Publish Advisories

GHSA-2f28-c6gf-w62p
GHSA-37h3-969w-7ph2
GHSA-3q3v-9mp5-cqff
GHSA-3v46-43qj-3vpg
GHSA-3v63-qv3r-29hp
GHSA-4x6r-c8c8-x44h
GHSA-63cq-qp74-7w56
GHSA-9qxf-hph3-rmgg
GHSA-c7vp-x3hm-mmrp
GHSA-c89h-4r84-43j7
GHSA-cjq9-mv23-7rh6
GHSA-cvfr-v5hr-8952
GHSA-gmf5-m5h7-48v7
GHSA-hqx2-wc2c-3843
GHSA-jjp4-6rrm-wrm6
GHSA-m2v4-c7w8-gcjq
GHSA-m3m7-pj6m-4jx5
GHSA-mwj6-6ghh-97gx
GHSA-rxq3-gmwr-j659
GHSA-v4rx-vw37-jhmq
GHSA-vr3j-fq3j-prvj
GHSA-w425-226c-79r3
GHSA-xv5g-cq95-4rcm
This commit is contained in:
advisory-database[bot]
2023-12-21 06:31:49 +00:00
parent a648ab281e
commit aa8aee567f
23 changed files with 71 additions and 21 deletions
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-434"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -1,7 +1,7 @@
{
"schema_version": "1.4.0",
"id": "GHSA-3v46-43qj-3vpg",
"modified": "2023-12-19T00:30:20Z",
"modified": "2023-12-21T06:30:34Z",
"published": "2023-12-19T00:30:20Z",
"aliases": [
"CVE-2023-49759"
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-434"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -40,7 +40,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-434"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -32,6 +32,10 @@
{
"type": "WEB",
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=2253632"
},
{
"type": "WEB",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/G3AGDVE3KBLOOYBPISFDS74R4YAZEDAY/"
}
],
"database_specific": {
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -0,0 +1,46 @@
{
"schema_version": "1.4.0",
"id": "GHSA-m3m7-pj6m-4jx5",
"modified": "2023-12-21T06:30:35Z",
"published": "2023-12-21T06:30:35Z",
"aliases": [
"CVE-2023-7026"
],
"details": "A vulnerability was found in Lightxun IPTV Gateway up to 20231208. It has been rated as problematic. This issue affects some unknown processing of the file /ZHGXTV/index.php/admin/index/web_upload_template.html. The manipulation of the argument file leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-248579.",
"severity": [
{
"type": "CVSS_V3",
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N"
}
],
"affected": [
],
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2023-7026"
},
{
"type": "WEB",
"url": "https://github.com/willchen0011/cve/blob/main/upload2.md"
},
{
"type": "WEB",
"url": "https://vuldb.com/?ctiid.248579"
},
{
"type": "WEB",
"url": "https://vuldb.com/?id.248579"
}
],
"database_specific": {
"cwe_ids": [
"CWE-434"
],
"severity": "MODERATE",
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2023-12-21T05:15:08Z"
}
}
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,
@@ -36,7 +36,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-434"
],
"severity": "HIGH",
"github_reviewed": false,
@@ -28,7 +28,7 @@
],
"database_specific": {
"cwe_ids": [
"CWE-787"
],
"severity": "CRITICAL",
"github_reviewed": false,

Some files were not shown because too many files have changed in this diff Show More