout.php in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 allows remote attackers to hijack the authentication of arbitrary users for requests that trigger a logout.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-6q78-6xvr-26fg/GHSA-6q78-6xvr-26fg.json b/advisories/github-reviewed/2022/05/GHSA-6q78-6xvr-26fg/GHSA-6q78-6xvr-26fg.json index 49034dab0c0..bd6c6d67a66 100644 --- a/advisories/github-reviewed/2022/05/GHSA-6q78-6xvr-26fg/GHSA-6q78-6xvr-26fg.json +++ b/advisories/github-reviewed/2022/05/GHSA-6q78-6xvr-26fg/GHSA-6q78-6xvr-26fg.json @@ -125,9 +125,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-10-25T21:19:55Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-96vx-qf28-6f8m/GHSA-96vx-qf28-6f8m.json b/advisories/github-reviewed/2022/05/GHSA-96vx-qf28-6f8m/GHSA-96vx-qf28-6f8m.json index dcdd2654aa5..4df692e88e1 100644 --- a/advisories/github-reviewed/2022/05/GHSA-96vx-qf28-6f8m/GHSA-96vx-qf28-6f8m.json +++ b/advisories/github-reviewed/2022/05/GHSA-96vx-qf28-6f8m/GHSA-96vx-qf28-6f8m.json @@ -8,9 +8,7 @@ ], "summary": "Drupal Access Control Bypass", "details": "Drupal 7.x before 7.3 allows remote attackers to bypass intended `node_access` restrictions via vectors related to a listing that shows nodes but lacks a JOIN clause for the node table.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-9rj9-5wcv-xgf2/GHSA-9rj9-5wcv-xgf2.json b/advisories/github-reviewed/2022/05/GHSA-9rj9-5wcv-xgf2/GHSA-9rj9-5wcv-xgf2.json index 14b382396ce..a6b24f5b69c 100644 --- a/advisories/github-reviewed/2022/05/GHSA-9rj9-5wcv-xgf2/GHSA-9rj9-5wcv-xgf2.json +++ b/advisories/github-reviewed/2022/05/GHSA-9rj9-5wcv-xgf2/GHSA-9rj9-5wcv-xgf2.json @@ -8,9 +8,7 @@ ], "summary": "Roundup Improper Access Control", "details": "The EditCSVAction function in `cgi/actions.py` in Roundup 1.2 before 1.2.1, 1.4 through 1.4.6, and possibly other versions does not properly check permissions, which allows remote authenticated users with edit or create privileges for a class to modify arbitrary items within that class, as demonstrated by editing all queries, modifying settings, and adding roles to users.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -105,9 +103,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-04-01T19:31:05Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-x73x-7gmx-w835/GHSA-x73x-7gmx-w835.json b/advisories/github-reviewed/2022/05/GHSA-x73x-7gmx-w835/GHSA-x73x-7gmx-w835.json index 408dc6636e2..326d53f717f 100644 --- a/advisories/github-reviewed/2022/05/GHSA-x73x-7gmx-w835/GHSA-x73x-7gmx-w835.json +++ b/advisories/github-reviewed/2022/05/GHSA-x73x-7gmx-w835/GHSA-x73x-7gmx-w835.json @@ -75,9 +75,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-07-07T18:11:18Z", diff --git a/advisories/github-reviewed/2022/12/GHSA-9qcm-fqj9-93m4/GHSA-9qcm-fqj9-93m4.json b/advisories/github-reviewed/2022/12/GHSA-9qcm-fqj9-93m4/GHSA-9qcm-fqj9-93m4.json index 53fd50ff626..3cd371dc6d9 100644 --- a/advisories/github-reviewed/2022/12/GHSA-9qcm-fqj9-93m4/GHSA-9qcm-fqj9-93m4.json +++ b/advisories/github-reviewed/2022/12/GHSA-9qcm-fqj9-93m4/GHSA-9qcm-fqj9-93m4.json @@ -4,9 +4,7 @@ "modified": "2023-11-10T22:06:44Z", "published": "2022-12-13T21:30:26Z", "withdrawn": "2022-12-14T21:32:34Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate Advisory: .NET Framework Remote Code Execution Vulnerability.", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-2c7v-qcjp-4mg2. This link is maintained to preserve external references.\n\n## Original Description\n.NET Framework Remote Code Execution Vulnerability.", "severity": [ @@ -50,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2022-12-14T21:32:34Z", diff --git a/advisories/github-reviewed/2023/02/GHSA-4xgv-j62q-h3rj/GHSA-4xgv-j62q-h3rj.json b/advisories/github-reviewed/2023/02/GHSA-4xgv-j62q-h3rj/GHSA-4xgv-j62q-h3rj.json index 6c9ff0d5d8d..ae7a73c41ac 100644 --- a/advisories/github-reviewed/2023/02/GHSA-4xgv-j62q-h3rj/GHSA-4xgv-j62q-h3rj.json +++ b/advisories/github-reviewed/2023/02/GHSA-4xgv-j62q-h3rj/GHSA-4xgv-j62q-h3rj.json @@ -3,9 +3,7 @@ "id": "GHSA-4xgv-j62q-h3rj", "modified": "2023-06-13T23:50:39Z", "published": "2023-02-07T18:36:47Z", - "aliases": [ - - ], + "aliases": [], "summary": "Panic during unmarshal of Hello Verify Request in github.com/pion/dtls/v2", "details": "### Impact\n\nDuring the unmarshalling of a hello verify request we could try to unmarshal into too small a buffer. is could result in a panic leading the program to crash.\n\nThis issue could be abused to cause a denial of service.\n\n### Workaround\n\nNone, upgrade to 2.2.4\n", "severity": [ @@ -73,9 +71,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-02-07T18:36:47Z", diff --git a/advisories/unreviewed/2021/04/GHSA-m5pg-8h68-j225/GHSA-m5pg-8h68-j225.json b/advisories/unreviewed/2021/04/GHSA-m5pg-8h68-j225/GHSA-m5pg-8h68-j225.json index 3e4aa3071f3..5ed204e1785 100644 --- a/advisories/unreviewed/2021/04/GHSA-m5pg-8h68-j225/GHSA-m5pg-8h68-j225.json +++ b/advisories/unreviewed/2021/04/GHSA-m5pg-8h68-j225/GHSA-m5pg-8h68-j225.json @@ -14,9 +14,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2021/05/GHSA-wp3v-g466-8g44/GHSA-wp3v-g466-8g44.json b/advisories/unreviewed/2021/05/GHSA-wp3v-g466-8g44/GHSA-wp3v-g466-8g44.json index e92522d1798..a1bbe1aeba2 100644 --- a/advisories/unreviewed/2021/05/GHSA-wp3v-g466-8g44/GHSA-wp3v-g466-8g44.json +++ b/advisories/unreviewed/2021/05/GHSA-wp3v-g466-8g44/GHSA-wp3v-g466-8g44.json @@ -14,9 +14,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-6vpr-3pgw-5q44/GHSA-6vpr-3pgw-5q44.json b/advisories/unreviewed/2022/02/GHSA-6vpr-3pgw-5q44/GHSA-6vpr-3pgw-5q44.json index 71618f6b0a5..1eab3bc3859 100644 --- a/advisories/unreviewed/2022/02/GHSA-6vpr-3pgw-5q44/GHSA-6vpr-3pgw-5q44.json +++ b/advisories/unreviewed/2022/02/GHSA-6vpr-3pgw-5q44/GHSA-6vpr-3pgw-5q44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-mpgq-6jmr-6c67/GHSA-mpgq-6jmr-6c67.json b/advisories/unreviewed/2022/02/GHSA-mpgq-6jmr-6c67/GHSA-mpgq-6jmr-6c67.json index c481777b8a1..1ae254d365f 100644 --- a/advisories/unreviewed/2022/02/GHSA-mpgq-6jmr-6c67/GHSA-mpgq-6jmr-6c67.json +++ b/advisories/unreviewed/2022/02/GHSA-mpgq-6jmr-6c67/GHSA-mpgq-6jmr-6c67.json @@ -14,9 +14,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-p4ff-2hpq-9x64/GHSA-p4ff-2hpq-9x64.json b/advisories/unreviewed/2022/02/GHSA-p4ff-2hpq-9x64/GHSA-p4ff-2hpq-9x64.json index 864c6f2ebf9..fd73ac7f046 100644 --- a/advisories/unreviewed/2022/02/GHSA-p4ff-2hpq-9x64/GHSA-p4ff-2hpq-9x64.json +++ b/advisories/unreviewed/2022/02/GHSA-p4ff-2hpq-9x64/GHSA-p4ff-2hpq-9x64.json @@ -14,9 +14,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-r67m-52qx-gfgc/GHSA-r67m-52qx-gfgc.json b/advisories/unreviewed/2022/02/GHSA-r67m-52qx-gfgc/GHSA-r67m-52qx-gfgc.json index dea5b58e893..8b014c3e5a7 100644 --- a/advisories/unreviewed/2022/02/GHSA-r67m-52qx-gfgc/GHSA-r67m-52qx-gfgc.json +++ b/advisories/unreviewed/2022/02/GHSA-r67m-52qx-gfgc/GHSA-r67m-52qx-gfgc.json @@ -14,9 +14,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-6g4g-f39p-q93f/GHSA-6g4g-f39p-q93f.json b/advisories/unreviewed/2022/03/GHSA-6g4g-f39p-q93f/GHSA-6g4g-f39p-q93f.json index f67ccd9d03c..6c329be363c 100644 --- a/advisories/unreviewed/2022/03/GHSA-6g4g-f39p-q93f/GHSA-6g4g-f39p-q93f.json +++ b/advisories/unreviewed/2022/03/GHSA-6g4g-f39p-q93f/GHSA-6g4g-f39p-q93f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-fvgm-c3gh-jgmj/GHSA-fvgm-c3gh-jgmj.json b/advisories/unreviewed/2022/03/GHSA-fvgm-c3gh-jgmj/GHSA-fvgm-c3gh-jgmj.json index 6f6de9ac697..68dee3e199c 100644 --- a/advisories/unreviewed/2022/03/GHSA-fvgm-c3gh-jgmj/GHSA-fvgm-c3gh-jgmj.json +++ b/advisories/unreviewed/2022/03/GHSA-fvgm-c3gh-jgmj/GHSA-fvgm-c3gh-jgmj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-qcv2-jjq2-95wj/GHSA-qcv2-jjq2-95wj.json b/advisories/unreviewed/2022/03/GHSA-qcv2-jjq2-95wj/GHSA-qcv2-jjq2-95wj.json index e72c35b0d76..7f6ce30e00c 100644 --- a/advisories/unreviewed/2022/03/GHSA-qcv2-jjq2-95wj/GHSA-qcv2-jjq2-95wj.json +++ b/advisories/unreviewed/2022/03/GHSA-qcv2-jjq2-95wj/GHSA-qcv2-jjq2-95wj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-24fr-xcq3-rqjr/GHSA-24fr-xcq3-rqjr.json b/advisories/unreviewed/2022/04/GHSA-24fr-xcq3-rqjr/GHSA-24fr-xcq3-rqjr.json index 51fec134343..4aa2dbc890f 100644 --- a/advisories/unreviewed/2022/04/GHSA-24fr-xcq3-rqjr/GHSA-24fr-xcq3-rqjr.json +++ b/advisories/unreviewed/2022/04/GHSA-24fr-xcq3-rqjr/GHSA-24fr-xcq3-rqjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-m665-jg8v-5m5r/GHSA-m665-jg8v-5m5r.json b/advisories/unreviewed/2022/04/GHSA-m665-jg8v-5m5r/GHSA-m665-jg8v-5m5r.json index 238c1778a8e..4b296ce90e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-m665-jg8v-5m5r/GHSA-m665-jg8v-5m5r.json +++ b/advisories/unreviewed/2022/04/GHSA-m665-jg8v-5m5r/GHSA-m665-jg8v-5m5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-22rg-5392-7gh6/GHSA-22rg-5392-7gh6.json b/advisories/unreviewed/2022/05/GHSA-22rg-5392-7gh6/GHSA-22rg-5392-7gh6.json index 19371e4a9dc..11481141bd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-22rg-5392-7gh6/GHSA-22rg-5392-7gh6.json +++ b/advisories/unreviewed/2022/05/GHSA-22rg-5392-7gh6/GHSA-22rg-5392-7gh6.json @@ -7,12 +7,8 @@ "CVE-2008-2702" ], "details": "Directory traversal vulnerability in the FTP client in ALTools ESTsoft ALFTP 4.1 beta 2 and 5.0 allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a response to a LIST command, a related issue to CVE-2002-1345. NOTE: this can be leveraged for code execution by writing to a Startup folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23c2-5fj7-4rv3/GHSA-23c2-5fj7-4rv3.json b/advisories/unreviewed/2022/05/GHSA-23c2-5fj7-4rv3/GHSA-23c2-5fj7-4rv3.json index 13ea85c3e72..5c66d06e980 100644 --- a/advisories/unreviewed/2022/05/GHSA-23c2-5fj7-4rv3/GHSA-23c2-5fj7-4rv3.json +++ b/advisories/unreviewed/2022/05/GHSA-23c2-5fj7-4rv3/GHSA-23c2-5fj7-4rv3.json @@ -7,12 +7,8 @@ "CVE-2008-2784" ], "details": "The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23p9-r47f-2m64/GHSA-23p9-r47f-2m64.json b/advisories/unreviewed/2022/05/GHSA-23p9-r47f-2m64/GHSA-23p9-r47f-2m64.json index 08eb62f7a10..44f7dc6c9e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-23p9-r47f-2m64/GHSA-23p9-r47f-2m64.json +++ b/advisories/unreviewed/2022/05/GHSA-23p9-r47f-2m64/GHSA-23p9-r47f-2m64.json @@ -7,12 +7,8 @@ "CVE-2008-3123" ], "details": "SQL injection vulnerability in index.php in Mole Group Real Estate Script 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the listing_id parameter in a listings action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23r2-7v4m-m7mp/GHSA-23r2-7v4m-m7mp.json b/advisories/unreviewed/2022/05/GHSA-23r2-7v4m-m7mp/GHSA-23r2-7v4m-m7mp.json index 01d1430bc47..8f2794bf993 100644 --- a/advisories/unreviewed/2022/05/GHSA-23r2-7v4m-m7mp/GHSA-23r2-7v4m-m7mp.json +++ b/advisories/unreviewed/2022/05/GHSA-23r2-7v4m-m7mp/GHSA-23r2-7v4m-m7mp.json @@ -7,12 +7,8 @@ "CVE-2008-2638" ], "details": "Static code injection vulnerability in guestbook.php in 1Book 1.0.1 and earlier allows remote attackers to upload arbitrary PHP code via the message parameter in an HTML webform, which is written to data.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-274p-j7q8-fx9w/GHSA-274p-j7q8-fx9w.json b/advisories/unreviewed/2022/05/GHSA-274p-j7q8-fx9w/GHSA-274p-j7q8-fx9w.json index e4473ad184d..1774ace9bc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-274p-j7q8-fx9w/GHSA-274p-j7q8-fx9w.json +++ b/advisories/unreviewed/2022/05/GHSA-274p-j7q8-fx9w/GHSA-274p-j7q8-fx9w.json @@ -7,12 +7,8 @@ "CVE-2008-3012" ], "details": "gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services SP2, SQL Server 2005 SP2, Report Viewer 2005 SP1 and 2008, and Forefront Client Security 1.0 does not properly perform memory allocation, which allows remote attackers to execute arbitrary code via a malformed EMF image file, aka \"GDI+ EMF Memory Corruption Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27gp-rrp2-6hg8/GHSA-27gp-rrp2-6hg8.json b/advisories/unreviewed/2022/05/GHSA-27gp-rrp2-6hg8/GHSA-27gp-rrp2-6hg8.json index 5ce082e15a0..12be6d9c8f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-27gp-rrp2-6hg8/GHSA-27gp-rrp2-6hg8.json +++ b/advisories/unreviewed/2022/05/GHSA-27gp-rrp2-6hg8/GHSA-27gp-rrp2-6hg8.json @@ -7,12 +7,8 @@ "CVE-2008-3092" ], "details": "SQL injection vulnerability in the Taxonomy Autotagger module 5.x before 5.x-1.8 for Drupal allows remote authenticated users, with create or edit post permissions, to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27mm-4p4v-5qpj/GHSA-27mm-4p4v-5qpj.json b/advisories/unreviewed/2022/05/GHSA-27mm-4p4v-5qpj/GHSA-27mm-4p4v-5qpj.json index 88aa7bbd02b..7bd7dc911a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-27mm-4p4v-5qpj/GHSA-27mm-4p4v-5qpj.json +++ b/advisories/unreviewed/2022/05/GHSA-27mm-4p4v-5qpj/GHSA-27mm-4p4v-5qpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27r8-w6vh-wf65/GHSA-27r8-w6vh-wf65.json b/advisories/unreviewed/2022/05/GHSA-27r8-w6vh-wf65/GHSA-27r8-w6vh-wf65.json index eb0fbce5e35..921a405d5db 100644 --- a/advisories/unreviewed/2022/05/GHSA-27r8-w6vh-wf65/GHSA-27r8-w6vh-wf65.json +++ b/advisories/unreviewed/2022/05/GHSA-27r8-w6vh-wf65/GHSA-27r8-w6vh-wf65.json @@ -7,12 +7,8 @@ "CVE-2008-3063" ], "details": "SQL injection vulnerability in login.php in V-webmail 1.5.0 might allow remote attackers to execute arbitrary SQL commands via the username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29rr-mhwv-g7pr/GHSA-29rr-mhwv-g7pr.json b/advisories/unreviewed/2022/05/GHSA-29rr-mhwv-g7pr/GHSA-29rr-mhwv-g7pr.json index 7ae21f64010..0c0f2c16231 100644 --- a/advisories/unreviewed/2022/05/GHSA-29rr-mhwv-g7pr/GHSA-29rr-mhwv-g7pr.json +++ b/advisories/unreviewed/2022/05/GHSA-29rr-mhwv-g7pr/GHSA-29rr-mhwv-g7pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2c28-f73p-mgcc/GHSA-2c28-f73p-mgcc.json b/advisories/unreviewed/2022/05/GHSA-2c28-f73p-mgcc/GHSA-2c28-f73p-mgcc.json index b9a9aa5f48b..b4500992200 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c28-f73p-mgcc/GHSA-2c28-f73p-mgcc.json +++ b/advisories/unreviewed/2022/05/GHSA-2c28-f73p-mgcc/GHSA-2c28-f73p-mgcc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cj5-9fm4-hqv6/GHSA-2cj5-9fm4-hqv6.json b/advisories/unreviewed/2022/05/GHSA-2cj5-9fm4-hqv6/GHSA-2cj5-9fm4-hqv6.json index ac7b46799ba..2ec298a624f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cj5-9fm4-hqv6/GHSA-2cj5-9fm4-hqv6.json +++ b/advisories/unreviewed/2022/05/GHSA-2cj5-9fm4-hqv6/GHSA-2cj5-9fm4-hqv6.json @@ -7,12 +7,8 @@ "CVE-2008-2873" ], "details": "sHibby sHop 2.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request to Db/urun.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2gmw-j4qh-8xwv/GHSA-2gmw-j4qh-8xwv.json b/advisories/unreviewed/2022/05/GHSA-2gmw-j4qh-8xwv/GHSA-2gmw-j4qh-8xwv.json index fed1161bda3..e94fab85ceb 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gmw-j4qh-8xwv/GHSA-2gmw-j4qh-8xwv.json +++ b/advisories/unreviewed/2022/05/GHSA-2gmw-j4qh-8xwv/GHSA-2gmw-j4qh-8xwv.json @@ -7,12 +7,8 @@ "CVE-2008-3165" ], "details": "Directory traversal vulnerability in rss.php in fuzzylime (cms) 3.01a and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter, as demonstrated using content.php, a different vector than CVE-2007-4805.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2hcm-f2ff-9x8w/GHSA-2hcm-f2ff-9x8w.json b/advisories/unreviewed/2022/05/GHSA-2hcm-f2ff-9x8w/GHSA-2hcm-f2ff-9x8w.json index 0e5d1505b56..2c244b341ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hcm-f2ff-9x8w/GHSA-2hcm-f2ff-9x8w.json +++ b/advisories/unreviewed/2022/05/GHSA-2hcm-f2ff-9x8w/GHSA-2hcm-f2ff-9x8w.json @@ -7,12 +7,8 @@ "CVE-2008-2790" ], "details": "SQL injection vulnerability in detail.php in MountainGrafix easyTrade 2.x allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j4w-p5m4-8q93/GHSA-2j4w-p5m4-8q93.json b/advisories/unreviewed/2022/05/GHSA-2j4w-p5m4-8q93/GHSA-2j4w-p5m4-8q93.json index b4477ef8dc4..56d026ed588 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j4w-p5m4-8q93/GHSA-2j4w-p5m4-8q93.json +++ b/advisories/unreviewed/2022/05/GHSA-2j4w-p5m4-8q93/GHSA-2j4w-p5m4-8q93.json @@ -7,12 +7,8 @@ "CVE-2008-3036" ], "details": "Directory traversal vulnerability in index.php in CMS little 0.0.1 allows remote attackers to include and execute arbitrary local files, and probably remote files, via a .. (dot dot) in the template parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j6p-5g3r-q3w2/GHSA-2j6p-5g3r-q3w2.json b/advisories/unreviewed/2022/05/GHSA-2j6p-5g3r-q3w2/GHSA-2j6p-5g3r-q3w2.json index 56a526bcd0b..58133a0be1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j6p-5g3r-q3w2/GHSA-2j6p-5g3r-q3w2.json +++ b/advisories/unreviewed/2022/05/GHSA-2j6p-5g3r-q3w2/GHSA-2j6p-5g3r-q3w2.json @@ -7,12 +7,8 @@ "CVE-2008-2914" ], "details": "SQL injection vulnerability in jobseekers/JobSearch3.php (aka the search module) in PHP JOBWEBSITE PRO allows remote attackers to execute arbitrary SQL commands via the (1) kw or (2) position parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jhx-f223-wqrm/GHSA-2jhx-f223-wqrm.json b/advisories/unreviewed/2022/05/GHSA-2jhx-f223-wqrm/GHSA-2jhx-f223-wqrm.json index cba12a83ded..447b62e359d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jhx-f223-wqrm/GHSA-2jhx-f223-wqrm.json +++ b/advisories/unreviewed/2022/05/GHSA-2jhx-f223-wqrm/GHSA-2jhx-f223-wqrm.json @@ -7,12 +7,8 @@ "CVE-2008-2871" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in template2.php in PEGames allow remote attackers to inject arbitrary web script or HTML via the (1) sitetitle, (2) sitenav, (3) sitemain, and (4) sitealt parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mpf-g3vg-qccm/GHSA-2mpf-g3vg-qccm.json b/advisories/unreviewed/2022/05/GHSA-2mpf-g3vg-qccm/GHSA-2mpf-g3vg-qccm.json index f26958d3d9a..65c3139d19e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mpf-g3vg-qccm/GHSA-2mpf-g3vg-qccm.json +++ b/advisories/unreviewed/2022/05/GHSA-2mpf-g3vg-qccm/GHSA-2mpf-g3vg-qccm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2p55-mr3x-rqxj/GHSA-2p55-mr3x-rqxj.json b/advisories/unreviewed/2022/05/GHSA-2p55-mr3x-rqxj/GHSA-2p55-mr3x-rqxj.json index 75eff29ff9e..ca17fa7a3b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p55-mr3x-rqxj/GHSA-2p55-mr3x-rqxj.json +++ b/advisories/unreviewed/2022/05/GHSA-2p55-mr3x-rqxj/GHSA-2p55-mr3x-rqxj.json @@ -7,12 +7,8 @@ "CVE-2008-3294" ], "details": "src/configure.in in Vim 5.0 through 7.1, when used for a build with Python support, does not ensure that the Makefile-conf temporary file has the intended ownership and permissions, which allows local users to execute arbitrary code by modifying this file during a time window, or by creating it ahead of time with permissions that prevent its modification by configure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2p66-4gvq-xrrq/GHSA-2p66-4gvq-xrrq.json b/advisories/unreviewed/2022/05/GHSA-2p66-4gvq-xrrq/GHSA-2p66-4gvq-xrrq.json index 353378bced3..57eb1655988 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p66-4gvq-xrrq/GHSA-2p66-4gvq-xrrq.json +++ b/advisories/unreviewed/2022/05/GHSA-2p66-4gvq-xrrq/GHSA-2p66-4gvq-xrrq.json @@ -7,12 +7,8 @@ "CVE-2008-2922" ], "details": "Stack-based buffer overflow in artegic Dana IRC client 1.3 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long IRC message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2q96-rrqq-jj73/GHSA-2q96-rrqq-jj73.json b/advisories/unreviewed/2022/05/GHSA-2q96-rrqq-jj73/GHSA-2q96-rrqq-jj73.json index 5c055598d76..12e45895715 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q96-rrqq-jj73/GHSA-2q96-rrqq-jj73.json +++ b/advisories/unreviewed/2022/05/GHSA-2q96-rrqq-jj73/GHSA-2q96-rrqq-jj73.json @@ -7,12 +7,8 @@ "CVE-2008-2883" ], "details": "PHP remote file inclusion vulnerability in include/plugins/jrBrowser/payment.php in Jamroom 3.3.0 through 3.3.5 allows remote attackers to execute arbitrary PHP code via a URL in the jamroom[jm_dir] parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r2x-228p-fxrg/GHSA-2r2x-228p-fxrg.json b/advisories/unreviewed/2022/05/GHSA-2r2x-228p-fxrg/GHSA-2r2x-228p-fxrg.json index 85546ae5a84..9afb366653b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r2x-228p-fxrg/GHSA-2r2x-228p-fxrg.json +++ b/advisories/unreviewed/2022/05/GHSA-2r2x-228p-fxrg/GHSA-2r2x-228p-fxrg.json @@ -7,12 +7,8 @@ "CVE-2008-3052" ], "details": "Unspecified vulnerability in the SQL Frontend (mh_omsqlio) extension 1.0.11 and earlier for TYPO3 allows remote attackers to cause a denial of service via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2w3r-4r55-xfpw/GHSA-2w3r-4r55-xfpw.json b/advisories/unreviewed/2022/05/GHSA-2w3r-4r55-xfpw/GHSA-2w3r-4r55-xfpw.json index 2484a933596..605b45bd43f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w3r-4r55-xfpw/GHSA-2w3r-4r55-xfpw.json +++ b/advisories/unreviewed/2022/05/GHSA-2w3r-4r55-xfpw/GHSA-2w3r-4r55-xfpw.json @@ -7,12 +7,8 @@ "CVE-2008-3028" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Send-A-Card (sr_sendcard) extension 2.2.2 and earlier for TYPO3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x4c-6mv7-7vgr/GHSA-2x4c-6mv7-7vgr.json b/advisories/unreviewed/2022/05/GHSA-2x4c-6mv7-7vgr/GHSA-2x4c-6mv7-7vgr.json index 6cbbb21b96b..22b7c533120 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x4c-6mv7-7vgr/GHSA-2x4c-6mv7-7vgr.json +++ b/advisories/unreviewed/2022/05/GHSA-2x4c-6mv7-7vgr/GHSA-2x4c-6mv7-7vgr.json @@ -7,12 +7,8 @@ "CVE-2008-2770" ], "details": "SQL injection vulnerability in index.php in MycroCMS 0.5, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the entry_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x6f-xp8w-cxqp/GHSA-2x6f-xp8w-cxqp.json b/advisories/unreviewed/2022/05/GHSA-2x6f-xp8w-cxqp/GHSA-2x6f-xp8w-cxqp.json index 78e89d7f426..3e62697cc1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x6f-xp8w-cxqp/GHSA-2x6f-xp8w-cxqp.json +++ b/advisories/unreviewed/2022/05/GHSA-2x6f-xp8w-cxqp/GHSA-2x6f-xp8w-cxqp.json @@ -7,12 +7,8 @@ "CVE-2008-2908" ], "details": "Multiple stack-based buffer overflows in a certain ActiveX control in ienipp.ocx in Novell iPrint Client for Windows before 4.36 allow remote attackers to execute arbitrary code via a long value of the (1) operation, (2) printer-url, or (3) target-frame parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x8p-q777-q3mr/GHSA-2x8p-q777-q3mr.json b/advisories/unreviewed/2022/05/GHSA-2x8p-q777-q3mr/GHSA-2x8p-q777-q3mr.json index 4391bbba7d3..a0be38f2ace 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x8p-q777-q3mr/GHSA-2x8p-q777-q3mr.json +++ b/advisories/unreviewed/2022/05/GHSA-2x8p-q777-q3mr/GHSA-2x8p-q777-q3mr.json @@ -7,12 +7,8 @@ "CVE-2008-2746" ], "details": "SQL injection vulnerability in login.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the detail parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32mg-gg62-gfq3/GHSA-32mg-gg62-gfq3.json b/advisories/unreviewed/2022/05/GHSA-32mg-gg62-gfq3/GHSA-32mg-gg62-gfq3.json index e3c4aabed94..c7f48bc73c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-32mg-gg62-gfq3/GHSA-32mg-gg62-gfq3.json +++ b/advisories/unreviewed/2022/05/GHSA-32mg-gg62-gfq3/GHSA-32mg-gg62-gfq3.json @@ -7,12 +7,8 @@ "CVE-2008-3113" ], "details": "Unspecified vulnerability in Sun Java Web Start in JDK and JRE 5.0 before Update 16 and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create or delete arbitrary files via an untrusted application, aka CR 6704077.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -164,9 +160,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3367-rc54-37jp/GHSA-3367-rc54-37jp.json b/advisories/unreviewed/2022/05/GHSA-3367-rc54-37jp/GHSA-3367-rc54-37jp.json index 6b3bd64b67b..774b406f2c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3367-rc54-37jp/GHSA-3367-rc54-37jp.json +++ b/advisories/unreviewed/2022/05/GHSA-3367-rc54-37jp/GHSA-3367-rc54-37jp.json @@ -7,12 +7,8 @@ "CVE-2008-2904" ], "details": "SQL injection vulnerability in shop.php in Conkurent PHPMyCart allows remote attackers to execute arbitrary SQL commands via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-338w-rmx2-4pjj/GHSA-338w-rmx2-4pjj.json b/advisories/unreviewed/2022/05/GHSA-338w-rmx2-4pjj/GHSA-338w-rmx2-4pjj.json index a82f27a3a77..96786d71d60 100644 --- a/advisories/unreviewed/2022/05/GHSA-338w-rmx2-4pjj/GHSA-338w-rmx2-4pjj.json +++ b/advisories/unreviewed/2022/05/GHSA-338w-rmx2-4pjj/GHSA-338w-rmx2-4pjj.json @@ -7,12 +7,8 @@ "CVE-2008-2865" ], "details": "SQL injection vulnerability in index.php in Kalptaru Infotech PHP Site Lock 2.0 allows remote attackers to execute arbitrary SQL commands via the articleid parameter in a show_article action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-356f-694x-6f4f/GHSA-356f-694x-6f4f.json b/advisories/unreviewed/2022/05/GHSA-356f-694x-6f4f/GHSA-356f-694x-6f4f.json index e50957ffe4c..392d10c2d23 100644 --- a/advisories/unreviewed/2022/05/GHSA-356f-694x-6f4f/GHSA-356f-694x-6f4f.json +++ b/advisories/unreviewed/2022/05/GHSA-356f-694x-6f4f/GHSA-356f-694x-6f4f.json @@ -7,12 +7,8 @@ "CVE-2008-2621" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, and CVE-2008-2622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-365w-p6xj-xpfw/GHSA-365w-p6xj-xpfw.json b/advisories/unreviewed/2022/05/GHSA-365w-p6xj-xpfw/GHSA-365w-p6xj-xpfw.json index d65d01f9b5f..f25d1fddb7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-365w-p6xj-xpfw/GHSA-365w-p6xj-xpfw.json +++ b/advisories/unreviewed/2022/05/GHSA-365w-p6xj-xpfw/GHSA-365w-p6xj-xpfw.json @@ -7,12 +7,8 @@ "CVE-2008-2640" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Flex 3 History Management feature in Adobe Flex 3.0.1 SDK and Flex Builder 3, and generated applications, allow remote attackers to inject arbitrary web script or HTML via the anchor identifier to (1) client-side-detection-with-history/history/historyFrame.html, (2) express-installation-with-history/history/historyFrame.html, or (3) no-player-detection-with-history/history/historyFrame.html in templates/html-templates/. NOTE: Firefox 2.0 and possibly other browsers prevent exploitation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-379x-8r69-fqm5/GHSA-379x-8r69-fqm5.json b/advisories/unreviewed/2022/05/GHSA-379x-8r69-fqm5/GHSA-379x-8r69-fqm5.json index e29bf7fce20..838c7beac8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-379x-8r69-fqm5/GHSA-379x-8r69-fqm5.json +++ b/advisories/unreviewed/2022/05/GHSA-379x-8r69-fqm5/GHSA-379x-8r69-fqm5.json @@ -7,12 +7,8 @@ "CVE-2008-2868" ], "details": "SQL injection vulnerability in detail.asp in DUware DUcalendar 1.0 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the iEve parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38qp-942w-qgjg/GHSA-38qp-942w-qgjg.json b/advisories/unreviewed/2022/05/GHSA-38qp-942w-qgjg/GHSA-38qp-942w-qgjg.json index 517ed963f89..beecaa15847 100644 --- a/advisories/unreviewed/2022/05/GHSA-38qp-942w-qgjg/GHSA-38qp-942w-qgjg.json +++ b/advisories/unreviewed/2022/05/GHSA-38qp-942w-qgjg/GHSA-38qp-942w-qgjg.json @@ -7,12 +7,8 @@ "CVE-2008-2893" ], "details": "SQL injection vulnerability in news.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2008-2532.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-38r5-mjj7-3mh2/GHSA-38r5-mjj7-3mh2.json b/advisories/unreviewed/2022/05/GHSA-38r5-mjj7-3mh2/GHSA-38r5-mjj7-3mh2.json index beafde7b02d..58371a748c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-38r5-mjj7-3mh2/GHSA-38r5-mjj7-3mh2.json +++ b/advisories/unreviewed/2022/05/GHSA-38r5-mjj7-3mh2/GHSA-38r5-mjj7-3mh2.json @@ -7,12 +7,8 @@ "CVE-2008-3483" ], "details": "Cross-site scripting (XSS) vulnerability in ScrewTurn Wiki 2.0.29 and 2.0.30 allows remote attackers to inject arbitrary web script or HTML via error messages in the \"/admin.aspx - System Log\" page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3953-4q36-9572/GHSA-3953-4q36-9572.json b/advisories/unreviewed/2022/05/GHSA-3953-4q36-9572/GHSA-3953-4q36-9572.json index 742809b3b1c..a1c9e980e6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3953-4q36-9572/GHSA-3953-4q36-9572.json +++ b/advisories/unreviewed/2022/05/GHSA-3953-4q36-9572/GHSA-3953-4q36-9572.json @@ -7,12 +7,8 @@ "CVE-2008-2778" ], "details": "SQL injection vulnerability in inc/class_search.php in the Search System in RevokeBB 1.0 RC11 allows remote attackers to execute arbitrary SQL commands via the search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3c3f-93qj-h99f/GHSA-3c3f-93qj-h99f.json b/advisories/unreviewed/2022/05/GHSA-3c3f-93qj-h99f/GHSA-3c3f-93qj-h99f.json index 3a27becc340..22d83b5c52b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c3f-93qj-h99f/GHSA-3c3f-93qj-h99f.json +++ b/advisories/unreviewed/2022/05/GHSA-3c3f-93qj-h99f/GHSA-3c3f-93qj-h99f.json @@ -7,12 +7,8 @@ "CVE-2008-2855" ], "details": "Cross-site scripting (XSS) vulnerability in clanek.php in OwnRS Beta 3 allows remote attackers to inject arbitrary web script or HTML via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cjj-gggc-r85p/GHSA-3cjj-gggc-r85p.json b/advisories/unreviewed/2022/05/GHSA-3cjj-gggc-r85p/GHSA-3cjj-gggc-r85p.json index 4f4757ff098..a5d5bc0e419 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cjj-gggc-r85p/GHSA-3cjj-gggc-r85p.json +++ b/advisories/unreviewed/2022/05/GHSA-3cjj-gggc-r85p/GHSA-3cjj-gggc-r85p.json @@ -7,12 +7,8 @@ "CVE-2008-3160" ], "details": "Multiple unspecified vulnerabilities in IBM Data ONTAP 7.1 before 7.1.3, as used by IBM System Storage N series Filer and IBM System Storage N series Gateway, have unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3cmj-3c3j-rrq7/GHSA-3cmj-3c3j-rrq7.json b/advisories/unreviewed/2022/05/GHSA-3cmj-3c3j-rrq7/GHSA-3cmj-3c3j-rrq7.json index 9e297f30066..3da41488fa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cmj-3c3j-rrq7/GHSA-3cmj-3c3j-rrq7.json +++ b/advisories/unreviewed/2022/05/GHSA-3cmj-3c3j-rrq7/GHSA-3cmj-3c3j-rrq7.json @@ -7,12 +7,8 @@ "CVE-2008-3088" ], "details": "Cross-site scripting (XSS) vulnerability in the Files module in Kasseler CMS 1.3.0 and 1.3.1 Lite allows remote attackers to inject arbitrary web script or HTML via the cid parameter in a Category action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hrq-4v7v-gjm4/GHSA-3hrq-4v7v-gjm4.json b/advisories/unreviewed/2022/05/GHSA-3hrq-4v7v-gjm4/GHSA-3hrq-4v7v-gjm4.json index f53bb3ef5c3..3459e3de117 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hrq-4v7v-gjm4/GHSA-3hrq-4v7v-gjm4.json +++ b/advisories/unreviewed/2022/05/GHSA-3hrq-4v7v-gjm4/GHSA-3hrq-4v7v-gjm4.json @@ -7,12 +7,8 @@ "CVE-2008-2816" ], "details": "SQL injection vulnerability in post.php in Oxygen (aka O2PHP Bulletin Board) 2.0 allows remote attackers to execute arbitrary SQL commands via the repquote parameter in a reply action, a different vector than CVE-2006-1572.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hrv-5j8v-742x/GHSA-3hrv-5j8v-742x.json b/advisories/unreviewed/2022/05/GHSA-3hrv-5j8v-742x/GHSA-3hrv-5j8v-742x.json index b684f550edb..2fe6142cb37 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hrv-5j8v-742x/GHSA-3hrv-5j8v-742x.json +++ b/advisories/unreviewed/2022/05/GHSA-3hrv-5j8v-742x/GHSA-3hrv-5j8v-742x.json @@ -7,12 +7,8 @@ "CVE-2008-2897" ], "details": "SQL injection vulnerability in index.php in PageSquid CMS 0.3 Beta allows remote attackers to execute arbitrary SQL commands via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mg4-jfgr-m2q6/GHSA-3mg4-jfgr-m2q6.json b/advisories/unreviewed/2022/05/GHSA-3mg4-jfgr-m2q6/GHSA-3mg4-jfgr-m2q6.json index 935acfad958..31d8585cba4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mg4-jfgr-m2q6/GHSA-3mg4-jfgr-m2q6.json +++ b/advisories/unreviewed/2022/05/GHSA-3mg4-jfgr-m2q6/GHSA-3mg4-jfgr-m2q6.json @@ -7,12 +7,8 @@ "CVE-2014-2851" ], "details": "Integer overflow in the ping_init_sock function in net/ipv4/ping.c in the Linux kernel through 3.14.1 allows local users to cause a denial of service (use-after-free and system crash) or possibly gain privileges via a crafted application that leverages an improperly managed reference counter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mhh-v2cc-54m6/GHSA-3mhh-v2cc-54m6.json b/advisories/unreviewed/2022/05/GHSA-3mhh-v2cc-54m6/GHSA-3mhh-v2cc-54m6.json index 40b693fb6e4..d87e1628501 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mhh-v2cc-54m6/GHSA-3mhh-v2cc-54m6.json +++ b/advisories/unreviewed/2022/05/GHSA-3mhh-v2cc-54m6/GHSA-3mhh-v2cc-54m6.json @@ -7,12 +7,8 @@ "CVE-2008-2639" ], "details": "Stack-based buffer overflow in the ODBC server service in Citect CitectSCADA 6 and 7, and CitectFacilities 7, allows remote attackers to execute arbitrary code via a long string in the second application packet in a TCP session on port 20222.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3r5f-vjfp-r32c/GHSA-3r5f-vjfp-r32c.json b/advisories/unreviewed/2022/05/GHSA-3r5f-vjfp-r32c/GHSA-3r5f-vjfp-r32c.json index 5085e60402d..8aff9de14ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-3r5f-vjfp-r32c/GHSA-3r5f-vjfp-r32c.json +++ b/advisories/unreviewed/2022/05/GHSA-3r5f-vjfp-r32c/GHSA-3r5f-vjfp-r32c.json @@ -7,12 +7,8 @@ "CVE-2008-2667" ], "details": "SQL injection vulnerability in the Courier Authentication Library (aka courier-authlib) before 0.60.6 on SUSE openSUSE 10.3 and 11.0, and other platforms, when MySQL and a non-Latin character set are used, allows remote attackers to execute arbitrary SQL commands via the username and unspecified other vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rjm-xww9-gmm6/GHSA-3rjm-xww9-gmm6.json b/advisories/unreviewed/2022/05/GHSA-3rjm-xww9-gmm6/GHSA-3rjm-xww9-gmm6.json index a64c8c883c1..2a3c2dffcf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rjm-xww9-gmm6/GHSA-3rjm-xww9-gmm6.json +++ b/advisories/unreviewed/2022/05/GHSA-3rjm-xww9-gmm6/GHSA-3rjm-xww9-gmm6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3rq3-f864-789r/GHSA-3rq3-f864-789r.json b/advisories/unreviewed/2022/05/GHSA-3rq3-f864-789r/GHSA-3rq3-f864-789r.json index 75d1cbbbbf5..25c8d72a228 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rq3-f864-789r/GHSA-3rq3-f864-789r.json +++ b/advisories/unreviewed/2022/05/GHSA-3rq3-f864-789r/GHSA-3rq3-f864-789r.json @@ -7,12 +7,8 @@ "CVE-2008-3095" ], "details": "Cross-site scripting (XSS) vulnerability in the Organic Groups (OG) module 5.x before 5.x-7.3 and 6.x before 6.x-1.0-RC1, a module for Drupal, allows remote authenticated users, with group owner permissions, to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rxf-pgrv-pg2w/GHSA-3rxf-pgrv-pg2w.json b/advisories/unreviewed/2022/05/GHSA-3rxf-pgrv-pg2w/GHSA-3rxf-pgrv-pg2w.json index bd1d53b8457..a3585d6cf76 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rxf-pgrv-pg2w/GHSA-3rxf-pgrv-pg2w.json +++ b/advisories/unreviewed/2022/05/GHSA-3rxf-pgrv-pg2w/GHSA-3rxf-pgrv-pg2w.json @@ -7,12 +7,8 @@ "CVE-2008-2764" ], "details": "Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Absolute Live Support XE 5.1 allows remote authenticated administrators to inject arbitrary web script or HTML via unspecified vectors (\"all fields\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3vcm-3w42-g672/GHSA-3vcm-3w42-g672.json b/advisories/unreviewed/2022/05/GHSA-3vcm-3w42-g672/GHSA-3vcm-3w42-g672.json index ad0679c7a5f..055cdfa9ea2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vcm-3w42-g672/GHSA-3vcm-3w42-g672.json +++ b/advisories/unreviewed/2022/05/GHSA-3vcm-3w42-g672/GHSA-3vcm-3w42-g672.json @@ -7,12 +7,8 @@ "CVE-2008-2776" ], "details": "Cross-site scripting (XSS) vulnerability in search.asp in DT Centrepiece 4.0 allows remote attackers to inject arbitrary web script or HTML via the searchFor parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3vmj-7qg7-gvfg/GHSA-3vmj-7qg7-gvfg.json b/advisories/unreviewed/2022/05/GHSA-3vmj-7qg7-gvfg/GHSA-3vmj-7qg7-gvfg.json index 8423d3390f4..11b9b116ca4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vmj-7qg7-gvfg/GHSA-3vmj-7qg7-gvfg.json +++ b/advisories/unreviewed/2022/05/GHSA-3vmj-7qg7-gvfg/GHSA-3vmj-7qg7-gvfg.json @@ -7,12 +7,8 @@ "CVE-2008-2792" ], "details": "SQL injection vulnerability in index.php in eroCMS 1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the site parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3w4g-jj6x-f73c/GHSA-3w4g-jj6x-f73c.json b/advisories/unreviewed/2022/05/GHSA-3w4g-jj6x-f73c/GHSA-3w4g-jj6x-f73c.json index 95eebdd462b..b167457bc9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w4g-jj6x-f73c/GHSA-3w4g-jj6x-f73c.json +++ b/advisories/unreviewed/2022/05/GHSA-3w4g-jj6x-f73c/GHSA-3w4g-jj6x-f73c.json @@ -7,12 +7,8 @@ "CVE-2008-2882" ], "details": "upgrade.asp in sHibby sHop 2.2 and earlier does not require administrative authentication, which allows remote attackers to update a file or have unspecified other impact via a direct request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3wvv-6gj7-cmfj/GHSA-3wvv-6gj7-cmfj.json b/advisories/unreviewed/2022/05/GHSA-3wvv-6gj7-cmfj/GHSA-3wvv-6gj7-cmfj.json index 64fbc3b15f7..442859cc7ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wvv-6gj7-cmfj/GHSA-3wvv-6gj7-cmfj.json +++ b/advisories/unreviewed/2022/05/GHSA-3wvv-6gj7-cmfj/GHSA-3wvv-6gj7-cmfj.json @@ -7,12 +7,8 @@ "CVE-2008-2609" ], "details": "Unspecified vulnerability in the Oracle Portal component in Oracle Application Server 9.0.4.3, 10.1.2.3, and 10.1.4.2 has unknown impact and remote attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3x4f-24vq-5mhp/GHSA-3x4f-24vq-5mhp.json b/advisories/unreviewed/2022/05/GHSA-3x4f-24vq-5mhp/GHSA-3x4f-24vq-5mhp.json index b1a49b46148..f4df50032fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x4f-24vq-5mhp/GHSA-3x4f-24vq-5mhp.json +++ b/advisories/unreviewed/2022/05/GHSA-3x4f-24vq-5mhp/GHSA-3x4f-24vq-5mhp.json @@ -7,12 +7,8 @@ "CVE-2008-2998" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x69-mjh4-vwh4/GHSA-3x69-mjh4-vwh4.json b/advisories/unreviewed/2022/05/GHSA-3x69-mjh4-vwh4/GHSA-3x69-mjh4-vwh4.json index 0afecbc6937..7bde3fd968f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x69-mjh4-vwh4/GHSA-3x69-mjh4-vwh4.json +++ b/advisories/unreviewed/2022/05/GHSA-3x69-mjh4-vwh4/GHSA-3x69-mjh4-vwh4.json @@ -7,12 +7,8 @@ "CVE-2008-2739" ], "details": "The SERVICE.DNS signature engine in the Intrusion Prevention System (IPS) in Cisco IOS 12.3 and 12.4 allows remote attackers to cause a denial of service (device crash or hang) via network traffic that triggers unspecified IPS signatures, a different vulnerability than CVE-2008-1447.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3x7r-r5xh-2v32/GHSA-3x7r-r5xh-2v32.json b/advisories/unreviewed/2022/05/GHSA-3x7r-r5xh-2v32/GHSA-3x7r-r5xh-2v32.json index dbae56538fb..4b13403597f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x7r-r5xh-2v32/GHSA-3x7r-r5xh-2v32.json +++ b/advisories/unreviewed/2022/05/GHSA-3x7r-r5xh-2v32/GHSA-3x7r-r5xh-2v32.json @@ -7,12 +7,8 @@ "CVE-2008-2806" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 on Mac OS X allow remote attackers to bypass the Same Origin Policy and create arbitrary socket connections via a crafted Java applet, related to the Java Embedding Plugin (JEP) and Java LiveConnect.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xj7-pg63-vr53/GHSA-3xj7-pg63-vr53.json b/advisories/unreviewed/2022/05/GHSA-3xj7-pg63-vr53/GHSA-3xj7-pg63-vr53.json index 834b8333a39..353cf228dec 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xj7-pg63-vr53/GHSA-3xj7-pg63-vr53.json +++ b/advisories/unreviewed/2022/05/GHSA-3xj7-pg63-vr53/GHSA-3xj7-pg63-vr53.json @@ -7,12 +7,8 @@ "CVE-2008-2819" ], "details": "SQL injection vulnerability in BlognPlus (BURO GUN +) 2.5.4 and earlier MySQL and PostgreSQL editions allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xqg-ghf3-8qvm/GHSA-3xqg-ghf3-8qvm.json b/advisories/unreviewed/2022/05/GHSA-3xqg-ghf3-8qvm/GHSA-3xqg-ghf3-8qvm.json index e1929d12e50..9b0270d9661 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xqg-ghf3-8qvm/GHSA-3xqg-ghf3-8qvm.json +++ b/advisories/unreviewed/2022/05/GHSA-3xqg-ghf3-8qvm/GHSA-3xqg-ghf3-8qvm.json @@ -7,12 +7,8 @@ "CVE-2008-2793" ], "details": "SQL injection vulnerability in group_posts.php in ClipShare before 3.0.1 allows remote attackers to execute arbitrary SQL commands via the tid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xv2-3jvj-rc6h/GHSA-3xv2-3jvj-rc6h.json b/advisories/unreviewed/2022/05/GHSA-3xv2-3jvj-rc6h/GHSA-3xv2-3jvj-rc6h.json index bf63373a036..a91e7f2028f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xv2-3jvj-rc6h/GHSA-3xv2-3jvj-rc6h.json +++ b/advisories/unreviewed/2022/05/GHSA-3xv2-3jvj-rc6h/GHSA-3xv2-3jvj-rc6h.json @@ -7,12 +7,8 @@ "CVE-2008-3129" ], "details": "Multiple SQL injection vulnerabilities in index.php in Catviz 0.4 beta 1 allow remote attackers to execute arbitrary SQL commands via the (1) foreign_key_value parameter in the news page and (2) webpage parameter in the webpage_multi_edit form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4274-f6v9-qg7w/GHSA-4274-f6v9-qg7w.json b/advisories/unreviewed/2022/05/GHSA-4274-f6v9-qg7w/GHSA-4274-f6v9-qg7w.json index 35e4bd72c61..3ebe19d9f42 100644 --- a/advisories/unreviewed/2022/05/GHSA-4274-f6v9-qg7w/GHSA-4274-f6v9-qg7w.json +++ b/advisories/unreviewed/2022/05/GHSA-4274-f6v9-qg7w/GHSA-4274-f6v9-qg7w.json @@ -7,12 +7,8 @@ "CVE-2008-3121" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Xerox CentreWare Web (CWW) before 4.6.46 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42hr-xhpv-jwj8/GHSA-42hr-xhpv-jwj8.json b/advisories/unreviewed/2022/05/GHSA-42hr-xhpv-jwj8/GHSA-42hr-xhpv-jwj8.json index c726795784b..0462584342f 100644 --- a/advisories/unreviewed/2022/05/GHSA-42hr-xhpv-jwj8/GHSA-42hr-xhpv-jwj8.json +++ b/advisories/unreviewed/2022/05/GHSA-42hr-xhpv-jwj8/GHSA-42hr-xhpv-jwj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43xj-hvp7-hp7w/GHSA-43xj-hvp7-hp7w.json b/advisories/unreviewed/2022/05/GHSA-43xj-hvp7-hp7w/GHSA-43xj-hvp7-hp7w.json index c4c82e2cbee..277d4e583c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-43xj-hvp7-hp7w/GHSA-43xj-hvp7-hp7w.json +++ b/advisories/unreviewed/2022/05/GHSA-43xj-hvp7-hp7w/GHSA-43xj-hvp7-hp7w.json @@ -7,12 +7,8 @@ "CVE-2008-2832" ], "details": "Unrestricted file upload vulnerability in calendar_admin.asp in Full Revolution aspWebCalendar 2008 allows remote attackers to upload and execute arbitrary code via the FILE1 parameter in an uploadfileprocess action, probably followed by a direct request to the file in calendar/eventimages/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-458q-r95h-835g/GHSA-458q-r95h-835g.json b/advisories/unreviewed/2022/05/GHSA-458q-r95h-835g/GHSA-458q-r95h-835g.json index 7e744a459bf..cbe25c63932 100644 --- a/advisories/unreviewed/2022/05/GHSA-458q-r95h-835g/GHSA-458q-r95h-835g.json +++ b/advisories/unreviewed/2022/05/GHSA-458q-r95h-835g/GHSA-458q-r95h-835g.json @@ -7,12 +7,8 @@ "CVE-2008-2983" ], "details": "SQL injection vulnerability in index.php in Demo4 CMS 01 Beta allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4597-8mcf-pw36/GHSA-4597-8mcf-pw36.json b/advisories/unreviewed/2022/05/GHSA-4597-8mcf-pw36/GHSA-4597-8mcf-pw36.json index 4e27303fe8e..ecc4d880c3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4597-8mcf-pw36/GHSA-4597-8mcf-pw36.json +++ b/advisories/unreviewed/2022/05/GHSA-4597-8mcf-pw36/GHSA-4597-8mcf-pw36.json @@ -7,12 +7,8 @@ "CVE-2008-2935" ], "details": "Multiple heap-based buffer overflows in the rc4 (1) encryption (aka exsltCryptoRc4EncryptFunction) and (2) decryption (aka exsltCryptoRc4DecryptFunction) functions in crypto.c in libexslt in libxslt 1.1.8 through 1.1.24 allow context-dependent attackers to execute arbitrary code via an XML file containing a long string as \"an argument in the XSL input.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46fw-hr68-x354/GHSA-46fw-hr68-x354.json b/advisories/unreviewed/2022/05/GHSA-46fw-hr68-x354/GHSA-46fw-hr68-x354.json index a41a000bb59..fa3d1e3b1d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-46fw-hr68-x354/GHSA-46fw-hr68-x354.json +++ b/advisories/unreviewed/2022/05/GHSA-46fw-hr68-x354/GHSA-46fw-hr68-x354.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46wh-944c-9f4p/GHSA-46wh-944c-9f4p.json b/advisories/unreviewed/2022/05/GHSA-46wh-944c-9f4p/GHSA-46wh-944c-9f4p.json index 8290ff2f83b..5a95afb327f 100644 --- a/advisories/unreviewed/2022/05/GHSA-46wh-944c-9f4p/GHSA-46wh-944c-9f4p.json +++ b/advisories/unreviewed/2022/05/GHSA-46wh-944c-9f4p/GHSA-46wh-944c-9f4p.json @@ -7,12 +7,8 @@ "CVE-2008-3047" ], "details": "Incomplete blacklist vulnerability in the KB Unpack (kb_unpack) extension 0.1.0 and earlier for TYPO3 has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-479q-g97m-m3g5/GHSA-479q-g97m-m3g5.json b/advisories/unreviewed/2022/05/GHSA-479q-g97m-m3g5/GHSA-479q-g97m-m3g5.json index 48b8fcd6edf..7201a52e2b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-479q-g97m-m3g5/GHSA-479q-g97m-m3g5.json +++ b/advisories/unreviewed/2022/05/GHSA-479q-g97m-m3g5/GHSA-479q-g97m-m3g5.json @@ -7,12 +7,8 @@ "CVE-2008-3066" ], "details": "Stack-based buffer overflow in a certain ActiveX control in rjbdll.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, and RealPlayer 10.5 before build 6.0.12.1675 allows remote attackers to execute arbitrary code by importing a file into a media library and then deleting this file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-482g-8988-9gwh/GHSA-482g-8988-9gwh.json b/advisories/unreviewed/2022/05/GHSA-482g-8988-9gwh/GHSA-482g-8988-9gwh.json index 6fd591bf6ba..352d7668fe5 100644 --- a/advisories/unreviewed/2022/05/GHSA-482g-8988-9gwh/GHSA-482g-8988-9gwh.json +++ b/advisories/unreviewed/2022/05/GHSA-482g-8988-9gwh/GHSA-482g-8988-9gwh.json @@ -7,12 +7,8 @@ "CVE-2008-2946" ], "details": "The SNMP-DMI mapper subagent daemon (aka snmpXdmid) in Solstice Enterprise Agents in Sun Solaris 8 through 10 allows remote attackers to cause a denial of service (daemon crash) via malformed packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48h7-qpc2-7cjw/GHSA-48h7-qpc2-7cjw.json b/advisories/unreviewed/2022/05/GHSA-48h7-qpc2-7cjw/GHSA-48h7-qpc2-7cjw.json index 21ae57fd969..c1b9f7725cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-48h7-qpc2-7cjw/GHSA-48h7-qpc2-7cjw.json +++ b/advisories/unreviewed/2022/05/GHSA-48h7-qpc2-7cjw/GHSA-48h7-qpc2-7cjw.json @@ -7,12 +7,8 @@ "CVE-2008-3279" ], "details": "Untrusted search path vulnerability in libbrlttybba.so in brltty 3.7.2 allows local users to gain privileges via a crafted library, related to an incorrect RPATH setting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48wh-3c8h-65w6/GHSA-48wh-3c8h-65w6.json b/advisories/unreviewed/2022/05/GHSA-48wh-3c8h-65w6/GHSA-48wh-3c8h-65w6.json index 7ba0b208d70..188c9f11f75 100644 --- a/advisories/unreviewed/2022/05/GHSA-48wh-3c8h-65w6/GHSA-48wh-3c8h-65w6.json +++ b/advisories/unreviewed/2022/05/GHSA-48wh-3c8h-65w6/GHSA-48wh-3c8h-65w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49wq-h6fq-vf8p/GHSA-49wq-h6fq-vf8p.json b/advisories/unreviewed/2022/05/GHSA-49wq-h6fq-vf8p/GHSA-49wq-h6fq-vf8p.json index 064f96e31f7..e8861dfb512 100644 --- a/advisories/unreviewed/2022/05/GHSA-49wq-h6fq-vf8p/GHSA-49wq-h6fq-vf8p.json +++ b/advisories/unreviewed/2022/05/GHSA-49wq-h6fq-vf8p/GHSA-49wq-h6fq-vf8p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4cp8-qgwm-4g56/GHSA-4cp8-qgwm-4g56.json b/advisories/unreviewed/2022/05/GHSA-4cp8-qgwm-4g56/GHSA-4cp8-qgwm-4g56.json index e21e77dc90d..6ba81e59a06 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cp8-qgwm-4g56/GHSA-4cp8-qgwm-4g56.json +++ b/advisories/unreviewed/2022/05/GHSA-4cp8-qgwm-4g56/GHSA-4cp8-qgwm-4g56.json @@ -7,12 +7,8 @@ "CVE-2008-3152" ], "details": "SQL injection vulnerability in directory.php in SmartPPC and SmartPPC Pro allows remote attackers to execute arbitrary SQL commands via the idDirectory parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fvq-5jgr-vrhq/GHSA-4fvq-5jgr-vrhq.json b/advisories/unreviewed/2022/05/GHSA-4fvq-5jgr-vrhq/GHSA-4fvq-5jgr-vrhq.json index a2012cef405..206ad5ffed4 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fvq-5jgr-vrhq/GHSA-4fvq-5jgr-vrhq.json +++ b/advisories/unreviewed/2022/05/GHSA-4fvq-5jgr-vrhq/GHSA-4fvq-5jgr-vrhq.json @@ -7,12 +7,8 @@ "CVE-2008-2876" ], "details": "Directory traversal vulnerability in index.php in mUnky 0.0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the zone parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fwq-hhhj-mfgx/GHSA-4fwq-hhhj-mfgx.json b/advisories/unreviewed/2022/05/GHSA-4fwq-hhhj-mfgx/GHSA-4fwq-hhhj-mfgx.json index 49be4cab31e..c3d95fbfb90 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fwq-hhhj-mfgx/GHSA-4fwq-hhhj-mfgx.json +++ b/advisories/unreviewed/2022/05/GHSA-4fwq-hhhj-mfgx/GHSA-4fwq-hhhj-mfgx.json @@ -7,12 +7,8 @@ "CVE-2008-2730" ], "details": "The Real-Time Information Server (RIS) Data Collector service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3) and 6.x before 6.1(1) allows remote attackers to bypass authentication, and obtain cluster configuration information and statistics, via a direct TCP connection to the service port, aka Bug ID CSCsj90843.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g99-f82w-mhgr/GHSA-4g99-f82w-mhgr.json b/advisories/unreviewed/2022/05/GHSA-4g99-f82w-mhgr/GHSA-4g99-f82w-mhgr.json index e2d0fb28e01..f7105dd0692 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g99-f82w-mhgr/GHSA-4g99-f82w-mhgr.json +++ b/advisories/unreviewed/2022/05/GHSA-4g99-f82w-mhgr/GHSA-4g99-f82w-mhgr.json @@ -7,12 +7,8 @@ "CVE-2008-2766" ], "details": "Cross-site scripting (XSS) vulnerability in Xigla Absolute Image Gallery XE allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in (1) admin/search.asp and (2) gallery.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4gvx-xvm4-3hc5/GHSA-4gvx-xvm4-3hc5.json b/advisories/unreviewed/2022/05/GHSA-4gvx-xvm4-3hc5/GHSA-4gvx-xvm4-3hc5.json index 72a2974b0df..280f3991ecd 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gvx-xvm4-3hc5/GHSA-4gvx-xvm4-3hc5.json +++ b/advisories/unreviewed/2022/05/GHSA-4gvx-xvm4-3hc5/GHSA-4gvx-xvm4-3hc5.json @@ -7,12 +7,8 @@ "CVE-2008-2814" ], "details": "Cross-site scripting (XSS) vulnerability in WallCity-Server Shoutcast Admin Panel 2.0 allows remote attackers to inject arbitrary web script or HTML via the username parameter to the login interface. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hp9-6953-26vh/GHSA-4hp9-6953-26vh.json b/advisories/unreviewed/2022/05/GHSA-4hp9-6953-26vh/GHSA-4hp9-6953-26vh.json index 76580a83eb3..bf3f1fb2dfa 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hp9-6953-26vh/GHSA-4hp9-6953-26vh.json +++ b/advisories/unreviewed/2022/05/GHSA-4hp9-6953-26vh/GHSA-4hp9-6953-26vh.json @@ -7,12 +7,8 @@ "CVE-2008-3146" ], "details": "Multiple buffer overflows in packet_ncp2222.inc in Wireshark (formerly Ethereal) 0.9.7 through 1.0.2 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted NCP packet that causes an invalid pointer to be used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hpv-cqpp-cqw7/GHSA-4hpv-cqpp-cqw7.json b/advisories/unreviewed/2022/05/GHSA-4hpv-cqpp-cqw7/GHSA-4hpv-cqpp-cqw7.json index 8f8def892fe..775b4a947eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hpv-cqpp-cqw7/GHSA-4hpv-cqpp-cqw7.json +++ b/advisories/unreviewed/2022/05/GHSA-4hpv-cqpp-cqw7/GHSA-4hpv-cqpp-cqw7.json @@ -7,12 +7,8 @@ "CVE-2008-3182" ], "details": "Stack-based buffer overflow in DAP.exe in Download Accelerator Plus (DAP) 7.0.1.3, 8.6.6.3, and other 8.x versions allows user-assisted remote attackers to execute arbitrary code via an M3U (.m3u) file containing a long MP3 URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4jx6-7475-4qwh/GHSA-4jx6-7475-4qwh.json b/advisories/unreviewed/2022/05/GHSA-4jx6-7475-4qwh/GHSA-4jx6-7475-4qwh.json index 9b7fe212d45..1ef7e32f319 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jx6-7475-4qwh/GHSA-4jx6-7475-4qwh.json +++ b/advisories/unreviewed/2022/05/GHSA-4jx6-7475-4qwh/GHSA-4jx6-7475-4qwh.json @@ -7,12 +7,8 @@ "CVE-2008-3035" ], "details": "SQL injection vulnerability in newThread.php in XchangeBoard 1.70 Final and earlier allows remote authenticated users to execute arbitrary SQL commands via the boardID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4m2p-89qj-vmq6/GHSA-4m2p-89qj-vmq6.json b/advisories/unreviewed/2022/05/GHSA-4m2p-89qj-vmq6/GHSA-4m2p-89qj-vmq6.json index 21fdedbf69c..2c3664891ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m2p-89qj-vmq6/GHSA-4m2p-89qj-vmq6.json +++ b/advisories/unreviewed/2022/05/GHSA-4m2p-89qj-vmq6/GHSA-4m2p-89qj-vmq6.json @@ -7,12 +7,8 @@ "CVE-2008-3157" ], "details": "Nortel SIP Multimedia PC Client 4.x MCS5100 and MCS5200 does not limit the number of concurrent sessions, which allows attackers to cause a denial of service (resource consumption) via a large number of sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4m8c-6ghq-qm6f/GHSA-4m8c-6ghq-qm6f.json b/advisories/unreviewed/2022/05/GHSA-4m8c-6ghq-qm6f/GHSA-4m8c-6ghq-qm6f.json index 51cdc747442..59388c66e62 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m8c-6ghq-qm6f/GHSA-4m8c-6ghq-qm6f.json +++ b/advisories/unreviewed/2022/05/GHSA-4m8c-6ghq-qm6f/GHSA-4m8c-6ghq-qm6f.json @@ -7,12 +7,8 @@ "CVE-2008-2765" ], "details": "SQL injection vulnerability in gallery.asp in Xigla Absolute Image Gallery XE allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a viewimage action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qw8-hv2v-vwqf/GHSA-4qw8-hv2v-vwqf.json b/advisories/unreviewed/2022/05/GHSA-4qw8-hv2v-vwqf/GHSA-4qw8-hv2v-vwqf.json index 068f6066fa6..d1590e735ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qw8-hv2v-vwqf/GHSA-4qw8-hv2v-vwqf.json +++ b/advisories/unreviewed/2022/05/GHSA-4qw8-hv2v-vwqf/GHSA-4qw8-hv2v-vwqf.json @@ -7,12 +7,8 @@ "CVE-2008-3031" ], "details": "Directory traversal vulnerability in index.php in Simple PHP Agenda 2.2.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4v8r-37jq-35mj/GHSA-4v8r-37jq-35mj.json b/advisories/unreviewed/2022/05/GHSA-4v8r-37jq-35mj/GHSA-4v8r-37jq-35mj.json index add229a2f02..88d79897221 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v8r-37jq-35mj/GHSA-4v8r-37jq-35mj.json +++ b/advisories/unreviewed/2022/05/GHSA-4v8r-37jq-35mj/GHSA-4v8r-37jq-35mj.json @@ -7,12 +7,8 @@ "CVE-2008-3164" ], "details": "Directory traversal vulnerability in blog.php in fuzzylime (cms) 3.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter. NOTE: it was later reported that 3.01a is also affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4wxc-phqq-75fh/GHSA-4wxc-phqq-75fh.json b/advisories/unreviewed/2022/05/GHSA-4wxc-phqq-75fh/GHSA-4wxc-phqq-75fh.json index ebe6c8fc205..eddae1fbcc3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wxc-phqq-75fh/GHSA-4wxc-phqq-75fh.json +++ b/advisories/unreviewed/2022/05/GHSA-4wxc-phqq-75fh/GHSA-4wxc-phqq-75fh.json @@ -7,12 +7,8 @@ "CVE-2008-3059" ], "details": "member/settings_account.php in Octeth Oempro 3.5.5.1, and possibly other versions before 4, uses cleartext to transmit a password entered in the FormValue_Password field, which makes it easier for remote attackers to obtain sensitive information by sniffing the network, related to the \"Settings - Account Information\" tab.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xfh-7qvx-mp6f/GHSA-4xfh-7qvx-mp6f.json b/advisories/unreviewed/2022/05/GHSA-4xfh-7qvx-mp6f/GHSA-4xfh-7qvx-mp6f.json index 2e3681b86fa..c5bc887dad4 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xfh-7qvx-mp6f/GHSA-4xfh-7qvx-mp6f.json +++ b/advisories/unreviewed/2022/05/GHSA-4xfh-7qvx-mp6f/GHSA-4xfh-7qvx-mp6f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4xgw-8327-423r/GHSA-4xgw-8327-423r.json b/advisories/unreviewed/2022/05/GHSA-4xgw-8327-423r/GHSA-4xgw-8327-423r.json index cacb7e7e39f..a3d3747dc08 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xgw-8327-423r/GHSA-4xgw-8327-423r.json +++ b/advisories/unreviewed/2022/05/GHSA-4xgw-8327-423r/GHSA-4xgw-8327-423r.json @@ -7,12 +7,8 @@ "CVE-2008-2881" ], "details": "Relative Real Estate Systems 3.0 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-533x-6564-c9jh/GHSA-533x-6564-c9jh.json b/advisories/unreviewed/2022/05/GHSA-533x-6564-c9jh/GHSA-533x-6564-c9jh.json index a793ff32eb9..00181acabbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-533x-6564-c9jh/GHSA-533x-6564-c9jh.json +++ b/advisories/unreviewed/2022/05/GHSA-533x-6564-c9jh/GHSA-533x-6564-c9jh.json @@ -7,12 +7,8 @@ "CVE-2008-2771" ], "details": "The Node Hierarchy module 5.x before 5.x-1.1 and 6.x before 6.x-1.0 for Drupal does not properly implement access checks, which allows remote attackers with \"access content\" permissions to bypass restrictions and modify the node hierarchy via unspecified attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53cx-mxm9-g44r/GHSA-53cx-mxm9-g44r.json b/advisories/unreviewed/2022/05/GHSA-53cx-mxm9-g44r/GHSA-53cx-mxm9-g44r.json index 09f112332be..7a44ecce794 100644 --- a/advisories/unreviewed/2022/05/GHSA-53cx-mxm9-g44r/GHSA-53cx-mxm9-g44r.json +++ b/advisories/unreviewed/2022/05/GHSA-53cx-mxm9-g44r/GHSA-53cx-mxm9-g44r.json @@ -7,12 +7,8 @@ "CVE-2008-2779" ], "details": "Directory traversal vulnerability in GlobalSCAPE CuteFTP Home 8.2.0 Build 02.26.2008.4 and CuteFTP Pro 8.2.0 Build 04.01.2008.1 allows remote FTP servers to create or overwrite arbitrary files via ..\\ (dot dot backslash) sequences in responses to LIST commands, a related issue to CVE-2002-1345. NOTE: this can be leveraged for code execution by writing to a Startup folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53f4-jqhv-7mjh/GHSA-53f4-jqhv-7mjh.json b/advisories/unreviewed/2022/05/GHSA-53f4-jqhv-7mjh/GHSA-53f4-jqhv-7mjh.json index 98829329f62..e6d7fc7d058 100644 --- a/advisories/unreviewed/2022/05/GHSA-53f4-jqhv-7mjh/GHSA-53f4-jqhv-7mjh.json +++ b/advisories/unreviewed/2022/05/GHSA-53f4-jqhv-7mjh/GHSA-53f4-jqhv-7mjh.json @@ -7,12 +7,8 @@ "CVE-2008-2628" ], "details": "SQL injection vulnerability in the eQuotes (com_equotes) component 0.9.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54h5-43hp-6q48/GHSA-54h5-43hp-6q48.json b/advisories/unreviewed/2022/05/GHSA-54h5-43hp-6q48/GHSA-54h5-43hp-6q48.json index b9fa203465b..1a620ebf08a 100644 --- a/advisories/unreviewed/2022/05/GHSA-54h5-43hp-6q48/GHSA-54h5-43hp-6q48.json +++ b/advisories/unreviewed/2022/05/GHSA-54h5-43hp-6q48/GHSA-54h5-43hp-6q48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-54mf-48cv-vq2x/GHSA-54mf-48cv-vq2x.json b/advisories/unreviewed/2022/05/GHSA-54mf-48cv-vq2x/GHSA-54mf-48cv-vq2x.json index 76af3168cbd..df029807b9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-54mf-48cv-vq2x/GHSA-54mf-48cv-vq2x.json +++ b/advisories/unreviewed/2022/05/GHSA-54mf-48cv-vq2x/GHSA-54mf-48cv-vq2x.json @@ -7,12 +7,8 @@ "CVE-2008-3273" ], "details": "JBoss Enterprise Application Platform (aka JBossEAP or EAP) before 4.2.0.CP03, and 4.3.0 before 4.3.0.CP01, allows remote attackers to obtain sensitive information about \"deployed web contexts\" via a request to the status servlet, as demonstrated by a full=true query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-559v-rr5w-cq76/GHSA-559v-rr5w-cq76.json b/advisories/unreviewed/2022/05/GHSA-559v-rr5w-cq76/GHSA-559v-rr5w-cq76.json index 086c76a9140..03c4dd161c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-559v-rr5w-cq76/GHSA-559v-rr5w-cq76.json +++ b/advisories/unreviewed/2022/05/GHSA-559v-rr5w-cq76/GHSA-559v-rr5w-cq76.json @@ -7,12 +7,8 @@ "CVE-2008-3056" ], "details": "SQL injection vulnerability in the Codeon Petition (cd_petition) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5644-f3cx-vpmf/GHSA-5644-f3cx-vpmf.json b/advisories/unreviewed/2022/05/GHSA-5644-f3cx-vpmf/GHSA-5644-f3cx-vpmf.json index e73ae4de3d2..ed5a850f2a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5644-f3cx-vpmf/GHSA-5644-f3cx-vpmf.json +++ b/advisories/unreviewed/2022/05/GHSA-5644-f3cx-vpmf/GHSA-5644-f3cx-vpmf.json @@ -7,12 +7,8 @@ "CVE-2008-3079" ], "details": "Unspecified vulnerability in Opera before 9.51 on Windows allows attackers to execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-569v-h22j-3gcc/GHSA-569v-h22j-3gcc.json b/advisories/unreviewed/2022/05/GHSA-569v-h22j-3gcc/GHSA-569v-h22j-3gcc.json index 4451e15baeb..0f73a7eb1d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-569v-h22j-3gcc/GHSA-569v-h22j-3gcc.json +++ b/advisories/unreviewed/2022/05/GHSA-569v-h22j-3gcc/GHSA-569v-h22j-3gcc.json @@ -7,12 +7,8 @@ "CVE-2020-35453" ], "details": "HashiCorp Vault Enterprise’s Sentinel EGP policy feature incorrectly allowed requests to be processed in parent and sibling namespaces. Fixed in 1.5.6 and 1.6.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56c9-96xp-rwg3/GHSA-56c9-96xp-rwg3.json b/advisories/unreviewed/2022/05/GHSA-56c9-96xp-rwg3/GHSA-56c9-96xp-rwg3.json index 49f519caf18..0cca2e09677 100644 --- a/advisories/unreviewed/2022/05/GHSA-56c9-96xp-rwg3/GHSA-56c9-96xp-rwg3.json +++ b/advisories/unreviewed/2022/05/GHSA-56c9-96xp-rwg3/GHSA-56c9-96xp-rwg3.json @@ -7,12 +7,8 @@ "CVE-2008-2923" ], "details": "Cross-site scripting (XSS) vulnerability in read/search/results in Lyris ListManager 8.8, 8.95, and 9.3d allows remote attackers to inject arbitrary web script or HTML via the words parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56ff-2p4q-7rvj/GHSA-56ff-2p4q-7rvj.json b/advisories/unreviewed/2022/05/GHSA-56ff-2p4q-7rvj/GHSA-56ff-2p4q-7rvj.json index 8270230ec98..2607e9d8565 100644 --- a/advisories/unreviewed/2022/05/GHSA-56ff-2p4q-7rvj/GHSA-56ff-2p4q-7rvj.json +++ b/advisories/unreviewed/2022/05/GHSA-56ff-2p4q-7rvj/GHSA-56ff-2p4q-7rvj.json @@ -7,12 +7,8 @@ "CVE-2008-2774" ], "details": "SQL injection vulnerability in item.php in CartKeeper CKGold Shopping Cart 2.5 and 2.7 allows remote attackers to execute arbitrary SQL commands via the category_id parameter, a different vector than CVE-2007-4736.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56vf-qhhq-rrc2/GHSA-56vf-qhhq-rrc2.json b/advisories/unreviewed/2022/05/GHSA-56vf-qhhq-rrc2/GHSA-56vf-qhhq-rrc2.json index a010d0e95d9..27e2b607a04 100644 --- a/advisories/unreviewed/2022/05/GHSA-56vf-qhhq-rrc2/GHSA-56vf-qhhq-rrc2.json +++ b/advisories/unreviewed/2022/05/GHSA-56vf-qhhq-rrc2/GHSA-56vf-qhhq-rrc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-573h-wp83-cr6f/GHSA-573h-wp83-cr6f.json b/advisories/unreviewed/2022/05/GHSA-573h-wp83-cr6f/GHSA-573h-wp83-cr6f.json index fb67b0bcff1..a9ad2d21fa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-573h-wp83-cr6f/GHSA-573h-wp83-cr6f.json +++ b/advisories/unreviewed/2022/05/GHSA-573h-wp83-cr6f/GHSA-573h-wp83-cr6f.json @@ -7,12 +7,8 @@ "CVE-2008-2955" ], "details": "Pidgin 2.4.1 allows remote attackers to cause a denial of service (crash) via a long filename that contains certain characters, as demonstrated using an MSN message that triggers the crash in the msn_slplink_process_msg function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58jw-fvhj-42v3/GHSA-58jw-fvhj-42v3.json b/advisories/unreviewed/2022/05/GHSA-58jw-fvhj-42v3/GHSA-58jw-fvhj-42v3.json index 97dabef3bec..b64503e1f83 100644 --- a/advisories/unreviewed/2022/05/GHSA-58jw-fvhj-42v3/GHSA-58jw-fvhj-42v3.json +++ b/advisories/unreviewed/2022/05/GHSA-58jw-fvhj-42v3/GHSA-58jw-fvhj-42v3.json @@ -7,12 +7,8 @@ "CVE-2008-2724" ], "details": "Menalto Gallery before 2.2.5 does not enforce permissions for non-album items that have been protected by a password, which might allow remote attackers to bypass intended access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-58wr-4w95-xjcc/GHSA-58wr-4w95-xjcc.json b/advisories/unreviewed/2022/05/GHSA-58wr-4w95-xjcc/GHSA-58wr-4w95-xjcc.json index 30a006ad719..acdfd18712a 100644 --- a/advisories/unreviewed/2022/05/GHSA-58wr-4w95-xjcc/GHSA-58wr-4w95-xjcc.json +++ b/advisories/unreviewed/2022/05/GHSA-58wr-4w95-xjcc/GHSA-58wr-4w95-xjcc.json @@ -7,12 +7,8 @@ "CVE-2008-2786" ], "details": "Buffer overflow in Firefox 3.0 and 2.0.x has unknown impact and attack vectors. NOTE: due to lack of details as of 20080619, it is not clear whether this is the same issue as CVE-2008-2785. A CVE identifier has been assigned for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-598g-8pp7-hcwv/GHSA-598g-8pp7-hcwv.json b/advisories/unreviewed/2022/05/GHSA-598g-8pp7-hcwv/GHSA-598g-8pp7-hcwv.json index bbefa703e4a..29108ce4e4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-598g-8pp7-hcwv/GHSA-598g-8pp7-hcwv.json +++ b/advisories/unreviewed/2022/05/GHSA-598g-8pp7-hcwv/GHSA-598g-8pp7-hcwv.json @@ -7,12 +7,8 @@ "CVE-2008-2783" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Horde Groupware, Groupware Webmail Edition, and Kronolith allow remote attackers to inject arbitrary web script or HTML via the timestamp parameter to (1) week.php, (2) workweek.php, and (3) day.php; and (4) the horde parameter in the PATH_INFO to the default URI. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-59rm-f3qj-r4jw/GHSA-59rm-f3qj-r4jw.json b/advisories/unreviewed/2022/05/GHSA-59rm-f3qj-r4jw/GHSA-59rm-f3qj-r4jw.json index 88c7b79d287..993b3b7354e 100644 --- a/advisories/unreviewed/2022/05/GHSA-59rm-f3qj-r4jw/GHSA-59rm-f3qj-r4jw.json +++ b/advisories/unreviewed/2022/05/GHSA-59rm-f3qj-r4jw/GHSA-59rm-f3qj-r4jw.json @@ -7,12 +7,8 @@ "CVE-2008-3107" ], "details": "Unspecified vulnerability in the Virtual Machine in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -124,9 +120,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5c2q-f98f-4ff3/GHSA-5c2q-f98f-4ff3.json b/advisories/unreviewed/2022/05/GHSA-5c2q-f98f-4ff3/GHSA-5c2q-f98f-4ff3.json index 170fc03ad01..a55d87d6276 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c2q-f98f-4ff3/GHSA-5c2q-f98f-4ff3.json +++ b/advisories/unreviewed/2022/05/GHSA-5c2q-f98f-4ff3/GHSA-5c2q-f98f-4ff3.json @@ -7,12 +7,8 @@ "CVE-2008-2705" ], "details": "Unspecified vulnerability in Sun Java System Access Manager (AM) 7.1, when used with certain versions and configurations of Sun Directory Server Enterprise Edition (DSEE), allows remote attackers to bypass authentication via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c58-823g-jp65/GHSA-5c58-823g-jp65.json b/advisories/unreviewed/2022/05/GHSA-5c58-823g-jp65/GHSA-5c58-823g-jp65.json index 9f912aaf0ed..759a383826a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c58-823g-jp65/GHSA-5c58-823g-jp65.json +++ b/advisories/unreviewed/2022/05/GHSA-5c58-823g-jp65/GHSA-5c58-823g-jp65.json @@ -7,12 +7,8 @@ "CVE-2008-2773" ], "details": "Cross-site scripting (XSS) vulnerability in the Taxonomy Image module 5.x before 5.x-1.3 and 6.x before 6.x-1.3, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5cj6-x2gg-fq5g/GHSA-5cj6-x2gg-fq5g.json b/advisories/unreviewed/2022/05/GHSA-5cj6-x2gg-fq5g/GHSA-5cj6-x2gg-fq5g.json index a36e836b345..636d040dcbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cj6-x2gg-fq5g/GHSA-5cj6-x2gg-fq5g.json +++ b/advisories/unreviewed/2022/05/GHSA-5cj6-x2gg-fq5g/GHSA-5cj6-x2gg-fq5g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5cv3-wf6w-ffmx/GHSA-5cv3-wf6w-ffmx.json b/advisories/unreviewed/2022/05/GHSA-5cv3-wf6w-ffmx/GHSA-5cv3-wf6w-ffmx.json index b599c976a06..8d153efbd19 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cv3-wf6w-ffmx/GHSA-5cv3-wf6w-ffmx.json +++ b/advisories/unreviewed/2022/05/GHSA-5cv3-wf6w-ffmx/GHSA-5cv3-wf6w-ffmx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5g8c-mfvh-j87f/GHSA-5g8c-mfvh-j87f.json b/advisories/unreviewed/2022/05/GHSA-5g8c-mfvh-j87f/GHSA-5g8c-mfvh-j87f.json index 038a94bebfe..57df18d01fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g8c-mfvh-j87f/GHSA-5g8c-mfvh-j87f.json +++ b/advisories/unreviewed/2022/05/GHSA-5g8c-mfvh-j87f/GHSA-5g8c-mfvh-j87f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gwr-h45h-hxgj/GHSA-5gwr-h45h-hxgj.json b/advisories/unreviewed/2022/05/GHSA-5gwr-h45h-hxgj/GHSA-5gwr-h45h-hxgj.json index 3ff47b6b74f..d27b562093d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gwr-h45h-hxgj/GHSA-5gwr-h45h-hxgj.json +++ b/advisories/unreviewed/2022/05/GHSA-5gwr-h45h-hxgj/GHSA-5gwr-h45h-hxgj.json @@ -7,12 +7,8 @@ "CVE-2008-2940" ], "details": "The alert-mailing implementation in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to gain privileges and send e-mail messages from the root account via vectors related to the setalerts message, and lack of validation of the device URI associated with an event message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5hq8-x3r7-7389/GHSA-5hq8-x3r7-7389.json b/advisories/unreviewed/2022/05/GHSA-5hq8-x3r7-7389/GHSA-5hq8-x3r7-7389.json index eda5011d10f..8a2c4a46755 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hq8-x3r7-7389/GHSA-5hq8-x3r7-7389.json +++ b/advisories/unreviewed/2022/05/GHSA-5hq8-x3r7-7389/GHSA-5hq8-x3r7-7389.json @@ -7,12 +7,8 @@ "CVE-2008-3159" ], "details": "Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers to execute arbitrary code via unspecified vectors that trigger a stack-based buffer overflow, related to \"flawed arithmetic.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5hrf-r266-wmhh/GHSA-5hrf-r266-wmhh.json b/advisories/unreviewed/2022/05/GHSA-5hrf-r266-wmhh/GHSA-5hrf-r266-wmhh.json index 55ab37e7bbf..ccb519f49c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hrf-r266-wmhh/GHSA-5hrf-r266-wmhh.json +++ b/advisories/unreviewed/2022/05/GHSA-5hrf-r266-wmhh/GHSA-5hrf-r266-wmhh.json @@ -7,12 +7,8 @@ "CVE-2008-3078" ], "details": "Opera before 9.51 does not properly manage memory within functions supporting the CANVAS element, which allows remote attackers to read uninitialized memory contents by using JavaScript to read a canvas image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5m8g-mxhg-m5v5/GHSA-5m8g-mxhg-m5v5.json b/advisories/unreviewed/2022/05/GHSA-5m8g-mxhg-m5v5/GHSA-5m8g-mxhg-m5v5.json index b06efa59b2f..a721983ac14 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m8g-mxhg-m5v5/GHSA-5m8g-mxhg-m5v5.json +++ b/advisories/unreviewed/2022/05/GHSA-5m8g-mxhg-m5v5/GHSA-5m8g-mxhg-m5v5.json @@ -7,12 +7,8 @@ "CVE-2008-2967" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) query string to login.php and the (2) glb_sid parameter to hta/htmlarea.js.php, and allow remote authenticated users to inject arbitrary web script or HTML via an unspecified field in room.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5phr-hxgg-p3j8/GHSA-5phr-hxgg-p3j8.json b/advisories/unreviewed/2022/05/GHSA-5phr-hxgg-p3j8/GHSA-5phr-hxgg-p3j8.json index a12bf88fb95..d2e22ebc679 100644 --- a/advisories/unreviewed/2022/05/GHSA-5phr-hxgg-p3j8/GHSA-5phr-hxgg-p3j8.json +++ b/advisories/unreviewed/2022/05/GHSA-5phr-hxgg-p3j8/GHSA-5phr-hxgg-p3j8.json @@ -7,12 +7,8 @@ "CVE-2008-2861" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) topic and (2) button parameters to ansFAQ.asp and the (3) id and (4) txtEmail parameters to login.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5q5f-4v35-9pq8/GHSA-5q5f-4v35-9pq8.json b/advisories/unreviewed/2022/05/GHSA-5q5f-4v35-9pq8/GHSA-5q5f-4v35-9pq8.json index 8c4b22cb265..3545da2c691 100644 --- a/advisories/unreviewed/2022/05/GHSA-5q5f-4v35-9pq8/GHSA-5q5f-4v35-9pq8.json +++ b/advisories/unreviewed/2022/05/GHSA-5q5f-4v35-9pq8/GHSA-5q5f-4v35-9pq8.json @@ -7,12 +7,8 @@ "CVE-2008-3060" ], "details": "V-webmail 1.5.0 allows remote attackers to obtain sensitive information via (1) malformed input in the login page (includes/local.hooks.php) and (2) an invalid session ID, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5q7q-g35p-7m8v/GHSA-5q7q-g35p-7m8v.json b/advisories/unreviewed/2022/05/GHSA-5q7q-g35p-7m8v/GHSA-5q7q-g35p-7m8v.json index ea6a74b9672..34bb42f2131 100644 --- a/advisories/unreviewed/2022/05/GHSA-5q7q-g35p-7m8v/GHSA-5q7q-g35p-7m8v.json +++ b/advisories/unreviewed/2022/05/GHSA-5q7q-g35p-7m8v/GHSA-5q7q-g35p-7m8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qfv-7x2h-3988/GHSA-5qfv-7x2h-3988.json b/advisories/unreviewed/2022/05/GHSA-5qfv-7x2h-3988/GHSA-5qfv-7x2h-3988.json index bfdcb1d893e..5f64e03e9d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qfv-7x2h-3988/GHSA-5qfv-7x2h-3988.json +++ b/advisories/unreviewed/2022/05/GHSA-5qfv-7x2h-3988/GHSA-5qfv-7x2h-3988.json @@ -7,12 +7,8 @@ "CVE-2008-3103" ], "details": "Unspecified vulnerability in the Java Management Extensions (JMX) management agent in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier and JDK and JRE 5.0 Update 15 and earlier, when local monitoring is enabled, allows remote attackers to \"perform unauthorized operations\" via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -184,9 +180,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5qhh-8qq2-8p3g/GHSA-5qhh-8qq2-8p3g.json b/advisories/unreviewed/2022/05/GHSA-5qhh-8qq2-8p3g/GHSA-5qhh-8qq2-8p3g.json index dd707333446..e555f92049f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qhh-8qq2-8p3g/GHSA-5qhh-8qq2-8p3g.json +++ b/advisories/unreviewed/2022/05/GHSA-5qhh-8qq2-8p3g/GHSA-5qhh-8qq2-8p3g.json @@ -7,12 +7,8 @@ "CVE-2008-2772" ], "details": "The Magic Tabs module 5.x before 5.x-1.1 for Drupal allows remote attackers to execute arbitrary PHP code via unspecified URL arguments, possibly related to a missing \"whitelist of callbacks.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qjf-pqqq-p29w/GHSA-5qjf-pqqq-p29w.json b/advisories/unreviewed/2022/05/GHSA-5qjf-pqqq-p29w/GHSA-5qjf-pqqq-p29w.json index a1a18d87c55..073a1d5a12f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qjf-pqqq-p29w/GHSA-5qjf-pqqq-p29w.json +++ b/advisories/unreviewed/2022/05/GHSA-5qjf-pqqq-p29w/GHSA-5qjf-pqqq-p29w.json @@ -7,12 +7,8 @@ "CVE-2008-2878" ], "details": "Open redirect vulnerability in rss_getfile.php in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5r2p-qrfm-r88j/GHSA-5r2p-qrfm-r88j.json b/advisories/unreviewed/2022/05/GHSA-5r2p-qrfm-r88j/GHSA-5r2p-qrfm-r88j.json index cf8eff353a1..f4c914085b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r2p-qrfm-r88j/GHSA-5r2p-qrfm-r88j.json +++ b/advisories/unreviewed/2022/05/GHSA-5r2p-qrfm-r88j/GHSA-5r2p-qrfm-r88j.json @@ -7,12 +7,8 @@ "CVE-2008-3151" ], "details": "SQL injection vulnerability in the 4ndvddb 0.91 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id parameter in a show_dvd action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vh8-vx9c-m2vw/GHSA-5vh8-vx9c-m2vw.json b/advisories/unreviewed/2022/05/GHSA-5vh8-vx9c-m2vw/GHSA-5vh8-vx9c-m2vw.json index 9692f0a0636..d108d9ea838 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vh8-vx9c-m2vw/GHSA-5vh8-vx9c-m2vw.json +++ b/advisories/unreviewed/2022/05/GHSA-5vh8-vx9c-m2vw/GHSA-5vh8-vx9c-m2vw.json @@ -7,12 +7,8 @@ "CVE-2008-3024" ], "details": "Stack-based buffer overflow in phgrafx in QNX Momentics (aka RTOS) 6.3.2 and earlier allows local users to gain privileges via a long .pal filename in palette/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5x7h-r96h-5fjp/GHSA-5x7h-r96h-5fjp.json b/advisories/unreviewed/2022/05/GHSA-5x7h-r96h-5fjp/GHSA-5x7h-r96h-5fjp.json index ee88f04ccc3..668ddbf6941 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x7h-r96h-5fjp/GHSA-5x7h-r96h-5fjp.json +++ b/advisories/unreviewed/2022/05/GHSA-5x7h-r96h-5fjp/GHSA-5x7h-r96h-5fjp.json @@ -7,12 +7,8 @@ "CVE-2008-3171" ], "details": "Apple Safari sends Referer headers containing https URLs to different https web sites, which allows remote attackers to obtain potentially sensitive information by reading Referer log data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5x8w-vff3-wh78/GHSA-5x8w-vff3-wh78.json b/advisories/unreviewed/2022/05/GHSA-5x8w-vff3-wh78/GHSA-5x8w-vff3-wh78.json index 2e9042ed834..3842e8fe878 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x8w-vff3-wh78/GHSA-5x8w-vff3-wh78.json +++ b/advisories/unreviewed/2022/05/GHSA-5x8w-vff3-wh78/GHSA-5x8w-vff3-wh78.json @@ -7,12 +7,8 @@ "CVE-2008-2748" ], "details": "Skulltag 0.97d2-RC2 and earlier allows remote attackers to cause a denial of service (daemon hang) via a series of long, malformed connect packets, related to these packets being \"parsed multiple times.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-622c-3525-jxfp/GHSA-622c-3525-jxfp.json b/advisories/unreviewed/2022/05/GHSA-622c-3525-jxfp/GHSA-622c-3525-jxfp.json index bf933ce6a38..4a9d7afbd42 100644 --- a/advisories/unreviewed/2022/05/GHSA-622c-3525-jxfp/GHSA-622c-3525-jxfp.json +++ b/advisories/unreviewed/2022/05/GHSA-622c-3525-jxfp/GHSA-622c-3525-jxfp.json @@ -7,12 +7,8 @@ "CVE-2008-2930" ], "details": "Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denial of service (CPU consumption and search outage) via crafted LDAP search requests with patterns, related to a single-threaded regular-expression subsystem.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-63xq-wq3m-pq2p/GHSA-63xq-wq3m-pq2p.json b/advisories/unreviewed/2022/05/GHSA-63xq-wq3m-pq2p/GHSA-63xq-wq3m-pq2p.json index 6c05d446354..6b3153fc325 100644 --- a/advisories/unreviewed/2022/05/GHSA-63xq-wq3m-pq2p/GHSA-63xq-wq3m-pq2p.json +++ b/advisories/unreviewed/2022/05/GHSA-63xq-wq3m-pq2p/GHSA-63xq-wq3m-pq2p.json @@ -7,12 +7,8 @@ "CVE-2008-2618" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-64rw-mj5q-w82v/GHSA-64rw-mj5q-w82v.json b/advisories/unreviewed/2022/05/GHSA-64rw-mj5q-w82v/GHSA-64rw-mj5q-w82v.json index 73ece860308..18aa3486b0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-64rw-mj5q-w82v/GHSA-64rw-mj5q-w82v.json +++ b/advisories/unreviewed/2022/05/GHSA-64rw-mj5q-w82v/GHSA-64rw-mj5q-w82v.json @@ -7,12 +7,8 @@ "CVE-2008-2841" ], "details": "Argument injection vulnerability in XChat 2.8.7b and earlier on Windows, when Internet Explorer is used, allows remote attackers to execute arbitrary commands via the --command parameter in an ircs:// URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-65mv-34r4-vcq5/GHSA-65mv-34r4-vcq5.json b/advisories/unreviewed/2022/05/GHSA-65mv-34r4-vcq5/GHSA-65mv-34r4-vcq5.json index d5026b0fed4..a32805037f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-65mv-34r4-vcq5/GHSA-65mv-34r4-vcq5.json +++ b/advisories/unreviewed/2022/05/GHSA-65mv-34r4-vcq5/GHSA-65mv-34r4-vcq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6628-6x4p-hh34/GHSA-6628-6x4p-hh34.json b/advisories/unreviewed/2022/05/GHSA-6628-6x4p-hh34/GHSA-6628-6x4p-hh34.json index 05441a08093..61627d31011 100644 --- a/advisories/unreviewed/2022/05/GHSA-6628-6x4p-hh34/GHSA-6628-6x4p-hh34.json +++ b/advisories/unreviewed/2022/05/GHSA-6628-6x4p-hh34/GHSA-6628-6x4p-hh34.json @@ -7,12 +7,8 @@ "CVE-2008-1084" ], "details": "Unspecified vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, through Vista SP1, and Server 2008 allows local users to execute arbitrary code via unknown vectors related to improper input validation. NOTE: it was later reported that one affected function is NtUserFnOUTSTRING in win32k.sys.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-674g-c7wh-2qvj/GHSA-674g-c7wh-2qvj.json b/advisories/unreviewed/2022/05/GHSA-674g-c7wh-2qvj/GHSA-674g-c7wh-2qvj.json index 6a0982cb65f..3f1de5c2662 100644 --- a/advisories/unreviewed/2022/05/GHSA-674g-c7wh-2qvj/GHSA-674g-c7wh-2qvj.json +++ b/advisories/unreviewed/2022/05/GHSA-674g-c7wh-2qvj/GHSA-674g-c7wh-2qvj.json @@ -7,12 +7,8 @@ "CVE-2008-2911" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in Contenido 4.8.4 allow remote attackers to inject arbitrary web script or HTML via the (1) contenido, (2) Belang, and (3) username parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6826-c5xm-mv7f/GHSA-6826-c5xm-mv7f.json b/advisories/unreviewed/2022/05/GHSA-6826-c5xm-mv7f/GHSA-6826-c5xm-mv7f.json index e69abd03cce..3de5c69441c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6826-c5xm-mv7f/GHSA-6826-c5xm-mv7f.json +++ b/advisories/unreviewed/2022/05/GHSA-6826-c5xm-mv7f/GHSA-6826-c5xm-mv7f.json @@ -7,12 +7,8 @@ "CVE-2008-2625" ], "details": "Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.2 allows remote attackers to affect confidentiality and integrity via unknown vectors. NOTE: the previous information was obtained from the Oracle October 2008 CPU. Oracle has not commented on reliable researcher claims that this issue involves an authentication bypass by establishing a TNS connection and impersonating a user session via a crafted authentication message during proxy authentication mode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68jr-4mc7-f45r/GHSA-68jr-4mc7-f45r.json b/advisories/unreviewed/2022/05/GHSA-68jr-4mc7-f45r/GHSA-68jr-4mc7-f45r.json index d8a3a50441e..e0756b3372a 100644 --- a/advisories/unreviewed/2022/05/GHSA-68jr-4mc7-f45r/GHSA-68jr-4mc7-f45r.json +++ b/advisories/unreviewed/2022/05/GHSA-68jr-4mc7-f45r/GHSA-68jr-4mc7-f45r.json @@ -7,12 +7,8 @@ "CVE-2008-3005" ], "details": "Array index vulnerability in Microsoft Office Excel 2000 SP3 and 2002 SP3, and Office 2004 and 2008 for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted array index for a FORMAT record, aka the \"Excel Index Array Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-697x-wwx6-cm5r/GHSA-697x-wwx6-cm5r.json b/advisories/unreviewed/2022/05/GHSA-697x-wwx6-cm5r/GHSA-697x-wwx6-cm5r.json index c01c38793c0..6fefb4670a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-697x-wwx6-cm5r/GHSA-697x-wwx6-cm5r.json +++ b/advisories/unreviewed/2022/05/GHSA-697x-wwx6-cm5r/GHSA-697x-wwx6-cm5r.json @@ -7,12 +7,8 @@ "CVE-2008-3020" ], "details": "Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attackers to execute arbitrary code via a crafted BMP file, aka the \"Malformed BMP Filter Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-69rf-m6w3-jf8j/GHSA-69rf-m6w3-jf8j.json b/advisories/unreviewed/2022/05/GHSA-69rf-m6w3-jf8j/GHSA-69rf-m6w3-jf8j.json index 20bc19d121e..536d6531bd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-69rf-m6w3-jf8j/GHSA-69rf-m6w3-jf8j.json +++ b/advisories/unreviewed/2022/05/GHSA-69rf-m6w3-jf8j/GHSA-69rf-m6w3-jf8j.json @@ -7,12 +7,8 @@ "CVE-2021-24291" ], "details": "The Photo Gallery by 10Web – Mobile-Friendly Image Gallery WordPress plugin before 1.5.69 was vulnerable to Reflected Cross-Site Scripting (XSS) issues via the gallery_id, tag, album_id and _id GET parameters passed to the bwg_frontend_data AJAX action (available to both unauthenticated and authenticated users)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6cmr-6f4q-j55j/GHSA-6cmr-6f4q-j55j.json b/advisories/unreviewed/2022/05/GHSA-6cmr-6f4q-j55j/GHSA-6cmr-6f4q-j55j.json index d928415b3cb..08599253b70 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cmr-6f4q-j55j/GHSA-6cmr-6f4q-j55j.json +++ b/advisories/unreviewed/2022/05/GHSA-6cmr-6f4q-j55j/GHSA-6cmr-6f4q-j55j.json @@ -7,12 +7,8 @@ "CVE-2008-2926" ], "details": "The kmxfw.sys driver in CA Host-Based Intrusion Prevention System (HIPS) r8, as used in CA Internet Security Suite and Personal Firewall, does not properly verify IOCTL requests, which allows local users to cause a denial of service (system crash) or possibly gain privileges via a crafted request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6cq4-9r5q-c4x7/GHSA-6cq4-9r5q-c4x7.json b/advisories/unreviewed/2022/05/GHSA-6cq4-9r5q-c4x7/GHSA-6cq4-9r5q-c4x7.json index 8bda2f7d040..1ef1d50f6c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cq4-9r5q-c4x7/GHSA-6cq4-9r5q-c4x7.json +++ b/advisories/unreviewed/2022/05/GHSA-6cq4-9r5q-c4x7/GHSA-6cq4-9r5q-c4x7.json @@ -7,12 +7,8 @@ "CVE-2008-3104" ], "details": "Multiple unspecified vulnerabilities in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, SDK and JRE 1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before 1.3.1_23 allow remote attackers to violate the security model for an applet's outbound connections by connecting to localhost services running on the machine that loaded the applet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -216,9 +212,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6fgm-5wrg-4p5q/GHSA-6fgm-5wrg-4p5q.json b/advisories/unreviewed/2022/05/GHSA-6fgm-5wrg-4p5q/GHSA-6fgm-5wrg-4p5q.json index 6306d34180f..cd5fb9dc314 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fgm-5wrg-4p5q/GHSA-6fgm-5wrg-4p5q.json +++ b/advisories/unreviewed/2022/05/GHSA-6fgm-5wrg-4p5q/GHSA-6fgm-5wrg-4p5q.json @@ -7,12 +7,8 @@ "CVE-2008-2713" ], "details": "libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to cause a denial of service via a crafted Petite file that triggers an out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -144,9 +140,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6fjq-rq4w-7295/GHSA-6fjq-rq4w-7295.json b/advisories/unreviewed/2022/05/GHSA-6fjq-rq4w-7295/GHSA-6fjq-rq4w-7295.json index 7dc42e9a8c8..423462da2b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fjq-rq4w-7295/GHSA-6fjq-rq4w-7295.json +++ b/advisories/unreviewed/2022/05/GHSA-6fjq-rq4w-7295/GHSA-6fjq-rq4w-7295.json @@ -7,12 +7,8 @@ "CVE-2008-2862" ], "details": "Multiple SQL injection vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to ansFAQ.asp and the (2) template_id parameter to preview.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6g57-2gxq-6m6r/GHSA-6g57-2gxq-6m6r.json b/advisories/unreviewed/2022/05/GHSA-6g57-2gxq-6m6r/GHSA-6g57-2gxq-6m6r.json index 0b729836da7..325d6853c5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g57-2gxq-6m6r/GHSA-6g57-2gxq-6m6r.json +++ b/advisories/unreviewed/2022/05/GHSA-6g57-2gxq-6m6r/GHSA-6g57-2gxq-6m6r.json @@ -7,12 +7,8 @@ "CVE-2008-2903" ], "details": "SQL injection vulnerability in news.php in Advanced Webhost Billing System (AWBS) 2.3.3 through 2.7.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the viewnews parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6ggc-83v2-v33w/GHSA-6ggc-83v2-v33w.json b/advisories/unreviewed/2022/05/GHSA-6ggc-83v2-v33w/GHSA-6ggc-83v2-v33w.json index be5bfb6d60f..f838101bac1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ggc-83v2-v33w/GHSA-6ggc-83v2-v33w.json +++ b/advisories/unreviewed/2022/05/GHSA-6ggc-83v2-v33w/GHSA-6ggc-83v2-v33w.json @@ -7,12 +7,8 @@ "CVE-2008-3090" ], "details": "Multiple SQL injection vulnerabilities in index.php in BlognPlus (BURO GUN +) 2.5.5 MySQL and PostgreSQL editions allow remote attackers to execute arbitrary SQL commands via the (1) p, (2) e, (3) d, and (4) m parameters, a different vulnerability than CVE-2008-2819.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6h84-rvpp-p247/GHSA-6h84-rvpp-p247.json b/advisories/unreviewed/2022/05/GHSA-6h84-rvpp-p247/GHSA-6h84-rvpp-p247.json index f3db37d7bc6..04fbf864545 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h84-rvpp-p247/GHSA-6h84-rvpp-p247.json +++ b/advisories/unreviewed/2022/05/GHSA-6h84-rvpp-p247/GHSA-6h84-rvpp-p247.json @@ -7,12 +7,8 @@ "CVE-2008-2886" ], "details": "PHP remote file inclusion vulnerability in include/plugins/jrBrowser/purchase.php in Jamroom 3.3.0 through 3.3.5, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the jamroom[jm_dir] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hjr-885q-f58r/GHSA-6hjr-885q-f58r.json b/advisories/unreviewed/2022/05/GHSA-6hjr-885q-f58r/GHSA-6hjr-885q-f58r.json index ca851cea280..4ea371a2dd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hjr-885q-f58r/GHSA-6hjr-885q-f58r.json +++ b/advisories/unreviewed/2022/05/GHSA-6hjr-885q-f58r/GHSA-6hjr-885q-f58r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hm2-f7j6-jpfj/GHSA-6hm2-f7j6-jpfj.json b/advisories/unreviewed/2022/05/GHSA-6hm2-f7j6-jpfj/GHSA-6hm2-f7j6-jpfj.json index f1c9c564bb8..d8ca83219b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hm2-f7j6-jpfj/GHSA-6hm2-f7j6-jpfj.json +++ b/advisories/unreviewed/2022/05/GHSA-6hm2-f7j6-jpfj/GHSA-6hm2-f7j6-jpfj.json @@ -7,12 +7,8 @@ "CVE-2008-3154" ], "details": "SQL injection vulnerability in index.php in WebBlizzard CMS allows remote attackers to execute arbitrary SQL commands via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6jp7-m35q-p736/GHSA-6jp7-m35q-p736.json b/advisories/unreviewed/2022/05/GHSA-6jp7-m35q-p736/GHSA-6jp7-m35q-p736.json index 10b615fd048..e41357e5ad3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jp7-m35q-p736/GHSA-6jp7-m35q-p736.json +++ b/advisories/unreviewed/2022/05/GHSA-6jp7-m35q-p736/GHSA-6jp7-m35q-p736.json @@ -7,12 +7,8 @@ "CVE-2008-2847" ], "details": "SQL injection vulnerability in the Trade module in Maxtrade AIO 1.3.23 allows remote attackers to execute arbitrary SQL commands via the categori parameter in a pocategorisell action to modules.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6p6q-jpg9-mwpp/GHSA-6p6q-jpg9-mwpp.json b/advisories/unreviewed/2022/05/GHSA-6p6q-jpg9-mwpp/GHSA-6p6q-jpg9-mwpp.json index b2df2db894c..aa28614c6a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p6q-jpg9-mwpp/GHSA-6p6q-jpg9-mwpp.json +++ b/advisories/unreviewed/2022/05/GHSA-6p6q-jpg9-mwpp/GHSA-6p6q-jpg9-mwpp.json @@ -7,12 +7,8 @@ "CVE-2008-3167" ], "details": "Multiple PHP remote file inclusion vulnerabilities in BoonEx Dolphin 6.1.2, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) dir[plugins] parameter to (a) HTMLSax3.php and (b) safehtml.php in plugins/safehtml/ and the (2) sIncPath parameter to (c) ray/modules/global/inc/content.inc.php. NOTE: vector 1 might be a problem in SafeHTML instead of Dolphin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6p85-rrmv-fxvw/GHSA-6p85-rrmv-fxvw.json b/advisories/unreviewed/2022/05/GHSA-6p85-rrmv-fxvw/GHSA-6p85-rrmv-fxvw.json index 1088c72ec65..0050cb111f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p85-rrmv-fxvw/GHSA-6p85-rrmv-fxvw.json +++ b/advisories/unreviewed/2022/05/GHSA-6p85-rrmv-fxvw/GHSA-6p85-rrmv-fxvw.json @@ -7,12 +7,8 @@ "CVE-2008-2905" ], "details": "PHP remote file inclusion vulnerability in includes/Cache/Lite/Output.php in the Cache_Lite package in Mambo 4.6.4 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6pwc-353h-qw4p/GHSA-6pwc-353h-qw4p.json b/advisories/unreviewed/2022/05/GHSA-6pwc-353h-qw4p/GHSA-6pwc-353h-qw4p.json index 18bdda998e0..ab2330ef5f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pwc-353h-qw4p/GHSA-6pwc-353h-qw4p.json +++ b/advisories/unreviewed/2022/05/GHSA-6pwc-353h-qw4p/GHSA-6pwc-353h-qw4p.json @@ -7,12 +7,8 @@ "CVE-2008-2957" ], "details": "The UPnP functionality in Pidgin 2.0.0, and possibly other versions, allows remote attackers to trigger the download of arbitrary files and cause a denial of service (memory or disk consumption) via a UDP packet that specifies an arbitrary URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w64-qv3w-w28w/GHSA-6w64-qv3w-w28w.json b/advisories/unreviewed/2022/05/GHSA-6w64-qv3w-w28w/GHSA-6w64-qv3w-w28w.json index 387ac75a8f9..6982a4eefd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w64-qv3w-w28w/GHSA-6w64-qv3w-w28w.json +++ b/advisories/unreviewed/2022/05/GHSA-6w64-qv3w-w28w/GHSA-6w64-qv3w-w28w.json @@ -7,12 +7,8 @@ "CVE-2008-2769" ], "details": "PHP remote file inclusion vulnerability in authentication/smf/smf.functions.php in Simple Machines phpRaider 1.0.6 and 1.0.7 allows remote attackers to execute arbitrary PHP code via a URL in the pConfig_auth[smf_path] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wwf-x53r-5qqq/GHSA-6wwf-x53r-5qqq.json b/advisories/unreviewed/2022/05/GHSA-6wwf-x53r-5qqq/GHSA-6wwf-x53r-5qqq.json index 166d7802995..9720b224bf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wwf-x53r-5qqq/GHSA-6wwf-x53r-5qqq.json +++ b/advisories/unreviewed/2022/05/GHSA-6wwf-x53r-5qqq/GHSA-6wwf-x53r-5qqq.json @@ -7,12 +7,8 @@ "CVE-2008-2662" ], "details": "Multiple integer overflows in the rb_str_buf_append function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.8.7 before 1.8.7-p22, and 1.9.0 before 1.9.0-2 allow context-dependent attackers to execute arbitrary code or cause a denial of service via unknown vectors that trigger memory corruption, a different issue than CVE-2008-2663, CVE-2008-2664, and CVE-2008-2725. NOTE: as of 20080624, there has been inconsistent usage of multiple CVE identifiers related to Ruby. This CVE description should be regarded as authoritative, although it is likely to change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -176,9 +172,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6wxh-628h-9qjv/GHSA-6wxh-628h-9qjv.json b/advisories/unreviewed/2022/05/GHSA-6wxh-628h-9qjv/GHSA-6wxh-628h-9qjv.json index 9b5c098b2a0..d48b59e1b0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wxh-628h-9qjv/GHSA-6wxh-628h-9qjv.json +++ b/advisories/unreviewed/2022/05/GHSA-6wxh-628h-9qjv/GHSA-6wxh-628h-9qjv.json @@ -7,12 +7,8 @@ "CVE-2008-2843" ], "details": "Multiple SQL injection vulnerabilities in doITLive CMS 2.50 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter in an USUB action to default.asp and the (2) Licence[SpecialLicenseNumber] (aka LicenceId) cookie to edit/default.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x3f-5896-c4jp/GHSA-6x3f-5896-c4jp.json b/advisories/unreviewed/2022/05/GHSA-6x3f-5896-c4jp/GHSA-6x3f-5896-c4jp.json index 57c6d6db3e1..5ece94d6242 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x3f-5896-c4jp/GHSA-6x3f-5896-c4jp.json +++ b/advisories/unreviewed/2022/05/GHSA-6x3f-5896-c4jp/GHSA-6x3f-5896-c4jp.json @@ -7,12 +7,8 @@ "CVE-2008-3033" ], "details": "RSS-aggregator 1.0 does not require administrative authentication for the admin/fonctions/ directory, which allows remote attackers to access admin functions and have unspecified other impact, as demonstrated by (1) an IdFlux request to supprimer_flux.php and (2) a TpsRafraich request to modifier_tps_rafraich.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x5w-mmqq-q3vj/GHSA-6x5w-mmqq-q3vj.json b/advisories/unreviewed/2022/05/GHSA-6x5w-mmqq-q3vj/GHSA-6x5w-mmqq-q3vj.json index c4beee09d06..0fadc867ff2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x5w-mmqq-q3vj/GHSA-6x5w-mmqq-q3vj.json +++ b/advisories/unreviewed/2022/05/GHSA-6x5w-mmqq-q3vj/GHSA-6x5w-mmqq-q3vj.json @@ -7,12 +7,8 @@ "CVE-2008-2835" ], "details": "SQL injection vulnerability in cgi-bin/igsuite in IGSuite 3.2.4 allows remote attackers to execute arbitrary SQL commands via the formid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6x7h-634p-8jfg/GHSA-6x7h-634p-8jfg.json b/advisories/unreviewed/2022/05/GHSA-6x7h-634p-8jfg/GHSA-6x7h-634p-8jfg.json index 4ffa3678773..b999bddca07 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x7h-634p-8jfg/GHSA-6x7h-634p-8jfg.json +++ b/advisories/unreviewed/2022/05/GHSA-6x7h-634p-8jfg/GHSA-6x7h-634p-8jfg.json @@ -7,12 +7,8 @@ "CVE-2008-3003" ], "details": "Microsoft Office Excel 2007 Gold and SP1 does not properly delete the PWD (password) string from connections.xml when a .xlsx file is configured not to save the remote data session password, which allows local users to obtain sensitive information and obtain access to a remote data source, aka the \"Excel Credential Caching Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6xqf-p6pc-2r56/GHSA-6xqf-p6pc-2r56.json b/advisories/unreviewed/2022/05/GHSA-6xqf-p6pc-2r56/GHSA-6xqf-p6pc-2r56.json index ac8103fc4a8..1dd4553821c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xqf-p6pc-2r56/GHSA-6xqf-p6pc-2r56.json +++ b/advisories/unreviewed/2022/05/GHSA-6xqf-p6pc-2r56/GHSA-6xqf-p6pc-2r56.json @@ -7,12 +7,8 @@ "CVE-2008-2703" ], "details": "Multiple stack-based buffer overflows in Novell GroupWise Messenger (GWIM) Client before 2.0.3 HP1 for Windows allow remote attackers to execute arbitrary code via \"spoofed server responses\" that contain a long string after the NM_A_SZ_TRANSACTION_ID field name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73wp-hmmc-88j6/GHSA-73wp-hmmc-88j6.json b/advisories/unreviewed/2022/05/GHSA-73wp-hmmc-88j6/GHSA-73wp-hmmc-88j6.json index 75978ffb8ec..135fa59f92e 100644 --- a/advisories/unreviewed/2022/05/GHSA-73wp-hmmc-88j6/GHSA-73wp-hmmc-88j6.json +++ b/advisories/unreviewed/2022/05/GHSA-73wp-hmmc-88j6/GHSA-73wp-hmmc-88j6.json @@ -7,12 +7,8 @@ "CVE-2008-2747" ], "details": "No-IP Dynamic Update Client (DUC) 2.2.1 on Windows uses weak permissions for the HKLM\\SOFTWARE\\Vitalwerks\\DUC registry key, which allows local users to obtain obfuscated passwords and other sensitive information by reading the (1) TrayPassword, (2) Username, (3) Password, and (4) Hosts registry values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74m4-9qcx-fg79/GHSA-74m4-9qcx-fg79.json b/advisories/unreviewed/2022/05/GHSA-74m4-9qcx-fg79/GHSA-74m4-9qcx-fg79.json index fc8e4526076..76d4373cc9f 100644 --- a/advisories/unreviewed/2022/05/GHSA-74m4-9qcx-fg79/GHSA-74m4-9qcx-fg79.json +++ b/advisories/unreviewed/2022/05/GHSA-74m4-9qcx-fg79/GHSA-74m4-9qcx-fg79.json @@ -7,12 +7,8 @@ "CVE-2008-2971" ], "details": "SQL injection vulnerability in links-extern.php in CiBlog 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74xw-2qgh-v93w/GHSA-74xw-2qgh-v93w.json b/advisories/unreviewed/2022/05/GHSA-74xw-2qgh-v93w/GHSA-74xw-2qgh-v93w.json index 56350839fda..5b950b09a8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-74xw-2qgh-v93w/GHSA-74xw-2qgh-v93w.json +++ b/advisories/unreviewed/2022/05/GHSA-74xw-2qgh-v93w/GHSA-74xw-2qgh-v93w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75vj-rfc7-48cc/GHSA-75vj-rfc7-48cc.json b/advisories/unreviewed/2022/05/GHSA-75vj-rfc7-48cc/GHSA-75vj-rfc7-48cc.json index 8022741b2ea..56d0cfc0c16 100644 --- a/advisories/unreviewed/2022/05/GHSA-75vj-rfc7-48cc/GHSA-75vj-rfc7-48cc.json +++ b/advisories/unreviewed/2022/05/GHSA-75vj-rfc7-48cc/GHSA-75vj-rfc7-48cc.json @@ -7,12 +7,8 @@ "CVE-2008-2890" ], "details": "Multiple SQL injection vulnerabilities in Online Fantasy Football League (OFFL) 0.2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) fflteam_id parameter to teams.php, the (2) league_id parameter to leagues.php, and the (3) player_id parameter to players.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75x7-9jvj-4jw2/GHSA-75x7-9jvj-4jw2.json b/advisories/unreviewed/2022/05/GHSA-75x7-9jvj-4jw2/GHSA-75x7-9jvj-4jw2.json index 3931d8362e3..45444ca57cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-75x7-9jvj-4jw2/GHSA-75x7-9jvj-4jw2.json +++ b/advisories/unreviewed/2022/05/GHSA-75x7-9jvj-4jw2/GHSA-75x7-9jvj-4jw2.json @@ -7,12 +7,8 @@ "CVE-2008-3082" ], "details": "Cross-site scripting (XSS) vulnerability in UPM/English/login/login.asp in Commtouch Enterprise Anti-Spam Gateway 4 and 5 allows remote attackers to inject arbitrary web script or HTML via the PARAMS parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7674-8v7x-j3vh/GHSA-7674-8v7x-j3vh.json b/advisories/unreviewed/2022/05/GHSA-7674-8v7x-j3vh/GHSA-7674-8v7x-j3vh.json index 8b4db1bc9e7..3554277c02d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7674-8v7x-j3vh/GHSA-7674-8v7x-j3vh.json +++ b/advisories/unreviewed/2022/05/GHSA-7674-8v7x-j3vh/GHSA-7674-8v7x-j3vh.json @@ -7,12 +7,8 @@ "CVE-2008-2875" ], "details": "SQL injection vulnerability in index.php in Webdevindo-CMS 1.0.0 allows remote attackers to execute arbitrary SQL commands via the hal parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-769h-wfhv-w6xx/GHSA-769h-wfhv-w6xx.json b/advisories/unreviewed/2022/05/GHSA-769h-wfhv-w6xx/GHSA-769h-wfhv-w6xx.json index f5f69a0d286..654fc0ab435 100644 --- a/advisories/unreviewed/2022/05/GHSA-769h-wfhv-w6xx/GHSA-769h-wfhv-w6xx.json +++ b/advisories/unreviewed/2022/05/GHSA-769h-wfhv-w6xx/GHSA-769h-wfhv-w6xx.json @@ -7,12 +7,8 @@ "CVE-2008-2754" ], "details": "SQL injection vulnerability in toplists.php in eFiction 3.0 and 3.4.3, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the list parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76gc-c529-wjrc/GHSA-76gc-c529-wjrc.json b/advisories/unreviewed/2022/05/GHSA-76gc-c529-wjrc/GHSA-76gc-c529-wjrc.json index 473fcc3dcb4..d8b20a0cda5 100644 --- a/advisories/unreviewed/2022/05/GHSA-76gc-c529-wjrc/GHSA-76gc-c529-wjrc.json +++ b/advisories/unreviewed/2022/05/GHSA-76gc-c529-wjrc/GHSA-76gc-c529-wjrc.json @@ -7,12 +7,8 @@ "CVE-2008-3007" ], "details": "Argument injection vulnerability in a URI handler in Microsoft Office XP SP3, 2003 SP2 and SP3, 2007 Office System Gold and SP1, and Office OneNote 2007 Gold and SP1 allow remote attackers to execute arbitrary code via a crafted onenote:// URL, aka \"Uniform Resource Locator Validation Error Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-773f-3254-99j9/GHSA-773f-3254-99j9.json b/advisories/unreviewed/2022/05/GHSA-773f-3254-99j9/GHSA-773f-3254-99j9.json index 083dfd79f15..66aa1169778 100644 --- a/advisories/unreviewed/2022/05/GHSA-773f-3254-99j9/GHSA-773f-3254-99j9.json +++ b/advisories/unreviewed/2022/05/GHSA-773f-3254-99j9/GHSA-773f-3254-99j9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-774p-6p9r-qvwv/GHSA-774p-6p9r-qvwv.json b/advisories/unreviewed/2022/05/GHSA-774p-6p9r-qvwv/GHSA-774p-6p9r-qvwv.json index d49ffb15550..ed468d2888d 100644 --- a/advisories/unreviewed/2022/05/GHSA-774p-6p9r-qvwv/GHSA-774p-6p9r-qvwv.json +++ b/advisories/unreviewed/2022/05/GHSA-774p-6p9r-qvwv/GHSA-774p-6p9r-qvwv.json @@ -7,12 +7,8 @@ "CVE-2008-2632" ], "details": "SQL injection vulnerability in the acctexp (com_acctexp) component 0.12.x and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the usage parameter in a subscribe action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7787-j9w7-fmxm/GHSA-7787-j9w7-fmxm.json b/advisories/unreviewed/2022/05/GHSA-7787-j9w7-fmxm/GHSA-7787-j9w7-fmxm.json index f9ed79f7dcd..9dca0e713f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7787-j9w7-fmxm/GHSA-7787-j9w7-fmxm.json +++ b/advisories/unreviewed/2022/05/GHSA-7787-j9w7-fmxm/GHSA-7787-j9w7-fmxm.json @@ -7,12 +7,8 @@ "CVE-2008-2959" ], "details": "Buffer overflow in a certain ActiveX control (vb6skit.dll) in Microsoft Visual Basic Enterprise Edition 6.0 SP6 might allow remote attackers to execute arbitrary code via a long lpstrLinkPath argument to the fCreateShellLink function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-778r-j33v-4mr3/GHSA-778r-j33v-4mr3.json b/advisories/unreviewed/2022/05/GHSA-778r-j33v-4mr3/GHSA-778r-j33v-4mr3.json index 7e4fd727315..88ae1381bf9 100644 --- a/advisories/unreviewed/2022/05/GHSA-778r-j33v-4mr3/GHSA-778r-j33v-4mr3.json +++ b/advisories/unreviewed/2022/05/GHSA-778r-j33v-4mr3/GHSA-778r-j33v-4mr3.json @@ -7,12 +7,8 @@ "CVE-2008-2870" ], "details": "Multiple SQL injection vulnerabilities in ShareCMS 0.1 Beta allow remote attackers to execute arbitrary SQL commands via the (1) eventID parameter to event_info.php and the (2) userID parameter to list_user.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77c9-x7gr-m8x8/GHSA-77c9-x7gr-m8x8.json b/advisories/unreviewed/2022/05/GHSA-77c9-x7gr-m8x8/GHSA-77c9-x7gr-m8x8.json index 05d1a9d494c..45308d1764c 100644 --- a/advisories/unreviewed/2022/05/GHSA-77c9-x7gr-m8x8/GHSA-77c9-x7gr-m8x8.json +++ b/advisories/unreviewed/2022/05/GHSA-77c9-x7gr-m8x8/GHSA-77c9-x7gr-m8x8.json @@ -7,12 +7,8 @@ "CVE-2008-2913" ], "details": "Directory traversal vulnerability in func.php in Devalcms 1.4a, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the currentpath parameter, in conjunction with certain ... (triple dot) and ..... sequences in the currentfile parameter, to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77xj-v2qv-wvf3/GHSA-77xj-v2qv-wvf3.json b/advisories/unreviewed/2022/05/GHSA-77xj-v2qv-wvf3/GHSA-77xj-v2qv-wvf3.json index 4adb6c9eb96..3f2350319da 100644 --- a/advisories/unreviewed/2022/05/GHSA-77xj-v2qv-wvf3/GHSA-77xj-v2qv-wvf3.json +++ b/advisories/unreviewed/2022/05/GHSA-77xj-v2qv-wvf3/GHSA-77xj-v2qv-wvf3.json @@ -7,12 +7,8 @@ "CVE-2008-2802" ], "details": "Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote attackers to execute arbitrary code via an XUL document that includes a script from a chrome: URI that points to a fastload file, related to this file's \"privilege level.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -240,9 +236,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-788g-cgcf-p4x6/GHSA-788g-cgcf-p4x6.json b/advisories/unreviewed/2022/05/GHSA-788g-cgcf-p4x6/GHSA-788g-cgcf-p4x6.json index 65a6930b0f9..a998eb5dfa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-788g-cgcf-p4x6/GHSA-788g-cgcf-p4x6.json +++ b/advisories/unreviewed/2022/05/GHSA-788g-cgcf-p4x6/GHSA-788g-cgcf-p4x6.json @@ -7,12 +7,8 @@ "CVE-2008-3486" ], "details": "Directory traversal vulnerability in the user_get_profile function in include/functions.inc.php in Coppermine Photo Gallery (CPG) 1.4.18 and earlier, when the charset is utf-8, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang part of serialized data in an _data cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-793m-hgfj-gwq5/GHSA-793m-hgfj-gwq5.json b/advisories/unreviewed/2022/05/GHSA-793m-hgfj-gwq5/GHSA-793m-hgfj-gwq5.json index 21cfa371d11..be33e81a2c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-793m-hgfj-gwq5/GHSA-793m-hgfj-gwq5.json +++ b/advisories/unreviewed/2022/05/GHSA-793m-hgfj-gwq5/GHSA-793m-hgfj-gwq5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cj7-cgpm-7cgj/GHSA-7cj7-cgpm-7cgj.json b/advisories/unreviewed/2022/05/GHSA-7cj7-cgpm-7cgj/GHSA-7cj7-cgpm-7cgj.json index 1154ecb2e34..4d0fcf48459 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cj7-cgpm-7cgj/GHSA-7cj7-cgpm-7cgj.json +++ b/advisories/unreviewed/2022/05/GHSA-7cj7-cgpm-7cgj/GHSA-7cj7-cgpm-7cgj.json @@ -7,12 +7,8 @@ "CVE-2008-3173" ], "details": "Microsoft Internet Explorer allows web sites to set cookies for domains that have a public suffix with more than one dot character, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session, aka \"Cross-Site Cooking.\" NOTE: this issue may exist because of an insufficient fix for CVE-2004-0866.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f49-8w55-7r4r/GHSA-7f49-8w55-7r4r.json b/advisories/unreviewed/2022/05/GHSA-7f49-8w55-7r4r/GHSA-7f49-8w55-7r4r.json index 280ec22425b..f1285bc4f91 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f49-8w55-7r4r/GHSA-7f49-8w55-7r4r.json +++ b/advisories/unreviewed/2022/05/GHSA-7f49-8w55-7r4r/GHSA-7f49-8w55-7r4r.json @@ -7,12 +7,8 @@ "CVE-2008-2605" ], "details": "Unspecified vulnerability in the Authentication component in Oracle Database 11.1.0.6 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2604.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f8x-7rcp-rcjq/GHSA-7f8x-7rcp-rcjq.json b/advisories/unreviewed/2022/05/GHSA-7f8x-7rcp-rcjq/GHSA-7f8x-7rcp-rcjq.json index 151e5d59c6a..49099a9a687 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f8x-7rcp-rcjq/GHSA-7f8x-7rcp-rcjq.json +++ b/advisories/unreviewed/2022/05/GHSA-7f8x-7rcp-rcjq/GHSA-7f8x-7rcp-rcjq.json @@ -7,12 +7,8 @@ "CVE-2008-2750" ], "details": "The pppol2tp_recvmsg function in drivers/net/pppol2tp.c in the Linux kernel 2.6 before 2.6.26-rc6 allows remote attackers to cause a denial of service (kernel heap memory corruption and system crash) and possibly have unspecified other impact via a crafted PPPOL2TP packet that results in a large value for a certain length variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g3f-h9r7-66xv/GHSA-7g3f-h9r7-66xv.json b/advisories/unreviewed/2022/05/GHSA-7g3f-h9r7-66xv/GHSA-7g3f-h9r7-66xv.json index b5b05bb9dc5..2e8cc594084 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g3f-h9r7-66xv/GHSA-7g3f-h9r7-66xv.json +++ b/advisories/unreviewed/2022/05/GHSA-7g3f-h9r7-66xv/GHSA-7g3f-h9r7-66xv.json @@ -7,12 +7,8 @@ "CVE-2008-2872" ], "details": "SQL injection vulnerability in default.asp in sHibby sHop 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via the sayfa parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g3p-6vc8-v995/GHSA-7g3p-6vc8-v995.json b/advisories/unreviewed/2022/05/GHSA-7g3p-6vc8-v995/GHSA-7g3p-6vc8-v995.json index 0243a5409ab..56aa03aed83 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g3p-6vc8-v995/GHSA-7g3p-6vc8-v995.json +++ b/advisories/unreviewed/2022/05/GHSA-7g3p-6vc8-v995/GHSA-7g3p-6vc8-v995.json @@ -7,12 +7,8 @@ "CVE-2008-2917" ], "details": "SQL injection vulnerability in productsofcat.asp in E-SMART CART allows remote attackers to execute arbitrary SQL commands via the category_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hcc-qmpc-f7xq/GHSA-7hcc-qmpc-f7xq.json b/advisories/unreviewed/2022/05/GHSA-7hcc-qmpc-f7xq/GHSA-7hcc-qmpc-f7xq.json index 18f17dcd06b..d25d598ecad 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hcc-qmpc-f7xq/GHSA-7hcc-qmpc-f7xq.json +++ b/advisories/unreviewed/2022/05/GHSA-7hcc-qmpc-f7xq/GHSA-7hcc-qmpc-f7xq.json @@ -7,12 +7,8 @@ "CVE-2008-2954" ], "details": "client/NmdcHub.cpp in Linux DC++ (linuxdcpp) before 0.707 allows remote attackers to cause a denial of service (crash) via an empty private message, which triggers an out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jvx-p33v-mw2x/GHSA-7jvx-p33v-mw2x.json b/advisories/unreviewed/2022/05/GHSA-7jvx-p33v-mw2x/GHSA-7jvx-p33v-mw2x.json index 9285bd0fd6d..97cc5703e14 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jvx-p33v-mw2x/GHSA-7jvx-p33v-mw2x.json +++ b/advisories/unreviewed/2022/05/GHSA-7jvx-p33v-mw2x/GHSA-7jvx-p33v-mw2x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7m75-j44m-f9x9/GHSA-7m75-j44m-f9x9.json b/advisories/unreviewed/2022/05/GHSA-7m75-j44m-f9x9/GHSA-7m75-j44m-f9x9.json index 88f39ba659c..65cc7f0fe13 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m75-j44m-f9x9/GHSA-7m75-j44m-f9x9.json +++ b/advisories/unreviewed/2022/05/GHSA-7m75-j44m-f9x9/GHSA-7m75-j44m-f9x9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7pqc-rm57-cjg8/GHSA-7pqc-rm57-cjg8.json b/advisories/unreviewed/2022/05/GHSA-7pqc-rm57-cjg8/GHSA-7pqc-rm57-cjg8.json index ae71cde7803..e39a8efb11e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pqc-rm57-cjg8/GHSA-7pqc-rm57-cjg8.json +++ b/advisories/unreviewed/2022/05/GHSA-7pqc-rm57-cjg8/GHSA-7pqc-rm57-cjg8.json @@ -7,12 +7,8 @@ "CVE-2008-2860" ], "details": "SQL injection vulnerability in category.php in AJSquare AJ Auction Pro web 2.0 allows remote attackers to execute arbitrary SQL commands via the cate_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7r3x-77pv-99w6/GHSA-7r3x-77pv-99w6.json b/advisories/unreviewed/2022/05/GHSA-7r3x-77pv-99w6/GHSA-7r3x-77pv-99w6.json index 1fe7485e76c..9ae52633d8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r3x-77pv-99w6/GHSA-7r3x-77pv-99w6.json +++ b/advisories/unreviewed/2022/05/GHSA-7r3x-77pv-99w6/GHSA-7r3x-77pv-99w6.json @@ -7,12 +7,8 @@ "CVE-2008-2635" ], "details": "Multiple directory traversal vulnerabilities in BitKinex 2.9.3 allow remote FTP and WebDAV servers to create or overwrite arbitrary files via a .. (dot dot) in (1) a response to a LIST command from the BitKinex FTP client and (2) a response to a PROPFIND command from the BitKinex WebDAV client. NOTE: this can be leveraged for code execution by writing to a Startup folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w8f-xwjh-jcgp/GHSA-7w8f-xwjh-jcgp.json b/advisories/unreviewed/2022/05/GHSA-7w8f-xwjh-jcgp/GHSA-7w8f-xwjh-jcgp.json index a80a42089bb..29e3790994f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w8f-xwjh-jcgp/GHSA-7w8f-xwjh-jcgp.json +++ b/advisories/unreviewed/2022/05/GHSA-7w8f-xwjh-jcgp/GHSA-7w8f-xwjh-jcgp.json @@ -7,12 +7,8 @@ "CVE-2008-2631" ], "details": "The WordClient interface in Alt-N Technologies MDaemon 9.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted HTTP POST request. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7wc9-px2p-j49m/GHSA-7wc9-px2p-j49m.json b/advisories/unreviewed/2022/05/GHSA-7wc9-px2p-j49m/GHSA-7wc9-px2p-j49m.json index 4cac4cbdbfa..0c768817c55 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wc9-px2p-j49m/GHSA-7wc9-px2p-j49m.json +++ b/advisories/unreviewed/2022/05/GHSA-7wc9-px2p-j49m/GHSA-7wc9-px2p-j49m.json @@ -7,12 +7,8 @@ "CVE-2008-3285" ], "details": "The Filesys::SmbClientParser module 2.7 and earlier for Perl allows remote SMB servers to execute arbitrary code via a folder name containing shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82jf-vh7j-48rv/GHSA-82jf-vh7j-48rv.json b/advisories/unreviewed/2022/05/GHSA-82jf-vh7j-48rv/GHSA-82jf-vh7j-48rv.json index 543b4faf8e0..657233eb663 100644 --- a/advisories/unreviewed/2022/05/GHSA-82jf-vh7j-48rv/GHSA-82jf-vh7j-48rv.json +++ b/advisories/unreviewed/2022/05/GHSA-82jf-vh7j-48rv/GHSA-82jf-vh7j-48rv.json @@ -7,12 +7,8 @@ "CVE-2008-3114" ], "details": "Unspecified vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows context-dependent attackers to obtain sensitive information (the cache location) via an untrusted application, aka CR 6704074.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-838x-5x2j-rwg2/GHSA-838x-5x2j-rwg2.json b/advisories/unreviewed/2022/05/GHSA-838x-5x2j-rwg2/GHSA-838x-5x2j-rwg2.json index 9aae8113a88..c30728fa678 100644 --- a/advisories/unreviewed/2022/05/GHSA-838x-5x2j-rwg2/GHSA-838x-5x2j-rwg2.json +++ b/advisories/unreviewed/2022/05/GHSA-838x-5x2j-rwg2/GHSA-838x-5x2j-rwg2.json @@ -7,12 +7,8 @@ "CVE-2008-2978" ], "details": "Directory traversal vulnerability in phpi/rss.php in Ourvideo CMS 9.5, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the prefix parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-839v-v77x-fcq7/GHSA-839v-v77x-fcq7.json b/advisories/unreviewed/2022/05/GHSA-839v-v77x-fcq7/GHSA-839v-v77x-fcq7.json index 18abc0dc7cb..9e202cf792f 100644 --- a/advisories/unreviewed/2022/05/GHSA-839v-v77x-fcq7/GHSA-839v-v77x-fcq7.json +++ b/advisories/unreviewed/2022/05/GHSA-839v-v77x-fcq7/GHSA-839v-v77x-fcq7.json @@ -7,12 +7,8 @@ "CVE-2008-2714" ], "details": "Opera before 9.26 allows remote attackers to misrepresent web page addresses using \"certain characters\" that \"cause the page address text to be misplaced.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-83x4-5j8r-jg4m/GHSA-83x4-5j8r-jg4m.json b/advisories/unreviewed/2022/05/GHSA-83x4-5j8r-jg4m/GHSA-83x4-5j8r-jg4m.json index 51a6506281e..c83d67612dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-83x4-5j8r-jg4m/GHSA-83x4-5j8r-jg4m.json +++ b/advisories/unreviewed/2022/05/GHSA-83x4-5j8r-jg4m/GHSA-83x4-5j8r-jg4m.json @@ -7,12 +7,8 @@ "CVE-2019-5179" ], "details": "An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 Firmware version 03.02.02(14). An attacker can send a specially crafted packet to trigger the parsing of this cache file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8465-g5g2-73f3/GHSA-8465-g5g2-73f3.json b/advisories/unreviewed/2022/05/GHSA-8465-g5g2-73f3/GHSA-8465-g5g2-73f3.json index 08a2d738123..4d23094c73e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8465-g5g2-73f3/GHSA-8465-g5g2-73f3.json +++ b/advisories/unreviewed/2022/05/GHSA-8465-g5g2-73f3/GHSA-8465-g5g2-73f3.json @@ -7,12 +7,8 @@ "CVE-2008-2755" ], "details": "SQL injection vulnerability in index.php in JAMM CMS allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84cx-g986-wvj7/GHSA-84cx-g986-wvj7.json b/advisories/unreviewed/2022/05/GHSA-84cx-g986-wvj7/GHSA-84cx-g986-wvj7.json index 88967955f60..2b774d74ab6 100644 --- a/advisories/unreviewed/2022/05/GHSA-84cx-g986-wvj7/GHSA-84cx-g986-wvj7.json +++ b/advisories/unreviewed/2022/05/GHSA-84cx-g986-wvj7/GHSA-84cx-g986-wvj7.json @@ -7,12 +7,8 @@ "CVE-2008-2623" ], "details": "Unspecified vulnerability in the Oracle JDeveloper component in Oracle Application Server 10.1.2.3 allows local users to affect confidentiality via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-84p2-w287-8v6p/GHSA-84p2-w287-8v6p.json b/advisories/unreviewed/2022/05/GHSA-84p2-w287-8v6p/GHSA-84p2-w287-8v6p.json index dbda52d25ea..32236e62b69 100644 --- a/advisories/unreviewed/2022/05/GHSA-84p2-w287-8v6p/GHSA-84p2-w287-8v6p.json +++ b/advisories/unreviewed/2022/05/GHSA-84p2-w287-8v6p/GHSA-84p2-w287-8v6p.json @@ -7,12 +7,8 @@ "CVE-2008-2787" ], "details": "Cross-site scripting (XSS) vulnerability in out.php in OpenDocMan 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the last_message parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84pr-ch9h-f9wm/GHSA-84pr-ch9h-f9wm.json b/advisories/unreviewed/2022/05/GHSA-84pr-ch9h-f9wm/GHSA-84pr-ch9h-f9wm.json index 13f10a15bab..99c24dbdda7 100644 --- a/advisories/unreviewed/2022/05/GHSA-84pr-ch9h-f9wm/GHSA-84pr-ch9h-f9wm.json +++ b/advisories/unreviewed/2022/05/GHSA-84pr-ch9h-f9wm/GHSA-84pr-ch9h-f9wm.json @@ -7,12 +7,8 @@ "CVE-2021-33547" ], "details": "Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the profile parameter which may allow an attacker to remotely execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-856m-qvrj-mfjh/GHSA-856m-qvrj-mfjh.json b/advisories/unreviewed/2022/05/GHSA-856m-qvrj-mfjh/GHSA-856m-qvrj-mfjh.json index 11db82432be..0b0589f033b 100644 --- a/advisories/unreviewed/2022/05/GHSA-856m-qvrj-mfjh/GHSA-856m-qvrj-mfjh.json +++ b/advisories/unreviewed/2022/05/GHSA-856m-qvrj-mfjh/GHSA-856m-qvrj-mfjh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85m3-3j3g-mhv6/GHSA-85m3-3j3g-mhv6.json b/advisories/unreviewed/2022/05/GHSA-85m3-3j3g-mhv6/GHSA-85m3-3j3g-mhv6.json index 4b49e0631a8..7f34d65acf7 100644 --- a/advisories/unreviewed/2022/05/GHSA-85m3-3j3g-mhv6/GHSA-85m3-3j3g-mhv6.json +++ b/advisories/unreviewed/2022/05/GHSA-85m3-3j3g-mhv6/GHSA-85m3-3j3g-mhv6.json @@ -7,12 +7,8 @@ "CVE-2021-28625" ], "details": "Adobe Experience Manager Cloud Service offering, as well as versions 6.5.8.0 (and below) is affected by a Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-864g-gg6m-gp3x/GHSA-864g-gg6m-gp3x.json b/advisories/unreviewed/2022/05/GHSA-864g-gg6m-gp3x/GHSA-864g-gg6m-gp3x.json index 8f27f0ff298..7ccd0e71d5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-864g-gg6m-gp3x/GHSA-864g-gg6m-gp3x.json +++ b/advisories/unreviewed/2022/05/GHSA-864g-gg6m-gp3x/GHSA-864g-gg6m-gp3x.json @@ -7,12 +7,8 @@ "CVE-2021-28204" ], "details": "The specific function in ASUS BMC’s firmware Web management page (Modify user’s information function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can launch command injection to execute command arbitrary.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-868h-px43-4m5p/GHSA-868h-px43-4m5p.json b/advisories/unreviewed/2022/05/GHSA-868h-px43-4m5p/GHSA-868h-px43-4m5p.json index e0b4b2c401e..63066082d42 100644 --- a/advisories/unreviewed/2022/05/GHSA-868h-px43-4m5p/GHSA-868h-px43-4m5p.json +++ b/advisories/unreviewed/2022/05/GHSA-868h-px43-4m5p/GHSA-868h-px43-4m5p.json @@ -7,12 +7,8 @@ "CVE-2008-2909" ], "details": "SQL injection vulnerability in results.php in Clever Copy 3.0 allows remote attackers to execute arbitrary SQL commands via the searchtype parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86mm-qq2x-p28p/GHSA-86mm-qq2x-p28p.json b/advisories/unreviewed/2022/05/GHSA-86mm-qq2x-p28p/GHSA-86mm-qq2x-p28p.json index 2fb84d64770..880098520cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-86mm-qq2x-p28p/GHSA-86mm-qq2x-p28p.json +++ b/advisories/unreviewed/2022/05/GHSA-86mm-qq2x-p28p/GHSA-86mm-qq2x-p28p.json @@ -7,12 +7,8 @@ "CVE-2021-42699" ], "details": "The affected product is vulnerable to cookie information being transmitted as cleartext over HTTP. An attacker can capture network traffic, obtain the user’s cookie and take over the account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86pf-m96w-8m3f/GHSA-86pf-m96w-8m3f.json b/advisories/unreviewed/2022/05/GHSA-86pf-m96w-8m3f/GHSA-86pf-m96w-8m3f.json index d04e1f3a064..5d7102edcaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-86pf-m96w-8m3f/GHSA-86pf-m96w-8m3f.json +++ b/advisories/unreviewed/2022/05/GHSA-86pf-m96w-8m3f/GHSA-86pf-m96w-8m3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8756-x628-mfxg/GHSA-8756-x628-mfxg.json b/advisories/unreviewed/2022/05/GHSA-8756-x628-mfxg/GHSA-8756-x628-mfxg.json index 87432c3f9de..a199fac7935 100644 --- a/advisories/unreviewed/2022/05/GHSA-8756-x628-mfxg/GHSA-8756-x628-mfxg.json +++ b/advisories/unreviewed/2022/05/GHSA-8756-x628-mfxg/GHSA-8756-x628-mfxg.json @@ -7,12 +7,8 @@ "CVE-2008-2734" ], "details": "Memory leak in the crypto functionality in Cisco Adaptive Security Appliance (ASA) 5500 devices 7.2 before 7.2(4)2, 8.0 before 8.0(3)14, and 8.1 before 8.1(1)4, when configured as a clientless SSL VPN endpoint, allows remote attackers to cause a denial of service (memory consumption and VPN hang) via a crafted SSL or HTTP packet, aka Bug ID CSCso66472.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-886m-rmg5-rwvm/GHSA-886m-rmg5-rwvm.json b/advisories/unreviewed/2022/05/GHSA-886m-rmg5-rwvm/GHSA-886m-rmg5-rwvm.json index 465f336e59b..53b79561bed 100644 --- a/advisories/unreviewed/2022/05/GHSA-886m-rmg5-rwvm/GHSA-886m-rmg5-rwvm.json +++ b/advisories/unreviewed/2022/05/GHSA-886m-rmg5-rwvm/GHSA-886m-rmg5-rwvm.json @@ -7,12 +7,8 @@ "CVE-2020-5644" ], "details": "Buffer overflow vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QMBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QLBDE CoreOS version ’05.65.00.BD’ and earlier, GT1455HS-QTBDE CoreOS version ’05.65.00.BD’ and earlier, and GT1450HS-QMBDE CoreOS version ’05.65.00.BD’ and earlier) allows a remote unauthenticated attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-893r-4xqw-4w3q/GHSA-893r-4xqw-4w3q.json b/advisories/unreviewed/2022/05/GHSA-893r-4xqw-4w3q/GHSA-893r-4xqw-4w3q.json index 50158506137..67aa2e0fbe2 100644 --- a/advisories/unreviewed/2022/05/GHSA-893r-4xqw-4w3q/GHSA-893r-4xqw-4w3q.json +++ b/advisories/unreviewed/2022/05/GHSA-893r-4xqw-4w3q/GHSA-893r-4xqw-4w3q.json @@ -7,12 +7,8 @@ "CVE-2008-2679" ], "details": "SQL injection vulnerability in the KeyWordsList function in _includes/inc_routines.asp in Realm CMS 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the kwrd parameter in a kwl action to the default URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89rc-4jgm-q84x/GHSA-89rc-4jgm-q84x.json b/advisories/unreviewed/2022/05/GHSA-89rc-4jgm-q84x/GHSA-89rc-4jgm-q84x.json index bc949575d46..cdd40c50eda 100644 --- a/advisories/unreviewed/2022/05/GHSA-89rc-4jgm-q84x/GHSA-89rc-4jgm-q84x.json +++ b/advisories/unreviewed/2022/05/GHSA-89rc-4jgm-q84x/GHSA-89rc-4jgm-q84x.json @@ -7,12 +7,8 @@ "CVE-2021-42335" ], "details": "Easytest bulletin board management function of online learning platform does not filter special characters. After obtaining a user’s privilege, remote attackers can inject JavaScript and execute stored XSS attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89rc-rfgc-g2j3/GHSA-89rc-rfgc-g2j3.json b/advisories/unreviewed/2022/05/GHSA-89rc-rfgc-g2j3/GHSA-89rc-rfgc-g2j3.json index 38dcc691d7f..88593ee6af3 100644 --- a/advisories/unreviewed/2022/05/GHSA-89rc-rfgc-g2j3/GHSA-89rc-rfgc-g2j3.json +++ b/advisories/unreviewed/2022/05/GHSA-89rc-rfgc-g2j3/GHSA-89rc-rfgc-g2j3.json @@ -7,12 +7,8 @@ "CVE-2008-2718" ], "details": "Cross-site scripting (XSS) vulnerability in fe_adminlib.inc in TYPO3 4.0.x before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4.2.1, as used in extensions such as (1) direct_mail_subscription, (2) feuser_admin, and (3) kb_md5fepw, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8c66-9w2h-5cm9/GHSA-8c66-9w2h-5cm9.json b/advisories/unreviewed/2022/05/GHSA-8c66-9w2h-5cm9/GHSA-8c66-9w2h-5cm9.json index 523ccfba21a..8aa6527a9e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c66-9w2h-5cm9/GHSA-8c66-9w2h-5cm9.json +++ b/advisories/unreviewed/2022/05/GHSA-8c66-9w2h-5cm9/GHSA-8c66-9w2h-5cm9.json @@ -7,12 +7,8 @@ "CVE-2008-2892" ], "details": "SQL injection vulnerability in the EXP Shop (com_expshop) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_payment action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cvw-43cv-8xmh/GHSA-8cvw-43cv-8xmh.json b/advisories/unreviewed/2022/05/GHSA-8cvw-43cv-8xmh/GHSA-8cvw-43cv-8xmh.json index f4f4cd99df5..7fc3264e1ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cvw-43cv-8xmh/GHSA-8cvw-43cv-8xmh.json +++ b/advisories/unreviewed/2022/05/GHSA-8cvw-43cv-8xmh/GHSA-8cvw-43cv-8xmh.json @@ -7,12 +7,8 @@ "CVE-2021-24306" ], "details": "The Ultimate Member – User Profile, User Registration, Login & Membership Plugin WordPress plugin before 2.1.20 did not properly sanitise, validate or encode the query string when generating a link to edit user's own profile, leading to an authenticated reflected Cross-Site Scripting issue. Knowledge of the targeted username is required to exploit this, and attackers would then need to make the related logged in user open a malicious link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f44-ww46-87xp/GHSA-8f44-ww46-87xp.json b/advisories/unreviewed/2022/05/GHSA-8f44-ww46-87xp/GHSA-8f44-ww46-87xp.json index a93079e0b47..ec4355be273 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f44-ww46-87xp/GHSA-8f44-ww46-87xp.json +++ b/advisories/unreviewed/2022/05/GHSA-8f44-ww46-87xp/GHSA-8f44-ww46-87xp.json @@ -7,12 +7,8 @@ "CVE-2021-24256" ], "details": "The “Elementor – Header, Footer & Blocks Templateâ€? WordPress Plugin before 1.5.8 has two widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f73-86rh-w9fj/GHSA-8f73-86rh-w9fj.json b/advisories/unreviewed/2022/05/GHSA-8f73-86rh-w9fj/GHSA-8f73-86rh-w9fj.json index e5de8a4a9de..6c29d4ee98b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f73-86rh-w9fj/GHSA-8f73-86rh-w9fj.json +++ b/advisories/unreviewed/2022/05/GHSA-8f73-86rh-w9fj/GHSA-8f73-86rh-w9fj.json @@ -7,12 +7,8 @@ "CVE-2021-22001" ], "details": "In UAA versions prior to 75.3.0, sensitive information like relaying secret of the provider was revealed in response when deletion request of an identity provider( IdP) of type “oauth 1.0” was sent to UAA server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8fr7-p5q2-h3qh/GHSA-8fr7-p5q2-h3qh.json b/advisories/unreviewed/2022/05/GHSA-8fr7-p5q2-h3qh/GHSA-8fr7-p5q2-h3qh.json index a497fcf4f1f..c66e831acc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fr7-p5q2-h3qh/GHSA-8fr7-p5q2-h3qh.json +++ b/advisories/unreviewed/2022/05/GHSA-8fr7-p5q2-h3qh/GHSA-8fr7-p5q2-h3qh.json @@ -7,12 +7,8 @@ "CVE-2008-2980" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in HomePH Design 2.10 RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) error_meldung parameter to admin/features/register/register.php, the (2) feature_language[ueberschrift] parameter to admin/features/memberlist/memberlist.php, the (3) language_array[ueberschrift] parameter to admin/features/lostpassword/lostpassword.php, the (4) language_feature[titel] parameter to admin/features/kalender/eingabe.php, and the (5) language_feature[bildmenu] parameter to admin/features/fotogalerie/eingabe.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fx4-47hw-m452/GHSA-8fx4-47hw-m452.json b/advisories/unreviewed/2022/05/GHSA-8fx4-47hw-m452/GHSA-8fx4-47hw-m452.json index 2d3b678ca89..025c57dccb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fx4-47hw-m452/GHSA-8fx4-47hw-m452.json +++ b/advisories/unreviewed/2022/05/GHSA-8fx4-47hw-m452/GHSA-8fx4-47hw-m452.json @@ -7,12 +7,8 @@ "CVE-2008-2654" ], "details": "Off-by-one error in the read_client function in webhttpd.c in Motion 3.2.10 and earlier might allow remote attackers to execute arbitrary code via a long request to a Motion HTTP Control interface, which triggers a stack-based buffer overflow with some combinations of processor architecture and compiler.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8ggj-j64g-w9r2/GHSA-8ggj-j64g-w9r2.json b/advisories/unreviewed/2022/05/GHSA-8ggj-j64g-w9r2/GHSA-8ggj-j64g-w9r2.json index 954c88c7d73..cff19bd7593 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ggj-j64g-w9r2/GHSA-8ggj-j64g-w9r2.json +++ b/advisories/unreviewed/2022/05/GHSA-8ggj-j64g-w9r2/GHSA-8ggj-j64g-w9r2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8ghr-p5r5-7qp8/GHSA-8ghr-p5r5-7qp8.json b/advisories/unreviewed/2022/05/GHSA-8ghr-p5r5-7qp8/GHSA-8ghr-p5r5-7qp8.json index f20f5d91a99..09e62d1403d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ghr-p5r5-7qp8/GHSA-8ghr-p5r5-7qp8.json +++ b/advisories/unreviewed/2022/05/GHSA-8ghr-p5r5-7qp8/GHSA-8ghr-p5r5-7qp8.json @@ -7,12 +7,8 @@ "CVE-2008-3096" ], "details": "The Outline Designer module 5.x before 5.x-1.4 for Drupal changes each content reader's authentication level to match that of the content author, which might allow remote attackers to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8gmm-53jc-x5c2/GHSA-8gmm-53jc-x5c2.json b/advisories/unreviewed/2022/05/GHSA-8gmm-53jc-x5c2/GHSA-8gmm-53jc-x5c2.json index e122c57f902..0319692e0f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gmm-53jc-x5c2/GHSA-8gmm-53jc-x5c2.json +++ b/advisories/unreviewed/2022/05/GHSA-8gmm-53jc-x5c2/GHSA-8gmm-53jc-x5c2.json @@ -7,12 +7,8 @@ "CVE-2008-3327" ], "details": "Moodle 1.6.5, when display_errors is enabled, allows remote attackers to obtain sensitive information via a direct request to (1) blog/blogpage.php and (2) course/report/stats/report.php, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8gpg-xh2m-p68h/GHSA-8gpg-xh2m-p68h.json b/advisories/unreviewed/2022/05/GHSA-8gpg-xh2m-p68h/GHSA-8gpg-xh2m-p68h.json index d72f31d73e3..3a14fbcc9fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gpg-xh2m-p68h/GHSA-8gpg-xh2m-p68h.json +++ b/advisories/unreviewed/2022/05/GHSA-8gpg-xh2m-p68h/GHSA-8gpg-xh2m-p68h.json @@ -7,12 +7,8 @@ "CVE-2008-2691" ], "details": "SQL injection vulnerability in read.asp in JiRo's FAQ Manager eXperience 1.0 allows remote attackers to execute arbitrary SQL commands via the fID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8gqr-m8rh-5q87/GHSA-8gqr-m8rh-5q87.json b/advisories/unreviewed/2022/05/GHSA-8gqr-m8rh-5q87/GHSA-8gqr-m8rh-5q87.json index 14b016bd32b..7709b0fa11c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gqr-m8rh-5q87/GHSA-8gqr-m8rh-5q87.json +++ b/advisories/unreviewed/2022/05/GHSA-8gqr-m8rh-5q87/GHSA-8gqr-m8rh-5q87.json @@ -7,12 +7,8 @@ "CVE-2008-2916" ], "details": "Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to showcategory.php and the (2) id parameter to software-description.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jr5-7gwg-pj88/GHSA-8jr5-7gwg-pj88.json b/advisories/unreviewed/2022/05/GHSA-8jr5-7gwg-pj88/GHSA-8jr5-7gwg-pj88.json index 40839bf04b7..8765e2cca76 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jr5-7gwg-pj88/GHSA-8jr5-7gwg-pj88.json +++ b/advisories/unreviewed/2022/05/GHSA-8jr5-7gwg-pj88/GHSA-8jr5-7gwg-pj88.json @@ -7,12 +7,8 @@ "CVE-2008-3125" ], "details": "SQL injection vulnerability in index.php in Mole Group Lastminute Script 4.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jwc-8ww6-25xw/GHSA-8jwc-8ww6-25xw.json b/advisories/unreviewed/2022/05/GHSA-8jwc-8ww6-25xw/GHSA-8jwc-8ww6-25xw.json index 7d73e125718..4b7995cbe58 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jwc-8ww6-25xw/GHSA-8jwc-8ww6-25xw.json +++ b/advisories/unreviewed/2022/05/GHSA-8jwc-8ww6-25xw/GHSA-8jwc-8ww6-25xw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m8f-h54p-vqgg/GHSA-8m8f-h54p-vqgg.json b/advisories/unreviewed/2022/05/GHSA-8m8f-h54p-vqgg/GHSA-8m8f-h54p-vqgg.json index c6922d8e160..527e0da2bc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m8f-h54p-vqgg/GHSA-8m8f-h54p-vqgg.json +++ b/advisories/unreviewed/2022/05/GHSA-8m8f-h54p-vqgg/GHSA-8m8f-h54p-vqgg.json @@ -7,12 +7,8 @@ "CVE-2021-28190" ], "details": "The specific function in ASUS BMC’s firmware Web management page (Generate new certificate function) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8mv6-3mvr-36hm/GHSA-8mv6-3mvr-36hm.json b/advisories/unreviewed/2022/05/GHSA-8mv6-3mvr-36hm/GHSA-8mv6-3mvr-36hm.json index fffff09cec5..e10a808ad63 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mv6-3mvr-36hm/GHSA-8mv6-3mvr-36hm.json +++ b/advisories/unreviewed/2022/05/GHSA-8mv6-3mvr-36hm/GHSA-8mv6-3mvr-36hm.json @@ -7,12 +7,8 @@ "CVE-2008-3137" ], "details": "The GSM SMS dissector in Wireshark (formerly Ethereal) 0.99.2 through 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p5w-j26w-7656/GHSA-8p5w-j26w-7656.json b/advisories/unreviewed/2022/05/GHSA-8p5w-j26w-7656/GHSA-8p5w-j26w-7656.json index a543e742753..3866da84db8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p5w-j26w-7656/GHSA-8p5w-j26w-7656.json +++ b/advisories/unreviewed/2022/05/GHSA-8p5w-j26w-7656/GHSA-8p5w-j26w-7656.json @@ -7,12 +7,8 @@ "CVE-2021-28186" ], "details": "The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-2 acquisition) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pg3-5757-xvh2/GHSA-8pg3-5757-xvh2.json b/advisories/unreviewed/2022/05/GHSA-8pg3-5757-xvh2/GHSA-8pg3-5757-xvh2.json index fc1caf70b54..c5aef2e699b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pg3-5757-xvh2/GHSA-8pg3-5757-xvh2.json +++ b/advisories/unreviewed/2022/05/GHSA-8pg3-5757-xvh2/GHSA-8pg3-5757-xvh2.json @@ -7,12 +7,8 @@ "CVE-2008-3118" ], "details": "SQL injection vulnerability in play.php in PHPmotion 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the vid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pvm-7g2w-965w/GHSA-8pvm-7g2w-965w.json b/advisories/unreviewed/2022/05/GHSA-8pvm-7g2w-965w/GHSA-8pvm-7g2w-965w.json index be9d9496efb..a0ea6a46dd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pvm-7g2w-965w/GHSA-8pvm-7g2w-965w.json +++ b/advisories/unreviewed/2022/05/GHSA-8pvm-7g2w-965w/GHSA-8pvm-7g2w-965w.json @@ -7,12 +7,8 @@ "CVE-2008-3291" ], "details": "SQL injection vulnerability in index.php in AproxEngine (aka Aprox CMS Engine) 5.1.0.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qmr-c2vp-p9wp/GHSA-8qmr-c2vp-p9wp.json b/advisories/unreviewed/2022/05/GHSA-8qmr-c2vp-p9wp/GHSA-8qmr-c2vp-p9wp.json index 7fa43743062..07be35d084d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qmr-c2vp-p9wp/GHSA-8qmr-c2vp-p9wp.json +++ b/advisories/unreviewed/2022/05/GHSA-8qmr-c2vp-p9wp/GHSA-8qmr-c2vp-p9wp.json @@ -7,12 +7,8 @@ "CVE-2008-3138" ], "details": "The (1) PANA and (2) KISMET dissectors in Wireshark (formerly Ethereal) 0.99.3 through 1.0.0 allow remote attackers to cause a denial of service (application stop) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qvq-3854-4v5p/GHSA-8qvq-3854-4v5p.json b/advisories/unreviewed/2022/05/GHSA-8qvq-3854-4v5p/GHSA-8qvq-3854-4v5p.json index c36b2a5d561..2f1e90c8b72 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qvq-3854-4v5p/GHSA-8qvq-3854-4v5p.json +++ b/advisories/unreviewed/2022/05/GHSA-8qvq-3854-4v5p/GHSA-8qvq-3854-4v5p.json @@ -7,12 +7,8 @@ "CVE-2008-2976" ], "details": "Multiple directory traversal vulnerabilities in TinX/cms 1.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) language parameter to (a) include_me.php, (b) admin/ajax.php, and (c) admin/objects/catalog.ajaxhandler.php; and the (2) prefix parameter to (d) admin/inc/config.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8r96-j25h-hj4g/GHSA-8r96-j25h-hj4g.json b/advisories/unreviewed/2022/05/GHSA-8r96-j25h-hj4g/GHSA-8r96-j25h-hj4g.json index 6c1c9fc2024..7f85e88af1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r96-j25h-hj4g/GHSA-8r96-j25h-hj4g.json +++ b/advisories/unreviewed/2022/05/GHSA-8r96-j25h-hj4g/GHSA-8r96-j25h-hj4g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8rh4-h2wx-5jpx/GHSA-8rh4-h2wx-5jpx.json b/advisories/unreviewed/2022/05/GHSA-8rh4-h2wx-5jpx/GHSA-8rh4-h2wx-5jpx.json index eb604234b5b..75a154c9d1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rh4-h2wx-5jpx/GHSA-8rh4-h2wx-5jpx.json +++ b/advisories/unreviewed/2022/05/GHSA-8rh4-h2wx-5jpx/GHSA-8rh4-h2wx-5jpx.json @@ -7,12 +7,8 @@ "CVE-2008-2663" ], "details": "Multiple integer overflows in the rb_ary_store function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, and 1.8.7 before 1.8.7-p22 allow context-dependent attackers to execute arbitrary code or cause a denial of service via unknown vectors, a different issue than CVE-2008-2662, CVE-2008-2664, and CVE-2008-2725. NOTE: as of 20080624, there has been inconsistent usage of multiple CVE identifiers related to Ruby. The CVE description should be regarded as authoritative, although it is likely to change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v4g-559x-qqxm/GHSA-8v4g-559x-qqxm.json b/advisories/unreviewed/2022/05/GHSA-8v4g-559x-qqxm/GHSA-8v4g-559x-qqxm.json index 2d0705a4442..b1c4a367237 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v4g-559x-qqxm/GHSA-8v4g-559x-qqxm.json +++ b/advisories/unreviewed/2022/05/GHSA-8v4g-559x-qqxm/GHSA-8v4g-559x-qqxm.json @@ -7,12 +7,8 @@ "CVE-2020-6988" ], "details": "Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, A remote, unauthenticated attacker can send a request from the RSLogix 500 software to the victim’s MicroLogix controller. The controller will then respond to the client with used password values to authenticate the user on the client-side. This method of authentication may allow an attacker to bypass authentication altogether, disclose sensitive information, or leak credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wvc-vg4w-745v/GHSA-8wvc-vg4w-745v.json b/advisories/unreviewed/2022/05/GHSA-8wvc-vg4w-745v/GHSA-8wvc-vg4w-745v.json index 7c3dc0bcd0a..bc029ae326b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wvc-vg4w-745v/GHSA-8wvc-vg4w-745v.json +++ b/advisories/unreviewed/2022/05/GHSA-8wvc-vg4w-745v/GHSA-8wvc-vg4w-745v.json @@ -7,12 +7,8 @@ "CVE-2020-25849" ], "details": "MailGates and MailAudit products contain Command Injection flaw, which can be used to inject and execute system commands from the cgi parameter after attackers obtain the user’s access token.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wxg-8gj7-8j93/GHSA-8wxg-8gj7-8j93.json b/advisories/unreviewed/2022/05/GHSA-8wxg-8gj7-8j93/GHSA-8wxg-8gj7-8j93.json index 5dd41cf0e1f..23462639781 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wxg-8gj7-8j93/GHSA-8wxg-8gj7-8j93.json +++ b/advisories/unreviewed/2022/05/GHSA-8wxg-8gj7-8j93/GHSA-8wxg-8gj7-8j93.json @@ -7,12 +7,8 @@ "CVE-2008-3108" ], "details": "Buffer overflow in Sun Java Runtime Environment (JRE) in JDK and JRE 5.0 before Update 10, SDK and JRE 1.4.x before 1.4.2_18, and SDK and JRE 1.3.x before 1.3.1_23 allows context-dependent attackers to gain privileges via unspecified vectors related to font processing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-924x-9756-qq8p/GHSA-924x-9756-qq8p.json b/advisories/unreviewed/2022/05/GHSA-924x-9756-qq8p/GHSA-924x-9756-qq8p.json index b3f5f68dccd..dc4c2f34f49 100644 --- a/advisories/unreviewed/2022/05/GHSA-924x-9756-qq8p/GHSA-924x-9756-qq8p.json +++ b/advisories/unreviewed/2022/05/GHSA-924x-9756-qq8p/GHSA-924x-9756-qq8p.json @@ -7,12 +7,8 @@ "CVE-2008-2725" ], "details": "Integer overflow in the (1) rb_ary_splice function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, and 1.8.7 before 1.8.7-p22; and (2) the rb_ary_replace function in 1.6.x allows context-dependent attackers to trigger memory corruption via unspecified vectors, aka the \"REALLOC_N\" variant, a different issue than CVE-2008-2662, CVE-2008-2663, and CVE-2008-2664. NOTE: as of 20080624, there has been inconsistent usage of multiple CVE identifiers related to Ruby. The CVE description should be regarded as authoritative, although it is likely to change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -192,9 +188,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-928q-2w4h-73pr/GHSA-928q-2w4h-73pr.json b/advisories/unreviewed/2022/05/GHSA-928q-2w4h-73pr/GHSA-928q-2w4h-73pr.json index 22be91e5b10..2e528626bd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-928q-2w4h-73pr/GHSA-928q-2w4h-73pr.json +++ b/advisories/unreviewed/2022/05/GHSA-928q-2w4h-73pr/GHSA-928q-2w4h-73pr.json @@ -7,12 +7,8 @@ "CVE-2008-2966" ], "details": "Directory traversal vulnerability in viewprofile.php in JaxUltraBB 2.0 and earlier allows remote attackers to read arbitrary local files via a .. (dot dot) in the user parameter. party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-928x-rqfw-p623/GHSA-928x-rqfw-p623.json b/advisories/unreviewed/2022/05/GHSA-928x-rqfw-p623/GHSA-928x-rqfw-p623.json index 71f05e33940..e7c7059290c 100644 --- a/advisories/unreviewed/2022/05/GHSA-928x-rqfw-p623/GHSA-928x-rqfw-p623.json +++ b/advisories/unreviewed/2022/05/GHSA-928x-rqfw-p623/GHSA-928x-rqfw-p623.json @@ -7,12 +7,8 @@ "CVE-2008-3048" ], "details": "Unspecified vulnerability in the PDF Generator 2 (pdf_generator2) extension 0.5.0 and earlier for TYPO3 has unknown impact and attack vectors related to \"Unprotected test functionality.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-92f3-r9r6-rrfr/GHSA-92f3-r9r6-rrfr.json b/advisories/unreviewed/2022/05/GHSA-92f3-r9r6-rrfr/GHSA-92f3-r9r6-rrfr.json index 529bb5effb4..12e5b6405b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-92f3-r9r6-rrfr/GHSA-92f3-r9r6-rrfr.json +++ b/advisories/unreviewed/2022/05/GHSA-92f3-r9r6-rrfr/GHSA-92f3-r9r6-rrfr.json @@ -7,12 +7,8 @@ "CVE-2020-12494" ], "details": "Beckhoff’s TwinCAT RT network driver for Intel 8254x and 8255x is providing EtherCAT functionality. The driver implements real-time features. Except for Ethernet frames sent from real-time functionality, all other Ethernet frames sent through the driver are not padded if their payload is less than the minimum Ethernet frame size. Instead, arbitrary memory content is transmitted within in the padding bytes of the frame. Most likely this memory contains slices from previously transmitted or received frames. By this method, memory content is disclosed, however, an attacker can hardly control which memory content is affected. For example, the disclosure can be provoked with small sized ICMP echo requests sent to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-92gf-gvw9-h948/GHSA-92gf-gvw9-h948.json b/advisories/unreviewed/2022/05/GHSA-92gf-gvw9-h948/GHSA-92gf-gvw9-h948.json index 695366c14bc..61e01dc4cb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-92gf-gvw9-h948/GHSA-92gf-gvw9-h948.json +++ b/advisories/unreviewed/2022/05/GHSA-92gf-gvw9-h948/GHSA-92gf-gvw9-h948.json @@ -7,12 +7,8 @@ "CVE-2008-2970" ], "details": "Multiple session fixation vulnerabilities in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allow remote attackers to hijack web sessions by setting the PHPSESSID parameter to (1) index.php and (2) login.php in homepg/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-93c2-4crx-rhm7/GHSA-93c2-4crx-rhm7.json b/advisories/unreviewed/2022/05/GHSA-93c2-4crx-rhm7/GHSA-93c2-4crx-rhm7.json index 2c7bd88beaf..6b87911d5c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-93c2-4crx-rhm7/GHSA-93c2-4crx-rhm7.json +++ b/advisories/unreviewed/2022/05/GHSA-93c2-4crx-rhm7/GHSA-93c2-4crx-rhm7.json @@ -7,12 +7,8 @@ "CVE-2008-2891" ], "details": "SQL injection vulnerability in index.php in eMuSOFT emuCMS 0.3 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a category action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-93gh-j29f-4h3w/GHSA-93gh-j29f-4h3w.json b/advisories/unreviewed/2022/05/GHSA-93gh-j29f-4h3w/GHSA-93gh-j29f-4h3w.json index 98e9196794d..809cc98da6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-93gh-j29f-4h3w/GHSA-93gh-j29f-4h3w.json +++ b/advisories/unreviewed/2022/05/GHSA-93gh-j29f-4h3w/GHSA-93gh-j29f-4h3w.json @@ -7,12 +7,8 @@ "CVE-2021-28202" ], "details": "The Service configuration-2 function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94fc-cpf4-hqmc/GHSA-94fc-cpf4-hqmc.json b/advisories/unreviewed/2022/05/GHSA-94fc-cpf4-hqmc/GHSA-94fc-cpf4-hqmc.json index f28e3b5aedb..4e339cbfa3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-94fc-cpf4-hqmc/GHSA-94fc-cpf4-hqmc.json +++ b/advisories/unreviewed/2022/05/GHSA-94fc-cpf4-hqmc/GHSA-94fc-cpf4-hqmc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94rc-32qx-6f25/GHSA-94rc-32qx-6f25.json b/advisories/unreviewed/2022/05/GHSA-94rc-32qx-6f25/GHSA-94rc-32qx-6f25.json index 1589860b23e..3661e2f410d 100644 --- a/advisories/unreviewed/2022/05/GHSA-94rc-32qx-6f25/GHSA-94rc-32qx-6f25.json +++ b/advisories/unreviewed/2022/05/GHSA-94rc-32qx-6f25/GHSA-94rc-32qx-6f25.json @@ -7,12 +7,8 @@ "CVE-2008-2803" ], "details": "The mozIJSSubScriptLoader.LoadScript function in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 does not apply XPCNativeWrappers to scripts loaded from (1) file: URIs, (2) data: URIs, or (3) certain non-canonical chrome: URIs, which allows remote attackers to execute arbitrary code via vectors involving third-party add-ons.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -240,9 +236,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94xg-xrqj-c42f/GHSA-94xg-xrqj-c42f.json b/advisories/unreviewed/2022/05/GHSA-94xg-xrqj-c42f/GHSA-94xg-xrqj-c42f.json index 5facb9daf6f..e769bce627d 100644 --- a/advisories/unreviewed/2022/05/GHSA-94xg-xrqj-c42f/GHSA-94xg-xrqj-c42f.json +++ b/advisories/unreviewed/2022/05/GHSA-94xg-xrqj-c42f/GHSA-94xg-xrqj-c42f.json @@ -7,12 +7,8 @@ "CVE-2008-3080" ], "details": "Cross-site request forgery (CSRF) vulnerability in admin.php in myWebland myBloggie 2.1.6 allows remote attackers to perform edit actions as administrators. NOTE: this can be leveraged to execute SQL commands by also exploiting CVE-2007-1899.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-954q-pwww-w7g3/GHSA-954q-pwww-w7g3.json b/advisories/unreviewed/2022/05/GHSA-954q-pwww-w7g3/GHSA-954q-pwww-w7g3.json index 55b803034fd..e4dc35fb2c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-954q-pwww-w7g3/GHSA-954q-pwww-w7g3.json +++ b/advisories/unreviewed/2022/05/GHSA-954q-pwww-w7g3/GHSA-954q-pwww-w7g3.json @@ -7,12 +7,8 @@ "CVE-2021-24248" ], "details": "The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 did not properly check for imported files, forbidding certain extension via a blacklist approach, allowing administrator to import an archive with a .php4 inside for example, leading to RCE", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95g3-39r5-4xw6/GHSA-95g3-39r5-4xw6.json b/advisories/unreviewed/2022/05/GHSA-95g3-39r5-4xw6/GHSA-95g3-39r5-4xw6.json index b20d5adf1a9..924f916db0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-95g3-39r5-4xw6/GHSA-95g3-39r5-4xw6.json +++ b/advisories/unreviewed/2022/05/GHSA-95g3-39r5-4xw6/GHSA-95g3-39r5-4xw6.json @@ -7,12 +7,8 @@ "CVE-2008-3175" ], "details": "Integer underflow in rxRPC.dll in the LGServer service in the server in CA ARCserve Backup for Laptops and Desktops 11.0 through 11.5 allows remote attackers to execute arbitrary code or cause a denial of service via a crafted message that triggers a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-95m3-rmvx-9837/GHSA-95m3-rmvx-9837.json b/advisories/unreviewed/2022/05/GHSA-95m3-rmvx-9837/GHSA-95m3-rmvx-9837.json index da3547b0878..c77b87f2ce4 100644 --- a/advisories/unreviewed/2022/05/GHSA-95m3-rmvx-9837/GHSA-95m3-rmvx-9837.json +++ b/advisories/unreviewed/2022/05/GHSA-95m3-rmvx-9837/GHSA-95m3-rmvx-9837.json @@ -7,12 +7,8 @@ "CVE-2008-3021" ], "details": "Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file with an invalid bits_per_pixel field, aka the \"PICT Filter Parsing Vulnerability,\" a different vulnerability than CVE-2008-3018.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-968p-vgm4-6fq2/GHSA-968p-vgm4-6fq2.json b/advisories/unreviewed/2022/05/GHSA-968p-vgm4-6fq2/GHSA-968p-vgm4-6fq2.json index bc7e3bdc433..e05bafb8741 100644 --- a/advisories/unreviewed/2022/05/GHSA-968p-vgm4-6fq2/GHSA-968p-vgm4-6fq2.json +++ b/advisories/unreviewed/2022/05/GHSA-968p-vgm4-6fq2/GHSA-968p-vgm4-6fq2.json @@ -7,12 +7,8 @@ "CVE-2008-2965" ], "details": "Cross-site scripting (XSS) vulnerability in viewforum.php in JaxUltraBB (JUBB) 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the forum parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96g4-h8rh-2j3p/GHSA-96g4-h8rh-2j3p.json b/advisories/unreviewed/2022/05/GHSA-96g4-h8rh-2j3p/GHSA-96g4-h8rh-2j3p.json index f7fed12ac3a..2230ba09746 100644 --- a/advisories/unreviewed/2022/05/GHSA-96g4-h8rh-2j3p/GHSA-96g4-h8rh-2j3p.json +++ b/advisories/unreviewed/2022/05/GHSA-96g4-h8rh-2j3p/GHSA-96g4-h8rh-2j3p.json @@ -7,12 +7,8 @@ "CVE-2008-3132" ], "details": "SQL injection vulnerability in the beamospetition (com_beamospetition) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pet parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96w6-j24f-q2rg/GHSA-96w6-j24f-q2rg.json b/advisories/unreviewed/2022/05/GHSA-96w6-j24f-q2rg/GHSA-96w6-j24f-q2rg.json index 6230d08ea1f..a8b70f1c71e 100644 --- a/advisories/unreviewed/2022/05/GHSA-96w6-j24f-q2rg/GHSA-96w6-j24f-q2rg.json +++ b/advisories/unreviewed/2022/05/GHSA-96w6-j24f-q2rg/GHSA-96w6-j24f-q2rg.json @@ -7,12 +7,8 @@ "CVE-2008-2651" ], "details": "SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9758-6rv3-3xpp/GHSA-9758-6rv3-3xpp.json b/advisories/unreviewed/2022/05/GHSA-9758-6rv3-3xpp/GHSA-9758-6rv3-3xpp.json index 18d02f6d278..9981298aaff 100644 --- a/advisories/unreviewed/2022/05/GHSA-9758-6rv3-3xpp/GHSA-9758-6rv3-3xpp.json +++ b/advisories/unreviewed/2022/05/GHSA-9758-6rv3-3xpp/GHSA-9758-6rv3-3xpp.json @@ -7,12 +7,8 @@ "CVE-2021-24652" ], "details": "The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10 performs incorrect checks before allowing any logged in user to perform some ajax based requests, allowing any user to modify, delete or add ultp_options values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9797-8q37-6fhx/GHSA-9797-8q37-6fhx.json b/advisories/unreviewed/2022/05/GHSA-9797-8q37-6fhx/GHSA-9797-8q37-6fhx.json index 9910da28676..d5f85f802e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9797-8q37-6fhx/GHSA-9797-8q37-6fhx.json +++ b/advisories/unreviewed/2022/05/GHSA-9797-8q37-6fhx/GHSA-9797-8q37-6fhx.json @@ -7,12 +7,8 @@ "CVE-2020-13100" ], "details": "Arista’s CloudVision eXchange (CVX) server before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attackers to cause a denial of service (crash and restart) in the ControllerOob agent via a malformed control-plane packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-979h-w3gc-xrmq/GHSA-979h-w3gc-xrmq.json b/advisories/unreviewed/2022/05/GHSA-979h-w3gc-xrmq/GHSA-979h-w3gc-xrmq.json index 2ff8606f3c8..2824d081c33 100644 --- a/advisories/unreviewed/2022/05/GHSA-979h-w3gc-xrmq/GHSA-979h-w3gc-xrmq.json +++ b/advisories/unreviewed/2022/05/GHSA-979h-w3gc-xrmq/GHSA-979h-w3gc-xrmq.json @@ -7,12 +7,8 @@ "CVE-2021-22769" ], "details": "A CWE-269: Improper Privilege Management vulnerability exists in EnerlinÕX ComÕX versions prior to V6.8.4 that could cause disclosure of device configuration information to any authenticated user when a specially crafted request is sent to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97qf-jfmw-g24f/GHSA-97qf-jfmw-g24f.json b/advisories/unreviewed/2022/05/GHSA-97qf-jfmw-g24f/GHSA-97qf-jfmw-g24f.json index 393d0e16c78..4950734a717 100644 --- a/advisories/unreviewed/2022/05/GHSA-97qf-jfmw-g24f/GHSA-97qf-jfmw-g24f.json +++ b/advisories/unreviewed/2022/05/GHSA-97qf-jfmw-g24f/GHSA-97qf-jfmw-g24f.json @@ -7,12 +7,8 @@ "CVE-2008-2949" ], "details": "Cross-domain vulnerability in Microsoft Internet Explorer 6 and 7 allows remote attackers to change the location property of a frame via the String data type, and use a frame from a different domain to observe domain-independent events, as demonstrated by observing onkeydown events with caballero-listener. NOTE: according to Microsoft, this is a duplicate of CVE-2008-2947, possibly a different attack vector.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-984m-qj9q-3464/GHSA-984m-qj9q-3464.json b/advisories/unreviewed/2022/05/GHSA-984m-qj9q-3464/GHSA-984m-qj9q-3464.json index 2eb79deef63..67d25aa3011 100644 --- a/advisories/unreviewed/2022/05/GHSA-984m-qj9q-3464/GHSA-984m-qj9q-3464.json +++ b/advisories/unreviewed/2022/05/GHSA-984m-qj9q-3464/GHSA-984m-qj9q-3464.json @@ -7,12 +7,8 @@ "CVE-2008-3111" ], "details": "Multiple buffer overflows in Sun Java Web Start in JDK and JRE 6 before Update 4, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allow context-dependent attackers to gain privileges via an untrusted application, as demonstrated by (a) an application that grants itself privileges to (1) read local files, (2) write to local files, or (3) execute local programs; and as demonstrated by (b) a long value associated with a java-vm-args attribute in a j2se tag in a JNLP file, which triggers a stack-based buffer overflow in the GetVMArgsOption function; aka CR 6557220.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9888-hh6w-x446/GHSA-9888-hh6w-x446.json b/advisories/unreviewed/2022/05/GHSA-9888-hh6w-x446/GHSA-9888-hh6w-x446.json index cf88f62ea90..eceda49f007 100644 --- a/advisories/unreviewed/2022/05/GHSA-9888-hh6w-x446/GHSA-9888-hh6w-x446.json +++ b/advisories/unreviewed/2022/05/GHSA-9888-hh6w-x446/GHSA-9888-hh6w-x446.json @@ -7,12 +7,8 @@ "CVE-2020-12006" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow a low privilege user to overwrite files outside the application’s control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98hm-w38p-p29q/GHSA-98hm-w38p-p29q.json b/advisories/unreviewed/2022/05/GHSA-98hm-w38p-p29q/GHSA-98hm-w38p-p29q.json index 8008647dad9..7a13197e241 100644 --- a/advisories/unreviewed/2022/05/GHSA-98hm-w38p-p29q/GHSA-98hm-w38p-p29q.json +++ b/advisories/unreviewed/2022/05/GHSA-98hm-w38p-p29q/GHSA-98hm-w38p-p29q.json @@ -7,12 +7,8 @@ "CVE-2021-28207" ], "details": "The specific function in ASUS BMC’s firmware Web management page (Get Help file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98pw-fhg5-r374/GHSA-98pw-fhg5-r374.json b/advisories/unreviewed/2022/05/GHSA-98pw-fhg5-r374/GHSA-98pw-fhg5-r374.json index d3c4b57f177..1b6cd903a68 100644 --- a/advisories/unreviewed/2022/05/GHSA-98pw-fhg5-r374/GHSA-98pw-fhg5-r374.json +++ b/advisories/unreviewed/2022/05/GHSA-98pw-fhg5-r374/GHSA-98pw-fhg5-r374.json @@ -7,12 +7,8 @@ "CVE-2008-2895" ], "details": "Directory traversal vulnerability in index.php in AproxEngine 5.1.0.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99f8-xrvq-qw36/GHSA-99f8-xrvq-qw36.json b/advisories/unreviewed/2022/05/GHSA-99f8-xrvq-qw36/GHSA-99f8-xrvq-qw36.json index 09b6a2205cb..7a6424aaed0 100644 --- a/advisories/unreviewed/2022/05/GHSA-99f8-xrvq-qw36/GHSA-99f8-xrvq-qw36.json +++ b/advisories/unreviewed/2022/05/GHSA-99f8-xrvq-qw36/GHSA-99f8-xrvq-qw36.json @@ -7,12 +7,8 @@ "CVE-2008-2889" ], "details": "Directory traversal vulnerability in the FTP client in AceBIT WISE-FTP 4.1.0 and 5.5.8 allows remote FTP servers to create or overwrite arbitrary files via a ..\\ (dot dot backslash) in a response to a LIST command, a related issue to CVE-2002-1345.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99r6-932q-94cq/GHSA-99r6-932q-94cq.json b/advisories/unreviewed/2022/05/GHSA-99r6-932q-94cq/GHSA-99r6-932q-94cq.json index 0d27ede4434..e08da6afcaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-99r6-932q-94cq/GHSA-99r6-932q-94cq.json +++ b/advisories/unreviewed/2022/05/GHSA-99r6-932q-94cq/GHSA-99r6-932q-94cq.json @@ -7,12 +7,8 @@ "CVE-2020-10263" ], "details": "An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.52.4. Attackers can get root shell by accessing the UART interface and then they can (i) read Wi-Fi SSID or password, (ii) read the dialogue text files between users and XIAOMI XIAOAI speaker Pro LX06, (iii) use Text-To-Speech tools pretend XIAOMI speakers' voice achieve social engineering attacks, (iv) eavesdrop on users and record what XIAOMI XIAOAI speaker Pro LX06 hears, (v) modify system files, (vi) use commands to send any IR code through IR emitter on XIAOMI XIAOAI Speaker Pro LX06, (vii) stop voice assistant service, (viii) enable the XIAOMI XIAOAI Speaker Pro’ SSH or TELNET service as a backdoor, (IX) tamper with the router configuration of the router in the local area networks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99w4-7q97-w5hm/GHSA-99w4-7q97-w5hm.json b/advisories/unreviewed/2022/05/GHSA-99w4-7q97-w5hm/GHSA-99w4-7q97-w5hm.json index c5c8c1af94b..8a7eedfd52c 100644 --- a/advisories/unreviewed/2022/05/GHSA-99w4-7q97-w5hm/GHSA-99w4-7q97-w5hm.json +++ b/advisories/unreviewed/2022/05/GHSA-99w4-7q97-w5hm/GHSA-99w4-7q97-w5hm.json @@ -7,12 +7,8 @@ "CVE-2021-33546" ], "details": "Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the name parameter, which may allow an attacker to remotely execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cg2-j36g-w4x9/GHSA-9cg2-j36g-w4x9.json b/advisories/unreviewed/2022/05/GHSA-9cg2-j36g-w4x9/GHSA-9cg2-j36g-w4x9.json index 8d9f8a5aaeb..09e32847694 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cg2-j36g-w4x9/GHSA-9cg2-j36g-w4x9.json +++ b/advisories/unreviewed/2022/05/GHSA-9cg2-j36g-w4x9/GHSA-9cg2-j36g-w4x9.json @@ -7,12 +7,8 @@ "CVE-2008-2689" ], "details": "PHP remote file inclusion vulnerability in pub/clients.php in BrowserCRM 5.002.00 allows remote attackers to execute arbitrary PHP code via a URL in the bcrm_pub_root parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9f36-8pjv-r7jv/GHSA-9f36-8pjv-r7jv.json b/advisories/unreviewed/2022/05/GHSA-9f36-8pjv-r7jv/GHSA-9f36-8pjv-r7jv.json index 31db41ffebe..d6180a306bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-9f36-8pjv-r7jv/GHSA-9f36-8pjv-r7jv.json +++ b/advisories/unreviewed/2022/05/GHSA-9f36-8pjv-r7jv/GHSA-9f36-8pjv-r7jv.json @@ -7,12 +7,8 @@ "CVE-2008-2813" ], "details": "Directory traversal vulnerability in index.php in WallCity-Server Shoutcast Admin Panel 2.0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fhq-mmq4-6fp7/GHSA-9fhq-mmq4-6fp7.json b/advisories/unreviewed/2022/05/GHSA-9fhq-mmq4-6fp7/GHSA-9fhq-mmq4-6fp7.json index 7dfc779e5c1..2eac55d5d81 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fhq-mmq4-6fp7/GHSA-9fhq-mmq4-6fp7.json +++ b/advisories/unreviewed/2022/05/GHSA-9fhq-mmq4-6fp7/GHSA-9fhq-mmq4-6fp7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fhw-hh7f-rjv2/GHSA-9fhw-hh7f-rjv2.json b/advisories/unreviewed/2022/05/GHSA-9fhw-hh7f-rjv2/GHSA-9fhw-hh7f-rjv2.json index f892cf4670e..3fff70d01f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fhw-hh7f-rjv2/GHSA-9fhw-hh7f-rjv2.json +++ b/advisories/unreviewed/2022/05/GHSA-9fhw-hh7f-rjv2/GHSA-9fhw-hh7f-rjv2.json @@ -7,12 +7,8 @@ "CVE-2020-8578" ], "details": "Clustered Data ONTAP versions prior to 9.3P20 are susceptible to a vulnerability which could allow an attacker to discover node names via AutoSupport bundles even when the –remove-private-data parameter is set to true.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9fhx-gfxq-vgv6/GHSA-9fhx-gfxq-vgv6.json b/advisories/unreviewed/2022/05/GHSA-9fhx-gfxq-vgv6/GHSA-9fhx-gfxq-vgv6.json index 815ed2b7975..4283aa66a59 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fhx-gfxq-vgv6/GHSA-9fhx-gfxq-vgv6.json +++ b/advisories/unreviewed/2022/05/GHSA-9fhx-gfxq-vgv6/GHSA-9fhx-gfxq-vgv6.json @@ -7,12 +7,8 @@ "CVE-2020-12847" ], "details": "Pydio Cells 2.0.4 web application offers an administrative console named “Cells Console” that is available to users with an administrator role. This console provides an administrator user with the possibility of changing several settings, including the application’s mailer configuration. It is possible to configure a few engines to be used by the mailer application to send emails. If the user selects the “sendmail” option as the default one, the web application offers to edit the full path where the sendmail binary is hosted. Since there is no restriction in place while editing this value, an attacker authenticated as an administrator user could force the web application into executing any arbitrary binary.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9g8f-cj25-pc9g/GHSA-9g8f-cj25-pc9g.json b/advisories/unreviewed/2022/05/GHSA-9g8f-cj25-pc9g/GHSA-9g8f-cj25-pc9g.json index cfbc3349b16..5c2102a3880 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g8f-cj25-pc9g/GHSA-9g8f-cj25-pc9g.json +++ b/advisories/unreviewed/2022/05/GHSA-9g8f-cj25-pc9g/GHSA-9g8f-cj25-pc9g.json @@ -7,12 +7,8 @@ "CVE-2008-2602" ], "details": "Unspecified vulnerability in the Data Pump component in Oracle Database 10.1.0.5, 10.2.0.4, and 11.1.0.6 has unknown impact and remote authenticated attack vectors related to the IMP_FULL_DATABASE role.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9g9j-vr2v-2964/GHSA-9g9j-vr2v-2964.json b/advisories/unreviewed/2022/05/GHSA-9g9j-vr2v-2964/GHSA-9g9j-vr2v-2964.json index c9ee123ca3b..6c23fb99376 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g9j-vr2v-2964/GHSA-9g9j-vr2v-2964.json +++ b/advisories/unreviewed/2022/05/GHSA-9g9j-vr2v-2964/GHSA-9g9j-vr2v-2964.json @@ -7,12 +7,8 @@ "CVE-2003-0497" ], "details": "Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privileges by modifying cache and executing it via cuxs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9gqh-5752-rjf6/GHSA-9gqh-5752-rjf6.json b/advisories/unreviewed/2022/05/GHSA-9gqh-5752-rjf6/GHSA-9gqh-5752-rjf6.json index 7e6206e4b05..3b6f86f88ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gqh-5752-rjf6/GHSA-9gqh-5752-rjf6.json +++ b/advisories/unreviewed/2022/05/GHSA-9gqh-5752-rjf6/GHSA-9gqh-5752-rjf6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h86-cwj7-w2g4/GHSA-9h86-cwj7-w2g4.json b/advisories/unreviewed/2022/05/GHSA-9h86-cwj7-w2g4/GHSA-9h86-cwj7-w2g4.json index 51d1978a6a1..9152d5d22ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h86-cwj7-w2g4/GHSA-9h86-cwj7-w2g4.json +++ b/advisories/unreviewed/2022/05/GHSA-9h86-cwj7-w2g4/GHSA-9h86-cwj7-w2g4.json @@ -7,12 +7,8 @@ "CVE-2008-3027" ], "details": "SQL injection vulnerability in get_article.php in VanGogh Web CMS 0.9 allows remote attackers to execute arbitrary SQL commands via the article_ID parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h9r-mqj8-gh3f/GHSA-9h9r-mqj8-gh3f.json b/advisories/unreviewed/2022/05/GHSA-9h9r-mqj8-gh3f/GHSA-9h9r-mqj8-gh3f.json index 795dc65821f..c0f960e0b9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h9r-mqj8-gh3f/GHSA-9h9r-mqj8-gh3f.json +++ b/advisories/unreviewed/2022/05/GHSA-9h9r-mqj8-gh3f/GHSA-9h9r-mqj8-gh3f.json @@ -7,12 +7,8 @@ "CVE-2020-25639" ], "details": "A NULL pointer dereference flaw was found in the Linux kernel’s GPU Nouveau driver functionality in versions prior to 5.12-rc1 in the way the user calls ioctl DRM_IOCTL_NOUVEAU_CHANNEL_ALLOC. This flaw allows a local user to crash the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9j66-49wf-hg9g/GHSA-9j66-49wf-hg9g.json b/advisories/unreviewed/2022/05/GHSA-9j66-49wf-hg9g/GHSA-9j66-49wf-hg9g.json index d733132c9d5..b90c5502bb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j66-49wf-hg9g/GHSA-9j66-49wf-hg9g.json +++ b/advisories/unreviewed/2022/05/GHSA-9j66-49wf-hg9g/GHSA-9j66-49wf-hg9g.json @@ -7,12 +7,8 @@ "CVE-2008-2986" ], "details": "Multiple PHP remote file inclusion vulnerabilities in phpDMCA 1.0.0 allow remote attackers to execute arbitrary PHP code via a URL in the ourlinux_root_path parameter to (1) adodb-errorpear.inc.php and (2) adodb-pear.inc.php in adodb/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jgp-35qp-4rc3/GHSA-9jgp-35qp-4rc3.json b/advisories/unreviewed/2022/05/GHSA-9jgp-35qp-4rc3/GHSA-9jgp-35qp-4rc3.json index 523f7156463..53d0e35f0df 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jgp-35qp-4rc3/GHSA-9jgp-35qp-4rc3.json +++ b/advisories/unreviewed/2022/05/GHSA-9jgp-35qp-4rc3/GHSA-9jgp-35qp-4rc3.json @@ -7,12 +7,8 @@ "CVE-2008-2852" ], "details": "Cross-site scripting (XSS) vulnerability in CGIWrap before 4.1, when an Internet Explorer based browser is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to failure to set the charset in error messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jjg-55mj-jf5f/GHSA-9jjg-55mj-jf5f.json b/advisories/unreviewed/2022/05/GHSA-9jjg-55mj-jf5f/GHSA-9jjg-55mj-jf5f.json index 22b3c264a46..5bd17bade47 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jjg-55mj-jf5f/GHSA-9jjg-55mj-jf5f.json +++ b/advisories/unreviewed/2022/05/GHSA-9jjg-55mj-jf5f/GHSA-9jjg-55mj-jf5f.json @@ -7,12 +7,8 @@ "CVE-2008-3029" ], "details": "Cross-site scripting (XSS) vulnerability in the WEC Discussion Forum (wec_discussion) extension 1.6.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jpc-mpc7-cwp7/GHSA-9jpc-mpc7-cwp7.json b/advisories/unreviewed/2022/05/GHSA-9jpc-mpc7-cwp7/GHSA-9jpc-mpc7-cwp7.json index 9f6ef221b66..8a851ccba49 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jpc-mpc7-cwp7/GHSA-9jpc-mpc7-cwp7.json +++ b/advisories/unreviewed/2022/05/GHSA-9jpc-mpc7-cwp7/GHSA-9jpc-mpc7-cwp7.json @@ -7,12 +7,8 @@ "CVE-2020-7489" ], "details": "A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability exists on EcoStruxure Machine Expert – Basic or SoMachine Basic programming software (versions in security notification). The result of this vulnerability, DLL substitution, could allow the transference of malicious code to the controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9m22-mqrh-x6c3/GHSA-9m22-mqrh-x6c3.json b/advisories/unreviewed/2022/05/GHSA-9m22-mqrh-x6c3/GHSA-9m22-mqrh-x6c3.json index a1a86ba8389..48f9d23d6d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-9m22-mqrh-x6c3/GHSA-9m22-mqrh-x6c3.json +++ b/advisories/unreviewed/2022/05/GHSA-9m22-mqrh-x6c3/GHSA-9m22-mqrh-x6c3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mfc-vm32-v9f4/GHSA-9mfc-vm32-v9f4.json b/advisories/unreviewed/2022/05/GHSA-9mfc-vm32-v9f4/GHSA-9mfc-vm32-v9f4.json index 2859a5560a2..c6c8ab85102 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mfc-vm32-v9f4/GHSA-9mfc-vm32-v9f4.json +++ b/advisories/unreviewed/2022/05/GHSA-9mfc-vm32-v9f4/GHSA-9mfc-vm32-v9f4.json @@ -7,12 +7,8 @@ "CVE-2019-5167" ], "details": "An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 version 03.02.02(14). At 0x1e3f0 the extracted dns value from the xml file is used as an argument to /etc/config-tools/edit_dns_server %s dns-server-nr=%d dns-server-name=<contents of dns node> using sprintf(). This command is later executed via a call to system(). This is done in a loop and there is no limit to how many dns entries will be parsed from the xml file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mgc-v8jw-6hx5/GHSA-9mgc-v8jw-6hx5.json b/advisories/unreviewed/2022/05/GHSA-9mgc-v8jw-6hx5/GHSA-9mgc-v8jw-6hx5.json index 403cac50941..4e2b80db6ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mgc-v8jw-6hx5/GHSA-9mgc-v8jw-6hx5.json +++ b/advisories/unreviewed/2022/05/GHSA-9mgc-v8jw-6hx5/GHSA-9mgc-v8jw-6hx5.json @@ -7,12 +7,8 @@ "CVE-2008-2815" ], "details": "SQL injection vulnerability in shopping/index.php in MyMarket 1.72 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mvg-27jr-h6m8/GHSA-9mvg-27jr-h6m8.json b/advisories/unreviewed/2022/05/GHSA-9mvg-27jr-h6m8/GHSA-9mvg-27jr-h6m8.json index 2e4fb5f03e7..1c277b2befa 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mvg-27jr-h6m8/GHSA-9mvg-27jr-h6m8.json +++ b/advisories/unreviewed/2022/05/GHSA-9mvg-27jr-h6m8/GHSA-9mvg-27jr-h6m8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mx8-9vhh-5qr7/GHSA-9mx8-9vhh-5qr7.json b/advisories/unreviewed/2022/05/GHSA-9mx8-9vhh-5qr7/GHSA-9mx8-9vhh-5qr7.json index b2289a89e3e..ed45c2bab88 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mx8-9vhh-5qr7/GHSA-9mx8-9vhh-5qr7.json +++ b/advisories/unreviewed/2022/05/GHSA-9mx8-9vhh-5qr7/GHSA-9mx8-9vhh-5qr7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9phq-v8w7-m26h/GHSA-9phq-v8w7-m26h.json b/advisories/unreviewed/2022/05/GHSA-9phq-v8w7-m26h/GHSA-9phq-v8w7-m26h.json index 6a60603e3e7..3b7e5811ad3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9phq-v8w7-m26h/GHSA-9phq-v8w7-m26h.json +++ b/advisories/unreviewed/2022/05/GHSA-9phq-v8w7-m26h/GHSA-9phq-v8w7-m26h.json @@ -7,12 +7,8 @@ "CVE-2021-24259" ], "details": "The “Elementor Addon Elementsâ€? WordPress Plugin before 1.11.2 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pr2-6qr7-7436/GHSA-9pr2-6qr7-7436.json b/advisories/unreviewed/2022/05/GHSA-9pr2-6qr7-7436/GHSA-9pr2-6qr7-7436.json index f6ad3de5888..1d3b0c84a96 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pr2-6qr7-7436/GHSA-9pr2-6qr7-7436.json +++ b/advisories/unreviewed/2022/05/GHSA-9pr2-6qr7-7436/GHSA-9pr2-6qr7-7436.json @@ -7,12 +7,8 @@ "CVE-2021-24230" ], "details": "The Jetpack Scan team identified a Cross-Site Request Forgery vulnerability in the Patreon WordPress plugin before 1.7.0, allowing attackers to make a logged in user overwrite or create arbitrary user metadata on the victim’s account once visited. If exploited, this bug can be used to overwrite the “wp_capabilities” meta, which contains the affected user account’s roles and privileges. Doing this would essentially lock them out of the site, blocking them from accessing paid content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pr5-4vgc-9h8r/GHSA-9pr5-4vgc-9h8r.json b/advisories/unreviewed/2022/05/GHSA-9pr5-4vgc-9h8r/GHSA-9pr5-4vgc-9h8r.json index bdd8edd108d..a657dbe3009 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pr5-4vgc-9h8r/GHSA-9pr5-4vgc-9h8r.json +++ b/advisories/unreviewed/2022/05/GHSA-9pr5-4vgc-9h8r/GHSA-9pr5-4vgc-9h8r.json @@ -7,12 +7,8 @@ "CVE-2008-2851" ], "details": "Multiple buffer overflows in OFF System before 0.19.14 allow remote attackers to have an unknown impact via unspecified vectors related to \"parsing of http headers.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9q33-9x86-9cj9/GHSA-9q33-9x86-9cj9.json b/advisories/unreviewed/2022/05/GHSA-9q33-9x86-9cj9/GHSA-9q33-9x86-9cj9.json index c8f4eb566c5..04865da8cab 100644 --- a/advisories/unreviewed/2022/05/GHSA-9q33-9x86-9cj9/GHSA-9q33-9x86-9cj9.json +++ b/advisories/unreviewed/2022/05/GHSA-9q33-9x86-9cj9/GHSA-9q33-9x86-9cj9.json @@ -7,12 +7,8 @@ "CVE-2021-24529" ], "details": "The Grid Gallery – Photo Image Grid Gallery WordPress plugin before 1.2.5 does not properly sanitize the title field for image galleries when adding them via the admin dashboard, resulting in an authenticated Stored Cross-Site Scripting vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9qcj-gpqg-c7cw/GHSA-9qcj-gpqg-c7cw.json b/advisories/unreviewed/2022/05/GHSA-9qcj-gpqg-c7cw/GHSA-9qcj-gpqg-c7cw.json index a269142c1c2..38129043242 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qcj-gpqg-c7cw/GHSA-9qcj-gpqg-c7cw.json +++ b/advisories/unreviewed/2022/05/GHSA-9qcj-gpqg-c7cw/GHSA-9qcj-gpqg-c7cw.json @@ -7,12 +7,8 @@ "CVE-2008-2958" ], "details": "Race condition in (1) checkinstall 1.6.1 and (2) installwatch allows local users to overwrite arbitrary files and have other impacts via symlink and possibly other attacks on temporary working directories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9r49-qjrv-qpw8/GHSA-9r49-qjrv-qpw8.json b/advisories/unreviewed/2022/05/GHSA-9r49-qjrv-qpw8/GHSA-9r49-qjrv-qpw8.json index 59d7a11da80..ea88c121689 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r49-qjrv-qpw8/GHSA-9r49-qjrv-qpw8.json +++ b/advisories/unreviewed/2022/05/GHSA-9r49-qjrv-qpw8/GHSA-9r49-qjrv-qpw8.json @@ -7,12 +7,8 @@ "CVE-2019-14626" ], "details": "Improper access control in PCIe function for the Intel® FPGA Programmable Acceleration Card N3000, all versions, may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9r75-h3r2-c7wf/GHSA-9r75-h3r2-c7wf.json b/advisories/unreviewed/2022/05/GHSA-9r75-h3r2-c7wf/GHSA-9r75-h3r2-c7wf.json index 202081eb92f..93c58524bfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r75-h3r2-c7wf/GHSA-9r75-h3r2-c7wf.json +++ b/advisories/unreviewed/2022/05/GHSA-9r75-h3r2-c7wf/GHSA-9r75-h3r2-c7wf.json @@ -7,12 +7,8 @@ "CVE-2020-27260" ], "details": "Innokas Yhtymä Oy Vital Signs Monitor VC150 prior to Version 1.7.15 HL7 v2.x injection vulnerabilities exist in the affected products that allow physically proximate attackers with a connected barcode reader to inject HL7 v2.x segments into specific HL7 v2.x messages via multiple expected parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9r8v-84h2-969g/GHSA-9r8v-84h2-969g.json b/advisories/unreviewed/2022/05/GHSA-9r8v-84h2-969g/GHSA-9r8v-84h2-969g.json index d4bbc5a8b95..7c1636bd39e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r8v-84h2-969g/GHSA-9r8v-84h2-969g.json +++ b/advisories/unreviewed/2022/05/GHSA-9r8v-84h2-969g/GHSA-9r8v-84h2-969g.json @@ -7,12 +7,8 @@ "CVE-2008-2791" ], "details": "SQL injection vulnerability in product.detail.php in Kalptaru Infotech Comparison Engine Power Script 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rhj-8q3f-7x84/GHSA-9rhj-8q3f-7x84.json b/advisories/unreviewed/2022/05/GHSA-9rhj-8q3f-7x84/GHSA-9rhj-8q3f-7x84.json index 5287890508a..7ecf150a61c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rhj-8q3f-7x84/GHSA-9rhj-8q3f-7x84.json +++ b/advisories/unreviewed/2022/05/GHSA-9rhj-8q3f-7x84/GHSA-9rhj-8q3f-7x84.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rrh-v242-4w5j/GHSA-9rrh-v242-4w5j.json b/advisories/unreviewed/2022/05/GHSA-9rrh-v242-4w5j/GHSA-9rrh-v242-4w5j.json index 37cf3018b29..eaca63dff92 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rrh-v242-4w5j/GHSA-9rrh-v242-4w5j.json +++ b/advisories/unreviewed/2022/05/GHSA-9rrh-v242-4w5j/GHSA-9rrh-v242-4w5j.json @@ -7,12 +7,8 @@ "CVE-2008-2981" ], "details": "PHP remote file inclusion vulnerability in admin/templates/template_thumbnail.php in HomePH Design 2.10 RC2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the thumb_template parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rxg-g79x-598m/GHSA-9rxg-g79x-598m.json b/advisories/unreviewed/2022/05/GHSA-9rxg-g79x-598m/GHSA-9rxg-g79x-598m.json index 2f9858472ed..67f3bbbdb6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rxg-g79x-598m/GHSA-9rxg-g79x-598m.json +++ b/advisories/unreviewed/2022/05/GHSA-9rxg-g79x-598m/GHSA-9rxg-g79x-598m.json @@ -7,12 +7,8 @@ "CVE-2021-24524" ], "details": "The GiveWP – Donation Plugin and Fundraising Platform WordPress plugin before 2.12.0 did not escape the Donation Level setting of its Donation Forms, allowing high privilege users to use Cross-Site Scripting payloads in them.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v89-92j4-g2v6/GHSA-9v89-92j4-g2v6.json b/advisories/unreviewed/2022/05/GHSA-9v89-92j4-g2v6/GHSA-9v89-92j4-g2v6.json index 2d7c61f0612..f0a91be687e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v89-92j4-g2v6/GHSA-9v89-92j4-g2v6.json +++ b/advisories/unreviewed/2022/05/GHSA-9v89-92j4-g2v6/GHSA-9v89-92j4-g2v6.json @@ -7,12 +7,8 @@ "CVE-2008-3287" ], "details": "retroclient.exe in EMC Dantz Retrospect Backup Client 7.5.116 allows remote attackers to cause a denial of service (daemon crash) via malformed packets to TCP port 497, which trigger a NULL pointer dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9w32-w4h7-5mwf/GHSA-9w32-w4h7-5mwf.json b/advisories/unreviewed/2022/05/GHSA-9w32-w4h7-5mwf/GHSA-9w32-w4h7-5mwf.json index 3f1e95aefbf..956e89707ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w32-w4h7-5mwf/GHSA-9w32-w4h7-5mwf.json +++ b/advisories/unreviewed/2022/05/GHSA-9w32-w4h7-5mwf/GHSA-9w32-w4h7-5mwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9w75-p6x3-6qwp/GHSA-9w75-p6x3-6qwp.json b/advisories/unreviewed/2022/05/GHSA-9w75-p6x3-6qwp/GHSA-9w75-p6x3-6qwp.json index 0bbcec8a740..27ba19e3a26 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w75-p6x3-6qwp/GHSA-9w75-p6x3-6qwp.json +++ b/advisories/unreviewed/2022/05/GHSA-9w75-p6x3-6qwp/GHSA-9w75-p6x3-6qwp.json @@ -7,12 +7,8 @@ "CVE-2021-30171" ], "details": "Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can inject malicious JavaScript and carry out stored XSS (Stored Cross-site scripting) attacks, additionally access and manipulate customer’s information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9wg7-hr3f-68p7/GHSA-9wg7-hr3f-68p7.json b/advisories/unreviewed/2022/05/GHSA-9wg7-hr3f-68p7/GHSA-9wg7-hr3f-68p7.json index 1d606193537..dabf732fe44 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wg7-hr3f-68p7/GHSA-9wg7-hr3f-68p7.json +++ b/advisories/unreviewed/2022/05/GHSA-9wg7-hr3f-68p7/GHSA-9wg7-hr3f-68p7.json @@ -7,12 +7,8 @@ "CVE-2008-3133" ], "details": "SQL injection vulnerability in admin/index.php in BareNuked CMS 1.1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the password parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9wm7-g493-2j99/GHSA-9wm7-g493-2j99.json b/advisories/unreviewed/2022/05/GHSA-9wm7-g493-2j99/GHSA-9wm7-g493-2j99.json index 68f09934027..af8baa816e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wm7-g493-2j99/GHSA-9wm7-g493-2j99.json +++ b/advisories/unreviewed/2022/05/GHSA-9wm7-g493-2j99/GHSA-9wm7-g493-2j99.json @@ -7,12 +7,8 @@ "CVE-2008-2933" ], "details": "Mozilla Firefox before 2.0.0.16, and 3.x before 3.0.1, interprets '|' (pipe) characters in a command-line URI as requests to open multiple tabs, which allows remote attackers to access chrome:i URIs, or read arbitrary local files via manipulations involving a series of URIs that is not entirely handled by a vector application, as exploited in conjunction with CVE-2008-2540. NOTE: this issue exists because of an insufficient fix for CVE-2005-2267.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9x4r-8c43-c5p6/GHSA-9x4r-8c43-c5p6.json b/advisories/unreviewed/2022/05/GHSA-9x4r-8c43-c5p6/GHSA-9x4r-8c43-c5p6.json index 2782cbbac8b..7c26ca4e01d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x4r-8c43-c5p6/GHSA-9x4r-8c43-c5p6.json +++ b/advisories/unreviewed/2022/05/GHSA-9x4r-8c43-c5p6/GHSA-9x4r-8c43-c5p6.json @@ -7,12 +7,8 @@ "CVE-2008-2721" ], "details": "Unspecified vulnerability in the album-select module in Menalto Gallery before 2.2.5 allows remote attackers to obtain titles of hidden albums by attempting to add a new album to a hidden album.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xp9-7jfc-g93g/GHSA-9xp9-7jfc-g93g.json b/advisories/unreviewed/2022/05/GHSA-9xp9-7jfc-g93g/GHSA-9xp9-7jfc-g93g.json index a18dbe353fd..34a983eb972 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xp9-7jfc-g93g/GHSA-9xp9-7jfc-g93g.json +++ b/advisories/unreviewed/2022/05/GHSA-9xp9-7jfc-g93g/GHSA-9xp9-7jfc-g93g.json @@ -7,12 +7,8 @@ "CVE-2008-3051" ], "details": "SQL injection vulnerability in the Pinboard extension 0.0.6 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c23j-93x4-f392/GHSA-c23j-93x4-f392.json b/advisories/unreviewed/2022/05/GHSA-c23j-93x4-f392/GHSA-c23j-93x4-f392.json index 99fa320477d..be6210c2b65 100644 --- a/advisories/unreviewed/2022/05/GHSA-c23j-93x4-f392/GHSA-c23j-93x4-f392.json +++ b/advisories/unreviewed/2022/05/GHSA-c23j-93x4-f392/GHSA-c23j-93x4-f392.json @@ -7,12 +7,8 @@ "CVE-2008-2874" ], "details": "SQL injection vulnerability in index.php in Softbiz Jokes & Funny Pics Script allows remote attackers to execute arbitrary SQL commands via the sbjoke_id parameter, a different vector than CVE-2008-1050.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c26m-x7g7-gpjq/GHSA-c26m-x7g7-gpjq.json b/advisories/unreviewed/2022/05/GHSA-c26m-x7g7-gpjq/GHSA-c26m-x7g7-gpjq.json index 9294574f86c..b4d6d7537a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c26m-x7g7-gpjq/GHSA-c26m-x7g7-gpjq.json +++ b/advisories/unreviewed/2022/05/GHSA-c26m-x7g7-gpjq/GHSA-c26m-x7g7-gpjq.json @@ -7,12 +7,8 @@ "CVE-2008-3039" ], "details": "SQL injection vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c32q-m2jw-8jp8/GHSA-c32q-m2jw-8jp8.json b/advisories/unreviewed/2022/05/GHSA-c32q-m2jw-8jp8/GHSA-c32q-m2jw-8jp8.json index 5cb635a15e4..d8edce69512 100644 --- a/advisories/unreviewed/2022/05/GHSA-c32q-m2jw-8jp8/GHSA-c32q-m2jw-8jp8.json +++ b/advisories/unreviewed/2022/05/GHSA-c32q-m2jw-8jp8/GHSA-c32q-m2jw-8jp8.json @@ -7,12 +7,8 @@ "CVE-2008-2836" ], "details": "PHP remote file inclusion vulnerability in send_reminders.php in WebCalendar 1.0.4 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter and a 0 value for the noSet parameter, a different vector than CVE-2007-1483.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c45j-w8w5-mjxv/GHSA-c45j-w8w5-mjxv.json b/advisories/unreviewed/2022/05/GHSA-c45j-w8w5-mjxv/GHSA-c45j-w8w5-mjxv.json index ba242faf243..cd7d5b6ff1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c45j-w8w5-mjxv/GHSA-c45j-w8w5-mjxv.json +++ b/advisories/unreviewed/2022/05/GHSA-c45j-w8w5-mjxv/GHSA-c45j-w8w5-mjxv.json @@ -7,12 +7,8 @@ "CVE-2008-2619" ], "details": "Unspecified vulnerability in the Oracle Reports Developer component in Oracle Application Server 1.0.2.2, 9.0.4.3, and 10.1.2.2, and E-Business Suite 11.5.10.2, allows remote authenticated users to affect availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c4gw-5qv5-6333/GHSA-c4gw-5qv5-6333.json b/advisories/unreviewed/2022/05/GHSA-c4gw-5qv5-6333/GHSA-c4gw-5qv5-6333.json index 7b95e796809..8c7c719f846 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4gw-5qv5-6333/GHSA-c4gw-5qv5-6333.json +++ b/advisories/unreviewed/2022/05/GHSA-c4gw-5qv5-6333/GHSA-c4gw-5qv5-6333.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4h6-p7gp-39x2/GHSA-c4h6-p7gp-39x2.json b/advisories/unreviewed/2022/05/GHSA-c4h6-p7gp-39x2/GHSA-c4h6-p7gp-39x2.json index 1200fcc97eb..eb9ac4fdb6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4h6-p7gp-39x2/GHSA-c4h6-p7gp-39x2.json +++ b/advisories/unreviewed/2022/05/GHSA-c4h6-p7gp-39x2/GHSA-c4h6-p7gp-39x2.json @@ -7,12 +7,8 @@ "CVE-2008-2664" ], "details": "The rb_str_format function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.8.7 before 1.8.7-p22, and 1.9.0 before 1.9.0-2 allows context-dependent attackers to trigger memory corruption via unspecified vectors related to alloca, a different issue than CVE-2008-2662, CVE-2008-2663, and CVE-2008-2725. NOTE: as of 20080624, there has been inconsistent usage of multiple CVE identifiers related to Ruby. The CVE description should be regarded as authoritative, although it is likely to change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -180,9 +176,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c4qg-278v-p8ch/GHSA-c4qg-278v-p8ch.json b/advisories/unreviewed/2022/05/GHSA-c4qg-278v-p8ch/GHSA-c4qg-278v-p8ch.json index 76675d0b927..5dac47c3fe9 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4qg-278v-p8ch/GHSA-c4qg-278v-p8ch.json +++ b/advisories/unreviewed/2022/05/GHSA-c4qg-278v-p8ch/GHSA-c4qg-278v-p8ch.json @@ -7,12 +7,8 @@ "CVE-2008-3286" ], "details": "SWAT 4 1.1 and earlier allows remote attackers to cause a denial of service (daemon crash) via a (1) VERIFYCONTENT or (2) GAMECONFIG command sent to the server before user session initialization, which triggers a NULL pointer dereference; or (3) a GAMESPYRESPONSE command followed by a long RS string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4qh-g652-rc2g/GHSA-c4qh-g652-rc2g.json b/advisories/unreviewed/2022/05/GHSA-c4qh-g652-rc2g/GHSA-c4qh-g652-rc2g.json index efbeb9969b3..fd0f4f418e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4qh-g652-rc2g/GHSA-c4qh-g652-rc2g.json +++ b/advisories/unreviewed/2022/05/GHSA-c4qh-g652-rc2g/GHSA-c4qh-g652-rc2g.json @@ -7,12 +7,8 @@ "CVE-2008-2768" ], "details": "Cross-site scripting (XSS) vulnerability in admin/search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to inject arbitrary web script or HTML via unspecified vectors (\"all fields\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c53x-4hw4-h68r/GHSA-c53x-4hw4-h68r.json b/advisories/unreviewed/2022/05/GHSA-c53x-4hw4-h68r/GHSA-c53x-4hw4-h68r.json index 5b7d7177a6f..fead830d9ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-c53x-4hw4-h68r/GHSA-c53x-4hw4-h68r.json +++ b/advisories/unreviewed/2022/05/GHSA-c53x-4hw4-h68r/GHSA-c53x-4hw4-h68r.json @@ -7,12 +7,8 @@ "CVE-2008-2677" ], "details": "Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5hr-c549-fjcx/GHSA-c5hr-c549-fjcx.json b/advisories/unreviewed/2022/05/GHSA-c5hr-c549-fjcx/GHSA-c5hr-c549-fjcx.json index 44016a8a48d..0209ec30a61 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5hr-c549-fjcx/GHSA-c5hr-c549-fjcx.json +++ b/advisories/unreviewed/2022/05/GHSA-c5hr-c549-fjcx/GHSA-c5hr-c549-fjcx.json @@ -7,12 +7,8 @@ "CVE-2020-15590" ], "details": "A vulnerability in the Private Internet Access (PIA) VPN Client for Linux 1.5 through 2.3+ allows remote attackers to bypass an intended VPN kill switch mechanism and read sensitive information via intercepting network traffic. Since 1.5, PIA has supported a “split tunnel” OpenVPN bypass option. The PIA killswitch & associated iptables firewall is designed to protect you while using the Internet. When the kill switch is configured to block all inbound and outbound network traffic, privileged applications can continue sending & receiving network traffic if net.ipv4.ip_forward has been enabled in the system kernel parameters. For example, a Docker container running on a host with the VPN turned off, and the kill switch turned on, can continue using the internet, leaking the host IP (CWE 200). In PIA 2.4.0+, policy-based routing is enabled by default and is used to direct all forwarded packets to the VPN interface automatically.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5jv-q5g8-55g4/GHSA-c5jv-q5g8-55g4.json b/advisories/unreviewed/2022/05/GHSA-c5jv-q5g8-55g4/GHSA-c5jv-q5g8-55g4.json index 802ffbe13c8..5abb10830df 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5jv-q5g8-55g4/GHSA-c5jv-q5g8-55g4.json +++ b/advisories/unreviewed/2022/05/GHSA-c5jv-q5g8-55g4/GHSA-c5jv-q5g8-55g4.json @@ -7,12 +7,8 @@ "CVE-2008-2948" ], "details": "Cross-domain vulnerability in Microsoft Internet Explorer 7 and 8 allows remote attackers to change the location property of a frame via the Object data type, and use a frame from a different domain to observe domain-independent events, as demonstrated by observing onkeydown events with caballero-listener. NOTE: according to Microsoft, this is a duplicate of CVE-2008-2947, possibly a different attack vector.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c7hp-m6ff-5q28/GHSA-c7hp-m6ff-5q28.json b/advisories/unreviewed/2022/05/GHSA-c7hp-m6ff-5q28/GHSA-c7hp-m6ff-5q28.json index 1398bf278f7..f1079134949 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7hp-m6ff-5q28/GHSA-c7hp-m6ff-5q28.json +++ b/advisories/unreviewed/2022/05/GHSA-c7hp-m6ff-5q28/GHSA-c7hp-m6ff-5q28.json @@ -7,12 +7,8 @@ "CVE-2021-24424" ], "details": "The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data parameter when creating a snapshot via the admin dashboard, leading to an authenticated Stored Cross-Site Scripting issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c7x5-cxpv-wm4m/GHSA-c7x5-cxpv-wm4m.json b/advisories/unreviewed/2022/05/GHSA-c7x5-cxpv-wm4m/GHSA-c7x5-cxpv-wm4m.json index a3e12f8fcb1..f0f1a93cff5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7x5-cxpv-wm4m/GHSA-c7x5-cxpv-wm4m.json +++ b/advisories/unreviewed/2022/05/GHSA-c7x5-cxpv-wm4m/GHSA-c7x5-cxpv-wm4m.json @@ -7,12 +7,8 @@ "CVE-2020-12031" ], "details": "In all versions of FactoryTalk View SE, after bypassing memory corruption mechanisms found in the operating system, a local, authenticated attacker may corrupt the associated memory space allowing for arbitrary code execution. Rockwell Automation recommends applying patch 1126290. Before installing this patch, the patch rollup dated 06 Apr 2020 or later MUST be applied. 1066644 – Patch Roll-up for CPR9 SRx.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c88g-ppxf-5fv6/GHSA-c88g-ppxf-5fv6.json b/advisories/unreviewed/2022/05/GHSA-c88g-ppxf-5fv6/GHSA-c88g-ppxf-5fv6.json index 87c36ea79d5..14e7d45e745 100644 --- a/advisories/unreviewed/2022/05/GHSA-c88g-ppxf-5fv6/GHSA-c88g-ppxf-5fv6.json +++ b/advisories/unreviewed/2022/05/GHSA-c88g-ppxf-5fv6/GHSA-c88g-ppxf-5fv6.json @@ -7,12 +7,8 @@ "CVE-2008-3093" ], "details": "Unrestricted file upload vulnerability in ImperialBB 2.3.5 and earlier allows remote authenticated users to upload and execute arbitrary PHP code by placing a .php filename in the Upload_Avatar parameter and sending the image/gif content type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c88w-8m4x-2r4w/GHSA-c88w-8m4x-2r4w.json b/advisories/unreviewed/2022/05/GHSA-c88w-8m4x-2r4w/GHSA-c88w-8m4x-2r4w.json index 7536e709b41..3f7fab92328 100644 --- a/advisories/unreviewed/2022/05/GHSA-c88w-8m4x-2r4w/GHSA-c88w-8m4x-2r4w.json +++ b/advisories/unreviewed/2022/05/GHSA-c88w-8m4x-2r4w/GHSA-c88w-8m4x-2r4w.json @@ -7,12 +7,8 @@ "CVE-2008-2918" ], "details": "SQL injection vulnerability in details.php in Application Dynamics Cartweaver 3.0 allows remote attackers to execute arbitrary SQL commands via the prodId parameter, possibly a related issue to CVE-2006-2046.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8qv-vc58-v9rv/GHSA-c8qv-vc58-v9rv.json b/advisories/unreviewed/2022/05/GHSA-c8qv-vc58-v9rv/GHSA-c8qv-vc58-v9rv.json index f18cc478899..e45bb8ec002 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8qv-vc58-v9rv/GHSA-c8qv-vc58-v9rv.json +++ b/advisories/unreviewed/2022/05/GHSA-c8qv-vc58-v9rv/GHSA-c8qv-vc58-v9rv.json @@ -7,12 +7,8 @@ "CVE-2008-2899" ], "details": "Unspecified vulnerability in includes/classes/page.php in j00lean-CMS 1.03 has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9g5-h8rc-q6m5/GHSA-c9g5-h8rc-q6m5.json b/advisories/unreviewed/2022/05/GHSA-c9g5-h8rc-q6m5/GHSA-c9g5-h8rc-q6m5.json index 14b92669728..c942e1d477c 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9g5-h8rc-q6m5/GHSA-c9g5-h8rc-q6m5.json +++ b/advisories/unreviewed/2022/05/GHSA-c9g5-h8rc-q6m5/GHSA-c9g5-h8rc-q6m5.json @@ -7,12 +7,8 @@ "CVE-2020-24360" ], "details": "An issue with ARP packets in Arista’s EOS affecting the 7800R3, 7500R3, and 7280R3 series of products may result in issues that cause a kernel crash, followed by a device reload. The affected Arista EOS versions are: 4.24.2.4F and below releases in the 4.24.x train; 4.23.4M and below releases in the 4.23.x train; 4.22.6M and below releases in the 4.22.x train.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cf3c-97fx-vhmf/GHSA-cf3c-97fx-vhmf.json b/advisories/unreviewed/2022/05/GHSA-cf3c-97fx-vhmf/GHSA-cf3c-97fx-vhmf.json index 76b3188a2fb..3f1203cbc08 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf3c-97fx-vhmf/GHSA-cf3c-97fx-vhmf.json +++ b/advisories/unreviewed/2022/05/GHSA-cf3c-97fx-vhmf/GHSA-cf3c-97fx-vhmf.json @@ -7,12 +7,8 @@ "CVE-2008-3050" ], "details": "Unspecified vulnerability in the PDF Generator 2 (pdf_generator2) extension 0.5.0 and earlier for TYPO3 allows attackers to cause a denial of service via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cfww-x5rc-hmv9/GHSA-cfww-x5rc-hmv9.json b/advisories/unreviewed/2022/05/GHSA-cfww-x5rc-hmv9/GHSA-cfww-x5rc-hmv9.json index 8670dbf1cb3..c899e247d33 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfww-x5rc-hmv9/GHSA-cfww-x5rc-hmv9.json +++ b/advisories/unreviewed/2022/05/GHSA-cfww-x5rc-hmv9/GHSA-cfww-x5rc-hmv9.json @@ -7,12 +7,8 @@ "CVE-2021-24416" ], "details": "The StreamCast – Radio Player for WordPress plugin before 2.1.1 does not sanitise or validate the parameters from its shortcode, allowing users with a role as low as contributor to set Cross-Site Scripting payload in them which will be triggered in the page/s with the embed malicious shortcode", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cgc3-4454-62c5/GHSA-cgc3-4454-62c5.json b/advisories/unreviewed/2022/05/GHSA-cgc3-4454-62c5/GHSA-cgc3-4454-62c5.json index be32b766b94..819cdabd6e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgc3-4454-62c5/GHSA-cgc3-4454-62c5.json +++ b/advisories/unreviewed/2022/05/GHSA-cgc3-4454-62c5/GHSA-cgc3-4454-62c5.json @@ -7,12 +7,8 @@ "CVE-2008-3015" ], "details": "Integer overflow in gdiplus.dll in GDI+ in Microsoft Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services SP2, SQL Server 2005 SP2, Report Viewer 2005 SP1 and 2008, and Forefront Client Security 1.0 allows remote attackers to execute arbitrary code via a BMP image file with a malformed BitMapInfoHeader that triggers a buffer overflow, aka \"GDI+ BMP Integer Overflow Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cggf-9qjh-g2mc/GHSA-cggf-9qjh-g2mc.json b/advisories/unreviewed/2022/05/GHSA-cggf-9qjh-g2mc/GHSA-cggf-9qjh-g2mc.json index 6ac6a4f9603..140f6f0c09c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cggf-9qjh-g2mc/GHSA-cggf-9qjh-g2mc.json +++ b/advisories/unreviewed/2022/05/GHSA-cggf-9qjh-g2mc/GHSA-cggf-9qjh-g2mc.json @@ -7,12 +7,8 @@ "CVE-2008-2732" ], "details": "Multiple unspecified vulnerabilities in the SIP inspection functionality in Cisco PIX and Adaptive Security Appliance (ASA) 5500 devices 7.0 before 7.0(7)16, 7.1 before 7.1(2)71, 7.2 before 7.2(4)7, 8.0 before 8.0(3)20, and 8.1 before 8.1(1)8 allow remote attackers to cause a denial of service (device reload) via unknown vectors, aka Bug IDs CSCsq07867, CSCsq57091, CSCsk60581, and CSCsq39315.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ch2x-2fc5-pg69/GHSA-ch2x-2fc5-pg69.json b/advisories/unreviewed/2022/05/GHSA-ch2x-2fc5-pg69/GHSA-ch2x-2fc5-pg69.json index 75d00fe1d06..1682a1743d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch2x-2fc5-pg69/GHSA-ch2x-2fc5-pg69.json +++ b/advisories/unreviewed/2022/05/GHSA-ch2x-2fc5-pg69/GHSA-ch2x-2fc5-pg69.json @@ -7,12 +7,8 @@ "CVE-2008-2668" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in yBlog 0.2.2.2 allow remote attackers to inject arbitrary web script or HTML via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ch8v-mr53-jpw7/GHSA-ch8v-mr53-jpw7.json b/advisories/unreviewed/2022/05/GHSA-ch8v-mr53-jpw7/GHSA-ch8v-mr53-jpw7.json index 7004d3224db..c752f45bac4 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch8v-mr53-jpw7/GHSA-ch8v-mr53-jpw7.json +++ b/advisories/unreviewed/2022/05/GHSA-ch8v-mr53-jpw7/GHSA-ch8v-mr53-jpw7.json @@ -7,12 +7,8 @@ "CVE-2008-2751" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Glassfish webadmin interface in Sun Java System Application Server 9.1_01 allow remote attackers to inject arbitrary web script or HTML via the (1) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:jndiProp:JndiNew, (2) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:resTypeProp:resType, (3) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:factoryClassProp:factoryClass, or (4) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:descProp:desc parameter to (a) resourceNode/customResourceNew.jsf; the (5) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:jndiProp:JndiNew, (6) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:resTypeProp:resType, (7) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:factoryClassProp:factoryClass, (8) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:jndiLookupProp:jndiLookup, or (9) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:descProp:desc parameter to (b) resourceNode/externalResourceNew.jsf; the (10) propertyForm:propertySheet:propertSectionTextField:jndiProp:Jndi, (11) propertyForm:propertySheet:propertSectionTextField:nameProp:name, or (12) propertyForm:propertySheet:propertSectionTextField:descProp:desc parameter to (c) resourceNode/jmsDestinationNew.jsf; the (13) propertyForm:propertySheet:generalPropertySheet:jndiProp:Jndi or (14) propertyForm:propertySheet:generalPropertySheet:descProp:cd parameter to (d) resourceNode/jmsConnectionNew.jsf; the (15) propertyForm:propertySheet:propertSectionTextField:jndiProp:jnditext or (16) propertyForm:propertySheet:propertSectionTextField:descProp:desc parameter to (e) resourceNode/jdbcResourceNew.jsf; the (17) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:nameProp:name, (18) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:classNameProp:classname, or (19) propertyForm:propertyContentPage:propertySheet:propertSectionTextField:loadOrderProp:loadOrder parameter to (f) applications/lifecycleModulesNew.jsf; or the (20) propertyForm:propertyContentPage:propertySheet:generalPropertySheet:jndiProp:name, (21) propertyForm:propertyContentPage:propertySheet:generalPropertySheet:resTypeProp:resType, or (22) propertyForm:propertyContentPage:propertySheet:generalPropertySheet:dbProp:db parameter to (g) resourceNode/jdbcConnectionPoolNew1.jsf.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-chvw-pr2x-vpmr/GHSA-chvw-pr2x-vpmr.json b/advisories/unreviewed/2022/05/GHSA-chvw-pr2x-vpmr/GHSA-chvw-pr2x-vpmr.json index b0feecc85c7..9049e01a9b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-chvw-pr2x-vpmr/GHSA-chvw-pr2x-vpmr.json +++ b/advisories/unreviewed/2022/05/GHSA-chvw-pr2x-vpmr/GHSA-chvw-pr2x-vpmr.json @@ -7,12 +7,8 @@ "CVE-2020-12010" ], "details": "Advantech WebAccess Node, Version 8.4.4 and prior, Version 9.0.0. Multiple relative path traversal vulnerabilities exist that may allow an authenticated user to use a specially crafted file to delete files outside the application’s control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cj3x-qg3h-5v73/GHSA-cj3x-qg3h-5v73.json b/advisories/unreviewed/2022/05/GHSA-cj3x-qg3h-5v73/GHSA-cj3x-qg3h-5v73.json index b6cb63780c3..e08eb529423 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj3x-qg3h-5v73/GHSA-cj3x-qg3h-5v73.json +++ b/advisories/unreviewed/2022/05/GHSA-cj3x-qg3h-5v73/GHSA-cj3x-qg3h-5v73.json @@ -7,12 +7,8 @@ "CVE-2021-21562" ], "details": "Dell EMC PowerScale OneFS contains an untrusted search path vulnerability. This vulnerability allows a user with (ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE) and (ISI_PRIV_SYS_UPGRADE or ISI_PRIV_AUDIT) to provide an untrusted path which can lead to run resources that are not under the application’s direct control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjhq-3qxp-7658/GHSA-cjhq-3qxp-7658.json b/advisories/unreviewed/2022/05/GHSA-cjhq-3qxp-7658/GHSA-cjhq-3qxp-7658.json index 947b801f27a..708780bd32d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjhq-3qxp-7658/GHSA-cjhq-3qxp-7658.json +++ b/advisories/unreviewed/2022/05/GHSA-cjhq-3qxp-7658/GHSA-cjhq-3qxp-7658.json @@ -7,12 +7,8 @@ "CVE-2021-24527" ], "details": "The User Registration & User Profile – Profile Builder WordPress plugin before 3.4.9 has a bug allowing any user to reset the password of the admin of the blog, and gain unauthorised access, due to a bypass in the way the reset key is checked. Furthermore, the admin will not be notified of such change by email for example.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjvq-xvv5-f922/GHSA-cjvq-xvv5-f922.json b/advisories/unreviewed/2022/05/GHSA-cjvq-xvv5-f922/GHSA-cjvq-xvv5-f922.json index 41eee4e53f1..e0a1e853887 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjvq-xvv5-f922/GHSA-cjvq-xvv5-f922.json +++ b/advisories/unreviewed/2022/05/GHSA-cjvq-xvv5-f922/GHSA-cjvq-xvv5-f922.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm59-m98p-76g5/GHSA-cm59-m98p-76g5.json b/advisories/unreviewed/2022/05/GHSA-cm59-m98p-76g5/GHSA-cm59-m98p-76g5.json index 55a16249bb9..acc5cfecb96 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm59-m98p-76g5/GHSA-cm59-m98p-76g5.json +++ b/advisories/unreviewed/2022/05/GHSA-cm59-m98p-76g5/GHSA-cm59-m98p-76g5.json @@ -7,12 +7,8 @@ "CVE-2008-2647" ], "details": "SQL injection vulnerability in admin/journal_change_mask.inc.php in meBiblio 0.4.7 allows remote attackers to execute arbitrary SQL commands via the JID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm74-jg3x-hghv/GHSA-cm74-jg3x-hghv.json b/advisories/unreviewed/2022/05/GHSA-cm74-jg3x-hghv/GHSA-cm74-jg3x-hghv.json index a63744c080b..482ae94805b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm74-jg3x-hghv/GHSA-cm74-jg3x-hghv.json +++ b/advisories/unreviewed/2022/05/GHSA-cm74-jg3x-hghv/GHSA-cm74-jg3x-hghv.json @@ -7,12 +7,8 @@ "CVE-2020-5132" ], "details": "SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as domain name collision vulnerability. When the users publicly display their organization’s internal domain names in the SSL-VPN authentication page, an attacker with knowledge of internal domain names can potentially take advantage of this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cm92-v326-7gh8/GHSA-cm92-v326-7gh8.json b/advisories/unreviewed/2022/05/GHSA-cm92-v326-7gh8/GHSA-cm92-v326-7gh8.json index 03d409563cb..b1d6e353e8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm92-v326-7gh8/GHSA-cm92-v326-7gh8.json +++ b/advisories/unreviewed/2022/05/GHSA-cm92-v326-7gh8/GHSA-cm92-v326-7gh8.json @@ -7,12 +7,8 @@ "CVE-2008-3069" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MyBB before 1.2.13 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) portal.php and (2) inc/functions_post.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmj9-rpfq-5hc2/GHSA-cmj9-rpfq-5hc2.json b/advisories/unreviewed/2022/05/GHSA-cmj9-rpfq-5hc2/GHSA-cmj9-rpfq-5hc2.json index c0be64801a6..71a7d5a9dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmj9-rpfq-5hc2/GHSA-cmj9-rpfq-5hc2.json +++ b/advisories/unreviewed/2022/05/GHSA-cmj9-rpfq-5hc2/GHSA-cmj9-rpfq-5hc2.json @@ -7,12 +7,8 @@ "CVE-2008-2943" ], "details": "Double free vulnerability in IBM Tivoli Directory Server (TDS) 6.1.0.0 through 6.1.0.15 allows remote authenticated administrators to cause a denial of service (ABEND) and possibly execute arbitrary code by using ldapadd to attempt to create a duplicate ibm-globalAdminGroup LDAP database entry. NOTE: the vendor states \"There is no real risk of a vulnerability,\" although there are likely scenarios in which a user is allowed to make administrative LDAP requests but does not have the privileges to stop the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmq8-mf7c-53h9/GHSA-cmq8-mf7c-53h9.json b/advisories/unreviewed/2022/05/GHSA-cmq8-mf7c-53h9/GHSA-cmq8-mf7c-53h9.json index 290d4766560..986d44d5cde 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmq8-mf7c-53h9/GHSA-cmq8-mf7c-53h9.json +++ b/advisories/unreviewed/2022/05/GHSA-cmq8-mf7c-53h9/GHSA-cmq8-mf7c-53h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp3h-563p-cmfg/GHSA-cp3h-563p-cmfg.json b/advisories/unreviewed/2022/05/GHSA-cp3h-563p-cmfg/GHSA-cp3h-563p-cmfg.json index e1a6f6a8ee0..9535c69af40 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp3h-563p-cmfg/GHSA-cp3h-563p-cmfg.json +++ b/advisories/unreviewed/2022/05/GHSA-cp3h-563p-cmfg/GHSA-cp3h-563p-cmfg.json @@ -7,12 +7,8 @@ "CVE-2008-3043" ], "details": "Unspecified vulnerability in the WEC Discussion Forum (wec_discussion) extension 1.6.2 and earlier for TYPO3 allows attackers to execute arbitrary code via vectors related to \"certain file types.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp6g-8qmw-2h69/GHSA-cp6g-8qmw-2h69.json b/advisories/unreviewed/2022/05/GHSA-cp6g-8qmw-2h69/GHSA-cp6g-8qmw-2h69.json index 0bd31e0eddb..34c8aa58c82 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp6g-8qmw-2h69/GHSA-cp6g-8qmw-2h69.json +++ b/advisories/unreviewed/2022/05/GHSA-cp6g-8qmw-2h69/GHSA-cp6g-8qmw-2h69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp86-7jxj-wqfv/GHSA-cp86-7jxj-wqfv.json b/advisories/unreviewed/2022/05/GHSA-cp86-7jxj-wqfv/GHSA-cp86-7jxj-wqfv.json index 7b9c03b2d20..f84b55881fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp86-7jxj-wqfv/GHSA-cp86-7jxj-wqfv.json +++ b/advisories/unreviewed/2022/05/GHSA-cp86-7jxj-wqfv/GHSA-cp86-7jxj-wqfv.json @@ -7,12 +7,8 @@ "CVE-2020-7560" ], "details": "A CWE-123: Write-what-where Condition vulnerability exists in EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions), that could cause a crash of the software or unexpected code execution when opening a malicious file in EcoStruxure™ Control Expert software.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cpm7-pgmm-3mfr/GHSA-cpm7-pgmm-3mfr.json b/advisories/unreviewed/2022/05/GHSA-cpm7-pgmm-3mfr/GHSA-cpm7-pgmm-3mfr.json index 77f5abe3ed1..d5df03ea542 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpm7-pgmm-3mfr/GHSA-cpm7-pgmm-3mfr.json +++ b/advisories/unreviewed/2022/05/GHSA-cpm7-pgmm-3mfr/GHSA-cpm7-pgmm-3mfr.json @@ -7,12 +7,8 @@ "CVE-2020-25709" ], "details": "A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cpxg-5m58-xm8c/GHSA-cpxg-5m58-xm8c.json b/advisories/unreviewed/2022/05/GHSA-cpxg-5m58-xm8c/GHSA-cpxg-5m58-xm8c.json index 0aff15c64fc..60d9151acb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpxg-5m58-xm8c/GHSA-cpxg-5m58-xm8c.json +++ b/advisories/unreviewed/2022/05/GHSA-cpxg-5m58-xm8c/GHSA-cpxg-5m58-xm8c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cq3g-fvgf-3m32/GHSA-cq3g-fvgf-3m32.json b/advisories/unreviewed/2022/05/GHSA-cq3g-fvgf-3m32/GHSA-cq3g-fvgf-3m32.json index 67d3f9b4d55..04dfd31bd08 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq3g-fvgf-3m32/GHSA-cq3g-fvgf-3m32.json +++ b/advisories/unreviewed/2022/05/GHSA-cq3g-fvgf-3m32/GHSA-cq3g-fvgf-3m32.json @@ -7,12 +7,8 @@ "CVE-2008-2800" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 allow remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via vectors involving (1) an event handler attached to an outer window, (2) a SCRIPT element in an unloaded document, or (3) the onreadystatechange handler in conjunction with an XMLHttpRequest.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cq83-pmg7-mjwj/GHSA-cq83-pmg7-mjwj.json b/advisories/unreviewed/2022/05/GHSA-cq83-pmg7-mjwj/GHSA-cq83-pmg7-mjwj.json index 04bac851b57..129791a1f2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq83-pmg7-mjwj/GHSA-cq83-pmg7-mjwj.json +++ b/advisories/unreviewed/2022/05/GHSA-cq83-pmg7-mjwj/GHSA-cq83-pmg7-mjwj.json @@ -7,12 +7,8 @@ "CVE-2021-24412" ], "details": "The Html5 Audio Player – Audio Player for WordPress plugin before 2.1.3 does not sanitise or validate the parameters from its shortcode, allowing users with a role as low as contributor to set Cross-Site Scripting payload in them which will be triggered in the page/s with the embed malicious shortcode", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crc4-6mw2-jj89/GHSA-crc4-6mw2-jj89.json b/advisories/unreviewed/2022/05/GHSA-crc4-6mw2-jj89/GHSA-crc4-6mw2-jj89.json index 49b0a21ec0f..ea8fa80ab60 100644 --- a/advisories/unreviewed/2022/05/GHSA-crc4-6mw2-jj89/GHSA-crc4-6mw2-jj89.json +++ b/advisories/unreviewed/2022/05/GHSA-crc4-6mw2-jj89/GHSA-crc4-6mw2-jj89.json @@ -7,12 +7,8 @@ "CVE-2008-3126" ], "details": "Multiple stack-based buffer overflows in the ServerView web interface (SnmpGetMibValues.exe) in Fujitsu Siemens Computers ServerView 04.60.07 and earlier allow remote authenticated users to execute arbitrary code via a crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crfq-x56q-fh5h/GHSA-crfq-x56q-fh5h.json b/advisories/unreviewed/2022/05/GHSA-crfq-x56q-fh5h/GHSA-crfq-x56q-fh5h.json index 63c0ce49d63..88ddbe42254 100644 --- a/advisories/unreviewed/2022/05/GHSA-crfq-x56q-fh5h/GHSA-crfq-x56q-fh5h.json +++ b/advisories/unreviewed/2022/05/GHSA-crfq-x56q-fh5h/GHSA-crfq-x56q-fh5h.json @@ -7,12 +7,8 @@ "CVE-2021-32537" ], "details": "Realtek HAD contains a driver crashed vulnerability which allows local side attackers to send a special string to the kernel driver in a user’s mode. Due to unexpected commands, the kernel driver will cause the system crashed. A vulnerability in ____COMPONENT____ of Realtek HDA driver allows ____ATTACKER/ATTACK____ to cause ____IMPACT____. This issue affects: Realtek HDA driver 8155 version 9150 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv3j-xx9h-6hf5/GHSA-cv3j-xx9h-6hf5.json b/advisories/unreviewed/2022/05/GHSA-cv3j-xx9h-6hf5/GHSA-cv3j-xx9h-6hf5.json index 4f437d3c407..aa7a12af929 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv3j-xx9h-6hf5/GHSA-cv3j-xx9h-6hf5.json +++ b/advisories/unreviewed/2022/05/GHSA-cv3j-xx9h-6hf5/GHSA-cv3j-xx9h-6hf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv9q-2p8x-2xxf/GHSA-cv9q-2p8x-2xxf.json b/advisories/unreviewed/2022/05/GHSA-cv9q-2p8x-2xxf/GHSA-cv9q-2p8x-2xxf.json index 507f8b2a28b..917ae08cc1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv9q-2p8x-2xxf/GHSA-cv9q-2p8x-2xxf.json +++ b/advisories/unreviewed/2022/05/GHSA-cv9q-2p8x-2xxf/GHSA-cv9q-2p8x-2xxf.json @@ -7,12 +7,8 @@ "CVE-2021-24200" ], "details": "The wpDataTables – Tables & Table Charts premium WordPress plugin before 3.4.2 allows a low privilege authenticated user to perform Boolean-based blind SQL Injection in the table list page on the endpoint /wp-admin/admin-ajax.php?action=get_wdtable&table_id=1, on the 'length' HTTP POST parameter. This allows an attacker to access all the data in the database and obtain access to the WordPress application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cvxv-m3wh-fqjf/GHSA-cvxv-m3wh-fqjf.json b/advisories/unreviewed/2022/05/GHSA-cvxv-m3wh-fqjf/GHSA-cvxv-m3wh-fqjf.json index a7541da8221..0d0e972f453 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvxv-m3wh-fqjf/GHSA-cvxv-m3wh-fqjf.json +++ b/advisories/unreviewed/2022/05/GHSA-cvxv-m3wh-fqjf/GHSA-cvxv-m3wh-fqjf.json @@ -7,12 +7,8 @@ "CVE-2021-24268" ], "details": "The “JetWidgets For Elementorâ€? WordPress Plugin before 1.0.9 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw52-x4mw-m42c/GHSA-cw52-x4mw-m42c.json b/advisories/unreviewed/2022/05/GHSA-cw52-x4mw-m42c/GHSA-cw52-x4mw-m42c.json index 0962ac16a8f..a6cc1309e65 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw52-x4mw-m42c/GHSA-cw52-x4mw-m42c.json +++ b/advisories/unreviewed/2022/05/GHSA-cw52-x4mw-m42c/GHSA-cw52-x4mw-m42c.json @@ -7,12 +7,8 @@ "CVE-2021-42334" ], "details": "The Easytest contains SQL injection vulnerabilities. After obtaining a user’s privilege, remote attackers can inject SQL commands into the parameters of the elective course management page to obtain all database and administrator permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwm5-ch2x-hx68/GHSA-cwm5-ch2x-hx68.json b/advisories/unreviewed/2022/05/GHSA-cwm5-ch2x-hx68/GHSA-cwm5-ch2x-hx68.json index 37ac17c7bd4..309a956e464 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwm5-ch2x-hx68/GHSA-cwm5-ch2x-hx68.json +++ b/advisories/unreviewed/2022/05/GHSA-cwm5-ch2x-hx68/GHSA-cwm5-ch2x-hx68.json @@ -7,12 +7,8 @@ "CVE-2008-2680" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in _db/compact.asp in Realm CMS 2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) CmpctedDB and (2) Boyut parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwp2-23c5-767r/GHSA-cwp2-23c5-767r.json b/advisories/unreviewed/2022/05/GHSA-cwp2-23c5-767r/GHSA-cwp2-23c5-767r.json index b9f0c5c1e31..47e52c90500 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwp2-23c5-767r/GHSA-cwp2-23c5-767r.json +++ b/advisories/unreviewed/2022/05/GHSA-cwp2-23c5-767r/GHSA-cwp2-23c5-767r.json @@ -7,12 +7,8 @@ "CVE-2008-3067" ], "details": "sudo in SUSE openSUSE 10.3 does not clear the stdin buffer when password entry times out, which might allow local users to obtain a password by reading stdin from the parent process after a sudo child process exits.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cwqw-89qh-jmrr/GHSA-cwqw-89qh-jmrr.json b/advisories/unreviewed/2022/05/GHSA-cwqw-89qh-jmrr/GHSA-cwqw-89qh-jmrr.json index 564521c0a73..d4c67608493 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwqw-89qh-jmrr/GHSA-cwqw-89qh-jmrr.json +++ b/advisories/unreviewed/2022/05/GHSA-cwqw-89qh-jmrr/GHSA-cwqw-89qh-jmrr.json @@ -7,12 +7,8 @@ "CVE-2021-28198" ], "details": "The Firmware protocol configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwx2-6cm4-jr73/GHSA-cwx2-6cm4-jr73.json b/advisories/unreviewed/2022/05/GHSA-cwx2-6cm4-jr73/GHSA-cwx2-6cm4-jr73.json index 16f2addc066..7f802fb8c78 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwx2-6cm4-jr73/GHSA-cwx2-6cm4-jr73.json +++ b/advisories/unreviewed/2022/05/GHSA-cwx2-6cm4-jr73/GHSA-cwx2-6cm4-jr73.json @@ -7,12 +7,8 @@ "CVE-2020-13770" ], "details": "Several services are accessing named pipes in Ivanti Endpoint Manager through 2020.1.1 with default or overly permissive security attributes; as these services run as user ‘NT AUTHORITY\\SYSTEM’, the issue can be used to escalate privileges from a local standard or service account having SeImpersonatePrivilege (eg. user ‘NT AUTHORITY\\NETWORK SERVICE’).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxfr-2cwv-2928/GHSA-cxfr-2cwv-2928.json b/advisories/unreviewed/2022/05/GHSA-cxfr-2cwv-2928/GHSA-cxfr-2cwv-2928.json index 070f43305a8..b2a84825137 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxfr-2cwv-2928/GHSA-cxfr-2cwv-2928.json +++ b/advisories/unreviewed/2022/05/GHSA-cxfr-2cwv-2928/GHSA-cxfr-2cwv-2928.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxvp-6fh6-vm2m/GHSA-cxvp-6fh6-vm2m.json b/advisories/unreviewed/2022/05/GHSA-cxvp-6fh6-vm2m/GHSA-cxvp-6fh6-vm2m.json index e7986eefd0f..44734b7e4a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxvp-6fh6-vm2m/GHSA-cxvp-6fh6-vm2m.json +++ b/advisories/unreviewed/2022/05/GHSA-cxvp-6fh6-vm2m/GHSA-cxvp-6fh6-vm2m.json @@ -7,12 +7,8 @@ "CVE-2020-5647" ], "details": "Improper access control vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QMBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QLBDE CoreOS version ’05.65.00.BD’ and earlier, GT1455HS-QTBDE CoreOS version ’05.65.00.BD’ and earlier, and GT1450HS-QMBDE CoreOS version ’05.65.00.BD’ and earlier) allows a remote unauthenticated attacker to stop the network functions of the products or execute a malicious program via a specially crafted packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f257-m4rp-7242/GHSA-f257-m4rp-7242.json b/advisories/unreviewed/2022/05/GHSA-f257-m4rp-7242/GHSA-f257-m4rp-7242.json index 0fd035db2ae..f42bdaaa36b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f257-m4rp-7242/GHSA-f257-m4rp-7242.json +++ b/advisories/unreviewed/2022/05/GHSA-f257-m4rp-7242/GHSA-f257-m4rp-7242.json @@ -7,12 +7,8 @@ "CVE-2008-2716" ], "details": "Unspecified vulnerability in Opera before 9.5 allows remote attackers to spoof the contents of trusted frames on the same parent page by modifying the location, which can facilitate phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2g9-97mc-79j6/GHSA-f2g9-97mc-79j6.json b/advisories/unreviewed/2022/05/GHSA-f2g9-97mc-79j6/GHSA-f2g9-97mc-79j6.json index e20e5d933a3..ad671fc2747 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2g9-97mc-79j6/GHSA-f2g9-97mc-79j6.json +++ b/advisories/unreviewed/2022/05/GHSA-f2g9-97mc-79j6/GHSA-f2g9-97mc-79j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2hm-6r67-2w7v/GHSA-f2hm-6r67-2w7v.json b/advisories/unreviewed/2022/05/GHSA-f2hm-6r67-2w7v/GHSA-f2hm-6r67-2w7v.json index d08b8aae114..0951dc227b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2hm-6r67-2w7v/GHSA-f2hm-6r67-2w7v.json +++ b/advisories/unreviewed/2022/05/GHSA-f2hm-6r67-2w7v/GHSA-f2hm-6r67-2w7v.json @@ -7,12 +7,8 @@ "CVE-2008-2777" ], "details": "Cross-site scripting (XSS) vulnerability in Ortro before 1.3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2j3-w598-jqhx/GHSA-f2j3-w598-jqhx.json b/advisories/unreviewed/2022/05/GHSA-f2j3-w598-jqhx/GHSA-f2j3-w598-jqhx.json index 35c4932b459..ebca9e5cbe1 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2j3-w598-jqhx/GHSA-f2j3-w598-jqhx.json +++ b/advisories/unreviewed/2022/05/GHSA-f2j3-w598-jqhx/GHSA-f2j3-w598-jqhx.json @@ -7,12 +7,8 @@ "CVE-2008-2665" ], "details": "Directory traversal vulnerability in the posix_access function in PHP 5.2.6 and earlier allows remote attackers to bypass safe_mode restrictions via a .. (dot dot) in an http URL, which results in the URL being canonicalized to a local filename after the safe_mode check has successfully run.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f329-4wvc-4h42/GHSA-f329-4wvc-4h42.json b/advisories/unreviewed/2022/05/GHSA-f329-4wvc-4h42/GHSA-f329-4wvc-4h42.json index b0576b290c1..6a4fd1bf984 100644 --- a/advisories/unreviewed/2022/05/GHSA-f329-4wvc-4h42/GHSA-f329-4wvc-4h42.json +++ b/advisories/unreviewed/2022/05/GHSA-f329-4wvc-4h42/GHSA-f329-4wvc-4h42.json @@ -7,12 +7,8 @@ "CVE-2008-2811" ], "details": "The block reflow implementation in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an image whose display requires more pixels than nscoord_MAX, related to nsBlockFrame::DrainOverflowLines.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -244,9 +240,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f37x-2cx7-rh6g/GHSA-f37x-2cx7-rh6g.json b/advisories/unreviewed/2022/05/GHSA-f37x-2cx7-rh6g/GHSA-f37x-2cx7-rh6g.json index 1b9f8f73389..847a44d186e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f37x-2cx7-rh6g/GHSA-f37x-2cx7-rh6g.json +++ b/advisories/unreviewed/2022/05/GHSA-f37x-2cx7-rh6g/GHSA-f37x-2cx7-rh6g.json @@ -7,12 +7,8 @@ "CVE-2021-24270" ], "details": "The “DeTheme Kit for Elementorâ€? WordPress Plugin before 1.5.5.5 has a widget that is vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3cp-f6ph-xxhj/GHSA-f3cp-f6ph-xxhj.json b/advisories/unreviewed/2022/05/GHSA-f3cp-f6ph-xxhj/GHSA-f3cp-f6ph-xxhj.json index 3a6f4ca2a48..f410ab8121b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3cp-f6ph-xxhj/GHSA-f3cp-f6ph-xxhj.json +++ b/advisories/unreviewed/2022/05/GHSA-f3cp-f6ph-xxhj/GHSA-f3cp-f6ph-xxhj.json @@ -7,12 +7,8 @@ "CVE-2021-39899" ], "details": "In all versions of GitLab CE/EE, an attacker with physical access to a user’s machine may brute force the user’s password via the change password function. There is a rate limit in place, but the attack may still be conducted by stealing the session id from the physical compromise of the account and splitting the attack over several IP addresses and passing in the compromised session value from these various locations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3rg-mx46-665p/GHSA-f3rg-mx46-665p.json b/advisories/unreviewed/2022/05/GHSA-f3rg-mx46-665p/GHSA-f3rg-mx46-665p.json index c795f68188b..9a13cbb7a8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3rg-mx46-665p/GHSA-f3rg-mx46-665p.json +++ b/advisories/unreviewed/2022/05/GHSA-f3rg-mx46-665p/GHSA-f3rg-mx46-665p.json @@ -7,12 +7,8 @@ "CVE-2008-2880" ], "details": "Heap-based buffer overflow in the IBM AFP Viewer Plug-in 2.0.7.1 and 3.2.1.1 allows remote attackers to execute arbitrary code via a long SRC property value. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f423-79c7-g4mq/GHSA-f423-79c7-g4mq.json b/advisories/unreviewed/2022/05/GHSA-f423-79c7-g4mq/GHSA-f423-79c7-g4mq.json index 0f923cace02..1170214f503 100644 --- a/advisories/unreviewed/2022/05/GHSA-f423-79c7-g4mq/GHSA-f423-79c7-g4mq.json +++ b/advisories/unreviewed/2022/05/GHSA-f423-79c7-g4mq/GHSA-f423-79c7-g4mq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f452-fg56-fx5m/GHSA-f452-fg56-fx5m.json b/advisories/unreviewed/2022/05/GHSA-f452-fg56-fx5m/GHSA-f452-fg56-fx5m.json index 6de6798786c..ef1ab33694f 100644 --- a/advisories/unreviewed/2022/05/GHSA-f452-fg56-fx5m/GHSA-f452-fg56-fx5m.json +++ b/advisories/unreviewed/2022/05/GHSA-f452-fg56-fx5m/GHSA-f452-fg56-fx5m.json @@ -7,12 +7,8 @@ "CVE-2021-20113" ], "details": "An exposure of sensitive information vulnerability exists in TCExam <= 14.8.1. If a password reset request was made for an email address that was not registered with a user then we would be presented with an ‘unknown email’ error. If an email is given that is registered with a user then this error will not appear. A malicious actor could abuse this to enumerate the email addresses of", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f475-c2j6-hj26/GHSA-f475-c2j6-hj26.json b/advisories/unreviewed/2022/05/GHSA-f475-c2j6-hj26/GHSA-f475-c2j6-hj26.json index e5d3c6d16ba..4f38449d3eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-f475-c2j6-hj26/GHSA-f475-c2j6-hj26.json +++ b/advisories/unreviewed/2022/05/GHSA-f475-c2j6-hj26/GHSA-f475-c2j6-hj26.json @@ -7,12 +7,8 @@ "CVE-2008-3135" ], "details": "Soldner Secret Wars 33724 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a packet with a large numeric value in a 0x80 data block.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f4gm-v37p-h557/GHSA-f4gm-v37p-h557.json b/advisories/unreviewed/2022/05/GHSA-f4gm-v37p-h557/GHSA-f4gm-v37p-h557.json index 2efe7a9630e..03a5360551a 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4gm-v37p-h557/GHSA-f4gm-v37p-h557.json +++ b/advisories/unreviewed/2022/05/GHSA-f4gm-v37p-h557/GHSA-f4gm-v37p-h557.json @@ -7,12 +7,8 @@ "CVE-2021-22792" ], "details": "A CWE-476: NULL Pointer Dereference vulnerability that could cause a Denial of Service on the Modicon PLC controller / simulator when updating the controller application with a specially crafted project file exists in Modicon M580 CPU (part numbers BMEP* and BMEH*, all versions), Modicon M340 CPU (part numbers BMXP34*, all versions), Modicon MC80 (part numbers BMKC80*, all versions), Modicon Momentum Ethernet CPU (part numbers 171CBU*, all versions), PLC Simulator for EcoStruxureª Control Expert, including all Unity Pro versions (former name of EcoStruxureª Control Expert, all versions), PLC Simulator for EcoStruxureª Process Expert including all HDCS versions (former name of EcoStruxureª Process Expert, all versions), Modicon Quantum CPU (part numbers 140CPU*, all versions), Modicon Premium CPU (part numbers TSXP5*, all versions).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4x8-rxpq-gg98/GHSA-f4x8-rxpq-gg98.json b/advisories/unreviewed/2022/05/GHSA-f4x8-rxpq-gg98/GHSA-f4x8-rxpq-gg98.json index 034194a6758..aefa4c73ab0 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4x8-rxpq-gg98/GHSA-f4x8-rxpq-gg98.json +++ b/advisories/unreviewed/2022/05/GHSA-f4x8-rxpq-gg98/GHSA-f4x8-rxpq-gg98.json @@ -7,12 +7,8 @@ "CVE-2021-24430" ], "details": "The Speed Booster Pack âš¡ PageSpeed Optimization Suite WordPress plugin before 4.2.0 did not validate its caching_exclude_urls and caching_include_query_strings settings before outputting them in a PHP file, which could lead to RCE", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5ch-mxxg-jrgr/GHSA-f5ch-mxxg-jrgr.json b/advisories/unreviewed/2022/05/GHSA-f5ch-mxxg-jrgr/GHSA-f5ch-mxxg-jrgr.json index 697ea7d9f16..5aa7a24e373 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5ch-mxxg-jrgr/GHSA-f5ch-mxxg-jrgr.json +++ b/advisories/unreviewed/2022/05/GHSA-f5ch-mxxg-jrgr/GHSA-f5ch-mxxg-jrgr.json @@ -7,12 +7,8 @@ "CVE-2019-19484" ], "details": "Open redirect via parameter ‘p’ in login.php in Centreon (19.04.4 and below) allows an attacker to craft a payload and execute unintended behavior.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f5f8-7c8q-x28m/GHSA-f5f8-7c8q-x28m.json b/advisories/unreviewed/2022/05/GHSA-f5f8-7c8q-x28m/GHSA-f5f8-7c8q-x28m.json index d4700a50eca..16147eb632b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5f8-7c8q-x28m/GHSA-f5f8-7c8q-x28m.json +++ b/advisories/unreviewed/2022/05/GHSA-f5f8-7c8q-x28m/GHSA-f5f8-7c8q-x28m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5hm-hjxq-fhw3/GHSA-f5hm-hjxq-fhw3.json b/advisories/unreviewed/2022/05/GHSA-f5hm-hjxq-fhw3/GHSA-f5hm-hjxq-fhw3.json index 763672c77d6..f454689fc74 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5hm-hjxq-fhw3/GHSA-f5hm-hjxq-fhw3.json +++ b/advisories/unreviewed/2022/05/GHSA-f5hm-hjxq-fhw3/GHSA-f5hm-hjxq-fhw3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5qf-9pc8-pr89/GHSA-f5qf-9pc8-pr89.json b/advisories/unreviewed/2022/05/GHSA-f5qf-9pc8-pr89/GHSA-f5qf-9pc8-pr89.json index f8daffb603a..2f5c01d1a42 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5qf-9pc8-pr89/GHSA-f5qf-9pc8-pr89.json +++ b/advisories/unreviewed/2022/05/GHSA-f5qf-9pc8-pr89/GHSA-f5qf-9pc8-pr89.json @@ -7,12 +7,8 @@ "CVE-2008-3076" ], "details": "The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system functions within the (1) mz and (2) mc commands, as demonstrated by the netrw.v2 and netrw.v3 test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5r8-j6cr-3q26/GHSA-f5r8-j6cr-3q26.json b/advisories/unreviewed/2022/05/GHSA-f5r8-j6cr-3q26/GHSA-f5r8-j6cr-3q26.json index 0053eec13a4..ee0fd178061 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5r8-j6cr-3q26/GHSA-f5r8-j6cr-3q26.json +++ b/advisories/unreviewed/2022/05/GHSA-f5r8-j6cr-3q26/GHSA-f5r8-j6cr-3q26.json @@ -7,12 +7,8 @@ "CVE-2021-38451" ], "details": "The affected product’s proprietary protocol CSC allows for calling numerous function codes. In order to call those function codes, the user must supply parameters. There is no sanitation on the value of the offset, which allows the client to specify any offset and read out-of-bounds data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5xr-w782-5rg9/GHSA-f5xr-w782-5rg9.json b/advisories/unreviewed/2022/05/GHSA-f5xr-w782-5rg9/GHSA-f5xr-w782-5rg9.json index b987d353a73..d15d6bead3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5xr-w782-5rg9/GHSA-f5xr-w782-5rg9.json +++ b/advisories/unreviewed/2022/05/GHSA-f5xr-w782-5rg9/GHSA-f5xr-w782-5rg9.json @@ -7,12 +7,8 @@ "CVE-2008-3112" ], "details": "Directory traversal vulnerability in Sun Java Web Start in JDK and JRE 6 before Update 7, JDK and JRE 5.0 before Update 16, and SDK and JRE 1.4.x before 1.4.2_18 allows remote attackers to create arbitrary files via the writeManifest method in the CacheEntry class, aka CR 6703909.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -184,9 +180,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f66g-86x9-56j9/GHSA-f66g-86x9-56j9.json b/advisories/unreviewed/2022/05/GHSA-f66g-86x9-56j9/GHSA-f66g-86x9-56j9.json index 97cd6ef2647..e53b7634624 100644 --- a/advisories/unreviewed/2022/05/GHSA-f66g-86x9-56j9/GHSA-f66g-86x9-56j9.json +++ b/advisories/unreviewed/2022/05/GHSA-f66g-86x9-56j9/GHSA-f66g-86x9-56j9.json @@ -7,12 +7,8 @@ "CVE-2008-3087" ], "details": "Directory traversal vulnerability in Kasseler CMS 1.3.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to index.php, possibly related to the phpManual module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f68w-gqr4-452p/GHSA-f68w-gqr4-452p.json b/advisories/unreviewed/2022/05/GHSA-f68w-gqr4-452p/GHSA-f68w-gqr4-452p.json index a241cc2222f..7305221b7b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-f68w-gqr4-452p/GHSA-f68w-gqr4-452p.json +++ b/advisories/unreviewed/2022/05/GHSA-f68w-gqr4-452p/GHSA-f68w-gqr4-452p.json @@ -7,12 +7,8 @@ "CVE-2008-2805" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 allow remote attackers to force the upload of arbitrary local files from a client computer via vectors involving originalTarget and DOM Range.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6r7-wmff-5w4f/GHSA-f6r7-wmff-5w4f.json b/advisories/unreviewed/2022/05/GHSA-f6r7-wmff-5w4f/GHSA-f6r7-wmff-5w4f.json index 4fea0a221a0..95bd67e91bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6r7-wmff-5w4f/GHSA-f6r7-wmff-5w4f.json +++ b/advisories/unreviewed/2022/05/GHSA-f6r7-wmff-5w4f/GHSA-f6r7-wmff-5w4f.json @@ -7,12 +7,8 @@ "CVE-2021-28206" ], "details": "The specific function in ASUS BMC’s firmware Web management page (Record video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f72f-rm67-r857/GHSA-f72f-rm67-r857.json b/advisories/unreviewed/2022/05/GHSA-f72f-rm67-r857/GHSA-f72f-rm67-r857.json index f75139ef5c7..3d3da2a5521 100644 --- a/advisories/unreviewed/2022/05/GHSA-f72f-rm67-r857/GHSA-f72f-rm67-r857.json +++ b/advisories/unreviewed/2022/05/GHSA-f72f-rm67-r857/GHSA-f72f-rm67-r857.json @@ -7,12 +7,8 @@ "CVE-2008-2710" ], "details": "Integer signedness error in the ip_set_srcfilter function in the IP Multicast Filter in uts/common/inet/ip/ip_multi.c in the kernel in Sun Solaris 10 and OpenSolaris before snv_92 allows local users to execute arbitrary code in other Solaris Zones via an SIOCSIPMSFILTER IOCTL request with a large value of the imsf->imsf_numsrc field, which triggers an out-of-bounds write of kernel memory. NOTE: this was reported as an integer overflow, but the root cause involves the bypass of a signed comparison.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f74w-6ww8-3438/GHSA-f74w-6ww8-3438.json b/advisories/unreviewed/2022/05/GHSA-f74w-6ww8-3438/GHSA-f74w-6ww8-3438.json index 5098b92c58c..bf4ca74176a 100644 --- a/advisories/unreviewed/2022/05/GHSA-f74w-6ww8-3438/GHSA-f74w-6ww8-3438.json +++ b/advisories/unreviewed/2022/05/GHSA-f74w-6ww8-3438/GHSA-f74w-6ww8-3438.json @@ -7,12 +7,8 @@ "CVE-2020-12441" ], "details": "Denial-of-Service (DoS) in Ivanti Service Manager HEAT Remote Control 7.4 due to a buffer overflow in the protocol parser of the ‘HEATRemoteService’ agent. The DoS can be triggered by sending a specially crafted network packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f896-64x6-54qp/GHSA-f896-64x6-54qp.json b/advisories/unreviewed/2022/05/GHSA-f896-64x6-54qp/GHSA-f896-64x6-54qp.json index da39c01310b..956ab6dd93e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f896-64x6-54qp/GHSA-f896-64x6-54qp.json +++ b/advisories/unreviewed/2022/05/GHSA-f896-64x6-54qp/GHSA-f896-64x6-54qp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8x4-pv8v-wwwr/GHSA-f8x4-pv8v-wwwr.json b/advisories/unreviewed/2022/05/GHSA-f8x4-pv8v-wwwr/GHSA-f8x4-pv8v-wwwr.json index bed7c56383f..c4de1400ed9 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8x4-pv8v-wwwr/GHSA-f8x4-pv8v-wwwr.json +++ b/advisories/unreviewed/2022/05/GHSA-f8x4-pv8v-wwwr/GHSA-f8x4-pv8v-wwwr.json @@ -7,12 +7,8 @@ "CVE-2008-2888" ], "details": "Multiple PHP remote file inclusion vulnerabilities in MiGCMS 2.0.5, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[application][app_root] parameter to (1) collection.class.php and (2) content_image.class.php in lib/obj/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc3v-jjjq-68v3/GHSA-fc3v-jjjq-68v3.json b/advisories/unreviewed/2022/05/GHSA-fc3v-jjjq-68v3/GHSA-fc3v-jjjq-68v3.json index ac72111739c..b8086c72826 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc3v-jjjq-68v3/GHSA-fc3v-jjjq-68v3.json +++ b/advisories/unreviewed/2022/05/GHSA-fc3v-jjjq-68v3/GHSA-fc3v-jjjq-68v3.json @@ -7,12 +7,8 @@ "CVE-2008-2637" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in F5 FirePass SSL VPN 6.0.2 hotfix 3, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via quotes in (1) the css_exceptions parameter in vdesk/admincon/webyfiers.php and (2) the sql_matchscope parameter in vdesk/admincon/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc4m-c6c6-c2h9/GHSA-fc4m-c6c6-c2h9.json b/advisories/unreviewed/2022/05/GHSA-fc4m-c6c6-c2h9/GHSA-fc4m-c6c6-c2h9.json index b5d8351d6a1..7ccba2bb9ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc4m-c6c6-c2h9/GHSA-fc4m-c6c6-c2h9.json +++ b/advisories/unreviewed/2022/05/GHSA-fc4m-c6c6-c2h9/GHSA-fc4m-c6c6-c2h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc9c-chwq-c97j/GHSA-fc9c-chwq-c97j.json b/advisories/unreviewed/2022/05/GHSA-fc9c-chwq-c97j/GHSA-fc9c-chwq-c97j.json index b4de4363b60..feaa72917a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc9c-chwq-c97j/GHSA-fc9c-chwq-c97j.json +++ b/advisories/unreviewed/2022/05/GHSA-fc9c-chwq-c97j/GHSA-fc9c-chwq-c97j.json @@ -7,12 +7,8 @@ "CVE-2021-28192" ], "details": "The specific function in ASUS BMC’s firmware Web management page (Remote video storage function) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffhc-mxrh-vv2p/GHSA-ffhc-mxrh-vv2p.json b/advisories/unreviewed/2022/05/GHSA-ffhc-mxrh-vv2p/GHSA-ffhc-mxrh-vv2p.json index 0d5df279b6a..168ac1bc3ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffhc-mxrh-vv2p/GHSA-ffhc-mxrh-vv2p.json +++ b/advisories/unreviewed/2022/05/GHSA-ffhc-mxrh-vv2p/GHSA-ffhc-mxrh-vv2p.json @@ -7,12 +7,8 @@ "CVE-2008-2894" ], "details": "Directory traversal vulnerability in the FTP client in NCH Software Classic FTP 1.02 for Windows allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a response to a LIST command, a related issue to CVE-2002-1345.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffjc-ccp9-8jjj/GHSA-ffjc-ccp9-8jjj.json b/advisories/unreviewed/2022/05/GHSA-ffjc-ccp9-8jjj/GHSA-ffjc-ccp9-8jjj.json index ee790bab076..cf6fac53032 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffjc-ccp9-8jjj/GHSA-ffjc-ccp9-8jjj.json +++ b/advisories/unreviewed/2022/05/GHSA-ffjc-ccp9-8jjj/GHSA-ffjc-ccp9-8jjj.json @@ -7,12 +7,8 @@ "CVE-2007-3091" ], "details": "Race condition in Microsoft Internet Explorer 6 SP1; 6 and 7 for Windows XP SP2 and SP3; 6 and 7 for Server 2003 SP2; 7 for Vista Gold, SP1, and SP2; and 7 for Server 2008 SP2 allows remote attackers to execute arbitrary code or perform other actions upon a page transition, with the permissions of the old page and the content of the new page, as demonstrated by setInterval functions that set location.href within a try/catch expression, aka the \"bait & switch vulnerability\" or \"Race Condition Cross-Domain Information Disclosure Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffjm-vf3c-hf85/GHSA-ffjm-vf3c-hf85.json b/advisories/unreviewed/2022/05/GHSA-ffjm-vf3c-hf85/GHSA-ffjm-vf3c-hf85.json index e34deb1c59b..ff08aec954c 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffjm-vf3c-hf85/GHSA-ffjm-vf3c-hf85.json +++ b/advisories/unreviewed/2022/05/GHSA-ffjm-vf3c-hf85/GHSA-ffjm-vf3c-hf85.json @@ -7,12 +7,8 @@ "CVE-2008-2649" ], "details": "Multiple PHP remote file inclusion vulnerabilities in DesktopOnNet 3 Beta allow remote attackers to execute arbitrary PHP code via a URL in the app_path parameter to (1) don3_requiem.don3app/don3_requiem.php and (2) frontpage.don3app/frontpage.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg47-8fhh-p6fc/GHSA-fg47-8fhh-p6fc.json b/advisories/unreviewed/2022/05/GHSA-fg47-8fhh-p6fc/GHSA-fg47-8fhh-p6fc.json index 3835307d377..46e01821b43 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg47-8fhh-p6fc/GHSA-fg47-8fhh-p6fc.json +++ b/advisories/unreviewed/2022/05/GHSA-fg47-8fhh-p6fc/GHSA-fg47-8fhh-p6fc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgfj-c256-6c84/GHSA-fgfj-c256-6c84.json b/advisories/unreviewed/2022/05/GHSA-fgfj-c256-6c84/GHSA-fgfj-c256-6c84.json index 5f19869aad9..06f663e0008 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgfj-c256-6c84/GHSA-fgfj-c256-6c84.json +++ b/advisories/unreviewed/2022/05/GHSA-fgfj-c256-6c84/GHSA-fgfj-c256-6c84.json @@ -7,12 +7,8 @@ "CVE-2020-10262" ], "details": "An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.58.10. Attackers can activate the failsafe mode during the boot process, and use the mi_console command cascaded by the SN code shown on the product to get the root shell password, and then the attacker can (i) read Wi-Fi SSID or password, (ii) read the dialogue text files between users and XIAOMI XIAOAI speaker Pro LX06, (iii) use Text-To-Speech tools pretend XIAOMI speakers' voice achieve social engineering attacks, (iv) eavesdrop on users and record what XIAOMI XIAOAI speaker Pro LX06 hears, (v) modify system files, (vi) use commands to send any IR code through IR emitter on XIAOMI XIAOAI Speaker Pro (LX06), (vii) stop voice assistant service, (viii) enable the XIAOMI XIAOAI Speaker Pro’s SSH or TELNET service as a backdoor, (IX) tamper with the router configuration of the router in the local area networks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgvr-vmvg-whg2/GHSA-fgvr-vmvg-whg2.json b/advisories/unreviewed/2022/05/GHSA-fgvr-vmvg-whg2/GHSA-fgvr-vmvg-whg2.json index 972950eed56..33629b93269 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgvr-vmvg-whg2/GHSA-fgvr-vmvg-whg2.json +++ b/advisories/unreviewed/2022/05/GHSA-fgvr-vmvg-whg2/GHSA-fgvr-vmvg-whg2.json @@ -7,12 +7,8 @@ "CVE-2008-2997" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Gravity Board X (GBX) 2.0 Beta allows remote attackers to inject arbitrary web script or HTML via the subject parameter in a postnewsubmit (aka create new thread) action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fh72-rfmx-8whj/GHSA-fh72-rfmx-8whj.json b/advisories/unreviewed/2022/05/GHSA-fh72-rfmx-8whj/GHSA-fh72-rfmx-8whj.json index 8b6ecb23b4c..d21c7d00b96 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh72-rfmx-8whj/GHSA-fh72-rfmx-8whj.json +++ b/advisories/unreviewed/2022/05/GHSA-fh72-rfmx-8whj/GHSA-fh72-rfmx-8whj.json @@ -7,12 +7,8 @@ "CVE-2008-3479" ], "details": "Heap-based buffer overflow in the Microsoft Message Queuing (MSMQ) service (mqsvc.exe) in Microsoft Windows 2000 SP4 allows remote attackers to read memory contents and execute arbitrary code via a crafted RPC call, related to improper processing of parameters to string APIs, aka \"Message Queuing Service Remote Code Execution Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjh4-c964-7cc5/GHSA-fjh4-c964-7cc5.json b/advisories/unreviewed/2022/05/GHSA-fjh4-c964-7cc5/GHSA-fjh4-c964-7cc5.json index 08184c1981f..abd3ba840d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjh4-c964-7cc5/GHSA-fjh4-c964-7cc5.json +++ b/advisories/unreviewed/2022/05/GHSA-fjh4-c964-7cc5/GHSA-fjh4-c964-7cc5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjhf-p3hr-pvv7/GHSA-fjhf-p3hr-pvv7.json b/advisories/unreviewed/2022/05/GHSA-fjhf-p3hr-pvv7/GHSA-fjhf-p3hr-pvv7.json index fc2cbcdfa4b..4bff1136eab 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjhf-p3hr-pvv7/GHSA-fjhf-p3hr-pvv7.json +++ b/advisories/unreviewed/2022/05/GHSA-fjhf-p3hr-pvv7/GHSA-fjhf-p3hr-pvv7.json @@ -7,12 +7,8 @@ "CVE-2021-25984" ], "details": "In Factor (App Framework & Headless CMS) forum plugin, versions v1.3.3 to v1.8.30, are vulnerable to stored Cross-Site Scripting (XSS) at the “post reply” section. An unauthenticated attacker can execute malicious JavaScript code and steal the session cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fm48-g92r-6m48/GHSA-fm48-g92r-6m48.json b/advisories/unreviewed/2022/05/GHSA-fm48-g92r-6m48/GHSA-fm48-g92r-6m48.json index d72a6c2c953..0f94c894fae 100644 --- a/advisories/unreviewed/2022/05/GHSA-fm48-g92r-6m48/GHSA-fm48-g92r-6m48.json +++ b/advisories/unreviewed/2022/05/GHSA-fm48-g92r-6m48/GHSA-fm48-g92r-6m48.json @@ -7,12 +7,8 @@ "CVE-2008-2973" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in chathead.php in MM Chat 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) sitename and (2) wmessage parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fmwm-hqvf-ch74/GHSA-fmwm-hqvf-ch74.json b/advisories/unreviewed/2022/05/GHSA-fmwm-hqvf-ch74/GHSA-fmwm-hqvf-ch74.json index 496cdd87a4c..529e7d7d007 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmwm-hqvf-ch74/GHSA-fmwm-hqvf-ch74.json +++ b/advisories/unreviewed/2022/05/GHSA-fmwm-hqvf-ch74/GHSA-fmwm-hqvf-ch74.json @@ -7,12 +7,8 @@ "CVE-2008-2629" ], "details": "SQL injection vulnerability in the LifeType (formerly pLog) module for Drupal allows remote attackers to execute arbitrary SQL commands via the albumId parameter in a ViewAlbum action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fprm-74q4-pj4w/GHSA-fprm-74q4-pj4w.json b/advisories/unreviewed/2022/05/GHSA-fprm-74q4-pj4w/GHSA-fprm-74q4-pj4w.json index 0ed64bfd582..8748cbf39ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-fprm-74q4-pj4w/GHSA-fprm-74q4-pj4w.json +++ b/advisories/unreviewed/2022/05/GHSA-fprm-74q4-pj4w/GHSA-fprm-74q4-pj4w.json @@ -7,12 +7,8 @@ "CVE-2008-2928" ], "details": "Multiple buffer overflows in the adminutil library in CGI applications in Red Hat Directory Server 7.1 before SP7 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted Accept-Language HTTP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fpxg-2rm2-vpj4/GHSA-fpxg-2rm2-vpj4.json b/advisories/unreviewed/2022/05/GHSA-fpxg-2rm2-vpj4/GHSA-fpxg-2rm2-vpj4.json index 888c6c423c9..f8d5be28488 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpxg-2rm2-vpj4/GHSA-fpxg-2rm2-vpj4.json +++ b/advisories/unreviewed/2022/05/GHSA-fpxg-2rm2-vpj4/GHSA-fpxg-2rm2-vpj4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fq6f-9mhj-9mhq/GHSA-fq6f-9mhj-9mhq.json b/advisories/unreviewed/2022/05/GHSA-fq6f-9mhj-9mhq/GHSA-fq6f-9mhj-9mhq.json index 1b9b707e1b0..19eb7c563a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq6f-9mhj-9mhq/GHSA-fq6f-9mhj-9mhq.json +++ b/advisories/unreviewed/2022/05/GHSA-fq6f-9mhj-9mhq/GHSA-fq6f-9mhj-9mhq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqgv-5vgp-2frw/GHSA-fqgv-5vgp-2frw.json b/advisories/unreviewed/2022/05/GHSA-fqgv-5vgp-2frw/GHSA-fqgv-5vgp-2frw.json index a6910610200..68a8048675b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqgv-5vgp-2frw/GHSA-fqgv-5vgp-2frw.json +++ b/advisories/unreviewed/2022/05/GHSA-fqgv-5vgp-2frw/GHSA-fqgv-5vgp-2frw.json @@ -7,12 +7,8 @@ "CVE-2020-8349" ], "details": "An internal security review has identified an unauthenticated remote code execution vulnerability in Cloud Networking Operating System (CNOS)’ optional REST API management interface. This interface is disabled by default and not vulnerable unless enabled. When enabled, it is only vulnerable where attached to a VRF and as allowed by defined ACLs. Lenovo strongly recommends upgrading to a non-vulnerable CNOS release. Where not possible, Lenovo recommends disabling the REST API management interface or restricting access to the management VRF and further limiting access to authorized management stations via ACL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqgv-6p4g-cc4p/GHSA-fqgv-6p4g-cc4p.json b/advisories/unreviewed/2022/05/GHSA-fqgv-6p4g-cc4p/GHSA-fqgv-6p4g-cc4p.json index 373196bb0e2..dfbdc93ddc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqgv-6p4g-cc4p/GHSA-fqgv-6p4g-cc4p.json +++ b/advisories/unreviewed/2022/05/GHSA-fqgv-6p4g-cc4p/GHSA-fqgv-6p4g-cc4p.json @@ -7,12 +7,8 @@ "CVE-2008-3045" ], "details": "Unspecified vulnerability in the Industry Database (aka Branchendatenbank pro_industrydb) extension 1.0.0 and earlier for TYPO3 has unknown impact and attack vectors related to \"Insufficient Verification of Data Authenticity.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-frw2-vw3f-v47q/GHSA-frw2-vw3f-v47q.json b/advisories/unreviewed/2022/05/GHSA-frw2-vw3f-v47q/GHSA-frw2-vw3f-v47q.json index f4931c2865d..ded885de146 100644 --- a/advisories/unreviewed/2022/05/GHSA-frw2-vw3f-v47q/GHSA-frw2-vw3f-v47q.json +++ b/advisories/unreviewed/2022/05/GHSA-frw2-vw3f-v47q/GHSA-frw2-vw3f-v47q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-frx4-39mr-82xv/GHSA-frx4-39mr-82xv.json b/advisories/unreviewed/2022/05/GHSA-frx4-39mr-82xv/GHSA-frx4-39mr-82xv.json index c6ff1d6b0a0..422a6a13267 100644 --- a/advisories/unreviewed/2022/05/GHSA-frx4-39mr-82xv/GHSA-frx4-39mr-82xv.json +++ b/advisories/unreviewed/2022/05/GHSA-frx4-39mr-82xv/GHSA-frx4-39mr-82xv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv5q-8pqq-9g92/GHSA-fv5q-8pqq-9g92.json b/advisories/unreviewed/2022/05/GHSA-fv5q-8pqq-9g92/GHSA-fv5q-8pqq-9g92.json index 94cd4b897f7..3ea73e3ba6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv5q-8pqq-9g92/GHSA-fv5q-8pqq-9g92.json +++ b/advisories/unreviewed/2022/05/GHSA-fv5q-8pqq-9g92/GHSA-fv5q-8pqq-9g92.json @@ -7,12 +7,8 @@ "CVE-2019-5182" ], "details": "An exploitable stack buffer overflow vulnerability vulnerability exists in the iocheckd service ‘I/O-Check’ functionality of WAGO PFC 200 Firmware version 03.02.02(14). An attacker can send a specially crafted packet to trigger the parsing of this cache file.The destination buffer sp+0x440 is overflowed with the call to sprintf() for any type values that are greater than 1024-len(‘/etc/config-tools/config_interfaces interface=X1 state=enabled config-type=‘) in length. A type value of length 0x3d9 will cause the service to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fv6g-wv47-2g94/GHSA-fv6g-wv47-2g94.json b/advisories/unreviewed/2022/05/GHSA-fv6g-wv47-2g94/GHSA-fv6g-wv47-2g94.json index 5bcd22fd546..4209e1d86fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv6g-wv47-2g94/GHSA-fv6g-wv47-2g94.json +++ b/advisories/unreviewed/2022/05/GHSA-fv6g-wv47-2g94/GHSA-fv6g-wv47-2g94.json @@ -7,12 +7,8 @@ "CVE-2008-2887" ], "details": "Directory traversal vulnerability in index.php in chaozz@work FubarForum 1.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv8w-wmhg-965x/GHSA-fv8w-wmhg-965x.json b/advisories/unreviewed/2022/05/GHSA-fv8w-wmhg-965x/GHSA-fv8w-wmhg-965x.json index 0f136adef50..b0f128aa8a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv8w-wmhg-965x/GHSA-fv8w-wmhg-965x.json +++ b/advisories/unreviewed/2022/05/GHSA-fv8w-wmhg-965x/GHSA-fv8w-wmhg-965x.json @@ -7,12 +7,8 @@ "CVE-2008-2810" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly identify the context of Windows shortcut files, which allows user-assisted remote attackers to bypass the Same Origin Policy via a crafted web site for which the user has previously saved a shortcut.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -164,9 +160,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fvf7-58x3-4492/GHSA-fvf7-58x3-4492.json b/advisories/unreviewed/2022/05/GHSA-fvf7-58x3-4492/GHSA-fvf7-58x3-4492.json index 2a94f7e5b07..17802916bf8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvf7-58x3-4492/GHSA-fvf7-58x3-4492.json +++ b/advisories/unreviewed/2022/05/GHSA-fvf7-58x3-4492/GHSA-fvf7-58x3-4492.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fvmw-j93h-3272/GHSA-fvmw-j93h-3272.json b/advisories/unreviewed/2022/05/GHSA-fvmw-j93h-3272/GHSA-fvmw-j93h-3272.json index 8d666f7252a..5479b246db6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvmw-j93h-3272/GHSA-fvmw-j93h-3272.json +++ b/advisories/unreviewed/2022/05/GHSA-fvmw-j93h-3272/GHSA-fvmw-j93h-3272.json @@ -7,12 +7,8 @@ "CVE-2021-24292" ], "details": "The Happy Addons for Elementor WordPress plugin before 2.24.0, Happy Addons Pro for Elementor WordPress plugin before 1.17.0 have a number of widgets that are vulnerable to stored Cross-Site Scripting(XSS) by lower-privileged users such as contributors, all via a similar method: The “Card” widget accepts a “title_tag” parameter. Although the element control lists a fixed set of possible html tags, it is possible to send a ‘save_builder’ request with the “heading_tag” set to “script”, and the actual “title” parameter set to JavaScript to be executed within the script tags added by the “heading_tag” parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fw2x-37cc-fvp5/GHSA-fw2x-37cc-fvp5.json b/advisories/unreviewed/2022/05/GHSA-fw2x-37cc-fvp5/GHSA-fw2x-37cc-fvp5.json index 24011cc542f..6947fcefbf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw2x-37cc-fvp5/GHSA-fw2x-37cc-fvp5.json +++ b/advisories/unreviewed/2022/05/GHSA-fw2x-37cc-fvp5/GHSA-fw2x-37cc-fvp5.json @@ -7,12 +7,8 @@ "CVE-2008-3178" ], "details": "Unrestricted file upload vulnerability in upload_pictures.php in WebXell Editor 0.1.3 allows remote attackers to execute arbitrary code by uploading a .php file with a jpeg content type, then accessing it via a direct request to the file in upload/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fw6q-gw8w-464v/GHSA-fw6q-gw8w-464v.json b/advisories/unreviewed/2022/05/GHSA-fw6q-gw8w-464v/GHSA-fw6q-gw8w-464v.json index 17dc0248ba3..297aad5659c 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw6q-gw8w-464v/GHSA-fw6q-gw8w-464v.json +++ b/advisories/unreviewed/2022/05/GHSA-fw6q-gw8w-464v/GHSA-fw6q-gw8w-464v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwqh-jqxf-956w/GHSA-fwqh-jqxf-956w.json b/advisories/unreviewed/2022/05/GHSA-fwqh-jqxf-956w/GHSA-fwqh-jqxf-956w.json index 7d9eaf00ad4..0af8ff3027f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwqh-jqxf-956w/GHSA-fwqh-jqxf-956w.json +++ b/advisories/unreviewed/2022/05/GHSA-fwqh-jqxf-956w/GHSA-fwqh-jqxf-956w.json @@ -7,12 +7,8 @@ "CVE-2008-3145" ], "details": "The fragment_add_work function in epan/reassemble.c in Wireshark 0.8.19 through 1.0.1 allows remote attackers to cause a denial of service (crash) via a series of fragmented packets with non-sequential fragmentation offset values, which lead to a buffer over-read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwv9-q69x-v7q2/GHSA-fwv9-q69x-v7q2.json b/advisories/unreviewed/2022/05/GHSA-fwv9-q69x-v7q2/GHSA-fwv9-q69x-v7q2.json index 41e8502397e..2ef4478c21c 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwv9-q69x-v7q2/GHSA-fwv9-q69x-v7q2.json +++ b/advisories/unreviewed/2022/05/GHSA-fwv9-q69x-v7q2/GHSA-fwv9-q69x-v7q2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fx4x-q794-whc6/GHSA-fx4x-q794-whc6.json b/advisories/unreviewed/2022/05/GHSA-fx4x-q794-whc6/GHSA-fx4x-q794-whc6.json index 9d4249d5bdc..dc45a2c79e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx4x-q794-whc6/GHSA-fx4x-q794-whc6.json +++ b/advisories/unreviewed/2022/05/GHSA-fx4x-q794-whc6/GHSA-fx4x-q794-whc6.json @@ -7,12 +7,8 @@ "CVE-2021-22669" ], "details": "Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxff-28gh-86mj/GHSA-fxff-28gh-86mj.json b/advisories/unreviewed/2022/05/GHSA-fxff-28gh-86mj/GHSA-fxff-28gh-86mj.json index 4e2626d8d0d..aff91276d99 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxff-28gh-86mj/GHSA-fxff-28gh-86mj.json +++ b/advisories/unreviewed/2022/05/GHSA-fxff-28gh-86mj/GHSA-fxff-28gh-86mj.json @@ -7,12 +7,8 @@ "CVE-2021-25982" ], "details": "In Factor (App Framework & Headless CMS) forum plugin, versions 1.3.5 to 1.8.30, are vulnerable to reflected Cross-Site Scripting (XSS) at the “search” parameter in the URL. An unauthenticated attacker can execute malicious JavaScript code and steal the session cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxq3-4vfx-993f/GHSA-fxq3-4vfx-993f.json b/advisories/unreviewed/2022/05/GHSA-fxq3-4vfx-993f/GHSA-fxq3-4vfx-993f.json index f5556823d77..8ce1146fc58 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxq3-4vfx-993f/GHSA-fxq3-4vfx-993f.json +++ b/advisories/unreviewed/2022/05/GHSA-fxq3-4vfx-993f/GHSA-fxq3-4vfx-993f.json @@ -7,12 +7,8 @@ "CVE-2020-5648" ], "details": "Improper neutralization of argument delimiters in a command ('Argument Injection') vulnerability in TCP/IP function included in the firmware of GT14 Model of GOT 1000 series (GT1455-QTBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QMBDE CoreOS version ’05.65.00.BD’ and earlier, GT1450-QLBDE CoreOS version ’05.65.00.BD’ and earlier, GT1455HS-QTBDE CoreOS version ’05.65.00.BD’ and earlier, and GT1450HS-QMBDE CoreOS version ’05.65.00.BD’ and earlier) allows unauthenticated attackers on adjacent network to stop the network functions of the products via a specially crafted packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxxv-cmpr-cvx2/GHSA-fxxv-cmpr-cvx2.json b/advisories/unreviewed/2022/05/GHSA-fxxv-cmpr-cvx2/GHSA-fxxv-cmpr-cvx2.json index 6c279ec0213..94e3fdf5b8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxxv-cmpr-cvx2/GHSA-fxxv-cmpr-cvx2.json +++ b/advisories/unreviewed/2022/05/GHSA-fxxv-cmpr-cvx2/GHSA-fxxv-cmpr-cvx2.json @@ -7,12 +7,8 @@ "CVE-2008-3140" ], "details": "The syslog dissector in Wireshark (formerly Ethereal) 1.0.0 allows remote attackers to cause a denial of service (application crash) via unknown vectors, possibly related to an \"incomplete SS7 MSU syslog encapsulated packet.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g22f-95g3-fg47/GHSA-g22f-95g3-fg47.json b/advisories/unreviewed/2022/05/GHSA-g22f-95g3-fg47/GHSA-g22f-95g3-fg47.json index 8762c7a63c3..285feb88c75 100644 --- a/advisories/unreviewed/2022/05/GHSA-g22f-95g3-fg47/GHSA-g22f-95g3-fg47.json +++ b/advisories/unreviewed/2022/05/GHSA-g22f-95g3-fg47/GHSA-g22f-95g3-fg47.json @@ -7,12 +7,8 @@ "CVE-2021-42703" ], "details": "This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage, and performing unintended browser action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g23j-wvjf-2p27/GHSA-g23j-wvjf-2p27.json b/advisories/unreviewed/2022/05/GHSA-g23j-wvjf-2p27/GHSA-g23j-wvjf-2p27.json index 55323a79888..f9f7f9ac298 100644 --- a/advisories/unreviewed/2022/05/GHSA-g23j-wvjf-2p27/GHSA-g23j-wvjf-2p27.json +++ b/advisories/unreviewed/2022/05/GHSA-g23j-wvjf-2p27/GHSA-g23j-wvjf-2p27.json @@ -7,12 +7,8 @@ "CVE-2008-2808" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly escape HTML in file:// URLs in directory listings, which allows remote attackers to conduct cross-site scripting (XSS) attacks or have unspecified other impact via a crafted filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2gm-pxjg-4f7v/GHSA-g2gm-pxjg-4f7v.json b/advisories/unreviewed/2022/05/GHSA-g2gm-pxjg-4f7v/GHSA-g2gm-pxjg-4f7v.json index ce6880e4a7d..322b0ffd0b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2gm-pxjg-4f7v/GHSA-g2gm-pxjg-4f7v.json +++ b/advisories/unreviewed/2022/05/GHSA-g2gm-pxjg-4f7v/GHSA-g2gm-pxjg-4f7v.json @@ -7,12 +7,8 @@ "CVE-2008-3177" ], "details": "Sophos virus detection engine 2.75 on Linux and Unix, as used in Sophos Email Appliance, Pure Message for Unix, and Sophos Anti-Virus Interface (SAVI), allows remote attackers to cause a denial of service (engine crash) via zero-length MIME attachments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g2hg-j8m2-ppxr/GHSA-g2hg-j8m2-ppxr.json b/advisories/unreviewed/2022/05/GHSA-g2hg-j8m2-ppxr/GHSA-g2hg-j8m2-ppxr.json index fedf24e597e..ea6c0cd5df8 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2hg-j8m2-ppxr/GHSA-g2hg-j8m2-ppxr.json +++ b/advisories/unreviewed/2022/05/GHSA-g2hg-j8m2-ppxr/GHSA-g2hg-j8m2-ppxr.json @@ -7,12 +7,8 @@ "CVE-2020-14315" ], "details": "A memory corruption vulnerability is present in bspatch as shipped in Colin Percival’s bsdiff tools version 4.3. Insufficient checks when handling external inputs allows an attacker to bypass the sanity checks in place and write out of a dynamically allocated buffer boundaries.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2rh-3q72-5cq4/GHSA-g2rh-3q72-5cq4.json b/advisories/unreviewed/2022/05/GHSA-g2rh-3q72-5cq4/GHSA-g2rh-3q72-5cq4.json index 650101191f4..6f6964896a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2rh-3q72-5cq4/GHSA-g2rh-3q72-5cq4.json +++ b/advisories/unreviewed/2022/05/GHSA-g2rh-3q72-5cq4/GHSA-g2rh-3q72-5cq4.json @@ -7,12 +7,8 @@ "CVE-2021-21488" ], "details": "Knowledge Management versions 7.01, 7.02, 7.30, 7.31, 7.40, 7.50 allows a remote attacker with basic privileges to deserialize user-controlled data without verification, leading to insecure deserialization which triggers the attacker’s code, therefore impacting Availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g35v-3fjw-w5pj/GHSA-g35v-3fjw-w5pj.json b/advisories/unreviewed/2022/05/GHSA-g35v-3fjw-w5pj/GHSA-g35v-3fjw-w5pj.json index 414c7149b00..4665dcccf0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g35v-3fjw-w5pj/GHSA-g35v-3fjw-w5pj.json +++ b/advisories/unreviewed/2022/05/GHSA-g35v-3fjw-w5pj/GHSA-g35v-3fjw-w5pj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3jh-qj7f-284p/GHSA-g3jh-qj7f-284p.json b/advisories/unreviewed/2022/05/GHSA-g3jh-qj7f-284p/GHSA-g3jh-qj7f-284p.json index ad42c7b3198..5402eef0235 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3jh-qj7f-284p/GHSA-g3jh-qj7f-284p.json +++ b/advisories/unreviewed/2022/05/GHSA-g3jh-qj7f-284p/GHSA-g3jh-qj7f-284p.json @@ -7,12 +7,8 @@ "CVE-2008-3149" ], "details": "The SNMP daemon in the F5 FirePass 1200 6.0.2 hotfix 3 allows remote attackers to cause a denial of service (daemon crash) by walking the hrSWInstalled OID branch in HOST-RESOURCES-MIB.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3qc-wqfg-m6jq/GHSA-g3qc-wqfg-m6jq.json b/advisories/unreviewed/2022/05/GHSA-g3qc-wqfg-m6jq/GHSA-g3qc-wqfg-m6jq.json index 522b9957cc0..61263a9286f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3qc-wqfg-m6jq/GHSA-g3qc-wqfg-m6jq.json +++ b/advisories/unreviewed/2022/05/GHSA-g3qc-wqfg-m6jq/GHSA-g3qc-wqfg-m6jq.json @@ -7,12 +7,8 @@ "CVE-2008-3170" ], "details": "Apple Safari allows web sites to set cookies for country-specific top-level domains, such as co.uk and com.au, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session, aka \"Cross-Site Cooking,\" a related issue to CVE-2004-0746, CVE-2004-0866, and CVE-2004-0867.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g44h-jfwm-hrw7/GHSA-g44h-jfwm-hrw7.json b/advisories/unreviewed/2022/05/GHSA-g44h-jfwm-hrw7/GHSA-g44h-jfwm-hrw7.json index 13daeea7396..58c812b64fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-g44h-jfwm-hrw7/GHSA-g44h-jfwm-hrw7.json +++ b/advisories/unreviewed/2022/05/GHSA-g44h-jfwm-hrw7/GHSA-g44h-jfwm-hrw7.json @@ -7,12 +7,8 @@ "CVE-2008-2641" ], "details": "Unspecified vulnerability in Adobe Reader and Acrobat 7.0.9 and earlier, and 8.0 through 8.1.2, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors, related to an \"input validation issue in a JavaScript method.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4qp-4jm9-8cv6/GHSA-g4qp-4jm9-8cv6.json b/advisories/unreviewed/2022/05/GHSA-g4qp-4jm9-8cv6/GHSA-g4qp-4jm9-8cv6.json index 6c9a7c66b07..301e64fa067 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4qp-4jm9-8cv6/GHSA-g4qp-4jm9-8cv6.json +++ b/advisories/unreviewed/2022/05/GHSA-g4qp-4jm9-8cv6/GHSA-g4qp-4jm9-8cv6.json @@ -7,12 +7,8 @@ "CVE-2008-2706" ], "details": "Unspecified vulnerability in the event port implementation in Sun Solaris 10 allows local users to cause a denial of service (panic) by submitting and retrieving user-defined events, probably related to a NULL dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4x2-jqmh-jhvf/GHSA-g4x2-jqmh-jhvf.json b/advisories/unreviewed/2022/05/GHSA-g4x2-jqmh-jhvf/GHSA-g4x2-jqmh-jhvf.json index 9a96c288e4b..4fc6431d931 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4x2-jqmh-jhvf/GHSA-g4x2-jqmh-jhvf.json +++ b/advisories/unreviewed/2022/05/GHSA-g4x2-jqmh-jhvf/GHSA-g4x2-jqmh-jhvf.json @@ -7,12 +7,8 @@ "CVE-2008-2866" ], "details": "SQL injection vulnerability in csc_article_details.php in Caupo.net CaupoShop Classic 1.3 allows remote attackers to execute arbitrary SQL commands via the saArticle[ID] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5hv-2cgx-v479/GHSA-g5hv-2cgx-v479.json b/advisories/unreviewed/2022/05/GHSA-g5hv-2cgx-v479/GHSA-g5hv-2cgx-v479.json index d4f9567634d..d0ed0980759 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5hv-2cgx-v479/GHSA-g5hv-2cgx-v479.json +++ b/advisories/unreviewed/2022/05/GHSA-g5hv-2cgx-v479/GHSA-g5hv-2cgx-v479.json @@ -7,12 +7,8 @@ "CVE-2020-15788" ], "details": "A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web application does not filter user input in a way that prevents Cross-Site Scripting. If a user is enticed into passing specially crafted, malicious input to the web client (e.g. by clicking on a malicious URL with embedded JavaScript), then JavaScript code can be returned and may then be executed by the user’s client. Various actions could be triggered by running malicious JavaScript code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g67v-2hj4-m27f/GHSA-g67v-2hj4-m27f.json b/advisories/unreviewed/2022/05/GHSA-g67v-2hj4-m27f/GHSA-g67v-2hj4-m27f.json index bbf06b3f1c4..650476f01b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-g67v-2hj4-m27f/GHSA-g67v-2hj4-m27f.json +++ b/advisories/unreviewed/2022/05/GHSA-g67v-2hj4-m27f/GHSA-g67v-2hj4-m27f.json @@ -7,12 +7,8 @@ "CVE-2008-3083" ], "details": "SQL injection vulnerability in Brightcode Weblinks (com_brightweblinks) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g6ph-6cq5-3xgm/GHSA-g6ph-6cq5-3xgm.json b/advisories/unreviewed/2022/05/GHSA-g6ph-6cq5-3xgm/GHSA-g6ph-6cq5-3xgm.json index 8c382ecd932..a97eca886e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6ph-6cq5-3xgm/GHSA-g6ph-6cq5-3xgm.json +++ b/advisories/unreviewed/2022/05/GHSA-g6ph-6cq5-3xgm/GHSA-g6ph-6cq5-3xgm.json @@ -7,12 +7,8 @@ "CVE-2008-2752" ], "details": "Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .doc file. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g6qh-xx4v-9c9p/GHSA-g6qh-xx4v-9c9p.json b/advisories/unreviewed/2022/05/GHSA-g6qh-xx4v-9c9p/GHSA-g6qh-xx4v-9c9p.json index ac6399f29b8..5a7a86aea53 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6qh-xx4v-9c9p/GHSA-g6qh-xx4v-9c9p.json +++ b/advisories/unreviewed/2022/05/GHSA-g6qh-xx4v-9c9p/GHSA-g6qh-xx4v-9c9p.json @@ -7,12 +7,8 @@ "CVE-2008-2722" ], "details": "Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g72w-p563-r83r/GHSA-g72w-p563-r83r.json b/advisories/unreviewed/2022/05/GHSA-g72w-p563-r83r/GHSA-g72w-p563-r83r.json index 259a9f216c2..b786703293b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g72w-p563-r83r/GHSA-g72w-p563-r83r.json +++ b/advisories/unreviewed/2022/05/GHSA-g72w-p563-r83r/GHSA-g72w-p563-r83r.json @@ -7,12 +7,8 @@ "CVE-2018-6447" ], "details": "A Reflective XSS Vulnerability in HTTP Management Interface in Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, v7.4.2g could allow authenticated attackers with access to the web interface to hijack a user’s session and take over the account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g75f-42vw-m3xv/GHSA-g75f-42vw-m3xv.json b/advisories/unreviewed/2022/05/GHSA-g75f-42vw-m3xv/GHSA-g75f-42vw-m3xv.json index 171c928accb..9c27bde9ff1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g75f-42vw-m3xv/GHSA-g75f-42vw-m3xv.json +++ b/advisories/unreviewed/2022/05/GHSA-g75f-42vw-m3xv/GHSA-g75f-42vw-m3xv.json @@ -7,12 +7,8 @@ "CVE-2008-3109" ], "details": "Unspecified vulnerability in scripting language support in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier allows context-dependent attackers to gain privileges via an untrusted (1) application or (2) applet, as demonstrated by an application or applet that grants itself privileges to (a) read local files, (b) write to local files, or (c) execute local programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -132,9 +128,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g864-c2g5-ph57/GHSA-g864-c2g5-ph57.json b/advisories/unreviewed/2022/05/GHSA-g864-c2g5-ph57/GHSA-g864-c2g5-ph57.json index f52c9eeec61..095d3812935 100644 --- a/advisories/unreviewed/2022/05/GHSA-g864-c2g5-ph57/GHSA-g864-c2g5-ph57.json +++ b/advisories/unreviewed/2022/05/GHSA-g864-c2g5-ph57/GHSA-g864-c2g5-ph57.json @@ -7,12 +7,8 @@ "CVE-2008-2977" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Ourvideo CMS 9.5 allow remote attackers to execute arbitrary PHP code via a URL in the include_connection parameter to (1) edit_top_feature.php and (2) edit_topics_feature.php in phpi/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g87c-rc5c-2p9f/GHSA-g87c-rc5c-2p9f.json b/advisories/unreviewed/2022/05/GHSA-g87c-rc5c-2p9f/GHSA-g87c-rc5c-2p9f.json index a50da34baed..a682e9497da 100644 --- a/advisories/unreviewed/2022/05/GHSA-g87c-rc5c-2p9f/GHSA-g87c-rc5c-2p9f.json +++ b/advisories/unreviewed/2022/05/GHSA-g87c-rc5c-2p9f/GHSA-g87c-rc5c-2p9f.json @@ -7,12 +7,8 @@ "CVE-2008-2780" ], "details": "The Anubis (aka Anubis+Ripe160) plugin before 1.3 for encrypt stores the unencrypted file's size in cleartext in the header of the encrypted file, which allows attackers to distinguish between encrypted data and random padding at the end of the encrypted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g883-f564-phwg/GHSA-g883-f564-phwg.json b/advisories/unreviewed/2022/05/GHSA-g883-f564-phwg/GHSA-g883-f564-phwg.json index f20ad792982..54d7a637dec 100644 --- a/advisories/unreviewed/2022/05/GHSA-g883-f564-phwg/GHSA-g883-f564-phwg.json +++ b/advisories/unreviewed/2022/05/GHSA-g883-f564-phwg/GHSA-g883-f564-phwg.json @@ -7,12 +7,8 @@ "CVE-2008-3179" ], "details": "Directory traversal vulnerability in website.php in Web 2 Business (W2B) phpDatingClub (aka Dating Club) 3.7 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g8h5-wv99-85v5/GHSA-g8h5-wv99-85v5.json b/advisories/unreviewed/2022/05/GHSA-g8h5-wv99-85v5/GHSA-g8h5-wv99-85v5.json index 8bc222f2f39..a0938940c97 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8h5-wv99-85v5/GHSA-g8h5-wv99-85v5.json +++ b/advisories/unreviewed/2022/05/GHSA-g8h5-wv99-85v5/GHSA-g8h5-wv99-85v5.json @@ -7,12 +7,8 @@ "CVE-2008-2620" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2621, and CVE-2008-2622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8wh-vch5-x6pw/GHSA-g8wh-vch5-x6pw.json b/advisories/unreviewed/2022/05/GHSA-g8wh-vch5-x6pw/GHSA-g8wh-vch5-x6pw.json index ec5bf1d6716..13ee24e5513 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8wh-vch5-x6pw/GHSA-g8wh-vch5-x6pw.json +++ b/advisories/unreviewed/2022/05/GHSA-g8wh-vch5-x6pw/GHSA-g8wh-vch5-x6pw.json @@ -7,12 +7,8 @@ "CVE-2021-24185" ], "details": "The tutor_place_rating AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.7.7 was vulnerable to blind and time based SQL injections that could be exploited by students.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9wm-m86j-f72h/GHSA-g9wm-m86j-f72h.json b/advisories/unreviewed/2022/05/GHSA-g9wm-m86j-f72h/GHSA-g9wm-m86j-f72h.json index 9bb5d893dff..caa697bdbe0 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9wm-m86j-f72h/GHSA-g9wm-m86j-f72h.json +++ b/advisories/unreviewed/2022/05/GHSA-g9wm-m86j-f72h/GHSA-g9wm-m86j-f72h.json @@ -7,12 +7,8 @@ "CVE-2008-2622" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, and CVE-2008-2621.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g9wx-8wph-hmgw/GHSA-g9wx-8wph-hmgw.json b/advisories/unreviewed/2022/05/GHSA-g9wx-8wph-hmgw/GHSA-g9wx-8wph-hmgw.json index d8743dfe917..40e834538bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9wx-8wph-hmgw/GHSA-g9wx-8wph-hmgw.json +++ b/advisories/unreviewed/2022/05/GHSA-g9wx-8wph-hmgw/GHSA-g9wx-8wph-hmgw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gc6g-q4xc-587g/GHSA-gc6g-q4xc-587g.json b/advisories/unreviewed/2022/05/GHSA-gc6g-q4xc-587g/GHSA-gc6g-q4xc-587g.json index ef08c4d176e..bf881fd4a6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc6g-q4xc-587g/GHSA-gc6g-q4xc-587g.json +++ b/advisories/unreviewed/2022/05/GHSA-gc6g-q4xc-587g/GHSA-gc6g-q4xc-587g.json @@ -7,12 +7,8 @@ "CVE-2021-28176" ], "details": "The DNS configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcfx-wr8q-hc44/GHSA-gcfx-wr8q-hc44.json b/advisories/unreviewed/2022/05/GHSA-gcfx-wr8q-hc44/GHSA-gcfx-wr8q-hc44.json index 188e6db1490..f6e3229970c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcfx-wr8q-hc44/GHSA-gcfx-wr8q-hc44.json +++ b/advisories/unreviewed/2022/05/GHSA-gcfx-wr8q-hc44/GHSA-gcfx-wr8q-hc44.json @@ -7,12 +7,8 @@ "CVE-2008-2645" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Brim (formerly Booby) 1.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the renderer parameter to template.tpl.php in (1) barrel/, (2) barry/, (3) mylook/, (4) oerdec/, (5) penguin/, (6) sidebar/, (7) slashdot/, and (8) text-only/ in templates/. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcgq-25hp-55pm/GHSA-gcgq-25hp-55pm.json b/advisories/unreviewed/2022/05/GHSA-gcgq-25hp-55pm/GHSA-gcgq-25hp-55pm.json index 74a1439f8ec..4a22f069252 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcgq-25hp-55pm/GHSA-gcgq-25hp-55pm.json +++ b/advisories/unreviewed/2022/05/GHSA-gcgq-25hp-55pm/GHSA-gcgq-25hp-55pm.json @@ -7,12 +7,8 @@ "CVE-2008-3094" ], "details": "The Organic Groups (OG) module 5.x before 5.x-7.3 and 6.x before 6.x-1.0-RC1, a module for Drupal, allows remote attackers to obtain sensitive information (private group names) via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcjc-g9wr-67f2/GHSA-gcjc-g9wr-67f2.json b/advisories/unreviewed/2022/05/GHSA-gcjc-g9wr-67f2/GHSA-gcjc-g9wr-67f2.json index 2c7475ccc5a..518c7a38c22 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcjc-g9wr-67f2/GHSA-gcjc-g9wr-67f2.json +++ b/advisories/unreviewed/2022/05/GHSA-gcjc-g9wr-67f2/GHSA-gcjc-g9wr-67f2.json @@ -7,12 +7,8 @@ "CVE-2008-2801" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly implement JAR signing, which allows remote attackers to execute arbitrary code via (1) injection of JavaScript into documents within a JAR archive or (2) a JAR archive that uses relative URLs to JavaScript files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gf43-jcc9-q7jf/GHSA-gf43-jcc9-q7jf.json b/advisories/unreviewed/2022/05/GHSA-gf43-jcc9-q7jf/GHSA-gf43-jcc9-q7jf.json index b5469bb359f..230c75e6458 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf43-jcc9-q7jf/GHSA-gf43-jcc9-q7jf.json +++ b/advisories/unreviewed/2022/05/GHSA-gf43-jcc9-q7jf/GHSA-gf43-jcc9-q7jf.json @@ -7,12 +7,8 @@ "CVE-2008-3102" ], "details": "Mantis 1.1.x through 1.1.2 and 1.2.x through 1.2.0a2 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gfh5-jm3w-g7pr/GHSA-gfh5-jm3w-g7pr.json b/advisories/unreviewed/2022/05/GHSA-gfh5-jm3w-g7pr/GHSA-gfh5-jm3w-g7pr.json index fa19d4e9b4c..7a9f6e5cd3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfh5-jm3w-g7pr/GHSA-gfh5-jm3w-g7pr.json +++ b/advisories/unreviewed/2022/05/GHSA-gfh5-jm3w-g7pr/GHSA-gfh5-jm3w-g7pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfqx-vp9r-hwg6/GHSA-gfqx-vp9r-hwg6.json b/advisories/unreviewed/2022/05/GHSA-gfqx-vp9r-hwg6/GHSA-gfqx-vp9r-hwg6.json index 6bf2ac89955..298a35a116c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfqx-vp9r-hwg6/GHSA-gfqx-vp9r-hwg6.json +++ b/advisories/unreviewed/2022/05/GHSA-gfqx-vp9r-hwg6/GHSA-gfqx-vp9r-hwg6.json @@ -7,12 +7,8 @@ "CVE-2008-2733" ], "details": "Cisco PIX and Adaptive Security Appliance (ASA) 5500 devices 7.2 before 7.2(4)2, 8.0 before 8.0(3)14, and 8.1 before 8.1(1)4, when configured as a client VPN endpoint, do not properly process IPSec client authentication, which allows remote attackers to cause a denial of service (device reload) via a crafted authentication attempt, aka Bug ID CSCso69942.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gg5v-54h4-pcp8/GHSA-gg5v-54h4-pcp8.json b/advisories/unreviewed/2022/05/GHSA-gg5v-54h4-pcp8/GHSA-gg5v-54h4-pcp8.json index f2f09aae52f..71cf0469ec5 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg5v-54h4-pcp8/GHSA-gg5v-54h4-pcp8.json +++ b/advisories/unreviewed/2022/05/GHSA-gg5v-54h4-pcp8/GHSA-gg5v-54h4-pcp8.json @@ -7,12 +7,8 @@ "CVE-2008-2858" ], "details": "SQL injection vulnerability in index.php in WebChamado 1.1 allows remote attackers to execute arbitrary SQL commands via the eml parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gh4f-5wmx-wwgh/GHSA-gh4f-5wmx-wwgh.json b/advisories/unreviewed/2022/05/GHSA-gh4f-5wmx-wwgh/GHSA-gh4f-5wmx-wwgh.json index d9750429d18..1a855c51ca3 100644 --- a/advisories/unreviewed/2022/05/GHSA-gh4f-5wmx-wwgh/GHSA-gh4f-5wmx-wwgh.json +++ b/advisories/unreviewed/2022/05/GHSA-gh4f-5wmx-wwgh/GHSA-gh4f-5wmx-wwgh.json @@ -7,12 +7,8 @@ "CVE-2008-2650" ], "details": "Directory traversal vulnerability in cmsimple/cms.php in CMSimple 3.1, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the sl parameter to index.php. NOTE: this can be leveraged for remote file execution by including adm.php and then invoking the upload action. NOTE: on 20080601, the vendor patched 3.1 without changing the version number.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghg7-vhxc-mhv7/GHSA-ghg7-vhxc-mhv7.json b/advisories/unreviewed/2022/05/GHSA-ghg7-vhxc-mhv7/GHSA-ghg7-vhxc-mhv7.json index 9d7216aa16e..ab8ffc8c786 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghg7-vhxc-mhv7/GHSA-ghg7-vhxc-mhv7.json +++ b/advisories/unreviewed/2022/05/GHSA-ghg7-vhxc-mhv7/GHSA-ghg7-vhxc-mhv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gjc9-vw3q-w437/GHSA-gjc9-vw3q-w437.json b/advisories/unreviewed/2022/05/GHSA-gjc9-vw3q-w437/GHSA-gjc9-vw3q-w437.json index caf0e4fbb77..239904fdc9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjc9-vw3q-w437/GHSA-gjc9-vw3q-w437.json +++ b/advisories/unreviewed/2022/05/GHSA-gjc9-vw3q-w437/GHSA-gjc9-vw3q-w437.json @@ -7,12 +7,8 @@ "CVE-2020-5331" ], "details": "RSA Archer, versions prior to 6.7 P3 (6.7.0.3), contain an information exposure vulnerability. Users’ session information could potentially be stored in cache or log files. An authenticated malicious local user with access to the log files may obtain the exposed information to use it in further attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gjr5-grmx-f66w/GHSA-gjr5-grmx-f66w.json b/advisories/unreviewed/2022/05/GHSA-gjr5-grmx-f66w/GHSA-gjr5-grmx-f66w.json index 5b67fbe6bec..79d335133a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjr5-grmx-f66w/GHSA-gjr5-grmx-f66w.json +++ b/advisories/unreviewed/2022/05/GHSA-gjr5-grmx-f66w/GHSA-gjr5-grmx-f66w.json @@ -7,12 +7,8 @@ "CVE-2008-2624" ], "details": "Unspecified vulnerability in the Oracle OLAP component in Oracle Database 10.1.0.5 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gm62-vfww-h3xp/GHSA-gm62-vfww-h3xp.json b/advisories/unreviewed/2022/05/GHSA-gm62-vfww-h3xp/GHSA-gm62-vfww-h3xp.json index 4058f2ca2e2..e424ce0d5b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-gm62-vfww-h3xp/GHSA-gm62-vfww-h3xp.json +++ b/advisories/unreviewed/2022/05/GHSA-gm62-vfww-h3xp/GHSA-gm62-vfww-h3xp.json @@ -7,12 +7,8 @@ "CVE-2020-3873" ], "details": "This issue was addressed with improved setting propagation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1. Turning off \"Load remote content in messages” may not apply to all mail previews.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmcr-cvch-ppg6/GHSA-gmcr-cvch-ppg6.json b/advisories/unreviewed/2022/05/GHSA-gmcr-cvch-ppg6/GHSA-gmcr-cvch-ppg6.json index 26dd723c1e1..b300d2956e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmcr-cvch-ppg6/GHSA-gmcr-cvch-ppg6.json +++ b/advisories/unreviewed/2022/05/GHSA-gmcr-cvch-ppg6/GHSA-gmcr-cvch-ppg6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmhg-6h4v-m38c/GHSA-gmhg-6h4v-m38c.json b/advisories/unreviewed/2022/05/GHSA-gmhg-6h4v-m38c/GHSA-gmhg-6h4v-m38c.json index c90624e204f..a7b42b0492d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmhg-6h4v-m38c/GHSA-gmhg-6h4v-m38c.json +++ b/advisories/unreviewed/2022/05/GHSA-gmhg-6h4v-m38c/GHSA-gmhg-6h4v-m38c.json @@ -7,12 +7,8 @@ "CVE-2008-2857" ], "details": "AlstraSoft AskMe Pro 2.1 and earlier stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmmg-mg5x-45rp/GHSA-gmmg-mg5x-45rp.json b/advisories/unreviewed/2022/05/GHSA-gmmg-mg5x-45rp/GHSA-gmmg-mg5x-45rp.json index b8e441527a2..7179b9f75aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmmg-mg5x-45rp/GHSA-gmmg-mg5x-45rp.json +++ b/advisories/unreviewed/2022/05/GHSA-gmmg-mg5x-45rp/GHSA-gmmg-mg5x-45rp.json @@ -7,12 +7,8 @@ "CVE-2021-22098" ], "details": "UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmpc-xgf5-4prf/GHSA-gmpc-xgf5-4prf.json b/advisories/unreviewed/2022/05/GHSA-gmpc-xgf5-4prf/GHSA-gmpc-xgf5-4prf.json index d130e1d3876..e61754fce79 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmpc-xgf5-4prf/GHSA-gmpc-xgf5-4prf.json +++ b/advisories/unreviewed/2022/05/GHSA-gmpc-xgf5-4prf/GHSA-gmpc-xgf5-4prf.json @@ -7,12 +7,8 @@ "CVE-2008-3180" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in upload/file/language_menu.php in ContentNow CMS 1.4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) pageid parameter or (2) PATH_INFO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gp6r-4r54-hf2x/GHSA-gp6r-4r54-hf2x.json b/advisories/unreviewed/2022/05/GHSA-gp6r-4r54-hf2x/GHSA-gp6r-4r54-hf2x.json index 096ffc7d1b3..c3316230148 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp6r-4r54-hf2x/GHSA-gp6r-4r54-hf2x.json +++ b/advisories/unreviewed/2022/05/GHSA-gp6r-4r54-hf2x/GHSA-gp6r-4r54-hf2x.json @@ -7,12 +7,8 @@ "CVE-2008-2745" ], "details": "Stack-based buffer overflow in BiAnno ActiveX Control (BiAnno.ocx) in Black Ice Software Annotation Plugin 10.95 allows remote attackers to execute arbitrary code via a long parameter to the AnnoSaveToTiff method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpvf-c684-3rmh/GHSA-gpvf-c684-3rmh.json b/advisories/unreviewed/2022/05/GHSA-gpvf-c684-3rmh/GHSA-gpvf-c684-3rmh.json index 30a18dcf937..3ed68d5b580 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpvf-c684-3rmh/GHSA-gpvf-c684-3rmh.json +++ b/advisories/unreviewed/2022/05/GHSA-gpvf-c684-3rmh/GHSA-gpvf-c684-3rmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpw6-2q4r-p826/GHSA-gpw6-2q4r-p826.json b/advisories/unreviewed/2022/05/GHSA-gpw6-2q4r-p826/GHSA-gpw6-2q4r-p826.json index 12cddf88cb8..47465392902 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpw6-2q4r-p826/GHSA-gpw6-2q4r-p826.json +++ b/advisories/unreviewed/2022/05/GHSA-gpw6-2q4r-p826/GHSA-gpw6-2q4r-p826.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gq6p-fh2m-44wj/GHSA-gq6p-fh2m-44wj.json b/advisories/unreviewed/2022/05/GHSA-gq6p-fh2m-44wj/GHSA-gq6p-fh2m-44wj.json index e65e45d4fe8..2794d1eea0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq6p-fh2m-44wj/GHSA-gq6p-fh2m-44wj.json +++ b/advisories/unreviewed/2022/05/GHSA-gq6p-fh2m-44wj/GHSA-gq6p-fh2m-44wj.json @@ -7,12 +7,8 @@ "CVE-2008-2673" ], "details": "SQL injection vulnerability in index.php in Powie pNews 2.08 and 2.10, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the shownews parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqjp-r446-ff55/GHSA-gqjp-r446-ff55.json b/advisories/unreviewed/2022/05/GHSA-gqjp-r446-ff55/GHSA-gqjp-r446-ff55.json index 189624e4d7a..87410039c82 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqjp-r446-ff55/GHSA-gqjp-r446-ff55.json +++ b/advisories/unreviewed/2022/05/GHSA-gqjp-r446-ff55/GHSA-gqjp-r446-ff55.json @@ -7,12 +7,8 @@ "CVE-2021-22741" ], "details": "Use of Password Hash with Insufficient Computational Effort vulnerability exists in ClearSCADA (all versions), EcoStruxure Geo SCADA Expert 2019 (all versions), and EcoStruxure Geo SCADA Expert 2020 (V83.7742.1 and prior), which could cause the revealing of account credentials when server database files are available. Exposure of these files to an attacker can make the system vulnerable to password decryption attacks. Note that “.sde” configuration export files do not contain user account password hashes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqm6-mm85-h8ch/GHSA-gqm6-mm85-h8ch.json b/advisories/unreviewed/2022/05/GHSA-gqm6-mm85-h8ch/GHSA-gqm6-mm85-h8ch.json index 813eb085e5f..06d11a24707 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqm6-mm85-h8ch/GHSA-gqm6-mm85-h8ch.json +++ b/advisories/unreviewed/2022/05/GHSA-gqm6-mm85-h8ch/GHSA-gqm6-mm85-h8ch.json @@ -7,12 +7,8 @@ "CVE-2008-2849" ], "details": "Cross-site scripting (XSS) vulnerability in the TrailScout module 5.x before 5.x-1.4 for Drupal allows remote authenticated users, with create post permissions, to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gr6j-5w7g-m5v2/GHSA-gr6j-5w7g-m5v2.json b/advisories/unreviewed/2022/05/GHSA-gr6j-5w7g-m5v2/GHSA-gr6j-5w7g-m5v2.json index a7a316ee74d..7da9936a22a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr6j-5w7g-m5v2/GHSA-gr6j-5w7g-m5v2.json +++ b/advisories/unreviewed/2022/05/GHSA-gr6j-5w7g-m5v2/GHSA-gr6j-5w7g-m5v2.json @@ -7,12 +7,8 @@ "CVE-2021-33545" ], "details": "Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow condition in the counter parameter which may allow an attacker to remotely execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gr6x-gf4c-24g4/GHSA-gr6x-gf4c-24g4.json b/advisories/unreviewed/2022/05/GHSA-gr6x-gf4c-24g4/GHSA-gr6x-gf4c-24g4.json index 97a2252c047..637d817195c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr6x-gf4c-24g4/GHSA-gr6x-gf4c-24g4.json +++ b/advisories/unreviewed/2022/05/GHSA-gr6x-gf4c-24g4/GHSA-gr6x-gf4c-24g4.json @@ -7,12 +7,8 @@ "CVE-2021-22789" ], "details": "A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability that could cause a Denial of Service on the Modicon PLC controller / simulator when updating the controller application with a specially crafted project file exists in Modicon M580 CPU (part numbers BMEP* and BMEH*, all versions), Modicon M340 CPU (part numbers BMXP34*, all versions), Modicon MC80 (part numbers BMKC80*, all versions), Modicon Momentum Ethernet CPU (part numbers 171CBU*, all versions), PLC Simulator for EcoStruxureª Control Expert, including all Unity Pro versions (former name of EcoStruxureª Control Expert, all versions), PLC Simulator for EcoStruxureª Process Expert including all HDCS versions (former name of EcoStruxureª Process Expert, all versions), Modicon Quantum CPU (part numbers 140CPU*, all versions), Modicon Premium CPU (part numbers TSXP5*, all versions).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grfq-486p-2f5m/GHSA-grfq-486p-2f5m.json b/advisories/unreviewed/2022/05/GHSA-grfq-486p-2f5m/GHSA-grfq-486p-2f5m.json index eaa8a865fe1..0de3488df43 100644 --- a/advisories/unreviewed/2022/05/GHSA-grfq-486p-2f5m/GHSA-grfq-486p-2f5m.json +++ b/advisories/unreviewed/2022/05/GHSA-grfq-486p-2f5m/GHSA-grfq-486p-2f5m.json @@ -7,12 +7,8 @@ "CVE-2021-28175" ], "details": "The Radius configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grpg-9h7c-ff7x/GHSA-grpg-9h7c-ff7x.json b/advisories/unreviewed/2022/05/GHSA-grpg-9h7c-ff7x/GHSA-grpg-9h7c-ff7x.json index 1faa9f74a27..f646380632c 100644 --- a/advisories/unreviewed/2022/05/GHSA-grpg-9h7c-ff7x/GHSA-grpg-9h7c-ff7x.json +++ b/advisories/unreviewed/2022/05/GHSA-grpg-9h7c-ff7x/GHSA-grpg-9h7c-ff7x.json @@ -7,12 +7,8 @@ "CVE-2021-42701" ], "details": "An attacker could prepare a specially crafted project file that, if opened, would attempt to connect to the cloud and trigger a man in the middle (MiTM) attack. This could allow an attacker to obtain credentials and take over the user’s cloud account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gv3c-929j-rc7p/GHSA-gv3c-929j-rc7p.json b/advisories/unreviewed/2022/05/GHSA-gv3c-929j-rc7p/GHSA-gv3c-929j-rc7p.json index 37d5b9eec73..7eca264fd0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv3c-929j-rc7p/GHSA-gv3c-929j-rc7p.json +++ b/advisories/unreviewed/2022/05/GHSA-gv3c-929j-rc7p/GHSA-gv3c-929j-rc7p.json @@ -7,12 +7,8 @@ "CVE-2019-11290" ], "details": "Cloud Foundry UAA Release, versions prior to v74.8.0, logs all query parameters to tomcat’s access file. If the query parameters are used to provide authentication, ie. credentials, then they will be logged as well.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gwqw-2c53-7v9m/GHSA-gwqw-2c53-7v9m.json b/advisories/unreviewed/2022/05/GHSA-gwqw-2c53-7v9m/GHSA-gwqw-2c53-7v9m.json index bb01cab5684..d79634ce2b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwqw-2c53-7v9m/GHSA-gwqw-2c53-7v9m.json +++ b/advisories/unreviewed/2022/05/GHSA-gwqw-2c53-7v9m/GHSA-gwqw-2c53-7v9m.json @@ -7,12 +7,8 @@ "CVE-2008-2902" ], "details": "SQL injection vulnerability in profile.php in AlstraSoft AskMe Pro 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: The que_id parameter to forum_answer.php is already covered by CVE-2007-4085.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwxm-wf2r-4qv5/GHSA-gwxm-wf2r-4qv5.json b/advisories/unreviewed/2022/05/GHSA-gwxm-wf2r-4qv5/GHSA-gwxm-wf2r-4qv5.json index 4e8d0d0a71a..4839f741097 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwxm-wf2r-4qv5/GHSA-gwxm-wf2r-4qv5.json +++ b/advisories/unreviewed/2022/05/GHSA-gwxm-wf2r-4qv5/GHSA-gwxm-wf2r-4qv5.json @@ -7,12 +7,8 @@ "CVE-2020-11836" ], "details": "OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb shell getprop ro.vendor.aee.enforcing” or “adb shell getprop ro.vendor.aee.enforcing” return no.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h25m-5xq7-8h6q/GHSA-h25m-5xq7-8h6q.json b/advisories/unreviewed/2022/05/GHSA-h25m-5xq7-8h6q/GHSA-h25m-5xq7-8h6q.json index 92414531d67..8335578e835 100644 --- a/advisories/unreviewed/2022/05/GHSA-h25m-5xq7-8h6q/GHSA-h25m-5xq7-8h6q.json +++ b/advisories/unreviewed/2022/05/GHSA-h25m-5xq7-8h6q/GHSA-h25m-5xq7-8h6q.json @@ -7,12 +7,8 @@ "CVE-2019-18573" ], "details": "The RSA Identity Governance and Lifecycle and RSA Via Lifecycle and Governance products prior to 7.1.1 P03 contain a Session Fixation vulnerability. An authenticated malicious local user could potentially exploit this vulnerability as the session token is exposed as part of the URL. A remote attacker can gain access to victim�s session and perform arbitrary actions with privileges of the user within the compromised session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2vh-q3r8-9vv4/GHSA-h2vh-q3r8-9vv4.json b/advisories/unreviewed/2022/05/GHSA-h2vh-q3r8-9vv4/GHSA-h2vh-q3r8-9vv4.json index ee7dd548baa..63acad73545 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2vh-q3r8-9vv4/GHSA-h2vh-q3r8-9vv4.json +++ b/advisories/unreviewed/2022/05/GHSA-h2vh-q3r8-9vv4/GHSA-h2vh-q3r8-9vv4.json @@ -7,12 +7,8 @@ "CVE-2008-2666" ], "details": "Multiple directory traversal vulnerabilities in PHP 5.2.6 and earlier allow context-dependent attackers to bypass safe_mode restrictions by creating a subdirectory named http: and then placing ../ (dot dot slash) sequences in an http URL argument to the (1) chdir or (2) ftok function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h335-xjw9-4rf2/GHSA-h335-xjw9-4rf2.json b/advisories/unreviewed/2022/05/GHSA-h335-xjw9-4rf2/GHSA-h335-xjw9-4rf2.json index 9701172c095..a9154504eae 100644 --- a/advisories/unreviewed/2022/05/GHSA-h335-xjw9-4rf2/GHSA-h335-xjw9-4rf2.json +++ b/advisories/unreviewed/2022/05/GHSA-h335-xjw9-4rf2/GHSA-h335-xjw9-4rf2.json @@ -7,12 +7,8 @@ "CVE-2008-3136" ], "details": "SQL injection vulnerability in catalogue.php in AShop Deluxe 4.x allows remote attackers to execute arbitrary SQL commands via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h33c-59r7-5m89/GHSA-h33c-59r7-5m89.json b/advisories/unreviewed/2022/05/GHSA-h33c-59r7-5m89/GHSA-h33c-59r7-5m89.json index 76484086e1e..3e092065059 100644 --- a/advisories/unreviewed/2022/05/GHSA-h33c-59r7-5m89/GHSA-h33c-59r7-5m89.json +++ b/advisories/unreviewed/2022/05/GHSA-h33c-59r7-5m89/GHSA-h33c-59r7-5m89.json @@ -7,12 +7,8 @@ "CVE-2021-24766" ], "details": "The 404 to 301 – Redirect, Log and Notify 404 Errors WordPress plugin before 3.0.9 does not have CSRF check in place when cleaning the logs, which could allow attacker to make a logged in admin delete all of them via a CSRF attack", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h37c-7pv8-rxfg/GHSA-h37c-7pv8-rxfg.json b/advisories/unreviewed/2022/05/GHSA-h37c-7pv8-rxfg/GHSA-h37c-7pv8-rxfg.json index 7860538e13d..130a664b114 100644 --- a/advisories/unreviewed/2022/05/GHSA-h37c-7pv8-rxfg/GHSA-h37c-7pv8-rxfg.json +++ b/advisories/unreviewed/2022/05/GHSA-h37c-7pv8-rxfg/GHSA-h37c-7pv8-rxfg.json @@ -7,12 +7,8 @@ "CVE-2008-2760" ], "details": "SQL injection vulnerability in searchbanners.asp in Xigla Absolute Banner Manager XE 2.0 allows remote authenticated administrators to execute arbitrary SQL commands via the orderby parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h388-6737-2grv/GHSA-h388-6737-2grv.json b/advisories/unreviewed/2022/05/GHSA-h388-6737-2grv/GHSA-h388-6737-2grv.json index 3e485348262..18ccedce8b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-h388-6737-2grv/GHSA-h388-6737-2grv.json +++ b/advisories/unreviewed/2022/05/GHSA-h388-6737-2grv/GHSA-h388-6737-2grv.json @@ -7,12 +7,8 @@ "CVE-2021-24562" ], "details": "The LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress plugin before 4.21.2 was affected by an IDOR issue, allowing students to see other student answers and grades", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h39h-mv79-2m42/GHSA-h39h-mv79-2m42.json b/advisories/unreviewed/2022/05/GHSA-h39h-mv79-2m42/GHSA-h39h-mv79-2m42.json index ad37ed024fc..33f1c76867b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h39h-mv79-2m42/GHSA-h39h-mv79-2m42.json +++ b/advisories/unreviewed/2022/05/GHSA-h39h-mv79-2m42/GHSA-h39h-mv79-2m42.json @@ -7,12 +7,8 @@ "CVE-2008-3134" ], "details": "Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4 allow remote attackers to cause a denial of service (crash, infinite loop, or memory consumption) via (a) unspecified vectors in the (1) AVI, (2) AVS, (3) DCM, (4) EPT, (5) FITS, (6) MTV, (7) PALM, (8) RLA, and (9) TGA decoder readers; and (b) the GetImageCharacteristics function in magick/image.c, as reachable from a crafted (10) PNG, (11) JPEG, (12) BMP, or (13) TIFF file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h3mw-q2vh-qc2j/GHSA-h3mw-q2vh-qc2j.json b/advisories/unreviewed/2022/05/GHSA-h3mw-q2vh-qc2j/GHSA-h3mw-q2vh-qc2j.json index 7579ca893b0..cd790c0f1cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3mw-q2vh-qc2j/GHSA-h3mw-q2vh-qc2j.json +++ b/advisories/unreviewed/2022/05/GHSA-h3mw-q2vh-qc2j/GHSA-h3mw-q2vh-qc2j.json @@ -7,12 +7,8 @@ "CVE-2008-3023" ], "details": "Cross-site scripting (XSS) vulnerability in FreeStyle Wiki 3.6.2 and earlier, and 3.6.3 dev3 and earlier development versions, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CVE-2005-1799.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h44x-3xxx-8jpc/GHSA-h44x-3xxx-8jpc.json b/advisories/unreviewed/2022/05/GHSA-h44x-3xxx-8jpc/GHSA-h44x-3xxx-8jpc.json index 0eac772cb8b..59b96480a64 100644 --- a/advisories/unreviewed/2022/05/GHSA-h44x-3xxx-8jpc/GHSA-h44x-3xxx-8jpc.json +++ b/advisories/unreviewed/2022/05/GHSA-h44x-3xxx-8jpc/GHSA-h44x-3xxx-8jpc.json @@ -7,12 +7,8 @@ "CVE-2013-7487" ], "details": "On Swann DVR04B, DVR08B, DVR-16CIF, and DVR16B devices, raysharpdvr application has a vulnerable call to “system”, which allows remote attackers to execute arbitrary code via TCP port 9000.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h475-82mv-h7q7/GHSA-h475-82mv-h7q7.json b/advisories/unreviewed/2022/05/GHSA-h475-82mv-h7q7/GHSA-h475-82mv-h7q7.json index 76e39cd683a..02588d9d591 100644 --- a/advisories/unreviewed/2022/05/GHSA-h475-82mv-h7q7/GHSA-h475-82mv-h7q7.json +++ b/advisories/unreviewed/2022/05/GHSA-h475-82mv-h7q7/GHSA-h475-82mv-h7q7.json @@ -7,12 +7,8 @@ "CVE-2008-2877" ], "details": "PHP remote file inclusion vulnerability in admin/include/lib.module.php in cmsWorks 2.2 RC4, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mod_root parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4gv-m9gr-hhjw/GHSA-h4gv-m9gr-hhjw.json b/advisories/unreviewed/2022/05/GHSA-h4gv-m9gr-hhjw/GHSA-h4gv-m9gr-hhjw.json index b1ec781515d..01084ff7919 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4gv-m9gr-hhjw/GHSA-h4gv-m9gr-hhjw.json +++ b/advisories/unreviewed/2022/05/GHSA-h4gv-m9gr-hhjw/GHSA-h4gv-m9gr-hhjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4q5-v8j4-8ph5/GHSA-h4q5-v8j4-8ph5.json b/advisories/unreviewed/2022/05/GHSA-h4q5-v8j4-8ph5/GHSA-h4q5-v8j4-8ph5.json index d291c535515..aa804c42f92 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4q5-v8j4-8ph5/GHSA-h4q5-v8j4-8ph5.json +++ b/advisories/unreviewed/2022/05/GHSA-h4q5-v8j4-8ph5/GHSA-h4q5-v8j4-8ph5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h544-jq49-ggwh/GHSA-h544-jq49-ggwh.json b/advisories/unreviewed/2022/05/GHSA-h544-jq49-ggwh/GHSA-h544-jq49-ggwh.json index 4c5f234ef87..3a476d1bc8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h544-jq49-ggwh/GHSA-h544-jq49-ggwh.json +++ b/advisories/unreviewed/2022/05/GHSA-h544-jq49-ggwh/GHSA-h544-jq49-ggwh.json @@ -7,12 +7,8 @@ "CVE-2008-2837" ], "details": "SQL injection vulnerability in index.php in CMS-BRD allows remote attackers to execute arbitrary SQL commands via the menuclick parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h567-wg66-2v4f/GHSA-h567-wg66-2v4f.json b/advisories/unreviewed/2022/05/GHSA-h567-wg66-2v4f/GHSA-h567-wg66-2v4f.json index 388842492ac..e0aa4c4bc9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-h567-wg66-2v4f/GHSA-h567-wg66-2v4f.json +++ b/advisories/unreviewed/2022/05/GHSA-h567-wg66-2v4f/GHSA-h567-wg66-2v4f.json @@ -7,12 +7,8 @@ "CVE-2008-2827" ], "details": "The rmtree function in lib/File/Path.pm in Perl 5.10 does not properly check permissions before performing a chmod, which allows local users to modify the permissions of arbitrary files via a symlink attack, a different vulnerability than CVE-2005-0448 and CVE-2004-0452.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h577-vm6j-5p38/GHSA-h577-vm6j-5p38.json b/advisories/unreviewed/2022/05/GHSA-h577-vm6j-5p38/GHSA-h577-vm6j-5p38.json index 3b07082169c..12dc5937198 100644 --- a/advisories/unreviewed/2022/05/GHSA-h577-vm6j-5p38/GHSA-h577-vm6j-5p38.json +++ b/advisories/unreviewed/2022/05/GHSA-h577-vm6j-5p38/GHSA-h577-vm6j-5p38.json @@ -7,12 +7,8 @@ "CVE-2008-2999" ], "details": "Multiple SQL injection vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h579-367q-7pc3/GHSA-h579-367q-7pc3.json b/advisories/unreviewed/2022/05/GHSA-h579-367q-7pc3/GHSA-h579-367q-7pc3.json index d6b8cae85f0..817791ea389 100644 --- a/advisories/unreviewed/2022/05/GHSA-h579-367q-7pc3/GHSA-h579-367q-7pc3.json +++ b/advisories/unreviewed/2022/05/GHSA-h579-367q-7pc3/GHSA-h579-367q-7pc3.json @@ -7,12 +7,8 @@ "CVE-2008-3073" ], "details": "Unspecified vulnerability in Simple Machines Forum (SMF) 1.1.x before 1.1.5 and 1.0.x before 1.0.13 has unknown impact and attack vectors, probably cross-site scripting (XSS), related to \"use of the html-tag.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h57w-xmc5-xhmg/GHSA-h57w-xmc5-xhmg.json b/advisories/unreviewed/2022/05/GHSA-h57w-xmc5-xhmg/GHSA-h57w-xmc5-xhmg.json index e0fea58bc16..82f7ac2c824 100644 --- a/advisories/unreviewed/2022/05/GHSA-h57w-xmc5-xhmg/GHSA-h57w-xmc5-xhmg.json +++ b/advisories/unreviewed/2022/05/GHSA-h57w-xmc5-xhmg/GHSA-h57w-xmc5-xhmg.json @@ -7,12 +7,8 @@ "CVE-2008-3124" ], "details": "SQL injection vulnerability in index.php in Mole Group Hotel Script 1.0 allows remote attackers to execute arbitrary SQL commands via the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5cr-94cg-hxmr/GHSA-h5cr-94cg-hxmr.json b/advisories/unreviewed/2022/05/GHSA-h5cr-94cg-hxmr/GHSA-h5cr-94cg-hxmr.json index 658a9fcbb15..0177b1cd3dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5cr-94cg-hxmr/GHSA-h5cr-94cg-hxmr.json +++ b/advisories/unreviewed/2022/05/GHSA-h5cr-94cg-hxmr/GHSA-h5cr-94cg-hxmr.json @@ -7,12 +7,8 @@ "CVE-2020-16630" ], "details": "TI’s BLE stack caches and reuses the LTK’s property for a bonded mobile. A LTK can be an unauthenticated-and-no-MITM-protection key created by Just Works or an authenticated-and-MITM-protection key created by Passkey Entry, Numeric Comparison or OOB. Assume that a victim mobile uses secure pairing to pair with a victim BLE device based on TI chips and generate an authenticated-and-MITM-protection LTK. If a fake mobile with the victim mobile’s MAC address uses Just Works and pairs with the victim device, the generated LTK still has the property of authenticated-and-MITM-protection. Therefore, the fake mobile can access attributes with the authenticated read/write permission.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5rm-gc4m-cp24/GHSA-h5rm-gc4m-cp24.json b/advisories/unreviewed/2022/05/GHSA-h5rm-gc4m-cp24/GHSA-h5rm-gc4m-cp24.json index ea26d189666..b9f50af8939 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5rm-gc4m-cp24/GHSA-h5rm-gc4m-cp24.json +++ b/advisories/unreviewed/2022/05/GHSA-h5rm-gc4m-cp24/GHSA-h5rm-gc4m-cp24.json @@ -7,12 +7,8 @@ "CVE-2008-3068" ], "details": "Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) checks by using an arbitrary URL from a certificate embedded in a (1) S/MIME e-mail message or (2) signed document, which allows remote attackers to obtain reading times and IP addresses of recipients, and port-scan results, via a crafted certificate with an Authority Information Access (AIA) extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h635-5m37-x3p5/GHSA-h635-5m37-x3p5.json b/advisories/unreviewed/2022/05/GHSA-h635-5m37-x3p5/GHSA-h635-5m37-x3p5.json index 3c7cfa270fb..61bbed25b3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-h635-5m37-x3p5/GHSA-h635-5m37-x3p5.json +++ b/advisories/unreviewed/2022/05/GHSA-h635-5m37-x3p5/GHSA-h635-5m37-x3p5.json @@ -7,12 +7,8 @@ "CVE-2021-24155" ], "details": "The WordPress Backup and Migrate Plugin – Backup Guard WordPress plugin before 1.6.0 did not ensure that the imported files are of the SGBP format and extension, allowing high privilege users (admin+) to upload arbitrary files, including PHP ones, leading to RCE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h65f-q687-6mjg/GHSA-h65f-q687-6mjg.json b/advisories/unreviewed/2022/05/GHSA-h65f-q687-6mjg/GHSA-h65f-q687-6mjg.json index c5dfbd585d0..60f1b7b97fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-h65f-q687-6mjg/GHSA-h65f-q687-6mjg.json +++ b/advisories/unreviewed/2022/05/GHSA-h65f-q687-6mjg/GHSA-h65f-q687-6mjg.json @@ -7,12 +7,8 @@ "CVE-2008-2900" ], "details": "SQL injection vulnerability in item.php in PHPAuction 3.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h6pf-c244-8chr/GHSA-h6pf-c244-8chr.json b/advisories/unreviewed/2022/05/GHSA-h6pf-c244-8chr/GHSA-h6pf-c244-8chr.json index 81871d18966..7f4b7c6cda6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6pf-c244-8chr/GHSA-h6pf-c244-8chr.json +++ b/advisories/unreviewed/2022/05/GHSA-h6pf-c244-8chr/GHSA-h6pf-c244-8chr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h79w-h983-cvxf/GHSA-h79w-h983-cvxf.json b/advisories/unreviewed/2022/05/GHSA-h79w-h983-cvxf/GHSA-h79w-h983-cvxf.json index 2d965809aa4..8a5a5c8b804 100644 --- a/advisories/unreviewed/2022/05/GHSA-h79w-h983-cvxf/GHSA-h79w-h983-cvxf.json +++ b/advisories/unreviewed/2022/05/GHSA-h79w-h983-cvxf/GHSA-h79w-h983-cvxf.json @@ -7,12 +7,8 @@ "CVE-2021-27436" ], "details": "WebAccess/SCADA Versions 9.0 and prior is vulnerable to cross-site scripting, which may allow an attacker to send malicious JavaScript code to an unsuspecting user, which could result in hijacking of the user’s cookie/session tokens, redirecting the user to a malicious webpage and performing unintended browser actions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h7hf-j688-9vmp/GHSA-h7hf-j688-9vmp.json b/advisories/unreviewed/2022/05/GHSA-h7hf-j688-9vmp/GHSA-h7hf-j688-9vmp.json index b326fcb8099..fb9d3c29e9f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7hf-j688-9vmp/GHSA-h7hf-j688-9vmp.json +++ b/advisories/unreviewed/2022/05/GHSA-h7hf-j688-9vmp/GHSA-h7hf-j688-9vmp.json @@ -7,12 +7,8 @@ "CVE-2008-2675" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in PHP Image Gallery allows remote attackers to inject arbitrary web script or HTML via the action parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h96r-5v99-5m55/GHSA-h96r-5v99-5m55.json b/advisories/unreviewed/2022/05/GHSA-h96r-5v99-5m55/GHSA-h96r-5v99-5m55.json index f4b7323d88e..65655791693 100644 --- a/advisories/unreviewed/2022/05/GHSA-h96r-5v99-5m55/GHSA-h96r-5v99-5m55.json +++ b/advisories/unreviewed/2022/05/GHSA-h96r-5v99-5m55/GHSA-h96r-5v99-5m55.json @@ -7,12 +7,8 @@ "CVE-2021-24249" ], "details": "The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cross-Site Request Forgery issue, allowing an attacker to make a logged in administrator export files, which could then be downloaded by the attacker to get access to PII, such as email, home addresses etc", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h97f-mg55-8293/GHSA-h97f-mg55-8293.json b/advisories/unreviewed/2022/05/GHSA-h97f-mg55-8293/GHSA-h97f-mg55-8293.json index c09da3c8d3a..1be541e34a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h97f-mg55-8293/GHSA-h97f-mg55-8293.json +++ b/advisories/unreviewed/2022/05/GHSA-h97f-mg55-8293/GHSA-h97f-mg55-8293.json @@ -7,12 +7,8 @@ "CVE-2008-3100" ], "details": "Cross-site scripting (XSS) vulnerability in lib/owl.lib.php in Steve Bourgeois and Chris Vincent Owl Intranet Knowledgebase 0.95 and earlier allows remote attackers to inject arbitrary web script or HTML via the username parameter in a getpasswd action to register.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h97p-5fjq-c93c/GHSA-h97p-5fjq-c93c.json b/advisories/unreviewed/2022/05/GHSA-h97p-5fjq-c93c/GHSA-h97p-5fjq-c93c.json index 80258c3583a..1319ffefcc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-h97p-5fjq-c93c/GHSA-h97p-5fjq-c93c.json +++ b/advisories/unreviewed/2022/05/GHSA-h97p-5fjq-c93c/GHSA-h97p-5fjq-c93c.json @@ -7,12 +7,8 @@ "CVE-2021-39307" ], "details": "PDFTron’s WebViewer UI 8.0 or below renders dangerous URLs as hyperlinks in supported documents, including JavaScript URLs, allowing the execution of arbitrary JavaScript code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9g3-j7h6-8f7m/GHSA-h9g3-j7h6-8f7m.json b/advisories/unreviewed/2022/05/GHSA-h9g3-j7h6-8f7m/GHSA-h9g3-j7h6-8f7m.json index 3577f31446d..6c831677060 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9g3-j7h6-8f7m/GHSA-h9g3-j7h6-8f7m.json +++ b/advisories/unreviewed/2022/05/GHSA-h9g3-j7h6-8f7m/GHSA-h9g3-j7h6-8f7m.json @@ -7,12 +7,8 @@ "CVE-2008-3041" ], "details": "Unspecified vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 has unknown impact and attack vectors related to \"broken access control.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9wh-q83g-2p6c/GHSA-h9wh-q83g-2p6c.json b/advisories/unreviewed/2022/05/GHSA-h9wh-q83g-2p6c/GHSA-h9wh-q83g-2p6c.json index a73cae23d31..3f4c493d39f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9wh-q83g-2p6c/GHSA-h9wh-q83g-2p6c.json +++ b/advisories/unreviewed/2022/05/GHSA-h9wh-q83g-2p6c/GHSA-h9wh-q83g-2p6c.json @@ -7,12 +7,8 @@ "CVE-2008-3010" ], "details": "Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1 and 9 incorrectly associate ISATAP addresses with the Local Intranet zone, which allows remote servers to capture NTLM credentials, and execute arbitrary code through credential-reflection attacks, by sending an authentication request, aka \"ISATAP Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hc9j-xc69-hppx/GHSA-hc9j-xc69-hppx.json b/advisories/unreviewed/2022/05/GHSA-hc9j-xc69-hppx/GHSA-hc9j-xc69-hppx.json index 732a2ea5b3e..c7b6d66127a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hc9j-xc69-hppx/GHSA-hc9j-xc69-hppx.json +++ b/advisories/unreviewed/2022/05/GHSA-hc9j-xc69-hppx/GHSA-hc9j-xc69-hppx.json @@ -7,12 +7,8 @@ "CVE-2008-2693" ], "details": "Stack-based buffer overflow in the BITIFF.BITiffCtrl.1 ActiveX control in BITiff.ocx 10.9.3.0 in Black Ice Barcode SDK 5.01 allows remote attackers to execute arbitrary code via a long first argument to the SetByteOrder method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcmf-34f9-qxh7/GHSA-hcmf-34f9-qxh7.json b/advisories/unreviewed/2022/05/GHSA-hcmf-34f9-qxh7/GHSA-hcmf-34f9-qxh7.json index 840665ce486..619c1bbf33c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcmf-34f9-qxh7/GHSA-hcmf-34f9-qxh7.json +++ b/advisories/unreviewed/2022/05/GHSA-hcmf-34f9-qxh7/GHSA-hcmf-34f9-qxh7.json @@ -7,12 +7,8 @@ "CVE-2020-0655" ], "details": "A remote code execution vulnerability exists in Remote Desktop Services – formerly known as Terminal Services – when an authenticated attacker abuses clipboard redirection, aka 'Remote Desktop Services Remote Code Execution Vulnerability'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcpv-5mx9-q6h3/GHSA-hcpv-5mx9-q6h3.json b/advisories/unreviewed/2022/05/GHSA-hcpv-5mx9-q6h3/GHSA-hcpv-5mx9-q6h3.json index fdcfc68bdbe..17dc70ea7d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcpv-5mx9-q6h3/GHSA-hcpv-5mx9-q6h3.json +++ b/advisories/unreviewed/2022/05/GHSA-hcpv-5mx9-q6h3/GHSA-hcpv-5mx9-q6h3.json @@ -7,12 +7,8 @@ "CVE-2008-3119" ], "details": "SQL injection vulnerability in index.php in DreamPics Builder allows remote attackers to execute arbitrary SQL commands via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfph-9grv-x5x5/GHSA-hfph-9grv-x5x5.json b/advisories/unreviewed/2022/05/GHSA-hfph-9grv-x5x5/GHSA-hfph-9grv-x5x5.json index 50a23d7fc31..d3c7f6409bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfph-9grv-x5x5/GHSA-hfph-9grv-x5x5.json +++ b/advisories/unreviewed/2022/05/GHSA-hfph-9grv-x5x5/GHSA-hfph-9grv-x5x5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg47-m38x-5m72/GHSA-hg47-m38x-5m72.json b/advisories/unreviewed/2022/05/GHSA-hg47-m38x-5m72/GHSA-hg47-m38x-5m72.json index 50cad51a49a..34782b8ae65 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg47-m38x-5m72/GHSA-hg47-m38x-5m72.json +++ b/advisories/unreviewed/2022/05/GHSA-hg47-m38x-5m72/GHSA-hg47-m38x-5m72.json @@ -7,12 +7,8 @@ "CVE-2021-24263" ], "details": "The “Elementor Addons – PowerPack Addons for Elementorâ€? WordPress Plugin before 2.3.2 for WordPress has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg64-rxxv-ff3c/GHSA-hg64-rxxv-ff3c.json b/advisories/unreviewed/2022/05/GHSA-hg64-rxxv-ff3c/GHSA-hg64-rxxv-ff3c.json index 7a9d43e94d8..c4196927491 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg64-rxxv-ff3c/GHSA-hg64-rxxv-ff3c.json +++ b/advisories/unreviewed/2022/05/GHSA-hg64-rxxv-ff3c/GHSA-hg64-rxxv-ff3c.json @@ -7,12 +7,8 @@ "CVE-2008-2906" ], "details": "SQL injection vulnerability in lista_anexos.php in WebChamado 1.1 allows remote attackers to execute arbitrary SQL commands via the tsk_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg9j-r439-gp76/GHSA-hg9j-r439-gp76.json b/advisories/unreviewed/2022/05/GHSA-hg9j-r439-gp76/GHSA-hg9j-r439-gp76.json index f3fd7ae64f4..ad668055c77 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg9j-r439-gp76/GHSA-hg9j-r439-gp76.json +++ b/advisories/unreviewed/2022/05/GHSA-hg9j-r439-gp76/GHSA-hg9j-r439-gp76.json @@ -7,12 +7,8 @@ "CVE-2020-25775" ], "details": "The Trend Micro Security 2020 (v16) consumer family of products is vulnerable to a security race condition arbitrary file deletion vulnerability that could allow an unprivileged user to manipulate the product’s secure erase feature to delete files with a higher set of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hgg7-rrqq-66fx/GHSA-hgg7-rrqq-66fx.json b/advisories/unreviewed/2022/05/GHSA-hgg7-rrqq-66fx/GHSA-hgg7-rrqq-66fx.json index 0df3b230abf..80d0ac964f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgg7-rrqq-66fx/GHSA-hgg7-rrqq-66fx.json +++ b/advisories/unreviewed/2022/05/GHSA-hgg7-rrqq-66fx/GHSA-hgg7-rrqq-66fx.json @@ -7,12 +7,8 @@ "CVE-2008-2672" ], "details": "Multiple directory traversal vulnerabilities in ErfurtWiki R1.02b and earlier, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) ewiki_id and (2) ewiki_action parameters to fragments/css.php, and possibly the (3) id parameter to the default URI. NOTE: the default URI is site-specific but often performs an include_once of ewiki.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hgh6-vp5r-48rp/GHSA-hgh6-vp5r-48rp.json b/advisories/unreviewed/2022/05/GHSA-hgh6-vp5r-48rp/GHSA-hgh6-vp5r-48rp.json index 6d6c9b553b3..cddb0218810 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgh6-vp5r-48rp/GHSA-hgh6-vp5r-48rp.json +++ b/advisories/unreviewed/2022/05/GHSA-hgh6-vp5r-48rp/GHSA-hgh6-vp5r-48rp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hhgm-j3w3-6p82/GHSA-hhgm-j3w3-6p82.json b/advisories/unreviewed/2022/05/GHSA-hhgm-j3w3-6p82/GHSA-hhgm-j3w3-6p82.json index ae44ea02779..c6bfd9400d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhgm-j3w3-6p82/GHSA-hhgm-j3w3-6p82.json +++ b/advisories/unreviewed/2022/05/GHSA-hhgm-j3w3-6p82/GHSA-hhgm-j3w3-6p82.json @@ -7,12 +7,8 @@ "CVE-2008-2885" ], "details": "PHP remote file inclusion vulnerability in src/browser/resource/categories/resource_categories_view.php in Open Digital Assets Repository System (ODARS) 1.0.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the CLASSES_ROOT parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hjq3-j9hq-m46w/GHSA-hjq3-j9hq-m46w.json b/advisories/unreviewed/2022/05/GHSA-hjq3-j9hq-m46w/GHSA-hjq3-j9hq-m46w.json index 55dbf582a47..f92cc1c6d99 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjq3-j9hq-m46w/GHSA-hjq3-j9hq-m46w.json +++ b/advisories/unreviewed/2022/05/GHSA-hjq3-j9hq-m46w/GHSA-hjq3-j9hq-m46w.json @@ -7,12 +7,8 @@ "CVE-2008-2607" ], "details": "Unspecified vulnerability in the Advanced Queuing component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.6 has unknown impact and remote authenticated attack vectors related to SYS.DBMS_AQELM. NOTE: the previous information was obtained from the Oracle July 2008 CPU. Oracle has not commented on reliable researcher claims that this issue is a buffer overflow that allows attackers to cause a denial of service (database corruption) and possibly execute arbitrary code via a long argument to an unspecified procedure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hjq8-666x-qj67/GHSA-hjq8-666x-qj67.json b/advisories/unreviewed/2022/05/GHSA-hjq8-666x-qj67/GHSA-hjq8-666x-qj67.json index 70ab112fd04..90a46730df6 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjq8-666x-qj67/GHSA-hjq8-666x-qj67.json +++ b/advisories/unreviewed/2022/05/GHSA-hjq8-666x-qj67/GHSA-hjq8-666x-qj67.json @@ -7,12 +7,8 @@ "CVE-2008-3295" ], "details": "Cross-site scripting (XSS) vulnerability in modules/system/admin.php in XOOPS 2.0.18.1 allows remote attackers to inject arbitrary web script or HTML via the fct parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmc9-48x2-j657/GHSA-hmc9-48x2-j657.json b/advisories/unreviewed/2022/05/GHSA-hmc9-48x2-j657/GHSA-hmc9-48x2-j657.json index 5f03a68ba85..45016ae08f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmc9-48x2-j657/GHSA-hmc9-48x2-j657.json +++ b/advisories/unreviewed/2022/05/GHSA-hmc9-48x2-j657/GHSA-hmc9-48x2-j657.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmj3-h4pf-vc5h/GHSA-hmj3-h4pf-vc5h.json b/advisories/unreviewed/2022/05/GHSA-hmj3-h4pf-vc5h/GHSA-hmj3-h4pf-vc5h.json index c0aa423ca0f..4f1f22c07ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmj3-h4pf-vc5h/GHSA-hmj3-h4pf-vc5h.json +++ b/advisories/unreviewed/2022/05/GHSA-hmj3-h4pf-vc5h/GHSA-hmj3-h4pf-vc5h.json @@ -7,12 +7,8 @@ "CVE-2008-2846" ], "details": "SQL injection vulnerability in index.php in BoatScripts Classifieds allows remote attackers to execute arbitrary SQL commands via the type parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpjv-59xv-jpr5/GHSA-hpjv-59xv-jpr5.json b/advisories/unreviewed/2022/05/GHSA-hpjv-59xv-jpr5/GHSA-hpjv-59xv-jpr5.json index 152cfe3ed32..8e3caafaf41 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpjv-59xv-jpr5/GHSA-hpjv-59xv-jpr5.json +++ b/advisories/unreviewed/2022/05/GHSA-hpjv-59xv-jpr5/GHSA-hpjv-59xv-jpr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpm9-f4wh-88hj/GHSA-hpm9-f4wh-88hj.json b/advisories/unreviewed/2022/05/GHSA-hpm9-f4wh-88hj/GHSA-hpm9-f4wh-88hj.json index 3f44bf92372..10042c16912 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpm9-f4wh-88hj/GHSA-hpm9-f4wh-88hj.json +++ b/advisories/unreviewed/2022/05/GHSA-hpm9-f4wh-88hj/GHSA-hpm9-f4wh-88hj.json @@ -7,12 +7,8 @@ "CVE-2008-3161" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in jsp/common/system/debug.jsp in IBM Maximo 4.1 and 5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Accept, (2) Accept-Language, (3) UA-CPU, (4) Accept-Encoding, (5) User-Agent, or (6) Cookie HTTP header. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpq5-x75j-q4f2/GHSA-hpq5-x75j-q4f2.json b/advisories/unreviewed/2022/05/GHSA-hpq5-x75j-q4f2/GHSA-hpq5-x75j-q4f2.json index cbe0693c939..c4780d65d00 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpq5-x75j-q4f2/GHSA-hpq5-x75j-q4f2.json +++ b/advisories/unreviewed/2022/05/GHSA-hpq5-x75j-q4f2/GHSA-hpq5-x75j-q4f2.json @@ -7,12 +7,8 @@ "CVE-2019-14852" ], "details": "A flaw was found in 3scale’s APIcast gateway that enabled the TLS 1.0 protocol. An attacker could target traffic using this weaker protocol and break its encryption, gaining access to unauthorized information. Version shipped in Red Hat 3scale API Management Platform is vulnerable to this issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpw3-432w-cv6v/GHSA-hpw3-432w-cv6v.json b/advisories/unreviewed/2022/05/GHSA-hpw3-432w-cv6v/GHSA-hpw3-432w-cv6v.json index bd254a5a7ab..8a4d9bd6159 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpw3-432w-cv6v/GHSA-hpw3-432w-cv6v.json +++ b/advisories/unreviewed/2022/05/GHSA-hpw3-432w-cv6v/GHSA-hpw3-432w-cv6v.json @@ -7,12 +7,8 @@ "CVE-2019-13537" ], "details": "The IEC870IP driver for AVEVA�s Vijeo Citect and Citect SCADA and Schneider Electric�s Power SCADA Operation has a buffer overflow vulnerability that could result in a server-side crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hq5w-vrxc-xx2g/GHSA-hq5w-vrxc-xx2g.json b/advisories/unreviewed/2022/05/GHSA-hq5w-vrxc-xx2g/GHSA-hq5w-vrxc-xx2g.json index 882e7d78dc2..1e9fb7ccbd1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq5w-vrxc-xx2g/GHSA-hq5w-vrxc-xx2g.json +++ b/advisories/unreviewed/2022/05/GHSA-hq5w-vrxc-xx2g/GHSA-hq5w-vrxc-xx2g.json @@ -7,12 +7,8 @@ "CVE-2020-7018" ], "details": "Elastic Enterprise Search before 7.9.0 contain a credential exposure flaw in the App Search interface. If a user is given the �developer� role, they will be able to view the administrator API credentials. These credentials could allow the developer user to conduct operations with the same permissions of the App Search administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hq86-cqgq-p75f/GHSA-hq86-cqgq-p75f.json b/advisories/unreviewed/2022/05/GHSA-hq86-cqgq-p75f/GHSA-hq86-cqgq-p75f.json index f8ac9e02bbb..aaa27b6e4d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq86-cqgq-p75f/GHSA-hq86-cqgq-p75f.json +++ b/advisories/unreviewed/2022/05/GHSA-hq86-cqgq-p75f/GHSA-hq86-cqgq-p75f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqm3-mx3r-hfq5/GHSA-hqm3-mx3r-hfq5.json b/advisories/unreviewed/2022/05/GHSA-hqm3-mx3r-hfq5/GHSA-hqm3-mx3r-hfq5.json index 84c1f8bee46..26ec0a91f82 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqm3-mx3r-hfq5/GHSA-hqm3-mx3r-hfq5.json +++ b/advisories/unreviewed/2022/05/GHSA-hqm3-mx3r-hfq5/GHSA-hqm3-mx3r-hfq5.json @@ -7,12 +7,8 @@ "CVE-2008-2633" ], "details": "Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) show_radio or (2) show_video action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqv4-9647-qxr5/GHSA-hqv4-9647-qxr5.json b/advisories/unreviewed/2022/05/GHSA-hqv4-9647-qxr5/GHSA-hqv4-9647-qxr5.json index 714fe86ee44..5a8d1debe54 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqv4-9647-qxr5/GHSA-hqv4-9647-qxr5.json +++ b/advisories/unreviewed/2022/05/GHSA-hqv4-9647-qxr5/GHSA-hqv4-9647-qxr5.json @@ -7,12 +7,8 @@ "CVE-2008-2944" ], "details": "Double free vulnerability in the utrace support in the Linux kernel, probably 2.6.18, in Red Hat Enterprise Linux (RHEL) 5 and Fedora Core 6 (FC6) allows local users to cause a denial of service (oops), as demonstrated by a crash when running the GNU GDB testsuite, a different vulnerability than CVE-2008-2365.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqwp-wj7r-gf8j/GHSA-hqwp-wj7r-gf8j.json b/advisories/unreviewed/2022/05/GHSA-hqwp-wj7r-gf8j/GHSA-hqwp-wj7r-gf8j.json index 3d23d229ded..6c7284a41f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqwp-wj7r-gf8j/GHSA-hqwp-wj7r-gf8j.json +++ b/advisories/unreviewed/2022/05/GHSA-hqwp-wj7r-gf8j/GHSA-hqwp-wj7r-gf8j.json @@ -7,12 +7,8 @@ "CVE-2008-2945" ], "details": "Sun Java System Access Manager 6.3 through 7.1 and Sun Java System Identity Server 6.1 and 6.2 do not properly process XSLT stylesheets in XSLT transforms in XML signatures, which allows context-dependent attackers to execute arbitrary code via a crafted stylesheet, a related issue to CVE-2007-3715, CVE-2007-3716, and CVE-2007-4289.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr2q-xf62-r4hc/GHSA-hr2q-xf62-r4hc.json b/advisories/unreviewed/2022/05/GHSA-hr2q-xf62-r4hc/GHSA-hr2q-xf62-r4hc.json index 221230942fa..877c4602aa1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr2q-xf62-r4hc/GHSA-hr2q-xf62-r4hc.json +++ b/advisories/unreviewed/2022/05/GHSA-hr2q-xf62-r4hc/GHSA-hr2q-xf62-r4hc.json @@ -7,12 +7,8 @@ "CVE-2008-3163" ], "details": "Directory traversal vulnerability in dodosmail.php in DodosMail 2.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the dodosmail_header_file parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr97-4x5j-vc8q/GHSA-hr97-4x5j-vc8q.json b/advisories/unreviewed/2022/05/GHSA-hr97-4x5j-vc8q/GHSA-hr97-4x5j-vc8q.json index 756e91118e8..e622e3c8211 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr97-4x5j-vc8q/GHSA-hr97-4x5j-vc8q.json +++ b/advisories/unreviewed/2022/05/GHSA-hr97-4x5j-vc8q/GHSA-hr97-4x5j-vc8q.json @@ -7,12 +7,8 @@ "CVE-2008-3006" ], "details": "Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 Gold and SP3; Office Excel Viewer; Office Compatibility Pack 2007 Gold and SP1; Office SharePoint Server 2007 Gold and SP1; and Office 2004 and 2008 for Mac do not properly parse Country record values when loading Excel files, which allows remote attackers to execute arbitrary code via a crafted Excel file, aka the \"Excel Record Parsing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrjv-7r66-xfwr/GHSA-hrjv-7r66-xfwr.json b/advisories/unreviewed/2022/05/GHSA-hrjv-7r66-xfwr/GHSA-hrjv-7r66-xfwr.json index 1748c5a4761..73713ee774c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrjv-7r66-xfwr/GHSA-hrjv-7r66-xfwr.json +++ b/advisories/unreviewed/2022/05/GHSA-hrjv-7r66-xfwr/GHSA-hrjv-7r66-xfwr.json @@ -7,12 +7,8 @@ "CVE-2021-41299" ], "details": "ECOA BAS controller is vulnerable to hard-coded credentials within its Linux distribution image, thus remote attackers can obtain administrator’s privilege without logging in.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hv9h-jqcx-2c2p/GHSA-hv9h-jqcx-2c2p.json b/advisories/unreviewed/2022/05/GHSA-hv9h-jqcx-2c2p/GHSA-hv9h-jqcx-2c2p.json index e481d63f0fa..1e7a04ec55e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv9h-jqcx-2c2p/GHSA-hv9h-jqcx-2c2p.json +++ b/advisories/unreviewed/2022/05/GHSA-hv9h-jqcx-2c2p/GHSA-hv9h-jqcx-2c2p.json @@ -7,12 +7,8 @@ "CVE-2008-3130" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in OpenCart 0.7.7 allow remote attackers to inject arbitrary web script or HTML via the (1) firstname and (2) search parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvfr-v2x6-hcr4/GHSA-hvfr-v2x6-hcr4.json b/advisories/unreviewed/2022/05/GHSA-hvfr-v2x6-hcr4/GHSA-hvfr-v2x6-hcr4.json index acc78337344..92785de1d80 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvfr-v2x6-hcr4/GHSA-hvfr-v2x6-hcr4.json +++ b/advisories/unreviewed/2022/05/GHSA-hvfr-v2x6-hcr4/GHSA-hvfr-v2x6-hcr4.json @@ -7,12 +7,8 @@ "CVE-2019-5171" ], "details": "An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 Firmware version 03.02.02(14). An attacker can send specially crafted packet at 0x1ea48 to the extracted hostname value from the xml file that is used as an argument to /etc/config-tools/config_interfaces interface=X1 state=enabled ip-address= using sprintf().", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hvm7-mwfr-vm66/GHSA-hvm7-mwfr-vm66.json b/advisories/unreviewed/2022/05/GHSA-hvm7-mwfr-vm66/GHSA-hvm7-mwfr-vm66.json index ebec2fea7eb..fa08f8e3821 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvm7-mwfr-vm66/GHSA-hvm7-mwfr-vm66.json +++ b/advisories/unreviewed/2022/05/GHSA-hvm7-mwfr-vm66/GHSA-hvm7-mwfr-vm66.json @@ -7,12 +7,8 @@ "CVE-2008-3101" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in vtiger CRM 5.0.4 allow remote attackers to inject arbitrary web script or HTML via (1) the parenttab parameter in an index action to the Products module, as reachable through index.php; (2) the user_password parameter in an Authenticate action to the Users module, as reachable through index.php; or (3) the query_string parameter in a UnifiedSearch action to the Home module, as reachable through index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvmf-hx9f-ccx5/GHSA-hvmf-hx9f-ccx5.json b/advisories/unreviewed/2022/05/GHSA-hvmf-hx9f-ccx5/GHSA-hvmf-hx9f-ccx5.json index ae5b9dda067..988671f4df1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvmf-hx9f-ccx5/GHSA-hvmf-hx9f-ccx5.json +++ b/advisories/unreviewed/2022/05/GHSA-hvmf-hx9f-ccx5/GHSA-hvmf-hx9f-ccx5.json @@ -7,12 +7,8 @@ "CVE-2008-3166" ], "details": "PHP remote file inclusion vulnerability in modules/global/inc/content.inc.php in BoonEx Ray 3.5, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the sIncPath parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvp5-54cx-25q6/GHSA-hvp5-54cx-25q6.json b/advisories/unreviewed/2022/05/GHSA-hvp5-54cx-25q6/GHSA-hvp5-54cx-25q6.json index c1349c85200..baa1740fb76 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvp5-54cx-25q6/GHSA-hvp5-54cx-25q6.json +++ b/advisories/unreviewed/2022/05/GHSA-hvp5-54cx-25q6/GHSA-hvp5-54cx-25q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvpq-m9vj-27gf/GHSA-hvpq-m9vj-27gf.json b/advisories/unreviewed/2022/05/GHSA-hvpq-m9vj-27gf/GHSA-hvpq-m9vj-27gf.json index d4414866bca..06709580306 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvpq-m9vj-27gf/GHSA-hvpq-m9vj-27gf.json +++ b/advisories/unreviewed/2022/05/GHSA-hvpq-m9vj-27gf/GHSA-hvpq-m9vj-27gf.json @@ -7,12 +7,8 @@ "CVE-2021-24736" ], "details": "The Easy Download Manager and File Sharing Plugin with frontend file upload – a better Media Library — Shared Files WordPress plugin before 1.6.57 does not sanitise and escape some of its settings before outputting them in attributes, which could lead to Stored Cross-Site Scripting issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hw8j-q3v2-5j9q/GHSA-hw8j-q3v2-5j9q.json b/advisories/unreviewed/2022/05/GHSA-hw8j-q3v2-5j9q/GHSA-hw8j-q3v2-5j9q.json index 13896e495d0..8b47118fc60 100644 --- a/advisories/unreviewed/2022/05/GHSA-hw8j-q3v2-5j9q/GHSA-hw8j-q3v2-5j9q.json +++ b/advisories/unreviewed/2022/05/GHSA-hw8j-q3v2-5j9q/GHSA-hw8j-q3v2-5j9q.json @@ -7,12 +7,8 @@ "CVE-2008-2704" ], "details": "Novell GroupWise Messenger (GWIM) before 2.0.3 Hot Patch 1 allows remote attackers to cause a denial of service (crash) via a long user ID, possibly involving a popup alert. NOTE: it is not clear whether this issue crosses privilege boundaries.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxcg-7v57-386x/GHSA-hxcg-7v57-386x.json b/advisories/unreviewed/2022/05/GHSA-hxcg-7v57-386x/GHSA-hxcg-7v57-386x.json index 8f96d21b54a..41e1e0cccc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxcg-7v57-386x/GHSA-hxcg-7v57-386x.json +++ b/advisories/unreviewed/2022/05/GHSA-hxcg-7v57-386x/GHSA-hxcg-7v57-386x.json @@ -7,12 +7,8 @@ "CVE-2008-2915" ], "details": "Multiple SQL injection vulnerabilities in jobseekers/JobSearch.php (aka the search module) in Pre Job Board allow remote attackers to execute arbitrary SQL commands via the (1) position or (2) kw parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxj4-xxrj-q2gx/GHSA-hxj4-xxrj-q2gx.json b/advisories/unreviewed/2022/05/GHSA-hxj4-xxrj-q2gx/GHSA-hxj4-xxrj-q2gx.json index 54a57ba30fd..0281d08c1e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxj4-xxrj-q2gx/GHSA-hxj4-xxrj-q2gx.json +++ b/advisories/unreviewed/2022/05/GHSA-hxj4-xxrj-q2gx/GHSA-hxj4-xxrj-q2gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxpm-jgp4-m58r/GHSA-hxpm-jgp4-m58r.json b/advisories/unreviewed/2022/05/GHSA-hxpm-jgp4-m58r/GHSA-hxpm-jgp4-m58r.json index c484c331332..6324f25f485 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxpm-jgp4-m58r/GHSA-hxpm-jgp4-m58r.json +++ b/advisories/unreviewed/2022/05/GHSA-hxpm-jgp4-m58r/GHSA-hxpm-jgp4-m58r.json @@ -7,12 +7,8 @@ "CVE-2021-27410" ], "details": "The affected product is vulnerable to an out-of-bounds write, which may result in corruption of data or code execution on the Welch Allyn medical device management tools (Welch Allyn Service Tool: versions prior to v1.10, Welch Allyn Connex Device Integration Suite – Network Connectivity Engine (NCE): versions prior to v5.3, Welch Allyn Software Development Kit (SDK): versions prior to v3.2, Welch Allyn Connex Central Station (CS): versions prior to v1.8.6, Welch Allyn Service Monitor: versions prior to v1.7.0.0, Welch Allyn Connex Vital Signs Monitor (CVSM): versions prior to v2.43.02, Welch Allyn Connex Integrated Wall System (CIWS): versions prior to v2.43.02, Welch Allyn Connex Spot Monitor (CSM): versions prior to v1.52, Welch Allyn Spot Vital Signs 4400 Device (Spot 4400) / Welch Allyn Spot 4400 Vital Signs Extended Care Device: versions prior to v1.11.00).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j232-863r-9977/GHSA-j232-863r-9977.json b/advisories/unreviewed/2022/05/GHSA-j232-863r-9977/GHSA-j232-863r-9977.json index 193c8cf0f58..6dc60772d42 100644 --- a/advisories/unreviewed/2022/05/GHSA-j232-863r-9977/GHSA-j232-863r-9977.json +++ b/advisories/unreviewed/2022/05/GHSA-j232-863r-9977/GHSA-j232-863r-9977.json @@ -7,12 +7,8 @@ "CVE-2021-25985" ], "details": "In Factor (App Framework & Headless CMS) v1.0.4 to v1.8.30, improperly invalidate a user’s session even after the user logs out of the application. In addition, user sessions are stored in the browser’s local storage, which by default does not have an expiration time. This makes it possible for an attacker to steal and reuse the cookies using techniques such as XSS attacks, followed by a local account takeover.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j256-qqq8-59jw/GHSA-j256-qqq8-59jw.json b/advisories/unreviewed/2022/05/GHSA-j256-qqq8-59jw/GHSA-j256-qqq8-59jw.json index 1f501a6218a..220125a22b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-j256-qqq8-59jw/GHSA-j256-qqq8-59jw.json +++ b/advisories/unreviewed/2022/05/GHSA-j256-qqq8-59jw/GHSA-j256-qqq8-59jw.json @@ -7,12 +7,8 @@ "CVE-2008-2671" ], "details": "SQL injection vulnerability in comments.php in DCFM Blog 0.9.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j2cv-j24w-c67w/GHSA-j2cv-j24w-c67w.json b/advisories/unreviewed/2022/05/GHSA-j2cv-j24w-c67w/GHSA-j2cv-j24w-c67w.json index a9fce9ec850..43bdb9232e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2cv-j24w-c67w/GHSA-j2cv-j24w-c67w.json +++ b/advisories/unreviewed/2022/05/GHSA-j2cv-j24w-c67w/GHSA-j2cv-j24w-c67w.json @@ -7,12 +7,8 @@ "CVE-2008-2969" ], "details": "Directory traversal vulnerability in download.php in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allows remote attackers to read arbitrary files via a .. (dot dot) in the dfile parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j2x4-hphx-h7rg/GHSA-j2x4-hphx-h7rg.json b/advisories/unreviewed/2022/05/GHSA-j2x4-hphx-h7rg/GHSA-j2x4-hphx-h7rg.json index af4fa0a83b5..23c3d75d7e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2x4-hphx-h7rg/GHSA-j2x4-hphx-h7rg.json +++ b/advisories/unreviewed/2022/05/GHSA-j2x4-hphx-h7rg/GHSA-j2x4-hphx-h7rg.json @@ -7,12 +7,8 @@ "CVE-2021-25227" ], "details": "Trend Micro Antivirus for Mac 2021 (Consumer) is vulnerable to a memory exhaustion vulnerability that could lead to disabling all the scanning functionality within the application.\n\nPlease note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability – i.e. the attacker must already have access to the target system (either legitimately or via another exploit).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j34m-wm68-9hx7/GHSA-j34m-wm68-9hx7.json b/advisories/unreviewed/2022/05/GHSA-j34m-wm68-9hx7/GHSA-j34m-wm68-9hx7.json index 33de7e64e3a..4ed67151a2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j34m-wm68-9hx7/GHSA-j34m-wm68-9hx7.json +++ b/advisories/unreviewed/2022/05/GHSA-j34m-wm68-9hx7/GHSA-j34m-wm68-9hx7.json @@ -7,12 +7,8 @@ "CVE-2021-24327" ], "details": "The SEO Redirection Plugin – 301 Redirect Manager WordPress plugin before 6.4 did not sanitise the Redirect From and Redirect To fields when creating a new redirect in the dashboard, allowing high privilege users (even with the unfiltered_html disabled) to set XSS payloads", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j36f-9rx3-62hj/GHSA-j36f-9rx3-62hj.json b/advisories/unreviewed/2022/05/GHSA-j36f-9rx3-62hj/GHSA-j36f-9rx3-62hj.json index 343fd1143d8..56b43c0545b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j36f-9rx3-62hj/GHSA-j36f-9rx3-62hj.json +++ b/advisories/unreviewed/2022/05/GHSA-j36f-9rx3-62hj/GHSA-j36f-9rx3-62hj.json @@ -7,12 +7,8 @@ "CVE-2008-2831" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Management (SQM) component in MailMarshal SMTP 6.0.3.8 through 6.3.0.0 allow user-assisted remote authenticated users to inject arbitrary web script or HTML via (1) the list of blocked senders or (2) the list of safe senders.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j459-p3wg-g3q2/GHSA-j459-p3wg-g3q2.json b/advisories/unreviewed/2022/05/GHSA-j459-p3wg-g3q2/GHSA-j459-p3wg-g3q2.json index cb33cbaa25b..732ac7775e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-j459-p3wg-g3q2/GHSA-j459-p3wg-g3q2.json +++ b/advisories/unreviewed/2022/05/GHSA-j459-p3wg-g3q2/GHSA-j459-p3wg-g3q2.json @@ -7,12 +7,8 @@ "CVE-2008-3156" ], "details": "The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cabinet (CAB) files via unspecified URLs passed to the Update method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j59v-276v-qwjv/GHSA-j59v-276v-qwjv.json b/advisories/unreviewed/2022/05/GHSA-j59v-276v-qwjv/GHSA-j59v-276v-qwjv.json index 5c683426036..e7e94a2c808 100644 --- a/advisories/unreviewed/2022/05/GHSA-j59v-276v-qwjv/GHSA-j59v-276v-qwjv.json +++ b/advisories/unreviewed/2022/05/GHSA-j59v-276v-qwjv/GHSA-j59v-276v-qwjv.json @@ -7,12 +7,8 @@ "CVE-2020-25844" ], "details": "The digest generation function of NHIServiSignAdapter has not been verified for parameter’s length, which leads to a stack overflow loophole. Remote attackers can use the leak to execute code without privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5j3-h5ww-vvph/GHSA-j5j3-h5ww-vvph.json b/advisories/unreviewed/2022/05/GHSA-j5j3-h5ww-vvph/GHSA-j5j3-h5ww-vvph.json index fd6cfeb191e..9f3bbb10322 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5j3-h5ww-vvph/GHSA-j5j3-h5ww-vvph.json +++ b/advisories/unreviewed/2022/05/GHSA-j5j3-h5ww-vvph/GHSA-j5j3-h5ww-vvph.json @@ -7,12 +7,8 @@ "CVE-2008-3292" ], "details": "constants.inc in EZWebAlbum 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the photoalbumadmin cookie, as demonstrated via addpage.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5v6-h83f-h9j9/GHSA-j5v6-h83f-h9j9.json b/advisories/unreviewed/2022/05/GHSA-j5v6-h83f-h9j9/GHSA-j5v6-h83f-h9j9.json index 24e5a48b475..05d6dcd1abc 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5v6-h83f-h9j9/GHSA-j5v6-h83f-h9j9.json +++ b/advisories/unreviewed/2022/05/GHSA-j5v6-h83f-h9j9/GHSA-j5v6-h83f-h9j9.json @@ -7,12 +7,8 @@ "CVE-2008-2652" ], "details": "Multiple SQL injection vulnerabilities in catalog.php in SMEWeb 1.4b and 1.4f allow remote attackers to execute arbitrary SQL commands via the (1) idp and (2) category parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5w2-6mxx-vrmv/GHSA-j5w2-6mxx-vrmv.json b/advisories/unreviewed/2022/05/GHSA-j5w2-6mxx-vrmv/GHSA-j5w2-6mxx-vrmv.json index 154543ff950..73ac55eae5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5w2-6mxx-vrmv/GHSA-j5w2-6mxx-vrmv.json +++ b/advisories/unreviewed/2022/05/GHSA-j5w2-6mxx-vrmv/GHSA-j5w2-6mxx-vrmv.json @@ -7,12 +7,8 @@ "CVE-2008-3072" ], "details": "Simple Machines Forum (SMF) 1.1.x before 1.1.5 and 1.0.x before 1.0.13, when running in PHP before 4.2.0, does not properly seed the random number generator, which has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j73j-p6cq-cmxj/GHSA-j73j-p6cq-cmxj.json b/advisories/unreviewed/2022/05/GHSA-j73j-p6cq-cmxj/GHSA-j73j-p6cq-cmxj.json index ce0fe0a5592..73dcb651153 100644 --- a/advisories/unreviewed/2022/05/GHSA-j73j-p6cq-cmxj/GHSA-j73j-p6cq-cmxj.json +++ b/advisories/unreviewed/2022/05/GHSA-j73j-p6cq-cmxj/GHSA-j73j-p6cq-cmxj.json @@ -7,12 +7,8 @@ "CVE-2019-5173" ], "details": "An exploitable command injection vulnerability exists in the iocheckd service ‘I/O-Check’ function of the WAGO PFC 200 Firmware version 03.02.02(14). A specially crafted XML cache file written to a specific location on the device can be used to inject OS commands. An attacker can send a specially crafted packet to trigger the parsing of this cache file. At 0x1e9fc the extracted state value from the xml file is used as an argument to /etc/config-tools/config_interfaces interface=X1 state=<contents of state node> using sprintf(). This command is later executed via a call to system().", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7wp-2pxv-m6g9/GHSA-j7wp-2pxv-m6g9.json b/advisories/unreviewed/2022/05/GHSA-j7wp-2pxv-m6g9/GHSA-j7wp-2pxv-m6g9.json index 854d77d7a26..ec0ebc8515c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7wp-2pxv-m6g9/GHSA-j7wp-2pxv-m6g9.json +++ b/advisories/unreviewed/2022/05/GHSA-j7wp-2pxv-m6g9/GHSA-j7wp-2pxv-m6g9.json @@ -7,12 +7,8 @@ "CVE-2008-2829" ], "details": "php_imap.c in PHP 5.2.5, 5.2.6, 4.x, and other versions, uses obsolete API calls that allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long IMAP request, which triggers an \"rfc822.c legacy routine buffer overflow\" error message, related to the rfc822_write_address function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j839-cx92-9fpc/GHSA-j839-cx92-9fpc.json b/advisories/unreviewed/2022/05/GHSA-j839-cx92-9fpc/GHSA-j839-cx92-9fpc.json index 7db06f2f353..4d1fa8f0868 100644 --- a/advisories/unreviewed/2022/05/GHSA-j839-cx92-9fpc/GHSA-j839-cx92-9fpc.json +++ b/advisories/unreviewed/2022/05/GHSA-j839-cx92-9fpc/GHSA-j839-cx92-9fpc.json @@ -7,12 +7,8 @@ "CVE-2008-2761" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute Banner Manager XE 2.0 allow remote authenticated administrators to inject arbitrary web script or HTML via the text parameter in (1) searchbanners.asp and (2) listadvertisers.asp, and other unspecified fields. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8hm-6qv5-gj2w/GHSA-j8hm-6qv5-gj2w.json b/advisories/unreviewed/2022/05/GHSA-j8hm-6qv5-gj2w/GHSA-j8hm-6qv5-gj2w.json index 7cfa89dac0e..eedf2553998 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8hm-6qv5-gj2w/GHSA-j8hm-6qv5-gj2w.json +++ b/advisories/unreviewed/2022/05/GHSA-j8hm-6qv5-gj2w/GHSA-j8hm-6qv5-gj2w.json @@ -7,12 +7,8 @@ "CVE-2008-2712" ], "details": "Vim 7.1.314, 6.4, and other versions allows user-assisted remote attackers to execute arbitrary commands via Vim scripts that do not properly sanitize inputs before invoking the execute or system functions, as demonstrated using (1) filetype.vim, (3) xpm.vim, (4) gzip_vim, and (5) netrw. NOTE: the originally reported version was 7.1.314, but the researcher actually found this set of issues in 7.1.298. NOTE: the zipplugin issue (originally vector 2 in this identifier) has been subsumed by CVE-2008-3075.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j8r9-mcxg-mjg4/GHSA-j8r9-mcxg-mjg4.json b/advisories/unreviewed/2022/05/GHSA-j8r9-mcxg-mjg4/GHSA-j8r9-mcxg-mjg4.json index 311378a4f91..7d7e763b18c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8r9-mcxg-mjg4/GHSA-j8r9-mcxg-mjg4.json +++ b/advisories/unreviewed/2022/05/GHSA-j8r9-mcxg-mjg4/GHSA-j8r9-mcxg-mjg4.json @@ -7,12 +7,8 @@ "CVE-2021-40503" ], "details": "An information disclosure vulnerability exists in SAP GUI for Windows - versions < 7.60 PL13, 7.70 PL4, which allows an attacker with sufficient privileges on the local client-side PC to obtain an equivalent of the user’s password. With this highly sensitive data leaked, the attacker would be able to logon to the backend system the SAP GUI for Windows was connected to and launch further attacks depending on the authorizations of the user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jc8q-w279-7g62/GHSA-jc8q-w279-7g62.json b/advisories/unreviewed/2022/05/GHSA-jc8q-w279-7g62/GHSA-jc8q-w279-7g62.json index 8f4975cb0a8..33c69fc919e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jc8q-w279-7g62/GHSA-jc8q-w279-7g62.json +++ b/advisories/unreviewed/2022/05/GHSA-jc8q-w279-7g62/GHSA-jc8q-w279-7g62.json @@ -7,12 +7,8 @@ "CVE-2008-3277" ], "details": "Untrusted search path vulnerability in a certain Red Hat build script for the ibmssh executable in ibutils packages before ibutils-1.5.7-2.el6 in Red Hat Enterprise Linux (RHEL) 6 and ibutils-1.2-11.2.el5 in Red Hat Enterprise Linux (RHEL) 5 allows local users to gain privileges via a Trojan Horse program in refix/lib/, related to an incorrect RPATH setting in the ELF header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf63-8279-v8vq/GHSA-jf63-8279-v8vq.json b/advisories/unreviewed/2022/05/GHSA-jf63-8279-v8vq/GHSA-jf63-8279-v8vq.json index 4cc54d1737e..9e31f31f5e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf63-8279-v8vq/GHSA-jf63-8279-v8vq.json +++ b/advisories/unreviewed/2022/05/GHSA-jf63-8279-v8vq/GHSA-jf63-8279-v8vq.json @@ -7,12 +7,8 @@ "CVE-2021-32930" ], "details": "The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jfxr-q6v5-hrc4/GHSA-jfxr-q6v5-hrc4.json b/advisories/unreviewed/2022/05/GHSA-jfxr-q6v5-hrc4/GHSA-jfxr-q6v5-hrc4.json index e07f10ce09d..6553f499ba0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfxr-q6v5-hrc4/GHSA-jfxr-q6v5-hrc4.json +++ b/advisories/unreviewed/2022/05/GHSA-jfxr-q6v5-hrc4/GHSA-jfxr-q6v5-hrc4.json @@ -7,12 +7,8 @@ "CVE-2008-2634" ], "details": "SQL injection vulnerability in index.asp in I-Pos Internet Pay Online Store 1.3 Beta and earlier allows remote attackers to execute arbitrary SQL commands via the item parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhqw-c6wg-mrq8/GHSA-jhqw-c6wg-mrq8.json b/advisories/unreviewed/2022/05/GHSA-jhqw-c6wg-mrq8/GHSA-jhqw-c6wg-mrq8.json index 140ece51307..a2a619b633f 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhqw-c6wg-mrq8/GHSA-jhqw-c6wg-mrq8.json +++ b/advisories/unreviewed/2022/05/GHSA-jhqw-c6wg-mrq8/GHSA-jhqw-c6wg-mrq8.json @@ -7,12 +7,8 @@ "CVE-2008-2844" ], "details": "SQL injection vulnerability in index.php in Carscripts Classifieds allows remote attackers to execute arbitrary SQL commands via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjpq-g68f-x6cx/GHSA-jjpq-g68f-x6cx.json b/advisories/unreviewed/2022/05/GHSA-jjpq-g68f-x6cx/GHSA-jjpq-g68f-x6cx.json index 80921690c18..de8442e89b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjpq-g68f-x6cx/GHSA-jjpq-g68f-x6cx.json +++ b/advisories/unreviewed/2022/05/GHSA-jjpq-g68f-x6cx/GHSA-jjpq-g68f-x6cx.json @@ -7,12 +7,8 @@ "CVE-2008-2767" ], "details": "SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to execute arbitrary SQL commands via the orderby parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmfc-j352-6j46/GHSA-jmfc-j352-6j46.json b/advisories/unreviewed/2022/05/GHSA-jmfc-j352-6j46/GHSA-jmfc-j352-6j46.json index 80a66faf66d..c2f518f84c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmfc-j352-6j46/GHSA-jmfc-j352-6j46.json +++ b/advisories/unreviewed/2022/05/GHSA-jmfc-j352-6j46/GHSA-jmfc-j352-6j46.json @@ -7,12 +7,8 @@ "CVE-2008-3174" ], "details": "Unspecified vulnerability in the kmxfw.sys driver in CA Host-Based Intrusion Prevention System (HIPS) r8, as used in CA Internet Security Suite and Personal Firewall, allows remote attackers to cause a denial of service via unknown vectors, related to \"insufficient validation.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jp78-pvj8-v3x5/GHSA-jp78-pvj8-v3x5.json b/advisories/unreviewed/2022/05/GHSA-jp78-pvj8-v3x5/GHSA-jp78-pvj8-v3x5.json index 1d947c55562..908e1fad8cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp78-pvj8-v3x5/GHSA-jp78-pvj8-v3x5.json +++ b/advisories/unreviewed/2022/05/GHSA-jp78-pvj8-v3x5/GHSA-jp78-pvj8-v3x5.json @@ -7,12 +7,8 @@ "CVE-2008-2921" ], "details": "SQL injection vulnerability in index.php in EZTechhelp EZCMS 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jp7r-rh2x-fm7j/GHSA-jp7r-rh2x-fm7j.json b/advisories/unreviewed/2022/05/GHSA-jp7r-rh2x-fm7j/GHSA-jp7r-rh2x-fm7j.json index 2cb7381385f..032f3be614d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp7r-rh2x-fm7j/GHSA-jp7r-rh2x-fm7j.json +++ b/advisories/unreviewed/2022/05/GHSA-jp7r-rh2x-fm7j/GHSA-jp7r-rh2x-fm7j.json @@ -7,12 +7,8 @@ "CVE-2008-3131" ], "details": "SQL injection vulnerability in chatbox.php in pSys 0.7.0 Alpha, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the showid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jq8j-c4c7-g7gx/GHSA-jq8j-c4c7-g7gx.json b/advisories/unreviewed/2022/05/GHSA-jq8j-c4c7-g7gx/GHSA-jq8j-c4c7-g7gx.json index 65f5da2939e..08d3592cd10 100644 --- a/advisories/unreviewed/2022/05/GHSA-jq8j-c4c7-g7gx/GHSA-jq8j-c4c7-g7gx.json +++ b/advisories/unreviewed/2022/05/GHSA-jq8j-c4c7-g7gx/GHSA-jq8j-c4c7-g7gx.json @@ -7,12 +7,8 @@ "CVE-2008-2828" ], "details": "Stack-based buffer overflow in tmsnc allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an MSN packet with a UBX command containing a large UBX payload length field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqc5-m6xw-qrg5/GHSA-jqc5-m6xw-qrg5.json b/advisories/unreviewed/2022/05/GHSA-jqc5-m6xw-qrg5/GHSA-jqc5-m6xw-qrg5.json index 4da9388a55c..77e8252220d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqc5-m6xw-qrg5/GHSA-jqc5-m6xw-qrg5.json +++ b/advisories/unreviewed/2022/05/GHSA-jqc5-m6xw-qrg5/GHSA-jqc5-m6xw-qrg5.json @@ -7,12 +7,8 @@ "CVE-2008-2782" ], "details": "Multiple directory traversal vulnerabilities in OtomiGenX 2.2 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter to (1) library_rss.php and (2) rss.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jv45-q4h8-r5qj/GHSA-jv45-q4h8-r5qj.json b/advisories/unreviewed/2022/05/GHSA-jv45-q4h8-r5qj/GHSA-jv45-q4h8-r5qj.json index 9c59c76e4de..18e91768fec 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv45-q4h8-r5qj/GHSA-jv45-q4h8-r5qj.json +++ b/advisories/unreviewed/2022/05/GHSA-jv45-q4h8-r5qj/GHSA-jv45-q4h8-r5qj.json @@ -7,12 +7,8 @@ "CVE-2008-3471" ], "details": "Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 SP3; Office Excel Viewer; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Gold and SP1; Office 2004 and 2008 for Mac; and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via a BIFF file with a malformed record that triggers a user-influenced size calculation, aka \"File Format Parsing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx2g-2vg3-x8rp/GHSA-jx2g-2vg3-x8rp.json b/advisories/unreviewed/2022/05/GHSA-jx2g-2vg3-x8rp/GHSA-jx2g-2vg3-x8rp.json index 13cf4b3452c..faf5027022f 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx2g-2vg3-x8rp/GHSA-jx2g-2vg3-x8rp.json +++ b/advisories/unreviewed/2022/05/GHSA-jx2g-2vg3-x8rp/GHSA-jx2g-2vg3-x8rp.json @@ -7,12 +7,8 @@ "CVE-2008-2974" ], "details": "Directory traversal vulnerability in chatconfig.php in MM Chat 1.5, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the currentlang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m28r-x4mj-p22v/GHSA-m28r-x4mj-p22v.json b/advisories/unreviewed/2022/05/GHSA-m28r-x4mj-p22v/GHSA-m28r-x4mj-p22v.json index eb24df73106..1c1a1db3fdb 100644 --- a/advisories/unreviewed/2022/05/GHSA-m28r-x4mj-p22v/GHSA-m28r-x4mj-p22v.json +++ b/advisories/unreviewed/2022/05/GHSA-m28r-x4mj-p22v/GHSA-m28r-x4mj-p22v.json @@ -7,12 +7,8 @@ "CVE-2008-3139" ], "details": "The RTMPT dissector in Wireshark (formerly Ethereal) 0.99.8 through 1.0.0 allows remote attackers to cause a denial of service (crash) via unknown vectors. NOTE: this might be due to a use-after-free error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m6m3-cpjp-mwgw/GHSA-m6m3-cpjp-mwgw.json b/advisories/unreviewed/2022/05/GHSA-m6m3-cpjp-mwgw/GHSA-m6m3-cpjp-mwgw.json index 7bdef193a0f..8fe3b8b17ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-m6m3-cpjp-mwgw/GHSA-m6m3-cpjp-mwgw.json +++ b/advisories/unreviewed/2022/05/GHSA-m6m3-cpjp-mwgw/GHSA-m6m3-cpjp-mwgw.json @@ -7,12 +7,8 @@ "CVE-2008-2826" ], "details": "Integer overflow in the sctp_getsockopt_local_addrs_old function in net/sctp/socket.c in the Stream Control Transmission Protocol (sctp) functionality in the Linux kernel before 2.6.25.9 allows local users to cause a denial of service (resource consumption and system outage) via vectors involving a large addr_num field in an sctp_getaddrs_old data structure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m842-x747-7p5p/GHSA-m842-x747-7p5p.json b/advisories/unreviewed/2022/05/GHSA-m842-x747-7p5p/GHSA-m842-x747-7p5p.json index ebc41aebe19..ff336f9d93e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m842-x747-7p5p/GHSA-m842-x747-7p5p.json +++ b/advisories/unreviewed/2022/05/GHSA-m842-x747-7p5p/GHSA-m842-x747-7p5p.json @@ -7,12 +7,8 @@ "CVE-2008-2834" ], "details": "SQL injection vulnerability in projects.php in Scientific Image DataBase 0.41 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m89f-6fx2-639p/GHSA-m89f-6fx2-639p.json b/advisories/unreviewed/2022/05/GHSA-m89f-6fx2-639p/GHSA-m89f-6fx2-639p.json index a5346c292d6..5dac050e489 100644 --- a/advisories/unreviewed/2022/05/GHSA-m89f-6fx2-639p/GHSA-m89f-6fx2-639p.json +++ b/advisories/unreviewed/2022/05/GHSA-m89f-6fx2-639p/GHSA-m89f-6fx2-639p.json @@ -7,12 +7,8 @@ "CVE-2008-3064" ], "details": "Unspecified vulnerability in RealNetworks RealPlayer Enterprise, RealPlayer 10, and RealPlayer 10.5 before build 6.0.12.1675 has unknown impact and attack vectors, probably related to accessing local files, aka a \"Local resource reference vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8xh-c6xx-vm9r/GHSA-m8xh-c6xx-vm9r.json b/advisories/unreviewed/2022/05/GHSA-m8xh-c6xx-vm9r/GHSA-m8xh-c6xx-vm9r.json index 38ef632f347..835e86943df 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8xh-c6xx-vm9r/GHSA-m8xh-c6xx-vm9r.json +++ b/advisories/unreviewed/2022/05/GHSA-m8xh-c6xx-vm9r/GHSA-m8xh-c6xx-vm9r.json @@ -7,12 +7,8 @@ "CVE-2008-2859" ], "details": "Unspecified vulnerability in the IMAP service in NetWin SurgeMail before 3.9g2 allows remote attackers to cause a denial of service (daemon crash) via unknown vectors related to an \"imap command.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m922-4jf2-phjf/GHSA-m922-4jf2-phjf.json b/advisories/unreviewed/2022/05/GHSA-m922-4jf2-phjf/GHSA-m922-4jf2-phjf.json index ff50b0b41e5..c453bbcd2e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-m922-4jf2-phjf/GHSA-m922-4jf2-phjf.json +++ b/advisories/unreviewed/2022/05/GHSA-m922-4jf2-phjf/GHSA-m922-4jf2-phjf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mc36-m4g2-3jjf/GHSA-mc36-m4g2-3jjf.json b/advisories/unreviewed/2022/05/GHSA-mc36-m4g2-3jjf/GHSA-mc36-m4g2-3jjf.json index 9b26e086fad..8519aff1af2 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc36-m4g2-3jjf/GHSA-mc36-m4g2-3jjf.json +++ b/advisories/unreviewed/2022/05/GHSA-mc36-m4g2-3jjf/GHSA-mc36-m4g2-3jjf.json @@ -7,12 +7,8 @@ "CVE-2008-3153" ], "details": "SQL injection vulnerability in Triton CMS Pro allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mc7m-8hwv-hq4r/GHSA-mc7m-8hwv-hq4r.json b/advisories/unreviewed/2022/05/GHSA-mc7m-8hwv-hq4r/GHSA-mc7m-8hwv-hq4r.json index f35229870e2..d786fcc50e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc7m-8hwv-hq4r/GHSA-mc7m-8hwv-hq4r.json +++ b/advisories/unreviewed/2022/05/GHSA-mc7m-8hwv-hq4r/GHSA-mc7m-8hwv-hq4r.json @@ -7,12 +7,8 @@ "CVE-2008-2987" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Benja CMS 0.1 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin_edit_submenu.php, (2) admin_new_submenu.php, and (3) admin_edit_topmenu.php in admin/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mcjh-g82m-8wfj/GHSA-mcjh-g82m-8wfj.json b/advisories/unreviewed/2022/05/GHSA-mcjh-g82m-8wfj/GHSA-mcjh-g82m-8wfj.json index 7b70636ed79..e3da54263eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-mcjh-g82m-8wfj/GHSA-mcjh-g82m-8wfj.json +++ b/advisories/unreviewed/2022/05/GHSA-mcjh-g82m-8wfj/GHSA-mcjh-g82m-8wfj.json @@ -7,12 +7,8 @@ "CVE-2008-2674" ], "details": "Unspecified vulnerability in the Interstage Management Console, as used in Fujitsu Interstage Application Server 6.0 through 9.0.0A, Apworks Modelers-J 6.0 through 7.0, and Studio 8.0.1 and 9.0.0, allows remote attackers to read or delete arbitrary files via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf46-j8qw-427c/GHSA-mf46-j8qw-427c.json b/advisories/unreviewed/2022/05/GHSA-mf46-j8qw-427c/GHSA-mf46-j8qw-427c.json index 8ff368e0253..0c22c0d15ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf46-j8qw-427c/GHSA-mf46-j8qw-427c.json +++ b/advisories/unreviewed/2022/05/GHSA-mf46-j8qw-427c/GHSA-mf46-j8qw-427c.json @@ -7,12 +7,8 @@ "CVE-2008-2743" ], "details": "Cross-site scripting (XSS) vulnerability in the embedded web server in Xerox 4110, 4590, and 4595 Copier/Printers allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mgjr-3gvp-wpc2/GHSA-mgjr-3gvp-wpc2.json b/advisories/unreviewed/2022/05/GHSA-mgjr-3gvp-wpc2/GHSA-mgjr-3gvp-wpc2.json index 5de33a5636a..412a9afb757 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgjr-3gvp-wpc2/GHSA-mgjr-3gvp-wpc2.json +++ b/advisories/unreviewed/2022/05/GHSA-mgjr-3gvp-wpc2/GHSA-mgjr-3gvp-wpc2.json @@ -7,12 +7,8 @@ "CVE-2008-2952" ], "details": "liblber/io.c in OpenLDAP 2.2.4 to 2.4.10 allows remote attackers to cause a denial of service (program termination) via crafted ASN.1 BER datagrams that trigger an assertion error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -144,9 +140,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mgmv-gxwr-mfmr/GHSA-mgmv-gxwr-mfmr.json b/advisories/unreviewed/2022/05/GHSA-mgmv-gxwr-mfmr/GHSA-mgmv-gxwr-mfmr.json index 577bd6599dd..8fc0a320de6 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgmv-gxwr-mfmr/GHSA-mgmv-gxwr-mfmr.json +++ b/advisories/unreviewed/2022/05/GHSA-mgmv-gxwr-mfmr/GHSA-mgmv-gxwr-mfmr.json @@ -7,12 +7,8 @@ "CVE-2008-3264" ], "details": "The FWDOWNL firmware-download implementation in Asterisk Open Source 1.0.x, 1.2.x before 1.2.30, and 1.4.x before 1.4.21.2; Business Edition A.x.x, B.x.x before B.2.5.4, and C.x.x before C.1.10.3; AsteriskNOW; Appliance Developer Kit 0.x.x; and s800i 1.0.x before 1.2.0.1 allows remote attackers to cause a denial of service (traffic amplification) via an IAX2 FWDOWNL request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mgrc-7p8m-89r3/GHSA-mgrc-7p8m-89r3.json b/advisories/unreviewed/2022/05/GHSA-mgrc-7p8m-89r3/GHSA-mgrc-7p8m-89r3.json index d8f7cdfb79b..71ba4c07244 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgrc-7p8m-89r3/GHSA-mgrc-7p8m-89r3.json +++ b/advisories/unreviewed/2022/05/GHSA-mgrc-7p8m-89r3/GHSA-mgrc-7p8m-89r3.json @@ -7,12 +7,8 @@ "CVE-2008-2711" ], "details": "fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, allows remote attackers to cause a denial of service (crash and persistent mail failure) via a malformed mail message with long headers, which triggers an erroneous dereference when using vsnprintf to format log messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mh85-c5xv-9rcv/GHSA-mh85-c5xv-9rcv.json b/advisories/unreviewed/2022/05/GHSA-mh85-c5xv-9rcv/GHSA-mh85-c5xv-9rcv.json index ede57b62aa8..7c820a1efb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh85-c5xv-9rcv/GHSA-mh85-c5xv-9rcv.json +++ b/advisories/unreviewed/2022/05/GHSA-mh85-c5xv-9rcv/GHSA-mh85-c5xv-9rcv.json @@ -7,12 +7,8 @@ "CVE-2008-2697" ], "details": "SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjm3-xc4w-f4mw/GHSA-mjm3-xc4w-f4mw.json b/advisories/unreviewed/2022/05/GHSA-mjm3-xc4w-f4mw/GHSA-mjm3-xc4w-f4mw.json index 8146ad5b14f..b8bd982086a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjm3-xc4w-f4mw/GHSA-mjm3-xc4w-f4mw.json +++ b/advisories/unreviewed/2022/05/GHSA-mjm3-xc4w-f4mw/GHSA-mjm3-xc4w-f4mw.json @@ -7,12 +7,8 @@ "CVE-2008-2982" ], "details": "Multiple directory traversal vulnerabilities in HomePH Design 2.10 RC2, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) thumb_template parameter to (a) admin/templates/template_thumbnail.php, and the (2) language parameter to (b) account/account.php, (c) downloads/downloads.php, (d) forum/forum.php, (e) fotogalerie/delete.php, and (f) fotogalerie/fotogalerie.php in admin/features/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjv7-8463-x7pq/GHSA-mjv7-8463-x7pq.json b/advisories/unreviewed/2022/05/GHSA-mjv7-8463-x7pq/GHSA-mjv7-8463-x7pq.json index 1d66d434868..58ffbfea715 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjv7-8463-x7pq/GHSA-mjv7-8463-x7pq.json +++ b/advisories/unreviewed/2022/05/GHSA-mjv7-8463-x7pq/GHSA-mjv7-8463-x7pq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mmhr-jvw2-9rx9/GHSA-mmhr-jvw2-9rx9.json b/advisories/unreviewed/2022/05/GHSA-mmhr-jvw2-9rx9/GHSA-mmhr-jvw2-9rx9.json index be959b88ca3..c0e947deaf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mmhr-jvw2-9rx9/GHSA-mmhr-jvw2-9rx9.json +++ b/advisories/unreviewed/2022/05/GHSA-mmhr-jvw2-9rx9/GHSA-mmhr-jvw2-9rx9.json @@ -7,12 +7,8 @@ "CVE-2008-3053" ], "details": "SQL injection vulnerability in the SQL Frontend (mh_omsqlio) extension 1.0.11 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mp3g-r67x-h2fg/GHSA-mp3g-r67x-h2fg.json b/advisories/unreviewed/2022/05/GHSA-mp3g-r67x-h2fg/GHSA-mp3g-r67x-h2fg.json index ede5d3cb6e2..fdd6664004d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp3g-r67x-h2fg/GHSA-mp3g-r67x-h2fg.json +++ b/advisories/unreviewed/2022/05/GHSA-mp3g-r67x-h2fg/GHSA-mp3g-r67x-h2fg.json @@ -7,12 +7,8 @@ "CVE-2008-2968" ], "details": "SQL injection vulnerability in rating.php in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allows remote attackers to execute arbitrary SQL commands via the book_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mq3w-5326-vcvq/GHSA-mq3w-5326-vcvq.json b/advisories/unreviewed/2022/05/GHSA-mq3w-5326-vcvq/GHSA-mq3w-5326-vcvq.json index 2e211f158d6..f0d4ccc5ab8 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq3w-5326-vcvq/GHSA-mq3w-5326-vcvq.json +++ b/advisories/unreviewed/2022/05/GHSA-mq3w-5326-vcvq/GHSA-mq3w-5326-vcvq.json @@ -7,12 +7,8 @@ "CVE-2008-2720" ], "details": "Cross-site scripting (XSS) vulnerability in Menalto Gallery before 2.2.5 allows remote attackers to inject arbitrary web script or HTML via the (1) host and (2) path components of a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqgp-9pfx-9gj4/GHSA-mqgp-9pfx-9gj4.json b/advisories/unreviewed/2022/05/GHSA-mqgp-9pfx-9gj4/GHSA-mqgp-9pfx-9gj4.json index f53d3ce43a5..6fa98d8a9c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqgp-9pfx-9gj4/GHSA-mqgp-9pfx-9gj4.json +++ b/advisories/unreviewed/2022/05/GHSA-mqgp-9pfx-9gj4/GHSA-mqgp-9pfx-9gj4.json @@ -7,12 +7,8 @@ "CVE-2008-3185" ], "details": "SQL injection vulnerability in index.php in Relative Real Estate Systems 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the listing_id parameter in a listings action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqxg-3j3q-fm6f/GHSA-mqxg-3j3q-fm6f.json b/advisories/unreviewed/2022/05/GHSA-mqxg-3j3q-fm6f/GHSA-mqxg-3j3q-fm6f.json index 0a3ae83b171..0719b5e780a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqxg-3j3q-fm6f/GHSA-mqxg-3j3q-fm6f.json +++ b/advisories/unreviewed/2022/05/GHSA-mqxg-3j3q-fm6f/GHSA-mqxg-3j3q-fm6f.json @@ -7,12 +7,8 @@ "CVE-2008-2627" ], "details": "SQL injection vulnerability in the IDoBlog (com_idoblog) component b24 and earlier and 1.0, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the userid parameter in a userblog action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrp9-3c39-p2gx/GHSA-mrp9-3c39-p2gx.json b/advisories/unreviewed/2022/05/GHSA-mrp9-3c39-p2gx/GHSA-mrp9-3c39-p2gx.json index 4097e149ef3..6a697dcc450 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrp9-3c39-p2gx/GHSA-mrp9-3c39-p2gx.json +++ b/advisories/unreviewed/2022/05/GHSA-mrp9-3c39-p2gx/GHSA-mrp9-3c39-p2gx.json @@ -7,12 +7,8 @@ "CVE-2008-2758" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute News Manager XE 3.2 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) pblname and (2) text parameters to (a) admin/search.asp, (3) name parameter to (b) admin/publishers.asp, and other unspecified vectors to (c) anmviewer.asp and (d) editarticleX.asp in admin/. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv45-47cr-x39v/GHSA-mv45-47cr-x39v.json b/advisories/unreviewed/2022/05/GHSA-mv45-47cr-x39v/GHSA-mv45-47cr-x39v.json index 156084f0073..512ef8666c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv45-47cr-x39v/GHSA-mv45-47cr-x39v.json +++ b/advisories/unreviewed/2022/05/GHSA-mv45-47cr-x39v/GHSA-mv45-47cr-x39v.json @@ -7,12 +7,8 @@ "CVE-2008-2975" ], "details": "Cross-site scripting (XSS) vulnerability in admin/objects/obj_image.php in TinX/cms 1.1 allows remote attackers to inject arbitrary web script or HTML via the language parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv7v-jm2g-787q/GHSA-mv7v-jm2g-787q.json b/advisories/unreviewed/2022/05/GHSA-mv7v-jm2g-787q/GHSA-mv7v-jm2g-787q.json index fe38a40be09..791bf7c2338 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv7v-jm2g-787q/GHSA-mv7v-jm2g-787q.json +++ b/advisories/unreviewed/2022/05/GHSA-mv7v-jm2g-787q/GHSA-mv7v-jm2g-787q.json @@ -7,12 +7,8 @@ "CVE-2008-2692" ], "details": "SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwqr-4g48-mmj8/GHSA-mwqr-4g48-mmj8.json b/advisories/unreviewed/2022/05/GHSA-mwqr-4g48-mmj8/GHSA-mwqr-4g48-mmj8.json index fa151f03977..814781d3a61 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwqr-4g48-mmj8/GHSA-mwqr-4g48-mmj8.json +++ b/advisories/unreviewed/2022/05/GHSA-mwqr-4g48-mmj8/GHSA-mwqr-4g48-mmj8.json @@ -7,12 +7,8 @@ "CVE-2008-2756" ], "details": "Cross-site scripting (XSS) vulnerability in admin/users.asp in Xigla Absolute Control Panel XE 1.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter and other unspecified parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p234-3j3r-x8wh/GHSA-p234-3j3r-x8wh.json b/advisories/unreviewed/2022/05/GHSA-p234-3j3r-x8wh/GHSA-p234-3j3r-x8wh.json index 502d526e996..5c0c4eb67d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-p234-3j3r-x8wh/GHSA-p234-3j3r-x8wh.json +++ b/advisories/unreviewed/2022/05/GHSA-p234-3j3r-x8wh/GHSA-p234-3j3r-x8wh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p24j-8j47-64q3/GHSA-p24j-8j47-64q3.json b/advisories/unreviewed/2022/05/GHSA-p24j-8j47-64q3/GHSA-p24j-8j47-64q3.json index 1b02a0d8bf2..fd501cdfe47 100644 --- a/advisories/unreviewed/2022/05/GHSA-p24j-8j47-64q3/GHSA-p24j-8j47-64q3.json +++ b/advisories/unreviewed/2022/05/GHSA-p24j-8j47-64q3/GHSA-p24j-8j47-64q3.json @@ -7,12 +7,8 @@ "CVE-2008-2762" ], "details": "SQL injection vulnerability in search.asp in Xigla Absolute Form Processor XE 4.0 allows remote authenticated administrators to execute arbitrary SQL commands via the orderby parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p25m-vqf3-vqr2/GHSA-p25m-vqf3-vqr2.json b/advisories/unreviewed/2022/05/GHSA-p25m-vqf3-vqr2/GHSA-p25m-vqf3-vqr2.json index 1c630107e65..233b8ac5254 100644 --- a/advisories/unreviewed/2022/05/GHSA-p25m-vqf3-vqr2/GHSA-p25m-vqf3-vqr2.json +++ b/advisories/unreviewed/2022/05/GHSA-p25m-vqf3-vqr2/GHSA-p25m-vqf3-vqr2.json @@ -7,12 +7,8 @@ "CVE-2008-2818" ], "details": "Directory traversal vulnerability in Easy-Clanpage 3.0 b1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the section parameter to the default URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p284-p85f-wmhx/GHSA-p284-p85f-wmhx.json b/advisories/unreviewed/2022/05/GHSA-p284-p85f-wmhx/GHSA-p284-p85f-wmhx.json index a30a3868c04..36311b6e622 100644 --- a/advisories/unreviewed/2022/05/GHSA-p284-p85f-wmhx/GHSA-p284-p85f-wmhx.json +++ b/advisories/unreviewed/2022/05/GHSA-p284-p85f-wmhx/GHSA-p284-p85f-wmhx.json @@ -7,12 +7,8 @@ "CVE-2008-3148" ], "details": "Stack-based buffer overflow in (1) OllyDBG 1.10 and (2) ImpREC 1.7f allows user-assisted attackers to execute arbitrary code via a crafted DLL file that contains a long string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2p9-vhrp-wv8p/GHSA-p2p9-vhrp-wv8p.json b/advisories/unreviewed/2022/05/GHSA-p2p9-vhrp-wv8p/GHSA-p2p9-vhrp-wv8p.json index d5853a631f5..2a5612daffc 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2p9-vhrp-wv8p/GHSA-p2p9-vhrp-wv8p.json +++ b/advisories/unreviewed/2022/05/GHSA-p2p9-vhrp-wv8p/GHSA-p2p9-vhrp-wv8p.json @@ -7,12 +7,8 @@ "CVE-2008-2929" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the adminutil library in the Directory Server Administration Express and Directory Server Gateway (DSGW) web interface in Red Hat Directory Server 7.1 before SP7 and 8 EL4 and EL5, and Fedora Directory Server, allow remote attackers to inject arbitrary web script or HTML via input values that use % (percent) escaping.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p3j9-q9vj-jx3p/GHSA-p3j9-q9vj-jx3p.json b/advisories/unreviewed/2022/05/GHSA-p3j9-q9vj-jx3p/GHSA-p3j9-q9vj-jx3p.json index ced13e4b04c..d47e93b7173 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3j9-q9vj-jx3p/GHSA-p3j9-q9vj-jx3p.json +++ b/advisories/unreviewed/2022/05/GHSA-p3j9-q9vj-jx3p/GHSA-p3j9-q9vj-jx3p.json @@ -7,12 +7,8 @@ "CVE-2008-2979" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in phpi/login.php in Ourvideo CMS 9.5 allow remote attackers to inject arbitrary web script or HTML via the (1) top_page and (2) end_page parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p3xf-24rj-r72x/GHSA-p3xf-24rj-r72x.json b/advisories/unreviewed/2022/05/GHSA-p3xf-24rj-r72x/GHSA-p3xf-24rj-r72x.json index bf63367cedd..0a14992f085 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3xf-24rj-r72x/GHSA-p3xf-24rj-r72x.json +++ b/advisories/unreviewed/2022/05/GHSA-p3xf-24rj-r72x/GHSA-p3xf-24rj-r72x.json @@ -7,12 +7,8 @@ "CVE-2008-2797" ], "details": "Cross-site scripting (XSS) vulnerability in MainLayout.do in ManageEngine OpUtils 5.0 allows remote attackers to inject arbitrary web script or HTML via the hostName parameter, when viewing an SNMP graph. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p426-497v-jr36/GHSA-p426-497v-jr36.json b/advisories/unreviewed/2022/05/GHSA-p426-497v-jr36/GHSA-p426-497v-jr36.json index c2bcff293dd..fc4108b58cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-p426-497v-jr36/GHSA-p426-497v-jr36.json +++ b/advisories/unreviewed/2022/05/GHSA-p426-497v-jr36/GHSA-p426-497v-jr36.json @@ -7,12 +7,8 @@ "CVE-2008-2719" ], "details": "Off-by-one error in the ppscan function (preproc.c) in Netwide Assembler (NASM) 2.02 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted file that triggers a stack-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p45x-6rjm-x9qf/GHSA-p45x-6rjm-x9qf.json b/advisories/unreviewed/2022/05/GHSA-p45x-6rjm-x9qf/GHSA-p45x-6rjm-x9qf.json index 707ed31fa8d..6966a762ab9 100644 --- a/advisories/unreviewed/2022/05/GHSA-p45x-6rjm-x9qf/GHSA-p45x-6rjm-x9qf.json +++ b/advisories/unreviewed/2022/05/GHSA-p45x-6rjm-x9qf/GHSA-p45x-6rjm-x9qf.json @@ -7,12 +7,8 @@ "CVE-2008-3110" ], "details": "Unspecified vulnerability in scripting language support in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier allows remote attackers to obtain sensitive information by using an applet to read information from another applet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -132,9 +128,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p47x-r9f4-v8c6/GHSA-p47x-r9f4-v8c6.json b/advisories/unreviewed/2022/05/GHSA-p47x-r9f4-v8c6/GHSA-p47x-r9f4-v8c6.json index 31f16f80286..9e7edcf7a00 100644 --- a/advisories/unreviewed/2022/05/GHSA-p47x-r9f4-v8c6/GHSA-p47x-r9f4-v8c6.json +++ b/advisories/unreviewed/2022/05/GHSA-p47x-r9f4-v8c6/GHSA-p47x-r9f4-v8c6.json @@ -7,12 +7,8 @@ "CVE-2008-3008" ], "details": "Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remote attackers to execute arbitrary code via a long first argument to the GetDetailsString method, aka \"Windows Media Encoder Buffer Overrun Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4qj-94p5-hxgw/GHSA-p4qj-94p5-hxgw.json b/advisories/unreviewed/2022/05/GHSA-p4qj-94p5-hxgw/GHSA-p4qj-94p5-hxgw.json index 90fd3d54de6..2f7c9f6d3f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4qj-94p5-hxgw/GHSA-p4qj-94p5-hxgw.json +++ b/advisories/unreviewed/2022/05/GHSA-p4qj-94p5-hxgw/GHSA-p4qj-94p5-hxgw.json @@ -7,12 +7,8 @@ "CVE-2008-2789" ], "details": "SQL injection vulnerability in pages/index.php in BASIC-CMS allows remote attackers to execute arbitrary SQL commands via the page_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p57j-9mpq-mpx6/GHSA-p57j-9mpq-mpx6.json b/advisories/unreviewed/2022/05/GHSA-p57j-9mpq-mpx6/GHSA-p57j-9mpq-mpx6.json index 5a850af5f98..c68f397a353 100644 --- a/advisories/unreviewed/2022/05/GHSA-p57j-9mpq-mpx6/GHSA-p57j-9mpq-mpx6.json +++ b/advisories/unreviewed/2022/05/GHSA-p57j-9mpq-mpx6/GHSA-p57j-9mpq-mpx6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p59f-h3wr-46jg/GHSA-p59f-h3wr-46jg.json b/advisories/unreviewed/2022/05/GHSA-p59f-h3wr-46jg/GHSA-p59f-h3wr-46jg.json index 3374a0a1a12..e4633fab1d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-p59f-h3wr-46jg/GHSA-p59f-h3wr-46jg.json +++ b/advisories/unreviewed/2022/05/GHSA-p59f-h3wr-46jg/GHSA-p59f-h3wr-46jg.json @@ -7,12 +7,8 @@ "CVE-2008-2845" ], "details": "SQL injection vulnerability in index.php in MyBizz-Classifieds allows remote attackers to execute arbitrary SQL commands via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5j3-7j2x-qq65/GHSA-p5j3-7j2x-qq65.json b/advisories/unreviewed/2022/05/GHSA-p5j3-7j2x-qq65/GHSA-p5j3-7j2x-qq65.json index 0ce4e295156..eccdf31251e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5j3-7j2x-qq65/GHSA-p5j3-7j2x-qq65.json +++ b/advisories/unreviewed/2022/05/GHSA-p5j3-7j2x-qq65/GHSA-p5j3-7j2x-qq65.json @@ -7,12 +7,8 @@ "CVE-2008-2707" ], "details": "Unspecified vulnerability in the e1000g driver in Sun Solaris 10 and OpenSolaris before snv_93 allows remote attackers to cause a denial of service (network connectivity loss) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p72r-g2h2-xjj2/GHSA-p72r-g2h2-xjj2.json b/advisories/unreviewed/2022/05/GHSA-p72r-g2h2-xjj2/GHSA-p72r-g2h2-xjj2.json index c3f81a091b2..1d883361e0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-p72r-g2h2-xjj2/GHSA-p72r-g2h2-xjj2.json +++ b/advisories/unreviewed/2022/05/GHSA-p72r-g2h2-xjj2/GHSA-p72r-g2h2-xjj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p7x9-mq6w-vw9r/GHSA-p7x9-mq6w-vw9r.json b/advisories/unreviewed/2022/05/GHSA-p7x9-mq6w-vw9r/GHSA-p7x9-mq6w-vw9r.json index 3dc2d531768..671f44d0ea4 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7x9-mq6w-vw9r/GHSA-p7x9-mq6w-vw9r.json +++ b/advisories/unreviewed/2022/05/GHSA-p7x9-mq6w-vw9r/GHSA-p7x9-mq6w-vw9r.json @@ -7,12 +7,8 @@ "CVE-2008-2989" ], "details": "SQL injection vulnerability in index.php in HoMaP-CMS 0.1 allows remote attackers to execute arbitrary SQL commands via the go parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p88m-3v2c-3rqc/GHSA-p88m-3v2c-3rqc.json b/advisories/unreviewed/2022/05/GHSA-p88m-3v2c-3rqc/GHSA-p88m-3v2c-3rqc.json index f353a04ff01..5143489efd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-p88m-3v2c-3rqc/GHSA-p88m-3v2c-3rqc.json +++ b/advisories/unreviewed/2022/05/GHSA-p88m-3v2c-3rqc/GHSA-p88m-3v2c-3rqc.json @@ -7,12 +7,8 @@ "CVE-2008-2648" ], "details": "Unrestricted file upload vulnerability in upload/uploader.html in meBiblio 0.4.7 allows remote attackers to execute arbitrary code by uploading a .php file, then accessing it via a direct request to the files/ directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p8g6-hcv2-45w4/GHSA-p8g6-hcv2-45w4.json b/advisories/unreviewed/2022/05/GHSA-p8g6-hcv2-45w4/GHSA-p8g6-hcv2-45w4.json index efe76ddf269..4166cad4ba1 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8g6-hcv2-45w4/GHSA-p8g6-hcv2-45w4.json +++ b/advisories/unreviewed/2022/05/GHSA-p8g6-hcv2-45w4/GHSA-p8g6-hcv2-45w4.json @@ -7,12 +7,8 @@ "CVE-2008-3058" ], "details": "Multiple SQL injection vulnerabilities in Octeth Oempro 3.5.5.1, and possibly other versions before 4, allow remote attackers to execute arbitrary SQL commands via the FormValue_Email parameter (aka Email field) to index.php in (1) member/, (2) client/, or (3) admin/; or (4) the FormValue_SearchKeywords parameter to client/campaign_track.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p8v7-4ppq-3h6m/GHSA-p8v7-4ppq-3h6m.json b/advisories/unreviewed/2022/05/GHSA-p8v7-4ppq-3h6m/GHSA-p8v7-4ppq-3h6m.json index 94c8b300482..b118e49f3e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8v7-4ppq-3h6m/GHSA-p8v7-4ppq-3h6m.json +++ b/advisories/unreviewed/2022/05/GHSA-p8v7-4ppq-3h6m/GHSA-p8v7-4ppq-3h6m.json @@ -7,12 +7,8 @@ "CVE-2008-2864" ], "details": "eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p958-hfq6-5xfg/GHSA-p958-hfq6-5xfg.json b/advisories/unreviewed/2022/05/GHSA-p958-hfq6-5xfg/GHSA-p958-hfq6-5xfg.json index fb7851463f8..72ef95b712a 100644 --- a/advisories/unreviewed/2022/05/GHSA-p958-hfq6-5xfg/GHSA-p958-hfq6-5xfg.json +++ b/advisories/unreviewed/2022/05/GHSA-p958-hfq6-5xfg/GHSA-p958-hfq6-5xfg.json @@ -7,12 +7,8 @@ "CVE-2008-2830" ], "details": "Open Scripting Architecture in Apple Mac OS X 10.4.11 and 10.5.4, and some other 10.4 and 10.5 versions, does not properly restrict the loading of scripting addition plugins, which allows local users to gain privileges via scripting addition commands to a privileged application, as originally demonstrated by an osascript tell command to ARDAgent.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9mq-62hj-475x/GHSA-p9mq-62hj-475x.json b/advisories/unreviewed/2022/05/GHSA-p9mq-62hj-475x/GHSA-p9mq-62hj-475x.json index 20da35594f2..fd9c71465c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9mq-62hj-475x/GHSA-p9mq-62hj-475x.json +++ b/advisories/unreviewed/2022/05/GHSA-p9mq-62hj-475x/GHSA-p9mq-62hj-475x.json @@ -7,12 +7,8 @@ "CVE-2008-2990" ], "details": "PHP remote file inclusion vulnerability in facileforms.frame.php in the FacileForms (com_facileforms) component 1.4.4 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the ff_compath parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9xp-4jv8-8r8f/GHSA-p9xp-4jv8-8r8f.json b/advisories/unreviewed/2022/05/GHSA-p9xp-4jv8-8r8f/GHSA-p9xp-4jv8-8r8f.json index 945a08e5e6b..2c8af642e8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9xp-4jv8-8r8f/GHSA-p9xp-4jv8-8r8f.json +++ b/advisories/unreviewed/2022/05/GHSA-p9xp-4jv8-8r8f/GHSA-p9xp-4jv8-8r8f.json @@ -7,12 +7,8 @@ "CVE-2008-3105" ], "details": "Unspecified vulnerability in the JAX-WS client and service in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier allows remote attackers to access URLs or cause a denial of service via unknown vectors involving \"processing of XML data\" by a trusted application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -160,9 +156,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pc34-hh6r-6f5x/GHSA-pc34-hh6r-6f5x.json b/advisories/unreviewed/2022/05/GHSA-pc34-hh6r-6f5x/GHSA-pc34-hh6r-6f5x.json index 4dd2e9b36b5..a44773b7125 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc34-hh6r-6f5x/GHSA-pc34-hh6r-6f5x.json +++ b/advisories/unreviewed/2022/05/GHSA-pc34-hh6r-6f5x/GHSA-pc34-hh6r-6f5x.json @@ -7,12 +7,8 @@ "CVE-2008-2669" ], "details": "Multiple SQL injection vulnerabilities in yBlog 0.2.2.2 allow remote attackers to execute arbitrary SQL commands via (1) the q parameter to search.php, or the n parameter to (2) user.php or (3) uss.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pcr6-jw4p-x349/GHSA-pcr6-jw4p-x349.json b/advisories/unreviewed/2022/05/GHSA-pcr6-jw4p-x349/GHSA-pcr6-jw4p-x349.json index d7c2ab422a9..94e104ed323 100644 --- a/advisories/unreviewed/2022/05/GHSA-pcr6-jw4p-x349/GHSA-pcr6-jw4p-x349.json +++ b/advisories/unreviewed/2022/05/GHSA-pcr6-jw4p-x349/GHSA-pcr6-jw4p-x349.json @@ -7,12 +7,8 @@ "CVE-2008-2644" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in SMEWeb 1.4b and 1.4f allow remote attackers to inject arbitrary web script or HTML via the (1) data parameter to catalog.php, the (2) keyword parameter to search.php, the (3) page parameter to bb.php, and the (4) new_s parameter to order.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pf78-r4pc-w83f/GHSA-pf78-r4pc-w83f.json b/advisories/unreviewed/2022/05/GHSA-pf78-r4pc-w83f/GHSA-pf78-r4pc-w83f.json index 2b4c40d4b0b..f8ec84efb33 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf78-r4pc-w83f/GHSA-pf78-r4pc-w83f.json +++ b/advisories/unreviewed/2022/05/GHSA-pf78-r4pc-w83f/GHSA-pf78-r4pc-w83f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pfvv-5q7w-g93r/GHSA-pfvv-5q7w-g93r.json b/advisories/unreviewed/2022/05/GHSA-pfvv-5q7w-g93r/GHSA-pfvv-5q7w-g93r.json index 40c255f4243..7516a4fe881 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfvv-5q7w-g93r/GHSA-pfvv-5q7w-g93r.json +++ b/advisories/unreviewed/2022/05/GHSA-pfvv-5q7w-g93r/GHSA-pfvv-5q7w-g93r.json @@ -7,12 +7,8 @@ "CVE-2008-2799" ], "details": "Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via unknown vectors related to the JavaScript engine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -240,9 +236,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pgx7-wrrj-29jh/GHSA-pgx7-wrrj-29jh.json b/advisories/unreviewed/2022/05/GHSA-pgx7-wrrj-29jh/GHSA-pgx7-wrrj-29jh.json index 09d9d1ad335..0d7b5b6e9fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgx7-wrrj-29jh/GHSA-pgx7-wrrj-29jh.json +++ b/advisories/unreviewed/2022/05/GHSA-pgx7-wrrj-29jh/GHSA-pgx7-wrrj-29jh.json @@ -7,12 +7,8 @@ "CVE-2008-3091" ], "details": "Cross-site scripting (XSS) vulnerability in the Taxonomy Autotagger module 5.x before 5.x-1.8 for Drupal allows remote authenticated users, with create or edit post permissions, to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phqf-vpmf-pr93/GHSA-phqf-vpmf-pr93.json b/advisories/unreviewed/2022/05/GHSA-phqf-vpmf-pr93/GHSA-phqf-vpmf-pr93.json index 680f3ad09e0..e0ffe481932 100644 --- a/advisories/unreviewed/2022/05/GHSA-phqf-vpmf-pr93/GHSA-phqf-vpmf-pr93.json +++ b/advisories/unreviewed/2022/05/GHSA-phqf-vpmf-pr93/GHSA-phqf-vpmf-pr93.json @@ -7,12 +7,8 @@ "CVE-2008-3057" ], "details": "Octeth Oempro 3.5.5.1, and possibly other versions before 4, does not set the secure flag for the PHPSESSID cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pj98-w72v-7m4m/GHSA-pj98-w72v-7m4m.json b/advisories/unreviewed/2022/05/GHSA-pj98-w72v-7m4m/GHSA-pj98-w72v-7m4m.json index e1e21a3ae01..f09e4dac5e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj98-w72v-7m4m/GHSA-pj98-w72v-7m4m.json +++ b/advisories/unreviewed/2022/05/GHSA-pj98-w72v-7m4m/GHSA-pj98-w72v-7m4m.json @@ -7,12 +7,8 @@ "CVE-2008-2616" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pjfm-8r7q-49p6/GHSA-pjfm-8r7q-49p6.json b/advisories/unreviewed/2022/05/GHSA-pjfm-8r7q-49p6/GHSA-pjfm-8r7q-49p6.json index cfedbc7052b..c07c425ec6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjfm-8r7q-49p6/GHSA-pjfm-8r7q-49p6.json +++ b/advisories/unreviewed/2022/05/GHSA-pjfm-8r7q-49p6/GHSA-pjfm-8r7q-49p6.json @@ -7,12 +7,8 @@ "CVE-2008-3492" ], "details": "America's Army (aka AA or Army Game Project) 2.8.3.1 and earlier allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted UDP packet, probably involving a VoiceIndex value that is outside of the range specified by VOICE_MAX_CHATTERS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjj7-pr69-8w54/GHSA-pjj7-pr69-8w54.json b/advisories/unreviewed/2022/05/GHSA-pjj7-pr69-8w54/GHSA-pjj7-pr69-8w54.json index aa7d0f65234..7fa32027bb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjj7-pr69-8w54/GHSA-pjj7-pr69-8w54.json +++ b/advisories/unreviewed/2022/05/GHSA-pjj7-pr69-8w54/GHSA-pjj7-pr69-8w54.json @@ -7,12 +7,8 @@ "CVE-2008-2676" ], "details": "SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pm5m-9h5r-xcrg/GHSA-pm5m-9h5r-xcrg.json b/advisories/unreviewed/2022/05/GHSA-pm5m-9h5r-xcrg/GHSA-pm5m-9h5r-xcrg.json index 39a3ddc7d64..c0f024a0c18 100644 --- a/advisories/unreviewed/2022/05/GHSA-pm5m-9h5r-xcrg/GHSA-pm5m-9h5r-xcrg.json +++ b/advisories/unreviewed/2022/05/GHSA-pm5m-9h5r-xcrg/GHSA-pm5m-9h5r-xcrg.json @@ -7,12 +7,8 @@ "CVE-2008-3032" ], "details": "Cross-site scripting (XSS) vulnerability in the phpMyAdmin (phpmyadmin) extension 3.0.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pp6w-fwmc-mg7c/GHSA-pp6w-fwmc-mg7c.json b/advisories/unreviewed/2022/05/GHSA-pp6w-fwmc-mg7c/GHSA-pp6w-fwmc-mg7c.json index 4ca5e3fe329..3c0d795aace 100644 --- a/advisories/unreviewed/2022/05/GHSA-pp6w-fwmc-mg7c/GHSA-pp6w-fwmc-mg7c.json +++ b/advisories/unreviewed/2022/05/GHSA-pp6w-fwmc-mg7c/GHSA-pp6w-fwmc-mg7c.json @@ -7,12 +7,8 @@ "CVE-2008-2919" ], "details": "SQL injection vulnerability in listing.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the sort parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pp7w-86q6-r4x9/GHSA-pp7w-86q6-r4x9.json b/advisories/unreviewed/2022/05/GHSA-pp7w-86q6-r4x9/GHSA-pp7w-86q6-r4x9.json index 246fc92397f..ccb8da636e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pp7w-86q6-r4x9/GHSA-pp7w-86q6-r4x9.json +++ b/advisories/unreviewed/2022/05/GHSA-pp7w-86q6-r4x9/GHSA-pp7w-86q6-r4x9.json @@ -7,12 +7,8 @@ "CVE-2008-3162" ], "details": "Stack-based buffer overflow in the str_read_packet function in libavformat/psxstr.c in FFmpeg before r13993 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted STR file that interleaves audio and video sectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqpx-pr88-73hq/GHSA-pqpx-pr88-73hq.json b/advisories/unreviewed/2022/05/GHSA-pqpx-pr88-73hq/GHSA-pqpx-pr88-73hq.json index f115a0b20c8..cc9fc1d90df 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqpx-pr88-73hq/GHSA-pqpx-pr88-73hq.json +++ b/advisories/unreviewed/2022/05/GHSA-pqpx-pr88-73hq/GHSA-pqpx-pr88-73hq.json @@ -7,12 +7,8 @@ "CVE-2008-2723" ], "details": "embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to \"spoofing the remote address.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-prjg-c9x4-p593/GHSA-prjg-c9x4-p593.json b/advisories/unreviewed/2022/05/GHSA-prjg-c9x4-p593/GHSA-prjg-c9x4-p593.json index d8523cbea5c..683a81f3c5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-prjg-c9x4-p593/GHSA-prjg-c9x4-p593.json +++ b/advisories/unreviewed/2022/05/GHSA-prjg-c9x4-p593/GHSA-prjg-c9x4-p593.json @@ -7,12 +7,8 @@ "CVE-2008-3117" ], "details": "Unrestricted file upload vulnerability in update_profile.php in PHPmotion 2.0 and earlier allows remote authenticated users to execute arbitrary code by uploading a .php file with a content type of (1) image/gif, (2) image/jpeg, or (3) image/pjpeg, then accessing it via a direct request to the file under pictures/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvfw-g6m7-hcq2/GHSA-pvfw-g6m7-hcq2.json b/advisories/unreviewed/2022/05/GHSA-pvfw-g6m7-hcq2/GHSA-pvfw-g6m7-hcq2.json index 11267eb8232..7ee4e8f14aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvfw-g6m7-hcq2/GHSA-pvfw-g6m7-hcq2.json +++ b/advisories/unreviewed/2022/05/GHSA-pvfw-g6m7-hcq2/GHSA-pvfw-g6m7-hcq2.json @@ -7,12 +7,8 @@ "CVE-2008-3270" ], "details": "yum-rhn-plugin in Red Hat Enterprise Linux (RHEL) 5 does not verify the SSL certificate for a file download from a Red Hat Network (RHN) server, which makes it easier for remote man-in-the-middle attackers to cause a denial of service (loss of updates) or force the download and installation of official Red Hat packages that were not requested.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pwc6-cf6q-wrx8/GHSA-pwc6-cf6q-wrx8.json b/advisories/unreviewed/2022/05/GHSA-pwc6-cf6q-wrx8/GHSA-pwc6-cf6q-wrx8.json index 2814769616c..2bf7ae00d42 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwc6-cf6q-wrx8/GHSA-pwc6-cf6q-wrx8.json +++ b/advisories/unreviewed/2022/05/GHSA-pwc6-cf6q-wrx8/GHSA-pwc6-cf6q-wrx8.json @@ -7,12 +7,8 @@ "CVE-2008-2853" ], "details": "SQL injection vulnerability in index.php in Easy Webstore 1.2 allows remote attackers to execute arbitrary SQL commands via the cat_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxgq-qc9r-qfj4/GHSA-pxgq-qc9r-qfj4.json b/advisories/unreviewed/2022/05/GHSA-pxgq-qc9r-qfj4/GHSA-pxgq-qc9r-qfj4.json index 1106a01b8a7..699a3d118ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxgq-qc9r-qfj4/GHSA-pxgq-qc9r-qfj4.json +++ b/advisories/unreviewed/2022/05/GHSA-pxgq-qc9r-qfj4/GHSA-pxgq-qc9r-qfj4.json @@ -7,12 +7,8 @@ "CVE-2008-3266" ], "details": "SQL injection vulnerability in picture_pic_bv.asp in SoftAcid Hotel Reservation System (HRS) Multi allows remote attackers to execute arbitrary SQL commands via the key parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxqv-4rrp-wmpm/GHSA-pxqv-4rrp-wmpm.json b/advisories/unreviewed/2022/05/GHSA-pxqv-4rrp-wmpm/GHSA-pxqv-4rrp-wmpm.json index 1f11607d5c8..ea84c216abc 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxqv-4rrp-wmpm/GHSA-pxqv-4rrp-wmpm.json +++ b/advisories/unreviewed/2022/05/GHSA-pxqv-4rrp-wmpm/GHSA-pxqv-4rrp-wmpm.json @@ -7,12 +7,8 @@ "CVE-2008-2809" ], "details": "Mozilla 1.9 M8 and earlier, Mozilla Firefox 2 before 2.0.0.15, SeaMonkey 1.1.5 and other versions before 1.1.10, Netscape 9.0, and other Mozilla-based web browsers, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regard the certificate as also accepted for all domain names in subjectAltName:dNSName fields, which makes it easier for remote attackers to trick a user into accepting an invalid certificate for a spoofed web site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q23q-vqjp-vwv2/GHSA-q23q-vqjp-vwv2.json b/advisories/unreviewed/2022/05/GHSA-q23q-vqjp-vwv2/GHSA-q23q-vqjp-vwv2.json index 7c068bab8b4..9c1827f9923 100644 --- a/advisories/unreviewed/2022/05/GHSA-q23q-vqjp-vwv2/GHSA-q23q-vqjp-vwv2.json +++ b/advisories/unreviewed/2022/05/GHSA-q23q-vqjp-vwv2/GHSA-q23q-vqjp-vwv2.json @@ -7,12 +7,8 @@ "CVE-2008-2759" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Xigla Absolute Form Processor XE 4.0 allow remote attackers to inject arbitrary web script or HTML via the (1) showfields, (2) text, and (3) submissions parameters to search.asp and the (4) name parameter to users.asp. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q244-mfxp-9v7p/GHSA-q244-mfxp-9v7p.json b/advisories/unreviewed/2022/05/GHSA-q244-mfxp-9v7p/GHSA-q244-mfxp-9v7p.json index 0276f0bfd61..9befe49e012 100644 --- a/advisories/unreviewed/2022/05/GHSA-q244-mfxp-9v7p/GHSA-q244-mfxp-9v7p.json +++ b/advisories/unreviewed/2022/05/GHSA-q244-mfxp-9v7p/GHSA-q244-mfxp-9v7p.json @@ -7,12 +7,8 @@ "CVE-2008-3019" ], "details": "Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of an Encapsulated PostScript (EPS) file, which allows remote attackers to execute arbitrary code via a crafted EPS file, aka the \"Malformed EPS Filter Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q334-xpwh-2c6w/GHSA-q334-xpwh-2c6w.json b/advisories/unreviewed/2022/05/GHSA-q334-xpwh-2c6w/GHSA-q334-xpwh-2c6w.json index 795def8ea0e..67baa5a33eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-q334-xpwh-2c6w/GHSA-q334-xpwh-2c6w.json +++ b/advisories/unreviewed/2022/05/GHSA-q334-xpwh-2c6w/GHSA-q334-xpwh-2c6w.json @@ -7,12 +7,8 @@ "CVE-2008-3487" ], "details": "SQL injection vulnerability in profile.php in PHPAuction GPL Enhanced 2.51 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3wm-x327-jm28/GHSA-q3wm-x327-jm28.json b/advisories/unreviewed/2022/05/GHSA-q3wm-x327-jm28/GHSA-q3wm-x327-jm28.json index 97aad2d6805..cf90d766258 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3wm-x327-jm28/GHSA-q3wm-x327-jm28.json +++ b/advisories/unreviewed/2022/05/GHSA-q3wm-x327-jm28/GHSA-q3wm-x327-jm28.json @@ -7,12 +7,8 @@ "CVE-2008-2879" ], "details": "Benja CMS 0.1 does not require authentication for access to admin/, which allows remote attackers to add or delete a menu.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4cf-5q7c-rjwq/GHSA-q4cf-5q7c-rjwq.json b/advisories/unreviewed/2022/05/GHSA-q4cf-5q7c-rjwq/GHSA-q4cf-5q7c-rjwq.json index c9eeccbf38d..b2917ccce3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4cf-5q7c-rjwq/GHSA-q4cf-5q7c-rjwq.json +++ b/advisories/unreviewed/2022/05/GHSA-q4cf-5q7c-rjwq/GHSA-q4cf-5q7c-rjwq.json @@ -7,12 +7,8 @@ "CVE-2008-3081" ], "details": "Multiple unspecified \"input validation\" vulnerabilities in the Web management interface (aka Messaging Administration interface) in Avaya Message Storage Server (MSS) 3.x and 4.0, and possibly Communication Manager 3.1.x, allow remote authenticated administrators to execute arbitrary commands as user vexvm via vectors related to (1) SFTP Remote Store configuration; (2) remote FTP storage settings; (3) name server lookup; (4) pinging another host; (5) TCP/IP Networking parameter configuration; (6) the external hosts configuration main page; (7) adding and changing external hosts; (8) Windows domain parameter configuration; (9) date, time, and NTP server configuration; (10) alarm settings; (11) the command line history form; (12) the maintenance form; and (13) the server events form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4f9-vjvh-mj9g/GHSA-q4f9-vjvh-mj9g.json b/advisories/unreviewed/2022/05/GHSA-q4f9-vjvh-mj9g/GHSA-q4f9-vjvh-mj9g.json index 6e553722230..f576ae5cbde 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4f9-vjvh-mj9g/GHSA-q4f9-vjvh-mj9g.json +++ b/advisories/unreviewed/2022/05/GHSA-q4f9-vjvh-mj9g/GHSA-q4f9-vjvh-mj9g.json @@ -7,12 +7,8 @@ "CVE-2008-3055" ], "details": "SQL injection vulnerability in the Support view (ext_tbl) extension 0.0.102 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q553-45jw-h629/GHSA-q553-45jw-h629.json b/advisories/unreviewed/2022/05/GHSA-q553-45jw-h629/GHSA-q553-45jw-h629.json index af0ba8a0786..7acdc2abf82 100644 --- a/advisories/unreviewed/2022/05/GHSA-q553-45jw-h629/GHSA-q553-45jw-h629.json +++ b/advisories/unreviewed/2022/05/GHSA-q553-45jw-h629/GHSA-q553-45jw-h629.json @@ -7,12 +7,8 @@ "CVE-2008-3481" ], "details": "themes/sample/theme.php in Coppermine Photo Gallery (CPG) 1.4.18 and earlier allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q586-9vp6-cjff/GHSA-q586-9vp6-cjff.json b/advisories/unreviewed/2022/05/GHSA-q586-9vp6-cjff/GHSA-q586-9vp6-cjff.json index 2edfa5751cb..9f2c6c953c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q586-9vp6-cjff/GHSA-q586-9vp6-cjff.json +++ b/advisories/unreviewed/2022/05/GHSA-q586-9vp6-cjff/GHSA-q586-9vp6-cjff.json @@ -7,12 +7,8 @@ "CVE-2008-2817" ], "details": "SQL injection vulnerability in albums.php in NiTrO Web Gallery 1.4.3 and earlier allows remote attackers to execute arbitrary SQL commands via the CatId parameter in a show action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5vg-rh33-mggr/GHSA-q5vg-rh33-mggr.json b/advisories/unreviewed/2022/05/GHSA-q5vg-rh33-mggr/GHSA-q5vg-rh33-mggr.json index 5fca5402885..e2a1a803461 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5vg-rh33-mggr/GHSA-q5vg-rh33-mggr.json +++ b/advisories/unreviewed/2022/05/GHSA-q5vg-rh33-mggr/GHSA-q5vg-rh33-mggr.json @@ -7,12 +7,8 @@ "CVE-2008-2985" ], "details": "Directory traversal vulnerability in load_language.php in CMReams CMS 1.3.1.1 Beta 2, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the page_language parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q74g-vcr2-qqqf/GHSA-q74g-vcr2-qqqf.json b/advisories/unreviewed/2022/05/GHSA-q74g-vcr2-qqqf/GHSA-q74g-vcr2-qqqf.json index 8fceaf720a3..8d36db956e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-q74g-vcr2-qqqf/GHSA-q74g-vcr2-qqqf.json +++ b/advisories/unreviewed/2022/05/GHSA-q74g-vcr2-qqqf/GHSA-q74g-vcr2-qqqf.json @@ -7,12 +7,8 @@ "CVE-2008-3128" ], "details": "Directory traversal vulnerability in search.php in Pivot 1.40.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the t parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q76f-qpfv-q3c3/GHSA-q76f-qpfv-q3c3.json b/advisories/unreviewed/2022/05/GHSA-q76f-qpfv-q3c3/GHSA-q76f-qpfv-q3c3.json index 901e588db6e..9ca6f6e8f35 100644 --- a/advisories/unreviewed/2022/05/GHSA-q76f-qpfv-q3c3/GHSA-q76f-qpfv-q3c3.json +++ b/advisories/unreviewed/2022/05/GHSA-q76f-qpfv-q3c3/GHSA-q76f-qpfv-q3c3.json @@ -7,12 +7,8 @@ "CVE-2008-3186" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Blog (Blogger) allow remote attackers to inject arbitrary web script or HTML via the membername parameter to (1) members.php, (2) comments.php, (3) photos.php, (4) archive.php, or (5) cat.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q783-99c3-p38v/GHSA-q783-99c3-p38v.json b/advisories/unreviewed/2022/05/GHSA-q783-99c3-p38v/GHSA-q783-99c3-p38v.json index 16360080b39..64616e1392b 100644 --- a/advisories/unreviewed/2022/05/GHSA-q783-99c3-p38v/GHSA-q783-99c3-p38v.json +++ b/advisories/unreviewed/2022/05/GHSA-q783-99c3-p38v/GHSA-q783-99c3-p38v.json @@ -7,12 +7,8 @@ "CVE-2008-2698" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in photo_add-c.php (aka the \"add comment\" section) in WEBalbum 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) id, or (3) category parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7xq-7q78-w7qh/GHSA-q7xq-7q78-w7qh.json b/advisories/unreviewed/2022/05/GHSA-q7xq-7q78-w7qh/GHSA-q7xq-7q78-w7qh.json index fffce222d70..180e19da33b 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7xq-7q78-w7qh/GHSA-q7xq-7q78-w7qh.json +++ b/advisories/unreviewed/2022/05/GHSA-q7xq-7q78-w7qh/GHSA-q7xq-7q78-w7qh.json @@ -7,12 +7,8 @@ "CVE-2008-2962" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MyBlog allow remote attackers to inject arbitrary web script or HTML via the (1) s and (2) sort parameters to index.php, and the (3) id parameter to post.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q929-cmpr-rxf4/GHSA-q929-cmpr-rxf4.json b/advisories/unreviewed/2022/05/GHSA-q929-cmpr-rxf4/GHSA-q929-cmpr-rxf4.json index 3395cd652dd..f4627649ab3 100644 --- a/advisories/unreviewed/2022/05/GHSA-q929-cmpr-rxf4/GHSA-q929-cmpr-rxf4.json +++ b/advisories/unreviewed/2022/05/GHSA-q929-cmpr-rxf4/GHSA-q929-cmpr-rxf4.json @@ -7,12 +7,8 @@ "CVE-2008-3040" ], "details": "Unspecified vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q9fr-r9vg-8qvh/GHSA-q9fr-r9vg-8qvh.json b/advisories/unreviewed/2022/05/GHSA-q9fr-r9vg-8qvh/GHSA-q9fr-r9vg-8qvh.json index 521b3d17b4f..f8c1f2fe8db 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9fr-r9vg-8qvh/GHSA-q9fr-r9vg-8qvh.json +++ b/advisories/unreviewed/2022/05/GHSA-q9fr-r9vg-8qvh/GHSA-q9fr-r9vg-8qvh.json @@ -7,12 +7,8 @@ "CVE-2008-3293" ], "details": "Directory traversal vulnerability in download.php in EZWebAlbum allows remote attackers to read arbitrary files via the dlfilename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qc5h-5mc6-5cc9/GHSA-qc5h-5mc6-5cc9.json b/advisories/unreviewed/2022/05/GHSA-qc5h-5mc6-5cc9/GHSA-qc5h-5mc6-5cc9.json index 94c5f790808..dc450a2ed33 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc5h-5mc6-5cc9/GHSA-qc5h-5mc6-5cc9.json +++ b/advisories/unreviewed/2022/05/GHSA-qc5h-5mc6-5cc9/GHSA-qc5h-5mc6-5cc9.json @@ -7,12 +7,8 @@ "CVE-2008-2996" ], "details": "Multiple SQL injection vulnerabilities in index.php in Gravity Board X (GBX) 2.0 Beta, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) searchquery parameter in a getsearch action, and the (2) board_id parameter in a viewboard action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qf5r-6wjw-cj95/GHSA-qf5r-6wjw-cj95.json b/advisories/unreviewed/2022/05/GHSA-qf5r-6wjw-cj95/GHSA-qf5r-6wjw-cj95.json index 2951992abaf..0afc583dfe5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf5r-6wjw-cj95/GHSA-qf5r-6wjw-cj95.json +++ b/advisories/unreviewed/2022/05/GHSA-qf5r-6wjw-cj95/GHSA-qf5r-6wjw-cj95.json @@ -7,12 +7,8 @@ "CVE-2008-3116" ], "details": "Format string vulnerability in dx8render.dll in Snail Game (aka Suzhou Snail Electronic Company) 5th street (aka Hot Step or High Street 5) allows remote attackers to execute arbitrary code via format string specifiers in a chat message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qg3h-7xjj-r5g4/GHSA-qg3h-7xjj-r5g4.json b/advisories/unreviewed/2022/05/GHSA-qg3h-7xjj-r5g4/GHSA-qg3h-7xjj-r5g4.json index 7535d187659..2161726d12c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg3h-7xjj-r5g4/GHSA-qg3h-7xjj-r5g4.json +++ b/advisories/unreviewed/2022/05/GHSA-qg3h-7xjj-r5g4/GHSA-qg3h-7xjj-r5g4.json @@ -7,12 +7,8 @@ "CVE-2008-3009" ], "details": "Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1, 9, and 2008 do not properly use the Service Principal Name (SPN) identifier when validating replies to authentication requests, which allows remote servers to execute arbitrary code via vectors that employ NTLM credential reflection, aka \"SPN Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qg8w-4xw5-c8px/GHSA-qg8w-4xw5-c8px.json b/advisories/unreviewed/2022/05/GHSA-qg8w-4xw5-c8px/GHSA-qg8w-4xw5-c8px.json index 4f76a6f66a1..56cd090477b 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg8w-4xw5-c8px/GHSA-qg8w-4xw5-c8px.json +++ b/advisories/unreviewed/2022/05/GHSA-qg8w-4xw5-c8px/GHSA-qg8w-4xw5-c8px.json @@ -7,12 +7,8 @@ "CVE-2008-2910" ], "details": "Buffer overflow in the DXTTextOutEffect ActiveX control (aka the Text-Effect DXT Filter), as distributed in TextOut.dll 6.0.18.1 and mvtextout.dll, in muvee autoProducer 6.0 and 6.1 allows remote attackers to execute arbitrary code via a long FontSetting property value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qgr7-56g7-hq4g/GHSA-qgr7-56g7-hq4g.json b/advisories/unreviewed/2022/05/GHSA-qgr7-56g7-hq4g/GHSA-qgr7-56g7-hq4g.json index 3f9c464d001..e3a2ee2b4af 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgr7-56g7-hq4g/GHSA-qgr7-56g7-hq4g.json +++ b/advisories/unreviewed/2022/05/GHSA-qgr7-56g7-hq4g/GHSA-qgr7-56g7-hq4g.json @@ -7,12 +7,8 @@ "CVE-2008-2699" ], "details": "Multiple directory traversal vulnerabilities in Galatolo WebManager (GWM) 1.0 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in (1) the plugin parameter to admin/plugins.php or (2) the com parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjmw-97wq-2689/GHSA-qjmw-97wq-2689.json b/advisories/unreviewed/2022/05/GHSA-qjmw-97wq-2689/GHSA-qjmw-97wq-2689.json index 75e8b3bfa56..c222d771ce1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjmw-97wq-2689/GHSA-qjmw-97wq-2689.json +++ b/advisories/unreviewed/2022/05/GHSA-qjmw-97wq-2689/GHSA-qjmw-97wq-2689.json @@ -7,12 +7,8 @@ "CVE-2008-2842" ], "details": "Cross-site scripting (XSS) vulnerability in edit/showmedia.asp in doITLive CMS 2.50 and earlier allows remote attackers to inject arbitrary web script or HTML via the FILE parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjxh-ph22-2wcj/GHSA-qjxh-ph22-2wcj.json b/advisories/unreviewed/2022/05/GHSA-qjxh-ph22-2wcj/GHSA-qjxh-ph22-2wcj.json index bc79fb3e679..9014a69b1f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjxh-ph22-2wcj/GHSA-qjxh-ph22-2wcj.json +++ b/advisories/unreviewed/2022/05/GHSA-qjxh-ph22-2wcj/GHSA-qjxh-ph22-2wcj.json @@ -7,12 +7,8 @@ "CVE-2008-2646" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in meBiblio 0.4.7 allow remote attackers to inject arbitrary web script or HTML via the (1) sql parameter to dbadd.inc.php, (2) InsertJournal parameter to add_journal_mask.inc.php, (3) InsertBibliography parameter to insert_mask.inc.php, and (4) LabelYear parameter to search_mask.inc.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq2x-j84f-pf8v/GHSA-qq2x-j84f-pf8v.json b/advisories/unreviewed/2022/05/GHSA-qq2x-j84f-pf8v/GHSA-qq2x-j84f-pf8v.json index 0bac8ac8c72..8f2ce5cf537 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq2x-j84f-pf8v/GHSA-qq2x-j84f-pf8v.json +++ b/advisories/unreviewed/2022/05/GHSA-qq2x-j84f-pf8v/GHSA-qq2x-j84f-pf8v.json @@ -7,12 +7,8 @@ "CVE-2008-3172" ], "details": "Opera allows web sites to set cookies for country-specific top-level domains that have DNS A records, such as co.tv, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session, aka \"Cross-Site Cooking.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqg3-83j7-fvhj/GHSA-qqg3-83j7-fvhj.json b/advisories/unreviewed/2022/05/GHSA-qqg3-83j7-fvhj/GHSA-qqg3-83j7-fvhj.json index 8fbd2c35d00..050e7a42732 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqg3-83j7-fvhj/GHSA-qqg3-83j7-fvhj.json +++ b/advisories/unreviewed/2022/05/GHSA-qqg3-83j7-fvhj/GHSA-qqg3-83j7-fvhj.json @@ -7,12 +7,8 @@ "CVE-2008-2788" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in OpenDocMan 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the redirection parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qr44-66jp-647q/GHSA-qr44-66jp-647q.json b/advisories/unreviewed/2022/05/GHSA-qr44-66jp-647q/GHSA-qr44-66jp-647q.json index cb76f076735..dd75c509a97 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr44-66jp-647q/GHSA-qr44-66jp-647q.json +++ b/advisories/unreviewed/2022/05/GHSA-qr44-66jp-647q/GHSA-qr44-66jp-647q.json @@ -7,12 +7,8 @@ "CVE-2008-2736" ], "details": "Unspecified vulnerability in Cisco Adaptive Security Appliance (ASA) 5500 devices 8.0(3)15, 8.0(3)16, 8.1(1)4, and 8.1(1)5, when configured as a clientless SSL VPN endpoint, allows remote attackers to obtain usernames and passwords via unknown vectors, aka Bug ID CSCsq45636.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrhf-2wgr-7482/GHSA-qrhf-2wgr-7482.json b/advisories/unreviewed/2022/05/GHSA-qrhf-2wgr-7482/GHSA-qrhf-2wgr-7482.json index 3cf779ea786..37bc91ffffd 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrhf-2wgr-7482/GHSA-qrhf-2wgr-7482.json +++ b/advisories/unreviewed/2022/05/GHSA-qrhf-2wgr-7482/GHSA-qrhf-2wgr-7482.json @@ -7,12 +7,8 @@ "CVE-2008-3480" ], "details": "Stack-based buffer overflow in the Anzio Web Print Object (WePO) ActiveX control 3.2.19 and 3.2.24, as used in Anzio Print Wizard, allows remote attackers to execute arbitrary code via a long mainurl parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrm3-ww98-8r4q/GHSA-qrm3-ww98-8r4q.json b/advisories/unreviewed/2022/05/GHSA-qrm3-ww98-8r4q/GHSA-qrm3-ww98-8r4q.json index 4c1a0edfbe0..828b855e787 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrm3-ww98-8r4q/GHSA-qrm3-ww98-8r4q.json +++ b/advisories/unreviewed/2022/05/GHSA-qrm3-ww98-8r4q/GHSA-qrm3-ww98-8r4q.json @@ -7,12 +7,8 @@ "CVE-2008-2995" ], "details": "Multiple SQL injection vulnerabilities in PHPEasyData 1.5.4 allow remote attackers to execute arbitrary SQL commands via (1) the annuaire parameter to annuaire.php or (2) the username field in admin/login.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qw26-gjw2-7hcf/GHSA-qw26-gjw2-7hcf.json b/advisories/unreviewed/2022/05/GHSA-qw26-gjw2-7hcf/GHSA-qw26-gjw2-7hcf.json index b34f6e90377..f163c3f6220 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw26-gjw2-7hcf/GHSA-qw26-gjw2-7hcf.json +++ b/advisories/unreviewed/2022/05/GHSA-qw26-gjw2-7hcf/GHSA-qw26-gjw2-7hcf.json @@ -7,12 +7,8 @@ "CVE-2008-2884" ], "details": "PHP remote file inclusion vulnerability in display.php in RSS-aggregator allows remote attackers to execute arbitrary PHP code via a URL in the path parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qxr5-2c92-fj86/GHSA-qxr5-2c92-fj86.json b/advisories/unreviewed/2022/05/GHSA-qxr5-2c92-fj86/GHSA-qxr5-2c92-fj86.json index d166fc3c98e..7bd5828a85d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxr5-2c92-fj86/GHSA-qxr5-2c92-fj86.json +++ b/advisories/unreviewed/2022/05/GHSA-qxr5-2c92-fj86/GHSA-qxr5-2c92-fj86.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r54g-7x82-7cf5/GHSA-r54g-7x82-7cf5.json b/advisories/unreviewed/2022/05/GHSA-r54g-7x82-7cf5/GHSA-r54g-7x82-7cf5.json index 4bd9d93e48d..81e7b327383 100644 --- a/advisories/unreviewed/2022/05/GHSA-r54g-7x82-7cf5/GHSA-r54g-7x82-7cf5.json +++ b/advisories/unreviewed/2022/05/GHSA-r54g-7x82-7cf5/GHSA-r54g-7x82-7cf5.json @@ -7,12 +7,8 @@ "CVE-2008-2901" ], "details": "Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.4 allow remote authenticated users to execute arbitrary SQL commands via the (1) address parameter to addressbook.php, the (2) getnews parameter to familynews.php, and the (3) poll_id parameter to home.php in a results action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r56q-2pqm-447v/GHSA-r56q-2pqm-447v.json b/advisories/unreviewed/2022/05/GHSA-r56q-2pqm-447v/GHSA-r56q-2pqm-447v.json index 01b8c15e90d..0598177034f 100644 --- a/advisories/unreviewed/2022/05/GHSA-r56q-2pqm-447v/GHSA-r56q-2pqm-447v.json +++ b/advisories/unreviewed/2022/05/GHSA-r56q-2pqm-447v/GHSA-r56q-2pqm-447v.json @@ -7,12 +7,8 @@ "CVE-2008-2775" ], "details": "SQL injection vulnerability in search.asp in DT Centrepiece 4.0 allows remote attackers to execute arbitrary SQL commands via the searchFor parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r68f-vv58-jpgh/GHSA-r68f-vv58-jpgh.json b/advisories/unreviewed/2022/05/GHSA-r68f-vv58-jpgh/GHSA-r68f-vv58-jpgh.json index 1a61636caf4..ec0818136ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-r68f-vv58-jpgh/GHSA-r68f-vv58-jpgh.json +++ b/advisories/unreviewed/2022/05/GHSA-r68f-vv58-jpgh/GHSA-r68f-vv58-jpgh.json @@ -7,12 +7,8 @@ "CVE-2008-2617" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2618, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r766-h5wh-3jf8/GHSA-r766-h5wh-3jf8.json b/advisories/unreviewed/2022/05/GHSA-r766-h5wh-3jf8/GHSA-r766-h5wh-3jf8.json index 233da8f39da..f7690f0cb03 100644 --- a/advisories/unreviewed/2022/05/GHSA-r766-h5wh-3jf8/GHSA-r766-h5wh-3jf8.json +++ b/advisories/unreviewed/2022/05/GHSA-r766-h5wh-3jf8/GHSA-r766-h5wh-3jf8.json @@ -7,12 +7,8 @@ "CVE-2008-2626" ], "details": "SQL injection vulnerability in comment.asp in Battle Blog 1.25 and earlier allows remote attackers to execute arbitrary SQL commands via the entry parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r78f-5rrq-2mm3/GHSA-r78f-5rrq-2mm3.json b/advisories/unreviewed/2022/05/GHSA-r78f-5rrq-2mm3/GHSA-r78f-5rrq-2mm3.json index cce641747f8..c4c2da7799e 100644 --- a/advisories/unreviewed/2022/05/GHSA-r78f-5rrq-2mm3/GHSA-r78f-5rrq-2mm3.json +++ b/advisories/unreviewed/2022/05/GHSA-r78f-5rrq-2mm3/GHSA-r78f-5rrq-2mm3.json @@ -7,12 +7,8 @@ "CVE-2008-3042" ], "details": "Unspecified vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 has unknown impact and attack vectors related to \"Improper Error Handling.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r832-r6x8-hgp3/GHSA-r832-r6x8-hgp3.json b/advisories/unreviewed/2022/05/GHSA-r832-r6x8-hgp3/GHSA-r832-r6x8-hgp3.json index b90bf049000..cf50290c463 100644 --- a/advisories/unreviewed/2022/05/GHSA-r832-r6x8-hgp3/GHSA-r832-r6x8-hgp3.json +++ b/advisories/unreviewed/2022/05/GHSA-r832-r6x8-hgp3/GHSA-r832-r6x8-hgp3.json @@ -7,12 +7,8 @@ "CVE-2008-2763" ], "details": "SQL injection vulnerability in search.asp in Xigla Absolute Live Support XE 5.1 allows remote authenticated administrators to execute arbitrary SQL commands via the orderby parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r874-7872-gp98/GHSA-r874-7872-gp98.json b/advisories/unreviewed/2022/05/GHSA-r874-7872-gp98/GHSA-r874-7872-gp98.json index bbc2366c8f8..f173f33b25d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r874-7872-gp98/GHSA-r874-7872-gp98.json +++ b/advisories/unreviewed/2022/05/GHSA-r874-7872-gp98/GHSA-r874-7872-gp98.json @@ -7,12 +7,8 @@ "CVE-2008-3089" ], "details": "SQL injection vulnerability in user.html in Xpoze Pro 3.06 (aka Xpoze Pro CMS 2008) allows remote attackers to execute arbitrary SQL commands via the uid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8vj-4mwf-hc6x/GHSA-r8vj-4mwf-hc6x.json b/advisories/unreviewed/2022/05/GHSA-r8vj-4mwf-hc6x/GHSA-r8vj-4mwf-hc6x.json index dc5e5b520b3..148600c1726 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8vj-4mwf-hc6x/GHSA-r8vj-4mwf-hc6x.json +++ b/advisories/unreviewed/2022/05/GHSA-r8vj-4mwf-hc6x/GHSA-r8vj-4mwf-hc6x.json @@ -7,12 +7,8 @@ "CVE-2008-3127" ], "details": "PHP remote file inclusion vulnerability in hioxBannerRotate.php in HIOX Banner Rotator (HBR) 1.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcfw-ggjf-vmfj/GHSA-rcfw-ggjf-vmfj.json b/advisories/unreviewed/2022/05/GHSA-rcfw-ggjf-vmfj/GHSA-rcfw-ggjf-vmfj.json index 47bec2b818f..8908201f358 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcfw-ggjf-vmfj/GHSA-rcfw-ggjf-vmfj.json +++ b/advisories/unreviewed/2022/05/GHSA-rcfw-ggjf-vmfj/GHSA-rcfw-ggjf-vmfj.json @@ -7,12 +7,8 @@ "CVE-2008-2696" ], "details": "Exiv2 0.16 allows user-assisted remote attackers to cause a denial of service (divide-by-zero and application crash) via a zero value in Nikon lens information in the metadata of an image, related to \"pretty printing\" and the RationalValue::toLong function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rcmx-rx26-vhpv/GHSA-rcmx-rx26-vhpv.json b/advisories/unreviewed/2022/05/GHSA-rcmx-rx26-vhpv/GHSA-rcmx-rx26-vhpv.json index 6d2ddf551f3..da30471782d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcmx-rx26-vhpv/GHSA-rcmx-rx26-vhpv.json +++ b/advisories/unreviewed/2022/05/GHSA-rcmx-rx26-vhpv/GHSA-rcmx-rx26-vhpv.json @@ -7,12 +7,8 @@ "CVE-2008-2744" ], "details": "Cross-site scripting (XSS) vulnerability in vBulletin 3.6.10 and 3.7.1 allows remote attackers to inject arbitrary web script or HTML via unknown vectors and an \"obscure method.\" NOTE: the vector is probably in the redirect parameter to the Admin Control Panel (admincp/index.php).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rf8x-wv8r-4xxm/GHSA-rf8x-wv8r-4xxm.json b/advisories/unreviewed/2022/05/GHSA-rf8x-wv8r-4xxm/GHSA-rf8x-wv8r-4xxm.json index e8b384bdc55..189e0c74e80 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf8x-wv8r-4xxm/GHSA-rf8x-wv8r-4xxm.json +++ b/advisories/unreviewed/2022/05/GHSA-rf8x-wv8r-4xxm/GHSA-rf8x-wv8r-4xxm.json @@ -7,12 +7,8 @@ "CVE-2008-2795" ], "details": "Directory traversal vulnerability in the FTP and SFTP clients in IDM Computer Solutions Inc UltraEdit 14.00b allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) or a ..\\ (dot dot backslash) in a response to a LIST command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rfg8-m894-j49x/GHSA-rfg8-m894-j49x.json b/advisories/unreviewed/2022/05/GHSA-rfg8-m894-j49x/GHSA-rfg8-m894-j49x.json index 3e48e32f36c..5fa76ad6756 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfg8-m894-j49x/GHSA-rfg8-m894-j49x.json +++ b/advisories/unreviewed/2022/05/GHSA-rfg8-m894-j49x/GHSA-rfg8-m894-j49x.json @@ -7,12 +7,8 @@ "CVE-2008-3001" ], "details": "The Aggregation module 5.x before 5.x-4.4 for Drupal allows remote attackers to upload files with arbitrary extensions, and possibly execute arbitrary code, via a crafted feed that allows upload of files with arbitrary extensions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhcm-fwc8-8vhm/GHSA-rhcm-fwc8-8vhm.json b/advisories/unreviewed/2022/05/GHSA-rhcm-fwc8-8vhm/GHSA-rhcm-fwc8-8vhm.json index 6ba223c0ba4..f22ccb690f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhcm-fwc8-8vhm/GHSA-rhcm-fwc8-8vhm.json +++ b/advisories/unreviewed/2022/05/GHSA-rhcm-fwc8-8vhm/GHSA-rhcm-fwc8-8vhm.json @@ -7,12 +7,8 @@ "CVE-2008-2643" ], "details": "SQL injection vulnerability in the Bible Study (com_biblestudy) component before 6.0.7c for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a mediaplayer action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj58-f4r4-fgj5/GHSA-rj58-f4r4-fgj5.json b/advisories/unreviewed/2022/05/GHSA-rj58-f4r4-fgj5/GHSA-rj58-f4r4-fgj5.json index 630a8f5399a..0b2138a90c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj58-f4r4-fgj5/GHSA-rj58-f4r4-fgj5.json +++ b/advisories/unreviewed/2022/05/GHSA-rj58-f4r4-fgj5/GHSA-rj58-f4r4-fgj5.json @@ -7,12 +7,8 @@ "CVE-2008-3037" ], "details": "Cross-site scripting (XSS) vulnerability in the Address Directory (sp_directory) extension 0.2.10 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj5h-39v8-hch3/GHSA-rj5h-39v8-hch3.json b/advisories/unreviewed/2022/05/GHSA-rj5h-39v8-hch3/GHSA-rj5h-39v8-hch3.json index eca648c862d..22c4c6cffba 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj5h-39v8-hch3/GHSA-rj5h-39v8-hch3.json +++ b/advisories/unreviewed/2022/05/GHSA-rj5h-39v8-hch3/GHSA-rj5h-39v8-hch3.json @@ -7,12 +7,8 @@ "CVE-2008-3074" ], "details": "The shellescape function in Vim 7.0 through 7.2, including 7.2a.10, allows user-assisted attackers to execute arbitrary code via the \"!\" (exclamation point) shell metacharacter in (1) the filename of a tar archive and possibly (2) the filename of the first file in a tar archive, which is not properly handled by the VIM TAR plugin (tar.vim) v.10 through v.22, as demonstrated by the shellescape, tarplugin.v2, tarplugin, and tarplugin.updated test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712. NOTE: this issue has the same root cause as CVE-2008-3075. NOTE: due to the complexity of the associated disclosures and the incomplete information related to them, there may be inaccuracies in this CVE description and in external mappings to this identifier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rjf2-c9wx-9h7g/GHSA-rjf2-c9wx-9h7g.json b/advisories/unreviewed/2022/05/GHSA-rjf2-c9wx-9h7g/GHSA-rjf2-c9wx-9h7g.json index 8eabc42b1d0..33058dedcd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjf2-c9wx-9h7g/GHSA-rjf2-c9wx-9h7g.json +++ b/advisories/unreviewed/2022/05/GHSA-rjf2-c9wx-9h7g/GHSA-rjf2-c9wx-9h7g.json @@ -7,12 +7,8 @@ "CVE-2008-2964" ], "details": "SQL injection vulnerability in guide.php in ResearchGuide 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rjfj-2398-v5jh/GHSA-rjfj-2398-v5jh.json b/advisories/unreviewed/2022/05/GHSA-rjfj-2398-v5jh/GHSA-rjfj-2398-v5jh.json index cfe2cc4bf65..485e75ad68e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjfj-2398-v5jh/GHSA-rjfj-2398-v5jh.json +++ b/advisories/unreviewed/2022/05/GHSA-rjfj-2398-v5jh/GHSA-rjfj-2398-v5jh.json @@ -7,12 +7,8 @@ "CVE-2008-3181" ], "details": "Unrestricted file upload vulnerability in upload.php in ContentNow CMS 1.4.1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rmqj-97wc-2526/GHSA-rmqj-97wc-2526.json b/advisories/unreviewed/2022/05/GHSA-rmqj-97wc-2526/GHSA-rmqj-97wc-2526.json index e730311eeb9..83a302d2dcc 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmqj-97wc-2526/GHSA-rmqj-97wc-2526.json +++ b/advisories/unreviewed/2022/05/GHSA-rmqj-97wc-2526/GHSA-rmqj-97wc-2526.json @@ -7,12 +7,8 @@ "CVE-2008-3077" ], "details": "arch/x86/kernel/ptrace.c in the Linux kernel before 2.6.25.10 on the x86_64 platform leaks task_struct references into the sys32_ptrace function, which allows local users to cause a denial of service (system crash) or have unspecified other impact via unknown vectors, possibly a use-after-free vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rmrh-q9r6-cqxq/GHSA-rmrh-q9r6-cqxq.json b/advisories/unreviewed/2022/05/GHSA-rmrh-q9r6-cqxq/GHSA-rmrh-q9r6-cqxq.json index 7c006fafaf2..77eb0193151 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmrh-q9r6-cqxq/GHSA-rmrh-q9r6-cqxq.json +++ b/advisories/unreviewed/2022/05/GHSA-rmrh-q9r6-cqxq/GHSA-rmrh-q9r6-cqxq.json @@ -7,12 +7,8 @@ "CVE-2008-2824" ], "details": "Unspecified vulnerability in the Extensible Interface Platform in Web Services in Xerox WorkCentre 7655, 7665, and 7675 allows remote attackers to make configuration changes via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rp38-h7w4-j9m3/GHSA-rp38-h7w4-j9m3.json b/advisories/unreviewed/2022/05/GHSA-rp38-h7w4-j9m3/GHSA-rp38-h7w4-j9m3.json index d6c76492d03..c8a964b85d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rp38-h7w4-j9m3/GHSA-rp38-h7w4-j9m3.json +++ b/advisories/unreviewed/2022/05/GHSA-rp38-h7w4-j9m3/GHSA-rp38-h7w4-j9m3.json @@ -7,12 +7,8 @@ "CVE-2008-2867" ], "details": "SQL injection vulnerability in adclick.php in E-topbiz Viral DX 1 2.07 allows remote attackers to execute arbitrary SQL commands via the bannerid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rr8g-9x6h-ggvf/GHSA-rr8g-9x6h-ggvf.json b/advisories/unreviewed/2022/05/GHSA-rr8g-9x6h-ggvf/GHSA-rr8g-9x6h-ggvf.json index b3ff4dd086c..67f46f9bb91 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr8g-9x6h-ggvf/GHSA-rr8g-9x6h-ggvf.json +++ b/advisories/unreviewed/2022/05/GHSA-rr8g-9x6h-ggvf/GHSA-rr8g-9x6h-ggvf.json @@ -7,12 +7,8 @@ "CVE-2008-2642" ], "details": "SQL injection vulnerability in login.php in OtomiGenX 2.2 allows remote attackers to execute arbitrary SQL commands via the userAccount parameter (aka the User Name field) to index.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rrgm-3qrm-8r6m/GHSA-rrgm-3qrm-8r6m.json b/advisories/unreviewed/2022/05/GHSA-rrgm-3qrm-8r6m/GHSA-rrgm-3qrm-8r6m.json index 1507b5d21a8..b0bea231d68 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrgm-3qrm-8r6m/GHSA-rrgm-3qrm-8r6m.json +++ b/advisories/unreviewed/2022/05/GHSA-rrgm-3qrm-8r6m/GHSA-rrgm-3qrm-8r6m.json @@ -7,12 +7,8 @@ "CVE-2008-2742" ], "details": "Unrestricted file upload in the mcpuk file editor (atk/attributes/fck/editor/filemanager/browser/mcpuk/connectors/php/config.php) in Achievo 1.2.0 through 1.3.2 allows remote attackers to execute arbitrary code by uploading a file with .php followed by a safe extension, then accessing it via a direct request to the file in the Achievo root directory. NOTE: this is only a vulnerability in environments that support multiple extensions, such as Apache with the mod_mime module enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv8p-rcvp-x7qg/GHSA-rv8p-rcvp-x7qg.json b/advisories/unreviewed/2022/05/GHSA-rv8p-rcvp-x7qg/GHSA-rv8p-rcvp-x7qg.json index c7d932c29b5..056a36a764f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv8p-rcvp-x7qg/GHSA-rv8p-rcvp-x7qg.json +++ b/advisories/unreviewed/2022/05/GHSA-rv8p-rcvp-x7qg/GHSA-rv8p-rcvp-x7qg.json @@ -7,12 +7,8 @@ "CVE-2008-2715" ], "details": "Unspecified vulnerability in Opera before 9.5 allows remote attackers to read cross-domain images via HTML CANVAS elements that use the images as patterns.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rwm5-j4gw-46m8/GHSA-rwm5-j4gw-46m8.json b/advisories/unreviewed/2022/05/GHSA-rwm5-j4gw-46m8/GHSA-rwm5-j4gw-46m8.json index 18321a5ea83..fec4b431dbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-rwm5-j4gw-46m8/GHSA-rwm5-j4gw-46m8.json +++ b/advisories/unreviewed/2022/05/GHSA-rwm5-j4gw-46m8/GHSA-rwm5-j4gw-46m8.json @@ -7,12 +7,8 @@ "CVE-2008-3038" ], "details": "SQL injection vulnerability in the Address Directory (sp_directory) extension 0.2.10 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxx9-mrvw-53f7/GHSA-rxx9-mrvw-53f7.json b/advisories/unreviewed/2022/05/GHSA-rxx9-mrvw-53f7/GHSA-rxx9-mrvw-53f7.json index 32e519ea6c7..50f3142c986 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxx9-mrvw-53f7/GHSA-rxx9-mrvw-53f7.json +++ b/advisories/unreviewed/2022/05/GHSA-rxx9-mrvw-53f7/GHSA-rxx9-mrvw-53f7.json @@ -7,12 +7,8 @@ "CVE-2008-2907" ], "details": "SQL injection vulnerability in admin/index.php in WebChamado 1.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the eml parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v24j-r79f-w838/GHSA-v24j-r79f-w838.json b/advisories/unreviewed/2022/05/GHSA-v24j-r79f-w838/GHSA-v24j-r79f-w838.json index dbd83fb7d88..da13243c85b 100644 --- a/advisories/unreviewed/2022/05/GHSA-v24j-r79f-w838/GHSA-v24j-r79f-w838.json +++ b/advisories/unreviewed/2022/05/GHSA-v24j-r79f-w838/GHSA-v24j-r79f-w838.json @@ -7,12 +7,8 @@ "CVE-2008-2896" ], "details": "Directory traversal vulnerability in index.php in FireAnt 1.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v2mw-g73g-923h/GHSA-v2mw-g73g-923h.json b/advisories/unreviewed/2022/05/GHSA-v2mw-g73g-923h/GHSA-v2mw-g73g-923h.json index d5dfde5889e..e4536c8c060 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2mw-g73g-923h/GHSA-v2mw-g73g-923h.json +++ b/advisories/unreviewed/2022/05/GHSA-v2mw-g73g-923h/GHSA-v2mw-g73g-923h.json @@ -7,12 +7,8 @@ "CVE-2008-2726" ], "details": "Integer overflow in the (1) rb_ary_splice function in Ruby 1.8.4 and earlier, 1.8.5 before 1.8.5-p231, 1.8.6 before 1.8.6-p230, 1.8.7 before 1.8.7-p22, and 1.9.0 before 1.9.0-2; and (2) the rb_ary_replace function in 1.6.x allows context-dependent attackers to trigger memory corruption, aka the \"beg + rlen\" issue. NOTE: as of 20080624, there has been inconsistent usage of multiple CVE identifiers related to Ruby. The CVE description should be regarded as authoritative, although it is likely to change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -192,9 +188,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v2p8-7jjc-gfv9/GHSA-v2p8-7jjc-gfv9.json b/advisories/unreviewed/2022/05/GHSA-v2p8-7jjc-gfv9/GHSA-v2p8-7jjc-gfv9.json index c345788a95c..2027a9935d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2p8-7jjc-gfv9/GHSA-v2p8-7jjc-gfv9.json +++ b/advisories/unreviewed/2022/05/GHSA-v2p8-7jjc-gfv9/GHSA-v2p8-7jjc-gfv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v2w9-vg3g-gcmw/GHSA-v2w9-vg3g-gcmw.json b/advisories/unreviewed/2022/05/GHSA-v2w9-vg3g-gcmw/GHSA-v2w9-vg3g-gcmw.json index e2691c7bcfa..52fa1150504 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2w9-vg3g-gcmw/GHSA-v2w9-vg3g-gcmw.json +++ b/advisories/unreviewed/2022/05/GHSA-v2w9-vg3g-gcmw/GHSA-v2w9-vg3g-gcmw.json @@ -7,12 +7,8 @@ "CVE-2008-2839" ], "details": "Cross-site scripting (XSS) vulnerability in the search module in Traindepot 0.1 allows remote attackers to inject arbitrary web script or HTML via the query parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v439-7jcj-2c2j/GHSA-v439-7jcj-2c2j.json b/advisories/unreviewed/2022/05/GHSA-v439-7jcj-2c2j/GHSA-v439-7jcj-2c2j.json index 5ca525d0046..c70e224281e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v439-7jcj-2c2j/GHSA-v439-7jcj-2c2j.json +++ b/advisories/unreviewed/2022/05/GHSA-v439-7jcj-2c2j/GHSA-v439-7jcj-2c2j.json @@ -7,12 +7,8 @@ "CVE-2008-3141" ], "details": "Unspecified vulnerability in the RMI dissector in Wireshark (formerly Ethereal) 0.9.5 through 1.0.0 allows remote attackers to read system memory via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4jc-mmh3-qj2w/GHSA-v4jc-mmh3-qj2w.json b/advisories/unreviewed/2022/05/GHSA-v4jc-mmh3-qj2w/GHSA-v4jc-mmh3-qj2w.json index be6203b9703..11f1122ba7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4jc-mmh3-qj2w/GHSA-v4jc-mmh3-qj2w.json +++ b/advisories/unreviewed/2022/05/GHSA-v4jc-mmh3-qj2w/GHSA-v4jc-mmh3-qj2w.json @@ -7,12 +7,8 @@ "CVE-2008-2924" ], "details": "Cross-site scripting (XSS) vulnerability in Webmatic before 2.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4vg-v399-3gx2/GHSA-v4vg-v399-3gx2.json b/advisories/unreviewed/2022/05/GHSA-v4vg-v399-3gx2/GHSA-v4vg-v399-3gx2.json index ecd939c31e0..a261576788a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4vg-v399-3gx2/GHSA-v4vg-v399-3gx2.json +++ b/advisories/unreviewed/2022/05/GHSA-v4vg-v399-3gx2/GHSA-v4vg-v399-3gx2.json @@ -7,12 +7,8 @@ "CVE-2008-3026" ], "details": "SQL injection vulnerability in index.php in OneClick CMS (aka Sisplet CMS) 2008-01-24 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4x7-h7pv-94wj/GHSA-v4x7-h7pv-94wj.json b/advisories/unreviewed/2022/05/GHSA-v4x7-h7pv-94wj/GHSA-v4x7-h7pv-94wj.json index aec1896b66e..b288b55b2f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4x7-h7pv-94wj/GHSA-v4x7-h7pv-94wj.json +++ b/advisories/unreviewed/2022/05/GHSA-v4x7-h7pv-94wj/GHSA-v4x7-h7pv-94wj.json @@ -7,12 +7,8 @@ "CVE-2008-2963" ], "details": "Multiple SQL injection vulnerabilities in MyBlog allow remote attackers to execute arbitrary SQL commands via the (1) view parameter to (a) index.php, and the (2) id parameter to (b) member.php and (c) post.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v57r-q7qp-7jg8/GHSA-v57r-q7qp-7jg8.json b/advisories/unreviewed/2022/05/GHSA-v57r-q7qp-7jg8/GHSA-v57r-q7qp-7jg8.json index 904f99d6678..3b6365f659c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v57r-q7qp-7jg8/GHSA-v57r-q7qp-7jg8.json +++ b/advisories/unreviewed/2022/05/GHSA-v57r-q7qp-7jg8/GHSA-v57r-q7qp-7jg8.json @@ -7,12 +7,8 @@ "CVE-2008-2735" ], "details": "The HTTP server in Cisco Adaptive Security Appliance (ASA) 5500 devices 8.0 before 8.0(3)15 and 8.1 before 8.1(1)5, when configured as a clientless SSL VPN endpoint, does not properly process URIs, which allows remote attackers to cause a denial of service (device reload) via a URI in a crafted SSL or HTTP packet, aka Bug ID CSCsq19369.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v5ff-7w82-r6g5/GHSA-v5ff-7w82-r6g5.json b/advisories/unreviewed/2022/05/GHSA-v5ff-7w82-r6g5/GHSA-v5ff-7w82-r6g5.json index 2b3377682d5..3cd23b9c031 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5ff-7w82-r6g5/GHSA-v5ff-7w82-r6g5.json +++ b/advisories/unreviewed/2022/05/GHSA-v5ff-7w82-r6g5/GHSA-v5ff-7w82-r6g5.json @@ -7,12 +7,8 @@ "CVE-2008-3044" ], "details": "SQL injection vulnerability in the News Calendar (newscalendar) extension 1.0.7 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v74x-h8vc-p3j5/GHSA-v74x-h8vc-p3j5.json b/advisories/unreviewed/2022/05/GHSA-v74x-h8vc-p3j5/GHSA-v74x-h8vc-p3j5.json index 878d85f7129..4ef3aed59ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-v74x-h8vc-p3j5/GHSA-v74x-h8vc-p3j5.json +++ b/advisories/unreviewed/2022/05/GHSA-v74x-h8vc-p3j5/GHSA-v74x-h8vc-p3j5.json @@ -7,12 +7,8 @@ "CVE-2008-2960" ], "details": "Cross-site scripting (XSS) vulnerability in phpMyAdmin before 2.11.7, when register_globals is enabled and .htaccess support is disabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving scripts in libraries/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7vf-rv5x-3j8g/GHSA-v7vf-rv5x-3j8g.json b/advisories/unreviewed/2022/05/GHSA-v7vf-rv5x-3j8g/GHSA-v7vf-rv5x-3j8g.json index c0b8bf560af..95a06863621 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7vf-rv5x-3j8g/GHSA-v7vf-rv5x-3j8g.json +++ b/advisories/unreviewed/2022/05/GHSA-v7vf-rv5x-3j8g/GHSA-v7vf-rv5x-3j8g.json @@ -7,12 +7,8 @@ "CVE-2008-3097" ], "details": "Cross-site scripting (XSS) vulnerability in the Tinytax module (aka Tinytax taxonomy block) 5.x before 5.x-1.10-1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML, probably by creating a crafted taxonomy term.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v897-w6q7-m59x/GHSA-v897-w6q7-m59x.json b/advisories/unreviewed/2022/05/GHSA-v897-w6q7-m59x/GHSA-v897-w6q7-m59x.json index 2ccca922e5a..792e38b93ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-v897-w6q7-m59x/GHSA-v897-w6q7-m59x.json +++ b/advisories/unreviewed/2022/05/GHSA-v897-w6q7-m59x/GHSA-v897-w6q7-m59x.json @@ -7,12 +7,8 @@ "CVE-2008-2856" ], "details": "SQL injection vulnerability in clanek.php in OwnRS Beta 3 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9cv-623f-mpwx/GHSA-v9cv-623f-mpwx.json b/advisories/unreviewed/2022/05/GHSA-v9cv-623f-mpwx/GHSA-v9cv-623f-mpwx.json index 47f3bad0561..956645dc3c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9cv-623f-mpwx/GHSA-v9cv-623f-mpwx.json +++ b/advisories/unreviewed/2022/05/GHSA-v9cv-623f-mpwx/GHSA-v9cv-623f-mpwx.json @@ -7,12 +7,8 @@ "CVE-2008-2898" ], "details": "Directory traversal vulnerability in includes/header.php in Hedgehog-CMS 1.21 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the c_temp_path parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9m2-f663-9952/GHSA-v9m2-f663-9952.json b/advisories/unreviewed/2022/05/GHSA-v9m2-f663-9952/GHSA-v9m2-f663-9952.json index 912acc53ba0..8d9794fb791 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9m2-f663-9952/GHSA-v9m2-f663-9952.json +++ b/advisories/unreviewed/2022/05/GHSA-v9m2-f663-9952/GHSA-v9m2-f663-9952.json @@ -7,12 +7,8 @@ "CVE-2008-2984" ], "details": "Cross-site scripting (XSS) vulnerability in backend/umleitung.php in CMReams CMS 1.3.1.1 Beta 2 allows remote attackers to inject arbitrary web script or HTML via the lang[be_red_text] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf7c-ccwg-92rf/GHSA-vf7c-ccwg-92rf.json b/advisories/unreviewed/2022/05/GHSA-vf7c-ccwg-92rf/GHSA-vf7c-ccwg-92rf.json index adaa79d6fd0..da798c41f1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf7c-ccwg-92rf/GHSA-vf7c-ccwg-92rf.json +++ b/advisories/unreviewed/2022/05/GHSA-vf7c-ccwg-92rf/GHSA-vf7c-ccwg-92rf.json @@ -7,12 +7,8 @@ "CVE-2008-3070" ], "details": "Unspecified vulnerability in inc/datahandler/user.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $user['language'] variable, probably related to SQL injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vfmc-vxg8-88xg/GHSA-vfmc-vxg8-88xg.json b/advisories/unreviewed/2022/05/GHSA-vfmc-vxg8-88xg/GHSA-vfmc-vxg8-88xg.json index 372e7483eb3..3b9a2982dbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfmc-vxg8-88xg/GHSA-vfmc-vxg8-88xg.json +++ b/advisories/unreviewed/2022/05/GHSA-vfmc-vxg8-88xg/GHSA-vfmc-vxg8-88xg.json @@ -7,12 +7,8 @@ "CVE-2020-9738" ], "details": "AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by a stored XSS vulnerability that allows users with access to the Content Repository Development Environment to store malicious scripts in certain node fields. These scripts may be executed in a victim’s browser when visiting the page containing the vulnerable field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vfvg-4xhm-9ppq/GHSA-vfvg-4xhm-9ppq.json b/advisories/unreviewed/2022/05/GHSA-vfvg-4xhm-9ppq/GHSA-vfvg-4xhm-9ppq.json index 08161970731..c8e72126bcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfvg-4xhm-9ppq/GHSA-vfvg-4xhm-9ppq.json +++ b/advisories/unreviewed/2022/05/GHSA-vfvg-4xhm-9ppq/GHSA-vfvg-4xhm-9ppq.json @@ -7,12 +7,8 @@ "CVE-2008-2825" ], "details": "Cross-site scripting (XSS) vulnerability in the embedded Web Server in Xerox WorkCentre M123, M128, and 133 and WorkCentre Pro 123, 128, and 133 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vfx3-5xwg-q5jm/GHSA-vfx3-5xwg-q5jm.json b/advisories/unreviewed/2022/05/GHSA-vfx3-5xwg-q5jm/GHSA-vfx3-5xwg-q5jm.json index 76caabaece3..8f2aaa45980 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfx3-5xwg-q5jm/GHSA-vfx3-5xwg-q5jm.json +++ b/advisories/unreviewed/2022/05/GHSA-vfx3-5xwg-q5jm/GHSA-vfx3-5xwg-q5jm.json @@ -7,12 +7,8 @@ "CVE-2021-24183" ], "details": "The tutor_quiz_builder_get_question_form AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.8.3 was vulnerable to UNION based SQL injection that could be exploited by students.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vg8x-r8gm-9mcp/GHSA-vg8x-r8gm-9mcp.json b/advisories/unreviewed/2022/05/GHSA-vg8x-r8gm-9mcp/GHSA-vg8x-r8gm-9mcp.json index cb96c490d06..074d08a8af0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vg8x-r8gm-9mcp/GHSA-vg8x-r8gm-9mcp.json +++ b/advisories/unreviewed/2022/05/GHSA-vg8x-r8gm-9mcp/GHSA-vg8x-r8gm-9mcp.json @@ -7,12 +7,8 @@ "CVE-2008-2615" ], "details": "Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vgrp-wvp9-2pfm/GHSA-vgrp-wvp9-2pfm.json b/advisories/unreviewed/2022/05/GHSA-vgrp-wvp9-2pfm/GHSA-vgrp-wvp9-2pfm.json index 8b3b2f16c3c..187be415fde 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgrp-wvp9-2pfm/GHSA-vgrp-wvp9-2pfm.json +++ b/advisories/unreviewed/2022/05/GHSA-vgrp-wvp9-2pfm/GHSA-vgrp-wvp9-2pfm.json @@ -7,12 +7,8 @@ "CVE-2008-2708" ], "details": "Unspecified vulnerability in the Sun (1) UltraSPARC T2 and (2) UltraSPARC T2+ kernel modules in Sun Solaris 10, and OpenSolaris before snv_93, allows local users to cause a denial of service (panic) via unspecified vectors, probably related to core files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vgvv-3x6g-xpx5/GHSA-vgvv-3x6g-xpx5.json b/advisories/unreviewed/2022/05/GHSA-vgvv-3x6g-xpx5/GHSA-vgvv-3x6g-xpx5.json index 7d2a3dd78ef..29cf499865f 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgvv-3x6g-xpx5/GHSA-vgvv-3x6g-xpx5.json +++ b/advisories/unreviewed/2022/05/GHSA-vgvv-3x6g-xpx5/GHSA-vgvv-3x6g-xpx5.json @@ -7,12 +7,8 @@ "CVE-2008-2636" ], "details": "The HTTP service on the Cisco Linksys WRH54G with firmware 1.01.03 allows remote attackers to cause a denial of service (management interface outage) or possibly execute arbitrary code via a URI that begins with a \"/./\" sequence, contains many instances of a \"front_page\" sequence, and ends with a \".asp\" sequence.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vhf3-3f7m-h82m/GHSA-vhf3-3f7m-h82m.json b/advisories/unreviewed/2022/05/GHSA-vhf3-3f7m-h82m/GHSA-vhf3-3f7m-h82m.json index f1ff69e35e4..d4b4de7c08a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhf3-3f7m-h82m/GHSA-vhf3-3f7m-h82m.json +++ b/advisories/unreviewed/2022/05/GHSA-vhf3-3f7m-h82m/GHSA-vhf3-3f7m-h82m.json @@ -7,12 +7,8 @@ "CVE-2008-2757" ], "details": "SQL injection vulnerability in search.asp in Xigla Absolute News Manager XE 3.2 allows remote authenticated administrators to execute arbitrary SQL commands via the orderby parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vhhg-wfx6-rjw6/GHSA-vhhg-wfx6-rjw6.json b/advisories/unreviewed/2022/05/GHSA-vhhg-wfx6-rjw6/GHSA-vhhg-wfx6-rjw6.json index c040ad38b8d..d587057fc34 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhhg-wfx6-rjw6/GHSA-vhhg-wfx6-rjw6.json +++ b/advisories/unreviewed/2022/05/GHSA-vhhg-wfx6-rjw6/GHSA-vhhg-wfx6-rjw6.json @@ -7,12 +7,8 @@ "CVE-2008-2854" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Orlando CMS 0.6 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[preloc] parameter to (1) modules/core/logger/init.php and (2) AJAX/newscat.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vj89-m86v-pp2w/GHSA-vj89-m86v-pp2w.json b/advisories/unreviewed/2022/05/GHSA-vj89-m86v-pp2w/GHSA-vj89-m86v-pp2w.json index 70122f39e46..4b5746e003b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj89-m86v-pp2w/GHSA-vj89-m86v-pp2w.json +++ b/advisories/unreviewed/2022/05/GHSA-vj89-m86v-pp2w/GHSA-vj89-m86v-pp2w.json @@ -7,12 +7,8 @@ "CVE-2008-2961" ], "details": "Multiple directory traversal vulnerabilities in view/index.php in CMS Mini 0.2.2 allow remote attackers to read arbitrary local files via a .. (dot dot) in the (1) path and (2) p parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjpx-8gm7-4pxc/GHSA-vjpx-8gm7-4pxc.json b/advisories/unreviewed/2022/05/GHSA-vjpx-8gm7-4pxc/GHSA-vjpx-8gm7-4pxc.json index a0cb59d2db1..9933846f9c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjpx-8gm7-4pxc/GHSA-vjpx-8gm7-4pxc.json +++ b/advisories/unreviewed/2022/05/GHSA-vjpx-8gm7-4pxc/GHSA-vjpx-8gm7-4pxc.json @@ -7,12 +7,8 @@ "CVE-2008-3106" ], "details": "Unspecified vulnerability in Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 6 and earlier and JDK and JRE 5.0 Update 15 and earlier allows remote attackers to access URLs via unknown vectors involving processing of XML data by an untrusted (1) application or (2) applet, a different vulnerability than CVE-2008-3105.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -180,9 +176,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vm53-43cv-j7p2/GHSA-vm53-43cv-j7p2.json b/advisories/unreviewed/2022/05/GHSA-vm53-43cv-j7p2/GHSA-vm53-43cv-j7p2.json index f7469c612d7..9e2a1c6149a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vm53-43cv-j7p2/GHSA-vm53-43cv-j7p2.json +++ b/advisories/unreviewed/2022/05/GHSA-vm53-43cv-j7p2/GHSA-vm53-43cv-j7p2.json @@ -7,12 +7,8 @@ "CVE-2021-24554" ], "details": "The Paytm – Donation Plugin WordPress plugin through 1.3.2 does not sanitise, validate or escape the id GET parameter before using it in a SQL statement when deleting donations, leading to an authenticated SQL injection issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vp2f-jrfq-qr4m/GHSA-vp2f-jrfq-qr4m.json b/advisories/unreviewed/2022/05/GHSA-vp2f-jrfq-qr4m/GHSA-vp2f-jrfq-qr4m.json index f81f9ca42f7..319dba37583 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp2f-jrfq-qr4m/GHSA-vp2f-jrfq-qr4m.json +++ b/advisories/unreviewed/2022/05/GHSA-vp2f-jrfq-qr4m/GHSA-vp2f-jrfq-qr4m.json @@ -7,12 +7,8 @@ "CVE-2008-3288" ], "details": "The Server Authentication Module in EMC Dantz Retrospect Backup Server 7.5.508 uses a \"weak hash algorithm,\" which makes it easier for context-dependent attackers to recover passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq56-9vcf-xwq4/GHSA-vq56-9vcf-xwq4.json b/advisories/unreviewed/2022/05/GHSA-vq56-9vcf-xwq4/GHSA-vq56-9vcf-xwq4.json index fe2309dc97d..0211d49db31 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq56-9vcf-xwq4/GHSA-vq56-9vcf-xwq4.json +++ b/advisories/unreviewed/2022/05/GHSA-vq56-9vcf-xwq4/GHSA-vq56-9vcf-xwq4.json @@ -7,12 +7,8 @@ "CVE-2008-2709" ], "details": "Buffer overflow in the BrSmRcvAndCheck function in the RCHMGR module on IBM OS/400 V5R4M0, V5R4M5, and V6R1M0 allows local users to cause a denial of service (task halt and main storage dump) via unspecified vectors involving the running of diagnostics on a modem port. NOTE: there might be limited attack scenarios.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vq5g-4pw8-m6rw/GHSA-vq5g-4pw8-m6rw.json b/advisories/unreviewed/2022/05/GHSA-vq5g-4pw8-m6rw/GHSA-vq5g-4pw8-m6rw.json index 1ded7d7ad2a..981feba47c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq5g-4pw8-m6rw/GHSA-vq5g-4pw8-m6rw.json +++ b/advisories/unreviewed/2022/05/GHSA-vq5g-4pw8-m6rw/GHSA-vq5g-4pw8-m6rw.json @@ -7,12 +7,8 @@ "CVE-2008-2850" ], "details": "SQL injection vulnerability in the TrailScout module 5.x before 5.x-1.4 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified cookies, related to improper use of the Drupal database API.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqmc-89mm-v3q9/GHSA-vqmc-89mm-v3q9.json b/advisories/unreviewed/2022/05/GHSA-vqmc-89mm-v3q9/GHSA-vqmc-89mm-v3q9.json index 444bd66db0f..36f6fabcfad 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqmc-89mm-v3q9/GHSA-vqmc-89mm-v3q9.json +++ b/advisories/unreviewed/2022/05/GHSA-vqmc-89mm-v3q9/GHSA-vqmc-89mm-v3q9.json @@ -7,12 +7,8 @@ "CVE-2008-3268" ], "details": "Unspecified vulnerability in phpScheduleIt 1.2.0 through 1.2.9, when useLogonName is enabled, allows remote attackers with administrator email address knowledge to bypass restrictions and gain privileges via unspecified vectors related to login names. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqxw-7xc2-mjhv/GHSA-vqxw-7xc2-mjhv.json b/advisories/unreviewed/2022/05/GHSA-vqxw-7xc2-mjhv/GHSA-vqxw-7xc2-mjhv.json index 25bab6f3038..d75ee7290e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqxw-7xc2-mjhv/GHSA-vqxw-7xc2-mjhv.json +++ b/advisories/unreviewed/2022/05/GHSA-vqxw-7xc2-mjhv/GHSA-vqxw-7xc2-mjhv.json @@ -7,12 +7,8 @@ "CVE-2008-3014" ], "details": "Buffer overflow in gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services SP2, SQL Server 2005 SP2, Report Viewer 2005 SP1 and 2008, and Forefront Client Security 1.0 allows remote attackers to execute arbitrary code via a malformed WMF image file that triggers improper memory allocation, aka \"GDI+ WMF Buffer Overrun Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw9w-whc3-87rm/GHSA-vw9w-whc3-87rm.json b/advisories/unreviewed/2022/05/GHSA-vw9w-whc3-87rm/GHSA-vw9w-whc3-87rm.json index affbe35cd40..95d77213560 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw9w-whc3-87rm/GHSA-vw9w-whc3-87rm.json +++ b/advisories/unreviewed/2022/05/GHSA-vw9w-whc3-87rm/GHSA-vw9w-whc3-87rm.json @@ -7,12 +7,8 @@ "CVE-2008-3054" ], "details": "SQL injection vulnerability in the Branchenbuch (aka Yellow Pages o (mh_branchenbuch) extension 0.8.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vxv8-22w3-3cgm/GHSA-vxv8-22w3-3cgm.json b/advisories/unreviewed/2022/05/GHSA-vxv8-22w3-3cgm/GHSA-vxv8-22w3-3cgm.json index 9a2e51ed268..0debb220c0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxv8-22w3-3cgm/GHSA-vxv8-22w3-3cgm.json +++ b/advisories/unreviewed/2022/05/GHSA-vxv8-22w3-3cgm/GHSA-vxv8-22w3-3cgm.json @@ -7,12 +7,8 @@ "CVE-2008-3283" ], "details": "Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) the authentication / bind phase and (2) anonymous LDAP search requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w34c-rmp4-8hrh/GHSA-w34c-rmp4-8hrh.json b/advisories/unreviewed/2022/05/GHSA-w34c-rmp4-8hrh/GHSA-w34c-rmp4-8hrh.json index 0131d250cb8..940303eb627 100644 --- a/advisories/unreviewed/2022/05/GHSA-w34c-rmp4-8hrh/GHSA-w34c-rmp4-8hrh.json +++ b/advisories/unreviewed/2022/05/GHSA-w34c-rmp4-8hrh/GHSA-w34c-rmp4-8hrh.json @@ -7,12 +7,8 @@ "CVE-2008-2614" ], "details": "Unspecified vulnerability in the Oracle HTTP Server component in Oracle Application Server 9.0.4.3, 10.1.2.3, and 10.1.3.3 has unknown impact and remote attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3gc-4qj5-r5xm/GHSA-w3gc-4qj5-r5xm.json b/advisories/unreviewed/2022/05/GHSA-w3gc-4qj5-r5xm/GHSA-w3gc-4qj5-r5xm.json index 724309fa127..b1c1e81daab 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3gc-4qj5-r5xm/GHSA-w3gc-4qj5-r5xm.json +++ b/advisories/unreviewed/2022/05/GHSA-w3gc-4qj5-r5xm/GHSA-w3gc-4qj5-r5xm.json @@ -7,12 +7,8 @@ "CVE-2008-3183" ], "details": "PHP remote file inclusion vulnerability in ktmlpro/includes/ktedit/toolbar.php in gapicms 9.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the dirDepth parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w47q-rrrf-67w3/GHSA-w47q-rrrf-67w3.json b/advisories/unreviewed/2022/05/GHSA-w47q-rrrf-67w3/GHSA-w47q-rrrf-67w3.json index 4e395da1cdb..33ad27c3c6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-w47q-rrrf-67w3/GHSA-w47q-rrrf-67w3.json +++ b/advisories/unreviewed/2022/05/GHSA-w47q-rrrf-67w3/GHSA-w47q-rrrf-67w3.json @@ -7,12 +7,8 @@ "CVE-2008-2781" ], "details": "SQL injection vulnerability in index.php in DZOIC Handshakes 3.5 allows remote attackers to execute arbitrary SQL commands via the fname parameter in a members search action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w48m-7fx4-rwmx/GHSA-w48m-7fx4-rwmx.json b/advisories/unreviewed/2022/05/GHSA-w48m-7fx4-rwmx/GHSA-w48m-7fx4-rwmx.json index cfbbad4b00e..067b3fd2479 100644 --- a/advisories/unreviewed/2022/05/GHSA-w48m-7fx4-rwmx/GHSA-w48m-7fx4-rwmx.json +++ b/advisories/unreviewed/2022/05/GHSA-w48m-7fx4-rwmx/GHSA-w48m-7fx4-rwmx.json @@ -7,12 +7,8 @@ "CVE-2008-3169" ], "details": "Multiple heap-based buffer overflows in Empire Server before 4.3.15 allow remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors, related to a \"coordinate normalization bug.\" NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4fv-wh95-32j3/GHSA-w4fv-wh95-32j3.json b/advisories/unreviewed/2022/05/GHSA-w4fv-wh95-32j3/GHSA-w4fv-wh95-32j3.json index 132e4063b0e..e1d83347428 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4fv-wh95-32j3/GHSA-w4fv-wh95-32j3.json +++ b/advisories/unreviewed/2022/05/GHSA-w4fv-wh95-32j3/GHSA-w4fv-wh95-32j3.json @@ -7,12 +7,8 @@ "CVE-2008-3004" ], "details": "Microsoft Office Excel 2000 SP3, 2002 SP3, and 2003 SP2 and SP3; Office Excel Viewer 2003; and Office 2004 and 2008 for Mac do not properly validate index values for AxesSet records when loading Excel files, which allows remote attackers to execute arbitrary code via a crafted Excel file, aka the \"Excel Indexing Validation Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4h4-2742-q7rr/GHSA-w4h4-2742-q7rr.json b/advisories/unreviewed/2022/05/GHSA-w4h4-2742-q7rr/GHSA-w4h4-2742-q7rr.json index d117065b013..d81961df3df 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4h4-2742-q7rr/GHSA-w4h4-2742-q7rr.json +++ b/advisories/unreviewed/2022/05/GHSA-w4h4-2742-q7rr/GHSA-w4h4-2742-q7rr.json @@ -7,12 +7,8 @@ "CVE-2008-2972" ], "details": "SQL injection vulnerability in index.php in KbLance allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a comment action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w6xh-7r58-f4hq/GHSA-w6xh-7r58-f4hq.json b/advisories/unreviewed/2022/05/GHSA-w6xh-7r58-f4hq/GHSA-w6xh-7r58-f4hq.json index 5436aa931b8..dccea977200 100644 --- a/advisories/unreviewed/2022/05/GHSA-w6xh-7r58-f4hq/GHSA-w6xh-7r58-f4hq.json +++ b/advisories/unreviewed/2022/05/GHSA-w6xh-7r58-f4hq/GHSA-w6xh-7r58-f4hq.json @@ -7,12 +7,8 @@ "CVE-2008-3155" ], "details": "Stack-based buffer overflow in the ActiveX control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long argument to the Update method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w75g-pf4w-q85j/GHSA-w75g-pf4w-q85j.json b/advisories/unreviewed/2022/05/GHSA-w75g-pf4w-q85j/GHSA-w75g-pf4w-q85j.json index 54e56b2366b..7f87accc49e 100644 --- a/advisories/unreviewed/2022/05/GHSA-w75g-pf4w-q85j/GHSA-w75g-pf4w-q85j.json +++ b/advisories/unreviewed/2022/05/GHSA-w75g-pf4w-q85j/GHSA-w75g-pf4w-q85j.json @@ -7,12 +7,8 @@ "CVE-2008-3290" ], "details": "retroclient.exe in EMC Dantz Retrospect Backup Client 7.5.116 allows remote attackers to cause a denial of service (daemon crash) via a series of long packets containing 0x00 characters to TCP port 497 that trigger memory corruption, probably involving an English product version on a Chinese OS version.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7c5-5hpg-529h/GHSA-w7c5-5hpg-529h.json b/advisories/unreviewed/2022/05/GHSA-w7c5-5hpg-529h/GHSA-w7c5-5hpg-529h.json index c01831b75b5..38b6824498c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7c5-5hpg-529h/GHSA-w7c5-5hpg-529h.json +++ b/advisories/unreviewed/2022/05/GHSA-w7c5-5hpg-529h/GHSA-w7c5-5hpg-529h.json @@ -7,12 +7,8 @@ "CVE-2008-2941" ], "details": "The hpssd message parser in hpssd.py in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to cause a denial of service (process stop) via a crafted packet, as demonstrated by sending \"msg=0\" to TCP port 2207.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w847-ffvp-553c/GHSA-w847-ffvp-553c.json b/advisories/unreviewed/2022/05/GHSA-w847-ffvp-553c/GHSA-w847-ffvp-553c.json index 69ed06b8b8e..44402cd1479 100644 --- a/advisories/unreviewed/2022/05/GHSA-w847-ffvp-553c/GHSA-w847-ffvp-553c.json +++ b/advisories/unreviewed/2022/05/GHSA-w847-ffvp-553c/GHSA-w847-ffvp-553c.json @@ -7,12 +7,8 @@ "CVE-2008-2953" ], "details": "Linux DC++ (linuxdcpp) before 0.707 allows remote attackers to cause a denial of service (crash) via \"partial file list requests\" that trigger a NULL pointer dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w93p-79pv-qwgc/GHSA-w93p-79pv-qwgc.json b/advisories/unreviewed/2022/05/GHSA-w93p-79pv-qwgc/GHSA-w93p-79pv-qwgc.json index 9d18695d0f3..9ff8fd16c13 100644 --- a/advisories/unreviewed/2022/05/GHSA-w93p-79pv-qwgc/GHSA-w93p-79pv-qwgc.json +++ b/advisories/unreviewed/2022/05/GHSA-w93p-79pv-qwgc/GHSA-w93p-79pv-qwgc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wc34-94x4-v5r4/GHSA-wc34-94x4-v5r4.json b/advisories/unreviewed/2022/05/GHSA-wc34-94x4-v5r4/GHSA-wc34-94x4-v5r4.json index 4047988dc19..a500adb5d5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc34-94x4-v5r4/GHSA-wc34-94x4-v5r4.json +++ b/advisories/unreviewed/2022/05/GHSA-wc34-94x4-v5r4/GHSA-wc34-94x4-v5r4.json @@ -7,12 +7,8 @@ "CVE-2008-2912" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Contenido CMS 4.8.4 allow remote attackers to execute arbitrary PHP code via a URL in the (1) contenido_path parameter to (a) contenido/backend_search.php; the (2) cfg[path][contenido] parameter to (b) move_articles.php, (c) move_old_stats.php, (d) optimize_database.php, (e) run_newsletter_job.php, (f) send_reminder.php, (g) session_cleanup.php, and (h) setfrontenduserstate.php in contenido/cronjobs/, and (i) includes/include.newsletter_jobs_subnav.php and (j) plugins/content_allocation/includes/include.right_top.php in contenido/; the (3) cfg[path][templates] parameter to (k) includes/include.newsletter_jobs_subnav.php and (l) plugins/content_allocation/includes/include.right_top.php in contenido/; and the (4) cfg[templates][right_top_blank] parameter to (m) plugins/content_allocation/includes/include.right_top.php and (n) contenido/includes/include.newsletter_jobs_subnav.php in contenido/, different vectors than CVE-2006-5380.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcc3-x47q-2m82/GHSA-wcc3-x47q-2m82.json b/advisories/unreviewed/2022/05/GHSA-wcc3-x47q-2m82/GHSA-wcc3-x47q-2m82.json index 4db8eac8b64..6af4e0162a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcc3-x47q-2m82/GHSA-wcc3-x47q-2m82.json +++ b/advisories/unreviewed/2022/05/GHSA-wcc3-x47q-2m82/GHSA-wcc3-x47q-2m82.json @@ -7,12 +7,8 @@ "CVE-2008-3071" ], "details": "Directory traversal vulnerability in inc/class_language.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $language variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcw8-xmrj-c45h/GHSA-wcw8-xmrj-c45h.json b/advisories/unreviewed/2022/05/GHSA-wcw8-xmrj-c45h/GHSA-wcw8-xmrj-c45h.json index 4d918f7f0e8..53bbd0712d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcw8-xmrj-c45h/GHSA-wcw8-xmrj-c45h.json +++ b/advisories/unreviewed/2022/05/GHSA-wcw8-xmrj-c45h/GHSA-wcw8-xmrj-c45h.json @@ -7,12 +7,8 @@ "CVE-2008-3034" ], "details": "Multiple SQL injection vulnerabilities in RSS-aggregator 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) IdFlux parameter to admin/fonctions/supprimer_flux.php and the (2) IdTag parameter to admin/fonctions/supprimer_tag.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wf8r-hqj6-cr36/GHSA-wf8r-hqj6-cr36.json b/advisories/unreviewed/2022/05/GHSA-wf8r-hqj6-cr36/GHSA-wf8r-hqj6-cr36.json index 3f529bf1533..6927ab24749 100644 --- a/advisories/unreviewed/2022/05/GHSA-wf8r-hqj6-cr36/GHSA-wf8r-hqj6-cr36.json +++ b/advisories/unreviewed/2022/05/GHSA-wf8r-hqj6-cr36/GHSA-wf8r-hqj6-cr36.json @@ -7,12 +7,8 @@ "CVE-2008-3018" ], "details": "Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file, aka the \"Malformed PICT Filter Vulnerability,\" a different vulnerability than CVE-2008-3021.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wh8f-x7rp-h62h/GHSA-wh8f-x7rp-h62h.json b/advisories/unreviewed/2022/05/GHSA-wh8f-x7rp-h62h/GHSA-wh8f-x7rp-h62h.json index cf79f2a275f..e567031c745 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh8f-x7rp-h62h/GHSA-wh8f-x7rp-h62h.json +++ b/advisories/unreviewed/2022/05/GHSA-wh8f-x7rp-h62h/GHSA-wh8f-x7rp-h62h.json @@ -7,12 +7,8 @@ "CVE-2008-3022" ], "details": "Multiple PHP remote file inclusion vulnerabilities in sablonlar/gunaysoft/gunaysoft.php in PHPortal 1.2 Beta allow remote attackers to execute arbitrary PHP code via a URL in (1) icerikyolu, (2) sayfaid, and (3) uzanti parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whrj-rv6r-cv2v/GHSA-whrj-rv6r-cv2v.json b/advisories/unreviewed/2022/05/GHSA-whrj-rv6r-cv2v/GHSA-whrj-rv6r-cv2v.json index ff1b0e0698a..35fc6cf6f07 100644 --- a/advisories/unreviewed/2022/05/GHSA-whrj-rv6r-cv2v/GHSA-whrj-rv6r-cv2v.json +++ b/advisories/unreviewed/2022/05/GHSA-whrj-rv6r-cv2v/GHSA-whrj-rv6r-cv2v.json @@ -7,12 +7,8 @@ "CVE-2008-2833" ], "details": "admin/upload.php in le.cms 1.4 and earlier allows remote attackers to bypass administrative authentication, and upload and execute arbitrary files in images/, via a nonzero value for the submit0 parameter in conjunction with filenames in the filename and upload parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj44-vm9q-56xc/GHSA-wj44-vm9q-56xc.json b/advisories/unreviewed/2022/05/GHSA-wj44-vm9q-56xc/GHSA-wj44-vm9q-56xc.json index 2aeee4db47b..290cc6fc5ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj44-vm9q-56xc/GHSA-wj44-vm9q-56xc.json +++ b/advisories/unreviewed/2022/05/GHSA-wj44-vm9q-56xc/GHSA-wj44-vm9q-56xc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wjww-59jc-83xc/GHSA-wjww-59jc-83xc.json b/advisories/unreviewed/2022/05/GHSA-wjww-59jc-83xc/GHSA-wjww-59jc-83xc.json index 64cc7ca7613..27378e51fed 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjww-59jc-83xc/GHSA-wjww-59jc-83xc.json +++ b/advisories/unreviewed/2022/05/GHSA-wjww-59jc-83xc/GHSA-wjww-59jc-83xc.json @@ -7,12 +7,8 @@ "CVE-2008-2785" ], "details": "Mozilla Firefox before 2.0.0.16 and 3.x before 3.0.1, Thunderbird before 2.0.0.16, and SeaMonkey before 1.1.11 use an incorrect integer data type as a CSS object reference counter in the CSSValue array (aka nsCSSValue:Array) data structure, which allows remote attackers to execute arbitrary code via a large number of references to a common CSS object, leading to a counter overflow and a free of in-use memory, aka ZDI-CAN-349.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -260,9 +256,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wmfj-qw37-mw3q/GHSA-wmfj-qw37-mw3q.json b/advisories/unreviewed/2022/05/GHSA-wmfj-qw37-mw3q/GHSA-wmfj-qw37-mw3q.json index f6e133778d2..80366d2fd3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmfj-qw37-mw3q/GHSA-wmfj-qw37-mw3q.json +++ b/advisories/unreviewed/2022/05/GHSA-wmfj-qw37-mw3q/GHSA-wmfj-qw37-mw3q.json @@ -7,12 +7,8 @@ "CVE-2008-2749" ], "details": "Unspecified vulnerability in cshttpd in Sun Java System Calendar Server 6 and 6.3, and Sun ONE Calendar Server 6.0, when access logging (aka service.http.commandlog.all) is enabled, allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wmwg-4ppq-2pvx/GHSA-wmwg-4ppq-2pvx.json b/advisories/unreviewed/2022/05/GHSA-wmwg-4ppq-2pvx/GHSA-wmwg-4ppq-2pvx.json index 4c6983ec6b4..a95bf98afa8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmwg-4ppq-2pvx/GHSA-wmwg-4ppq-2pvx.json +++ b/advisories/unreviewed/2022/05/GHSA-wmwg-4ppq-2pvx/GHSA-wmwg-4ppq-2pvx.json @@ -7,12 +7,8 @@ "CVE-2008-3061" ], "details": "Open redirect vulnerability in redirect.php in V-webmail 1.5.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the to parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wq2c-7m9f-vjwv/GHSA-wq2c-7m9f-vjwv.json b/advisories/unreviewed/2022/05/GHSA-wq2c-7m9f-vjwv/GHSA-wq2c-7m9f-vjwv.json index d76e9e4a2d2..40cf1f957d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wq2c-7m9f-vjwv/GHSA-wq2c-7m9f-vjwv.json +++ b/advisories/unreviewed/2022/05/GHSA-wq2c-7m9f-vjwv/GHSA-wq2c-7m9f-vjwv.json @@ -7,12 +7,8 @@ "CVE-2008-2988" ], "details": "Unrestricted file upload vulnerability in admin/upload.php in Benja CMS 0.1 allows remote attackers to upload and execute arbitrary PHP files via unspecified vectors, followed by a direct request to the file in billeder/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wqcp-cvwj-hr22/GHSA-wqcp-cvwj-hr22.json b/advisories/unreviewed/2022/05/GHSA-wqcp-cvwj-hr22/GHSA-wqcp-cvwj-hr22.json index 39f588204ab..98ec3568ed9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqcp-cvwj-hr22/GHSA-wqcp-cvwj-hr22.json +++ b/advisories/unreviewed/2022/05/GHSA-wqcp-cvwj-hr22/GHSA-wqcp-cvwj-hr22.json @@ -7,12 +7,8 @@ "CVE-2008-3168" ], "details": "The files utility in Empire Server before 4.3.15 discloses the world creation time, which makes it easier for attackers to determine the PRNG seed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wqmg-q854-x6x6/GHSA-wqmg-q854-x6x6.json b/advisories/unreviewed/2022/05/GHSA-wqmg-q854-x6x6/GHSA-wqmg-q854-x6x6.json index 26920724da8..66ecabe9be7 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqmg-q854-x6x6/GHSA-wqmg-q854-x6x6.json +++ b/advisories/unreviewed/2022/05/GHSA-wqmg-q854-x6x6/GHSA-wqmg-q854-x6x6.json @@ -7,12 +7,8 @@ "CVE-2008-3075" ], "details": "The shellescape function in Vim 7.0 through 7.2, including 7.2a.10, allows user-assisted attackers to execute arbitrary code via the \"!\" (exclamation point) shell metacharacter in (1) the filename of a ZIP archive and possibly (2) the filename of the first file in a ZIP archive, which is not properly handled by zip.vim in the VIM ZIP plugin (zipPlugin.vim) v.11 through v.21, as demonstrated by the zipplugin and zipplugin.v2 test cases. NOTE: this issue reportedly exists because of an incomplete fix for CVE-2008-2712. NOTE: this issue has the same root cause as CVE-2008-3074. NOTE: due to the complexity of the associated disclosures and the incomplete information related to them, there may be inaccuracies in this CVE description and in external mappings to this identifier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wv79-p5j7-rg6p/GHSA-wv79-p5j7-rg6p.json b/advisories/unreviewed/2022/05/GHSA-wv79-p5j7-rg6p/GHSA-wv79-p5j7-rg6p.json index f481cffdf96..facc652dfc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv79-p5j7-rg6p/GHSA-wv79-p5j7-rg6p.json +++ b/advisories/unreviewed/2022/05/GHSA-wv79-p5j7-rg6p/GHSA-wv79-p5j7-rg6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wv99-66q7-v8jf/GHSA-wv99-66q7-v8jf.json b/advisories/unreviewed/2022/05/GHSA-wv99-66q7-v8jf/GHSA-wv99-66q7-v8jf.json index 2449bd8f9ee..70ec8a24e6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv99-66q7-v8jf/GHSA-wv99-66q7-v8jf.json +++ b/advisories/unreviewed/2022/05/GHSA-wv99-66q7-v8jf/GHSA-wv99-66q7-v8jf.json @@ -7,12 +7,8 @@ "CVE-2008-2838" ], "details": "Directory traversal vulnerability in index.php in Traindepot 0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the module parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww6f-jp5h-g5hq/GHSA-ww6f-jp5h-g5hq.json b/advisories/unreviewed/2022/05/GHSA-ww6f-jp5h-g5hq/GHSA-ww6f-jp5h-g5hq.json index 0be0fffa8d1..5c0013574c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww6f-jp5h-g5hq/GHSA-ww6f-jp5h-g5hq.json +++ b/advisories/unreviewed/2022/05/GHSA-ww6f-jp5h-g5hq/GHSA-ww6f-jp5h-g5hq.json @@ -7,12 +7,8 @@ "CVE-2008-2947" ], "details": "Cross-domain vulnerability in Microsoft Internet Explorer 5.01 SP4, 6, and 7 allows remote attackers to access restricted information from other domains via JavaScript that uses the Object data type for the value of a (1) location or (2) location.href property, related to incorrect determination of the origin of web script, aka \"Window Location Property Cross-Domain Vulnerability.\" NOTE: according to Microsoft, CVE-2008-2948 and CVE-2008-2949 are duplicates of this issue, probably different attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww89-94rw-5jpj/GHSA-ww89-94rw-5jpj.json b/advisories/unreviewed/2022/05/GHSA-ww89-94rw-5jpj/GHSA-ww89-94rw-5jpj.json index 845963b7444..639c05b122b 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww89-94rw-5jpj/GHSA-ww89-94rw-5jpj.json +++ b/advisories/unreviewed/2022/05/GHSA-ww89-94rw-5jpj/GHSA-ww89-94rw-5jpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wwqf-vvjr-rmw4/GHSA-wwqf-vvjr-rmw4.json b/advisories/unreviewed/2022/05/GHSA-wwqf-vvjr-rmw4/GHSA-wwqf-vvjr-rmw4.json index 13d2cb53b0e..abd6cd4be8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwqf-vvjr-rmw4/GHSA-wwqf-vvjr-rmw4.json +++ b/advisories/unreviewed/2022/05/GHSA-wwqf-vvjr-rmw4/GHSA-wwqf-vvjr-rmw4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wx8f-9362-6rfq/GHSA-wx8f-9362-6rfq.json b/advisories/unreviewed/2022/05/GHSA-wx8f-9362-6rfq/GHSA-wx8f-9362-6rfq.json index 8340de2d84a..38388fb497a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx8f-9362-6rfq/GHSA-wx8f-9362-6rfq.json +++ b/advisories/unreviewed/2022/05/GHSA-wx8f-9362-6rfq/GHSA-wx8f-9362-6rfq.json @@ -7,12 +7,8 @@ "CVE-2008-2950" ], "details": "The Page destructor in Page.cc in libpoppler in Poppler 0.8.4 and earlier deletes a pageWidgets object even if it is not initialized by a Page constructor, which allows remote attackers to execute arbitrary code via a crafted PDF document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wx8f-jm47-79q2/GHSA-wx8f-jm47-79q2.json b/advisories/unreviewed/2022/05/GHSA-wx8f-jm47-79q2/GHSA-wx8f-jm47-79q2.json index 5fc2b87863d..f2bc8ee1a93 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx8f-jm47-79q2/GHSA-wx8f-jm47-79q2.json +++ b/advisories/unreviewed/2022/05/GHSA-wx8f-jm47-79q2/GHSA-wx8f-jm47-79q2.json @@ -7,12 +7,8 @@ "CVE-2008-3025" ], "details": "SQL injection vulnerability in ad.php in plx Ad Trader 3.2 allows remote attackers to execute arbitrary SQL commands via the adid parameter in a redir action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wxc4-9h3r-gjqp/GHSA-wxc4-9h3r-gjqp.json b/advisories/unreviewed/2022/05/GHSA-wxc4-9h3r-gjqp/GHSA-wxc4-9h3r-gjqp.json index a41a2c9e04d..17159225fa1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxc4-9h3r-gjqp/GHSA-wxc4-9h3r-gjqp.json +++ b/advisories/unreviewed/2022/05/GHSA-wxc4-9h3r-gjqp/GHSA-wxc4-9h3r-gjqp.json @@ -7,12 +7,8 @@ "CVE-2008-3122" ], "details": "Multiple SQL injection vulnerabilities in Xerox CentreWare Web (CWW) before 4.6.46 allow remote authenticated users to execute arbitrary SQL commands via the unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x35g-72f7-68c2/GHSA-x35g-72f7-68c2.json b/advisories/unreviewed/2022/05/GHSA-x35g-72f7-68c2/GHSA-x35g-72f7-68c2.json index e5d284480d4..f7fc2582dbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-x35g-72f7-68c2/GHSA-x35g-72f7-68c2.json +++ b/advisories/unreviewed/2022/05/GHSA-x35g-72f7-68c2/GHSA-x35g-72f7-68c2.json @@ -7,12 +7,8 @@ "CVE-2008-2848" ], "details": "Cross-site scripting (XSS) vulnerability in the search functionality in MindTouch DekiWiki before 8.05.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3j9-5xh7-mxxf/GHSA-x3j9-5xh7-mxxf.json b/advisories/unreviewed/2022/05/GHSA-x3j9-5xh7-mxxf/GHSA-x3j9-5xh7-mxxf.json index 5b8629ec322..f88ff05d64b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3j9-5xh7-mxxf/GHSA-x3j9-5xh7-mxxf.json +++ b/advisories/unreviewed/2022/05/GHSA-x3j9-5xh7-mxxf/GHSA-x3j9-5xh7-mxxf.json @@ -7,12 +7,8 @@ "CVE-2008-2729" ], "details": "arch/x86_64/lib/copy_user.S in the Linux kernel before 2.6.19 on some AMD64 systems does not erase destination memory locations after an exception during kernel memory copy, which allows local users to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3w4-f7g4-5q46/GHSA-x3w4-f7g4-5q46.json b/advisories/unreviewed/2022/05/GHSA-x3w4-f7g4-5q46/GHSA-x3w4-f7g4-5q46.json index 41d794217f1..df91c33ffe4 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3w4-f7g4-5q46/GHSA-x3w4-f7g4-5q46.json +++ b/advisories/unreviewed/2022/05/GHSA-x3w4-f7g4-5q46/GHSA-x3w4-f7g4-5q46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3x6-8hwq-3mg4/GHSA-x3x6-8hwq-3mg4.json b/advisories/unreviewed/2022/05/GHSA-x3x6-8hwq-3mg4/GHSA-x3x6-8hwq-3mg4.json index 922ada3379a..992c6ec205c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3x6-8hwq-3mg4/GHSA-x3x6-8hwq-3mg4.json +++ b/advisories/unreviewed/2022/05/GHSA-x3x6-8hwq-3mg4/GHSA-x3x6-8hwq-3mg4.json @@ -7,12 +7,8 @@ "CVE-2008-2920" ], "details": "admin/filemanager/ (aka the File Manager) in EZTechhelp EZCMS 1.2 and earlier does not require authentication, which allows remote attackers to create, modify, read, and delete files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x42g-qgc8-x79q/GHSA-x42g-qgc8-x79q.json b/advisories/unreviewed/2022/05/GHSA-x42g-qgc8-x79q/GHSA-x42g-qgc8-x79q.json index 02613679dfc..8658e7b43eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-x42g-qgc8-x79q/GHSA-x42g-qgc8-x79q.json +++ b/advisories/unreviewed/2022/05/GHSA-x42g-qgc8-x79q/GHSA-x42g-qgc8-x79q.json @@ -7,12 +7,8 @@ "CVE-2008-2820" ], "details": "Directory traversal vulnerability in lang/lang-system.php in Open Azimyt CMS 0.22 minimal and 0.21 stable allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x47p-5cqv-9c4w/GHSA-x47p-5cqv-9c4w.json b/advisories/unreviewed/2022/05/GHSA-x47p-5cqv-9c4w/GHSA-x47p-5cqv-9c4w.json index bc98a55fad2..b5125833bcc 100644 --- a/advisories/unreviewed/2022/05/GHSA-x47p-5cqv-9c4w/GHSA-x47p-5cqv-9c4w.json +++ b/advisories/unreviewed/2022/05/GHSA-x47p-5cqv-9c4w/GHSA-x47p-5cqv-9c4w.json @@ -7,12 +7,8 @@ "CVE-2008-2796" ], "details": "SQL injection vulnerability in index.php in FreeCMS 0.2 allows remote attackers to execute arbitrary SQL commands via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x5x8-54j8-pvh6/GHSA-x5x8-54j8-pvh6.json b/advisories/unreviewed/2022/05/GHSA-x5x8-54j8-pvh6/GHSA-x5x8-54j8-pvh6.json index 65f3711c828..33810a1ec9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5x8-54j8-pvh6/GHSA-x5x8-54j8-pvh6.json +++ b/advisories/unreviewed/2022/05/GHSA-x5x8-54j8-pvh6/GHSA-x5x8-54j8-pvh6.json @@ -7,12 +7,8 @@ "CVE-2008-3000" ], "details": "The Aggregation module 5.x before 5.x-4.4 for Drupal, when node access modules are used, does not properly implement access control, which allows remote attackers to bypass intended restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6rv-c4jg-frh2/GHSA-x6rv-c4jg-frh2.json b/advisories/unreviewed/2022/05/GHSA-x6rv-c4jg-frh2/GHSA-x6rv-c4jg-frh2.json index 8ba68a115e1..ae2535e35ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6rv-c4jg-frh2/GHSA-x6rv-c4jg-frh2.json +++ b/advisories/unreviewed/2022/05/GHSA-x6rv-c4jg-frh2/GHSA-x6rv-c4jg-frh2.json @@ -7,12 +7,8 @@ "CVE-2008-3150" ], "details": "Directory traversal vulnerability in index.php in Neutrino Atomic Edition 0.8.4 allows remote attackers to read and modify files, as demonstrated by manipulating data/sess.php in (1) usb and (2) del_pag actions. NOTE: this can be leveraged for code execution by performing an upload that bypasses the intended access restrictions that were implemented in sess.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x6xc-r9j4-hqp7/GHSA-x6xc-r9j4-hqp7.json b/advisories/unreviewed/2022/05/GHSA-x6xc-r9j4-hqp7/GHSA-x6xc-r9j4-hqp7.json index ba65f6a6c9c..d8c1f6580a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6xc-r9j4-hqp7/GHSA-x6xc-r9j4-hqp7.json +++ b/advisories/unreviewed/2022/05/GHSA-x6xc-r9j4-hqp7/GHSA-x6xc-r9j4-hqp7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7xc-gpw2-j5mw/GHSA-x7xc-gpw2-j5mw.json b/advisories/unreviewed/2022/05/GHSA-x7xc-gpw2-j5mw/GHSA-x7xc-gpw2-j5mw.json index d7a8702eb38..0645ff20187 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7xc-gpw2-j5mw/GHSA-x7xc-gpw2-j5mw.json +++ b/advisories/unreviewed/2022/05/GHSA-x7xc-gpw2-j5mw/GHSA-x7xc-gpw2-j5mw.json @@ -7,12 +7,8 @@ "CVE-2008-2994" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in PHPEasyData 1.5.4 allow remote attackers to inject arbitrary web script or HTML via the (1) annuaire parameter to (a) last_records.php and (b) annuaire.php and the (2) by and (3) cat_id parameters to annuaire.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x826-r76q-3v66/GHSA-x826-r76q-3v66.json b/advisories/unreviewed/2022/05/GHSA-x826-r76q-3v66/GHSA-x826-r76q-3v66.json index 240dea504f6..1ca86ffe3f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-x826-r76q-3v66/GHSA-x826-r76q-3v66.json +++ b/advisories/unreviewed/2022/05/GHSA-x826-r76q-3v66/GHSA-x826-r76q-3v66.json @@ -7,12 +7,8 @@ "CVE-2008-3147" ], "details": "WeFi 3.2.1.4.1, when diagnostic mode is enabled, stores (1) WEP, (2) WPA, and (3) WPA2 access-point keys in (a) ClientWeFiLog.dat, (b) ClientWeFiLog.bak, and possibly (c) a certain .inf file under %PROGRAMFILES%\\WeFi\\Users\\, and uses cleartext for the ClientWeFiLog files, which allows local users to obtain sensitive information by reading these files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8cq-94r7-3vvq/GHSA-x8cq-94r7-3vvq.json b/advisories/unreviewed/2022/05/GHSA-x8cq-94r7-3vvq/GHSA-x8cq-94r7-3vvq.json index b9c151a0152..2e94b99bf54 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8cq-94r7-3vvq/GHSA-x8cq-94r7-3vvq.json +++ b/advisories/unreviewed/2022/05/GHSA-x8cq-94r7-3vvq/GHSA-x8cq-94r7-3vvq.json @@ -7,12 +7,8 @@ "CVE-2008-2630" ], "details": "SQL injection vulnerability in the JooBlog (com_jb2) component 0.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter in a category action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8h2-3299-96fr/GHSA-x8h2-3299-96fr.json b/advisories/unreviewed/2022/05/GHSA-x8h2-3299-96fr/GHSA-x8h2-3299-96fr.json index d92e7a974d2..fe66f5d6811 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8h2-3299-96fr/GHSA-x8h2-3299-96fr.json +++ b/advisories/unreviewed/2022/05/GHSA-x8h2-3299-96fr/GHSA-x8h2-3299-96fr.json @@ -7,12 +7,8 @@ "CVE-2008-2798" ], "details": "Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via unknown vectors related to the layout engine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -236,9 +232,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8hv-5jw9-w467/GHSA-x8hv-5jw9-w467.json b/advisories/unreviewed/2022/05/GHSA-x8hv-5jw9-w467/GHSA-x8hv-5jw9-w467.json index 6a5b5c81a0c..ba0c2ba5211 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8hv-5jw9-w467/GHSA-x8hv-5jw9-w467.json +++ b/advisories/unreviewed/2022/05/GHSA-x8hv-5jw9-w467/GHSA-x8hv-5jw9-w467.json @@ -7,12 +7,8 @@ "CVE-2008-2991" ], "details": "Cross-site scripting (XSS) vulnerability in Adobe RoboHelp Server 6 and 7 allows remote attackers to inject arbitrary web script or HTML via vectors related to the Help Errors log.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xc9v-r8v4-3r62/GHSA-xc9v-r8v4-3r62.json b/advisories/unreviewed/2022/05/GHSA-xc9v-r8v4-3r62/GHSA-xc9v-r8v4-3r62.json index 137e813e7c1..0025196bfb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-xc9v-r8v4-3r62/GHSA-xc9v-r8v4-3r62.json +++ b/advisories/unreviewed/2022/05/GHSA-xc9v-r8v4-3r62/GHSA-xc9v-r8v4-3r62.json @@ -7,12 +7,8 @@ "CVE-2008-3030" ], "details": "SQL injection vulnerability in default.asp in EfesTECH Shop 2.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in an urunler action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xcxj-rfmv-wfv3/GHSA-xcxj-rfmv-wfv3.json b/advisories/unreviewed/2022/05/GHSA-xcxj-rfmv-wfv3/GHSA-xcxj-rfmv-wfv3.json index 95d0ad1f980..08ea4baac29 100644 --- a/advisories/unreviewed/2022/05/GHSA-xcxj-rfmv-wfv3/GHSA-xcxj-rfmv-wfv3.json +++ b/advisories/unreviewed/2022/05/GHSA-xcxj-rfmv-wfv3/GHSA-xcxj-rfmv-wfv3.json @@ -7,12 +7,8 @@ "CVE-2008-2863" ], "details": "Multiple absolute path traversal vulnerabilities in eLineStudio Site Composer (ESC) 2.6 allow remote attackers to create or delete arbitrary directories via a full pathname in the inpCurrFolder parameter to (1) folderdel_.asp or (2) foldernew.asp in cms/assetmanager/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xf2g-m4p8-7r3c/GHSA-xf2g-m4p8-7r3c.json b/advisories/unreviewed/2022/05/GHSA-xf2g-m4p8-7r3c/GHSA-xf2g-m4p8-7r3c.json index 11896a1eb04..8e9762cfa9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf2g-m4p8-7r3c/GHSA-xf2g-m4p8-7r3c.json +++ b/advisories/unreviewed/2022/05/GHSA-xf2g-m4p8-7r3c/GHSA-xf2g-m4p8-7r3c.json @@ -7,12 +7,8 @@ "CVE-2008-2807" ], "details": "Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly handle an invalid .properties file for an add-on, which allows remote attackers to read uninitialized memory, as demonstrated by use of ISO 8859 encoding instead of UTF-8 encoding in a French .properties file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xffw-v379-pm86/GHSA-xffw-v379-pm86.json b/advisories/unreviewed/2022/05/GHSA-xffw-v379-pm86/GHSA-xffw-v379-pm86.json index f572447b9e1..89bf0892ccb 100644 --- a/advisories/unreviewed/2022/05/GHSA-xffw-v379-pm86/GHSA-xffw-v379-pm86.json +++ b/advisories/unreviewed/2022/05/GHSA-xffw-v379-pm86/GHSA-xffw-v379-pm86.json @@ -7,12 +7,8 @@ "CVE-2008-2993" ], "details": "Multiple directory traversal vulnerabilities in index.php in FOG Forum 0.8.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) fog_lang and (2) fog_skin parameters, probably related to libs/required/share.inc; and possibly the (3) fog_pseudo, (4) fog_posted, (5) fog_password, and (6) fog_cook parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xfhg-32qj-f5r2/GHSA-xfhg-32qj-f5r2.json b/advisories/unreviewed/2022/05/GHSA-xfhg-32qj-f5r2/GHSA-xfhg-32qj-f5r2.json index 861746ef3f5..3270a3997b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfhg-32qj-f5r2/GHSA-xfhg-32qj-f5r2.json +++ b/advisories/unreviewed/2022/05/GHSA-xfhg-32qj-f5r2/GHSA-xfhg-32qj-f5r2.json @@ -7,12 +7,8 @@ "CVE-2008-3482" ], "details": "Cross-site scripting (XSS) vulnerability in the error page feature in Panasonic Network Camera BL-C111, BL-C131, BB-HCM511, BB-HCM531, BB-HCM580, BB-HCM581, BB-HCM527, and BB-HCM515 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xfq3-pwqj-rm62/GHSA-xfq3-pwqj-rm62.json b/advisories/unreviewed/2022/05/GHSA-xfq3-pwqj-rm62/GHSA-xfq3-pwqj-rm62.json index e51f08dacc1..7f5b5d7fd20 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfq3-pwqj-rm62/GHSA-xfq3-pwqj-rm62.json +++ b/advisories/unreviewed/2022/05/GHSA-xfq3-pwqj-rm62/GHSA-xfq3-pwqj-rm62.json @@ -7,12 +7,8 @@ "CVE-2008-2753" ], "details": "Multiple SQL injection vulnerabilities in Pooya Site Builder (PSB) 6.0 allow remote attackers to execute arbitrary SQL commands via the (1) xslIdn parameter to (a) utils/getXsl.aspx, and the (2) part parameter to (b) getXml.aspx and (c) getXls.aspx in utils/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg92-g8h7-v7r4/GHSA-xg92-g8h7-v7r4.json b/advisories/unreviewed/2022/05/GHSA-xg92-g8h7-v7r4/GHSA-xg92-g8h7-v7r4.json index 4e9ad435aad..83b43da26a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg92-g8h7-v7r4/GHSA-xg92-g8h7-v7r4.json +++ b/advisories/unreviewed/2022/05/GHSA-xg92-g8h7-v7r4/GHSA-xg92-g8h7-v7r4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xgf9-9fpj-mv3c/GHSA-xgf9-9fpj-mv3c.json b/advisories/unreviewed/2022/05/GHSA-xgf9-9fpj-mv3c/GHSA-xgf9-9fpj-mv3c.json index 20e01c84023..f33ea9ce96d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgf9-9fpj-mv3c/GHSA-xgf9-9fpj-mv3c.json +++ b/advisories/unreviewed/2022/05/GHSA-xgf9-9fpj-mv3c/GHSA-xgf9-9fpj-mv3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj96-hvw8-2mj2/GHSA-xj96-hvw8-2mj2.json b/advisories/unreviewed/2022/05/GHSA-xj96-hvw8-2mj2/GHSA-xj96-hvw8-2mj2.json index 8bea0dddb24..83caeb5d340 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj96-hvw8-2mj2/GHSA-xj96-hvw8-2mj2.json +++ b/advisories/unreviewed/2022/05/GHSA-xj96-hvw8-2mj2/GHSA-xj96-hvw8-2mj2.json @@ -7,12 +7,8 @@ "CVE-2008-2604" ], "details": "Unspecified vulnerability in the Authentication component in Oracle Database 11.1.0.6 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2605.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xm75-gvqm-4ffq/GHSA-xm75-gvqm-4ffq.json b/advisories/unreviewed/2022/05/GHSA-xm75-gvqm-4ffq/GHSA-xm75-gvqm-4ffq.json index 48e39eb3520..79ab13430fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm75-gvqm-4ffq/GHSA-xm75-gvqm-4ffq.json +++ b/advisories/unreviewed/2022/05/GHSA-xm75-gvqm-4ffq/GHSA-xm75-gvqm-4ffq.json @@ -7,12 +7,8 @@ "CVE-2008-3098" ], "details": "Cross-site scripting (XSS) vulnerability in admin/usercheck.php in fuzzylime (cms) before 3.03 allows remote attackers to inject arbitrary web script or HTML via the user parameter to the login form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm9f-gqc6-828p/GHSA-xm9f-gqc6-828p.json b/advisories/unreviewed/2022/05/GHSA-xm9f-gqc6-828p/GHSA-xm9f-gqc6-828p.json index 4759d6981ea..46d6fb8843f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm9f-gqc6-828p/GHSA-xm9f-gqc6-828p.json +++ b/advisories/unreviewed/2022/05/GHSA-xm9f-gqc6-828p/GHSA-xm9f-gqc6-828p.json @@ -7,12 +7,8 @@ "CVE-2008-2869" ], "details": "SQL injection vulnerability in out.php in E-topbiz Link ADS 1 allows remote attackers to execute arbitrary SQL commands via the linkid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xmqp-rfcw-jxfj/GHSA-xmqp-rfcw-jxfj.json b/advisories/unreviewed/2022/05/GHSA-xmqp-rfcw-jxfj/GHSA-xmqp-rfcw-jxfj.json index 6e11e661ee6..fcf007f87f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmqp-rfcw-jxfj/GHSA-xmqp-rfcw-jxfj.json +++ b/advisories/unreviewed/2022/05/GHSA-xmqp-rfcw-jxfj/GHSA-xmqp-rfcw-jxfj.json @@ -7,12 +7,8 @@ "CVE-2008-2695" ], "details": "Directory traversal vulnerability in entry.php in phpInv 0.8.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the action parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xp6f-58mg-33c6/GHSA-xp6f-58mg-33c6.json b/advisories/unreviewed/2022/05/GHSA-xp6f-58mg-33c6/GHSA-xp6f-58mg-33c6.json index 304b7f10b09..6a85b11f386 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp6f-58mg-33c6/GHSA-xp6f-58mg-33c6.json +++ b/advisories/unreviewed/2022/05/GHSA-xp6f-58mg-33c6/GHSA-xp6f-58mg-33c6.json @@ -7,12 +7,8 @@ "CVE-2008-2701" ], "details": "SQL injection vulnerability in the GameQ (com_gameq) component 4.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a page action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xp84-wmvr-25h3/GHSA-xp84-wmvr-25h3.json b/advisories/unreviewed/2022/05/GHSA-xp84-wmvr-25h3/GHSA-xp84-wmvr-25h3.json index 4ff229dbc3e..6a482a0d374 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp84-wmvr-25h3/GHSA-xp84-wmvr-25h3.json +++ b/advisories/unreviewed/2022/05/GHSA-xp84-wmvr-25h3/GHSA-xp84-wmvr-25h3.json @@ -7,12 +7,8 @@ "CVE-2008-2840" ], "details": "Multiple directory traversal vulnerabilities in Exero CMS 1.0.0 and 1.0.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter to (1) custompage.php, (2) errors/404.php, (3) members/memberslist.php, (4) members/profile.php, (5) news/fullview.php, (6) news/index.php, (7) nopermission.php, (8) usercp/avatar.php, or (9) usercp/editpassword.php in themes/Default/. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xphg-6xr4-x7rp/GHSA-xphg-6xr4-x7rp.json b/advisories/unreviewed/2022/05/GHSA-xphg-6xr4-x7rp/GHSA-xphg-6xr4-x7rp.json index ce6d7898b75..8453a7f626d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xphg-6xr4-x7rp/GHSA-xphg-6xr4-x7rp.json +++ b/advisories/unreviewed/2022/05/GHSA-xphg-6xr4-x7rp/GHSA-xphg-6xr4-x7rp.json @@ -7,12 +7,8 @@ "CVE-2008-3046" ], "details": "Incomplete blacklist vulnerability in the Packman (kb_packman) extension 0.2.1 and earlier for TYPO3 has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xpj8-hw7p-pxp2/GHSA-xpj8-hw7p-pxp2.json b/advisories/unreviewed/2022/05/GHSA-xpj8-hw7p-pxp2/GHSA-xpj8-hw7p-pxp2.json index 2e67059db0c..2e1ea0cdd9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpj8-hw7p-pxp2/GHSA-xpj8-hw7p-pxp2.json +++ b/advisories/unreviewed/2022/05/GHSA-xpj8-hw7p-pxp2/GHSA-xpj8-hw7p-pxp2.json @@ -7,12 +7,8 @@ "CVE-2008-3049" ], "details": "The PDF Generator 2 (pdf_generator2) extension 0.5.0 and earlier for TYPO3 allows attackers to obtain sensitive information via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xpvc-gvmh-mpmj/GHSA-xpvc-gvmh-mpmj.json b/advisories/unreviewed/2022/05/GHSA-xpvc-gvmh-mpmj/GHSA-xpvc-gvmh-mpmj.json index bf77b50b5ce..ab607299271 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpvc-gvmh-mpmj/GHSA-xpvc-gvmh-mpmj.json +++ b/advisories/unreviewed/2022/05/GHSA-xpvc-gvmh-mpmj/GHSA-xpvc-gvmh-mpmj.json @@ -7,12 +7,8 @@ "CVE-2008-2794" ], "details": "Unspecified vulnerability in the GUI in Symantec Altiris Notification Server Agent 6.x before 6.0 SP3 R8 allows local users to gain privileges via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xr7f-4hm8-fh72/GHSA-xr7f-4hm8-fh72.json b/advisories/unreviewed/2022/05/GHSA-xr7f-4hm8-fh72/GHSA-xr7f-4hm8-fh72.json index d2a1f22dcda..7fefcd12fdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr7f-4hm8-fh72/GHSA-xr7f-4hm8-fh72.json +++ b/advisories/unreviewed/2022/05/GHSA-xr7f-4hm8-fh72/GHSA-xr7f-4hm8-fh72.json @@ -7,12 +7,8 @@ "CVE-2008-2700" ], "details": "SQL injection vulnerability in view.php in Galatolo WebManager 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xv88-33jr-r66f/GHSA-xv88-33jr-r66f.json b/advisories/unreviewed/2022/05/GHSA-xv88-33jr-r66f/GHSA-xv88-33jr-r66f.json index 7cc67d737bd..bf0a15fb49e 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv88-33jr-r66f/GHSA-xv88-33jr-r66f.json +++ b/advisories/unreviewed/2022/05/GHSA-xv88-33jr-r66f/GHSA-xv88-33jr-r66f.json @@ -7,12 +7,8 @@ "CVE-2008-3013" ], "details": "gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint Viewer 2003, Works 8, Digital Image Suite 2006, SQL Server 2000 Reporting Services SP2, SQL Server 2005 SP2, Report Viewer 2005 SP1 and 2008, and Forefront Client Security 1.0 allows remote attackers to execute arbitrary code via a malformed GIF image file containing many extension markers for graphic control extensions and subsequent unknown labels, aka \"GDI+ GIF Parsing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvh8-gxxm-2h9g/GHSA-xvh8-gxxm-2h9g.json b/advisories/unreviewed/2022/05/GHSA-xvh8-gxxm-2h9g/GHSA-xvh8-gxxm-2h9g.json index f720324f917..9bcd33530ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvh8-gxxm-2h9g/GHSA-xvh8-gxxm-2h9g.json +++ b/advisories/unreviewed/2022/05/GHSA-xvh8-gxxm-2h9g/GHSA-xvh8-gxxm-2h9g.json @@ -7,12 +7,8 @@ "CVE-2008-2925" ], "details": "SQL injection vulnerability in Webmatic before 2.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvpp-959v-c63p/GHSA-xvpp-959v-c63p.json b/advisories/unreviewed/2022/05/GHSA-xvpp-959v-c63p/GHSA-xvpp-959v-c63p.json index 887f40a5767..392bda551d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvpp-959v-c63p/GHSA-xvpp-959v-c63p.json +++ b/advisories/unreviewed/2022/05/GHSA-xvpp-959v-c63p/GHSA-xvpp-959v-c63p.json @@ -7,12 +7,8 @@ "CVE-2008-3158" ], "details": "Unspecified vulnerability in NWFS.SYS in Novell Client for Windows 4.91 SP4 has unknown impact and attack vectors, possibly related to IOCTL requests that overwrite arbitrary memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xwpx-jmv4-36rg/GHSA-xwpx-jmv4-36rg.json b/advisories/unreviewed/2022/05/GHSA-xwpx-jmv4-36rg/GHSA-xwpx-jmv4-36rg.json index 331b50d32e3..f6db9e71b2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwpx-jmv4-36rg/GHSA-xwpx-jmv4-36rg.json +++ b/advisories/unreviewed/2022/05/GHSA-xwpx-jmv4-36rg/GHSA-xwpx-jmv4-36rg.json @@ -7,12 +7,8 @@ "CVE-2008-2611" ], "details": "Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.6 has unknown impact and remote authenticated attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxcm-x786-q6gg/GHSA-xxcm-x786-q6gg.json b/advisories/unreviewed/2022/05/GHSA-xxcm-x786-q6gg/GHSA-xxcm-x786-q6gg.json index 7e55f1b68ec..432a4a1af9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxcm-x786-q6gg/GHSA-xxcm-x786-q6gg.json +++ b/advisories/unreviewed/2022/05/GHSA-xxcm-x786-q6gg/GHSA-xxcm-x786-q6gg.json @@ -7,12 +7,8 @@ "CVE-2008-3115" ], "details": "Secure Static Versioning in Sun Java JDK and JRE 6 Update 6 and earlier, and 5.0 Update 6 through 15, does not properly prevent execution of applets on older JRE releases, which might allow remote attackers to exploit vulnerabilities in these older releases.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxm4-8498-pwrr/GHSA-xxm4-8498-pwrr.json b/advisories/unreviewed/2022/05/GHSA-xxm4-8498-pwrr/GHSA-xxm4-8498-pwrr.json index 1600c1e79e3..35156c1ca2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxm4-8498-pwrr/GHSA-xxm4-8498-pwrr.json +++ b/advisories/unreviewed/2022/05/GHSA-xxm4-8498-pwrr/GHSA-xxm4-8498-pwrr.json @@ -7,12 +7,8 @@ "CVE-2008-2670" ], "details": "Multiple SQL injection vulnerabilities in index.php in Insanely Simple Blog 0.5 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter, or (2) the term parameter in a search action. NOTE: the current_subsection parameter is already covered by CVE-2007-3889.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xxp7-f9hw-8j74/GHSA-xxp7-f9hw-8j74.json b/advisories/unreviewed/2022/05/GHSA-xxp7-f9hw-8j74/GHSA-xxp7-f9hw-8j74.json index b2597784ee0..6a8a6be40a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxp7-f9hw-8j74/GHSA-xxp7-f9hw-8j74.json +++ b/advisories/unreviewed/2022/05/GHSA-xxp7-f9hw-8j74/GHSA-xxp7-f9hw-8j74.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-789c-4pgv-92rh/GHSA-789c-4pgv-92rh.json b/advisories/unreviewed/2022/08/GHSA-789c-4pgv-92rh/GHSA-789c-4pgv-92rh.json index 3d79279754f..8dd909eb581 100644 --- a/advisories/unreviewed/2022/08/GHSA-789c-4pgv-92rh/GHSA-789c-4pgv-92rh.json +++ b/advisories/unreviewed/2022/08/GHSA-789c-4pgv-92rh/GHSA-789c-4pgv-92rh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-7j8w-jqvj-386m/GHSA-7j8w-jqvj-386m.json b/advisories/unreviewed/2022/08/GHSA-7j8w-jqvj-386m/GHSA-7j8w-jqvj-386m.json index 53cc00a5b9f..130d9dce97b 100644 --- a/advisories/unreviewed/2022/08/GHSA-7j8w-jqvj-386m/GHSA-7j8w-jqvj-386m.json +++ b/advisories/unreviewed/2022/08/GHSA-7j8w-jqvj-386m/GHSA-7j8w-jqvj-386m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-fp9w-4hqx-5jxj/GHSA-fp9w-4hqx-5jxj.json b/advisories/unreviewed/2022/08/GHSA-fp9w-4hqx-5jxj/GHSA-fp9w-4hqx-5jxj.json index 74d80f9a7e8..aca0f9dace8 100644 --- a/advisories/unreviewed/2022/08/GHSA-fp9w-4hqx-5jxj/GHSA-fp9w-4hqx-5jxj.json +++ b/advisories/unreviewed/2022/08/GHSA-fp9w-4hqx-5jxj/GHSA-fp9w-4hqx-5jxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wx26-9fw6-5vr5/GHSA-wx26-9fw6-5vr5.json b/advisories/unreviewed/2022/08/GHSA-wx26-9fw6-5vr5/GHSA-wx26-9fw6-5vr5.json index 79d5c00ced7..1b7cf72e8ee 100644 --- a/advisories/unreviewed/2022/08/GHSA-wx26-9fw6-5vr5/GHSA-wx26-9fw6-5vr5.json +++ b/advisories/unreviewed/2022/08/GHSA-wx26-9fw6-5vr5/GHSA-wx26-9fw6-5vr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-v7hc-jc7g-98g9/GHSA-v7hc-jc7g-98g9.json b/advisories/unreviewed/2022/09/GHSA-v7hc-jc7g-98g9/GHSA-v7hc-jc7g-98g9.json index 6a3bdbec43f..027f88a201d 100644 --- a/advisories/unreviewed/2022/09/GHSA-v7hc-jc7g-98g9/GHSA-v7hc-jc7g-98g9.json +++ b/advisories/unreviewed/2022/09/GHSA-v7hc-jc7g-98g9/GHSA-v7hc-jc7g-98g9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-6p9q-3fp4-ff53/GHSA-6p9q-3fp4-ff53.json b/advisories/unreviewed/2022/10/GHSA-6p9q-3fp4-ff53/GHSA-6p9q-3fp4-ff53.json index bf45d45954d..58fae3d504f 100644 --- a/advisories/unreviewed/2022/10/GHSA-6p9q-3fp4-ff53/GHSA-6p9q-3fp4-ff53.json +++ b/advisories/unreviewed/2022/10/GHSA-6p9q-3fp4-ff53/GHSA-6p9q-3fp4-ff53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-7h2h-qrhm-554p/GHSA-7h2h-qrhm-554p.json b/advisories/unreviewed/2022/10/GHSA-7h2h-qrhm-554p/GHSA-7h2h-qrhm-554p.json index 2fbd9f191fa..480b5ec58b1 100644 --- a/advisories/unreviewed/2022/10/GHSA-7h2h-qrhm-554p/GHSA-7h2h-qrhm-554p.json +++ b/advisories/unreviewed/2022/10/GHSA-7h2h-qrhm-554p/GHSA-7h2h-qrhm-554p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-8whj-56g5-vq26/GHSA-8whj-56g5-vq26.json b/advisories/unreviewed/2022/10/GHSA-8whj-56g5-vq26/GHSA-8whj-56g5-vq26.json index a496fb0d7da..94bbcf453e4 100644 --- a/advisories/unreviewed/2022/10/GHSA-8whj-56g5-vq26/GHSA-8whj-56g5-vq26.json +++ b/advisories/unreviewed/2022/10/GHSA-8whj-56g5-vq26/GHSA-8whj-56g5-vq26.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-fq9q-qcfp-qgp2/GHSA-fq9q-qcfp-qgp2.json b/advisories/unreviewed/2022/10/GHSA-fq9q-qcfp-qgp2/GHSA-fq9q-qcfp-qgp2.json index d4e5dd051ce..b228fced383 100644 --- a/advisories/unreviewed/2022/10/GHSA-fq9q-qcfp-qgp2/GHSA-fq9q-qcfp-qgp2.json +++ b/advisories/unreviewed/2022/10/GHSA-fq9q-qcfp-qgp2/GHSA-fq9q-qcfp-qgp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-x27x-7595-v3m5/GHSA-x27x-7595-v3m5.json b/advisories/unreviewed/2022/10/GHSA-x27x-7595-v3m5/GHSA-x27x-7595-v3m5.json index 8cd23402c5c..a05a04f6f3c 100644 --- a/advisories/unreviewed/2022/10/GHSA-x27x-7595-v3m5/GHSA-x27x-7595-v3m5.json +++ b/advisories/unreviewed/2022/10/GHSA-x27x-7595-v3m5/GHSA-x27x-7595-v3m5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-2227-8m6h-q7c2/GHSA-2227-8m6h-q7c2.json b/advisories/unreviewed/2022/11/GHSA-2227-8m6h-q7c2/GHSA-2227-8m6h-q7c2.json index 0c50ea06016..a07631e7e9c 100644 --- a/advisories/unreviewed/2022/11/GHSA-2227-8m6h-q7c2/GHSA-2227-8m6h-q7c2.json +++ b/advisories/unreviewed/2022/11/GHSA-2227-8m6h-q7c2/GHSA-2227-8m6h-q7c2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-2rxc-97gh-gwr2/GHSA-2rxc-97gh-gwr2.json b/advisories/unreviewed/2022/11/GHSA-2rxc-97gh-gwr2/GHSA-2rxc-97gh-gwr2.json index 22ebbda8b91..f209c00439b 100644 --- a/advisories/unreviewed/2022/11/GHSA-2rxc-97gh-gwr2/GHSA-2rxc-97gh-gwr2.json +++ b/advisories/unreviewed/2022/11/GHSA-2rxc-97gh-gwr2/GHSA-2rxc-97gh-gwr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-3j83-m58c-vrr9/GHSA-3j83-m58c-vrr9.json b/advisories/unreviewed/2022/11/GHSA-3j83-m58c-vrr9/GHSA-3j83-m58c-vrr9.json index 18a0a47b06f..1b8c359b9d8 100644 --- a/advisories/unreviewed/2022/11/GHSA-3j83-m58c-vrr9/GHSA-3j83-m58c-vrr9.json +++ b/advisories/unreviewed/2022/11/GHSA-3j83-m58c-vrr9/GHSA-3j83-m58c-vrr9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-42mr-8vj5-9j9x/GHSA-42mr-8vj5-9j9x.json b/advisories/unreviewed/2022/11/GHSA-42mr-8vj5-9j9x/GHSA-42mr-8vj5-9j9x.json index 6864644b0c3..dc030684531 100644 --- a/advisories/unreviewed/2022/11/GHSA-42mr-8vj5-9j9x/GHSA-42mr-8vj5-9j9x.json +++ b/advisories/unreviewed/2022/11/GHSA-42mr-8vj5-9j9x/GHSA-42mr-8vj5-9j9x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-54hj-fg79-qhg7/GHSA-54hj-fg79-qhg7.json b/advisories/unreviewed/2022/11/GHSA-54hj-fg79-qhg7/GHSA-54hj-fg79-qhg7.json index 93a5a0f8170..03fe30b3b1b 100644 --- a/advisories/unreviewed/2022/11/GHSA-54hj-fg79-qhg7/GHSA-54hj-fg79-qhg7.json +++ b/advisories/unreviewed/2022/11/GHSA-54hj-fg79-qhg7/GHSA-54hj-fg79-qhg7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-5529-988r-7c93/GHSA-5529-988r-7c93.json b/advisories/unreviewed/2022/11/GHSA-5529-988r-7c93/GHSA-5529-988r-7c93.json index f529a0371b1..5e02fc544b2 100644 --- a/advisories/unreviewed/2022/11/GHSA-5529-988r-7c93/GHSA-5529-988r-7c93.json +++ b/advisories/unreviewed/2022/11/GHSA-5529-988r-7c93/GHSA-5529-988r-7c93.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-55r5-94v7-868j/GHSA-55r5-94v7-868j.json b/advisories/unreviewed/2022/11/GHSA-55r5-94v7-868j/GHSA-55r5-94v7-868j.json index edef26f9130..3ab2314fc5b 100644 --- a/advisories/unreviewed/2022/11/GHSA-55r5-94v7-868j/GHSA-55r5-94v7-868j.json +++ b/advisories/unreviewed/2022/11/GHSA-55r5-94v7-868j/GHSA-55r5-94v7-868j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-5m2g-whv8-xj9q/GHSA-5m2g-whv8-xj9q.json b/advisories/unreviewed/2022/11/GHSA-5m2g-whv8-xj9q/GHSA-5m2g-whv8-xj9q.json index 1df5026c4af..b53565b7497 100644 --- a/advisories/unreviewed/2022/11/GHSA-5m2g-whv8-xj9q/GHSA-5m2g-whv8-xj9q.json +++ b/advisories/unreviewed/2022/11/GHSA-5m2g-whv8-xj9q/GHSA-5m2g-whv8-xj9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-76hh-c32p-qpf2/GHSA-76hh-c32p-qpf2.json b/advisories/unreviewed/2022/11/GHSA-76hh-c32p-qpf2/GHSA-76hh-c32p-qpf2.json index 012cb1f8ab6..801b8403240 100644 --- a/advisories/unreviewed/2022/11/GHSA-76hh-c32p-qpf2/GHSA-76hh-c32p-qpf2.json +++ b/advisories/unreviewed/2022/11/GHSA-76hh-c32p-qpf2/GHSA-76hh-c32p-qpf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-978q-8v4p-796v/GHSA-978q-8v4p-796v.json b/advisories/unreviewed/2022/11/GHSA-978q-8v4p-796v/GHSA-978q-8v4p-796v.json index 641b50f2521..8f52a4b2fdd 100644 --- a/advisories/unreviewed/2022/11/GHSA-978q-8v4p-796v/GHSA-978q-8v4p-796v.json +++ b/advisories/unreviewed/2022/11/GHSA-978q-8v4p-796v/GHSA-978q-8v4p-796v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fh27-97r5-49gq/GHSA-fh27-97r5-49gq.json b/advisories/unreviewed/2022/11/GHSA-fh27-97r5-49gq/GHSA-fh27-97r5-49gq.json index 5f9dfe9f2a1..db6a0523e80 100644 --- a/advisories/unreviewed/2022/11/GHSA-fh27-97r5-49gq/GHSA-fh27-97r5-49gq.json +++ b/advisories/unreviewed/2022/11/GHSA-fh27-97r5-49gq/GHSA-fh27-97r5-49gq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fv7q-rvfh-pg5h/GHSA-fv7q-rvfh-pg5h.json b/advisories/unreviewed/2022/11/GHSA-fv7q-rvfh-pg5h/GHSA-fv7q-rvfh-pg5h.json index 098829facd8..bd9ccc595a1 100644 --- a/advisories/unreviewed/2022/11/GHSA-fv7q-rvfh-pg5h/GHSA-fv7q-rvfh-pg5h.json +++ b/advisories/unreviewed/2022/11/GHSA-fv7q-rvfh-pg5h/GHSA-fv7q-rvfh-pg5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fvjh-rh68-qmhg/GHSA-fvjh-rh68-qmhg.json b/advisories/unreviewed/2022/11/GHSA-fvjh-rh68-qmhg/GHSA-fvjh-rh68-qmhg.json index 56e8f5dd444..5611ebf7cc3 100644 --- a/advisories/unreviewed/2022/11/GHSA-fvjh-rh68-qmhg/GHSA-fvjh-rh68-qmhg.json +++ b/advisories/unreviewed/2022/11/GHSA-fvjh-rh68-qmhg/GHSA-fvjh-rh68-qmhg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-gmj6-42q6-cwrf/GHSA-gmj6-42q6-cwrf.json b/advisories/unreviewed/2022/11/GHSA-gmj6-42q6-cwrf/GHSA-gmj6-42q6-cwrf.json index dcade0475b7..9f7222dd0a2 100644 --- a/advisories/unreviewed/2022/11/GHSA-gmj6-42q6-cwrf/GHSA-gmj6-42q6-cwrf.json +++ b/advisories/unreviewed/2022/11/GHSA-gmj6-42q6-cwrf/GHSA-gmj6-42q6-cwrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-m496-649x-hgmr/GHSA-m496-649x-hgmr.json b/advisories/unreviewed/2022/11/GHSA-m496-649x-hgmr/GHSA-m496-649x-hgmr.json index cf66d03a2f4..5f3d17ad01b 100644 --- a/advisories/unreviewed/2022/11/GHSA-m496-649x-hgmr/GHSA-m496-649x-hgmr.json +++ b/advisories/unreviewed/2022/11/GHSA-m496-649x-hgmr/GHSA-m496-649x-hgmr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-mhv9-pjh5-g3cf/GHSA-mhv9-pjh5-g3cf.json b/advisories/unreviewed/2022/11/GHSA-mhv9-pjh5-g3cf/GHSA-mhv9-pjh5-g3cf.json index 950667e5c31..0ee671a60a8 100644 --- a/advisories/unreviewed/2022/11/GHSA-mhv9-pjh5-g3cf/GHSA-mhv9-pjh5-g3cf.json +++ b/advisories/unreviewed/2022/11/GHSA-mhv9-pjh5-g3cf/GHSA-mhv9-pjh5-g3cf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-q4r3-rj3j-6c93/GHSA-q4r3-rj3j-6c93.json b/advisories/unreviewed/2022/11/GHSA-q4r3-rj3j-6c93/GHSA-q4r3-rj3j-6c93.json index c12a84a4860..b15fb6380a3 100644 --- a/advisories/unreviewed/2022/11/GHSA-q4r3-rj3j-6c93/GHSA-q4r3-rj3j-6c93.json +++ b/advisories/unreviewed/2022/11/GHSA-q4r3-rj3j-6c93/GHSA-q4r3-rj3j-6c93.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-489f-78mr-mq29/GHSA-489f-78mr-mq29.json b/advisories/unreviewed/2023/01/GHSA-489f-78mr-mq29/GHSA-489f-78mr-mq29.json index 2dfacabac0a..c0d80b54dbd 100644 --- a/advisories/unreviewed/2023/01/GHSA-489f-78mr-mq29/GHSA-489f-78mr-mq29.json +++ b/advisories/unreviewed/2023/01/GHSA-489f-78mr-mq29/GHSA-489f-78mr-mq29.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-8h8q-pcwj-rx99/GHSA-8h8q-pcwj-rx99.json b/advisories/unreviewed/2023/01/GHSA-8h8q-pcwj-rx99/GHSA-8h8q-pcwj-rx99.json index b1bac134429..432a88b9296 100644 --- a/advisories/unreviewed/2023/01/GHSA-8h8q-pcwj-rx99/GHSA-8h8q-pcwj-rx99.json +++ b/advisories/unreviewed/2023/01/GHSA-8h8q-pcwj-rx99/GHSA-8h8q-pcwj-rx99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cm4x-r333-vvv9/GHSA-cm4x-r333-vvv9.json b/advisories/unreviewed/2023/01/GHSA-cm4x-r333-vvv9/GHSA-cm4x-r333-vvv9.json index e0c21ad7dd0..bbfa6b2d09e 100644 --- a/advisories/unreviewed/2023/01/GHSA-cm4x-r333-vvv9/GHSA-cm4x-r333-vvv9.json +++ b/advisories/unreviewed/2023/01/GHSA-cm4x-r333-vvv9/GHSA-cm4x-r333-vvv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-g5qg-593p-j5gq/GHSA-g5qg-593p-j5gq.json b/advisories/unreviewed/2023/01/GHSA-g5qg-593p-j5gq/GHSA-g5qg-593p-j5gq.json index 5f7e67e2477..25bfa18c38b 100644 --- a/advisories/unreviewed/2023/01/GHSA-g5qg-593p-j5gq/GHSA-g5qg-593p-j5gq.json +++ b/advisories/unreviewed/2023/01/GHSA-g5qg-593p-j5gq/GHSA-g5qg-593p-j5gq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-rj78-2fm5-wrfp/GHSA-rj78-2fm5-wrfp.json b/advisories/unreviewed/2023/01/GHSA-rj78-2fm5-wrfp/GHSA-rj78-2fm5-wrfp.json index 00b8a52bfe6..f256d1b133d 100644 --- a/advisories/unreviewed/2023/01/GHSA-rj78-2fm5-wrfp/GHSA-rj78-2fm5-wrfp.json +++ b/advisories/unreviewed/2023/01/GHSA-rj78-2fm5-wrfp/GHSA-rj78-2fm5-wrfp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-rwwv-hvjg-wcrp/GHSA-rwwv-hvjg-wcrp.json b/advisories/unreviewed/2023/01/GHSA-rwwv-hvjg-wcrp/GHSA-rwwv-hvjg-wcrp.json index 143518d0e8f..ccccccdcc1a 100644 --- a/advisories/unreviewed/2023/01/GHSA-rwwv-hvjg-wcrp/GHSA-rwwv-hvjg-wcrp.json +++ b/advisories/unreviewed/2023/01/GHSA-rwwv-hvjg-wcrp/GHSA-rwwv-hvjg-wcrp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-vfm9-f37f-c9j3/GHSA-vfm9-f37f-c9j3.json b/advisories/unreviewed/2023/01/GHSA-vfm9-f37f-c9j3/GHSA-vfm9-f37f-c9j3.json index fc477b68394..5adbee87cee 100644 --- a/advisories/unreviewed/2023/01/GHSA-vfm9-f37f-c9j3/GHSA-vfm9-f37f-c9j3.json +++ b/advisories/unreviewed/2023/01/GHSA-vfm9-f37f-c9j3/GHSA-vfm9-f37f-c9j3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-wp84-qf9p-3vp8/GHSA-wp84-qf9p-3vp8.json b/advisories/unreviewed/2023/01/GHSA-wp84-qf9p-3vp8/GHSA-wp84-qf9p-3vp8.json index dbac4a82a14..99f28804acc 100644 --- a/advisories/unreviewed/2023/01/GHSA-wp84-qf9p-3vp8/GHSA-wp84-qf9p-3vp8.json +++ b/advisories/unreviewed/2023/01/GHSA-wp84-qf9p-3vp8/GHSA-wp84-qf9p-3vp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-xfq3-69mc-84pr/GHSA-xfq3-69mc-84pr.json b/advisories/unreviewed/2023/01/GHSA-xfq3-69mc-84pr/GHSA-xfq3-69mc-84pr.json index 536fbc63bde..587cc9bb4a2 100644 --- a/advisories/unreviewed/2023/01/GHSA-xfq3-69mc-84pr/GHSA-xfq3-69mc-84pr.json +++ b/advisories/unreviewed/2023/01/GHSA-xfq3-69mc-84pr/GHSA-xfq3-69mc-84pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-27g3-qf2q-r4wm/GHSA-27g3-qf2q-r4wm.json b/advisories/unreviewed/2023/02/GHSA-27g3-qf2q-r4wm/GHSA-27g3-qf2q-r4wm.json index 0120343d947..6d32ae78405 100644 --- a/advisories/unreviewed/2023/02/GHSA-27g3-qf2q-r4wm/GHSA-27g3-qf2q-r4wm.json +++ b/advisories/unreviewed/2023/02/GHSA-27g3-qf2q-r4wm/GHSA-27g3-qf2q-r4wm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-2hfg-hghr-46wq/GHSA-2hfg-hghr-46wq.json b/advisories/unreviewed/2023/02/GHSA-2hfg-hghr-46wq/GHSA-2hfg-hghr-46wq.json index 8fe57af0e6b..dc2353cc1a6 100644 --- a/advisories/unreviewed/2023/02/GHSA-2hfg-hghr-46wq/GHSA-2hfg-hghr-46wq.json +++ b/advisories/unreviewed/2023/02/GHSA-2hfg-hghr-46wq/GHSA-2hfg-hghr-46wq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-2w6h-738h-38w6/GHSA-2w6h-738h-38w6.json b/advisories/unreviewed/2023/02/GHSA-2w6h-738h-38w6/GHSA-2w6h-738h-38w6.json index 9e6dc5b4d3a..e76a03aa6ca 100644 --- a/advisories/unreviewed/2023/02/GHSA-2w6h-738h-38w6/GHSA-2w6h-738h-38w6.json +++ b/advisories/unreviewed/2023/02/GHSA-2w6h-738h-38w6/GHSA-2w6h-738h-38w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-3jp8-9qj5-8cv3/GHSA-3jp8-9qj5-8cv3.json b/advisories/unreviewed/2023/02/GHSA-3jp8-9qj5-8cv3/GHSA-3jp8-9qj5-8cv3.json index b70615b5d53..f841848b067 100644 --- a/advisories/unreviewed/2023/02/GHSA-3jp8-9qj5-8cv3/GHSA-3jp8-9qj5-8cv3.json +++ b/advisories/unreviewed/2023/02/GHSA-3jp8-9qj5-8cv3/GHSA-3jp8-9qj5-8cv3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-3wcx-w5qh-8gcx/GHSA-3wcx-w5qh-8gcx.json b/advisories/unreviewed/2023/02/GHSA-3wcx-w5qh-8gcx/GHSA-3wcx-w5qh-8gcx.json index 7028071e273..03fa91d14fd 100644 --- a/advisories/unreviewed/2023/02/GHSA-3wcx-w5qh-8gcx/GHSA-3wcx-w5qh-8gcx.json +++ b/advisories/unreviewed/2023/02/GHSA-3wcx-w5qh-8gcx/GHSA-3wcx-w5qh-8gcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-4h4v-hcr3-cjc9/GHSA-4h4v-hcr3-cjc9.json b/advisories/unreviewed/2023/02/GHSA-4h4v-hcr3-cjc9/GHSA-4h4v-hcr3-cjc9.json index 7f9f2d055ae..9820d8498cd 100644 --- a/advisories/unreviewed/2023/02/GHSA-4h4v-hcr3-cjc9/GHSA-4h4v-hcr3-cjc9.json +++ b/advisories/unreviewed/2023/02/GHSA-4h4v-hcr3-cjc9/GHSA-4h4v-hcr3-cjc9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-4pv9-28wr-pgch/GHSA-4pv9-28wr-pgch.json b/advisories/unreviewed/2023/02/GHSA-4pv9-28wr-pgch/GHSA-4pv9-28wr-pgch.json index a44557591e7..2cb42881edc 100644 --- a/advisories/unreviewed/2023/02/GHSA-4pv9-28wr-pgch/GHSA-4pv9-28wr-pgch.json +++ b/advisories/unreviewed/2023/02/GHSA-4pv9-28wr-pgch/GHSA-4pv9-28wr-pgch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-5j52-cw8c-xpw2/GHSA-5j52-cw8c-xpw2.json b/advisories/unreviewed/2023/02/GHSA-5j52-cw8c-xpw2/GHSA-5j52-cw8c-xpw2.json index ec7b99d5f3e..c2fab3e3147 100644 --- a/advisories/unreviewed/2023/02/GHSA-5j52-cw8c-xpw2/GHSA-5j52-cw8c-xpw2.json +++ b/advisories/unreviewed/2023/02/GHSA-5j52-cw8c-xpw2/GHSA-5j52-cw8c-xpw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-5qqc-77m4-694h/GHSA-5qqc-77m4-694h.json b/advisories/unreviewed/2023/02/GHSA-5qqc-77m4-694h/GHSA-5qqc-77m4-694h.json index 0b281187581..66c22c0ec93 100644 --- a/advisories/unreviewed/2023/02/GHSA-5qqc-77m4-694h/GHSA-5qqc-77m4-694h.json +++ b/advisories/unreviewed/2023/02/GHSA-5qqc-77m4-694h/GHSA-5qqc-77m4-694h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-647w-72c4-73xq/GHSA-647w-72c4-73xq.json b/advisories/unreviewed/2023/02/GHSA-647w-72c4-73xq/GHSA-647w-72c4-73xq.json index de8bba3a3a0..f784c33c0a3 100644 --- a/advisories/unreviewed/2023/02/GHSA-647w-72c4-73xq/GHSA-647w-72c4-73xq.json +++ b/advisories/unreviewed/2023/02/GHSA-647w-72c4-73xq/GHSA-647w-72c4-73xq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-6646-357c-xmmh/GHSA-6646-357c-xmmh.json b/advisories/unreviewed/2023/02/GHSA-6646-357c-xmmh/GHSA-6646-357c-xmmh.json index eb2d1a8fc8b..3f192a3db7e 100644 --- a/advisories/unreviewed/2023/02/GHSA-6646-357c-xmmh/GHSA-6646-357c-xmmh.json +++ b/advisories/unreviewed/2023/02/GHSA-6646-357c-xmmh/GHSA-6646-357c-xmmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-66f3-5m77-hrqg/GHSA-66f3-5m77-hrqg.json b/advisories/unreviewed/2023/02/GHSA-66f3-5m77-hrqg/GHSA-66f3-5m77-hrqg.json index 0e43def7cba..2d6d5598204 100644 --- a/advisories/unreviewed/2023/02/GHSA-66f3-5m77-hrqg/GHSA-66f3-5m77-hrqg.json +++ b/advisories/unreviewed/2023/02/GHSA-66f3-5m77-hrqg/GHSA-66f3-5m77-hrqg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-66rx-339r-mm8j/GHSA-66rx-339r-mm8j.json b/advisories/unreviewed/2023/02/GHSA-66rx-339r-mm8j/GHSA-66rx-339r-mm8j.json index 4cf5df5e11d..8e346a0e630 100644 --- a/advisories/unreviewed/2023/02/GHSA-66rx-339r-mm8j/GHSA-66rx-339r-mm8j.json +++ b/advisories/unreviewed/2023/02/GHSA-66rx-339r-mm8j/GHSA-66rx-339r-mm8j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-67q3-fvq7-75c8/GHSA-67q3-fvq7-75c8.json b/advisories/unreviewed/2023/02/GHSA-67q3-fvq7-75c8/GHSA-67q3-fvq7-75c8.json index 0cf41b88410..965a6007388 100644 --- a/advisories/unreviewed/2023/02/GHSA-67q3-fvq7-75c8/GHSA-67q3-fvq7-75c8.json +++ b/advisories/unreviewed/2023/02/GHSA-67q3-fvq7-75c8/GHSA-67q3-fvq7-75c8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-83hr-hwqh-94w5/GHSA-83hr-hwqh-94w5.json b/advisories/unreviewed/2023/02/GHSA-83hr-hwqh-94w5/GHSA-83hr-hwqh-94w5.json index 65c52c7d7ab..5700ec8d482 100644 --- a/advisories/unreviewed/2023/02/GHSA-83hr-hwqh-94w5/GHSA-83hr-hwqh-94w5.json +++ b/advisories/unreviewed/2023/02/GHSA-83hr-hwqh-94w5/GHSA-83hr-hwqh-94w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-8q3r-wcm3-84jc/GHSA-8q3r-wcm3-84jc.json b/advisories/unreviewed/2023/02/GHSA-8q3r-wcm3-84jc/GHSA-8q3r-wcm3-84jc.json index 6cce0550d38..cfc5b90aaa5 100644 --- a/advisories/unreviewed/2023/02/GHSA-8q3r-wcm3-84jc/GHSA-8q3r-wcm3-84jc.json +++ b/advisories/unreviewed/2023/02/GHSA-8q3r-wcm3-84jc/GHSA-8q3r-wcm3-84jc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-92hx-58m2-fcvh/GHSA-92hx-58m2-fcvh.json b/advisories/unreviewed/2023/02/GHSA-92hx-58m2-fcvh/GHSA-92hx-58m2-fcvh.json index b251944e555..766bbd6550e 100644 --- a/advisories/unreviewed/2023/02/GHSA-92hx-58m2-fcvh/GHSA-92hx-58m2-fcvh.json +++ b/advisories/unreviewed/2023/02/GHSA-92hx-58m2-fcvh/GHSA-92hx-58m2-fcvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-999m-wm5p-rpj8/GHSA-999m-wm5p-rpj8.json b/advisories/unreviewed/2023/02/GHSA-999m-wm5p-rpj8/GHSA-999m-wm5p-rpj8.json index 5342b3b2bba..6c3923f0b99 100644 --- a/advisories/unreviewed/2023/02/GHSA-999m-wm5p-rpj8/GHSA-999m-wm5p-rpj8.json +++ b/advisories/unreviewed/2023/02/GHSA-999m-wm5p-rpj8/GHSA-999m-wm5p-rpj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-99w2-8wxr-wm2j/GHSA-99w2-8wxr-wm2j.json b/advisories/unreviewed/2023/02/GHSA-99w2-8wxr-wm2j/GHSA-99w2-8wxr-wm2j.json index efbea199f36..f78c6fe1c29 100644 --- a/advisories/unreviewed/2023/02/GHSA-99w2-8wxr-wm2j/GHSA-99w2-8wxr-wm2j.json +++ b/advisories/unreviewed/2023/02/GHSA-99w2-8wxr-wm2j/GHSA-99w2-8wxr-wm2j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-c2x6-rvvf-2x2v/GHSA-c2x6-rvvf-2x2v.json b/advisories/unreviewed/2023/02/GHSA-c2x6-rvvf-2x2v/GHSA-c2x6-rvvf-2x2v.json index ee6f8ffa979..f5999b29856 100644 --- a/advisories/unreviewed/2023/02/GHSA-c2x6-rvvf-2x2v/GHSA-c2x6-rvvf-2x2v.json +++ b/advisories/unreviewed/2023/02/GHSA-c2x6-rvvf-2x2v/GHSA-c2x6-rvvf-2x2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-cr32-g7qv-w888/GHSA-cr32-g7qv-w888.json b/advisories/unreviewed/2023/02/GHSA-cr32-g7qv-w888/GHSA-cr32-g7qv-w888.json index 34161fb6a90..8090da03e24 100644 --- a/advisories/unreviewed/2023/02/GHSA-cr32-g7qv-w888/GHSA-cr32-g7qv-w888.json +++ b/advisories/unreviewed/2023/02/GHSA-cr32-g7qv-w888/GHSA-cr32-g7qv-w888.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-fqww-44f8-q7w7/GHSA-fqww-44f8-q7w7.json b/advisories/unreviewed/2023/02/GHSA-fqww-44f8-q7w7/GHSA-fqww-44f8-q7w7.json index 0ceed66fdbf..2fd223348db 100644 --- a/advisories/unreviewed/2023/02/GHSA-fqww-44f8-q7w7/GHSA-fqww-44f8-q7w7.json +++ b/advisories/unreviewed/2023/02/GHSA-fqww-44f8-q7w7/GHSA-fqww-44f8-q7w7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-frq2-jgm9-3p6x/GHSA-frq2-jgm9-3p6x.json b/advisories/unreviewed/2023/02/GHSA-frq2-jgm9-3p6x/GHSA-frq2-jgm9-3p6x.json index 67c8d5ac842..56188a6f9ba 100644 --- a/advisories/unreviewed/2023/02/GHSA-frq2-jgm9-3p6x/GHSA-frq2-jgm9-3p6x.json +++ b/advisories/unreviewed/2023/02/GHSA-frq2-jgm9-3p6x/GHSA-frq2-jgm9-3p6x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-fxh3-p58p-8jx5/GHSA-fxh3-p58p-8jx5.json b/advisories/unreviewed/2023/02/GHSA-fxh3-p58p-8jx5/GHSA-fxh3-p58p-8jx5.json index 1c135d9149f..b9b8d1b3699 100644 --- a/advisories/unreviewed/2023/02/GHSA-fxh3-p58p-8jx5/GHSA-fxh3-p58p-8jx5.json +++ b/advisories/unreviewed/2023/02/GHSA-fxh3-p58p-8jx5/GHSA-fxh3-p58p-8jx5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-hqhj-gh6r-4grg/GHSA-hqhj-gh6r-4grg.json b/advisories/unreviewed/2023/02/GHSA-hqhj-gh6r-4grg/GHSA-hqhj-gh6r-4grg.json index 60c86f30fe3..544a086dbf1 100644 --- a/advisories/unreviewed/2023/02/GHSA-hqhj-gh6r-4grg/GHSA-hqhj-gh6r-4grg.json +++ b/advisories/unreviewed/2023/02/GHSA-hqhj-gh6r-4grg/GHSA-hqhj-gh6r-4grg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-hr44-hqgh-6mf2/GHSA-hr44-hqgh-6mf2.json b/advisories/unreviewed/2023/02/GHSA-hr44-hqgh-6mf2/GHSA-hr44-hqgh-6mf2.json index f7e62606001..e5ab1118691 100644 --- a/advisories/unreviewed/2023/02/GHSA-hr44-hqgh-6mf2/GHSA-hr44-hqgh-6mf2.json +++ b/advisories/unreviewed/2023/02/GHSA-hr44-hqgh-6mf2/GHSA-hr44-hqgh-6mf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-p6wr-f2hq-5mh6/GHSA-p6wr-f2hq-5mh6.json b/advisories/unreviewed/2023/02/GHSA-p6wr-f2hq-5mh6/GHSA-p6wr-f2hq-5mh6.json index ea945e3f138..d4df1b90d8d 100644 --- a/advisories/unreviewed/2023/02/GHSA-p6wr-f2hq-5mh6/GHSA-p6wr-f2hq-5mh6.json +++ b/advisories/unreviewed/2023/02/GHSA-p6wr-f2hq-5mh6/GHSA-p6wr-f2hq-5mh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-p86c-7jgw-fvwf/GHSA-p86c-7jgw-fvwf.json b/advisories/unreviewed/2023/02/GHSA-p86c-7jgw-fvwf/GHSA-p86c-7jgw-fvwf.json index c41d67946c6..4eb109ae232 100644 --- a/advisories/unreviewed/2023/02/GHSA-p86c-7jgw-fvwf/GHSA-p86c-7jgw-fvwf.json +++ b/advisories/unreviewed/2023/02/GHSA-p86c-7jgw-fvwf/GHSA-p86c-7jgw-fvwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-pj6x-87qc-w9f6/GHSA-pj6x-87qc-w9f6.json b/advisories/unreviewed/2023/02/GHSA-pj6x-87qc-w9f6/GHSA-pj6x-87qc-w9f6.json index 6b3761c00d7..ce14678afb5 100644 --- a/advisories/unreviewed/2023/02/GHSA-pj6x-87qc-w9f6/GHSA-pj6x-87qc-w9f6.json +++ b/advisories/unreviewed/2023/02/GHSA-pj6x-87qc-w9f6/GHSA-pj6x-87qc-w9f6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-q84g-j4pw-hjh5/GHSA-q84g-j4pw-hjh5.json b/advisories/unreviewed/2023/02/GHSA-q84g-j4pw-hjh5/GHSA-q84g-j4pw-hjh5.json index e935c375aa7..6b9ae9a4be4 100644 --- a/advisories/unreviewed/2023/02/GHSA-q84g-j4pw-hjh5/GHSA-q84g-j4pw-hjh5.json +++ b/advisories/unreviewed/2023/02/GHSA-q84g-j4pw-hjh5/GHSA-q84g-j4pw-hjh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-qvqm-f8p9-vr4c/GHSA-qvqm-f8p9-vr4c.json b/advisories/unreviewed/2023/02/GHSA-qvqm-f8p9-vr4c/GHSA-qvqm-f8p9-vr4c.json index af65b05d953..97312e1ae87 100644 --- a/advisories/unreviewed/2023/02/GHSA-qvqm-f8p9-vr4c/GHSA-qvqm-f8p9-vr4c.json +++ b/advisories/unreviewed/2023/02/GHSA-qvqm-f8p9-vr4c/GHSA-qvqm-f8p9-vr4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-qx7f-p25m-8c56/GHSA-qx7f-p25m-8c56.json b/advisories/unreviewed/2023/02/GHSA-qx7f-p25m-8c56/GHSA-qx7f-p25m-8c56.json index 91c0560e45f..6e6e063f8d2 100644 --- a/advisories/unreviewed/2023/02/GHSA-qx7f-p25m-8c56/GHSA-qx7f-p25m-8c56.json +++ b/advisories/unreviewed/2023/02/GHSA-qx7f-p25m-8c56/GHSA-qx7f-p25m-8c56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-r3fh-95rm-cx6p/GHSA-r3fh-95rm-cx6p.json b/advisories/unreviewed/2023/02/GHSA-r3fh-95rm-cx6p/GHSA-r3fh-95rm-cx6p.json index 64bd3bcb713..d31c64d95d1 100644 --- a/advisories/unreviewed/2023/02/GHSA-r3fh-95rm-cx6p/GHSA-r3fh-95rm-cx6p.json +++ b/advisories/unreviewed/2023/02/GHSA-r3fh-95rm-cx6p/GHSA-r3fh-95rm-cx6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-r8jg-664j-5xqf/GHSA-r8jg-664j-5xqf.json b/advisories/unreviewed/2023/02/GHSA-r8jg-664j-5xqf/GHSA-r8jg-664j-5xqf.json index 8c6fb464f39..d2b44ce0ed3 100644 --- a/advisories/unreviewed/2023/02/GHSA-r8jg-664j-5xqf/GHSA-r8jg-664j-5xqf.json +++ b/advisories/unreviewed/2023/02/GHSA-r8jg-664j-5xqf/GHSA-r8jg-664j-5xqf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-r9hq-v925-r8jc/GHSA-r9hq-v925-r8jc.json b/advisories/unreviewed/2023/02/GHSA-r9hq-v925-r8jc/GHSA-r9hq-v925-r8jc.json index 0f0c765775e..13db2ae7919 100644 --- a/advisories/unreviewed/2023/02/GHSA-r9hq-v925-r8jc/GHSA-r9hq-v925-r8jc.json +++ b/advisories/unreviewed/2023/02/GHSA-r9hq-v925-r8jc/GHSA-r9hq-v925-r8jc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-x28p-2rmr-cx3p/GHSA-x28p-2rmr-cx3p.json b/advisories/unreviewed/2023/02/GHSA-x28p-2rmr-cx3p/GHSA-x28p-2rmr-cx3p.json index 5487741be35..f7447111a7c 100644 --- a/advisories/unreviewed/2023/02/GHSA-x28p-2rmr-cx3p/GHSA-x28p-2rmr-cx3p.json +++ b/advisories/unreviewed/2023/02/GHSA-x28p-2rmr-cx3p/GHSA-x28p-2rmr-cx3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-x4xc-8g7v-c85h/GHSA-x4xc-8g7v-c85h.json b/advisories/unreviewed/2023/02/GHSA-x4xc-8g7v-c85h/GHSA-x4xc-8g7v-c85h.json index 401a998e198..53e24468a96 100644 --- a/advisories/unreviewed/2023/02/GHSA-x4xc-8g7v-c85h/GHSA-x4xc-8g7v-c85h.json +++ b/advisories/unreviewed/2023/02/GHSA-x4xc-8g7v-c85h/GHSA-x4xc-8g7v-c85h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-xr6g-gv3h-f4fw/GHSA-xr6g-gv3h-f4fw.json b/advisories/unreviewed/2023/02/GHSA-xr6g-gv3h-f4fw/GHSA-xr6g-gv3h-f4fw.json index b076ce1a03f..78a25b13ed4 100644 --- a/advisories/unreviewed/2023/02/GHSA-xr6g-gv3h-f4fw/GHSA-xr6g-gv3h-f4fw.json +++ b/advisories/unreviewed/2023/02/GHSA-xr6g-gv3h-f4fw/GHSA-xr6g-gv3h-f4fw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-22j5-63rc-6cq9/GHSA-22j5-63rc-6cq9.json b/advisories/unreviewed/2024/05/GHSA-22j5-63rc-6cq9/GHSA-22j5-63rc-6cq9.json index 8508f053667..6689ff14fe6 100644 --- a/advisories/unreviewed/2024/05/GHSA-22j5-63rc-6cq9/GHSA-22j5-63rc-6cq9.json +++ b/advisories/unreviewed/2024/05/GHSA-22j5-63rc-6cq9/GHSA-22j5-63rc-6cq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-2xgc-j2vj-q7gf/GHSA-2xgc-j2vj-q7gf.json b/advisories/unreviewed/2024/05/GHSA-2xgc-j2vj-q7gf/GHSA-2xgc-j2vj-q7gf.json index aa4f8ebbfa7..0b0c637f90e 100644 --- a/advisories/unreviewed/2024/05/GHSA-2xgc-j2vj-q7gf/GHSA-2xgc-j2vj-q7gf.json +++ b/advisories/unreviewed/2024/05/GHSA-2xgc-j2vj-q7gf/GHSA-2xgc-j2vj-q7gf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-34c4-3wv9-23ch/GHSA-34c4-3wv9-23ch.json b/advisories/unreviewed/2024/05/GHSA-34c4-3wv9-23ch/GHSA-34c4-3wv9-23ch.json index 959d9049c39..33a471c7da2 100644 --- a/advisories/unreviewed/2024/05/GHSA-34c4-3wv9-23ch/GHSA-34c4-3wv9-23ch.json +++ b/advisories/unreviewed/2024/05/GHSA-34c4-3wv9-23ch/GHSA-34c4-3wv9-23ch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-3mhw-f79r-crmm/GHSA-3mhw-f79r-crmm.json b/advisories/unreviewed/2024/05/GHSA-3mhw-f79r-crmm/GHSA-3mhw-f79r-crmm.json index 3edbb5df1ac..5d465cd9879 100644 --- a/advisories/unreviewed/2024/05/GHSA-3mhw-f79r-crmm/GHSA-3mhw-f79r-crmm.json +++ b/advisories/unreviewed/2024/05/GHSA-3mhw-f79r-crmm/GHSA-3mhw-f79r-crmm.json @@ -7,12 +7,8 @@ "CVE-2024-33382" ], "details": "An issue in Open5GS v.2.7.0 allows an attacker to cause a denial of service via the 64 unsuccessful UE/gnb registration", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-3qh7-pv9c-8cxc/GHSA-3qh7-pv9c-8cxc.json b/advisories/unreviewed/2024/05/GHSA-3qh7-pv9c-8cxc/GHSA-3qh7-pv9c-8cxc.json index 2fa6027cbcf..22135195d95 100644 --- a/advisories/unreviewed/2024/05/GHSA-3qh7-pv9c-8cxc/GHSA-3qh7-pv9c-8cxc.json +++ b/advisories/unreviewed/2024/05/GHSA-3qh7-pv9c-8cxc/GHSA-3qh7-pv9c-8cxc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-48vc-2479-rfvr/GHSA-48vc-2479-rfvr.json b/advisories/unreviewed/2024/05/GHSA-48vc-2479-rfvr/GHSA-48vc-2479-rfvr.json index 7fff44e1345..91e761d7f5f 100644 --- a/advisories/unreviewed/2024/05/GHSA-48vc-2479-rfvr/GHSA-48vc-2479-rfvr.json +++ b/advisories/unreviewed/2024/05/GHSA-48vc-2479-rfvr/GHSA-48vc-2479-rfvr.json @@ -7,12 +7,8 @@ "CVE-2024-25527" ], "details": "RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /PersonalAffair/worklog_template_show.aspx.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-4vgj-rwj6-4gwr/GHSA-4vgj-rwj6-4gwr.json b/advisories/unreviewed/2024/05/GHSA-4vgj-rwj6-4gwr/GHSA-4vgj-rwj6-4gwr.json index 289d3e20733..c92178d3f6c 100644 --- a/advisories/unreviewed/2024/05/GHSA-4vgj-rwj6-4gwr/GHSA-4vgj-rwj6-4gwr.json +++ b/advisories/unreviewed/2024/05/GHSA-4vgj-rwj6-4gwr/GHSA-4vgj-rwj6-4gwr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4wj3-7p36-wmrw/GHSA-4wj3-7p36-wmrw.json b/advisories/unreviewed/2024/05/GHSA-4wj3-7p36-wmrw/GHSA-4wj3-7p36-wmrw.json index 6b5e7559b7d..93ce45aacbf 100644 --- a/advisories/unreviewed/2024/05/GHSA-4wj3-7p36-wmrw/GHSA-4wj3-7p36-wmrw.json +++ b/advisories/unreviewed/2024/05/GHSA-4wj3-7p36-wmrw/GHSA-4wj3-7p36-wmrw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-5chv-gxjv-3g37/GHSA-5chv-gxjv-3g37.json b/advisories/unreviewed/2024/05/GHSA-5chv-gxjv-3g37/GHSA-5chv-gxjv-3g37.json index 0d376b635d8..e01ad6a947e 100644 --- a/advisories/unreviewed/2024/05/GHSA-5chv-gxjv-3g37/GHSA-5chv-gxjv-3g37.json +++ b/advisories/unreviewed/2024/05/GHSA-5chv-gxjv-3g37/GHSA-5chv-gxjv-3g37.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-69pf-4hfw-vpvh/GHSA-69pf-4hfw-vpvh.json b/advisories/unreviewed/2024/05/GHSA-69pf-4hfw-vpvh/GHSA-69pf-4hfw-vpvh.json index a40534ddaf8..d74474f8eaa 100644 --- a/advisories/unreviewed/2024/05/GHSA-69pf-4hfw-vpvh/GHSA-69pf-4hfw-vpvh.json +++ b/advisories/unreviewed/2024/05/GHSA-69pf-4hfw-vpvh/GHSA-69pf-4hfw-vpvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7265-32xx-ffhx/GHSA-7265-32xx-ffhx.json b/advisories/unreviewed/2024/05/GHSA-7265-32xx-ffhx/GHSA-7265-32xx-ffhx.json index 8aa2044b508..bef2a2c6a9a 100644 --- a/advisories/unreviewed/2024/05/GHSA-7265-32xx-ffhx/GHSA-7265-32xx-ffhx.json +++ b/advisories/unreviewed/2024/05/GHSA-7265-32xx-ffhx/GHSA-7265-32xx-ffhx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-7grh-8hh5-88pf/GHSA-7grh-8hh5-88pf.json b/advisories/unreviewed/2024/05/GHSA-7grh-8hh5-88pf/GHSA-7grh-8hh5-88pf.json index 59542dd1213..c0856ce2651 100644 --- a/advisories/unreviewed/2024/05/GHSA-7grh-8hh5-88pf/GHSA-7grh-8hh5-88pf.json +++ b/advisories/unreviewed/2024/05/GHSA-7grh-8hh5-88pf/GHSA-7grh-8hh5-88pf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-977m-qww6-wq3m/GHSA-977m-qww6-wq3m.json b/advisories/unreviewed/2024/05/GHSA-977m-qww6-wq3m/GHSA-977m-qww6-wq3m.json index 09ec1637035..0a1d53fa664 100644 --- a/advisories/unreviewed/2024/05/GHSA-977m-qww6-wq3m/GHSA-977m-qww6-wq3m.json +++ b/advisories/unreviewed/2024/05/GHSA-977m-qww6-wq3m/GHSA-977m-qww6-wq3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-c592-6f6m-vm4h/GHSA-c592-6f6m-vm4h.json b/advisories/unreviewed/2024/05/GHSA-c592-6f6m-vm4h/GHSA-c592-6f6m-vm4h.json index bd387e87663..7c0a447ab6d 100644 --- a/advisories/unreviewed/2024/05/GHSA-c592-6f6m-vm4h/GHSA-c592-6f6m-vm4h.json +++ b/advisories/unreviewed/2024/05/GHSA-c592-6f6m-vm4h/GHSA-c592-6f6m-vm4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-f6pr-3mcc-9v92/GHSA-f6pr-3mcc-9v92.json b/advisories/unreviewed/2024/05/GHSA-f6pr-3mcc-9v92/GHSA-f6pr-3mcc-9v92.json index 72cde4c3a30..cf4d4abaa1a 100644 --- a/advisories/unreviewed/2024/05/GHSA-f6pr-3mcc-9v92/GHSA-f6pr-3mcc-9v92.json +++ b/advisories/unreviewed/2024/05/GHSA-f6pr-3mcc-9v92/GHSA-f6pr-3mcc-9v92.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-fq23-5997-3879/GHSA-fq23-5997-3879.json b/advisories/unreviewed/2024/05/GHSA-fq23-5997-3879/GHSA-fq23-5997-3879.json index afb1bd3b5ad..e267bc205a0 100644 --- a/advisories/unreviewed/2024/05/GHSA-fq23-5997-3879/GHSA-fq23-5997-3879.json +++ b/advisories/unreviewed/2024/05/GHSA-fq23-5997-3879/GHSA-fq23-5997-3879.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-frv4-f3cq-3x3v/GHSA-frv4-f3cq-3x3v.json b/advisories/unreviewed/2024/05/GHSA-frv4-f3cq-3x3v/GHSA-frv4-f3cq-3x3v.json index ea9436a8941..35625fcd159 100644 --- a/advisories/unreviewed/2024/05/GHSA-frv4-f3cq-3x3v/GHSA-frv4-f3cq-3x3v.json +++ b/advisories/unreviewed/2024/05/GHSA-frv4-f3cq-3x3v/GHSA-frv4-f3cq-3x3v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-gv23-mcr7-vrqf/GHSA-gv23-mcr7-vrqf.json b/advisories/unreviewed/2024/05/GHSA-gv23-mcr7-vrqf/GHSA-gv23-mcr7-vrqf.json index ede2583ead9..3f93b06698c 100644 --- a/advisories/unreviewed/2024/05/GHSA-gv23-mcr7-vrqf/GHSA-gv23-mcr7-vrqf.json +++ b/advisories/unreviewed/2024/05/GHSA-gv23-mcr7-vrqf/GHSA-gv23-mcr7-vrqf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-h394-8gc3-g7pj/GHSA-h394-8gc3-g7pj.json b/advisories/unreviewed/2024/05/GHSA-h394-8gc3-g7pj/GHSA-h394-8gc3-g7pj.json index 07a18da050f..89d6c6f256f 100644 --- a/advisories/unreviewed/2024/05/GHSA-h394-8gc3-g7pj/GHSA-h394-8gc3-g7pj.json +++ b/advisories/unreviewed/2024/05/GHSA-h394-8gc3-g7pj/GHSA-h394-8gc3-g7pj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-hwq4-p9m3-4cjm/GHSA-hwq4-p9m3-4cjm.json b/advisories/unreviewed/2024/05/GHSA-hwq4-p9m3-4cjm/GHSA-hwq4-p9m3-4cjm.json index 037c97867d1..a2dffb3c877 100644 --- a/advisories/unreviewed/2024/05/GHSA-hwq4-p9m3-4cjm/GHSA-hwq4-p9m3-4cjm.json +++ b/advisories/unreviewed/2024/05/GHSA-hwq4-p9m3-4cjm/GHSA-hwq4-p9m3-4cjm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-j5j7-c96c-3p39/GHSA-j5j7-c96c-3p39.json b/advisories/unreviewed/2024/05/GHSA-j5j7-c96c-3p39/GHSA-j5j7-c96c-3p39.json index 0fb3e2a94bc..63b71a269e4 100644 --- a/advisories/unreviewed/2024/05/GHSA-j5j7-c96c-3p39/GHSA-j5j7-c96c-3p39.json +++ b/advisories/unreviewed/2024/05/GHSA-j5j7-c96c-3p39/GHSA-j5j7-c96c-3p39.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qffg-p58p-854c/GHSA-qffg-p58p-854c.json b/advisories/unreviewed/2024/05/GHSA-qffg-p58p-854c/GHSA-qffg-p58p-854c.json index 55d6c77be2a..b11a91dfe2d 100644 --- a/advisories/unreviewed/2024/05/GHSA-qffg-p58p-854c/GHSA-qffg-p58p-854c.json +++ b/advisories/unreviewed/2024/05/GHSA-qffg-p58p-854c/GHSA-qffg-p58p-854c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-v863-wq9j-pjg4/GHSA-v863-wq9j-pjg4.json b/advisories/unreviewed/2024/05/GHSA-v863-wq9j-pjg4/GHSA-v863-wq9j-pjg4.json index 953631f0e3c..43e54fa395c 100644 --- a/advisories/unreviewed/2024/05/GHSA-v863-wq9j-pjg4/GHSA-v863-wq9j-pjg4.json +++ b/advisories/unreviewed/2024/05/GHSA-v863-wq9j-pjg4/GHSA-v863-wq9j-pjg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vhmj-v5p6-jwhv/GHSA-vhmj-v5p6-jwhv.json b/advisories/unreviewed/2024/05/GHSA-vhmj-v5p6-jwhv/GHSA-vhmj-v5p6-jwhv.json index a97d9643486..500fbaf569f 100644 --- a/advisories/unreviewed/2024/05/GHSA-vhmj-v5p6-jwhv/GHSA-vhmj-v5p6-jwhv.json +++ b/advisories/unreviewed/2024/05/GHSA-vhmj-v5p6-jwhv/GHSA-vhmj-v5p6-jwhv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-w6q8-c6q3-jvxr/GHSA-w6q8-c6q3-jvxr.json b/advisories/unreviewed/2024/05/GHSA-w6q8-c6q3-jvxr/GHSA-w6q8-c6q3-jvxr.json index d8d43c5c2a3..ea6f83712cb 100644 --- a/advisories/unreviewed/2024/05/GHSA-w6q8-c6q3-jvxr/GHSA-w6q8-c6q3-jvxr.json +++ b/advisories/unreviewed/2024/05/GHSA-w6q8-c6q3-jvxr/GHSA-w6q8-c6q3-jvxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-w9q2-p57h-r357/GHSA-w9q2-p57h-r357.json b/advisories/unreviewed/2024/05/GHSA-w9q2-p57h-r357/GHSA-w9q2-p57h-r357.json index fbacf5139bf..d7be745c0b3 100644 --- a/advisories/unreviewed/2024/05/GHSA-w9q2-p57h-r357/GHSA-w9q2-p57h-r357.json +++ b/advisories/unreviewed/2024/05/GHSA-w9q2-p57h-r357/GHSA-w9q2-p57h-r357.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wg7h-v937-9wh2/GHSA-wg7h-v937-9wh2.json b/advisories/unreviewed/2024/05/GHSA-wg7h-v937-9wh2/GHSA-wg7h-v937-9wh2.json index 658ebca235d..ab9a6e4290b 100644 --- a/advisories/unreviewed/2024/05/GHSA-wg7h-v937-9wh2/GHSA-wg7h-v937-9wh2.json +++ b/advisories/unreviewed/2024/05/GHSA-wg7h-v937-9wh2/GHSA-wg7h-v937-9wh2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wpgr-gpcm-6xw3/GHSA-wpgr-gpcm-6xw3.json b/advisories/unreviewed/2024/05/GHSA-wpgr-gpcm-6xw3/GHSA-wpgr-gpcm-6xw3.json index ce88f6de170..a3fc7975762 100644 --- a/advisories/unreviewed/2024/05/GHSA-wpgr-gpcm-6xw3/GHSA-wpgr-gpcm-6xw3.json +++ b/advisories/unreviewed/2024/05/GHSA-wpgr-gpcm-6xw3/GHSA-wpgr-gpcm-6xw3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wq56-88x3-qc5r/GHSA-wq56-88x3-qc5r.json b/advisories/unreviewed/2024/05/GHSA-wq56-88x3-qc5r/GHSA-wq56-88x3-qc5r.json index b45e2f20e54..2631abadcb3 100644 --- a/advisories/unreviewed/2024/05/GHSA-wq56-88x3-qc5r/GHSA-wq56-88x3-qc5r.json +++ b/advisories/unreviewed/2024/05/GHSA-wq56-88x3-qc5r/GHSA-wq56-88x3-qc5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x3r4-5hf3-cxgc/GHSA-x3r4-5hf3-cxgc.json b/advisories/unreviewed/2024/05/GHSA-x3r4-5hf3-cxgc/GHSA-x3r4-5hf3-cxgc.json index 5299d0e7c9c..99a99d3ea93 100644 --- a/advisories/unreviewed/2024/05/GHSA-x3r4-5hf3-cxgc/GHSA-x3r4-5hf3-cxgc.json +++ b/advisories/unreviewed/2024/05/GHSA-x3r4-5hf3-cxgc/GHSA-x3r4-5hf3-cxgc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-x865-q275-326g/GHSA-x865-q275-326g.json b/advisories/unreviewed/2024/05/GHSA-x865-q275-326g/GHSA-x865-q275-326g.json index 1f1303f8a24..bc2d3575d17 100644 --- a/advisories/unreviewed/2024/05/GHSA-x865-q275-326g/GHSA-x865-q275-326g.json +++ b/advisories/unreviewed/2024/05/GHSA-x865-q275-326g/GHSA-x865-q275-326g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",