From a443dcb68be6282e482806bd5a298558430b40f2 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 21 Feb 2025 18:32:36 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-389x-839f-4rhx.json | 6 ++- .../GHSA-99fr-5jwf-5mf5.json | 6 ++- .../GHSA-46wg-cm84-p5p3.json | 4 +- .../GHSA-f4cf-2w52-c853.json | 4 +- .../GHSA-2x4f-r6q9-v77h.json | 15 ++++-- .../GHSA-3f6r-qh9c-x6mm.json | 6 ++- .../GHSA-7wrw-r4p8-38rx.json | 6 ++- .../GHSA-r558-p82g-6v22.json | 1 + .../GHSA-vvxp-46w2-6p8r.json | 6 ++- .../GHSA-26r5-4hm4-gr66.json | 29 ++++++++++ .../GHSA-27wp-chg4-ffw3.json | 29 ++++++++++ .../GHSA-29c4-gq2r-5p78.json | 29 ++++++++++ .../GHSA-29vw-wqcm-8gfj.json | 11 ++-- .../GHSA-29x9-gccg-r992.json | 15 ++++-- .../GHSA-2hhx-vp2f-m5hf.json | 15 ++++-- .../GHSA-2p2q-7m86-j6ch.json | 29 ++++++++++ .../GHSA-2v89-wpgr-r5vm.json | 29 ++++++++++ .../GHSA-2xh3-9jm8-r4r2.json | 15 ++++-- .../GHSA-3jqm-mrhq-rp94.json | 15 ++++-- .../GHSA-3vwg-x7c5-rg6m.json | 29 ++++++++++ .../GHSA-3whm-j4xm-rv8x.json | 6 ++- .../GHSA-44g2-wmg5-f6v6.json | 15 ++++-- .../GHSA-47jv-76q2-c826.json | 53 +++++++++++++++++++ .../GHSA-64qp-c23v-9qx7.json | 29 ++++++++++ .../GHSA-7229-ccxj-3pgp.json | 1 + .../GHSA-7crh-q834-jm56.json | 29 ++++++++++ .../GHSA-7f5j-pqqm-m43p.json | 2 +- .../GHSA-7jh3-f4p5-7prm.json | 29 ++++++++++ .../GHSA-7qm6-crcf-w49m.json | 15 ++++-- .../GHSA-82x8-7f5g-jqhm.json | 15 ++++-- .../GHSA-8pv4-h24j-h6w8.json | 2 +- .../GHSA-c5fr-6vp5-cwjf.json | 1 + .../GHSA-c649-279m-q7qv.json | 15 ++++-- .../GHSA-ch24-jfhg-w5qp.json | 15 ++++-- .../GHSA-chfj-fxfr-5gj5.json | 52 ++++++++++++++++++ .../GHSA-frm2-g564-fqfx.json | 15 ++++-- .../GHSA-gcrj-wc48-gvjv.json | 15 ++++-- .../GHSA-ghrw-wmhg-p2cm.json | 15 ++++-- .../GHSA-gj4j-xh74-gvw8.json | 4 +- .../GHSA-gjcc-jpc7-jff7.json | 15 ++++-- .../GHSA-gjw5-w65f-c5gw.json | 29 ++++++++++ .../GHSA-h5p6-2x4v-9wqh.json | 33 ++++++++++++ .../GHSA-h9hg-544v-fh29.json | 37 +++++++++++++ .../GHSA-j22r-rxv9-h8pm.json | 52 ++++++++++++++++++ .../GHSA-jfh6-m8fx-jjp9.json | 11 ++-- .../GHSA-m4vh-3qj9-43jx.json | 15 ++++-- .../GHSA-m4wh-553v-44vf.json | 15 ++++-- .../GHSA-mgqg-wqxj-q43c.json | 15 ++++-- .../GHSA-mhw9-x46c-v6q4.json | 6 ++- .../GHSA-mp36-c9p8-hm2m.json | 15 ++++-- .../GHSA-mw38-fx9m-f8jc.json | 29 ++++++++++ .../GHSA-q3hh-qh22-77x8.json | 15 ++++-- .../GHSA-q676-r7fv-jgcc.json | 2 +- .../GHSA-q7m5-gr49-2535.json | 15 ++++-- .../GHSA-rqxq-4234-gv49.json | 52 ++++++++++++++++++ .../GHSA-rxjh-p26c-rfmh.json | 2 +- .../GHSA-wqvq-w4mh-vpj8.json | 15 ++++-- .../GHSA-x5vg-jxxx-qgwx.json | 29 ++++++++++ .../GHSA-x7cw-79fv-35qf.json | 15 ++++-- .../GHSA-x869-v47h-j67h.json | 15 ++++-- .../GHSA-xg8w-g5cc-8wvr.json | 15 ++++-- .../GHSA-xjq3-p9vw-4qrf.json | 15 ++++-- .../GHSA-xxwx-qg6p-mx7w.json | 15 ++++-- 63 files changed, 978 insertions(+), 126 deletions(-) create mode 100644 advisories/unreviewed/2025/02/GHSA-26r5-4hm4-gr66/GHSA-26r5-4hm4-gr66.json create mode 100644 advisories/unreviewed/2025/02/GHSA-27wp-chg4-ffw3/GHSA-27wp-chg4-ffw3.json create mode 100644 advisories/unreviewed/2025/02/GHSA-29c4-gq2r-5p78/GHSA-29c4-gq2r-5p78.json create mode 100644 advisories/unreviewed/2025/02/GHSA-2p2q-7m86-j6ch/GHSA-2p2q-7m86-j6ch.json create mode 100644 advisories/unreviewed/2025/02/GHSA-2v89-wpgr-r5vm/GHSA-2v89-wpgr-r5vm.json create mode 100644 advisories/unreviewed/2025/02/GHSA-3vwg-x7c5-rg6m/GHSA-3vwg-x7c5-rg6m.json create mode 100644 advisories/unreviewed/2025/02/GHSA-47jv-76q2-c826/GHSA-47jv-76q2-c826.json create mode 100644 advisories/unreviewed/2025/02/GHSA-64qp-c23v-9qx7/GHSA-64qp-c23v-9qx7.json create mode 100644 advisories/unreviewed/2025/02/GHSA-7crh-q834-jm56/GHSA-7crh-q834-jm56.json create mode 100644 advisories/unreviewed/2025/02/GHSA-7jh3-f4p5-7prm/GHSA-7jh3-f4p5-7prm.json create mode 100644 advisories/unreviewed/2025/02/GHSA-chfj-fxfr-5gj5/GHSA-chfj-fxfr-5gj5.json create mode 100644 advisories/unreviewed/2025/02/GHSA-gjw5-w65f-c5gw/GHSA-gjw5-w65f-c5gw.json create mode 100644 advisories/unreviewed/2025/02/GHSA-h5p6-2x4v-9wqh/GHSA-h5p6-2x4v-9wqh.json create mode 100644 advisories/unreviewed/2025/02/GHSA-h9hg-544v-fh29/GHSA-h9hg-544v-fh29.json create mode 100644 advisories/unreviewed/2025/02/GHSA-j22r-rxv9-h8pm/GHSA-j22r-rxv9-h8pm.json create mode 100644 advisories/unreviewed/2025/02/GHSA-mw38-fx9m-f8jc/GHSA-mw38-fx9m-f8jc.json create mode 100644 advisories/unreviewed/2025/02/GHSA-rqxq-4234-gv49/GHSA-rqxq-4234-gv49.json create mode 100644 advisories/unreviewed/2025/02/GHSA-x5vg-jxxx-qgwx/GHSA-x5vg-jxxx-qgwx.json diff --git a/advisories/github-reviewed/2025/02/GHSA-389x-839f-4rhx/GHSA-389x-839f-4rhx.json b/advisories/github-reviewed/2025/02/GHSA-389x-839f-4rhx/GHSA-389x-839f-4rhx.json index 74d3cdd95c3..a13a1490bb6 100644 --- a/advisories/github-reviewed/2025/02/GHSA-389x-839f-4rhx/GHSA-389x-839f-4rhx.json +++ b/advisories/github-reviewed/2025/02/GHSA-389x-839f-4rhx/GHSA-389x-839f-4rhx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-389x-839f-4rhx", - "modified": "2025-02-19T15:14:00Z", + "modified": "2025-02-21T18:31:09Z", "published": "2025-02-10T18:14:47Z", "aliases": [ "CVE-2025-25193" @@ -51,6 +51,10 @@ { "type": "PACKAGE", "url": "https://github.com/netty/netty" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250221-0006" } ], "database_specific": { diff --git a/advisories/unreviewed/2023/03/GHSA-99fr-5jwf-5mf5/GHSA-99fr-5jwf-5mf5.json b/advisories/unreviewed/2023/03/GHSA-99fr-5jwf-5mf5/GHSA-99fr-5jwf-5mf5.json index eb061a72466..2064e873c7c 100644 --- a/advisories/unreviewed/2023/03/GHSA-99fr-5jwf-5mf5/GHSA-99fr-5jwf-5mf5.json +++ b/advisories/unreviewed/2023/03/GHSA-99fr-5jwf-5mf5/GHSA-99fr-5jwf-5mf5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-99fr-5jwf-5mf5", - "modified": "2023-03-29T15:30:18Z", + "modified": "2025-02-21T18:31:02Z", "published": "2023-03-24T15:30:20Z", "aliases": [ "CVE-2023-24625" @@ -23,6 +23,10 @@ "type": "WEB", "url": "https://cupc4k3.lol/cve-2023-24625-idor-in-faveo-service-desk-37a63f53d896" }, + { + "type": "WEB", + "url": "https://medium.com/%40cupc4k3/vulnerabilities-in-faveo-service-desk-37a63f53d896" + }, { "type": "WEB", "url": "https://medium.com/@cupc4k3/vulnerabilities-in-faveo-service-desk-37a63f53d896" diff --git a/advisories/unreviewed/2024/04/GHSA-46wg-cm84-p5p3/GHSA-46wg-cm84-p5p3.json b/advisories/unreviewed/2024/04/GHSA-46wg-cm84-p5p3/GHSA-46wg-cm84-p5p3.json index 9c3bc15193f..80622a996cf 100644 --- a/advisories/unreviewed/2024/04/GHSA-46wg-cm84-p5p3/GHSA-46wg-cm84-p5p3.json +++ b/advisories/unreviewed/2024/04/GHSA-46wg-cm84-p5p3/GHSA-46wg-cm84-p5p3.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-46wg-cm84-p5p3", - "modified": "2024-06-28T18:31:42Z", + "modified": "2025-02-21T18:31:05Z", "published": "2024-04-27T00:30:38Z", "aliases": [ "CVE-2024-2859" ], - "details": "By default, SANnav OVA is shipped with root user login enabled. While protected by a password, access to root could expose SANnav to a remote attacker should they gain access to the root account. ", + "details": "By default, SANnav OVA is shipped with root user login enabled. While protected by a password, access to root could expose SANnav to a remote attacker should they gain access to the root account.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/05/GHSA-f4cf-2w52-c853/GHSA-f4cf-2w52-c853.json b/advisories/unreviewed/2024/05/GHSA-f4cf-2w52-c853/GHSA-f4cf-2w52-c853.json index 8031d5e8ec1..35492aab4ab 100644 --- a/advisories/unreviewed/2024/05/GHSA-f4cf-2w52-c853/GHSA-f4cf-2w52-c853.json +++ b/advisories/unreviewed/2024/05/GHSA-f4cf-2w52-c853/GHSA-f4cf-2w52-c853.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-f4cf-2w52-c853", - "modified": "2024-07-22T18:31:47Z", + "modified": "2025-02-21T18:31:05Z", "published": "2024-05-06T21:30:38Z", "aliases": [ "CVE-2024-33601" ], - "details": "nscd: netgroup cache may terminate daemon on memory allocation failure\n\nThe Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or\nxrealloc and these functions may terminate the process due to a memory\nallocation failure resulting in a denial of service to the clients. The\nflaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary.\n\n", + "details": "nscd: netgroup cache may terminate daemon on memory allocation failure\n\nThe Name Service Cache Daemon's (nscd) netgroup cache uses xmalloc or\nxrealloc and these functions may terminate the process due to a memory\nallocation failure resulting in a denial of service to the clients. The\nflaw was introduced in glibc 2.15 when the cache was added to nscd.\n\nThis vulnerability is only present in the nscd binary.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2025/01/GHSA-2x4f-r6q9-v77h/GHSA-2x4f-r6q9-v77h.json b/advisories/unreviewed/2025/01/GHSA-2x4f-r6q9-v77h/GHSA-2x4f-r6q9-v77h.json index a0d0021c9fe..a19cb960ccd 100644 --- a/advisories/unreviewed/2025/01/GHSA-2x4f-r6q9-v77h/GHSA-2x4f-r6q9-v77h.json +++ b/advisories/unreviewed/2025/01/GHSA-2x4f-r6q9-v77h/GHSA-2x4f-r6q9-v77h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2x4f-r6q9-v77h", - "modified": "2025-01-31T12:33:03Z", + "modified": "2025-02-21T18:31:06Z", "published": "2025-01-31T12:33:03Z", "aliases": [ "CVE-2025-21681" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nopenvswitch: fix lockup on tx to unregistering netdev with carrier\n\nCommit in a fixes tag attempted to fix the issue in the following\nsequence of calls:\n\n do_output\n -> ovs_vport_send\n -> dev_queue_xmit\n -> __dev_queue_xmit\n -> netdev_core_pick_tx\n -> skb_tx_hash\n\nWhen device is unregistering, the 'dev->real_num_tx_queues' goes to\nzero and the 'while (unlikely(hash >= qcount))' loop inside the\n'skb_tx_hash' becomes infinite, locking up the core forever.\n\nBut unfortunately, checking just the carrier status is not enough to\nfix the issue, because some devices may still be in unregistering\nstate while reporting carrier status OK.\n\nOne example of such device is a net/dummy. It sets carrier ON\non start, but it doesn't implement .ndo_stop to set the carrier off.\nAnd it makes sense, because dummy doesn't really have a carrier.\nTherefore, while this device is unregistering, it's still easy to hit\nthe infinite loop in the skb_tx_hash() from the OVS datapath. There\nmight be other drivers that do the same, but dummy by itself is\nimportant for the OVS ecosystem, because it is frequently used as a\npacket sink for tcpdump while debugging OVS deployments. And when the\nissue is hit, the only way to recover is to reboot.\n\nFix that by also checking if the device is running. The running\nstate is handled by the net core during unregistering, so it covers\nunregistering case better, and we don't really need to send packets\nto devices that are not running anyway.\n\nWhile only checking the running state might be enough, the carrier\ncheck is preserved. The running and the carrier states seem disjoined\nthroughout the code and different drivers. And other core functions\nlike __dev_direct_xmit() check both before attempting to transmit\na packet. So, it seems safer to check both flags in OVS as well.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-835" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-01-31T12:15:29Z" diff --git a/advisories/unreviewed/2025/01/GHSA-3f6r-qh9c-x6mm/GHSA-3f6r-qh9c-x6mm.json b/advisories/unreviewed/2025/01/GHSA-3f6r-qh9c-x6mm/GHSA-3f6r-qh9c-x6mm.json index 4d6b054103c..0fe2fc145cb 100644 --- a/advisories/unreviewed/2025/01/GHSA-3f6r-qh9c-x6mm/GHSA-3f6r-qh9c-x6mm.json +++ b/advisories/unreviewed/2025/01/GHSA-3f6r-qh9c-x6mm/GHSA-3f6r-qh9c-x6mm.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3f6r-qh9c-x6mm", - "modified": "2025-01-28T18:31:27Z", + "modified": "2025-02-21T18:31:06Z", "published": "2025-01-28T03:31:14Z", "aliases": [ "CVE-2024-45341" @@ -38,6 +38,10 @@ { "type": "WEB", "url": "https://pkg.go.dev/vuln/GO-2025-3373" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250221-0004" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/01/GHSA-7wrw-r4p8-38rx/GHSA-7wrw-r4p8-38rx.json b/advisories/unreviewed/2025/01/GHSA-7wrw-r4p8-38rx/GHSA-7wrw-r4p8-38rx.json index 71ce2e07135..6014ac4ceb2 100644 --- a/advisories/unreviewed/2025/01/GHSA-7wrw-r4p8-38rx/GHSA-7wrw-r4p8-38rx.json +++ b/advisories/unreviewed/2025/01/GHSA-7wrw-r4p8-38rx/GHSA-7wrw-r4p8-38rx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7wrw-r4p8-38rx", - "modified": "2025-01-28T18:31:27Z", + "modified": "2025-02-21T18:31:06Z", "published": "2025-01-28T03:31:14Z", "aliases": [ "CVE-2024-45336" @@ -38,6 +38,10 @@ { "type": "WEB", "url": "https://pkg.go.dev/vuln/GO-2025-3420" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250221-0003" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/01/GHSA-r558-p82g-6v22/GHSA-r558-p82g-6v22.json b/advisories/unreviewed/2025/01/GHSA-r558-p82g-6v22/GHSA-r558-p82g-6v22.json index 398f57cfc35..2f9c7332eeb 100644 --- a/advisories/unreviewed/2025/01/GHSA-r558-p82g-6v22/GHSA-r558-p82g-6v22.json +++ b/advisories/unreviewed/2025/01/GHSA-r558-p82g-6v22/GHSA-r558-p82g-6v22.json @@ -34,6 +34,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-644", "CWE-89" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2025/01/GHSA-vvxp-46w2-6p8r/GHSA-vvxp-46w2-6p8r.json b/advisories/unreviewed/2025/01/GHSA-vvxp-46w2-6p8r/GHSA-vvxp-46w2-6p8r.json index 8cec29bde65..172076e6b87 100644 --- a/advisories/unreviewed/2025/01/GHSA-vvxp-46w2-6p8r/GHSA-vvxp-46w2-6p8r.json +++ b/advisories/unreviewed/2025/01/GHSA-vvxp-46w2-6p8r/GHSA-vvxp-46w2-6p8r.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-vvxp-46w2-6p8r", - "modified": "2025-01-09T06:30:23Z", + "modified": "2025-02-21T18:31:06Z", "published": "2025-01-09T06:30:23Z", "aliases": [ "CVE-2025-0306" @@ -26,6 +26,10 @@ { "type": "WEB", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2336100" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250221-0009" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-26r5-4hm4-gr66/GHSA-26r5-4hm4-gr66.json b/advisories/unreviewed/2025/02/GHSA-26r5-4hm4-gr66/GHSA-26r5-4hm4-gr66.json new file mode 100644 index 00000000000..9b33c519ad5 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-26r5-4hm4-gr66/GHSA-26r5-4hm4-gr66.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-26r5-4hm4-gr66", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:15Z", + "aliases": [ + "CVE-2025-25878" + ], + "details": "A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /del.php. The attack can use SQL injection to obtain sensitive data.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25878" + }, + { + "type": "WEB", + "url": "https://github.com/SticKManII/cve-poc/blob/main/chat-box/3/poc.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:16:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-27wp-chg4-ffw3/GHSA-27wp-chg4-ffw3.json b/advisories/unreviewed/2025/02/GHSA-27wp-chg4-ffw3/GHSA-27wp-chg4-ffw3.json new file mode 100644 index 00000000000..23fdfcdc619 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-27wp-chg4-ffw3/GHSA-27wp-chg4-ffw3.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-27wp-chg4-ffw3", + "modified": "2025-02-21T18:31:13Z", + "published": "2025-02-21T18:31:13Z", + "aliases": [ + "CVE-2025-26013" + ], + "details": "An issue in Loggrove v.1.0 allows a remote attacker to obtain sensitive information via the read.py component.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26013" + }, + { + "type": "WEB", + "url": "https://gitee.com/olajowon/loggrove/issues/IBJSXS" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T16:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-29c4-gq2r-5p78/GHSA-29c4-gq2r-5p78.json b/advisories/unreviewed/2025/02/GHSA-29c4-gq2r-5p78/GHSA-29c4-gq2r-5p78.json new file mode 100644 index 00000000000..1de5268d442 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-29c4-gq2r-5p78/GHSA-29c4-gq2r-5p78.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-29c4-gq2r-5p78", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:15Z", + "aliases": [ + "CVE-2025-25876" + ], + "details": "A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /delete.php. The attack can use SQL injection to obtain sensitive data.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25876" + }, + { + "type": "WEB", + "url": "https://github.com/SticKManII/cve-poc/blob/main/chat-box/2/poc.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:16:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json b/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json index bbd9fe8552e..a845a3664b1 100644 --- a/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json +++ b/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-29vw-wqcm-8gfj", - "modified": "2025-02-21T06:31:09Z", + "modified": "2025-02-21T18:31:13Z", "published": "2025-02-21T06:31:09Z", "aliases": [ "CVE-2024-13314" ], "details": "The Carousel, Slider, Gallery by WP Carousel WordPress plugin before 2.7.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-21T06:15:20Z" diff --git a/advisories/unreviewed/2025/02/GHSA-29x9-gccg-r992/GHSA-29x9-gccg-r992.json b/advisories/unreviewed/2025/02/GHSA-29x9-gccg-r992/GHSA-29x9-gccg-r992.json index 291bd7dbc2c..c912ec09d84 100644 --- a/advisories/unreviewed/2025/02/GHSA-29x9-gccg-r992/GHSA-29x9-gccg-r992.json +++ b/advisories/unreviewed/2025/02/GHSA-29x9-gccg-r992/GHSA-29x9-gccg-r992.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-29x9-gccg-r992", - "modified": "2025-02-20T15:31:10Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T15:31:10Z", "aliases": [ "CVE-2024-57401" ], "details": "SQL Injection vulnerability in Uniclare Student portal v.2 and before allows a remote attacker to execute arbitrary code via the Forgot Password function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T15:15:13Z" diff --git a/advisories/unreviewed/2025/02/GHSA-2hhx-vp2f-m5hf/GHSA-2hhx-vp2f-m5hf.json b/advisories/unreviewed/2025/02/GHSA-2hhx-vp2f-m5hf/GHSA-2hhx-vp2f-m5hf.json index 4eb88d1236a..2d4e64ac83e 100644 --- a/advisories/unreviewed/2025/02/GHSA-2hhx-vp2f-m5hf/GHSA-2hhx-vp2f-m5hf.json +++ b/advisories/unreviewed/2025/02/GHSA-2hhx-vp2f-m5hf/GHSA-2hhx-vp2f-m5hf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2hhx-vp2f-m5hf", - "modified": "2025-02-21T00:31:09Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:09Z", "aliases": [ "CVE-2025-25664" ], "details": "Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-2p2q-7m86-j6ch/GHSA-2p2q-7m86-j6ch.json b/advisories/unreviewed/2025/02/GHSA-2p2q-7m86-j6ch/GHSA-2p2q-7m86-j6ch.json new file mode 100644 index 00000000000..4001655353f --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-2p2q-7m86-j6ch/GHSA-2p2q-7m86-j6ch.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2p2q-7m86-j6ch", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-25766" + ], + "details": "An arbitrary file upload vulnerability in the component /file/savefile.do of MRCMS v3.1.2 allows attackers to execute arbitrary code via uploading a crafted .jsp file.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25766" + }, + { + "type": "WEB", + "url": "https://flowus.cn/share/7097c747-ae3e-4cef-a198-285863698607" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:16:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-2v89-wpgr-r5vm/GHSA-2v89-wpgr-r5vm.json b/advisories/unreviewed/2025/02/GHSA-2v89-wpgr-r5vm/GHSA-2v89-wpgr-r5vm.json new file mode 100644 index 00000000000..17e806f3055 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-2v89-wpgr-r5vm/GHSA-2v89-wpgr-r5vm.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2v89-wpgr-r5vm", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:15Z", + "aliases": [ + "CVE-2025-25875" + ], + "details": "A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /message.php. The attack can use SQL injection to obtain sensitive data.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25875" + }, + { + "type": "WEB", + "url": "https://github.com/SticKManII/cve-poc/blob/main/chat-box/4/poc.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:16:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json b/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json index 17d5ab5944e..9f89ac7d404 100644 --- a/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json +++ b/advisories/unreviewed/2025/02/GHSA-2xh3-9jm8-r4r2/GHSA-2xh3-9jm8-r4r2.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2xh3-9jm8-r4r2", - "modified": "2025-02-10T18:30:47Z", + "modified": "2025-02-21T18:31:08Z", "published": "2025-02-10T18:30:47Z", "aliases": [ "CVE-2025-21692" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: sched: fix ets qdisc OOB Indexing\n\nHaowei Yan found that ets_class_from_arg() can\nindex an Out-Of-Bound class in ets_class_from_arg() when passed clid of\n0. The overflow may cause local privilege escalation.\n\n [ 18.852298] ------------[ cut here ]------------\n [ 18.853271] UBSAN: array-index-out-of-bounds in net/sched/sch_ets.c:93:20\n [ 18.853743] index 18446744073709551615 is out of range for type 'ets_class [16]'\n [ 18.854254] CPU: 0 UID: 0 PID: 1275 Comm: poc Not tainted 6.12.6-dirty #17\n [ 18.854821] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.15.0-1 04/01/2014\n [ 18.856532] Call Trace:\n [ 18.857441] \n [ 18.858227] dump_stack_lvl+0xc2/0xf0\n [ 18.859607] dump_stack+0x10/0x20\n [ 18.860908] __ubsan_handle_out_of_bounds+0xa7/0xf0\n [ 18.864022] ets_class_change+0x3d6/0x3f0\n [ 18.864322] tc_ctl_tclass+0x251/0x910\n [ 18.864587] ? lock_acquire+0x5e/0x140\n [ 18.865113] ? __mutex_lock+0x9c/0xe70\n [ 18.866009] ? __mutex_lock+0xa34/0xe70\n [ 18.866401] rtnetlink_rcv_msg+0x170/0x6f0\n [ 18.866806] ? __lock_acquire+0x578/0xc10\n [ 18.867184] ? __pfx_rtnetlink_rcv_msg+0x10/0x10\n [ 18.867503] netlink_rcv_skb+0x59/0x110\n [ 18.867776] rtnetlink_rcv+0x15/0x30\n [ 18.868159] netlink_unicast+0x1c3/0x2b0\n [ 18.868440] netlink_sendmsg+0x239/0x4b0\n [ 18.868721] ____sys_sendmsg+0x3e2/0x410\n [ 18.869012] ___sys_sendmsg+0x88/0xe0\n [ 18.869276] ? rseq_ip_fixup+0x198/0x260\n [ 18.869563] ? rseq_update_cpu_node_id+0x10a/0x190\n [ 18.869900] ? trace_hardirqs_off+0x5a/0xd0\n [ 18.870196] ? syscall_exit_to_user_mode+0xcc/0x220\n [ 18.870547] ? do_syscall_64+0x93/0x150\n [ 18.870821] ? __memcg_slab_free_hook+0x69/0x290\n [ 18.871157] __sys_sendmsg+0x69/0xd0\n [ 18.871416] __x64_sys_sendmsg+0x1d/0x30\n [ 18.871699] x64_sys_call+0x9e2/0x2670\n [ 18.871979] do_syscall_64+0x87/0x150\n [ 18.873280] ? do_syscall_64+0x93/0x150\n [ 18.874742] ? lock_release+0x7b/0x160\n [ 18.876157] ? do_user_addr_fault+0x5ce/0x8f0\n [ 18.877833] ? irqentry_exit_to_user_mode+0xc2/0x210\n [ 18.879608] ? irqentry_exit+0x77/0xb0\n [ 18.879808] ? clear_bhb_loop+0x15/0x70\n [ 18.880023] ? clear_bhb_loop+0x15/0x70\n [ 18.880223] ? clear_bhb_loop+0x15/0x70\n [ 18.880426] entry_SYSCALL_64_after_hwframe+0x76/0x7e\n [ 18.880683] RIP: 0033:0x44a957\n [ 18.880851] Code: ff ff e8 fc 00 00 00 66 2e 0f 1f 84 00 00 00 00 00 66 90 f3 0f 1e fa 64 8b 04 25 18 00 00 00 85 c0 75 10 b8 2e 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 51 c3 48 83 ec 28 89 54 24 1c 48 8974 24 10\n [ 18.881766] RSP: 002b:00007ffcdd00fad8 EFLAGS: 00000246 ORIG_RAX: 000000000000002e\n [ 18.882149] RAX: ffffffffffffffda RBX: 00007ffcdd010db8 RCX: 000000000044a957\n [ 18.882507] RDX: 0000000000000000 RSI: 00007ffcdd00fb70 RDI: 0000000000000003\n [ 18.885037] RBP: 00007ffcdd010bc0 R08: 000000000703c770 R09: 000000000703c7c0\n [ 18.887203] R10: 0000000000000080 R11: 0000000000000246 R12: 0000000000000001\n [ 18.888026] R13: 00007ffcdd010da8 R14: 00000000004ca7d0 R15: 0000000000000001\n [ 18.888395] \n [ 18.888610] ---[ end trace ]---", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -44,8 +49,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-129" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-3jqm-mrhq-rp94/GHSA-3jqm-mrhq-rp94.json b/advisories/unreviewed/2025/02/GHSA-3jqm-mrhq-rp94/GHSA-3jqm-mrhq-rp94.json index 18fe94b9ace..3a2c8b18f40 100644 --- a/advisories/unreviewed/2025/02/GHSA-3jqm-mrhq-rp94/GHSA-3jqm-mrhq-rp94.json +++ b/advisories/unreviewed/2025/02/GHSA-3jqm-mrhq-rp94/GHSA-3jqm-mrhq-rp94.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3jqm-mrhq-rp94", - "modified": "2025-02-20T21:30:53Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T21:30:53Z", "aliases": [ "CVE-2023-51339" ], "details": "A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Event Ticketing System v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-770" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T19:15:11Z" diff --git a/advisories/unreviewed/2025/02/GHSA-3vwg-x7c5-rg6m/GHSA-3vwg-x7c5-rg6m.json b/advisories/unreviewed/2025/02/GHSA-3vwg-x7c5-rg6m/GHSA-3vwg-x7c5-rg6m.json new file mode 100644 index 00000000000..447035274af --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-3vwg-x7c5-rg6m/GHSA-3vwg-x7c5-rg6m.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3vwg-x7c5-rg6m", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-25505" + ], + "details": "Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the sub_452A4 function.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25505" + }, + { + "type": "WEB", + "url": "https://github.com/faqiadegege/IoTVuln/blob/main/tendaAC6_getRootStatus_callback_overflow/detail.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-3whm-j4xm-rv8x/GHSA-3whm-j4xm-rv8x.json b/advisories/unreviewed/2025/02/GHSA-3whm-j4xm-rv8x/GHSA-3whm-j4xm-rv8x.json index e921f703ad0..4a6c6f76e04 100644 --- a/advisories/unreviewed/2025/02/GHSA-3whm-j4xm-rv8x/GHSA-3whm-j4xm-rv8x.json +++ b/advisories/unreviewed/2025/02/GHSA-3whm-j4xm-rv8x/GHSA-3whm-j4xm-rv8x.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3whm-j4xm-rv8x", - "modified": "2025-02-10T21:31:35Z", + "modified": "2025-02-21T18:31:07Z", "published": "2025-02-06T18:31:05Z", "aliases": [ "CVE-2025-22866" @@ -34,6 +34,10 @@ { "type": "WEB", "url": "https://pkg.go.dev/vuln/GO-2025-3447" + }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250221-0002" } ], "database_specific": { diff --git a/advisories/unreviewed/2025/02/GHSA-44g2-wmg5-f6v6/GHSA-44g2-wmg5-f6v6.json b/advisories/unreviewed/2025/02/GHSA-44g2-wmg5-f6v6/GHSA-44g2-wmg5-f6v6.json index fa307971876..c937caedcd0 100644 --- a/advisories/unreviewed/2025/02/GHSA-44g2-wmg5-f6v6/GHSA-44g2-wmg5-f6v6.json +++ b/advisories/unreviewed/2025/02/GHSA-44g2-wmg5-f6v6/GHSA-44g2-wmg5-f6v6.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-44g2-wmg5-f6v6", - "modified": "2025-02-21T00:31:09Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:09Z", "aliases": [ "CVE-2025-22973" ], "details": "An issue in QiboSoft QiboCMS X1.0 allows a remote attacker to obtain sensitive information via the http_curl() function in the '/application/common. php' file that directly retrieves the URL request response content.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-200" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-47jv-76q2-c826/GHSA-47jv-76q2-c826.json b/advisories/unreviewed/2025/02/GHSA-47jv-76q2-c826/GHSA-47jv-76q2-c826.json new file mode 100644 index 00000000000..73c9608b766 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-47jv-76q2-c826/GHSA-47jv-76q2-c826.json @@ -0,0 +1,53 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-47jv-76q2-c826", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-1546" + ], + "details": "A vulnerability has been found in BDCOM Behavior Management and Auditing System up to 20250210 and classified as critical. Affected by this vulnerability is the function log_operate_clear of the file /webui/modules/log/operate.mds. The manipulation of the argument start_code leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1546" + }, + { + "type": "WEB", + "url": "https://github.com/koishi0x01/CVE/blob/main/CVE_2.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.296491" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.296491" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.497558" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77", + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-64qp-c23v-9qx7/GHSA-64qp-c23v-9qx7.json b/advisories/unreviewed/2025/02/GHSA-64qp-c23v-9qx7/GHSA-64qp-c23v-9qx7.json new file mode 100644 index 00000000000..8350c9859dc --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-64qp-c23v-9qx7/GHSA-64qp-c23v-9qx7.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-64qp-c23v-9qx7", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:15Z", + "aliases": [ + "CVE-2025-25877" + ], + "details": "A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /admin.php. The attack can use SQL injection to obtain sensitive data.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25877" + }, + { + "type": "WEB", + "url": "https://github.com/SticKManII/cve-poc/blob/main/chat-box/1/poc.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:16:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-7229-ccxj-3pgp/GHSA-7229-ccxj-3pgp.json b/advisories/unreviewed/2025/02/GHSA-7229-ccxj-3pgp/GHSA-7229-ccxj-3pgp.json index a38a1e1b630..0b188dbf29f 100644 --- a/advisories/unreviewed/2025/02/GHSA-7229-ccxj-3pgp/GHSA-7229-ccxj-3pgp.json +++ b/advisories/unreviewed/2025/02/GHSA-7229-ccxj-3pgp/GHSA-7229-ccxj-3pgp.json @@ -30,6 +30,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-502", "CWE-862" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2025/02/GHSA-7crh-q834-jm56/GHSA-7crh-q834-jm56.json b/advisories/unreviewed/2025/02/GHSA-7crh-q834-jm56/GHSA-7crh-q834-jm56.json new file mode 100644 index 00000000000..d672463e1d6 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-7crh-q834-jm56/GHSA-7crh-q834-jm56.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7crh-q834-jm56", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-25507" + ], + "details": "There is a RCE vulnerability in Tenda AC6 15.03.05.16_multi. In the formexeCommand function, the parameter cmdinput will cause remote command execution.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25507" + }, + { + "type": "WEB", + "url": "https://github.com/faqiadegege/IoTVuln/blob/main/tendaAC6_formexecommand_cmdinput_rce/detail.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-7f5j-pqqm-m43p/GHSA-7f5j-pqqm-m43p.json b/advisories/unreviewed/2025/02/GHSA-7f5j-pqqm-m43p/GHSA-7f5j-pqqm-m43p.json index e9284ffc335..982b7cdc5d5 100644 --- a/advisories/unreviewed/2025/02/GHSA-7f5j-pqqm-m43p/GHSA-7f5j-pqqm-m43p.json +++ b/advisories/unreviewed/2025/02/GHSA-7f5j-pqqm-m43p/GHSA-7f5j-pqqm-m43p.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-7f5j-pqqm-m43p", - "modified": "2025-02-18T06:35:38Z", + "modified": "2025-02-21T18:31:09Z", "published": "2025-02-18T06:35:38Z", "aliases": [ "CVE-2024-13587" diff --git a/advisories/unreviewed/2025/02/GHSA-7jh3-f4p5-7prm/GHSA-7jh3-f4p5-7prm.json b/advisories/unreviewed/2025/02/GHSA-7jh3-f4p5-7prm/GHSA-7jh3-f4p5-7prm.json new file mode 100644 index 00000000000..092b48a1a86 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-7jh3-f4p5-7prm/GHSA-7jh3-f4p5-7prm.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7jh3-f4p5-7prm", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2024-55156" + ], + "details": "An XML External Entity (XXE) vulnerability in the deserializeArgs() method of Java SDK for CloudEvents v4.0.1 allows attackers to access sensitive information via supplying a crafted XML-formatted event message.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55156" + }, + { + "type": "WEB", + "url": "https://github.com/aixiao0621/CVE/blob/main/CVE-2024-55156/README.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-7qm6-crcf-w49m/GHSA-7qm6-crcf-w49m.json b/advisories/unreviewed/2025/02/GHSA-7qm6-crcf-w49m/GHSA-7qm6-crcf-w49m.json index 249d6e59a80..df06b7819a0 100644 --- a/advisories/unreviewed/2025/02/GHSA-7qm6-crcf-w49m/GHSA-7qm6-crcf-w49m.json +++ b/advisories/unreviewed/2025/02/GHSA-7qm6-crcf-w49m/GHSA-7qm6-crcf-w49m.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-7qm6-crcf-w49m", - "modified": "2025-02-20T15:31:09Z", + "modified": "2025-02-21T18:31:11Z", "published": "2025-02-20T15:31:09Z", "aliases": [ "CVE-2023-51308" ], "details": "PHPJabbers Car Park Booking System v3.0 is vulnerable to Multiple HTML Injection in the \"name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title\" parameters.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-80" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T15:15:11Z" diff --git a/advisories/unreviewed/2025/02/GHSA-82x8-7f5g-jqhm/GHSA-82x8-7f5g-jqhm.json b/advisories/unreviewed/2025/02/GHSA-82x8-7f5g-jqhm/GHSA-82x8-7f5g-jqhm.json index 0677a7a8136..b837703812d 100644 --- a/advisories/unreviewed/2025/02/GHSA-82x8-7f5g-jqhm/GHSA-82x8-7f5g-jqhm.json +++ b/advisories/unreviewed/2025/02/GHSA-82x8-7f5g-jqhm/GHSA-82x8-7f5g-jqhm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-82x8-7f5g-jqhm", - "modified": "2025-02-20T18:31:24Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T18:31:24Z", "aliases": [ "CVE-2025-26309" ], "details": "A memory leak has been identified in the parseSWF_DEFINESCENEANDFRAMEDATA function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T17:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-8pv4-h24j-h6w8/GHSA-8pv4-h24j-h6w8.json b/advisories/unreviewed/2025/02/GHSA-8pv4-h24j-h6w8/GHSA-8pv4-h24j-h6w8.json index 34b20854475..c81bbaefd77 100644 --- a/advisories/unreviewed/2025/02/GHSA-8pv4-h24j-h6w8/GHSA-8pv4-h24j-h6w8.json +++ b/advisories/unreviewed/2025/02/GHSA-8pv4-h24j-h6w8/GHSA-8pv4-h24j-h6w8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-8pv4-h24j-h6w8", - "modified": "2025-02-18T09:32:44Z", + "modified": "2025-02-21T18:31:11Z", "published": "2025-02-18T09:32:44Z", "aliases": [ "CVE-2024-13575" diff --git a/advisories/unreviewed/2025/02/GHSA-c5fr-6vp5-cwjf/GHSA-c5fr-6vp5-cwjf.json b/advisories/unreviewed/2025/02/GHSA-c5fr-6vp5-cwjf/GHSA-c5fr-6vp5-cwjf.json index 2ee6368af97..632aba4d4c3 100644 --- a/advisories/unreviewed/2025/02/GHSA-c5fr-6vp5-cwjf/GHSA-c5fr-6vp5-cwjf.json +++ b/advisories/unreviewed/2025/02/GHSA-c5fr-6vp5-cwjf/GHSA-c5fr-6vp5-cwjf.json @@ -30,6 +30,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-79", "CWE-80" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2025/02/GHSA-c649-279m-q7qv/GHSA-c649-279m-q7qv.json b/advisories/unreviewed/2025/02/GHSA-c649-279m-q7qv/GHSA-c649-279m-q7qv.json index 93e2d2a0b89..a6e1f866cbd 100644 --- a/advisories/unreviewed/2025/02/GHSA-c649-279m-q7qv/GHSA-c649-279m-q7qv.json +++ b/advisories/unreviewed/2025/02/GHSA-c649-279m-q7qv/GHSA-c649-279m-q7qv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c649-279m-q7qv", - "modified": "2025-02-21T00:31:09Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:09Z", "aliases": [ "CVE-2025-25663" ], "details": "A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-ch24-jfhg-w5qp/GHSA-ch24-jfhg-w5qp.json b/advisories/unreviewed/2025/02/GHSA-ch24-jfhg-w5qp/GHSA-ch24-jfhg-w5qp.json index db09772b857..fba61edc52a 100644 --- a/advisories/unreviewed/2025/02/GHSA-ch24-jfhg-w5qp/GHSA-ch24-jfhg-w5qp.json +++ b/advisories/unreviewed/2025/02/GHSA-ch24-jfhg-w5qp/GHSA-ch24-jfhg-w5qp.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-ch24-jfhg-w5qp", - "modified": "2025-02-20T18:31:24Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T18:31:24Z", "aliases": [ "CVE-2025-26310" ], "details": "Multiple memory leaks have been identified in the ABC file parsing functions (parseABC_CONSTANT_POOL and `parseABC_FILE) in util/parser.c of libming v0.4.8, which allow attackers to cause a denial of service via a crafted ABC file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T17:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-chfj-fxfr-5gj5/GHSA-chfj-fxfr-5gj5.json b/advisories/unreviewed/2025/02/GHSA-chfj-fxfr-5gj5/GHSA-chfj-fxfr-5gj5.json new file mode 100644 index 00000000000..5dd9f9a863c --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-chfj-fxfr-5gj5/GHSA-chfj-fxfr-5gj5.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-chfj-fxfr-5gj5", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-1548" + ], + "details": "A vulnerability was found in iteachyou Dreamer CMS 4.1.3. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/archives/edit. The manipulation of the argument editorValue/answer/content leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1548" + }, + { + "type": "WEB", + "url": "https://github.com/cydtseng/Vulnerability-Research/blob/main/dreamercms/RemoteFileInclusion-ArticleEditorImageUpload.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.296494" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.296494" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.497602" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T17:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-frm2-g564-fqfx/GHSA-frm2-g564-fqfx.json b/advisories/unreviewed/2025/02/GHSA-frm2-g564-fqfx/GHSA-frm2-g564-fqfx.json index 14b7db92dc0..52e722765cc 100644 --- a/advisories/unreviewed/2025/02/GHSA-frm2-g564-fqfx/GHSA-frm2-g564-fqfx.json +++ b/advisories/unreviewed/2025/02/GHSA-frm2-g564-fqfx/GHSA-frm2-g564-fqfx.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-frm2-g564-fqfx", - "modified": "2025-02-21T00:31:10Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:09Z", "aliases": [ "CVE-2025-25667" ], "details": "Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-gcrj-wc48-gvjv/GHSA-gcrj-wc48-gvjv.json b/advisories/unreviewed/2025/02/GHSA-gcrj-wc48-gvjv/GHSA-gcrj-wc48-gvjv.json index b8378efac2b..b49374fd6e5 100644 --- a/advisories/unreviewed/2025/02/GHSA-gcrj-wc48-gvjv/GHSA-gcrj-wc48-gvjv.json +++ b/advisories/unreviewed/2025/02/GHSA-gcrj-wc48-gvjv/GHSA-gcrj-wc48-gvjv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gcrj-wc48-gvjv", - "modified": "2025-02-20T15:31:10Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T15:31:10Z", "aliases": [ "CVE-2023-51314" ], "details": "A lack of rate limiting in the 'Forgot Password', 'Email Settings' feature of PHPJabbers Restaurant Booking System v3.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T15:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json b/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json index cd4f9b47e2e..ab1f5e2ef16 100644 --- a/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json +++ b/advisories/unreviewed/2025/02/GHSA-ghrw-wmhg-p2cm/GHSA-ghrw-wmhg-p2cm.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-ghrw-wmhg-p2cm", - "modified": "2025-02-10T18:30:46Z", + "modified": "2025-02-21T18:31:07Z", "published": "2025-02-10T18:30:46Z", "aliases": [ "CVE-2024-57950" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/amd/display: Initialize denominator defaults to 1\n\n[WHAT & HOW]\nVariables, used as denominators and maybe not assigned to other values,\nshould be initialized to non-zero to avoid DIVIDE_BY_ZERO, as reported\nby Coverity.\n\n(cherry picked from commit e2c4c6c10542ccfe4a0830bb6c9fd5b177b7bbb7)", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-369" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T16:15:37Z" diff --git a/advisories/unreviewed/2025/02/GHSA-gj4j-xh74-gvw8/GHSA-gj4j-xh74-gvw8.json b/advisories/unreviewed/2025/02/GHSA-gj4j-xh74-gvw8/GHSA-gj4j-xh74-gvw8.json index 25c7ec1f532..9d82d1bf643 100644 --- a/advisories/unreviewed/2025/02/GHSA-gj4j-xh74-gvw8/GHSA-gj4j-xh74-gvw8.json +++ b/advisories/unreviewed/2025/02/GHSA-gj4j-xh74-gvw8/GHSA-gj4j-xh74-gvw8.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-73" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json b/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json index 1d646b34086..906a475e4e3 100644 --- a/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json +++ b/advisories/unreviewed/2025/02/GHSA-gjcc-jpc7-jff7/GHSA-gjcc-jpc7-jff7.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-gjcc-jpc7-jff7", - "modified": "2025-02-10T18:30:46Z", + "modified": "2025-02-21T18:31:08Z", "published": "2025-02-10T18:30:46Z", "aliases": [ "CVE-2025-21688" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndrm/v3d: Assign job pointer to NULL before signaling the fence\n\nIn commit e4b5ccd392b9 (\"drm/v3d: Ensure job pointer is set to NULL\nafter job completion\"), we introduced a change to assign the job pointer\nto NULL after completing a job, indicating job completion.\n\nHowever, this approach created a race condition between the DRM\nscheduler workqueue and the IRQ execution thread. As soon as the fence is\nsignaled in the IRQ execution thread, a new job starts to be executed.\nThis results in a race condition where the IRQ execution thread sets the\njob pointer to NULL simultaneously as the `run_job()` function assigns\na new job to the pointer.\n\nThis race condition can lead to a NULL pointer dereference if the IRQ\nexecution thread sets the job pointer to NULL after `run_job()` assigns\nit to the new job. When the new job completes and the GPU emits an\ninterrupt, `v3d_irq()` is triggered, potentially causing a crash.\n\n[ 466.310099] Unable to handle kernel NULL pointer dereference at virtual address 00000000000000c0\n[ 466.318928] Mem abort info:\n[ 466.321723] ESR = 0x0000000096000005\n[ 466.325479] EC = 0x25: DABT (current EL), IL = 32 bits\n[ 466.330807] SET = 0, FnV = 0\n[ 466.333864] EA = 0, S1PTW = 0\n[ 466.337010] FSC = 0x05: level 1 translation fault\n[ 466.341900] Data abort info:\n[ 466.344783] ISV = 0, ISS = 0x00000005, ISS2 = 0x00000000\n[ 466.350285] CM = 0, WnR = 0, TnD = 0, TagAccess = 0\n[ 466.355350] GCS = 0, Overlay = 0, DirtyBit = 0, Xs = 0\n[ 466.360677] user pgtable: 4k pages, 39-bit VAs, pgdp=0000000089772000\n[ 466.367140] [00000000000000c0] pgd=0000000000000000, p4d=0000000000000000, pud=0000000000000000\n[ 466.375875] Internal error: Oops: 0000000096000005 [#1] PREEMPT SMP\n[ 466.382163] Modules linked in: rfcomm snd_seq_dummy snd_hrtimer snd_seq snd_seq_device algif_hash algif_skcipher af_alg bnep binfmt_misc vc4 snd_soc_hdmi_codec drm_display_helper cec brcmfmac_wcc spidev rpivid_hevc(C) drm_client_lib brcmfmac hci_uart drm_dma_helper pisp_be btbcm brcmutil snd_soc_core aes_ce_blk v4l2_mem2mem bluetooth aes_ce_cipher snd_compress videobuf2_dma_contig ghash_ce cfg80211 gf128mul snd_pcm_dmaengine videobuf2_memops ecdh_generic sha2_ce ecc videobuf2_v4l2 snd_pcm v3d sha256_arm64 rfkill videodev snd_timer sha1_ce libaes gpu_sched snd videobuf2_common sha1_generic drm_shmem_helper mc rp1_pio drm_kms_helper raspberrypi_hwmon spi_bcm2835 gpio_keys i2c_brcmstb rp1 raspberrypi_gpiomem rp1_mailbox rp1_adc nvmem_rmem uio_pdrv_genirq uio i2c_dev drm ledtrig_pattern drm_panel_orientation_quirks backlight fuse dm_mod ip_tables x_tables ipv6\n[ 466.458429] CPU: 0 UID: 1000 PID: 2008 Comm: chromium Tainted: G C 6.13.0-v8+ #18\n[ 466.467336] Tainted: [C]=CRAP\n[ 466.470306] Hardware name: Raspberry Pi 5 Model B Rev 1.0 (DT)\n[ 466.476157] pstate: 404000c9 (nZcv daIF +PAN -UAO -TCO -DIT -SSBS BTYPE=--)\n[ 466.483143] pc : v3d_irq+0x118/0x2e0 [v3d]\n[ 466.487258] lr : __handle_irq_event_percpu+0x60/0x228\n[ 466.492327] sp : ffffffc080003ea0\n[ 466.495646] x29: ffffffc080003ea0 x28: ffffff80c0c94200 x27: 0000000000000000\n[ 466.502807] x26: ffffffd08dd81d7b x25: ffffff80c0c94200 x24: ffffff8003bdc200\n[ 466.509969] x23: 0000000000000001 x22: 00000000000000a7 x21: 0000000000000000\n[ 466.517130] x20: ffffff8041bb0000 x19: 0000000000000001 x18: 0000000000000000\n[ 466.524291] x17: ffffffafadfb0000 x16: ffffffc080000000 x15: 0000000000000000\n[ 466.531452] x14: 0000000000000000 x13: 0000000000000000 x12: 0000000000000000\n[ 466.538613] x11: 0000000000000000 x10: 0000000000000000 x9 : ffffffd08c527eb0\n[ 466.545777] x8 : 0000000000000000 x7 : 0000000000000000 x6 : 0000000000000000\n[ 466.552941] x5 : ffffffd08c4100d0 x4 : ffffffafadfb0000 x3 : ffffffc080003f70\n[ 466.560102] x2 : ffffffc0829e8058 x1 : 0000000000000001 x0 : 0000000000000000\n[ 466.567263] Call trace:\n[ 466.569711] v3d_irq+0x118/0x2e0 [v3d] (P)\n[ 466.\n---truncated---", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -48,8 +53,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-362" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-gjw5-w65f-c5gw/GHSA-gjw5-w65f-c5gw.json b/advisories/unreviewed/2025/02/GHSA-gjw5-w65f-c5gw/GHSA-gjw5-w65f-c5gw.json new file mode 100644 index 00000000000..e7b7922cbd4 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-gjw5-w65f-c5gw/GHSA-gjw5-w65f-c5gw.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gjw5-w65f-c5gw", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:15Z", + "aliases": [ + "CVE-2024-57176" + ], + "details": "An issue in the shiroFilter function of White-Jotter project v0.2.2 allows attackers to execute a directory traversal and access sensitive endpoints via a crafted URL.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57176" + }, + { + "type": "WEB", + "url": "https://github.com/DYX217/Incorrect-Access-Control" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-h5p6-2x4v-9wqh/GHSA-h5p6-2x4v-9wqh.json b/advisories/unreviewed/2025/02/GHSA-h5p6-2x4v-9wqh/GHSA-h5p6-2x4v-9wqh.json new file mode 100644 index 00000000000..898f5f66fcc --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-h5p6-2x4v-9wqh/GHSA-h5p6-2x4v-9wqh.json @@ -0,0 +1,33 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h5p6-2x4v-9wqh", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:15Z", + "aliases": [ + "CVE-2024-55159" + ], + "details": "GFast between v2 to v3.2 was discovered to contain a SQL injection vulnerability via the SortName parameter at /system/loginLog/list.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-55159" + }, + { + "type": "WEB", + "url": "https://github.com/SuperDu1/CVE/issues/1" + }, + { + "type": "WEB", + "url": "https://github.com/tiger1103/gfast/blob/os-v3.2/internal/app/system/logic/sysLoginLog/sys_login_log.go#L75" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-h9hg-544v-fh29/GHSA-h9hg-544v-fh29.json b/advisories/unreviewed/2025/02/GHSA-h9hg-544v-fh29/GHSA-h9hg-544v-fh29.json new file mode 100644 index 00000000000..05feff701df --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-h9hg-544v-fh29/GHSA-h9hg-544v-fh29.json @@ -0,0 +1,37 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h9hg-544v-fh29", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-26014" + ], + "details": "A Remote Code Execution (RCE) vulnerability in Loggrove v.1.0 allows a remote attacker to execute arbitrary code via the path parameter.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26014" + }, + { + "type": "WEB", + "url": "https://gitee.com/olajowon/loggrove" + }, + { + "type": "WEB", + "url": "https://gitee.com/olajowon/loggrove/issues/IBJT1K" + }, + { + "type": "WEB", + "url": "https://github.com/olajowon/loggrove" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-j22r-rxv9-h8pm/GHSA-j22r-rxv9-h8pm.json b/advisories/unreviewed/2025/02/GHSA-j22r-rxv9-h8pm/GHSA-j22r-rxv9-h8pm.json new file mode 100644 index 00000000000..af89cc08b91 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-j22r-rxv9-h8pm/GHSA-j22r-rxv9-h8pm.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j22r-rxv9-h8pm", + "modified": "2025-02-21T18:31:13Z", + "published": "2025-02-21T18:31:13Z", + "aliases": [ + "CVE-2025-1543" + ], + "details": "A vulnerability, which was classified as problematic, has been found in iteachyou Dreamer CMS 4.1.3. This issue affects some unknown processing of the file /resource/js/ueditor-1.4.3.3. The manipulation leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1543" + }, + { + "type": "WEB", + "url": "https://github.com/cydtseng/Vulnerability-Research/blob/main/dreamercms/PathTraversal-UeditorResource.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.296489" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.296489" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.497329" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T16:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json b/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json index 6c54bf7de96..3b1a48a8637 100644 --- a/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json +++ b/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-jfh6-m8fx-jjp9", - "modified": "2025-02-21T06:31:09Z", + "modified": "2025-02-21T18:31:13Z", "published": "2025-02-21T06:31:09Z", "aliases": [ "CVE-2024-13585" ], "details": "The Ajax Search Lite WordPress plugin before 4.12.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -21,7 +26,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-21T06:15:20Z" diff --git a/advisories/unreviewed/2025/02/GHSA-m4vh-3qj9-43jx/GHSA-m4vh-3qj9-43jx.json b/advisories/unreviewed/2025/02/GHSA-m4vh-3qj9-43jx/GHSA-m4vh-3qj9-43jx.json index da7558cded8..584f99c856e 100644 --- a/advisories/unreviewed/2025/02/GHSA-m4vh-3qj9-43jx/GHSA-m4vh-3qj9-43jx.json +++ b/advisories/unreviewed/2025/02/GHSA-m4vh-3qj9-43jx/GHSA-m4vh-3qj9-43jx.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-m4vh-3qj9-43jx", - "modified": "2025-02-21T00:31:09Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:09Z", "aliases": [ "CVE-2025-25958" ], "details": "Cross Site Scripting vulnerabilities in phpcmsv9 v.9.6.3 allows a remote attacker to escalate privileges via a crafted script.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T22:15:31Z" diff --git a/advisories/unreviewed/2025/02/GHSA-m4wh-553v-44vf/GHSA-m4wh-553v-44vf.json b/advisories/unreviewed/2025/02/GHSA-m4wh-553v-44vf/GHSA-m4wh-553v-44vf.json index 66b7d1bcd00..c5750d78c31 100644 --- a/advisories/unreviewed/2025/02/GHSA-m4wh-553v-44vf/GHSA-m4wh-553v-44vf.json +++ b/advisories/unreviewed/2025/02/GHSA-m4wh-553v-44vf/GHSA-m4wh-553v-44vf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-m4wh-553v-44vf", - "modified": "2025-02-20T15:31:10Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T15:31:10Z", "aliases": [ "CVE-2023-51316" ], "details": "A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Bus Reservation System v1.1 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T15:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json b/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json index 7237301a6a0..afa0a350cef 100644 --- a/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json +++ b/advisories/unreviewed/2025/02/GHSA-mgqg-wqxj-q43c/GHSA-mgqg-wqxj-q43c.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mgqg-wqxj-q43c", - "modified": "2025-02-10T18:30:46Z", + "modified": "2025-02-21T18:31:09Z", "published": "2025-02-10T18:30:46Z", "aliases": [ "CVE-2025-21689" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nUSB: serial: quatech2: fix null-ptr-deref in qt2_process_read_urb()\n\nThis patch addresses a null-ptr-deref in qt2_process_read_urb() due to\nan incorrect bounds check in the following:\n\n if (newport > serial->num_ports) {\n dev_err(&port->dev,\n \"%s - port change to invalid port: %i\\n\",\n __func__, newport);\n break;\n }\n\nThe condition doesn't account for the valid range of the serial->port\nbuffer, which is from 0 to serial->num_ports - 1. When newport is equal\nto serial->num_ports, the assignment of \"port\" in the\nfollowing code is out-of-bounds and NULL:\n\n serial_priv->current_port = newport;\n port = serial->port[serial_priv->current_port];\n\nThe fix checks if newport is greater than or equal to serial->num_ports\nindicating it is out-of-bounds.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -48,8 +53,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-476" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json b/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json index 9c7a23b0cad..cd0054b6d4d 100644 --- a/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json +++ b/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mhw9-x46c-v6q4", - "modified": "2025-02-21T12:32:11Z", + "modified": "2025-02-21T18:31:09Z", "published": "2025-02-13T15:31:25Z", "aliases": [ "CVE-2025-1094" @@ -27,6 +27,10 @@ "type": "WEB", "url": "https://lists.debian.org/debian-lts-announce/2025/02/msg00024.html" }, + { + "type": "WEB", + "url": "https://security.netapp.com/advisory/ntap-20250221-0010" + }, { "type": "WEB", "url": "https://www.postgresql.org/support/security/CVE-2025-1094" diff --git a/advisories/unreviewed/2025/02/GHSA-mp36-c9p8-hm2m/GHSA-mp36-c9p8-hm2m.json b/advisories/unreviewed/2025/02/GHSA-mp36-c9p8-hm2m/GHSA-mp36-c9p8-hm2m.json index fea4b5d9695..d76321a8800 100644 --- a/advisories/unreviewed/2025/02/GHSA-mp36-c9p8-hm2m/GHSA-mp36-c9p8-hm2m.json +++ b/advisories/unreviewed/2025/02/GHSA-mp36-c9p8-hm2m/GHSA-mp36-c9p8-hm2m.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mp36-c9p8-hm2m", - "modified": "2025-02-21T00:31:10Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:10Z", "aliases": [ "CVE-2025-25674" ], "details": "Tenda AC10 V1.0 V15.03.06.23 is vulnerable to Buffer Overflow in form_fast_setting_wifi_set via the parameter ssid.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-mw38-fx9m-f8jc/GHSA-mw38-fx9m-f8jc.json b/advisories/unreviewed/2025/02/GHSA-mw38-fx9m-f8jc/GHSA-mw38-fx9m-f8jc.json new file mode 100644 index 00000000000..9328ed4b08e --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-mw38-fx9m-f8jc/GHSA-mw38-fx9m-f8jc.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mw38-fx9m-f8jc", + "modified": "2025-02-21T18:31:15Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-25765" + ], + "details": "MRCMS v3.1.2 was discovered to contain an arbitrary file write vulnerability via the component /file/save.do.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25765" + }, + { + "type": "WEB", + "url": "https://flowus.cn/share/be03dd2c-b760-457a-a919-e388d7566ff2" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T18:16:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json b/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json index 85d623cb413..a33eb21b496 100644 --- a/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json +++ b/advisories/unreviewed/2025/02/GHSA-q3hh-qh22-77x8/GHSA-q3hh-qh22-77x8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-q3hh-qh22-77x8", - "modified": "2025-02-21T15:32:00Z", + "modified": "2025-02-21T18:31:08Z", "published": "2025-02-10T18:30:47Z", "aliases": [ "CVE-2025-21687" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nvfio/platform: check the bounds of read/write syscalls\n\ncount and offset are passed from user space and not checked, only\noffset is capped to 40 bits, which can be used to read/write out of\nbounds of the device.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -64,8 +69,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-125" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-q676-r7fv-jgcc/GHSA-q676-r7fv-jgcc.json b/advisories/unreviewed/2025/02/GHSA-q676-r7fv-jgcc/GHSA-q676-r7fv-jgcc.json index 637cfe441fc..f8c1438cdf0 100644 --- a/advisories/unreviewed/2025/02/GHSA-q676-r7fv-jgcc/GHSA-q676-r7fv-jgcc.json +++ b/advisories/unreviewed/2025/02/GHSA-q676-r7fv-jgcc/GHSA-q676-r7fv-jgcc.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q676-r7fv-jgcc", - "modified": "2025-02-18T09:32:44Z", + "modified": "2025-02-21T18:31:11Z", "published": "2025-02-18T09:32:44Z", "aliases": [ "CVE-2024-11895" diff --git a/advisories/unreviewed/2025/02/GHSA-q7m5-gr49-2535/GHSA-q7m5-gr49-2535.json b/advisories/unreviewed/2025/02/GHSA-q7m5-gr49-2535/GHSA-q7m5-gr49-2535.json index dbf1d68c449..b3ffe86df79 100644 --- a/advisories/unreviewed/2025/02/GHSA-q7m5-gr49-2535/GHSA-q7m5-gr49-2535.json +++ b/advisories/unreviewed/2025/02/GHSA-q7m5-gr49-2535/GHSA-q7m5-gr49-2535.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-q7m5-gr49-2535", - "modified": "2025-02-21T00:31:11Z", + "modified": "2025-02-21T18:31:13Z", "published": "2025-02-21T00:31:11Z", "aliases": [ "CVE-2025-25676" ], "details": "Tenda i12 V1.0.0.10(3805) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDset function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-rqxq-4234-gv49/GHSA-rqxq-4234-gv49.json b/advisories/unreviewed/2025/02/GHSA-rqxq-4234-gv49/GHSA-rqxq-4234-gv49.json new file mode 100644 index 00000000000..189082b24fd --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-rqxq-4234-gv49/GHSA-rqxq-4234-gv49.json @@ -0,0 +1,52 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rqxq-4234-gv49", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:13Z", + "aliases": [ + "CVE-2025-1544" + ], + "details": "A vulnerability, which was classified as critical, was found in dingfanzu CMS up to 20250210. Affected is an unknown function of the file /ajax/loadShopInfo.php. The manipulation of the argument shopId leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1544" + }, + { + "type": "WEB", + "url": "https://github.com/XinCaoZ/cve/blob/main/dingfanzu/dingfanzu-CMS%20loadShopInfo.php%20shopId%20SQL%20inject.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.296490" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.296490" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.497477" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T16:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-rxjh-p26c-rfmh/GHSA-rxjh-p26c-rfmh.json b/advisories/unreviewed/2025/02/GHSA-rxjh-p26c-rfmh/GHSA-rxjh-p26c-rfmh.json index 7aa3ed67f5f..60b232fff58 100644 --- a/advisories/unreviewed/2025/02/GHSA-rxjh-p26c-rfmh/GHSA-rxjh-p26c-rfmh.json +++ b/advisories/unreviewed/2025/02/GHSA-rxjh-p26c-rfmh/GHSA-rxjh-p26c-rfmh.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rxjh-p26c-rfmh", - "modified": "2025-02-18T09:32:44Z", + "modified": "2025-02-21T18:31:11Z", "published": "2025-02-18T09:32:44Z", "aliases": [ "CVE-2024-13465" diff --git a/advisories/unreviewed/2025/02/GHSA-wqvq-w4mh-vpj8/GHSA-wqvq-w4mh-vpj8.json b/advisories/unreviewed/2025/02/GHSA-wqvq-w4mh-vpj8/GHSA-wqvq-w4mh-vpj8.json index 527f8854ef9..4ab50b7a8d1 100644 --- a/advisories/unreviewed/2025/02/GHSA-wqvq-w4mh-vpj8/GHSA-wqvq-w4mh-vpj8.json +++ b/advisories/unreviewed/2025/02/GHSA-wqvq-w4mh-vpj8/GHSA-wqvq-w4mh-vpj8.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-wqvq-w4mh-vpj8", - "modified": "2025-02-21T00:31:11Z", + "modified": "2025-02-21T18:31:13Z", "published": "2025-02-21T00:31:11Z", "aliases": [ "CVE-2025-25678" ], "details": "Tenda i12 V1.0.0.10(3805) was discovered to contain a buffer overflow via the funcpara1 parameter in the formSetCfm function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:13Z" diff --git a/advisories/unreviewed/2025/02/GHSA-x5vg-jxxx-qgwx/GHSA-x5vg-jxxx-qgwx.json b/advisories/unreviewed/2025/02/GHSA-x5vg-jxxx-qgwx/GHSA-x5vg-jxxx-qgwx.json new file mode 100644 index 00000000000..beb3a4519f8 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-x5vg-jxxx-qgwx/GHSA-x5vg-jxxx-qgwx.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x5vg-jxxx-qgwx", + "modified": "2025-02-21T18:31:14Z", + "published": "2025-02-21T18:31:14Z", + "aliases": [ + "CVE-2025-25510" + ], + "details": "Tenda AC8 V16.03.34.06 is vulnerable to Buffer Overflow in the get_parentControl_list_Info function.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25510" + }, + { + "type": "WEB", + "url": "https://github.com/faqiadegege/IoTVuln/blob/main/tendaAC8_get_parentControl_list_Info_urls_overflow/detail.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-21T17:15:14Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json b/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json index 1bbcaa9d672..da3792fabc4 100644 --- a/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json +++ b/advisories/unreviewed/2025/02/GHSA-x7cw-79fv-35qf/GHSA-x7cw-79fv-35qf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-x7cw-79fv-35qf", - "modified": "2025-02-10T18:30:46Z", + "modified": "2025-02-21T18:31:08Z", "published": "2025-02-10T18:30:46Z", "aliases": [ "CVE-2025-21690" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nscsi: storvsc: Ratelimit warning logs to prevent VM denial of service\n\nIf there's a persistent error in the hypervisor, the SCSI warning for\nfailed I/O can flood the kernel log and max out CPU utilization,\npreventing troubleshooting from the VM side. Ratelimit the warning so\nit doesn't DoS the VM.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -40,8 +45,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-770" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-10T16:15:38Z" diff --git a/advisories/unreviewed/2025/02/GHSA-x869-v47h-j67h/GHSA-x869-v47h-j67h.json b/advisories/unreviewed/2025/02/GHSA-x869-v47h-j67h/GHSA-x869-v47h-j67h.json index 97212a985e1..90c39b89dd3 100644 --- a/advisories/unreviewed/2025/02/GHSA-x869-v47h-j67h/GHSA-x869-v47h-j67h.json +++ b/advisories/unreviewed/2025/02/GHSA-x869-v47h-j67h/GHSA-x869-v47h-j67h.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-x869-v47h-j67h", - "modified": "2025-02-21T00:31:10Z", + "modified": "2025-02-21T18:31:13Z", "published": "2025-02-21T00:31:10Z", "aliases": [ "CVE-2025-25668" ], "details": "Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_47D878 function.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-xg8w-g5cc-8wvr/GHSA-xg8w-g5cc-8wvr.json b/advisories/unreviewed/2025/02/GHSA-xg8w-g5cc-8wvr/GHSA-xg8w-g5cc-8wvr.json index ce1284a1988..8fe008da762 100644 --- a/advisories/unreviewed/2025/02/GHSA-xg8w-g5cc-8wvr/GHSA-xg8w-g5cc-8wvr.json +++ b/advisories/unreviewed/2025/02/GHSA-xg8w-g5cc-8wvr/GHSA-xg8w-g5cc-8wvr.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-xg8w-g5cc-8wvr", - "modified": "2025-02-21T00:31:09Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-21T00:31:09Z", "aliases": [ "CVE-2025-25662" ], "details": "Tenda O4 V3.0 V1.0.0.10(2936) is vulnerable to Buffer Overflow in the function SafeSetMacFilter of the file /goform/setMacFilterList via the argument remark/type/time.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-120" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-xjq3-p9vw-4qrf/GHSA-xjq3-p9vw-4qrf.json b/advisories/unreviewed/2025/02/GHSA-xjq3-p9vw-4qrf/GHSA-xjq3-p9vw-4qrf.json index e6f46bdc673..5bb1de1d01d 100644 --- a/advisories/unreviewed/2025/02/GHSA-xjq3-p9vw-4qrf/GHSA-xjq3-p9vw-4qrf.json +++ b/advisories/unreviewed/2025/02/GHSA-xjq3-p9vw-4qrf/GHSA-xjq3-p9vw-4qrf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-xjq3-p9vw-4qrf", - "modified": "2025-02-21T00:31:10Z", + "modified": "2025-02-21T18:31:13Z", "published": "2025-02-21T00:31:10Z", "aliases": [ "CVE-2025-25675" ], "details": "Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand function. The str variable receives the cmdinput parameter from a POST request and is later assigned to the cmd_buf variable, which is directly used in the doSystemCmd function, causing an arbitrary command execution.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -20,8 +25,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T23:15:12Z" diff --git a/advisories/unreviewed/2025/02/GHSA-xxwx-qg6p-mx7w/GHSA-xxwx-qg6p-mx7w.json b/advisories/unreviewed/2025/02/GHSA-xxwx-qg6p-mx7w/GHSA-xxwx-qg6p-mx7w.json index 7278d206034..a709c1482b4 100644 --- a/advisories/unreviewed/2025/02/GHSA-xxwx-qg6p-mx7w/GHSA-xxwx-qg6p-mx7w.json +++ b/advisories/unreviewed/2025/02/GHSA-xxwx-qg6p-mx7w/GHSA-xxwx-qg6p-mx7w.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-xxwx-qg6p-mx7w", - "modified": "2025-02-20T15:31:10Z", + "modified": "2025-02-21T18:31:12Z", "published": "2025-02-20T15:31:10Z", "aliases": [ "CVE-2023-51313" ], "details": "PHPJabbers Restaurant Booking System v3.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-94" + ], + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-20T15:15:12Z"