From a6909073ad0d43a2af28163c08d0e34771c1d7f3 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Wed, 7 May 2025 18:32:17 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-2cm7-996m-ffcv.json | 13 ++++-- .../GHSA-3mqf-h9j7-cgh5.json | 13 ++++-- .../GHSA-3fx6-2v2x-qmr9.json | 5 ++- .../GHSA-5x4q-5j7v-9cc2.json | 2 +- .../GHSA-888x-qw5v-x2w5.json | 2 +- .../GHSA-9phr-845q-6wwg.json | 1 + .../GHSA-q8fq-52x5-p228.json | 2 +- .../GHSA-rwch-32vf-3m2v.json | 4 +- .../GHSA-vw7j-6j6f-vm86.json | 1 + .../GHSA-57rg-p28x-x2f6.json | 2 +- .../GHSA-mw76-72hw-4357.json | 4 +- .../GHSA-xqqx-3g3g-99gr.json | 3 +- .../GHSA-3249-ch6f-5vrf.json | 4 +- .../GHSA-48pj-w278-q66r.json | 15 +++++-- .../GHSA-4pgp-hx9q-53rp.json | 1 + .../GHSA-j23h-727c-9qvf.json | 4 +- .../GHSA-m7q5-x69w-qc6v.json | 1 + .../GHSA-vmhf-rfw6-gg6x.json | 11 +++-- .../GHSA-qqw5-j897-27cf.json | 11 +++-- .../GHSA-rc7p-84r6-38c5.json | 4 +- .../GHSA-4vfx-xrp7-4c4h.json | 2 +- .../GHSA-v5ff-x4g7-3gqc.json | 3 +- .../GHSA-29vw-wqcm-8gfj.json | 4 +- .../GHSA-7p44-f7w4-39jw.json | 4 +- .../GHSA-96mw-7v75-2cq2.json | 4 +- .../GHSA-c735-vp6w-2f4q.json | 3 +- .../GHSA-j6vh-r2v3-c7fp.json | 4 +- .../GHSA-jfh6-m8fx-jjp9.json | 4 +- .../GHSA-p26w-g42r-2p4w.json | 4 +- .../GHSA-qv6w-444m-m6w6.json | 6 ++- .../GHSA-w54w-pm89-45cx.json | 3 +- .../GHSA-299w-p965-fx3w.json | 3 +- .../GHSA-5qmw-w9cg-68jh.json | 3 +- .../GHSA-6cfp-jggp-3vxx.json | 3 +- .../GHSA-f9mq-j3wx-4h2h.json | 3 +- .../GHSA-fgww-7769-w5pf.json | 3 +- .../GHSA-h223-9f6r-286q.json | 3 +- .../GHSA-m29v-f5j8-8qc4.json | 3 +- .../GHSA-p357-62x7-hf5p.json | 3 +- .../GHSA-ww9x-vjh2-hrj7.json | 3 +- .../GHSA-22gx-4xv7-xwjg.json | 40 ++++++++++++++++++ .../GHSA-2h9x-xhwj-wr94.json | 36 ++++++++++++++++ .../GHSA-349j-r63j-r5g7.json | 36 ++++++++++++++++ .../GHSA-36jv-w59f-85w3.json | 4 +- .../GHSA-3grg-fvvv-2qrm.json | 36 ++++++++++++++++ .../GHSA-489q-h7v6-2626.json | 36 ++++++++++++++++ .../GHSA-4c6g-3rgr-jvfh.json | 36 ++++++++++++++++ .../GHSA-4f7p-398v-2rw7.json | 36 ++++++++++++++++ .../GHSA-4g8w-3jcp-gh68.json | 3 +- .../GHSA-4grv-gh63-6248.json | 4 +- .../GHSA-4hcm-q3r5-74c4.json | 3 +- .../GHSA-5983-2qrf-rph2.json | 36 ++++++++++++++++ .../GHSA-5jcx-7jcf-9fw2.json | 36 ++++++++++++++++ .../GHSA-6vx4-qq88-rhxq.json | 3 +- .../GHSA-7fcv-r33w-mf96.json | 36 ++++++++++++++++ .../GHSA-84w5-8vpc-8c78.json | 3 +- .../GHSA-8w25-4r69-mq7p.json | 36 ++++++++++++++++ .../GHSA-95h6-vgwg-qcqc.json | 36 ++++++++++++++++ .../GHSA-c44x-92pj-2rvh.json | 15 +++++-- .../GHSA-cfcp-527j-53hf.json | 3 +- .../GHSA-cp9m-fgrv-j66x.json | 36 ++++++++++++++++ .../GHSA-cxc6-3424-fr63.json | 36 ++++++++++++++++ .../GHSA-cxrm-7jrj-hp84.json | 36 ++++++++++++++++ .../GHSA-f2w6-r722-5fr8.json | 40 ++++++++++++++++++ .../GHSA-f6f3-grvj-5rhr.json | 4 +- .../GHSA-f6m6-q8c2-48mm.json | 36 ++++++++++++++++ .../GHSA-ffcc-cqg6-6f7v.json | 36 ++++++++++++++++ .../GHSA-fv9x-wjcx-9cgm.json | 36 ++++++++++++++++ .../GHSA-fwqm-27rg-83qh.json | 36 ++++++++++++++++ .../GHSA-gjc9-7q7f-25qw.json | 34 +++++++++++++++ .../GHSA-gv7m-f47c-w86q.json | 36 ++++++++++++++++ .../GHSA-hjrw-9jmp-vr8q.json | 31 ++++++++++++++ .../GHSA-hvxf-w5xq-9cvg.json | 36 ++++++++++++++++ .../GHSA-m46c-2xgf-gfrv.json | 1 + .../GHSA-mmr9-p6pg-2mp3.json | 36 ++++++++++++++++ .../GHSA-mqph-g74f-5j5f.json | 36 ++++++++++++++++ .../GHSA-mv35-2gcq-wgr5.json | 11 +++-- .../GHSA-p3qm-wvjx-4jgf.json | 36 ++++++++++++++++ .../GHSA-p84x-683q-c49j.json | 36 ++++++++++++++++ .../GHSA-pm69-rqj8-f5fq.json | 41 +++++++++++++++++++ .../GHSA-pxp6-97q7-w6wm.json | 36 ++++++++++++++++ .../GHSA-q4xx-mxw3-33fm.json | 36 ++++++++++++++++ .../GHSA-q55q-6rmw-787q.json | 3 +- .../GHSA-qq4f-qwj9-p7pg.json | 4 +- .../GHSA-qxqg-ggrj-3mjf.json | 36 ++++++++++++++++ .../GHSA-rj95-ccvx-j559.json | 11 +++-- .../GHSA-rwcc-q93g-c2pv.json | 3 +- .../GHSA-rwj7-gqqr-3hm7.json | 36 ++++++++++++++++ .../GHSA-rxxw-x8j3-4f4f.json | 36 ++++++++++++++++ .../GHSA-v3x4-26xj-qrvg.json | 34 +++++++++++++++ .../GHSA-v76p-4wxx-wrpq.json | 36 ++++++++++++++++ .../GHSA-vq58-8wp2-wc83.json | 36 ++++++++++++++++ .../GHSA-vx24-6mq3-c5cq.json | 36 ++++++++++++++++ .../GHSA-x37r-wqwh-97qm.json | 36 ++++++++++++++++ .../GHSA-x3wr-p869-7p3g.json | 40 ++++++++++++++++++ .../GHSA-xfvq-95g5-jfq9.json | 36 ++++++++++++++++ .../GHSA-xv34-vpcm-23p2.json | 31 ++++++++++++++ 97 files changed, 1690 insertions(+), 71 deletions(-) create mode 100644 advisories/unreviewed/2025/05/GHSA-22gx-4xv7-xwjg/GHSA-22gx-4xv7-xwjg.json create mode 100644 advisories/unreviewed/2025/05/GHSA-2h9x-xhwj-wr94/GHSA-2h9x-xhwj-wr94.json create mode 100644 advisories/unreviewed/2025/05/GHSA-349j-r63j-r5g7/GHSA-349j-r63j-r5g7.json create mode 100644 advisories/unreviewed/2025/05/GHSA-3grg-fvvv-2qrm/GHSA-3grg-fvvv-2qrm.json create mode 100644 advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json create mode 100644 advisories/unreviewed/2025/05/GHSA-4c6g-3rgr-jvfh/GHSA-4c6g-3rgr-jvfh.json create mode 100644 advisories/unreviewed/2025/05/GHSA-4f7p-398v-2rw7/GHSA-4f7p-398v-2rw7.json create mode 100644 advisories/unreviewed/2025/05/GHSA-5983-2qrf-rph2/GHSA-5983-2qrf-rph2.json create mode 100644 advisories/unreviewed/2025/05/GHSA-5jcx-7jcf-9fw2/GHSA-5jcx-7jcf-9fw2.json create mode 100644 advisories/unreviewed/2025/05/GHSA-7fcv-r33w-mf96/GHSA-7fcv-r33w-mf96.json create mode 100644 advisories/unreviewed/2025/05/GHSA-8w25-4r69-mq7p/GHSA-8w25-4r69-mq7p.json create mode 100644 advisories/unreviewed/2025/05/GHSA-95h6-vgwg-qcqc/GHSA-95h6-vgwg-qcqc.json create mode 100644 advisories/unreviewed/2025/05/GHSA-cp9m-fgrv-j66x/GHSA-cp9m-fgrv-j66x.json create mode 100644 advisories/unreviewed/2025/05/GHSA-cxc6-3424-fr63/GHSA-cxc6-3424-fr63.json create mode 100644 advisories/unreviewed/2025/05/GHSA-cxrm-7jrj-hp84/GHSA-cxrm-7jrj-hp84.json create mode 100644 advisories/unreviewed/2025/05/GHSA-f2w6-r722-5fr8/GHSA-f2w6-r722-5fr8.json create mode 100644 advisories/unreviewed/2025/05/GHSA-f6m6-q8c2-48mm/GHSA-f6m6-q8c2-48mm.json create mode 100644 advisories/unreviewed/2025/05/GHSA-ffcc-cqg6-6f7v/GHSA-ffcc-cqg6-6f7v.json create mode 100644 advisories/unreviewed/2025/05/GHSA-fv9x-wjcx-9cgm/GHSA-fv9x-wjcx-9cgm.json create mode 100644 advisories/unreviewed/2025/05/GHSA-fwqm-27rg-83qh/GHSA-fwqm-27rg-83qh.json create mode 100644 advisories/unreviewed/2025/05/GHSA-gjc9-7q7f-25qw/GHSA-gjc9-7q7f-25qw.json create mode 100644 advisories/unreviewed/2025/05/GHSA-gv7m-f47c-w86q/GHSA-gv7m-f47c-w86q.json create mode 100644 advisories/unreviewed/2025/05/GHSA-hjrw-9jmp-vr8q/GHSA-hjrw-9jmp-vr8q.json create mode 100644 advisories/unreviewed/2025/05/GHSA-hvxf-w5xq-9cvg/GHSA-hvxf-w5xq-9cvg.json create mode 100644 advisories/unreviewed/2025/05/GHSA-mmr9-p6pg-2mp3/GHSA-mmr9-p6pg-2mp3.json create mode 100644 advisories/unreviewed/2025/05/GHSA-mqph-g74f-5j5f/GHSA-mqph-g74f-5j5f.json create mode 100644 advisories/unreviewed/2025/05/GHSA-p3qm-wvjx-4jgf/GHSA-p3qm-wvjx-4jgf.json create mode 100644 advisories/unreviewed/2025/05/GHSA-p84x-683q-c49j/GHSA-p84x-683q-c49j.json create mode 100644 advisories/unreviewed/2025/05/GHSA-pm69-rqj8-f5fq/GHSA-pm69-rqj8-f5fq.json create mode 100644 advisories/unreviewed/2025/05/GHSA-pxp6-97q7-w6wm/GHSA-pxp6-97q7-w6wm.json create mode 100644 advisories/unreviewed/2025/05/GHSA-q4xx-mxw3-33fm/GHSA-q4xx-mxw3-33fm.json create mode 100644 advisories/unreviewed/2025/05/GHSA-qxqg-ggrj-3mjf/GHSA-qxqg-ggrj-3mjf.json create mode 100644 advisories/unreviewed/2025/05/GHSA-rwj7-gqqr-3hm7/GHSA-rwj7-gqqr-3hm7.json create mode 100644 advisories/unreviewed/2025/05/GHSA-rxxw-x8j3-4f4f/GHSA-rxxw-x8j3-4f4f.json create mode 100644 advisories/unreviewed/2025/05/GHSA-v3x4-26xj-qrvg/GHSA-v3x4-26xj-qrvg.json create mode 100644 advisories/unreviewed/2025/05/GHSA-v76p-4wxx-wrpq/GHSA-v76p-4wxx-wrpq.json create mode 100644 advisories/unreviewed/2025/05/GHSA-vq58-8wp2-wc83/GHSA-vq58-8wp2-wc83.json create mode 100644 advisories/unreviewed/2025/05/GHSA-vx24-6mq3-c5cq/GHSA-vx24-6mq3-c5cq.json create mode 100644 advisories/unreviewed/2025/05/GHSA-x37r-wqwh-97qm/GHSA-x37r-wqwh-97qm.json create mode 100644 advisories/unreviewed/2025/05/GHSA-x3wr-p869-7p3g/GHSA-x3wr-p869-7p3g.json create mode 100644 advisories/unreviewed/2025/05/GHSA-xfvq-95g5-jfq9/GHSA-xfvq-95g5-jfq9.json create mode 100644 advisories/unreviewed/2025/05/GHSA-xv34-vpcm-23p2/GHSA-xv34-vpcm-23p2.json diff --git a/advisories/unreviewed/2022/05/GHSA-2cm7-996m-ffcv/GHSA-2cm7-996m-ffcv.json b/advisories/unreviewed/2022/05/GHSA-2cm7-996m-ffcv/GHSA-2cm7-996m-ffcv.json index 5fea4934c91..4a363083cc1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cm7-996m-ffcv/GHSA-2cm7-996m-ffcv.json +++ b/advisories/unreviewed/2022/05/GHSA-2cm7-996m-ffcv/GHSA-2cm7-996m-ffcv.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-2cm7-996m-ffcv", - "modified": "2022-05-24T17:11:29Z", + "modified": "2025-05-07T18:30:34Z", "published": "2022-05-24T17:11:29Z", "aliases": [ "CVE-2020-10195" ], "details": "The popup-builder plugin before 3.64.1 for WordPress allows information disclosure and settings modification, leading to in-scope privilege escalation via admin-post actions to com/classes/Actions.php. By sending a POST request to wp-admin/admin-post.php, an authenticated attacker with minimal (subscriber-level) permissions can modify the plugin's settings to allow arbitrary roles (including subscribers) access to plugin functionality by setting the action parameter to sgpbSaveSettings, export a list of current newsletter subscribers by setting the action parameter to csv_file, or obtain system configuration information including webserver configuration and a list of installed plugins by setting the action parameter to sgpb_system_info.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + } + ], "affected": [], "references": [ { @@ -24,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-200" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mqf-h9j7-cgh5/GHSA-3mqf-h9j7-cgh5.json b/advisories/unreviewed/2022/05/GHSA-3mqf-h9j7-cgh5/GHSA-3mqf-h9j7-cgh5.json index d5e6b36bb90..9e1fecd2068 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mqf-h9j7-cgh5/GHSA-3mqf-h9j7-cgh5.json +++ b/advisories/unreviewed/2022/05/GHSA-3mqf-h9j7-cgh5/GHSA-3mqf-h9j7-cgh5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-3mqf-h9j7-cgh5", - "modified": "2022-05-24T17:11:29Z", + "modified": "2025-05-07T18:30:35Z", "published": "2022-05-24T17:11:29Z", "aliases": [ "CVE-2020-10196" ], "details": "An XSS vulnerability in the popup-builder plugin before 3.64.1 for WordPress allows remote attackers to inject arbitrary JavaScript into existing popups via an unsecured ajax action in com/classes/Ajax.php. It is possible for an unauthenticated attacker to insert malicious JavaScript in several of the popup's fields by sending a request to wp-admin/admin-ajax.php with the POST action parameter of sgpb_autosave and including additional data in an allPopupData parameter, including the popup's ID (which is visible in the source of the page in which the popup is inserted) and arbitrary JavaScript which will then be executed in the browsers of visitors to that page. Because the plugin functionality automatically adds script tags to data entered into these fields, this injection will typically bypass most WAF applications.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,7 +29,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-3fx6-2v2x-qmr9/GHSA-3fx6-2v2x-qmr9.json b/advisories/unreviewed/2022/10/GHSA-3fx6-2v2x-qmr9/GHSA-3fx6-2v2x-qmr9.json index 4a07f15f396..367b6bdcbd4 100644 --- a/advisories/unreviewed/2022/10/GHSA-3fx6-2v2x-qmr9/GHSA-3fx6-2v2x-qmr9.json +++ b/advisories/unreviewed/2022/10/GHSA-3fx6-2v2x-qmr9/GHSA-3fx6-2v2x-qmr9.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-3fx6-2v2x-qmr9", - "modified": "2022-10-24T19:00:16Z", + "modified": "2025-05-07T18:30:35Z", "published": "2022-10-24T19:00:16Z", "aliases": [ "CVE-2022-41796" @@ -30,7 +30,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-426" + "CWE-426", + "CWE-427" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/10/GHSA-5x4q-5j7v-9cc2/GHSA-5x4q-5j7v-9cc2.json b/advisories/unreviewed/2022/10/GHSA-5x4q-5j7v-9cc2/GHSA-5x4q-5j7v-9cc2.json index 811d5be72ed..3e889ccb7c7 100644 --- a/advisories/unreviewed/2022/10/GHSA-5x4q-5j7v-9cc2/GHSA-5x4q-5j7v-9cc2.json +++ b/advisories/unreviewed/2022/10/GHSA-5x4q-5j7v-9cc2/GHSA-5x4q-5j7v-9cc2.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-5x4q-5j7v-9cc2", - "modified": "2022-10-24T19:00:17Z", + "modified": "2025-05-07T18:30:35Z", "published": "2022-10-24T19:00:17Z", "aliases": [ "CVE-2022-41799" diff --git a/advisories/unreviewed/2022/10/GHSA-888x-qw5v-x2w5/GHSA-888x-qw5v-x2w5.json b/advisories/unreviewed/2022/10/GHSA-888x-qw5v-x2w5/GHSA-888x-qw5v-x2w5.json index 95160f3d227..28d7c870b93 100644 --- a/advisories/unreviewed/2022/10/GHSA-888x-qw5v-x2w5/GHSA-888x-qw5v-x2w5.json +++ b/advisories/unreviewed/2022/10/GHSA-888x-qw5v-x2w5/GHSA-888x-qw5v-x2w5.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-888x-qw5v-x2w5", - "modified": "2022-10-28T19:00:31Z", + "modified": "2025-05-07T18:30:35Z", "published": "2022-10-28T19:00:31Z", "aliases": [ "CVE-2021-37781" diff --git a/advisories/unreviewed/2022/10/GHSA-9phr-845q-6wwg/GHSA-9phr-845q-6wwg.json b/advisories/unreviewed/2022/10/GHSA-9phr-845q-6wwg/GHSA-9phr-845q-6wwg.json index b37eb2dd4b3..984b31fbad2 100644 --- a/advisories/unreviewed/2022/10/GHSA-9phr-845q-6wwg/GHSA-9phr-845q-6wwg.json +++ b/advisories/unreviewed/2022/10/GHSA-9phr-845q-6wwg/GHSA-9phr-845q-6wwg.json @@ -34,6 +34,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-862", "CWE-863" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2022/10/GHSA-q8fq-52x5-p228/GHSA-q8fq-52x5-p228.json b/advisories/unreviewed/2022/10/GHSA-q8fq-52x5-p228/GHSA-q8fq-52x5-p228.json index 5ffe5992bdc..05babf1b245 100644 --- a/advisories/unreviewed/2022/10/GHSA-q8fq-52x5-p228/GHSA-q8fq-52x5-p228.json +++ b/advisories/unreviewed/2022/10/GHSA-q8fq-52x5-p228/GHSA-q8fq-52x5-p228.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-q8fq-52x5-p228", - "modified": "2023-01-21T03:30:28Z", + "modified": "2025-05-07T18:30:35Z", "published": "2022-10-21T19:01:14Z", "aliases": [ "CVE-2022-3626" diff --git a/advisories/unreviewed/2022/10/GHSA-rwch-32vf-3m2v/GHSA-rwch-32vf-3m2v.json b/advisories/unreviewed/2022/10/GHSA-rwch-32vf-3m2v/GHSA-rwch-32vf-3m2v.json index a4e14c18db6..a047027fd38 100644 --- a/advisories/unreviewed/2022/10/GHSA-rwch-32vf-3m2v/GHSA-rwch-32vf-3m2v.json +++ b/advisories/unreviewed/2022/10/GHSA-rwch-32vf-3m2v/GHSA-rwch-32vf-3m2v.json @@ -33,7 +33,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-vw7j-6j6f-vm86/GHSA-vw7j-6j6f-vm86.json b/advisories/unreviewed/2022/10/GHSA-vw7j-6j6f-vm86/GHSA-vw7j-6j6f-vm86.json index 19bd6e8c2d1..f076b945089 100644 --- a/advisories/unreviewed/2022/10/GHSA-vw7j-6j6f-vm86/GHSA-vw7j-6j6f-vm86.json +++ b/advisories/unreviewed/2022/10/GHSA-vw7j-6j6f-vm86/GHSA-vw7j-6j6f-vm86.json @@ -34,6 +34,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-20", "CWE-843" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/03/GHSA-57rg-p28x-x2f6/GHSA-57rg-p28x-x2f6.json b/advisories/unreviewed/2024/03/GHSA-57rg-p28x-x2f6/GHSA-57rg-p28x-x2f6.json index 2c39c849474..f1a2198139e 100644 --- a/advisories/unreviewed/2024/03/GHSA-57rg-p28x-x2f6/GHSA-57rg-p28x-x2f6.json +++ b/advisories/unreviewed/2024/03/GHSA-57rg-p28x-x2f6/GHSA-57rg-p28x-x2f6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-57rg-p28x-x2f6", - "modified": "2024-08-16T21:32:35Z", + "modified": "2025-05-07T18:30:36Z", "published": "2024-03-05T18:31:14Z", "aliases": [ "CVE-2024-22253" diff --git a/advisories/unreviewed/2024/03/GHSA-mw76-72hw-4357/GHSA-mw76-72hw-4357.json b/advisories/unreviewed/2024/03/GHSA-mw76-72hw-4357/GHSA-mw76-72hw-4357.json index 3115d2a1ef1..bb92effa99e 100644 --- a/advisories/unreviewed/2024/03/GHSA-mw76-72hw-4357/GHSA-mw76-72hw-4357.json +++ b/advisories/unreviewed/2024/03/GHSA-mw76-72hw-4357/GHSA-mw76-72hw-4357.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-mw76-72hw-4357", - "modified": "2024-08-14T21:33:11Z", + "modified": "2025-05-07T18:30:36Z", "published": "2024-03-05T18:31:14Z", "aliases": [ "CVE-2024-22254" ], - "details": "VMware ESXi contains an out-of-bounds write vulnerability. A malicious actor with privileges within the VMX process may trigger an out-of-bounds write leading to an escape of the sandbox.\n\n\n\n\n\n\n\n\n\n\n\n", + "details": "VMware ESXi contains an out-of-bounds write vulnerability. A malicious actor with privileges within the VMX process may trigger an out-of-bounds write leading to an escape of the sandbox.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2024/03/GHSA-xqqx-3g3g-99gr/GHSA-xqqx-3g3g-99gr.json b/advisories/unreviewed/2024/03/GHSA-xqqx-3g3g-99gr/GHSA-xqqx-3g3g-99gr.json index 3bf99b4b185..3a9ca3c83e2 100644 --- a/advisories/unreviewed/2024/03/GHSA-xqqx-3g3g-99gr/GHSA-xqqx-3g3g-99gr.json +++ b/advisories/unreviewed/2024/03/GHSA-xqqx-3g3g-99gr/GHSA-xqqx-3g3g-99gr.json @@ -34,7 +34,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-285" + "CWE-285", + "CWE-863" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/04/GHSA-3249-ch6f-5vrf/GHSA-3249-ch6f-5vrf.json b/advisories/unreviewed/2024/04/GHSA-3249-ch6f-5vrf/GHSA-3249-ch6f-5vrf.json index d5a52e050af..abedb81d945 100644 --- a/advisories/unreviewed/2024/04/GHSA-3249-ch6f-5vrf/GHSA-3249-ch6f-5vrf.json +++ b/advisories/unreviewed/2024/04/GHSA-3249-ch6f-5vrf/GHSA-3249-ch6f-5vrf.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-48pj-w278-q66r/GHSA-48pj-w278-q66r.json b/advisories/unreviewed/2024/04/GHSA-48pj-w278-q66r/GHSA-48pj-w278-q66r.json index 2d0c92e643a..396168c87a5 100644 --- a/advisories/unreviewed/2024/04/GHSA-48pj-w278-q66r/GHSA-48pj-w278-q66r.json +++ b/advisories/unreviewed/2024/04/GHSA-48pj-w278-q66r/GHSA-48pj-w278-q66r.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-48pj-w278-q66r", - "modified": "2024-04-17T12:32:04Z", + "modified": "2025-05-07T18:30:37Z", "published": "2024-04-17T12:32:04Z", "aliases": [ "CVE-2024-26869" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nf2fs: fix to truncate meta inode pages forcely\n\nBelow race case can cause data corruption:\n\nThread A\t\t\t\tGC thread\n\t\t\t\t\t- gc_data_segment\n\t\t\t\t\t - ra_data_block\n\t\t\t\t\t - locked meta_inode page\n- f2fs_inplace_write_data\n - invalidate_mapping_pages\n : fail to invalidate meta_inode page\n due to lock failure or dirty|writeback\n status\n - f2fs_submit_page_bio\n : write last dirty data to old blkaddr\n\t\t\t\t\t - move_data_block\n\t\t\t\t\t - load old data from meta_inode page\n\t\t\t\t\t - f2fs_submit_page_write\n\t\t\t\t\t : write old data to new blkaddr\n\nBecause invalidate_mapping_pages() will skip invalidating page which\nhas unclear status including locked, dirty, writeback and so on, so\nwe need to use truncate_inode_pages_range() instead of\ninvalidate_mapping_pages() to make sure meta_inode page will be dropped.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -32,8 +37,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-362" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-17T11:15:09Z" diff --git a/advisories/unreviewed/2024/04/GHSA-4pgp-hx9q-53rp/GHSA-4pgp-hx9q-53rp.json b/advisories/unreviewed/2024/04/GHSA-4pgp-hx9q-53rp/GHSA-4pgp-hx9q-53rp.json index d72b502d3d6..f780c3bebab 100644 --- a/advisories/unreviewed/2024/04/GHSA-4pgp-hx9q-53rp/GHSA-4pgp-hx9q-53rp.json +++ b/advisories/unreviewed/2024/04/GHSA-4pgp-hx9q-53rp/GHSA-4pgp-hx9q-53rp.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-23" ], "severity": "MODERATE", diff --git a/advisories/unreviewed/2024/04/GHSA-j23h-727c-9qvf/GHSA-j23h-727c-9qvf.json b/advisories/unreviewed/2024/04/GHSA-j23h-727c-9qvf/GHSA-j23h-727c-9qvf.json index fd434ceb369..99fedbc4984 100644 --- a/advisories/unreviewed/2024/04/GHSA-j23h-727c-9qvf/GHSA-j23h-727c-9qvf.json +++ b/advisories/unreviewed/2024/04/GHSA-j23h-727c-9qvf/GHSA-j23h-727c-9qvf.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-352" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/04/GHSA-m7q5-x69w-qc6v/GHSA-m7q5-x69w-qc6v.json b/advisories/unreviewed/2024/04/GHSA-m7q5-x69w-qc6v/GHSA-m7q5-x69w-qc6v.json index a8f942abd6f..787176e61ce 100644 --- a/advisories/unreviewed/2024/04/GHSA-m7q5-x69w-qc6v/GHSA-m7q5-x69w-qc6v.json +++ b/advisories/unreviewed/2024/04/GHSA-m7q5-x69w-qc6v/GHSA-m7q5-x69w-qc6v.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-22", "CWE-27" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2024/04/GHSA-vmhf-rfw6-gg6x/GHSA-vmhf-rfw6-gg6x.json b/advisories/unreviewed/2024/04/GHSA-vmhf-rfw6-gg6x/GHSA-vmhf-rfw6-gg6x.json index 18f7b77a217..9aee5903a2e 100644 --- a/advisories/unreviewed/2024/04/GHSA-vmhf-rfw6-gg6x/GHSA-vmhf-rfw6-gg6x.json +++ b/advisories/unreviewed/2024/04/GHSA-vmhf-rfw6-gg6x/GHSA-vmhf-rfw6-gg6x.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-vmhf-rfw6-gg6x", - "modified": "2024-06-26T00:31:37Z", + "modified": "2025-05-07T18:30:38Z", "published": "2024-04-17T12:32:05Z", "aliases": [ "CVE-2024-26891" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niommu/vt-d: Don't issue ATS Invalidation request when device is disconnected\n\nFor those endpoint devices connect to system via hotplug capable ports,\nusers could request a hot reset to the device by flapping device's link\nthrough setting the slot's link control register, as pciehp_ist() DLLSC\ninterrupt sequence response, pciehp will unload the device driver and\nthen power it off. thus cause an IOMMU device-TLB invalidation (Intel\nVT-d spec, or ATS Invalidation in PCIe spec r6.1) request for non-existence\ntarget device to be sent and deadly loop to retry that request after ITE\nfault triggered in interrupt context.\n\nThat would cause following continuous hard lockup warning and system hang\n\n[ 4211.433662] pcieport 0000:17:01.0: pciehp: Slot(108): Link Down\n[ 4211.433664] pcieport 0000:17:01.0: pciehp: Slot(108): Card not present\n[ 4223.822591] NMI watchdog: Watchdog detected hard LOCKUP on cpu 144\n[ 4223.822622] CPU: 144 PID: 1422 Comm: irq/57-pciehp Kdump: loaded Tainted: G S\n OE kernel version xxxx\n[ 4223.822623] Hardware name: vendorname xxxx 666-106,\nBIOS 01.01.02.03.01 05/15/2023\n[ 4223.822623] RIP: 0010:qi_submit_sync+0x2c0/0x490\n[ 4223.822624] Code: 48 be 00 00 00 00 00 08 00 00 49 85 74 24 20 0f 95 c1 48 8b\n 57 10 83 c1 04 83 3c 1a 03 0f 84 a2 01 00 00 49 8b 04 24 8b 70 34 <40> f6 c6 1\n0 74 17 49 8b 04 24 8b 80 80 00 00 00 89 c2 d3 fa 41 39\n[ 4223.822624] RSP: 0018:ffffc4f074f0bbb8 EFLAGS: 00000093\n[ 4223.822625] RAX: ffffc4f040059000 RBX: 0000000000000014 RCX: 0000000000000005\n[ 4223.822625] RDX: ffff9f3841315800 RSI: 0000000000000000 RDI: ffff9f38401a8340\n[ 4223.822625] RBP: ffff9f38401a8340 R08: ffffc4f074f0bc00 R09: 0000000000000000\n[ 4223.822626] R10: 0000000000000010 R11: 0000000000000018 R12: ffff9f384005e200\n[ 4223.822626] R13: 0000000000000004 R14: 0000000000000046 R15: 0000000000000004\n[ 4223.822626] FS: 0000000000000000(0000) GS:ffffa237ae400000(0000)\nknlGS:0000000000000000\n[ 4223.822627] CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[ 4223.822627] CR2: 00007ffe86515d80 CR3: 000002fd3000a001 CR4: 0000000000770ee0\n[ 4223.822627] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[ 4223.822628] DR3: 0000000000000000 DR6: 00000000fffe07f0 DR7: 0000000000000400\n[ 4223.822628] PKRU: 55555554\n[ 4223.822628] Call Trace:\n[ 4223.822628] qi_flush_dev_iotlb+0xb1/0xd0\n[ 4223.822628] __dmar_remove_one_dev_info+0x224/0x250\n[ 4223.822629] dmar_remove_one_dev_info+0x3e/0x50\n[ 4223.822629] intel_iommu_release_device+0x1f/0x30\n[ 4223.822629] iommu_release_device+0x33/0x60\n[ 4223.822629] iommu_bus_notifier+0x7f/0x90\n[ 4223.822630] blocking_notifier_call_chain+0x60/0x90\n[ 4223.822630] device_del+0x2e5/0x420\n[ 4223.822630] pci_remove_bus_device+0x70/0x110\n[ 4223.822630] pciehp_unconfigure_device+0x7c/0x130\n[ 4223.822631] pciehp_disable_slot+0x6b/0x100\n[ 4223.822631] pciehp_handle_presence_or_link_change+0xd8/0x320\n[ 4223.822631] pciehp_ist+0x176/0x180\n[ 4223.822631] ? irq_finalize_oneshot.part.50+0x110/0x110\n[ 4223.822632] irq_thread_fn+0x19/0x50\n[ 4223.822632] irq_thread+0x104/0x190\n[ 4223.822632] ? irq_forced_thread_fn+0x90/0x90\n[ 4223.822632] ? irq_thread_check_affinity+0xe0/0xe0\n[ 4223.822633] kthread+0x114/0x130\n[ 4223.822633] ? __kthread_cancel_work+0x40/0x40\n[ 4223.822633] ret_from_fork+0x1f/0x30\n[ 4223.822633] Kernel panic - not syncing: Hard LOCKUP\n[ 4223.822634] CPU: 144 PID: 1422 Comm: irq/57-pciehp Kdump: loaded Tainted: G S\n OE kernel version xxxx\n[ 4223.822634] Hardware name: vendorname xxxx 666-106,\nBIOS 01.01.02.03.01 05/15/2023\n[ 4223.822634] Call Trace:\n[ 4223.822634] \n[ 4223.822635] dump_stack+0x6d/0x88\n[ 4223.822635] panic+0x101/0x2d0\n[ 4223.822635] ? ret_from_fork+0x11/0x30\n[ 4223.822635] nmi_panic.cold.14+0xc/0xc\n[ 4223.822636] watchdog_overflow_callback.cold.8+0x6d/0x81\n[ 4223.822636] __perf_event_overflow+0x4f/0xf0\n[ 4223.822636] handle_pmi_common\n---truncated---", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } + ], "affected": [], "references": [ { @@ -49,7 +54,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-17T11:15:10Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qqw5-j897-27cf/GHSA-qqw5-j897-27cf.json b/advisories/unreviewed/2024/05/GHSA-qqw5-j897-27cf/GHSA-qqw5-j897-27cf.json index 2039b4be5cb..64d333bf840 100644 --- a/advisories/unreviewed/2024/05/GHSA-qqw5-j897-27cf/GHSA-qqw5-j897-27cf.json +++ b/advisories/unreviewed/2024/05/GHSA-qqw5-j897-27cf/GHSA-qqw5-j897-27cf.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-qqw5-j897-27cf", - "modified": "2024-05-21T15:31:41Z", + "modified": "2025-05-07T18:30:38Z", "published": "2024-05-21T15:31:41Z", "aliases": [ "CVE-2021-47293" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet/sched: act_skbmod: Skip non-Ethernet packets\n\nCurrently tcf_skbmod_act() assumes that packets use Ethernet as their L2\nprotocol, which is not always the case. As an example, for CAN devices:\n\n\t$ ip link add dev vcan0 type vcan\n\t$ ip link set up vcan0\n\t$ tc qdisc add dev vcan0 root handle 1: htb\n\t$ tc filter add dev vcan0 parent 1: protocol ip prio 10 \\\n\t\tmatchall action skbmod swap mac\n\nDoing the above silently corrupts all the packets. Do not perform skbmod\nactions for non-Ethernet packets.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -37,7 +42,7 @@ ], "database_specific": { "cwe_ids": [], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:17Z" diff --git a/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json b/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json index d95c352f663..3b022fb71b0 100644 --- a/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json +++ b/advisories/unreviewed/2024/05/GHSA-rc7p-84r6-38c5/GHSA-rc7p-84r6-38c5.json @@ -1,12 +1,12 @@ { "schema_version": "1.4.0", "id": "GHSA-rc7p-84r6-38c5", - "modified": "2024-05-14T18:30:50Z", + "modified": "2025-05-07T18:30:38Z", "published": "2024-05-14T18:30:50Z", "aliases": [ "CVE-2024-34433" ], - "details": "Deserialization of Untrusted Data vulnerability in OCDI One Click Demo Import.This issue affects One Click Demo Import: from n/a through 3.2.0.\n\n", + "details": "Deserialization of Untrusted Data vulnerability in OCDI One Click Demo Import.This issue affects One Click Demo Import: from n/a through 3.2.0.", "severity": [ { "type": "CVSS_V3", diff --git a/advisories/unreviewed/2025/01/GHSA-4vfx-xrp7-4c4h/GHSA-4vfx-xrp7-4c4h.json b/advisories/unreviewed/2025/01/GHSA-4vfx-xrp7-4c4h/GHSA-4vfx-xrp7-4c4h.json index 86075319dde..764688bdefe 100644 --- a/advisories/unreviewed/2025/01/GHSA-4vfx-xrp7-4c4h/GHSA-4vfx-xrp7-4c4h.json +++ b/advisories/unreviewed/2025/01/GHSA-4vfx-xrp7-4c4h/GHSA-4vfx-xrp7-4c4h.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-4vfx-xrp7-4c4h", - "modified": "2025-01-16T15:32:10Z", + "modified": "2025-05-07T18:30:41Z", "published": "2025-01-16T15:32:10Z", "aliases": [ "CVE-2025-0473" diff --git a/advisories/unreviewed/2025/01/GHSA-v5ff-x4g7-3gqc/GHSA-v5ff-x4g7-3gqc.json b/advisories/unreviewed/2025/01/GHSA-v5ff-x4g7-3gqc/GHSA-v5ff-x4g7-3gqc.json index b702f3e372f..ef2a31881b0 100644 --- a/advisories/unreviewed/2025/01/GHSA-v5ff-x4g7-3gqc/GHSA-v5ff-x4g7-3gqc.json +++ b/advisories/unreviewed/2025/01/GHSA-v5ff-x4g7-3gqc/GHSA-v5ff-x4g7-3gqc.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-434" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json b/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json index a845a3664b1..4f761040eb8 100644 --- a/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json +++ b/advisories/unreviewed/2025/02/GHSA-29vw-wqcm-8gfj/GHSA-29vw-wqcm-8gfj.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-7p44-f7w4-39jw/GHSA-7p44-f7w4-39jw.json b/advisories/unreviewed/2025/02/GHSA-7p44-f7w4-39jw/GHSA-7p44-f7w4-39jw.json index 06d6ffbd39a..cbe65007aae 100644 --- a/advisories/unreviewed/2025/02/GHSA-7p44-f7w4-39jw/GHSA-7p44-f7w4-39jw.json +++ b/advisories/unreviewed/2025/02/GHSA-7p44-f7w4-39jw/GHSA-7p44-f7w4-39jw.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-96mw-7v75-2cq2/GHSA-96mw-7v75-2cq2.json b/advisories/unreviewed/2025/02/GHSA-96mw-7v75-2cq2/GHSA-96mw-7v75-2cq2.json index 7ecfb2d5f87..34f5cfc554b 100644 --- a/advisories/unreviewed/2025/02/GHSA-96mw-7v75-2cq2/GHSA-96mw-7v75-2cq2.json +++ b/advisories/unreviewed/2025/02/GHSA-96mw-7v75-2cq2/GHSA-96mw-7v75-2cq2.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-c735-vp6w-2f4q/GHSA-c735-vp6w-2f4q.json b/advisories/unreviewed/2025/02/GHSA-c735-vp6w-2f4q/GHSA-c735-vp6w-2f4q.json index c80610af1a3..34894153953 100644 --- a/advisories/unreviewed/2025/02/GHSA-c735-vp6w-2f4q/GHSA-c735-vp6w-2f4q.json +++ b/advisories/unreviewed/2025/02/GHSA-c735-vp6w-2f4q/GHSA-c735-vp6w-2f4q.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/02/GHSA-j6vh-r2v3-c7fp/GHSA-j6vh-r2v3-c7fp.json b/advisories/unreviewed/2025/02/GHSA-j6vh-r2v3-c7fp/GHSA-j6vh-r2v3-c7fp.json index c88085b7dea..c3d5ad12fe0 100644 --- a/advisories/unreviewed/2025/02/GHSA-j6vh-r2v3-c7fp/GHSA-j6vh-r2v3-c7fp.json +++ b/advisories/unreviewed/2025/02/GHSA-j6vh-r2v3-c7fp/GHSA-j6vh-r2v3-c7fp.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json b/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json index 3b1a48a8637..1645d666098 100644 --- a/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json +++ b/advisories/unreviewed/2025/02/GHSA-jfh6-m8fx-jjp9/GHSA-jfh6-m8fx-jjp9.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/03/GHSA-p26w-g42r-2p4w/GHSA-p26w-g42r-2p4w.json b/advisories/unreviewed/2025/03/GHSA-p26w-g42r-2p4w/GHSA-p26w-g42r-2p4w.json index 7d00087b6b7..e82e673324a 100644 --- a/advisories/unreviewed/2025/03/GHSA-p26w-g42r-2p4w/GHSA-p26w-g42r-2p4w.json +++ b/advisories/unreviewed/2025/03/GHSA-p26w-g42r-2p4w/GHSA-p26w-g42r-2p4w.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/03/GHSA-qv6w-444m-m6w6/GHSA-qv6w-444m-m6w6.json b/advisories/unreviewed/2025/03/GHSA-qv6w-444m-m6w6/GHSA-qv6w-444m-m6w6.json index 2e0ca7cca61..05f647bf1d6 100644 --- a/advisories/unreviewed/2025/03/GHSA-qv6w-444m-m6w6/GHSA-qv6w-444m-m6w6.json +++ b/advisories/unreviewed/2025/03/GHSA-qv6w-444m-m6w6/GHSA-qv6w-444m-m6w6.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qv6w-444m-m6w6", - "modified": "2025-03-28T09:30:30Z", + "modified": "2025-05-07T18:30:41Z", "published": "2025-03-28T09:30:30Z", "aliases": [ "CVE-2025-2485" @@ -31,6 +31,10 @@ "type": "WEB", "url": "https://plugins.trac.wordpress.org/changeset/3261964" }, + { + "type": "WEB", + "url": "https://plugins.trac.wordpress.org/changeset/3288132" + }, { "type": "WEB", "url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/79ffe548-0005-4f5e-873f-a1afec64a251?source=cve" diff --git a/advisories/unreviewed/2025/03/GHSA-w54w-pm89-45cx/GHSA-w54w-pm89-45cx.json b/advisories/unreviewed/2025/03/GHSA-w54w-pm89-45cx/GHSA-w54w-pm89-45cx.json index 6c20b473b35..81c7d838ed9 100644 --- a/advisories/unreviewed/2025/03/GHSA-w54w-pm89-45cx/GHSA-w54w-pm89-45cx.json +++ b/advisories/unreviewed/2025/03/GHSA-w54w-pm89-45cx/GHSA-w54w-pm89-45cx.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-299w-p965-fx3w/GHSA-299w-p965-fx3w.json b/advisories/unreviewed/2025/04/GHSA-299w-p965-fx3w/GHSA-299w-p965-fx3w.json index 9c2eb6ff022..25f31d658e9 100644 --- a/advisories/unreviewed/2025/04/GHSA-299w-p965-fx3w/GHSA-299w-p965-fx3w.json +++ b/advisories/unreviewed/2025/04/GHSA-299w-p965-fx3w/GHSA-299w-p965-fx3w.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-5qmw-w9cg-68jh/GHSA-5qmw-w9cg-68jh.json b/advisories/unreviewed/2025/04/GHSA-5qmw-w9cg-68jh/GHSA-5qmw-w9cg-68jh.json index 06c07bfa2f5..df38790d793 100644 --- a/advisories/unreviewed/2025/04/GHSA-5qmw-w9cg-68jh/GHSA-5qmw-w9cg-68jh.json +++ b/advisories/unreviewed/2025/04/GHSA-5qmw-w9cg-68jh/GHSA-5qmw-w9cg-68jh.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-6cfp-jggp-3vxx/GHSA-6cfp-jggp-3vxx.json b/advisories/unreviewed/2025/04/GHSA-6cfp-jggp-3vxx/GHSA-6cfp-jggp-3vxx.json index 27314e41939..a2fcdafb7b8 100644 --- a/advisories/unreviewed/2025/04/GHSA-6cfp-jggp-3vxx/GHSA-6cfp-jggp-3vxx.json +++ b/advisories/unreviewed/2025/04/GHSA-6cfp-jggp-3vxx/GHSA-6cfp-jggp-3vxx.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-f9mq-j3wx-4h2h/GHSA-f9mq-j3wx-4h2h.json b/advisories/unreviewed/2025/04/GHSA-f9mq-j3wx-4h2h/GHSA-f9mq-j3wx-4h2h.json index 3bad75dcfaa..db2692bc661 100644 --- a/advisories/unreviewed/2025/04/GHSA-f9mq-j3wx-4h2h/GHSA-f9mq-j3wx-4h2h.json +++ b/advisories/unreviewed/2025/04/GHSA-f9mq-j3wx-4h2h/GHSA-f9mq-j3wx-4h2h.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-120" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-fgww-7769-w5pf/GHSA-fgww-7769-w5pf.json b/advisories/unreviewed/2025/04/GHSA-fgww-7769-w5pf/GHSA-fgww-7769-w5pf.json index 086b2752fac..2424f361c83 100644 --- a/advisories/unreviewed/2025/04/GHSA-fgww-7769-w5pf/GHSA-fgww-7769-w5pf.json +++ b/advisories/unreviewed/2025/04/GHSA-fgww-7769-w5pf/GHSA-fgww-7769-w5pf.json @@ -26,7 +26,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-732" + "CWE-732", + "CWE-94" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-h223-9f6r-286q/GHSA-h223-9f6r-286q.json b/advisories/unreviewed/2025/04/GHSA-h223-9f6r-286q/GHSA-h223-9f6r-286q.json index dbe2e8cabfe..6f7d2260d31 100644 --- a/advisories/unreviewed/2025/04/GHSA-h223-9f6r-286q/GHSA-h223-9f6r-286q.json +++ b/advisories/unreviewed/2025/04/GHSA-h223-9f6r-286q/GHSA-h223-9f6r-286q.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-m29v-f5j8-8qc4/GHSA-m29v-f5j8-8qc4.json b/advisories/unreviewed/2025/04/GHSA-m29v-f5j8-8qc4/GHSA-m29v-f5j8-8qc4.json index 03dd88ce69c..e67dea970d3 100644 --- a/advisories/unreviewed/2025/04/GHSA-m29v-f5j8-8qc4/GHSA-m29v-f5j8-8qc4.json +++ b/advisories/unreviewed/2025/04/GHSA-m29v-f5j8-8qc4/GHSA-m29v-f5j8-8qc4.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-p357-62x7-hf5p/GHSA-p357-62x7-hf5p.json b/advisories/unreviewed/2025/04/GHSA-p357-62x7-hf5p/GHSA-p357-62x7-hf5p.json index 677b545eecf..b7adf7e19c6 100644 --- a/advisories/unreviewed/2025/04/GHSA-p357-62x7-hf5p/GHSA-p357-62x7-hf5p.json +++ b/advisories/unreviewed/2025/04/GHSA-p357-62x7-hf5p/GHSA-p357-62x7-hf5p.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/04/GHSA-ww9x-vjh2-hrj7/GHSA-ww9x-vjh2-hrj7.json b/advisories/unreviewed/2025/04/GHSA-ww9x-vjh2-hrj7/GHSA-ww9x-vjh2-hrj7.json index 12019fe35e9..b256fde4ad7 100644 --- a/advisories/unreviewed/2025/04/GHSA-ww9x-vjh2-hrj7/GHSA-ww9x-vjh2-hrj7.json +++ b/advisories/unreviewed/2025/04/GHSA-ww9x-vjh2-hrj7/GHSA-ww9x-vjh2-hrj7.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-22gx-4xv7-xwjg/GHSA-22gx-4xv7-xwjg.json b/advisories/unreviewed/2025/05/GHSA-22gx-4xv7-xwjg/GHSA-22gx-4xv7-xwjg.json new file mode 100644 index 00000000000..24e65d84978 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-22gx-4xv7-xwjg/GHSA-22gx-4xv7-xwjg.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-22gx-4xv7-xwjg", + "modified": "2025-05-07T18:30:40Z", + "published": "2025-05-07T18:30:40Z", + "aliases": [ + "CVE-2024-11595" + ], + "details": "FiveCo RAP dissector infinite loop in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11595" + }, + { + "type": "WEB", + "url": "https://gitlab.com/wireshark/wireshark/-/issues/20176" + }, + { + "type": "WEB", + "url": "https://www.wireshark.org/security/wnpa-sec-2024-14.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-835" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T11:15:32Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-2h9x-xhwj-wr94/GHSA-2h9x-xhwj-wr94.json b/advisories/unreviewed/2025/05/GHSA-2h9x-xhwj-wr94/GHSA-2h9x-xhwj-wr94.json new file mode 100644 index 00000000000..306f752fb97 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-2h9x-xhwj-wr94/GHSA-2h9x-xhwj-wr94.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2h9x-xhwj-wr94", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20197" + ], + "details": "A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device.\n\n This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vulnerability by including crafted input in specific configuration commands. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system of an affected device. The security impact rating (SIR) of this advisory has been raised to High because an attacker could gain access to the underlying operating system of the affected device and perform potentially undetected actions.\n\n Note: The attacker must have privileges to enter configuration mode on the affected device. This is usually referred to as privilege level 15.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20197" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-privesc-su7scvdp" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:40Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-349j-r63j-r5g7/GHSA-349j-r63j-r5g7.json b/advisories/unreviewed/2025/05/GHSA-349j-r63j-r5g7/GHSA-349j-r63j-r5g7.json new file mode 100644 index 00000000000..a138186eb76 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-349j-r63j-r5g7/GHSA-349j-r63j-r5g7.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-349j-r63j-r5g7", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20147" + ], + "details": "A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to conduct a stored cross-site scripting attack (XSS) on an affected system. \n\nThis vulnerability is due to improper sanitization of user input to the web-based management interface. An attacker could exploit this vulnerability by submitting a malicious script through the interface. A successful exploit could allow the attacker to conduct a stored XSS attack on the affected system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20147" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanage-xss-xhN8M5jt" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-36jv-w59f-85w3/GHSA-36jv-w59f-85w3.json b/advisories/unreviewed/2025/05/GHSA-36jv-w59f-85w3/GHSA-36jv-w59f-85w3.json index 75d420e9710..0b1ba1b74d8 100644 --- a/advisories/unreviewed/2025/05/GHSA-36jv-w59f-85w3/GHSA-36jv-w59f-85w3.json +++ b/advisories/unreviewed/2025/05/GHSA-36jv-w59f-85w3/GHSA-36jv-w59f-85w3.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/05/GHSA-3grg-fvvv-2qrm/GHSA-3grg-fvvv-2qrm.json b/advisories/unreviewed/2025/05/GHSA-3grg-fvvv-2qrm/GHSA-3grg-fvvv-2qrm.json new file mode 100644 index 00000000000..92ccacefd2a --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-3grg-fvvv-2qrm/GHSA-3grg-fvvv-2qrm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3grg-fvvv-2qrm", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20164" + ], + "details": "A vulnerability in the Cisco Industrial Ethernet Switch Device Manager (DM) of Cisco IOS Software could allow an authenticated, remote attacker to elevate privileges.\n\n This vulnerability is due to insufficient validation of authorizations for authenticated users. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to elevate privileges to privilege level 15.\n\n To exploit this vulnerability, the attacker must have valid credentials for a user account with privilege level 5 or higher. Read-only DM users are assigned privilege level 5.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20164" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-http-privesc-wCRd5e3" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-862" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json b/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json new file mode 100644 index 00000000000..3eac0344a50 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-489q-h7v6-2626/GHSA-489q-h7v6-2626.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-489q-h7v6-2626", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20188" + ], + "details": "A vulnerability in the Out-of-Band Access Point (AP) Image Download feature of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system.\n\n This vulnerability is due to the presence of a hard-coded JSON Web Token (JWT) on an affected system. An attacker could exploit this vulnerability by sending crafted HTTPS requests to the AP image download interface. A successful exploit could allow the attacker to upload files, perform path traversal, and execute arbitrary commands with root privileges. \n\n Note: For exploitation to be successful, the Out-of-Band AP Image Download feature must be enabled on the device. It is not enabled by default.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20188" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-file-uplpd-rHZG9UfC" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-798" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-4c6g-3rgr-jvfh/GHSA-4c6g-3rgr-jvfh.json b/advisories/unreviewed/2025/05/GHSA-4c6g-3rgr-jvfh/GHSA-4c6g-3rgr-jvfh.json new file mode 100644 index 00000000000..f08f9fda600 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-4c6g-3rgr-jvfh/GHSA-4c6g-3rgr-jvfh.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4c6g-3rgr-jvfh", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20198" + ], + "details": "A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device.\n\n This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vulnerability by including crafted input in specific configuration commands. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system of an affected device. The security impact rating (SIR) of this advisory has been raised to High because an attacker could gain access to the underlying operating system of the affected device and perform potentially undetected actions.\n\n Note: The attacker must have privileges to enter configuration mode on the affected device. This is usually referred to as privilege level 15.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20198" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-privesc-su7scvdp" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-754" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:40Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-4f7p-398v-2rw7/GHSA-4f7p-398v-2rw7.json b/advisories/unreviewed/2025/05/GHSA-4f7p-398v-2rw7/GHSA-4f7p-398v-2rw7.json new file mode 100644 index 00000000000..468a10cc453 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-4f7p-398v-2rw7/GHSA-4f7p-398v-2rw7.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4f7p-398v-2rw7", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20210" + ], + "details": "A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify the outgoing proxy configuration settings.\n\nThis vulnerability is due to the lack of authentication in an API endpoint. An attacker could exploit this vulnerability by sending a request to the affected API of a Catalyst Center device. A successful exploit could allow the attacker to view or modify the outgoing proxy configuration, which could disrupt internet traffic from Cisco Catalyst Center or may allow the attacker to intercept outbound internet traffic.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20210" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-dnac-api-nBPZcJCM" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-306" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:41Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-4g8w-3jcp-gh68/GHSA-4g8w-3jcp-gh68.json b/advisories/unreviewed/2025/05/GHSA-4g8w-3jcp-gh68/GHSA-4g8w-3jcp-gh68.json index 4dd335fde26..8ee50212197 100644 --- a/advisories/unreviewed/2025/05/GHSA-4g8w-3jcp-gh68/GHSA-4g8w-3jcp-gh68.json +++ b/advisories/unreviewed/2025/05/GHSA-4g8w-3jcp-gh68/GHSA-4g8w-3jcp-gh68.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-4grv-gh63-6248/GHSA-4grv-gh63-6248.json b/advisories/unreviewed/2025/05/GHSA-4grv-gh63-6248/GHSA-4grv-gh63-6248.json index db280c448ba..3baf2a77891 100644 --- a/advisories/unreviewed/2025/05/GHSA-4grv-gh63-6248/GHSA-4grv-gh63-6248.json +++ b/advisories/unreviewed/2025/05/GHSA-4grv-gh63-6248/GHSA-4grv-gh63-6248.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/05/GHSA-4hcm-q3r5-74c4/GHSA-4hcm-q3r5-74c4.json b/advisories/unreviewed/2025/05/GHSA-4hcm-q3r5-74c4/GHSA-4hcm-q3r5-74c4.json index ba47852350a..42a51ccac6b 100644 --- a/advisories/unreviewed/2025/05/GHSA-4hcm-q3r5-74c4/GHSA-4hcm-q3r5-74c4.json +++ b/advisories/unreviewed/2025/05/GHSA-4hcm-q3r5-74c4/GHSA-4hcm-q3r5-74c4.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-5983-2qrf-rph2/GHSA-5983-2qrf-rph2.json b/advisories/unreviewed/2025/05/GHSA-5983-2qrf-rph2/GHSA-5983-2qrf-rph2.json new file mode 100644 index 00000000000..86b25843efe --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-5983-2qrf-rph2/GHSA-5983-2qrf-rph2.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5983-2qrf-rph2", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20221" + ], + "details": "A vulnerability in the packet filtering features of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker to bypass Layer 3 and Layer 4 traffic filters. \n\n This vulnerability is due to improper traffic filtering conditions on an affected device. An attacker could exploit this vulnerability by sending a crafted packet to the affected device. A successful exploit could allow the attacker to bypass the Layer 3 and Layer 4 traffic filters and inject a crafted packet into the network.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20221" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-snmp-bypass-HHUVujdn" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:41Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-5jcx-7jcf-9fw2/GHSA-5jcx-7jcf-9fw2.json b/advisories/unreviewed/2025/05/GHSA-5jcx-7jcf-9fw2/GHSA-5jcx-7jcf-9fw2.json new file mode 100644 index 00000000000..f80deb4ca0f --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-5jcx-7jcf-9fw2/GHSA-5jcx-7jcf-9fw2.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5jcx-7jcf-9fw2", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20155" + ], + "details": "A vulnerability in the bootstrap loading of Cisco IOS XE Software could allow an authenticated, local attacker to write arbitrary files to an affected system.\n\n This vulnerability is due to insufficient input validation of the bootstrap file that is read by the system software when a device is first deployed in SD-WAN mode or when an administrator configures SD-Routing on the device. An attacker could exploit this vulnerability by modifying a bootstrap file generated by Cisco Catalyst SD-WAN Manager, loading it into the device flash, and then either reloading the device in a green field deployment in SD-WAN mode or configuring the device with SD-Routing. A successful exploit could allow the attacker to perform arbitrary file writes to the underlying operating system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20155" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-bootstrap-KfgxYgdh" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-1287" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-6vx4-qq88-rhxq/GHSA-6vx4-qq88-rhxq.json b/advisories/unreviewed/2025/05/GHSA-6vx4-qq88-rhxq/GHSA-6vx4-qq88-rhxq.json index c7cc08b7276..54bc6e88fd9 100644 --- a/advisories/unreviewed/2025/05/GHSA-6vx4-qq88-rhxq/GHSA-6vx4-qq88-rhxq.json +++ b/advisories/unreviewed/2025/05/GHSA-6vx4-qq88-rhxq/GHSA-6vx4-qq88-rhxq.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-7fcv-r33w-mf96/GHSA-7fcv-r33w-mf96.json b/advisories/unreviewed/2025/05/GHSA-7fcv-r33w-mf96/GHSA-7fcv-r33w-mf96.json new file mode 100644 index 00000000000..0e62aaec1b6 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-7fcv-r33w-mf96/GHSA-7fcv-r33w-mf96.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7fcv-r33w-mf96", + "modified": "2025-05-07T18:30:50Z", + "published": "2025-05-07T18:30:50Z", + "aliases": [ + "CVE-2025-20223" + ], + "details": "A vulnerability in Cisco Catalyst Center, formerly Cisco DNA Center, could allow an authenticated, remote attacker to read and modify data in a repository that belongs to an internal service of an affected device.\n\n This vulnerability is due to insufficient enforcement of access control on HTTP requests. An attacker could exploit this vulnerability by submitting a crafted HTTP request to an affected device. A successful exploit could allow the attacker to read and modify data that is handled by an internal service on the affected device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20223" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catc-insec-acc-mtt8EhEb" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:42Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-84w5-8vpc-8c78/GHSA-84w5-8vpc-8c78.json b/advisories/unreviewed/2025/05/GHSA-84w5-8vpc-8c78/GHSA-84w5-8vpc-8c78.json index dc4256c2c11..263f49786a5 100644 --- a/advisories/unreviewed/2025/05/GHSA-84w5-8vpc-8c78/GHSA-84w5-8vpc-8c78.json +++ b/advisories/unreviewed/2025/05/GHSA-84w5-8vpc-8c78/GHSA-84w5-8vpc-8c78.json @@ -42,7 +42,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-8w25-4r69-mq7p/GHSA-8w25-4r69-mq7p.json b/advisories/unreviewed/2025/05/GHSA-8w25-4r69-mq7p/GHSA-8w25-4r69-mq7p.json new file mode 100644 index 00000000000..382516f0c39 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-8w25-4r69-mq7p/GHSA-8w25-4r69-mq7p.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8w25-4r69-mq7p", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20216" + ], + "details": "A vulnerability in the web interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to inject HTML into the browser of an authenticated user.\n\nThis vulnerability is due to improper sanitization of input to the web interface. An attacker could exploit this vulnerability by convincing an authenticated user to click a malicious link. A successful exploit could allow the attacker to inject HTML into the browser of an authenticated Cisco Catalyst SD-WAN Manager user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20216" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanage-html-inj-GxVtK6zj" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-74" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:41Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-95h6-vgwg-qcqc/GHSA-95h6-vgwg-qcqc.json b/advisories/unreviewed/2025/05/GHSA-95h6-vgwg-qcqc/GHSA-95h6-vgwg-qcqc.json new file mode 100644 index 00000000000..03b88d1e26e --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-95h6-vgwg-qcqc/GHSA-95h6-vgwg-qcqc.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-95h6-vgwg-qcqc", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20181" + ], + "details": "A vulnerability in Cisco IOS Software for Cisco Catalyst 2960X, 2960XR, 2960CX, and 3560CX Series Switches could allow an authenticated, local attacker with privilege level 15 or an unauthenticated attacker with physical access to the device to execute persistent code at boot time and break the chain of trust.\n\n This vulnerability is due to missing signature verification for specific files that may be loaded during the device boot process. An attacker could exploit this vulnerability by placing a crafted file into a specific location on an affected device. A successful exploit could allow the attacker to execute arbitrary code at boot time.\n\n Because this allows the attacker to bypass a major security feature of the device, Cisco has raised the Security Impact Rating (SIR) of this advisory from Medium to High.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20181" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-c2960-3560-sboot-ZtqADrHq" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-347" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-c44x-92pj-2rvh/GHSA-c44x-92pj-2rvh.json b/advisories/unreviewed/2025/05/GHSA-c44x-92pj-2rvh/GHSA-c44x-92pj-2rvh.json index 6b798d77f46..f4a3373f507 100644 --- a/advisories/unreviewed/2025/05/GHSA-c44x-92pj-2rvh/GHSA-c44x-92pj-2rvh.json +++ b/advisories/unreviewed/2025/05/GHSA-c44x-92pj-2rvh/GHSA-c44x-92pj-2rvh.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-c44x-92pj-2rvh", - "modified": "2025-05-05T15:30:53Z", + "modified": "2025-05-07T18:30:47Z", "published": "2025-05-05T15:30:53Z", "aliases": [ "CVE-2025-45751" ], "details": "SourceCodester Web Based Pharmacy Product Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in add-admin.php via the Fullname text field.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -24,8 +29,10 @@ } ], "database_specific": { - "cwe_ids": [], - "severity": null, + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-05T14:15:28Z" diff --git a/advisories/unreviewed/2025/05/GHSA-cfcp-527j-53hf/GHSA-cfcp-527j-53hf.json b/advisories/unreviewed/2025/05/GHSA-cfcp-527j-53hf/GHSA-cfcp-527j-53hf.json index 42c60581b1c..c4597653d87 100644 --- a/advisories/unreviewed/2025/05/GHSA-cfcp-527j-53hf/GHSA-cfcp-527j-53hf.json +++ b/advisories/unreviewed/2025/05/GHSA-cfcp-527j-53hf/GHSA-cfcp-527j-53hf.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-287" + "CWE-287", + "CWE-306" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-cp9m-fgrv-j66x/GHSA-cp9m-fgrv-j66x.json b/advisories/unreviewed/2025/05/GHSA-cp9m-fgrv-j66x/GHSA-cp9m-fgrv-j66x.json new file mode 100644 index 00000000000..e34835c69ea --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-cp9m-fgrv-j66x/GHSA-cp9m-fgrv-j66x.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cp9m-fgrv-j66x", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20200" + ], + "details": "A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device.\n\n This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vulnerability by including crafted input in specific configuration commands. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system of an affected device. The security impact rating (SIR) of this advisory has been raised to High because an attacker could gain access to the underlying operating system of the affected device and perform potentially undetected actions.\n\n Note: The attacker must have privileges to enter configuration mode on the affected device. This is usually referred to as privilege level 15.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20200" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-privesc-su7scvdp" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-754" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:40Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-cxc6-3424-fr63/GHSA-cxc6-3424-fr63.json b/advisories/unreviewed/2025/05/GHSA-cxc6-3424-fr63/GHSA-cxc6-3424-fr63.json new file mode 100644 index 00000000000..46ccd6522e5 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-cxc6-3424-fr63/GHSA-cxc6-3424-fr63.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cxc6-3424-fr63", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20195" + ], + "details": "A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote attacker to perform a CSRF attack and execute commands on the CLI of an affected device.\n\n This vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an already authenticated user to follow a crafted link. A successful exploit could allow the attacker to clear the syslog, parser, and licensing logs on the affected device if the targeted user has privileges to clear those logs.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20195" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-multi-ARNHM4v6" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-cxrm-7jrj-hp84/GHSA-cxrm-7jrj-hp84.json b/advisories/unreviewed/2025/05/GHSA-cxrm-7jrj-hp84/GHSA-cxrm-7jrj-hp84.json new file mode 100644 index 00000000000..32d81946452 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-cxrm-7jrj-hp84/GHSA-cxrm-7jrj-hp84.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cxrm-7jrj-hp84", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20202" + ], + "details": "A vulnerability in Cisco IOS XE Wireless Controller Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.\n\n This vulnerability is due to insufficient input validation of access point (AP) Cisco Discovery Protocol (CDP) neighbor reports when they are processed by the wireless controller. An attacker could exploit this vulnerability by sending a crafted CDP packet to an AP. A successful exploit could allow the attacker to cause an unexpected reload of the wireless controller that is managing the AP, resulting in a DoS condition that affects the wireless network.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20202" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ewlc-cdp-dos-fpeks9K" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-805" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:41Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-f2w6-r722-5fr8/GHSA-f2w6-r722-5fr8.json b/advisories/unreviewed/2025/05/GHSA-f2w6-r722-5fr8/GHSA-f2w6-r722-5fr8.json new file mode 100644 index 00000000000..f23c7044426 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-f2w6-r722-5fr8/GHSA-f2w6-r722-5fr8.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f2w6-r722-5fr8", + "modified": "2025-05-07T18:30:50Z", + "published": "2025-05-07T18:30:50Z", + "aliases": [ + "CVE-2025-47203" + ], + "details": "dbclient in Dropbear SSH before 2025.88 allows command injection via an untrusted hostname argument, because a shell is used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-47203" + }, + { + "type": "WEB", + "url": "https://github.com/mkj/dropbear/blob/master/CHANGES" + }, + { + "type": "WEB", + "url": "https://github.com/mkj/dropbear/blob/master/src/cli-main.c" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:43Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-f6f3-grvj-5rhr/GHSA-f6f3-grvj-5rhr.json b/advisories/unreviewed/2025/05/GHSA-f6f3-grvj-5rhr/GHSA-f6f3-grvj-5rhr.json index e20ad23cace..2d4f0883d5e 100644 --- a/advisories/unreviewed/2025/05/GHSA-f6f3-grvj-5rhr/GHSA-f6f3-grvj-5rhr.json +++ b/advisories/unreviewed/2025/05/GHSA-f6f3-grvj-5rhr/GHSA-f6f3-grvj-5rhr.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/05/GHSA-f6m6-q8c2-48mm/GHSA-f6m6-q8c2-48mm.json b/advisories/unreviewed/2025/05/GHSA-f6m6-q8c2-48mm/GHSA-f6m6-q8c2-48mm.json new file mode 100644 index 00000000000..476a635e39e --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-f6m6-q8c2-48mm/GHSA-f6m6-q8c2-48mm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f6m6-q8c2-48mm", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20187" + ], + "details": "A vulnerability in the application data endpoints of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to write arbitrary files to an affected system.\n\nThis vulnerability is due to improper validation of requests to APIs. An attacker could exploit this vulnerability by sending malicious requests to an API within the affected system. A successful exploit could allow the attacker to conduct directory traversal attacks and write files to an arbitrary location on the affected system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20187" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwanarbfile-2zKhKZwJ" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-ffcc-cqg6-6f7v/GHSA-ffcc-cqg6-6f7v.json b/advisories/unreviewed/2025/05/GHSA-ffcc-cqg6-6f7v/GHSA-ffcc-cqg6-6f7v.json new file mode 100644 index 00000000000..be039b0d735 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-ffcc-cqg6-6f7v/GHSA-ffcc-cqg6-6f7v.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ffcc-cqg6-6f7v", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20192" + ], + "details": "A vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation of Cisco IOS XE Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition. The attacker must have valid IKEv1 VPN credentials to exploit this vulnerability.\n\n This vulnerability is due to improper validation of IKEv1 phase 2 parameters before the IPsec security association creation request is handed off to the hardware cryptographic accelerator of an affected device. An attacker could exploit this vulnerability by sending crafted IKEv1 messages to the affected device. A successful exploit could allow the attacker to cause the device to reload.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20192" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-ikev1-dos-XHk3HzFC" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-232" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-fv9x-wjcx-9cgm/GHSA-fv9x-wjcx-9cgm.json b/advisories/unreviewed/2025/05/GHSA-fv9x-wjcx-9cgm/GHSA-fv9x-wjcx-9cgm.json new file mode 100644 index 00000000000..f2a5a452779 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-fv9x-wjcx-9cgm/GHSA-fv9x-wjcx-9cgm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fv9x-wjcx-9cgm", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20214" + ], + "details": "A vulnerability in the Network Configuration Access Control Module (NACM) of Cisco IOS XE Software could allow an authenticated, remote attacker to obtain unauthorized read access to configuration or operational data.\n\n This vulnerability exists because a subtle change in inner API call behavior causes results to be filtered incorrectly. An attacker could exploit this vulnerability by using either NETCONF, RESTCONF, or gRPC Network Management Interface (gNMI) protocols and query data on paths that may have been denied by the NACM configuration. A successful exploit could allow the attacker to access data that should have been restricted according to the NACM configuration.\n\n Note: This vulnerability requires that the attacker obtain the credentials from a valid user with privileges lower than 15, and that NACM was configured to provide restricted read access for that user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20214" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-netconf-nacm-bypass-TGZV9pmQ" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:41Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-fwqm-27rg-83qh/GHSA-fwqm-27rg-83qh.json b/advisories/unreviewed/2025/05/GHSA-fwqm-27rg-83qh/GHSA-fwqm-27rg-83qh.json new file mode 100644 index 00000000000..3edfb019804 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-fwqm-27rg-83qh/GHSA-fwqm-27rg-83qh.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fwqm-27rg-83qh", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20193" + ], + "details": "A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against an affected device.r\n\n This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based management interface. A successful exploit could allow the attacker to read files from the underlying operating system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20193" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-multi-ARNHM4v6" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-gjc9-7q7f-25qw/GHSA-gjc9-7q7f-25qw.json b/advisories/unreviewed/2025/05/GHSA-gjc9-7q7f-25qw/GHSA-gjc9-7q7f-25qw.json new file mode 100644 index 00000000000..28562253354 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-gjc9-7q7f-25qw/GHSA-gjc9-7q7f-25qw.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gjc9-7q7f-25qw", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20199" + ], + "details": "A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device.\n\n This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vulnerability by including crafted input in specific configuration commands. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system of an affected device. The security impact rating (SIR) of this advisory has been raised to High because an attacker could gain access to the underlying operating system of the affected device and perform potentially undetected actions.\n\n Note: The attacker must have privileges to enter configuration mode on the affected device. This is usually referred to as privilege level 15.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20199" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-privesc-su7scvdp" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:40Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-gv7m-f47c-w86q/GHSA-gv7m-f47c-w86q.json b/advisories/unreviewed/2025/05/GHSA-gv7m-f47c-w86q/GHSA-gv7m-f47c-w86q.json new file mode 100644 index 00000000000..cfa87239699 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-gv7m-f47c-w86q/GHSA-gv7m-f47c-w86q.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gv7m-f47c-w86q", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20182" + ], + "details": "A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol processing of Cisco Adaptive Security Appliance (ASA) Software, Cisco Firepower Threat Defense (FTD) Software, Cisco IOS Software, and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.\n\nThis vulnerability is due to insufficient input validation when processing IKEv2 messages. An attacker could exploit this vulnerability by sending crafted IKEv2 traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition on the affected device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20182" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-multiprod-ikev2-dos-gPctUqv2" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-787" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-hjrw-9jmp-vr8q/GHSA-hjrw-9jmp-vr8q.json b/advisories/unreviewed/2025/05/GHSA-hjrw-9jmp-vr8q/GHSA-hjrw-9jmp-vr8q.json new file mode 100644 index 00000000000..a5fb038be08 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-hjrw-9jmp-vr8q/GHSA-hjrw-9jmp-vr8q.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hjrw-9jmp-vr8q", + "modified": "2025-05-07T18:30:50Z", + "published": "2025-05-07T18:30:50Z", + "aliases": [ + "CVE-2025-32820" + ], + "details": "A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path traversal sequence to make any directory on the SMA appliance writable.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32820" + }, + { + "type": "WEB", + "url": "https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0011" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:42Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-hvxf-w5xq-9cvg/GHSA-hvxf-w5xq-9cvg.json b/advisories/unreviewed/2025/05/GHSA-hvxf-w5xq-9cvg/GHSA-hvxf-w5xq-9cvg.json new file mode 100644 index 00000000000..77edd33921f --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-hvxf-w5xq-9cvg/GHSA-hvxf-w5xq-9cvg.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hvxf-w5xq-9cvg", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20154" + ], + "details": "A vulnerability in the Two-Way Active Measurement Protocol (TWAMP) server feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition. For Cisco IOS XR Software, this vulnerability could cause the ipsla_ippm_server process to reload unexpectedly if debugs are enabled.\n\nThis vulnerability is due to out-of-bounds array access when processing specially crafted TWAMP control packets. An attacker could exploit this vulnerability by sending crafted TWAMP control packets to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.\nNote: For Cisco IOS XR Software, only the ipsla_ippm_server process reloads unexpectedly and only when debugs are enabled. The vulnerability details for Cisco IOS XR Software are as follows:    Security Impact Rating (SIR): Low    CVSS Base Score: 3.7    CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20154" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-twamp-kV4FHugn" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-m46c-2xgf-gfrv/GHSA-m46c-2xgf-gfrv.json b/advisories/unreviewed/2025/05/GHSA-m46c-2xgf-gfrv/GHSA-m46c-2xgf-gfrv.json index 2e62a44eed4..855cce9443c 100644 --- a/advisories/unreviewed/2025/05/GHSA-m46c-2xgf-gfrv/GHSA-m46c-2xgf-gfrv.json +++ b/advisories/unreviewed/2025/05/GHSA-m46c-2xgf-gfrv/GHSA-m46c-2xgf-gfrv.json @@ -26,6 +26,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-77", "CWE-78" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2025/05/GHSA-mmr9-p6pg-2mp3/GHSA-mmr9-p6pg-2mp3.json b/advisories/unreviewed/2025/05/GHSA-mmr9-p6pg-2mp3/GHSA-mmr9-p6pg-2mp3.json new file mode 100644 index 00000000000..922398d3006 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-mmr9-p6pg-2mp3/GHSA-mmr9-p6pg-2mp3.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mmr9-p6pg-2mp3", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20122" + ], + "details": "A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to gain privileges of the root user on the underlying operating system.\n\nThis vulnerability is due to insufficient input validation. An authenticated attacker with read-only privileges on the SD-WAN Manager system could exploit this vulnerability by sending a crafted request to the CLI of the SD-WAN Manager. A successful exploit could allow the attacker to gain root privileges on the underlying operating system.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20122" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-priviesc-WCk7bmmt" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-300" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-mqph-g74f-5j5f/GHSA-mqph-g74f-5j5f.json b/advisories/unreviewed/2025/05/GHSA-mqph-g74f-5j5f/GHSA-mqph-g74f-5j5f.json new file mode 100644 index 00000000000..46f9fdd0e68 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-mqph-g74f-5j5f/GHSA-mqph-g74f-5j5f.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mqph-g74f-5j5f", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20196" + ], + "details": "A vulnerability in the Cisco IOx application hosting environment of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Cisco IOx application hosting environment to stop responding, resulting in a denial of service (DoS) condition.\n\n This vulnerability is due to the improper handling of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to cause the Cisco IOx application hosting environment to stop responding. The IOx process will need to be manually restarted to recover services.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20196" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iox-dos-95Fqnf7b" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-307" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-mv35-2gcq-wgr5/GHSA-mv35-2gcq-wgr5.json b/advisories/unreviewed/2025/05/GHSA-mv35-2gcq-wgr5/GHSA-mv35-2gcq-wgr5.json index e2e48862f52..21b26a0deea 100644 --- a/advisories/unreviewed/2025/05/GHSA-mv35-2gcq-wgr5/GHSA-mv35-2gcq-wgr5.json +++ b/advisories/unreviewed/2025/05/GHSA-mv35-2gcq-wgr5/GHSA-mv35-2gcq-wgr5.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-mv35-2gcq-wgr5", - "modified": "2025-05-02T12:32:00Z", + "modified": "2025-05-07T18:30:45Z", "published": "2025-05-02T12:32:00Z", "aliases": [ "CVE-2025-0072" ], "details": "Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform improper GPU memory processing operations to gain access to already freed memory.\n\nThis issue affects Valhall GPU Kernel Driver: from r29p0 through r49p3, from r50p0 through r53p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p3, from r50p0 through r53p0.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-02T10:15:15Z" diff --git a/advisories/unreviewed/2025/05/GHSA-p3qm-wvjx-4jgf/GHSA-p3qm-wvjx-4jgf.json b/advisories/unreviewed/2025/05/GHSA-p3qm-wvjx-4jgf/GHSA-p3qm-wvjx-4jgf.json new file mode 100644 index 00000000000..a339f6ddf7c --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-p3qm-wvjx-4jgf/GHSA-p3qm-wvjx-4jgf.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p3qm-wvjx-4jgf", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20213" + ], + "details": "A vulnerability in the CLI of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device. To exploit this vulnerability, the attacker must have valid read-only credentials with CLI access on the affected system.\n\nThis vulnerability is due to improper access controls on files that are on the local file system. An attacker could exploit this vulnerability by running a series of crafted commands on the local file system of an affected device. A successful exploit could allow the attacker to overwrite arbitrary files on the affected device and gain privileges of the root user. To exploit this vulnerability, an attacker would need to have CLI access as a low-privilege user.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20213" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-fileoverwrite-Uc9tXWH" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:41Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-p84x-683q-c49j/GHSA-p84x-683q-c49j.json b/advisories/unreviewed/2025/05/GHSA-p84x-683q-c49j/GHSA-p84x-683q-c49j.json new file mode 100644 index 00000000000..1605f28fc0d --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-p84x-683q-c49j/GHSA-p84x-683q-c49j.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p84x-683q-c49j", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20162" + ], + "details": "A vulnerability in the DHCP snooping security feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a full interface queue wedge, which could result in a denial of service (DoS) condition.\n\n This vulnerability is due to improper handling of DHCP request packets. An attacker could exploit this vulnerability by sending DHCP request packets to an affected device. A successful exploit could allow the attacker to cause packets to wedge in the queue, creating a DoS condition for downstream devices of the affected system and requiring that the system restart to drain the queue.\n\n Note: This vulnerability can be exploited with either unicast or broadcast DHCP packets on a VLAN that does not have DHCP snooping enabled.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20162" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-dhcpsn-dos-xBn8Mtks" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-400" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-pm69-rqj8-f5fq/GHSA-pm69-rqj8-f5fq.json b/advisories/unreviewed/2025/05/GHSA-pm69-rqj8-f5fq/GHSA-pm69-rqj8-f5fq.json new file mode 100644 index 00000000000..b22ae49e1f9 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-pm69-rqj8-f5fq/GHSA-pm69-rqj8-f5fq.json @@ -0,0 +1,41 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pm69-rqj8-f5fq", + "modified": "2025-05-07T18:30:41Z", + "published": "2025-05-07T18:30:41Z", + "aliases": [ + "CVE-2024-11596" + ], + "details": "ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via packet injection or crafted capture file", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11596" + }, + { + "type": "WEB", + "url": "https://gitlab.com/wireshark/wireshark/-/issues/20214" + }, + { + "type": "WEB", + "url": "https://www.wireshark.org/security/wnpa-sec-2024-15.html" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125", + "CWE-126" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-21T11:15:33Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-pxp6-97q7-w6wm/GHSA-pxp6-97q7-w6wm.json b/advisories/unreviewed/2025/05/GHSA-pxp6-97q7-w6wm/GHSA-pxp6-97q7-w6wm.json new file mode 100644 index 00000000000..db0adcd9421 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-pxp6-97q7-w6wm/GHSA-pxp6-97q7-w6wm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pxp6-97q7-w6wm", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20140" + ], + "details": "A vulnerability in the Wireless Network Control daemon (wncd) of Cisco IOS XE Software for Wireless LAN Controllers (WLCs) could allow an unauthenticated, adjacent wireless attacker to cause a denial of service (DoS) condition.\n\n This vulnerability is due to improper memory management. An attacker could exploit this vulnerability by sending a series of IPv6 network requests from an associated wireless IPv6 client to an affected device. To associate a client to a device, an attacker may first need to authenticate to the network, or associate freely in the case of a configured open network. A successful exploit could allow the attacker to cause the wncd process to consume available memory and eventually cause the device to stop responding, resulting in a DoS condition.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20140" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-wncd-p6Gvt6HL" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-789" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-q4xx-mxw3-33fm/GHSA-q4xx-mxw3-33fm.json b/advisories/unreviewed/2025/05/GHSA-q4xx-mxw3-33fm/GHSA-q4xx-mxw3-33fm.json new file mode 100644 index 00000000000..96201253d80 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-q4xx-mxw3-33fm/GHSA-q4xx-mxw3-33fm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q4xx-mxw3-33fm", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20190" + ], + "details": "A vulnerability in the lobby ambassador web interface of Cisco IOS XE Wireless Controller Software could allow an authenticated, remote attacker to remove arbitrary users that are defined on an affected device.\n\n This vulnerability is due to insufficient access control of actions executed by lobby ambassador users. An attacker could exploit this vulnerability by logging in to an affected device with a lobby ambassador user account and sending crafted HTTP requests to the API. A successful exploit could allow the attacker to delete arbitrary user accounts on the device, including users with administrative privileges.\n\n Note: This vulnerability is exploitable only if the attacker obtains the credentials for a lobby ambassador account. This account is not configured by default.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20190" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ewlc-user-del-hQxMpUDj" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-q55q-6rmw-787q/GHSA-q55q-6rmw-787q.json b/advisories/unreviewed/2025/05/GHSA-q55q-6rmw-787q/GHSA-q55q-6rmw-787q.json index 7f27cf5c4ae..6b33737cfda 100644 --- a/advisories/unreviewed/2025/05/GHSA-q55q-6rmw-787q/GHSA-q55q-6rmw-787q.json +++ b/advisories/unreviewed/2025/05/GHSA-q55q-6rmw-787q/GHSA-q55q-6rmw-787q.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-qq4f-qwj9-p7pg/GHSA-qq4f-qwj9-p7pg.json b/advisories/unreviewed/2025/05/GHSA-qq4f-qwj9-p7pg/GHSA-qq4f-qwj9-p7pg.json index ed271f2aa2d..c2bda44a743 100644 --- a/advisories/unreviewed/2025/05/GHSA-qq4f-qwj9-p7pg/GHSA-qq4f-qwj9-p7pg.json +++ b/advisories/unreviewed/2025/05/GHSA-qq4f-qwj9-p7pg/GHSA-qq4f-qwj9-p7pg.json @@ -25,7 +25,9 @@ } ], "database_specific": { - "cwe_ids": [], + "cwe_ids": [ + "CWE-79" + ], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2025/05/GHSA-qxqg-ggrj-3mjf/GHSA-qxqg-ggrj-3mjf.json b/advisories/unreviewed/2025/05/GHSA-qxqg-ggrj-3mjf/GHSA-qxqg-ggrj-3mjf.json new file mode 100644 index 00000000000..c4ec452a23d --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-qxqg-ggrj-3mjf/GHSA-qxqg-ggrj-3mjf.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qxqg-ggrj-3mjf", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20186" + ], + "details": "A vulnerability in the web-based management interface of the Wireless LAN Controller feature of Cisco IOS XE Software could allow an authenticated, remote attacker with a lobby ambassador user account to perform a command injection attack against an affected device.\n\n This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based management interface. A successful exploit could allow the attacker to execute arbitrary Cisco IOS XE Software CLI commands with privilege level 15.\n\n Note: This vulnerability is exploitable only if the attacker obtains the credentials for a lobby ambassador account. This account is not configured by default.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20186" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-cmdinj-gVn3OKNC" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-rj95-ccvx-j559/GHSA-rj95-ccvx-j559.json b/advisories/unreviewed/2025/05/GHSA-rj95-ccvx-j559/GHSA-rj95-ccvx-j559.json index d09cf1fdfcb..4e1cccb3ac9 100644 --- a/advisories/unreviewed/2025/05/GHSA-rj95-ccvx-j559/GHSA-rj95-ccvx-j559.json +++ b/advisories/unreviewed/2025/05/GHSA-rj95-ccvx-j559/GHSA-rj95-ccvx-j559.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-rj95-ccvx-j559", - "modified": "2025-05-02T12:32:00Z", + "modified": "2025-05-07T18:30:46Z", "published": "2025-05-02T12:32:00Z", "aliases": [ "CVE-2025-0427" ], "details": "Use After Free vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver allows a local non-privileged user process to perform valid GPU processing operations to gain access to already freed memory.This issue affects Bifrost GPU Kernel Driver: from r8p0 through r49p3, from r50p0 through r51p0; Valhall GPU Kernel Driver: from r19p0 through r49p3, from r50p0 through r53p0; Arm 5th Gen GPU Architecture Kernel Driver: from r41p0 through r49p3, from r50p0 through r53p0.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], "affected": [], "references": [ { @@ -23,7 +28,7 @@ "cwe_ids": [ "CWE-416" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-05-02T10:15:16Z" diff --git a/advisories/unreviewed/2025/05/GHSA-rwcc-q93g-c2pv/GHSA-rwcc-q93g-c2pv.json b/advisories/unreviewed/2025/05/GHSA-rwcc-q93g-c2pv/GHSA-rwcc-q93g-c2pv.json index ba2f441e30d..9189d4add61 100644 --- a/advisories/unreviewed/2025/05/GHSA-rwcc-q93g-c2pv/GHSA-rwcc-q93g-c2pv.json +++ b/advisories/unreviewed/2025/05/GHSA-rwcc-q93g-c2pv/GHSA-rwcc-q93g-c2pv.json @@ -46,7 +46,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-74" + "CWE-74", + "CWE-89" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2025/05/GHSA-rwj7-gqqr-3hm7/GHSA-rwj7-gqqr-3hm7.json b/advisories/unreviewed/2025/05/GHSA-rwj7-gqqr-3hm7/GHSA-rwj7-gqqr-3hm7.json new file mode 100644 index 00000000000..5b8d411e71d --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-rwj7-gqqr-3hm7/GHSA-rwj7-gqqr-3hm7.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rwj7-gqqr-3hm7", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20194" + ], + "details": "A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, low-privileged, remote attacker to perform an injection attack against an affected device.\n\n This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based management interface. A successful exploit could allow the attacker to read limited files from the underlying operating system or clear the syslog and licensing logs on the affected device.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20194" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webui-multi-ARNHM4v6" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-rxxw-x8j3-4f4f/GHSA-rxxw-x8j3-4f4f.json b/advisories/unreviewed/2025/05/GHSA-rxxw-x8j3-4f4f/GHSA-rxxw-x8j3-4f4f.json new file mode 100644 index 00000000000..49e78195ec0 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-rxxw-x8j3-4f4f/GHSA-rxxw-x8j3-4f4f.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rxxw-x8j3-4f4f", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20201" + ], + "details": "A vulnerability in the CLI of Cisco IOS XE Software could allow an authenticated, local attacker with privilege level 15 to elevate privileges to root on the underlying operating system of an affected device.\n\n This vulnerability is due to insufficient input validation when processing specific configuration commands. An attacker could exploit this vulnerability by including crafted input in specific configuration commands. A successful exploit could allow the attacker to elevate privileges to root on the underlying operating system of an affected device. The security impact rating (SIR) of this advisory has been raised to High because an attacker could gain access to the underlying operating system of the affected device and perform potentially undetected actions.\n\n Note: The attacker must have privileges to enter configuration mode on the affected device. This is usually referred to as privilege level 15.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20201" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxe-privesc-su7scvdp" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-754" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:40Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-v3x4-26xj-qrvg/GHSA-v3x4-26xj-qrvg.json b/advisories/unreviewed/2025/05/GHSA-v3x4-26xj-qrvg/GHSA-v3x4-26xj-qrvg.json new file mode 100644 index 00000000000..c867e0a0cd2 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-v3x4-26xj-qrvg/GHSA-v3x4-26xj-qrvg.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v3x4-26xj-qrvg", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20151" + ], + "details": "A vulnerability in the implementation of the Simple Network Management Protocol Version 3 (SNMPv3) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker to poll an affected device using SNMP, even if the device is configured to deny SNMP traffic from an unauthorized source or the SNMPv3 username is removed from the configuration.\n\nThis vulnerability exists because of the way that the SNMPv3 configuration is stored in the Cisco IOS Software and Cisco IOS XE Software startup configuration. An attacker could exploit this vulnerability by polling an affected device from a source address that should have been denied. A successful exploit could allow the attacker to perform SNMP operations from a source that should be denied.\nNote: The attacker has no control of the SNMPv3 configuration. To exploit this vulnerability, the attacker must have valid SNMPv3 user credentials.\nFor more information, see the section of this advisory.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20151" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-snmpv3-qKEYvzsy" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-v76p-4wxx-wrpq/GHSA-v76p-4wxx-wrpq.json b/advisories/unreviewed/2025/05/GHSA-v76p-4wxx-wrpq/GHSA-v76p-4wxx-wrpq.json new file mode 100644 index 00000000000..b70a9794874 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-v76p-4wxx-wrpq/GHSA-v76p-4wxx-wrpq.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-v76p-4wxx-wrpq", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20189" + ], + "details": "A vulnerability in the Cisco Express Forwarding functionality of Cisco IOS XE Software for Cisco ASR 903 Aggregation Services Routers with Route Switch Processor 3 (RSP3C) could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition.\n\n This vulnerability is due to improper memory management when Cisco IOS XE Software is processing Address Resolution Protocol (ARP) messages. An attacker could exploit this vulnerability by sending crafted ARP messages at a high rate over a period of time to an affected device. A successful exploit could allow the attacker to exhaust system resources, which eventually triggers a reload of the active route switch processor (RSP). If a redundant RSP is not present, the router reloads.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20189" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asr903-rsp3-arp-dos-WmfzdvJZ" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-762" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:38Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-vq58-8wp2-wc83/GHSA-vq58-8wp2-wc83.json b/advisories/unreviewed/2025/05/GHSA-vq58-8wp2-wc83/GHSA-vq58-8wp2-wc83.json new file mode 100644 index 00000000000..0930359d460 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-vq58-8wp2-wc83/GHSA-vq58-8wp2-wc83.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vq58-8wp2-wc83", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20157" + ], + "details": "A vulnerability in certificate validation processing of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an unauthenticated, remote attacker to gain access to sensitive information.\n\nThis vulnerability is due to improper validation of certificates that are used by the Smart Licensing feature. An attacker with a privileged network position could exploit this vulnerability by intercepting traffic that is sent over the Internet. A successful exploit could allow the attacker to gain access to sensitive information, including credentials used by the device to connect to Cisco cloud services.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20157" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-catalyst-tls-PqnD5KEJ" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-295" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:37Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-vx24-6mq3-c5cq/GHSA-vx24-6mq3-c5cq.json b/advisories/unreviewed/2025/05/GHSA-vx24-6mq3-c5cq/GHSA-vx24-6mq3-c5cq.json new file mode 100644 index 00000000000..496e58ec49c --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-vx24-6mq3-c5cq/GHSA-vx24-6mq3-c5cq.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vx24-6mq3-c5cq", + "modified": "2025-05-07T18:30:49Z", + "published": "2025-05-07T18:30:49Z", + "aliases": [ + "CVE-2025-20191" + ], + "details": "A vulnerability in the Switch Integrated Security Features (SISF) of Cisco IOS Software, Cisco IOS XE Software, Cisco NX-OS Software, and Cisco Wireless LAN Controller (WLC) AireOS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.\n\nThis vulnerability is due to the incorrect handling of DHCPv6 packets. An attacker could exploit this vulnerability by sending a crafted DHCPv6 packet to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20191" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sisf-dos-ZGwt4DdY" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-805" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:39Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-x37r-wqwh-97qm/GHSA-x37r-wqwh-97qm.json b/advisories/unreviewed/2025/05/GHSA-x37r-wqwh-97qm/GHSA-x37r-wqwh-97qm.json new file mode 100644 index 00000000000..99ec51a586a --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-x37r-wqwh-97qm/GHSA-x37r-wqwh-97qm.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x37r-wqwh-97qm", + "modified": "2025-05-07T18:30:48Z", + "published": "2025-05-07T18:30:48Z", + "aliases": [ + "CVE-2025-20137" + ], + "details": "A vulnerability in the access control list (ACL) programming of Cisco IOS Software that is running on Cisco Catalyst 1000 Switches and Cisco Catalyst 2960L Switches could allow an unauthenticated, remote attacker to bypass a configured ACL.\n\n This vulnerability is due to the use of both an IPv4 ACL and a dynamic ACL of IP Source Guard on the same interface, which is an unsupported configuration. An attacker could exploit this vulnerability by attempting to send traffic through an affected device. A successful exploit could allow the attacker to bypass an ACL on the affected device.\n\n Note: Cisco documentation has been updated to reflect that this is an unsupported configuration. However, Cisco is publishing this advisory because the device will not prevent an administrator from configuring both features on the same interface. There are no plans to implement the ability to configure both features on the same interface on Cisco Catalyst 1000 or Catalyst 2960L Switches.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20137" + }, + { + "type": "WEB", + "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ipsgacl-pg6qfZk" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-284" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:36Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-x3wr-p869-7p3g/GHSA-x3wr-p869-7p3g.json b/advisories/unreviewed/2025/05/GHSA-x3wr-p869-7p3g/GHSA-x3wr-p869-7p3g.json new file mode 100644 index 00000000000..65206597b51 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-x3wr-p869-7p3g/GHSA-x3wr-p869-7p3g.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x3wr-p869-7p3g", + "modified": "2025-05-07T18:30:50Z", + "published": "2025-05-07T18:30:50Z", + "aliases": [ + "CVE-2025-47423" + ], + "details": "Personal Weather Station Dashboard 12_lts allows unauthenticated remote attackers to read arbitrary files via ../ directory traversal in the test parameter to /others/_test.php, as demonstrated by reading the server's private SSL key in cleartext.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-47423" + }, + { + "type": "WEB", + "url": "https://github.com/haluka92/CVE-2025-47423" + }, + { + "type": "WEB", + "url": "https://pwsdashboard.com" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-24" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:43Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-xfvq-95g5-jfq9/GHSA-xfvq-95g5-jfq9.json b/advisories/unreviewed/2025/05/GHSA-xfvq-95g5-jfq9/GHSA-xfvq-95g5-jfq9.json new file mode 100644 index 00000000000..ee26d99f526 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-xfvq-95g5-jfq9/GHSA-xfvq-95g5-jfq9.json @@ -0,0 +1,36 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xfvq-95g5-jfq9", + "modified": "2025-05-07T18:30:50Z", + "published": "2025-05-07T18:30:50Z", + "aliases": [ + "CVE-2025-32819" + ], + "details": "A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges to bypass the path traversal checks and delete an arbitrary file potentially resulting in a reboot to factory default settings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32819" + }, + { + "type": "WEB", + "url": "https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0011" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-552" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:42Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/05/GHSA-xv34-vpcm-23p2/GHSA-xv34-vpcm-23p2.json b/advisories/unreviewed/2025/05/GHSA-xv34-vpcm-23p2/GHSA-xv34-vpcm-23p2.json new file mode 100644 index 00000000000..a8a9a8ddf64 --- /dev/null +++ b/advisories/unreviewed/2025/05/GHSA-xv34-vpcm-23p2/GHSA-xv34-vpcm-23p2.json @@ -0,0 +1,31 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xv34-vpcm-23p2", + "modified": "2025-05-07T18:30:50Z", + "published": "2025-05-07T18:30:50Z", + "aliases": [ + "CVE-2025-32821" + ], + "details": "A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN admin privileges can with admin privileges can inject shell command arguments to upload a file on the appliance.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-32821" + }, + { + "type": "WEB", + "url": "https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2025-0011" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-05-07T18:15:42Z" + } +} \ No newline at end of file