mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-35p7-263x-jc9h",
|
||||
"modified": "2023-01-30T18:30:25Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22659"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22659"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4vw8-623p-rpv2",
|
||||
"modified": "2023-02-02T00:30:16Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22662"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22662"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-f846-r37x-3h9w",
|
||||
"modified": "2023-01-30T18:30:20Z",
|
||||
"modified": "2024-08-06T21:30:46Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22654"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22654"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-g43h-746q-4j8p",
|
||||
"modified": "2023-01-30T18:30:22Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22657"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22657"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-gp9q-v6ph-4fp7",
|
||||
"modified": "2023-01-30T18:30:21Z",
|
||||
"modified": "2024-08-06T21:30:46Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22656"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22656"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-p37c-3rwx-j4gw",
|
||||
"modified": "2023-01-30T18:30:21Z",
|
||||
"modified": "2024-08-06T21:30:46Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22655"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22655"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-qwhg-pvmj-c2g2",
|
||||
"modified": "2023-02-02T00:30:16Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22660"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22660"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-rf9w-rpj6-vm45",
|
||||
"modified": "2023-02-02T00:30:16Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22661"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22661"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-v9hj-4wpj-hcq2",
|
||||
"modified": "2023-01-30T18:30:23Z",
|
||||
"modified": "2024-08-06T21:30:46Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22658"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22658"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-xr9x-fhcv-6qm7",
|
||||
"modified": "2023-01-30T21:30:44Z",
|
||||
"modified": "2024-08-06T21:30:46Z",
|
||||
"published": "2023-01-20T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2020-22653"
|
||||
@@ -21,6 +21,10 @@
|
||||
"type": "ADVISORY",
|
||||
"url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22653"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://hdhrmi.blogspot.com/2020/03/multiple-vulnerabilities-in-ruckus.html?m=1"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://support.ruckuswireless.com/security_bulletins/302"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4qvc-25ff-jcmq",
|
||||
"modified": "2024-03-27T00:30:57Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2024-03-27T00:30:57Z",
|
||||
"aliases": [
|
||||
"CVE-2024-2209"
|
||||
],
|
||||
"details": "A user with administrative privileges can create a compromised dll file of the same name as the original dll within the HP printer’s Firmware Update Utility (FUU) bundle and place it in the Microsoft Windows default downloads directory which can lead to potential arbitrary code execution.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -25,9 +28,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-94"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-03-27T00:15:07Z"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-w853-6hc5-89h2",
|
||||
"modified": "2024-03-20T15:32:21Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2024-03-20T15:32:21Z",
|
||||
"aliases": [
|
||||
"CVE-2024-24336"
|
||||
],
|
||||
"details": "A multiple Cross-site scripting (XSS) vulnerability in the '/members/moremember.pl', and ‘/members/members-home.pl’ endpoints within Koha Library Management System version 23.05.05 and earlier allows malicious staff users to carry out CSRF attacks, including unauthorized changes to usernames and passwords of users visiting the affected page, via the 'Circulation note' and ‘Patrons Restriction’ components.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -25,9 +28,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-352"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-03-19T21:15:07Z"
|
||||
|
||||
@@ -56,7 +56,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-358"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-f685-p7gp-hwrf",
|
||||
"modified": "2024-04-30T21:30:32Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2024-04-30T21:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2024-26331"
|
||||
],
|
||||
"details": "ReCrystallize Server 5.10.0.0 uses a authorization mechanism that relies on the value of a cookie, but it does not bind the cookie value to a session ID. Attackers can easily modify the cookie value, within a browser or by implementing client-side code outside of a browser. Attackers can bypass the authentication mechanism by modifying the cookie to contain an expected value.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -29,9 +32,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-287"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-04-30T19:15:23Z"
|
||||
|
||||
@@ -44,7 +44,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-358"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-r2fj-j5gm-xjr5",
|
||||
"modified": "2024-05-05T18:30:33Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2024-04-30T15:30:37Z",
|
||||
"aliases": [
|
||||
"CVE-2024-33309"
|
||||
],
|
||||
"details": "An issue in TVS Motor Company Limited TVS Connet Android v.4.5.1 and iOS v.5.0.0 allows a remote attacker to obtain sensitive information via an insecure API endpoint",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -33,9 +36,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-200"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2024-04-30T15:15:53Z"
|
||||
|
||||
@@ -32,7 +32,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-358"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -32,7 +32,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-358"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-cm9f-fpj4-64q9",
|
||||
"modified": "2024-08-01T15:32:13Z",
|
||||
"modified": "2024-08-06T21:30:47Z",
|
||||
"published": "2024-07-26T21:31:16Z",
|
||||
"aliases": [
|
||||
"CVE-2024-41628"
|
||||
@@ -29,6 +29,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://docs.severalnines.com/docs/clustercontrol/changelogs/changes-in-v2-1-0"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/Redshift-CyberSecurity/CVE-2024-41628"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://clustercontrol.com"
|
||||
|
||||
@@ -32,7 +32,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-358"
|
||||
],
|
||||
"severity": "CRITICAL",
|
||||
"github_reviewed": false,
|
||||
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user