diff --git a/advisories/unreviewed/2023/01/GHSA-2v87-869h-xp3x/GHSA-2v87-869h-xp3x.json b/advisories/unreviewed/2023/01/GHSA-2v87-869h-xp3x/GHSA-2v87-869h-xp3x.json index 9bcf817d750..a30d352d66a 100644 --- a/advisories/unreviewed/2023/01/GHSA-2v87-869h-xp3x/GHSA-2v87-869h-xp3x.json +++ b/advisories/unreviewed/2023/01/GHSA-2v87-869h-xp3x/GHSA-2v87-869h-xp3x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2v87-869h-xp3x", - "modified": "2023-01-26T18:30:48Z", + "modified": "2025-04-07T18:30:33Z", "published": "2023-01-13T06:30:24Z", "aliases": [ "CVE-2023-23566" @@ -37,7 +37,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-276" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-3886-rc87-ccgx/GHSA-3886-rc87-ccgx.json b/advisories/unreviewed/2023/01/GHSA-3886-rc87-ccgx/GHSA-3886-rc87-ccgx.json index 516c058d872..8014168284f 100644 --- a/advisories/unreviewed/2023/01/GHSA-3886-rc87-ccgx/GHSA-3886-rc87-ccgx.json +++ b/advisories/unreviewed/2023/01/GHSA-3886-rc87-ccgx/GHSA-3886-rc87-ccgx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3886-rc87-ccgx", - "modified": "2023-01-24T21:30:29Z", + "modified": "2025-04-07T18:30:36Z", "published": "2023-01-17T18:30:43Z", "aliases": [ "CVE-2022-41861" diff --git a/advisories/unreviewed/2023/01/GHSA-445m-q5mj-2gj6/GHSA-445m-q5mj-2gj6.json b/advisories/unreviewed/2023/01/GHSA-445m-q5mj-2gj6/GHSA-445m-q5mj-2gj6.json index b042d80a106..cc58aa3c448 100644 --- a/advisories/unreviewed/2023/01/GHSA-445m-q5mj-2gj6/GHSA-445m-q5mj-2gj6.json +++ b/advisories/unreviewed/2023/01/GHSA-445m-q5mj-2gj6/GHSA-445m-q5mj-2gj6.json @@ -45,7 +45,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-5r4m-496r-7wqm/GHSA-5r4m-496r-7wqm.json b/advisories/unreviewed/2023/01/GHSA-5r4m-496r-7wqm/GHSA-5r4m-496r-7wqm.json index b8b0cbe061a..2f965a46cc8 100644 --- a/advisories/unreviewed/2023/01/GHSA-5r4m-496r-7wqm/GHSA-5r4m-496r-7wqm.json +++ b/advisories/unreviewed/2023/01/GHSA-5r4m-496r-7wqm/GHSA-5r4m-496r-7wqm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5r4m-496r-7wqm", - "modified": "2023-01-23T21:30:26Z", + "modified": "2025-04-07T18:30:34Z", "published": "2023-01-17T18:30:43Z", "aliases": [ "CVE-2022-41858" diff --git a/advisories/unreviewed/2023/01/GHSA-cfm7-f9p7-7m2w/GHSA-cfm7-f9p7-7m2w.json b/advisories/unreviewed/2023/01/GHSA-cfm7-f9p7-7m2w/GHSA-cfm7-f9p7-7m2w.json index c7b9a5b206c..d25c176c06a 100644 --- a/advisories/unreviewed/2023/01/GHSA-cfm7-f9p7-7m2w/GHSA-cfm7-f9p7-7m2w.json +++ b/advisories/unreviewed/2023/01/GHSA-cfm7-f9p7-7m2w/GHSA-cfm7-f9p7-7m2w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cfm7-f9p7-7m2w", - "modified": "2023-01-24T21:30:29Z", + "modified": "2025-04-07T18:30:35Z", "published": "2023-01-17T18:30:43Z", "aliases": [ "CVE-2022-41860" diff --git a/advisories/unreviewed/2023/01/GHSA-cmvm-c7qf-pmc5/GHSA-cmvm-c7qf-pmc5.json b/advisories/unreviewed/2023/01/GHSA-cmvm-c7qf-pmc5/GHSA-cmvm-c7qf-pmc5.json index 5a3caf1b04d..758ffd56aaa 100644 --- a/advisories/unreviewed/2023/01/GHSA-cmvm-c7qf-pmc5/GHSA-cmvm-c7qf-pmc5.json +++ b/advisories/unreviewed/2023/01/GHSA-cmvm-c7qf-pmc5/GHSA-cmvm-c7qf-pmc5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cmvm-c7qf-pmc5", - "modified": "2023-01-24T21:30:29Z", + "modified": "2025-04-07T18:30:35Z", "published": "2023-01-17T18:30:43Z", "aliases": [ "CVE-2022-41859" diff --git a/advisories/unreviewed/2023/01/GHSA-gqq3-j944-f364/GHSA-gqq3-j944-f364.json b/advisories/unreviewed/2023/01/GHSA-gqq3-j944-f364/GHSA-gqq3-j944-f364.json index db741ec47c0..52fbaa59d4a 100644 --- a/advisories/unreviewed/2023/01/GHSA-gqq3-j944-f364/GHSA-gqq3-j944-f364.json +++ b/advisories/unreviewed/2023/01/GHSA-gqq3-j944-f364/GHSA-gqq3-j944-f364.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-gqq3-j944-f364", - "modified": "2023-01-24T18:30:32Z", + "modified": "2025-04-07T18:30:33Z", "published": "2023-01-15T06:30:21Z", "aliases": [ "CVE-2023-23590" @@ -23,13 +23,19 @@ "type": "WEB", "url": "https://b2bconnect.mercedes-benz.com/gb/workshop-solutions/diagnosis/retail-data-storage" }, + { + "type": "WEB", + "url": "https://medium.com/%40windsormoreira/xentry-retail-data-storage-v7-8-1-denial-of-service-cve-2023-23590-60b65f5fa358" + }, { "type": "WEB", "url": "https://medium.com/@windsormoreira/xentry-retail-data-storage-v7-8-1-denial-of-service-cve-2023-23590-60b65f5fa358" } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-400" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-q47f-r7rj-rfg2/GHSA-q47f-r7rj-rfg2.json b/advisories/unreviewed/2023/01/GHSA-q47f-r7rj-rfg2/GHSA-q47f-r7rj-rfg2.json index f27866f8406..06da652190a 100644 --- a/advisories/unreviewed/2023/01/GHSA-q47f-r7rj-rfg2/GHSA-q47f-r7rj-rfg2.json +++ b/advisories/unreviewed/2023/01/GHSA-q47f-r7rj-rfg2/GHSA-q47f-r7rj-rfg2.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-306" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/03/GHSA-wfxf-3935-5jgv/GHSA-wfxf-3935-5jgv.json b/advisories/unreviewed/2025/03/GHSA-wfxf-3935-5jgv/GHSA-wfxf-3935-5jgv.json index ddd95acb080..bd98f5b6653 100644 --- a/advisories/unreviewed/2025/03/GHSA-wfxf-3935-5jgv/GHSA-wfxf-3935-5jgv.json +++ b/advisories/unreviewed/2025/03/GHSA-wfxf-3935-5jgv/GHSA-wfxf-3935-5jgv.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-wfxf-3935-5jgv", - "modified": "2025-03-28T15:31:56Z", + "modified": "2025-04-07T18:30:40Z", "published": "2025-03-28T15:31:56Z", "aliases": [ "CVE-2025-2877" @@ -19,6 +19,14 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-2877" }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:3636" + }, + { + "type": "WEB", + "url": "https://access.redhat.com/errata/RHSA-2025:3637" + }, { "type": "WEB", "url": "https://access.redhat.com/security/cve/CVE-2025-2877" diff --git a/advisories/unreviewed/2025/04/GHSA-2cq5-j9m5-v929/GHSA-2cq5-j9m5-v929.json b/advisories/unreviewed/2025/04/GHSA-2cq5-j9m5-v929/GHSA-2cq5-j9m5-v929.json index d98760f3878..72cc67432f0 100644 --- a/advisories/unreviewed/2025/04/GHSA-2cq5-j9m5-v929/GHSA-2cq5-j9m5-v929.json +++ b/advisories/unreviewed/2025/04/GHSA-2cq5-j9m5-v929/GHSA-2cq5-j9m5-v929.json @@ -50,7 +50,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-342r-jhx2-whjj/GHSA-342r-jhx2-whjj.json b/advisories/unreviewed/2025/04/GHSA-342r-jhx2-whjj/GHSA-342r-jhx2-whjj.json new file mode 100644 index 00000000000..e10be2342fc --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-342r-jhx2-whjj/GHSA-342r-jhx2-whjj.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-342r-jhx2-whjj", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3377" + ], + "details": "A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. This issue affects some unknown processing of the component ENC Command Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3377" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit-c72a40d2a3b5d9dc02aef891ea1788bc.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.303623" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.303623" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.552339" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T18:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-3pxq-xg4j-rgqx/GHSA-3pxq-xg4j-rgqx.json b/advisories/unreviewed/2025/04/GHSA-3pxq-xg4j-rgqx/GHSA-3pxq-xg4j-rgqx.json new file mode 100644 index 00000000000..a41599d246f --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-3pxq-xg4j-rgqx/GHSA-3pxq-xg4j-rgqx.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3pxq-xg4j-rgqx", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-28413" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the SysDictTypeController component", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28413" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28413.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-4cm6-mqjg-249c/GHSA-4cm6-mqjg-249c.json b/advisories/unreviewed/2025/04/GHSA-4cm6-mqjg-249c/GHSA-4cm6-mqjg-249c.json new file mode 100644 index 00000000000..fdbe3eb9757 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-4cm6-mqjg-249c/GHSA-4cm6-mqjg-249c.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4cm6-mqjg-249c", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3378" + ], + "details": "A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component EPRT Command Handler. The manipulation leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3378" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit-0f5ecb9a57beef4e5b35111c1beccdcf.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.303624" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.303624" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.552340" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T18:15:45Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-4x43-w54x-gjc8/GHSA-4x43-w54x-gjc8.json b/advisories/unreviewed/2025/04/GHSA-4x43-w54x-gjc8/GHSA-4x43-w54x-gjc8.json index 1a98112ac80..bf1d7ca9167 100644 --- a/advisories/unreviewed/2025/04/GHSA-4x43-w54x-gjc8/GHSA-4x43-w54x-gjc8.json +++ b/advisories/unreviewed/2025/04/GHSA-4x43-w54x-gjc8/GHSA-4x43-w54x-gjc8.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-434" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-5gwv-2q72-gxrm/GHSA-5gwv-2q72-gxrm.json b/advisories/unreviewed/2025/04/GHSA-5gwv-2q72-gxrm/GHSA-5gwv-2q72-gxrm.json index 9dca54283c5..59fd9f0fa44 100644 --- a/advisories/unreviewed/2025/04/GHSA-5gwv-2q72-gxrm/GHSA-5gwv-2q72-gxrm.json +++ b/advisories/unreviewed/2025/04/GHSA-5gwv-2q72-gxrm/GHSA-5gwv-2q72-gxrm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-5gwv-2q72-gxrm", - "modified": "2025-04-03T04:41:18Z", + "modified": "2025-04-07T18:30:41Z", "published": "2025-04-02T21:30:51Z", "aliases": [ "CVE-2025-2704" ], "details": "OpenVPN version 2.6.1 through 2.6.13 in server mode using TLS-crypt-v2 allows remote attackers to trigger a denial of service by corrupting and replaying network packets in the early handshake phase", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -27,7 +32,7 @@ "cwe_ids": [ "CWE-754" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-02T21:15:32Z" diff --git a/advisories/unreviewed/2025/04/GHSA-5r62-mjf5-xwhj/GHSA-5r62-mjf5-xwhj.json b/advisories/unreviewed/2025/04/GHSA-5r62-mjf5-xwhj/GHSA-5r62-mjf5-xwhj.json index 3081d6f43ab..fa6bfb7d148 100644 --- a/advisories/unreviewed/2025/04/GHSA-5r62-mjf5-xwhj/GHSA-5r62-mjf5-xwhj.json +++ b/advisories/unreviewed/2025/04/GHSA-5r62-mjf5-xwhj/GHSA-5r62-mjf5-xwhj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-5r62-mjf5-xwhj", - "modified": "2025-04-07T09:30:23Z", + "modified": "2025-04-07T18:30:46Z", "published": "2025-04-07T09:30:23Z", "aliases": [ "CVE-2025-30473" ], "details": "Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Airflow Common SQL Provider.\n\nWhen using the partition clause in SQLTableCheckOperator as parameter (which was a recommended pattern), Authenticated UI User could inject arbitrary SQL command when triggering DAG exposing partition_clause to the user.\nThis allowed the DAG Triggering user to escalate privileges to execute those arbitrary commands which they normally would not have.\n\n\nThis issue affects Apache Airflow Common SQL Provider: before 1.24.1.\n\nUsers are recommended to upgrade to version 1.24.1, which fixes the issue.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -43,7 +48,7 @@ "cwe_ids": [ "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-04-07T09:15:16Z" diff --git a/advisories/unreviewed/2025/04/GHSA-6ppw-4vff-76v2/GHSA-6ppw-4vff-76v2.json b/advisories/unreviewed/2025/04/GHSA-6ppw-4vff-76v2/GHSA-6ppw-4vff-76v2.json index 3115fe1d1c4..36a3c113079 100644 --- a/advisories/unreviewed/2025/04/GHSA-6ppw-4vff-76v2/GHSA-6ppw-4vff-76v2.json +++ b/advisories/unreviewed/2025/04/GHSA-6ppw-4vff-76v2/GHSA-6ppw-4vff-76v2.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-6r9p-wm3j-2fmc/GHSA-6r9p-wm3j-2fmc.json b/advisories/unreviewed/2025/04/GHSA-6r9p-wm3j-2fmc/GHSA-6r9p-wm3j-2fmc.json index 1989f68d75e..ca1654858d5 100644 --- a/advisories/unreviewed/2025/04/GHSA-6r9p-wm3j-2fmc/GHSA-6r9p-wm3j-2fmc.json +++ b/advisories/unreviewed/2025/04/GHSA-6r9p-wm3j-2fmc/GHSA-6r9p-wm3j-2fmc.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-796g-c5p5-hfrr/GHSA-796g-c5p5-hfrr.json b/advisories/unreviewed/2025/04/GHSA-796g-c5p5-hfrr/GHSA-796g-c5p5-hfrr.json new file mode 100644 index 00000000000..5d49306e289 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-796g-c5p5-hfrr/GHSA-796g-c5p5-hfrr.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-796g-c5p5-hfrr", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-28410" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the cancelAuthUserAll method does not properly validate whether the requesting user has administrative privileges", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28410" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28409.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-7frx-2jch-mmcm/GHSA-7frx-2jch-mmcm.json b/advisories/unreviewed/2025/04/GHSA-7frx-2jch-mmcm/GHSA-7frx-2jch-mmcm.json new file mode 100644 index 00000000000..5ef6d3e535c --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-7frx-2jch-mmcm/GHSA-7frx-2jch-mmcm.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7frx-2jch-mmcm", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28409" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the add method of the /add/{parentId} endpoint does not properly validate whether the requesting user has permission to add a menu item under the specified parentId", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28409" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28408.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-8843-g665-5rpj/GHSA-8843-g665-5rpj.json b/advisories/unreviewed/2025/04/GHSA-8843-g665-5rpj/GHSA-8843-g665-5rpj.json new file mode 100644 index 00000000000..0735a07addd --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-8843-g665-5rpj/GHSA-8843-g665-5rpj.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8843-g665-5rpj", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28408" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the selectDeptTree method of the /selectDeptTree/{deptId} endpoint does not properly validate the deptId parameter", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28408" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28408.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-8cmp-jx7c-f587/GHSA-8cmp-jx7c-f587.json b/advisories/unreviewed/2025/04/GHSA-8cmp-jx7c-f587/GHSA-8cmp-jx7c-f587.json index 566fd8a4d6c..06debd253ee 100644 --- a/advisories/unreviewed/2025/04/GHSA-8cmp-jx7c-f587/GHSA-8cmp-jx7c-f587.json +++ b/advisories/unreviewed/2025/04/GHSA-8cmp-jx7c-f587/GHSA-8cmp-jx7c-f587.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-8hwm-7pvv-qmx5/GHSA-8hwm-7pvv-qmx5.json b/advisories/unreviewed/2025/04/GHSA-8hwm-7pvv-qmx5/GHSA-8hwm-7pvv-qmx5.json index f24d596d9e4..da85e3a34da 100644 --- a/advisories/unreviewed/2025/04/GHSA-8hwm-7pvv-qmx5/GHSA-8hwm-7pvv-qmx5.json +++ b/advisories/unreviewed/2025/04/GHSA-8hwm-7pvv-qmx5/GHSA-8hwm-7pvv-qmx5.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-8j9x-gr2w-m8pv/GHSA-8j9x-gr2w-m8pv.json b/advisories/unreviewed/2025/04/GHSA-8j9x-gr2w-m8pv/GHSA-8j9x-gr2w-m8pv.json new file mode 100644 index 00000000000..89783586ec3 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-8j9x-gr2w-m8pv/GHSA-8j9x-gr2w-m8pv.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8j9x-gr2w-m8pv", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3374" + ], + "details": "A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this issue is some unknown functionality of the component CCC Command Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3374" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit-e4f29cda8e801f1b0e7fcf539e4352b4.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.303620" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.303620" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.552336" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-8w94-ggwf-26rw/GHSA-8w94-ggwf-26rw.json b/advisories/unreviewed/2025/04/GHSA-8w94-ggwf-26rw/GHSA-8w94-ggwf-26rw.json new file mode 100644 index 00000000000..724d566c52d --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-8w94-ggwf-26rw/GHSA-8w94-ggwf-26rw.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8w94-ggwf-26rw", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-28412" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the /editSave method in SysNoticeController", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28412" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28412.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-9jwq-9jr3-cjg5/GHSA-9jwq-9jr3-cjg5.json b/advisories/unreviewed/2025/04/GHSA-9jwq-9jr3-cjg5/GHSA-9jwq-9jr3-cjg5.json index 3fa306c0313..6ff829fe66d 100644 --- a/advisories/unreviewed/2025/04/GHSA-9jwq-9jr3-cjg5/GHSA-9jwq-9jr3-cjg5.json +++ b/advisories/unreviewed/2025/04/GHSA-9jwq-9jr3-cjg5/GHSA-9jwq-9jr3-cjg5.json @@ -50,7 +50,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-787" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-cc3m-w7mm-948m/GHSA-cc3m-w7mm-948m.json b/advisories/unreviewed/2025/04/GHSA-cc3m-w7mm-948m/GHSA-cc3m-w7mm-948m.json new file mode 100644 index 00000000000..c9f9623a3aa --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-cc3m-w7mm-948m/GHSA-cc3m-w7mm-948m.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cc3m-w7mm-948m", + "modified": "2025-04-07T18:30:46Z", + "published": "2025-04-07T18:30:46Z", + "aliases": [ + "CVE-2025-28400" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the postID parameter in the edit method", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28400" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28400.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-g2qq-97wv-38qx/GHSA-g2qq-97wv-38qx.json b/advisories/unreviewed/2025/04/GHSA-g2qq-97wv-38qx/GHSA-g2qq-97wv-38qx.json new file mode 100644 index 00000000000..4029410403f --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-g2qq-97wv-38qx/GHSA-g2qq-97wv-38qx.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g2qq-97wv-38qx", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28402" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the jobId parameter", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28402" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28402.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-g6m7-g8x5-2xv4/GHSA-g6m7-g8x5-2xv4.json b/advisories/unreviewed/2025/04/GHSA-g6m7-g8x5-2xv4/GHSA-g6m7-g8x5-2xv4.json new file mode 100644 index 00000000000..449097b6adb --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-g6m7-g8x5-2xv4/GHSA-g6m7-g8x5-2xv4.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g6m7-g8x5-2xv4", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3426" + ], + "details": "We observed that Intellispace Portal binaries doesn’t have any protection mechanisms to prevent reverse engineering. Specifically, the app’s code is not obfuscated, and no measures are in place to protect against decompilation, disassembly, or debugging. As a result, attackers can reverse-engineer the application to gain insights into its internal workings, which can potentially lead to the discovery of sensitive information, business logic flaws, and other vulnerabilities.\nUtilizing this flaw, the attacker was able to identify the Hardcoded credentials from PortalUsersDatabase.dll, which contains .NET remoting definition. Inside the namespace PortalUsersDatabase, the class Users contains the functions CreateAdmin and CreateService that are used to initialize accounts in the Portal service. Both CreateAdmin and CreateService functions contain a hardcoded encrypted password along with its respective salt that are set with the function SetInitialPasswordAndSalt.\nThis issue affects IntelliSpace Portal: 12 and prior; Advanced Visualization Workspace: 15.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:H/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:P/AU:Y/R:U/V:C/RE:M/U:Green" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3426" + }, + { + "type": "WEB", + "url": "https://www.cve.org/CVERecord?id=CVE-2025-3426" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-798" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T17:15:40Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-g757-954w-6jvr/GHSA-g757-954w-6jvr.json b/advisories/unreviewed/2025/04/GHSA-g757-954w-6jvr/GHSA-g757-954w-6jvr.json new file mode 100644 index 00000000000..95c515c5446 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-g757-954w-6jvr/GHSA-g757-954w-6jvr.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g757-954w-6jvr", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3375" + ], + "details": "A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of the component CDUP Command Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3375" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit-b81a4a56b5d867bc810b183e3c9791ef.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.303621" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.303621" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.552337" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T17:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-gr5h-f8ff-3j52/GHSA-gr5h-f8ff-3j52.json b/advisories/unreviewed/2025/04/GHSA-gr5h-f8ff-3j52/GHSA-gr5h-f8ff-3j52.json new file mode 100644 index 00000000000..2c3a0190e54 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-gr5h-f8ff-3j52/GHSA-gr5h-f8ff-3j52.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gr5h-f8ff-3j52", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3373" + ], + "details": "A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is an unknown functionality of the component SITE CHMOD Command Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3373" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit2.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.303619" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.303619" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.552274" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-hg9x-8q33-pg7f/GHSA-hg9x-8q33-pg7f.json b/advisories/unreviewed/2025/04/GHSA-hg9x-8q33-pg7f/GHSA-hg9x-8q33-pg7f.json new file mode 100644 index 00000000000..a729fba3e76 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-hg9x-8q33-pg7f/GHSA-hg9x-8q33-pg7f.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hg9x-8q33-pg7f", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3424" + ], + "details": "The IntelliSpace portal application utilizes .NET\nRemoting for its functionality. The vulnerability arises from the exploitation\nof port 755 through the \"Object Marshalling\" technique, which allows\nan attacker to read internal files without any authentication. This is possible\nby crafting specific .NET Remoting URLs derived from information enumerated in\nthe client-side configuration files.\n\n\n\n\n\n\n\nThis issue affects IntelliSpace Portal: 12 and prior.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:P/AU:Y/R:U/V:C/RE:M/U:Green" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3424" + }, + { + "type": "WEB", + "url": "https://www.cve.org/CVERecord?id=CVE-2025-3424" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-j46p-wfvm-g6pg/GHSA-j46p-wfvm-g6pg.json b/advisories/unreviewed/2025/04/GHSA-j46p-wfvm-g6pg/GHSA-j46p-wfvm-g6pg.json new file mode 100644 index 00000000000..8441786dcec --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-j46p-wfvm-g6pg/GHSA-j46p-wfvm-g6pg.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j46p-wfvm-g6pg", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28407" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the edit method of the /edit/{dictId} endpoint does not properly validate whether the requesting user has permission to modify the specified dictId", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28407" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28407.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-jv3r-2v53-4w3v/GHSA-jv3r-2v53-4w3v.json b/advisories/unreviewed/2025/04/GHSA-jv3r-2v53-4w3v/GHSA-jv3r-2v53-4w3v.json index 56e0dca44d1..67204e10a3d 100644 --- a/advisories/unreviewed/2025/04/GHSA-jv3r-2v53-4w3v/GHSA-jv3r-2v53-4w3v.json +++ b/advisories/unreviewed/2025/04/GHSA-jv3r-2v53-4w3v/GHSA-jv3r-2v53-4w3v.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-jx87-jq84-246c/GHSA-jx87-jq84-246c.json b/advisories/unreviewed/2025/04/GHSA-jx87-jq84-246c/GHSA-jx87-jq84-246c.json index 74131dfd9f0..3774d85efa2 100644 --- a/advisories/unreviewed/2025/04/GHSA-jx87-jq84-246c/GHSA-jx87-jq84-246c.json +++ b/advisories/unreviewed/2025/04/GHSA-jx87-jq84-246c/GHSA-jx87-jq84-246c.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-m7f8-37g5-8r53/GHSA-m7f8-37g5-8r53.json b/advisories/unreviewed/2025/04/GHSA-m7f8-37g5-8r53/GHSA-m7f8-37g5-8r53.json new file mode 100644 index 00000000000..abf125d18f3 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-m7f8-37g5-8r53/GHSA-m7f8-37g5-8r53.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m7f8-37g5-8r53", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3425" + ], + "details": "The IntelliSpace portal application utilizes .NET Remoting for its functionality. The vulnerability arises from the exploitation of port 755 through the deserialization vulnerability. After analyzing the configuration files, we observed that the server had set the TypeFilterLevel to Full which is dangerous as it can potentially lead to remote code execution using deserialization. This issue affects IntelliSpace Portal: 12 and prior.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:P/AU:Y/R:U/V:C/RE:M/U:Green" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3425" + }, + { + "type": "WEB", + "url": "https://www.cve.org/CVERecord?id=CVE-2025-3425" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-502" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:27Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-mrv4-mqvc-q66g/GHSA-mrv4-mqvc-q66g.json b/advisories/unreviewed/2025/04/GHSA-mrv4-mqvc-q66g/GHSA-mrv4-mqvc-q66g.json new file mode 100644 index 00000000000..cf58c935276 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-mrv4-mqvc-q66g/GHSA-mrv4-mqvc-q66g.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mrv4-mqvc-q66g", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28405" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the changeStatus method", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28405" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28405.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-ppxr-f836-phpf/GHSA-ppxr-f836-phpf.json b/advisories/unreviewed/2025/04/GHSA-ppxr-f836-phpf/GHSA-ppxr-f836-phpf.json new file mode 100644 index 00000000000..075efa09c14 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-ppxr-f836-phpf/GHSA-ppxr-f836-phpf.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ppxr-f836-phpf", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28406" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the jobLogId parameter", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28406" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28406.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-q4cw-226g-6pc5/GHSA-q4cw-226g-6pc5.json b/advisories/unreviewed/2025/04/GHSA-q4cw-226g-6pc5/GHSA-q4cw-226g-6pc5.json index a2547536cef..9ed868b5fbb 100644 --- a/advisories/unreviewed/2025/04/GHSA-q4cw-226g-6pc5/GHSA-q4cw-226g-6pc5.json +++ b/advisories/unreviewed/2025/04/GHSA-q4cw-226g-6pc5/GHSA-q4cw-226g-6pc5.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-q732-48vr-36f4/GHSA-q732-48vr-36f4.json b/advisories/unreviewed/2025/04/GHSA-q732-48vr-36f4/GHSA-q732-48vr-36f4.json new file mode 100644 index 00000000000..d3b556852df --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-q732-48vr-36f4/GHSA-q732-48vr-36f4.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q732-48vr-36f4", + "modified": "2025-04-07T18:30:46Z", + "published": "2025-04-07T18:30:46Z", + "aliases": [ + "CVE-2025-28401" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the menuId parameter", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28401" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-rqjr-gvph-vqwr/GHSA-rqjr-gvph-vqwr.json b/advisories/unreviewed/2025/04/GHSA-rqjr-gvph-vqwr/GHSA-rqjr-gvph-vqwr.json new file mode 100644 index 00000000000..8a5832323f3 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-rqjr-gvph-vqwr/GHSA-rqjr-gvph-vqwr.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rqjr-gvph-vqwr", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28411" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the editSave method in /tool/gen/editSave", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28411" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28411.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:25Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-rvvc-m8pv-rj9r/GHSA-rvvc-m8pv-rj9r.json b/advisories/unreviewed/2025/04/GHSA-rvvc-m8pv-rj9r/GHSA-rvvc-m8pv-rj9r.json new file mode 100644 index 00000000000..1ed87493a73 --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-rvvc-m8pv-rj9r/GHSA-rvvc-m8pv-rj9r.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rvvc-m8pv-rj9r", + "modified": "2025-04-07T18:30:47Z", + "published": "2025-04-07T18:30:47Z", + "aliases": [ + "CVE-2025-28403" + ], + "details": "An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the editSave method does not properly validate whether the requesting user has administrative privileges before allowing modifications to system configuration settings", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-28403" + }, + { + "type": "WEB", + "url": "https://github.com/20210607/cve_public/blob/main/ruoyi_case/CVE-2025-28403.md" + }, + { + "type": "WEB", + "url": "https://github.com/yangzongzhuan/RuoYi" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T16:15:24Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/04/GHSA-v9gv-mwp4-wx7g/GHSA-v9gv-mwp4-wx7g.json b/advisories/unreviewed/2025/04/GHSA-v9gv-mwp4-wx7g/GHSA-v9gv-mwp4-wx7g.json index 093c4e93c93..e3cc6849049 100644 --- a/advisories/unreviewed/2025/04/GHSA-v9gv-mwp4-wx7g/GHSA-v9gv-mwp4-wx7g.json +++ b/advisories/unreviewed/2025/04/GHSA-v9gv-mwp4-wx7g/GHSA-v9gv-mwp4-wx7g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-v9gv-mwp4-wx7g", - "modified": "2025-04-07T15:31:21Z", + "modified": "2025-04-07T18:30:46Z", "published": "2025-04-07T15:31:21Z", "aliases": [ "CVE-2025-30195" @@ -22,6 +22,10 @@ { "type": "WEB", "url": "https://docs.powerdns.com/recursor/security-advisories/powerdns-advisory-2025-01.html" + }, + { + "type": "WEB", + "url": "http://www.openwall.com/lists/oss-security/2025/04/07/1" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/04/GHSA-vg84-cjgh-rxfp/GHSA-vg84-cjgh-rxfp.json b/advisories/unreviewed/2025/04/GHSA-vg84-cjgh-rxfp/GHSA-vg84-cjgh-rxfp.json new file mode 100644 index 00000000000..ceca622416d --- /dev/null +++ b/advisories/unreviewed/2025/04/GHSA-vg84-cjgh-rxfp/GHSA-vg84-cjgh-rxfp.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vg84-cjgh-rxfp", + "modified": "2025-04-07T18:30:48Z", + "published": "2025-04-07T18:30:48Z", + "aliases": [ + "CVE-2025-3376" + ], + "details": "A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. This vulnerability affects unknown code of the component CONF Command Handler. The manipulation leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-3376" + }, + { + "type": "WEB", + "url": "https://fitoxs.com/exploit/exploit-f14d986820a0a41f23e061b41b5c6f61.txt" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.303622" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.303622" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.552338" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-119" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-04-07T17:15:39Z" + } +} \ No newline at end of file