From 7188b9b2727207c8b3255d6b439fc02c763858b5 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 19 Dec 2024 06:32:18 +0000 Subject: [PATCH] Publish Advisories GHSA-659x-gph6-8j4w GHSA-883f-932m-665g GHSA-c59h-89fr-559v GHSA-cq39-wq4r-hjrj --- .../GHSA-659x-gph6-8j4w.json | 36 +++++++++++++++ .../GHSA-883f-932m-665g.json | 6 ++- .../GHSA-c59h-89fr-559v.json | 40 +++++++++++++++++ .../GHSA-cq39-wq4r-hjrj.json | 44 +++++++++++++++++++ 4 files changed, 125 insertions(+), 1 deletion(-) create mode 100644 advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json create mode 100644 advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json create mode 100644 advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json diff --git a/advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json b/advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json new file mode 100644 index 00000000000..8d388bc96cd --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-659x-gph6-8j4w/GHSA-659x-gph6-8j4w.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-659x-gph6-8j4w", + "modified": "2024-12-19T06:30:43Z", + "published": "2024-12-19T06:30:43Z", + "aliases": [ + "CVE-2024-11984" + ], + "details": "A unrestricted upload of file with dangerous type vulnerability in epaper draft function in Corporate Training Management System before 10.13 allows remote authenticated users to bypass file upload restrictions and perform arbitrary system commands with SYSTEM privilege via a crafted ZIP file.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11984" + }, + { + "type": "WEB", + "url": "https://zuso.ai/advisory/za-2024-10" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-434" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-19T04:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json b/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json index 2f3cf912b6f..2f0f396cab5 100644 --- a/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json +++ b/advisories/unreviewed/2024/12/GHSA-883f-932m-665g/GHSA-883f-932m-665g.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-883f-932m-665g", - "modified": "2024-12-17T15:31:43Z", + "modified": "2024-12-19T06:30:43Z", "published": "2024-12-17T06:30:33Z", "aliases": [ "CVE-2024-38499" @@ -26,6 +26,10 @@ { "type": "WEB", "url": "https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/25284" + }, + { + "type": "WEB", + "url": "http://seclists.org/fulldisclosure/2024/Dec/16" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json b/advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json new file mode 100644 index 00000000000..c2e569a22ad --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-c59h-89fr-559v/GHSA-c59h-89fr-559v.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c59h-89fr-559v", + "modified": "2024-12-19T06:30:43Z", + "published": "2024-12-19T06:30:43Z", + "aliases": [ + "CVE-2024-11768" + ], + "details": "The Download Manager plugin for WordPress is vulnerable to unauthorized download of password-protected content due to improper password validation on the checkFilePassword function in all versions up to, and including, 3.3.03. This makes it possible for unauthenticated attackers to download password-protected files.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11768" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/download-manager/trunk/src/__/Apply.php#L376" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/feb915f4-66d6-4f46-949c-5354e414319b?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-285" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-19T06:15:23Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json b/advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json new file mode 100644 index 00000000000..147d5024ac3 --- /dev/null +++ b/advisories/unreviewed/2024/12/GHSA-cq39-wq4r-hjrj/GHSA-cq39-wq4r-hjrj.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cq39-wq4r-hjrj", + "modified": "2024-12-19T06:30:43Z", + "published": "2024-12-19T06:30:43Z", + "aliases": [ + "CVE-2024-11740" + ], + "details": "The The Download Manager plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.3.03. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for unauthenticated attackers to execute arbitrary shortcodes.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11740" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/download-manager/tags/3.3.02/src/Package/Hooks.php#L42" + }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/browser/download-manager/tags/3.3.02/src/Package/views/shortcode-iframe.php#L203" + }, + { + "type": "WEB", + "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/4a7be578-5883-4cd3-963d-bf81c3af2003?source=cve" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-12-19T06:15:21Z" + } +} \ No newline at end of file