From 6de82816619347918c043bc0c82333404d79af97 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 16 May 2024 15:33:00 +0000 Subject: [PATCH] Publish Advisories GHSA-3vm4-w2q4-fjv6 GHSA-5mp7-g9p8-p9xx GHSA-736m-p2gm-v4q7 GHSA-7qp4-rx6j-p84p GHSA-chh9-c5qm-7x5j GHSA-g7qc-r5p9-r36r GHSA-g9gj-v6cc-49m8 GHSA-h748-5vhq-frjm GHSA-hcr5-hp8w-36q9 GHSA-pw4q-cgcg-f9p5 GHSA-v7j3-p7jm-f2cp GHSA-wx6j-6xmp-c56f GHSA-xfg4-45f5-2g88 --- .../GHSA-3vm4-w2q4-fjv6.json | 42 +++++++++++++++++++ .../GHSA-5mp7-g9p8-p9xx.json | 38 +++++++++++++++++ .../GHSA-736m-p2gm-v4q7.json | 35 ++++++++++++++++ .../GHSA-7qp4-rx6j-p84p.json | 2 +- .../GHSA-chh9-c5qm-7x5j.json | 35 ++++++++++++++++ .../GHSA-g7qc-r5p9-r36r.json | 35 ++++++++++++++++ .../GHSA-g9gj-v6cc-49m8.json | 35 ++++++++++++++++ .../GHSA-h748-5vhq-frjm.json | 35 ++++++++++++++++ .../GHSA-hcr5-hp8w-36q9.json | 35 ++++++++++++++++ .../GHSA-pw4q-cgcg-f9p5.json | 35 ++++++++++++++++ .../GHSA-v7j3-p7jm-f2cp.json | 35 ++++++++++++++++ .../GHSA-wx6j-6xmp-c56f.json | 9 ++-- .../GHSA-xfg4-45f5-2g88.json | 42 +++++++++++++++++++ 13 files changed, 409 insertions(+), 4 deletions(-) create mode 100644 advisories/unreviewed/2024/05/GHSA-3vm4-w2q4-fjv6/GHSA-3vm4-w2q4-fjv6.json create mode 100644 advisories/unreviewed/2024/05/GHSA-5mp7-g9p8-p9xx/GHSA-5mp7-g9p8-p9xx.json create mode 100644 advisories/unreviewed/2024/05/GHSA-736m-p2gm-v4q7/GHSA-736m-p2gm-v4q7.json create mode 100644 advisories/unreviewed/2024/05/GHSA-chh9-c5qm-7x5j/GHSA-chh9-c5qm-7x5j.json create mode 100644 advisories/unreviewed/2024/05/GHSA-g7qc-r5p9-r36r/GHSA-g7qc-r5p9-r36r.json create mode 100644 advisories/unreviewed/2024/05/GHSA-g9gj-v6cc-49m8/GHSA-g9gj-v6cc-49m8.json create mode 100644 advisories/unreviewed/2024/05/GHSA-h748-5vhq-frjm/GHSA-h748-5vhq-frjm.json create mode 100644 advisories/unreviewed/2024/05/GHSA-hcr5-hp8w-36q9/GHSA-hcr5-hp8w-36q9.json create mode 100644 advisories/unreviewed/2024/05/GHSA-pw4q-cgcg-f9p5/GHSA-pw4q-cgcg-f9p5.json create mode 100644 advisories/unreviewed/2024/05/GHSA-v7j3-p7jm-f2cp/GHSA-v7j3-p7jm-f2cp.json create mode 100644 advisories/unreviewed/2024/05/GHSA-xfg4-45f5-2g88/GHSA-xfg4-45f5-2g88.json diff --git a/advisories/unreviewed/2024/05/GHSA-3vm4-w2q4-fjv6/GHSA-3vm4-w2q4-fjv6.json b/advisories/unreviewed/2024/05/GHSA-3vm4-w2q4-fjv6/GHSA-3vm4-w2q4-fjv6.json new file mode 100644 index 00000000000..39c84292456 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-3vm4-w2q4-fjv6/GHSA-3vm4-w2q4-fjv6.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3vm4-w2q4-fjv6", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-20389" + ], + "details": "A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attacker to read and write arbitrary files as root on the underlying operating system.\n\n\nThis vulnerability is due to improper authorization enforcement when specific CLI commands are used. An attacker could exploit this vulnerability by executing an affected CLI command with crafted arguments. A successful exploit could allow the attacker to read or write arbitrary files on the underlying operating system with the privileges of the root user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20389" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnfd-rwpesc-ZAOufyx8" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-rwpesc-qrQGnh3f" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-5mp7-g9p8-p9xx/GHSA-5mp7-g9p8-p9xx.json b/advisories/unreviewed/2024/05/GHSA-5mp7-g9p8-p9xx/GHSA-5mp7-g9p8-p9xx.json new file mode 100644 index 00000000000..1b724a97fb4 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-5mp7-g9p8-p9xx/GHSA-5mp7-g9p8-p9xx.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5mp7-g9p8-p9xx", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-4760" + ], + "details": "A voltage glitch during the startup of EEFC NVM controllers on Microchip SAM E70/S70/V70/V71 microcontrollers allows access to the memory bus via the debug interface even if the security bit is set.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4760" + }, + { + "type": "WEB", + "url": "https://www.0x01team.com/hw_security/bypassing-microchip-atmel-sam-e70-s70-v70-v71-security" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1247" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T13:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-736m-p2gm-v4q7/GHSA-736m-p2gm-v4q7.json b/advisories/unreviewed/2024/05/GHSA-736m-p2gm-v4q7/GHSA-736m-p2gm-v4q7.json new file mode 100644 index 00000000000..9c3f5496683 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-736m-p2gm-v4q7/GHSA-736m-p2gm-v4q7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-736m-p2gm-v4q7", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-4999" + ], + "details": "A vulnerability in the web-based management interface of multiple Ligowave devices could allow an authenticated remoteĀ attacker to execute arbitrary commands with elevated privileges.This issue affects UNITY: through 6.95-2; PRO: through 6.95-1.Rt3883; MIMO: through 6.95-1.Rt2880; APC Propeller: through 2-5.95-4.Rt3352.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-4999" + }, + { + "type": "WEB", + "url": "https://onekey.com/blog/security-advisory-remote-code-execution-in-ligowave-devices" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T13:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-7qp4-rx6j-p84p/GHSA-7qp4-rx6j-p84p.json b/advisories/unreviewed/2024/05/GHSA-7qp4-rx6j-p84p/GHSA-7qp4-rx6j-p84p.json index 7894d6fe15f..53e3cc6b5c6 100644 --- a/advisories/unreviewed/2024/05/GHSA-7qp4-rx6j-p84p/GHSA-7qp4-rx6j-p84p.json +++ b/advisories/unreviewed/2024/05/GHSA-7qp4-rx6j-p84p/GHSA-7qp4-rx6j-p84p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7qp4-rx6j-p84p", - "modified": "2024-05-14T18:30:55Z", + "modified": "2024-05-16T15:31:34Z", "published": "2024-05-14T18:30:55Z", "aliases": [ "CVE-2024-4542" diff --git a/advisories/unreviewed/2024/05/GHSA-chh9-c5qm-7x5j/GHSA-chh9-c5qm-7x5j.json b/advisories/unreviewed/2024/05/GHSA-chh9-c5qm-7x5j/GHSA-chh9-c5qm-7x5j.json new file mode 100644 index 00000000000..cc9dde19e6f --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-chh9-c5qm-7x5j/GHSA-chh9-c5qm-7x5j.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-chh9-c5qm-7x5j", + "modified": "2024-05-16T15:31:39Z", + "published": "2024-05-16T15:31:39Z", + "aliases": [ + "CVE-2024-35039" + ], + "details": "idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/tplSys_deal.php?mudi=area.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-35039" + }, + { + "type": "WEB", + "url": "https://github.com/ywf7678/cms/blob/main/1.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T15:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-g7qc-r5p9-r36r/GHSA-g7qc-r5p9-r36r.json b/advisories/unreviewed/2024/05/GHSA-g7qc-r5p9-r36r/GHSA-g7qc-r5p9-r36r.json new file mode 100644 index 00000000000..ff3ae7bf268 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-g7qc-r5p9-r36r/GHSA-g7qc-r5p9-r36r.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g7qc-r5p9-r36r", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-31142" + ], + "details": "Because of a logical error in XSA-407 (Branch Type Confusion), the\nmitigation is not applied properly when it is intended to be used.\nXSA-434 (Speculative Return Stack Overflow) uses the same\ninfrastructure, so is equally impacted.\n\nFor more details, see:\n https://xenbits.xen.org/xsa/advisory-407.html\n https://xenbits.xen.org/xsa/advisory-434.html\n", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-31142" + }, + { + "type": "WEB", + "url": "https://xenbits.xenproject.org/xsa/advisory-455.html" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-g9gj-v6cc-49m8/GHSA-g9gj-v6cc-49m8.json b/advisories/unreviewed/2024/05/GHSA-g9gj-v6cc-49m8/GHSA-g9gj-v6cc-49m8.json new file mode 100644 index 00000000000..51aa253fe60 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-g9gj-v6cc-49m8/GHSA-g9gj-v6cc-49m8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g9gj-v6cc-49m8", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-34582" + ], + "details": "Sunhillo SureLine through 8.10.0 on RICI 5000 devices allows cgi/usrPasswd.cgi userid_change XSS within the Forgot Password feature.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34582" + }, + { + "type": "WEB", + "url": "https://github.com/silent6trinity/CVE-2024-34582" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T15:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-h748-5vhq-frjm/GHSA-h748-5vhq-frjm.json b/advisories/unreviewed/2024/05/GHSA-h748-5vhq-frjm/GHSA-h748-5vhq-frjm.json new file mode 100644 index 00000000000..dd16ca988df --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-h748-5vhq-frjm/GHSA-h748-5vhq-frjm.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h748-5vhq-frjm", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-34905" + ], + "details": "FlyFish v3.0.0 was discovered to contain a buffer overflow via the password parameter on the login page. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34905" + }, + { + "type": "WEB", + "url": "https://github.com/CloudWise-OpenSource/FlyFish/issues/191" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T15:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-hcr5-hp8w-36q9/GHSA-hcr5-hp8w-36q9.json b/advisories/unreviewed/2024/05/GHSA-hcr5-hp8w-36q9/GHSA-hcr5-hp8w-36q9.json new file mode 100644 index 00000000000..e1920078452 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-hcr5-hp8w-36q9/GHSA-hcr5-hp8w-36q9.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hcr5-hp8w-36q9", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2023-46842" + ], + "details": "Unlike 32-bit PV guests, HVM guests may switch freely between 64-bit and\nother modes. This in particular means that they may set registers used\nto pass 32-bit-mode hypercall arguments to values outside of the range\n32-bit code would be able to set them to.\n\nWhen processing of hypercalls takes a considerable amount of time,\nthe hypervisor may choose to invoke a hypercall continuation. Doing so\ninvolves putting (perhaps updated) hypercall arguments in respective\nregisters. For guests not running in 64-bit mode this further involves\na certain amount of translation of the values.\n\nUnfortunately internal sanity checking of these translated values\nassumes high halves of registers to always be clear when invoking a\nhypercall. When this is found not to be the case, it triggers a\nconsistency check in the hypervisor and causes a crash.\n", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-46842" + }, + { + "type": "WEB", + "url": "https://xenbits.xenproject.org/xsa/advisory-454.html" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T14:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-pw4q-cgcg-f9p5/GHSA-pw4q-cgcg-f9p5.json b/advisories/unreviewed/2024/05/GHSA-pw4q-cgcg-f9p5/GHSA-pw4q-cgcg-f9p5.json new file mode 100644 index 00000000000..9d03f3da8ca --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-pw4q-cgcg-f9p5/GHSA-pw4q-cgcg-f9p5.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pw4q-cgcg-f9p5", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-34957" + ], + "details": "idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/sysImages_deal.php?mudi=infoSet.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34957" + }, + { + "type": "WEB", + "url": "https://github.com/Gr-1m/cms/blob/main/1.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T15:15:47Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-v7j3-p7jm-f2cp/GHSA-v7j3-p7jm-f2cp.json b/advisories/unreviewed/2024/05/GHSA-v7j3-p7jm-f2cp/GHSA-v7j3-p7jm-f2cp.json new file mode 100644 index 00000000000..db85a1a4797 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-v7j3-p7jm-f2cp/GHSA-v7j3-p7jm-f2cp.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v7j3-p7jm-f2cp", + "modified": "2024-05-16T15:31:39Z", + "published": "2024-05-16T15:31:39Z", + "aliases": [ + "CVE-2024-34958" + ], + "details": "idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/banner_deal.php?mudi=add", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34958" + }, + { + "type": "WEB", + "url": "https://github.com/Gr-1m/cms/blob/main/2.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T15:15:48Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/05/GHSA-wx6j-6xmp-c56f/GHSA-wx6j-6xmp-c56f.json b/advisories/unreviewed/2024/05/GHSA-wx6j-6xmp-c56f/GHSA-wx6j-6xmp-c56f.json index fef28b1b24e..df3e93e9293 100644 --- a/advisories/unreviewed/2024/05/GHSA-wx6j-6xmp-c56f/GHSA-wx6j-6xmp-c56f.json +++ b/advisories/unreviewed/2024/05/GHSA-wx6j-6xmp-c56f/GHSA-wx6j-6xmp-c56f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wx6j-6xmp-c56f", - "modified": "2024-05-16T12:30:23Z", + "modified": "2024-05-16T15:31:36Z", "published": "2024-05-16T12:30:23Z", "aliases": [ "CVE-2024-4826" ], "details": "SQL injection vulnerability in Simple PHP Shopping Cart affecting version 0.9. This vulnerability could allow an attacker to retrieve all the information stored in the database by sending a specially crafted SQL query, due to the lack of proper sanitisation of the category_id parameter in the category.php file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-16T12:15:14Z" diff --git a/advisories/unreviewed/2024/05/GHSA-xfg4-45f5-2g88/GHSA-xfg4-45f5-2g88.json b/advisories/unreviewed/2024/05/GHSA-xfg4-45f5-2g88/GHSA-xfg4-45f5-2g88.json new file mode 100644 index 00000000000..f275d4c6cc0 --- /dev/null +++ b/advisories/unreviewed/2024/05/GHSA-xfg4-45f5-2g88/GHSA-xfg4-45f5-2g88.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xfg4-45f5-2g88", + "modified": "2024-05-16T15:31:37Z", + "published": "2024-05-16T15:31:37Z", + "aliases": [ + "CVE-2024-20326" + ], + "details": "A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attacker to read and write arbitrary files as root on the underlying operating system.\n\n\nThis vulnerability is due to improper authorization enforcement when specific CLI commands are used. An attacker could exploit this vulnerability by executing an affected CLI command with crafted arguments. A successful exploit could allow the attacker to read or write arbitrary files on the underlying operating system with the privileges of the root user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-20326" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cnfd-rwpesc-ZAOufyx8" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nso-rwpesc-qrQGnh3f" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-05-16T14:15:08Z" + } +} \ No newline at end of file