mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-33v4-4p2r-hcrr",
|
||||
"modified": "2022-10-05T00:00:38Z",
|
||||
"modified": "2025-05-21T15:30:28Z",
|
||||
"published": "2022-09-30T00:00:45Z",
|
||||
"aliases": [
|
||||
"CVE-2022-40363"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3q99-mmr6-6chg",
|
||||
"modified": "2022-10-29T19:00:27Z",
|
||||
"modified": "2025-05-21T15:30:26Z",
|
||||
"published": "2022-09-29T00:00:27Z",
|
||||
"aliases": [
|
||||
"CVE-2022-32166"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-433g-q37h-7crr",
|
||||
"modified": "2022-10-05T00:00:40Z",
|
||||
"modified": "2025-05-21T15:30:25Z",
|
||||
"published": "2022-09-28T00:00:18Z",
|
||||
"aliases": [
|
||||
"CVE-2021-27854"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4fhf-8ph3-pp6c",
|
||||
"modified": "2022-10-04T00:00:19Z",
|
||||
"modified": "2025-05-21T15:30:25Z",
|
||||
"published": "2022-09-28T00:00:18Z",
|
||||
"aliases": [
|
||||
"CVE-2021-27862"
|
||||
@@ -38,6 +38,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-130",
|
||||
"CWE-290"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
|
||||
@@ -26,7 +26,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-77"
|
||||
"CWE-77",
|
||||
"CWE-78"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-59wm-xj7c-3vq4",
|
||||
"modified": "2022-10-01T00:00:19Z",
|
||||
"modified": "2025-05-21T15:30:27Z",
|
||||
"published": "2022-09-29T00:00:20Z",
|
||||
"aliases": [
|
||||
"CVE-2022-23716"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-67q7-2m82-v47j",
|
||||
"modified": "2022-10-01T00:00:24Z",
|
||||
"modified": "2025-05-21T15:30:25Z",
|
||||
"published": "2022-09-28T00:00:17Z",
|
||||
"aliases": [
|
||||
"CVE-2022-37028"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6jfx-5cxr-8qxw",
|
||||
"modified": "2022-10-01T00:00:21Z",
|
||||
"modified": "2025-05-21T15:30:26Z",
|
||||
"published": "2022-09-29T00:00:27Z",
|
||||
"aliases": [
|
||||
"CVE-2022-40486"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-95x6-vp26-h77r",
|
||||
"modified": "2022-09-30T00:00:21Z",
|
||||
"modified": "2025-05-21T15:30:27Z",
|
||||
"published": "2022-09-29T00:00:20Z",
|
||||
"aliases": [
|
||||
"CVE-2022-1270"
|
||||
|
||||
@@ -33,7 +33,9 @@
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-20"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -26,7 +26,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-668"
|
||||
"CWE-668",
|
||||
"CWE-863"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -25,7 +25,9 @@
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-94"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-qww5-j4p3-7mj5",
|
||||
"modified": "2022-09-30T00:00:34Z",
|
||||
"modified": "2025-05-21T15:30:25Z",
|
||||
"published": "2022-09-28T00:00:17Z",
|
||||
"aliases": [
|
||||
"CVE-2022-38335"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-v7cg-cf6c-wpmp",
|
||||
"modified": "2022-09-29T00:00:18Z",
|
||||
"modified": "2025-05-21T15:30:26Z",
|
||||
"published": "2022-09-28T00:00:16Z",
|
||||
"aliases": [
|
||||
"CVE-2022-40877"
|
||||
|
||||
@@ -30,6 +30,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-284",
|
||||
"CWE-668"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-wcc2-hc4j-m2wc",
|
||||
"modified": "2022-10-04T00:00:19Z",
|
||||
"modified": "2025-05-21T15:30:25Z",
|
||||
"published": "2022-09-28T00:00:18Z",
|
||||
"aliases": [
|
||||
"CVE-2021-27861"
|
||||
@@ -42,6 +42,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-130",
|
||||
"CWE-290"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-x537-5w7x-8g44",
|
||||
"modified": "2022-09-30T00:00:37Z",
|
||||
"modified": "2025-05-21T15:30:26Z",
|
||||
"published": "2022-09-29T00:00:27Z",
|
||||
"aliases": [
|
||||
"CVE-2022-2760"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-q3rr-g46f-jgqr",
|
||||
"modified": "2025-05-17T00:30:25Z",
|
||||
"modified": "2025-05-21T15:30:32Z",
|
||||
"published": "2025-02-19T21:31:38Z",
|
||||
"aliases": [
|
||||
"CVE-2025-0624"
|
||||
@@ -31,6 +31,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/security/cve/CVE-2025-0624"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/errata/RHSA-2025:7702"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://access.redhat.com/errata/RHSA-2025:4422"
|
||||
|
||||
@@ -46,7 +46,8 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-74"
|
||||
"CWE-74",
|
||||
"CWE-89"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -0,0 +1,36 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2mg9-59xm-chrg",
|
||||
"modified": "2025-05-21T15:30:33Z",
|
||||
"published": "2025-05-21T15:30:33Z",
|
||||
"aliases": [
|
||||
"CVE-2025-48413"
|
||||
],
|
||||
"details": "The `/etc/passwd` and `/etc/shadow` files reveal hard-coded password hashes for the operating system \"root\" user. The credentials are shipped with the update files. There is no option for deleting or changing their passwords for an enduser. An attacker can use the credentials to log into the device. Authentication can be performed via SSH backdoor or likely via physical access (UART shell).",
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2025-48413"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://r.sec-consult.com/echarge"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
"CWE-798"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2025-05-21T12:16:22Z"
|
||||
}
|
||||
}
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user