Advisory Database Sync

This commit is contained in:
advisory-database[bot]
2024-08-06 21:31:56 +00:00
parent 253472ff8e
commit 898e97d1ab
42 changed files with 832 additions and 42 deletions
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-35p7-263x-jc9h",
"modified": "2023-01-30T18:30:25Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22659"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22659"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4vw8-623p-rpv2",
"modified": "2023-02-02T00:30:16Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22662"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22662"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f846-r37x-3h9w",
"modified": "2023-01-30T18:30:20Z",
"modified": "2024-08-06T21:30:46Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22654"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22654"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-g43h-746q-4j8p",
"modified": "2023-01-30T18:30:22Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22657"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22657"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-gp9q-v6ph-4fp7",
"modified": "2023-01-30T18:30:21Z",
"modified": "2024-08-06T21:30:46Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22656"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22656"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-p37c-3rwx-j4gw",
"modified": "2023-01-30T18:30:21Z",
"modified": "2024-08-06T21:30:46Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22655"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22655"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-qwhg-pvmj-c2g2",
"modified": "2023-02-02T00:30:16Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22660"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22660"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-rf9w-rpj6-vm45",
"modified": "2023-02-02T00:30:16Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22661"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22661"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-v9hj-4wpj-hcq2",
"modified": "2023-01-30T18:30:23Z",
"modified": "2024-08-06T21:30:46Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22658"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22658"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-xr9x-fhcv-6qm7",
"modified": "2023-01-30T21:30:44Z",
"modified": "2024-08-06T21:30:46Z",
"published": "2023-01-20T21:30:32Z",
"aliases": [
"CVE-2020-22653"
@@ -21,6 +21,10 @@
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22653"
},
{
"type": "WEB",
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
},
{
"type": "WEB",
"url": "https://support.ruckuswireless.com/security_bulletins/302"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-4qvc-25ff-jcmq",
"modified": "2024-03-27T00:30:57Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2024-03-27T00:30:57Z",
"aliases": [
"CVE-2024-2209"
],
"details": "A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printers Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default downloads directory which can lead to potential arbitrary code execution.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L"
}
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-94"
],
"severity": null,
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-03-27T00:15:07Z"
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-w853-6hc5-89h2",
"modified": "2024-03-20T15:32:21Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2024-03-20T15:32:21Z",
"aliases": [
"CVE-2024-24336"
],
"details": "A multiple Cross-site scripting (XSS) vulnerability in the '/members/moremember.pl', and /members/members-home.pl endpoints within Koha Library Management System version 23.05.05 and earlier allows malicious staff users to carry out CSRF attacks, including unauthorized changes to usernames and passwords of users visiting the affected page, via the 'Circulation note' and Patrons Restriction components.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N"
}
],
"affected": [
@@ -25,9 +28,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-352"
],
"severity": null,
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-03-19T21:15:07Z"
@@ -56,7 +56,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-358"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-f685-p7gp-hwrf",
"modified": "2024-04-30T21:30:32Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2024-04-30T21:30:32Z",
"aliases": [
"CVE-2024-26331"
],
"details": "ReCrystallize Server 5.10.0.0 uses a authorization mechanism that relies on the value of a cookie, but it does not bind the cookie value to a session ID. Attackers can easily modify the cookie value, within a browser or by implementing client-side code outside of a browser. Attackers can bypass the authentication mechanism by modifying the cookie to contain an expected value.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [
@@ -29,9 +32,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-287"
],
"severity": null,
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-30T19:15:23Z"
@@ -44,7 +44,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-358"
],
"severity": "MODERATE",
"github_reviewed": false,
@@ -1,14 +1,17 @@
{
"schema_version": "1.4.0",
"id": "GHSA-r2fj-j5gm-xjr5",
"modified": "2024-05-05T18:30:33Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2024-04-30T15:30:37Z",
"aliases": [
"CVE-2024-33309"
],
"details": "An issue in TVS Motor Company Limited TVS Connet Android v.4.5.1 and iOS v.5.0.0 allows a remote attacker to obtain sensitive information via an insecure API endpoint",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
}
],
"affected": [
@@ -33,9 +36,9 @@
],
"database_specific": {
"cwe_ids": [
"CWE-200"
],
"severity": null,
"severity": "HIGH",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2024-04-30T15:15:53Z"
@@ -32,7 +32,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-358"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -32,7 +32,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-358"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-cm9f-fpj4-64q9",
"modified": "2024-08-01T15:32:13Z",
"modified": "2024-08-06T21:30:47Z",
"published": "2024-07-26T21:31:16Z",
"aliases": [
"CVE-2024-41628"
@@ -29,6 +29,10 @@
"type": "WEB",
"url": "https://docs.severalnines.com/docs/clustercontrol/changelogs/changes-in-v2-1-0"
},
{
"type": "WEB",
"url": "https://github.com/Redshift-CyberSecurity/CVE-2024-41628"
},
{
"type": "WEB",
"url": "http://clustercontrol.com"
@@ -32,7 +32,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-358"
],
"severity": "CRITICAL",
"github_reviewed": false,

Some files were not shown because too many files have changed in this diff Show More