From a679023a73c6f8e991ae7dae7f1ed5cd6754f17b Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 22 Aug 2024 21:32:53 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-89mg-6p9g-4jfj.json | 2 +- .../GHSA-2rq6-85wg-96g4.json | 2 +- .../GHSA-496x-5v3m-gff3.json | 2 +- .../GHSA-fcg7-9x44-gx43.json | 2 +- .../GHSA-x5xp-6cpr-4xwx.json | 2 +- .../GHSA-4w42-hx2p-m2jw.json | 2 +- .../GHSA-cq73-wfw9-gvq8.json | 9 ++- .../GHSA-jmpf-9fgv-p5cr.json | 11 ++-- .../GHSA-pg36-pgm7-px54.json | 11 ++-- .../GHSA-w4cp-wh3g-wgvx.json | 11 ++-- .../GHSA-xvhr-3rcv-j8f8.json | 11 ++-- .../GHSA-5q6f-gm4w-g552.json | 11 ++-- .../GHSA-9g2f-rcrg-3f74.json | 11 ++-- .../GHSA-gm28-rj7w-mj3m.json | 11 ++-- .../GHSA-m966-6288-pj94.json | 11 ++-- .../GHSA-pq5r-rp8m-p9vh.json | 11 ++-- .../GHSA-rxj8-fv7g-cp4v.json | 11 ++-- .../GHSA-vj7g-5fj3-rc83.json | 11 ++-- .../GHSA-wxh9-34f7-vmrc.json | 11 ++-- .../GHSA-x8xc-vcqw-36qc.json | 11 ++-- .../GHSA-3xvr-7cqm-9j53.json | 11 ++-- .../GHSA-5656-3635-q384.json | 9 ++- .../GHSA-57hj-hrjv-grpg.json | 11 ++-- .../GHSA-58j4-c8m7-xcgv.json | 11 ++-- .../GHSA-6vvc-wq83-2w8f.json | 11 ++-- .../GHSA-9xch-xvj3-fmf3.json | 9 ++- .../GHSA-c3cg-v373-7p8j.json | 11 ++-- .../GHSA-cf2p-hqc9-vhmw.json | 11 ++-- .../GHSA-fvf2-h9v7-hp42.json | 11 ++-- .../GHSA-vwmw-q649-87fw.json | 11 ++-- .../GHSA-x28v-j697-2r2c.json | 11 ++-- .../GHSA-33rp-rrfh-h9w8.json | 11 ++-- .../GHSA-53gm-jvjh-xr34.json | 11 ++-- .../GHSA-6gwg-c5gq-mp9h.json | 11 ++-- .../GHSA-mh44-x3cr-7p25.json | 11 ++-- .../GHSA-vv62-jfwq-693v.json | 11 ++-- .../GHSA-2xh4-pf7v-vh6h.json | 11 ++-- .../GHSA-6c99-7p5q-2gvx.json | 11 ++-- .../GHSA-mhgx-vc3w-x7h5.json | 11 ++-- .../GHSA-mv8j-pg39-6vw9.json | 11 ++-- .../GHSA-747x-f8jr-j7m2.json | 11 ++-- .../GHSA-9hx6-x24q-crmv.json | 11 ++-- .../GHSA-f437-v3vf-3c5h.json | 11 ++-- .../GHSA-hhwq-g35f-6pwq.json | 6 +- .../GHSA-r8h6-cwxj-rv5j.json | 9 ++- .../GHSA-rg6c-frmf-w953.json | 6 +- .../GHSA-27fp-c3m4-phwv.json | 54 ++++++++++++++++ .../GHSA-2862-5xjv-8phr.json | 11 ++-- .../GHSA-32r3-gj72-h3p2.json | 58 +++++++++++++++++ .../GHSA-33fw-34vg-hgjh.json | 11 ++-- .../GHSA-36c7-h45p-9hch.json | 11 ++-- .../GHSA-4wrc-8xjh-v948.json | 6 +- .../GHSA-5pvf-fc2q-jq4q.json | 39 ++++++++++++ .../GHSA-5qxq-95fv-whxm.json | 11 ++-- .../GHSA-5wfc-h7w4-43mx.json | 11 ++-- .../GHSA-72q5-rjgc-hrvj.json | 11 ++-- .../GHSA-7pcw-pq39-gmc3.json | 11 ++-- .../GHSA-7pwm-mqqh-jmmq.json | 11 ++-- .../GHSA-7r79-ppgg-4h8m.json | 11 ++-- .../GHSA-7v24-gjqv-fwg7.json | 50 +++++++++++++++ .../GHSA-8p8r-qjjp-c996.json | 11 ++-- .../GHSA-8v9c-gh64-hq64.json | 11 ++-- .../GHSA-9347-hgff-8mjv.json | 42 +++++++++++++ .../GHSA-94m4-2jpq-9j4w.json | 11 ++-- .../GHSA-96g3-59vf-qvw4.json | 11 ++-- .../GHSA-cfrq-8q2f-rp46.json | 11 ++-- .../GHSA-cxc7-qrmh-3wx5.json | 6 +- .../GHSA-f5pc-5jr4-25gx.json | 54 ++++++++++++++++ .../GHSA-fmrv-g3hm-j6pp.json | 39 ++++++++++++ .../GHSA-frr7-rgvg-v3p9.json | 9 ++- .../GHSA-fxc2-8m62-m85x.json | 39 ++++++++++++ .../GHSA-g72g-w36f-8rf4.json | 11 ++-- .../GHSA-hwq5-4f7m-7wwg.json | 38 ++++++++++++ .../GHSA-j9pj-4vv7-cpj9.json | 39 ++++++++++++ .../GHSA-m59m-755q-5h2m.json | 39 ++++++++++++ .../GHSA-mchm-hhh8-w57p.json | 11 ++-- .../GHSA-mpg7-9mg3-3974.json | 11 ++-- .../GHSA-mx8m-2wh5-m3hh.json | 11 ++-- .../GHSA-pmwj-r76w-m8f7.json | 11 ++-- .../GHSA-q4pc-gw9h-vxg4.json | 11 ++-- .../GHSA-q98g-hxg3-268c.json | 62 +++++++++++++++++++ .../GHSA-qchq-46j8-vq4j.json | 54 ++++++++++++++++ .../GHSA-qgv4-x6mv-vh78.json | 11 ++-- .../GHSA-r7cq-wqc6-6gf2.json | 58 +++++++++++++++++ .../GHSA-rc9p-g2q3-x488.json | 11 ++-- .../GHSA-v4c3-qgm8-jh35.json | 2 +- .../GHSA-x6xx-q6w3-8m4c.json | 58 +++++++++++++++++ .../GHSA-xxr7-33fp-84c2.json | 42 +++++++++++++ 88 files changed, 1214 insertions(+), 250 deletions(-) create mode 100644 advisories/unreviewed/2024/08/GHSA-27fp-c3m4-phwv/GHSA-27fp-c3m4-phwv.json create mode 100644 advisories/unreviewed/2024/08/GHSA-32r3-gj72-h3p2/GHSA-32r3-gj72-h3p2.json create mode 100644 advisories/unreviewed/2024/08/GHSA-5pvf-fc2q-jq4q/GHSA-5pvf-fc2q-jq4q.json create mode 100644 advisories/unreviewed/2024/08/GHSA-7v24-gjqv-fwg7/GHSA-7v24-gjqv-fwg7.json create mode 100644 advisories/unreviewed/2024/08/GHSA-9347-hgff-8mjv/GHSA-9347-hgff-8mjv.json create mode 100644 advisories/unreviewed/2024/08/GHSA-f5pc-5jr4-25gx/GHSA-f5pc-5jr4-25gx.json create mode 100644 advisories/unreviewed/2024/08/GHSA-fmrv-g3hm-j6pp/GHSA-fmrv-g3hm-j6pp.json create mode 100644 advisories/unreviewed/2024/08/GHSA-fxc2-8m62-m85x/GHSA-fxc2-8m62-m85x.json create mode 100644 advisories/unreviewed/2024/08/GHSA-hwq5-4f7m-7wwg/GHSA-hwq5-4f7m-7wwg.json create mode 100644 advisories/unreviewed/2024/08/GHSA-j9pj-4vv7-cpj9/GHSA-j9pj-4vv7-cpj9.json create mode 100644 advisories/unreviewed/2024/08/GHSA-m59m-755q-5h2m/GHSA-m59m-755q-5h2m.json create mode 100644 advisories/unreviewed/2024/08/GHSA-q98g-hxg3-268c/GHSA-q98g-hxg3-268c.json create mode 100644 advisories/unreviewed/2024/08/GHSA-qchq-46j8-vq4j/GHSA-qchq-46j8-vq4j.json create mode 100644 advisories/unreviewed/2024/08/GHSA-r7cq-wqc6-6gf2/GHSA-r7cq-wqc6-6gf2.json create mode 100644 advisories/unreviewed/2024/08/GHSA-x6xx-q6w3-8m4c/GHSA-x6xx-q6w3-8m4c.json create mode 100644 advisories/unreviewed/2024/08/GHSA-xxr7-33fp-84c2/GHSA-xxr7-33fp-84c2.json diff --git a/advisories/unreviewed/2023/03/GHSA-89mg-6p9g-4jfj/GHSA-89mg-6p9g-4jfj.json b/advisories/unreviewed/2023/03/GHSA-89mg-6p9g-4jfj/GHSA-89mg-6p9g-4jfj.json index 8049cfae822..4acf47f403a 100644 --- a/advisories/unreviewed/2023/03/GHSA-89mg-6p9g-4jfj/GHSA-89mg-6p9g-4jfj.json +++ b/advisories/unreviewed/2023/03/GHSA-89mg-6p9g-4jfj/GHSA-89mg-6p9g-4jfj.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-89mg-6p9g-4jfj", - "modified": "2023-03-24T03:30:18Z", + "modified": "2024-08-22T21:31:27Z", "published": "2023-03-19T03:30:25Z", "aliases": [ "CVE-2022-48425" diff --git a/advisories/unreviewed/2023/07/GHSA-2rq6-85wg-96g4/GHSA-2rq6-85wg-96g4.json b/advisories/unreviewed/2023/07/GHSA-2rq6-85wg-96g4/GHSA-2rq6-85wg-96g4.json index a2b07b2188c..00492be913a 100644 --- a/advisories/unreviewed/2023/07/GHSA-2rq6-85wg-96g4/GHSA-2rq6-85wg-96g4.json +++ b/advisories/unreviewed/2023/07/GHSA-2rq6-85wg-96g4/GHSA-2rq6-85wg-96g4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-2rq6-85wg-96g4", - "modified": "2023-12-22T18:30:28Z", + "modified": "2024-08-22T21:31:27Z", "published": "2023-07-24T18:30:44Z", "aliases": [ "CVE-2023-32257" diff --git a/advisories/unreviewed/2023/07/GHSA-496x-5v3m-gff3/GHSA-496x-5v3m-gff3.json b/advisories/unreviewed/2023/07/GHSA-496x-5v3m-gff3/GHSA-496x-5v3m-gff3.json index aa108b24ad0..af2a9463f48 100644 --- a/advisories/unreviewed/2023/07/GHSA-496x-5v3m-gff3/GHSA-496x-5v3m-gff3.json +++ b/advisories/unreviewed/2023/07/GHSA-496x-5v3m-gff3/GHSA-496x-5v3m-gff3.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-496x-5v3m-gff3", - "modified": "2023-11-17T18:30:49Z", + "modified": "2024-08-22T21:31:27Z", "published": "2023-07-24T18:30:44Z", "aliases": [ "CVE-2023-32258" diff --git a/advisories/unreviewed/2023/07/GHSA-fcg7-9x44-gx43/GHSA-fcg7-9x44-gx43.json b/advisories/unreviewed/2023/07/GHSA-fcg7-9x44-gx43/GHSA-fcg7-9x44-gx43.json index b0713e67e61..18818506954 100644 --- a/advisories/unreviewed/2023/07/GHSA-fcg7-9x44-gx43/GHSA-fcg7-9x44-gx43.json +++ b/advisories/unreviewed/2023/07/GHSA-fcg7-9x44-gx43/GHSA-fcg7-9x44-gx43.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-fcg7-9x44-gx43", - "modified": "2023-11-29T15:30:20Z", + "modified": "2024-08-22T21:31:27Z", "published": "2023-07-21T21:30:33Z", "aliases": [ "CVE-2023-3776" diff --git a/advisories/unreviewed/2023/07/GHSA-x5xp-6cpr-4xwx/GHSA-x5xp-6cpr-4xwx.json b/advisories/unreviewed/2023/07/GHSA-x5xp-6cpr-4xwx/GHSA-x5xp-6cpr-4xwx.json index 2ce1717b166..07ee3e7ef93 100644 --- a/advisories/unreviewed/2023/07/GHSA-x5xp-6cpr-4xwx/GHSA-x5xp-6cpr-4xwx.json +++ b/advisories/unreviewed/2023/07/GHSA-x5xp-6cpr-4xwx/GHSA-x5xp-6cpr-4xwx.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-x5xp-6cpr-4xwx", - "modified": "2024-01-11T21:31:15Z", + "modified": "2024-08-22T21:31:27Z", "published": "2023-07-21T21:30:33Z", "aliases": [ "CVE-2023-3611" diff --git a/advisories/unreviewed/2024/02/GHSA-4w42-hx2p-m2jw/GHSA-4w42-hx2p-m2jw.json b/advisories/unreviewed/2024/02/GHSA-4w42-hx2p-m2jw/GHSA-4w42-hx2p-m2jw.json index 5ba4655f08a..3f7a7528149 100644 --- a/advisories/unreviewed/2024/02/GHSA-4w42-hx2p-m2jw/GHSA-4w42-hx2p-m2jw.json +++ b/advisories/unreviewed/2024/02/GHSA-4w42-hx2p-m2jw/GHSA-4w42-hx2p-m2jw.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4w42-hx2p-m2jw", - "modified": "2024-02-06T12:30:31Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-02-06T12:30:31Z", "aliases": [ "CVE-2024-24938" diff --git a/advisories/unreviewed/2024/02/GHSA-cq73-wfw9-gvq8/GHSA-cq73-wfw9-gvq8.json b/advisories/unreviewed/2024/02/GHSA-cq73-wfw9-gvq8/GHSA-cq73-wfw9-gvq8.json index 6b31d3e9b90..beb87636329 100644 --- a/advisories/unreviewed/2024/02/GHSA-cq73-wfw9-gvq8/GHSA-cq73-wfw9-gvq8.json +++ b/advisories/unreviewed/2024/02/GHSA-cq73-wfw9-gvq8/GHSA-cq73-wfw9-gvq8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cq73-wfw9-gvq8", - "modified": "2024-02-18T06:30:31Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-02-18T06:30:31Z", "aliases": [ "CVE-2023-52366" ], "details": "Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability may cause features to perform abnormally.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ "CWE-120" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-18T04:15:07Z" diff --git a/advisories/unreviewed/2024/02/GHSA-jmpf-9fgv-p5cr/GHSA-jmpf-9fgv-p5cr.json b/advisories/unreviewed/2024/02/GHSA-jmpf-9fgv-p5cr/GHSA-jmpf-9fgv-p5cr.json index 692a0980457..7d606557d25 100644 --- a/advisories/unreviewed/2024/02/GHSA-jmpf-9fgv-p5cr/GHSA-jmpf-9fgv-p5cr.json +++ b/advisories/unreviewed/2024/02/GHSA-jmpf-9fgv-p5cr/GHSA-jmpf-9fgv-p5cr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jmpf-9fgv-p5cr", - "modified": "2024-02-22T15:30:39Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-02-22T15:30:39Z", "aliases": [ "CVE-2024-25850" ], "details": "Netis WF2780 v2.1.40144 was discovered to contain a command injection vulnerability via the wps_ap_ssid5g parameter", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-77" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-22T15:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-pg36-pgm7-px54/GHSA-pg36-pgm7-px54.json b/advisories/unreviewed/2024/02/GHSA-pg36-pgm7-px54/GHSA-pg36-pgm7-px54.json index 45801b2c4a5..99980b0af12 100644 --- a/advisories/unreviewed/2024/02/GHSA-pg36-pgm7-px54/GHSA-pg36-pgm7-px54.json +++ b/advisories/unreviewed/2024/02/GHSA-pg36-pgm7-px54/GHSA-pg36-pgm7-px54.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pg36-pgm7-px54", - "modified": "2024-02-15T21:31:27Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-02-15T21:31:27Z", "aliases": [ "CVE-2024-25502" ], "details": "Directory Traversal vulnerability in flusity CMS v.2.4 allows a remote attacker to execute arbitrary code and obtain sensitive information via the download_backup.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-15T20:15:45Z" diff --git a/advisories/unreviewed/2024/02/GHSA-w4cp-wh3g-wgvx/GHSA-w4cp-wh3g-wgvx.json b/advisories/unreviewed/2024/02/GHSA-w4cp-wh3g-wgvx/GHSA-w4cp-wh3g-wgvx.json index 740da3e712c..1a889d6e052 100644 --- a/advisories/unreviewed/2024/02/GHSA-w4cp-wh3g-wgvx/GHSA-w4cp-wh3g-wgvx.json +++ b/advisories/unreviewed/2024/02/GHSA-w4cp-wh3g-wgvx/GHSA-w4cp-wh3g-wgvx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w4cp-wh3g-wgvx", - "modified": "2024-03-23T03:30:24Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-02-21T21:30:24Z", "aliases": [ "CVE-2024-24476" ], "details": "Buffer Overflow vulnerability in Wireshark team Wireshark before v.4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T19:15:09Z" diff --git a/advisories/unreviewed/2024/02/GHSA-xvhr-3rcv-j8f8/GHSA-xvhr-3rcv-j8f8.json b/advisories/unreviewed/2024/02/GHSA-xvhr-3rcv-j8f8/GHSA-xvhr-3rcv-j8f8.json index 16010a966e2..58d7654603d 100644 --- a/advisories/unreviewed/2024/02/GHSA-xvhr-3rcv-j8f8/GHSA-xvhr-3rcv-j8f8.json +++ b/advisories/unreviewed/2024/02/GHSA-xvhr-3rcv-j8f8/GHSA-xvhr-3rcv-j8f8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xvhr-3rcv-j8f8", - "modified": "2024-02-22T00:31:01Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-02-22T00:31:01Z", "aliases": [ "CVE-2023-52153" ], "details": "A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthenticated attackers to inject arbitrary SQL commands via the PmbOpac-LOGIN cookie value.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T22:15:49Z" diff --git a/advisories/unreviewed/2024/03/GHSA-5q6f-gm4w-g552/GHSA-5q6f-gm4w-g552.json b/advisories/unreviewed/2024/03/GHSA-5q6f-gm4w-g552/GHSA-5q6f-gm4w-g552.json index 905f2286367..0fda960ca84 100644 --- a/advisories/unreviewed/2024/03/GHSA-5q6f-gm4w-g552/GHSA-5q6f-gm4w-g552.json +++ b/advisories/unreviewed/2024/03/GHSA-5q6f-gm4w-g552/GHSA-5q6f-gm4w-g552.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5q6f-gm4w-g552", - "modified": "2024-03-01T15:31:38Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-01T15:31:38Z", "aliases": [ "CVE-2024-27571" ], "details": "LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the makeCurRemoteApList function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-01T14:15:54Z" diff --git a/advisories/unreviewed/2024/03/GHSA-9g2f-rcrg-3f74/GHSA-9g2f-rcrg-3f74.json b/advisories/unreviewed/2024/03/GHSA-9g2f-rcrg-3f74/GHSA-9g2f-rcrg-3f74.json index ba7b8bcb535..b2c28afd1ef 100644 --- a/advisories/unreviewed/2024/03/GHSA-9g2f-rcrg-3f74/GHSA-9g2f-rcrg-3f74.json +++ b/advisories/unreviewed/2024/03/GHSA-9g2f-rcrg-3f74/GHSA-9g2f-rcrg-3f74.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9g2f-rcrg-3f74", - "modified": "2024-03-11T21:31:26Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-11T21:31:26Z", "aliases": [ "CVE-2024-27209" ], "details": "In TBD of TBD, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-122" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T19:15:48Z" diff --git a/advisories/unreviewed/2024/03/GHSA-gm28-rj7w-mj3m/GHSA-gm28-rj7w-mj3m.json b/advisories/unreviewed/2024/03/GHSA-gm28-rj7w-mj3m/GHSA-gm28-rj7w-mj3m.json index d2238d9de73..9ec9fbd55a2 100644 --- a/advisories/unreviewed/2024/03/GHSA-gm28-rj7w-mj3m/GHSA-gm28-rj7w-mj3m.json +++ b/advisories/unreviewed/2024/03/GHSA-gm28-rj7w-mj3m/GHSA-gm28-rj7w-mj3m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gm28-rj7w-mj3m", - "modified": "2024-03-18T21:31:23Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-18T21:31:23Z", "aliases": [ "CVE-2024-25657" ], "details": "An open redirect in the Login/Logout functionality of web management in AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS could allow attackers to redirect authenticated users to malicious websites.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-601" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-18T20:15:09Z" diff --git a/advisories/unreviewed/2024/03/GHSA-m966-6288-pj94/GHSA-m966-6288-pj94.json b/advisories/unreviewed/2024/03/GHSA-m966-6288-pj94/GHSA-m966-6288-pj94.json index 49390a5566e..d37fd11c6df 100644 --- a/advisories/unreviewed/2024/03/GHSA-m966-6288-pj94/GHSA-m966-6288-pj94.json +++ b/advisories/unreviewed/2024/03/GHSA-m966-6288-pj94/GHSA-m966-6288-pj94.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m966-6288-pj94", - "modified": "2024-04-24T03:30:45Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-29T18:30:43Z", "aliases": [ "CVE-2024-31032" ], "details": "An issue in Huashi Private Cloud CDN Live Streaming Acceleration Server hgateway-sixport v.1.1.2 allows a remote attacker to execute arbitrary code via the manager/ipping.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-94" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-29T17:15:20Z" diff --git a/advisories/unreviewed/2024/03/GHSA-pq5r-rp8m-p9vh/GHSA-pq5r-rp8m-p9vh.json b/advisories/unreviewed/2024/03/GHSA-pq5r-rp8m-p9vh/GHSA-pq5r-rp8m-p9vh.json index 24956320ed9..3d6df2b7bcd 100644 --- a/advisories/unreviewed/2024/03/GHSA-pq5r-rp8m-p9vh/GHSA-pq5r-rp8m-p9vh.json +++ b/advisories/unreviewed/2024/03/GHSA-pq5r-rp8m-p9vh/GHSA-pq5r-rp8m-p9vh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pq5r-rp8m-p9vh", - "modified": "2024-03-29T00:30:35Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-29T00:30:35Z", "aliases": [ "CVE-2024-29489" ], "details": "Jerryscript 2.4.0 has SEGV at ./jerry-core/ecma/base/ecma-helpers.c:238:58 in ecma_get_object_type.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-28T23:15:46Z" diff --git a/advisories/unreviewed/2024/03/GHSA-rxj8-fv7g-cp4v/GHSA-rxj8-fv7g-cp4v.json b/advisories/unreviewed/2024/03/GHSA-rxj8-fv7g-cp4v/GHSA-rxj8-fv7g-cp4v.json index 482a4ff9632..189ab4a71b4 100644 --- a/advisories/unreviewed/2024/03/GHSA-rxj8-fv7g-cp4v/GHSA-rxj8-fv7g-cp4v.json +++ b/advisories/unreviewed/2024/03/GHSA-rxj8-fv7g-cp4v/GHSA-rxj8-fv7g-cp4v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rxj8-fv7g-cp4v", - "modified": "2024-03-22T03:30:44Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-22T03:30:44Z", "aliases": [ "CVE-2024-28441" ], "details": "File Upload vulnerability in magicflue v.7.0 and before allows a remote attacker to execute arbitrary code via a crafted request to the messageid parameter of the mail/mailupdate.jsp endpoint.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-22T02:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-vj7g-5fj3-rc83/GHSA-vj7g-5fj3-rc83.json b/advisories/unreviewed/2024/03/GHSA-vj7g-5fj3-rc83/GHSA-vj7g-5fj3-rc83.json index 5b0f8351a5d..fc8f0a9a489 100644 --- a/advisories/unreviewed/2024/03/GHSA-vj7g-5fj3-rc83/GHSA-vj7g-5fj3-rc83.json +++ b/advisories/unreviewed/2024/03/GHSA-vj7g-5fj3-rc83/GHSA-vj7g-5fj3-rc83.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vj7g-5fj3-rc83", - "modified": "2024-03-14T03:31:15Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-14T03:31:15Z", "aliases": [ "CVE-2024-25651" ], "details": "User enumeration can occur in the Authentication REST API in Delinea PAM Secret Server 11.4. This allows a remote attacker to determine whether a user is valid because of a difference in responses from the /oauth2/token endpoint.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-203" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-14T03:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-wxh9-34f7-vmrc/GHSA-wxh9-34f7-vmrc.json b/advisories/unreviewed/2024/03/GHSA-wxh9-34f7-vmrc/GHSA-wxh9-34f7-vmrc.json index 7dc92dd18b2..7bf7444e69b 100644 --- a/advisories/unreviewed/2024/03/GHSA-wxh9-34f7-vmrc/GHSA-wxh9-34f7-vmrc.json +++ b/advisories/unreviewed/2024/03/GHSA-wxh9-34f7-vmrc/GHSA-wxh9-34f7-vmrc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wxh9-34f7-vmrc", - "modified": "2024-03-27T06:30:32Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-27T06:30:32Z", "aliases": [ "CVE-2023-46047" ], "details": "An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function. NOTE: this is disputed because there is no expectation that the product should be starting with an attacker-controlled configuration file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-27T05:15:47Z" diff --git a/advisories/unreviewed/2024/03/GHSA-x8xc-vcqw-36qc/GHSA-x8xc-vcqw-36qc.json b/advisories/unreviewed/2024/03/GHSA-x8xc-vcqw-36qc/GHSA-x8xc-vcqw-36qc.json index 0b4261f7ff6..8671cb37ac1 100644 --- a/advisories/unreviewed/2024/03/GHSA-x8xc-vcqw-36qc/GHSA-x8xc-vcqw-36qc.json +++ b/advisories/unreviewed/2024/03/GHSA-x8xc-vcqw-36qc/GHSA-x8xc-vcqw-36qc.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x8xc-vcqw-36qc", - "modified": "2024-03-04T03:30:26Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-03-04T03:30:26Z", "aliases": [ "CVE-2024-20037" ], "details": "In pq, there is a possible write-what-where condition due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08495937; Issue ID: ALPS08495937.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-754" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-04T03:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-3xvr-7cqm-9j53/GHSA-3xvr-7cqm-9j53.json b/advisories/unreviewed/2024/04/GHSA-3xvr-7cqm-9j53/GHSA-3xvr-7cqm-9j53.json index 9cdc881895a..87336100769 100644 --- a/advisories/unreviewed/2024/04/GHSA-3xvr-7cqm-9j53/GHSA-3xvr-7cqm-9j53.json +++ b/advisories/unreviewed/2024/04/GHSA-3xvr-7cqm-9j53/GHSA-3xvr-7cqm-9j53.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3xvr-7cqm-9j53", - "modified": "2024-04-29T21:30:36Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-29T21:30:36Z", "aliases": [ "CVE-2024-27518" ], "details": "An issue in SUPERAntiSyware Professional X 10.0.1262 and 10.0.1264 allows unprivileged attackers to escalate privileges via a restore of a crafted DLL file into the C:\\Program Files\\SUPERAntiSpyware folder.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T21:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-5656-3635-q384/GHSA-5656-3635-q384.json b/advisories/unreviewed/2024/04/GHSA-5656-3635-q384/GHSA-5656-3635-q384.json index e4e9b78d563..dd907a7ab8c 100644 --- a/advisories/unreviewed/2024/04/GHSA-5656-3635-q384/GHSA-5656-3635-q384.json +++ b/advisories/unreviewed/2024/04/GHSA-5656-3635-q384/GHSA-5656-3635-q384.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5656-3635-q384", - "modified": "2024-04-05T15:30:31Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-04-05T15:30:31Z", "aliases": [ "CVE-2023-49965" ], "details": "SpaceX Starlink Wi-Fi router Gen 2 before 2023.48.0 allows XSS via the ssid and password parameters on the Setup Page.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-05T14:15:10Z" diff --git a/advisories/unreviewed/2024/04/GHSA-57hj-hrjv-grpg/GHSA-57hj-hrjv-grpg.json b/advisories/unreviewed/2024/04/GHSA-57hj-hrjv-grpg/GHSA-57hj-hrjv-grpg.json index 4c54b26c059..623f1a627e8 100644 --- a/advisories/unreviewed/2024/04/GHSA-57hj-hrjv-grpg/GHSA-57hj-hrjv-grpg.json +++ b/advisories/unreviewed/2024/04/GHSA-57hj-hrjv-grpg/GHSA-57hj-hrjv-grpg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-57hj-hrjv-grpg", - "modified": "2024-04-30T18:30:33Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-30T18:30:33Z", "aliases": [ "CVE-2024-33103" ], "details": "An arbitrary file upload vulnerability in the Media Manager component of DokuWiki 2024-02-06a allows attackers to execute arbitrary code via uploading a crafted SVG file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-30T18:15:19Z" diff --git a/advisories/unreviewed/2024/04/GHSA-58j4-c8m7-xcgv/GHSA-58j4-c8m7-xcgv.json b/advisories/unreviewed/2024/04/GHSA-58j4-c8m7-xcgv/GHSA-58j4-c8m7-xcgv.json index 9377c346496..79282f5616e 100644 --- a/advisories/unreviewed/2024/04/GHSA-58j4-c8m7-xcgv/GHSA-58j4-c8m7-xcgv.json +++ b/advisories/unreviewed/2024/04/GHSA-58j4-c8m7-xcgv/GHSA-58j4-c8m7-xcgv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-58j4-c8m7-xcgv", - "modified": "2024-04-19T18:31:14Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-19T18:31:14Z", "aliases": [ "CVE-2023-49963" ], "details": "DYMO LabelWriter Print Server through 2.366 contains a backdoor hard-coded password that could allow an attacker to take control.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-259" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-19T17:15:51Z" diff --git a/advisories/unreviewed/2024/04/GHSA-6vvc-wq83-2w8f/GHSA-6vvc-wq83-2w8f.json b/advisories/unreviewed/2024/04/GHSA-6vvc-wq83-2w8f/GHSA-6vvc-wq83-2w8f.json index bdeef688891..4435a46eaff 100644 --- a/advisories/unreviewed/2024/04/GHSA-6vvc-wq83-2w8f/GHSA-6vvc-wq83-2w8f.json +++ b/advisories/unreviewed/2024/04/GHSA-6vvc-wq83-2w8f/GHSA-6vvc-wq83-2w8f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6vvc-wq83-2w8f", - "modified": "2024-04-17T21:30:48Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-17T21:30:48Z", "aliases": [ "CVE-2024-31041" ], "details": "Null Pointer Dereference vulnerability in topic_filtern function in mqtt_parser.c in NanoMQ 0.21.7 allows attackers to cause a denial of service.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-17T19:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-9xch-xvj3-fmf3/GHSA-9xch-xvj3-fmf3.json b/advisories/unreviewed/2024/04/GHSA-9xch-xvj3-fmf3/GHSA-9xch-xvj3-fmf3.json index 96e81afb765..f3504762151 100644 --- a/advisories/unreviewed/2024/04/GHSA-9xch-xvj3-fmf3/GHSA-9xch-xvj3-fmf3.json +++ b/advisories/unreviewed/2024/04/GHSA-9xch-xvj3-fmf3/GHSA-9xch-xvj3-fmf3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9xch-xvj3-fmf3", - "modified": "2024-04-10T18:30:47Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-10T18:30:47Z", "aliases": [ "CVE-2024-3566" ], "details": "A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -51,7 +54,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-10T16:15:16Z" diff --git a/advisories/unreviewed/2024/04/GHSA-c3cg-v373-7p8j/GHSA-c3cg-v373-7p8j.json b/advisories/unreviewed/2024/04/GHSA-c3cg-v373-7p8j/GHSA-c3cg-v373-7p8j.json index 546bc93bb00..f2de2bb081b 100644 --- a/advisories/unreviewed/2024/04/GHSA-c3cg-v373-7p8j/GHSA-c3cg-v373-7p8j.json +++ b/advisories/unreviewed/2024/04/GHSA-c3cg-v373-7p8j/GHSA-c3cg-v373-7p8j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-c3cg-v373-7p8j", - "modified": "2024-04-29T06:30:43Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-29T06:30:43Z", "aliases": [ "CVE-2024-33904" ], "details": "In plugins/HookSystem.cpp in Hyprland through 0.39.1 (before 28c8561), through a race condition, a local attacker can cause execution of arbitrary assembly code by writing to a predictable temporary file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-362" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T06:15:17Z" diff --git a/advisories/unreviewed/2024/04/GHSA-cf2p-hqc9-vhmw/GHSA-cf2p-hqc9-vhmw.json b/advisories/unreviewed/2024/04/GHSA-cf2p-hqc9-vhmw/GHSA-cf2p-hqc9-vhmw.json index e8dc7112023..e34b6dd9b5c 100644 --- a/advisories/unreviewed/2024/04/GHSA-cf2p-hqc9-vhmw/GHSA-cf2p-hqc9-vhmw.json +++ b/advisories/unreviewed/2024/04/GHSA-cf2p-hqc9-vhmw/GHSA-cf2p-hqc9-vhmw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cf2p-hqc9-vhmw", - "modified": "2024-04-10T15:30:40Z", + "modified": "2024-08-22T21:31:27Z", "published": "2024-04-10T15:30:40Z", "aliases": [ "CVE-2024-23076" ], "details": "FreeChart v1.5.4 was discovered to contain a NullPointerException via the component /labels/BubbleXYItemLabelGenerator.java.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-395" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-10T12:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-fvf2-h9v7-hp42/GHSA-fvf2-h9v7-hp42.json b/advisories/unreviewed/2024/04/GHSA-fvf2-h9v7-hp42/GHSA-fvf2-h9v7-hp42.json index dd339c89dd8..27ffcfe318f 100644 --- a/advisories/unreviewed/2024/04/GHSA-fvf2-h9v7-hp42/GHSA-fvf2-h9v7-hp42.json +++ b/advisories/unreviewed/2024/04/GHSA-fvf2-h9v7-hp42/GHSA-fvf2-h9v7-hp42.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-fvf2-h9v7-hp42", - "modified": "2024-04-27T00:30:37Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-27T00:30:37Z", "aliases": [ "CVE-2024-30804" ], "details": "An issue discovered in the DeviceIoControl component in ASUS Fan_Xpert before v.10013 allows an attacker to execute arbitrary code via crafted IOCTL requests.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-782" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T22:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vwmw-q649-87fw/GHSA-vwmw-q649-87fw.json b/advisories/unreviewed/2024/04/GHSA-vwmw-q649-87fw/GHSA-vwmw-q649-87fw.json index 01149510506..d9d2d3821b3 100644 --- a/advisories/unreviewed/2024/04/GHSA-vwmw-q649-87fw/GHSA-vwmw-q649-87fw.json +++ b/advisories/unreviewed/2024/04/GHSA-vwmw-q649-87fw/GHSA-vwmw-q649-87fw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vwmw-q649-87fw", - "modified": "2024-04-17T00:30:57Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-17T00:30:57Z", "aliases": [ "CVE-2024-31759" ], "details": "An issue in sanluan PublicCMS v.4.0.202302.e allows an attacker to escalate privileges via the change password function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-16T23:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-x28v-j697-2r2c/GHSA-x28v-j697-2r2c.json b/advisories/unreviewed/2024/04/GHSA-x28v-j697-2r2c/GHSA-x28v-j697-2r2c.json index 7951c69d4e0..5f28d8569da 100644 --- a/advisories/unreviewed/2024/04/GHSA-x28v-j697-2r2c/GHSA-x28v-j697-2r2c.json +++ b/advisories/unreviewed/2024/04/GHSA-x28v-j697-2r2c/GHSA-x28v-j697-2r2c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x28v-j697-2r2c", - "modified": "2024-04-16T00:30:32Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-04-16T00:30:32Z", "aliases": [ "CVE-2020-22539" ], "details": "An arbitrary file upload vulnerability in the Add Category function of Codoforum v4.9 allows attackers to execute arbitrary code via uploading a crafted file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-15T22:15:07Z" diff --git a/advisories/unreviewed/2024/05/GHSA-33rp-rrfh-h9w8/GHSA-33rp-rrfh-h9w8.json b/advisories/unreviewed/2024/05/GHSA-33rp-rrfh-h9w8/GHSA-33rp-rrfh-h9w8.json index 383118555b7..cfb30ad3b3d 100644 --- a/advisories/unreviewed/2024/05/GHSA-33rp-rrfh-h9w8/GHSA-33rp-rrfh-h9w8.json +++ b/advisories/unreviewed/2024/05/GHSA-33rp-rrfh-h9w8/GHSA-33rp-rrfh-h9w8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-33rp-rrfh-h9w8", - "modified": "2024-05-22T18:30:40Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-05-22T18:30:40Z", "aliases": [ "CVE-2024-33226" ], "details": "An issue in the component Access64.sys of Wistron Corporation TBT Force Power Control v1.0.0.0 allows attackers to escalate privileges and execute arbitrary code via sending crafted IOCTL requests.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-22T16:15:10Z" diff --git a/advisories/unreviewed/2024/05/GHSA-53gm-jvjh-xr34/GHSA-53gm-jvjh-xr34.json b/advisories/unreviewed/2024/05/GHSA-53gm-jvjh-xr34/GHSA-53gm-jvjh-xr34.json index cac39c9e353..00b0741faa7 100644 --- a/advisories/unreviewed/2024/05/GHSA-53gm-jvjh-xr34/GHSA-53gm-jvjh-xr34.json +++ b/advisories/unreviewed/2024/05/GHSA-53gm-jvjh-xr34/GHSA-53gm-jvjh-xr34.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-53gm-jvjh-xr34", - "modified": "2024-05-31T18:31:14Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-05-31T18:31:14Z", "aliases": [ "CVE-2022-25038" ], "details": "wanEditor v4.7.11 was discovered to contain a cross-site scripting (XSS) vulnerability via the video upload function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-31T16:15:09Z" diff --git a/advisories/unreviewed/2024/05/GHSA-6gwg-c5gq-mp9h/GHSA-6gwg-c5gq-mp9h.json b/advisories/unreviewed/2024/05/GHSA-6gwg-c5gq-mp9h/GHSA-6gwg-c5gq-mp9h.json index d2465c80c28..699c8f3b141 100644 --- a/advisories/unreviewed/2024/05/GHSA-6gwg-c5gq-mp9h/GHSA-6gwg-c5gq-mp9h.json +++ b/advisories/unreviewed/2024/05/GHSA-6gwg-c5gq-mp9h/GHSA-6gwg-c5gq-mp9h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6gwg-c5gq-mp9h", - "modified": "2024-05-06T00:30:52Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-05-06T00:30:52Z", "aliases": [ "CVE-2024-34527" ], "details": "spaces_plugin/app.py in SolidUI 0.4.0 has an unnecessary print statement for an OpenAI key. The printed string might be logged.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-532" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-06T00:15:10Z" diff --git a/advisories/unreviewed/2024/05/GHSA-mh44-x3cr-7p25/GHSA-mh44-x3cr-7p25.json b/advisories/unreviewed/2024/05/GHSA-mh44-x3cr-7p25/GHSA-mh44-x3cr-7p25.json index ab78d31fdb4..3a1318b91ad 100644 --- a/advisories/unreviewed/2024/05/GHSA-mh44-x3cr-7p25/GHSA-mh44-x3cr-7p25.json +++ b/advisories/unreviewed/2024/05/GHSA-mh44-x3cr-7p25/GHSA-mh44-x3cr-7p25.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mh44-x3cr-7p25", - "modified": "2024-07-09T21:30:34Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-05-31T21:30:54Z", "aliases": [ "CVE-2024-36843" ], "details": "libmodbus v3.1.6 was discovered to contain a heap overflow via the modbus_mapping_free() function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-122" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-31T20:15:10Z" diff --git a/advisories/unreviewed/2024/05/GHSA-vv62-jfwq-693v/GHSA-vv62-jfwq-693v.json b/advisories/unreviewed/2024/05/GHSA-vv62-jfwq-693v/GHSA-vv62-jfwq-693v.json index b58ca198af3..0f957cdeff7 100644 --- a/advisories/unreviewed/2024/05/GHSA-vv62-jfwq-693v/GHSA-vv62-jfwq-693v.json +++ b/advisories/unreviewed/2024/05/GHSA-vv62-jfwq-693v/GHSA-vv62-jfwq-693v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vv62-jfwq-693v", - "modified": "2024-06-10T18:31:00Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-05-14T18:30:50Z", "aliases": [ "CVE-2024-34459" ], "details": "An issue was discovered in xmllint (from libxml2) before 2.11.8 and 2.12.x before 2.12.7. Formatting error messages with xmllint --htmlout can result in a buffer over-read in xmlHTMLPrintFileContext in xmllint.c.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-122" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-14T15:39:11Z" diff --git a/advisories/unreviewed/2024/06/GHSA-2xh4-pf7v-vh6h/GHSA-2xh4-pf7v-vh6h.json b/advisories/unreviewed/2024/06/GHSA-2xh4-pf7v-vh6h/GHSA-2xh4-pf7v-vh6h.json index acda5201dad..c34fc2c6ff2 100644 --- a/advisories/unreviewed/2024/06/GHSA-2xh4-pf7v-vh6h/GHSA-2xh4-pf7v-vh6h.json +++ b/advisories/unreviewed/2024/06/GHSA-2xh4-pf7v-vh6h/GHSA-2xh4-pf7v-vh6h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2xh4-pf7v-vh6h", - "modified": "2024-06-10T18:31:06Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-06-06T18:30:55Z", "aliases": [ "CVE-2024-33655" ], "details": "The DNS protocol in RFC 1035 and updates allows remote attackers to cause a denial of service (resource consumption) by arranging for DNS queries to be accumulated for seconds, such that responses are later sent in a pulsing burst (which can be considered traffic amplification in some cases), aka the \"DNSBomb\" issue.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -69,9 +72,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-400" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-06T17:15:51Z" diff --git a/advisories/unreviewed/2024/06/GHSA-6c99-7p5q-2gvx/GHSA-6c99-7p5q-2gvx.json b/advisories/unreviewed/2024/06/GHSA-6c99-7p5q-2gvx/GHSA-6c99-7p5q-2gvx.json index de29288f2c6..ad1806f422d 100644 --- a/advisories/unreviewed/2024/06/GHSA-6c99-7p5q-2gvx/GHSA-6c99-7p5q-2gvx.json +++ b/advisories/unreviewed/2024/06/GHSA-6c99-7p5q-2gvx/GHSA-6c99-7p5q-2gvx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6c99-7p5q-2gvx", - "modified": "2024-06-06T21:30:36Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-06-06T21:30:36Z", "aliases": [ "CVE-2024-36740" ], "details": "An issue in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) when index as a negative number exceeds the range of size.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-06T19:15:58Z" diff --git a/advisories/unreviewed/2024/06/GHSA-mhgx-vc3w-x7h5/GHSA-mhgx-vc3w-x7h5.json b/advisories/unreviewed/2024/06/GHSA-mhgx-vc3w-x7h5/GHSA-mhgx-vc3w-x7h5.json index 9c5aef58b84..6fd0326dff6 100644 --- a/advisories/unreviewed/2024/06/GHSA-mhgx-vc3w-x7h5/GHSA-mhgx-vc3w-x7h5.json +++ b/advisories/unreviewed/2024/06/GHSA-mhgx-vc3w-x7h5/GHSA-mhgx-vc3w-x7h5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mhgx-vc3w-x7h5", - "modified": "2024-06-04T15:30:58Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-06-04T15:30:58Z", "aliases": [ "CVE-2024-36800" ], "details": "A SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the ID parameter in Download.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-89" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-04T13:15:52Z" diff --git a/advisories/unreviewed/2024/06/GHSA-mv8j-pg39-6vw9/GHSA-mv8j-pg39-6vw9.json b/advisories/unreviewed/2024/06/GHSA-mv8j-pg39-6vw9/GHSA-mv8j-pg39-6vw9.json index f579940bb83..5853054f195 100644 --- a/advisories/unreviewed/2024/06/GHSA-mv8j-pg39-6vw9/GHSA-mv8j-pg39-6vw9.json +++ b/advisories/unreviewed/2024/06/GHSA-mv8j-pg39-6vw9/GHSA-mv8j-pg39-6vw9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mv8j-pg39-6vw9", - "modified": "2024-06-12T03:31:15Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-06-12T03:31:15Z", "aliases": [ "CVE-2024-36856" ], "details": "RMQTT Broker 0.4.0 allows remote attackers to cause a Denial of Service (daemon crash) via a certain sequence of five TCP packets.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-404" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-12T03:15:39Z" diff --git a/advisories/unreviewed/2024/07/GHSA-747x-f8jr-j7m2/GHSA-747x-f8jr-j7m2.json b/advisories/unreviewed/2024/07/GHSA-747x-f8jr-j7m2/GHSA-747x-f8jr-j7m2.json index 5bb798108f1..596ee7ca82c 100644 --- a/advisories/unreviewed/2024/07/GHSA-747x-f8jr-j7m2/GHSA-747x-f8jr-j7m2.json +++ b/advisories/unreviewed/2024/07/GHSA-747x-f8jr-j7m2/GHSA-747x-f8jr-j7m2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-747x-f8jr-j7m2", - "modified": "2024-07-04T15:30:40Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-07-04T15:30:40Z", "aliases": [ "CVE-2024-39211" ], "details": "Kaiten 57.128.8 allows remote attackers to enumerate user accounts via a crafted POST request, because a login response contains a user_email field only if the user account exists.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-204" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-04T13:15:10Z" diff --git a/advisories/unreviewed/2024/07/GHSA-9hx6-x24q-crmv/GHSA-9hx6-x24q-crmv.json b/advisories/unreviewed/2024/07/GHSA-9hx6-x24q-crmv/GHSA-9hx6-x24q-crmv.json index 58ef1671835..6f71ac18d5e 100644 --- a/advisories/unreviewed/2024/07/GHSA-9hx6-x24q-crmv/GHSA-9hx6-x24q-crmv.json +++ b/advisories/unreviewed/2024/07/GHSA-9hx6-x24q-crmv/GHSA-9hx6-x24q-crmv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9hx6-x24q-crmv", - "modified": "2024-07-16T21:30:51Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-07-16T21:30:51Z", "aliases": [ "CVE-2024-40535" ], "details": "Shenzhen Libituo Technology Co., Ltd LBT-T300-T400 v3.2 was discovered to contain a stack overflow via the apn_name_3g parameter in the config_3g_para function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-121" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-16T21:15:11Z" diff --git a/advisories/unreviewed/2024/07/GHSA-f437-v3vf-3c5h/GHSA-f437-v3vf-3c5h.json b/advisories/unreviewed/2024/07/GHSA-f437-v3vf-3c5h/GHSA-f437-v3vf-3c5h.json index fef4084c203..56ffbd7c741 100644 --- a/advisories/unreviewed/2024/07/GHSA-f437-v3vf-3c5h/GHSA-f437-v3vf-3c5h.json +++ b/advisories/unreviewed/2024/07/GHSA-f437-v3vf-3c5h/GHSA-f437-v3vf-3c5h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f437-v3vf-3c5h", - "modified": "2024-07-20T06:30:35Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-07-20T06:30:35Z", "aliases": [ "CVE-2024-40347" ], "details": "A reflected cross-site scripting (XSS) vulnerability in Hyland Alfresco Platform 23.2.1-r96 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the parameter htmlid.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-20T04:15:03Z" diff --git a/advisories/unreviewed/2024/07/GHSA-hhwq-g35f-6pwq/GHSA-hhwq-g35f-6pwq.json b/advisories/unreviewed/2024/07/GHSA-hhwq-g35f-6pwq/GHSA-hhwq-g35f-6pwq.json index cdea8200a68..237e0b1c61b 100644 --- a/advisories/unreviewed/2024/07/GHSA-hhwq-g35f-6pwq/GHSA-hhwq-g35f-6pwq.json +++ b/advisories/unreviewed/2024/07/GHSA-hhwq-g35f-6pwq/GHSA-hhwq-g35f-6pwq.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-hhwq-g35f-6pwq", - "modified": "2024-07-25T18:32:35Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-07-22T06:31:08Z", "aliases": [ "CVE-2024-41704" @@ -28,6 +28,10 @@ { "type": "WEB", "url": "https://github.com/danny-avila/LibreChat/discussions/3315#discussioncomment-10074284" + }, + { + "type": "WEB", + "url": "https://github.com/realestate-com-au/vulnerability-disclosures/blob/main/LibreChat/CVE-2024-41704.md" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json b/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json index 22bd1a2276b..67e8b028fbf 100644 --- a/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json +++ b/advisories/unreviewed/2024/07/GHSA-r8h6-cwxj-rv5j/GHSA-r8h6-cwxj-rv5j.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r8h6-cwxj-rv5j", - "modified": "2024-08-05T15:30:51Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-07-30T00:34:24Z", "aliases": [ "CVE-2024-3219" ], "details": "There is a MEDIUM severity vulnerability affecting CPython.\n\nThe\n “socket” module provides a pure-Python fallback to the \nsocket.socketpair() function for platforms that don’t support AF_UNIX, \nsuch as Windows. This pure-Python implementation uses AF_INET or \nAF_INET6 to create a local connected pair of sockets. The connection \nbetween the two sockets was not verified before passing the two sockets \nback to the user, which leaves the server socket vulnerable to a \nconnection race from a malicious local peer.\n\nPlatforms that support AF_UNIX such as Linux and macOS are not affected by this vulnerability. Versions prior to CPython 3.5 are not affected due to the vulnerable API not being included.", "severity": [ - + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } ], "affected": [ @@ -91,7 +94,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-29T22:15:04Z" diff --git a/advisories/unreviewed/2024/07/GHSA-rg6c-frmf-w953/GHSA-rg6c-frmf-w953.json b/advisories/unreviewed/2024/07/GHSA-rg6c-frmf-w953/GHSA-rg6c-frmf-w953.json index f39bfcef3ea..39be123413b 100644 --- a/advisories/unreviewed/2024/07/GHSA-rg6c-frmf-w953/GHSA-rg6c-frmf-w953.json +++ b/advisories/unreviewed/2024/07/GHSA-rg6c-frmf-w953/GHSA-rg6c-frmf-w953.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-rg6c-frmf-w953", - "modified": "2024-07-25T18:32:35Z", + "modified": "2024-08-22T21:31:28Z", "published": "2024-07-22T06:31:08Z", "aliases": [ "CVE-2024-41703" @@ -28,6 +28,10 @@ { "type": "WEB", "url": "https://github.com/danny-avila/LibreChat/discussions/3315#discussioncomment-10074284" + }, + { + "type": "WEB", + "url": "https://github.com/realestate-com-au/vulnerability-disclosures/blob/main/LibreChat/CVE-2024-41703.md" } ], "database_specific": { diff --git a/advisories/unreviewed/2024/08/GHSA-27fp-c3m4-phwv/GHSA-27fp-c3m4-phwv.json b/advisories/unreviewed/2024/08/GHSA-27fp-c3m4-phwv/GHSA-27fp-c3m4-phwv.json new file mode 100644 index 00000000000..0c10b6e98c6 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-27fp-c3m4-phwv/GHSA-27fp-c3m4-phwv.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-27fp-c3m4-phwv", + "modified": "2024-08-22T21:31:30Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-8077" + ], + "details": "A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been classified as critical. This affects the function setTracerouteCfg. The manipulation leads to os command injection. It is possible to initiate the attack remotely. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8077" + }, + { + "type": "WEB", + "url": "https://github.com/hawkteam404/RnD_Public/blob/main/TOTOLink_AC1200_T8_OsCmdI_BOF.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.275559" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.275559" + }, + { + "type": "WEB", + "url": "https://www.totolink.net" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-2862-5xjv-8phr/GHSA-2862-5xjv-8phr.json b/advisories/unreviewed/2024/08/GHSA-2862-5xjv-8phr/GHSA-2862-5xjv-8phr.json index c4ff4d8dee1..9771680cd4c 100644 --- a/advisories/unreviewed/2024/08/GHSA-2862-5xjv-8phr/GHSA-2862-5xjv-8phr.json +++ b/advisories/unreviewed/2024/08/GHSA-2862-5xjv-8phr/GHSA-2862-5xjv-8phr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2862-5xjv-8phr", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48941" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nice: fix concurrent reset and removal of VFs\n\nCommit c503e63200c6 (\"ice: Stop processing VF messages during teardown\")\nintroduced a driver state flag, ICE_VF_DEINIT_IN_PROGRESS, which is\nintended to prevent some issues with concurrently handling messages from\nVFs while tearing down the VFs.\n\nThis change was motivated by crashes caused while tearing down and\nbringing up VFs in rapid succession.\n\nIt turns out that the fix actually introduces issues with the VF driver\ncaused because the PF no longer responds to any messages sent by the VF\nduring its .remove routine. This results in the VF potentially removing\nits DMA memory before the PF has shut down the device queues.\n\nAdditionally, the fix doesn't actually resolve concurrency issues within\nthe ice driver. It is possible for a VF to initiate a reset just prior\nto the ice driver removing VFs. This can result in the remove task\nconcurrently operating while the VF is being reset. This results in\nsimilar memory corruption and panics purportedly fixed by that commit.\n\nFix this concurrency at its root by protecting both the reset and\nremoval flows using the existing VF cfg_lock. This ensures that we\ncannot remove the VF while any outstanding critical tasks such as a\nvirtchnl message or a reset are occurring.\n\nThis locking change also fixes the root cause originally fixed by commit\nc503e63200c6 (\"ice: Stop processing VF messages during teardown\"), so we\ncan simply revert it.\n\nNote that I kept these two changes together because simply reverting the\noriginal commit alone would leave the driver vulnerable to worse race\nconditions.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-362" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:17Z" diff --git a/advisories/unreviewed/2024/08/GHSA-32r3-gj72-h3p2/GHSA-32r3-gj72-h3p2.json b/advisories/unreviewed/2024/08/GHSA-32r3-gj72-h3p2/GHSA-32r3-gj72-h3p2.json new file mode 100644 index 00000000000..6f6ae742799 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-32r3-gj72-h3p2/GHSA-32r3-gj72-h3p2.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-32r3-gj72-h3p2", + "modified": "2024-08-22T21:31:30Z", + "published": "2024-08-22T21:31:30Z", + "aliases": [ + "CVE-2024-8080" + ], + "details": "A vulnerability classified as critical has been found in SourceCodester Online Health Care System 1.0. Affected is an unknown function of the file search.php. The manipulation of the argument f_name with the input 1%' or 1=1 ) UNION SELECT 1,2,3,4,5,database(),7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23# as part of string leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8080" + }, + { + "type": "WEB", + "url": "https://github.com/shang159/sqli-vul/blob/main/sql2.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.275562" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.275562" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.395465" + }, + { + "type": "WEB", + "url": "https://www.sourcecodester.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:18Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-33fw-34vg-hgjh/GHSA-33fw-34vg-hgjh.json b/advisories/unreviewed/2024/08/GHSA-33fw-34vg-hgjh/GHSA-33fw-34vg-hgjh.json index 28609e4facb..0c7500bc077 100644 --- a/advisories/unreviewed/2024/08/GHSA-33fw-34vg-hgjh/GHSA-33fw-34vg-hgjh.json +++ b/advisories/unreviewed/2024/08/GHSA-33fw-34vg-hgjh/GHSA-33fw-34vg-hgjh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-33fw-34vg-hgjh", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48938" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nCDC-NCM: avoid overflow in sanity checking\n\nA broken device may give an extreme offset like 0xFFF0\nand a reasonable length for a fragment. In the sanity\ncheck as formulated now, this will create an integer\noverflow, defeating the sanity check. Both offset\nand offset + len need to be checked in such a manner\nthat no overflow can occur.\nAnd those quantities should be unsigned.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-190" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:17Z" diff --git a/advisories/unreviewed/2024/08/GHSA-36c7-h45p-9hch/GHSA-36c7-h45p-9hch.json b/advisories/unreviewed/2024/08/GHSA-36c7-h45p-9hch/GHSA-36c7-h45p-9hch.json index 233a22acd78..a5cc904caa1 100644 --- a/advisories/unreviewed/2024/08/GHSA-36c7-h45p-9hch/GHSA-36c7-h45p-9hch.json +++ b/advisories/unreviewed/2024/08/GHSA-36c7-h45p-9hch/GHSA-36c7-h45p-9hch.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-36c7-h45p-9hch", - "modified": "2024-08-22T15:31:19Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T15:31:19Z", "aliases": [ "CVE-2024-36443" ], "details": "Swissphone DiCal-RED 4009 devices allow a remote attacker to gain read access to almost the whole file system via anonymous FTP.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T14:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-4wrc-8xjh-v948/GHSA-4wrc-8xjh-v948.json b/advisories/unreviewed/2024/08/GHSA-4wrc-8xjh-v948/GHSA-4wrc-8xjh-v948.json index 71e4c3bea3d..fc1b5d35bcb 100644 --- a/advisories/unreviewed/2024/08/GHSA-4wrc-8xjh-v948/GHSA-4wrc-8xjh-v948.json +++ b/advisories/unreviewed/2024/08/GHSA-4wrc-8xjh-v948/GHSA-4wrc-8xjh-v948.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4wrc-8xjh-v948", - "modified": "2024-08-22T00:31:02Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-21T18:31:28Z", "aliases": [ "CVE-2023-29929" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29929" }, + { + "type": "WEB", + "url": "https://github.com/YSaxon/CVE-2023-29929" + }, { "type": "WEB", "url": "http://kemptechnologies.com" diff --git a/advisories/unreviewed/2024/08/GHSA-5pvf-fc2q-jq4q/GHSA-5pvf-fc2q-jq4q.json b/advisories/unreviewed/2024/08/GHSA-5pvf-fc2q-jq4q/GHSA-5pvf-fc2q-jq4q.json new file mode 100644 index 00000000000..974642cc345 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-5pvf-fc2q-jq4q/GHSA-5pvf-fc2q-jq4q.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5pvf-fc2q-jq4q", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-42763" + ], + "details": "A Reflected Cross Site Scripting (XSS) vulnerability was found in the \"/schedule.php\" page of the Kashipara Bus Ticket Reservation System v1.0, which allows remote attackers to execute arbitrary code via the \"bookingdate\" parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42763" + }, + { + "type": "WEB", + "url": "https://github.com/takekaramey/CVE_Writeup/blob/main/Kashipara/Bus%20Ticket%20Reservation%20System%20v1.0/Reflected%20XSS%20-%20Book%20Ticket.pdf" + }, + { + "type": "WEB", + "url": "https://www.kashipara.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-5qxq-95fv-whxm/GHSA-5qxq-95fv-whxm.json b/advisories/unreviewed/2024/08/GHSA-5qxq-95fv-whxm/GHSA-5qxq-95fv-whxm.json index 0bc45aef42b..55194cab315 100644 --- a/advisories/unreviewed/2024/08/GHSA-5qxq-95fv-whxm/GHSA-5qxq-95fv-whxm.json +++ b/advisories/unreviewed/2024/08/GHSA-5qxq-95fv-whxm/GHSA-5qxq-95fv-whxm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5qxq-95fv-whxm", - "modified": "2024-08-22T18:31:22Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:22Z", "aliases": [ "CVE-2024-45192" ], "details": "An issue was discovered in Matrix libolm (aka Olm) through 3.2.16. Cache-timing attacks can occur due to use of base64 when decoding group session keys. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-385" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T16:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-5wfc-h7w4-43mx/GHSA-5wfc-h7w4-43mx.json b/advisories/unreviewed/2024/08/GHSA-5wfc-h7w4-43mx/GHSA-5wfc-h7w4-43mx.json index dd98f07aff9..c7db9f27efb 100644 --- a/advisories/unreviewed/2024/08/GHSA-5wfc-h7w4-43mx/GHSA-5wfc-h7w4-43mx.json +++ b/advisories/unreviewed/2024/08/GHSA-5wfc-h7w4-43mx/GHSA-5wfc-h7w4-43mx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5wfc-h7w4-43mx", - "modified": "2024-08-22T18:31:22Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:22Z", "aliases": [ "CVE-2024-42774" ], "details": "An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to delete valid hotel room entries in the administrator section.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T17:15:06Z" diff --git a/advisories/unreviewed/2024/08/GHSA-72q5-rjgc-hrvj/GHSA-72q5-rjgc-hrvj.json b/advisories/unreviewed/2024/08/GHSA-72q5-rjgc-hrvj/GHSA-72q5-rjgc-hrvj.json index 119de6ebe8b..b249bad9c14 100644 --- a/advisories/unreviewed/2024/08/GHSA-72q5-rjgc-hrvj/GHSA-72q5-rjgc-hrvj.json +++ b/advisories/unreviewed/2024/08/GHSA-72q5-rjgc-hrvj/GHSA-72q5-rjgc-hrvj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-72q5-rjgc-hrvj", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2024-45167" ], "details": "An issue was discovered in UCI IDOL 2 (aka uciIDOL or IDOL2) through 2.12. Due to improper input validation, improper deserialization, and improper restriction of operations within the bounds of a memory buffer, IDOL2 is vulnerable to Denial-of-Service (DoS) attacks and possibly remote code execution. A certain XmlMessage document causes 100% CPU consumption.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:25Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7pcw-pq39-gmc3/GHSA-7pcw-pq39-gmc3.json b/advisories/unreviewed/2024/08/GHSA-7pcw-pq39-gmc3/GHSA-7pcw-pq39-gmc3.json index f7de25c011b..92ae5594bdd 100644 --- a/advisories/unreviewed/2024/08/GHSA-7pcw-pq39-gmc3/GHSA-7pcw-pq39-gmc3.json +++ b/advisories/unreviewed/2024/08/GHSA-7pcw-pq39-gmc3/GHSA-7pcw-pq39-gmc3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7pcw-pq39-gmc3", - "modified": "2024-08-22T18:31:22Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:22Z", "aliases": [ "CVE-2024-42775" ], "details": "An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room entries in the administrator section via the direct URL access.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T17:15:06Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7pwm-mqqh-jmmq/GHSA-7pwm-mqqh-jmmq.json b/advisories/unreviewed/2024/08/GHSA-7pwm-mqqh-jmmq/GHSA-7pwm-mqqh-jmmq.json index 16bed7fa237..4b8bf714a5d 100644 --- a/advisories/unreviewed/2024/08/GHSA-7pwm-mqqh-jmmq/GHSA-7pwm-mqqh-jmmq.json +++ b/advisories/unreviewed/2024/08/GHSA-7pwm-mqqh-jmmq/GHSA-7pwm-mqqh-jmmq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7pwm-mqqh-jmmq", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48937" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nio_uring: add a schedule point in io_add_buffers()\n\nLooping ~65535 times doing kmalloc() calls can trigger soft lockups,\nespecially with DEBUG features (like KASAN).\n\n[ 253.536212] watchdog: BUG: soft lockup - CPU#64 stuck for 26s! [b219417889:12575]\n[ 253.544433] Modules linked in: vfat fat i2c_mux_pca954x i2c_mux spidev cdc_acm xhci_pci xhci_hcd sha3_generic gq(O)\n[ 253.544451] CPU: 64 PID: 12575 Comm: b219417889 Tainted: G S O 5.17.0-smp-DEV #801\n[ 253.544457] RIP: 0010:kernel_text_address (./include/asm-generic/sections.h:192 ./include/linux/kallsyms.h:29 kernel/extable.c:67 kernel/extable.c:98)\n[ 253.544464] Code: 0f 93 c0 48 c7 c1 e0 63 d7 a4 48 39 cb 0f 92 c1 20 c1 0f b6 c1 5b 5d c3 90 0f 1f 44 00 00 55 48 89 e5 41 57 41 56 53 48 89 fb <48> c7 c0 00 00 80 a0 41 be 01 00 00 00 48 39 c7 72 0c 48 c7 c0 40\n[ 253.544468] RSP: 0018:ffff8882d8baf4c0 EFLAGS: 00000246\n[ 253.544471] RAX: 1ffff1105b175e00 RBX: ffffffffa13ef09a RCX: 00000000a13ef001\n[ 253.544474] RDX: ffffffffa13ef09a RSI: ffff8882d8baf558 RDI: ffffffffa13ef09a\n[ 253.544476] RBP: ffff8882d8baf4d8 R08: ffff8882d8baf5e0 R09: 0000000000000004\n[ 253.544479] R10: ffff8882d8baf5e8 R11: ffffffffa0d59a50 R12: ffff8882eab20380\n[ 253.544481] R13: ffffffffa0d59a50 R14: dffffc0000000000 R15: 1ffff1105b175eb0\n[ 253.544483] FS: 00000000016d3380(0000) GS:ffff88af48c00000(0000) knlGS:0000000000000000\n[ 253.544486] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 253.544488] CR2: 00000000004af0f0 CR3: 00000002eabfa004 CR4: 00000000003706e0\n[ 253.544491] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[ 253.544492] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[ 253.544494] Call Trace:\n[ 253.544496] \n[ 253.544498] ? io_queue_sqe (fs/io_uring.c:7143)\n[ 253.544505] __kernel_text_address (kernel/extable.c:78)\n[ 253.544508] unwind_get_return_address (arch/x86/kernel/unwind_frame.c:19)\n[ 253.544514] arch_stack_walk (arch/x86/kernel/stacktrace.c:27)\n[ 253.544517] ? io_queue_sqe (fs/io_uring.c:7143)\n[ 253.544521] stack_trace_save (kernel/stacktrace.c:123)\n[ 253.544527] ____kasan_kmalloc (mm/kasan/common.c:39 mm/kasan/common.c:45 mm/kasan/common.c:436 mm/kasan/common.c:515)\n[ 253.544531] ? ____kasan_kmalloc (mm/kasan/common.c:39 mm/kasan/common.c:45 mm/kasan/common.c:436 mm/kasan/common.c:515)\n[ 253.544533] ? __kasan_kmalloc (mm/kasan/common.c:524)\n[ 253.544535] ? kmem_cache_alloc_trace (./include/linux/kasan.h:270 mm/slab.c:3567)\n[ 253.544541] ? io_issue_sqe (fs/io_uring.c:4556 fs/io_uring.c:4589 fs/io_uring.c:6828)\n[ 253.544544] ? __io_queue_sqe (fs/io_uring.c:?)\n[ 253.544551] __kasan_kmalloc (mm/kasan/common.c:524)\n[ 253.544553] kmem_cache_alloc_trace (./include/linux/kasan.h:270 mm/slab.c:3567)\n[ 253.544556] ? io_issue_sqe (fs/io_uring.c:4556 fs/io_uring.c:4589 fs/io_uring.c:6828)\n[ 253.544560] io_issue_sqe (fs/io_uring.c:4556 fs/io_uring.c:4589 fs/io_uring.c:6828)\n[ 253.544564] ? __kasan_slab_alloc (mm/kasan/common.c:45 mm/kasan/common.c:436 mm/kasan/common.c:469)\n[ 253.544567] ? __kasan_slab_alloc (mm/kasan/common.c:39 mm/kasan/common.c:45 mm/kasan/common.c:436 mm/kasan/common.c:469)\n[ 253.544569] ? kmem_cache_alloc_bulk (mm/slab.h:732 mm/slab.c:3546)\n[ 253.544573] ? __io_alloc_req_refill (fs/io_uring.c:2078)\n[ 253.544578] ? io_submit_sqes (fs/io_uring.c:7441)\n[ 253.544581] ? __se_sys_io_uring_enter (fs/io_uring.c:10154 fs/io_uring.c:10096)\n[ 253.544584] ? __x64_sys_io_uring_enter (fs/io_uring.c:10096)\n[ 253.544587] ? do_syscall_64 (arch/x86/entry/common.c:50 arch/x86/entry/common.c:80)\n[ 253.544590] ? entry_SYSCALL_64_after_hwframe (??:?)\n[ 253.544596] __io_queue_sqe (fs/io_uring.c:?)\n[ 253.544600] io_queue_sqe (fs/io_uring.c:7143)\n[ 253.544603] io_submit_sqe (fs/io_uring.c:?)\n[ 253.544608] io_submit_sqes (fs/io_uring.c:?)\n[ 253.544612] __se_sys_io_uring_enter (fs/io_uring.c:10154 fs/io_uri\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-667" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:17Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7r79-ppgg-4h8m/GHSA-7r79-ppgg-4h8m.json b/advisories/unreviewed/2024/08/GHSA-7r79-ppgg-4h8m/GHSA-7r79-ppgg-4h8m.json index aa12e620fc3..12fc5fa03fb 100644 --- a/advisories/unreviewed/2024/08/GHSA-7r79-ppgg-4h8m/GHSA-7r79-ppgg-4h8m.json +++ b/advisories/unreviewed/2024/08/GHSA-7r79-ppgg-4h8m/GHSA-7r79-ppgg-4h8m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7r79-ppgg-4h8m", - "modified": "2024-08-22T15:31:19Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T15:31:19Z", "aliases": [ "CVE-2024-36440" ], "details": "An issue was discovered on Swissphone DiCal-RED 4009 devices. An attacker with access to the file /etc/deviceconfig may recover the administrative device password via password-cracking methods, because unsalted MD5 is used.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1393" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T15:15:15Z" diff --git a/advisories/unreviewed/2024/08/GHSA-7v24-gjqv-fwg7/GHSA-7v24-gjqv-fwg7.json b/advisories/unreviewed/2024/08/GHSA-7v24-gjqv-fwg7/GHSA-7v24-gjqv-fwg7.json new file mode 100644 index 00000000000..e43edccf663 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-7v24-gjqv-fwg7/GHSA-7v24-gjqv-fwg7.json @@ -0,0 +1,50 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7v24-gjqv-fwg7", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-39717" + ], + "details": "The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin. (Tenant level users do not have this privilege). The “Change Favicon” (Favorite Icon) option can be mis-used to upload a malicious file ending with .png extension to masquerade as image file. This is possible only after a user with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin has successfully authenticated and logged in. \n\nSeverity: HIGH\n \nExploitation Status:\n\nVersa Networks is aware of one confirmed customer reported instance where this vulnerability was exploited because the Firewall guidelines which were published in 2015 & 2017 were not implemented by that customer. This non-implementation resulted in the bad actor being able to exploit this vulnerability without using the GUI. In our testing (not exhaustive, as not all numerical versions of major browsers were tested) the malicious file does not get executed on the client. There are reports of others based on backbone telemetry observations of a 3rd party provider, however these are unconfirmed to date.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39717" + }, + { + "type": "WEB", + "url": "https://support.versa-networks.com/support/solutions/articles/23000024323-release-21-2-3" + }, + { + "type": "WEB", + "url": "https://support.versa-networks.com/support/solutions/articles/23000025680-release-22-1-2" + }, + { + "type": "WEB", + "url": "https://support.versa-networks.com/support/solutions/articles/23000026033-release-22-1-3" + }, + { + "type": "WEB", + "url": "https://support.versa-networks.com/support/solutions/articles/23000026724-versa-director-ha-port-exploit-discovery-remediation" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T19:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-8p8r-qjjp-c996/GHSA-8p8r-qjjp-c996.json b/advisories/unreviewed/2024/08/GHSA-8p8r-qjjp-c996/GHSA-8p8r-qjjp-c996.json index e751008d0e8..ae570b6c804 100644 --- a/advisories/unreviewed/2024/08/GHSA-8p8r-qjjp-c996/GHSA-8p8r-qjjp-c996.json +++ b/advisories/unreviewed/2024/08/GHSA-8p8r-qjjp-c996/GHSA-8p8r-qjjp-c996.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8p8r-qjjp-c996", - "modified": "2024-08-22T18:31:22Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:22Z", "aliases": [ "CVE-2024-42772" ], "details": "An Incorrect Access Control vulnerability was found in /admin/rooms.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to view valid hotel room entries in administrator section.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T17:15:06Z" diff --git a/advisories/unreviewed/2024/08/GHSA-8v9c-gh64-hq64/GHSA-8v9c-gh64-hq64.json b/advisories/unreviewed/2024/08/GHSA-8v9c-gh64-hq64/GHSA-8v9c-gh64-hq64.json index 443178d27f5..e2dc86d2428 100644 --- a/advisories/unreviewed/2024/08/GHSA-8v9c-gh64-hq64/GHSA-8v9c-gh64-hq64.json +++ b/advisories/unreviewed/2024/08/GHSA-8v9c-gh64-hq64/GHSA-8v9c-gh64-hq64.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8v9c-gh64-hq64", - "modified": "2024-08-22T18:31:23Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:23Z", "aliases": [ "CVE-2024-42767" ], "details": "Kashipara Hotel Management System v1.0 is vulnerable to Unrestricted File Upload RCE via /admin/add_room_controller.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T18:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-9347-hgff-8mjv/GHSA-9347-hgff-8mjv.json b/advisories/unreviewed/2024/08/GHSA-9347-hgff-8mjv/GHSA-9347-hgff-8mjv.json new file mode 100644 index 00000000000..285a37d2521 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-9347-hgff-8mjv/GHSA-9347-hgff-8mjv.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9347-hgff-8mjv", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-39776" + ], + "details": "Avtec Outpost stores sensitive information in an insecure location without proper access controls in place.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-39776" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-235-04" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-219" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-94m4-2jpq-9j4w/GHSA-94m4-2jpq-9j4w.json b/advisories/unreviewed/2024/08/GHSA-94m4-2jpq-9j4w/GHSA-94m4-2jpq-9j4w.json index 530e58f7741..d16eda19aec 100644 --- a/advisories/unreviewed/2024/08/GHSA-94m4-2jpq-9j4w/GHSA-94m4-2jpq-9j4w.json +++ b/advisories/unreviewed/2024/08/GHSA-94m4-2jpq-9j4w/GHSA-94m4-2jpq-9j4w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-94m4-2jpq-9j4w", - "modified": "2024-08-21T18:31:28Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-21T18:31:28Z", "aliases": [ "CVE-2024-42780" ], "details": "An Unrestricted file upload vulnerability was found in \"/music/ajax.php?action=save_genre\" in Kashipara Music Management System v1.0. This allows attackers to execute arbitrary code via uploading a crafted PHP file.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-434" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-21T18:15:10Z" diff --git a/advisories/unreviewed/2024/08/GHSA-96g3-59vf-qvw4/GHSA-96g3-59vf-qvw4.json b/advisories/unreviewed/2024/08/GHSA-96g3-59vf-qvw4/GHSA-96g3-59vf-qvw4.json index c26e064d0fc..f046c7d23a3 100644 --- a/advisories/unreviewed/2024/08/GHSA-96g3-59vf-qvw4/GHSA-96g3-59vf-qvw4.json +++ b/advisories/unreviewed/2024/08/GHSA-96g3-59vf-qvw4/GHSA-96g3-59vf-qvw4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-96g3-59vf-qvw4", - "modified": "2024-08-22T18:31:21Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:21Z", "aliases": [ "CVE-2024-42771" ], "details": "A Stored Cross Site Scripting (XSS) vulnerability was found in \" /admin/edit_room_controller.php\" of the Kashipara Hotel Management System v1.0, which allows remote attackers to execute arbitrary code via \"room_name\" parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T16:15:09Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cfrq-8q2f-rp46/GHSA-cfrq-8q2f-rp46.json b/advisories/unreviewed/2024/08/GHSA-cfrq-8q2f-rp46/GHSA-cfrq-8q2f-rp46.json index 6c8487a7280..bc4457334f9 100644 --- a/advisories/unreviewed/2024/08/GHSA-cfrq-8q2f-rp46/GHSA-cfrq-8q2f-rp46.json +++ b/advisories/unreviewed/2024/08/GHSA-cfrq-8q2f-rp46/GHSA-cfrq-8q2f-rp46.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cfrq-8q2f-rp46", - "modified": "2024-08-22T18:31:22Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:22Z", "aliases": [ "CVE-2024-42768" ], "details": "A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Hotel Management System v1.0 via /admin/delete_room.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T17:15:05Z" diff --git a/advisories/unreviewed/2024/08/GHSA-cxc7-qrmh-3wx5/GHSA-cxc7-qrmh-3wx5.json b/advisories/unreviewed/2024/08/GHSA-cxc7-qrmh-3wx5/GHSA-cxc7-qrmh-3wx5.json index 0b7c1570b65..b478893f7be 100644 --- a/advisories/unreviewed/2024/08/GHSA-cxc7-qrmh-3wx5/GHSA-cxc7-qrmh-3wx5.json +++ b/advisories/unreviewed/2024/08/GHSA-cxc7-qrmh-3wx5/GHSA-cxc7-qrmh-3wx5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-cxc7-qrmh-3wx5", - "modified": "2024-08-05T12:31:15Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-05T12:31:15Z", "aliases": [ "CVE-2024-40096" @@ -18,6 +18,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-40096" }, + { + "type": "WEB", + "url": "https://www.quokka.io/blog/critical-pii-exposure-in-who-caller-id-spam-block-app" + }, { "type": "WEB", "url": "https://www.quokka.io/critical-vulnerabilities-exploits-cve" diff --git a/advisories/unreviewed/2024/08/GHSA-f5pc-5jr4-25gx/GHSA-f5pc-5jr4-25gx.json b/advisories/unreviewed/2024/08/GHSA-f5pc-5jr4-25gx/GHSA-f5pc-5jr4-25gx.json new file mode 100644 index 00000000000..2054955572b --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-f5pc-5jr4-25gx/GHSA-f5pc-5jr4-25gx.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f5pc-5jr4-25gx", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-8076" + ], + "details": "A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical. Affected by this issue is the function setDiagnosisCfg. The manipulation leads to buffer overflow. The attack may be launched remotely. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8076" + }, + { + "type": "WEB", + "url": "https://github.com/hawkteam404/RnD_Public/blob/main/TOTOLink_AC1200_T8_OsCmdI_BOF.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.275558" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.275558" + }, + { + "type": "WEB", + "url": "https://www.totolink.net" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-fmrv-g3hm-j6pp/GHSA-fmrv-g3hm-j6pp.json b/advisories/unreviewed/2024/08/GHSA-fmrv-g3hm-j6pp/GHSA-fmrv-g3hm-j6pp.json new file mode 100644 index 00000000000..c861fe035e1 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-fmrv-g3hm-j6pp/GHSA-fmrv-g3hm-j6pp.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fmrv-g3hm-j6pp", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-42599" + ], + "details": "SeaCMS 13.0 has a remote code execution vulnerability. The reason for this vulnerability is that although admin_files.php imposes restrictions on edited files, attackers can still bypass these restrictions and write code, allowing authenticated attackers to exploit the vulnerability to execute arbitrary commands and gain system privileges.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42599" + }, + { + "type": "WEB", + "url": "https://gitee.com/fushuling/cve/blob/master/CVE-2024-42599.md" + }, + { + "type": "WEB", + "url": "https://gitee.com/fushuling/cve/blob/master/SeaCMS%20V13%20admin_files.php%20code%20injection.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-frr7-rgvg-v3p9/GHSA-frr7-rgvg-v3p9.json b/advisories/unreviewed/2024/08/GHSA-frr7-rgvg-v3p9/GHSA-frr7-rgvg-v3p9.json index b1696e06b4f..c618fab303c 100644 --- a/advisories/unreviewed/2024/08/GHSA-frr7-rgvg-v3p9/GHSA-frr7-rgvg-v3p9.json +++ b/advisories/unreviewed/2024/08/GHSA-frr7-rgvg-v3p9/GHSA-frr7-rgvg-v3p9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-frr7-rgvg-v3p9", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48936" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ngso: do not skip outer ip header in case of ipip and net_failover\n\nWe encounter a tcp drop issue in our cloud environment. Packet GROed in\nhost forwards to a VM virtio_net nic with net_failover enabled. VM acts\nas a IPVS LB with ipip encapsulation. The full path like:\nhost gro -> vm virtio_net rx -> net_failover rx -> ipvs fullnat\n -> ipip encap -> net_failover tx -> virtio_net tx\n\nWhen net_failover transmits a ipip pkt (gso_type = 0x0103, which means\nSKB_GSO_TCPV4, SKB_GSO_DODGY and SKB_GSO_IPXIP4), there is no gso\ndid because it supports TSO and GSO_IPXIP4. But network_header points to\ninner ip header.\n\nCall Trace:\n tcp4_gso_segment ------> return NULL\n inet_gso_segment ------> inner iph, network_header points to\n ipip_gso_segment\n inet_gso_segment ------> outer iph\n skb_mac_gso_segment\n\nAfterwards virtio_net transmits the pkt, only inner ip header is modified.\nAnd the outer one just keeps unchanged. The pkt will be dropped in remote\nhost.\n\nCall Trace:\n inet_gso_segment ------> inner iph, outer iph is skipped\n skb_mac_gso_segment\n __skb_gso_segment\n validate_xmit_skb\n validate_xmit_skb_list\n sch_direct_xmit\n __qdisc_run\n __dev_queue_xmit ------> virtio_net\n dev_hard_start_xmit\n __dev_queue_xmit ------> net_failover\n ip_finish_output2\n ip_output\n iptunnel_xmit\n ip_tunnel_xmit\n ipip_tunnel_xmit ------> ipip\n dev_hard_start_xmit\n __dev_queue_xmit\n ip_finish_output2\n ip_output\n ip_forward\n ip_rcv\n __netif_receive_skb_one_core\n netif_receive_skb_internal\n napi_gro_receive\n receive_buf\n virtnet_poll\n net_rx_action\n\nThe root cause of this issue is specific with the rare combination of\nSKB_GSO_DODGY and a tunnel device that adds an SKB_GSO_ tunnel option.\nSKB_GSO_DODGY is set from external virtio_net. We need to reset network\nheader when callbacks.gso_segment() returns NULL.\n\nThis patch also includes ipv6_gso_segment(), considering SIT, etc.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -55,7 +58,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:16Z" diff --git a/advisories/unreviewed/2024/08/GHSA-fxc2-8m62-m85x/GHSA-fxc2-8m62-m85x.json b/advisories/unreviewed/2024/08/GHSA-fxc2-8m62-m85x/GHSA-fxc2-8m62-m85x.json new file mode 100644 index 00000000000..8fd4ca4f8a2 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-fxc2-8m62-m85x/GHSA-fxc2-8m62-m85x.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fxc2-8m62-m85x", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-45201" + ], + "details": "An issue was discovered in llama_index before 0.10.38. download/integration.py includes an exec call for import {cls_name}.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-45201" + }, + { + "type": "WEB", + "url": "https://github.com/run-llama/llama_index/pull/13523" + }, + { + "type": "WEB", + "url": "https://github.com/run-llama/llama_index/compare/v0.10.37...v0.10.38" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-g72g-w36f-8rf4/GHSA-g72g-w36f-8rf4.json b/advisories/unreviewed/2024/08/GHSA-g72g-w36f-8rf4/GHSA-g72g-w36f-8rf4.json index 92b90e81312..4a2dcf4ae4f 100644 --- a/advisories/unreviewed/2024/08/GHSA-g72g-w36f-8rf4/GHSA-g72g-w36f-8rf4.json +++ b/advisories/unreviewed/2024/08/GHSA-g72g-w36f-8rf4/GHSA-g72g-w36f-8rf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g72g-w36f-8rf4", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48934" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac()\n\nida_simple_get() returns an id between min (0) and max (NFP_MAX_MAC_INDEX)\ninclusive.\nSo NFP_MAX_MAC_INDEX (0xff) is a valid id.\n\nIn order for the error handling path to work correctly, the 'invalid'\nvalue for 'ida_idx' should not be in the 0..NFP_MAX_MAC_INDEX range,\ninclusive.\n\nSo set it to -1.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -41,9 +44,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-401" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:16Z" diff --git a/advisories/unreviewed/2024/08/GHSA-hwq5-4f7m-7wwg/GHSA-hwq5-4f7m-7wwg.json b/advisories/unreviewed/2024/08/GHSA-hwq5-4f7m-7wwg/GHSA-hwq5-4f7m-7wwg.json new file mode 100644 index 00000000000..6c4ff82afd3 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-hwq5-4f7m-7wwg/GHSA-hwq5-4f7m-7wwg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hwq5-4f7m-7wwg", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2023-7260" + ], + "details": "Path Traversal vulnerability discovered in OpenText™ CX-E Voice, \n\naffecting all version through 22.4. The vulnerability could allow arbitrarily access files on the system.", + "severity": [ + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:L/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:Y/R:A/V:C/RE:L/U:Amber" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7260" + }, + { + "type": "WEB", + "url": "https://support.opentext.com/csm?id=kb_article_view&sysparm_article=KB0823114" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:16Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-j9pj-4vv7-cpj9/GHSA-j9pj-4vv7-cpj9.json b/advisories/unreviewed/2024/08/GHSA-j9pj-4vv7-cpj9/GHSA-j9pj-4vv7-cpj9.json new file mode 100644 index 00000000000..be72808c76a --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-j9pj-4vv7-cpj9/GHSA-j9pj-4vv7-cpj9.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j9pj-4vv7-cpj9", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-42762" + ], + "details": "A Stored Cross Site Scripting (XSS) vulnerability was found in \"/history.php\" in Kashipara Bus Ticket Reservation System v1.0, which allows remote attackers to execute arbitrary code via the Name, Phone, and Email parameter fields.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42762" + }, + { + "type": "WEB", + "url": "https://github.com/takekaramey/CVE_Writeup/blob/main/Kashipara/Bus%20Ticket%20Reservation%20System%20v1.0/Stored%20XSS%20-%20Customer%20Booking%20List.pdf" + }, + { + "type": "WEB", + "url": "https://www.kashipara.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-m59m-755q-5h2m/GHSA-m59m-755q-5h2m.json b/advisories/unreviewed/2024/08/GHSA-m59m-755q-5h2m/GHSA-m59m-755q-5h2m.json new file mode 100644 index 00000000000..d03667e0b5a --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-m59m-755q-5h2m/GHSA-m59m-755q-5h2m.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m59m-755q-5h2m", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-42761" + ], + "details": "A Stored Cross Site Scripting (XSS) vulnerability was found in \"/admin_schedule.php\" in Kashipara Bus Ticket Reservation System v1.0, which allows remote attackers to execute arbitrary code via scheduleDurationPHP parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42761" + }, + { + "type": "WEB", + "url": "https://github.com/takekaramey/CVE_Writeup/blob/main/Kashipara/Bus%20Ticket%20Reservation%20System%20v1.0/Stored%20XSS%20-%20Bus%20Schedule%20List.pdf" + }, + { + "type": "WEB", + "url": "https://www.kashipara.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-mchm-hhh8-w57p/GHSA-mchm-hhh8-w57p.json b/advisories/unreviewed/2024/08/GHSA-mchm-hhh8-w57p/GHSA-mchm-hhh8-w57p.json index 5355f15a6fe..c1d67e0a751 100644 --- a/advisories/unreviewed/2024/08/GHSA-mchm-hhh8-w57p/GHSA-mchm-hhh8-w57p.json +++ b/advisories/unreviewed/2024/08/GHSA-mchm-hhh8-w57p/GHSA-mchm-hhh8-w57p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mchm-hhh8-w57p", - "modified": "2024-08-22T15:31:19Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T15:31:19Z", "aliases": [ "CVE-2024-36439" ], "details": "Swissphone DiCal-RED 4009 devices allow a remote attacker to gain access to the administrative web interface via the device password's hash value, without knowing the actual device password.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-269" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T15:15:15Z" diff --git a/advisories/unreviewed/2024/08/GHSA-mpg7-9mg3-3974/GHSA-mpg7-9mg3-3974.json b/advisories/unreviewed/2024/08/GHSA-mpg7-9mg3-3974/GHSA-mpg7-9mg3-3974.json index ba292e788e5..760406fada0 100644 --- a/advisories/unreviewed/2024/08/GHSA-mpg7-9mg3-3974/GHSA-mpg7-9mg3-3974.json +++ b/advisories/unreviewed/2024/08/GHSA-mpg7-9mg3-3974/GHSA-mpg7-9mg3-3974.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mpg7-9mg3-3974", - "modified": "2024-08-22T18:31:21Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:21Z", "aliases": [ "CVE-2024-42769" ], "details": "A Reflected Cross Site Scripting (XSS) vulnerability was found in \"/core/signup_user.php \" of Kashipara Hotel Management System v1.0, which allows remote attackers to execute arbitrary code via \"user_fname\" and \"user_lname\" parameters.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T16:15:09Z" diff --git a/advisories/unreviewed/2024/08/GHSA-mx8m-2wh5-m3hh/GHSA-mx8m-2wh5-m3hh.json b/advisories/unreviewed/2024/08/GHSA-mx8m-2wh5-m3hh/GHSA-mx8m-2wh5-m3hh.json index 0d8d690d1f8..d0033eacd23 100644 --- a/advisories/unreviewed/2024/08/GHSA-mx8m-2wh5-m3hh/GHSA-mx8m-2wh5-m3hh.json +++ b/advisories/unreviewed/2024/08/GHSA-mx8m-2wh5-m3hh/GHSA-mx8m-2wh5-m3hh.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mx8m-2wh5-m3hh", - "modified": "2024-08-22T18:31:21Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:21Z", "aliases": [ "CVE-2024-36441" ], "details": "Swissphone DiCal-RED 4009 devices allow an unauthenticated attacker use a port-2101 TCP connection to gain access to operation messages that are received by the device.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T16:15:08Z" diff --git a/advisories/unreviewed/2024/08/GHSA-pmwj-r76w-m8f7/GHSA-pmwj-r76w-m8f7.json b/advisories/unreviewed/2024/08/GHSA-pmwj-r76w-m8f7/GHSA-pmwj-r76w-m8f7.json index 459f89443bb..89975857a35 100644 --- a/advisories/unreviewed/2024/08/GHSA-pmwj-r76w-m8f7/GHSA-pmwj-r76w-m8f7.json +++ b/advisories/unreviewed/2024/08/GHSA-pmwj-r76w-m8f7/GHSA-pmwj-r76w-m8f7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pmwj-r76w-m8f7", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48939" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Add schedule points in batch ops\n\nsyzbot reported various soft lockups caused by bpf batch operations.\n\n INFO: task kworker/1:1:27 blocked for more than 140 seconds.\n INFO: task hung in rcu_barrier\n\nNothing prevents batch ops to process huge amount of data,\nwe need to add schedule points in them.\n\nNote that maybe_wait_bpf_programs(map) calls from\ngeneric_map_delete_batch() can be factorized by moving\nthe call after the loop.\n\nThis will be done later in -next tree once we get this fix merged,\nunless there is strong opinion doing this optimization sooner.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-834" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:17Z" diff --git a/advisories/unreviewed/2024/08/GHSA-q4pc-gw9h-vxg4/GHSA-q4pc-gw9h-vxg4.json b/advisories/unreviewed/2024/08/GHSA-q4pc-gw9h-vxg4/GHSA-q4pc-gw9h-vxg4.json index 6e4e2a93528..3d5f0d8bf20 100644 --- a/advisories/unreviewed/2024/08/GHSA-q4pc-gw9h-vxg4/GHSA-q4pc-gw9h-vxg4.json +++ b/advisories/unreviewed/2024/08/GHSA-q4pc-gw9h-vxg4/GHSA-q4pc-gw9h-vxg4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q4pc-gw9h-vxg4", - "modified": "2024-08-22T18:31:22Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T18:31:22Z", "aliases": [ "CVE-2024-42776" ], "details": "Kashipara Hotel Management System v1.0 is vulnerable to Incorrect Access Control via /admin/users.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-284" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T17:15:06Z" diff --git a/advisories/unreviewed/2024/08/GHSA-q98g-hxg3-268c/GHSA-q98g-hxg3-268c.json b/advisories/unreviewed/2024/08/GHSA-q98g-hxg3-268c/GHSA-q98g-hxg3-268c.json new file mode 100644 index 00000000000..33586a7753d --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-q98g-hxg3-268c/GHSA-q98g-hxg3-268c.json @@ -0,0 +1,62 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q98g-hxg3-268c", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-8088" + ], + "details": "There is a HIGH severity vulnerability affecting the CPython \"zipfile\"\nmodule.\n\n\n\n\n\nWhen iterating over names of entries in a zip archive (for example, methods\nof \"zipfile.ZipFile\" like \"namelist()\", \"iterdir()\", \"extractall()\", etc)\nthe process can be put into an infinite loop with a maliciously crafted\nzip archive. This defect applies when reading only metadata or extracting\nthe contents of the zip archive. Programs that are not handling\nuser-controlled zip archives are not affected.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:U/V:X/RE:L/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8088" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/issues/122905" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/pull/122906" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/795f2597a4be988e2bb19b69ff9958e981cb894e" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/8c7348939d8a3ecd79d630075f6be1b0c5b41f64" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/dcc5182f27c1500006a1ef78e10613bb45788dea" + }, + { + "type": "WEB", + "url": "https://mail.python.org/archives/list/security-announce@python.org/thread/GNFCKVI4TCATKQLALJ5SN4L4CSPSMILU" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-835" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T19:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-qchq-46j8-vq4j/GHSA-qchq-46j8-vq4j.json b/advisories/unreviewed/2024/08/GHSA-qchq-46j8-vq4j/GHSA-qchq-46j8-vq4j.json new file mode 100644 index 00000000000..8d8abda1879 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-qchq-46j8-vq4j/GHSA-qchq-46j8-vq4j.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qchq-46j8-vq4j", + "modified": "2024-08-22T21:31:30Z", + "published": "2024-08-22T21:31:30Z", + "aliases": [ + "CVE-2024-8078" + ], + "details": "A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been declared as critical. This vulnerability affects the function setTracerouteCfg. The manipulation leads to buffer overflow. The attack can be initiated remotely. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8078" + }, + { + "type": "WEB", + "url": "https://github.com/hawkteam404/RnD_Public/blob/main/TOTOLink_AC1200_T8_OsCmdI_BOF.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.275560" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.275560" + }, + { + "type": "WEB", + "url": "https://www.totolink.net" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-qgv4-x6mv-vh78/GHSA-qgv4-x6mv-vh78.json b/advisories/unreviewed/2024/08/GHSA-qgv4-x6mv-vh78/GHSA-qgv4-x6mv-vh78.json index daf64502f7e..3d305774a1f 100644 --- a/advisories/unreviewed/2024/08/GHSA-qgv4-x6mv-vh78/GHSA-qgv4-x6mv-vh78.json +++ b/advisories/unreviewed/2024/08/GHSA-qgv4-x6mv-vh78/GHSA-qgv4-x6mv-vh78.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qgv4-x6mv-vh78", - "modified": "2024-08-22T15:31:19Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T15:31:19Z", "aliases": [ "CVE-2024-36445" ], "details": "Swissphone DiCal-RED 4009 devices allow a remote attacker to gain a root shell via TELNET without authentication.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-306" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T15:15:16Z" diff --git a/advisories/unreviewed/2024/08/GHSA-r7cq-wqc6-6gf2/GHSA-r7cq-wqc6-6gf2.json b/advisories/unreviewed/2024/08/GHSA-r7cq-wqc6-6gf2/GHSA-r7cq-wqc6-6gf2.json new file mode 100644 index 00000000000..ab87d2b5d0c --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-r7cq-wqc6-6gf2/GHSA-r7cq-wqc6-6gf2.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r7cq-wqc6-6gf2", + "modified": "2024-08-22T21:31:30Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-8075" + ], + "details": "A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228 and classified as critical. Affected by this vulnerability is the function setDiagnosisCfg. The manipulation leads to os command injection. The attack can be launched remotely. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8075" + }, + { + "type": "WEB", + "url": "https://github.com/hawkteam404/RnD_Public/blob/main/TOTOLink_AC1200_T8_OsCmdI_BOF.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.275557" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.275557" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.390929" + }, + { + "type": "WEB", + "url": "https://www.totolink.net" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-rc9p-g2q3-x488/GHSA-rc9p-g2q3-x488.json b/advisories/unreviewed/2024/08/GHSA-rc9p-g2q3-x488/GHSA-rc9p-g2q3-x488.json index 201fdac447b..600caa25b36 100644 --- a/advisories/unreviewed/2024/08/GHSA-rc9p-g2q3-x488/GHSA-rc9p-g2q3-x488.json +++ b/advisories/unreviewed/2024/08/GHSA-rc9p-g2q3-x488/GHSA-rc9p-g2q3-x488.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rc9p-g2q3-x488", - "modified": "2024-08-22T06:30:29Z", + "modified": "2024-08-22T21:31:29Z", "published": "2024-08-22T06:30:29Z", "aliases": [ "CVE-2022-48940" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nbpf: Fix crash due to incorrect copy_map_value\n\nWhen both bpf_spin_lock and bpf_timer are present in a BPF map value,\ncopy_map_value needs to skirt both objects when copying a value into and\nout of the map. However, the current code does not set both s_off and\nt_off in copy_map_value, which leads to a crash when e.g. bpf_spin_lock\nis placed in map value with bpf_timer, as bpf_map_update_elem call will\nbe able to overwrite the other timer object.\n\nWhen the issue is not fixed, an overwriting can produce the following\nsplat:\n\n[root@(none) bpf]# ./test_progs -t timer_crash\n[ 15.930339] bpf_testmod: loading out-of-tree module taints kernel.\n[ 16.037849] ==================================================================\n[ 16.038458] BUG: KASAN: user-memory-access in __pv_queued_spin_lock_slowpath+0x32b/0x520\n[ 16.038944] Write of size 8 at addr 0000000000043ec0 by task test_progs/325\n[ 16.039399]\n[ 16.039514] CPU: 0 PID: 325 Comm: test_progs Tainted: G OE 5.16.0+ #278\n[ 16.039983] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS ArchLinux 1.15.0-1 04/01/2014\n[ 16.040485] Call Trace:\n[ 16.040645] \n[ 16.040805] dump_stack_lvl+0x59/0x73\n[ 16.041069] ? __pv_queued_spin_lock_slowpath+0x32b/0x520\n[ 16.041427] kasan_report.cold+0x116/0x11b\n[ 16.041673] ? __pv_queued_spin_lock_slowpath+0x32b/0x520\n[ 16.042040] __pv_queued_spin_lock_slowpath+0x32b/0x520\n[ 16.042328] ? memcpy+0x39/0x60\n[ 16.042552] ? pv_hash+0xd0/0xd0\n[ 16.042785] ? lockdep_hardirqs_off+0x95/0xd0\n[ 16.043079] __bpf_spin_lock_irqsave+0xdf/0xf0\n[ 16.043366] ? bpf_get_current_comm+0x50/0x50\n[ 16.043608] ? jhash+0x11a/0x270\n[ 16.043848] bpf_timer_cancel+0x34/0xe0\n[ 16.044119] bpf_prog_c4ea1c0f7449940d_sys_enter+0x7c/0x81\n[ 16.044500] bpf_trampoline_6442477838_0+0x36/0x1000\n[ 16.044836] __x64_sys_nanosleep+0x5/0x140\n[ 16.045119] do_syscall_64+0x59/0x80\n[ 16.045377] ? lock_is_held_type+0xe4/0x140\n[ 16.045670] ? irqentry_exit_to_user_mode+0xa/0x40\n[ 16.046001] ? mark_held_locks+0x24/0x90\n[ 16.046287] ? asm_exc_page_fault+0x1e/0x30\n[ 16.046569] ? asm_exc_page_fault+0x8/0x30\n[ 16.046851] ? lockdep_hardirqs_on+0x7e/0x100\n[ 16.047137] entry_SYSCALL_64_after_hwframe+0x44/0xae\n[ 16.047405] RIP: 0033:0x7f9e4831718d\n[ 16.047602] Code: b4 0c 00 0f 05 eb a9 66 0f 1f 44 00 00 f3 0f 1e fa 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 <48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d b3 6c 0c 00 f7 d8 64 89 01 48\n[ 16.048764] RSP: 002b:00007fff488086b8 EFLAGS: 00000206 ORIG_RAX: 0000000000000023\n[ 16.049275] RAX: ffffffffffffffda RBX: 00007f9e48683740 RCX: 00007f9e4831718d\n[ 16.049747] RDX: 0000000000000000 RSI: 0000000000000000 RDI: 00007fff488086d0\n[ 16.050225] RBP: 00007fff488086f0 R08: 00007fff488085d7 R09: 00007f9e4cb594a0\n[ 16.050648] R10: 0000000000000000 R11: 0000000000000206 R12: 00007f9e484cde30\n[ 16.051124] R13: 0000000000000000 R14: 0000000000000000 R15: 0000000000000000\n[ 16.051608] \n[ 16.051762] ==================================================================", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-119" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-08-22T04:15:17Z" diff --git a/advisories/unreviewed/2024/08/GHSA-v4c3-qgm8-jh35/GHSA-v4c3-qgm8-jh35.json b/advisories/unreviewed/2024/08/GHSA-v4c3-qgm8-jh35/GHSA-v4c3-qgm8-jh35.json index 01cb8f18903..08121285c80 100644 --- a/advisories/unreviewed/2024/08/GHSA-v4c3-qgm8-jh35/GHSA-v4c3-qgm8-jh35.json +++ b/advisories/unreviewed/2024/08/GHSA-v4c3-qgm8-jh35/GHSA-v4c3-qgm8-jh35.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/08/GHSA-x6xx-q6w3-8m4c/GHSA-x6xx-q6w3-8m4c.json b/advisories/unreviewed/2024/08/GHSA-x6xx-q6w3-8m4c/GHSA-x6xx-q6w3-8m4c.json new file mode 100644 index 00000000000..8a8ed4ba487 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-x6xx-q6w3-8m4c/GHSA-x6xx-q6w3-8m4c.json @@ -0,0 +1,58 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x6xx-q6w3-8m4c", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-8079" + ], + "details": "A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.862_B20230228. It has been rated as critical. This issue affects the function exportOvpn. The manipulation leads to buffer overflow. The attack may be initiated remotely. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8079" + }, + { + "type": "WEB", + "url": "https://github.com/hawkteam404/RnD_Public/blob/main/TOTOLink_AC1200_T8_OsCmdI_BOF.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.275561" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.275561" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.390937" + }, + { + "type": "WEB", + "url": "https://www.totolink.net" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T21:15:17Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/08/GHSA-xxr7-33fp-84c2/GHSA-xxr7-33fp-84c2.json b/advisories/unreviewed/2024/08/GHSA-xxr7-33fp-84c2/GHSA-xxr7-33fp-84c2.json new file mode 100644 index 00000000000..439dc0268c2 --- /dev/null +++ b/advisories/unreviewed/2024/08/GHSA-xxr7-33fp-84c2/GHSA-xxr7-33fp-84c2.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xxr7-33fp-84c2", + "modified": "2024-08-22T21:31:29Z", + "published": "2024-08-22T21:31:29Z", + "aliases": [ + "CVE-2024-42418" + ], + "details": "Avtec Outpost uses a default cryptographic key that can be used to decrypt sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-42418" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-235-04" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-321" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-08-22T20:15:09Z" + } +} \ No newline at end of file