diff --git a/advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json b/advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json new file mode 100644 index 00000000000..8d388bc96cd --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-659x-gph6-8j4w", + "modified": "2024-12-19T06:30:43Z", + "published": "2024-12-19T06:30:43Z", + "aliases": [ + "CVE-2024-11984" + ], + "details": "A unrestricted upload of file with dangerous type vulnerability in epaper draft function in Corporate Training Management System before 10.13 allows remote authenticated users to bypass file upload restrictions and perform arbitrary system commands with SYSTEM privilege via a crafted ZIP file.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11984" + }, + { + "type": "WEB", + "url": "https://zuso.ai/advisory/za-2024-10" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-434" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-19T04:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json b/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json index 2f3cf912b6f..2f0f396cab5 100644 --- a/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json +++ b/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-883f-932m-665g", - "modified": "2024-12-17T15:31:43Z", + "modified": "2024-12-19T06:30:43Z", "published": "2024-12-17T06:30:33Z", "aliases": [ "CVE-2024-38499" @@ -26,6 +26,10 @@ { "type": "WEB", "url": "https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25284" + }, + { + "type": "WEB", + "url": "http://seclists.org/fulldisclosure/2024/Dec/16" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json b/advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json new file mode 100644 index 00000000000..c2e569a22ad --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c59h-89fr-559v", + "modified": "2024-12-19T06:30:43Z", + "published": "2024-12-19T06:30:43Z", + "aliases": [ + "CVE-2024-11768" + ], + "details": "The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to improper password validation on the checkFilePassword function in all versions up to, and including, 3.3.03. This makes it possible for unauthenticated attackers to download password-protected files.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11768" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/download-manager/trunk/src/__/Apply.php#L376" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/feb915f4-66d6-4f46-949c-5354e414319b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-285" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-19T06:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json b/advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json new file mode 100644 index 00000000000..147d5024ac3 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cq39-wq4r-hjrj", + "modified": "2024-12-19T06:30:43Z", + "published": "2024-12-19T06:30:43Z", + "aliases": [ + "CVE-2024-11740" + ], + "details": "The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.3.03. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11740" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/download-manager/tags/3.3.02/src/Package/Hooks.php#L42" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/download-manager/tags/3.3.02/src/Package/views/shortcode-iframe.php#L203" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4a7be578-5883-4cd3-963d-bf81c3af2003?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-19T06:15:21Z" + } +} \ No newline at end of file