mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-76p7-773f-r4q5",
|
||||
"modified": "2025-06-04T21:31:03Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2025-02-10T18:30:47Z",
|
||||
"aliases": [
|
||||
"CVE-2024-11831"
|
||||
@@ -80,6 +80,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/errata/RHSA-2025:8544"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/errata/RHSA-2025:8551"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/security/cve/CVE-2024-11831"
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2pr9-w7jf-v4v7",
|
||||
"modified": "2022-05-24T17:26:19Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:26:19Z",
|
||||
"aliases": [
|
||||
"CVE-2020-16241"
|
||||
],
|
||||
"details": "Philips SureSigns VS4, A.07.107 and prior. The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,15 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-233-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-284",
|
||||
"CWE-863"
|
||||
],
|
||||
"severity": "LOW",
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-779w-7mcf-pvxf",
|
||||
"modified": "2022-05-24T17:28:54Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:28:54Z",
|
||||
"aliases": [
|
||||
"CVE-2020-14525"
|
||||
],
|
||||
"details": "Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The software does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output used as a webpage that is served to other users.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,16 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-261-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-83"
|
||||
],
|
||||
"severity": "LOW",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,26 +1,41 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-865m-f7p5-xc5c",
|
||||
"modified": "2022-05-24T17:20:19Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:20:19Z",
|
||||
"aliases": [
|
||||
"CVE-2020-12023"
|
||||
],
|
||||
"details": "Philips IntelliBridge Enterprise (IBE), Versions B.12 and prior, IntelliBridge Enterprise system integration with SureSigns (VS4), EarlyVue (VS30) and IntelliVue Guardian (IGS). Unencrypted user credentials received in the IntelliBridge Enterprise (IBE) are logged within the transaction logs, which are secured behind the login based administrative web portal. The unencrypted user credentials sent from the affected products listed above, for the purpose of handshake or authentication with the Enterprise Systems, are logged as the payload in IntelliBridge Enterprise (IBE) within the transaction logs. An attacker with administrative privileges could exploit this vulnerability to read plain text credentials from log files.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-12023"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.cisa.gov/news-events/ics-medical-advisories/icsma-20-163-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.us-cert.gov/ics/advisories/icsma-20-163-01"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-532"
|
||||
],
|
||||
"severity": "LOW",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-c39v-2g86-xrr6",
|
||||
"modified": "2022-05-24T17:26:18Z",
|
||||
"modified": "2025-06-05T00:31:17Z",
|
||||
"published": "2022-05-24T17:26:18Z",
|
||||
"aliases": [
|
||||
"CVE-2020-16237"
|
||||
],
|
||||
"details": "Philips SureSigns VS4, A.07.107 and prior. The product receives input or data, but it does not validate or incorrectly validates that the input has the properties required to process the data safely and correctly.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,16 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-233-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-20"
|
||||
],
|
||||
"severity": "LOW",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-m2mx-5gcx-j288",
|
||||
"modified": "2022-05-24T17:28:58Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:28:58Z",
|
||||
"aliases": [
|
||||
"CVE-2020-16247"
|
||||
@@ -22,6 +22,10 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-261-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-p4jj-wjcf-vhhr",
|
||||
"modified": "2022-05-24T17:21:43Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:21:43Z",
|
||||
"aliases": [
|
||||
"CVE-2020-14477"
|
||||
],
|
||||
"details": "In Philips Ultrasound ClearVue Versions 3.2 and prior, Ultrasound CX Versions 5.0.2 and prior, Ultrasound EPIQ/Affiniti Versions VM5.0 and prior, Ultrasound Sparq Version 3.0.2 and prior and Ultrasound Xperius all versions, an attacker may use an alternate path or channel that does not require authentication of the alternate service login to view or modify information.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -20,7 +25,10 @@
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-287",
|
||||
"CWE-288"
|
||||
],
|
||||
"severity": "LOW",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-r4mh-c83r-pv4f",
|
||||
"modified": "2022-05-24T17:28:58Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:28:58Z",
|
||||
"aliases": [
|
||||
"CVE-2020-16198"
|
||||
],
|
||||
"details": "Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. When an attacker claims to have a given identity, the software does not prove or insufficiently proves the claim is correct.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,16 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-261-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-693"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-r5f2-9rjc-r66m",
|
||||
"modified": "2022-05-24T17:26:19Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:26:19Z",
|
||||
"aliases": [
|
||||
"CVE-2020-16239"
|
||||
],
|
||||
"details": "Philips SureSigns VS4, A.07.107 and prior. When an actor claims to have a given identity, the software does not prove or insufficiently proves the claim is correct.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,16 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-233-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-287"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-rhr8-h74g-4f3h",
|
||||
"modified": "2022-05-24T17:26:18Z",
|
||||
"modified": "2025-06-05T00:31:17Z",
|
||||
"published": "2022-05-24T17:26:18Z",
|
||||
"aliases": [
|
||||
"CVE-2020-14518"
|
||||
],
|
||||
"details": "Philips DreamMapper, Version 2.24 and prior. Information written to log files can give guidance to a potential attacker.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,16 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-212-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-532"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-vq75-425f-vq6r",
|
||||
"modified": "2022-05-24T17:28:58Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2022-05-24T17:28:58Z",
|
||||
"aliases": [
|
||||
"CVE-2020-16200"
|
||||
],
|
||||
"details": "Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The software does not properly control the allocation and maintenance of a limited resource, thereby enabling an attacker to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
@@ -17,10 +22,16 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://us-cert.cisa.gov/ics/advisories/icsma-20-261-01"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.philips.com/a-w/security/security-advisories/product-security-2020.html#2020_archive"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-757"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-45qr-r98p-f6qx",
|
||||
"modified": "2024-02-07T18:30:27Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2024-02-02T03:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2024-22903"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2q5m-vpfx-7jxh",
|
||||
"modified": "2025-04-05T06:30:21Z",
|
||||
"modified": "2025-06-05T00:31:18Z",
|
||||
"published": "2025-04-05T06:30:21Z",
|
||||
"aliases": [
|
||||
"CVE-2025-2789"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-8388-vmf2-8gm7",
|
||||
"modified": "2025-04-12T09:30:30Z",
|
||||
"modified": "2025-06-05T00:31:19Z",
|
||||
"published": "2025-04-12T09:30:30Z",
|
||||
"aliases": [
|
||||
"CVE-2025-3276"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-97h8-p95j-8mhw",
|
||||
"modified": "2025-05-08T12:34:30Z",
|
||||
"modified": "2025-06-05T00:31:20Z",
|
||||
"published": "2025-05-08T12:34:30Z",
|
||||
"aliases": [
|
||||
"CVE-2025-3862"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-j7r8-r87g-9m3j",
|
||||
"modified": "2025-05-08T09:30:25Z",
|
||||
"modified": "2025-06-05T00:31:19Z",
|
||||
"published": "2025-05-08T09:30:25Z",
|
||||
"aliases": [
|
||||
"CVE-2025-4127"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-mcp3-v9r2-v7vp",
|
||||
"modified": "2025-05-19T06:30:35Z",
|
||||
"modified": "2025-06-05T00:31:20Z",
|
||||
"published": "2025-05-19T06:30:35Z",
|
||||
"aliases": [
|
||||
"CVE-2025-2892"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-pq56-qw5r-672m",
|
||||
"modified": "2025-05-08T12:34:29Z",
|
||||
"modified": "2025-06-05T00:31:19Z",
|
||||
"published": "2025-05-08T12:34:29Z",
|
||||
"aliases": [
|
||||
"CVE-2025-3468"
|
||||
|
||||
@@ -0,0 +1,56 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-766x-w9p6-xvv5",
|
||||
"modified": "2025-06-05T00:31:20Z",
|
||||
"published": "2025-06-05T00:31:20Z",
|
||||
"aliases": [
|
||||
"CVE-2025-5617"
|
||||
],
|
||||
"details": "A vulnerability classified as critical has been found in PHPGurukul Online Fire Reporting System 1.2. This affects an unknown part of the file /admin/manage-teams.php. The manipulation of the argument teamid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
|
||||
},
|
||||
{
|
||||
"type": "CVSS_V4",
|
||||
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5617"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/YZS17/CVE/blob/main/Online_Fire_Reporting_System/sqli_admin_manage-teams.php_teamid.md"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://phpgurukul.com"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vuldb.com/?ctiid.311103"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vuldb.com/?id.311103"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vuldb.com/?submit.589113"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-74"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2025-06-04T23:15:21Z"
|
||||
}
|
||||
}
|
||||
@@ -0,0 +1,56 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-cp34-r5vc-7cw6",
|
||||
"modified": "2025-06-05T00:31:21Z",
|
||||
"published": "2025-06-05T00:31:21Z",
|
||||
"aliases": [
|
||||
"CVE-2025-5619"
|
||||
],
|
||||
"details": "A vulnerability, which was classified as critical, has been found in Tenda CH22 1.0.0.1. This issue affects the function formaddUserName of the file /goform/addUserName. The manipulation of the argument Password leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
|
||||
},
|
||||
{
|
||||
"type": "CVSS_V4",
|
||||
"score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5619"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/xubeining/Cve_report/blob/main/A%20remote%20code%20execution%20vulnerability%20in%20the%20router%20CH22%20V1.0.0.1%20manufactured%20by%20Shenzhen%20Jixiangtengda%20Technology%20Co.%2C%20Ltd.md"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vuldb.com/?ctiid.311105"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vuldb.com/?id.311105"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vuldb.com/?submit.589179"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.tenda.com.cn"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-119"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2025-06-04T23:15:22Z"
|
||||
}
|
||||
}
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user