From 9625c2dcd3a177198c5c3ce85a04f4fc46c84f6a Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 29 Nov 2024 05:16:33 +0000 Subject: [PATCH] Advisory Database Sync --- .../08/GHSA-773q-5334-5gf9/GHSA-773q-5334-5gf9.json | 8 ++------ .../08/GHSA-jf43-3v8j-qwwr/GHSA-jf43-3v8j-qwwr.json | 4 +--- .../08/GHSA-r6ff-2q3c-v3pv/GHSA-r6ff-2q3c-v3pv.json | 4 +--- .../01/GHSA-6hg4-vp5q-47mw/GHSA-6hg4-vp5q-47mw.json | 12 +++--------- .../01/GHSA-829q-v5g8-hhxc/GHSA-829q-v5g8-hhxc.json | 8 ++------ .../01/GHSA-f85w-wvc7-crwc/GHSA-f85w-wvc7-crwc.json | 12 +++--------- .../01/GHSA-g6pw-999w-j75m/GHSA-g6pw-999w-j75m.json | 12 +++--------- .../01/GHSA-j9q2-f9q7-jhgq/GHSA-j9q2-f9q7-jhgq.json | 12 +++--------- .../01/GHSA-p76f-wr22-4rv6/GHSA-p76f-wr22-4rv6.json | 12 +++--------- .../01/GHSA-q79m-c546-2g63/GHSA-q79m-c546-2g63.json | 12 +++--------- .../01/GHSA-q95h-cqrv-8jv5/GHSA-q95h-cqrv-8jv5.json | 4 +--- .../01/GHSA-xwhj-pqcg-8rcr/GHSA-xwhj-pqcg-8rcr.json | 12 +++--------- .../03/GHSA-6hcf-g6gr-hhcr/GHSA-6hcf-g6gr-hhcr.json | 8 ++------ .../03/GHSA-9qwg-crg9-m2vc/GHSA-9qwg-crg9-m2vc.json | 12 +++--------- .../03/GHSA-cpmr-mw4j-99r7/GHSA-cpmr-mw4j-99r7.json | 8 ++------ .../03/GHSA-f5v5-ccqc-6w36/GHSA-f5v5-ccqc-6w36.json | 12 +++--------- .../03/GHSA-r95w-7cpx-h5mx/GHSA-r95w-7cpx-h5mx.json | 4 +--- .../03/GHSA-wvc4-j7g5-4f79/GHSA-wvc4-j7g5-4f79.json | 8 ++------ .../04/GHSA-222x-xv7v-2jfv/GHSA-222x-xv7v-2jfv.json | 12 +++--------- .../04/GHSA-2353-4p2v-vp3h/GHSA-2353-4p2v-vp3h.json | 12 +++--------- .../04/GHSA-2366-wj32-h6qc/GHSA-2366-wj32-h6qc.json | 12 +++--------- .../04/GHSA-2392-533p-vgx6/GHSA-2392-533p-vgx6.json | 12 +++--------- .../04/GHSA-23m7-3cfp-h2gf/GHSA-23m7-3cfp-h2gf.json | 12 +++--------- .../04/GHSA-23p6-gh9w-qhrf/GHSA-23p6-gh9w-qhrf.json | 12 +++--------- .../04/GHSA-269v-f6q7-wg8w/GHSA-269v-f6q7-wg8w.json | 12 +++--------- .../04/GHSA-28qj-9gmx-6vpj/GHSA-28qj-9gmx-6vpj.json | 12 +++--------- .../04/GHSA-2c6r-pj43-h4x3/GHSA-2c6r-pj43-h4x3.json | 12 +++--------- .../04/GHSA-2c97-6wg4-hjvw/GHSA-2c97-6wg4-hjvw.json | 12 +++--------- .../04/GHSA-2f5w-wx6g-q5g3/GHSA-2f5w-wx6g-q5g3.json | 12 +++--------- .../04/GHSA-2g3j-6hrf-vjp9/GHSA-2g3j-6hrf-vjp9.json | 12 +++--------- .../04/GHSA-2h6g-3hxf-g52r/GHSA-2h6g-3hxf-g52r.json | 8 ++------ .../04/GHSA-2h6x-3gq5-h875/GHSA-2h6x-3gq5-h875.json | 12 +++--------- .../04/GHSA-2wfj-rgp8-qgxp/GHSA-2wfj-rgp8-qgxp.json | 12 +++--------- .../04/GHSA-2x64-ch34-4p29/GHSA-2x64-ch34-4p29.json | 12 +++--------- .../04/GHSA-2xpp-qx4m-56h3/GHSA-2xpp-qx4m-56h3.json | 12 +++--------- .../04/GHSA-33qj-cxq7-xmmr/GHSA-33qj-cxq7-xmmr.json | 12 +++--------- .../04/GHSA-33xx-xhf9-4h3m/GHSA-33xx-xhf9-4h3m.json | 12 +++--------- .../04/GHSA-354c-qvr6-3hcp/GHSA-354c-qvr6-3hcp.json | 12 +++--------- .../04/GHSA-36m7-hm82-xm8q/GHSA-36m7-hm82-xm8q.json | 8 ++------ .../04/GHSA-377x-f57q-cjmg/GHSA-377x-f57q-cjmg.json | 12 +++--------- .../04/GHSA-39c7-wc77-32cj/GHSA-39c7-wc77-32cj.json | 12 +++--------- .../04/GHSA-3hgh-j2c9-7c7j/GHSA-3hgh-j2c9-7c7j.json | 12 +++--------- .../04/GHSA-3hh9-649f-frq3/GHSA-3hh9-649f-frq3.json | 12 +++--------- .../04/GHSA-3j83-v84m-h6f2/GHSA-3j83-v84m-h6f2.json | 12 +++--------- .../04/GHSA-3m6j-qgp5-2j5m/GHSA-3m6j-qgp5-2j5m.json | 12 +++--------- .../04/GHSA-3mcx-mghf-ffrq/GHSA-3mcx-mghf-ffrq.json | 12 +++--------- .../04/GHSA-3mf4-86mx-6m36/GHSA-3mf4-86mx-6m36.json | 12 +++--------- .../04/GHSA-3p2q-4jpq-m2x2/GHSA-3p2q-4jpq-m2x2.json | 12 +++--------- .../04/GHSA-3r7x-xp2q-64p6/GHSA-3r7x-xp2q-64p6.json | 12 +++--------- .../04/GHSA-3r8x-3j4q-x9g6/GHSA-3r8x-3j4q-x9g6.json | 12 +++--------- .../04/GHSA-424f-vwfw-m7pm/GHSA-424f-vwfw-m7pm.json | 12 +++--------- .../04/GHSA-4338-4734-j6wc/GHSA-4338-4734-j6wc.json | 12 +++--------- .../04/GHSA-43xj-jq6q-9wr8/GHSA-43xj-jq6q-9wr8.json | 12 +++--------- .../04/GHSA-44jw-5jxp-qmqr/GHSA-44jw-5jxp-qmqr.json | 12 +++--------- .../04/GHSA-44p8-q8mq-gw9f/GHSA-44p8-q8mq-gw9f.json | 12 +++--------- .../04/GHSA-49cf-r7gw-pv88/GHSA-49cf-r7gw-pv88.json | 12 +++--------- .../04/GHSA-4ccp-g444-f9q7/GHSA-4ccp-g444-f9q7.json | 12 +++--------- .../04/GHSA-4cm3-m32w-wm2p/GHSA-4cm3-m32w-wm2p.json | 12 +++--------- .../04/GHSA-4gq3-xq44-x74x/GHSA-4gq3-xq44-x74x.json | 12 +++--------- .../04/GHSA-4hh9-8r2h-955p/GHSA-4hh9-8r2h-955p.json | 12 +++--------- .../04/GHSA-4m5w-43cx-p687/GHSA-4m5w-43cx-p687.json | 12 +++--------- .../04/GHSA-4p65-mw7f-2jcx/GHSA-4p65-mw7f-2jcx.json | 12 +++--------- .../04/GHSA-4q49-xx74-vrg5/GHSA-4q49-xx74-vrg5.json | 12 +++--------- .../04/GHSA-4r3c-72vr-vf8h/GHSA-4r3c-72vr-vf8h.json | 12 +++--------- .../04/GHSA-4xvr-x4vc-p55f/GHSA-4xvr-x4vc-p55f.json | 12 +++--------- .../04/GHSA-4xxf-52jh-mcc6/GHSA-4xxf-52jh-mcc6.json | 12 +++--------- .../04/GHSA-52wx-ppx5-cwp9/GHSA-52wx-ppx5-cwp9.json | 8 ++------ .../04/GHSA-53jr-499g-vcmm/GHSA-53jr-499g-vcmm.json | 12 +++--------- .../04/GHSA-547j-7cmx-9h36/GHSA-547j-7cmx-9h36.json | 12 +++--------- .../04/GHSA-555g-qrv3-xmx5/GHSA-555g-qrv3-xmx5.json | 12 +++--------- .../04/GHSA-588h-3567-38rc/GHSA-588h-3567-38rc.json | 12 +++--------- .../04/GHSA-59c6-g57x-ff88/GHSA-59c6-g57x-ff88.json | 12 +++--------- .../04/GHSA-5c3q-qjx8-r9hg/GHSA-5c3q-qjx8-r9hg.json | 12 +++--------- .../04/GHSA-5cj2-9wjg-2695/GHSA-5cj2-9wjg-2695.json | 12 +++--------- .../04/GHSA-5gfm-vq6m-rxf2/GHSA-5gfm-vq6m-rxf2.json | 12 +++--------- .../04/GHSA-5q7w-5h3w-gx86/GHSA-5q7w-5h3w-gx86.json | 12 +++--------- .../04/GHSA-5rmq-q5qg-vcf7/GHSA-5rmq-q5qg-vcf7.json | 12 +++--------- .../04/GHSA-5wwr-cxv7-j2qg/GHSA-5wwr-cxv7-j2qg.json | 12 +++--------- .../04/GHSA-6378-v25v-557w/GHSA-6378-v25v-557w.json | 12 +++--------- .../04/GHSA-64r4-fw2x-4244/GHSA-64r4-fw2x-4244.json | 12 +++--------- .../04/GHSA-6558-8g43-2f27/GHSA-6558-8g43-2f27.json | 12 +++--------- .../04/GHSA-6579-q62m-fg8g/GHSA-6579-q62m-fg8g.json | 12 +++--------- .../04/GHSA-66pm-cfc2-fw96/GHSA-66pm-cfc2-fw96.json | 12 +++--------- .../04/GHSA-6748-8gv9-q5pj/GHSA-6748-8gv9-q5pj.json | 12 +++--------- .../04/GHSA-67pp-g8pj-rw94/GHSA-67pp-g8pj-rw94.json | 12 +++--------- .../04/GHSA-6868-m557-3x86/GHSA-6868-m557-3x86.json | 8 ++------ .../04/GHSA-69j5-8jr8-g389/GHSA-69j5-8jr8-g389.json | 12 +++--------- .../04/GHSA-6cj3-4wq8-r2m5/GHSA-6cj3-4wq8-r2m5.json | 12 +++--------- .../04/GHSA-6f9h-g345-97pw/GHSA-6f9h-g345-97pw.json | 12 +++--------- .../04/GHSA-6g32-qf28-2mrm/GHSA-6g32-qf28-2mrm.json | 12 +++--------- .../04/GHSA-6m5h-7f6p-qc3h/GHSA-6m5h-7f6p-qc3h.json | 12 +++--------- .../04/GHSA-6pv3-758h-9wgc/GHSA-6pv3-758h-9wgc.json | 12 +++--------- .../04/GHSA-6rhj-cqw5-mm3r/GHSA-6rhj-cqw5-mm3r.json | 12 +++--------- .../04/GHSA-6wvf-36hc-v85j/GHSA-6wvf-36hc-v85j.json | 12 +++--------- .../04/GHSA-6x7w-w943-rj89/GHSA-6x7w-w943-rj89.json | 12 +++--------- .../04/GHSA-6xc7-h5cr-j8wh/GHSA-6xc7-h5cr-j8wh.json | 12 +++--------- .../04/GHSA-72gx-jhgh-xcv8/GHSA-72gx-jhgh-xcv8.json | 12 +++--------- .../04/GHSA-72xq-vrww-9f5p/GHSA-72xq-vrww-9f5p.json | 12 +++--------- .../04/GHSA-736f-7686-hp7x/GHSA-736f-7686-hp7x.json | 12 +++--------- .../04/GHSA-739r-qwgh-rfgr/GHSA-739r-qwgh-rfgr.json | 12 +++--------- .../04/GHSA-73c8-87qq-rgfx/GHSA-73c8-87qq-rgfx.json | 12 +++--------- .../04/GHSA-757p-m3gj-h62j/GHSA-757p-m3gj-h62j.json | 12 +++--------- .../04/GHSA-757q-3q55-7q58/GHSA-757q-3q55-7q58.json | 12 +++--------- .../04/GHSA-767p-jcph-vjj3/GHSA-767p-jcph-vjj3.json | 12 +++--------- .../04/GHSA-77j4-w2xf-j9wq/GHSA-77j4-w2xf-j9wq.json | 12 +++--------- .../04/GHSA-78qx-2576-5ph4/GHSA-78qx-2576-5ph4.json | 12 +++--------- .../04/GHSA-7994-78qh-hc57/GHSA-7994-78qh-hc57.json | 12 +++--------- .../04/GHSA-7ccp-769m-hm7c/GHSA-7ccp-769m-hm7c.json | 12 +++--------- .../04/GHSA-7f96-32pr-5cjh/GHSA-7f96-32pr-5cjh.json | 12 +++--------- .../04/GHSA-7hqf-49cq-v3f3/GHSA-7hqf-49cq-v3f3.json | 12 +++--------- .../04/GHSA-7jxf-6m2j-66m8/GHSA-7jxf-6m2j-66m8.json | 12 +++--------- .../04/GHSA-7qx6-982c-4h2w/GHSA-7qx6-982c-4h2w.json | 12 +++--------- .../04/GHSA-7qx9-fr74-8w39/GHSA-7qx9-fr74-8w39.json | 12 +++--------- .../04/GHSA-7r5h-rj9j-3ch2/GHSA-7r5h-rj9j-3ch2.json | 12 +++--------- .../04/GHSA-7rhx-wr6q-grrc/GHSA-7rhx-wr6q-grrc.json | 12 +++--------- .../04/GHSA-7rq7-3vr3-7mmq/GHSA-7rq7-3vr3-7mmq.json | 12 +++--------- .../04/GHSA-7v6f-rwxp-2p3w/GHSA-7v6f-rwxp-2p3w.json | 12 +++--------- .../04/GHSA-7vfp-864w-4grp/GHSA-7vfp-864w-4grp.json | 12 +++--------- .../04/GHSA-7vvv-c5q6-4rvq/GHSA-7vvv-c5q6-4rvq.json | 12 +++--------- .../04/GHSA-7w2x-4jg9-m554/GHSA-7w2x-4jg9-m554.json | 12 +++--------- .../04/GHSA-7w3v-58f5-vcwg/GHSA-7w3v-58f5-vcwg.json | 12 +++--------- .../04/GHSA-82hc-6453-wq2j/GHSA-82hc-6453-wq2j.json | 12 +++--------- .../04/GHSA-82pw-8qqc-cfm6/GHSA-82pw-8qqc-cfm6.json | 12 +++--------- .../04/GHSA-82qj-m6p5-xrm7/GHSA-82qj-m6p5-xrm7.json | 12 +++--------- .../04/GHSA-8377-ghcg-3gw2/GHSA-8377-ghcg-3gw2.json | 12 +++--------- .../04/GHSA-84hw-m4f3-jqjx/GHSA-84hw-m4f3-jqjx.json | 12 +++--------- .../04/GHSA-85gx-fwrr-6mpx/GHSA-85gx-fwrr-6mpx.json | 12 +++--------- .../04/GHSA-8768-4fq8-2xfv/GHSA-8768-4fq8-2xfv.json | 12 +++--------- .../04/GHSA-89g7-hm6r-h26p/GHSA-89g7-hm6r-h26p.json | 12 +++--------- .../04/GHSA-8cj5-765m-4mc8/GHSA-8cj5-765m-4mc8.json | 12 +++--------- .../04/GHSA-8cmx-379f-mrff/GHSA-8cmx-379f-mrff.json | 12 +++--------- .../04/GHSA-8fgr-q68j-xmxj/GHSA-8fgr-q68j-xmxj.json | 12 +++--------- .../04/GHSA-8fjp-x7fp-72f8/GHSA-8fjp-x7fp-72f8.json | 12 +++--------- .../04/GHSA-8fvg-54hw-qcm9/GHSA-8fvg-54hw-qcm9.json | 12 +++--------- .../04/GHSA-8p7j-pvmf-hg98/GHSA-8p7j-pvmf-hg98.json | 12 +++--------- .../04/GHSA-8rjr-96wc-j9h5/GHSA-8rjr-96wc-j9h5.json | 12 +++--------- .../04/GHSA-8v2v-3g3x-fvg3/GHSA-8v2v-3g3x-fvg3.json | 12 +++--------- .../04/GHSA-8wfc-6m4r-hvmp/GHSA-8wfc-6m4r-hvmp.json | 12 +++--------- .../04/GHSA-8wxx-5xj3-7grr/GHSA-8wxx-5xj3-7grr.json | 12 +++--------- .../04/GHSA-8x55-jj29-5rqp/GHSA-8x55-jj29-5rqp.json | 12 +++--------- .../04/GHSA-8xw9-37wm-wvjw/GHSA-8xw9-37wm-wvjw.json | 12 +++--------- .../04/GHSA-9344-74cj-7q6v/GHSA-9344-74cj-7q6v.json | 12 +++--------- .../04/GHSA-9522-c73r-qxp5/GHSA-9522-c73r-qxp5.json | 12 +++--------- .../04/GHSA-96fj-94r5-8c5r/GHSA-96fj-94r5-8c5r.json | 12 +++--------- .../04/GHSA-97pw-3crv-m6c8/GHSA-97pw-3crv-m6c8.json | 12 +++--------- .../04/GHSA-984j-c7w7-4fvp/GHSA-984j-c7w7-4fvp.json | 12 +++--------- .../04/GHSA-9968-x288-6qqr/GHSA-9968-x288-6qqr.json | 12 +++--------- .../04/GHSA-9c63-fc87-mfvj/GHSA-9c63-fc87-mfvj.json | 12 +++--------- .../04/GHSA-9cwj-6gfj-h53r/GHSA-9cwj-6gfj-h53r.json | 12 +++--------- .../04/GHSA-9fx5-wg4x-3gxx/GHSA-9fx5-wg4x-3gxx.json | 12 +++--------- .../04/GHSA-9gwq-w6mg-j59q/GHSA-9gwq-w6mg-j59q.json | 12 +++--------- .../04/GHSA-9h27-q32v-cjxq/GHSA-9h27-q32v-cjxq.json | 12 +++--------- .../04/GHSA-9jfp-x3rx-xj5v/GHSA-9jfp-x3rx-xj5v.json | 12 +++--------- .../04/GHSA-9mp9-fv3w-72p6/GHSA-9mp9-fv3w-72p6.json | 12 +++--------- .../04/GHSA-9r64-r95g-x9qc/GHSA-9r64-r95g-x9qc.json | 4 +--- .../04/GHSA-9wjp-g974-8q25/GHSA-9wjp-g974-8q25.json | 12 +++--------- .../04/GHSA-9xm5-646v-mfcw/GHSA-9xm5-646v-mfcw.json | 12 +++--------- .../04/GHSA-9xw2-c3qj-x8m5/GHSA-9xw2-c3qj-x8m5.json | 12 +++--------- .../04/GHSA-c2rq-2x5w-5prm/GHSA-c2rq-2x5w-5prm.json | 12 +++--------- .../04/GHSA-c3f7-7pc7-x4rf/GHSA-c3f7-7pc7-x4rf.json | 12 +++--------- .../04/GHSA-c3q6-3gpr-gpg4/GHSA-c3q6-3gpr-gpg4.json | 12 +++--------- .../04/GHSA-c4rh-23xg-8fmx/GHSA-c4rh-23xg-8fmx.json | 12 +++--------- .../04/GHSA-c5qh-2j3r-79wm/GHSA-c5qh-2j3r-79wm.json | 12 +++--------- .../04/GHSA-c62q-f4mx-4fjw/GHSA-c62q-f4mx-4fjw.json | 12 +++--------- .../04/GHSA-c947-r3rw-whg9/GHSA-c947-r3rw-whg9.json | 12 +++--------- .../04/GHSA-c99r-9mvw-x49h/GHSA-c99r-9mvw-x49h.json | 12 +++--------- .../04/GHSA-c9jf-c8q5-2f96/GHSA-c9jf-c8q5-2f96.json | 12 +++--------- .../04/GHSA-c9q2-mj6h-fm6r/GHSA-c9q2-mj6h-fm6r.json | 12 +++--------- .../04/GHSA-cc7h-p955-52fq/GHSA-cc7h-p955-52fq.json | 12 +++--------- .../04/GHSA-cfgm-pj74-2r73/GHSA-cfgm-pj74-2r73.json | 12 +++--------- .../04/GHSA-cmw7-9mj8-jr3r/GHSA-cmw7-9mj8-jr3r.json | 12 +++--------- .../04/GHSA-cqff-92rc-j5rc/GHSA-cqff-92rc-j5rc.json | 12 +++--------- .../04/GHSA-cqfr-4gw6-468j/GHSA-cqfr-4gw6-468j.json | 12 +++--------- .../04/GHSA-crr7-h677-x96c/GHSA-crr7-h677-x96c.json | 12 +++--------- .../04/GHSA-cv5v-5chv-qf85/GHSA-cv5v-5chv-qf85.json | 12 +++--------- .../04/GHSA-cww6-6g7r-6rr8/GHSA-cww6-6g7r-6rr8.json | 12 +++--------- .../04/GHSA-f57r-p9qq-cc4q/GHSA-f57r-p9qq-cc4q.json | 12 +++--------- .../04/GHSA-f694-qg8r-xm48/GHSA-f694-qg8r-xm48.json | 12 +++--------- .../04/GHSA-f6mq-j2g6-pjcm/GHSA-f6mq-j2g6-pjcm.json | 12 +++--------- .../04/GHSA-f7qh-vmp7-6h75/GHSA-f7qh-vmp7-6h75.json | 12 +++--------- .../04/GHSA-f8m2-7mj3-hrjv/GHSA-f8m2-7mj3-hrjv.json | 12 +++--------- .../04/GHSA-f9mf-vhr2-gvqj/GHSA-f9mf-vhr2-gvqj.json | 12 +++--------- .../04/GHSA-fcq3-98mc-gqw6/GHSA-fcq3-98mc-gqw6.json | 12 +++--------- .../04/GHSA-fhpm-fc48-2hx6/GHSA-fhpm-fc48-2hx6.json | 12 +++--------- .../04/GHSA-fjrf-xfvw-v4r3/GHSA-fjrf-xfvw-v4r3.json | 12 +++--------- .../04/GHSA-fm3g-qc6p-8vwh/GHSA-fm3g-qc6p-8vwh.json | 12 +++--------- .../04/GHSA-fmq3-pmh4-3qc5/GHSA-fmq3-pmh4-3qc5.json | 12 +++--------- .../04/GHSA-fp6q-9qw2-6vhc/GHSA-fp6q-9qw2-6vhc.json | 12 +++--------- .../04/GHSA-frjp-86rm-jfr3/GHSA-frjp-86rm-jfr3.json | 12 +++--------- .../04/GHSA-frwj-g863-562h/GHSA-frwj-g863-562h.json | 12 +++--------- .../04/GHSA-fx24-mh4f-pc7p/GHSA-fx24-mh4f-pc7p.json | 12 +++--------- .../04/GHSA-g4mg-gr2v-j36g/GHSA-g4mg-gr2v-j36g.json | 12 +++--------- .../04/GHSA-g4v2-gmv8-8xpr/GHSA-g4v2-gmv8-8xpr.json | 12 +++--------- .../04/GHSA-g564-v7c2-g445/GHSA-g564-v7c2-g445.json | 12 +++--------- .../04/GHSA-g844-2p79-3mp2/GHSA-g844-2p79-3mp2.json | 12 +++--------- .../04/GHSA-g844-hmxx-5gwm/GHSA-g844-hmxx-5gwm.json | 12 +++--------- .../04/GHSA-g8c7-2xjm-67gx/GHSA-g8c7-2xjm-67gx.json | 12 +++--------- .../04/GHSA-ggpj-vxj4-376g/GHSA-ggpj-vxj4-376g.json | 12 +++--------- .../04/GHSA-gj2r-jxwm-gvwh/GHSA-gj2r-jxwm-gvwh.json | 12 +++--------- .../04/GHSA-gm8w-rwg5-936x/GHSA-gm8w-rwg5-936x.json | 12 +++--------- .../04/GHSA-gpjg-cgg8-v765/GHSA-gpjg-cgg8-v765.json | 12 +++--------- .../04/GHSA-gr9h-667f-jqmg/GHSA-gr9h-667f-jqmg.json | 12 +++--------- .../04/GHSA-gwgq-248p-5j84/GHSA-gwgq-248p-5j84.json | 12 +++--------- .../04/GHSA-gxhf-p8cg-ccx8/GHSA-gxhf-p8cg-ccx8.json | 12 +++--------- .../04/GHSA-gxq2-xwvh-w9pw/GHSA-gxq2-xwvh-w9pw.json | 12 +++--------- .../04/GHSA-h22v-hvm3-mr5v/GHSA-h22v-hvm3-mr5v.json | 12 +++--------- .../04/GHSA-h36r-qvg6-h4vh/GHSA-h36r-qvg6-h4vh.json | 12 +++--------- .../04/GHSA-h396-vrvv-r9h5/GHSA-h396-vrvv-r9h5.json | 12 +++--------- .../04/GHSA-h74j-7m39-h4p4/GHSA-h74j-7m39-h4p4.json | 12 +++--------- .../04/GHSA-h7w2-cvcq-654h/GHSA-h7w2-cvcq-654h.json | 12 +++--------- .../04/GHSA-hcpf-gphq-24xp/GHSA-hcpf-gphq-24xp.json | 12 +++--------- .../04/GHSA-hg23-mj93-3v9v/GHSA-hg23-mj93-3v9v.json | 12 +++--------- .../04/GHSA-hjh6-vgv9-8875/GHSA-hjh6-vgv9-8875.json | 12 +++--------- .../04/GHSA-hpqx-xmr5-8p4m/GHSA-hpqx-xmr5-8p4m.json | 12 +++--------- .../04/GHSA-hpwq-hwvr-p4r9/GHSA-hpwq-hwvr-p4r9.json | 12 +++--------- .../04/GHSA-hpx2-94g6-74r5/GHSA-hpx2-94g6-74r5.json | 12 +++--------- .../04/GHSA-hpx4-vfrw-237w/GHSA-hpx4-vfrw-237w.json | 12 +++--------- .../04/GHSA-hwj2-mmx8-vwx9/GHSA-hwj2-mmx8-vwx9.json | 12 +++--------- .../04/GHSA-j2hw-525w-j8q2/GHSA-j2hw-525w-j8q2.json | 12 +++--------- .../04/GHSA-j3gg-r57x-3mc3/GHSA-j3gg-r57x-3mc3.json | 12 +++--------- .../04/GHSA-j478-4j6c-x46v/GHSA-j478-4j6c-x46v.json | 12 +++--------- .../04/GHSA-j4fw-2x7f-vr9f/GHSA-j4fw-2x7f-vr9f.json | 12 +++--------- .../04/GHSA-j4hr-4fr8-h9j2/GHSA-j4hr-4fr8-h9j2.json | 12 +++--------- .../04/GHSA-j557-rjj6-7225/GHSA-j557-rjj6-7225.json | 12 +++--------- .../04/GHSA-j59q-fjq9-v929/GHSA-j59q-fjq9-v929.json | 12 +++--------- .../04/GHSA-j745-h4hq-59r2/GHSA-j745-h4hq-59r2.json | 12 +++--------- .../04/GHSA-j8qm-vm5m-59fw/GHSA-j8qm-vm5m-59fw.json | 12 +++--------- .../04/GHSA-jfxj-559j-9558/GHSA-jfxj-559j-9558.json | 12 +++--------- .../04/GHSA-jhvj-8ghp-wf3r/GHSA-jhvj-8ghp-wf3r.json | 12 +++--------- .../04/GHSA-jjvg-h9px-64cf/GHSA-jjvg-h9px-64cf.json | 12 +++--------- .../04/GHSA-jph7-xg5j-vhxv/GHSA-jph7-xg5j-vhxv.json | 12 +++--------- .../04/GHSA-jr7w-rv7x-x733/GHSA-jr7w-rv7x-x733.json | 12 +++--------- .../04/GHSA-jrrq-72m7-2wjr/GHSA-jrrq-72m7-2wjr.json | 12 +++--------- .../04/GHSA-jrxx-vxgm-j5r5/GHSA-jrxx-vxgm-j5r5.json | 12 +++--------- .../04/GHSA-jvfw-8chg-hrhf/GHSA-jvfw-8chg-hrhf.json | 12 +++--------- .../04/GHSA-m32q-m6f9-fgj5/GHSA-m32q-m6f9-fgj5.json | 12 +++--------- .../04/GHSA-m4f5-qvv7-5w6r/GHSA-m4f5-qvv7-5w6r.json | 12 +++--------- .../04/GHSA-m4hx-q62w-4fvm/GHSA-m4hx-q62w-4fvm.json | 12 +++--------- .../04/GHSA-m4ww-c97g-rc2h/GHSA-m4ww-c97g-rc2h.json | 12 +++--------- .../04/GHSA-mcfj-5726-cfww/GHSA-mcfj-5726-cfww.json | 8 ++------ .../04/GHSA-mfp2-hxqg-8hp9/GHSA-mfp2-hxqg-8hp9.json | 12 +++--------- .../04/GHSA-mgcx-f88w-qgv2/GHSA-mgcx-f88w-qgv2.json | 12 +++--------- .../04/GHSA-mhrg-q5g7-42c3/GHSA-mhrg-q5g7-42c3.json | 12 +++--------- .../04/GHSA-mhx9-m787-mwx3/GHSA-mhx9-m787-mwx3.json | 8 ++------ .../04/GHSA-mjff-3rm5-h8c4/GHSA-mjff-3rm5-h8c4.json | 12 +++--------- .../04/GHSA-mmw4-2xp2-gfrq/GHSA-mmw4-2xp2-gfrq.json | 12 +++--------- .../04/GHSA-mv3h-2g96-65hg/GHSA-mv3h-2g96-65hg.json | 12 +++--------- .../04/GHSA-mvfg-c8h4-mj4g/GHSA-mvfg-c8h4-mj4g.json | 12 +++--------- .../04/GHSA-mw79-75vv-r5w6/GHSA-mw79-75vv-r5w6.json | 12 +++--------- .../04/GHSA-p3m8-f58x-8x6c/GHSA-p3m8-f58x-8x6c.json | 12 +++--------- .../04/GHSA-p673-v55p-52j2/GHSA-p673-v55p-52j2.json | 12 +++--------- .../04/GHSA-p6p2-rcmv-fx7v/GHSA-p6p2-rcmv-fx7v.json | 12 +++--------- .../04/GHSA-p9ph-4v96-x6rg/GHSA-p9ph-4v96-x6rg.json | 12 +++--------- .../04/GHSA-pcp2-j956-2xvp/GHSA-pcp2-j956-2xvp.json | 12 +++--------- .../04/GHSA-pg4f-5r7m-ff87/GHSA-pg4f-5r7m-ff87.json | 12 +++--------- .../04/GHSA-ppp2-whvv-q4qx/GHSA-ppp2-whvv-q4qx.json | 12 +++--------- .../04/GHSA-ppvh-qjhq-qjwm/GHSA-ppvh-qjhq-qjwm.json | 12 +++--------- .../04/GHSA-pqgv-mxxh-ccp2/GHSA-pqgv-mxxh-ccp2.json | 12 +++--------- .../04/GHSA-pv25-r5h6-xx9c/GHSA-pv25-r5h6-xx9c.json | 12 +++--------- .../04/GHSA-q24v-gvxr-3qvg/GHSA-q24v-gvxr-3qvg.json | 12 +++--------- .../04/GHSA-q2m7-jcm6-6x48/GHSA-q2m7-jcm6-6x48.json | 12 +++--------- .../04/GHSA-q5gj-fv2v-79m7/GHSA-q5gj-fv2v-79m7.json | 12 +++--------- .../04/GHSA-q637-76j2-5fvc/GHSA-q637-76j2-5fvc.json | 12 +++--------- .../04/GHSA-q65m-37h7-6wqv/GHSA-q65m-37h7-6wqv.json | 12 +++--------- .../04/GHSA-q6gj-89h4-7h3q/GHSA-q6gj-89h4-7h3q.json | 12 +++--------- .../04/GHSA-q8rh-mh54-r97r/GHSA-q8rh-mh54-r97r.json | 12 +++--------- .../04/GHSA-q994-h593-7c44/GHSA-q994-h593-7c44.json | 12 +++--------- .../04/GHSA-qc4q-94jc-f26r/GHSA-qc4q-94jc-f26r.json | 12 +++--------- .../04/GHSA-qhqc-7925-w87v/GHSA-qhqc-7925-w87v.json | 12 +++--------- .../04/GHSA-qj2j-94gf-rwcj/GHSA-qj2j-94gf-rwcj.json | 12 +++--------- .../04/GHSA-qp59-vc39-7x3c/GHSA-qp59-vc39-7x3c.json | 12 +++--------- .../04/GHSA-qphq-fjvj-6855/GHSA-qphq-fjvj-6855.json | 12 +++--------- .../04/GHSA-qr7m-wxwp-4hxg/GHSA-qr7m-wxwp-4hxg.json | 12 +++--------- .../04/GHSA-qv37-qfq4-c558/GHSA-qv37-qfq4-c558.json | 12 +++--------- .../04/GHSA-r37c-fg8f-g58j/GHSA-r37c-fg8f-g58j.json | 12 +++--------- .../04/GHSA-r4wp-683q-34xv/GHSA-r4wp-683q-34xv.json | 12 +++--------- .../04/GHSA-r52p-5vj2-qhxc/GHSA-r52p-5vj2-qhxc.json | 12 +++--------- .../04/GHSA-r6w3-g3f4-466h/GHSA-r6w3-g3f4-466h.json | 12 +++--------- .../04/GHSA-r94v-226p-r77g/GHSA-r94v-226p-r77g.json | 12 +++--------- .../04/GHSA-r979-vh68-rp6x/GHSA-r979-vh68-rp6x.json | 12 +++--------- .../04/GHSA-r9g3-j83v-v8vj/GHSA-r9g3-j83v-v8vj.json | 12 +++--------- .../04/GHSA-r9qh-42qp-5g8c/GHSA-r9qh-42qp-5g8c.json | 12 +++--------- .../04/GHSA-rfj9-4hjg-x3rg/GHSA-rfj9-4hjg-x3rg.json | 12 +++--------- .../04/GHSA-rfpf-v3rv-g8rx/GHSA-rfpf-v3rv-g8rx.json | 12 +++--------- .../04/GHSA-rgqx-qw8r-r4v2/GHSA-rgqx-qw8r-r4v2.json | 12 +++--------- .../04/GHSA-rm5j-55hv-4q3p/GHSA-rm5j-55hv-4q3p.json | 12 +++--------- .../04/GHSA-rp73-w495-gq25/GHSA-rp73-w495-gq25.json | 12 +++--------- .../04/GHSA-rq59-3hfm-xh53/GHSA-rq59-3hfm-xh53.json | 12 +++--------- .../04/GHSA-rrcg-45g6-6q56/GHSA-rrcg-45g6-6q56.json | 12 +++--------- .../04/GHSA-rx7h-2xmc-45q9/GHSA-rx7h-2xmc-45q9.json | 12 +++--------- .../04/GHSA-rxqg-33f6-w6r8/GHSA-rxqg-33f6-w6r8.json | 12 +++--------- .../04/GHSA-v3cg-qj8r-xhpc/GHSA-v3cg-qj8r-xhpc.json | 12 +++--------- .../04/GHSA-v3qr-73f4-xf4g/GHSA-v3qr-73f4-xf4g.json | 12 +++--------- .../04/GHSA-v4h9-fr4v-3jw4/GHSA-v4h9-fr4v-3jw4.json | 12 +++--------- .../04/GHSA-v5fv-q4p8-9g5q/GHSA-v5fv-q4p8-9g5q.json | 12 +++--------- .../04/GHSA-v5g3-2g5g-c8rv/GHSA-v5g3-2g5g-c8rv.json | 12 +++--------- .../04/GHSA-vc44-99pj-mfhx/GHSA-vc44-99pj-mfhx.json | 12 +++--------- .../04/GHSA-vcmc-pr46-3j8f/GHSA-vcmc-pr46-3j8f.json | 12 +++--------- .../04/GHSA-vcwg-qg38-hv98/GHSA-vcwg-qg38-hv98.json | 12 +++--------- .../04/GHSA-vfmr-h6mj-5763/GHSA-vfmr-h6mj-5763.json | 12 +++--------- .../04/GHSA-vh6h-588x-ph4v/GHSA-vh6h-588x-ph4v.json | 12 +++--------- .../04/GHSA-vm6g-9ggx-v8ff/GHSA-vm6g-9ggx-v8ff.json | 12 +++--------- .../04/GHSA-vmf5-658c-r5vm/GHSA-vmf5-658c-r5vm.json | 12 +++--------- .../04/GHSA-vp6g-4h84-xm52/GHSA-vp6g-4h84-xm52.json | 12 +++--------- .../04/GHSA-vpgx-hxx7-gv5w/GHSA-vpgx-hxx7-gv5w.json | 12 +++--------- .../04/GHSA-vqwq-pjh9-438h/GHSA-vqwq-pjh9-438h.json | 12 +++--------- .../04/GHSA-vr33-2xp3-c44r/GHSA-vr33-2xp3-c44r.json | 12 +++--------- .../04/GHSA-vrj6-pf44-5f3r/GHSA-vrj6-pf44-5f3r.json | 12 +++--------- .../04/GHSA-vwf5-w456-qjfw/GHSA-vwf5-w456-qjfw.json | 12 +++--------- .../04/GHSA-vwrh-j67m-m9gp/GHSA-vwrh-j67m-m9gp.json | 12 +++--------- .../04/GHSA-w2h5-cv3c-jwj2/GHSA-w2h5-cv3c-jwj2.json | 12 +++--------- .../04/GHSA-w4g7-gwxv-m92f/GHSA-w4g7-gwxv-m92f.json | 12 +++--------- .../04/GHSA-w4rj-94gh-6jgf/GHSA-w4rj-94gh-6jgf.json | 12 +++--------- .../04/GHSA-w66h-ccg8-f6hg/GHSA-w66h-ccg8-f6hg.json | 12 +++--------- .../04/GHSA-w77m-2mfj-gf6v/GHSA-w77m-2mfj-gf6v.json | 12 +++--------- .../04/GHSA-w7f5-4j4j-pr48/GHSA-w7f5-4j4j-pr48.json | 12 +++--------- .../04/GHSA-w9xw-2x44-pv33/GHSA-w9xw-2x44-pv33.json | 12 +++--------- .../04/GHSA-wcch-8469-j6x6/GHSA-wcch-8469-j6x6.json | 12 +++--------- .../04/GHSA-wcg7-9792-924w/GHSA-wcg7-9792-924w.json | 12 +++--------- .../04/GHSA-wcx5-8mhq-v3p3/GHSA-wcx5-8mhq-v3p3.json | 12 +++--------- .../04/GHSA-wfx7-5qmx-834g/GHSA-wfx7-5qmx-834g.json | 12 +++--------- .../04/GHSA-wh7x-gp4q-6599/GHSA-wh7x-gp4q-6599.json | 12 +++--------- .../04/GHSA-whq7-f2w6-983g/GHSA-whq7-f2w6-983g.json | 12 +++--------- .../04/GHSA-whv9-37w9-wj7x/GHSA-whv9-37w9-wj7x.json | 12 +++--------- .../04/GHSA-whwj-f6f6-552j/GHSA-whwj-f6f6-552j.json | 12 +++--------- .../04/GHSA-wjv7-cjv5-fcg6/GHSA-wjv7-cjv5-fcg6.json | 12 +++--------- .../04/GHSA-wm5j-449h-wq3g/GHSA-wm5j-449h-wq3g.json | 12 +++--------- .../04/GHSA-wmc3-pvj7-x55v/GHSA-wmc3-pvj7-x55v.json | 12 +++--------- .../04/GHSA-wv7c-2r27-4qr5/GHSA-wv7c-2r27-4qr5.json | 12 +++--------- .../04/GHSA-wvm2-gmh5-gjgx/GHSA-wvm2-gmh5-gjgx.json | 12 +++--------- .../04/GHSA-wwvj-rf2v-q344/GHSA-wwvj-rf2v-q344.json | 12 +++--------- .../04/GHSA-wx94-8j26-vf7x/GHSA-wx94-8j26-vf7x.json | 12 +++--------- .../04/GHSA-wxmv-rqxc-2vp4/GHSA-wxmv-rqxc-2vp4.json | 12 +++--------- .../04/GHSA-x33m-hv2q-xjf3/GHSA-x33m-hv2q-xjf3.json | 12 +++--------- .../04/GHSA-x4cr-2cm2-hc5c/GHSA-x4cr-2cm2-hc5c.json | 12 +++--------- .../04/GHSA-x59r-8x5g-cc3v/GHSA-x59r-8x5g-cc3v.json | 12 +++--------- .../04/GHSA-x5pq-xmx6-4vvj/GHSA-x5pq-xmx6-4vvj.json | 12 +++--------- .../04/GHSA-x9wg-cp9h-wgfj/GHSA-x9wg-cp9h-wgfj.json | 12 +++--------- .../04/GHSA-xgp2-f259-4rjq/GHSA-xgp2-f259-4rjq.json | 12 +++--------- .../04/GHSA-xh8x-v85v-9297/GHSA-xh8x-v85v-9297.json | 12 +++--------- .../04/GHSA-xjcv-642v-3h49/GHSA-xjcv-642v-3h49.json | 12 +++--------- .../04/GHSA-xmp5-g5f6-23g3/GHSA-xmp5-g5f6-23g3.json | 12 +++--------- .../04/GHSA-xp8h-mw33-82v7/GHSA-xp8h-mw33-82v7.json | 12 +++--------- .../04/GHSA-xqfx-vw59-w985/GHSA-xqfx-vw59-w985.json | 12 +++--------- .../04/GHSA-xr55-38cx-p982/GHSA-xr55-38cx-p982.json | 12 +++--------- .../04/GHSA-xrvw-f7p8-2hqm/GHSA-xrvw-f7p8-2hqm.json | 12 +++--------- .../04/GHSA-xxh4-gjrf-3883/GHSA-xxh4-gjrf-3883.json | 12 +++--------- .../04/GHSA-xxvp-3855-w9fv/GHSA-xxvp-3855-w9fv.json | 12 +++--------- .../05/GHSA-233g-v6pm-h695/GHSA-233g-v6pm-h695.json | 12 +++--------- .../05/GHSA-23jg-2v84-hg56/GHSA-23jg-2v84-hg56.json | 8 ++------ .../05/GHSA-24f6-gm96-3c56/GHSA-24f6-gm96-3c56.json | 8 ++------ .../05/GHSA-24g3-3pph-m744/GHSA-24g3-3pph-m744.json | 8 ++------ .../05/GHSA-24pq-9mvp-239w/GHSA-24pq-9mvp-239w.json | 8 ++------ .../05/GHSA-24rm-j85r-654h/GHSA-24rm-j85r-654h.json | 8 ++------ .../05/GHSA-25m7-6389-m7rq/GHSA-25m7-6389-m7rq.json | 8 ++------ .../05/GHSA-26wj-j8fv-r797/GHSA-26wj-j8fv-r797.json | 8 ++------ .../05/GHSA-274h-c788-hf3c/GHSA-274h-c788-hf3c.json | 8 ++------ .../05/GHSA-286x-xfxm-75r6/GHSA-286x-xfxm-75r6.json | 4 +--- .../05/GHSA-2982-268x-jwcx/GHSA-2982-268x-jwcx.json | 8 ++------ .../05/GHSA-2g92-xfq2-c7ph/GHSA-2g92-xfq2-c7ph.json | 4 +--- .../05/GHSA-2gr2-xjj5-q4ff/GHSA-2gr2-xjj5-q4ff.json | 4 +--- .../05/GHSA-2h56-v244-fqpv/GHSA-2h56-v244-fqpv.json | 8 ++------ .../05/GHSA-2m37-wg64-hcc4/GHSA-2m37-wg64-hcc4.json | 8 ++------ .../05/GHSA-2m67-gph7-q4xp/GHSA-2m67-gph7-q4xp.json | 8 ++------ .../05/GHSA-2mm4-8fvv-52q9/GHSA-2mm4-8fvv-52q9.json | 8 ++------ .../05/GHSA-2pf3-gjp3-cx53/GHSA-2pf3-gjp3-cx53.json | 4 +--- .../05/GHSA-2pm4-86cq-h56g/GHSA-2pm4-86cq-h56g.json | 8 ++------ .../05/GHSA-2q3g-jqmc-9v3v/GHSA-2q3g-jqmc-9v3v.json | 4 +--- .../05/GHSA-2r8q-h42x-rjm5/GHSA-2r8q-h42x-rjm5.json | 8 ++------ .../05/GHSA-2w44-vr82-84c4/GHSA-2w44-vr82-84c4.json | 8 ++------ .../05/GHSA-2xp2-6xw3-mw59/GHSA-2xp2-6xw3-mw59.json | 8 ++------ .../05/GHSA-2xq2-3g36-329g/GHSA-2xq2-3g36-329g.json | 8 ++------ .../05/GHSA-3568-5vhr-w72q/GHSA-3568-5vhr-w72q.json | 8 ++------ .../05/GHSA-3598-85vr-8f48/GHSA-3598-85vr-8f48.json | 8 ++------ .../05/GHSA-35r4-97wh-88x3/GHSA-35r4-97wh-88x3.json | 8 ++------ .../05/GHSA-37j8-qv27-g3fq/GHSA-37j8-qv27-g3fq.json | 8 ++------ .../05/GHSA-39mp-r4x2-rf8p/GHSA-39mp-r4x2-rf8p.json | 8 ++------ .../05/GHSA-3c29-qfhr-mp78/GHSA-3c29-qfhr-mp78.json | 8 ++------ .../05/GHSA-3f43-cg6p-w52w/GHSA-3f43-cg6p-w52w.json | 8 ++------ .../05/GHSA-3f92-pgj5-j64j/GHSA-3f92-pgj5-j64j.json | 8 ++------ .../05/GHSA-3fw2-qjm5-wjrf/GHSA-3fw2-qjm5-wjrf.json | 8 ++------ .../05/GHSA-3g9m-2rxr-22r8/GHSA-3g9m-2rxr-22r8.json | 8 ++------ .../05/GHSA-3gqm-8w6h-2v84/GHSA-3gqm-8w6h-2v84.json | 8 ++------ .../05/GHSA-3hrw-324r-f9xj/GHSA-3hrw-324r-f9xj.json | 8 ++------ .../05/GHSA-3j49-vwhx-x2h7/GHSA-3j49-vwhx-x2h7.json | 8 ++------ .../05/GHSA-3mv4-59rc-qvqm/GHSA-3mv4-59rc-qvqm.json | 4 +--- .../05/GHSA-3p28-7652-rrq5/GHSA-3p28-7652-rrq5.json | 8 ++------ .../05/GHSA-3w66-96j7-fmcp/GHSA-3w66-96j7-fmcp.json | 12 +++--------- .../05/GHSA-3wc6-q483-gp6r/GHSA-3wc6-q483-gp6r.json | 8 ++------ .../05/GHSA-3x2j-526p-4qw3/GHSA-3x2j-526p-4qw3.json | 8 ++------ .../05/GHSA-42ff-q9r4-9fgc/GHSA-42ff-q9r4-9fgc.json | 8 ++------ .../05/GHSA-42w9-25p2-32w9/GHSA-42w9-25p2-32w9.json | 8 ++------ .../05/GHSA-4374-j4qr-5p28/GHSA-4374-j4qr-5p28.json | 8 ++------ .../05/GHSA-45r7-chqq-5vw6/GHSA-45r7-chqq-5vw6.json | 12 +++--------- .../05/GHSA-46cf-r836-jh9p/GHSA-46cf-r836-jh9p.json | 8 ++------ .../05/GHSA-4ch3-ggx2-34pj/GHSA-4ch3-ggx2-34pj.json | 8 ++------ .../05/GHSA-4crm-7wj7-pr4w/GHSA-4crm-7wj7-pr4w.json | 8 ++------ .../05/GHSA-4fmh-rm9m-pchc/GHSA-4fmh-rm9m-pchc.json | 8 ++------ .../05/GHSA-4jwr-58v2-3w35/GHSA-4jwr-58v2-3w35.json | 8 ++------ .../05/GHSA-4m2f-xx7g-q89c/GHSA-4m2f-xx7g-q89c.json | 8 ++------ .../05/GHSA-4m3m-xxqp-r6w5/GHSA-4m3m-xxqp-r6w5.json | 12 +++--------- .../05/GHSA-4p8g-xcvq-m8r7/GHSA-4p8g-xcvq-m8r7.json | 4 +--- .../05/GHSA-4qjv-8r5v-mmqj/GHSA-4qjv-8r5v-mmqj.json | 8 ++------ .../05/GHSA-4v3q-9jqp-58m8/GHSA-4v3q-9jqp-58m8.json | 8 ++------ .../05/GHSA-4wxc-gch7-6j67/GHSA-4wxc-gch7-6j67.json | 4 +--- .../05/GHSA-4x53-4vwf-pv6f/GHSA-4x53-4vwf-pv6f.json | 8 ++------ .../05/GHSA-5244-5vqh-qwmc/GHSA-5244-5vqh-qwmc.json | 8 ++------ .../05/GHSA-52jj-jg38-66r9/GHSA-52jj-jg38-66r9.json | 8 ++------ .../05/GHSA-53q7-6745-8vc3/GHSA-53q7-6745-8vc3.json | 8 ++------ .../05/GHSA-54w2-m25f-gmqp/GHSA-54w2-m25f-gmqp.json | 8 ++------ .../05/GHSA-55gv-57w2-69r9/GHSA-55gv-57w2-69r9.json | 12 +++--------- .../05/GHSA-563h-vjhq-5wj9/GHSA-563h-vjhq-5wj9.json | 8 ++------ .../05/GHSA-56gf-wcqm-qvfm/GHSA-56gf-wcqm-qvfm.json | 8 ++------ .../05/GHSA-57q2-hvr9-9w4c/GHSA-57q2-hvr9-9w4c.json | 4 +--- .../05/GHSA-58jx-m88m-rmq4/GHSA-58jx-m88m-rmq4.json | 12 +++--------- .../05/GHSA-58p5-78hg-833m/GHSA-58p5-78hg-833m.json | 8 ++------ .../05/GHSA-58p8-f8cp-3h6p/GHSA-58p8-f8cp-3h6p.json | 4 +--- .../05/GHSA-592w-g5fc-w6j9/GHSA-592w-g5fc-w6j9.json | 8 ++------ .../05/GHSA-5gpf-4mrw-5g39/GHSA-5gpf-4mrw-5g39.json | 8 ++------ .../05/GHSA-5h45-5f8r-3vx5/GHSA-5h45-5f8r-3vx5.json | 8 ++------ .../05/GHSA-5hf3-p363-ww52/GHSA-5hf3-p363-ww52.json | 8 ++------ .../05/GHSA-5hg4-wc97-mw4m/GHSA-5hg4-wc97-mw4m.json | 8 ++------ .../05/GHSA-5hmm-wjg3-4m2m/GHSA-5hmm-wjg3-4m2m.json | 8 ++------ .../05/GHSA-5ph6-fxv2-7rf2/GHSA-5ph6-fxv2-7rf2.json | 12 +++--------- .../05/GHSA-5whm-5cf2-vvc2/GHSA-5whm-5cf2-vvc2.json | 8 ++------ .../05/GHSA-5x74-pwgq-52vr/GHSA-5x74-pwgq-52vr.json | 8 ++------ .../05/GHSA-5xc2-h74h-475j/GHSA-5xc2-h74h-475j.json | 8 ++------ .../05/GHSA-63cg-qxf4-8qfm/GHSA-63cg-qxf4-8qfm.json | 8 ++------ .../05/GHSA-63mg-762w-r25h/GHSA-63mg-762w-r25h.json | 8 ++------ .../05/GHSA-66m6-mhcr-vj8v/GHSA-66m6-mhcr-vj8v.json | 4 +--- .../05/GHSA-6hrp-g2cw-r29v/GHSA-6hrp-g2cw-r29v.json | 8 ++------ .../05/GHSA-6j9h-6jcx-4g5q/GHSA-6j9h-6jcx-4g5q.json | 8 ++------ .../05/GHSA-6m76-9vmm-c44v/GHSA-6m76-9vmm-c44v.json | 8 ++------ .../05/GHSA-6r8w-5wm5-436v/GHSA-6r8w-5wm5-436v.json | 8 ++------ .../05/GHSA-6v37-49j9-8f9r/GHSA-6v37-49j9-8f9r.json | 8 ++------ .../05/GHSA-6vq9-4g76-fwp8/GHSA-6vq9-4g76-fwp8.json | 8 ++------ .../05/GHSA-6vvh-mj67-fwr2/GHSA-6vvh-mj67-fwr2.json | 12 +++--------- .../05/GHSA-6xqj-rg38-r6rr/GHSA-6xqj-rg38-r6rr.json | 8 ++------ .../05/GHSA-722q-8x49-8j55/GHSA-722q-8x49-8j55.json | 8 ++------ .../05/GHSA-75cr-rjwp-w5rp/GHSA-75cr-rjwp-w5rp.json | 8 ++------ .../05/GHSA-75hj-4xcc-q3qw/GHSA-75hj-4xcc-q3qw.json | 4 +--- .../05/GHSA-75r7-qc22-8qcg/GHSA-75r7-qc22-8qcg.json | 8 ++------ .../05/GHSA-7674-88wr-2fm6/GHSA-7674-88wr-2fm6.json | 8 ++------ .../05/GHSA-76vx-mj3m-f22w/GHSA-76vx-mj3m-f22w.json | 8 ++------ .../05/GHSA-77f8-p879-w8cr/GHSA-77f8-p879-w8cr.json | 8 ++------ .../05/GHSA-7fxq-f8vg-7f3w/GHSA-7fxq-f8vg-7f3w.json | 8 ++------ .../05/GHSA-7grv-chg4-pvhg/GHSA-7grv-chg4-pvhg.json | 8 ++------ .../05/GHSA-7h2w-2cfx-q5hm/GHSA-7h2w-2cfx-q5hm.json | 8 ++------ .../05/GHSA-7hvq-6xxm-hcx6/GHSA-7hvq-6xxm-hcx6.json | 8 ++------ .../05/GHSA-7qwv-36fq-g7rp/GHSA-7qwv-36fq-g7rp.json | 8 ++------ .../05/GHSA-7vh7-fhp3-j32j/GHSA-7vh7-fhp3-j32j.json | 8 ++------ .../05/GHSA-7x7m-6347-w9xm/GHSA-7x7m-6347-w9xm.json | 8 ++------ .../05/GHSA-827r-w4gx-p8pp/GHSA-827r-w4gx-p8pp.json | 8 ++------ .../05/GHSA-82wq-hq49-hv83/GHSA-82wq-hq49-hv83.json | 8 ++------ .../05/GHSA-85c9-6xqv-2xcj/GHSA-85c9-6xqv-2xcj.json | 8 ++------ .../05/GHSA-85mg-8m94-9jrr/GHSA-85mg-8m94-9jrr.json | 8 ++------ .../05/GHSA-86x4-c9pq-8x7v/GHSA-86x4-c9pq-8x7v.json | 8 ++------ .../05/GHSA-88ww-3mg9-3w7j/GHSA-88ww-3mg9-3w7j.json | 4 +--- .../05/GHSA-8fgc-jgp5-4737/GHSA-8fgc-jgp5-4737.json | 8 ++------ .../05/GHSA-8g4x-ppf4-xjc8/GHSA-8g4x-ppf4-xjc8.json | 8 ++------ .../05/GHSA-8h3x-8qc6-6548/GHSA-8h3x-8qc6-6548.json | 12 +++--------- .../05/GHSA-8j35-8p36-8w3g/GHSA-8j35-8p36-8w3g.json | 4 +--- .../05/GHSA-8p3w-vp6c-xgrm/GHSA-8p3w-vp6c-xgrm.json | 8 ++------ .../05/GHSA-8ph5-68pq-3fm9/GHSA-8ph5-68pq-3fm9.json | 8 ++------ .../05/GHSA-8rr8-mvr5-2j32/GHSA-8rr8-mvr5-2j32.json | 8 ++------ .../05/GHSA-8v5h-3pm2-q84c/GHSA-8v5h-3pm2-q84c.json | 8 ++------ .../05/GHSA-8x43-fxp7-gqp3/GHSA-8x43-fxp7-gqp3.json | 8 ++------ .../05/GHSA-9389-gq7v-6fh7/GHSA-9389-gq7v-6fh7.json | 8 ++------ .../05/GHSA-93gw-9w6q-fxw3/GHSA-93gw-9w6q-fxw3.json | 8 ++------ .../05/GHSA-949f-2j73-x2jx/GHSA-949f-2j73-x2jx.json | 8 ++------ .../05/GHSA-94c9-25gc-jr8p/GHSA-94c9-25gc-jr8p.json | 8 ++------ .../05/GHSA-94wm-8j6r-283r/GHSA-94wm-8j6r-283r.json | 8 ++------ .../05/GHSA-959j-89f4-f372/GHSA-959j-89f4-f372.json | 8 ++------ .../05/GHSA-95x3-j4xq-37g5/GHSA-95x3-j4xq-37g5.json | 8 ++------ .../05/GHSA-9737-ffv6-mv28/GHSA-9737-ffv6-mv28.json | 4 +--- .../05/GHSA-999j-h7gr-qx6f/GHSA-999j-h7gr-qx6f.json | 4 +--- .../05/GHSA-9fhx-hcwq-8qwv/GHSA-9fhx-hcwq-8qwv.json | 8 ++------ .../05/GHSA-9gp7-g8rj-c86h/GHSA-9gp7-g8rj-c86h.json | 8 ++------ .../05/GHSA-9hq9-j4jv-ph2g/GHSA-9hq9-j4jv-ph2g.json | 4 +--- .../05/GHSA-9j42-wwm8-235w/GHSA-9j42-wwm8-235w.json | 8 ++------ .../05/GHSA-9mm5-7pfm-h9rc/GHSA-9mm5-7pfm-h9rc.json | 8 ++------ .../05/GHSA-9mrj-wq9r-h4vw/GHSA-9mrj-wq9r-h4vw.json | 12 +++--------- .../05/GHSA-9pcq-r26w-9482/GHSA-9pcq-r26w-9482.json | 8 ++------ .../05/GHSA-9w8q-2hwq-vvh7/GHSA-9w8q-2hwq-vvh7.json | 8 ++------ .../05/GHSA-9wc4-3575-8q45/GHSA-9wc4-3575-8q45.json | 8 ++------ .../05/GHSA-9x2m-28m5-328q/GHSA-9x2m-28m5-328q.json | 8 ++------ .../05/GHSA-9xcx-66r3-hp2h/GHSA-9xcx-66r3-hp2h.json | 8 ++------ .../05/GHSA-c4cf-m645-2xm8/GHSA-c4cf-m645-2xm8.json | 8 ++------ .../05/GHSA-c5gf-2r8c-v384/GHSA-c5gf-2r8c-v384.json | 4 +--- .../05/GHSA-c6gw-7j5j-4c6v/GHSA-c6gw-7j5j-4c6v.json | 8 ++------ .../05/GHSA-c7vh-9vc4-xjgc/GHSA-c7vh-9vc4-xjgc.json | 8 ++------ .../05/GHSA-cc4r-2rwj-vx7x/GHSA-cc4r-2rwj-vx7x.json | 4 +--- .../05/GHSA-cf7q-c6xh-98hm/GHSA-cf7q-c6xh-98hm.json | 8 ++------ .../05/GHSA-cg28-c344-xwc5/GHSA-cg28-c344-xwc5.json | 12 +++--------- .../05/GHSA-ch5f-9jpr-7ccf/GHSA-ch5f-9jpr-7ccf.json | 8 ++------ .../05/GHSA-ch8w-w4pc-hwjx/GHSA-ch8w-w4pc-hwjx.json | 12 +++--------- .../05/GHSA-chcp-wf8h-ggjw/GHSA-chcp-wf8h-ggjw.json | 8 ++------ .../05/GHSA-chg9-84gg-7qpw/GHSA-chg9-84gg-7qpw.json | 8 ++------ .../05/GHSA-cm89-pw5p-p573/GHSA-cm89-pw5p-p573.json | 8 ++------ .../05/GHSA-cph6-mhr2-7r9p/GHSA-cph6-mhr2-7r9p.json | 4 +--- .../05/GHSA-cq94-fv46-w3ph/GHSA-cq94-fv46-w3ph.json | 8 ++------ .../05/GHSA-cv7g-j45h-87jf/GHSA-cv7g-j45h-87jf.json | 8 ++------ .../05/GHSA-f2j5-6ccc-fcjg/GHSA-f2j5-6ccc-fcjg.json | 8 ++------ .../05/GHSA-f3cx-fffm-8842/GHSA-f3cx-fffm-8842.json | 12 +++--------- .../05/GHSA-f3fp-5h9c-j8r8/GHSA-f3fp-5h9c-j8r8.json | 8 ++------ .../05/GHSA-f3x2-w4cq-5v25/GHSA-f3x2-w4cq-5v25.json | 8 ++------ .../05/GHSA-f3xc-hcmc-rvrq/GHSA-f3xc-hcmc-rvrq.json | 8 ++------ .../05/GHSA-f444-f4gw-jhg6/GHSA-f444-f4gw-jhg6.json | 4 +--- .../05/GHSA-f46h-mh94-f4w2/GHSA-f46h-mh94-f4w2.json | 4 +--- .../05/GHSA-f4jc-6jgg-x3mc/GHSA-f4jc-6jgg-x3mc.json | 8 ++------ .../05/GHSA-f5rh-xqjc-3gc6/GHSA-f5rh-xqjc-3gc6.json | 8 ++------ .../05/GHSA-f6fw-jv2q-2mh7/GHSA-f6fw-jv2q-2mh7.json | 8 ++------ .../05/GHSA-f78x-m4hf-jx3q/GHSA-f78x-m4hf-jx3q.json | 8 ++------ .../05/GHSA-f7rm-p9fc-773f/GHSA-f7rm-p9fc-773f.json | 8 ++------ .../05/GHSA-f87j-f7c8-ff69/GHSA-f87j-f7c8-ff69.json | 8 ++------ .../05/GHSA-fg2g-p9qq-jw38/GHSA-fg2g-p9qq-jw38.json | 8 ++------ .../05/GHSA-fj8x-2c72-3h8w/GHSA-fj8x-2c72-3h8w.json | 8 ++------ .../05/GHSA-fjm3-mp48-h3mr/GHSA-fjm3-mp48-h3mr.json | 8 ++------ .../05/GHSA-fjvw-vpv7-j2gp/GHSA-fjvw-vpv7-j2gp.json | 12 +++--------- .../05/GHSA-fmqx-vmh5-vr5v/GHSA-fmqx-vmh5-vr5v.json | 8 ++------ .../05/GHSA-fp3r-w9w2-jg2f/GHSA-fp3r-w9w2-jg2f.json | 8 ++------ .../05/GHSA-fq6q-58q2-x8g6/GHSA-fq6q-58q2-x8g6.json | 8 ++------ .../05/GHSA-fvg3-8mqr-q3x4/GHSA-fvg3-8mqr-q3x4.json | 8 ++------ .../05/GHSA-fw85-97w2-fp5v/GHSA-fw85-97w2-fp5v.json | 8 ++------ .../05/GHSA-fx8g-7gh6-p9vx/GHSA-fx8g-7gh6-p9vx.json | 8 ++------ .../05/GHSA-g29r-mmqp-whm4/GHSA-g29r-mmqp-whm4.json | 12 +++--------- .../05/GHSA-g2mc-w2j3-ppg6/GHSA-g2mc-w2j3-ppg6.json | 8 ++------ .../05/GHSA-g2v3-g2fw-7467/GHSA-g2v3-g2fw-7467.json | 8 ++------ .../05/GHSA-g3fx-gvwr-w892/GHSA-g3fx-gvwr-w892.json | 8 ++------ .../05/GHSA-g46m-x4q2-p642/GHSA-g46m-x4q2-p642.json | 4 +--- .../05/GHSA-g58c-cr2p-rwrf/GHSA-g58c-cr2p-rwrf.json | 8 ++------ .../05/GHSA-g5vm-h3jx-g8ph/GHSA-g5vm-h3jx-g8ph.json | 8 ++------ .../05/GHSA-g7w4-65vh-qjmf/GHSA-g7w4-65vh-qjmf.json | 8 ++------ .../05/GHSA-g8fx-3ppx-cpq4/GHSA-g8fx-3ppx-cpq4.json | 4 +--- .../05/GHSA-gc59-gfp7-vrrr/GHSA-gc59-gfp7-vrrr.json | 8 ++------ .../05/GHSA-gc7p-gg9x-38qq/GHSA-gc7p-gg9x-38qq.json | 8 ++------ .../05/GHSA-gcmf-r675-c9w3/GHSA-gcmf-r675-c9w3.json | 8 ++------ .../05/GHSA-gfjc-7xx8-2p98/GHSA-gfjc-7xx8-2p98.json | 4 +--- .../05/GHSA-ggg2-jv3w-69vx/GHSA-ggg2-jv3w-69vx.json | 4 +--- .../05/GHSA-ggg4-fm7c-r5mq/GHSA-ggg4-fm7c-r5mq.json | 8 ++------ .../05/GHSA-gqvh-4vgc-h9gf/GHSA-gqvh-4vgc-h9gf.json | 8 ++------ .../05/GHSA-gr6q-jf82-h2r3/GHSA-gr6q-jf82-h2r3.json | 8 ++------ .../05/GHSA-grrh-mjp7-g52c/GHSA-grrh-mjp7-g52c.json | 12 +++--------- .../05/GHSA-gvvq-cmx9-rv3j/GHSA-gvvq-cmx9-rv3j.json | 8 ++------ .../05/GHSA-gw6r-2xfv-2c8w/GHSA-gw6r-2xfv-2c8w.json | 12 +++--------- .../05/GHSA-gwxx-v9rg-cvcc/GHSA-gwxx-v9rg-cvcc.json | 8 ++------ .../05/GHSA-gx7f-9hjx-j92p/GHSA-gx7f-9hjx-j92p.json | 4 +--- .../05/GHSA-h38w-g7jw-34p6/GHSA-h38w-g7jw-34p6.json | 12 +++--------- .../05/GHSA-h3pg-6c24-fx54/GHSA-h3pg-6c24-fx54.json | 4 +--- .../05/GHSA-h3v3-xfmw-m7mg/GHSA-h3v3-xfmw-m7mg.json | 8 ++------ .../05/GHSA-h4m3-gmcr-5vqw/GHSA-h4m3-gmcr-5vqw.json | 4 +--- .../05/GHSA-h98c-w568-2m6w/GHSA-h98c-w568-2m6w.json | 8 ++------ .../05/GHSA-hg8j-9w2x-wj66/GHSA-hg8j-9w2x-wj66.json | 8 ++------ .../05/GHSA-hghg-9hcj-q4j3/GHSA-hghg-9hcj-q4j3.json | 8 ++------ .../05/GHSA-hw2c-8pmg-px6w/GHSA-hw2c-8pmg-px6w.json | 8 ++------ .../05/GHSA-j3fp-7gvj-993v/GHSA-j3fp-7gvj-993v.json | 8 ++------ .../05/GHSA-j3fq-v58h-96qr/GHSA-j3fq-v58h-96qr.json | 8 ++------ .../05/GHSA-j665-969m-hg73/GHSA-j665-969m-hg73.json | 8 ++------ .../05/GHSA-j7wx-jvmh-x827/GHSA-j7wx-jvmh-x827.json | 8 ++------ .../05/GHSA-jgx4-qxw5-g434/GHSA-jgx4-qxw5-g434.json | 8 ++------ .../05/GHSA-jjmf-rvpm-r6pc/GHSA-jjmf-rvpm-r6pc.json | 12 +++--------- .../05/GHSA-jjpp-cjc4-jw4h/GHSA-jjpp-cjc4-jw4h.json | 8 ++------ .../05/GHSA-jjvj-f9jx-5jv4/GHSA-jjvj-f9jx-5jv4.json | 8 ++------ .../05/GHSA-jrvr-gm38-g3h7/GHSA-jrvr-gm38-g3h7.json | 8 ++------ .../05/GHSA-jwqc-9f7p-v456/GHSA-jwqc-9f7p-v456.json | 8 ++------ .../05/GHSA-jwr4-8ch7-78f3/GHSA-jwr4-8ch7-78f3.json | 8 ++------ .../05/GHSA-jx23-pw53-7j67/GHSA-jx23-pw53-7j67.json | 12 +++--------- .../05/GHSA-jxv8-rxff-29g5/GHSA-jxv8-rxff-29g5.json | 8 ++------ .../05/GHSA-jxx8-f36p-3cq8/GHSA-jxx8-f36p-3cq8.json | 12 +++--------- .../05/GHSA-m62g-m4j3-92fg/GHSA-m62g-m4j3-92fg.json | 8 ++------ .../05/GHSA-m8vf-6qcv-248x/GHSA-m8vf-6qcv-248x.json | 4 +--- .../05/GHSA-mc25-v89w-9644/GHSA-mc25-v89w-9644.json | 8 ++------ .../05/GHSA-mgxh-x4jj-4grv/GHSA-mgxh-x4jj-4grv.json | 8 ++------ .../05/GHSA-mj6p-ghhj-r3q4/GHSA-mj6p-ghhj-r3q4.json | 8 ++------ .../05/GHSA-mjjf-pxhg-89qq/GHSA-mjjf-pxhg-89qq.json | 8 ++------ .../05/GHSA-mjmc-p7c6-qc44/GHSA-mjmc-p7c6-qc44.json | 8 ++------ .../05/GHSA-mjmx-x24v-29c8/GHSA-mjmx-x24v-29c8.json | 8 ++------ .../05/GHSA-mq6x-cgqg-3w3m/GHSA-mq6x-cgqg-3w3m.json | 8 ++------ .../05/GHSA-mxh3-93ph-p9r2/GHSA-mxh3-93ph-p9r2.json | 4 +--- .../05/GHSA-mxrc-pw88-9mfj/GHSA-mxrc-pw88-9mfj.json | 4 +--- .../05/GHSA-p22f-p3r6-57j7/GHSA-p22f-p3r6-57j7.json | 8 ++------ .../05/GHSA-p47g-3vx7-vm7r/GHSA-p47g-3vx7-vm7r.json | 8 ++------ .../05/GHSA-p5fj-p4px-rj6r/GHSA-p5fj-p4px-rj6r.json | 4 +--- .../05/GHSA-p5qq-fg85-2chq/GHSA-p5qq-fg85-2chq.json | 8 ++------ .../05/GHSA-p6vp-5cw9-gc6h/GHSA-p6vp-5cw9-gc6h.json | 8 ++------ .../05/GHSA-p775-mxfm-pjx4/GHSA-p775-mxfm-pjx4.json | 8 ++------ .../05/GHSA-p8w6-99p9-6m6r/GHSA-p8w6-99p9-6m6r.json | 8 ++------ .../05/GHSA-p953-88vf-5gfv/GHSA-p953-88vf-5gfv.json | 8 ++------ .../05/GHSA-p9f7-46mr-mxr7/GHSA-p9f7-46mr-mxr7.json | 8 ++------ .../05/GHSA-pfgj-h95w-gwmm/GHSA-pfgj-h95w-gwmm.json | 8 ++------ .../05/GHSA-pgwq-8wjv-xhhr/GHSA-pgwq-8wjv-xhhr.json | 4 +--- .../05/GHSA-php9-88rp-7qwr/GHSA-php9-88rp-7qwr.json | 8 ++------ .../05/GHSA-pmrj-pp83-4m3j/GHSA-pmrj-pp83-4m3j.json | 8 ++------ .../05/GHSA-ppgg-hjm8-p6v2/GHSA-ppgg-hjm8-p6v2.json | 8 ++------ .../05/GHSA-ppr6-v83v-9vmm/GHSA-ppr6-v83v-9vmm.json | 8 ++------ .../05/GHSA-ppxj-47mh-cmj8/GHSA-ppxj-47mh-cmj8.json | 8 ++------ .../05/GHSA-pq4g-m226-4p9p/GHSA-pq4g-m226-4p9p.json | 8 ++------ .../05/GHSA-pr54-58f7-qjcc/GHSA-pr54-58f7-qjcc.json | 8 ++------ .../05/GHSA-pvf9-39pw-fm6f/GHSA-pvf9-39pw-fm6f.json | 8 ++------ .../05/GHSA-pwm4-mvx6-674f/GHSA-pwm4-mvx6-674f.json | 8 ++------ .../05/GHSA-pwwx-gm9f-wfwx/GHSA-pwwx-gm9f-wfwx.json | 4 +--- .../05/GHSA-q392-xrmp-p8f6/GHSA-q392-xrmp-p8f6.json | 8 ++------ .../05/GHSA-q3rv-6rr6-8pjg/GHSA-q3rv-6rr6-8pjg.json | 8 ++------ .../05/GHSA-q49h-qg5v-m8h5/GHSA-q49h-qg5v-m8h5.json | 8 ++------ .../05/GHSA-q4gc-95m3-2g67/GHSA-q4gc-95m3-2g67.json | 4 +--- .../05/GHSA-q59f-w87f-qwmr/GHSA-q59f-w87f-qwmr.json | 8 ++------ .../05/GHSA-q772-ppcv-m7pf/GHSA-q772-ppcv-m7pf.json | 8 ++------ .../05/GHSA-q853-h2cq-3f42/GHSA-q853-h2cq-3f42.json | 8 ++------ .../05/GHSA-q9r3-wvmc-78qp/GHSA-q9r3-wvmc-78qp.json | 12 +++--------- .../05/GHSA-qg7w-94j3-mr4j/GHSA-qg7w-94j3-mr4j.json | 8 ++------ .../05/GHSA-qj86-q34h-pf43/GHSA-qj86-q34h-pf43.json | 8 ++------ .../05/GHSA-qq58-vj5v-jxhv/GHSA-qq58-vj5v-jxhv.json | 8 ++------ .../05/GHSA-qq74-qxgg-ph3j/GHSA-qq74-qxgg-ph3j.json | 4 +--- .../05/GHSA-qq7w-3jcr-f834/GHSA-qq7w-3jcr-f834.json | 8 ++------ .../05/GHSA-qr92-pm3m-vpvg/GHSA-qr92-pm3m-vpvg.json | 8 ++------ .../05/GHSA-qrfm-956x-83hh/GHSA-qrfm-956x-83hh.json | 8 ++------ .../05/GHSA-qrgr-qfr9-4xfh/GHSA-qrgr-qfr9-4xfh.json | 4 +--- .../05/GHSA-qrxx-wm95-rjfr/GHSA-qrxx-wm95-rjfr.json | 4 +--- .../05/GHSA-qvvw-rm7q-75fx/GHSA-qvvw-rm7q-75fx.json | 8 ++------ .../05/GHSA-qw8v-45wx-ghf7/GHSA-qw8v-45wx-ghf7.json | 8 ++------ .../05/GHSA-r28w-p6h8-w53m/GHSA-r28w-p6h8-w53m.json | 4 +--- .../05/GHSA-r2f3-79xh-vxg9/GHSA-r2f3-79xh-vxg9.json | 8 ++------ .../05/GHSA-r375-22x8-pwjm/GHSA-r375-22x8-pwjm.json | 8 ++------ .../05/GHSA-r486-f9q2-52qv/GHSA-r486-f9q2-52qv.json | 8 ++------ .../05/GHSA-r4qf-77fr-vfcg/GHSA-r4qf-77fr-vfcg.json | 8 ++------ .../05/GHSA-r569-ggp8-97g2/GHSA-r569-ggp8-97g2.json | 8 ++------ .../05/GHSA-r5cq-f6p7-hpq4/GHSA-r5cq-f6p7-hpq4.json | 8 ++------ .../05/GHSA-r5x8-6vj6-82q6/GHSA-r5x8-6vj6-82q6.json | 4 +--- .../05/GHSA-r74w-522c-m89g/GHSA-r74w-522c-m89g.json | 8 ++------ .../05/GHSA-r7f3-7vg8-6678/GHSA-r7f3-7vg8-6678.json | 4 +--- .../05/GHSA-r8mr-9747-24q8/GHSA-r8mr-9747-24q8.json | 12 +++--------- .../05/GHSA-r8qp-qwch-hgvw/GHSA-r8qp-qwch-hgvw.json | 12 +++--------- .../05/GHSA-rcm5-8ghg-jhvv/GHSA-rcm5-8ghg-jhvv.json | 8 ++------ .../05/GHSA-rfgf-6g5x-fx98/GHSA-rfgf-6g5x-fx98.json | 8 ++------ .../05/GHSA-rg7c-qr9w-vgfh/GHSA-rg7c-qr9w-vgfh.json | 8 ++------ .../05/GHSA-rgjp-pwrf-8868/GHSA-rgjp-pwrf-8868.json | 8 ++------ .../05/GHSA-rh68-w4hp-2wgw/GHSA-rh68-w4hp-2wgw.json | 8 ++------ .../05/GHSA-rjqf-qvfr-v23c/GHSA-rjqf-qvfr-v23c.json | 8 ++------ .../05/GHSA-rm5h-9pmf-vrf7/GHSA-rm5h-9pmf-vrf7.json | 8 ++------ .../05/GHSA-rmg8-qpvh-whhg/GHSA-rmg8-qpvh-whhg.json | 8 ++------ .../05/GHSA-rmh6-9x58-42mf/GHSA-rmh6-9x58-42mf.json | 8 ++------ .../05/GHSA-rp3c-5xmm-fm73/GHSA-rp3c-5xmm-fm73.json | 8 ++------ .../05/GHSA-rv29-g37p-fvpf/GHSA-rv29-g37p-fvpf.json | 8 ++------ .../05/GHSA-v933-rrv9-44p3/GHSA-v933-rrv9-44p3.json | 8 ++------ .../05/GHSA-v9mp-q7cv-6qc5/GHSA-v9mp-q7cv-6qc5.json | 4 +--- .../05/GHSA-vcp9-7mh6-fwx8/GHSA-vcp9-7mh6-fwx8.json | 8 ++------ .../05/GHSA-vcwv-2759-43q3/GHSA-vcwv-2759-43q3.json | 8 ++------ .../05/GHSA-vf8h-vpp7-4f7c/GHSA-vf8h-vpp7-4f7c.json | 8 ++------ .../05/GHSA-vfjj-7584-c34j/GHSA-vfjj-7584-c34j.json | 8 ++------ .../05/GHSA-vmm9-vj5p-8xc9/GHSA-vmm9-vj5p-8xc9.json | 8 ++------ .../05/GHSA-vpfm-hvmv-875c/GHSA-vpfm-hvmv-875c.json | 8 ++------ .../05/GHSA-vpgx-838j-hqq6/GHSA-vpgx-838j-hqq6.json | 8 ++------ .../05/GHSA-vq29-7qhf-v4wv/GHSA-vq29-7qhf-v4wv.json | 8 ++------ .../05/GHSA-vr2c-pq5m-cpf7/GHSA-vr2c-pq5m-cpf7.json | 8 ++------ .../05/GHSA-vrpp-j8p8-2r6c/GHSA-vrpp-j8p8-2r6c.json | 12 +++--------- .../05/GHSA-vrw4-6wc8-c6x6/GHSA-vrw4-6wc8-c6x6.json | 8 ++------ .../05/GHSA-vwqr-4q2w-739q/GHSA-vwqr-4q2w-739q.json | 8 ++------ .../05/GHSA-w2ww-68p9-gv39/GHSA-w2ww-68p9-gv39.json | 8 ++------ .../05/GHSA-w38f-4qh6-g599/GHSA-w38f-4qh6-g599.json | 8 ++------ .../05/GHSA-w7gq-f8g4-7q9f/GHSA-w7gq-f8g4-7q9f.json | 8 ++------ .../05/GHSA-w889-hmcf-f56m/GHSA-w889-hmcf-f56m.json | 8 ++------ .../05/GHSA-w8j5-vv54-4f5v/GHSA-w8j5-vv54-4f5v.json | 8 ++------ .../05/GHSA-w9mf-mf4g-64qg/GHSA-w9mf-mf4g-64qg.json | 8 ++------ .../05/GHSA-wc62-jg96-f7jf/GHSA-wc62-jg96-f7jf.json | 8 ++------ .../05/GHSA-wc7v-37g9-8hvc/GHSA-wc7v-37g9-8hvc.json | 8 ++------ .../05/GHSA-whw9-r5mw-357f/GHSA-whw9-r5mw-357f.json | 8 ++------ .../05/GHSA-wm9m-mm38-mmrw/GHSA-wm9m-mm38-mmrw.json | 8 ++------ .../05/GHSA-wmxf-4m6r-mvjr/GHSA-wmxf-4m6r-mvjr.json | 8 ++------ .../05/GHSA-wpfj-wc8p-wv72/GHSA-wpfj-wc8p-wv72.json | 8 ++------ .../05/GHSA-wq76-jv4p-3h98/GHSA-wq76-jv4p-3h98.json | 8 ++------ .../05/GHSA-wx6g-25hj-w9r2/GHSA-wx6g-25hj-w9r2.json | 8 ++------ .../05/GHSA-x2gq-whvp-hj2f/GHSA-x2gq-whvp-hj2f.json | 8 ++------ .../05/GHSA-x467-qjmw-8pjc/GHSA-x467-qjmw-8pjc.json | 8 ++------ .../05/GHSA-x4hj-jvp3-c3xg/GHSA-x4hj-jvp3-c3xg.json | 8 ++------ .../05/GHSA-x6wj-ww64-ph44/GHSA-x6wj-ww64-ph44.json | 4 +--- .../05/GHSA-x79p-m9m4-xx9w/GHSA-x79p-m9m4-xx9w.json | 8 ++------ .../05/GHSA-xfrh-vq76-9w38/GHSA-xfrh-vq76-9w38.json | 8 ++------ .../05/GHSA-xg6h-wx3v-863v/GHSA-xg6h-wx3v-863v.json | 12 +++--------- .../05/GHSA-xhf6-wfvj-5f9p/GHSA-xhf6-wfvj-5f9p.json | 8 ++------ .../05/GHSA-xhpg-ggxx-427r/GHSA-xhpg-ggxx-427r.json | 8 ++------ .../05/GHSA-xmr2-cqqm-jr8m/GHSA-xmr2-cqqm-jr8m.json | 8 ++------ .../05/GHSA-xvx2-r4w7-hx6q/GHSA-xvx2-r4w7-hx6q.json | 8 ++------ .../05/GHSA-xwhc-g2j2-vc9p/GHSA-xwhc-g2j2-vc9p.json | 8 ++------ .../05/GHSA-xwp3-267h-rpcj/GHSA-xwp3-267h-rpcj.json | 8 ++------ .../05/GHSA-xwxx-8397-833r/GHSA-xwxx-8397-833r.json | 8 ++------ .../05/GHSA-xx44-m54v-4pwc/GHSA-xx44-m54v-4pwc.json | 4 +--- .../05/GHSA-xx6m-m9v2-vc78/GHSA-xx6m-m9v2-vc78.json | 4 +--- .../05/GHSA-xxw9-65vg-49r3/GHSA-xxw9-65vg-49r3.json | 8 ++------ .../05/GHSA-xxwh-m96h-p4c6/GHSA-xxwh-m96h-p4c6.json | 8 ++------ .../05/GHSA-xxwm-rvgr-f38w/GHSA-xxwm-rvgr-f38w.json | 4 +--- .../09/GHSA-23q4-mv34-qff2/GHSA-23q4-mv34-qff2.json | 8 ++------ .../09/GHSA-56cx-5f5p-v4rv/GHSA-56cx-5f5p-v4rv.json | 8 ++------ .../09/GHSA-5gw8-jcx4-53g8/GHSA-5gw8-jcx4-53g8.json | 4 +--- .../09/GHSA-6rcc-x427-r87m/GHSA-6rcc-x427-r87m.json | 4 +--- .../09/GHSA-8ph9-9wmg-36f4/GHSA-8ph9-9wmg-36f4.json | 4 +--- .../09/GHSA-9vcx-9hhx-gwhw/GHSA-9vcx-9hhx-gwhw.json | 4 +--- .../09/GHSA-c56x-jj48-c26x/GHSA-c56x-jj48-c26x.json | 4 +--- .../09/GHSA-c92g-v88w-8m3q/GHSA-c92g-v88w-8m3q.json | 8 ++------ .../09/GHSA-f69c-hrrh-xv56/GHSA-f69c-hrrh-xv56.json | 4 +--- .../09/GHSA-mmx2-8xxp-4q6r/GHSA-mmx2-8xxp-4q6r.json | 4 +--- .../09/GHSA-pc3r-489c-2frh/GHSA-pc3r-489c-2frh.json | 4 +--- .../09/GHSA-pgpm-vjm2-c33c/GHSA-pgpm-vjm2-c33c.json | 4 +--- .../09/GHSA-pv49-7hj2-g6cv/GHSA-pv49-7hj2-g6cv.json | 4 +--- .../09/GHSA-q3h3-m228-hjxj/GHSA-q3h3-m228-hjxj.json | 4 +--- .../09/GHSA-qgqg-hf9q-5fjp/GHSA-qgqg-hf9q-5fjp.json | 4 +--- .../09/GHSA-v9xf-qq9q-332r/GHSA-v9xf-qq9q-332r.json | 8 ++------ .../09/GHSA-vgjq-g92j-gvvr/GHSA-vgjq-g92j-gvvr.json | 4 +--- .../09/GHSA-wrch-3crx-rcpq/GHSA-wrch-3crx-rcpq.json | 4 +--- .../09/GHSA-x25w-vrh8-84v4/GHSA-x25w-vrh8-84v4.json | 4 +--- .../09/GHSA-x5mv-h4g3-j3r2/GHSA-x5mv-h4g3-j3r2.json | 4 +--- .../09/GHSA-x7ww-46rr-g74m/GHSA-x7ww-46rr-g74m.json | 4 +--- .../10/GHSA-6c63-4574-7p9f/GHSA-6c63-4574-7p9f.json | 4 +--- .../10/GHSA-mhhv-2rpc-5pwq/GHSA-mhhv-2rpc-5pwq.json | 4 +--- .../11/GHSA-355f-6hm6-3cc4/GHSA-355f-6hm6-3cc4.json | 12 +++--------- .../11/GHSA-6hvc-j4m8-jp74/GHSA-6hvc-j4m8-jp74.json | 4 +--- .../11/GHSA-747q-wq4p-22g3/GHSA-747q-wq4p-22g3.json | 4 +--- .../11/GHSA-7vhc-x99q-vfpj/GHSA-7vhc-x99q-vfpj.json | 4 +--- .../11/GHSA-m3mh-8r5f-q9v7/GHSA-m3mh-8r5f-q9v7.json | 12 +++--------- .../11/GHSA-mc63-4cpc-gjqj/GHSA-mc63-4cpc-gjqj.json | 4 +--- .../11/GHSA-p4jr-wm76-h2v3/GHSA-p4jr-wm76-h2v3.json | 4 +--- .../11/GHSA-qvj8-qcrx-49c6/GHSA-qvj8-qcrx-49c6.json | 4 +--- .../11/GHSA-rvh6-5433-qq87/GHSA-rvh6-5433-qq87.json | 4 +--- .../11/GHSA-xffq-h277-r59h/GHSA-xffq-h277-r59h.json | 8 ++------ .../12/GHSA-37vm-wf43-5763/GHSA-37vm-wf43-5763.json | 8 ++------ .../12/GHSA-3cf8-mgm4-6mvf/GHSA-3cf8-mgm4-6mvf.json | 4 +--- .../12/GHSA-498h-r594-whxx/GHSA-498h-r594-whxx.json | 4 +--- .../12/GHSA-4q79-fg6h-v56p/GHSA-4q79-fg6h-v56p.json | 8 ++------ .../12/GHSA-524g-jj29-6qf4/GHSA-524g-jj29-6qf4.json | 4 +--- .../12/GHSA-52x4-qwpg-c64f/GHSA-52x4-qwpg-c64f.json | 4 +--- .../12/GHSA-542f-pr3h-p3h7/GHSA-542f-pr3h-p3h7.json | 8 ++------ .../12/GHSA-5994-4pv5-xvvm/GHSA-5994-4pv5-xvvm.json | 4 +--- .../12/GHSA-5c5f-g48v-mx2x/GHSA-5c5f-g48v-mx2x.json | 4 +--- .../12/GHSA-62m5-vcjm-vvp5/GHSA-62m5-vcjm-vvp5.json | 8 ++------ .../12/GHSA-696v-j6jg-m6w8/GHSA-696v-j6jg-m6w8.json | 4 +--- .../12/GHSA-6c84-9m7p-7r2x/GHSA-6c84-9m7p-7r2x.json | 4 +--- .../12/GHSA-6q9w-5qvx-ggjm/GHSA-6q9w-5qvx-ggjm.json | 4 +--- .../12/GHSA-8m83-qhg6-m4x6/GHSA-8m83-qhg6-m4x6.json | 4 +--- .../12/GHSA-953p-cw63-fhm7/GHSA-953p-cw63-fhm7.json | 4 +--- .../12/GHSA-985j-m96h-3qc5/GHSA-985j-m96h-3qc5.json | 4 +--- .../12/GHSA-9mx2-p359-g99j/GHSA-9mx2-p359-g99j.json | 4 +--- .../12/GHSA-9xjh-r99f-3c32/GHSA-9xjh-r99f-3c32.json | 4 +--- .../12/GHSA-c242-f467-9g2v/GHSA-c242-f467-9g2v.json | 8 ++------ .../12/GHSA-crg2-7qxv-74jh/GHSA-crg2-7qxv-74jh.json | 4 +--- .../12/GHSA-f594-pvw5-8f79/GHSA-f594-pvw5-8f79.json | 4 +--- .../12/GHSA-fpxc-4rrx-f672/GHSA-fpxc-4rrx-f672.json | 4 +--- .../12/GHSA-fx95-q83h-x9m8/GHSA-fx95-q83h-x9m8.json | 4 +--- .../12/GHSA-gm83-48r5-335w/GHSA-gm83-48r5-335w.json | 4 +--- .../12/GHSA-gw73-p994-r83w/GHSA-gw73-p994-r83w.json | 4 +--- .../12/GHSA-h3c5-f4fm-gc7h/GHSA-h3c5-f4fm-gc7h.json | 8 ++------ .../12/GHSA-h69c-px5j-f9xm/GHSA-h69c-px5j-f9xm.json | 4 +--- .../12/GHSA-j4m3-g4pc-cph8/GHSA-j4m3-g4pc-cph8.json | 4 +--- .../12/GHSA-p6cr-3vwp-qgx2/GHSA-p6cr-3vwp-qgx2.json | 8 ++------ .../12/GHSA-p877-prmp-f4hf/GHSA-p877-prmp-f4hf.json | 4 +--- .../12/GHSA-ppqf-24vq-48jf/GHSA-ppqf-24vq-48jf.json | 4 +--- .../12/GHSA-pr8r-56vp-3rp2/GHSA-pr8r-56vp-3rp2.json | 8 ++------ .../12/GHSA-qfp3-962j-hxjr/GHSA-qfp3-962j-hxjr.json | 4 +--- .../12/GHSA-qh42-r75f-c8h4/GHSA-qh42-r75f-c8h4.json | 8 ++------ .../12/GHSA-qx9j-6hf5-hxjp/GHSA-qx9j-6hf5-hxjp.json | 8 ++------ .../12/GHSA-qx9w-jxjf-5hrp/GHSA-qx9w-jxjf-5hrp.json | 4 +--- .../12/GHSA-r8r8-9qg3-423r/GHSA-r8r8-9qg3-423r.json | 4 +--- .../12/GHSA-r9q8-27vv-98f9/GHSA-r9q8-27vv-98f9.json | 4 +--- .../12/GHSA-rc4g-x5g6-63x3/GHSA-rc4g-x5g6-63x3.json | 4 +--- .../12/GHSA-rvxr-pf5f-j2qj/GHSA-rvxr-pf5f-j2qj.json | 4 +--- .../12/GHSA-vh5r-vrrx-j3pv/GHSA-vh5r-vrrx-j3pv.json | 4 +--- .../12/GHSA-xpx7-7hf6-5722/GHSA-xpx7-7hf6-5722.json | 4 +--- .../12/GHSA-xxp8-6xrm-59q8/GHSA-xxp8-6xrm-59q8.json | 4 +--- .../01/GHSA-22f3-2777-6wj4/GHSA-22f3-2777-6wj4.json | 4 +--- .../01/GHSA-277j-7gg4-fp2x/GHSA-277j-7gg4-fp2x.json | 4 +--- .../01/GHSA-28pc-f543-jq2v/GHSA-28pc-f543-jq2v.json | 4 +--- .../01/GHSA-2f85-6r7v-qrg9/GHSA-2f85-6r7v-qrg9.json | 4 +--- .../01/GHSA-2mv3-q87f-7j24/GHSA-2mv3-q87f-7j24.json | 4 +--- .../01/GHSA-2qfm-rj23-qxqj/GHSA-2qfm-rj23-qxqj.json | 4 +--- .../01/GHSA-2r55-qfh2-945m/GHSA-2r55-qfh2-945m.json | 4 +--- .../01/GHSA-2xwp-3v4p-x875/GHSA-2xwp-3v4p-x875.json | 4 +--- .../01/GHSA-3gh6-5qqw-c955/GHSA-3gh6-5qqw-c955.json | 4 +--- .../01/GHSA-42mm-238w-2fxw/GHSA-42mm-238w-2fxw.json | 4 +--- .../01/GHSA-4m5q-mv47-pcjx/GHSA-4m5q-mv47-pcjx.json | 4 +--- .../01/GHSA-4mp7-jw3w-xgg2/GHSA-4mp7-jw3w-xgg2.json | 4 +--- .../01/GHSA-4rx3-7fcg-398w/GHSA-4rx3-7fcg-398w.json | 4 +--- .../01/GHSA-4vj6-xm9m-2724/GHSA-4vj6-xm9m-2724.json | 4 +--- .../01/GHSA-55c6-w7vw-3qj4/GHSA-55c6-w7vw-3qj4.json | 4 +--- .../01/GHSA-57w3-9wv2-7944/GHSA-57w3-9wv2-7944.json | 4 +--- .../01/GHSA-5g26-fvr7-8xj8/GHSA-5g26-fvr7-8xj8.json | 4 +--- .../01/GHSA-5wrm-66q7-p29x/GHSA-5wrm-66q7-p29x.json | 4 +--- .../01/GHSA-5xr5-hfmf-pr6p/GHSA-5xr5-hfmf-pr6p.json | 4 +--- .../01/GHSA-63gh-hj5g-65r3/GHSA-63gh-hj5g-65r3.json | 4 +--- .../01/GHSA-68mp-4479-93wp/GHSA-68mp-4479-93wp.json | 4 +--- .../01/GHSA-68w7-82p5-gfgr/GHSA-68w7-82p5-gfgr.json | 4 +--- .../01/GHSA-6vrr-h554-f8x5/GHSA-6vrr-h554-f8x5.json | 4 +--- .../01/GHSA-7h9h-8xqc-jg2r/GHSA-7h9h-8xqc-jg2r.json | 4 +--- .../01/GHSA-8q3w-w8q9-w8gf/GHSA-8q3w-w8q9-w8gf.json | 4 +--- .../01/GHSA-99h9-9vj2-h3ch/GHSA-99h9-9vj2-h3ch.json | 4 +--- .../01/GHSA-9pgw-3rfw-wgqj/GHSA-9pgw-3rfw-wgqj.json | 4 +--- .../01/GHSA-fqwv-634j-ggr9/GHSA-fqwv-634j-ggr9.json | 4 +--- .../01/GHSA-h3wp-r29v-882c/GHSA-h3wp-r29v-882c.json | 4 +--- .../01/GHSA-hc9m-3x45-h4f7/GHSA-hc9m-3x45-h4f7.json | 4 +--- .../01/GHSA-hvh2-7fmv-gqh9/GHSA-hvh2-7fmv-gqh9.json | 4 +--- .../01/GHSA-hvpm-p42q-mxrw/GHSA-hvpm-p42q-mxrw.json | 4 +--- .../01/GHSA-mf4h-9xx6-rj3x/GHSA-mf4h-9xx6-rj3x.json | 4 +--- .../01/GHSA-p64w-6wm7-vxhx/GHSA-p64w-6wm7-vxhx.json | 4 +--- .../01/GHSA-p87h-qjxg-9pg4/GHSA-p87h-qjxg-9pg4.json | 4 +--- .../01/GHSA-q9hw-5mq9-f9jp/GHSA-q9hw-5mq9-f9jp.json | 4 +--- .../01/GHSA-qhfg-3j7q-77q7/GHSA-qhfg-3j7q-77q7.json | 4 +--- .../01/GHSA-qq42-x6xv-rqg8/GHSA-qq42-x6xv-rqg8.json | 4 +--- .../01/GHSA-qwfh-7v4c-5cqf/GHSA-qwfh-7v4c-5cqf.json | 4 +--- .../01/GHSA-r3r2-xcc8-f7fp/GHSA-r3r2-xcc8-f7fp.json | 4 +--- .../01/GHSA-r6c5-m6xc-3746/GHSA-r6c5-m6xc-3746.json | 4 +--- .../01/GHSA-r6jf-f46q-8gj2/GHSA-r6jf-f46q-8gj2.json | 4 +--- .../01/GHSA-rvf2-5462-xv53/GHSA-rvf2-5462-xv53.json | 4 +--- .../01/GHSA-v55j-w85x-fq87/GHSA-v55j-w85x-fq87.json | 4 +--- .../01/GHSA-vrv8-8m86-49vg/GHSA-vrv8-8m86-49vg.json | 4 +--- .../01/GHSA-w9qx-xcjf-3922/GHSA-w9qx-xcjf-3922.json | 4 +--- .../01/GHSA-wm68-vvjf-2rc3/GHSA-wm68-vvjf-2rc3.json | 4 +--- .../01/GHSA-wmfx-xjgg-239p/GHSA-wmfx-xjgg-239p.json | 4 +--- .../01/GHSA-wrhf-j4xw-2f82/GHSA-wrhf-j4xw-2f82.json | 4 +--- .../01/GHSA-xcg6-wrw2-2vh5/GHSA-xcg6-wrw2-2vh5.json | 4 +--- .../01/GHSA-xghr-p26r-9675/GHSA-xghr-p26r-9675.json | 4 +--- .../01/GHSA-xq9f-gqc7-9v8j/GHSA-xq9f-gqc7-9v8j.json | 4 +--- .../02/GHSA-23ph-fhq5-g5v8/GHSA-23ph-fhq5-g5v8.json | 4 +--- .../02/GHSA-38r6-7w5c-g3hj/GHSA-38r6-7w5c-g3hj.json | 4 +--- .../02/GHSA-3wxg-g674-g9ph/GHSA-3wxg-g674-g9ph.json | 4 +--- .../02/GHSA-4mgq-9qgw-ghcx/GHSA-4mgq-9qgw-ghcx.json | 4 +--- .../02/GHSA-65hj-59g8-fjjc/GHSA-65hj-59g8-fjjc.json | 4 +--- .../02/GHSA-6gg4-gmc7-j9mm/GHSA-6gg4-gmc7-j9mm.json | 4 +--- .../02/GHSA-7gqf-4cmv-g9fm/GHSA-7gqf-4cmv-g9fm.json | 4 +--- .../02/GHSA-7xpw-5vf9-rwr4/GHSA-7xpw-5vf9-rwr4.json | 4 +--- .../02/GHSA-82q7-2fg2-4gcj/GHSA-82q7-2fg2-4gcj.json | 4 +--- .../02/GHSA-864v-8g4x-h48f/GHSA-864v-8g4x-h48f.json | 4 +--- .../02/GHSA-96mm-wp74-2qp8/GHSA-96mm-wp74-2qp8.json | 4 +--- .../02/GHSA-9gfr-gvqf-x6r8/GHSA-9gfr-gvqf-x6r8.json | 4 +--- .../02/GHSA-9ppj-rc3q-j6g2/GHSA-9ppj-rc3q-j6g2.json | 4 +--- .../02/GHSA-9r89-c96g-gf22/GHSA-9r89-c96g-gf22.json | 4 +--- .../02/GHSA-cggm-hmmc-252c/GHSA-cggm-hmmc-252c.json | 4 +--- .../02/GHSA-f352-cwm8-5w9w/GHSA-f352-cwm8-5w9w.json | 4 +--- .../02/GHSA-f3mx-99fq-h692/GHSA-f3mx-99fq-h692.json | 4 +--- .../02/GHSA-f4m3-3h6w-4v3g/GHSA-f4m3-3h6w-4v3g.json | 4 +--- .../02/GHSA-fp7x-pqr7-6fpj/GHSA-fp7x-pqr7-6fpj.json | 4 +--- .../02/GHSA-fwq8-9vrm-w64h/GHSA-fwq8-9vrm-w64h.json | 4 +--- .../02/GHSA-gc7r-43fc-78q8/GHSA-gc7r-43fc-78q8.json | 8 ++------ .../02/GHSA-gh84-w4pf-v843/GHSA-gh84-w4pf-v843.json | 4 +--- .../02/GHSA-gr3c-hqp8-55qj/GHSA-gr3c-hqp8-55qj.json | 4 +--- .../02/GHSA-gvqr-h2cc-jf46/GHSA-gvqr-h2cc-jf46.json | 4 +--- .../02/GHSA-jr5j-7wx2-g59m/GHSA-jr5j-7wx2-g59m.json | 4 +--- .../02/GHSA-mg3j-f44j-f628/GHSA-mg3j-f44j-f628.json | 4 +--- .../02/GHSA-p594-q4m6-wqvm/GHSA-p594-q4m6-wqvm.json | 4 +--- .../02/GHSA-p5jg-q7fm-8xfq/GHSA-p5jg-q7fm-8xfq.json | 4 +--- .../02/GHSA-p5mj-2xj9-v4jv/GHSA-p5mj-2xj9-v4jv.json | 4 +--- .../02/GHSA-p779-957q-8gq3/GHSA-p779-957q-8gq3.json | 4 +--- .../02/GHSA-pf7g-97vv-qmrr/GHSA-pf7g-97vv-qmrr.json | 4 +--- .../02/GHSA-pm7r-g7w6-hqj3/GHSA-pm7r-g7w6-hqj3.json | 4 +--- .../02/GHSA-rv5p-6mvw-jqm5/GHSA-rv5p-6mvw-jqm5.json | 4 +--- .../02/GHSA-v2j7-r5fx-w6c3/GHSA-v2j7-r5fx-w6c3.json | 4 +--- .../02/GHSA-w62j-xwv3-vh4g/GHSA-w62j-xwv3-vh4g.json | 4 +--- .../02/GHSA-w747-g6fp-45p6/GHSA-w747-g6fp-45p6.json | 4 +--- .../02/GHSA-wpcw-wgmc-jcg8/GHSA-wpcw-wgmc-jcg8.json | 4 +--- .../02/GHSA-x3xx-vqcp-f76g/GHSA-x3xx-vqcp-f76g.json | 4 +--- .../02/GHSA-x6m4-8q2v-7x97/GHSA-x6m4-8q2v-7x97.json | 4 +--- .../02/GHSA-x7fw-xf29-5crf/GHSA-x7fw-xf29-5crf.json | 4 +--- .../02/GHSA-xp3h-r7xh-px7p/GHSA-xp3h-r7xh-px7p.json | 8 ++------ .../02/GHSA-xqf3-q2jh-qp3h/GHSA-xqf3-q2jh-qp3h.json | 4 +--- .../03/GHSA-2455-5p2g-hrg7/GHSA-2455-5p2g-hrg7.json | 4 +--- .../03/GHSA-259p-fmm8-wq6q/GHSA-259p-fmm8-wq6q.json | 4 +--- .../03/GHSA-2pwm-63gm-7654/GHSA-2pwm-63gm-7654.json | 8 ++------ .../03/GHSA-32p7-7q74-w9jv/GHSA-32p7-7q74-w9jv.json | 4 +--- .../03/GHSA-3457-2469-93x2/GHSA-3457-2469-93x2.json | 4 +--- .../03/GHSA-3887-7vpg-g78m/GHSA-3887-7vpg-g78m.json | 4 +--- .../03/GHSA-38pw-vp6h-qrfm/GHSA-38pw-vp6h-qrfm.json | 4 +--- .../03/GHSA-395x-4p37-wm78/GHSA-395x-4p37-wm78.json | 4 +--- .../03/GHSA-58v2-rgf4-qvhg/GHSA-58v2-rgf4-qvhg.json | 4 +--- .../03/GHSA-59mg-mjvx-hwq3/GHSA-59mg-mjvx-hwq3.json | 4 +--- .../03/GHSA-5p2m-4x7j-7867/GHSA-5p2m-4x7j-7867.json | 8 ++------ .../03/GHSA-5rrh-5q4p-7p4x/GHSA-5rrh-5q4p-7p4x.json | 4 +--- .../03/GHSA-7492-969x-63fm/GHSA-7492-969x-63fm.json | 4 +--- .../03/GHSA-7x8q-p6x2-5gq2/GHSA-7x8q-p6x2-5gq2.json | 4 +--- .../03/GHSA-9hjj-m2fc-f62r/GHSA-9hjj-m2fc-f62r.json | 4 +--- .../03/GHSA-9j7q-jgxh-932x/GHSA-9j7q-jgxh-932x.json | 4 +--- .../03/GHSA-c9qh-79vx-mhqc/GHSA-c9qh-79vx-mhqc.json | 4 +--- .../03/GHSA-cpq3-m99q-vxfp/GHSA-cpq3-m99q-vxfp.json | 4 +--- .../03/GHSA-cxmh-wf23-vhpw/GHSA-cxmh-wf23-vhpw.json | 4 +--- .../03/GHSA-f7qv-v8h9-5244/GHSA-f7qv-v8h9-5244.json | 4 +--- .../03/GHSA-fj4r-372v-jvm6/GHSA-fj4r-372v-jvm6.json | 4 +--- .../03/GHSA-gv37-7gxx-pj8g/GHSA-gv37-7gxx-pj8g.json | 4 +--- .../03/GHSA-h674-9rj6-f39j/GHSA-h674-9rj6-f39j.json | 4 +--- .../03/GHSA-h6gj-8ffr-cxm9/GHSA-h6gj-8ffr-cxm9.json | 8 ++------ .../03/GHSA-j943-j589-56x5/GHSA-j943-j589-56x5.json | 4 +--- .../03/GHSA-jmf3-5xjh-86wj/GHSA-jmf3-5xjh-86wj.json | 4 +--- .../03/GHSA-jr7h-mp2v-g8f4/GHSA-jr7h-mp2v-g8f4.json | 4 +--- .../03/GHSA-mh3m-qv7g-hjvv/GHSA-mh3m-qv7g-hjvv.json | 4 +--- .../03/GHSA-p25m-6vrr-php8/GHSA-p25m-6vrr-php8.json | 4 +--- .../03/GHSA-pm9g-q8h2-7wwp/GHSA-pm9g-q8h2-7wwp.json | 4 +--- .../03/GHSA-pvf4-hr84-4g6r/GHSA-pvf4-hr84-4g6r.json | 4 +--- .../03/GHSA-q2xm-492x-5xjf/GHSA-q2xm-492x-5xjf.json | 8 ++------ .../03/GHSA-q9rp-c9pw-fg3v/GHSA-q9rp-c9pw-fg3v.json | 4 +--- .../03/GHSA-qp27-2pm7-r49x/GHSA-qp27-2pm7-r49x.json | 4 +--- .../03/GHSA-r6cf-4wm2-2mj2/GHSA-r6cf-4wm2-2mj2.json | 8 ++------ .../03/GHSA-r88p-4gjh-7prw/GHSA-r88p-4gjh-7prw.json | 4 +--- .../03/GHSA-rjhh-hqf3-25q8/GHSA-rjhh-hqf3-25q8.json | 4 +--- .../03/GHSA-rpq6-xr4j-j527/GHSA-rpq6-xr4j-j527.json | 4 +--- .../03/GHSA-rq5x-q8p4-4vw8/GHSA-rq5x-q8p4-4vw8.json | 4 +--- .../03/GHSA-rrg8-hxw6-gqx4/GHSA-rrg8-hxw6-gqx4.json | 4 +--- .../03/GHSA-w3q2-jmrg-5rfm/GHSA-w3q2-jmrg-5rfm.json | 4 +--- .../03/GHSA-wp8x-2wq9-8f64/GHSA-wp8x-2wq9-8f64.json | 4 +--- .../03/GHSA-wq4v-jc7c-r7pj/GHSA-wq4v-jc7c-r7pj.json | 4 +--- .../03/GHSA-wxhm-9fww-9xcx/GHSA-wxhm-9fww-9xcx.json | 8 ++------ .../03/GHSA-xvvj-jq67-6g88/GHSA-xvvj-jq67-6g88.json | 4 +--- .../04/GHSA-243v-xr6m-2w5j/GHSA-243v-xr6m-2w5j.json | 4 +--- .../04/GHSA-27cj-w94w-9m9v/GHSA-27cj-w94w-9m9v.json | 4 +--- .../04/GHSA-p97q-577c-vxp7/GHSA-p97q-577c-vxp7.json | 4 +--- .../04/GHSA-rfc7-p29x-qh35/GHSA-rfc7-p29x-qh35.json | 4 +--- .../05/GHSA-3r55-8c76-hvc2/GHSA-3r55-8c76-hvc2.json | 4 +--- .../05/GHSA-8hrf-5j3j-qwwx/GHSA-8hrf-5j3j-qwwx.json | 4 +--- .../08/GHSA-mmf8-rmmj-r6x4/GHSA-mmf8-rmmj-r6x4.json | 4 +--- .../10/GHSA-gfqg-mjpq-p8h5/GHSA-gfqg-mjpq-p8h5.json | 4 +--- .../12/GHSA-2fh4-45ph-7q27/GHSA-2fh4-45ph-7q27.json | 4 +--- .../12/GHSA-x895-cm39-f6wq/GHSA-x895-cm39-f6wq.json | 4 +--- 915 files changed, 1938 insertions(+), 5814 deletions(-) diff --git a/advisories/github-reviewed/2021/08/GHSA-773q-5334-5gf9/GHSA-773q-5334-5gf9.json b/advisories/github-reviewed/2021/08/GHSA-773q-5334-5gf9/GHSA-773q-5334-5gf9.json index d871f195487..6cd4d8c87d3 100644 --- a/advisories/github-reviewed/2021/08/GHSA-773q-5334-5gf9/GHSA-773q-5334-5gf9.json +++ b/advisories/github-reviewed/2021/08/GHSA-773q-5334-5gf9/GHSA-773q-5334-5gf9.json @@ -3,14 +3,10 @@ "id": "GHSA-773q-5334-5gf9", "modified": "2021-08-18T21:38:27Z", "published": "2021-08-25T20:55:36Z", - "aliases": [ - - ], + "aliases": [], "summary": "Memory over-allocation in evm-core", "details": "Prior to the patch, when executing specific EVM opcodes related\nto memory operations that use `evm_core::Memory::copy_large`, the\ncrate can over-allocate memory when it is not needed, making it\npossible for an attacker to perform denial-of-service attack.\n\nThe flaw was corrected in commit `19ade85`.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2021/08/GHSA-jf43-3v8j-qwwr/GHSA-jf43-3v8j-qwwr.json b/advisories/github-reviewed/2021/08/GHSA-jf43-3v8j-qwwr/GHSA-jf43-3v8j-qwwr.json index d54aac0698e..7edf657ef6c 100644 --- a/advisories/github-reviewed/2021/08/GHSA-jf43-3v8j-qwwr/GHSA-jf43-3v8j-qwwr.json +++ b/advisories/github-reviewed/2021/08/GHSA-jf43-3v8j-qwwr/GHSA-jf43-3v8j-qwwr.json @@ -3,9 +3,7 @@ "id": "GHSA-jf43-3v8j-qwwr", "modified": "2023-06-13T20:04:37Z", "published": "2021-08-25T20:59:56Z", - "aliases": [ - - ], + "aliases": [], "summary": "Data races in multiqueue", "details": "Affected versions of multiqueue unconditionally implemented `Send` for types used in queue implementations (`InnerSend`, `InnerRecv`, `FutInnerSend`, `FutInnerRecv`). This allows users to send non-Send types to other threads, which can lead to data race bugs or other undefined behavior.\n", "severity": [ diff --git a/advisories/github-reviewed/2021/08/GHSA-r6ff-2q3c-v3pv/GHSA-r6ff-2q3c-v3pv.json b/advisories/github-reviewed/2021/08/GHSA-r6ff-2q3c-v3pv/GHSA-r6ff-2q3c-v3pv.json index 10292ca3ed1..49488ced4e1 100644 --- a/advisories/github-reviewed/2021/08/GHSA-r6ff-2q3c-v3pv/GHSA-r6ff-2q3c-v3pv.json +++ b/advisories/github-reviewed/2021/08/GHSA-r6ff-2q3c-v3pv/GHSA-r6ff-2q3c-v3pv.json @@ -3,9 +3,7 @@ "id": "GHSA-r6ff-2q3c-v3pv", "modified": "2021-08-09T17:13:06Z", "published": "2021-08-25T21:00:01Z", - "aliases": [ - - ], + "aliases": [], "summary": "Compiler optimisation leads to SEGFAULT", "details": "Affected versions of the `pnet` crate were optimized out by compiler, which caused dereference of uninitialized file descriptor which caused segfault.", "severity": [ diff --git a/advisories/github-reviewed/2023/01/GHSA-6hg4-vp5q-47mw/GHSA-6hg4-vp5q-47mw.json b/advisories/github-reviewed/2023/01/GHSA-6hg4-vp5q-47mw/GHSA-6hg4-vp5q-47mw.json index 57646c94a5a..a788312240e 100644 --- a/advisories/github-reviewed/2023/01/GHSA-6hg4-vp5q-47mw/GHSA-6hg4-vp5q-47mw.json +++ b/advisories/github-reviewed/2023/01/GHSA-6hg4-vp5q-47mw/GHSA-6hg4-vp5q-47mw.json @@ -3,14 +3,10 @@ "id": "GHSA-6hg4-vp5q-47mw", "modified": "2023-01-20T23:34:05Z", "published": "2023-01-20T23:34:05Z", - "aliases": [ - - ], + "aliases": [], "summary": "CakePHP allows direct access of prefixed controller actions", "details": "Unconventional URL paths would allow direct access to prefixed actions without setting the correct request parameters.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -196,9 +192,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-01-20T23:34:05Z", diff --git a/advisories/github-reviewed/2023/01/GHSA-829q-v5g8-hhxc/GHSA-829q-v5g8-hhxc.json b/advisories/github-reviewed/2023/01/GHSA-829q-v5g8-hhxc/GHSA-829q-v5g8-hhxc.json index b5b9faacced..71a9b74ae79 100644 --- a/advisories/github-reviewed/2023/01/GHSA-829q-v5g8-hhxc/GHSA-829q-v5g8-hhxc.json +++ b/advisories/github-reviewed/2023/01/GHSA-829q-v5g8-hhxc/GHSA-829q-v5g8-hhxc.json @@ -3,14 +3,10 @@ "id": "GHSA-829q-v5g8-hhxc", "modified": "2023-01-20T23:02:02Z", "published": "2023-01-20T23:02:02Z", - "aliases": [ - - ], + "aliases": [], "summary": "CakePHP has incorrect Cross-Site Request Forgery validation", "details": "CsrfComponent fails to invalidate requests that are missing both the CSRF token, and CSRF post data.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/01/GHSA-f85w-wvc7-crwc/GHSA-f85w-wvc7-crwc.json b/advisories/github-reviewed/2023/01/GHSA-f85w-wvc7-crwc/GHSA-f85w-wvc7-crwc.json index 0b01a61a978..bf83871688f 100644 --- a/advisories/github-reviewed/2023/01/GHSA-f85w-wvc7-crwc/GHSA-f85w-wvc7-crwc.json +++ b/advisories/github-reviewed/2023/01/GHSA-f85w-wvc7-crwc/GHSA-f85w-wvc7-crwc.json @@ -3,14 +3,10 @@ "id": "GHSA-f85w-wvc7-crwc", "modified": "2023-01-20T21:54:22Z", "published": "2023-01-20T21:54:22Z", - "aliases": [ - - ], + "aliases": [], "summary": "bumpalo has use-after-free due to a lifetime error in `Vec::into_iter()`", "details": "In affected versions of this crate, the lifetime of the iterator produced by `Vec::into_iter()` is not constrained to the lifetime of the `Bump` that allocated the vector's memory. Using the iterator after the `Bump` is dropped causes use-after-free accesses.\n\nThe following example demonstrates memory corruption arising from a misuse of this unsoundness.\n\n```rust\nuse bumpalo::{collections::Vec, Bump};\n\nfn main() {\n let bump = Bump::new();\n let mut vec = Vec::new_in(&bump);\n vec.extend([0x01u8; 32]);\n let into_iter = vec.into_iter();\n drop(bump);\n\n for _ in 0..100 {\n let reuse_bump = Bump::new();\n let _reuse_alloc = reuse_bump.alloc([0x41u8; 10]);\n }\n\n for x in into_iter {\n print!(\"0x{:02x} \", x);\n }\n println!();\n}\n```\n\nThe issue was corrected in version 3.11.1 by adding a lifetime to the `IntoIter` type, and updating the signature of `Vec::into_iter()` to constrain this lifetime.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-01-20T21:54:22Z", diff --git a/advisories/github-reviewed/2023/01/GHSA-g6pw-999w-j75m/GHSA-g6pw-999w-j75m.json b/advisories/github-reviewed/2023/01/GHSA-g6pw-999w-j75m/GHSA-g6pw-999w-j75m.json index 5723c4135df..d317d293901 100644 --- a/advisories/github-reviewed/2023/01/GHSA-g6pw-999w-j75m/GHSA-g6pw-999w-j75m.json +++ b/advisories/github-reviewed/2023/01/GHSA-g6pw-999w-j75m/GHSA-g6pw-999w-j75m.json @@ -3,14 +3,10 @@ "id": "GHSA-g6pw-999w-j75m", "modified": "2023-01-20T22:41:01Z", "published": "2023-01-20T22:41:01Z", - "aliases": [ - - ], + "aliases": [], "summary": "ELF header parsing library doesn't check for valid offset", "details": "The crate has several unsafe sections that don't perform proper pointer validation.\n\nAn example can be found in the following function:\n\n```\nfn section_header_raw(&self) -> &[ET::SectionHeader] {\n let sh_off = self.elf_header().section_header_offset() as usize;\n let sh_num = self.elf_header().section_header_entry_num() as usize;\n unsafe {\n let sh_ptr = self.content().as_ptr().add(sh_off);\n from_raw_parts(sh_ptr as *const ET::SectionHeader, sh_num)\n }\n}\n```\n\nWhile this will work perfectly fine *if* the ELF header is valid, malicious or malformed input can contain a section header offset of an arbitrary size, meaning that the resultant pointer in the unsafe block can point to an artibrary address in the address space of the process.\n\nThis can result in unpredictable behaviour, and in our fuzz testing, we discovered that it's trivial to cause SIGABRT (signal 6), or SEGV (signal 11).\n\nThe function should either be marked as unsafe, with a note that the caller is responsible for providing only valid inputs, or it should ideally do the due diligence to ensure that the offset doesn't exceed the bounds of the header (and add additional checks as necessary).\n\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-01-20T22:41:01Z", diff --git a/advisories/github-reviewed/2023/01/GHSA-j9q2-f9q7-jhgq/GHSA-j9q2-f9q7-jhgq.json b/advisories/github-reviewed/2023/01/GHSA-j9q2-f9q7-jhgq/GHSA-j9q2-f9q7-jhgq.json index 970f5ea9977..39858416e25 100644 --- a/advisories/github-reviewed/2023/01/GHSA-j9q2-f9q7-jhgq/GHSA-j9q2-f9q7-jhgq.json +++ b/advisories/github-reviewed/2023/01/GHSA-j9q2-f9q7-jhgq/GHSA-j9q2-f9q7-jhgq.json @@ -3,14 +3,10 @@ "id": "GHSA-j9q2-f9q7-jhgq", "modified": "2023-01-20T23:22:09Z", "published": "2023-01-20T23:22:09Z", - "aliases": [ - - ], + "aliases": [], "summary": "CakePHP SecurityComponent cross form submission issue", "details": "Prior to versions 2.4.8 and 1.3.18, forms secured by SecurityComponent could be submitted to any action without triggering SecurityComponent’s tampering protection. If an application contained multiple POST forms to manipulate the same models, it could be vulnerable to mass assignment issues.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -70,9 +66,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-01-20T23:22:09Z", diff --git a/advisories/github-reviewed/2023/01/GHSA-p76f-wr22-4rv6/GHSA-p76f-wr22-4rv6.json b/advisories/github-reviewed/2023/01/GHSA-p76f-wr22-4rv6/GHSA-p76f-wr22-4rv6.json index 39483438ab7..0feb2b086fa 100644 --- a/advisories/github-reviewed/2023/01/GHSA-p76f-wr22-4rv6/GHSA-p76f-wr22-4rv6.json +++ b/advisories/github-reviewed/2023/01/GHSA-p76f-wr22-4rv6/GHSA-p76f-wr22-4rv6.json @@ -3,14 +3,10 @@ "id": "GHSA-p76f-wr22-4rv6", "modified": "2023-01-20T23:35:01Z", "published": "2023-01-20T23:35:01Z", - "aliases": [ - - ], + "aliases": [], "summary": "CakePHP vulnerable to Remote File Inclusion through View template name manipulation", "details": "CakePHP 2.x prior to 2.0.99, 2.1.99, 2.2.99, 2.3.99, 2.4.99, 2.5.99, 2.6.12, and 2.7.6 and 3.x prior to 3.0.15 and 3.1.4 is vulnerable to Remote File Inclusion through View template name manipulation.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -222,9 +218,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-01-20T23:35:01Z", diff --git a/advisories/github-reviewed/2023/01/GHSA-q79m-c546-2g63/GHSA-q79m-c546-2g63.json b/advisories/github-reviewed/2023/01/GHSA-q79m-c546-2g63/GHSA-q79m-c546-2g63.json index e2e017d5aef..270efebd6c1 100644 --- a/advisories/github-reviewed/2023/01/GHSA-q79m-c546-2g63/GHSA-q79m-c546-2g63.json +++ b/advisories/github-reviewed/2023/01/GHSA-q79m-c546-2g63/GHSA-q79m-c546-2g63.json @@ -3,14 +3,10 @@ "id": "GHSA-q79m-c546-2g63", "modified": "2023-01-20T23:23:26Z", "published": "2023-01-20T23:23:26Z", - "aliases": [ - - ], + "aliases": [], "summary": "CakePHP vulnerable to Denial of Service attack through XML payloads", "details": "RequestHandlerComponent had a vulnerability that would allow well crafted requests to create a denial of service attack. RequestHandlerComponent leverages `Xml::build()` which allows reading local files. We recommend that all applications using RequestHandlerComponent upgrade, or disable parsing XML payloads.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -184,9 +180,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-01-20T23:23:26Z", diff --git a/advisories/github-reviewed/2023/01/GHSA-q95h-cqrv-8jv5/GHSA-q95h-cqrv-8jv5.json b/advisories/github-reviewed/2023/01/GHSA-q95h-cqrv-8jv5/GHSA-q95h-cqrv-8jv5.json index bcd09a36a3a..0c0df1506e6 100644 --- a/advisories/github-reviewed/2023/01/GHSA-q95h-cqrv-8jv5/GHSA-q95h-cqrv-8jv5.json +++ b/advisories/github-reviewed/2023/01/GHSA-q95h-cqrv-8jv5/GHSA-q95h-cqrv-8jv5.json @@ -3,9 +3,7 @@ "id": "GHSA-q95h-cqrv-8jv5", "modified": "2023-01-20T19:33:40Z", "published": "2023-01-20T19:33:40Z", - "aliases": [ - - ], + "aliases": [], "summary": "ExifTool vulnerable to arbitrary code execution", "details": "### Impact\nArbitrary code execution can occur when running `exiftool` against files with hostile metadata payloads\n\n### Patches\nExifTool has already been patched in version 12.24. `exiftool_vendored.rb`, which vendors ExifTool, includes this patch in [v12.25.0](https://github.com/exiftool-rb/exiftool_vendored.rb/releases/tag/v12.25.0).\n\n### Workarounds\nNo\n\n### References\nhttps://twitter.com/wcbowling/status/1385803927321415687\nhttps://nvd.nist.gov/vuln/detail/CVE-2021-22204\n\n### For more information\nIf you have any questions or comments about this advisory:\n\nOpen an issue in [exiftool_vendored.rb](https://github.com/exiftool-rb/exiftool_vendored.rb/issues)", "severity": [ diff --git a/advisories/github-reviewed/2023/01/GHSA-xwhj-pqcg-8rcr/GHSA-xwhj-pqcg-8rcr.json b/advisories/github-reviewed/2023/01/GHSA-xwhj-pqcg-8rcr/GHSA-xwhj-pqcg-8rcr.json index b3248afe6b5..8e530cf8b64 100644 --- a/advisories/github-reviewed/2023/01/GHSA-xwhj-pqcg-8rcr/GHSA-xwhj-pqcg-8rcr.json +++ b/advisories/github-reviewed/2023/01/GHSA-xwhj-pqcg-8rcr/GHSA-xwhj-pqcg-8rcr.json @@ -3,14 +3,10 @@ "id": "GHSA-xwhj-pqcg-8rcr", "modified": "2023-01-20T23:35:17Z", "published": "2023-01-20T23:35:17Z", - "aliases": [ - - ], + "aliases": [], "summary": "CakePHP vulnerable to Cross-site Scripting in some development error pages", "details": "CakePHP 3.4 prior to 3.4.14, 3.5 prior to 3.5.17, and 3.6 prior to 3.6.4 contains a cross-site-scripting (XSS) vulnerability in the development only `missing route` and `duplicate named route` error pages.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -89,9 +85,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-01-20T23:35:17Z", diff --git a/advisories/github-reviewed/2023/03/GHSA-6hcf-g6gr-hhcr/GHSA-6hcf-g6gr-hhcr.json b/advisories/github-reviewed/2023/03/GHSA-6hcf-g6gr-hhcr/GHSA-6hcf-g6gr-hhcr.json index 4418ddc472b..5417fdf2b93 100644 --- a/advisories/github-reviewed/2023/03/GHSA-6hcf-g6gr-hhcr/GHSA-6hcf-g6gr-hhcr.json +++ b/advisories/github-reviewed/2023/03/GHSA-6hcf-g6gr-hhcr/GHSA-6hcf-g6gr-hhcr.json @@ -3,14 +3,10 @@ "id": "GHSA-6hcf-g6gr-hhcr", "modified": "2023-03-24T22:01:23Z", "published": "2023-03-24T22:01:23Z", - "aliases": [ - - ], + "aliases": [], "summary": "`openssl` `X509Extension::new` and `X509Extension::new_nid` null pointer dereference", "details": "These functions would crash when the context argument was None with certain extension types.\n\nThanks to David Benjamin (Google) for reporting this issue.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/03/GHSA-9qwg-crg9-m2vc/GHSA-9qwg-crg9-m2vc.json b/advisories/github-reviewed/2023/03/GHSA-9qwg-crg9-m2vc/GHSA-9qwg-crg9-m2vc.json index a730b5df520..5c62ba6ab85 100644 --- a/advisories/github-reviewed/2023/03/GHSA-9qwg-crg9-m2vc/GHSA-9qwg-crg9-m2vc.json +++ b/advisories/github-reviewed/2023/03/GHSA-9qwg-crg9-m2vc/GHSA-9qwg-crg9-m2vc.json @@ -3,14 +3,10 @@ "id": "GHSA-9qwg-crg9-m2vc", "modified": "2023-03-24T22:01:29Z", "published": "2023-03-24T22:01:29Z", - "aliases": [ - - ], + "aliases": [], "summary": "`openssl` `SubjectAlternativeName` and `ExtendedKeyUsage::other` allow arbitrary file read", "details": "`SubjectAlternativeName` and `ExtendedKeyUsage` arguments were parsed using the OpenSSL function `X509V3_EXT_nconf`. This function parses all input using an OpenSSL mini-language which can perform arbitrary file reads.\n\nThanks to David Benjamin (Google) for reporting this issue.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-03-24T22:01:29Z", diff --git a/advisories/github-reviewed/2023/03/GHSA-cpmr-mw4j-99r7/GHSA-cpmr-mw4j-99r7.json b/advisories/github-reviewed/2023/03/GHSA-cpmr-mw4j-99r7/GHSA-cpmr-mw4j-99r7.json index be195485015..020d0d75e83 100644 --- a/advisories/github-reviewed/2023/03/GHSA-cpmr-mw4j-99r7/GHSA-cpmr-mw4j-99r7.json +++ b/advisories/github-reviewed/2023/03/GHSA-cpmr-mw4j-99r7/GHSA-cpmr-mw4j-99r7.json @@ -3,9 +3,7 @@ "id": "GHSA-cpmr-mw4j-99r7", "modified": "2023-03-24T22:04:02Z", "published": "2023-03-24T22:04:02Z", - "aliases": [ - - ], + "aliases": [], "summary": "Nginx alias path traversal allows unauthenticated attackers to read all files on /label_studio/core/", "details": "### Summary\nThe vulnerability resides on the Nginx config file:\nhttps://github.com/heartexlabs/label-studio/blob/53944e6bcede75ca5c102d655013f2e5238e85e6/deploy/default.conf#L119\n\nThe pattern on location /static indicates a popular misconfiguration on Nginx servers presented in 2018 originally by Orange Tsai. This vulnerability allows an attacker to use a single path traversal payload in the matched location to traverse one directory above. This vulnerability only happens due to the location /static directive not having a slash `/` at the end, the following code shows an example of a safe configuration:\n```nginx\nlocation /static/ {\n[...]\n```\nThe vulnerability works because Nginx will think that `/static../` is a directory that should also be aliased to the folder, allowing /static/../ to be reached. In Label Studio's case, this means all files on /label_studio/core/ are exposed.\n\nOf course, this means that only Label Studio instances that were deployed using the default nginx files introducted at Mar 31, 2021.\nThis is a very easy vulnerability to fix, and just a lesser-known configuration mistake on nginx files. It's very easy to happen because all is needed is for one slash to be missing. (Off-By-One)\n\n** Proof-of-Concept (Leaking Secret Keys): **\nExploiting this vulnerability usually depends on what's on the parent folder, in Label Studio's case the most interesting file I could find that's on there by default is /label_studio/core/ . We can fetch it by simply making a request to the traversed folder.\n```bash\n# Production Label Studio docker-compose running on localhost:8080\n/t/mydata [127]$ curl localhost:8080/static../settings/label_studio.py\n\"\"\"This file and its contents are licensed under the Apache License 2.0. Please see the included NOTICE for copyright information and LICENSE for a copy of the license.\n\"\"\"\nimport os\nimport pathlib\n\nfrom core.settings.base import *\n\nDJANGO_DB = get_env('DJANGO_DB', DJANGO_DB_SQLITE)\nDATABASES = {'default': DATABASES_ALL[DJANGO_DB]}\n\nMIDDLEWARE.append('organizations.middleware.DummyGetSessionMiddleware')\nMIDDLEWARE.append('core.middleware.UpdateLastActivityMiddleware')\nif INACTIVITY_SESSION_TIMEOUT_ENABLED:\n MIDDLEWARE.append('core.middleware.InactivitySessionTimeoutMiddleWare')\n\nADD_DEFAULT_ML_BACKENDS = False\n\nLOGGING['root']['level'] = get_env('LOG_LEVEL', 'WARNING')\n\nDEBUG = get_bool_env('DEBUG', False)\n\nDEBUG_PROPAGATE_EXCEPTIONS = get_bool_env('DEBUG_PROPAGATE_EXCEPTIONS', False)\n\nSESSION_COOKIE_SECURE = False\n\nSESSION_ENGINE = \"django.contrib.sessions.backends.signed_cookies\"\n\nRQ_QUEUES = {}\n\nSENTRY_DSN = get_env(\n 'SENTRY_DSN',\n 'https://68b045ab408a4d32a910d339be8591a4@o227124.ingest.sentry.io/5820521'\n)\nSENTRY_ENVIRONMENT = get_env('SENTRY_ENVIRONMENT', 'opensource')\n\nFRONTEND_SENTRY_DSN = get_env(\n 'FRONTEND_SENTRY_DSN',\n 'https://5f51920ff82a4675a495870244869c6b@o227124.ingest.sentry.io/5838868')\nFRONTEND_SENTRY_ENVIRONMENT = get_env('FRONTEND_SENTRY_ENVIRONMENT', 'opensource')\n\nEDITOR_KEYMAP = json.dumps(get_env(\"EDITOR_KEYMAP\"))\n\nfrom label_studio import __version__\nfrom label_studio.core.utils import sentry\nsentry.init_sentry(release_name='label-studio', release_version=__version__)\n\n# we should do it after sentry init\nfrom label_studio.core.utils.common import collect_versions\nversions = collect_versions()\n\n# in Label Studio Community version, feature flags are always ON\nFEATURE_FLAGS_DEFAULT_VALUE = True\n# or if file is not set, default is using offline mode\nFEATURE_FLAGS_OFFLINE = get_bool_env('FEATURE_FLAGS_OFFLINE', True)\n\nfrom core.utils.io import find_file\nFEATURE_FLAGS_FILE = get_env('FEATURE_FLAGS_FILE', 'feature_flags.json')\nFEATURE_FLAGS_FROM_FILE = True\ntry:\n from core.utils.io import find_node\n find_node('label_studio', FEATURE_FLAGS_FILE, 'file')\nexcept IOError:\n FEATURE_FLAGS_FROM_FILE = False\n\nSTORAGE_PERSISTENCE = get_bool_env('STORAGE_PERSISTENCE', True)\n```\n\n\n### Impact\nThe impact consists on leaking Django secret keys by default, with also greater risk being possible due to the vulnerability exposing the file located at /label_studio/core/settings/label_studio.py which contains the secret key for Django as well as possibly containing other secrets the user might put there. (If the administrator decides not to use environment variables for some variables)\n", "severity": [ @@ -57,9 +55,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-03-24T22:04:02Z", diff --git a/advisories/github-reviewed/2023/03/GHSA-f5v5-ccqc-6w36/GHSA-f5v5-ccqc-6w36.json b/advisories/github-reviewed/2023/03/GHSA-f5v5-ccqc-6w36/GHSA-f5v5-ccqc-6w36.json index 04fec0fa81b..87f337ea957 100644 --- a/advisories/github-reviewed/2023/03/GHSA-f5v5-ccqc-6w36/GHSA-f5v5-ccqc-6w36.json +++ b/advisories/github-reviewed/2023/03/GHSA-f5v5-ccqc-6w36/GHSA-f5v5-ccqc-6w36.json @@ -3,14 +3,10 @@ "id": "GHSA-f5v5-ccqc-6w36", "modified": "2023-03-24T21:59:53Z", "published": "2023-03-24T21:59:53Z", - "aliases": [ - - ], + "aliases": [], "summary": "async-nats vulnerable to TLS certificate common name validation bypass", "details": "The NATS official Rust clients are vulnerable to MitM when using TLS.\n\nThe common name of the server's TLS certificate is validated against the `host`name provided by the server's plaintext `INFO` message during the initial connection setup phase. A MitM proxy can tamper with the `host` field's value by substituting it with the common name of a valid certificate it controls, fooling the client into accepting it.\n\n## Reproduction steps\n\n1. The NATS Rust client tries to establish a new connection\n2. The connection is intercepted by a MitM proxy\n3. The proxy makes a separate connection to the NATS server\n4. The NATS server replies with an `INFO` message\n5. The proxy reads the `INFO`, alters the `host` JSON field and passes the tampered `INFO` back to the client\n6. The proxy upgrades the client connection to TLS, presenting a certificate issued by a certificate authority present in the client's keychain. In the previous step the `host` was set to the common name of said certificate\n7. `rustls` accepts the certificate, having verified that the common name matches the attacker-controlled value it was given\n8. The client has been fooled by the MitM proxy into accepting the attacker-controlled certificate\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-03-24T21:59:53Z", diff --git a/advisories/github-reviewed/2023/03/GHSA-r95w-7cpx-h5mx/GHSA-r95w-7cpx-h5mx.json b/advisories/github-reviewed/2023/03/GHSA-r95w-7cpx-h5mx/GHSA-r95w-7cpx-h5mx.json index 5222bd70e2f..285303485b7 100644 --- a/advisories/github-reviewed/2023/03/GHSA-r95w-7cpx-h5mx/GHSA-r95w-7cpx-h5mx.json +++ b/advisories/github-reviewed/2023/03/GHSA-r95w-7cpx-h5mx/GHSA-r95w-7cpx-h5mx.json @@ -54,9 +54,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-03-21T22:31:47Z", diff --git a/advisories/github-reviewed/2023/03/GHSA-wvc4-j7g5-4f79/GHSA-wvc4-j7g5-4f79.json b/advisories/github-reviewed/2023/03/GHSA-wvc4-j7g5-4f79/GHSA-wvc4-j7g5-4f79.json index 0ee30110045..8438abfaacd 100644 --- a/advisories/github-reviewed/2023/03/GHSA-wvc4-j7g5-4f79/GHSA-wvc4-j7g5-4f79.json +++ b/advisories/github-reviewed/2023/03/GHSA-wvc4-j7g5-4f79/GHSA-wvc4-j7g5-4f79.json @@ -3,14 +3,10 @@ "id": "GHSA-wvc4-j7g5-4f79", "modified": "2023-03-27T21:12:24Z", "published": "2023-03-27T21:12:24Z", - "aliases": [ - - ], + "aliases": [], "summary": "NATS TLS certificate common name validation bypass", "details": "The NATS official Rust clients are vulnerable to MitM when using TLS.\n\nA fix for the `nats` crate hasn't been released yet. Since the `nats` crate is going to be deprecated anyway, consider switching to `async-nats` `>= 0.29` which already fixed this vulnerability.\n\nThe common name of the server's TLS certificate is validated against the `host`name provided by the server's plaintext `INFO` message during the initial connection setup phase. A MitM proxy can tamper with the `host` field's value by substituting it with the common name of a valid certificate it controls, fooling the client into accepting it.\n\n## Reproduction steps\n\n1. The NATS Rust client tries to establish a new connection\n2. The connection is intercepted by a MitM proxy\n3. The proxy makes a separate connection to the NATS server\n4. The NATS server replies with an `INFO` message\n5. The proxy reads the `INFO`, alters the `host` JSON field and passes the tampered `INFO` back to the client\n6. The proxy upgrades the client connection to TLS, presenting a certificate issued by a certificate authority present in the client's keychain. In the previous step the `host` was set to the common name of said certificate\n7. `rustls` accepts the certificate, having verified that the common name matches the attacker-controlled value it was given\n9. The client has been fooled by the MitM proxy into accepting the attacker-controlled certificate\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/unreviewed/2022/04/GHSA-222x-xv7v-2jfv/GHSA-222x-xv7v-2jfv.json b/advisories/unreviewed/2022/04/GHSA-222x-xv7v-2jfv/GHSA-222x-xv7v-2jfv.json index 56b5fb91250..9ebcb862866 100644 --- a/advisories/unreviewed/2022/04/GHSA-222x-xv7v-2jfv/GHSA-222x-xv7v-2jfv.json +++ b/advisories/unreviewed/2022/04/GHSA-222x-xv7v-2jfv/GHSA-222x-xv7v-2jfv.json @@ -7,12 +7,8 @@ "CVE-2001-0293" ], "details": "Directory traversal vulnerability in FtpXQ FTP server 2.0.93 allows remote attackers to read arbitrary files via a .. (dot dot) in the GET command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2353-4p2v-vp3h/GHSA-2353-4p2v-vp3h.json b/advisories/unreviewed/2022/04/GHSA-2353-4p2v-vp3h/GHSA-2353-4p2v-vp3h.json index 42f2190f7fd..733ac1447d0 100644 --- a/advisories/unreviewed/2022/04/GHSA-2353-4p2v-vp3h/GHSA-2353-4p2v-vp3h.json +++ b/advisories/unreviewed/2022/04/GHSA-2353-4p2v-vp3h/GHSA-2353-4p2v-vp3h.json @@ -7,12 +7,8 @@ "CVE-2001-0266" ], "details": "Vulnerability in Software Distributor SD-UX in HP-UX 11.0 and earlier allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2366-wj32-h6qc/GHSA-2366-wj32-h6qc.json b/advisories/unreviewed/2022/04/GHSA-2366-wj32-h6qc/GHSA-2366-wj32-h6qc.json index 6475ae304fd..773c4c3d63c 100644 --- a/advisories/unreviewed/2022/04/GHSA-2366-wj32-h6qc/GHSA-2366-wj32-h6qc.json +++ b/advisories/unreviewed/2022/04/GHSA-2366-wj32-h6qc/GHSA-2366-wj32-h6qc.json @@ -7,12 +7,8 @@ "CVE-2001-0217" ], "details": "Directory traversal vulnerability in PALS Library System pals-cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the documentName parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2392-533p-vgx6/GHSA-2392-533p-vgx6.json b/advisories/unreviewed/2022/04/GHSA-2392-533p-vgx6/GHSA-2392-533p-vgx6.json index a34ef82b064..9b1857b79d8 100644 --- a/advisories/unreviewed/2022/04/GHSA-2392-533p-vgx6/GHSA-2392-533p-vgx6.json +++ b/advisories/unreviewed/2022/04/GHSA-2392-533p-vgx6/GHSA-2392-533p-vgx6.json @@ -7,12 +7,8 @@ "CVE-2001-0229" ], "details": "Chili!Soft ASP for Linux before 3.6 does not properly set group privileges when running in inherited mode, which could allow attackers to gain privileges via malicious scripts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-23m7-3cfp-h2gf/GHSA-23m7-3cfp-h2gf.json b/advisories/unreviewed/2022/04/GHSA-23m7-3cfp-h2gf/GHSA-23m7-3cfp-h2gf.json index 839e51ef804..afd586e73a7 100644 --- a/advisories/unreviewed/2022/04/GHSA-23m7-3cfp-h2gf/GHSA-23m7-3cfp-h2gf.json +++ b/advisories/unreviewed/2022/04/GHSA-23m7-3cfp-h2gf/GHSA-23m7-3cfp-h2gf.json @@ -7,12 +7,8 @@ "CVE-2001-0304" ], "details": "Directory traversal vulnerability in Caucho Resin 1.2.2 allows remote attackers to read arbitrary files via a \"\\..\" (dot dot) in a URL request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-23p6-gh9w-qhrf/GHSA-23p6-gh9w-qhrf.json b/advisories/unreviewed/2022/04/GHSA-23p6-gh9w-qhrf/GHSA-23p6-gh9w-qhrf.json index 0e10db1796a..3c5c9c6d92b 100644 --- a/advisories/unreviewed/2022/04/GHSA-23p6-gh9w-qhrf/GHSA-23p6-gh9w-qhrf.json +++ b/advisories/unreviewed/2022/04/GHSA-23p6-gh9w-qhrf/GHSA-23p6-gh9w-qhrf.json @@ -7,12 +7,8 @@ "CVE-2001-0423" ], "details": "Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-269v-f6q7-wg8w/GHSA-269v-f6q7-wg8w.json b/advisories/unreviewed/2022/04/GHSA-269v-f6q7-wg8w/GHSA-269v-f6q7-wg8w.json index ddae231ca20..0b1c8e745ba 100644 --- a/advisories/unreviewed/2022/04/GHSA-269v-f6q7-wg8w/GHSA-269v-f6q7-wg8w.json +++ b/advisories/unreviewed/2022/04/GHSA-269v-f6q7-wg8w/GHSA-269v-f6q7-wg8w.json @@ -7,12 +7,8 @@ "CVE-2001-0441" ], "details": "Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-28qj-9gmx-6vpj/GHSA-28qj-9gmx-6vpj.json b/advisories/unreviewed/2022/04/GHSA-28qj-9gmx-6vpj/GHSA-28qj-9gmx-6vpj.json index 0fff591d3b4..ac840fa5ba6 100644 --- a/advisories/unreviewed/2022/04/GHSA-28qj-9gmx-6vpj/GHSA-28qj-9gmx-6vpj.json +++ b/advisories/unreviewed/2022/04/GHSA-28qj-9gmx-6vpj/GHSA-28qj-9gmx-6vpj.json @@ -7,12 +7,8 @@ "CVE-2001-0283" ], "details": "Directory traversal vulnerability in SunFTP build 9 allows remote attackers to read arbitrary files via .. (dot dot) characters in various commands, including (1) GET, (2) MKDIR, (3) RMDIR, (4) RENAME, or (5) PUT.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2c6r-pj43-h4x3/GHSA-2c6r-pj43-h4x3.json b/advisories/unreviewed/2022/04/GHSA-2c6r-pj43-h4x3/GHSA-2c6r-pj43-h4x3.json index 4a7674bfbe1..abb85678bc2 100644 --- a/advisories/unreviewed/2022/04/GHSA-2c6r-pj43-h4x3/GHSA-2c6r-pj43-h4x3.json +++ b/advisories/unreviewed/2022/04/GHSA-2c6r-pj43-h4x3/GHSA-2c6r-pj43-h4x3.json @@ -7,12 +7,8 @@ "CVE-2001-0398" ], "details": "The BAT! mail client allows remote attackers to bypass user warnings of an executable attachment and execute arbitrary commands via an attachment whose file name contains many spaces, which also causes the BAT! to misrepresent the attachment's type with a different icon.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2c97-6wg4-hjvw/GHSA-2c97-6wg4-hjvw.json b/advisories/unreviewed/2022/04/GHSA-2c97-6wg4-hjvw/GHSA-2c97-6wg4-hjvw.json index 494ce4e24f0..800fe23b6b7 100644 --- a/advisories/unreviewed/2022/04/GHSA-2c97-6wg4-hjvw/GHSA-2c97-6wg4-hjvw.json +++ b/advisories/unreviewed/2022/04/GHSA-2c97-6wg4-hjvw/GHSA-2c97-6wg4-hjvw.json @@ -7,12 +7,8 @@ "CVE-2001-0314" ], "details": "Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL in a link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2f5w-wx6g-q5g3/GHSA-2f5w-wx6g-q5g3.json b/advisories/unreviewed/2022/04/GHSA-2f5w-wx6g-q5g3/GHSA-2f5w-wx6g-q5g3.json index 283745284e6..bb18a38c24d 100644 --- a/advisories/unreviewed/2022/04/GHSA-2f5w-wx6g-q5g3/GHSA-2f5w-wx6g-q5g3.json +++ b/advisories/unreviewed/2022/04/GHSA-2f5w-wx6g-q5g3/GHSA-2f5w-wx6g-q5g3.json @@ -7,12 +7,8 @@ "CVE-2001-0120" ], "details": "useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2g3j-6hrf-vjp9/GHSA-2g3j-6hrf-vjp9.json b/advisories/unreviewed/2022/04/GHSA-2g3j-6hrf-vjp9/GHSA-2g3j-6hrf-vjp9.json index 9916e4f5a01..93b71a2f24b 100644 --- a/advisories/unreviewed/2022/04/GHSA-2g3j-6hrf-vjp9/GHSA-2g3j-6hrf-vjp9.json +++ b/advisories/unreviewed/2022/04/GHSA-2g3j-6hrf-vjp9/GHSA-2g3j-6hrf-vjp9.json @@ -7,12 +7,8 @@ "CVE-2001-0285" ], "details": "Buffer overflow in A1 HTTP server 1.0a allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2h6g-3hxf-g52r/GHSA-2h6g-3hxf-g52r.json b/advisories/unreviewed/2022/04/GHSA-2h6g-3hxf-g52r/GHSA-2h6g-3hxf-g52r.json index 95c36f89630..91924b0871a 100644 --- a/advisories/unreviewed/2022/04/GHSA-2h6g-3hxf-g52r/GHSA-2h6g-3hxf-g52r.json +++ b/advisories/unreviewed/2022/04/GHSA-2h6g-3hxf-g52r/GHSA-2h6g-3hxf-g52r.json @@ -7,12 +7,8 @@ "CVE-2001-0307" ], "details": "Bajie HTTP JServer 0.78, and other versions before 0.80, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request for a CGI program that does not exist.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-2h6x-3gq5-h875/GHSA-2h6x-3gq5-h875.json b/advisories/unreviewed/2022/04/GHSA-2h6x-3gq5-h875/GHSA-2h6x-3gq5-h875.json index 4662ab7cc34..9d9dfab234f 100644 --- a/advisories/unreviewed/2022/04/GHSA-2h6x-3gq5-h875/GHSA-2h6x-3gq5-h875.json +++ b/advisories/unreviewed/2022/04/GHSA-2h6x-3gq5-h875/GHSA-2h6x-3gq5-h875.json @@ -7,12 +7,8 @@ "CVE-2001-0429" ], "details": "Cisco Catalyst 5000 series switches 6.1(2) and earlier will forward an 802.1x frame on a Spanning Tree Protocol (STP) blocked port, which causes a network storm and a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2wfj-rgp8-qgxp/GHSA-2wfj-rgp8-qgxp.json b/advisories/unreviewed/2022/04/GHSA-2wfj-rgp8-qgxp/GHSA-2wfj-rgp8-qgxp.json index f60a10528fc..2bd950c76ba 100644 --- a/advisories/unreviewed/2022/04/GHSA-2wfj-rgp8-qgxp/GHSA-2wfj-rgp8-qgxp.json +++ b/advisories/unreviewed/2022/04/GHSA-2wfj-rgp8-qgxp/GHSA-2wfj-rgp8-qgxp.json @@ -7,12 +7,8 @@ "CVE-2001-0386" ], "details": "AnalogX SimpleServer:WWW 1.08 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2x64-ch34-4p29/GHSA-2x64-ch34-4p29.json b/advisories/unreviewed/2022/04/GHSA-2x64-ch34-4p29/GHSA-2x64-ch34-4p29.json index d29f341c5ae..23e3e87bd13 100644 --- a/advisories/unreviewed/2022/04/GHSA-2x64-ch34-4p29/GHSA-2x64-ch34-4p29.json +++ b/advisories/unreviewed/2022/04/GHSA-2x64-ch34-4p29/GHSA-2x64-ch34-4p29.json @@ -7,12 +7,8 @@ "CVE-2001-0281" ], "details": "Format string vulnerability in DbgPrint function, used in debug messages for some Windows NT drivers (possibly when called through DebugMessage), may allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-2xpp-qx4m-56h3/GHSA-2xpp-qx4m-56h3.json b/advisories/unreviewed/2022/04/GHSA-2xpp-qx4m-56h3/GHSA-2xpp-qx4m-56h3.json index 433a037f52a..fb9e35edd93 100644 --- a/advisories/unreviewed/2022/04/GHSA-2xpp-qx4m-56h3/GHSA-2xpp-qx4m-56h3.json +++ b/advisories/unreviewed/2022/04/GHSA-2xpp-qx4m-56h3/GHSA-2xpp-qx4m-56h3.json @@ -7,12 +7,8 @@ "CVE-2001-0203" ], "details": "Watchguard Firebox II firewall allows users with read-only access to gain read-write access, and administrative privileges, by accessing a file that contains hashed passphrases, and using the hashes during authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-33qj-cxq7-xmmr/GHSA-33qj-cxq7-xmmr.json b/advisories/unreviewed/2022/04/GHSA-33qj-cxq7-xmmr/GHSA-33qj-cxq7-xmmr.json index ce9cbc13497..cbf44fe6b71 100644 --- a/advisories/unreviewed/2022/04/GHSA-33qj-cxq7-xmmr/GHSA-33qj-cxq7-xmmr.json +++ b/advisories/unreviewed/2022/04/GHSA-33qj-cxq7-xmmr/GHSA-33qj-cxq7-xmmr.json @@ -7,12 +7,8 @@ "CVE-2001-0241" ], "details": "Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via a long print request that is passed to the extension through IIS 5.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-33xx-xhf9-4h3m/GHSA-33xx-xhf9-4h3m.json b/advisories/unreviewed/2022/04/GHSA-33xx-xhf9-4h3m/GHSA-33xx-xhf9-4h3m.json index c926bc61531..d9dad0fc61a 100644 --- a/advisories/unreviewed/2022/04/GHSA-33xx-xhf9-4h3m/GHSA-33xx-xhf9-4h3m.json +++ b/advisories/unreviewed/2022/04/GHSA-33xx-xhf9-4h3m/GHSA-33xx-xhf9-4h3m.json @@ -7,12 +7,8 @@ "CVE-2001-0182" ], "details": "FireWall-1 4.1 with a limited-IP license allows remote attackers to cause a denial of service by sending a large number of spoofed IP packets with various source addresses to the inside interface, which floods the console with warning messages and consumes CPU resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-354c-qvr6-3hcp/GHSA-354c-qvr6-3hcp.json b/advisories/unreviewed/2022/04/GHSA-354c-qvr6-3hcp/GHSA-354c-qvr6-3hcp.json index e8f7480af85..2ef518afd59 100644 --- a/advisories/unreviewed/2022/04/GHSA-354c-qvr6-3hcp/GHSA-354c-qvr6-3hcp.json +++ b/advisories/unreviewed/2022/04/GHSA-354c-qvr6-3hcp/GHSA-354c-qvr6-3hcp.json @@ -7,12 +7,8 @@ "CVE-2001-0292" ], "details": "PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-36m7-hm82-xm8q/GHSA-36m7-hm82-xm8q.json b/advisories/unreviewed/2022/04/GHSA-36m7-hm82-xm8q/GHSA-36m7-hm82-xm8q.json index 7d300614afa..adf460c72ed 100644 --- a/advisories/unreviewed/2022/04/GHSA-36m7-hm82-xm8q/GHSA-36m7-hm82-xm8q.json +++ b/advisories/unreviewed/2022/04/GHSA-36m7-hm82-xm8q/GHSA-36m7-hm82-xm8q.json @@ -7,12 +7,8 @@ "CVE-2001-0131" ], "details": "htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-377x-f57q-cjmg/GHSA-377x-f57q-cjmg.json b/advisories/unreviewed/2022/04/GHSA-377x-f57q-cjmg/GHSA-377x-f57q-cjmg.json index 6dfdbc65d87..3e3350d69ab 100644 --- a/advisories/unreviewed/2022/04/GHSA-377x-f57q-cjmg/GHSA-377x-f57q-cjmg.json +++ b/advisories/unreviewed/2022/04/GHSA-377x-f57q-cjmg/GHSA-377x-f57q-cjmg.json @@ -7,12 +7,8 @@ "CVE-2001-0409" ], "details": "vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the victim is editing the file in a world writable directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-39c7-wc77-32cj/GHSA-39c7-wc77-32cj.json b/advisories/unreviewed/2022/04/GHSA-39c7-wc77-32cj/GHSA-39c7-wc77-32cj.json index d141bf67a71..822564c7eab 100644 --- a/advisories/unreviewed/2022/04/GHSA-39c7-wc77-32cj/GHSA-39c7-wc77-32cj.json +++ b/advisories/unreviewed/2022/04/GHSA-39c7-wc77-32cj/GHSA-39c7-wc77-32cj.json @@ -7,12 +7,8 @@ "CVE-2001-0377" ], "details": "Infradig Inframail prior to 3.98a allows a remote attacker to create a denial of service via a malformed POST request which includes a space followed by a large string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3hgh-j2c9-7c7j/GHSA-3hgh-j2c9-7c7j.json b/advisories/unreviewed/2022/04/GHSA-3hgh-j2c9-7c7j/GHSA-3hgh-j2c9-7c7j.json index 04e02b1e31c..62733af3880 100644 --- a/advisories/unreviewed/2022/04/GHSA-3hgh-j2c9-7c7j/GHSA-3hgh-j2c9-7c7j.json +++ b/advisories/unreviewed/2022/04/GHSA-3hgh-j2c9-7c7j/GHSA-3hgh-j2c9-7c7j.json @@ -7,12 +7,8 @@ "CVE-2001-0446" ], "details": "IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3hh9-649f-frq3/GHSA-3hh9-649f-frq3.json b/advisories/unreviewed/2022/04/GHSA-3hh9-649f-frq3/GHSA-3hh9-649f-frq3.json index f6d427b6313..e3d5b24973d 100644 --- a/advisories/unreviewed/2022/04/GHSA-3hh9-649f-frq3/GHSA-3hh9-649f-frq3.json +++ b/advisories/unreviewed/2022/04/GHSA-3hh9-649f-frq3/GHSA-3hh9-649f-frq3.json @@ -7,12 +7,8 @@ "CVE-2001-0232" ], "details": "newsdesk.cgi in News Desk 1.2 allows remote attackers to read arbitrary files via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3j83-v84m-h6f2/GHSA-3j83-v84m-h6f2.json b/advisories/unreviewed/2022/04/GHSA-3j83-v84m-h6f2/GHSA-3j83-v84m-h6f2.json index 4a1d76cb08f..b93159eb6a3 100644 --- a/advisories/unreviewed/2022/04/GHSA-3j83-v84m-h6f2/GHSA-3j83-v84m-h6f2.json +++ b/advisories/unreviewed/2022/04/GHSA-3j83-v84m-h6f2/GHSA-3j83-v84m-h6f2.json @@ -7,12 +7,8 @@ "CVE-2001-0173" ], "details": "Buffer overflow in qDecoder library 5.08 and earlier, as used in CrazyWWWBoard, CrazySearch, and other CGI programs, allows remote attackers to execute arbitrary commands via a long MIME Content-Type header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3m6j-qgp5-2j5m/GHSA-3m6j-qgp5-2j5m.json b/advisories/unreviewed/2022/04/GHSA-3m6j-qgp5-2j5m/GHSA-3m6j-qgp5-2j5m.json index d64f5c35954..6b92c3fcda1 100644 --- a/advisories/unreviewed/2022/04/GHSA-3m6j-qgp5-2j5m/GHSA-3m6j-qgp5-2j5m.json +++ b/advisories/unreviewed/2022/04/GHSA-3m6j-qgp5-2j5m/GHSA-3m6j-qgp5-2j5m.json @@ -7,12 +7,8 @@ "CVE-2001-0211" ], "details": "Directory traversal vulnerability in WebSPIRS 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the sp.nextform parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3mcx-mghf-ffrq/GHSA-3mcx-mghf-ffrq.json b/advisories/unreviewed/2022/04/GHSA-3mcx-mghf-ffrq/GHSA-3mcx-mghf-ffrq.json index 98786b92a2c..50d65f7b71a 100644 --- a/advisories/unreviewed/2022/04/GHSA-3mcx-mghf-ffrq/GHSA-3mcx-mghf-ffrq.json +++ b/advisories/unreviewed/2022/04/GHSA-3mcx-mghf-ffrq/GHSA-3mcx-mghf-ffrq.json @@ -7,12 +7,8 @@ "CVE-2001-0257" ], "details": "Buffer overflow in Easycom/Safecom Print Server Web service, version 404.590 and earlier, allows remote attackers to execute arbitrary commands via (1) a long URL or (2) a long HTTP header field such as \"Host:\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3mf4-86mx-6m36/GHSA-3mf4-86mx-6m36.json b/advisories/unreviewed/2022/04/GHSA-3mf4-86mx-6m36/GHSA-3mf4-86mx-6m36.json index c498b828580..5b922934a60 100644 --- a/advisories/unreviewed/2022/04/GHSA-3mf4-86mx-6m36/GHSA-3mf4-86mx-6m36.json +++ b/advisories/unreviewed/2022/04/GHSA-3mf4-86mx-6m36/GHSA-3mf4-86mx-6m36.json @@ -7,12 +7,8 @@ "CVE-2001-0192" ], "details": "Buffer overflows in CTRLServer in XMail allows attackers to execute arbitrary commands via the cfgfileget or domaindel functions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3p2q-4jpq-m2x2/GHSA-3p2q-4jpq-m2x2.json b/advisories/unreviewed/2022/04/GHSA-3p2q-4jpq-m2x2/GHSA-3p2q-4jpq-m2x2.json index 79709a9a29d..b46aaf8a323 100644 --- a/advisories/unreviewed/2022/04/GHSA-3p2q-4jpq-m2x2/GHSA-3p2q-4jpq-m2x2.json +++ b/advisories/unreviewed/2022/04/GHSA-3p2q-4jpq-m2x2/GHSA-3p2q-4jpq-m2x2.json @@ -7,12 +7,8 @@ "CVE-2001-0135" ], "details": "The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sensitive information or possibly insert and execute CGI programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3r7x-xp2q-64p6/GHSA-3r7x-xp2q-64p6.json b/advisories/unreviewed/2022/04/GHSA-3r7x-xp2q-64p6/GHSA-3r7x-xp2q-64p6.json index 09077ba6c3b..803d582fcf5 100644 --- a/advisories/unreviewed/2022/04/GHSA-3r7x-xp2q-64p6/GHSA-3r7x-xp2q-64p6.json +++ b/advisories/unreviewed/2022/04/GHSA-3r7x-xp2q-64p6/GHSA-3r7x-xp2q-64p6.json @@ -7,12 +7,8 @@ "CVE-2001-0162" ], "details": "WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-3r8x-3j4q-x9g6/GHSA-3r8x-3j4q-x9g6.json b/advisories/unreviewed/2022/04/GHSA-3r8x-3j4q-x9g6/GHSA-3r8x-3j4q-x9g6.json index b731648f812..11e1dbdbcc3 100644 --- a/advisories/unreviewed/2022/04/GHSA-3r8x-3j4q-x9g6/GHSA-3r8x-3j4q-x9g6.json +++ b/advisories/unreviewed/2022/04/GHSA-3r8x-3j4q-x9g6/GHSA-3r8x-3j4q-x9g6.json @@ -7,12 +7,8 @@ "CVE-2001-0371" ], "details": "Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-424f-vwfw-m7pm/GHSA-424f-vwfw-m7pm.json b/advisories/unreviewed/2022/04/GHSA-424f-vwfw-m7pm/GHSA-424f-vwfw-m7pm.json index fe06c02c9ce..90659f20751 100644 --- a/advisories/unreviewed/2022/04/GHSA-424f-vwfw-m7pm/GHSA-424f-vwfw-m7pm.json +++ b/advisories/unreviewed/2022/04/GHSA-424f-vwfw-m7pm/GHSA-424f-vwfw-m7pm.json @@ -7,12 +7,8 @@ "CVE-2001-0117" ], "details": "sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4338-4734-j6wc/GHSA-4338-4734-j6wc.json b/advisories/unreviewed/2022/04/GHSA-4338-4734-j6wc/GHSA-4338-4734-j6wc.json index de98a6f950f..a75965499f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-4338-4734-j6wc/GHSA-4338-4734-j6wc.json +++ b/advisories/unreviewed/2022/04/GHSA-4338-4734-j6wc/GHSA-4338-4734-j6wc.json @@ -7,12 +7,8 @@ "CVE-2001-0368" ], "details": "Directory traversal vulnerability in BearShare 2.2.2 and earlier allows a remote attacker to read certain files via a URL containing a series of . characters, a variation of the .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-43xj-jq6q-9wr8/GHSA-43xj-jq6q-9wr8.json b/advisories/unreviewed/2022/04/GHSA-43xj-jq6q-9wr8/GHSA-43xj-jq6q-9wr8.json index 36a9d511252..d103eed44d0 100644 --- a/advisories/unreviewed/2022/04/GHSA-43xj-jq6q-9wr8/GHSA-43xj-jq6q-9wr8.json +++ b/advisories/unreviewed/2022/04/GHSA-43xj-jq6q-9wr8/GHSA-43xj-jq6q-9wr8.json @@ -7,12 +7,8 @@ "CVE-2001-0301" ], "details": "Buffer overflow in Analog before 4.16 allows remote attackers to execute arbitrary commands by using the ALIAS command to construct large strings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-44jw-5jxp-qmqr/GHSA-44jw-5jxp-qmqr.json b/advisories/unreviewed/2022/04/GHSA-44jw-5jxp-qmqr/GHSA-44jw-5jxp-qmqr.json index ef11936d5e7..3b68f97c086 100644 --- a/advisories/unreviewed/2022/04/GHSA-44jw-5jxp-qmqr/GHSA-44jw-5jxp-qmqr.json +++ b/advisories/unreviewed/2022/04/GHSA-44jw-5jxp-qmqr/GHSA-44jw-5jxp-qmqr.json @@ -7,12 +7,8 @@ "CVE-2001-0265" ], "details": "ASCII Armor parser in Windows PGP 7.0.3 and earlier allows attackers to create files in arbitrary locations via a malformed ASCII armored file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-44p8-q8mq-gw9f/GHSA-44p8-q8mq-gw9f.json b/advisories/unreviewed/2022/04/GHSA-44p8-q8mq-gw9f/GHSA-44p8-q8mq-gw9f.json index 37a2aeb522a..ed4391a9aa0 100644 --- a/advisories/unreviewed/2022/04/GHSA-44p8-q8mq-gw9f/GHSA-44p8-q8mq-gw9f.json +++ b/advisories/unreviewed/2022/04/GHSA-44p8-q8mq-gw9f/GHSA-44p8-q8mq-gw9f.json @@ -7,12 +7,8 @@ "CVE-2001-0407" ], "details": "Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with .. (dot dot).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-49cf-r7gw-pv88/GHSA-49cf-r7gw-pv88.json b/advisories/unreviewed/2022/04/GHSA-49cf-r7gw-pv88/GHSA-49cf-r7gw-pv88.json index 9403dc08394..87847757846 100644 --- a/advisories/unreviewed/2022/04/GHSA-49cf-r7gw-pv88/GHSA-49cf-r7gw-pv88.json +++ b/advisories/unreviewed/2022/04/GHSA-49cf-r7gw-pv88/GHSA-49cf-r7gw-pv88.json @@ -7,12 +7,8 @@ "CVE-2001-0452" ], "details": "BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a \"CD *\" command followed by an ls command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4ccp-g444-f9q7/GHSA-4ccp-g444-f9q7.json b/advisories/unreviewed/2022/04/GHSA-4ccp-g444-f9q7/GHSA-4ccp-g444-f9q7.json index 03b7ad636aa..a7ba6827bcc 100644 --- a/advisories/unreviewed/2022/04/GHSA-4ccp-g444-f9q7/GHSA-4ccp-g444-f9q7.json +++ b/advisories/unreviewed/2022/04/GHSA-4ccp-g444-f9q7/GHSA-4ccp-g444-f9q7.json @@ -7,12 +7,8 @@ "CVE-2001-0347" ], "details": "Information disclosure vulnerability in Microsoft Windows 2000 telnet service allows remote attackers to determine the existence of user accounts such as Guest, or log in to the server without specifying the domain name, via a malformed userid.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4cm3-m32w-wm2p/GHSA-4cm3-m32w-wm2p.json b/advisories/unreviewed/2022/04/GHSA-4cm3-m32w-wm2p/GHSA-4cm3-m32w-wm2p.json index 7d435625922..a2849d6b354 100644 --- a/advisories/unreviewed/2022/04/GHSA-4cm3-m32w-wm2p/GHSA-4cm3-m32w-wm2p.json +++ b/advisories/unreviewed/2022/04/GHSA-4cm3-m32w-wm2p/GHSA-4cm3-m32w-wm2p.json @@ -7,12 +7,8 @@ "CVE-2001-0457" ], "details": "man2html before 1.5-22 allows remote attackers to cause a denial of service (memory exhaustion).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4gq3-xq44-x74x/GHSA-4gq3-xq44-x74x.json b/advisories/unreviewed/2022/04/GHSA-4gq3-xq44-x74x/GHSA-4gq3-xq44-x74x.json index b19ccf65e42..e3fe0863723 100644 --- a/advisories/unreviewed/2022/04/GHSA-4gq3-xq44-x74x/GHSA-4gq3-xq44-x74x.json +++ b/advisories/unreviewed/2022/04/GHSA-4gq3-xq44-x74x/GHSA-4gq3-xq44-x74x.json @@ -7,12 +7,8 @@ "CVE-2001-0236" ], "details": "Buffer overflow in Solaris snmpXdmid SNMP to DMI mapper daemon allows remote attackers to execute arbitrary commands via a long \"indication\" event.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4hh9-8r2h-955p/GHSA-4hh9-8r2h-955p.json b/advisories/unreviewed/2022/04/GHSA-4hh9-8r2h-955p/GHSA-4hh9-8r2h-955p.json index e461f2b97a9..4493b531c1e 100644 --- a/advisories/unreviewed/2022/04/GHSA-4hh9-8r2h-955p/GHSA-4hh9-8r2h-955p.json +++ b/advisories/unreviewed/2022/04/GHSA-4hh9-8r2h-955p/GHSA-4hh9-8r2h-955p.json @@ -7,12 +7,8 @@ "CVE-2001-0269" ], "details": "pam_ldap authentication module in Solaris 8 allows remote attackers to bypass authentication via a NULL password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4m5w-43cx-p687/GHSA-4m5w-43cx-p687.json b/advisories/unreviewed/2022/04/GHSA-4m5w-43cx-p687/GHSA-4m5w-43cx-p687.json index dd81756ca87..76586c0a8ad 100644 --- a/advisories/unreviewed/2022/04/GHSA-4m5w-43cx-p687/GHSA-4m5w-43cx-p687.json +++ b/advisories/unreviewed/2022/04/GHSA-4m5w-43cx-p687/GHSA-4m5w-43cx-p687.json @@ -7,12 +7,8 @@ "CVE-2001-0245" ], "details": "Microsoft Index Server 2.0 in Windows NT 4.0, and Indexing Service in Windows 2000, allows remote attackers to read server-side include files via a malformed search request, aka a new variant of the \"Malformed Hit-Highlighting\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4p65-mw7f-2jcx/GHSA-4p65-mw7f-2jcx.json b/advisories/unreviewed/2022/04/GHSA-4p65-mw7f-2jcx/GHSA-4p65-mw7f-2jcx.json index 5e68f0f1563..4c567ea6dce 100644 --- a/advisories/unreviewed/2022/04/GHSA-4p65-mw7f-2jcx/GHSA-4p65-mw7f-2jcx.json +++ b/advisories/unreviewed/2022/04/GHSA-4p65-mw7f-2jcx/GHSA-4p65-mw7f-2jcx.json @@ -7,12 +7,8 @@ "CVE-2001-0392" ], "details": "Navision Financials Server 2.60 and earlier allows remote attackers to cause a denial of service by sending a null character and a long string to the server port (2407), which causes the server to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4q49-xx74-vrg5/GHSA-4q49-xx74-vrg5.json b/advisories/unreviewed/2022/04/GHSA-4q49-xx74-vrg5/GHSA-4q49-xx74-vrg5.json index 060d73336fd..76afcf915f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-4q49-xx74-vrg5/GHSA-4q49-xx74-vrg5.json +++ b/advisories/unreviewed/2022/04/GHSA-4q49-xx74-vrg5/GHSA-4q49-xx74-vrg5.json @@ -7,12 +7,8 @@ "CVE-2001-0129" ], "details": "Buffer overflow in Tinyproxy HTTP proxy 1.3.3 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long connect request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4r3c-72vr-vf8h/GHSA-4r3c-72vr-vf8h.json b/advisories/unreviewed/2022/04/GHSA-4r3c-72vr-vf8h/GHSA-4r3c-72vr-vf8h.json index ded60383e9c..5f2b330e881 100644 --- a/advisories/unreviewed/2022/04/GHSA-4r3c-72vr-vf8h/GHSA-4r3c-72vr-vf8h.json +++ b/advisories/unreviewed/2022/04/GHSA-4r3c-72vr-vf8h/GHSA-4r3c-72vr-vf8h.json @@ -7,12 +7,8 @@ "CVE-2001-0358" ], "details": "Buffer overflows in Sierra Half-Life build 1573 and earlier allow remote attackers to execute arbitrary code via (1) a long map command, (2) a long exec command, or (3) long input in a configuration file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4xvr-x4vc-p55f/GHSA-4xvr-x4vc-p55f.json b/advisories/unreviewed/2022/04/GHSA-4xvr-x4vc-p55f/GHSA-4xvr-x4vc-p55f.json index 6c030eea26f..c2cc796f327 100644 --- a/advisories/unreviewed/2022/04/GHSA-4xvr-x4vc-p55f/GHSA-4xvr-x4vc-p55f.json +++ b/advisories/unreviewed/2022/04/GHSA-4xvr-x4vc-p55f/GHSA-4xvr-x4vc-p55f.json @@ -7,12 +7,8 @@ "CVE-2001-0396" ], "details": "The pre-login mode in the System Administrator interface of Lightwave ConsoleServer 3200 allows remote attackers to obtain sensitive information such as system status, configuration, and users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-4xxf-52jh-mcc6/GHSA-4xxf-52jh-mcc6.json b/advisories/unreviewed/2022/04/GHSA-4xxf-52jh-mcc6/GHSA-4xxf-52jh-mcc6.json index ae831c21524..2bb11b20d48 100644 --- a/advisories/unreviewed/2022/04/GHSA-4xxf-52jh-mcc6/GHSA-4xxf-52jh-mcc6.json +++ b/advisories/unreviewed/2022/04/GHSA-4xxf-52jh-mcc6/GHSA-4xxf-52jh-mcc6.json @@ -7,12 +7,8 @@ "CVE-2001-0373" ], "details": "The default configuration of the Dr. Watson program in Windows NT and Windows 2000 generates user.dmp crash dump files with world-readable permissions, which could allow a local user to gain access to sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-52wx-ppx5-cwp9/GHSA-52wx-ppx5-cwp9.json b/advisories/unreviewed/2022/04/GHSA-52wx-ppx5-cwp9/GHSA-52wx-ppx5-cwp9.json index b5267203b09..2e977cbd595 100644 --- a/advisories/unreviewed/2022/04/GHSA-52wx-ppx5-cwp9/GHSA-52wx-ppx5-cwp9.json +++ b/advisories/unreviewed/2022/04/GHSA-52wx-ppx5-cwp9/GHSA-52wx-ppx5-cwp9.json @@ -7,12 +7,8 @@ "CVE-2001-0153" ], "details": "Buffer overflow in VB-TSQL debugger object (vbsdicli.exe) in Visual Studio 6.0 Enterprise Edition allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-53jr-499g-vcmm/GHSA-53jr-499g-vcmm.json b/advisories/unreviewed/2022/04/GHSA-53jr-499g-vcmm/GHSA-53jr-499g-vcmm.json index e47b986ae56..c998309256d 100644 --- a/advisories/unreviewed/2022/04/GHSA-53jr-499g-vcmm/GHSA-53jr-499g-vcmm.json +++ b/advisories/unreviewed/2022/04/GHSA-53jr-499g-vcmm/GHSA-53jr-499g-vcmm.json @@ -7,12 +7,8 @@ "CVE-2001-0189" ], "details": "Directory traversal vulnerability in LocalWEB2000 HTTP server allows remote attackers to read arbitrary commands via a .. (dot dot) attack in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-547j-7cmx-9h36/GHSA-547j-7cmx-9h36.json b/advisories/unreviewed/2022/04/GHSA-547j-7cmx-9h36/GHSA-547j-7cmx-9h36.json index 87ff2907d1e..25a5824be43 100644 --- a/advisories/unreviewed/2022/04/GHSA-547j-7cmx-9h36/GHSA-547j-7cmx-9h36.json +++ b/advisories/unreviewed/2022/04/GHSA-547j-7cmx-9h36/GHSA-547j-7cmx-9h36.json @@ -7,12 +7,8 @@ "CVE-2001-0321" ], "details": "opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-555g-qrv3-xmx5/GHSA-555g-qrv3-xmx5.json b/advisories/unreviewed/2022/04/GHSA-555g-qrv3-xmx5/GHSA-555g-qrv3-xmx5.json index 20f66fca504..7bb17dbe321 100644 --- a/advisories/unreviewed/2022/04/GHSA-555g-qrv3-xmx5/GHSA-555g-qrv3-xmx5.json +++ b/advisories/unreviewed/2022/04/GHSA-555g-qrv3-xmx5/GHSA-555g-qrv3-xmx5.json @@ -7,12 +7,8 @@ "CVE-2001-0320" ], "details": "bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-588h-3567-38rc/GHSA-588h-3567-38rc.json b/advisories/unreviewed/2022/04/GHSA-588h-3567-38rc/GHSA-588h-3567-38rc.json index a37f7d3a301..ea80b1f3730 100644 --- a/advisories/unreviewed/2022/04/GHSA-588h-3567-38rc/GHSA-588h-3567-38rc.json +++ b/advisories/unreviewed/2022/04/GHSA-588h-3567-38rc/GHSA-588h-3567-38rc.json @@ -7,12 +7,8 @@ "CVE-2001-0115" ], "details": "Buffer overflow in arp command in Solaris 7 and earlier allows local users to execute arbitrary commands via a long -f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-59c6-g57x-ff88/GHSA-59c6-g57x-ff88.json b/advisories/unreviewed/2022/04/GHSA-59c6-g57x-ff88/GHSA-59c6-g57x-ff88.json index 36fb1fb36ea..49fec62ee9c 100644 --- a/advisories/unreviewed/2022/04/GHSA-59c6-g57x-ff88/GHSA-59c6-g57x-ff88.json +++ b/advisories/unreviewed/2022/04/GHSA-59c6-g57x-ff88/GHSA-59c6-g57x-ff88.json @@ -7,12 +7,8 @@ "CVE-2001-0218" ], "details": "Format string vulnerability in mars_nwe 0.99.pl19 allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5c3q-qjx8-r9hg/GHSA-5c3q-qjx8-r9hg.json b/advisories/unreviewed/2022/04/GHSA-5c3q-qjx8-r9hg/GHSA-5c3q-qjx8-r9hg.json index 27440d262c5..3bddd31836d 100644 --- a/advisories/unreviewed/2022/04/GHSA-5c3q-qjx8-r9hg/GHSA-5c3q-qjx8-r9hg.json +++ b/advisories/unreviewed/2022/04/GHSA-5c3q-qjx8-r9hg/GHSA-5c3q-qjx8-r9hg.json @@ -7,12 +7,8 @@ "CVE-2001-0272" ], "details": "Directory traversal vulnerability in sendtemp.pl in W3.org Anaya Web development server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the templ parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5cj2-9wjg-2695/GHSA-5cj2-9wjg-2695.json b/advisories/unreviewed/2022/04/GHSA-5cj2-9wjg-2695/GHSA-5cj2-9wjg-2695.json index e5b55fc597d..e952750014e 100644 --- a/advisories/unreviewed/2022/04/GHSA-5cj2-9wjg-2695/GHSA-5cj2-9wjg-2695.json +++ b/advisories/unreviewed/2022/04/GHSA-5cj2-9wjg-2695/GHSA-5cj2-9wjg-2695.json @@ -7,12 +7,8 @@ "CVE-2001-0294" ], "details": "Directory traversal vulnerability in TYPSoft FTP Server 0.85 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in a GET command, or (2) a ... in a CWD command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5gfm-vq6m-rxf2/GHSA-5gfm-vq6m-rxf2.json b/advisories/unreviewed/2022/04/GHSA-5gfm-vq6m-rxf2/GHSA-5gfm-vq6m-rxf2.json index 75ed5a306e0..52a7406a9a2 100644 --- a/advisories/unreviewed/2022/04/GHSA-5gfm-vq6m-rxf2/GHSA-5gfm-vq6m-rxf2.json +++ b/advisories/unreviewed/2022/04/GHSA-5gfm-vq6m-rxf2/GHSA-5gfm-vq6m-rxf2.json @@ -7,12 +7,8 @@ "CVE-2001-0349" ], "details": "Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, which allows local users to execute arbitrary commands by creating a named pipe with the predictable name and associating a malicious program with it, the first of two variants of this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5q7w-5h3w-gx86/GHSA-5q7w-5h3w-gx86.json b/advisories/unreviewed/2022/04/GHSA-5q7w-5h3w-gx86/GHSA-5q7w-5h3w-gx86.json index bd58df57fcb..b38a9542d0c 100644 --- a/advisories/unreviewed/2022/04/GHSA-5q7w-5h3w-gx86/GHSA-5q7w-5h3w-gx86.json +++ b/advisories/unreviewed/2022/04/GHSA-5q7w-5h3w-gx86/GHSA-5q7w-5h3w-gx86.json @@ -7,12 +7,8 @@ "CVE-2001-0251" ], "details": "The Web Publishing feature in Netscape Enterprise Server 3.x allows remote attackers to cause a denial of service via the REVLOG command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5rmq-q5qg-vcf7/GHSA-5rmq-q5qg-vcf7.json b/advisories/unreviewed/2022/04/GHSA-5rmq-q5qg-vcf7/GHSA-5rmq-q5qg-vcf7.json index 8715310cd2f..a8d90f66584 100644 --- a/advisories/unreviewed/2022/04/GHSA-5rmq-q5qg-vcf7/GHSA-5rmq-q5qg-vcf7.json +++ b/advisories/unreviewed/2022/04/GHSA-5rmq-q5qg-vcf7/GHSA-5rmq-q5qg-vcf7.json @@ -7,12 +7,8 @@ "CVE-2001-0435" ], "details": "The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the \"Cache passphrase while logged on\" option and capturing the passphrases of other share holders as they authenticate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-5wwr-cxv7-j2qg/GHSA-5wwr-cxv7-j2qg.json b/advisories/unreviewed/2022/04/GHSA-5wwr-cxv7-j2qg/GHSA-5wwr-cxv7-j2qg.json index 76b71882852..0f9458feba6 100644 --- a/advisories/unreviewed/2022/04/GHSA-5wwr-cxv7-j2qg/GHSA-5wwr-cxv7-j2qg.json +++ b/advisories/unreviewed/2022/04/GHSA-5wwr-cxv7-j2qg/GHSA-5wwr-cxv7-j2qg.json @@ -7,12 +7,8 @@ "CVE-2001-0458" ], "details": "Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6378-v25v-557w/GHSA-6378-v25v-557w.json b/advisories/unreviewed/2022/04/GHSA-6378-v25v-557w/GHSA-6378-v25v-557w.json index fc0997bd77f..18a33827b7b 100644 --- a/advisories/unreviewed/2022/04/GHSA-6378-v25v-557w/GHSA-6378-v25v-557w.json +++ b/advisories/unreviewed/2022/04/GHSA-6378-v25v-557w/GHSA-6378-v25v-557w.json @@ -7,12 +7,8 @@ "CVE-2001-0468" ], "details": "Buffer overflow in FTPFS allows local users to gain root privileges via a long user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-64r4-fw2x-4244/GHSA-64r4-fw2x-4244.json b/advisories/unreviewed/2022/04/GHSA-64r4-fw2x-4244/GHSA-64r4-fw2x-4244.json index 39eebfd5670..98433cef114 100644 --- a/advisories/unreviewed/2022/04/GHSA-64r4-fw2x-4244/GHSA-64r4-fw2x-4244.json +++ b/advisories/unreviewed/2022/04/GHSA-64r4-fw2x-4244/GHSA-64r4-fw2x-4244.json @@ -7,12 +7,8 @@ "CVE-2001-0215" ], "details": "ROADS search.pl program allows remote attackers to read arbitrary files by specifying the file name in the form parameter and terminating the filename with a null byte.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6558-8g43-2f27/GHSA-6558-8g43-2f27.json b/advisories/unreviewed/2022/04/GHSA-6558-8g43-2f27/GHSA-6558-8g43-2f27.json index 95464f17bca..b8a2f420295 100644 --- a/advisories/unreviewed/2022/04/GHSA-6558-8g43-2f27/GHSA-6558-8g43-2f27.json +++ b/advisories/unreviewed/2022/04/GHSA-6558-8g43-2f27/GHSA-6558-8g43-2f27.json @@ -7,12 +7,8 @@ "CVE-2001-0170" ], "details": "glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6579-q62m-fg8g/GHSA-6579-q62m-fg8g.json b/advisories/unreviewed/2022/04/GHSA-6579-q62m-fg8g/GHSA-6579-q62m-fg8g.json index 1048e457521..23a44bef708 100644 --- a/advisories/unreviewed/2022/04/GHSA-6579-q62m-fg8g/GHSA-6579-q62m-fg8g.json +++ b/advisories/unreviewed/2022/04/GHSA-6579-q62m-fg8g/GHSA-6579-q62m-fg8g.json @@ -7,12 +7,8 @@ "CVE-2001-0297" ], "details": "Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-66pm-cfc2-fw96/GHSA-66pm-cfc2-fw96.json b/advisories/unreviewed/2022/04/GHSA-66pm-cfc2-fw96/GHSA-66pm-cfc2-fw96.json index 71699c14aa3..477eb5711f0 100644 --- a/advisories/unreviewed/2022/04/GHSA-66pm-cfc2-fw96/GHSA-66pm-cfc2-fw96.json +++ b/advisories/unreviewed/2022/04/GHSA-66pm-cfc2-fw96/GHSA-66pm-cfc2-fw96.json @@ -7,12 +7,8 @@ "CVE-2001-0165" ], "details": "Buffer overflow in ximp40 shared library in Solaris 7 and Solaris 8 allows local users to gain privileges via a long \"arg0\" (process name) argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6748-8gv9-q5pj/GHSA-6748-8gv9-q5pj.json b/advisories/unreviewed/2022/04/GHSA-6748-8gv9-q5pj/GHSA-6748-8gv9-q5pj.json index 612e4ed8c57..9cfdf0b782a 100644 --- a/advisories/unreviewed/2022/04/GHSA-6748-8gv9-q5pj/GHSA-6748-8gv9-q5pj.json +++ b/advisories/unreviewed/2022/04/GHSA-6748-8gv9-q5pj/GHSA-6748-8gv9-q5pj.json @@ -7,12 +7,8 @@ "CVE-2001-0111" ], "details": "Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-67pp-g8pj-rw94/GHSA-67pp-g8pj-rw94.json b/advisories/unreviewed/2022/04/GHSA-67pp-g8pj-rw94/GHSA-67pp-g8pj-rw94.json index b2615a1dbb7..90b6c194baf 100644 --- a/advisories/unreviewed/2022/04/GHSA-67pp-g8pj-rw94/GHSA-67pp-g8pj-rw94.json +++ b/advisories/unreviewed/2022/04/GHSA-67pp-g8pj-rw94/GHSA-67pp-g8pj-rw94.json @@ -7,12 +7,8 @@ "CVE-2001-0137" ], "details": "Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Media Player Skins File Download\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6868-m557-3x86/GHSA-6868-m557-3x86.json b/advisories/unreviewed/2022/04/GHSA-6868-m557-3x86/GHSA-6868-m557-3x86.json index 8f60a474ac1..d1ce94366fc 100644 --- a/advisories/unreviewed/2022/04/GHSA-6868-m557-3x86/GHSA-6868-m557-3x86.json +++ b/advisories/unreviewed/2022/04/GHSA-6868-m557-3x86/GHSA-6868-m557-3x86.json @@ -7,12 +7,8 @@ "CVE-2001-0427" ], "details": "Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed login attempts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-69j5-8jr8-g389/GHSA-69j5-8jr8-g389.json b/advisories/unreviewed/2022/04/GHSA-69j5-8jr8-g389/GHSA-69j5-8jr8-g389.json index 66ad999222d..b669d29676a 100644 --- a/advisories/unreviewed/2022/04/GHSA-69j5-8jr8-g389/GHSA-69j5-8jr8-g389.json +++ b/advisories/unreviewed/2022/04/GHSA-69j5-8jr8-g389/GHSA-69j5-8jr8-g389.json @@ -7,12 +7,8 @@ "CVE-2001-0353" ], "details": "Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a \"transfer job\" routine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6cj3-4wq8-r2m5/GHSA-6cj3-4wq8-r2m5.json b/advisories/unreviewed/2022/04/GHSA-6cj3-4wq8-r2m5/GHSA-6cj3-4wq8-r2m5.json index b0c5c5ce047..60124efadb7 100644 --- a/advisories/unreviewed/2022/04/GHSA-6cj3-4wq8-r2m5/GHSA-6cj3-4wq8-r2m5.json +++ b/advisories/unreviewed/2022/04/GHSA-6cj3-4wq8-r2m5/GHSA-6cj3-4wq8-r2m5.json @@ -7,12 +7,8 @@ "CVE-2001-0422" ], "details": "Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6f9h-g345-97pw/GHSA-6f9h-g345-97pw.json b/advisories/unreviewed/2022/04/GHSA-6f9h-g345-97pw/GHSA-6f9h-g345-97pw.json index 43b4a40808f..2fae2783e41 100644 --- a/advisories/unreviewed/2022/04/GHSA-6f9h-g345-97pw/GHSA-6f9h-g345-97pw.json +++ b/advisories/unreviewed/2022/04/GHSA-6f9h-g345-97pw/GHSA-6f9h-g345-97pw.json @@ -7,12 +7,8 @@ "CVE-2001-0330" ], "details": "Bugzilla 2.10 allows remote attackers to access sensitive information, including the database username and password, via an HTTP request for the globals.pl file, which is normally returned by the web server without being executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6g32-qf28-2mrm/GHSA-6g32-qf28-2mrm.json b/advisories/unreviewed/2022/04/GHSA-6g32-qf28-2mrm/GHSA-6g32-qf28-2mrm.json index d0fdd27261c..6fe7d2c328d 100644 --- a/advisories/unreviewed/2022/04/GHSA-6g32-qf28-2mrm/GHSA-6g32-qf28-2mrm.json +++ b/advisories/unreviewed/2022/04/GHSA-6g32-qf28-2mrm/GHSA-6g32-qf28-2mrm.json @@ -7,12 +7,8 @@ "CVE-2001-0147" ], "details": "Buffer overflow in Windows 2000 event viewer snap-in allows attackers to execute arbitrary commands via a malformed field that is improperly handled during the detailed view of event records.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6m5h-7f6p-qc3h/GHSA-6m5h-7f6p-qc3h.json b/advisories/unreviewed/2022/04/GHSA-6m5h-7f6p-qc3h/GHSA-6m5h-7f6p-qc3h.json index 6d7b020686e..01127cb7e3c 100644 --- a/advisories/unreviewed/2022/04/GHSA-6m5h-7f6p-qc3h/GHSA-6m5h-7f6p-qc3h.json +++ b/advisories/unreviewed/2022/04/GHSA-6m5h-7f6p-qc3h/GHSA-6m5h-7f6p-qc3h.json @@ -7,12 +7,8 @@ "CVE-2001-0359" ], "details": "Format string vulnerability in Sierra Half-Life build 1573 and earlier allows a remote attacker to execute arbitrary code via the map command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6pv3-758h-9wgc/GHSA-6pv3-758h-9wgc.json b/advisories/unreviewed/2022/04/GHSA-6pv3-758h-9wgc/GHSA-6pv3-758h-9wgc.json index cb340a4cc10..dac3a31a466 100644 --- a/advisories/unreviewed/2022/04/GHSA-6pv3-758h-9wgc/GHSA-6pv3-758h-9wgc.json +++ b/advisories/unreviewed/2022/04/GHSA-6pv3-758h-9wgc/GHSA-6pv3-758h-9wgc.json @@ -7,12 +7,8 @@ "CVE-2001-0255" ], "details": "FaSTream FTP++ Server 2.0 allows remote attackers to list arbitrary directories by using the \"ls\" command and including the drive letter name (e.g. C:) in the requested pathname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6rhj-cqw5-mm3r/GHSA-6rhj-cqw5-mm3r.json b/advisories/unreviewed/2022/04/GHSA-6rhj-cqw5-mm3r/GHSA-6rhj-cqw5-mm3r.json index ad709bab80f..07638caea45 100644 --- a/advisories/unreviewed/2022/04/GHSA-6rhj-cqw5-mm3r/GHSA-6rhj-cqw5-mm3r.json +++ b/advisories/unreviewed/2022/04/GHSA-6rhj-cqw5-mm3r/GHSA-6rhj-cqw5-mm3r.json @@ -7,12 +7,8 @@ "CVE-2001-0374" ], "details": "The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power Manager, (4) Availability Agents, (5) Intelligent Cluster Administrator, and (6) Insight Manager can be used as a generic proxy server, which allows remote attackers to bypass access restrictions via the management port, 2301.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6wvf-36hc-v85j/GHSA-6wvf-36hc-v85j.json b/advisories/unreviewed/2022/04/GHSA-6wvf-36hc-v85j/GHSA-6wvf-36hc-v85j.json index 17fb4e58962..a75b49d8ff1 100644 --- a/advisories/unreviewed/2022/04/GHSA-6wvf-36hc-v85j/GHSA-6wvf-36hc-v85j.json +++ b/advisories/unreviewed/2022/04/GHSA-6wvf-36hc-v85j/GHSA-6wvf-36hc-v85j.json @@ -7,12 +7,8 @@ "CVE-2001-0432" ], "details": "Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 allow remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6x7w-w943-rj89/GHSA-6x7w-w943-rj89.json b/advisories/unreviewed/2022/04/GHSA-6x7w-w943-rj89/GHSA-6x7w-w943-rj89.json index 62ef23e50bf..b3770ce6c41 100644 --- a/advisories/unreviewed/2022/04/GHSA-6x7w-w943-rj89/GHSA-6x7w-w943-rj89.json +++ b/advisories/unreviewed/2022/04/GHSA-6x7w-w943-rj89/GHSA-6x7w-w943-rj89.json @@ -7,12 +7,8 @@ "CVE-2001-0391" ], "details": "Xitami 2.5d4 and earlier allows remote attackers to crash the server via an HTTP request to the /aux directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-6xc7-h5cr-j8wh/GHSA-6xc7-h5cr-j8wh.json b/advisories/unreviewed/2022/04/GHSA-6xc7-h5cr-j8wh/GHSA-6xc7-h5cr-j8wh.json index 5d8b568606b..35ad2ab097f 100644 --- a/advisories/unreviewed/2022/04/GHSA-6xc7-h5cr-j8wh/GHSA-6xc7-h5cr-j8wh.json +++ b/advisories/unreviewed/2022/04/GHSA-6xc7-h5cr-j8wh/GHSA-6xc7-h5cr-j8wh.json @@ -7,12 +7,8 @@ "CVE-2001-0325" ], "details": "Buffer overflow in QNX RTP 5.60 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large number of arguments to the stat command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-72gx-jhgh-xcv8/GHSA-72gx-jhgh-xcv8.json b/advisories/unreviewed/2022/04/GHSA-72gx-jhgh-xcv8/GHSA-72gx-jhgh-xcv8.json index c99f18d012d..554a514ae33 100644 --- a/advisories/unreviewed/2022/04/GHSA-72gx-jhgh-xcv8/GHSA-72gx-jhgh-xcv8.json +++ b/advisories/unreviewed/2022/04/GHSA-72gx-jhgh-xcv8/GHSA-72gx-jhgh-xcv8.json @@ -7,12 +7,8 @@ "CVE-2001-0271" ], "details": "mailnews.cgi 1.3 and earlier allows remote attackers to execute arbitrary commands via a user name that contains shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-72xq-vrww-9f5p/GHSA-72xq-vrww-9f5p.json b/advisories/unreviewed/2022/04/GHSA-72xq-vrww-9f5p/GHSA-72xq-vrww-9f5p.json index 0f683669df1..8ae8a9319d6 100644 --- a/advisories/unreviewed/2022/04/GHSA-72xq-vrww-9f5p/GHSA-72xq-vrww-9f5p.json +++ b/advisories/unreviewed/2022/04/GHSA-72xq-vrww-9f5p/GHSA-72xq-vrww-9f5p.json @@ -7,12 +7,8 @@ "CVE-2001-0286" ], "details": "Directory traversal vulnerability in A1 HTTP server 1.0a allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-736f-7686-hp7x/GHSA-736f-7686-hp7x.json b/advisories/unreviewed/2022/04/GHSA-736f-7686-hp7x/GHSA-736f-7686-hp7x.json index a8ff0a22c59..5f6385fd48c 100644 --- a/advisories/unreviewed/2022/04/GHSA-736f-7686-hp7x/GHSA-736f-7686-hp7x.json +++ b/advisories/unreviewed/2022/04/GHSA-736f-7686-hp7x/GHSA-736f-7686-hp7x.json @@ -7,12 +7,8 @@ "CVE-2001-0227" ], "details": "Buffer overflow in BiblioWeb web server 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-739r-qwgh-rfgr/GHSA-739r-qwgh-rfgr.json b/advisories/unreviewed/2022/04/GHSA-739r-qwgh-rfgr/GHSA-739r-qwgh-rfgr.json index 9bdd512e426..bd41011276f 100644 --- a/advisories/unreviewed/2022/04/GHSA-739r-qwgh-rfgr/GHSA-739r-qwgh-rfgr.json +++ b/advisories/unreviewed/2022/04/GHSA-739r-qwgh-rfgr/GHSA-739r-qwgh-rfgr.json @@ -7,12 +7,8 @@ "CVE-2001-0145" ], "details": "Buffer overflow in VCard handler in Outlook 2000 and 98, and Outlook Express 5.x, allows an attacker to execute arbitrary commands via a malformed vCard birthday field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-73c8-87qq-rgfx/GHSA-73c8-87qq-rgfx.json b/advisories/unreviewed/2022/04/GHSA-73c8-87qq-rgfx/GHSA-73c8-87qq-rgfx.json index 60ce8d160a3..2925e042451 100644 --- a/advisories/unreviewed/2022/04/GHSA-73c8-87qq-rgfx/GHSA-73c8-87qq-rgfx.json +++ b/advisories/unreviewed/2022/04/GHSA-73c8-87qq-rgfx/GHSA-73c8-87qq-rgfx.json @@ -7,12 +7,8 @@ "CVE-2001-0287" ], "details": "VERITAS Cluster Server (VCS) 1.3.0 on Solaris allows local users to cause a denial of service (system panic) via the -L option to the lltstat command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-757p-m3gj-h62j/GHSA-757p-m3gj-h62j.json b/advisories/unreviewed/2022/04/GHSA-757p-m3gj-h62j/GHSA-757p-m3gj-h62j.json index 63cf1ff89da..bae46a34105 100644 --- a/advisories/unreviewed/2022/04/GHSA-757p-m3gj-h62j/GHSA-757p-m3gj-h62j.json +++ b/advisories/unreviewed/2022/04/GHSA-757p-m3gj-h62j/GHSA-757p-m3gj-h62j.json @@ -7,12 +7,8 @@ "CVE-2001-0273" ], "details": "pgp4pine Pine/PGP interface version 1.75-6 does not properly check to see if a public key has expired when obtaining the keys via Gnu Privacy Guard (GnuPG), which causes the message to be sent in cleartext.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-757q-3q55-7q58/GHSA-757q-3q55-7q58.json b/advisories/unreviewed/2022/04/GHSA-757q-3q55-7q58/GHSA-757q-3q55-7q58.json index 829f7ad9a6b..fac261ebd7a 100644 --- a/advisories/unreviewed/2022/04/GHSA-757q-3q55-7q58/GHSA-757q-3q55-7q58.json +++ b/advisories/unreviewed/2022/04/GHSA-757q-3q55-7q58/GHSA-757q-3q55-7q58.json @@ -7,12 +7,8 @@ "CVE-2001-0455" ], "details": "Cisco Aironet 340 Series wireless bridge before 8.55 does not properly disable access to the web interface, which allows remote attackers to modify its configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-767p-jcph-vjj3/GHSA-767p-jcph-vjj3.json b/advisories/unreviewed/2022/04/GHSA-767p-jcph-vjj3/GHSA-767p-jcph-vjj3.json index e73a1054b68..36d45d437fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-767p-jcph-vjj3/GHSA-767p-jcph-vjj3.json +++ b/advisories/unreviewed/2022/04/GHSA-767p-jcph-vjj3/GHSA-767p-jcph-vjj3.json @@ -7,12 +7,8 @@ "CVE-2001-0289" ], "details": "Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-77j4-w2xf-j9wq/GHSA-77j4-w2xf-j9wq.json b/advisories/unreviewed/2022/04/GHSA-77j4-w2xf-j9wq/GHSA-77j4-w2xf-j9wq.json index e0e6cdd774d..951ad52b8bb 100644 --- a/advisories/unreviewed/2022/04/GHSA-77j4-w2xf-j9wq/GHSA-77j4-w2xf-j9wq.json +++ b/advisories/unreviewed/2022/04/GHSA-77j4-w2xf-j9wq/GHSA-77j4-w2xf-j9wq.json @@ -7,12 +7,8 @@ "CVE-2001-0355" ], "details": "Novell Groupwise 5.5 (sp1 and sp2) allows a remote user to access arbitrary files via an implementation error in Groupwise system policies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-78qx-2576-5ph4/GHSA-78qx-2576-5ph4.json b/advisories/unreviewed/2022/04/GHSA-78qx-2576-5ph4/GHSA-78qx-2576-5ph4.json index 2b2f02b6f4e..c71cabdda16 100644 --- a/advisories/unreviewed/2022/04/GHSA-78qx-2576-5ph4/GHSA-78qx-2576-5ph4.json +++ b/advisories/unreviewed/2022/04/GHSA-78qx-2576-5ph4/GHSA-78qx-2576-5ph4.json @@ -7,12 +7,8 @@ "CVE-2001-0336" ], "details": "The Microsoft MS00-060 patch for IIS 5.0 and earlier introduces an error which allows attackers to cause a denial of service via a malformed request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7994-78qh-hc57/GHSA-7994-78qh-hc57.json b/advisories/unreviewed/2022/04/GHSA-7994-78qh-hc57/GHSA-7994-78qh-hc57.json index 84c3654ea81..64e67bfad5c 100644 --- a/advisories/unreviewed/2022/04/GHSA-7994-78qh-hc57/GHSA-7994-78qh-hc57.json +++ b/advisories/unreviewed/2022/04/GHSA-7994-78qh-hc57/GHSA-7994-78qh-hc57.json @@ -7,12 +7,8 @@ "CVE-2001-0299" ], "details": "Buffer overflow in Voyager web administration server for Nokia IP440 allows local users to cause a denial of service, and possibly execute arbitrary commands, via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7ccp-769m-hm7c/GHSA-7ccp-769m-hm7c.json b/advisories/unreviewed/2022/04/GHSA-7ccp-769m-hm7c/GHSA-7ccp-769m-hm7c.json index 73eb3319294..66c4010d776 100644 --- a/advisories/unreviewed/2022/04/GHSA-7ccp-769m-hm7c/GHSA-7ccp-769m-hm7c.json +++ b/advisories/unreviewed/2022/04/GHSA-7ccp-769m-hm7c/GHSA-7ccp-769m-hm7c.json @@ -7,12 +7,8 @@ "CVE-2001-0387" ], "details": "Format string vulnerability in hfaxd in HylaFAX before 4.1.b2_2 allows local users to gain privileges via the -q command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7f96-32pr-5cjh/GHSA-7f96-32pr-5cjh.json b/advisories/unreviewed/2022/04/GHSA-7f96-32pr-5cjh/GHSA-7f96-32pr-5cjh.json index ce580fc0f0c..41ca2aa69e9 100644 --- a/advisories/unreviewed/2022/04/GHSA-7f96-32pr-5cjh/GHSA-7f96-32pr-5cjh.json +++ b/advisories/unreviewed/2022/04/GHSA-7f96-32pr-5cjh/GHSA-7f96-32pr-5cjh.json @@ -7,12 +7,8 @@ "CVE-2001-0426" ], "details": "Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7hqf-49cq-v3f3/GHSA-7hqf-49cq-v3f3.json b/advisories/unreviewed/2022/04/GHSA-7hqf-49cq-v3f3/GHSA-7hqf-49cq-v3f3.json index f5b5221d646..86e2859d167 100644 --- a/advisories/unreviewed/2022/04/GHSA-7hqf-49cq-v3f3/GHSA-7hqf-49cq-v3f3.json +++ b/advisories/unreviewed/2022/04/GHSA-7hqf-49cq-v3f3/GHSA-7hqf-49cq-v3f3.json @@ -7,12 +7,8 @@ "CVE-2001-0425" ], "details": "AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7jxf-6m2j-66m8/GHSA-7jxf-6m2j-66m8.json b/advisories/unreviewed/2022/04/GHSA-7jxf-6m2j-66m8/GHSA-7jxf-6m2j-66m8.json index ca35a8d4b88..f923668b1cb 100644 --- a/advisories/unreviewed/2022/04/GHSA-7jxf-6m2j-66m8/GHSA-7jxf-6m2j-66m8.json +++ b/advisories/unreviewed/2022/04/GHSA-7jxf-6m2j-66m8/GHSA-7jxf-6m2j-66m8.json @@ -7,12 +7,8 @@ "CVE-2001-0302" ], "details": "Buffer overflow in tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7qx6-982c-4h2w/GHSA-7qx6-982c-4h2w.json b/advisories/unreviewed/2022/04/GHSA-7qx6-982c-4h2w/GHSA-7qx6-982c-4h2w.json index a030d35f907..7eba47e4c0b 100644 --- a/advisories/unreviewed/2022/04/GHSA-7qx6-982c-4h2w/GHSA-7qx6-982c-4h2w.json +++ b/advisories/unreviewed/2022/04/GHSA-7qx6-982c-4h2w/GHSA-7qx6-982c-4h2w.json @@ -7,12 +7,8 @@ "CVE-2001-0252" ], "details": "iPlanet (formerly Netscape) Enterprise Server 4.1 allows remote attackers to cause a denial of service via a long HTTP GET request that contains many \"/../\" (dot dot) sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7qx9-fr74-8w39/GHSA-7qx9-fr74-8w39.json b/advisories/unreviewed/2022/04/GHSA-7qx9-fr74-8w39/GHSA-7qx9-fr74-8w39.json index 12d00116b10..0bf91e7e323 100644 --- a/advisories/unreviewed/2022/04/GHSA-7qx9-fr74-8w39/GHSA-7qx9-fr74-8w39.json +++ b/advisories/unreviewed/2022/04/GHSA-7qx9-fr74-8w39/GHSA-7qx9-fr74-8w39.json @@ -7,12 +7,8 @@ "CVE-2001-0124" ], "details": "Buffer overflow in exrecover in Solaris 2.6 and earlier possibly allows local users to gain privileges via a long command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7r5h-rj9j-3ch2/GHSA-7r5h-rj9j-3ch2.json b/advisories/unreviewed/2022/04/GHSA-7r5h-rj9j-3ch2/GHSA-7r5h-rj9j-3ch2.json index 128a8430c58..2f7c244b1c9 100644 --- a/advisories/unreviewed/2022/04/GHSA-7r5h-rj9j-3ch2/GHSA-7r5h-rj9j-3ch2.json +++ b/advisories/unreviewed/2022/04/GHSA-7r5h-rj9j-3ch2/GHSA-7r5h-rj9j-3ch2.json @@ -7,12 +7,8 @@ "CVE-2001-0197" ], "details": "Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7rhx-wr6q-grrc/GHSA-7rhx-wr6q-grrc.json b/advisories/unreviewed/2022/04/GHSA-7rhx-wr6q-grrc/GHSA-7rhx-wr6q-grrc.json index eef16462308..f7ff9f62fea 100644 --- a/advisories/unreviewed/2022/04/GHSA-7rhx-wr6q-grrc/GHSA-7rhx-wr6q-grrc.json +++ b/advisories/unreviewed/2022/04/GHSA-7rhx-wr6q-grrc/GHSA-7rhx-wr6q-grrc.json @@ -7,12 +7,8 @@ "CVE-2001-0428" ], "details": "Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via an IP packet with an invalid IP option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7rq7-3vr3-7mmq/GHSA-7rq7-3vr3-7mmq.json b/advisories/unreviewed/2022/04/GHSA-7rq7-3vr3-7mmq/GHSA-7rq7-3vr3-7mmq.json index 3138a8f5065..e8e06cb87d8 100644 --- a/advisories/unreviewed/2022/04/GHSA-7rq7-3vr3-7mmq/GHSA-7rq7-3vr3-7mmq.json +++ b/advisories/unreviewed/2022/04/GHSA-7rq7-3vr3-7mmq/GHSA-7rq7-3vr3-7mmq.json @@ -7,12 +7,8 @@ "CVE-2001-0239" ], "details": "Microsoft Internet Security and Acceleration (ISA) Server 2000 Web Proxy allows remote attackers to cause a denial of service via a long web request with a specific type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7v6f-rwxp-2p3w/GHSA-7v6f-rwxp-2p3w.json b/advisories/unreviewed/2022/04/GHSA-7v6f-rwxp-2p3w/GHSA-7v6f-rwxp-2p3w.json index f5bf1cc3ad2..ce48891312a 100644 --- a/advisories/unreviewed/2022/04/GHSA-7v6f-rwxp-2p3w/GHSA-7v6f-rwxp-2p3w.json +++ b/advisories/unreviewed/2022/04/GHSA-7v6f-rwxp-2p3w/GHSA-7v6f-rwxp-2p3w.json @@ -7,12 +7,8 @@ "CVE-2001-0412" ], "details": "Cisco Content Services (CSS) switch products 11800 and earlier, aka Arrowpoint, allows local users to gain privileges by entering debug mode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7vfp-864w-4grp/GHSA-7vfp-864w-4grp.json b/advisories/unreviewed/2022/04/GHSA-7vfp-864w-4grp/GHSA-7vfp-864w-4grp.json index b510ec9d9e5..71658502d76 100644 --- a/advisories/unreviewed/2022/04/GHSA-7vfp-864w-4grp/GHSA-7vfp-864w-4grp.json +++ b/advisories/unreviewed/2022/04/GHSA-7vfp-864w-4grp/GHSA-7vfp-864w-4grp.json @@ -7,12 +7,8 @@ "CVE-2001-0177" ], "details": "WebMaster ConferenceRoom 1.8.1 allows remote attackers to cause a denial of service via a buddy relationship between the IRC server and a server clone.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7vvv-c5q6-4rvq/GHSA-7vvv-c5q6-4rvq.json b/advisories/unreviewed/2022/04/GHSA-7vvv-c5q6-4rvq/GHSA-7vvv-c5q6-4rvq.json index feb830b8816..86c6e6e9da6 100644 --- a/advisories/unreviewed/2022/04/GHSA-7vvv-c5q6-4rvq/GHSA-7vvv-c5q6-4rvq.json +++ b/advisories/unreviewed/2022/04/GHSA-7vvv-c5q6-4rvq/GHSA-7vvv-c5q6-4rvq.json @@ -7,12 +7,8 @@ "CVE-2001-0167" ], "details": "Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long rfbConnFailed packet with a long reason string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7w2x-4jg9-m554/GHSA-7w2x-4jg9-m554.json b/advisories/unreviewed/2022/04/GHSA-7w2x-4jg9-m554/GHSA-7w2x-4jg9-m554.json index 72cd8d22c20..1541d2f6850 100644 --- a/advisories/unreviewed/2022/04/GHSA-7w2x-4jg9-m554/GHSA-7w2x-4jg9-m554.json +++ b/advisories/unreviewed/2022/04/GHSA-7w2x-4jg9-m554/GHSA-7w2x-4jg9-m554.json @@ -7,12 +7,8 @@ "CVE-2001-0467" ], "details": "Directory traversal vulnerability in RobTex Viking Web server before 1.07-381 allows remote attackers to read arbitrary files via a \\... (modified dot dot) in an HTTP URL request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-7w3v-58f5-vcwg/GHSA-7w3v-58f5-vcwg.json b/advisories/unreviewed/2022/04/GHSA-7w3v-58f5-vcwg/GHSA-7w3v-58f5-vcwg.json index a942934a95a..2a4851d77c5 100644 --- a/advisories/unreviewed/2022/04/GHSA-7w3v-58f5-vcwg/GHSA-7w3v-58f5-vcwg.json +++ b/advisories/unreviewed/2022/04/GHSA-7w3v-58f5-vcwg/GHSA-7w3v-58f5-vcwg.json @@ -7,12 +7,8 @@ "CVE-2001-0216" ], "details": "PALS Library System pals-cgi program allows remote attackers to execute arbitrary commands via shell metacharacters in the documentName parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-82hc-6453-wq2j/GHSA-82hc-6453-wq2j.json b/advisories/unreviewed/2022/04/GHSA-82hc-6453-wq2j/GHSA-82hc-6453-wq2j.json index 2611172aa37..4fd1933acfd 100644 --- a/advisories/unreviewed/2022/04/GHSA-82hc-6453-wq2j/GHSA-82hc-6453-wq2j.json +++ b/advisories/unreviewed/2022/04/GHSA-82hc-6453-wq2j/GHSA-82hc-6453-wq2j.json @@ -7,12 +7,8 @@ "CVE-2001-0181" ], "details": "Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-82pw-8qqc-cfm6/GHSA-82pw-8qqc-cfm6.json b/advisories/unreviewed/2022/04/GHSA-82pw-8qqc-cfm6/GHSA-82pw-8qqc-cfm6.json index 2beb6f4a9df..4aae8968d5e 100644 --- a/advisories/unreviewed/2022/04/GHSA-82pw-8qqc-cfm6/GHSA-82pw-8qqc-cfm6.json +++ b/advisories/unreviewed/2022/04/GHSA-82pw-8qqc-cfm6/GHSA-82pw-8qqc-cfm6.json @@ -7,12 +7,8 @@ "CVE-2001-0312" ], "details": "IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-82qj-m6p5-xrm7/GHSA-82qj-m6p5-xrm7.json b/advisories/unreviewed/2022/04/GHSA-82qj-m6p5-xrm7/GHSA-82qj-m6p5-xrm7.json index 9d359514e24..9271dc874f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-82qj-m6p5-xrm7/GHSA-82qj-m6p5-xrm7.json +++ b/advisories/unreviewed/2022/04/GHSA-82qj-m6p5-xrm7/GHSA-82qj-m6p5-xrm7.json @@ -7,12 +7,8 @@ "CVE-2001-0126" ], "details": "Oracle XSQL servlet 1.0.3.0 and earlier allows remote attackers to execute arbitrary Java code by redirecting the XSQL server to another source via the xml-stylesheet parameter in the xslt stylesheet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8377-ghcg-3gw2/GHSA-8377-ghcg-3gw2.json b/advisories/unreviewed/2022/04/GHSA-8377-ghcg-3gw2/GHSA-8377-ghcg-3gw2.json index 590b1646981..f526359524d 100644 --- a/advisories/unreviewed/2022/04/GHSA-8377-ghcg-3gw2/GHSA-8377-ghcg-3gw2.json +++ b/advisories/unreviewed/2022/04/GHSA-8377-ghcg-3gw2/GHSA-8377-ghcg-3gw2.json @@ -7,12 +7,8 @@ "CVE-2001-0384" ], "details": "ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-84hw-m4f3-jqjx/GHSA-84hw-m4f3-jqjx.json b/advisories/unreviewed/2022/04/GHSA-84hw-m4f3-jqjx/GHSA-84hw-m4f3-jqjx.json index 5d6cc4e7d5e..4f5911ffdb1 100644 --- a/advisories/unreviewed/2022/04/GHSA-84hw-m4f3-jqjx/GHSA-84hw-m4f3-jqjx.json +++ b/advisories/unreviewed/2022/04/GHSA-84hw-m4f3-jqjx/GHSA-84hw-m4f3-jqjx.json @@ -7,12 +7,8 @@ "CVE-2001-0417" ], "details": "Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-85gx-fwrr-6mpx/GHSA-85gx-fwrr-6mpx.json b/advisories/unreviewed/2022/04/GHSA-85gx-fwrr-6mpx/GHSA-85gx-fwrr-6mpx.json index 65604778b7e..b9c439c9c06 100644 --- a/advisories/unreviewed/2022/04/GHSA-85gx-fwrr-6mpx/GHSA-85gx-fwrr-6mpx.json +++ b/advisories/unreviewed/2022/04/GHSA-85gx-fwrr-6mpx/GHSA-85gx-fwrr-6mpx.json @@ -7,12 +7,8 @@ "CVE-2001-0288" ], "details": "Cisco switches and routers running IOS 12.1 and earlier produce predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8768-4fq8-2xfv/GHSA-8768-4fq8-2xfv.json b/advisories/unreviewed/2022/04/GHSA-8768-4fq8-2xfv/GHSA-8768-4fq8-2xfv.json index f9c6d820ef1..845450d55c5 100644 --- a/advisories/unreviewed/2022/04/GHSA-8768-4fq8-2xfv/GHSA-8768-4fq8-2xfv.json +++ b/advisories/unreviewed/2022/04/GHSA-8768-4fq8-2xfv/GHSA-8768-4fq8-2xfv.json @@ -7,12 +7,8 @@ "CVE-2001-0166" ], "details": "Macromedia Shockwave Flash plugin version 8 and earlier allows remote attackers to cause a denial of service via malformed tag length specifiers in a SWF file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-89g7-hm6r-h26p/GHSA-89g7-hm6r-h26p.json b/advisories/unreviewed/2022/04/GHSA-89g7-hm6r-h26p/GHSA-89g7-hm6r-h26p.json index a56bb521ce0..10e26895fd6 100644 --- a/advisories/unreviewed/2022/04/GHSA-89g7-hm6r-h26p/GHSA-89g7-hm6r-h26p.json +++ b/advisories/unreviewed/2022/04/GHSA-89g7-hm6r-h26p/GHSA-89g7-hm6r-h26p.json @@ -7,12 +7,8 @@ "CVE-2001-0212" ], "details": "Directory traversal vulnerability in HIS Auktion 1.62 allows remote attackers to read arbitrary files via a .. (dot dot) in the menue parameter, and possibly execute commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cj5-765m-4mc8/GHSA-8cj5-765m-4mc8.json b/advisories/unreviewed/2022/04/GHSA-8cj5-765m-4mc8/GHSA-8cj5-765m-4mc8.json index 4d7602d8f91..dd86fc504c6 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cj5-765m-4mc8/GHSA-8cj5-765m-4mc8.json +++ b/advisories/unreviewed/2022/04/GHSA-8cj5-765m-4mc8/GHSA-8cj5-765m-4mc8.json @@ -7,12 +7,8 @@ "CVE-2001-0262" ], "details": "Buffer overflow in Netscape SmartDownload 1.3 allows remote attackers (malicious web pages) to execute arbitrary commands via a long URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8cmx-379f-mrff/GHSA-8cmx-379f-mrff.json b/advisories/unreviewed/2022/04/GHSA-8cmx-379f-mrff/GHSA-8cmx-379f-mrff.json index 1770b0c7b5b..b47b914e2fd 100644 --- a/advisories/unreviewed/2022/04/GHSA-8cmx-379f-mrff/GHSA-8cmx-379f-mrff.json +++ b/advisories/unreviewed/2022/04/GHSA-8cmx-379f-mrff/GHSA-8cmx-379f-mrff.json @@ -7,12 +7,8 @@ "CVE-2001-0267" ], "details": "NM debug in HP MPE/iX 6.5 and earlier does not properly handle breakpoints, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8fgr-q68j-xmxj/GHSA-8fgr-q68j-xmxj.json b/advisories/unreviewed/2022/04/GHSA-8fgr-q68j-xmxj/GHSA-8fgr-q68j-xmxj.json index 0192e1ecc84..40c6b8afcca 100644 --- a/advisories/unreviewed/2022/04/GHSA-8fgr-q68j-xmxj/GHSA-8fgr-q68j-xmxj.json +++ b/advisories/unreviewed/2022/04/GHSA-8fgr-q68j-xmxj/GHSA-8fgr-q68j-xmxj.json @@ -7,12 +7,8 @@ "CVE-2001-0303" ], "details": "tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8fjp-x7fp-72f8/GHSA-8fjp-x7fp-72f8.json b/advisories/unreviewed/2022/04/GHSA-8fjp-x7fp-72f8/GHSA-8fjp-x7fp-72f8.json index d1eb994db8a..7b03361ec5b 100644 --- a/advisories/unreviewed/2022/04/GHSA-8fjp-x7fp-72f8/GHSA-8fjp-x7fp-72f8.json +++ b/advisories/unreviewed/2022/04/GHSA-8fjp-x7fp-72f8/GHSA-8fjp-x7fp-72f8.json @@ -7,12 +7,8 @@ "CVE-2001-0421" ], "details": "FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8fvg-54hw-qcm9/GHSA-8fvg-54hw-qcm9.json b/advisories/unreviewed/2022/04/GHSA-8fvg-54hw-qcm9/GHSA-8fvg-54hw-qcm9.json index 63ac6ab5b1f..c16059f61f2 100644 --- a/advisories/unreviewed/2022/04/GHSA-8fvg-54hw-qcm9/GHSA-8fvg-54hw-qcm9.json +++ b/advisories/unreviewed/2022/04/GHSA-8fvg-54hw-qcm9/GHSA-8fvg-54hw-qcm9.json @@ -7,12 +7,8 @@ "CVE-2001-0295" ], "details": "Directory traversal vulnerability in War FTP 1.67.04 allows remote attackers to list directory contents and possibly read files via a \"dir *./../..\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8p7j-pvmf-hg98/GHSA-8p7j-pvmf-hg98.json b/advisories/unreviewed/2022/04/GHSA-8p7j-pvmf-hg98/GHSA-8p7j-pvmf-hg98.json index 1a9d5b6dd34..63f9951dd11 100644 --- a/advisories/unreviewed/2022/04/GHSA-8p7j-pvmf-hg98/GHSA-8p7j-pvmf-hg98.json +++ b/advisories/unreviewed/2022/04/GHSA-8p7j-pvmf-hg98/GHSA-8p7j-pvmf-hg98.json @@ -7,12 +7,8 @@ "CVE-2001-0127" ], "details": "Buffer overflow in Olivier Debon Flash plugin (not the Macromedia plugin) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long DefineSound tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8rjr-96wc-j9h5/GHSA-8rjr-96wc-j9h5.json b/advisories/unreviewed/2022/04/GHSA-8rjr-96wc-j9h5/GHSA-8rjr-96wc-j9h5.json index cc6ea2b126d..92a1341f653 100644 --- a/advisories/unreviewed/2022/04/GHSA-8rjr-96wc-j9h5/GHSA-8rjr-96wc-j9h5.json +++ b/advisories/unreviewed/2022/04/GHSA-8rjr-96wc-j9h5/GHSA-8rjr-96wc-j9h5.json @@ -7,12 +7,8 @@ "CVE-2001-0279" ], "details": "Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8v2v-3g3x-fvg3/GHSA-8v2v-3g3x-fvg3.json b/advisories/unreviewed/2022/04/GHSA-8v2v-3g3x-fvg3/GHSA-8v2v-3g3x-fvg3.json index a0295f77bc4..45af31074e1 100644 --- a/advisories/unreviewed/2022/04/GHSA-8v2v-3g3x-fvg3/GHSA-8v2v-3g3x-fvg3.json +++ b/advisories/unreviewed/2022/04/GHSA-8v2v-3g3x-fvg3/GHSA-8v2v-3g3x-fvg3.json @@ -7,12 +7,8 @@ "CVE-2001-0138" ], "details": "privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8wfc-6m4r-hvmp/GHSA-8wfc-6m4r-hvmp.json b/advisories/unreviewed/2022/04/GHSA-8wfc-6m4r-hvmp/GHSA-8wfc-6m4r-hvmp.json index 7d591280973..ae2d00c038d 100644 --- a/advisories/unreviewed/2022/04/GHSA-8wfc-6m4r-hvmp/GHSA-8wfc-6m4r-hvmp.json +++ b/advisories/unreviewed/2022/04/GHSA-8wfc-6m4r-hvmp/GHSA-8wfc-6m4r-hvmp.json @@ -7,12 +7,8 @@ "CVE-2001-0439" ], "details": "licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8wxx-5xj3-7grr/GHSA-8wxx-5xj3-7grr.json b/advisories/unreviewed/2022/04/GHSA-8wxx-5xj3-7grr/GHSA-8wxx-5xj3-7grr.json index 60175720ea9..cb3f55a68fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-8wxx-5xj3-7grr/GHSA-8wxx-5xj3-7grr.json +++ b/advisories/unreviewed/2022/04/GHSA-8wxx-5xj3-7grr/GHSA-8wxx-5xj3-7grr.json @@ -7,12 +7,8 @@ "CVE-2001-0472" ], "details": "Hursley Software Laboratories Consumer Transaction Framework (HSLCTF) HTTP object allows remote attackers to cause a denial of service (crash) via an extremely long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8x55-jj29-5rqp/GHSA-8x55-jj29-5rqp.json b/advisories/unreviewed/2022/04/GHSA-8x55-jj29-5rqp/GHSA-8x55-jj29-5rqp.json index b84c34da5cf..7bd51771b52 100644 --- a/advisories/unreviewed/2022/04/GHSA-8x55-jj29-5rqp/GHSA-8x55-jj29-5rqp.json +++ b/advisories/unreviewed/2022/04/GHSA-8x55-jj29-5rqp/GHSA-8x55-jj29-5rqp.json @@ -7,12 +7,8 @@ "CVE-2001-0309" ], "details": "inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-8xw9-37wm-wvjw/GHSA-8xw9-37wm-wvjw.json b/advisories/unreviewed/2022/04/GHSA-8xw9-37wm-wvjw/GHSA-8xw9-37wm-wvjw.json index 50b6ef855c2..c8da7db9963 100644 --- a/advisories/unreviewed/2022/04/GHSA-8xw9-37wm-wvjw/GHSA-8xw9-37wm-wvjw.json +++ b/advisories/unreviewed/2022/04/GHSA-8xw9-37wm-wvjw/GHSA-8xw9-37wm-wvjw.json @@ -7,12 +7,8 @@ "CVE-2001-0324" ], "details": "Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9344-74cj-7q6v/GHSA-9344-74cj-7q6v.json b/advisories/unreviewed/2022/04/GHSA-9344-74cj-7q6v/GHSA-9344-74cj-7q6v.json index 644df25058f..372bd47ddfe 100644 --- a/advisories/unreviewed/2022/04/GHSA-9344-74cj-7q6v/GHSA-9344-74cj-7q6v.json +++ b/advisories/unreviewed/2022/04/GHSA-9344-74cj-7q6v/GHSA-9344-74cj-7q6v.json @@ -7,12 +7,8 @@ "CVE-2001-0206" ], "details": "Directory traversal vulnerability in Soft Lite ServerWorx 3.00 allows remote attackers to read arbitrary files by inserting a .. (dot dot) or ... into the requested pathname of an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9522-c73r-qxp5/GHSA-9522-c73r-qxp5.json b/advisories/unreviewed/2022/04/GHSA-9522-c73r-qxp5/GHSA-9522-c73r-qxp5.json index f3d11722f3e..107668bfb45 100644 --- a/advisories/unreviewed/2022/04/GHSA-9522-c73r-qxp5/GHSA-9522-c73r-qxp5.json +++ b/advisories/unreviewed/2022/04/GHSA-9522-c73r-qxp5/GHSA-9522-c73r-qxp5.json @@ -7,12 +7,8 @@ "CVE-2001-0372" ], "details": "Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-96fj-94r5-8c5r/GHSA-96fj-94r5-8c5r.json b/advisories/unreviewed/2022/04/GHSA-96fj-94r5-8c5r/GHSA-96fj-94r5-8c5r.json index 8724bc97c6e..30733b051c4 100644 --- a/advisories/unreviewed/2022/04/GHSA-96fj-94r5-8c5r/GHSA-96fj-94r5-8c5r.json +++ b/advisories/unreviewed/2022/04/GHSA-96fj-94r5-8c5r/GHSA-96fj-94r5-8c5r.json @@ -7,12 +7,8 @@ "CVE-2001-0389" ], "details": "IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to determine the real path of the server by directly calling the macro.d2w macro with a NOEXISTINGHTMLBLOCK argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-97pw-3crv-m6c8/GHSA-97pw-3crv-m6c8.json b/advisories/unreviewed/2022/04/GHSA-97pw-3crv-m6c8/GHSA-97pw-3crv-m6c8.json index bb46d7f8ee2..b5b448d23a0 100644 --- a/advisories/unreviewed/2022/04/GHSA-97pw-3crv-m6c8/GHSA-97pw-3crv-m6c8.json +++ b/advisories/unreviewed/2022/04/GHSA-97pw-3crv-m6c8/GHSA-97pw-3crv-m6c8.json @@ -7,12 +7,8 @@ "CVE-2001-0146" ], "details": "IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL's.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-984j-c7w7-4fvp/GHSA-984j-c7w7-4fvp.json b/advisories/unreviewed/2022/04/GHSA-984j-c7w7-4fvp/GHSA-984j-c7w7-4fvp.json index 772300f1634..78306130166 100644 --- a/advisories/unreviewed/2022/04/GHSA-984j-c7w7-4fvp/GHSA-984j-c7w7-4fvp.json +++ b/advisories/unreviewed/2022/04/GHSA-984j-c7w7-4fvp/GHSA-984j-c7w7-4fvp.json @@ -7,12 +7,8 @@ "CVE-2001-0454" ], "details": "Directory traversal vulnerability in SlimServe HTTPd 1.1a allows remote attackers to read arbitrary files via a ... (modified dot dot) in the HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9968-x288-6qqr/GHSA-9968-x288-6qqr.json b/advisories/unreviewed/2022/04/GHSA-9968-x288-6qqr/GHSA-9968-x288-6qqr.json index ead591a13d0..9c770e6b2fe 100644 --- a/advisories/unreviewed/2022/04/GHSA-9968-x288-6qqr/GHSA-9968-x288-6qqr.json +++ b/advisories/unreviewed/2022/04/GHSA-9968-x288-6qqr/GHSA-9968-x288-6qqr.json @@ -7,12 +7,8 @@ "CVE-2001-0436" ], "details": "dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a .. (dot dot) in the AZ parameter to reference the program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9c63-fc87-mfvj/GHSA-9c63-fc87-mfvj.json b/advisories/unreviewed/2022/04/GHSA-9c63-fc87-mfvj/GHSA-9c63-fc87-mfvj.json index ef06bbbdf6f..bfe0aa4a94f 100644 --- a/advisories/unreviewed/2022/04/GHSA-9c63-fc87-mfvj/GHSA-9c63-fc87-mfvj.json +++ b/advisories/unreviewed/2022/04/GHSA-9c63-fc87-mfvj/GHSA-9c63-fc87-mfvj.json @@ -7,12 +7,8 @@ "CVE-2001-0134" ], "details": "Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9cwj-6gfj-h53r/GHSA-9cwj-6gfj-h53r.json b/advisories/unreviewed/2022/04/GHSA-9cwj-6gfj-h53r/GHSA-9cwj-6gfj-h53r.json index 7497792455c..16143daf0b0 100644 --- a/advisories/unreviewed/2022/04/GHSA-9cwj-6gfj-h53r/GHSA-9cwj-6gfj-h53r.json +++ b/advisories/unreviewed/2022/04/GHSA-9cwj-6gfj-h53r/GHSA-9cwj-6gfj-h53r.json @@ -7,12 +7,8 @@ "CVE-2001-0319" ], "details": "orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9fx5-wg4x-3gxx/GHSA-9fx5-wg4x-3gxx.json b/advisories/unreviewed/2022/04/GHSA-9fx5-wg4x-3gxx/GHSA-9fx5-wg4x-3gxx.json index d4962465345..d997f03b7b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-9fx5-wg4x-3gxx/GHSA-9fx5-wg4x-3gxx.json +++ b/advisories/unreviewed/2022/04/GHSA-9fx5-wg4x-3gxx/GHSA-9fx5-wg4x-3gxx.json @@ -7,12 +7,8 @@ "CVE-2001-0385" ], "details": "GoAhead webserver 2.1 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9gwq-w6mg-j59q/GHSA-9gwq-w6mg-j59q.json b/advisories/unreviewed/2022/04/GHSA-9gwq-w6mg-j59q/GHSA-9gwq-w6mg-j59q.json index d0af8331d73..5cbd801c220 100644 --- a/advisories/unreviewed/2022/04/GHSA-9gwq-w6mg-j59q/GHSA-9gwq-w6mg-j59q.json +++ b/advisories/unreviewed/2022/04/GHSA-9gwq-w6mg-j59q/GHSA-9gwq-w6mg-j59q.json @@ -7,12 +7,8 @@ "CVE-2001-0238" ], "details": "Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9h27-q32v-cjxq/GHSA-9h27-q32v-cjxq.json b/advisories/unreviewed/2022/04/GHSA-9h27-q32v-cjxq/GHSA-9h27-q32v-cjxq.json index 7ef4c805eb3..022e6d2a78d 100644 --- a/advisories/unreviewed/2022/04/GHSA-9h27-q32v-cjxq/GHSA-9h27-q32v-cjxq.json +++ b/advisories/unreviewed/2022/04/GHSA-9h27-q32v-cjxq/GHSA-9h27-q32v-cjxq.json @@ -7,12 +7,8 @@ "CVE-2001-0367" ], "details": "Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a remote attacker to create a denial of service via HTTP URL requests containing a large number of % characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9jfp-x3rx-xj5v/GHSA-9jfp-x3rx-xj5v.json b/advisories/unreviewed/2022/04/GHSA-9jfp-x3rx-xj5v/GHSA-9jfp-x3rx-xj5v.json index 334a0c856c9..da0f91a338e 100644 --- a/advisories/unreviewed/2022/04/GHSA-9jfp-x3rx-xj5v/GHSA-9jfp-x3rx-xj5v.json +++ b/advisories/unreviewed/2022/04/GHSA-9jfp-x3rx-xj5v/GHSA-9jfp-x3rx-xj5v.json @@ -7,12 +7,8 @@ "CVE-2001-0434" ], "details": "The LogDataListToFile ActiveX function used in (1) Knowledge Center and (2) Back web components of Compaq Presario computers allows remote attackers to modify arbitrary files and cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9mp9-fv3w-72p6/GHSA-9mp9-fv3w-72p6.json b/advisories/unreviewed/2022/04/GHSA-9mp9-fv3w-72p6/GHSA-9mp9-fv3w-72p6.json index 2af7f17eb3f..c2cda6675c7 100644 --- a/advisories/unreviewed/2022/04/GHSA-9mp9-fv3w-72p6/GHSA-9mp9-fv3w-72p6.json +++ b/advisories/unreviewed/2022/04/GHSA-9mp9-fv3w-72p6/GHSA-9mp9-fv3w-72p6.json @@ -7,12 +7,8 @@ "CVE-2001-0244" ], "details": "Buffer overflow in Microsoft Index Server 2.0 allows remote attackers to execute arbitrary commands via a long search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9r64-r95g-x9qc/GHSA-9r64-r95g-x9qc.json b/advisories/unreviewed/2022/04/GHSA-9r64-r95g-x9qc/GHSA-9r64-r95g-x9qc.json index ae2012f8657..07142102274 100644 --- a/advisories/unreviewed/2022/04/GHSA-9r64-r95g-x9qc/GHSA-9r64-r95g-x9qc.json +++ b/advisories/unreviewed/2022/04/GHSA-9r64-r95g-x9qc/GHSA-9r64-r95g-x9qc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-9wjp-g974-8q25/GHSA-9wjp-g974-8q25.json b/advisories/unreviewed/2022/04/GHSA-9wjp-g974-8q25/GHSA-9wjp-g974-8q25.json index d8fc9a97a86..638e180b7e4 100644 --- a/advisories/unreviewed/2022/04/GHSA-9wjp-g974-8q25/GHSA-9wjp-g974-8q25.json +++ b/advisories/unreviewed/2022/04/GHSA-9wjp-g974-8q25/GHSA-9wjp-g974-8q25.json @@ -7,12 +7,8 @@ "CVE-2001-0335" ], "details": "FTP service in IIS 5.0 and earlier allows remote attackers to enumerate Guest accounts in trusted domains by preceding the username with a special sequence of characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9xm5-646v-mfcw/GHSA-9xm5-646v-mfcw.json b/advisories/unreviewed/2022/04/GHSA-9xm5-646v-mfcw/GHSA-9xm5-646v-mfcw.json index 6f8fcf79757..8c7ab1c85a2 100644 --- a/advisories/unreviewed/2022/04/GHSA-9xm5-646v-mfcw/GHSA-9xm5-646v-mfcw.json +++ b/advisories/unreviewed/2022/04/GHSA-9xm5-646v-mfcw/GHSA-9xm5-646v-mfcw.json @@ -7,12 +7,8 @@ "CVE-2001-0263" ], "details": "Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows attackers to read file attributes outside of the web root via the (1) SIZE and (2) MDTM commands when the \"show relative paths\" option is not enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-9xw2-c3qj-x8m5/GHSA-9xw2-c3qj-x8m5.json b/advisories/unreviewed/2022/04/GHSA-9xw2-c3qj-x8m5/GHSA-9xw2-c3qj-x8m5.json index beb7fccc669..606d156105c 100644 --- a/advisories/unreviewed/2022/04/GHSA-9xw2-c3qj-x8m5/GHSA-9xw2-c3qj-x8m5.json +++ b/advisories/unreviewed/2022/04/GHSA-9xw2-c3qj-x8m5/GHSA-9xw2-c3qj-x8m5.json @@ -7,12 +7,8 @@ "CVE-2001-0234" ], "details": "NewsDaemon before 0.21b allows remote attackers to execute arbitrary SQL queries and gain privileges via a malformed user_username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c2rq-2x5w-5prm/GHSA-c2rq-2x5w-5prm.json b/advisories/unreviewed/2022/04/GHSA-c2rq-2x5w-5prm/GHSA-c2rq-2x5w-5prm.json index f6e4f3149e2..a1e77f5c675 100644 --- a/advisories/unreviewed/2022/04/GHSA-c2rq-2x5w-5prm/GHSA-c2rq-2x5w-5prm.json +++ b/advisories/unreviewed/2022/04/GHSA-c2rq-2x5w-5prm/GHSA-c2rq-2x5w-5prm.json @@ -7,12 +7,8 @@ "CVE-2001-0383" ], "details": "banners.php in PHP-Nuke 4.4 and earlier allows remote attackers to modify banner ad URLs by directly calling the Change operation, which does not require authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c3f7-7pc7-x4rf/GHSA-c3f7-7pc7-x4rf.json b/advisories/unreviewed/2022/04/GHSA-c3f7-7pc7-x4rf/GHSA-c3f7-7pc7-x4rf.json index 44ac6cddb50..1f7ac6b4d8d 100644 --- a/advisories/unreviewed/2022/04/GHSA-c3f7-7pc7-x4rf/GHSA-c3f7-7pc7-x4rf.json +++ b/advisories/unreviewed/2022/04/GHSA-c3f7-7pc7-x4rf/GHSA-c3f7-7pc7-x4rf.json @@ -7,12 +7,8 @@ "CVE-2001-0438" ], "details": "Preview version of Timbuktu for Mac OS X allows local users to modify System Preferences without logging in via the About Timbuktu menu.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c3q6-3gpr-gpg4/GHSA-c3q6-3gpr-gpg4.json b/advisories/unreviewed/2022/04/GHSA-c3q6-3gpr-gpg4/GHSA-c3q6-3gpr-gpg4.json index 3b688aca487..80e4e12cd7d 100644 --- a/advisories/unreviewed/2022/04/GHSA-c3q6-3gpr-gpg4/GHSA-c3q6-3gpr-gpg4.json +++ b/advisories/unreviewed/2022/04/GHSA-c3q6-3gpr-gpg4/GHSA-c3q6-3gpr-gpg4.json @@ -7,12 +7,8 @@ "CVE-2001-0185" ], "details": "Netopia R9100 router version 4.6 allows authenticated users to cause a denial of service by using the router's telnet program to connect to the router's IP address, which causes a crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c4rh-23xg-8fmx/GHSA-c4rh-23xg-8fmx.json b/advisories/unreviewed/2022/04/GHSA-c4rh-23xg-8fmx/GHSA-c4rh-23xg-8fmx.json index 53cfabdb04c..f2e250cf735 100644 --- a/advisories/unreviewed/2022/04/GHSA-c4rh-23xg-8fmx/GHSA-c4rh-23xg-8fmx.json +++ b/advisories/unreviewed/2022/04/GHSA-c4rh-23xg-8fmx/GHSA-c4rh-23xg-8fmx.json @@ -7,12 +7,8 @@ "CVE-2001-0449" ], "details": "Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail command line option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c5qh-2j3r-79wm/GHSA-c5qh-2j3r-79wm.json b/advisories/unreviewed/2022/04/GHSA-c5qh-2j3r-79wm/GHSA-c5qh-2j3r-79wm.json index 0412ee1eda5..c2d159b8d53 100644 --- a/advisories/unreviewed/2022/04/GHSA-c5qh-2j3r-79wm/GHSA-c5qh-2j3r-79wm.json +++ b/advisories/unreviewed/2022/04/GHSA-c5qh-2j3r-79wm/GHSA-c5qh-2j3r-79wm.json @@ -7,12 +7,8 @@ "CVE-2001-0326" ], "details": "Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <> FilePermission.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c62q-f4mx-4fjw/GHSA-c62q-f4mx-4fjw.json b/advisories/unreviewed/2022/04/GHSA-c62q-f4mx-4fjw/GHSA-c62q-f4mx-4fjw.json index e18b80fe0b7..c750cc83958 100644 --- a/advisories/unreviewed/2022/04/GHSA-c62q-f4mx-4fjw/GHSA-c62q-f4mx-4fjw.json +++ b/advisories/unreviewed/2022/04/GHSA-c62q-f4mx-4fjw/GHSA-c62q-f4mx-4fjw.json @@ -7,12 +7,8 @@ "CVE-2001-0315" ], "details": "The locking feature in mIRC 5.7 allows local users to bypass the password mechanism by modifying the LockOptions registry key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c947-r3rw-whg9/GHSA-c947-r3rw-whg9.json b/advisories/unreviewed/2022/04/GHSA-c947-r3rw-whg9/GHSA-c947-r3rw-whg9.json index 49496fddab4..631dc7cd6db 100644 --- a/advisories/unreviewed/2022/04/GHSA-c947-r3rw-whg9/GHSA-c947-r3rw-whg9.json +++ b/advisories/unreviewed/2022/04/GHSA-c947-r3rw-whg9/GHSA-c947-r3rw-whg9.json @@ -7,12 +7,8 @@ "CVE-2001-0369" ], "details": "Buffer overflow in lpsched on DGUX version R4.20MU06 and MU02 allows a local attacker to obtain root access via a long command line argument (non-existent printer name).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c99r-9mvw-x49h/GHSA-c99r-9mvw-x49h.json b/advisories/unreviewed/2022/04/GHSA-c99r-9mvw-x49h/GHSA-c99r-9mvw-x49h.json index 8994bab7f39..fcbe719c8ae 100644 --- a/advisories/unreviewed/2022/04/GHSA-c99r-9mvw-x49h/GHSA-c99r-9mvw-x49h.json +++ b/advisories/unreviewed/2022/04/GHSA-c99r-9mvw-x49h/GHSA-c99r-9mvw-x49h.json @@ -7,12 +7,8 @@ "CVE-2001-0282" ], "details": "SEDUM 2.1 HTTP server allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c9jf-c8q5-2f96/GHSA-c9jf-c8q5-2f96.json b/advisories/unreviewed/2022/04/GHSA-c9jf-c8q5-2f96/GHSA-c9jf-c8q5-2f96.json index 22324654f41..6729ba3f393 100644 --- a/advisories/unreviewed/2022/04/GHSA-c9jf-c8q5-2f96/GHSA-c9jf-c8q5-2f96.json +++ b/advisories/unreviewed/2022/04/GHSA-c9jf-c8q5-2f96/GHSA-c9jf-c8q5-2f96.json @@ -7,12 +7,8 @@ "CVE-2001-0291" ], "details": "Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-c9q2-mj6h-fm6r/GHSA-c9q2-mj6h-fm6r.json b/advisories/unreviewed/2022/04/GHSA-c9q2-mj6h-fm6r/GHSA-c9q2-mj6h-fm6r.json index 0c1fea93857..c57444aa981 100644 --- a/advisories/unreviewed/2022/04/GHSA-c9q2-mj6h-fm6r/GHSA-c9q2-mj6h-fm6r.json +++ b/advisories/unreviewed/2022/04/GHSA-c9q2-mj6h-fm6r/GHSA-c9q2-mj6h-fm6r.json @@ -7,12 +7,8 @@ "CVE-2001-0345" ], "details": "Microsoft Windows 2000 telnet service allows attackers to prevent idle Telnet sessions from timing out, causing a denial of service by creating a large number of idle sessions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cc7h-p955-52fq/GHSA-cc7h-p955-52fq.json b/advisories/unreviewed/2022/04/GHSA-cc7h-p955-52fq/GHSA-cc7h-p955-52fq.json index 82e11027e56..275a80b7a47 100644 --- a/advisories/unreviewed/2022/04/GHSA-cc7h-p955-52fq/GHSA-cc7h-p955-52fq.json +++ b/advisories/unreviewed/2022/04/GHSA-cc7h-p955-52fq/GHSA-cc7h-p955-52fq.json @@ -7,12 +7,8 @@ "CVE-2001-0180" ], "details": "Lars Ellingsen guestserver.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the \"email\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cfgm-pj74-2r73/GHSA-cfgm-pj74-2r73.json b/advisories/unreviewed/2022/04/GHSA-cfgm-pj74-2r73/GHSA-cfgm-pj74-2r73.json index fa3d7d369a5..83f4ab430ad 100644 --- a/advisories/unreviewed/2022/04/GHSA-cfgm-pj74-2r73/GHSA-cfgm-pj74-2r73.json +++ b/advisories/unreviewed/2022/04/GHSA-cfgm-pj74-2r73/GHSA-cfgm-pj74-2r73.json @@ -7,12 +7,8 @@ "CVE-2001-0190" ], "details": "Buffer overflow in /usr/bin/cu in Solaris 2.8 and earlier, and possibly other operating systems, allows local users to gain privileges by executing cu with a long program name (arg0).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cmw7-9mj8-jr3r/GHSA-cmw7-9mj8-jr3r.json b/advisories/unreviewed/2022/04/GHSA-cmw7-9mj8-jr3r/GHSA-cmw7-9mj8-jr3r.json index 86623743908..4d493eec6a8 100644 --- a/advisories/unreviewed/2022/04/GHSA-cmw7-9mj8-jr3r/GHSA-cmw7-9mj8-jr3r.json +++ b/advisories/unreviewed/2022/04/GHSA-cmw7-9mj8-jr3r/GHSA-cmw7-9mj8-jr3r.json @@ -7,12 +7,8 @@ "CVE-2001-0194" ], "details": "Buffer overflow in httpGets function in CUPS 1.1.5 allows remote attackers to execute arbitrary commands via a long input line.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cqff-92rc-j5rc/GHSA-cqff-92rc-j5rc.json b/advisories/unreviewed/2022/04/GHSA-cqff-92rc-j5rc/GHSA-cqff-92rc-j5rc.json index 7d2407744a1..a40f93e3e8a 100644 --- a/advisories/unreviewed/2022/04/GHSA-cqff-92rc-j5rc/GHSA-cqff-92rc-j5rc.json +++ b/advisories/unreviewed/2022/04/GHSA-cqff-92rc-j5rc/GHSA-cqff-92rc-j5rc.json @@ -7,12 +7,8 @@ "CVE-2001-0171" ], "details": "Buffer overflow in SlimServe HTTPd 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cqfr-4gw6-468j/GHSA-cqfr-4gw6-468j.json b/advisories/unreviewed/2022/04/GHSA-cqfr-4gw6-468j/GHSA-cqfr-4gw6-468j.json index aec33bfaf04..3750c4e795d 100644 --- a/advisories/unreviewed/2022/04/GHSA-cqfr-4gw6-468j/GHSA-cqfr-4gw6-468j.json +++ b/advisories/unreviewed/2022/04/GHSA-cqfr-4gw6-468j/GHSA-cqfr-4gw6-468j.json @@ -7,12 +7,8 @@ "CVE-2001-0406" ], "details": "Samba before 2.2.0 allows local attackers to overwrite arbitrary files via a symlink attack using (1) a printer queue query, (2) the more command in smbclient, or (3) the mput command in smbclient.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-crr7-h677-x96c/GHSA-crr7-h677-x96c.json b/advisories/unreviewed/2022/04/GHSA-crr7-h677-x96c/GHSA-crr7-h677-x96c.json index f6196e9ebfb..d5c55365ff4 100644 --- a/advisories/unreviewed/2022/04/GHSA-crr7-h677-x96c/GHSA-crr7-h677-x96c.json +++ b/advisories/unreviewed/2022/04/GHSA-crr7-h677-x96c/GHSA-crr7-h677-x96c.json @@ -7,12 +7,8 @@ "CVE-2001-0152" ], "details": "The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cv5v-5chv-qf85/GHSA-cv5v-5chv-qf85.json b/advisories/unreviewed/2022/04/GHSA-cv5v-5chv-qf85/GHSA-cv5v-5chv-qf85.json index d4513b22e55..619bc6bbf2f 100644 --- a/advisories/unreviewed/2022/04/GHSA-cv5v-5chv-qf85/GHSA-cv5v-5chv-qf85.json +++ b/advisories/unreviewed/2022/04/GHSA-cv5v-5chv-qf85/GHSA-cv5v-5chv-qf85.json @@ -7,12 +7,8 @@ "CVE-2001-0198" ], "details": "Buffer overflow in QuickTime Player plugin 4.1.2 (Japanese) allows remote attackers to execute arbitrary commands via a long HREF parameter in an EMBED tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-cww6-6g7r-6rr8/GHSA-cww6-6g7r-6rr8.json b/advisories/unreviewed/2022/04/GHSA-cww6-6g7r-6rr8/GHSA-cww6-6g7r-6rr8.json index 88c2c210453..47a0c03ef6d 100644 --- a/advisories/unreviewed/2022/04/GHSA-cww6-6g7r-6rr8/GHSA-cww6-6g7r-6rr8.json +++ b/advisories/unreviewed/2022/04/GHSA-cww6-6g7r-6rr8/GHSA-cww6-6g7r-6rr8.json @@ -7,12 +7,8 @@ "CVE-2001-0354" ], "details": "TheNet CheckBO 1.56 allows remote attackers to cause a denial of service via a flood of characters to the TCP ports which it is listening on.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f57r-p9qq-cc4q/GHSA-f57r-p9qq-cc4q.json b/advisories/unreviewed/2022/04/GHSA-f57r-p9qq-cc4q/GHSA-f57r-p9qq-cc4q.json index 36e619efc44..f531c6481be 100644 --- a/advisories/unreviewed/2022/04/GHSA-f57r-p9qq-cc4q/GHSA-f57r-p9qq-cc4q.json +++ b/advisories/unreviewed/2022/04/GHSA-f57r-p9qq-cc4q/GHSA-f57r-p9qq-cc4q.json @@ -7,12 +7,8 @@ "CVE-2001-0400" ], "details": "nph-maillist.pl allows remote attackers to execute arbitrary commands via shell metacharacters (\"`\") in the email address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f694-qg8r-xm48/GHSA-f694-qg8r-xm48.json b/advisories/unreviewed/2022/04/GHSA-f694-qg8r-xm48/GHSA-f694-qg8r-xm48.json index f20f60aa912..9a725a0dd89 100644 --- a/advisories/unreviewed/2022/04/GHSA-f694-qg8r-xm48/GHSA-f694-qg8r-xm48.json +++ b/advisories/unreviewed/2022/04/GHSA-f694-qg8r-xm48/GHSA-f694-qg8r-xm48.json @@ -7,12 +7,8 @@ "CVE-2001-0379" ], "details": "Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f6mq-j2g6-pjcm/GHSA-f6mq-j2g6-pjcm.json b/advisories/unreviewed/2022/04/GHSA-f6mq-j2g6-pjcm/GHSA-f6mq-j2g6-pjcm.json index a5b78b99e52..4fdd87064d6 100644 --- a/advisories/unreviewed/2022/04/GHSA-f6mq-j2g6-pjcm/GHSA-f6mq-j2g6-pjcm.json +++ b/advisories/unreviewed/2022/04/GHSA-f6mq-j2g6-pjcm/GHSA-f6mq-j2g6-pjcm.json @@ -7,12 +7,8 @@ "CVE-2001-0231" ], "details": "Directory traversal vulnerability in newsdesk.cgi in News Desk 1.2 allows remote attackers to read arbitrary files via a .. in the \"t\" parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f7qh-vmp7-6h75/GHSA-f7qh-vmp7-6h75.json b/advisories/unreviewed/2022/04/GHSA-f7qh-vmp7-6h75/GHSA-f7qh-vmp7-6h75.json index c0e9257a412..49c2e9d9110 100644 --- a/advisories/unreviewed/2022/04/GHSA-f7qh-vmp7-6h75/GHSA-f7qh-vmp7-6h75.json +++ b/advisories/unreviewed/2022/04/GHSA-f7qh-vmp7-6h75/GHSA-f7qh-vmp7-6h75.json @@ -7,12 +7,8 @@ "CVE-2001-0176" ], "details": "The setuid doroot program in Voyant Sonata 3.x executes arbitrary command line arguments, which allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f8m2-7mj3-hrjv/GHSA-f8m2-7mj3-hrjv.json b/advisories/unreviewed/2022/04/GHSA-f8m2-7mj3-hrjv/GHSA-f8m2-7mj3-hrjv.json index 9728a964f56..bd5b0c69869 100644 --- a/advisories/unreviewed/2022/04/GHSA-f8m2-7mj3-hrjv/GHSA-f8m2-7mj3-hrjv.json +++ b/advisories/unreviewed/2022/04/GHSA-f8m2-7mj3-hrjv/GHSA-f8m2-7mj3-hrjv.json @@ -7,12 +7,8 @@ "CVE-2001-0404" ], "details": "Directory traversal vulnerability in JavaServer Web Dev Kit (JSWDK) 1.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP request to the WEB-INF directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-f9mf-vhr2-gvqj/GHSA-f9mf-vhr2-gvqj.json b/advisories/unreviewed/2022/04/GHSA-f9mf-vhr2-gvqj/GHSA-f9mf-vhr2-gvqj.json index 250d72bfaa7..87936754a43 100644 --- a/advisories/unreviewed/2022/04/GHSA-f9mf-vhr2-gvqj/GHSA-f9mf-vhr2-gvqj.json +++ b/advisories/unreviewed/2022/04/GHSA-f9mf-vhr2-gvqj/GHSA-f9mf-vhr2-gvqj.json @@ -7,12 +7,8 @@ "CVE-2001-0451" ], "details": "INDEXU 2.0 beta and earlier allows remote attackers to bypass authentication and gain privileges by setting the cookie_admin_authenticated cookie value to 1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fcq3-98mc-gqw6/GHSA-fcq3-98mc-gqw6.json b/advisories/unreviewed/2022/04/GHSA-fcq3-98mc-gqw6/GHSA-fcq3-98mc-gqw6.json index aa84319734e..9df9ed17d0d 100644 --- a/advisories/unreviewed/2022/04/GHSA-fcq3-98mc-gqw6/GHSA-fcq3-98mc-gqw6.json +++ b/advisories/unreviewed/2022/04/GHSA-fcq3-98mc-gqw6/GHSA-fcq3-98mc-gqw6.json @@ -7,12 +7,8 @@ "CVE-2001-0397" ], "details": "Buffer overflow in Silent Runner Collector (SRC) 1.6.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long SMTP HELO command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fhpm-fc48-2hx6/GHSA-fhpm-fc48-2hx6.json b/advisories/unreviewed/2022/04/GHSA-fhpm-fc48-2hx6/GHSA-fhpm-fc48-2hx6.json index 72961459ab3..255e3f90050 100644 --- a/advisories/unreviewed/2022/04/GHSA-fhpm-fc48-2hx6/GHSA-fhpm-fc48-2hx6.json +++ b/advisories/unreviewed/2022/04/GHSA-fhpm-fc48-2hx6/GHSA-fhpm-fc48-2hx6.json @@ -7,12 +7,8 @@ "CVE-2001-0178" ], "details": "kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fjrf-xfvw-v4r3/GHSA-fjrf-xfvw-v4r3.json b/advisories/unreviewed/2022/04/GHSA-fjrf-xfvw-v4r3/GHSA-fjrf-xfvw-v4r3.json index 79e6d877a2d..3b30c874832 100644 --- a/advisories/unreviewed/2022/04/GHSA-fjrf-xfvw-v4r3/GHSA-fjrf-xfvw-v4r3.json +++ b/advisories/unreviewed/2022/04/GHSA-fjrf-xfvw-v4r3/GHSA-fjrf-xfvw-v4r3.json @@ -7,12 +7,8 @@ "CVE-2001-0284" ], "details": "Buffer overflow in IPSEC authentication mechanism for OpenBSD 2.8 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a malformed Authentication header (AH) IPv4 option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fm3g-qc6p-8vwh/GHSA-fm3g-qc6p-8vwh.json b/advisories/unreviewed/2022/04/GHSA-fm3g-qc6p-8vwh/GHSA-fm3g-qc6p-8vwh.json index 790aecb8f2e..4c8793bc12c 100644 --- a/advisories/unreviewed/2022/04/GHSA-fm3g-qc6p-8vwh/GHSA-fm3g-qc6p-8vwh.json +++ b/advisories/unreviewed/2022/04/GHSA-fm3g-qc6p-8vwh/GHSA-fm3g-qc6p-8vwh.json @@ -7,12 +7,8 @@ "CVE-2001-0338" ], "details": "Internet Explorer 5.5 and earlier does not properly validate digital certificates when Certificate Revocation List (CRL) checking is enabled, which could allow remote attackers to spoof trusted web sites, aka the \"Server certificate validation vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fmq3-pmh4-3qc5/GHSA-fmq3-pmh4-3qc5.json b/advisories/unreviewed/2022/04/GHSA-fmq3-pmh4-3qc5/GHSA-fmq3-pmh4-3qc5.json index 51d7691245a..ef1c851dceb 100644 --- a/advisories/unreviewed/2022/04/GHSA-fmq3-pmh4-3qc5/GHSA-fmq3-pmh4-3qc5.json +++ b/advisories/unreviewed/2022/04/GHSA-fmq3-pmh4-3qc5/GHSA-fmq3-pmh4-3qc5.json @@ -7,12 +7,8 @@ "CVE-2001-0332" ], "details": "Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, which allows remote web site operators to read certain files on the client by sending information from a local frame to a frame in a different domain using MSScriptControl.ScriptControl and GetObject, aka a variant of the \"Frame Domain Verification\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fp6q-9qw2-6vhc/GHSA-fp6q-9qw2-6vhc.json b/advisories/unreviewed/2022/04/GHSA-fp6q-9qw2-6vhc/GHSA-fp6q-9qw2-6vhc.json index e9f91faccc8..c4c79feb8dc 100644 --- a/advisories/unreviewed/2022/04/GHSA-fp6q-9qw2-6vhc/GHSA-fp6q-9qw2-6vhc.json +++ b/advisories/unreviewed/2022/04/GHSA-fp6q-9qw2-6vhc/GHSA-fp6q-9qw2-6vhc.json @@ -7,12 +7,8 @@ "CVE-2001-0261" ], "details": "Microsoft Windows 2000 Encrypted File System does not properly destroy backups of files that are encrypted, which allows a local attacker to recover the text of encrypted files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-frjp-86rm-jfr3/GHSA-frjp-86rm-jfr3.json b/advisories/unreviewed/2022/04/GHSA-frjp-86rm-jfr3/GHSA-frjp-86rm-jfr3.json index aa00b69acd4..47a093dbd98 100644 --- a/advisories/unreviewed/2022/04/GHSA-frjp-86rm-jfr3/GHSA-frjp-86rm-jfr3.json +++ b/advisories/unreviewed/2022/04/GHSA-frjp-86rm-jfr3/GHSA-frjp-86rm-jfr3.json @@ -7,12 +7,8 @@ "CVE-2001-0382" ], "details": "Computer Associates CCC\\Harvest 5.0 for Windows NT/2000 uses weak encryption for passwords, which allows a remote attacker to gain privileges on the application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-frwj-g863-562h/GHSA-frwj-g863-562h.json b/advisories/unreviewed/2022/04/GHSA-frwj-g863-562h/GHSA-frwj-g863-562h.json index 7cbd7de6960..8cd8bf2f861 100644 --- a/advisories/unreviewed/2022/04/GHSA-frwj-g863-562h/GHSA-frwj-g863-562h.json +++ b/advisories/unreviewed/2022/04/GHSA-frwj-g863-562h/GHSA-frwj-g863-562h.json @@ -7,12 +7,8 @@ "CVE-2001-0221" ], "details": "Buffer overflow in ja-xklock 2.7.1 and earlier allows local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-fx24-mh4f-pc7p/GHSA-fx24-mh4f-pc7p.json b/advisories/unreviewed/2022/04/GHSA-fx24-mh4f-pc7p/GHSA-fx24-mh4f-pc7p.json index c4b8cde4665..f3fc2475223 100644 --- a/advisories/unreviewed/2022/04/GHSA-fx24-mh4f-pc7p/GHSA-fx24-mh4f-pc7p.json +++ b/advisories/unreviewed/2022/04/GHSA-fx24-mh4f-pc7p/GHSA-fx24-mh4f-pc7p.json @@ -7,12 +7,8 @@ "CVE-2001-0380" ], "details": "Crosscom/Olicom XLT-F running XL 80 IM Version 5.5 Build Level 2 allows a remote attacker SNMP read and write access via a default, undocumented community string 'ILMI'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g4mg-gr2v-j36g/GHSA-g4mg-gr2v-j36g.json b/advisories/unreviewed/2022/04/GHSA-g4mg-gr2v-j36g/GHSA-g4mg-gr2v-j36g.json index f4c6011d19a..36453e5bd91 100644 --- a/advisories/unreviewed/2022/04/GHSA-g4mg-gr2v-j36g/GHSA-g4mg-gr2v-j36g.json +++ b/advisories/unreviewed/2022/04/GHSA-g4mg-gr2v-j36g/GHSA-g4mg-gr2v-j36g.json @@ -7,12 +7,8 @@ "CVE-2001-0274" ], "details": "kicq IRC client 1.0.0, and possibly later versions, allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g4v2-gmv8-8xpr/GHSA-g4v2-gmv8-8xpr.json b/advisories/unreviewed/2022/04/GHSA-g4v2-gmv8-8xpr/GHSA-g4v2-gmv8-8xpr.json index 833d174ede9..61e1af183ae 100644 --- a/advisories/unreviewed/2022/04/GHSA-g4v2-gmv8-8xpr/GHSA-g4v2-gmv8-8xpr.json +++ b/advisories/unreviewed/2022/04/GHSA-g4v2-gmv8-8xpr/GHSA-g4v2-gmv8-8xpr.json @@ -7,12 +7,8 @@ "CVE-2001-0275" ], "details": "Moby Netsuite Web Server 1.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g564-v7c2-g445/GHSA-g564-v7c2-g445.json b/advisories/unreviewed/2022/04/GHSA-g564-v7c2-g445/GHSA-g564-v7c2-g445.json index cdc6f841ecf..70bb5433e07 100644 --- a/advisories/unreviewed/2022/04/GHSA-g564-v7c2-g445/GHSA-g564-v7c2-g445.json +++ b/advisories/unreviewed/2022/04/GHSA-g564-v7c2-g445/GHSA-g564-v7c2-g445.json @@ -7,12 +7,8 @@ "CVE-2001-0237" ], "details": "Memory leak in Microsoft 2000 domain controller allows remote attackers to cause a denial of service by repeatedly connecting to the Kerberos service and then disconnecting without sending any data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g844-2p79-3mp2/GHSA-g844-2p79-3mp2.json b/advisories/unreviewed/2022/04/GHSA-g844-2p79-3mp2/GHSA-g844-2p79-3mp2.json index 963c5cab483..063325ab9c7 100644 --- a/advisories/unreviewed/2022/04/GHSA-g844-2p79-3mp2/GHSA-g844-2p79-3mp2.json +++ b/advisories/unreviewed/2022/04/GHSA-g844-2p79-3mp2/GHSA-g844-2p79-3mp2.json @@ -7,12 +7,8 @@ "CVE-2001-0188" ], "details": "GoodTech FTP server 3.0.1.2.1.0 and earlier allows remote attackers to cause a denial of service via a flood of connections to the server, which causes it to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g844-hmxx-5gwm/GHSA-g844-hmxx-5gwm.json b/advisories/unreviewed/2022/04/GHSA-g844-hmxx-5gwm/GHSA-g844-hmxx-5gwm.json index 7178d231cd0..75d6100ad42 100644 --- a/advisories/unreviewed/2022/04/GHSA-g844-hmxx-5gwm/GHSA-g844-hmxx-5gwm.json +++ b/advisories/unreviewed/2022/04/GHSA-g844-hmxx-5gwm/GHSA-g844-hmxx-5gwm.json @@ -7,12 +7,8 @@ "CVE-2001-0460" ], "details": "Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of service (memory exhaustion) via an extremely large HTTP Referrer: header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-g8c7-2xjm-67gx/GHSA-g8c7-2xjm-67gx.json b/advisories/unreviewed/2022/04/GHSA-g8c7-2xjm-67gx/GHSA-g8c7-2xjm-67gx.json index 5c52bdde68c..96566070ad0 100644 --- a/advisories/unreviewed/2022/04/GHSA-g8c7-2xjm-67gx/GHSA-g8c7-2xjm-67gx.json +++ b/advisories/unreviewed/2022/04/GHSA-g8c7-2xjm-67gx/GHSA-g8c7-2xjm-67gx.json @@ -7,12 +7,8 @@ "CVE-2001-0453" ], "details": "Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ggpj-vxj4-376g/GHSA-ggpj-vxj4-376g.json b/advisories/unreviewed/2022/04/GHSA-ggpj-vxj4-376g/GHSA-ggpj-vxj4-376g.json index 78cf275eae1..c02b5a97a7d 100644 --- a/advisories/unreviewed/2022/04/GHSA-ggpj-vxj4-376g/GHSA-ggpj-vxj4-376g.json +++ b/advisories/unreviewed/2022/04/GHSA-ggpj-vxj4-376g/GHSA-ggpj-vxj4-376g.json @@ -7,12 +7,8 @@ "CVE-2001-0246" ], "details": "Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, which allows remote web site operators to read certain files on the client by sending information from a local frame to a frame in a different domain, aka a variant of the \"Frame Domain Verification\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gj2r-jxwm-gvwh/GHSA-gj2r-jxwm-gvwh.json b/advisories/unreviewed/2022/04/GHSA-gj2r-jxwm-gvwh/GHSA-gj2r-jxwm-gvwh.json index 4170a444d77..eba0c6c67aa 100644 --- a/advisories/unreviewed/2022/04/GHSA-gj2r-jxwm-gvwh/GHSA-gj2r-jxwm-gvwh.json +++ b/advisories/unreviewed/2022/04/GHSA-gj2r-jxwm-gvwh/GHSA-gj2r-jxwm-gvwh.json @@ -7,12 +7,8 @@ "CVE-2001-0305" ], "details": "Directory traversal vulnerability in store.cgi in Thinking Arts ES.One package allows remote attackers to read arbitrary files via a .. (dot dot) in the StartID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gm8w-rwg5-936x/GHSA-gm8w-rwg5-936x.json b/advisories/unreviewed/2022/04/GHSA-gm8w-rwg5-936x/GHSA-gm8w-rwg5-936x.json index a823283b749..5ec428f7fd5 100644 --- a/advisories/unreviewed/2022/04/GHSA-gm8w-rwg5-936x/GHSA-gm8w-rwg5-936x.json +++ b/advisories/unreviewed/2022/04/GHSA-gm8w-rwg5-936x/GHSA-gm8w-rwg5-936x.json @@ -7,12 +7,8 @@ "CVE-2001-0306" ], "details": "Directory traversal vulnerability in ITAfrica WEBactive HTTP Server 1.00 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gpjg-cgg8-v765/GHSA-gpjg-cgg8-v765.json b/advisories/unreviewed/2022/04/GHSA-gpjg-cgg8-v765/GHSA-gpjg-cgg8-v765.json index e9a0667e686..0fa0ad2702e 100644 --- a/advisories/unreviewed/2022/04/GHSA-gpjg-cgg8-v765/GHSA-gpjg-cgg8-v765.json +++ b/advisories/unreviewed/2022/04/GHSA-gpjg-cgg8-v765/GHSA-gpjg-cgg8-v765.json @@ -7,12 +7,8 @@ "CVE-2001-0375" ], "details": "Cisco PIX Firewall 515 and 520 with 5.1.4 OS running aaa authentication to a TACACS+ server allows remote attackers to cause a denial of service via a large number of authentication requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gr9h-667f-jqmg/GHSA-gr9h-667f-jqmg.json b/advisories/unreviewed/2022/04/GHSA-gr9h-667f-jqmg/GHSA-gr9h-667f-jqmg.json index 5847a1f9618..69127e4a1d7 100644 --- a/advisories/unreviewed/2022/04/GHSA-gr9h-667f-jqmg/GHSA-gr9h-667f-jqmg.json +++ b/advisories/unreviewed/2022/04/GHSA-gr9h-667f-jqmg/GHSA-gr9h-667f-jqmg.json @@ -7,12 +7,8 @@ "CVE-2001-0242" ], "details": "Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the \".ASX Buffer Overrun\" vulnerability as discussed in MS:MS00-090.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gwgq-248p-5j84/GHSA-gwgq-248p-5j84.json b/advisories/unreviewed/2022/04/GHSA-gwgq-248p-5j84/GHSA-gwgq-248p-5j84.json index 723f2a02e1e..eea88fc626c 100644 --- a/advisories/unreviewed/2022/04/GHSA-gwgq-248p-5j84/GHSA-gwgq-248p-5j84.json +++ b/advisories/unreviewed/2022/04/GHSA-gwgq-248p-5j84/GHSA-gwgq-248p-5j84.json @@ -7,12 +7,8 @@ "CVE-2001-0199" ], "details": "Directory traversal vulnerability in SEDUM HTTP Server 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gxhf-p8cg-ccx8/GHSA-gxhf-p8cg-ccx8.json b/advisories/unreviewed/2022/04/GHSA-gxhf-p8cg-ccx8/GHSA-gxhf-p8cg-ccx8.json index 7078a626517..aed9bdaeb32 100644 --- a/advisories/unreviewed/2022/04/GHSA-gxhf-p8cg-ccx8/GHSA-gxhf-p8cg-ccx8.json +++ b/advisories/unreviewed/2022/04/GHSA-gxhf-p8cg-ccx8/GHSA-gxhf-p8cg-ccx8.json @@ -7,12 +7,8 @@ "CVE-2001-0107" ], "details": "Veritas Backup agent on Linux allows remote attackers to cause a denial of service by establishing a connection without sending any data, which causes the process to hang.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-gxq2-xwvh-w9pw/GHSA-gxq2-xwvh-w9pw.json b/advisories/unreviewed/2022/04/GHSA-gxq2-xwvh-w9pw/GHSA-gxq2-xwvh-w9pw.json index a8a4d98619d..4e2a32538c4 100644 --- a/advisories/unreviewed/2022/04/GHSA-gxq2-xwvh-w9pw/GHSA-gxq2-xwvh-w9pw.json +++ b/advisories/unreviewed/2022/04/GHSA-gxq2-xwvh-w9pw/GHSA-gxq2-xwvh-w9pw.json @@ -7,12 +7,8 @@ "CVE-2001-0444" ], "details": "Cisco CBOS 2.3.0.053 sends output of the \"sh nat\" (aka \"show nat\") command to the terminal of the next user who attempts to connect to the router via telnet, which could allow that user to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h22v-hvm3-mr5v/GHSA-h22v-hvm3-mr5v.json b/advisories/unreviewed/2022/04/GHSA-h22v-hvm3-mr5v/GHSA-h22v-hvm3-mr5v.json index a3a386002a1..ac1a1677986 100644 --- a/advisories/unreviewed/2022/04/GHSA-h22v-hvm3-mr5v/GHSA-h22v-hvm3-mr5v.json +++ b/advisories/unreviewed/2022/04/GHSA-h22v-hvm3-mr5v/GHSA-h22v-hvm3-mr5v.json @@ -7,12 +7,8 @@ "CVE-2001-0151" ], "details": "IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h36r-qvg6-h4vh/GHSA-h36r-qvg6-h4vh.json b/advisories/unreviewed/2022/04/GHSA-h36r-qvg6-h4vh/GHSA-h36r-qvg6-h4vh.json index c56c9332832..1bfc8ecbb93 100644 --- a/advisories/unreviewed/2022/04/GHSA-h36r-qvg6-h4vh/GHSA-h36r-qvg6-h4vh.json +++ b/advisories/unreviewed/2022/04/GHSA-h36r-qvg6-h4vh/GHSA-h36r-qvg6-h4vh.json @@ -7,12 +7,8 @@ "CVE-2001-0316" ], "details": "Linux kernel 2.4 and 2.2 allows local users to read kernel memory and possibly gain privileges via a negative argument to the sysctl call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h396-vrvv-r9h5/GHSA-h396-vrvv-r9h5.json b/advisories/unreviewed/2022/04/GHSA-h396-vrvv-r9h5/GHSA-h396-vrvv-r9h5.json index 72a772beb5d..4e0e8b273f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-h396-vrvv-r9h5/GHSA-h396-vrvv-r9h5.json +++ b/advisories/unreviewed/2022/04/GHSA-h396-vrvv-r9h5/GHSA-h396-vrvv-r9h5.json @@ -7,12 +7,8 @@ "CVE-2001-0277" ], "details": "Buffer overflow in ext.dll in BadBlue 1.02.07 Personal Edition allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h74j-7m39-h4p4/GHSA-h74j-7m39-h4p4.json b/advisories/unreviewed/2022/04/GHSA-h74j-7m39-h4p4/GHSA-h74j-7m39-h4p4.json index c423d40453f..31cd1e1c9d9 100644 --- a/advisories/unreviewed/2022/04/GHSA-h74j-7m39-h4p4/GHSA-h74j-7m39-h4p4.json +++ b/advisories/unreviewed/2022/04/GHSA-h74j-7m39-h4p4/GHSA-h74j-7m39-h4p4.json @@ -7,12 +7,8 @@ "CVE-2001-0155" ], "details": "Format string vulnerability in VShell SSH gateway 1.0.1 and earlier allows remote attackers to execute arbitrary commands via a user name that contains format string specifiers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-h7w2-cvcq-654h/GHSA-h7w2-cvcq-654h.json b/advisories/unreviewed/2022/04/GHSA-h7w2-cvcq-654h/GHSA-h7w2-cvcq-654h.json index 73504fb3058..1614ec2d08c 100644 --- a/advisories/unreviewed/2022/04/GHSA-h7w2-cvcq-654h/GHSA-h7w2-cvcq-654h.json +++ b/advisories/unreviewed/2022/04/GHSA-h7w2-cvcq-654h/GHSA-h7w2-cvcq-654h.json @@ -7,12 +7,8 @@ "CVE-2001-0420" ], "details": "Directory traversal vulnerability in talkback.cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the article parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hcpf-gphq-24xp/GHSA-hcpf-gphq-24xp.json b/advisories/unreviewed/2022/04/GHSA-hcpf-gphq-24xp/GHSA-hcpf-gphq-24xp.json index 6a06a5b5e36..046a82cb4b6 100644 --- a/advisories/unreviewed/2022/04/GHSA-hcpf-gphq-24xp/GHSA-hcpf-gphq-24xp.json +++ b/advisories/unreviewed/2022/04/GHSA-hcpf-gphq-24xp/GHSA-hcpf-gphq-24xp.json @@ -7,12 +7,8 @@ "CVE-2001-0224" ], "details": "Muscat Empower CGI program allows remote attackers to obtain the absolute pathname of the server via an invalid request in the DB parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hg23-mj93-3v9v/GHSA-hg23-mj93-3v9v.json b/advisories/unreviewed/2022/04/GHSA-hg23-mj93-3v9v/GHSA-hg23-mj93-3v9v.json index 31b728d5968..fc61d639e5a 100644 --- a/advisories/unreviewed/2022/04/GHSA-hg23-mj93-3v9v/GHSA-hg23-mj93-3v9v.json +++ b/advisories/unreviewed/2022/04/GHSA-hg23-mj93-3v9v/GHSA-hg23-mj93-3v9v.json @@ -7,12 +7,8 @@ "CVE-2001-0313" ], "details": "Borderware Firewall Server 6.1.2 allows remote attackers to cause a denial of service via a ping to the broadcast address of the public network on which the server is placed, which causes the server to continuously send pings (echo requests) to the network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hjh6-vgv9-8875/GHSA-hjh6-vgv9-8875.json b/advisories/unreviewed/2022/04/GHSA-hjh6-vgv9-8875/GHSA-hjh6-vgv9-8875.json index c42267c9253..28b54e48ab8 100644 --- a/advisories/unreviewed/2022/04/GHSA-hjh6-vgv9-8875/GHSA-hjh6-vgv9-8875.json +++ b/advisories/unreviewed/2022/04/GHSA-hjh6-vgv9-8875/GHSA-hjh6-vgv9-8875.json @@ -7,12 +7,8 @@ "CVE-2001-0465" ], "details": "TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution, which could allow local users to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hpqx-xmr5-8p4m/GHSA-hpqx-xmr5-8p4m.json b/advisories/unreviewed/2022/04/GHSA-hpqx-xmr5-8p4m/GHSA-hpqx-xmr5-8p4m.json index 36560b7ec88..2a82ffa2f1b 100644 --- a/advisories/unreviewed/2022/04/GHSA-hpqx-xmr5-8p4m/GHSA-hpqx-xmr5-8p4m.json +++ b/advisories/unreviewed/2022/04/GHSA-hpqx-xmr5-8p4m/GHSA-hpqx-xmr5-8p4m.json @@ -7,12 +7,8 @@ "CVE-2001-0415" ], "details": "REDIPlus program, REDI.exe, stores passwords and user names in cleartext in the StartLog.txt log file, which allows local users to gain access to other accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hpwq-hwvr-p4r9/GHSA-hpwq-hwvr-p4r9.json b/advisories/unreviewed/2022/04/GHSA-hpwq-hwvr-p4r9/GHSA-hpwq-hwvr-p4r9.json index 17049a4b79d..a90e97355f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-hpwq-hwvr-p4r9/GHSA-hpwq-hwvr-p4r9.json +++ b/advisories/unreviewed/2022/04/GHSA-hpwq-hwvr-p4r9/GHSA-hpwq-hwvr-p4r9.json @@ -7,12 +7,8 @@ "CVE-2001-0222" ], "details": "webmin 0.84 and earlier allows local users to overwrite and create arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hpx2-94g6-74r5/GHSA-hpx2-94g6-74r5.json b/advisories/unreviewed/2022/04/GHSA-hpx2-94g6-74r5/GHSA-hpx2-94g6-74r5.json index 2db8e0143d6..48de0bee35a 100644 --- a/advisories/unreviewed/2022/04/GHSA-hpx2-94g6-74r5/GHSA-hpx2-94g6-74r5.json +++ b/advisories/unreviewed/2022/04/GHSA-hpx2-94g6-74r5/GHSA-hpx2-94g6-74r5.json @@ -7,12 +7,8 @@ "CVE-2001-0431" ], "details": "Vulnerability in iPlanet Web Server Enterprise Edition 4.x.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hpx4-vfrw-237w/GHSA-hpx4-vfrw-237w.json b/advisories/unreviewed/2022/04/GHSA-hpx4-vfrw-237w/GHSA-hpx4-vfrw-237w.json index 0f6869977d8..9c24a8d936c 100644 --- a/advisories/unreviewed/2022/04/GHSA-hpx4-vfrw-237w/GHSA-hpx4-vfrw-237w.json +++ b/advisories/unreviewed/2022/04/GHSA-hpx4-vfrw-237w/GHSA-hpx4-vfrw-237w.json @@ -7,12 +7,8 @@ "CVE-2001-0112" ], "details": "Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-hwj2-mmx8-vwx9/GHSA-hwj2-mmx8-vwx9.json b/advisories/unreviewed/2022/04/GHSA-hwj2-mmx8-vwx9/GHSA-hwj2-mmx8-vwx9.json index 4f48109abf6..bf8bd5df15e 100644 --- a/advisories/unreviewed/2022/04/GHSA-hwj2-mmx8-vwx9/GHSA-hwj2-mmx8-vwx9.json +++ b/advisories/unreviewed/2022/04/GHSA-hwj2-mmx8-vwx9/GHSA-hwj2-mmx8-vwx9.json @@ -7,12 +7,8 @@ "CVE-2001-0208" ], "details": "MicroFocus Cobol 4.1, with the AppTrack feature enabled, installs the mfaslmf directory and the nolicense file with insecure permissions, which allows local users to gain privileges by modifying files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j2hw-525w-j8q2/GHSA-j2hw-525w-j8q2.json b/advisories/unreviewed/2022/04/GHSA-j2hw-525w-j8q2/GHSA-j2hw-525w-j8q2.json index 385c16202a3..09726c7a8ca 100644 --- a/advisories/unreviewed/2022/04/GHSA-j2hw-525w-j8q2/GHSA-j2hw-525w-j8q2.json +++ b/advisories/unreviewed/2022/04/GHSA-j2hw-525w-j8q2/GHSA-j2hw-525w-j8q2.json @@ -7,12 +7,8 @@ "CVE-2001-0108" ], "details": "PHP Apache module 4.0.4 and earlier allows remote attackers to bypass .htaccess access restrictions via a malformed HTTP request on an unrestricted page that causes PHP to use those access controls on the next page that is requested.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j3gg-r57x-3mc3/GHSA-j3gg-r57x-3mc3.json b/advisories/unreviewed/2022/04/GHSA-j3gg-r57x-3mc3/GHSA-j3gg-r57x-3mc3.json index 259df04c6f6..cd95daaa3c3 100644 --- a/advisories/unreviewed/2022/04/GHSA-j3gg-r57x-3mc3/GHSA-j3gg-r57x-3mc3.json +++ b/advisories/unreviewed/2022/04/GHSA-j3gg-r57x-3mc3/GHSA-j3gg-r57x-3mc3.json @@ -7,12 +7,8 @@ "CVE-2001-0461" ], "details": "template.cgi in Free On-Line Dictionary of Computing (FOLDOC) allows remote attackers to read files and execute commands via shell metacharacters in the argument to template.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j478-4j6c-x46v/GHSA-j478-4j6c-x46v.json b/advisories/unreviewed/2022/04/GHSA-j478-4j6c-x46v/GHSA-j478-4j6c-x46v.json index 2cbe3159719..1e9b89977d4 100644 --- a/advisories/unreviewed/2022/04/GHSA-j478-4j6c-x46v/GHSA-j478-4j6c-x46v.json +++ b/advisories/unreviewed/2022/04/GHSA-j478-4j6c-x46v/GHSA-j478-4j6c-x46v.json @@ -7,12 +7,8 @@ "CVE-2001-0219" ], "details": "Vulnerability in Support Tools Manager (xstm,cstm,stm) in HP-UX 11.11 and earlier allows local users to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j4fw-2x7f-vr9f/GHSA-j4fw-2x7f-vr9f.json b/advisories/unreviewed/2022/04/GHSA-j4fw-2x7f-vr9f/GHSA-j4fw-2x7f-vr9f.json index 7553601ae6a..7587473cdd7 100644 --- a/advisories/unreviewed/2022/04/GHSA-j4fw-2x7f-vr9f/GHSA-j4fw-2x7f-vr9f.json +++ b/advisories/unreviewed/2022/04/GHSA-j4fw-2x7f-vr9f/GHSA-j4fw-2x7f-vr9f.json @@ -7,12 +7,8 @@ "CVE-2001-0142" ], "details": "squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j4hr-4fr8-h9j2/GHSA-j4hr-4fr8-h9j2.json b/advisories/unreviewed/2022/04/GHSA-j4hr-4fr8-h9j2/GHSA-j4hr-4fr8-h9j2.json index ad7471b43e2..67aa6d716e7 100644 --- a/advisories/unreviewed/2022/04/GHSA-j4hr-4fr8-h9j2/GHSA-j4hr-4fr8-h9j2.json +++ b/advisories/unreviewed/2022/04/GHSA-j4hr-4fr8-h9j2/GHSA-j4hr-4fr8-h9j2.json @@ -7,12 +7,8 @@ "CVE-2001-0118" ], "details": "rdist 6.1.5 allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j557-rjj6-7225/GHSA-j557-rjj6-7225.json b/advisories/unreviewed/2022/04/GHSA-j557-rjj6-7225/GHSA-j557-rjj6-7225.json index cfffaf848ac..c887308540a 100644 --- a/advisories/unreviewed/2022/04/GHSA-j557-rjj6-7225/GHSA-j557-rjj6-7225.json +++ b/advisories/unreviewed/2022/04/GHSA-j557-rjj6-7225/GHSA-j557-rjj6-7225.json @@ -7,12 +7,8 @@ "CVE-2001-0123" ], "details": "Directory traversal vulnerability in eXtropia bbs_forum.cgi 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j59q-fjq9-v929/GHSA-j59q-fjq9-v929.json b/advisories/unreviewed/2022/04/GHSA-j59q-fjq9-v929/GHSA-j59q-fjq9-v929.json index eb77af76bdc..c06db77506c 100644 --- a/advisories/unreviewed/2022/04/GHSA-j59q-fjq9-v929/GHSA-j59q-fjq9-v929.json +++ b/advisories/unreviewed/2022/04/GHSA-j59q-fjq9-v929/GHSA-j59q-fjq9-v929.json @@ -7,12 +7,8 @@ "CVE-2001-0333" ], "details": "Directory traversal vulnerability in IIS 5.0 and earlier allows remote attackers to execute arbitrary commands by encoding .. (dot dot) and \"\\\" characters twice.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j745-h4hq-59r2/GHSA-j745-h4hq-59r2.json b/advisories/unreviewed/2022/04/GHSA-j745-h4hq-59r2/GHSA-j745-h4hq-59r2.json index 146ea63da87..d3e3eea5e9e 100644 --- a/advisories/unreviewed/2022/04/GHSA-j745-h4hq-59r2/GHSA-j745-h4hq-59r2.json +++ b/advisories/unreviewed/2022/04/GHSA-j745-h4hq-59r2/GHSA-j745-h4hq-59r2.json @@ -7,12 +7,8 @@ "CVE-2001-0268" ], "details": "The i386_set_ldt system call in NetBSD 1.5 and earlier, and OpenBSD 2.8 and earlier, when the USER_LDT kernel option is enabled, does not validate a call gate target, which allows local users to gain root privileges by creating a segment call gate in the Local Descriptor Table (LDT) with a target that specifies an arbitrary kernel address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-j8qm-vm5m-59fw/GHSA-j8qm-vm5m-59fw.json b/advisories/unreviewed/2022/04/GHSA-j8qm-vm5m-59fw/GHSA-j8qm-vm5m-59fw.json index 657fb46bfe1..3406b1d0943 100644 --- a/advisories/unreviewed/2022/04/GHSA-j8qm-vm5m-59fw/GHSA-j8qm-vm5m-59fw.json +++ b/advisories/unreviewed/2022/04/GHSA-j8qm-vm5m-59fw/GHSA-j8qm-vm5m-59fw.json @@ -7,12 +7,8 @@ "CVE-2001-0408" ], "details": "vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when another user opens a file containing malicious VIM control codes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jfxj-559j-9558/GHSA-jfxj-559j-9558.json b/advisories/unreviewed/2022/04/GHSA-jfxj-559j-9558/GHSA-jfxj-559j-9558.json index f641f9e9525..1003760d7ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-jfxj-559j-9558/GHSA-jfxj-559j-9558.json +++ b/advisories/unreviewed/2022/04/GHSA-jfxj-559j-9558/GHSA-jfxj-559j-9558.json @@ -7,12 +7,8 @@ "CVE-2001-0393" ], "details": "Navision Financials Server 2.0 allows remote attackers to cause a denial of service via a series of connections to the server without providing a username/password combination, which consumes the license limits.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jhvj-8ghp-wf3r/GHSA-jhvj-8ghp-wf3r.json b/advisories/unreviewed/2022/04/GHSA-jhvj-8ghp-wf3r/GHSA-jhvj-8ghp-wf3r.json index 7a395176d7c..9ace83fef9c 100644 --- a/advisories/unreviewed/2022/04/GHSA-jhvj-8ghp-wf3r/GHSA-jhvj-8ghp-wf3r.json +++ b/advisories/unreviewed/2022/04/GHSA-jhvj-8ghp-wf3r/GHSA-jhvj-8ghp-wf3r.json @@ -7,12 +7,8 @@ "CVE-2001-0357" ], "details": "FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jjvg-h9px-64cf/GHSA-jjvg-h9px-64cf.json b/advisories/unreviewed/2022/04/GHSA-jjvg-h9px-64cf/GHSA-jjvg-h9px-64cf.json index f9282371a82..a7ebd12712f 100644 --- a/advisories/unreviewed/2022/04/GHSA-jjvg-h9px-64cf/GHSA-jjvg-h9px-64cf.json +++ b/advisories/unreviewed/2022/04/GHSA-jjvg-h9px-64cf/GHSA-jjvg-h9px-64cf.json @@ -7,12 +7,8 @@ "CVE-2001-0370" ], "details": "fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jph7-xg5j-vhxv/GHSA-jph7-xg5j-vhxv.json b/advisories/unreviewed/2022/04/GHSA-jph7-xg5j-vhxv/GHSA-jph7-xg5j-vhxv.json index ed219854f44..8895ce8ac4c 100644 --- a/advisories/unreviewed/2022/04/GHSA-jph7-xg5j-vhxv/GHSA-jph7-xg5j-vhxv.json +++ b/advisories/unreviewed/2022/04/GHSA-jph7-xg5j-vhxv/GHSA-jph7-xg5j-vhxv.json @@ -7,12 +7,8 @@ "CVE-2001-0163" ], "details": "Cisco AP340 base station produces predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jr7w-rv7x-x733/GHSA-jr7w-rv7x-x733.json b/advisories/unreviewed/2022/04/GHSA-jr7w-rv7x-x733/GHSA-jr7w-rv7x-x733.json index 2dde4364b93..1f391d3e9c2 100644 --- a/advisories/unreviewed/2022/04/GHSA-jr7w-rv7x-x733/GHSA-jr7w-rv7x-x733.json +++ b/advisories/unreviewed/2022/04/GHSA-jr7w-rv7x-x733/GHSA-jr7w-rv7x-x733.json @@ -7,12 +7,8 @@ "CVE-2001-0202" ], "details": "Picserver web server allows remote attackers to read arbitrary files via a .. (dot dot) attack in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jrrq-72m7-2wjr/GHSA-jrrq-72m7-2wjr.json b/advisories/unreviewed/2022/04/GHSA-jrrq-72m7-2wjr/GHSA-jrrq-72m7-2wjr.json index 1f4339fb71a..33b89f307d1 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrrq-72m7-2wjr/GHSA-jrrq-72m7-2wjr.json +++ b/advisories/unreviewed/2022/04/GHSA-jrrq-72m7-2wjr/GHSA-jrrq-72m7-2wjr.json @@ -7,12 +7,8 @@ "CVE-2001-0419" ], "details": "Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands via a long HTTP request that is passed to the application server, such as /jsp/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jrxx-vxgm-j5r5/GHSA-jrxx-vxgm-j5r5.json b/advisories/unreviewed/2022/04/GHSA-jrxx-vxgm-j5r5/GHSA-jrxx-vxgm-j5r5.json index c14e01fc22d..39ea88f2520 100644 --- a/advisories/unreviewed/2022/04/GHSA-jrxx-vxgm-j5r5/GHSA-jrxx-vxgm-j5r5.json +++ b/advisories/unreviewed/2022/04/GHSA-jrxx-vxgm-j5r5/GHSA-jrxx-vxgm-j5r5.json @@ -7,12 +7,8 @@ "CVE-2001-0416" ], "details": "sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that are being processed by sgml-tools.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-jvfw-8chg-hrhf/GHSA-jvfw-8chg-hrhf.json b/advisories/unreviewed/2022/04/GHSA-jvfw-8chg-hrhf/GHSA-jvfw-8chg-hrhf.json index 118dcc5c4cf..00b6bbc203c 100644 --- a/advisories/unreviewed/2022/04/GHSA-jvfw-8chg-hrhf/GHSA-jvfw-8chg-hrhf.json +++ b/advisories/unreviewed/2022/04/GHSA-jvfw-8chg-hrhf/GHSA-jvfw-8chg-hrhf.json @@ -7,12 +7,8 @@ "CVE-2001-0401" ], "details": "Buffer overflow in tip in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m32q-m6f9-fgj5/GHSA-m32q-m6f9-fgj5.json b/advisories/unreviewed/2022/04/GHSA-m32q-m6f9-fgj5/GHSA-m32q-m6f9-fgj5.json index 98eaf5a698c..0df2068a245 100644 --- a/advisories/unreviewed/2022/04/GHSA-m32q-m6f9-fgj5/GHSA-m32q-m6f9-fgj5.json +++ b/advisories/unreviewed/2022/04/GHSA-m32q-m6f9-fgj5/GHSA-m32q-m6f9-fgj5.json @@ -7,12 +7,8 @@ "CVE-2001-0411" ], "details": "Reliant Unix 5.44 and earlier allows remote attackers to cause a denial of service via an ICMP port unreachable packet, which causes Reliant to drop all connections to the source address of the packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4f5-qvv7-5w6r/GHSA-m4f5-qvv7-5w6r.json b/advisories/unreviewed/2022/04/GHSA-m4f5-qvv7-5w6r/GHSA-m4f5-qvv7-5w6r.json index 19bb192d3bb..a69a0874511 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4f5-qvv7-5w6r/GHSA-m4f5-qvv7-5w6r.json +++ b/advisories/unreviewed/2022/04/GHSA-m4f5-qvv7-5w6r/GHSA-m4f5-qvv7-5w6r.json @@ -7,12 +7,8 @@ "CVE-2001-0410" ], "details": "Buffer overflow in Trend Micro Virus Buster 2001 8.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long \"From\" header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4hx-q62w-4fvm/GHSA-m4hx-q62w-4fvm.json b/advisories/unreviewed/2022/04/GHSA-m4hx-q62w-4fvm/GHSA-m4hx-q62w-4fvm.json index 1dc16fbafed..0233a9a57e9 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4hx-q62w-4fvm/GHSA-m4hx-q62w-4fvm.json +++ b/advisories/unreviewed/2022/04/GHSA-m4hx-q62w-4fvm/GHSA-m4hx-q62w-4fvm.json @@ -7,12 +7,8 @@ "CVE-2001-0172" ], "details": "Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute arbitrary commands by via a long directory name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-m4ww-c97g-rc2h/GHSA-m4ww-c97g-rc2h.json b/advisories/unreviewed/2022/04/GHSA-m4ww-c97g-rc2h/GHSA-m4ww-c97g-rc2h.json index c4321e7d065..9c5913c4a4b 100644 --- a/advisories/unreviewed/2022/04/GHSA-m4ww-c97g-rc2h/GHSA-m4ww-c97g-rc2h.json +++ b/advisories/unreviewed/2022/04/GHSA-m4ww-c97g-rc2h/GHSA-m4ww-c97g-rc2h.json @@ -7,12 +7,8 @@ "CVE-2001-0253" ], "details": "Directory traversal vulnerability in hsx.cgi program in iWeb Hyperseek 2000 allows remote attackers to read arbitrary files and directories via a .. (dot dot) attack in the show parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mcfj-5726-cfww/GHSA-mcfj-5726-cfww.json b/advisories/unreviewed/2022/04/GHSA-mcfj-5726-cfww/GHSA-mcfj-5726-cfww.json index 799b9ec44b8..03101b9bb21 100644 --- a/advisories/unreviewed/2022/04/GHSA-mcfj-5726-cfww/GHSA-mcfj-5726-cfww.json +++ b/advisories/unreviewed/2022/04/GHSA-mcfj-5726-cfww/GHSA-mcfj-5726-cfww.json @@ -7,12 +7,8 @@ "CVE-2001-0340" ], "details": "An interaction between the Outlook Web Access (OWA) service in Microsoft Exchange 2000 Server and Internet Explorer allows attackers to execute malicious script code against a user's mailbox via a message attachment that contains HTML code, which is executed automatically.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mfp2-hxqg-8hp9/GHSA-mfp2-hxqg-8hp9.json b/advisories/unreviewed/2022/04/GHSA-mfp2-hxqg-8hp9/GHSA-mfp2-hxqg-8hp9.json index e3a37d5d411..b85efed79f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-mfp2-hxqg-8hp9/GHSA-mfp2-hxqg-8hp9.json +++ b/advisories/unreviewed/2022/04/GHSA-mfp2-hxqg-8hp9/GHSA-mfp2-hxqg-8hp9.json @@ -7,12 +7,8 @@ "CVE-2001-0184" ], "details": "eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to crash when a user views the packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mgcx-f88w-qgv2/GHSA-mgcx-f88w-qgv2.json b/advisories/unreviewed/2022/04/GHSA-mgcx-f88w-qgv2/GHSA-mgcx-f88w-qgv2.json index 68094d97da7..8ac4b7ae65b 100644 --- a/advisories/unreviewed/2022/04/GHSA-mgcx-f88w-qgv2/GHSA-mgcx-f88w-qgv2.json +++ b/advisories/unreviewed/2022/04/GHSA-mgcx-f88w-qgv2/GHSA-mgcx-f88w-qgv2.json @@ -7,12 +7,8 @@ "CVE-2001-0160" ], "details": "Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mhrg-q5g7-42c3/GHSA-mhrg-q5g7-42c3.json b/advisories/unreviewed/2022/04/GHSA-mhrg-q5g7-42c3/GHSA-mhrg-q5g7-42c3.json index 91d7b6bb73f..b3c94ffb493 100644 --- a/advisories/unreviewed/2022/04/GHSA-mhrg-q5g7-42c3/GHSA-mhrg-q5g7-42c3.json +++ b/advisories/unreviewed/2022/04/GHSA-mhrg-q5g7-42c3/GHSA-mhrg-q5g7-42c3.json @@ -7,12 +7,8 @@ "CVE-2001-0186" ], "details": "Directory traversal vulnerability in Free Java Web Server 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mhx9-m787-mwx3/GHSA-mhx9-m787-mwx3.json b/advisories/unreviewed/2022/04/GHSA-mhx9-m787-mwx3/GHSA-mhx9-m787-mwx3.json index adb7bccdd5e..af5835fda37 100644 --- a/advisories/unreviewed/2022/04/GHSA-mhx9-m787-mwx3/GHSA-mhx9-m787-mwx3.json +++ b/advisories/unreviewed/2022/04/GHSA-mhx9-m787-mwx3/GHSA-mhx9-m787-mwx3.json @@ -7,12 +7,8 @@ "CVE-2001-0308" ], "details": "UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-mjff-3rm5-h8c4/GHSA-mjff-3rm5-h8c4.json b/advisories/unreviewed/2022/04/GHSA-mjff-3rm5-h8c4/GHSA-mjff-3rm5-h8c4.json index fff6775cf12..5b06d2a8f55 100644 --- a/advisories/unreviewed/2022/04/GHSA-mjff-3rm5-h8c4/GHSA-mjff-3rm5-h8c4.json +++ b/advisories/unreviewed/2022/04/GHSA-mjff-3rm5-h8c4/GHSA-mjff-3rm5-h8c4.json @@ -7,12 +7,8 @@ "CVE-2001-0213" ], "details": "Buffer overflow in pi program in PlanetIntra 2.5 allows remote attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mmw4-2xp2-gfrq/GHSA-mmw4-2xp2-gfrq.json b/advisories/unreviewed/2022/04/GHSA-mmw4-2xp2-gfrq/GHSA-mmw4-2xp2-gfrq.json index 099c8116085..fd5a5ef9daf 100644 --- a/advisories/unreviewed/2022/04/GHSA-mmw4-2xp2-gfrq/GHSA-mmw4-2xp2-gfrq.json +++ b/advisories/unreviewed/2022/04/GHSA-mmw4-2xp2-gfrq/GHSA-mmw4-2xp2-gfrq.json @@ -7,12 +7,8 @@ "CVE-2001-0168" ], "details": "Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a long HTTP GET request when the DebugLevel registry key is greater than 0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mv3h-2g96-65hg/GHSA-mv3h-2g96-65hg.json b/advisories/unreviewed/2022/04/GHSA-mv3h-2g96-65hg/GHSA-mv3h-2g96-65hg.json index 2a962c31fe9..c58d268c82a 100644 --- a/advisories/unreviewed/2022/04/GHSA-mv3h-2g96-65hg/GHSA-mv3h-2g96-65hg.json +++ b/advisories/unreviewed/2022/04/GHSA-mv3h-2g96-65hg/GHSA-mv3h-2g96-65hg.json @@ -7,12 +7,8 @@ "CVE-2001-0298" ], "details": "Buffer overflow in WebReflex 1.55 HTTPd allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mvfg-c8h4-mj4g/GHSA-mvfg-c8h4-mj4g.json b/advisories/unreviewed/2022/04/GHSA-mvfg-c8h4-mj4g/GHSA-mvfg-c8h4-mj4g.json index 4b8074e8792..652720add8d 100644 --- a/advisories/unreviewed/2022/04/GHSA-mvfg-c8h4-mj4g/GHSA-mvfg-c8h4-mj4g.json +++ b/advisories/unreviewed/2022/04/GHSA-mvfg-c8h4-mj4g/GHSA-mvfg-c8h4-mj4g.json @@ -7,12 +7,8 @@ "CVE-2001-0318" ], "details": "Format string vulnerability in ProFTPD 1.2.0rc2 may allow attackers to execute arbitrary commands by shutting down the FTP server while using a malformed working directory (cwd).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-mw79-75vv-r5w6/GHSA-mw79-75vv-r5w6.json b/advisories/unreviewed/2022/04/GHSA-mw79-75vv-r5w6/GHSA-mw79-75vv-r5w6.json index 5fa88498ae1..eefe3cb8228 100644 --- a/advisories/unreviewed/2022/04/GHSA-mw79-75vv-r5w6/GHSA-mw79-75vv-r5w6.json +++ b/advisories/unreviewed/2022/04/GHSA-mw79-75vv-r5w6/GHSA-mw79-75vv-r5w6.json @@ -7,12 +7,8 @@ "CVE-2001-0350" ], "details": "Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, which allows local users to execute arbitrary commands by creating a named pipe with the predictable name and associating a malicious program with it, the second of two variants of this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p3m8-f58x-8x6c/GHSA-p3m8-f58x-8x6c.json b/advisories/unreviewed/2022/04/GHSA-p3m8-f58x-8x6c/GHSA-p3m8-f58x-8x6c.json index 4218189232b..17b5a6e80b1 100644 --- a/advisories/unreviewed/2022/04/GHSA-p3m8-f58x-8x6c/GHSA-p3m8-f58x-8x6c.json +++ b/advisories/unreviewed/2022/04/GHSA-p3m8-f58x-8x6c/GHSA-p3m8-f58x-8x6c.json @@ -7,12 +7,8 @@ "CVE-2001-0243" ], "details": "Windows Media Player 7 and earlier stores Internet shortcuts in a user's Temporary Files folder with a fixed filename instead of in the Internet Explorer cache, which causes the HTML in those shortcuts to run in the Local Computer Zone instead of the Internet Zone, which allows remote attackers to read certain files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p673-v55p-52j2/GHSA-p673-v55p-52j2.json b/advisories/unreviewed/2022/04/GHSA-p673-v55p-52j2/GHSA-p673-v55p-52j2.json index 14d2be01afa..940a84651f5 100644 --- a/advisories/unreviewed/2022/04/GHSA-p673-v55p-52j2/GHSA-p673-v55p-52j2.json +++ b/advisories/unreviewed/2022/04/GHSA-p673-v55p-52j2/GHSA-p673-v55p-52j2.json @@ -7,12 +7,8 @@ "CVE-2001-0365" ], "details": "Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p6p2-rcmv-fx7v/GHSA-p6p2-rcmv-fx7v.json b/advisories/unreviewed/2022/04/GHSA-p6p2-rcmv-fx7v/GHSA-p6p2-rcmv-fx7v.json index bf80ea47a6a..c3ea59353de 100644 --- a/advisories/unreviewed/2022/04/GHSA-p6p2-rcmv-fx7v/GHSA-p6p2-rcmv-fx7v.json +++ b/advisories/unreviewed/2022/04/GHSA-p6p2-rcmv-fx7v/GHSA-p6p2-rcmv-fx7v.json @@ -7,12 +7,8 @@ "CVE-2001-0390" ], "details": "IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w macro with a long string of %0a characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-p9ph-4v96-x6rg/GHSA-p9ph-4v96-x6rg.json b/advisories/unreviewed/2022/04/GHSA-p9ph-4v96-x6rg/GHSA-p9ph-4v96-x6rg.json index db006b4e46d..254c4931cad 100644 --- a/advisories/unreviewed/2022/04/GHSA-p9ph-4v96-x6rg/GHSA-p9ph-4v96-x6rg.json +++ b/advisories/unreviewed/2022/04/GHSA-p9ph-4v96-x6rg/GHSA-p9ph-4v96-x6rg.json @@ -7,12 +7,8 @@ "CVE-2001-0149" ], "details": "Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pcp2-j956-2xvp/GHSA-pcp2-j956-2xvp.json b/advisories/unreviewed/2022/04/GHSA-pcp2-j956-2xvp/GHSA-pcp2-j956-2xvp.json index c95db894bb0..724b3740026 100644 --- a/advisories/unreviewed/2022/04/GHSA-pcp2-j956-2xvp/GHSA-pcp2-j956-2xvp.json +++ b/advisories/unreviewed/2022/04/GHSA-pcp2-j956-2xvp/GHSA-pcp2-j956-2xvp.json @@ -7,12 +7,8 @@ "CVE-2001-0437" ], "details": "upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to upload_file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pg4f-5r7m-ff87/GHSA-pg4f-5r7m-ff87.json b/advisories/unreviewed/2022/04/GHSA-pg4f-5r7m-ff87/GHSA-pg4f-5r7m-ff87.json index 1abc850e586..6a08defc3f0 100644 --- a/advisories/unreviewed/2022/04/GHSA-pg4f-5r7m-ff87/GHSA-pg4f-5r7m-ff87.json +++ b/advisories/unreviewed/2022/04/GHSA-pg4f-5r7m-ff87/GHSA-pg4f-5r7m-ff87.json @@ -7,12 +7,8 @@ "CVE-2001-0351" ], "details": "Microsoft Windows 2000 telnet service allows a local user to make a certain system call that allows the user to terminate a Telnet session and cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ppp2-whvv-q4qx/GHSA-ppp2-whvv-q4qx.json b/advisories/unreviewed/2022/04/GHSA-ppp2-whvv-q4qx/GHSA-ppp2-whvv-q4qx.json index 718130a37b7..915758d8944 100644 --- a/advisories/unreviewed/2022/04/GHSA-ppp2-whvv-q4qx/GHSA-ppp2-whvv-q4qx.json +++ b/advisories/unreviewed/2022/04/GHSA-ppp2-whvv-q4qx/GHSA-ppp2-whvv-q4qx.json @@ -7,12 +7,8 @@ "CVE-2001-0300" ], "details": "oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-ppvh-qjhq-qjwm/GHSA-ppvh-qjhq-qjwm.json b/advisories/unreviewed/2022/04/GHSA-ppvh-qjhq-qjwm/GHSA-ppvh-qjhq-qjwm.json index 007173c0734..3c8eaa90420 100644 --- a/advisories/unreviewed/2022/04/GHSA-ppvh-qjhq-qjwm/GHSA-ppvh-qjhq-qjwm.json +++ b/advisories/unreviewed/2022/04/GHSA-ppvh-qjhq-qjwm/GHSA-ppvh-qjhq-qjwm.json @@ -7,12 +7,8 @@ "CVE-2001-0341" ], "details": "Buffer overflow in Microsoft Visual Studio RAD Support sub-component of FrontPage Server Extensions allows remote attackers to execute arbitrary commands via a long registration request (URL) to fp30reg.dll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pqgv-mxxh-ccp2/GHSA-pqgv-mxxh-ccp2.json b/advisories/unreviewed/2022/04/GHSA-pqgv-mxxh-ccp2/GHSA-pqgv-mxxh-ccp2.json index 8508029e546..3b2d2848ee1 100644 --- a/advisories/unreviewed/2022/04/GHSA-pqgv-mxxh-ccp2/GHSA-pqgv-mxxh-ccp2.json +++ b/advisories/unreviewed/2022/04/GHSA-pqgv-mxxh-ccp2/GHSA-pqgv-mxxh-ccp2.json @@ -7,12 +7,8 @@ "CVE-2001-0327" ], "details": "iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned by the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-pv25-r5h6-xx9c/GHSA-pv25-r5h6-xx9c.json b/advisories/unreviewed/2022/04/GHSA-pv25-r5h6-xx9c/GHSA-pv25-r5h6-xx9c.json index 2dee20b3c67..ab037679e4d 100644 --- a/advisories/unreviewed/2022/04/GHSA-pv25-r5h6-xx9c/GHSA-pv25-r5h6-xx9c.json +++ b/advisories/unreviewed/2022/04/GHSA-pv25-r5h6-xx9c/GHSA-pv25-r5h6-xx9c.json @@ -7,12 +7,8 @@ "CVE-2001-0259" ], "details": "ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generated by another user, which the attacker can use to decrypt that user's private key file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q24v-gvxr-3qvg/GHSA-q24v-gvxr-3qvg.json b/advisories/unreviewed/2022/04/GHSA-q24v-gvxr-3qvg/GHSA-q24v-gvxr-3qvg.json index 6b221e47c12..8440c4660f9 100644 --- a/advisories/unreviewed/2022/04/GHSA-q24v-gvxr-3qvg/GHSA-q24v-gvxr-3qvg.json +++ b/advisories/unreviewed/2022/04/GHSA-q24v-gvxr-3qvg/GHSA-q24v-gvxr-3qvg.json @@ -7,12 +7,8 @@ "CVE-2001-0207" ], "details": "Buffer overflow in bing allows remote attackers to execute arbitrary commands via a long hostname, which is copied to a small buffer after a reverse DNS lookup using the gethostbyaddr function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q2m7-jcm6-6x48/GHSA-q2m7-jcm6-6x48.json b/advisories/unreviewed/2022/04/GHSA-q2m7-jcm6-6x48/GHSA-q2m7-jcm6-6x48.json index 54aa8e0a1ce..aff9f99d76d 100644 --- a/advisories/unreviewed/2022/04/GHSA-q2m7-jcm6-6x48/GHSA-q2m7-jcm6-6x48.json +++ b/advisories/unreviewed/2022/04/GHSA-q2m7-jcm6-6x48/GHSA-q2m7-jcm6-6x48.json @@ -7,12 +7,8 @@ "CVE-2001-0205" ], "details": "Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting \"...\" into the requested pathname, a modified .. (dot dot) attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q5gj-fv2v-79m7/GHSA-q5gj-fv2v-79m7.json b/advisories/unreviewed/2022/04/GHSA-q5gj-fv2v-79m7/GHSA-q5gj-fv2v-79m7.json index 46a91b09ee1..e1267514f5a 100644 --- a/advisories/unreviewed/2022/04/GHSA-q5gj-fv2v-79m7/GHSA-q5gj-fv2v-79m7.json +++ b/advisories/unreviewed/2022/04/GHSA-q5gj-fv2v-79m7/GHSA-q5gj-fv2v-79m7.json @@ -7,12 +7,8 @@ "CVE-2001-0413" ], "details": "BinTec X4000 Access router, and possibly other versions, allows remote attackers to cause a denial of service via a SYN port scan, which causes the router to hang.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q637-76j2-5fvc/GHSA-q637-76j2-5fvc.json b/advisories/unreviewed/2022/04/GHSA-q637-76j2-5fvc/GHSA-q637-76j2-5fvc.json index 0e04a3dc863..6ccdbcb0b11 100644 --- a/advisories/unreviewed/2022/04/GHSA-q637-76j2-5fvc/GHSA-q637-76j2-5fvc.json +++ b/advisories/unreviewed/2022/04/GHSA-q637-76j2-5fvc/GHSA-q637-76j2-5fvc.json @@ -7,12 +7,8 @@ "CVE-2001-0256" ], "details": "FaSTream FTP++ Server 2.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q65m-37h7-6wqv/GHSA-q65m-37h7-6wqv.json b/advisories/unreviewed/2022/04/GHSA-q65m-37h7-6wqv/GHSA-q65m-37h7-6wqv.json index 37ca0376799..0a68d3bebe2 100644 --- a/advisories/unreviewed/2022/04/GHSA-q65m-37h7-6wqv/GHSA-q65m-37h7-6wqv.json +++ b/advisories/unreviewed/2022/04/GHSA-q65m-37h7-6wqv/GHSA-q65m-37h7-6wqv.json @@ -7,12 +7,8 @@ "CVE-2001-0250" ], "details": "The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q6gj-89h4-7h3q/GHSA-q6gj-89h4-7h3q.json b/advisories/unreviewed/2022/04/GHSA-q6gj-89h4-7h3q/GHSA-q6gj-89h4-7h3q.json index 0dd9a10d82e..faab02131ad 100644 --- a/advisories/unreviewed/2022/04/GHSA-q6gj-89h4-7h3q/GHSA-q6gj-89h4-7h3q.json +++ b/advisories/unreviewed/2022/04/GHSA-q6gj-89h4-7h3q/GHSA-q6gj-89h4-7h3q.json @@ -7,12 +7,8 @@ "CVE-2001-0311" ], "details": "Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q8rh-mh54-r97r/GHSA-q8rh-mh54-r97r.json b/advisories/unreviewed/2022/04/GHSA-q8rh-mh54-r97r/GHSA-q8rh-mh54-r97r.json index 15063b38202..6d3902101f4 100644 --- a/advisories/unreviewed/2022/04/GHSA-q8rh-mh54-r97r/GHSA-q8rh-mh54-r97r.json +++ b/advisories/unreviewed/2022/04/GHSA-q8rh-mh54-r97r/GHSA-q8rh-mh54-r97r.json @@ -7,12 +7,8 @@ "CVE-2001-0109" ], "details": "rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctmp temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-q994-h593-7c44/GHSA-q994-h593-7c44.json b/advisories/unreviewed/2022/04/GHSA-q994-h593-7c44/GHSA-q994-h593-7c44.json index 4ada400d49c..a77348dcecc 100644 --- a/advisories/unreviewed/2022/04/GHSA-q994-h593-7c44/GHSA-q994-h593-7c44.json +++ b/advisories/unreviewed/2022/04/GHSA-q994-h593-7c44/GHSA-q994-h593-7c44.json @@ -7,12 +7,8 @@ "CVE-2001-0296" ], "details": "Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qc4q-94jc-f26r/GHSA-qc4q-94jc-f26r.json b/advisories/unreviewed/2022/04/GHSA-qc4q-94jc-f26r/GHSA-qc4q-94jc-f26r.json index 75ca1dd1c6a..7c9e672d6aa 100644 --- a/advisories/unreviewed/2022/04/GHSA-qc4q-94jc-f26r/GHSA-qc4q-94jc-f26r.json +++ b/advisories/unreviewed/2022/04/GHSA-qc4q-94jc-f26r/GHSA-qc4q-94jc-f26r.json @@ -7,12 +7,8 @@ "CVE-2001-0240" ], "details": "Microsoft Word before Word 2002 allows attackers to automatically execute macros without warning the user via a Rich Text Format (RTF) document that links to a template with the embedded macro.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qhqc-7925-w87v/GHSA-qhqc-7925-w87v.json b/advisories/unreviewed/2022/04/GHSA-qhqc-7925-w87v/GHSA-qhqc-7925-w87v.json index 093e6729e8c..87e475ed5ef 100644 --- a/advisories/unreviewed/2022/04/GHSA-qhqc-7925-w87v/GHSA-qhqc-7925-w87v.json +++ b/advisories/unreviewed/2022/04/GHSA-qhqc-7925-w87v/GHSA-qhqc-7925-w87v.json @@ -7,12 +7,8 @@ "CVE-2001-0209" ], "details": "Buffer overflow in Shoutcast Distributed Network Audio Server (DNAS) 1.7.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long description.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qj2j-94gf-rwcj/GHSA-qj2j-94gf-rwcj.json b/advisories/unreviewed/2022/04/GHSA-qj2j-94gf-rwcj/GHSA-qj2j-94gf-rwcj.json index abd8cbd549c..afc2adc9172 100644 --- a/advisories/unreviewed/2022/04/GHSA-qj2j-94gf-rwcj/GHSA-qj2j-94gf-rwcj.json +++ b/advisories/unreviewed/2022/04/GHSA-qj2j-94gf-rwcj/GHSA-qj2j-94gf-rwcj.json @@ -7,12 +7,8 @@ "CVE-2001-0394" ], "details": "Remote manager service in Website Pro 3.0.37 allows remote attackers to cause a denial of service via a series of malformed HTTP requests to the /dyn directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qp59-vc39-7x3c/GHSA-qp59-vc39-7x3c.json b/advisories/unreviewed/2022/04/GHSA-qp59-vc39-7x3c/GHSA-qp59-vc39-7x3c.json index a90b00bcbfa..4db9583c014 100644 --- a/advisories/unreviewed/2022/04/GHSA-qp59-vc39-7x3c/GHSA-qp59-vc39-7x3c.json +++ b/advisories/unreviewed/2022/04/GHSA-qp59-vc39-7x3c/GHSA-qp59-vc39-7x3c.json @@ -7,12 +7,8 @@ "CVE-2001-0157" ], "details": "Debugging utility in the backdoor mode of Palm OS 3.5.2 and earlier allows attackers with physical access to a Palm device to bypass access restrictions and obtain passwords, even if the system lockout mechanism is enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qphq-fjvj-6855/GHSA-qphq-fjvj-6855.json b/advisories/unreviewed/2022/04/GHSA-qphq-fjvj-6855/GHSA-qphq-fjvj-6855.json index 415c9e97177..02052d5204d 100644 --- a/advisories/unreviewed/2022/04/GHSA-qphq-fjvj-6855/GHSA-qphq-fjvj-6855.json +++ b/advisories/unreviewed/2022/04/GHSA-qphq-fjvj-6855/GHSA-qphq-fjvj-6855.json @@ -7,12 +7,8 @@ "CVE-2001-0405" ], "details": "ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the firewall.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qr7m-wxwp-4hxg/GHSA-qr7m-wxwp-4hxg.json b/advisories/unreviewed/2022/04/GHSA-qr7m-wxwp-4hxg/GHSA-qr7m-wxwp-4hxg.json index e87dbc42cf2..71ce35548f6 100644 --- a/advisories/unreviewed/2022/04/GHSA-qr7m-wxwp-4hxg/GHSA-qr7m-wxwp-4hxg.json +++ b/advisories/unreviewed/2022/04/GHSA-qr7m-wxwp-4hxg/GHSA-qr7m-wxwp-4hxg.json @@ -7,12 +7,8 @@ "CVE-2001-0317" ], "details": "Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and modify a running setuid process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-qv37-qfq4-c558/GHSA-qv37-qfq4-c558.json b/advisories/unreviewed/2022/04/GHSA-qv37-qfq4-c558/GHSA-qv37-qfq4-c558.json index 5148ec9d1bb..7e33c54327e 100644 --- a/advisories/unreviewed/2022/04/GHSA-qv37-qfq4-c558/GHSA-qv37-qfq4-c558.json +++ b/advisories/unreviewed/2022/04/GHSA-qv37-qfq4-c558/GHSA-qv37-qfq4-c558.json @@ -7,12 +7,8 @@ "CVE-2001-0399" ], "details": "Caucho Resin 1.3b1 and earlier allows remote attackers to read source code for Javabean files by inserting a .jsp before the WEB-INF specifier in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r37c-fg8f-g58j/GHSA-r37c-fg8f-g58j.json b/advisories/unreviewed/2022/04/GHSA-r37c-fg8f-g58j/GHSA-r37c-fg8f-g58j.json index b46f1cbf133..c2c2c1b3e12 100644 --- a/advisories/unreviewed/2022/04/GHSA-r37c-fg8f-g58j/GHSA-r37c-fg8f-g58j.json +++ b/advisories/unreviewed/2022/04/GHSA-r37c-fg8f-g58j/GHSA-r37c-fg8f-g58j.json @@ -7,12 +7,8 @@ "CVE-2001-0200" ], "details": "HSWeb 2.0 HTTP server allows remote attackers to obtain the physical path of the server via a request to the /cgi/ directory, which will list the path if directory browsing is enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r4wp-683q-34xv/GHSA-r4wp-683q-34xv.json b/advisories/unreviewed/2022/04/GHSA-r4wp-683q-34xv/GHSA-r4wp-683q-34xv.json index 48633a4eccf..896f6023310 100644 --- a/advisories/unreviewed/2022/04/GHSA-r4wp-683q-34xv/GHSA-r4wp-683q-34xv.json +++ b/advisories/unreviewed/2022/04/GHSA-r4wp-683q-34xv/GHSA-r4wp-683q-34xv.json @@ -7,12 +7,8 @@ "CVE-2001-0114" ], "details": "statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to overwrite arbitrary files via the cgidir parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r52p-5vj2-qhxc/GHSA-r52p-5vj2-qhxc.json b/advisories/unreviewed/2022/04/GHSA-r52p-5vj2-qhxc/GHSA-r52p-5vj2-qhxc.json index 9bb8374bb7c..74dda2b2f7e 100644 --- a/advisories/unreviewed/2022/04/GHSA-r52p-5vj2-qhxc/GHSA-r52p-5vj2-qhxc.json +++ b/advisories/unreviewed/2022/04/GHSA-r52p-5vj2-qhxc/GHSA-r52p-5vj2-qhxc.json @@ -7,12 +7,8 @@ "CVE-2001-0122" ], "details": "Kernel leak in AfpaCache module of the Fast Response Cache Accelerator (FRCA) component of IBM HTTP Server 1.3.x and Websphere 3.52 allows remote attackers to cause a denial of service via a series of malformed HTTP requests that generate a \"bad request\" error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r6w3-g3f4-466h/GHSA-r6w3-g3f4-466h.json b/advisories/unreviewed/2022/04/GHSA-r6w3-g3f4-466h/GHSA-r6w3-g3f4-466h.json index 77c5b5fc08b..fb88b08375d 100644 --- a/advisories/unreviewed/2022/04/GHSA-r6w3-g3f4-466h/GHSA-r6w3-g3f4-466h.json +++ b/advisories/unreviewed/2022/04/GHSA-r6w3-g3f4-466h/GHSA-r6w3-g3f4-466h.json @@ -7,12 +7,8 @@ "CVE-2001-0260" ], "details": "Buffer overflow in Lotus Domino Mail Server 5.0.5 and earlier allows a remote attacker to crash the server or execute arbitrary code via a long \"RCPT TO\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r94v-226p-r77g/GHSA-r94v-226p-r77g.json b/advisories/unreviewed/2022/04/GHSA-r94v-226p-r77g/GHSA-r94v-226p-r77g.json index fde61ab34bf..b79874ef618 100644 --- a/advisories/unreviewed/2022/04/GHSA-r94v-226p-r77g/GHSA-r94v-226p-r77g.json +++ b/advisories/unreviewed/2022/04/GHSA-r94v-226p-r77g/GHSA-r94v-226p-r77g.json @@ -7,12 +7,8 @@ "CVE-2001-0169" ], "details": "When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r979-vh68-rp6x/GHSA-r979-vh68-rp6x.json b/advisories/unreviewed/2022/04/GHSA-r979-vh68-rp6x/GHSA-r979-vh68-rp6x.json index b9ceaeb0401..5ccd468b7e8 100644 --- a/advisories/unreviewed/2022/04/GHSA-r979-vh68-rp6x/GHSA-r979-vh68-rp6x.json +++ b/advisories/unreviewed/2022/04/GHSA-r979-vh68-rp6x/GHSA-r979-vh68-rp6x.json @@ -7,12 +7,8 @@ "CVE-2001-0254" ], "details": "FaSTream FTP++ Server 2.0 allows remote attackers to obtain the real pathname of the server via the \"pwd\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r9g3-j83v-v8vj/GHSA-r9g3-j83v-v8vj.json b/advisories/unreviewed/2022/04/GHSA-r9g3-j83v-v8vj/GHSA-r9g3-j83v-v8vj.json index b6b23f342f3..920e41fb08b 100644 --- a/advisories/unreviewed/2022/04/GHSA-r9g3-j83v-v8vj/GHSA-r9g3-j83v-v8vj.json +++ b/advisories/unreviewed/2022/04/GHSA-r9g3-j83v-v8vj/GHSA-r9g3-j83v-v8vj.json @@ -7,12 +7,8 @@ "CVE-2001-0470" ], "details": "Buffer overflow in SNMP proxy agent snmpd in Solaris 8 may allow local users to gain root privileges by calling snmpd with a long program name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-r9qh-42qp-5g8c/GHSA-r9qh-42qp-5g8c.json b/advisories/unreviewed/2022/04/GHSA-r9qh-42qp-5g8c/GHSA-r9qh-42qp-5g8c.json index c994b32410a..f3bdd0d13f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-r9qh-42qp-5g8c/GHSA-r9qh-42qp-5g8c.json +++ b/advisories/unreviewed/2022/04/GHSA-r9qh-42qp-5g8c/GHSA-r9qh-42qp-5g8c.json @@ -7,12 +7,8 @@ "CVE-2001-0223" ], "details": "Buffer overflow in wwwwais allows remote attackers to execute arbitrary commands via a long QUERY_STRING (HTTP GET request).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rfj9-4hjg-x3rg/GHSA-rfj9-4hjg-x3rg.json b/advisories/unreviewed/2022/04/GHSA-rfj9-4hjg-x3rg/GHSA-rfj9-4hjg-x3rg.json index 9d70aee145f..b6507699873 100644 --- a/advisories/unreviewed/2022/04/GHSA-rfj9-4hjg-x3rg/GHSA-rfj9-4hjg-x3rg.json +++ b/advisories/unreviewed/2022/04/GHSA-rfj9-4hjg-x3rg/GHSA-rfj9-4hjg-x3rg.json @@ -7,12 +7,8 @@ "CVE-2001-0175" ], "details": "The caching module in Netscape Fasttrack Server 4.1 allows remote attackers to cause a denial of service (resource exhaustion) by requesting a large number of non-existent URLs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rfpf-v3rv-g8rx/GHSA-rfpf-v3rv-g8rx.json b/advisories/unreviewed/2022/04/GHSA-rfpf-v3rv-g8rx/GHSA-rfpf-v3rv-g8rx.json index 8152dbe6d7a..814cbfe83e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-rfpf-v3rv-g8rx/GHSA-rfpf-v3rv-g8rx.json +++ b/advisories/unreviewed/2022/04/GHSA-rfpf-v3rv-g8rx/GHSA-rfpf-v3rv-g8rx.json @@ -7,12 +7,8 @@ "CVE-2001-0132" ], "details": "Interscan VirusWall 3.6.x and earlier follows symbolic links when uninstalling the product, which allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rgqx-qw8r-r4v2/GHSA-rgqx-qw8r-r4v2.json b/advisories/unreviewed/2022/04/GHSA-rgqx-qw8r-r4v2/GHSA-rgqx-qw8r-r4v2.json index e4133e40757..7b647f81291 100644 --- a/advisories/unreviewed/2022/04/GHSA-rgqx-qw8r-r4v2/GHSA-rgqx-qw8r-r4v2.json +++ b/advisories/unreviewed/2022/04/GHSA-rgqx-qw8r-r4v2/GHSA-rgqx-qw8r-r4v2.json @@ -7,12 +7,8 @@ "CVE-2001-0130" ], "details": "Buffer overflow in HTML parser of the Lotus R5 Domino Server before 5.06, and Domino Client before 5.05, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a malformed font size specifier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rm5j-55hv-4q3p/GHSA-rm5j-55hv-4q3p.json b/advisories/unreviewed/2022/04/GHSA-rm5j-55hv-4q3p/GHSA-rm5j-55hv-4q3p.json index 1144f0f082d..357f50652e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-rm5j-55hv-4q3p/GHSA-rm5j-55hv-4q3p.json +++ b/advisories/unreviewed/2022/04/GHSA-rm5j-55hv-4q3p/GHSA-rm5j-55hv-4q3p.json @@ -7,12 +7,8 @@ "CVE-2001-0140" ], "details": "arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rp73-w495-gq25/GHSA-rp73-w495-gq25.json b/advisories/unreviewed/2022/04/GHSA-rp73-w495-gq25/GHSA-rp73-w495-gq25.json index c598ca06406..6d21069d5cc 100644 --- a/advisories/unreviewed/2022/04/GHSA-rp73-w495-gq25/GHSA-rp73-w495-gq25.json +++ b/advisories/unreviewed/2022/04/GHSA-rp73-w495-gq25/GHSA-rp73-w495-gq25.json @@ -7,12 +7,8 @@ "CVE-2001-0463" ], "details": "Directory traversal vulnerability in cal_make.pl in PerlCal allows remote attackers to read arbitrary files via a .. (dot dot) in the p0 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rq59-3hfm-xh53/GHSA-rq59-3hfm-xh53.json b/advisories/unreviewed/2022/04/GHSA-rq59-3hfm-xh53/GHSA-rq59-3hfm-xh53.json index 3b1dfa4af78..c4ae418183b 100644 --- a/advisories/unreviewed/2022/04/GHSA-rq59-3hfm-xh53/GHSA-rq59-3hfm-xh53.json +++ b/advisories/unreviewed/2022/04/GHSA-rq59-3hfm-xh53/GHSA-rq59-3hfm-xh53.json @@ -7,12 +7,8 @@ "CVE-2001-0156" ], "details": "VShell SSH gateway 1.0.1 and earlier has a default port forwarding rule of 0.0.0.0/0.0.0.0, which could allow local users to conduct arbitrary port forwarding to other systems.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rrcg-45g6-6q56/GHSA-rrcg-45g6-6q56.json b/advisories/unreviewed/2022/04/GHSA-rrcg-45g6-6q56/GHSA-rrcg-45g6-6q56.json index 0dd1e6891f7..edb77853d30 100644 --- a/advisories/unreviewed/2022/04/GHSA-rrcg-45g6-6q56/GHSA-rrcg-45g6-6q56.json +++ b/advisories/unreviewed/2022/04/GHSA-rrcg-45g6-6q56/GHSA-rrcg-45g6-6q56.json @@ -7,12 +7,8 @@ "CVE-2001-0228" ], "details": "Directory traversal vulnerability in GoAhead web server 2.1 and earlier allows remote attackers to read arbitrary files via a .. attack in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rx7h-2xmc-45q9/GHSA-rx7h-2xmc-45q9.json b/advisories/unreviewed/2022/04/GHSA-rx7h-2xmc-45q9/GHSA-rx7h-2xmc-45q9.json index ce45fea87cf..bfff0a0610e 100644 --- a/advisories/unreviewed/2022/04/GHSA-rx7h-2xmc-45q9/GHSA-rx7h-2xmc-45q9.json +++ b/advisories/unreviewed/2022/04/GHSA-rx7h-2xmc-45q9/GHSA-rx7h-2xmc-45q9.json @@ -7,12 +7,8 @@ "CVE-2001-0443" ], "details": "Buffer overflow in QPC QVT/Net Popd 4.20 in QVT/Net 5.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via (1) a long username, or (2) a long password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-rxqg-33f6-w6r8/GHSA-rxqg-33f6-w6r8.json b/advisories/unreviewed/2022/04/GHSA-rxqg-33f6-w6r8/GHSA-rxqg-33f6-w6r8.json index 2b7a609fb34..3dea1902df9 100644 --- a/advisories/unreviewed/2022/04/GHSA-rxqg-33f6-w6r8/GHSA-rxqg-33f6-w6r8.json +++ b/advisories/unreviewed/2022/04/GHSA-rxqg-33f6-w6r8/GHSA-rxqg-33f6-w6r8.json @@ -7,12 +7,8 @@ "CVE-2001-0161" ], "details": "Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v3cg-qj8r-xhpc/GHSA-v3cg-qj8r-xhpc.json b/advisories/unreviewed/2022/04/GHSA-v3cg-qj8r-xhpc/GHSA-v3cg-qj8r-xhpc.json index c7586fd090b..e512eb585e3 100644 --- a/advisories/unreviewed/2022/04/GHSA-v3cg-qj8r-xhpc/GHSA-v3cg-qj8r-xhpc.json +++ b/advisories/unreviewed/2022/04/GHSA-v3cg-qj8r-xhpc/GHSA-v3cg-qj8r-xhpc.json @@ -7,12 +7,8 @@ "CVE-2001-0133" ], "details": "The web administration interface for Interscan VirusWall 3.6.x and earlier does not use encryption, which could allow remote attackers to obtain the administrator password to sniff the administrator password via the setpasswd.cgi program or other HTTP GET requests that contain base64 encoded usernames and passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v3qr-73f4-xf4g/GHSA-v3qr-73f4-xf4g.json b/advisories/unreviewed/2022/04/GHSA-v3qr-73f4-xf4g/GHSA-v3qr-73f4-xf4g.json index 3646d17ee0f..a9630d697b2 100644 --- a/advisories/unreviewed/2022/04/GHSA-v3qr-73f4-xf4g/GHSA-v3qr-73f4-xf4g.json +++ b/advisories/unreviewed/2022/04/GHSA-v3qr-73f4-xf4g/GHSA-v3qr-73f4-xf4g.json @@ -7,12 +7,8 @@ "CVE-2001-0440" ], "details": "Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v4h9-fr4v-3jw4/GHSA-v4h9-fr4v-3jw4.json b/advisories/unreviewed/2022/04/GHSA-v4h9-fr4v-3jw4/GHSA-v4h9-fr4v-3jw4.json index 95fb7229404..56e68c3e2d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-v4h9-fr4v-3jw4/GHSA-v4h9-fr4v-3jw4.json +++ b/advisories/unreviewed/2022/04/GHSA-v4h9-fr4v-3jw4/GHSA-v4h9-fr4v-3jw4.json @@ -7,12 +7,8 @@ "CVE-2001-0280" ], "details": "Buffer overflow in MERCUR SMTP server 3.30 allows remote attackers to execute arbitrary commands via a long EXPN command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v5fv-q4p8-9g5q/GHSA-v5fv-q4p8-9g5q.json b/advisories/unreviewed/2022/04/GHSA-v5fv-q4p8-9g5q/GHSA-v5fv-q4p8-9g5q.json index 450a3e500fd..04958541f0c 100644 --- a/advisories/unreviewed/2022/04/GHSA-v5fv-q4p8-9g5q/GHSA-v5fv-q4p8-9g5q.json +++ b/advisories/unreviewed/2022/04/GHSA-v5fv-q4p8-9g5q/GHSA-v5fv-q4p8-9g5q.json @@ -7,12 +7,8 @@ "CVE-2001-0276" ], "details": "ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-v5g3-2g5g-c8rv/GHSA-v5g3-2g5g-c8rv.json b/advisories/unreviewed/2022/04/GHSA-v5g3-2g5g-c8rv/GHSA-v5g3-2g5g-c8rv.json index e85583957e3..4089d99a310 100644 --- a/advisories/unreviewed/2022/04/GHSA-v5g3-2g5g-c8rv/GHSA-v5g3-2g5g-c8rv.json +++ b/advisories/unreviewed/2022/04/GHSA-v5g3-2g5g-c8rv/GHSA-v5g3-2g5g-c8rv.json @@ -7,12 +7,8 @@ "CVE-2001-0148" ], "details": "The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the \"Frame Domain Verification\" vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vc44-99pj-mfhx/GHSA-vc44-99pj-mfhx.json b/advisories/unreviewed/2022/04/GHSA-vc44-99pj-mfhx/GHSA-vc44-99pj-mfhx.json index 4f8beeb4dbb..9dac3da86e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-vc44-99pj-mfhx/GHSA-vc44-99pj-mfhx.json +++ b/advisories/unreviewed/2022/04/GHSA-vc44-99pj-mfhx/GHSA-vc44-99pj-mfhx.json @@ -7,12 +7,8 @@ "CVE-2001-0424" ], "details": "BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vcmc-pr46-3j8f/GHSA-vcmc-pr46-3j8f.json b/advisories/unreviewed/2022/04/GHSA-vcmc-pr46-3j8f/GHSA-vcmc-pr46-3j8f.json index 751d37f6809..1e0741d9326 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcmc-pr46-3j8f/GHSA-vcmc-pr46-3j8f.json +++ b/advisories/unreviewed/2022/04/GHSA-vcmc-pr46-3j8f/GHSA-vcmc-pr46-3j8f.json @@ -7,12 +7,8 @@ "CVE-2001-0403" ], "details": "/opt/JSparm/bin/perfmon program in Solaris allows local users to create arbitrary files as root via the Logging File option in the GUI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vcwg-qg38-hv98/GHSA-vcwg-qg38-hv98.json b/advisories/unreviewed/2022/04/GHSA-vcwg-qg38-hv98/GHSA-vcwg-qg38-hv98.json index 7453e294f66..93c0d2db543 100644 --- a/advisories/unreviewed/2022/04/GHSA-vcwg-qg38-hv98/GHSA-vcwg-qg38-hv98.json +++ b/advisories/unreviewed/2022/04/GHSA-vcwg-qg38-hv98/GHSA-vcwg-qg38-hv98.json @@ -7,12 +7,8 @@ "CVE-2001-0113" ], "details": "statsconfig.pl in OmniHTTPd 2.07 allows remote attackers to execute arbitrary commands via the mostbrowsers parameter, whose value is used as part of a generated Perl script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vfmr-h6mj-5763/GHSA-vfmr-h6mj-5763.json b/advisories/unreviewed/2022/04/GHSA-vfmr-h6mj-5763/GHSA-vfmr-h6mj-5763.json index 28a937e8958..71df6521ccd 100644 --- a/advisories/unreviewed/2022/04/GHSA-vfmr-h6mj-5763/GHSA-vfmr-h6mj-5763.json +++ b/advisories/unreviewed/2022/04/GHSA-vfmr-h6mj-5763/GHSA-vfmr-h6mj-5763.json @@ -7,12 +7,8 @@ "CVE-2001-0360" ], "details": "Directory traversal vulnerability in help.cgi in Ikonboard 2.1.7b and earlier allows a remote attacker to read arbitrary files via a .. (dot dot) attack in the helpon parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vh6h-588x-ph4v/GHSA-vh6h-588x-ph4v.json b/advisories/unreviewed/2022/04/GHSA-vh6h-588x-ph4v/GHSA-vh6h-588x-ph4v.json index 384e1b2c647..39ab35733e2 100644 --- a/advisories/unreviewed/2022/04/GHSA-vh6h-588x-ph4v/GHSA-vh6h-588x-ph4v.json +++ b/advisories/unreviewed/2022/04/GHSA-vh6h-588x-ph4v/GHSA-vh6h-588x-ph4v.json @@ -7,12 +7,8 @@ "CVE-2001-0418" ], "details": "content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vm6g-9ggx-v8ff/GHSA-vm6g-9ggx-v8ff.json b/advisories/unreviewed/2022/04/GHSA-vm6g-9ggx-v8ff/GHSA-vm6g-9ggx-v8ff.json index bc7f022d357..027c3c89ecc 100644 --- a/advisories/unreviewed/2022/04/GHSA-vm6g-9ggx-v8ff/GHSA-vm6g-9ggx-v8ff.json +++ b/advisories/unreviewed/2022/04/GHSA-vm6g-9ggx-v8ff/GHSA-vm6g-9ggx-v8ff.json @@ -7,12 +7,8 @@ "CVE-2001-0201" ], "details": "The Postaci frontend for PostgreSQL does not properly filter characters such as semicolons, which could allow remote attackers to execute arbitrary SQL queries via the deletecontact.php program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vmf5-658c-r5vm/GHSA-vmf5-658c-r5vm.json b/advisories/unreviewed/2022/04/GHSA-vmf5-658c-r5vm/GHSA-vmf5-658c-r5vm.json index 481514dc013..e8e3afa2034 100644 --- a/advisories/unreviewed/2022/04/GHSA-vmf5-658c-r5vm/GHSA-vmf5-658c-r5vm.json +++ b/advisories/unreviewed/2022/04/GHSA-vmf5-658c-r5vm/GHSA-vmf5-658c-r5vm.json @@ -7,12 +7,8 @@ "CVE-2001-0097" ], "details": "The Web interface for Infinite Interchange 3.6.1 allows remote attackers to cause a denial of service (application crash) via a large POST request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vp6g-4h84-xm52/GHSA-vp6g-4h84-xm52.json b/advisories/unreviewed/2022/04/GHSA-vp6g-4h84-xm52/GHSA-vp6g-4h84-xm52.json index d75e8382320..5303c94310a 100644 --- a/advisories/unreviewed/2022/04/GHSA-vp6g-4h84-xm52/GHSA-vp6g-4h84-xm52.json +++ b/advisories/unreviewed/2022/04/GHSA-vp6g-4h84-xm52/GHSA-vp6g-4h84-xm52.json @@ -7,12 +7,8 @@ "CVE-2001-0402" ], "details": "IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers to bypass access restrictions by sending fragmented packets to a restricted port after sending unfragmented packets to an unrestricted port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vpgx-hxx7-gv5w/GHSA-vpgx-hxx7-gv5w.json b/advisories/unreviewed/2022/04/GHSA-vpgx-hxx7-gv5w/GHSA-vpgx-hxx7-gv5w.json index ef27f46eb9a..bf5589386dd 100644 --- a/advisories/unreviewed/2022/04/GHSA-vpgx-hxx7-gv5w/GHSA-vpgx-hxx7-gv5w.json +++ b/advisories/unreviewed/2022/04/GHSA-vpgx-hxx7-gv5w/GHSA-vpgx-hxx7-gv5w.json @@ -7,12 +7,8 @@ "CVE-2001-0154" ], "details": "HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vqwq-pjh9-438h/GHSA-vqwq-pjh9-438h.json b/advisories/unreviewed/2022/04/GHSA-vqwq-pjh9-438h/GHSA-vqwq-pjh9-438h.json index a8ecaea4cd8..63ca0127696 100644 --- a/advisories/unreviewed/2022/04/GHSA-vqwq-pjh9-438h/GHSA-vqwq-pjh9-438h.json +++ b/advisories/unreviewed/2022/04/GHSA-vqwq-pjh9-438h/GHSA-vqwq-pjh9-438h.json @@ -7,12 +7,8 @@ "CVE-2001-0430" ], "details": "Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vr33-2xp3-c44r/GHSA-vr33-2xp3-c44r.json b/advisories/unreviewed/2022/04/GHSA-vr33-2xp3-c44r/GHSA-vr33-2xp3-c44r.json index 88978db91d0..177eeb2cf6f 100644 --- a/advisories/unreviewed/2022/04/GHSA-vr33-2xp3-c44r/GHSA-vr33-2xp3-c44r.json +++ b/advisories/unreviewed/2022/04/GHSA-vr33-2xp3-c44r/GHSA-vr33-2xp3-c44r.json @@ -7,12 +7,8 @@ "CVE-2001-0264" ], "details": "Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows remote attackers to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the attacker to sniff the connection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vrj6-pf44-5f3r/GHSA-vrj6-pf44-5f3r.json b/advisories/unreviewed/2022/04/GHSA-vrj6-pf44-5f3r/GHSA-vrj6-pf44-5f3r.json index 3745f882381..15c07f0f24f 100644 --- a/advisories/unreviewed/2022/04/GHSA-vrj6-pf44-5f3r/GHSA-vrj6-pf44-5f3r.json +++ b/advisories/unreviewed/2022/04/GHSA-vrj6-pf44-5f3r/GHSA-vrj6-pf44-5f3r.json @@ -7,12 +7,8 @@ "CVE-2001-0456" ], "details": "postinst installation script for Proftpd in Debian 2.2 does not properly change the \"run as uid/gid root\" configuration when the user enables anonymous access, which causes the server to run at a higher privilege than intended.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vwf5-w456-qjfw/GHSA-vwf5-w456-qjfw.json b/advisories/unreviewed/2022/04/GHSA-vwf5-w456-qjfw/GHSA-vwf5-w456-qjfw.json index bcaaeef9e81..1011935f9f1 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwf5-w456-qjfw/GHSA-vwf5-w456-qjfw.json +++ b/advisories/unreviewed/2022/04/GHSA-vwf5-w456-qjfw/GHSA-vwf5-w456-qjfw.json @@ -7,12 +7,8 @@ "CVE-2001-0442" ], "details": "Buffer overflow in Mercury MTA POP3 server for NetWare 1.48 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long APOP command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-vwrh-j67m-m9gp/GHSA-vwrh-j67m-m9gp.json b/advisories/unreviewed/2022/04/GHSA-vwrh-j67m-m9gp/GHSA-vwrh-j67m-m9gp.json index 1139c308ad2..471cfccfa26 100644 --- a/advisories/unreviewed/2022/04/GHSA-vwrh-j67m-m9gp/GHSA-vwrh-j67m-m9gp.json +++ b/advisories/unreviewed/2022/04/GHSA-vwrh-j67m-m9gp/GHSA-vwrh-j67m-m9gp.json @@ -7,12 +7,8 @@ "CVE-2001-0346" ], "details": "Handle leak in Microsoft Windows 2000 telnet service allows attackers to cause a denial of service by starting a large number of sessions and terminating them.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w2h5-cv3c-jwj2/GHSA-w2h5-cv3c-jwj2.json b/advisories/unreviewed/2022/04/GHSA-w2h5-cv3c-jwj2/GHSA-w2h5-cv3c-jwj2.json index 021668b7043..7ac918b2ece 100644 --- a/advisories/unreviewed/2022/04/GHSA-w2h5-cv3c-jwj2/GHSA-w2h5-cv3c-jwj2.json +++ b/advisories/unreviewed/2022/04/GHSA-w2h5-cv3c-jwj2/GHSA-w2h5-cv3c-jwj2.json @@ -7,12 +7,8 @@ "CVE-2001-0119" ], "details": "getty_ps 2.0.7j allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4g7-gwxv-m92f/GHSA-w4g7-gwxv-m92f.json b/advisories/unreviewed/2022/04/GHSA-w4g7-gwxv-m92f/GHSA-w4g7-gwxv-m92f.json index b00109188ca..3f49a0eefc5 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4g7-gwxv-m92f/GHSA-w4g7-gwxv-m92f.json +++ b/advisories/unreviewed/2022/04/GHSA-w4g7-gwxv-m92f/GHSA-w4g7-gwxv-m92f.json @@ -7,12 +7,8 @@ "CVE-2001-0214" ], "details": "Way-board CGI program allows remote attackers to read arbitrary files by specifying the filename in the db parameter and terminating the filename with a null byte.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w4rj-94gh-6jgf/GHSA-w4rj-94gh-6jgf.json b/advisories/unreviewed/2022/04/GHSA-w4rj-94gh-6jgf/GHSA-w4rj-94gh-6jgf.json index d0943c37d8b..ec522d90694 100644 --- a/advisories/unreviewed/2022/04/GHSA-w4rj-94gh-6jgf/GHSA-w4rj-94gh-6jgf.json +++ b/advisories/unreviewed/2022/04/GHSA-w4rj-94gh-6jgf/GHSA-w4rj-94gh-6jgf.json @@ -7,12 +7,8 @@ "CVE-2001-0344" ], "details": "An SQL query method in Microsoft SQL Server 2000 Gold and 7.0 using Mixed Mode allows local database users to gain privileges by reusing a cached connection of the sa administrator account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w66h-ccg8-f6hg/GHSA-w66h-ccg8-f6hg.json b/advisories/unreviewed/2022/04/GHSA-w66h-ccg8-f6hg/GHSA-w66h-ccg8-f6hg.json index 6e5f2669ae3..02f6697683a 100644 --- a/advisories/unreviewed/2022/04/GHSA-w66h-ccg8-f6hg/GHSA-w66h-ccg8-f6hg.json +++ b/advisories/unreviewed/2022/04/GHSA-w66h-ccg8-f6hg/GHSA-w66h-ccg8-f6hg.json @@ -7,12 +7,8 @@ "CVE-2001-0258" ], "details": "The Easycom/Safecom Print Server (firmware 404.590) PrintGuide server allows remote attackers to cause a denial of service via a large number of connections that send null characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w77m-2mfj-gf6v/GHSA-w77m-2mfj-gf6v.json b/advisories/unreviewed/2022/04/GHSA-w77m-2mfj-gf6v/GHSA-w77m-2mfj-gf6v.json index ad8170a9309..0c670f232ac 100644 --- a/advisories/unreviewed/2022/04/GHSA-w77m-2mfj-gf6v/GHSA-w77m-2mfj-gf6v.json +++ b/advisories/unreviewed/2022/04/GHSA-w77m-2mfj-gf6v/GHSA-w77m-2mfj-gf6v.json @@ -7,12 +7,8 @@ "CVE-2001-0323" ], "details": "The ICMP path MTU (PMTU) discovery feature in various UNIX systems allows remote attackers to cause a denial of service by spoofing \"ICMP Fragmentation needed but Don't Fragment (DF) set\" packets between two target hosts, which could cause one host to lower its MTU when transmitting to the other host.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w7f5-4j4j-pr48/GHSA-w7f5-4j4j-pr48.json b/advisories/unreviewed/2022/04/GHSA-w7f5-4j4j-pr48/GHSA-w7f5-4j4j-pr48.json index eb505444981..79b87980fcd 100644 --- a/advisories/unreviewed/2022/04/GHSA-w7f5-4j4j-pr48/GHSA-w7f5-4j4j-pr48.json +++ b/advisories/unreviewed/2022/04/GHSA-w7f5-4j4j-pr48/GHSA-w7f5-4j4j-pr48.json @@ -7,12 +7,8 @@ "CVE-2001-0322" ], "details": "MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-w9xw-2x44-pv33/GHSA-w9xw-2x44-pv33.json b/advisories/unreviewed/2022/04/GHSA-w9xw-2x44-pv33/GHSA-w9xw-2x44-pv33.json index 246f91f43e7..21be91c89c6 100644 --- a/advisories/unreviewed/2022/04/GHSA-w9xw-2x44-pv33/GHSA-w9xw-2x44-pv33.json +++ b/advisories/unreviewed/2022/04/GHSA-w9xw-2x44-pv33/GHSA-w9xw-2x44-pv33.json @@ -7,12 +7,8 @@ "CVE-2001-0220" ], "details": "Buffer overflow in ja-elvis and ko-helvis ports of elvis allow local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wcch-8469-j6x6/GHSA-wcch-8469-j6x6.json b/advisories/unreviewed/2022/04/GHSA-wcch-8469-j6x6/GHSA-wcch-8469-j6x6.json index bd1af06e188..45825686482 100644 --- a/advisories/unreviewed/2022/04/GHSA-wcch-8469-j6x6/GHSA-wcch-8469-j6x6.json +++ b/advisories/unreviewed/2022/04/GHSA-wcch-8469-j6x6/GHSA-wcch-8469-j6x6.json @@ -7,12 +7,8 @@ "CVE-2001-0278" ], "details": "Vulnerability in linkeditor in HP MPE/iX 6.5 and earlier allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wcg7-9792-924w/GHSA-wcg7-9792-924w.json b/advisories/unreviewed/2022/04/GHSA-wcg7-9792-924w/GHSA-wcg7-9792-924w.json index 9c515f03232..3a3789cef82 100644 --- a/advisories/unreviewed/2022/04/GHSA-wcg7-9792-924w/GHSA-wcg7-9792-924w.json +++ b/advisories/unreviewed/2022/04/GHSA-wcg7-9792-924w/GHSA-wcg7-9792-924w.json @@ -7,12 +7,8 @@ "CVE-2001-0179" ], "details": "Allaire JRun 3.0 allows remote attackers to list contents of the WEB-INF directory, and the web.xml file in the WEB-INF directory, via a malformed URL that contains a \".\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wcx5-8mhq-v3p3/GHSA-wcx5-8mhq-v3p3.json b/advisories/unreviewed/2022/04/GHSA-wcx5-8mhq-v3p3/GHSA-wcx5-8mhq-v3p3.json index 51bfbae1e3c..c200637b6fb 100644 --- a/advisories/unreviewed/2022/04/GHSA-wcx5-8mhq-v3p3/GHSA-wcx5-8mhq-v3p3.json +++ b/advisories/unreviewed/2022/04/GHSA-wcx5-8mhq-v3p3/GHSA-wcx5-8mhq-v3p3.json @@ -7,12 +7,8 @@ "CVE-2001-0210" ], "details": "Directory traversal vulnerability in commerce.cgi CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wfx7-5qmx-834g/GHSA-wfx7-5qmx-834g.json b/advisories/unreviewed/2022/04/GHSA-wfx7-5qmx-834g/GHSA-wfx7-5qmx-834g.json index 622bc836e18..68e46cf4166 100644 --- a/advisories/unreviewed/2022/04/GHSA-wfx7-5qmx-834g/GHSA-wfx7-5qmx-834g.json +++ b/advisories/unreviewed/2022/04/GHSA-wfx7-5qmx-834g/GHSA-wfx7-5qmx-834g.json @@ -7,12 +7,8 @@ "CVE-2001-0447" ], "details": "Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request containing \"%2e\" (dot dot) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wh7x-gp4q-6599/GHSA-wh7x-gp4q-6599.json b/advisories/unreviewed/2022/04/GHSA-wh7x-gp4q-6599/GHSA-wh7x-gp4q-6599.json index 5849f59549d..9ea8ec44941 100644 --- a/advisories/unreviewed/2022/04/GHSA-wh7x-gp4q-6599/GHSA-wh7x-gp4q-6599.json +++ b/advisories/unreviewed/2022/04/GHSA-wh7x-gp4q-6599/GHSA-wh7x-gp4q-6599.json @@ -7,12 +7,8 @@ "CVE-2001-0226" ], "details": "Directory traversal vulnerability in BiblioWeb web server 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) or ... attack in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-whq7-f2w6-983g/GHSA-whq7-f2w6-983g.json b/advisories/unreviewed/2022/04/GHSA-whq7-f2w6-983g/GHSA-whq7-f2w6-983g.json index 9168bc2955a..480f17b021f 100644 --- a/advisories/unreviewed/2022/04/GHSA-whq7-f2w6-983g/GHSA-whq7-f2w6-983g.json +++ b/advisories/unreviewed/2022/04/GHSA-whq7-f2w6-983g/GHSA-whq7-f2w6-983g.json @@ -7,12 +7,8 @@ "CVE-2001-0337" ], "details": "The Microsoft MS01-014 and MS01-016 patches for IIS 5.0 and earlier introduce a memory leak which allows attackers to cause a denial of service via a series of requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-whv9-37w9-wj7x/GHSA-whv9-37w9-wj7x.json b/advisories/unreviewed/2022/04/GHSA-whv9-37w9-wj7x/GHSA-whv9-37w9-wj7x.json index 1fe23197cd0..749b1f24a1e 100644 --- a/advisories/unreviewed/2022/04/GHSA-whv9-37w9-wj7x/GHSA-whv9-37w9-wj7x.json +++ b/advisories/unreviewed/2022/04/GHSA-whv9-37w9-wj7x/GHSA-whv9-37w9-wj7x.json @@ -7,12 +7,8 @@ "CVE-2001-0459" ], "details": "Buffer overflows in ascdc Afterstep while running setuid allows local users to gain root privileges via a long (1) -d option, (2) -m option, or (3) -f option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-whwj-f6f6-552j/GHSA-whwj-f6f6-552j.json b/advisories/unreviewed/2022/04/GHSA-whwj-f6f6-552j/GHSA-whwj-f6f6-552j.json index 4c005e4309d..159ed3e8b70 100644 --- a/advisories/unreviewed/2022/04/GHSA-whwj-f6f6-552j/GHSA-whwj-f6f6-552j.json +++ b/advisories/unreviewed/2022/04/GHSA-whwj-f6f6-552j/GHSA-whwj-f6f6-552j.json @@ -7,12 +7,8 @@ "CVE-2001-0348" ], "details": "Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command that contains a backspace.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wjv7-cjv5-fcg6/GHSA-wjv7-cjv5-fcg6.json b/advisories/unreviewed/2022/04/GHSA-wjv7-cjv5-fcg6/GHSA-wjv7-cjv5-fcg6.json index 38aa10b485e..776e5e55021 100644 --- a/advisories/unreviewed/2022/04/GHSA-wjv7-cjv5-fcg6/GHSA-wjv7-cjv5-fcg6.json +++ b/advisories/unreviewed/2022/04/GHSA-wjv7-cjv5-fcg6/GHSA-wjv7-cjv5-fcg6.json @@ -7,12 +7,8 @@ "CVE-2001-0116" ], "details": "gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wm5j-449h-wq3g/GHSA-wm5j-449h-wq3g.json b/advisories/unreviewed/2022/04/GHSA-wm5j-449h-wq3g/GHSA-wm5j-449h-wq3g.json index 96ee439e6a0..cd2ffc65be6 100644 --- a/advisories/unreviewed/2022/04/GHSA-wm5j-449h-wq3g/GHSA-wm5j-449h-wq3g.json +++ b/advisories/unreviewed/2022/04/GHSA-wm5j-449h-wq3g/GHSA-wm5j-449h-wq3g.json @@ -7,12 +7,8 @@ "CVE-2001-0433" ], "details": "Buffer overflow in Savant 3.0 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Host HTTP header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wmc3-pvj7-x55v/GHSA-wmc3-pvj7-x55v.json b/advisories/unreviewed/2022/04/GHSA-wmc3-pvj7-x55v/GHSA-wmc3-pvj7-x55v.json index 2f966e9276a..8cc09a0f4d2 100644 --- a/advisories/unreviewed/2022/04/GHSA-wmc3-pvj7-x55v/GHSA-wmc3-pvj7-x55v.json +++ b/advisories/unreviewed/2022/04/GHSA-wmc3-pvj7-x55v/GHSA-wmc3-pvj7-x55v.json @@ -7,12 +7,8 @@ "CVE-2001-0464" ], "details": "Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (timezone) parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wv7c-2r27-4qr5/GHSA-wv7c-2r27-4qr5.json b/advisories/unreviewed/2022/04/GHSA-wv7c-2r27-4qr5/GHSA-wv7c-2r27-4qr5.json index b54bbb64ef8..9a41c331ef5 100644 --- a/advisories/unreviewed/2022/04/GHSA-wv7c-2r27-4qr5/GHSA-wv7c-2r27-4qr5.json +++ b/advisories/unreviewed/2022/04/GHSA-wv7c-2r27-4qr5/GHSA-wv7c-2r27-4qr5.json @@ -7,12 +7,8 @@ "CVE-2001-0230" ], "details": "Buffer overflow in dc20ctrl before 0.4_1 in FreeBSD, and possibly other operating systems, allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wvm2-gmh5-gjgx/GHSA-wvm2-gmh5-gjgx.json b/advisories/unreviewed/2022/04/GHSA-wvm2-gmh5-gjgx/GHSA-wvm2-gmh5-gjgx.json index d3776a1c417..6cbf5846e82 100644 --- a/advisories/unreviewed/2022/04/GHSA-wvm2-gmh5-gjgx/GHSA-wvm2-gmh5-gjgx.json +++ b/advisories/unreviewed/2022/04/GHSA-wvm2-gmh5-gjgx/GHSA-wvm2-gmh5-gjgx.json @@ -7,12 +7,8 @@ "CVE-2001-0376" ], "details": "SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware using IPSEC with IKE pre-shared keys do not allow for the use of full 128 byte IKE pre-shared keys, which is the intended design of the IKE pre-shared key, and only support 48 byte keys. This allows a remote attacker to brute force attack the pre-shared keys with significantly less resources than if the full 128 byte IKE pre-shared keys were used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wwvj-rf2v-q344/GHSA-wwvj-rf2v-q344.json b/advisories/unreviewed/2022/04/GHSA-wwvj-rf2v-q344/GHSA-wwvj-rf2v-q344.json index 7fd1ac1d792..976c22fc096 100644 --- a/advisories/unreviewed/2022/04/GHSA-wwvj-rf2v-q344/GHSA-wwvj-rf2v-q344.json +++ b/advisories/unreviewed/2022/04/GHSA-wwvj-rf2v-q344/GHSA-wwvj-rf2v-q344.json @@ -7,12 +7,8 @@ "CVE-2001-0364" ], "details": "SSH Communications Security sshd 2.4 for Windows allows remote attackers to create a denial of service via a large number of simultaneous connections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wx94-8j26-vf7x/GHSA-wx94-8j26-vf7x.json b/advisories/unreviewed/2022/04/GHSA-wx94-8j26-vf7x/GHSA-wx94-8j26-vf7x.json index b402795968c..390f190ee56 100644 --- a/advisories/unreviewed/2022/04/GHSA-wx94-8j26-vf7x/GHSA-wx94-8j26-vf7x.json +++ b/advisories/unreviewed/2022/04/GHSA-wx94-8j26-vf7x/GHSA-wx94-8j26-vf7x.json @@ -7,12 +7,8 @@ "CVE-2001-0121" ], "details": "ImageCast Control Center 4.1.0 allows remote attackers to cause a denial of service (resource exhaustion or system crash) via a long string to port 12002.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-wxmv-rqxc-2vp4/GHSA-wxmv-rqxc-2vp4.json b/advisories/unreviewed/2022/04/GHSA-wxmv-rqxc-2vp4/GHSA-wxmv-rqxc-2vp4.json index 413924d6f6f..418f023c559 100644 --- a/advisories/unreviewed/2022/04/GHSA-wxmv-rqxc-2vp4/GHSA-wxmv-rqxc-2vp4.json +++ b/advisories/unreviewed/2022/04/GHSA-wxmv-rqxc-2vp4/GHSA-wxmv-rqxc-2vp4.json @@ -7,12 +7,8 @@ "CVE-2001-0164" ], "details": "Buffer overflow in Netscape Directory Server 4.12 and earlier allows remote attackers to cause a denial of service or execute arbitrary commands via a malformed recipient field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x33m-hv2q-xjf3/GHSA-x33m-hv2q-xjf3.json b/advisories/unreviewed/2022/04/GHSA-x33m-hv2q-xjf3/GHSA-x33m-hv2q-xjf3.json index b056bb9e5a7..bd198bde454 100644 --- a/advisories/unreviewed/2022/04/GHSA-x33m-hv2q-xjf3/GHSA-x33m-hv2q-xjf3.json +++ b/advisories/unreviewed/2022/04/GHSA-x33m-hv2q-xjf3/GHSA-x33m-hv2q-xjf3.json @@ -7,12 +7,8 @@ "CVE-2001-0270" ], "details": "Marconi ASX-1000 ASX switches allow remote attackers to cause a denial of service in the telnet and web management interfaces via a malformed packet with the SYN-FIN and More Fragments attributes set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x4cr-2cm2-hc5c/GHSA-x4cr-2cm2-hc5c.json b/advisories/unreviewed/2022/04/GHSA-x4cr-2cm2-hc5c/GHSA-x4cr-2cm2-hc5c.json index 4a6af4bf698..ffe5a825082 100644 --- a/advisories/unreviewed/2022/04/GHSA-x4cr-2cm2-hc5c/GHSA-x4cr-2cm2-hc5c.json +++ b/advisories/unreviewed/2022/04/GHSA-x4cr-2cm2-hc5c/GHSA-x4cr-2cm2-hc5c.json @@ -7,12 +7,8 @@ "CVE-2001-0339" ], "details": "Internet Explorer 5.5 and earlier allows remote attackers to display a URL in the address bar that is different than the URL that is actually being displayed, which could be used in web site spoofing attacks, aka the \"Web page spoofing vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x59r-8x5g-cc3v/GHSA-x59r-8x5g-cc3v.json b/advisories/unreviewed/2022/04/GHSA-x59r-8x5g-cc3v/GHSA-x59r-8x5g-cc3v.json index 5bf826c83d5..4d75fd95d53 100644 --- a/advisories/unreviewed/2022/04/GHSA-x59r-8x5g-cc3v/GHSA-x59r-8x5g-cc3v.json +++ b/advisories/unreviewed/2022/04/GHSA-x59r-8x5g-cc3v/GHSA-x59r-8x5g-cc3v.json @@ -7,12 +7,8 @@ "CVE-2001-0225" ], "details": "fortran math component in Infobot 0.44.5.3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x5pq-xmx6-4vvj/GHSA-x5pq-xmx6-4vvj.json b/advisories/unreviewed/2022/04/GHSA-x5pq-xmx6-4vvj/GHSA-x5pq-xmx6-4vvj.json index 82bd6ae7b0a..89f31b8274e 100644 --- a/advisories/unreviewed/2022/04/GHSA-x5pq-xmx6-4vvj/GHSA-x5pq-xmx6-4vvj.json +++ b/advisories/unreviewed/2022/04/GHSA-x5pq-xmx6-4vvj/GHSA-x5pq-xmx6-4vvj.json @@ -7,12 +7,8 @@ "CVE-2001-0462" ], "details": "Directory traversal vulnerability in Perl web server 0.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-x9wg-cp9h-wgfj/GHSA-x9wg-cp9h-wgfj.json b/advisories/unreviewed/2022/04/GHSA-x9wg-cp9h-wgfj/GHSA-x9wg-cp9h-wgfj.json index 7a13842ebc4..a5026f29954 100644 --- a/advisories/unreviewed/2022/04/GHSA-x9wg-cp9h-wgfj/GHSA-x9wg-cp9h-wgfj.json +++ b/advisories/unreviewed/2022/04/GHSA-x9wg-cp9h-wgfj/GHSA-x9wg-cp9h-wgfj.json @@ -7,12 +7,8 @@ "CVE-2001-0290" ], "details": "Vulnerability in Mailman 2.0.1 and earlier allows list administrators to obtain user passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xgp2-f259-4rjq/GHSA-xgp2-f259-4rjq.json b/advisories/unreviewed/2022/04/GHSA-xgp2-f259-4rjq/GHSA-xgp2-f259-4rjq.json index ab9bfa5338b..7862ebaf16b 100644 --- a/advisories/unreviewed/2022/04/GHSA-xgp2-f259-4rjq/GHSA-xgp2-f259-4rjq.json +++ b/advisories/unreviewed/2022/04/GHSA-xgp2-f259-4rjq/GHSA-xgp2-f259-4rjq.json @@ -7,12 +7,8 @@ "CVE-2001-0193" ], "details": "Format string vulnerability in man in some Linux distributions allows local users to gain privileges via a malformed -l parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xh8x-v85v-9297/GHSA-xh8x-v85v-9297.json b/advisories/unreviewed/2022/04/GHSA-xh8x-v85v-9297/GHSA-xh8x-v85v-9297.json index e3102565bdc..34a0a08f41b 100644 --- a/advisories/unreviewed/2022/04/GHSA-xh8x-v85v-9297/GHSA-xh8x-v85v-9297.json +++ b/advisories/unreviewed/2022/04/GHSA-xh8x-v85v-9297/GHSA-xh8x-v85v-9297.json @@ -7,12 +7,8 @@ "CVE-2001-0329" ], "details": "Bugzilla 2.10 allows remote attackers to execute arbitrary commands via shell metacharacters in a username that is then processed by (1) the Bugzilla_login cookie in post_bug.cgi, or (2) the who parameter in process_bug.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xjcv-642v-3h49/GHSA-xjcv-642v-3h49.json b/advisories/unreviewed/2022/04/GHSA-xjcv-642v-3h49/GHSA-xjcv-642v-3h49.json index c75cebbabda..aa32ece26e0 100644 --- a/advisories/unreviewed/2022/04/GHSA-xjcv-642v-3h49/GHSA-xjcv-642v-3h49.json +++ b/advisories/unreviewed/2022/04/GHSA-xjcv-642v-3h49/GHSA-xjcv-642v-3h49.json @@ -7,12 +7,8 @@ "CVE-2001-0174" ], "details": "Buffer overflow in Trend Micro Virus Buster 2001 8.00 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a large \"To\" address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xmp5-g5f6-23g3/GHSA-xmp5-g5f6-23g3.json b/advisories/unreviewed/2022/04/GHSA-xmp5-g5f6-23g3/GHSA-xmp5-g5f6-23g3.json index cb0c3c6526d..c01b059dc64 100644 --- a/advisories/unreviewed/2022/04/GHSA-xmp5-g5f6-23g3/GHSA-xmp5-g5f6-23g3.json +++ b/advisories/unreviewed/2022/04/GHSA-xmp5-g5f6-23g3/GHSA-xmp5-g5f6-23g3.json @@ -7,12 +7,8 @@ "CVE-2001-0141" ], "details": "mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xp8h-mw33-82v7/GHSA-xp8h-mw33-82v7.json b/advisories/unreviewed/2022/04/GHSA-xp8h-mw33-82v7/GHSA-xp8h-mw33-82v7.json index 9bee9b5d931..273a98ba71d 100644 --- a/advisories/unreviewed/2022/04/GHSA-xp8h-mw33-82v7/GHSA-xp8h-mw33-82v7.json +++ b/advisories/unreviewed/2022/04/GHSA-xp8h-mw33-82v7/GHSA-xp8h-mw33-82v7.json @@ -7,12 +7,8 @@ "CVE-2001-0143" ], "details": "vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xqfx-vw59-w985/GHSA-xqfx-vw59-w985.json b/advisories/unreviewed/2022/04/GHSA-xqfx-vw59-w985/GHSA-xqfx-vw59-w985.json index 9749a669c29..c9ab97cdaa6 100644 --- a/advisories/unreviewed/2022/04/GHSA-xqfx-vw59-w985/GHSA-xqfx-vw59-w985.json +++ b/advisories/unreviewed/2022/04/GHSA-xqfx-vw59-w985/GHSA-xqfx-vw59-w985.json @@ -7,12 +7,8 @@ "CVE-2001-0125" ], "details": "exmh 2.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the exmhErrorMsg temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xr55-38cx-p982/GHSA-xr55-38cx-p982.json b/advisories/unreviewed/2022/04/GHSA-xr55-38cx-p982/GHSA-xr55-38cx-p982.json index 4a354209d77..f55c43d5dc2 100644 --- a/advisories/unreviewed/2022/04/GHSA-xr55-38cx-p982/GHSA-xr55-38cx-p982.json +++ b/advisories/unreviewed/2022/04/GHSA-xr55-38cx-p982/GHSA-xr55-38cx-p982.json @@ -7,12 +7,8 @@ "CVE-2001-0139" ], "details": "inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xrvw-f7p8-2hqm/GHSA-xrvw-f7p8-2hqm.json b/advisories/unreviewed/2022/04/GHSA-xrvw-f7p8-2hqm/GHSA-xrvw-f7p8-2hqm.json index d9822b6c926..e23fe94ace7 100644 --- a/advisories/unreviewed/2022/04/GHSA-xrvw-f7p8-2hqm/GHSA-xrvw-f7p8-2hqm.json +++ b/advisories/unreviewed/2022/04/GHSA-xrvw-f7p8-2hqm/GHSA-xrvw-f7p8-2hqm.json @@ -7,12 +7,8 @@ "CVE-2001-0144" ], "details": "CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xxh4-gjrf-3883/GHSA-xxh4-gjrf-3883.json b/advisories/unreviewed/2022/04/GHSA-xxh4-gjrf-3883/GHSA-xxh4-gjrf-3883.json index 4066a965701..baac5b10924 100644 --- a/advisories/unreviewed/2022/04/GHSA-xxh4-gjrf-3883/GHSA-xxh4-gjrf-3883.json +++ b/advisories/unreviewed/2022/04/GHSA-xxh4-gjrf-3883/GHSA-xxh4-gjrf-3883.json @@ -7,12 +7,8 @@ "CVE-2001-0110" ], "details": "Buffer overflow in jaZip Zip/Jaz drive manager allows local users to gain root privileges via a long DISPLAY environmental variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/04/GHSA-xxvp-3855-w9fv/GHSA-xxvp-3855-w9fv.json b/advisories/unreviewed/2022/04/GHSA-xxvp-3855-w9fv/GHSA-xxvp-3855-w9fv.json index 70dbabc4085..04a20da5ac2 100644 --- a/advisories/unreviewed/2022/04/GHSA-xxvp-3855-w9fv/GHSA-xxvp-3855-w9fv.json +++ b/advisories/unreviewed/2022/04/GHSA-xxvp-3855-w9fv/GHSA-xxvp-3855-w9fv.json @@ -7,12 +7,8 @@ "CVE-2001-0204" ], "details": "Watchguard Firebox II allows remote attackers to cause a denial of service by establishing multiple connections and sending malformed PPTP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-233g-v6pm-h695/GHSA-233g-v6pm-h695.json b/advisories/unreviewed/2022/05/GHSA-233g-v6pm-h695/GHSA-233g-v6pm-h695.json index 2a52d068844..c9bb012a723 100644 --- a/advisories/unreviewed/2022/05/GHSA-233g-v6pm-h695/GHSA-233g-v6pm-h695.json +++ b/advisories/unreviewed/2022/05/GHSA-233g-v6pm-h695/GHSA-233g-v6pm-h695.json @@ -7,12 +7,8 @@ "CVE-2020-35577" ], "details": "In Endalia Selection Portal before 4.205.0, an Insecure Direct Object Reference (IDOR) allows any authenticated user to download every file uploaded to the platform by changing the value of the file identifier (aka CommonDownload identification number).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23jg-2v84-hg56/GHSA-23jg-2v84-hg56.json b/advisories/unreviewed/2022/05/GHSA-23jg-2v84-hg56/GHSA-23jg-2v84-hg56.json index 7c722ae3b7a..e1efde94e89 100644 --- a/advisories/unreviewed/2022/05/GHSA-23jg-2v84-hg56/GHSA-23jg-2v84-hg56.json +++ b/advisories/unreviewed/2022/05/GHSA-23jg-2v84-hg56/GHSA-23jg-2v84-hg56.json @@ -7,12 +7,8 @@ "CVE-2021-22652" ], "details": "Access to the Advantech iView versions prior to v5.7.03.6112 configuration are missing authentication, which may allow an unauthorized attacker to change the configuration and obtain code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24f6-gm96-3c56/GHSA-24f6-gm96-3c56.json b/advisories/unreviewed/2022/05/GHSA-24f6-gm96-3c56/GHSA-24f6-gm96-3c56.json index 550ea91b0d8..b7e1722c0bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-24f6-gm96-3c56/GHSA-24f6-gm96-3c56.json +++ b/advisories/unreviewed/2022/05/GHSA-24f6-gm96-3c56/GHSA-24f6-gm96-3c56.json @@ -7,12 +7,8 @@ "CVE-2021-26713" ], "details": "A stack-based buffer overflow in res_rtp_asterisk.c in Sangoma Asterisk before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6 allows an authenticated WebRTC client to cause an Asterisk crash by sending multiple hold/unhold requests in quick succession. This is caused by a signedness comparison mismatch.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24g3-3pph-m744/GHSA-24g3-3pph-m744.json b/advisories/unreviewed/2022/05/GHSA-24g3-3pph-m744/GHSA-24g3-3pph-m744.json index 1245eb0b995..f4ae4689a99 100644 --- a/advisories/unreviewed/2022/05/GHSA-24g3-3pph-m744/GHSA-24g3-3pph-m744.json +++ b/advisories/unreviewed/2022/05/GHSA-24g3-3pph-m744/GHSA-24g3-3pph-m744.json @@ -7,12 +7,8 @@ "CVE-2020-29027" ], "details": "Cross-site Scripting (XSS) vulnerability in GUI of Secomea SiteManager could allow an attacker to cause an XSS Attack. This issue affects: Secomea SiteManager all versions prior to 9.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24pq-9mvp-239w/GHSA-24pq-9mvp-239w.json b/advisories/unreviewed/2022/05/GHSA-24pq-9mvp-239w/GHSA-24pq-9mvp-239w.json index 95405c68e05..db75660c51f 100644 --- a/advisories/unreviewed/2022/05/GHSA-24pq-9mvp-239w/GHSA-24pq-9mvp-239w.json +++ b/advisories/unreviewed/2022/05/GHSA-24pq-9mvp-239w/GHSA-24pq-9mvp-239w.json @@ -7,12 +7,8 @@ "CVE-2020-12365" ], "details": "Untrusted pointer dereference in some Intel(R) Graphics Drivers before versions 15.33.51.5146, 15.45.32.5145, 15.36.39.5144 and 15.40.46.5143 may allow an authenticated user to potentially denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-24rm-j85r-654h/GHSA-24rm-j85r-654h.json b/advisories/unreviewed/2022/05/GHSA-24rm-j85r-654h/GHSA-24rm-j85r-654h.json index 1d2f7bde5eb..b09a0d785c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-24rm-j85r-654h/GHSA-24rm-j85r-654h.json +++ b/advisories/unreviewed/2022/05/GHSA-24rm-j85r-654h/GHSA-24rm-j85r-654h.json @@ -7,12 +7,8 @@ "CVE-2020-24505" ], "details": "Insufficient input validation in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 7.3 may allow a privileged user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-25m7-6389-m7rq/GHSA-25m7-6389-m7rq.json b/advisories/unreviewed/2022/05/GHSA-25m7-6389-m7rq/GHSA-25m7-6389-m7rq.json index 7058094926d..d2f5011ebc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-25m7-6389-m7rq/GHSA-25m7-6389-m7rq.json +++ b/advisories/unreviewed/2022/05/GHSA-25m7-6389-m7rq/GHSA-25m7-6389-m7rq.json @@ -7,12 +7,8 @@ "CVE-2021-20403" ], "details": "IBM Security Verify Information Queue 1.0.6 and 1.0.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-26wj-j8fv-r797/GHSA-26wj-j8fv-r797.json b/advisories/unreviewed/2022/05/GHSA-26wj-j8fv-r797/GHSA-26wj-j8fv-r797.json index 8fdc303a544..7e63399ba23 100644 --- a/advisories/unreviewed/2022/05/GHSA-26wj-j8fv-r797/GHSA-26wj-j8fv-r797.json +++ b/advisories/unreviewed/2022/05/GHSA-26wj-j8fv-r797/GHSA-26wj-j8fv-r797.json @@ -7,12 +7,8 @@ "CVE-2020-0523" ], "details": "Improper access control in the firmware for the Intel(R) Ethernet I210 Controller series of network adapters before version 3.30 may potentially allow a privileged user to enable a denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-274h-c788-hf3c/GHSA-274h-c788-hf3c.json b/advisories/unreviewed/2022/05/GHSA-274h-c788-hf3c/GHSA-274h-c788-hf3c.json index f33489325ed..56f009f2db5 100644 --- a/advisories/unreviewed/2022/05/GHSA-274h-c788-hf3c/GHSA-274h-c788-hf3c.json +++ b/advisories/unreviewed/2022/05/GHSA-274h-c788-hf3c/GHSA-274h-c788-hf3c.json @@ -7,12 +7,8 @@ "CVE-2021-27212" ], "details": "In OpenLDAP through 2.4.57 and 2.5.x through 2.5.1alpha, an assertion failure in slapd can occur in the issuerAndThisUpdateCheck function via a crafted packet, resulting in a denial of service (daemon exit) via a short timestamp. This is related to schema_init.c and checkTime.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-286x-xfxm-75r6/GHSA-286x-xfxm-75r6.json b/advisories/unreviewed/2022/05/GHSA-286x-xfxm-75r6/GHSA-286x-xfxm-75r6.json index 810260e16d0..6615fb403f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-286x-xfxm-75r6/GHSA-286x-xfxm-75r6.json +++ b/advisories/unreviewed/2022/05/GHSA-286x-xfxm-75r6/GHSA-286x-xfxm-75r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2982-268x-jwcx/GHSA-2982-268x-jwcx.json b/advisories/unreviewed/2022/05/GHSA-2982-268x-jwcx/GHSA-2982-268x-jwcx.json index dac4fd63c98..699aa19a40c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2982-268x-jwcx/GHSA-2982-268x-jwcx.json +++ b/advisories/unreviewed/2022/05/GHSA-2982-268x-jwcx/GHSA-2982-268x-jwcx.json @@ -7,12 +7,8 @@ "CVE-2021-20068" ], "details": "Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to conduct cross-site scripting attacks via the error handling functionality of web pages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g92-xfq2-c7ph/GHSA-2g92-xfq2-c7ph.json b/advisories/unreviewed/2022/05/GHSA-2g92-xfq2-c7ph/GHSA-2g92-xfq2-c7ph.json index 62bde8dbd6b..379c204725e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g92-xfq2-c7ph/GHSA-2g92-xfq2-c7ph.json +++ b/advisories/unreviewed/2022/05/GHSA-2g92-xfq2-c7ph/GHSA-2g92-xfq2-c7ph.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2gr2-xjj5-q4ff/GHSA-2gr2-xjj5-q4ff.json b/advisories/unreviewed/2022/05/GHSA-2gr2-xjj5-q4ff/GHSA-2gr2-xjj5-q4ff.json index afb4b51c1ba..a3bd4e4c8d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gr2-xjj5-q4ff/GHSA-2gr2-xjj5-q4ff.json +++ b/advisories/unreviewed/2022/05/GHSA-2gr2-xjj5-q4ff/GHSA-2gr2-xjj5-q4ff.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2h56-v244-fqpv/GHSA-2h56-v244-fqpv.json b/advisories/unreviewed/2022/05/GHSA-2h56-v244-fqpv/GHSA-2h56-v244-fqpv.json index 96a417b107c..4c2ba78bf48 100644 --- a/advisories/unreviewed/2022/05/GHSA-2h56-v244-fqpv/GHSA-2h56-v244-fqpv.json +++ b/advisories/unreviewed/2022/05/GHSA-2h56-v244-fqpv/GHSA-2h56-v244-fqpv.json @@ -7,12 +7,8 @@ "CVE-2021-20653" ], "details": "Calsos CSDJ (CSDJ-B 01.08.00 and earlier, CSDJ-H 01.08.00 and earlier, CSDJ-D 01.08.00 and earlier, and CSDJ-A 03.08.00 and earlier) allows remote attackers to bypass access restriction and to obtain unauthorized historical data without access privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2m37-wg64-hcc4/GHSA-2m37-wg64-hcc4.json b/advisories/unreviewed/2022/05/GHSA-2m37-wg64-hcc4/GHSA-2m37-wg64-hcc4.json index 3b7f21ef2f3..c214746a9ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m37-wg64-hcc4/GHSA-2m37-wg64-hcc4.json +++ b/advisories/unreviewed/2022/05/GHSA-2m37-wg64-hcc4/GHSA-2m37-wg64-hcc4.json @@ -7,12 +7,8 @@ "CVE-2020-12385" ], "details": "Improper input validation in some Intel(R) Graphics Drivers before version 26.20.100.8141 may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2m67-gph7-q4xp/GHSA-2m67-gph7-q4xp.json b/advisories/unreviewed/2022/05/GHSA-2m67-gph7-q4xp/GHSA-2m67-gph7-q4xp.json index 4f6af27a816..e99d91bebc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m67-gph7-q4xp/GHSA-2m67-gph7-q4xp.json +++ b/advisories/unreviewed/2022/05/GHSA-2m67-gph7-q4xp/GHSA-2m67-gph7-q4xp.json @@ -7,12 +7,8 @@ "CVE-2020-29026" ], "details": "A directory traversal vulnerability exists in the file upload function of the GateManager that allows an authenticated attacker with administrative permissions to read and write arbitrary files in the Linux file system. This issue affects: GateManager all versions prior to 9.2c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mm4-8fvv-52q9/GHSA-2mm4-8fvv-52q9.json b/advisories/unreviewed/2022/05/GHSA-2mm4-8fvv-52q9/GHSA-2mm4-8fvv-52q9.json index da574c67f6a..eb3bc93e97c 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mm4-8fvv-52q9/GHSA-2mm4-8fvv-52q9.json +++ b/advisories/unreviewed/2022/05/GHSA-2mm4-8fvv-52q9/GHSA-2mm4-8fvv-52q9.json @@ -7,12 +7,8 @@ "CVE-2021-27559" ], "details": "The Contact page in Monica 2.19.1 allows stored XSS via the Nickname field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2pf3-gjp3-cx53/GHSA-2pf3-gjp3-cx53.json b/advisories/unreviewed/2022/05/GHSA-2pf3-gjp3-cx53/GHSA-2pf3-gjp3-cx53.json index 2af4db07744..af1829f85c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pf3-gjp3-cx53/GHSA-2pf3-gjp3-cx53.json +++ b/advisories/unreviewed/2022/05/GHSA-2pf3-gjp3-cx53/GHSA-2pf3-gjp3-cx53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2pm4-86cq-h56g/GHSA-2pm4-86cq-h56g.json b/advisories/unreviewed/2022/05/GHSA-2pm4-86cq-h56g/GHSA-2pm4-86cq-h56g.json index 161ff2b31ce..7e8e1fb5854 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pm4-86cq-h56g/GHSA-2pm4-86cq-h56g.json +++ b/advisories/unreviewed/2022/05/GHSA-2pm4-86cq-h56g/GHSA-2pm4-86cq-h56g.json @@ -7,12 +7,8 @@ "CVE-2021-3375" ], "details": "ActivePresenter 6.1.6 is affected by a memory corruption vulnerability that may result in a denial of service (DoS) or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2q3g-jqmc-9v3v/GHSA-2q3g-jqmc-9v3v.json b/advisories/unreviewed/2022/05/GHSA-2q3g-jqmc-9v3v/GHSA-2q3g-jqmc-9v3v.json index f14184fa082..2d9283dd107 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q3g-jqmc-9v3v/GHSA-2q3g-jqmc-9v3v.json +++ b/advisories/unreviewed/2022/05/GHSA-2q3g-jqmc-9v3v/GHSA-2q3g-jqmc-9v3v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2r8q-h42x-rjm5/GHSA-2r8q-h42x-rjm5.json b/advisories/unreviewed/2022/05/GHSA-2r8q-h42x-rjm5/GHSA-2r8q-h42x-rjm5.json index 18a7332f9e0..ba94568654e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r8q-h42x-rjm5/GHSA-2r8q-h42x-rjm5.json +++ b/advisories/unreviewed/2022/05/GHSA-2r8q-h42x-rjm5/GHSA-2r8q-h42x-rjm5.json @@ -7,12 +7,8 @@ "CVE-2021-20645" ], "details": "Cross-site scripting vulnerability in ELECOM WRC-300FEBK-A allows remote authenticated attackers to inject arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2w44-vr82-84c4/GHSA-2w44-vr82-84c4.json b/advisories/unreviewed/2022/05/GHSA-2w44-vr82-84c4/GHSA-2w44-vr82-84c4.json index d4b7f8319ad..a6179c41d1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w44-vr82-84c4/GHSA-2w44-vr82-84c4.json +++ b/advisories/unreviewed/2022/05/GHSA-2w44-vr82-84c4/GHSA-2w44-vr82-84c4.json @@ -7,12 +7,8 @@ "CVE-2021-20655" ], "details": "FileZen (V3.0.0 to V4.2.7 and V5.0.0 to V5.0.2) allows a remote attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2xp2-6xw3-mw59/GHSA-2xp2-6xw3-mw59.json b/advisories/unreviewed/2022/05/GHSA-2xp2-6xw3-mw59/GHSA-2xp2-6xw3-mw59.json index 6f1acf48c70..8e5a04d7e08 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xp2-6xw3-mw59/GHSA-2xp2-6xw3-mw59.json +++ b/advisories/unreviewed/2022/05/GHSA-2xp2-6xw3-mw59/GHSA-2xp2-6xw3-mw59.json @@ -7,12 +7,8 @@ "CVE-2021-27335" ], "details": "KollectApps before 4.8.16c is affected by insecure Java deserialization, leading to Remote Code Execution via a ysoserial.payloads.CommonsCollections parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2xq2-3g36-329g/GHSA-2xq2-3g36-329g.json b/advisories/unreviewed/2022/05/GHSA-2xq2-3g36-329g/GHSA-2xq2-3g36-329g.json index 8f8a63ad048..34e60b29555 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xq2-3g36-329g/GHSA-2xq2-3g36-329g.json +++ b/advisories/unreviewed/2022/05/GHSA-2xq2-3g36-329g/GHSA-2xq2-3g36-329g.json @@ -7,12 +7,8 @@ "CVE-2020-11187" ], "details": "Possible memory corruption in BSI module due to improper validation of parameter count in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3568-5vhr-w72q/GHSA-3568-5vhr-w72q.json b/advisories/unreviewed/2022/05/GHSA-3568-5vhr-w72q/GHSA-3568-5vhr-w72q.json index 2e1b91a01cf..f25e6a042b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-3568-5vhr-w72q/GHSA-3568-5vhr-w72q.json +++ b/advisories/unreviewed/2022/05/GHSA-3568-5vhr-w72q/GHSA-3568-5vhr-w72q.json @@ -7,12 +7,8 @@ "CVE-2020-12369" ], "details": "Out of bound write in some Intel(R) Graphics Drivers before version 26.20.100.8336 may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3598-85vr-8f48/GHSA-3598-85vr-8f48.json b/advisories/unreviewed/2022/05/GHSA-3598-85vr-8f48/GHSA-3598-85vr-8f48.json index f7deb35b29d..dea9dcc47db 100644 --- a/advisories/unreviewed/2022/05/GHSA-3598-85vr-8f48/GHSA-3598-85vr-8f48.json +++ b/advisories/unreviewed/2022/05/GHSA-3598-85vr-8f48/GHSA-3598-85vr-8f48.json @@ -7,12 +7,8 @@ "CVE-2021-20445" ], "details": "IBM Maximo for Civil Infrastructure 7.6.2 could allow a user to obtain sensitive information due to insecure storeage of authentication credentials. IBM X-Force ID: 196621.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35r4-97wh-88x3/GHSA-35r4-97wh-88x3.json b/advisories/unreviewed/2022/05/GHSA-35r4-97wh-88x3/GHSA-35r4-97wh-88x3.json index fe5b36426e0..439d32fbd8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-35r4-97wh-88x3/GHSA-35r4-97wh-88x3.json +++ b/advisories/unreviewed/2022/05/GHSA-35r4-97wh-88x3/GHSA-35r4-97wh-88x3.json @@ -7,12 +7,8 @@ "CVE-2021-3339" ], "details": "ModernFlow before 1.3.00.208 does not constrain web-page access to members of a security group, as demonstrated by the Search Screen and the Profile Screen.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-37j8-qv27-g3fq/GHSA-37j8-qv27-g3fq.json b/advisories/unreviewed/2022/05/GHSA-37j8-qv27-g3fq/GHSA-37j8-qv27-g3fq.json index ec4e0eac353..f4cd9a363b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-37j8-qv27-g3fq/GHSA-37j8-qv27-g3fq.json +++ b/advisories/unreviewed/2022/05/GHSA-37j8-qv27-g3fq/GHSA-37j8-qv27-g3fq.json @@ -7,12 +7,8 @@ "CVE-2020-12873" ], "details": "An issue was discovered in Alfresco Enterprise Content Management (ECM) before 6.2.1. A user with privileges to edit a FreeMarker template (e.g., a webscript) may execute arbitrary Java code or run arbitrary system commands with the same privileges as the account running Alfresco.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-39mp-r4x2-rf8p/GHSA-39mp-r4x2-rf8p.json b/advisories/unreviewed/2022/05/GHSA-39mp-r4x2-rf8p/GHSA-39mp-r4x2-rf8p.json index 2bc3dc3eb98..75403d04d68 100644 --- a/advisories/unreviewed/2022/05/GHSA-39mp-r4x2-rf8p/GHSA-39mp-r4x2-rf8p.json +++ b/advisories/unreviewed/2022/05/GHSA-39mp-r4x2-rf8p/GHSA-39mp-r4x2-rf8p.json @@ -7,12 +7,8 @@ "CVE-2021-26200" ], "details": "The user area for Library System 1.0 is vulnerable to SQL injection where a user can bypass the authentication and login as the admin user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3c29-qfhr-mp78/GHSA-3c29-qfhr-mp78.json b/advisories/unreviewed/2022/05/GHSA-3c29-qfhr-mp78/GHSA-3c29-qfhr-mp78.json index 86a36bce64d..13c664f766a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c29-qfhr-mp78/GHSA-3c29-qfhr-mp78.json +++ b/advisories/unreviewed/2022/05/GHSA-3c29-qfhr-mp78/GHSA-3c29-qfhr-mp78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3f43-cg6p-w52w/GHSA-3f43-cg6p-w52w.json b/advisories/unreviewed/2022/05/GHSA-3f43-cg6p-w52w/GHSA-3f43-cg6p-w52w.json index 4c615a92737..fcdf934054c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f43-cg6p-w52w/GHSA-3f43-cg6p-w52w.json +++ b/advisories/unreviewed/2022/05/GHSA-3f43-cg6p-w52w/GHSA-3f43-cg6p-w52w.json @@ -7,12 +7,8 @@ "CVE-2021-21061" ], "details": "Acrobat Pro DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use-after-free vulnerability when parsing a specially crafted PDF file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3f92-pgj5-j64j/GHSA-3f92-pgj5-j64j.json b/advisories/unreviewed/2022/05/GHSA-3f92-pgj5-j64j/GHSA-3f92-pgj5-j64j.json index 480361cb5ff..e7b66e4500a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f92-pgj5-j64j/GHSA-3f92-pgj5-j64j.json +++ b/advisories/unreviewed/2022/05/GHSA-3f92-pgj5-j64j/GHSA-3f92-pgj5-j64j.json @@ -7,12 +7,8 @@ "CVE-2020-11253" ], "details": "Arbitrary memory write issue in video driver while setting the internal buffers in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3fw2-qjm5-wjrf/GHSA-3fw2-qjm5-wjrf.json b/advisories/unreviewed/2022/05/GHSA-3fw2-qjm5-wjrf/GHSA-3fw2-qjm5-wjrf.json index d29241ec816..31d896baa0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fw2-qjm5-wjrf/GHSA-3fw2-qjm5-wjrf.json +++ b/advisories/unreviewed/2022/05/GHSA-3fw2-qjm5-wjrf/GHSA-3fw2-qjm5-wjrf.json @@ -7,12 +7,8 @@ "CVE-2020-27862" ], "details": "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DVA-2800 and DSL-2888A firmware version 2.3 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the dhttpd service, which listens on TCP port 8008 by default. When parsing the path parameter, the process does not properly validate a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of the web server. Was ZDI-CAN-10911.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3g9m-2rxr-22r8/GHSA-3g9m-2rxr-22r8.json b/advisories/unreviewed/2022/05/GHSA-3g9m-2rxr-22r8/GHSA-3g9m-2rxr-22r8.json index 13e3d43933b..1666857d8d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-3g9m-2rxr-22r8/GHSA-3g9m-2rxr-22r8.json +++ b/advisories/unreviewed/2022/05/GHSA-3g9m-2rxr-22r8/GHSA-3g9m-2rxr-22r8.json @@ -7,12 +7,8 @@ "CVE-2021-22982" ], "details": "On BIG-IP DNS and GTM version 13.1.x before 13.1.0.4, and all versions of 12.1.x and 11.6.x, big3d does not securely handle and parse certain payloads resulting in a buffer overflow. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3gqm-8w6h-2v84/GHSA-3gqm-8w6h-2v84.json b/advisories/unreviewed/2022/05/GHSA-3gqm-8w6h-2v84/GHSA-3gqm-8w6h-2v84.json index dac441738d6..7c6ddd98788 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gqm-8w6h-2v84/GHSA-3gqm-8w6h-2v84.json +++ b/advisories/unreviewed/2022/05/GHSA-3gqm-8w6h-2v84/GHSA-3gqm-8w6h-2v84.json @@ -7,12 +7,8 @@ "CVE-2020-27868" ], "details": "This vulnerability allows remote attackers to execute arbitrary code on affected installations of Qognify Ocularis 5.9.0.395. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of serialized objects provided to the EventCoordinator endpoint. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of SYSTEM. Was ZDI-CAN-11257.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hrw-324r-f9xj/GHSA-3hrw-324r-f9xj.json b/advisories/unreviewed/2022/05/GHSA-3hrw-324r-f9xj/GHSA-3hrw-324r-f9xj.json index 65b9c19a1c0..01208b052a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hrw-324r-f9xj/GHSA-3hrw-324r-f9xj.json +++ b/advisories/unreviewed/2022/05/GHSA-3hrw-324r-f9xj/GHSA-3hrw-324r-f9xj.json @@ -7,12 +7,8 @@ "CVE-2021-27204" ], "details": "Telegram before 7.4 (212543) Stable on macOS stores the local passcode in cleartext, leading to information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j49-vwhx-x2h7/GHSA-3j49-vwhx-x2h7.json b/advisories/unreviewed/2022/05/GHSA-3j49-vwhx-x2h7/GHSA-3j49-vwhx-x2h7.json index 9c3fa8dd27a..9d853b1073b 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j49-vwhx-x2h7/GHSA-3j49-vwhx-x2h7.json +++ b/advisories/unreviewed/2022/05/GHSA-3j49-vwhx-x2h7/GHSA-3j49-vwhx-x2h7.json @@ -7,12 +7,8 @@ "CVE-2021-27190" ], "details": "A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 which is publicly available. The user supplied input containing polyglot payload is echoed back in javascript code in HTML response. This allows an attacker to input malicious JavaScript which can steal cookie, redirect them to other malicious website, etc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mv4-59rc-qvqm/GHSA-3mv4-59rc-qvqm.json b/advisories/unreviewed/2022/05/GHSA-3mv4-59rc-qvqm/GHSA-3mv4-59rc-qvqm.json index 220ea49043a..0fb16509e68 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mv4-59rc-qvqm/GHSA-3mv4-59rc-qvqm.json +++ b/advisories/unreviewed/2022/05/GHSA-3mv4-59rc-qvqm/GHSA-3mv4-59rc-qvqm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3p28-7652-rrq5/GHSA-3p28-7652-rrq5.json b/advisories/unreviewed/2022/05/GHSA-3p28-7652-rrq5/GHSA-3p28-7652-rrq5.json index 31af3d9af89..b842bed8080 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p28-7652-rrq5/GHSA-3p28-7652-rrq5.json +++ b/advisories/unreviewed/2022/05/GHSA-3p28-7652-rrq5/GHSA-3p28-7652-rrq5.json @@ -7,12 +7,8 @@ "CVE-2021-22980" ], "details": "In Edge Client version 7.2.x before 7.2.1.1, 7.1.9.x before 7.1.9.8, and 7.1.x-7.1.8.x before 7.1.8.5, an untrusted search path vulnerability in the BIG-IP APM Client Troubleshooting Utility (CTU) for Windows could allow an attacker to load a malicious DLL library from its current directory. User interaction is required to exploit this vulnerability in that the victim must run this utility on the Windows system. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3w66-96j7-fmcp/GHSA-3w66-96j7-fmcp.json b/advisories/unreviewed/2022/05/GHSA-3w66-96j7-fmcp/GHSA-3w66-96j7-fmcp.json index 54abd3d9fa4..b2f9e653b7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w66-96j7-fmcp/GHSA-3w66-96j7-fmcp.json +++ b/advisories/unreviewed/2022/05/GHSA-3w66-96j7-fmcp/GHSA-3w66-96j7-fmcp.json @@ -7,12 +7,8 @@ "CVE-2021-27097" ], "details": "The boot loader in Das U-Boot before 2021.04-rc2 mishandles a modified FIT.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3wc6-q483-gp6r/GHSA-3wc6-q483-gp6r.json b/advisories/unreviewed/2022/05/GHSA-3wc6-q483-gp6r/GHSA-3wc6-q483-gp6r.json index c2301ab4e26..7e3e819da2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wc6-q483-gp6r/GHSA-3wc6-q483-gp6r.json +++ b/advisories/unreviewed/2022/05/GHSA-3wc6-q483-gp6r/GHSA-3wc6-q483-gp6r.json @@ -7,12 +7,8 @@ "CVE-2021-20635" ], "details": "Improper restriction of excessive authentication attempts in LOGITEC LAN-WH450N/GR allows an attacker in the wireless range of the device to recover PIN and access the network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x2j-526p-4qw3/GHSA-3x2j-526p-4qw3.json b/advisories/unreviewed/2022/05/GHSA-3x2j-526p-4qw3/GHSA-3x2j-526p-4qw3.json index eb830c4ae27..fbbac3eb403 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x2j-526p-4qw3/GHSA-3x2j-526p-4qw3.json +++ b/advisories/unreviewed/2022/05/GHSA-3x2j-526p-4qw3/GHSA-3x2j-526p-4qw3.json @@ -7,12 +7,8 @@ "CVE-2020-24462" ], "details": "Out of bounds write in the Intel(R) Graphics Driver before version 15.33.53.5161, 15.36.40.5162, 15.40.47.5166, 15.45.33.5164 and 27.20.100.8336 may allow an authenticated user to potentially enable an escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42ff-q9r4-9fgc/GHSA-42ff-q9r4-9fgc.json b/advisories/unreviewed/2022/05/GHSA-42ff-q9r4-9fgc/GHSA-42ff-q9r4-9fgc.json index 2756c0132eb..512efeb5816 100644 --- a/advisories/unreviewed/2022/05/GHSA-42ff-q9r4-9fgc/GHSA-42ff-q9r4-9fgc.json +++ b/advisories/unreviewed/2022/05/GHSA-42ff-q9r4-9fgc/GHSA-42ff-q9r4-9fgc.json @@ -7,12 +7,8 @@ "CVE-2021-27513" ], "details": "The module admin_ITSM in EyesOfNetwork 5.3-10 allows remote authenticated users to upload arbitrary .xml.php files because it relies on \"le filtre userside.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42w9-25p2-32w9/GHSA-42w9-25p2-32w9.json b/advisories/unreviewed/2022/05/GHSA-42w9-25p2-32w9/GHSA-42w9-25p2-32w9.json index 545eb684338..0916808ab96 100644 --- a/advisories/unreviewed/2022/05/GHSA-42w9-25p2-32w9/GHSA-42w9-25p2-32w9.json +++ b/advisories/unreviewed/2022/05/GHSA-42w9-25p2-32w9/GHSA-42w9-25p2-32w9.json @@ -7,12 +7,8 @@ "CVE-2020-0525" ], "details": "Improper access control in firmware for the Intel(R) Ethernet I210 Controller series of network adapters before version 3.30 may allow a privileged user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4374-j4qr-5p28/GHSA-4374-j4qr-5p28.json b/advisories/unreviewed/2022/05/GHSA-4374-j4qr-5p28/GHSA-4374-j4qr-5p28.json index ba22313d35d..26b342e3e22 100644 --- a/advisories/unreviewed/2022/05/GHSA-4374-j4qr-5p28/GHSA-4374-j4qr-5p28.json +++ b/advisories/unreviewed/2022/05/GHSA-4374-j4qr-5p28/GHSA-4374-j4qr-5p28.json @@ -7,12 +7,8 @@ "CVE-2021-3210" ], "details": "components/Modals/HelpTexts/GenericAll/GenericAll.jsx in Bloodhound <= 4.0.1 allows remote attackers to execute arbitrary system commands when the victim imports a malicious data file containing JavaScript in the objectId parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45r7-chqq-5vw6/GHSA-45r7-chqq-5vw6.json b/advisories/unreviewed/2022/05/GHSA-45r7-chqq-5vw6/GHSA-45r7-chqq-5vw6.json index 318a8d6eb81..fbe01db1213 100644 --- a/advisories/unreviewed/2022/05/GHSA-45r7-chqq-5vw6/GHSA-45r7-chqq-5vw6.json +++ b/advisories/unreviewed/2022/05/GHSA-45r7-chqq-5vw6/GHSA-45r7-chqq-5vw6.json @@ -7,12 +7,8 @@ "CVE-2020-12384" ], "details": "Improper access control in some Intel(R) Graphics Drivers before version 26.20.100.8476 may allow an authenticated user to potentially enable an escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46cf-r836-jh9p/GHSA-46cf-r836-jh9p.json b/advisories/unreviewed/2022/05/GHSA-46cf-r836-jh9p/GHSA-46cf-r836-jh9p.json index ad8d0623595..bc2ee00c249 100644 --- a/advisories/unreviewed/2022/05/GHSA-46cf-r836-jh9p/GHSA-46cf-r836-jh9p.json +++ b/advisories/unreviewed/2022/05/GHSA-46cf-r836-jh9p/GHSA-46cf-r836-jh9p.json @@ -7,12 +7,8 @@ "CVE-2021-20412" ], "details": "IBM Security Verify Information Queue 1.0.6 and 1.0.7 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 198192.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4ch3-ggx2-34pj/GHSA-4ch3-ggx2-34pj.json b/advisories/unreviewed/2022/05/GHSA-4ch3-ggx2-34pj/GHSA-4ch3-ggx2-34pj.json index dd0e09abcbe..c255fc5424f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ch3-ggx2-34pj/GHSA-4ch3-ggx2-34pj.json +++ b/advisories/unreviewed/2022/05/GHSA-4ch3-ggx2-34pj/GHSA-4ch3-ggx2-34pj.json @@ -7,12 +7,8 @@ "CVE-2020-35776" ], "details": "A buffer overflow in res_pjsip_diversion.c in Sangoma Asterisk versions 13.38.1, 16.15.1, 17.9.1, and 18.1.1 allows remote attacker to crash Asterisk by deliberately misusing SIP 181 responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4crm-7wj7-pr4w/GHSA-4crm-7wj7-pr4w.json b/advisories/unreviewed/2022/05/GHSA-4crm-7wj7-pr4w/GHSA-4crm-7wj7-pr4w.json index d03a32ccc48..efd87fff12a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4crm-7wj7-pr4w/GHSA-4crm-7wj7-pr4w.json +++ b/advisories/unreviewed/2022/05/GHSA-4crm-7wj7-pr4w/GHSA-4crm-7wj7-pr4w.json @@ -7,12 +7,8 @@ "CVE-2020-35565" ], "details": "An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. The login pages bruteforce detection is disabled by default.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fmh-rm9m-pchc/GHSA-4fmh-rm9m-pchc.json b/advisories/unreviewed/2022/05/GHSA-4fmh-rm9m-pchc/GHSA-4fmh-rm9m-pchc.json index b0f2a93e6cf..84fd3416ce3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fmh-rm9m-pchc/GHSA-4fmh-rm9m-pchc.json +++ b/advisories/unreviewed/2022/05/GHSA-4fmh-rm9m-pchc/GHSA-4fmh-rm9m-pchc.json @@ -7,12 +7,8 @@ "CVE-2020-35560" ], "details": "An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an unauthenticated open redirect in the redirect.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4jwr-58v2-3w35/GHSA-4jwr-58v2-3w35.json b/advisories/unreviewed/2022/05/GHSA-4jwr-58v2-3w35/GHSA-4jwr-58v2-3w35.json index 05788c5e4ea..57baa4f61c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jwr-58v2-3w35/GHSA-4jwr-58v2-3w35.json +++ b/advisories/unreviewed/2022/05/GHSA-4jwr-58v2-3w35/GHSA-4jwr-58v2-3w35.json @@ -7,12 +7,8 @@ "CVE-2021-25780" ], "details": "An arbitrary file upload vulnerability has been identified in posts.php in Baby Care System 1.0. The vulnerability could be exploited by an remote attacker to upload content to the server, including PHP files, which could result in command execution and obtaining a shell.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4m2f-xx7g-q89c/GHSA-4m2f-xx7g-q89c.json b/advisories/unreviewed/2022/05/GHSA-4m2f-xx7g-q89c/GHSA-4m2f-xx7g-q89c.json index 0b730f8a6b3..bc0b7f066ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m2f-xx7g-q89c/GHSA-4m2f-xx7g-q89c.json +++ b/advisories/unreviewed/2022/05/GHSA-4m2f-xx7g-q89c/GHSA-4m2f-xx7g-q89c.json @@ -7,12 +7,8 @@ "CVE-2020-29024" ], "details": "Sensitive Cookie in HTTPS Session Without 'Secure' Attribute vulnerability in (GTA) GoToAppliance of Secomea GateManager could allow an attacker to gain access to sensitive cookies. This issue affects: Secomea GateManager all versions prior to 9.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4m3m-xxqp-r6w5/GHSA-4m3m-xxqp-r6w5.json b/advisories/unreviewed/2022/05/GHSA-4m3m-xxqp-r6w5/GHSA-4m3m-xxqp-r6w5.json index fa6784e5fba..9970b022b93 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m3m-xxqp-r6w5/GHSA-4m3m-xxqp-r6w5.json +++ b/advisories/unreviewed/2022/05/GHSA-4m3m-xxqp-r6w5/GHSA-4m3m-xxqp-r6w5.json @@ -7,12 +7,8 @@ "CVE-2020-12339" ], "details": "Insufficient control flow management in the API for the Intel(R) Collaboration Suite for WebRTC before version 4.3.1 may allow an authenticated user to potentially enable escalation of privilege via network access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p8g-xcvq-m8r7/GHSA-4p8g-xcvq-m8r7.json b/advisories/unreviewed/2022/05/GHSA-4p8g-xcvq-m8r7/GHSA-4p8g-xcvq-m8r7.json index 6a71197a33d..4dc69bd8a0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p8g-xcvq-m8r7/GHSA-4p8g-xcvq-m8r7.json +++ b/advisories/unreviewed/2022/05/GHSA-4p8g-xcvq-m8r7/GHSA-4p8g-xcvq-m8r7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qjv-8r5v-mmqj/GHSA-4qjv-8r5v-mmqj.json b/advisories/unreviewed/2022/05/GHSA-4qjv-8r5v-mmqj/GHSA-4qjv-8r5v-mmqj.json index b0222ce6672..4501f9b971f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qjv-8r5v-mmqj/GHSA-4qjv-8r5v-mmqj.json +++ b/advisories/unreviewed/2022/05/GHSA-4qjv-8r5v-mmqj/GHSA-4qjv-8r5v-mmqj.json @@ -7,12 +7,8 @@ "CVE-2020-0524" ], "details": "Improper default permissions in the firmware for the Intel(R) Ethernet I210 Controller series of network adapters before version 3.30 may allow an authenticated user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4v3q-9jqp-58m8/GHSA-4v3q-9jqp-58m8.json b/advisories/unreviewed/2022/05/GHSA-4v3q-9jqp-58m8/GHSA-4v3q-9jqp-58m8.json index 6024147bb30..3c2a14e19ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v3q-9jqp-58m8/GHSA-4v3q-9jqp-58m8.json +++ b/advisories/unreviewed/2022/05/GHSA-4v3q-9jqp-58m8/GHSA-4v3q-9jqp-58m8.json @@ -7,12 +7,8 @@ "CVE-2020-29142" ], "details": "A SQL injection vulnerability in interface/usergroup/usergroup_admin.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the schedule_facility parameter when restrict_user_facility=on is in global settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4wxc-gch7-6j67/GHSA-4wxc-gch7-6j67.json b/advisories/unreviewed/2022/05/GHSA-4wxc-gch7-6j67/GHSA-4wxc-gch7-6j67.json index 7dfe4a6e4d5..04a6a9de3c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wxc-gch7-6j67/GHSA-4wxc-gch7-6j67.json +++ b/advisories/unreviewed/2022/05/GHSA-4wxc-gch7-6j67/GHSA-4wxc-gch7-6j67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4x53-4vwf-pv6f/GHSA-4x53-4vwf-pv6f.json b/advisories/unreviewed/2022/05/GHSA-4x53-4vwf-pv6f/GHSA-4x53-4vwf-pv6f.json index 6804105a7c0..e1c4ac975aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-4x53-4vwf-pv6f/GHSA-4x53-4vwf-pv6f.json +++ b/advisories/unreviewed/2022/05/GHSA-4x53-4vwf-pv6f/GHSA-4x53-4vwf-pv6f.json @@ -7,12 +7,8 @@ "CVE-2021-27209" ], "details": "In the management interface on TP-Link Archer C5v 1.7_181221 devices, credentials are sent in a base64 format over cleartext HTTP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5244-5vqh-qwmc/GHSA-5244-5vqh-qwmc.json b/advisories/unreviewed/2022/05/GHSA-5244-5vqh-qwmc/GHSA-5244-5vqh-qwmc.json index c92a6a418a0..c05fc1261fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-5244-5vqh-qwmc/GHSA-5244-5vqh-qwmc.json +++ b/advisories/unreviewed/2022/05/GHSA-5244-5vqh-qwmc/GHSA-5244-5vqh-qwmc.json @@ -7,12 +7,8 @@ "CVE-2021-20649" ], "details": "ELECOM WRC-300FEBK-S contains an improper certificate validation vulnerability. Via a man-in-the-middle attack, an attacker may alter the communication response. As a result, an arbitrary OS command may be executed on the affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-52jj-jg38-66r9/GHSA-52jj-jg38-66r9.json b/advisories/unreviewed/2022/05/GHSA-52jj-jg38-66r9/GHSA-52jj-jg38-66r9.json index 76a5a6eaf14..194bd8aa0cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-52jj-jg38-66r9/GHSA-52jj-jg38-66r9.json +++ b/advisories/unreviewed/2022/05/GHSA-52jj-jg38-66r9/GHSA-52jj-jg38-66r9.json @@ -7,12 +7,8 @@ "CVE-2020-35569" ], "details": "An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is a self XSS issue with a crafted cookie in the login page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53q7-6745-8vc3/GHSA-53q7-6745-8vc3.json b/advisories/unreviewed/2022/05/GHSA-53q7-6745-8vc3/GHSA-53q7-6745-8vc3.json index 77690117257..4dc8d3b9df1 100644 --- a/advisories/unreviewed/2022/05/GHSA-53q7-6745-8vc3/GHSA-53q7-6745-8vc3.json +++ b/advisories/unreviewed/2022/05/GHSA-53q7-6745-8vc3/GHSA-53q7-6745-8vc3.json @@ -7,12 +7,8 @@ "CVE-2021-21154" ], "details": "Heap buffer overflow in Tab Strip in Google Chrome prior to 88.0.4324.182 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-54w2-m25f-gmqp/GHSA-54w2-m25f-gmqp.json b/advisories/unreviewed/2022/05/GHSA-54w2-m25f-gmqp/GHSA-54w2-m25f-gmqp.json index ef3aaf4ea35..364ed9f2ae5 100644 --- a/advisories/unreviewed/2022/05/GHSA-54w2-m25f-gmqp/GHSA-54w2-m25f-gmqp.json +++ b/advisories/unreviewed/2022/05/GHSA-54w2-m25f-gmqp/GHSA-54w2-m25f-gmqp.json @@ -7,12 +7,8 @@ "CVE-2021-27104" ], "details": "Accellion FTA 9_12_370 and earlier is affected by OS command execution via a crafted POST request to various admin endpoints. The fixed version is FTA_9_12_380 and later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55gv-57w2-69r9/GHSA-55gv-57w2-69r9.json b/advisories/unreviewed/2022/05/GHSA-55gv-57w2-69r9/GHSA-55gv-57w2-69r9.json index 051f3a65032..a057edda79f 100644 --- a/advisories/unreviewed/2022/05/GHSA-55gv-57w2-69r9/GHSA-55gv-57w2-69r9.json +++ b/advisories/unreviewed/2022/05/GHSA-55gv-57w2-69r9/GHSA-55gv-57w2-69r9.json @@ -7,12 +7,8 @@ "CVE-2021-26934" ], "details": "An issue was discovered in the Linux kernel 4.18 through 5.10.16, as used by Xen. The backend allocation (aka be-alloc) mode of the drm_xen_front drivers was not meant to be a supported configuration, but this wasn't stated accordingly in its support status entry.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-563h-vjhq-5wj9/GHSA-563h-vjhq-5wj9.json b/advisories/unreviewed/2022/05/GHSA-563h-vjhq-5wj9/GHSA-563h-vjhq-5wj9.json index 8bc451f7903..ec6732b4c2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-563h-vjhq-5wj9/GHSA-563h-vjhq-5wj9.json +++ b/advisories/unreviewed/2022/05/GHSA-563h-vjhq-5wj9/GHSA-563h-vjhq-5wj9.json @@ -7,12 +7,8 @@ "CVE-2020-24501" ], "details": "Buffer overflow in the firmware for Intel(R) E810 Ethernet Controllers before version 1.4.1.13 may allow an unauthenticated user to potentially enable denial of service via adjacent access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56gf-wcqm-qvfm/GHSA-56gf-wcqm-qvfm.json b/advisories/unreviewed/2022/05/GHSA-56gf-wcqm-qvfm/GHSA-56gf-wcqm-qvfm.json index 561b719a32f..f1f53485ead 100644 --- a/advisories/unreviewed/2022/05/GHSA-56gf-wcqm-qvfm/GHSA-56gf-wcqm-qvfm.json +++ b/advisories/unreviewed/2022/05/GHSA-56gf-wcqm-qvfm/GHSA-56gf-wcqm-qvfm.json @@ -7,12 +7,8 @@ "CVE-2021-20640" ], "details": "Buffer overflow vulnerability in LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute an arbitrary OS command via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-57q2-hvr9-9w4c/GHSA-57q2-hvr9-9w4c.json b/advisories/unreviewed/2022/05/GHSA-57q2-hvr9-9w4c/GHSA-57q2-hvr9-9w4c.json index 32a8d3c668b..8b9b99c6875 100644 --- a/advisories/unreviewed/2022/05/GHSA-57q2-hvr9-9w4c/GHSA-57q2-hvr9-9w4c.json +++ b/advisories/unreviewed/2022/05/GHSA-57q2-hvr9-9w4c/GHSA-57q2-hvr9-9w4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58jx-m88m-rmq4/GHSA-58jx-m88m-rmq4.json b/advisories/unreviewed/2022/05/GHSA-58jx-m88m-rmq4/GHSA-58jx-m88m-rmq4.json index 1077382af50..d22fd24e3e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-58jx-m88m-rmq4/GHSA-58jx-m88m-rmq4.json +++ b/advisories/unreviewed/2022/05/GHSA-58jx-m88m-rmq4/GHSA-58jx-m88m-rmq4.json @@ -7,12 +7,8 @@ "CVE-2020-24481" ], "details": "Insecure inherited permissions for the Intel(R) Quartus Prime Pro and Standard edition software may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-58p5-78hg-833m/GHSA-58p5-78hg-833m.json b/advisories/unreviewed/2022/05/GHSA-58p5-78hg-833m/GHSA-58p5-78hg-833m.json index 81108baf99e..1454b2b2b76 100644 --- a/advisories/unreviewed/2022/05/GHSA-58p5-78hg-833m/GHSA-58p5-78hg-833m.json +++ b/advisories/unreviewed/2022/05/GHSA-58p5-78hg-833m/GHSA-58p5-78hg-833m.json @@ -7,12 +7,8 @@ "CVE-2020-11203" ], "details": "Stack overflow may occur if GSM/WCDMA broadcast config size received from user is larger than variable length array in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-58p8-f8cp-3h6p/GHSA-58p8-f8cp-3h6p.json b/advisories/unreviewed/2022/05/GHSA-58p8-f8cp-3h6p/GHSA-58p8-f8cp-3h6p.json index 627c12b3f69..ada0e289882 100644 --- a/advisories/unreviewed/2022/05/GHSA-58p8-f8cp-3h6p/GHSA-58p8-f8cp-3h6p.json +++ b/advisories/unreviewed/2022/05/GHSA-58p8-f8cp-3h6p/GHSA-58p8-f8cp-3h6p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-592w-g5fc-w6j9/GHSA-592w-g5fc-w6j9.json b/advisories/unreviewed/2022/05/GHSA-592w-g5fc-w6j9/GHSA-592w-g5fc-w6j9.json index 67bf052c447..47c5f154900 100644 --- a/advisories/unreviewed/2022/05/GHSA-592w-g5fc-w6j9/GHSA-592w-g5fc-w6j9.json +++ b/advisories/unreviewed/2022/05/GHSA-592w-g5fc-w6j9/GHSA-592w-g5fc-w6j9.json @@ -7,12 +7,8 @@ "CVE-2021-20074" ], "details": "Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows users to escape the provided command line interface and execute arbitrary OS commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gpf-4mrw-5g39/GHSA-5gpf-4mrw-5g39.json b/advisories/unreviewed/2022/05/GHSA-5gpf-4mrw-5g39/GHSA-5gpf-4mrw-5g39.json index 9834e7bbb13..b0f877c2755 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gpf-4mrw-5g39/GHSA-5gpf-4mrw-5g39.json +++ b/advisories/unreviewed/2022/05/GHSA-5gpf-4mrw-5g39/GHSA-5gpf-4mrw-5g39.json @@ -7,12 +7,8 @@ "CVE-2020-8701" ], "details": "Incorrect default permissions in installer for the Intel(R) SSD Toolbox versions before 2/9/2021 may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5h45-5f8r-3vx5/GHSA-5h45-5f8r-3vx5.json b/advisories/unreviewed/2022/05/GHSA-5h45-5f8r-3vx5/GHSA-5h45-5f8r-3vx5.json index 605e36785f9..869e99af628 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h45-5f8r-3vx5/GHSA-5h45-5f8r-3vx5.json +++ b/advisories/unreviewed/2022/05/GHSA-5h45-5f8r-3vx5/GHSA-5h45-5f8r-3vx5.json @@ -7,12 +7,8 @@ "CVE-2021-27509" ], "details": "In Visualware MyConnection Server before 11.0b build 5382, each published report is not associated with its own access code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hf3-p363-ww52/GHSA-5hf3-p363-ww52.json b/advisories/unreviewed/2022/05/GHSA-5hf3-p363-ww52/GHSA-5hf3-p363-ww52.json index be4773ecf7d..7dba091f764 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hf3-p363-ww52/GHSA-5hf3-p363-ww52.json +++ b/advisories/unreviewed/2022/05/GHSA-5hf3-p363-ww52/GHSA-5hf3-p363-ww52.json @@ -7,12 +7,8 @@ "CVE-2021-25779" ], "details": "Baby Care System v1.0 is vulnerable to SQL injection via the 'id' parameter on the contentsectionpage.php page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hg4-wc97-mw4m/GHSA-5hg4-wc97-mw4m.json b/advisories/unreviewed/2022/05/GHSA-5hg4-wc97-mw4m/GHSA-5hg4-wc97-mw4m.json index 27601cc439a..981c7c660c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hg4-wc97-mw4m/GHSA-5hg4-wc97-mw4m.json +++ b/advisories/unreviewed/2022/05/GHSA-5hg4-wc97-mw4m/GHSA-5hg4-wc97-mw4m.json @@ -7,12 +7,8 @@ "CVE-2021-21702" ], "details": "In PHP versions 7.3.x below 7.3.27, 7.4.x below 7.4.15 and 8.0.x below 8.0.2, when using SOAP extension to connect to a SOAP server, a malicious SOAP server could return malformed XML data as a response that would cause PHP to access a null pointer and thus cause a crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hmm-wjg3-4m2m/GHSA-5hmm-wjg3-4m2m.json b/advisories/unreviewed/2022/05/GHSA-5hmm-wjg3-4m2m/GHSA-5hmm-wjg3-4m2m.json index 3d57554f4db..ff00980012f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hmm-wjg3-4m2m/GHSA-5hmm-wjg3-4m2m.json +++ b/advisories/unreviewed/2022/05/GHSA-5hmm-wjg3-4m2m/GHSA-5hmm-wjg3-4m2m.json @@ -7,12 +7,8 @@ "CVE-2020-11170" ], "details": "Out of bound memory access while playing music playbacks with crafted vorbis content due to improper checks in header extraction in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5ph6-fxv2-7rf2/GHSA-5ph6-fxv2-7rf2.json b/advisories/unreviewed/2022/05/GHSA-5ph6-fxv2-7rf2/GHSA-5ph6-fxv2-7rf2.json index 43852fca2f5..70323bfa7a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5ph6-fxv2-7rf2/GHSA-5ph6-fxv2-7rf2.json +++ b/advisories/unreviewed/2022/05/GHSA-5ph6-fxv2-7rf2/GHSA-5ph6-fxv2-7rf2.json @@ -7,12 +7,8 @@ "CVE-2021-26712" ], "details": "Incorrect access controls in res_srtp.c in Sangoma Asterisk 13.38.1, 16.16.0, 17.9.1, and 18.2.0 and Certified Asterisk 16.8-cert5 allow a remote unauthenticated attacker to prematurely terminate secure calls by replaying SRTP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5whm-5cf2-vvc2/GHSA-5whm-5cf2-vvc2.json b/advisories/unreviewed/2022/05/GHSA-5whm-5cf2-vvc2/GHSA-5whm-5cf2-vvc2.json index 6c7e586302b..b6f769623f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5whm-5cf2-vvc2/GHSA-5whm-5cf2-vvc2.json +++ b/advisories/unreviewed/2022/05/GHSA-5whm-5cf2-vvc2/GHSA-5whm-5cf2-vvc2.json @@ -7,12 +7,8 @@ "CVE-2021-21021" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5x74-pwgq-52vr/GHSA-5x74-pwgq-52vr.json b/advisories/unreviewed/2022/05/GHSA-5x74-pwgq-52vr/GHSA-5x74-pwgq-52vr.json index 2d38f8b2b4d..9854e8b3aba 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x74-pwgq-52vr/GHSA-5x74-pwgq-52vr.json +++ b/advisories/unreviewed/2022/05/GHSA-5x74-pwgq-52vr/GHSA-5x74-pwgq-52vr.json @@ -7,12 +7,8 @@ "CVE-2021-22658" ], "details": "Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an attacker to escalate privileges to 'Administrator'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5xc2-h74h-475j/GHSA-5xc2-h74h-475j.json b/advisories/unreviewed/2022/05/GHSA-5xc2-h74h-475j/GHSA-5xc2-h74h-475j.json index a974bc35533..2d71207ef17 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xc2-h74h-475j/GHSA-5xc2-h74h-475j.json +++ b/advisories/unreviewed/2022/05/GHSA-5xc2-h74h-475j/GHSA-5xc2-h74h-475j.json @@ -7,12 +7,8 @@ "CVE-2020-24502" ], "details": "Improper input validation in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 and before version 1.4.29.0 for Windows*, may allow an authenticated user to potentially enable a denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63cg-qxf4-8qfm/GHSA-63cg-qxf4-8qfm.json b/advisories/unreviewed/2022/05/GHSA-63cg-qxf4-8qfm/GHSA-63cg-qxf4-8qfm.json index 58554966b2b..1e3b59a8a27 100644 --- a/advisories/unreviewed/2022/05/GHSA-63cg-qxf4-8qfm/GHSA-63cg-qxf4-8qfm.json +++ b/advisories/unreviewed/2022/05/GHSA-63cg-qxf4-8qfm/GHSA-63cg-qxf4-8qfm.json @@ -7,12 +7,8 @@ "CVE-2021-21039" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63mg-762w-r25h/GHSA-63mg-762w-r25h.json b/advisories/unreviewed/2022/05/GHSA-63mg-762w-r25h/GHSA-63mg-762w-r25h.json index 0ac84085772..8a41bd82853 100644 --- a/advisories/unreviewed/2022/05/GHSA-63mg-762w-r25h/GHSA-63mg-762w-r25h.json +++ b/advisories/unreviewed/2022/05/GHSA-63mg-762w-r25h/GHSA-63mg-762w-r25h.json @@ -7,12 +7,8 @@ "CVE-2021-27213" ], "details": "config.py in pystemon before 2021-02-13 allows code execution via YAML deserialization because SafeLoader and safe_load are not used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-66m6-mhcr-vj8v/GHSA-66m6-mhcr-vj8v.json b/advisories/unreviewed/2022/05/GHSA-66m6-mhcr-vj8v/GHSA-66m6-mhcr-vj8v.json index b2e94a89793..120b7299bd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-66m6-mhcr-vj8v/GHSA-66m6-mhcr-vj8v.json +++ b/advisories/unreviewed/2022/05/GHSA-66m6-mhcr-vj8v/GHSA-66m6-mhcr-vj8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hrp-g2cw-r29v/GHSA-6hrp-g2cw-r29v.json b/advisories/unreviewed/2022/05/GHSA-6hrp-g2cw-r29v/GHSA-6hrp-g2cw-r29v.json index 1f2b6e8bebc..689250dc23e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hrp-g2cw-r29v/GHSA-6hrp-g2cw-r29v.json +++ b/advisories/unreviewed/2022/05/GHSA-6hrp-g2cw-r29v/GHSA-6hrp-g2cw-r29v.json @@ -7,12 +7,8 @@ "CVE-2020-24617" ], "details": "Mailtrain through 1.24.1 allows SQL Injection in statsClickedSubscribersByColumn in lib/models/campaigns.js via /campaigns/clicked/ajax because variable column names are not properly escaped.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6j9h-6jcx-4g5q/GHSA-6j9h-6jcx-4g5q.json b/advisories/unreviewed/2022/05/GHSA-6j9h-6jcx-4g5q/GHSA-6j9h-6jcx-4g5q.json index fb889f4aca0..cc1b9840bba 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j9h-6jcx-4g5q/GHSA-6j9h-6jcx-4g5q.json +++ b/advisories/unreviewed/2022/05/GHSA-6j9h-6jcx-4g5q/GHSA-6j9h-6jcx-4g5q.json @@ -7,12 +7,8 @@ "CVE-2020-2501" ], "details": "A stack-based buffer overflow vulnerability has been reported to affect QNAP NAS devices running Surveillance Station. If exploited, this vulnerability allows attackers to execute arbitrary code. QNAP have already fixed this vulnerability in the following versions: Surveillance Station 5.1.5.4.3 (and later) for ARM CPU NAS (64bit OS) and x86 CPU NAS (64bit OS) Surveillance Station 5.1.5.3.3 (and later) for ARM CPU NAS (32bit OS) and x86 CPU NAS (32bit OS)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6m76-9vmm-c44v/GHSA-6m76-9vmm-c44v.json b/advisories/unreviewed/2022/05/GHSA-6m76-9vmm-c44v/GHSA-6m76-9vmm-c44v.json index 0a094e04dea..1cb7e5e4e0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m76-9vmm-c44v/GHSA-6m76-9vmm-c44v.json +++ b/advisories/unreviewed/2022/05/GHSA-6m76-9vmm-c44v/GHSA-6m76-9vmm-c44v.json @@ -7,12 +7,8 @@ "CVE-2021-22857" ], "details": "The CGE page with download function contains a Directory Traversal vulnerability. Attackers can use this loophole to download system files arbitrarily.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r8w-5wm5-436v/GHSA-6r8w-5wm5-436v.json b/advisories/unreviewed/2022/05/GHSA-6r8w-5wm5-436v/GHSA-6r8w-5wm5-436v.json index 2a6d151e97a..13357f2500f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r8w-5wm5-436v/GHSA-6r8w-5wm5-436v.json +++ b/advisories/unreviewed/2022/05/GHSA-6r8w-5wm5-436v/GHSA-6r8w-5wm5-436v.json @@ -7,12 +7,8 @@ "CVE-2020-12370" ], "details": "Untrusted pointer dereference in some Intel(R) Graphics Drivers before version 26.20.100.8141 may allow a privileged user to potentially enable a denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6v37-49j9-8f9r/GHSA-6v37-49j9-8f9r.json b/advisories/unreviewed/2022/05/GHSA-6v37-49j9-8f9r/GHSA-6v37-49j9-8f9r.json index 57ba9c01e03..ca0e3f4da30 100644 --- a/advisories/unreviewed/2022/05/GHSA-6v37-49j9-8f9r/GHSA-6v37-49j9-8f9r.json +++ b/advisories/unreviewed/2022/05/GHSA-6v37-49j9-8f9r/GHSA-6v37-49j9-8f9r.json @@ -7,12 +7,8 @@ "CVE-2020-24482" ], "details": "Improper buffer restrictions in firmware for Intel(R) 7360 Cell Modem before UDE version 9.4.370 may allow unauthenticated user to potentially enable denial of service via network access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6vq9-4g76-fwp8/GHSA-6vq9-4g76-fwp8.json b/advisories/unreviewed/2022/05/GHSA-6vq9-4g76-fwp8/GHSA-6vq9-4g76-fwp8.json index 7e532f5596e..4c265e2a007 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vq9-4g76-fwp8/GHSA-6vq9-4g76-fwp8.json +++ b/advisories/unreviewed/2022/05/GHSA-6vq9-4g76-fwp8/GHSA-6vq9-4g76-fwp8.json @@ -7,12 +7,8 @@ "CVE-2020-11147" ], "details": "Use after free issue in audio modules while removing and freeing objects during list iteration due to incorrect usage of macro in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6vvh-mj67-fwr2/GHSA-6vvh-mj67-fwr2.json b/advisories/unreviewed/2022/05/GHSA-6vvh-mj67-fwr2/GHSA-6vvh-mj67-fwr2.json index 2630a67368d..c77e5906ca0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vvh-mj67-fwr2/GHSA-6vvh-mj67-fwr2.json +++ b/advisories/unreviewed/2022/05/GHSA-6vvh-mj67-fwr2/GHSA-6vvh-mj67-fwr2.json @@ -7,12 +7,8 @@ "CVE-2020-36249" ], "details": "The File Firewall before 2.8.0 for ownCloud Server does not properly enforce file-type restrictions for public shares.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6xqj-rg38-r6rr/GHSA-6xqj-rg38-r6rr.json b/advisories/unreviewed/2022/05/GHSA-6xqj-rg38-r6rr/GHSA-6xqj-rg38-r6rr.json index 4a6eacf6310..499368dbfe0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xqj-rg38-r6rr/GHSA-6xqj-rg38-r6rr.json +++ b/advisories/unreviewed/2022/05/GHSA-6xqj-rg38-r6rr/GHSA-6xqj-rg38-r6rr.json @@ -7,12 +7,8 @@ "CVE-2020-11635" ], "details": "The Zscaler Client Connector prior to 3.1.0 did not sufficiently validate RPC clients, which allows a local adversary to execute code with system privileges or perform limited actions for which they did not have privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-722q-8x49-8j55/GHSA-722q-8x49-8j55.json b/advisories/unreviewed/2022/05/GHSA-722q-8x49-8j55/GHSA-722q-8x49-8j55.json index c800ae32e20..7ffc5d9af2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-722q-8x49-8j55/GHSA-722q-8x49-8j55.json +++ b/advisories/unreviewed/2022/05/GHSA-722q-8x49-8j55/GHSA-722q-8x49-8j55.json @@ -7,12 +7,8 @@ "CVE-2020-35592" ], "details": "Pi-hole 5.0, 5.1, and 5.1.1 allows XSS via the Options header to the admin/ URI. A remote user is able to inject arbitrary web script or HTML due to incorrect sanitization of user-supplied data and achieve a Reflected Cross-Site Scripting attack against other users and steal the session cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75cr-rjwp-w5rp/GHSA-75cr-rjwp-w5rp.json b/advisories/unreviewed/2022/05/GHSA-75cr-rjwp-w5rp/GHSA-75cr-rjwp-w5rp.json index 9ff5f91fbcd..5502ff77562 100644 --- a/advisories/unreviewed/2022/05/GHSA-75cr-rjwp-w5rp/GHSA-75cr-rjwp-w5rp.json +++ b/advisories/unreviewed/2022/05/GHSA-75cr-rjwp-w5rp/GHSA-75cr-rjwp-w5rp.json @@ -7,12 +7,8 @@ "CVE-2020-12878" ], "details": "Digi ConnectPort X2e before 3.2.30.6 allows an attacker to escalate privileges from the python user to root via a symlink attack that uses chown, related to /etc/init.d/S50dropbear.sh and the /WEB/python/.ssh directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75hj-4xcc-q3qw/GHSA-75hj-4xcc-q3qw.json b/advisories/unreviewed/2022/05/GHSA-75hj-4xcc-q3qw/GHSA-75hj-4xcc-q3qw.json index 0b8cc5747c9..d85b69a3b08 100644 --- a/advisories/unreviewed/2022/05/GHSA-75hj-4xcc-q3qw/GHSA-75hj-4xcc-q3qw.json +++ b/advisories/unreviewed/2022/05/GHSA-75hj-4xcc-q3qw/GHSA-75hj-4xcc-q3qw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-75r7-qc22-8qcg/GHSA-75r7-qc22-8qcg.json b/advisories/unreviewed/2022/05/GHSA-75r7-qc22-8qcg/GHSA-75r7-qc22-8qcg.json index d52e5fd8f5d..8350004c008 100644 --- a/advisories/unreviewed/2022/05/GHSA-75r7-qc22-8qcg/GHSA-75r7-qc22-8qcg.json +++ b/advisories/unreviewed/2022/05/GHSA-75r7-qc22-8qcg/GHSA-75r7-qc22-8qcg.json @@ -7,12 +7,8 @@ "CVE-2021-21149" ], "details": "Stack buffer overflow in Data Transfer in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7674-88wr-2fm6/GHSA-7674-88wr-2fm6.json b/advisories/unreviewed/2022/05/GHSA-7674-88wr-2fm6/GHSA-7674-88wr-2fm6.json index f893da3baf6..bc86ad54630 100644 --- a/advisories/unreviewed/2022/05/GHSA-7674-88wr-2fm6/GHSA-7674-88wr-2fm6.json +++ b/advisories/unreviewed/2022/05/GHSA-7674-88wr-2fm6/GHSA-7674-88wr-2fm6.json @@ -7,12 +7,8 @@ "CVE-2021-20408" ], "details": "IBM Security Verify Information Queue 1.0.6 and 1.0.7 could disclose highly sensitive information to a local user due to inproper storage of a plaintext cryptographic key. IBM X-Force ID: 198187.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76vx-mj3m-f22w/GHSA-76vx-mj3m-f22w.json b/advisories/unreviewed/2022/05/GHSA-76vx-mj3m-f22w/GHSA-76vx-mj3m-f22w.json index 0b349e5fb93..cc736664488 100644 --- a/advisories/unreviewed/2022/05/GHSA-76vx-mj3m-f22w/GHSA-76vx-mj3m-f22w.json +++ b/advisories/unreviewed/2022/05/GHSA-76vx-mj3m-f22w/GHSA-76vx-mj3m-f22w.json @@ -7,12 +7,8 @@ "CVE-2021-21151" ], "details": "Use after free in Payments in Google Chrome prior to 88.0.4324.182 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77f8-p879-w8cr/GHSA-77f8-p879-w8cr.json b/advisories/unreviewed/2022/05/GHSA-77f8-p879-w8cr/GHSA-77f8-p879-w8cr.json index 56d94d51732..b5fe297c929 100644 --- a/advisories/unreviewed/2022/05/GHSA-77f8-p879-w8cr/GHSA-77f8-p879-w8cr.json +++ b/advisories/unreviewed/2022/05/GHSA-77f8-p879-w8cr/GHSA-77f8-p879-w8cr.json @@ -7,12 +7,8 @@ "CVE-2020-7849" ], "details": "A vulnerability of uPrism.io CURIX(Video conferecing solution) could allow an unauthenticated attacker to execute arbitrary code. This vulnerability is due to insufficient input(server domain) validation. An attacker could exploit this vulnerability through crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7fxq-f8vg-7f3w/GHSA-7fxq-f8vg-7f3w.json b/advisories/unreviewed/2022/05/GHSA-7fxq-f8vg-7f3w/GHSA-7fxq-f8vg-7f3w.json index 0cb761e45a9..379485a13c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fxq-f8vg-7f3w/GHSA-7fxq-f8vg-7f3w.json +++ b/advisories/unreviewed/2022/05/GHSA-7fxq-f8vg-7f3w/GHSA-7fxq-f8vg-7f3w.json @@ -7,12 +7,8 @@ "CVE-2020-19513" ], "details": "Buffer overflow in FinalWire Ltd AIDA64 Engineer 6.00.5100 allows attackers to execute arbitrary code by creating a crafted input that will overwrite the SEH handler.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7grv-chg4-pvhg/GHSA-7grv-chg4-pvhg.json b/advisories/unreviewed/2022/05/GHSA-7grv-chg4-pvhg/GHSA-7grv-chg4-pvhg.json index aa5809f7a82..90707bd4c1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7grv-chg4-pvhg/GHSA-7grv-chg4-pvhg.json +++ b/advisories/unreviewed/2022/05/GHSA-7grv-chg4-pvhg/GHSA-7grv-chg4-pvhg.json @@ -7,12 +7,8 @@ "CVE-2020-12386" ], "details": "Out-of-bounds write in some Intel(R) Graphics Drivers before version 15.36.39.5143 may allow an authenticated user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7h2w-2cfx-q5hm/GHSA-7h2w-2cfx-q5hm.json b/advisories/unreviewed/2022/05/GHSA-7h2w-2cfx-q5hm/GHSA-7h2w-2cfx-q5hm.json index 674471a62eb..0cedc12f85b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h2w-2cfx-q5hm/GHSA-7h2w-2cfx-q5hm.json +++ b/advisories/unreviewed/2022/05/GHSA-7h2w-2cfx-q5hm/GHSA-7h2w-2cfx-q5hm.json @@ -7,12 +7,8 @@ "CVE-2020-11194" ], "details": "Possible out of bound access in TA while processing a command from NS side due to improper length check of response buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hvq-6xxm-hcx6/GHSA-7hvq-6xxm-hcx6.json b/advisories/unreviewed/2022/05/GHSA-7hvq-6xxm-hcx6/GHSA-7hvq-6xxm-hcx6.json index c73fc15f878..54ce7be003d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hvq-6xxm-hcx6/GHSA-7hvq-6xxm-hcx6.json +++ b/advisories/unreviewed/2022/05/GHSA-7hvq-6xxm-hcx6/GHSA-7hvq-6xxm-hcx6.json @@ -7,12 +7,8 @@ "CVE-2020-12376" ], "details": "Use of hard-coded key in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow authenticated user to potentially enable information disclosure via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qwv-36fq-g7rp/GHSA-7qwv-36fq-g7rp.json b/advisories/unreviewed/2022/05/GHSA-7qwv-36fq-g7rp/GHSA-7qwv-36fq-g7rp.json index 78ae3b1fd34..36e50b3f21f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qwv-36fq-g7rp/GHSA-7qwv-36fq-g7rp.json +++ b/advisories/unreviewed/2022/05/GHSA-7qwv-36fq-g7rp/GHSA-7qwv-36fq-g7rp.json @@ -7,12 +7,8 @@ "CVE-2021-22983" ], "details": "On BIG-IP AFM version 15.1.x before 15.1.1, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.5, authenticated users accessing the Configuration utility for AFM are vulnerable to a cross-site scripting attack if they attempt to access a maliciously-crafted URL. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7vh7-fhp3-j32j/GHSA-7vh7-fhp3-j32j.json b/advisories/unreviewed/2022/05/GHSA-7vh7-fhp3-j32j/GHSA-7vh7-fhp3-j32j.json index f1c61676ebd..e293193da97 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vh7-fhp3-j32j/GHSA-7vh7-fhp3-j32j.json +++ b/advisories/unreviewed/2022/05/GHSA-7vh7-fhp3-j32j/GHSA-7vh7-fhp3-j32j.json @@ -7,12 +7,8 @@ "CVE-2020-24495" ], "details": "Insufficient access control in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 7.3 may allow a privileged user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7x7m-6347-w9xm/GHSA-7x7m-6347-w9xm.json b/advisories/unreviewed/2022/05/GHSA-7x7m-6347-w9xm/GHSA-7x7m-6347-w9xm.json index f205bc66ccc..fb1cc656015 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x7m-6347-w9xm/GHSA-7x7m-6347-w9xm.json +++ b/advisories/unreviewed/2022/05/GHSA-7x7m-6347-w9xm/GHSA-7x7m-6347-w9xm.json @@ -7,12 +7,8 @@ "CVE-2020-29031" ], "details": "An Insecure Direct Object Reference vulnerability exists in the web UI of the GateManager which allows an authenticated attacker to reset the password of any user in its domain or any sub-domain, via escalation of privileges. This issue affects all GateManager versions prior to 9.2c", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-827r-w4gx-p8pp/GHSA-827r-w4gx-p8pp.json b/advisories/unreviewed/2022/05/GHSA-827r-w4gx-p8pp/GHSA-827r-w4gx-p8pp.json index f21c752fa15..201f8bbe08c 100644 --- a/advisories/unreviewed/2022/05/GHSA-827r-w4gx-p8pp/GHSA-827r-w4gx-p8pp.json +++ b/advisories/unreviewed/2022/05/GHSA-827r-w4gx-p8pp/GHSA-827r-w4gx-p8pp.json @@ -7,12 +7,8 @@ "CVE-2021-27149" ], "details": "An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded adminpldt / z6dUABtl270qRxt7a2uGTiw credentials for an ISP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82wq-hq49-hv83/GHSA-82wq-hq49-hv83.json b/advisories/unreviewed/2022/05/GHSA-82wq-hq49-hv83/GHSA-82wq-hq49-hv83.json index 9bc2c474b89..c1bff95beb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-82wq-hq49-hv83/GHSA-82wq-hq49-hv83.json +++ b/advisories/unreviewed/2022/05/GHSA-82wq-hq49-hv83/GHSA-82wq-hq49-hv83.json @@ -7,12 +7,8 @@ "CVE-2020-12375" ], "details": "Heap overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85c9-6xqv-2xcj/GHSA-85c9-6xqv-2xcj.json b/advisories/unreviewed/2022/05/GHSA-85c9-6xqv-2xcj/GHSA-85c9-6xqv-2xcj.json index a2af1f36942..052223f0c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-85c9-6xqv-2xcj/GHSA-85c9-6xqv-2xcj.json +++ b/advisories/unreviewed/2022/05/GHSA-85c9-6xqv-2xcj/GHSA-85c9-6xqv-2xcj.json @@ -7,12 +7,8 @@ "CVE-2021-20651" ], "details": "Directory traversal vulnerability in ELECOM File Manager all versions allows remote attackers to create an arbitrary file or overwrite an existing file in a directory which can be accessed with the application privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-85mg-8m94-9jrr/GHSA-85mg-8m94-9jrr.json b/advisories/unreviewed/2022/05/GHSA-85mg-8m94-9jrr/GHSA-85mg-8m94-9jrr.json index b24d9ff4d3a..b8bb717b151 100644 --- a/advisories/unreviewed/2022/05/GHSA-85mg-8m94-9jrr/GHSA-85mg-8m94-9jrr.json +++ b/advisories/unreviewed/2022/05/GHSA-85mg-8m94-9jrr/GHSA-85mg-8m94-9jrr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -59,9 +57,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-86x4-c9pq-8x7v/GHSA-86x4-c9pq-8x7v.json b/advisories/unreviewed/2022/05/GHSA-86x4-c9pq-8x7v/GHSA-86x4-c9pq-8x7v.json index a0b07425cee..e0926aabd58 100644 --- a/advisories/unreviewed/2022/05/GHSA-86x4-c9pq-8x7v/GHSA-86x4-c9pq-8x7v.json +++ b/advisories/unreviewed/2022/05/GHSA-86x4-c9pq-8x7v/GHSA-86x4-c9pq-8x7v.json @@ -7,12 +7,8 @@ "CVE-2020-11195" ], "details": "Out of bound write and read in TA while processing command from NS side due to improper length check on command and response buffers in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88ww-3mg9-3w7j/GHSA-88ww-3mg9-3w7j.json b/advisories/unreviewed/2022/05/GHSA-88ww-3mg9-3w7j/GHSA-88ww-3mg9-3w7j.json index e08a2c8f8db..f068d5967b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-88ww-3mg9-3w7j/GHSA-88ww-3mg9-3w7j.json +++ b/advisories/unreviewed/2022/05/GHSA-88ww-3mg9-3w7j/GHSA-88ww-3mg9-3w7j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fgc-jgp5-4737/GHSA-8fgc-jgp5-4737.json b/advisories/unreviewed/2022/05/GHSA-8fgc-jgp5-4737/GHSA-8fgc-jgp5-4737.json index 5ff898f1ca8..0a9824d0f45 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fgc-jgp5-4737/GHSA-8fgc-jgp5-4737.json +++ b/advisories/unreviewed/2022/05/GHSA-8fgc-jgp5-4737/GHSA-8fgc-jgp5-4737.json @@ -7,12 +7,8 @@ "CVE-2021-20402" ], "details": "IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196076.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8g4x-ppf4-xjc8/GHSA-8g4x-ppf4-xjc8.json b/advisories/unreviewed/2022/05/GHSA-8g4x-ppf4-xjc8/GHSA-8g4x-ppf4-xjc8.json index 9d6c0130a47..a293fa5aec5 100644 --- a/advisories/unreviewed/2022/05/GHSA-8g4x-ppf4-xjc8/GHSA-8g4x-ppf4-xjc8.json +++ b/advisories/unreviewed/2022/05/GHSA-8g4x-ppf4-xjc8/GHSA-8g4x-ppf4-xjc8.json @@ -7,12 +7,8 @@ "CVE-2021-25688" ], "details": "Under certain conditions, Teradici PCoIP Agents for Windows prior to version 20.10.0 and Teradici PCoIP Agents for Linux prior to version 21.01.0 may log parts of a user's password in the application logs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h3x-8qc6-6548/GHSA-8h3x-8qc6-6548.json b/advisories/unreviewed/2022/05/GHSA-8h3x-8qc6-6548/GHSA-8h3x-8qc6-6548.json index dcde0ddfeb3..d45c0eecf8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h3x-8qc6-6548/GHSA-8h3x-8qc6-6548.json +++ b/advisories/unreviewed/2022/05/GHSA-8h3x-8qc6-6548/GHSA-8h3x-8qc6-6548.json @@ -7,12 +7,8 @@ "CVE-2020-0544" ], "details": "Insufficient control flow management in the kernel mode driver for some Intel(R) Graphics Drivers before version 15.36.39.5145 may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j35-8p36-8w3g/GHSA-8j35-8p36-8w3g.json b/advisories/unreviewed/2022/05/GHSA-8j35-8p36-8w3g/GHSA-8j35-8p36-8w3g.json index 54eb3d81c61..4cf9d9c1b03 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j35-8p36-8w3g/GHSA-8j35-8p36-8w3g.json +++ b/advisories/unreviewed/2022/05/GHSA-8j35-8p36-8w3g/GHSA-8j35-8p36-8w3g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p3w-vp6c-xgrm/GHSA-8p3w-vp6c-xgrm.json b/advisories/unreviewed/2022/05/GHSA-8p3w-vp6c-xgrm/GHSA-8p3w-vp6c-xgrm.json index 0ee353ed75e..5fad988c8e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p3w-vp6c-xgrm/GHSA-8p3w-vp6c-xgrm.json +++ b/advisories/unreviewed/2022/05/GHSA-8p3w-vp6c-xgrm/GHSA-8p3w-vp6c-xgrm.json @@ -7,12 +7,8 @@ "CVE-2021-21038" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an Out-of-bounds Write vulnerability when parsing a crafted jpeg file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8ph5-68pq-3fm9/GHSA-8ph5-68pq-3fm9.json b/advisories/unreviewed/2022/05/GHSA-8ph5-68pq-3fm9/GHSA-8ph5-68pq-3fm9.json index 7cdaef87d65..8c1977fc2db 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ph5-68pq-3fm9/GHSA-8ph5-68pq-3fm9.json +++ b/advisories/unreviewed/2022/05/GHSA-8ph5-68pq-3fm9/GHSA-8ph5-68pq-3fm9.json @@ -7,12 +7,8 @@ "CVE-2020-36250" ], "details": "In the ownCloud application before 2.15 for Android, the lock protection mechanism can be bypassed by moving the system date/time into the past.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8rr8-mvr5-2j32/GHSA-8rr8-mvr5-2j32.json b/advisories/unreviewed/2022/05/GHSA-8rr8-mvr5-2j32/GHSA-8rr8-mvr5-2j32.json index 7f34431746b..973ca60f999 100644 --- a/advisories/unreviewed/2022/05/GHSA-8rr8-mvr5-2j32/GHSA-8rr8-mvr5-2j32.json +++ b/advisories/unreviewed/2022/05/GHSA-8rr8-mvr5-2j32/GHSA-8rr8-mvr5-2j32.json @@ -7,12 +7,8 @@ "CVE-2021-25690" ], "details": "A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the software.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v5h-3pm2-q84c/GHSA-8v5h-3pm2-q84c.json b/advisories/unreviewed/2022/05/GHSA-8v5h-3pm2-q84c/GHSA-8v5h-3pm2-q84c.json index 388b4bb2d11..9f92f820bef 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v5h-3pm2-q84c/GHSA-8v5h-3pm2-q84c.json +++ b/advisories/unreviewed/2022/05/GHSA-8v5h-3pm2-q84c/GHSA-8v5h-3pm2-q84c.json @@ -7,12 +7,8 @@ "CVE-2020-36246" ], "details": "Amaze File Manager before 3.5.1 allows attackers to obtain root privileges via shell metacharacters in a symbolic link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8x43-fxp7-gqp3/GHSA-8x43-fxp7-gqp3.json b/advisories/unreviewed/2022/05/GHSA-8x43-fxp7-gqp3/GHSA-8x43-fxp7-gqp3.json index 5e0855c53c9..646229b2394 100644 --- a/advisories/unreviewed/2022/05/GHSA-8x43-fxp7-gqp3/GHSA-8x43-fxp7-gqp3.json +++ b/advisories/unreviewed/2022/05/GHSA-8x43-fxp7-gqp3/GHSA-8x43-fxp7-gqp3.json @@ -7,12 +7,8 @@ "CVE-2020-24504" ], "details": "Uncontrolled resource consumption in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allow an authenticated user to potentially enable denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9389-gq7v-6fh7/GHSA-9389-gq7v-6fh7.json b/advisories/unreviewed/2022/05/GHSA-9389-gq7v-6fh7/GHSA-9389-gq7v-6fh7.json index cc13658e531..be96c86d8a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9389-gq7v-6fh7/GHSA-9389-gq7v-6fh7.json +++ b/advisories/unreviewed/2022/05/GHSA-9389-gq7v-6fh7/GHSA-9389-gq7v-6fh7.json @@ -7,12 +7,8 @@ "CVE-2021-3204" ], "details": "SSRF in the document conversion component of Webware Webdesktop 5.1.15 allows an attacker to read all files from the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-93gw-9w6q-fxw3/GHSA-93gw-9w6q-fxw3.json b/advisories/unreviewed/2022/05/GHSA-93gw-9w6q-fxw3/GHSA-93gw-9w6q-fxw3.json index 90bfe5f46c7..0c9c2bc0bdd 100644 --- a/advisories/unreviewed/2022/05/GHSA-93gw-9w6q-fxw3/GHSA-93gw-9w6q-fxw3.json +++ b/advisories/unreviewed/2022/05/GHSA-93gw-9w6q-fxw3/GHSA-93gw-9w6q-fxw3.json @@ -7,12 +7,8 @@ "CVE-2021-20638" ], "details": "LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute arbitrary OS commands via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-949f-2j73-x2jx/GHSA-949f-2j73-x2jx.json b/advisories/unreviewed/2022/05/GHSA-949f-2j73-x2jx/GHSA-949f-2j73-x2jx.json index 1081df5148e..c080db189ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-949f-2j73-x2jx/GHSA-949f-2j73-x2jx.json +++ b/advisories/unreviewed/2022/05/GHSA-949f-2j73-x2jx/GHSA-949f-2j73-x2jx.json @@ -7,12 +7,8 @@ "CVE-2021-21040" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94c9-25gc-jr8p/GHSA-94c9-25gc-jr8p.json b/advisories/unreviewed/2022/05/GHSA-94c9-25gc-jr8p/GHSA-94c9-25gc-jr8p.json index b44241c6ab7..e22deced072 100644 --- a/advisories/unreviewed/2022/05/GHSA-94c9-25gc-jr8p/GHSA-94c9-25gc-jr8p.json +++ b/advisories/unreviewed/2022/05/GHSA-94c9-25gc-jr8p/GHSA-94c9-25gc-jr8p.json @@ -7,12 +7,8 @@ "CVE-2021-27124" ], "details": "SQL injection in the expertise parameter in search_result.php in Doctor Appointment System v1.0 allows an authenticated patient user to dump the database credentials via a SQL injection attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-94wm-8j6r-283r/GHSA-94wm-8j6r-283r.json b/advisories/unreviewed/2022/05/GHSA-94wm-8j6r-283r/GHSA-94wm-8j6r-283r.json index 857c87a0099..efd9159089f 100644 --- a/advisories/unreviewed/2022/05/GHSA-94wm-8j6r-283r/GHSA-94wm-8j6r-283r.json +++ b/advisories/unreviewed/2022/05/GHSA-94wm-8j6r-283r/GHSA-94wm-8j6r-283r.json @@ -7,12 +7,8 @@ "CVE-2020-4956" ], "details": "IBM Spectrum Protect Operations Center 7.1 and 8.1 is vulnerable to a denial of service, caused by a RPC that allows certain cache values to be set and dumped to a file. By setting a grossly large cache value and dumping that cached value to a file multiple times, a remote attacker could exploit this vulnerability to cause the consumption of all memory resources. IBM X-Force ID: 192156.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-959j-89f4-f372/GHSA-959j-89f4-f372.json b/advisories/unreviewed/2022/05/GHSA-959j-89f4-f372/GHSA-959j-89f4-f372.json index 0af6264df0b..b949399b5f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-959j-89f4-f372/GHSA-959j-89f4-f372.json +++ b/advisories/unreviewed/2022/05/GHSA-959j-89f4-f372/GHSA-959j-89f4-f372.json @@ -7,12 +7,8 @@ "CVE-2020-24491" ], "details": "Debug message containing addresses of memory transactions in some Intel(R) 10th Generation Core Processors supporting SGX may allow a privileged user to potentially enable information disclosure via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95x3-j4xq-37g5/GHSA-95x3-j4xq-37g5.json b/advisories/unreviewed/2022/05/GHSA-95x3-j4xq-37g5/GHSA-95x3-j4xq-37g5.json index 1db22d608cd..8d8e54184c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-95x3-j4xq-37g5/GHSA-95x3-j4xq-37g5.json +++ b/advisories/unreviewed/2022/05/GHSA-95x3-j4xq-37g5/GHSA-95x3-j4xq-37g5.json @@ -7,12 +7,8 @@ "CVE-2021-20647" ], "details": "Cross-site request forgery (CSRF) vulnerability in ELECOM WRC-300FEBK-S allows remote attackers to hijack the authentication of administrators and execute an arbitrary request via unspecified vector. As a result, the device settings may be altered and/or telnet daemon may be started.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9737-ffv6-mv28/GHSA-9737-ffv6-mv28.json b/advisories/unreviewed/2022/05/GHSA-9737-ffv6-mv28/GHSA-9737-ffv6-mv28.json index 11e1063be95..0c09feebb40 100644 --- a/advisories/unreviewed/2022/05/GHSA-9737-ffv6-mv28/GHSA-9737-ffv6-mv28.json +++ b/advisories/unreviewed/2022/05/GHSA-9737-ffv6-mv28/GHSA-9737-ffv6-mv28.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-999j-h7gr-qx6f/GHSA-999j-h7gr-qx6f.json b/advisories/unreviewed/2022/05/GHSA-999j-h7gr-qx6f/GHSA-999j-h7gr-qx6f.json index b8f30567ed4..a84b8e29ded 100644 --- a/advisories/unreviewed/2022/05/GHSA-999j-h7gr-qx6f/GHSA-999j-h7gr-qx6f.json +++ b/advisories/unreviewed/2022/05/GHSA-999j-h7gr-qx6f/GHSA-999j-h7gr-qx6f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fhx-hcwq-8qwv/GHSA-9fhx-hcwq-8qwv.json b/advisories/unreviewed/2022/05/GHSA-9fhx-hcwq-8qwv/GHSA-9fhx-hcwq-8qwv.json index 2e92cb91bbc..66497fda74f 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fhx-hcwq-8qwv/GHSA-9fhx-hcwq-8qwv.json +++ b/advisories/unreviewed/2022/05/GHSA-9fhx-hcwq-8qwv/GHSA-9fhx-hcwq-8qwv.json @@ -7,12 +7,8 @@ "CVE-2021-27328" ], "details": "Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gp7-g8rj-c86h/GHSA-9gp7-g8rj-c86h.json b/advisories/unreviewed/2022/05/GHSA-9gp7-g8rj-c86h/GHSA-9gp7-g8rj-c86h.json index 30c8c1e242a..3ef90e58912 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gp7-g8rj-c86h/GHSA-9gp7-g8rj-c86h.json +++ b/advisories/unreviewed/2022/05/GHSA-9gp7-g8rj-c86h/GHSA-9gp7-g8rj-c86h.json @@ -7,12 +7,8 @@ "CVE-2021-21041" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a use-after-free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9hq9-j4jv-ph2g/GHSA-9hq9-j4jv-ph2g.json b/advisories/unreviewed/2022/05/GHSA-9hq9-j4jv-ph2g/GHSA-9hq9-j4jv-ph2g.json index d3fcf44e44d..75208158cd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hq9-j4jv-ph2g/GHSA-9hq9-j4jv-ph2g.json +++ b/advisories/unreviewed/2022/05/GHSA-9hq9-j4jv-ph2g/GHSA-9hq9-j4jv-ph2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9j42-wwm8-235w/GHSA-9j42-wwm8-235w.json b/advisories/unreviewed/2022/05/GHSA-9j42-wwm8-235w/GHSA-9j42-wwm8-235w.json index b4c1b2f4a0d..da42a4b4905 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j42-wwm8-235w/GHSA-9j42-wwm8-235w.json +++ b/advisories/unreviewed/2022/05/GHSA-9j42-wwm8-235w/GHSA-9j42-wwm8-235w.json @@ -7,12 +7,8 @@ "CVE-2020-12373" ], "details": "Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2.47 may allow a privileged user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mm5-7pfm-h9rc/GHSA-9mm5-7pfm-h9rc.json b/advisories/unreviewed/2022/05/GHSA-9mm5-7pfm-h9rc/GHSA-9mm5-7pfm-h9rc.json index 733f22f78ce..ed0c62f057a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mm5-7pfm-h9rc/GHSA-9mm5-7pfm-h9rc.json +++ b/advisories/unreviewed/2022/05/GHSA-9mm5-7pfm-h9rc/GHSA-9mm5-7pfm-h9rc.json @@ -7,12 +7,8 @@ "CVE-2021-27142" ], "details": "An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hardcoded private key that has 0777 permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mrj-wq9r-h4vw/GHSA-9mrj-wq9r-h4vw.json b/advisories/unreviewed/2022/05/GHSA-9mrj-wq9r-h4vw/GHSA-9mrj-wq9r-h4vw.json index 76fe13d686b..1e35a33291a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mrj-wq9r-h4vw/GHSA-9mrj-wq9r-h4vw.json +++ b/advisories/unreviewed/2022/05/GHSA-9mrj-wq9r-h4vw/GHSA-9mrj-wq9r-h4vw.json @@ -7,12 +7,8 @@ "CVE-2021-26717" ], "details": "An issue was discovered in Sangoma Asterisk 16.x before 16.16.1, 17.x before 17.9.2, and 18.x before 18.2.1 and Certified Asterisk before 16.8-cert6. When re-negotiating for T.38, if the initial remote response was delayed just enough, Asterisk would send both audio and T.38 in the SDP. If this happened, and the remote responded with a declined T.38 stream, then Asterisk would crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9pcq-r26w-9482/GHSA-9pcq-r26w-9482.json b/advisories/unreviewed/2022/05/GHSA-9pcq-r26w-9482/GHSA-9pcq-r26w-9482.json index 7b825ca6702..707ef7ebd32 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pcq-r26w-9482/GHSA-9pcq-r26w-9482.json +++ b/advisories/unreviewed/2022/05/GHSA-9pcq-r26w-9482/GHSA-9pcq-r26w-9482.json @@ -7,12 +7,8 @@ "CVE-2021-27564" ], "details": "A stored XSS issue exists in Appspace 6.2.4. After a user is authenticated and enters an XSS payload under the groups section of the network tab, it is stored as the group name. Whenever another member visits that group, this payload executes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9w8q-2hwq-vvh7/GHSA-9w8q-2hwq-vvh7.json b/advisories/unreviewed/2022/05/GHSA-9w8q-2hwq-vvh7/GHSA-9w8q-2hwq-vvh7.json index 1caa6dcc20f..fbc1c7400cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w8q-2hwq-vvh7/GHSA-9w8q-2hwq-vvh7.json +++ b/advisories/unreviewed/2022/05/GHSA-9w8q-2hwq-vvh7/GHSA-9w8q-2hwq-vvh7.json @@ -7,12 +7,8 @@ "CVE-2021-21049" ], "details": "Adobe Photoshop versions 21.2.4 (and earlier) and 22.1.1 (and earlier) are affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9wc4-3575-8q45/GHSA-9wc4-3575-8q45.json b/advisories/unreviewed/2022/05/GHSA-9wc4-3575-8q45/GHSA-9wc4-3575-8q45.json index a05c41433ee..89c0b7a755d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wc4-3575-8q45/GHSA-9wc4-3575-8q45.json +++ b/advisories/unreviewed/2022/05/GHSA-9wc4-3575-8q45/GHSA-9wc4-3575-8q45.json @@ -7,12 +7,8 @@ "CVE-2020-24451" ], "details": "Uncontrolled search path in the Intel(R) Optane(TM) DC Persistent Memory installer for Windows* before version 1.00.00.3506 may allow an authenticated user to potentially enable escalation of privilege via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9x2m-28m5-328q/GHSA-9x2m-28m5-328q.json b/advisories/unreviewed/2022/05/GHSA-9x2m-28m5-328q/GHSA-9x2m-28m5-328q.json index e50ce1ffae4..6d0f7aa5a92 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x2m-28m5-328q/GHSA-9x2m-28m5-328q.json +++ b/advisories/unreviewed/2022/05/GHSA-9x2m-28m5-328q/GHSA-9x2m-28m5-328q.json @@ -7,12 +7,8 @@ "CVE-2020-36233" ], "details": "The Microsoft Windows Installer for Atlassian Bitbucket Server and Data Center before version 6.10.9, 7.x before 7.6.4, and from version 7.7.0 before 7.10.1 allows local attackers to escalate privileges because of weak permissions on the installation directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xcx-66r3-hp2h/GHSA-9xcx-66r3-hp2h.json b/advisories/unreviewed/2022/05/GHSA-9xcx-66r3-hp2h/GHSA-9xcx-66r3-hp2h.json index 5460cc7145e..e60a3341658 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xcx-66r3-hp2h/GHSA-9xcx-66r3-hp2h.json +++ b/advisories/unreviewed/2022/05/GHSA-9xcx-66r3-hp2h/GHSA-9xcx-66r3-hp2h.json @@ -7,12 +7,8 @@ "CVE-2020-27867" ], "details": "This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400 firmware version 1.2.0.62_1.0.1 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the mini_httpd service, which listens on TCP port 80 by default. When parsing the funjsq_access_token parameter, the process does not properly validate a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-11653.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4cf-m645-2xm8/GHSA-c4cf-m645-2xm8.json b/advisories/unreviewed/2022/05/GHSA-c4cf-m645-2xm8/GHSA-c4cf-m645-2xm8.json index 03bc4ab184c..41fe9d9cb5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4cf-m645-2xm8/GHSA-c4cf-m645-2xm8.json +++ b/advisories/unreviewed/2022/05/GHSA-c4cf-m645-2xm8/GHSA-c4cf-m645-2xm8.json @@ -7,12 +7,8 @@ "CVE-2021-1412" ], "details": "Multiple vulnerabilities in the Admin portal of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information. These vulnerabilities are due to improper enforcement of administrator privilege levels for sensitive data. An attacker with read-only administrator access to the Admin portal could exploit these vulnerabilities by browsing to one of the pages that contains sensitive data. A successful exploit could allow the attacker to collect sensitive information regarding the configuration of the system. For more information about these vulnerabilities, see the Details section of this advisory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5gf-2r8c-v384/GHSA-c5gf-2r8c-v384.json b/advisories/unreviewed/2022/05/GHSA-c5gf-2r8c-v384/GHSA-c5gf-2r8c-v384.json index 913c542fe16..b4cda813a28 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5gf-2r8c-v384/GHSA-c5gf-2r8c-v384.json +++ b/advisories/unreviewed/2022/05/GHSA-c5gf-2r8c-v384/GHSA-c5gf-2r8c-v384.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6gw-7j5j-4c6v/GHSA-c6gw-7j5j-4c6v.json b/advisories/unreviewed/2022/05/GHSA-c6gw-7j5j-4c6v/GHSA-c6gw-7j5j-4c6v.json index 177bef59707..24ae43b9da1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6gw-7j5j-4c6v/GHSA-c6gw-7j5j-4c6v.json +++ b/advisories/unreviewed/2022/05/GHSA-c6gw-7j5j-4c6v/GHSA-c6gw-7j5j-4c6v.json @@ -7,12 +7,8 @@ "CVE-2020-24503" ], "details": "Insufficient access control in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allow an authenticated user to potentially enable information disclosure via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c7vh-9vc4-xjgc/GHSA-c7vh-9vc4-xjgc.json b/advisories/unreviewed/2022/05/GHSA-c7vh-9vc4-xjgc/GHSA-c7vh-9vc4-xjgc.json index 719626e0202..fed8bac4aa6 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7vh-9vc4-xjgc/GHSA-c7vh-9vc4-xjgc.json +++ b/advisories/unreviewed/2022/05/GHSA-c7vh-9vc4-xjgc/GHSA-c7vh-9vc4-xjgc.json @@ -7,12 +7,8 @@ "CVE-2020-25605" ], "details": "Cleartext transmission of sensitive information in Agora Video SDK prior to 3.1 allows a remote attacker to obtain access to audio and video of any ongoing Agora video call through observation of cleartext network traffic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc4r-2rwj-vx7x/GHSA-cc4r-2rwj-vx7x.json b/advisories/unreviewed/2022/05/GHSA-cc4r-2rwj-vx7x/GHSA-cc4r-2rwj-vx7x.json index c69de443340..d749b320cae 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc4r-2rwj-vx7x/GHSA-cc4r-2rwj-vx7x.json +++ b/advisories/unreviewed/2022/05/GHSA-cc4r-2rwj-vx7x/GHSA-cc4r-2rwj-vx7x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cf7q-c6xh-98hm/GHSA-cf7q-c6xh-98hm.json b/advisories/unreviewed/2022/05/GHSA-cf7q-c6xh-98hm/GHSA-cf7q-c6xh-98hm.json index d8ffa80387a..5f776555201 100644 --- a/advisories/unreviewed/2022/05/GHSA-cf7q-c6xh-98hm/GHSA-cf7q-c6xh-98hm.json +++ b/advisories/unreviewed/2022/05/GHSA-cf7q-c6xh-98hm/GHSA-cf7q-c6xh-98hm.json @@ -7,12 +7,8 @@ "CVE-2021-27234" ], "details": "An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. The web application suffers from SQL injection on Adminlog.asp, Archivemsgs.asp, Deletelog.asp, Eventlog.asp, and Evmlog.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg28-c344-xwc5/GHSA-cg28-c344-xwc5.json b/advisories/unreviewed/2022/05/GHSA-cg28-c344-xwc5/GHSA-cg28-c344-xwc5.json index 05951715f6c..0821436c198 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg28-c344-xwc5/GHSA-cg28-c344-xwc5.json +++ b/advisories/unreviewed/2022/05/GHSA-cg28-c344-xwc5/GHSA-cg28-c344-xwc5.json @@ -7,12 +7,8 @@ "CVE-2020-11177" ], "details": "User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device lock in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ch5f-9jpr-7ccf/GHSA-ch5f-9jpr-7ccf.json b/advisories/unreviewed/2022/05/GHSA-ch5f-9jpr-7ccf/GHSA-ch5f-9jpr-7ccf.json index 6f189718c80..7ff5a8b8c4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch5f-9jpr-7ccf/GHSA-ch5f-9jpr-7ccf.json +++ b/advisories/unreviewed/2022/05/GHSA-ch5f-9jpr-7ccf/GHSA-ch5f-9jpr-7ccf.json @@ -7,12 +7,8 @@ "CVE-2020-9050" ], "details": "Path Traversal vulnerability exists in Metasys Reporting Engine (MRE) Web Services which could allow a remote unauthenticated attacker to access and download arbitrary files from the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ch8w-w4pc-hwjx/GHSA-ch8w-w4pc-hwjx.json b/advisories/unreviewed/2022/05/GHSA-ch8w-w4pc-hwjx/GHSA-ch8w-w4pc-hwjx.json index 2826e99fc67..2efbfb39093 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch8w-w4pc-hwjx/GHSA-ch8w-w4pc-hwjx.json +++ b/advisories/unreviewed/2022/05/GHSA-ch8w-w4pc-hwjx/GHSA-ch8w-w4pc-hwjx.json @@ -7,12 +7,8 @@ "CVE-2021-22977" ], "details": "On BIG-IP version 16.0.0-16.0.1 and 14.1.2.4-14.1.3, cooperation between malicious HTTP client code and a malicious server may cause TMM to restart and generate a core file. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chcp-wf8h-ggjw/GHSA-chcp-wf8h-ggjw.json b/advisories/unreviewed/2022/05/GHSA-chcp-wf8h-ggjw/GHSA-chcp-wf8h-ggjw.json index ba71fa8b52b..9dc757e7ef6 100644 --- a/advisories/unreviewed/2022/05/GHSA-chcp-wf8h-ggjw/GHSA-chcp-wf8h-ggjw.json +++ b/advisories/unreviewed/2022/05/GHSA-chcp-wf8h-ggjw/GHSA-chcp-wf8h-ggjw.json @@ -7,12 +7,8 @@ "CVE-2020-4933" ], "details": "IBM Jazz Reporting Service 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 191751.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-chg9-84gg-7qpw/GHSA-chg9-84gg-7qpw.json b/advisories/unreviewed/2022/05/GHSA-chg9-84gg-7qpw/GHSA-chg9-84gg-7qpw.json index fe527a475df..ebad23b2aec 100644 --- a/advisories/unreviewed/2022/05/GHSA-chg9-84gg-7qpw/GHSA-chg9-84gg-7qpw.json +++ b/advisories/unreviewed/2022/05/GHSA-chg9-84gg-7qpw/GHSA-chg9-84gg-7qpw.json @@ -7,12 +7,8 @@ "CVE-2021-20644" ], "details": "ELECOM WRC-1467GHBK-A allows arbitrary scripts to be executed on the user's web browser by displaying a specially crafted SSID on the web setup page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm89-pw5p-p573/GHSA-cm89-pw5p-p573.json b/advisories/unreviewed/2022/05/GHSA-cm89-pw5p-p573/GHSA-cm89-pw5p-p573.json index 13e7a18fee7..419a02bb50b 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm89-pw5p-p573/GHSA-cm89-pw5p-p573.json +++ b/advisories/unreviewed/2022/05/GHSA-cm89-pw5p-p573/GHSA-cm89-pw5p-p573.json @@ -7,12 +7,8 @@ "CVE-2021-21060" ], "details": "Adobe Acrobat Pro DC versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an improper input validation vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cph6-mhr2-7r9p/GHSA-cph6-mhr2-7r9p.json b/advisories/unreviewed/2022/05/GHSA-cph6-mhr2-7r9p/GHSA-cph6-mhr2-7r9p.json index c14cea7ae54..26d3d8a2d3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cph6-mhr2-7r9p/GHSA-cph6-mhr2-7r9p.json +++ b/advisories/unreviewed/2022/05/GHSA-cph6-mhr2-7r9p/GHSA-cph6-mhr2-7r9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cq94-fv46-w3ph/GHSA-cq94-fv46-w3ph.json b/advisories/unreviewed/2022/05/GHSA-cq94-fv46-w3ph/GHSA-cq94-fv46-w3ph.json index e31b0df9605..b4a34f4a646 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq94-fv46-w3ph/GHSA-cq94-fv46-w3ph.json +++ b/advisories/unreviewed/2022/05/GHSA-cq94-fv46-w3ph/GHSA-cq94-fv46-w3ph.json @@ -7,12 +7,8 @@ "CVE-2020-35559" ], "details": "An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an unused function that allows an authenticated attacker to use up all available IPs of an account and thus not allow creation of new devices and users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv7g-j45h-87jf/GHSA-cv7g-j45h-87jf.json b/advisories/unreviewed/2022/05/GHSA-cv7g-j45h-87jf/GHSA-cv7g-j45h-87jf.json index 86e51e522df..b6652339a95 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv7g-j45h-87jf/GHSA-cv7g-j45h-87jf.json +++ b/advisories/unreviewed/2022/05/GHSA-cv7g-j45h-87jf/GHSA-cv7g-j45h-87jf.json @@ -7,12 +7,8 @@ "CVE-2020-35339" ], "details": "In 74cms version 5.0.1, there is a remote code execution vulnerability in /Application/Admin/Controller/ConfigController.class.php and /ThinkPHP/Common/functions.php where attackers can obtain server permissions and control the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2j5-6ccc-fcjg/GHSA-f2j5-6ccc-fcjg.json b/advisories/unreviewed/2022/05/GHSA-f2j5-6ccc-fcjg/GHSA-f2j5-6ccc-fcjg.json index 2f56f302467..165f7518f0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2j5-6ccc-fcjg/GHSA-f2j5-6ccc-fcjg.json +++ b/advisories/unreviewed/2022/05/GHSA-f2j5-6ccc-fcjg/GHSA-f2j5-6ccc-fcjg.json @@ -7,12 +7,8 @@ "CVE-2020-24500" ], "details": "Buffer overflow in the firmware for Intel(R) E810 Ethernet Controllers before version 1.4.1.13 may allow a privileged user to potentially enable a denial of service via local access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3cx-fffm-8842/GHSA-f3cx-fffm-8842.json b/advisories/unreviewed/2022/05/GHSA-f3cx-fffm-8842/GHSA-f3cx-fffm-8842.json index 9165f88fef2..ea988b0bd94 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3cx-fffm-8842/GHSA-f3cx-fffm-8842.json +++ b/advisories/unreviewed/2022/05/GHSA-f3cx-fffm-8842/GHSA-f3cx-fffm-8842.json @@ -7,12 +7,8 @@ "CVE-2021-27235" ], "details": "An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. On the admin portal of the web application, there is a functionality at diagzip.asp that allows anyone to export tables of a database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f3fp-5h9c-j8r8/GHSA-f3fp-5h9c-j8r8.json b/advisories/unreviewed/2022/05/GHSA-f3fp-5h9c-j8r8/GHSA-f3fp-5h9c-j8r8.json index 3b6e79a3bd3..59bd8b7024d 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3fp-5h9c-j8r8/GHSA-f3fp-5h9c-j8r8.json +++ b/advisories/unreviewed/2022/05/GHSA-f3fp-5h9c-j8r8/GHSA-f3fp-5h9c-j8r8.json @@ -7,12 +7,8 @@ "CVE-2021-21042" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to locally escalate privileges in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3x2-w4cq-5v25/GHSA-f3x2-w4cq-5v25.json b/advisories/unreviewed/2022/05/GHSA-f3x2-w4cq-5v25/GHSA-f3x2-w4cq-5v25.json index 77fd6baa0e5..37084b49009 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3x2-w4cq-5v25/GHSA-f3x2-w4cq-5v25.json +++ b/advisories/unreviewed/2022/05/GHSA-f3x2-w4cq-5v25/GHSA-f3x2-w4cq-5v25.json @@ -7,12 +7,8 @@ "CVE-2021-22701" ], "details": "A CWE-352: Cross-Site Request Forgery vulnerability exists in PowerLogic ION7400, ION7650, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause a user to perform an unintended action on the target device when using the HTTP web interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3xc-hcmc-rvrq/GHSA-f3xc-hcmc-rvrq.json b/advisories/unreviewed/2022/05/GHSA-f3xc-hcmc-rvrq/GHSA-f3xc-hcmc-rvrq.json index 53644bd7f1a..6cc17076213 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3xc-hcmc-rvrq/GHSA-f3xc-hcmc-rvrq.json +++ b/advisories/unreviewed/2022/05/GHSA-f3xc-hcmc-rvrq/GHSA-f3xc-hcmc-rvrq.json @@ -7,12 +7,8 @@ "CVE-2021-20650" ], "details": "Cross-site request forgery (CSRF) vulnerability in ELECOM NCC-EWF100RMWH2 allows remote attackers to hijack the authentication of administrators and execute an arbitrary request via unspecified vector. As a result, the device settings may be altered and/or telnet daemon may be started.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f444-f4gw-jhg6/GHSA-f444-f4gw-jhg6.json b/advisories/unreviewed/2022/05/GHSA-f444-f4gw-jhg6/GHSA-f444-f4gw-jhg6.json index 66082f33b22..41a1998fe78 100644 --- a/advisories/unreviewed/2022/05/GHSA-f444-f4gw-jhg6/GHSA-f444-f4gw-jhg6.json +++ b/advisories/unreviewed/2022/05/GHSA-f444-f4gw-jhg6/GHSA-f444-f4gw-jhg6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f46h-mh94-f4w2/GHSA-f46h-mh94-f4w2.json b/advisories/unreviewed/2022/05/GHSA-f46h-mh94-f4w2/GHSA-f46h-mh94-f4w2.json index 1aa5cfdadaf..621ae50739d 100644 --- a/advisories/unreviewed/2022/05/GHSA-f46h-mh94-f4w2/GHSA-f46h-mh94-f4w2.json +++ b/advisories/unreviewed/2022/05/GHSA-f46h-mh94-f4w2/GHSA-f46h-mh94-f4w2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4jc-6jgg-x3mc/GHSA-f4jc-6jgg-x3mc.json b/advisories/unreviewed/2022/05/GHSA-f4jc-6jgg-x3mc/GHSA-f4jc-6jgg-x3mc.json index d2732f56c25..272f3f63e37 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4jc-6jgg-x3mc/GHSA-f4jc-6jgg-x3mc.json +++ b/advisories/unreviewed/2022/05/GHSA-f4jc-6jgg-x3mc/GHSA-f4jc-6jgg-x3mc.json @@ -7,12 +7,8 @@ "CVE-2020-29664" ], "details": "A command injection issue in dji_sys in DJI Mavic 2 Remote Controller before firmware version 01.00.0510 allows for code execution via a malicious firmware upgrade packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5rh-xqjc-3gc6/GHSA-f5rh-xqjc-3gc6.json b/advisories/unreviewed/2022/05/GHSA-f5rh-xqjc-3gc6/GHSA-f5rh-xqjc-3gc6.json index 4ea6d45cf32..393709337f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5rh-xqjc-3gc6/GHSA-f5rh-xqjc-3gc6.json +++ b/advisories/unreviewed/2022/05/GHSA-f5rh-xqjc-3gc6/GHSA-f5rh-xqjc-3gc6.json @@ -7,12 +7,8 @@ "CVE-2021-27141" ], "details": "An issue was discovered on FiberHome HG6245D devices through RP2613. Credentials in /fhconf/umconfig.txt are obfuscated via XOR with the hardcoded *j7a(L#yZ98sSd5HfSgGjMj8;Ss;d)(*&^#@$a2s0i3g key. (The webs binary has details on how XOR is used.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6fw-jv2q-2mh7/GHSA-f6fw-jv2q-2mh7.json b/advisories/unreviewed/2022/05/GHSA-f6fw-jv2q-2mh7/GHSA-f6fw-jv2q-2mh7.json index 837947b0410..baabf54a24c 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6fw-jv2q-2mh7/GHSA-f6fw-jv2q-2mh7.json +++ b/advisories/unreviewed/2022/05/GHSA-f6fw-jv2q-2mh7/GHSA-f6fw-jv2q-2mh7.json @@ -7,12 +7,8 @@ "CVE-2020-27869" ], "details": "This vulnerability allows remote attackers to escalate privileges on affected installations of SolarWinds Network Performance Monitor 2020 HF1, NPM: 2020.2. Authentication is required to exploit this vulnerability. The specific flaw exists within the WriteToFile method. The issue results from the lack of proper validation of a user-supplied string before using it to construct SQL queries. An attacker can leverage this vulnerability to escalate privileges and reset the password for the Admin user. Was ZDI-CAN-11804.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f78x-m4hf-jx3q/GHSA-f78x-m4hf-jx3q.json b/advisories/unreviewed/2022/05/GHSA-f78x-m4hf-jx3q/GHSA-f78x-m4hf-jx3q.json index ea1426e646e..c485683a865 100644 --- a/advisories/unreviewed/2022/05/GHSA-f78x-m4hf-jx3q/GHSA-f78x-m4hf-jx3q.json +++ b/advisories/unreviewed/2022/05/GHSA-f78x-m4hf-jx3q/GHSA-f78x-m4hf-jx3q.json @@ -7,12 +7,8 @@ "CVE-2020-27860" ], "details": "This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.1.35811. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the processing of XFA templates. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-11727.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7rm-p9fc-773f/GHSA-f7rm-p9fc-773f.json b/advisories/unreviewed/2022/05/GHSA-f7rm-p9fc-773f/GHSA-f7rm-p9fc-773f.json index 8993c2a878c..38f13447a61 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7rm-p9fc-773f/GHSA-f7rm-p9fc-773f.json +++ b/advisories/unreviewed/2022/05/GHSA-f7rm-p9fc-773f/GHSA-f7rm-p9fc-773f.json @@ -7,12 +7,8 @@ "CVE-2020-22425" ], "details": "Centreon 19.10-3.el7 is affected by a SQL injection vulnerability, where an authorized user is able to inject additional SQL queries to perform remote command execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f87j-f7c8-ff69/GHSA-f87j-f7c8-ff69.json b/advisories/unreviewed/2022/05/GHSA-f87j-f7c8-ff69/GHSA-f87j-f7c8-ff69.json index 85eb5fe916a..204c4abf5e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f87j-f7c8-ff69/GHSA-f87j-f7c8-ff69.json +++ b/advisories/unreviewed/2022/05/GHSA-f87j-f7c8-ff69/GHSA-f87j-f7c8-ff69.json @@ -7,12 +7,8 @@ "CVE-2021-27224" ], "details": "The WPG plugin before 3.1.0.0 for IrfanView 4.57 has a user-mode write access violation starting at WPG+0x0000000000012ec6, which might allow remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg2g-p9qq-jw38/GHSA-fg2g-p9qq-jw38.json b/advisories/unreviewed/2022/05/GHSA-fg2g-p9qq-jw38/GHSA-fg2g-p9qq-jw38.json index 0cb9ccd1745..30589557fe1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg2g-p9qq-jw38/GHSA-fg2g-p9qq-jw38.json +++ b/advisories/unreviewed/2022/05/GHSA-fg2g-p9qq-jw38/GHSA-fg2g-p9qq-jw38.json @@ -7,12 +7,8 @@ "CVE-2020-35591" ], "details": "Pi-hole 5.0, 5.1, and 5.1.1 allows Session Fixation. The application does not generate a new session cookie after the user is logged in. A malicious user is able to create a new session cookie value and inject it to a victim. After the victim logs in, the injected cookie becomes valid, giving the attacker access to the user's account through the active session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fj8x-2c72-3h8w/GHSA-fj8x-2c72-3h8w.json b/advisories/unreviewed/2022/05/GHSA-fj8x-2c72-3h8w/GHSA-fj8x-2c72-3h8w.json index 2e4103c0afa..7f44b55413c 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj8x-2c72-3h8w/GHSA-fj8x-2c72-3h8w.json +++ b/advisories/unreviewed/2022/05/GHSA-fj8x-2c72-3h8w/GHSA-fj8x-2c72-3h8w.json @@ -7,12 +7,8 @@ "CVE-2021-22985" ], "details": "On BIG-IP APM version 16.0.x before 16.0.1.1, under certain conditions, when processing VPN traffic with APM, TMM consumes excessive memory. A malicious, authenticated VPN user may abuse this to perform a DoS attack against the APM. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjm3-mp48-h3mr/GHSA-fjm3-mp48-h3mr.json b/advisories/unreviewed/2022/05/GHSA-fjm3-mp48-h3mr/GHSA-fjm3-mp48-h3mr.json index 34045c2d098..ae677e8786b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjm3-mp48-h3mr/GHSA-fjm3-mp48-h3mr.json +++ b/advisories/unreviewed/2022/05/GHSA-fjm3-mp48-h3mr/GHSA-fjm3-mp48-h3mr.json @@ -7,12 +7,8 @@ "CVE-2021-22974" ], "details": "On BIG-IP version 16.0.x before 16.0.1.1, 15.1.x before 15.1.2, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6 and all versions of BIG-IQ 7.x and 6.x, an authenticated attacker with access to iControl REST over the control plane may be able to take advantage of a race condition to execute commands with an elevated privilege level. This vulnerability is due to an incomplete fix for CVE-2017-6167. Note: Software versions which have reached End of Software Development (EoSD) are not evaluated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjvw-vpv7-j2gp/GHSA-fjvw-vpv7-j2gp.json b/advisories/unreviewed/2022/05/GHSA-fjvw-vpv7-j2gp/GHSA-fjvw-vpv7-j2gp.json index 81d8fa26f4d..0cd7829d58d 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjvw-vpv7-j2gp/GHSA-fjvw-vpv7-j2gp.json +++ b/advisories/unreviewed/2022/05/GHSA-fjvw-vpv7-j2gp/GHSA-fjvw-vpv7-j2gp.json @@ -7,12 +7,8 @@ "CVE-2021-20404" ], "details": "IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user on the network to cause a denial of service due to an invalid cookie value that could prevent future logins. IBM X-Force ID: 196078.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fmqx-vmh5-vr5v/GHSA-fmqx-vmh5-vr5v.json b/advisories/unreviewed/2022/05/GHSA-fmqx-vmh5-vr5v/GHSA-fmqx-vmh5-vr5v.json index 1f465cdcd38..24d80097cc2 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmqx-vmh5-vr5v/GHSA-fmqx-vmh5-vr5v.json +++ b/advisories/unreviewed/2022/05/GHSA-fmqx-vmh5-vr5v/GHSA-fmqx-vmh5-vr5v.json @@ -7,12 +7,8 @@ "CVE-2021-26746" ], "details": "Chamilo 1.11.14 allows XSS via a main/calendar/agenda_list.php?type= URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fp3r-w9w2-jg2f/GHSA-fp3r-w9w2-jg2f.json b/advisories/unreviewed/2022/05/GHSA-fp3r-w9w2-jg2f/GHSA-fp3r-w9w2-jg2f.json index 9a9765b10df..8597d56e53d 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp3r-w9w2-jg2f/GHSA-fp3r-w9w2-jg2f.json +++ b/advisories/unreviewed/2022/05/GHSA-fp3r-w9w2-jg2f/GHSA-fp3r-w9w2-jg2f.json @@ -7,12 +7,8 @@ "CVE-2020-27819" ], "details": "An issue was discovered in libxls before and including 1.6.1 when reading Microsoft Excel files. A NULL pointer dereference vulnerability exists when parsing XLS cells in libxls/xls2csv.c:199. It could allow a remote attacker to cause a denial of service via crafted XLS file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fq6q-58q2-x8g6/GHSA-fq6q-58q2-x8g6.json b/advisories/unreviewed/2022/05/GHSA-fq6q-58q2-x8g6/GHSA-fq6q-58q2-x8g6.json index d5dca5d8d58..7f214047055 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq6q-58q2-x8g6/GHSA-fq6q-58q2-x8g6.json +++ b/advisories/unreviewed/2022/05/GHSA-fq6q-58q2-x8g6/GHSA-fq6q-58q2-x8g6.json @@ -7,12 +7,8 @@ "CVE-2020-35775" ], "details": "CITSmart before 9.1.2.23 allows LDAP Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fvg3-8mqr-q3x4/GHSA-fvg3-8mqr-q3x4.json b/advisories/unreviewed/2022/05/GHSA-fvg3-8mqr-q3x4/GHSA-fvg3-8mqr-q3x4.json index b5c36c53f6b..8138f345329 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvg3-8mqr-q3x4/GHSA-fvg3-8mqr-q3x4.json +++ b/advisories/unreviewed/2022/05/GHSA-fvg3-8mqr-q3x4/GHSA-fvg3-8mqr-q3x4.json @@ -7,12 +7,8 @@ "CVE-2021-21033" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fw85-97w2-fp5v/GHSA-fw85-97w2-fp5v.json b/advisories/unreviewed/2022/05/GHSA-fw85-97w2-fp5v/GHSA-fw85-97w2-fp5v.json index 4677e22ce13..51f5eab6c74 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw85-97w2-fp5v/GHSA-fw85-97w2-fp5v.json +++ b/advisories/unreviewed/2022/05/GHSA-fw85-97w2-fp5v/GHSA-fw85-97w2-fp5v.json @@ -7,12 +7,8 @@ "CVE-2020-29023" ], "details": "Improper Encoding or Escaping of Output from CSV Report Generator of Secomea GateManager allows an authenticated administrator to generate a CSV file that may run arbitrary commands on a victim's computer when opened in a spreadsheet program (like Excel). This issue affects: Secomea GateManager all versions prior to 9.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fx8g-7gh6-p9vx/GHSA-fx8g-7gh6-p9vx.json b/advisories/unreviewed/2022/05/GHSA-fx8g-7gh6-p9vx/GHSA-fx8g-7gh6-p9vx.json index 086e07395b1..b8b5158af2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx8g-7gh6-p9vx/GHSA-fx8g-7gh6-p9vx.json +++ b/advisories/unreviewed/2022/05/GHSA-fx8g-7gh6-p9vx/GHSA-fx8g-7gh6-p9vx.json @@ -7,12 +7,8 @@ "CVE-2019-25024" ], "details": "OpenRepeater (ORP) before 2.2 allows unauthenticated command injection via shell metacharacters in the functions/ajax_system.php post_service parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g29r-mmqp-whm4/GHSA-g29r-mmqp-whm4.json b/advisories/unreviewed/2022/05/GHSA-g29r-mmqp-whm4/GHSA-g29r-mmqp-whm4.json index ffe1a139294..9083fc06a72 100644 --- a/advisories/unreviewed/2022/05/GHSA-g29r-mmqp-whm4/GHSA-g29r-mmqp-whm4.json +++ b/advisories/unreviewed/2022/05/GHSA-g29r-mmqp-whm4/GHSA-g29r-mmqp-whm4.json @@ -7,12 +7,8 @@ "CVE-2021-27231" ], "details": "Hestia Control Panel through 1.3.3, in a shared-hosting environment, sometimes allows remote authenticated users to create a subdomain for a different customer's domain name, leading to spoofing of services or email messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g2mc-w2j3-ppg6/GHSA-g2mc-w2j3-ppg6.json b/advisories/unreviewed/2022/05/GHSA-g2mc-w2j3-ppg6/GHSA-g2mc-w2j3-ppg6.json index a97ac1f9b5c..1ff4d0ffd05 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2mc-w2j3-ppg6/GHSA-g2mc-w2j3-ppg6.json +++ b/advisories/unreviewed/2022/05/GHSA-g2mc-w2j3-ppg6/GHSA-g2mc-w2j3-ppg6.json @@ -7,12 +7,8 @@ "CVE-2021-21034" ], "details": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to locally elevate privileges in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2v3-g2fw-7467/GHSA-g2v3-g2fw-7467.json b/advisories/unreviewed/2022/05/GHSA-g2v3-g2fw-7467/GHSA-g2v3-g2fw-7467.json index df6d39d0626..0f14cdf821b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2v3-g2fw-7467/GHSA-g2v3-g2fw-7467.json +++ b/advisories/unreviewed/2022/05/GHSA-g2v3-g2fw-7467/GHSA-g2v3-g2fw-7467.json @@ -7,12 +7,8 @@ "CVE-2021-21153" ], "details": "Stack buffer overflow in GPU Process in Google Chrome on Linux prior to 88.0.4324.182 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3fx-gvwr-w892/GHSA-g3fx-gvwr-w892.json b/advisories/unreviewed/2022/05/GHSA-g3fx-gvwr-w892/GHSA-g3fx-gvwr-w892.json index ee4aec3ca21..71bafaf50d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3fx-gvwr-w892/GHSA-g3fx-gvwr-w892.json +++ b/advisories/unreviewed/2022/05/GHSA-g3fx-gvwr-w892/GHSA-g3fx-gvwr-w892.json @@ -7,12 +7,8 @@ "CVE-2021-27205" ], "details": "Telegram before 7.4 (212543) Stable on macOS stores the local copy of self-destructed messages in a sandbox path, leading to sensitive information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g46m-x4q2-p642/GHSA-g46m-x4q2-p642.json b/advisories/unreviewed/2022/05/GHSA-g46m-x4q2-p642/GHSA-g46m-x4q2-p642.json index f890cd7061e..2d4ff5ce16b 100644 --- a/advisories/unreviewed/2022/05/GHSA-g46m-x4q2-p642/GHSA-g46m-x4q2-p642.json +++ b/advisories/unreviewed/2022/05/GHSA-g46m-x4q2-p642/GHSA-g46m-x4q2-p642.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g58c-cr2p-rwrf/GHSA-g58c-cr2p-rwrf.json b/advisories/unreviewed/2022/05/GHSA-g58c-cr2p-rwrf/GHSA-g58c-cr2p-rwrf.json index f0a300ef07d..cb75d2e3baa 100644 --- a/advisories/unreviewed/2022/05/GHSA-g58c-cr2p-rwrf/GHSA-g58c-cr2p-rwrf.json +++ b/advisories/unreviewed/2022/05/GHSA-g58c-cr2p-rwrf/GHSA-g58c-cr2p-rwrf.json @@ -7,12 +7,8 @@ "CVE-2021-20646" ], "details": "Cross-site request forgery (CSRF) vulnerability in ELECOM WRC-300FEBK-A allows remote attackers to hijack the authentication of administrators and execute an arbitrary request via unspecified vector. As a result, the device settings may be altered and/or telnet daemon may be started.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5vm-h3jx-g8ph/GHSA-g5vm-h3jx-g8ph.json b/advisories/unreviewed/2022/05/GHSA-g5vm-h3jx-g8ph/GHSA-g5vm-h3jx-g8ph.json index 12291b5fb57..a94cd181eb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5vm-h3jx-g8ph/GHSA-g5vm-h3jx-g8ph.json +++ b/advisories/unreviewed/2022/05/GHSA-g5vm-h3jx-g8ph/GHSA-g5vm-h3jx-g8ph.json @@ -7,12 +7,8 @@ "CVE-2021-27362" ], "details": "The WPG plugin before 3.1.0.0 for IrfanView 4.57 has a Read Access Violation on Control Flow starting at WPG!ReadWPG_W+0x0000000000000133, which might allow remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7w4-65vh-qjmf/GHSA-g7w4-65vh-qjmf.json b/advisories/unreviewed/2022/05/GHSA-g7w4-65vh-qjmf/GHSA-g7w4-65vh-qjmf.json index 822b413273f..b938b89112e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7w4-65vh-qjmf/GHSA-g7w4-65vh-qjmf.json +++ b/advisories/unreviewed/2022/05/GHSA-g7w4-65vh-qjmf/GHSA-g7w4-65vh-qjmf.json @@ -7,12 +7,8 @@ "CVE-2020-29140" ], "details": "A SQL injection vulnerability in interface/reports/immunization_report.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the form_code parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g8fx-3ppx-cpq4/GHSA-g8fx-3ppx-cpq4.json b/advisories/unreviewed/2022/05/GHSA-g8fx-3ppx-cpq4/GHSA-g8fx-3ppx-cpq4.json index e7d8531165d..e05d37a5ad6 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8fx-3ppx-cpq4/GHSA-g8fx-3ppx-cpq4.json +++ b/advisories/unreviewed/2022/05/GHSA-g8fx-3ppx-cpq4/GHSA-g8fx-3ppx-cpq4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gc59-gfp7-vrrr/GHSA-gc59-gfp7-vrrr.json b/advisories/unreviewed/2022/05/GHSA-gc59-gfp7-vrrr/GHSA-gc59-gfp7-vrrr.json index ece39020a49..67b53c69cbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc59-gfp7-vrrr/GHSA-gc59-gfp7-vrrr.json +++ b/advisories/unreviewed/2022/05/GHSA-gc59-gfp7-vrrr/GHSA-gc59-gfp7-vrrr.json @@ -7,12 +7,8 @@ "CVE-2021-27197" ], "details": "DSUtility.dll in Pelco Digital Sentry Server before 7.19.67 has an arbitrary file write vulnerability. The AppendToTextFile method doesn't check if it's being called from the application or from a malicious user. The vulnerability is triggered when a remote attacker crafts an HTML page (e.g., with \"OBJECT classid=\" and \"