diff --git a/advisories/github-reviewed/2018/10/GHSA-6rxj-58jh-436r/GHSA-6rxj-58jh-436r.json b/advisories/github-reviewed/2018/10/GHSA-6rxj-58jh-436r/GHSA-6rxj-58jh-436r.json index 2cd8be4b7ba..945cda6a33c 100644 --- a/advisories/github-reviewed/2018/10/GHSA-6rxj-58jh-436r/GHSA-6rxj-58jh-436r.json +++ b/advisories/github-reviewed/2018/10/GHSA-6rxj-58jh-436r/GHSA-6rxj-58jh-436r.json @@ -354,9 +354,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2020-06-16T21:20:10Z", diff --git a/advisories/github-reviewed/2018/10/GHSA-jx6h-3fjx-cgv5/GHSA-jx6h-3fjx-cgv5.json b/advisories/github-reviewed/2018/10/GHSA-jx6h-3fjx-cgv5/GHSA-jx6h-3fjx-cgv5.json index 6fc0cc6c6e0..f1a62d44bf8 100644 --- a/advisories/github-reviewed/2018/10/GHSA-jx6h-3fjx-cgv5/GHSA-jx6h-3fjx-cgv5.json +++ b/advisories/github-reviewed/2018/10/GHSA-jx6h-3fjx-cgv5/GHSA-jx6h-3fjx-cgv5.json @@ -325,9 +325,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2020-06-16T21:44:18Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-4fvg-pwv7-v54g/GHSA-4fvg-pwv7-v54g.json b/advisories/github-reviewed/2022/05/GHSA-4fvg-pwv7-v54g/GHSA-4fvg-pwv7-v54g.json index 851f1d82d0e..8af6d8669b6 100644 --- a/advisories/github-reviewed/2022/05/GHSA-4fvg-pwv7-v54g/GHSA-4fvg-pwv7-v54g.json +++ b/advisories/github-reviewed/2022/05/GHSA-4fvg-pwv7-v54g/GHSA-4fvg-pwv7-v54g.json @@ -8,9 +8,7 @@ ], "summary": "Karteek Docsplit vulnerable to OS Command Injection", "details": "The `extract_from_ocr` function in `lib/docsplit/text_extractor.rb` in the Karteek Docsplit (karteek-docsplit) gem 0.5.4 for Ruby allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a PDF filename.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-5c5p-jxvx-x7j2/GHSA-5c5p-jxvx-x7j2.json b/advisories/github-reviewed/2022/05/GHSA-5c5p-jxvx-x7j2/GHSA-5c5p-jxvx-x7j2.json index 3285aa3b22d..80d16c34abe 100644 --- a/advisories/github-reviewed/2022/05/GHSA-5c5p-jxvx-x7j2/GHSA-5c5p-jxvx-x7j2.json +++ b/advisories/github-reviewed/2022/05/GHSA-5c5p-jxvx-x7j2/GHSA-5c5p-jxvx-x7j2.json @@ -8,9 +8,7 @@ ], "summary": "Apache Tomcat vulnerable to Cross-site Scripting", "details": "Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authenticated users to inject arbitrary web script or HTML via a parameter name to manager/html/upload, and other unspecified vectors.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-9xrj-439h-62hg/GHSA-9xrj-439h-62hg.json b/advisories/github-reviewed/2022/05/GHSA-9xrj-439h-62hg/GHSA-9xrj-439h-62hg.json index 64eee0fcb51..2365791b165 100644 --- a/advisories/github-reviewed/2022/05/GHSA-9xrj-439h-62hg/GHSA-9xrj-439h-62hg.json +++ b/advisories/github-reviewed/2022/05/GHSA-9xrj-439h-62hg/GHSA-9xrj-439h-62hg.json @@ -8,9 +8,7 @@ ], "summary": "Improper Authentication in Apache Tomcat", "details": "The HTTP Digest Access Authentication implementation in Apache Tomcat 5.5.x before 5.5.36, 6.x before 6.0.36, and 7.x before 7.0.30 caches information about the authenticated user within the session state, which makes it easier for remote attackers to bypass authentication via vectors related to the session ID.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-gjfx-9wx3-j6r7/GHSA-gjfx-9wx3-j6r7.json b/advisories/github-reviewed/2022/05/GHSA-gjfx-9wx3-j6r7/GHSA-gjfx-9wx3-j6r7.json index bd41265c6c1..36ac8be8331 100644 --- a/advisories/github-reviewed/2022/05/GHSA-gjfx-9wx3-j6r7/GHSA-gjfx-9wx3-j6r7.json +++ b/advisories/github-reviewed/2022/05/GHSA-gjfx-9wx3-j6r7/GHSA-gjfx-9wx3-j6r7.json @@ -8,9 +8,7 @@ ], "summary": "Apache MyFaces Vulnerable to Path Traversal", "details": "Multiple directory traversal vulnerabilities in MyFaces JavaServer Faces (JSF) in Apache MyFaces Core 2.0.x before 2.0.12 and 2.1.x before 2.1.6 allow remote attackers to read arbitrary files via a `..` (dot dot) in the (1) ln parameter to `faces/javax.faces.resource/web.xml` or (2) the `PATH_INFO` to `faces/javax.faces.resource/`.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-gmhr-6f43-7qpj/GHSA-gmhr-6f43-7qpj.json b/advisories/github-reviewed/2022/05/GHSA-gmhr-6f43-7qpj/GHSA-gmhr-6f43-7qpj.json index 1aaf0514d4b..bcdafcc0380 100644 --- a/advisories/github-reviewed/2022/05/GHSA-gmhr-6f43-7qpj/GHSA-gmhr-6f43-7qpj.json +++ b/advisories/github-reviewed/2022/05/GHSA-gmhr-6f43-7qpj/GHSA-gmhr-6f43-7qpj.json @@ -104,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-01-26T20:11:33Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-h34c-px28-rjgw/GHSA-h34c-px28-rjgw.json b/advisories/github-reviewed/2022/05/GHSA-h34c-px28-rjgw/GHSA-h34c-px28-rjgw.json index 8e6e894aec3..0bdcd49bcb1 100644 --- a/advisories/github-reviewed/2022/05/GHSA-h34c-px28-rjgw/GHSA-h34c-px28-rjgw.json +++ b/advisories/github-reviewed/2022/05/GHSA-h34c-px28-rjgw/GHSA-h34c-px28-rjgw.json @@ -116,9 +116,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-01-26T20:09:53Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-hgg7-cghq-xhf4/GHSA-hgg7-cghq-xhf4.json b/advisories/github-reviewed/2022/05/GHSA-hgg7-cghq-xhf4/GHSA-hgg7-cghq-xhf4.json index 8a0fa35d22c..746e5d85ef5 100644 --- a/advisories/github-reviewed/2022/05/GHSA-hgg7-cghq-xhf4/GHSA-hgg7-cghq-xhf4.json +++ b/advisories/github-reviewed/2022/05/GHSA-hgg7-cghq-xhf4/GHSA-hgg7-cghq-xhf4.json @@ -8,9 +8,7 @@ ], "summary": "Ruby vulnerable to denial of service", "details": "When reading text nodes from an XML document, the REXML parser can be coerced in to allocating extremely large string objects which can consume all of the memory on a machine, causing a denial of service.\n\nJruby resolves this bug in version 1.7.3 as noted in https://www.jruby.org/2013/02/21/jruby-1-7-3.html", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-hh2x-7mf9-78fr/GHSA-hh2x-7mf9-78fr.json b/advisories/github-reviewed/2022/05/GHSA-hh2x-7mf9-78fr/GHSA-hh2x-7mf9-78fr.json index 7aace2b8c07..c9ee81e556a 100644 --- a/advisories/github-reviewed/2022/05/GHSA-hh2x-7mf9-78fr/GHSA-hh2x-7mf9-78fr.json +++ b/advisories/github-reviewed/2022/05/GHSA-hh2x-7mf9-78fr/GHSA-hh2x-7mf9-78fr.json @@ -8,9 +8,7 @@ ], "summary": "Sup Code Injection vulnerability", "details": "`lib/sup/message_chunks.rb` in Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the content_type of an email attachment.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2022/05/GHSA-jqmr-wqgp-8mh2/GHSA-jqmr-wqgp-8mh2.json b/advisories/github-reviewed/2022/05/GHSA-jqmr-wqgp-8mh2/GHSA-jqmr-wqgp-8mh2.json index b2e6fa2ee02..4a8cde8b00d 100644 --- a/advisories/github-reviewed/2022/05/GHSA-jqmr-wqgp-8mh2/GHSA-jqmr-wqgp-8mh2.json +++ b/advisories/github-reviewed/2022/05/GHSA-jqmr-wqgp-8mh2/GHSA-jqmr-wqgp-8mh2.json @@ -8,9 +8,7 @@ ], "summary": "phpMyAdmin cross-site scripting Vulnerability in Table or Column Names", "details": "Multiple cross-site scripting (XSS) vulnerabilities in js/functions.js in phpMyAdmin 4.0.x before 4.0.10.1, 4.1.x before 4.1.14.2, and 4.2.x before 4.2.6 allow remote authenticated users to inject arbitrary web script or HTML via a crafted (1) table name or (2) column name that is improperly handled during construction of an AJAX confirmation message.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/08/GHSA-cr5q-6q9f-rq6q/GHSA-cr5q-6q9f-rq6q.json b/advisories/github-reviewed/2023/08/GHSA-cr5q-6q9f-rq6q/GHSA-cr5q-6q9f-rq6q.json index 052020b89f3..3c363fab417 100644 --- a/advisories/github-reviewed/2023/08/GHSA-cr5q-6q9f-rq6q/GHSA-cr5q-6q9f-rq6q.json +++ b/advisories/github-reviewed/2023/08/GHSA-cr5q-6q9f-rq6q/GHSA-cr5q-6q9f-rq6q.json @@ -8,9 +8,7 @@ ], "summary": "Active Support Possibly Discloses Locally Encrypted Files", "details": "There is a possible file disclosure of locally encrypted files in Active Support. This vulnerability has been assigned the CVE identifier CVE-2023-38037.\n\nVersions Affected: >= 5.2.0 Not affected: < 5.2.0 Fixed Versions: 7.0.7.1, 6.1.7.5\n\n# Impact\nActiveSupport::EncryptedFile writes contents that will be encrypted to a temporary file. The temporary file’s permissions are defaulted to the user’s current umask settings, meaning that it’s possible for other users on the same system to read the contents of the temporary file.\n\nAttackers that have access to the file system could possibly read the contents of this temporary file while a user is editing it.\n\nAll users running an affected release should either upgrade or use one of the workarounds immediately.\n\n# Releases\nThe fixed releases are available at the normal locations.\n\n# Workarounds\nTo work around this issue, you can set your umask to be more restrictive like this:\n\n```ruby\n$ umask 0077\n```\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/09/GHSA-536j-xxhg-6pgg/GHSA-536j-xxhg-6pgg.json b/advisories/github-reviewed/2024/09/GHSA-536j-xxhg-6pgg/GHSA-536j-xxhg-6pgg.json index 341d1eca61b..d299fb95e22 100644 --- a/advisories/github-reviewed/2024/09/GHSA-536j-xxhg-6pgg/GHSA-536j-xxhg-6pgg.json +++ b/advisories/github-reviewed/2024/09/GHSA-536j-xxhg-6pgg/GHSA-536j-xxhg-6pgg.json @@ -4,9 +4,7 @@ "modified": "2024-10-29T19:47:59Z", "published": "2024-09-26T06:30:48Z", "withdrawn": "2024-10-29T19:45:34Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate Advisory: NVIDIA Container Toolkit contains a Time-of-check Time-of-Use (TOCTOU) vulnerability", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-mjjw-553x-87pq. This link is maintained to preserve external references.\n\n## Original Description\nNVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default configuration where a specifically crafted container image may gain access to the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.", "severity": [ diff --git a/advisories/github-reviewed/2024/09/GHSA-g4pj-mx9f-m2mh/GHSA-g4pj-mx9f-m2mh.json b/advisories/github-reviewed/2024/09/GHSA-g4pj-mx9f-m2mh/GHSA-g4pj-mx9f-m2mh.json index 0f1da76b98b..11c57341705 100644 --- a/advisories/github-reviewed/2024/09/GHSA-g4pj-mx9f-m2mh/GHSA-g4pj-mx9f-m2mh.json +++ b/advisories/github-reviewed/2024/09/GHSA-g4pj-mx9f-m2mh/GHSA-g4pj-mx9f-m2mh.json @@ -4,9 +4,7 @@ "modified": "2024-10-29T19:52:30Z", "published": "2024-09-26T06:30:48Z", "withdrawn": "2024-10-29T19:52:30Z", - "aliases": [ - - ], + "aliases": [], "summary": "Duplicate Advisory: NVIDIA Container Toolkit allows specially crafted container image to create empty files on the host file system", "details": "## Duplicate Advisory\nThis advisory has been withdrawn because it is a duplicate of GHSA-f748-7hpg-88ch. This link is maintained to preserve external references.\n\n## Original Description\nNVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a specially crafted container image to create empty files on the host file system. This does not impact use cases where CDI is used. A successful exploit of this vulnerability may lead to data tampering.", "severity": [ diff --git a/advisories/unreviewed/2022/03/GHSA-3cj6-r9jr-3238/GHSA-3cj6-r9jr-3238.json b/advisories/unreviewed/2022/03/GHSA-3cj6-r9jr-3238/GHSA-3cj6-r9jr-3238.json index f14b2b0d35e..f61f7168fd8 100644 --- a/advisories/unreviewed/2022/03/GHSA-3cj6-r9jr-3238/GHSA-3cj6-r9jr-3238.json +++ b/advisories/unreviewed/2022/03/GHSA-3cj6-r9jr-3238/GHSA-3cj6-r9jr-3238.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-4xhw-hgxg-4gjh/GHSA-4xhw-hgxg-4gjh.json b/advisories/unreviewed/2022/03/GHSA-4xhw-hgxg-4gjh/GHSA-4xhw-hgxg-4gjh.json index aa5e182c3bd..7e1f5032760 100644 --- a/advisories/unreviewed/2022/03/GHSA-4xhw-hgxg-4gjh/GHSA-4xhw-hgxg-4gjh.json +++ b/advisories/unreviewed/2022/03/GHSA-4xhw-hgxg-4gjh/GHSA-4xhw-hgxg-4gjh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-9gcv-6rm7-vw3w/GHSA-9gcv-6rm7-vw3w.json b/advisories/unreviewed/2022/03/GHSA-9gcv-6rm7-vw3w/GHSA-9gcv-6rm7-vw3w.json index aa4b3abf3dd..057e68e7662 100644 --- a/advisories/unreviewed/2022/03/GHSA-9gcv-6rm7-vw3w/GHSA-9gcv-6rm7-vw3w.json +++ b/advisories/unreviewed/2022/03/GHSA-9gcv-6rm7-vw3w/GHSA-9gcv-6rm7-vw3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-rpgf-wx3x-j576/GHSA-rpgf-wx3x-j576.json b/advisories/unreviewed/2022/03/GHSA-rpgf-wx3x-j576/GHSA-rpgf-wx3x-j576.json index f1c1d63ad62..f2509e51f8e 100644 --- a/advisories/unreviewed/2022/03/GHSA-rpgf-wx3x-j576/GHSA-rpgf-wx3x-j576.json +++ b/advisories/unreviewed/2022/03/GHSA-rpgf-wx3x-j576/GHSA-rpgf-wx3x-j576.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-22f8-7h52-6pfg/GHSA-22f8-7h52-6pfg.json b/advisories/unreviewed/2022/04/GHSA-22f8-7h52-6pfg/GHSA-22f8-7h52-6pfg.json index af6992ca954..36d63e7939b 100644 --- a/advisories/unreviewed/2022/04/GHSA-22f8-7h52-6pfg/GHSA-22f8-7h52-6pfg.json +++ b/advisories/unreviewed/2022/04/GHSA-22f8-7h52-6pfg/GHSA-22f8-7h52-6pfg.json @@ -7,12 +7,8 @@ "CVE-1999-1383" ], "details": "(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \\w option in the PS1 variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-22jg-rc3r-96wc/GHSA-22jg-rc3r-96wc.json b/advisories/unreviewed/2022/04/GHSA-22jg-rc3r-96wc/GHSA-22jg-rc3r-96wc.json index 8c66cfb4163..e7c7eb6a32a 100644 --- a/advisories/unreviewed/2022/04/GHSA-22jg-rc3r-96wc/GHSA-22jg-rc3r-96wc.json +++ b/advisories/unreviewed/2022/04/GHSA-22jg-rc3r-96wc/GHSA-22jg-rc3r-96wc.json @@ -7,12 +7,8 @@ "CVE-1999-1369" ], "details": "Real Media RealServer (rmserver) 6.0.3.353 stores a password in plaintext in the world-readable rmserver.cfg file, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-293r-f52g-2w34/GHSA-293r-f52g-2w34.json b/advisories/unreviewed/2022/04/GHSA-293r-f52g-2w34/GHSA-293r-f52g-2w34.json index 311b9c17527..4d02777e955 100644 --- a/advisories/unreviewed/2022/04/GHSA-293r-f52g-2w34/GHSA-293r-f52g-2w34.json +++ b/advisories/unreviewed/2022/04/GHSA-293r-f52g-2w34/GHSA-293r-f52g-2w34.json @@ -7,12 +7,8 @@ "CVE-1999-1271" ], "details": "Macromedia Dreamweaver uses weak encryption to store FTP passwords, which could allow local users to easily decrypt the passwords of other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-297g-44c7-436q/GHSA-297g-44c7-436q.json b/advisories/unreviewed/2022/04/GHSA-297g-44c7-436q/GHSA-297g-44c7-436q.json index 43b9e3ffa60..55769cdbc50 100644 --- a/advisories/unreviewed/2022/04/GHSA-297g-44c7-436q/GHSA-297g-44c7-436q.json +++ b/advisories/unreviewed/2022/04/GHSA-297g-44c7-436q/GHSA-297g-44c7-436q.json @@ -7,12 +7,8 @@ "CVE-1999-1467" ], "details": "Vulnerability in rcp on SunOS 4.0.x allows remote attackers from trusted hosts to execute arbitrary commands as root, possibly related to the configuration of the nobody user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2ccq-2xr5-3q62/GHSA-2ccq-2xr5-3q62.json b/advisories/unreviewed/2022/04/GHSA-2ccq-2xr5-3q62/GHSA-2ccq-2xr5-3q62.json index ee406a23674..4d83e3f6a34 100644 --- a/advisories/unreviewed/2022/04/GHSA-2ccq-2xr5-3q62/GHSA-2ccq-2xr5-3q62.json +++ b/advisories/unreviewed/2022/04/GHSA-2ccq-2xr5-3q62/GHSA-2ccq-2xr5-3q62.json @@ -7,12 +7,8 @@ "CVE-1999-1262" ], "details": "Java in Netscape 4.5 does not properly restrict applets from connecting to other hosts besides the one from which the applet was loaded, which violates the Java security model and could allow remote attackers to conduct unauthorized activities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2g26-89g9-8v94/GHSA-2g26-89g9-8v94.json b/advisories/unreviewed/2022/04/GHSA-2g26-89g9-8v94/GHSA-2g26-89g9-8v94.json index 2cd24447c5f..1689532e232 100644 --- a/advisories/unreviewed/2022/04/GHSA-2g26-89g9-8v94/GHSA-2g26-89g9-8v94.json +++ b/advisories/unreviewed/2022/04/GHSA-2g26-89g9-8v94/GHSA-2g26-89g9-8v94.json @@ -7,12 +7,8 @@ "CVE-1999-1294" ], "details": "Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders for which they do not have permission.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2h45-5j5p-4w53/GHSA-2h45-5j5p-4w53.json b/advisories/unreviewed/2022/04/GHSA-2h45-5j5p-4w53/GHSA-2h45-5j5p-4w53.json index 4dc01e43e73..102b92fe406 100644 --- a/advisories/unreviewed/2022/04/GHSA-2h45-5j5p-4w53/GHSA-2h45-5j5p-4w53.json +++ b/advisories/unreviewed/2022/04/GHSA-2h45-5j5p-4w53/GHSA-2h45-5j5p-4w53.json @@ -7,12 +7,8 @@ "CVE-1999-1453" ], "details": "Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2qrm-xmpc-h7fp/GHSA-2qrm-xmpc-h7fp.json b/advisories/unreviewed/2022/04/GHSA-2qrm-xmpc-h7fp/GHSA-2qrm-xmpc-h7fp.json index dd2e320462c..63a1d9d5378 100644 --- a/advisories/unreviewed/2022/04/GHSA-2qrm-xmpc-h7fp/GHSA-2qrm-xmpc-h7fp.json +++ b/advisories/unreviewed/2022/04/GHSA-2qrm-xmpc-h7fp/GHSA-2qrm-xmpc-h7fp.json @@ -7,12 +7,8 @@ "CVE-1999-1373" ], "details": "FORE PowerHub before 5.0.1 allows remote attackers to cause a denial of service (hang) via a TCP SYN scan with TCP/IP OS fingerprinting, e.g. via nmap.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2rcm-7f2m-m5qc/GHSA-2rcm-7f2m-m5qc.json b/advisories/unreviewed/2022/04/GHSA-2rcm-7f2m-m5qc/GHSA-2rcm-7f2m-m5qc.json index 49316945f7a..556e4421167 100644 --- a/advisories/unreviewed/2022/04/GHSA-2rcm-7f2m-m5qc/GHSA-2rcm-7f2m-m5qc.json +++ b/advisories/unreviewed/2022/04/GHSA-2rcm-7f2m-m5qc/GHSA-2rcm-7f2m-m5qc.json @@ -7,12 +7,8 @@ "CVE-1999-1407" ], "details": "ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a symlink attack on the dhcplog file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wp7-73q4-52p8/GHSA-2wp7-73q4-52p8.json b/advisories/unreviewed/2022/04/GHSA-2wp7-73q4-52p8/GHSA-2wp7-73q4-52p8.json index 13de3a9730c..c9d00f16e10 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wp7-73q4-52p8/GHSA-2wp7-73q4-52p8.json +++ b/advisories/unreviewed/2022/04/GHSA-2wp7-73q4-52p8/GHSA-2wp7-73q4-52p8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-33qc-p77x-82rf/GHSA-33qc-p77x-82rf.json b/advisories/unreviewed/2022/04/GHSA-33qc-p77x-82rf/GHSA-33qc-p77x-82rf.json index a77ad4b059a..956c0dc9f36 100644 --- a/advisories/unreviewed/2022/04/GHSA-33qc-p77x-82rf/GHSA-33qc-p77x-82rf.json +++ b/advisories/unreviewed/2022/04/GHSA-33qc-p77x-82rf/GHSA-33qc-p77x-82rf.json @@ -7,12 +7,8 @@ "CVE-1999-1491" ], "details": "abuse.console in Red Hat 2.1 uses relative pathnames to find and execute the undrv program, which allows local users to execute arbitrary commands via a path that points to a Trojan horse program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3444-8xf8-7rr4/GHSA-3444-8xf8-7rr4.json b/advisories/unreviewed/2022/04/GHSA-3444-8xf8-7rr4/GHSA-3444-8xf8-7rr4.json index 6a2f281b4c2..74477affff8 100644 --- a/advisories/unreviewed/2022/04/GHSA-3444-8xf8-7rr4/GHSA-3444-8xf8-7rr4.json +++ b/advisories/unreviewed/2022/04/GHSA-3444-8xf8-7rr4/GHSA-3444-8xf8-7rr4.json @@ -7,12 +7,8 @@ "CVE-1999-1302" ], "details": "Unspecified vulnerability in pt_chmod in SCO UNIX 4.2 and earlier allows local users to gain root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-34v6-99gm-vhvc/GHSA-34v6-99gm-vhvc.json b/advisories/unreviewed/2022/04/GHSA-34v6-99gm-vhvc/GHSA-34v6-99gm-vhvc.json index 733dd92af65..661b5c11cab 100644 --- a/advisories/unreviewed/2022/04/GHSA-34v6-99gm-vhvc/GHSA-34v6-99gm-vhvc.json +++ b/advisories/unreviewed/2022/04/GHSA-34v6-99gm-vhvc/GHSA-34v6-99gm-vhvc.json @@ -7,12 +7,8 @@ "CVE-1999-1289" ], "details": "ICQ 98 beta on Windows NT leaks the internal IP address of a client in the TCP data segment of an ICQ packet instead of the public address (e.g. through NAT), which provides remote attackers with potentially sensitive information about the client or the internal network configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-35g9-mghc-h66h/GHSA-35g9-mghc-h66h.json b/advisories/unreviewed/2022/04/GHSA-35g9-mghc-h66h/GHSA-35g9-mghc-h66h.json index 2ca3b11d787..34db6b529f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-35g9-mghc-h66h/GHSA-35g9-mghc-h66h.json +++ b/advisories/unreviewed/2022/04/GHSA-35g9-mghc-h66h/GHSA-35g9-mghc-h66h.json @@ -7,12 +7,8 @@ "CVE-1999-1240" ], "details": "Buffer overflow in cddbd CD database server allows remote attackers to execute arbitrary commands via a long log message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-363m-9h8j-6gw4/GHSA-363m-9h8j-6gw4.json b/advisories/unreviewed/2022/04/GHSA-363m-9h8j-6gw4/GHSA-363m-9h8j-6gw4.json index b427210330a..292b2578806 100644 --- a/advisories/unreviewed/2022/04/GHSA-363m-9h8j-6gw4/GHSA-363m-9h8j-6gw4.json +++ b/advisories/unreviewed/2022/04/GHSA-363m-9h8j-6gw4/GHSA-363m-9h8j-6gw4.json @@ -7,12 +7,8 @@ "CVE-1999-1306" ], "details": "Cisco IOS 9.1 and earlier does not properly handle extended IP access lists when the IP route cache is enabled and the \"established\" keyword is set, which could allow attackers to bypass filters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-39fv-w3wx-cqj3/GHSA-39fv-w3wx-cqj3.json b/advisories/unreviewed/2022/04/GHSA-39fv-w3wx-cqj3/GHSA-39fv-w3wx-cqj3.json index de64a338ffd..845a7a6d8fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-39fv-w3wx-cqj3/GHSA-39fv-w3wx-cqj3.json +++ b/advisories/unreviewed/2022/04/GHSA-39fv-w3wx-cqj3/GHSA-39fv-w3wx-cqj3.json @@ -7,12 +7,8 @@ "CVE-1999-1322" ], "details": "The installation of 1ArcServe Backup and Inoculan AV client modules for Exchange create a log file, exchverify.log, which contains usernames and passwords in plaintext.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3c64-pg4p-f5fw/GHSA-3c64-pg4p-f5fw.json b/advisories/unreviewed/2022/04/GHSA-3c64-pg4p-f5fw/GHSA-3c64-pg4p-f5fw.json index 2dfa471c51b..bf01466de6e 100644 --- a/advisories/unreviewed/2022/04/GHSA-3c64-pg4p-f5fw/GHSA-3c64-pg4p-f5fw.json +++ b/advisories/unreviewed/2022/04/GHSA-3c64-pg4p-f5fw/GHSA-3c64-pg4p-f5fw.json @@ -7,12 +7,8 @@ "CVE-1999-1326" ], "details": "wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3fqc-qp8w-rr4h/GHSA-3fqc-qp8w-rr4h.json b/advisories/unreviewed/2022/04/GHSA-3fqc-qp8w-rr4h/GHSA-3fqc-qp8w-rr4h.json index 5d07aea22df..45b434ee2b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-3fqc-qp8w-rr4h/GHSA-3fqc-qp8w-rr4h.json +++ b/advisories/unreviewed/2022/04/GHSA-3fqc-qp8w-rr4h/GHSA-3fqc-qp8w-rr4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-3q7h-hq7j-vcqg/GHSA-3q7h-hq7j-vcqg.json b/advisories/unreviewed/2022/04/GHSA-3q7h-hq7j-vcqg/GHSA-3q7h-hq7j-vcqg.json index 4a6239a4841..df2b9415746 100644 --- a/advisories/unreviewed/2022/04/GHSA-3q7h-hq7j-vcqg/GHSA-3q7h-hq7j-vcqg.json +++ b/advisories/unreviewed/2022/04/GHSA-3q7h-hq7j-vcqg/GHSA-3q7h-hq7j-vcqg.json @@ -7,12 +7,8 @@ "CVE-1999-1273" ], "details": "Squid Internet Object Cache 1.1.20 allows users to bypass access control lists (ACLs) by encoding the URL with hexadecimal escape sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3qcq-w2m6-vwwx/GHSA-3qcq-w2m6-vwwx.json b/advisories/unreviewed/2022/04/GHSA-3qcq-w2m6-vwwx/GHSA-3qcq-w2m6-vwwx.json index 93161de813b..c81c98b7e13 100644 --- a/advisories/unreviewed/2022/04/GHSA-3qcq-w2m6-vwwx/GHSA-3qcq-w2m6-vwwx.json +++ b/advisories/unreviewed/2022/04/GHSA-3qcq-w2m6-vwwx/GHSA-3qcq-w2m6-vwwx.json @@ -7,12 +7,8 @@ "CVE-1999-1279" ], "details": "An interaction between the AS/400 shared folders feature and Microsoft SNA Server 3.0 and earlier allows users to view each other's folders when the users share the same Local APPC LU.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3r7x-vxx6-j729/GHSA-3r7x-vxx6-j729.json b/advisories/unreviewed/2022/04/GHSA-3r7x-vxx6-j729/GHSA-3r7x-vxx6-j729.json index 39e88c2a6ff..2241bd6647d 100644 --- a/advisories/unreviewed/2022/04/GHSA-3r7x-vxx6-j729/GHSA-3r7x-vxx6-j729.json +++ b/advisories/unreviewed/2022/04/GHSA-3r7x-vxx6-j729/GHSA-3r7x-vxx6-j729.json @@ -7,12 +7,8 @@ "CVE-1999-1249" ], "details": "movemail in HP-UX 10.20 has insecure permissions, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3wj4-jxxp-h483/GHSA-3wj4-jxxp-h483.json b/advisories/unreviewed/2022/04/GHSA-3wj4-jxxp-h483/GHSA-3wj4-jxxp-h483.json index f25f8a357b2..1067ceef652 100644 --- a/advisories/unreviewed/2022/04/GHSA-3wj4-jxxp-h483/GHSA-3wj4-jxxp-h483.json +++ b/advisories/unreviewed/2022/04/GHSA-3wj4-jxxp-h483/GHSA-3wj4-jxxp-h483.json @@ -7,12 +7,8 @@ "CVE-1999-1282" ], "details": "RealSystem G2 server stores the administrator password in cleartext in a world-readable configuration file, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3x8m-r3mg-qw2f/GHSA-3x8m-r3mg-qw2f.json b/advisories/unreviewed/2022/04/GHSA-3x8m-r3mg-qw2f/GHSA-3x8m-r3mg-qw2f.json index 24fa2723519..8c8e63a36c8 100644 --- a/advisories/unreviewed/2022/04/GHSA-3x8m-r3mg-qw2f/GHSA-3x8m-r3mg-qw2f.json +++ b/advisories/unreviewed/2022/04/GHSA-3x8m-r3mg-qw2f/GHSA-3x8m-r3mg-qw2f.json @@ -7,12 +7,8 @@ "CVE-1999-1471" ], "details": "Buffer overflow in passwd in BSD based operating systems 4.3 and earlier allows local users to gain root privileges by specifying a long shell or GECOS field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-45vh-w274-3hx8/GHSA-45vh-w274-3hx8.json b/advisories/unreviewed/2022/04/GHSA-45vh-w274-3hx8/GHSA-45vh-w274-3hx8.json index fb7ef661e30..dc39a6f4a7b 100644 --- a/advisories/unreviewed/2022/04/GHSA-45vh-w274-3hx8/GHSA-45vh-w274-3hx8.json +++ b/advisories/unreviewed/2022/04/GHSA-45vh-w274-3hx8/GHSA-45vh-w274-3hx8.json @@ -7,12 +7,8 @@ "CVE-1999-1447" ], "details": "Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CLASSID parameter in an OBJECT tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-464h-jp73-4qp4/GHSA-464h-jp73-4qp4.json b/advisories/unreviewed/2022/04/GHSA-464h-jp73-4qp4/GHSA-464h-jp73-4qp4.json index 7553af416b7..070d25fa720 100644 --- a/advisories/unreviewed/2022/04/GHSA-464h-jp73-4qp4/GHSA-464h-jp73-4qp4.json +++ b/advisories/unreviewed/2022/04/GHSA-464h-jp73-4qp4/GHSA-464h-jp73-4qp4.json @@ -7,12 +7,8 @@ "CVE-1999-1441" ], "details": "Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users to cause a denial of service by sending SIGIO to processes that do not catch it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-474f-x56w-f5p5/GHSA-474f-x56w-f5p5.json b/advisories/unreviewed/2022/04/GHSA-474f-x56w-f5p5/GHSA-474f-x56w-f5p5.json index caf3f2d1a61..18d735350a2 100644 --- a/advisories/unreviewed/2022/04/GHSA-474f-x56w-f5p5/GHSA-474f-x56w-f5p5.json +++ b/advisories/unreviewed/2022/04/GHSA-474f-x56w-f5p5/GHSA-474f-x56w-f5p5.json @@ -7,12 +7,8 @@ "CVE-1999-1288" ], "details": "Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain privileges via bugs in the program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4fg5-9xqq-h6cq/GHSA-4fg5-9xqq-h6cq.json b/advisories/unreviewed/2022/04/GHSA-4fg5-9xqq-h6cq/GHSA-4fg5-9xqq-h6cq.json index ea7b3d88e5f..66287b27bc5 100644 --- a/advisories/unreviewed/2022/04/GHSA-4fg5-9xqq-h6cq/GHSA-4fg5-9xqq-h6cq.json +++ b/advisories/unreviewed/2022/04/GHSA-4fg5-9xqq-h6cq/GHSA-4fg5-9xqq-h6cq.json @@ -7,12 +7,8 @@ "CVE-1999-1259" ], "details": "Microsoft Office 98, Macintosh Edition, does not properly initialize the disk space used by Office 98 files and effectively inserts data from previously deleted files into the Office file, which could allow attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4jxf-pjgf-g7fc/GHSA-4jxf-pjgf-g7fc.json b/advisories/unreviewed/2022/04/GHSA-4jxf-pjgf-g7fc/GHSA-4jxf-pjgf-g7fc.json index 05b0de86a4d..835037afbd0 100644 --- a/advisories/unreviewed/2022/04/GHSA-4jxf-pjgf-g7fc/GHSA-4jxf-pjgf-g7fc.json +++ b/advisories/unreviewed/2022/04/GHSA-4jxf-pjgf-g7fc/GHSA-4jxf-pjgf-g7fc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4p4c-8vr2-gvfw/GHSA-4p4c-8vr2-gvfw.json b/advisories/unreviewed/2022/04/GHSA-4p4c-8vr2-gvfw/GHSA-4p4c-8vr2-gvfw.json index 398e416918d..98935bedcea 100644 --- a/advisories/unreviewed/2022/04/GHSA-4p4c-8vr2-gvfw/GHSA-4p4c-8vr2-gvfw.json +++ b/advisories/unreviewed/2022/04/GHSA-4p4c-8vr2-gvfw/GHSA-4p4c-8vr2-gvfw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-4rc3-c847-cjgp/GHSA-4rc3-c847-cjgp.json b/advisories/unreviewed/2022/04/GHSA-4rc3-c847-cjgp/GHSA-4rc3-c847-cjgp.json index 7170caab460..056ab714c85 100644 --- a/advisories/unreviewed/2022/04/GHSA-4rc3-c847-cjgp/GHSA-4rc3-c847-cjgp.json +++ b/advisories/unreviewed/2022/04/GHSA-4rc3-c847-cjgp/GHSA-4rc3-c847-cjgp.json @@ -7,12 +7,8 @@ "CVE-1999-1244" ], "details": "IPFilter 3.2.3 through 3.2.10 allows local users to modify arbitrary files via a symlink attack on the saved output file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4vqr-h3fp-wv83/GHSA-4vqr-h3fp-wv83.json b/advisories/unreviewed/2022/04/GHSA-4vqr-h3fp-wv83/GHSA-4vqr-h3fp-wv83.json index c71e2b80b4e..d81559bde12 100644 --- a/advisories/unreviewed/2022/04/GHSA-4vqr-h3fp-wv83/GHSA-4vqr-h3fp-wv83.json +++ b/advisories/unreviewed/2022/04/GHSA-4vqr-h3fp-wv83/GHSA-4vqr-h3fp-wv83.json @@ -7,12 +7,8 @@ "CVE-1999-1321" ], "details": "Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands via a long DNS hostname that is not properly handled during TGT ticket passing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4xg8-7wjx-xrf2/GHSA-4xg8-7wjx-xrf2.json b/advisories/unreviewed/2022/04/GHSA-4xg8-7wjx-xrf2/GHSA-4xg8-7wjx-xrf2.json index 1bbce464eea..f543a4489f8 100644 --- a/advisories/unreviewed/2022/04/GHSA-4xg8-7wjx-xrf2/GHSA-4xg8-7wjx-xrf2.json +++ b/advisories/unreviewed/2022/04/GHSA-4xg8-7wjx-xrf2/GHSA-4xg8-7wjx-xrf2.json @@ -7,12 +7,8 @@ "CVE-1999-1480" ], "details": "(1) acledit and (2) aclput in AIX 4.3 allow local users to create or modify files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-527c-cp3w-hxwj/GHSA-527c-cp3w-hxwj.json b/advisories/unreviewed/2022/04/GHSA-527c-cp3w-hxwj/GHSA-527c-cp3w-hxwj.json index 76384881637..08c5a70a38f 100644 --- a/advisories/unreviewed/2022/04/GHSA-527c-cp3w-hxwj/GHSA-527c-cp3w-hxwj.json +++ b/advisories/unreviewed/2022/04/GHSA-527c-cp3w-hxwj/GHSA-527c-cp3w-hxwj.json @@ -7,12 +7,8 @@ "CVE-1999-1430" ], "details": "PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-552p-f4h5-wjj9/GHSA-552p-f4h5-wjj9.json b/advisories/unreviewed/2022/04/GHSA-552p-f4h5-wjj9/GHSA-552p-f4h5-wjj9.json index afa5cf20c49..4b451c6d56b 100644 --- a/advisories/unreviewed/2022/04/GHSA-552p-f4h5-wjj9/GHSA-552p-f4h5-wjj9.json +++ b/advisories/unreviewed/2022/04/GHSA-552p-f4h5-wjj9/GHSA-552p-f4h5-wjj9.json @@ -7,12 +7,8 @@ "CVE-1999-1426" ], "details": "Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-56h3-j94v-47jr/GHSA-56h3-j94v-47jr.json b/advisories/unreviewed/2022/04/GHSA-56h3-j94v-47jr/GHSA-56h3-j94v-47jr.json index a40224218d8..7958901b147 100644 --- a/advisories/unreviewed/2022/04/GHSA-56h3-j94v-47jr/GHSA-56h3-j94v-47jr.json +++ b/advisories/unreviewed/2022/04/GHSA-56h3-j94v-47jr/GHSA-56h3-j94v-47jr.json @@ -7,12 +7,8 @@ "CVE-1999-1454" ], "details": "Macromedia \"The Matrix\" screen saver on Windows 95 with the \"Password protected\" option enabled allows attackers with physical access to the machine to bypass the password prompt by pressing the ESC (Escape) key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-59xq-494m-chp8/GHSA-59xq-494m-chp8.json b/advisories/unreviewed/2022/04/GHSA-59xq-494m-chp8/GHSA-59xq-494m-chp8.json index 7817e1048c2..ce73423f3cb 100644 --- a/advisories/unreviewed/2022/04/GHSA-59xq-494m-chp8/GHSA-59xq-494m-chp8.json +++ b/advisories/unreviewed/2022/04/GHSA-59xq-494m-chp8/GHSA-59xq-494m-chp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-5g2p-8vh6-3w48/GHSA-5g2p-8vh6-3w48.json b/advisories/unreviewed/2022/04/GHSA-5g2p-8vh6-3w48/GHSA-5g2p-8vh6-3w48.json index 58d482bd545..5e953fb3c72 100644 --- a/advisories/unreviewed/2022/04/GHSA-5g2p-8vh6-3w48/GHSA-5g2p-8vh6-3w48.json +++ b/advisories/unreviewed/2022/04/GHSA-5g2p-8vh6-3w48/GHSA-5g2p-8vh6-3w48.json @@ -7,12 +7,8 @@ "CVE-1999-1378" ], "details": "dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5h86-f8rg-c9qv/GHSA-5h86-f8rg-c9qv.json b/advisories/unreviewed/2022/04/GHSA-5h86-f8rg-c9qv/GHSA-5h86-f8rg-c9qv.json index 7a788346f79..1264a11ccf9 100644 --- a/advisories/unreviewed/2022/04/GHSA-5h86-f8rg-c9qv/GHSA-5h86-f8rg-c9qv.json +++ b/advisories/unreviewed/2022/04/GHSA-5h86-f8rg-c9qv/GHSA-5h86-f8rg-c9qv.json @@ -7,12 +7,8 @@ "CVE-1999-1403" ], "details": "IBM/Tivoli OPC Tracker Agent version 2 release 1 creates files, directories, and IPC message queues with insecure permissions (world-readable and world-writable), which could allow local users to disrupt operations and possibly gain privileges by modifying or deleting files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5hp3-5xjh-3v56/GHSA-5hp3-5xjh-3v56.json b/advisories/unreviewed/2022/04/GHSA-5hp3-5xjh-3v56/GHSA-5hp3-5xjh-3v56.json index a355fee9277..63c7ebdfb8d 100644 --- a/advisories/unreviewed/2022/04/GHSA-5hp3-5xjh-3v56/GHSA-5hp3-5xjh-3v56.json +++ b/advisories/unreviewed/2022/04/GHSA-5hp3-5xjh-3v56/GHSA-5hp3-5xjh-3v56.json @@ -7,12 +7,8 @@ "CVE-1999-1255" ], "details": "Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5j2c-m66w-j2qp/GHSA-5j2c-m66w-j2qp.json b/advisories/unreviewed/2022/04/GHSA-5j2c-m66w-j2qp/GHSA-5j2c-m66w-j2qp.json index f71cfcde2be..a021fb22d72 100644 --- a/advisories/unreviewed/2022/04/GHSA-5j2c-m66w-j2qp/GHSA-5j2c-m66w-j2qp.json +++ b/advisories/unreviewed/2022/04/GHSA-5j2c-m66w-j2qp/GHSA-5j2c-m66w-j2qp.json @@ -7,12 +7,8 @@ "CVE-1999-1375" ], "details": "FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5jm7-hvq6-jjvh/GHSA-5jm7-hvq6-jjvh.json b/advisories/unreviewed/2022/04/GHSA-5jm7-hvq6-jjvh/GHSA-5jm7-hvq6-jjvh.json index 1faf2633e13..9cf15af6557 100644 --- a/advisories/unreviewed/2022/04/GHSA-5jm7-hvq6-jjvh/GHSA-5jm7-hvq6-jjvh.json +++ b/advisories/unreviewed/2022/04/GHSA-5jm7-hvq6-jjvh/GHSA-5jm7-hvq6-jjvh.json @@ -7,12 +7,8 @@ "CVE-1999-1389" ], "details": "US Robotics/3Com Total Control Chassis with Frame Relay between 3.6.22 and 3.7.24 does not properly enforce access filters when the \"set host prompt\" setting is made for a port, which allows attackers to bypass restrictions by providing the hostname twice at the \"host: \" prompt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5m8h-jjf9-c2p5/GHSA-5m8h-jjf9-c2p5.json b/advisories/unreviewed/2022/04/GHSA-5m8h-jjf9-c2p5/GHSA-5m8h-jjf9-c2p5.json index 0d5c6006637..7482fb27bf8 100644 --- a/advisories/unreviewed/2022/04/GHSA-5m8h-jjf9-c2p5/GHSA-5m8h-jjf9-c2p5.json +++ b/advisories/unreviewed/2022/04/GHSA-5m8h-jjf9-c2p5/GHSA-5m8h-jjf9-c2p5.json @@ -7,12 +7,8 @@ "CVE-1999-1270" ], "details": "KMail in KDE 1.0 provides a PGP passphrase as a command line argument to other programs, which could allow local users to obtain the passphrase and compromise the PGP keys of other users by viewing the arguments via programs that list process information, such as ps.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5p87-h429-g84q/GHSA-5p87-h429-g84q.json b/advisories/unreviewed/2022/04/GHSA-5p87-h429-g84q/GHSA-5p87-h429-g84q.json index b7adef5ac85..f57fcc468e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-5p87-h429-g84q/GHSA-5p87-h429-g84q.json +++ b/advisories/unreviewed/2022/04/GHSA-5p87-h429-g84q/GHSA-5p87-h429-g84q.json @@ -7,12 +7,8 @@ "CVE-1999-1357" ], "details": "Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a \"<\" sign, and the 0x9b character to a \">\" sign, which could allow remote attackers to attack other clients via cross-site scripting (CSS) in CGI programs that do not filter these characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5pj2-qf29-pjw9/GHSA-5pj2-qf29-pjw9.json b/advisories/unreviewed/2022/04/GHSA-5pj2-qf29-pjw9/GHSA-5pj2-qf29-pjw9.json index 804be20b7ab..0cd43a1a6dc 100644 --- a/advisories/unreviewed/2022/04/GHSA-5pj2-qf29-pjw9/GHSA-5pj2-qf29-pjw9.json +++ b/advisories/unreviewed/2022/04/GHSA-5pj2-qf29-pjw9/GHSA-5pj2-qf29-pjw9.json @@ -7,12 +7,8 @@ "CVE-1999-1250" ], "details": "Vulnerability in CGI program in the Lasso application by Blue World, as used on WebSTAR and other servers, allows remote attackers to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5qxm-mmx9-f8h5/GHSA-5qxm-mmx9-f8h5.json b/advisories/unreviewed/2022/04/GHSA-5qxm-mmx9-f8h5/GHSA-5qxm-mmx9-f8h5.json index a33082dae9e..271f68e6fd5 100644 --- a/advisories/unreviewed/2022/04/GHSA-5qxm-mmx9-f8h5/GHSA-5qxm-mmx9-f8h5.json +++ b/advisories/unreviewed/2022/04/GHSA-5qxm-mmx9-f8h5/GHSA-5qxm-mmx9-f8h5.json @@ -7,12 +7,8 @@ "CVE-1999-1420" ], "details": "NBase switches NH2012, NH2012R, NH2015, and NH2048 have a back door password that cannot be disabled, which allows remote attackers to modify the switch's configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5x42-xxxg-rqpp/GHSA-5x42-xxxg-rqpp.json b/advisories/unreviewed/2022/04/GHSA-5x42-xxxg-rqpp/GHSA-5x42-xxxg-rqpp.json index 533ba3a6da6..c2eb6ec26b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-5x42-xxxg-rqpp/GHSA-5x42-xxxg-rqpp.json +++ b/advisories/unreviewed/2022/04/GHSA-5x42-xxxg-rqpp/GHSA-5x42-xxxg-rqpp.json @@ -7,12 +7,8 @@ "CVE-1999-1346" ], "details": "PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5x4j-m9qh-g9w5/GHSA-5x4j-m9qh-g9w5.json b/advisories/unreviewed/2022/04/GHSA-5x4j-m9qh-g9w5/GHSA-5x4j-m9qh-g9w5.json index ea20bbb0625..46ef5267bc7 100644 --- a/advisories/unreviewed/2022/04/GHSA-5x4j-m9qh-g9w5/GHSA-5x4j-m9qh-g9w5.json +++ b/advisories/unreviewed/2022/04/GHSA-5x4j-m9qh-g9w5/GHSA-5x4j-m9qh-g9w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-5xqm-rmf3-m6hv/GHSA-5xqm-rmf3-m6hv.json b/advisories/unreviewed/2022/04/GHSA-5xqm-rmf3-m6hv/GHSA-5xqm-rmf3-m6hv.json index 7a339f95f40..91ce95a48f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-5xqm-rmf3-m6hv/GHSA-5xqm-rmf3-m6hv.json +++ b/advisories/unreviewed/2022/04/GHSA-5xqm-rmf3-m6hv/GHSA-5xqm-rmf3-m6hv.json @@ -7,12 +7,8 @@ "CVE-1999-1418" ], "details": "ICQ99 ICQ web server build 1701 with \"Active Homepage\" enabled generates allows remote attackers to determine the existence of files on the server by comparing server responses when a file exists (\"404 Forbidden\") versus when a file does not exist (\"404 not found\").", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6234-3hmx-58p6/GHSA-6234-3hmx-58p6.json b/advisories/unreviewed/2022/04/GHSA-6234-3hmx-58p6/GHSA-6234-3hmx-58p6.json index be0d5c93f6a..fa106b5b8ca 100644 --- a/advisories/unreviewed/2022/04/GHSA-6234-3hmx-58p6/GHSA-6234-3hmx-58p6.json +++ b/advisories/unreviewed/2022/04/GHSA-6234-3hmx-58p6/GHSA-6234-3hmx-58p6.json @@ -7,12 +7,8 @@ "CVE-1999-1269" ], "details": "Screen savers in KDE beta 3 allows local users to overwrite arbitrary files via a symlink attack on the .kss.pid file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-63g3-6533-36p6/GHSA-63g3-6533-36p6.json b/advisories/unreviewed/2022/04/GHSA-63g3-6533-36p6/GHSA-63g3-6533-36p6.json index f4daf3c2b04..7b160d4425f 100644 --- a/advisories/unreviewed/2022/04/GHSA-63g3-6533-36p6/GHSA-63g3-6533-36p6.json +++ b/advisories/unreviewed/2022/04/GHSA-63g3-6533-36p6/GHSA-63g3-6533-36p6.json @@ -7,12 +7,8 @@ "CVE-1999-1455" ], "details": "RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authorized host.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-676g-6cqj-884c/GHSA-676g-6cqj-884c.json b/advisories/unreviewed/2022/04/GHSA-676g-6cqj-884c/GHSA-676g-6cqj-884c.json index 2c6ad488002..dd7e76a28e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-676g-6cqj-884c/GHSA-676g-6cqj-884c.json +++ b/advisories/unreviewed/2022/04/GHSA-676g-6cqj-884c/GHSA-676g-6cqj-884c.json @@ -7,12 +7,8 @@ "CVE-1999-1304" ], "details": "Vulnerability in login in SCO UNIX 4.2 and earlier allows local users to gain root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-68wf-hv6w-35mw/GHSA-68wf-hv6w-35mw.json b/advisories/unreviewed/2022/04/GHSA-68wf-hv6w-35mw/GHSA-68wf-hv6w-35mw.json index e8d5d524cbc..44c83f00118 100644 --- a/advisories/unreviewed/2022/04/GHSA-68wf-hv6w-35mw/GHSA-68wf-hv6w-35mw.json +++ b/advisories/unreviewed/2022/04/GHSA-68wf-hv6w-35mw/GHSA-68wf-hv6w-35mw.json @@ -7,12 +7,8 @@ "CVE-1999-1265" ], "details": "SMTP server in SLmail 3.1 and earlier allows remote attackers to cause a denial of service via malformed commands whose arguments begin with a \"(\" (parenthesis) character, such as (1) SEND, (2) VRFY, (3) EXPN, (4) MAIL FROM, (5) RCPT TO.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-69wc-xq49-r64g/GHSA-69wc-xq49-r64g.json b/advisories/unreviewed/2022/04/GHSA-69wc-xq49-r64g/GHSA-69wc-xq49-r64g.json index 452524c803e..f134e2c50be 100644 --- a/advisories/unreviewed/2022/04/GHSA-69wc-xq49-r64g/GHSA-69wc-xq49-r64g.json +++ b/advisories/unreviewed/2022/04/GHSA-69wc-xq49-r64g/GHSA-69wc-xq49-r64g.json @@ -7,12 +7,8 @@ "CVE-1999-1433" ], "details": "HP JetAdmin D.01.09 on Solaris allows local users to change the permissions of arbitrary files via a symlink attack on the /tmp/jetadmin.log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6fm6-5ph4-2rpq/GHSA-6fm6-5ph4-2rpq.json b/advisories/unreviewed/2022/04/GHSA-6fm6-5ph4-2rpq/GHSA-6fm6-5ph4-2rpq.json index 5be80474b9d..f8ad1ee97d1 100644 --- a/advisories/unreviewed/2022/04/GHSA-6fm6-5ph4-2rpq/GHSA-6fm6-5ph4-2rpq.json +++ b/advisories/unreviewed/2022/04/GHSA-6fm6-5ph4-2rpq/GHSA-6fm6-5ph4-2rpq.json @@ -7,12 +7,8 @@ "CVE-1999-1477" ], "details": "Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in programs such as nethack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6h2j-2p74-3pmh/GHSA-6h2j-2p74-3pmh.json b/advisories/unreviewed/2022/04/GHSA-6h2j-2p74-3pmh/GHSA-6h2j-2p74-3pmh.json index 0afe4cbb833..e65e3fccb74 100644 --- a/advisories/unreviewed/2022/04/GHSA-6h2j-2p74-3pmh/GHSA-6h2j-2p74-3pmh.json +++ b/advisories/unreviewed/2022/04/GHSA-6h2j-2p74-3pmh/GHSA-6h2j-2p74-3pmh.json @@ -7,12 +7,8 @@ "CVE-1999-1308" ], "details": "Certain programs in HP-UX 10.20 do not properly handle large user IDs (UID) or group IDs (GID) over 60000, which could allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6j2v-9wjh-8j7w/GHSA-6j2v-9wjh-8j7w.json b/advisories/unreviewed/2022/04/GHSA-6j2v-9wjh-8j7w/GHSA-6j2v-9wjh-8j7w.json index 9b609e2e841..a728d65a334 100644 --- a/advisories/unreviewed/2022/04/GHSA-6j2v-9wjh-8j7w/GHSA-6j2v-9wjh-8j7w.json +++ b/advisories/unreviewed/2022/04/GHSA-6j2v-9wjh-8j7w/GHSA-6j2v-9wjh-8j7w.json @@ -7,12 +7,8 @@ "CVE-1999-1291" ], "details": "TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections by forcing a reset (RST) via a PSH ACK or other means, obtaining the target's last sequence number from the resulting packet, then spoofing a reset to the target.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6ppx-cq5m-vxwq/GHSA-6ppx-cq5m-vxwq.json b/advisories/unreviewed/2022/04/GHSA-6ppx-cq5m-vxwq/GHSA-6ppx-cq5m-vxwq.json index 15865fb563d..946acac9e2e 100644 --- a/advisories/unreviewed/2022/04/GHSA-6ppx-cq5m-vxwq/GHSA-6ppx-cq5m-vxwq.json +++ b/advisories/unreviewed/2022/04/GHSA-6ppx-cq5m-vxwq/GHSA-6ppx-cq5m-vxwq.json @@ -7,12 +7,8 @@ "CVE-1999-1448" ], "details": "Eudora and Eudora Light before 3.05 allows remote attackers to cause a crash and corrupt the user's mailbox via an e-mail message with certain dates, such as (1) dates before 1970, which cause a Divide By Zero error, or (2) dates that are 100 years after the current date, which causes a segmentation fault.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6v6p-c65q-8x22/GHSA-6v6p-c65q-8x22.json b/advisories/unreviewed/2022/04/GHSA-6v6p-c65q-8x22/GHSA-6v6p-c65q-8x22.json index aaf0b72f602..392aa757902 100644 --- a/advisories/unreviewed/2022/04/GHSA-6v6p-c65q-8x22/GHSA-6v6p-c65q-8x22.json +++ b/advisories/unreviewed/2022/04/GHSA-6v6p-c65q-8x22/GHSA-6v6p-c65q-8x22.json @@ -7,12 +7,8 @@ "CVE-1999-1413" ], "details": "Solaris 2.4 before kernel jumbo patch -35 allows set-gid programs to dump core even if the real user id is not in the set-gid group, which allows local users to overwrite or create files at higher privileges by causing a core dump, e.g. through dmesg.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-725f-7jxj-p6wv/GHSA-725f-7jxj-p6wv.json b/advisories/unreviewed/2022/04/GHSA-725f-7jxj-p6wv/GHSA-725f-7jxj-p6wv.json index c7bd9fc849c..e435fedd6d3 100644 --- a/advisories/unreviewed/2022/04/GHSA-725f-7jxj-p6wv/GHSA-725f-7jxj-p6wv.json +++ b/advisories/unreviewed/2022/04/GHSA-725f-7jxj-p6wv/GHSA-725f-7jxj-p6wv.json @@ -7,12 +7,8 @@ "CVE-1999-1281" ], "details": "Development version of Breeze Network Server allows remote attackers to cause the system to reboot by accessing the configbreeze CGI program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-72gc-hjc8-g277/GHSA-72gc-hjc8-g277.json b/advisories/unreviewed/2022/04/GHSA-72gc-hjc8-g277/GHSA-72gc-hjc8-g277.json index 9964985719c..dee9ec5ffe0 100644 --- a/advisories/unreviewed/2022/04/GHSA-72gc-hjc8-g277/GHSA-72gc-hjc8-g277.json +++ b/advisories/unreviewed/2022/04/GHSA-72gc-hjc8-g277/GHSA-72gc-hjc8-g277.json @@ -7,12 +7,8 @@ "CVE-1999-1254" ], "details": "Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-74vh-2872-x5h4/GHSA-74vh-2872-x5h4.json b/advisories/unreviewed/2022/04/GHSA-74vh-2872-x5h4/GHSA-74vh-2872-x5h4.json index 3fb5f72792e..6e948441ede 100644 --- a/advisories/unreviewed/2022/04/GHSA-74vh-2872-x5h4/GHSA-74vh-2872-x5h4.json +++ b/advisories/unreviewed/2022/04/GHSA-74vh-2872-x5h4/GHSA-74vh-2872-x5h4.json @@ -7,12 +7,8 @@ "CVE-1999-1427" ], "details": "Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-74xc-6hpg-hp8m/GHSA-74xc-6hpg-hp8m.json b/advisories/unreviewed/2022/04/GHSA-74xc-6hpg-hp8m/GHSA-74xc-6hpg-hp8m.json index 06e61b27b40..e772da8dee3 100644 --- a/advisories/unreviewed/2022/04/GHSA-74xc-6hpg-hp8m/GHSA-74xc-6hpg-hp8m.json +++ b/advisories/unreviewed/2022/04/GHSA-74xc-6hpg-hp8m/GHSA-74xc-6hpg-hp8m.json @@ -7,12 +7,8 @@ "CVE-1999-1437" ], "details": "ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7697-hr74-2qhh/GHSA-7697-hr74-2qhh.json b/advisories/unreviewed/2022/04/GHSA-7697-hr74-2qhh/GHSA-7697-hr74-2qhh.json index e24f6b88ab0..b5e40580d83 100644 --- a/advisories/unreviewed/2022/04/GHSA-7697-hr74-2qhh/GHSA-7697-hr74-2qhh.json +++ b/advisories/unreviewed/2022/04/GHSA-7697-hr74-2qhh/GHSA-7697-hr74-2qhh.json @@ -7,12 +7,8 @@ "CVE-1999-1484" ], "details": "Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote attacker to execute arbitrary commands via the methods (1) vAddNewsServer or (2) bIsNewsServerConfigured.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-76mc-rpwg-m8ch/GHSA-76mc-rpwg-m8ch.json b/advisories/unreviewed/2022/04/GHSA-76mc-rpwg-m8ch/GHSA-76mc-rpwg-m8ch.json index 54e5460311a..381e31d0bb6 100644 --- a/advisories/unreviewed/2022/04/GHSA-76mc-rpwg-m8ch/GHSA-76mc-rpwg-m8ch.json +++ b/advisories/unreviewed/2022/04/GHSA-76mc-rpwg-m8ch/GHSA-76mc-rpwg-m8ch.json @@ -7,12 +7,8 @@ "CVE-1999-1277" ], "details": "BackWeb client stores the username and password in cleartext for proxy authentication in the Communication registry key, which could allow other local users to gain privileges by reading the password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-76vw-cw53-ph2r/GHSA-76vw-cw53-ph2r.json b/advisories/unreviewed/2022/04/GHSA-76vw-cw53-ph2r/GHSA-76vw-cw53-ph2r.json index 5d0352ff79a..23d6abbce58 100644 --- a/advisories/unreviewed/2022/04/GHSA-76vw-cw53-ph2r/GHSA-76vw-cw53-ph2r.json +++ b/advisories/unreviewed/2022/04/GHSA-76vw-cw53-ph2r/GHSA-76vw-cw53-ph2r.json @@ -7,12 +7,8 @@ "CVE-1999-1440" ], "details": "Win32 ICQ 98a 1.30, and possibly other versions, does not display the entire portion of long filenames, which could allow attackers to send an executable file with a long name that contains so many spaces that the .exe extension is not displayed, which could make the user believe that the file is safe to open from the client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-77p5-wxj2-c3mh/GHSA-77p5-wxj2-c3mh.json b/advisories/unreviewed/2022/04/GHSA-77p5-wxj2-c3mh/GHSA-77p5-wxj2-c3mh.json index 712eacdd8c2..de54251d348 100644 --- a/advisories/unreviewed/2022/04/GHSA-77p5-wxj2-c3mh/GHSA-77p5-wxj2-c3mh.json +++ b/advisories/unreviewed/2022/04/GHSA-77p5-wxj2-c3mh/GHSA-77p5-wxj2-c3mh.json @@ -7,12 +7,8 @@ "CVE-1999-1360" ], "details": "Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was opened in kernel mode, which causes a crash when the kernel attempts to close the handle.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7cw7-fpf7-gx4h/GHSA-7cw7-fpf7-gx4h.json b/advisories/unreviewed/2022/04/GHSA-7cw7-fpf7-gx4h/GHSA-7cw7-fpf7-gx4h.json index 3645342735c..315f7c459d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-7cw7-fpf7-gx4h/GHSA-7cw7-fpf7-gx4h.json +++ b/advisories/unreviewed/2022/04/GHSA-7cw7-fpf7-gx4h/GHSA-7cw7-fpf7-gx4h.json @@ -7,12 +7,8 @@ "CVE-1999-1400" ], "details": "The Economist screen saver 1999 with the \"Password Protected\" option enabled allows users with physical access to the machine to bypass the screen saver and read files by running Internet Explorer while the screen is still locked.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7fw7-4m2q-jp4c/GHSA-7fw7-4m2q-jp4c.json b/advisories/unreviewed/2022/04/GHSA-7fw7-4m2q-jp4c/GHSA-7fw7-4m2q-jp4c.json index 6d57c36c52d..9841f798eb9 100644 --- a/advisories/unreviewed/2022/04/GHSA-7fw7-4m2q-jp4c/GHSA-7fw7-4m2q-jp4c.json +++ b/advisories/unreviewed/2022/04/GHSA-7fw7-4m2q-jp4c/GHSA-7fw7-4m2q-jp4c.json @@ -7,12 +7,8 @@ "CVE-1999-1260" ], "details": "mSQL (Mini SQL) 2.0.6 allows remote attackers to obtain sensitive server information such as logged users, database names, and server version via the ServerStats query.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7hww-85g7-g9hc/GHSA-7hww-85g7-g9hc.json b/advisories/unreviewed/2022/04/GHSA-7hww-85g7-g9hc/GHSA-7hww-85g7-g9hc.json index f22a9e57e69..58d17f64dec 100644 --- a/advisories/unreviewed/2022/04/GHSA-7hww-85g7-g9hc/GHSA-7hww-85g7-g9hc.json +++ b/advisories/unreviewed/2022/04/GHSA-7hww-85g7-g9hc/GHSA-7hww-85g7-g9hc.json @@ -7,12 +7,8 @@ "CVE-1999-1359" ], "details": "When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7mxx-wrm5-32f9/GHSA-7mxx-wrm5-32f9.json b/advisories/unreviewed/2022/04/GHSA-7mxx-wrm5-32f9/GHSA-7mxx-wrm5-32f9.json index b09a541b6ce..ea198b17e74 100644 --- a/advisories/unreviewed/2022/04/GHSA-7mxx-wrm5-32f9/GHSA-7mxx-wrm5-32f9.json +++ b/advisories/unreviewed/2022/04/GHSA-7mxx-wrm5-32f9/GHSA-7mxx-wrm5-32f9.json @@ -7,12 +7,8 @@ "CVE-1999-1275" ], "details": "Lotus cc:Mail release 8 stores the postoffice password in plaintext in a hidden file which has insecure permissions, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7p86-2vjq-95x7/GHSA-7p86-2vjq-95x7.json b/advisories/unreviewed/2022/04/GHSA-7p86-2vjq-95x7/GHSA-7p86-2vjq-95x7.json index 5befa92c791..423044bf900 100644 --- a/advisories/unreviewed/2022/04/GHSA-7p86-2vjq-95x7/GHSA-7p86-2vjq-95x7.json +++ b/advisories/unreviewed/2022/04/GHSA-7p86-2vjq-95x7/GHSA-7p86-2vjq-95x7.json @@ -7,12 +7,8 @@ "CVE-1999-1311" ], "details": "Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7wj8-vvg3-vfw9/GHSA-7wj8-vvg3-vfw9.json b/advisories/unreviewed/2022/04/GHSA-7wj8-vvg3-vfw9/GHSA-7wj8-vvg3-vfw9.json index 77fd1d1b046..f7c0ae6c8bc 100644 --- a/advisories/unreviewed/2022/04/GHSA-7wj8-vvg3-vfw9/GHSA-7wj8-vvg3-vfw9.json +++ b/advisories/unreviewed/2022/04/GHSA-7wj8-vvg3-vfw9/GHSA-7wj8-vvg3-vfw9.json @@ -7,12 +7,8 @@ "CVE-1999-1264" ], "details": "WebRamp M3 router does not disable remote telnet or HTTP access to itself, even when access has been explicitly disabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-842r-9c3w-jrvj/GHSA-842r-9c3w-jrvj.json b/advisories/unreviewed/2022/04/GHSA-842r-9c3w-jrvj/GHSA-842r-9c3w-jrvj.json index 40e882e7853..775e9424b6b 100644 --- a/advisories/unreviewed/2022/04/GHSA-842r-9c3w-jrvj/GHSA-842r-9c3w-jrvj.json +++ b/advisories/unreviewed/2022/04/GHSA-842r-9c3w-jrvj/GHSA-842r-9c3w-jrvj.json @@ -7,12 +7,8 @@ "CVE-1999-1474" ], "details": "PowerPoint 95 and 97 allows remote attackers to cause an application to be run automatically without prompting the user, possibly through the slide show, when the document is opened in browsers such as Internet Explorer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-845h-5p2q-hm98/GHSA-845h-5p2q-hm98.json b/advisories/unreviewed/2022/04/GHSA-845h-5p2q-hm98/GHSA-845h-5p2q-hm98.json index 684288e94b2..c7459435fa1 100644 --- a/advisories/unreviewed/2022/04/GHSA-845h-5p2q-hm98/GHSA-845h-5p2q-hm98.json +++ b/advisories/unreviewed/2022/04/GHSA-845h-5p2q-hm98/GHSA-845h-5p2q-hm98.json @@ -7,12 +7,8 @@ "CVE-1999-1470" ], "details": "Eastman Work Management 3.21 stores passwords in cleartext in the COMMON and LOCATOR registry keys, which could allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-84rw-cmgv-jwfr/GHSA-84rw-cmgv-jwfr.json b/advisories/unreviewed/2022/04/GHSA-84rw-cmgv-jwfr/GHSA-84rw-cmgv-jwfr.json index dfcc4df06ed..69e2691cbf6 100644 --- a/advisories/unreviewed/2022/04/GHSA-84rw-cmgv-jwfr/GHSA-84rw-cmgv-jwfr.json +++ b/advisories/unreviewed/2022/04/GHSA-84rw-cmgv-jwfr/GHSA-84rw-cmgv-jwfr.json @@ -7,12 +7,8 @@ "CVE-1999-1251" ], "details": "Vulnerability in direct audio user space code on HP-UX 10.20 and 10.10 allows local users to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-86r9-xq76-hv9m/GHSA-86r9-xq76-hv9m.json b/advisories/unreviewed/2022/04/GHSA-86r9-xq76-hv9m/GHSA-86r9-xq76-hv9m.json index e522c57880d..e671eb57be0 100644 --- a/advisories/unreviewed/2022/04/GHSA-86r9-xq76-hv9m/GHSA-86r9-xq76-hv9m.json +++ b/advisories/unreviewed/2022/04/GHSA-86r9-xq76-hv9m/GHSA-86r9-xq76-hv9m.json @@ -7,12 +7,8 @@ "CVE-1999-1472" ], "details": "Internet Explorer 4.0 allows remote attackers to read arbitrary text and HTML files on the user's machine via a small IFRAME that uses Dynamic HTML (DHTML) to send the data to the attacker, aka the Freiburg text-viewing issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-89rj-v9gf-rwhm/GHSA-89rj-v9gf-rwhm.json b/advisories/unreviewed/2022/04/GHSA-89rj-v9gf-rwhm/GHSA-89rj-v9gf-rwhm.json index de586bda91e..5cad18b9fe1 100644 --- a/advisories/unreviewed/2022/04/GHSA-89rj-v9gf-rwhm/GHSA-89rj-v9gf-rwhm.json +++ b/advisories/unreviewed/2022/04/GHSA-89rj-v9gf-rwhm/GHSA-89rj-v9gf-rwhm.json @@ -7,12 +7,8 @@ "CVE-1999-1417" ], "details": "Format string vulnerability in AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via encoded % characters in an HTTP request, which is improperly logged.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8c22-q5q8-5fgr/GHSA-8c22-q5q8-5fgr.json b/advisories/unreviewed/2022/04/GHSA-8c22-q5q8-5fgr/GHSA-8c22-q5q8-5fgr.json index bc86ba874b7..1d6508a01b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-8c22-q5q8-5fgr/GHSA-8c22-q5q8-5fgr.json +++ b/advisories/unreviewed/2022/04/GHSA-8c22-q5q8-5fgr/GHSA-8c22-q5q8-5fgr.json @@ -7,12 +7,8 @@ "CVE-1999-1374" ], "details": "perlshop.cgi shopping cart program stores sensitive customer information in directories and files that are under the web root, which allows remote attackers to obtain that information via an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8jgc-f2hf-74fp/GHSA-8jgc-f2hf-74fp.json b/advisories/unreviewed/2022/04/GHSA-8jgc-f2hf-74fp/GHSA-8jgc-f2hf-74fp.json index d067cc773e3..dcc39a406d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-8jgc-f2hf-74fp/GHSA-8jgc-f2hf-74fp.json +++ b/advisories/unreviewed/2022/04/GHSA-8jgc-f2hf-74fp/GHSA-8jgc-f2hf-74fp.json @@ -7,12 +7,8 @@ "CVE-1999-1315" ], "details": "Vulnerabilities in DECnet/OSI for OpenVMS before 5.8 on DEC Alpha AXP and VAX/VMS systems allow local users to gain privileges or cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8m8f-vqxq-q9r6/GHSA-8m8f-vqxq-q9r6.json b/advisories/unreviewed/2022/04/GHSA-8m8f-vqxq-q9r6/GHSA-8m8f-vqxq-q9r6.json index 669495f60eb..114d3504301 100644 --- a/advisories/unreviewed/2022/04/GHSA-8m8f-vqxq-q9r6/GHSA-8m8f-vqxq-q9r6.json +++ b/advisories/unreviewed/2022/04/GHSA-8m8f-vqxq-q9r6/GHSA-8m8f-vqxq-q9r6.json @@ -7,12 +7,8 @@ "CVE-1999-1339" ], "details": "Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.2 with ipfw, allows remote attackers to cause a denial of service (kernel panic) via a ping -R (record route) command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8p4w-cwr7-jq9h/GHSA-8p4w-cwr7-jq9h.json b/advisories/unreviewed/2022/04/GHSA-8p4w-cwr7-jq9h/GHSA-8p4w-cwr7-jq9h.json index d418029776d..890c81c7a8e 100644 --- a/advisories/unreviewed/2022/04/GHSA-8p4w-cwr7-jq9h/GHSA-8p4w-cwr7-jq9h.json +++ b/advisories/unreviewed/2022/04/GHSA-8p4w-cwr7-jq9h/GHSA-8p4w-cwr7-jq9h.json @@ -7,12 +7,8 @@ "CVE-1999-1351" ], "details": "Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the \"Listen to !nick requests\" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8vf6-c57g-m574/GHSA-8vf6-c57g-m574.json b/advisories/unreviewed/2022/04/GHSA-8vf6-c57g-m574/GHSA-8vf6-c57g-m574.json index 8c819476869..e1a54545d08 100644 --- a/advisories/unreviewed/2022/04/GHSA-8vf6-c57g-m574/GHSA-8vf6-c57g-m574.json +++ b/advisories/unreviewed/2022/04/GHSA-8vf6-c57g-m574/GHSA-8vf6-c57g-m574.json @@ -7,12 +7,8 @@ "CVE-1999-1309" ], "details": "Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8w54-76vf-9qxj/GHSA-8w54-76vf-9qxj.json b/advisories/unreviewed/2022/04/GHSA-8w54-76vf-9qxj/GHSA-8w54-76vf-9qxj.json index c44238508ec..51438895390 100644 --- a/advisories/unreviewed/2022/04/GHSA-8w54-76vf-9qxj/GHSA-8w54-76vf-9qxj.json +++ b/advisories/unreviewed/2022/04/GHSA-8w54-76vf-9qxj/GHSA-8w54-76vf-9qxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8xmr-63w7-h7w2/GHSA-8xmr-63w7-h7w2.json b/advisories/unreviewed/2022/04/GHSA-8xmr-63w7-h7w2/GHSA-8xmr-63w7-h7w2.json index 54af00999e9..06cc236b890 100644 --- a/advisories/unreviewed/2022/04/GHSA-8xmr-63w7-h7w2/GHSA-8xmr-63w7-h7w2.json +++ b/advisories/unreviewed/2022/04/GHSA-8xmr-63w7-h7w2/GHSA-8xmr-63w7-h7w2.json @@ -7,12 +7,8 @@ "CVE-1999-1318" ], "details": "/usr/5bin/su in SunOS 4.1.3 and earlier uses a search path that includes the current working directory (.), which allows local users to gain privileges via Trojan horse programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9226-8p5v-w2mm/GHSA-9226-8p5v-w2mm.json b/advisories/unreviewed/2022/04/GHSA-9226-8p5v-w2mm/GHSA-9226-8p5v-w2mm.json index 68272c5881e..29cab320307 100644 --- a/advisories/unreviewed/2022/04/GHSA-9226-8p5v-w2mm/GHSA-9226-8p5v-w2mm.json +++ b/advisories/unreviewed/2022/04/GHSA-9226-8p5v-w2mm/GHSA-9226-8p5v-w2mm.json @@ -7,12 +7,8 @@ "CVE-1999-1300" ], "details": "Vulnerability in accton in Cray UNICOS 6.1 and 6.0 allows local users to read arbitrary files and modify system accounting configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-92rh-3xpw-hjgg/GHSA-92rh-3xpw-hjgg.json b/advisories/unreviewed/2022/04/GHSA-92rh-3xpw-hjgg/GHSA-92rh-3xpw-hjgg.json index 5e4d7bd5d35..d83397100b9 100644 --- a/advisories/unreviewed/2022/04/GHSA-92rh-3xpw-hjgg/GHSA-92rh-3xpw-hjgg.json +++ b/advisories/unreviewed/2022/04/GHSA-92rh-3xpw-hjgg/GHSA-92rh-3xpw-hjgg.json @@ -7,12 +7,8 @@ "CVE-1999-1284" ], "details": "NukeNabber allows remote attackers to cause a denial of service by connecting to the NukeNabber port (1080) without sending any data, which causes the CPU usage to rise to 100% from the report.exe program that is executed upon the connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9342-ghx6-x3q2/GHSA-9342-ghx6-x3q2.json b/advisories/unreviewed/2022/04/GHSA-9342-ghx6-x3q2/GHSA-9342-ghx6-x3q2.json index 3b4ab33e904..01747d53b9f 100644 --- a/advisories/unreviewed/2022/04/GHSA-9342-ghx6-x3q2/GHSA-9342-ghx6-x3q2.json +++ b/advisories/unreviewed/2022/04/GHSA-9342-ghx6-x3q2/GHSA-9342-ghx6-x3q2.json @@ -7,12 +7,8 @@ "CVE-1999-1439" ], "details": "gcc 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary .i, .s, or .o files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-93vw-vqx6-c3wr/GHSA-93vw-vqx6-c3wr.json b/advisories/unreviewed/2022/04/GHSA-93vw-vqx6-c3wr/GHSA-93vw-vqx6-c3wr.json index d2988c1f5c9..624da71fb17 100644 --- a/advisories/unreviewed/2022/04/GHSA-93vw-vqx6-c3wr/GHSA-93vw-vqx6-c3wr.json +++ b/advisories/unreviewed/2022/04/GHSA-93vw-vqx6-c3wr/GHSA-93vw-vqx6-c3wr.json @@ -7,12 +7,8 @@ "CVE-1999-1341" ], "details": "Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-99cm-v3cq-wf9j/GHSA-99cm-v3cq-wf9j.json b/advisories/unreviewed/2022/04/GHSA-99cm-v3cq-wf9j/GHSA-99cm-v3cq-wf9j.json index 85037ba5dcd..dd155eeb281 100644 --- a/advisories/unreviewed/2022/04/GHSA-99cm-v3cq-wf9j/GHSA-99cm-v3cq-wf9j.json +++ b/advisories/unreviewed/2022/04/GHSA-99cm-v3cq-wf9j/GHSA-99cm-v3cq-wf9j.json @@ -7,12 +7,8 @@ "CVE-1999-1246" ], "details": "Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue network share, which has insecure default permissions, allowing remote attackers to read the passwords and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9c3m-wmm8-29hg/GHSA-9c3m-wmm8-29hg.json b/advisories/unreviewed/2022/04/GHSA-9c3m-wmm8-29hg/GHSA-9c3m-wmm8-29hg.json index cb4e6ab4659..8e13aed5d8f 100644 --- a/advisories/unreviewed/2022/04/GHSA-9c3m-wmm8-29hg/GHSA-9c3m-wmm8-29hg.json +++ b/advisories/unreviewed/2022/04/GHSA-9c3m-wmm8-29hg/GHSA-9c3m-wmm8-29hg.json @@ -7,12 +7,8 @@ "CVE-1999-1338" ], "details": "Delegate proxy 5.9.3 and earlier creates files and directories in the DGROOT with world-writable permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9chc-c4xr-3frx/GHSA-9chc-c4xr-3frx.json b/advisories/unreviewed/2022/04/GHSA-9chc-c4xr-3frx/GHSA-9chc-c4xr-3frx.json index 10b34caacc1..a98b9817509 100644 --- a/advisories/unreviewed/2022/04/GHSA-9chc-c4xr-3frx/GHSA-9chc-c4xr-3frx.json +++ b/advisories/unreviewed/2022/04/GHSA-9chc-c4xr-3frx/GHSA-9chc-c4xr-3frx.json @@ -7,12 +7,8 @@ "CVE-1999-1476" ], "details": "A bug in Intel Pentium processor (MMX and Overdrive) allows local users to cause a denial of service (hang) in Intel-based operating systems such as Windows NT and Windows 95, via an invalid instruction, aka the \"Invalid Operand with Locked CMPXCHG8B Instruction\" problem.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9h2r-7wfr-mg4j/GHSA-9h2r-7wfr-mg4j.json b/advisories/unreviewed/2022/04/GHSA-9h2r-7wfr-mg4j/GHSA-9h2r-7wfr-mg4j.json index 5fc98dea8d9..5b884f315c8 100644 --- a/advisories/unreviewed/2022/04/GHSA-9h2r-7wfr-mg4j/GHSA-9h2r-7wfr-mg4j.json +++ b/advisories/unreviewed/2022/04/GHSA-9h2r-7wfr-mg4j/GHSA-9h2r-7wfr-mg4j.json @@ -7,12 +7,8 @@ "CVE-1999-1333" ], "details": "automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be downloaded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9j5c-5cw9-cqxv/GHSA-9j5c-5cw9-cqxv.json b/advisories/unreviewed/2022/04/GHSA-9j5c-5cw9-cqxv/GHSA-9j5c-5cw9-cqxv.json index fd16d338de8..a89a7a22828 100644 --- a/advisories/unreviewed/2022/04/GHSA-9j5c-5cw9-cqxv/GHSA-9j5c-5cw9-cqxv.json +++ b/advisories/unreviewed/2022/04/GHSA-9j5c-5cw9-cqxv/GHSA-9j5c-5cw9-cqxv.json @@ -7,12 +7,8 @@ "CVE-1999-1362" ], "details": "Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9mgc-w22j-v953/GHSA-9mgc-w22j-v953.json b/advisories/unreviewed/2022/04/GHSA-9mgc-w22j-v953/GHSA-9mgc-w22j-v953.json index a5f69fb05ce..6230b713107 100644 --- a/advisories/unreviewed/2022/04/GHSA-9mgc-w22j-v953/GHSA-9mgc-w22j-v953.json +++ b/advisories/unreviewed/2022/04/GHSA-9mgc-w22j-v953/GHSA-9mgc-w22j-v953.json @@ -7,12 +7,8 @@ "CVE-1999-1408" ], "details": "Vulnerability in AIX 4.1.4 and HP-UX 10.01 and 9.05 allows local users to cause a denial of service (crash) by using a socket to connect to a port on the localhost, calling shutdown to clear the socket, then using the same socket to connect to a different port on localhost.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9pmj-mqc2-hx2p/GHSA-9pmj-mqc2-hx2p.json b/advisories/unreviewed/2022/04/GHSA-9pmj-mqc2-hx2p/GHSA-9pmj-mqc2-hx2p.json index f35083b49e3..2146dc8f973 100644 --- a/advisories/unreviewed/2022/04/GHSA-9pmj-mqc2-hx2p/GHSA-9pmj-mqc2-hx2p.json +++ b/advisories/unreviewed/2022/04/GHSA-9pmj-mqc2-hx2p/GHSA-9pmj-mqc2-hx2p.json @@ -7,12 +7,8 @@ "CVE-1999-1468" ], "details": "rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9pwm-wh34-fpxm/GHSA-9pwm-wh34-fpxm.json b/advisories/unreviewed/2022/04/GHSA-9pwm-wh34-fpxm/GHSA-9pwm-wh34-fpxm.json index 1cecb805812..bcd8f3e295a 100644 --- a/advisories/unreviewed/2022/04/GHSA-9pwm-wh34-fpxm/GHSA-9pwm-wh34-fpxm.json +++ b/advisories/unreviewed/2022/04/GHSA-9pwm-wh34-fpxm/GHSA-9pwm-wh34-fpxm.json @@ -7,12 +7,8 @@ "CVE-1999-1334" ], "details": "Multiple buffer overflows in filter command in Elm 2.4 allows attackers to execute arbitrary commands via (1) long From: headers, (2) long Reply-To: headers, or (3) via a long -f (filterfile) command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c2fw-w2fc-pj95/GHSA-c2fw-w2fc-pj95.json b/advisories/unreviewed/2022/04/GHSA-c2fw-w2fc-pj95/GHSA-c2fw-w2fc-pj95.json index ae445aa96ab..a2ef1ac8bae 100644 --- a/advisories/unreviewed/2022/04/GHSA-c2fw-w2fc-pj95/GHSA-c2fw-w2fc-pj95.json +++ b/advisories/unreviewed/2022/04/GHSA-c2fw-w2fc-pj95/GHSA-c2fw-w2fc-pj95.json @@ -7,12 +7,8 @@ "CVE-1999-1361" ], "details": "Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c44g-fjhj-p52w/GHSA-c44g-fjhj-p52w.json b/advisories/unreviewed/2022/04/GHSA-c44g-fjhj-p52w/GHSA-c44g-fjhj-p52w.json index d445062e795..db340ba9261 100644 --- a/advisories/unreviewed/2022/04/GHSA-c44g-fjhj-p52w/GHSA-c44g-fjhj-p52w.json +++ b/advisories/unreviewed/2022/04/GHSA-c44g-fjhj-p52w/GHSA-c44g-fjhj-p52w.json @@ -7,12 +7,8 @@ "CVE-1999-1424" ], "details": "Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c5ww-jjpp-2wr5/GHSA-c5ww-jjpp-2wr5.json b/advisories/unreviewed/2022/04/GHSA-c5ww-jjpp-2wr5/GHSA-c5ww-jjpp-2wr5.json index db5c769ee2d..956164c4878 100644 --- a/advisories/unreviewed/2022/04/GHSA-c5ww-jjpp-2wr5/GHSA-c5ww-jjpp-2wr5.json +++ b/advisories/unreviewed/2022/04/GHSA-c5ww-jjpp-2wr5/GHSA-c5ww-jjpp-2wr5.json @@ -7,12 +7,8 @@ "CVE-1999-1382" ], "details": "NetWare NFS mode 1 and 2 implements the \"Read Only\" flag in Unix by changing the ownership of a file to root, which allows local users to gain root privileges by creating a setuid program and setting it to \"Read Only,\" which NetWare-NFS changes to a setuid root program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c9v3-wqvp-m35p/GHSA-c9v3-wqvp-m35p.json b/advisories/unreviewed/2022/04/GHSA-c9v3-wqvp-m35p/GHSA-c9v3-wqvp-m35p.json index f937ec787dd..023ead626c1 100644 --- a/advisories/unreviewed/2022/04/GHSA-c9v3-wqvp-m35p/GHSA-c9v3-wqvp-m35p.json +++ b/advisories/unreviewed/2022/04/GHSA-c9v3-wqvp-m35p/GHSA-c9v3-wqvp-m35p.json @@ -7,12 +7,8 @@ "CVE-1999-1423" ], "details": "ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-chqh-vf5r-qvxr/GHSA-chqh-vf5r-qvxr.json b/advisories/unreviewed/2022/04/GHSA-chqh-vf5r-qvxr/GHSA-chqh-vf5r-qvxr.json index 91270d53d22..7e155c86f54 100644 --- a/advisories/unreviewed/2022/04/GHSA-chqh-vf5r-qvxr/GHSA-chqh-vf5r-qvxr.json +++ b/advisories/unreviewed/2022/04/GHSA-chqh-vf5r-qvxr/GHSA-chqh-vf5r-qvxr.json @@ -7,12 +7,8 @@ "CVE-1999-1478" ], "details": "The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpot via a URL that includes the [ character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cj49-6c5w-x9hr/GHSA-cj49-6c5w-x9hr.json b/advisories/unreviewed/2022/04/GHSA-cj49-6c5w-x9hr/GHSA-cj49-6c5w-x9hr.json index 6c4cddfefdb..7620da75f73 100644 --- a/advisories/unreviewed/2022/04/GHSA-cj49-6c5w-x9hr/GHSA-cj49-6c5w-x9hr.json +++ b/advisories/unreviewed/2022/04/GHSA-cj49-6c5w-x9hr/GHSA-cj49-6c5w-x9hr.json @@ -7,12 +7,8 @@ "CVE-1999-1376" ], "details": "Buffer overflow in fpcount.exe in IIS 4.0 with FrontPage Server Extensions allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cp39-g35j-7x79/GHSA-cp39-g35j-7x79.json b/advisories/unreviewed/2022/04/GHSA-cp39-g35j-7x79/GHSA-cp39-g35j-7x79.json index 2b4ebdde03f..fbd5b220572 100644 --- a/advisories/unreviewed/2022/04/GHSA-cp39-g35j-7x79/GHSA-cp39-g35j-7x79.json +++ b/advisories/unreviewed/2022/04/GHSA-cp39-g35j-7x79/GHSA-cp39-g35j-7x79.json @@ -7,12 +7,8 @@ "CVE-1999-1266" ], "details": "rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cr84-5qj8-f776/GHSA-cr84-5qj8-f776.json b/advisories/unreviewed/2022/04/GHSA-cr84-5qj8-f776/GHSA-cr84-5qj8-f776.json index 5671dddbe7e..4b7752276fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-cr84-5qj8-f776/GHSA-cr84-5qj8-f776.json +++ b/advisories/unreviewed/2022/04/GHSA-cr84-5qj8-f776/GHSA-cr84-5qj8-f776.json @@ -7,12 +7,8 @@ "CVE-1999-1307" ], "details": "Vulnerability in urestore in Novell UnixWare 1.1 allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-crq7-q2h2-v5r9/GHSA-crq7-q2h2-v5r9.json b/advisories/unreviewed/2022/04/GHSA-crq7-q2h2-v5r9/GHSA-crq7-q2h2-v5r9.json index 74285d241c9..9fed4bf43b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-crq7-q2h2-v5r9/GHSA-crq7-q2h2-v5r9.json +++ b/advisories/unreviewed/2022/04/GHSA-crq7-q2h2-v5r9/GHSA-crq7-q2h2-v5r9.json @@ -7,12 +7,8 @@ "CVE-1999-1296" ], "details": "Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges via a long line in a kerberos configuration file, which can be specified via the KRB_CONF environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cvxv-497g-895g/GHSA-cvxv-497g-895g.json b/advisories/unreviewed/2022/04/GHSA-cvxv-497g-895g/GHSA-cvxv-497g-895g.json index 0b4a6cda25c..55da1579b9f 100644 --- a/advisories/unreviewed/2022/04/GHSA-cvxv-497g-895g/GHSA-cvxv-497g-895g.json +++ b/advisories/unreviewed/2022/04/GHSA-cvxv-497g-895g/GHSA-cvxv-497g-895g.json @@ -7,12 +7,8 @@ "CVE-1999-1435" ], "details": "Buffer overflow in libsocks5 library of Socks 5 (socks5) 1.0r5 allows local users to gain privileges via long environmental variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cwr5-rx58-5m29/GHSA-cwr5-rx58-5m29.json b/advisories/unreviewed/2022/04/GHSA-cwr5-rx58-5m29/GHSA-cwr5-rx58-5m29.json index 471a4077edf..030c35447df 100644 --- a/advisories/unreviewed/2022/04/GHSA-cwr5-rx58-5m29/GHSA-cwr5-rx58-5m29.json +++ b/advisories/unreviewed/2022/04/GHSA-cwr5-rx58-5m29/GHSA-cwr5-rx58-5m29.json @@ -7,12 +7,8 @@ "CVE-1999-1328" ], "details": "linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f286-vvp8-p9v8/GHSA-f286-vvp8-p9v8.json b/advisories/unreviewed/2022/04/GHSA-f286-vvp8-p9v8/GHSA-f286-vvp8-p9v8.json index 5ca3f15dbab..afd4112bc81 100644 --- a/advisories/unreviewed/2022/04/GHSA-f286-vvp8-p9v8/GHSA-f286-vvp8-p9v8.json +++ b/advisories/unreviewed/2022/04/GHSA-f286-vvp8-p9v8/GHSA-f286-vvp8-p9v8.json @@ -7,12 +7,8 @@ "CVE-1999-1416" ], "details": "AnswerBook2 (AB2) web server dwhttpd 3.1a4 allows remote attackers to cause a denial of service (resource exhaustion) via an HTTP POST request with a large content-length.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f34c-2f6w-9c2v/GHSA-f34c-2f6w-9c2v.json b/advisories/unreviewed/2022/04/GHSA-f34c-2f6w-9c2v/GHSA-f34c-2f6w-9c2v.json index d674e0c951e..4acaa417b6f 100644 --- a/advisories/unreviewed/2022/04/GHSA-f34c-2f6w-9c2v/GHSA-f34c-2f6w-9c2v.json +++ b/advisories/unreviewed/2022/04/GHSA-f34c-2f6w-9c2v/GHSA-f34c-2f6w-9c2v.json @@ -7,12 +7,8 @@ "CVE-1999-1451" ], "details": "The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f45g-hj72-h8m6/GHSA-f45g-hj72-h8m6.json b/advisories/unreviewed/2022/04/GHSA-f45g-hj72-h8m6/GHSA-f45g-hj72-h8m6.json index a89bae2d11b..dc5c14735b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-f45g-hj72-h8m6/GHSA-f45g-hj72-h8m6.json +++ b/advisories/unreviewed/2022/04/GHSA-f45g-hj72-h8m6/GHSA-f45g-hj72-h8m6.json @@ -7,12 +7,8 @@ "CVE-1999-1412" ], "details": "A possible interaction between Apple MacOS X release 1.0 and Apache HTTP server allows remote attackers to cause a denial of service (crash) via a flood of HTTP GET requests to CGI programs, which generates a large number of processes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f5gx-fwp6-3mjj/GHSA-f5gx-fwp6-3mjj.json b/advisories/unreviewed/2022/04/GHSA-f5gx-fwp6-3mjj/GHSA-f5gx-fwp6-3mjj.json index fbfaf9bccc2..5e129c0a67e 100644 --- a/advisories/unreviewed/2022/04/GHSA-f5gx-fwp6-3mjj/GHSA-f5gx-fwp6-3mjj.json +++ b/advisories/unreviewed/2022/04/GHSA-f5gx-fwp6-3mjj/GHSA-f5gx-fwp6-3mjj.json @@ -7,12 +7,8 @@ "CVE-1999-1399" ], "details": "spaceball program in SpaceWare 7.3 v1.0 in IRIX 6.2 allows local users to gain root privileges by setting the HOSTNAME environmental variable to contain the commands to be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f5hf-wrxf-wr76/GHSA-f5hf-wrxf-wr76.json b/advisories/unreviewed/2022/04/GHSA-f5hf-wrxf-wr76/GHSA-f5hf-wrxf-wr76.json index 26d1ef6fa43..be579153cad 100644 --- a/advisories/unreviewed/2022/04/GHSA-f5hf-wrxf-wr76/GHSA-f5hf-wrxf-wr76.json +++ b/advisories/unreviewed/2022/04/GHSA-f5hf-wrxf-wr76/GHSA-f5hf-wrxf-wr76.json @@ -7,12 +7,8 @@ "CVE-1999-1466" ], "details": "Vulnerability in Cisco routers versions 8.2 through 9.1 allows remote attackers to bypass access control lists when extended IP access lists are used on certain interfaces, the IP route cache is enabled, and the access list uses the \"established\" keyword.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f6fq-4j2q-5883/GHSA-f6fq-4j2q-5883.json b/advisories/unreviewed/2022/04/GHSA-f6fq-4j2q-5883/GHSA-f6fq-4j2q-5883.json index 27270598298..329e719d8f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-f6fq-4j2q-5883/GHSA-f6fq-4j2q-5883.json +++ b/advisories/unreviewed/2022/04/GHSA-f6fq-4j2q-5883/GHSA-f6fq-4j2q-5883.json @@ -7,12 +7,8 @@ "CVE-1999-1395" ], "details": "Vulnerability in Monitor utility (SYS$SHARE:SPISHR.EXE) in VMS 5.0 through 5.4-2 allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f7wg-pwf9-wgf9/GHSA-f7wg-pwf9-wgf9.json b/advisories/unreviewed/2022/04/GHSA-f7wg-pwf9-wgf9/GHSA-f7wg-pwf9-wgf9.json index 10de8f09fd0..b6249e17082 100644 --- a/advisories/unreviewed/2022/04/GHSA-f7wg-pwf9-wgf9/GHSA-f7wg-pwf9-wgf9.json +++ b/advisories/unreviewed/2022/04/GHSA-f7wg-pwf9-wgf9/GHSA-f7wg-pwf9-wgf9.json @@ -7,12 +7,8 @@ "CVE-1999-1394" ], "details": "BSD 4.4 based operating systems, when running at security level 1, allow the root user to clear the immutable and append-only flags for files by unmounting the file system and using a file system editor such as fsdb to directly modify the file through a device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f93q-j94r-7jf6/GHSA-f93q-j94r-7jf6.json b/advisories/unreviewed/2022/04/GHSA-f93q-j94r-7jf6/GHSA-f93q-j94r-7jf6.json index ffc3d458e76..c6f406bbc83 100644 --- a/advisories/unreviewed/2022/04/GHSA-f93q-j94r-7jf6/GHSA-f93q-j94r-7jf6.json +++ b/advisories/unreviewed/2022/04/GHSA-f93q-j94r-7jf6/GHSA-f93q-j94r-7jf6.json @@ -7,12 +7,8 @@ "CVE-1999-1343" ], "details": "HTTP server for Xerox DocuColor 4 LP allows remote attackers to cause a denial of service (hang) via a long URL that contains a large number of . characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f955-6xjg-749h/GHSA-f955-6xjg-749h.json b/advisories/unreviewed/2022/04/GHSA-f955-6xjg-749h/GHSA-f955-6xjg-749h.json index 5fe4f15675c..2c1c3196725 100644 --- a/advisories/unreviewed/2022/04/GHSA-f955-6xjg-749h/GHSA-f955-6xjg-749h.json +++ b/advisories/unreviewed/2022/04/GHSA-f955-6xjg-749h/GHSA-f955-6xjg-749h.json @@ -7,12 +7,8 @@ "CVE-1999-1332" ], "details": "gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a symlink attack on a temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f974-p775-h8x3/GHSA-f974-p775-h8x3.json b/advisories/unreviewed/2022/04/GHSA-f974-p775-h8x3/GHSA-f974-p775-h8x3.json index dc6be3aad8c..5e0364460a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-f974-p775-h8x3/GHSA-f974-p775-h8x3.json +++ b/advisories/unreviewed/2022/04/GHSA-f974-p775-h8x3/GHSA-f974-p775-h8x3.json @@ -7,12 +7,8 @@ "CVE-1999-1287" ], "details": "Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ffq3-gg7h-pv97/GHSA-ffq3-gg7h-pv97.json b/advisories/unreviewed/2022/04/GHSA-ffq3-gg7h-pv97/GHSA-ffq3-gg7h-pv97.json index 390a29a982b..463b538f1c7 100644 --- a/advisories/unreviewed/2022/04/GHSA-ffq3-gg7h-pv97/GHSA-ffq3-gg7h-pv97.json +++ b/advisories/unreviewed/2022/04/GHSA-ffq3-gg7h-pv97/GHSA-ffq3-gg7h-pv97.json @@ -7,12 +7,8 @@ "CVE-1999-1443" ], "details": "Micah Software Full Armor Network Configurator and Zero Administration allow local users with physical access to bypass the desktop protection by (1) using and kill the process using the task manager, (2) booting the system from a separate disk, or (3) interrupting certain processes that execute while the system is booting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fgh9-68h7-45xw/GHSA-fgh9-68h7-45xw.json b/advisories/unreviewed/2022/04/GHSA-fgh9-68h7-45xw/GHSA-fgh9-68h7-45xw.json index be1e7c64b49..07f5c8d2212 100644 --- a/advisories/unreviewed/2022/04/GHSA-fgh9-68h7-45xw/GHSA-fgh9-68h7-45xw.json +++ b/advisories/unreviewed/2022/04/GHSA-fgh9-68h7-45xw/GHSA-fgh9-68h7-45xw.json @@ -7,12 +7,8 @@ "CVE-1999-1317" ], "details": "Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \\?? object folder using a different case letter (upper or lower) to point to a different device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fgjq-3p83-f8mv/GHSA-fgjq-3p83-f8mv.json b/advisories/unreviewed/2022/04/GHSA-fgjq-3p83-f8mv/GHSA-fgjq-3p83-f8mv.json index f8e239cc1fa..f6009238fcf 100644 --- a/advisories/unreviewed/2022/04/GHSA-fgjq-3p83-f8mv/GHSA-fgjq-3p83-f8mv.json +++ b/advisories/unreviewed/2022/04/GHSA-fgjq-3p83-f8mv/GHSA-fgjq-3p83-f8mv.json @@ -7,12 +7,8 @@ "CVE-1999-1429" ], "details": "DIT TransferPro installs devices with world-readable and world-writable permissions, which could allow local users to damage disks through the ff device driver.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fhpv-q3gg-mgm5/GHSA-fhpv-q3gg-mgm5.json b/advisories/unreviewed/2022/04/GHSA-fhpv-q3gg-mgm5/GHSA-fhpv-q3gg-mgm5.json index f8c9fc73b35..d7ee182eb92 100644 --- a/advisories/unreviewed/2022/04/GHSA-fhpv-q3gg-mgm5/GHSA-fhpv-q3gg-mgm5.json +++ b/advisories/unreviewed/2022/04/GHSA-fhpv-q3gg-mgm5/GHSA-fhpv-q3gg-mgm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fjfv-h3pg-m257/GHSA-fjfv-h3pg-m257.json b/advisories/unreviewed/2022/04/GHSA-fjfv-h3pg-m257/GHSA-fjfv-h3pg-m257.json index 8421dcf457a..011843f146f 100644 --- a/advisories/unreviewed/2022/04/GHSA-fjfv-h3pg-m257/GHSA-fjfv-h3pg-m257.json +++ b/advisories/unreviewed/2022/04/GHSA-fjfv-h3pg-m257/GHSA-fjfv-h3pg-m257.json @@ -7,12 +7,8 @@ "CVE-1999-1487" ], "details": "Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fp9p-w9h2-prmq/GHSA-fp9p-w9h2-prmq.json b/advisories/unreviewed/2022/04/GHSA-fp9p-w9h2-prmq/GHSA-fp9p-w9h2-prmq.json index 83cf98628c8..772ae4b5d46 100644 --- a/advisories/unreviewed/2022/04/GHSA-fp9p-w9h2-prmq/GHSA-fp9p-w9h2-prmq.json +++ b/advisories/unreviewed/2022/04/GHSA-fp9p-w9h2-prmq/GHSA-fp9p-w9h2-prmq.json @@ -7,12 +7,8 @@ "CVE-1999-1415" ], "details": "Vulnerability in /usr/bin/mail in DEC ULTRIX before 4.2 allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fpj3-2577-2q59/GHSA-fpj3-2577-2q59.json b/advisories/unreviewed/2022/04/GHSA-fpj3-2577-2q59/GHSA-fpj3-2577-2q59.json index bfde2288503..6edb07fdf85 100644 --- a/advisories/unreviewed/2022/04/GHSA-fpj3-2577-2q59/GHSA-fpj3-2577-2q59.json +++ b/advisories/unreviewed/2022/04/GHSA-fpj3-2577-2q59/GHSA-fpj3-2577-2q59.json @@ -7,12 +7,8 @@ "CVE-1999-1245" ], "details": "vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fr5w-v8vm-m563/GHSA-fr5w-v8vm-m563.json b/advisories/unreviewed/2022/04/GHSA-fr5w-v8vm-m563/GHSA-fr5w-v8vm-m563.json index 5ef43e3f73b..1fe4fbf2471 100644 --- a/advisories/unreviewed/2022/04/GHSA-fr5w-v8vm-m563/GHSA-fr5w-v8vm-m563.json +++ b/advisories/unreviewed/2022/04/GHSA-fr5w-v8vm-m563/GHSA-fr5w-v8vm-m563.json @@ -7,12 +7,8 @@ "CVE-1999-1305" ], "details": "Vulnerability in \"at\" program in SCO UNIX 4.2 and earlier allows local users to gain root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-frc4-j6xj-vg8w/GHSA-frc4-j6xj-vg8w.json b/advisories/unreviewed/2022/04/GHSA-frc4-j6xj-vg8w/GHSA-frc4-j6xj-vg8w.json index a0a46fcb51f..45d331d68ca 100644 --- a/advisories/unreviewed/2022/04/GHSA-frc4-j6xj-vg8w/GHSA-frc4-j6xj-vg8w.json +++ b/advisories/unreviewed/2022/04/GHSA-frc4-j6xj-vg8w/GHSA-frc4-j6xj-vg8w.json @@ -7,12 +7,8 @@ "CVE-1999-1444" ], "details": "genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent in cleartext.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-frq9-hfh5-8mmm/GHSA-frq9-hfh5-8mmm.json b/advisories/unreviewed/2022/04/GHSA-frq9-hfh5-8mmm/GHSA-frq9-hfh5-8mmm.json index b7c4ddd1552..87c0fe1223f 100644 --- a/advisories/unreviewed/2022/04/GHSA-frq9-hfh5-8mmm/GHSA-frq9-hfh5-8mmm.json +++ b/advisories/unreviewed/2022/04/GHSA-frq9-hfh5-8mmm/GHSA-frq9-hfh5-8mmm.json @@ -7,12 +7,8 @@ "CVE-1999-1425" ], "details": "Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fvpp-xm28-64rv/GHSA-fvpp-xm28-64rv.json b/advisories/unreviewed/2022/04/GHSA-fvpp-xm28-64rv/GHSA-fvpp-xm28-64rv.json index 9bba29fb33f..11ab6527d26 100644 --- a/advisories/unreviewed/2022/04/GHSA-fvpp-xm28-64rv/GHSA-fvpp-xm28-64rv.json +++ b/advisories/unreviewed/2022/04/GHSA-fvpp-xm28-64rv/GHSA-fvpp-xm28-64rv.json @@ -7,12 +7,8 @@ "CVE-1999-1381" ], "details": "Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fw7f-pf5w-h543/GHSA-fw7f-pf5w-h543.json b/advisories/unreviewed/2022/04/GHSA-fw7f-pf5w-h543/GHSA-fw7f-pf5w-h543.json index 39cf0f0461b..5b80a1a6db9 100644 --- a/advisories/unreviewed/2022/04/GHSA-fw7f-pf5w-h543/GHSA-fw7f-pf5w-h543.json +++ b/advisories/unreviewed/2022/04/GHSA-fw7f-pf5w-h543/GHSA-fw7f-pf5w-h543.json @@ -7,12 +7,8 @@ "CVE-1999-1458" ], "details": "Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fwqm-q5x9-cvjv/GHSA-fwqm-q5x9-cvjv.json b/advisories/unreviewed/2022/04/GHSA-fwqm-q5x9-cvjv/GHSA-fwqm-q5x9-cvjv.json index 9c926882c71..b883be8781e 100644 --- a/advisories/unreviewed/2022/04/GHSA-fwqm-q5x9-cvjv/GHSA-fwqm-q5x9-cvjv.json +++ b/advisories/unreviewed/2022/04/GHSA-fwqm-q5x9-cvjv/GHSA-fwqm-q5x9-cvjv.json @@ -7,12 +7,8 @@ "CVE-1999-1462" ], "details": "Vulnerability in bb-hist.sh CGI History module in Big Brother 1.09b and 1.09c allows remote attackers to read portions of arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-fx2h-93c2-339q/GHSA-fx2h-93c2-339q.json b/advisories/unreviewed/2022/04/GHSA-fx2h-93c2-339q/GHSA-fx2h-93c2-339q.json index e1b8359a1aa..dc18db0c418 100644 --- a/advisories/unreviewed/2022/04/GHSA-fx2h-93c2-339q/GHSA-fx2h-93c2-339q.json +++ b/advisories/unreviewed/2022/04/GHSA-fx2h-93c2-339q/GHSA-fx2h-93c2-339q.json @@ -7,12 +7,8 @@ "CVE-1999-1481" ], "details": "Squid 2.2.STABLE5 and below, when using external authentication, allows attackers to bypass access controls via a newline in the user/password pair.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g25h-9w3g-vppm/GHSA-g25h-9w3g-vppm.json b/advisories/unreviewed/2022/04/GHSA-g25h-9w3g-vppm/GHSA-g25h-9w3g-vppm.json index ede58cd4e41..4c24dbfbd1d 100644 --- a/advisories/unreviewed/2022/04/GHSA-g25h-9w3g-vppm/GHSA-g25h-9w3g-vppm.json +++ b/advisories/unreviewed/2022/04/GHSA-g25h-9w3g-vppm/GHSA-g25h-9w3g-vppm.json @@ -7,12 +7,8 @@ "CVE-1999-1445" ], "details": "Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g5wr-v48w-5f62/GHSA-g5wr-v48w-5f62.json b/advisories/unreviewed/2022/04/GHSA-g5wr-v48w-5f62/GHSA-g5wr-v48w-5f62.json index a1fd4aa477a..b02fe197edb 100644 --- a/advisories/unreviewed/2022/04/GHSA-g5wr-v48w-5f62/GHSA-g5wr-v48w-5f62.json +++ b/advisories/unreviewed/2022/04/GHSA-g5wr-v48w-5f62/GHSA-g5wr-v48w-5f62.json @@ -7,12 +7,8 @@ "CVE-1999-1290" ], "details": "Buffer overflow in nftp FTP client version 1.40 allows remote malicious FTP servers to cause a denial of service, and possibly execute arbitrary commands, via a long response string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g7p2-5qfp-frgm/GHSA-g7p2-5qfp-frgm.json b/advisories/unreviewed/2022/04/GHSA-g7p2-5qfp-frgm/GHSA-g7p2-5qfp-frgm.json index 37c6f5cb3f7..b4f2b690a39 100644 --- a/advisories/unreviewed/2022/04/GHSA-g7p2-5qfp-frgm/GHSA-g7p2-5qfp-frgm.json +++ b/advisories/unreviewed/2022/04/GHSA-g7p2-5qfp-frgm/GHSA-g7p2-5qfp-frgm.json @@ -7,12 +7,8 @@ "CVE-1999-1371" ], "details": "Buffer overflow in /usr/bin/write in Solaris 2.6 and 7 allows local users to gain privileges via a long string in the terminal name argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g8mj-5558-mwh7/GHSA-g8mj-5558-mwh7.json b/advisories/unreviewed/2022/04/GHSA-g8mj-5558-mwh7/GHSA-g8mj-5558-mwh7.json index e5bfcddac10..994b3cb395b 100644 --- a/advisories/unreviewed/2022/04/GHSA-g8mj-5558-mwh7/GHSA-g8mj-5558-mwh7.json +++ b/advisories/unreviewed/2022/04/GHSA-g8mj-5558-mwh7/GHSA-g8mj-5558-mwh7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "WEB", diff --git a/advisories/unreviewed/2022/04/GHSA-g99h-x72r-vvwf/GHSA-g99h-x72r-vvwf.json b/advisories/unreviewed/2022/04/GHSA-g99h-x72r-vvwf/GHSA-g99h-x72r-vvwf.json index 3de02d78137..4ec02f338a9 100644 --- a/advisories/unreviewed/2022/04/GHSA-g99h-x72r-vvwf/GHSA-g99h-x72r-vvwf.json +++ b/advisories/unreviewed/2022/04/GHSA-g99h-x72r-vvwf/GHSA-g99h-x72r-vvwf.json @@ -7,12 +7,8 @@ "CVE-1999-1267" ], "details": "KDE file manager (kfm) uses a TCP server for certain file operations, which allows remote attackers to modify arbitrary files by sending a copy command to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g9fg-7hcw-v5h7/GHSA-g9fg-7hcw-v5h7.json b/advisories/unreviewed/2022/04/GHSA-g9fg-7hcw-v5h7/GHSA-g9fg-7hcw-v5h7.json index 17a09cf1586..eaf210e48b3 100644 --- a/advisories/unreviewed/2022/04/GHSA-g9fg-7hcw-v5h7/GHSA-g9fg-7hcw-v5h7.json +++ b/advisories/unreviewed/2022/04/GHSA-g9fg-7hcw-v5h7/GHSA-g9fg-7hcw-v5h7.json @@ -7,12 +7,8 @@ "CVE-1999-1428" ], "details": "Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gcvv-4h27-hqp8/GHSA-gcvv-4h27-hqp8.json b/advisories/unreviewed/2022/04/GHSA-gcvv-4h27-hqp8/GHSA-gcvv-4h27-hqp8.json index 0e9a740f844..004e75e45c3 100644 --- a/advisories/unreviewed/2022/04/GHSA-gcvv-4h27-hqp8/GHSA-gcvv-4h27-hqp8.json +++ b/advisories/unreviewed/2022/04/GHSA-gcvv-4h27-hqp8/GHSA-gcvv-4h27-hqp8.json @@ -7,12 +7,8 @@ "CVE-1999-1405" ], "details": "snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gf33-x5h5-m638/GHSA-gf33-x5h5-m638.json b/advisories/unreviewed/2022/04/GHSA-gf33-x5h5-m638/GHSA-gf33-x5h5-m638.json index e8406b11454..8be56b2f8ba 100644 --- a/advisories/unreviewed/2022/04/GHSA-gf33-x5h5-m638/GHSA-gf33-x5h5-m638.json +++ b/advisories/unreviewed/2022/04/GHSA-gf33-x5h5-m638/GHSA-gf33-x5h5-m638.json @@ -7,12 +7,8 @@ "CVE-1999-1434" ], "details": "login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gfhx-4m9p-4j98/GHSA-gfhx-4m9p-4j98.json b/advisories/unreviewed/2022/04/GHSA-gfhx-4m9p-4j98/GHSA-gfhx-4m9p-4j98.json index e85fa097077..0b6b855f111 100644 --- a/advisories/unreviewed/2022/04/GHSA-gfhx-4m9p-4j98/GHSA-gfhx-4m9p-4j98.json +++ b/advisories/unreviewed/2022/04/GHSA-gfhx-4m9p-4j98/GHSA-gfhx-4m9p-4j98.json @@ -7,12 +7,8 @@ "CVE-1999-1256" ], "details": "Oracle Database Assistant 1.0 in Oracle 8.0.3 Enterprise Edition stores the database master password in plaintext in the spoolmain.log file when a new database is created, which allows local users to obtain the password from that file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ggrx-fw3j-gvr2/GHSA-ggrx-fw3j-gvr2.json b/advisories/unreviewed/2022/04/GHSA-ggrx-fw3j-gvr2/GHSA-ggrx-fw3j-gvr2.json index 369dae3a926..c5617d4670a 100644 --- a/advisories/unreviewed/2022/04/GHSA-ggrx-fw3j-gvr2/GHSA-ggrx-fw3j-gvr2.json +++ b/advisories/unreviewed/2022/04/GHSA-ggrx-fw3j-gvr2/GHSA-ggrx-fw3j-gvr2.json @@ -7,12 +7,8 @@ "CVE-1999-1268" ], "details": "Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gh96-8q4m-h947/GHSA-gh96-8q4m-h947.json b/advisories/unreviewed/2022/04/GHSA-gh96-8q4m-h947/GHSA-gh96-8q4m-h947.json index 28d2231cdd3..8a196375a03 100644 --- a/advisories/unreviewed/2022/04/GHSA-gh96-8q4m-h947/GHSA-gh96-8q4m-h947.json +++ b/advisories/unreviewed/2022/04/GHSA-gh96-8q4m-h947/GHSA-gh96-8q4m-h947.json @@ -7,12 +7,8 @@ "CVE-1999-1393" ], "details": "Control Panel \"Password Security\" option for Apple Powerbooks allows attackers with physical access to the machine to bypass the security by booting it with an emergency startup disk and using a disk editor to modify the on/off toggle or password in the aaaaaaaAPWD file, which is normally inaccessible.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ghqf-fqhj-vv6p/GHSA-ghqf-fqhj-vv6p.json b/advisories/unreviewed/2022/04/GHSA-ghqf-fqhj-vv6p/GHSA-ghqf-fqhj-vv6p.json index c89dda11649..b4f74ba5d18 100644 --- a/advisories/unreviewed/2022/04/GHSA-ghqf-fqhj-vv6p/GHSA-ghqf-fqhj-vv6p.json +++ b/advisories/unreviewed/2022/04/GHSA-ghqf-fqhj-vv6p/GHSA-ghqf-fqhj-vv6p.json @@ -7,12 +7,8 @@ "CVE-1999-1479" ], "details": "The textcounter.pl by Matt Wright allows remote attackers to execute arbitrary commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gph4-8wj3-3mgr/GHSA-gph4-8wj3-3mgr.json b/advisories/unreviewed/2022/04/GHSA-gph4-8wj3-3mgr/GHSA-gph4-8wj3-3mgr.json index f24af931bb6..959de0bf3af 100644 --- a/advisories/unreviewed/2022/04/GHSA-gph4-8wj3-3mgr/GHSA-gph4-8wj3-3mgr.json +++ b/advisories/unreviewed/2022/04/GHSA-gph4-8wj3-3mgr/GHSA-gph4-8wj3-3mgr.json @@ -7,12 +7,8 @@ "CVE-1999-1485" ], "details": "nsd in IRIX 6.5 through 6.5.2 exports a virtual filesystem on a UDP port, which allows remote attackers to view files and cause a possible denial of service by mounting the nsd virtual file system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-grpf-xfq7-g359/GHSA-grpf-xfq7-g359.json b/advisories/unreviewed/2022/04/GHSA-grpf-xfq7-g359/GHSA-grpf-xfq7-g359.json index 1e201e7af6b..b9b24f2bec1 100644 --- a/advisories/unreviewed/2022/04/GHSA-grpf-xfq7-g359/GHSA-grpf-xfq7-g359.json +++ b/advisories/unreviewed/2022/04/GHSA-grpf-xfq7-g359/GHSA-grpf-xfq7-g359.json @@ -7,12 +7,8 @@ "CVE-1999-1370" ], "details": "The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prevent the scheduled execution of security-critical programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h2pr-xxm8-wv36/GHSA-h2pr-xxm8-wv36.json b/advisories/unreviewed/2022/04/GHSA-h2pr-xxm8-wv36/GHSA-h2pr-xxm8-wv36.json index 91d8f61fc93..2239b757007 100644 --- a/advisories/unreviewed/2022/04/GHSA-h2pr-xxm8-wv36/GHSA-h2pr-xxm8-wv36.json +++ b/advisories/unreviewed/2022/04/GHSA-h2pr-xxm8-wv36/GHSA-h2pr-xxm8-wv36.json @@ -7,12 +7,8 @@ "CVE-1999-1299" ], "details": "rcp on various Linux systems including Red Hat 4.0 allows a \"nobody\" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h5h5-2g79-99ch/GHSA-h5h5-2g79-99ch.json b/advisories/unreviewed/2022/04/GHSA-h5h5-2g79-99ch/GHSA-h5h5-2g79-99ch.json index 361c763e2f1..8d3ce6462c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-h5h5-2g79-99ch/GHSA-h5h5-2g79-99ch.json +++ b/advisories/unreviewed/2022/04/GHSA-h5h5-2g79-99ch/GHSA-h5h5-2g79-99ch.json @@ -7,12 +7,8 @@ "CVE-1999-1372" ], "details": "Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h62g-pw84-r8x8/GHSA-h62g-pw84-r8x8.json b/advisories/unreviewed/2022/04/GHSA-h62g-pw84-r8x8/GHSA-h62g-pw84-r8x8.json index 81849e18051..038fda70240 100644 --- a/advisories/unreviewed/2022/04/GHSA-h62g-pw84-r8x8/GHSA-h62g-pw84-r8x8.json +++ b/advisories/unreviewed/2022/04/GHSA-h62g-pw84-r8x8/GHSA-h62g-pw84-r8x8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-h7hf-jwxg-6q4v/GHSA-h7hf-jwxg-6q4v.json b/advisories/unreviewed/2022/04/GHSA-h7hf-jwxg-6q4v/GHSA-h7hf-jwxg-6q4v.json index ea161836c1c..a686dc1da06 100644 --- a/advisories/unreviewed/2022/04/GHSA-h7hf-jwxg-6q4v/GHSA-h7hf-jwxg-6q4v.json +++ b/advisories/unreviewed/2022/04/GHSA-h7hf-jwxg-6q4v/GHSA-h7hf-jwxg-6q4v.json @@ -7,12 +7,8 @@ "CVE-1999-1449" ], "details": "SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h93v-m49q-355g/GHSA-h93v-m49q-355g.json b/advisories/unreviewed/2022/04/GHSA-h93v-m49q-355g/GHSA-h93v-m49q-355g.json index 76090119d5f..c5c8527315c 100644 --- a/advisories/unreviewed/2022/04/GHSA-h93v-m49q-355g/GHSA-h93v-m49q-355g.json +++ b/advisories/unreviewed/2022/04/GHSA-h93v-m49q-355g/GHSA-h93v-m49q-355g.json @@ -7,12 +7,8 @@ "CVE-1999-1366" ], "details": "Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h9g2-x4rf-46v3/GHSA-h9g2-x4rf-46v3.json b/advisories/unreviewed/2022/04/GHSA-h9g2-x4rf-46v3/GHSA-h9g2-x4rf-46v3.json index 3d5b3b56233..188fa67fad0 100644 --- a/advisories/unreviewed/2022/04/GHSA-h9g2-x4rf-46v3/GHSA-h9g2-x4rf-46v3.json +++ b/advisories/unreviewed/2022/04/GHSA-h9g2-x4rf-46v3/GHSA-h9g2-x4rf-46v3.json @@ -7,12 +7,8 @@ "CVE-1999-1364" ], "details": "Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h9h2-mfx3-9xhg/GHSA-h9h2-mfx3-9xhg.json b/advisories/unreviewed/2022/04/GHSA-h9h2-mfx3-9xhg/GHSA-h9h2-mfx3-9xhg.json index 6877f17a4a8..bf403c1c72a 100644 --- a/advisories/unreviewed/2022/04/GHSA-h9h2-mfx3-9xhg/GHSA-h9h2-mfx3-9xhg.json +++ b/advisories/unreviewed/2022/04/GHSA-h9h2-mfx3-9xhg/GHSA-h9h2-mfx3-9xhg.json @@ -7,12 +7,8 @@ "CVE-1999-1347" ], "details": "Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hcf8-4449-wvrr/GHSA-hcf8-4449-wvrr.json b/advisories/unreviewed/2022/04/GHSA-hcf8-4449-wvrr/GHSA-hcf8-4449-wvrr.json index dffc8c73a7d..4b34818557b 100644 --- a/advisories/unreviewed/2022/04/GHSA-hcf8-4449-wvrr/GHSA-hcf8-4449-wvrr.json +++ b/advisories/unreviewed/2022/04/GHSA-hcf8-4449-wvrr/GHSA-hcf8-4449-wvrr.json @@ -7,12 +7,8 @@ "CVE-1999-1278" ], "details": "nlog CGI scripts do not properly filter shell metacharacters from the IP address argument, which could allow remote attackers to execute certain commands via (1) nlog-smb.pl or (2) rpc-nlog.pl.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hj3p-73jp-r547/GHSA-hj3p-73jp-r547.json b/advisories/unreviewed/2022/04/GHSA-hj3p-73jp-r547/GHSA-hj3p-73jp-r547.json index 672828e2951..b64b6713b55 100644 --- a/advisories/unreviewed/2022/04/GHSA-hj3p-73jp-r547/GHSA-hj3p-73jp-r547.json +++ b/advisories/unreviewed/2022/04/GHSA-hj3p-73jp-r547/GHSA-hj3p-73jp-r547.json @@ -7,12 +7,8 @@ "CVE-1999-1411" ], "details": "The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hv9m-2rcj-rh9v/GHSA-hv9m-2rcj-rh9v.json b/advisories/unreviewed/2022/04/GHSA-hv9m-2rcj-rh9v/GHSA-hv9m-2rcj-rh9v.json index 4b380f38ec6..16cd63e7ce4 100644 --- a/advisories/unreviewed/2022/04/GHSA-hv9m-2rcj-rh9v/GHSA-hv9m-2rcj-rh9v.json +++ b/advisories/unreviewed/2022/04/GHSA-hv9m-2rcj-rh9v/GHSA-hv9m-2rcj-rh9v.json @@ -7,12 +7,8 @@ "CVE-1999-1349" ], "details": "NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hvvc-66wm-g462/GHSA-hvvc-66wm-g462.json b/advisories/unreviewed/2022/04/GHSA-hvvc-66wm-g462/GHSA-hvvc-66wm-g462.json index a075c30d9b2..82bd9ae6825 100644 --- a/advisories/unreviewed/2022/04/GHSA-hvvc-66wm-g462/GHSA-hvvc-66wm-g462.json +++ b/advisories/unreviewed/2022/04/GHSA-hvvc-66wm-g462/GHSA-hvvc-66wm-g462.json @@ -7,12 +7,8 @@ "CVE-1999-1414" ], "details": "IBM Netfinity Remote Control allows local users to gain administrator privileges by starting programs from the process manager, which runs with system level privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hvvr-gqpw-hwhw/GHSA-hvvr-gqpw-hwhw.json b/advisories/unreviewed/2022/04/GHSA-hvvr-gqpw-hwhw/GHSA-hvvr-gqpw-hwhw.json index 6c9e6b09a22..2db1cc8be0a 100644 --- a/advisories/unreviewed/2022/04/GHSA-hvvr-gqpw-hwhw/GHSA-hvvr-gqpw-hwhw.json +++ b/advisories/unreviewed/2022/04/GHSA-hvvr-gqpw-hwhw/GHSA-hvvr-gqpw-hwhw.json @@ -7,12 +7,8 @@ "CVE-1999-1292" ], "details": "Buffer overflow in web administration feature of Kolban Webcam32 4.8.3 and earlier allows remote attackers to execute arbitrary commands via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hwj6-4xgp-2fx7/GHSA-hwj6-4xgp-2fx7.json b/advisories/unreviewed/2022/04/GHSA-hwj6-4xgp-2fx7/GHSA-hwj6-4xgp-2fx7.json index dbcc448d500..682ac3d8864 100644 --- a/advisories/unreviewed/2022/04/GHSA-hwj6-4xgp-2fx7/GHSA-hwj6-4xgp-2fx7.json +++ b/advisories/unreviewed/2022/04/GHSA-hwj6-4xgp-2fx7/GHSA-hwj6-4xgp-2fx7.json @@ -7,12 +7,8 @@ "CVE-1999-1323" ], "details": "Norton AntiVirus for Internet Email Gateways (NAVIEG) 1.0.1.7 and earlier, and Norton AntiVirus for MS Exchange (NAVMSE) 1.5 and earlier, store the administrator password in cleartext in (1) the navieg.ini file for NAVIEG, and (2) the ModifyPassword registry key in NAVMSE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j5w8-q6hm-5q59/GHSA-j5w8-q6hm-5q59.json b/advisories/unreviewed/2022/04/GHSA-j5w8-q6hm-5q59/GHSA-j5w8-q6hm-5q59.json index cb75b8552b1..cd8d6c8607b 100644 --- a/advisories/unreviewed/2022/04/GHSA-j5w8-q6hm-5q59/GHSA-j5w8-q6hm-5q59.json +++ b/advisories/unreviewed/2022/04/GHSA-j5w8-q6hm-5q59/GHSA-j5w8-q6hm-5q59.json @@ -7,12 +7,8 @@ "CVE-1999-1460" ], "details": "BMC PATROL SNMP Agent before 3.2.07 allows local users to create arbitrary world-writeable files as root by specifying the target file as the second argument to the snmpmagt program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j6gg-6m7m-vhpf/GHSA-j6gg-6m7m-vhpf.json b/advisories/unreviewed/2022/04/GHSA-j6gg-6m7m-vhpf/GHSA-j6gg-6m7m-vhpf.json index 5201d8edf8e..af00cefeaa7 100644 --- a/advisories/unreviewed/2022/04/GHSA-j6gg-6m7m-vhpf/GHSA-j6gg-6m7m-vhpf.json +++ b/advisories/unreviewed/2022/04/GHSA-j6gg-6m7m-vhpf/GHSA-j6gg-6m7m-vhpf.json @@ -7,12 +7,8 @@ "CVE-1999-1337" ], "details": "FTP client in Midnight Commander (mc) before 4.5.11 stores usernames and passwords for visited sites in plaintext in the world-readable history file, which allows other local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j7q2-439r-63fw/GHSA-j7q2-439r-63fw.json b/advisories/unreviewed/2022/04/GHSA-j7q2-439r-63fw/GHSA-j7q2-439r-63fw.json index 64ca44efd65..80908cb5836 100644 --- a/advisories/unreviewed/2022/04/GHSA-j7q2-439r-63fw/GHSA-j7q2-439r-63fw.json +++ b/advisories/unreviewed/2022/04/GHSA-j7q2-439r-63fw/GHSA-j7q2-439r-63fw.json @@ -7,12 +7,8 @@ "CVE-1999-1456" ], "details": "thttpd HTTP server 2.03 and earlier allows remote attackers to read arbitrary files via a GET request with more than one leading / (slash) character in the filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jcrv-cvh4-phpv/GHSA-jcrv-cvh4-phpv.json b/advisories/unreviewed/2022/04/GHSA-jcrv-cvh4-phpv/GHSA-jcrv-cvh4-phpv.json index 6b04bf6e7f6..3252a9ff9b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-jcrv-cvh4-phpv/GHSA-jcrv-cvh4-phpv.json +++ b/advisories/unreviewed/2022/04/GHSA-jcrv-cvh4-phpv/GHSA-jcrv-cvh4-phpv.json @@ -7,12 +7,8 @@ "CVE-1999-1350" ], "details": "ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jgj2-qg73-9762/GHSA-jgj2-qg73-9762.json b/advisories/unreviewed/2022/04/GHSA-jgj2-qg73-9762/GHSA-jgj2-qg73-9762.json index 8bb261c6a1c..92c4d5dda55 100644 --- a/advisories/unreviewed/2022/04/GHSA-jgj2-qg73-9762/GHSA-jgj2-qg73-9762.json +++ b/advisories/unreviewed/2022/04/GHSA-jgj2-qg73-9762/GHSA-jgj2-qg73-9762.json @@ -7,12 +7,8 @@ "CVE-1999-1436" ], "details": "Ray Chan WWW Authorization Gateway 0.1 CGI program allows remote attackers to execute arbitrary commands via shell metacharacters in the \"user\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jgwm-wr7r-95q6/GHSA-jgwm-wr7r-95q6.json b/advisories/unreviewed/2022/04/GHSA-jgwm-wr7r-95q6/GHSA-jgwm-wr7r-95q6.json index cad16686688..b36d0255bca 100644 --- a/advisories/unreviewed/2022/04/GHSA-jgwm-wr7r-95q6/GHSA-jgwm-wr7r-95q6.json +++ b/advisories/unreviewed/2022/04/GHSA-jgwm-wr7r-95q6/GHSA-jgwm-wr7r-95q6.json @@ -7,12 +7,8 @@ "CVE-1999-1464" ], "details": "Vulnerability in Cisco IOS 11.1CC and 11.1CT with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled interface to an interface that does not have DFS enabled, as described by Cisco bug CSCdk35564.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jm5h-qhv5-56m7/GHSA-jm5h-qhv5-56m7.json b/advisories/unreviewed/2022/04/GHSA-jm5h-qhv5-56m7/GHSA-jm5h-qhv5-56m7.json index 56eee84b072..bb1139fa27f 100644 --- a/advisories/unreviewed/2022/04/GHSA-jm5h-qhv5-56m7/GHSA-jm5h-qhv5-56m7.json +++ b/advisories/unreviewed/2022/04/GHSA-jm5h-qhv5-56m7/GHSA-jm5h-qhv5-56m7.json @@ -7,12 +7,8 @@ "CVE-1999-1325" ], "details": "SAS System 5.18 on VAX/VMS is installed with insecure permissions for its directories and startup file, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jp54-jmhh-2qc4/GHSA-jp54-jmhh-2qc4.json b/advisories/unreviewed/2022/04/GHSA-jp54-jmhh-2qc4/GHSA-jp54-jmhh-2qc4.json index 913fa7eef1f..060b874cc19 100644 --- a/advisories/unreviewed/2022/04/GHSA-jp54-jmhh-2qc4/GHSA-jp54-jmhh-2qc4.json +++ b/advisories/unreviewed/2022/04/GHSA-jp54-jmhh-2qc4/GHSA-jp54-jmhh-2qc4.json @@ -7,12 +7,8 @@ "CVE-1999-1391" ], "details": "Vulnerability in NeXT 1.0a and 1.0 with publicly accessible printers allows local users to gain privileges via a combination of the npd program and weak directory permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jqvh-rvpj-hvpw/GHSA-jqvh-rvpj-hvpw.json b/advisories/unreviewed/2022/04/GHSA-jqvh-rvpj-hvpw/GHSA-jqvh-rvpj-hvpw.json index e2f18ed1ba4..e7cb94cae31 100644 --- a/advisories/unreviewed/2022/04/GHSA-jqvh-rvpj-hvpw/GHSA-jqvh-rvpj-hvpw.json +++ b/advisories/unreviewed/2022/04/GHSA-jqvh-rvpj-hvpw/GHSA-jqvh-rvpj-hvpw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-jrh5-22mj-9x88/GHSA-jrh5-22mj-9x88.json b/advisories/unreviewed/2022/04/GHSA-jrh5-22mj-9x88/GHSA-jrh5-22mj-9x88.json index 457ec19486b..eab921d12bf 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrh5-22mj-9x88/GHSA-jrh5-22mj-9x88.json +++ b/advisories/unreviewed/2022/04/GHSA-jrh5-22mj-9x88/GHSA-jrh5-22mj-9x88.json @@ -7,12 +7,8 @@ "CVE-1999-1274" ], "details": "iPass RoamServer 3.1 creates temporary files with world-writable permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jw5c-qccp-53r4/GHSA-jw5c-qccp-53r4.json b/advisories/unreviewed/2022/04/GHSA-jw5c-qccp-53r4/GHSA-jw5c-qccp-53r4.json index 80d2973728b..c3db5bb4384 100644 --- a/advisories/unreviewed/2022/04/GHSA-jw5c-qccp-53r4/GHSA-jw5c-qccp-53r4.json +++ b/advisories/unreviewed/2022/04/GHSA-jw5c-qccp-53r4/GHSA-jw5c-qccp-53r4.json @@ -7,12 +7,8 @@ "CVE-1999-1345" ], "details": "Auto_FTP.pl script in Auto_FTP 0.2 uses the /tmp/ftp_tmp as a shared directory with insecure permissions, which allows local users to (1) send arbitrary files to the remote server by placing them in the directory, and (2) view files that are being transferred.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4fw-6g2w-g44w/GHSA-m4fw-6g2w-g44w.json b/advisories/unreviewed/2022/04/GHSA-m4fw-6g2w-g44w/GHSA-m4fw-6g2w-g44w.json index 187e2246b4e..f006eac4fca 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4fw-6g2w-g44w/GHSA-m4fw-6g2w-g44w.json +++ b/advisories/unreviewed/2022/04/GHSA-m4fw-6g2w-g44w/GHSA-m4fw-6g2w-g44w.json @@ -7,12 +7,8 @@ "CVE-1999-1358" ], "details": "When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4rh-5wpc-fv8r/GHSA-m4rh-5wpc-fv8r.json b/advisories/unreviewed/2022/04/GHSA-m4rh-5wpc-fv8r/GHSA-m4rh-5wpc-fv8r.json index 89cc411ab83..9063862b847 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4rh-5wpc-fv8r/GHSA-m4rh-5wpc-fv8r.json +++ b/advisories/unreviewed/2022/04/GHSA-m4rh-5wpc-fv8r/GHSA-m4rh-5wpc-fv8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-m7p3-x2g8-59r3/GHSA-m7p3-x2g8-59r3.json b/advisories/unreviewed/2022/04/GHSA-m7p3-x2g8-59r3/GHSA-m7p3-x2g8-59r3.json index 9b4b6d79511..c649f750ba0 100644 --- a/advisories/unreviewed/2022/04/GHSA-m7p3-x2g8-59r3/GHSA-m7p3-x2g8-59r3.json +++ b/advisories/unreviewed/2022/04/GHSA-m7p3-x2g8-59r3/GHSA-m7p3-x2g8-59r3.json @@ -7,12 +7,8 @@ "CVE-1999-1276" ], "details": "fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m7q8-jmgx-5r5x/GHSA-m7q8-jmgx-5r5x.json b/advisories/unreviewed/2022/04/GHSA-m7q8-jmgx-5r5x/GHSA-m7q8-jmgx-5r5x.json index 7bf76183a98..5dc9b758879 100644 --- a/advisories/unreviewed/2022/04/GHSA-m7q8-jmgx-5r5x/GHSA-m7q8-jmgx-5r5x.json +++ b/advisories/unreviewed/2022/04/GHSA-m7q8-jmgx-5r5x/GHSA-m7q8-jmgx-5r5x.json @@ -7,12 +7,8 @@ "CVE-1999-1327" ], "details": "Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.1 allows local users to gain root privileges via a long LANG environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m9pv-rhw7-3fh9/GHSA-m9pv-rhw7-3fh9.json b/advisories/unreviewed/2022/04/GHSA-m9pv-rhw7-3fh9/GHSA-m9pv-rhw7-3fh9.json index e19b6c364f9..a205dd10431 100644 --- a/advisories/unreviewed/2022/04/GHSA-m9pv-rhw7-3fh9/GHSA-m9pv-rhw7-3fh9.json +++ b/advisories/unreviewed/2022/04/GHSA-m9pv-rhw7-3fh9/GHSA-m9pv-rhw7-3fh9.json @@ -7,12 +7,8 @@ "CVE-1999-1316" ], "details": "Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mg8q-h427-34h6/GHSA-mg8q-h427-34h6.json b/advisories/unreviewed/2022/04/GHSA-mg8q-h427-34h6/GHSA-mg8q-h427-34h6.json index 94e2bef3946..f1dc35a2488 100644 --- a/advisories/unreviewed/2022/04/GHSA-mg8q-h427-34h6/GHSA-mg8q-h427-34h6.json +++ b/advisories/unreviewed/2022/04/GHSA-mg8q-h427-34h6/GHSA-mg8q-h427-34h6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mh54-rc24-qv85/GHSA-mh54-rc24-qv85.json b/advisories/unreviewed/2022/04/GHSA-mh54-rc24-qv85/GHSA-mh54-rc24-qv85.json index 2e36e935665..5284c80d052 100644 --- a/advisories/unreviewed/2022/04/GHSA-mh54-rc24-qv85/GHSA-mh54-rc24-qv85.json +++ b/advisories/unreviewed/2022/04/GHSA-mh54-rc24-qv85/GHSA-mh54-rc24-qv85.json @@ -7,12 +7,8 @@ "CVE-1999-1483" ], "details": "Buffer overflow in zgv in svgalib 1.2.10 and earlier allows local users to execute arbitrary code via a long HOME environment variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mjmw-j964-hfpm/GHSA-mjmw-j964-hfpm.json b/advisories/unreviewed/2022/04/GHSA-mjmw-j964-hfpm/GHSA-mjmw-j964-hfpm.json index 4e3bbdbc3de..929ee8aafbd 100644 --- a/advisories/unreviewed/2022/04/GHSA-mjmw-j964-hfpm/GHSA-mjmw-j964-hfpm.json +++ b/advisories/unreviewed/2022/04/GHSA-mjmw-j964-hfpm/GHSA-mjmw-j964-hfpm.json @@ -7,12 +7,8 @@ "CVE-1999-1406" ], "details": "dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (crash) by redirecting fd 1 (stdout) to the kernel.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mm2p-fxrp-6xhj/GHSA-mm2p-fxrp-6xhj.json b/advisories/unreviewed/2022/04/GHSA-mm2p-fxrp-6xhj/GHSA-mm2p-fxrp-6xhj.json index bf139d4449d..2f837bc8492 100644 --- a/advisories/unreviewed/2022/04/GHSA-mm2p-fxrp-6xhj/GHSA-mm2p-fxrp-6xhj.json +++ b/advisories/unreviewed/2022/04/GHSA-mm2p-fxrp-6xhj/GHSA-mm2p-fxrp-6xhj.json @@ -7,12 +7,8 @@ "CVE-1999-1390" ], "details": "suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mv62-jpgw-4vgg/GHSA-mv62-jpgw-4vgg.json b/advisories/unreviewed/2022/04/GHSA-mv62-jpgw-4vgg/GHSA-mv62-jpgw-4vgg.json index ed9a8bbc0a3..c6a5bb8fa59 100644 --- a/advisories/unreviewed/2022/04/GHSA-mv62-jpgw-4vgg/GHSA-mv62-jpgw-4vgg.json +++ b/advisories/unreviewed/2022/04/GHSA-mv62-jpgw-4vgg/GHSA-mv62-jpgw-4vgg.json @@ -7,12 +7,8 @@ "CVE-1999-1469" ], "details": "Buffer overflow in w3-auth CGI program in miniSQL package allows remote attackers to execute arbitrary commands via an HTTP request with (1) a long URL, or (2) a long User-Agent MIME header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mvmr-6989-3jmp/GHSA-mvmr-6989-3jmp.json b/advisories/unreviewed/2022/04/GHSA-mvmr-6989-3jmp/GHSA-mvmr-6989-3jmp.json index 82e44668401..dff8e3e877f 100644 --- a/advisories/unreviewed/2022/04/GHSA-mvmr-6989-3jmp/GHSA-mvmr-6989-3jmp.json +++ b/advisories/unreviewed/2022/04/GHSA-mvmr-6989-3jmp/GHSA-mvmr-6989-3jmp.json @@ -7,12 +7,8 @@ "CVE-1999-1392" ], "details": "Vulnerability in restore0.9 installation script in NeXT 1.0a and 1.0 allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mvwf-xw7r-mvpr/GHSA-mvwf-xw7r-mvpr.json b/advisories/unreviewed/2022/04/GHSA-mvwf-xw7r-mvpr/GHSA-mvwf-xw7r-mvpr.json index 0c1e0347d96..f988bd4c78d 100644 --- a/advisories/unreviewed/2022/04/GHSA-mvwf-xw7r-mvpr/GHSA-mvwf-xw7r-mvpr.json +++ b/advisories/unreviewed/2022/04/GHSA-mvwf-xw7r-mvpr/GHSA-mvwf-xw7r-mvpr.json @@ -7,12 +7,8 @@ "CVE-1999-1490" ], "details": "xosview 1.5.1 in Red Hat 5.1 allows local users to gain root access via a long HOME environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mx98-35q5-x9rj/GHSA-mx98-35q5-x9rj.json b/advisories/unreviewed/2022/04/GHSA-mx98-35q5-x9rj/GHSA-mx98-35q5-x9rj.json index e1ae5f662f8..33cd699be8e 100644 --- a/advisories/unreviewed/2022/04/GHSA-mx98-35q5-x9rj/GHSA-mx98-35q5-x9rj.json +++ b/advisories/unreviewed/2022/04/GHSA-mx98-35q5-x9rj/GHSA-mx98-35q5-x9rj.json @@ -7,12 +7,8 @@ "CVE-1999-1353" ], "details": "Nosque MsgCore 2.14 stores passwords in cleartext: (1) the administrator password in the AdmPasswd registry key, and (2) user passwords in the Userbase.dbf data file, which could allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p343-wh48-8mvf/GHSA-p343-wh48-8mvf.json b/advisories/unreviewed/2022/04/GHSA-p343-wh48-8mvf/GHSA-p343-wh48-8mvf.json index d20001c3000..8fb72edba14 100644 --- a/advisories/unreviewed/2022/04/GHSA-p343-wh48-8mvf/GHSA-p343-wh48-8mvf.json +++ b/advisories/unreviewed/2022/04/GHSA-p343-wh48-8mvf/GHSA-p343-wh48-8mvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-p5mv-6mvr-j99h/GHSA-p5mv-6mvr-j99h.json b/advisories/unreviewed/2022/04/GHSA-p5mv-6mvr-j99h/GHSA-p5mv-6mvr-j99h.json index cf0cd0ac651..5ddc242a86d 100644 --- a/advisories/unreviewed/2022/04/GHSA-p5mv-6mvr-j99h/GHSA-p5mv-6mvr-j99h.json +++ b/advisories/unreviewed/2022/04/GHSA-p5mv-6mvr-j99h/GHSA-p5mv-6mvr-j99h.json @@ -7,12 +7,8 @@ "CVE-1999-1356" ], "details": "Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pjw4-g8gx-f3vw/GHSA-pjw4-g8gx-f3vw.json b/advisories/unreviewed/2022/04/GHSA-pjw4-g8gx-f3vw/GHSA-pjw4-g8gx-f3vw.json index 4b759e7fbc0..71233b724e5 100644 --- a/advisories/unreviewed/2022/04/GHSA-pjw4-g8gx-f3vw/GHSA-pjw4-g8gx-f3vw.json +++ b/advisories/unreviewed/2022/04/GHSA-pjw4-g8gx-f3vw/GHSA-pjw4-g8gx-f3vw.json @@ -7,12 +7,8 @@ "CVE-1999-1488" ], "details": "sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pr33-x2p7-6w2x/GHSA-pr33-x2p7-6w2x.json b/advisories/unreviewed/2022/04/GHSA-pr33-x2p7-6w2x/GHSA-pr33-x2p7-6w2x.json index c416ff2b557..d4146c7638c 100644 --- a/advisories/unreviewed/2022/04/GHSA-pr33-x2p7-6w2x/GHSA-pr33-x2p7-6w2x.json +++ b/advisories/unreviewed/2022/04/GHSA-pr33-x2p7-6w2x/GHSA-pr33-x2p7-6w2x.json @@ -7,12 +7,8 @@ "CVE-1999-1335" ], "details": "snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read and write sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-prwq-fx78-ppf8/GHSA-prwq-fx78-ppf8.json b/advisories/unreviewed/2022/04/GHSA-prwq-fx78-ppf8/GHSA-prwq-fx78-ppf8.json index b645d06d5ab..559f1b2c581 100644 --- a/advisories/unreviewed/2022/04/GHSA-prwq-fx78-ppf8/GHSA-prwq-fx78-ppf8.json +++ b/advisories/unreviewed/2022/04/GHSA-prwq-fx78-ppf8/GHSA-prwq-fx78-ppf8.json @@ -7,12 +7,8 @@ "CVE-1999-1432" ], "details": "Power management (Powermanagement) on Solaris 2.4 through 2.6 does not start the xlock process until after the sys-suspend has completed, which allows an attacker with physical access to input characters to the last active application from the keyboard for a short period after the system is restoring, which could lead to increased privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-px2w-hxv5-5ppw/GHSA-px2w-hxv5-5ppw.json b/advisories/unreviewed/2022/04/GHSA-px2w-hxv5-5ppw/GHSA-px2w-hxv5-5ppw.json index f707c2a1c68..291e03a19a9 100644 --- a/advisories/unreviewed/2022/04/GHSA-px2w-hxv5-5ppw/GHSA-px2w-hxv5-5ppw.json +++ b/advisories/unreviewed/2022/04/GHSA-px2w-hxv5-5ppw/GHSA-px2w-hxv5-5ppw.json @@ -7,12 +7,8 @@ "CVE-1999-1283" ], "details": "Opera 3.2.1 allows remote attackers to cause a denial of service (application crash) via a URL that contains an extra / in the http:// tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q74x-f7gq-p3xf/GHSA-q74x-f7gq-p3xf.json b/advisories/unreviewed/2022/04/GHSA-q74x-f7gq-p3xf/GHSA-q74x-f7gq-p3xf.json index 1208c989ee9..f9f377e8bc5 100644 --- a/advisories/unreviewed/2022/04/GHSA-q74x-f7gq-p3xf/GHSA-q74x-f7gq-p3xf.json +++ b/advisories/unreviewed/2022/04/GHSA-q74x-f7gq-p3xf/GHSA-q74x-f7gq-p3xf.json @@ -7,12 +7,8 @@ "CVE-1999-1377" ], "details": "Matt Wright's download.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q7hj-hx26-wwww/GHSA-q7hj-hx26-wwww.json b/advisories/unreviewed/2022/04/GHSA-q7hj-hx26-wwww/GHSA-q7hj-hx26-wwww.json index d850f9ef641..da6976d32d9 100644 --- a/advisories/unreviewed/2022/04/GHSA-q7hj-hx26-wwww/GHSA-q7hj-hx26-wwww.json +++ b/advisories/unreviewed/2022/04/GHSA-q7hj-hx26-wwww/GHSA-q7hj-hx26-wwww.json @@ -7,12 +7,8 @@ "CVE-1999-1431" ], "details": "ZAK in Appstation mode allows users to bypass the \"Run only allowed apps\" policy by starting Explorer from Office 97 applications (such as Word), installing software into the TEMP directory, and changing the name to that for an allowed application, such as Winword.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qcjm-8xhv-v66h/GHSA-qcjm-8xhv-v66h.json b/advisories/unreviewed/2022/04/GHSA-qcjm-8xhv-v66h/GHSA-qcjm-8xhv-v66h.json index 11e95731229..fb6b6fd9351 100644 --- a/advisories/unreviewed/2022/04/GHSA-qcjm-8xhv-v66h/GHSA-qcjm-8xhv-v66h.json +++ b/advisories/unreviewed/2022/04/GHSA-qcjm-8xhv-v66h/GHSA-qcjm-8xhv-v66h.json @@ -7,12 +7,8 @@ "CVE-1999-1258" ], "details": "rpc.pwdauthd in SunOS 4.1.1 and earlier does not properly prevent remote access to the daemon, which allows remote attackers to obtain sensitive system information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qcqp-mmmc-3pj9/GHSA-qcqp-mmmc-3pj9.json b/advisories/unreviewed/2022/04/GHSA-qcqp-mmmc-3pj9/GHSA-qcqp-mmmc-3pj9.json index d1ffaa63720..213d5f0fb8e 100644 --- a/advisories/unreviewed/2022/04/GHSA-qcqp-mmmc-3pj9/GHSA-qcqp-mmmc-3pj9.json +++ b/advisories/unreviewed/2022/04/GHSA-qcqp-mmmc-3pj9/GHSA-qcqp-mmmc-3pj9.json @@ -7,12 +7,8 @@ "CVE-1999-1331" ], "details": "netcfg 2.16-1 in Red Hat Linux 4.2 allows the Ethernet interface to be controlled by users on reboot when an option is set, which allows local users to cause a denial of service by shutting down the interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qg2h-h5g9-2m4x/GHSA-qg2h-h5g9-2m4x.json b/advisories/unreviewed/2022/04/GHSA-qg2h-h5g9-2m4x/GHSA-qg2h-h5g9-2m4x.json index 3b6753dc532..74d93492a9d 100644 --- a/advisories/unreviewed/2022/04/GHSA-qg2h-h5g9-2m4x/GHSA-qg2h-h5g9-2m4x.json +++ b/advisories/unreviewed/2022/04/GHSA-qg2h-h5g9-2m4x/GHSA-qg2h-h5g9-2m4x.json @@ -7,12 +7,8 @@ "CVE-1999-1421" ], "details": "NBase switches NH208 and NH215 run a TFTP server which allows remote attackers to send software updates to modify the switch or cause a denial of service (crash) by guessing the target filenames, which have default names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qgqh-3fh5-37xc/GHSA-qgqh-3fh5-37xc.json b/advisories/unreviewed/2022/04/GHSA-qgqh-3fh5-37xc/GHSA-qgqh-3fh5-37xc.json index cb1d7c02050..d3ae69b3fb5 100644 --- a/advisories/unreviewed/2022/04/GHSA-qgqh-3fh5-37xc/GHSA-qgqh-3fh5-37xc.json +++ b/advisories/unreviewed/2022/04/GHSA-qgqh-3fh5-37xc/GHSA-qgqh-3fh5-37xc.json @@ -7,12 +7,8 @@ "CVE-1999-1368" ], "details": "AV Option for MS Exchange Server option for InoculateIT 4.53, and possibly other versions, only scans the Inbox folder tree of a Microsoft Exchange server, which could allow viruses to escape detection if a user's rules cause the message to be moved to a different mailbox.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qjhq-gxx8-8fq8/GHSA-qjhq-gxx8-8fq8.json b/advisories/unreviewed/2022/04/GHSA-qjhq-gxx8-8fq8/GHSA-qjhq-gxx8-8fq8.json index a926b67e74c..b38945fec5e 100644 --- a/advisories/unreviewed/2022/04/GHSA-qjhq-gxx8-8fq8/GHSA-qjhq-gxx8-8fq8.json +++ b/advisories/unreviewed/2022/04/GHSA-qjhq-gxx8-8fq8/GHSA-qjhq-gxx8-8fq8.json @@ -7,12 +7,8 @@ "CVE-1999-1388" ], "details": "passwd in SunOS 4.1.x allows local users to overwrite arbitrary files via a symlink attack and the -F command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qjqx-h284-wx2f/GHSA-qjqx-h284-wx2f.json b/advisories/unreviewed/2022/04/GHSA-qjqx-h284-wx2f/GHSA-qjqx-h284-wx2f.json index f8ed07d6497..86ffb4482a9 100644 --- a/advisories/unreviewed/2022/04/GHSA-qjqx-h284-wx2f/GHSA-qjqx-h284-wx2f.json +++ b/advisories/unreviewed/2022/04/GHSA-qjqx-h284-wx2f/GHSA-qjqx-h284-wx2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-qmhx-84gq-mqf3/GHSA-qmhx-84gq-mqf3.json b/advisories/unreviewed/2022/04/GHSA-qmhx-84gq-mqf3/GHSA-qmhx-84gq-mqf3.json index 3ab16e44b9a..d103eab2756 100644 --- a/advisories/unreviewed/2022/04/GHSA-qmhx-84gq-mqf3/GHSA-qmhx-84gq-mqf3.json +++ b/advisories/unreviewed/2022/04/GHSA-qmhx-84gq-mqf3/GHSA-qmhx-84gq-mqf3.json @@ -7,12 +7,8 @@ "CVE-1999-1355" ], "details": "BMC Patrol component, when installed with Compaq Insight Management Agent 4.23 and earlier, or Management Agents for Servers 4.40 and earlier, creates a PFCUser account with a default password and potentially dangerous privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qwqh-r8x8-wh6j/GHSA-qwqh-r8x8-wh6j.json b/advisories/unreviewed/2022/04/GHSA-qwqh-r8x8-wh6j/GHSA-qwqh-r8x8-wh6j.json index 178bb49c691..80682c098d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-qwqh-r8x8-wh6j/GHSA-qwqh-r8x8-wh6j.json +++ b/advisories/unreviewed/2022/04/GHSA-qwqh-r8x8-wh6j/GHSA-qwqh-r8x8-wh6j.json @@ -7,12 +7,8 @@ "CVE-1999-1285" ], "details": "Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffer from a random device (e.g. /dev/urandom), which cannot be interrupted until the read has completed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r2f7-pcrq-mgm9/GHSA-r2f7-pcrq-mgm9.json b/advisories/unreviewed/2022/04/GHSA-r2f7-pcrq-mgm9/GHSA-r2f7-pcrq-mgm9.json index 3104e5dbb41..42c58cae780 100644 --- a/advisories/unreviewed/2022/04/GHSA-r2f7-pcrq-mgm9/GHSA-r2f7-pcrq-mgm9.json +++ b/advisories/unreviewed/2022/04/GHSA-r2f7-pcrq-mgm9/GHSA-r2f7-pcrq-mgm9.json @@ -7,12 +7,8 @@ "CVE-1999-1363" ], "details": "Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r372-p99p-584j/GHSA-r372-p99p-584j.json b/advisories/unreviewed/2022/04/GHSA-r372-p99p-584j/GHSA-r372-p99p-584j.json index 2dcc0f21cfa..fdb340e068e 100644 --- a/advisories/unreviewed/2022/04/GHSA-r372-p99p-584j/GHSA-r372-p99p-584j.json +++ b/advisories/unreviewed/2022/04/GHSA-r372-p99p-584j/GHSA-r372-p99p-584j.json @@ -7,12 +7,8 @@ "CVE-1999-1482" ], "details": "SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r6rp-8fmx-4m58/GHSA-r6rp-8fmx-4m58.json b/advisories/unreviewed/2022/04/GHSA-r6rp-8fmx-4m58/GHSA-r6rp-8fmx-4m58.json index e1fdbe3d07a..d9b7235a8ab 100644 --- a/advisories/unreviewed/2022/04/GHSA-r6rp-8fmx-4m58/GHSA-r6rp-8fmx-4m58.json +++ b/advisories/unreviewed/2022/04/GHSA-r6rp-8fmx-4m58/GHSA-r6rp-8fmx-4m58.json @@ -7,12 +7,8 @@ "CVE-1999-1336" ], "details": "3Com HiPer Access Router Card (HiperARC) 4.0 through 4.2.29 allows remote attackers to cause a denial of service (reboot) via a flood of IAC packets to the telnet port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r7r6-4c9p-66r6/GHSA-r7r6-4c9p-66r6.json b/advisories/unreviewed/2022/04/GHSA-r7r6-4c9p-66r6/GHSA-r7r6-4c9p-66r6.json index 6809c3eb416..a7cb4e3c052 100644 --- a/advisories/unreviewed/2022/04/GHSA-r7r6-4c9p-66r6/GHSA-r7r6-4c9p-66r6.json +++ b/advisories/unreviewed/2022/04/GHSA-r7r6-4c9p-66r6/GHSA-r7r6-4c9p-66r6.json @@ -7,12 +7,8 @@ "CVE-1999-1398" ], "details": "Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rc2p-chmj-rg4f/GHSA-rc2p-chmj-rg4f.json b/advisories/unreviewed/2022/04/GHSA-rc2p-chmj-rg4f/GHSA-rc2p-chmj-rg4f.json index 68a6fdfc405..fdb3fdd770c 100644 --- a/advisories/unreviewed/2022/04/GHSA-rc2p-chmj-rg4f/GHSA-rc2p-chmj-rg4f.json +++ b/advisories/unreviewed/2022/04/GHSA-rc2p-chmj-rg4f/GHSA-rc2p-chmj-rg4f.json @@ -7,12 +7,8 @@ "CVE-1999-1320" ], "details": "Vulnerability in Novell NetWare 3.x and earlier allows local users to gain privileges via packet spoofing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rc67-55r7-m84c/GHSA-rc67-55r7-m84c.json b/advisories/unreviewed/2022/04/GHSA-rc67-55r7-m84c/GHSA-rc67-55r7-m84c.json index 3de201109bd..f76dcbbcd97 100644 --- a/advisories/unreviewed/2022/04/GHSA-rc67-55r7-m84c/GHSA-rc67-55r7-m84c.json +++ b/advisories/unreviewed/2022/04/GHSA-rc67-55r7-m84c/GHSA-rc67-55r7-m84c.json @@ -7,12 +7,8 @@ "CVE-1999-1419" ], "details": "Buffer overflow in nss_nisplus.so.1 library in NIS+ in Solaris 2.3 and 2.4 allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rc82-f234-qr88/GHSA-rc82-f234-qr88.json b/advisories/unreviewed/2022/04/GHSA-rc82-f234-qr88/GHSA-rc82-f234-qr88.json index c9826069040..cc7235d4787 100644 --- a/advisories/unreviewed/2022/04/GHSA-rc82-f234-qr88/GHSA-rc82-f234-qr88.json +++ b/advisories/unreviewed/2022/04/GHSA-rc82-f234-qr88/GHSA-rc82-f234-qr88.json @@ -7,12 +7,8 @@ "CVE-1999-1473" ], "details": "When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authentication information to the second site, aka the \"Page Redirect Issue.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rmr2-r6pv-p7gw/GHSA-rmr2-r6pv-p7gw.json b/advisories/unreviewed/2022/04/GHSA-rmr2-r6pv-p7gw/GHSA-rmr2-r6pv-p7gw.json index 3ed0855e592..9a35e326483 100644 --- a/advisories/unreviewed/2022/04/GHSA-rmr2-r6pv-p7gw/GHSA-rmr2-r6pv-p7gw.json +++ b/advisories/unreviewed/2022/04/GHSA-rmr2-r6pv-p7gw/GHSA-rmr2-r6pv-p7gw.json @@ -7,12 +7,8 @@ "CVE-1999-1261" ], "details": "Buffer overflow in Rainbow Six Multiplayer allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long nickname (nick) command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rmw5-mwqc-865c/GHSA-rmw5-mwqc-865c.json b/advisories/unreviewed/2022/04/GHSA-rmw5-mwqc-865c/GHSA-rmw5-mwqc-865c.json index 05402a874c3..9ba94c4ac18 100644 --- a/advisories/unreviewed/2022/04/GHSA-rmw5-mwqc-865c/GHSA-rmw5-mwqc-865c.json +++ b/advisories/unreviewed/2022/04/GHSA-rmw5-mwqc-865c/GHSA-rmw5-mwqc-865c.json @@ -7,12 +7,8 @@ "CVE-1999-1422" ], "details": "The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rp7x-gfhv-xmq5/GHSA-rp7x-gfhv-xmq5.json b/advisories/unreviewed/2022/04/GHSA-rp7x-gfhv-xmq5/GHSA-rp7x-gfhv-xmq5.json index 5b076ab8c5c..81f105f9045 100644 --- a/advisories/unreviewed/2022/04/GHSA-rp7x-gfhv-xmq5/GHSA-rp7x-gfhv-xmq5.json +++ b/advisories/unreviewed/2022/04/GHSA-rp7x-gfhv-xmq5/GHSA-rp7x-gfhv-xmq5.json @@ -7,12 +7,8 @@ "CVE-1999-1463" ], "details": "Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rq2v-6234-j5f5/GHSA-rq2v-6234-j5f5.json b/advisories/unreviewed/2022/04/GHSA-rq2v-6234-j5f5/GHSA-rq2v-6234-j5f5.json index 9ce3642451f..3ce95bb8ca7 100644 --- a/advisories/unreviewed/2022/04/GHSA-rq2v-6234-j5f5/GHSA-rq2v-6234-j5f5.json +++ b/advisories/unreviewed/2022/04/GHSA-rq2v-6234-j5f5/GHSA-rq2v-6234-j5f5.json @@ -7,12 +7,8 @@ "CVE-1999-1402" ], "details": "The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rr53-c8w6-c9v3/GHSA-rr53-c8w6-c9v3.json b/advisories/unreviewed/2022/04/GHSA-rr53-c8w6-c9v3/GHSA-rr53-c8w6-c9v3.json index 93e685cc7dc..1639912c22e 100644 --- a/advisories/unreviewed/2022/04/GHSA-rr53-c8w6-c9v3/GHSA-rr53-c8w6-c9v3.json +++ b/advisories/unreviewed/2022/04/GHSA-rr53-c8w6-c9v3/GHSA-rr53-c8w6-c9v3.json @@ -7,12 +7,8 @@ "CVE-1999-1380" ], "details": "Symantec Norton Utilities 2.0 for Windows 95 marks the TUNEOCX.OCX ActiveX control as safe for scripting, which allows remote attackers to execute arbitrary commands via the run option through malicious web pages that are accessed by browsers such as Internet Explorer 3.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rr93-7jxg-p4qq/GHSA-rr93-7jxg-p4qq.json b/advisories/unreviewed/2022/04/GHSA-rr93-7jxg-p4qq/GHSA-rr93-7jxg-p4qq.json index 4bd0b7e5d9b..768e883237d 100644 --- a/advisories/unreviewed/2022/04/GHSA-rr93-7jxg-p4qq/GHSA-rr93-7jxg-p4qq.json +++ b/advisories/unreviewed/2022/04/GHSA-rr93-7jxg-p4qq/GHSA-rr93-7jxg-p4qq.json @@ -7,12 +7,8 @@ "CVE-1999-1303" ], "details": "Vulnerability in prwarn in SCO UNIX 4.2 and earlier allows local users to gain root access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rw37-8gqf-wrj9/GHSA-rw37-8gqf-wrj9.json b/advisories/unreviewed/2022/04/GHSA-rw37-8gqf-wrj9/GHSA-rw37-8gqf-wrj9.json index a8ea3e03480..e25fde7c7b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-rw37-8gqf-wrj9/GHSA-rw37-8gqf-wrj9.json +++ b/advisories/unreviewed/2022/04/GHSA-rw37-8gqf-wrj9/GHSA-rw37-8gqf-wrj9.json @@ -7,12 +7,8 @@ "CVE-1999-1248" ], "details": "Vulnerability in Support Watch (aka SupportWatch) in HP-UX 8.0 through 9.0 allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v39v-9hrp-c85p/GHSA-v39v-9hrp-c85p.json b/advisories/unreviewed/2022/04/GHSA-v39v-9hrp-c85p/GHSA-v39v-9hrp-c85p.json index dc5cf3923b8..af6193a702a 100644 --- a/advisories/unreviewed/2022/04/GHSA-v39v-9hrp-c85p/GHSA-v39v-9hrp-c85p.json +++ b/advisories/unreviewed/2022/04/GHSA-v39v-9hrp-c85p/GHSA-v39v-9hrp-c85p.json @@ -7,12 +7,8 @@ "CVE-1999-1340" ], "details": "Buffer overflow in faxalter in hylafax 4.0.2 allows local users to gain privileges via a long -m command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v77g-qpmw-2vpq/GHSA-v77g-qpmw-2vpq.json b/advisories/unreviewed/2022/04/GHSA-v77g-qpmw-2vpq/GHSA-v77g-qpmw-2vpq.json index 9e2f9db6a33..415438f898f 100644 --- a/advisories/unreviewed/2022/04/GHSA-v77g-qpmw-2vpq/GHSA-v77g-qpmw-2vpq.json +++ b/advisories/unreviewed/2022/04/GHSA-v77g-qpmw-2vpq/GHSA-v77g-qpmw-2vpq.json @@ -7,12 +7,8 @@ "CVE-1999-1247" ], "details": "Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vcmw-4q9q-gx59/GHSA-vcmw-4q9q-gx59.json b/advisories/unreviewed/2022/04/GHSA-vcmw-4q9q-gx59/GHSA-vcmw-4q9q-gx59.json index 2a93feeb12a..71927314315 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcmw-4q9q-gx59/GHSA-vcmw-4q9q-gx59.json +++ b/advisories/unreviewed/2022/04/GHSA-vcmw-4q9q-gx59/GHSA-vcmw-4q9q-gx59.json @@ -7,12 +7,8 @@ "CVE-1999-1329" ], "details": "Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vfvh-4q9r-qw3j/GHSA-vfvh-4q9r-qw3j.json b/advisories/unreviewed/2022/04/GHSA-vfvh-4q9r-qw3j/GHSA-vfvh-4q9r-qw3j.json index bea66ed5a4b..7147d7a6f73 100644 --- a/advisories/unreviewed/2022/04/GHSA-vfvh-4q9r-qw3j/GHSA-vfvh-4q9r-qw3j.json +++ b/advisories/unreviewed/2022/04/GHSA-vfvh-4q9r-qw3j/GHSA-vfvh-4q9r-qw3j.json @@ -7,12 +7,8 @@ "CVE-1999-1348" ], "details": "Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vm2r-v9g5-m7v4/GHSA-vm2r-v9g5-m7v4.json b/advisories/unreviewed/2022/04/GHSA-vm2r-v9g5-m7v4/GHSA-vm2r-v9g5-m7v4.json index f6114976946..fd2ce6148c6 100644 --- a/advisories/unreviewed/2022/04/GHSA-vm2r-v9g5-m7v4/GHSA-vm2r-v9g5-m7v4.json +++ b/advisories/unreviewed/2022/04/GHSA-vm2r-v9g5-m7v4/GHSA-vm2r-v9g5-m7v4.json @@ -7,12 +7,8 @@ "CVE-1999-1354" ], "details": "E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vp3g-7p5g-pfq8/GHSA-vp3g-7p5g-pfq8.json b/advisories/unreviewed/2022/04/GHSA-vp3g-7p5g-pfq8/GHSA-vp3g-7p5g-pfq8.json index 05e2b9153dc..e4a4e57d54e 100644 --- a/advisories/unreviewed/2022/04/GHSA-vp3g-7p5g-pfq8/GHSA-vp3g-7p5g-pfq8.json +++ b/advisories/unreviewed/2022/04/GHSA-vp3g-7p5g-pfq8/GHSA-vp3g-7p5g-pfq8.json @@ -7,12 +7,8 @@ "CVE-1999-1452" ], "details": "GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the clipboard of the user who has locked the workstation by pasting (CTRL-V) the contents into the username prompt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vvqj-w228-7466/GHSA-vvqj-w228-7466.json b/advisories/unreviewed/2022/04/GHSA-vvqj-w228-7466/GHSA-vvqj-w228-7466.json index 8bbd5c9b13b..62496667241 100644 --- a/advisories/unreviewed/2022/04/GHSA-vvqj-w228-7466/GHSA-vvqj-w228-7466.json +++ b/advisories/unreviewed/2022/04/GHSA-vvqj-w228-7466/GHSA-vvqj-w228-7466.json @@ -7,12 +7,8 @@ "CVE-1999-1397" ], "details": "Index Server 2.0 on IIS 4.0 stores physical path information in the ContentIndex\\Catalogs subkey of the AllowedPaths registry key, whose permissions allows local and remote users to obtain the physical paths of directories that are being indexed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w6vf-5ccm-v948/GHSA-w6vf-5ccm-v948.json b/advisories/unreviewed/2022/04/GHSA-w6vf-5ccm-v948/GHSA-w6vf-5ccm-v948.json index 470339f6961..935ce907505 100644 --- a/advisories/unreviewed/2022/04/GHSA-w6vf-5ccm-v948/GHSA-w6vf-5ccm-v948.json +++ b/advisories/unreviewed/2022/04/GHSA-w6vf-5ccm-v948/GHSA-w6vf-5ccm-v948.json @@ -7,12 +7,8 @@ "CVE-1999-1367" ], "details": "Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited by other users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w7cw-jr9r-vw28/GHSA-w7cw-jr9r-vw28.json b/advisories/unreviewed/2022/04/GHSA-w7cw-jr9r-vw28/GHSA-w7cw-jr9r-vw28.json index 5818e503812..4c1e1f028c5 100644 --- a/advisories/unreviewed/2022/04/GHSA-w7cw-jr9r-vw28/GHSA-w7cw-jr9r-vw28.json +++ b/advisories/unreviewed/2022/04/GHSA-w7cw-jr9r-vw28/GHSA-w7cw-jr9r-vw28.json @@ -7,12 +7,8 @@ "CVE-1999-1293" ], "details": "mod_proxy in Apache 1.2.5 and earlier allows remote attackers to cause a denial of service via malformed FTP commands, which causes Apache to dump core.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w94x-5hjw-v8h6/GHSA-w94x-5hjw-v8h6.json b/advisories/unreviewed/2022/04/GHSA-w94x-5hjw-v8h6/GHSA-w94x-5hjw-v8h6.json index a9605dc8e92..fe13ca2b83a 100644 --- a/advisories/unreviewed/2022/04/GHSA-w94x-5hjw-v8h6/GHSA-w94x-5hjw-v8h6.json +++ b/advisories/unreviewed/2022/04/GHSA-w94x-5hjw-v8h6/GHSA-w94x-5hjw-v8h6.json @@ -7,12 +7,8 @@ "CVE-1999-1312" ], "details": "Vulnerability in DEC OpenVMS VAX 5.5-2 through 5.0, and OpenVMS AXP 1.0, allows local users to gain system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w9jw-rh3j-q667/GHSA-w9jw-rh3j-q667.json b/advisories/unreviewed/2022/04/GHSA-w9jw-rh3j-q667/GHSA-w9jw-rh3j-q667.json index d1b3b670d2d..52e867f671a 100644 --- a/advisories/unreviewed/2022/04/GHSA-w9jw-rh3j-q667/GHSA-w9jw-rh3j-q667.json +++ b/advisories/unreviewed/2022/04/GHSA-w9jw-rh3j-q667/GHSA-w9jw-rh3j-q667.json @@ -7,12 +7,8 @@ "CVE-1999-1280" ], "details": "Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wh9w-r7w5-38rf/GHSA-wh9w-r7w5-38rf.json b/advisories/unreviewed/2022/04/GHSA-wh9w-r7w5-38rf/GHSA-wh9w-r7w5-38rf.json index 90beddc5ac9..4b2c129c3b1 100644 --- a/advisories/unreviewed/2022/04/GHSA-wh9w-r7w5-38rf/GHSA-wh9w-r7w5-38rf.json +++ b/advisories/unreviewed/2022/04/GHSA-wh9w-r7w5-38rf/GHSA-wh9w-r7w5-38rf.json @@ -7,12 +7,8 @@ "CVE-1999-1295" ], "details": "Transarc DCE Distributed File System (DFS) 1.1 for Solaris 2.4 and 2.5 does not properly initialize the grouplist for users who belong to a large number of groups, which could allow those users to gain access to resources that are protected by DFS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-whq3-jp36-77v6/GHSA-whq3-jp36-77v6.json b/advisories/unreviewed/2022/04/GHSA-whq3-jp36-77v6/GHSA-whq3-jp36-77v6.json index e145e132417..c42c742bd45 100644 --- a/advisories/unreviewed/2022/04/GHSA-whq3-jp36-77v6/GHSA-whq3-jp36-77v6.json +++ b/advisories/unreviewed/2022/04/GHSA-whq3-jp36-77v6/GHSA-whq3-jp36-77v6.json @@ -7,12 +7,8 @@ "CVE-1999-1459" ], "details": "BMC PATROL Agent before 3.2.07 allows local users to gain root privileges via a symlink attack on a temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-whr8-4975-vcv3/GHSA-whr8-4975-vcv3.json b/advisories/unreviewed/2022/04/GHSA-whr8-4975-vcv3/GHSA-whr8-4975-vcv3.json index 0226da4fc7f..9253d99f68c 100644 --- a/advisories/unreviewed/2022/04/GHSA-whr8-4975-vcv3/GHSA-whr8-4975-vcv3.json +++ b/advisories/unreviewed/2022/04/GHSA-whr8-4975-vcv3/GHSA-whr8-4975-vcv3.json @@ -7,12 +7,8 @@ "CVE-1999-1344" ], "details": "Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wjfh-w4xm-h36r/GHSA-wjfh-w4xm-h36r.json b/advisories/unreviewed/2022/04/GHSA-wjfh-w4xm-h36r/GHSA-wjfh-w4xm-h36r.json index d2a0c66f48c..0512b5c20b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-wjfh-w4xm-h36r/GHSA-wjfh-w4xm-h36r.json +++ b/advisories/unreviewed/2022/04/GHSA-wjfh-w4xm-h36r/GHSA-wjfh-w4xm-h36r.json @@ -7,12 +7,8 @@ "CVE-1999-1330" ], "details": "The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wmmg-53q9-h849/GHSA-wmmg-53q9-h849.json b/advisories/unreviewed/2022/04/GHSA-wmmg-53q9-h849/GHSA-wmmg-53q9-h849.json index 76fb0dce09a..dba864bad96 100644 --- a/advisories/unreviewed/2022/04/GHSA-wmmg-53q9-h849/GHSA-wmmg-53q9-h849.json +++ b/advisories/unreviewed/2022/04/GHSA-wmmg-53q9-h849/GHSA-wmmg-53q9-h849.json @@ -7,12 +7,8 @@ "CVE-1999-1297" ], "details": "cmdtool in OpenWindows 3.0 and XView 3.0 in SunOS 4.1.4 and earlier allows attackers with physical access to the system to display unechoed characters (such as those from password prompts) via the L2/AGAIN key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wrvw-4qm4-87pm/GHSA-wrvw-4qm4-87pm.json b/advisories/unreviewed/2022/04/GHSA-wrvw-4qm4-87pm/GHSA-wrvw-4qm4-87pm.json index ebd3e0f59ea..666f79642ee 100644 --- a/advisories/unreviewed/2022/04/GHSA-wrvw-4qm4-87pm/GHSA-wrvw-4qm4-87pm.json +++ b/advisories/unreviewed/2022/04/GHSA-wrvw-4qm4-87pm/GHSA-wrvw-4qm4-87pm.json @@ -7,12 +7,8 @@ "CVE-1999-1442" ], "details": "Bug in AMD K6 processor on Linux 2.0.x and 2.1.x kernels allows local users to cause a denial of service (crash) via a particular sequence of instructions, possibly related to accessing addresses outside of segments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wv39-w6w5-mrhr/GHSA-wv39-w6w5-mrhr.json b/advisories/unreviewed/2022/04/GHSA-wv39-w6w5-mrhr/GHSA-wv39-w6w5-mrhr.json index 5ccab5b4d07..4f9e5b3ac68 100644 --- a/advisories/unreviewed/2022/04/GHSA-wv39-w6w5-mrhr/GHSA-wv39-w6w5-mrhr.json +++ b/advisories/unreviewed/2022/04/GHSA-wv39-w6w5-mrhr/GHSA-wv39-w6w5-mrhr.json @@ -7,12 +7,8 @@ "CVE-1999-1387" ], "details": "Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wvfc-q7gw-9hp6/GHSA-wvfc-q7gw-9hp6.json b/advisories/unreviewed/2022/04/GHSA-wvfc-q7gw-9hp6/GHSA-wvfc-q7gw-9hp6.json index 11bb07dde53..0d4dab62093 100644 --- a/advisories/unreviewed/2022/04/GHSA-wvfc-q7gw-9hp6/GHSA-wvfc-q7gw-9hp6.json +++ b/advisories/unreviewed/2022/04/GHSA-wvfc-q7gw-9hp6/GHSA-wvfc-q7gw-9hp6.json @@ -7,12 +7,8 @@ "CVE-1999-1342" ], "details": "ICQ ActiveList Server allows remote attackers to cause a denial of service (crash) via malformed packets to the server's UDP port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x374-xvgw-jpfc/GHSA-x374-xvgw-jpfc.json b/advisories/unreviewed/2022/04/GHSA-x374-xvgw-jpfc/GHSA-x374-xvgw-jpfc.json index 9772da00fb8..23b330ec8ff 100644 --- a/advisories/unreviewed/2022/04/GHSA-x374-xvgw-jpfc/GHSA-x374-xvgw-jpfc.json +++ b/advisories/unreviewed/2022/04/GHSA-x374-xvgw-jpfc/GHSA-x374-xvgw-jpfc.json @@ -7,12 +7,8 @@ "CVE-1999-1465" ], "details": "Vulnerability in Cisco IOS 11.1 through 11.3 with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled input interface to an output interface with a logical subinterface, as described by Cisco bug CSCdk43862.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x3q5-jc99-rf4p/GHSA-x3q5-jc99-rf4p.json b/advisories/unreviewed/2022/04/GHSA-x3q5-jc99-rf4p/GHSA-x3q5-jc99-rf4p.json index 17265f48d9d..64cd2c7f236 100644 --- a/advisories/unreviewed/2022/04/GHSA-x3q5-jc99-rf4p/GHSA-x3q5-jc99-rf4p.json +++ b/advisories/unreviewed/2022/04/GHSA-x3q5-jc99-rf4p/GHSA-x3q5-jc99-rf4p.json @@ -7,12 +7,8 @@ "CVE-1999-1475" ], "details": "ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x46p-x83j-9q7p/GHSA-x46p-x83j-9q7p.json b/advisories/unreviewed/2022/04/GHSA-x46p-x83j-9q7p/GHSA-x46p-x83j-9q7p.json index 5befcdfd9a9..bd65bffbd97 100644 --- a/advisories/unreviewed/2022/04/GHSA-x46p-x83j-9q7p/GHSA-x46p-x83j-9q7p.json +++ b/advisories/unreviewed/2022/04/GHSA-x46p-x83j-9q7p/GHSA-x46p-x83j-9q7p.json @@ -7,12 +7,8 @@ "CVE-1999-1396" ], "details": "Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local users to gain root access or cause a denial of service (crash).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x5qw-j8m6-38mj/GHSA-x5qw-j8m6-38mj.json b/advisories/unreviewed/2022/04/GHSA-x5qw-j8m6-38mj/GHSA-x5qw-j8m6-38mj.json index 0a2deddee53..f5187e212af 100644 --- a/advisories/unreviewed/2022/04/GHSA-x5qw-j8m6-38mj/GHSA-x5qw-j8m6-38mj.json +++ b/advisories/unreviewed/2022/04/GHSA-x5qw-j8m6-38mj/GHSA-x5qw-j8m6-38mj.json @@ -7,12 +7,8 @@ "CVE-1999-1257" ], "details": "Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by entering (1) a CTRL-Z character, or (2) a ? (question mark).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x7c6-rhq3-252p/GHSA-x7c6-rhq3-252p.json b/advisories/unreviewed/2022/04/GHSA-x7c6-rhq3-252p/GHSA-x7c6-rhq3-252p.json index 148e9f6928d..f74dbee4632 100644 --- a/advisories/unreviewed/2022/04/GHSA-x7c6-rhq3-252p/GHSA-x7c6-rhq3-252p.json +++ b/advisories/unreviewed/2022/04/GHSA-x7c6-rhq3-252p/GHSA-x7c6-rhq3-252p.json @@ -7,12 +7,8 @@ "CVE-1999-1352" ], "details": "mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xm4r-f4rc-2jjh/GHSA-xm4r-f4rc-2jjh.json b/advisories/unreviewed/2022/04/GHSA-xm4r-f4rc-2jjh/GHSA-xm4r-f4rc-2jjh.json index c7ea123b693..9e9db58e444 100644 --- a/advisories/unreviewed/2022/04/GHSA-xm4r-f4rc-2jjh/GHSA-xm4r-f4rc-2jjh.json +++ b/advisories/unreviewed/2022/04/GHSA-xm4r-f4rc-2jjh/GHSA-xm4r-f4rc-2jjh.json @@ -7,12 +7,8 @@ "CVE-1999-1457" ], "details": "Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xpff-gfqx-47wg/GHSA-xpff-gfqx-47wg.json b/advisories/unreviewed/2022/04/GHSA-xpff-gfqx-47wg/GHSA-xpff-gfqx-47wg.json index 351255cdff7..cfa4128a30c 100644 --- a/advisories/unreviewed/2022/04/GHSA-xpff-gfqx-47wg/GHSA-xpff-gfqx-47wg.json +++ b/advisories/unreviewed/2022/04/GHSA-xpff-gfqx-47wg/GHSA-xpff-gfqx-47wg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-xpx7-27p8-r55q/GHSA-xpx7-27p8-r55q.json b/advisories/unreviewed/2022/04/GHSA-xpx7-27p8-r55q/GHSA-xpx7-27p8-r55q.json index f0fcb151b11..1eb8bed6d29 100644 --- a/advisories/unreviewed/2022/04/GHSA-xpx7-27p8-r55q/GHSA-xpx7-27p8-r55q.json +++ b/advisories/unreviewed/2022/04/GHSA-xpx7-27p8-r55q/GHSA-xpx7-27p8-r55q.json @@ -7,12 +7,8 @@ "CVE-1999-1404" ], "details": "IBM/Tivoli OPC Tracker Agent version 2 release 1 allows remote attackers to cause a denial of service (resource exhaustion) via malformed data to the localtracker client port (5011), which prevents the connection from being closed properly.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xqm9-g4jx-xvgw/GHSA-xqm9-g4jx-xvgw.json b/advisories/unreviewed/2022/04/GHSA-xqm9-g4jx-xvgw/GHSA-xqm9-g4jx-xvgw.json index 4c86e5714b3..81ebb818d6c 100644 --- a/advisories/unreviewed/2022/04/GHSA-xqm9-g4jx-xvgw/GHSA-xqm9-g4jx-xvgw.json +++ b/advisories/unreviewed/2022/04/GHSA-xqm9-g4jx-xvgw/GHSA-xqm9-g4jx-xvgw.json @@ -7,12 +7,8 @@ "CVE-1999-1263" ], "details": "Metamail before 2.7-7.2 allows remote attackers to overwrite arbitrary files via an e-mail message containing a uuencoded attachment that specifies the full pathname for the file to be modified, which is processed by uuencode in Metamail scripts such as sun-audio-file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xvh5-7qcw-cj6q/GHSA-xvh5-7qcw-cj6q.json b/advisories/unreviewed/2022/04/GHSA-xvh5-7qcw-cj6q/GHSA-xvh5-7qcw-cj6q.json index 636505042af..5713fcff32c 100644 --- a/advisories/unreviewed/2022/04/GHSA-xvh5-7qcw-cj6q/GHSA-xvh5-7qcw-cj6q.json +++ b/advisories/unreviewed/2022/04/GHSA-xvh5-7qcw-cj6q/GHSA-xvh5-7qcw-cj6q.json @@ -7,12 +7,8 @@ "CVE-1999-1438" ], "details": "Vulnerability in /bin/mail in SunOS 4.1.1 and earlier allows local users to gain root privileges via certain command line arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xvpw-j9f9-fw7v/GHSA-xvpw-j9f9-fw7v.json b/advisories/unreviewed/2022/04/GHSA-xvpw-j9f9-fw7v/GHSA-xvpw-j9f9-fw7v.json index 4acc3e8de32..3cad58e7e9a 100644 --- a/advisories/unreviewed/2022/04/GHSA-xvpw-j9f9-fw7v/GHSA-xvpw-j9f9-fw7v.json +++ b/advisories/unreviewed/2022/04/GHSA-xvpw-j9f9-fw7v/GHSA-xvpw-j9f9-fw7v.json @@ -7,12 +7,8 @@ "CVE-1999-1446" ], "details": "Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Internet Files and History folders, which are not cleared when the user selects the \"Clear History\" option, and are not visible when the user browses the folders because of tailored displays.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xwwx-gqwv-7rqx/GHSA-xwwx-gqwv-7rqx.json b/advisories/unreviewed/2022/04/GHSA-xwwx-gqwv-7rqx/GHSA-xwwx-gqwv-7rqx.json index 74165f857f6..0bf3fb69edb 100644 --- a/advisories/unreviewed/2022/04/GHSA-xwwx-gqwv-7rqx/GHSA-xwwx-gqwv-7rqx.json +++ b/advisories/unreviewed/2022/04/GHSA-xwwx-gqwv-7rqx/GHSA-xwwx-gqwv-7rqx.json @@ -7,12 +7,8 @@ "CVE-1999-1365" ], "details": "Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privileges by placing a Trojan horse program into the root directory, which is writable by default.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-25ph-p35f-4wmg/GHSA-25ph-p35f-4wmg.json b/advisories/unreviewed/2022/05/GHSA-25ph-p35f-4wmg/GHSA-25ph-p35f-4wmg.json index 57356c7770d..4c40f9d8f09 100644 --- a/advisories/unreviewed/2022/05/GHSA-25ph-p35f-4wmg/GHSA-25ph-p35f-4wmg.json +++ b/advisories/unreviewed/2022/05/GHSA-25ph-p35f-4wmg/GHSA-25ph-p35f-4wmg.json @@ -7,12 +7,8 @@ "CVE-2019-8564" ], "details": "A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An attacker in a privileged network position can modify driver state.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-279x-vjpx-pq4v/GHSA-279x-vjpx-pq4v.json b/advisories/unreviewed/2022/05/GHSA-279x-vjpx-pq4v/GHSA-279x-vjpx-pq4v.json index 35c3421f6e1..d4770e71cdd 100644 --- a/advisories/unreviewed/2022/05/GHSA-279x-vjpx-pq4v/GHSA-279x-vjpx-pq4v.json +++ b/advisories/unreviewed/2022/05/GHSA-279x-vjpx-pq4v/GHSA-279x-vjpx-pq4v.json @@ -7,12 +7,8 @@ "CVE-2019-14715" ], "details": "Verifone Pinpad Payment Terminals allow undocumented physical access to the system via an SBI bootloader memory write operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29c6-9mv9-hqvx/GHSA-29c6-9mv9-hqvx.json b/advisories/unreviewed/2022/05/GHSA-29c6-9mv9-hqvx/GHSA-29c6-9mv9-hqvx.json index 9b526b039da..c2885514407 100644 --- a/advisories/unreviewed/2022/05/GHSA-29c6-9mv9-hqvx/GHSA-29c6-9mv9-hqvx.json +++ b/advisories/unreviewed/2022/05/GHSA-29c6-9mv9-hqvx/GHSA-29c6-9mv9-hqvx.json @@ -7,12 +7,8 @@ "CVE-2020-14778" ], "details": "Vulnerability in the PeopleSoft Enterprise HCM Global Payroll Core product of Oracle PeopleSoft (component: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM Global Payroll Core. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM Global Payroll Core accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HCM Global Payroll Core accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of PeopleSoft Enterprise HCM Global Payroll Core. CVSS 3.1 Base Score 6.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2c88-v3f4-r6jr/GHSA-2c88-v3f4-r6jr.json b/advisories/unreviewed/2022/05/GHSA-2c88-v3f4-r6jr/GHSA-2c88-v3f4-r6jr.json index 3c48c982833..ab8a75b8831 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c88-v3f4-r6jr/GHSA-2c88-v3f4-r6jr.json +++ b/advisories/unreviewed/2022/05/GHSA-2c88-v3f4-r6jr/GHSA-2c88-v3f4-r6jr.json @@ -7,12 +7,8 @@ "CVE-2020-9908" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6. A local user may be able to cause unexpected system termination or read kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2fvg-v46v-wg77/GHSA-2fvg-v46v-wg77.json b/advisories/unreviewed/2022/05/GHSA-2fvg-v46v-wg77/GHSA-2fvg-v46v-wg77.json index 966e4a6ffc6..596822f9bb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fvg-v46v-wg77/GHSA-2fvg-v46v-wg77.json +++ b/advisories/unreviewed/2022/05/GHSA-2fvg-v46v-wg77/GHSA-2fvg-v46v-wg77.json @@ -7,12 +7,8 @@ "CVE-2020-14819" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2g97-qvhf-wqw3/GHSA-2g97-qvhf-wqw3.json b/advisories/unreviewed/2022/05/GHSA-2g97-qvhf-wqw3/GHSA-2g97-qvhf-wqw3.json index b77ed725dcb..640c3a037d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g97-qvhf-wqw3/GHSA-2g97-qvhf-wqw3.json +++ b/advisories/unreviewed/2022/05/GHSA-2g97-qvhf-wqw3/GHSA-2g97-qvhf-wqw3.json @@ -7,12 +7,8 @@ "CVE-2020-3997" ], "details": "VMware Horizon Server (7.x prior to 7.10.3 or 7.13.0) contains a Cross Site Scripting (XSS) vulnerability. Successful exploitation of this issue may allow an attacker to inject malicious script which will be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2gf7-wf94-4pqj/GHSA-2gf7-wf94-4pqj.json b/advisories/unreviewed/2022/05/GHSA-2gf7-wf94-4pqj/GHSA-2gf7-wf94-4pqj.json index e46d75949c7..e2ef93dc629 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gf7-wf94-4pqj/GHSA-2gf7-wf94-4pqj.json +++ b/advisories/unreviewed/2022/05/GHSA-2gf7-wf94-4pqj/GHSA-2gf7-wf94-4pqj.json @@ -7,12 +7,8 @@ "CVE-2020-5650" ], "details": "Cross-site scripting vulnerability in Simple Download Monitor 3.8.8 and earlier allows remote attackers to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2ghm-cqrg-hhpv/GHSA-2ghm-cqrg-hhpv.json b/advisories/unreviewed/2022/05/GHSA-2ghm-cqrg-hhpv/GHSA-2ghm-cqrg-hhpv.json index 2f91ee76040..b279e047b0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2ghm-cqrg-hhpv/GHSA-2ghm-cqrg-hhpv.json +++ b/advisories/unreviewed/2022/05/GHSA-2ghm-cqrg-hhpv/GHSA-2ghm-cqrg-hhpv.json @@ -7,12 +7,8 @@ "CVE-2019-4563" ], "details": "IBM Security Directory Server 6.4.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 166624.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mqw-gxvv-6qrc/GHSA-2mqw-gxvv-6qrc.json b/advisories/unreviewed/2022/05/GHSA-2mqw-gxvv-6qrc/GHSA-2mqw-gxvv-6qrc.json index 25b9c7c6906..82cc055c53c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mqw-gxvv-6qrc/GHSA-2mqw-gxvv-6qrc.json +++ b/advisories/unreviewed/2022/05/GHSA-2mqw-gxvv-6qrc/GHSA-2mqw-gxvv-6qrc.json @@ -7,12 +7,8 @@ "CVE-2020-9111" ], "details": "E6878-370 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP21C233) and E6878-870 versions 10.0.3.1(H557SP27C233),10.0.3.1(H563SP11C233) have a denial of service vulnerability. The system does not properly check some events, an attacker could launch the events continually, successful exploit could cause reboot of the process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2q3p-j7r5-v28g/GHSA-2q3p-j7r5-v28g.json b/advisories/unreviewed/2022/05/GHSA-2q3p-j7r5-v28g/GHSA-2q3p-j7r5-v28g.json index 5b94aff62d1..ea3651bf178 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q3p-j7r5-v28g/GHSA-2q3p-j7r5-v28g.json +++ b/advisories/unreviewed/2022/05/GHSA-2q3p-j7r5-v28g/GHSA-2q3p-j7r5-v28g.json @@ -7,12 +7,8 @@ "CVE-2020-7369" ], "details": "User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of the Yandex Browser allows an attacker to obfuscate the true source of data as presented in the browser. This issue affects the Yandex Browser version 20.8.3 and prior versions, and was fixed in version 20.8.4 released October 1, 2020.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vxg-7c3m-cgf3/GHSA-2vxg-7c3m-cgf3.json b/advisories/unreviewed/2022/05/GHSA-2vxg-7c3m-cgf3/GHSA-2vxg-7c3m-cgf3.json index b7be402534e..1e995a8aa33 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vxg-7c3m-cgf3/GHSA-2vxg-7c3m-cgf3.json +++ b/advisories/unreviewed/2022/05/GHSA-2vxg-7c3m-cgf3/GHSA-2vxg-7c3m-cgf3.json @@ -7,12 +7,8 @@ "CVE-2020-14816" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wwh-6gf2-wv25/GHSA-2wwh-6gf2-wv25.json b/advisories/unreviewed/2022/05/GHSA-2wwh-6gf2-wv25/GHSA-2wwh-6gf2-wv25.json index 6f67d58fd56..37814d7c189 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wwh-6gf2-wv25/GHSA-2wwh-6gf2-wv25.json +++ b/advisories/unreviewed/2022/05/GHSA-2wwh-6gf2-wv25/GHSA-2wwh-6gf2-wv25.json @@ -7,12 +7,8 @@ "CVE-2020-14857" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2x5g-c72q-ppx9/GHSA-2x5g-c72q-ppx9.json b/advisories/unreviewed/2022/05/GHSA-2x5g-c72q-ppx9/GHSA-2x5g-c72q-ppx9.json index 3bf642eda5b..71328a1b9b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x5g-c72q-ppx9/GHSA-2x5g-c72q-ppx9.json +++ b/advisories/unreviewed/2022/05/GHSA-2x5g-c72q-ppx9/GHSA-2x5g-c72q-ppx9.json @@ -7,12 +7,8 @@ "CVE-2020-7127" ], "details": "A remote unauthenticated arbitrary code execution vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-327p-j9g4-qf3q/GHSA-327p-j9g4-qf3q.json b/advisories/unreviewed/2022/05/GHSA-327p-j9g4-qf3q/GHSA-327p-j9g4-qf3q.json index 18d66f922a4..1718167117e 100644 --- a/advisories/unreviewed/2022/05/GHSA-327p-j9g4-qf3q/GHSA-327p-j9g4-qf3q.json +++ b/advisories/unreviewed/2022/05/GHSA-327p-j9g4-qf3q/GHSA-327p-j9g4-qf3q.json @@ -7,12 +7,8 @@ "CVE-2020-3456" ], "details": "A vulnerability in the Cisco Firepower Chassis Manager (FCM) of Cisco FXOS Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against a user of an affected device. The vulnerability is due to insufficient CSRF protections for the FCM interface. An attacker could exploit this vulnerability by persuading a targeted user to click a malicious link. A successful exploit could allow the attacker to send arbitrary requests that could take unauthorized actions on behalf of the targeted user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-339m-6hg9-7x97/GHSA-339m-6hg9-7x97.json b/advisories/unreviewed/2022/05/GHSA-339m-6hg9-7x97/GHSA-339m-6hg9-7x97.json index c332b89a38e..fe5f2d0ce85 100644 --- a/advisories/unreviewed/2022/05/GHSA-339m-6hg9-7x97/GHSA-339m-6hg9-7x97.json +++ b/advisories/unreviewed/2022/05/GHSA-339m-6hg9-7x97/GHSA-339m-6hg9-7x97.json @@ -7,12 +7,8 @@ "CVE-2020-4748" ], "details": "IBM Spectrum Scale 5.0.0 through 5.0.5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188517.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-35fr-79wv-f9r8/GHSA-35fr-79wv-f9r8.json b/advisories/unreviewed/2022/05/GHSA-35fr-79wv-f9r8/GHSA-35fr-79wv-f9r8.json index 127132696b5..b213c1e430b 100644 --- a/advisories/unreviewed/2022/05/GHSA-35fr-79wv-f9r8/GHSA-35fr-79wv-f9r8.json +++ b/advisories/unreviewed/2022/05/GHSA-35fr-79wv-f9r8/GHSA-35fr-79wv-f9r8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36r6-3vxv-93hp/GHSA-36r6-3vxv-93hp.json b/advisories/unreviewed/2022/05/GHSA-36r6-3vxv-93hp/GHSA-36r6-3vxv-93hp.json index 50f481357df..40633105233 100644 --- a/advisories/unreviewed/2022/05/GHSA-36r6-3vxv-93hp/GHSA-36r6-3vxv-93hp.json +++ b/advisories/unreviewed/2022/05/GHSA-36r6-3vxv-93hp/GHSA-36r6-3vxv-93hp.json @@ -7,12 +7,8 @@ "CVE-2019-7288" ], "details": "The issue was addressed with improved validation on the FaceTime server. This issue is fixed in macOS Mojave 10.14.3 Supplemental Update, iOS 12.1.4. A thorough security audit of the FaceTime service uncovered an issue with Live Photos .", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-39rv-xm8f-rj7v/GHSA-39rv-xm8f-rj7v.json b/advisories/unreviewed/2022/05/GHSA-39rv-xm8f-rj7v/GHSA-39rv-xm8f-rj7v.json index cdb2cd79484..7a645a80fbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-39rv-xm8f-rj7v/GHSA-39rv-xm8f-rj7v.json +++ b/advisories/unreviewed/2022/05/GHSA-39rv-xm8f-rj7v/GHSA-39rv-xm8f-rj7v.json @@ -7,12 +7,8 @@ "CVE-2020-15004" ], "details": "OX App Suite through 7.10.3 allows stats/diagnostic?param= XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3cvr-9v2w-rhhq/GHSA-3cvr-9v2w-rhhq.json b/advisories/unreviewed/2022/05/GHSA-3cvr-9v2w-rhhq/GHSA-3cvr-9v2w-rhhq.json index 33a54bdccb1..2e61a442bcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-3cvr-9v2w-rhhq/GHSA-3cvr-9v2w-rhhq.json +++ b/advisories/unreviewed/2022/05/GHSA-3cvr-9v2w-rhhq/GHSA-3cvr-9v2w-rhhq.json @@ -7,12 +7,8 @@ "CVE-2020-9939" ], "details": "This issue was addressed with improved checks. This issue is fixed in macOS Catalina 10.15.6. A local user may be able to load unsigned kernel extensions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3fq7-hx4j-7hh8/GHSA-3fq7-hx4j-7hh8.json b/advisories/unreviewed/2022/05/GHSA-3fq7-hx4j-7hh8/GHSA-3fq7-hx4j-7hh8.json index ee1f4f6e469..33b979de6f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fq7-hx4j-7hh8/GHSA-3fq7-hx4j-7hh8.json +++ b/advisories/unreviewed/2022/05/GHSA-3fq7-hx4j-7hh8/GHSA-3fq7-hx4j-7hh8.json @@ -7,12 +7,8 @@ "CVE-2020-14880" ], "details": "Vulnerability in the BI Publisher product of Oracle Fusion Middleware (component: E-Business Suite - XDO). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise BI Publisher. While the vulnerability is in BI Publisher, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all BI Publisher accessible data as well as unauthorized update, insert or delete access to some of BI Publisher accessible data. CVSS 3.1 Base Score 8.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3gjh-9hv9-8275/GHSA-3gjh-9hv9-8275.json b/advisories/unreviewed/2022/05/GHSA-3gjh-9hv9-8275/GHSA-3gjh-9hv9-8275.json index c4b9a977cdd..d62092c3cb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gjh-9hv9-8275/GHSA-3gjh-9hv9-8275.json +++ b/advisories/unreviewed/2022/05/GHSA-3gjh-9hv9-8275/GHSA-3gjh-9hv9-8275.json @@ -7,12 +7,8 @@ "CVE-2020-14891" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3gx2-h862-jfp5/GHSA-3gx2-h862-jfp5.json b/advisories/unreviewed/2022/05/GHSA-3gx2-h862-jfp5/GHSA-3gx2-h862-jfp5.json index 8b9ca89ed9f..8523c2d029d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gx2-h862-jfp5/GHSA-3gx2-h862-jfp5.json +++ b/advisories/unreviewed/2022/05/GHSA-3gx2-h862-jfp5/GHSA-3gx2-h862-jfp5.json @@ -7,12 +7,8 @@ "CVE-2018-4296" ], "details": "This issue is fixed in macOS Mojave 10.14. A permissions issue existed in DiskArbitration. This was addressed with additional ownership checks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3h3q-q3h4-xhww/GHSA-3h3q-q3h4-xhww.json b/advisories/unreviewed/2022/05/GHSA-3h3q-q3h4-xhww/GHSA-3h3q-q3h4-xhww.json index 33739d7b79c..79855295350 100644 --- a/advisories/unreviewed/2022/05/GHSA-3h3q-q3h4-xhww/GHSA-3h3q-q3h4-xhww.json +++ b/advisories/unreviewed/2022/05/GHSA-3h3q-q3h4-xhww/GHSA-3h3q-q3h4-xhww.json @@ -7,12 +7,8 @@ "CVE-2014-0231" ], "details": "The mod_cgid module in the Apache HTTP Server before 2.4.10 does not have a timeout mechanism, which allows remote attackers to cause a denial of service (process hang) via a request to a CGI script that does not read from its stdin file descriptor.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -208,9 +204,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3h7r-48jw-w3ch/GHSA-3h7r-48jw-w3ch.json b/advisories/unreviewed/2022/05/GHSA-3h7r-48jw-w3ch/GHSA-3h7r-48jw-w3ch.json index 369d7908f2b..d238eda3b8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3h7r-48jw-w3ch/GHSA-3h7r-48jw-w3ch.json +++ b/advisories/unreviewed/2022/05/GHSA-3h7r-48jw-w3ch/GHSA-3h7r-48jw-w3ch.json @@ -7,12 +7,8 @@ "CVE-2020-14863" ], "details": "Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1 - 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3h9r-9j48-vh3w/GHSA-3h9r-9j48-vh3w.json b/advisories/unreviewed/2022/05/GHSA-3h9r-9j48-vh3w/GHSA-3h9r-9j48-vh3w.json index 66acd50430f..802fb222967 100644 --- a/advisories/unreviewed/2022/05/GHSA-3h9r-9j48-vh3w/GHSA-3h9r-9j48-vh3w.json +++ b/advisories/unreviewed/2022/05/GHSA-3h9r-9j48-vh3w/GHSA-3h9r-9j48-vh3w.json @@ -7,12 +7,8 @@ "CVE-2020-14801" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3phj-fjfp-9hh5/GHSA-3phj-fjfp-9hh5.json b/advisories/unreviewed/2022/05/GHSA-3phj-fjfp-9hh5/GHSA-3phj-fjfp-9hh5.json index e7b5c7bbba6..1ef8cb20773 100644 --- a/advisories/unreviewed/2022/05/GHSA-3phj-fjfp-9hh5/GHSA-3phj-fjfp-9hh5.json +++ b/advisories/unreviewed/2022/05/GHSA-3phj-fjfp-9hh5/GHSA-3phj-fjfp-9hh5.json @@ -7,12 +7,8 @@ "CVE-2020-14875" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Marketing accessible data as well as unauthorized access to critical data or complete access to all Oracle Marketing accessible data. CVSS 3.1 Base Score 9.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3q57-72xr-mr5m/GHSA-3q57-72xr-mr5m.json b/advisories/unreviewed/2022/05/GHSA-3q57-72xr-mr5m/GHSA-3q57-72xr-mr5m.json index b36c24be918..374bfbb0785 100644 --- a/advisories/unreviewed/2022/05/GHSA-3q57-72xr-mr5m/GHSA-3q57-72xr-mr5m.json +++ b/advisories/unreviewed/2022/05/GHSA-3q57-72xr-mr5m/GHSA-3q57-72xr-mr5m.json @@ -7,12 +7,8 @@ "CVE-2019-8579" ], "details": "An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An application may be able to gain elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qqc-xvf4-h32q/GHSA-3qqc-xvf4-h32q.json b/advisories/unreviewed/2022/05/GHSA-3qqc-xvf4-h32q/GHSA-3qqc-xvf4-h32q.json index 9af9b6fb92e..524163026e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qqc-xvf4-h32q/GHSA-3qqc-xvf4-h32q.json +++ b/advisories/unreviewed/2022/05/GHSA-3qqc-xvf4-h32q/GHSA-3qqc-xvf4-h32q.json @@ -7,12 +7,8 @@ "CVE-2020-15002" ], "details": "OX App Suite through 7.10.3 allows SSRF via the the /ajax/messaging/message message API.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rrh-rx2j-x9xj/GHSA-3rrh-rx2j-x9xj.json b/advisories/unreviewed/2022/05/GHSA-3rrh-rx2j-x9xj/GHSA-3rrh-rx2j-x9xj.json index 0a50195d4ec..b567a1c4877 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rrh-rx2j-x9xj/GHSA-3rrh-rx2j-x9xj.json +++ b/advisories/unreviewed/2022/05/GHSA-3rrh-rx2j-x9xj/GHSA-3rrh-rx2j-x9xj.json @@ -7,12 +7,8 @@ "CVE-2020-9361" ], "details": "CryptoPro CSP through 5.0.0.10004 on 64-bit platforms allows local users with the SeChangeNotifyPrivilege right to cause denial of service because user-mode input is mishandled during process creation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3v3f-5fgf-vhm9/GHSA-3v3f-5fgf-vhm9.json b/advisories/unreviewed/2022/05/GHSA-3v3f-5fgf-vhm9/GHSA-3v3f-5fgf-vhm9.json index 1535c6a0d65..b963303dd94 100644 --- a/advisories/unreviewed/2022/05/GHSA-3v3f-5fgf-vhm9/GHSA-3v3f-5fgf-vhm9.json +++ b/advisories/unreviewed/2022/05/GHSA-3v3f-5fgf-vhm9/GHSA-3v3f-5fgf-vhm9.json @@ -7,12 +7,8 @@ "CVE-2020-7168" ], "details": "A selectusergroup expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3vrm-64pq-5964/GHSA-3vrm-64pq-5964.json b/advisories/unreviewed/2022/05/GHSA-3vrm-64pq-5964/GHSA-3vrm-64pq-5964.json index 06a9a8c0c4f..c895b0e34aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vrm-64pq-5964/GHSA-3vrm-64pq-5964.json +++ b/advisories/unreviewed/2022/05/GHSA-3vrm-64pq-5964/GHSA-3vrm-64pq-5964.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3wfg-8w2f-r7qj/GHSA-3wfg-8w2f-r7qj.json b/advisories/unreviewed/2022/05/GHSA-3wfg-8w2f-r7qj/GHSA-3wfg-8w2f-r7qj.json index df1130f5e5c..488d3a9db10 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wfg-8w2f-r7qj/GHSA-3wfg-8w2f-r7qj.json +++ b/advisories/unreviewed/2022/05/GHSA-3wfg-8w2f-r7qj/GHSA-3wfg-8w2f-r7qj.json @@ -7,12 +7,8 @@ "CVE-2020-14862" ], "details": "Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3 - 12.2.9. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulnerability can result in takeover of Oracle Universal Work Queue. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4376-93v6-4h5m/GHSA-4376-93v6-4h5m.json b/advisories/unreviewed/2022/05/GHSA-4376-93v6-4h5m/GHSA-4376-93v6-4h5m.json index a18f6efad78..90582693a80 100644 --- a/advisories/unreviewed/2022/05/GHSA-4376-93v6-4h5m/GHSA-4376-93v6-4h5m.json +++ b/advisories/unreviewed/2022/05/GHSA-4376-93v6-4h5m/GHSA-4376-93v6-4h5m.json @@ -7,12 +7,8 @@ "CVE-2019-8578" ], "details": "A use after free issue was addressed with improved memory management. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43vw-qf47-8935/GHSA-43vw-qf47-8935.json b/advisories/unreviewed/2022/05/GHSA-43vw-qf47-8935/GHSA-43vw-qf47-8935.json index 0bf14e89492..de271279337 100644 --- a/advisories/unreviewed/2022/05/GHSA-43vw-qf47-8935/GHSA-43vw-qf47-8935.json +++ b/advisories/unreviewed/2022/05/GHSA-43vw-qf47-8935/GHSA-43vw-qf47-8935.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-43wq-r34m-56ch/GHSA-43wq-r34m-56ch.json b/advisories/unreviewed/2022/05/GHSA-43wq-r34m-56ch/GHSA-43wq-r34m-56ch.json index 70c48c16b34..26c25ea171b 100644 --- a/advisories/unreviewed/2022/05/GHSA-43wq-r34m-56ch/GHSA-43wq-r34m-56ch.json +++ b/advisories/unreviewed/2022/05/GHSA-43wq-r34m-56ch/GHSA-43wq-r34m-56ch.json @@ -7,12 +7,8 @@ "CVE-2020-27608" ], "details": "In BigBlueButton before 2.2.28 (or earlier), uploaded presentations are sent to clients without a Content-Type header, which allows XSS, as demonstrated by a .png file extension for an HTML document.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-44f3-m9g4-jwrv/GHSA-44f3-m9g4-jwrv.json b/advisories/unreviewed/2022/05/GHSA-44f3-m9g4-jwrv/GHSA-44f3-m9g4-jwrv.json index 0e0ac65cde7..91b46d5b67f 100644 --- a/advisories/unreviewed/2022/05/GHSA-44f3-m9g4-jwrv/GHSA-44f3-m9g4-jwrv.json +++ b/advisories/unreviewed/2022/05/GHSA-44f3-m9g4-jwrv/GHSA-44f3-m9g4-jwrv.json @@ -7,12 +7,8 @@ "CVE-2020-3915" ], "details": "A path handling issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. A malicious application may be able to overwrite arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-45r6-rwfw-29cq/GHSA-45r6-rwfw-29cq.json b/advisories/unreviewed/2022/05/GHSA-45r6-rwfw-29cq/GHSA-45r6-rwfw-29cq.json index 3dae61dbec5..6394a39a54f 100644 --- a/advisories/unreviewed/2022/05/GHSA-45r6-rwfw-29cq/GHSA-45r6-rwfw-29cq.json +++ b/advisories/unreviewed/2022/05/GHSA-45r6-rwfw-29cq/GHSA-45r6-rwfw-29cq.json @@ -7,12 +7,8 @@ "CVE-2018-18508" ], "details": "In Network Security Services (NSS) before 3.36.7 and before 3.41.1, a malformed signature can cause a crash due to a null dereference, resulting in a Denial of Service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45wr-h3w5-q72v/GHSA-45wr-h3w5-q72v.json b/advisories/unreviewed/2022/05/GHSA-45wr-h3w5-q72v/GHSA-45wr-h3w5-q72v.json index fc6ea8d8ec2..f9bcccee029 100644 --- a/advisories/unreviewed/2022/05/GHSA-45wr-h3w5-q72v/GHSA-45wr-h3w5-q72v.json +++ b/advisories/unreviewed/2022/05/GHSA-45wr-h3w5-q72v/GHSA-45wr-h3w5-q72v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46h6-5944-7cqw/GHSA-46h6-5944-7cqw.json b/advisories/unreviewed/2022/05/GHSA-46h6-5944-7cqw/GHSA-46h6-5944-7cqw.json index 2fee5a831c7..db2edbe2db4 100644 --- a/advisories/unreviewed/2022/05/GHSA-46h6-5944-7cqw/GHSA-46h6-5944-7cqw.json +++ b/advisories/unreviewed/2022/05/GHSA-46h6-5944-7cqw/GHSA-46h6-5944-7cqw.json @@ -7,12 +7,8 @@ "CVE-2018-4444" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in Safari 12.0.2, iOS 12.1.1, tvOS 12.1.1, iTunes 12.9.2 for Windows. Processing maliciously crafted web content may disclose sensitive user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46j4-jqcq-j7qj/GHSA-46j4-jqcq-j7qj.json b/advisories/unreviewed/2022/05/GHSA-46j4-jqcq-j7qj/GHSA-46j4-jqcq-j7qj.json index 23356f9cbe2..3e87e3286f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-46j4-jqcq-j7qj/GHSA-46j4-jqcq-j7qj.json +++ b/advisories/unreviewed/2022/05/GHSA-46j4-jqcq-j7qj/GHSA-46j4-jqcq-j7qj.json @@ -7,12 +7,8 @@ "CVE-2020-4756" ], "details": "IBM Spectrum Scale V4.2.0.0 through V4.2.3.23 and V5.0.0.0 through V5.0.5.2 as well as IBM Elastic Storage System 6.0.0 through 6.0.1.0 could allow a local attacker to invoke a subset of ioctls on the device with invalid arguments that could crash the keneral and cause a denial of service. IBM X-Force ID: 188599.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-47r2-r67p-rgw9/GHSA-47r2-r67p-rgw9.json b/advisories/unreviewed/2022/05/GHSA-47r2-r67p-rgw9/GHSA-47r2-r67p-rgw9.json index abf87b226da..401292807e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-47r2-r67p-rgw9/GHSA-47r2-r67p-rgw9.json +++ b/advisories/unreviewed/2022/05/GHSA-47r2-r67p-rgw9/GHSA-47r2-r67p-rgw9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-483c-jqr5-c4hh/GHSA-483c-jqr5-c4hh.json b/advisories/unreviewed/2022/05/GHSA-483c-jqr5-c4hh/GHSA-483c-jqr5-c4hh.json index 34201ad7909..e0c69f5bc5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-483c-jqr5-c4hh/GHSA-483c-jqr5-c4hh.json +++ b/advisories/unreviewed/2022/05/GHSA-483c-jqr5-c4hh/GHSA-483c-jqr5-c4hh.json @@ -7,12 +7,8 @@ "CVE-2020-14849" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48qp-r4cf-jwqc/GHSA-48qp-r4cf-jwqc.json b/advisories/unreviewed/2022/05/GHSA-48qp-r4cf-jwqc/GHSA-48qp-r4cf-jwqc.json index 31327c7c6a7..8045877eb66 100644 --- a/advisories/unreviewed/2022/05/GHSA-48qp-r4cf-jwqc/GHSA-48qp-r4cf-jwqc.json +++ b/advisories/unreviewed/2022/05/GHSA-48qp-r4cf-jwqc/GHSA-48qp-r4cf-jwqc.json @@ -7,12 +7,8 @@ "CVE-2020-16158" ], "details": "GoPro gpmf-parser through 1.5 has a stack out-of-bounds write vulnerability in GPMF_ExpandComplexTYPE(). Parsing malicious input can result in a crash or potentially arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49v8-mfpv-j65g/GHSA-49v8-mfpv-j65g.json b/advisories/unreviewed/2022/05/GHSA-49v8-mfpv-j65g/GHSA-49v8-mfpv-j65g.json index 366e8fe5d6c..9636e50a506 100644 --- a/advisories/unreviewed/2022/05/GHSA-49v8-mfpv-j65g/GHSA-49v8-mfpv-j65g.json +++ b/advisories/unreviewed/2022/05/GHSA-49v8-mfpv-j65g/GHSA-49v8-mfpv-j65g.json @@ -7,12 +7,8 @@ "CVE-2020-7370" ], "details": "User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of Danyil Vasilenko's Bolt Browser allows an attacker to obfuscate the true source of data as presented in the browser. This issue affects the Bolt Browser version 1.4 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49w4-8c2m-qh25/GHSA-49w4-8c2m-qh25.json b/advisories/unreviewed/2022/05/GHSA-49w4-8c2m-qh25/GHSA-49w4-8c2m-qh25.json index bec4d5692c7..0a9fee40928 100644 --- a/advisories/unreviewed/2022/05/GHSA-49w4-8c2m-qh25/GHSA-49w4-8c2m-qh25.json +++ b/advisories/unreviewed/2022/05/GHSA-49w4-8c2m-qh25/GHSA-49w4-8c2m-qh25.json @@ -7,12 +7,8 @@ "CVE-2020-24413" ], "details": "Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file. This could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4c4w-c9rx-m633/GHSA-4c4w-c9rx-m633.json b/advisories/unreviewed/2022/05/GHSA-4c4w-c9rx-m633/GHSA-4c4w-c9rx-m633.json index 6a075b5dfd8..93b9a139805 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c4w-c9rx-m633/GHSA-4c4w-c9rx-m633.json +++ b/advisories/unreviewed/2022/05/GHSA-4c4w-c9rx-m633/GHSA-4c4w-c9rx-m633.json @@ -7,12 +7,8 @@ "CVE-2020-7161" ], "details": "A reporttaskselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4c77-wcw2-9gh7/GHSA-4c77-wcw2-9gh7.json b/advisories/unreviewed/2022/05/GHSA-4c77-wcw2-9gh7/GHSA-4c77-wcw2-9gh7.json index f74e35ea65f..7fbb3ea9526 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c77-wcw2-9gh7/GHSA-4c77-wcw2-9gh7.json +++ b/advisories/unreviewed/2022/05/GHSA-4c77-wcw2-9gh7/GHSA-4c77-wcw2-9gh7.json @@ -7,12 +7,8 @@ "CVE-2020-3455" ], "details": "A vulnerability in the secure boot process of Cisco FXOS Software could allow an authenticated, local attacker to bypass the secure boot mechanisms. The vulnerability is due to insufficient protections of the secure boot process. An attacker could exploit this vulnerability by injecting code into a specific file that is then referenced during the device boot process. A successful exploit could allow the attacker to break the chain of trust and inject code into the boot process of the device which would be executed at each boot and maintain persistence across reboots.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4f2v-4fxm-hw3f/GHSA-4f2v-4fxm-hw3f.json b/advisories/unreviewed/2022/05/GHSA-4f2v-4fxm-hw3f/GHSA-4f2v-4fxm-hw3f.json index 16d044e9c96..8e5211200fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f2v-4fxm-hw3f/GHSA-4f2v-4fxm-hw3f.json +++ b/advisories/unreviewed/2022/05/GHSA-4f2v-4fxm-hw3f/GHSA-4f2v-4fxm-hw3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h46-x889-rgg3/GHSA-4h46-x889-rgg3.json b/advisories/unreviewed/2022/05/GHSA-4h46-x889-rgg3/GHSA-4h46-x889-rgg3.json index d99a27e0c06..89d9dacdd3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h46-x889-rgg3/GHSA-4h46-x889-rgg3.json +++ b/advisories/unreviewed/2022/05/GHSA-4h46-x889-rgg3/GHSA-4h46-x889-rgg3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4p43-8hvm-wfj7/GHSA-4p43-8hvm-wfj7.json b/advisories/unreviewed/2022/05/GHSA-4p43-8hvm-wfj7/GHSA-4p43-8hvm-wfj7.json index 0802af01f60..18837bc011f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p43-8hvm-wfj7/GHSA-4p43-8hvm-wfj7.json +++ b/advisories/unreviewed/2022/05/GHSA-4p43-8hvm-wfj7/GHSA-4p43-8hvm-wfj7.json @@ -7,12 +7,8 @@ "CVE-2020-9927" ], "details": "A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4p49-59gq-x3fh/GHSA-4p49-59gq-x3fh.json b/advisories/unreviewed/2022/05/GHSA-4p49-59gq-x3fh/GHSA-4p49-59gq-x3fh.json index 05eae17f21f..ea710b43d5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p49-59gq-x3fh/GHSA-4p49-59gq-x3fh.json +++ b/advisories/unreviewed/2022/05/GHSA-4p49-59gq-x3fh/GHSA-4p49-59gq-x3fh.json @@ -7,12 +7,8 @@ "CVE-2019-8588" ], "details": "A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause a system denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qrg-v6p3-7pjf/GHSA-4qrg-v6p3-7pjf.json b/advisories/unreviewed/2022/05/GHSA-4qrg-v6p3-7pjf/GHSA-4qrg-v6p3-7pjf.json index 20dfc199e1e..3adaf3fced3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qrg-v6p3-7pjf/GHSA-4qrg-v6p3-7pjf.json +++ b/advisories/unreviewed/2022/05/GHSA-4qrg-v6p3-7pjf/GHSA-4qrg-v6p3-7pjf.json @@ -7,12 +7,8 @@ "CVE-2020-9772" ], "details": "A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A sandboxed process may be able to circumvent sandbox restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rj6-rcx3-jvm9/GHSA-4rj6-rcx3-jvm9.json b/advisories/unreviewed/2022/05/GHSA-4rj6-rcx3-jvm9/GHSA-4rj6-rcx3-jvm9.json index 08fea0946e9..903f1339033 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rj6-rcx3-jvm9/GHSA-4rj6-rcx3-jvm9.json +++ b/advisories/unreviewed/2022/05/GHSA-4rj6-rcx3-jvm9/GHSA-4rj6-rcx3-jvm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4w5r-xgqv-25rr/GHSA-4w5r-xgqv-25rr.json b/advisories/unreviewed/2022/05/GHSA-4w5r-xgqv-25rr/GHSA-4w5r-xgqv-25rr.json index 84c2ca80c35..d54f7325aa2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w5r-xgqv-25rr/GHSA-4w5r-xgqv-25rr.json +++ b/advisories/unreviewed/2022/05/GHSA-4w5r-xgqv-25rr/GHSA-4w5r-xgqv-25rr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4w79-gq64-m4gh/GHSA-4w79-gq64-m4gh.json b/advisories/unreviewed/2022/05/GHSA-4w79-gq64-m4gh/GHSA-4w79-gq64-m4gh.json index 3f7f6363c8b..f945b21a6be 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w79-gq64-m4gh/GHSA-4w79-gq64-m4gh.json +++ b/advisories/unreviewed/2022/05/GHSA-4w79-gq64-m4gh/GHSA-4w79-gq64-m4gh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-528v-gr3q-63mr/GHSA-528v-gr3q-63mr.json b/advisories/unreviewed/2022/05/GHSA-528v-gr3q-63mr/GHSA-528v-gr3q-63mr.json index 41db2bbc58e..a48620d2e52 100644 --- a/advisories/unreviewed/2022/05/GHSA-528v-gr3q-63mr/GHSA-528v-gr3q-63mr.json +++ b/advisories/unreviewed/2022/05/GHSA-528v-gr3q-63mr/GHSA-528v-gr3q-63mr.json @@ -7,12 +7,8 @@ "CVE-2020-9899" ], "details": "A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-52pf-qm7m-948q/GHSA-52pf-qm7m-948q.json b/advisories/unreviewed/2022/05/GHSA-52pf-qm7m-948q/GHSA-52pf-qm7m-948q.json index d66e1829a1b..78144861e14 100644 --- a/advisories/unreviewed/2022/05/GHSA-52pf-qm7m-948q/GHSA-52pf-qm7m-948q.json +++ b/advisories/unreviewed/2022/05/GHSA-52pf-qm7m-948q/GHSA-52pf-qm7m-948q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53rc-5qhc-pmxp/GHSA-53rc-5qhc-pmxp.json b/advisories/unreviewed/2022/05/GHSA-53rc-5qhc-pmxp/GHSA-53rc-5qhc-pmxp.json index cfb50a57820..5559aae8306 100644 --- a/advisories/unreviewed/2022/05/GHSA-53rc-5qhc-pmxp/GHSA-53rc-5qhc-pmxp.json +++ b/advisories/unreviewed/2022/05/GHSA-53rc-5qhc-pmxp/GHSA-53rc-5qhc-pmxp.json @@ -7,12 +7,8 @@ "CVE-2020-24419" ], "details": "Adobe After Effects version 17.1.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53w9-wg73-ghrw/GHSA-53w9-wg73-ghrw.json b/advisories/unreviewed/2022/05/GHSA-53w9-wg73-ghrw/GHSA-53w9-wg73-ghrw.json index cab924a7acd..3a913dfd0eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-53w9-wg73-ghrw/GHSA-53w9-wg73-ghrw.json +++ b/advisories/unreviewed/2022/05/GHSA-53w9-wg73-ghrw/GHSA-53w9-wg73-ghrw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53ww-g6xr-hmgh/GHSA-53ww-g6xr-hmgh.json b/advisories/unreviewed/2022/05/GHSA-53ww-g6xr-hmgh/GHSA-53ww-g6xr-hmgh.json index 3a19d8b04e0..5a481014a9f 100644 --- a/advisories/unreviewed/2022/05/GHSA-53ww-g6xr-hmgh/GHSA-53ww-g6xr-hmgh.json +++ b/advisories/unreviewed/2022/05/GHSA-53ww-g6xr-hmgh/GHSA-53ww-g6xr-hmgh.json @@ -7,12 +7,8 @@ "CVE-2020-14843" ], "details": "Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Actions). Supported versions that are affected are 5.5.0.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Business Intelligence Enterprise Edition accessible data as well as unauthorized read access to a subset of Oracle Business Intelligence Enterprise Edition accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Business Intelligence Enterprise Edition. CVSS 3.1 Base Score 7.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5495-xhr4-vgh9/GHSA-5495-xhr4-vgh9.json b/advisories/unreviewed/2022/05/GHSA-5495-xhr4-vgh9/GHSA-5495-xhr4-vgh9.json index 02240f27691..50381aec5dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-5495-xhr4-vgh9/GHSA-5495-xhr4-vgh9.json +++ b/advisories/unreviewed/2022/05/GHSA-5495-xhr4-vgh9/GHSA-5495-xhr4-vgh9.json @@ -7,12 +7,8 @@ "CVE-2020-14840" ], "details": "Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Diagnostics). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Application Object Library. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Application Object Library, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Object Library accessible data. CVSS 3.1 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-54hx-xv6r-c55r/GHSA-54hx-xv6r-c55r.json b/advisories/unreviewed/2022/05/GHSA-54hx-xv6r-c55r/GHSA-54hx-xv6r-c55r.json index 459fa82baff..09b5198d901 100644 --- a/advisories/unreviewed/2022/05/GHSA-54hx-xv6r-c55r/GHSA-54hx-xv6r-c55r.json +++ b/advisories/unreviewed/2022/05/GHSA-54hx-xv6r-c55r/GHSA-54hx-xv6r-c55r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-578j-g69c-m62r/GHSA-578j-g69c-m62r.json b/advisories/unreviewed/2022/05/GHSA-578j-g69c-m62r/GHSA-578j-g69c-m62r.json index 94e718fd1f9..5b106c8b832 100644 --- a/advisories/unreviewed/2022/05/GHSA-578j-g69c-m62r/GHSA-578j-g69c-m62r.json +++ b/advisories/unreviewed/2022/05/GHSA-578j-g69c-m62r/GHSA-578j-g69c-m62r.json @@ -7,12 +7,8 @@ "CVE-2020-7125" ], "details": "A remote escalation of privilege vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-57h6-vpq8-cwg3/GHSA-57h6-vpq8-cwg3.json b/advisories/unreviewed/2022/05/GHSA-57h6-vpq8-cwg3/GHSA-57h6-vpq8-cwg3.json index feddbc3a106..733001c3da4 100644 --- a/advisories/unreviewed/2022/05/GHSA-57h6-vpq8-cwg3/GHSA-57h6-vpq8-cwg3.json +++ b/advisories/unreviewed/2022/05/GHSA-57h6-vpq8-cwg3/GHSA-57h6-vpq8-cwg3.json @@ -7,12 +7,8 @@ "CVE-2020-27607" ], "details": "In BigBlueButton before 2.2.28 (or earlier), the client-side Mute button only signifies that the server should stop accepting audio data from the client. It does not directly configure the client to stop sending audio data to the server, and thus a modified server could store the audio data and/or transmit it to one or more meeting participants or other third parties.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-57vc-vmwg-pg76/GHSA-57vc-vmwg-pg76.json b/advisories/unreviewed/2022/05/GHSA-57vc-vmwg-pg76/GHSA-57vc-vmwg-pg76.json index d4bb3d5f0f2..26b2efed1d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-57vc-vmwg-pg76/GHSA-57vc-vmwg-pg76.json +++ b/advisories/unreviewed/2022/05/GHSA-57vc-vmwg-pg76/GHSA-57vc-vmwg-pg76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5863-48jr-g64p/GHSA-5863-48jr-g64p.json b/advisories/unreviewed/2022/05/GHSA-5863-48jr-g64p/GHSA-5863-48jr-g64p.json index e9fe4d4282c..52670bca2cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-5863-48jr-g64p/GHSA-5863-48jr-g64p.json +++ b/advisories/unreviewed/2022/05/GHSA-5863-48jr-g64p/GHSA-5863-48jr-g64p.json @@ -7,12 +7,8 @@ "CVE-2007-1770" ], "details": "Buffer overflow in the ArcSDE service (giomgr) in Environmental Systems Research Institute (ESRI) ArcGIS before 9.2 Service Pack 2, when using three tiered ArcSDE configurations, allows remote attackers to cause a denial of service (giomgr crash) and execute arbitrary code via long parameters in crafted requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c37-w4h4-hj3v/GHSA-5c37-w4h4-hj3v.json b/advisories/unreviewed/2022/05/GHSA-5c37-w4h4-hj3v/GHSA-5c37-w4h4-hj3v.json index 648d6717ccb..6a95294f318 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c37-w4h4-hj3v/GHSA-5c37-w4h4-hj3v.json +++ b/advisories/unreviewed/2022/05/GHSA-5c37-w4h4-hj3v/GHSA-5c37-w4h4-hj3v.json @@ -7,12 +7,8 @@ "CVE-2020-24650" ], "details": "A legend expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5f48-6vm9-w28v/GHSA-5f48-6vm9-w28v.json b/advisories/unreviewed/2022/05/GHSA-5f48-6vm9-w28v/GHSA-5f48-6vm9-w28v.json index 0cce97d7eef..443f93d1150 100644 --- a/advisories/unreviewed/2022/05/GHSA-5f48-6vm9-w28v/GHSA-5f48-6vm9-w28v.json +++ b/advisories/unreviewed/2022/05/GHSA-5f48-6vm9-w28v/GHSA-5f48-6vm9-w28v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fqm-5hwj-59mf/GHSA-5fqm-5hwj-59mf.json b/advisories/unreviewed/2022/05/GHSA-5fqm-5hwj-59mf/GHSA-5fqm-5hwj-59mf.json index c3e7973738f..ed31afb0ffa 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fqm-5hwj-59mf/GHSA-5fqm-5hwj-59mf.json +++ b/advisories/unreviewed/2022/05/GHSA-5fqm-5hwj-59mf/GHSA-5fqm-5hwj-59mf.json @@ -7,12 +7,8 @@ "CVE-2020-15681" ], "details": "When multiple WASM threads had a reference to a module, and were looking up exported functions, one WASM thread could have overwritten another's entry in a shared stub table, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 82.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5frm-fh7j-wpfx/GHSA-5frm-fh7j-wpfx.json b/advisories/unreviewed/2022/05/GHSA-5frm-fh7j-wpfx/GHSA-5frm-fh7j-wpfx.json index b28173a606b..7fb997a8f4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-5frm-fh7j-wpfx/GHSA-5frm-fh7j-wpfx.json +++ b/advisories/unreviewed/2022/05/GHSA-5frm-fh7j-wpfx/GHSA-5frm-fh7j-wpfx.json @@ -7,12 +7,8 @@ "CVE-2020-14803" ], "details": "Vulnerability in the Java SE product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 11.0.8 and 15. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g5f-7wfm-59q5/GHSA-5g5f-7wfm-59q5.json b/advisories/unreviewed/2022/05/GHSA-5g5f-7wfm-59q5/GHSA-5g5f-7wfm-59q5.json index 5efcba031cf..724e1cfccaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g5f-7wfm-59q5/GHSA-5g5f-7wfm-59q5.json +++ b/advisories/unreviewed/2022/05/GHSA-5g5f-7wfm-59q5/GHSA-5g5f-7wfm-59q5.json @@ -7,12 +7,8 @@ "CVE-2018-4391" ], "details": "An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El Capitan, watchOS 4.3, iOS 12.1. Processing a maliciously crafted text message may lead to UI spoofing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5jgx-55qh-p965/GHSA-5jgx-55qh-p965.json b/advisories/unreviewed/2022/05/GHSA-5jgx-55qh-p965/GHSA-5jgx-55qh-p965.json index 1f94ebf7dba..b92d277284a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jgx-55qh-p965/GHSA-5jgx-55qh-p965.json +++ b/advisories/unreviewed/2022/05/GHSA-5jgx-55qh-p965/GHSA-5jgx-55qh-p965.json @@ -7,12 +7,8 @@ "CVE-2020-9997" ], "details": "An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6, watchOS 6.2.8. A malicious application may disclose restricted memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mqq-gcv3-gmvf/GHSA-5mqq-gcv3-gmvf.json b/advisories/unreviewed/2022/05/GHSA-5mqq-gcv3-gmvf/GHSA-5mqq-gcv3-gmvf.json index 5b569cf17c7..a4900c283ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mqq-gcv3-gmvf/GHSA-5mqq-gcv3-gmvf.json +++ b/advisories/unreviewed/2022/05/GHSA-5mqq-gcv3-gmvf/GHSA-5mqq-gcv3-gmvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5mrj-23w8-w7hx/GHSA-5mrj-23w8-w7hx.json b/advisories/unreviewed/2022/05/GHSA-5mrj-23w8-w7hx/GHSA-5mrj-23w8-w7hx.json index 4130d6ad6e9..6128cd96047 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mrj-23w8-w7hx/GHSA-5mrj-23w8-w7hx.json +++ b/advisories/unreviewed/2022/05/GHSA-5mrj-23w8-w7hx/GHSA-5mrj-23w8-w7hx.json @@ -7,12 +7,8 @@ "CVE-2020-25820" ], "details": "BigBlueButton before 2.2.7 allows remote authenticated users to read local files and conduct SSRF attacks via an uploaded Office document that has a crafted URL in an ODF xlink field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5p6j-prh7-gv7x/GHSA-5p6j-prh7-gv7x.json b/advisories/unreviewed/2022/05/GHSA-5p6j-prh7-gv7x/GHSA-5p6j-prh7-gv7x.json index 1428c9ae274..a814e5bdcca 100644 --- a/advisories/unreviewed/2022/05/GHSA-5p6j-prh7-gv7x/GHSA-5p6j-prh7-gv7x.json +++ b/advisories/unreviewed/2022/05/GHSA-5p6j-prh7-gv7x/GHSA-5p6j-prh7-gv7x.json @@ -7,12 +7,8 @@ "CVE-2020-3317" ], "details": "A vulnerability in the ssl_inspection component of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to crash Snort instances. The vulnerability is due to insufficient input validation in the ssl_inspection component. An attacker could exploit this vulnerability by sending a malformed TLS packet through a Cisco Adaptive Security Appliance (ASA). A successful exploit could allow the attacker to crash a Snort instance, resulting in a denial of service (DoS) condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pxf-pwcv-5hxr/GHSA-5pxf-pwcv-5hxr.json b/advisories/unreviewed/2022/05/GHSA-5pxf-pwcv-5hxr/GHSA-5pxf-pwcv-5hxr.json index 2c1969275fd..f31d98ab171 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pxf-pwcv-5hxr/GHSA-5pxf-pwcv-5hxr.json +++ b/advisories/unreviewed/2022/05/GHSA-5pxf-pwcv-5hxr/GHSA-5pxf-pwcv-5hxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qg6-2968-fxg3/GHSA-5qg6-2968-fxg3.json b/advisories/unreviewed/2022/05/GHSA-5qg6-2968-fxg3/GHSA-5qg6-2968-fxg3.json index f5ddf6681ba..6589431b1d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qg6-2968-fxg3/GHSA-5qg6-2968-fxg3.json +++ b/advisories/unreviewed/2022/05/GHSA-5qg6-2968-fxg3/GHSA-5qg6-2968-fxg3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5v89-mvjq-f3f8/GHSA-5v89-mvjq-f3f8.json b/advisories/unreviewed/2022/05/GHSA-5v89-mvjq-f3f8/GHSA-5v89-mvjq-f3f8.json index 5ebebda2c0f..534c3e83d83 100644 --- a/advisories/unreviewed/2022/05/GHSA-5v89-mvjq-f3f8/GHSA-5v89-mvjq-f3f8.json +++ b/advisories/unreviewed/2022/05/GHSA-5v89-mvjq-f3f8/GHSA-5v89-mvjq-f3f8.json @@ -7,12 +7,8 @@ "CVE-2020-14901" ], "details": "Vulnerability in the RDBMS Security component of Oracle Database Server. The supported version that is affected is 19c. Easily exploitable vulnerability allows high privileged attacker having Analyze Any privilege with network access via Oracle Net to compromise RDBMS Security. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all RDBMS Security accessible data. CVSS 3.1 Base Score 4.9 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62mr-jqw4-7mmr/GHSA-62mr-jqw4-7mmr.json b/advisories/unreviewed/2022/05/GHSA-62mr-jqw4-7mmr/GHSA-62mr-jqw4-7mmr.json index e5ce5fb28ec..369355dada4 100644 --- a/advisories/unreviewed/2022/05/GHSA-62mr-jqw4-7mmr/GHSA-62mr-jqw4-7mmr.json +++ b/advisories/unreviewed/2022/05/GHSA-62mr-jqw4-7mmr/GHSA-62mr-jqw4-7mmr.json @@ -7,12 +7,8 @@ "CVE-2019-8539" ], "details": "A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6, Security Update 2019-004 High Sierra, Security Update 2019-004 Sierra. A malicious application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-63q4-jcgf-q39h/GHSA-63q4-jcgf-q39h.json b/advisories/unreviewed/2022/05/GHSA-63q4-jcgf-q39h/GHSA-63q4-jcgf-q39h.json index c101145900c..e457389b6f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-63q4-jcgf-q39h/GHSA-63q4-jcgf-q39h.json +++ b/advisories/unreviewed/2022/05/GHSA-63q4-jcgf-q39h/GHSA-63q4-jcgf-q39h.json @@ -7,12 +7,8 @@ "CVE-2019-8575" ], "details": "The issue was addressed with improved data deletion. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A base station factory reset may not delete all user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-63xf-x242-85mq/GHSA-63xf-x242-85mq.json b/advisories/unreviewed/2022/05/GHSA-63xf-x242-85mq/GHSA-63xf-x242-85mq.json index 3cc20664030..6b4995897ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-63xf-x242-85mq/GHSA-63xf-x242-85mq.json +++ b/advisories/unreviewed/2022/05/GHSA-63xf-x242-85mq/GHSA-63xf-x242-85mq.json @@ -7,12 +7,8 @@ "CVE-2020-27604" ], "details": "BigBlueButton before 2.3 does not implement LibreOffice sandboxing. This might make it easier for remote authenticated users to read the API shared secret in the bigbluebutton.properties file. With the API shared secret, an attacker can (for example) use api/join to join an arbitrary meeting regardless of its guestPolicy setting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-645c-jj5m-8j69/GHSA-645c-jj5m-8j69.json b/advisories/unreviewed/2022/05/GHSA-645c-jj5m-8j69/GHSA-645c-jj5m-8j69.json index 43397cae76b..62aeb324098 100644 --- a/advisories/unreviewed/2022/05/GHSA-645c-jj5m-8j69/GHSA-645c-jj5m-8j69.json +++ b/advisories/unreviewed/2022/05/GHSA-645c-jj5m-8j69/GHSA-645c-jj5m-8j69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6495-493q-rhcr/GHSA-6495-493q-rhcr.json b/advisories/unreviewed/2022/05/GHSA-6495-493q-rhcr/GHSA-6495-493q-rhcr.json index daee3c32279..b72df29ec88 100644 --- a/advisories/unreviewed/2022/05/GHSA-6495-493q-rhcr/GHSA-6495-493q-rhcr.json +++ b/advisories/unreviewed/2022/05/GHSA-6495-493q-rhcr/GHSA-6495-493q-rhcr.json @@ -7,12 +7,8 @@ "CVE-2020-27603" ], "details": "BigBlueButton before 2.2.27 has an unsafe JODConverter setting in which LibreOffice document conversions can access external files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65w7-fcmg-7963/GHSA-65w7-fcmg-7963.json b/advisories/unreviewed/2022/05/GHSA-65w7-fcmg-7963/GHSA-65w7-fcmg-7963.json index 97241a7b798..b1c30893f09 100644 --- a/advisories/unreviewed/2022/05/GHSA-65w7-fcmg-7963/GHSA-65w7-fcmg-7963.json +++ b/advisories/unreviewed/2022/05/GHSA-65w7-fcmg-7963/GHSA-65w7-fcmg-7963.json @@ -7,12 +7,8 @@ "CVE-2020-3998" ], "details": "VMware Horizon Client for Windows (5.x prior to 5.5.0) contains an information disclosure vulnerability. A malicious attacker with local privileges on the machine where Horizon Client for Windows is installed may be able to retrieve hashed credentials if the client crashes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-676w-c8rg-vhg2/GHSA-676w-c8rg-vhg2.json b/advisories/unreviewed/2022/05/GHSA-676w-c8rg-vhg2/GHSA-676w-c8rg-vhg2.json index 7e2570ca068..92f89cfdf95 100644 --- a/advisories/unreviewed/2022/05/GHSA-676w-c8rg-vhg2/GHSA-676w-c8rg-vhg2.json +++ b/advisories/unreviewed/2022/05/GHSA-676w-c8rg-vhg2/GHSA-676w-c8rg-vhg2.json @@ -7,12 +7,8 @@ "CVE-2019-8509" ], "details": "This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Catalina 10.15. A malicious application may be able to elevate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67g5-28vw-86mr/GHSA-67g5-28vw-86mr.json b/advisories/unreviewed/2022/05/GHSA-67g5-28vw-86mr/GHSA-67g5-28vw-86mr.json index be068baa386..52d67f01312 100644 --- a/advisories/unreviewed/2022/05/GHSA-67g5-28vw-86mr/GHSA-67g5-28vw-86mr.json +++ b/advisories/unreviewed/2022/05/GHSA-67g5-28vw-86mr/GHSA-67g5-28vw-86mr.json @@ -7,12 +7,8 @@ "CVE-2020-7170" ], "details": "A select expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-67g9-87g9-j8g9/GHSA-67g9-87g9-j8g9.json b/advisories/unreviewed/2022/05/GHSA-67g9-87g9-j8g9/GHSA-67g9-87g9-j8g9.json index a6cac2506fc..0da8247b8d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-67g9-87g9-j8g9/GHSA-67g9-87g9-j8g9.json +++ b/advisories/unreviewed/2022/05/GHSA-67g9-87g9-j8g9/GHSA-67g9-87g9-j8g9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68vv-mff5-qhcm/GHSA-68vv-mff5-qhcm.json b/advisories/unreviewed/2022/05/GHSA-68vv-mff5-qhcm/GHSA-68vv-mff5-qhcm.json index 94fe0e3ce33..5b7a1f7576a 100644 --- a/advisories/unreviewed/2022/05/GHSA-68vv-mff5-qhcm/GHSA-68vv-mff5-qhcm.json +++ b/advisories/unreviewed/2022/05/GHSA-68vv-mff5-qhcm/GHSA-68vv-mff5-qhcm.json @@ -7,12 +7,8 @@ "CVE-2019-8538" ], "details": "A denial of service issue was addressed with improved validation. This issue is fixed in watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. Processing a maliciously crafted vcf file may lead to a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-695x-96wc-2xgv/GHSA-695x-96wc-2xgv.json b/advisories/unreviewed/2022/05/GHSA-695x-96wc-2xgv/GHSA-695x-96wc-2xgv.json index 823bb55a117..fe3bf16ceb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-695x-96wc-2xgv/GHSA-695x-96wc-2xgv.json +++ b/advisories/unreviewed/2022/05/GHSA-695x-96wc-2xgv/GHSA-695x-96wc-2xgv.json @@ -7,12 +7,8 @@ "CVE-2020-9828" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A remote attacker may be able to leak sensitive user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6c43-4qm7-f3r6/GHSA-6c43-4qm7-f3r6.json b/advisories/unreviewed/2022/05/GHSA-6c43-4qm7-f3r6/GHSA-6c43-4qm7-f3r6.json index 5e08882bcf7..531f90a2516 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c43-4qm7-f3r6/GHSA-6c43-4qm7-f3r6.json +++ b/advisories/unreviewed/2022/05/GHSA-6c43-4qm7-f3r6/GHSA-6c43-4qm7-f3r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6c46-9x5g-g2vg/GHSA-6c46-9x5g-g2vg.json b/advisories/unreviewed/2022/05/GHSA-6c46-9x5g-g2vg/GHSA-6c46-9x5g-g2vg.json index 52d3fab4a58..477c34fc784 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c46-9x5g-g2vg/GHSA-6c46-9x5g-g2vg.json +++ b/advisories/unreviewed/2022/05/GHSA-6c46-9x5g-g2vg/GHSA-6c46-9x5g-g2vg.json @@ -7,12 +7,8 @@ "CVE-2020-16246" ], "details": "The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow attackers to trick users into following a link or navigating to a page that posts a malicious JavaScript statement to the vulnerable site, causing the malicious JavaScript to be rendered by the site and executed by the victim client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6ccf-f672-cpvv/GHSA-6ccf-f672-cpvv.json b/advisories/unreviewed/2022/05/GHSA-6ccf-f672-cpvv/GHSA-6ccf-f672-cpvv.json index 5a7a5c66382..a0d6ffdc90d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ccf-f672-cpvv/GHSA-6ccf-f672-cpvv.json +++ b/advisories/unreviewed/2022/05/GHSA-6ccf-f672-cpvv/GHSA-6ccf-f672-cpvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6cr6-65hv-4gh7/GHSA-6cr6-65hv-4gh7.json b/advisories/unreviewed/2022/05/GHSA-6cr6-65hv-4gh7/GHSA-6cr6-65hv-4gh7.json index b622d1b7213..10de6fca2e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cr6-65hv-4gh7/GHSA-6cr6-65hv-4gh7.json +++ b/advisories/unreviewed/2022/05/GHSA-6cr6-65hv-4gh7/GHSA-6cr6-65hv-4gh7.json @@ -7,12 +7,8 @@ "CVE-2020-9994" ], "details": "A path handling issue was addressed with improved validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5, tvOS 13.4.5, watchOS 6.2.5. A malicious application may be able to overwrite arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6fj5-mjmm-79p5/GHSA-6fj5-mjmm-79p5.json b/advisories/unreviewed/2022/05/GHSA-6fj5-mjmm-79p5/GHSA-6fj5-mjmm-79p5.json index 2fe79a0e89f..2d0531e257c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fj5-mjmm-79p5/GHSA-6fj5-mjmm-79p5.json +++ b/advisories/unreviewed/2022/05/GHSA-6fj5-mjmm-79p5/GHSA-6fj5-mjmm-79p5.json @@ -7,12 +7,8 @@ "CVE-2020-6367" ], "details": "There is a reflected cross site scripting vulnerability in SAP NetWeaver Composite Application Framework, versions - 7.20, 7.30, 7.31, 7.40, 7.50. An unauthenticated attacker can trick an unsuspecting authenticated user to click on a malicious link. The end users browser has no way to know that the script should not be trusted, and will execute the script, resulting in sensitive information being disclosed or modified.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6h86-pp56-mp6m/GHSA-6h86-pp56-mp6m.json b/advisories/unreviewed/2022/05/GHSA-6h86-pp56-mp6m/GHSA-6h86-pp56-mp6m.json index 1fe48890fea..70ddd9a4aa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h86-pp56-mp6m/GHSA-6h86-pp56-mp6m.json +++ b/advisories/unreviewed/2022/05/GHSA-6h86-pp56-mp6m/GHSA-6h86-pp56-mp6m.json @@ -7,12 +7,8 @@ "CVE-2020-27613" ], "details": "The installation procedure in BigBlueButton before 2.2.28 (or earlier) uses ClueCon as the FreeSWITCH password, which allows local users to achieve unintended FreeSWITCH access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6m36-86vp-x4xx/GHSA-6m36-86vp-x4xx.json b/advisories/unreviewed/2022/05/GHSA-6m36-86vp-x4xx/GHSA-6m36-86vp-x4xx.json index 820cfc4fb7c..8f5aec29ae2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m36-86vp-x4xx/GHSA-6m36-86vp-x4xx.json +++ b/advisories/unreviewed/2022/05/GHSA-6m36-86vp-x4xx/GHSA-6m36-86vp-x4xx.json @@ -7,12 +7,8 @@ "CVE-2020-3565" ], "details": "A vulnerability in the TCP Intercept functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured Access Control Policies (including Geolocation) and Service Polices on an affected system. The vulnerability exists because TCP Intercept is invoked when the embryonic connection limit is reached, which can cause the underlying detection engine to process the packet incorrectly. An attacker could exploit this vulnerability by sending a crafted stream of traffic that matches a policy on which TCP Intercept is configured. A successful exploit could allow the attacker to match on an incorrect policy, which could allow the traffic to be forwarded when it should be dropped. In addition, the traffic could incorrectly be dropped.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r3j-9732-3cf4/GHSA-6r3j-9732-3cf4.json b/advisories/unreviewed/2022/05/GHSA-6r3j-9732-3cf4/GHSA-6r3j-9732-3cf4.json index 0ab6d065d2b..6c523897de2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r3j-9732-3cf4/GHSA-6r3j-9732-3cf4.json +++ b/advisories/unreviewed/2022/05/GHSA-6r3j-9732-3cf4/GHSA-6r3j-9732-3cf4.json @@ -7,12 +7,8 @@ "CVE-2020-27609" ], "details": "BigBlueButton through 2.2.28 records a video meeting despite the deactivation of video recording in the user interface. This may result in data storage beyond what is authorized for a specific meeting topic or participant.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r5x-9mmr-r7q7/GHSA-6r5x-9mmr-r7q7.json b/advisories/unreviewed/2022/05/GHSA-6r5x-9mmr-r7q7/GHSA-6r5x-9mmr-r7q7.json index e7b5d58a427..876be5ed31c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r5x-9mmr-r7q7/GHSA-6r5x-9mmr-r7q7.json +++ b/advisories/unreviewed/2022/05/GHSA-6r5x-9mmr-r7q7/GHSA-6r5x-9mmr-r7q7.json @@ -7,12 +7,8 @@ "CVE-2020-6876" ], "details": "A ZTE product is impacted by an XSS vulnerability. The vulnerability is caused by the lack of correct verification of client data in the WEB module. By inserting malicious scripts into the web module, a remote attacker could trigger an XSS attack when the user browses the web page. Then the attacker could use the vulnerability to steal user cookies or destroy the page structure. This affects: eVDC ZXCLOUD-iROSV6.03.04", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rgf-4c44-8hwh/GHSA-6rgf-4c44-8hwh.json b/advisories/unreviewed/2022/05/GHSA-6rgf-4c44-8hwh/GHSA-6rgf-4c44-8hwh.json index 02b4d6aad14..4e74e077af0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rgf-4c44-8hwh/GHSA-6rgf-4c44-8hwh.json +++ b/advisories/unreviewed/2022/05/GHSA-6rgf-4c44-8hwh/GHSA-6rgf-4c44-8hwh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rvf-jqm4-p3fx/GHSA-6rvf-jqm4-p3fx.json b/advisories/unreviewed/2022/05/GHSA-6rvf-jqm4-p3fx/GHSA-6rvf-jqm4-p3fx.json index 8e2f1c0618c..a87307ca457 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rvf-jqm4-p3fx/GHSA-6rvf-jqm4-p3fx.json +++ b/advisories/unreviewed/2022/05/GHSA-6rvf-jqm4-p3fx/GHSA-6rvf-jqm4-p3fx.json @@ -7,12 +7,8 @@ "CVE-2020-14825" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6wvr-gh66-4v68/GHSA-6wvr-gh66-4v68.json b/advisories/unreviewed/2022/05/GHSA-6wvr-gh66-4v68/GHSA-6wvr-gh66-4v68.json index 13fb6e1753e..f17d98d0ff4 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wvr-gh66-4v68/GHSA-6wvr-gh66-4v68.json +++ b/advisories/unreviewed/2022/05/GHSA-6wvr-gh66-4v68/GHSA-6wvr-gh66-4v68.json @@ -7,12 +7,8 @@ "CVE-2020-9924" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in macOS Catalina 10.15.6. A remote attacker may be able to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6xw6-p263-rccg/GHSA-6xw6-p263-rccg.json b/advisories/unreviewed/2022/05/GHSA-6xw6-p263-rccg/GHSA-6xw6-p263-rccg.json index 4958eb31d23..a545cef3bd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xw6-p263-rccg/GHSA-6xw6-p263-rccg.json +++ b/advisories/unreviewed/2022/05/GHSA-6xw6-p263-rccg/GHSA-6xw6-p263-rccg.json @@ -7,12 +7,8 @@ "CVE-2020-14841" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7233-cpff-xw5j/GHSA-7233-cpff-xw5j.json b/advisories/unreviewed/2022/05/GHSA-7233-cpff-xw5j/GHSA-7233-cpff-xw5j.json index 7c6a252b53c..48a5d9572ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-7233-cpff-xw5j/GHSA-7233-cpff-xw5j.json +++ b/advisories/unreviewed/2022/05/GHSA-7233-cpff-xw5j/GHSA-7233-cpff-xw5j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-725w-grwp-vmm4/GHSA-725w-grwp-vmm4.json b/advisories/unreviewed/2022/05/GHSA-725w-grwp-vmm4/GHSA-725w-grwp-vmm4.json index 4a24cd0a79d..3eb515299d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-725w-grwp-vmm4/GHSA-725w-grwp-vmm4.json +++ b/advisories/unreviewed/2022/05/GHSA-725w-grwp-vmm4/GHSA-725w-grwp-vmm4.json @@ -7,12 +7,8 @@ "CVE-2020-14787" ], "details": "Vulnerability in the Oracle Communications Diameter Signaling Router (DSR) product of Oracle Communications (component: User Interface). Supported versions that are affected are 8.0.0.0-8.4.0.5. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Communications Diameter Signaling Router (DSR). Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Communications Diameter Signaling Router (DSR), attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Communications Diameter Signaling Router (DSR) accessible data as well as unauthorized read access to a subset of Oracle Communications Diameter Signaling Router (DSR) accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72vh-f9rj-wxfw/GHSA-72vh-f9rj-wxfw.json b/advisories/unreviewed/2022/05/GHSA-72vh-f9rj-wxfw/GHSA-72vh-f9rj-wxfw.json index d859b78cce4..26e05358267 100644 --- a/advisories/unreviewed/2022/05/GHSA-72vh-f9rj-wxfw/GHSA-72vh-f9rj-wxfw.json +++ b/advisories/unreviewed/2022/05/GHSA-72vh-f9rj-wxfw/GHSA-72vh-f9rj-wxfw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-73gv-jg38-6pvm/GHSA-73gv-jg38-6pvm.json b/advisories/unreviewed/2022/05/GHSA-73gv-jg38-6pvm/GHSA-73gv-jg38-6pvm.json index bc1df5d3ce8..3ed34da23da 100644 --- a/advisories/unreviewed/2022/05/GHSA-73gv-jg38-6pvm/GHSA-73gv-jg38-6pvm.json +++ b/advisories/unreviewed/2022/05/GHSA-73gv-jg38-6pvm/GHSA-73gv-jg38-6pvm.json @@ -7,12 +7,8 @@ "CVE-2020-24418" ], "details": "Adobe After Effects version 17.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .aepx file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-747m-4qjr-r67x/GHSA-747m-4qjr-r67x.json b/advisories/unreviewed/2022/05/GHSA-747m-4qjr-r67x/GHSA-747m-4qjr-r67x.json index ba4e197d6e4..f0cf76484c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-747m-4qjr-r67x/GHSA-747m-4qjr-r67x.json +++ b/advisories/unreviewed/2022/05/GHSA-747m-4qjr-r67x/GHSA-747m-4qjr-r67x.json @@ -7,12 +7,8 @@ "CVE-2020-14878" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: LDAP Auth). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows low privileged attacker with access to the physical communication segment attached to the hardware where the MySQL Server executes to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover of MySQL Server. CVSS 3.1 Base Score 8.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-749r-88fw-9fjh/GHSA-749r-88fw-9fjh.json b/advisories/unreviewed/2022/05/GHSA-749r-88fw-9fjh/GHSA-749r-88fw-9fjh.json index b2ae2935b3a..41b7d38b546 100644 --- a/advisories/unreviewed/2022/05/GHSA-749r-88fw-9fjh/GHSA-749r-88fw-9fjh.json +++ b/advisories/unreviewed/2022/05/GHSA-749r-88fw-9fjh/GHSA-749r-88fw-9fjh.json @@ -7,12 +7,8 @@ "CVE-2020-27612" ], "details": "Greenlight in BigBlueButton through 2.2.28 places usernames in room URLs, which may represent an unintended information leak to users in a room, or an information leak to outsiders if any user publishes a screenshot of a browser window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7627-2wxq-jrmh/GHSA-7627-2wxq-jrmh.json b/advisories/unreviewed/2022/05/GHSA-7627-2wxq-jrmh/GHSA-7627-2wxq-jrmh.json index c603b576492..eede0bbf26c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7627-2wxq-jrmh/GHSA-7627-2wxq-jrmh.json +++ b/advisories/unreviewed/2022/05/GHSA-7627-2wxq-jrmh/GHSA-7627-2wxq-jrmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7648-ghjh-9mr3/GHSA-7648-ghjh-9mr3.json b/advisories/unreviewed/2022/05/GHSA-7648-ghjh-9mr3/GHSA-7648-ghjh-9mr3.json index 1c876c63bab..e417e596488 100644 --- a/advisories/unreviewed/2022/05/GHSA-7648-ghjh-9mr3/GHSA-7648-ghjh-9mr3.json +++ b/advisories/unreviewed/2022/05/GHSA-7648-ghjh-9mr3/GHSA-7648-ghjh-9mr3.json @@ -7,12 +7,8 @@ "CVE-2020-9749" ], "details": "Adobe Animate version 20.5 (and earlier) is affected by an out-of-bounds read vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted .fla file in Animate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7697-5c7w-4x9p/GHSA-7697-5c7w-4x9p.json b/advisories/unreviewed/2022/05/GHSA-7697-5c7w-4x9p/GHSA-7697-5c7w-4x9p.json index 5150dde961c..e1ab692ad92 100644 --- a/advisories/unreviewed/2022/05/GHSA-7697-5c7w-4x9p/GHSA-7697-5c7w-4x9p.json +++ b/advisories/unreviewed/2022/05/GHSA-7697-5c7w-4x9p/GHSA-7697-5c7w-4x9p.json @@ -7,12 +7,8 @@ "CVE-2020-24847" ], "details": "A Cross-Site Request Forgery (CSRF) vulnerability is identified in FruityWifi through 2.4. Due to a lack of CSRF protection in page_config_adv.php, an unauthenticated attacker can lure the victim to visit his website by social engineering or another attack vector. Due to this issue, an unauthenticated attacker can change the newSSID and hostapd_wpa_passphrase.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76f2-2xjh-5prf/GHSA-76f2-2xjh-5prf.json b/advisories/unreviewed/2022/05/GHSA-76f2-2xjh-5prf/GHSA-76f2-2xjh-5prf.json index 903d5abe162..0187a9286c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-76f2-2xjh-5prf/GHSA-76f2-2xjh-5prf.json +++ b/advisories/unreviewed/2022/05/GHSA-76f2-2xjh-5prf/GHSA-76f2-2xjh-5prf.json @@ -7,12 +7,8 @@ "CVE-2020-24423" ], "details": "Adobe Media Encoder version 14.4 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-78fc-hxwx-qqwj/GHSA-78fc-hxwx-qqwj.json b/advisories/unreviewed/2022/05/GHSA-78fc-hxwx-qqwj/GHSA-78fc-hxwx-qqwj.json index 51ccb7ed8c2..10910c08d20 100644 --- a/advisories/unreviewed/2022/05/GHSA-78fc-hxwx-qqwj/GHSA-78fc-hxwx-qqwj.json +++ b/advisories/unreviewed/2022/05/GHSA-78fc-hxwx-qqwj/GHSA-78fc-hxwx-qqwj.json @@ -7,12 +7,8 @@ "CVE-2020-3533" ], "details": "A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to restart unexpectedly. The vulnerability is due to a lack of sufficient memory management protections under heavy SNMP polling loads. An attacker could exploit this vulnerability by sending a high rate of SNMP requests to the SNMP daemon through the management interface on an affected device. A successful exploit could allow the attacker to cause the SNMP daemon process to consume a large amount of system memory over time, which could then lead to an unexpected device restart, causing a denial of service (DoS) condition. This vulnerability affects all versions of SNMP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-78q2-p2ph-jmx6/GHSA-78q2-p2ph-jmx6.json b/advisories/unreviewed/2022/05/GHSA-78q2-p2ph-jmx6/GHSA-78q2-p2ph-jmx6.json index 346e896a37a..4a5c8b38f9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-78q2-p2ph-jmx6/GHSA-78q2-p2ph-jmx6.json +++ b/advisories/unreviewed/2022/05/GHSA-78q2-p2ph-jmx6/GHSA-78q2-p2ph-jmx6.json @@ -7,12 +7,8 @@ "CVE-2020-9331" ], "details": "CryptoPro CSP through 5.0.0.10004 on 32-bit platforms allows Local Privilege Escalation (by local users with the SeChangeNotifyPrivilege right) because user-mode input is mishandled during process creation. An attacker can write arbitrary data to an arbitrary location in the kernel's address space.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cx2-ggh6-cfq5/GHSA-7cx2-ggh6-cfq5.json b/advisories/unreviewed/2022/05/GHSA-7cx2-ggh6-cfq5/GHSA-7cx2-ggh6-cfq5.json index 75ef2a4f25c..d27cdb19c46 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cx2-ggh6-cfq5/GHSA-7cx2-ggh6-cfq5.json +++ b/advisories/unreviewed/2022/05/GHSA-7cx2-ggh6-cfq5/GHSA-7cx2-ggh6-cfq5.json @@ -7,12 +7,8 @@ "CVE-2020-3918" ], "details": "An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. A local user may be able to view sensitive user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7fq3-f4x6-fmg6/GHSA-7fq3-f4x6-fmg6.json b/advisories/unreviewed/2022/05/GHSA-7fq3-f4x6-fmg6/GHSA-7fq3-f4x6-fmg6.json index 6c8ff473e12..d64596901ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fq3-f4x6-fmg6/GHSA-7fq3-f4x6-fmg6.json +++ b/advisories/unreviewed/2022/05/GHSA-7fq3-f4x6-fmg6/GHSA-7fq3-f4x6-fmg6.json @@ -7,12 +7,8 @@ "CVE-2019-4547" ], "details": "IBM Security Directory Server 6.4.0 generates an error message that includes sensitive information about its environment, users, or associated data. IBM X-Force ID: 165949.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7gvq-p4h3-4v6r/GHSA-7gvq-p4h3-4v6r.json b/advisories/unreviewed/2022/05/GHSA-7gvq-p4h3-4v6r/GHSA-7gvq-p4h3-4v6r.json index 65f09e1ec5b..0885d9cde05 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gvq-p4h3-4v6r/GHSA-7gvq-p4h3-4v6r.json +++ b/advisories/unreviewed/2022/05/GHSA-7gvq-p4h3-4v6r/GHSA-7gvq-p4h3-4v6r.json @@ -7,12 +7,8 @@ "CVE-2019-8580" ], "details": "Source-routed IPv4 packets were disabled by default. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. Source-routed IPv4 packets may be unexpectedly accepted.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7j27-3j2r-jhhj/GHSA-7j27-3j2r-jhhj.json b/advisories/unreviewed/2022/05/GHSA-7j27-3j2r-jhhj/GHSA-7j27-3j2r-jhhj.json index 975c8adab6b..1bfc4048588 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j27-3j2r-jhhj/GHSA-7j27-3j2r-jhhj.json +++ b/advisories/unreviewed/2022/05/GHSA-7j27-3j2r-jhhj/GHSA-7j27-3j2r-jhhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jm8-4vmp-ff6g/GHSA-7jm8-4vmp-ff6g.json b/advisories/unreviewed/2022/05/GHSA-7jm8-4vmp-ff6g/GHSA-7jm8-4vmp-ff6g.json index 32cfef503cc..c3b53f75bd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jm8-4vmp-ff6g/GHSA-7jm8-4vmp-ff6g.json +++ b/advisories/unreviewed/2022/05/GHSA-7jm8-4vmp-ff6g/GHSA-7jm8-4vmp-ff6g.json @@ -7,12 +7,8 @@ "CVE-2020-6308" ], "details": "SAP BusinessObjects Business Intelligence Platform (Web Services) versions - 410, 420, 430, allows an unauthenticated attacker to inject arbitrary values as CMS parameters to perform lookups on the internal network which is otherwise not accessible externally. On successful exploitation, attacker can scan internal network to determine internal infrastructure and gather information for further attacks like remote file inclusion, retrieve server files, bypass firewall and force the vulnerable server to perform malicious requests, resulting in a Server-Side Request Forgery vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mx2-6mm5-42m3/GHSA-7mx2-6mm5-42m3.json b/advisories/unreviewed/2022/05/GHSA-7mx2-6mm5-42m3/GHSA-7mx2-6mm5-42m3.json index 7a681b04dbb..a78db886888 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mx2-6mm5-42m3/GHSA-7mx2-6mm5-42m3.json +++ b/advisories/unreviewed/2022/05/GHSA-7mx2-6mm5-42m3/GHSA-7mx2-6mm5-42m3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r27-75hm-vvch/GHSA-7r27-75hm-vvch.json b/advisories/unreviewed/2022/05/GHSA-7r27-75hm-vvch/GHSA-7r27-75hm-vvch.json index b0286d999e4..1db58fcb38f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r27-75hm-vvch/GHSA-7r27-75hm-vvch.json +++ b/advisories/unreviewed/2022/05/GHSA-7r27-75hm-vvch/GHSA-7r27-75hm-vvch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7v8m-jrjx-22fc/GHSA-7v8m-jrjx-22fc.json b/advisories/unreviewed/2022/05/GHSA-7v8m-jrjx-22fc/GHSA-7v8m-jrjx-22fc.json index ed2ab37c3a7..2a8300e518b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v8m-jrjx-22fc/GHSA-7v8m-jrjx-22fc.json +++ b/advisories/unreviewed/2022/05/GHSA-7v8m-jrjx-22fc/GHSA-7v8m-jrjx-22fc.json @@ -7,12 +7,8 @@ "CVE-2020-14899" ], "details": "Vulnerability in the Oracle Application Express Data Reporter component of Oracle Database Server. The supported version that is affected is Prior to 20.2. Easily exploitable vulnerability allows low privileged attacker having Valid User Account privilege with network access via HTTP to compromise Oracle Application Express Data Reporter. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Application Express Data Reporter, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Express Data Reporter accessible data as well as unauthorized read access to a subset of Oracle Application Express Data Reporter accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vx7-59j8-g6vg/GHSA-7vx7-59j8-g6vg.json b/advisories/unreviewed/2022/05/GHSA-7vx7-59j8-g6vg/GHSA-7vx7-59j8-g6vg.json index 319102a641a..70cc331410a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vx7-59j8-g6vg/GHSA-7vx7-59j8-g6vg.json +++ b/advisories/unreviewed/2022/05/GHSA-7vx7-59j8-g6vg/GHSA-7vx7-59j8-g6vg.json @@ -7,12 +7,8 @@ "CVE-2020-14813" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Grids). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7w24-j6h3-j26f/GHSA-7w24-j6h3-j26f.json b/advisories/unreviewed/2022/05/GHSA-7w24-j6h3-j26f/GHSA-7w24-j6h3-j26f.json index 32a5d12d7e6..b93a6faf9b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w24-j6h3-j26f/GHSA-7w24-j6h3-j26f.json +++ b/advisories/unreviewed/2022/05/GHSA-7w24-j6h3-j26f/GHSA-7w24-j6h3-j26f.json @@ -7,12 +7,8 @@ "CVE-2020-3562" ], "details": "A vulnerability in the SSL/TLS inspection of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 2100 Series firewalls could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation for certain fields of specific SSL/TLS messages. An attacker could exploit this vulnerability by sending a malformed SSL/TLS message through an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. No manual intervention is needed to recover the device after it has reloaded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8275-4hhh-xpjv/GHSA-8275-4hhh-xpjv.json b/advisories/unreviewed/2022/05/GHSA-8275-4hhh-xpjv/GHSA-8275-4hhh-xpjv.json index df89fb5d540..dfcf1da8a31 100644 --- a/advisories/unreviewed/2022/05/GHSA-8275-4hhh-xpjv/GHSA-8275-4hhh-xpjv.json +++ b/advisories/unreviewed/2022/05/GHSA-8275-4hhh-xpjv/GHSA-8275-4hhh-xpjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82r2-pfjv-q743/GHSA-82r2-pfjv-q743.json b/advisories/unreviewed/2022/05/GHSA-82r2-pfjv-q743/GHSA-82r2-pfjv-q743.json index a7c1d0b7b7b..f1e3fee6ef2 100644 --- a/advisories/unreviewed/2022/05/GHSA-82r2-pfjv-q743/GHSA-82r2-pfjv-q743.json +++ b/advisories/unreviewed/2022/05/GHSA-82r2-pfjv-q743/GHSA-82r2-pfjv-q743.json @@ -7,12 +7,8 @@ "CVE-2020-3898" ], "details": "A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. An application may be able to gain elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-835p-g6m2-7f2x/GHSA-835p-g6m2-7f2x.json b/advisories/unreviewed/2022/05/GHSA-835p-g6m2-7f2x/GHSA-835p-g6m2-7f2x.json index 58c3fe9582a..0b95f032703 100644 --- a/advisories/unreviewed/2022/05/GHSA-835p-g6m2-7f2x/GHSA-835p-g6m2-7f2x.json +++ b/advisories/unreviewed/2022/05/GHSA-835p-g6m2-7f2x/GHSA-835p-g6m2-7f2x.json @@ -7,12 +7,8 @@ "CVE-2020-7173" ], "details": "A actionselectcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-845m-9j3r-jhfg/GHSA-845m-9j3r-jhfg.json b/advisories/unreviewed/2022/05/GHSA-845m-9j3r-jhfg/GHSA-845m-9j3r-jhfg.json index fba853ebce7..7799f37acd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-845m-9j3r-jhfg/GHSA-845m-9j3r-jhfg.json +++ b/advisories/unreviewed/2022/05/GHSA-845m-9j3r-jhfg/GHSA-845m-9j3r-jhfg.json @@ -7,12 +7,8 @@ "CVE-2020-9921" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.6. A malicious application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84mj-ccm5-9p48/GHSA-84mj-ccm5-9p48.json b/advisories/unreviewed/2022/05/GHSA-84mj-ccm5-9p48/GHSA-84mj-ccm5-9p48.json index 2b6b52e42ba..db3c4340c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-84mj-ccm5-9p48/GHSA-84mj-ccm5-9p48.json +++ b/advisories/unreviewed/2022/05/GHSA-84mj-ccm5-9p48/GHSA-84mj-ccm5-9p48.json @@ -7,12 +7,8 @@ "CVE-2020-14893" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-84qj-wpjh-wvj6/GHSA-84qj-wpjh-wvj6.json b/advisories/unreviewed/2022/05/GHSA-84qj-wpjh-wvj6/GHSA-84qj-wpjh-wvj6.json index 97da08fb725..1d12c913dbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-84qj-wpjh-wvj6/GHSA-84qj-wpjh-wvj6.json +++ b/advisories/unreviewed/2022/05/GHSA-84qj-wpjh-wvj6/GHSA-84qj-wpjh-wvj6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-853f-87c3-rhjv/GHSA-853f-87c3-rhjv.json b/advisories/unreviewed/2022/05/GHSA-853f-87c3-rhjv/GHSA-853f-87c3-rhjv.json index 0f5ab5cc706..547123cdcb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-853f-87c3-rhjv/GHSA-853f-87c3-rhjv.json +++ b/advisories/unreviewed/2022/05/GHSA-853f-87c3-rhjv/GHSA-853f-87c3-rhjv.json @@ -7,12 +7,8 @@ "CVE-2020-24651" ], "details": "A syslogtempletselectwin expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-868c-7v9p-gmxp/GHSA-868c-7v9p-gmxp.json b/advisories/unreviewed/2022/05/GHSA-868c-7v9p-gmxp/GHSA-868c-7v9p-gmxp.json index f27edaad8ff..7f139769cbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-868c-7v9p-gmxp/GHSA-868c-7v9p-gmxp.json +++ b/advisories/unreviewed/2022/05/GHSA-868c-7v9p-gmxp/GHSA-868c-7v9p-gmxp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-874v-7hqj-q9mw/GHSA-874v-7hqj-q9mw.json b/advisories/unreviewed/2022/05/GHSA-874v-7hqj-q9mw/GHSA-874v-7hqj-q9mw.json index 42a224c6696..635151c7b24 100644 --- a/advisories/unreviewed/2022/05/GHSA-874v-7hqj-q9mw/GHSA-874v-7hqj-q9mw.json +++ b/advisories/unreviewed/2022/05/GHSA-874v-7hqj-q9mw/GHSA-874v-7hqj-q9mw.json @@ -7,12 +7,8 @@ "CVE-2020-24412" ], "details": "Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file. This could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8j8h-xqgr-qmw7/GHSA-8j8h-xqgr-qmw7.json b/advisories/unreviewed/2022/05/GHSA-8j8h-xqgr-qmw7/GHSA-8j8h-xqgr-qmw7.json index eaf7fcbdf5c..9e89257a69a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j8h-xqgr-qmw7/GHSA-8j8h-xqgr-qmw7.json +++ b/advisories/unreviewed/2022/05/GHSA-8j8h-xqgr-qmw7/GHSA-8j8h-xqgr-qmw7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jgq-23x7-86xm/GHSA-8jgq-23x7-86xm.json b/advisories/unreviewed/2022/05/GHSA-8jgq-23x7-86xm/GHSA-8jgq-23x7-86xm.json index 5714dd60b7e..3168b1cd19a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jgq-23x7-86xm/GHSA-8jgq-23x7-86xm.json +++ b/advisories/unreviewed/2022/05/GHSA-8jgq-23x7-86xm/GHSA-8jgq-23x7-86xm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8jqq-8mp9-6r8w/GHSA-8jqq-8mp9-6r8w.json b/advisories/unreviewed/2022/05/GHSA-8jqq-8mp9-6r8w/GHSA-8jqq-8mp9-6r8w.json index 9c04ed6889a..ac4c87305c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jqq-8mp9-6r8w/GHSA-8jqq-8mp9-6r8w.json +++ b/advisories/unreviewed/2022/05/GHSA-8jqq-8mp9-6r8w/GHSA-8jqq-8mp9-6r8w.json @@ -7,12 +7,8 @@ "CVE-2020-16161" ], "details": "GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_ScaledData(). Parsing malicious input can result in a crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m5r-w6r4-2wp7/GHSA-8m5r-w6r4-2wp7.json b/advisories/unreviewed/2022/05/GHSA-8m5r-w6r4-2wp7/GHSA-8m5r-w6r4-2wp7.json index bd5b0b05b03..e9eaa6e4d43 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m5r-w6r4-2wp7/GHSA-8m5r-w6r4-2wp7.json +++ b/advisories/unreviewed/2022/05/GHSA-8m5r-w6r4-2wp7/GHSA-8m5r-w6r4-2wp7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p6x-fv5q-8fxg/GHSA-8p6x-fv5q-8fxg.json b/advisories/unreviewed/2022/05/GHSA-8p6x-fv5q-8fxg/GHSA-8p6x-fv5q-8fxg.json index c990238eb8b..8e6c3246c09 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p6x-fv5q-8fxg/GHSA-8p6x-fv5q-8fxg.json +++ b/advisories/unreviewed/2022/05/GHSA-8p6x-fv5q-8fxg/GHSA-8p6x-fv5q-8fxg.json @@ -7,12 +7,8 @@ "CVE-2020-9928" ], "details": "Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.6. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qgh-2x39-7mw4/GHSA-8qgh-2x39-7mw4.json b/advisories/unreviewed/2022/05/GHSA-8qgh-2x39-7mw4/GHSA-8qgh-2x39-7mw4.json index 1a2c9469931..6f477831647 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qgh-2x39-7mw4/GHSA-8qgh-2x39-7mw4.json +++ b/advisories/unreviewed/2022/05/GHSA-8qgh-2x39-7mw4/GHSA-8qgh-2x39-7mw4.json @@ -7,12 +7,8 @@ "CVE-2020-3459" ], "details": "A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected command. A successful exploit could allow the attacker to execute commands on the underlying operating system with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8r97-62cf-rx47/GHSA-8r97-62cf-rx47.json b/advisories/unreviewed/2022/05/GHSA-8r97-62cf-rx47/GHSA-8r97-62cf-rx47.json index d19605dd7c8..a62ff14d5cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r97-62cf-rx47/GHSA-8r97-62cf-rx47.json +++ b/advisories/unreviewed/2022/05/GHSA-8r97-62cf-rx47/GHSA-8r97-62cf-rx47.json @@ -7,12 +7,8 @@ "CVE-2019-7291" ], "details": "A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. An attacker in a privileged position may be able to perform a denial of service attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8rj6-gvcm-h3h5/GHSA-8rj6-gvcm-h3h5.json b/advisories/unreviewed/2022/05/GHSA-8rj6-gvcm-h3h5/GHSA-8rj6-gvcm-h3h5.json index 8fa39c12c19..b2a46a7e290 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rj6-gvcm-h3h5/GHSA-8rj6-gvcm-h3h5.json +++ b/advisories/unreviewed/2022/05/GHSA-8rj6-gvcm-h3h5/GHSA-8rj6-gvcm-h3h5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w7j-jm28-mw34/GHSA-8w7j-jm28-mw34.json b/advisories/unreviewed/2022/05/GHSA-8w7j-jm28-mw34/GHSA-8w7j-jm28-mw34.json index 1006e82384e..f042082a091 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w7j-jm28-mw34/GHSA-8w7j-jm28-mw34.json +++ b/advisories/unreviewed/2022/05/GHSA-8w7j-jm28-mw34/GHSA-8w7j-jm28-mw34.json @@ -7,12 +7,8 @@ "CVE-2020-14896" ], "details": "Vulnerability in the Oracle Banking Payments product of Oracle Financial Services Applications (component: Core). Supported versions that are affected are 14.1.0-14.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Banking Payments. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Banking Payments accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wcw-rggr-6844/GHSA-8wcw-rggr-6844.json b/advisories/unreviewed/2022/05/GHSA-8wcw-rggr-6844/GHSA-8wcw-rggr-6844.json index ca1f3b4084f..4bfe0a5bebf 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wcw-rggr-6844/GHSA-8wcw-rggr-6844.json +++ b/advisories/unreviewed/2022/05/GHSA-8wcw-rggr-6844/GHSA-8wcw-rggr-6844.json @@ -7,12 +7,8 @@ "CVE-2020-6362" ], "details": "SAP Banking Services version 500, use an incorrect authorization object in some of its reports. Although the affected reports are protected with otherauthorization objects, exploitation of the vulnerability could lead to privilege escalation and violation in segregation of duties, which in turn could lead to Service interruptions and system unavailability for the victim and users of the component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-964f-4h8c-rcxx/GHSA-964f-4h8c-rcxx.json b/advisories/unreviewed/2022/05/GHSA-964f-4h8c-rcxx/GHSA-964f-4h8c-rcxx.json index fc1c50a44dc..dc152b319c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-964f-4h8c-rcxx/GHSA-964f-4h8c-rcxx.json +++ b/advisories/unreviewed/2022/05/GHSA-964f-4h8c-rcxx/GHSA-964f-4h8c-rcxx.json @@ -7,12 +7,8 @@ "CVE-2020-24420" ], "details": "Adobe Photoshop for Windows version 21.2.1 (and earlier) is affected by an uncontrolled search path element vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97pr-hr9m-3q8q/GHSA-97pr-hr9m-3q8q.json b/advisories/unreviewed/2022/05/GHSA-97pr-hr9m-3q8q/GHSA-97pr-hr9m-3q8q.json index 56e87d0955b..04ccf1fb0dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-97pr-hr9m-3q8q/GHSA-97pr-hr9m-3q8q.json +++ b/advisories/unreviewed/2022/05/GHSA-97pr-hr9m-3q8q/GHSA-97pr-hr9m-3q8q.json @@ -7,12 +7,8 @@ "CVE-2020-9748" ], "details": "Adobe Animate version 20.5 (and earlier) is affected by a stack overflow vulnerability, which could lead to arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted .fla file in Animate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98f5-9jjv-x473/GHSA-98f5-9jjv-x473.json b/advisories/unreviewed/2022/05/GHSA-98f5-9jjv-x473/GHSA-98f5-9jjv-x473.json index 27a4c10f6da..ee4d6751b26 100644 --- a/advisories/unreviewed/2022/05/GHSA-98f5-9jjv-x473/GHSA-98f5-9jjv-x473.json +++ b/advisories/unreviewed/2022/05/GHSA-98f5-9jjv-x473/GHSA-98f5-9jjv-x473.json @@ -7,12 +7,8 @@ "CVE-2020-9929" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.6. A local user may be able to cause unexpected system termination or read kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9996-r9fx-jwv9/GHSA-9996-r9fx-jwv9.json b/advisories/unreviewed/2022/05/GHSA-9996-r9fx-jwv9/GHSA-9996-r9fx-jwv9.json index 23da3b0c9b6..74c99ed5f68 100644 --- a/advisories/unreviewed/2022/05/GHSA-9996-r9fx-jwv9/GHSA-9996-r9fx-jwv9.json +++ b/advisories/unreviewed/2022/05/GHSA-9996-r9fx-jwv9/GHSA-9996-r9fx-jwv9.json @@ -7,12 +7,8 @@ "CVE-2020-5651" ], "details": "SQL injection vulnerability in Simple Download Monitor 3.8.8 and earlier allows remote attackers to execute arbitrary SQL commands via a specially crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cp4-j6jm-4g5r/GHSA-9cp4-j6jm-4g5r.json b/advisories/unreviewed/2022/05/GHSA-9cp4-j6jm-4g5r/GHSA-9cp4-j6jm-4g5r.json index f69fc660ce0..df3c1e5d24f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cp4-j6jm-4g5r/GHSA-9cp4-j6jm-4g5r.json +++ b/advisories/unreviewed/2022/05/GHSA-9cp4-j6jm-4g5r/GHSA-9cp4-j6jm-4g5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9crr-whpr-g3mc/GHSA-9crr-whpr-g3mc.json b/advisories/unreviewed/2022/05/GHSA-9crr-whpr-g3mc/GHSA-9crr-whpr-g3mc.json index 723fecccaf3..2394f3403ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-9crr-whpr-g3mc/GHSA-9crr-whpr-g3mc.json +++ b/advisories/unreviewed/2022/05/GHSA-9crr-whpr-g3mc/GHSA-9crr-whpr-g3mc.json @@ -7,12 +7,8 @@ "CVE-2020-24410" ], "details": "Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds read vulnerability when parsing crafted PDF files. This could result in a read past the end of an allocated memory structure, potentially resulting in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h25-7cgq-fhvv/GHSA-9h25-7cgq-fhvv.json b/advisories/unreviewed/2022/05/GHSA-9h25-7cgq-fhvv/GHSA-9h25-7cgq-fhvv.json index b13be405880..74d08da32af 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h25-7cgq-fhvv/GHSA-9h25-7cgq-fhvv.json +++ b/advisories/unreviewed/2022/05/GHSA-9h25-7cgq-fhvv/GHSA-9h25-7cgq-fhvv.json @@ -7,12 +7,8 @@ "CVE-2020-26878" ], "details": "Ruckus through 1.5.1.0.21 is affected by remote command injection. An authenticated user can submit a query to the API (/service/v1/createUser endpoint), injecting arbitrary commands that will be executed as root user via web.py.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9h8f-4c68-rhj4/GHSA-9h8f-4c68-rhj4.json b/advisories/unreviewed/2022/05/GHSA-9h8f-4c68-rhj4/GHSA-9h8f-4c68-rhj4.json index 9bcc7571ad5..d5395c2d94d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h8f-4c68-rhj4/GHSA-9h8f-4c68-rhj4.json +++ b/advisories/unreviewed/2022/05/GHSA-9h8f-4c68-rhj4/GHSA-9h8f-4c68-rhj4.json @@ -7,12 +7,8 @@ "CVE-2020-14815" ], "details": "Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Actions). Supported versions that are affected are 5.5.0.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Business Intelligence Enterprise Edition accessible data as well as unauthorized update, insert or delete access to some of Oracle Business Intelligence Enterprise Edition accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9j23-r6hx-vww9/GHSA-9j23-r6hx-vww9.json b/advisories/unreviewed/2022/05/GHSA-9j23-r6hx-vww9/GHSA-9j23-r6hx-vww9.json index 84514b20d2e..6db3303bddb 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j23-r6hx-vww9/GHSA-9j23-r6hx-vww9.json +++ b/advisories/unreviewed/2022/05/GHSA-9j23-r6hx-vww9/GHSA-9j23-r6hx-vww9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9j72-3m9p-jcqw/GHSA-9j72-3m9p-jcqw.json b/advisories/unreviewed/2022/05/GHSA-9j72-3m9p-jcqw/GHSA-9j72-3m9p-jcqw.json index df891c61b28..bddabc7a0a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j72-3m9p-jcqw/GHSA-9j72-3m9p-jcqw.json +++ b/advisories/unreviewed/2022/05/GHSA-9j72-3m9p-jcqw/GHSA-9j72-3m9p-jcqw.json @@ -7,12 +7,8 @@ "CVE-2019-14718" ], "details": "Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have Insecure Permissions, with resultant svc_netcontrol arbitrary command injection and privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mhr-wj86-g462/GHSA-9mhr-wj86-g462.json b/advisories/unreviewed/2022/05/GHSA-9mhr-wj86-g462/GHSA-9mhr-wj86-g462.json index 45214046f1a..3a8c11d274c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mhr-wj86-g462/GHSA-9mhr-wj86-g462.json +++ b/advisories/unreviewed/2022/05/GHSA-9mhr-wj86-g462/GHSA-9mhr-wj86-g462.json @@ -7,12 +7,8 @@ "CVE-2020-25470" ], "details": "AntSword 2.1.8.1 contains a cross-site scripting (XSS) vulnerability in the View Site funtion. When viewing an added site, an XSS payload can be injected in cookies view which can lead to remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pm5-4php-6g34/GHSA-9pm5-4php-6g34.json b/advisories/unreviewed/2022/05/GHSA-9pm5-4php-6g34/GHSA-9pm5-4php-6g34.json index d7a684f852d..350a0519d48 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pm5-4php-6g34/GHSA-9pm5-4php-6g34.json +++ b/advisories/unreviewed/2022/05/GHSA-9pm5-4php-6g34/GHSA-9pm5-4php-6g34.json @@ -7,12 +7,8 @@ "CVE-2020-15897" ], "details": "Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attackers to cause traffic loss or incorrect forwarding of traffic via a malformed link-state PDU to the IS-IS router.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9ppf-4955-jx6m/GHSA-9ppf-4955-jx6m.json b/advisories/unreviewed/2022/05/GHSA-9ppf-4955-jx6m/GHSA-9ppf-4955-jx6m.json index 5862b754f29..594ae5a06e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ppf-4955-jx6m/GHSA-9ppf-4955-jx6m.json +++ b/advisories/unreviewed/2022/05/GHSA-9ppf-4955-jx6m/GHSA-9ppf-4955-jx6m.json @@ -7,12 +7,8 @@ "CVE-2019-8531" ], "details": "A validation issue existed in Trust Anchor Management. This issue was addressed with improved validation. This issue is fixed in watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. An untrusted radius server certificate may be trusted.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v5h-wgx5-jxxj/GHSA-9v5h-wgx5-jxxj.json b/advisories/unreviewed/2022/05/GHSA-9v5h-wgx5-jxxj/GHSA-9v5h-wgx5-jxxj.json index ac348922319..2814d87239a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v5h-wgx5-jxxj/GHSA-9v5h-wgx5-jxxj.json +++ b/advisories/unreviewed/2022/05/GHSA-9v5h-wgx5-jxxj/GHSA-9v5h-wgx5-jxxj.json @@ -7,12 +7,8 @@ "CVE-2020-3981" ], "details": "VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds read vulnerability due to a time-of-check time-of-use issue in ACPI device. A malicious actor with administrative access to a virtual machine may be able to exploit this issue to leak memory from the vmx process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vfq-m4wr-f5f9/GHSA-9vfq-m4wr-f5f9.json b/advisories/unreviewed/2022/05/GHSA-9vfq-m4wr-f5f9/GHSA-9vfq-m4wr-f5f9.json index 06a7feaaefe..161169c7295 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vfq-m4wr-f5f9/GHSA-9vfq-m4wr-f5f9.json +++ b/advisories/unreviewed/2022/05/GHSA-9vfq-m4wr-f5f9/GHSA-9vfq-m4wr-f5f9.json @@ -7,12 +7,8 @@ "CVE-2020-7167" ], "details": "A quicktemplateselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9x68-6g6c-vj48/GHSA-9x68-6g6c-vj48.json b/advisories/unreviewed/2022/05/GHSA-9x68-6g6c-vj48/GHSA-9x68-6g6c-vj48.json index 2497e5818b9..dc655f31cc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x68-6g6c-vj48/GHSA-9x68-6g6c-vj48.json +++ b/advisories/unreviewed/2022/05/GHSA-9x68-6g6c-vj48/GHSA-9x68-6g6c-vj48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3cw-fqq8-9vc6/GHSA-c3cw-fqq8-9vc6.json b/advisories/unreviewed/2022/05/GHSA-c3cw-fqq8-9vc6/GHSA-c3cw-fqq8-9vc6.json index 66d0f3276a5..a37b21df79d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3cw-fqq8-9vc6/GHSA-c3cw-fqq8-9vc6.json +++ b/advisories/unreviewed/2022/05/GHSA-c3cw-fqq8-9vc6/GHSA-c3cw-fqq8-9vc6.json @@ -7,12 +7,8 @@ "CVE-2020-9985" ], "details": "A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, watchOS 6.2.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c438-397x-vxwr/GHSA-c438-397x-vxwr.json b/advisories/unreviewed/2022/05/GHSA-c438-397x-vxwr/GHSA-c438-397x-vxwr.json index 88abdc3b731..6abceb40d95 100644 --- a/advisories/unreviewed/2022/05/GHSA-c438-397x-vxwr/GHSA-c438-397x-vxwr.json +++ b/advisories/unreviewed/2022/05/GHSA-c438-397x-vxwr/GHSA-c438-397x-vxwr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c45x-r3w2-p779/GHSA-c45x-r3w2-p779.json b/advisories/unreviewed/2022/05/GHSA-c45x-r3w2-p779/GHSA-c45x-r3w2-p779.json index bf45fa963ac..6d099428e51 100644 --- a/advisories/unreviewed/2022/05/GHSA-c45x-r3w2-p779/GHSA-c45x-r3w2-p779.json +++ b/advisories/unreviewed/2022/05/GHSA-c45x-r3w2-p779/GHSA-c45x-r3w2-p779.json @@ -7,12 +7,8 @@ "CVE-2020-14805" ], "details": "Vulnerability in the Oracle E-Business Suite Secure Enterprise Search product of Oracle E-Business Suite (component: Search Integration Engine). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle E-Business Suite Secure Enterprise Search. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle E-Business Suite Secure Enterprise Search accessible data as well as unauthorized access to critical data or complete access to all Oracle E-Business Suite Secure Enterprise Search accessible data. CVSS 3.1 Base Score 9.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c4gh-265v-f9p8/GHSA-c4gh-265v-f9p8.json b/advisories/unreviewed/2022/05/GHSA-c4gh-265v-f9p8/GHSA-c4gh-265v-f9p8.json index 25ca10c17fb..61d8bd29c74 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4gh-265v-f9p8/GHSA-c4gh-265v-f9p8.json +++ b/advisories/unreviewed/2022/05/GHSA-c4gh-265v-f9p8/GHSA-c4gh-265v-f9p8.json @@ -7,12 +7,8 @@ "CVE-2020-14847" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Query). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 2.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c4v9-8xjg-8hcc/GHSA-c4v9-8xjg-8hcc.json b/advisories/unreviewed/2022/05/GHSA-c4v9-8xjg-8hcc/GHSA-c4v9-8xjg-8hcc.json index 05dca6b2f0e..3ebed5f4ad7 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4v9-8xjg-8hcc/GHSA-c4v9-8xjg-8hcc.json +++ b/advisories/unreviewed/2022/05/GHSA-c4v9-8xjg-8hcc/GHSA-c4v9-8xjg-8hcc.json @@ -7,12 +7,8 @@ "CVE-2020-5978" ], "details": "NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in its services in which a folder is created by nvcontainer.exe under normal user login with LOCAL_SYSTEM privileges which may lead to a denial of service or escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c649-c59g-vq2w/GHSA-c649-c59g-vq2w.json b/advisories/unreviewed/2022/05/GHSA-c649-c59g-vq2w/GHSA-c649-c59g-vq2w.json index 1b5776cba22..e86c802b384 100644 --- a/advisories/unreviewed/2022/05/GHSA-c649-c59g-vq2w/GHSA-c649-c59g-vq2w.json +++ b/advisories/unreviewed/2022/05/GHSA-c649-c59g-vq2w/GHSA-c649-c59g-vq2w.json @@ -7,12 +7,8 @@ "CVE-2020-24631" ], "details": "A remote execution of arbitrary commands vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c83x-cr7v-6qrf/GHSA-c83x-cr7v-6qrf.json b/advisories/unreviewed/2022/05/GHSA-c83x-cr7v-6qrf/GHSA-c83x-cr7v-6qrf.json index 46b5cf0f72b..2bdc3e008ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-c83x-cr7v-6qrf/GHSA-c83x-cr7v-6qrf.json +++ b/advisories/unreviewed/2022/05/GHSA-c83x-cr7v-6qrf/GHSA-c83x-cr7v-6qrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc7m-766r-4r2f/GHSA-cc7m-766r-4r2f.json b/advisories/unreviewed/2022/05/GHSA-cc7m-766r-4r2f/GHSA-cc7m-766r-4r2f.json index 33cd1b0eeed..656a436bb09 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc7m-766r-4r2f/GHSA-cc7m-766r-4r2f.json +++ b/advisories/unreviewed/2022/05/GHSA-cc7m-766r-4r2f/GHSA-cc7m-766r-4r2f.json @@ -7,12 +7,8 @@ "CVE-2020-27155" ], "details": "An issue was discovered in Octopus Deploy through 2020.4.4. If enabled, the websocket endpoint may allow an untrusted tentacle host to present itself as a trusted one.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ccrw-66xm-h3h8/GHSA-ccrw-66xm-h3h8.json b/advisories/unreviewed/2022/05/GHSA-ccrw-66xm-h3h8/GHSA-ccrw-66xm-h3h8.json index 0596f48568e..7b2a80aa2b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccrw-66xm-h3h8/GHSA-ccrw-66xm-h3h8.json +++ b/advisories/unreviewed/2022/05/GHSA-ccrw-66xm-h3h8/GHSA-ccrw-66xm-h3h8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cf7q-g38x-x625/GHSA-cf7q-g38x-x625.json b/advisories/unreviewed/2022/05/GHSA-cf7q-g38x-x625/GHSA-cf7q-g38x-x625.json index 93b38e82321..6b4f08df3d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf7q-g38x-x625/GHSA-cf7q-g38x-x625.json +++ b/advisories/unreviewed/2022/05/GHSA-cf7q-g38x-x625/GHSA-cf7q-g38x-x625.json @@ -7,12 +7,8 @@ "CVE-2020-26649" ], "details": "AtomXCMS 2.0 is affected by Incorrect Access Control via admin/dump.php", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjgx-rm4j-vw44/GHSA-cjgx-rm4j-vw44.json b/advisories/unreviewed/2022/05/GHSA-cjgx-rm4j-vw44/GHSA-cjgx-rm4j-vw44.json index 14100e25788..7df7500e6d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjgx-rm4j-vw44/GHSA-cjgx-rm4j-vw44.json +++ b/advisories/unreviewed/2022/05/GHSA-cjgx-rm4j-vw44/GHSA-cjgx-rm4j-vw44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cjp7-w6x5-8grh/GHSA-cjp7-w6x5-8grh.json b/advisories/unreviewed/2022/05/GHSA-cjp7-w6x5-8grh/GHSA-cjp7-w6x5-8grh.json index 8e7550e3235..d380123356c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjp7-w6x5-8grh/GHSA-cjp7-w6x5-8grh.json +++ b/advisories/unreviewed/2022/05/GHSA-cjp7-w6x5-8grh/GHSA-cjp7-w6x5-8grh.json @@ -7,12 +7,8 @@ "CVE-2020-7142" ], "details": "A eventinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp79-8h3q-685j/GHSA-cp79-8h3q-685j.json b/advisories/unreviewed/2022/05/GHSA-cp79-8h3q-685j/GHSA-cp79-8h3q-685j.json index e7376bea70b..2e296e3cc40 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp79-8h3q-685j/GHSA-cp79-8h3q-685j.json +++ b/advisories/unreviewed/2022/05/GHSA-cp79-8h3q-685j/GHSA-cp79-8h3q-685j.json @@ -7,12 +7,8 @@ "CVE-2018-4452" ], "details": "A memory consumption issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.3, Security Update 2019-001 High Sierra, Security Update 2019-001 Sierra, macOS Mojave 10.14.2, Security Update 2018-003 High Sierra, Security Update 2018-006 Sierra. A malicious application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cqpw-mc9f-6gf5/GHSA-cqpw-mc9f-6gf5.json b/advisories/unreviewed/2022/05/GHSA-cqpw-mc9f-6gf5/GHSA-cqpw-mc9f-6gf5.json index 7a5209fbc5a..2ddc61e620a 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqpw-mc9f-6gf5/GHSA-cqpw-mc9f-6gf5.json +++ b/advisories/unreviewed/2022/05/GHSA-cqpw-mc9f-6gf5/GHSA-cqpw-mc9f-6gf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqvj-4v3p-qxcr/GHSA-cqvj-4v3p-qxcr.json b/advisories/unreviewed/2022/05/GHSA-cqvj-4v3p-qxcr/GHSA-cqvj-4v3p-qxcr.json index 0a7b5705860..f25f2ae15a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqvj-4v3p-qxcr/GHSA-cqvj-4v3p-qxcr.json +++ b/advisories/unreviewed/2022/05/GHSA-cqvj-4v3p-qxcr/GHSA-cqvj-4v3p-qxcr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cvpf-4p84-c3wg/GHSA-cvpf-4p84-c3wg.json b/advisories/unreviewed/2022/05/GHSA-cvpf-4p84-c3wg/GHSA-cvpf-4p84-c3wg.json index 813f16f54a1..37af37c5fdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvpf-4p84-c3wg/GHSA-cvpf-4p84-c3wg.json +++ b/advisories/unreviewed/2022/05/GHSA-cvpf-4p84-c3wg/GHSA-cvpf-4p84-c3wg.json @@ -7,12 +7,8 @@ "CVE-2020-7197" ], "details": "SSMC3.7.0.0 is vulnerable to remote authentication bypass. HPE StoreServ Management Console (SSMC) 3.7.0.0 is an off node multiarray manager web application and remains isolated from data on the managed arrays. HPE has provided an update to HPE StoreServ Management Console (SSMC) software 3.7.0.0* Upgrade to HPE 3PAR StoreServ Management Console 3.7.1.1 or later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw24-r423-cm2q/GHSA-cw24-r423-cm2q.json b/advisories/unreviewed/2022/05/GHSA-cw24-r423-cm2q/GHSA-cw24-r423-cm2q.json index 778e8a8ded9..1876cbe29ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw24-r423-cm2q/GHSA-cw24-r423-cm2q.json +++ b/advisories/unreviewed/2022/05/GHSA-cw24-r423-cm2q/GHSA-cw24-r423-cm2q.json @@ -7,12 +7,8 @@ "CVE-2020-9779" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.4. A local user may be able to cause unexpected system termination or read kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwr2-2v2q-jq6q/GHSA-cwr2-2v2q-jq6q.json b/advisories/unreviewed/2022/05/GHSA-cwr2-2v2q-jq6q/GHSA-cwr2-2v2q-jq6q.json index ec166513c25..ca5be281da6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwr2-2v2q-jq6q/GHSA-cwr2-2v2q-jq6q.json +++ b/advisories/unreviewed/2022/05/GHSA-cwr2-2v2q-jq6q/GHSA-cwr2-2v2q-jq6q.json @@ -7,12 +7,8 @@ "CVE-2020-3994" ], "details": "VMware vCenter Server (6.7 before 6.7u3, 6.6 before 6.5u3k) contains a session hijack vulnerability in the vCenter Server Appliance Management Interface update function due to a lack of certificate validation. A malicious actor with network positioning between vCenter Server and an update repository may be able to perform a session hijack when the vCenter Server Appliance Management Interface is used to download vCenter updates.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cxhx-phgv-w698/GHSA-cxhx-phgv-w698.json b/advisories/unreviewed/2022/05/GHSA-cxhx-phgv-w698/GHSA-cxhx-phgv-w698.json index d5b65540fa1..cb4ea0383c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxhx-phgv-w698/GHSA-cxhx-phgv-w698.json +++ b/advisories/unreviewed/2022/05/GHSA-cxhx-phgv-w698/GHSA-cxhx-phgv-w698.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2mw-5hxr-f653/GHSA-f2mw-5hxr-f653.json b/advisories/unreviewed/2022/05/GHSA-f2mw-5hxr-f653/GHSA-f2mw-5hxr-f653.json index be90ef3d128..fa0a4aa2bb3 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2mw-5hxr-f653/GHSA-f2mw-5hxr-f653.json +++ b/advisories/unreviewed/2022/05/GHSA-f2mw-5hxr-f653/GHSA-f2mw-5hxr-f653.json @@ -7,12 +7,8 @@ "CVE-2019-16129" ], "details": "Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 2 of 2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f32g-hvxq-xg6h/GHSA-f32g-hvxq-xg6h.json b/advisories/unreviewed/2022/05/GHSA-f32g-hvxq-xg6h/GHSA-f32g-hvxq-xg6h.json index 05887179941..f6d0aaea412 100644 --- a/advisories/unreviewed/2022/05/GHSA-f32g-hvxq-xg6h/GHSA-f32g-hvxq-xg6h.json +++ b/advisories/unreviewed/2022/05/GHSA-f32g-hvxq-xg6h/GHSA-f32g-hvxq-xg6h.json @@ -7,12 +7,8 @@ "CVE-2020-6315" ], "details": "SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to the victim, which can lead to leakage of sensitive information when the victim loads the malicious file into the VE viewer, leading to Information Disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f4rm-f9w6-m7wm/GHSA-f4rm-f9w6-m7wm.json b/advisories/unreviewed/2022/05/GHSA-f4rm-f9w6-m7wm/GHSA-f4rm-f9w6-m7wm.json index 26b0d120d12..c95d2675f6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4rm-f9w6-m7wm/GHSA-f4rm-f9w6-m7wm.json +++ b/advisories/unreviewed/2022/05/GHSA-f4rm-f9w6-m7wm/GHSA-f4rm-f9w6-m7wm.json @@ -7,12 +7,8 @@ "CVE-2020-14897" ], "details": "Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Login). Supported versions that are affected are 12.0.1, 12.0.2 and 12.0.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle FLEXCUBE Direct Banking accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f57j-3gmq-w3hx/GHSA-f57j-3gmq-w3hx.json b/advisories/unreviewed/2022/05/GHSA-f57j-3gmq-w3hx/GHSA-f57j-3gmq-w3hx.json index 5b01ca11764..901fe9295ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-f57j-3gmq-w3hx/GHSA-f57j-3gmq-w3hx.json +++ b/advisories/unreviewed/2022/05/GHSA-f57j-3gmq-w3hx/GHSA-f57j-3gmq-w3hx.json @@ -7,12 +7,8 @@ "CVE-2020-14826" ], "details": "Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: SQL Extensions). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Manager. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Applications Manager accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f85v-vf98-9ghh/GHSA-f85v-vf98-9ghh.json b/advisories/unreviewed/2022/05/GHSA-f85v-vf98-9ghh/GHSA-f85v-vf98-9ghh.json index 7e2505fee4e..1af06efebc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-f85v-vf98-9ghh/GHSA-f85v-vf98-9ghh.json +++ b/advisories/unreviewed/2022/05/GHSA-f85v-vf98-9ghh/GHSA-f85v-vf98-9ghh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9gj-9956-fj3r/GHSA-f9gj-9956-fj3r.json b/advisories/unreviewed/2022/05/GHSA-f9gj-9956-fj3r/GHSA-f9gj-9956-fj3r.json index c4cfc135538..e95595f056b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9gj-9956-fj3r/GHSA-f9gj-9956-fj3r.json +++ b/advisories/unreviewed/2022/05/GHSA-f9gj-9956-fj3r/GHSA-f9gj-9956-fj3r.json @@ -7,12 +7,8 @@ "CVE-2020-14888" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fcjm-r5rj-fq7w/GHSA-fcjm-r5rj-fq7w.json b/advisories/unreviewed/2022/05/GHSA-fcjm-r5rj-fq7w/GHSA-fcjm-r5rj-fq7w.json index 72e4959facc..945c36da8b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fcjm-r5rj-fq7w/GHSA-fcjm-r5rj-fq7w.json +++ b/advisories/unreviewed/2022/05/GHSA-fcjm-r5rj-fq7w/GHSA-fcjm-r5rj-fq7w.json @@ -7,12 +7,8 @@ "CVE-2019-17007" ], "details": "In Network Security Services before 3.44, a malformed Netscape Certificate Sequence can cause NSS to crash, resulting in a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fcmj-qrc7-5x9g/GHSA-fcmj-qrc7-5x9g.json b/advisories/unreviewed/2022/05/GHSA-fcmj-qrc7-5x9g/GHSA-fcmj-qrc7-5x9g.json index 7b4fcfd5cec..9b69443a905 100644 --- a/advisories/unreviewed/2022/05/GHSA-fcmj-qrc7-5x9g/GHSA-fcmj-qrc7-5x9g.json +++ b/advisories/unreviewed/2022/05/GHSA-fcmj-qrc7-5x9g/GHSA-fcmj-qrc7-5x9g.json @@ -7,12 +7,8 @@ "CVE-2005-1394" ], "details": "Format string vulnerability in ArcGIS for ESRI ArcInfo Workstation 9.0 allows local users to gain privileges via format string specifiers in the ARCHOME environment variable to (1) wservice or (2) lockmgr.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ff26-q46j-34gx/GHSA-ff26-q46j-34gx.json b/advisories/unreviewed/2022/05/GHSA-ff26-q46j-34gx/GHSA-ff26-q46j-34gx.json index b3f5ed2600a..5186fd08bf6 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff26-q46j-34gx/GHSA-ff26-q46j-34gx.json +++ b/advisories/unreviewed/2022/05/GHSA-ff26-q46j-34gx/GHSA-ff26-q46j-34gx.json @@ -7,12 +7,8 @@ "CVE-2020-27610" ], "details": "The installation procedure in BigBlueButton before 2.2.28 (or earlier) exposes certain network services to external interfaces, and does not automatically set up a firewall configuration to block external access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ff6q-c9g5-7xw7/GHSA-ff6q-c9g5-7xw7.json b/advisories/unreviewed/2022/05/GHSA-ff6q-c9g5-7xw7/GHSA-ff6q-c9g5-7xw7.json index 9b9eee17da5..6c69c3e7661 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff6q-c9g5-7xw7/GHSA-ff6q-c9g5-7xw7.json +++ b/advisories/unreviewed/2022/05/GHSA-ff6q-c9g5-7xw7/GHSA-ff6q-c9g5-7xw7.json @@ -7,12 +7,8 @@ "CVE-2019-8573" ], "details": "An input validation issue was addressed with improved input validation. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, watchOS 5.2.1. A remote attacker may be able to cause a system denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ff84-g4vr-v2h9/GHSA-ff84-g4vr-v2h9.json b/advisories/unreviewed/2022/05/GHSA-ff84-g4vr-v2h9/GHSA-ff84-g4vr-v2h9.json index 8ab1e3959fd..f62f9ec7b99 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff84-g4vr-v2h9/GHSA-ff84-g4vr-v2h9.json +++ b/advisories/unreviewed/2022/05/GHSA-ff84-g4vr-v2h9/GHSA-ff84-g4vr-v2h9.json @@ -7,12 +7,8 @@ "CVE-2019-14712" ], "details": "Verifone VerixV Pinpad Payment Terminals with QT000530 allow bypass of integrity and origin control for S1G file generation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fh3r-cx82-73wp/GHSA-fh3r-cx82-73wp.json b/advisories/unreviewed/2022/05/GHSA-fh3r-cx82-73wp/GHSA-fh3r-cx82-73wp.json index 986dd6aab69..4ef1b0a65d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh3r-cx82-73wp/GHSA-fh3r-cx82-73wp.json +++ b/advisories/unreviewed/2022/05/GHSA-fh3r-cx82-73wp/GHSA-fh3r-cx82-73wp.json @@ -7,12 +7,8 @@ "CVE-2020-7146" ], "details": "A devgroupselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fh47-4vp6-4g46/GHSA-fh47-4vp6-4g46.json b/advisories/unreviewed/2022/05/GHSA-fh47-4vp6-4g46/GHSA-fh47-4vp6-4g46.json index 64b38ac8b22..dd2038fd626 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh47-4vp6-4g46/GHSA-fh47-4vp6-4g46.json +++ b/advisories/unreviewed/2022/05/GHSA-fh47-4vp6-4g46/GHSA-fh47-4vp6-4g46.json @@ -7,12 +7,8 @@ "CVE-2020-6366" ], "details": "SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents. An attacker with administrative privileges can retrieve arbitrary files including files on OS level from the server and/or can execute a denial-of-service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fj4g-q85q-3q99/GHSA-fj4g-q85q-3q99.json b/advisories/unreviewed/2022/05/GHSA-fj4g-q85q-3q99/GHSA-fj4g-q85q-3q99.json index 306b6d5f7fa..337d7334a40 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj4g-q85q-3q99/GHSA-fj4g-q85q-3q99.json +++ b/advisories/unreviewed/2022/05/GHSA-fj4g-q85q-3q99/GHSA-fj4g-q85q-3q99.json @@ -7,12 +7,8 @@ "CVE-2020-7189" ], "details": "A faultflasheventselectfact expression language injectionremote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fq4h-gj55-r7g5/GHSA-fq4h-gj55-r7g5.json b/advisories/unreviewed/2022/05/GHSA-fq4h-gj55-r7g5/GHSA-fq4h-gj55-r7g5.json index 79191466199..42a55ea2a2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq4h-gj55-r7g5/GHSA-fq4h-gj55-r7g5.json +++ b/advisories/unreviewed/2022/05/GHSA-fq4h-gj55-r7g5/GHSA-fq4h-gj55-r7g5.json @@ -7,12 +7,8 @@ "CVE-2020-14834" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-frcp-qcpm-973v/GHSA-frcp-qcpm-973v.json b/advisories/unreviewed/2022/05/GHSA-frcp-qcpm-973v/GHSA-frcp-qcpm-973v.json index 83ae2bc1a0a..f38cd63ea08 100644 --- a/advisories/unreviewed/2022/05/GHSA-frcp-qcpm-973v/GHSA-frcp-qcpm-973v.json +++ b/advisories/unreviewed/2022/05/GHSA-frcp-qcpm-973v/GHSA-frcp-qcpm-973v.json @@ -7,12 +7,8 @@ "CVE-2019-8534" ], "details": "A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. A malicious application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fvf7-5f57-573h/GHSA-fvf7-5f57-573h.json b/advisories/unreviewed/2022/05/GHSA-fvf7-5f57-573h/GHSA-fvf7-5f57-573h.json index 3f379d1715e..d03ba655c5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvf7-5f57-573h/GHSA-fvf7-5f57-573h.json +++ b/advisories/unreviewed/2022/05/GHSA-fvf7-5f57-573h/GHSA-fvf7-5f57-573h.json @@ -7,12 +7,8 @@ "CVE-2020-14842" ], "details": "Vulnerability in the BI Publisher product of Oracle Fusion Middleware (component: BI Publisher Security). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise BI Publisher. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in BI Publisher, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all BI Publisher accessible data as well as unauthorized update, insert or delete access to some of BI Publisher accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fwwq-fjfj-33cg/GHSA-fwwq-fjfj-33cg.json b/advisories/unreviewed/2022/05/GHSA-fwwq-fjfj-33cg/GHSA-fwwq-fjfj-33cg.json index b3f503ba49b..99f381901aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwwq-fjfj-33cg/GHSA-fwwq-fjfj-33cg.json +++ b/advisories/unreviewed/2022/05/GHSA-fwwq-fjfj-33cg/GHSA-fwwq-fjfj-33cg.json @@ -7,12 +7,8 @@ "CVE-2019-14711" ], "details": "Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fx9w-88ff-gqvq/GHSA-fx9w-88ff-gqvq.json b/advisories/unreviewed/2022/05/GHSA-fx9w-88ff-gqvq/GHSA-fx9w-88ff-gqvq.json index 05d1c806397..2d218fae197 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx9w-88ff-gqvq/GHSA-fx9w-88ff-gqvq.json +++ b/advisories/unreviewed/2022/05/GHSA-fx9w-88ff-gqvq/GHSA-fx9w-88ff-gqvq.json @@ -7,12 +7,8 @@ "CVE-2020-26887" ], "details": "FRITZ!OS before 7.21 on FRITZ!Box devices allows a bypass of a DNS Rebinding protection mechanism.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fxhx-wgc5-xg5f/GHSA-fxhx-wgc5-xg5f.json b/advisories/unreviewed/2022/05/GHSA-fxhx-wgc5-xg5f/GHSA-fxhx-wgc5-xg5f.json index 96264964620..f5cf83e2120 100644 --- a/advisories/unreviewed/2022/05/GHSA-fxhx-wgc5-xg5f/GHSA-fxhx-wgc5-xg5f.json +++ b/advisories/unreviewed/2022/05/GHSA-fxhx-wgc5-xg5f/GHSA-fxhx-wgc5-xg5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g225-m5gc-phvj/GHSA-g225-m5gc-phvj.json b/advisories/unreviewed/2022/05/GHSA-g225-m5gc-phvj/GHSA-g225-m5gc-phvj.json index 5ff2434adf8..2ec1dde97fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-g225-m5gc-phvj/GHSA-g225-m5gc-phvj.json +++ b/advisories/unreviewed/2022/05/GHSA-g225-m5gc-phvj/GHSA-g225-m5gc-phvj.json @@ -7,12 +7,8 @@ "CVE-2020-26650" ], "details": "AtomXCMS 2.0 is affected by Arbitrary File Read via admin/dump.php", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g29g-jh49-m5j2/GHSA-g29g-jh49-m5j2.json b/advisories/unreviewed/2022/05/GHSA-g29g-jh49-m5j2/GHSA-g29g-jh49-m5j2.json index d96ae1ae09a..edbbd34c090 100644 --- a/advisories/unreviewed/2022/05/GHSA-g29g-jh49-m5j2/GHSA-g29g-jh49-m5j2.json +++ b/advisories/unreviewed/2022/05/GHSA-g29g-jh49-m5j2/GHSA-g29g-jh49-m5j2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g39m-288m-hw49/GHSA-g39m-288m-hw49.json b/advisories/unreviewed/2022/05/GHSA-g39m-288m-hw49/GHSA-g39m-288m-hw49.json index 68ddeeb5f23..a1f215d1205 100644 --- a/advisories/unreviewed/2022/05/GHSA-g39m-288m-hw49/GHSA-g39m-288m-hw49.json +++ b/advisories/unreviewed/2022/05/GHSA-g39m-288m-hw49/GHSA-g39m-288m-hw49.json @@ -7,12 +7,8 @@ "CVE-2020-9869" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.6. A remote attacker may cause an unexpected application termination.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g44r-x99q-pcpq/GHSA-g44r-x99q-pcpq.json b/advisories/unreviewed/2022/05/GHSA-g44r-x99q-pcpq/GHSA-g44r-x99q-pcpq.json index 4e085f1d1ad..7b41bacd209 100644 --- a/advisories/unreviewed/2022/05/GHSA-g44r-x99q-pcpq/GHSA-g44r-x99q-pcpq.json +++ b/advisories/unreviewed/2022/05/GHSA-g44r-x99q-pcpq/GHSA-g44r-x99q-pcpq.json @@ -7,12 +7,8 @@ "CVE-2020-17454" ], "details": "WSO2 API Manager 3.1.0 and earlier has reflected XSS on the \"publisher\" component's admin interface. More precisely, it is possible to inject an XSS payload into the owner POST parameter, which does not filter user inputs. By putting an XSS payload in place of a valid Owner Name, a modal box appears that writes an error message concatenated to the injected payload (without any form of data encoding). This can also be exploited via CSRF.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g56v-wc5f-89x8/GHSA-g56v-wc5f-89x8.json b/advisories/unreviewed/2022/05/GHSA-g56v-wc5f-89x8/GHSA-g56v-wc5f-89x8.json index 9abcdb31dfb..17a4d9d1b56 100644 --- a/advisories/unreviewed/2022/05/GHSA-g56v-wc5f-89x8/GHSA-g56v-wc5f-89x8.json +++ b/advisories/unreviewed/2022/05/GHSA-g56v-wc5f-89x8/GHSA-g56v-wc5f-89x8.json @@ -7,12 +7,8 @@ "CVE-2020-7126" ], "details": "A remote server-side request forgery (ssrf) vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5hf-7fhg-xgcr/GHSA-g5hf-7fhg-xgcr.json b/advisories/unreviewed/2022/05/GHSA-g5hf-7fhg-xgcr/GHSA-g5hf-7fhg-xgcr.json index 38249b02359..318bc968b74 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5hf-7fhg-xgcr/GHSA-g5hf-7fhg-xgcr.json +++ b/advisories/unreviewed/2022/05/GHSA-g5hf-7fhg-xgcr/GHSA-g5hf-7fhg-xgcr.json @@ -7,12 +7,8 @@ "CVE-2020-24646" ], "details": "A tftpserver stack-based buffer overflow remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g833-pxq2-3xg7/GHSA-g833-pxq2-3xg7.json b/advisories/unreviewed/2022/05/GHSA-g833-pxq2-3xg7/GHSA-g833-pxq2-3xg7.json index c179064a8a8..f68b0fe8715 100644 --- a/advisories/unreviewed/2022/05/GHSA-g833-pxq2-3xg7/GHSA-g833-pxq2-3xg7.json +++ b/advisories/unreviewed/2022/05/GHSA-g833-pxq2-3xg7/GHSA-g833-pxq2-3xg7.json @@ -7,12 +7,8 @@ "CVE-2020-4749" ], "details": "IBM Spectrum Scale 5.0.0 through 5.0.5.2 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 188518.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ggvq-c6fv-8cc8/GHSA-ggvq-c6fv-8cc8.json b/advisories/unreviewed/2022/05/GHSA-ggvq-c6fv-8cc8/GHSA-ggvq-c6fv-8cc8.json index fe0edface19..9cd7b10ce82 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggvq-c6fv-8cc8/GHSA-ggvq-c6fv-8cc8.json +++ b/advisories/unreviewed/2022/05/GHSA-ggvq-c6fv-8cc8/GHSA-ggvq-c6fv-8cc8.json @@ -7,12 +7,8 @@ "CVE-2020-7152" ], "details": "A faultparasset expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmw6-3h6m-w23f/GHSA-gmw6-3h6m-w23f.json b/advisories/unreviewed/2022/05/GHSA-gmw6-3h6m-w23f/GHSA-gmw6-3h6m-w23f.json index 045c4c599f0..8e9068bb773 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmw6-3h6m-w23f/GHSA-gmw6-3h6m-w23f.json +++ b/advisories/unreviewed/2022/05/GHSA-gmw6-3h6m-w23f/GHSA-gmw6-3h6m-w23f.json @@ -7,12 +7,8 @@ "CVE-2020-9750" ], "details": "Adobe Animate version 20.5 (and earlier) is affected by an out-of-bounds read vulnerability, which could result in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted .fla file in Animate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gmwm-3vqc-c23g/GHSA-gmwm-3vqc-c23g.json b/advisories/unreviewed/2022/05/GHSA-gmwm-3vqc-c23g/GHSA-gmwm-3vqc-c23g.json index 8cd549c1718..273e38ef9cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmwm-3vqc-c23g/GHSA-gmwm-3vqc-c23g.json +++ b/advisories/unreviewed/2022/05/GHSA-gmwm-3vqc-c23g/GHSA-gmwm-3vqc-c23g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gq9f-wp2w-q86x/GHSA-gq9f-wp2w-q86x.json b/advisories/unreviewed/2022/05/GHSA-gq9f-wp2w-q86x/GHSA-gq9f-wp2w-q86x.json index 3efac44589e..2e088816e30 100644 --- a/advisories/unreviewed/2022/05/GHSA-gq9f-wp2w-q86x/GHSA-gq9f-wp2w-q86x.json +++ b/advisories/unreviewed/2022/05/GHSA-gq9f-wp2w-q86x/GHSA-gq9f-wp2w-q86x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grfr-pqc4-fqmw/GHSA-grfr-pqc4-fqmw.json b/advisories/unreviewed/2022/05/GHSA-grfr-pqc4-fqmw/GHSA-grfr-pqc4-fqmw.json index ee5dcacecf7..b42c60b9876 100644 --- a/advisories/unreviewed/2022/05/GHSA-grfr-pqc4-fqmw/GHSA-grfr-pqc4-fqmw.json +++ b/advisories/unreviewed/2022/05/GHSA-grfr-pqc4-fqmw/GHSA-grfr-pqc4-fqmw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-grx5-6gp4-2522/GHSA-grx5-6gp4-2522.json b/advisories/unreviewed/2022/05/GHSA-grx5-6gp4-2522/GHSA-grx5-6gp4-2522.json index 2e5c941114b..b1b6c11d9f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-grx5-6gp4-2522/GHSA-grx5-6gp4-2522.json +++ b/advisories/unreviewed/2022/05/GHSA-grx5-6gp4-2522/GHSA-grx5-6gp4-2522.json @@ -7,12 +7,8 @@ "CVE-2020-14820" ], "details": "Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gx22-p97p-j9pr/GHSA-gx22-p97p-j9pr.json b/advisories/unreviewed/2022/05/GHSA-gx22-p97p-j9pr/GHSA-gx22-p97p-j9pr.json index 7e917d0c63f..b82525b999c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx22-p97p-j9pr/GHSA-gx22-p97p-j9pr.json +++ b/advisories/unreviewed/2022/05/GHSA-gx22-p97p-j9pr/GHSA-gx22-p97p-j9pr.json @@ -7,12 +7,8 @@ "CVE-2020-7144" ], "details": "A comparefilesresult expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxr3-gj4w-43g4/GHSA-gxr3-gj4w-43g4.json b/advisories/unreviewed/2022/05/GHSA-gxr3-gj4w-43g4/GHSA-gxr3-gj4w-43g4.json index d8da2c6d078..b91dc1a289c 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxr3-gj4w-43g4/GHSA-gxr3-gj4w-43g4.json +++ b/advisories/unreviewed/2022/05/GHSA-gxr3-gj4w-43g4/GHSA-gxr3-gj4w-43g4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h258-g5h8-g3cr/GHSA-h258-g5h8-g3cr.json b/advisories/unreviewed/2022/05/GHSA-h258-g5h8-g3cr/GHSA-h258-g5h8-g3cr.json index fd5fb0db49c..6b7de5490a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h258-g5h8-g3cr/GHSA-h258-g5h8-g3cr.json +++ b/advisories/unreviewed/2022/05/GHSA-h258-g5h8-g3cr/GHSA-h258-g5h8-g3cr.json @@ -7,12 +7,8 @@ "CVE-2020-14892" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.16. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2fj-jg64-m3p4/GHSA-h2fj-jg64-m3p4.json b/advisories/unreviewed/2022/05/GHSA-h2fj-jg64-m3p4/GHSA-h2fj-jg64-m3p4.json index 6ebba18b9b5..218b59a8ea6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2fj-jg64-m3p4/GHSA-h2fj-jg64-m3p4.json +++ b/advisories/unreviewed/2022/05/GHSA-h2fj-jg64-m3p4/GHSA-h2fj-jg64-m3p4.json @@ -7,12 +7,8 @@ "CVE-2020-7166" ], "details": "A operatorgrouptreeselectcontent expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h3v7-mj5x-4jq9/GHSA-h3v7-mj5x-4jq9.json b/advisories/unreviewed/2022/05/GHSA-h3v7-mj5x-4jq9/GHSA-h3v7-mj5x-4jq9.json index 51f8065d8ef..cf3ca0949ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3v7-mj5x-4jq9/GHSA-h3v7-mj5x-4jq9.json +++ b/advisories/unreviewed/2022/05/GHSA-h3v7-mj5x-4jq9/GHSA-h3v7-mj5x-4jq9.json @@ -7,12 +7,8 @@ "CVE-2005-0252" ], "details": "SQL injection vulnerability in BibORB 1.3.2, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4cr-x49j-2r7w/GHSA-h4cr-x49j-2r7w.json b/advisories/unreviewed/2022/05/GHSA-h4cr-x49j-2r7w/GHSA-h4cr-x49j-2r7w.json index 15ed0cab2f9..1238ea9d905 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4cr-x49j-2r7w/GHSA-h4cr-x49j-2r7w.json +++ b/advisories/unreviewed/2022/05/GHSA-h4cr-x49j-2r7w/GHSA-h4cr-x49j-2r7w.json @@ -7,12 +7,8 @@ "CVE-2019-17006" ], "details": "In Network Security Services (NSS) before 3.46, several cryptographic primitives had missing length checks. In cases where the application calling the library did not perform a sanity check on the inputs it could result in a crash due to a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5g2-x4vr-85qj/GHSA-h5g2-x4vr-85qj.json b/advisories/unreviewed/2022/05/GHSA-h5g2-x4vr-85qj/GHSA-h5g2-x4vr-85qj.json index 349eede39a0..d82d3950c92 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5g2-x4vr-85qj/GHSA-h5g2-x4vr-85qj.json +++ b/advisories/unreviewed/2022/05/GHSA-h5g2-x4vr-85qj/GHSA-h5g2-x4vr-85qj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8mv-4m6x-fp87/GHSA-h8mv-4m6x-fp87.json b/advisories/unreviewed/2022/05/GHSA-h8mv-4m6x-fp87/GHSA-h8mv-4m6x-fp87.json index 7bdfa06a99b..8f35e6722fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8mv-4m6x-fp87/GHSA-h8mv-4m6x-fp87.json +++ b/advisories/unreviewed/2022/05/GHSA-h8mv-4m6x-fp87/GHSA-h8mv-4m6x-fp87.json @@ -7,12 +7,8 @@ "CVE-2019-14713" ], "details": "Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow installation of unsigned packages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h8pw-q7q7-7v97/GHSA-h8pw-q7q7-7v97.json b/advisories/unreviewed/2022/05/GHSA-h8pw-q7q7-7v97/GHSA-h8pw-q7q7-7v97.json index da1f8a55fa7..e6fc951878c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8pw-q7q7-7v97/GHSA-h8pw-q7q7-7v97.json +++ b/advisories/unreviewed/2022/05/GHSA-h8pw-q7q7-7v97/GHSA-h8pw-q7q7-7v97.json @@ -7,12 +7,8 @@ "CVE-2020-15003" ], "details": "OX App Suite through 7.10.3 allows Information Exposure because a user can obtain the IP address and User-Agent string of a different user (via the session API during shared Drive access).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8r9-5w83-vj2q/GHSA-h8r9-5w83-vj2q.json b/advisories/unreviewed/2022/05/GHSA-h8r9-5w83-vj2q/GHSA-h8r9-5w83-vj2q.json index 1116752ba76..593daa4d84a 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8r9-5w83-vj2q/GHSA-h8r9-5w83-vj2q.json +++ b/advisories/unreviewed/2022/05/GHSA-h8r9-5w83-vj2q/GHSA-h8r9-5w83-vj2q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8w4-p337-v394/GHSA-h8w4-p337-v394.json b/advisories/unreviewed/2022/05/GHSA-h8w4-p337-v394/GHSA-h8w4-p337-v394.json index 87163d4d4ae..4b119488dbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8w4-p337-v394/GHSA-h8w4-p337-v394.json +++ b/advisories/unreviewed/2022/05/GHSA-h8w4-p337-v394/GHSA-h8w4-p337-v394.json @@ -7,12 +7,8 @@ "CVE-2020-14833" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9qj-g5qj-vg37/GHSA-h9qj-g5qj-vg37.json b/advisories/unreviewed/2022/05/GHSA-h9qj-g5qj-vg37/GHSA-h9qj-g5qj-vg37.json index 29e376f1ef5..07349e95edd 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9qj-g5qj-vg37/GHSA-h9qj-g5qj-vg37.json +++ b/advisories/unreviewed/2022/05/GHSA-h9qj-g5qj-vg37/GHSA-h9qj-g5qj-vg37.json @@ -7,12 +7,8 @@ "CVE-2020-9747" ], "details": "Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hc3g-rggm-p6x9/GHSA-hc3g-rggm-p6x9.json b/advisories/unreviewed/2022/05/GHSA-hc3g-rggm-p6x9/GHSA-hc3g-rggm-p6x9.json index acab0a31789..f02d4571eff 100644 --- a/advisories/unreviewed/2022/05/GHSA-hc3g-rggm-p6x9/GHSA-hc3g-rggm-p6x9.json +++ b/advisories/unreviewed/2022/05/GHSA-hc3g-rggm-p6x9/GHSA-hc3g-rggm-p6x9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcc9-635h-2qg5/GHSA-hcc9-635h-2qg5.json b/advisories/unreviewed/2022/05/GHSA-hcc9-635h-2qg5/GHSA-hcc9-635h-2qg5.json index dbad3e1b6c4..3218425d237 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcc9-635h-2qg5/GHSA-hcc9-635h-2qg5.json +++ b/advisories/unreviewed/2022/05/GHSA-hcc9-635h-2qg5/GHSA-hcc9-635h-2qg5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hh63-773r-23jr/GHSA-hh63-773r-23jr.json b/advisories/unreviewed/2022/05/GHSA-hh63-773r-23jr/GHSA-hh63-773r-23jr.json index a11b8e43752..6844de38ebd 100644 --- a/advisories/unreviewed/2022/05/GHSA-hh63-773r-23jr/GHSA-hh63-773r-23jr.json +++ b/advisories/unreviewed/2022/05/GHSA-hh63-773r-23jr/GHSA-hh63-773r-23jr.json @@ -7,12 +7,8 @@ "CVE-2020-27621" ], "details": "The FileImporter extension in MediaWiki through 1.35.0 was not properly attributing various user actions to a specific user's IP address. Instead, for various actions, it would report the IP address of an internal Wikimedia Foundation server by omitting X-Forwarded-For data. This resulted in an inability to properly audit and attribute various user actions performed via the FileImporter extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hjp9-gq92-xjr3/GHSA-hjp9-gq92-xjr3.json b/advisories/unreviewed/2022/05/GHSA-hjp9-gq92-xjr3/GHSA-hjp9-gq92-xjr3.json index 2679b756a12..2835d23d187 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjp9-gq92-xjr3/GHSA-hjp9-gq92-xjr3.json +++ b/advisories/unreviewed/2022/05/GHSA-hjp9-gq92-xjr3/GHSA-hjp9-gq92-xjr3.json @@ -7,12 +7,8 @@ "CVE-2020-7190" ], "details": "A deviceselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmcm-7mfh-522v/GHSA-hmcm-7mfh-522v.json b/advisories/unreviewed/2022/05/GHSA-hmcm-7mfh-522v/GHSA-hmcm-7mfh-522v.json index eb88e38756c..c8fc8279fc0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmcm-7mfh-522v/GHSA-hmcm-7mfh-522v.json +++ b/advisories/unreviewed/2022/05/GHSA-hmcm-7mfh-522v/GHSA-hmcm-7mfh-522v.json @@ -7,12 +7,8 @@ "CVE-2020-24033" ], "details": "An issue was discovered in fs.com S3900 24T4S 1.7.0 and earlier. The form does not have an authentication or token authentication mechanism that allows remote attackers to forge requests on behalf of a site administrator to change all settings including deleting users, creating new users with escalated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hmg9-wr33-7f2v/GHSA-hmg9-wr33-7f2v.json b/advisories/unreviewed/2022/05/GHSA-hmg9-wr33-7f2v/GHSA-hmg9-wr33-7f2v.json index 750bef4fe9f..04b1db24c3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmg9-wr33-7f2v/GHSA-hmg9-wr33-7f2v.json +++ b/advisories/unreviewed/2022/05/GHSA-hmg9-wr33-7f2v/GHSA-hmg9-wr33-7f2v.json @@ -7,12 +7,8 @@ "CVE-2020-14890" ], "details": "Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Login). Supported versions that are affected are 12.0.1, 12.0.2 and 12.0.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle FLEXCUBE Direct Banking. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle FLEXCUBE Direct Banking accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hp2r-fcg4-4v89/GHSA-hp2r-fcg4-4v89.json b/advisories/unreviewed/2022/05/GHSA-hp2r-fcg4-4v89/GHSA-hp2r-fcg4-4v89.json index e09380ae133..30bf4632f49 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp2r-fcg4-4v89/GHSA-hp2r-fcg4-4v89.json +++ b/advisories/unreviewed/2022/05/GHSA-hp2r-fcg4-4v89/GHSA-hp2r-fcg4-4v89.json @@ -7,12 +7,8 @@ "CVE-2020-25034" ], "details": "eMPS prior to eMPS 9.0 FireEye EX 3500 devices allows remote authenticated users to conduct SQL injection attacks via the sort, sort_by, search{URL], or search[attachment] parameter to the email search feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hp3q-rgj9-rv4r/GHSA-hp3q-rgj9-rv4r.json b/advisories/unreviewed/2022/05/GHSA-hp3q-rgj9-rv4r/GHSA-hp3q-rgj9-rv4r.json index ac1a37488a1..bf29c4648c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp3q-rgj9-rv4r/GHSA-hp3q-rgj9-rv4r.json +++ b/advisories/unreviewed/2022/05/GHSA-hp3q-rgj9-rv4r/GHSA-hp3q-rgj9-rv4r.json @@ -7,12 +7,8 @@ "CVE-2020-14831" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hpcf-2qgx-qx94/GHSA-hpcf-2qgx-qx94.json b/advisories/unreviewed/2022/05/GHSA-hpcf-2qgx-qx94/GHSA-hpcf-2qgx-qx94.json index f6279a99a75..8fb6a7557df 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpcf-2qgx-qx94/GHSA-hpcf-2qgx-qx94.json +++ b/advisories/unreviewed/2022/05/GHSA-hpcf-2qgx-qx94/GHSA-hpcf-2qgx-qx94.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpcw-6mrq-7xg2/GHSA-hpcw-6mrq-7xg2.json b/advisories/unreviewed/2022/05/GHSA-hpcw-6mrq-7xg2/GHSA-hpcw-6mrq-7xg2.json index 622e8c5b565..482ad1fd22a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpcw-6mrq-7xg2/GHSA-hpcw-6mrq-7xg2.json +++ b/advisories/unreviewed/2022/05/GHSA-hpcw-6mrq-7xg2/GHSA-hpcw-6mrq-7xg2.json @@ -7,12 +7,8 @@ "CVE-2020-25157" ], "details": "The R-SeeNet webpage (1.5.1 through 2.4.10) suffers from SQL injection, which allows a remote attacker to invoke queries on the database and retrieve sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqxh-r866-2rgj/GHSA-hqxh-r866-2rgj.json b/advisories/unreviewed/2022/05/GHSA-hqxh-r866-2rgj/GHSA-hqxh-r866-2rgj.json index e9b84d66b92..68dcf8a76d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqxh-r866-2rgj/GHSA-hqxh-r866-2rgj.json +++ b/advisories/unreviewed/2022/05/GHSA-hqxh-r866-2rgj/GHSA-hqxh-r866-2rgj.json @@ -7,12 +7,8 @@ "CVE-2020-7187" ], "details": "A reportpage index expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr52-grj7-x75j/GHSA-hr52-grj7-x75j.json b/advisories/unreviewed/2022/05/GHSA-hr52-grj7-x75j/GHSA-hr52-grj7-x75j.json index 304aecfb03e..b9772fc5bce 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr52-grj7-x75j/GHSA-hr52-grj7-x75j.json +++ b/advisories/unreviewed/2022/05/GHSA-hr52-grj7-x75j/GHSA-hr52-grj7-x75j.json @@ -7,12 +7,8 @@ "CVE-2020-24632" ], "details": "A remote execution of arbitrary commandss vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hww6-9hqx-hwqh/GHSA-hww6-9hqx-hwqh.json b/advisories/unreviewed/2022/05/GHSA-hww6-9hqx-hwqh/GHSA-hww6-9hqx-hwqh.json index d297929a0dd..86218a18a5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hww6-9hqx-hwqh/GHSA-hww6-9hqx-hwqh.json +++ b/advisories/unreviewed/2022/05/GHSA-hww6-9hqx-hwqh/GHSA-hww6-9hqx-hwqh.json @@ -7,12 +7,8 @@ "CVE-2020-5990" ], "details": "NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in the ShadowPlay component which may lead to local privilege escalation, code execution, denial of service or information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hx45-gw2r-332x/GHSA-hx45-gw2r-332x.json b/advisories/unreviewed/2022/05/GHSA-hx45-gw2r-332x/GHSA-hx45-gw2r-332x.json index c8d440c6a23..948e30305ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx45-gw2r-332x/GHSA-hx45-gw2r-332x.json +++ b/advisories/unreviewed/2022/05/GHSA-hx45-gw2r-332x/GHSA-hx45-gw2r-332x.json @@ -7,12 +7,8 @@ "CVE-2020-15682" ], "details": "When a link to an external protocol was clicked, a prompt was presented that allowed the user to choose what application to open it in. An attacker could induce that prompt to be associated with an origin they didn't control, resulting in a spoofing attack. This was fixed by changing external protocol prompts to be tab-modal while also ensuring they could not be incorrectly associated with a different origin. This vulnerability affects Firefox < 82.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxpf-2249-phjx/GHSA-hxpf-2249-phjx.json b/advisories/unreviewed/2022/05/GHSA-hxpf-2249-phjx/GHSA-hxpf-2249-phjx.json index e2446cf276d..c8422e4c16a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxpf-2249-phjx/GHSA-hxpf-2249-phjx.json +++ b/advisories/unreviewed/2022/05/GHSA-hxpf-2249-phjx/GHSA-hxpf-2249-phjx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j43c-pq2m-7v94/GHSA-j43c-pq2m-7v94.json b/advisories/unreviewed/2022/05/GHSA-j43c-pq2m-7v94/GHSA-j43c-pq2m-7v94.json index 4dab19e99a1..0d038ffb291 100644 --- a/advisories/unreviewed/2022/05/GHSA-j43c-pq2m-7v94/GHSA-j43c-pq2m-7v94.json +++ b/advisories/unreviewed/2022/05/GHSA-j43c-pq2m-7v94/GHSA-j43c-pq2m-7v94.json @@ -7,12 +7,8 @@ "CVE-2020-14808" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6q2-2xg8-cr3w/GHSA-j6q2-2xg8-cr3w.json b/advisories/unreviewed/2022/05/GHSA-j6q2-2xg8-cr3w/GHSA-j6q2-2xg8-cr3w.json index 03d0812270d..0ca83ce17a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6q2-2xg8-cr3w/GHSA-j6q2-2xg8-cr3w.json +++ b/advisories/unreviewed/2022/05/GHSA-j6q2-2xg8-cr3w/GHSA-j6q2-2xg8-cr3w.json @@ -7,12 +7,8 @@ "CVE-2020-14818" ], "details": "Vulnerability in the Oracle Solaris product of Oracle Systems (component: Utility). The supported version that is affected is 11. Difficult to exploit vulnerability allows low privileged attacker with network access via SSH to compromise Oracle Solaris. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Solaris, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Solaris accessible data. CVSS 3.1 Base Score 3.0 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j7qm-w3qx-8f3f/GHSA-j7qm-w3qx-8f3f.json b/advisories/unreviewed/2022/05/GHSA-j7qm-w3qx-8f3f/GHSA-j7qm-w3qx-8f3f.json index 512eedffcd3..cb9dc1927b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7qm-w3qx-8f3f/GHSA-j7qm-w3qx-8f3f.json +++ b/advisories/unreviewed/2022/05/GHSA-j7qm-w3qx-8f3f/GHSA-j7qm-w3qx-8f3f.json @@ -7,12 +7,8 @@ "CVE-2020-7145" ], "details": "A chooseperfview expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9f7-fx8r-4pr6/GHSA-j9f7-fx8r-4pr6.json b/advisories/unreviewed/2022/05/GHSA-j9f7-fx8r-4pr6/GHSA-j9f7-fx8r-4pr6.json index e5ce631da7d..0a92fa69615 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9f7-fx8r-4pr6/GHSA-j9f7-fx8r-4pr6.json +++ b/advisories/unreviewed/2022/05/GHSA-j9f7-fx8r-4pr6/GHSA-j9f7-fx8r-4pr6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcmx-9pxw-242g/GHSA-jcmx-9pxw-242g.json b/advisories/unreviewed/2022/05/GHSA-jcmx-9pxw-242g/GHSA-jcmx-9pxw-242g.json index fea511a3610..68bb3cd1952 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcmx-9pxw-242g/GHSA-jcmx-9pxw-242g.json +++ b/advisories/unreviewed/2022/05/GHSA-jcmx-9pxw-242g/GHSA-jcmx-9pxw-242g.json @@ -7,12 +7,8 @@ "CVE-2020-15906" ], "details": "tiki-login.php in Tiki before 21.2 sets the admin password to a blank value after 50 invalid login attempts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf46-6mqr-g2w3/GHSA-jf46-6mqr-g2w3.json b/advisories/unreviewed/2022/05/GHSA-jf46-6mqr-g2w3/GHSA-jf46-6mqr-g2w3.json index d37cbcdda4d..e9597ded206 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf46-6mqr-g2w3/GHSA-jf46-6mqr-g2w3.json +++ b/advisories/unreviewed/2022/05/GHSA-jf46-6mqr-g2w3/GHSA-jf46-6mqr-g2w3.json @@ -7,12 +7,8 @@ "CVE-2020-14887" ], "details": "Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Infrastructure). Supported versions that are affected are 12.3.0 and 14.0.0-14.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle FLEXCUBE Universal Banking. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle FLEXCUBE Universal Banking accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jh65-6gq2-4wq3/GHSA-jh65-6gq2-4wq3.json b/advisories/unreviewed/2022/05/GHSA-jh65-6gq2-4wq3/GHSA-jh65-6gq2-4wq3.json index 08e2b86170b..280c22cc179 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh65-6gq2-4wq3/GHSA-jh65-6gq2-4wq3.json +++ b/advisories/unreviewed/2022/05/GHSA-jh65-6gq2-4wq3/GHSA-jh65-6gq2-4wq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhrj-7vv9-3qx2/GHSA-jhrj-7vv9-3qx2.json b/advisories/unreviewed/2022/05/GHSA-jhrj-7vv9-3qx2/GHSA-jhrj-7vv9-3qx2.json index 0d4c45c5968..056fc710fc3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhrj-7vv9-3qx2/GHSA-jhrj-7vv9-3qx2.json +++ b/advisories/unreviewed/2022/05/GHSA-jhrj-7vv9-3qx2/GHSA-jhrj-7vv9-3qx2.json @@ -7,12 +7,8 @@ "CVE-2020-9887" ], "details": "A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6. Viewing a maliciously crafted JPEG file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjgx-27h5-9gq6/GHSA-jjgx-27h5-9gq6.json b/advisories/unreviewed/2022/05/GHSA-jjgx-27h5-9gq6/GHSA-jjgx-27h5-9gq6.json index 40b3743ec30..62ccd909b98 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjgx-27h5-9gq6/GHSA-jjgx-27h5-9gq6.json +++ b/advisories/unreviewed/2022/05/GHSA-jjgx-27h5-9gq6/GHSA-jjgx-27h5-9gq6.json @@ -7,12 +7,8 @@ "CVE-2019-6238" ], "details": "A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. Processing a maliciously crafted package may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jp7j-xv2r-4c7j/GHSA-jp7j-xv2r-4c7j.json b/advisories/unreviewed/2022/05/GHSA-jp7j-xv2r-4c7j/GHSA-jp7j-xv2r-4c7j.json index 8b6522c282f..b409037590c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp7j-xv2r-4c7j/GHSA-jp7j-xv2r-4c7j.json +++ b/advisories/unreviewed/2022/05/GHSA-jp7j-xv2r-4c7j/GHSA-jp7j-xv2r-4c7j.json @@ -7,12 +7,8 @@ "CVE-2020-17355" ], "details": "Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attackers to cause a denial of service (restart of agents) by crafting a malformed DHCP packet which leads to an incorrect route being installed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpx2-4w5c-2w4j/GHSA-jpx2-4w5c-2w4j.json b/advisories/unreviewed/2022/05/GHSA-jpx2-4w5c-2w4j/GHSA-jpx2-4w5c-2w4j.json index 9d9ff7ca293..6cc93e0ee5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpx2-4w5c-2w4j/GHSA-jpx2-4w5c-2w4j.json +++ b/advisories/unreviewed/2022/05/GHSA-jpx2-4w5c-2w4j/GHSA-jpx2-4w5c-2w4j.json @@ -7,12 +7,8 @@ "CVE-2020-7195" ], "details": "A iccselectrules expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jq5v-m468-x8ph/GHSA-jq5v-m468-x8ph.json b/advisories/unreviewed/2022/05/GHSA-jq5v-m468-x8ph/GHSA-jq5v-m468-x8ph.json index b175995455c..928ee41d39e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jq5v-m468-x8ph/GHSA-jq5v-m468-x8ph.json +++ b/advisories/unreviewed/2022/05/GHSA-jq5v-m468-x8ph/GHSA-jq5v-m468-x8ph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jqhx-vrx5-vcf4/GHSA-jqhx-vrx5-vcf4.json b/advisories/unreviewed/2022/05/GHSA-jqhx-vrx5-vcf4/GHSA-jqhx-vrx5-vcf4.json index 72259d2c362..8aaa8a3156e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqhx-vrx5-vcf4/GHSA-jqhx-vrx5-vcf4.json +++ b/advisories/unreviewed/2022/05/GHSA-jqhx-vrx5-vcf4/GHSA-jqhx-vrx5-vcf4.json @@ -7,12 +7,8 @@ "CVE-2018-4448" ], "details": "A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.1.1, watchOS 5.1.2, macOS Mojave 10.14.2, Security Update 2018-003 High Sierra, Security Update 2018-006 Sierra, tvOS 12.1.1. A local user may be able to read kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jr3g-p7rv-99j4/GHSA-jr3g-p7rv-99j4.json b/advisories/unreviewed/2022/05/GHSA-jr3g-p7rv-99j4/GHSA-jr3g-p7rv-99j4.json index c7b727c1f7c..f02e73f1b47 100644 --- a/advisories/unreviewed/2022/05/GHSA-jr3g-p7rv-99j4/GHSA-jr3g-p7rv-99j4.json +++ b/advisories/unreviewed/2022/05/GHSA-jr3g-p7rv-99j4/GHSA-jr3g-p7rv-99j4.json @@ -7,12 +7,8 @@ "CVE-2020-24414" ], "details": "Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file. This could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jr79-gh2g-m9rv/GHSA-jr79-gh2g-m9rv.json b/advisories/unreviewed/2022/05/GHSA-jr79-gh2g-m9rv/GHSA-jr79-gh2g-m9rv.json index cc78ecb7d73..87a093ab297 100644 --- a/advisories/unreviewed/2022/05/GHSA-jr79-gh2g-m9rv/GHSA-jr79-gh2g-m9rv.json +++ b/advisories/unreviewed/2022/05/GHSA-jr79-gh2g-m9rv/GHSA-jr79-gh2g-m9rv.json @@ -7,12 +7,8 @@ "CVE-2018-4474" ], "details": "A memory consumption issue was addressed with improved memory handling. This issue is fixed in iCloud for Windows 7.7, watchOS 5, Safari 12, iOS 12, iTunes 12.9 for Windows, tvOS 12. Unexpected interaction causes an ASSERT failure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jrxg-gpwg-w6qq/GHSA-jrxg-gpwg-w6qq.json b/advisories/unreviewed/2022/05/GHSA-jrxg-gpwg-w6qq/GHSA-jrxg-gpwg-w6qq.json index 7f79bfebf61..9208df0e8fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrxg-gpwg-w6qq/GHSA-jrxg-gpwg-w6qq.json +++ b/advisories/unreviewed/2022/05/GHSA-jrxg-gpwg-w6qq/GHSA-jrxg-gpwg-w6qq.json @@ -7,12 +7,8 @@ "CVE-2020-14900" ], "details": "Vulnerability in the Oracle Application Express Group Calendar component of Oracle Database Server. The supported version that is affected is Prior to 20.2. Easily exploitable vulnerability allows low privileged attacker having Valid User Account privilege with network access via HTTP to compromise Oracle Application Express Group Calendar. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Application Express Group Calendar, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Express Group Calendar accessible data as well as unauthorized read access to a subset of Oracle Application Express Group Calendar accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jw64-p5px-7hxh/GHSA-jw64-p5px-7hxh.json b/advisories/unreviewed/2022/05/GHSA-jw64-p5px-7hxh/GHSA-jw64-p5px-7hxh.json index 66df628eb93..eef49c79522 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw64-p5px-7hxh/GHSA-jw64-p5px-7hxh.json +++ b/advisories/unreviewed/2022/05/GHSA-jw64-p5px-7hxh/GHSA-jw64-p5px-7hxh.json @@ -7,12 +7,8 @@ "CVE-2020-24421" ], "details": "Adobe InDesign version 15.1.2 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious .indd file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m34w-pwwr-wfrf/GHSA-m34w-pwwr-wfrf.json b/advisories/unreviewed/2022/05/GHSA-m34w-pwwr-wfrf/GHSA-m34w-pwwr-wfrf.json index 266e01740af..743161cbcbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-m34w-pwwr-wfrf/GHSA-m34w-pwwr-wfrf.json +++ b/advisories/unreviewed/2022/05/GHSA-m34w-pwwr-wfrf/GHSA-m34w-pwwr-wfrf.json @@ -7,12 +7,8 @@ "CVE-2020-3571" ], "details": "A vulnerability in the ICMP ingress packet processing of Cisco Firepower Threat Defense (FTD) Software for Cisco Firepower 4110 appliances could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to incomplete input validation upon receiving ICMP packets. An attacker could exploit this vulnerability by sending a high number of crafted ICMP or ICMPv6 packets to an affected device. A successful exploit could allow the attacker to cause a memory exhaustion condition that may result in an unexpected reload. No manual intervention is needed to recover the device after the reload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m3pq-m926-j2h4/GHSA-m3pq-m926-j2h4.json b/advisories/unreviewed/2022/05/GHSA-m3pq-m926-j2h4/GHSA-m3pq-m926-j2h4.json index 5733b086d5f..5ea71198db3 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3pq-m926-j2h4/GHSA-m3pq-m926-j2h4.json +++ b/advisories/unreviewed/2022/05/GHSA-m3pq-m926-j2h4/GHSA-m3pq-m926-j2h4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m77g-c958-gp8h/GHSA-m77g-c958-gp8h.json b/advisories/unreviewed/2022/05/GHSA-m77g-c958-gp8h/GHSA-m77g-c958-gp8h.json index fce91de8667..f9b0cefa408 100644 --- a/advisories/unreviewed/2022/05/GHSA-m77g-c958-gp8h/GHSA-m77g-c958-gp8h.json +++ b/advisories/unreviewed/2022/05/GHSA-m77g-c958-gp8h/GHSA-m77g-c958-gp8h.json @@ -7,12 +7,8 @@ "CVE-2018-4468" ], "details": "This issue was addressed by removing additional entitlements. This issue is fixed in macOS Mojave 10.14.1, Security Update 2018-002 High Sierra, Security Update 2018-005 Sierra. A malicious application may be able to access restricted files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m7ch-4jv6-68jh/GHSA-m7ch-4jv6-68jh.json b/advisories/unreviewed/2022/05/GHSA-m7ch-4jv6-68jh/GHSA-m7ch-4jv6-68jh.json index 54022a77f81..c9786d5641d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7ch-4jv6-68jh/GHSA-m7ch-4jv6-68jh.json +++ b/advisories/unreviewed/2022/05/GHSA-m7ch-4jv6-68jh/GHSA-m7ch-4jv6-68jh.json @@ -7,12 +7,8 @@ "CVE-2020-14817" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m7mm-hg28-h6pj/GHSA-m7mm-hg28-h6pj.json b/advisories/unreviewed/2022/05/GHSA-m7mm-hg28-h6pj/GHSA-m7mm-hg28-h6pj.json index d236762da5e..5dcb2a9af78 100644 --- a/advisories/unreviewed/2022/05/GHSA-m7mm-hg28-h6pj/GHSA-m7mm-hg28-h6pj.json +++ b/advisories/unreviewed/2022/05/GHSA-m7mm-hg28-h6pj/GHSA-m7mm-hg28-h6pj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m8j6-5vfr-25jh/GHSA-m8j6-5vfr-25jh.json b/advisories/unreviewed/2022/05/GHSA-m8j6-5vfr-25jh/GHSA-m8j6-5vfr-25jh.json index cb624ea04be..2f824442aec 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8j6-5vfr-25jh/GHSA-m8j6-5vfr-25jh.json +++ b/advisories/unreviewed/2022/05/GHSA-m8j6-5vfr-25jh/GHSA-m8j6-5vfr-25jh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mc22-fjwg-jwxx/GHSA-mc22-fjwg-jwxx.json b/advisories/unreviewed/2022/05/GHSA-mc22-fjwg-jwxx/GHSA-mc22-fjwg-jwxx.json index ff4ff4f7504..01e880bf6c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc22-fjwg-jwxx/GHSA-mc22-fjwg-jwxx.json +++ b/advisories/unreviewed/2022/05/GHSA-mc22-fjwg-jwxx/GHSA-mc22-fjwg-jwxx.json @@ -7,12 +7,8 @@ "CVE-2020-14811" ], "details": "Vulnerability in the Oracle Applications Manager product of Oracle E-Business Suite (component: AMP EBS Integration). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Applications Manager. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Applications Manager accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mfmv-r5qq-338p/GHSA-mfmv-r5qq-338p.json b/advisories/unreviewed/2022/05/GHSA-mfmv-r5qq-338p/GHSA-mfmv-r5qq-338p.json index a54427e82bb..62dc1e3cd66 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfmv-r5qq-338p/GHSA-mfmv-r5qq-338p.json +++ b/advisories/unreviewed/2022/05/GHSA-mfmv-r5qq-338p/GHSA-mfmv-r5qq-338p.json @@ -7,12 +7,8 @@ "CVE-2018-4467" ], "details": "A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.3, Security Update 2019-001 High Sierra, Security Update 2019-001 Sierra, macOS Mojave 10.14.2, Security Update 2018-003 High Sierra, Security Update 2018-006 Sierra. A malicious application may be able to elevate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mfqg-hg88-p5gc/GHSA-mfqg-hg88-p5gc.json b/advisories/unreviewed/2022/05/GHSA-mfqg-hg88-p5gc/GHSA-mfqg-hg88-p5gc.json index f6e7c92f8d5..51212725c15 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfqg-hg88-p5gc/GHSA-mfqg-hg88-p5gc.json +++ b/advisories/unreviewed/2022/05/GHSA-mfqg-hg88-p5gc/GHSA-mfqg-hg88-p5gc.json @@ -7,12 +7,8 @@ "CVE-2020-14788" ], "details": "Vulnerability in the Oracle Communications Diameter Signaling Router (DSR) product of Oracle Communications (component: User Interface). Supported versions that are affected are 8.0.0.0-8.4.0.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Communications Diameter Signaling Router (DSR). Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Communications Diameter Signaling Router (DSR), attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Communications Diameter Signaling Router (DSR) accessible data as well as unauthorized read access to a subset of Oracle Communications Diameter Signaling Router (DSR) accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mhmr-259v-fcwq/GHSA-mhmr-259v-fcwq.json b/advisories/unreviewed/2022/05/GHSA-mhmr-259v-fcwq/GHSA-mhmr-259v-fcwq.json index a64c0127fa8..4532dd0310d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhmr-259v-fcwq/GHSA-mhmr-259v-fcwq.json +++ b/advisories/unreviewed/2022/05/GHSA-mhmr-259v-fcwq/GHSA-mhmr-259v-fcwq.json @@ -7,12 +7,8 @@ "CVE-2020-24630" ], "details": "A remote operatoronlinelist_content privilege escalation vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjm5-4fpc-477f/GHSA-mjm5-4fpc-477f.json b/advisories/unreviewed/2022/05/GHSA-mjm5-4fpc-477f/GHSA-mjm5-4fpc-477f.json index 466494a96a8..fcc8cf5941c 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjm5-4fpc-477f/GHSA-mjm5-4fpc-477f.json +++ b/advisories/unreviewed/2022/05/GHSA-mjm5-4fpc-477f/GHSA-mjm5-4fpc-477f.json @@ -7,12 +7,8 @@ "CVE-2019-8581" ], "details": "An out-of-bounds read was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to leak memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjr6-9x82-8cgp/GHSA-mjr6-9x82-8cgp.json b/advisories/unreviewed/2022/05/GHSA-mjr6-9x82-8cgp/GHSA-mjr6-9x82-8cgp.json index d16363477f1..db576e2096d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjr6-9x82-8cgp/GHSA-mjr6-9x82-8cgp.json +++ b/advisories/unreviewed/2022/05/GHSA-mjr6-9x82-8cgp/GHSA-mjr6-9x82-8cgp.json @@ -7,12 +7,8 @@ "CVE-2020-24425" ], "details": "Dreamweaver version 20.2 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead to privilege escalation. Successful exploitation could result in a local user with permissions to write to the file system running system commands with administrator privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mpp4-4x92-f6p7/GHSA-mpp4-4x92-f6p7.json b/advisories/unreviewed/2022/05/GHSA-mpp4-4x92-f6p7/GHSA-mpp4-4x92-f6p7.json index 6929e86c276..83bb376bb23 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpp4-4x92-f6p7/GHSA-mpp4-4x92-f6p7.json +++ b/advisories/unreviewed/2022/05/GHSA-mpp4-4x92-f6p7/GHSA-mpp4-4x92-f6p7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mprp-f34x-hghq/GHSA-mprp-f34x-hghq.json b/advisories/unreviewed/2022/05/GHSA-mprp-f34x-hghq/GHSA-mprp-f34x-hghq.json index d35ec1e21ec..026a728eca6 100644 --- a/advisories/unreviewed/2022/05/GHSA-mprp-f34x-hghq/GHSA-mprp-f34x-hghq.json +++ b/advisories/unreviewed/2022/05/GHSA-mprp-f34x-hghq/GHSA-mprp-f34x-hghq.json @@ -7,12 +7,8 @@ "CVE-2020-7363" ], "details": "User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of UCWeb's UC Browser allows an attacker to obfuscate the true source of data as presented in the browser. This issue affects UCWeb's UC Browser version 13.0.8 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mq53-q6cw-r9cc/GHSA-mq53-q6cw-r9cc.json b/advisories/unreviewed/2022/05/GHSA-mq53-q6cw-r9cc/GHSA-mq53-q6cw-r9cc.json index f3db53810b5..085cbfd02b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq53-q6cw-r9cc/GHSA-mq53-q6cw-r9cc.json +++ b/advisories/unreviewed/2022/05/GHSA-mq53-q6cw-r9cc/GHSA-mq53-q6cw-r9cc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mq8h-44p4-cp95/GHSA-mq8h-44p4-cp95.json b/advisories/unreviewed/2022/05/GHSA-mq8h-44p4-cp95/GHSA-mq8h-44p4-cp95.json index ddf4be1722b..6f1eb2431ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq8h-44p4-cp95/GHSA-mq8h-44p4-cp95.json +++ b/advisories/unreviewed/2022/05/GHSA-mq8h-44p4-cp95/GHSA-mq8h-44p4-cp95.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -59,9 +57,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr75-939c-29j6/GHSA-mr75-939c-29j6.json b/advisories/unreviewed/2022/05/GHSA-mr75-939c-29j6/GHSA-mr75-939c-29j6.json index 7beba987685..ccdef6c3a37 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr75-939c-29j6/GHSA-mr75-939c-29j6.json +++ b/advisories/unreviewed/2022/05/GHSA-mr75-939c-29j6/GHSA-mr75-939c-29j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrrj-8hj7-8c9f/GHSA-mrrj-8hj7-8c9f.json b/advisories/unreviewed/2022/05/GHSA-mrrj-8hj7-8c9f/GHSA-mrrj-8hj7-8c9f.json index 2c1f812e383..c655f9fab98 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrrj-8hj7-8c9f/GHSA-mrrj-8hj7-8c9f.json +++ b/advisories/unreviewed/2022/05/GHSA-mrrj-8hj7-8c9f/GHSA-mrrj-8hj7-8c9f.json @@ -7,12 +7,8 @@ "CVE-2020-14806" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Query). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mv8q-924r-5hx9/GHSA-mv8q-924r-5hx9.json b/advisories/unreviewed/2022/05/GHSA-mv8q-924r-5hx9/GHSA-mv8q-924r-5hx9.json index 1358fca4610..d09cab27b0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv8q-924r-5hx9/GHSA-mv8q-924r-5hx9.json +++ b/advisories/unreviewed/2022/05/GHSA-mv8q-924r-5hx9/GHSA-mv8q-924r-5hx9.json @@ -7,12 +7,8 @@ "CVE-2005-0253" ], "details": "Directory traversal vulnerability in index.php for BibORB 1.3.2, and possibly earlier versions, allows remote attackers to delete arbitrary files via a Delete action and .. (dot dot) sequences in the database_name parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p24x-78x9-3f22/GHSA-p24x-78x9-3f22.json b/advisories/unreviewed/2022/05/GHSA-p24x-78x9-3f22/GHSA-p24x-78x9-3f22.json index 97c3d0f49d1..41ab08dd464 100644 --- a/advisories/unreviewed/2022/05/GHSA-p24x-78x9-3f22/GHSA-p24x-78x9-3f22.json +++ b/advisories/unreviewed/2022/05/GHSA-p24x-78x9-3f22/GHSA-p24x-78x9-3f22.json @@ -7,12 +7,8 @@ "CVE-2020-14886" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.16. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 6.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p2v2-j3qq-4r65/GHSA-p2v2-j3qq-4r65.json b/advisories/unreviewed/2022/05/GHSA-p2v2-j3qq-4r65/GHSA-p2v2-j3qq-4r65.json index ad0bfeed60a..f3f5f597105 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2v2-j3qq-4r65/GHSA-p2v2-j3qq-4r65.json +++ b/advisories/unreviewed/2022/05/GHSA-p2v2-j3qq-4r65/GHSA-p2v2-j3qq-4r65.json @@ -7,12 +7,8 @@ "CVE-2020-5640" ], "details": "Local file inclusion vulnerability in OneThird CMS v1.96c and earlier allows a remote unauthenticated attacker to execute arbitrary code or obtain sensitive information via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3hr-gwm8-w2wc/GHSA-p3hr-gwm8-w2wc.json b/advisories/unreviewed/2022/05/GHSA-p3hr-gwm8-w2wc/GHSA-p3hr-gwm8-w2wc.json index 3b84edb11dd..6c32a0fa529 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3hr-gwm8-w2wc/GHSA-p3hr-gwm8-w2wc.json +++ b/advisories/unreviewed/2022/05/GHSA-p3hr-gwm8-w2wc/GHSA-p3hr-gwm8-w2wc.json @@ -7,12 +7,8 @@ "CVE-2020-5790" ], "details": "Cross-site request forgery in Nagios XI 5.7.3 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5rv-g39g-g7c5/GHSA-p5rv-g39g-g7c5.json b/advisories/unreviewed/2022/05/GHSA-p5rv-g39g-g7c5/GHSA-p5rv-g39g-g7c5.json index 9684a0fe3c3..1984df62c54 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5rv-g39g-g7c5/GHSA-p5rv-g39g-g7c5.json +++ b/advisories/unreviewed/2022/05/GHSA-p5rv-g39g-g7c5/GHSA-p5rv-g39g-g7c5.json @@ -7,12 +7,8 @@ "CVE-2020-24647" ], "details": "A remote accessmgrservlet classname input validation code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p623-p97g-jv85/GHSA-p623-p97g-jv85.json b/advisories/unreviewed/2022/05/GHSA-p623-p97g-jv85/GHSA-p623-p97g-jv85.json index cb44abd68b9..1fc1dcd9e24 100644 --- a/advisories/unreviewed/2022/05/GHSA-p623-p97g-jv85/GHSA-p623-p97g-jv85.json +++ b/advisories/unreviewed/2022/05/GHSA-p623-p97g-jv85/GHSA-p623-p97g-jv85.json @@ -7,12 +7,8 @@ "CVE-2020-14850" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Flex Fields). Supported versions that are affected are 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle CRM Technical Foundation, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data as well as unauthorized update, insert or delete access to some of Oracle CRM Technical Foundation accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p6cr-fw66-vg75/GHSA-p6cr-fw66-vg75.json b/advisories/unreviewed/2022/05/GHSA-p6cr-fw66-vg75/GHSA-p6cr-fw66-vg75.json index 038b9cceee8..93c9ca97cac 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6cr-fw66-vg75/GHSA-p6cr-fw66-vg75.json +++ b/advisories/unreviewed/2022/05/GHSA-p6cr-fw66-vg75/GHSA-p6cr-fw66-vg75.json @@ -7,12 +7,8 @@ "CVE-2020-14832" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Integration Broker). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p76j-8v8h-xfgw/GHSA-p76j-8v8h-xfgw.json b/advisories/unreviewed/2022/05/GHSA-p76j-8v8h-xfgw/GHSA-p76j-8v8h-xfgw.json index f5c295a48f2..d413090342a 100644 --- a/advisories/unreviewed/2022/05/GHSA-p76j-8v8h-xfgw/GHSA-p76j-8v8h-xfgw.json +++ b/advisories/unreviewed/2022/05/GHSA-p76j-8v8h-xfgw/GHSA-p76j-8v8h-xfgw.json @@ -7,12 +7,8 @@ "CVE-2018-4451" ], "details": "This issue is fixed in macOS Mojave 10.14. A memory corruption issue was addressed with improved input validation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p97m-c3p6-rw68/GHSA-p97m-c3p6-rw68.json b/advisories/unreviewed/2022/05/GHSA-p97m-c3p6-rw68/GHSA-p97m-c3p6-rw68.json index bdfeed0133b..f6c1b0c7dba 100644 --- a/advisories/unreviewed/2022/05/GHSA-p97m-c3p6-rw68/GHSA-p97m-c3p6-rw68.json +++ b/advisories/unreviewed/2022/05/GHSA-p97m-c3p6-rw68/GHSA-p97m-c3p6-rw68.json @@ -7,12 +7,8 @@ "CVE-2020-24765" ], "details": "InterMind iMind Server through 3.13.65 allows remote unauthenticated attackers to read the self-diagnostic archive via a direct api/rs/monitoring/rs/api/system/dump-diagnostic-info?server=127.0.0.1 request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pf2j-6254-v9j8/GHSA-pf2j-6254-v9j8.json b/advisories/unreviewed/2022/05/GHSA-pf2j-6254-v9j8/GHSA-pf2j-6254-v9j8.json index eb4c12716d9..b67de535869 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf2j-6254-v9j8/GHSA-pf2j-6254-v9j8.json +++ b/advisories/unreviewed/2022/05/GHSA-pf2j-6254-v9j8/GHSA-pf2j-6254-v9j8.json @@ -7,12 +7,8 @@ "CVE-2020-14835" ], "details": "Vulnerability in the Oracle Marketing product of Oracle E-Business Suite (component: Marketing Administration). Supported versions that are affected are 12.1.1 - 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Marketing. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Marketing, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Marketing accessible data as well as unauthorized update, insert or delete access to some of Oracle Marketing accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pfr7-2ph8-36r9/GHSA-pfr7-2ph8-36r9.json b/advisories/unreviewed/2022/05/GHSA-pfr7-2ph8-36r9/GHSA-pfr7-2ph8-36r9.json index 5de94e2b491..0b16ef75d0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfr7-2ph8-36r9/GHSA-pfr7-2ph8-36r9.json +++ b/advisories/unreviewed/2022/05/GHSA-pfr7-2ph8-36r9/GHSA-pfr7-2ph8-36r9.json @@ -7,12 +7,8 @@ "CVE-2020-15931" ], "details": "Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain Administrator (that is configured within the product in its installation state) by generating a single Kerberos Pre-Authentication Failed (ID 4771) event on a Domain Controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pfrh-m7rq-gq4c/GHSA-pfrh-m7rq-gq4c.json b/advisories/unreviewed/2022/05/GHSA-pfrh-m7rq-gq4c/GHSA-pfrh-m7rq-gq4c.json index b19166d624d..d3a7c2a12da 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfrh-m7rq-gq4c/GHSA-pfrh-m7rq-gq4c.json +++ b/advisories/unreviewed/2022/05/GHSA-pfrh-m7rq-gq4c/GHSA-pfrh-m7rq-gq4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pgcj-52hg-vjr8/GHSA-pgcj-52hg-vjr8.json b/advisories/unreviewed/2022/05/GHSA-pgcj-52hg-vjr8/GHSA-pgcj-52hg-vjr8.json index ed54d93c868..953ccdb2bca 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgcj-52hg-vjr8/GHSA-pgcj-52hg-vjr8.json +++ b/advisories/unreviewed/2022/05/GHSA-pgcj-52hg-vjr8/GHSA-pgcj-52hg-vjr8.json @@ -7,12 +7,8 @@ "CVE-2020-27646" ], "details": "Biscom Secure File Transfer (SFT) before 5.1.1082 and 6.x before 6.0.1011 allows user credential theft.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj8v-c8cg-m6c8/GHSA-pj8v-c8cg-m6c8.json b/advisories/unreviewed/2022/05/GHSA-pj8v-c8cg-m6c8/GHSA-pj8v-c8cg-m6c8.json index 46a0b253620..0ca353cbb30 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj8v-c8cg-m6c8/GHSA-pj8v-c8cg-m6c8.json +++ b/advisories/unreviewed/2022/05/GHSA-pj8v-c8cg-m6c8/GHSA-pj8v-c8cg-m6c8.json @@ -7,12 +7,8 @@ "CVE-2020-24409" ], "details": "Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds read vulnerability when parsing crafted PDF files. This could result in a read past the end of an allocated memory structure, potentially resulting in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pm23-qjx3-gg3f/GHSA-pm23-qjx3-gg3f.json b/advisories/unreviewed/2022/05/GHSA-pm23-qjx3-gg3f/GHSA-pm23-qjx3-gg3f.json index 2df6585bb57..e9542465641 100644 --- a/advisories/unreviewed/2022/05/GHSA-pm23-qjx3-gg3f/GHSA-pm23-qjx3-gg3f.json +++ b/advisories/unreviewed/2022/05/GHSA-pm23-qjx3-gg3f/GHSA-pm23-qjx3-gg3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppgq-qwrp-qpwp/GHSA-ppgq-qwrp-qpwp.json b/advisories/unreviewed/2022/05/GHSA-ppgq-qwrp-qpwp/GHSA-ppgq-qwrp-qpwp.json index 604c6eff173..f22b8dd71d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppgq-qwrp-qpwp/GHSA-ppgq-qwrp-qpwp.json +++ b/advisories/unreviewed/2022/05/GHSA-ppgq-qwrp-qpwp/GHSA-ppgq-qwrp-qpwp.json @@ -7,12 +7,8 @@ "CVE-2020-24422" ], "details": "Adobe Creative Cloud Desktop Application version 5.2 (and earlier) and 2.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppr6-rwxr-hfr8/GHSA-ppr6-rwxr-hfr8.json b/advisories/unreviewed/2022/05/GHSA-ppr6-rwxr-hfr8/GHSA-ppr6-rwxr-hfr8.json index a03732aa543..f205443088a 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppr6-rwxr-hfr8/GHSA-ppr6-rwxr-hfr8.json +++ b/advisories/unreviewed/2022/05/GHSA-ppr6-rwxr-hfr8/GHSA-ppr6-rwxr-hfr8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -71,9 +69,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pv3p-47qr-3pw4/GHSA-pv3p-47qr-3pw4.json b/advisories/unreviewed/2022/05/GHSA-pv3p-47qr-3pw4/GHSA-pv3p-47qr-3pw4.json index b2c311992cb..8a97ed6e6db 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv3p-47qr-3pw4/GHSA-pv3p-47qr-3pw4.json +++ b/advisories/unreviewed/2022/05/GHSA-pv3p-47qr-3pw4/GHSA-pv3p-47qr-3pw4.json @@ -7,12 +7,8 @@ "CVE-2005-0254" ], "details": "BibORB 1.3.2, and possibly earlier versions, does not properly enforce a restriction for uploading only PDF and PS files, which allows remote attackers to upload arbitrary files that are presented to other users with PDF or PS icons, which may trick some users into downloading and executing those files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvwm-jpjj-2g7v/GHSA-pvwm-jpjj-2g7v.json b/advisories/unreviewed/2022/05/GHSA-pvwm-jpjj-2g7v/GHSA-pvwm-jpjj-2g7v.json index 36938788224..edb51ed11ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvwm-jpjj-2g7v/GHSA-pvwm-jpjj-2g7v.json +++ b/advisories/unreviewed/2022/05/GHSA-pvwm-jpjj-2g7v/GHSA-pvwm-jpjj-2g7v.json @@ -7,12 +7,8 @@ "CVE-2020-14879" ], "details": "Vulnerability in the BI Publisher product of Oracle Fusion Middleware (component: E-Business Suite - XDO). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise BI Publisher. While the vulnerability is in BI Publisher, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all BI Publisher accessible data as well as unauthorized update, insert or delete access to some of BI Publisher accessible data. CVSS 3.1 Base Score 8.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-px7w-55jq-wg57/GHSA-px7w-55jq-wg57.json b/advisories/unreviewed/2022/05/GHSA-px7w-55jq-wg57/GHSA-px7w-55jq-wg57.json index 068b2756edb..febf7b30f29 100644 --- a/advisories/unreviewed/2022/05/GHSA-px7w-55jq-wg57/GHSA-px7w-55jq-wg57.json +++ b/advisories/unreviewed/2022/05/GHSA-px7w-55jq-wg57/GHSA-px7w-55jq-wg57.json @@ -7,12 +7,8 @@ "CVE-2020-7141" ], "details": "A adddevicetoview expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxvq-j9fr-rcm6/GHSA-pxvq-j9fr-rcm6.json b/advisories/unreviewed/2022/05/GHSA-pxvq-j9fr-rcm6/GHSA-pxvq-j9fr-rcm6.json index fabaa37111a..849b6d14839 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxvq-j9fr-rcm6/GHSA-pxvq-j9fr-rcm6.json +++ b/advisories/unreviewed/2022/05/GHSA-pxvq-j9fr-rcm6/GHSA-pxvq-j9fr-rcm6.json @@ -7,12 +7,8 @@ "CVE-2020-27344" ], "details": "The cm-download-manager plugin before 2.8.0 for WordPress allows XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q226-j4q4-9wc9/GHSA-q226-j4q4-9wc9.json b/advisories/unreviewed/2022/05/GHSA-q226-j4q4-9wc9/GHSA-q226-j4q4-9wc9.json index e470c67964c..745b1acab4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-q226-j4q4-9wc9/GHSA-q226-j4q4-9wc9.json +++ b/advisories/unreviewed/2022/05/GHSA-q226-j4q4-9wc9/GHSA-q226-j4q4-9wc9.json @@ -7,12 +7,8 @@ "CVE-2020-27678" ], "details": "An issue was discovered in illumos before 2020-10-22, as used in OmniOS before r151030by, r151032ay, and r151034y and SmartOS before 20201022. There is a buffer overflow in parse_user_name in lib/libpam/pam_framework.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q26c-r46f-6fcq/GHSA-q26c-r46f-6fcq.json b/advisories/unreviewed/2022/05/GHSA-q26c-r46f-6fcq/GHSA-q26c-r46f-6fcq.json index 69cb6c5e42c..b58544d0b22 100644 --- a/advisories/unreviewed/2022/05/GHSA-q26c-r46f-6fcq/GHSA-q26c-r46f-6fcq.json +++ b/advisories/unreviewed/2022/05/GHSA-q26c-r46f-6fcq/GHSA-q26c-r46f-6fcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3g2-22xw-gvf8/GHSA-q3g2-22xw-gvf8.json b/advisories/unreviewed/2022/05/GHSA-q3g2-22xw-gvf8/GHSA-q3g2-22xw-gvf8.json index 91a3b8a9090..480c834e2fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3g2-22xw-gvf8/GHSA-q3g2-22xw-gvf8.json +++ b/advisories/unreviewed/2022/05/GHSA-q3g2-22xw-gvf8/GHSA-q3g2-22xw-gvf8.json @@ -7,12 +7,8 @@ "CVE-2020-9796" ], "details": "A race condition was addressed with improved state handling. This issue is fixed in macOS Catalina 10.15.5. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q42f-hxw2-5vgx/GHSA-q42f-hxw2-5vgx.json b/advisories/unreviewed/2022/05/GHSA-q42f-hxw2-5vgx/GHSA-q42f-hxw2-5vgx.json index c4216ed230f..ffd7da07ad7 100644 --- a/advisories/unreviewed/2022/05/GHSA-q42f-hxw2-5vgx/GHSA-q42f-hxw2-5vgx.json +++ b/advisories/unreviewed/2022/05/GHSA-q42f-hxw2-5vgx/GHSA-q42f-hxw2-5vgx.json @@ -7,12 +7,8 @@ "CVE-2017-18925" ], "details": "opentmpfiles through 0.3.1 allows local users to take ownership of arbitrary files because d entries are mishandled and allow a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4mr-9hwv-6fp2/GHSA-q4mr-9hwv-6fp2.json b/advisories/unreviewed/2022/05/GHSA-q4mr-9hwv-6fp2/GHSA-q4mr-9hwv-6fp2.json index 522d4cf95a0..0f9032ffda3 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4mr-9hwv-6fp2/GHSA-q4mr-9hwv-6fp2.json +++ b/advisories/unreviewed/2022/05/GHSA-q4mr-9hwv-6fp2/GHSA-q4mr-9hwv-6fp2.json @@ -7,12 +7,8 @@ "CVE-2020-16159" ], "details": "GoPro gpmf-parser 1.5 has a heap out-of-bounds read and segfault in GPMF_ScaledData(). Parsing malicious input can result in a crash or information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q4v9-gx3p-c65m/GHSA-q4v9-gx3p-c65m.json b/advisories/unreviewed/2022/05/GHSA-q4v9-gx3p-c65m/GHSA-q4v9-gx3p-c65m.json index d08ad12d61c..e9c72263881 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4v9-gx3p-c65m/GHSA-q4v9-gx3p-c65m.json +++ b/advisories/unreviewed/2022/05/GHSA-q4v9-gx3p-c65m/GHSA-q4v9-gx3p-c65m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5c9-crv8-jc57/GHSA-q5c9-crv8-jc57.json b/advisories/unreviewed/2022/05/GHSA-q5c9-crv8-jc57/GHSA-q5c9-crv8-jc57.json index 87ae8462284..724262733c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5c9-crv8-jc57/GHSA-q5c9-crv8-jc57.json +++ b/advisories/unreviewed/2022/05/GHSA-q5c9-crv8-jc57/GHSA-q5c9-crv8-jc57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q677-wggg-h4hr/GHSA-q677-wggg-h4hr.json b/advisories/unreviewed/2022/05/GHSA-q677-wggg-h4hr/GHSA-q677-wggg-h4hr.json index 90c2d1199b0..bbb747c96ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-q677-wggg-h4hr/GHSA-q677-wggg-h4hr.json +++ b/advisories/unreviewed/2022/05/GHSA-q677-wggg-h4hr/GHSA-q677-wggg-h4hr.json @@ -7,12 +7,8 @@ "CVE-2020-18766" ], "details": "A cross-site scripting (XSS) vulnerability AntSword v2.0.7 can remotely execute system commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q684-gc4q-vcv9/GHSA-q684-gc4q-vcv9.json b/advisories/unreviewed/2022/05/GHSA-q684-gc4q-vcv9/GHSA-q684-gc4q-vcv9.json index 4aa90e6d450..991965a0aa6 100644 --- a/advisories/unreviewed/2022/05/GHSA-q684-gc4q-vcv9/GHSA-q684-gc4q-vcv9.json +++ b/advisories/unreviewed/2022/05/GHSA-q684-gc4q-vcv9/GHSA-q684-gc4q-vcv9.json @@ -7,12 +7,8 @@ "CVE-2020-24424" ], "details": "Adobe Premiere Pro version 14.4 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7qq-wmm7-38v4/GHSA-q7qq-wmm7-38v4.json b/advisories/unreviewed/2022/05/GHSA-q7qq-wmm7-38v4/GHSA-q7qq-wmm7-38v4.json index 14463cd5a77..f7ff188c4e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7qq-wmm7-38v4/GHSA-q7qq-wmm7-38v4.json +++ b/advisories/unreviewed/2022/05/GHSA-q7qq-wmm7-38v4/GHSA-q7qq-wmm7-38v4.json @@ -7,12 +7,8 @@ "CVE-2019-14719" ], "details": "Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow multiple arbitrary command injections, as demonstrated by the file manager.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7xg-fwxg-6r7w/GHSA-q7xg-fwxg-6r7w.json b/advisories/unreviewed/2022/05/GHSA-q7xg-fwxg-6r7w/GHSA-q7xg-fwxg-6r7w.json index 4858419d96d..413f82b0960 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7xg-fwxg-6r7w/GHSA-q7xg-fwxg-6r7w.json +++ b/advisories/unreviewed/2022/05/GHSA-q7xg-fwxg-6r7w/GHSA-q7xg-fwxg-6r7w.json @@ -7,12 +7,8 @@ "CVE-2020-7169" ], "details": "A ictexpertcsvdownload expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q95f-cgqq-hrmw/GHSA-q95f-cgqq-hrmw.json b/advisories/unreviewed/2022/05/GHSA-q95f-cgqq-hrmw/GHSA-q95f-cgqq-hrmw.json index d3bf2863fa0..503470e0318 100644 --- a/advisories/unreviewed/2022/05/GHSA-q95f-cgqq-hrmw/GHSA-q95f-cgqq-hrmw.json +++ b/advisories/unreviewed/2022/05/GHSA-q95f-cgqq-hrmw/GHSA-q95f-cgqq-hrmw.json @@ -7,12 +7,8 @@ "CVE-2019-8592" ], "details": "A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15, tvOS 12.3, watchOS 5.2.1, tvOS 13, macOS Catalina 10.15.1, Security Update 2019-001, and Security Update 2019-006, macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3, iOS 13. Playing a malicious audio file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qcv9-94xc-qj39/GHSA-qcv9-94xc-qj39.json b/advisories/unreviewed/2022/05/GHSA-qcv9-94xc-qj39/GHSA-qcv9-94xc-qj39.json index 0dc27eaf788..4c94f9c129c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcv9-94xc-qj39/GHSA-qcv9-94xc-qj39.json +++ b/advisories/unreviewed/2022/05/GHSA-qcv9-94xc-qj39/GHSA-qcv9-94xc-qj39.json @@ -7,12 +7,8 @@ "CVE-2020-14895" ], "details": "Vulnerability in the Oracle Utilities Framework product of Oracle Utilities Applications (component: System Wide). Supported versions that are affected are 2.2.0.0.0, 4.2.0.2.0, 4.2.0.3.0, 4.3.0.1.0 - 4.3.0.6.0, 4.4.0.0.0 and 4.4.0.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Utilities Framework. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Utilities Framework accessible data as well as unauthorized read access to a subset of Oracle Utilities Framework accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qfp8-vmx9-3487/GHSA-qfp8-vmx9-3487.json b/advisories/unreviewed/2022/05/GHSA-qfp8-vmx9-3487/GHSA-qfp8-vmx9-3487.json index 2d3e873a1ce..284399c7114 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfp8-vmx9-3487/GHSA-qfp8-vmx9-3487.json +++ b/advisories/unreviewed/2022/05/GHSA-qfp8-vmx9-3487/GHSA-qfp8-vmx9-3487.json @@ -7,12 +7,8 @@ "CVE-2020-24415" ], "details": "Adobe Illustrator version 24.1.2 (and earlier) is affected by a memory corruption vulnerability that occurs when parsing a specially crafted .svg file. This could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qg7g-vghv-f5wq/GHSA-qg7g-vghv-f5wq.json b/advisories/unreviewed/2022/05/GHSA-qg7g-vghv-f5wq/GHSA-qg7g-vghv-f5wq.json index 4e7e0f2d4af..77c8f3f29ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg7g-vghv-f5wq/GHSA-qg7g-vghv-f5wq.json +++ b/advisories/unreviewed/2022/05/GHSA-qg7g-vghv-f5wq/GHSA-qg7g-vghv-f5wq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qm2j-g7w2-hfq8/GHSA-qm2j-g7w2-hfq8.json b/advisories/unreviewed/2022/05/GHSA-qm2j-g7w2-hfq8/GHSA-qm2j-g7w2-hfq8.json index a3c78233ef8..d068d1f643e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm2j-g7w2-hfq8/GHSA-qm2j-g7w2-hfq8.json +++ b/advisories/unreviewed/2022/05/GHSA-qm2j-g7w2-hfq8/GHSA-qm2j-g7w2-hfq8.json @@ -7,12 +7,8 @@ "CVE-2020-14898" ], "details": "Vulnerability in the Oracle Application Express Packaged Apps component of Oracle Database Server. The supported version that is affected is Prior to 20.2. Easily exploitable vulnerability allows low privileged attacker having Valid User Account privilege with network access via HTTP to compromise Oracle Application Express Packaged Apps. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Application Express Packaged Apps, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Application Express Packaged Apps accessible data as well as unauthorized read access to a subset of Oracle Application Express Packaged Apps accessible data. CVSS 3.1 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qmrr-xxwg-2f24/GHSA-qmrr-xxwg-2f24.json b/advisories/unreviewed/2022/05/GHSA-qmrr-xxwg-2f24/GHSA-qmrr-xxwg-2f24.json index ecc221e5abe..2d335f8b2b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmrr-xxwg-2f24/GHSA-qmrr-xxwg-2f24.json +++ b/advisories/unreviewed/2022/05/GHSA-qmrr-xxwg-2f24/GHSA-qmrr-xxwg-2f24.json @@ -7,12 +7,8 @@ "CVE-2019-8528" ], "details": "A use after free issue was addressed with improved memory management. This issue is fixed in watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpfr-h5cm-35p5/GHSA-qpfr-h5cm-35p5.json b/advisories/unreviewed/2022/05/GHSA-qpfr-h5cm-35p5/GHSA-qpfr-h5cm-35p5.json index a6bd5065a33..cd8bf5e4cde 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpfr-h5cm-35p5/GHSA-qpfr-h5cm-35p5.json +++ b/advisories/unreviewed/2022/05/GHSA-qpfr-h5cm-35p5/GHSA-qpfr-h5cm-35p5.json @@ -7,12 +7,8 @@ "CVE-2019-14716" ], "details": "Verifone VerixV Pinpad Payment Terminals with QT000530 have an undocumented physical access mode (aka VerixV shell.out).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qr82-xh8j-94vc/GHSA-qr82-xh8j-94vc.json b/advisories/unreviewed/2022/05/GHSA-qr82-xh8j-94vc/GHSA-qr82-xh8j-94vc.json index 950fe293deb..937ad957ae1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr82-xh8j-94vc/GHSA-qr82-xh8j-94vc.json +++ b/advisories/unreviewed/2022/05/GHSA-qr82-xh8j-94vc/GHSA-qr82-xh8j-94vc.json @@ -7,12 +7,8 @@ "CVE-2020-27606" ], "details": "BigBlueButton before 2.2.28 (or earlier) does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qv32-fg95-8497/GHSA-qv32-fg95-8497.json b/advisories/unreviewed/2022/05/GHSA-qv32-fg95-8497/GHSA-qv32-fg95-8497.json index 5790d928d97..e19bf151929 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv32-fg95-8497/GHSA-qv32-fg95-8497.json +++ b/advisories/unreviewed/2022/05/GHSA-qv32-fg95-8497/GHSA-qv32-fg95-8497.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qv47-9766-h942/GHSA-qv47-9766-h942.json b/advisories/unreviewed/2022/05/GHSA-qv47-9766-h942/GHSA-qv47-9766-h942.json index 896dee17597..6e7f7e5c561 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv47-9766-h942/GHSA-qv47-9766-h942.json +++ b/advisories/unreviewed/2022/05/GHSA-qv47-9766-h942/GHSA-qv47-9766-h942.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qv5r-3pww-jqc3/GHSA-qv5r-3pww-jqc3.json b/advisories/unreviewed/2022/05/GHSA-qv5r-3pww-jqc3/GHSA-qv5r-3pww-jqc3.json index af6135b50ec..42517a771c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv5r-3pww-jqc3/GHSA-qv5r-3pww-jqc3.json +++ b/advisories/unreviewed/2022/05/GHSA-qv5r-3pww-jqc3/GHSA-qv5r-3pww-jqc3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qvv9-2cww-q346/GHSA-qvv9-2cww-q346.json b/advisories/unreviewed/2022/05/GHSA-qvv9-2cww-q346/GHSA-qvv9-2cww-q346.json index 5b89f5dbe8d..2207f6918d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvv9-2cww-q346/GHSA-qvv9-2cww-q346.json +++ b/advisories/unreviewed/2022/05/GHSA-qvv9-2cww-q346/GHSA-qvv9-2cww-q346.json @@ -7,12 +7,8 @@ "CVE-2020-3352" ], "details": "A vulnerability in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access hidden commands. The vulnerability is due to the presence of undocumented configuration commands. An attacker could exploit this vulnerability by performing specific steps that make the hidden commands accessible. A successful exploit could allow the attacker to make configuration changes to various sections of an affected device that should not be exposed to CLI access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qw5w-44g5-x7m4/GHSA-qw5w-44g5-x7m4.json b/advisories/unreviewed/2022/05/GHSA-qw5w-44g5-x7m4/GHSA-qw5w-44g5-x7m4.json index 56a8389f1b4..07c377a5e5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw5w-44g5-x7m4/GHSA-qw5w-44g5-x7m4.json +++ b/advisories/unreviewed/2022/05/GHSA-qw5w-44g5-x7m4/GHSA-qw5w-44g5-x7m4.json @@ -7,12 +7,8 @@ "CVE-2020-9853" ], "details": "A memory corruption issue was addressed with improved validation. This issue is fixed in macOS Catalina 10.15.4. A malicious application may be able to determine kernel memory layout.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwpw-7q7c-x5jq/GHSA-qwpw-7q7c-x5jq.json b/advisories/unreviewed/2022/05/GHSA-qwpw-7q7c-x5jq/GHSA-qwpw-7q7c-x5jq.json index 6830dd8f0c6..8ba2584b8df 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwpw-7q7c-x5jq/GHSA-qwpw-7q7c-x5jq.json +++ b/advisories/unreviewed/2022/05/GHSA-qwpw-7q7c-x5jq/GHSA-qwpw-7q7c-x5jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwqc-2h44-pfq6/GHSA-qwqc-2h44-pfq6.json b/advisories/unreviewed/2022/05/GHSA-qwqc-2h44-pfq6/GHSA-qwqc-2h44-pfq6.json index 0b50ca29b88..deb1bdf92ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwqc-2h44-pfq6/GHSA-qwqc-2h44-pfq6.json +++ b/advisories/unreviewed/2022/05/GHSA-qwqc-2h44-pfq6/GHSA-qwqc-2h44-pfq6.json @@ -7,12 +7,8 @@ "CVE-2020-14824" ], "details": "Vulnerability in the Oracle Financial Services Analytical Applications Infrastructure product of Oracle Financial Services Applications (component: Infrastructure). Supported versions that are affected are 8.0.6-8.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Financial Services Analytical Applications Infrastructure. While the vulnerability is in Oracle Financial Services Analytical Applications Infrastructure, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Financial Services Analytical Applications Infrastructure. CVSS 3.1 Base Score 8.6 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qwr5-5v38-5gf5/GHSA-qwr5-5v38-5gf5.json b/advisories/unreviewed/2022/05/GHSA-qwr5-5v38-5gf5/GHSA-qwr5-5v38-5gf5.json index ff3712b8198..16248d51028 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwr5-5v38-5gf5/GHSA-qwr5-5v38-5gf5.json +++ b/advisories/unreviewed/2022/05/GHSA-qwr5-5v38-5gf5/GHSA-qwr5-5v38-5gf5.json @@ -7,12 +7,8 @@ "CVE-2020-25483" ], "details": "An arbitrary command execution vulnerability exists in the fopen() function of file writes of UCMS v1.4.8, where an attacker can gain access to the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qx9h-856c-43j9/GHSA-qx9h-856c-43j9.json b/advisories/unreviewed/2022/05/GHSA-qx9h-856c-43j9/GHSA-qx9h-856c-43j9.json index 55decb41de5..ec3f610a2fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx9h-856c-43j9/GHSA-qx9h-856c-43j9.json +++ b/advisories/unreviewed/2022/05/GHSA-qx9h-856c-43j9/GHSA-qx9h-856c-43j9.json @@ -7,12 +7,8 @@ "CVE-2020-15822" ], "details": "In JetBrains YouTrack before 2020.2.10514, SSRF is possible because URL filtering can be escaped.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qxqq-4chf-42gr/GHSA-qxqq-4chf-42gr.json b/advisories/unreviewed/2022/05/GHSA-qxqq-4chf-42gr/GHSA-qxqq-4chf-42gr.json index da800667073..6dc6effb17e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxqq-4chf-42gr/GHSA-qxqq-4chf-42gr.json +++ b/advisories/unreviewed/2022/05/GHSA-qxqq-4chf-42gr/GHSA-qxqq-4chf-42gr.json @@ -7,12 +7,8 @@ "CVE-2020-9810" ], "details": "A logic issue was addressed with improved restrictions. This issue is fixed in macOS Catalina 10.15.5. A person with physical access to a Mac may be able to bypass Login Window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r32v-v5j5-cc79/GHSA-r32v-v5j5-cc79.json b/advisories/unreviewed/2022/05/GHSA-r32v-v5j5-cc79/GHSA-r32v-v5j5-cc79.json index 759bc47cf6a..2b51be01ebd 100644 --- a/advisories/unreviewed/2022/05/GHSA-r32v-v5j5-cc79/GHSA-r32v-v5j5-cc79.json +++ b/advisories/unreviewed/2022/05/GHSA-r32v-v5j5-cc79/GHSA-r32v-v5j5-cc79.json @@ -7,12 +7,8 @@ "CVE-2020-14865" ], "details": "Vulnerability in the PeopleSoft Enterprise SCM eSupplier Connection product of Oracle PeopleSoft (component: eSupplier Connection). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise SCM eSupplier Connection. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all PeopleSoft Enterprise SCM eSupplier Connection accessible data as well as unauthorized access to critical data or complete access to all PeopleSoft Enterprise SCM eSupplier Connection accessible data. CVSS 3.1 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r4wf-987x-3gxj/GHSA-r4wf-987x-3gxj.json b/advisories/unreviewed/2022/05/GHSA-r4wf-987x-3gxj/GHSA-r4wf-987x-3gxj.json index ba4a068a9a8..7e70622fa18 100644 --- a/advisories/unreviewed/2022/05/GHSA-r4wf-987x-3gxj/GHSA-r4wf-987x-3gxj.json +++ b/advisories/unreviewed/2022/05/GHSA-r4wf-987x-3gxj/GHSA-r4wf-987x-3gxj.json @@ -7,12 +7,8 @@ "CVE-2019-8582" ], "details": "An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iCloud for Windows 7.12, tvOS 12.3, iTunes 12.9.5 for Windows, macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3. Processing a maliciously crafted font may result in the disclosure of process memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r53q-2c4p-h7xf/GHSA-r53q-2c4p-h7xf.json b/advisories/unreviewed/2022/05/GHSA-r53q-2c4p-h7xf/GHSA-r53q-2c4p-h7xf.json index 576761e01b6..edebc4940a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r53q-2c4p-h7xf/GHSA-r53q-2c4p-h7xf.json +++ b/advisories/unreviewed/2022/05/GHSA-r53q-2c4p-h7xf/GHSA-r53q-2c4p-h7xf.json @@ -7,12 +7,8 @@ "CVE-2020-14854" ], "details": "Vulnerability in the Hyperion Infrastructure Technology product of Oracle Hyperion (component: UI and Visualization). The supported version that is affected is 11.1.2.4. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Hyperion Infrastructure Technology. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Hyperion Infrastructure Technology accessible data as well as unauthorized access to critical data or complete access to all Hyperion Infrastructure Technology accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r565-38vj-jvgh/GHSA-r565-38vj-jvgh.json b/advisories/unreviewed/2022/05/GHSA-r565-38vj-jvgh/GHSA-r565-38vj-jvgh.json index b3a779c186a..a61f2a90d1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-r565-38vj-jvgh/GHSA-r565-38vj-jvgh.json +++ b/advisories/unreviewed/2022/05/GHSA-r565-38vj-jvgh/GHSA-r565-38vj-jvgh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r5xw-rwcj-7qv5/GHSA-r5xw-rwcj-7qv5.json b/advisories/unreviewed/2022/05/GHSA-r5xw-rwcj-7qv5/GHSA-r5xw-rwcj-7qv5.json index e7eb7338905..4e0f101dbed 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5xw-rwcj-7qv5/GHSA-r5xw-rwcj-7qv5.json +++ b/advisories/unreviewed/2022/05/GHSA-r5xw-rwcj-7qv5/GHSA-r5xw-rwcj-7qv5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r777-x2jc-xgc6/GHSA-r777-x2jc-xgc6.json b/advisories/unreviewed/2022/05/GHSA-r777-x2jc-xgc6/GHSA-r777-x2jc-xgc6.json index 40abdf90e46..7a33b208538 100644 --- a/advisories/unreviewed/2022/05/GHSA-r777-x2jc-xgc6/GHSA-r777-x2jc-xgc6.json +++ b/advisories/unreviewed/2022/05/GHSA-r777-x2jc-xgc6/GHSA-r777-x2jc-xgc6.json @@ -7,12 +7,8 @@ "CVE-2020-25186" ], "details": "An XXE vulnerability exists within LeviStudioU Release Build 2019-09-21 and prior when processing parameter entities, which may allow file disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r7r5-995x-prgv/GHSA-r7r5-995x-prgv.json b/advisories/unreviewed/2022/05/GHSA-r7r5-995x-prgv/GHSA-r7r5-995x-prgv.json index 916cea8d6f1..7094e42be61 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7r5-995x-prgv/GHSA-r7r5-995x-prgv.json +++ b/advisories/unreviewed/2022/05/GHSA-r7r5-995x-prgv/GHSA-r7r5-995x-prgv.json @@ -7,12 +7,8 @@ "CVE-2019-8612" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, tvOS 12.3, watchOS 5.2.1, macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, iOS 12.3. An attacker in a privileged network position can modify driver state.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7x6-g4f2-fq99/GHSA-r7x6-g4f2-fq99.json b/advisories/unreviewed/2022/05/GHSA-r7x6-g4f2-fq99/GHSA-r7x6-g4f2-fq99.json index 214ac7bb82c..eb7d2a9bc68 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7x6-g4f2-fq99/GHSA-r7x6-g4f2-fq99.json +++ b/advisories/unreviewed/2022/05/GHSA-r7x6-g4f2-fq99/GHSA-r7x6-g4f2-fq99.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8cr-jgjj-w74h/GHSA-r8cr-jgjj-w74h.json b/advisories/unreviewed/2022/05/GHSA-r8cr-jgjj-w74h/GHSA-r8cr-jgjj-w74h.json index 8739b0901a7..e9f78e5e59f 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8cr-jgjj-w74h/GHSA-r8cr-jgjj-w74h.json +++ b/advisories/unreviewed/2022/05/GHSA-r8cr-jgjj-w74h/GHSA-r8cr-jgjj-w74h.json @@ -7,12 +7,8 @@ "CVE-2019-8572" ], "details": "A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r8pv-5qcr-8mr8/GHSA-r8pv-5qcr-8mr8.json b/advisories/unreviewed/2022/05/GHSA-r8pv-5qcr-8mr8/GHSA-r8pv-5qcr-8mr8.json index 05065c38a5a..fb0e77c11a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8pv-5qcr-8mr8/GHSA-r8pv-5qcr-8mr8.json +++ b/advisories/unreviewed/2022/05/GHSA-r8pv-5qcr-8mr8/GHSA-r8pv-5qcr-8mr8.json @@ -7,12 +7,8 @@ "CVE-2020-14822" ], "details": "Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: APIs). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Installed Base. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Installed Base, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Installed Base accessible data. CVSS 3.1 Base Score 4.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9xf-mwcp-f4x8/GHSA-r9xf-mwcp-f4x8.json b/advisories/unreviewed/2022/05/GHSA-r9xf-mwcp-f4x8/GHSA-r9xf-mwcp-f4x8.json index 91b394dda15..1f443763bd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9xf-mwcp-f4x8/GHSA-r9xf-mwcp-f4x8.json +++ b/advisories/unreviewed/2022/05/GHSA-r9xf-mwcp-f4x8/GHSA-r9xf-mwcp-f4x8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -59,9 +57,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc7c-qrr9-4694/GHSA-rc7c-qrr9-4694.json b/advisories/unreviewed/2022/05/GHSA-rc7c-qrr9-4694/GHSA-rc7c-qrr9-4694.json index 0385ddd6462..470af245831 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc7c-qrr9-4694/GHSA-rc7c-qrr9-4694.json +++ b/advisories/unreviewed/2022/05/GHSA-rc7c-qrr9-4694/GHSA-rc7c-qrr9-4694.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcg9-mh74-f858/GHSA-rcg9-mh74-f858.json b/advisories/unreviewed/2022/05/GHSA-rcg9-mh74-f858/GHSA-rcg9-mh74-f858.json index 29d80e09abd..3b45e3ab78d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcg9-mh74-f858/GHSA-rcg9-mh74-f858.json +++ b/advisories/unreviewed/2022/05/GHSA-rcg9-mh74-f858/GHSA-rcg9-mh74-f858.json @@ -7,12 +7,8 @@ "CVE-2020-7143" ], "details": "A faultdevparasset expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcq3-vgfc-jm9v/GHSA-rcq3-vgfc-jm9v.json b/advisories/unreviewed/2022/05/GHSA-rcq3-vgfc-jm9v/GHSA-rcq3-vgfc-jm9v.json index 4c6a34f8855..b791cf82832 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcq3-vgfc-jm9v/GHSA-rcq3-vgfc-jm9v.json +++ b/advisories/unreviewed/2022/05/GHSA-rcq3-vgfc-jm9v/GHSA-rcq3-vgfc-jm9v.json @@ -7,12 +7,8 @@ "CVE-2020-15680" ], "details": "If a valid external protocol handler was referenced in an image tag, the resulting broken image size could be distinguished from a broken image size of a non-existent protocol handler. This allowed an attacker to successfully probe whether an external protocol handler was registered. This vulnerability affects Firefox < 82.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf7q-m4h8-9j2r/GHSA-rf7q-m4h8-9j2r.json b/advisories/unreviewed/2022/05/GHSA-rf7q-m4h8-9j2r/GHSA-rf7q-m4h8-9j2r.json index e1482040022..0b59e49159e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf7q-m4h8-9j2r/GHSA-rf7q-m4h8-9j2r.json +++ b/advisories/unreviewed/2022/05/GHSA-rf7q-m4h8-9j2r/GHSA-rf7q-m4h8-9j2r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rfxf-4r4p-5x86/GHSA-rfxf-4r4p-5x86.json b/advisories/unreviewed/2022/05/GHSA-rfxf-4r4p-5x86/GHSA-rfxf-4r4p-5x86.json index e6b0d0cb7ac..c661fb0964a 100644 --- a/advisories/unreviewed/2022/05/GHSA-rfxf-4r4p-5x86/GHSA-rfxf-4r4p-5x86.json +++ b/advisories/unreviewed/2022/05/GHSA-rfxf-4r4p-5x86/GHSA-rfxf-4r4p-5x86.json @@ -7,12 +7,8 @@ "CVE-2020-24388" ], "details": "An issue was discovered in the _send_secure_msg() function of yubihsm-shell through 2.0.2. The function does not validate the embedded length field of a message received from the device. This could lead to an oversized memcpy() call that will crash the running process. This could be used by an attacker to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rg47-3mcj-95j9/GHSA-rg47-3mcj-95j9.json b/advisories/unreviewed/2022/05/GHSA-rg47-3mcj-95j9/GHSA-rg47-3mcj-95j9.json index ace4230fcab..448b4776c64 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg47-3mcj-95j9/GHSA-rg47-3mcj-95j9.json +++ b/advisories/unreviewed/2022/05/GHSA-rg47-3mcj-95j9/GHSA-rg47-3mcj-95j9.json @@ -7,12 +7,8 @@ "CVE-2020-7124" ], "details": "A remote unauthorized access vulnerability was discovered in Aruba Airwave Software version(s): Prior to 1.3.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rgcq-mpqc-xvh6/GHSA-rgcq-mpqc-xvh6.json b/advisories/unreviewed/2022/05/GHSA-rgcq-mpqc-xvh6/GHSA-rgcq-mpqc-xvh6.json index afb7013c676..d1cd94740f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgcq-mpqc-xvh6/GHSA-rgcq-mpqc-xvh6.json +++ b/advisories/unreviewed/2022/05/GHSA-rgcq-mpqc-xvh6/GHSA-rgcq-mpqc-xvh6.json @@ -7,12 +7,8 @@ "CVE-2020-3993" ], "details": "VMware NSX-T (3.x before 3.0.2, 2.5.x before 2.5.2.2.0) contains a security vulnerability that exists in the way it allows a KVM host to download and install packages from NSX manager. A malicious actor with MITM positioning may be able to exploit this issue to compromise the transport node.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjrm-vx9g-7gr2/GHSA-rjrm-vx9g-7gr2.json b/advisories/unreviewed/2022/05/GHSA-rjrm-vx9g-7gr2/GHSA-rjrm-vx9g-7gr2.json index 7c6aad36fac..753723a2af7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjrm-vx9g-7gr2/GHSA-rjrm-vx9g-7gr2.json +++ b/advisories/unreviewed/2022/05/GHSA-rjrm-vx9g-7gr2/GHSA-rjrm-vx9g-7gr2.json @@ -7,12 +7,8 @@ "CVE-2020-13327" ], "details": "An issue has been discovered in GitLab Runner affecting all versions starting from 13.4.0 before 13.4.2, all versions starting from 13.3.0 before 13.3.7, all versions starting from 13.2.0 before 13.2.10. Insecure Runner Configuration in Kubernetes Environments", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rm72-v5wp-j35g/GHSA-rm72-v5wp-j35g.json b/advisories/unreviewed/2022/05/GHSA-rm72-v5wp-j35g/GHSA-rm72-v5wp-j35g.json index 31d561657b8..60ddec253dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-rm72-v5wp-j35g/GHSA-rm72-v5wp-j35g.json +++ b/advisories/unreviewed/2022/05/GHSA-rm72-v5wp-j35g/GHSA-rm72-v5wp-j35g.json @@ -7,12 +7,8 @@ "CVE-2019-8570" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in iOS 12.1.3, iCloud for Windows 7.10, iTunes 12.9.3 for Windows, Safari 12.0.3, tvOS 12.1.2. Processing maliciously crafted web content may disclose sensitive user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rpjr-ffw4-g4vh/GHSA-rpjr-ffw4-g4vh.json b/advisories/unreviewed/2022/05/GHSA-rpjr-ffw4-g4vh/GHSA-rpjr-ffw4-g4vh.json index f821c390da8..8c79f74e7a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpjr-ffw4-g4vh/GHSA-rpjr-ffw4-g4vh.json +++ b/advisories/unreviewed/2022/05/GHSA-rpjr-ffw4-g4vh/GHSA-rpjr-ffw4-g4vh.json @@ -7,12 +7,8 @@ "CVE-2019-16128" ], "details": "Microchip CryptoAuthentication Library CryptoAuthLib prior to 20191122 has a Buffer Overflow (issue 1 of 2).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rq2w-w3vv-5qfg/GHSA-rq2w-w3vv-5qfg.json b/advisories/unreviewed/2022/05/GHSA-rq2w-w3vv-5qfg/GHSA-rq2w-w3vv-5qfg.json index 437f2dd4f58..55767e1537f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq2w-w3vv-5qfg/GHSA-rq2w-w3vv-5qfg.json +++ b/advisories/unreviewed/2022/05/GHSA-rq2w-w3vv-5qfg/GHSA-rq2w-w3vv-5qfg.json @@ -7,12 +7,8 @@ "CVE-2019-8618" ], "details": "A logic issue was addressed with improved restrictions. This issue is fixed in watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. A sandboxed process may be able to circumvent sandbox restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rr32-gqq5-2fqv/GHSA-rr32-gqq5-2fqv.json b/advisories/unreviewed/2022/05/GHSA-rr32-gqq5-2fqv/GHSA-rr32-gqq5-2fqv.json index 699f590ac79..50cc92f76a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr32-gqq5-2fqv/GHSA-rr32-gqq5-2fqv.json +++ b/advisories/unreviewed/2022/05/GHSA-rr32-gqq5-2fqv/GHSA-rr32-gqq5-2fqv.json @@ -7,12 +7,8 @@ "CVE-2020-14856" ], "details": "Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: User Interface). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.10. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Trade Management, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data as well as unauthorized update, insert or delete access to some of Oracle Trade Management accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rrh6-5869-qvv2/GHSA-rrh6-5869-qvv2.json b/advisories/unreviewed/2022/05/GHSA-rrh6-5869-qvv2/GHSA-rrh6-5869-qvv2.json index d1b984ab227..28834a7a293 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrh6-5869-qvv2/GHSA-rrh6-5869-qvv2.json +++ b/advisories/unreviewed/2022/05/GHSA-rrh6-5869-qvv2/GHSA-rrh6-5869-qvv2.json @@ -7,12 +7,8 @@ "CVE-2019-8532" ], "details": "A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in watchOS 5.2, iOS 12.2. A malicious application may be able to access restricted files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rw87-jqj5-q35f/GHSA-rw87-jqj5-q35f.json b/advisories/unreviewed/2022/05/GHSA-rw87-jqj5-q35f/GHSA-rw87-jqj5-q35f.json index efb7cd07310..ae3854512fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-rw87-jqj5-q35f/GHSA-rw87-jqj5-q35f.json +++ b/advisories/unreviewed/2022/05/GHSA-rw87-jqj5-q35f/GHSA-rw87-jqj5-q35f.json @@ -7,12 +7,8 @@ "CVE-2020-3995" ], "details": "In VMware ESXi (6.7 before ESXi670-201908101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x before 15.1.0), Fusion (11.x before 11.1.0), the VMCI host drivers used by VMware hypervisors contain a memory leak vulnerability. A malicious actor with access to a virtual machine may be able to trigger a memory leak issue resulting in memory resource exhaustion on the hypervisor if the attack is sustained for extended periods of time.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v2v6-ggfq-fvjh/GHSA-v2v6-ggfq-fvjh.json b/advisories/unreviewed/2022/05/GHSA-v2v6-ggfq-fvjh/GHSA-v2v6-ggfq-fvjh.json index 85bb753ef89..761529aed9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2v6-ggfq-fvjh/GHSA-v2v6-ggfq-fvjh.json +++ b/advisories/unreviewed/2022/05/GHSA-v2v6-ggfq-fvjh/GHSA-v2v6-ggfq-fvjh.json @@ -7,12 +7,8 @@ "CVE-2020-4755" ], "details": "IBM Spectrum Scale 5.0.0 through 5.0.5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 188595.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v2wh-77x3-4w45/GHSA-v2wh-77x3-4w45.json b/advisories/unreviewed/2022/05/GHSA-v2wh-77x3-4w45/GHSA-v2wh-77x3-4w45.json index 4684571a3e1..1efbea25f3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2wh-77x3-4w45/GHSA-v2wh-77x3-4w45.json +++ b/advisories/unreviewed/2022/05/GHSA-v2wh-77x3-4w45/GHSA-v2wh-77x3-4w45.json @@ -7,12 +7,8 @@ "CVE-2020-18129" ], "details": "A CSRF vulnerability in Eyoucms v1.2.7 allows an attacker to add an admin account via login.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v34h-4f6h-chj2/GHSA-v34h-4f6h-chj2.json b/advisories/unreviewed/2022/05/GHSA-v34h-4f6h-chj2/GHSA-v34h-4f6h-chj2.json index 042cc75256d..5d1b65241eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-v34h-4f6h-chj2/GHSA-v34h-4f6h-chj2.json +++ b/advisories/unreviewed/2022/05/GHSA-v34h-4f6h-chj2/GHSA-v34h-4f6h-chj2.json @@ -7,12 +7,8 @@ "CVE-2019-8547" ], "details": "An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. A remote attacker may be able to leak memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4g7-hcw8-gwmg/GHSA-v4g7-hcw8-gwmg.json b/advisories/unreviewed/2022/05/GHSA-v4g7-hcw8-gwmg/GHSA-v4g7-hcw8-gwmg.json index 7975088e673..e290b38510b 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4g7-hcw8-gwmg/GHSA-v4g7-hcw8-gwmg.json +++ b/advisories/unreviewed/2022/05/GHSA-v4g7-hcw8-gwmg/GHSA-v4g7-hcw8-gwmg.json @@ -7,12 +7,8 @@ "CVE-2020-26879" ], "details": "Ruckus vRioT through 1.5.1.0.21 has an API backdoor that is hardcoded into validate_token.py. An unauthenticated attacker can interact with the service API by using a backdoor value as the Authorization header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v5g8-mmh3-rp62/GHSA-v5g8-mmh3-rp62.json b/advisories/unreviewed/2022/05/GHSA-v5g8-mmh3-rp62/GHSA-v5g8-mmh3-rp62.json index ff9f5d5aa34..a747b91fbf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v5g8-mmh3-rp62/GHSA-v5g8-mmh3-rp62.json +++ b/advisories/unreviewed/2022/05/GHSA-v5g8-mmh3-rp62/GHSA-v5g8-mmh3-rp62.json @@ -7,12 +7,8 @@ "CVE-2020-3982" ], "details": "VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a time-of-check time-of-use issue in ACPI device. A malicious actor with administrative access to a virtual machine may be able to exploit this vulnerability to crash the virtual machine's vmx process or corrupt hypervisor's memory heap.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v897-68g7-4mw4/GHSA-v897-68g7-4mw4.json b/advisories/unreviewed/2022/05/GHSA-v897-68g7-4mw4/GHSA-v897-68g7-4mw4.json index dcc245e6141..8c56bb0ba47 100644 --- a/advisories/unreviewed/2022/05/GHSA-v897-68g7-4mw4/GHSA-v897-68g7-4mw4.json +++ b/advisories/unreviewed/2022/05/GHSA-v897-68g7-4mw4/GHSA-v897-68g7-4mw4.json @@ -7,12 +7,8 @@ "CVE-2020-5977" ], "details": "NVIDIA GeForce Experience, all versions prior to 3.20.5.70, contains a vulnerability in NVIDIA Web Helper NodeJS Web Server in which an uncontrolled search path is used to load a node module, which may lead to code execution, denial of service, escalation of privileges, and information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9qj-fjh8-c3g9/GHSA-v9qj-fjh8-c3g9.json b/advisories/unreviewed/2022/05/GHSA-v9qj-fjh8-c3g9/GHSA-v9qj-fjh8-c3g9.json index c881dcdee22..4be648cccd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9qj-fjh8-c3g9/GHSA-v9qj-fjh8-c3g9.json +++ b/advisories/unreviewed/2022/05/GHSA-v9qj-fjh8-c3g9/GHSA-v9qj-fjh8-c3g9.json @@ -7,12 +7,8 @@ "CVE-2020-7147" ], "details": "A deployselectbootrom expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9v4-83gx-vg77/GHSA-v9v4-83gx-vg77.json b/advisories/unreviewed/2022/05/GHSA-v9v4-83gx-vg77/GHSA-v9v4-83gx-vg77.json index 5b7499879e0..91eb4d4eb1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9v4-83gx-vg77/GHSA-v9v4-83gx-vg77.json +++ b/advisories/unreviewed/2022/05/GHSA-v9v4-83gx-vg77/GHSA-v9v4-83gx-vg77.json @@ -7,12 +7,8 @@ "CVE-2020-14780" ], "details": "Vulnerability in the BI Publisher product of Oracle Fusion Middleware (component: BI Publisher Security). Supported versions that are affected are 5.5.0.0.0, 11.1.1.9.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise BI Publisher. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all BI Publisher accessible data as well as unauthorized update, insert or delete access to some of BI Publisher accessible data. CVSS 3.1 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vcrq-gh6q-6p2f/GHSA-vcrq-gh6q-6p2f.json b/advisories/unreviewed/2022/05/GHSA-vcrq-gh6q-6p2f/GHSA-vcrq-gh6q-6p2f.json index 9cc209f6b7c..e1da43f74b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcrq-gh6q-6p2f/GHSA-vcrq-gh6q-6p2f.json +++ b/advisories/unreviewed/2022/05/GHSA-vcrq-gh6q-6p2f/GHSA-vcrq-gh6q-6p2f.json @@ -7,12 +7,8 @@ "CVE-2018-8062" ], "details": "A cross-site scripting (XSS) vulnerability on Comtrend AR-5387un devices with A731-410JAZ-C04_R02.A2pD035g.d23i firmware allows remote attackers to inject arbitrary web script or HTML via the Service Description parameter while creating a WAN service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vcv3-mq2x-f2pv/GHSA-vcv3-mq2x-f2pv.json b/advisories/unreviewed/2022/05/GHSA-vcv3-mq2x-f2pv/GHSA-vcv3-mq2x-f2pv.json index 942f01f4559..3ef4a2117f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcv3-mq2x-f2pv/GHSA-vcv3-mq2x-f2pv.json +++ b/advisories/unreviewed/2022/05/GHSA-vcv3-mq2x-f2pv/GHSA-vcv3-mq2x-f2pv.json @@ -7,12 +7,8 @@ "CVE-2018-4390" ], "details": "An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El Capitan, watchOS 4.3, iOS 12.1. Processing a maliciously crafted text message may lead to UI spoofing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vf5c-prqq-g9f7/GHSA-vf5c-prqq-g9f7.json b/advisories/unreviewed/2022/05/GHSA-vf5c-prqq-g9f7/GHSA-vf5c-prqq-g9f7.json index 3988f2827d6..8d1dac0fb34 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf5c-prqq-g9f7/GHSA-vf5c-prqq-g9f7.json +++ b/advisories/unreviewed/2022/05/GHSA-vf5c-prqq-g9f7/GHSA-vf5c-prqq-g9f7.json @@ -7,12 +7,8 @@ "CVE-2020-27615" ], "details": "The Loginizer plugin before 1.6.4 for WordPress allows SQL injection (with resultant XSS), related to loginizer_login_failed and lz_valid_ip.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vfp2-qcr6-2pj6/GHSA-vfp2-qcr6-2pj6.json b/advisories/unreviewed/2022/05/GHSA-vfp2-qcr6-2pj6/GHSA-vfp2-qcr6-2pj6.json index 685de552a87..3bf809121f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfp2-qcr6-2pj6/GHSA-vfp2-qcr6-2pj6.json +++ b/advisories/unreviewed/2022/05/GHSA-vfp2-qcr6-2pj6/GHSA-vfp2-qcr6-2pj6.json @@ -7,12 +7,8 @@ "CVE-2020-27642" ], "details": "A cross-site scripting (XSS) vulnerability exists in the 'merge account' functionality in admins.js in BigBlueButton Greenlight 2.7.6.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vj9v-mpvg-69mv/GHSA-vj9v-mpvg-69mv.json b/advisories/unreviewed/2022/05/GHSA-vj9v-mpvg-69mv/GHSA-vj9v-mpvg-69mv.json index a66813885a4..c36ca85d472 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj9v-mpvg-69mv/GHSA-vj9v-mpvg-69mv.json +++ b/advisories/unreviewed/2022/05/GHSA-vj9v-mpvg-69mv/GHSA-vj9v-mpvg-69mv.json @@ -7,12 +7,8 @@ "CVE-2020-14885" ], "details": "Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is Prior to 6.1.16. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM VirtualBox, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 6.0 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vjxh-mfpv-ffx4/GHSA-vjxh-mfpv-ffx4.json b/advisories/unreviewed/2022/05/GHSA-vjxh-mfpv-ffx4/GHSA-vjxh-mfpv-ffx4.json index 46c6e5afe5f..2eb3b2fd120 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjxh-mfpv-ffx4/GHSA-vjxh-mfpv-ffx4.json +++ b/advisories/unreviewed/2022/05/GHSA-vjxh-mfpv-ffx4/GHSA-vjxh-mfpv-ffx4.json @@ -7,12 +7,8 @@ "CVE-2020-9787" ], "details": "A logic issue was addressed with improved restrictions. This issue is fixed in iOS 13.4 and iPadOS 13.4, macOS Catalina 10.15.4, tvOS 13.4, watchOS 6.2. Some websites may not have appeared in Safari Preferences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vp26-5q34-v755/GHSA-vp26-5q34-v755.json b/advisories/unreviewed/2022/05/GHSA-vp26-5q34-v755/GHSA-vp26-5q34-v755.json index 9b08763b972..42f250d4dba 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp26-5q34-v755/GHSA-vp26-5q34-v755.json +++ b/advisories/unreviewed/2022/05/GHSA-vp26-5q34-v755/GHSA-vp26-5q34-v755.json @@ -7,12 +7,8 @@ "CVE-2019-8525" ], "details": "A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, watchOS 5.2, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra, iOS 12.2. An application may be able to execute arbitrary code with kernel privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vpgx-fr2r-r4w2/GHSA-vpgx-fr2r-r4w2.json b/advisories/unreviewed/2022/05/GHSA-vpgx-fr2r-r4w2/GHSA-vpgx-fr2r-r4w2.json index 62537cd5abc..313932ebf23 100644 --- a/advisories/unreviewed/2022/05/GHSA-vpgx-fr2r-r4w2/GHSA-vpgx-fr2r-r4w2.json +++ b/advisories/unreviewed/2022/05/GHSA-vpgx-fr2r-r4w2/GHSA-vpgx-fr2r-r4w2.json @@ -7,12 +7,8 @@ "CVE-2020-14894" ], "details": "Vulnerability in the Oracle Banking Corporate Lending product of Oracle Financial Services Applications (component: Core). Supported versions that are affected are 12.3.0 and 14.0.0-14.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Banking Corporate Lending. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Banking Corporate Lending accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqfh-cg72-xmrw/GHSA-vqfh-cg72-xmrw.json b/advisories/unreviewed/2022/05/GHSA-vqfh-cg72-xmrw/GHSA-vqfh-cg72-xmrw.json index 593245af6e4..581d8b6bdf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqfh-cg72-xmrw/GHSA-vqfh-cg72-xmrw.json +++ b/advisories/unreviewed/2022/05/GHSA-vqfh-cg72-xmrw/GHSA-vqfh-cg72-xmrw.json @@ -7,12 +7,8 @@ "CVE-2019-14717" ], "details": "Verifone Verix OS on VerixV Pinpad Payment Terminals with QT000530 have a Buffer Overflow via the Run system call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrm6-9j6g-w54w/GHSA-vrm6-9j6g-w54w.json b/advisories/unreviewed/2022/05/GHSA-vrm6-9j6g-w54w/GHSA-vrm6-9j6g-w54w.json index 399cfe917a6..3d886f50273 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrm6-9j6g-w54w/GHSA-vrm6-9j6g-w54w.json +++ b/advisories/unreviewed/2022/05/GHSA-vrm6-9j6g-w54w/GHSA-vrm6-9j6g-w54w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vv5g-6772-3c6r/GHSA-vv5g-6772-3c6r.json b/advisories/unreviewed/2022/05/GHSA-vv5g-6772-3c6r/GHSA-vv5g-6772-3c6r.json index 6bb1a0aea06..0f7c9319bc3 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv5g-6772-3c6r/GHSA-vv5g-6772-3c6r.json +++ b/advisories/unreviewed/2022/05/GHSA-vv5g-6772-3c6r/GHSA-vv5g-6772-3c6r.json @@ -7,12 +7,8 @@ "CVE-2020-7364" ], "details": "User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of UCWeb's UC Browser allows an attacker to obfuscate the true source of data as presented in the browser. This issue affects UCWeb's UC Browser version 13.0.8 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vw99-pf8w-g3cw/GHSA-vw99-pf8w-g3cw.json b/advisories/unreviewed/2022/05/GHSA-vw99-pf8w-g3cw/GHSA-vw99-pf8w-g3cw.json index cc10c6844fe..4827be15a38 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw99-pf8w-g3cw/GHSA-vw99-pf8w-g3cw.json +++ b/advisories/unreviewed/2022/05/GHSA-vw99-pf8w-g3cw/GHSA-vw99-pf8w-g3cw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w32j-frr3-h6w4/GHSA-w32j-frr3-h6w4.json b/advisories/unreviewed/2022/05/GHSA-w32j-frr3-h6w4/GHSA-w32j-frr3-h6w4.json index bb7e177412e..a46f148826b 100644 --- a/advisories/unreviewed/2022/05/GHSA-w32j-frr3-h6w4/GHSA-w32j-frr3-h6w4.json +++ b/advisories/unreviewed/2022/05/GHSA-w32j-frr3-h6w4/GHSA-w32j-frr3-h6w4.json @@ -7,12 +7,8 @@ "CVE-2020-14855" ], "details": "Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Administration). The supported version that is affected is 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Universal Work Queue. Successful attacks of this vulnerability can result in takeover of Oracle Universal Work Queue. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w5hp-3474-hq4r/GHSA-w5hp-3474-hq4r.json b/advisories/unreviewed/2022/05/GHSA-w5hp-3474-hq4r/GHSA-w5hp-3474-hq4r.json index 458286384b1..63a6385403f 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5hp-3474-hq4r/GHSA-w5hp-3474-hq4r.json +++ b/advisories/unreviewed/2022/05/GHSA-w5hp-3474-hq4r/GHSA-w5hp-3474-hq4r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w65j-fpvf-v9rw/GHSA-w65j-fpvf-v9rw.json b/advisories/unreviewed/2022/05/GHSA-w65j-fpvf-v9rw/GHSA-w65j-fpvf-v9rw.json index 4c2d892473a..8907d5333c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-w65j-fpvf-v9rw/GHSA-w65j-fpvf-v9rw.json +++ b/advisories/unreviewed/2022/05/GHSA-w65j-fpvf-v9rw/GHSA-w65j-fpvf-v9rw.json @@ -7,12 +7,8 @@ "CVE-2020-15684" ], "details": "Mozilla developers reported memory safety bugs present in Firefox 81. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 82.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w675-658r-mpv3/GHSA-w675-658r-mpv3.json b/advisories/unreviewed/2022/05/GHSA-w675-658r-mpv3/GHSA-w675-658r-mpv3.json index 48dcdf9f5d9..f2616365d3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w675-658r-mpv3/GHSA-w675-658r-mpv3.json +++ b/advisories/unreviewed/2022/05/GHSA-w675-658r-mpv3/GHSA-w675-658r-mpv3.json @@ -7,12 +7,8 @@ "CVE-2020-7371" ], "details": "User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of the Yandex Browser allows an attacker to obfuscate the true source of data as presented in the browser. This issue affects the RITS Browser version 3.3.9 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7hv-422j-p88g/GHSA-w7hv-422j-p88g.json b/advisories/unreviewed/2022/05/GHSA-w7hv-422j-p88g/GHSA-w7hv-422j-p88g.json index bd6ade869bd..9cf7ae959ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7hv-422j-p88g/GHSA-w7hv-422j-p88g.json +++ b/advisories/unreviewed/2022/05/GHSA-w7hv-422j-p88g/GHSA-w7hv-422j-p88g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w86c-g85x-gccf/GHSA-w86c-g85x-gccf.json b/advisories/unreviewed/2022/05/GHSA-w86c-g85x-gccf/GHSA-w86c-g85x-gccf.json index b0a3ad6edab..d0d845a4bc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-w86c-g85x-gccf/GHSA-w86c-g85x-gccf.json +++ b/advisories/unreviewed/2022/05/GHSA-w86c-g85x-gccf/GHSA-w86c-g85x-gccf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8fr-76f7-j248/GHSA-w8fr-76f7-j248.json b/advisories/unreviewed/2022/05/GHSA-w8fr-76f7-j248/GHSA-w8fr-76f7-j248.json index 596b6e43dec..99532b98654 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8fr-76f7-j248/GHSA-w8fr-76f7-j248.json +++ b/advisories/unreviewed/2022/05/GHSA-w8fr-76f7-j248/GHSA-w8fr-76f7-j248.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8jp-qw34-jrrq/GHSA-w8jp-qw34-jrrq.json b/advisories/unreviewed/2022/05/GHSA-w8jp-qw34-jrrq/GHSA-w8jp-qw34-jrrq.json index f54cfae22e3..09b205b1ad8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8jp-qw34-jrrq/GHSA-w8jp-qw34-jrrq.json +++ b/advisories/unreviewed/2022/05/GHSA-w8jp-qw34-jrrq/GHSA-w8jp-qw34-jrrq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8x5-8g2f-rr6j/GHSA-w8x5-8g2f-rr6j.json b/advisories/unreviewed/2022/05/GHSA-w8x5-8g2f-rr6j/GHSA-w8x5-8g2f-rr6j.json index 417646d72cf..305695f82fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8x5-8g2f-rr6j/GHSA-w8x5-8g2f-rr6j.json +++ b/advisories/unreviewed/2022/05/GHSA-w8x5-8g2f-rr6j/GHSA-w8x5-8g2f-rr6j.json @@ -7,12 +7,8 @@ "CVE-2020-14802" ], "details": "Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). Supported versions that are affected are 8.56, 8.57 and 8.58. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise PeopleTools accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w94f-pc5p-284r/GHSA-w94f-pc5p-284r.json b/advisories/unreviewed/2022/05/GHSA-w94f-pc5p-284r/GHSA-w94f-pc5p-284r.json index b54e4a45fec..0ddc8f74fea 100644 --- a/advisories/unreviewed/2022/05/GHSA-w94f-pc5p-284r/GHSA-w94f-pc5p-284r.json +++ b/advisories/unreviewed/2022/05/GHSA-w94f-pc5p-284r/GHSA-w94f-pc5p-284r.json @@ -7,12 +7,8 @@ "CVE-2020-27620" ], "details": "The Cosmos Skin for MediaWiki through 1.35.0 has stored XSS because MediaWiki messages were not being properly escaped. This is related to wfMessage and Html::rawElement, as demonstrated by CosmosSocialProfile::getUserGroups.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9mm-59qq-fv4j/GHSA-w9mm-59qq-fv4j.json b/advisories/unreviewed/2022/05/GHSA-w9mm-59qq-fv4j/GHSA-w9mm-59qq-fv4j.json index d51bdb2fd92..65da248e84d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9mm-59qq-fv4j/GHSA-w9mm-59qq-fv4j.json +++ b/advisories/unreviewed/2022/05/GHSA-w9mm-59qq-fv4j/GHSA-w9mm-59qq-fv4j.json @@ -7,12 +7,8 @@ "CVE-2020-4564" ], "details": "IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 and IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 183933.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wc8w-gx27-xp92/GHSA-wc8w-gx27-xp92.json b/advisories/unreviewed/2022/05/GHSA-wc8w-gx27-xp92/GHSA-wc8w-gx27-xp92.json index 0f0cc732738..ace5035e2da 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc8w-gx27-xp92/GHSA-wc8w-gx27-xp92.json +++ b/advisories/unreviewed/2022/05/GHSA-wc8w-gx27-xp92/GHSA-wc8w-gx27-xp92.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcw3-9jcf-m8jc/GHSA-wcw3-9jcf-m8jc.json b/advisories/unreviewed/2022/05/GHSA-wcw3-9jcf-m8jc/GHSA-wcw3-9jcf-m8jc.json index cbd87ffff11..dd7af5a2965 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcw3-9jcf-m8jc/GHSA-wcw3-9jcf-m8jc.json +++ b/advisories/unreviewed/2022/05/GHSA-wcw3-9jcf-m8jc/GHSA-wcw3-9jcf-m8jc.json @@ -7,12 +7,8 @@ "CVE-2020-7164" ], "details": "A operationselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wf6m-95w9-cc47/GHSA-wf6m-95w9-cc47.json b/advisories/unreviewed/2022/05/GHSA-wf6m-95w9-cc47/GHSA-wf6m-95w9-cc47.json index 82535cef446..a1e36a27e78 100644 --- a/advisories/unreviewed/2022/05/GHSA-wf6m-95w9-cc47/GHSA-wf6m-95w9-cc47.json +++ b/advisories/unreviewed/2022/05/GHSA-wf6m-95w9-cc47/GHSA-wf6m-95w9-cc47.json @@ -7,12 +7,8 @@ "CVE-2020-3577" ], "details": "A vulnerability in the ingress packet processing path of Cisco Firepower Threat Defense (FTD) Software for interfaces that are configured either as Inline Pair or in Passive mode could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient validation when Ethernet frames are processed. An attacker could exploit this vulnerability by sending malicious Ethernet frames through an affected device. A successful exploit could allow the attacker do either of the following: Fill the /ngfw partition on the device: A full /ngfw partition could result in administrators being unable to log in to the device (including logging in through the console port) or the device being unable to boot up correctly. Note: Manual intervention is required to recover from this situation. Customers are advised to contact the Cisco Technical Assistance Center (TAC) to help recover a device in this condition. Cause a process crash: The process crash would cause the device to reload. No manual intervention is necessary to recover the device after the reload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wfcm-rc5q-rwm2/GHSA-wfcm-rc5q-rwm2.json b/advisories/unreviewed/2022/05/GHSA-wfcm-rc5q-rwm2/GHSA-wfcm-rc5q-rwm2.json index 69b6256b6cc..896c27f83a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfcm-rc5q-rwm2/GHSA-wfcm-rc5q-rwm2.json +++ b/advisories/unreviewed/2022/05/GHSA-wfcm-rc5q-rwm2/GHSA-wfcm-rc5q-rwm2.json @@ -7,12 +7,8 @@ "CVE-2020-4491" ], "details": "IBM Spectrum Scale V4.2.0.0 through V4.2.3.22 and V5.0.0.0 through V5.0.5 could allow a local attacker to cause a denial of service by sending a large number of RPC requests to the mmfsd daemon which would cause the service to crash. IBM X-Force ID: 181991.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wfhj-qgmv-9hcj/GHSA-wfhj-qgmv-9hcj.json b/advisories/unreviewed/2022/05/GHSA-wfhj-qgmv-9hcj/GHSA-wfhj-qgmv-9hcj.json index a76192d680a..d2693c3cb1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfhj-qgmv-9hcj/GHSA-wfhj-qgmv-9hcj.json +++ b/advisories/unreviewed/2022/05/GHSA-wfhj-qgmv-9hcj/GHSA-wfhj-qgmv-9hcj.json @@ -7,12 +7,8 @@ "CVE-2020-9417" ], "details": "The Transaction Insight reporting component of TIBCO Software Inc.'s TIBCO Foresight Archive and Retrieval System, TIBCO Foresight Archive and Retrieval System Healthcare Edition, TIBCO Foresight Operational Monitor, TIBCO Foresight Operational Monitor Healthcare Edition, TIBCO Foresight Transaction Insight, and TIBCO Foresight Transaction Insight Healthcare Edition contains a vulnerability that theoretically allows an authenticated attacker to perform SQL injection. Affected releases are TIBCO Software Inc.'s TIBCO Foresight Archive and Retrieval System: versions 5.1.0 and below, version 5.2.0, TIBCO Foresight Archive and Retrieval System Healthcare Edition: versions 5.1.0 and below, version 5.2.0, TIBCO Foresight Operational Monitor: versions 5.1.0 and below, version 5.2.0, TIBCO Foresight Operational Monitor Healthcare Edition: versions 5.1.0 and below, version 5.2.0, TIBCO Foresight Transaction Insight: versions 5.1.0 and below, version 5.2.0, and TIBCO Foresight Transaction Insight Healthcare Edition: versions 5.1.0 and below, version 5.2.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wjh7-w5fx-rq52/GHSA-wjh7-w5fx-rq52.json b/advisories/unreviewed/2022/05/GHSA-wjh7-w5fx-rq52/GHSA-wjh7-w5fx-rq52.json index a6abf4f57f2..2875932cd6b 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjh7-w5fx-rq52/GHSA-wjh7-w5fx-rq52.json +++ b/advisories/unreviewed/2022/05/GHSA-wjh7-w5fx-rq52/GHSA-wjh7-w5fx-rq52.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wr7j-57xj-65gq/GHSA-wr7j-57xj-65gq.json b/advisories/unreviewed/2022/05/GHSA-wr7j-57xj-65gq/GHSA-wr7j-57xj-65gq.json index 1da3e6955ef..5ebf672d131 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr7j-57xj-65gq/GHSA-wr7j-57xj-65gq.json +++ b/advisories/unreviewed/2022/05/GHSA-wr7j-57xj-65gq/GHSA-wr7j-57xj-65gq.json @@ -7,12 +7,8 @@ "CVE-2020-24649" ], "details": "A remote bytemessageresource transformentity\" input validation code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wrr2-2733-26wf/GHSA-wrr2-2733-26wf.json b/advisories/unreviewed/2022/05/GHSA-wrr2-2733-26wf/GHSA-wrr2-2733-26wf.json index f1e492b259e..64966195594 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrr2-2733-26wf/GHSA-wrr2-2733-26wf.json +++ b/advisories/unreviewed/2022/05/GHSA-wrr2-2733-26wf/GHSA-wrr2-2733-26wf.json @@ -7,12 +7,8 @@ "CVE-2020-27605" ], "details": "BigBlueButton through 2.2.28 uses Ghostscript for processing of uploaded EPS documents, and consequently may be subject to attacks related to a \"schwache Sandbox.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wvm7-3w38-f5p6/GHSA-wvm7-3w38-f5p6.json b/advisories/unreviewed/2022/05/GHSA-wvm7-3w38-f5p6/GHSA-wvm7-3w38-f5p6.json index 7e1d8a8ba29..916de43dc0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvm7-3w38-f5p6/GHSA-wvm7-3w38-f5p6.json +++ b/advisories/unreviewed/2022/05/GHSA-wvm7-3w38-f5p6/GHSA-wvm7-3w38-f5p6.json @@ -7,12 +7,8 @@ "CVE-2020-14823" ], "details": "Vulnerability in the Oracle CRM Technical Foundation product of Oracle E-Business Suite (component: Preferences). Supported versions that are affected are 12.2.3 - 12.2.10. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle CRM Technical Foundation. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle CRM Technical Foundation accessible data as well as unauthorized access to critical data or complete access to all Oracle CRM Technical Foundation accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ww6f-fx4x-qw8g/GHSA-ww6f-fx4x-qw8g.json b/advisories/unreviewed/2022/05/GHSA-ww6f-fx4x-qw8g/GHSA-ww6f-fx4x-qw8g.json index 0ce54962709..58b2c8f8a81 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww6f-fx4x-qw8g/GHSA-ww6f-fx4x-qw8g.json +++ b/advisories/unreviewed/2022/05/GHSA-ww6f-fx4x-qw8g/GHSA-ww6f-fx4x-qw8g.json @@ -7,12 +7,8 @@ "CVE-2018-21269" ], "details": "checkpath in OpenRC through 0.42.1 might allow local users to take ownership of arbitrary files because a non-terminal path component can be a symlink.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wwvf-m6j5-65jw/GHSA-wwvf-m6j5-65jw.json b/advisories/unreviewed/2022/05/GHSA-wwvf-m6j5-65jw/GHSA-wwvf-m6j5-65jw.json index da970f7a5c1..af098047838 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwvf-m6j5-65jw/GHSA-wwvf-m6j5-65jw.json +++ b/advisories/unreviewed/2022/05/GHSA-wwvf-m6j5-65jw/GHSA-wwvf-m6j5-65jw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x27f-rvc2-3rfq/GHSA-x27f-rvc2-3rfq.json b/advisories/unreviewed/2022/05/GHSA-x27f-rvc2-3rfq/GHSA-x27f-rvc2-3rfq.json index a6fc7532734..c5ac3620e03 100644 --- a/advisories/unreviewed/2022/05/GHSA-x27f-rvc2-3rfq/GHSA-x27f-rvc2-3rfq.json +++ b/advisories/unreviewed/2022/05/GHSA-x27f-rvc2-3rfq/GHSA-x27f-rvc2-3rfq.json @@ -7,12 +7,8 @@ "CVE-2020-24411" ], "details": "Adobe Illustrator version 24.2 (and earlier) is affected by an out-of-bounds write vulnerability when handling crafted PDF files. This could result in a write past the end of an allocated memory structure, potentially resulting in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2w8-8q96-qhgr/GHSA-x2w8-8q96-qhgr.json b/advisories/unreviewed/2022/05/GHSA-x2w8-8q96-qhgr/GHSA-x2w8-8q96-qhgr.json index 6ab43a6cb11..45b6df0f1cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2w8-8q96-qhgr/GHSA-x2w8-8q96-qhgr.json +++ b/advisories/unreviewed/2022/05/GHSA-x2w8-8q96-qhgr/GHSA-x2w8-8q96-qhgr.json @@ -7,12 +7,8 @@ "CVE-2020-24652" ], "details": "A addvsiinterfaceinfo expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3c7-fcqq-mc4j/GHSA-x3c7-fcqq-mc4j.json b/advisories/unreviewed/2022/05/GHSA-x3c7-fcqq-mc4j/GHSA-x3c7-fcqq-mc4j.json index 51d5f8a86e6..b33a530159b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3c7-fcqq-mc4j/GHSA-x3c7-fcqq-mc4j.json +++ b/advisories/unreviewed/2022/05/GHSA-x3c7-fcqq-mc4j/GHSA-x3c7-fcqq-mc4j.json @@ -7,12 +7,8 @@ "CVE-2020-14814" ], "details": "Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affected are 8.0.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x4f7-hgxg-q85h/GHSA-x4f7-hgxg-q85h.json b/advisories/unreviewed/2022/05/GHSA-x4f7-hgxg-q85h/GHSA-x4f7-hgxg-q85h.json index 16257da857f..b622a478e54 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4f7-hgxg-q85h/GHSA-x4f7-hgxg-q85h.json +++ b/advisories/unreviewed/2022/05/GHSA-x4f7-hgxg-q85h/GHSA-x4f7-hgxg-q85h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4pm-xhrh-gm25/GHSA-x4pm-xhrh-gm25.json b/advisories/unreviewed/2022/05/GHSA-x4pm-xhrh-gm25/GHSA-x4pm-xhrh-gm25.json index 61c21863bc1..33760460520 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4pm-xhrh-gm25/GHSA-x4pm-xhrh-gm25.json +++ b/advisories/unreviewed/2022/05/GHSA-x4pm-xhrh-gm25/GHSA-x4pm-xhrh-gm25.json @@ -7,12 +7,8 @@ "CVE-2020-6370" ], "details": "SAP NetWeaver Design Time Repository (DTR), versions - 7.11, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x72c-fv45-75v9/GHSA-x72c-fv45-75v9.json b/advisories/unreviewed/2022/05/GHSA-x72c-fv45-75v9/GHSA-x72c-fv45-75v9.json index 39f50dab46c..d98c64e9d6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x72c-fv45-75v9/GHSA-x72c-fv45-75v9.json +++ b/advisories/unreviewed/2022/05/GHSA-x72c-fv45-75v9/GHSA-x72c-fv45-75v9.json @@ -7,12 +7,8 @@ "CVE-2020-3563" ], "details": "A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to inefficient memory management. An attacker could exploit this vulnerability by sending a large number of TCP packets to a specific port on an affected device. A successful exploit could allow the attacker to exhaust system memory, which could cause the device to reload unexpectedly. No manual intervention is needed to recover the device after it has reloaded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8rg-mpg5-78wg/GHSA-x8rg-mpg5-78wg.json b/advisories/unreviewed/2022/05/GHSA-x8rg-mpg5-78wg/GHSA-x8rg-mpg5-78wg.json index aefdd0bc634..f21be7dd280 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8rg-mpg5-78wg/GHSA-x8rg-mpg5-78wg.json +++ b/advisories/unreviewed/2022/05/GHSA-x8rg-mpg5-78wg/GHSA-x8rg-mpg5-78wg.json @@ -7,12 +7,8 @@ "CVE-2020-7163" ], "details": "A navigationto expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x947-rhq3-r3qq/GHSA-x947-rhq3-r3qq.json b/advisories/unreviewed/2022/05/GHSA-x947-rhq3-r3qq/GHSA-x947-rhq3-r3qq.json index 43679a7bd94..2ebd20570da 100644 --- a/advisories/unreviewed/2022/05/GHSA-x947-rhq3-r3qq/GHSA-x947-rhq3-r3qq.json +++ b/advisories/unreviewed/2022/05/GHSA-x947-rhq3-r3qq/GHSA-x947-rhq3-r3qq.json @@ -7,12 +7,8 @@ "CVE-2019-8569" ], "details": "A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.5, Security Update 2019-003 High Sierra, Security Update 2019-003 Sierra, macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra. An application may be able to execute arbitrary code with system privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x973-w3pf-v4m8/GHSA-x973-w3pf-v4m8.json b/advisories/unreviewed/2022/05/GHSA-x973-w3pf-v4m8/GHSA-x973-w3pf-v4m8.json index da93992ffb9..d10cbe41eff 100644 --- a/advisories/unreviewed/2022/05/GHSA-x973-w3pf-v4m8/GHSA-x973-w3pf-v4m8.json +++ b/advisories/unreviewed/2022/05/GHSA-x973-w3pf-v4m8/GHSA-x973-w3pf-v4m8.json @@ -7,12 +7,8 @@ "CVE-2020-9771" ], "details": "This issue was addressed with a new entitlement. This issue is fixed in macOS Catalina 10.15.4. A user may gain access to protected parts of the file system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xc9p-gjc5-8c5x/GHSA-xc9p-gjc5-8c5x.json b/advisories/unreviewed/2022/05/GHSA-xc9p-gjc5-8c5x/GHSA-xc9p-gjc5-8c5x.json index 4ee062c333f..b763ac1a9dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-xc9p-gjc5-8c5x/GHSA-xc9p-gjc5-8c5x.json +++ b/advisories/unreviewed/2022/05/GHSA-xc9p-gjc5-8c5x/GHSA-xc9p-gjc5-8c5x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xcj5-29rv-3vfh/GHSA-xcj5-29rv-3vfh.json b/advisories/unreviewed/2022/05/GHSA-xcj5-29rv-3vfh/GHSA-xcj5-29rv-3vfh.json index 767e8931b1b..2b0dc2bd0b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-xcj5-29rv-3vfh/GHSA-xcj5-29rv-3vfh.json +++ b/advisories/unreviewed/2022/05/GHSA-xcj5-29rv-3vfh/GHSA-xcj5-29rv-3vfh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg32-f3mq-6rp3/GHSA-xg32-f3mq-6rp3.json b/advisories/unreviewed/2022/05/GHSA-xg32-f3mq-6rp3/GHSA-xg32-f3mq-6rp3.json index 18c611318b6..5e1f6366605 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg32-f3mq-6rp3/GHSA-xg32-f3mq-6rp3.json +++ b/advisories/unreviewed/2022/05/GHSA-xg32-f3mq-6rp3/GHSA-xg32-f3mq-6rp3.json @@ -7,12 +7,8 @@ "CVE-2019-16127" ], "details": "Atmel Advanced Software Framework (ASF) 4 has an Integer Overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xgmm-v76r-g7gj/GHSA-xgmm-v76r-g7gj.json b/advisories/unreviewed/2022/05/GHSA-xgmm-v76r-g7gj/GHSA-xgmm-v76r-g7gj.json index f059742918a..b31e6ed0e21 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgmm-v76r-g7gj/GHSA-xgmm-v76r-g7gj.json +++ b/advisories/unreviewed/2022/05/GHSA-xgmm-v76r-g7gj/GHSA-xgmm-v76r-g7gj.json @@ -7,12 +7,8 @@ "CVE-2020-9112" ], "details": "Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a privilege elevation vulnerability. Due to lack of privilege restrictions on some of the business functions of the device. An attacker could exploit this vulnerability to access the protecting information, resulting in the elevation of the privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj5h-8prx-gpx7/GHSA-xj5h-8prx-gpx7.json b/advisories/unreviewed/2022/05/GHSA-xj5h-8prx-gpx7/GHSA-xj5h-8prx-gpx7.json index c082e05ee0b..9f7a15c0039 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj5h-8prx-gpx7/GHSA-xj5h-8prx-gpx7.json +++ b/advisories/unreviewed/2022/05/GHSA-xj5h-8prx-gpx7/GHSA-xj5h-8prx-gpx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xjcx-2qxv-xf7v/GHSA-xjcx-2qxv-xf7v.json b/advisories/unreviewed/2022/05/GHSA-xjcx-2qxv-xf7v/GHSA-xjcx-2qxv-xf7v.json index b2d0c1c5a6c..c0d73ece763 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjcx-2qxv-xf7v/GHSA-xjcx-2qxv-xf7v.json +++ b/advisories/unreviewed/2022/05/GHSA-xjcx-2qxv-xf7v/GHSA-xjcx-2qxv-xf7v.json @@ -7,12 +7,8 @@ "CVE-2020-7196" ], "details": "The HPE BlueData EPIC Software Platform version 4.0 and HPE Ezmeral Container Platform 5.0 use an insecure method of handling sensitive Kerberos passwords that is susceptible to unauthorized interception and/or retrieval. Specifically, they display the kdc_admin_password in the source file of the url \"/bdswebui/assignusers/\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xmcm-xxvc-j56r/GHSA-xmcm-xxvc-j56r.json b/advisories/unreviewed/2022/05/GHSA-xmcm-xxvc-j56r/GHSA-xmcm-xxvc-j56r.json index 1eddd053304..2ec427ad575 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmcm-xxvc-j56r/GHSA-xmcm-xxvc-j56r.json +++ b/advisories/unreviewed/2022/05/GHSA-xmcm-xxvc-j56r/GHSA-xmcm-xxvc-j56r.json @@ -7,12 +7,8 @@ "CVE-2020-6369" ], "details": "SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrx4-vq84-23w6/GHSA-xrx4-vq84-23w6.json b/advisories/unreviewed/2022/05/GHSA-xrx4-vq84-23w6/GHSA-xrx4-vq84-23w6.json index d2b8c20767b..55a1f18f464 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrx4-vq84-23w6/GHSA-xrx4-vq84-23w6.json +++ b/advisories/unreviewed/2022/05/GHSA-xrx4-vq84-23w6/GHSA-xrx4-vq84-23w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xwcw-m39w-gg87/GHSA-xwcw-m39w-gg87.json b/advisories/unreviewed/2022/05/GHSA-xwcw-m39w-gg87/GHSA-xwcw-m39w-gg87.json index adb5febba8d..96238e3f235 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwcw-m39w-gg87/GHSA-xwcw-m39w-gg87.json +++ b/advisories/unreviewed/2022/05/GHSA-xwcw-m39w-gg87/GHSA-xwcw-m39w-gg87.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-7h9m-cjqh-75c6/GHSA-7h9m-cjqh-75c6.json b/advisories/unreviewed/2022/07/GHSA-7h9m-cjqh-75c6/GHSA-7h9m-cjqh-75c6.json index b61bf69b078..f7625333ec7 100644 --- a/advisories/unreviewed/2022/07/GHSA-7h9m-cjqh-75c6/GHSA-7h9m-cjqh-75c6.json +++ b/advisories/unreviewed/2022/07/GHSA-7h9m-cjqh-75c6/GHSA-7h9m-cjqh-75c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-wfhv-4qh5-c632/GHSA-wfhv-4qh5-c632.json b/advisories/unreviewed/2022/07/GHSA-wfhv-4qh5-c632/GHSA-wfhv-4qh5-c632.json index bc166de82c8..cd2ee4f92fa 100644 --- a/advisories/unreviewed/2022/07/GHSA-wfhv-4qh5-c632/GHSA-wfhv-4qh5-c632.json +++ b/advisories/unreviewed/2022/07/GHSA-wfhv-4qh5-c632/GHSA-wfhv-4qh5-c632.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-2q78-vv73-5vr2/GHSA-2q78-vv73-5vr2.json b/advisories/unreviewed/2022/08/GHSA-2q78-vv73-5vr2/GHSA-2q78-vv73-5vr2.json index 31e08b5e13e..1ff50e71284 100644 --- a/advisories/unreviewed/2022/08/GHSA-2q78-vv73-5vr2/GHSA-2q78-vv73-5vr2.json +++ b/advisories/unreviewed/2022/08/GHSA-2q78-vv73-5vr2/GHSA-2q78-vv73-5vr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-2vvp-3qrq-jvpm/GHSA-2vvp-3qrq-jvpm.json b/advisories/unreviewed/2022/08/GHSA-2vvp-3qrq-jvpm/GHSA-2vvp-3qrq-jvpm.json index 3e43cd72057..0e00cfdcd42 100644 --- a/advisories/unreviewed/2022/08/GHSA-2vvp-3qrq-jvpm/GHSA-2vvp-3qrq-jvpm.json +++ b/advisories/unreviewed/2022/08/GHSA-2vvp-3qrq-jvpm/GHSA-2vvp-3qrq-jvpm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-32pr-wg5j-9rwr/GHSA-32pr-wg5j-9rwr.json b/advisories/unreviewed/2022/08/GHSA-32pr-wg5j-9rwr/GHSA-32pr-wg5j-9rwr.json index 847c26e3d59..dbc34e82583 100644 --- a/advisories/unreviewed/2022/08/GHSA-32pr-wg5j-9rwr/GHSA-32pr-wg5j-9rwr.json +++ b/advisories/unreviewed/2022/08/GHSA-32pr-wg5j-9rwr/GHSA-32pr-wg5j-9rwr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-32qr-rh8p-qfq7/GHSA-32qr-rh8p-qfq7.json b/advisories/unreviewed/2022/08/GHSA-32qr-rh8p-qfq7/GHSA-32qr-rh8p-qfq7.json index 48316fcd168..f0b0b4c14ed 100644 --- a/advisories/unreviewed/2022/08/GHSA-32qr-rh8p-qfq7/GHSA-32qr-rh8p-qfq7.json +++ b/advisories/unreviewed/2022/08/GHSA-32qr-rh8p-qfq7/GHSA-32qr-rh8p-qfq7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-3mv4-6x34-qw3c/GHSA-3mv4-6x34-qw3c.json b/advisories/unreviewed/2022/08/GHSA-3mv4-6x34-qw3c/GHSA-3mv4-6x34-qw3c.json index 0b901e6e3dd..f1e69758e08 100644 --- a/advisories/unreviewed/2022/08/GHSA-3mv4-6x34-qw3c/GHSA-3mv4-6x34-qw3c.json +++ b/advisories/unreviewed/2022/08/GHSA-3mv4-6x34-qw3c/GHSA-3mv4-6x34-qw3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-3q4f-g8fc-j65f/GHSA-3q4f-g8fc-j65f.json b/advisories/unreviewed/2022/08/GHSA-3q4f-g8fc-j65f/GHSA-3q4f-g8fc-j65f.json index cd960775069..aa3f963ae64 100644 --- a/advisories/unreviewed/2022/08/GHSA-3q4f-g8fc-j65f/GHSA-3q4f-g8fc-j65f.json +++ b/advisories/unreviewed/2022/08/GHSA-3q4f-g8fc-j65f/GHSA-3q4f-g8fc-j65f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-4355-8x7v-vfpv/GHSA-4355-8x7v-vfpv.json b/advisories/unreviewed/2022/08/GHSA-4355-8x7v-vfpv/GHSA-4355-8x7v-vfpv.json index 4ff1e658f3d..d7160d240ec 100644 --- a/advisories/unreviewed/2022/08/GHSA-4355-8x7v-vfpv/GHSA-4355-8x7v-vfpv.json +++ b/advisories/unreviewed/2022/08/GHSA-4355-8x7v-vfpv/GHSA-4355-8x7v-vfpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/08/GHSA-4p3f-v89g-m246/GHSA-4p3f-v89g-m246.json b/advisories/unreviewed/2022/08/GHSA-4p3f-v89g-m246/GHSA-4p3f-v89g-m246.json index 9a0195edd1b..cd67c21b241 100644 --- a/advisories/unreviewed/2022/08/GHSA-4p3f-v89g-m246/GHSA-4p3f-v89g-m246.json +++ b/advisories/unreviewed/2022/08/GHSA-4p3f-v89g-m246/GHSA-4p3f-v89g-m246.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-4r6c-7c28-gmfr/GHSA-4r6c-7c28-gmfr.json b/advisories/unreviewed/2022/08/GHSA-4r6c-7c28-gmfr/GHSA-4r6c-7c28-gmfr.json index 1513a775b7b..297f8168fd4 100644 --- a/advisories/unreviewed/2022/08/GHSA-4r6c-7c28-gmfr/GHSA-4r6c-7c28-gmfr.json +++ b/advisories/unreviewed/2022/08/GHSA-4r6c-7c28-gmfr/GHSA-4r6c-7c28-gmfr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-7phj-wp5x-xwr5/GHSA-7phj-wp5x-xwr5.json b/advisories/unreviewed/2022/08/GHSA-7phj-wp5x-xwr5/GHSA-7phj-wp5x-xwr5.json index 96ce33a32f6..5f329a5bff2 100644 --- a/advisories/unreviewed/2022/08/GHSA-7phj-wp5x-xwr5/GHSA-7phj-wp5x-xwr5.json +++ b/advisories/unreviewed/2022/08/GHSA-7phj-wp5x-xwr5/GHSA-7phj-wp5x-xwr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-8m6j-c7jr-pc5f/GHSA-8m6j-c7jr-pc5f.json b/advisories/unreviewed/2022/08/GHSA-8m6j-c7jr-pc5f/GHSA-8m6j-c7jr-pc5f.json index ef9f9cce800..56daca15522 100644 --- a/advisories/unreviewed/2022/08/GHSA-8m6j-c7jr-pc5f/GHSA-8m6j-c7jr-pc5f.json +++ b/advisories/unreviewed/2022/08/GHSA-8m6j-c7jr-pc5f/GHSA-8m6j-c7jr-pc5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-8qv6-fpqj-69wv/GHSA-8qv6-fpqj-69wv.json b/advisories/unreviewed/2022/08/GHSA-8qv6-fpqj-69wv/GHSA-8qv6-fpqj-69wv.json index 97d797d6096..7e5f4e7da75 100644 --- a/advisories/unreviewed/2022/08/GHSA-8qv6-fpqj-69wv/GHSA-8qv6-fpqj-69wv.json +++ b/advisories/unreviewed/2022/08/GHSA-8qv6-fpqj-69wv/GHSA-8qv6-fpqj-69wv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-959j-7rc3-c387/GHSA-959j-7rc3-c387.json b/advisories/unreviewed/2022/08/GHSA-959j-7rc3-c387/GHSA-959j-7rc3-c387.json index 46f8e8a9286..88cbd210021 100644 --- a/advisories/unreviewed/2022/08/GHSA-959j-7rc3-c387/GHSA-959j-7rc3-c387.json +++ b/advisories/unreviewed/2022/08/GHSA-959j-7rc3-c387/GHSA-959j-7rc3-c387.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9682-f2fr-3h46/GHSA-9682-f2fr-3h46.json b/advisories/unreviewed/2022/08/GHSA-9682-f2fr-3h46/GHSA-9682-f2fr-3h46.json index b1edbf3e793..8b65681334c 100644 --- a/advisories/unreviewed/2022/08/GHSA-9682-f2fr-3h46/GHSA-9682-f2fr-3h46.json +++ b/advisories/unreviewed/2022/08/GHSA-9682-f2fr-3h46/GHSA-9682-f2fr-3h46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9j82-qgpc-g3mq/GHSA-9j82-qgpc-g3mq.json b/advisories/unreviewed/2022/08/GHSA-9j82-qgpc-g3mq/GHSA-9j82-qgpc-g3mq.json index cbdc399e688..7f3b4ee0b88 100644 --- a/advisories/unreviewed/2022/08/GHSA-9j82-qgpc-g3mq/GHSA-9j82-qgpc-g3mq.json +++ b/advisories/unreviewed/2022/08/GHSA-9j82-qgpc-g3mq/GHSA-9j82-qgpc-g3mq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-9rqh-x72q-rhcr/GHSA-9rqh-x72q-rhcr.json b/advisories/unreviewed/2022/08/GHSA-9rqh-x72q-rhcr/GHSA-9rqh-x72q-rhcr.json index 574afea58f5..1caae85619b 100644 --- a/advisories/unreviewed/2022/08/GHSA-9rqh-x72q-rhcr/GHSA-9rqh-x72q-rhcr.json +++ b/advisories/unreviewed/2022/08/GHSA-9rqh-x72q-rhcr/GHSA-9rqh-x72q-rhcr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-c3p6-84mv-rjf3/GHSA-c3p6-84mv-rjf3.json b/advisories/unreviewed/2022/08/GHSA-c3p6-84mv-rjf3/GHSA-c3p6-84mv-rjf3.json index a385afd7581..1c185ebe57b 100644 --- a/advisories/unreviewed/2022/08/GHSA-c3p6-84mv-rjf3/GHSA-c3p6-84mv-rjf3.json +++ b/advisories/unreviewed/2022/08/GHSA-c3p6-84mv-rjf3/GHSA-c3p6-84mv-rjf3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-c7w7-5cff-9ccj/GHSA-c7w7-5cff-9ccj.json b/advisories/unreviewed/2022/08/GHSA-c7w7-5cff-9ccj/GHSA-c7w7-5cff-9ccj.json index 5031df4677b..fb3111df137 100644 --- a/advisories/unreviewed/2022/08/GHSA-c7w7-5cff-9ccj/GHSA-c7w7-5cff-9ccj.json +++ b/advisories/unreviewed/2022/08/GHSA-c7w7-5cff-9ccj/GHSA-c7w7-5cff-9ccj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-chp3-fq5w-hcfh/GHSA-chp3-fq5w-hcfh.json b/advisories/unreviewed/2022/08/GHSA-chp3-fq5w-hcfh/GHSA-chp3-fq5w-hcfh.json index 33df494f2ca..9f61f8ad23c 100644 --- a/advisories/unreviewed/2022/08/GHSA-chp3-fq5w-hcfh/GHSA-chp3-fq5w-hcfh.json +++ b/advisories/unreviewed/2022/08/GHSA-chp3-fq5w-hcfh/GHSA-chp3-fq5w-hcfh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-f3rq-463v-2j36/GHSA-f3rq-463v-2j36.json b/advisories/unreviewed/2022/08/GHSA-f3rq-463v-2j36/GHSA-f3rq-463v-2j36.json index 8bd7ebd3d07..3269ca905d3 100644 --- a/advisories/unreviewed/2022/08/GHSA-f3rq-463v-2j36/GHSA-f3rq-463v-2j36.json +++ b/advisories/unreviewed/2022/08/GHSA-f3rq-463v-2j36/GHSA-f3rq-463v-2j36.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-f63q-4r4h-473v/GHSA-f63q-4r4h-473v.json b/advisories/unreviewed/2022/08/GHSA-f63q-4r4h-473v/GHSA-f63q-4r4h-473v.json index e96666e8602..5cd8236d313 100644 --- a/advisories/unreviewed/2022/08/GHSA-f63q-4r4h-473v/GHSA-f63q-4r4h-473v.json +++ b/advisories/unreviewed/2022/08/GHSA-f63q-4r4h-473v/GHSA-f63q-4r4h-473v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-fjvj-w876-8mc2/GHSA-fjvj-w876-8mc2.json b/advisories/unreviewed/2022/08/GHSA-fjvj-w876-8mc2/GHSA-fjvj-w876-8mc2.json index a9b68a821b0..3ceb3dd8154 100644 --- a/advisories/unreviewed/2022/08/GHSA-fjvj-w876-8mc2/GHSA-fjvj-w876-8mc2.json +++ b/advisories/unreviewed/2022/08/GHSA-fjvj-w876-8mc2/GHSA-fjvj-w876-8mc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-gjf9-j6hw-q3hj/GHSA-gjf9-j6hw-q3hj.json b/advisories/unreviewed/2022/08/GHSA-gjf9-j6hw-q3hj/GHSA-gjf9-j6hw-q3hj.json index 735cf9cce57..0b303a811ca 100644 --- a/advisories/unreviewed/2022/08/GHSA-gjf9-j6hw-q3hj/GHSA-gjf9-j6hw-q3hj.json +++ b/advisories/unreviewed/2022/08/GHSA-gjf9-j6hw-q3hj/GHSA-gjf9-j6hw-q3hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-gp84-wpgp-jv9x/GHSA-gp84-wpgp-jv9x.json b/advisories/unreviewed/2022/08/GHSA-gp84-wpgp-jv9x/GHSA-gp84-wpgp-jv9x.json index bf4d3c8ec3c..198fb62fa74 100644 --- a/advisories/unreviewed/2022/08/GHSA-gp84-wpgp-jv9x/GHSA-gp84-wpgp-jv9x.json +++ b/advisories/unreviewed/2022/08/GHSA-gp84-wpgp-jv9x/GHSA-gp84-wpgp-jv9x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-gx7p-ccw4-fw39/GHSA-gx7p-ccw4-fw39.json b/advisories/unreviewed/2022/08/GHSA-gx7p-ccw4-fw39/GHSA-gx7p-ccw4-fw39.json index df9feecfd0a..26e877c03d4 100644 --- a/advisories/unreviewed/2022/08/GHSA-gx7p-ccw4-fw39/GHSA-gx7p-ccw4-fw39.json +++ b/advisories/unreviewed/2022/08/GHSA-gx7p-ccw4-fw39/GHSA-gx7p-ccw4-fw39.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-jr85-6g96-46pc/GHSA-jr85-6g96-46pc.json b/advisories/unreviewed/2022/08/GHSA-jr85-6g96-46pc/GHSA-jr85-6g96-46pc.json index 07699507a73..d8c86ef6bb9 100644 --- a/advisories/unreviewed/2022/08/GHSA-jr85-6g96-46pc/GHSA-jr85-6g96-46pc.json +++ b/advisories/unreviewed/2022/08/GHSA-jr85-6g96-46pc/GHSA-jr85-6g96-46pc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-jrhf-hqrq-c523/GHSA-jrhf-hqrq-c523.json b/advisories/unreviewed/2022/08/GHSA-jrhf-hqrq-c523/GHSA-jrhf-hqrq-c523.json index 8c23f149216..cbb5792d32f 100644 --- a/advisories/unreviewed/2022/08/GHSA-jrhf-hqrq-c523/GHSA-jrhf-hqrq-c523.json +++ b/advisories/unreviewed/2022/08/GHSA-jrhf-hqrq-c523/GHSA-jrhf-hqrq-c523.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-m8hq-2c8m-w6cm/GHSA-m8hq-2c8m-w6cm.json b/advisories/unreviewed/2022/08/GHSA-m8hq-2c8m-w6cm/GHSA-m8hq-2c8m-w6cm.json index 19694ef59f7..2dfc3a1cb6f 100644 --- a/advisories/unreviewed/2022/08/GHSA-m8hq-2c8m-w6cm/GHSA-m8hq-2c8m-w6cm.json +++ b/advisories/unreviewed/2022/08/GHSA-m8hq-2c8m-w6cm/GHSA-m8hq-2c8m-w6cm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-mhcv-7w89-jjj5/GHSA-mhcv-7w89-jjj5.json b/advisories/unreviewed/2022/08/GHSA-mhcv-7w89-jjj5/GHSA-mhcv-7w89-jjj5.json index 4d790ad08d4..37e0b697c0f 100644 --- a/advisories/unreviewed/2022/08/GHSA-mhcv-7w89-jjj5/GHSA-mhcv-7w89-jjj5.json +++ b/advisories/unreviewed/2022/08/GHSA-mhcv-7w89-jjj5/GHSA-mhcv-7w89-jjj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-mw59-4c4c-6hhr/GHSA-mw59-4c4c-6hhr.json b/advisories/unreviewed/2022/08/GHSA-mw59-4c4c-6hhr/GHSA-mw59-4c4c-6hhr.json index d0e86a44312..f609871cc57 100644 --- a/advisories/unreviewed/2022/08/GHSA-mw59-4c4c-6hhr/GHSA-mw59-4c4c-6hhr.json +++ b/advisories/unreviewed/2022/08/GHSA-mw59-4c4c-6hhr/GHSA-mw59-4c4c-6hhr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-mx26-3rqj-88q7/GHSA-mx26-3rqj-88q7.json b/advisories/unreviewed/2022/08/GHSA-mx26-3rqj-88q7/GHSA-mx26-3rqj-88q7.json index 49a4e6b8f4a..6a87b6cdac0 100644 --- a/advisories/unreviewed/2022/08/GHSA-mx26-3rqj-88q7/GHSA-mx26-3rqj-88q7.json +++ b/advisories/unreviewed/2022/08/GHSA-mx26-3rqj-88q7/GHSA-mx26-3rqj-88q7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-p8xc-8xwv-2wj7/GHSA-p8xc-8xwv-2wj7.json b/advisories/unreviewed/2022/08/GHSA-p8xc-8xwv-2wj7/GHSA-p8xc-8xwv-2wj7.json index e9285557032..20699429fbc 100644 --- a/advisories/unreviewed/2022/08/GHSA-p8xc-8xwv-2wj7/GHSA-p8xc-8xwv-2wj7.json +++ b/advisories/unreviewed/2022/08/GHSA-p8xc-8xwv-2wj7/GHSA-p8xc-8xwv-2wj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-pr6x-p264-jrpq/GHSA-pr6x-p264-jrpq.json b/advisories/unreviewed/2022/08/GHSA-pr6x-p264-jrpq/GHSA-pr6x-p264-jrpq.json index 4a128694440..ed52c1cd511 100644 --- a/advisories/unreviewed/2022/08/GHSA-pr6x-p264-jrpq/GHSA-pr6x-p264-jrpq.json +++ b/advisories/unreviewed/2022/08/GHSA-pr6x-p264-jrpq/GHSA-pr6x-p264-jrpq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-qjqc-gw55-mpmx/GHSA-qjqc-gw55-mpmx.json b/advisories/unreviewed/2022/08/GHSA-qjqc-gw55-mpmx/GHSA-qjqc-gw55-mpmx.json index 8cee6f2f5cd..a5ba9f2250e 100644 --- a/advisories/unreviewed/2022/08/GHSA-qjqc-gw55-mpmx/GHSA-qjqc-gw55-mpmx.json +++ b/advisories/unreviewed/2022/08/GHSA-qjqc-gw55-mpmx/GHSA-qjqc-gw55-mpmx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-vfch-2fr8-r5c2/GHSA-vfch-2fr8-r5c2.json b/advisories/unreviewed/2022/08/GHSA-vfch-2fr8-r5c2/GHSA-vfch-2fr8-r5c2.json index eada0a41071..7405bb79368 100644 --- a/advisories/unreviewed/2022/08/GHSA-vfch-2fr8-r5c2/GHSA-vfch-2fr8-r5c2.json +++ b/advisories/unreviewed/2022/08/GHSA-vfch-2fr8-r5c2/GHSA-vfch-2fr8-r5c2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-w277-77wc-wqp6/GHSA-w277-77wc-wqp6.json b/advisories/unreviewed/2022/08/GHSA-w277-77wc-wqp6/GHSA-w277-77wc-wqp6.json index 1a94febfe76..ec14648a546 100644 --- a/advisories/unreviewed/2022/08/GHSA-w277-77wc-wqp6/GHSA-w277-77wc-wqp6.json +++ b/advisories/unreviewed/2022/08/GHSA-w277-77wc-wqp6/GHSA-w277-77wc-wqp6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wj8g-g659-5m92/GHSA-wj8g-g659-5m92.json b/advisories/unreviewed/2022/08/GHSA-wj8g-g659-5m92/GHSA-wj8g-g659-5m92.json index 68e119c38ea..0d2ec6eb190 100644 --- a/advisories/unreviewed/2022/08/GHSA-wj8g-g659-5m92/GHSA-wj8g-g659-5m92.json +++ b/advisories/unreviewed/2022/08/GHSA-wj8g-g659-5m92/GHSA-wj8g-g659-5m92.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wpmh-x6rm-9p34/GHSA-wpmh-x6rm-9p34.json b/advisories/unreviewed/2022/08/GHSA-wpmh-x6rm-9p34/GHSA-wpmh-x6rm-9p34.json index 31785130ed6..9f6b434cb1e 100644 --- a/advisories/unreviewed/2022/08/GHSA-wpmh-x6rm-9p34/GHSA-wpmh-x6rm-9p34.json +++ b/advisories/unreviewed/2022/08/GHSA-wpmh-x6rm-9p34/GHSA-wpmh-x6rm-9p34.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-wvf4-j5w7-r38j/GHSA-wvf4-j5w7-r38j.json b/advisories/unreviewed/2022/08/GHSA-wvf4-j5w7-r38j/GHSA-wvf4-j5w7-r38j.json index ea88b96d647..21d7bf6fcf9 100644 --- a/advisories/unreviewed/2022/08/GHSA-wvf4-j5w7-r38j/GHSA-wvf4-j5w7-r38j.json +++ b/advisories/unreviewed/2022/08/GHSA-wvf4-j5w7-r38j/GHSA-wvf4-j5w7-r38j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-xjx9-mw8c-mgp4/GHSA-xjx9-mw8c-mgp4.json b/advisories/unreviewed/2022/08/GHSA-xjx9-mw8c-mgp4/GHSA-xjx9-mw8c-mgp4.json index 570a8e11fe9..37ac483fef3 100644 --- a/advisories/unreviewed/2022/08/GHSA-xjx9-mw8c-mgp4/GHSA-xjx9-mw8c-mgp4.json +++ b/advisories/unreviewed/2022/08/GHSA-xjx9-mw8c-mgp4/GHSA-xjx9-mw8c-mgp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-2fqh-vmvf-c822/GHSA-2fqh-vmvf-c822.json b/advisories/unreviewed/2022/09/GHSA-2fqh-vmvf-c822/GHSA-2fqh-vmvf-c822.json index 0fb883e8fbb..c80418c5302 100644 --- a/advisories/unreviewed/2022/09/GHSA-2fqh-vmvf-c822/GHSA-2fqh-vmvf-c822.json +++ b/advisories/unreviewed/2022/09/GHSA-2fqh-vmvf-c822/GHSA-2fqh-vmvf-c822.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-42g8-vhhw-vw3f/GHSA-42g8-vhhw-vw3f.json b/advisories/unreviewed/2022/09/GHSA-42g8-vhhw-vw3f/GHSA-42g8-vhhw-vw3f.json index 6b91c156b33..f0206263b17 100644 --- a/advisories/unreviewed/2022/09/GHSA-42g8-vhhw-vw3f/GHSA-42g8-vhhw-vw3f.json +++ b/advisories/unreviewed/2022/09/GHSA-42g8-vhhw-vw3f/GHSA-42g8-vhhw-vw3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4fjx-j6jj-8pm5/GHSA-4fjx-j6jj-8pm5.json b/advisories/unreviewed/2022/09/GHSA-4fjx-j6jj-8pm5/GHSA-4fjx-j6jj-8pm5.json index 42ff96c9b9b..7ac8ce123a3 100644 --- a/advisories/unreviewed/2022/09/GHSA-4fjx-j6jj-8pm5/GHSA-4fjx-j6jj-8pm5.json +++ b/advisories/unreviewed/2022/09/GHSA-4fjx-j6jj-8pm5/GHSA-4fjx-j6jj-8pm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5837-3xvj-5g8r/GHSA-5837-3xvj-5g8r.json b/advisories/unreviewed/2022/09/GHSA-5837-3xvj-5g8r/GHSA-5837-3xvj-5g8r.json index fcc55a04c1b..31767d0b864 100644 --- a/advisories/unreviewed/2022/09/GHSA-5837-3xvj-5g8r/GHSA-5837-3xvj-5g8r.json +++ b/advisories/unreviewed/2022/09/GHSA-5837-3xvj-5g8r/GHSA-5837-3xvj-5g8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-5r46-q4x7-6fx6/GHSA-5r46-q4x7-6fx6.json b/advisories/unreviewed/2022/09/GHSA-5r46-q4x7-6fx6/GHSA-5r46-q4x7-6fx6.json index a76a88865ad..a8446d033b1 100644 --- a/advisories/unreviewed/2022/09/GHSA-5r46-q4x7-6fx6/GHSA-5r46-q4x7-6fx6.json +++ b/advisories/unreviewed/2022/09/GHSA-5r46-q4x7-6fx6/GHSA-5r46-q4x7-6fx6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-6p3q-v495-f3jw/GHSA-6p3q-v495-f3jw.json b/advisories/unreviewed/2022/09/GHSA-6p3q-v495-f3jw/GHSA-6p3q-v495-f3jw.json index c460cc7f55d..275ed4e8350 100644 --- a/advisories/unreviewed/2022/09/GHSA-6p3q-v495-f3jw/GHSA-6p3q-v495-f3jw.json +++ b/advisories/unreviewed/2022/09/GHSA-6p3q-v495-f3jw/GHSA-6p3q-v495-f3jw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-8g2j-v7wm-mhv5/GHSA-8g2j-v7wm-mhv5.json b/advisories/unreviewed/2022/09/GHSA-8g2j-v7wm-mhv5/GHSA-8g2j-v7wm-mhv5.json index a41b481c118..89b39461704 100644 --- a/advisories/unreviewed/2022/09/GHSA-8g2j-v7wm-mhv5/GHSA-8g2j-v7wm-mhv5.json +++ b/advisories/unreviewed/2022/09/GHSA-8g2j-v7wm-mhv5/GHSA-8g2j-v7wm-mhv5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-9rcr-wwr3-q567/GHSA-9rcr-wwr3-q567.json b/advisories/unreviewed/2022/09/GHSA-9rcr-wwr3-q567/GHSA-9rcr-wwr3-q567.json index 8d45166902e..05cb9a6a5a1 100644 --- a/advisories/unreviewed/2022/09/GHSA-9rcr-wwr3-q567/GHSA-9rcr-wwr3-q567.json +++ b/advisories/unreviewed/2022/09/GHSA-9rcr-wwr3-q567/GHSA-9rcr-wwr3-q567.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-c43m-486j-j32p/GHSA-c43m-486j-j32p.json b/advisories/unreviewed/2022/09/GHSA-c43m-486j-j32p/GHSA-c43m-486j-j32p.json index bc8c346cf04..7a0bfc92bb2 100644 --- a/advisories/unreviewed/2022/09/GHSA-c43m-486j-j32p/GHSA-c43m-486j-j32p.json +++ b/advisories/unreviewed/2022/09/GHSA-c43m-486j-j32p/GHSA-c43m-486j-j32p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-gx9j-r5m2-p97g/GHSA-gx9j-r5m2-p97g.json b/advisories/unreviewed/2022/09/GHSA-gx9j-r5m2-p97g/GHSA-gx9j-r5m2-p97g.json index 8f9a1f8c232..93a150657e2 100644 --- a/advisories/unreviewed/2022/09/GHSA-gx9j-r5m2-p97g/GHSA-gx9j-r5m2-p97g.json +++ b/advisories/unreviewed/2022/09/GHSA-gx9j-r5m2-p97g/GHSA-gx9j-r5m2-p97g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-hvhp-3r57-wcr8/GHSA-hvhp-3r57-wcr8.json b/advisories/unreviewed/2022/09/GHSA-hvhp-3r57-wcr8/GHSA-hvhp-3r57-wcr8.json index 3a8d09462f2..5079dac957e 100644 --- a/advisories/unreviewed/2022/09/GHSA-hvhp-3r57-wcr8/GHSA-hvhp-3r57-wcr8.json +++ b/advisories/unreviewed/2022/09/GHSA-hvhp-3r57-wcr8/GHSA-hvhp-3r57-wcr8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-jcm3-cq3v-4492/GHSA-jcm3-cq3v-4492.json b/advisories/unreviewed/2022/09/GHSA-jcm3-cq3v-4492/GHSA-jcm3-cq3v-4492.json index 7fbf6a82be8..67aa9b5d080 100644 --- a/advisories/unreviewed/2022/09/GHSA-jcm3-cq3v-4492/GHSA-jcm3-cq3v-4492.json +++ b/advisories/unreviewed/2022/09/GHSA-jcm3-cq3v-4492/GHSA-jcm3-cq3v-4492.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-jh89-xppm-m3xg/GHSA-jh89-xppm-m3xg.json b/advisories/unreviewed/2022/09/GHSA-jh89-xppm-m3xg/GHSA-jh89-xppm-m3xg.json index dc61debf7e2..228ac6caac5 100644 --- a/advisories/unreviewed/2022/09/GHSA-jh89-xppm-m3xg/GHSA-jh89-xppm-m3xg.json +++ b/advisories/unreviewed/2022/09/GHSA-jh89-xppm-m3xg/GHSA-jh89-xppm-m3xg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-p3jv-vmvr-2v4v/GHSA-p3jv-vmvr-2v4v.json b/advisories/unreviewed/2022/09/GHSA-p3jv-vmvr-2v4v/GHSA-p3jv-vmvr-2v4v.json index 1cb6da2dee0..3d41f91e6fc 100644 --- a/advisories/unreviewed/2022/09/GHSA-p3jv-vmvr-2v4v/GHSA-p3jv-vmvr-2v4v.json +++ b/advisories/unreviewed/2022/09/GHSA-p3jv-vmvr-2v4v/GHSA-p3jv-vmvr-2v4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-p3q8-prqm-8535/GHSA-p3q8-prqm-8535.json b/advisories/unreviewed/2022/09/GHSA-p3q8-prqm-8535/GHSA-p3q8-prqm-8535.json index 62ccc7c87df..779571de98b 100644 --- a/advisories/unreviewed/2022/09/GHSA-p3q8-prqm-8535/GHSA-p3q8-prqm-8535.json +++ b/advisories/unreviewed/2022/09/GHSA-p3q8-prqm-8535/GHSA-p3q8-prqm-8535.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x8g3-wjf9-c729/GHSA-x8g3-wjf9-c729.json b/advisories/unreviewed/2022/09/GHSA-x8g3-wjf9-c729/GHSA-x8g3-wjf9-c729.json index 7e541b18c96..953200ce838 100644 --- a/advisories/unreviewed/2022/09/GHSA-x8g3-wjf9-c729/GHSA-x8g3-wjf9-c729.json +++ b/advisories/unreviewed/2022/09/GHSA-x8g3-wjf9-c729/GHSA-x8g3-wjf9-c729.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-26h7-5j9f-3jj7/GHSA-26h7-5j9f-3jj7.json b/advisories/unreviewed/2022/10/GHSA-26h7-5j9f-3jj7/GHSA-26h7-5j9f-3jj7.json index c1c28528c86..cdbb50198b5 100644 --- a/advisories/unreviewed/2022/10/GHSA-26h7-5j9f-3jj7/GHSA-26h7-5j9f-3jj7.json +++ b/advisories/unreviewed/2022/10/GHSA-26h7-5j9f-3jj7/GHSA-26h7-5j9f-3jj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-286c-pf2q-9ghm/GHSA-286c-pf2q-9ghm.json b/advisories/unreviewed/2022/10/GHSA-286c-pf2q-9ghm/GHSA-286c-pf2q-9ghm.json index 347d70d0b17..ef199b9b4c8 100644 --- a/advisories/unreviewed/2022/10/GHSA-286c-pf2q-9ghm/GHSA-286c-pf2q-9ghm.json +++ b/advisories/unreviewed/2022/10/GHSA-286c-pf2q-9ghm/GHSA-286c-pf2q-9ghm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-3j84-x8jq-q9c2/GHSA-3j84-x8jq-q9c2.json b/advisories/unreviewed/2022/10/GHSA-3j84-x8jq-q9c2/GHSA-3j84-x8jq-q9c2.json index d189f81e7aa..7a0b30c778f 100644 --- a/advisories/unreviewed/2022/10/GHSA-3j84-x8jq-q9c2/GHSA-3j84-x8jq-q9c2.json +++ b/advisories/unreviewed/2022/10/GHSA-3j84-x8jq-q9c2/GHSA-3j84-x8jq-q9c2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-3qf4-wfmh-xq4w/GHSA-3qf4-wfmh-xq4w.json b/advisories/unreviewed/2022/10/GHSA-3qf4-wfmh-xq4w/GHSA-3qf4-wfmh-xq4w.json index 0b8cd7e51fb..538b634426a 100644 --- a/advisories/unreviewed/2022/10/GHSA-3qf4-wfmh-xq4w/GHSA-3qf4-wfmh-xq4w.json +++ b/advisories/unreviewed/2022/10/GHSA-3qf4-wfmh-xq4w/GHSA-3qf4-wfmh-xq4w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-3w5w-5g86-h65c/GHSA-3w5w-5g86-h65c.json b/advisories/unreviewed/2022/10/GHSA-3w5w-5g86-h65c/GHSA-3w5w-5g86-h65c.json index 735d29bfe16..768f4a111b0 100644 --- a/advisories/unreviewed/2022/10/GHSA-3w5w-5g86-h65c/GHSA-3w5w-5g86-h65c.json +++ b/advisories/unreviewed/2022/10/GHSA-3w5w-5g86-h65c/GHSA-3w5w-5g86-h65c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-3xqx-3w36-qfg8/GHSA-3xqx-3w36-qfg8.json b/advisories/unreviewed/2022/10/GHSA-3xqx-3w36-qfg8/GHSA-3xqx-3w36-qfg8.json index 69cd938020b..24b86534257 100644 --- a/advisories/unreviewed/2022/10/GHSA-3xqx-3w36-qfg8/GHSA-3xqx-3w36-qfg8.json +++ b/advisories/unreviewed/2022/10/GHSA-3xqx-3w36-qfg8/GHSA-3xqx-3w36-qfg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-43j3-xvp9-vv7j/GHSA-43j3-xvp9-vv7j.json b/advisories/unreviewed/2022/10/GHSA-43j3-xvp9-vv7j/GHSA-43j3-xvp9-vv7j.json index 09c44ea0593..28a49b9160d 100644 --- a/advisories/unreviewed/2022/10/GHSA-43j3-xvp9-vv7j/GHSA-43j3-xvp9-vv7j.json +++ b/advisories/unreviewed/2022/10/GHSA-43j3-xvp9-vv7j/GHSA-43j3-xvp9-vv7j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-47h7-6q6r-2wp8/GHSA-47h7-6q6r-2wp8.json b/advisories/unreviewed/2022/10/GHSA-47h7-6q6r-2wp8/GHSA-47h7-6q6r-2wp8.json index f490fa9c047..0ce99cbd903 100644 --- a/advisories/unreviewed/2022/10/GHSA-47h7-6q6r-2wp8/GHSA-47h7-6q6r-2wp8.json +++ b/advisories/unreviewed/2022/10/GHSA-47h7-6q6r-2wp8/GHSA-47h7-6q6r-2wp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-5cvm-9gmj-pww2/GHSA-5cvm-9gmj-pww2.json b/advisories/unreviewed/2022/10/GHSA-5cvm-9gmj-pww2/GHSA-5cvm-9gmj-pww2.json index e269da86d89..8395bf941a0 100644 --- a/advisories/unreviewed/2022/10/GHSA-5cvm-9gmj-pww2/GHSA-5cvm-9gmj-pww2.json +++ b/advisories/unreviewed/2022/10/GHSA-5cvm-9gmj-pww2/GHSA-5cvm-9gmj-pww2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-5xqr-9392-q49j/GHSA-5xqr-9392-q49j.json b/advisories/unreviewed/2022/10/GHSA-5xqr-9392-q49j/GHSA-5xqr-9392-q49j.json index d12dfe3b24f..c398f09cc70 100644 --- a/advisories/unreviewed/2022/10/GHSA-5xqr-9392-q49j/GHSA-5xqr-9392-q49j.json +++ b/advisories/unreviewed/2022/10/GHSA-5xqr-9392-q49j/GHSA-5xqr-9392-q49j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-6244-c6jg-4cf8/GHSA-6244-c6jg-4cf8.json b/advisories/unreviewed/2022/10/GHSA-6244-c6jg-4cf8/GHSA-6244-c6jg-4cf8.json index 6dc15f5d00e..127e25954f3 100644 --- a/advisories/unreviewed/2022/10/GHSA-6244-c6jg-4cf8/GHSA-6244-c6jg-4cf8.json +++ b/advisories/unreviewed/2022/10/GHSA-6244-c6jg-4cf8/GHSA-6244-c6jg-4cf8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-6jrf-v33r-v8h2/GHSA-6jrf-v33r-v8h2.json b/advisories/unreviewed/2022/10/GHSA-6jrf-v33r-v8h2/GHSA-6jrf-v33r-v8h2.json index 93977786f92..d53a68232c9 100644 --- a/advisories/unreviewed/2022/10/GHSA-6jrf-v33r-v8h2/GHSA-6jrf-v33r-v8h2.json +++ b/advisories/unreviewed/2022/10/GHSA-6jrf-v33r-v8h2/GHSA-6jrf-v33r-v8h2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-7c9c-6hfm-p3hx/GHSA-7c9c-6hfm-p3hx.json b/advisories/unreviewed/2022/10/GHSA-7c9c-6hfm-p3hx/GHSA-7c9c-6hfm-p3hx.json index 3691b962718..af77e783dc6 100644 --- a/advisories/unreviewed/2022/10/GHSA-7c9c-6hfm-p3hx/GHSA-7c9c-6hfm-p3hx.json +++ b/advisories/unreviewed/2022/10/GHSA-7c9c-6hfm-p3hx/GHSA-7c9c-6hfm-p3hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-7cwr-j6cv-fjjp/GHSA-7cwr-j6cv-fjjp.json b/advisories/unreviewed/2022/10/GHSA-7cwr-j6cv-fjjp/GHSA-7cwr-j6cv-fjjp.json index 607c3a82255..71fe12d5e19 100644 --- a/advisories/unreviewed/2022/10/GHSA-7cwr-j6cv-fjjp/GHSA-7cwr-j6cv-fjjp.json +++ b/advisories/unreviewed/2022/10/GHSA-7cwr-j6cv-fjjp/GHSA-7cwr-j6cv-fjjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-854x-2jm6-mvwp/GHSA-854x-2jm6-mvwp.json b/advisories/unreviewed/2022/10/GHSA-854x-2jm6-mvwp/GHSA-854x-2jm6-mvwp.json index 14bb19c0659..a20117d9759 100644 --- a/advisories/unreviewed/2022/10/GHSA-854x-2jm6-mvwp/GHSA-854x-2jm6-mvwp.json +++ b/advisories/unreviewed/2022/10/GHSA-854x-2jm6-mvwp/GHSA-854x-2jm6-mvwp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-92fw-2mw4-j797/GHSA-92fw-2mw4-j797.json b/advisories/unreviewed/2022/10/GHSA-92fw-2mw4-j797/GHSA-92fw-2mw4-j797.json index 05631748dc0..8d2456d82e4 100644 --- a/advisories/unreviewed/2022/10/GHSA-92fw-2mw4-j797/GHSA-92fw-2mw4-j797.json +++ b/advisories/unreviewed/2022/10/GHSA-92fw-2mw4-j797/GHSA-92fw-2mw4-j797.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-h342-5v8g-h229/GHSA-h342-5v8g-h229.json b/advisories/unreviewed/2022/10/GHSA-h342-5v8g-h229/GHSA-h342-5v8g-h229.json index b328030cd7d..fe3dd356151 100644 --- a/advisories/unreviewed/2022/10/GHSA-h342-5v8g-h229/GHSA-h342-5v8g-h229.json +++ b/advisories/unreviewed/2022/10/GHSA-h342-5v8g-h229/GHSA-h342-5v8g-h229.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-hq39-62g2-phr4/GHSA-hq39-62g2-phr4.json b/advisories/unreviewed/2022/10/GHSA-hq39-62g2-phr4/GHSA-hq39-62g2-phr4.json index e0281ab542c..1b04b71640c 100644 --- a/advisories/unreviewed/2022/10/GHSA-hq39-62g2-phr4/GHSA-hq39-62g2-phr4.json +++ b/advisories/unreviewed/2022/10/GHSA-hq39-62g2-phr4/GHSA-hq39-62g2-phr4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-hxq2-rx6m-372p/GHSA-hxq2-rx6m-372p.json b/advisories/unreviewed/2022/10/GHSA-hxq2-rx6m-372p/GHSA-hxq2-rx6m-372p.json index 7bb95c96477..3bf610e6bfe 100644 --- a/advisories/unreviewed/2022/10/GHSA-hxq2-rx6m-372p/GHSA-hxq2-rx6m-372p.json +++ b/advisories/unreviewed/2022/10/GHSA-hxq2-rx6m-372p/GHSA-hxq2-rx6m-372p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-j3rp-f8f2-7h9w/GHSA-j3rp-f8f2-7h9w.json b/advisories/unreviewed/2022/10/GHSA-j3rp-f8f2-7h9w/GHSA-j3rp-f8f2-7h9w.json index 061cfb763ca..66324f9121b 100644 --- a/advisories/unreviewed/2022/10/GHSA-j3rp-f8f2-7h9w/GHSA-j3rp-f8f2-7h9w.json +++ b/advisories/unreviewed/2022/10/GHSA-j3rp-f8f2-7h9w/GHSA-j3rp-f8f2-7h9w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-j44r-q243-8pqv/GHSA-j44r-q243-8pqv.json b/advisories/unreviewed/2022/10/GHSA-j44r-q243-8pqv/GHSA-j44r-q243-8pqv.json index 0e4b6111ec7..4ed37783990 100644 --- a/advisories/unreviewed/2022/10/GHSA-j44r-q243-8pqv/GHSA-j44r-q243-8pqv.json +++ b/advisories/unreviewed/2022/10/GHSA-j44r-q243-8pqv/GHSA-j44r-q243-8pqv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-j6cm-h4ff-pcc9/GHSA-j6cm-h4ff-pcc9.json b/advisories/unreviewed/2022/10/GHSA-j6cm-h4ff-pcc9/GHSA-j6cm-h4ff-pcc9.json index a12936f48a8..3318cd34a20 100644 --- a/advisories/unreviewed/2022/10/GHSA-j6cm-h4ff-pcc9/GHSA-j6cm-h4ff-pcc9.json +++ b/advisories/unreviewed/2022/10/GHSA-j6cm-h4ff-pcc9/GHSA-j6cm-h4ff-pcc9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-jv64-2wh8-m723/GHSA-jv64-2wh8-m723.json b/advisories/unreviewed/2022/10/GHSA-jv64-2wh8-m723/GHSA-jv64-2wh8-m723.json index d8c291b2963..260b089db84 100644 --- a/advisories/unreviewed/2022/10/GHSA-jv64-2wh8-m723/GHSA-jv64-2wh8-m723.json +++ b/advisories/unreviewed/2022/10/GHSA-jv64-2wh8-m723/GHSA-jv64-2wh8-m723.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-m64q-8wxg-mfcp/GHSA-m64q-8wxg-mfcp.json b/advisories/unreviewed/2022/10/GHSA-m64q-8wxg-mfcp/GHSA-m64q-8wxg-mfcp.json index 118e9e203fc..738d34c5e5a 100644 --- a/advisories/unreviewed/2022/10/GHSA-m64q-8wxg-mfcp/GHSA-m64q-8wxg-mfcp.json +++ b/advisories/unreviewed/2022/10/GHSA-m64q-8wxg-mfcp/GHSA-m64q-8wxg-mfcp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-p383-f595-x4qw/GHSA-p383-f595-x4qw.json b/advisories/unreviewed/2022/10/GHSA-p383-f595-x4qw/GHSA-p383-f595-x4qw.json index 929787aa897..dd89a1fbb27 100644 --- a/advisories/unreviewed/2022/10/GHSA-p383-f595-x4qw/GHSA-p383-f595-x4qw.json +++ b/advisories/unreviewed/2022/10/GHSA-p383-f595-x4qw/GHSA-p383-f595-x4qw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-p4qv-8hmq-3v3w/GHSA-p4qv-8hmq-3v3w.json b/advisories/unreviewed/2022/10/GHSA-p4qv-8hmq-3v3w/GHSA-p4qv-8hmq-3v3w.json index 2ef468eb25c..0606c15f106 100644 --- a/advisories/unreviewed/2022/10/GHSA-p4qv-8hmq-3v3w/GHSA-p4qv-8hmq-3v3w.json +++ b/advisories/unreviewed/2022/10/GHSA-p4qv-8hmq-3v3w/GHSA-p4qv-8hmq-3v3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-pp39-mm75-97q9/GHSA-pp39-mm75-97q9.json b/advisories/unreviewed/2022/10/GHSA-pp39-mm75-97q9/GHSA-pp39-mm75-97q9.json index 15689c7384b..003cbfa7621 100644 --- a/advisories/unreviewed/2022/10/GHSA-pp39-mm75-97q9/GHSA-pp39-mm75-97q9.json +++ b/advisories/unreviewed/2022/10/GHSA-pp39-mm75-97q9/GHSA-pp39-mm75-97q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-prm7-p5hm-qq42/GHSA-prm7-p5hm-qq42.json b/advisories/unreviewed/2022/10/GHSA-prm7-p5hm-qq42/GHSA-prm7-p5hm-qq42.json index 8d096acf67b..44da3f83860 100644 --- a/advisories/unreviewed/2022/10/GHSA-prm7-p5hm-qq42/GHSA-prm7-p5hm-qq42.json +++ b/advisories/unreviewed/2022/10/GHSA-prm7-p5hm-qq42/GHSA-prm7-p5hm-qq42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-r626-8pv5-vwq9/GHSA-r626-8pv5-vwq9.json b/advisories/unreviewed/2022/10/GHSA-r626-8pv5-vwq9/GHSA-r626-8pv5-vwq9.json index 130c1afc4b5..6ffbedb066f 100644 --- a/advisories/unreviewed/2022/10/GHSA-r626-8pv5-vwq9/GHSA-r626-8pv5-vwq9.json +++ b/advisories/unreviewed/2022/10/GHSA-r626-8pv5-vwq9/GHSA-r626-8pv5-vwq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-r93j-cm86-gfc2/GHSA-r93j-cm86-gfc2.json b/advisories/unreviewed/2022/10/GHSA-r93j-cm86-gfc2/GHSA-r93j-cm86-gfc2.json index b01bf105512..b5197c58b1a 100644 --- a/advisories/unreviewed/2022/10/GHSA-r93j-cm86-gfc2/GHSA-r93j-cm86-gfc2.json +++ b/advisories/unreviewed/2022/10/GHSA-r93j-cm86-gfc2/GHSA-r93j-cm86-gfc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-rpwm-fwxw-89mp/GHSA-rpwm-fwxw-89mp.json b/advisories/unreviewed/2022/10/GHSA-rpwm-fwxw-89mp/GHSA-rpwm-fwxw-89mp.json index 0a7554406ef..00fe8535412 100644 --- a/advisories/unreviewed/2022/10/GHSA-rpwm-fwxw-89mp/GHSA-rpwm-fwxw-89mp.json +++ b/advisories/unreviewed/2022/10/GHSA-rpwm-fwxw-89mp/GHSA-rpwm-fwxw-89mp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-v6q3-cj4x-h42r/GHSA-v6q3-cj4x-h42r.json b/advisories/unreviewed/2022/10/GHSA-v6q3-cj4x-h42r/GHSA-v6q3-cj4x-h42r.json index 85c81d5f083..54259b55766 100644 --- a/advisories/unreviewed/2022/10/GHSA-v6q3-cj4x-h42r/GHSA-v6q3-cj4x-h42r.json +++ b/advisories/unreviewed/2022/10/GHSA-v6q3-cj4x-h42r/GHSA-v6q3-cj4x-h42r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-w4wh-9494-g449/GHSA-w4wh-9494-g449.json b/advisories/unreviewed/2022/10/GHSA-w4wh-9494-g449/GHSA-w4wh-9494-g449.json index c9838728c84..a5f59323994 100644 --- a/advisories/unreviewed/2022/10/GHSA-w4wh-9494-g449/GHSA-w4wh-9494-g449.json +++ b/advisories/unreviewed/2022/10/GHSA-w4wh-9494-g449/GHSA-w4wh-9494-g449.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-xj53-rhqx-x9x6/GHSA-xj53-rhqx-x9x6.json b/advisories/unreviewed/2022/10/GHSA-xj53-rhqx-x9x6/GHSA-xj53-rhqx-x9x6.json index 61d28361c37..348bbcdeece 100644 --- a/advisories/unreviewed/2022/10/GHSA-xj53-rhqx-x9x6/GHSA-xj53-rhqx-x9x6.json +++ b/advisories/unreviewed/2022/10/GHSA-xj53-rhqx-x9x6/GHSA-xj53-rhqx-x9x6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-xx9r-h2q8-q5m3/GHSA-xx9r-h2q8-q5m3.json b/advisories/unreviewed/2022/10/GHSA-xx9r-h2q8-q5m3/GHSA-xx9r-h2q8-q5m3.json index b688e547571..8d644aaceda 100644 --- a/advisories/unreviewed/2022/10/GHSA-xx9r-h2q8-q5m3/GHSA-xx9r-h2q8-q5m3.json +++ b/advisories/unreviewed/2022/10/GHSA-xx9r-h2q8-q5m3/GHSA-xx9r-h2q8-q5m3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-2pp9-cmh9-mhg5/GHSA-2pp9-cmh9-mhg5.json b/advisories/unreviewed/2022/11/GHSA-2pp9-cmh9-mhg5/GHSA-2pp9-cmh9-mhg5.json index 4d5de48a004..d2e9d9dff0a 100644 --- a/advisories/unreviewed/2022/11/GHSA-2pp9-cmh9-mhg5/GHSA-2pp9-cmh9-mhg5.json +++ b/advisories/unreviewed/2022/11/GHSA-2pp9-cmh9-mhg5/GHSA-2pp9-cmh9-mhg5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-32c8-f69v-cf4f/GHSA-32c8-f69v-cf4f.json b/advisories/unreviewed/2022/11/GHSA-32c8-f69v-cf4f/GHSA-32c8-f69v-cf4f.json index 820fc124f58..940da05472d 100644 --- a/advisories/unreviewed/2022/11/GHSA-32c8-f69v-cf4f/GHSA-32c8-f69v-cf4f.json +++ b/advisories/unreviewed/2022/11/GHSA-32c8-f69v-cf4f/GHSA-32c8-f69v-cf4f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-5hwx-7j7x-65xr/GHSA-5hwx-7j7x-65xr.json b/advisories/unreviewed/2022/11/GHSA-5hwx-7j7x-65xr/GHSA-5hwx-7j7x-65xr.json index ec618bab481..9a659074d48 100644 --- a/advisories/unreviewed/2022/11/GHSA-5hwx-7j7x-65xr/GHSA-5hwx-7j7x-65xr.json +++ b/advisories/unreviewed/2022/11/GHSA-5hwx-7j7x-65xr/GHSA-5hwx-7j7x-65xr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-h3fq-ggc9-j2q9/GHSA-h3fq-ggc9-j2q9.json b/advisories/unreviewed/2022/11/GHSA-h3fq-ggc9-j2q9/GHSA-h3fq-ggc9-j2q9.json index 67850ba8c80..c8897772ba2 100644 --- a/advisories/unreviewed/2022/11/GHSA-h3fq-ggc9-j2q9/GHSA-h3fq-ggc9-j2q9.json +++ b/advisories/unreviewed/2022/11/GHSA-h3fq-ggc9-j2q9/GHSA-h3fq-ggc9-j2q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-hr4v-q74p-mj4p/GHSA-hr4v-q74p-mj4p.json b/advisories/unreviewed/2022/11/GHSA-hr4v-q74p-mj4p/GHSA-hr4v-q74p-mj4p.json index 8f145be4cee..51d59352a40 100644 --- a/advisories/unreviewed/2022/11/GHSA-hr4v-q74p-mj4p/GHSA-hr4v-q74p-mj4p.json +++ b/advisories/unreviewed/2022/11/GHSA-hr4v-q74p-mj4p/GHSA-hr4v-q74p-mj4p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-m66h-wh3h-882v/GHSA-m66h-wh3h-882v.json b/advisories/unreviewed/2022/11/GHSA-m66h-wh3h-882v/GHSA-m66h-wh3h-882v.json index 87e3c3aa123..f54c4991cd9 100644 --- a/advisories/unreviewed/2022/11/GHSA-m66h-wh3h-882v/GHSA-m66h-wh3h-882v.json +++ b/advisories/unreviewed/2022/11/GHSA-m66h-wh3h-882v/GHSA-m66h-wh3h-882v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-pwwj-wfmw-v2h8/GHSA-pwwj-wfmw-v2h8.json b/advisories/unreviewed/2022/11/GHSA-pwwj-wfmw-v2h8/GHSA-pwwj-wfmw-v2h8.json index 8625a05dc2b..4ceaa4875b9 100644 --- a/advisories/unreviewed/2022/11/GHSA-pwwj-wfmw-v2h8/GHSA-pwwj-wfmw-v2h8.json +++ b/advisories/unreviewed/2022/11/GHSA-pwwj-wfmw-v2h8/GHSA-pwwj-wfmw-v2h8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-x4pv-c5fp-g6q6/GHSA-x4pv-c5fp-g6q6.json b/advisories/unreviewed/2022/11/GHSA-x4pv-c5fp-g6q6/GHSA-x4pv-c5fp-g6q6.json index 7b4bebaa7a4..1a2d657c67f 100644 --- a/advisories/unreviewed/2022/11/GHSA-x4pv-c5fp-g6q6/GHSA-x4pv-c5fp-g6q6.json +++ b/advisories/unreviewed/2022/11/GHSA-x4pv-c5fp-g6q6/GHSA-x4pv-c5fp-g6q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-x7c7-vcw9-6rw2/GHSA-x7c7-vcw9-6rw2.json b/advisories/unreviewed/2022/11/GHSA-x7c7-vcw9-6rw2/GHSA-x7c7-vcw9-6rw2.json index 6a314a6107c..2902ce74a98 100644 --- a/advisories/unreviewed/2022/11/GHSA-x7c7-vcw9-6rw2/GHSA-x7c7-vcw9-6rw2.json +++ b/advisories/unreviewed/2022/11/GHSA-x7c7-vcw9-6rw2/GHSA-x7c7-vcw9-6rw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-3j4q-w64j-h3mx/GHSA-3j4q-w64j-h3mx.json b/advisories/unreviewed/2022/12/GHSA-3j4q-w64j-h3mx/GHSA-3j4q-w64j-h3mx.json index 26df8192321..855fc0a755b 100644 --- a/advisories/unreviewed/2022/12/GHSA-3j4q-w64j-h3mx/GHSA-3j4q-w64j-h3mx.json +++ b/advisories/unreviewed/2022/12/GHSA-3j4q-w64j-h3mx/GHSA-3j4q-w64j-h3mx.json @@ -7,12 +7,8 @@ "CVE-2022-43503" ], "details": "This CVE is not valid.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-4wmx-w79j-v4q9/GHSA-4wmx-w79j-v4q9.json b/advisories/unreviewed/2022/12/GHSA-4wmx-w79j-v4q9/GHSA-4wmx-w79j-v4q9.json index f9ae21acd52..22fe7f02f1e 100644 --- a/advisories/unreviewed/2022/12/GHSA-4wmx-w79j-v4q9/GHSA-4wmx-w79j-v4q9.json +++ b/advisories/unreviewed/2022/12/GHSA-4wmx-w79j-v4q9/GHSA-4wmx-w79j-v4q9.json @@ -7,12 +7,8 @@ "CVE-2022-45119" ], "details": "This CVE is not valid.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-j6j9-rh67-v2gm/GHSA-j6j9-rh67-v2gm.json b/advisories/unreviewed/2022/12/GHSA-j6j9-rh67-v2gm/GHSA-j6j9-rh67-v2gm.json index 8f9b3332dbe..15ab9dc699e 100644 --- a/advisories/unreviewed/2022/12/GHSA-j6j9-rh67-v2gm/GHSA-j6j9-rh67-v2gm.json +++ b/advisories/unreviewed/2022/12/GHSA-j6j9-rh67-v2gm/GHSA-j6j9-rh67-v2gm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-v3h7-vj8g-6x3r/GHSA-v3h7-vj8g-6x3r.json b/advisories/unreviewed/2022/12/GHSA-v3h7-vj8g-6x3r/GHSA-v3h7-vj8g-6x3r.json index 4cc37ac61ca..617b545a34e 100644 --- a/advisories/unreviewed/2022/12/GHSA-v3h7-vj8g-6x3r/GHSA-v3h7-vj8g-6x3r.json +++ b/advisories/unreviewed/2022/12/GHSA-v3h7-vj8g-6x3r/GHSA-v3h7-vj8g-6x3r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-93gm-2pxg-46p3/GHSA-93gm-2pxg-46p3.json b/advisories/unreviewed/2023/01/GHSA-93gm-2pxg-46p3/GHSA-93gm-2pxg-46p3.json index acc7c38005f..931ab5f00bd 100644 --- a/advisories/unreviewed/2023/01/GHSA-93gm-2pxg-46p3/GHSA-93gm-2pxg-46p3.json +++ b/advisories/unreviewed/2023/01/GHSA-93gm-2pxg-46p3/GHSA-93gm-2pxg-46p3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cwwc-wx48-34j4/GHSA-cwwc-wx48-34j4.json b/advisories/unreviewed/2023/01/GHSA-cwwc-wx48-34j4/GHSA-cwwc-wx48-34j4.json index ccbee5daa19..85b476a0bf6 100644 --- a/advisories/unreviewed/2023/01/GHSA-cwwc-wx48-34j4/GHSA-cwwc-wx48-34j4.json +++ b/advisories/unreviewed/2023/01/GHSA-cwwc-wx48-34j4/GHSA-cwwc-wx48-34j4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-g5qm-9vfh-g7wg/GHSA-g5qm-9vfh-g7wg.json b/advisories/unreviewed/2023/01/GHSA-g5qm-9vfh-g7wg/GHSA-g5qm-9vfh-g7wg.json index 6b666592f1a..5c8550ebcf1 100644 --- a/advisories/unreviewed/2023/01/GHSA-g5qm-9vfh-g7wg/GHSA-g5qm-9vfh-g7wg.json +++ b/advisories/unreviewed/2023/01/GHSA-g5qm-9vfh-g7wg/GHSA-g5qm-9vfh-g7wg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-h482-q98v-xjj2/GHSA-h482-q98v-xjj2.json b/advisories/unreviewed/2023/01/GHSA-h482-q98v-xjj2/GHSA-h482-q98v-xjj2.json index c14a2becde2..72c81965008 100644 --- a/advisories/unreviewed/2023/01/GHSA-h482-q98v-xjj2/GHSA-h482-q98v-xjj2.json +++ b/advisories/unreviewed/2023/01/GHSA-h482-q98v-xjj2/GHSA-h482-q98v-xjj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-qg4g-qvgv-f8q2/GHSA-qg4g-qvgv-f8q2.json b/advisories/unreviewed/2023/01/GHSA-qg4g-qvgv-f8q2/GHSA-qg4g-qvgv-f8q2.json index c740f63a0aa..f6798aea7c9 100644 --- a/advisories/unreviewed/2023/01/GHSA-qg4g-qvgv-f8q2/GHSA-qg4g-qvgv-f8q2.json +++ b/advisories/unreviewed/2023/01/GHSA-qg4g-qvgv-f8q2/GHSA-qg4g-qvgv-f8q2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-vr7c-2689-3g2p/GHSA-vr7c-2689-3g2p.json b/advisories/unreviewed/2023/01/GHSA-vr7c-2689-3g2p/GHSA-vr7c-2689-3g2p.json index 15b0df7eea6..a7fe2d152a8 100644 --- a/advisories/unreviewed/2023/01/GHSA-vr7c-2689-3g2p/GHSA-vr7c-2689-3g2p.json +++ b/advisories/unreviewed/2023/01/GHSA-vr7c-2689-3g2p/GHSA-vr7c-2689-3g2p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-whpp-wrm6-2p63/GHSA-whpp-wrm6-2p63.json b/advisories/unreviewed/2023/01/GHSA-whpp-wrm6-2p63/GHSA-whpp-wrm6-2p63.json index cdb98b554e5..7683a04815f 100644 --- a/advisories/unreviewed/2023/01/GHSA-whpp-wrm6-2p63/GHSA-whpp-wrm6-2p63.json +++ b/advisories/unreviewed/2023/01/GHSA-whpp-wrm6-2p63/GHSA-whpp-wrm6-2p63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-wv48-pvf9-qv86/GHSA-wv48-pvf9-qv86.json b/advisories/unreviewed/2023/01/GHSA-wv48-pvf9-qv86/GHSA-wv48-pvf9-qv86.json index d077faa41f6..02b5fb6cab7 100644 --- a/advisories/unreviewed/2023/01/GHSA-wv48-pvf9-qv86/GHSA-wv48-pvf9-qv86.json +++ b/advisories/unreviewed/2023/01/GHSA-wv48-pvf9-qv86/GHSA-wv48-pvf9-qv86.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-wvq3-mfmm-c65c/GHSA-wvq3-mfmm-c65c.json b/advisories/unreviewed/2023/01/GHSA-wvq3-mfmm-c65c/GHSA-wvq3-mfmm-c65c.json index 3bde94eb4ab..d8b981d2e4e 100644 --- a/advisories/unreviewed/2023/01/GHSA-wvq3-mfmm-c65c/GHSA-wvq3-mfmm-c65c.json +++ b/advisories/unreviewed/2023/01/GHSA-wvq3-mfmm-c65c/GHSA-wvq3-mfmm-c65c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-xhmj-4cpg-8x53/GHSA-xhmj-4cpg-8x53.json b/advisories/unreviewed/2023/01/GHSA-xhmj-4cpg-8x53/GHSA-xhmj-4cpg-8x53.json index 2780fc5da18..8d4dbaacdfc 100644 --- a/advisories/unreviewed/2023/01/GHSA-xhmj-4cpg-8x53/GHSA-xhmj-4cpg-8x53.json +++ b/advisories/unreviewed/2023/01/GHSA-xhmj-4cpg-8x53/GHSA-xhmj-4cpg-8x53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-9wmw-wg92-52h9/GHSA-9wmw-wg92-52h9.json b/advisories/unreviewed/2023/03/GHSA-9wmw-wg92-52h9/GHSA-9wmw-wg92-52h9.json index 2f957291d12..b32ca3906aa 100644 --- a/advisories/unreviewed/2023/03/GHSA-9wmw-wg92-52h9/GHSA-9wmw-wg92-52h9.json +++ b/advisories/unreviewed/2023/03/GHSA-9wmw-wg92-52h9/GHSA-9wmw-wg92-52h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-ghwg-ghc8-5p6j/GHSA-ghwg-ghc8-5p6j.json b/advisories/unreviewed/2023/03/GHSA-ghwg-ghc8-5p6j/GHSA-ghwg-ghc8-5p6j.json index ffa176e0aae..2a7fdd85188 100644 --- a/advisories/unreviewed/2023/03/GHSA-ghwg-ghc8-5p6j/GHSA-ghwg-ghc8-5p6j.json +++ b/advisories/unreviewed/2023/03/GHSA-ghwg-ghc8-5p6j/GHSA-ghwg-ghc8-5p6j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-8v5j-pwr7-w5f8/GHSA-8v5j-pwr7-w5f8.json b/advisories/unreviewed/2023/04/GHSA-8v5j-pwr7-w5f8/GHSA-8v5j-pwr7-w5f8.json index cfec60acbbe..550bafdf5d5 100644 --- a/advisories/unreviewed/2023/04/GHSA-8v5j-pwr7-w5f8/GHSA-8v5j-pwr7-w5f8.json +++ b/advisories/unreviewed/2023/04/GHSA-8v5j-pwr7-w5f8/GHSA-8v5j-pwr7-w5f8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-9f7g-gqwh-jpf5/GHSA-9f7g-gqwh-jpf5.json b/advisories/unreviewed/2023/04/GHSA-9f7g-gqwh-jpf5/GHSA-9f7g-gqwh-jpf5.json index d5db866c011..38714f87fbd 100644 --- a/advisories/unreviewed/2023/04/GHSA-9f7g-gqwh-jpf5/GHSA-9f7g-gqwh-jpf5.json +++ b/advisories/unreviewed/2023/04/GHSA-9f7g-gqwh-jpf5/GHSA-9f7g-gqwh-jpf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-fp86-2355-v99r/GHSA-fp86-2355-v99r.json b/advisories/unreviewed/2023/04/GHSA-fp86-2355-v99r/GHSA-fp86-2355-v99r.json index 95713eeb11f..9cf18972ec1 100644 --- a/advisories/unreviewed/2023/04/GHSA-fp86-2355-v99r/GHSA-fp86-2355-v99r.json +++ b/advisories/unreviewed/2023/04/GHSA-fp86-2355-v99r/GHSA-fp86-2355-v99r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-v4m2-x4rp-hv22/GHSA-v4m2-x4rp-hv22.json b/advisories/unreviewed/2023/04/GHSA-v4m2-x4rp-hv22/GHSA-v4m2-x4rp-hv22.json index 5fb29edff71..5f525cc0312 100644 --- a/advisories/unreviewed/2023/04/GHSA-v4m2-x4rp-hv22/GHSA-v4m2-x4rp-hv22.json +++ b/advisories/unreviewed/2023/04/GHSA-v4m2-x4rp-hv22/GHSA-v4m2-x4rp-hv22.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-m3qw-f5f6-m6r3/GHSA-m3qw-f5f6-m6r3.json b/advisories/unreviewed/2023/06/GHSA-m3qw-f5f6-m6r3/GHSA-m3qw-f5f6-m6r3.json index 27d289c6c0d..7b57c3c1a70 100644 --- a/advisories/unreviewed/2023/06/GHSA-m3qw-f5f6-m6r3/GHSA-m3qw-f5f6-m6r3.json +++ b/advisories/unreviewed/2023/06/GHSA-m3qw-f5f6-m6r3/GHSA-m3qw-f5f6-m6r3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-mvwm-rcrw-pr2j/GHSA-mvwm-rcrw-pr2j.json b/advisories/unreviewed/2023/06/GHSA-mvwm-rcrw-pr2j/GHSA-mvwm-rcrw-pr2j.json index c9b781c49fa..6a1e9aa8aa9 100644 --- a/advisories/unreviewed/2023/06/GHSA-mvwm-rcrw-pr2j/GHSA-mvwm-rcrw-pr2j.json +++ b/advisories/unreviewed/2023/06/GHSA-mvwm-rcrw-pr2j/GHSA-mvwm-rcrw-pr2j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-22r3-hxrp-33gc/GHSA-22r3-hxrp-33gc.json b/advisories/unreviewed/2023/07/GHSA-22r3-hxrp-33gc/GHSA-22r3-hxrp-33gc.json index 92fae513059..1a1b9a08c2a 100644 --- a/advisories/unreviewed/2023/07/GHSA-22r3-hxrp-33gc/GHSA-22r3-hxrp-33gc.json +++ b/advisories/unreviewed/2023/07/GHSA-22r3-hxrp-33gc/GHSA-22r3-hxrp-33gc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-f6cm-fmx2-2v57/GHSA-f6cm-fmx2-2v57.json b/advisories/unreviewed/2023/07/GHSA-f6cm-fmx2-2v57/GHSA-f6cm-fmx2-2v57.json index 74c33310864..685bb3b8bb5 100644 --- a/advisories/unreviewed/2023/07/GHSA-f6cm-fmx2-2v57/GHSA-f6cm-fmx2-2v57.json +++ b/advisories/unreviewed/2023/07/GHSA-f6cm-fmx2-2v57/GHSA-f6cm-fmx2-2v57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-gm85-c692-g62r/GHSA-gm85-c692-g62r.json b/advisories/unreviewed/2023/07/GHSA-gm85-c692-g62r/GHSA-gm85-c692-g62r.json index 3fa364fe40d..f96ce267be0 100644 --- a/advisories/unreviewed/2023/07/GHSA-gm85-c692-g62r/GHSA-gm85-c692-g62r.json +++ b/advisories/unreviewed/2023/07/GHSA-gm85-c692-g62r/GHSA-gm85-c692-g62r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-jfwr-hq92-w8gg/GHSA-jfwr-hq92-w8gg.json b/advisories/unreviewed/2023/07/GHSA-jfwr-hq92-w8gg/GHSA-jfwr-hq92-w8gg.json index 393c9809798..05077d7fa80 100644 --- a/advisories/unreviewed/2023/07/GHSA-jfwr-hq92-w8gg/GHSA-jfwr-hq92-w8gg.json +++ b/advisories/unreviewed/2023/07/GHSA-jfwr-hq92-w8gg/GHSA-jfwr-hq92-w8gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-jjh9-589p-ccp8/GHSA-jjh9-589p-ccp8.json b/advisories/unreviewed/2023/07/GHSA-jjh9-589p-ccp8/GHSA-jjh9-589p-ccp8.json index 447ad2c10e2..93e3ed17a1b 100644 --- a/advisories/unreviewed/2023/07/GHSA-jjh9-589p-ccp8/GHSA-jjh9-589p-ccp8.json +++ b/advisories/unreviewed/2023/07/GHSA-jjh9-589p-ccp8/GHSA-jjh9-589p-ccp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-xc42-985m-4jpv/GHSA-xc42-985m-4jpv.json b/advisories/unreviewed/2023/07/GHSA-xc42-985m-4jpv/GHSA-xc42-985m-4jpv.json index a1c2c0b297f..2b881ff88ce 100644 --- a/advisories/unreviewed/2023/07/GHSA-xc42-985m-4jpv/GHSA-xc42-985m-4jpv.json +++ b/advisories/unreviewed/2023/07/GHSA-xc42-985m-4jpv/GHSA-xc42-985m-4jpv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-4p5q-8w47-w97r/GHSA-4p5q-8w47-w97r.json b/advisories/unreviewed/2023/08/GHSA-4p5q-8w47-w97r/GHSA-4p5q-8w47-w97r.json index 8478f3d1d0e..08af16d5858 100644 --- a/advisories/unreviewed/2023/08/GHSA-4p5q-8w47-w97r/GHSA-4p5q-8w47-w97r.json +++ b/advisories/unreviewed/2023/08/GHSA-4p5q-8w47-w97r/GHSA-4p5q-8w47-w97r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-5w4c-x7fv-v2g8/GHSA-5w4c-x7fv-v2g8.json b/advisories/unreviewed/2023/08/GHSA-5w4c-x7fv-v2g8/GHSA-5w4c-x7fv-v2g8.json index bfe832d8f15..9a65958e904 100644 --- a/advisories/unreviewed/2023/08/GHSA-5w4c-x7fv-v2g8/GHSA-5w4c-x7fv-v2g8.json +++ b/advisories/unreviewed/2023/08/GHSA-5w4c-x7fv-v2g8/GHSA-5w4c-x7fv-v2g8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-922r-4m8j-g3hx/GHSA-922r-4m8j-g3hx.json b/advisories/unreviewed/2023/08/GHSA-922r-4m8j-g3hx/GHSA-922r-4m8j-g3hx.json index 812b0664b72..e3ed76f4729 100644 --- a/advisories/unreviewed/2023/08/GHSA-922r-4m8j-g3hx/GHSA-922r-4m8j-g3hx.json +++ b/advisories/unreviewed/2023/08/GHSA-922r-4m8j-g3hx/GHSA-922r-4m8j-g3hx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-f4mg-7m9f-26xv/GHSA-f4mg-7m9f-26xv.json b/advisories/unreviewed/2023/08/GHSA-f4mg-7m9f-26xv/GHSA-f4mg-7m9f-26xv.json index 704a43fdadd..bf020104031 100644 --- a/advisories/unreviewed/2023/08/GHSA-f4mg-7m9f-26xv/GHSA-f4mg-7m9f-26xv.json +++ b/advisories/unreviewed/2023/08/GHSA-f4mg-7m9f-26xv/GHSA-f4mg-7m9f-26xv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-ph2h-6cc9-xf5r/GHSA-ph2h-6cc9-xf5r.json b/advisories/unreviewed/2023/08/GHSA-ph2h-6cc9-xf5r/GHSA-ph2h-6cc9-xf5r.json index 0c1920eadd4..7c46fc6605f 100644 --- a/advisories/unreviewed/2023/08/GHSA-ph2h-6cc9-xf5r/GHSA-ph2h-6cc9-xf5r.json +++ b/advisories/unreviewed/2023/08/GHSA-ph2h-6cc9-xf5r/GHSA-ph2h-6cc9-xf5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-w6pm-7x44-m335/GHSA-w6pm-7x44-m335.json b/advisories/unreviewed/2023/08/GHSA-w6pm-7x44-m335/GHSA-w6pm-7x44-m335.json index 3f38055739f..03ec03577d5 100644 --- a/advisories/unreviewed/2023/08/GHSA-w6pm-7x44-m335/GHSA-w6pm-7x44-m335.json +++ b/advisories/unreviewed/2023/08/GHSA-w6pm-7x44-m335/GHSA-w6pm-7x44-m335.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-6mqc-xv9m-7m85/GHSA-6mqc-xv9m-7m85.json b/advisories/unreviewed/2023/09/GHSA-6mqc-xv9m-7m85/GHSA-6mqc-xv9m-7m85.json index 0be2405155e..7f3b61e0c1e 100644 --- a/advisories/unreviewed/2023/09/GHSA-6mqc-xv9m-7m85/GHSA-6mqc-xv9m-7m85.json +++ b/advisories/unreviewed/2023/09/GHSA-6mqc-xv9m-7m85/GHSA-6mqc-xv9m-7m85.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-pq9p-wffw-c523/GHSA-pq9p-wffw-c523.json b/advisories/unreviewed/2023/09/GHSA-pq9p-wffw-c523/GHSA-pq9p-wffw-c523.json index cc759a1d74a..62e4d53996d 100644 --- a/advisories/unreviewed/2023/09/GHSA-pq9p-wffw-c523/GHSA-pq9p-wffw-c523.json +++ b/advisories/unreviewed/2023/09/GHSA-pq9p-wffw-c523/GHSA-pq9p-wffw-c523.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-rvpg-jj9h-7jcw/GHSA-rvpg-jj9h-7jcw.json b/advisories/unreviewed/2023/09/GHSA-rvpg-jj9h-7jcw/GHSA-rvpg-jj9h-7jcw.json index 8c04a1e5462..9ca6161a6a7 100644 --- a/advisories/unreviewed/2023/09/GHSA-rvpg-jj9h-7jcw/GHSA-rvpg-jj9h-7jcw.json +++ b/advisories/unreviewed/2023/09/GHSA-rvpg-jj9h-7jcw/GHSA-rvpg-jj9h-7jcw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-33fq-cj88-4v27/GHSA-33fq-cj88-4v27.json b/advisories/unreviewed/2023/10/GHSA-33fq-cj88-4v27/GHSA-33fq-cj88-4v27.json index 6a53803fe89..f2591d44291 100644 --- a/advisories/unreviewed/2023/10/GHSA-33fq-cj88-4v27/GHSA-33fq-cj88-4v27.json +++ b/advisories/unreviewed/2023/10/GHSA-33fq-cj88-4v27/GHSA-33fq-cj88-4v27.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-6cr3-pfhw-g3c7/GHSA-6cr3-pfhw-g3c7.json b/advisories/unreviewed/2023/10/GHSA-6cr3-pfhw-g3c7/GHSA-6cr3-pfhw-g3c7.json index 5814e6615d2..094b6c18ebe 100644 --- a/advisories/unreviewed/2023/10/GHSA-6cr3-pfhw-g3c7/GHSA-6cr3-pfhw-g3c7.json +++ b/advisories/unreviewed/2023/10/GHSA-6cr3-pfhw-g3c7/GHSA-6cr3-pfhw-g3c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-j2mm-q34r-gvxp/GHSA-j2mm-q34r-gvxp.json b/advisories/unreviewed/2023/10/GHSA-j2mm-q34r-gvxp/GHSA-j2mm-q34r-gvxp.json index d2f8d965f97..0eaf83b0b0f 100644 --- a/advisories/unreviewed/2023/10/GHSA-j2mm-q34r-gvxp/GHSA-j2mm-q34r-gvxp.json +++ b/advisories/unreviewed/2023/10/GHSA-j2mm-q34r-gvxp/GHSA-j2mm-q34r-gvxp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-qccg-wvf8-rvfq/GHSA-qccg-wvf8-rvfq.json b/advisories/unreviewed/2023/10/GHSA-qccg-wvf8-rvfq/GHSA-qccg-wvf8-rvfq.json index 6057c0311eb..4a67baba7fe 100644 --- a/advisories/unreviewed/2023/10/GHSA-qccg-wvf8-rvfq/GHSA-qccg-wvf8-rvfq.json +++ b/advisories/unreviewed/2023/10/GHSA-qccg-wvf8-rvfq/GHSA-qccg-wvf8-rvfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-wpjj-rrr4-p36v/GHSA-wpjj-rrr4-p36v.json b/advisories/unreviewed/2023/10/GHSA-wpjj-rrr4-p36v/GHSA-wpjj-rrr4-p36v.json index 89d18b841b1..d9c39a6f27e 100644 --- a/advisories/unreviewed/2023/10/GHSA-wpjj-rrr4-p36v/GHSA-wpjj-rrr4-p36v.json +++ b/advisories/unreviewed/2023/10/GHSA-wpjj-rrr4-p36v/GHSA-wpjj-rrr4-p36v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-2jf9-9rxc-j63c/GHSA-2jf9-9rxc-j63c.json b/advisories/unreviewed/2023/11/GHSA-2jf9-9rxc-j63c/GHSA-2jf9-9rxc-j63c.json index 720ec8faa82..493a3ff5575 100644 --- a/advisories/unreviewed/2023/11/GHSA-2jf9-9rxc-j63c/GHSA-2jf9-9rxc-j63c.json +++ b/advisories/unreviewed/2023/11/GHSA-2jf9-9rxc-j63c/GHSA-2jf9-9rxc-j63c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-49p4-5fq3-8pq9/GHSA-49p4-5fq3-8pq9.json b/advisories/unreviewed/2023/11/GHSA-49p4-5fq3-8pq9/GHSA-49p4-5fq3-8pq9.json index 463ceae910a..c7327cb9311 100644 --- a/advisories/unreviewed/2023/11/GHSA-49p4-5fq3-8pq9/GHSA-49p4-5fq3-8pq9.json +++ b/advisories/unreviewed/2023/11/GHSA-49p4-5fq3-8pq9/GHSA-49p4-5fq3-8pq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-f8v5-2g96-j9mq/GHSA-f8v5-2g96-j9mq.json b/advisories/unreviewed/2023/11/GHSA-f8v5-2g96-j9mq/GHSA-f8v5-2g96-j9mq.json index fef5dba4144..8be89c70140 100644 --- a/advisories/unreviewed/2023/11/GHSA-f8v5-2g96-j9mq/GHSA-f8v5-2g96-j9mq.json +++ b/advisories/unreviewed/2023/11/GHSA-f8v5-2g96-j9mq/GHSA-f8v5-2g96-j9mq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2865-jgr8-fxmw/GHSA-2865-jgr8-fxmw.json b/advisories/unreviewed/2023/12/GHSA-2865-jgr8-fxmw/GHSA-2865-jgr8-fxmw.json index 2af8e1b52d5..d069aa2e902 100644 --- a/advisories/unreviewed/2023/12/GHSA-2865-jgr8-fxmw/GHSA-2865-jgr8-fxmw.json +++ b/advisories/unreviewed/2023/12/GHSA-2865-jgr8-fxmw/GHSA-2865-jgr8-fxmw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-29vv-cm5q-39mc/GHSA-29vv-cm5q-39mc.json b/advisories/unreviewed/2023/12/GHSA-29vv-cm5q-39mc/GHSA-29vv-cm5q-39mc.json index 47f4aa03392..c841861e29e 100644 --- a/advisories/unreviewed/2023/12/GHSA-29vv-cm5q-39mc/GHSA-29vv-cm5q-39mc.json +++ b/advisories/unreviewed/2023/12/GHSA-29vv-cm5q-39mc/GHSA-29vv-cm5q-39mc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-2gc9-2cfg-w7jm/GHSA-2gc9-2cfg-w7jm.json b/advisories/unreviewed/2023/12/GHSA-2gc9-2cfg-w7jm/GHSA-2gc9-2cfg-w7jm.json index 28d3183c377..e28cab45b5e 100644 --- a/advisories/unreviewed/2023/12/GHSA-2gc9-2cfg-w7jm/GHSA-2gc9-2cfg-w7jm.json +++ b/advisories/unreviewed/2023/12/GHSA-2gc9-2cfg-w7jm/GHSA-2gc9-2cfg-w7jm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-2wx3-wgwm-8jh9/GHSA-2wx3-wgwm-8jh9.json b/advisories/unreviewed/2023/12/GHSA-2wx3-wgwm-8jh9/GHSA-2wx3-wgwm-8jh9.json index 5d97f6ea49a..f33c9b67eaa 100644 --- a/advisories/unreviewed/2023/12/GHSA-2wx3-wgwm-8jh9/GHSA-2wx3-wgwm-8jh9.json +++ b/advisories/unreviewed/2023/12/GHSA-2wx3-wgwm-8jh9/GHSA-2wx3-wgwm-8jh9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-427f-qf2r-ffq3/GHSA-427f-qf2r-ffq3.json b/advisories/unreviewed/2023/12/GHSA-427f-qf2r-ffq3/GHSA-427f-qf2r-ffq3.json index 65a11d933a0..7b179f1372a 100644 --- a/advisories/unreviewed/2023/12/GHSA-427f-qf2r-ffq3/GHSA-427f-qf2r-ffq3.json +++ b/advisories/unreviewed/2023/12/GHSA-427f-qf2r-ffq3/GHSA-427f-qf2r-ffq3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4j6x-xr54-7mgg/GHSA-4j6x-xr54-7mgg.json b/advisories/unreviewed/2023/12/GHSA-4j6x-xr54-7mgg/GHSA-4j6x-xr54-7mgg.json index e87f0a55607..0c9d963f039 100644 --- a/advisories/unreviewed/2023/12/GHSA-4j6x-xr54-7mgg/GHSA-4j6x-xr54-7mgg.json +++ b/advisories/unreviewed/2023/12/GHSA-4j6x-xr54-7mgg/GHSA-4j6x-xr54-7mgg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4v5v-pg2w-hjcf/GHSA-4v5v-pg2w-hjcf.json b/advisories/unreviewed/2023/12/GHSA-4v5v-pg2w-hjcf/GHSA-4v5v-pg2w-hjcf.json index 1c9b50ad3c5..15cb043f81b 100644 --- a/advisories/unreviewed/2023/12/GHSA-4v5v-pg2w-hjcf/GHSA-4v5v-pg2w-hjcf.json +++ b/advisories/unreviewed/2023/12/GHSA-4v5v-pg2w-hjcf/GHSA-4v5v-pg2w-hjcf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4xwx-j57j-fvrx/GHSA-4xwx-j57j-fvrx.json b/advisories/unreviewed/2023/12/GHSA-4xwx-j57j-fvrx/GHSA-4xwx-j57j-fvrx.json index 3fdb24f1470..1ba3efab3e3 100644 --- a/advisories/unreviewed/2023/12/GHSA-4xwx-j57j-fvrx/GHSA-4xwx-j57j-fvrx.json +++ b/advisories/unreviewed/2023/12/GHSA-4xwx-j57j-fvrx/GHSA-4xwx-j57j-fvrx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5458-8382-84h9/GHSA-5458-8382-84h9.json b/advisories/unreviewed/2023/12/GHSA-5458-8382-84h9/GHSA-5458-8382-84h9.json index e400f022aa7..bcf5b97bd6c 100644 --- a/advisories/unreviewed/2023/12/GHSA-5458-8382-84h9/GHSA-5458-8382-84h9.json +++ b/advisories/unreviewed/2023/12/GHSA-5458-8382-84h9/GHSA-5458-8382-84h9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-5p8c-5878-m3xr/GHSA-5p8c-5878-m3xr.json b/advisories/unreviewed/2023/12/GHSA-5p8c-5878-m3xr/GHSA-5p8c-5878-m3xr.json index 17cd2881fc0..283da92d7eb 100644 --- a/advisories/unreviewed/2023/12/GHSA-5p8c-5878-m3xr/GHSA-5p8c-5878-m3xr.json +++ b/advisories/unreviewed/2023/12/GHSA-5p8c-5878-m3xr/GHSA-5p8c-5878-m3xr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-5wr2-8999-crcx/GHSA-5wr2-8999-crcx.json b/advisories/unreviewed/2023/12/GHSA-5wr2-8999-crcx/GHSA-5wr2-8999-crcx.json index f8a3d2717f4..09b6bf86b55 100644 --- a/advisories/unreviewed/2023/12/GHSA-5wr2-8999-crcx/GHSA-5wr2-8999-crcx.json +++ b/advisories/unreviewed/2023/12/GHSA-5wr2-8999-crcx/GHSA-5wr2-8999-crcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-63cq-qp74-7w56/GHSA-63cq-qp74-7w56.json b/advisories/unreviewed/2023/12/GHSA-63cq-qp74-7w56/GHSA-63cq-qp74-7w56.json index bd1591170e1..e6593a2790c 100644 --- a/advisories/unreviewed/2023/12/GHSA-63cq-qp74-7w56/GHSA-63cq-qp74-7w56.json +++ b/advisories/unreviewed/2023/12/GHSA-63cq-qp74-7w56/GHSA-63cq-qp74-7w56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-69m3-5g7g-x3r7/GHSA-69m3-5g7g-x3r7.json b/advisories/unreviewed/2023/12/GHSA-69m3-5g7g-x3r7/GHSA-69m3-5g7g-x3r7.json index 9bca0b4b3f9..4a1d34e2b4f 100644 --- a/advisories/unreviewed/2023/12/GHSA-69m3-5g7g-x3r7/GHSA-69m3-5g7g-x3r7.json +++ b/advisories/unreviewed/2023/12/GHSA-69m3-5g7g-x3r7/GHSA-69m3-5g7g-x3r7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-75fj-hhgg-q745/GHSA-75fj-hhgg-q745.json b/advisories/unreviewed/2023/12/GHSA-75fj-hhgg-q745/GHSA-75fj-hhgg-q745.json index a7e829a7e3e..a7273aa6f0e 100644 --- a/advisories/unreviewed/2023/12/GHSA-75fj-hhgg-q745/GHSA-75fj-hhgg-q745.json +++ b/advisories/unreviewed/2023/12/GHSA-75fj-hhgg-q745/GHSA-75fj-hhgg-q745.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-79ww-5cvq-f84f/GHSA-79ww-5cvq-f84f.json b/advisories/unreviewed/2023/12/GHSA-79ww-5cvq-f84f/GHSA-79ww-5cvq-f84f.json index 9e3aa42c296..3dbd1845555 100644 --- a/advisories/unreviewed/2023/12/GHSA-79ww-5cvq-f84f/GHSA-79ww-5cvq-f84f.json +++ b/advisories/unreviewed/2023/12/GHSA-79ww-5cvq-f84f/GHSA-79ww-5cvq-f84f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7cr4-32jg-hwx2/GHSA-7cr4-32jg-hwx2.json b/advisories/unreviewed/2023/12/GHSA-7cr4-32jg-hwx2/GHSA-7cr4-32jg-hwx2.json index 53977acb05a..dcc0a47c2f7 100644 --- a/advisories/unreviewed/2023/12/GHSA-7cr4-32jg-hwx2/GHSA-7cr4-32jg-hwx2.json +++ b/advisories/unreviewed/2023/12/GHSA-7cr4-32jg-hwx2/GHSA-7cr4-32jg-hwx2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7ff9-r6g6-8956/GHSA-7ff9-r6g6-8956.json b/advisories/unreviewed/2023/12/GHSA-7ff9-r6g6-8956/GHSA-7ff9-r6g6-8956.json index 57d89e5b402..9ba2eca5c0d 100644 --- a/advisories/unreviewed/2023/12/GHSA-7ff9-r6g6-8956/GHSA-7ff9-r6g6-8956.json +++ b/advisories/unreviewed/2023/12/GHSA-7ff9-r6g6-8956/GHSA-7ff9-r6g6-8956.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7jv7-3r2p-mrpw/GHSA-7jv7-3r2p-mrpw.json b/advisories/unreviewed/2023/12/GHSA-7jv7-3r2p-mrpw/GHSA-7jv7-3r2p-mrpw.json index 502e45885cc..c7d3cfd9184 100644 --- a/advisories/unreviewed/2023/12/GHSA-7jv7-3r2p-mrpw/GHSA-7jv7-3r2p-mrpw.json +++ b/advisories/unreviewed/2023/12/GHSA-7jv7-3r2p-mrpw/GHSA-7jv7-3r2p-mrpw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-7xp2-7hw7-rv8q/GHSA-7xp2-7hw7-rv8q.json b/advisories/unreviewed/2023/12/GHSA-7xp2-7hw7-rv8q/GHSA-7xp2-7hw7-rv8q.json index 53ff2133293..2113b0b382e 100644 --- a/advisories/unreviewed/2023/12/GHSA-7xp2-7hw7-rv8q/GHSA-7xp2-7hw7-rv8q.json +++ b/advisories/unreviewed/2023/12/GHSA-7xp2-7hw7-rv8q/GHSA-7xp2-7hw7-rv8q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-84pc-mjpf-2cmc/GHSA-84pc-mjpf-2cmc.json b/advisories/unreviewed/2023/12/GHSA-84pc-mjpf-2cmc/GHSA-84pc-mjpf-2cmc.json index af63b569a22..1d7537a7b08 100644 --- a/advisories/unreviewed/2023/12/GHSA-84pc-mjpf-2cmc/GHSA-84pc-mjpf-2cmc.json +++ b/advisories/unreviewed/2023/12/GHSA-84pc-mjpf-2cmc/GHSA-84pc-mjpf-2cmc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8f68-68mm-w72g/GHSA-8f68-68mm-w72g.json b/advisories/unreviewed/2023/12/GHSA-8f68-68mm-w72g/GHSA-8f68-68mm-w72g.json index d9a8ce199a7..2b3c1b7f2d4 100644 --- a/advisories/unreviewed/2023/12/GHSA-8f68-68mm-w72g/GHSA-8f68-68mm-w72g.json +++ b/advisories/unreviewed/2023/12/GHSA-8f68-68mm-w72g/GHSA-8f68-68mm-w72g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8rvj-w5g5-prc2/GHSA-8rvj-w5g5-prc2.json b/advisories/unreviewed/2023/12/GHSA-8rvj-w5g5-prc2/GHSA-8rvj-w5g5-prc2.json index 73c30445bb8..b7b0a430c53 100644 --- a/advisories/unreviewed/2023/12/GHSA-8rvj-w5g5-prc2/GHSA-8rvj-w5g5-prc2.json +++ b/advisories/unreviewed/2023/12/GHSA-8rvj-w5g5-prc2/GHSA-8rvj-w5g5-prc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8w2h-6vxv-f8qm/GHSA-8w2h-6vxv-f8qm.json b/advisories/unreviewed/2023/12/GHSA-8w2h-6vxv-f8qm/GHSA-8w2h-6vxv-f8qm.json index d41a31f61bb..220f6d49eca 100644 --- a/advisories/unreviewed/2023/12/GHSA-8w2h-6vxv-f8qm/GHSA-8w2h-6vxv-f8qm.json +++ b/advisories/unreviewed/2023/12/GHSA-8w2h-6vxv-f8qm/GHSA-8w2h-6vxv-f8qm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-9q2h-gmqj-3mxj/GHSA-9q2h-gmqj-3mxj.json b/advisories/unreviewed/2023/12/GHSA-9q2h-gmqj-3mxj/GHSA-9q2h-gmqj-3mxj.json index ffaf24f6386..596c80eae90 100644 --- a/advisories/unreviewed/2023/12/GHSA-9q2h-gmqj-3mxj/GHSA-9q2h-gmqj-3mxj.json +++ b/advisories/unreviewed/2023/12/GHSA-9q2h-gmqj-3mxj/GHSA-9q2h-gmqj-3mxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-9qxf-hph3-rmgg/GHSA-9qxf-hph3-rmgg.json b/advisories/unreviewed/2023/12/GHSA-9qxf-hph3-rmgg/GHSA-9qxf-hph3-rmgg.json index 1540d154ee2..baf27118573 100644 --- a/advisories/unreviewed/2023/12/GHSA-9qxf-hph3-rmgg/GHSA-9qxf-hph3-rmgg.json +++ b/advisories/unreviewed/2023/12/GHSA-9qxf-hph3-rmgg/GHSA-9qxf-hph3-rmgg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c6fq-wjrx-2vv7/GHSA-c6fq-wjrx-2vv7.json b/advisories/unreviewed/2023/12/GHSA-c6fq-wjrx-2vv7/GHSA-c6fq-wjrx-2vv7.json index b94e08d536a..db9418435c9 100644 --- a/advisories/unreviewed/2023/12/GHSA-c6fq-wjrx-2vv7/GHSA-c6fq-wjrx-2vv7.json +++ b/advisories/unreviewed/2023/12/GHSA-c6fq-wjrx-2vv7/GHSA-c6fq-wjrx-2vv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-cj4r-q3q9-9m76/GHSA-cj4r-q3q9-9m76.json b/advisories/unreviewed/2023/12/GHSA-cj4r-q3q9-9m76/GHSA-cj4r-q3q9-9m76.json index eececc740e4..c6000dfcac1 100644 --- a/advisories/unreviewed/2023/12/GHSA-cj4r-q3q9-9m76/GHSA-cj4r-q3q9-9m76.json +++ b/advisories/unreviewed/2023/12/GHSA-cj4r-q3q9-9m76/GHSA-cj4r-q3q9-9m76.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-f786-73f3-cvmc/GHSA-f786-73f3-cvmc.json b/advisories/unreviewed/2023/12/GHSA-f786-73f3-cvmc/GHSA-f786-73f3-cvmc.json index b83f0408004..1f5722cee4a 100644 --- a/advisories/unreviewed/2023/12/GHSA-f786-73f3-cvmc/GHSA-f786-73f3-cvmc.json +++ b/advisories/unreviewed/2023/12/GHSA-f786-73f3-cvmc/GHSA-f786-73f3-cvmc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fc33-wf68-wr6h/GHSA-fc33-wf68-wr6h.json b/advisories/unreviewed/2023/12/GHSA-fc33-wf68-wr6h/GHSA-fc33-wf68-wr6h.json index bdaa24614e5..055a4c4f9eb 100644 --- a/advisories/unreviewed/2023/12/GHSA-fc33-wf68-wr6h/GHSA-fc33-wf68-wr6h.json +++ b/advisories/unreviewed/2023/12/GHSA-fc33-wf68-wr6h/GHSA-fc33-wf68-wr6h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-fv75-q8rq-39gj/GHSA-fv75-q8rq-39gj.json b/advisories/unreviewed/2023/12/GHSA-fv75-q8rq-39gj/GHSA-fv75-q8rq-39gj.json index 0027ea768a2..b64ea7e22ca 100644 --- a/advisories/unreviewed/2023/12/GHSA-fv75-q8rq-39gj/GHSA-fv75-q8rq-39gj.json +++ b/advisories/unreviewed/2023/12/GHSA-fv75-q8rq-39gj/GHSA-fv75-q8rq-39gj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fv9m-x5m2-3pqm/GHSA-fv9m-x5m2-3pqm.json b/advisories/unreviewed/2023/12/GHSA-fv9m-x5m2-3pqm/GHSA-fv9m-x5m2-3pqm.json index 2e724f0655a..3378d41addc 100644 --- a/advisories/unreviewed/2023/12/GHSA-fv9m-x5m2-3pqm/GHSA-fv9m-x5m2-3pqm.json +++ b/advisories/unreviewed/2023/12/GHSA-fv9m-x5m2-3pqm/GHSA-fv9m-x5m2-3pqm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-fw3x-xm29-cr83/GHSA-fw3x-xm29-cr83.json b/advisories/unreviewed/2023/12/GHSA-fw3x-xm29-cr83/GHSA-fw3x-xm29-cr83.json index 6083fbfc971..1d21b73740a 100644 --- a/advisories/unreviewed/2023/12/GHSA-fw3x-xm29-cr83/GHSA-fw3x-xm29-cr83.json +++ b/advisories/unreviewed/2023/12/GHSA-fw3x-xm29-cr83/GHSA-fw3x-xm29-cr83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-g66f-25mw-6v67/GHSA-g66f-25mw-6v67.json b/advisories/unreviewed/2023/12/GHSA-g66f-25mw-6v67/GHSA-g66f-25mw-6v67.json index 46e9460e556..e011df42668 100644 --- a/advisories/unreviewed/2023/12/GHSA-g66f-25mw-6v67/GHSA-g66f-25mw-6v67.json +++ b/advisories/unreviewed/2023/12/GHSA-g66f-25mw-6v67/GHSA-g66f-25mw-6v67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-ghgw-5fv7-r238/GHSA-ghgw-5fv7-r238.json b/advisories/unreviewed/2023/12/GHSA-ghgw-5fv7-r238/GHSA-ghgw-5fv7-r238.json index c93ed15ac9e..d20557617b0 100644 --- a/advisories/unreviewed/2023/12/GHSA-ghgw-5fv7-r238/GHSA-ghgw-5fv7-r238.json +++ b/advisories/unreviewed/2023/12/GHSA-ghgw-5fv7-r238/GHSA-ghgw-5fv7-r238.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-hcwm-3vqv-grvj/GHSA-hcwm-3vqv-grvj.json b/advisories/unreviewed/2023/12/GHSA-hcwm-3vqv-grvj/GHSA-hcwm-3vqv-grvj.json index 65be78aff26..bf243b31e33 100644 --- a/advisories/unreviewed/2023/12/GHSA-hcwm-3vqv-grvj/GHSA-hcwm-3vqv-grvj.json +++ b/advisories/unreviewed/2023/12/GHSA-hcwm-3vqv-grvj/GHSA-hcwm-3vqv-grvj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-hq5q-2gr8-54vj/GHSA-hq5q-2gr8-54vj.json b/advisories/unreviewed/2023/12/GHSA-hq5q-2gr8-54vj/GHSA-hq5q-2gr8-54vj.json index f4639af7f8d..912d458771f 100644 --- a/advisories/unreviewed/2023/12/GHSA-hq5q-2gr8-54vj/GHSA-hq5q-2gr8-54vj.json +++ b/advisories/unreviewed/2023/12/GHSA-hq5q-2gr8-54vj/GHSA-hq5q-2gr8-54vj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-hrmq-5jh7-w5pq/GHSA-hrmq-5jh7-w5pq.json b/advisories/unreviewed/2023/12/GHSA-hrmq-5jh7-w5pq/GHSA-hrmq-5jh7-w5pq.json index 6a3850ef881..29fa3dfb059 100644 --- a/advisories/unreviewed/2023/12/GHSA-hrmq-5jh7-w5pq/GHSA-hrmq-5jh7-w5pq.json +++ b/advisories/unreviewed/2023/12/GHSA-hrmq-5jh7-w5pq/GHSA-hrmq-5jh7-w5pq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jc8g-9q2p-m8vx/GHSA-jc8g-9q2p-m8vx.json b/advisories/unreviewed/2023/12/GHSA-jc8g-9q2p-m8vx/GHSA-jc8g-9q2p-m8vx.json index 1b225774933..9762d8387b3 100644 --- a/advisories/unreviewed/2023/12/GHSA-jc8g-9q2p-m8vx/GHSA-jc8g-9q2p-m8vx.json +++ b/advisories/unreviewed/2023/12/GHSA-jc8g-9q2p-m8vx/GHSA-jc8g-9q2p-m8vx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jjq7-34r5-gqwm/GHSA-jjq7-34r5-gqwm.json b/advisories/unreviewed/2023/12/GHSA-jjq7-34r5-gqwm/GHSA-jjq7-34r5-gqwm.json index 61841d13a24..001d8f93443 100644 --- a/advisories/unreviewed/2023/12/GHSA-jjq7-34r5-gqwm/GHSA-jjq7-34r5-gqwm.json +++ b/advisories/unreviewed/2023/12/GHSA-jjq7-34r5-gqwm/GHSA-jjq7-34r5-gqwm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jqgq-x29j-jv5r/GHSA-jqgq-x29j-jv5r.json b/advisories/unreviewed/2023/12/GHSA-jqgq-x29j-jv5r/GHSA-jqgq-x29j-jv5r.json index 080a8e3ebb4..efd9ccd1b10 100644 --- a/advisories/unreviewed/2023/12/GHSA-jqgq-x29j-jv5r/GHSA-jqgq-x29j-jv5r.json +++ b/advisories/unreviewed/2023/12/GHSA-jqgq-x29j-jv5r/GHSA-jqgq-x29j-jv5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-jr57-ff2j-px9c/GHSA-jr57-ff2j-px9c.json b/advisories/unreviewed/2023/12/GHSA-jr57-ff2j-px9c/GHSA-jr57-ff2j-px9c.json index 5d41c2104c6..9db06a4c609 100644 --- a/advisories/unreviewed/2023/12/GHSA-jr57-ff2j-px9c/GHSA-jr57-ff2j-px9c.json +++ b/advisories/unreviewed/2023/12/GHSA-jr57-ff2j-px9c/GHSA-jr57-ff2j-px9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-m4v7-37xm-pp39/GHSA-m4v7-37xm-pp39.json b/advisories/unreviewed/2023/12/GHSA-m4v7-37xm-pp39/GHSA-m4v7-37xm-pp39.json index 70d025f6a8e..872413e4b58 100644 --- a/advisories/unreviewed/2023/12/GHSA-m4v7-37xm-pp39/GHSA-m4v7-37xm-pp39.json +++ b/advisories/unreviewed/2023/12/GHSA-m4v7-37xm-pp39/GHSA-m4v7-37xm-pp39.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mhcq-ppww-6wf5/GHSA-mhcq-ppww-6wf5.json b/advisories/unreviewed/2023/12/GHSA-mhcq-ppww-6wf5/GHSA-mhcq-ppww-6wf5.json index b85d9e53a87..ece40894280 100644 --- a/advisories/unreviewed/2023/12/GHSA-mhcq-ppww-6wf5/GHSA-mhcq-ppww-6wf5.json +++ b/advisories/unreviewed/2023/12/GHSA-mhcq-ppww-6wf5/GHSA-mhcq-ppww-6wf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-mjjc-5jwq-cfxv/GHSA-mjjc-5jwq-cfxv.json b/advisories/unreviewed/2023/12/GHSA-mjjc-5jwq-cfxv/GHSA-mjjc-5jwq-cfxv.json index ece029c187b..100dc61b7a9 100644 --- a/advisories/unreviewed/2023/12/GHSA-mjjc-5jwq-cfxv/GHSA-mjjc-5jwq-cfxv.json +++ b/advisories/unreviewed/2023/12/GHSA-mjjc-5jwq-cfxv/GHSA-mjjc-5jwq-cfxv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mwj6-6ghh-97gx/GHSA-mwj6-6ghh-97gx.json b/advisories/unreviewed/2023/12/GHSA-mwj6-6ghh-97gx/GHSA-mwj6-6ghh-97gx.json index e013f67e156..6d84045aacf 100644 --- a/advisories/unreviewed/2023/12/GHSA-mwj6-6ghh-97gx/GHSA-mwj6-6ghh-97gx.json +++ b/advisories/unreviewed/2023/12/GHSA-mwj6-6ghh-97gx/GHSA-mwj6-6ghh-97gx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p89v-fx27-fcch/GHSA-p89v-fx27-fcch.json b/advisories/unreviewed/2023/12/GHSA-p89v-fx27-fcch/GHSA-p89v-fx27-fcch.json index bd9a7dc87bc..55a6801d90e 100644 --- a/advisories/unreviewed/2023/12/GHSA-p89v-fx27-fcch/GHSA-p89v-fx27-fcch.json +++ b/advisories/unreviewed/2023/12/GHSA-p89v-fx27-fcch/GHSA-p89v-fx27-fcch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-ph4p-2cvp-7p5f/GHSA-ph4p-2cvp-7p5f.json b/advisories/unreviewed/2023/12/GHSA-ph4p-2cvp-7p5f/GHSA-ph4p-2cvp-7p5f.json index 2d2a3bcd4a5..218fdfbe533 100644 --- a/advisories/unreviewed/2023/12/GHSA-ph4p-2cvp-7p5f/GHSA-ph4p-2cvp-7p5f.json +++ b/advisories/unreviewed/2023/12/GHSA-ph4p-2cvp-7p5f/GHSA-ph4p-2cvp-7p5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-pqf6-xcpm-9hfq/GHSA-pqf6-xcpm-9hfq.json b/advisories/unreviewed/2023/12/GHSA-pqf6-xcpm-9hfq/GHSA-pqf6-xcpm-9hfq.json index 19e1edd480c..d4255c49c1d 100644 --- a/advisories/unreviewed/2023/12/GHSA-pqf6-xcpm-9hfq/GHSA-pqf6-xcpm-9hfq.json +++ b/advisories/unreviewed/2023/12/GHSA-pqf6-xcpm-9hfq/GHSA-pqf6-xcpm-9hfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-prfj-cv9c-cgpw/GHSA-prfj-cv9c-cgpw.json b/advisories/unreviewed/2023/12/GHSA-prfj-cv9c-cgpw/GHSA-prfj-cv9c-cgpw.json index 8625e701b39..e602545132f 100644 --- a/advisories/unreviewed/2023/12/GHSA-prfj-cv9c-cgpw/GHSA-prfj-cv9c-cgpw.json +++ b/advisories/unreviewed/2023/12/GHSA-prfj-cv9c-cgpw/GHSA-prfj-cv9c-cgpw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-q3c6-7v99-vxjx/GHSA-q3c6-7v99-vxjx.json b/advisories/unreviewed/2023/12/GHSA-q3c6-7v99-vxjx/GHSA-q3c6-7v99-vxjx.json index 9f64f972e8e..58f5f3f6838 100644 --- a/advisories/unreviewed/2023/12/GHSA-q3c6-7v99-vxjx/GHSA-q3c6-7v99-vxjx.json +++ b/advisories/unreviewed/2023/12/GHSA-q3c6-7v99-vxjx/GHSA-q3c6-7v99-vxjx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-q73m-hf29-h8q4/GHSA-q73m-hf29-h8q4.json b/advisories/unreviewed/2023/12/GHSA-q73m-hf29-h8q4/GHSA-q73m-hf29-h8q4.json index f90f170bd69..bffc01fabe2 100644 --- a/advisories/unreviewed/2023/12/GHSA-q73m-hf29-h8q4/GHSA-q73m-hf29-h8q4.json +++ b/advisories/unreviewed/2023/12/GHSA-q73m-hf29-h8q4/GHSA-q73m-hf29-h8q4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-q8x8-6c79-7jxf/GHSA-q8x8-6c79-7jxf.json b/advisories/unreviewed/2023/12/GHSA-q8x8-6c79-7jxf/GHSA-q8x8-6c79-7jxf.json index d6245099ef4..caa2a34b38f 100644 --- a/advisories/unreviewed/2023/12/GHSA-q8x8-6c79-7jxf/GHSA-q8x8-6c79-7jxf.json +++ b/advisories/unreviewed/2023/12/GHSA-q8x8-6c79-7jxf/GHSA-q8x8-6c79-7jxf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-q9gg-2r3p-jxrm/GHSA-q9gg-2r3p-jxrm.json b/advisories/unreviewed/2023/12/GHSA-q9gg-2r3p-jxrm/GHSA-q9gg-2r3p-jxrm.json index e8bddb5a53e..d5d515a1941 100644 --- a/advisories/unreviewed/2023/12/GHSA-q9gg-2r3p-jxrm/GHSA-q9gg-2r3p-jxrm.json +++ b/advisories/unreviewed/2023/12/GHSA-q9gg-2r3p-jxrm/GHSA-q9gg-2r3p-jxrm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-qg7w-3rf4-w97x/GHSA-qg7w-3rf4-w97x.json b/advisories/unreviewed/2023/12/GHSA-qg7w-3rf4-w97x/GHSA-qg7w-3rf4-w97x.json index c07ae7ac008..bb8383ea590 100644 --- a/advisories/unreviewed/2023/12/GHSA-qg7w-3rf4-w97x/GHSA-qg7w-3rf4-w97x.json +++ b/advisories/unreviewed/2023/12/GHSA-qg7w-3rf4-w97x/GHSA-qg7w-3rf4-w97x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rjgg-r474-38m3/GHSA-rjgg-r474-38m3.json b/advisories/unreviewed/2023/12/GHSA-rjgg-r474-38m3/GHSA-rjgg-r474-38m3.json index ac53f296076..1e3af29b80f 100644 --- a/advisories/unreviewed/2023/12/GHSA-rjgg-r474-38m3/GHSA-rjgg-r474-38m3.json +++ b/advisories/unreviewed/2023/12/GHSA-rjgg-r474-38m3/GHSA-rjgg-r474-38m3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rqwp-xvwq-8fm2/GHSA-rqwp-xvwq-8fm2.json b/advisories/unreviewed/2023/12/GHSA-rqwp-xvwq-8fm2/GHSA-rqwp-xvwq-8fm2.json index 9b44cb728ab..cfbb0870bcc 100644 --- a/advisories/unreviewed/2023/12/GHSA-rqwp-xvwq-8fm2/GHSA-rqwp-xvwq-8fm2.json +++ b/advisories/unreviewed/2023/12/GHSA-rqwp-xvwq-8fm2/GHSA-rqwp-xvwq-8fm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rw93-j8h9-pfx7/GHSA-rw93-j8h9-pfx7.json b/advisories/unreviewed/2023/12/GHSA-rw93-j8h9-pfx7/GHSA-rw93-j8h9-pfx7.json index bacd8ecb901..fb93b25cecb 100644 --- a/advisories/unreviewed/2023/12/GHSA-rw93-j8h9-pfx7/GHSA-rw93-j8h9-pfx7.json +++ b/advisories/unreviewed/2023/12/GHSA-rw93-j8h9-pfx7/GHSA-rw93-j8h9-pfx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rxq3-gmwr-j659/GHSA-rxq3-gmwr-j659.json b/advisories/unreviewed/2023/12/GHSA-rxq3-gmwr-j659/GHSA-rxq3-gmwr-j659.json index a1a2f197627..e4a11c9acd5 100644 --- a/advisories/unreviewed/2023/12/GHSA-rxq3-gmwr-j659/GHSA-rxq3-gmwr-j659.json +++ b/advisories/unreviewed/2023/12/GHSA-rxq3-gmwr-j659/GHSA-rxq3-gmwr-j659.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vx34-745v-7g3g/GHSA-vx34-745v-7g3g.json b/advisories/unreviewed/2023/12/GHSA-vx34-745v-7g3g/GHSA-vx34-745v-7g3g.json index 349d2d182bd..ca82ef8d744 100644 --- a/advisories/unreviewed/2023/12/GHSA-vx34-745v-7g3g/GHSA-vx34-745v-7g3g.json +++ b/advisories/unreviewed/2023/12/GHSA-vx34-745v-7g3g/GHSA-vx34-745v-7g3g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-w683-cc8r-prr2/GHSA-w683-cc8r-prr2.json b/advisories/unreviewed/2023/12/GHSA-w683-cc8r-prr2/GHSA-w683-cc8r-prr2.json index 7877c7aedd3..c82f72a4d22 100644 --- a/advisories/unreviewed/2023/12/GHSA-w683-cc8r-prr2/GHSA-w683-cc8r-prr2.json +++ b/advisories/unreviewed/2023/12/GHSA-w683-cc8r-prr2/GHSA-w683-cc8r-prr2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-w864-g84v-8h25/GHSA-w864-g84v-8h25.json b/advisories/unreviewed/2023/12/GHSA-w864-g84v-8h25/GHSA-w864-g84v-8h25.json index 91ff56ecf76..165e3dcefa7 100644 --- a/advisories/unreviewed/2023/12/GHSA-w864-g84v-8h25/GHSA-w864-g84v-8h25.json +++ b/advisories/unreviewed/2023/12/GHSA-w864-g84v-8h25/GHSA-w864-g84v-8h25.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-wc2c-986f-h2pp/GHSA-wc2c-986f-h2pp.json b/advisories/unreviewed/2023/12/GHSA-wc2c-986f-h2pp/GHSA-wc2c-986f-h2pp.json index 0c9f8bdcb4b..e07e4f89cf7 100644 --- a/advisories/unreviewed/2023/12/GHSA-wc2c-986f-h2pp/GHSA-wc2c-986f-h2pp.json +++ b/advisories/unreviewed/2023/12/GHSA-wc2c-986f-h2pp/GHSA-wc2c-986f-h2pp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-ww4c-6492-r3w3/GHSA-ww4c-6492-r3w3.json b/advisories/unreviewed/2023/12/GHSA-ww4c-6492-r3w3/GHSA-ww4c-6492-r3w3.json index 60fa8832d3e..a46391f4470 100644 --- a/advisories/unreviewed/2023/12/GHSA-ww4c-6492-r3w3/GHSA-ww4c-6492-r3w3.json +++ b/advisories/unreviewed/2023/12/GHSA-ww4c-6492-r3w3/GHSA-ww4c-6492-r3w3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-x5v7-pg82-r947/GHSA-x5v7-pg82-r947.json b/advisories/unreviewed/2023/12/GHSA-x5v7-pg82-r947/GHSA-x5v7-pg82-r947.json index 577bd8e295a..55193c9c267 100644 --- a/advisories/unreviewed/2023/12/GHSA-x5v7-pg82-r947/GHSA-x5v7-pg82-r947.json +++ b/advisories/unreviewed/2023/12/GHSA-x5v7-pg82-r947/GHSA-x5v7-pg82-r947.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-x74m-v58j-5gpr/GHSA-x74m-v58j-5gpr.json b/advisories/unreviewed/2023/12/GHSA-x74m-v58j-5gpr/GHSA-x74m-v58j-5gpr.json index aba6a43fefe..47a22e9cfcf 100644 --- a/advisories/unreviewed/2023/12/GHSA-x74m-v58j-5gpr/GHSA-x74m-v58j-5gpr.json +++ b/advisories/unreviewed/2023/12/GHSA-x74m-v58j-5gpr/GHSA-x74m-v58j-5gpr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xw83-fhrh-mg6g/GHSA-xw83-fhrh-mg6g.json b/advisories/unreviewed/2023/12/GHSA-xw83-fhrh-mg6g/GHSA-xw83-fhrh-mg6g.json index 0d87135a908..6d509e14560 100644 --- a/advisories/unreviewed/2023/12/GHSA-xw83-fhrh-mg6g/GHSA-xw83-fhrh-mg6g.json +++ b/advisories/unreviewed/2023/12/GHSA-xw83-fhrh-mg6g/GHSA-xw83-fhrh-mg6g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-62cw-wj7m-9hmq/GHSA-62cw-wj7m-9hmq.json b/advisories/unreviewed/2024/02/GHSA-62cw-wj7m-9hmq/GHSA-62cw-wj7m-9hmq.json index a9709d40aef..621ff16b656 100644 --- a/advisories/unreviewed/2024/02/GHSA-62cw-wj7m-9hmq/GHSA-62cw-wj7m-9hmq.json +++ b/advisories/unreviewed/2024/02/GHSA-62cw-wj7m-9hmq/GHSA-62cw-wj7m-9hmq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-r3h6-h7mc-hvh5/GHSA-r3h6-h7mc-hvh5.json b/advisories/unreviewed/2024/02/GHSA-r3h6-h7mc-hvh5/GHSA-r3h6-h7mc-hvh5.json index 83b258bacd4..37b9a2c8553 100644 --- a/advisories/unreviewed/2024/02/GHSA-r3h6-h7mc-hvh5/GHSA-r3h6-h7mc-hvh5.json +++ b/advisories/unreviewed/2024/02/GHSA-r3h6-h7mc-hvh5/GHSA-r3h6-h7mc-hvh5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-2g8r-g5wp-xcxp/GHSA-2g8r-g5wp-xcxp.json b/advisories/unreviewed/2024/03/GHSA-2g8r-g5wp-xcxp/GHSA-2g8r-g5wp-xcxp.json index 87875ad510e..a01616f3c68 100644 --- a/advisories/unreviewed/2024/03/GHSA-2g8r-g5wp-xcxp/GHSA-2g8r-g5wp-xcxp.json +++ b/advisories/unreviewed/2024/03/GHSA-2g8r-g5wp-xcxp/GHSA-2g8r-g5wp-xcxp.json @@ -7,12 +7,8 @@ "CVE-2023-52582" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnetfs: Only call folio_start_fscache() one time for each folio\n\nIf a network filesystem using netfs implements a clamp_length()\nfunction, it can set subrequest lengths smaller than a page size.\n\nWhen we loop through the folios in netfs_rreq_unlock_folios() to\nset any folios to be written back, we need to make sure we only\ncall folio_start_fscache() once for each folio.\n\nOtherwise, this simple testcase:\n\n mount -o fsc,rsize=1024,wsize=1024 127.0.0.1:/export /mnt/nfs\n dd if=/dev/zero of=/mnt/nfs/file.bin bs=4096 count=1\n 1+0 records in\n 1+0 records out\n 4096 bytes (4.1 kB, 4.0 KiB) copied, 0.0126359 s, 324 kB/s\n echo 3 > /proc/sys/vm/drop_caches\n cat /mnt/nfs/file.bin > /dev/null\n\nwill trigger an oops similar to the following:\n\n page dumped because: VM_BUG_ON_FOLIO(folio_test_private_2(folio))\n ------------[ cut here ]------------\n kernel BUG at include/linux/netfs.h:44!\n ...\n CPU: 5 PID: 134 Comm: kworker/u16:5 Kdump: loaded Not tainted 6.4.0-rc5\n ...\n RIP: 0010:netfs_rreq_unlock_folios+0x68e/0x730 [netfs]\n ...\n Call Trace:\n netfs_rreq_assess+0x497/0x660 [netfs]\n netfs_subreq_terminated+0x32b/0x610 [netfs]\n nfs_netfs_read_completion+0x14e/0x1a0 [nfs]\n nfs_read_completion+0x2f9/0x330 [nfs]\n rpc_free_task+0x72/0xa0 [sunrpc]\n rpc_async_release+0x46/0x70 [sunrpc]\n process_one_work+0x3bd/0x710\n worker_thread+0x89/0x610\n kthread+0x181/0x1c0\n ret_from_fork+0x29/0x50", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-68m6-x9cq-fjwx/GHSA-68m6-x9cq-fjwx.json b/advisories/unreviewed/2024/03/GHSA-68m6-x9cq-fjwx/GHSA-68m6-x9cq-fjwx.json index 1846541ffb0..5aa47202585 100644 --- a/advisories/unreviewed/2024/03/GHSA-68m6-x9cq-fjwx/GHSA-68m6-x9cq-fjwx.json +++ b/advisories/unreviewed/2024/03/GHSA-68m6-x9cq-fjwx/GHSA-68m6-x9cq-fjwx.json @@ -7,12 +7,8 @@ "CVE-2023-52567" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nserial: 8250_port: Check IRQ data before use\n\nIn case the leaf driver wants to use IRQ polling (irq = 0) and\nIIR register shows that an interrupt happened in the 8250 hardware\nthe IRQ data can be NULL. In such a case we need to skip the wake\nevent as we came to this path from the timer interrupt and quite\nlikely system is already awake.\n\nWithout this fix we have got an Oops:\n\n serial8250: ttyS0 at I/O 0x3f8 (irq = 0, base_baud = 115200) is a 16550A\n ...\n BUG: kernel NULL pointer dereference, address: 0000000000000010\n RIP: 0010:serial8250_handle_irq+0x7c/0x240\n Call Trace:\n ? serial8250_handle_irq+0x7c/0x240\n ? __pfx_serial8250_timeout+0x10/0x10", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-78cj-mhpr-2qfm/GHSA-78cj-mhpr-2qfm.json b/advisories/unreviewed/2024/03/GHSA-78cj-mhpr-2qfm/GHSA-78cj-mhpr-2qfm.json index 913808d3948..e05c38f08e7 100644 --- a/advisories/unreviewed/2024/03/GHSA-78cj-mhpr-2qfm/GHSA-78cj-mhpr-2qfm.json +++ b/advisories/unreviewed/2024/03/GHSA-78cj-mhpr-2qfm/GHSA-78cj-mhpr-2qfm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-jgjr-cg8v-7vxm/GHSA-jgjr-cg8v-7vxm.json b/advisories/unreviewed/2024/03/GHSA-jgjr-cg8v-7vxm/GHSA-jgjr-cg8v-7vxm.json index c95388dccaa..ed101aa3c36 100644 --- a/advisories/unreviewed/2024/03/GHSA-jgjr-cg8v-7vxm/GHSA-jgjr-cg8v-7vxm.json +++ b/advisories/unreviewed/2024/03/GHSA-jgjr-cg8v-7vxm/GHSA-jgjr-cg8v-7vxm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-76r5-84qj-h2gj/GHSA-76r5-84qj-h2gj.json b/advisories/unreviewed/2024/05/GHSA-76r5-84qj-h2gj/GHSA-76r5-84qj-h2gj.json index 48419864df7..0c112d23fc8 100644 --- a/advisories/unreviewed/2024/05/GHSA-76r5-84qj-h2gj/GHSA-76r5-84qj-h2gj.json +++ b/advisories/unreviewed/2024/05/GHSA-76r5-84qj-h2gj/GHSA-76r5-84qj-h2gj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-c3rm-r6pr-rg5j/GHSA-c3rm-r6pr-rg5j.json b/advisories/unreviewed/2024/05/GHSA-c3rm-r6pr-rg5j/GHSA-c3rm-r6pr-rg5j.json index 42640426329..097c1efecf4 100644 --- a/advisories/unreviewed/2024/05/GHSA-c3rm-r6pr-rg5j/GHSA-c3rm-r6pr-rg5j.json +++ b/advisories/unreviewed/2024/05/GHSA-c3rm-r6pr-rg5j/GHSA-c3rm-r6pr-rg5j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-chqx-rw2r-xgw8/GHSA-chqx-rw2r-xgw8.json b/advisories/unreviewed/2024/05/GHSA-chqx-rw2r-xgw8/GHSA-chqx-rw2r-xgw8.json index 523affdc094..6af7824a298 100644 --- a/advisories/unreviewed/2024/05/GHSA-chqx-rw2r-xgw8/GHSA-chqx-rw2r-xgw8.json +++ b/advisories/unreviewed/2024/05/GHSA-chqx-rw2r-xgw8/GHSA-chqx-rw2r-xgw8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-m3x3-867j-f35f/GHSA-m3x3-867j-f35f.json b/advisories/unreviewed/2024/05/GHSA-m3x3-867j-f35f/GHSA-m3x3-867j-f35f.json index 969e39b5119..b082956f7aa 100644 --- a/advisories/unreviewed/2024/05/GHSA-m3x3-867j-f35f/GHSA-m3x3-867j-f35f.json +++ b/advisories/unreviewed/2024/05/GHSA-m3x3-867j-f35f/GHSA-m3x3-867j-f35f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-p98r-qmj8-g8hj/GHSA-p98r-qmj8-g8hj.json b/advisories/unreviewed/2024/05/GHSA-p98r-qmj8-g8hj/GHSA-p98r-qmj8-g8hj.json index 6dee078b0af..bf225b0d81c 100644 --- a/advisories/unreviewed/2024/05/GHSA-p98r-qmj8-g8hj/GHSA-p98r-qmj8-g8hj.json +++ b/advisories/unreviewed/2024/05/GHSA-p98r-qmj8-g8hj/GHSA-p98r-qmj8-g8hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vph2-f3rf-pwhf/GHSA-vph2-f3rf-pwhf.json b/advisories/unreviewed/2024/05/GHSA-vph2-f3rf-pwhf/GHSA-vph2-f3rf-pwhf.json index 714176f5508..433a6795f81 100644 --- a/advisories/unreviewed/2024/05/GHSA-vph2-f3rf-pwhf/GHSA-vph2-f3rf-pwhf.json +++ b/advisories/unreviewed/2024/05/GHSA-vph2-f3rf-pwhf/GHSA-vph2-f3rf-pwhf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-2cvh-5946-f6w5/GHSA-2cvh-5946-f6w5.json b/advisories/unreviewed/2024/07/GHSA-2cvh-5946-f6w5/GHSA-2cvh-5946-f6w5.json index 90ae19e3996..90c7b52c8a9 100644 --- a/advisories/unreviewed/2024/07/GHSA-2cvh-5946-f6w5/GHSA-2cvh-5946-f6w5.json +++ b/advisories/unreviewed/2024/07/GHSA-2cvh-5946-f6w5/GHSA-2cvh-5946-f6w5.json @@ -7,12 +7,8 @@ "CVE-2024-42120" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Check pipe offset before setting vblank\n\npipe_ctx has a size of MAX_PIPES so checking its index before accessing\nthe array.\n\nThis fixes an OVERRUN issue reported by Coverity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-35xp-mwcf-j33g/GHSA-35xp-mwcf-j33g.json b/advisories/unreviewed/2024/07/GHSA-35xp-mwcf-j33g/GHSA-35xp-mwcf-j33g.json index 0a21cf7510a..73eb3a411e9 100644 --- a/advisories/unreviewed/2024/07/GHSA-35xp-mwcf-j33g/GHSA-35xp-mwcf-j33g.json +++ b/advisories/unreviewed/2024/07/GHSA-35xp-mwcf-j33g/GHSA-35xp-mwcf-j33g.json @@ -7,12 +7,8 @@ "CVE-2024-42118" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Do not return negative stream id for array\n\n[WHY]\nresource_stream_to_stream_idx returns an array index and it return -1\nwhen not found; however, -1 is not a valid array index number.\n\n[HOW]\nWhen this happens, call ASSERT(), and return a zero instead.\n\nThis fixes an OVERRUN and an NEGATIVE_RETURNS issues reported by Coverity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-3q8w-82vq-p7rq/GHSA-3q8w-82vq-p7rq.json b/advisories/unreviewed/2024/07/GHSA-3q8w-82vq-p7rq/GHSA-3q8w-82vq-p7rq.json index 7b72fb29df6..5a0554e8470 100644 --- a/advisories/unreviewed/2024/07/GHSA-3q8w-82vq-p7rq/GHSA-3q8w-82vq-p7rq.json +++ b/advisories/unreviewed/2024/07/GHSA-3q8w-82vq-p7rq/GHSA-3q8w-82vq-p7rq.json @@ -7,12 +7,8 @@ "CVE-2024-42141" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nBluetooth: ISO: Check socket flag instead of hcon\n\nThis fixes the following Smatch static checker warning:\n\nnet/bluetooth/iso.c:1364 iso_sock_recvmsg()\nerror: we previously assumed 'pi->conn->hcon' could be null (line 1359)\n\nnet/bluetooth/iso.c\n1347 static int iso_sock_recvmsg(struct socket *sock, struct msghdr *msg,\n1348 size_t len, int flags)\n1349 {\n1350 struct sock *sk = sock->sk;\n1351 struct iso_pinfo *pi = iso_pi(sk);\n1352\n1353 BT_DBG(\"sk %p\", sk);\n1354\n1355 if (test_and_clear_bit(BT_SK_DEFER_SETUP,\n &bt_sk(sk)->flags)) {\n1356 lock_sock(sk);\n1357 switch (sk->sk_state) {\n1358 case BT_CONNECT2:\n1359 if (pi->conn->hcon &&\n ^^^^^^^^^^^^^^ If ->hcon is NULL\n\n1360 test_bit(HCI_CONN_PA_SYNC,\n &pi->conn->hcon->flags)) {\n1361 iso_conn_big_sync(sk);\n1362 sk->sk_state = BT_LISTEN;\n1363 } else {\n--> 1364 iso_conn_defer_accept(pi->conn->hcon);\n ^^^^^^^^^^^^^^\n then we're toast\n\n1365 sk->sk_state = BT_CONFIG;\n1366 }\n1367 release_sock(sk);\n1368 return 0;\n1369 case BT_CONNECTED:\n1370 if (test_bit(BT_SK_PA_SYNC,", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-45vq-73jx-ggvm/GHSA-45vq-73jx-ggvm.json b/advisories/unreviewed/2024/07/GHSA-45vq-73jx-ggvm/GHSA-45vq-73jx-ggvm.json index 9d3f933c7cc..c7084737da4 100644 --- a/advisories/unreviewed/2024/07/GHSA-45vq-73jx-ggvm/GHSA-45vq-73jx-ggvm.json +++ b/advisories/unreviewed/2024/07/GHSA-45vq-73jx-ggvm/GHSA-45vq-73jx-ggvm.json @@ -7,12 +7,8 @@ "CVE-2024-42145" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nIB/core: Implement a limit on UMAD receive List\n\nThe existing behavior of ib_umad, which maintains received MAD\npackets in an unbounded list, poses a risk of uncontrolled growth.\nAs user-space applications extract packets from this list, the rate\nof extraction may not match the rate of incoming packets, leading\nto potential list overflow.\n\nTo address this, we introduce a limit to the size of the list. After\nconsidering typical scenarios, such as OpenSM processing, which can\nhandle approximately 100k packets per second, and the 1-second retry\ntimeout for most packets, we set the list size limit to 200k. Packets\nreceived beyond this limit are dropped, assuming they are likely timed\nout by the time they are handled by user-space.\n\nNotably, packets queued on the receive list due to reasons like\ntimed-out sends are preserved even when the list is full.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-526p-w8j5-8c86/GHSA-526p-w8j5-8c86.json b/advisories/unreviewed/2024/07/GHSA-526p-w8j5-8c86/GHSA-526p-w8j5-8c86.json index 628fec0ec74..992b8135cdd 100644 --- a/advisories/unreviewed/2024/07/GHSA-526p-w8j5-8c86/GHSA-526p-w8j5-8c86.json +++ b/advisories/unreviewed/2024/07/GHSA-526p-w8j5-8c86/GHSA-526p-w8j5-8c86.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-6995-2c6p-5jpr/GHSA-6995-2c6p-5jpr.json b/advisories/unreviewed/2024/07/GHSA-6995-2c6p-5jpr/GHSA-6995-2c6p-5jpr.json index da12046216a..58973e8d48a 100644 --- a/advisories/unreviewed/2024/07/GHSA-6995-2c6p-5jpr/GHSA-6995-2c6p-5jpr.json +++ b/advisories/unreviewed/2024/07/GHSA-6995-2c6p-5jpr/GHSA-6995-2c6p-5jpr.json @@ -7,12 +7,8 @@ "CVE-2024-42113" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: txgbe: initialize num_q_vectors for MSI/INTx interrupts\n\nWhen using MSI/INTx interrupts, wx->num_q_vectors is uninitialized.\nThus there will be kernel panic in wx_alloc_q_vectors() to allocate\nqueue vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-6vq7-vpgr-2529/GHSA-6vq7-vpgr-2529.json b/advisories/unreviewed/2024/07/GHSA-6vq7-vpgr-2529/GHSA-6vq7-vpgr-2529.json index 1d507da1eaf..8e407cbdef8 100644 --- a/advisories/unreviewed/2024/07/GHSA-6vq7-vpgr-2529/GHSA-6vq7-vpgr-2529.json +++ b/advisories/unreviewed/2024/07/GHSA-6vq7-vpgr-2529/GHSA-6vq7-vpgr-2529.json @@ -7,12 +7,8 @@ "CVE-2024-42119" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Skip finding free audio for unknown engine_id\n\n[WHY]\nENGINE_ID_UNKNOWN = -1 and can not be used as an array index. Plus, it\nalso means it is uninitialized and does not need free audio.\n\n[HOW]\nSkip and return NULL.\n\nThis fixes 2 OVERRUN issues reported by Coverity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-7vmw-m77g-4fxf/GHSA-7vmw-m77g-4fxf.json b/advisories/unreviewed/2024/07/GHSA-7vmw-m77g-4fxf/GHSA-7vmw-m77g-4fxf.json index 1e937c2e8dc..5ee829680c9 100644 --- a/advisories/unreviewed/2024/07/GHSA-7vmw-m77g-4fxf/GHSA-7vmw-m77g-4fxf.json +++ b/advisories/unreviewed/2024/07/GHSA-7vmw-m77g-4fxf/GHSA-7vmw-m77g-4fxf.json @@ -7,12 +7,8 @@ "CVE-2024-42135" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvhost_task: Handle SIGKILL by flushing work and exiting\n\nInstead of lingering until the device is closed, this has us handle\nSIGKILL by:\n\n1. marking the worker as killed so we no longer try to use it with\n new virtqueues and new flush operations.\n2. setting the virtqueue to worker mapping so no new works are queued.\n3. running all the exiting works.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-8c8x-848r-wqq7/GHSA-8c8x-848r-wqq7.json b/advisories/unreviewed/2024/07/GHSA-8c8x-848r-wqq7/GHSA-8c8x-848r-wqq7.json index bfc8d9cd510..3f09437fc75 100644 --- a/advisories/unreviewed/2024/07/GHSA-8c8x-848r-wqq7/GHSA-8c8x-848r-wqq7.json +++ b/advisories/unreviewed/2024/07/GHSA-8c8x-848r-wqq7/GHSA-8c8x-848r-wqq7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-8fxj-5f25-469x/GHSA-8fxj-5f25-469x.json b/advisories/unreviewed/2024/07/GHSA-8fxj-5f25-469x/GHSA-8fxj-5f25-469x.json index 5ccde09ab00..f31f26f6709 100644 --- a/advisories/unreviewed/2024/07/GHSA-8fxj-5f25-469x/GHSA-8fxj-5f25-469x.json +++ b/advisories/unreviewed/2024/07/GHSA-8fxj-5f25-469x/GHSA-8fxj-5f25-469x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-8h4c-r25h-3p7f/GHSA-8h4c-r25h-3p7f.json b/advisories/unreviewed/2024/07/GHSA-8h4c-r25h-3p7f/GHSA-8h4c-r25h-3p7f.json index 70877ff875e..e2e722803ac 100644 --- a/advisories/unreviewed/2024/07/GHSA-8h4c-r25h-3p7f/GHSA-8h4c-r25h-3p7f.json +++ b/advisories/unreviewed/2024/07/GHSA-8h4c-r25h-3p7f/GHSA-8h4c-r25h-3p7f.json @@ -7,12 +7,8 @@ "CVE-2024-42151" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: mark bpf_dummy_struct_ops.test_1 parameter as nullable\n\nTest case dummy_st_ops/dummy_init_ret_value passes NULL as the first\nparameter of the test_1() function. Mark this parameter as nullable to\nmake verifier aware of such possibility.\nOtherwise, NULL check in the test_1() code:\n\n SEC(\"struct_ops/test_1\")\n int BPF_PROG(test_1, struct bpf_dummy_ops_state *state)\n {\n if (!state)\n return ...;\n\n ... access state ...\n }\n\nMight be removed by verifier, thus triggering NULL pointer dereference\nunder certain conditions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-cp4f-3979-2g6x/GHSA-cp4f-3979-2g6x.json b/advisories/unreviewed/2024/07/GHSA-cp4f-3979-2g6x/GHSA-cp4f-3979-2g6x.json index 752e44c00c5..ca113b3fe92 100644 --- a/advisories/unreviewed/2024/07/GHSA-cp4f-3979-2g6x/GHSA-cp4f-3979-2g6x.json +++ b/advisories/unreviewed/2024/07/GHSA-cp4f-3979-2g6x/GHSA-cp4f-3979-2g6x.json @@ -7,12 +7,8 @@ "CVE-2024-42116" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nigc: fix a log entry using uninitialized netdev\n\nDuring successful probe, igc logs this:\n\n[ 5.133667] igc 0000:01:00.0 (unnamed net_device) (uninitialized): PHC added\n ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^\nThe reason is that igc_ptp_init() is called very early, even before\nregister_netdev() has been called. So the netdev_info() call works\non a partially uninitialized netdev.\n\nFix this by calling igc_ptp_init() after register_netdev(), right\nafter the media autosense check, just as in igb. Add a comment,\njust as in igb.\n\nNow the log message is fine:\n\n[ 5.200987] igc 0000:01:00.0 eth0: PHC added", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-cwhh-7pp8-9f8w/GHSA-cwhh-7pp8-9f8w.json b/advisories/unreviewed/2024/07/GHSA-cwhh-7pp8-9f8w/GHSA-cwhh-7pp8-9f8w.json index 5e2faa3f557..2c2f3a9b598 100644 --- a/advisories/unreviewed/2024/07/GHSA-cwhh-7pp8-9f8w/GHSA-cwhh-7pp8-9f8w.json +++ b/advisories/unreviewed/2024/07/GHSA-cwhh-7pp8-9f8w/GHSA-cwhh-7pp8-9f8w.json @@ -7,12 +7,8 @@ "CVE-2024-42115" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\njffs2: Fix potential illegal address access in jffs2_free_inode\n\nDuring the stress testing of the jffs2 file system,the following\nabnormal printouts were found:\n[ 2430.649000] Unable to handle kernel paging request at virtual address 0069696969696948\n[ 2430.649622] Mem abort info:\n[ 2430.649829] ESR = 0x96000004\n[ 2430.650115] EC = 0x25: DABT (current EL), IL = 32 bits\n[ 2430.650564] SET = 0, FnV = 0\n[ 2430.650795] EA = 0, S1PTW = 0\n[ 2430.651032] FSC = 0x04: level 0 translation fault\n[ 2430.651446] Data abort info:\n[ 2430.651683] ISV = 0, ISS = 0x00000004\n[ 2430.652001] CM = 0, WnR = 0\n[ 2430.652558] [0069696969696948] address between user and kernel address ranges\n[ 2430.653265] Internal error: Oops: 96000004 [#1] PREEMPT SMP\n[ 2430.654512] CPU: 2 PID: 20919 Comm: cat Not tainted 5.15.25-g512f31242bf6 #33\n[ 2430.655008] Hardware name: linux,dummy-virt (DT)\n[ 2430.655517] pstate: 20000005 (nzCv daif -PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n[ 2430.656142] pc : kfree+0x78/0x348\n[ 2430.656630] lr : jffs2_free_inode+0x24/0x48\n[ 2430.657051] sp : ffff800009eebd10\n[ 2430.657355] x29: ffff800009eebd10 x28: 0000000000000001 x27: 0000000000000000\n[ 2430.658327] x26: ffff000038f09d80 x25: 0080000000000000 x24: ffff800009d38000\n[ 2430.658919] x23: 5a5a5a5a5a5a5a5a x22: ffff000038f09d80 x21: ffff8000084f0d14\n[ 2430.659434] x20: ffff0000bf9a6ac0 x19: 0169696969696940 x18: 0000000000000000\n[ 2430.659969] x17: ffff8000b6506000 x16: ffff800009eec000 x15: 0000000000004000\n[ 2430.660637] x14: 0000000000000000 x13: 00000001000820a1 x12: 00000000000d1b19\n[ 2430.661345] x11: 0004000800000000 x10: 0000000000000001 x9 : ffff8000084f0d14\n[ 2430.662025] x8 : ffff0000bf9a6b40 x7 : ffff0000bf9a6b48 x6 : 0000000003470302\n[ 2430.662695] x5 : ffff00002e41dcc0 x4 : ffff0000bf9aa3b0 x3 : 0000000003470342\n[ 2430.663486] x2 : 0000000000000000 x1 : ffff8000084f0d14 x0 : fffffc0000000000\n[ 2430.664217] Call trace:\n[ 2430.664528] kfree+0x78/0x348\n[ 2430.664855] jffs2_free_inode+0x24/0x48\n[ 2430.665233] i_callback+0x24/0x50\n[ 2430.665528] rcu_do_batch+0x1ac/0x448\n[ 2430.665892] rcu_core+0x28c/0x3c8\n[ 2430.666151] rcu_core_si+0x18/0x28\n[ 2430.666473] __do_softirq+0x138/0x3cc\n[ 2430.666781] irq_exit+0xf0/0x110\n[ 2430.667065] handle_domain_irq+0x6c/0x98\n[ 2430.667447] gic_handle_irq+0xac/0xe8\n[ 2430.667739] call_on_irq_stack+0x28/0x54\nThe parameter passed to kfree was 5a5a5a5a, which corresponds to the target field of\nthe jffs_inode_info structure. It was found that all variables in the jffs_inode_info\nstructure were 5a5a5a5a, except for the first member sem. It is suspected that these\nvariables are not initialized because they were set to 5a5a5a5a during memory testing,\nwhich is meant to detect uninitialized memory.The sem variable is initialized in the\nfunction jffs2_i_init_once, while other members are initialized in\nthe function jffs2_init_inode_info.\n\nThe function jffs2_init_inode_info is called after iget_locked,\nbut in the iget_locked function, the destroy_inode process is triggered,\nwhich releases the inode and consequently, the target member of the inode\nis not initialized.In concurrent high pressure scenarios, iget_locked\nmay enter the destroy_inode branch as described in the code.\n\nSince the destroy_inode functionality of jffs2 only releases the target,\nthe fix method is to set target to NULL in jffs2_i_init_once.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-fm3g-m5v8-xw6m/GHSA-fm3g-m5v8-xw6m.json b/advisories/unreviewed/2024/07/GHSA-fm3g-m5v8-xw6m/GHSA-fm3g-m5v8-xw6m.json index d4c0bad2e97..a33318ad9cf 100644 --- a/advisories/unreviewed/2024/07/GHSA-fm3g-m5v8-xw6m/GHSA-fm3g-m5v8-xw6m.json +++ b/advisories/unreviewed/2024/07/GHSA-fm3g-m5v8-xw6m/GHSA-fm3g-m5v8-xw6m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-g4cc-x94v-f3gm/GHSA-g4cc-x94v-f3gm.json b/advisories/unreviewed/2024/07/GHSA-g4cc-x94v-f3gm/GHSA-g4cc-x94v-f3gm.json index 163b0531cd5..448c862df12 100644 --- a/advisories/unreviewed/2024/07/GHSA-g4cc-x94v-f3gm/GHSA-g4cc-x94v-f3gm.json +++ b/advisories/unreviewed/2024/07/GHSA-g4cc-x94v-f3gm/GHSA-g4cc-x94v-f3gm.json @@ -7,12 +7,8 @@ "CVE-2024-42147" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ncrypto: hisilicon/debugfs - Fix debugfs uninit process issue\n\nDuring the zip probe process, the debugfs failure does not stop\nthe probe. When debugfs initialization fails, jumping to the\nerror branch will also release regs, in addition to its own\nrollback operation.\n\nAs a result, it may be released repeatedly during the regs\nuninit process. Therefore, the null check needs to be added to\nthe regs uninit process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-h7q8-vff8-p3j8/GHSA-h7q8-vff8-p3j8.json b/advisories/unreviewed/2024/07/GHSA-h7q8-vff8-p3j8/GHSA-h7q8-vff8-p3j8.json index 39e4bf83d67..e68c190b6bb 100644 --- a/advisories/unreviewed/2024/07/GHSA-h7q8-vff8-p3j8/GHSA-h7q8-vff8-p3j8.json +++ b/advisories/unreviewed/2024/07/GHSA-h7q8-vff8-p3j8/GHSA-h7q8-vff8-p3j8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-hh8j-5g95-873c/GHSA-hh8j-5g95-873c.json b/advisories/unreviewed/2024/07/GHSA-hh8j-5g95-873c/GHSA-hh8j-5g95-873c.json index 95b339aa42c..3d1a158b7fe 100644 --- a/advisories/unreviewed/2024/07/GHSA-hh8j-5g95-873c/GHSA-hh8j-5g95-873c.json +++ b/advisories/unreviewed/2024/07/GHSA-hh8j-5g95-873c/GHSA-hh8j-5g95-873c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-hpc7-8m94-wf37/GHSA-hpc7-8m94-wf37.json b/advisories/unreviewed/2024/07/GHSA-hpc7-8m94-wf37/GHSA-hpc7-8m94-wf37.json index 548fa8ab19a..b140d7cade6 100644 --- a/advisories/unreviewed/2024/07/GHSA-hpc7-8m94-wf37/GHSA-hpc7-8m94-wf37.json +++ b/advisories/unreviewed/2024/07/GHSA-hpc7-8m94-wf37/GHSA-hpc7-8m94-wf37.json @@ -7,12 +7,8 @@ "CVE-2024-42150" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: txgbe: remove separate irq request for MSI and INTx\n\nWhen using MSI or INTx interrupts, request_irq() for pdev->irq will\nconflict with request_threaded_irq() for txgbe->misc.irq, to cause\nsystem crash. So remove txgbe_request_irq() for MSI/INTx case, and\nrename txgbe_request_msix_irqs() since it only request for queue irqs.\n\nAdd wx->misc_irq_domain to determine whether the driver creates an IRQ\ndomain and threaded request the IRQs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-j3vc-53vj-555f/GHSA-j3vc-53vj-555f.json b/advisories/unreviewed/2024/07/GHSA-j3vc-53vj-555f/GHSA-j3vc-53vj-555f.json index 6b736ac6b06..1f86c4c4b67 100644 --- a/advisories/unreviewed/2024/07/GHSA-j3vc-53vj-555f/GHSA-j3vc-53vj-555f.json +++ b/advisories/unreviewed/2024/07/GHSA-j3vc-53vj-555f/GHSA-j3vc-53vj-555f.json @@ -7,12 +7,8 @@ "CVE-2024-42124" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: qedf: Make qedf_execute_tmf() non-preemptible\n\nStop calling smp_processor_id() from preemptible code in\nqedf_execute_tmf90. This results in BUG_ON() when running an RT kernel.\n\n[ 659.343280] BUG: using smp_processor_id() in preemptible [00000000] code: sg_reset/3646\n[ 659.343282] caller is qedf_execute_tmf+0x8b/0x360 [qedf]", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-m75x-8gpr-mj3j/GHSA-m75x-8gpr-mj3j.json b/advisories/unreviewed/2024/07/GHSA-m75x-8gpr-mj3j/GHSA-m75x-8gpr-mj3j.json index 5be7e9dbeda..77567ced39d 100644 --- a/advisories/unreviewed/2024/07/GHSA-m75x-8gpr-mj3j/GHSA-m75x-8gpr-mj3j.json +++ b/advisories/unreviewed/2024/07/GHSA-m75x-8gpr-mj3j/GHSA-m75x-8gpr-mj3j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-m87g-gjm6-7c8j/GHSA-m87g-gjm6-7c8j.json b/advisories/unreviewed/2024/07/GHSA-m87g-gjm6-7c8j/GHSA-m87g-gjm6-7c8j.json index 18d3e0e4392..309cc61e5c0 100644 --- a/advisories/unreviewed/2024/07/GHSA-m87g-gjm6-7c8j/GHSA-m87g-gjm6-7c8j.json +++ b/advisories/unreviewed/2024/07/GHSA-m87g-gjm6-7c8j/GHSA-m87g-gjm6-7c8j.json @@ -7,12 +7,8 @@ "CVE-2024-42142" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/mlx5: E-switch, Create ingress ACL when needed\n\nCurrently, ingress acl is used for three features. It is created only\nwhen vport metadata match and prio tag are enabled. But active-backup\nlag mode also uses it. It is independent of vport metadata match and\nprio tag. And vport metadata match can be disabled using the\nfollowing devlink command:\n\n # devlink dev param set pci/0000:08:00.0 name esw_port_metadata \\\n\tvalue false cmode runtime\n\nIf ingress acl is not created, will hit panic when creating drop rule\nfor active-backup lag mode. If always create it, there will be about\n5% performance degradation.\n\nFix it by creating ingress acl when needed. If esw_port_metadata is\ntrue, ingress acl exists, then create drop rule using existing\ningress acl. If esw_port_metadata is false, create ingress acl and\nthen create drop rule.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-m93m-c433-q3h9/GHSA-m93m-c433-q3h9.json b/advisories/unreviewed/2024/07/GHSA-m93m-c433-q3h9/GHSA-m93m-c433-q3h9.json index e136a7adc5a..bf0547d8dcc 100644 --- a/advisories/unreviewed/2024/07/GHSA-m93m-c433-q3h9/GHSA-m93m-c433-q3h9.json +++ b/advisories/unreviewed/2024/07/GHSA-m93m-c433-q3h9/GHSA-m93m-c433-q3h9.json @@ -7,12 +7,8 @@ "CVE-2024-42125" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: rtw89: fw: scan offload prohibit all 6 GHz channel if no 6 GHz sband\n\nWe have some policy via BIOS to block uses of 6 GHz. In this case, 6 GHz\nsband will be NULL even if it is WiFi 7 chip. So, add NULL handling here\nto avoid crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-qg2w-5gv5-2cf4/GHSA-qg2w-5gv5-2cf4.json b/advisories/unreviewed/2024/07/GHSA-qg2w-5gv5-2cf4/GHSA-qg2w-5gv5-2cf4.json index 72e2b6740f6..9a0bb050a76 100644 --- a/advisories/unreviewed/2024/07/GHSA-qg2w-5gv5-2cf4/GHSA-qg2w-5gv5-2cf4.json +++ b/advisories/unreviewed/2024/07/GHSA-qg2w-5gv5-2cf4/GHSA-qg2w-5gv5-2cf4.json @@ -7,12 +7,8 @@ "CVE-2024-42111" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbtrfs: always do the basic checks for btrfs_qgroup_inherit structure\n\n[BUG]\nSyzbot reports the following regression detected by KASAN:\n\n BUG: KASAN: slab-out-of-bounds in btrfs_qgroup_inherit+0x42e/0x2e20 fs/btrfs/qgroup.c:3277\n Read of size 8 at addr ffff88814628ca50 by task syz-executor318/5171\n\n CPU: 0 PID: 5171 Comm: syz-executor318 Not tainted 6.10.0-rc2-syzkaller-00010-g2ab795141095 #0\n Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 04/02/2024\n Call Trace:\n \n __dump_stack lib/dump_stack.c:88 [inline]\n dump_stack_lvl+0x241/0x360 lib/dump_stack.c:114\n print_address_description mm/kasan/report.c:377 [inline]\n print_report+0x169/0x550 mm/kasan/report.c:488\n kasan_report+0x143/0x180 mm/kasan/report.c:601\n btrfs_qgroup_inherit+0x42e/0x2e20 fs/btrfs/qgroup.c:3277\n create_pending_snapshot+0x1359/0x29b0 fs/btrfs/transaction.c:1854\n create_pending_snapshots+0x195/0x1d0 fs/btrfs/transaction.c:1922\n btrfs_commit_transaction+0xf20/0x3740 fs/btrfs/transaction.c:2382\n create_snapshot+0x6a1/0x9e0 fs/btrfs/ioctl.c:875\n btrfs_mksubvol+0x58f/0x710 fs/btrfs/ioctl.c:1029\n btrfs_mksnapshot+0xb5/0xf0 fs/btrfs/ioctl.c:1075\n __btrfs_ioctl_snap_create+0x387/0x4b0 fs/btrfs/ioctl.c:1340\n btrfs_ioctl_snap_create_v2+0x1f2/0x3a0 fs/btrfs/ioctl.c:1422\n btrfs_ioctl+0x99e/0xc60\n vfs_ioctl fs/ioctl.c:51 [inline]\n __do_sys_ioctl fs/ioctl.c:907 [inline]\n __se_sys_ioctl+0xfc/0x170 fs/ioctl.c:893\n do_syscall_x64 arch/x86/entry/common.c:52 [inline]\n do_syscall_64+0xf3/0x230 arch/x86/entry/common.c:83\n entry_SYSCALL_64_after_hwframe+0x77/0x7f\n RIP: 0033:0x7fcbf1992509\n RSP: 002b:00007fcbf1928218 EFLAGS: 00000246 ORIG_RAX: 0000000000000010\n RAX: ffffffffffffffda RBX: 00007fcbf1a1f618 RCX: 00007fcbf1992509\n RDX: 0000000020000280 RSI: 0000000050009417 RDI: 0000000000000003\n RBP: 00007fcbf1a1f610 R08: 00007ffea1298e97 R09: 0000000000000000\n R10: 0000000000000000 R11: 0000000000000246 R12: 00007fcbf19eb660\n R13: 00000000200002b8 R14: 00007fcbf19e60c0 R15: 0030656c69662f2e\n \n\nAnd it also pinned it down to commit b5357cb268c4 (\"btrfs: qgroup: do not\ncheck qgroup inherit if qgroup is disabled\").\n\n[CAUSE]\nThat offending commit skips the whole qgroup inherit check if qgroup is\nnot enabled.\n\nBut that also skips the very basic checks like\nnum_ref_copies/num_excl_copies and the structure size checks.\n\nMeaning if a qgroup enable/disable race is happening at the background,\nand we pass a btrfs_qgroup_inherit structure when the qgroup is\ndisabled, the check would be completely skipped.\n\nThen at the time of transaction commitment, qgroup is re-enabled and\nbtrfs_qgroup_inherit() is going to use the incorrect structure and\ncausing the above KASAN error.\n\n[FIX]\nMake btrfs_qgroup_check_inherit() only skip the source qgroup checks.\nSo that even if invalid btrfs_qgroup_inherit structure is passed in, we\ncan still reject invalid ones no matter if qgroup is enabled or not.\n\nFurthermore we do already have an extra safety inside\nbtrfs_qgroup_inherit(), which would just ignore invalid qgroup sources,\nso even if we only skip the qgroup source check we're still safe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-qpgw-j75c-j585/GHSA-qpgw-j75c-j585.json b/advisories/unreviewed/2024/07/GHSA-qpgw-j75c-j585/GHSA-qpgw-j75c-j585.json index ab5de5d5d8d..5e389c545bc 100644 --- a/advisories/unreviewed/2024/07/GHSA-qpgw-j75c-j585/GHSA-qpgw-j75c-j585.json +++ b/advisories/unreviewed/2024/07/GHSA-qpgw-j75c-j585/GHSA-qpgw-j75c-j585.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-r2w5-f6j6-v9x4/GHSA-r2w5-f6j6-v9x4.json b/advisories/unreviewed/2024/07/GHSA-r2w5-f6j6-v9x4/GHSA-r2w5-f6j6-v9x4.json index 7dd53389c7e..217cb95c5d0 100644 --- a/advisories/unreviewed/2024/07/GHSA-r2w5-f6j6-v9x4/GHSA-r2w5-f6j6-v9x4.json +++ b/advisories/unreviewed/2024/07/GHSA-r2w5-f6j6-v9x4/GHSA-r2w5-f6j6-v9x4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-v2hj-v7hg-p8cx/GHSA-v2hj-v7hg-p8cx.json b/advisories/unreviewed/2024/07/GHSA-v2hj-v7hg-p8cx/GHSA-v2hj-v7hg-p8cx.json index 7da7d747812..580dd5220d9 100644 --- a/advisories/unreviewed/2024/07/GHSA-v2hj-v7hg-p8cx/GHSA-v2hj-v7hg-p8cx.json +++ b/advisories/unreviewed/2024/07/GHSA-v2hj-v7hg-p8cx/GHSA-v2hj-v7hg-p8cx.json @@ -7,12 +7,8 @@ "CVE-2024-42117" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: ASSERT when failing to find index by plane/stream id\n\n[WHY]\nfind_disp_cfg_idx_by_plane_id and find_disp_cfg_idx_by_stream_id returns\nan array index and they return -1 when not found; however, -1 is not a\nvalid index number.\n\n[HOW]\nWhen this happens, call ASSERT(), and return a positive number (which is\nfewer than callers' array size) instead.\n\nThis fixes 4 OVERRUN and 2 NEGATIVE_RETURNS issues reported by Coverity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-vc9q-498x-49qm/GHSA-vc9q-498x-49qm.json b/advisories/unreviewed/2024/07/GHSA-vc9q-498x-49qm/GHSA-vc9q-498x-49qm.json index 7b80c4be799..3ad7561d103 100644 --- a/advisories/unreviewed/2024/07/GHSA-vc9q-498x-49qm/GHSA-vc9q-498x-49qm.json +++ b/advisories/unreviewed/2024/07/GHSA-vc9q-498x-49qm/GHSA-vc9q-498x-49qm.json @@ -7,12 +7,8 @@ "CVE-2024-42121" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Check index msg_id before read or write\n\n[WHAT]\nmsg_id is used as an array index and it cannot be a negative value, and\ntherefore cannot be equal to MOD_HDCP_MESSAGE_ID_INVALID (-1).\n\n[HOW]\nCheck whether msg_id is valid before reading and setting.\n\nThis fixes 4 OVERRUN issues reported by Coverity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-vhqm-6frc-f35m/GHSA-vhqm-6frc-f35m.json b/advisories/unreviewed/2024/07/GHSA-vhqm-6frc-f35m/GHSA-vhqm-6frc-f35m.json index ededc5c5669..0bb86194dea 100644 --- a/advisories/unreviewed/2024/07/GHSA-vhqm-6frc-f35m/GHSA-vhqm-6frc-f35m.json +++ b/advisories/unreviewed/2024/07/GHSA-vhqm-6frc-f35m/GHSA-vhqm-6frc-f35m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-w2vp-cxx6-662p/GHSA-w2vp-cxx6-662p.json b/advisories/unreviewed/2024/07/GHSA-w2vp-cxx6-662p/GHSA-w2vp-cxx6-662p.json index 42e1921a2da..b3566f9507f 100644 --- a/advisories/unreviewed/2024/07/GHSA-w2vp-cxx6-662p/GHSA-w2vp-cxx6-662p.json +++ b/advisories/unreviewed/2024/07/GHSA-w2vp-cxx6-662p/GHSA-w2vp-cxx6-662p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/07/GHSA-wx45-rr53-j6w8/GHSA-wx45-rr53-j6w8.json b/advisories/unreviewed/2024/07/GHSA-wx45-rr53-j6w8/GHSA-wx45-rr53-j6w8.json index 3155398ff49..448dabed3ad 100644 --- a/advisories/unreviewed/2024/07/GHSA-wx45-rr53-j6w8/GHSA-wx45-rr53-j6w8.json +++ b/advisories/unreviewed/2024/07/GHSA-wx45-rr53-j6w8/GHSA-wx45-rr53-j6w8.json @@ -7,12 +7,8 @@ "CVE-2024-42146" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/xe: Add outer runtime_pm protection to xe_live_ktest@xe_dma_buf\n\nAny kunit doing any memory access should get their own runtime_pm\nouter references since they don't use the standard driver API\nentries. In special this dma_buf from the same driver.\n\nFound by pre-merge CI on adding WARN calls for unprotected\ninner callers:\n\n<6> [318.639739] # xe_dma_buf_kunit: running xe_test_dmabuf_import_same_driver\n<4> [318.639957] ------------[ cut here ]------------\n<4> [318.639967] xe 0000:4d:00.0: Missing outer runtime PM protection\n<4> [318.640049] WARNING: CPU: 117 PID: 3832 at drivers/gpu/drm/xe/xe_pm.c:533 xe_pm_runtime_get_noresume+0x48/0x60 [xe]", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-2mcp-f38w-p5gf/GHSA-2mcp-f38w-p5gf.json b/advisories/unreviewed/2024/08/GHSA-2mcp-f38w-p5gf/GHSA-2mcp-f38w-p5gf.json index 78be01256ca..4813dc712d2 100644 --- a/advisories/unreviewed/2024/08/GHSA-2mcp-f38w-p5gf/GHSA-2mcp-f38w-p5gf.json +++ b/advisories/unreviewed/2024/08/GHSA-2mcp-f38w-p5gf/GHSA-2mcp-f38w-p5gf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-2xc5-3f92-ffpr/GHSA-2xc5-3f92-ffpr.json b/advisories/unreviewed/2024/08/GHSA-2xc5-3f92-ffpr/GHSA-2xc5-3f92-ffpr.json index bc9158c64d2..5e05e5576ce 100644 --- a/advisories/unreviewed/2024/08/GHSA-2xc5-3f92-ffpr/GHSA-2xc5-3f92-ffpr.json +++ b/advisories/unreviewed/2024/08/GHSA-2xc5-3f92-ffpr/GHSA-2xc5-3f92-ffpr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-3p5j-pp53-5ghm/GHSA-3p5j-pp53-5ghm.json b/advisories/unreviewed/2024/08/GHSA-3p5j-pp53-5ghm/GHSA-3p5j-pp53-5ghm.json index 689220b37b2..b3d935668bf 100644 --- a/advisories/unreviewed/2024/08/GHSA-3p5j-pp53-5ghm/GHSA-3p5j-pp53-5ghm.json +++ b/advisories/unreviewed/2024/08/GHSA-3p5j-pp53-5ghm/GHSA-3p5j-pp53-5ghm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-82cg-8mxr-gw2q/GHSA-82cg-8mxr-gw2q.json b/advisories/unreviewed/2024/08/GHSA-82cg-8mxr-gw2q/GHSA-82cg-8mxr-gw2q.json index 37b6d7c5f2e..678cfc3dbd1 100644 --- a/advisories/unreviewed/2024/08/GHSA-82cg-8mxr-gw2q/GHSA-82cg-8mxr-gw2q.json +++ b/advisories/unreviewed/2024/08/GHSA-82cg-8mxr-gw2q/GHSA-82cg-8mxr-gw2q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -51,9 +49,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-c6m8-29qv-7wq9/GHSA-c6m8-29qv-7wq9.json b/advisories/unreviewed/2024/08/GHSA-c6m8-29qv-7wq9/GHSA-c6m8-29qv-7wq9.json index 6a43edf4aa0..1f785c569b7 100644 --- a/advisories/unreviewed/2024/08/GHSA-c6m8-29qv-7wq9/GHSA-c6m8-29qv-7wq9.json +++ b/advisories/unreviewed/2024/08/GHSA-c6m8-29qv-7wq9/GHSA-c6m8-29qv-7wq9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/08/GHSA-hrq9-fvj6-g7g7/GHSA-hrq9-fvj6-g7g7.json b/advisories/unreviewed/2024/08/GHSA-hrq9-fvj6-g7g7/GHSA-hrq9-fvj6-g7g7.json index 8b4fa6573af..04f28d44276 100644 --- a/advisories/unreviewed/2024/08/GHSA-hrq9-fvj6-g7g7/GHSA-hrq9-fvj6-g7g7.json +++ b/advisories/unreviewed/2024/08/GHSA-hrq9-fvj6-g7g7/GHSA-hrq9-fvj6-g7g7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-r5h4-2chq-43m3/GHSA-r5h4-2chq-43m3.json b/advisories/unreviewed/2024/08/GHSA-r5h4-2chq-43m3/GHSA-r5h4-2chq-43m3.json index c107fb59887..d00d8ada850 100644 --- a/advisories/unreviewed/2024/08/GHSA-r5h4-2chq-43m3/GHSA-r5h4-2chq-43m3.json +++ b/advisories/unreviewed/2024/08/GHSA-r5h4-2chq-43m3/GHSA-r5h4-2chq-43m3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-r657-mr7r-rf9x/GHSA-r657-mr7r-rf9x.json b/advisories/unreviewed/2024/08/GHSA-r657-mr7r-rf9x/GHSA-r657-mr7r-rf9x.json index 799b3c34afe..03a45c19cb9 100644 --- a/advisories/unreviewed/2024/08/GHSA-r657-mr7r-rf9x/GHSA-r657-mr7r-rf9x.json +++ b/advisories/unreviewed/2024/08/GHSA-r657-mr7r-rf9x/GHSA-r657-mr7r-rf9x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-3vh6-2h2q-2g33/GHSA-3vh6-2h2q-2g33.json b/advisories/unreviewed/2024/09/GHSA-3vh6-2h2q-2g33/GHSA-3vh6-2h2q-2g33.json index 382d54f28b6..7d6c5cb9ef6 100644 --- a/advisories/unreviewed/2024/09/GHSA-3vh6-2h2q-2g33/GHSA-3vh6-2h2q-2g33.json +++ b/advisories/unreviewed/2024/09/GHSA-3vh6-2h2q-2g33/GHSA-3vh6-2h2q-2g33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-hjpg-cfqw-g6jv/GHSA-hjpg-cfqw-g6jv.json b/advisories/unreviewed/2024/09/GHSA-hjpg-cfqw-g6jv/GHSA-hjpg-cfqw-g6jv.json index 077c1ab2b08..047cacad30c 100644 --- a/advisories/unreviewed/2024/09/GHSA-hjpg-cfqw-g6jv/GHSA-hjpg-cfqw-g6jv.json +++ b/advisories/unreviewed/2024/09/GHSA-hjpg-cfqw-g6jv/GHSA-hjpg-cfqw-g6jv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/10/GHSA-qqj9-5c87-9cx7/GHSA-qqj9-5c87-9cx7.json b/advisories/unreviewed/2024/10/GHSA-qqj9-5c87-9cx7/GHSA-qqj9-5c87-9cx7.json index dad32ad2738..fb796a753c9 100644 --- a/advisories/unreviewed/2024/10/GHSA-qqj9-5c87-9cx7/GHSA-qqj9-5c87-9cx7.json +++ b/advisories/unreviewed/2024/10/GHSA-qqj9-5c87-9cx7/GHSA-qqj9-5c87-9cx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",