diff --git a/advisories/github-reviewed/2021/03/GHSA-w5hr-jm4j-9jvq/GHSA-w5hr-jm4j-9jvq.json b/advisories/github-reviewed/2021/03/GHSA-w5hr-jm4j-9jvq/GHSA-w5hr-jm4j-9jvq.json index 5e311b1d703..b0779872b07 100644 --- a/advisories/github-reviewed/2021/03/GHSA-w5hr-jm4j-9jvq/GHSA-w5hr-jm4j-9jvq.json +++ b/advisories/github-reviewed/2021/03/GHSA-w5hr-jm4j-9jvq/GHSA-w5hr-jm4j-9jvq.json @@ -78,9 +78,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2021-03-02T02:55:01Z", diff --git a/advisories/github-reviewed/2022/04/GHSA-7jrp-r6jx-32cw/GHSA-7jrp-r6jx-32cw.json b/advisories/github-reviewed/2022/04/GHSA-7jrp-r6jx-32cw/GHSA-7jrp-r6jx-32cw.json index d5ef7883d31..531a9670f25 100644 --- a/advisories/github-reviewed/2022/04/GHSA-7jrp-r6jx-32cw/GHSA-7jrp-r6jx-32cw.json +++ b/advisories/github-reviewed/2022/04/GHSA-7jrp-r6jx-32cw/GHSA-7jrp-r6jx-32cw.json @@ -8,9 +8,7 @@ ], "summary": "MoinMoin allows administrative access", "details": "MoinMoin 1.2.1 and earlier allows remote attackers to gain privileges by creating a user with the same name as an existing group that has higher privileges.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -66,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-05-09T16:04:59Z", diff --git a/advisories/github-reviewed/2022/04/GHSA-9xh4-wpx8-rg2w/GHSA-9xh4-wpx8-rg2w.json b/advisories/github-reviewed/2022/04/GHSA-9xh4-wpx8-rg2w/GHSA-9xh4-wpx8-rg2w.json index 9973cf807fd..8cef695db8f 100644 --- a/advisories/github-reviewed/2022/04/GHSA-9xh4-wpx8-rg2w/GHSA-9xh4-wpx8-rg2w.json +++ b/advisories/github-reviewed/2022/04/GHSA-9xh4-wpx8-rg2w/GHSA-9xh4-wpx8-rg2w.json @@ -8,9 +8,7 @@ ], "summary": "MoinMoin Improper Privilege Management", "details": "MoinMoin 1.2.2 and earlier could allow a remote attacker to gain elevated privileges, caused by an undisclosed Access Control List (ACL) vulnerability in the PageEditor.\n\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -62,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-05-09T16:11:00Z", diff --git a/advisories/github-reviewed/2022/04/GHSA-q7mf-hp9m-cx6f/GHSA-q7mf-hp9m-cx6f.json b/advisories/github-reviewed/2022/04/GHSA-q7mf-hp9m-cx6f/GHSA-q7mf-hp9m-cx6f.json index 197b7dab323..1d613566c69 100644 --- a/advisories/github-reviewed/2022/04/GHSA-q7mf-hp9m-cx6f/GHSA-q7mf-hp9m-cx6f.json +++ b/advisories/github-reviewed/2022/04/GHSA-q7mf-hp9m-cx6f/GHSA-q7mf-hp9m-cx6f.json @@ -8,9 +8,7 @@ ], "summary": "Roundup Directory traversal vulnerability", "details": "Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via `..` (dot dot) sequences in an `@@` command in an HTTP GET request.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/04/GHSA-v744-h36c-hv5j/GHSA-v744-h36c-hv5j.json b/advisories/github-reviewed/2022/04/GHSA-v744-h36c-hv5j/GHSA-v744-h36c-hv5j.json index 19ab3047c81..ce6fb468729 100644 --- a/advisories/github-reviewed/2022/04/GHSA-v744-h36c-hv5j/GHSA-v744-h36c-hv5j.json +++ b/advisories/github-reviewed/2022/04/GHSA-v744-h36c-hv5j/GHSA-v744-h36c-hv5j.json @@ -8,9 +8,7 @@ ], "summary": "MoinMoin Improper Access Control ", "details": "Unknown vulnerability in MoinMoin 1.2.2 and earlier allows remote attackers to gain unauthorized access to administrator functions such as (1) revert and (2) delete.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -62,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-05-09T16:13:27Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-34fp-xvxp-rg22/GHSA-34fp-xvxp-rg22.json b/advisories/github-reviewed/2022/05/GHSA-34fp-xvxp-rg22/GHSA-34fp-xvxp-rg22.json index 9693273453a..0ba605ea894 100644 --- a/advisories/github-reviewed/2022/05/GHSA-34fp-xvxp-rg22/GHSA-34fp-xvxp-rg22.json +++ b/advisories/github-reviewed/2022/05/GHSA-34fp-xvxp-rg22/GHSA-34fp-xvxp-rg22.json @@ -8,9 +8,7 @@ ], "summary": "Apache ActiveMQ default configuration subject to denial of service", "details": "The default configuration of Apache ActiveMQ before 5.8.0 enables a sample web application, which allows remote attackers to cause a denial of service (broker resource consumption) via HTTP requests.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-7fpg-pp3m-h22f/GHSA-7fpg-pp3m-h22f.json b/advisories/github-reviewed/2022/05/GHSA-7fpg-pp3m-h22f/GHSA-7fpg-pp3m-h22f.json index 2b50ecbd79f..aeae85ef81b 100644 --- a/advisories/github-reviewed/2022/05/GHSA-7fpg-pp3m-h22f/GHSA-7fpg-pp3m-h22f.json +++ b/advisories/github-reviewed/2022/05/GHSA-7fpg-pp3m-h22f/GHSA-7fpg-pp3m-h22f.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins allows attackers to execute arbitrary jobs", "details": "BuildTrigger in Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users to bypass access restrictions and execute arbitrary jobs by configuring a job to trigger another job. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-7330.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -74,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-03-05T14:36:27Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-9vg9-x38g-9hfx/GHSA-9vg9-x38g-9hfx.json b/advisories/github-reviewed/2022/05/GHSA-9vg9-x38g-9hfx/GHSA-9vg9-x38g-9hfx.json index 7f3e55ffaf6..eb795525a41 100644 --- a/advisories/github-reviewed/2022/05/GHSA-9vg9-x38g-9hfx/GHSA-9vg9-x38g-9hfx.json +++ b/advisories/github-reviewed/2022/05/GHSA-9vg9-x38g-9hfx/GHSA-9vg9-x38g-9hfx.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins allows attackers to determine whether a user exists", "details": "The loadUserByUsername function in hudson/security/HudsonPrivateSecurityRealm.java in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to determine whether a user exists via vectors related to failed login attempts.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-c78g-qwpw-2jgv/GHSA-c78g-qwpw-2jgv.json b/advisories/github-reviewed/2022/05/GHSA-c78g-qwpw-2jgv/GHSA-c78g-qwpw-2jgv.json index c0d26c84dc8..633b35496f5 100644 --- a/advisories/github-reviewed/2022/05/GHSA-c78g-qwpw-2jgv/GHSA-c78g-qwpw-2jgv.json +++ b/advisories/github-reviewed/2022/05/GHSA-c78g-qwpw-2jgv/GHSA-c78g-qwpw-2jgv.json @@ -8,9 +8,7 @@ ], "summary": "Improper Neutralization of Input During Web Page Generation in Apache Tomcat", "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Manager application in Apache Tomcat 6.0.12 through 6.0.29 and 7.0.0 through 7.0.4 allow remote attackers to inject arbitrary web script or HTML via the (1) orderBy or (2) sort parameter to sessionsList.jsp, or unspecified input to (3) sessionDetail.jsp or (4) java/org/apache/catalina/manager/JspHelper.java, related to use of untrusted web applications.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-fxj8-cqcp-3vgq/GHSA-fxj8-cqcp-3vgq.json b/advisories/github-reviewed/2022/05/GHSA-fxj8-cqcp-3vgq/GHSA-fxj8-cqcp-3vgq.json index 50c53fc1f2a..19d1e1fe892 100644 --- a/advisories/github-reviewed/2022/05/GHSA-fxj8-cqcp-3vgq/GHSA-fxj8-cqcp-3vgq.json +++ b/advisories/github-reviewed/2022/05/GHSA-fxj8-cqcp-3vgq/GHSA-fxj8-cqcp-3vgq.json @@ -8,9 +8,7 @@ ], "summary": "Jenkins cross-site scripting (XSS) vulnerability", "details": "Cross-site scripting (XSS) vulnerability in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to inject arbitrary web script or HTML via the iconSize cookie.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-gw85-4gmf-m7rh/GHSA-gw85-4gmf-m7rh.json b/advisories/github-reviewed/2022/05/GHSA-gw85-4gmf-m7rh/GHSA-gw85-4gmf-m7rh.json index 2c08dd75337..0bd5016cd52 100644 --- a/advisories/github-reviewed/2022/05/GHSA-gw85-4gmf-m7rh/GHSA-gw85-4gmf-m7rh.json +++ b/advisories/github-reviewed/2022/05/GHSA-gw85-4gmf-m7rh/GHSA-gw85-4gmf-m7rh.json @@ -8,9 +8,7 @@ ], "summary": "Exposure of Sensitive Information to an Unauthorized Actor in Apache HttpClient", "details": "Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to the origin server, which allows remote web servers to obtain sensitive information by logging this header.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-p4mx-p49m-8rw4/GHSA-p4mx-p49m-8rw4.json b/advisories/github-reviewed/2022/05/GHSA-p4mx-p49m-8rw4/GHSA-p4mx-p49m-8rw4.json index 15a91cfcab6..c83275fa7d4 100644 --- a/advisories/github-reviewed/2022/05/GHSA-p4mx-p49m-8rw4/GHSA-p4mx-p49m-8rw4.json +++ b/advisories/github-reviewed/2022/05/GHSA-p4mx-p49m-8rw4/GHSA-p4mx-p49m-8rw4.json @@ -8,9 +8,7 @@ ], "summary": "Improper Neutralization of Input During Web Page Generation in JavaMelody", "details": "Cross-site scripting (XSS) vulnerability in HtmlSessionInformationsReport.java in JavaMelody 1.46 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted X-Forwarded-For header.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-qx6h-9567-5fqw/GHSA-qx6h-9567-5fqw.json b/advisories/github-reviewed/2022/05/GHSA-qx6h-9567-5fqw/GHSA-qx6h-9567-5fqw.json index 045a763c689..4c1222cf199 100644 --- a/advisories/github-reviewed/2022/05/GHSA-qx6h-9567-5fqw/GHSA-qx6h-9567-5fqw.json +++ b/advisories/github-reviewed/2022/05/GHSA-qx6h-9567-5fqw/GHSA-qx6h-9567-5fqw.json @@ -8,9 +8,7 @@ ], "summary": "Arbitrary file write in Apache Commons Fileupload", "details": "The DiskFileItem class in Apache Commons FileUpload, as used in Red Hat JBoss BRMS 5.3.1; JBoss Portal 4.3 CP07, 5.2.2, and 6.0.0; and Red Hat JBoss Web Server 1.0.2 allows remote attackers to write to arbitrary files via a NULL byte in a file name in a serialized instance.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-rp9p-863f-9c4h/GHSA-rp9p-863f-9c4h.json b/advisories/github-reviewed/2022/05/GHSA-rp9p-863f-9c4h/GHSA-rp9p-863f-9c4h.json index 8d989034fac..65ae1bc40d3 100644 --- a/advisories/github-reviewed/2022/05/GHSA-rp9p-863f-9c4h/GHSA-rp9p-863f-9c4h.json +++ b/advisories/github-reviewed/2022/05/GHSA-rp9p-863f-9c4h/GHSA-rp9p-863f-9c4h.json @@ -8,9 +8,7 @@ ], "summary": "Cross-site Scripting in Apache ActiveMQ", "details": "Multiple cross-site scripting (XSS) vulnerabilities in the web demos in Apache ActiveMQ before 5.8.0 allow remote attackers to inject arbitrary web script or HTML via (1) the refresh parameter to PortfolioPublishServlet.java (aka demo/portfolioPublish or Market Data Publisher), or vectors involving (2) debug logs or (3) subscribe messages in webapp/websocket/chat.js. NOTE: AMQ-4124 is covered by CVE-2012-6551.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-vpr3-f594-mg5g/GHSA-vpr3-f594-mg5g.json b/advisories/github-reviewed/2022/05/GHSA-vpr3-f594-mg5g/GHSA-vpr3-f594-mg5g.json index e804174ecf9..7a8699dcce2 100644 --- a/advisories/github-reviewed/2022/05/GHSA-vpr3-f594-mg5g/GHSA-vpr3-f594-mg5g.json +++ b/advisories/github-reviewed/2022/05/GHSA-vpr3-f594-mg5g/GHSA-vpr3-f594-mg5g.json @@ -8,9 +8,7 @@ ], "summary": "Improper Control of Generation of Code ('Code Injection') in Spring Framework", "details": "SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote attackers to execute arbitrary code via an HTTP request containing `class.classLoader.URLs[0]=jar:` followed by a URL of a crafted .jar file.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-whmq-v94q-34p9/GHSA-whmq-v94q-34p9.json b/advisories/github-reviewed/2022/05/GHSA-whmq-v94q-34p9/GHSA-whmq-v94q-34p9.json index 5262afedb01..e58df49d09c 100644 --- a/advisories/github-reviewed/2022/05/GHSA-whmq-v94q-34p9/GHSA-whmq-v94q-34p9.json +++ b/advisories/github-reviewed/2022/05/GHSA-whmq-v94q-34p9/GHSA-whmq-v94q-34p9.json @@ -8,9 +8,7 @@ ], "summary": "Improper Control of Generation of Code in Apache Struts", "details": "Apache Struts Showcase App 2.0.0 through 2.3.13, as used in Struts 2 before 2.3.14.3, allows remote attackers to execute arbitrary OGNL code via a crafted parameter name that is not properly handled when invoking a redirect.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/12/GHSA-6x49-w35h-wqrj/GHSA-6x49-w35h-wqrj.json b/advisories/github-reviewed/2023/12/GHSA-6x49-w35h-wqrj/GHSA-6x49-w35h-wqrj.json index ee7f84fc5a6..cf34e6a5bd4 100644 --- a/advisories/github-reviewed/2023/12/GHSA-6x49-w35h-wqrj/GHSA-6x49-w35h-wqrj.json +++ b/advisories/github-reviewed/2023/12/GHSA-6x49-w35h-wqrj/GHSA-6x49-w35h-wqrj.json @@ -8,9 +8,7 @@ ], "summary": "Bypass serialize checks in Apache Dubbo", "details": "A deserialization vulnerability existed when decode a malicious package.This issue affects Apache Dubbo: from 3.1.0 through 3.1.10, from 3.2.0 through 3.2.4.\n\nUsers are recommended to upgrade to the latest version, which fixes the issue.\n\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/unreviewed/2021/12/GHSA-5q95-22v3-59qw/GHSA-5q95-22v3-59qw.json b/advisories/unreviewed/2021/12/GHSA-5q95-22v3-59qw/GHSA-5q95-22v3-59qw.json index aa42eabb993..685a63e4c4b 100644 --- a/advisories/unreviewed/2021/12/GHSA-5q95-22v3-59qw/GHSA-5q95-22v3-59qw.json +++ b/advisories/unreviewed/2021/12/GHSA-5q95-22v3-59qw/GHSA-5q95-22v3-59qw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2021/12/GHSA-85p4-xh3v-w37r/GHSA-85p4-xh3v-w37r.json b/advisories/unreviewed/2021/12/GHSA-85p4-xh3v-w37r/GHSA-85p4-xh3v-w37r.json index b6eb2eed201..170c11eff27 100644 --- a/advisories/unreviewed/2021/12/GHSA-85p4-xh3v-w37r/GHSA-85p4-xh3v-w37r.json +++ b/advisories/unreviewed/2021/12/GHSA-85p4-xh3v-w37r/GHSA-85p4-xh3v-w37r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2021/12/GHSA-wh99-p8pv-5qjw/GHSA-wh99-p8pv-5qjw.json b/advisories/unreviewed/2021/12/GHSA-wh99-p8pv-5qjw/GHSA-wh99-p8pv-5qjw.json index a36789861d6..eba8453bbad 100644 --- a/advisories/unreviewed/2021/12/GHSA-wh99-p8pv-5qjw/GHSA-wh99-p8pv-5qjw.json +++ b/advisories/unreviewed/2021/12/GHSA-wh99-p8pv-5qjw/GHSA-wh99-p8pv-5qjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/02/GHSA-8hg6-3x59-7xjr/GHSA-8hg6-3x59-7xjr.json b/advisories/unreviewed/2022/02/GHSA-8hg6-3x59-7xjr/GHSA-8hg6-3x59-7xjr.json index 0e0f0b464f1..1983703d45e 100644 --- a/advisories/unreviewed/2022/02/GHSA-8hg6-3x59-7xjr/GHSA-8hg6-3x59-7xjr.json +++ b/advisories/unreviewed/2022/02/GHSA-8hg6-3x59-7xjr/GHSA-8hg6-3x59-7xjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-7xxw-22f3-9pq3/GHSA-7xxw-22f3-9pq3.json b/advisories/unreviewed/2022/04/GHSA-7xxw-22f3-9pq3/GHSA-7xxw-22f3-9pq3.json index f8111881c2f..eb5e911072d 100644 --- a/advisories/unreviewed/2022/04/GHSA-7xxw-22f3-9pq3/GHSA-7xxw-22f3-9pq3.json +++ b/advisories/unreviewed/2022/04/GHSA-7xxw-22f3-9pq3/GHSA-7xxw-22f3-9pq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "WEB", diff --git a/advisories/unreviewed/2022/04/GHSA-942q-qwfh-7rjq/GHSA-942q-qwfh-7rjq.json b/advisories/unreviewed/2022/04/GHSA-942q-qwfh-7rjq/GHSA-942q-qwfh-7rjq.json index e9c8ccfa078..a3cfc4176c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-942q-qwfh-7rjq/GHSA-942q-qwfh-7rjq.json +++ b/advisories/unreviewed/2022/04/GHSA-942q-qwfh-7rjq/GHSA-942q-qwfh-7rjq.json @@ -7,12 +7,8 @@ "CVE-2004-0150" ], "details": "Buffer overflow in the getaddrinfo function in Python 2.2 before 2.2.2, when IPv6 support is disabled, allows remote attackers to execute arbitrary code via an IPv6 address that is obtained using DNS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-9p8r-v33g-4939/GHSA-9p8r-v33g-4939.json b/advisories/unreviewed/2022/04/GHSA-9p8r-v33g-4939/GHSA-9p8r-v33g-4939.json index 71016cb97e9..3f6597a57a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-9p8r-v33g-4939/GHSA-9p8r-v33g-4939.json +++ b/advisories/unreviewed/2022/04/GHSA-9p8r-v33g-4939/GHSA-9p8r-v33g-4939.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-hjgj-jq86-rpmm/GHSA-hjgj-jq86-rpmm.json b/advisories/unreviewed/2022/04/GHSA-hjgj-jq86-rpmm/GHSA-hjgj-jq86-rpmm.json index 4abfb3a50f7..6c6b3509433 100644 --- a/advisories/unreviewed/2022/04/GHSA-hjgj-jq86-rpmm/GHSA-hjgj-jq86-rpmm.json +++ b/advisories/unreviewed/2022/04/GHSA-hjgj-jq86-rpmm/GHSA-hjgj-jq86-rpmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-m8cx-f5qj-q68r/GHSA-m8cx-f5qj-q68r.json b/advisories/unreviewed/2022/04/GHSA-m8cx-f5qj-q68r/GHSA-m8cx-f5qj-q68r.json index 2b11f1916aa..65bcdbff427 100644 --- a/advisories/unreviewed/2022/04/GHSA-m8cx-f5qj-q68r/GHSA-m8cx-f5qj-q68r.json +++ b/advisories/unreviewed/2022/04/GHSA-m8cx-f5qj-q68r/GHSA-m8cx-f5qj-q68r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mp9h-8rrx-27f5/GHSA-mp9h-8rrx-27f5.json b/advisories/unreviewed/2022/04/GHSA-mp9h-8rrx-27f5/GHSA-mp9h-8rrx-27f5.json index 87712901d0f..558eb604748 100644 --- a/advisories/unreviewed/2022/04/GHSA-mp9h-8rrx-27f5/GHSA-mp9h-8rrx-27f5.json +++ b/advisories/unreviewed/2022/04/GHSA-mp9h-8rrx-27f5/GHSA-mp9h-8rrx-27f5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-wwj7-gfw4-fp6f/GHSA-wwj7-gfw4-fp6f.json b/advisories/unreviewed/2022/04/GHSA-wwj7-gfw4-fp6f/GHSA-wwj7-gfw4-fp6f.json index d5c1fc4483b..01d3a4d3ec2 100644 --- a/advisories/unreviewed/2022/04/GHSA-wwj7-gfw4-fp6f/GHSA-wwj7-gfw4-fp6f.json +++ b/advisories/unreviewed/2022/04/GHSA-wwj7-gfw4-fp6f/GHSA-wwj7-gfw4-fp6f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "WEB", diff --git a/advisories/unreviewed/2022/05/GHSA-22hq-7p4w-fm2g/GHSA-22hq-7p4w-fm2g.json b/advisories/unreviewed/2022/05/GHSA-22hq-7p4w-fm2g/GHSA-22hq-7p4w-fm2g.json index c09c8240c59..68b5de9c85b 100644 --- a/advisories/unreviewed/2022/05/GHSA-22hq-7p4w-fm2g/GHSA-22hq-7p4w-fm2g.json +++ b/advisories/unreviewed/2022/05/GHSA-22hq-7p4w-fm2g/GHSA-22hq-7p4w-fm2g.json @@ -7,12 +7,8 @@ "CVE-2009-4376" ], "details": "Buffer overflow in the daintree_sna_read function in the Daintree SNA file parser in Wireshark 1.2.0 through 1.2.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24hw-jxqf-4vc6/GHSA-24hw-jxqf-4vc6.json b/advisories/unreviewed/2022/05/GHSA-24hw-jxqf-4vc6/GHSA-24hw-jxqf-4vc6.json index a9ea7c0e72d..88da5144971 100644 --- a/advisories/unreviewed/2022/05/GHSA-24hw-jxqf-4vc6/GHSA-24hw-jxqf-4vc6.json +++ b/advisories/unreviewed/2022/05/GHSA-24hw-jxqf-4vc6/GHSA-24hw-jxqf-4vc6.json @@ -7,12 +7,8 @@ "CVE-2009-4925" ], "details": "Multiple SQL injection vulnerabilities in Portale e-commerce Creasito (aka creasito e-commerce content manager) 1.3.16, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the username parameter to (1) admin/checkuser.php and (2) checkuser.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24jq-h48j-g592/GHSA-24jq-h48j-g592.json b/advisories/unreviewed/2022/05/GHSA-24jq-h48j-g592/GHSA-24jq-h48j-g592.json index 926f2e93168..3826e57cdfd 100644 --- a/advisories/unreviewed/2022/05/GHSA-24jq-h48j-g592/GHSA-24jq-h48j-g592.json +++ b/advisories/unreviewed/2022/05/GHSA-24jq-h48j-g592/GHSA-24jq-h48j-g592.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-25fh-g53r-vqxf/GHSA-25fh-g53r-vqxf.json b/advisories/unreviewed/2022/05/GHSA-25fh-g53r-vqxf/GHSA-25fh-g53r-vqxf.json index b472c98082e..63530f60076 100644 --- a/advisories/unreviewed/2022/05/GHSA-25fh-g53r-vqxf/GHSA-25fh-g53r-vqxf.json +++ b/advisories/unreviewed/2022/05/GHSA-25fh-g53r-vqxf/GHSA-25fh-g53r-vqxf.json @@ -7,12 +7,8 @@ "CVE-2009-4994" ], "details": "Cross-site scripting (XSS) vulnerability in frmKBSearch.aspx in SmarterTools SmarterTrack before 4.0.3504 allows remote attackers to inject arbitrary web script or HTML via the search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-25jq-3vh4-pgv4/GHSA-25jq-3vh4-pgv4.json b/advisories/unreviewed/2022/05/GHSA-25jq-3vh4-pgv4/GHSA-25jq-3vh4-pgv4.json index 4a4c43609d5..2c169b5d7c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-25jq-3vh4-pgv4/GHSA-25jq-3vh4-pgv4.json +++ b/advisories/unreviewed/2022/05/GHSA-25jq-3vh4-pgv4/GHSA-25jq-3vh4-pgv4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -83,9 +81,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-26xx-jvvm-7pfr/GHSA-26xx-jvvm-7pfr.json b/advisories/unreviewed/2022/05/GHSA-26xx-jvvm-7pfr/GHSA-26xx-jvvm-7pfr.json index c010c20f83f..e6c7e601994 100644 --- a/advisories/unreviewed/2022/05/GHSA-26xx-jvvm-7pfr/GHSA-26xx-jvvm-7pfr.json +++ b/advisories/unreviewed/2022/05/GHSA-26xx-jvvm-7pfr/GHSA-26xx-jvvm-7pfr.json @@ -7,12 +7,8 @@ "CVE-2009-4949" ], "details": "SQL injection vulnerability in the Store Locator extension before 1.2.8 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2759-f2p3-358h/GHSA-2759-f2p3-358h.json b/advisories/unreviewed/2022/05/GHSA-2759-f2p3-358h/GHSA-2759-f2p3-358h.json index ed91d63584a..cafddc30e34 100644 --- a/advisories/unreviewed/2022/05/GHSA-2759-f2p3-358h/GHSA-2759-f2p3-358h.json +++ b/advisories/unreviewed/2022/05/GHSA-2759-f2p3-358h/GHSA-2759-f2p3-358h.json @@ -7,12 +7,8 @@ "CVE-2009-4338" ], "details": "SQL injection vulnerability in the Flash SlideShow (slideshow) extension 0.2.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27j2-7hhw-ghwm/GHSA-27j2-7hhw-ghwm.json b/advisories/unreviewed/2022/05/GHSA-27j2-7hhw-ghwm/GHSA-27j2-7hhw-ghwm.json index 4d287bbbd17..cf470b323dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-27j2-7hhw-ghwm/GHSA-27j2-7hhw-ghwm.json +++ b/advisories/unreviewed/2022/05/GHSA-27j2-7hhw-ghwm/GHSA-27j2-7hhw-ghwm.json @@ -7,12 +7,8 @@ "CVE-2009-4482" ], "details": "Buffer overflow in MediaServer.exe in TVersity 1.6 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by the vd_tversity module in VulnDisco Pack Professional 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27j4-63ww-f83g/GHSA-27j4-63ww-f83g.json b/advisories/unreviewed/2022/05/GHSA-27j4-63ww-f83g/GHSA-27j4-63ww-f83g.json index 901735bbced..9352145a8b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-27j4-63ww-f83g/GHSA-27j4-63ww-f83g.json +++ b/advisories/unreviewed/2022/05/GHSA-27j4-63ww-f83g/GHSA-27j4-63ww-f83g.json @@ -7,12 +7,8 @@ "CVE-2009-4812" ], "details": "Wolfram Research webMathematica allows remote attackers to obtain sensitive information via a direct request to the MSP script, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-28gw-j5j4-6f84/GHSA-28gw-j5j4-6f84.json b/advisories/unreviewed/2022/05/GHSA-28gw-j5j4-6f84/GHSA-28gw-j5j4-6f84.json index ef3acc949ff..78857cae171 100644 --- a/advisories/unreviewed/2022/05/GHSA-28gw-j5j4-6f84/GHSA-28gw-j5j4-6f84.json +++ b/advisories/unreviewed/2022/05/GHSA-28gw-j5j4-6f84/GHSA-28gw-j5j4-6f84.json @@ -7,12 +7,8 @@ "CVE-2009-5090" ], "details": "SQL injection vulnerability in editcomments.php in Bloggeruniverse Beta 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter and possibly other unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29jg-25r7-xx7x/GHSA-29jg-25r7-xx7x.json b/advisories/unreviewed/2022/05/GHSA-29jg-25r7-xx7x/GHSA-29jg-25r7-xx7x.json index ce04586f533..dd1f2c7177d 100644 --- a/advisories/unreviewed/2022/05/GHSA-29jg-25r7-xx7x/GHSA-29jg-25r7-xx7x.json +++ b/advisories/unreviewed/2022/05/GHSA-29jg-25r7-xx7x/GHSA-29jg-25r7-xx7x.json @@ -7,12 +7,8 @@ "CVE-2009-4462" ], "details": "Stack-based buffer overflow in the NetBiterConfig utility (NetBiterConfig.exe) 1.3.0 for Intellicom NetBiter WebSCADA allows remote attackers to execute arbitrary code via a long hn (hostname) parameter in a crafted HICP-protocol UDP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29p8-pmq2-84v3/GHSA-29p8-pmq2-84v3.json b/advisories/unreviewed/2022/05/GHSA-29p8-pmq2-84v3/GHSA-29p8-pmq2-84v3.json index b3f1a2e84ed..74de4df6613 100644 --- a/advisories/unreviewed/2022/05/GHSA-29p8-pmq2-84v3/GHSA-29p8-pmq2-84v3.json +++ b/advisories/unreviewed/2022/05/GHSA-29p8-pmq2-84v3/GHSA-29p8-pmq2-84v3.json @@ -7,12 +7,8 @@ "CVE-2009-4569" ], "details": "SQL injection vulnerability in elkagroup Image Gallery allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI under news/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29vj-qphh-jwr9/GHSA-29vj-qphh-jwr9.json b/advisories/unreviewed/2022/05/GHSA-29vj-qphh-jwr9/GHSA-29vj-qphh-jwr9.json index 8e2f4704a2b..00c5ae2248a 100644 --- a/advisories/unreviewed/2022/05/GHSA-29vj-qphh-jwr9/GHSA-29vj-qphh-jwr9.json +++ b/advisories/unreviewed/2022/05/GHSA-29vj-qphh-jwr9/GHSA-29vj-qphh-jwr9.json @@ -7,12 +7,8 @@ "CVE-2009-4447" ], "details": "Jax Guestbook 3.5.0 allows remote attackers to bypass authentication and modify administrator settings via a direct request to admin/guestbook.admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2c8r-m99r-h2pj/GHSA-2c8r-m99r-h2pj.json b/advisories/unreviewed/2022/05/GHSA-2c8r-m99r-h2pj/GHSA-2c8r-m99r-h2pj.json index 64ddeab70cf..f0f2c235ae3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c8r-m99r-h2pj/GHSA-2c8r-m99r-h2pj.json +++ b/advisories/unreviewed/2022/05/GHSA-2c8r-m99r-h2pj/GHSA-2c8r-m99r-h2pj.json @@ -7,12 +7,8 @@ "CVE-2009-4650" ], "details": "SQL injection vulnerability in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the articleId parameter in a default action to index2.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2chv-fjr5-r6p4/GHSA-2chv-fjr5-r6p4.json b/advisories/unreviewed/2022/05/GHSA-2chv-fjr5-r6p4/GHSA-2chv-fjr5-r6p4.json index f3111b39ae2..4a438b3adde 100644 --- a/advisories/unreviewed/2022/05/GHSA-2chv-fjr5-r6p4/GHSA-2chv-fjr5-r6p4.json +++ b/advisories/unreviewed/2022/05/GHSA-2chv-fjr5-r6p4/GHSA-2chv-fjr5-r6p4.json @@ -7,12 +7,8 @@ "CVE-2009-4348" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Harold Bakker's NewsScript (HB-NS) 1.3 allows remote attackers to inject arbitrary web script or HTML via the topic parameter in a topic action, a different vector than CVE-2006-2146.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cxh-2m56-vm73/GHSA-2cxh-2m56-vm73.json b/advisories/unreviewed/2022/05/GHSA-2cxh-2m56-vm73/GHSA-2cxh-2m56-vm73.json index 7fe8e4b7d28..663b837a0e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cxh-2m56-vm73/GHSA-2cxh-2m56-vm73.json +++ b/advisories/unreviewed/2022/05/GHSA-2cxh-2m56-vm73/GHSA-2cxh-2m56-vm73.json @@ -7,12 +7,8 @@ "CVE-2009-4910" ], "details": "Cross-site scripting (XSS) vulnerability in the WebVPN portal on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCsq78418.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fcr-q238-wpp8/GHSA-2fcr-q238-wpp8.json b/advisories/unreviewed/2022/05/GHSA-2fcr-q238-wpp8/GHSA-2fcr-q238-wpp8.json index 2b86a6036e5..ed5b8d4a407 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fcr-q238-wpp8/GHSA-2fcr-q238-wpp8.json +++ b/advisories/unreviewed/2022/05/GHSA-2fcr-q238-wpp8/GHSA-2fcr-q238-wpp8.json @@ -7,12 +7,8 @@ "CVE-2009-4743" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in history-storage.aspx in AfterLogic WebMail Pro 4.7.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) HistoryStorageObjectName and (2) HistoryKey parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g6v-2xh6-p5mw/GHSA-2g6v-2xh6-p5mw.json b/advisories/unreviewed/2022/05/GHSA-2g6v-2xh6-p5mw/GHSA-2g6v-2xh6-p5mw.json index 5a28fe9a097..f3f8ab32fdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g6v-2xh6-p5mw/GHSA-2g6v-2xh6-p5mw.json +++ b/advisories/unreviewed/2022/05/GHSA-2g6v-2xh6-p5mw/GHSA-2g6v-2xh6-p5mw.json @@ -7,12 +7,8 @@ "CVE-2009-4746" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Dreamlevels DreamPoll 3.1 allows remote attackers to inject arbitrary web script or HTML via the recordsPerPage parameter in a poll_default login action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g9h-3ggp-8xg3/GHSA-2g9h-3ggp-8xg3.json b/advisories/unreviewed/2022/05/GHSA-2g9h-3ggp-8xg3/GHSA-2g9h-3ggp-8xg3.json index 69130ee8e2f..8253f5bc763 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g9h-3ggp-8xg3/GHSA-2g9h-3ggp-8xg3.json +++ b/advisories/unreviewed/2022/05/GHSA-2g9h-3ggp-8xg3/GHSA-2g9h-3ggp-8xg3.json @@ -7,12 +7,8 @@ "CVE-2009-5066" ], "details": "twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2hf2-xw27-m59v/GHSA-2hf2-xw27-m59v.json b/advisories/unreviewed/2022/05/GHSA-2hf2-xw27-m59v/GHSA-2hf2-xw27-m59v.json index 122f461150f..f326461d1e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hf2-xw27-m59v/GHSA-2hf2-xw27-m59v.json +++ b/advisories/unreviewed/2022/05/GHSA-2hf2-xw27-m59v/GHSA-2hf2-xw27-m59v.json @@ -7,12 +7,8 @@ "CVE-2009-4735" ], "details": "SQL injection vulnerability in login.php in Allomani Audio & Video Library (Songs & Clips version) 2.7.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j5v-vvg9-5xx3/GHSA-2j5v-vvg9-5xx3.json b/advisories/unreviewed/2022/05/GHSA-2j5v-vvg9-5xx3/GHSA-2j5v-vvg9-5xx3.json index 6fb7c002b98..eb4e61f3af0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j5v-vvg9-5xx3/GHSA-2j5v-vvg9-5xx3.json +++ b/advisories/unreviewed/2022/05/GHSA-2j5v-vvg9-5xx3/GHSA-2j5v-vvg9-5xx3.json @@ -7,12 +7,8 @@ "CVE-2009-4578" ], "details": "Cross-site scripting (XSS) vulnerability in the Facileforms (com_facileforms) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemid parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mjv-mf39-rm6w/GHSA-2mjv-mf39-rm6w.json b/advisories/unreviewed/2022/05/GHSA-2mjv-mf39-rm6w/GHSA-2mjv-mf39-rm6w.json index a85aedb8e92..b0e3932a1c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mjv-mf39-rm6w/GHSA-2mjv-mf39-rm6w.json +++ b/advisories/unreviewed/2022/05/GHSA-2mjv-mf39-rm6w/GHSA-2mjv-mf39-rm6w.json @@ -7,12 +7,8 @@ "CVE-2009-4725" ], "details": "Directory traversal vulnerability in modules/aljazeera/admin/setup.php in Arab Portal 2.2 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mr4-2f9p-76x9/GHSA-2mr4-2f9p-76x9.json b/advisories/unreviewed/2022/05/GHSA-2mr4-2f9p-76x9/GHSA-2mr4-2f9p-76x9.json index f12cae2d498..9a06ab3e295 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mr4-2f9p-76x9/GHSA-2mr4-2f9p-76x9.json +++ b/advisories/unreviewed/2022/05/GHSA-2mr4-2f9p-76x9/GHSA-2mr4-2f9p-76x9.json @@ -7,12 +7,8 @@ "CVE-2009-4950" ], "details": "SQL injection vulnerability in the A21glossary Advanced Output (a21glossary_advanced_output) extension before 0.1.12 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2pcg-35vc-fm72/GHSA-2pcg-35vc-fm72.json b/advisories/unreviewed/2022/05/GHSA-2pcg-35vc-fm72/GHSA-2pcg-35vc-fm72.json index 06512d83c47..998d435c824 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pcg-35vc-fm72/GHSA-2pcg-35vc-fm72.json +++ b/advisories/unreviewed/2022/05/GHSA-2pcg-35vc-fm72/GHSA-2pcg-35vc-fm72.json @@ -7,12 +7,8 @@ "CVE-2009-4651" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allow remote attackers to inject arbitrary web script or HTML via the (1) color, (2) img, or (3) url BBCode tags in unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qc8-39fh-f2v4/GHSA-2qc8-39fh-f2v4.json b/advisories/unreviewed/2022/05/GHSA-2qc8-39fh-f2v4/GHSA-2qc8-39fh-f2v4.json index 90f23539948..e81f6869795 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qc8-39fh-f2v4/GHSA-2qc8-39fh-f2v4.json +++ b/advisories/unreviewed/2022/05/GHSA-2qc8-39fh-f2v4/GHSA-2qc8-39fh-f2v4.json @@ -7,12 +7,8 @@ "CVE-2009-4471" ], "details": "Multiple PHP remote file inclusion vulnerabilities in FreeSchool 1.1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the CLASSPATH parameter to (1) bib_form.php, (2) bib_pldetails.php, (3) bib_plform.php, (4) bib_plsearchc.php, (5) bib_plsearchs.php, (6) bib_save.php, (7) bib_searchc.php, (8) bib_searchs.php, (9) edi_form.php, (10) edi_save.php, (11) gen_form.php, (12) gen_save.php, (13) lin_form.php, (14) lin_save.php, (15) luo_form.php, (16) luo_save.php, (17) sog_form.php, or (18) sog_save.php in biblioteca/; (19) cal_insert.php, (20) cal_save.php, or (21) cal_saveactivity.php in calendario/; (22) circolari/cir_save.php; or (23) modulistica/mdl_save.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qjg-hjm9-x7mg/GHSA-2qjg-hjm9-x7mg.json b/advisories/unreviewed/2022/05/GHSA-2qjg-hjm9-x7mg/GHSA-2qjg-hjm9-x7mg.json index 1dfd2810a56..5e2c97dd3b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qjg-hjm9-x7mg/GHSA-2qjg-hjm9-x7mg.json +++ b/advisories/unreviewed/2022/05/GHSA-2qjg-hjm9-x7mg/GHSA-2qjg-hjm9-x7mg.json @@ -7,12 +7,8 @@ "CVE-2009-4834" ], "details": "lib.php in Zeroboard 4.1 pl7 allows remote attackers to execute arbitrary PHP code via a crafted parameter name, possibly related to now_connect.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r9m-48qp-xv3j/GHSA-2r9m-48qp-xv3j.json b/advisories/unreviewed/2022/05/GHSA-2r9m-48qp-xv3j/GHSA-2r9m-48qp-xv3j.json index 15cf2e2b650..f9e0f5d3f1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r9m-48qp-xv3j/GHSA-2r9m-48qp-xv3j.json +++ b/advisories/unreviewed/2022/05/GHSA-2r9m-48qp-xv3j/GHSA-2r9m-48qp-xv3j.json @@ -7,12 +7,8 @@ "CVE-2009-4604" ], "details": "PHP remote file inclusion vulnerability in mamboleto.php in the Fernando Soares Mamboleto (com_mamboleto) component 2.0 RC3 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rrh-f9c7-cc73/GHSA-2rrh-f9c7-cc73.json b/advisories/unreviewed/2022/05/GHSA-2rrh-f9c7-cc73/GHSA-2rrh-f9c7-cc73.json index 02b5fe91cf8..7efebfc5856 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rrh-f9c7-cc73/GHSA-2rrh-f9c7-cc73.json +++ b/advisories/unreviewed/2022/05/GHSA-2rrh-f9c7-cc73/GHSA-2rrh-f9c7-cc73.json @@ -7,12 +7,8 @@ "CVE-2009-4889" ], "details": "SQL injection vulnerability in books.php in the Book Panel (book_panel) module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the bookid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2v6m-44mf-8673/GHSA-2v6m-44mf-8673.json b/advisories/unreviewed/2022/05/GHSA-2v6m-44mf-8673/GHSA-2v6m-44mf-8673.json index afb8df8108d..8eb7fe76d5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2v6m-44mf-8673/GHSA-2v6m-44mf-8673.json +++ b/advisories/unreviewed/2022/05/GHSA-2v6m-44mf-8673/GHSA-2v6m-44mf-8673.json @@ -7,12 +7,8 @@ "CVE-2009-4830" ], "details": "Unspecified vulnerability in OpenX 2.8.1 and 2.8.2 allows remote attackers to bypass authentication and obtain access to an Administrator account via unknown vectors, possibly related to www/admin/install.php, www/admin/install-plugins.php, and other www/admin/ files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2v9j-jrj4-c33f/GHSA-2v9j-jrj4-c33f.json b/advisories/unreviewed/2022/05/GHSA-2v9j-jrj4-c33f/GHSA-2v9j-jrj4-c33f.json index d52027e8cf3..9626494cafb 100644 --- a/advisories/unreviewed/2022/05/GHSA-2v9j-jrj4-c33f/GHSA-2v9j-jrj4-c33f.json +++ b/advisories/unreviewed/2022/05/GHSA-2v9j-jrj4-c33f/GHSA-2v9j-jrj4-c33f.json @@ -7,12 +7,8 @@ "CVE-2009-4968" ], "details": "SQL injection vulnerability in the Event Registration (event_registr) extension 1.0.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vcq-4wwg-6wg7/GHSA-2vcq-4wwg-6wg7.json b/advisories/unreviewed/2022/05/GHSA-2vcq-4wwg-6wg7/GHSA-2vcq-4wwg-6wg7.json index 1326e431df1..773084e8a73 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vcq-4wwg-6wg7/GHSA-2vcq-4wwg-6wg7.json +++ b/advisories/unreviewed/2022/05/GHSA-2vcq-4wwg-6wg7/GHSA-2vcq-4wwg-6wg7.json @@ -7,12 +7,8 @@ "CVE-2009-4605" ], "details": "scripts/setup.php (aka the setup script) in phpMyAdmin 2.11.x before 2.11.10 calls the unserialize function on the values of the (1) configuration and (2) v[0] parameters, which might allow remote attackers to conduct cross-site request forgery (CSRF) attacks via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vrg-4996-q2mw/GHSA-2vrg-4996-q2mw.json b/advisories/unreviewed/2022/05/GHSA-2vrg-4996-q2mw/GHSA-2vrg-4996-q2mw.json index 547f9497934..1c36f934b55 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vrg-4996-q2mw/GHSA-2vrg-4996-q2mw.json +++ b/advisories/unreviewed/2022/05/GHSA-2vrg-4996-q2mw/GHSA-2vrg-4996-q2mw.json @@ -7,12 +7,8 @@ "CVE-2009-5060" ], "details": "Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.11 services for Lotus Domino might allow remote authenticated users to cause a denial of service (daemon crash) by accessing an entry in a calendar, aka SPR MZHA7SEBJX.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vx8-24mr-f6q5/GHSA-2vx8-24mr-f6q5.json b/advisories/unreviewed/2022/05/GHSA-2vx8-24mr-f6q5/GHSA-2vx8-24mr-f6q5.json index 0176781e4fd..7ad30479250 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vx8-24mr-f6q5/GHSA-2vx8-24mr-f6q5.json +++ b/advisories/unreviewed/2022/05/GHSA-2vx8-24mr-f6q5/GHSA-2vx8-24mr-f6q5.json @@ -7,12 +7,8 @@ "CVE-2009-4678" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Winn Guestbook 2.4 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2w72-4g9j-9q3p/GHSA-2w72-4g9j-9q3p.json b/advisories/unreviewed/2022/05/GHSA-2w72-4g9j-9q3p/GHSA-2w72-4g9j-9q3p.json index 0c8f8c6fb1c..015fec0a055 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w72-4g9j-9q3p/GHSA-2w72-4g9j-9q3p.json +++ b/advisories/unreviewed/2022/05/GHSA-2w72-4g9j-9q3p/GHSA-2w72-4g9j-9q3p.json @@ -7,12 +7,8 @@ "CVE-2009-4580" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Hasta Blog 2.3 allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) yorumyaz.php and (2) blog.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wc3-pmh3-j9cq/GHSA-2wc3-pmh3-j9cq.json b/advisories/unreviewed/2022/05/GHSA-2wc3-pmh3-j9cq/GHSA-2wc3-pmh3-j9cq.json index 2f07d3ded8a..f6213346b16 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wc3-pmh3-j9cq/GHSA-2wc3-pmh3-j9cq.json +++ b/advisories/unreviewed/2022/05/GHSA-2wc3-pmh3-j9cq/GHSA-2wc3-pmh3-j9cq.json @@ -7,12 +7,8 @@ "CVE-2009-4739" ], "details": "PHP remote file inclusion vulnerability in index.php in SkaDate Dating allows remote attackers to execute arbitrary PHP code via a URL in the language_id parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2wvq-xm2v-3mr6/GHSA-2wvq-xm2v-3mr6.json b/advisories/unreviewed/2022/05/GHSA-2wvq-xm2v-3mr6/GHSA-2wvq-xm2v-3mr6.json index dedef2291b7..332e724af97 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wvq-xm2v-3mr6/GHSA-2wvq-xm2v-3mr6.json +++ b/advisories/unreviewed/2022/05/GHSA-2wvq-xm2v-3mr6/GHSA-2wvq-xm2v-3mr6.json @@ -7,12 +7,8 @@ "CVE-2009-4847" ], "details": "Deliantra Server before 2.82 allows remote authenticated users to cause a denial of service (daemon crash) via vectors involving an empty treasure list.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x7c-q7mp-cf9c/GHSA-2x7c-q7mp-cf9c.json b/advisories/unreviewed/2022/05/GHSA-2x7c-q7mp-cf9c/GHSA-2x7c-q7mp-cf9c.json index c1fce84e1c3..8c1ada9276a 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x7c-q7mp-cf9c/GHSA-2x7c-q7mp-cf9c.json +++ b/advisories/unreviewed/2022/05/GHSA-2x7c-q7mp-cf9c/GHSA-2x7c-q7mp-cf9c.json @@ -7,12 +7,8 @@ "CVE-2009-4793" ], "details": "Unrestricted file upload vulnerability in adminpanel/scripts/addphotos.php in BandSite CMS 1.1.4 allows remote authenticated administrators to execute arbitrary PHP code by uploading a file with an executable extension via an addphotos action to adminpanel/index.php, and then accessing the file via a direct request with an images/gallery/ directory name. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2x93-jqqv-5cfc/GHSA-2x93-jqqv-5cfc.json b/advisories/unreviewed/2022/05/GHSA-2x93-jqqv-5cfc/GHSA-2x93-jqqv-5cfc.json index 5d0cfff86af..fb07ce41b52 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x93-jqqv-5cfc/GHSA-2x93-jqqv-5cfc.json +++ b/advisories/unreviewed/2022/05/GHSA-2x93-jqqv-5cfc/GHSA-2x93-jqqv-5cfc.json @@ -7,12 +7,8 @@ "CVE-2009-4892" ], "details": "SQL injection vulnerability in Content Management System WEBjump! allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) portfolio_genre.php and (2) news_id.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2xv4-pww5-q9mh/GHSA-2xv4-pww5-q9mh.json b/advisories/unreviewed/2022/05/GHSA-2xv4-pww5-q9mh/GHSA-2xv4-pww5-q9mh.json index 9c0043284bf..ccd2d48ea56 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xv4-pww5-q9mh/GHSA-2xv4-pww5-q9mh.json +++ b/advisories/unreviewed/2022/05/GHSA-2xv4-pww5-q9mh/GHSA-2xv4-pww5-q9mh.json @@ -7,12 +7,8 @@ "CVE-2009-4993" ], "details": "PHP remote file inclusion vulnerability in home.php in LM Starmail Paidmail 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32c2-3jm4-f9rp/GHSA-32c2-3jm4-f9rp.json b/advisories/unreviewed/2022/05/GHSA-32c2-3jm4-f9rp/GHSA-32c2-3jm4-f9rp.json index fa809a02dac..7ed4457d5cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-32c2-3jm4-f9rp/GHSA-32c2-3jm4-f9rp.json +++ b/advisories/unreviewed/2022/05/GHSA-32c2-3jm4-f9rp/GHSA-32c2-3jm4-f9rp.json @@ -7,12 +7,8 @@ "CVE-2009-4701" ], "details": "SQL injection vulnerability in the Myth download (myth_download) extension 0.1.0 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32cq-h35v-hv9g/GHSA-32cq-h35v-hv9g.json b/advisories/unreviewed/2022/05/GHSA-32cq-h35v-hv9g/GHSA-32cq-h35v-hv9g.json index ddc7b2bee77..4bbed72889c 100644 --- a/advisories/unreviewed/2022/05/GHSA-32cq-h35v-hv9g/GHSA-32cq-h35v-hv9g.json +++ b/advisories/unreviewed/2022/05/GHSA-32cq-h35v-hv9g/GHSA-32cq-h35v-hv9g.json @@ -7,12 +7,8 @@ "CVE-2009-4531" ], "details": "httpdx 1.4.4 and earlier allows remote attackers to obtain the source code for a web page by appending a . (dot) character to the URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-33m6-wpwp-3cw5/GHSA-33m6-wpwp-3cw5.json b/advisories/unreviewed/2022/05/GHSA-33m6-wpwp-3cw5/GHSA-33m6-wpwp-3cw5.json index 368ccb5ce72..163fb25a3b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-33m6-wpwp-3cw5/GHSA-33m6-wpwp-3cw5.json +++ b/advisories/unreviewed/2022/05/GHSA-33m6-wpwp-3cw5/GHSA-33m6-wpwp-3cw5.json @@ -7,12 +7,8 @@ "CVE-2009-4457" ], "details": "Multiple unspecified vulnerabilities in the Vsftpd Webmin module before 1.3b for the Vsftpd server have unknown impact and attack vectors related to \"Some security issues.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-342q-x494-83vw/GHSA-342q-x494-83vw.json b/advisories/unreviewed/2022/05/GHSA-342q-x494-83vw/GHSA-342q-x494-83vw.json index 4f2771ab483..60b50843a8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-342q-x494-83vw/GHSA-342q-x494-83vw.json +++ b/advisories/unreviewed/2022/05/GHSA-342q-x494-83vw/GHSA-342q-x494-83vw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-343v-vpw9-hxqj/GHSA-343v-vpw9-hxqj.json b/advisories/unreviewed/2022/05/GHSA-343v-vpw9-hxqj/GHSA-343v-vpw9-hxqj.json index fbe67b3539e..5276f51a179 100644 --- a/advisories/unreviewed/2022/05/GHSA-343v-vpw9-hxqj/GHSA-343v-vpw9-hxqj.json +++ b/advisories/unreviewed/2022/05/GHSA-343v-vpw9-hxqj/GHSA-343v-vpw9-hxqj.json @@ -7,12 +7,8 @@ "CVE-2009-4718" ], "details": "SQL injection vulnerability in visitorduration.php in Gonafish WebStatCaffe allows remote attackers to execute arbitrary SQL commands via the nodayshow parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-348p-j6mh-fgrx/GHSA-348p-j6mh-fgrx.json b/advisories/unreviewed/2022/05/GHSA-348p-j6mh-fgrx/GHSA-348p-j6mh-fgrx.json index 1bb8eff34a8..b33bf9e7dab 100644 --- a/advisories/unreviewed/2022/05/GHSA-348p-j6mh-fgrx/GHSA-348p-j6mh-fgrx.json +++ b/advisories/unreviewed/2022/05/GHSA-348p-j6mh-fgrx/GHSA-348p-j6mh-fgrx.json @@ -7,12 +7,8 @@ "CVE-2009-4253" ], "details": "Cross-site scripting (XSS) vulnerability in dspStats.php in PowerPhlogger 2.2.5 allows remote attackers to inject arbitrary web script or HTML via the edit parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-356h-69fm-h3qg/GHSA-356h-69fm-h3qg.json b/advisories/unreviewed/2022/05/GHSA-356h-69fm-h3qg/GHSA-356h-69fm-h3qg.json index c0e416f4185..6d7bee6f48b 100644 --- a/advisories/unreviewed/2022/05/GHSA-356h-69fm-h3qg/GHSA-356h-69fm-h3qg.json +++ b/advisories/unreviewed/2022/05/GHSA-356h-69fm-h3qg/GHSA-356h-69fm-h3qg.json @@ -7,12 +7,8 @@ "CVE-2009-4350" ], "details": "SQL injection vulnerability in index.php in Arctic Issue Tracker 2.1.1 allows remote attackers to execute arbitrary SQL commands via the (1) matchings[id] or (2) matchings[title] parameters in a Login action to an unspecified program, or (3) the matchings[id] parameter in a search action to index.php, a different vector than CVE-2008-3250. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35ch-f6ch-g23v/GHSA-35ch-f6ch-g23v.json b/advisories/unreviewed/2022/05/GHSA-35ch-f6ch-g23v/GHSA-35ch-f6ch-g23v.json index 106e71671dd..0455d3b99f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-35ch-f6ch-g23v/GHSA-35ch-f6ch-g23v.json +++ b/advisories/unreviewed/2022/05/GHSA-35ch-f6ch-g23v/GHSA-35ch-f6ch-g23v.json @@ -7,12 +7,8 @@ "CVE-2009-4972" ], "details": "Cross-site scripting (XSS) vulnerability in index.php (aka the log in page) in SimpleID before 0.6.5 allows remote attackers to inject arbitrary web script or HTML via the s parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35p9-qr2j-27jv/GHSA-35p9-qr2j-27jv.json b/advisories/unreviewed/2022/05/GHSA-35p9-qr2j-27jv/GHSA-35p9-qr2j-27jv.json index 22ba6ac346d..1fdcdcf8773 100644 --- a/advisories/unreviewed/2022/05/GHSA-35p9-qr2j-27jv/GHSA-35p9-qr2j-27jv.json +++ b/advisories/unreviewed/2022/05/GHSA-35p9-qr2j-27jv/GHSA-35p9-qr2j-27jv.json @@ -7,12 +7,8 @@ "CVE-2009-4513" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Workflow module 5.x before 5.x-2.4 and 6.x before 6.x-1.2, a module for Drupal, allow remote authenticated users, with \"administer workflow\" privileges, to inject arbitrary web script or HTML via the name of a (1) workflow or (2) workflow state.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35pg-ggpq-j763/GHSA-35pg-ggpq-j763.json b/advisories/unreviewed/2022/05/GHSA-35pg-ggpq-j763/GHSA-35pg-ggpq-j763.json index 0ef733fc0bb..36133563875 100644 --- a/advisories/unreviewed/2022/05/GHSA-35pg-ggpq-j763/GHSA-35pg-ggpq-j763.json +++ b/advisories/unreviewed/2022/05/GHSA-35pg-ggpq-j763/GHSA-35pg-ggpq-j763.json @@ -7,12 +7,8 @@ "CVE-2009-4559" ], "details": "Cross-site scripting (XSS) vulnerability in the Submitted By module 6.x before 6.x-1.3 for Drupal allows remote authenticated users, with \"administer content types\" privileges, to inject arbitrary web script or HTML via an input string for \"submitted by\" text.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35rg-pjrx-fc55/GHSA-35rg-pjrx-fc55.json b/advisories/unreviewed/2022/05/GHSA-35rg-pjrx-fc55/GHSA-35rg-pjrx-fc55.json index 2a1fdfbcb93..fbc4262f7ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-35rg-pjrx-fc55/GHSA-35rg-pjrx-fc55.json +++ b/advisories/unreviewed/2022/05/GHSA-35rg-pjrx-fc55/GHSA-35rg-pjrx-fc55.json @@ -7,12 +7,8 @@ "CVE-2009-5087" ], "details": "Directory traversal vulnerability in geohttpserver in Geovision Digital Video Surveillance System 8.2 allows remote attackers to read arbitrary files via a .. (dot dot) in a GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-362p-9mx3-r47m/GHSA-362p-9mx3-r47m.json b/advisories/unreviewed/2022/05/GHSA-362p-9mx3-r47m/GHSA-362p-9mx3-r47m.json index a1ee6b3c379..6125cbe3eb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-362p-9mx3-r47m/GHSA-362p-9mx3-r47m.json +++ b/advisories/unreviewed/2022/05/GHSA-362p-9mx3-r47m/GHSA-362p-9mx3-r47m.json @@ -7,12 +7,8 @@ "CVE-2009-4880" ], "details": "Multiple integer overflows in the strfmon implementation in the GNU C Library (aka glibc or libc6) 2.10.1 and earlier allow context-dependent attackers to cause a denial of service (memory consumption or application crash) via a crafted format string, as demonstrated by a crafted first argument to the money_format function in PHP, a related issue to CVE-2008-1391.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-39fc-256h-c8gf/GHSA-39fc-256h-c8gf.json b/advisories/unreviewed/2022/05/GHSA-39fc-256h-c8gf/GHSA-39fc-256h-c8gf.json index 6a602655b4a..7ac1f0f9c8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-39fc-256h-c8gf/GHSA-39fc-256h-c8gf.json +++ b/advisories/unreviewed/2022/05/GHSA-39fc-256h-c8gf/GHSA-39fc-256h-c8gf.json @@ -7,12 +7,8 @@ "CVE-2009-4901" ], "details": "The MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite before 1.5.4 might allow local users to cause a denial of service (daemon crash) via crafted SCARD_SET_ATTRIB message data, which is improperly demarshalled and triggers a buffer over-read, a related issue to CVE-2010-0407.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-39vx-7x97-6m7r/GHSA-39vx-7x97-6m7r.json b/advisories/unreviewed/2022/05/GHSA-39vx-7x97-6m7r/GHSA-39vx-7x97-6m7r.json index 04147422f91..f165b1d9143 100644 --- a/advisories/unreviewed/2022/05/GHSA-39vx-7x97-6m7r/GHSA-39vx-7x97-6m7r.json +++ b/advisories/unreviewed/2022/05/GHSA-39vx-7x97-6m7r/GHSA-39vx-7x97-6m7r.json @@ -7,12 +7,8 @@ "CVE-2009-4728" ], "details": "SQL injection vulnerability in the administrative interface in Questions Answered 1.3 allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3c9p-wgx8-74fj/GHSA-3c9p-wgx8-74fj.json b/advisories/unreviewed/2022/05/GHSA-3c9p-wgx8-74fj/GHSA-3c9p-wgx8-74fj.json index 456e9749aed..7676c271666 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c9p-wgx8-74fj/GHSA-3c9p-wgx8-74fj.json +++ b/advisories/unreviewed/2022/05/GHSA-3c9p-wgx8-74fj/GHSA-3c9p-wgx8-74fj.json @@ -7,12 +7,8 @@ "CVE-2009-4765" ], "details": "CNR Hikaye Portal 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/hikaye.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3cfw-j97c-6cfv/GHSA-3cfw-j97c-6cfv.json b/advisories/unreviewed/2022/05/GHSA-3cfw-j97c-6cfv/GHSA-3cfw-j97c-6cfv.json index 86599d11500..c3fab52e6ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cfw-j97c-6cfv/GHSA-3cfw-j97c-6cfv.json +++ b/advisories/unreviewed/2022/05/GHSA-3cfw-j97c-6cfv/GHSA-3cfw-j97c-6cfv.json @@ -7,12 +7,8 @@ "CVE-2009-4265" ], "details": "Stack-based buffer overflow in Ideal Administration 2009 9.7.1, and possibly other versions, allows remote attackers to execute arbitrary code via a long Computer value in an .ipj project file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cg2-pp2v-hxh3/GHSA-3cg2-pp2v-hxh3.json b/advisories/unreviewed/2022/05/GHSA-3cg2-pp2v-hxh3/GHSA-3cg2-pp2v-hxh3.json index 227218faf25..67433e0850f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cg2-pp2v-hxh3/GHSA-3cg2-pp2v-hxh3.json +++ b/advisories/unreviewed/2022/05/GHSA-3cg2-pp2v-hxh3/GHSA-3cg2-pp2v-hxh3.json @@ -7,12 +7,8 @@ "CVE-2009-4731" ], "details": "SQL injection vulnerability in photos.php in Model Agency Manager PRO (formerly Modeling Agency Content Management Script) allows remote attackers to execute arbitrary SQL commands via the album parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3f43-rg79-xmh3/GHSA-3f43-rg79-xmh3.json b/advisories/unreviewed/2022/05/GHSA-3f43-rg79-xmh3/GHSA-3f43-rg79-xmh3.json index 9caa1866ad1..c54cda4a71f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f43-rg79-xmh3/GHSA-3f43-rg79-xmh3.json +++ b/advisories/unreviewed/2022/05/GHSA-3f43-rg79-xmh3/GHSA-3f43-rg79-xmh3.json @@ -7,12 +7,8 @@ "CVE-2009-4988" ], "details": "Stack-based buffer overflow in NT_Naming_Service.exe in SAP Business One 2005 A 6.80.123 and 6.80.320 allows remote attackers to execute arbitrary code via a long GIOP request to TCP port 30000.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3ff4-45xf-q76c/GHSA-3ff4-45xf-q76c.json b/advisories/unreviewed/2022/05/GHSA-3ff4-45xf-q76c/GHSA-3ff4-45xf-q76c.json index b83ce559ffc..2c6794dbe4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3ff4-45xf-q76c/GHSA-3ff4-45xf-q76c.json +++ b/advisories/unreviewed/2022/05/GHSA-3ff4-45xf-q76c/GHSA-3ff4-45xf-q76c.json @@ -7,12 +7,8 @@ "CVE-2009-4902" ], "details": "Buffer overflow in the MSGFunctionDemarshall function in winscard_svc.c in the PC/SC Smart Card daemon (aka PCSCD) in MUSCLE PCSC-Lite 1.5.4 and earlier might allow local users to gain privileges via crafted SCARD_CONTROL message data, which is improperly demarshalled. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0407.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3g3v-w4xh-5w8p/GHSA-3g3v-w4xh-5w8p.json b/advisories/unreviewed/2022/05/GHSA-3g3v-w4xh-5w8p/GHSA-3g3v-w4xh-5w8p.json index 7698099bbc7..12c355a4ef7 100644 --- a/advisories/unreviewed/2022/05/GHSA-3g3v-w4xh-5w8p/GHSA-3g3v-w4xh-5w8p.json +++ b/advisories/unreviewed/2022/05/GHSA-3g3v-w4xh-5w8p/GHSA-3g3v-w4xh-5w8p.json @@ -7,12 +7,8 @@ "CVE-2009-4770" ], "details": "The FTP server component in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 has a default password of pass123 for the moderator account, which makes it easier for remote attackers to obtain privileged access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3ghh-rm9h-rjcv/GHSA-3ghh-rm9h-rjcv.json b/advisories/unreviewed/2022/05/GHSA-3ghh-rm9h-rjcv/GHSA-3ghh-rm9h-rjcv.json index f7a8b9d81d2..cb3f567b90a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3ghh-rm9h-rjcv/GHSA-3ghh-rm9h-rjcv.json +++ b/advisories/unreviewed/2022/05/GHSA-3ghh-rm9h-rjcv/GHSA-3ghh-rm9h-rjcv.json @@ -7,12 +7,8 @@ "CVE-2009-4668" ], "details": "Stack-based buffer overflow in JetCast.exe 2.0.4.1109 in jetAudio 7.5.2 and 7.5.3.15 allows remote attackers to execute arbitrary code via a long ID3 tag in an MP3 file. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gv9-4xxv-89c6/GHSA-3gv9-4xxv-89c6.json b/advisories/unreviewed/2022/05/GHSA-3gv9-4xxv-89c6/GHSA-3gv9-4xxv-89c6.json index f012370be16..e5c11cb8d3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gv9-4xxv-89c6/GHSA-3gv9-4xxv-89c6.json +++ b/advisories/unreviewed/2022/05/GHSA-3gv9-4xxv-89c6/GHSA-3gv9-4xxv-89c6.json @@ -7,12 +7,8 @@ "CVE-2009-4257" ], "details": "Heap-based buffer overflow in datatype/smil/common/smlpkt.cpp in smlrender.dll in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10 and 11.0.0, and Helix Player 10.x and 11.0.0 allows remote attackers to execute arbitrary code via an SMIL file with crafted string lengths.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hgh-vjm9-7xwp/GHSA-3hgh-vjm9-7xwp.json b/advisories/unreviewed/2022/05/GHSA-3hgh-vjm9-7xwp/GHSA-3hgh-vjm9-7xwp.json index 2c28904d582..678149a927e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hgh-vjm9-7xwp/GHSA-3hgh-vjm9-7xwp.json +++ b/advisories/unreviewed/2022/05/GHSA-3hgh-vjm9-7xwp/GHSA-3hgh-vjm9-7xwp.json @@ -7,12 +7,8 @@ "CVE-2009-5028" ], "details": "Stack-based buffer overflow in Namazu before 2.0.20 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted request containing an empty uri field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j44-xcrg-v77q/GHSA-3j44-xcrg-v77q.json b/advisories/unreviewed/2022/05/GHSA-3j44-xcrg-v77q/GHSA-3j44-xcrg-v77q.json index 14de24ec777..8d81b410324 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j44-xcrg-v77q/GHSA-3j44-xcrg-v77q.json +++ b/advisories/unreviewed/2022/05/GHSA-3j44-xcrg-v77q/GHSA-3j44-xcrg-v77q.json @@ -7,12 +7,8 @@ "CVE-2009-4973" ], "details": "SQL injection vulnerability in rss.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary SQL commands via the selectedCal parameter in a SwitchCal action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j5x-62hv-3543/GHSA-3j5x-62hv-3543.json b/advisories/unreviewed/2022/05/GHSA-3j5x-62hv-3543/GHSA-3j5x-62hv-3543.json index d1add055b04..5eccab68760 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j5x-62hv-3543/GHSA-3j5x-62hv-3543.json +++ b/advisories/unreviewed/2022/05/GHSA-3j5x-62hv-3543/GHSA-3j5x-62hv-3543.json @@ -7,12 +7,8 @@ "CVE-2009-4833" ], "details": "MySQL Connector/NET before 6.0.4, when using encryption, does not verify SSL certificates during connection, which allows remote attackers to perform a man-in-the-middle attack with a spoofed SSL certificate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j65-5g3g-m8f2/GHSA-3j65-5g3g-m8f2.json b/advisories/unreviewed/2022/05/GHSA-3j65-5g3g-m8f2/GHSA-3j65-5g3g-m8f2.json index 5aabcf8a14f..2e2c9412c69 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j65-5g3g-m8f2/GHSA-3j65-5g3g-m8f2.json +++ b/advisories/unreviewed/2022/05/GHSA-3j65-5g3g-m8f2/GHSA-3j65-5g3g-m8f2.json @@ -7,12 +7,8 @@ "CVE-2009-4780" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in phpMyFAQ before 2.5.5 allow remote attackers to inject arbitrary web script or HTML via (1) the lang parameter in a sitemap action, (2) the search parameter in a search action, (3) the tagging_id parameter in a search action, (4) the highlight parameter in an artikel action, (5) the artlang parameter in an artikel action, (6) the letter parameter in a sitemap action, (7) the lang parameter in a show action, (8) the cat parameter in a show action, (9) the newslang parameter in a news action, (10) the artlang parameter in a send2friend action, (11) the cat parameter in a send2friend action, (12) the id parameter in a send2friend action, (13) the srclang parameter in a translate action, (14) the id parameter in a translate action, (15) the cat parameter in a translate action, (16) the cat parameter in an add action, or (17) the question parameter in an add action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j93-3979-xwwx/GHSA-3j93-3979-xwwx.json b/advisories/unreviewed/2022/05/GHSA-3j93-3979-xwwx/GHSA-3j93-3979-xwwx.json index 614520509a4..0875e8ce825 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j93-3979-xwwx/GHSA-3j93-3979-xwwx.json +++ b/advisories/unreviewed/2022/05/GHSA-3j93-3979-xwwx/GHSA-3j93-3979-xwwx.json @@ -7,12 +7,8 @@ "CVE-2009-4352" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in TransWARE Active! mail 2003 build 2003.0139.0871 and earlier, and possibly other versions before 2003.0139.0939, allow remote attackers to inject arbitrary web script or HTML via the (1) From, (2) To, (3) Cc, and (4) Bcc parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3jwp-gjhp-77f3/GHSA-3jwp-gjhp-77f3.json b/advisories/unreviewed/2022/05/GHSA-3jwp-gjhp-77f3/GHSA-3jwp-gjhp-77f3.json index c83b3696f7e..c878419dc19 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jwp-gjhp-77f3/GHSA-3jwp-gjhp-77f3.json +++ b/advisories/unreviewed/2022/05/GHSA-3jwp-gjhp-77f3/GHSA-3jwp-gjhp-77f3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3m5j-q5c3-cr8m/GHSA-3m5j-q5c3-cr8m.json b/advisories/unreviewed/2022/05/GHSA-3m5j-q5c3-cr8m/GHSA-3m5j-q5c3-cr8m.json index 6d0c306cbb5..3539e6ad234 100644 --- a/advisories/unreviewed/2022/05/GHSA-3m5j-q5c3-cr8m/GHSA-3m5j-q5c3-cr8m.json +++ b/advisories/unreviewed/2022/05/GHSA-3m5j-q5c3-cr8m/GHSA-3m5j-q5c3-cr8m.json @@ -7,12 +7,8 @@ "CVE-2009-5075" ], "details": "Monkey's Audio before 4.02 allows remote attackers to cause a denial of service (application crash) via a malformed APE file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3pvf-8762-r99w/GHSA-3pvf-8762-r99w.json b/advisories/unreviewed/2022/05/GHSA-3pvf-8762-r99w/GHSA-3pvf-8762-r99w.json index aee948e25a3..5f35c5ae4f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pvf-8762-r99w/GHSA-3pvf-8762-r99w.json +++ b/advisories/unreviewed/2022/05/GHSA-3pvf-8762-r99w/GHSA-3pvf-8762-r99w.json @@ -7,12 +7,8 @@ "CVE-2009-1125" ], "details": "The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate an argument to an unspecified system call, which allows local users to gain privileges via a crafted application, aka \"Windows Driver Class Registration Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qqh-3r54-2rh5/GHSA-3qqh-3r54-2rh5.json b/advisories/unreviewed/2022/05/GHSA-3qqh-3r54-2rh5/GHSA-3qqh-3r54-2rh5.json index d85bfe05868..dcb1afd30cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qqh-3r54-2rh5/GHSA-3qqh-3r54-2rh5.json +++ b/advisories/unreviewed/2022/05/GHSA-3qqh-3r54-2rh5/GHSA-3qqh-3r54-2rh5.json @@ -7,12 +7,8 @@ "CVE-2009-4921" ], "details": "Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allow remote attackers to cause a denial of service (traceback) via malformed TCP packets, aka Bug ID CSCsm84110.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rm3-gj9m-589h/GHSA-3rm3-gj9m-589h.json b/advisories/unreviewed/2022/05/GHSA-3rm3-gj9m-589h/GHSA-3rm3-gj9m-589h.json index 4e9326d8000..93bd92ce4e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rm3-gj9m-589h/GHSA-3rm3-gj9m-589h.json +++ b/advisories/unreviewed/2022/05/GHSA-3rm3-gj9m-589h/GHSA-3rm3-gj9m-589h.json @@ -7,12 +7,8 @@ "CVE-2009-4369" ], "details": "Cross-site scripting (XSS) vulnerability in the Contact module (modules/contact/contact.admin.inc or modules/contact/contact.module) in Drupal Core 5.x before 5.21 and 6.x before 6.15 allows remote authenticated users with \"administer site-wide contact form\" permissions to inject arbitrary web script or HTML via the contact category name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3vx2-9q2c-34r9/GHSA-3vx2-9q2c-34r9.json b/advisories/unreviewed/2022/05/GHSA-3vx2-9q2c-34r9/GHSA-3vx2-9q2c-34r9.json index a47d7229c3e..8b6090c0d03 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vx2-9q2c-34r9/GHSA-3vx2-9q2c-34r9.json +++ b/advisories/unreviewed/2022/05/GHSA-3vx2-9q2c-34r9/GHSA-3vx2-9q2c-34r9.json @@ -7,12 +7,8 @@ "CVE-2009-4815" ], "details": "Directory traversal vulnerability in Serv-U before 9.2.0.1 allows remote authenticated users to read arbitrary files via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3w36-wf5x-rjfv/GHSA-3w36-wf5x-rjfv.json b/advisories/unreviewed/2022/05/GHSA-3w36-wf5x-rjfv/GHSA-3w36-wf5x-rjfv.json index 2c509573187..9b154c09c6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w36-wf5x-rjfv/GHSA-3w36-wf5x-rjfv.json +++ b/advisories/unreviewed/2022/05/GHSA-3w36-wf5x-rjfv/GHSA-3w36-wf5x-rjfv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3w8m-pw3c-4478/GHSA-3w8m-pw3c-4478.json b/advisories/unreviewed/2022/05/GHSA-3w8m-pw3c-4478/GHSA-3w8m-pw3c-4478.json index 02513303748..526b97ea4ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w8m-pw3c-4478/GHSA-3w8m-pw3c-4478.json +++ b/advisories/unreviewed/2022/05/GHSA-3w8m-pw3c-4478/GHSA-3w8m-pw3c-4478.json @@ -7,12 +7,8 @@ "CVE-2009-4987" ], "details": "admin/header.php in Scripteen Free Image Hosting Script 2.3 allows remote attackers to bypass authentication and gain administrative access by setting the cookgid cookie value to 1, a different vector than CVE-2008-3211.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3wpv-gh9g-2c8q/GHSA-3wpv-gh9g-2c8q.json b/advisories/unreviewed/2022/05/GHSA-3wpv-gh9g-2c8q/GHSA-3wpv-gh9g-2c8q.json index abbe224c924..c72aa69c95e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wpv-gh9g-2c8q/GHSA-3wpv-gh9g-2c8q.json +++ b/advisories/unreviewed/2022/05/GHSA-3wpv-gh9g-2c8q/GHSA-3wpv-gh9g-2c8q.json @@ -7,12 +7,8 @@ "CVE-2009-4666" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Webradev Download Protect 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[RootPath] parameter to (1) Framework/EmailTemplates.class.php, (2) Customers/PDPEmailReplaceConstants.class.php, and (3) Admin/ResellersManager.class.php in includes/DProtect/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3wqp-rm5v-58pr/GHSA-3wqp-rm5v-58pr.json b/advisories/unreviewed/2022/05/GHSA-3wqp-rm5v-58pr/GHSA-3wqp-rm5v-58pr.json index d2305425aff..d3e673ef736 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wqp-rm5v-58pr/GHSA-3wqp-rm5v-58pr.json +++ b/advisories/unreviewed/2022/05/GHSA-3wqp-rm5v-58pr/GHSA-3wqp-rm5v-58pr.json @@ -7,12 +7,8 @@ "CVE-2009-4884" ], "details": "Multiple SQL injection vulnerabilities in phpCommunity 2 2.1.8, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the forum_id parameter in a forum action to index.php, (2) the topic_id parameter in a forum action to index.php, (3) the wert parameter in an id search action to index.php, (4) the wert parameter in a nick search action to index.php, or (5) the wert parameter in a forum search action to index.php, related to class_forum.php and class_search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x83-2prq-r4mq/GHSA-3x83-2prq-r4mq.json b/advisories/unreviewed/2022/05/GHSA-3x83-2prq-r4mq/GHSA-3x83-2prq-r4mq.json index adf22a65847..4ad5ad368b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x83-2prq-r4mq/GHSA-3x83-2prq-r4mq.json +++ b/advisories/unreviewed/2022/05/GHSA-3x83-2prq-r4mq/GHSA-3x83-2prq-r4mq.json @@ -7,12 +7,8 @@ "CVE-2009-4836" ], "details": "Eval injection vulnerability in system/services/init.php in Movie PHP Script 2.0 allows remote attackers to execute arbitrary PHP code via the anticode parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xg5-c7vw-7549/GHSA-3xg5-c7vw-7549.json b/advisories/unreviewed/2022/05/GHSA-3xg5-c7vw-7549/GHSA-3xg5-c7vw-7549.json index 289aae0b9f5..e83315304f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xg5-c7vw-7549/GHSA-3xg5-c7vw-7549.json +++ b/advisories/unreviewed/2022/05/GHSA-3xg5-c7vw-7549/GHSA-3xg5-c7vw-7549.json @@ -7,12 +7,8 @@ "CVE-2009-4867" ], "details": "Buffer overflow in Tuniac 090517c allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long URL in a .m3u playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xr6-6369-7394/GHSA-3xr6-6369-7394.json b/advisories/unreviewed/2022/05/GHSA-3xr6-6369-7394/GHSA-3xr6-6369-7394.json index 11422f80ff3..f69c8e6e59e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xr6-6369-7394/GHSA-3xr6-6369-7394.json +++ b/advisories/unreviewed/2022/05/GHSA-3xr6-6369-7394/GHSA-3xr6-6369-7394.json @@ -7,12 +7,8 @@ "CVE-2009-4661" ], "details": "Multiple buffer overflows in BigAnt Server 2.50 SP6 and earlier allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted ZIP file that is not properly handled when the victim uses the (1) Update or (2) Plug-In console menu item.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xvr-5rgg-f99f/GHSA-3xvr-5rgg-f99f.json b/advisories/unreviewed/2022/05/GHSA-3xvr-5rgg-f99f/GHSA-3xvr-5rgg-f99f.json index d190a505987..055f8fac78e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xvr-5rgg-f99f/GHSA-3xvr-5rgg-f99f.json +++ b/advisories/unreviewed/2022/05/GHSA-3xvr-5rgg-f99f/GHSA-3xvr-5rgg-f99f.json @@ -7,12 +7,8 @@ "CVE-2009-4986" ], "details": "Directory traversal vulnerability in index.php in In-Portal 4.3.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the env parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xwp-pm6c-9mc2/GHSA-3xwp-pm6c-9mc2.json b/advisories/unreviewed/2022/05/GHSA-3xwp-pm6c-9mc2/GHSA-3xwp-pm6c-9mc2.json index 8d0e5100dca..72fdd186dfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xwp-pm6c-9mc2/GHSA-3xwp-pm6c-9mc2.json +++ b/advisories/unreviewed/2022/05/GHSA-3xwp-pm6c-9mc2/GHSA-3xwp-pm6c-9mc2.json @@ -7,12 +7,8 @@ "CVE-2009-4767" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in Plohni Shoutbox 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) input_name and (2) input_text parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42c7-mxvc-3crf/GHSA-42c7-mxvc-3crf.json b/advisories/unreviewed/2022/05/GHSA-42c7-mxvc-3crf/GHSA-42c7-mxvc-3crf.json index 3c1f3ee8be8..bbd7993c77f 100644 --- a/advisories/unreviewed/2022/05/GHSA-42c7-mxvc-3crf/GHSA-42c7-mxvc-3crf.json +++ b/advisories/unreviewed/2022/05/GHSA-42c7-mxvc-3crf/GHSA-42c7-mxvc-3crf.json @@ -7,12 +7,8 @@ "CVE-2009-4977" ], "details": "PHP remote file inclusion vulnerability in index.php in MyBackup 1.4.0 allows remote authenticated users to execute arbitrary PHP code via a URL in the main_content parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42mr-w3cr-f7h3/GHSA-42mr-w3cr-f7h3.json b/advisories/unreviewed/2022/05/GHSA-42mr-w3cr-f7h3/GHSA-42mr-w3cr-f7h3.json index e7eecb93976..fd70c2c537f 100644 --- a/advisories/unreviewed/2022/05/GHSA-42mr-w3cr-f7h3/GHSA-42mr-w3cr-f7h3.json +++ b/advisories/unreviewed/2022/05/GHSA-42mr-w3cr-f7h3/GHSA-42mr-w3cr-f7h3.json @@ -7,12 +7,8 @@ "CVE-2009-4370" ], "details": "Cross-site scripting (XSS) vulnerability in the Menu module (modules/menu/menu.admin.inc) in Drupal Core 6.x before 6.15 allows remote authenticated users with permissions to create new menus to inject arbitrary web script or HTML via a menu description, which is not properly handled in the menu administration overview.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4452-2568-9wpm/GHSA-4452-2568-9wpm.json b/advisories/unreviewed/2022/05/GHSA-4452-2568-9wpm/GHSA-4452-2568-9wpm.json index 51339ec7484..4f989c87849 100644 --- a/advisories/unreviewed/2022/05/GHSA-4452-2568-9wpm/GHSA-4452-2568-9wpm.json +++ b/advisories/unreviewed/2022/05/GHSA-4452-2568-9wpm/GHSA-4452-2568-9wpm.json @@ -7,12 +7,8 @@ "CVE-2009-4303" ], "details": "Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores (1) password hashes and (2) unspecified \"secrets\" in backup files, which might allow attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-44r7-rpw6-g3v4/GHSA-44r7-rpw6-g3v4.json b/advisories/unreviewed/2022/05/GHSA-44r7-rpw6-g3v4/GHSA-44r7-rpw6-g3v4.json index 8a7f103e3d9..2875ee20c99 100644 --- a/advisories/unreviewed/2022/05/GHSA-44r7-rpw6-g3v4/GHSA-44r7-rpw6-g3v4.json +++ b/advisories/unreviewed/2022/05/GHSA-44r7-rpw6-g3v4/GHSA-44r7-rpw6-g3v4.json @@ -7,12 +7,8 @@ "CVE-2009-4960" ], "details": "Directory traversal vulnerability in modules/backup/download.php in Lanai Core 0.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45j2-gj9m-cxmm/GHSA-45j2-gj9m-cxmm.json b/advisories/unreviewed/2022/05/GHSA-45j2-gj9m-cxmm/GHSA-45j2-gj9m-cxmm.json index e34d54c92a9..53870cb14cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-45j2-gj9m-cxmm/GHSA-45j2-gj9m-cxmm.json +++ b/advisories/unreviewed/2022/05/GHSA-45j2-gj9m-cxmm/GHSA-45j2-gj9m-cxmm.json @@ -7,12 +7,8 @@ "CVE-2009-4480" ], "details": "Buffer overflow in the web service in AzeoTech DAQFactory 5.77 might allow remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.16 through 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45qp-v8f4-g3h2/GHSA-45qp-v8f4-g3h2.json b/advisories/unreviewed/2022/05/GHSA-45qp-v8f4-g3h2/GHSA-45qp-v8f4-g3h2.json index 9a13fbb6d56..1b1a2b2589c 100644 --- a/advisories/unreviewed/2022/05/GHSA-45qp-v8f4-g3h2/GHSA-45qp-v8f4-g3h2.json +++ b/advisories/unreviewed/2022/05/GHSA-45qp-v8f4-g3h2/GHSA-45qp-v8f4-g3h2.json @@ -7,12 +7,8 @@ "CVE-2009-5091" ], "details": "SQL injection vulnerability in page.php in Vlinks 1.0.3 and 1.1.6 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45r9-j9h4-w6jw/GHSA-45r9-j9h4-w6jw.json b/advisories/unreviewed/2022/05/GHSA-45r9-j9h4-w6jw/GHSA-45r9-j9h4-w6jw.json index cbd049425ed..b796cbd2642 100644 --- a/advisories/unreviewed/2022/05/GHSA-45r9-j9h4-w6jw/GHSA-45r9-j9h4-w6jw.json +++ b/advisories/unreviewed/2022/05/GHSA-45r9-j9h4-w6jw/GHSA-45r9-j9h4-w6jw.json @@ -7,12 +7,8 @@ "CVE-2009-4635" ], "details": "FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly ordered tags that cause (1) mov.c and (2) utils.c to use inconsistent codec types and identifiers, leading to processing of a video-structure pointer by the mp3 decoder, and a stack-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45vv-7v97-qmf3/GHSA-45vv-7v97-qmf3.json b/advisories/unreviewed/2022/05/GHSA-45vv-7v97-qmf3/GHSA-45vv-7v97-qmf3.json index fe4985dc852..6b36737246f 100644 --- a/advisories/unreviewed/2022/05/GHSA-45vv-7v97-qmf3/GHSA-45vv-7v97-qmf3.json +++ b/advisories/unreviewed/2022/05/GHSA-45vv-7v97-qmf3/GHSA-45vv-7v97-qmf3.json @@ -7,12 +7,8 @@ "CVE-2009-4885" ], "details": "Cross-site scripting (XSS) vulnerability in templates/1/login.php in phpCommunity 2 2.1.8 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45w8-9rcx-pc99/GHSA-45w8-9rcx-pc99.json b/advisories/unreviewed/2022/05/GHSA-45w8-9rcx-pc99/GHSA-45w8-9rcx-pc99.json index 39d2a672aa8..de5472f2cb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-45w8-9rcx-pc99/GHSA-45w8-9rcx-pc99.json +++ b/advisories/unreviewed/2022/05/GHSA-45w8-9rcx-pc99/GHSA-45w8-9rcx-pc99.json @@ -7,12 +7,8 @@ "CVE-2009-4750" ], "details": "PHP remote file inclusion vulnerability in home.php in Top Paidmailer allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-467r-2x58-mpwg/GHSA-467r-2x58-mpwg.json b/advisories/unreviewed/2022/05/GHSA-467r-2x58-mpwg/GHSA-467r-2x58-mpwg.json index 262e2fd9d21..05bdd92ffdd 100644 --- a/advisories/unreviewed/2022/05/GHSA-467r-2x58-mpwg/GHSA-467r-2x58-mpwg.json +++ b/advisories/unreviewed/2022/05/GHSA-467r-2x58-mpwg/GHSA-467r-2x58-mpwg.json @@ -7,12 +7,8 @@ "CVE-2009-4727" ], "details": "SQL injection vulnerability in x/login in JungleScripts Ajax Short Url Script allows remote attackers to execute arbitrary SQL commands via the username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46f7-78fr-m7ch/GHSA-46f7-78fr-m7ch.json b/advisories/unreviewed/2022/05/GHSA-46f7-78fr-m7ch/GHSA-46f7-78fr-m7ch.json index 0dddf982362..785de48c678 100644 --- a/advisories/unreviewed/2022/05/GHSA-46f7-78fr-m7ch/GHSA-46f7-78fr-m7ch.json +++ b/advisories/unreviewed/2022/05/GHSA-46f7-78fr-m7ch/GHSA-46f7-78fr-m7ch.json @@ -7,12 +7,8 @@ "CVE-2009-4470" ], "details": "SQL injection vulnerability in boardrule.php in DVBBS 2.0 allows remote attackers to execute arbitrary SQL commands via the groupboardid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-472c-vqwr-j8gw/GHSA-472c-vqwr-j8gw.json b/advisories/unreviewed/2022/05/GHSA-472c-vqwr-j8gw/GHSA-472c-vqwr-j8gw.json index 08035e21b9c..b9b096f7f26 100644 --- a/advisories/unreviewed/2022/05/GHSA-472c-vqwr-j8gw/GHSA-472c-vqwr-j8gw.json +++ b/advisories/unreviewed/2022/05/GHSA-472c-vqwr-j8gw/GHSA-472c-vqwr-j8gw.json @@ -7,12 +7,8 @@ "CVE-2009-4263" ], "details": "SQL injection vulnerability in main_forum.php in PTCPay GeN3 forum 1.3 allows remote attackers to execute arbitrary SQL commands via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-475g-wrgm-3x98/GHSA-475g-wrgm-3x98.json b/advisories/unreviewed/2022/05/GHSA-475g-wrgm-3x98/GHSA-475g-wrgm-3x98.json index 867b86808e4..035f6fce1e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-475g-wrgm-3x98/GHSA-475g-wrgm-3x98.json +++ b/advisories/unreviewed/2022/05/GHSA-475g-wrgm-3x98/GHSA-475g-wrgm-3x98.json @@ -7,12 +7,8 @@ "CVE-2009-4915" ], "details": "Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (device reload) via unknown network traffic, as demonstrated by a \"connection stress test,\" aka Bug ID CSCsq68451.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4793-236p-3p73/GHSA-4793-236p-3p73.json b/advisories/unreviewed/2022/05/GHSA-4793-236p-3p73/GHSA-4793-236p-3p73.json index 44bcc0dd196..97a9708ba6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4793-236p-3p73/GHSA-4793-236p-3p73.json +++ b/advisories/unreviewed/2022/05/GHSA-4793-236p-3p73/GHSA-4793-236p-3p73.json @@ -7,12 +7,8 @@ "CVE-2009-4674" ], "details": "admin/admin.php in Mole Group Sky Hunter Airline Ticket Sale Script and Bus Ticket Script allows remote attackers to change an arbitrary password via a modified user_id field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-47j8-3cwc-mhwg/GHSA-47j8-3cwc-mhwg.json b/advisories/unreviewed/2022/05/GHSA-47j8-3cwc-mhwg/GHSA-47j8-3cwc-mhwg.json index eeaeabbe320..52ee74eabd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-47j8-3cwc-mhwg/GHSA-47j8-3cwc-mhwg.json +++ b/advisories/unreviewed/2022/05/GHSA-47j8-3cwc-mhwg/GHSA-47j8-3cwc-mhwg.json @@ -7,12 +7,8 @@ "CVE-2009-4657" ], "details": "The administrator package for Xerver 4.32 does not require authentication, which allows remote attackers to alter application settings by connecting to the application on port 32123, as demonstrated by setting the action option to wizardStep1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-48pp-34w3-m6x4/GHSA-48pp-34w3-m6x4.json b/advisories/unreviewed/2022/05/GHSA-48pp-34w3-m6x4/GHSA-48pp-34w3-m6x4.json index 0ca02e3b66e..ac5d7a84e97 100644 --- a/advisories/unreviewed/2022/05/GHSA-48pp-34w3-m6x4/GHSA-48pp-34w3-m6x4.json +++ b/advisories/unreviewed/2022/05/GHSA-48pp-34w3-m6x4/GHSA-48pp-34w3-m6x4.json @@ -7,12 +7,8 @@ "CVE-2009-4616" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in MYRE Holiday Rental Manager allows remote attackers to inject arbitrary web script or HTML via the cat_id1 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-48qm-7xjg-6hq4/GHSA-48qm-7xjg-6hq4.json b/advisories/unreviewed/2022/05/GHSA-48qm-7xjg-6hq4/GHSA-48qm-7xjg-6hq4.json index cb0532dc4f4..0ad3d51e1ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-48qm-7xjg-6hq4/GHSA-48qm-7xjg-6hq4.json +++ b/advisories/unreviewed/2022/05/GHSA-48qm-7xjg-6hq4/GHSA-48qm-7xjg-6hq4.json @@ -7,12 +7,8 @@ "CVE-2009-4914" ], "details": "Memory leak on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (memory consumption) via Subject Alternative Name fields in an X.509 certificate, aka Bug ID CSCsq17879.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4947-wvv9-2q59/GHSA-4947-wvv9-2q59.json b/advisories/unreviewed/2022/05/GHSA-4947-wvv9-2q59/GHSA-4947-wvv9-2q59.json index 81fd9a183e9..13101d2c8c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-4947-wvv9-2q59/GHSA-4947-wvv9-2q59.json +++ b/advisories/unreviewed/2022/05/GHSA-4947-wvv9-2q59/GHSA-4947-wvv9-2q59.json @@ -7,12 +7,8 @@ "CVE-2009-4366" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog 1.0 allows remote attackers to inject arbitrary web script or HTML via the yr parameter in a bmonth action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4f4x-r49q-p83m/GHSA-4f4x-r49q-p83m.json b/advisories/unreviewed/2022/05/GHSA-4f4x-r49q-p83m/GHSA-4f4x-r49q-p83m.json index 6ca9efbaa32..11b18ccc886 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f4x-r49q-p83m/GHSA-4f4x-r49q-p83m.json +++ b/advisories/unreviewed/2022/05/GHSA-4f4x-r49q-p83m/GHSA-4f4x-r49q-p83m.json @@ -7,12 +7,8 @@ "CVE-2009-4874" ], "details": "TalkBack 2.3.14 does not properly restrict access to the edit comment feature (comments.php), which allows remote attackers to modify comments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4ff5-fg46-2w34/GHSA-4ff5-fg46-2w34.json b/advisories/unreviewed/2022/05/GHSA-4ff5-fg46-2w34/GHSA-4ff5-fg46-2w34.json index 8d33eb696b8..bde5955508c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ff5-fg46-2w34/GHSA-4ff5-fg46-2w34.json +++ b/advisories/unreviewed/2022/05/GHSA-4ff5-fg46-2w34/GHSA-4ff5-fg46-2w34.json @@ -7,12 +7,8 @@ "CVE-2009-4509" ], "details": "The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session cookies in (1) tandberg/web/lib/secure.php and (2) tandberg/web/user/lib/secure.php, which makes it easier for remote attackers to bypass authentication, and execute arbitrary code by loading a custom software update, via a crafted \"Cookie: tandberg_login=\" HTTP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fqj-948j-w2qf/GHSA-4fqj-948j-w2qf.json b/advisories/unreviewed/2022/05/GHSA-4fqj-948j-w2qf/GHSA-4fqj-948j-w2qf.json index cb53e5dfab6..48d31d8df62 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fqj-948j-w2qf/GHSA-4fqj-948j-w2qf.json +++ b/advisories/unreviewed/2022/05/GHSA-4fqj-948j-w2qf/GHSA-4fqj-948j-w2qf.json @@ -7,12 +7,8 @@ "CVE-2009-4648" ], "details": "Accellion Secure File Transfer Appliance before 8_0_105 does not properly restrict access to sensitive commands and arguments that run with extra sudo privileges, which allows local administrators to gain privileges via (1) arbitrary arguments in the --file_move action in /usr/local/bin/admin.pl, or a hard link attack in (2) chmod or (3) a certain cp command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4fxr-cqpx-q5m7/GHSA-4fxr-cqpx-q5m7.json b/advisories/unreviewed/2022/05/GHSA-4fxr-cqpx-q5m7/GHSA-4fxr-cqpx-q5m7.json index a12cb986c37..9fdafd9554b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fxr-cqpx-q5m7/GHSA-4fxr-cqpx-q5m7.json +++ b/advisories/unreviewed/2022/05/GHSA-4fxr-cqpx-q5m7/GHSA-4fxr-cqpx-q5m7.json @@ -7,12 +7,8 @@ "CVE-2009-4584" ], "details": "admin.php in dB Masters Multimedia Links Directory 3.1.3 allows remote attackers to bypass authentication and gain administrative access via a certain value of the admin_log cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g27-cp2v-vp66/GHSA-4g27-cp2v-vp66.json b/advisories/unreviewed/2022/05/GHSA-4g27-cp2v-vp66/GHSA-4g27-cp2v-vp66.json index ad0ab79cf70..000c946639d 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g27-cp2v-vp66/GHSA-4g27-cp2v-vp66.json +++ b/advisories/unreviewed/2022/05/GHSA-4g27-cp2v-vp66/GHSA-4g27-cp2v-vp66.json @@ -7,12 +7,8 @@ "CVE-2009-5018" ], "details": "Stack-based buffer overflow in gif2png.c in gif2png 2.5.3 and earlier might allow context-dependent attackers to execute arbitrary code via a long command-line argument, as demonstrated by a CGI program that launches gif2png.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4g82-7r8h-h94r/GHSA-4g82-7r8h-h94r.json b/advisories/unreviewed/2022/05/GHSA-4g82-7r8h-h94r/GHSA-4g82-7r8h-h94r.json index 9372026741c..7e090727921 100644 --- a/advisories/unreviewed/2022/05/GHSA-4g82-7r8h-h94r/GHSA-4g82-7r8h-h94r.json +++ b/advisories/unreviewed/2022/05/GHSA-4g82-7r8h-h94r/GHSA-4g82-7r8h-h94r.json @@ -7,12 +7,8 @@ "CVE-2009-5085" ], "details": "IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.2, when configured as an OpenID provider, does not delete the site information cookie in response to a user's deletion of a relying-party trust entry, which allows user-assisted remote attackers to bypass intended trust restrictions via vectors that trigger absence of the consent-to-authenticate page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4ggx-wpg5-wmf4/GHSA-4ggx-wpg5-wmf4.json b/advisories/unreviewed/2022/05/GHSA-4ggx-wpg5-wmf4/GHSA-4ggx-wpg5-wmf4.json index 97109fb9a30..a65d4f65708 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ggx-wpg5-wmf4/GHSA-4ggx-wpg5-wmf4.json +++ b/advisories/unreviewed/2022/05/GHSA-4ggx-wpg5-wmf4/GHSA-4ggx-wpg5-wmf4.json @@ -7,12 +7,8 @@ "CVE-2009-4686" ], "details": "Cross-site scripting (XSS) vulnerability in account.php in phplemon AdQuick 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the red_url parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4gm2-r6xm-jqxh/GHSA-4gm2-r6xm-jqxh.json b/advisories/unreviewed/2022/05/GHSA-4gm2-r6xm-jqxh/GHSA-4gm2-r6xm-jqxh.json index c165620a7ea..3921d062d00 100644 --- a/advisories/unreviewed/2022/05/GHSA-4gm2-r6xm-jqxh/GHSA-4gm2-r6xm-jqxh.json +++ b/advisories/unreviewed/2022/05/GHSA-4gm2-r6xm-jqxh/GHSA-4gm2-r6xm-jqxh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hj5-p7hr-x6r4/GHSA-4hj5-p7hr-x6r4.json b/advisories/unreviewed/2022/05/GHSA-4hj5-p7hr-x6r4/GHSA-4hj5-p7hr-x6r4.json index fb2f15d0135..0c0a7fd7561 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hj5-p7hr-x6r4/GHSA-4hj5-p7hr-x6r4.json +++ b/advisories/unreviewed/2022/05/GHSA-4hj5-p7hr-x6r4/GHSA-4hj5-p7hr-x6r4.json @@ -7,12 +7,8 @@ "CVE-2009-4483" ], "details": "Unspecified vulnerability in LDAP3A.exe in MailSite 8.0.4 allows remote attackers to cause a denial of service (daemon crash) via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.13 through 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hwj-p7j6-r7jw/GHSA-4hwj-p7j6-r7jw.json b/advisories/unreviewed/2022/05/GHSA-4hwj-p7j6-r7jw/GHSA-4hwj-p7j6-r7jw.json index 3b889f6837d..4746cdb1122 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hwj-p7j6-r7jw/GHSA-4hwj-p7j6-r7jw.json +++ b/advisories/unreviewed/2022/05/GHSA-4hwj-p7j6-r7jw/GHSA-4hwj-p7j6-r7jw.json @@ -7,12 +7,8 @@ "CVE-2009-4454" ], "details": "vccleaner in VideoCache 1.9.2 allows local users with Squid proxy user privileges to overwrite arbitrary files via a symlink attack on /var/log/videocache/vccleaner.log.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j2f-5cm9-vf85/GHSA-4j2f-5cm9-vf85.json b/advisories/unreviewed/2022/05/GHSA-4j2f-5cm9-vf85/GHSA-4j2f-5cm9-vf85.json index a72c1dec34f..e116a13272b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j2f-5cm9-vf85/GHSA-4j2f-5cm9-vf85.json +++ b/advisories/unreviewed/2022/05/GHSA-4j2f-5cm9-vf85/GHSA-4j2f-5cm9-vf85.json @@ -7,12 +7,8 @@ "CVE-2009-4364" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Blog allows remote attackers to inject arbitrary web script or HTML via the cname parameter, related to the act and id parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j83-hcvc-vrrr/GHSA-4j83-hcvc-vrrr.json b/advisories/unreviewed/2022/05/GHSA-4j83-hcvc-vrrr/GHSA-4j83-hcvc-vrrr.json index 2b8a579d514..87171ba2ae1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j83-hcvc-vrrr/GHSA-4j83-hcvc-vrrr.json +++ b/advisories/unreviewed/2022/05/GHSA-4j83-hcvc-vrrr/GHSA-4j83-hcvc-vrrr.json @@ -7,12 +7,8 @@ "CVE-2009-4816" ], "details": "Directory traversal vulnerability in api/download_checker.php in MegaLab The Uploader 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4jh7-wh4m-f4pq/GHSA-4jh7-wh4m-f4pq.json b/advisories/unreviewed/2022/05/GHSA-4jh7-wh4m-f4pq/GHSA-4jh7-wh4m-f4pq.json index 23b585503cc..1b17a56a24c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jh7-wh4m-f4pq/GHSA-4jh7-wh4m-f4pq.json +++ b/advisories/unreviewed/2022/05/GHSA-4jh7-wh4m-f4pq/GHSA-4jh7-wh4m-f4pq.json @@ -7,12 +7,8 @@ "CVE-2009-4444" ], "details": "Microsoft Internet Information Services (IIS) 5.x and 6.x uses only the portion of a filename before a ; (semicolon) character to determine the file extension, which allows remote attackers to bypass intended extension restrictions of third-party upload applications via a filename with a (1) .asp, (2) .cer, or (3) .asa first extension, followed by a semicolon and a safe extension, as demonstrated by the use of asp.dll to handle a .asp;.jpg file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4jw9-fvm9-j437/GHSA-4jw9-fvm9-j437.json b/advisories/unreviewed/2022/05/GHSA-4jw9-fvm9-j437/GHSA-4jw9-fvm9-j437.json index bc045ad3869..62f26ab8f26 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jw9-fvm9-j437/GHSA-4jw9-fvm9-j437.json +++ b/advisories/unreviewed/2022/05/GHSA-4jw9-fvm9-j437/GHSA-4jw9-fvm9-j437.json @@ -7,12 +7,8 @@ "CVE-2009-4781" ], "details": "TUKEVA Password Reminder before 1.0.0.4 uses a hard-coded password for rem.accdb, which allows local users to discover credentials via a DBI connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4m4q-9cc6-g4mh/GHSA-4m4q-9cc6-g4mh.json b/advisories/unreviewed/2022/05/GHSA-4m4q-9cc6-g4mh/GHSA-4m4q-9cc6-g4mh.json index d5dd76b7006..035674ef615 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m4q-9cc6-g4mh/GHSA-4m4q-9cc6-g4mh.json +++ b/advisories/unreviewed/2022/05/GHSA-4m4q-9cc6-g4mh/GHSA-4m4q-9cc6-g4mh.json @@ -7,12 +7,8 @@ "CVE-2009-4795" ], "details": "Multiple SQL injection vulnerabilities in Xlight FTP Server before 3.2.1, when ODBC authentication is enabled, allow remote attackers to execute arbitrary SQL commands via the (1) USER (aka username) or (2) PASS (aka password) command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4mhg-w5rg-4wv7/GHSA-4mhg-w5rg-4wv7.json b/advisories/unreviewed/2022/05/GHSA-4mhg-w5rg-4wv7/GHSA-4mhg-w5rg-4wv7.json index 5714a325a78..3c52089ca72 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mhg-w5rg-4wv7/GHSA-4mhg-w5rg-4wv7.json +++ b/advisories/unreviewed/2022/05/GHSA-4mhg-w5rg-4wv7/GHSA-4mhg-w5rg-4wv7.json @@ -7,12 +7,8 @@ "CVE-2009-4321" ], "details": "extras/curltest.php in Zen Cart 1.3.8 and 1.3.8a, and possibly other versions, allows remote attackers to read arbitrary files via a file:// URI. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qcx-hpjg-q2p5/GHSA-4qcx-hpjg-q2p5.json b/advisories/unreviewed/2022/05/GHSA-4qcx-hpjg-q2p5/GHSA-4qcx-hpjg-q2p5.json index e7291708881..1824630352c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qcx-hpjg-q2p5/GHSA-4qcx-hpjg-q2p5.json +++ b/advisories/unreviewed/2022/05/GHSA-4qcx-hpjg-q2p5/GHSA-4qcx-hpjg-q2p5.json @@ -7,12 +7,8 @@ "CVE-2009-4548" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ViArt Helpdesk 3.x allow remote attackers to inject arbitrary web script or HTML via the category_id parameter to (1) products.php, (2) article.php, (3) product_details.php, or (4) reviews.php; the (5) forum_id parameter to forum.php; or the (6) search_category_id parameter to products_search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qjh-78q4-748w/GHSA-4qjh-78q4-748w.json b/advisories/unreviewed/2022/05/GHSA-4qjh-78q4-748w/GHSA-4qjh-78q4-748w.json index f73f508e934..f097d75e047 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qjh-78q4-748w/GHSA-4qjh-78q4-748w.json +++ b/advisories/unreviewed/2022/05/GHSA-4qjh-78q4-748w/GHSA-4qjh-78q4-748w.json @@ -7,12 +7,8 @@ "CVE-2009-4692" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in RadScripts RadLance Gold 7.5 allows remote attackers to inject arbitrary web script or HTML via the pr parameter in a ulist action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4r5v-2f2w-h6rr/GHSA-4r5v-2f2w-h6rr.json b/advisories/unreviewed/2022/05/GHSA-4r5v-2f2w-h6rr/GHSA-4r5v-2f2w-h6rr.json index 6fb278f8be9..7d7003dc9f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r5v-2f2w-h6rr/GHSA-4r5v-2f2w-h6rr.json +++ b/advisories/unreviewed/2022/05/GHSA-4r5v-2f2w-h6rr/GHSA-4r5v-2f2w-h6rr.json @@ -7,12 +7,8 @@ "CVE-2009-4831" ], "details": "Cerulean Studios Trillian 3.1 Basic does not check SSL certificates during MSN authentication, which allows remote attackers to obtain MSN credentials via a man-in-the-middle attack with a spoofed SSL certificate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4r83-gvgw-w34w/GHSA-4r83-gvgw-w34w.json b/advisories/unreviewed/2022/05/GHSA-4r83-gvgw-w34w/GHSA-4r83-gvgw-w34w.json index 9a88da15668..6b174c38be7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r83-gvgw-w34w/GHSA-4r83-gvgw-w34w.json +++ b/advisories/unreviewed/2022/05/GHSA-4r83-gvgw-w34w/GHSA-4r83-gvgw-w34w.json @@ -7,12 +7,8 @@ "CVE-2009-4903" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in oBlog allows remote attackers to inject arbitrary web script or HTML via the search parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4w67-4rr6-54cg/GHSA-4w67-4rr6-54cg.json b/advisories/unreviewed/2022/05/GHSA-4w67-4rr6-54cg/GHSA-4w67-4rr6-54cg.json index e39bbd573fe..d5a5a8e6534 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w67-4rr6-54cg/GHSA-4w67-4rr6-54cg.json +++ b/advisories/unreviewed/2022/05/GHSA-4w67-4rr6-54cg/GHSA-4w67-4rr6-54cg.json @@ -7,12 +7,8 @@ "CVE-2009-4622" ], "details": "PHP remote file inclusion vulnerability in admin/admin_news_bot.php in Drunken:Golem Gaming Portal 0.5.1 alpha 2 allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter, a different vector than CVE-2007-0572.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4x29-4984-2qcp/GHSA-4x29-4984-2qcp.json b/advisories/unreviewed/2022/05/GHSA-4x29-4984-2qcp/GHSA-4x29-4984-2qcp.json index e50f4b55f87..2dced7b0621 100644 --- a/advisories/unreviewed/2022/05/GHSA-4x29-4984-2qcp/GHSA-4x29-4984-2qcp.json +++ b/advisories/unreviewed/2022/05/GHSA-4x29-4984-2qcp/GHSA-4x29-4984-2qcp.json @@ -7,12 +7,8 @@ "CVE-2009-4639" ], "details": "The av_rescale_rnd function in the AVI demuxer in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) via a crafted AVI file that triggers a divide-by-zero error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-533g-xcpj-m6xr/GHSA-533g-xcpj-m6xr.json b/advisories/unreviewed/2022/05/GHSA-533g-xcpj-m6xr/GHSA-533g-xcpj-m6xr.json index d5a5328b67a..1a8b569dfec 100644 --- a/advisories/unreviewed/2022/05/GHSA-533g-xcpj-m6xr/GHSA-533g-xcpj-m6xr.json +++ b/advisories/unreviewed/2022/05/GHSA-533g-xcpj-m6xr/GHSA-533g-xcpj-m6xr.json @@ -7,12 +7,8 @@ "CVE-2009-4349" ], "details": "Cross-site request forgery (CSRF) vulnerability in administration/administrators.php in Link Up Gold 5.0 allows remote attackers to hijack the authentication of administrators for requests that create administrative accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-536h-jv4c-qfjf/GHSA-536h-jv4c-qfjf.json b/advisories/unreviewed/2022/05/GHSA-536h-jv4c-qfjf/GHSA-536h-jv4c-qfjf.json index a77802adc3e..5b7996bbf7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-536h-jv4c-qfjf/GHSA-536h-jv4c-qfjf.json +++ b/advisories/unreviewed/2022/05/GHSA-536h-jv4c-qfjf/GHSA-536h-jv4c-qfjf.json @@ -7,12 +7,8 @@ "CVE-2009-4557" ], "details": "Cross-site scripting (XSS) vulnerability in the Image Assist module 5.x-1.x before 5.x-1.8, 5.x-2.x before 2.0-alpha4, 6.x-1.x before 6.x-1.1, 6.x-2.x before 2.0-alpha4, and 6.x-3.x-dev before 2009-07-15, a module for Drupal, allows remote authenticated users, with image-node creation privileges, to inject arbitrary web script or HTML via a node title.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53p4-2rfw-mvc8/GHSA-53p4-2rfw-mvc8.json b/advisories/unreviewed/2022/05/GHSA-53p4-2rfw-mvc8/GHSA-53p4-2rfw-mvc8.json index c232bbdeb7c..5d3611c0114 100644 --- a/advisories/unreviewed/2022/05/GHSA-53p4-2rfw-mvc8/GHSA-53p4-2rfw-mvc8.json +++ b/advisories/unreviewed/2022/05/GHSA-53p4-2rfw-mvc8/GHSA-53p4-2rfw-mvc8.json @@ -7,12 +7,8 @@ "CVE-2009-4496" ], "details": "Boa 0.94.14rc21 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53pw-2446-9fc8/GHSA-53pw-2446-9fc8.json b/advisories/unreviewed/2022/05/GHSA-53pw-2446-9fc8/GHSA-53pw-2446-9fc8.json index 240b346ffd7..e7dc371a7fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-53pw-2446-9fc8/GHSA-53pw-2446-9fc8.json +++ b/advisories/unreviewed/2022/05/GHSA-53pw-2446-9fc8/GHSA-53pw-2446-9fc8.json @@ -7,12 +7,8 @@ "CVE-2009-4897" ], "details": "Buffer overflow in gs/psi/iscan.c in Ghostscript 8.64 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PDF document containing a long name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53wq-5xxh-fcr8/GHSA-53wq-5xxh-fcr8.json b/advisories/unreviewed/2022/05/GHSA-53wq-5xxh-fcr8/GHSA-53wq-5xxh-fcr8.json index 371428630f9..0acf9715f1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-53wq-5xxh-fcr8/GHSA-53wq-5xxh-fcr8.json +++ b/advisories/unreviewed/2022/05/GHSA-53wq-5xxh-fcr8/GHSA-53wq-5xxh-fcr8.json @@ -7,12 +7,8 @@ "CVE-2009-4545" ], "details": "Logoshows BBS 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/globepersonnel.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-542r-5cx4-5qfx/GHSA-542r-5cx4-5qfx.json b/advisories/unreviewed/2022/05/GHSA-542r-5cx4-5qfx/GHSA-542r-5cx4-5qfx.json index 581b77da474..4543246298d 100644 --- a/advisories/unreviewed/2022/05/GHSA-542r-5cx4-5qfx/GHSA-542r-5cx4-5qfx.json +++ b/advisories/unreviewed/2022/05/GHSA-542r-5cx4-5qfx/GHSA-542r-5cx4-5qfx.json @@ -7,12 +7,8 @@ "CVE-2009-4472" ], "details": "Multiple PHP remote file inclusion vulnerabilities in PHPope 1.0.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) GLOBALS[config][dir][plugins] parameter to plugins/address/admin/index.php, (2) GLOBALS[config][dir][functions] parameter to plugins/im/compose.php, and (3) GLOBALS[config][dir][classes] parameter to plugins/cssedit/admin/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54mh-943g-rjrw/GHSA-54mh-943g-rjrw.json b/advisories/unreviewed/2022/05/GHSA-54mh-943g-rjrw/GHSA-54mh-943g-rjrw.json index ec24783bdfe..b5c985c6068 100644 --- a/advisories/unreviewed/2022/05/GHSA-54mh-943g-rjrw/GHSA-54mh-943g-rjrw.json +++ b/advisories/unreviewed/2022/05/GHSA-54mh-943g-rjrw/GHSA-54mh-943g-rjrw.json @@ -7,12 +7,8 @@ "CVE-2009-4955" ], "details": "SQL injection vulnerability in the ultraCards (th_ultracards) extension before 0.5.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54xj-3r77-hfh9/GHSA-54xj-3r77-hfh9.json b/advisories/unreviewed/2022/05/GHSA-54xj-3r77-hfh9/GHSA-54xj-3r77-hfh9.json index a3e7a5090df..619a1e61ba7 100644 --- a/advisories/unreviewed/2022/05/GHSA-54xj-3r77-hfh9/GHSA-54xj-3r77-hfh9.json +++ b/advisories/unreviewed/2022/05/GHSA-54xj-3r77-hfh9/GHSA-54xj-3r77-hfh9.json @@ -7,12 +7,8 @@ "CVE-2009-4540" ], "details": "SQL injection vulnerability in page.php in Mini CMS 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-554v-w4v6-39cr/GHSA-554v-w4v6-39cr.json b/advisories/unreviewed/2022/05/GHSA-554v-w4v6-39cr/GHSA-554v-w4v6-39cr.json index 3c511a9b241..61c05b5e066 100644 --- a/advisories/unreviewed/2022/05/GHSA-554v-w4v6-39cr/GHSA-554v-w4v6-39cr.json +++ b/advisories/unreviewed/2022/05/GHSA-554v-w4v6-39cr/GHSA-554v-w4v6-39cr.json @@ -7,12 +7,8 @@ "CVE-2009-4547" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ViArt CMS 3.x allow remote attackers to inject arbitrary web script or HTML via the (1) category_id parameter to forums.php, or the forum_id parameter to (2) forum.php or (3) forum_topic_new.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56cc-g25c-3wc2/GHSA-56cc-g25c-3wc2.json b/advisories/unreviewed/2022/05/GHSA-56cc-g25c-3wc2/GHSA-56cc-g25c-3wc2.json index 11a7ba3bb44..f9a121f26bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-56cc-g25c-3wc2/GHSA-56cc-g25c-3wc2.json +++ b/advisories/unreviewed/2022/05/GHSA-56cc-g25c-3wc2/GHSA-56cc-g25c-3wc2.json @@ -7,12 +7,8 @@ "CVE-2009-4976" ], "details": "Cross-site scripting (XSS) vulnerability in webkitpart.cpp in kwebkitpart allows remote attackers to inject arbitrary web script or HTML via a URL associated with a nonexistent domain name, related to a \"universal XSS\" issue, a similar vulnerability to CVE-2010-2536.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5739-64g7-63px/GHSA-5739-64g7-63px.json b/advisories/unreviewed/2022/05/GHSA-5739-64g7-63px/GHSA-5739-64g7-63px.json index 382a5446f6c..e21d7a5c1a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-5739-64g7-63px/GHSA-5739-64g7-63px.json +++ b/advisories/unreviewed/2022/05/GHSA-5739-64g7-63px/GHSA-5739-64g7-63px.json @@ -7,12 +7,8 @@ "CVE-2009-5086" ], "details": "Cross-site scripting (XSS) vulnerability in Appliance Configuration Manager (ACM) in Juniper IDP 4.1 before 4.1r3 and 4.2 before 4.2r1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5794-fx2j-p63j/GHSA-5794-fx2j-p63j.json b/advisories/unreviewed/2022/05/GHSA-5794-fx2j-p63j/GHSA-5794-fx2j-p63j.json index 5397215a237..05c80dcab0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5794-fx2j-p63j/GHSA-5794-fx2j-p63j.json +++ b/advisories/unreviewed/2022/05/GHSA-5794-fx2j-p63j/GHSA-5794-fx2j-p63j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-57rc-w27f-mg38/GHSA-57rc-w27f-mg38.json b/advisories/unreviewed/2022/05/GHSA-57rc-w27f-mg38/GHSA-57rc-w27f-mg38.json index 57097de13a1..97ba68af36e 100644 --- a/advisories/unreviewed/2022/05/GHSA-57rc-w27f-mg38/GHSA-57rc-w27f-mg38.json +++ b/advisories/unreviewed/2022/05/GHSA-57rc-w27f-mg38/GHSA-57rc-w27f-mg38.json @@ -7,12 +7,8 @@ "CVE-2009-4761" ], "details": "Stack-based buffer overflow in Mini-stream RM Downloader allows remote attackers to execute arbitrary code via a long string in a .smi file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58ff-hvrc-gp86/GHSA-58ff-hvrc-gp86.json b/advisories/unreviewed/2022/05/GHSA-58ff-hvrc-gp86/GHSA-58ff-hvrc-gp86.json index 2fa838c5e27..9e1be7b9b95 100644 --- a/advisories/unreviewed/2022/05/GHSA-58ff-hvrc-gp86/GHSA-58ff-hvrc-gp86.json +++ b/advisories/unreviewed/2022/05/GHSA-58ff-hvrc-gp86/GHSA-58ff-hvrc-gp86.json @@ -7,12 +7,8 @@ "CVE-2009-4367" ], "details": "The Staging Webservice (\"sitecore modules/staging/service/api.asmx\") in Sitecore Staging Module 5.4.0 rev.080625 and earlier allows remote attackers to bypass authentication and (1) upload files, (2) download files, (3) list directories, and (4) clear the server cache via crafted SOAP requests with arbitrary Username and Password values, possibly related to a direct request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58w3-rppv-8634/GHSA-58w3-rppv-8634.json b/advisories/unreviewed/2022/05/GHSA-58w3-rppv-8634/GHSA-58w3-rppv-8634.json index 79efac23b27..0c0148f7561 100644 --- a/advisories/unreviewed/2022/05/GHSA-58w3-rppv-8634/GHSA-58w3-rppv-8634.json +++ b/advisories/unreviewed/2022/05/GHSA-58w3-rppv-8634/GHSA-58w3-rppv-8634.json @@ -7,12 +7,8 @@ "CVE-2009-4683" ], "details": "Directory traversal vulnerability in vote.php in Good/Bad Vote allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the id parameter in a dovote action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-599p-9xr9-v3rx/GHSA-599p-9xr9-v3rx.json b/advisories/unreviewed/2022/05/GHSA-599p-9xr9-v3rx/GHSA-599p-9xr9-v3rx.json index d653856d15b..f9e69f27d1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-599p-9xr9-v3rx/GHSA-599p-9xr9-v3rx.json +++ b/advisories/unreviewed/2022/05/GHSA-599p-9xr9-v3rx/GHSA-599p-9xr9-v3rx.json @@ -7,12 +7,8 @@ "CVE-2009-4932" ], "details": "Stack-based buffer overflow in 1by1 1.67 (aka 1.6.7.0) allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .m3u playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-59c7-g7qv-8mgg/GHSA-59c7-g7qv-8mgg.json b/advisories/unreviewed/2022/05/GHSA-59c7-g7qv-8mgg/GHSA-59c7-g7qv-8mgg.json index 9fb3fa1c35a..d2a6b5ed4c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-59c7-g7qv-8mgg/GHSA-59c7-g7qv-8mgg.json +++ b/advisories/unreviewed/2022/05/GHSA-59c7-g7qv-8mgg/GHSA-59c7-g7qv-8mgg.json @@ -7,12 +7,8 @@ "CVE-2009-4519" ], "details": "Multiple unspecified vulnerabilities in Ortro before 1.3.4 have unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5c5w-cwrc-57rp/GHSA-5c5w-cwrc-57rp.json b/advisories/unreviewed/2022/05/GHSA-5c5w-cwrc-57rp/GHSA-5c5w-cwrc-57rp.json index b02b9bdda05..21882dd1310 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c5w-cwrc-57rp/GHSA-5c5w-cwrc-57rp.json +++ b/advisories/unreviewed/2022/05/GHSA-5c5w-cwrc-57rp/GHSA-5c5w-cwrc-57rp.json @@ -7,12 +7,8 @@ "CVE-2009-4747" ], "details": "PHP remote file inclusion vulnerability in public/code/cp_html2xhtmlbasic.php in All In One Control Panel (AIOCP) 1.4.001 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter, a different vector than CVE-2009-3220.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c66-p5v7-wjxg/GHSA-5c66-p5v7-wjxg.json b/advisories/unreviewed/2022/05/GHSA-5c66-p5v7-wjxg/GHSA-5c66-p5v7-wjxg.json index 3796a846243..8e4f9522261 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c66-p5v7-wjxg/GHSA-5c66-p5v7-wjxg.json +++ b/advisories/unreviewed/2022/05/GHSA-5c66-p5v7-wjxg/GHSA-5c66-p5v7-wjxg.json @@ -7,12 +7,8 @@ "CVE-2009-4495" ], "details": "Yaws 1.85 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5cwj-9vmf-4mh9/GHSA-5cwj-9vmf-4mh9.json b/advisories/unreviewed/2022/05/GHSA-5cwj-9vmf-4mh9/GHSA-5cwj-9vmf-4mh9.json index b652b7882bc..3ca83417d0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cwj-9vmf-4mh9/GHSA-5cwj-9vmf-4mh9.json +++ b/advisories/unreviewed/2022/05/GHSA-5cwj-9vmf-4mh9/GHSA-5cwj-9vmf-4mh9.json @@ -7,12 +7,8 @@ "CVE-2009-4782" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Theeta CMS, possibly 0.01, allow remote attackers to inject arbitrary web script or HTML via the (1) start, (2) forum, and (3) cat parameters to community/thread.php; (4) start and (5) cat parameters to community/forum.php; and (6) start parameter to blog/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5ff4-mfcw-5vgg/GHSA-5ff4-mfcw-5vgg.json b/advisories/unreviewed/2022/05/GHSA-5ff4-mfcw-5vgg/GHSA-5ff4-mfcw-5vgg.json index a353d30f21a..a258184f1e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5ff4-mfcw-5vgg/GHSA-5ff4-mfcw-5vgg.json +++ b/advisories/unreviewed/2022/05/GHSA-5ff4-mfcw-5vgg/GHSA-5ff4-mfcw-5vgg.json @@ -7,12 +7,8 @@ "CVE-2009-4319" ], "details": "PHP remote file inclusion vulnerability in js/bbcodepress/bbcode-form.php in eoCMS 0.9.03 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the BBCODE_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fpx-cqw2-436p/GHSA-5fpx-cqw2-436p.json b/advisories/unreviewed/2022/05/GHSA-5fpx-cqw2-436p/GHSA-5fpx-cqw2-436p.json index 17a18e9e894..623d47f7b01 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fpx-cqw2-436p/GHSA-5fpx-cqw2-436p.json +++ b/advisories/unreviewed/2022/05/GHSA-5fpx-cqw2-436p/GHSA-5fpx-cqw2-436p.json @@ -7,12 +7,8 @@ "CVE-2009-4354" ], "details": "TransWARE Active! mail 2003 build 2003.0139.0871 and earlier does not properly secure the session ID in a session cookie, which allows remote attackers to hijack web sessions, probably related to the \"secure\" flag for cookies in SSL sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5fw5-vr4x-4698/GHSA-5fw5-vr4x-4698.json b/advisories/unreviewed/2022/05/GHSA-5fw5-vr4x-4698/GHSA-5fw5-vr4x-4698.json index 4923afa8f90..9c09ea1dd16 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fw5-vr4x-4698/GHSA-5fw5-vr4x-4698.json +++ b/advisories/unreviewed/2022/05/GHSA-5fw5-vr4x-4698/GHSA-5fw5-vr4x-4698.json @@ -7,12 +7,8 @@ "CVE-2009-4883" ], "details": "SQL injection vulnerability in index.php in PHPRecipeBook 2.24 and 2.39 allows remote attackers to execute arbitrary SQL commands via the (1) base_id or (2) course_id parameter in a search action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hrf-qvr7-jrc9/GHSA-5hrf-qvr7-jrc9.json b/advisories/unreviewed/2022/05/GHSA-5hrf-qvr7-jrc9/GHSA-5hrf-qvr7-jrc9.json index a8b0bacae04..34b77781efe 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hrf-qvr7-jrc9/GHSA-5hrf-qvr7-jrc9.json +++ b/advisories/unreviewed/2022/05/GHSA-5hrf-qvr7-jrc9/GHSA-5hrf-qvr7-jrc9.json @@ -7,12 +7,8 @@ "CVE-2009-4936" ], "details": "Multiple SQL injection vulnerabilities in Small Pirate (SPirate) 2.1 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to the default URI in an rss .xml action, or the id parameter to (2) pag1.php, (3) pag1-guest.php, (4) rss-comment_post.php (aka rss-coment_post.php), or (5) rss-pic-comment.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5j5p-26xm-6h27/GHSA-5j5p-26xm-6h27.json b/advisories/unreviewed/2022/05/GHSA-5j5p-26xm-6h27/GHSA-5j5p-26xm-6h27.json index bc9301b8316..a17785bed68 100644 --- a/advisories/unreviewed/2022/05/GHSA-5j5p-26xm-6h27/GHSA-5j5p-26xm-6h27.json +++ b/advisories/unreviewed/2022/05/GHSA-5j5p-26xm-6h27/GHSA-5j5p-26xm-6h27.json @@ -7,12 +7,8 @@ "CVE-2009-4940" ], "details": "SQL injection vulnerability in index.php in Zeus Cart 2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the maincatid parameter in a showmaincatlanding action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5j7r-m8gm-mhjj/GHSA-5j7r-m8gm-mhjj.json b/advisories/unreviewed/2022/05/GHSA-5j7r-m8gm-mhjj/GHSA-5j7r-m8gm-mhjj.json index c9d3c7d9934..567d676e496 100644 --- a/advisories/unreviewed/2022/05/GHSA-5j7r-m8gm-mhjj/GHSA-5j7r-m8gm-mhjj.json +++ b/advisories/unreviewed/2022/05/GHSA-5j7r-m8gm-mhjj/GHSA-5j7r-m8gm-mhjj.json @@ -7,12 +7,8 @@ "CVE-2009-4689" ], "details": "SQL injection vulnerability in index.php in PHP Shopping Cart Selling Website Script allows remote attackers to execute arbitrary SQL commands via the cid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jc5-h8xq-r8h4/GHSA-5jc5-h8xq-r8h4.json b/advisories/unreviewed/2022/05/GHSA-5jc5-h8xq-r8h4/GHSA-5jc5-h8xq-r8h4.json index dfb54d4bd4e..f9cc242c09a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jc5-h8xq-r8h4/GHSA-5jc5-h8xq-r8h4.json +++ b/advisories/unreviewed/2022/05/GHSA-5jc5-h8xq-r8h4/GHSA-5jc5-h8xq-r8h4.json @@ -7,12 +7,8 @@ "CVE-2009-4534" ], "details": "Open redirect vulnerability in the FAQ Ask module 5.x and 6.x before 6.x-2.0, a module for Drupal, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5m98-xj47-mmpq/GHSA-5m98-xj47-mmpq.json b/advisories/unreviewed/2022/05/GHSA-5m98-xj47-mmpq/GHSA-5m98-xj47-mmpq.json index 4976c3ccd37..9c29e49663b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m98-xj47-mmpq/GHSA-5m98-xj47-mmpq.json +++ b/advisories/unreviewed/2022/05/GHSA-5m98-xj47-mmpq/GHSA-5m98-xj47-mmpq.json @@ -7,12 +7,8 @@ "CVE-2009-4945" ], "details": "AdPeeps 8.5d1 has a default password of admin for the admin account, which makes it easier for remote attackers to obtain access via requests to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5pxr-p8cj-657v/GHSA-5pxr-p8cj-657v.json b/advisories/unreviewed/2022/05/GHSA-5pxr-p8cj-657v/GHSA-5pxr-p8cj-657v.json index 3e1971e2603..7a33c29fd83 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pxr-p8cj-657v/GHSA-5pxr-p8cj-657v.json +++ b/advisories/unreviewed/2022/05/GHSA-5pxr-p8cj-657v/GHSA-5pxr-p8cj-657v.json @@ -7,12 +7,8 @@ "CVE-2009-4344" ], "details": "Cross-site scripting (XSS) vulnerability in the ZID Linkliste (zid_linklist) extension 1.0.0 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qr4-p3v5-ggg7/GHSA-5qr4-p3v5-ggg7.json b/advisories/unreviewed/2022/05/GHSA-5qr4-p3v5-ggg7/GHSA-5qr4-p3v5-ggg7.json index 0e4709b5e18..a3cbb509601 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qr4-p3v5-ggg7/GHSA-5qr4-p3v5-ggg7.json +++ b/advisories/unreviewed/2022/05/GHSA-5qr4-p3v5-ggg7/GHSA-5qr4-p3v5-ggg7.json @@ -7,12 +7,8 @@ "CVE-2009-4550" ], "details": "SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the func parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r3p-7x89-9785/GHSA-5r3p-7x89-9785.json b/advisories/unreviewed/2022/05/GHSA-5r3p-7x89-9785/GHSA-5r3p-7x89-9785.json index 28fd66318f2..5ee11708b90 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r3p-7x89-9785/GHSA-5r3p-7x89-9785.json +++ b/advisories/unreviewed/2022/05/GHSA-5r3p-7x89-9785/GHSA-5r3p-7x89-9785.json @@ -7,12 +7,8 @@ "CVE-2009-4541" ], "details": "Multiple PHP remote file inclusion vulnerabilities in IsolSoft Support Center 2.5 allow remote attackers to execute arbitrary PHP code via a URL in the lang parameter to (1) newticket.php or (2) rempass.php, or a URL in the lang parameter in an adduser action to (3) index.php. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5r4m-3357-rmf8/GHSA-5r4m-3357-rmf8.json b/advisories/unreviewed/2022/05/GHSA-5r4m-3357-rmf8/GHSA-5r4m-3357-rmf8.json index cf015f2bcec..18707a3bb38 100644 --- a/advisories/unreviewed/2022/05/GHSA-5r4m-3357-rmf8/GHSA-5r4m-3357-rmf8.json +++ b/advisories/unreviewed/2022/05/GHSA-5r4m-3357-rmf8/GHSA-5r4m-3357-rmf8.json @@ -7,12 +7,8 @@ "CVE-2009-4546" ], "details": "globepersonnel_login.asp in Logoshows BBS 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the (1) pb_username (aka pb%5Fusername) and (2) level cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vc9-h9cw-fh23/GHSA-5vc9-h9cw-fh23.json b/advisories/unreviewed/2022/05/GHSA-5vc9-h9cw-fh23/GHSA-5vc9-h9cw-fh23.json index ff4d7b37785..91786cf6239 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vc9-h9cw-fh23/GHSA-5vc9-h9cw-fh23.json +++ b/advisories/unreviewed/2022/05/GHSA-5vc9-h9cw-fh23/GHSA-5vc9-h9cw-fh23.json @@ -7,12 +7,8 @@ "CVE-2009-4296" ], "details": "SQL injection vulnerability in the Taxonomy Timer module 5.x-1.8 and earlier and 6.x-alpha1 and earlier for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5vcw-72h8-x9g2/GHSA-5vcw-72h8-x9g2.json b/advisories/unreviewed/2022/05/GHSA-5vcw-72h8-x9g2/GHSA-5vcw-72h8-x9g2.json index b9bab359d36..ddd570df7e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vcw-72h8-x9g2/GHSA-5vcw-72h8-x9g2.json +++ b/advisories/unreviewed/2022/05/GHSA-5vcw-72h8-x9g2/GHSA-5vcw-72h8-x9g2.json @@ -7,12 +7,8 @@ "CVE-2009-4928" ], "details": "PHP remote file inclusion vulnerability in config.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary PHP code via a URL in the inc_dir parameter, a different vector than CVE-2006-1922 and CVE-2006-7055.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5w88-qrjj-8w5x/GHSA-5w88-qrjj-8w5x.json b/advisories/unreviewed/2022/05/GHSA-5w88-qrjj-8w5x/GHSA-5w88-qrjj-8w5x.json index 4ff6394f63b..cccf33876a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-5w88-qrjj-8w5x/GHSA-5w88-qrjj-8w5x.json +++ b/advisories/unreviewed/2022/05/GHSA-5w88-qrjj-8w5x/GHSA-5w88-qrjj-8w5x.json @@ -7,12 +7,8 @@ "CVE-2009-4724" ], "details": "SQL injection vulnerability in shop.htm in PaymentProcessorScript.net PPScript allows remote attackers to execute arbitrary SQL commands via the cid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wh5-58m7-cqc8/GHSA-5wh5-58m7-cqc8.json b/advisories/unreviewed/2022/05/GHSA-5wh5-58m7-cqc8/GHSA-5wh5-58m7-cqc8.json index 8384d0d45a0..8e6e77dbe60 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wh5-58m7-cqc8/GHSA-5wh5-58m7-cqc8.json +++ b/advisories/unreviewed/2022/05/GHSA-5wh5-58m7-cqc8/GHSA-5wh5-58m7-cqc8.json @@ -7,12 +7,8 @@ "CVE-2009-4841" ], "details": "Heap-based buffer overflow in the SonicMediaPlayer ActiveX control in SonicMediaPlayer.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbitrary code via a long argument to the DiskType method. NOTE: this might overlap CVE-2007-1559.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wpj-jjfx-w9wh/GHSA-5wpj-jjfx-w9wh.json b/advisories/unreviewed/2022/05/GHSA-5wpj-jjfx-w9wh/GHSA-5wpj-jjfx-w9wh.json index ad05d6fdf25..b1969a84fdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wpj-jjfx-w9wh/GHSA-5wpj-jjfx-w9wh.json +++ b/advisories/unreviewed/2022/05/GHSA-5wpj-jjfx-w9wh/GHSA-5wpj-jjfx-w9wh.json @@ -7,12 +7,8 @@ "CVE-2009-4864" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in escorts_search.php in I-Escorts Directory Script and Agency Script allow remote attackers to inject arbitrary web script or HTML via the (1) search_name and (2) languages parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5ww9-m8xr-rw26/GHSA-5ww9-m8xr-rw26.json b/advisories/unreviewed/2022/05/GHSA-5ww9-m8xr-rw26/GHSA-5ww9-m8xr-rw26.json index 64d5f7433b7..c7f746d92df 100644 --- a/advisories/unreviewed/2022/05/GHSA-5ww9-m8xr-rw26/GHSA-5ww9-m8xr-rw26.json +++ b/advisories/unreviewed/2022/05/GHSA-5ww9-m8xr-rw26/GHSA-5ww9-m8xr-rw26.json @@ -7,12 +7,8 @@ "CVE-2009-4460" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Auto-Surf Traffic Exchange Script 1.1 allow remote attackers to inject arbitrary web script or HTML via the rid parameter to (1) index.php, (2) faq.php, and (3) register.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5xg6-r8mx-769h/GHSA-5xg6-r8mx-769h.json b/advisories/unreviewed/2022/05/GHSA-5xg6-r8mx-769h/GHSA-5xg6-r8mx-769h.json index a9efaf6854d..3d113a53cae 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xg6-r8mx-769h/GHSA-5xg6-r8mx-769h.json +++ b/advisories/unreviewed/2022/05/GHSA-5xg6-r8mx-769h/GHSA-5xg6-r8mx-769h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-622q-q6gx-fq67/GHSA-622q-q6gx-fq67.json b/advisories/unreviewed/2022/05/GHSA-622q-q6gx-fq67/GHSA-622q-q6gx-fq67.json index f85e0e925f4..622fb869a54 100644 --- a/advisories/unreviewed/2022/05/GHSA-622q-q6gx-fq67/GHSA-622q-q6gx-fq67.json +++ b/advisories/unreviewed/2022/05/GHSA-622q-q6gx-fq67/GHSA-622q-q6gx-fq67.json @@ -7,12 +7,8 @@ "CVE-2009-4532" ], "details": "Cross-site scripting (XSS) vulnerability in the Webform module 5.x before 5.x-2.8 and 6.x before 6.x-2.8, a module for Drupal, allows remote authenticated users, with webform creation privileges, to inject arbitrary web script or HTML via a field label.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-633q-r4wp-6f9q/GHSA-633q-r4wp-6f9q.json b/advisories/unreviewed/2022/05/GHSA-633q-r4wp-6f9q/GHSA-633q-r4wp-6f9q.json index 7eb48a33941..0560694dccc 100644 --- a/advisories/unreviewed/2022/05/GHSA-633q-r4wp-6f9q/GHSA-633q-r4wp-6f9q.json +++ b/advisories/unreviewed/2022/05/GHSA-633q-r4wp-6f9q/GHSA-633q-r4wp-6f9q.json @@ -7,12 +7,8 @@ "CVE-2009-4959" ], "details": "SQL injection vulnerability in the T3M E-Mail Marketing Tool (t3m) extension 0.2.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63h9-v555-xr9p/GHSA-63h9-v555-xr9p.json b/advisories/unreviewed/2022/05/GHSA-63h9-v555-xr9p/GHSA-63h9-v555-xr9p.json index 60690ae9dad..82fd0dcba32 100644 --- a/advisories/unreviewed/2022/05/GHSA-63h9-v555-xr9p/GHSA-63h9-v555-xr9p.json +++ b/advisories/unreviewed/2022/05/GHSA-63h9-v555-xr9p/GHSA-63h9-v555-xr9p.json @@ -7,12 +7,8 @@ "CVE-2009-4846" ], "details": "Multiple buffer overflows in Deliantra Server before 2.82 allow remote attackers to execute arbitrary code via vectors related to (1) the command_gsay function in server/c_party.C and (2) the book implementation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64rx-chg9-55cq/GHSA-64rx-chg9-55cq.json b/advisories/unreviewed/2022/05/GHSA-64rx-chg9-55cq/GHSA-64rx-chg9-55cq.json index b674761ae19..784e7817e30 100644 --- a/advisories/unreviewed/2022/05/GHSA-64rx-chg9-55cq/GHSA-64rx-chg9-55cq.json +++ b/advisories/unreviewed/2022/05/GHSA-64rx-chg9-55cq/GHSA-64rx-chg9-55cq.json @@ -7,12 +7,8 @@ "CVE-2008-3143" ], "details": "Multiple integer overflows in Python before 2.5.2 might allow context-dependent attackers to have an unknown impact via vectors related to (1) Include/pymem.h; (2) _csv.c, (3) _struct.c, (4) arraymodule.c, (5) audioop.c, (6) binascii.c, (7) cPickle.c, (8) cStringIO.c, (9) cjkcodecs/multibytecodec.c, (10) datetimemodule.c, (11) md5.c, (12) rgbimgmodule.c, and (13) stropmodule.c in Modules/; (14) bufferobject.c, (15) listobject.c, and (16) obmalloc.c in Objects/; (17) Parser/node.c; and (18) asdl.c, (19) ast.c, (20) bltinmodule.c, and (21) compile.c in Python/, as addressed by \"checks for integer overflows, contributed by Google.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64xg-898q-7h9p/GHSA-64xg-898q-7h9p.json b/advisories/unreviewed/2022/05/GHSA-64xg-898q-7h9p/GHSA-64xg-898q-7h9p.json index 6f763d65107..f0e43d5f393 100644 --- a/advisories/unreviewed/2022/05/GHSA-64xg-898q-7h9p/GHSA-64xg-898q-7h9p.json +++ b/advisories/unreviewed/2022/05/GHSA-64xg-898q-7h9p/GHSA-64xg-898q-7h9p.json @@ -7,12 +7,8 @@ "CVE-2009-4469" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in pagenumber.inc.php in phpPowerCards 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, the (2) archiv parameter, and the (3) subcat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-667g-vr6p-5gvg/GHSA-667g-vr6p-5gvg.json b/advisories/unreviewed/2022/05/GHSA-667g-vr6p-5gvg/GHSA-667g-vr6p-5gvg.json index 3e37041368b..b6a26598e59 100644 --- a/advisories/unreviewed/2022/05/GHSA-667g-vr6p-5gvg/GHSA-667g-vr6p-5gvg.json +++ b/advisories/unreviewed/2022/05/GHSA-667g-vr6p-5gvg/GHSA-667g-vr6p-5gvg.json @@ -7,12 +7,8 @@ "CVE-2009-4255" ], "details": "Cross-site scripting (XSS) vulnerability in the You!Hostit! template 1.0.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the created_by_alias parameter in index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-66fh-frph-79g7/GHSA-66fh-frph-79g7.json b/advisories/unreviewed/2022/05/GHSA-66fh-frph-79g7/GHSA-66fh-frph-79g7.json index 12ead380ad1..a43ac0dac9d 100644 --- a/advisories/unreviewed/2022/05/GHSA-66fh-frph-79g7/GHSA-66fh-frph-79g7.json +++ b/advisories/unreviewed/2022/05/GHSA-66fh-frph-79g7/GHSA-66fh-frph-79g7.json @@ -7,12 +7,8 @@ "CVE-2009-4634" ], "details": "Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that (1) bypasses a validation check in vorbis_dec.c and triggers a wraparound of the stack pointer, or (2) access a pointer from out-of-bounds memory in mov.c, related to an elst tag that appears before a tag that creates a stream.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67gx-2r7g-wf6w/GHSA-67gx-2r7g-wf6w.json b/advisories/unreviewed/2022/05/GHSA-67gx-2r7g-wf6w/GHSA-67gx-2r7g-wf6w.json index 5e737fbe303..7a5f74f586c 100644 --- a/advisories/unreviewed/2022/05/GHSA-67gx-2r7g-wf6w/GHSA-67gx-2r7g-wf6w.json +++ b/advisories/unreviewed/2022/05/GHSA-67gx-2r7g-wf6w/GHSA-67gx-2r7g-wf6w.json @@ -7,12 +7,8 @@ "CVE-2009-4608" ], "details": "Cross-site scripting (XSS) vulnerability in Canon IT Solutions Inc. ACCESSGUARDIAN 3.0.14 and earlier, and 3.5.6 and earlier, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-67mf-4m59-fw82/GHSA-67mf-4m59-fw82.json b/advisories/unreviewed/2022/05/GHSA-67mf-4m59-fw82/GHSA-67mf-4m59-fw82.json index 6b70ed9e87d..c0705e74e76 100644 --- a/advisories/unreviewed/2022/05/GHSA-67mf-4m59-fw82/GHSA-67mf-4m59-fw82.json +++ b/advisories/unreviewed/2022/05/GHSA-67mf-4m59-fw82/GHSA-67mf-4m59-fw82.json @@ -7,12 +7,8 @@ "CVE-2009-4528" ], "details": "The Organic Groups (OG) Vocabulary module 6.x before 6.x-1.0 for Drupal allows remote authenticated group members to bypass intended access restrictions, and create, modify, or read a vocabulary, via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68cc-3776-r6wf/GHSA-68cc-3776-r6wf.json b/advisories/unreviewed/2022/05/GHSA-68cc-3776-r6wf/GHSA-68cc-3776-r6wf.json index f88874b1192..c6aa9ffb890 100644 --- a/advisories/unreviewed/2022/05/GHSA-68cc-3776-r6wf/GHSA-68cc-3776-r6wf.json +++ b/advisories/unreviewed/2022/05/GHSA-68cc-3776-r6wf/GHSA-68cc-3776-r6wf.json @@ -7,12 +7,8 @@ "CVE-2009-4872" ], "details": "Multiple SQL injection vulnerabilities in globepersonnel_login.asp in Logoshows BBS 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6977-wjv6-r929/GHSA-6977-wjv6-r929.json b/advisories/unreviewed/2022/05/GHSA-6977-wjv6-r929/GHSA-6977-wjv6-r929.json index 72aa540c05d..fcaa82b3b08 100644 --- a/advisories/unreviewed/2022/05/GHSA-6977-wjv6-r929/GHSA-6977-wjv6-r929.json +++ b/advisories/unreviewed/2022/05/GHSA-6977-wjv6-r929/GHSA-6977-wjv6-r929.json @@ -7,12 +7,8 @@ "CVE-2008-4128" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in the HTTP Administration component in Cisco IOS 12.4 on the 871 Integrated Services Router allow remote attackers to execute arbitrary commands via (1) a certain \"show privilege\" command to the /level/15/exec/- URI, and (2) a certain \"alias exec\" command to the /level/15/exec/-/configure/http URI. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6c3h-j748-qj6r/GHSA-6c3h-j748-qj6r.json b/advisories/unreviewed/2022/05/GHSA-6c3h-j748-qj6r/GHSA-6c3h-j748-qj6r.json index 1f7611d21dc..ff756359e09 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c3h-j748-qj6r/GHSA-6c3h-j748-qj6r.json +++ b/advisories/unreviewed/2022/05/GHSA-6c3h-j748-qj6r/GHSA-6c3h-j748-qj6r.json @@ -7,12 +7,8 @@ "CVE-2009-4704" ], "details": "Unspecified vulnerability in the Webesse E-Card (ws_ecard) extension 1.0.2 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6c7q-693h-xjph/GHSA-6c7q-693h-xjph.json b/advisories/unreviewed/2022/05/GHSA-6c7q-693h-xjph/GHSA-6c7q-693h-xjph.json index 34cd5362751..77a88ee301d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c7q-693h-xjph/GHSA-6c7q-693h-xjph.json +++ b/advisories/unreviewed/2022/05/GHSA-6c7q-693h-xjph/GHSA-6c7q-693h-xjph.json @@ -7,12 +7,8 @@ "CVE-2009-4659" ], "details": "Unspecified vulnerability in MP3-Cutter Ease Audio Cutter 1.20 allows user-assisted remote attackers to cause a denial of service (application crash) via a long string in a WAV file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6cf8-hpm3-vqrm/GHSA-6cf8-hpm3-vqrm.json b/advisories/unreviewed/2022/05/GHSA-6cf8-hpm3-vqrm/GHSA-6cf8-hpm3-vqrm.json index 952b23043ad..1da7272c426 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cf8-hpm3-vqrm/GHSA-6cf8-hpm3-vqrm.json +++ b/advisories/unreviewed/2022/05/GHSA-6cf8-hpm3-vqrm/GHSA-6cf8-hpm3-vqrm.json @@ -7,12 +7,8 @@ "CVE-2009-4677" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in phpFK PHP Forum ohne 7.0.4 allows remote attackers to inject arbitrary web script or HTML via the search parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6g79-vv2v-pq7r/GHSA-6g79-vv2v-pq7r.json b/advisories/unreviewed/2022/05/GHSA-6g79-vv2v-pq7r/GHSA-6g79-vv2v-pq7r.json index 2a0f8b6c68c..aa2d7169bb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g79-vv2v-pq7r/GHSA-6g79-vv2v-pq7r.json +++ b/advisories/unreviewed/2022/05/GHSA-6g79-vv2v-pq7r/GHSA-6g79-vv2v-pq7r.json @@ -7,12 +7,8 @@ "CVE-2009-4615" ], "details": "SQL injection vulnerability in review.php in MYRE Holiday Rental Manager allows remote attackers to execute arbitrary SQL commands via the link_id parameter in a show_review action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6g86-c9gm-gqg5/GHSA-6g86-c9gm-gqg5.json b/advisories/unreviewed/2022/05/GHSA-6g86-c9gm-gqg5/GHSA-6g86-c9gm-gqg5.json index 81d4f63cc8b..a135cab446b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g86-c9gm-gqg5/GHSA-6g86-c9gm-gqg5.json +++ b/advisories/unreviewed/2022/05/GHSA-6g86-c9gm-gqg5/GHSA-6g86-c9gm-gqg5.json @@ -7,12 +7,8 @@ "CVE-2009-4623" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Advanced Comment System 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the ACS_path parameter to (1) index.php and (2) admin.php in advanced_comment_system/. NOTE: this might only be a vulnerability when the administrator has not followed installation instructions in install.php. NOTE: this might be the same as CVE-2020-35598.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hqc-c4rr-fj7q/GHSA-6hqc-c4rr-fj7q.json b/advisories/unreviewed/2022/05/GHSA-6hqc-c4rr-fj7q/GHSA-6hqc-c4rr-fj7q.json index 510e1afa374..ee234d58b4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hqc-c4rr-fj7q/GHSA-6hqc-c4rr-fj7q.json +++ b/advisories/unreviewed/2022/05/GHSA-6hqc-c4rr-fj7q/GHSA-6hqc-c4rr-fj7q.json @@ -7,12 +7,8 @@ "CVE-2009-4919" ], "details": "Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to have an unspecified impact via long IKE attributes, aka Bug ID CSCsu43121.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hqf-fwf2-vf87/GHSA-6hqf-fwf2-vf87.json b/advisories/unreviewed/2022/05/GHSA-6hqf-fwf2-vf87/GHSA-6hqf-fwf2-vf87.json index e32e688fe14..c759f6f7830 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hqf-fwf2-vf87/GHSA-6hqf-fwf2-vf87.json +++ b/advisories/unreviewed/2022/05/GHSA-6hqf-fwf2-vf87/GHSA-6hqf-fwf2-vf87.json @@ -7,12 +7,8 @@ "CVE-2009-4738" ], "details": "Unspecified vulnerability in JustSystems Corporation ATOK 2006 through 2009 and ATOK flat-rate service, and Just Smile 4 with the ATOK Smile module, allows physically proximate users to bypass the screen lock and execute commands with system privileges via unknown vectors related to \"launching external applications.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6j3c-g3mp-922r/GHSA-6j3c-g3mp-922r.json b/advisories/unreviewed/2022/05/GHSA-6j3c-g3mp-922r/GHSA-6j3c-g3mp-922r.json index 51f7682219d..a9da787e007 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j3c-g3mp-922r/GHSA-6j3c-g3mp-922r.json +++ b/advisories/unreviewed/2022/05/GHSA-6j3c-g3mp-922r/GHSA-6j3c-g3mp-922r.json @@ -7,12 +7,8 @@ "CVE-2009-4347" ], "details": "Cross-site scripting (XSS) vulnerability in daloradius-users/login.php in daloRADIUS 0.9-8 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6jmp-f9w7-ccwh/GHSA-6jmp-f9w7-ccwh.json b/advisories/unreviewed/2022/05/GHSA-6jmp-f9w7-ccwh/GHSA-6jmp-f9w7-ccwh.json index ea7d68a884f..078c2fbe7a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jmp-f9w7-ccwh/GHSA-6jmp-f9w7-ccwh.json +++ b/advisories/unreviewed/2022/05/GHSA-6jmp-f9w7-ccwh/GHSA-6jmp-f9w7-ccwh.json @@ -7,12 +7,8 @@ "CVE-2009-4713" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Qas (aka Quas) module for XOOPS Celepar allow remote attackers to inject arbitrary web script or HTML via (1) the cod_categoria parameter to categoria.php, (2) the opcao parameter to index.php, and the PATH_INFO to (3) categoria.php and (4) index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6m5w-rvw6-g5p7/GHSA-6m5w-rvw6-g5p7.json b/advisories/unreviewed/2022/05/GHSA-6m5w-rvw6-g5p7/GHSA-6m5w-rvw6-g5p7.json index 930e464b3be..7185cb2cf3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m5w-rvw6-g5p7/GHSA-6m5w-rvw6-g5p7.json +++ b/advisories/unreviewed/2022/05/GHSA-6m5w-rvw6-g5p7/GHSA-6m5w-rvw6-g5p7.json @@ -7,12 +7,8 @@ "CVE-2009-4858" ], "details": "Cross-site scripting (XSS) vulnerability in questiondetail.php in Yahoo Answers Clone allows remote attackers to inject arbitrary web script or HTML via the questionid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6m9v-v9ff-7pjf/GHSA-6m9v-v9ff-7pjf.json b/advisories/unreviewed/2022/05/GHSA-6m9v-v9ff-7pjf/GHSA-6m9v-v9ff-7pjf.json index a02b4a96822..b92f7b2a5bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m9v-v9ff-7pjf/GHSA-6m9v-v9ff-7pjf.json +++ b/advisories/unreviewed/2022/05/GHSA-6m9v-v9ff-7pjf/GHSA-6m9v-v9ff-7pjf.json @@ -7,12 +7,8 @@ "CVE-2009-5019" ], "details": "Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/NewsPad.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pf9-ph8v-mxvv/GHSA-6pf9-ph8v-mxvv.json b/advisories/unreviewed/2022/05/GHSA-6pf9-ph8v-mxvv/GHSA-6pf9-ph8v-mxvv.json index 311fb448492..a2f2afd32a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pf9-ph8v-mxvv/GHSA-6pf9-ph8v-mxvv.json +++ b/advisories/unreviewed/2022/05/GHSA-6pf9-ph8v-mxvv/GHSA-6pf9-ph8v-mxvv.json @@ -7,12 +7,8 @@ "CVE-2009-4380" ], "details": "Multiple SQL injection vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors, a different issue than CVE-2008-2925.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6qh5-96r8-64m4/GHSA-6qh5-96r8-64m4.json b/advisories/unreviewed/2022/05/GHSA-6qh5-96r8-64m4/GHSA-6qh5-96r8-64m4.json index 03b788c9ffb..9892c377ebd 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qh5-96r8-64m4/GHSA-6qh5-96r8-64m4.json +++ b/advisories/unreviewed/2022/05/GHSA-6qh5-96r8-64m4/GHSA-6qh5-96r8-64m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6qx4-v2c7-9rhp/GHSA-6qx4-v2c7-9rhp.json b/advisories/unreviewed/2022/05/GHSA-6qx4-v2c7-9rhp/GHSA-6qx4-v2c7-9rhp.json index e45eba5d70d..8849361be87 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qx4-v2c7-9rhp/GHSA-6qx4-v2c7-9rhp.json +++ b/advisories/unreviewed/2022/05/GHSA-6qx4-v2c7-9rhp/GHSA-6qx4-v2c7-9rhp.json @@ -7,12 +7,8 @@ "CVE-2009-4717" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Gonafish WebStatCaffe allow remote attackers to inject arbitrary web script or HTML via the (1) host parameter to stat/host.php, nodayshow parameter to (2) mostvisitpage.php and (3) visitorduration.php in stat/, (4) nopagesmost parameter to stat/mostvisitpagechart.php, and date parameter to (5) pageviewers.php, (6) pageviewerschart.php, and (7) referer.php in stat/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6qxh-rfj3-wfcp/GHSA-6qxh-rfj3-wfcp.json b/advisories/unreviewed/2022/05/GHSA-6qxh-rfj3-wfcp/GHSA-6qxh-rfj3-wfcp.json index e85eedcc923..a3b353c87e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qxh-rfj3-wfcp/GHSA-6qxh-rfj3-wfcp.json +++ b/advisories/unreviewed/2022/05/GHSA-6qxh-rfj3-wfcp/GHSA-6qxh-rfj3-wfcp.json @@ -7,12 +7,8 @@ "CVE-2009-4564" ], "details": "SQL injection vulnerability in index.php in Zenphoto 1.2.5, when the ZenPage plugin is enabled, allows remote attackers to execute arbitrary SQL commands via the category parameter, related to a URI under news/category/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r3w-c7h6-wfhg/GHSA-6r3w-c7h6-wfhg.json b/advisories/unreviewed/2022/05/GHSA-6r3w-c7h6-wfhg/GHSA-6r3w-c7h6-wfhg.json index 2416d4c0b85..4d19fd66fcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r3w-c7h6-wfhg/GHSA-6r3w-c7h6-wfhg.json +++ b/advisories/unreviewed/2022/05/GHSA-6r3w-c7h6-wfhg/GHSA-6r3w-c7h6-wfhg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6v23-69g3-gjqh/GHSA-6v23-69g3-gjqh.json b/advisories/unreviewed/2022/05/GHSA-6v23-69g3-gjqh/GHSA-6v23-69g3-gjqh.json index e479c23eff5..aa8e43875b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-6v23-69g3-gjqh/GHSA-6v23-69g3-gjqh.json +++ b/advisories/unreviewed/2022/05/GHSA-6v23-69g3-gjqh/GHSA-6v23-69g3-gjqh.json @@ -7,12 +7,8 @@ "CVE-2009-4309" ], "details": "Heap-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a large size value in a movi record in an IV41 stream in a media file, as demonstrated by an AVI file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6v54-4j58-572p/GHSA-6v54-4j58-572p.json b/advisories/unreviewed/2022/05/GHSA-6v54-4j58-572p/GHSA-6v54-4j58-572p.json index 26593a47c3b..5cd406cacdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-6v54-4j58-572p/GHSA-6v54-4j58-572p.json +++ b/advisories/unreviewed/2022/05/GHSA-6v54-4j58-572p/GHSA-6v54-4j58-572p.json @@ -7,12 +7,8 @@ "CVE-2009-4714" ], "details": "Cross-site scripting (XSS) vulnerability in the quiz module for XOOPS Celepar allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to cadastro_usuario.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6v84-84qc-67rx/GHSA-6v84-84qc-67rx.json b/advisories/unreviewed/2022/05/GHSA-6v84-84qc-67rx/GHSA-6v84-84qc-67rx.json index 0022883bc82..54d505b1df0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6v84-84qc-67rx/GHSA-6v84-84qc-67rx.json +++ b/advisories/unreviewed/2022/05/GHSA-6v84-84qc-67rx/GHSA-6v84-84qc-67rx.json @@ -7,12 +7,8 @@ "CVE-2009-4359" ], "details": "Cross-site scripting (XSS) vulnerability in folder.php in the SmartMedia 0.85 Beta module for XOOPS allows remote attackers to inject arbitrary web script or HTML via the categoryid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6vcw-5c7w-wjjm/GHSA-6vcw-5c7w-wjjm.json b/advisories/unreviewed/2022/05/GHSA-6vcw-5c7w-wjjm/GHSA-6vcw-5c7w-wjjm.json index a63ac83321b..e0015742a25 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vcw-5c7w-wjjm/GHSA-6vcw-5c7w-wjjm.json +++ b/advisories/unreviewed/2022/05/GHSA-6vcw-5c7w-wjjm/GHSA-6vcw-5c7w-wjjm.json @@ -7,12 +7,8 @@ "CVE-2009-4926" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Online Contact Manager (formerly EContact PRO) 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) showGroup parameter to (a) index.php and the (2) id parameter to (b) view.php, (c) email.php, (d) edit.php, and (e) delete.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w95-mr48-gp8c/GHSA-6w95-mr48-gp8c.json b/advisories/unreviewed/2022/05/GHSA-6w95-mr48-gp8c/GHSA-6w95-mr48-gp8c.json index 24de8c9b6dc..5e287c2c822 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w95-mr48-gp8c/GHSA-6w95-mr48-gp8c.json +++ b/advisories/unreviewed/2022/05/GHSA-6w95-mr48-gp8c/GHSA-6w95-mr48-gp8c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w97-x9wf-g8mv/GHSA-6w97-x9wf-g8mv.json b/advisories/unreviewed/2022/05/GHSA-6w97-x9wf-g8mv/GHSA-6w97-x9wf-g8mv.json index 2b9e78ee379..515f8a557c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w97-x9wf-g8mv/GHSA-6w97-x9wf-g8mv.json +++ b/advisories/unreviewed/2022/05/GHSA-6w97-x9wf-g8mv/GHSA-6w97-x9wf-g8mv.json @@ -7,12 +7,8 @@ "CVE-2009-4302" ], "details": "login/index_form.html in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 links to an index page on the HTTP port even when the page is served from an HTTPS port, which might cause login credentials to be sent in cleartext, even when SSL is intended, and allows remote attackers to obtain these credentials by sniffing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6wj8-h3gq-4jxh/GHSA-6wj8-h3gq-4jxh.json b/advisories/unreviewed/2022/05/GHSA-6wj8-h3gq-4jxh/GHSA-6wj8-h3gq-4jxh.json index d46923896fa..52ecf192219 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wj8-h3gq-4jxh/GHSA-6wj8-h3gq-4jxh.json +++ b/advisories/unreviewed/2022/05/GHSA-6wj8-h3gq-4jxh/GHSA-6wj8-h3gq-4jxh.json @@ -7,12 +7,8 @@ "CVE-2009-4563" ], "details": "Cross-site request forgery (CSRF) vulnerability in zp-core/admin-options.php in Zenphoto 1.2.5 allows remote attackers to hijack the authentication of administrators for requests that change the administrative password via the 0-adminpass and 0-adminpass_2 parameters in a saveoptions action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wrf-h8f2-3c5p/GHSA-6wrf-h8f2-3c5p.json b/advisories/unreviewed/2022/05/GHSA-6wrf-h8f2-3c5p/GHSA-6wrf-h8f2-3c5p.json index e6556cfc3d2..73b066d11bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wrf-h8f2-3c5p/GHSA-6wrf-h8f2-3c5p.json +++ b/advisories/unreviewed/2022/05/GHSA-6wrf-h8f2-3c5p/GHSA-6wrf-h8f2-3c5p.json @@ -7,12 +7,8 @@ "CVE-2009-4741" ], "details": "Unspecified vulnerability in the Extras Manager before 2.0.0.67 in Skype before 4.1.0.179 on Windows has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6ww7-mx3f-8cq3/GHSA-6ww7-mx3f-8cq3.json b/advisories/unreviewed/2022/05/GHSA-6ww7-mx3f-8cq3/GHSA-6ww7-mx3f-8cq3.json index 7268d8f79d3..60b0b981b75 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ww7-mx3f-8cq3/GHSA-6ww7-mx3f-8cq3.json +++ b/advisories/unreviewed/2022/05/GHSA-6ww7-mx3f-8cq3/GHSA-6ww7-mx3f-8cq3.json @@ -7,12 +7,8 @@ "CVE-2009-5082" ], "details": "The (1) configure and (2) config.guess scripts in GNU troff (aka groff) 1.20.1 on Openwall GNU/*/Linux (aka Owl) improperly create temporary files upon a failure of the mktemp function, which makes it easier for local users to overwrite arbitrary files via a symlink attack on a temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72cm-h79h-7p2p/GHSA-72cm-h79h-7p2p.json b/advisories/unreviewed/2022/05/GHSA-72cm-h79h-7p2p/GHSA-72cm-h79h-7p2p.json index 0c74984294a..645940bf0c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-72cm-h79h-7p2p/GHSA-72cm-h79h-7p2p.json +++ b/advisories/unreviewed/2022/05/GHSA-72cm-h79h-7p2p/GHSA-72cm-h79h-7p2p.json @@ -7,12 +7,8 @@ "CVE-2009-4688" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in PHP Shopping Cart Selling Website Script allow remote attackers to inject arbitrary web script or HTML via the (1) txtkeywords and (2) cid parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72h8-x8gh-6pw7/GHSA-72h8-x8gh-6pw7.json b/advisories/unreviewed/2022/05/GHSA-72h8-x8gh-6pw7/GHSA-72h8-x8gh-6pw7.json index ce65216a18b..9d81f06b5ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-72h8-x8gh-6pw7/GHSA-72h8-x8gh-6pw7.json +++ b/advisories/unreviewed/2022/05/GHSA-72h8-x8gh-6pw7/GHSA-72h8-x8gh-6pw7.json @@ -7,12 +7,8 @@ "CVE-2009-4769" ], "details": "Multiple format string vulnerabilities in the tolog function in httpdx 1.4, 1.4.5, 1.4.6, 1.4.6b, and 1.5 allow (1) remote attackers to execute arbitrary code via format string specifiers in a GET request to the HTTP server component when logging is enabled, and allow (2) remote authenticated users to execute arbitrary code via format string specifiers in a PWD command to the FTP server component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7334-rpvc-g5v2/GHSA-7334-rpvc-g5v2.json b/advisories/unreviewed/2022/05/GHSA-7334-rpvc-g5v2/GHSA-7334-rpvc-g5v2.json index 32b65c9a05c..cecc0a97bda 100644 --- a/advisories/unreviewed/2022/05/GHSA-7334-rpvc-g5v2/GHSA-7334-rpvc-g5v2.json +++ b/advisories/unreviewed/2022/05/GHSA-7334-rpvc-g5v2/GHSA-7334-rpvc-g5v2.json @@ -7,12 +7,8 @@ "CVE-2009-4944" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ATRC ACollab 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) address parameter to profile.php or the (2) description parameter to events/add_event.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7357-g32q-6ffw/GHSA-7357-g32q-6ffw.json b/advisories/unreviewed/2022/05/GHSA-7357-g32q-6ffw/GHSA-7357-g32q-6ffw.json index 75476a60151..b7e1e2d9e32 100644 --- a/advisories/unreviewed/2022/05/GHSA-7357-g32q-6ffw/GHSA-7357-g32q-6ffw.json +++ b/advisories/unreviewed/2022/05/GHSA-7357-g32q-6ffw/GHSA-7357-g32q-6ffw.json @@ -7,12 +7,8 @@ "CVE-2009-4838" ], "details": "SQL injection vulnerability in base_ag_common.php in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allows remote attackers to execute arbitrary SQL commands via unspecified parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73x9-fwrj-85f5/GHSA-73x9-fwrj-85f5.json b/advisories/unreviewed/2022/05/GHSA-73x9-fwrj-85f5/GHSA-73x9-fwrj-85f5.json index 6f2ed5ab05b..f94bc98cfbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-73x9-fwrj-85f5/GHSA-73x9-fwrj-85f5.json +++ b/advisories/unreviewed/2022/05/GHSA-73x9-fwrj-85f5/GHSA-73x9-fwrj-85f5.json @@ -7,12 +7,8 @@ "CVE-2009-4652" ], "details": "The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a denial of service (application crash) by sending the MOTD command from another server in the same IRC network, possibly related to an array index error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-73xj-fh2g-76q8/GHSA-73xj-fh2g-76q8.json b/advisories/unreviewed/2022/05/GHSA-73xj-fh2g-76q8/GHSA-73xj-fh2g-76q8.json index ce57ff2eee4..704e2f2c35b 100644 --- a/advisories/unreviewed/2022/05/GHSA-73xj-fh2g-76q8/GHSA-73xj-fh2g-76q8.json +++ b/advisories/unreviewed/2022/05/GHSA-73xj-fh2g-76q8/GHSA-73xj-fh2g-76q8.json @@ -7,12 +7,8 @@ "CVE-2009-5074" ], "details": "Unspecified vulnerability in the MojoX::Dispatcher::Static implementation in Mojolicious before 0.991250 has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-743m-v793-ff88/GHSA-743m-v793-ff88.json b/advisories/unreviewed/2022/05/GHSA-743m-v793-ff88/GHSA-743m-v793-ff88.json index bdb4a498f33..3f7b9668a9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-743m-v793-ff88/GHSA-743m-v793-ff88.json +++ b/advisories/unreviewed/2022/05/GHSA-743m-v793-ff88/GHSA-743m-v793-ff88.json @@ -7,12 +7,8 @@ "CVE-2009-4941" ], "details": "Cross-site scripting (XSS) vulnerability in sign_in.php in ATRC ACollab 1.2 allows remote attackers to inject arbitrary web script or HTML via the f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74gp-j3q6-3x67/GHSA-74gp-j3q6-3x67.json b/advisories/unreviewed/2022/05/GHSA-74gp-j3q6-3x67/GHSA-74gp-j3q6-3x67.json index deeac641c50..a7517e62531 100644 --- a/advisories/unreviewed/2022/05/GHSA-74gp-j3q6-3x67/GHSA-74gp-j3q6-3x67.json +++ b/advisories/unreviewed/2022/05/GHSA-74gp-j3q6-3x67/GHSA-74gp-j3q6-3x67.json @@ -7,12 +7,8 @@ "CVE-2009-4300" ], "details": "Multiple unspecified authentication plugins in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 store the MD5 hashes for passwords in the user table, even when the cached hashes are not used by the plugin, which might make it easier for attackers to obtain credentials via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7597-qqp4-7m2g/GHSA-7597-qqp4-7m2g.json b/advisories/unreviewed/2022/05/GHSA-7597-qqp4-7m2g/GHSA-7597-qqp4-7m2g.json index 7c7d3f3a316..c27ab1f664a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7597-qqp4-7m2g/GHSA-7597-qqp4-7m2g.json +++ b/advisories/unreviewed/2022/05/GHSA-7597-qqp4-7m2g/GHSA-7597-qqp4-7m2g.json @@ -7,12 +7,8 @@ "CVE-2009-4476" ], "details": "Stack-based buffer overflow in HAURI ViRobot Desktop 5.5 before 2009-09-28.00 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.15 through 8.11. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75g6-58p9-6w95/GHSA-75g6-58p9-6w95.json b/advisories/unreviewed/2022/05/GHSA-75g6-58p9-6w95/GHSA-75g6-58p9-6w95.json index ff7ea368058..76862753ed3 100644 --- a/advisories/unreviewed/2022/05/GHSA-75g6-58p9-6w95/GHSA-75g6-58p9-6w95.json +++ b/advisories/unreviewed/2022/05/GHSA-75g6-58p9-6w95/GHSA-75g6-58p9-6w95.json @@ -7,12 +7,8 @@ "CVE-2009-4779" ], "details": "Multiple PHP remote file inclusion vulnerabilities in NukeHall 0.3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter to (1) blocks.php, (2) messages.php, and (3) stories.php in admin/modules/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75mm-c2hr-737x/GHSA-75mm-c2hr-737x.json b/advisories/unreviewed/2022/05/GHSA-75mm-c2hr-737x/GHSA-75mm-c2hr-737x.json index cfe5393c2a9..4a81624ff5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-75mm-c2hr-737x/GHSA-75mm-c2hr-737x.json +++ b/advisories/unreviewed/2022/05/GHSA-75mm-c2hr-737x/GHSA-75mm-c2hr-737x.json @@ -7,12 +7,8 @@ "CVE-2009-5089" ], "details": "Directory traversal vulnerability in index.php in IdeaCart 0.02 and 0.02a allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75rw-82ww-6p6f/GHSA-75rw-82ww-6p6f.json b/advisories/unreviewed/2022/05/GHSA-75rw-82ww-6p6f/GHSA-75rw-82ww-6p6f.json index 601506aa905..09b8cfc580b 100644 --- a/advisories/unreviewed/2022/05/GHSA-75rw-82ww-6p6f/GHSA-75rw-82ww-6p6f.json +++ b/advisories/unreviewed/2022/05/GHSA-75rw-82ww-6p6f/GHSA-75rw-82ww-6p6f.json @@ -7,12 +7,8 @@ "CVE-2009-4340" ], "details": "Cross-site scripting (XSS) vulnerability in the No indexed Search (no_indexed_search) extension 0.2.0 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75vf-wx48-2r29/GHSA-75vf-wx48-2r29.json b/advisories/unreviewed/2022/05/GHSA-75vf-wx48-2r29/GHSA-75vf-wx48-2r29.json index d0b6089fbe4..3874ef40311 100644 --- a/advisories/unreviewed/2022/05/GHSA-75vf-wx48-2r29/GHSA-75vf-wx48-2r29.json +++ b/advisories/unreviewed/2022/05/GHSA-75vf-wx48-2r29/GHSA-75vf-wx48-2r29.json @@ -7,12 +7,8 @@ "CVE-2009-4916" ], "details": "Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote authenticated users to cause a denial of service (console hang) via a login action during failover replication, aka Bug ID CSCsq80095.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75vw-52wr-prg6/GHSA-75vw-52wr-prg6.json b/advisories/unreviewed/2022/05/GHSA-75vw-52wr-prg6/GHSA-75vw-52wr-prg6.json index 04e18dce65b..81ce3a789b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-75vw-52wr-prg6/GHSA-75vw-52wr-prg6.json +++ b/advisories/unreviewed/2022/05/GHSA-75vw-52wr-prg6/GHSA-75vw-52wr-prg6.json @@ -7,12 +7,8 @@ "CVE-2009-4938" ], "details": "SQL injection vulnerability in the JVideo! (com_jvideo) component 0.3.11c Beta and 0.3.x for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter in a user action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-762j-2cv3-vhm6/GHSA-762j-2cv3-vhm6.json b/advisories/unreviewed/2022/05/GHSA-762j-2cv3-vhm6/GHSA-762j-2cv3-vhm6.json index 13bd12c5c04..a3c7a80a62f 100644 --- a/advisories/unreviewed/2022/05/GHSA-762j-2cv3-vhm6/GHSA-762j-2cv3-vhm6.json +++ b/advisories/unreviewed/2022/05/GHSA-762j-2cv3-vhm6/GHSA-762j-2cv3-vhm6.json @@ -7,12 +7,8 @@ "CVE-2009-4317" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in ScriptsEz Ez Cart allows remote attackers to inject arbitrary web script or HTML via the sid parameter in a showcat action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77j4-m2r4-r56v/GHSA-77j4-m2r4-r56v.json b/advisories/unreviewed/2022/05/GHSA-77j4-m2r4-r56v/GHSA-77j4-m2r4-r56v.json index 726ef314b6b..07d0d550e6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-77j4-m2r4-r56v/GHSA-77j4-m2r4-r56v.json +++ b/advisories/unreviewed/2022/05/GHSA-77j4-m2r4-r56v/GHSA-77j4-m2r4-r56v.json @@ -7,12 +7,8 @@ "CVE-2009-4865" ], "details": "Multiple SQL injection vulnerabilities in escorts_search.php in I-Escorts Directory Script and Agency Script, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) search_name and (2) languages parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77qv-386g-93v4/GHSA-77qv-386g-93v4.json b/advisories/unreviewed/2022/05/GHSA-77qv-386g-93v4/GHSA-77qv-386g-93v4.json index cfe2c51816c..d60d847aa34 100644 --- a/advisories/unreviewed/2022/05/GHSA-77qv-386g-93v4/GHSA-77qv-386g-93v4.json +++ b/advisories/unreviewed/2022/05/GHSA-77qv-386g-93v4/GHSA-77qv-386g-93v4.json @@ -7,12 +7,8 @@ "CVE-2009-4730" ], "details": "SQL injection vulnerability in report.php in x10 Adult Media Script 1.7 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-78mf-v8rq-9gfp/GHSA-78mf-v8rq-9gfp.json b/advisories/unreviewed/2022/05/GHSA-78mf-v8rq-9gfp/GHSA-78mf-v8rq-9gfp.json index 3e375ba45e1..1289ac58b26 100644 --- a/advisories/unreviewed/2022/05/GHSA-78mf-v8rq-9gfp/GHSA-78mf-v8rq-9gfp.json +++ b/advisories/unreviewed/2022/05/GHSA-78mf-v8rq-9gfp/GHSA-78mf-v8rq-9gfp.json @@ -7,12 +7,8 @@ "CVE-2009-4587" ], "details": "Cherokee Web Server 0.5.4 allows remote attackers to cause a denial of service (daemon crash) via an MS-DOS reserved word in a URI, as demonstrated by the AUX reserved word.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7983-c95j-wcr3/GHSA-7983-c95j-wcr3.json b/advisories/unreviewed/2022/05/GHSA-7983-c95j-wcr3/GHSA-7983-c95j-wcr3.json index 8a471dacf0f..85c7bc3da1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7983-c95j-wcr3/GHSA-7983-c95j-wcr3.json +++ b/advisories/unreviewed/2022/05/GHSA-7983-c95j-wcr3/GHSA-7983-c95j-wcr3.json @@ -7,12 +7,8 @@ "CVE-2009-4997" ], "details": "gnome-power-manager 2.27.92 does not properly implement the lock_on_suspend and lock_on_hibernate settings for locking the screen when the suspend or hibernate button is pressed, which might make it easier for physically proximate attackers to access an unattended laptop via a resume action, a related issue to CVE-2010-2532. NOTE: this issue exists because of a regression that followed a gnome-power-manager fix a few years earlier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-79mg-wh83-hc3v/GHSA-79mg-wh83-hc3v.json b/advisories/unreviewed/2022/05/GHSA-79mg-wh83-hc3v/GHSA-79mg-wh83-hc3v.json index a94c745ece1..865ee14ba76 100644 --- a/advisories/unreviewed/2022/05/GHSA-79mg-wh83-hc3v/GHSA-79mg-wh83-hc3v.json +++ b/advisories/unreviewed/2022/05/GHSA-79mg-wh83-hc3v/GHSA-79mg-wh83-hc3v.json @@ -7,12 +7,8 @@ "CVE-2009-4784" ], "details": "SQL injection vulnerability in the Joaktree (com_joaktree) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the treeId parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-79vx-7whj-rvvr/GHSA-79vx-7whj-rvvr.json b/advisories/unreviewed/2022/05/GHSA-79vx-7whj-rvvr/GHSA-79vx-7whj-rvvr.json index c6eaf14702f..ee154a27453 100644 --- a/advisories/unreviewed/2022/05/GHSA-79vx-7whj-rvvr/GHSA-79vx-7whj-rvvr.json +++ b/advisories/unreviewed/2022/05/GHSA-79vx-7whj-rvvr/GHSA-79vx-7whj-rvvr.json @@ -7,12 +7,8 @@ "CVE-2009-4297" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7c2p-gxc2-p6h2/GHSA-7c2p-gxc2-p6h2.json b/advisories/unreviewed/2022/05/GHSA-7c2p-gxc2-p6h2/GHSA-7c2p-gxc2-p6h2.json index ee95cfcf204..6667669a2db 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c2p-gxc2-p6h2/GHSA-7c2p-gxc2-p6h2.json +++ b/advisories/unreviewed/2022/05/GHSA-7c2p-gxc2-p6h2/GHSA-7c2p-gxc2-p6h2.json @@ -7,12 +7,8 @@ "CVE-2009-5051" ], "details": "Hastymail2 before RC 8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7c69-8whh-7xg5/GHSA-7c69-8whh-7xg5.json b/advisories/unreviewed/2022/05/GHSA-7c69-8whh-7xg5/GHSA-7c69-8whh-7xg5.json index 3ac2ab97f1b..6d9fc7bbc72 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c69-8whh-7xg5/GHSA-7c69-8whh-7xg5.json +++ b/advisories/unreviewed/2022/05/GHSA-7c69-8whh-7xg5/GHSA-7c69-8whh-7xg5.json @@ -7,12 +7,8 @@ "CVE-2009-4946" ], "details": "Directory traversal vulnerability in the Messaging (com_messaging) component before 1.5.1 for Joomla! allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the controller parameter in a messages action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cgh-j584-9v44/GHSA-7cgh-j584-9v44.json b/advisories/unreviewed/2022/05/GHSA-7cgh-j584-9v44/GHSA-7cgh-j584-9v44.json index 2c9bb27821d..74cd89d45c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cgh-j584-9v44/GHSA-7cgh-j584-9v44.json +++ b/advisories/unreviewed/2022/05/GHSA-7cgh-j584-9v44/GHSA-7cgh-j584-9v44.json @@ -7,12 +7,8 @@ "CVE-2009-1127" ], "details": "win32k.sys in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 does not correctly validate an argument to an unspecified system call, which allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, aka \"Win32k NULL Pointer Dereferencing Vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cqg-f8j2-2653/GHSA-7cqg-f8j2-2653.json b/advisories/unreviewed/2022/05/GHSA-7cqg-f8j2-2653/GHSA-7cqg-f8j2-2653.json index d93d3d010e3..8a8a150a4da 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cqg-f8j2-2653/GHSA-7cqg-f8j2-2653.json +++ b/advisories/unreviewed/2022/05/GHSA-7cqg-f8j2-2653/GHSA-7cqg-f8j2-2653.json @@ -7,12 +7,8 @@ "CVE-2009-4798" ], "details": "Multiple SQL injection vulnerabilities in Diskos CMS 6.x allow remote attackers to execute arbitrary SQL commands via the (1) kat parameter to side.asp, and the (2) brugerid and (3) password fields to the administration login feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7ffr-4jxv-j9q2/GHSA-7ffr-4jxv-j9q2.json b/advisories/unreviewed/2022/05/GHSA-7ffr-4jxv-j9q2/GHSA-7ffr-4jxv-j9q2.json index 782609377cf..05517f15478 100644 --- a/advisories/unreviewed/2022/05/GHSA-7ffr-4jxv-j9q2/GHSA-7ffr-4jxv-j9q2.json +++ b/advisories/unreviewed/2022/05/GHSA-7ffr-4jxv-j9q2/GHSA-7ffr-4jxv-j9q2.json @@ -7,12 +7,8 @@ "CVE-2009-4525" ], "details": "Cross-site scripting (XSS) vulnerability in the Print (aka Printer, e-mail and PDF versions) module 5.x before 5.x-4.9 and 6.x before 6.x-1.9, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via crafted data in a list of links.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gmg-j53c-r9h6/GHSA-7gmg-j53c-r9h6.json b/advisories/unreviewed/2022/05/GHSA-7gmg-j53c-r9h6/GHSA-7gmg-j53c-r9h6.json index 029593807e1..296758b7ee2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gmg-j53c-r9h6/GHSA-7gmg-j53c-r9h6.json +++ b/advisories/unreviewed/2022/05/GHSA-7gmg-j53c-r9h6/GHSA-7gmg-j53c-r9h6.json @@ -7,12 +7,8 @@ "CVE-2009-4842" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ToutVirtual VirtualIQ Pro 3.5 build 8691 allow remote attackers to inject arbitrary web script or HTML via the (1) addNewDept, (2) deptId, or (3) deptDesc parameter to tvserver/server/user/addDepartment.jsp; or the (4) firstName, (5) lastName, or (6) email parameter in a save action to tvserver/user/user.do. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7h82-vvfv-6jjr/GHSA-7h82-vvfv-6jjr.json b/advisories/unreviewed/2022/05/GHSA-7h82-vvfv-6jjr/GHSA-7h82-vvfv-6jjr.json index c0f5f613d40..48164ebfb1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h82-vvfv-6jjr/GHSA-7h82-vvfv-6jjr.json +++ b/advisories/unreviewed/2022/05/GHSA-7h82-vvfv-6jjr/GHSA-7h82-vvfv-6jjr.json @@ -7,12 +7,8 @@ "CVE-2009-4971" ], "details": "SQL injection vulnerability in the AJAX Chat (vjchat) extension before 0.3.3 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hf4-pwxr-9q67/GHSA-7hf4-pwxr-9q67.json b/advisories/unreviewed/2022/05/GHSA-7hf4-pwxr-9q67/GHSA-7hf4-pwxr-9q67.json index 96a958cba40..8d5c801afec 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hf4-pwxr-9q67/GHSA-7hf4-pwxr-9q67.json +++ b/advisories/unreviewed/2022/05/GHSA-7hf4-pwxr-9q67/GHSA-7hf4-pwxr-9q67.json @@ -7,12 +7,8 @@ "CVE-2009-4336" ], "details": "Cross-site scripting (XSS) vulnerability in the Diocese of Portsmouth Calendar (pd_calendar) extension 0.4.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jh6-94gr-38wp/GHSA-7jh6-94gr-38wp.json b/advisories/unreviewed/2022/05/GHSA-7jh6-94gr-38wp/GHSA-7jh6-94gr-38wp.json index 6f188ed3af7..b477e572a11 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jh6-94gr-38wp/GHSA-7jh6-94gr-38wp.json +++ b/advisories/unreviewed/2022/05/GHSA-7jh6-94gr-38wp/GHSA-7jh6-94gr-38wp.json @@ -7,12 +7,8 @@ "CVE-2009-4365" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in ScriptsEz Ez Blog 1.0 allow remote attackers to hijack the authentication of administrators for requests that (1) add a blog via the add_blog action, (2) approve a comment via the approve_comment action, (3) change administrator information including the password via the admin_opt action, and (4) delete a blog via the delete action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mwj-hpjp-qfjq/GHSA-7mwj-hpjp-qfjq.json b/advisories/unreviewed/2022/05/GHSA-7mwj-hpjp-qfjq/GHSA-7mwj-hpjp-qfjq.json index 440f50eff48..d39ba54250c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mwj-hpjp-qfjq/GHSA-7mwj-hpjp-qfjq.json +++ b/advisories/unreviewed/2022/05/GHSA-7mwj-hpjp-qfjq/GHSA-7mwj-hpjp-qfjq.json @@ -7,12 +7,8 @@ "CVE-2009-4351" ], "details": "SQL injection vulnerability in ADMIN/loginaction.php in WSCreator 1.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the Email (aka username) parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p74-p77x-9c68/GHSA-7p74-p77x-9c68.json b/advisories/unreviewed/2022/05/GHSA-7p74-p77x-9c68/GHSA-7p74-p77x-9c68.json index 865248e5b60..52deef155c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p74-p77x-9c68/GHSA-7p74-p77x-9c68.json +++ b/advisories/unreviewed/2022/05/GHSA-7p74-p77x-9c68/GHSA-7p74-p77x-9c68.json @@ -7,12 +7,8 @@ "CVE-2009-4774" ], "details": "Unspecified vulnerability in Sun Solaris 10 and OpenSolaris snv_49 through snv_117, when 64bit mode is used on the Intel x86 platform and a Linux (lx) branded zone is configured, allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2007-6225.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7q3c-c6g7-5j7c/GHSA-7q3c-c6g7-5j7c.json b/advisories/unreviewed/2022/05/GHSA-7q3c-c6g7-5j7c/GHSA-7q3c-c6g7-5j7c.json index 1ee1c76bc13..41aed1d55f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q3c-c6g7-5j7c/GHSA-7q3c-c6g7-5j7c.json +++ b/advisories/unreviewed/2022/05/GHSA-7q3c-c6g7-5j7c/GHSA-7q3c-c6g7-5j7c.json @@ -7,12 +7,8 @@ "CVE-2009-4262" ], "details": "Harold Bakker's NewsScript (HB-NS) 1.3 allows remote attackers to obtain access to the admin control panel via a direct request to admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7q46-xhrm-mvg8/GHSA-7q46-xhrm-mvg8.json b/advisories/unreviewed/2022/05/GHSA-7q46-xhrm-mvg8/GHSA-7q46-xhrm-mvg8.json index caed096e336..87fc5790a96 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q46-xhrm-mvg8/GHSA-7q46-xhrm-mvg8.json +++ b/advisories/unreviewed/2022/05/GHSA-7q46-xhrm-mvg8/GHSA-7q46-xhrm-mvg8.json @@ -7,12 +7,8 @@ "CVE-2009-5071" ], "details": "Unspecified vulnerability in Palm Pre WebOS before 1.2.1 has unknown impact and attack vectors related to an \"included contact template file.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7qh2-5rgv-2x95/GHSA-7qh2-5rgv-2x95.json b/advisories/unreviewed/2022/05/GHSA-7qh2-5rgv-2x95/GHSA-7qh2-5rgv-2x95.json index 4c616f92e02..e773db5c653 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qh2-5rgv-2x95/GHSA-7qh2-5rgv-2x95.json +++ b/advisories/unreviewed/2022/05/GHSA-7qh2-5rgv-2x95/GHSA-7qh2-5rgv-2x95.json @@ -7,12 +7,8 @@ "CVE-2009-4984" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Accessories Me PHP Affiliate Script 1.4 allow remote attackers to inject arbitrary web script or HTML via the (1) Keywords parameter to search.php and (2) SearchIndex parameter to browse.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qv6-6fjq-f6v7/GHSA-7qv6-6fjq-f6v7.json b/advisories/unreviewed/2022/05/GHSA-7qv6-6fjq-f6v7/GHSA-7qv6-6fjq-f6v7.json index c440d671094..394cb8f2609 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qv6-6fjq-f6v7/GHSA-7qv6-6fjq-f6v7.json +++ b/advisories/unreviewed/2022/05/GHSA-7qv6-6fjq-f6v7/GHSA-7qv6-6fjq-f6v7.json @@ -7,12 +7,8 @@ "CVE-2009-4681" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in phpDirectorySource 1.x allows remote attackers to inject arbitrary web script or HTML via the st parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7r4p-87q8-54cf/GHSA-7r4p-87q8-54cf.json b/advisories/unreviewed/2022/05/GHSA-7r4p-87q8-54cf/GHSA-7r4p-87q8-54cf.json index 94060b1f21c..3facf337c5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r4p-87q8-54cf/GHSA-7r4p-87q8-54cf.json +++ b/advisories/unreviewed/2022/05/GHSA-7r4p-87q8-54cf/GHSA-7r4p-87q8-54cf.json @@ -7,12 +7,8 @@ "CVE-2009-4861" ], "details": "Cross-site scripting (XSS) vulnerability in shownews.php in SupportPRO SupportDesk 3.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7r94-3jpg-7395/GHSA-7r94-3jpg-7395.json b/advisories/unreviewed/2022/05/GHSA-7r94-3jpg-7395/GHSA-7r94-3jpg-7395.json index 9cfbaec26fa..6642057ce7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r94-3jpg-7395/GHSA-7r94-3jpg-7395.json +++ b/advisories/unreviewed/2022/05/GHSA-7r94-3jpg-7395/GHSA-7r94-3jpg-7395.json @@ -7,12 +7,8 @@ "CVE-2009-4759" ], "details": "Buffer overflow in BrotherSoft BMXPlay 0.4.4b allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .BMX file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7vf7-7vgg-5pp8/GHSA-7vf7-7vgg-5pp8.json b/advisories/unreviewed/2022/05/GHSA-7vf7-7vgg-5pp8/GHSA-7vf7-7vgg-5pp8.json index 87fd4944393..b3e3a9a7c45 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vf7-7vgg-5pp8/GHSA-7vf7-7vgg-5pp8.json +++ b/advisories/unreviewed/2022/05/GHSA-7vf7-7vgg-5pp8/GHSA-7vf7-7vgg-5pp8.json @@ -7,12 +7,8 @@ "CVE-2009-4486" ], "details": "Stack-based buffer overflow in the eDirectory plugin in Novell iManager before 2.7.3 allows remote attackers to execute arbitrary code via vectors that trigger long arguments to an unspecified sub-application, related to importing and exporting from a schema.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w7p-v23v-56qr/GHSA-7w7p-v23v-56qr.json b/advisories/unreviewed/2022/05/GHSA-7w7p-v23v-56qr/GHSA-7w7p-v23v-56qr.json index 5d067d295f3..8281d16e7ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w7p-v23v-56qr/GHSA-7w7p-v23v-56qr.json +++ b/advisories/unreviewed/2022/05/GHSA-7w7p-v23v-56qr/GHSA-7w7p-v23v-56qr.json @@ -7,12 +7,8 @@ "CVE-2009-4305" ], "details": "SQL injection vulnerability in the SCORM module in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 allows remote authenticated users to execute arbitrary SQL commands via vectors related to an \"escaping issue when processing AICC CRS file (Course_Title).\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wgj-j4fw-5f5x/GHSA-7wgj-j4fw-5f5x.json b/advisories/unreviewed/2022/05/GHSA-7wgj-j4fw-5f5x/GHSA-7wgj-j4fw-5f5x.json index f2f1d3c5ed4..569d071a820 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wgj-j4fw-5f5x/GHSA-7wgj-j4fw-5f5x.json +++ b/advisories/unreviewed/2022/05/GHSA-7wgj-j4fw-5f5x/GHSA-7wgj-j4fw-5f5x.json @@ -7,12 +7,8 @@ "CVE-2009-4599" ], "details": "Multiple SQL injection vulnerabilities in the JS Jobs (com_jsjobs) component 1.0.5.6 for Joomla! allow remote attackers to execute arbitrary SQL commands via (1) the md parameter in an employer view_company action to index.php or (2) the oi parameter in an employer view_job action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wv2-pcxg-363g/GHSA-7wv2-pcxg-363g.json b/advisories/unreviewed/2022/05/GHSA-7wv2-pcxg-363g/GHSA-7wv2-pcxg-363g.json index 68412729c28..cbfbcfb1a13 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wv2-pcxg-363g/GHSA-7wv2-pcxg-363g.json +++ b/advisories/unreviewed/2022/05/GHSA-7wv2-pcxg-363g/GHSA-7wv2-pcxg-363g.json @@ -7,12 +7,8 @@ "CVE-2009-4589" ], "details": "Cross-site scripting (XSS) vulnerability in the Special:Block implementation in the getContribsLink function in SpecialBlockip.php in MediaWiki 1.14.0 and 1.15.0 allows remote attackers to inject arbitrary web script or HTML via the ip parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7ww5-xqfr-7xg6/GHSA-7ww5-xqfr-7xg6.json b/advisories/unreviewed/2022/05/GHSA-7ww5-xqfr-7xg6/GHSA-7ww5-xqfr-7xg6.json index 26ad114d4b9..b010b2f84f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7ww5-xqfr-7xg6/GHSA-7ww5-xqfr-7xg6.json +++ b/advisories/unreviewed/2022/05/GHSA-7ww5-xqfr-7xg6/GHSA-7ww5-xqfr-7xg6.json @@ -7,12 +7,8 @@ "CVE-2009-4707" ], "details": "Cross-site scripting (XSS) vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7x3q-23hw-j9xf/GHSA-7x3q-23hw-j9xf.json b/advisories/unreviewed/2022/05/GHSA-7x3q-23hw-j9xf/GHSA-7x3q-23hw-j9xf.json index bbc01bfe578..256fa1c789d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x3q-23hw-j9xf/GHSA-7x3q-23hw-j9xf.json +++ b/advisories/unreviewed/2022/05/GHSA-7x3q-23hw-j9xf/GHSA-7x3q-23hw-j9xf.json @@ -7,12 +7,8 @@ "CVE-2009-4911" ], "details": "Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (device crash) via vectors involving SSL VPN and PPPoE transactions, aka Bug ID CSCsm77958.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7x46-w25m-c3rr/GHSA-7x46-w25m-c3rr.json b/advisories/unreviewed/2022/05/GHSA-7x46-w25m-c3rr/GHSA-7x46-w25m-c3rr.json index c0da225ca3e..d40f144f373 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x46-w25m-c3rr/GHSA-7x46-w25m-c3rr.json +++ b/advisories/unreviewed/2022/05/GHSA-7x46-w25m-c3rr/GHSA-7x46-w25m-c3rr.json @@ -7,12 +7,8 @@ "CVE-2009-5073" ], "details": "IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.59 (aka 6.0.0.8-TIV-ITDS-IF0001) allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) by adding a nested group that contains the Distinguished Name (DN) of its parent entry.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-82rf-mw3h-9hjh/GHSA-82rf-mw3h-9hjh.json b/advisories/unreviewed/2022/05/GHSA-82rf-mw3h-9hjh/GHSA-82rf-mw3h-9hjh.json index 75e1dccaf00..0af57637020 100644 --- a/advisories/unreviewed/2022/05/GHSA-82rf-mw3h-9hjh/GHSA-82rf-mw3h-9hjh.json +++ b/advisories/unreviewed/2022/05/GHSA-82rf-mw3h-9hjh/GHSA-82rf-mw3h-9hjh.json @@ -7,12 +7,8 @@ "CVE-2009-5007" ], "details": "The Cisco trial client on Linux for Cisco AnyConnect SSL VPN allows local users to overwrite arbitrary files via a symlink attack on unspecified temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-83vr-qc2r-w6wx/GHSA-83vr-qc2r-w6wx.json b/advisories/unreviewed/2022/05/GHSA-83vr-qc2r-w6wx/GHSA-83vr-qc2r-w6wx.json index 546ddcd3329..e192f139249 100644 --- a/advisories/unreviewed/2022/05/GHSA-83vr-qc2r-w6wx/GHSA-83vr-qc2r-w6wx.json +++ b/advisories/unreviewed/2022/05/GHSA-83vr-qc2r-w6wx/GHSA-83vr-qc2r-w6wx.json @@ -7,12 +7,8 @@ "CVE-2009-4518" ], "details": "Cross-site scripting (XSS) vulnerability in the Insert Node module 5.x before 5.x-1.2 for Drupal allows remote attackers to inject arbitrary web script or HTML via an inserted node.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8485-r2jc-j23f/GHSA-8485-r2jc-j23f.json b/advisories/unreviewed/2022/05/GHSA-8485-r2jc-j23f/GHSA-8485-r2jc-j23f.json index ed3b1674fc2..5c06676bfaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-8485-r2jc-j23f/GHSA-8485-r2jc-j23f.json +++ b/advisories/unreviewed/2022/05/GHSA-8485-r2jc-j23f/GHSA-8485-r2jc-j23f.json @@ -7,12 +7,8 @@ "CVE-2009-5002" ], "details": "The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.1-P8AE-FP001 does not record Get Content Failure Audit events, which might allow remote attackers to attempt content access without detection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-852r-qhwr-gxfc/GHSA-852r-qhwr-gxfc.json b/advisories/unreviewed/2022/05/GHSA-852r-qhwr-gxfc/GHSA-852r-qhwr-gxfc.json index 39748bce565..da3bf1a66ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-852r-qhwr-gxfc/GHSA-852r-qhwr-gxfc.json +++ b/advisories/unreviewed/2022/05/GHSA-852r-qhwr-gxfc/GHSA-852r-qhwr-gxfc.json @@ -7,12 +7,8 @@ "CVE-2009-4805" ], "details": "Multiple SQL injection vulnerabilities in EZ-Blog Beta 1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the storyid parameter to public/view.php or (2) the kill parameter to admin/remove.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8587-44mr-xf6j/GHSA-8587-44mr-xf6j.json b/advisories/unreviewed/2022/05/GHSA-8587-44mr-xf6j/GHSA-8587-44mr-xf6j.json index c311de5c1cd..4900251ef52 100644 --- a/advisories/unreviewed/2022/05/GHSA-8587-44mr-xf6j/GHSA-8587-44mr-xf6j.json +++ b/advisories/unreviewed/2022/05/GHSA-8587-44mr-xf6j/GHSA-8587-44mr-xf6j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85mg-586q-p3f5/GHSA-85mg-586q-p3f5.json b/advisories/unreviewed/2022/05/GHSA-85mg-586q-p3f5/GHSA-85mg-586q-p3f5.json index ecc181d4856..fed6df88e19 100644 --- a/advisories/unreviewed/2022/05/GHSA-85mg-586q-p3f5/GHSA-85mg-586q-p3f5.json +++ b/advisories/unreviewed/2022/05/GHSA-85mg-586q-p3f5/GHSA-85mg-586q-p3f5.json @@ -7,12 +7,8 @@ "CVE-2009-4362" ], "details": "Multiple buffer overflows in qosmod in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or possibly gain privileges via long string arguments. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-867g-gm3j-m6qw/GHSA-867g-gm3j-m6qw.json b/advisories/unreviewed/2022/05/GHSA-867g-gm3j-m6qw/GHSA-867g-gm3j-m6qw.json index 0a8c6ffe5c1..8543dc00e43 100644 --- a/advisories/unreviewed/2022/05/GHSA-867g-gm3j-m6qw/GHSA-867g-gm3j-m6qw.json +++ b/advisories/unreviewed/2022/05/GHSA-867g-gm3j-m6qw/GHSA-867g-gm3j-m6qw.json @@ -7,12 +7,8 @@ "CVE-2009-5057" ], "details": "The S/MIME feature in Open Ticket Request System (OTRS) before 2.3.4 does not configure the RANDFILE and HOME environment variables for OpenSSL, which might make it easier for remote attackers to decrypt e-mail messages that had lower than intended entropy available for cryptographic operations, related to inability to write to the seeding file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8698-x87q-4cgx/GHSA-8698-x87q-4cgx.json b/advisories/unreviewed/2022/05/GHSA-8698-x87q-4cgx/GHSA-8698-x87q-4cgx.json index 16bcd8db8fd..e7210717b2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8698-x87q-4cgx/GHSA-8698-x87q-4cgx.json +++ b/advisories/unreviewed/2022/05/GHSA-8698-x87q-4cgx/GHSA-8698-x87q-4cgx.json @@ -7,12 +7,8 @@ "CVE-2009-4497" ], "details": "Cross-site scripting (XSS) vulnerability in LXR Cross Referencer 0.9.5 and 0.9.6 allows remote attackers to inject arbitrary web script or HTML via the i parameter to the ident program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86f5-9pf2-x33x/GHSA-86f5-9pf2-x33x.json b/advisories/unreviewed/2022/05/GHSA-86f5-9pf2-x33x/GHSA-86f5-9pf2-x33x.json index b6034b10f78..e7ad0440fcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-86f5-9pf2-x33x/GHSA-86f5-9pf2-x33x.json +++ b/advisories/unreviewed/2022/05/GHSA-86f5-9pf2-x33x/GHSA-86f5-9pf2-x33x.json @@ -7,12 +7,8 @@ "CVE-2009-4849" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in ToutVirtual VirtualIQ Pro 3.2 build 7882 and 3.5 build 8691 allow remote attackers to hijack the authentication of administrators for requests that (1) create a new user account via a save action to tvserver/user/user.do, (2) shutdown a virtual machine, (3) start a virtual machine, (4) restart a virtual machine, or (5) schedule an activity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86m4-r8w9-mq6h/GHSA-86m4-r8w9-mq6h.json b/advisories/unreviewed/2022/05/GHSA-86m4-r8w9-mq6h/GHSA-86m4-r8w9-mq6h.json index 825b619efc7..d409e6aa3ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-86m4-r8w9-mq6h/GHSA-86m4-r8w9-mq6h.json +++ b/advisories/unreviewed/2022/05/GHSA-86m4-r8w9-mq6h/GHSA-86m4-r8w9-mq6h.json @@ -7,12 +7,8 @@ "CVE-2009-4542" ], "details": "Cross-site scripting (XSS) vulnerability in newticket.php in IsolSoft Support Center 2.5 allows remote attackers to inject arbitrary web script or HTML via the lang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-87px-47f2-p735/GHSA-87px-47f2-p735.json b/advisories/unreviewed/2022/05/GHSA-87px-47f2-p735/GHSA-87px-47f2-p735.json index 7f5c8126210..8bb38e8b08b 100644 --- a/advisories/unreviewed/2022/05/GHSA-87px-47f2-p735/GHSA-87px-47f2-p735.json +++ b/advisories/unreviewed/2022/05/GHSA-87px-47f2-p735/GHSA-87px-47f2-p735.json @@ -7,12 +7,8 @@ "CVE-2009-4680" ], "details": "SQL injection vulnerability in search.php in phpDirectorySource 1.x allows remote attackers to execute arbitrary SQL commands via the st parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8842-36j7-97qj/GHSA-8842-36j7-97qj.json b/advisories/unreviewed/2022/05/GHSA-8842-36j7-97qj/GHSA-8842-36j7-97qj.json index 878f5ae3b01..dd66891ddd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8842-36j7-97qj/GHSA-8842-36j7-97qj.json +++ b/advisories/unreviewed/2022/05/GHSA-8842-36j7-97qj/GHSA-8842-36j7-97qj.json @@ -7,12 +7,8 @@ "CVE-2009-4593" ], "details": "The bftpdutmp_log function in bftpdutmp.c in Bftpd before 2.4 does not place a '\\0' character at the end of the string value of the ut.bu_host structure member, which might allow remote attackers to cause a denial of service (daemon crash) via unspecified vectors. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8873-7w2h-2cpf/GHSA-8873-7w2h-2cpf.json b/advisories/unreviewed/2022/05/GHSA-8873-7w2h-2cpf/GHSA-8873-7w2h-2cpf.json index 0575e955432..1bb3261f19c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8873-7w2h-2cpf/GHSA-8873-7w2h-2cpf.json +++ b/advisories/unreviewed/2022/05/GHSA-8873-7w2h-2cpf/GHSA-8873-7w2h-2cpf.json @@ -7,12 +7,8 @@ "CVE-2009-4323" ], "details": "The installation for Zen Cart stores sensitive information and insecure programs under the (1) docs, (2) extras, and (3) zc_install folders, and (4) install.txt, which allows remote attackers to obtain sensitive information, delete the database, and conduct other attacks via a direct request, different vulnerabilities than CVE-2009-4321 and CVE-2009-4322.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-89m9-j8j9-xx2p/GHSA-89m9-j8j9-xx2p.json b/advisories/unreviewed/2022/05/GHSA-89m9-j8j9-xx2p/GHSA-89m9-j8j9-xx2p.json index 07c41fd899c..ed9f8650ce0 100644 --- a/advisories/unreviewed/2022/05/GHSA-89m9-j8j9-xx2p/GHSA-89m9-j8j9-xx2p.json +++ b/advisories/unreviewed/2022/05/GHSA-89m9-j8j9-xx2p/GHSA-89m9-j8j9-xx2p.json @@ -7,12 +7,8 @@ "CVE-2009-4368" ], "details": "Multiple unspecified vulnerabilities in Centreon before 2.1.4 have unknown impact and attack vectors in the (1) ping tool, (2) traceroute tool, and (3) ldap import, possibly related to improper authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8cw5-3844-5574/GHSA-8cw5-3844-5574.json b/advisories/unreviewed/2022/05/GHSA-8cw5-3844-5574/GHSA-8cw5-3844-5574.json index 3ed9307ee94..0d590db0950 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cw5-3844-5574/GHSA-8cw5-3844-5574.json +++ b/advisories/unreviewed/2022/05/GHSA-8cw5-3844-5574/GHSA-8cw5-3844-5574.json @@ -7,12 +7,8 @@ "CVE-2009-4768" ], "details": "Unspecified vulnerability in the JASS script interpreter in Warcraft III: The Frozen Throne 1.24b and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted custom map. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cwp-32mr-53q5/GHSA-8cwp-32mr-53q5.json b/advisories/unreviewed/2022/05/GHSA-8cwp-32mr-53q5/GHSA-8cwp-32mr-53q5.json index 188f8b71824..4c3d40b65c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cwp-32mr-53q5/GHSA-8cwp-32mr-53q5.json +++ b/advisories/unreviewed/2022/05/GHSA-8cwp-32mr-53q5/GHSA-8cwp-32mr-53q5.json @@ -7,12 +7,8 @@ "CVE-2009-4489" ], "details": "header.c in Cherokee before 0.99.32 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f44-qp29-r6j4/GHSA-8f44-qp29-r6j4.json b/advisories/unreviewed/2022/05/GHSA-8f44-qp29-r6j4/GHSA-8f44-qp29-r6j4.json index dc22573bcc2..f43a9dcce4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f44-qp29-r6j4/GHSA-8f44-qp29-r6j4.json +++ b/advisories/unreviewed/2022/05/GHSA-8f44-qp29-r6j4/GHSA-8f44-qp29-r6j4.json @@ -7,12 +7,8 @@ "CVE-2009-4591" ], "details": "SQL injection vulnerability in Basic Analysis and Security Engine (BASE) before 1.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fg6-84xm-jg65/GHSA-8fg6-84xm-jg65.json b/advisories/unreviewed/2022/05/GHSA-8fg6-84xm-jg65/GHSA-8fg6-84xm-jg65.json index b6a6b856dcf..0e1f3c7bd0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fg6-84xm-jg65/GHSA-8fg6-84xm-jg65.json +++ b/advisories/unreviewed/2022/05/GHSA-8fg6-84xm-jg65/GHSA-8fg6-84xm-jg65.json @@ -7,12 +7,8 @@ "CVE-2009-5016" ], "details": "Integer overflow in the xml_utf8_decode function in ext/xml/xml.c in PHP before 5.2.11 makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string that uses overlong UTF-8 encoding, a different vulnerability than CVE-2010-3870.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8fh2-gm95-pm7q/GHSA-8fh2-gm95-pm7q.json b/advisories/unreviewed/2022/05/GHSA-8fh2-gm95-pm7q/GHSA-8fh2-gm95-pm7q.json index cffb1cafb24..28cc1d55f72 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fh2-gm95-pm7q/GHSA-8fh2-gm95-pm7q.json +++ b/advisories/unreviewed/2022/05/GHSA-8fh2-gm95-pm7q/GHSA-8fh2-gm95-pm7q.json @@ -7,12 +7,8 @@ "CVE-2009-4776" ], "details": "Buffer overflow in Hitachi Cosminexus V4 through V8, Processing Kit for XML, and Developer's Kit for Java, as used in products such as uCosminexus, Electronic Form Workflow, Groupmax, and IBM XL C/C++ Enterprise Edition 7 and 8, allows remote attackers to have an unknown impact via vectors related to the use of GIF image processing APIs by a Java application, and a different issue from CVE-2007-3794.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fh3-fprq-r8w7/GHSA-8fh3-fprq-r8w7.json b/advisories/unreviewed/2022/05/GHSA-8fh3-fprq-r8w7/GHSA-8fh3-fprq-r8w7.json index 74df542d8c1..bee0ea786fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fh3-fprq-r8w7/GHSA-8fh3-fprq-r8w7.json +++ b/advisories/unreviewed/2022/05/GHSA-8fh3-fprq-r8w7/GHSA-8fh3-fprq-r8w7.json @@ -7,12 +7,8 @@ "CVE-2009-4813" ], "details": "Cross-site scripting (XSS) vulnerability in myps.php in MyBB (aka MyBulletinBoard) 1.4.10 allows remote attackers to inject arbitrary web script or HTML via the username parameter in a donate action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fhm-q7j5-hfvq/GHSA-8fhm-q7j5-hfvq.json b/advisories/unreviewed/2022/05/GHSA-8fhm-q7j5-hfvq/GHSA-8fhm-q7j5-hfvq.json index 51778c7a151..14145607eeb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fhm-q7j5-hfvq/GHSA-8fhm-q7j5-hfvq.json +++ b/advisories/unreviewed/2022/05/GHSA-8fhm-q7j5-hfvq/GHSA-8fhm-q7j5-hfvq.json @@ -7,12 +7,8 @@ "CVE-2009-4254" ], "details": "PowerPhlogger 2.2.5 allows remote attackers to obtain sensitive information via a direct request to (1) edCss.inc.php, (2) foot.inc.php, (3) get_csscolors.inc.php, (4) head.inc.php, (5) head_stuff.inc.php, (6) loglist.inc.php, and (7) pphlogger_send.inc.php in include/, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fw4-66qh-7vw6/GHSA-8fw4-66qh-7vw6.json b/advisories/unreviewed/2022/05/GHSA-8fw4-66qh-7vw6/GHSA-8fw4-66qh-7vw6.json index 0ddb006b510..98667837ea3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fw4-66qh-7vw6/GHSA-8fw4-66qh-7vw6.json +++ b/advisories/unreviewed/2022/05/GHSA-8fw4-66qh-7vw6/GHSA-8fw4-66qh-7vw6.json @@ -7,12 +7,8 @@ "CVE-2009-4886" ], "details": "Multiple directory traversal vulnerabilities in phpCommunity 2 2.1.8 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) file parameter to module/admin/files/show_file.php and the (2) path parameter to module/admin/files/show_source.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fxv-7v35-mx46/GHSA-8fxv-7v35-mx46.json b/advisories/unreviewed/2022/05/GHSA-8fxv-7v35-mx46/GHSA-8fxv-7v35-mx46.json index 9251ba74b60..679bb287d0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fxv-7v35-mx46/GHSA-8fxv-7v35-mx46.json +++ b/advisories/unreviewed/2022/05/GHSA-8fxv-7v35-mx46/GHSA-8fxv-7v35-mx46.json @@ -7,12 +7,8 @@ "CVE-2009-4935" ], "details": "SQL injection vulnerability in ogp_show.php in Online Guestbook Pro allows remote attackers to execute arbitrary SQL commands via the display parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8gwh-2hrc-w7fq/GHSA-8gwh-2hrc-w7fq.json b/advisories/unreviewed/2022/05/GHSA-8gwh-2hrc-w7fq/GHSA-8gwh-2hrc-w7fq.json index d8095513ee7..1d135b26dbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gwh-2hrc-w7fq/GHSA-8gwh-2hrc-w7fq.json +++ b/advisories/unreviewed/2022/05/GHSA-8gwh-2hrc-w7fq/GHSA-8gwh-2hrc-w7fq.json @@ -7,12 +7,8 @@ "CVE-2009-4825" ], "details": "8pixel.net Blog 4 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for App_Data/sb.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jg5-4gwh-7gh9/GHSA-8jg5-4gwh-7gh9.json b/advisories/unreviewed/2022/05/GHSA-8jg5-4gwh-7gh9/GHSA-8jg5-4gwh-7gh9.json index 00fc5347695..3d895727303 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jg5-4gwh-7gh9/GHSA-8jg5-4gwh-7gh9.json +++ b/advisories/unreviewed/2022/05/GHSA-8jg5-4gwh-7gh9/GHSA-8jg5-4gwh-7gh9.json @@ -7,12 +7,8 @@ "CVE-2009-4500" ], "details": "The process_trap function in trapper/trapper.c in Zabbix Server before 1.6.6 allows remote attackers to cause a denial of service (crash) via a crafted request with data that lacks an expected : (colon) separator, which triggers a NULL pointer dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jq2-g365-87pp/GHSA-8jq2-g365-87pp.json b/advisories/unreviewed/2022/05/GHSA-8jq2-g365-87pp/GHSA-8jq2-g365-87pp.json index f5ceb270d1b..e305aeecc38 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jq2-g365-87pp/GHSA-8jq2-g365-87pp.json +++ b/advisories/unreviewed/2022/05/GHSA-8jq2-g365-87pp/GHSA-8jq2-g365-87pp.json @@ -7,12 +7,8 @@ "CVE-2009-4811" ], "details": "VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in VMware Workstation 7.0 before 7.0.1 build 227600 and 6.5.x before 6.5.4 build 246459, VMware Player 3.0 before 3.0.1 build 227600 and 2.5.x before 2.5.4 build 246459, VMware ACE 2.6 before 2.6.1 build 227600 and 2.5.x before 2.5.4 build 246459, and VMware Server 2.x allows remote attackers to cause a denial of service (process crash) via a \\x25\\x90 sequence in the USER and PASS commands, a related issue to CVE-2009-3707. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jrf-prgx-4xrc/GHSA-8jrf-prgx-4xrc.json b/advisories/unreviewed/2022/05/GHSA-8jrf-prgx-4xrc/GHSA-8jrf-prgx-4xrc.json index 2ee04c01b6b..b581a42589f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jrf-prgx-4xrc/GHSA-8jrf-prgx-4xrc.json +++ b/advisories/unreviewed/2022/05/GHSA-8jrf-prgx-4xrc/GHSA-8jrf-prgx-4xrc.json @@ -7,12 +7,8 @@ "CVE-2009-4710" ], "details": "SQL injection vulnerability in the Reset backend password (cwt_resetbepassword) extension 1.20 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jvw-3873-vg2v/GHSA-8jvw-3873-vg2v.json b/advisories/unreviewed/2022/05/GHSA-8jvw-3873-vg2v/GHSA-8jvw-3873-vg2v.json index 1520d30cbba..fe5afd26b11 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jvw-3873-vg2v/GHSA-8jvw-3873-vg2v.json +++ b/advisories/unreviewed/2022/05/GHSA-8jvw-3873-vg2v/GHSA-8jvw-3873-vg2v.json @@ -7,12 +7,8 @@ "CVE-2009-4871" ], "details": "SQL injection vulnerability in globepersonnel_forum.asp in Logoshows BBS 2.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jw5-v494-f896/GHSA-8jw5-v494-f896.json b/advisories/unreviewed/2022/05/GHSA-8jw5-v494-f896/GHSA-8jw5-v494-f896.json index eb03b70c034..3c6877d4105 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jw5-v494-f896/GHSA-8jw5-v494-f896.json +++ b/advisories/unreviewed/2022/05/GHSA-8jw5-v494-f896/GHSA-8jw5-v494-f896.json @@ -7,12 +7,8 @@ "CVE-2009-4952" ], "details": "Directory traversal vulnerability in the Directory Listing (dir_listing) extension 1.1.0 and earlier for TYPO3 allows remote attackers to have an unspecified impact via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jxw-wg5c-9378/GHSA-8jxw-wg5c-9378.json b/advisories/unreviewed/2022/05/GHSA-8jxw-wg5c-9378/GHSA-8jxw-wg5c-9378.json index 4cf4768dec3..a5d5d5c3698 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jxw-wg5c-9378/GHSA-8jxw-wg5c-9378.json +++ b/advisories/unreviewed/2022/05/GHSA-8jxw-wg5c-9378/GHSA-8jxw-wg5c-9378.json @@ -7,12 +7,8 @@ "CVE-2009-4751" ], "details": "SQL injection vulnerability in anzeiger/start.php in Swinger Club Portal allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m55-3vch-xhvr/GHSA-8m55-3vch-xhvr.json b/advisories/unreviewed/2022/05/GHSA-8m55-3vch-xhvr/GHSA-8m55-3vch-xhvr.json index 23da90d3bc4..9b22af78f08 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m55-3vch-xhvr/GHSA-8m55-3vch-xhvr.json +++ b/advisories/unreviewed/2022/05/GHSA-8m55-3vch-xhvr/GHSA-8m55-3vch-xhvr.json @@ -7,12 +7,8 @@ "CVE-2009-4740" ], "details": "Directory traversal vulnerability in the Webesse E-Card (ws_ecard) extension 1.0.2 and earlier for TYPO3 has unspecified impact and remote attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m56-4ww2-95v5/GHSA-8m56-4ww2-95v5.json b/advisories/unreviewed/2022/05/GHSA-8m56-4ww2-95v5/GHSA-8m56-4ww2-95v5.json index 7018b308268..70726b77c8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m56-4ww2-95v5/GHSA-8m56-4ww2-95v5.json +++ b/advisories/unreviewed/2022/05/GHSA-8m56-4ww2-95v5/GHSA-8m56-4ww2-95v5.json @@ -7,12 +7,8 @@ "CVE-2009-4752" ], "details": "PHP remote file inclusion vulnerability in anzeiger/start.php in Swinger Club Portal allows remote attackers to execute arbitrary PHP code via a URL in the go parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8mmw-rg27-gmpp/GHSA-8mmw-rg27-gmpp.json b/advisories/unreviewed/2022/05/GHSA-8mmw-rg27-gmpp/GHSA-8mmw-rg27-gmpp.json index 0ef9794c8ca..d98f34aa8ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mmw-rg27-gmpp/GHSA-8mmw-rg27-gmpp.json +++ b/advisories/unreviewed/2022/05/GHSA-8mmw-rg27-gmpp/GHSA-8mmw-rg27-gmpp.json @@ -7,12 +7,8 @@ "CVE-2009-5081" ], "details": "The (1) config.guess, (2) contrib/groffer/perl/groffer.pl, and (3) contrib/groffer/perl/roff2.pl scripts in GNU troff (aka groff) 1.21 and earlier use an insufficient number of X characters in the template argument to the tempfile function, which makes it easier for local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2004-0969.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pch-h5q2-p6g5/GHSA-8pch-h5q2-p6g5.json b/advisories/unreviewed/2022/05/GHSA-8pch-h5q2-p6g5/GHSA-8pch-h5q2-p6g5.json index 93847cf6828..b7f0c44c07e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pch-h5q2-p6g5/GHSA-8pch-h5q2-p6g5.json +++ b/advisories/unreviewed/2022/05/GHSA-8pch-h5q2-p6g5/GHSA-8pch-h5q2-p6g5.json @@ -7,12 +7,8 @@ "CVE-2009-4264" ], "details": "PHP remote file inclusion vulnerability in components/core/connect.php in AROUNDMe 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the language_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pmh-q3r3-84r8/GHSA-8pmh-q3r3-84r8.json b/advisories/unreviewed/2022/05/GHSA-8pmh-q3r3-84r8/GHSA-8pmh-q3r3-84r8.json index bfb7acedd91..91256342387 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pmh-q3r3-84r8/GHSA-8pmh-q3r3-84r8.json +++ b/advisories/unreviewed/2022/05/GHSA-8pmh-q3r3-84r8/GHSA-8pmh-q3r3-84r8.json @@ -7,12 +7,8 @@ "CVE-2009-4526" ], "details": "The Send by e-mail sub-module in the Print (aka Printer, e-mail and PDF versions) module 5.x before 5.x-4.9 and 6.x before 6.x-1.9, a module for Drupal, does not properly enforce privilege requirements, which allows remote attackers to read page titles by requesting a \"Send to friend\" form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8prh-fvqc-869f/GHSA-8prh-fvqc-869f.json b/advisories/unreviewed/2022/05/GHSA-8prh-fvqc-869f/GHSA-8prh-fvqc-869f.json index 4a26104bc42..e8fcf26c7c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8prh-fvqc-869f/GHSA-8prh-fvqc-869f.json +++ b/advisories/unreviewed/2022/05/GHSA-8prh-fvqc-869f/GHSA-8prh-fvqc-869f.json @@ -7,12 +7,8 @@ "CVE-2009-4256" ], "details": "Multiple SQL injection vulnerabilities in cource.php in AlefMentor 2.0 and 2.2 allow remote attackers to execute arbitrary SQL commands via the (1) cont_id and (2) courc_id parameters in a pregled action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qm8-q59r-v6hv/GHSA-8qm8-q59r-v6hv.json b/advisories/unreviewed/2022/05/GHSA-8qm8-q59r-v6hv/GHSA-8qm8-q59r-v6hv.json index 00df7277686..fc67c38bc56 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qm8-q59r-v6hv/GHSA-8qm8-q59r-v6hv.json +++ b/advisories/unreviewed/2022/05/GHSA-8qm8-q59r-v6hv/GHSA-8qm8-q59r-v6hv.json @@ -7,12 +7,8 @@ "CVE-2009-4358" ], "details": "freebsd-update in FreeBSD 8.0, 7.2, 7.1, 6.4, and 6.3 uses insecure permissions in its working directory (/var/db/freebsd-update by default), which allows local users to read copies of sensitive files after a (1) freebsd-update fetch (fetch) or (2) freebsd-update upgrade (upgrade) operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qq6-8p6v-rxv4/GHSA-8qq6-8p6v-rxv4.json b/advisories/unreviewed/2022/05/GHSA-8qq6-8p6v-rxv4/GHSA-8qq6-8p6v-rxv4.json index 702b83517ec..8c68a22229f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qq6-8p6v-rxv4/GHSA-8qq6-8p6v-rxv4.json +++ b/advisories/unreviewed/2022/05/GHSA-8qq6-8p6v-rxv4/GHSA-8qq6-8p6v-rxv4.json @@ -7,12 +7,8 @@ "CVE-2009-4585" ], "details": "UranyumSoft Listing Service stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/db.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8r97-qcvc-9gcw/GHSA-8r97-qcvc-9gcw.json b/advisories/unreviewed/2022/05/GHSA-8r97-qcvc-9gcw/GHSA-8r97-qcvc-9gcw.json index bbd44e9d169..f7cb1e86d5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r97-qcvc-9gcw/GHSA-8r97-qcvc-9gcw.json +++ b/advisories/unreviewed/2022/05/GHSA-8r97-qcvc-9gcw/GHSA-8r97-qcvc-9gcw.json @@ -7,12 +7,8 @@ "CVE-2009-5021" ], "details": "Cobbler before 1.6.1 does not properly determine whether an installation has the default password, which makes it easier for attackers to obtain access by using this password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8rff-2qqm-f27c/GHSA-8rff-2qqm-f27c.json b/advisories/unreviewed/2022/05/GHSA-8rff-2qqm-f27c/GHSA-8rff-2qqm-f27c.json index a9faedf72e1..1e814cf64ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rff-2qqm-f27c/GHSA-8rff-2qqm-f27c.json +++ b/advisories/unreviewed/2022/05/GHSA-8rff-2qqm-f27c/GHSA-8rff-2qqm-f27c.json @@ -7,12 +7,8 @@ "CVE-2009-5000" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.3-P8AE-FP003 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to .jsp pages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w56-gqrj-2wfg/GHSA-8w56-gqrj-2wfg.json b/advisories/unreviewed/2022/05/GHSA-8w56-gqrj-2wfg/GHSA-8w56-gqrj-2wfg.json index b81dc77e78b..8cda642139a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w56-gqrj-2wfg/GHSA-8w56-gqrj-2wfg.json +++ b/advisories/unreviewed/2022/05/GHSA-8w56-gqrj-2wfg/GHSA-8w56-gqrj-2wfg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wh3-f9vj-fgm2/GHSA-8wh3-f9vj-fgm2.json b/advisories/unreviewed/2022/05/GHSA-8wh3-f9vj-fgm2/GHSA-8wh3-f9vj-fgm2.json index 6a1de4802a0..b4219f570dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wh3-f9vj-fgm2/GHSA-8wh3-f9vj-fgm2.json +++ b/advisories/unreviewed/2022/05/GHSA-8wh3-f9vj-fgm2/GHSA-8wh3-f9vj-fgm2.json @@ -7,12 +7,8 @@ "CVE-2009-4670" ], "details": "admin/delitem.php in RoomPHPlanning 1.6 does not require authentication, which allows remote attackers to (1) delete arbitrary users via the user parameter or (2) delete arbitrary rooms via the room parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wmw-6vpm-257g/GHSA-8wmw-6vpm-257g.json b/advisories/unreviewed/2022/05/GHSA-8wmw-6vpm-257g/GHSA-8wmw-6vpm-257g.json index bb758f97d5f..f7a9c9db10b 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wmw-6vpm-257g/GHSA-8wmw-6vpm-257g.json +++ b/advisories/unreviewed/2022/05/GHSA-8wmw-6vpm-257g/GHSA-8wmw-6vpm-257g.json @@ -7,12 +7,8 @@ "CVE-2009-5006" ], "details": "The SessionAdapter::ExchangeHandlerImpl::checkAlternate function in broker/SessionAdapter.cpp in the C++ Broker component in Apache Qpid before 0.6, as used in Red Hat Enterprise MRG before 1.3 and other products, allows remote authenticated users to cause a denial of service (NULL pointer dereference, daemon crash, and cluster outage) by attempting to modify the alternate of an exchange.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8xj3-5g9c-hvmm/GHSA-8xj3-5g9c-hvmm.json b/advisories/unreviewed/2022/05/GHSA-8xj3-5g9c-hvmm/GHSA-8xj3-5g9c-hvmm.json index 15b730fad9f..dbdb8606cae 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xj3-5g9c-hvmm/GHSA-8xj3-5g9c-hvmm.json +++ b/advisories/unreviewed/2022/05/GHSA-8xj3-5g9c-hvmm/GHSA-8xj3-5g9c-hvmm.json @@ -7,12 +7,8 @@ "CVE-2009-4446" ], "details": "Cross-site scripting (XSS) vulnerability in admin.php in phpInstantGallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-922f-j548-hrpp/GHSA-922f-j548-hrpp.json b/advisories/unreviewed/2022/05/GHSA-922f-j548-hrpp/GHSA-922f-j548-hrpp.json index 827325aa06c..f6ca9719945 100644 --- a/advisories/unreviewed/2022/05/GHSA-922f-j548-hrpp/GHSA-922f-j548-hrpp.json +++ b/advisories/unreviewed/2022/05/GHSA-922f-j548-hrpp/GHSA-922f-j548-hrpp.json @@ -7,12 +7,8 @@ "CVE-2009-4590" ], "details": "Cross-site scripting (XSS) vulnerability in base_local_rules.php in Basic Analysis and Security Engine (BASE) before 1.4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9297-53fw-x6cq/GHSA-9297-53fw-x6cq.json b/advisories/unreviewed/2022/05/GHSA-9297-53fw-x6cq/GHSA-9297-53fw-x6cq.json index efb714e2a7a..25b19da5497 100644 --- a/advisories/unreviewed/2022/05/GHSA-9297-53fw-x6cq/GHSA-9297-53fw-x6cq.json +++ b/advisories/unreviewed/2022/05/GHSA-9297-53fw-x6cq/GHSA-9297-53fw-x6cq.json @@ -7,12 +7,8 @@ "CVE-2009-4764" ], "details": "Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document, which makes it easier for remote attackers to trick users into executing arbitrary code via a crafted document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-92g7-p9j3-942v/GHSA-92g7-p9j3-942v.json b/advisories/unreviewed/2022/05/GHSA-92g7-p9j3-942v/GHSA-92g7-p9j3-942v.json index 52d0859e30f..4157c186b87 100644 --- a/advisories/unreviewed/2022/05/GHSA-92g7-p9j3-942v/GHSA-92g7-p9j3-942v.json +++ b/advisories/unreviewed/2022/05/GHSA-92g7-p9j3-942v/GHSA-92g7-p9j3-942v.json @@ -7,12 +7,8 @@ "CVE-2009-4442" ], "details": "Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly implement the max-client-connections configuration setting, which allows remote attackers to cause a denial of service (connection slot exhaustion) by making multiple connections and performing no operations on these connections, aka Bug Id 6648665.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-938x-7pc2-p2gg/GHSA-938x-7pc2-p2gg.json b/advisories/unreviewed/2022/05/GHSA-938x-7pc2-p2gg/GHSA-938x-7pc2-p2gg.json index 9bba510d899..b3356eb7bfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-938x-7pc2-p2gg/GHSA-938x-7pc2-p2gg.json +++ b/advisories/unreviewed/2022/05/GHSA-938x-7pc2-p2gg/GHSA-938x-7pc2-p2gg.json @@ -7,12 +7,8 @@ "CVE-2009-4679" ], "details": "Directory traversal vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.5 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-93v5-m8h2-php8/GHSA-93v5-m8h2-php8.json b/advisories/unreviewed/2022/05/GHSA-93v5-m8h2-php8/GHSA-93v5-m8h2-php8.json index 65db60d66fc..889acf44a59 100644 --- a/advisories/unreviewed/2022/05/GHSA-93v5-m8h2-php8/GHSA-93v5-m8h2-php8.json +++ b/advisories/unreviewed/2022/05/GHSA-93v5-m8h2-php8/GHSA-93v5-m8h2-php8.json @@ -7,12 +7,8 @@ "CVE-2009-4517" ], "details": "Cross-site request forgery (CSRF) vulnerability in the FAQ Ask module 5.x and 6.x before 6.x-2.0, a module for Drupal, allows remote attackers to hijack the authentication of arbitrary users for requests that access unpublished content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9493-25r8-8859/GHSA-9493-25r8-8859.json b/advisories/unreviewed/2022/05/GHSA-9493-25r8-8859/GHSA-9493-25r8-8859.json index bebb8022d45..128ce1b520d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9493-25r8-8859/GHSA-9493-25r8-8859.json +++ b/advisories/unreviewed/2022/05/GHSA-9493-25r8-8859/GHSA-9493-25r8-8859.json @@ -7,12 +7,8 @@ "CVE-2009-4613" ], "details": "SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94g9-mcw4-f749/GHSA-94g9-mcw4-f749.json b/advisories/unreviewed/2022/05/GHSA-94g9-mcw4-f749/GHSA-94g9-mcw4-f749.json index 582687b4e58..177ff238c82 100644 --- a/advisories/unreviewed/2022/05/GHSA-94g9-mcw4-f749/GHSA-94g9-mcw4-f749.json +++ b/advisories/unreviewed/2022/05/GHSA-94g9-mcw4-f749/GHSA-94g9-mcw4-f749.json @@ -7,12 +7,8 @@ "CVE-2009-4487" ], "details": "nginx 0.7.64 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94jm-5vmh-jwwc/GHSA-94jm-5vmh-jwwc.json b/advisories/unreviewed/2022/05/GHSA-94jm-5vmh-jwwc/GHSA-94jm-5vmh-jwwc.json index 45ddf19ba1c..fcdac0e960c 100644 --- a/advisories/unreviewed/2022/05/GHSA-94jm-5vmh-jwwc/GHSA-94jm-5vmh-jwwc.json +++ b/advisories/unreviewed/2022/05/GHSA-94jm-5vmh-jwwc/GHSA-94jm-5vmh-jwwc.json @@ -7,12 +7,8 @@ "CVE-2009-4466" ], "details": "DeluxeBB 1.3 allows remote attackers to obtain sensitive information via a crafted page parameter to misc.php, which reveals the installation path in an error message. NOTE: this issue might be resultant from improperly controlled computation in tools.php that leads to a denial of service (CPU or memory consumption).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96m5-5pf8-2pwf/GHSA-96m5-5pf8-2pwf.json b/advisories/unreviewed/2022/05/GHSA-96m5-5pf8-2pwf/GHSA-96m5-5pf8-2pwf.json index dd45a347a13..5f558cca66d 100644 --- a/advisories/unreviewed/2022/05/GHSA-96m5-5pf8-2pwf/GHSA-96m5-5pf8-2pwf.json +++ b/advisories/unreviewed/2022/05/GHSA-96m5-5pf8-2pwf/GHSA-96m5-5pf8-2pwf.json @@ -7,12 +7,8 @@ "CVE-2009-4271" ], "details": "The Linux kernel 2.6.9 through 2.6.17 on the x86_64 and amd64 platforms allows local users to cause a denial of service (panic) via a 32-bit application that calls mprotect on its Virtual Dynamic Shared Object (VDSO) page and then triggers a segmentation fault.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-96r9-wrq7-wv4m/GHSA-96r9-wrq7-wv4m.json b/advisories/unreviewed/2022/05/GHSA-96r9-wrq7-wv4m/GHSA-96r9-wrq7-wv4m.json index 1f89de76fbd..6e22a87a0e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-96r9-wrq7-wv4m/GHSA-96r9-wrq7-wv4m.json +++ b/advisories/unreviewed/2022/05/GHSA-96r9-wrq7-wv4m/GHSA-96r9-wrq7-wv4m.json @@ -7,12 +7,8 @@ "CVE-2009-4875" ], "details": "FCKeditor.Java 2.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed request parameter that contains \"ctrl\" characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-994j-rh9r-7g2v/GHSA-994j-rh9r-7g2v.json b/advisories/unreviewed/2022/05/GHSA-994j-rh9r-7g2v/GHSA-994j-rh9r-7g2v.json index 090fc92b90c..c3109e04b93 100644 --- a/advisories/unreviewed/2022/05/GHSA-994j-rh9r-7g2v/GHSA-994j-rh9r-7g2v.json +++ b/advisories/unreviewed/2022/05/GHSA-994j-rh9r-7g2v/GHSA-994j-rh9r-7g2v.json @@ -7,12 +7,8 @@ "CVE-2009-4647" ], "details": "Cross-site scripting (XSS) vulnerability in Accellion Secure File Transfer Appliance before 7_0_296 allows remote attackers to inject arbitrary web script or HTML via the username parameter, which is not properly handled when the administrator views audit logs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-997v-mjww-r7j6/GHSA-997v-mjww-r7j6.json b/advisories/unreviewed/2022/05/GHSA-997v-mjww-r7j6/GHSA-997v-mjww-r7j6.json index 6be34b429b7..03e976687b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-997v-mjww-r7j6/GHSA-997v-mjww-r7j6.json +++ b/advisories/unreviewed/2022/05/GHSA-997v-mjww-r7j6/GHSA-997v-mjww-r7j6.json @@ -7,12 +7,8 @@ "CVE-2009-4552" ], "details": "Cross-site scripting (XSS) vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-999v-xqcq-xhxj/GHSA-999v-xqcq-xhxj.json b/advisories/unreviewed/2022/05/GHSA-999v-xqcq-xhxj/GHSA-999v-xqcq-xhxj.json index 3d67a0cab1f..cb14269c1f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-999v-xqcq-xhxj/GHSA-999v-xqcq-xhxj.json +++ b/advisories/unreviewed/2022/05/GHSA-999v-xqcq-xhxj/GHSA-999v-xqcq-xhxj.json @@ -7,12 +7,8 @@ "CVE-2009-4467" ], "details": "misc.php in DeluxeBB 1.3 allows remote attackers to register accounts without a valid email address via a valemail action with the valmem set to a pre-assigned user ID, which is visible from a memberlist action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99hf-6gpm-cphh/GHSA-99hf-6gpm-cphh.json b/advisories/unreviewed/2022/05/GHSA-99hf-6gpm-cphh/GHSA-99hf-6gpm-cphh.json index bd30eb82834..df59d6c27e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-99hf-6gpm-cphh/GHSA-99hf-6gpm-cphh.json +++ b/advisories/unreviewed/2022/05/GHSA-99hf-6gpm-cphh/GHSA-99hf-6gpm-cphh.json @@ -7,12 +7,8 @@ "CVE-2009-4906" ], "details": "Cross-site request forgery (CSRF) vulnerability in index.php in Acc PHP eMail 1.1 allows remote attackers to hijack the authentication of administrators for requests that change passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cmp-vg4h-3c7q/GHSA-9cmp-vg4h-3c7q.json b/advisories/unreviewed/2022/05/GHSA-9cmp-vg4h-3c7q/GHSA-9cmp-vg4h-3c7q.json index 1d6337f30ed..4ef02378882 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cmp-vg4h-3c7q/GHSA-9cmp-vg4h-3c7q.json +++ b/advisories/unreviewed/2022/05/GHSA-9cmp-vg4h-3c7q/GHSA-9cmp-vg4h-3c7q.json @@ -7,12 +7,8 @@ "CVE-2009-4933" ], "details": "Multiple SQL injection vulnerabilities in login.php in EZ Webitor allow remote attackers to execute arbitrary SQL commands via the (1) txtUserId (Username) and (2) txtPassword (Password) parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cw6-3jhc-97m4/GHSA-9cw6-3jhc-97m4.json b/advisories/unreviewed/2022/05/GHSA-9cw6-3jhc-97m4/GHSA-9cw6-3jhc-97m4.json index f10c5d990d6..69fa351da04 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cw6-3jhc-97m4/GHSA-9cw6-3jhc-97m4.json +++ b/advisories/unreviewed/2022/05/GHSA-9cw6-3jhc-97m4/GHSA-9cw6-3jhc-97m4.json @@ -7,12 +7,8 @@ "CVE-2009-4843" ], "details": "ToutVirtual VirtualIQ Pro before 3.5 build 8691 does not require administrative authentication for JBoss console access, which allows remote attackers to execute arbitrary commands via requests to (1) the JMX Management Console or (2) the Web Console.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fhh-gqv6-6cp4/GHSA-9fhh-gqv6-6cp4.json b/advisories/unreviewed/2022/05/GHSA-9fhh-gqv6-6cp4/GHSA-9fhh-gqv6-6cp4.json index 687ac3c101c..2f2fadb82f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fhh-gqv6-6cp4/GHSA-9fhh-gqv6-6cp4.json +++ b/advisories/unreviewed/2022/05/GHSA-9fhh-gqv6-6cp4/GHSA-9fhh-gqv6-6cp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fqw-8r6r-h742/GHSA-9fqw-8r6r-h742.json b/advisories/unreviewed/2022/05/GHSA-9fqw-8r6r-h742/GHSA-9fqw-8r6r-h742.json index ea356413b09..4b8c64630c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fqw-8r6r-h742/GHSA-9fqw-8r6r-h742.json +++ b/advisories/unreviewed/2022/05/GHSA-9fqw-8r6r-h742/GHSA-9fqw-8r6r-h742.json @@ -7,12 +7,8 @@ "CVE-2009-4597" ], "details": "Multiple SQL injection vulnerabilities in index.php in PHP Inventory 1.2 allow (1) remote authenticated users to execute arbitrary SQL commands via the user_id parameter in a users details action, and allow remote attackers to execute arbitrary SQL commands via the (2) user (username) and (3) pass (password) parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9g7m-qv3x-cpx9/GHSA-9g7m-qv3x-cpx9.json b/advisories/unreviewed/2022/05/GHSA-9g7m-qv3x-cpx9/GHSA-9g7m-qv3x-cpx9.json index ef31c37a3b3..885fb974dee 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g7m-qv3x-cpx9/GHSA-9g7m-qv3x-cpx9.json +++ b/advisories/unreviewed/2022/05/GHSA-9g7m-qv3x-cpx9/GHSA-9g7m-qv3x-cpx9.json @@ -7,12 +7,8 @@ "CVE-2009-5061" ], "details": "Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.14 services for Lotus Domino, when Domino Native Authentication is enabled, might allow remote authenticated users to cause a denial of service (daemon crash) by going offline, aka SPR MLZG7UPB9N.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9g9x-24rg-f99h/GHSA-9g9x-24rg-f99h.json b/advisories/unreviewed/2022/05/GHSA-9g9x-24rg-f99h/GHSA-9g9x-24rg-f99h.json index adb57b066a1..49f99f85faf 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g9x-24rg-f99h/GHSA-9g9x-24rg-f99h.json +++ b/advisories/unreviewed/2022/05/GHSA-9g9x-24rg-f99h/GHSA-9g9x-24rg-f99h.json @@ -7,12 +7,8 @@ "CVE-2009-5008" ], "details": "Cisco Secure Desktop (CSD), when used in conjunction with an AnyConnect SSL VPN server, does not properly perform verification, which allows local users to bypass intended policy restrictions via a modified executable file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9h9w-cgvj-f2wg/GHSA-9h9w-cgvj-f2wg.json b/advisories/unreviewed/2022/05/GHSA-9h9w-cgvj-f2wg/GHSA-9h9w-cgvj-f2wg.json index 1bead1903be..358c0dcd9ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h9w-cgvj-f2wg/GHSA-9h9w-cgvj-f2wg.json +++ b/advisories/unreviewed/2022/05/GHSA-9h9w-cgvj-f2wg/GHSA-9h9w-cgvj-f2wg.json @@ -7,12 +7,8 @@ "CVE-2009-4807" ], "details": "Multiple SQL injection vulnerabilities in Graugon PHP Article Publisher 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) c parameter to index.php and the (2) id parameter to view.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jq9-g2pc-wwpm/GHSA-9jq9-g2pc-wwpm.json b/advisories/unreviewed/2022/05/GHSA-9jq9-g2pc-wwpm/GHSA-9jq9-g2pc-wwpm.json index 72255c716e0..39c24ff32a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jq9-g2pc-wwpm/GHSA-9jq9-g2pc-wwpm.json +++ b/advisories/unreviewed/2022/05/GHSA-9jq9-g2pc-wwpm/GHSA-9jq9-g2pc-wwpm.json @@ -7,12 +7,8 @@ "CVE-2009-5035" ], "details": "The Nokia client in IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle multiple outgoing e-mail messages between sync operations, which might allow remote attackers to read communications intended for other recipients by examining appended messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mq4-39cv-h79m/GHSA-9mq4-39cv-h79m.json b/advisories/unreviewed/2022/05/GHSA-9mq4-39cv-h79m/GHSA-9mq4-39cv-h79m.json index f6b7ac5ab59..b5536639b95 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mq4-39cv-h79m/GHSA-9mq4-39cv-h79m.json +++ b/advisories/unreviewed/2022/05/GHSA-9mq4-39cv-h79m/GHSA-9mq4-39cv-h79m.json @@ -7,12 +7,8 @@ "CVE-2009-4606" ], "details": "South River Technologies WebDrive 9.02 build 2232 installs the WebDrive Service without a security descriptor, which allows local users to (1) stop the service via the stop command, (2) execute arbitrary commands as SYSTEM by using the config command to modify the binPath variable, or (3) restart the service via the start command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9p3j-jg4g-2mx3/GHSA-9p3j-jg4g-2mx3.json b/advisories/unreviewed/2022/05/GHSA-9p3j-jg4g-2mx3/GHSA-9p3j-jg4g-2mx3.json index 58b51218a35..020c3770129 100644 --- a/advisories/unreviewed/2022/05/GHSA-9p3j-jg4g-2mx3/GHSA-9p3j-jg4g-2mx3.json +++ b/advisories/unreviewed/2022/05/GHSA-9p3j-jg4g-2mx3/GHSA-9p3j-jg4g-2mx3.json @@ -7,12 +7,8 @@ "CVE-2009-4626" ], "details": "Directory traversal vulnerability in menu.php in phpNagios 1.2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the conf[lang] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pfv-v5x2-8rg5/GHSA-9pfv-v5x2-8rg5.json b/advisories/unreviewed/2022/05/GHSA-9pfv-v5x2-8rg5/GHSA-9pfv-v5x2-8rg5.json index e80cf08e767..7fdd652df5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pfv-v5x2-8rg5/GHSA-9pfv-v5x2-8rg5.json +++ b/advisories/unreviewed/2022/05/GHSA-9pfv-v5x2-8rg5/GHSA-9pfv-v5x2-8rg5.json @@ -7,12 +7,8 @@ "CVE-2009-4948" ], "details": "Cross-site scripting (XSS) vulnerability in the Store Locator extension before 1.2.8 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9ph5-24p7-567p/GHSA-9ph5-24p7-567p.json b/advisories/unreviewed/2022/05/GHSA-9ph5-24p7-567p/GHSA-9ph5-24p7-567p.json index 1281bcf17d8..3cf09009bc8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ph5-24p7-567p/GHSA-9ph5-24p7-567p.json +++ b/advisories/unreviewed/2022/05/GHSA-9ph5-24p7-567p/GHSA-9ph5-24p7-567p.json @@ -7,12 +7,8 @@ "CVE-2009-4636" ], "details": "FFmpeg 0.5 allows remote attackers to cause a denial of service (hang) via a crafted file that triggers an infinite loop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pqr-jpg7-8j32/GHSA-9pqr-jpg7-8j32.json b/advisories/unreviewed/2022/05/GHSA-9pqr-jpg7-8j32/GHSA-9pqr-jpg7-8j32.json index f3d8e49feb2..85909e0535d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pqr-jpg7-8j32/GHSA-9pqr-jpg7-8j32.json +++ b/advisories/unreviewed/2022/05/GHSA-9pqr-jpg7-8j32/GHSA-9pqr-jpg7-8j32.json @@ -7,12 +7,8 @@ "CVE-2009-4873" ], "details": "Stack-based buffer overflow in the HTTP server in Rhino Software Serv-U Web Client 9.0.0.5 allows remote attackers to cause a denial of service (server crash) or execute arbitrary code via a long Session cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9r6f-hvp3-6374/GHSA-9r6f-hvp3-6374.json b/advisories/unreviewed/2022/05/GHSA-9r6f-hvp3-6374/GHSA-9r6f-hvp3-6374.json index e821c73f445..2fcf0e7e889 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r6f-hvp3-6374/GHSA-9r6f-hvp3-6374.json +++ b/advisories/unreviewed/2022/05/GHSA-9r6f-hvp3-6374/GHSA-9r6f-hvp3-6374.json @@ -7,12 +7,8 @@ "CVE-2009-4758" ], "details": "Stack-based buffer overflow in dicas Mpegable Player 2.12 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .YUV file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v84-q89r-7m6x/GHSA-9v84-q89r-7m6x.json b/advisories/unreviewed/2022/05/GHSA-9v84-q89r-7m6x/GHSA-9v84-q89r-7m6x.json index 78aecd8ccc7..e49c7537a4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v84-q89r-7m6x/GHSA-9v84-q89r-7m6x.json +++ b/advisories/unreviewed/2022/05/GHSA-9v84-q89r-7m6x/GHSA-9v84-q89r-7m6x.json @@ -7,12 +7,8 @@ "CVE-2009-4386" ], "details": "SQL injection vulnerability in hotel_tiempolibre_ext.php in Venalsur Booking Centre Booking System for Hotels Group, when magic_quotes_gpc is enabled, allows remote attackers to execute arbitrary SQL commands via the NoticiaID parameter and other unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vwf-r222-fcvc/GHSA-9vwf-r222-fcvc.json b/advisories/unreviewed/2022/05/GHSA-9vwf-r222-fcvc/GHSA-9vwf-r222-fcvc.json index 50649a21031..e7c275b214c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vwf-r222-fcvc/GHSA-9vwf-r222-fcvc.json +++ b/advisories/unreviewed/2022/05/GHSA-9vwf-r222-fcvc/GHSA-9vwf-r222-fcvc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c2fx-j5w7-f4jh/GHSA-c2fx-j5w7-f4jh.json b/advisories/unreviewed/2022/05/GHSA-c2fx-j5w7-f4jh/GHSA-c2fx-j5w7-f4jh.json index 141aa8acd47..99a13ebcaf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2fx-j5w7-f4jh/GHSA-c2fx-j5w7-f4jh.json +++ b/advisories/unreviewed/2022/05/GHSA-c2fx-j5w7-f4jh/GHSA-c2fx-j5w7-f4jh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3vq-r4gh-8jf8/GHSA-c3vq-r4gh-8jf8.json b/advisories/unreviewed/2022/05/GHSA-c3vq-r4gh-8jf8/GHSA-c3vq-r4gh-8jf8.json index 956a8ba3df8..a21d40dd5f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3vq-r4gh-8jf8/GHSA-c3vq-r4gh-8jf8.json +++ b/advisories/unreviewed/2022/05/GHSA-c3vq-r4gh-8jf8/GHSA-c3vq-r4gh-8jf8.json @@ -7,12 +7,8 @@ "CVE-2009-4379" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CVE-2008-2924.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c44v-qj89-q9m7/GHSA-c44v-qj89-q9m7.json b/advisories/unreviewed/2022/05/GHSA-c44v-qj89-q9m7/GHSA-c44v-qj89-q9m7.json index f4d903124a6..7b0c0400627 100644 --- a/advisories/unreviewed/2022/05/GHSA-c44v-qj89-q9m7/GHSA-c44v-qj89-q9m7.json +++ b/advisories/unreviewed/2022/05/GHSA-c44v-qj89-q9m7/GHSA-c44v-qj89-q9m7.json @@ -7,12 +7,8 @@ "CVE-2009-4732" ], "details": "SQL injection vulnerability in tt/index.php in TT Web Site Manager 0.5, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the tt_name parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c463-rcwh-797m/GHSA-c463-rcwh-797m.json b/advisories/unreviewed/2022/05/GHSA-c463-rcwh-797m/GHSA-c463-rcwh-797m.json index ca2de53b76f..3e5f035a39e 100644 --- a/advisories/unreviewed/2022/05/GHSA-c463-rcwh-797m/GHSA-c463-rcwh-797m.json +++ b/advisories/unreviewed/2022/05/GHSA-c463-rcwh-797m/GHSA-c463-rcwh-797m.json @@ -7,12 +7,8 @@ "CVE-2009-4669" ], "details": "Multiple SQL injection vulnerabilities in RoomPHPlanning 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the loginus parameter to Login.php or (2) the Old Password field to changepwd.php, and allow (3) remote authenticated administrators to execute arbitrary SQL commands via the id parameter to admin/userform.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4gr-vqp8-vq6p/GHSA-c4gr-vqp8-vq6p.json b/advisories/unreviewed/2022/05/GHSA-c4gr-vqp8-vq6p/GHSA-c4gr-vqp8-vq6p.json index 55796757c03..4ebbe9f5254 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4gr-vqp8-vq6p/GHSA-c4gr-vqp8-vq6p.json +++ b/advisories/unreviewed/2022/05/GHSA-c4gr-vqp8-vq6p/GHSA-c4gr-vqp8-vq6p.json @@ -7,12 +7,8 @@ "CVE-2009-4520" ], "details": "The CCK Comment Reference module 5.x before 5.x-1.2 and 6.x before 6.x-1.3, a module for Drupal, allows remote attackers to bypass intended access restrictions and read comments by using the autocomplete path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c552-8x9f-9xrp/GHSA-c552-8x9f-9xrp.json b/advisories/unreviewed/2022/05/GHSA-c552-8x9f-9xrp/GHSA-c552-8x9f-9xrp.json index 57172492d9c..f923d0c6143 100644 --- a/advisories/unreviewed/2022/05/GHSA-c552-8x9f-9xrp/GHSA-c552-8x9f-9xrp.json +++ b/advisories/unreviewed/2022/05/GHSA-c552-8x9f-9xrp/GHSA-c552-8x9f-9xrp.json @@ -7,12 +7,8 @@ "CVE-2009-4965" ], "details": "SQL injection vulnerability in the AIRware Lexicon (air_lexicon) extension 0.0.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c57c-6w4w-ppfq/GHSA-c57c-6w4w-ppfq.json b/advisories/unreviewed/2022/05/GHSA-c57c-6w4w-ppfq/GHSA-c57c-6w4w-ppfq.json index 9481083a32d..708414dc437 100644 --- a/advisories/unreviewed/2022/05/GHSA-c57c-6w4w-ppfq/GHSA-c57c-6w4w-ppfq.json +++ b/advisories/unreviewed/2022/05/GHSA-c57c-6w4w-ppfq/GHSA-c57c-6w4w-ppfq.json @@ -7,12 +7,8 @@ "CVE-2009-4675" ], "details": "admin/admin_info/index.php in the Mole Group Gastro Portal (Restaurant Directory) Script does not require administrative authentication, which allows remote attackers to change the admin password via an unspecified form submission.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c7qc-8vhx-j958/GHSA-c7qc-8vhx-j958.json b/advisories/unreviewed/2022/05/GHSA-c7qc-8vhx-j958/GHSA-c7qc-8vhx-j958.json index f7007369d3b..4411727c2f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7qc-8vhx-j958/GHSA-c7qc-8vhx-j958.json +++ b/advisories/unreviewed/2022/05/GHSA-c7qc-8vhx-j958/GHSA-c7qc-8vhx-j958.json @@ -7,12 +7,8 @@ "CVE-2009-5095" ], "details": "PHP remote file inclusion vulnerability in index_inc.php in ea gBook 0.1 and 0.1.4 allows remote attackers to execute arbitrary PHP code via a URL in the inc_ordner parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c7ww-xrv2-6x29/GHSA-c7ww-xrv2-6x29.json b/advisories/unreviewed/2022/05/GHSA-c7ww-xrv2-6x29/GHSA-c7ww-xrv2-6x29.json index 4a163473344..b39f62a70e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7ww-xrv2-6x29/GHSA-c7ww-xrv2-6x29.json +++ b/advisories/unreviewed/2022/05/GHSA-c7ww-xrv2-6x29/GHSA-c7ww-xrv2-6x29.json @@ -7,12 +7,8 @@ "CVE-2009-4314" ], "details": "Sun Ray Server Software 4.1 on Solaris 10, when Automatic Multi-Group Hotdesking (AMGH) is enabled, responds to a logout action by immediately logging the user in again, which makes it easier for physically proximate attackers to obtain access to a session by going to an unattended DTU device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c89j-whg2-gg94/GHSA-c89j-whg2-gg94.json b/advisories/unreviewed/2022/05/GHSA-c89j-whg2-gg94/GHSA-c89j-whg2-gg94.json index 67086a5cb12..9ef0ef59cdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-c89j-whg2-gg94/GHSA-c89j-whg2-gg94.json +++ b/advisories/unreviewed/2022/05/GHSA-c89j-whg2-gg94/GHSA-c89j-whg2-gg94.json @@ -7,12 +7,8 @@ "CVE-2009-4479" ], "details": "LDAP3A.exe in MailSite 8.0.4 allows remote attackers to cause a denial of service (heap memory corruption and daemon crash) via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.13 through 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c8fp-pw4c-fccq/GHSA-c8fp-pw4c-fccq.json b/advisories/unreviewed/2022/05/GHSA-c8fp-pw4c-fccq/GHSA-c8fp-pw4c-fccq.json index d3727e22c80..690e218c82b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8fp-pw4c-fccq/GHSA-c8fp-pw4c-fccq.json +++ b/advisories/unreviewed/2022/05/GHSA-c8fp-pw4c-fccq/GHSA-c8fp-pw4c-fccq.json @@ -7,12 +7,8 @@ "CVE-2009-4443" ], "details": "Unspecified vulnerability in the psearch (aka persistent search) functionality in Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 allows remote attackers to cause a denial of service (psearch outage) by using a crafted psearch client to send requests that trigger a psearch thread loop, aka Bug Id 6855978.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c8m3-9rx4-4cq6/GHSA-c8m3-9rx4-4cq6.json b/advisories/unreviewed/2022/05/GHSA-c8m3-9rx4-4cq6/GHSA-c8m3-9rx4-4cq6.json index 29e3fa8b519..fe8054a9c20 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8m3-9rx4-4cq6/GHSA-c8m3-9rx4-4cq6.json +++ b/advisories/unreviewed/2022/05/GHSA-c8m3-9rx4-4cq6/GHSA-c8m3-9rx4-4cq6.json @@ -7,12 +7,8 @@ "CVE-2009-4654" ], "details": "Stack-based buffer overflow in the dhost module in Novell eDirectory 8.8 SP5 for Windows allows remote authenticated users to execute arbitrary code via long sadminpwd and verifypwd parameters in a submit action to /dhost/httpstk.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc25-54j8-hmp7/GHSA-cc25-54j8-hmp7.json b/advisories/unreviewed/2022/05/GHSA-cc25-54j8-hmp7/GHSA-cc25-54j8-hmp7.json index c7febfd8a35..0979a8724cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc25-54j8-hmp7/GHSA-cc25-54j8-hmp7.json +++ b/advisories/unreviewed/2022/05/GHSA-cc25-54j8-hmp7/GHSA-cc25-54j8-hmp7.json @@ -7,12 +7,8 @@ "CVE-2009-4706" ], "details": "Cross-site scripting (XSS) vulnerability in the Mailform (mailform) extension before 0.9.24 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc3m-5cf3-7p45/GHSA-cc3m-5cf3-7p45.json b/advisories/unreviewed/2022/05/GHSA-cc3m-5cf3-7p45/GHSA-cc3m-5cf3-7p45.json index 632113b7f33..3b97949dc98 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc3m-5cf3-7p45/GHSA-cc3m-5cf3-7p45.json +++ b/advisories/unreviewed/2022/05/GHSA-cc3m-5cf3-7p45/GHSA-cc3m-5cf3-7p45.json @@ -7,12 +7,8 @@ "CVE-2009-4624" ], "details": "SQL injection vulnerability in download.php in Nicecoder iDesk allows remote attackers to execute arbitrary SQL commands via the cat_id parameter, a different vector than CVE-2005-3843.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfpf-233f-2c4q/GHSA-cfpf-233f-2c4q.json b/advisories/unreviewed/2022/05/GHSA-cfpf-233f-2c4q/GHSA-cfpf-233f-2c4q.json index bdf06e1a5bc..2961214f7ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfpf-233f-2c4q/GHSA-cfpf-233f-2c4q.json +++ b/advisories/unreviewed/2022/05/GHSA-cfpf-233f-2c4q/GHSA-cfpf-233f-2c4q.json @@ -7,12 +7,8 @@ "CVE-2009-4473" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in WorkArea/ContentDesigner/ekformsiframe.aspx in Ektron CMS400.NET 7.6.1.53 and 7.6.6.47, and possibly 7.52 through 7.66sp2, allow remote attackers to inject arbitrary web script or HTML via the (1) css, (2) eca, (3) id, and (4) skin parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg3r-vf2p-3f9h/GHSA-cg3r-vf2p-3f9h.json b/advisories/unreviewed/2022/05/GHSA-cg3r-vf2p-3f9h/GHSA-cg3r-vf2p-3f9h.json index dc221fa1c0a..d608f71ffd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg3r-vf2p-3f9h/GHSA-cg3r-vf2p-3f9h.json +++ b/advisories/unreviewed/2022/05/GHSA-cg3r-vf2p-3f9h/GHSA-cg3r-vf2p-3f9h.json @@ -7,12 +7,8 @@ "CVE-2009-4355" ], "details": "Memory leak in the zlib_stateful_finish function in crypto/comp/c_zlib.c in OpenSSL 0.9.8l and earlier and 1.0.0 Beta through Beta 4 allows remote attackers to cause a denial of service (memory consumption) via vectors that trigger incorrect calls to the CRYPTO_cleanup_all_ex_data function, as demonstrated by use of SSLv3 and PHP with the Apache HTTP Server, a related issue to CVE-2008-1678.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -140,9 +136,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg5g-vw88-93vq/GHSA-cg5g-vw88-93vq.json b/advisories/unreviewed/2022/05/GHSA-cg5g-vw88-93vq/GHSA-cg5g-vw88-93vq.json index 314ade451c1..b8b2ca92495 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg5g-vw88-93vq/GHSA-cg5g-vw88-93vq.json +++ b/advisories/unreviewed/2022/05/GHSA-cg5g-vw88-93vq/GHSA-cg5g-vw88-93vq.json @@ -7,12 +7,8 @@ "CVE-2014-3186" ], "details": "Buffer overflow in the picolcd_raw_event function in devices/hid/hid-picolcd_core.c in the PicoLCD HID device driver in the Linux kernel through 3.16.3, as used in Android on Nexus 7 devices, allows physically proximate attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a crafted device that sends a large report.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cgpx-g545-4wgj/GHSA-cgpx-g545-4wgj.json b/advisories/unreviewed/2022/05/GHSA-cgpx-g545-4wgj/GHSA-cgpx-g545-4wgj.json index c123a0ddf07..e153a55153b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgpx-g545-4wgj/GHSA-cgpx-g545-4wgj.json +++ b/advisories/unreviewed/2022/05/GHSA-cgpx-g545-4wgj/GHSA-cgpx-g545-4wgj.json @@ -7,12 +7,8 @@ "CVE-2009-4293" ], "details": "Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.30 through 2.51, when NAT is enabled, allows remote attackers to cause a denial of service (system restart) via crafted GRE packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjjj-mm88-5gwj/GHSA-cjjj-mm88-5gwj.json b/advisories/unreviewed/2022/05/GHSA-cjjj-mm88-5gwj/GHSA-cjjj-mm88-5gwj.json index 4cfc1f54c2b..79029db614e 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjjj-mm88-5gwj/GHSA-cjjj-mm88-5gwj.json +++ b/advisories/unreviewed/2022/05/GHSA-cjjj-mm88-5gwj/GHSA-cjjj-mm88-5gwj.json @@ -7,12 +7,8 @@ "CVE-2009-4863" ], "details": "Stack-based buffer overflow in UltraPlayer Media Player 2.112 allows remote attackers to execute arbitrary code via a long string in a .usk file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjp4-93x5-3ww7/GHSA-cjp4-93x5-3ww7.json b/advisories/unreviewed/2022/05/GHSA-cjp4-93x5-3ww7/GHSA-cjp4-93x5-3ww7.json index 94a973e8a21..ca15294a8c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjp4-93x5-3ww7/GHSA-cjp4-93x5-3ww7.json +++ b/advisories/unreviewed/2022/05/GHSA-cjp4-93x5-3ww7/GHSA-cjp4-93x5-3ww7.json @@ -7,12 +7,8 @@ "CVE-2009-4794" ], "details": "Multiple SQL injection vulnerabilities in Community CMS 0.5 allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter to view.php and the (2) a parameter in an event action to calendar.php, reachable through index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjpq-8g7j-6v2f/GHSA-cjpq-8g7j-6v2f.json b/advisories/unreviewed/2022/05/GHSA-cjpq-8g7j-6v2f/GHSA-cjpq-8g7j-6v2f.json index aadadf7f942..cbe128aeff7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjpq-8g7j-6v2f/GHSA-cjpq-8g7j-6v2f.json +++ b/advisories/unreviewed/2022/05/GHSA-cjpq-8g7j-6v2f/GHSA-cjpq-8g7j-6v2f.json @@ -7,12 +7,8 @@ "CVE-2009-4887" ], "details": "PHP remote file inclusion vulnerability in index.php in CMS S.Builder 3.7 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in a binn_include_path cookie. NOTE: this can also be leveraged to include and execute arbitrary local files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm5v-3xc8-j5w5/GHSA-cm5v-3xc8-j5w5.json b/advisories/unreviewed/2022/05/GHSA-cm5v-3xc8-j5w5/GHSA-cm5v-3xc8-j5w5.json index 25b9a9a060f..c96fb1f8a57 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm5v-3xc8-j5w5/GHSA-cm5v-3xc8-j5w5.json +++ b/advisories/unreviewed/2022/05/GHSA-cm5v-3xc8-j5w5/GHSA-cm5v-3xc8-j5w5.json @@ -7,12 +7,8 @@ "CVE-2009-4777" ], "details": "Unspecified vulnerability in multiple versions of Hitachi JP1/Automatic Job Management System 2 - View, JP1/Integrated Management - View, and JP1/Cm2/SNMP System Observer, allows remote attackers to cause a denial of service (\"abnormal\" termination) via vectors related to the display of an \"invalid GIF file.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmh2-6qvw-h9jc/GHSA-cmh2-6qvw-h9jc.json b/advisories/unreviewed/2022/05/GHSA-cmh2-6qvw-h9jc/GHSA-cmh2-6qvw-h9jc.json index cb22135c12f..c8e79125f73 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmh2-6qvw-h9jc/GHSA-cmh2-6qvw-h9jc.json +++ b/advisories/unreviewed/2022/05/GHSA-cmh2-6qvw-h9jc/GHSA-cmh2-6qvw-h9jc.json @@ -7,12 +7,8 @@ "CVE-2009-4958" ], "details": "SQL injection vulnerability in video.php in EMO Breeder Manager (aka EMO Breader Manager) allows remote attackers to execute arbitrary SQL commands via the idd parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp64-jc72-8g82/GHSA-cp64-jc72-8g82.json b/advisories/unreviewed/2022/05/GHSA-cp64-jc72-8g82/GHSA-cp64-jc72-8g82.json index 27393d2c115..072c5f6a849 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp64-jc72-8g82/GHSA-cp64-jc72-8g82.json +++ b/advisories/unreviewed/2022/05/GHSA-cp64-jc72-8g82/GHSA-cp64-jc72-8g82.json @@ -7,12 +7,8 @@ "CVE-2009-4893" ], "details": "Buffer overflow in UnrealIRCd 3.2beta11 through 3.2.8, when allow::options::noident is enabled, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cpvq-xhww-7wpr/GHSA-cpvq-xhww-7wpr.json b/advisories/unreviewed/2022/05/GHSA-cpvq-xhww-7wpr/GHSA-cpvq-xhww-7wpr.json index 047b88cf558..821e11896a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpvq-xhww-7wpr/GHSA-cpvq-xhww-7wpr.json +++ b/advisories/unreviewed/2022/05/GHSA-cpvq-xhww-7wpr/GHSA-cpvq-xhww-7wpr.json @@ -7,12 +7,8 @@ "CVE-2009-4671" ], "details": "Login.php in RoomPHPlanning 1.6 allows remote attackers to bypass authentication and obtain administrative access by setting the room_phplanning cookie to a value associated with the admin account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqc7-8rq3-fvw9/GHSA-cqc7-8rq3-fvw9.json b/advisories/unreviewed/2022/05/GHSA-cqc7-8rq3-fvw9/GHSA-cqc7-8rq3-fvw9.json index 7b0e08e46df..2e4bd33f4f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqc7-8rq3-fvw9/GHSA-cqc7-8rq3-fvw9.json +++ b/advisories/unreviewed/2022/05/GHSA-cqc7-8rq3-fvw9/GHSA-cqc7-8rq3-fvw9.json @@ -7,12 +7,8 @@ "CVE-2009-4490" ], "details": "mini_httpd 1.19 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqjc-hxf6-jx3w/GHSA-cqjc-hxf6-jx3w.json b/advisories/unreviewed/2022/05/GHSA-cqjc-hxf6-jx3w/GHSA-cqjc-hxf6-jx3w.json index 795d95546eb..2c1ccd3663f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqjc-hxf6-jx3w/GHSA-cqjc-hxf6-jx3w.json +++ b/advisories/unreviewed/2022/05/GHSA-cqjc-hxf6-jx3w/GHSA-cqjc-hxf6-jx3w.json @@ -7,12 +7,8 @@ "CVE-2009-4775" ], "details": "Format string vulnerability in Ipswitch WS_FTP Professional 12 before 12.2 allows remote attackers to cause a denial of service (crash) via format string specifiers in the status code portion of an HTTP response.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqqq-7g6v-3j3x/GHSA-cqqq-7g6v-3j3x.json b/advisories/unreviewed/2022/05/GHSA-cqqq-7g6v-3j3x/GHSA-cqqq-7g6v-3j3x.json index 5d29cea9c64..d5f25e0ac5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqqq-7g6v-3j3x/GHSA-cqqq-7g6v-3j3x.json +++ b/advisories/unreviewed/2022/05/GHSA-cqqq-7g6v-3j3x/GHSA-cqqq-7g6v-3j3x.json @@ -7,12 +7,8 @@ "CVE-2009-4322" ], "details": "extras/ipn_test_return.php in Zen Cart allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cr5q-jqjh-hvr9/GHSA-cr5q-jqjh-hvr9.json b/advisories/unreviewed/2022/05/GHSA-cr5q-jqjh-hvr9/GHSA-cr5q-jqjh-hvr9.json index 18bb2add7ff..8b86f07733b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr5q-jqjh-hvr9/GHSA-cr5q-jqjh-hvr9.json +++ b/advisories/unreviewed/2022/05/GHSA-cr5q-jqjh-hvr9/GHSA-cr5q-jqjh-hvr9.json @@ -7,12 +7,8 @@ "CVE-2009-4577" ], "details": "SQL injection vulnerability in the MDForum module 2.x through 2.07 for MAXdev MDPro allows remote attackers to execute arbitrary SQL commands via the c parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cr6q-w9jh-63pg/GHSA-cr6q-w9jh-63pg.json b/advisories/unreviewed/2022/05/GHSA-cr6q-w9jh-63pg/GHSA-cr6q-w9jh-63pg.json index 870322ecc3f..704c95f0c99 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr6q-w9jh-63pg/GHSA-cr6q-w9jh-63pg.json +++ b/advisories/unreviewed/2022/05/GHSA-cr6q-w9jh-63pg/GHSA-cr6q-w9jh-63pg.json @@ -7,12 +7,8 @@ "CVE-2009-4839" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and earlier, allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) admin/base_roleadmin.php, (2) admin/base_useradmin.php, (3) base_conf_contents.php, (4) base_qry_sqlcalls.php, and (5) base_ag_main.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crjr-jpgv-2pv7/GHSA-crjr-jpgv-2pv7.json b/advisories/unreviewed/2022/05/GHSA-crjr-jpgv-2pv7/GHSA-crjr-jpgv-2pv7.json index 147fc3cd41d..3cb148ff152 100644 --- a/advisories/unreviewed/2022/05/GHSA-crjr-jpgv-2pv7/GHSA-crjr-jpgv-2pv7.json +++ b/advisories/unreviewed/2022/05/GHSA-crjr-jpgv-2pv7/GHSA-crjr-jpgv-2pv7.json @@ -7,12 +7,8 @@ "CVE-2009-4464" ], "details": "Cross-site scripting (XSS) vulnerability in searchadvance.asp in Active Business Directory 2 allows remote attackers to inject arbitrary web script or HTML via the search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crvf-j632-j895/GHSA-crvf-j632-j895.json b/advisories/unreviewed/2022/05/GHSA-crvf-j632-j895/GHSA-crvf-j632-j895.json index edc56b98866..f4ad9ff62d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-crvf-j632-j895/GHSA-crvf-j632-j895.json +++ b/advisories/unreviewed/2022/05/GHSA-crvf-j632-j895/GHSA-crvf-j632-j895.json @@ -7,12 +7,8 @@ "CVE-2009-4824" ], "details": "Unspecified vulnerability in Kolab Webclient before 1.2.0 in Kolab Server before 2.2.3 allows attackers to have an unspecified impact via vectors related to an \"image upload form.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cv3j-9qhg-9hg5/GHSA-cv3j-9qhg-9hg5.json b/advisories/unreviewed/2022/05/GHSA-cv3j-9qhg-9hg5/GHSA-cv3j-9qhg-9hg5.json index ec053d351b9..a06f343100e 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv3j-9qhg-9hg5/GHSA-cv3j-9qhg-9hg5.json +++ b/advisories/unreviewed/2022/05/GHSA-cv3j-9qhg-9hg5/GHSA-cv3j-9qhg-9hg5.json @@ -7,12 +7,8 @@ "CVE-2009-4808" ], "details": "admin.php in Graugon PHP Article Publisher 1.0 allows remote attackers to bypass authentication and obtain administrative access by setting the g_admin cookie to 1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv5p-xvxc-9fqp/GHSA-cv5p-xvxc-9fqp.json b/advisories/unreviewed/2022/05/GHSA-cv5p-xvxc-9fqp/GHSA-cv5p-xvxc-9fqp.json index 4732f7ae35a..0e9162dee48 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv5p-xvxc-9fqp/GHSA-cv5p-xvxc-9fqp.json +++ b/advisories/unreviewed/2022/05/GHSA-cv5p-xvxc-9fqp/GHSA-cv5p-xvxc-9fqp.json @@ -7,12 +7,8 @@ "CVE-2009-4371" ], "details": "Cross-site scripting (XSS) vulnerability in the Locale module (modules/locale/locale.module) in Drupal Core 6.14, and possibly other versions including 6.15, allows remote authenticated users with \"administer languages\" permissions to inject arbitrary web script or HTML via the (1) Language name in English or (2) Native language name fields in the Custom language form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw7j-p4c6-68v7/GHSA-cw7j-p4c6-68v7.json b/advisories/unreviewed/2022/05/GHSA-cw7j-p4c6-68v7/GHSA-cw7j-p4c6-68v7.json index dc925ab4d9f..22e54c52f1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw7j-p4c6-68v7/GHSA-cw7j-p4c6-68v7.json +++ b/advisories/unreviewed/2022/05/GHSA-cw7j-p4c6-68v7/GHSA-cw7j-p4c6-68v7.json @@ -7,12 +7,8 @@ "CVE-2009-4311" ], "details": "Unspecified vulnerability in the Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted media content, as reported to Microsoft by Paul Byrne of NGS Software. NOTE: this might overlap CVE-2008-3615.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw7x-73mr-gff9/GHSA-cw7x-73mr-gff9.json b/advisories/unreviewed/2022/05/GHSA-cw7x-73mr-gff9/GHSA-cw7x-73mr-gff9.json index 10ca6d0eedd..e72de9b2f71 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw7x-73mr-gff9/GHSA-cw7x-73mr-gff9.json +++ b/advisories/unreviewed/2022/05/GHSA-cw7x-73mr-gff9/GHSA-cw7x-73mr-gff9.json @@ -7,12 +7,8 @@ "CVE-2009-4845" ], "details": "The configuration page in ToutVirtual VirtualIQ Pro 3.2 build 7882 contains cleartext SSH credentials, which allows remote attackers to obtain sensitive information by reading the username and password fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx6w-f9x5-64jp/GHSA-cx6w-f9x5-64jp.json b/advisories/unreviewed/2022/05/GHSA-cx6w-f9x5-64jp/GHSA-cx6w-f9x5-64jp.json index 07db759029e..cf1335828e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx6w-f9x5-64jp/GHSA-cx6w-f9x5-64jp.json +++ b/advisories/unreviewed/2022/05/GHSA-cx6w-f9x5-64jp/GHSA-cx6w-f9x5-64jp.json @@ -7,12 +7,8 @@ "CVE-2009-4694" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in RadScripts RadLance Gold 7.5 allows remote attackers to inject arbitrary web script or HTML via the fid parameter in a view_forum action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxx8-cxfx-vrj7/GHSA-cxx8-cxfx-vrj7.json b/advisories/unreviewed/2022/05/GHSA-cxx8-cxfx-vrj7/GHSA-cxx8-cxfx-vrj7.json index 1484119c4cf..488b095b8d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxx8-cxfx-vrj7/GHSA-cxx8-cxfx-vrj7.json +++ b/advisories/unreviewed/2022/05/GHSA-cxx8-cxfx-vrj7/GHSA-cxx8-cxfx-vrj7.json @@ -7,12 +7,8 @@ "CVE-2009-4753" ], "details": "Multiple buffer overflows in the FTP server on the Addonics NAS Adapter NASU2FW41 with loader 1.17 allow remote attackers to cause a denial of service (TCP/IP outage) via long arguments to the (1) XRMD, (2) delete, (3) RNFR, or (4) RNTO command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f29v-pr27-8f5j/GHSA-f29v-pr27-8f5j.json b/advisories/unreviewed/2022/05/GHSA-f29v-pr27-8f5j/GHSA-f29v-pr27-8f5j.json index 864713ff653..b9aa048bce6 100644 --- a/advisories/unreviewed/2022/05/GHSA-f29v-pr27-8f5j/GHSA-f29v-pr27-8f5j.json +++ b/advisories/unreviewed/2022/05/GHSA-f29v-pr27-8f5j/GHSA-f29v-pr27-8f5j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2fm-4956-xvcv/GHSA-f2fm-4956-xvcv.json b/advisories/unreviewed/2022/05/GHSA-f2fm-4956-xvcv/GHSA-f2fm-4956-xvcv.json index f79a1dd9ca4..d0d576c8569 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2fm-4956-xvcv/GHSA-f2fm-4956-xvcv.json +++ b/advisories/unreviewed/2022/05/GHSA-f2fm-4956-xvcv/GHSA-f2fm-4956-xvcv.json @@ -7,12 +7,8 @@ "CVE-2009-4690" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in YourFreeWorld Programs Rating Script allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) rate.php and (2) postcomments.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2r2-9848-78f4/GHSA-f2r2-9848-78f4.json b/advisories/unreviewed/2022/05/GHSA-f2r2-9848-78f4/GHSA-f2r2-9848-78f4.json index ccd498f6c95..fc05ba0682d 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2r2-9848-78f4/GHSA-f2r2-9848-78f4.json +++ b/advisories/unreviewed/2022/05/GHSA-f2r2-9848-78f4/GHSA-f2r2-9848-78f4.json @@ -7,12 +7,8 @@ "CVE-2009-4929" ], "details": "admin/manage_users.php in TotalCalendar 2.4 does not require administrative authentication, which allows remote attackers to change arbitrary passwords via the newPW1 and newPW2 parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f487-5779-g69p/GHSA-f487-5779-g69p.json b/advisories/unreviewed/2022/05/GHSA-f487-5779-g69p/GHSA-f487-5779-g69p.json index 7ac648ac6c2..7d571c634a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f487-5779-g69p/GHSA-f487-5779-g69p.json +++ b/advisories/unreviewed/2022/05/GHSA-f487-5779-g69p/GHSA-f487-5779-g69p.json @@ -7,12 +7,8 @@ "CVE-2009-4551" ], "details": "SQL injection vulnerability in the Survey Pro module for Miniweb 2.0 allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a results action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6hc-7357-x73w/GHSA-f6hc-7357-x73w.json b/advisories/unreviewed/2022/05/GHSA-f6hc-7357-x73w/GHSA-f6hc-7357-x73w.json index a843a320a8e..0eddd14f5c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6hc-7357-x73w/GHSA-f6hc-7357-x73w.json +++ b/advisories/unreviewed/2022/05/GHSA-f6hc-7357-x73w/GHSA-f6hc-7357-x73w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6m9-2mv3-qq4f/GHSA-f6m9-2mv3-qq4f.json b/advisories/unreviewed/2022/05/GHSA-f6m9-2mv3-qq4f/GHSA-f6m9-2mv3-qq4f.json index 75fcdc6b545..f89a0454c1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6m9-2mv3-qq4f/GHSA-f6m9-2mv3-qq4f.json +++ b/advisories/unreviewed/2022/05/GHSA-f6m9-2mv3-qq4f/GHSA-f6m9-2mv3-qq4f.json @@ -7,12 +7,8 @@ "CVE-2009-4756" ], "details": "Stack-based buffer overflow in TraktorBeatport.exe 1.0.0.283 in Beatport Player 1.0.0.0 allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6v9-hq4p-hfj2/GHSA-f6v9-hq4p-hfj2.json b/advisories/unreviewed/2022/05/GHSA-f6v9-hq4p-hfj2/GHSA-f6v9-hq4p-hfj2.json index 3328dd52782..90137cbf5e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6v9-hq4p-hfj2/GHSA-f6v9-hq4p-hfj2.json +++ b/advisories/unreviewed/2022/05/GHSA-f6v9-hq4p-hfj2/GHSA-f6v9-hq4p-hfj2.json @@ -7,12 +7,8 @@ "CVE-2009-4672" ], "details": "Directory traversal vulnerability in main.php in the WP-Lytebox plugin 1.3 for WordPress allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the pg parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f75q-w3g7-wggp/GHSA-f75q-w3g7-wggp.json b/advisories/unreviewed/2022/05/GHSA-f75q-w3g7-wggp/GHSA-f75q-w3g7-wggp.json index e87225fba3c..10b51846398 100644 --- a/advisories/unreviewed/2022/05/GHSA-f75q-w3g7-wggp/GHSA-f75q-w3g7-wggp.json +++ b/advisories/unreviewed/2022/05/GHSA-f75q-w3g7-wggp/GHSA-f75q-w3g7-wggp.json @@ -7,12 +7,8 @@ "CVE-2009-4461" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in FlatPress 0.909 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) contact.php, (2) login.php, and (3) search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7jv-wxvx-757q/GHSA-f7jv-wxvx-757q.json b/advisories/unreviewed/2022/05/GHSA-f7jv-wxvx-757q/GHSA-f7jv-wxvx-757q.json index 5ad656c0d8c..3cad7500553 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7jv-wxvx-757q/GHSA-f7jv-wxvx-757q.json +++ b/advisories/unreviewed/2022/05/GHSA-f7jv-wxvx-757q/GHSA-f7jv-wxvx-757q.json @@ -7,12 +7,8 @@ "CVE-2009-4860" ], "details": "SQL injection vulnerability in demo.php in Typing Pal 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idTableProduit parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7qg-rpxj-p56c/GHSA-f7qg-rpxj-p56c.json b/advisories/unreviewed/2022/05/GHSA-f7qg-rpxj-p56c/GHSA-f7qg-rpxj-p56c.json index c37c1bbe775..72990f5b225 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7qg-rpxj-p56c/GHSA-f7qg-rpxj-p56c.json +++ b/advisories/unreviewed/2022/05/GHSA-f7qg-rpxj-p56c/GHSA-f7qg-rpxj-p56c.json @@ -7,12 +7,8 @@ "CVE-2009-4373" ], "details": "Unrestricted file upload vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in ossiminstall/uploads/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7v2-vh2q-6q47/GHSA-f7v2-vh2q-6q47.json b/advisories/unreviewed/2022/05/GHSA-f7v2-vh2q-6q47/GHSA-f7v2-vh2q-6q47.json index 767cd5a99e8..1dc8c550400 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7v2-vh2q-6q47/GHSA-f7v2-vh2q-6q47.json +++ b/advisories/unreviewed/2022/05/GHSA-f7v2-vh2q-6q47/GHSA-f7v2-vh2q-6q47.json @@ -7,12 +7,8 @@ "CVE-2009-4554" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Snitz Forums 2000 3.4.07 allow remote attackers to inject arbitrary web script or HTML via (1) the url parameter to pop_send_to_friend.asp, related to a crafted onload attribute of an IMG element; or (2) an onload attribute in a sound tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f88m-mw5f-cggv/GHSA-f88m-mw5f-cggv.json b/advisories/unreviewed/2022/05/GHSA-f88m-mw5f-cggv/GHSA-f88m-mw5f-cggv.json index d179af1f604..6ba0e4efeb7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f88m-mw5f-cggv/GHSA-f88m-mw5f-cggv.json +++ b/advisories/unreviewed/2022/05/GHSA-f88m-mw5f-cggv/GHSA-f88m-mw5f-cggv.json @@ -7,12 +7,8 @@ "CVE-2009-4956" ], "details": "Cross-site scripting (XSS) vulnerability in the Visitor Tracking (ws_stats) extension before 0.1.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8hp-66pw-jmc7/GHSA-f8hp-66pw-jmc7.json b/advisories/unreviewed/2022/05/GHSA-f8hp-66pw-jmc7/GHSA-f8hp-66pw-jmc7.json index f38f262177d..975e22b1e3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8hp-66pw-jmc7/GHSA-f8hp-66pw-jmc7.json +++ b/advisories/unreviewed/2022/05/GHSA-f8hp-66pw-jmc7/GHSA-f8hp-66pw-jmc7.json @@ -7,12 +7,8 @@ "CVE-2009-4536" ], "details": "drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame, which allows remote attackers to bypass packet filters via a large packet with a crafted payload. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1385.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -172,9 +168,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f8vf-rww8-933v/GHSA-f8vf-rww8-933v.json b/advisories/unreviewed/2022/05/GHSA-f8vf-rww8-933v/GHSA-f8vf-rww8-933v.json index 640aae64cdc..3d23a1d8cc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8vf-rww8-933v/GHSA-f8vf-rww8-933v.json +++ b/advisories/unreviewed/2022/05/GHSA-f8vf-rww8-933v/GHSA-f8vf-rww8-933v.json @@ -7,12 +7,8 @@ "CVE-2009-4791" ], "details": "Multiple SQL injection vulnerabilities in Family Connections (aka FCMS) before 1.8.2 allow remote attackers to execute arbitrary SQL commands via the (1) letter parameter to addressbook.php, (2) id parameter to recipes.php, (3) year parameter to register.php, (4) poll_id parameter to home.php, and (5) email parameter to lostpw.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9q8-5m24-h9f7/GHSA-f9q8-5m24-h9f7.json b/advisories/unreviewed/2022/05/GHSA-f9q8-5m24-h9f7/GHSA-f9q8-5m24-h9f7.json index 48f68960844..a3d1dadfb8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9q8-5m24-h9f7/GHSA-f9q8-5m24-h9f7.json +++ b/advisories/unreviewed/2022/05/GHSA-f9q8-5m24-h9f7/GHSA-f9q8-5m24-h9f7.json @@ -7,12 +7,8 @@ "CVE-2009-4583" ], "details": "SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a grouplist action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc6m-wf26-v3gp/GHSA-fc6m-wf26-v3gp.json b/advisories/unreviewed/2022/05/GHSA-fc6m-wf26-v3gp/GHSA-fc6m-wf26-v3gp.json index 2a36bd0139f..0a3d9389859 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc6m-wf26-v3gp/GHSA-fc6m-wf26-v3gp.json +++ b/advisories/unreviewed/2022/05/GHSA-fc6m-wf26-v3gp/GHSA-fc6m-wf26-v3gp.json @@ -7,12 +7,8 @@ "CVE-2009-4695" ], "details": "SQL injection vulnerability in index.php in RadScripts RadLance Gold 7.5 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a view_forum action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc8m-4487-7539/GHSA-fc8m-4487-7539.json b/advisories/unreviewed/2022/05/GHSA-fc8m-4487-7539/GHSA-fc8m-4487-7539.json index c9035a2f28b..4a5518b2705 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc8m-4487-7539/GHSA-fc8m-4487-7539.json +++ b/advisories/unreviewed/2022/05/GHSA-fc8m-4487-7539/GHSA-fc8m-4487-7539.json @@ -7,12 +7,8 @@ "CVE-2009-5005" ], "details": "The Cluster::deliveredEvent function in cluster/Cluster.cpp in Apache Qpid, as used in Red Hat Enterprise MRG before 1.3 and other products, allows remote attackers to cause a denial of service (daemon crash and cluster outage) via invalid AMQP data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ff34-qhwm-9cr8/GHSA-ff34-qhwm-9cr8.json b/advisories/unreviewed/2022/05/GHSA-ff34-qhwm-9cr8/GHSA-ff34-qhwm-9cr8.json index 69774ab396b..585774ca0c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff34-qhwm-9cr8/GHSA-ff34-qhwm-9cr8.json +++ b/advisories/unreviewed/2022/05/GHSA-ff34-qhwm-9cr8/GHSA-ff34-qhwm-9cr8.json @@ -7,12 +7,8 @@ "CVE-2009-4954" ], "details": "SQL injection vulnerability in the Versatile Calendar Extension [VCE] (sk_calendar) extension before 0.3.4 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffhq-jq7m-75qw/GHSA-ffhq-jq7m-75qw.json b/advisories/unreviewed/2022/05/GHSA-ffhq-jq7m-75qw/GHSA-ffhq-jq7m-75qw.json index 3f7bdf557b7..aa652900722 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffhq-jq7m-75qw/GHSA-ffhq-jq7m-75qw.json +++ b/advisories/unreviewed/2022/05/GHSA-ffhq-jq7m-75qw/GHSA-ffhq-jq7m-75qw.json @@ -7,12 +7,8 @@ "CVE-2009-4567" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in editprofile.php in Viscacha 0.8 Gold allow remote authenticated users to inject arbitrary web script or HTML via the (1) skype, (2) yahoo, (3) aol, (4) msn, or (5) jabber parameter in a profile2 action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffw2-xh3r-9335/GHSA-ffw2-xh3r-9335.json b/advisories/unreviewed/2022/05/GHSA-ffw2-xh3r-9335/GHSA-ffw2-xh3r-9335.json index 9b2b038f393..d866d912c30 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffw2-xh3r-9335/GHSA-ffw2-xh3r-9335.json +++ b/advisories/unreviewed/2022/05/GHSA-ffw2-xh3r-9335/GHSA-ffw2-xh3r-9335.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg73-qjmx-987v/GHSA-fg73-qjmx-987v.json b/advisories/unreviewed/2022/05/GHSA-fg73-qjmx-987v/GHSA-fg73-qjmx-987v.json index 36d83c3990d..a255c622d14 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg73-qjmx-987v/GHSA-fg73-qjmx-987v.json +++ b/advisories/unreviewed/2022/05/GHSA-fg73-qjmx-987v/GHSA-fg73-qjmx-987v.json @@ -7,12 +7,8 @@ "CVE-2009-4980" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Photokorn Gallery 1.81 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) where[] parameter to search.php and (2) qc parameter to admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgwh-54wv-865r/GHSA-fgwh-54wv-865r.json b/advisories/unreviewed/2022/05/GHSA-fgwh-54wv-865r/GHSA-fgwh-54wv-865r.json index f9bfa3629dd..3df0a2946a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgwh-54wv-865r/GHSA-fgwh-54wv-865r.json +++ b/advisories/unreviewed/2022/05/GHSA-fgwh-54wv-865r/GHSA-fgwh-54wv-865r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fhqp-78f6-gc8r/GHSA-fhqp-78f6-gc8r.json b/advisories/unreviewed/2022/05/GHSA-fhqp-78f6-gc8r/GHSA-fhqp-78f6-gc8r.json index 2c707462feb..709761883c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhqp-78f6-gc8r/GHSA-fhqp-78f6-gc8r.json +++ b/advisories/unreviewed/2022/05/GHSA-fhqp-78f6-gc8r/GHSA-fhqp-78f6-gc8r.json @@ -7,12 +7,8 @@ "CVE-2009-4687" ], "details": "SQL injection vulnerability in silentum_guestbook.php in Silentum Guestbook 2.0.2 allows remote attackers to execute arbitrary SQL commands via the messageid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjfh-hvg6-2r3g/GHSA-fjfh-hvg6-2r3g.json b/advisories/unreviewed/2022/05/GHSA-fjfh-hvg6-2r3g/GHSA-fjfh-hvg6-2r3g.json index 207be67e4e5..6adbf26f64a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjfh-hvg6-2r3g/GHSA-fjfh-hvg6-2r3g.json +++ b/advisories/unreviewed/2022/05/GHSA-fjfh-hvg6-2r3g/GHSA-fjfh-hvg6-2r3g.json @@ -7,12 +7,8 @@ "CVE-2009-4663" ], "details": "Heap-based buffer overflow in the Quiksoft EasyMail Objects 6 ActiveX control allows remote attackers to execute arbitrary code via a long argument to the AddAttachment method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fmf3-477w-cj3v/GHSA-fmf3-477w-cj3v.json b/advisories/unreviewed/2022/05/GHSA-fmf3-477w-cj3v/GHSA-fmf3-477w-cj3v.json index ff7c2a551ae..9d6bb825a86 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmf3-477w-cj3v/GHSA-fmf3-477w-cj3v.json +++ b/advisories/unreviewed/2022/05/GHSA-fmf3-477w-cj3v/GHSA-fmf3-477w-cj3v.json @@ -7,12 +7,8 @@ "CVE-2009-4814" ], "details": "Cross-site scripting (XSS) vulnerability in Wolfram Research webMathematica allows remote attackers to inject arbitrary web script or HTML via the URI to the MSP script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fpp8-fhh9-hwrp/GHSA-fpp8-fhh9-hwrp.json b/advisories/unreviewed/2022/05/GHSA-fpp8-fhh9-hwrp/GHSA-fpp8-fhh9-hwrp.json index 3ea0498670c..3572a99d49a 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpp8-fhh9-hwrp/GHSA-fpp8-fhh9-hwrp.json +++ b/advisories/unreviewed/2022/05/GHSA-fpp8-fhh9-hwrp/GHSA-fpp8-fhh9-hwrp.json @@ -7,12 +7,8 @@ "CVE-2009-4898" ], "details": "Cross-site request forgery (CSRF) vulnerability in TWiki before 4.3.2 allows remote attackers to hijack the authentication of arbitrary users for requests that update pages, as demonstrated by a URL for a save script in the ACTION attribute of a FORM element, in conjunction with a call to the submit method in the onload attribute of a BODY element. NOTE: this issue exists because of an insufficient fix for CVE-2009-1339.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv4r-5qcq-xxm7/GHSA-fv4r-5qcq-xxm7.json b/advisories/unreviewed/2022/05/GHSA-fv4r-5qcq-xxm7/GHSA-fv4r-5qcq-xxm7.json index da3fdadcdfc..59cdd66c484 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv4r-5qcq-xxm7/GHSA-fv4r-5qcq-xxm7.json +++ b/advisories/unreviewed/2022/05/GHSA-fv4r-5qcq-xxm7/GHSA-fv4r-5qcq-xxm7.json @@ -7,12 +7,8 @@ "CVE-2009-4339" ], "details": "SQL injection vulnerability in the Subscription (mf_subscription) extension 0.2.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv7w-pfvm-jcx4/GHSA-fv7w-pfvm-jcx4.json b/advisories/unreviewed/2022/05/GHSA-fv7w-pfvm-jcx4/GHSA-fv7w-pfvm-jcx4.json index 263627615f8..ed8e99aaa33 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv7w-pfvm-jcx4/GHSA-fv7w-pfvm-jcx4.json +++ b/advisories/unreviewed/2022/05/GHSA-fv7w-pfvm-jcx4/GHSA-fv7w-pfvm-jcx4.json @@ -7,12 +7,8 @@ "CVE-2009-4468" ], "details": "Cross-site scripting (XSS) vulnerability in misc.php in DeluxeBB 1.3 allows remote attackers to inject arbitrary web script or HTML via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fv9m-992g-7qrw/GHSA-fv9m-992g-7qrw.json b/advisories/unreviewed/2022/05/GHSA-fv9m-992g-7qrw/GHSA-fv9m-992g-7qrw.json index bfccb5b985b..12c8c0715c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv9m-992g-7qrw/GHSA-fv9m-992g-7qrw.json +++ b/advisories/unreviewed/2022/05/GHSA-fv9m-992g-7qrw/GHSA-fv9m-992g-7qrw.json @@ -7,12 +7,8 @@ "CVE-2009-4642" ], "details": "gnome-screensaver 2.26.1 relies on the gnome-session D-Bus interface to determine session idle time, even when an Xfce desktop such as Xubuntu or Mythbuntu is used, which allows physically proximate attackers to access an unattended workstation on which screen locking had been intended.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fx8p-65qg-hm72/GHSA-fx8p-65qg-hm72.json b/advisories/unreviewed/2022/05/GHSA-fx8p-65qg-hm72/GHSA-fx8p-65qg-hm72.json index 81c682c948a..7a6592f9d19 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx8p-65qg-hm72/GHSA-fx8p-65qg-hm72.json +++ b/advisories/unreviewed/2022/05/GHSA-fx8p-65qg-hm72/GHSA-fx8p-65qg-hm72.json @@ -7,12 +7,8 @@ "CVE-2009-4951" ], "details": "Unspecified vulnerability in the ClickStream Analyzer [output] (alternet_csa_out) extension 0.3.0 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fxrr-qjp6-6r6j/GHSA-fxrr-qjp6-6r6j.json b/advisories/unreviewed/2022/05/GHSA-fxrr-qjp6-6r6j/GHSA-fxrr-qjp6-6r6j.json index c7418f47a50..cd6c9a9e3da 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxrr-qjp6-6r6j/GHSA-fxrr-qjp6-6r6j.json +++ b/advisories/unreviewed/2022/05/GHSA-fxrr-qjp6-6r6j/GHSA-fxrr-qjp6-6r6j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g384-f668-5fqv/GHSA-g384-f668-5fqv.json b/advisories/unreviewed/2022/05/GHSA-g384-f668-5fqv/GHSA-g384-f668-5fqv.json index 25501ef05ff..a52bd3b3cb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-g384-f668-5fqv/GHSA-g384-f668-5fqv.json +++ b/advisories/unreviewed/2022/05/GHSA-g384-f668-5fqv/GHSA-g384-f668-5fqv.json @@ -7,12 +7,8 @@ "CVE-2009-4788" ], "details": "Multiple open redirect vulnerabilities in Pligg 1.0.2 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the (1) return parameter to pligg/login.php and the (2) HTTP Referer header to user_settings.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3h4-8xjh-jmhw/GHSA-g3h4-8xjh-jmhw.json b/advisories/unreviewed/2022/05/GHSA-g3h4-8xjh-jmhw/GHSA-g3h4-8xjh-jmhw.json index 1adfbc704f4..4655b4f55c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3h4-8xjh-jmhw/GHSA-g3h4-8xjh-jmhw.json +++ b/advisories/unreviewed/2022/05/GHSA-g3h4-8xjh-jmhw/GHSA-g3h4-8xjh-jmhw.json @@ -7,12 +7,8 @@ "CVE-2009-4627" ], "details": "Directory traversal vulnerability in sources/_template_parser.php in Moa Gallery 1.2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the p_filename parameter, a different issue than CVE-2009-4614.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4p5-56vp-vcg5/GHSA-g4p5-56vp-vcg5.json b/advisories/unreviewed/2022/05/GHSA-g4p5-56vp-vcg5/GHSA-g4p5-56vp-vcg5.json index da60e5c582d..39e4779cce4 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4p5-56vp-vcg5/GHSA-g4p5-56vp-vcg5.json +++ b/advisories/unreviewed/2022/05/GHSA-g4p5-56vp-vcg5/GHSA-g4p5-56vp-vcg5.json @@ -7,12 +7,8 @@ "CVE-2009-4565" ], "details": "sendmail before 8.14.4 does not properly handle a '\\0' character in a Common Name (CN) field of an X.509 certificate, which (1) allows man-in-the-middle attackers to spoof arbitrary SSL-based SMTP servers via a crafted server certificate issued by a legitimate Certification Authority, and (2) allows remote attackers to bypass intended access restrictions via a crafted client certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4wq-c9xv-q463/GHSA-g4wq-c9xv-q463.json b/advisories/unreviewed/2022/05/GHSA-g4wq-c9xv-q463/GHSA-g4wq-c9xv-q463.json index 06df927fd1d..f6e79cbcdcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4wq-c9xv-q463/GHSA-g4wq-c9xv-q463.json +++ b/advisories/unreviewed/2022/05/GHSA-g4wq-c9xv-q463/GHSA-g4wq-c9xv-q463.json @@ -7,12 +7,8 @@ "CVE-2009-4621" ], "details": "SQL injection vulnerability in the JiangHu Inn plugin 1.1 and earlier for Discuz! allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action to forummission.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g533-rphg-9fjx/GHSA-g533-rphg-9fjx.json b/advisories/unreviewed/2022/05/GHSA-g533-rphg-9fjx/GHSA-g533-rphg-9fjx.json index 056abd869b5..ddb8d5da0bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-g533-rphg-9fjx/GHSA-g533-rphg-9fjx.json +++ b/advisories/unreviewed/2022/05/GHSA-g533-rphg-9fjx/GHSA-g533-rphg-9fjx.json @@ -7,12 +7,8 @@ "CVE-2009-4655" ], "details": "The dhost web service in Novell eDirectory 8.8.5 uses a predictable session cookie, which makes it easier for remote attackers to hijack sessions via a modified cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g6mw-h623-jr8w/GHSA-g6mw-h623-jr8w.json b/advisories/unreviewed/2022/05/GHSA-g6mw-h623-jr8w/GHSA-g6mw-h623-jr8w.json index 91c9b50bb6f..6e6ce7921c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6mw-h623-jr8w/GHSA-g6mw-h623-jr8w.json +++ b/advisories/unreviewed/2022/05/GHSA-g6mw-h623-jr8w/GHSA-g6mw-h623-jr8w.json @@ -7,12 +7,8 @@ "CVE-2009-4857" ], "details": "Cross-site scripting (XSS) vulnerability in login.php in PHP Photo Vote 1.3F allows remote attackers to inject arbitrary web script or HTML via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g76g-m9gr-2w23/GHSA-g76g-m9gr-2w23.json b/advisories/unreviewed/2022/05/GHSA-g76g-m9gr-2w23/GHSA-g76g-m9gr-2w23.json index 697eea04d00..cd6dea0bbff 100644 --- a/advisories/unreviewed/2022/05/GHSA-g76g-m9gr-2w23/GHSA-g76g-m9gr-2w23.json +++ b/advisories/unreviewed/2022/05/GHSA-g76g-m9gr-2w23/GHSA-g76g-m9gr-2w23.json @@ -7,12 +7,8 @@ "CVE-2009-4516" ], "details": "Cross-site scripting (XSS) vulnerability in the FAQ Ask module 5.x and 6.x before 6.x-2.0, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7w3-3849-pmmm/GHSA-g7w3-3849-pmmm.json b/advisories/unreviewed/2022/05/GHSA-g7w3-3849-pmmm/GHSA-g7w3-3849-pmmm.json index 60d37ffd716..07b4df0009d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7w3-3849-pmmm/GHSA-g7w3-3849-pmmm.json +++ b/advisories/unreviewed/2022/05/GHSA-g7w3-3849-pmmm/GHSA-g7w3-3849-pmmm.json @@ -7,12 +7,8 @@ "CVE-2009-4967" ], "details": "SQL injection vulnerability in the Car (car) extension before 0.1.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g82p-c9v8-57hj/GHSA-g82p-c9v8-57hj.json b/advisories/unreviewed/2022/05/GHSA-g82p-c9v8-57hj/GHSA-g82p-c9v8-57hj.json index bfa199dc808..af1ea682919 100644 --- a/advisories/unreviewed/2022/05/GHSA-g82p-c9v8-57hj/GHSA-g82p-c9v8-57hj.json +++ b/advisories/unreviewed/2022/05/GHSA-g82p-c9v8-57hj/GHSA-g82p-c9v8-57hj.json @@ -7,12 +7,8 @@ "CVE-2009-4586" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.html in Wowd client before 1.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) sortby, (2) tags, or (3) ctx parameter in a search action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g86m-mf35-6xf2/GHSA-g86m-mf35-6xf2.json b/advisories/unreviewed/2022/05/GHSA-g86m-mf35-6xf2/GHSA-g86m-mf35-6xf2.json index 476217c35ab..80b553000ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-g86m-mf35-6xf2/GHSA-g86m-mf35-6xf2.json +++ b/advisories/unreviewed/2022/05/GHSA-g86m-mf35-6xf2/GHSA-g86m-mf35-6xf2.json @@ -7,12 +7,8 @@ "CVE-2009-4905" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in Acc Statistics 1.1 allow remote attackers to hijack the authentication of administrators for requests that change (1) passwords, (2) usernames, and (3) e-mail addresses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g8hp-4mvq-3w24/GHSA-g8hp-4mvq-3w24.json b/advisories/unreviewed/2022/05/GHSA-g8hp-4mvq-3w24/GHSA-g8hp-4mvq-3w24.json index 1bcfc3761dc..5f0a462a653 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8hp-4mvq-3w24/GHSA-g8hp-4mvq-3w24.json +++ b/advisories/unreviewed/2022/05/GHSA-g8hp-4mvq-3w24/GHSA-g8hp-4mvq-3w24.json @@ -7,12 +7,8 @@ "CVE-2009-4953" ], "details": "Cross-site scripting (XSS) vulnerability in the Userdata Create/Edit (sg_userdata) extension before 0.91.0 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g96g-4732-wvqh/GHSA-g96g-4732-wvqh.json b/advisories/unreviewed/2022/05/GHSA-g96g-4732-wvqh/GHSA-g96g-4732-wvqh.json index d7f3967daee..cf9c0cacb03 100644 --- a/advisories/unreviewed/2022/05/GHSA-g96g-4732-wvqh/GHSA-g96g-4732-wvqh.json +++ b/advisories/unreviewed/2022/05/GHSA-g96g-4732-wvqh/GHSA-g96g-4732-wvqh.json @@ -7,12 +7,8 @@ "CVE-2009-4918" ], "details": "Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allow remote attackers to cause a denial of service (IKE process hang) via malformed NAT-T packets, aka Bug ID CSCsr74439.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9m4-mjxc-rw4q/GHSA-g9m4-mjxc-rw4q.json b/advisories/unreviewed/2022/05/GHSA-g9m4-mjxc-rw4q/GHSA-g9m4-mjxc-rw4q.json index fde0022d39b..365f01b6292 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9m4-mjxc-rw4q/GHSA-g9m4-mjxc-rw4q.json +++ b/advisories/unreviewed/2022/05/GHSA-g9m4-mjxc-rw4q/GHSA-g9m4-mjxc-rw4q.json @@ -7,12 +7,8 @@ "CVE-2009-4823" ], "details": "Cross-site scripting (XSS) vulnerability in frontend/x3/files/fileop.html in cPanel 11.0 through 11.24.7 allows remote attackers to inject arbitrary web script or HTML via the fileop parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gc9p-5mxj-f79f/GHSA-gc9p-5mxj-f79f.json b/advisories/unreviewed/2022/05/GHSA-gc9p-5mxj-f79f/GHSA-gc9p-5mxj-f79f.json index c7fe1f185c7..2fda77c6419 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc9p-5mxj-f79f/GHSA-gc9p-5mxj-f79f.json +++ b/advisories/unreviewed/2022/05/GHSA-gc9p-5mxj-f79f/GHSA-gc9p-5mxj-f79f.json @@ -7,12 +7,8 @@ "CVE-2009-4575" ], "details": "Cross-site scripting (XSS) vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 RC2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the personel_sira parameter in a sirala action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gff5-c62p-4pp4/GHSA-gff5-c62p-4pp4.json b/advisories/unreviewed/2022/05/GHSA-gff5-c62p-4pp4/GHSA-gff5-c62p-4pp4.json index 2d732a8ba52..a35c0314de4 100644 --- a/advisories/unreviewed/2022/05/GHSA-gff5-c62p-4pp4/GHSA-gff5-c62p-4pp4.json +++ b/advisories/unreviewed/2022/05/GHSA-gff5-c62p-4pp4/GHSA-gff5-c62p-4pp4.json @@ -7,12 +7,8 @@ "CVE-2009-4939" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in AdPeeps 8.5d1 allow remote attackers to inject arbitrary web script or HTML via the (1) uid parameter, (2) uid parameter in a login_lookup action, (3) uid parameter in an adminlogin action, (4) campaignid parameter in a createcampaign action, (5) type parameter in a view_account_stats action, (6) period parameter in a view_account_stats action, (7) uid parameter in a view_adrates action, (8) accname parameter in an account_confirmation action, (9) loginpass parameter in an account_confirmation action, (10) e9 parameter in a setup_account action, (11) from parameter in an email_advertisers action, (12) message parameter in an email_advertisers action, (13) idno parameter in an edit_ad_package action, (14) Advertiser Name field, (15) First Name field, (16) Last Name field, (17) Address field, (18) Phone Number field, (19) Password Hint field, or (20) URL field; and (21) allow remote authenticated users to inject arbitrary web script or HTML via an unspecified form associated with a view_adrates action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfvp-mq24-36ch/GHSA-gfvp-mq24-36ch.json b/advisories/unreviewed/2022/05/GHSA-gfvp-mq24-36ch/GHSA-gfvp-mq24-36ch.json index e3ba23a822d..17044ef7ee0 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfvp-mq24-36ch/GHSA-gfvp-mq24-36ch.json +++ b/advisories/unreviewed/2022/05/GHSA-gfvp-mq24-36ch/GHSA-gfvp-mq24-36ch.json @@ -7,12 +7,8 @@ "CVE-2009-4533" ], "details": "The Webform module 5.x before 5.x-2.8 and 6.x before 6.x-2.8, a module for Drupal, does not prevent caching of a page that contains token placeholders for a default value, which allows remote attackers to read session variables via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gg6c-q8gv-ppfh/GHSA-gg6c-q8gv-ppfh.json b/advisories/unreviewed/2022/05/GHSA-gg6c-q8gv-ppfh/GHSA-gg6c-q8gv-ppfh.json index 3f87dcc5773..9b7241f1612 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg6c-q8gv-ppfh/GHSA-gg6c-q8gv-ppfh.json +++ b/advisories/unreviewed/2022/05/GHSA-gg6c-q8gv-ppfh/GHSA-gg6c-q8gv-ppfh.json @@ -7,12 +7,8 @@ "CVE-2009-4475" ], "details": "SQL injection vulnerability in the Joomlub (com_joomlub) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an auction edit action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ggcw-fq74-j5hg/GHSA-ggcw-fq74-j5hg.json b/advisories/unreviewed/2022/05/GHSA-ggcw-fq74-j5hg/GHSA-ggcw-fq74-j5hg.json index 2c05bfa74e1..0788d9a0da7 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggcw-fq74-j5hg/GHSA-ggcw-fq74-j5hg.json +++ b/advisories/unreviewed/2022/05/GHSA-ggcw-fq74-j5hg/GHSA-ggcw-fq74-j5hg.json @@ -7,12 +7,8 @@ "CVE-2009-5009" ], "details": "Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted DTLS Cipher option during a reconnect operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gghf-jvq8-2vgc/GHSA-gghf-jvq8-2vgc.json b/advisories/unreviewed/2022/05/GHSA-gghf-jvq8-2vgc/GHSA-gghf-jvq8-2vgc.json index 0470f5c3c72..c334ab18aed 100644 --- a/advisories/unreviewed/2022/05/GHSA-gghf-jvq8-2vgc/GHSA-gghf-jvq8-2vgc.json +++ b/advisories/unreviewed/2022/05/GHSA-gghf-jvq8-2vgc/GHSA-gghf-jvq8-2vgc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ggvq-2qg5-hr73/GHSA-ggvq-2qg5-hr73.json b/advisories/unreviewed/2022/05/GHSA-ggvq-2qg5-hr73/GHSA-ggvq-2qg5-hr73.json index c84912e21d1..d70988eb8f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggvq-2qg5-hr73/GHSA-ggvq-2qg5-hr73.json +++ b/advisories/unreviewed/2022/05/GHSA-ggvq-2qg5-hr73/GHSA-ggvq-2qg5-hr73.json @@ -7,12 +7,8 @@ "CVE-2009-4570" ], "details": "Cross-site scripting (XSS) vulnerability in PhpShop 0.8.1 allows remote attackers to inject arbitrary web script or HTML via the order_id parameter in an order/order_print action to the default URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghfh-527g-xpvj/GHSA-ghfh-527g-xpvj.json b/advisories/unreviewed/2022/05/GHSA-ghfh-527g-xpvj/GHSA-ghfh-527g-xpvj.json index 1d153c96bf8..fee72ec8f8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghfh-527g-xpvj/GHSA-ghfh-527g-xpvj.json +++ b/advisories/unreviewed/2022/05/GHSA-ghfh-527g-xpvj/GHSA-ghfh-527g-xpvj.json @@ -7,12 +7,8 @@ "CVE-2009-5003" ], "details": "SQL injection vulnerability in click.php in e-soft24 Banner Exchange Script 1.0 allows remote attackers to execute arbitrary SQL commands via the targetid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghvm-v65v-6pc7/GHSA-ghvm-v65v-6pc7.json b/advisories/unreviewed/2022/05/GHSA-ghvm-v65v-6pc7/GHSA-ghvm-v65v-6pc7.json index 7386a46b975..78de1c18ff7 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghvm-v65v-6pc7/GHSA-ghvm-v65v-6pc7.json +++ b/advisories/unreviewed/2022/05/GHSA-ghvm-v65v-6pc7/GHSA-ghvm-v65v-6pc7.json @@ -7,12 +7,8 @@ "CVE-2009-4891" ], "details": "SQL injection vulnerability in index.php in CS-Cart 2.0.0 Beta 3 allows remote attackers to execute arbitrary SQL commands via the product_id parameter in a products.view action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gjv9-fm7g-f9jm/GHSA-gjv9-fm7g-f9jm.json b/advisories/unreviewed/2022/05/GHSA-gjv9-fm7g-f9jm/GHSA-gjv9-fm7g-f9jm.json index ad9e6b82612..a15c851bb64 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjv9-fm7g-f9jm/GHSA-gjv9-fm7g-f9jm.json +++ b/advisories/unreviewed/2022/05/GHSA-gjv9-fm7g-f9jm/GHSA-gjv9-fm7g-f9jm.json @@ -7,12 +7,8 @@ "CVE-2009-4310" ], "details": "Stack-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted compressed video data in an IV41 stream in a media file, leading to many loop iterations, as demonstrated by data in an AVI file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gm38-v67v-v4jx/GHSA-gm38-v67v-v4jx.json b/advisories/unreviewed/2022/05/GHSA-gm38-v67v-v4jx/GHSA-gm38-v67v-v4jx.json index f07d243b3c5..602cab31d3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-gm38-v67v-v4jx/GHSA-gm38-v67v-v4jx.json +++ b/advisories/unreviewed/2022/05/GHSA-gm38-v67v-v4jx/GHSA-gm38-v67v-v4jx.json @@ -7,12 +7,8 @@ "CVE-2009-4943" ], "details": "index.php in AdPeeps 8.5d1 allows remote attackers to obtain sensitive information via (1) a view_adrates action with an invalid uid parameter, which reveals the installation path in an error message; or (2) an adminlogin action with a crafted uid parameter, which reveals the version number.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmhq-f6h4-hxfh/GHSA-gmhq-f6h4-hxfh.json b/advisories/unreviewed/2022/05/GHSA-gmhq-f6h4-hxfh/GHSA-gmhq-f6h4-hxfh.json index 728ab08c6ab..d6059f6d8bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmhq-f6h4-hxfh/GHSA-gmhq-f6h4-hxfh.json +++ b/advisories/unreviewed/2022/05/GHSA-gmhq-f6h4-hxfh/GHSA-gmhq-f6h4-hxfh.json @@ -7,12 +7,8 @@ "CVE-2009-4266" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in YABSoft Advanced Image Hosting (AIH) Script 2.2, and possibly 2.3, allows remote attackers to inject arbitrary web script or HTML via the text parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmx9-p92v-48wf/GHSA-gmx9-p92v-48wf.json b/advisories/unreviewed/2022/05/GHSA-gmx9-p92v-48wf/GHSA-gmx9-p92v-48wf.json index 0caeaf04991..c8c01f36d59 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmx9-p92v-48wf/GHSA-gmx9-p92v-48wf.json +++ b/advisories/unreviewed/2022/05/GHSA-gmx9-p92v-48wf/GHSA-gmx9-p92v-48wf.json @@ -7,12 +7,8 @@ "CVE-2009-4304" ], "details": "Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmxh-fcvg-35xj/GHSA-gmxh-fcvg-35xj.json b/advisories/unreviewed/2022/05/GHSA-gmxh-fcvg-35xj/GHSA-gmxh-fcvg-35xj.json index d21fb8275a9..742b7a92276 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmxh-fcvg-35xj/GHSA-gmxh-fcvg-35xj.json +++ b/advisories/unreviewed/2022/05/GHSA-gmxh-fcvg-35xj/GHSA-gmxh-fcvg-35xj.json @@ -7,12 +7,8 @@ "CVE-2009-4455" ], "details": "The default configuration of Cisco ASA 5500 Series Adaptive Security Appliance (Cisco ASA) 7.0, 7.1, 7.2, 8.0, 8.1, and 8.2 allows portal traffic to access arbitrary backend servers, which might allow remote authenticated users to bypass intended access restrictions and access unauthorized web sites via a crafted URL obfuscated with ROT13 and a certain encoding. NOTE: this issue was originally reported as a vulnerability related to lack of restrictions to URLs listed in the Cisco WebVPN bookmark component, but the vendor states that \"The bookmark feature is not a security feature.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gq5c-v4hq-f57f/GHSA-gq5c-v4hq-f57f.json b/advisories/unreviewed/2022/05/GHSA-gq5c-v4hq-f57f/GHSA-gq5c-v4hq-f57f.json index 61e9797642f..11e9645671f 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq5c-v4hq-f57f/GHSA-gq5c-v4hq-f57f.json +++ b/advisories/unreviewed/2022/05/GHSA-gq5c-v4hq-f57f/GHSA-gq5c-v4hq-f57f.json @@ -7,12 +7,8 @@ "CVE-2009-4645" ], "details": "Directory traversal vulnerability in web_client_user_guide.html in Accellion Secure File Transfer Appliance before 8_0_105 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gq82-26j2-c4m9/GHSA-gq82-26j2-c4m9.json b/advisories/unreviewed/2022/05/GHSA-gq82-26j2-c4m9/GHSA-gq82-26j2-c4m9.json index 0d7a003073c..ea895943893 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq82-26j2-c4m9/GHSA-gq82-26j2-c4m9.json +++ b/advisories/unreviewed/2022/05/GHSA-gq82-26j2-c4m9/GHSA-gq82-26j2-c4m9.json @@ -7,12 +7,8 @@ "CVE-2009-4726" ], "details": "Directory traversal vulnerability in download.php in Quickdev 4 PHP allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grqq-f3gf-66j6/GHSA-grqq-f3gf-66j6.json b/advisories/unreviewed/2022/05/GHSA-grqq-f3gf-66j6/GHSA-grqq-f3gf-66j6.json index 17bc1e5f3ba..08b14f9da11 100644 --- a/advisories/unreviewed/2022/05/GHSA-grqq-f3gf-66j6/GHSA-grqq-f3gf-66j6.json +++ b/advisories/unreviewed/2022/05/GHSA-grqq-f3gf-66j6/GHSA-grqq-f3gf-66j6.json @@ -7,12 +7,8 @@ "CVE-2009-4515" ], "details": "The Storm module 6.x before 6.x-1.25 for Drupal does not enforce privilege requirements for storminvoiceitem nodes, which allows remote attackers to read node titles via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-grw2-42pw-w79c/GHSA-grw2-42pw-w79c.json b/advisories/unreviewed/2022/05/GHSA-grw2-42pw-w79c/GHSA-grw2-42pw-w79c.json index e5db4157eda..fca12b56d19 100644 --- a/advisories/unreviewed/2022/05/GHSA-grw2-42pw-w79c/GHSA-grw2-42pw-w79c.json +++ b/advisories/unreviewed/2022/05/GHSA-grw2-42pw-w79c/GHSA-grw2-42pw-w79c.json @@ -7,12 +7,8 @@ "CVE-2009-4450" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in map.php in LiveZilla 3.1.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lat, (2) lng, and (3) zom parameters, which are not properly handled when processed with templates/map.tpl.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gv6h-2cjc-qfqw/GHSA-gv6h-2cjc-qfqw.json b/advisories/unreviewed/2022/05/GHSA-gv6h-2cjc-qfqw/GHSA-gv6h-2cjc-qfqw.json index 093abf35028..400818ff040 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv6h-2cjc-qfqw/GHSA-gv6h-2cjc-qfqw.json +++ b/advisories/unreviewed/2022/05/GHSA-gv6h-2cjc-qfqw/GHSA-gv6h-2cjc-qfqw.json @@ -7,12 +7,8 @@ "CVE-2009-4522" ], "details": "Cross-site scripting (XSS) vulnerability in search.5.html in BloofoxCMS 0.3.5 allows remote attackers to inject arbitrary web script or HTML via the search parameter to index.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwqr-42x5-xfmp/GHSA-gwqr-42x5-xfmp.json b/advisories/unreviewed/2022/05/GHSA-gwqr-42x5-xfmp/GHSA-gwqr-42x5-xfmp.json index 60a84409565..7f80f38530a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwqr-42x5-xfmp/GHSA-gwqr-42x5-xfmp.json +++ b/advisories/unreviewed/2022/05/GHSA-gwqr-42x5-xfmp/GHSA-gwqr-42x5-xfmp.json @@ -7,12 +7,8 @@ "CVE-2009-4535" ], "details": "Mongoose 2.8.0 and earlier allows remote attackers to obtain the source code for a web page by appending a / (slash) character to the URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gx3g-9386-g7x8/GHSA-gx3g-9386-g7x8.json b/advisories/unreviewed/2022/05/GHSA-gx3g-9386-g7x8/GHSA-gx3g-9386-g7x8.json index e2d20ff00eb..f8550176b1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx3g-9386-g7x8/GHSA-gx3g-9386-g7x8.json +++ b/advisories/unreviewed/2022/05/GHSA-gx3g-9386-g7x8/GHSA-gx3g-9386-g7x8.json @@ -7,12 +7,8 @@ "CVE-2009-4773" ], "details": "Cross-site request forgery (CSRF) vulnerability in the order-management functionality in the Ubercart module 5.x before 5.x-1.9 and 6.x before 6.x-2.1 for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxcf-766q-9mvx/GHSA-gxcf-766q-9mvx.json b/advisories/unreviewed/2022/05/GHSA-gxcf-766q-9mvx/GHSA-gxcf-766q-9mvx.json index 09fae3269f3..1ebf4611dc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxcf-766q-9mvx/GHSA-gxcf-766q-9mvx.json +++ b/advisories/unreviewed/2022/05/GHSA-gxcf-766q-9mvx/GHSA-gxcf-766q-9mvx.json @@ -7,12 +7,8 @@ "CVE-2009-4822" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kasseler CMS 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) do, (2) id, and (3) uname parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxjq-4fvp-4xq7/GHSA-gxjq-4fvp-4xq7.json b/advisories/unreviewed/2022/05/GHSA-gxjq-4fvp-4xq7/GHSA-gxjq-4fvp-4xq7.json index 3204fa355e1..0495fe3605e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxjq-4fvp-4xq7/GHSA-gxjq-4fvp-4xq7.json +++ b/advisories/unreviewed/2022/05/GHSA-gxjq-4fvp-4xq7/GHSA-gxjq-4fvp-4xq7.json @@ -7,12 +7,8 @@ "CVE-2009-4771" ], "details": "The PayPal Website Payments Standard functionality in the Ubercart module 5.x before 5.x-1.9 and 6.x before 6.x-2.1 for Drupal does not properly validate orders, which allows remote attackers to trigger unspecified \"duplicate actions\" via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxrr-7663-gg4f/GHSA-gxrr-7663-gg4f.json b/advisories/unreviewed/2022/05/GHSA-gxrr-7663-gg4f/GHSA-gxrr-7663-gg4f.json index feb500562b7..9225dd461db 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxrr-7663-gg4f/GHSA-gxrr-7663-gg4f.json +++ b/advisories/unreviewed/2022/05/GHSA-gxrr-7663-gg4f/GHSA-gxrr-7663-gg4f.json @@ -7,12 +7,8 @@ "CVE-2009-4357" ], "details": "CQWeb (aka the web interface) in IBM Rational ClearQuest before 7.1.1 does not properly handle use of legacy URLs for automatic login, which might allow attackers to discover the passwords for user accounts via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h2qv-x952-jqpq/GHSA-h2qv-x952-jqpq.json b/advisories/unreviewed/2022/05/GHSA-h2qv-x952-jqpq/GHSA-h2qv-x952-jqpq.json index 1fd3dff8f7b..20b0861a9ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2qv-x952-jqpq/GHSA-h2qv-x952-jqpq.json +++ b/advisories/unreviewed/2022/05/GHSA-h2qv-x952-jqpq/GHSA-h2qv-x952-jqpq.json @@ -7,12 +7,8 @@ "CVE-2009-4748" ], "details": "SQL injection vulnerability in mycategoryorder.php in the My Category Order plugin 2.8 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the parentID parameter in an act_OrderCategories action to wp-admin/post-new.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h37p-pf97-5x2x/GHSA-h37p-pf97-5x2x.json b/advisories/unreviewed/2022/05/GHSA-h37p-pf97-5x2x/GHSA-h37p-pf97-5x2x.json index e3d0a17a596..c4e67ef296c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h37p-pf97-5x2x/GHSA-h37p-pf97-5x2x.json +++ b/advisories/unreviewed/2022/05/GHSA-h37p-pf97-5x2x/GHSA-h37p-pf97-5x2x.json @@ -7,12 +7,8 @@ "CVE-2009-4742" ], "details": "Multiple SQL injection vulnerabilities in Docebo 3.6.0.3 allow remote attackers to execute arbitrary SQL commands via (1) the word parameter in a play help action to the faq module, reachable through index.php; (2) the word parameter in a play keyw action to the link module, reachable through index.php; (3) the id_certificate parameter in an elemmetacertificate action to the meta_certificate module, reachable through index.php; or (4) the id_certificate parameter in an elemcertificate action to the certificate module, reachable through index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h38q-r4m4-m9ff/GHSA-h38q-r4m4-m9ff.json b/advisories/unreviewed/2022/05/GHSA-h38q-r4m4-m9ff/GHSA-h38q-r4m4-m9ff.json index d00969d504a..510f72338ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-h38q-r4m4-m9ff/GHSA-h38q-r4m4-m9ff.json +++ b/advisories/unreviewed/2022/05/GHSA-h38q-r4m4-m9ff/GHSA-h38q-r4m4-m9ff.json @@ -7,12 +7,8 @@ "CVE-2009-4978" ], "details": "Directory traversal vulnerability in down.php in MyBackup 1.4.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h3gm-pcx4-7hmp/GHSA-h3gm-pcx4-7hmp.json b/advisories/unreviewed/2022/05/GHSA-h3gm-pcx4-7hmp/GHSA-h3gm-pcx4-7hmp.json index e9e89f856a6..bf163d9b651 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3gm-pcx4-7hmp/GHSA-h3gm-pcx4-7hmp.json +++ b/advisories/unreviewed/2022/05/GHSA-h3gm-pcx4-7hmp/GHSA-h3gm-pcx4-7hmp.json @@ -7,12 +7,8 @@ "CVE-2009-4261" ], "details": "Multiple directory traversal vulnerabilities in the iallocator framework in Ganeti 1.2.4 through 1.2.8, 2.0.0 through 2.0.4, and 2.1.0 before 2.1.0~rc2 allow (1) remote attackers to execute arbitrary programs via a crafted external script name supplied through the HTTP remote API (RAPI) and allow (2) local users to execute arbitrary programs and gain privileges via a crafted external script name supplied through a gnt-* command, related to \"path sanitization errors.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h3v2-jgvg-445c/GHSA-h3v2-jgvg-445c.json b/advisories/unreviewed/2022/05/GHSA-h3v2-jgvg-445c/GHSA-h3v2-jgvg-445c.json index 7c940407684..c0c09eb51cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3v2-jgvg-445c/GHSA-h3v2-jgvg-445c.json +++ b/advisories/unreviewed/2022/05/GHSA-h3v2-jgvg-445c/GHSA-h3v2-jgvg-445c.json @@ -7,12 +7,8 @@ "CVE-2009-4888" ], "details": "Cross-site scripting (XSS) vulnerability in poster.php in PHortail 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the (1) pseudo, (2) email, (3) ti, and (4) txt parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h47c-3xp5-g7fx/GHSA-h47c-3xp5-g7fx.json b/advisories/unreviewed/2022/05/GHSA-h47c-3xp5-g7fx/GHSA-h47c-3xp5-g7fx.json index 51a2653b9e7..d63296f54fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-h47c-3xp5-g7fx/GHSA-h47c-3xp5-g7fx.json +++ b/advisories/unreviewed/2022/05/GHSA-h47c-3xp5-g7fx/GHSA-h47c-3xp5-g7fx.json @@ -7,12 +7,8 @@ "CVE-2009-4826" ], "details": "Cross-site request forgery (CSRF) vulnerability in hosting/admin_ac.php in ScriptsEz Mini Hosting Panel allows remote attackers to hijack the authentication of administrators for requests that alter administrative settings via a cp action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h689-32cr-m2v5/GHSA-h689-32cr-m2v5.json b/advisories/unreviewed/2022/05/GHSA-h689-32cr-m2v5/GHSA-h689-32cr-m2v5.json index 4793b24f2c8..a2e2f04700f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h689-32cr-m2v5/GHSA-h689-32cr-m2v5.json +++ b/advisories/unreviewed/2022/05/GHSA-h689-32cr-m2v5/GHSA-h689-32cr-m2v5.json @@ -7,12 +7,8 @@ "CVE-2009-4890" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the login application in vBook 4.2.17 allow remote attackers to inject arbitrary web script or HTML via the (1) title and (2) message parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h766-w7jj-3628/GHSA-h766-w7jj-3628.json b/advisories/unreviewed/2022/05/GHSA-h766-w7jj-3628/GHSA-h766-w7jj-3628.json index e4cd776ae02..ef7814a00ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-h766-w7jj-3628/GHSA-h766-w7jj-3628.json +++ b/advisories/unreviewed/2022/05/GHSA-h766-w7jj-3628/GHSA-h766-w7jj-3628.json @@ -7,12 +7,8 @@ "CVE-2009-4452" ], "details": "Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837), 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); and Internet Security 7 (7.0.1.325), 2009 (8.0.0.x), and 2010 (9.0.0.463); use weak permissions (Everyone:Full Control) for the BASES directory, which allows local users to gain SYSTEM privileges by replacing an executable or DLL with a Trojan horse.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7g6-frrr-69cx/GHSA-h7g6-frrr-69cx.json b/advisories/unreviewed/2022/05/GHSA-h7g6-frrr-69cx/GHSA-h7g6-frrr-69cx.json index 8f7d7a83c53..98ebc2af709 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7g6-frrr-69cx/GHSA-h7g6-frrr-69cx.json +++ b/advisories/unreviewed/2022/05/GHSA-h7g6-frrr-69cx/GHSA-h7g6-frrr-69cx.json @@ -7,12 +7,8 @@ "CVE-2009-5023" ], "details": "The (1) dshield.conf, (2) mail-buffered.conf, (3) mynetwatchman.conf, and (4) mynetwatchman.conf actions in action.d/ in Fail2ban before 0.8.5 allows local users to write to arbitrary files via a symlink attack on temporary files with predictable names, as demonstrated by /tmp/fail2ban-mail.txt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h7pw-qxgc-9wwm/GHSA-h7pw-qxgc-9wwm.json b/advisories/unreviewed/2022/05/GHSA-h7pw-qxgc-9wwm/GHSA-h7pw-qxgc-9wwm.json index be7b373117d..03cbfe58c74 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7pw-qxgc-9wwm/GHSA-h7pw-qxgc-9wwm.json +++ b/advisories/unreviewed/2022/05/GHSA-h7pw-qxgc-9wwm/GHSA-h7pw-qxgc-9wwm.json @@ -7,12 +7,8 @@ "CVE-2009-4609" ], "details": "The Dump Servlet in Mort Bay Jetty 6.x and 7.0.0 allows remote attackers to obtain sensitive information about internal variables and other data via a request to a URI ending in /dump/, as demonstrated by discovering the value of the getPathTranslated variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h85m-74j9-4r6m/GHSA-h85m-74j9-4r6m.json b/advisories/unreviewed/2022/05/GHSA-h85m-74j9-4r6m/GHSA-h85m-74j9-4r6m.json index af8238a7fee..ad7651d01ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-h85m-74j9-4r6m/GHSA-h85m-74j9-4r6m.json +++ b/advisories/unreviewed/2022/05/GHSA-h85m-74j9-4r6m/GHSA-h85m-74j9-4r6m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h85v-7x2m-3544/GHSA-h85v-7x2m-3544.json b/advisories/unreviewed/2022/05/GHSA-h85v-7x2m-3544/GHSA-h85v-7x2m-3544.json index 37d9600afbd..c38ac1c47b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-h85v-7x2m-3544/GHSA-h85v-7x2m-3544.json +++ b/advisories/unreviewed/2022/05/GHSA-h85v-7x2m-3544/GHSA-h85v-7x2m-3544.json @@ -7,12 +7,8 @@ "CVE-2009-4602" ], "details": "Cross-site scripting (XSS) vulnerability in the Randomizer module 5.x through 5.x-1.0 and 6.x through 6.x-1.0, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h894-7j79-c6vg/GHSA-h894-7j79-c6vg.json b/advisories/unreviewed/2022/05/GHSA-h894-7j79-c6vg/GHSA-h894-7j79-c6vg.json index bd9e459b7c8..74bfa764340 100644 --- a/advisories/unreviewed/2022/05/GHSA-h894-7j79-c6vg/GHSA-h894-7j79-c6vg.json +++ b/advisories/unreviewed/2022/05/GHSA-h894-7j79-c6vg/GHSA-h894-7j79-c6vg.json @@ -7,12 +7,8 @@ "CVE-2009-4628" ], "details": "SQL injection vulnerability in the TemplatePlaza.com TPDugg (com_tpdugg) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a tags action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8hq-mcw9-q9jc/GHSA-h8hq-mcw9-q9jc.json b/advisories/unreviewed/2022/05/GHSA-h8hq-mcw9-q9jc/GHSA-h8hq-mcw9-q9jc.json index 29438d62767..769ef460b6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8hq-mcw9-q9jc/GHSA-h8hq-mcw9-q9jc.json +++ b/advisories/unreviewed/2022/05/GHSA-h8hq-mcw9-q9jc/GHSA-h8hq-mcw9-q9jc.json @@ -7,12 +7,8 @@ "CVE-2009-4649" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in geccBBlite 0.1 allow remote attackers to inject arbitrary web script or HTML via the postatoda parameter to (1) rispondi.php and (2) scrivi.php, which is not properly handled in forum.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8j9-2jj6-73jj/GHSA-h8j9-2jj6-73jj.json b/advisories/unreviewed/2022/05/GHSA-h8j9-2jj6-73jj/GHSA-h8j9-2jj6-73jj.json index f9d194c8f71..17f31d3fe59 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8j9-2jj6-73jj/GHSA-h8j9-2jj6-73jj.json +++ b/advisories/unreviewed/2022/05/GHSA-h8j9-2jj6-73jj/GHSA-h8j9-2jj6-73jj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcm9-gfx3-p6jj/GHSA-hcm9-gfx3-p6jj.json b/advisories/unreviewed/2022/05/GHSA-hcm9-gfx3-p6jj/GHSA-hcm9-gfx3-p6jj.json index 8cc65e42cff..dc91c85efff 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcm9-gfx3-p6jj/GHSA-hcm9-gfx3-p6jj.json +++ b/advisories/unreviewed/2022/05/GHSA-hcm9-gfx3-p6jj/GHSA-hcm9-gfx3-p6jj.json @@ -7,12 +7,8 @@ "CVE-2009-4512" ], "details": "Directory traversal vulnerability in index.php in Oscailt 3.3, when Use Friendly URL's is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the obj_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg58-7mh7-hwcq/GHSA-hg58-7mh7-hwcq.json b/advisories/unreviewed/2022/05/GHSA-hg58-7mh7-hwcq/GHSA-hg58-7mh7-hwcq.json index 59e8ab3533e..8f5ce3596bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg58-7mh7-hwcq/GHSA-hg58-7mh7-hwcq.json +++ b/advisories/unreviewed/2022/05/GHSA-hg58-7mh7-hwcq/GHSA-hg58-7mh7-hwcq.json @@ -7,12 +7,8 @@ "CVE-2009-4927" ], "details": "WB News 2.1.2 allows remote attackers to bypass authentication and gain administrative access via a modified WBNEWS cookie, as demonstrated by setting this cookie to 1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg75-wv36-wc7c/GHSA-hg75-wv36-wc7c.json b/advisories/unreviewed/2022/05/GHSA-hg75-wv36-wc7c/GHSA-hg75-wv36-wc7c.json index aec4fa8caa5..b814f51b20f 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg75-wv36-wc7c/GHSA-hg75-wv36-wc7c.json +++ b/advisories/unreviewed/2022/05/GHSA-hg75-wv36-wc7c/GHSA-hg75-wv36-wc7c.json @@ -7,12 +7,8 @@ "CVE-2009-4832" ], "details": "The dlpcrypt.sys kernel driver 0.1.1.27 in DESlock+ 4.0.2 allows local users to gain privileges via a crafted IOCTL 0x80012010 request to the DLPCryptCore device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hhx8-cc3g-6wcp/GHSA-hhx8-cc3g-6wcp.json b/advisories/unreviewed/2022/05/GHSA-hhx8-cc3g-6wcp/GHSA-hhx8-cc3g-6wcp.json index 830892f3348..c0db72d6cac 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhx8-cc3g-6wcp/GHSA-hhx8-cc3g-6wcp.json +++ b/advisories/unreviewed/2022/05/GHSA-hhx8-cc3g-6wcp/GHSA-hhx8-cc3g-6wcp.json @@ -7,12 +7,8 @@ "CVE-2009-4877" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in WebGUI before 7.7.14 allow remote attackers to hijack the authentication of users for unspecified requests via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hj2x-qw32-q9rv/GHSA-hj2x-qw32-q9rv.json b/advisories/unreviewed/2022/05/GHSA-hj2x-qw32-q9rv/GHSA-hj2x-qw32-q9rv.json index a2b32273b4e..1e3ce3432a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-hj2x-qw32-q9rv/GHSA-hj2x-qw32-q9rv.json +++ b/advisories/unreviewed/2022/05/GHSA-hj2x-qw32-q9rv/GHSA-hj2x-qw32-q9rv.json @@ -7,12 +7,8 @@ "CVE-2009-4801" ], "details": "EZ-Blog Beta 1 does not require authentication, which allows remote attackers to create or delete arbitrary posts via requests to PHP scripts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hj67-fp8h-xg8g/GHSA-hj67-fp8h-xg8g.json b/advisories/unreviewed/2022/05/GHSA-hj67-fp8h-xg8g/GHSA-hj67-fp8h-xg8g.json index f7770b19682..11986eaf99a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hj67-fp8h-xg8g/GHSA-hj67-fp8h-xg8g.json +++ b/advisories/unreviewed/2022/05/GHSA-hj67-fp8h-xg8g/GHSA-hj67-fp8h-xg8g.json @@ -7,12 +7,8 @@ "CVE-2009-4345" ], "details": "Cross-site scripting (XSS) vulnerability in the vShoutbox (vshoutbox) extension 0.0.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmx5-5w7p-crvg/GHSA-hmx5-5w7p-crvg.json b/advisories/unreviewed/2022/05/GHSA-hmx5-5w7p-crvg/GHSA-hmx5-5w7p-crvg.json index e10994731a1..3cd47177585 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmx5-5w7p-crvg/GHSA-hmx5-5w7p-crvg.json +++ b/advisories/unreviewed/2022/05/GHSA-hmx5-5w7p-crvg/GHSA-hmx5-5w7p-crvg.json @@ -7,12 +7,8 @@ "CVE-2009-4754" ], "details": "Stack-based buffer overflow in Mercury Audio Player 1.21 allows remote attackers to execute arbitrary code via a long string in a malformed playlist (.m3u) file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hp4g-3v9q-m2cq/GHSA-hp4g-3v9q-m2cq.json b/advisories/unreviewed/2022/05/GHSA-hp4g-3v9q-m2cq/GHSA-hp4g-3v9q-m2cq.json index 3701db7680a..f392ae916b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp4g-3v9q-m2cq/GHSA-hp4g-3v9q-m2cq.json +++ b/advisories/unreviewed/2022/05/GHSA-hp4g-3v9q-m2cq/GHSA-hp4g-3v9q-m2cq.json @@ -7,12 +7,8 @@ "CVE-2009-4566" ], "details": "SQL injection vulnerability in index.php in Zenphoto 1.2.5 allows remote attackers to execute arbitrary SQL commands via the title parameter in a news action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hp79-wc4h-wf58/GHSA-hp79-wc4h-wf58.json b/advisories/unreviewed/2022/05/GHSA-hp79-wc4h-wf58/GHSA-hp79-wc4h-wf58.json index 1920503473d..11e9b0cbee4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp79-wc4h-wf58/GHSA-hp79-wc4h-wf58.json +++ b/advisories/unreviewed/2022/05/GHSA-hp79-wc4h-wf58/GHSA-hp79-wc4h-wf58.json @@ -7,12 +7,8 @@ "CVE-2009-4610" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Mort Bay Jetty 6.x and 7.0.0 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to jsp/dump.jsp in the JSP Dump feature, or the (2) Name or (3) Value parameter to the default URI for the Session Dump Servlet under session/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpgw-pjpm-jm2g/GHSA-hpgw-pjpm-jm2g.json b/advisories/unreviewed/2022/05/GHSA-hpgw-pjpm-jm2g/GHSA-hpgw-pjpm-jm2g.json index b0c628d7337..d92fba7447b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpgw-pjpm-jm2g/GHSA-hpgw-pjpm-jm2g.json +++ b/advisories/unreviewed/2022/05/GHSA-hpgw-pjpm-jm2g/GHSA-hpgw-pjpm-jm2g.json @@ -7,12 +7,8 @@ "CVE-2009-4453" ], "details": "Insecure method vulnerability in SoftCab Sound Converter ActiveX control (sndConverter.ocx) 1.2 allows remote attackers to create or overwrite arbitrary files via the SaveFormat method. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hqgv-c4gq-3vxf/GHSA-hqgv-c4gq-3vxf.json b/advisories/unreviewed/2022/05/GHSA-hqgv-c4gq-3vxf/GHSA-hqgv-c4gq-3vxf.json index e14c327bb91..a03e1a4c3eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqgv-c4gq-3vxf/GHSA-hqgv-c4gq-3vxf.json +++ b/advisories/unreviewed/2022/05/GHSA-hqgv-c4gq-3vxf/GHSA-hqgv-c4gq-3vxf.json @@ -7,12 +7,8 @@ "CVE-2009-4312" ], "details": "Unspecified vulnerability in the Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted media content, as reported to Microsoft by Dave Lenoe of Adobe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr2m-gj8j-j4xw/GHSA-hr2m-gj8j-j4xw.json b/advisories/unreviewed/2022/05/GHSA-hr2m-gj8j-j4xw/GHSA-hr2m-gj8j-j4xw.json index b93ccada682..1d70b2a9eb7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr2m-gj8j-j4xw/GHSA-hr2m-gj8j-j4xw.json +++ b/advisories/unreviewed/2022/05/GHSA-hr2m-gj8j-j4xw/GHSA-hr2m-gj8j-j4xw.json @@ -7,12 +7,8 @@ "CVE-2009-4342" ], "details": "SQL injection vulnerability in the Job Exchange (jobexchange) extension 0.0.3 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrc2-fm7x-2wj3/GHSA-hrc2-fm7x-2wj3.json b/advisories/unreviewed/2022/05/GHSA-hrc2-fm7x-2wj3/GHSA-hrc2-fm7x-2wj3.json index ba9830a29e7..d550540bdb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrc2-fm7x-2wj3/GHSA-hrc2-fm7x-2wj3.json +++ b/advisories/unreviewed/2022/05/GHSA-hrc2-fm7x-2wj3/GHSA-hrc2-fm7x-2wj3.json @@ -7,12 +7,8 @@ "CVE-2009-4697" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.php in RadNICS Gold 5 allow remote attackers to inject arbitrary web script or HTML via the (1) order parameter in a ulist action and the (2) fid parameter in a view_forum action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrrw-6mp8-7p9p/GHSA-hrrw-6mp8-7p9p.json b/advisories/unreviewed/2022/05/GHSA-hrrw-6mp8-7p9p/GHSA-hrrw-6mp8-7p9p.json index cd659ecf1f7..d58417fad95 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrrw-6mp8-7p9p/GHSA-hrrw-6mp8-7p9p.json +++ b/advisories/unreviewed/2022/05/GHSA-hrrw-6mp8-7p9p/GHSA-hrrw-6mp8-7p9p.json @@ -7,12 +7,8 @@ "CVE-2009-4961" ], "details": "Lanai Core 0.6 allows remote attackers to obtain configuration information via a direct request to info.php, which calls the phpinfo function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hv46-mwcf-5qq2/GHSA-hv46-mwcf-5qq2.json b/advisories/unreviewed/2022/05/GHSA-hv46-mwcf-5qq2/GHSA-hv46-mwcf-5qq2.json index 080e51ea78a..66546dc7861 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv46-mwcf-5qq2/GHSA-hv46-mwcf-5qq2.json +++ b/advisories/unreviewed/2022/05/GHSA-hv46-mwcf-5qq2/GHSA-hv46-mwcf-5qq2.json @@ -7,12 +7,8 @@ "CVE-2009-4477" ], "details": "SQL injection vulnerability in page.html in Xstate Real Estate 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvjc-qmw7-pchp/GHSA-hvjc-qmw7-pchp.json b/advisories/unreviewed/2022/05/GHSA-hvjc-qmw7-pchp/GHSA-hvjc-qmw7-pchp.json index 6077fb24da5..dd992eaf8fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvjc-qmw7-pchp/GHSA-hvjc-qmw7-pchp.json +++ b/advisories/unreviewed/2022/05/GHSA-hvjc-qmw7-pchp/GHSA-hvjc-qmw7-pchp.json @@ -7,12 +7,8 @@ "CVE-2009-4360" ], "details": "SQL injection vulnerability in modules/content/index.php in the Content module 0.5 for XOOPS allows remote attackers to inject arbitrary web script or HTML via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvw4-9qjw-rqhf/GHSA-hvw4-9qjw-rqhf.json b/advisories/unreviewed/2022/05/GHSA-hvw4-9qjw-rqhf/GHSA-hvw4-9qjw-rqhf.json index 4876b26f401..0c30640ed12 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvw4-9qjw-rqhf/GHSA-hvw4-9qjw-rqhf.json +++ b/advisories/unreviewed/2022/05/GHSA-hvw4-9qjw-rqhf/GHSA-hvw4-9qjw-rqhf.json @@ -7,12 +7,8 @@ "CVE-2009-5092" ], "details": "Cross-site scripting (XSS) vulnerability in the management interface in Microsoft FAST ESP 5.1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hw9x-73p5-9hhw/GHSA-hw9x-73p5-9hhw.json b/advisories/unreviewed/2022/05/GHSA-hw9x-73p5-9hhw/GHSA-hw9x-73p5-9hhw.json index fbef0a6fa74..21de6521b67 100644 --- a/advisories/unreviewed/2022/05/GHSA-hw9x-73p5-9hhw/GHSA-hw9x-73p5-9hhw.json +++ b/advisories/unreviewed/2022/05/GHSA-hw9x-73p5-9hhw/GHSA-hw9x-73p5-9hhw.json @@ -7,12 +7,8 @@ "CVE-2009-4982" ], "details": "SQL injection vulnerability in the select function in Irokez CMS 0.7.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the PATH_INFO to the default URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwcj-q6q8-r3j3/GHSA-hwcj-q6q8-r3j3.json b/advisories/unreviewed/2022/05/GHSA-hwcj-q6q8-r3j3/GHSA-hwcj-q6q8-r3j3.json index e2c9a0d4f58..4daaba6d2ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwcj-q6q8-r3j3/GHSA-hwcj-q6q8-r3j3.json +++ b/advisories/unreviewed/2022/05/GHSA-hwcj-q6q8-r3j3/GHSA-hwcj-q6q8-r3j3.json @@ -7,12 +7,8 @@ "CVE-2009-5024" ], "details": "ViewVC before 1.1.11 allows remote attackers to bypass the cvsdb row_limit configuration setting, and consequently conduct resource-consumption attacks, via the limit parameter, as demonstrated by a \"query revision history\" request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hwm9-x6m4-cf3c/GHSA-hwm9-x6m4-cf3c.json b/advisories/unreviewed/2022/05/GHSA-hwm9-x6m4-cf3c/GHSA-hwm9-x6m4-cf3c.json index d25b05d0e75..88bfe3df691 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwm9-x6m4-cf3c/GHSA-hwm9-x6m4-cf3c.json +++ b/advisories/unreviewed/2022/05/GHSA-hwm9-x6m4-cf3c/GHSA-hwm9-x6m4-cf3c.json @@ -7,12 +7,8 @@ "CVE-2009-4572" ], "details": "Cross-site request forgery (CSRF) vulnerability in PhpShop 0.8.1 allows remote attackers to hijack the authentication of arbitrary users for requests that invoke the cartAdd function in a shop/cart action to the default URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hx6r-5mcv-8mm3/GHSA-hx6r-5mcv-8mm3.json b/advisories/unreviewed/2022/05/GHSA-hx6r-5mcv-8mm3/GHSA-hx6r-5mcv-8mm3.json index 34e52bbb407..d6d1dd21a6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx6r-5mcv-8mm3/GHSA-hx6r-5mcv-8mm3.json +++ b/advisories/unreviewed/2022/05/GHSA-hx6r-5mcv-8mm3/GHSA-hx6r-5mcv-8mm3.json @@ -7,12 +7,8 @@ "CVE-2009-4856" ], "details": "Cross-site scripting (XSS) vulnerability in subitems.php in PHP Easy Shopping Cart 3.1R allows remote attackers to inject arbitrary web script or HTML via the name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hx9g-2pr4-49jx/GHSA-hx9g-2pr4-49jx.json b/advisories/unreviewed/2022/05/GHSA-hx9g-2pr4-49jx/GHSA-hx9g-2pr4-49jx.json index d3f7ee4fecd..65f141ebfae 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx9g-2pr4-49jx/GHSA-hx9g-2pr4-49jx.json +++ b/advisories/unreviewed/2022/05/GHSA-hx9g-2pr4-49jx/GHSA-hx9g-2pr4-49jx.json @@ -7,12 +7,8 @@ "CVE-2009-5084" ], "details": "IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.2, when com.tivoli.am.fim.infocard.delegates.InfoCardSTSDelegate tracing is enabled, creates a cleartext log entry containing a password, which might allow local users to obtain sensitive information by reading the log data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxmq-hvq2-25gr/GHSA-hxmq-hvq2-25gr.json b/advisories/unreviewed/2022/05/GHSA-hxmq-hvq2-25gr/GHSA-hxmq-hvq2-25gr.json index ef618c2ee42..f8011959389 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxmq-hvq2-25gr/GHSA-hxmq-hvq2-25gr.json +++ b/advisories/unreviewed/2022/05/GHSA-hxmq-hvq2-25gr/GHSA-hxmq-hvq2-25gr.json @@ -7,12 +7,8 @@ "CVE-2009-4555" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in AgoraCart 5.2.005 and 5.2.006 and AgoraCart GOLD 5.5.005 allow remote attackers to hijack the authentication of administrators for requests that (1) modify a .htaccess file via an unspecified request to protected/manager.cgi or (2) change the password of an administrative account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j249-2v56-gw58/GHSA-j249-2v56-gw58.json b/advisories/unreviewed/2022/05/GHSA-j249-2v56-gw58/GHSA-j249-2v56-gw58.json index 43bc7d44316..641e548c0f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-j249-2v56-gw58/GHSA-j249-2v56-gw58.json +++ b/advisories/unreviewed/2022/05/GHSA-j249-2v56-gw58/GHSA-j249-2v56-gw58.json @@ -7,12 +7,8 @@ "CVE-2009-4790" ], "details": "Multiple directory traversal vulnerabilities in Sysax Multi Server 4.5 allow remote authenticated users to read or modify arbitrary files via crafted FTP commands. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j39w-p65w-pff2/GHSA-j39w-p65w-pff2.json b/advisories/unreviewed/2022/05/GHSA-j39w-p65w-pff2/GHSA-j39w-p65w-pff2.json index f9b590766ee..24509bd033f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j39w-p65w-pff2/GHSA-j39w-p65w-pff2.json +++ b/advisories/unreviewed/2022/05/GHSA-j39w-p65w-pff2/GHSA-j39w-p65w-pff2.json @@ -7,12 +7,8 @@ "CVE-2009-4783" ], "details": "Multiple SQL injection vulnerabilities in Theeta CMS, possibly 0.01, allow remote attackers to execute arbitrary SQL commands via the start parameter to (1) forum.php and (2) thread.php in community/, and (3) blog/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j3w4-fp9w-qmr4/GHSA-j3w4-fp9w-qmr4.json b/advisories/unreviewed/2022/05/GHSA-j3w4-fp9w-qmr4/GHSA-j3w4-fp9w-qmr4.json index e0d235e944e..8aa39637a2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3w4-fp9w-qmr4/GHSA-j3w4-fp9w-qmr4.json +++ b/advisories/unreviewed/2022/05/GHSA-j3w4-fp9w-qmr4/GHSA-j3w4-fp9w-qmr4.json @@ -7,12 +7,8 @@ "CVE-2009-4998" ], "details": "The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-019 and 4.0.2.x before 4.0.2.7-P8AE-FP007, in certain FileTracker configurations, does not apply a security policy to the first document added during a session, which might allow remote attackers to bypass intended access restrictions via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j3wx-fgm6-cw62/GHSA-j3wx-fgm6-cw62.json b/advisories/unreviewed/2022/05/GHSA-j3wx-fgm6-cw62/GHSA-j3wx-fgm6-cw62.json index b6baf02286c..f12dadb267b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3wx-fgm6-cw62/GHSA-j3wx-fgm6-cw62.json +++ b/advisories/unreviewed/2022/05/GHSA-j3wx-fgm6-cw62/GHSA-j3wx-fgm6-cw62.json @@ -7,12 +7,8 @@ "CVE-2009-4607" ], "details": "The command line interface in Overland Storage Snap Server 410 with GuardianOS 5.1.041 runs the \"less\" utility with a higher-privileged uid than the CLI user and without sufficient restriction on shell escapes, which allows local users to gain privileges using the \"!\" character within less to access a privileged shell.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j4gq-j2x7-6w2g/GHSA-j4gq-j2x7-6w2g.json b/advisories/unreviewed/2022/05/GHSA-j4gq-j2x7-6w2g/GHSA-j4gq-j2x7-6w2g.json index 5124cfca992..944e5783577 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4gq-j2x7-6w2g/GHSA-j4gq-j2x7-6w2g.json +++ b/advisories/unreviewed/2022/05/GHSA-j4gq-j2x7-6w2g/GHSA-j4gq-j2x7-6w2g.json @@ -7,12 +7,8 @@ "CVE-2009-4643" ], "details": "Stack-based buffer overflow in dsInstallerService.dll in the Juniper Installer Service, as used in Juniper Odyssey Access Client 4.72.11421.0 and other products, allows remote attackers to execute arbitrary code via a long string in a malformed DSSETUPSERVICE_CMD_UNINSTALL command to the NeoterisSetupService named pipe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j534-wr4w-7h2w/GHSA-j534-wr4w-7h2w.json b/advisories/unreviewed/2022/05/GHSA-j534-wr4w-7h2w/GHSA-j534-wr4w-7h2w.json index 545ec87cb0d..f319ef1a437 100644 --- a/advisories/unreviewed/2022/05/GHSA-j534-wr4w-7h2w/GHSA-j534-wr4w-7h2w.json +++ b/advisories/unreviewed/2022/05/GHSA-j534-wr4w-7h2w/GHSA-j534-wr4w-7h2w.json @@ -7,12 +7,8 @@ "CVE-2009-4969" ], "details": "SQL injection vulnerability in the Solidbase Bannermanagement (SBbanner) extension 1.0.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5c5-5gc5-5vfh/GHSA-j5c5-5gc5-5vfh.json b/advisories/unreviewed/2022/05/GHSA-j5c5-5gc5-5vfh/GHSA-j5c5-5gc5-5vfh.json index 71291e51792..dee211282ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5c5-5gc5-5vfh/GHSA-j5c5-5gc5-5vfh.json +++ b/advisories/unreviewed/2022/05/GHSA-j5c5-5gc5-5vfh/GHSA-j5c5-5gc5-5vfh.json @@ -7,12 +7,8 @@ "CVE-2009-4755" ], "details": "Multiple stack-based buffer overflows in Mercury Audio Player 1.21 allow remote attackers to execute arbitrary code via a long string in a malformed (1) .b4s or (2) .pls playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j793-5547-v6gf/GHSA-j793-5547-v6gf.json b/advisories/unreviewed/2022/05/GHSA-j793-5547-v6gf/GHSA-j793-5547-v6gf.json index a153f23888c..b97ce7c3077 100644 --- a/advisories/unreviewed/2022/05/GHSA-j793-5547-v6gf/GHSA-j793-5547-v6gf.json +++ b/advisories/unreviewed/2022/05/GHSA-j793-5547-v6gf/GHSA-j793-5547-v6gf.json @@ -7,12 +7,8 @@ "CVE-2009-4844" ], "details": "ToutVirtual VirtualIQ Pro 3.2 build 7882 does not restrict access to the /status URI on port 9080, which allows remote attackers to obtain sensitive Tomcat information via a direct request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j95x-5hwj-wcc6/GHSA-j95x-5hwj-wcc6.json b/advisories/unreviewed/2022/05/GHSA-j95x-5hwj-wcc6/GHSA-j95x-5hwj-wcc6.json index 7c7fa0b9941..6b1e22e6416 100644 --- a/advisories/unreviewed/2022/05/GHSA-j95x-5hwj-wcc6/GHSA-j95x-5hwj-wcc6.json +++ b/advisories/unreviewed/2022/05/GHSA-j95x-5hwj-wcc6/GHSA-j95x-5hwj-wcc6.json @@ -7,12 +7,8 @@ "CVE-2009-4708" ], "details": "SQL injection vulnerability in the [Gobernalia] Front End News Submitter (gb_fenewssubmit) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jc8p-ggq2-cwcg/GHSA-jc8p-ggq2-cwcg.json b/advisories/unreviewed/2022/05/GHSA-jc8p-ggq2-cwcg/GHSA-jc8p-ggq2-cwcg.json index f9ff6bbd426..c414e987801 100644 --- a/advisories/unreviewed/2022/05/GHSA-jc8p-ggq2-cwcg/GHSA-jc8p-ggq2-cwcg.json +++ b/advisories/unreviewed/2022/05/GHSA-jc8p-ggq2-cwcg/GHSA-jc8p-ggq2-cwcg.json @@ -7,12 +7,8 @@ "CVE-2009-4799" ], "details": "Diskos CMS 6.x stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) artikler_prod.mdb or (2) medlemmer.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jcpx-5vxp-4q88/GHSA-jcpx-5vxp-4q88.json b/advisories/unreviewed/2022/05/GHSA-jcpx-5vxp-4q88/GHSA-jcpx-5vxp-4q88.json index 49b6b172a1e..27cec782088 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcpx-5vxp-4q88/GHSA-jcpx-5vxp-4q88.json +++ b/advisories/unreviewed/2022/05/GHSA-jcpx-5vxp-4q88/GHSA-jcpx-5vxp-4q88.json @@ -7,12 +7,8 @@ "CVE-2009-4979" ], "details": "Multiple SQL injection vulnerabilities in search.php in Photokorn Gallery 1.81 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) where[], (2) sort, (3) order, and (4) Match parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcrx-qqxg-4c9h/GHSA-jcrx-qqxg-4c9h.json b/advisories/unreviewed/2022/05/GHSA-jcrx-qqxg-4c9h/GHSA-jcrx-qqxg-4c9h.json index 24d7751b1a0..768cb00a12f 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcrx-qqxg-4c9h/GHSA-jcrx-qqxg-4c9h.json +++ b/advisories/unreviewed/2022/05/GHSA-jcrx-qqxg-4c9h/GHSA-jcrx-qqxg-4c9h.json @@ -7,12 +7,8 @@ "CVE-2009-4711" ], "details": "SQL injection vulnerability in the CoolURI (cooluri) extension before 1.0.16 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2008-6686.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcw6-x7v9-phr4/GHSA-jcw6-x7v9-phr4.json b/advisories/unreviewed/2022/05/GHSA-jcw6-x7v9-phr4/GHSA-jcw6-x7v9-phr4.json index 744bebb6792..2c398355c92 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcw6-x7v9-phr4/GHSA-jcw6-x7v9-phr4.json +++ b/advisories/unreviewed/2022/05/GHSA-jcw6-x7v9-phr4/GHSA-jcw6-x7v9-phr4.json @@ -7,12 +7,8 @@ "CVE-2009-5088" ], "details": "SQL injection vulnerability in secure/index.php in IdeaCart 0.02 allows remote attackers to execute arbitrary SQL commands via the cID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf47-mr6f-3vgr/GHSA-jf47-mr6f-3vgr.json b/advisories/unreviewed/2022/05/GHSA-jf47-mr6f-3vgr/GHSA-jf47-mr6f-3vgr.json index 886b5457e81..99a8424622d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf47-mr6f-3vgr/GHSA-jf47-mr6f-3vgr.json +++ b/advisories/unreviewed/2022/05/GHSA-jf47-mr6f-3vgr/GHSA-jf47-mr6f-3vgr.json @@ -7,12 +7,8 @@ "CVE-2009-4850" ], "details": "The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneURL property value with a URL for a .exe file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf67-p53q-23gx/GHSA-jf67-p53q-23gx.json b/advisories/unreviewed/2022/05/GHSA-jf67-p53q-23gx/GHSA-jf67-p53q-23gx.json index 82456439183..b54f2dbee37 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf67-p53q-23gx/GHSA-jf67-p53q-23gx.json +++ b/advisories/unreviewed/2022/05/GHSA-jf67-p53q-23gx/GHSA-jf67-p53q-23gx.json @@ -7,12 +7,8 @@ "CVE-2009-4827" ], "details": "Cross-site request forgery (CSRF) vulnerability in admin.php in Mail Manager Pro allows remote attackers to hijack the authentication of administrators for requests that change the admin password via a change action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jfc6-vmq3-7v59/GHSA-jfc6-vmq3-7v59.json b/advisories/unreviewed/2022/05/GHSA-jfc6-vmq3-7v59/GHSA-jfc6-vmq3-7v59.json index f297eaba7fc..16aad339c8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfc6-vmq3-7v59/GHSA-jfc6-vmq3-7v59.json +++ b/advisories/unreviewed/2022/05/GHSA-jfc6-vmq3-7v59/GHSA-jfc6-vmq3-7v59.json @@ -7,12 +7,8 @@ "CVE-2009-4505" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in OpenCMS OAMP Comments Module 1.0.1 allow remote attackers to inject arbitrary web script or HTML via the name field in a comment, and other unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jfgr-r9xc-vhc8/GHSA-jfgr-r9xc-vhc8.json b/advisories/unreviewed/2022/05/GHSA-jfgr-r9xc-vhc8/GHSA-jfgr-r9xc-vhc8.json index 9c0515781fb..c3035b8ddd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfgr-r9xc-vhc8/GHSA-jfgr-r9xc-vhc8.json +++ b/advisories/unreviewed/2022/05/GHSA-jfgr-r9xc-vhc8/GHSA-jfgr-r9xc-vhc8.json @@ -7,12 +7,8 @@ "CVE-2009-4498" ], "details": "The node_process_command function in Zabbix Server before 1.8 allows remote attackers to execute arbitrary commands via a crafted request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jg83-3336-7m7m/GHSA-jg83-3336-7m7m.json b/advisories/unreviewed/2022/05/GHSA-jg83-3336-7m7m/GHSA-jg83-3336-7m7m.json index 82d9e4bd570..8f543022083 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg83-3336-7m7m/GHSA-jg83-3336-7m7m.json +++ b/advisories/unreviewed/2022/05/GHSA-jg83-3336-7m7m/GHSA-jg83-3336-7m7m.json @@ -7,12 +7,8 @@ "CVE-2009-4992" ], "details": "SQL injection vulnerability in paidbanner.php in LM Starmail Paidmail 2.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jgrf-h7j6-9hvg/GHSA-jgrf-h7j6-9hvg.json b/advisories/unreviewed/2022/05/GHSA-jgrf-h7j6-9hvg/GHSA-jgrf-h7j6-9hvg.json index f79e4d46ae1..6ad1ee5adf9 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgrf-h7j6-9hvg/GHSA-jgrf-h7j6-9hvg.json +++ b/advisories/unreviewed/2022/05/GHSA-jgrf-h7j6-9hvg/GHSA-jgrf-h7j6-9hvg.json @@ -7,12 +7,8 @@ "CVE-2009-5032" ], "details": "The encrypted e-mail feature in IBM Lotus Notes Traveler before 8.5.0.2 sends unencrypted messages when the feature is used without uploading a Notes ID file, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jhpx-m76h-97q9/GHSA-jhpx-m76h-97q9.json b/advisories/unreviewed/2022/05/GHSA-jhpx-m76h-97q9/GHSA-jhpx-m76h-97q9.json index 3c881ad2d31..89877471c56 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhpx-m76h-97q9/GHSA-jhpx-m76h-97q9.json +++ b/advisories/unreviewed/2022/05/GHSA-jhpx-m76h-97q9/GHSA-jhpx-m76h-97q9.json @@ -7,12 +7,8 @@ "CVE-2009-4974" ], "details": "Directory traversal vulnerability in box_display.php in TotalCalendar 2.4 allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the box parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjcv-88gp-wgv6/GHSA-jjcv-88gp-wgv6.json b/advisories/unreviewed/2022/05/GHSA-jjcv-88gp-wgv6/GHSA-jjcv-88gp-wgv6.json index 7920b7137e0..eb30355f6c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjcv-88gp-wgv6/GHSA-jjcv-88gp-wgv6.json +++ b/advisories/unreviewed/2022/05/GHSA-jjcv-88gp-wgv6/GHSA-jjcv-88gp-wgv6.json @@ -7,12 +7,8 @@ "CVE-2009-4787" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in Pligg before 1.0.3 allow remote attackers to hijack the authentication of administrators for requests that create user accounts or have unspecified other impact.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjqv-555m-3f57/GHSA-jjqv-555m-3f57.json b/advisories/unreviewed/2022/05/GHSA-jjqv-555m-3f57/GHSA-jjqv-555m-3f57.json index 423688b317e..2db354ce4fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjqv-555m-3f57/GHSA-jjqv-555m-3f57.json +++ b/advisories/unreviewed/2022/05/GHSA-jjqv-555m-3f57/GHSA-jjqv-555m-3f57.json @@ -7,12 +7,8 @@ "CVE-2009-4913" ], "details": "The IPv6 implementation on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) exposes IP services on the \"far side of the box,\" which might allow remote attackers to bypass intended access restrictions via IPv6 packets, aka Bug ID CSCso58622.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jm9f-94hg-cq9c/GHSA-jm9f-94hg-cq9c.json b/advisories/unreviewed/2022/05/GHSA-jm9f-94hg-cq9c/GHSA-jm9f-94hg-cq9c.json index e0ef25f6bdd..67ee329a396 100644 --- a/advisories/unreviewed/2022/05/GHSA-jm9f-94hg-cq9c/GHSA-jm9f-94hg-cq9c.json +++ b/advisories/unreviewed/2022/05/GHSA-jm9f-94hg-cq9c/GHSA-jm9f-94hg-cq9c.json @@ -7,12 +7,8 @@ "CVE-2009-4356" ], "details": "Multiple integer overflows in the jpeg.w5s and png.w5s filters in Winamp before 5.57 allow remote attackers to execute arbitrary code via malformed (1) JPEG or (2) PNG data in an MP3 file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmhq-r39w-x8cj/GHSA-jmhq-r39w-x8cj.json b/advisories/unreviewed/2022/05/GHSA-jmhq-r39w-x8cj/GHSA-jmhq-r39w-x8cj.json index fd526bc1261..2372f18994f 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmhq-r39w-x8cj/GHSA-jmhq-r39w-x8cj.json +++ b/advisories/unreviewed/2022/05/GHSA-jmhq-r39w-x8cj/GHSA-jmhq-r39w-x8cj.json @@ -7,12 +7,8 @@ "CVE-2009-4712" ], "details": "SQL injection vulnerability in index.php in Tukanas Classifieds (aka EasyClassifieds) Script 1.0 allows remote attackers to execute arbitrary SQL commands via the b parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpg5-92g7-ccrg/GHSA-jpg5-92g7-ccrg.json b/advisories/unreviewed/2022/05/GHSA-jpg5-92g7-ccrg/GHSA-jpg5-92g7-ccrg.json index c63dc6219a2..609f9143375 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpg5-92g7-ccrg/GHSA-jpg5-92g7-ccrg.json +++ b/advisories/unreviewed/2022/05/GHSA-jpg5-92g7-ccrg/GHSA-jpg5-92g7-ccrg.json @@ -7,12 +7,8 @@ "CVE-2009-4361" ], "details": "Multiple buffer overflows in qoslist in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or possibly gain privileges via a long string argument. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpm4-9q6q-mhwv/GHSA-jpm4-9q6q-mhwv.json b/advisories/unreviewed/2022/05/GHSA-jpm4-9q6q-mhwv/GHSA-jpm4-9q6q-mhwv.json index 8eeb3e3dc35..066c8cc22fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpm4-9q6q-mhwv/GHSA-jpm4-9q6q-mhwv.json +++ b/advisories/unreviewed/2022/05/GHSA-jpm4-9q6q-mhwv/GHSA-jpm4-9q6q-mhwv.json @@ -7,12 +7,8 @@ "CVE-2008-3144" ], "details": "Multiple integer overflows in the PyOS_vsnprintf function in Python/mysnprintf.c in Python 2.5.2 and earlier allow context-dependent attackers to cause a denial of service (memory corruption) or have unspecified other impact via crafted input to string formatting operations. NOTE: the handling of certain integer values is also affected by related integer underflows and an off-by-one error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpvc-jx2p-m7rr/GHSA-jpvc-jx2p-m7rr.json b/advisories/unreviewed/2022/05/GHSA-jpvc-jx2p-m7rr/GHSA-jpvc-jx2p-m7rr.json index 8bc663f2145..7f7af0ec6c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpvc-jx2p-m7rr/GHSA-jpvc-jx2p-m7rr.json +++ b/advisories/unreviewed/2022/05/GHSA-jpvc-jx2p-m7rr/GHSA-jpvc-jx2p-m7rr.json @@ -7,12 +7,8 @@ "CVE-2009-4810" ], "details": "The Secure Remote Password (SRP) implementation in Samhain before 2.5.4 does not check for a certain zero value where required by the protocol, which allows remote attackers to bypass authentication via crafted input.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqrg-p48v-g4w4/GHSA-jqrg-p48v-g4w4.json b/advisories/unreviewed/2022/05/GHSA-jqrg-p48v-g4w4/GHSA-jqrg-p48v-g4w4.json index 2b76d152110..97513405648 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqrg-p48v-g4w4/GHSA-jqrg-p48v-g4w4.json +++ b/advisories/unreviewed/2022/05/GHSA-jqrg-p48v-g4w4/GHSA-jqrg-p48v-g4w4.json @@ -7,12 +7,8 @@ "CVE-2009-4975" ], "details": "Cross-site scripting (XSS) vulnerability in webview.cpp in QtDemoBrowser allows remote attackers to inject arbitrary web script or HTML via a URL associated with a nonexistent domain name, related to a \"universal XSS\" issue, a similar vulnerability to CVE-2010-2536.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jrgm-h7j7-x7wq/GHSA-jrgm-h7j7-x7wq.json b/advisories/unreviewed/2022/05/GHSA-jrgm-h7j7-x7wq/GHSA-jrgm-h7j7-x7wq.json index af781d17803..d7cc2c29278 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrgm-h7j7-x7wq/GHSA-jrgm-h7j7-x7wq.json +++ b/advisories/unreviewed/2022/05/GHSA-jrgm-h7j7-x7wq/GHSA-jrgm-h7j7-x7wq.json @@ -7,12 +7,8 @@ "CVE-2009-4592" ], "details": "Unspecified vulnerability in base_local_rules.php in Basic Analysis and Security Engine (BASE) before 1.4.4 allows remote attackers to include arbitrary local files via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jv7w-56m3-q5qw/GHSA-jv7w-56m3-q5qw.json b/advisories/unreviewed/2022/05/GHSA-jv7w-56m3-q5qw/GHSA-jv7w-56m3-q5qw.json index 815d57f534f..d674deb5973 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv7w-56m3-q5qw/GHSA-jv7w-56m3-q5qw.json +++ b/advisories/unreviewed/2022/05/GHSA-jv7w-56m3-q5qw/GHSA-jv7w-56m3-q5qw.json @@ -7,12 +7,8 @@ "CVE-2009-4318" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Real Estate Manager 1.0.1 allows remote attackers to inject arbitrary web script or HTML via the lang parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvv8-vq5j-r645/GHSA-jvv8-vq5j-r645.json b/advisories/unreviewed/2022/05/GHSA-jvv8-vq5j-r645/GHSA-jvv8-vq5j-r645.json index 2098839f658..cae1ad47b37 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvv8-vq5j-r645/GHSA-jvv8-vq5j-r645.json +++ b/advisories/unreviewed/2022/05/GHSA-jvv8-vq5j-r645/GHSA-jvv8-vq5j-r645.json @@ -7,12 +7,8 @@ "CVE-2009-4656" ], "details": "Stack-based buffer overflow in E-Soft DJ Studio Pro 4.2 including 4.2.2.7.5, and 5.x including 5.1.4.3.1, allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a playlist file (.pls) containing a long string. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvxj-574v-8jh7/GHSA-jvxj-574v-8jh7.json b/advisories/unreviewed/2022/05/GHSA-jvxj-574v-8jh7/GHSA-jvxj-574v-8jh7.json index accee84048d..1c66afffed5 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvxj-574v-8jh7/GHSA-jvxj-574v-8jh7.json +++ b/advisories/unreviewed/2022/05/GHSA-jvxj-574v-8jh7/GHSA-jvxj-574v-8jh7.json @@ -7,12 +7,8 @@ "CVE-2009-5015" ], "details": "The URL dispatch mechanism in TurboGears2 (aka tg2) before 2.0.2 exposes controller methods even when an @expose decoration is not used, which has unspecified impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jw2r-fh8r-hwrv/GHSA-jw2r-fh8r-hwrv.json b/advisories/unreviewed/2022/05/GHSA-jw2r-fh8r-hwrv/GHSA-jw2r-fh8r-hwrv.json index 7bd19961375..ccc6eeb75fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw2r-fh8r-hwrv/GHSA-jw2r-fh8r-hwrv.json +++ b/advisories/unreviewed/2022/05/GHSA-jw2r-fh8r-hwrv/GHSA-jw2r-fh8r-hwrv.json @@ -7,12 +7,8 @@ "CVE-2009-4934" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Online Photo Pro 2.0 allows remote attackers to inject arbitrary web script or HTML via the section parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jw3g-x4rr-j3x2/GHSA-jw3g-x4rr-j3x2.json b/advisories/unreviewed/2022/05/GHSA-jw3g-x4rr-j3x2/GHSA-jw3g-x4rr-j3x2.json index b799d29528b..f7e0787d99c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw3g-x4rr-j3x2/GHSA-jw3g-x4rr-j3x2.json +++ b/advisories/unreviewed/2022/05/GHSA-jw3g-x4rr-j3x2/GHSA-jw3g-x4rr-j3x2.json @@ -7,12 +7,8 @@ "CVE-2009-4595" ], "details": "SQL injection vulnerability in index.php in PHP Inventory 1.2 allows remote authenticated users to execute arbitrary SQL commands via the sup_id parameter in a suppliers details action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jw77-74vm-m56f/GHSA-jw77-74vm-m56f.json b/advisories/unreviewed/2022/05/GHSA-jw77-74vm-m56f/GHSA-jw77-74vm-m56f.json index 98b23490240..3fa500a398d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw77-74vm-m56f/GHSA-jw77-74vm-m56f.json +++ b/advisories/unreviewed/2022/05/GHSA-jw77-74vm-m56f/GHSA-jw77-74vm-m56f.json @@ -7,12 +7,8 @@ "CVE-2009-4384" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net Ez Poll Hoster (EPH) allow remote attackers to inject arbitrary web script or HTML via the (1) pid parameter in a code action to index.php and the (2) uid parameter in a view action to profile.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jw8g-h4gj-r462/GHSA-jw8g-h4gj-r462.json b/advisories/unreviewed/2022/05/GHSA-jw8g-h4gj-r462/GHSA-jw8g-h4gj-r462.json index d2c1a206055..ff05109d7af 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw8g-h4gj-r462/GHSA-jw8g-h4gj-r462.json +++ b/advisories/unreviewed/2022/05/GHSA-jw8g-h4gj-r462/GHSA-jw8g-h4gj-r462.json @@ -7,12 +7,8 @@ "CVE-2009-5036" ], "details": "traveler.exe in IBM Lotus Notes Traveler before 8.0.1.3 CF1 allows remote authenticated users to cause a denial of service (daemon crash) via a malformed invitation document in a sync operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jwvx-wpcq-87hw/GHSA-jwvx-wpcq-87hw.json b/advisories/unreviewed/2022/05/GHSA-jwvx-wpcq-87hw/GHSA-jwvx-wpcq-87hw.json index 9c1335ccbcf..21db0c0b287 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwvx-wpcq-87hw/GHSA-jwvx-wpcq-87hw.json +++ b/advisories/unreviewed/2022/05/GHSA-jwvx-wpcq-87hw/GHSA-jwvx-wpcq-87hw.json @@ -7,12 +7,8 @@ "CVE-2009-4819" ], "details": "Multiple unrestricted file upload vulnerabilities in upload.php in PHPhotoalbum allow remote attackers to execute arbitrary code by uploading a file with a (1) .php.pgif or (2) .php.pjpeg double extension, then accessing it via a direct request to the file in albums/userpics/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jxmr-j43h-4x9p/GHSA-jxmr-j43h-4x9p.json b/advisories/unreviewed/2022/05/GHSA-jxmr-j43h-4x9p/GHSA-jxmr-j43h-4x9p.json index 9692ce4b2de..917431b26dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxmr-j43h-4x9p/GHSA-jxmr-j43h-4x9p.json +++ b/advisories/unreviewed/2022/05/GHSA-jxmr-j43h-4x9p/GHSA-jxmr-j43h-4x9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m244-vv23-hg2f/GHSA-m244-vv23-hg2f.json b/advisories/unreviewed/2022/05/GHSA-m244-vv23-hg2f/GHSA-m244-vv23-hg2f.json index df6b04a9bfd..7432b89e5b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-m244-vv23-hg2f/GHSA-m244-vv23-hg2f.json +++ b/advisories/unreviewed/2022/05/GHSA-m244-vv23-hg2f/GHSA-m244-vv23-hg2f.json @@ -7,12 +7,8 @@ "CVE-2009-4778" ], "details": "Multiple unspecified vulnerabilities in the PDF distiller in the Attachment Service component in Research In Motion (RIM) BlackBerry Enterprise Server (BES) software 4.1.3 through 4.1.7 and 5.0.0, and BlackBerry Professional Software 4.1.4, allow user-assisted remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .pdf file attachment, a different vulnerability than CVE-2008-3246, CVE-2009-0176, CVE-2009-0219, CVE-2009-2643, and CVE-2009-2646.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m27g-4vw6-6c82/GHSA-m27g-4vw6-6c82.json b/advisories/unreviewed/2022/05/GHSA-m27g-4vw6-6c82/GHSA-m27g-4vw6-6c82.json index 0844f7655f8..baa18680e38 100644 --- a/advisories/unreviewed/2022/05/GHSA-m27g-4vw6-6c82/GHSA-m27g-4vw6-6c82.json +++ b/advisories/unreviewed/2022/05/GHSA-m27g-4vw6-6c82/GHSA-m27g-4vw6-6c82.json @@ -7,12 +7,8 @@ "CVE-2009-4270" ], "details": "Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file, as originally reported for debug logging code in gdevcups.c in the CUPS output driver.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2jp-mg23-fqpw/GHSA-m2jp-mg23-fqpw.json b/advisories/unreviewed/2022/05/GHSA-m2jp-mg23-fqpw/GHSA-m2jp-mg23-fqpw.json index 717c24d2177..0a2ad1eec23 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2jp-mg23-fqpw/GHSA-m2jp-mg23-fqpw.json +++ b/advisories/unreviewed/2022/05/GHSA-m2jp-mg23-fqpw/GHSA-m2jp-mg23-fqpw.json @@ -7,12 +7,8 @@ "CVE-2009-4693" ], "details": "Multiple PHP remote file inclusion vulnerabilities in GraFX MiniCWB 2.3.0 allow remote attackers to execute arbitrary PHP code via a URL in the LANG parameter to (1) en.inc.php, (2) hu.inc.php, (3) no.inc.php, (4) ro.inc.php, and (5) ru.inc.php in language/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m35w-9pj5-mjg4/GHSA-m35w-9pj5-mjg4.json b/advisories/unreviewed/2022/05/GHSA-m35w-9pj5-mjg4/GHSA-m35w-9pj5-mjg4.json index 58895d9c26a..2ffb5d39d01 100644 --- a/advisories/unreviewed/2022/05/GHSA-m35w-9pj5-mjg4/GHSA-m35w-9pj5-mjg4.json +++ b/advisories/unreviewed/2022/05/GHSA-m35w-9pj5-mjg4/GHSA-m35w-9pj5-mjg4.json @@ -7,12 +7,8 @@ "CVE-2009-4617" ], "details": "Multiple SQL injection vulnerabilities in Tourism Script Accommodation Hotel Booking Portal Script allow remote attackers to execute arbitrary SQL commands via the hotel_id parameter to (1) hotel.php, (2) details.php, (3) roomtypes.php, (4) photos.php, (5) map.php, (6) weather.php, (7) reviews.php, and (8) book.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m393-62mx-4p5j/GHSA-m393-62mx-4p5j.json b/advisories/unreviewed/2022/05/GHSA-m393-62mx-4p5j/GHSA-m393-62mx-4p5j.json index 1a1ec329612..7d87df75264 100644 --- a/advisories/unreviewed/2022/05/GHSA-m393-62mx-4p5j/GHSA-m393-62mx-4p5j.json +++ b/advisories/unreviewed/2022/05/GHSA-m393-62mx-4p5j/GHSA-m393-62mx-4p5j.json @@ -7,12 +7,8 @@ "CVE-2009-4549" ], "details": "Stack-based buffer overflow in A2 Media Player Pro 2.51 allows remote attackers to execute arbitrary code via a long string in a (1) .m3u or (2) .m3l playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3rc-2r5x-phwf/GHSA-m3rc-2r5x-phwf.json b/advisories/unreviewed/2022/05/GHSA-m3rc-2r5x-phwf/GHSA-m3rc-2r5x-phwf.json index 9fbd779ff0c..c7d256451fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3rc-2r5x-phwf/GHSA-m3rc-2r5x-phwf.json +++ b/advisories/unreviewed/2022/05/GHSA-m3rc-2r5x-phwf/GHSA-m3rc-2r5x-phwf.json @@ -7,12 +7,8 @@ "CVE-2009-4561" ], "details": "Multiple SQL injection vulnerabilities in Admin/index.php in WebLeague 2.2.0, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m43c-33mw-5x3w/GHSA-m43c-33mw-5x3w.json b/advisories/unreviewed/2022/05/GHSA-m43c-33mw-5x3w/GHSA-m43c-33mw-5x3w.json index db90eac1717..4b65521feaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-m43c-33mw-5x3w/GHSA-m43c-33mw-5x3w.json +++ b/advisories/unreviewed/2022/05/GHSA-m43c-33mw-5x3w/GHSA-m43c-33mw-5x3w.json @@ -7,12 +7,8 @@ "CVE-2009-4646" ], "details": "Static code injection vulnerability in the administrative web interface in Accellion Secure File Transfer Appliance allows remote authenticated administrators to inject arbitrary shell commands by appending them to a request to update the SNMP public community string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m4jh-qvf3-23v6/GHSA-m4jh-qvf3-23v6.json b/advisories/unreviewed/2022/05/GHSA-m4jh-qvf3-23v6/GHSA-m4jh-qvf3-23v6.json index 8d994738066..d84f34a8055 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4jh-qvf3-23v6/GHSA-m4jh-qvf3-23v6.json +++ b/advisories/unreviewed/2022/05/GHSA-m4jh-qvf3-23v6/GHSA-m4jh-qvf3-23v6.json @@ -7,12 +7,8 @@ "CVE-2009-4501" ], "details": "The zbx_get_next_field function in libs/zbxcommon/str.c in Zabbix Server before 1.6.8 allows remote attackers to cause a denial of service (crash) via a request that lacks expected separators, which triggers a NULL pointer dereference, as demonstrated using the Command keyword.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m583-ppqc-4wr2/GHSA-m583-ppqc-4wr2.json b/advisories/unreviewed/2022/05/GHSA-m583-ppqc-4wr2/GHSA-m583-ppqc-4wr2.json index 3e102b9e485..de5acdc8df3 100644 --- a/advisories/unreviewed/2022/05/GHSA-m583-ppqc-4wr2/GHSA-m583-ppqc-4wr2.json +++ b/advisories/unreviewed/2022/05/GHSA-m583-ppqc-4wr2/GHSA-m583-ppqc-4wr2.json @@ -7,12 +7,8 @@ "CVE-2009-4676" ], "details": "Stack-based buffer overflow in JetCast.exe 2.0.4.1109 in jetAudio 7.5.2 and 7.5.3.15 allows remote attackers to execute arbitrary code via a long title in a FLAC file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m59v-4j28-wrwm/GHSA-m59v-4j28-wrwm.json b/advisories/unreviewed/2022/05/GHSA-m59v-4j28-wrwm/GHSA-m59v-4j28-wrwm.json index 2190d89f8d7..2332a5f0084 100644 --- a/advisories/unreviewed/2022/05/GHSA-m59v-4j28-wrwm/GHSA-m59v-4j28-wrwm.json +++ b/advisories/unreviewed/2022/05/GHSA-m59v-4j28-wrwm/GHSA-m59v-4j28-wrwm.json @@ -7,12 +7,8 @@ "CVE-2009-4465" ], "details": "DeluxeBB 1.3 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain user and configuration information, log data, and gain administrative access via a direct request to scripts in (1) templates/ including (2) templates/deluxe/admincp/, (3) templates/corporate/admincp/, and (4) templates/blue/admincp/; (5) images/; (6) logs/ including (7) logs/cp.php; (8) wysiwyg/; (9) docs/; (10) classes/; (11) lang/; and (12) settings/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m5v6-9jrr-fjvr/GHSA-m5v6-9jrr-fjvr.json b/advisories/unreviewed/2022/05/GHSA-m5v6-9jrr-fjvr/GHSA-m5v6-9jrr-fjvr.json index 56841c85613..ae792201167 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5v6-9jrr-fjvr/GHSA-m5v6-9jrr-fjvr.json +++ b/advisories/unreviewed/2022/05/GHSA-m5v6-9jrr-fjvr/GHSA-m5v6-9jrr-fjvr.json @@ -7,12 +7,8 @@ "CVE-2009-4596" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in PHP Inventory 1.2 allows remote attackers to inject arbitrary web script or HTML via the sup_id parameter in a suppliers details action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m5v7-hfq5-mx8f/GHSA-m5v7-hfq5-mx8f.json b/advisories/unreviewed/2022/05/GHSA-m5v7-hfq5-mx8f/GHSA-m5v7-hfq5-mx8f.json index 5c83f3d2800..8cdeefab1fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5v7-hfq5-mx8f/GHSA-m5v7-hfq5-mx8f.json +++ b/advisories/unreviewed/2022/05/GHSA-m5v7-hfq5-mx8f/GHSA-m5v7-hfq5-mx8f.json @@ -7,12 +7,8 @@ "CVE-2009-4962" ], "details": "Stack-based buffer overflow in Fat Player 0.6b allows remote attackers to execute arbitrary code via a long string in a .wav file. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m67x-fp24-x89m/GHSA-m67x-fp24-x89m.json b/advisories/unreviewed/2022/05/GHSA-m67x-fp24-x89m/GHSA-m67x-fp24-x89m.json index 1f67bc5b4dd..69cca5f6781 100644 --- a/advisories/unreviewed/2022/05/GHSA-m67x-fp24-x89m/GHSA-m67x-fp24-x89m.json +++ b/advisories/unreviewed/2022/05/GHSA-m67x-fp24-x89m/GHSA-m67x-fp24-x89m.json @@ -7,12 +7,8 @@ "CVE-2009-4930" ], "details": "Cross-site scripting (XSS) vulnerability in the twbkwbis.P_SecurityQuestion (aka Change Security Question) page in SunGard Banner Student System 7.4 allows remote attackers to inject arbitrary web script or HTML via the New Question field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m74v-gr76-57rr/GHSA-m74v-gr76-57rr.json b/advisories/unreviewed/2022/05/GHSA-m74v-gr76-57rr/GHSA-m74v-gr76-57rr.json index ed93f2bb9b3..d1067a6b9ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-m74v-gr76-57rr/GHSA-m74v-gr76-57rr.json +++ b/advisories/unreviewed/2022/05/GHSA-m74v-gr76-57rr/GHSA-m74v-gr76-57rr.json @@ -7,12 +7,8 @@ "CVE-2009-4792" ], "details": "SQL injection vulnerability in includes/content/member_content.php in BandSite CMS 1.1.4 allows remote attackers to execute arbitrary SQL commands via the memid parameter to members.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m85p-59cq-jm25/GHSA-m85p-59cq-jm25.json b/advisories/unreviewed/2022/05/GHSA-m85p-59cq-jm25/GHSA-m85p-59cq-jm25.json index 271b96ae549..276defe9a45 100644 --- a/advisories/unreviewed/2022/05/GHSA-m85p-59cq-jm25/GHSA-m85p-59cq-jm25.json +++ b/advisories/unreviewed/2022/05/GHSA-m85p-59cq-jm25/GHSA-m85p-59cq-jm25.json @@ -7,12 +7,8 @@ "CVE-2009-4796" ], "details": "Multiple SQL injection vulnerabilities in the ExecuteQueries function in private/system/classes/listfactory.class.php in glFusion 1.1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) order and (2) direction parameters to search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m88m-hw33-738j/GHSA-m88m-hw33-738j.json b/advisories/unreviewed/2022/05/GHSA-m88m-hw33-738j/GHSA-m88m-hw33-738j.json index 33370ec0472..25830068033 100644 --- a/advisories/unreviewed/2022/05/GHSA-m88m-hw33-738j/GHSA-m88m-hw33-738j.json +++ b/advisories/unreviewed/2022/05/GHSA-m88m-hw33-738j/GHSA-m88m-hw33-738j.json @@ -7,12 +7,8 @@ "CVE-2009-4772" ], "details": "Unspecified vulnerability in the PayPal Website Payments Standard functionality in the Ubercart module 5.x before 5.x-1.9 and 6.x before 6.x-2.1 for Drupal, when a custom checkout completion message is enabled, allows attackers to obtain sensitive information via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m8j6-8cc3-4c4f/GHSA-m8j6-8cc3-4c4f.json b/advisories/unreviewed/2022/05/GHSA-m8j6-8cc3-4c4f/GHSA-m8j6-8cc3-4c4f.json index b3dc43b1c7a..431332d886b 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8j6-8cc3-4c4f/GHSA-m8j6-8cc3-4c4f.json +++ b/advisories/unreviewed/2022/05/GHSA-m8j6-8cc3-4c4f/GHSA-m8j6-8cc3-4c4f.json @@ -7,12 +7,8 @@ "CVE-2009-4582" ], "details": "SQL injection vulnerability in detail.php in the Dictionary module for XOOPS 2.0.18 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mc47-5crj-3q7q/GHSA-mc47-5crj-3q7q.json b/advisories/unreviewed/2022/05/GHSA-mc47-5crj-3q7q/GHSA-mc47-5crj-3q7q.json index 799f2410a8b..eed9bc65fad 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc47-5crj-3q7q/GHSA-mc47-5crj-3q7q.json +++ b/advisories/unreviewed/2022/05/GHSA-mc47-5crj-3q7q/GHSA-mc47-5crj-3q7q.json @@ -7,12 +7,8 @@ "CVE-2009-5055" ], "details": "Open Ticket Request System (OTRS) before 2.4.4 grants ticket access on the basis of single-digit substrings of the CustomerID value, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by visiting a ticket, as demonstrated by leveraging the CustomerID 12 account to read tickets that should be available only to CustomerID 1 or CustomerID 2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf4f-7h6g-2r9p/GHSA-mf4f-7h6g-2r9p.json b/advisories/unreviewed/2022/05/GHSA-mf4f-7h6g-2r9p/GHSA-mf4f-7h6g-2r9p.json index 1faa67fb81e..f27c9f6c697 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf4f-7h6g-2r9p/GHSA-mf4f-7h6g-2r9p.json +++ b/advisories/unreviewed/2022/05/GHSA-mf4f-7h6g-2r9p/GHSA-mf4f-7h6g-2r9p.json @@ -7,12 +7,8 @@ "CVE-2009-4698" ], "details": "Multiple SQL injection vulnerabilities in the Qas (aka Quas) module for XOOPS Celepar allow remote attackers to execute arbitrary SQL commands via the codigo parameter to (1) aviso.php and (2) imprimir.php, and the (3) cod_categoria parameter to categoria.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mfg5-rq9f-8g84/GHSA-mfg5-rq9f-8g84.json b/advisories/unreviewed/2022/05/GHSA-mfg5-rq9f-8g84/GHSA-mfg5-rq9f-8g84.json index 8a27dd81035..d0b63f53e83 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfg5-rq9f-8g84/GHSA-mfg5-rq9f-8g84.json +++ b/advisories/unreviewed/2022/05/GHSA-mfg5-rq9f-8g84/GHSA-mfg5-rq9f-8g84.json @@ -7,12 +7,8 @@ "CVE-2009-4576" ], "details": "SQL injection vulnerability in the BeeHeard (com_beeheard) component 1.x for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a suggestions action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mfjm-fvhg-mm7v/GHSA-mfjm-fvhg-mm7v.json b/advisories/unreviewed/2022/05/GHSA-mfjm-fvhg-mm7v/GHSA-mfjm-fvhg-mm7v.json index d64bcbf7709..ba9a613f6cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfjm-fvhg-mm7v/GHSA-mfjm-fvhg-mm7v.json +++ b/advisories/unreviewed/2022/05/GHSA-mfjm-fvhg-mm7v/GHSA-mfjm-fvhg-mm7v.json @@ -7,12 +7,8 @@ "CVE-2009-4999" ], "details": "Cross-site scripting (XSS) vulnerability in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 3.5.1 before 3.5.1-016 allows remote attackers to inject arbitrary web script or HTML via the Name field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mggp-8wp8-3vq4/GHSA-mggp-8wp8-3vq4.json b/advisories/unreviewed/2022/05/GHSA-mggp-8wp8-3vq4/GHSA-mggp-8wp8-3vq4.json index e3d5b608b05..b5d53daff1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mggp-8wp8-3vq4/GHSA-mggp-8wp8-3vq4.json +++ b/advisories/unreviewed/2022/05/GHSA-mggp-8wp8-3vq4/GHSA-mggp-8wp8-3vq4.json @@ -7,12 +7,8 @@ "CVE-2009-4820" ], "details": "Angelo-Emlak 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for veribaze/angelo.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mgr2-r3mh-6ffr/GHSA-mgr2-r3mh-6ffr.json b/advisories/unreviewed/2022/05/GHSA-mgr2-r3mh-6ffr/GHSA-mgr2-r3mh-6ffr.json index ec0650a1276..d40e9d3cd45 100644 --- a/advisories/unreviewed/2022/05/GHSA-mgr2-r3mh-6ffr/GHSA-mgr2-r3mh-6ffr.json +++ b/advisories/unreviewed/2022/05/GHSA-mgr2-r3mh-6ffr/GHSA-mgr2-r3mh-6ffr.json @@ -7,12 +7,8 @@ "CVE-2009-4451" ], "details": "Unrestricted file upload vulnerability in upper.php in kandalf upper 0.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in fileup/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mh69-qjjg-jfr8/GHSA-mh69-qjjg-jfr8.json b/advisories/unreviewed/2022/05/GHSA-mh69-qjjg-jfr8/GHSA-mh69-qjjg-jfr8.json index 3eedd34728f..dc924996956 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh69-qjjg-jfr8/GHSA-mh69-qjjg-jfr8.json +++ b/advisories/unreviewed/2022/05/GHSA-mh69-qjjg-jfr8/GHSA-mh69-qjjg-jfr8.json @@ -7,12 +7,8 @@ "CVE-2009-4749" ], "details": "Multiple SQL injection vulnerabilities in PHP Live! 3.2.1 and 3.2.2 allow remote attackers to execute arbitrary SQL commands via the x parameter to (1) message_box.php and (2) request.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mm9x-pr4p-52p6/GHSA-mm9x-pr4p-52p6.json b/advisories/unreviewed/2022/05/GHSA-mm9x-pr4p-52p6/GHSA-mm9x-pr4p-52p6.json index a811ef1308b..ca778b4ba05 100644 --- a/advisories/unreviewed/2022/05/GHSA-mm9x-pr4p-52p6/GHSA-mm9x-pr4p-52p6.json +++ b/advisories/unreviewed/2022/05/GHSA-mm9x-pr4p-52p6/GHSA-mm9x-pr4p-52p6.json @@ -7,12 +7,8 @@ "CVE-2009-4664" ], "details": "Firewall Builder 3.0.4, 3.0.5, and 3.0.6, when running on Linux, allows local users to gain privileges via a symlink attack on an unspecified temporary file that is created by the iptables script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mp9g-4rg9-8rcm/GHSA-mp9g-4rg9-8rcm.json b/advisories/unreviewed/2022/05/GHSA-mp9g-4rg9-8rcm/GHSA-mp9g-4rg9-8rcm.json index 50c537b2412..5fa2244a457 100644 --- a/advisories/unreviewed/2022/05/GHSA-mp9g-4rg9-8rcm/GHSA-mp9g-4rg9-8rcm.json +++ b/advisories/unreviewed/2022/05/GHSA-mp9g-4rg9-8rcm/GHSA-mp9g-4rg9-8rcm.json @@ -7,12 +7,8 @@ "CVE-2009-4803" ], "details": "SQL injection vulnerability in the Accessibility Glossary (a21glossary) extension 0.4.10 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqmg-cvgp-q64x/GHSA-mqmg-cvgp-q64x.json b/advisories/unreviewed/2022/05/GHSA-mqmg-cvgp-q64x/GHSA-mqmg-cvgp-q64x.json index f4b1428029b..9e937428f7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqmg-cvgp-q64x/GHSA-mqmg-cvgp-q64x.json +++ b/advisories/unreviewed/2022/05/GHSA-mqmg-cvgp-q64x/GHSA-mqmg-cvgp-q64x.json @@ -7,12 +7,8 @@ "CVE-2009-4853" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in JumpBox before 1.1.2 for Foswiki Wiki System allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mr4m-8vj4-5c74/GHSA-mr4m-8vj4-5c74.json b/advisories/unreviewed/2022/05/GHSA-mr4m-8vj4-5c74/GHSA-mr4m-8vj4-5c74.json index e39d5a35009..4742d7125d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr4m-8vj4-5c74/GHSA-mr4m-8vj4-5c74.json +++ b/advisories/unreviewed/2022/05/GHSA-mr4m-8vj4-5c74/GHSA-mr4m-8vj4-5c74.json @@ -7,12 +7,8 @@ "CVE-2009-4829" ], "details": "Cross-site scripting (XSS) vulnerability in the Automated Logout module 6.x-1.x before 6.x-1.7 and 6.x-2.x before 6.x-2.3 for Drupal allows remote authenticated users with administer autologout privileges to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrv5-8pgw-78v7/GHSA-mrv5-8pgw-78v7.json b/advisories/unreviewed/2022/05/GHSA-mrv5-8pgw-78v7/GHSA-mrv5-8pgw-78v7.json index bd15d334dec..9f8a058b1f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrv5-8pgw-78v7/GHSA-mrv5-8pgw-78v7.json +++ b/advisories/unreviewed/2022/05/GHSA-mrv5-8pgw-78v7/GHSA-mrv5-8pgw-78v7.json @@ -7,12 +7,8 @@ "CVE-2009-4574" ], "details": "SQL injection vulnerability in country_escorts.php in I-Escorts Directory Script allows remote attackers to execute arbitrary SQL commands via the country_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv4h-8wv7-q3gv/GHSA-mv4h-8wv7-q3gv.json b/advisories/unreviewed/2022/05/GHSA-mv4h-8wv7-q3gv/GHSA-mv4h-8wv7-q3gv.json index 6722040116b..c0438691eb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv4h-8wv7-q3gv/GHSA-mv4h-8wv7-q3gv.json +++ b/advisories/unreviewed/2022/05/GHSA-mv4h-8wv7-q3gv/GHSA-mv4h-8wv7-q3gv.json @@ -7,12 +7,8 @@ "CVE-2009-4313" ], "details": "ir32_32.dll 3.24.15.3 in the Indeo32 codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to cause a denial of service (heap corruption) or execute arbitrary code via malformed data in a stream in a media file, as demonstrated by an AVI file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mvc7-w8jp-vxcw/GHSA-mvc7-w8jp-vxcw.json b/advisories/unreviewed/2022/05/GHSA-mvc7-w8jp-vxcw/GHSA-mvc7-w8jp-vxcw.json index 6b51ed8b5f7..9b76b7d01bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvc7-w8jp-vxcw/GHSA-mvc7-w8jp-vxcw.json +++ b/advisories/unreviewed/2022/05/GHSA-mvc7-w8jp-vxcw/GHSA-mvc7-w8jp-vxcw.json @@ -7,12 +7,8 @@ "CVE-2009-4560" ], "details": "SQL injection vulnerability in profile.php in WebLeague 2.2.0 allows remote attackers to execute arbitrary SQL commands via the name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mw89-6xvw-v9h3/GHSA-mw89-6xvw-v9h3.json b/advisories/unreviewed/2022/05/GHSA-mw89-6xvw-v9h3/GHSA-mw89-6xvw-v9h3.json index 378a08cdc13..6d43dd0b0c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-mw89-6xvw-v9h3/GHSA-mw89-6xvw-v9h3.json +++ b/advisories/unreviewed/2022/05/GHSA-mw89-6xvw-v9h3/GHSA-mw89-6xvw-v9h3.json @@ -7,12 +7,8 @@ "CVE-2009-4494" ], "details": "AOLserver 4.5.1 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mxhp-c6qj-62vp/GHSA-mxhp-c6qj-62vp.json b/advisories/unreviewed/2022/05/GHSA-mxhp-c6qj-62vp/GHSA-mxhp-c6qj-62vp.json index 30da5daaeeb..5420bd60937 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxhp-c6qj-62vp/GHSA-mxhp-c6qj-62vp.json +++ b/advisories/unreviewed/2022/05/GHSA-mxhp-c6qj-62vp/GHSA-mxhp-c6qj-62vp.json @@ -7,12 +7,8 @@ "CVE-2009-4828" ], "details": "Cross-site request forgery (CSRF) vulnerability in administration/admins.php in Ad Manager Pro (aka AdManagerPro) 3.0 allows remote attackers to hijack the authentication of administrators for requests that create new administrative users via an admin_created action. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p246-42mx-3wpf/GHSA-p246-42mx-3wpf.json b/advisories/unreviewed/2022/05/GHSA-p246-42mx-3wpf/GHSA-p246-42mx-3wpf.json index 3af2bdbe974..857ea679b30 100644 --- a/advisories/unreviewed/2022/05/GHSA-p246-42mx-3wpf/GHSA-p246-42mx-3wpf.json +++ b/advisories/unreviewed/2022/05/GHSA-p246-42mx-3wpf/GHSA-p246-42mx-3wpf.json @@ -7,12 +7,8 @@ "CVE-2009-5038" ], "details": "Cisco IOS before 15.0(1)XA does not properly handle IRC traffic during a specific time period after an initial reload, which allows remote attackers to cause a denial of service (device reload) via an attempted connection to a certain IRC server, related to a \"corrupted magic value,\" aka Bug ID CSCso05336.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p257-45px-crmh/GHSA-p257-45px-crmh.json b/advisories/unreviewed/2022/05/GHSA-p257-45px-crmh/GHSA-p257-45px-crmh.json index dc82844d255..697ecc5adb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-p257-45px-crmh/GHSA-p257-45px-crmh.json +++ b/advisories/unreviewed/2022/05/GHSA-p257-45px-crmh/GHSA-p257-45px-crmh.json @@ -7,12 +7,8 @@ "CVE-2009-4543" ], "details": "PHP remote file inclusion vulnerability in index.php in Cromosoft Technologies Facil Helpdesk 2.3 Lite allows remote attackers to execute arbitrary PHP code via a URL in the lng parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2fc-jfrq-p5pm/GHSA-p2fc-jfrq-p5pm.json b/advisories/unreviewed/2022/05/GHSA-p2fc-jfrq-p5pm/GHSA-p2fc-jfrq-p5pm.json index d2849fc77fb..190f4f28e99 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2fc-jfrq-p5pm/GHSA-p2fc-jfrq-p5pm.json +++ b/advisories/unreviewed/2022/05/GHSA-p2fc-jfrq-p5pm/GHSA-p2fc-jfrq-p5pm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4qq-qmhg-hv76/GHSA-p4qq-qmhg-hv76.json b/advisories/unreviewed/2022/05/GHSA-p4qq-qmhg-hv76/GHSA-p4qq-qmhg-hv76.json index 0b69727dfed..e5dde795c31 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4qq-qmhg-hv76/GHSA-p4qq-qmhg-hv76.json +++ b/advisories/unreviewed/2022/05/GHSA-p4qq-qmhg-hv76/GHSA-p4qq-qmhg-hv76.json @@ -7,12 +7,8 @@ "CVE-2009-4346" ], "details": "Cross-site scripting (XSS) vulnerability in the Frontend news submitter with RTE (fe_rtenews) extension 1.4.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5f7-7c84-5p32/GHSA-p5f7-7c84-5p32.json b/advisories/unreviewed/2022/05/GHSA-p5f7-7c84-5p32/GHSA-p5f7-7c84-5p32.json index 5e06d28fc30..13f448be000 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5f7-7c84-5p32/GHSA-p5f7-7c84-5p32.json +++ b/advisories/unreviewed/2022/05/GHSA-p5f7-7c84-5p32/GHSA-p5f7-7c84-5p32.json @@ -7,12 +7,8 @@ "CVE-2009-4785" ], "details": "SQL injection vulnerability in the Quick News (com_quicknews) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the newsid parameter in a view_item action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5rq-gpgr-qg5m/GHSA-p5rq-gpgr-qg5m.json b/advisories/unreviewed/2022/05/GHSA-p5rq-gpgr-qg5m/GHSA-p5rq-gpgr-qg5m.json index b763499cb96..936d26867ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5rq-gpgr-qg5m/GHSA-p5rq-gpgr-qg5m.json +++ b/advisories/unreviewed/2022/05/GHSA-p5rq-gpgr-qg5m/GHSA-p5rq-gpgr-qg5m.json @@ -7,12 +7,8 @@ "CVE-2009-4529" ], "details": "InterVations NaviCOPA Web Server 3.0.1.2 and earlier allows remote attackers to obtain the source code for a web page via a trailing encoded space character in a URI, as demonstrated by /index.html%20 and /index.php%20 URIs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p6cm-wgmg-cc45/GHSA-p6cm-wgmg-cc45.json b/advisories/unreviewed/2022/05/GHSA-p6cm-wgmg-cc45/GHSA-p6cm-wgmg-cc45.json index c46fc5560a3..7cc4f3f2a26 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6cm-wgmg-cc45/GHSA-p6cm-wgmg-cc45.json +++ b/advisories/unreviewed/2022/05/GHSA-p6cm-wgmg-cc45/GHSA-p6cm-wgmg-cc45.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p7gc-v34v-9vc8/GHSA-p7gc-v34v-9vc8.json b/advisories/unreviewed/2022/05/GHSA-p7gc-v34v-9vc8/GHSA-p7gc-v34v-9vc8.json index 6656a3bbd19..9d5bea35785 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7gc-v34v-9vc8/GHSA-p7gc-v34v-9vc8.json +++ b/advisories/unreviewed/2022/05/GHSA-p7gc-v34v-9vc8/GHSA-p7gc-v34v-9vc8.json @@ -7,12 +7,8 @@ "CVE-2009-4632" ], "details": "oggparsevorbis.c in FFmpeg 0.5 does not properly perform certain pointer arithmetic, which might allow remote attackers to obtain sensitive memory contents and cause a denial of service via a crafted file that triggers an out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p83q-cg3p-77f9/GHSA-p83q-cg3p-77f9.json b/advisories/unreviewed/2022/05/GHSA-p83q-cg3p-77f9/GHSA-p83q-cg3p-77f9.json index 104fd279c18..c82fd52bdf7 100644 --- a/advisories/unreviewed/2022/05/GHSA-p83q-cg3p-77f9/GHSA-p83q-cg3p-77f9.json +++ b/advisories/unreviewed/2022/05/GHSA-p83q-cg3p-77f9/GHSA-p83q-cg3p-77f9.json @@ -7,12 +7,8 @@ "CVE-2009-5017" ], "details": "Mozilla Firefox before 3.6 Beta 3 does not properly handle overlong UTF-8 encoding, which makes it easier for remote attackers to bypass cross-site scripting (XSS) protection mechanisms via a crafted string, a different vulnerability than CVE-2010-1210.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p8jh-6v2f-m29j/GHSA-p8jh-6v2f-m29j.json b/advisories/unreviewed/2022/05/GHSA-p8jh-6v2f-m29j/GHSA-p8jh-6v2f-m29j.json index ecd4525646c..79abd3df9eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-p8jh-6v2f-m29j/GHSA-p8jh-6v2f-m29j.json +++ b/advisories/unreviewed/2022/05/GHSA-p8jh-6v2f-m29j/GHSA-p8jh-6v2f-m29j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9j2-vxmw-xx65/GHSA-p9j2-vxmw-xx65.json b/advisories/unreviewed/2022/05/GHSA-p9j2-vxmw-xx65/GHSA-p9j2-vxmw-xx65.json index 9c067c95967..e381e65892e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9j2-vxmw-xx65/GHSA-p9j2-vxmw-xx65.json +++ b/advisories/unreviewed/2022/05/GHSA-p9j2-vxmw-xx65/GHSA-p9j2-vxmw-xx65.json @@ -7,12 +7,8 @@ "CVE-2009-4614" ], "details": "Multiple PHP remote file inclusion vulnerabilities in Moa Gallery 1.2.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the MOA_PATH parameter to (1) _error_funcs.php, (2) _integrity_funcs.php, (3) _template_component_admin.php, (4) _template_component_gallery.php, (5) _template_parser.php, (6) mod_gallery_funcs.php, (7) mod_image_funcs.php, (8) mod_tag_funcs.php, (9) mod_tag_view.php, (10) mod_upgrade_funcs.php, (11) mod_user_funcs.php, (12) page_admin.php, (13) page_gallery_add.php, (14) page_gallery_view.php, (15) page_image_add.php, (16) page_image_view_full.php, (17) page_login.php, and (18) page_sitemap.php in sources/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9q3-w9jq-7p9j/GHSA-p9q3-w9jq-7p9j.json b/advisories/unreviewed/2022/05/GHSA-p9q3-w9jq-7p9j/GHSA-p9q3-w9jq-7p9j.json index b4cce422986..d4ac66d59ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9q3-w9jq-7p9j/GHSA-p9q3-w9jq-7p9j.json +++ b/advisories/unreviewed/2022/05/GHSA-p9q3-w9jq-7p9j/GHSA-p9q3-w9jq-7p9j.json @@ -7,12 +7,8 @@ "CVE-2009-4641" ], "details": "gnome-screensaver 2.28.0 does not resume adherence to its activation settings after an inhibiting application becomes unavailable on the session bus, which allows physically proximate attackers to access an unattended workstation on which screen locking had been intended.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pc68-pc7q-q2xv/GHSA-pc68-pc7q-q2xv.json b/advisories/unreviewed/2022/05/GHSA-pc68-pc7q-q2xv/GHSA-pc68-pc7q-q2xv.json index c7382786d36..62296bf6a6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc68-pc7q-q2xv/GHSA-pc68-pc7q-q2xv.json +++ b/advisories/unreviewed/2022/05/GHSA-pc68-pc7q-q2xv/GHSA-pc68-pc7q-q2xv.json @@ -7,12 +7,8 @@ "CVE-2009-4876" ], "details": "admin/cikkform.php in Netrix CMS 1.0 allows remote attackers to modify arbitrary pages via a direct request using the cid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pf37-jwfx-9v75/GHSA-pf37-jwfx-9v75.json b/advisories/unreviewed/2022/05/GHSA-pf37-jwfx-9v75/GHSA-pf37-jwfx-9v75.json index 0ae456c720f..8234a0f749c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf37-jwfx-9v75/GHSA-pf37-jwfx-9v75.json +++ b/advisories/unreviewed/2022/05/GHSA-pf37-jwfx-9v75/GHSA-pf37-jwfx-9v75.json @@ -7,12 +7,8 @@ "CVE-2009-4667" ], "details": "SQL injection vulnerability in form.php in WebMember 1.0 allows remote authenticated users to execute arbitrary SQL commands via the formID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pg38-h6qr-j754/GHSA-pg38-h6qr-j754.json b/advisories/unreviewed/2022/05/GHSA-pg38-h6qr-j754/GHSA-pg38-h6qr-j754.json index e0cfbd5e2b0..17172a55321 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg38-h6qr-j754/GHSA-pg38-h6qr-j754.json +++ b/advisories/unreviewed/2022/05/GHSA-pg38-h6qr-j754/GHSA-pg38-h6qr-j754.json @@ -7,12 +7,8 @@ "CVE-2009-4511" ], "details": "Multiple directory traversal vulnerabilities in the web administration interface on the TANDBERG Video Communication Server (VCS) before X5.1 allow remote authenticated users to read arbitrary files via a .. (dot dot) in the page parameter to (1) helppage.php or (2) user/helppage.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pg72-2h6q-pcjr/GHSA-pg72-2h6q-pcjr.json b/advisories/unreviewed/2022/05/GHSA-pg72-2h6q-pcjr/GHSA-pg72-2h6q-pcjr.json index c8e82761917..5b9afc6029e 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg72-2h6q-pcjr/GHSA-pg72-2h6q-pcjr.json +++ b/advisories/unreviewed/2022/05/GHSA-pg72-2h6q-pcjr/GHSA-pg72-2h6q-pcjr.json @@ -7,12 +7,8 @@ "CVE-2009-4320" ], "details": "Cross-site scripting (XSS) vulnerability in searchform.php in The Next Generation of Genealogy Sitebuilding (TNG) 7.1.2 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phcr-6gg8-p57g/GHSA-phcr-6gg8-p57g.json b/advisories/unreviewed/2022/05/GHSA-phcr-6gg8-p57g/GHSA-phcr-6gg8-p57g.json index 2f9a55152f7..aa9b9005849 100644 --- a/advisories/unreviewed/2022/05/GHSA-phcr-6gg8-p57g/GHSA-phcr-6gg8-p57g.json +++ b/advisories/unreviewed/2022/05/GHSA-phcr-6gg8-p57g/GHSA-phcr-6gg8-p57g.json @@ -7,12 +7,8 @@ "CVE-2009-4524" ], "details": "Cross-site scripting (XSS) vulnerability in the RealName module 6.x-1.x before 6.x-1.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via a realname (aka real name) element.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phf6-cc5j-c737/GHSA-phf6-cc5j-c737.json b/advisories/unreviewed/2022/05/GHSA-phf6-cc5j-c737/GHSA-phf6-cc5j-c737.json index b417aa4abf8..79e2ca6d603 100644 --- a/advisories/unreviewed/2022/05/GHSA-phf6-cc5j-c737/GHSA-phf6-cc5j-c737.json +++ b/advisories/unreviewed/2022/05/GHSA-phf6-cc5j-c737/GHSA-phf6-cc5j-c737.json @@ -7,12 +7,8 @@ "CVE-2009-4474" ], "details": "SQL injection vulnerability in the Mike de Boer zoom (com_zoom) component 2.0 for Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phq4-3v3g-6mh6/GHSA-phq4-3v3g-6mh6.json b/advisories/unreviewed/2022/05/GHSA-phq4-3v3g-6mh6/GHSA-phq4-3v3g-6mh6.json index 193e541607c..d09f068de12 100644 --- a/advisories/unreviewed/2022/05/GHSA-phq4-3v3g-6mh6/GHSA-phq4-3v3g-6mh6.json +++ b/advisories/unreviewed/2022/05/GHSA-phq4-3v3g-6mh6/GHSA-phq4-3v3g-6mh6.json @@ -7,12 +7,8 @@ "CVE-2009-5072" ], "details": "Memory leak in the ldap_explode_dn function in IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.61 (aka 6.0.0.8-TIV-ITDS-IF0003) allows remote authenticated users to cause a denial of service (memory consumption) via an empty string argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pj5p-vp8q-c483/GHSA-pj5p-vp8q-c483.json b/advisories/unreviewed/2022/05/GHSA-pj5p-vp8q-c483/GHSA-pj5p-vp8q-c483.json index 5c65ac83cad..1cf9fbfc7bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj5p-vp8q-c483/GHSA-pj5p-vp8q-c483.json +++ b/advisories/unreviewed/2022/05/GHSA-pj5p-vp8q-c483/GHSA-pj5p-vp8q-c483.json @@ -7,12 +7,8 @@ "CVE-2009-4804" ], "details": "Cross-site scripting (XSS) vulnerability in the Calendar Base (cal) extension before 1.1.1 for TYPO3, when Internet Explorer 6 is used, allows remote attackers to inject arbitrary web script or HTML via \"search parameters.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj74-pf28-5qjw/GHSA-pj74-pf28-5qjw.json b/advisories/unreviewed/2022/05/GHSA-pj74-pf28-5qjw/GHSA-pj74-pf28-5qjw.json index f50bcd493da..89202bbba75 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj74-pf28-5qjw/GHSA-pj74-pf28-5qjw.json +++ b/advisories/unreviewed/2022/05/GHSA-pj74-pf28-5qjw/GHSA-pj74-pf28-5qjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjfm-7x3f-qhfp/GHSA-pjfm-7x3f-qhfp.json b/advisories/unreviewed/2022/05/GHSA-pjfm-7x3f-qhfp/GHSA-pjfm-7x3f-qhfp.json index a02a9e4b19c..055b32d0afb 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjfm-7x3f-qhfp/GHSA-pjfm-7x3f-qhfp.json +++ b/advisories/unreviewed/2022/05/GHSA-pjfm-7x3f-qhfp/GHSA-pjfm-7x3f-qhfp.json @@ -7,12 +7,8 @@ "CVE-2009-4315" ], "details": "Directory traversal vulnerability in admin/ajaxsave.php in Nuggetz CMS 1.0, when magic_quotes_gpc is disabled, allows remote attackers to create or modify arbitrary files via a .. (dot dot) in the nugget parameter and a modified pagevalue parameter, as demonstrated by creating and accessing a .php file to execute arbitrary PHP code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjmv-2gvx-rph8/GHSA-pjmv-2gvx-rph8.json b/advisories/unreviewed/2022/05/GHSA-pjmv-2gvx-rph8/GHSA-pjmv-2gvx-rph8.json index 6a5884a5765..40a7c8c1cbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjmv-2gvx-rph8/GHSA-pjmv-2gvx-rph8.json +++ b/advisories/unreviewed/2022/05/GHSA-pjmv-2gvx-rph8/GHSA-pjmv-2gvx-rph8.json @@ -7,12 +7,8 @@ "CVE-2009-4363" ], "details": "Text_Filter/lib/Horde/Text/Filter/Xss.php in Horde Application Framework before 3.3.6, Horde Groupware before 1.2.5, and Horde Groupware Webmail Edition before 1.2.5 does not properly handle data: URIs, which allows remote attackers to conduct cross-site scripting (XSS) attacks via data:text/html values for the HREF attribute of an A element in an HTML e-mail message. NOTE: the vendor states that the issue is caused by \"an XSS vulnerability in Firefox browsers.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pm3r-x334-2847/GHSA-pm3r-x334-2847.json b/advisories/unreviewed/2022/05/GHSA-pm3r-x334-2847/GHSA-pm3r-x334-2847.json index 32dc2072fb2..a59028ee317 100644 --- a/advisories/unreviewed/2022/05/GHSA-pm3r-x334-2847/GHSA-pm3r-x334-2847.json +++ b/advisories/unreviewed/2022/05/GHSA-pm3r-x334-2847/GHSA-pm3r-x334-2847.json @@ -7,12 +7,8 @@ "CVE-2009-4538" ], "details": "drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a related issue to CVE-2009-4537.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -140,9 +136,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pp38-rv9h-g7rc/GHSA-pp38-rv9h-g7rc.json b/advisories/unreviewed/2022/05/GHSA-pp38-rv9h-g7rc/GHSA-pp38-rv9h-g7rc.json index 7e72b85fbaf..9e48c4f5cd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-pp38-rv9h-g7rc/GHSA-pp38-rv9h-g7rc.json +++ b/advisories/unreviewed/2022/05/GHSA-pp38-rv9h-g7rc/GHSA-pp38-rv9h-g7rc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppm8-x2wc-89pm/GHSA-ppm8-x2wc-89pm.json b/advisories/unreviewed/2022/05/GHSA-ppm8-x2wc-89pm/GHSA-ppm8-x2wc-89pm.json index a52041893cc..7349943c48c 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppm8-x2wc-89pm/GHSA-ppm8-x2wc-89pm.json +++ b/advisories/unreviewed/2022/05/GHSA-ppm8-x2wc-89pm/GHSA-ppm8-x2wc-89pm.json @@ -7,12 +7,8 @@ "CVE-2009-4603" ], "details": "Unspecified vulnerability in sapstartsrv.exe in the SAP Kernel 6.40, 7.00, 7.01, 7.10, 7.11, and 7.20, as used in SAP NetWeaver 7.x and SAP Web Application Server 6.x and 7.x, allows remote attackers to cause a denial of service (Management Console shutdown) via a crafted request. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq8m-58c6-gxvf/GHSA-pq8m-58c6-gxvf.json b/advisories/unreviewed/2022/05/GHSA-pq8m-58c6-gxvf/GHSA-pq8m-58c6-gxvf.json index 65ba7a5874c..02ce58f2b03 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq8m-58c6-gxvf/GHSA-pq8m-58c6-gxvf.json +++ b/advisories/unreviewed/2022/05/GHSA-pq8m-58c6-gxvf/GHSA-pq8m-58c6-gxvf.json @@ -7,12 +7,8 @@ "CVE-2009-4633" ], "details": "vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that modifies a loop counter and triggers a heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pqcg-jhr9-5gvm/GHSA-pqcg-jhr9-5gvm.json b/advisories/unreviewed/2022/05/GHSA-pqcg-jhr9-5gvm/GHSA-pqcg-jhr9-5gvm.json index 2a9c1f45e55..52cf1b6de08 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqcg-jhr9-5gvm/GHSA-pqcg-jhr9-5gvm.json +++ b/advisories/unreviewed/2022/05/GHSA-pqcg-jhr9-5gvm/GHSA-pqcg-jhr9-5gvm.json @@ -7,12 +7,8 @@ "CVE-2009-4684" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in EZodiak allows remote attackers to inject arbitrary web script or HTML via the sign parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqw5-3j56-h4rp/GHSA-pqw5-3j56-h4rp.json b/advisories/unreviewed/2022/05/GHSA-pqw5-3j56-h4rp/GHSA-pqw5-3j56-h4rp.json index 2b38527d57c..908d7276e39 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqw5-3j56-h4rp/GHSA-pqw5-3j56-h4rp.json +++ b/advisories/unreviewed/2022/05/GHSA-pqw5-3j56-h4rp/GHSA-pqw5-3j56-h4rp.json @@ -7,12 +7,8 @@ "CVE-2009-4343" ], "details": "Cross-site scripting (XSS) vulnerability in the Training Company Database (trainincdb) extension 0.4.7 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pr2j-hh93-wg3x/GHSA-pr2j-hh93-wg3x.json b/advisories/unreviewed/2022/05/GHSA-pr2j-hh93-wg3x/GHSA-pr2j-hh93-wg3x.json index 86ff318dda4..7d2283bd01b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr2j-hh93-wg3x/GHSA-pr2j-hh93-wg3x.json +++ b/advisories/unreviewed/2022/05/GHSA-pr2j-hh93-wg3x/GHSA-pr2j-hh93-wg3x.json @@ -7,12 +7,8 @@ "CVE-2009-4908" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in oBlog allow remote attackers to inject arbitrary web script or HTML via the (1) commentName, (2) commentEmail, (3) commentWeb, or (4) commentText parameter to article.php; and allow remote authenticated administrators to inject arbitrary web script or HTML via the (5) article_id or (6) title parameter to admin/write.php, the (7) category_id or (8) category_name parameter to admin/groups.php, the (9) blogroll_id or (10) title parameter to admin/blogroll.php, or the (11) blog_name or (12) tag_line parameter to admin/settings.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pr62-vp3j-v4jg/GHSA-pr62-vp3j-v4jg.json b/advisories/unreviewed/2022/05/GHSA-pr62-vp3j-v4jg/GHSA-pr62-vp3j-v4jg.json index ebdeec7ae9c..61d0e073007 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr62-vp3j-v4jg/GHSA-pr62-vp3j-v4jg.json +++ b/advisories/unreviewed/2022/05/GHSA-pr62-vp3j-v4jg/GHSA-pr62-vp3j-v4jg.json @@ -7,12 +7,8 @@ "CVE-2009-4736" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in CommonSense CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvcc-9pgw-68v2/GHSA-pvcc-9pgw-68v2.json b/advisories/unreviewed/2022/05/GHSA-pvcc-9pgw-68v2/GHSA-pvcc-9pgw-68v2.json index c6c620d6a6e..0a2cc463936 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvcc-9pgw-68v2/GHSA-pvcc-9pgw-68v2.json +++ b/advisories/unreviewed/2022/05/GHSA-pvcc-9pgw-68v2/GHSA-pvcc-9pgw-68v2.json @@ -7,12 +7,8 @@ "CVE-2009-4691" ], "details": "SQL injection vulnerability in addlink.php in Classified Linktrader Script allows remote attackers to execute arbitrary SQL commands via the slctCategories parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvpv-c389-c5f8/GHSA-pvpv-c389-c5f8.json b/advisories/unreviewed/2022/05/GHSA-pvpv-c389-c5f8/GHSA-pvpv-c389-c5f8.json index 7d1a93227b4..0f07159e349 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvpv-c389-c5f8/GHSA-pvpv-c389-c5f8.json +++ b/advisories/unreviewed/2022/05/GHSA-pvpv-c389-c5f8/GHSA-pvpv-c389-c5f8.json @@ -7,12 +7,8 @@ "CVE-2009-4537" ], "details": "drivers/net/r8169.c in the r8169 driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to (1) cause a denial of service (temporary network outage) via a packet with a crafted size, in conjunction with certain packets containing A characters and certain packets containing E characters; or (2) cause a denial of service (system crash) via a packet with a crafted size, in conjunction with certain packets containing '\\0' characters, related to the value of the status register and erroneous behavior associated with the RxMaxSize register. NOTE: this vulnerability exists because of an incorrect fix for CVE-2009-1389.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pw7p-2qch-x62p/GHSA-pw7p-2qch-x62p.json b/advisories/unreviewed/2022/05/GHSA-pw7p-2qch-x62p/GHSA-pw7p-2qch-x62p.json index 25cb197912f..e9046af60da 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw7p-2qch-x62p/GHSA-pw7p-2qch-x62p.json +++ b/advisories/unreviewed/2022/05/GHSA-pw7p-2qch-x62p/GHSA-pw7p-2qch-x62p.json @@ -7,12 +7,8 @@ "CVE-2009-4388" ], "details": "Cross-site scripting (XSS) vulnerability in the ListMan (nl_listman) extension 1.2.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pwc8-mq5g-v7jf/GHSA-pwc8-mq5g-v7jf.json b/advisories/unreviewed/2022/05/GHSA-pwc8-mq5g-v7jf/GHSA-pwc8-mq5g-v7jf.json index 787ca217a7d..b7f0942ea71 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwc8-mq5g-v7jf/GHSA-pwc8-mq5g-v7jf.json +++ b/advisories/unreviewed/2022/05/GHSA-pwc8-mq5g-v7jf/GHSA-pwc8-mq5g-v7jf.json @@ -7,12 +7,8 @@ "CVE-2009-4440" ], "details": "Directory Proxy Server (DPS) in Sun Java System Directory Server Enterprise Edition 6.0 through 6.3.1 does not properly handle multiple client connections within a short time window, which allows remote attackers to hijack the backend connection of an authenticated user, and obtain the privileges of this user, by making a client connection in opportunistic circumstances, related to \"long binds,\" aka Bug Ids 6828462 and 6823593.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-px96-54jm-q7g6/GHSA-px96-54jm-q7g6.json b/advisories/unreviewed/2022/05/GHSA-px96-54jm-q7g6/GHSA-px96-54jm-q7g6.json index baa6092c160..f418503d639 100644 --- a/advisories/unreviewed/2022/05/GHSA-px96-54jm-q7g6/GHSA-px96-54jm-q7g6.json +++ b/advisories/unreviewed/2022/05/GHSA-px96-54jm-q7g6/GHSA-px96-54jm-q7g6.json @@ -7,12 +7,8 @@ "CVE-2009-5014" ], "details": "The default quickstart configuration of TurboGears2 (aka tg2) before 2.0.2 has a weak cookie salt, which makes it easier for remote attackers to bypass repoze.who authentication via a forged authorization cookie, a related issue to CVE-2010-3852.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pxq2-55c8-f947/GHSA-pxq2-55c8-f947.json b/advisories/unreviewed/2022/05/GHSA-pxq2-55c8-f947/GHSA-pxq2-55c8-f947.json index 8732022c2ed..2850a5283fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxq2-55c8-f947/GHSA-pxq2-55c8-f947.json +++ b/advisories/unreviewed/2022/05/GHSA-pxq2-55c8-f947/GHSA-pxq2-55c8-f947.json @@ -7,12 +7,8 @@ "CVE-2009-5056" ], "details": "Open Ticket Request System (OTRS) before 2.4.0-beta2 does not properly enforce the move_into permission setting for a queue, which allows remote authenticated users to bypass intended access restrictions and read a ticket by watching this ticket, and then selecting the ticket from the watched-tickets list.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxvq-g9v7-jjwq/GHSA-pxvq-g9v7-jjwq.json b/advisories/unreviewed/2022/05/GHSA-pxvq-g9v7-jjwq/GHSA-pxvq-g9v7-jjwq.json index 10ea62e987a..9909c3ac22e 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxvq-g9v7-jjwq/GHSA-pxvq-g9v7-jjwq.json +++ b/advisories/unreviewed/2022/05/GHSA-pxvq-g9v7-jjwq/GHSA-pxvq-g9v7-jjwq.json @@ -7,12 +7,8 @@ "CVE-2009-4802" ], "details": "SQL injection vulnerability in the Flat Manager (flatmgr) extension before 1.9.16 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q35v-mm3j-6pqv/GHSA-q35v-mm3j-6pqv.json b/advisories/unreviewed/2022/05/GHSA-q35v-mm3j-6pqv/GHSA-q35v-mm3j-6pqv.json index 94c7e9af8f8..4b0b7f7a8f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-q35v-mm3j-6pqv/GHSA-q35v-mm3j-6pqv.json +++ b/advisories/unreviewed/2022/05/GHSA-q35v-mm3j-6pqv/GHSA-q35v-mm3j-6pqv.json @@ -7,12 +7,8 @@ "CVE-2009-5083" ], "details": "IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.2, when configured as an OpenID relying party, does not perform the expected login rejection upon receiving an OP-Identifier from an OpenID provider, which allows remote attackers to bypass authentication via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4f8-qp7h-p4c6/GHSA-q4f8-qp7h-p4c6.json b/advisories/unreviewed/2022/05/GHSA-q4f8-qp7h-p4c6/GHSA-q4f8-qp7h-p4c6.json index 09392d97456..88d2268fde1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4f8-qp7h-p4c6/GHSA-q4f8-qp7h-p4c6.json +++ b/advisories/unreviewed/2022/05/GHSA-q4f8-qp7h-p4c6/GHSA-q4f8-qp7h-p4c6.json @@ -7,12 +7,8 @@ "CVE-2009-4341" ], "details": "SQL injection vulnerability in the No indexed Search (no_indexed_search) extension 0.2.0 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4g7-ccjm-h2xx/GHSA-q4g7-ccjm-h2xx.json b/advisories/unreviewed/2022/05/GHSA-q4g7-ccjm-h2xx/GHSA-q4g7-ccjm-h2xx.json index 3c521ff28b4..bdd27d36aaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4g7-ccjm-h2xx/GHSA-q4g7-ccjm-h2xx.json +++ b/advisories/unreviewed/2022/05/GHSA-q4g7-ccjm-h2xx/GHSA-q4g7-ccjm-h2xx.json @@ -7,12 +7,8 @@ "CVE-2009-4881" ], "details": "Integer overflow in the __vstrfmon_l function in stdlib/strfmon_l.c in the strfmon implementation in the GNU C Library (aka glibc or libc6) before 2.10.1 allows context-dependent attackers to cause a denial of service (application crash) via a crafted format string, as demonstrated by the %99999999999999999999n string, a related issue to CVE-2008-1391.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4rw-2c6x-6r6x/GHSA-q4rw-2c6x-6r6x.json b/advisories/unreviewed/2022/05/GHSA-q4rw-2c6x-6r6x/GHSA-q4rw-2c6x-6r6x.json index 49da826d5f3..4fb0b818207 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4rw-2c6x-6r6x/GHSA-q4rw-2c6x-6r6x.json +++ b/advisories/unreviewed/2022/05/GHSA-q4rw-2c6x-6r6x/GHSA-q4rw-2c6x-6r6x.json @@ -7,12 +7,8 @@ "CVE-2009-4760" ], "details": "Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/guestbook.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q534-42fm-gqr8/GHSA-q534-42fm-gqr8.json b/advisories/unreviewed/2022/05/GHSA-q534-42fm-gqr8/GHSA-q534-42fm-gqr8.json index 431f4f5eed3..6ead6f72cf4 100644 --- a/advisories/unreviewed/2022/05/GHSA-q534-42fm-gqr8/GHSA-q534-42fm-gqr8.json +++ b/advisories/unreviewed/2022/05/GHSA-q534-42fm-gqr8/GHSA-q534-42fm-gqr8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q67f-5vj8-4424/GHSA-q67f-5vj8-4424.json b/advisories/unreviewed/2022/05/GHSA-q67f-5vj8-4424/GHSA-q67f-5vj8-4424.json index 8c6032bdb8a..93dda7030b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-q67f-5vj8-4424/GHSA-q67f-5vj8-4424.json +++ b/advisories/unreviewed/2022/05/GHSA-q67f-5vj8-4424/GHSA-q67f-5vj8-4424.json @@ -7,12 +7,8 @@ "CVE-2009-4806" ], "details": "admin/save_user.asp in Digital Interchange Document Library 1.0.1 does not require administrative authentication, which allows remote attackers to read or modify the administrator's credentials via unspecified vectors. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q6jc-6pjf-chf8/GHSA-q6jc-6pjf-chf8.json b/advisories/unreviewed/2022/05/GHSA-q6jc-6pjf-chf8/GHSA-q6jc-6pjf-chf8.json index 7f8f5aa8d48..71139944389 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6jc-6pjf-chf8/GHSA-q6jc-6pjf-chf8.json +++ b/advisories/unreviewed/2022/05/GHSA-q6jc-6pjf-chf8/GHSA-q6jc-6pjf-chf8.json @@ -7,12 +7,8 @@ "CVE-2009-4894" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in profile.php in PunBB before 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) password or (2) e-mail.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q6rw-377c-mgh7/GHSA-q6rw-377c-mgh7.json b/advisories/unreviewed/2022/05/GHSA-q6rw-377c-mgh7/GHSA-q6rw-377c-mgh7.json index d346afabdcf..d0707d19c39 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6rw-377c-mgh7/GHSA-q6rw-377c-mgh7.json +++ b/advisories/unreviewed/2022/05/GHSA-q6rw-377c-mgh7/GHSA-q6rw-377c-mgh7.json @@ -7,12 +7,8 @@ "CVE-2009-4463" ], "details": "Intellicom NetBiter WebSCADA devices use default passwords for the HICP network configuration service, which makes it easier for remote attackers to modify network settings and cause a denial of service. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation. NOTE: this issue was originally reported to be hard-coded passwords, not default passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q72m-wq66-3524/GHSA-q72m-wq66-3524.json b/advisories/unreviewed/2022/05/GHSA-q72m-wq66-3524/GHSA-q72m-wq66-3524.json index 6d0049adf60..966d16f4f8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q72m-wq66-3524/GHSA-q72m-wq66-3524.json +++ b/advisories/unreviewed/2022/05/GHSA-q72m-wq66-3524/GHSA-q72m-wq66-3524.json @@ -7,12 +7,8 @@ "CVE-2009-4653" ], "details": "Stack-based buffer overflow in the dhost module in Novell eDirectory 8.8 SP5 for Windows allows remote authenticated users to cause a denial of service (dhost.exe crash) and possibly execute arbitrary code via a long string to /dhost/modules?I:.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7jv-wwrp-8g73/GHSA-q7jv-wwrp-8g73.json b/advisories/unreviewed/2022/05/GHSA-q7jv-wwrp-8g73/GHSA-q7jv-wwrp-8g73.json index c38b11022db..acef7bbf264 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7jv-wwrp-8g73/GHSA-q7jv-wwrp-8g73.json +++ b/advisories/unreviewed/2022/05/GHSA-q7jv-wwrp-8g73/GHSA-q7jv-wwrp-8g73.json @@ -7,12 +7,8 @@ "CVE-2009-4696" ], "details": "SQL injection vulnerability in index.php in RadNICS Gold 5 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a view_forum action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q8rc-ff6c-rjc2/GHSA-q8rc-ff6c-rjc2.json b/advisories/unreviewed/2022/05/GHSA-q8rc-ff6c-rjc2/GHSA-q8rc-ff6c-rjc2.json index 46c0634c541..c798ddbc127 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8rc-ff6c-rjc2/GHSA-q8rc-ff6c-rjc2.json +++ b/advisories/unreviewed/2022/05/GHSA-q8rc-ff6c-rjc2/GHSA-q8rc-ff6c-rjc2.json @@ -7,12 +7,8 @@ "CVE-2009-4970" ], "details": "SQL injection vulnerability in the t3m_affiliate extension 0.5.0 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q994-gg9f-3g56/GHSA-q994-gg9f-3g56.json b/advisories/unreviewed/2022/05/GHSA-q994-gg9f-3g56/GHSA-q994-gg9f-3g56.json index baff929a69c..453879798bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-q994-gg9f-3g56/GHSA-q994-gg9f-3g56.json +++ b/advisories/unreviewed/2022/05/GHSA-q994-gg9f-3g56/GHSA-q994-gg9f-3g56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qc37-hv35-h42x/GHSA-qc37-hv35-h42x.json b/advisories/unreviewed/2022/05/GHSA-qc37-hv35-h42x/GHSA-qc37-hv35-h42x.json index 7cf2e182714..883c5e115fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc37-hv35-h42x/GHSA-qc37-hv35-h42x.json +++ b/advisories/unreviewed/2022/05/GHSA-qc37-hv35-h42x/GHSA-qc37-hv35-h42x.json @@ -7,12 +7,8 @@ "CVE-2009-4298" ], "details": "The LAMS module (mod/lams) for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 stores the (1) username, (2) firstname, and (3) lastname fields within the user table, which allows attackers to obtain user account information via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qcqh-fmx4-f33r/GHSA-qcqh-fmx4-f33r.json b/advisories/unreviewed/2022/05/GHSA-qcqh-fmx4-f33r/GHSA-qcqh-fmx4-f33r.json index a1eee2b4d60..b6c13680958 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcqh-fmx4-f33r/GHSA-qcqh-fmx4-f33r.json +++ b/advisories/unreviewed/2022/05/GHSA-qcqh-fmx4-f33r/GHSA-qcqh-fmx4-f33r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qf4p-9xmf-4whj/GHSA-qf4p-9xmf-4whj.json b/advisories/unreviewed/2022/05/GHSA-qf4p-9xmf-4whj/GHSA-qf4p-9xmf-4whj.json index 69b962caf5b..2b58d10e0b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf4p-9xmf-4whj/GHSA-qf4p-9xmf-4whj.json +++ b/advisories/unreviewed/2022/05/GHSA-qf4p-9xmf-4whj/GHSA-qf4p-9xmf-4whj.json @@ -7,12 +7,8 @@ "CVE-2009-4990" ], "details": "Cross-site scripting (XSS) vulnerability in the Webform report module 5.x and 6.x for Drupal allows remote attackers to inject arbitrary web script or HTML via a submission.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfpj-2m5v-p9gc/GHSA-qfpj-2m5v-p9gc.json b/advisories/unreviewed/2022/05/GHSA-qfpj-2m5v-p9gc/GHSA-qfpj-2m5v-p9gc.json index 9016e5f62de..206e045c842 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfpj-2m5v-p9gc/GHSA-qfpj-2m5v-p9gc.json +++ b/advisories/unreviewed/2022/05/GHSA-qfpj-2m5v-p9gc/GHSA-qfpj-2m5v-p9gc.json @@ -7,12 +7,8 @@ "CVE-2009-4870" ], "details": "Multiple SQL injection vulnerabilities in login.php in PHPCityPortal allow remote attackers to execute arbitrary SQL commands via the (1) req_username (aka Username) and (2) req_password (aka Password) parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhx7-j395-3hwr/GHSA-qhx7-j395-3hwr.json b/advisories/unreviewed/2022/05/GHSA-qhx7-j395-3hwr/GHSA-qhx7-j395-3hwr.json index 7f502ddb049..1e65564a806 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhx7-j395-3hwr/GHSA-qhx7-j395-3hwr.json +++ b/advisories/unreviewed/2022/05/GHSA-qhx7-j395-3hwr/GHSA-qhx7-j395-3hwr.json @@ -7,12 +7,8 @@ "CVE-2009-4745" ], "details": "Multiple SQL injection vulnerabilities in index.php in Dreamlevels DreamPoll 3.1 allow remote attackers to execute arbitrary SQL commands via the (1) sortField, (2) sortDesc, or (3) pageNumber parameter in a login action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj44-5xwc-3wgw/GHSA-qj44-5xwc-3wgw.json b/advisories/unreviewed/2022/05/GHSA-qj44-5xwc-3wgw/GHSA-qj44-5xwc-3wgw.json index db3ea66070d..e849d882bee 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj44-5xwc-3wgw/GHSA-qj44-5xwc-3wgw.json +++ b/advisories/unreviewed/2022/05/GHSA-qj44-5xwc-3wgw/GHSA-qj44-5xwc-3wgw.json @@ -7,12 +7,8 @@ "CVE-2009-5077" ], "details": "CRE Loaded before 6.2.14 allows remote attackers to bypass authentication and gain administrator privileges via vectors related to a modified PHP_SELF variable, which is not properly handled by (1) includes/application_top.php and (2) admin/includes/application_top.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjfc-4q6g-mh2f/GHSA-qjfc-4q6g-mh2f.json b/advisories/unreviewed/2022/05/GHSA-qjfc-4q6g-mh2f/GHSA-qjfc-4q6g-mh2f.json index dedc3952413..c1e1e4199ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjfc-4q6g-mh2f/GHSA-qjfc-4q6g-mh2f.json +++ b/advisories/unreviewed/2022/05/GHSA-qjfc-4q6g-mh2f/GHSA-qjfc-4q6g-mh2f.json @@ -7,12 +7,8 @@ "CVE-2009-4896" ], "details": "Multiple directory traversal vulnerabilities in the mlmmj-php-admin web interface for Mailing List Managing Made Joyful (mlmmj) 1.2.15 through 1.2.17 allow remote authenticated users to overwrite, create, or delete arbitrary files, or determine the existence of arbitrary directories, via a .. (dot dot) in a list name in a (1) edit or (2) save action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjh5-4v97-hr98/GHSA-qjh5-4v97-hr98.json b/advisories/unreviewed/2022/05/GHSA-qjh5-4v97-hr98/GHSA-qjh5-4v97-hr98.json index 5ef52336807..76a49568f8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjh5-4v97-hr98/GHSA-qjh5-4v97-hr98.json +++ b/advisories/unreviewed/2022/05/GHSA-qjh5-4v97-hr98/GHSA-qjh5-4v97-hr98.json @@ -7,12 +7,8 @@ "CVE-2009-4917" ], "details": "Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (device reload) via a high volume of SIP traffic, aka Bug ID CSCsr65901.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qm43-94fx-66hr/GHSA-qm43-94fx-66hr.json b/advisories/unreviewed/2022/05/GHSA-qm43-94fx-66hr/GHSA-qm43-94fx-66hr.json index d18934835d3..79420405066 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm43-94fx-66hr/GHSA-qm43-94fx-66hr.json +++ b/advisories/unreviewed/2022/05/GHSA-qm43-94fx-66hr/GHSA-qm43-94fx-66hr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qm85-wjm8-m9v8/GHSA-qm85-wjm8-m9v8.json b/advisories/unreviewed/2022/05/GHSA-qm85-wjm8-m9v8/GHSA-qm85-wjm8-m9v8.json index ea2790f5c1e..e0a914dd366 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm85-wjm8-m9v8/GHSA-qm85-wjm8-m9v8.json +++ b/advisories/unreviewed/2022/05/GHSA-qm85-wjm8-m9v8/GHSA-qm85-wjm8-m9v8.json @@ -7,12 +7,8 @@ "CVE-2009-4378" ], "details": "The IPMI dissector in Wireshark 1.2.0 through 1.2.4 on Windows allows remote attackers to cause a denial of service (crash) via a crafted packet, related to \"formatting a date/time using strftime.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmqx-8v6p-c62c/GHSA-qmqx-8v6p-c62c.json b/advisories/unreviewed/2022/05/GHSA-qmqx-8v6p-c62c/GHSA-qmqx-8v6p-c62c.json index 079a9a17b26..0098675b912 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmqx-8v6p-c62c/GHSA-qmqx-8v6p-c62c.json +++ b/advisories/unreviewed/2022/05/GHSA-qmqx-8v6p-c62c/GHSA-qmqx-8v6p-c62c.json @@ -7,12 +7,8 @@ "CVE-2009-5093" ], "details": "Directory traversal vulnerability in gastbuch.php in Gästebuch (Gastebuch) 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the start parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qp9h-2jr7-qgg9/GHSA-qp9h-2jr7-qgg9.json b/advisories/unreviewed/2022/05/GHSA-qp9h-2jr7-qgg9/GHSA-qp9h-2jr7-qgg9.json index 37b13943352..5ac7d074783 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp9h-2jr7-qgg9/GHSA-qp9h-2jr7-qgg9.json +++ b/advisories/unreviewed/2022/05/GHSA-qp9h-2jr7-qgg9/GHSA-qp9h-2jr7-qgg9.json @@ -7,12 +7,8 @@ "CVE-2009-4966" ], "details": "SQL injection vulnerability in the AST ZipCodeSearch (ast_addresszipsearch) extension 0.5.4 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qqr4-448h-mfpg/GHSA-qqr4-448h-mfpg.json b/advisories/unreviewed/2022/05/GHSA-qqr4-448h-mfpg/GHSA-qqr4-448h-mfpg.json index 29edf4f6ec0..81cff24ab82 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqr4-448h-mfpg/GHSA-qqr4-448h-mfpg.json +++ b/advisories/unreviewed/2022/05/GHSA-qqr4-448h-mfpg/GHSA-qqr4-448h-mfpg.json @@ -7,12 +7,8 @@ "CVE-2009-4383" ], "details": "Directory traversal vulnerability in Pforum.php in Rocomotion P forum before 1.28 allows remote attackers to read arbitrary files via directory traversal sequences in unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrm3-2wv2-w4qv/GHSA-qrm3-2wv2-w4qv.json b/advisories/unreviewed/2022/05/GHSA-qrm3-2wv2-w4qv/GHSA-qrm3-2wv2-w4qv.json index ed00faaf74d..4f232b92440 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrm3-2wv2-w4qv/GHSA-qrm3-2wv2-w4qv.json +++ b/advisories/unreviewed/2022/05/GHSA-qrm3-2wv2-w4qv/GHSA-qrm3-2wv2-w4qv.json @@ -7,12 +7,8 @@ "CVE-2009-4640" ], "details": "Array index error in vorbis_dec.c in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Vorbis file that triggers an out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qvcj-459w-56gw/GHSA-qvcj-459w-56gw.json b/advisories/unreviewed/2022/05/GHSA-qvcj-459w-56gw/GHSA-qvcj-459w-56gw.json index c80b1487ebf..96845052818 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvcj-459w-56gw/GHSA-qvcj-459w-56gw.json +++ b/advisories/unreviewed/2022/05/GHSA-qvcj-459w-56gw/GHSA-qvcj-459w-56gw.json @@ -7,12 +7,8 @@ "CVE-2009-4879" ], "details": "The Identity Server in Novell Access Manager before 3.1 SP1 allows attackers with disabled Active Directory accounts to authenticate using X.509 authentication, which bypasses intended access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qvmw-935f-m857/GHSA-qvmw-935f-m857.json b/advisories/unreviewed/2022/05/GHSA-qvmw-935f-m857/GHSA-qvmw-935f-m857.json index ddd512cf84a..d8dc26b8c90 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvmw-935f-m857/GHSA-qvmw-935f-m857.json +++ b/advisories/unreviewed/2022/05/GHSA-qvmw-935f-m857/GHSA-qvmw-935f-m857.json @@ -7,12 +7,8 @@ "CVE-2009-4937" ], "details": "Cross-site scripting (XSS) vulnerability in Small Pirate (SPirate) 2.1 allows remote attackers to inject arbitrary web script or HTML via an onmouseover action in an img BBCode tag within a url BBCode tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qvvm-q759-c698/GHSA-qvvm-q759-c698.json b/advisories/unreviewed/2022/05/GHSA-qvvm-q759-c698/GHSA-qvvm-q759-c698.json index b34a302093b..0587f5ea8f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvvm-q759-c698/GHSA-qvvm-q759-c698.json +++ b/advisories/unreviewed/2022/05/GHSA-qvvm-q759-c698/GHSA-qvvm-q759-c698.json @@ -7,12 +7,8 @@ "CVE-2009-4837" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[1] parameter to base/base_qry_main.php, or the time[0][1] parameter to (2) base/base_stat_alerts.php or (3) base/base_stat_uaddr.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qxw9-5977-hjmh/GHSA-qxw9-5977-hjmh.json b/advisories/unreviewed/2022/05/GHSA-qxw9-5977-hjmh/GHSA-qxw9-5977-hjmh.json index 6ef7113c70e..5011b2a8b14 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxw9-5977-hjmh/GHSA-qxw9-5977-hjmh.json +++ b/advisories/unreviewed/2022/05/GHSA-qxw9-5977-hjmh/GHSA-qxw9-5977-hjmh.json @@ -7,12 +7,8 @@ "CVE-2009-4448" ], "details": "inc/functions_time.php in MyBB (aka MyBulletinBoard) 1.4.10, and possibly earlier versions, allows remote attackers to cause a denial of service (CPU consumption) via a crafted request with a large year value, which triggers a long loop, as reachable through member.php and possibly other vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r33g-v22q-5gfw/GHSA-r33g-v22q-5gfw.json b/advisories/unreviewed/2022/05/GHSA-r33g-v22q-5gfw/GHSA-r33g-v22q-5gfw.json index 6fbf4c83d66..8dfc4063079 100644 --- a/advisories/unreviewed/2022/05/GHSA-r33g-v22q-5gfw/GHSA-r33g-v22q-5gfw.json +++ b/advisories/unreviewed/2022/05/GHSA-r33g-v22q-5gfw/GHSA-r33g-v22q-5gfw.json @@ -7,12 +7,8 @@ "CVE-2009-4682" ], "details": "Cross-site scripting (XSS) vulnerability in vote.php in Good/Bad Vote allows remote attackers to inject arbitrary web script or HTML via the id parameter in a vote action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3jv-g8x2-g2gc/GHSA-r3jv-g8x2-g2gc.json b/advisories/unreviewed/2022/05/GHSA-r3jv-g8x2-g2gc/GHSA-r3jv-g8x2-g2gc.json index 3c9cc72b1ff..9d48be8dc37 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3jv-g8x2-g2gc/GHSA-r3jv-g8x2-g2gc.json +++ b/advisories/unreviewed/2022/05/GHSA-r3jv-g8x2-g2gc/GHSA-r3jv-g8x2-g2gc.json @@ -7,12 +7,8 @@ "CVE-2009-4562" ], "details": "Cross-site scripting (XSS) vulnerability in zp-core/admin.php in Zenphoto 1.2.5 allows remote attackers to inject arbitrary web script or HTML via the from parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3rf-6jh5-j5q9/GHSA-r3rf-6jh5-j5q9.json b/advisories/unreviewed/2022/05/GHSA-r3rf-6jh5-j5q9/GHSA-r3rf-6jh5-j5q9.json index c4319c53a93..0435c636cf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3rf-6jh5-j5q9/GHSA-r3rf-6jh5-j5q9.json +++ b/advisories/unreviewed/2022/05/GHSA-r3rf-6jh5-j5q9/GHSA-r3rf-6jh5-j5q9.json @@ -7,12 +7,8 @@ "CVE-2009-4797" ], "details": "SQL injection vulnerability in browse.php in JobHut 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the pk parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r52w-77wx-rpqg/GHSA-r52w-77wx-rpqg.json b/advisories/unreviewed/2022/05/GHSA-r52w-77wx-rpqg/GHSA-r52w-77wx-rpqg.json index 5856fbd7091..4c4ec983076 100644 --- a/advisories/unreviewed/2022/05/GHSA-r52w-77wx-rpqg/GHSA-r52w-77wx-rpqg.json +++ b/advisories/unreviewed/2022/05/GHSA-r52w-77wx-rpqg/GHSA-r52w-77wx-rpqg.json @@ -7,12 +7,8 @@ "CVE-2009-4854" ], "details": "addons/import.php in TalkBack 2.3.14 allows remote attackers to execute arbitrary commands via the result parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r585-xf77-67hm/GHSA-r585-xf77-67hm.json b/advisories/unreviewed/2022/05/GHSA-r585-xf77-67hm/GHSA-r585-xf77-67hm.json index cc9a5520bb2..3be26c25e90 100644 --- a/advisories/unreviewed/2022/05/GHSA-r585-xf77-67hm/GHSA-r585-xf77-67hm.json +++ b/advisories/unreviewed/2022/05/GHSA-r585-xf77-67hm/GHSA-r585-xf77-67hm.json @@ -7,12 +7,8 @@ "CVE-2009-4817" ], "details": "Unrestricted file upload vulnerability in Element-IT Ultimate Uploader 1.3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r665-jpxw-qm8g/GHSA-r665-jpxw-qm8g.json b/advisories/unreviewed/2022/05/GHSA-r665-jpxw-qm8g/GHSA-r665-jpxw-qm8g.json index 53e15dcdfc4..efbef02936a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r665-jpxw-qm8g/GHSA-r665-jpxw-qm8g.json +++ b/advisories/unreviewed/2022/05/GHSA-r665-jpxw-qm8g/GHSA-r665-jpxw-qm8g.json @@ -7,12 +7,8 @@ "CVE-2009-4989" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in AJ Auction Pro OOPD 3.0 allows remote attackers to inject arbitrary web script or HTML via the txtkeyword parameter in a search action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r667-mpf5-fqrf/GHSA-r667-mpf5-fqrf.json b/advisories/unreviewed/2022/05/GHSA-r667-mpf5-fqrf/GHSA-r667-mpf5-fqrf.json index 8b0eba26f31..8113a5fb4c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-r667-mpf5-fqrf/GHSA-r667-mpf5-fqrf.json +++ b/advisories/unreviewed/2022/05/GHSA-r667-mpf5-fqrf/GHSA-r667-mpf5-fqrf.json @@ -7,12 +7,8 @@ "CVE-2009-4521" ], "details": "Cross-site scripting (XSS) vulnerability in birt-viewer/run in Eclipse Business Intelligence and Reporting Tools (BIRT) before 2.5.0, as used in KonaKart and other products, allows remote attackers to inject arbitrary web script or HTML via the __report parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r6fv-qmrc-3h24/GHSA-r6fv-qmrc-3h24.json b/advisories/unreviewed/2022/05/GHSA-r6fv-qmrc-3h24/GHSA-r6fv-qmrc-3h24.json index e122d56c113..407c43418ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6fv-qmrc-3h24/GHSA-r6fv-qmrc-3h24.json +++ b/advisories/unreviewed/2022/05/GHSA-r6fv-qmrc-3h24/GHSA-r6fv-qmrc-3h24.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r823-p2x5-rpgx/GHSA-r823-p2x5-rpgx.json b/advisories/unreviewed/2022/05/GHSA-r823-p2x5-rpgx/GHSA-r823-p2x5-rpgx.json index a5d254322e6..5d816102921 100644 --- a/advisories/unreviewed/2022/05/GHSA-r823-p2x5-rpgx/GHSA-r823-p2x5-rpgx.json +++ b/advisories/unreviewed/2022/05/GHSA-r823-p2x5-rpgx/GHSA-r823-p2x5-rpgx.json @@ -7,12 +7,8 @@ "CVE-2009-4931" ], "details": "Stack-based buffer overflow in Groovy Media Player 1.1.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a .m3u playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r934-wgxg-jx75/GHSA-r934-wgxg-jx75.json b/advisories/unreviewed/2022/05/GHSA-r934-wgxg-jx75/GHSA-r934-wgxg-jx75.json index 2be0964bdfb..621a87704b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-r934-wgxg-jx75/GHSA-r934-wgxg-jx75.json +++ b/advisories/unreviewed/2022/05/GHSA-r934-wgxg-jx75/GHSA-r934-wgxg-jx75.json @@ -7,12 +7,8 @@ "CVE-2009-4337" ], "details": "SQL injection vulnerability in the Diocese of Portsmouth Calendar (pd_calendar) extension 0.4.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors, a different issue than CVE-2008-6691.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9xr-rjgc-3q5h/GHSA-r9xr-rjgc-3q5h.json b/advisories/unreviewed/2022/05/GHSA-r9xr-rjgc-3q5h/GHSA-r9xr-rjgc-3q5h.json index 94fe20a36a9..537ad8436cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9xr-rjgc-3q5h/GHSA-r9xr-rjgc-3q5h.json +++ b/advisories/unreviewed/2022/05/GHSA-r9xr-rjgc-3q5h/GHSA-r9xr-rjgc-3q5h.json @@ -7,12 +7,8 @@ "CVE-2009-4484" ], "details": "Multiple stack-based buffer overflows in the CertDecoder::GetName function in src/asn.cpp in TaoCrypt in yaSSL before 1.9.9, as used in mysqld in MySQL 5.0.x before 5.0.90, MySQL 5.1.x before 5.1.43, MySQL 5.5.x through 5.5.0-m2, and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and daemon crash) by establishing an SSL connection and sending an X.509 client certificate with a crafted name field, as demonstrated by mysql_overflow1.py and the vd_mysql5 module in VulnDisco Pack Professional 8.11. NOTE: this was originally reported for MySQL 5.0.51a.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc3g-7pqh-hhrm/GHSA-rc3g-7pqh-hhrm.json b/advisories/unreviewed/2022/05/GHSA-rc3g-7pqh-hhrm/GHSA-rc3g-7pqh-hhrm.json index 74ddc1a7902..f7218fed00e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc3g-7pqh-hhrm/GHSA-rc3g-7pqh-hhrm.json +++ b/advisories/unreviewed/2022/05/GHSA-rc3g-7pqh-hhrm/GHSA-rc3g-7pqh-hhrm.json @@ -7,12 +7,8 @@ "CVE-2009-4852" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in SemanticScuttle before 0.94.1 allow remote attackers to inject arbitrary web script or HTML via the sort parameter to index.php, and other unspecified vectors, a different issue than CVE-2008-6113. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc4w-p9f6-7c7q/GHSA-rc4w-p9f6-7c7q.json b/advisories/unreviewed/2022/05/GHSA-rc4w-p9f6-7c7q/GHSA-rc4w-p9f6-7c7q.json index 975d34541ed..78ffa779a0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc4w-p9f6-7c7q/GHSA-rc4w-p9f6-7c7q.json +++ b/advisories/unreviewed/2022/05/GHSA-rc4w-p9f6-7c7q/GHSA-rc4w-p9f6-7c7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcpp-5j9j-5g7r/GHSA-rcpp-5j9j-5g7r.json b/advisories/unreviewed/2022/05/GHSA-rcpp-5j9j-5g7r/GHSA-rcpp-5j9j-5g7r.json index b8807fbb6d6..06f55af1ec8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcpp-5j9j-5g7r/GHSA-rcpp-5j9j-5g7r.json +++ b/advisories/unreviewed/2022/05/GHSA-rcpp-5j9j-5g7r/GHSA-rcpp-5j9j-5g7r.json @@ -7,12 +7,8 @@ "CVE-2009-4660" ], "details": "Stack-based buffer overflow in the AntServer Module (AntServer.exe) in BigAnt IM Server 2.50 allows remote attackers to execute arbitrary code via a long GET request to TCP port 6660.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcvp-p5h6-67hw/GHSA-rcvp-p5h6-67hw.json b/advisories/unreviewed/2022/05/GHSA-rcvp-p5h6-67hw/GHSA-rcvp-p5h6-67hw.json index 837834d5dbc..cee28405f44 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcvp-p5h6-67hw/GHSA-rcvp-p5h6-67hw.json +++ b/advisories/unreviewed/2022/05/GHSA-rcvp-p5h6-67hw/GHSA-rcvp-p5h6-67hw.json @@ -7,12 +7,8 @@ "CVE-2009-5031" ], "details": "ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request parameter in the Content-Disposition field of a request with a multipart/form-data Content-Type header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rf96-gfr7-rpj9/GHSA-rf96-gfr7-rpj9.json b/advisories/unreviewed/2022/05/GHSA-rf96-gfr7-rpj9/GHSA-rf96-gfr7-rpj9.json index 77b8b6cf57c..8f510a9bbff 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf96-gfr7-rpj9/GHSA-rf96-gfr7-rpj9.json +++ b/advisories/unreviewed/2022/05/GHSA-rf96-gfr7-rpj9/GHSA-rf96-gfr7-rpj9.json @@ -7,12 +7,8 @@ "CVE-2009-4907" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in oBlog allow remote attackers to hijack the authentication of administrators for requests that (1) change the admin password, (2) force an admin logout, (3) change the visibility of posts, (4) remove links, and (5) change the name fields of a blog.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rfpj-4fj4-rm47/GHSA-rfpj-4fj4-rm47.json b/advisories/unreviewed/2022/05/GHSA-rfpj-4fj4-rm47/GHSA-rfpj-4fj4-rm47.json index 6ca663c0351..2beddb57162 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfpj-4fj4-rm47/GHSA-rfpj-4fj4-rm47.json +++ b/advisories/unreviewed/2022/05/GHSA-rfpj-4fj4-rm47/GHSA-rfpj-4fj4-rm47.json @@ -7,12 +7,8 @@ "CVE-2009-4835" ], "details": "The (1) htk_read_header, (2) alaw_init, (3) ulaw_init, (4) pcm_init, (5) float32_init, and (6) sds_read_header functions in libsndfile 1.0.20 allow context-dependent attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted audio file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rg97-f569-fgwp/GHSA-rg97-f569-fgwp.json b/advisories/unreviewed/2022/05/GHSA-rg97-f569-fgwp/GHSA-rg97-f569-fgwp.json index 2134c85d221..ab0540994e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg97-f569-fgwp/GHSA-rg97-f569-fgwp.json +++ b/advisories/unreviewed/2022/05/GHSA-rg97-f569-fgwp/GHSA-rg97-f569-fgwp.json @@ -7,12 +7,8 @@ "CVE-2009-4840" ], "details": "Heap-based buffer overflow in the IAManager ActiveX control in IAManager.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbitrary code via a long argument to the SetIAPlayerName method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rgrv-jr8m-xv3m/GHSA-rgrv-jr8m-xv3m.json b/advisories/unreviewed/2022/05/GHSA-rgrv-jr8m-xv3m/GHSA-rgrv-jr8m-xv3m.json index 7cdf7ed71ca..39cfbf5da85 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgrv-jr8m-xv3m/GHSA-rgrv-jr8m-xv3m.json +++ b/advisories/unreviewed/2022/05/GHSA-rgrv-jr8m-xv3m/GHSA-rgrv-jr8m-xv3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rgxv-fm67-cjx6/GHSA-rgxv-fm67-cjx6.json b/advisories/unreviewed/2022/05/GHSA-rgxv-fm67-cjx6/GHSA-rgxv-fm67-cjx6.json index 662efcadd4f..15632e1f8bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgxv-fm67-cjx6/GHSA-rgxv-fm67-cjx6.json +++ b/advisories/unreviewed/2022/05/GHSA-rgxv-fm67-cjx6/GHSA-rgxv-fm67-cjx6.json @@ -7,12 +7,8 @@ "CVE-2009-4868" ], "details": "Cross-site scripting (XSS) vulnerability in Hitron Soft Answer Me 1.0 allows remote attackers to inject arbitrary web script or HTML via the q_id parameter to the answers script (aka answers.php). NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhp6-7wwp-4vx6/GHSA-rhp6-7wwp-4vx6.json b/advisories/unreviewed/2022/05/GHSA-rhp6-7wwp-4vx6/GHSA-rhp6-7wwp-4vx6.json index 60fe69a1267..c0164eb6d38 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhp6-7wwp-4vx6/GHSA-rhp6-7wwp-4vx6.json +++ b/advisories/unreviewed/2022/05/GHSA-rhp6-7wwp-4vx6/GHSA-rhp6-7wwp-4vx6.json @@ -7,12 +7,8 @@ "CVE-2009-4620" ], "details": "SQL injection vulnerability in the Joomloc (com_joomloc) component 1.0 for Joomla allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit task to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhv6-xp2q-4xgx/GHSA-rhv6-xp2q-4xgx.json b/advisories/unreviewed/2022/05/GHSA-rhv6-xp2q-4xgx/GHSA-rhv6-xp2q-4xgx.json index 5d3d5ba826c..c5e7ba1d25b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhv6-xp2q-4xgx/GHSA-rhv6-xp2q-4xgx.json +++ b/advisories/unreviewed/2022/05/GHSA-rhv6-xp2q-4xgx/GHSA-rhv6-xp2q-4xgx.json @@ -7,12 +7,8 @@ "CVE-2009-4942" ], "details": "Cross-site request forgery (CSRF) vulnerability in ACollab 1.2 allows remote attackers to hijack the authentication of arbitrary users for requests that add personal agenda items.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj2w-v2g6-j7j6/GHSA-rj2w-v2g6-j7j6.json b/advisories/unreviewed/2022/05/GHSA-rj2w-v2g6-j7j6/GHSA-rj2w-v2g6-j7j6.json index fd84ffd1754..9113b5cee61 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj2w-v2g6-j7j6/GHSA-rj2w-v2g6-j7j6.json +++ b/advisories/unreviewed/2022/05/GHSA-rj2w-v2g6-j7j6/GHSA-rj2w-v2g6-j7j6.json @@ -7,12 +7,8 @@ "CVE-2009-4619" ], "details": "SQL injection vulnerability in the Lucy Games (com_lucygames) component 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gameid parameter in a game action to index.php. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rj5j-m5vv-27cj/GHSA-rj5j-m5vv-27cj.json b/advisories/unreviewed/2022/05/GHSA-rj5j-m5vv-27cj/GHSA-rj5j-m5vv-27cj.json index b42dd98da30..0cb937712a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj5j-m5vv-27cj/GHSA-rj5j-m5vv-27cj.json +++ b/advisories/unreviewed/2022/05/GHSA-rj5j-m5vv-27cj/GHSA-rj5j-m5vv-27cj.json @@ -7,12 +7,8 @@ "CVE-2009-4923" ], "details": "Unspecified vulnerability in the DTLS implementation on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (traceback) via TLS fragments, aka Bug ID CSCso53162.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rj5x-jhhc-5x6h/GHSA-rj5x-jhhc-5x6h.json b/advisories/unreviewed/2022/05/GHSA-rj5x-jhhc-5x6h/GHSA-rj5x-jhhc-5x6h.json index 04bad507800..3f4f5a2647d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rj5x-jhhc-5x6h/GHSA-rj5x-jhhc-5x6h.json +++ b/advisories/unreviewed/2022/05/GHSA-rj5x-jhhc-5x6h/GHSA-rj5x-jhhc-5x6h.json @@ -7,12 +7,8 @@ "CVE-2009-4299" ], "details": "mod/glossary/showentry.php in the Glossary module for Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not properly perform access control, which allows attackers to read unauthorized Glossary entries via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjcm-p299-j23r/GHSA-rjcm-p299-j23r.json b/advisories/unreviewed/2022/05/GHSA-rjcm-p299-j23r/GHSA-rjcm-p299-j23r.json index 5de6a15a186..8a21ee1f29b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjcm-p299-j23r/GHSA-rjcm-p299-j23r.json +++ b/advisories/unreviewed/2022/05/GHSA-rjcm-p299-j23r/GHSA-rjcm-p299-j23r.json @@ -7,12 +7,8 @@ "CVE-2009-4922" ], "details": "Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote authenticated users to cause a denial of service (traceback) by establishing many IPsec L2L tunnels from remote peer IP addresses, aka Bug ID CSCso15583.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rmc9-5546-5rrf/GHSA-rmc9-5546-5rrf.json b/advisories/unreviewed/2022/05/GHSA-rmc9-5546-5rrf/GHSA-rmc9-5546-5rrf.json index 4f5307487b3..9fdf92ca28f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmc9-5546-5rrf/GHSA-rmc9-5546-5rrf.json +++ b/advisories/unreviewed/2022/05/GHSA-rmc9-5546-5rrf/GHSA-rmc9-5546-5rrf.json @@ -7,12 +7,8 @@ "CVE-2009-4963" ], "details": "Cross-site scripting (XSS) vulnerability in the Commerce extension before 0.9.9 for TYPO3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rq57-fwfx-h5r3/GHSA-rq57-fwfx-h5r3.json b/advisories/unreviewed/2022/05/GHSA-rq57-fwfx-h5r3/GHSA-rq57-fwfx-h5r3.json index d0c1ce2509e..69bd2f1394a 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq57-fwfx-h5r3/GHSA-rq57-fwfx-h5r3.json +++ b/advisories/unreviewed/2022/05/GHSA-rq57-fwfx-h5r3/GHSA-rq57-fwfx-h5r3.json @@ -7,12 +7,8 @@ "CVE-2009-5058" ], "details": "Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.5 services for Lotus Domino allows remote authenticated users to cause a denial of service (daemon crash) by deleting an item that is accessed through a connector, aka SPR RELS7LARKR.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rq87-cmq6-cfh2/GHSA-rq87-cmq6-cfh2.json b/advisories/unreviewed/2022/05/GHSA-rq87-cmq6-cfh2/GHSA-rq87-cmq6-cfh2.json index f1f12f1648f..99e78579e81 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq87-cmq6-cfh2/GHSA-rq87-cmq6-cfh2.json +++ b/advisories/unreviewed/2022/05/GHSA-rq87-cmq6-cfh2/GHSA-rq87-cmq6-cfh2.json @@ -7,12 +7,8 @@ "CVE-2009-4618" ], "details": "Multiple SQL injection vulnerabilities in Tourism Script Bus Script allow remote attackers to execute arbitrary SQL commands via the sitetext_id parameter to (1) aboutus.php and (2) faq.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv25-qx26-27xv/GHSA-rv25-qx26-27xv.json b/advisories/unreviewed/2022/05/GHSA-rv25-qx26-27xv/GHSA-rv25-qx26-27xv.json index 3dd173d8578..1f92287dfac 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv25-qx26-27xv/GHSA-rv25-qx26-27xv.json +++ b/advisories/unreviewed/2022/05/GHSA-rv25-qx26-27xv/GHSA-rv25-qx26-27xv.json @@ -7,12 +7,8 @@ "CVE-2009-4324" ], "details": "Use-after-free vulnerability in the Doc.media.newPlayer method in Multimedia.api in Adobe Reader and Acrobat 9.x before 9.3, and 8.x before 8.2 on Windows and Mac OS X, allows remote attackers to execute arbitrary code via a crafted PDF file using ZLib compressed streams, as exploited in the wild in December 2009.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rv57-679m-c549/GHSA-rv57-679m-c549.json b/advisories/unreviewed/2022/05/GHSA-rv57-679m-c549/GHSA-rv57-679m-c549.json index ffd41a5e241..156126b6f7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv57-679m-c549/GHSA-rv57-679m-c549.json +++ b/advisories/unreviewed/2022/05/GHSA-rv57-679m-c549/GHSA-rv57-679m-c549.json @@ -7,12 +7,8 @@ "CVE-2009-5033" ], "details": "IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle a \"* *\" argument sequence for a certain tell command, which allows remote authenticated users to obtain access to other users' data via a sync operation, related to storage of the data of multiple users within the same thread.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rvfw-993v-9jc5/GHSA-rvfw-993v-9jc5.json b/advisories/unreviewed/2022/05/GHSA-rvfw-993v-9jc5/GHSA-rvfw-993v-9jc5.json index 12d184fe672..5260ad602fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvfw-993v-9jc5/GHSA-rvfw-993v-9jc5.json +++ b/advisories/unreviewed/2022/05/GHSA-rvfw-993v-9jc5/GHSA-rvfw-993v-9jc5.json @@ -7,12 +7,8 @@ "CVE-2009-4821" ], "details": "The D-Link DIR-615 with firmware 3.10NA does not require administrative authentication for apply.cgi, which allows remote attackers to (1) change the admin password via the admin_password parameter, (2) disable the security requirement for the Wi-Fi network via unspecified vectors, or (3) modify DNS settings via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rvgj-fpwg-2m28/GHSA-rvgj-fpwg-2m28.json b/advisories/unreviewed/2022/05/GHSA-rvgj-fpwg-2m28/GHSA-rvgj-fpwg-2m28.json index d7c98ae951d..1db7e0d2e4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvgj-fpwg-2m28/GHSA-rvgj-fpwg-2m28.json +++ b/advisories/unreviewed/2022/05/GHSA-rvgj-fpwg-2m28/GHSA-rvgj-fpwg-2m28.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rvhv-x32h-w34v/GHSA-rvhv-x32h-w34v.json b/advisories/unreviewed/2022/05/GHSA-rvhv-x32h-w34v/GHSA-rvhv-x32h-w34v.json index 9735e8a040b..f42623d4723 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvhv-x32h-w34v/GHSA-rvhv-x32h-w34v.json +++ b/advisories/unreviewed/2022/05/GHSA-rvhv-x32h-w34v/GHSA-rvhv-x32h-w34v.json @@ -7,12 +7,8 @@ "CVE-2009-4985" ], "details": "SQL injection vulnerability in browse.php in Accessories Me PHP Affiliate Script 1.4 allows remote attackers to execute arbitrary SQL commands via the Go parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rw2m-3553-7f93/GHSA-rw2m-3553-7f93.json b/advisories/unreviewed/2022/05/GHSA-rw2m-3553-7f93/GHSA-rw2m-3553-7f93.json index 26e9c6851b6..d00695f5eec 100644 --- a/advisories/unreviewed/2022/05/GHSA-rw2m-3553-7f93/GHSA-rw2m-3553-7f93.json +++ b/advisories/unreviewed/2022/05/GHSA-rw2m-3553-7f93/GHSA-rw2m-3553-7f93.json @@ -7,12 +7,8 @@ "CVE-2009-4991" ], "details": "Cross-site scripting (XSS) vulnerability in users/resume_register.php in Omnistar Recruiting allows remote attackers to inject arbitrary web script or HTML via the job2 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rw88-9fhw-cqr5/GHSA-rw88-9fhw-cqr5.json b/advisories/unreviewed/2022/05/GHSA-rw88-9fhw-cqr5/GHSA-rw88-9fhw-cqr5.json index b803222aefa..30bf0cedde2 100644 --- a/advisories/unreviewed/2022/05/GHSA-rw88-9fhw-cqr5/GHSA-rw88-9fhw-cqr5.json +++ b/advisories/unreviewed/2022/05/GHSA-rw88-9fhw-cqr5/GHSA-rw88-9fhw-cqr5.json @@ -7,12 +7,8 @@ "CVE-2009-5026" ], "details": "The executable comment feature in MySQL 5.0.x before 5.0.93 and 5.1.x before 5.1.50, when running in certain slave configurations in which the slave is running a newer version than the master, allows remote attackers to execute arbitrary SQL commands via custom comments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rwrf-2h26-c86w/GHSA-rwrf-2h26-c86w.json b/advisories/unreviewed/2022/05/GHSA-rwrf-2h26-c86w/GHSA-rwrf-2h26-c86w.json index cf971fef6ec..0b74be5b1c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rwrf-2h26-c86w/GHSA-rwrf-2h26-c86w.json +++ b/advisories/unreviewed/2022/05/GHSA-rwrf-2h26-c86w/GHSA-rwrf-2h26-c86w.json @@ -7,12 +7,8 @@ "CVE-2009-4699" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in SkaDate Dating allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin/auth.php and (2) file_uploader.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rww5-972v-w9xq/GHSA-rww5-972v-w9xq.json b/advisories/unreviewed/2022/05/GHSA-rww5-972v-w9xq/GHSA-rww5-972v-w9xq.json index ada9de7cba9..06eb6ac16d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rww5-972v-w9xq/GHSA-rww5-972v-w9xq.json +++ b/advisories/unreviewed/2022/05/GHSA-rww5-972v-w9xq/GHSA-rww5-972v-w9xq.json @@ -7,12 +7,8 @@ "CVE-2009-4800" ], "details": "Directory traversal vulnerability in Sysax Multi Server 4.3 and 4.5 allows remote authenticated users to delete arbitrary files via a ..// (dot dot slash slash) in a DELE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v32q-4mm3-923h/GHSA-v32q-4mm3-923h.json b/advisories/unreviewed/2022/05/GHSA-v32q-4mm3-923h/GHSA-v32q-4mm3-923h.json index dd96b2654f5..43e609a93ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-v32q-4mm3-923h/GHSA-v32q-4mm3-923h.json +++ b/advisories/unreviewed/2022/05/GHSA-v32q-4mm3-923h/GHSA-v32q-4mm3-923h.json @@ -7,12 +7,8 @@ "CVE-2009-4601" ], "details": "Cross-site scripting (XSS) vulnerability in basic_search_result.php in Zeeways ZeeJobsite 3x allows remote attackers to inject arbitrary web script or HTML via the title parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v37p-x44j-8r75/GHSA-v37p-x44j-8r75.json b/advisories/unreviewed/2022/05/GHSA-v37p-x44j-8r75/GHSA-v37p-x44j-8r75.json index c88f9d11b8f..34c0247a302 100644 --- a/advisories/unreviewed/2022/05/GHSA-v37p-x44j-8r75/GHSA-v37p-x44j-8r75.json +++ b/advisories/unreviewed/2022/05/GHSA-v37p-x44j-8r75/GHSA-v37p-x44j-8r75.json @@ -7,12 +7,8 @@ "CVE-2009-4295" ], "details": "Sun Ray Server Software 4.0 and 4.1 does not generate a unique DSA private key for the firmware on each Sun Ray 1, 1g, 100, and 150 DTU device, which makes it easier for remote attackers to obtain sensitive information by predicting a key and then using it to decrypt sniffed network traffic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v3g7-56hc-9f8w/GHSA-v3g7-56hc-9f8w.json b/advisories/unreviewed/2022/05/GHSA-v3g7-56hc-9f8w/GHSA-v3g7-56hc-9f8w.json index ee563a8a1ec..3976941ade0 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3g7-56hc-9f8w/GHSA-v3g7-56hc-9f8w.json +++ b/advisories/unreviewed/2022/05/GHSA-v3g7-56hc-9f8w/GHSA-v3g7-56hc-9f8w.json @@ -7,12 +7,8 @@ "CVE-2009-4809" ], "details": "Directory traversal vulnerability in thumbnail.ghp in Easy File Sharing (EFS) Web Server 4.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the vfolder parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4mc-9j94-j2cf/GHSA-v4mc-9j94-j2cf.json b/advisories/unreviewed/2022/05/GHSA-v4mc-9j94-j2cf/GHSA-v4mc-9j94-j2cf.json index 3fb7d69adc5..216fe4cfe2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4mc-9j94-j2cf/GHSA-v4mc-9j94-j2cf.json +++ b/advisories/unreviewed/2022/05/GHSA-v4mc-9j94-j2cf/GHSA-v4mc-9j94-j2cf.json @@ -7,12 +7,8 @@ "CVE-2009-4306" ], "details": "Unspecified vulnerability in the EXT4_IOC_MOVE_EXT (aka move extents) ioctl implementation in the ext4 filesystem in the Linux kernel 2.6.32-git6 and earlier allows local users to cause a denial of service (filesystem corruption) via unknown vectors, a different vulnerability than CVE-2009-4131.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4v9-w35g-h777/GHSA-v4v9-w35g-h777.json b/advisories/unreviewed/2022/05/GHSA-v4v9-w35g-h777/GHSA-v4v9-w35g-h777.json index d0d6a06d40d..5384af3b02b 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4v9-w35g-h777/GHSA-v4v9-w35g-h777.json +++ b/advisories/unreviewed/2022/05/GHSA-v4v9-w35g-h777/GHSA-v4v9-w35g-h777.json @@ -7,12 +7,8 @@ "CVE-2009-4851" ], "details": "The activation resend function in the Profiles module in XOOPS before 2.4.1 sends activation codes in response to arbitrary activation requests, which allows remote attackers to bypass administrative approval via a request involving activate.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4w5-5ggg-69xc/GHSA-v4w5-5ggg-69xc.json b/advisories/unreviewed/2022/05/GHSA-v4w5-5ggg-69xc/GHSA-v4w5-5ggg-69xc.json index 0b0aa46bd15..8c339dbf033 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4w5-5ggg-69xc/GHSA-v4w5-5ggg-69xc.json +++ b/advisories/unreviewed/2022/05/GHSA-v4w5-5ggg-69xc/GHSA-v4w5-5ggg-69xc.json @@ -7,12 +7,8 @@ "CVE-2008-1679" ], "details": "Multiple integer overflows in imageop.c in Python before 2.5.3 allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted images that trigger heap-based buffer overflows. NOTE: this issue is due to an incomplete fix for CVE-2007-4965.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4w7-2c4h-vx55/GHSA-v4w7-2c4h-vx55.json b/advisories/unreviewed/2022/05/GHSA-v4w7-2c4h-vx55/GHSA-v4w7-2c4h-vx55.json index fd5889b6759..ea1a51b5967 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4w7-2c4h-vx55/GHSA-v4w7-2c4h-vx55.json +++ b/advisories/unreviewed/2022/05/GHSA-v4w7-2c4h-vx55/GHSA-v4w7-2c4h-vx55.json @@ -7,12 +7,8 @@ "CVE-2009-4553" ], "details": "Stack-based buffer overflow in iRehearse allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a long string in a .m3u playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v525-j8fc-9px6/GHSA-v525-j8fc-9px6.json b/advisories/unreviewed/2022/05/GHSA-v525-j8fc-9px6/GHSA-v525-j8fc-9px6.json index 1fff2b6fd89..6d0350b4ed1 100644 --- a/advisories/unreviewed/2022/05/GHSA-v525-j8fc-9px6/GHSA-v525-j8fc-9px6.json +++ b/advisories/unreviewed/2022/05/GHSA-v525-j8fc-9px6/GHSA-v525-j8fc-9px6.json @@ -7,12 +7,8 @@ "CVE-2009-4859" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Online Work Order Suite (OWOS) Lite Edition 3.10 allow remote attackers to inject arbitrary web script or HTML via the show parameter to (1) default.asp and (2) report.asp, and the (3) go parameter to login.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v583-ppp9-6vw8/GHSA-v583-ppp9-6vw8.json b/advisories/unreviewed/2022/05/GHSA-v583-ppp9-6vw8/GHSA-v583-ppp9-6vw8.json index 6074414039f..b21bec6df3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v583-ppp9-6vw8/GHSA-v583-ppp9-6vw8.json +++ b/advisories/unreviewed/2022/05/GHSA-v583-ppp9-6vw8/GHSA-v583-ppp9-6vw8.json @@ -7,12 +7,8 @@ "CVE-2009-4964" ], "details": "Stack-based buffer overflow in KSP 2006 FINAL allows remote attackers to execute arbitrary code via a long string in a .M3U playlist file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v5cv-ff29-3q9f/GHSA-v5cv-ff29-3q9f.json b/advisories/unreviewed/2022/05/GHSA-v5cv-ff29-3q9f/GHSA-v5cv-ff29-3q9f.json index 8608963915e..ecd01ee7fbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5cv-ff29-3q9f/GHSA-v5cv-ff29-3q9f.json +++ b/advisories/unreviewed/2022/05/GHSA-v5cv-ff29-3q9f/GHSA-v5cv-ff29-3q9f.json @@ -7,12 +7,8 @@ "CVE-2009-4573" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Joomulus (mod_joomulus) module 2.0 for Joomla! allow remote attackers to inject arbitrary web script or HTML via the tagcloud parameter in a tags action to (1) tagcloud_ell.swf, (2) tagcloud_eng.swf, (3) tagcloud_por.swf, (4) tagcloud_rus.swf, and possibly (5) tagcloud_jpn.swf. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v656-g53r-8w49/GHSA-v656-g53r-8w49.json b/advisories/unreviewed/2022/05/GHSA-v656-g53r-8w49/GHSA-v656-g53r-8w49.json index 19c6a2d9da8..b981ad98c0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v656-g53r-8w49/GHSA-v656-g53r-8w49.json +++ b/advisories/unreviewed/2022/05/GHSA-v656-g53r-8w49/GHSA-v656-g53r-8w49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v68x-c6cp-w37j/GHSA-v68x-c6cp-w37j.json b/advisories/unreviewed/2022/05/GHSA-v68x-c6cp-w37j/GHSA-v68x-c6cp-w37j.json index 2e24290adca..75ab2c4b431 100644 --- a/advisories/unreviewed/2022/05/GHSA-v68x-c6cp-w37j/GHSA-v68x-c6cp-w37j.json +++ b/advisories/unreviewed/2022/05/GHSA-v68x-c6cp-w37j/GHSA-v68x-c6cp-w37j.json @@ -7,12 +7,8 @@ "CVE-2009-4630" ], "details": "Mozilla Necko, as used in Firefox, SeaMonkey, and other applications, performs DNS prefetching of domain names contained in links within local HTML documents, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests. NOTE: the vendor disputes the significance of this issue, stating \"I don't think we necessarily need to worry about that case.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6gp-f7ww-94pf/GHSA-v6gp-f7ww-94pf.json b/advisories/unreviewed/2022/05/GHSA-v6gp-f7ww-94pf/GHSA-v6gp-f7ww-94pf.json index e181bd07484..6fa92628da0 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6gp-f7ww-94pf/GHSA-v6gp-f7ww-94pf.json +++ b/advisories/unreviewed/2022/05/GHSA-v6gp-f7ww-94pf/GHSA-v6gp-f7ww-94pf.json @@ -7,12 +7,8 @@ "CVE-2009-4456" ], "details": "SQL injection vulnerability in news_detail.php in Green Desktiny 2.3.1, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6qg-5p9x-9hh9/GHSA-v6qg-5p9x-9hh9.json b/advisories/unreviewed/2022/05/GHSA-v6qg-5p9x-9hh9/GHSA-v6qg-5p9x-9hh9.json index 8d2b8c7db1b..eba3f7c8297 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6qg-5p9x-9hh9/GHSA-v6qg-5p9x-9hh9.json +++ b/advisories/unreviewed/2022/05/GHSA-v6qg-5p9x-9hh9/GHSA-v6qg-5p9x-9hh9.json @@ -7,12 +7,8 @@ "CVE-2009-4502" ], "details": "The NET_TCP_LISTEN function in net.c in Zabbix Agent before 1.6.7, when running on FreeBSD or Solaris, allows remote attackers to bypass the EnableRemoteCommands setting and execute arbitrary commands via shell metacharacters in the argument to net.tcp.listen. NOTE: this attack is limited to attacks from trusted IP addresses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v6wp-jmqx-8388/GHSA-v6wp-jmqx-8388.json b/advisories/unreviewed/2022/05/GHSA-v6wp-jmqx-8388/GHSA-v6wp-jmqx-8388.json index e15b9926335..9120aba0066 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6wp-jmqx-8388/GHSA-v6wp-jmqx-8388.json +++ b/advisories/unreviewed/2022/05/GHSA-v6wp-jmqx-8388/GHSA-v6wp-jmqx-8388.json @@ -7,12 +7,8 @@ "CVE-2009-4588" ], "details": "Heap-based buffer overflow in the WindsPlayerIE.View.1 ActiveX control in WindsPly.ocx 3.5.0.0 Beta, 3.0.0.5, and earlier in AwingSoft Awakening Web3D Player and Winds3D Viewer allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long SceneUrl property value, a different vulnerability than CVE-2009-2386. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v76j-jhcp-fjgc/GHSA-v76j-jhcp-fjgc.json b/advisories/unreviewed/2022/05/GHSA-v76j-jhcp-fjgc/GHSA-v76j-jhcp-fjgc.json index 40927d48d8f..4155b1e0ea4 100644 --- a/advisories/unreviewed/2022/05/GHSA-v76j-jhcp-fjgc/GHSA-v76j-jhcp-fjgc.json +++ b/advisories/unreviewed/2022/05/GHSA-v76j-jhcp-fjgc/GHSA-v76j-jhcp-fjgc.json @@ -7,12 +7,8 @@ "CVE-2009-4882" ], "details": "Cross-site scripting (XSS) vulnerability in zc/publisher/html.rb in ZoneCheck 2.0.4-13 and 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the ns parameter to zc.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7g6-6mrr-692g/GHSA-v7g6-6mrr-692g.json b/advisories/unreviewed/2022/05/GHSA-v7g6-6mrr-692g/GHSA-v7g6-6mrr-692g.json index 8a5308823c8..6d5b7501ece 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7g6-6mrr-692g/GHSA-v7g6-6mrr-692g.json +++ b/advisories/unreviewed/2022/05/GHSA-v7g6-6mrr-692g/GHSA-v7g6-6mrr-692g.json @@ -7,12 +7,8 @@ "CVE-2009-5052" ], "details": "Multiple unspecified vulnerabilities in Smarty before 3.0.0 beta 6 have unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8f9-pj55-fp23/GHSA-v8f9-pj55-fp23.json b/advisories/unreviewed/2022/05/GHSA-v8f9-pj55-fp23/GHSA-v8f9-pj55-fp23.json index 22efb6cc8d8..66120e2f018 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8f9-pj55-fp23/GHSA-v8f9-pj55-fp23.json +++ b/advisories/unreviewed/2022/05/GHSA-v8f9-pj55-fp23/GHSA-v8f9-pj55-fp23.json @@ -7,12 +7,8 @@ "CVE-2009-4637" ], "details": "FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8p9-w52p-f3vj/GHSA-v8p9-w52p-f3vj.json b/advisories/unreviewed/2022/05/GHSA-v8p9-w52p-f3vj/GHSA-v8p9-w52p-f3vj.json index 43a474a517a..c11fbcd8d57 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8p9-w52p-f3vj/GHSA-v8p9-w52p-f3vj.json +++ b/advisories/unreviewed/2022/05/GHSA-v8p9-w52p-f3vj/GHSA-v8p9-w52p-f3vj.json @@ -7,12 +7,8 @@ "CVE-2009-4539" ], "details": "Cross-site scripting (XSS) vulnerability in main.php in SQLiteManager 1.2.0 allows remote attackers to inject arbitrary web script or HTML via the redirect parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9hw-x72r-4m37/GHSA-v9hw-x72r-4m37.json b/advisories/unreviewed/2022/05/GHSA-v9hw-x72r-4m37/GHSA-v9hw-x72r-4m37.json index 63592afbe2b..ef908200146 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9hw-x72r-4m37/GHSA-v9hw-x72r-4m37.json +++ b/advisories/unreviewed/2022/05/GHSA-v9hw-x72r-4m37/GHSA-v9hw-x72r-4m37.json @@ -7,12 +7,8 @@ "CVE-2009-5062" ], "details": "IBM Lotus Quickr 8.1 before 8.1.0.15 services for Lotus Domino on AIX allows remote authenticated users to cause a denial of service (daemon crash) by subscribing to an Atom feed, aka SPR JRIE7VKMP9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9p7-m2rm-vpw2/GHSA-v9p7-m2rm-vpw2.json b/advisories/unreviewed/2022/05/GHSA-v9p7-m2rm-vpw2/GHSA-v9p7-m2rm-vpw2.json index 35fe66cbfb8..8769432ad7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9p7-m2rm-vpw2/GHSA-v9p7-m2rm-vpw2.json +++ b/advisories/unreviewed/2022/05/GHSA-v9p7-m2rm-vpw2/GHSA-v9p7-m2rm-vpw2.json @@ -7,12 +7,8 @@ "CVE-2009-4530" ], "details": "Mongoose 2.8.0 and earlier allows remote attackers to obtain the source code for a web page by appending ::$DATA to the URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9xm-5832-793v/GHSA-v9xm-5832-793v.json b/advisories/unreviewed/2022/05/GHSA-v9xm-5832-793v/GHSA-v9xm-5832-793v.json index 60c673f563f..45ac8bfa705 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9xm-5832-793v/GHSA-v9xm-5832-793v.json +++ b/advisories/unreviewed/2022/05/GHSA-v9xm-5832-793v/GHSA-v9xm-5832-793v.json @@ -7,12 +7,8 @@ "CVE-2009-4862" ], "details": "Multiple SQL injection vulnerabilities in Alwasel 1.5 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) show.php and (2) xml.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9xm-gfm5-pq92/GHSA-v9xm-gfm5-pq92.json b/advisories/unreviewed/2022/05/GHSA-v9xm-gfm5-pq92/GHSA-v9xm-gfm5-pq92.json index 9f60681f274..c13d3e9e3ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9xm-gfm5-pq92/GHSA-v9xm-gfm5-pq92.json +++ b/advisories/unreviewed/2022/05/GHSA-v9xm-gfm5-pq92/GHSA-v9xm-gfm5-pq92.json @@ -7,12 +7,8 @@ "CVE-2009-4493" ], "details": "Orion Application Server 2.0.7 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vc26-84gq-x9x8/GHSA-vc26-84gq-x9x8.json b/advisories/unreviewed/2022/05/GHSA-vc26-84gq-x9x8/GHSA-vc26-84gq-x9x8.json index 4a22d755cff..77fb6004002 100644 --- a/advisories/unreviewed/2022/05/GHSA-vc26-84gq-x9x8/GHSA-vc26-84gq-x9x8.json +++ b/advisories/unreviewed/2022/05/GHSA-vc26-84gq-x9x8/GHSA-vc26-84gq-x9x8.json @@ -7,12 +7,8 @@ "CVE-2009-4625" ], "details": "SQL injection vulnerability in the updateOnePage function in components/com_bfsurvey_pro/controller.php in BF Survey Pro Free (com_bfsurvey_profree) 1.2.4, and other versions before 1.2.6, a component for Joomla!, allows remote attackers to execute arbitrary SQL commands via the table parameter in an updateOnePage action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcr3-8837-gf6x/GHSA-vcr3-8837-gf6x.json b/advisories/unreviewed/2022/05/GHSA-vcr3-8837-gf6x/GHSA-vcr3-8837-gf6x.json index cb28e1a4f45..f1abe9e1c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcr3-8837-gf6x/GHSA-vcr3-8837-gf6x.json +++ b/advisories/unreviewed/2022/05/GHSA-vcr3-8837-gf6x/GHSA-vcr3-8837-gf6x.json @@ -7,12 +7,8 @@ "CVE-2009-4544" ], "details": "Cross-site scripting (XSS) vulnerability in kbase/kbase.php in Cromosoft Technologies Facil Helpdesk 2.3 Lite allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcw2-39v7-ppw9/GHSA-vcw2-39v7-ppw9.json b/advisories/unreviewed/2022/05/GHSA-vcw2-39v7-ppw9/GHSA-vcw2-39v7-ppw9.json index f79494e676a..b243f0301e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcw2-39v7-ppw9/GHSA-vcw2-39v7-ppw9.json +++ b/advisories/unreviewed/2022/05/GHSA-vcw2-39v7-ppw9/GHSA-vcw2-39v7-ppw9.json @@ -7,12 +7,8 @@ "CVE-2009-4316" ], "details": "Cross-site scripting (XSS) vulnerability in searchresults_main.php in ZeeLyrics 3x allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vffv-2prj-4q3f/GHSA-vffv-2prj-4q3f.json b/advisories/unreviewed/2022/05/GHSA-vffv-2prj-4q3f/GHSA-vffv-2prj-4q3f.json index 863f87e8e7d..7850f02ed6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-vffv-2prj-4q3f/GHSA-vffv-2prj-4q3f.json +++ b/advisories/unreviewed/2022/05/GHSA-vffv-2prj-4q3f/GHSA-vffv-2prj-4q3f.json @@ -7,12 +7,8 @@ "CVE-2009-4722" ], "details": "SQL injection vulnerability in the CheckLogin function in includes/functions.php in Limny 1.01, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vgcq-q89q-gw9h/GHSA-vgcq-q89q-gw9h.json b/advisories/unreviewed/2022/05/GHSA-vgcq-q89q-gw9h/GHSA-vgcq-q89q-gw9h.json index 5c8509fbed4..c14594aa26d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgcq-q89q-gw9h/GHSA-vgcq-q89q-gw9h.json +++ b/advisories/unreviewed/2022/05/GHSA-vgcq-q89q-gw9h/GHSA-vgcq-q89q-gw9h.json @@ -7,12 +7,8 @@ "CVE-2009-4662" ], "details": "Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 7.0 before 7.03 HP4 and 8.0 before 8.0 SP1 allows remote attackers to inject arbitrary web script or HTML via the User.Theme.index parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vgvh-f7c3-rv4v/GHSA-vgvh-f7c3-rv4v.json b/advisories/unreviewed/2022/05/GHSA-vgvh-f7c3-rv4v/GHSA-vgvh-f7c3-rv4v.json index e7451e90dab..3c8af151ec5 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgvh-f7c3-rv4v/GHSA-vgvh-f7c3-rv4v.json +++ b/advisories/unreviewed/2022/05/GHSA-vgvh-f7c3-rv4v/GHSA-vgvh-f7c3-rv4v.json @@ -7,12 +7,8 @@ "CVE-2009-4445" ], "details": "Microsoft Internet Information Services (IIS), when used in conjunction with unspecified third-party upload applications, allows remote attackers to create empty files with arbitrary extensions via a filename containing an initial extension followed by a : (colon) and a safe extension, as demonstrated by an upload of a .asp:.jpg file that results in creation of an empty .asp file, related to support for the NTFS Alternate Data Streams (ADS) filename syntax. NOTE: it could be argued that this is a vulnerability in the third-party product, not IIS, because the third-party product should be applying its extension restrictions to the portion of the filename before the colon.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vgvv-22pm-rxpg/GHSA-vgvv-22pm-rxpg.json b/advisories/unreviewed/2022/05/GHSA-vgvv-22pm-rxpg/GHSA-vgvv-22pm-rxpg.json index 03b493cb5e0..54cdcccd33d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgvv-22pm-rxpg/GHSA-vgvv-22pm-rxpg.json +++ b/advisories/unreviewed/2022/05/GHSA-vgvv-22pm-rxpg/GHSA-vgvv-22pm-rxpg.json @@ -7,12 +7,8 @@ "CVE-2009-4579" ], "details": "Cross-site scripting (XSS) vulnerability in the Artist avenue (com_artistavenue) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemid parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vhcp-vh2x-wgf3/GHSA-vhcp-vh2x-wgf3.json b/advisories/unreviewed/2022/05/GHSA-vhcp-vh2x-wgf3/GHSA-vhcp-vh2x-wgf3.json index f171ca7bac9..d649f096cb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhcp-vh2x-wgf3/GHSA-vhcp-vh2x-wgf3.json +++ b/advisories/unreviewed/2022/05/GHSA-vhcp-vh2x-wgf3/GHSA-vhcp-vh2x-wgf3.json @@ -7,12 +7,8 @@ "CVE-2009-4720" ], "details": "SQL injection vulnerability in cgi-bin/gnudip.cgi in GnuDIP 2.1.1 allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vj98-5ppr-7h8x/GHSA-vj98-5ppr-7h8x.json b/advisories/unreviewed/2022/05/GHSA-vj98-5ppr-7h8x/GHSA-vj98-5ppr-7h8x.json index 87091b5746b..7a2199027d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj98-5ppr-7h8x/GHSA-vj98-5ppr-7h8x.json +++ b/advisories/unreviewed/2022/05/GHSA-vj98-5ppr-7h8x/GHSA-vj98-5ppr-7h8x.json @@ -7,12 +7,8 @@ "CVE-2009-4514" ], "details": "Cross-site scripting (XSS) vulnerability in the OpenSocial Shindig-Integrator module 5.x and 6.x before 6.x-2.1, a module for Drupal, allows remote authenticated users, with \"create application\" privileges, to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjfc-38px-5h83/GHSA-vjfc-38px-5h83.json b/advisories/unreviewed/2022/05/GHSA-vjfc-38px-5h83/GHSA-vjfc-38px-5h83.json index 8b145943af6..ddbaccb1652 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjfc-38px-5h83/GHSA-vjfc-38px-5h83.json +++ b/advisories/unreviewed/2022/05/GHSA-vjfc-38px-5h83/GHSA-vjfc-38px-5h83.json @@ -7,12 +7,8 @@ "CVE-2009-4638" ], "details": "Integer overflow in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vm47-g7pv-4p7r/GHSA-vm47-g7pv-4p7r.json b/advisories/unreviewed/2022/05/GHSA-vm47-g7pv-4p7r/GHSA-vm47-g7pv-4p7r.json index 9f883b08ec1..027bf11fba3 100644 --- a/advisories/unreviewed/2022/05/GHSA-vm47-g7pv-4p7r/GHSA-vm47-g7pv-4p7r.json +++ b/advisories/unreviewed/2022/05/GHSA-vm47-g7pv-4p7r/GHSA-vm47-g7pv-4p7r.json @@ -7,12 +7,8 @@ "CVE-2009-5059" ], "details": "Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.10 services for Lotus Domino might allow remote authenticated users to cause a denial of service (daemon crash) by checking out a document that is accessed through a connector, aka SPR MMOI7PSR8J.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmfr-fwm4-qw7w/GHSA-vmfr-fwm4-qw7w.json b/advisories/unreviewed/2022/05/GHSA-vmfr-fwm4-qw7w/GHSA-vmfr-fwm4-qw7w.json index 6bd426dcafb..cc183d2ddfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmfr-fwm4-qw7w/GHSA-vmfr-fwm4-qw7w.json +++ b/advisories/unreviewed/2022/05/GHSA-vmfr-fwm4-qw7w/GHSA-vmfr-fwm4-qw7w.json @@ -7,12 +7,8 @@ "CVE-2009-4744" ], "details": "Cross-site scripting (XSS) vulnerability in the Contact module in Exponent CMS 0.97-GA20090213 allows remote attackers to inject arbitrary web script or HTML via the email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmjh-3jv7-x6p5/GHSA-vmjh-3jv7-x6p5.json b/advisories/unreviewed/2022/05/GHSA-vmjh-3jv7-x6p5/GHSA-vmjh-3jv7-x6p5.json index 04638481d4e..f68685f9893 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmjh-3jv7-x6p5/GHSA-vmjh-3jv7-x6p5.json +++ b/advisories/unreviewed/2022/05/GHSA-vmjh-3jv7-x6p5/GHSA-vmjh-3jv7-x6p5.json @@ -7,12 +7,8 @@ "CVE-2009-4733" ], "details": "SQL injection vulnerability in checkuser.php in SimpleLoginSys 0.5, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmpc-3hc3-5cgc/GHSA-vmpc-3hc3-5cgc.json b/advisories/unreviewed/2022/05/GHSA-vmpc-3hc3-5cgc/GHSA-vmpc-3hc3-5cgc.json index c3ef739f3d5..947a8e44cbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmpc-3hc3-5cgc/GHSA-vmpc-3hc3-5cgc.json +++ b/advisories/unreviewed/2022/05/GHSA-vmpc-3hc3-5cgc/GHSA-vmpc-3hc3-5cgc.json @@ -7,12 +7,8 @@ "CVE-2009-4523" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Zainu 1.0 allows remote attackers to inject arbitrary web script or HTML via the searchSongKeyword parameter in a SearchSong action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmpp-w9w7-m326/GHSA-vmpp-w9w7-m326.json b/advisories/unreviewed/2022/05/GHSA-vmpp-w9w7-m326/GHSA-vmpp-w9w7-m326.json index 8315b8599c3..c4e61e5bc81 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmpp-w9w7-m326/GHSA-vmpp-w9w7-m326.json +++ b/advisories/unreviewed/2022/05/GHSA-vmpp-w9w7-m326/GHSA-vmpp-w9w7-m326.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vpcx-qf5g-f8v4/GHSA-vpcx-qf5g-f8v4.json b/advisories/unreviewed/2022/05/GHSA-vpcx-qf5g-f8v4/GHSA-vpcx-qf5g-f8v4.json index ef20cb6b882..ea51597335d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpcx-qf5g-f8v4/GHSA-vpcx-qf5g-f8v4.json +++ b/advisories/unreviewed/2022/05/GHSA-vpcx-qf5g-f8v4/GHSA-vpcx-qf5g-f8v4.json @@ -7,12 +7,8 @@ "CVE-2009-4715" ], "details": "Cross-site scripting (XSS) vulnerability in rates.php in Real Time Currency Exchange allows remote attackers to inject arbitrary web script or HTML via the Amount parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vpxw-mhc6-mv6v/GHSA-vpxw-mhc6-mv6v.json b/advisories/unreviewed/2022/05/GHSA-vpxw-mhc6-mv6v/GHSA-vpxw-mhc6-mv6v.json index 47d2c6b9be6..871b32cb292 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpxw-mhc6-mv6v/GHSA-vpxw-mhc6-mv6v.json +++ b/advisories/unreviewed/2022/05/GHSA-vpxw-mhc6-mv6v/GHSA-vpxw-mhc6-mv6v.json @@ -7,12 +7,8 @@ "CVE-2009-4459" ], "details": "Redmine 0.8.7 and earlier uses the title tag before defining the character encoding in a meta tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks and inject arbitrary script via UTF-7 encoded values in the title parameter to a new issue page, which may be interpreted as script by Internet Explorer 7 and 8.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqf8-229q-6788/GHSA-vqf8-229q-6788.json b/advisories/unreviewed/2022/05/GHSA-vqf8-229q-6788/GHSA-vqf8-229q-6788.json index 0bcf9e69881..b4b14a62160 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqf8-229q-6788/GHSA-vqf8-229q-6788.json +++ b/advisories/unreviewed/2022/05/GHSA-vqf8-229q-6788/GHSA-vqf8-229q-6788.json @@ -7,12 +7,8 @@ "CVE-2009-4995" ], "details": "Cross-site scripting (XSS) vulnerability in frmTickets.aspx in SmarterTools SmarterTrack before 4.0.3504 allows remote attackers to inject arbitrary web script or HTML via the email address field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrr8-qf64-vrjr/GHSA-vrr8-qf64-vrjr.json b/advisories/unreviewed/2022/05/GHSA-vrr8-qf64-vrjr/GHSA-vrr8-qf64-vrjr.json index 98b2cb6d776..b60984b7fd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrr8-qf64-vrjr/GHSA-vrr8-qf64-vrjr.json +++ b/advisories/unreviewed/2022/05/GHSA-vrr8-qf64-vrjr/GHSA-vrr8-qf64-vrjr.json @@ -7,12 +7,8 @@ "CVE-2009-4308" ], "details": "The ext4_decode_error function in fs/ext4/super.c in the ext4 filesystem in the Linux kernel before 2.6.32 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference), and possibly have unspecified other impact, via a crafted read-only filesystem that lacks a journal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vvr5-jq6q-h8jj/GHSA-vvr5-jq6q-h8jj.json b/advisories/unreviewed/2022/05/GHSA-vvr5-jq6q-h8jj/GHSA-vvr5-jq6q-h8jj.json index 1a1ed85c43e..dfba890bd24 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvr5-jq6q-h8jj/GHSA-vvr5-jq6q-h8jj.json +++ b/advisories/unreviewed/2022/05/GHSA-vvr5-jq6q-h8jj/GHSA-vvr5-jq6q-h8jj.json @@ -7,12 +7,8 @@ "CVE-2009-4629" ], "details": "Mozilla Necko, as used in Thunderbird 3.0.1, SeaMonkey, and other applications, performs DNS prefetching even when the app type is APP_TYPE_MAIL or APP_TYPE_EDITOR, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests, as demonstrated by DNS requests triggered by reading text/plain e-mail messages in Thunderbird.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwv7-gc7p-gr26/GHSA-vwv7-gc7p-gr26.json b/advisories/unreviewed/2022/05/GHSA-vwv7-gc7p-gr26/GHSA-vwv7-gc7p-gr26.json index 6f7f4a61146..77a0a8ecda3 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwv7-gc7p-gr26/GHSA-vwv7-gc7p-gr26.json +++ b/advisories/unreviewed/2022/05/GHSA-vwv7-gc7p-gr26/GHSA-vwv7-gc7p-gr26.json @@ -7,12 +7,8 @@ "CVE-2009-4458" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in FreePBX 2.5.2 and 2.6.0rc2, and possibly other versions, allow remote attackers to inject arbitrary web script or HTML via the (1) tech parameter to admin/admin/config.php during a trunks display action, the (2) description parameter during an Add Zap Channel action, and (3) unspecified vectors during an Add Recordings action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vxf2-fqvq-w7p7/GHSA-vxf2-fqvq-w7p7.json b/advisories/unreviewed/2022/05/GHSA-vxf2-fqvq-w7p7/GHSA-vxf2-fqvq-w7p7.json index a2853b11977..c097b0e35d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxf2-fqvq-w7p7/GHSA-vxf2-fqvq-w7p7.json +++ b/advisories/unreviewed/2022/05/GHSA-vxf2-fqvq-w7p7/GHSA-vxf2-fqvq-w7p7.json @@ -7,12 +7,8 @@ "CVE-2009-4789" ], "details": "Multiple PHP remote file inclusion vulnerabilities in the MojoBlog component RC 0.15 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) wp-comments-post.php and (2) wp-trackback.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w263-4pfp-q6vr/GHSA-w263-4pfp-q6vr.json b/advisories/unreviewed/2022/05/GHSA-w263-4pfp-q6vr/GHSA-w263-4pfp-q6vr.json index b893d05d932..a7859cd09e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w263-4pfp-q6vr/GHSA-w263-4pfp-q6vr.json +++ b/advisories/unreviewed/2022/05/GHSA-w263-4pfp-q6vr/GHSA-w263-4pfp-q6vr.json @@ -7,12 +7,8 @@ "CVE-2009-4703" ], "details": "SQL injection vulnerability in the Webesse Image Gallery (ws_gallery) extension 1.0.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w35f-9jmc-prg3/GHSA-w35f-9jmc-prg3.json b/advisories/unreviewed/2022/05/GHSA-w35f-9jmc-prg3/GHSA-w35f-9jmc-prg3.json index 816a937b87b..47bb653388d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w35f-9jmc-prg3/GHSA-w35f-9jmc-prg3.json +++ b/advisories/unreviewed/2022/05/GHSA-w35f-9jmc-prg3/GHSA-w35f-9jmc-prg3.json @@ -7,12 +7,8 @@ "CVE-2009-4721" ], "details": "Multiple SQL injection vulnerabilities in Admin/index.asp in Andrews-Web (A-W) BannerAd 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) User and (2) Password parameters. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w39m-5ggv-w7w6/GHSA-w39m-5ggv-w7w6.json b/advisories/unreviewed/2022/05/GHSA-w39m-5ggv-w7w6/GHSA-w39m-5ggv-w7w6.json index 16217203e49..22a9c4b91a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-w39m-5ggv-w7w6/GHSA-w39m-5ggv-w7w6.json +++ b/advisories/unreviewed/2022/05/GHSA-w39m-5ggv-w7w6/GHSA-w39m-5ggv-w7w6.json @@ -7,12 +7,8 @@ "CVE-2009-4757" ], "details": "Stack-based buffer overflow in BrotherSoft EW-MusicPlayer 0.8 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a malformed playlist (.m3u) file. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w39x-wg96-vcgw/GHSA-w39x-wg96-vcgw.json b/advisories/unreviewed/2022/05/GHSA-w39x-wg96-vcgw/GHSA-w39x-wg96-vcgw.json index d6a564d9118..d53cfb69e96 100644 --- a/advisories/unreviewed/2022/05/GHSA-w39x-wg96-vcgw/GHSA-w39x-wg96-vcgw.json +++ b/advisories/unreviewed/2022/05/GHSA-w39x-wg96-vcgw/GHSA-w39x-wg96-vcgw.json @@ -7,12 +7,8 @@ "CVE-2009-4307" ], "details": "The ext4_fill_flex_info function in fs/ext4/super.c in the Linux kernel before 2.6.32-git6 allows user-assisted remote attackers to cause a denial of service (divide-by-zero error and panic) via a malformed ext4 filesystem containing a super block with a large FLEX_BG group size (aka s_log_groups_per_flex value).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w54w-77ff-2g6r/GHSA-w54w-77ff-2g6r.json b/advisories/unreviewed/2022/05/GHSA-w54w-77ff-2g6r/GHSA-w54w-77ff-2g6r.json index 5a5ecda859a..096f9c02876 100644 --- a/advisories/unreviewed/2022/05/GHSA-w54w-77ff-2g6r/GHSA-w54w-77ff-2g6r.json +++ b/advisories/unreviewed/2022/05/GHSA-w54w-77ff-2g6r/GHSA-w54w-77ff-2g6r.json @@ -7,12 +7,8 @@ "CVE-2009-4292" ], "details": "Buffer overflow in the URL filtering function in Internet Initiative Japan SEIL/X1, SEIL/X2, and SEIL/B1 firmware 2.40 through 2.51 allows remote attackers to execute arbitrary code via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w55h-hf5p-3632/GHSA-w55h-hf5p-3632.json b/advisories/unreviewed/2022/05/GHSA-w55h-hf5p-3632/GHSA-w55h-hf5p-3632.json index c9233fff382..4912b75a9ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-w55h-hf5p-3632/GHSA-w55h-hf5p-3632.json +++ b/advisories/unreviewed/2022/05/GHSA-w55h-hf5p-3632/GHSA-w55h-hf5p-3632.json @@ -7,12 +7,8 @@ "CVE-2009-4729" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in x10 Adult Media Script 1.7 allow remote attackers to inject arbitrary web script or HTML via the (1) pic_id parameter to includes/video_ad.php, (2) category parameter to linkvideos_listing.php, (3) id parameter to templates/header1.php, and (4) key parameter to video_listing.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w59w-w35p-6r6h/GHSA-w59w-w35p-6r6h.json b/advisories/unreviewed/2022/05/GHSA-w59w-w35p-6r6h/GHSA-w59w-w35p-6r6h.json index 04af0998cef..eaef0db2b15 100644 --- a/advisories/unreviewed/2022/05/GHSA-w59w-w35p-6r6h/GHSA-w59w-w35p-6r6h.json +++ b/advisories/unreviewed/2022/05/GHSA-w59w-w35p-6r6h/GHSA-w59w-w35p-6r6h.json @@ -7,12 +7,8 @@ "CVE-2009-4478" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Xstate Real Estate 1.0 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) home.html or (2) lands.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w5fc-37wx-45m2/GHSA-w5fc-37wx-45m2.json b/advisories/unreviewed/2022/05/GHSA-w5fc-37wx-45m2/GHSA-w5fc-37wx-45m2.json index ee2ac61617b..e79865307e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5fc-37wx-45m2/GHSA-w5fc-37wx-45m2.json +++ b/advisories/unreviewed/2022/05/GHSA-w5fc-37wx-45m2/GHSA-w5fc-37wx-45m2.json @@ -7,12 +7,8 @@ "CVE-2009-4878" ], "details": "Unspecified vulnerability in the Administration Console in Novell Access Manager before 3.1 SP1 allows attackers to access system files via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w5qh-2x4h-crww/GHSA-w5qh-2x4h-crww.json b/advisories/unreviewed/2022/05/GHSA-w5qh-2x4h-crww/GHSA-w5qh-2x4h-crww.json index d01da2d6b60..a235a16c457 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5qh-2x4h-crww/GHSA-w5qh-2x4h-crww.json +++ b/advisories/unreviewed/2022/05/GHSA-w5qh-2x4h-crww/GHSA-w5qh-2x4h-crww.json @@ -7,12 +7,8 @@ "CVE-2009-5001" ], "details": "The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.2-P8AE-FP002 grants a document's Creator-Owner full control over an annotation object, even if the default instance security has changed, which might allow remote authenticated users to bypass intended access restrictions in opportunistic circumstances.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7jr-f865-r43v/GHSA-w7jr-f865-r43v.json b/advisories/unreviewed/2022/05/GHSA-w7jr-f865-r43v/GHSA-w7jr-f865-r43v.json index 1b1cb4a4bf0..d4dae137a32 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7jr-f865-r43v/GHSA-w7jr-f865-r43v.json +++ b/advisories/unreviewed/2022/05/GHSA-w7jr-f865-r43v/GHSA-w7jr-f865-r43v.json @@ -7,12 +7,8 @@ "CVE-2009-4909" ], "details": "admin/index.php in oBlog allows remote attackers to conduct brute-force password guessing attacks via HTTP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7r3-cc9h-pg34/GHSA-w7r3-cc9h-pg34.json b/advisories/unreviewed/2022/05/GHSA-w7r3-cc9h-pg34/GHSA-w7r3-cc9h-pg34.json index 5bb3ad2c185..3b9845fa132 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7r3-cc9h-pg34/GHSA-w7r3-cc9h-pg34.json +++ b/advisories/unreviewed/2022/05/GHSA-w7r3-cc9h-pg34/GHSA-w7r3-cc9h-pg34.json @@ -7,12 +7,8 @@ "CVE-2009-4644" ], "details": "Accellion Secure File Transfer Appliance before 8_0_105 allows remote authenticated administrators to bypass the restricted shell and execute arbitrary commands via shell metacharacters to the ping command, as demonstrated by modifying the cli program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w856-266m-fc74/GHSA-w856-266m-fc74.json b/advisories/unreviewed/2022/05/GHSA-w856-266m-fc74/GHSA-w856-266m-fc74.json index 629aa54e1b3..4446bfaa505 100644 --- a/advisories/unreviewed/2022/05/GHSA-w856-266m-fc74/GHSA-w856-266m-fc74.json +++ b/advisories/unreviewed/2022/05/GHSA-w856-266m-fc74/GHSA-w856-266m-fc74.json @@ -7,12 +7,8 @@ "CVE-2009-4869" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Nasim Guest Book 1.2 allows remote attackers to inject arbitrary web script or HTML via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w99c-w692-7g63/GHSA-w99c-w692-7g63.json b/advisories/unreviewed/2022/05/GHSA-w99c-w692-7g63/GHSA-w99c-w692-7g63.json index a12396d5307..93745329cac 100644 --- a/advisories/unreviewed/2022/05/GHSA-w99c-w692-7g63/GHSA-w99c-w692-7g63.json +++ b/advisories/unreviewed/2022/05/GHSA-w99c-w692-7g63/GHSA-w99c-w692-7g63.json @@ -7,12 +7,8 @@ "CVE-2009-4510" ], "details": "The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier for remote attackers to conduct man-in-the-middle attacks and spoof arbitrary servers via crafted SSH packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w9jf-3rvw-rjrv/GHSA-w9jf-3rvw-rjrv.json b/advisories/unreviewed/2022/05/GHSA-w9jf-3rvw-rjrv/GHSA-w9jf-3rvw-rjrv.json index 613518098cd..16bdd8b09b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9jf-3rvw-rjrv/GHSA-w9jf-3rvw-rjrv.json +++ b/advisories/unreviewed/2022/05/GHSA-w9jf-3rvw-rjrv/GHSA-w9jf-3rvw-rjrv.json @@ -7,12 +7,8 @@ "CVE-2009-5063" ], "details": "Memory leak in the embedded_profile_len function in pngwutil.c in libpng before 1.2.39beta5 allows context-dependent attackers to cause a denial of service (memory leak or segmentation fault) via a JPEG image containing an iCCP chunk with a negative embedded profile length. NOTE: this is due to an incomplete fix for CVE-2006-7244.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wc87-pf49-vm39/GHSA-wc87-pf49-vm39.json b/advisories/unreviewed/2022/05/GHSA-wc87-pf49-vm39/GHSA-wc87-pf49-vm39.json index 8a06d3d5289..980c96a5d1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc87-pf49-vm39/GHSA-wc87-pf49-vm39.json +++ b/advisories/unreviewed/2022/05/GHSA-wc87-pf49-vm39/GHSA-wc87-pf49-vm39.json @@ -7,12 +7,8 @@ "CVE-2009-4716" ], "details": "Cross-site scripting (XSS) vulnerability in results.php in EDGEPHP EZWebSearch allows remote attackers to inject arbitrary web script or HTML via the language parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcv9-2wph-32gc/GHSA-wcv9-2wph-32gc.json b/advisories/unreviewed/2022/05/GHSA-wcv9-2wph-32gc/GHSA-wcv9-2wph-32gc.json index e9023660024..7c5a3283b38 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcv9-2wph-32gc/GHSA-wcv9-2wph-32gc.json +++ b/advisories/unreviewed/2022/05/GHSA-wcv9-2wph-32gc/GHSA-wcv9-2wph-32gc.json @@ -7,12 +7,8 @@ "CVE-2009-4673" ], "details": "SQL injection vulnerability in profile.php in Mole Group Adult Portal Script allows remote attackers to execute arbitrary SQL commands via the user_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg32-fxpp-5hgh/GHSA-wg32-fxpp-5hgh.json b/advisories/unreviewed/2022/05/GHSA-wg32-fxpp-5hgh/GHSA-wg32-fxpp-5hgh.json index 3c6f816c119..578497bbea9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg32-fxpp-5hgh/GHSA-wg32-fxpp-5hgh.json +++ b/advisories/unreviewed/2022/05/GHSA-wg32-fxpp-5hgh/GHSA-wg32-fxpp-5hgh.json @@ -7,12 +7,8 @@ "CVE-2009-4947" ], "details": "SQL injection vulnerability in frmLoginPwdReminderPopup.aspx in Q2 Solutions ConnX 4.0.20080606 allows remote attackers to execute arbitrary SQL commands via the txtEmail parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wg94-64mm-c924/GHSA-wg94-64mm-c924.json b/advisories/unreviewed/2022/05/GHSA-wg94-64mm-c924/GHSA-wg94-64mm-c924.json index 08dd05d42bb..b96b7ee1404 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg94-64mm-c924/GHSA-wg94-64mm-c924.json +++ b/advisories/unreviewed/2022/05/GHSA-wg94-64mm-c924/GHSA-wg94-64mm-c924.json @@ -7,12 +7,8 @@ "CVE-2009-5053" ], "details": "Unspecified vulnerability in Smarty before 3.0.0 beta 6 allows remote attackers to execute arbitrary PHP code by injecting this code into a cache file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wgpq-q6f4-j3jq/GHSA-wgpq-q6f4-j3jq.json b/advisories/unreviewed/2022/05/GHSA-wgpq-q6f4-j3jq/GHSA-wgpq-q6f4-j3jq.json index afa2e1e1945..fbad425844d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgpq-q6f4-j3jq/GHSA-wgpq-q6f4-j3jq.json +++ b/advisories/unreviewed/2022/05/GHSA-wgpq-q6f4-j3jq/GHSA-wgpq-q6f4-j3jq.json @@ -7,12 +7,8 @@ "CVE-2009-5080" ], "details": "The (1) contrib/eqn2graph/eqn2graph.sh, (2) contrib/grap2graph/grap2graph.sh, and (3) contrib/pic2graph/pic2graph.sh scripts in GNU troff (aka groff) 1.21 and earlier do not properly handle certain failed attempts to create temporary directories, which might allow local users to overwrite arbitrary files via a symlink attack on a file in a temporary directory, a different vulnerability than CVE-2004-1296.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wh75-j83p-2h8c/GHSA-wh75-j83p-2h8c.json b/advisories/unreviewed/2022/05/GHSA-wh75-j83p-2h8c/GHSA-wh75-j83p-2h8c.json index a7940ac7fde..9c2531cc3d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh75-j83p-2h8c/GHSA-wh75-j83p-2h8c.json +++ b/advisories/unreviewed/2022/05/GHSA-wh75-j83p-2h8c/GHSA-wh75-j83p-2h8c.json @@ -7,12 +7,8 @@ "CVE-2009-5020" ], "details": "Open redirect vulnerability in awredir.pl in AWStats before 6.95 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-whjg-r9wp-cxmg/GHSA-whjg-r9wp-cxmg.json b/advisories/unreviewed/2022/05/GHSA-whjg-r9wp-cxmg/GHSA-whjg-r9wp-cxmg.json index 70cfd4160ce..bd2053eb5bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-whjg-r9wp-cxmg/GHSA-whjg-r9wp-cxmg.json +++ b/advisories/unreviewed/2022/05/GHSA-whjg-r9wp-cxmg/GHSA-whjg-r9wp-cxmg.json @@ -7,12 +7,8 @@ "CVE-2009-4981" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in Photokorn Gallery 1.81 allow remote attackers to hijack the authentication of administrators.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj74-553p-4fv5/GHSA-wj74-553p-4fv5.json b/advisories/unreviewed/2022/05/GHSA-wj74-553p-4fv5/GHSA-wj74-553p-4fv5.json index 955cbd9b224..a8e29d49c98 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj74-553p-4fv5/GHSA-wj74-553p-4fv5.json +++ b/advisories/unreviewed/2022/05/GHSA-wj74-553p-4fv5/GHSA-wj74-553p-4fv5.json @@ -7,12 +7,8 @@ "CVE-2009-4301" ], "details": "mnet/lib.php in Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7, when MNET services are enabled, does not properly check permissions, which allows remote authenticated servers to execute arbitrary MNET functions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wjqf-74x2-h664/GHSA-wjqf-74x2-h664.json b/advisories/unreviewed/2022/05/GHSA-wjqf-74x2-h664/GHSA-wjqf-74x2-h664.json index f895fb469e8..6ae95ac1642 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjqf-74x2-h664/GHSA-wjqf-74x2-h664.json +++ b/advisories/unreviewed/2022/05/GHSA-wjqf-74x2-h664/GHSA-wjqf-74x2-h664.json @@ -7,12 +7,8 @@ "CVE-2009-4594" ], "details": "Unspecified vulnerability in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.131 for Domino 8.0.x has unknown impact and attack vectors, aka SPR SDOY7RHBNH.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wm9c-8gpw-jmf9/GHSA-wm9c-8gpw-jmf9.json b/advisories/unreviewed/2022/05/GHSA-wm9c-8gpw-jmf9/GHSA-wm9c-8gpw-jmf9.json index 8bd0c84266a..ac148058700 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm9c-8gpw-jmf9/GHSA-wm9c-8gpw-jmf9.json +++ b/advisories/unreviewed/2022/05/GHSA-wm9c-8gpw-jmf9/GHSA-wm9c-8gpw-jmf9.json @@ -7,12 +7,8 @@ "CVE-2009-4920" ], "details": "Unspecified vulnerability in CTM on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software 8.1(2) allows remote attackers to cause a denial of service (watchdog traceback) via a large amount of small-packet data, aka Bug ID CSCsu11412.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wmgr-c4qp-wqxx/GHSA-wmgr-c4qp-wqxx.json b/advisories/unreviewed/2022/05/GHSA-wmgr-c4qp-wqxx/GHSA-wmgr-c4qp-wqxx.json index d27f22b54a0..c9e50521c72 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmgr-c4qp-wqxx/GHSA-wmgr-c4qp-wqxx.json +++ b/advisories/unreviewed/2022/05/GHSA-wmgr-c4qp-wqxx/GHSA-wmgr-c4qp-wqxx.json @@ -7,12 +7,8 @@ "CVE-2009-4353" ], "details": "The Mobile Edition of TransWARE Active! mail 2003 build 2003.0139.0871 and earlier, and possibly other versions before 2003.0139.0911, does not remove the session ID in a Referer URL, which allows remote attackers to hijack web sessions via vectors such as an email with an embedded URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wmh2-329f-x8jq/GHSA-wmh2-329f-x8jq.json b/advisories/unreviewed/2022/05/GHSA-wmh2-329f-x8jq/GHSA-wmh2-329f-x8jq.json index 365aede45d7..999c43b0dd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmh2-329f-x8jq/GHSA-wmh2-329f-x8jq.json +++ b/advisories/unreviewed/2022/05/GHSA-wmh2-329f-x8jq/GHSA-wmh2-329f-x8jq.json @@ -7,12 +7,8 @@ "CVE-2009-4786" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Pligg before 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the HTTP Referer header to (1) admin/admin_config.php, (2) admin/admin_modules.php, (3) delete.php, (4) editlink.php, (5) submit.php, (6) submit_groups.php, (7) user_add_remove_links.php, and (8) user_settings.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wp76-m554-xw7f/GHSA-wp76-m554-xw7f.json b/advisories/unreviewed/2022/05/GHSA-wp76-m554-xw7f/GHSA-wp76-m554-xw7f.json index 044e28028de..f45dbfc7454 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp76-m554-xw7f/GHSA-wp76-m554-xw7f.json +++ b/advisories/unreviewed/2022/05/GHSA-wp76-m554-xw7f/GHSA-wp76-m554-xw7f.json @@ -7,12 +7,8 @@ "CVE-2009-5039" ], "details": "Memory leak in the gk_circuit_info_do_in_acf function in the H.323 implementation in Cisco IOS before 15.0(1)XA allows remote attackers to cause a denial of service (memory consumption) via a large number of calls over a long duration, as demonstrated by InterZone Clear Token (IZCT) test traffic, aka Bug ID CSCsz72535.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wp92-qgjm-gr78/GHSA-wp92-qgjm-gr78.json b/advisories/unreviewed/2022/05/GHSA-wp92-qgjm-gr78/GHSA-wp92-qgjm-gr78.json index 3a1a5c085f0..77028684df1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp92-qgjm-gr78/GHSA-wp92-qgjm-gr78.json +++ b/advisories/unreviewed/2022/05/GHSA-wp92-qgjm-gr78/GHSA-wp92-qgjm-gr78.json @@ -7,12 +7,8 @@ "CVE-2009-4600" ], "details": "SQL injection vulnerability in realestate20/loginaction.php in NetArt Media Real Estate Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the Email parameter (aka the username field). NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wqc7-2v82-hg6w/GHSA-wqc7-2v82-hg6w.json b/advisories/unreviewed/2022/05/GHSA-wqc7-2v82-hg6w/GHSA-wqc7-2v82-hg6w.json index 878bd8733bc..654485f4dc0 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqc7-2v82-hg6w/GHSA-wqc7-2v82-hg6w.json +++ b/advisories/unreviewed/2022/05/GHSA-wqc7-2v82-hg6w/GHSA-wqc7-2v82-hg6w.json @@ -7,12 +7,8 @@ "CVE-2009-4377" ], "details": "The (1) SMB and (2) SMB2 dissectors in Wireshark 0.9.0 through 1.2.4 allow remote attackers to cause a denial of service (crash) via a crafted packet that triggers a NULL pointer dereference, as demonstrated by fuzz-2009-12-07-11141.pcap.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wv8r-qj2j-7h4m/GHSA-wv8r-qj2j-7h4m.json b/advisories/unreviewed/2022/05/GHSA-wv8r-qj2j-7h4m/GHSA-wv8r-qj2j-7h4m.json index 75fd08ad3b0..9d1d6b134f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv8r-qj2j-7h4m/GHSA-wv8r-qj2j-7h4m.json +++ b/advisories/unreviewed/2022/05/GHSA-wv8r-qj2j-7h4m/GHSA-wv8r-qj2j-7h4m.json @@ -7,12 +7,8 @@ "CVE-2009-4912" ], "details": "Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) complete an SSL handshake with an HTTPS client even if this client is unauthorized, which might allow remote attackers to bypass intended access restrictions via an HTTPS session, aka Bug ID CSCso10876.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ww72-72c9-q73v/GHSA-ww72-72c9-q73v.json b/advisories/unreviewed/2022/05/GHSA-ww72-72c9-q73v/GHSA-ww72-72c9-q73v.json index b02b0e4d18a..9717e63e665 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww72-72c9-q73v/GHSA-ww72-72c9-q73v.json +++ b/advisories/unreviewed/2022/05/GHSA-ww72-72c9-q73v/GHSA-ww72-72c9-q73v.json @@ -7,12 +7,8 @@ "CVE-2009-4558" ], "details": "The Image Assist module 5.x-1.x before 5.x-1.8, 5.x-2.x before 2.0-alpha4, 6.x-1.x before 6.x-1.1, 6.x-2.x before 2.0-alpha4, and 6.x-3.x-dev before 2009-07-15, a module for Drupal, does not properly enforce privilege requirements for unspecified pages, which allows remote attackers to read the (1) title or (2) body of an arbitrary node via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wwv2-hq48-3mr9/GHSA-wwv2-hq48-3mr9.json b/advisories/unreviewed/2022/05/GHSA-wwv2-hq48-3mr9/GHSA-wwv2-hq48-3mr9.json index ac12b9474ca..7b5b670b353 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwv2-hq48-3mr9/GHSA-wwv2-hq48-3mr9.json +++ b/advisories/unreviewed/2022/05/GHSA-wwv2-hq48-3mr9/GHSA-wwv2-hq48-3mr9.json @@ -7,12 +7,8 @@ "CVE-2009-4571" ], "details": "Multiple SQL injection vulnerabilities in index.php in PhpShop 0.8.1 allow remote attackers to execute arbitrary SQL commands via the (1) module_id parameter in an admin/function_list action, the (2) vendor_id parameter in a vendor/vendor_form action, the (3) module_id parameter in an admin/module_form action, the (4) user_id parameter in an admin/user_form action, the (5) vendor_category_id parameter in a vendor/vendor_category_form action, the (6) user_id parameter in a store/user_form action, the (7) payment_method_id parameter in a store/payment_method_form action, the (8) tax_rate_id parameter in a tax/tax_form action, or the (9) category parameter in a shop/browse action. NOTE: the product_id vector is already covered by CVE-2008-0681.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x23x-hw7j-wph6/GHSA-x23x-hw7j-wph6.json b/advisories/unreviewed/2022/05/GHSA-x23x-hw7j-wph6/GHSA-x23x-hw7j-wph6.json index 0e36fbf129d..e662f54620b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x23x-hw7j-wph6/GHSA-x23x-hw7j-wph6.json +++ b/advisories/unreviewed/2022/05/GHSA-x23x-hw7j-wph6/GHSA-x23x-hw7j-wph6.json @@ -7,12 +7,8 @@ "CVE-2009-4685" ], "details": "Cross-site scripting (XSS) vulnerability in celebrities.php in PHP Scripts Now Astrology allows remote attackers to inject arbitrary web script or HTML via the day parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2c8-j424-rwrj/GHSA-x2c8-j424-rwrj.json b/advisories/unreviewed/2022/05/GHSA-x2c8-j424-rwrj/GHSA-x2c8-j424-rwrj.json index 9ea8e8fbf60..402e9f60f82 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2c8-j424-rwrj/GHSA-x2c8-j424-rwrj.json +++ b/advisories/unreviewed/2022/05/GHSA-x2c8-j424-rwrj/GHSA-x2c8-j424-rwrj.json @@ -7,12 +7,8 @@ "CVE-2009-4527" ], "details": "The Shibboleth authentication module 5.x before 5.x-3.4 and 6.x before 6.x-3.2, a module for Drupal, does not properly remove statically granted privileges after a logout or other session change, which allows physically proximate attackers to gain privileges by using an unattended web browser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x2vp-6r48-7mcq/GHSA-x2vp-6r48-7mcq.json b/advisories/unreviewed/2022/05/GHSA-x2vp-6r48-7mcq/GHSA-x2vp-6r48-7mcq.json index d27bafb807d..6a7bad8538e 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2vp-6r48-7mcq/GHSA-x2vp-6r48-7mcq.json +++ b/advisories/unreviewed/2022/05/GHSA-x2vp-6r48-7mcq/GHSA-x2vp-6r48-7mcq.json @@ -7,12 +7,8 @@ "CVE-2009-4766" ], "details": "YP Portal MS-Pro Surumu (aka MS-Pro Portal Scripti) 1.0 and 1.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for galeri/database/db.mdb.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x344-wx2q-g6rh/GHSA-x344-wx2q-g6rh.json b/advisories/unreviewed/2022/05/GHSA-x344-wx2q-g6rh/GHSA-x344-wx2q-g6rh.json index 43da9519780..939bae092ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-x344-wx2q-g6rh/GHSA-x344-wx2q-g6rh.json +++ b/advisories/unreviewed/2022/05/GHSA-x344-wx2q-g6rh/GHSA-x344-wx2q-g6rh.json @@ -7,12 +7,8 @@ "CVE-2009-4631" ], "details": "Off-by-one error in the VP3 decoder (vp3.c) in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted VP3 file that triggers an out-of-bounds read and possibly memory corruption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x3cc-pr6g-wq7c/GHSA-x3cc-pr6g-wq7c.json b/advisories/unreviewed/2022/05/GHSA-x3cc-pr6g-wq7c/GHSA-x3cc-pr6g-wq7c.json index 8a200f8086e..785cd426456 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3cc-pr6g-wq7c/GHSA-x3cc-pr6g-wq7c.json +++ b/advisories/unreviewed/2022/05/GHSA-x3cc-pr6g-wq7c/GHSA-x3cc-pr6g-wq7c.json @@ -7,12 +7,8 @@ "CVE-2009-4719" ], "details": "SQL injection vulnerability in index.php in Discloser 0.0.4 rc2 allows remote attackers to execute arbitrary SQL commands via the more parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3fh-hp6c-w93x/GHSA-x3fh-hp6c-w93x.json b/advisories/unreviewed/2022/05/GHSA-x3fh-hp6c-w93x/GHSA-x3fh-hp6c-w93x.json index 72259b94cc5..633ee463e2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3fh-hp6c-w93x/GHSA-x3fh-hp6c-w93x.json +++ b/advisories/unreviewed/2022/05/GHSA-x3fh-hp6c-w93x/GHSA-x3fh-hp6c-w93x.json @@ -7,12 +7,8 @@ "CVE-2009-4957" ], "details": "Directory traversal vulnerability in loadpanel.php in Interspire ActiveKB allows remote attackers to read arbitrary files and possibly have unspecified other impact via directory traversal sequences in the Panel parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3vr-2f3g-g32g/GHSA-x3vr-2f3g-g32g.json b/advisories/unreviewed/2022/05/GHSA-x3vr-2f3g-g32g/GHSA-x3vr-2f3g-g32g.json index 01910b87570..884361bc7e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3vr-2f3g-g32g/GHSA-x3vr-2f3g-g32g.json +++ b/advisories/unreviewed/2022/05/GHSA-x3vr-2f3g-g32g/GHSA-x3vr-2f3g-g32g.json @@ -7,12 +7,8 @@ "CVE-2009-4866" ], "details": "Cross-site scripting (XSS) vulnerability in search.cgi in Matt's Script Archive (MSA) Simple Search 1.0 allows remote attackers to inject arbitrary web script or HTML via the terms parameter. NOTE: some of these details are obtained from third party information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x45p-q5pf-h9jx/GHSA-x45p-q5pf-h9jx.json b/advisories/unreviewed/2022/05/GHSA-x45p-q5pf-h9jx/GHSA-x45p-q5pf-h9jx.json index 14771bf09e0..69ff9c73388 100644 --- a/advisories/unreviewed/2022/05/GHSA-x45p-q5pf-h9jx/GHSA-x45p-q5pf-h9jx.json +++ b/advisories/unreviewed/2022/05/GHSA-x45p-q5pf-h9jx/GHSA-x45p-q5pf-h9jx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x48j-xc7x-wg7w/GHSA-x48j-xc7x-wg7w.json b/advisories/unreviewed/2022/05/GHSA-x48j-xc7x-wg7w/GHSA-x48j-xc7x-wg7w.json index 95cdb9e27e2..984c6cd93e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-x48j-xc7x-wg7w/GHSA-x48j-xc7x-wg7w.json +++ b/advisories/unreviewed/2022/05/GHSA-x48j-xc7x-wg7w/GHSA-x48j-xc7x-wg7w.json @@ -7,12 +7,8 @@ "CVE-2009-4983" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Silurus Classifieds 1.0 allow remote attackers to inject arbitrary web script or HTML via the ID parameter to (1) category.php and (2) wcategory.php, and the (3) keywords parameter to search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x49g-87wc-w2pm/GHSA-x49g-87wc-w2pm.json b/advisories/unreviewed/2022/05/GHSA-x49g-87wc-w2pm/GHSA-x49g-87wc-w2pm.json index 8899bc010ec..598499a9a3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-x49g-87wc-w2pm/GHSA-x49g-87wc-w2pm.json +++ b/advisories/unreviewed/2022/05/GHSA-x49g-87wc-w2pm/GHSA-x49g-87wc-w2pm.json @@ -7,12 +7,8 @@ "CVE-2009-4385" ], "details": "Multiple cross-site request forgery (CSRF) vulnerabilities in Scriptsez.net Ez Poll Hoster (EPH) allow remote attackers to (1) hijack the authentication of arbitrary users for requests that delete polls via the delete_poll action to index.php; and hijack the authentication of administrators for requests that (2) delete users via the manage action to admin.php, or (3) send arbitrary email to arbitrary users in the email action to admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x683-mg94-fc86/GHSA-x683-mg94-fc86.json b/advisories/unreviewed/2022/05/GHSA-x683-mg94-fc86/GHSA-x683-mg94-fc86.json index aced75c4fd4..3ca3f00f05b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x683-mg94-fc86/GHSA-x683-mg94-fc86.json +++ b/advisories/unreviewed/2022/05/GHSA-x683-mg94-fc86/GHSA-x683-mg94-fc86.json @@ -7,12 +7,8 @@ "CVE-2009-4709" ], "details": "SQL injection vulnerability in the datamints Newsticker (datamints_newsticker) extension before 0.7.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x6gv-2r2j-q73m/GHSA-x6gv-2r2j-q73m.json b/advisories/unreviewed/2022/05/GHSA-x6gv-2r2j-q73m/GHSA-x6gv-2r2j-q73m.json index dff9011ab5b..a43aa453e05 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6gv-2r2j-q73m/GHSA-x6gv-2r2j-q73m.json +++ b/advisories/unreviewed/2022/05/GHSA-x6gv-2r2j-q73m/GHSA-x6gv-2r2j-q73m.json @@ -7,12 +7,8 @@ "CVE-2009-5076" ], "details": "CRE Loaded before 6.2.14, and possibly other versions before 6.3.x, allows remote attackers to bypass authentication and gain administrator privileges via a request with (1) login.php or (2) password_forgotten.php appended as the PATH_INFO, which bypasses a check that uses PHP_SELF, which is not properly handled by (a) includes/application_top.php and (b) admin/includes/application_top.php, as exploited in the wild in 2009.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7xx-63vc-46xf/GHSA-x7xx-63vc-46xf.json b/advisories/unreviewed/2022/05/GHSA-x7xx-63vc-46xf/GHSA-x7xx-63vc-46xf.json index e48d1ec7da4..4132eb574ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7xx-63vc-46xf/GHSA-x7xx-63vc-46xf.json +++ b/advisories/unreviewed/2022/05/GHSA-x7xx-63vc-46xf/GHSA-x7xx-63vc-46xf.json @@ -7,12 +7,8 @@ "CVE-2009-4436" ], "details": "Multiple SQL injection vulnerabilities in Active Web Softwares eWebquiz 8 allow remote attackers to execute arbitrary SQL commands via the QuizID parameter to (1) questions.asp, (2) importquestions.asp, and (3) quiztakers.asp, different vectors than CVE-2007-1706.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8cf-gv64-wx64/GHSA-x8cf-gv64-wx64.json b/advisories/unreviewed/2022/05/GHSA-x8cf-gv64-wx64/GHSA-x8cf-gv64-wx64.json index 38ef5199d38..23580900c70 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8cf-gv64-wx64/GHSA-x8cf-gv64-wx64.json +++ b/advisories/unreviewed/2022/05/GHSA-x8cf-gv64-wx64/GHSA-x8cf-gv64-wx64.json @@ -7,12 +7,8 @@ "CVE-2009-4294" ], "details": "Unspecified vulnerability in the Authentication Manager (aka utauthd) in Sun Ray Server Software 4.0 and 4.1 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8fq-9xqq-q34f/GHSA-x8fq-9xqq-q34f.json b/advisories/unreviewed/2022/05/GHSA-x8fq-9xqq-q34f/GHSA-x8fq-9xqq-q34f.json index d65630ba27d..8907dde56cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8fq-9xqq-q34f/GHSA-x8fq-9xqq-q34f.json +++ b/advisories/unreviewed/2022/05/GHSA-x8fq-9xqq-q34f/GHSA-x8fq-9xqq-q34f.json @@ -7,12 +7,8 @@ "CVE-2009-4700" ], "details": "Directory traversal vulnerability in index.php in SkaDate Dating allows remote attackers to read arbitrary files via a .. (dot dot) in the layout parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8rm-h67q-v849/GHSA-x8rm-h67q-v849.json b/advisories/unreviewed/2022/05/GHSA-x8rm-h67q-v849/GHSA-x8rm-h67q-v849.json index efc6ab3359a..d7373b9009d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8rm-h67q-v849/GHSA-x8rm-h67q-v849.json +++ b/advisories/unreviewed/2022/05/GHSA-x8rm-h67q-v849/GHSA-x8rm-h67q-v849.json @@ -7,12 +7,8 @@ "CVE-2009-4723" ], "details": "Directory traversal vulnerability in confirm.php in Netpet CMS 1.9 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8vf-gpmh-vv2c/GHSA-x8vf-gpmh-vv2c.json b/advisories/unreviewed/2022/05/GHSA-x8vf-gpmh-vv2c/GHSA-x8vf-gpmh-vv2c.json index dafbca714d6..fcc5c6dd7bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8vf-gpmh-vv2c/GHSA-x8vf-gpmh-vv2c.json +++ b/advisories/unreviewed/2022/05/GHSA-x8vf-gpmh-vv2c/GHSA-x8vf-gpmh-vv2c.json @@ -7,12 +7,8 @@ "CVE-2009-5034" ], "details": "IBM Lotus Notes Traveler before 8.5.0.2 allows remote authenticated users to cause a denial of service (memory consumption and daemon crash) by syncing a large volume of data, related to the launch of a new process to handle the data while the previous process is still operating on the data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf82-rv29-8prj/GHSA-xf82-rv29-8prj.json b/advisories/unreviewed/2022/05/GHSA-xf82-rv29-8prj/GHSA-xf82-rv29-8prj.json index 07f35b15b02..7d8e08117d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf82-rv29-8prj/GHSA-xf82-rv29-8prj.json +++ b/advisories/unreviewed/2022/05/GHSA-xf82-rv29-8prj/GHSA-xf82-rv29-8prj.json @@ -7,12 +7,8 @@ "CVE-2009-4556" ], "details": "Quick Heal AntiVirus Plus 2009 10.00 SP1 and Quick Heal Total Security 2009 10.00 SP1 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs, as demonstrated by replacing quhlpsvc.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xfg8-jx2q-5c9g/GHSA-xfg8-jx2q-5c9g.json b/advisories/unreviewed/2022/05/GHSA-xfg8-jx2q-5c9g/GHSA-xfg8-jx2q-5c9g.json index fa7105fa606..f811404c62a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfg8-jx2q-5c9g/GHSA-xfg8-jx2q-5c9g.json +++ b/advisories/unreviewed/2022/05/GHSA-xfg8-jx2q-5c9g/GHSA-xfg8-jx2q-5c9g.json @@ -7,12 +7,8 @@ "CVE-2009-4598" ], "details": "SQL injection vulnerability in the JPhoto (com_jphoto) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a category action to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg2f-gj2p-r7xq/GHSA-xg2f-gj2p-r7xq.json b/advisories/unreviewed/2022/05/GHSA-xg2f-gj2p-r7xq/GHSA-xg2f-gj2p-r7xq.json index 8fc3d724d3d..44caecba751 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg2f-gj2p-r7xq/GHSA-xg2f-gj2p-r7xq.json +++ b/advisories/unreviewed/2022/05/GHSA-xg2f-gj2p-r7xq/GHSA-xg2f-gj2p-r7xq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xgj4-hqhc-7c6f/GHSA-xgj4-hqhc-7c6f.json b/advisories/unreviewed/2022/05/GHSA-xgj4-hqhc-7c6f/GHSA-xgj4-hqhc-7c6f.json index 3eedfc5e32c..abfa4bc9dae 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgj4-hqhc-7c6f/GHSA-xgj4-hqhc-7c6f.json +++ b/advisories/unreviewed/2022/05/GHSA-xgj4-hqhc-7c6f/GHSA-xgj4-hqhc-7c6f.json @@ -7,12 +7,8 @@ "CVE-2009-4658" ], "details": "Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the management interface. NOTE: this can be leveraged by non-authenticated attackers using CVE-2009-4657.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xh4m-2fcx-rv4w/GHSA-xh4m-2fcx-rv4w.json b/advisories/unreviewed/2022/05/GHSA-xh4m-2fcx-rv4w/GHSA-xh4m-2fcx-rv4w.json index 20e0df5a6f9..e64ba4c6050 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh4m-2fcx-rv4w/GHSA-xh4m-2fcx-rv4w.json +++ b/advisories/unreviewed/2022/05/GHSA-xh4m-2fcx-rv4w/GHSA-xh4m-2fcx-rv4w.json @@ -7,12 +7,8 @@ "CVE-2009-4737" ], "details": "Stack-based buffer overflow in JustSystems Corporation Ichitaro 13, 2004 through 2009, Viewer 2009 19.0.1.0 and earlier, and other versions allows context-dependent attackers to execute arbitrary code via a crafted Rich Text File (RTF), related to \"pvpara ffooter.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhfh-28gq-v6jp/GHSA-xhfh-28gq-v6jp.json b/advisories/unreviewed/2022/05/GHSA-xhfh-28gq-v6jp/GHSA-xhfh-28gq-v6jp.json index 4354067b8f5..136ca620b4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhfh-28gq-v6jp/GHSA-xhfh-28gq-v6jp.json +++ b/advisories/unreviewed/2022/05/GHSA-xhfh-28gq-v6jp/GHSA-xhfh-28gq-v6jp.json @@ -7,12 +7,8 @@ "CVE-2009-4499" ], "details": "SQL injection vulnerability in the get_history_lastid function in the nodewatcher component in Zabbix Server before 1.6.8 allows remote attackers to execute arbitrary SQL commands via a crafted request, possibly related to the send_history_last_id function in zabbix_server/trapper/nodehistory.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj65-pmm9-g4xv/GHSA-xj65-pmm9-g4xv.json b/advisories/unreviewed/2022/05/GHSA-xj65-pmm9-g4xv/GHSA-xj65-pmm9-g4xv.json index 0f3294a6800..14a7ff7893f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj65-pmm9-g4xv/GHSA-xj65-pmm9-g4xv.json +++ b/advisories/unreviewed/2022/05/GHSA-xj65-pmm9-g4xv/GHSA-xj65-pmm9-g4xv.json @@ -7,12 +7,8 @@ "CVE-2009-4612" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the WebApp JSP Snoop page in Mort Bay Jetty 6.1.x through 6.1.21 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI under (1) jspsnoop/, (2) jspsnoop/ERROR/, and (3) jspsnoop/IOException/, and possibly the PATH_INFO to (4) snoop.jsp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xjq5-7h7q-37wc/GHSA-xjq5-7h7q-37wc.json b/advisories/unreviewed/2022/05/GHSA-xjq5-7h7q-37wc/GHSA-xjq5-7h7q-37wc.json index 25e2f93566a..20d6e8e86cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjq5-7h7q-37wc/GHSA-xjq5-7h7q-37wc.json +++ b/advisories/unreviewed/2022/05/GHSA-xjq5-7h7q-37wc/GHSA-xjq5-7h7q-37wc.json @@ -7,12 +7,8 @@ "CVE-2009-5040" ], "details": "CallManager Express (CME) on Cisco IOS before 15.0(1)XA allows remote authenticated users to cause a denial of service (device crash) by using an extension mobility (EM) phone to interact with the menu for SNR number changes, aka Bug ID CSCta63555.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xjwj-w52g-v6c5/GHSA-xjwj-w52g-v6c5.json b/advisories/unreviewed/2022/05/GHSA-xjwj-w52g-v6c5/GHSA-xjwj-w52g-v6c5.json index 70d245244da..f1126b170fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjwj-w52g-v6c5/GHSA-xjwj-w52g-v6c5.json +++ b/advisories/unreviewed/2022/05/GHSA-xjwj-w52g-v6c5/GHSA-xjwj-w52g-v6c5.json @@ -7,12 +7,8 @@ "CVE-2009-4818" ], "details": "Unrestricted file upload vulnerability in upload.php in PHPSimplicity Simplicity oF Upload 1.3.2 allows remote attackers to execute arbitrary PHP code by uploading a file with a double extension, as demonstrated by .php.gif.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xm2p-w62m-c2hg/GHSA-xm2p-w62m-c2hg.json b/advisories/unreviewed/2022/05/GHSA-xm2p-w62m-c2hg/GHSA-xm2p-w62m-c2hg.json index 61103575cf9..955e88d0ae1 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm2p-w62m-c2hg/GHSA-xm2p-w62m-c2hg.json +++ b/advisories/unreviewed/2022/05/GHSA-xm2p-w62m-c2hg/GHSA-xm2p-w62m-c2hg.json @@ -7,12 +7,8 @@ "CVE-2009-5094" ], "details": "SQL injection vulnerability in info.php in CMS Faethon 2.2.0 Ultimate allows remote attackers to execute arbitrary SQL commands via the item parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm5f-r33j-c674/GHSA-xm5f-r33j-c674.json b/advisories/unreviewed/2022/05/GHSA-xm5f-r33j-c674/GHSA-xm5f-r33j-c674.json index 5637f340a26..ef5d0d1981f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm5f-r33j-c674/GHSA-xm5f-r33j-c674.json +++ b/advisories/unreviewed/2022/05/GHSA-xm5f-r33j-c674/GHSA-xm5f-r33j-c674.json @@ -7,12 +7,8 @@ "CVE-2009-4702" ], "details": "SQL injection vulnerability in the Tour Extension (pm_tour) extension before 0.0.13 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xmjp-4jm4-9f5j/GHSA-xmjp-4jm4-9f5j.json b/advisories/unreviewed/2022/05/GHSA-xmjp-4jm4-9f5j/GHSA-xmjp-4jm4-9f5j.json index 5e93ccfa969..85068aaa601 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmjp-4jm4-9f5j/GHSA-xmjp-4jm4-9f5j.json +++ b/advisories/unreviewed/2022/05/GHSA-xmjp-4jm4-9f5j/GHSA-xmjp-4jm4-9f5j.json @@ -7,12 +7,8 @@ "CVE-2009-4763" ], "details": "Unspecified vulnerability in the ClickHeat plugin, as used in phpMyVisites before 2.4, has unknown impact and attack vectors. NOTE: due to lack of details from the vendor, it is not clear whether this is related to CVE-2008-5793.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xmq4-6j6c-v6v5/GHSA-xmq4-6j6c-v6v5.json b/advisories/unreviewed/2022/05/GHSA-xmq4-6j6c-v6v5/GHSA-xmq4-6j6c-v6v5.json index be4877f5641..3e81860887d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmq4-6j6c-v6v5/GHSA-xmq4-6j6c-v6v5.json +++ b/advisories/unreviewed/2022/05/GHSA-xmq4-6j6c-v6v5/GHSA-xmq4-6j6c-v6v5.json @@ -7,12 +7,8 @@ "CVE-2009-4904" ], "details": "article.php in oBlog does not properly restrict comments, which allows remote attackers to cause a denial of service (blog spam) via a comment=new action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xph7-589w-3m8h/GHSA-xph7-589w-3m8h.json b/advisories/unreviewed/2022/05/GHSA-xph7-589w-3m8h/GHSA-xph7-589w-3m8h.json index 5e9059af3bf..bfda095b296 100644 --- a/advisories/unreviewed/2022/05/GHSA-xph7-589w-3m8h/GHSA-xph7-589w-3m8h.json +++ b/advisories/unreviewed/2022/05/GHSA-xph7-589w-3m8h/GHSA-xph7-589w-3m8h.json @@ -7,12 +7,8 @@ "CVE-2009-4734" ], "details": "SQL injection vulnerability in login.php in Allomani Movies Library (Movies & Clips) 2.7.0 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xpwf-qvcr-m7xh/GHSA-xpwf-qvcr-m7xh.json b/advisories/unreviewed/2022/05/GHSA-xpwf-qvcr-m7xh/GHSA-xpwf-qvcr-m7xh.json index cc9341f4013..3bf0f3ae79c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpwf-qvcr-m7xh/GHSA-xpwf-qvcr-m7xh.json +++ b/advisories/unreviewed/2022/05/GHSA-xpwf-qvcr-m7xh/GHSA-xpwf-qvcr-m7xh.json @@ -7,12 +7,8 @@ "CVE-2009-4375" ], "details": "SQL injection vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to execute arbitrary SQL commands via the id_document parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xq95-4rwq-mppc/GHSA-xq95-4rwq-mppc.json b/advisories/unreviewed/2022/05/GHSA-xq95-4rwq-mppc/GHSA-xq95-4rwq-mppc.json index d1929cb362b..b00fe5daa4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq95-4rwq-mppc/GHSA-xq95-4rwq-mppc.json +++ b/advisories/unreviewed/2022/05/GHSA-xq95-4rwq-mppc/GHSA-xq95-4rwq-mppc.json @@ -7,12 +7,8 @@ "CVE-2009-5079" ], "details": "The (1) gendef.sh, (2) doc/fixinfo.sh, and (3) contrib/gdiffmk/tests/runtests.in scripts in GNU troff (aka groff) 1.21 and earlier allow local users to overwrite arbitrary files via a symlink attack on a gro#####.tmp or /tmp/##### temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqfm-c6jm-rgq4/GHSA-xqfm-c6jm-rgq4.json b/advisories/unreviewed/2022/05/GHSA-xqfm-c6jm-rgq4/GHSA-xqfm-c6jm-rgq4.json index d2a0aec8926..699bf50c1c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqfm-c6jm-rgq4/GHSA-xqfm-c6jm-rgq4.json +++ b/advisories/unreviewed/2022/05/GHSA-xqfm-c6jm-rgq4/GHSA-xqfm-c6jm-rgq4.json @@ -7,12 +7,8 @@ "CVE-2009-4568" ], "details": "Cross-site scripting (XSS) vulnerability in Webmin before 1.500 and Usermin before 1.430 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvpc-56xq-7h7f/GHSA-xvpc-56xq-7h7f.json b/advisories/unreviewed/2022/05/GHSA-xvpc-56xq-7h7f/GHSA-xvpc-56xq-7h7f.json index c901b0192ce..1c13a653237 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvpc-56xq-7h7f/GHSA-xvpc-56xq-7h7f.json +++ b/advisories/unreviewed/2022/05/GHSA-xvpc-56xq-7h7f/GHSA-xvpc-56xq-7h7f.json @@ -7,12 +7,8 @@ "CVE-2009-4848" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ToutVirtual VirtualIQ Pro 3.2 build 7882 and 3.5 build 8691 allow remote attackers to inject arbitrary web script or HTML via the (1) userId parameter to tvserver/server/user/setPermissions.jsp, (2) deptName parameter to tvserver/server/user/addDepartment.jsp, (3) ID parameter to tvserver/server/inventory/inventoryTabs.jsp, (4) reportName parameter to tvserver/reports/virtualIQAdminReports.do, or (5) middleName parameter in a save action to tvserver/user/user.do.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw5h-h3cf-m4mx/GHSA-xw5h-h3cf-m4mx.json b/advisories/unreviewed/2022/05/GHSA-xw5h-h3cf-m4mx/GHSA-xw5h-h3cf-m4mx.json index 9ee4999488e..028c22f1a6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw5h-h3cf-m4mx/GHSA-xw5h-h3cf-m4mx.json +++ b/advisories/unreviewed/2022/05/GHSA-xw5h-h3cf-m4mx/GHSA-xw5h-h3cf-m4mx.json @@ -7,12 +7,8 @@ "CVE-2009-4374" ], "details": "Directory traversal vulnerability in repository/repository_attachment.php in AlienVault Open Source Security Information Management (OSSIM) 2.1.5, and possibly other versions before 2.1.5-4, allows remote attackers to upload files into arbitrary directories via a .. (dot dot) in the id_document parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xxxh-xcx8-7g7r/GHSA-xxxh-xcx8-7g7r.json b/advisories/unreviewed/2022/05/GHSA-xxxh-xcx8-7g7r/GHSA-xxxh-xcx8-7g7r.json index 12d734b7442..dfe4c7dad36 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxxh-xcx8-7g7r/GHSA-xxxh-xcx8-7g7r.json +++ b/advisories/unreviewed/2022/05/GHSA-xxxh-xcx8-7g7r/GHSA-xxxh-xcx8-7g7r.json @@ -7,12 +7,8 @@ "CVE-2009-4705" ], "details": "Cross-site scripting (XSS) vulnerability in the Twitter Search (twittersearch) extension before 0.1.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-xmjj-rc4w-452x/GHSA-xmjj-rc4w-452x.json b/advisories/unreviewed/2023/02/GHSA-xmjj-rc4w-452x/GHSA-xmjj-rc4w-452x.json index 6fd09fb5d32..4b4c1f66ea3 100644 --- a/advisories/unreviewed/2023/02/GHSA-xmjj-rc4w-452x/GHSA-xmjj-rc4w-452x.json +++ b/advisories/unreviewed/2023/02/GHSA-xmjj-rc4w-452x/GHSA-xmjj-rc4w-452x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-p365-9mq8-7r2q/GHSA-p365-9mq8-7r2q.json b/advisories/unreviewed/2023/03/GHSA-p365-9mq8-7r2q/GHSA-p365-9mq8-7r2q.json index 85d9f07bb82..1d18b9f7f55 100644 --- a/advisories/unreviewed/2023/03/GHSA-p365-9mq8-7r2q/GHSA-p365-9mq8-7r2q.json +++ b/advisories/unreviewed/2023/03/GHSA-p365-9mq8-7r2q/GHSA-p365-9mq8-7r2q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-pgv5-rjwj-wrcc/GHSA-pgv5-rjwj-wrcc.json b/advisories/unreviewed/2023/03/GHSA-pgv5-rjwj-wrcc/GHSA-pgv5-rjwj-wrcc.json index baf733d9692..e77254e134d 100644 --- a/advisories/unreviewed/2023/03/GHSA-pgv5-rjwj-wrcc/GHSA-pgv5-rjwj-wrcc.json +++ b/advisories/unreviewed/2023/03/GHSA-pgv5-rjwj-wrcc/GHSA-pgv5-rjwj-wrcc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-w85v-q239-vpx6/GHSA-w85v-q239-vpx6.json b/advisories/unreviewed/2023/03/GHSA-w85v-q239-vpx6/GHSA-w85v-q239-vpx6.json index 0d4e4343fc3..25785fc58b0 100644 --- a/advisories/unreviewed/2023/03/GHSA-w85v-q239-vpx6/GHSA-w85v-q239-vpx6.json +++ b/advisories/unreviewed/2023/03/GHSA-w85v-q239-vpx6/GHSA-w85v-q239-vpx6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-xf7f-g3ff-jjc9/GHSA-xf7f-g3ff-jjc9.json b/advisories/unreviewed/2023/03/GHSA-xf7f-g3ff-jjc9/GHSA-xf7f-g3ff-jjc9.json index 97944229572..a942e1dd825 100644 --- a/advisories/unreviewed/2023/03/GHSA-xf7f-g3ff-jjc9/GHSA-xf7f-g3ff-jjc9.json +++ b/advisories/unreviewed/2023/03/GHSA-xf7f-g3ff-jjc9/GHSA-xf7f-g3ff-jjc9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-j96r-2c7w-r3f2/GHSA-j96r-2c7w-r3f2.json b/advisories/unreviewed/2023/04/GHSA-j96r-2c7w-r3f2/GHSA-j96r-2c7w-r3f2.json index 478e81a4135..e8de47146aa 100644 --- a/advisories/unreviewed/2023/04/GHSA-j96r-2c7w-r3f2/GHSA-j96r-2c7w-r3f2.json +++ b/advisories/unreviewed/2023/04/GHSA-j96r-2c7w-r3f2/GHSA-j96r-2c7w-r3f2.json @@ -7,12 +7,8 @@ "CVE-2023-26934" ], "details": "An issue found in XPDF v.4.04 allows an attacker to cause a denial of service via a crafted pdf file in the object.cc parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/11/GHSA-33qg-rqxq-9ghc/GHSA-33qg-rqxq-9ghc.json b/advisories/unreviewed/2023/11/GHSA-33qg-rqxq-9ghc/GHSA-33qg-rqxq-9ghc.json index 6630bcecfa3..e5bda13080d 100644 --- a/advisories/unreviewed/2023/11/GHSA-33qg-rqxq-9ghc/GHSA-33qg-rqxq-9ghc.json +++ b/advisories/unreviewed/2023/11/GHSA-33qg-rqxq-9ghc/GHSA-33qg-rqxq-9ghc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-22m2-4mc2-vrhj/GHSA-22m2-4mc2-vrhj.json b/advisories/unreviewed/2023/12/GHSA-22m2-4mc2-vrhj/GHSA-22m2-4mc2-vrhj.json index a87754cc029..0aae7abcb88 100644 --- a/advisories/unreviewed/2023/12/GHSA-22m2-4mc2-vrhj/GHSA-22m2-4mc2-vrhj.json +++ b/advisories/unreviewed/2023/12/GHSA-22m2-4mc2-vrhj/GHSA-22m2-4mc2-vrhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-27c6-853g-wf2c/GHSA-27c6-853g-wf2c.json b/advisories/unreviewed/2023/12/GHSA-27c6-853g-wf2c/GHSA-27c6-853g-wf2c.json index 6c0ee20c1fd..c60ce090d46 100644 --- a/advisories/unreviewed/2023/12/GHSA-27c6-853g-wf2c/GHSA-27c6-853g-wf2c.json +++ b/advisories/unreviewed/2023/12/GHSA-27c6-853g-wf2c/GHSA-27c6-853g-wf2c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2973-f65x-7j53/GHSA-2973-f65x-7j53.json b/advisories/unreviewed/2023/12/GHSA-2973-f65x-7j53/GHSA-2973-f65x-7j53.json index 9c3b85ca696..f21d75da202 100644 --- a/advisories/unreviewed/2023/12/GHSA-2973-f65x-7j53/GHSA-2973-f65x-7j53.json +++ b/advisories/unreviewed/2023/12/GHSA-2973-f65x-7j53/GHSA-2973-f65x-7j53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2r6p-x88w-4f7v/GHSA-2r6p-x88w-4f7v.json b/advisories/unreviewed/2023/12/GHSA-2r6p-x88w-4f7v/GHSA-2r6p-x88w-4f7v.json index b87f098e2a1..9e69f682c93 100644 --- a/advisories/unreviewed/2023/12/GHSA-2r6p-x88w-4f7v/GHSA-2r6p-x88w-4f7v.json +++ b/advisories/unreviewed/2023/12/GHSA-2r6p-x88w-4f7v/GHSA-2r6p-x88w-4f7v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2wph-4xpg-r884/GHSA-2wph-4xpg-r884.json b/advisories/unreviewed/2023/12/GHSA-2wph-4xpg-r884/GHSA-2wph-4xpg-r884.json index 76d96771878..e0d3ab72e49 100644 --- a/advisories/unreviewed/2023/12/GHSA-2wph-4xpg-r884/GHSA-2wph-4xpg-r884.json +++ b/advisories/unreviewed/2023/12/GHSA-2wph-4xpg-r884/GHSA-2wph-4xpg-r884.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2wrr-4m2q-p7pf/GHSA-2wrr-4m2q-p7pf.json b/advisories/unreviewed/2023/12/GHSA-2wrr-4m2q-p7pf/GHSA-2wrr-4m2q-p7pf.json index 7ea38c238a1..8434d605b18 100644 --- a/advisories/unreviewed/2023/12/GHSA-2wrr-4m2q-p7pf/GHSA-2wrr-4m2q-p7pf.json +++ b/advisories/unreviewed/2023/12/GHSA-2wrr-4m2q-p7pf/GHSA-2wrr-4m2q-p7pf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-35gx-vxvr-hvjq/GHSA-35gx-vxvr-hvjq.json b/advisories/unreviewed/2023/12/GHSA-35gx-vxvr-hvjq/GHSA-35gx-vxvr-hvjq.json index f9580c776d0..244708aa642 100644 --- a/advisories/unreviewed/2023/12/GHSA-35gx-vxvr-hvjq/GHSA-35gx-vxvr-hvjq.json +++ b/advisories/unreviewed/2023/12/GHSA-35gx-vxvr-hvjq/GHSA-35gx-vxvr-hvjq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-37hj-7rj6-j3pq/GHSA-37hj-7rj6-j3pq.json b/advisories/unreviewed/2023/12/GHSA-37hj-7rj6-j3pq/GHSA-37hj-7rj6-j3pq.json index 72f6bf7ac8f..431398a2c8c 100644 --- a/advisories/unreviewed/2023/12/GHSA-37hj-7rj6-j3pq/GHSA-37hj-7rj6-j3pq.json +++ b/advisories/unreviewed/2023/12/GHSA-37hj-7rj6-j3pq/GHSA-37hj-7rj6-j3pq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-3r4f-j965-5v49/GHSA-3r4f-j965-5v49.json b/advisories/unreviewed/2023/12/GHSA-3r4f-j965-5v49/GHSA-3r4f-j965-5v49.json index 3dfb73a2449..3d349022565 100644 --- a/advisories/unreviewed/2023/12/GHSA-3r4f-j965-5v49/GHSA-3r4f-j965-5v49.json +++ b/advisories/unreviewed/2023/12/GHSA-3r4f-j965-5v49/GHSA-3r4f-j965-5v49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-43jm-ppvr-g829/GHSA-43jm-ppvr-g829.json b/advisories/unreviewed/2023/12/GHSA-43jm-ppvr-g829/GHSA-43jm-ppvr-g829.json index 1bf758c8ca0..8255b45c9b3 100644 --- a/advisories/unreviewed/2023/12/GHSA-43jm-ppvr-g829/GHSA-43jm-ppvr-g829.json +++ b/advisories/unreviewed/2023/12/GHSA-43jm-ppvr-g829/GHSA-43jm-ppvr-g829.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-44fh-7rx8-5xj8/GHSA-44fh-7rx8-5xj8.json b/advisories/unreviewed/2023/12/GHSA-44fh-7rx8-5xj8/GHSA-44fh-7rx8-5xj8.json index fe3f2490f19..5842a47fadd 100644 --- a/advisories/unreviewed/2023/12/GHSA-44fh-7rx8-5xj8/GHSA-44fh-7rx8-5xj8.json +++ b/advisories/unreviewed/2023/12/GHSA-44fh-7rx8-5xj8/GHSA-44fh-7rx8-5xj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-47wv-4f3w-f7m5/GHSA-47wv-4f3w-f7m5.json b/advisories/unreviewed/2023/12/GHSA-47wv-4f3w-f7m5/GHSA-47wv-4f3w-f7m5.json index 65fc4e623bd..af2abcb46e4 100644 --- a/advisories/unreviewed/2023/12/GHSA-47wv-4f3w-f7m5/GHSA-47wv-4f3w-f7m5.json +++ b/advisories/unreviewed/2023/12/GHSA-47wv-4f3w-f7m5/GHSA-47wv-4f3w-f7m5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4924-phj4-3978/GHSA-4924-phj4-3978.json b/advisories/unreviewed/2023/12/GHSA-4924-phj4-3978/GHSA-4924-phj4-3978.json index 7a715078a90..5b16697f855 100644 --- a/advisories/unreviewed/2023/12/GHSA-4924-phj4-3978/GHSA-4924-phj4-3978.json +++ b/advisories/unreviewed/2023/12/GHSA-4924-phj4-3978/GHSA-4924-phj4-3978.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4fr7-9qv2-r87x/GHSA-4fr7-9qv2-r87x.json b/advisories/unreviewed/2023/12/GHSA-4fr7-9qv2-r87x/GHSA-4fr7-9qv2-r87x.json index a4f046ef41e..9fdc528a3a6 100644 --- a/advisories/unreviewed/2023/12/GHSA-4fr7-9qv2-r87x/GHSA-4fr7-9qv2-r87x.json +++ b/advisories/unreviewed/2023/12/GHSA-4fr7-9qv2-r87x/GHSA-4fr7-9qv2-r87x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4g3x-rfq3-9rgr/GHSA-4g3x-rfq3-9rgr.json b/advisories/unreviewed/2023/12/GHSA-4g3x-rfq3-9rgr/GHSA-4g3x-rfq3-9rgr.json index b3134f7bb15..5414e4b74aa 100644 --- a/advisories/unreviewed/2023/12/GHSA-4g3x-rfq3-9rgr/GHSA-4g3x-rfq3-9rgr.json +++ b/advisories/unreviewed/2023/12/GHSA-4g3x-rfq3-9rgr/GHSA-4g3x-rfq3-9rgr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4j4v-78mf-pr9p/GHSA-4j4v-78mf-pr9p.json b/advisories/unreviewed/2023/12/GHSA-4j4v-78mf-pr9p/GHSA-4j4v-78mf-pr9p.json index 04496b6d84e..923cb935ca3 100644 --- a/advisories/unreviewed/2023/12/GHSA-4j4v-78mf-pr9p/GHSA-4j4v-78mf-pr9p.json +++ b/advisories/unreviewed/2023/12/GHSA-4j4v-78mf-pr9p/GHSA-4j4v-78mf-pr9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4jhh-q54m-vmvv/GHSA-4jhh-q54m-vmvv.json b/advisories/unreviewed/2023/12/GHSA-4jhh-q54m-vmvv/GHSA-4jhh-q54m-vmvv.json index ca412e60708..e18339ad427 100644 --- a/advisories/unreviewed/2023/12/GHSA-4jhh-q54m-vmvv/GHSA-4jhh-q54m-vmvv.json +++ b/advisories/unreviewed/2023/12/GHSA-4jhh-q54m-vmvv/GHSA-4jhh-q54m-vmvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4x27-7f5c-rg8p/GHSA-4x27-7f5c-rg8p.json b/advisories/unreviewed/2023/12/GHSA-4x27-7f5c-rg8p/GHSA-4x27-7f5c-rg8p.json index b656fc4eb66..9163f5b4efe 100644 --- a/advisories/unreviewed/2023/12/GHSA-4x27-7f5c-rg8p/GHSA-4x27-7f5c-rg8p.json +++ b/advisories/unreviewed/2023/12/GHSA-4x27-7f5c-rg8p/GHSA-4x27-7f5c-rg8p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-52j9-8cw4-9cqq/GHSA-52j9-8cw4-9cqq.json b/advisories/unreviewed/2023/12/GHSA-52j9-8cw4-9cqq/GHSA-52j9-8cw4-9cqq.json index 0eb618f2144..fe16ec98e37 100644 --- a/advisories/unreviewed/2023/12/GHSA-52j9-8cw4-9cqq/GHSA-52j9-8cw4-9cqq.json +++ b/advisories/unreviewed/2023/12/GHSA-52j9-8cw4-9cqq/GHSA-52j9-8cw4-9cqq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-54hv-j3fx-5288/GHSA-54hv-j3fx-5288.json b/advisories/unreviewed/2023/12/GHSA-54hv-j3fx-5288/GHSA-54hv-j3fx-5288.json index 3298be2b61b..930828cc255 100644 --- a/advisories/unreviewed/2023/12/GHSA-54hv-j3fx-5288/GHSA-54hv-j3fx-5288.json +++ b/advisories/unreviewed/2023/12/GHSA-54hv-j3fx-5288/GHSA-54hv-j3fx-5288.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-57cr-mg54-x4qg/GHSA-57cr-mg54-x4qg.json b/advisories/unreviewed/2023/12/GHSA-57cr-mg54-x4qg/GHSA-57cr-mg54-x4qg.json index 1804d1eedeb..c48a5fddaf4 100644 --- a/advisories/unreviewed/2023/12/GHSA-57cr-mg54-x4qg/GHSA-57cr-mg54-x4qg.json +++ b/advisories/unreviewed/2023/12/GHSA-57cr-mg54-x4qg/GHSA-57cr-mg54-x4qg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5h5f-r98g-j4p4/GHSA-5h5f-r98g-j4p4.json b/advisories/unreviewed/2023/12/GHSA-5h5f-r98g-j4p4/GHSA-5h5f-r98g-j4p4.json index 47d5f06a904..0fb4601bc86 100644 --- a/advisories/unreviewed/2023/12/GHSA-5h5f-r98g-j4p4/GHSA-5h5f-r98g-j4p4.json +++ b/advisories/unreviewed/2023/12/GHSA-5h5f-r98g-j4p4/GHSA-5h5f-r98g-j4p4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5hqp-w22w-92g5/GHSA-5hqp-w22w-92g5.json b/advisories/unreviewed/2023/12/GHSA-5hqp-w22w-92g5/GHSA-5hqp-w22w-92g5.json index c7db4a52be1..8b3c880c84f 100644 --- a/advisories/unreviewed/2023/12/GHSA-5hqp-w22w-92g5/GHSA-5hqp-w22w-92g5.json +++ b/advisories/unreviewed/2023/12/GHSA-5hqp-w22w-92g5/GHSA-5hqp-w22w-92g5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5vwr-m79p-pq9c/GHSA-5vwr-m79p-pq9c.json b/advisories/unreviewed/2023/12/GHSA-5vwr-m79p-pq9c/GHSA-5vwr-m79p-pq9c.json index 94be924651b..b67fe3f81ec 100644 --- a/advisories/unreviewed/2023/12/GHSA-5vwr-m79p-pq9c/GHSA-5vwr-m79p-pq9c.json +++ b/advisories/unreviewed/2023/12/GHSA-5vwr-m79p-pq9c/GHSA-5vwr-m79p-pq9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-63fm-w62g-7735/GHSA-63fm-w62g-7735.json b/advisories/unreviewed/2023/12/GHSA-63fm-w62g-7735/GHSA-63fm-w62g-7735.json index ea6b33b330a..cb908f8fc2e 100644 --- a/advisories/unreviewed/2023/12/GHSA-63fm-w62g-7735/GHSA-63fm-w62g-7735.json +++ b/advisories/unreviewed/2023/12/GHSA-63fm-w62g-7735/GHSA-63fm-w62g-7735.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-649c-2qfv-22xh/GHSA-649c-2qfv-22xh.json b/advisories/unreviewed/2023/12/GHSA-649c-2qfv-22xh/GHSA-649c-2qfv-22xh.json index 7b1583c4ba2..bae73d8497c 100644 --- a/advisories/unreviewed/2023/12/GHSA-649c-2qfv-22xh/GHSA-649c-2qfv-22xh.json +++ b/advisories/unreviewed/2023/12/GHSA-649c-2qfv-22xh/GHSA-649c-2qfv-22xh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6633-m2xc-qhpq/GHSA-6633-m2xc-qhpq.json b/advisories/unreviewed/2023/12/GHSA-6633-m2xc-qhpq/GHSA-6633-m2xc-qhpq.json index eed8804624d..f4770f15cd9 100644 --- a/advisories/unreviewed/2023/12/GHSA-6633-m2xc-qhpq/GHSA-6633-m2xc-qhpq.json +++ b/advisories/unreviewed/2023/12/GHSA-6633-m2xc-qhpq/GHSA-6633-m2xc-qhpq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-673q-fv8j-q22q/GHSA-673q-fv8j-q22q.json b/advisories/unreviewed/2023/12/GHSA-673q-fv8j-q22q/GHSA-673q-fv8j-q22q.json index db25656c724..d63f82eedb3 100644 --- a/advisories/unreviewed/2023/12/GHSA-673q-fv8j-q22q/GHSA-673q-fv8j-q22q.json +++ b/advisories/unreviewed/2023/12/GHSA-673q-fv8j-q22q/GHSA-673q-fv8j-q22q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6c3p-6wmx-pvcf/GHSA-6c3p-6wmx-pvcf.json b/advisories/unreviewed/2023/12/GHSA-6c3p-6wmx-pvcf/GHSA-6c3p-6wmx-pvcf.json index aa1dad918bd..bc31bb53403 100644 --- a/advisories/unreviewed/2023/12/GHSA-6c3p-6wmx-pvcf/GHSA-6c3p-6wmx-pvcf.json +++ b/advisories/unreviewed/2023/12/GHSA-6c3p-6wmx-pvcf/GHSA-6c3p-6wmx-pvcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6f2p-7488-r6j4/GHSA-6f2p-7488-r6j4.json b/advisories/unreviewed/2023/12/GHSA-6f2p-7488-r6j4/GHSA-6f2p-7488-r6j4.json index c64071181a5..e42909a9881 100644 --- a/advisories/unreviewed/2023/12/GHSA-6f2p-7488-r6j4/GHSA-6f2p-7488-r6j4.json +++ b/advisories/unreviewed/2023/12/GHSA-6f2p-7488-r6j4/GHSA-6f2p-7488-r6j4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6j2q-c976-96qh/GHSA-6j2q-c976-96qh.json b/advisories/unreviewed/2023/12/GHSA-6j2q-c976-96qh/GHSA-6j2q-c976-96qh.json index 207fce31760..918c8f79503 100644 --- a/advisories/unreviewed/2023/12/GHSA-6j2q-c976-96qh/GHSA-6j2q-c976-96qh.json +++ b/advisories/unreviewed/2023/12/GHSA-6j2q-c976-96qh/GHSA-6j2q-c976-96qh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-6mq3-p6fg-gfc4/GHSA-6mq3-p6fg-gfc4.json b/advisories/unreviewed/2023/12/GHSA-6mq3-p6fg-gfc4/GHSA-6mq3-p6fg-gfc4.json index f52b1d0f99c..6fdecc7922c 100644 --- a/advisories/unreviewed/2023/12/GHSA-6mq3-p6fg-gfc4/GHSA-6mq3-p6fg-gfc4.json +++ b/advisories/unreviewed/2023/12/GHSA-6mq3-p6fg-gfc4/GHSA-6mq3-p6fg-gfc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-798r-fxxx-hvxj/GHSA-798r-fxxx-hvxj.json b/advisories/unreviewed/2023/12/GHSA-798r-fxxx-hvxj/GHSA-798r-fxxx-hvxj.json index 06e68c5c13c..dd931874f01 100644 --- a/advisories/unreviewed/2023/12/GHSA-798r-fxxx-hvxj/GHSA-798r-fxxx-hvxj.json +++ b/advisories/unreviewed/2023/12/GHSA-798r-fxxx-hvxj/GHSA-798r-fxxx-hvxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7g28-89m4-f55f/GHSA-7g28-89m4-f55f.json b/advisories/unreviewed/2023/12/GHSA-7g28-89m4-f55f/GHSA-7g28-89m4-f55f.json index 33237149425..fd454c17ea1 100644 --- a/advisories/unreviewed/2023/12/GHSA-7g28-89m4-f55f/GHSA-7g28-89m4-f55f.json +++ b/advisories/unreviewed/2023/12/GHSA-7g28-89m4-f55f/GHSA-7g28-89m4-f55f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7h3w-42j3-f3c5/GHSA-7h3w-42j3-f3c5.json b/advisories/unreviewed/2023/12/GHSA-7h3w-42j3-f3c5/GHSA-7h3w-42j3-f3c5.json index 4e696cd8a09..c217aeb9782 100644 --- a/advisories/unreviewed/2023/12/GHSA-7h3w-42j3-f3c5/GHSA-7h3w-42j3-f3c5.json +++ b/advisories/unreviewed/2023/12/GHSA-7h3w-42j3-f3c5/GHSA-7h3w-42j3-f3c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7pwc-85mf-qvrm/GHSA-7pwc-85mf-qvrm.json b/advisories/unreviewed/2023/12/GHSA-7pwc-85mf-qvrm/GHSA-7pwc-85mf-qvrm.json index 946e3b9f780..d37ee6b3139 100644 --- a/advisories/unreviewed/2023/12/GHSA-7pwc-85mf-qvrm/GHSA-7pwc-85mf-qvrm.json +++ b/advisories/unreviewed/2023/12/GHSA-7pwc-85mf-qvrm/GHSA-7pwc-85mf-qvrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8g3p-gqpg-qpjp/GHSA-8g3p-gqpg-qpjp.json b/advisories/unreviewed/2023/12/GHSA-8g3p-gqpg-qpjp/GHSA-8g3p-gqpg-qpjp.json index cef3c694c9c..138b000b4a0 100644 --- a/advisories/unreviewed/2023/12/GHSA-8g3p-gqpg-qpjp/GHSA-8g3p-gqpg-qpjp.json +++ b/advisories/unreviewed/2023/12/GHSA-8g3p-gqpg-qpjp/GHSA-8g3p-gqpg-qpjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8g8w-39rg-5h28/GHSA-8g8w-39rg-5h28.json b/advisories/unreviewed/2023/12/GHSA-8g8w-39rg-5h28/GHSA-8g8w-39rg-5h28.json index 9f3d30b5c20..d229f2949ce 100644 --- a/advisories/unreviewed/2023/12/GHSA-8g8w-39rg-5h28/GHSA-8g8w-39rg-5h28.json +++ b/advisories/unreviewed/2023/12/GHSA-8g8w-39rg-5h28/GHSA-8g8w-39rg-5h28.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:H/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8hcm-9vwg-gf5f/GHSA-8hcm-9vwg-gf5f.json b/advisories/unreviewed/2023/12/GHSA-8hcm-9vwg-gf5f/GHSA-8hcm-9vwg-gf5f.json index aa0ecd05b7e..cc54941b0a6 100644 --- a/advisories/unreviewed/2023/12/GHSA-8hcm-9vwg-gf5f/GHSA-8hcm-9vwg-gf5f.json +++ b/advisories/unreviewed/2023/12/GHSA-8hcm-9vwg-gf5f/GHSA-8hcm-9vwg-gf5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8hm7-v248-rjrv/GHSA-8hm7-v248-rjrv.json b/advisories/unreviewed/2023/12/GHSA-8hm7-v248-rjrv/GHSA-8hm7-v248-rjrv.json index d510083a304..b988457113f 100644 --- a/advisories/unreviewed/2023/12/GHSA-8hm7-v248-rjrv/GHSA-8hm7-v248-rjrv.json +++ b/advisories/unreviewed/2023/12/GHSA-8hm7-v248-rjrv/GHSA-8hm7-v248-rjrv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8mgf-xm65-95v3/GHSA-8mgf-xm65-95v3.json b/advisories/unreviewed/2023/12/GHSA-8mgf-xm65-95v3/GHSA-8mgf-xm65-95v3.json index ba3f1ecca39..76d14893065 100644 --- a/advisories/unreviewed/2023/12/GHSA-8mgf-xm65-95v3/GHSA-8mgf-xm65-95v3.json +++ b/advisories/unreviewed/2023/12/GHSA-8mgf-xm65-95v3/GHSA-8mgf-xm65-95v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8pqq-fv34-92cc/GHSA-8pqq-fv34-92cc.json b/advisories/unreviewed/2023/12/GHSA-8pqq-fv34-92cc/GHSA-8pqq-fv34-92cc.json index 4729999372c..db998aee906 100644 --- a/advisories/unreviewed/2023/12/GHSA-8pqq-fv34-92cc/GHSA-8pqq-fv34-92cc.json +++ b/advisories/unreviewed/2023/12/GHSA-8pqq-fv34-92cc/GHSA-8pqq-fv34-92cc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9574-pj7c-fmgh/GHSA-9574-pj7c-fmgh.json b/advisories/unreviewed/2023/12/GHSA-9574-pj7c-fmgh/GHSA-9574-pj7c-fmgh.json index a3e350eb806..d877c809884 100644 --- a/advisories/unreviewed/2023/12/GHSA-9574-pj7c-fmgh/GHSA-9574-pj7c-fmgh.json +++ b/advisories/unreviewed/2023/12/GHSA-9574-pj7c-fmgh/GHSA-9574-pj7c-fmgh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9876-jhvq-v99g/GHSA-9876-jhvq-v99g.json b/advisories/unreviewed/2023/12/GHSA-9876-jhvq-v99g/GHSA-9876-jhvq-v99g.json index 87e94984f38..70e665fa9b2 100644 --- a/advisories/unreviewed/2023/12/GHSA-9876-jhvq-v99g/GHSA-9876-jhvq-v99g.json +++ b/advisories/unreviewed/2023/12/GHSA-9876-jhvq-v99g/GHSA-9876-jhvq-v99g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9fqp-c7gm-xp96/GHSA-9fqp-c7gm-xp96.json b/advisories/unreviewed/2023/12/GHSA-9fqp-c7gm-xp96/GHSA-9fqp-c7gm-xp96.json index 633ec9c5eaf..96feb8a5756 100644 --- a/advisories/unreviewed/2023/12/GHSA-9fqp-c7gm-xp96/GHSA-9fqp-c7gm-xp96.json +++ b/advisories/unreviewed/2023/12/GHSA-9fqp-c7gm-xp96/GHSA-9fqp-c7gm-xp96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9v7r-m555-r2hj/GHSA-9v7r-m555-r2hj.json b/advisories/unreviewed/2023/12/GHSA-9v7r-m555-r2hj/GHSA-9v7r-m555-r2hj.json index fb65040feb9..2e2f66134bb 100644 --- a/advisories/unreviewed/2023/12/GHSA-9v7r-m555-r2hj/GHSA-9v7r-m555-r2hj.json +++ b/advisories/unreviewed/2023/12/GHSA-9v7r-m555-r2hj/GHSA-9v7r-m555-r2hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9xgc-w9r8-76j5/GHSA-9xgc-w9r8-76j5.json b/advisories/unreviewed/2023/12/GHSA-9xgc-w9r8-76j5/GHSA-9xgc-w9r8-76j5.json index 4b78d381a47..fe7bcc6ef46 100644 --- a/advisories/unreviewed/2023/12/GHSA-9xgc-w9r8-76j5/GHSA-9xgc-w9r8-76j5.json +++ b/advisories/unreviewed/2023/12/GHSA-9xgc-w9r8-76j5/GHSA-9xgc-w9r8-76j5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c37g-48wh-2xj6/GHSA-c37g-48wh-2xj6.json b/advisories/unreviewed/2023/12/GHSA-c37g-48wh-2xj6/GHSA-c37g-48wh-2xj6.json index dde2ccfd2d9..5e262aa27e9 100644 --- a/advisories/unreviewed/2023/12/GHSA-c37g-48wh-2xj6/GHSA-c37g-48wh-2xj6.json +++ b/advisories/unreviewed/2023/12/GHSA-c37g-48wh-2xj6/GHSA-c37g-48wh-2xj6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c57w-wvx3-j4fq/GHSA-c57w-wvx3-j4fq.json b/advisories/unreviewed/2023/12/GHSA-c57w-wvx3-j4fq/GHSA-c57w-wvx3-j4fq.json index bf83cdea700..5fe21e790dc 100644 --- a/advisories/unreviewed/2023/12/GHSA-c57w-wvx3-j4fq/GHSA-c57w-wvx3-j4fq.json +++ b/advisories/unreviewed/2023/12/GHSA-c57w-wvx3-j4fq/GHSA-c57w-wvx3-j4fq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c82x-3h2c-9wrm/GHSA-c82x-3h2c-9wrm.json b/advisories/unreviewed/2023/12/GHSA-c82x-3h2c-9wrm/GHSA-c82x-3h2c-9wrm.json index ea963e0b363..7d23851006a 100644 --- a/advisories/unreviewed/2023/12/GHSA-c82x-3h2c-9wrm/GHSA-c82x-3h2c-9wrm.json +++ b/advisories/unreviewed/2023/12/GHSA-c82x-3h2c-9wrm/GHSA-c82x-3h2c-9wrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c86q-xm3f-x98q/GHSA-c86q-xm3f-x98q.json b/advisories/unreviewed/2023/12/GHSA-c86q-xm3f-x98q/GHSA-c86q-xm3f-x98q.json index 32dee1d2cbd..c09a1f0a4ab 100644 --- a/advisories/unreviewed/2023/12/GHSA-c86q-xm3f-x98q/GHSA-c86q-xm3f-x98q.json +++ b/advisories/unreviewed/2023/12/GHSA-c86q-xm3f-x98q/GHSA-c86q-xm3f-x98q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cc3f-5q84-8gj8/GHSA-cc3f-5q84-8gj8.json b/advisories/unreviewed/2023/12/GHSA-cc3f-5q84-8gj8/GHSA-cc3f-5q84-8gj8.json index 2baee4d8aab..d92bbc8e402 100644 --- a/advisories/unreviewed/2023/12/GHSA-cc3f-5q84-8gj8/GHSA-cc3f-5q84-8gj8.json +++ b/advisories/unreviewed/2023/12/GHSA-cc3f-5q84-8gj8/GHSA-cc3f-5q84-8gj8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cf2w-xw62-qhfp/GHSA-cf2w-xw62-qhfp.json b/advisories/unreviewed/2023/12/GHSA-cf2w-xw62-qhfp/GHSA-cf2w-xw62-qhfp.json index c59b4a65759..4e9871047e6 100644 --- a/advisories/unreviewed/2023/12/GHSA-cf2w-xw62-qhfp/GHSA-cf2w-xw62-qhfp.json +++ b/advisories/unreviewed/2023/12/GHSA-cf2w-xw62-qhfp/GHSA-cf2w-xw62-qhfp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cfhw-cw58-8qp8/GHSA-cfhw-cw58-8qp8.json b/advisories/unreviewed/2023/12/GHSA-cfhw-cw58-8qp8/GHSA-cfhw-cw58-8qp8.json index fb56ca8e533..9c142e22e74 100644 --- a/advisories/unreviewed/2023/12/GHSA-cfhw-cw58-8qp8/GHSA-cfhw-cw58-8qp8.json +++ b/advisories/unreviewed/2023/12/GHSA-cfhw-cw58-8qp8/GHSA-cfhw-cw58-8qp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cxmg-vmjf-rg84/GHSA-cxmg-vmjf-rg84.json b/advisories/unreviewed/2023/12/GHSA-cxmg-vmjf-rg84/GHSA-cxmg-vmjf-rg84.json index be9af81b3ee..a863225f959 100644 --- a/advisories/unreviewed/2023/12/GHSA-cxmg-vmjf-rg84/GHSA-cxmg-vmjf-rg84.json +++ b/advisories/unreviewed/2023/12/GHSA-cxmg-vmjf-rg84/GHSA-cxmg-vmjf-rg84.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-f84h-2wp6-vqw5/GHSA-f84h-2wp6-vqw5.json b/advisories/unreviewed/2023/12/GHSA-f84h-2wp6-vqw5/GHSA-f84h-2wp6-vqw5.json index 71c72d5c128..2fe19733868 100644 --- a/advisories/unreviewed/2023/12/GHSA-f84h-2wp6-vqw5/GHSA-f84h-2wp6-vqw5.json +++ b/advisories/unreviewed/2023/12/GHSA-f84h-2wp6-vqw5/GHSA-f84h-2wp6-vqw5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fhvx-hq2v-rmr3/GHSA-fhvx-hq2v-rmr3.json b/advisories/unreviewed/2023/12/GHSA-fhvx-hq2v-rmr3/GHSA-fhvx-hq2v-rmr3.json index e9a305967f8..960413cd2fa 100644 --- a/advisories/unreviewed/2023/12/GHSA-fhvx-hq2v-rmr3/GHSA-fhvx-hq2v-rmr3.json +++ b/advisories/unreviewed/2023/12/GHSA-fhvx-hq2v-rmr3/GHSA-fhvx-hq2v-rmr3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fm56-ffrh-p55q/GHSA-fm56-ffrh-p55q.json b/advisories/unreviewed/2023/12/GHSA-fm56-ffrh-p55q/GHSA-fm56-ffrh-p55q.json index effc42743f5..39a8d2806cf 100644 --- a/advisories/unreviewed/2023/12/GHSA-fm56-ffrh-p55q/GHSA-fm56-ffrh-p55q.json +++ b/advisories/unreviewed/2023/12/GHSA-fm56-ffrh-p55q/GHSA-fm56-ffrh-p55q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fm9h-4gf4-cqf2/GHSA-fm9h-4gf4-cqf2.json b/advisories/unreviewed/2023/12/GHSA-fm9h-4gf4-cqf2/GHSA-fm9h-4gf4-cqf2.json index 6d40ec06980..168933755e1 100644 --- a/advisories/unreviewed/2023/12/GHSA-fm9h-4gf4-cqf2/GHSA-fm9h-4gf4-cqf2.json +++ b/advisories/unreviewed/2023/12/GHSA-fm9h-4gf4-cqf2/GHSA-fm9h-4gf4-cqf2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fmpj-qrfc-pcgv/GHSA-fmpj-qrfc-pcgv.json b/advisories/unreviewed/2023/12/GHSA-fmpj-qrfc-pcgv/GHSA-fmpj-qrfc-pcgv.json index 95f0e6c3be2..ce77da9a539 100644 --- a/advisories/unreviewed/2023/12/GHSA-fmpj-qrfc-pcgv/GHSA-fmpj-qrfc-pcgv.json +++ b/advisories/unreviewed/2023/12/GHSA-fmpj-qrfc-pcgv/GHSA-fmpj-qrfc-pcgv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fmxm-q3xc-mmxp/GHSA-fmxm-q3xc-mmxp.json b/advisories/unreviewed/2023/12/GHSA-fmxm-q3xc-mmxp/GHSA-fmxm-q3xc-mmxp.json index 20ec5c52d51..e63ba6252a7 100644 --- a/advisories/unreviewed/2023/12/GHSA-fmxm-q3xc-mmxp/GHSA-fmxm-q3xc-mmxp.json +++ b/advisories/unreviewed/2023/12/GHSA-fmxm-q3xc-mmxp/GHSA-fmxm-q3xc-mmxp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g3fp-79qm-2mg4/GHSA-g3fp-79qm-2mg4.json b/advisories/unreviewed/2023/12/GHSA-g3fp-79qm-2mg4/GHSA-g3fp-79qm-2mg4.json index ab4fbaac521..f6b019edc1b 100644 --- a/advisories/unreviewed/2023/12/GHSA-g3fp-79qm-2mg4/GHSA-g3fp-79qm-2mg4.json +++ b/advisories/unreviewed/2023/12/GHSA-g3fp-79qm-2mg4/GHSA-g3fp-79qm-2mg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g4m4-px2c-xp5c/GHSA-g4m4-px2c-xp5c.json b/advisories/unreviewed/2023/12/GHSA-g4m4-px2c-xp5c/GHSA-g4m4-px2c-xp5c.json index 8d865f01558..a7390517083 100644 --- a/advisories/unreviewed/2023/12/GHSA-g4m4-px2c-xp5c/GHSA-g4m4-px2c-xp5c.json +++ b/advisories/unreviewed/2023/12/GHSA-g4m4-px2c-xp5c/GHSA-g4m4-px2c-xp5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g4qm-jmgh-jf4f/GHSA-g4qm-jmgh-jf4f.json b/advisories/unreviewed/2023/12/GHSA-g4qm-jmgh-jf4f/GHSA-g4qm-jmgh-jf4f.json index a20edadbc76..75d6bfbd8a8 100644 --- a/advisories/unreviewed/2023/12/GHSA-g4qm-jmgh-jf4f/GHSA-g4qm-jmgh-jf4f.json +++ b/advisories/unreviewed/2023/12/GHSA-g4qm-jmgh-jf4f/GHSA-g4qm-jmgh-jf4f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g5r9-f6gw-wq4q/GHSA-g5r9-f6gw-wq4q.json b/advisories/unreviewed/2023/12/GHSA-g5r9-f6gw-wq4q/GHSA-g5r9-f6gw-wq4q.json index a03b4dae307..5d82f742d2b 100644 --- a/advisories/unreviewed/2023/12/GHSA-g5r9-f6gw-wq4q/GHSA-g5r9-f6gw-wq4q.json +++ b/advisories/unreviewed/2023/12/GHSA-g5r9-f6gw-wq4q/GHSA-g5r9-f6gw-wq4q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g7qr-rq96-87cj/GHSA-g7qr-rq96-87cj.json b/advisories/unreviewed/2023/12/GHSA-g7qr-rq96-87cj/GHSA-g7qr-rq96-87cj.json index eb2e8b92ccf..a05b88ad618 100644 --- a/advisories/unreviewed/2023/12/GHSA-g7qr-rq96-87cj/GHSA-g7qr-rq96-87cj.json +++ b/advisories/unreviewed/2023/12/GHSA-g7qr-rq96-87cj/GHSA-g7qr-rq96-87cj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g997-cvj8-h39j/GHSA-g997-cvj8-h39j.json b/advisories/unreviewed/2023/12/GHSA-g997-cvj8-h39j/GHSA-g997-cvj8-h39j.json index 589799d18cc..4bce061f991 100644 --- a/advisories/unreviewed/2023/12/GHSA-g997-cvj8-h39j/GHSA-g997-cvj8-h39j.json +++ b/advisories/unreviewed/2023/12/GHSA-g997-cvj8-h39j/GHSA-g997-cvj8-h39j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-gg44-hmxm-mw76/GHSA-gg44-hmxm-mw76.json b/advisories/unreviewed/2023/12/GHSA-gg44-hmxm-mw76/GHSA-gg44-hmxm-mw76.json index 9c1bf9437a6..ea779fbb702 100644 --- a/advisories/unreviewed/2023/12/GHSA-gg44-hmxm-mw76/GHSA-gg44-hmxm-mw76.json +++ b/advisories/unreviewed/2023/12/GHSA-gg44-hmxm-mw76/GHSA-gg44-hmxm-mw76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-gmpj-x537-7jv6/GHSA-gmpj-x537-7jv6.json b/advisories/unreviewed/2023/12/GHSA-gmpj-x537-7jv6/GHSA-gmpj-x537-7jv6.json index 534250a0b3d..2b080575ff6 100644 --- a/advisories/unreviewed/2023/12/GHSA-gmpj-x537-7jv6/GHSA-gmpj-x537-7jv6.json +++ b/advisories/unreviewed/2023/12/GHSA-gmpj-x537-7jv6/GHSA-gmpj-x537-7jv6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-gpr7-6h29-2frp/GHSA-gpr7-6h29-2frp.json b/advisories/unreviewed/2023/12/GHSA-gpr7-6h29-2frp/GHSA-gpr7-6h29-2frp.json index e8cbe22796e..ba6cb15968b 100644 --- a/advisories/unreviewed/2023/12/GHSA-gpr7-6h29-2frp/GHSA-gpr7-6h29-2frp.json +++ b/advisories/unreviewed/2023/12/GHSA-gpr7-6h29-2frp/GHSA-gpr7-6h29-2frp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-gvp5-cq52-6qx5/GHSA-gvp5-cq52-6qx5.json b/advisories/unreviewed/2023/12/GHSA-gvp5-cq52-6qx5/GHSA-gvp5-cq52-6qx5.json index 80f7c74c2e3..e3b6c395448 100644 --- a/advisories/unreviewed/2023/12/GHSA-gvp5-cq52-6qx5/GHSA-gvp5-cq52-6qx5.json +++ b/advisories/unreviewed/2023/12/GHSA-gvp5-cq52-6qx5/GHSA-gvp5-cq52-6qx5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-h2v9-6wg8-m4w8/GHSA-h2v9-6wg8-m4w8.json b/advisories/unreviewed/2023/12/GHSA-h2v9-6wg8-m4w8/GHSA-h2v9-6wg8-m4w8.json index 5219ea93f67..bdbf08cff15 100644 --- a/advisories/unreviewed/2023/12/GHSA-h2v9-6wg8-m4w8/GHSA-h2v9-6wg8-m4w8.json +++ b/advisories/unreviewed/2023/12/GHSA-h2v9-6wg8-m4w8/GHSA-h2v9-6wg8-m4w8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-h7wg-2r8j-6v5c/GHSA-h7wg-2r8j-6v5c.json b/advisories/unreviewed/2023/12/GHSA-h7wg-2r8j-6v5c/GHSA-h7wg-2r8j-6v5c.json index 276535d6b8f..50f01a3f90d 100644 --- a/advisories/unreviewed/2023/12/GHSA-h7wg-2r8j-6v5c/GHSA-h7wg-2r8j-6v5c.json +++ b/advisories/unreviewed/2023/12/GHSA-h7wg-2r8j-6v5c/GHSA-h7wg-2r8j-6v5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-hf9g-vfqg-9j5f/GHSA-hf9g-vfqg-9j5f.json b/advisories/unreviewed/2023/12/GHSA-hf9g-vfqg-9j5f/GHSA-hf9g-vfqg-9j5f.json index 9aa067045d9..dddad55b021 100644 --- a/advisories/unreviewed/2023/12/GHSA-hf9g-vfqg-9j5f/GHSA-hf9g-vfqg-9j5f.json +++ b/advisories/unreviewed/2023/12/GHSA-hf9g-vfqg-9j5f/GHSA-hf9g-vfqg-9j5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-hh8c-hj2c-p9pw/GHSA-hh8c-hj2c-p9pw.json b/advisories/unreviewed/2023/12/GHSA-hh8c-hj2c-p9pw/GHSA-hh8c-hj2c-p9pw.json index 8548a47c4e7..5074899b7c5 100644 --- a/advisories/unreviewed/2023/12/GHSA-hh8c-hj2c-p9pw/GHSA-hh8c-hj2c-p9pw.json +++ b/advisories/unreviewed/2023/12/GHSA-hh8c-hj2c-p9pw/GHSA-hh8c-hj2c-p9pw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-hxh6-gm53-6gm3/GHSA-hxh6-gm53-6gm3.json b/advisories/unreviewed/2023/12/GHSA-hxh6-gm53-6gm3/GHSA-hxh6-gm53-6gm3.json index b73220f671e..6ea4acb636b 100644 --- a/advisories/unreviewed/2023/12/GHSA-hxh6-gm53-6gm3/GHSA-hxh6-gm53-6gm3.json +++ b/advisories/unreviewed/2023/12/GHSA-hxh6-gm53-6gm3/GHSA-hxh6-gm53-6gm3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-j58r-gmq8-r8hw/GHSA-j58r-gmq8-r8hw.json b/advisories/unreviewed/2023/12/GHSA-j58r-gmq8-r8hw/GHSA-j58r-gmq8-r8hw.json index a1178354b3f..73cd8240404 100644 --- a/advisories/unreviewed/2023/12/GHSA-j58r-gmq8-r8hw/GHSA-j58r-gmq8-r8hw.json +++ b/advisories/unreviewed/2023/12/GHSA-j58r-gmq8-r8hw/GHSA-j58r-gmq8-r8hw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-j69j-38vv-w2h9/GHSA-j69j-38vv-w2h9.json b/advisories/unreviewed/2023/12/GHSA-j69j-38vv-w2h9/GHSA-j69j-38vv-w2h9.json index 4513b819047..58fa3d2fb4e 100644 --- a/advisories/unreviewed/2023/12/GHSA-j69j-38vv-w2h9/GHSA-j69j-38vv-w2h9.json +++ b/advisories/unreviewed/2023/12/GHSA-j69j-38vv-w2h9/GHSA-j69j-38vv-w2h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-j9v2-vrhx-pcpg/GHSA-j9v2-vrhx-pcpg.json b/advisories/unreviewed/2023/12/GHSA-j9v2-vrhx-pcpg/GHSA-j9v2-vrhx-pcpg.json index 7f47aaccc0a..eea5732fdd8 100644 --- a/advisories/unreviewed/2023/12/GHSA-j9v2-vrhx-pcpg/GHSA-j9v2-vrhx-pcpg.json +++ b/advisories/unreviewed/2023/12/GHSA-j9v2-vrhx-pcpg/GHSA-j9v2-vrhx-pcpg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jfx2-2xj2-2f8j/GHSA-jfx2-2xj2-2f8j.json b/advisories/unreviewed/2023/12/GHSA-jfx2-2xj2-2f8j/GHSA-jfx2-2xj2-2f8j.json index a9425bd4393..22b472ff135 100644 --- a/advisories/unreviewed/2023/12/GHSA-jfx2-2xj2-2f8j/GHSA-jfx2-2xj2-2f8j.json +++ b/advisories/unreviewed/2023/12/GHSA-jfx2-2xj2-2f8j/GHSA-jfx2-2xj2-2f8j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jh2h-vmp9-225c/GHSA-jh2h-vmp9-225c.json b/advisories/unreviewed/2023/12/GHSA-jh2h-vmp9-225c/GHSA-jh2h-vmp9-225c.json index 95d8886f524..72f7ac75311 100644 --- a/advisories/unreviewed/2023/12/GHSA-jh2h-vmp9-225c/GHSA-jh2h-vmp9-225c.json +++ b/advisories/unreviewed/2023/12/GHSA-jh2h-vmp9-225c/GHSA-jh2h-vmp9-225c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jwrq-c5fj-hjcm/GHSA-jwrq-c5fj-hjcm.json b/advisories/unreviewed/2023/12/GHSA-jwrq-c5fj-hjcm/GHSA-jwrq-c5fj-hjcm.json index 70a268f1387..754099c2489 100644 --- a/advisories/unreviewed/2023/12/GHSA-jwrq-c5fj-hjcm/GHSA-jwrq-c5fj-hjcm.json +++ b/advisories/unreviewed/2023/12/GHSA-jwrq-c5fj-hjcm/GHSA-jwrq-c5fj-hjcm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-m258-w3h5-9pqr/GHSA-m258-w3h5-9pqr.json b/advisories/unreviewed/2023/12/GHSA-m258-w3h5-9pqr/GHSA-m258-w3h5-9pqr.json index 0e39277d255..8a5e0774351 100644 --- a/advisories/unreviewed/2023/12/GHSA-m258-w3h5-9pqr/GHSA-m258-w3h5-9pqr.json +++ b/advisories/unreviewed/2023/12/GHSA-m258-w3h5-9pqr/GHSA-m258-w3h5-9pqr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-m724-7q79-239r/GHSA-m724-7q79-239r.json b/advisories/unreviewed/2023/12/GHSA-m724-7q79-239r/GHSA-m724-7q79-239r.json index 5fa4d2a7d14..9ef969a7d08 100644 --- a/advisories/unreviewed/2023/12/GHSA-m724-7q79-239r/GHSA-m724-7q79-239r.json +++ b/advisories/unreviewed/2023/12/GHSA-m724-7q79-239r/GHSA-m724-7q79-239r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mpmx-6xxg-22w6/GHSA-mpmx-6xxg-22w6.json b/advisories/unreviewed/2023/12/GHSA-mpmx-6xxg-22w6/GHSA-mpmx-6xxg-22w6.json index 29237f4abb4..617bdc8db00 100644 --- a/advisories/unreviewed/2023/12/GHSA-mpmx-6xxg-22w6/GHSA-mpmx-6xxg-22w6.json +++ b/advisories/unreviewed/2023/12/GHSA-mpmx-6xxg-22w6/GHSA-mpmx-6xxg-22w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mqp2-6749-vwh8/GHSA-mqp2-6749-vwh8.json b/advisories/unreviewed/2023/12/GHSA-mqp2-6749-vwh8/GHSA-mqp2-6749-vwh8.json index 50acc722a5a..0993262e97c 100644 --- a/advisories/unreviewed/2023/12/GHSA-mqp2-6749-vwh8/GHSA-mqp2-6749-vwh8.json +++ b/advisories/unreviewed/2023/12/GHSA-mqp2-6749-vwh8/GHSA-mqp2-6749-vwh8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mx3m-99mq-wjv5/GHSA-mx3m-99mq-wjv5.json b/advisories/unreviewed/2023/12/GHSA-mx3m-99mq-wjv5/GHSA-mx3m-99mq-wjv5.json index 2f6df03d711..fe673cbf97f 100644 --- a/advisories/unreviewed/2023/12/GHSA-mx3m-99mq-wjv5/GHSA-mx3m-99mq-wjv5.json +++ b/advisories/unreviewed/2023/12/GHSA-mx3m-99mq-wjv5/GHSA-mx3m-99mq-wjv5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p32g-ccg2-fcvg/GHSA-p32g-ccg2-fcvg.json b/advisories/unreviewed/2023/12/GHSA-p32g-ccg2-fcvg/GHSA-p32g-ccg2-fcvg.json index 98a874de93d..ce039230299 100644 --- a/advisories/unreviewed/2023/12/GHSA-p32g-ccg2-fcvg/GHSA-p32g-ccg2-fcvg.json +++ b/advisories/unreviewed/2023/12/GHSA-p32g-ccg2-fcvg/GHSA-p32g-ccg2-fcvg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p7xv-5v8m-5xcw/GHSA-p7xv-5v8m-5xcw.json b/advisories/unreviewed/2023/12/GHSA-p7xv-5v8m-5xcw/GHSA-p7xv-5v8m-5xcw.json index 726c10a0079..1838a716edf 100644 --- a/advisories/unreviewed/2023/12/GHSA-p7xv-5v8m-5xcw/GHSA-p7xv-5v8m-5xcw.json +++ b/advisories/unreviewed/2023/12/GHSA-p7xv-5v8m-5xcw/GHSA-p7xv-5v8m-5xcw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p8f9-4jw9-6vjc/GHSA-p8f9-4jw9-6vjc.json b/advisories/unreviewed/2023/12/GHSA-p8f9-4jw9-6vjc/GHSA-p8f9-4jw9-6vjc.json index d8d8422e6e5..9dfd9517d6c 100644 --- a/advisories/unreviewed/2023/12/GHSA-p8f9-4jw9-6vjc/GHSA-p8f9-4jw9-6vjc.json +++ b/advisories/unreviewed/2023/12/GHSA-p8f9-4jw9-6vjc/GHSA-p8f9-4jw9-6vjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p8xc-p8wv-g3hq/GHSA-p8xc-p8wv-g3hq.json b/advisories/unreviewed/2023/12/GHSA-p8xc-p8wv-g3hq/GHSA-p8xc-p8wv-g3hq.json index 6bc0ad81df6..50c444c646b 100644 --- a/advisories/unreviewed/2023/12/GHSA-p8xc-p8wv-g3hq/GHSA-p8xc-p8wv-g3hq.json +++ b/advisories/unreviewed/2023/12/GHSA-p8xc-p8wv-g3hq/GHSA-p8xc-p8wv-g3hq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-phhw-r78f-69qv/GHSA-phhw-r78f-69qv.json b/advisories/unreviewed/2023/12/GHSA-phhw-r78f-69qv/GHSA-phhw-r78f-69qv.json index a2c3b890517..d3adb2e46c7 100644 --- a/advisories/unreviewed/2023/12/GHSA-phhw-r78f-69qv/GHSA-phhw-r78f-69qv.json +++ b/advisories/unreviewed/2023/12/GHSA-phhw-r78f-69qv/GHSA-phhw-r78f-69qv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-pjc2-m9cx-6qhm/GHSA-pjc2-m9cx-6qhm.json b/advisories/unreviewed/2023/12/GHSA-pjc2-m9cx-6qhm/GHSA-pjc2-m9cx-6qhm.json index 381aac27176..fce2b4f1eb8 100644 --- a/advisories/unreviewed/2023/12/GHSA-pjc2-m9cx-6qhm/GHSA-pjc2-m9cx-6qhm.json +++ b/advisories/unreviewed/2023/12/GHSA-pjc2-m9cx-6qhm/GHSA-pjc2-m9cx-6qhm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-pmg2-cgwg-78jf/GHSA-pmg2-cgwg-78jf.json b/advisories/unreviewed/2023/12/GHSA-pmg2-cgwg-78jf/GHSA-pmg2-cgwg-78jf.json index 3131f00f7fe..709a78d91e3 100644 --- a/advisories/unreviewed/2023/12/GHSA-pmg2-cgwg-78jf/GHSA-pmg2-cgwg-78jf.json +++ b/advisories/unreviewed/2023/12/GHSA-pmg2-cgwg-78jf/GHSA-pmg2-cgwg-78jf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-pmp4-cjhh-6gc3/GHSA-pmp4-cjhh-6gc3.json b/advisories/unreviewed/2023/12/GHSA-pmp4-cjhh-6gc3/GHSA-pmp4-cjhh-6gc3.json index 3cf6a77c1ff..6fe2ff15caa 100644 --- a/advisories/unreviewed/2023/12/GHSA-pmp4-cjhh-6gc3/GHSA-pmp4-cjhh-6gc3.json +++ b/advisories/unreviewed/2023/12/GHSA-pmp4-cjhh-6gc3/GHSA-pmp4-cjhh-6gc3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-q37x-65r6-c2ch/GHSA-q37x-65r6-c2ch.json b/advisories/unreviewed/2023/12/GHSA-q37x-65r6-c2ch/GHSA-q37x-65r6-c2ch.json index 465c242f78c..53d43fb91bf 100644 --- a/advisories/unreviewed/2023/12/GHSA-q37x-65r6-c2ch/GHSA-q37x-65r6-c2ch.json +++ b/advisories/unreviewed/2023/12/GHSA-q37x-65r6-c2ch/GHSA-q37x-65r6-c2ch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-q9pr-xj6v-j2m9/GHSA-q9pr-xj6v-j2m9.json b/advisories/unreviewed/2023/12/GHSA-q9pr-xj6v-j2m9/GHSA-q9pr-xj6v-j2m9.json index 333ddf580e0..fd497bfd229 100644 --- a/advisories/unreviewed/2023/12/GHSA-q9pr-xj6v-j2m9/GHSA-q9pr-xj6v-j2m9.json +++ b/advisories/unreviewed/2023/12/GHSA-q9pr-xj6v-j2m9/GHSA-q9pr-xj6v-j2m9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qj3p-89ch-cqcr/GHSA-qj3p-89ch-cqcr.json b/advisories/unreviewed/2023/12/GHSA-qj3p-89ch-cqcr/GHSA-qj3p-89ch-cqcr.json index 2ca4c1bb0eb..e447846c327 100644 --- a/advisories/unreviewed/2023/12/GHSA-qj3p-89ch-cqcr/GHSA-qj3p-89ch-cqcr.json +++ b/advisories/unreviewed/2023/12/GHSA-qj3p-89ch-cqcr/GHSA-qj3p-89ch-cqcr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qq9x-v7fh-m7v8/GHSA-qq9x-v7fh-m7v8.json b/advisories/unreviewed/2023/12/GHSA-qq9x-v7fh-m7v8/GHSA-qq9x-v7fh-m7v8.json index 6a18bf38c92..018f1e26580 100644 --- a/advisories/unreviewed/2023/12/GHSA-qq9x-v7fh-m7v8/GHSA-qq9x-v7fh-m7v8.json +++ b/advisories/unreviewed/2023/12/GHSA-qq9x-v7fh-m7v8/GHSA-qq9x-v7fh-m7v8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qqmm-r6r8-mr7p/GHSA-qqmm-r6r8-mr7p.json b/advisories/unreviewed/2023/12/GHSA-qqmm-r6r8-mr7p/GHSA-qqmm-r6r8-mr7p.json index 5ca235f2f8b..7899b7a1509 100644 --- a/advisories/unreviewed/2023/12/GHSA-qqmm-r6r8-mr7p/GHSA-qqmm-r6r8-mr7p.json +++ b/advisories/unreviewed/2023/12/GHSA-qqmm-r6r8-mr7p/GHSA-qqmm-r6r8-mr7p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-r3f8-9jrc-2266/GHSA-r3f8-9jrc-2266.json b/advisories/unreviewed/2023/12/GHSA-r3f8-9jrc-2266/GHSA-r3f8-9jrc-2266.json index 3d678550cfb..87657219746 100644 --- a/advisories/unreviewed/2023/12/GHSA-r3f8-9jrc-2266/GHSA-r3f8-9jrc-2266.json +++ b/advisories/unreviewed/2023/12/GHSA-r3f8-9jrc-2266/GHSA-r3f8-9jrc-2266.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rcp6-6cr2-7j3h/GHSA-rcp6-6cr2-7j3h.json b/advisories/unreviewed/2023/12/GHSA-rcp6-6cr2-7j3h/GHSA-rcp6-6cr2-7j3h.json index 81ba5dd8a7d..fb60d80ec1f 100644 --- a/advisories/unreviewed/2023/12/GHSA-rcp6-6cr2-7j3h/GHSA-rcp6-6cr2-7j3h.json +++ b/advisories/unreviewed/2023/12/GHSA-rcp6-6cr2-7j3h/GHSA-rcp6-6cr2-7j3h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rf26-vw5r-x96q/GHSA-rf26-vw5r-x96q.json b/advisories/unreviewed/2023/12/GHSA-rf26-vw5r-x96q/GHSA-rf26-vw5r-x96q.json index 01c485a33ea..2cd6f9e1f66 100644 --- a/advisories/unreviewed/2023/12/GHSA-rf26-vw5r-x96q/GHSA-rf26-vw5r-x96q.json +++ b/advisories/unreviewed/2023/12/GHSA-rf26-vw5r-x96q/GHSA-rf26-vw5r-x96q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rf8w-7c24-hp3p/GHSA-rf8w-7c24-hp3p.json b/advisories/unreviewed/2023/12/GHSA-rf8w-7c24-hp3p/GHSA-rf8w-7c24-hp3p.json index 257f599cb7f..981eafe5efa 100644 --- a/advisories/unreviewed/2023/12/GHSA-rf8w-7c24-hp3p/GHSA-rf8w-7c24-hp3p.json +++ b/advisories/unreviewed/2023/12/GHSA-rf8w-7c24-hp3p/GHSA-rf8w-7c24-hp3p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rg5v-45m6-6242/GHSA-rg5v-45m6-6242.json b/advisories/unreviewed/2023/12/GHSA-rg5v-45m6-6242/GHSA-rg5v-45m6-6242.json index a6b220808ca..30c3dad3274 100644 --- a/advisories/unreviewed/2023/12/GHSA-rg5v-45m6-6242/GHSA-rg5v-45m6-6242.json +++ b/advisories/unreviewed/2023/12/GHSA-rg5v-45m6-6242/GHSA-rg5v-45m6-6242.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rjmr-v75r-gm8f/GHSA-rjmr-v75r-gm8f.json b/advisories/unreviewed/2023/12/GHSA-rjmr-v75r-gm8f/GHSA-rjmr-v75r-gm8f.json index 0ed8161cf92..34db1b04624 100644 --- a/advisories/unreviewed/2023/12/GHSA-rjmr-v75r-gm8f/GHSA-rjmr-v75r-gm8f.json +++ b/advisories/unreviewed/2023/12/GHSA-rjmr-v75r-gm8f/GHSA-rjmr-v75r-gm8f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rmjq-9c2j-m9mv/GHSA-rmjq-9c2j-m9mv.json b/advisories/unreviewed/2023/12/GHSA-rmjq-9c2j-m9mv/GHSA-rmjq-9c2j-m9mv.json index 20ba9efaa44..ec7bf77fc0e 100644 --- a/advisories/unreviewed/2023/12/GHSA-rmjq-9c2j-m9mv/GHSA-rmjq-9c2j-m9mv.json +++ b/advisories/unreviewed/2023/12/GHSA-rmjq-9c2j-m9mv/GHSA-rmjq-9c2j-m9mv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rpx7-prpf-wh27/GHSA-rpx7-prpf-wh27.json b/advisories/unreviewed/2023/12/GHSA-rpx7-prpf-wh27/GHSA-rpx7-prpf-wh27.json index dc3d0434765..f7a3644c947 100644 --- a/advisories/unreviewed/2023/12/GHSA-rpx7-prpf-wh27/GHSA-rpx7-prpf-wh27.json +++ b/advisories/unreviewed/2023/12/GHSA-rpx7-prpf-wh27/GHSA-rpx7-prpf-wh27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rx8q-95g3-hphm/GHSA-rx8q-95g3-hphm.json b/advisories/unreviewed/2023/12/GHSA-rx8q-95g3-hphm/GHSA-rx8q-95g3-hphm.json index fc89300ce07..de9736bb31b 100644 --- a/advisories/unreviewed/2023/12/GHSA-rx8q-95g3-hphm/GHSA-rx8q-95g3-hphm.json +++ b/advisories/unreviewed/2023/12/GHSA-rx8q-95g3-hphm/GHSA-rx8q-95g3-hphm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-v2cg-cfr9-j7cq/GHSA-v2cg-cfr9-j7cq.json b/advisories/unreviewed/2023/12/GHSA-v2cg-cfr9-j7cq/GHSA-v2cg-cfr9-j7cq.json index f8d78f0f2a5..c18cd6b2432 100644 --- a/advisories/unreviewed/2023/12/GHSA-v2cg-cfr9-j7cq/GHSA-v2cg-cfr9-j7cq.json +++ b/advisories/unreviewed/2023/12/GHSA-v2cg-cfr9-j7cq/GHSA-v2cg-cfr9-j7cq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-v68r-h54c-vpg9/GHSA-v68r-h54c-vpg9.json b/advisories/unreviewed/2023/12/GHSA-v68r-h54c-vpg9/GHSA-v68r-h54c-vpg9.json index edf3902fbc9..32f7a8551b8 100644 --- a/advisories/unreviewed/2023/12/GHSA-v68r-h54c-vpg9/GHSA-v68r-h54c-vpg9.json +++ b/advisories/unreviewed/2023/12/GHSA-v68r-h54c-vpg9/GHSA-v68r-h54c-vpg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-v6jw-248w-wvrg/GHSA-v6jw-248w-wvrg.json b/advisories/unreviewed/2023/12/GHSA-v6jw-248w-wvrg/GHSA-v6jw-248w-wvrg.json index 8a7886276e5..29798a20147 100644 --- a/advisories/unreviewed/2023/12/GHSA-v6jw-248w-wvrg/GHSA-v6jw-248w-wvrg.json +++ b/advisories/unreviewed/2023/12/GHSA-v6jw-248w-wvrg/GHSA-v6jw-248w-wvrg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-v75g-q4gc-cwr9/GHSA-v75g-q4gc-cwr9.json b/advisories/unreviewed/2023/12/GHSA-v75g-q4gc-cwr9/GHSA-v75g-q4gc-cwr9.json index 135ee1326e0..13ae10a6a2f 100644 --- a/advisories/unreviewed/2023/12/GHSA-v75g-q4gc-cwr9/GHSA-v75g-q4gc-cwr9.json +++ b/advisories/unreviewed/2023/12/GHSA-v75g-q4gc-cwr9/GHSA-v75g-q4gc-cwr9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vgfw-q4c7-5q3j/GHSA-vgfw-q4c7-5q3j.json b/advisories/unreviewed/2023/12/GHSA-vgfw-q4c7-5q3j/GHSA-vgfw-q4c7-5q3j.json index c80c0fa8104..7edf9ff8277 100644 --- a/advisories/unreviewed/2023/12/GHSA-vgfw-q4c7-5q3j/GHSA-vgfw-q4c7-5q3j.json +++ b/advisories/unreviewed/2023/12/GHSA-vgfw-q4c7-5q3j/GHSA-vgfw-q4c7-5q3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vpjw-6mrh-pw7x/GHSA-vpjw-6mrh-pw7x.json b/advisories/unreviewed/2023/12/GHSA-vpjw-6mrh-pw7x/GHSA-vpjw-6mrh-pw7x.json index 2f1a0afa979..74c7824694f 100644 --- a/advisories/unreviewed/2023/12/GHSA-vpjw-6mrh-pw7x/GHSA-vpjw-6mrh-pw7x.json +++ b/advisories/unreviewed/2023/12/GHSA-vpjw-6mrh-pw7x/GHSA-vpjw-6mrh-pw7x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vpr3-hpf9-h2r8/GHSA-vpr3-hpf9-h2r8.json b/advisories/unreviewed/2023/12/GHSA-vpr3-hpf9-h2r8/GHSA-vpr3-hpf9-h2r8.json index e626cd09e9f..1e0763b5cbd 100644 --- a/advisories/unreviewed/2023/12/GHSA-vpr3-hpf9-h2r8/GHSA-vpr3-hpf9-h2r8.json +++ b/advisories/unreviewed/2023/12/GHSA-vpr3-hpf9-h2r8/GHSA-vpr3-hpf9-h2r8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vwpw-4p44-rmhj/GHSA-vwpw-4p44-rmhj.json b/advisories/unreviewed/2023/12/GHSA-vwpw-4p44-rmhj/GHSA-vwpw-4p44-rmhj.json index 47fce5c70ce..4a248d8e1d1 100644 --- a/advisories/unreviewed/2023/12/GHSA-vwpw-4p44-rmhj/GHSA-vwpw-4p44-rmhj.json +++ b/advisories/unreviewed/2023/12/GHSA-vwpw-4p44-rmhj/GHSA-vwpw-4p44-rmhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vx22-h4xx-gch4/GHSA-vx22-h4xx-gch4.json b/advisories/unreviewed/2023/12/GHSA-vx22-h4xx-gch4/GHSA-vx22-h4xx-gch4.json index ffb7880d478..acc3b6c9445 100644 --- a/advisories/unreviewed/2023/12/GHSA-vx22-h4xx-gch4/GHSA-vx22-h4xx-gch4.json +++ b/advisories/unreviewed/2023/12/GHSA-vx22-h4xx-gch4/GHSA-vx22-h4xx-gch4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-w9fv-v3c8-4jj7/GHSA-w9fv-v3c8-4jj7.json b/advisories/unreviewed/2023/12/GHSA-w9fv-v3c8-4jj7/GHSA-w9fv-v3c8-4jj7.json index b0bc11f0e32..f66a4fd77c7 100644 --- a/advisories/unreviewed/2023/12/GHSA-w9fv-v3c8-4jj7/GHSA-w9fv-v3c8-4jj7.json +++ b/advisories/unreviewed/2023/12/GHSA-w9fv-v3c8-4jj7/GHSA-w9fv-v3c8-4jj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-wv7w-gjp3-5jw8/GHSA-wv7w-gjp3-5jw8.json b/advisories/unreviewed/2023/12/GHSA-wv7w-gjp3-5jw8/GHSA-wv7w-gjp3-5jw8.json index 7eb967637b9..e59e793175f 100644 --- a/advisories/unreviewed/2023/12/GHSA-wv7w-gjp3-5jw8/GHSA-wv7w-gjp3-5jw8.json +++ b/advisories/unreviewed/2023/12/GHSA-wv7w-gjp3-5jw8/GHSA-wv7w-gjp3-5jw8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-wxgf-453q-28rc/GHSA-wxgf-453q-28rc.json b/advisories/unreviewed/2023/12/GHSA-wxgf-453q-28rc/GHSA-wxgf-453q-28rc.json index 056063f1ad2..e989d65bd8f 100644 --- a/advisories/unreviewed/2023/12/GHSA-wxgf-453q-28rc/GHSA-wxgf-453q-28rc.json +++ b/advisories/unreviewed/2023/12/GHSA-wxgf-453q-28rc/GHSA-wxgf-453q-28rc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-x5c3-p4q5-h9p2/GHSA-x5c3-p4q5-h9p2.json b/advisories/unreviewed/2023/12/GHSA-x5c3-p4q5-h9p2/GHSA-x5c3-p4q5-h9p2.json index d5d31e9e281..ee5371bd6d5 100644 --- a/advisories/unreviewed/2023/12/GHSA-x5c3-p4q5-h9p2/GHSA-x5c3-p4q5-h9p2.json +++ b/advisories/unreviewed/2023/12/GHSA-x5c3-p4q5-h9p2/GHSA-x5c3-p4q5-h9p2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-x5rv-fj3x-286w/GHSA-x5rv-fj3x-286w.json b/advisories/unreviewed/2023/12/GHSA-x5rv-fj3x-286w/GHSA-x5rv-fj3x-286w.json index 570df8ddb81..aacc6e58ae0 100644 --- a/advisories/unreviewed/2023/12/GHSA-x5rv-fj3x-286w/GHSA-x5rv-fj3x-286w.json +++ b/advisories/unreviewed/2023/12/GHSA-x5rv-fj3x-286w/GHSA-x5rv-fj3x-286w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xcfg-q632-gcg7/GHSA-xcfg-q632-gcg7.json b/advisories/unreviewed/2023/12/GHSA-xcfg-q632-gcg7/GHSA-xcfg-q632-gcg7.json index 41a683c69f2..1132ed517c9 100644 --- a/advisories/unreviewed/2023/12/GHSA-xcfg-q632-gcg7/GHSA-xcfg-q632-gcg7.json +++ b/advisories/unreviewed/2023/12/GHSA-xcfg-q632-gcg7/GHSA-xcfg-q632-gcg7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xf46-phqr-8c9x/GHSA-xf46-phqr-8c9x.json b/advisories/unreviewed/2023/12/GHSA-xf46-phqr-8c9x/GHSA-xf46-phqr-8c9x.json index c51f3c1a71c..9e50945776a 100644 --- a/advisories/unreviewed/2023/12/GHSA-xf46-phqr-8c9x/GHSA-xf46-phqr-8c9x.json +++ b/advisories/unreviewed/2023/12/GHSA-xf46-phqr-8c9x/GHSA-xf46-phqr-8c9x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xhrr-676x-hmpc/GHSA-xhrr-676x-hmpc.json b/advisories/unreviewed/2023/12/GHSA-xhrr-676x-hmpc/GHSA-xhrr-676x-hmpc.json index 978a56d8ef2..7afbb6ea08d 100644 --- a/advisories/unreviewed/2023/12/GHSA-xhrr-676x-hmpc/GHSA-xhrr-676x-hmpc.json +++ b/advisories/unreviewed/2023/12/GHSA-xhrr-676x-hmpc/GHSA-xhrr-676x-hmpc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xxf2-c69q-g3w9/GHSA-xxf2-c69q-g3w9.json b/advisories/unreviewed/2023/12/GHSA-xxf2-c69q-g3w9/GHSA-xxf2-c69q-g3w9.json index 6874ed094bf..a36ad7ac031 100644 --- a/advisories/unreviewed/2023/12/GHSA-xxf2-c69q-g3w9/GHSA-xxf2-c69q-g3w9.json +++ b/advisories/unreviewed/2023/12/GHSA-xxf2-c69q-g3w9/GHSA-xxf2-c69q-g3w9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4c27-r897-v3m2/GHSA-4c27-r897-v3m2.json b/advisories/unreviewed/2024/01/GHSA-4c27-r897-v3m2/GHSA-4c27-r897-v3m2.json index 89c02cc94f0..7f0d7bf9dda 100644 --- a/advisories/unreviewed/2024/01/GHSA-4c27-r897-v3m2/GHSA-4c27-r897-v3m2.json +++ b/advisories/unreviewed/2024/01/GHSA-4c27-r897-v3m2/GHSA-4c27-r897-v3m2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4pwh-g75g-82fx/GHSA-4pwh-g75g-82fx.json b/advisories/unreviewed/2024/01/GHSA-4pwh-g75g-82fx/GHSA-4pwh-g75g-82fx.json index 108a14de9e2..2580f3e365d 100644 --- a/advisories/unreviewed/2024/01/GHSA-4pwh-g75g-82fx/GHSA-4pwh-g75g-82fx.json +++ b/advisories/unreviewed/2024/01/GHSA-4pwh-g75g-82fx/GHSA-4pwh-g75g-82fx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4vvr-gjmg-w366/GHSA-4vvr-gjmg-w366.json b/advisories/unreviewed/2024/01/GHSA-4vvr-gjmg-w366/GHSA-4vvr-gjmg-w366.json index a2819fc7cda..48575a21890 100644 --- a/advisories/unreviewed/2024/01/GHSA-4vvr-gjmg-w366/GHSA-4vvr-gjmg-w366.json +++ b/advisories/unreviewed/2024/01/GHSA-4vvr-gjmg-w366/GHSA-4vvr-gjmg-w366.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-gccg-f527-63v3/GHSA-gccg-f527-63v3.json b/advisories/unreviewed/2024/01/GHSA-gccg-f527-63v3/GHSA-gccg-f527-63v3.json index 7d73e6e2632..17756de51f6 100644 --- a/advisories/unreviewed/2024/01/GHSA-gccg-f527-63v3/GHSA-gccg-f527-63v3.json +++ b/advisories/unreviewed/2024/01/GHSA-gccg-f527-63v3/GHSA-gccg-f527-63v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hc6c-m8v3-634f/GHSA-hc6c-m8v3-634f.json b/advisories/unreviewed/2024/01/GHSA-hc6c-m8v3-634f/GHSA-hc6c-m8v3-634f.json index a62891c3841..4ff337198e3 100644 --- a/advisories/unreviewed/2024/01/GHSA-hc6c-m8v3-634f/GHSA-hc6c-m8v3-634f.json +++ b/advisories/unreviewed/2024/01/GHSA-hc6c-m8v3-634f/GHSA-hc6c-m8v3-634f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-m7gj-wmp7-fwfx/GHSA-m7gj-wmp7-fwfx.json b/advisories/unreviewed/2024/01/GHSA-m7gj-wmp7-fwfx/GHSA-m7gj-wmp7-fwfx.json index 7d0ffeb9f66..b155aa5296c 100644 --- a/advisories/unreviewed/2024/01/GHSA-m7gj-wmp7-fwfx/GHSA-m7gj-wmp7-fwfx.json +++ b/advisories/unreviewed/2024/01/GHSA-m7gj-wmp7-fwfx/GHSA-m7gj-wmp7-fwfx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-mxgp-w5v3-c946/GHSA-mxgp-w5v3-c946.json b/advisories/unreviewed/2024/01/GHSA-mxgp-w5v3-c946/GHSA-mxgp-w5v3-c946.json index 65790348232..925cead4834 100644 --- a/advisories/unreviewed/2024/01/GHSA-mxgp-w5v3-c946/GHSA-mxgp-w5v3-c946.json +++ b/advisories/unreviewed/2024/01/GHSA-mxgp-w5v3-c946/GHSA-mxgp-w5v3-c946.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-pj8j-f4gx-wrgf/GHSA-pj8j-f4gx-wrgf.json b/advisories/unreviewed/2024/01/GHSA-pj8j-f4gx-wrgf/GHSA-pj8j-f4gx-wrgf.json index 5c3ddd3bd66..c13aab70b3b 100644 --- a/advisories/unreviewed/2024/01/GHSA-pj8j-f4gx-wrgf/GHSA-pj8j-f4gx-wrgf.json +++ b/advisories/unreviewed/2024/01/GHSA-pj8j-f4gx-wrgf/GHSA-pj8j-f4gx-wrgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-pjmm-vvvh-7xfj/GHSA-pjmm-vvvh-7xfj.json b/advisories/unreviewed/2024/01/GHSA-pjmm-vvvh-7xfj/GHSA-pjmm-vvvh-7xfj.json index 375d570d351..651d98eb177 100644 --- a/advisories/unreviewed/2024/01/GHSA-pjmm-vvvh-7xfj/GHSA-pjmm-vvvh-7xfj.json +++ b/advisories/unreviewed/2024/01/GHSA-pjmm-vvvh-7xfj/GHSA-pjmm-vvvh-7xfj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-qr6c-pgxx-rqc6/GHSA-qr6c-pgxx-rqc6.json b/advisories/unreviewed/2024/01/GHSA-qr6c-pgxx-rqc6/GHSA-qr6c-pgxx-rqc6.json index a99d5902179..5fe3364a48a 100644 --- a/advisories/unreviewed/2024/01/GHSA-qr6c-pgxx-rqc6/GHSA-qr6c-pgxx-rqc6.json +++ b/advisories/unreviewed/2024/01/GHSA-qr6c-pgxx-rqc6/GHSA-qr6c-pgxx-rqc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-v3pc-xh3w-h68j/GHSA-v3pc-xh3w-h68j.json b/advisories/unreviewed/2024/01/GHSA-v3pc-xh3w-h68j/GHSA-v3pc-xh3w-h68j.json index 2555d822651..52f422bd073 100644 --- a/advisories/unreviewed/2024/01/GHSA-v3pc-xh3w-h68j/GHSA-v3pc-xh3w-h68j.json +++ b/advisories/unreviewed/2024/01/GHSA-v3pc-xh3w-h68j/GHSA-v3pc-xh3w-h68j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-whch-9pr2-9fvq/GHSA-whch-9pr2-9fvq.json b/advisories/unreviewed/2024/01/GHSA-whch-9pr2-9fvq/GHSA-whch-9pr2-9fvq.json index cc57158055e..14092a0c21a 100644 --- a/advisories/unreviewed/2024/01/GHSA-whch-9pr2-9fvq/GHSA-whch-9pr2-9fvq.json +++ b/advisories/unreviewed/2024/01/GHSA-whch-9pr2-9fvq/GHSA-whch-9pr2-9fvq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-x9cm-jx7h-mxw7/GHSA-x9cm-jx7h-mxw7.json b/advisories/unreviewed/2024/01/GHSA-x9cm-jx7h-mxw7/GHSA-x9cm-jx7h-mxw7.json index 75727ed7d70..77dc2e3cd8e 100644 --- a/advisories/unreviewed/2024/01/GHSA-x9cm-jx7h-mxw7/GHSA-x9cm-jx7h-mxw7.json +++ b/advisories/unreviewed/2024/01/GHSA-x9cm-jx7h-mxw7/GHSA-x9cm-jx7h-mxw7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-68r4-mq9j-2rrq/GHSA-68r4-mq9j-2rrq.json b/advisories/unreviewed/2024/02/GHSA-68r4-mq9j-2rrq/GHSA-68r4-mq9j-2rrq.json index 5dfa9f57fb9..9e32e7e3bdb 100644 --- a/advisories/unreviewed/2024/02/GHSA-68r4-mq9j-2rrq/GHSA-68r4-mq9j-2rrq.json +++ b/advisories/unreviewed/2024/02/GHSA-68r4-mq9j-2rrq/GHSA-68r4-mq9j-2rrq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-p3jh-mv97-74gv/GHSA-p3jh-mv97-74gv.json b/advisories/unreviewed/2024/02/GHSA-p3jh-mv97-74gv/GHSA-p3jh-mv97-74gv.json index 6cb1045b170..756fdda678d 100644 --- a/advisories/unreviewed/2024/02/GHSA-p3jh-mv97-74gv/GHSA-p3jh-mv97-74gv.json +++ b/advisories/unreviewed/2024/02/GHSA-p3jh-mv97-74gv/GHSA-p3jh-mv97-74gv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-pc53-x582-24xc/GHSA-pc53-x582-24xc.json b/advisories/unreviewed/2024/02/GHSA-pc53-x582-24xc/GHSA-pc53-x582-24xc.json index e102e226fd6..773bb076d58 100644 --- a/advisories/unreviewed/2024/02/GHSA-pc53-x582-24xc/GHSA-pc53-x582-24xc.json +++ b/advisories/unreviewed/2024/02/GHSA-pc53-x582-24xc/GHSA-pc53-x582-24xc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-36v8-vqh8-c3xx/GHSA-36v8-vqh8-c3xx.json b/advisories/unreviewed/2024/03/GHSA-36v8-vqh8-c3xx/GHSA-36v8-vqh8-c3xx.json index a1800021f98..facc7b33737 100644 --- a/advisories/unreviewed/2024/03/GHSA-36v8-vqh8-c3xx/GHSA-36v8-vqh8-c3xx.json +++ b/advisories/unreviewed/2024/03/GHSA-36v8-vqh8-c3xx/GHSA-36v8-vqh8-c3xx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-4www-jw36-m87h/GHSA-4www-jw36-m87h.json b/advisories/unreviewed/2024/03/GHSA-4www-jw36-m87h/GHSA-4www-jw36-m87h.json index f239d3f163e..fc1d55755cc 100644 --- a/advisories/unreviewed/2024/03/GHSA-4www-jw36-m87h/GHSA-4www-jw36-m87h.json +++ b/advisories/unreviewed/2024/03/GHSA-4www-jw36-m87h/GHSA-4www-jw36-m87h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-8q3q-73vf-jp8w/GHSA-8q3q-73vf-jp8w.json b/advisories/unreviewed/2024/03/GHSA-8q3q-73vf-jp8w/GHSA-8q3q-73vf-jp8w.json index d3b3fb6da54..695dc5769cb 100644 --- a/advisories/unreviewed/2024/03/GHSA-8q3q-73vf-jp8w/GHSA-8q3q-73vf-jp8w.json +++ b/advisories/unreviewed/2024/03/GHSA-8q3q-73vf-jp8w/GHSA-8q3q-73vf-jp8w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-h443-pjpv-28vx/GHSA-h443-pjpv-28vx.json b/advisories/unreviewed/2024/03/GHSA-h443-pjpv-28vx/GHSA-h443-pjpv-28vx.json index 4aa125d9c70..0107587b6bd 100644 --- a/advisories/unreviewed/2024/03/GHSA-h443-pjpv-28vx/GHSA-h443-pjpv-28vx.json +++ b/advisories/unreviewed/2024/03/GHSA-h443-pjpv-28vx/GHSA-h443-pjpv-28vx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-j7h3-fcrw-g6j8/GHSA-j7h3-fcrw-g6j8.json b/advisories/unreviewed/2024/03/GHSA-j7h3-fcrw-g6j8/GHSA-j7h3-fcrw-g6j8.json index 0c0b04d1c74..7402f5ef2db 100644 --- a/advisories/unreviewed/2024/03/GHSA-j7h3-fcrw-g6j8/GHSA-j7h3-fcrw-g6j8.json +++ b/advisories/unreviewed/2024/03/GHSA-j7h3-fcrw-g6j8/GHSA-j7h3-fcrw-g6j8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-qfcg-72h5-fvgr/GHSA-qfcg-72h5-fvgr.json b/advisories/unreviewed/2024/03/GHSA-qfcg-72h5-fvgr/GHSA-qfcg-72h5-fvgr.json index b90fad3e274..8f30970798e 100644 --- a/advisories/unreviewed/2024/03/GHSA-qfcg-72h5-fvgr/GHSA-qfcg-72h5-fvgr.json +++ b/advisories/unreviewed/2024/03/GHSA-qfcg-72h5-fvgr/GHSA-qfcg-72h5-fvgr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-xp9q-8p95-j7cm/GHSA-xp9q-8p95-j7cm.json b/advisories/unreviewed/2024/03/GHSA-xp9q-8p95-j7cm/GHSA-xp9q-8p95-j7cm.json index 418d972ffc1..ad3f6796696 100644 --- a/advisories/unreviewed/2024/03/GHSA-xp9q-8p95-j7cm/GHSA-xp9q-8p95-j7cm.json +++ b/advisories/unreviewed/2024/03/GHSA-xp9q-8p95-j7cm/GHSA-xp9q-8p95-j7cm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-2gv5-rmgh-hfj2/GHSA-2gv5-rmgh-hfj2.json b/advisories/unreviewed/2024/04/GHSA-2gv5-rmgh-hfj2/GHSA-2gv5-rmgh-hfj2.json index 77cc6fe807f..15e900139fb 100644 --- a/advisories/unreviewed/2024/04/GHSA-2gv5-rmgh-hfj2/GHSA-2gv5-rmgh-hfj2.json +++ b/advisories/unreviewed/2024/04/GHSA-2gv5-rmgh-hfj2/GHSA-2gv5-rmgh-hfj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-337x-469w-f426/GHSA-337x-469w-f426.json b/advisories/unreviewed/2024/04/GHSA-337x-469w-f426/GHSA-337x-469w-f426.json index db5941ca49e..b7ec5f75e5a 100644 --- a/advisories/unreviewed/2024/04/GHSA-337x-469w-f426/GHSA-337x-469w-f426.json +++ b/advisories/unreviewed/2024/04/GHSA-337x-469w-f426/GHSA-337x-469w-f426.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-392q-fqh8-rw5h/GHSA-392q-fqh8-rw5h.json b/advisories/unreviewed/2024/04/GHSA-392q-fqh8-rw5h/GHSA-392q-fqh8-rw5h.json index b6928546d2c..b30c1e5cbdd 100644 --- a/advisories/unreviewed/2024/04/GHSA-392q-fqh8-rw5h/GHSA-392q-fqh8-rw5h.json +++ b/advisories/unreviewed/2024/04/GHSA-392q-fqh8-rw5h/GHSA-392q-fqh8-rw5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-4297-vxj6-vc69/GHSA-4297-vxj6-vc69.json b/advisories/unreviewed/2024/04/GHSA-4297-vxj6-vc69/GHSA-4297-vxj6-vc69.json index 0f92f2d2556..625b75a1687 100644 --- a/advisories/unreviewed/2024/04/GHSA-4297-vxj6-vc69/GHSA-4297-vxj6-vc69.json +++ b/advisories/unreviewed/2024/04/GHSA-4297-vxj6-vc69/GHSA-4297-vxj6-vc69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-5vqg-cq3h-mm9v/GHSA-5vqg-cq3h-mm9v.json b/advisories/unreviewed/2024/04/GHSA-5vqg-cq3h-mm9v/GHSA-5vqg-cq3h-mm9v.json index b873c893c27..85d41a2dea5 100644 --- a/advisories/unreviewed/2024/04/GHSA-5vqg-cq3h-mm9v/GHSA-5vqg-cq3h-mm9v.json +++ b/advisories/unreviewed/2024/04/GHSA-5vqg-cq3h-mm9v/GHSA-5vqg-cq3h-mm9v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-65p7-87x3-c8mr/GHSA-65p7-87x3-c8mr.json b/advisories/unreviewed/2024/04/GHSA-65p7-87x3-c8mr/GHSA-65p7-87x3-c8mr.json index 35a33e1d944..ae416f86739 100644 --- a/advisories/unreviewed/2024/04/GHSA-65p7-87x3-c8mr/GHSA-65p7-87x3-c8mr.json +++ b/advisories/unreviewed/2024/04/GHSA-65p7-87x3-c8mr/GHSA-65p7-87x3-c8mr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-67f8-2vh7-p8ch/GHSA-67f8-2vh7-p8ch.json b/advisories/unreviewed/2024/04/GHSA-67f8-2vh7-p8ch/GHSA-67f8-2vh7-p8ch.json index 1398cdf956e..29d4d77410d 100644 --- a/advisories/unreviewed/2024/04/GHSA-67f8-2vh7-p8ch/GHSA-67f8-2vh7-p8ch.json +++ b/advisories/unreviewed/2024/04/GHSA-67f8-2vh7-p8ch/GHSA-67f8-2vh7-p8ch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-72gr-3gpg-48fc/GHSA-72gr-3gpg-48fc.json b/advisories/unreviewed/2024/04/GHSA-72gr-3gpg-48fc/GHSA-72gr-3gpg-48fc.json index 91d285cfc33..5f0bb17628f 100644 --- a/advisories/unreviewed/2024/04/GHSA-72gr-3gpg-48fc/GHSA-72gr-3gpg-48fc.json +++ b/advisories/unreviewed/2024/04/GHSA-72gr-3gpg-48fc/GHSA-72gr-3gpg-48fc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-7g8v-p8gp-3mff/GHSA-7g8v-p8gp-3mff.json b/advisories/unreviewed/2024/04/GHSA-7g8v-p8gp-3mff/GHSA-7g8v-p8gp-3mff.json index a044f923857..ec16f3c8b12 100644 --- a/advisories/unreviewed/2024/04/GHSA-7g8v-p8gp-3mff/GHSA-7g8v-p8gp-3mff.json +++ b/advisories/unreviewed/2024/04/GHSA-7g8v-p8gp-3mff/GHSA-7g8v-p8gp-3mff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-8mh7-5jr7-g9jm/GHSA-8mh7-5jr7-g9jm.json b/advisories/unreviewed/2024/04/GHSA-8mh7-5jr7-g9jm/GHSA-8mh7-5jr7-g9jm.json index 0dc2e8a66b0..d7abc6d1ae5 100644 --- a/advisories/unreviewed/2024/04/GHSA-8mh7-5jr7-g9jm/GHSA-8mh7-5jr7-g9jm.json +++ b/advisories/unreviewed/2024/04/GHSA-8mh7-5jr7-g9jm/GHSA-8mh7-5jr7-g9jm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-g7m2-fg5w-qhp2/GHSA-g7m2-fg5w-qhp2.json b/advisories/unreviewed/2024/04/GHSA-g7m2-fg5w-qhp2/GHSA-g7m2-fg5w-qhp2.json index 1c5e3a4e844..32451e23dea 100644 --- a/advisories/unreviewed/2024/04/GHSA-g7m2-fg5w-qhp2/GHSA-g7m2-fg5w-qhp2.json +++ b/advisories/unreviewed/2024/04/GHSA-g7m2-fg5w-qhp2/GHSA-g7m2-fg5w-qhp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-gg92-wfhm-m46w/GHSA-gg92-wfhm-m46w.json b/advisories/unreviewed/2024/04/GHSA-gg92-wfhm-m46w/GHSA-gg92-wfhm-m46w.json index d2334f4b339..b7c3f741cee 100644 --- a/advisories/unreviewed/2024/04/GHSA-gg92-wfhm-m46w/GHSA-gg92-wfhm-m46w.json +++ b/advisories/unreviewed/2024/04/GHSA-gg92-wfhm-m46w/GHSA-gg92-wfhm-m46w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-gqgg-x55f-28q4/GHSA-gqgg-x55f-28q4.json b/advisories/unreviewed/2024/04/GHSA-gqgg-x55f-28q4/GHSA-gqgg-x55f-28q4.json index dbd3354c2e7..0594b9a1164 100644 --- a/advisories/unreviewed/2024/04/GHSA-gqgg-x55f-28q4/GHSA-gqgg-x55f-28q4.json +++ b/advisories/unreviewed/2024/04/GHSA-gqgg-x55f-28q4/GHSA-gqgg-x55f-28q4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-m66c-qm7g-w5qx/GHSA-m66c-qm7g-w5qx.json b/advisories/unreviewed/2024/04/GHSA-m66c-qm7g-w5qx/GHSA-m66c-qm7g-w5qx.json index ed0f74fb844..13aeb0bca9a 100644 --- a/advisories/unreviewed/2024/04/GHSA-m66c-qm7g-w5qx/GHSA-m66c-qm7g-w5qx.json +++ b/advisories/unreviewed/2024/04/GHSA-m66c-qm7g-w5qx/GHSA-m66c-qm7g-w5qx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-v244-3pmj-9qfc/GHSA-v244-3pmj-9qfc.json b/advisories/unreviewed/2024/04/GHSA-v244-3pmj-9qfc/GHSA-v244-3pmj-9qfc.json index 2b3fab6de42..861285f7d11 100644 --- a/advisories/unreviewed/2024/04/GHSA-v244-3pmj-9qfc/GHSA-v244-3pmj-9qfc.json +++ b/advisories/unreviewed/2024/04/GHSA-v244-3pmj-9qfc/GHSA-v244-3pmj-9qfc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-v79g-8rxh-2q7g/GHSA-v79g-8rxh-2q7g.json b/advisories/unreviewed/2024/04/GHSA-v79g-8rxh-2q7g/GHSA-v79g-8rxh-2q7g.json index bf52e6cff60..7d91e7ca7da 100644 --- a/advisories/unreviewed/2024/04/GHSA-v79g-8rxh-2q7g/GHSA-v79g-8rxh-2q7g.json +++ b/advisories/unreviewed/2024/04/GHSA-v79g-8rxh-2q7g/GHSA-v79g-8rxh-2q7g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-wgj9-rrf6-3qqq/GHSA-wgj9-rrf6-3qqq.json b/advisories/unreviewed/2024/04/GHSA-wgj9-rrf6-3qqq/GHSA-wgj9-rrf6-3qqq.json index 6dc1de3ecdb..04effb94f51 100644 --- a/advisories/unreviewed/2024/04/GHSA-wgj9-rrf6-3qqq/GHSA-wgj9-rrf6-3qqq.json +++ b/advisories/unreviewed/2024/04/GHSA-wgj9-rrf6-3qqq/GHSA-wgj9-rrf6-3qqq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-wrv6-52mc-xwcq/GHSA-wrv6-52mc-xwcq.json b/advisories/unreviewed/2024/04/GHSA-wrv6-52mc-xwcq/GHSA-wrv6-52mc-xwcq.json index 94ff173a31e..9392228bf39 100644 --- a/advisories/unreviewed/2024/04/GHSA-wrv6-52mc-xwcq/GHSA-wrv6-52mc-xwcq.json +++ b/advisories/unreviewed/2024/04/GHSA-wrv6-52mc-xwcq/GHSA-wrv6-52mc-xwcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-xmqc-9cfr-hg4r/GHSA-xmqc-9cfr-hg4r.json b/advisories/unreviewed/2024/04/GHSA-xmqc-9cfr-hg4r/GHSA-xmqc-9cfr-hg4r.json index 9689b1964e3..5db280109bd 100644 --- a/advisories/unreviewed/2024/04/GHSA-xmqc-9cfr-hg4r/GHSA-xmqc-9cfr-hg4r.json +++ b/advisories/unreviewed/2024/04/GHSA-xmqc-9cfr-hg4r/GHSA-xmqc-9cfr-hg4r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/04/GHSA-xwj2-rcwr-xpcp/GHSA-xwj2-rcwr-xpcp.json b/advisories/unreviewed/2024/04/GHSA-xwj2-rcwr-xpcp/GHSA-xwj2-rcwr-xpcp.json index 7b6778b25bb..e795c2a40eb 100644 --- a/advisories/unreviewed/2024/04/GHSA-xwj2-rcwr-xpcp/GHSA-xwj2-rcwr-xpcp.json +++ b/advisories/unreviewed/2024/04/GHSA-xwj2-rcwr-xpcp/GHSA-xwj2-rcwr-xpcp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",