From abd0e181a6df45b02cd7d1e969e8ef97a6cb452e Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 4 Nov 2024 21:18:21 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-72x2-5c85-6wmr.json | 6 ++- .../GHSA-qgr2-xgqv-24x8.json | 2 +- .../GHSA-grqr-7r74-rg37.json | 7 ++- .../GHSA-2c3h-gr5x-3fh2.json | 11 ++-- .../GHSA-2pwj-8mjg-j34f.json | 11 ++-- .../GHSA-36fc-7gp5-r893.json | 11 ++-- .../GHSA-7279-4rvf-3vm5.json | 11 ++-- .../GHSA-758g-j8h5-xvgg.json | 9 ++-- .../GHSA-8g29-7ww6-62wf.json | 11 ++-- .../GHSA-27fr-v43j-r34m.json | 11 ++-- .../GHSA-3jc7-rm6x-qj46.json | 9 ++-- .../GHSA-4v2g-fxcq-4j44.json | 9 ++-- .../GHSA-4vwm-cmfj-fp9q.json | 11 ++-- .../GHSA-5222-7chv-655h.json | 9 ++-- .../GHSA-97c2-hm96-mgpf.json | 11 ++-- .../GHSA-r78f-49fx-h798.json | 9 ++-- .../GHSA-v558-mxh5-rq8q.json | 9 ++-- .../GHSA-23rc-q984-j9jx.json | 9 ++-- .../GHSA-3435-33m7-pm93.json | 11 ++-- .../GHSA-g726-jqm5-9q9f.json | 11 ++-- .../GHSA-gvq9-2m65-mcj6.json | 11 ++-- .../GHSA-h4c3-x7vv-8q28.json | 11 ++-- .../GHSA-jcww-8cqj-r3v2.json | 11 ++-- .../GHSA-jv67-jxg9-q8v4.json | 11 ++-- .../GHSA-m9v7-qqvg-7f89.json | 9 ++-- .../GHSA-mxcm-w7fm-9qr2.json | 11 ++-- .../GHSA-q9w5-9j33-5prx.json | 9 ++-- .../GHSA-rh2q-xgw7-5r5r.json | 9 ++-- .../GHSA-vw56-6j9w-9rvx.json | 9 ++-- .../GHSA-24r3-rx3r-wgvw.json | 11 ++-- .../GHSA-f5wq-9rwv-wqh8.json | 11 ++-- .../GHSA-mqwf-3v63-p67r.json | 9 ++-- .../GHSA-qwvj-5fwc-qxf7.json | 9 ++-- .../GHSA-x4vx-jp8h-mrcx.json | 9 ++-- .../GHSA-x632-g56x-qcm8.json | 9 ++-- .../GHSA-f67x-xvfp-8cjm.json | 9 ++-- .../GHSA-hjp4-5jqf-9vgq.json | 9 ++-- .../GHSA-j27x-m3vr-xwcf.json | 9 ++-- .../GHSA-jj7q-23xp-h55w.json | 9 ++-- .../GHSA-r96m-mwvr-946h.json | 9 ++-- .../GHSA-f25c-wxgv-xhrw.json | 9 ++-- .../GHSA-pp7w-98jh-p48w.json | 4 +- .../GHSA-mgrp-q987-h8p8.json | 11 ++-- .../GHSA-vm34-2mcq-j9q8.json | 11 ++-- .../GHSA-7gm5-m2xc-vh2j.json | 2 +- .../GHSA-grqq-hcc7-crmr.json | 18 ++++++- .../GHSA-27r6-xq24-p9x8.json | 39 ++++++++++++++ .../GHSA-287m-m4rw-v572.json | 11 ++-- .../GHSA-2qxr-7mvv-54x4.json | 11 ++-- .../GHSA-38w9-w6h5-wfxm.json | 39 ++++++++++++++ .../GHSA-43xj-7j8x-m26r.json | 54 +++++++++++++++++++ .../GHSA-4fhq-xw64-436p.json | 11 ++-- .../GHSA-4j38-c7m4-7f9g.json | 11 ++-- .../GHSA-4r9c-ghcc-8xqw.json | 54 +++++++++++++++++++ .../GHSA-4vm6-5rvv-5jfp.json | 39 ++++++++++++++ .../GHSA-5m99-8v6r-q8c5.json | 11 ++-- .../GHSA-6prm-2vx7-8xwr.json | 39 ++++++++++++++ .../GHSA-6pw7-57q6-83j4.json | 11 ++-- .../GHSA-6w7r-f23m-5rvh.json | 39 ++++++++++++++ .../GHSA-798f-vv9g-f5gg.json | 11 ++-- .../GHSA-9jcp-9vh9-r3w5.json | 43 +++++++++++++++ .../GHSA-9xg5-55cm-9gxr.json | 39 ++++++++++++++ .../GHSA-f63j-xmq2-hrpg.json | 39 ++++++++++++++ .../GHSA-f96w-x82r-jx85.json | 11 ++-- .../GHSA-g6pp-x9v7-qxm2.json | 11 ++-- .../GHSA-hm22-mpqr-wp46.json | 39 ++++++++++++++ .../GHSA-hmq5-8v4p-mm6q.json | 39 ++++++++++++++ .../GHSA-hvcg-cjrj-269v.json | 11 ++-- .../GHSA-jv8v-q52f-pxq9.json | 11 ++-- .../GHSA-jx6x-3r9m-87fm.json | 11 ++-- .../GHSA-qcw6-77mc-69mj.json | 11 ++-- .../GHSA-r7mv-mv7m-pjw3.json | 39 ++++++++++++++ .../GHSA-vj3j-52q7-fqvp.json | 11 ++-- .../GHSA-vxf5-mpg2-599p.json | 11 ++-- .../GHSA-w47v-2qj7-9m4m.json | 54 +++++++++++++++++++ .../GHSA-w7hw-mc66-fgp3.json | 11 ++-- .../GHSA-xfcf-4825-2xx2.json | 11 ++-- 77 files changed, 1005 insertions(+), 214 deletions(-) create mode 100644 advisories/unreviewed/2024/11/GHSA-27r6-xq24-p9x8/GHSA-27r6-xq24-p9x8.json create mode 100644 advisories/unreviewed/2024/11/GHSA-38w9-w6h5-wfxm/GHSA-38w9-w6h5-wfxm.json create mode 100644 advisories/unreviewed/2024/11/GHSA-43xj-7j8x-m26r/GHSA-43xj-7j8x-m26r.json create mode 100644 advisories/unreviewed/2024/11/GHSA-4r9c-ghcc-8xqw/GHSA-4r9c-ghcc-8xqw.json create mode 100644 advisories/unreviewed/2024/11/GHSA-4vm6-5rvv-5jfp/GHSA-4vm6-5rvv-5jfp.json create mode 100644 advisories/unreviewed/2024/11/GHSA-6prm-2vx7-8xwr/GHSA-6prm-2vx7-8xwr.json create mode 100644 advisories/unreviewed/2024/11/GHSA-6w7r-f23m-5rvh/GHSA-6w7r-f23m-5rvh.json create mode 100644 advisories/unreviewed/2024/11/GHSA-9jcp-9vh9-r3w5/GHSA-9jcp-9vh9-r3w5.json create mode 100644 advisories/unreviewed/2024/11/GHSA-9xg5-55cm-9gxr/GHSA-9xg5-55cm-9gxr.json create mode 100644 advisories/unreviewed/2024/11/GHSA-f63j-xmq2-hrpg/GHSA-f63j-xmq2-hrpg.json create mode 100644 advisories/unreviewed/2024/11/GHSA-hm22-mpqr-wp46/GHSA-hm22-mpqr-wp46.json create mode 100644 advisories/unreviewed/2024/11/GHSA-hmq5-8v4p-mm6q/GHSA-hmq5-8v4p-mm6q.json create mode 100644 advisories/unreviewed/2024/11/GHSA-r7mv-mv7m-pjw3/GHSA-r7mv-mv7m-pjw3.json create mode 100644 advisories/unreviewed/2024/11/GHSA-w47v-2qj7-9m4m/GHSA-w47v-2qj7-9m4m.json diff --git a/advisories/github-reviewed/2023/11/GHSA-72x2-5c85-6wmr/GHSA-72x2-5c85-6wmr.json b/advisories/github-reviewed/2023/11/GHSA-72x2-5c85-6wmr/GHSA-72x2-5c85-6wmr.json index 59d7e8ca18b..78559192f78 100644 --- a/advisories/github-reviewed/2023/11/GHSA-72x2-5c85-6wmr/GHSA-72x2-5c85-6wmr.json +++ b/advisories/github-reviewed/2023/11/GHSA-72x2-5c85-6wmr/GHSA-72x2-5c85-6wmr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-72x2-5c85-6wmr", - "modified": "2023-11-12T15:53:29Z", + "modified": "2024-11-04T21:16:51Z", "published": "2023-11-12T15:53:29Z", "aliases": [ "CVE-2023-46735" @@ -12,6 +12,10 @@ { "type": "CVSS_V3", "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N" } ], "affected": [ diff --git a/advisories/unreviewed/2022/01/GHSA-qgr2-xgqv-24x8/GHSA-qgr2-xgqv-24x8.json b/advisories/unreviewed/2022/01/GHSA-qgr2-xgqv-24x8/GHSA-qgr2-xgqv-24x8.json index 76aa11d1e20..38ee756e478 100644 --- a/advisories/unreviewed/2022/01/GHSA-qgr2-xgqv-24x8/GHSA-qgr2-xgqv-24x8.json +++ b/advisories/unreviewed/2022/01/GHSA-qgr2-xgqv-24x8/GHSA-qgr2-xgqv-24x8.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-qgr2-xgqv-24x8", - "modified": "2022-04-15T00:01:29Z", + "modified": "2024-11-04T18:31:16Z", "published": "2022-01-29T00:00:42Z", "aliases": [ "CVE-2021-4034" diff --git a/advisories/unreviewed/2022/06/GHSA-grqr-7r74-rg37/GHSA-grqr-7r74-rg37.json b/advisories/unreviewed/2022/06/GHSA-grqr-7r74-rg37/GHSA-grqr-7r74-rg37.json index f9e03acf794..0bd0aa50381 100644 --- a/advisories/unreviewed/2022/06/GHSA-grqr-7r74-rg37/GHSA-grqr-7r74-rg37.json +++ b/advisories/unreviewed/2022/06/GHSA-grqr-7r74-rg37/GHSA-grqr-7r74-rg37.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-grqr-7r74-rg37", - "modified": "2022-07-09T00:00:25Z", + "modified": "2024-11-04T18:31:16Z", "published": "2022-06-30T00:00:41Z", "aliases": [ "CVE-2022-31266" @@ -21,6 +21,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-31266" }, + { + "type": "WEB", + "url": "https://medium.com/%40bcksec/in-ilias-through-7-10-620c0de685ee" + }, { "type": "WEB", "url": "https://medium.com/@bcksec/in-ilias-through-7-10-620c0de685ee" @@ -32,6 +36,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-306", "CWE-354" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2024/02/GHSA-2c3h-gr5x-3fh2/GHSA-2c3h-gr5x-3fh2.json b/advisories/unreviewed/2024/02/GHSA-2c3h-gr5x-3fh2/GHSA-2c3h-gr5x-3fh2.json index 8235249c701..3dccf4e9b59 100644 --- a/advisories/unreviewed/2024/02/GHSA-2c3h-gr5x-3fh2/GHSA-2c3h-gr5x-3fh2.json +++ b/advisories/unreviewed/2024/02/GHSA-2c3h-gr5x-3fh2/GHSA-2c3h-gr5x-3fh2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2c3h-gr5x-3fh2", - "modified": "2024-05-07T06:30:35Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-02-21T09:31:00Z", "aliases": [ "CVE-2023-42843" ], "details": "An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, Safari 17.1, macOS Sonoma 14.1. Visiting a malicious website may lead to address bar spoofing.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -45,9 +48,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-290" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T07:15:48Z" diff --git a/advisories/unreviewed/2024/02/GHSA-2pwj-8mjg-j34f/GHSA-2pwj-8mjg-j34f.json b/advisories/unreviewed/2024/02/GHSA-2pwj-8mjg-j34f/GHSA-2pwj-8mjg-j34f.json index 45df81aa4ed..59955c9e245 100644 --- a/advisories/unreviewed/2024/02/GHSA-2pwj-8mjg-j34f/GHSA-2pwj-8mjg-j34f.json +++ b/advisories/unreviewed/2024/02/GHSA-2pwj-8mjg-j34f/GHSA-2pwj-8mjg-j34f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2pwj-8mjg-j34f", - "modified": "2024-02-23T12:30:31Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-02-23T12:30:31Z", "aliases": [ "CVE-2023-4826" ], "details": "The SocialDriver WordPress theme before version 2024 has a prototype pollution vulnerability that could allow an attacker to inject arbitrary properties resulting in a cross-site scripting (XSS) attack.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-23T10:15:07Z" diff --git a/advisories/unreviewed/2024/02/GHSA-36fc-7gp5-r893/GHSA-36fc-7gp5-r893.json b/advisories/unreviewed/2024/02/GHSA-36fc-7gp5-r893/GHSA-36fc-7gp5-r893.json index 94c008ec682..268d2571ff6 100644 --- a/advisories/unreviewed/2024/02/GHSA-36fc-7gp5-r893/GHSA-36fc-7gp5-r893.json +++ b/advisories/unreviewed/2024/02/GHSA-36fc-7gp5-r893/GHSA-36fc-7gp5-r893.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-36fc-7gp5-r893", - "modified": "2024-02-16T00:30:28Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-02-16T00:30:28Z", "aliases": [ "CVE-2023-40124" ], "details": "In multiple locations, there is a possible cross-user read due to a confused deputy. This could lead to local information disclosure of photos or other images with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-15T23:15:08Z" diff --git a/advisories/unreviewed/2024/02/GHSA-7279-4rvf-3vm5/GHSA-7279-4rvf-3vm5.json b/advisories/unreviewed/2024/02/GHSA-7279-4rvf-3vm5/GHSA-7279-4rvf-3vm5.json index a2ab456f222..a3144231d84 100644 --- a/advisories/unreviewed/2024/02/GHSA-7279-4rvf-3vm5/GHSA-7279-4rvf-3vm5.json +++ b/advisories/unreviewed/2024/02/GHSA-7279-4rvf-3vm5/GHSA-7279-4rvf-3vm5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7279-4rvf-3vm5", - "modified": "2024-02-21T09:31:00Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-02-21T09:31:00Z", "aliases": [ "CVE-2023-42823" ], "details": "The issue was resolved by sanitizing logging This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, macOS Monterey 12.7.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.1. An app may be able to access user-sensitive data.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -49,9 +52,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-21T07:15:47Z" diff --git a/advisories/unreviewed/2024/02/GHSA-758g-j8h5-xvgg/GHSA-758g-j8h5-xvgg.json b/advisories/unreviewed/2024/02/GHSA-758g-j8h5-xvgg/GHSA-758g-j8h5-xvgg.json index 3ace499ed0b..0c32c48867c 100644 --- a/advisories/unreviewed/2024/02/GHSA-758g-j8h5-xvgg/GHSA-758g-j8h5-xvgg.json +++ b/advisories/unreviewed/2024/02/GHSA-758g-j8h5-xvgg/GHSA-758g-j8h5-xvgg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-758g-j8h5-xvgg", - "modified": "2024-02-28T09:30:37Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-02-28T09:30:37Z", "aliases": [ "CVE-2021-46989" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nhfsplus: prevent corruption in shrinking truncate\n\nI believe there are some issues introduced by commit 31651c607151\n(\"hfsplus: avoid deadlock on file truncation\")\n\nHFS+ has extent records which always contains 8 extents. In case the\nfirst extent record in catalog file gets full, new ones are allocated from\nextents overflow file.\n\nIn case shrinking truncate happens to middle of an extent record which\nlocates in extents overflow file, the logic in hfsplus_file_truncate() was\nchanged so that call to hfs_brec_remove() is not guarded any more.\n\nRight action would be just freeing the extents that exceed the new size\ninside extent record by calling hfsplus_free_extents(), and then check if\nthe whole extent record should be removed. However since the guard\n(blk_cnt > start) is now after the call to hfs_brec_remove(), this has\nunfortunate effect that the last matching extent record is removed\nunconditionally.\n\nTo reproduce this issue, create a file which has at least 10 extents, and\nthen perform shrinking truncate into middle of the last extent record, so\nthat the number of remaining extents is not under or divisible by 8. This\ncauses the last extent record (8 extents) to be removed totally instead of\ntruncating into middle of it. Thus this causes corruption, and lost data.\n\nFix for this is simply checking if the new truncated end is below the\nstart of this extent record, making it safe to remove the full extent\nrecord. However call to hfs_brec_remove() can't be moved to it's previous\nplace since we're dropping ->tree_lock and it can cause a race condition\nand the cached info being invalidated possibly corrupting the node data.\n\nAnother issue is related to this one. When entering into the block\n(blk_cnt > start) we are not holding the ->tree_lock. We break out from\nthe loop not holding the lock, but hfs_find_exit() does unlock it. Not\nsure if it's possible for someone else to take the lock under our feet,\nbut it can cause hard to debug errors and premature unlocking. Even if\nthere's no real risk of it, the locking should still always be kept in\nbalance. Thus taking the lock now just before the check.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -47,7 +50,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:37Z" diff --git a/advisories/unreviewed/2024/02/GHSA-8g29-7ww6-62wf/GHSA-8g29-7ww6-62wf.json b/advisories/unreviewed/2024/02/GHSA-8g29-7ww6-62wf/GHSA-8g29-7ww6-62wf.json index 064bff8dd07..6af5318f1a2 100644 --- a/advisories/unreviewed/2024/02/GHSA-8g29-7ww6-62wf/GHSA-8g29-7ww6-62wf.json +++ b/advisories/unreviewed/2024/02/GHSA-8g29-7ww6-62wf/GHSA-8g29-7ww6-62wf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-8g29-7ww6-62wf", - "modified": "2024-02-28T09:30:38Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-02-28T09:30:38Z", "aliases": [ "CVE-2021-47044" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nsched/fair: Fix shift-out-of-bounds in load_balance()\n\nSyzbot reported a handful of occurrences where an sd->nr_balance_failed can\ngrow to much higher values than one would expect.\n\nA successful load_balance() resets it to 0; a failed one increments\nit. Once it gets to sd->cache_nice_tries + 3, this *should* trigger an\nactive balance, which will either set it to sd->cache_nice_tries+1 or reset\nit to 0. However, in case the to-be-active-balanced task is not allowed to\nrun on env->dst_cpu, then the increment is done without any further\nmodification.\n\nThis could then be repeated ad nauseam, and would explain the absurdly high\nvalues reported by syzbot (86, 149). VincentG noted there is value in\nletting sd->cache_nice_tries grow, so the shift itself should be\nfixed. That means preventing:\n\n \"\"\"\n If the value of the right operand is negative or is greater than or equal\n to the width of the promoted left operand, the behavior is undefined.\n \"\"\"\n\nThus we need to cap the shift exponent to\n BITS_PER_TYPE(typeof(lefthand)) - 1.\n\nI had a look around for other similar cases via coccinelle:\n\n @expr@\n position pos;\n expression E1;\n expression E2;\n @@\n (\n E1 >> E2@pos\n |\n E1 >> E2@pos\n )\n\n @cst depends on expr@\n position pos;\n expression expr.E1;\n constant cst;\n @@\n (\n E1 >> cst@pos\n |\n E1 << cst@pos\n )\n\n @script:python depends on !cst@\n pos << expr.pos;\n exp << expr.E2;\n @@\n # Dirty hack to ignore constexpr\n if exp.upper() != exp:\n coccilib.report.print_report(pos[0], \"Possible UB shift here\")\n\nThe only other match in kernel/sched is rq_clock_thermal() which employs\nsched_thermal_decay_shift, and that exponent is already capped to 10, so\nthat one is fine.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" + } ], "affected": [ @@ -37,9 +40,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-02-28T09:15:40Z" diff --git a/advisories/unreviewed/2024/03/GHSA-27fr-v43j-r34m/GHSA-27fr-v43j-r34m.json b/advisories/unreviewed/2024/03/GHSA-27fr-v43j-r34m/GHSA-27fr-v43j-r34m.json index 5910ea0be4d..26c310963cf 100644 --- a/advisories/unreviewed/2024/03/GHSA-27fr-v43j-r34m/GHSA-27fr-v43j-r34m.json +++ b/advisories/unreviewed/2024/03/GHSA-27fr-v43j-r34m/GHSA-27fr-v43j-r34m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-27fr-v43j-r34m", - "modified": "2024-05-01T18:30:37Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-03-25T15:30:43Z", "aliases": [ "CVE-2024-30204" ], "details": "In Emacs before 29.3, LaTeX preview is enabled by default for e-mail attachments.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -77,9 +80,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-276" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-25T15:15:52Z" diff --git a/advisories/unreviewed/2024/03/GHSA-3jc7-rm6x-qj46/GHSA-3jc7-rm6x-qj46.json b/advisories/unreviewed/2024/03/GHSA-3jc7-rm6x-qj46/GHSA-3jc7-rm6x-qj46.json index 9869c597edd..9dee3720439 100644 --- a/advisories/unreviewed/2024/03/GHSA-3jc7-rm6x-qj46/GHSA-3jc7-rm6x-qj46.json +++ b/advisories/unreviewed/2024/03/GHSA-3jc7-rm6x-qj46/GHSA-3jc7-rm6x-qj46.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3jc7-rm6x-qj46", - "modified": "2024-03-15T21:30:44Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-03-15T21:30:44Z", "aliases": [ "CVE-2021-47130" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnvmet: fix freeing unallocated p2pmem\n\nIn case p2p device was found but the p2p pool is empty, the nvme target\nis still trying to free the sgl from the p2p pool instead of the\nregular sgl pool and causing a crash (BUG() is called). Instead, assign\nthe p2p_dev for the request only if it was allocated from p2p pool.\n\nThis is the crash that was caused:\n\n[Sun May 30 19:13:53 2021] ------------[ cut here ]------------\n[Sun May 30 19:13:53 2021] kernel BUG at lib/genalloc.c:518!\n[Sun May 30 19:13:53 2021] invalid opcode: 0000 [#1] SMP PTI\n...\n[Sun May 30 19:13:53 2021] kernel BUG at lib/genalloc.c:518!\n...\n[Sun May 30 19:13:53 2021] RIP: 0010:gen_pool_free_owner+0xa8/0xb0\n...\n[Sun May 30 19:13:53 2021] Call Trace:\n[Sun May 30 19:13:53 2021] ------------[ cut here ]------------\n[Sun May 30 19:13:53 2021] pci_free_p2pmem+0x2b/0x70\n[Sun May 30 19:13:53 2021] pci_p2pmem_free_sgl+0x4f/0x80\n[Sun May 30 19:13:53 2021] nvmet_req_free_sgls+0x1e/0x80 [nvmet]\n[Sun May 30 19:13:53 2021] kernel BUG at lib/genalloc.c:518!\n[Sun May 30 19:13:53 2021] nvmet_rdma_release_rsp+0x4e/0x1f0 [nvmet_rdma]\n[Sun May 30 19:13:53 2021] nvmet_rdma_send_done+0x1c/0x60 [nvmet_rdma]", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-15T21:15:07Z" diff --git a/advisories/unreviewed/2024/03/GHSA-4v2g-fxcq-4j44/GHSA-4v2g-fxcq-4j44.json b/advisories/unreviewed/2024/03/GHSA-4v2g-fxcq-4j44/GHSA-4v2g-fxcq-4j44.json index 8c38b3f142e..b8b81e1b5b3 100644 --- a/advisories/unreviewed/2024/03/GHSA-4v2g-fxcq-4j44/GHSA-4v2g-fxcq-4j44.json +++ b/advisories/unreviewed/2024/03/GHSA-4v2g-fxcq-4j44/GHSA-4v2g-fxcq-4j44.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4v2g-fxcq-4j44", - "modified": "2024-06-26T00:31:35Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-03-26T18:32:07Z", "aliases": [ "CVE-2023-52627" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niio: adc: ad7091r: Allow users to configure device events\n\nAD7091R-5 devices are supported by the ad7091r-5 driver together with\nthe ad7091r-base driver. Those drivers declared iio events for notifying\nuser space when ADC readings fall bellow the thresholds of low limit\nregisters or above the values set in high limit registers.\nHowever, to configure iio events and their thresholds, a set of callback\nfunctions must be implemented and those were not present until now.\nThe consequence of trying to configure ad7091r-5 events without the\nproper callback functions was a null pointer dereference in the kernel\nbecause the pointers to the callback functions were not set.\n\nImplement event configuration callbacks allowing users to read/write\nevent thresholds and enable/disable event generation.\n\nSince the event spec structs are generic to AD7091R devices, also move\nthose from the ad7091r-5 driver the base driver so they can be reused\nwhen support for ad7091r-2/-4/-8 be added.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -51,7 +54,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-26T18:15:09Z" diff --git a/advisories/unreviewed/2024/03/GHSA-4vwm-cmfj-fp9q/GHSA-4vwm-cmfj-fp9q.json b/advisories/unreviewed/2024/03/GHSA-4vwm-cmfj-fp9q/GHSA-4vwm-cmfj-fp9q.json index f63865ec5e1..4bc7042664b 100644 --- a/advisories/unreviewed/2024/03/GHSA-4vwm-cmfj-fp9q/GHSA-4vwm-cmfj-fp9q.json +++ b/advisories/unreviewed/2024/03/GHSA-4vwm-cmfj-fp9q/GHSA-4vwm-cmfj-fp9q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4vwm-cmfj-fp9q", - "modified": "2024-03-30T03:30:44Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-03-30T03:30:44Z", "aliases": [ "CVE-2024-28288" ], "details": "Ruijie RG-NBR700GW 10.3(4b12) router lacks cookie verification when resetting the password, resulting in an administrator password reset vulnerability. An attacker can use this vulnerability to log in to the device and disrupt the business of the enterprise.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-565" ], - "severity": null, + "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-30T01:15:47Z" diff --git a/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json b/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json index a306c40226e..490bcd0ea89 100644 --- a/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json +++ b/advisories/unreviewed/2024/03/GHSA-5222-7chv-655h/GHSA-5222-7chv-655h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5222-7chv-655h", - "modified": "2024-06-27T15:30:38Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-03-26T18:32:06Z", "aliases": [ "CVE-2023-52623" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nSUNRPC: Fix a suspicious RCU usage warning\n\nI received the following warning while running cthon against an ontap\nserver running pNFS:\n\n[ 57.202521] =============================\n[ 57.202522] WARNING: suspicious RCU usage\n[ 57.202523] 6.7.0-rc3-g2cc14f52aeb7 #41492 Not tainted\n[ 57.202525] -----------------------------\n[ 57.202525] net/sunrpc/xprtmultipath.c:349 RCU-list traversed in non-reader section!!\n[ 57.202527]\n other info that might help us debug this:\n\n[ 57.202528]\n rcu_scheduler_active = 2, debug_locks = 1\n[ 57.202529] no locks held by test5/3567.\n[ 57.202530]\n stack backtrace:\n[ 57.202532] CPU: 0 PID: 3567 Comm: test5 Not tainted 6.7.0-rc3-g2cc14f52aeb7 #41492 5b09971b4965c0aceba19f3eea324a4a806e227e\n[ 57.202534] Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS unknown 2/2/2022\n[ 57.202536] Call Trace:\n[ 57.202537] \n[ 57.202540] dump_stack_lvl+0x77/0xb0\n[ 57.202551] lockdep_rcu_suspicious+0x154/0x1a0\n[ 57.202556] rpc_xprt_switch_has_addr+0x17c/0x190 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202596] rpc_clnt_setup_test_and_add_xprt+0x50/0x180 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202621] ? rpc_clnt_add_xprt+0x254/0x300 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202646] rpc_clnt_add_xprt+0x27a/0x300 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202671] ? __pfx_rpc_clnt_setup_test_and_add_xprt+0x10/0x10 [sunrpc ebe02571b9a8ceebf7d98e71675af20c19bdb1f6]\n[ 57.202696] nfs4_pnfs_ds_connect+0x345/0x760 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202728] ? __pfx_nfs4_test_session_trunk+0x10/0x10 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202754] nfs4_fl_prepare_ds+0x75/0xc0 [nfs_layout_nfsv41_files e3a4187f18ae8a27b630f9feae6831b584a9360a]\n[ 57.202760] filelayout_write_pagelist+0x4a/0x200 [nfs_layout_nfsv41_files e3a4187f18ae8a27b630f9feae6831b584a9360a]\n[ 57.202765] pnfs_generic_pg_writepages+0xbe/0x230 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202788] __nfs_pageio_add_request+0x3fd/0x520 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202813] nfs_pageio_add_request+0x18b/0x390 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202831] nfs_do_writepage+0x116/0x1e0 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202849] nfs_writepages_callback+0x13/0x30 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202866] write_cache_pages+0x265/0x450\n[ 57.202870] ? __pfx_nfs_writepages_callback+0x10/0x10 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202891] nfs_writepages+0x141/0x230 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202913] do_writepages+0xd2/0x230\n[ 57.202917] ? filemap_fdatawrite_wbc+0x5c/0x80\n[ 57.202921] filemap_fdatawrite_wbc+0x67/0x80\n[ 57.202924] filemap_write_and_wait_range+0xd9/0x170\n[ 57.202930] nfs_wb_all+0x49/0x180 [nfs 6c976fa593a7c2976f5a0aeb4965514a828e6902]\n[ 57.202947] nfs4_file_flush+0x72/0xb0 [nfsv4 c716d88496ded0ea6d289bbea684fa996f9b57a9]\n[ 57.202969] __se_sys_close+0x46/0xd0\n[ 57.202972] do_syscall_64+0x68/0x100\n[ 57.202975] ? do_syscall_64+0x77/0x100\n[ 57.202976] ? do_syscall_64+0x77/0x100\n[ 57.202979] entry_SYSCALL_64_after_hwframe+0x6e/0x76\n[ 57.202982] RIP: 0033:0x7fe2b12e4a94\n[ 57.202985] Code: 00 f7 d8 64 89 01 48 83 c8 ff c3 66 2e 0f 1f 84 00 00 00 00 00 90 f3 0f 1e fa 80 3d d5 18 0e 00 00 74 13 b8 03 00 00 00 0f 05 <48> 3d 00 f0 ff ff 77 44 c3 0f 1f 00 48 83 ec 18 89 7c 24 0c e8 c3\n[ 57.202987] RSP: 002b:00007ffe857ddb38 EFLAGS: 00000202 ORIG_RAX: 0000000000000003\n[ 57.202989] RAX: ffffffffffffffda RBX: 00007ffe857dfd68 RCX: 00007fe2b12e4a94\n[ 57.202991] RDX: 0000000000002000 RSI: 00007ffe857ddc40 RDI: 0000000000000003\n[ 57.202992] RBP: 00007ffe857dfc50 R08: 7fffffffffffffff R09: 0000000065650f49\n[ 57.202993] R10: 00007f\n---truncated---", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -63,7 +66,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-26T18:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-97c2-hm96-mgpf/GHSA-97c2-hm96-mgpf.json b/advisories/unreviewed/2024/03/GHSA-97c2-hm96-mgpf/GHSA-97c2-hm96-mgpf.json index b25dcef3b21..e2843cae5c8 100644 --- a/advisories/unreviewed/2024/03/GHSA-97c2-hm96-mgpf/GHSA-97c2-hm96-mgpf.json +++ b/advisories/unreviewed/2024/03/GHSA-97c2-hm96-mgpf/GHSA-97c2-hm96-mgpf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-97c2-hm96-mgpf", - "modified": "2024-03-21T00:30:54Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-03-21T00:30:54Z", "aliases": [ "CVE-2024-24050" ], "details": "Cross Site Scripting (XSS) vulnerability in Sourcecodester Workout Journal App 1.0 allows attackers to run arbitrary code via parameters firstname and lastname in /add-user.php.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-20T22:15:08Z" diff --git a/advisories/unreviewed/2024/03/GHSA-r78f-49fx-h798/GHSA-r78f-49fx-h798.json b/advisories/unreviewed/2024/03/GHSA-r78f-49fx-h798/GHSA-r78f-49fx-h798.json index dd524275de2..ec2ac858fd0 100644 --- a/advisories/unreviewed/2024/03/GHSA-r78f-49fx-h798/GHSA-r78f-49fx-h798.json +++ b/advisories/unreviewed/2024/03/GHSA-r78f-49fx-h798/GHSA-r78f-49fx-h798.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r78f-49fx-h798", - "modified": "2024-03-25T18:30:57Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-03-19T12:30:41Z", "aliases": [ "CVE-2024-2616" ], "details": "To harden ICU against exploitation, the behavior for out-of-memory conditions was changed to crash instead of attempt to continue. This vulnerability affects Firefox ESR < 115.9 and Thunderbird < 115.9.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -43,7 +46,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-19T12:15:09Z" diff --git a/advisories/unreviewed/2024/03/GHSA-v558-mxh5-rq8q/GHSA-v558-mxh5-rq8q.json b/advisories/unreviewed/2024/03/GHSA-v558-mxh5-rq8q/GHSA-v558-mxh5-rq8q.json index 0238a68b1ae..2c76ed539dd 100644 --- a/advisories/unreviewed/2024/03/GHSA-v558-mxh5-rq8q/GHSA-v558-mxh5-rq8q.json +++ b/advisories/unreviewed/2024/03/GHSA-v558-mxh5-rq8q/GHSA-v558-mxh5-rq8q.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-v558-mxh5-rq8q", - "modified": "2024-03-11T21:31:27Z", + "modified": "2024-11-04T18:31:16Z", "published": "2024-03-11T21:31:27Z", "aliases": [ "CVE-2024-27234" ], "details": "In fvp_set_target of fvp.c, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-03-11T19:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-23rc-q984-j9jx/GHSA-23rc-q984-j9jx.json b/advisories/unreviewed/2024/04/GHSA-23rc-q984-j9jx/GHSA-23rc-q984-j9jx.json index 531e8281ebc..e85579d0a51 100644 --- a/advisories/unreviewed/2024/04/GHSA-23rc-q984-j9jx/GHSA-23rc-q984-j9jx.json +++ b/advisories/unreviewed/2024/04/GHSA-23rc-q984-j9jx/GHSA-23rc-q984-j9jx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-23rc-q984-j9jx", - "modified": "2024-04-29T21:30:34Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-29T21:30:34Z", "aliases": [ "CVE-2024-31747" ], "details": "An issue in Yealink VP59 Microsoft Teams Phone firmware 91.15.0.118 (fixed in 122.15.0.142) allows a physically proximate attacker to disable the phone lock via the Walkie Talkie menu option.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-29T19:15:20Z" diff --git a/advisories/unreviewed/2024/04/GHSA-3435-33m7-pm93/GHSA-3435-33m7-pm93.json b/advisories/unreviewed/2024/04/GHSA-3435-33m7-pm93/GHSA-3435-33m7-pm93.json index ce0e1c6a31d..5a0c4788ed7 100644 --- a/advisories/unreviewed/2024/04/GHSA-3435-33m7-pm93/GHSA-3435-33m7-pm93.json +++ b/advisories/unreviewed/2024/04/GHSA-3435-33m7-pm93/GHSA-3435-33m7-pm93.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-3435-33m7-pm93", - "modified": "2024-04-11T21:30:52Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-11T21:30:52Z", "aliases": [ "CVE-2024-22721" ], "details": "Cross Site Request Forgery (CSRF) vulnerability in Form Tools 3.1.1 allows attackers to manipulate sensitive user data via crafted link.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-11T20:15:33Z" diff --git a/advisories/unreviewed/2024/04/GHSA-g726-jqm5-9q9f/GHSA-g726-jqm5-9q9f.json b/advisories/unreviewed/2024/04/GHSA-g726-jqm5-9q9f/GHSA-g726-jqm5-9q9f.json index 0f905dbbe07..d4ec854899d 100644 --- a/advisories/unreviewed/2024/04/GHSA-g726-jqm5-9q9f/GHSA-g726-jqm5-9q9f.json +++ b/advisories/unreviewed/2024/04/GHSA-g726-jqm5-9q9f/GHSA-g726-jqm5-9q9f.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g726-jqm5-9q9f", - "modified": "2024-04-08T03:30:52Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-08T03:30:52Z", "aliases": [ "CVE-2023-52343" ], "details": "In SecurityCommand message after as security has been actived., there is a possible improper input validation. This could lead to remote information disclosure no additional execution privileges needed", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1284" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-08T03:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-gvq9-2m65-mcj6/GHSA-gvq9-2m65-mcj6.json b/advisories/unreviewed/2024/04/GHSA-gvq9-2m65-mcj6/GHSA-gvq9-2m65-mcj6.json index f8cd7c288e4..05abfa8e496 100644 --- a/advisories/unreviewed/2024/04/GHSA-gvq9-2m65-mcj6/GHSA-gvq9-2m65-mcj6.json +++ b/advisories/unreviewed/2024/04/GHSA-gvq9-2m65-mcj6/GHSA-gvq9-2m65-mcj6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-gvq9-2m65-mcj6", - "modified": "2024-04-11T06:30:35Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-11T06:30:35Z", "aliases": [ "CVE-2024-30883" ], "details": "Reflected Cross Site Scripting (XSS) vulnerability in RageFrame2 v2.6.43, allows remote attackers to execute arbitrary web scripts or HTML and obtain sensitive information via a crafted payload injected into the aspectRatio parameter in the image cropping function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-11T05:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-h4c3-x7vv-8q28/GHSA-h4c3-x7vv-8q28.json b/advisories/unreviewed/2024/04/GHSA-h4c3-x7vv-8q28/GHSA-h4c3-x7vv-8q28.json index fa6909ec2ed..79a1fc8603f 100644 --- a/advisories/unreviewed/2024/04/GHSA-h4c3-x7vv-8q28/GHSA-h4c3-x7vv-8q28.json +++ b/advisories/unreviewed/2024/04/GHSA-h4c3-x7vv-8q28/GHSA-h4c3-x7vv-8q28.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h4c3-x7vv-8q28", - "modified": "2024-04-07T21:30:28Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-07T21:30:28Z", "aliases": [ "CVE-2024-31951" ], "details": "In the Opaque LSA Extended Link parser in FRRouting (FRR) through 9.1, there can be a buffer overflow and daemon crash in ospf_te_parse_ext_link for OSPF LSA packets during an attempt to read Segment Routing Adjacency SID subTLVs (lengths are not validated).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-120" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-07T21:15:07Z" diff --git a/advisories/unreviewed/2024/04/GHSA-jcww-8cqj-r3v2/GHSA-jcww-8cqj-r3v2.json b/advisories/unreviewed/2024/04/GHSA-jcww-8cqj-r3v2/GHSA-jcww-8cqj-r3v2.json index e2f50f62862..441cf6ccca5 100644 --- a/advisories/unreviewed/2024/04/GHSA-jcww-8cqj-r3v2/GHSA-jcww-8cqj-r3v2.json +++ b/advisories/unreviewed/2024/04/GHSA-jcww-8cqj-r3v2/GHSA-jcww-8cqj-r3v2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jcww-8cqj-r3v2", - "modified": "2024-04-26T21:31:11Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-26T21:31:11Z", "aliases": [ "CVE-2024-28327" ], "details": "Asus RT-N12+ B1 router stores user passwords in plaintext, which could allow local attackers to obtain unauthorized access and modify router settings.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-312" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-26T19:15:47Z" diff --git a/advisories/unreviewed/2024/04/GHSA-jv67-jxg9-q8v4/GHSA-jv67-jxg9-q8v4.json b/advisories/unreviewed/2024/04/GHSA-jv67-jxg9-q8v4/GHSA-jv67-jxg9-q8v4.json index 31bb635feed..db0723f0c93 100644 --- a/advisories/unreviewed/2024/04/GHSA-jv67-jxg9-q8v4/GHSA-jv67-jxg9-q8v4.json +++ b/advisories/unreviewed/2024/04/GHSA-jv67-jxg9-q8v4/GHSA-jv67-jxg9-q8v4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jv67-jxg9-q8v4", - "modified": "2024-04-04T09:30:35Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-04T09:30:35Z", "aliases": [ "CVE-2024-26786" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\niommufd: Fix iopt_access_list_id overwrite bug\n\nSyzkaller reported the following WARN_ON:\n WARNING: CPU: 1 PID: 4738 at drivers/iommu/iommufd/io_pagetable.c:1360\n\n Call Trace:\n iommufd_access_change_ioas+0x2fe/0x4e0\n iommufd_access_destroy_object+0x50/0xb0\n iommufd_object_remove+0x2a3/0x490\n iommufd_object_destroy_user\n iommufd_access_destroy+0x71/0xb0\n iommufd_test_staccess_release+0x89/0xd0\n __fput+0x272/0xb50\n __fput_sync+0x4b/0x60\n __do_sys_close\n __se_sys_close\n __x64_sys_close+0x8b/0x110\n do_syscall_x64\n\nThe mismatch between the access pointer in the list and the passed-in\npointer is resulting from an overwrite of access->iopt_access_list_id, in\niopt_add_access(). Called from iommufd_access_change_ioas() when\nxa_alloc() succeeds but iopt_calculate_iova_alignment() fails.\n\nAdd a new_id in iopt_add_access() and only update iopt_access_list_id when\nreturning successfully.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-04T09:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-m9v7-qqvg-7f89/GHSA-m9v7-qqvg-7f89.json b/advisories/unreviewed/2024/04/GHSA-m9v7-qqvg-7f89/GHSA-m9v7-qqvg-7f89.json index b2709395e79..895c8b83a75 100644 --- a/advisories/unreviewed/2024/04/GHSA-m9v7-qqvg-7f89/GHSA-m9v7-qqvg-7f89.json +++ b/advisories/unreviewed/2024/04/GHSA-m9v7-qqvg-7f89/GHSA-m9v7-qqvg-7f89.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m9v7-qqvg-7f89", - "modified": "2024-04-08T09:31:13Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-08T09:31:13Z", "aliases": [ "CVE-2023-52544" ], "details": "Vulnerability of file path verification being bypassed in the email module.\nImpact: Successful exploitation of this vulnerability may affect service confidentiality.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -31,7 +34,7 @@ "cwe_ids": [ "CWE-22" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-08T09:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-mxcm-w7fm-9qr2/GHSA-mxcm-w7fm-9qr2.json b/advisories/unreviewed/2024/04/GHSA-mxcm-w7fm-9qr2/GHSA-mxcm-w7fm-9qr2.json index daae68c79a9..5ab6e344f94 100644 --- a/advisories/unreviewed/2024/04/GHSA-mxcm-w7fm-9qr2/GHSA-mxcm-w7fm-9qr2.json +++ b/advisories/unreviewed/2024/04/GHSA-mxcm-w7fm-9qr2/GHSA-mxcm-w7fm-9qr2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mxcm-w7fm-9qr2", - "modified": "2024-04-09T21:32:00Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-09T21:32:00Z", "aliases": [ "CVE-2024-3545" ], "details": "Improper permission handling in the vault offline cache feature in Devolutions Remote Desktop Manager 2024.1.20 and earlier on windows and Devolutions Server 2024.1.8 and earlier allows an attacker to access sensitive informations contained in the offline cache file by gaining access to a computer where the software is installed even though the offline mode is disabled.\n\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-281" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-09T19:15:41Z" diff --git a/advisories/unreviewed/2024/04/GHSA-q9w5-9j33-5prx/GHSA-q9w5-9j33-5prx.json b/advisories/unreviewed/2024/04/GHSA-q9w5-9j33-5prx/GHSA-q9w5-9j33-5prx.json index af58cc6426f..14e97492354 100644 --- a/advisories/unreviewed/2024/04/GHSA-q9w5-9j33-5prx/GHSA-q9w5-9j33-5prx.json +++ b/advisories/unreviewed/2024/04/GHSA-q9w5-9j33-5prx/GHSA-q9w5-9j33-5prx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q9w5-9j33-5prx", - "modified": "2024-04-01T03:30:41Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-01T03:30:41Z", "aliases": [ "CVE-2024-20051" ], "details": "In flashc, there is a possible system crash due to an uncaught exception. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541758.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-01T03:15:08Z" diff --git a/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json b/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json index c4188cf5807..faaba9f8dfe 100644 --- a/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json +++ b/advisories/unreviewed/2024/04/GHSA-rh2q-xgw7-5r5r/GHSA-rh2q-xgw7-5r5r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-rh2q-xgw7-5r5r", - "modified": "2024-04-25T18:30:39Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-25T18:30:39Z", "aliases": [ "CVE-2024-30890" ], "details": "Cross Site Scripting vulnerability in ED01-CMS v.1.0 allows an attacker to obtain sensitive information via the categories.php component.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-25T17:15:49Z" diff --git a/advisories/unreviewed/2024/04/GHSA-vw56-6j9w-9rvx/GHSA-vw56-6j9w-9rvx.json b/advisories/unreviewed/2024/04/GHSA-vw56-6j9w-9rvx/GHSA-vw56-6j9w-9rvx.json index fbc0d50273c..d29ee21ba84 100644 --- a/advisories/unreviewed/2024/04/GHSA-vw56-6j9w-9rvx/GHSA-vw56-6j9w-9rvx.json +++ b/advisories/unreviewed/2024/04/GHSA-vw56-6j9w-9rvx/GHSA-vw56-6j9w-9rvx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vw56-6j9w-9rvx", - "modified": "2024-04-02T09:30:41Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-04-02T09:30:41Z", "aliases": [ "CVE-2024-26666" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nwifi: mac80211: fix RCU use in TDLS fast-xmit\n\nThis looks up the link under RCU protection, but isn't\nguaranteed to actually have protection. Fix that.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-04-02T07:15:43Z" diff --git a/advisories/unreviewed/2024/05/GHSA-24r3-rx3r-wgvw/GHSA-24r3-rx3r-wgvw.json b/advisories/unreviewed/2024/05/GHSA-24r3-rx3r-wgvw/GHSA-24r3-rx3r-wgvw.json index c1d0fddc529..5ea26ee7d48 100644 --- a/advisories/unreviewed/2024/05/GHSA-24r3-rx3r-wgvw/GHSA-24r3-rx3r-wgvw.json +++ b/advisories/unreviewed/2024/05/GHSA-24r3-rx3r-wgvw/GHSA-24r3-rx3r-wgvw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-24r3-rx3r-wgvw", - "modified": "2024-05-23T18:30:55Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-05-21T15:31:45Z", "aliases": [ "CVE-2024-33528" ], "details": "A Stored Cross-site Scripting (XSS) vulnerability in ILIAS 7 before 7.30 and ILIAS 8 before 8.11 allows remote authenticated attackers with tutor privileges to inject arbitrary web script or HTML via XML file upload.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-21T15:15:29Z" diff --git a/advisories/unreviewed/2024/05/GHSA-f5wq-9rwv-wqh8/GHSA-f5wq-9rwv-wqh8.json b/advisories/unreviewed/2024/05/GHSA-f5wq-9rwv-wqh8/GHSA-f5wq-9rwv-wqh8.json index f0980f4e2c9..fe2007fb00c 100644 --- a/advisories/unreviewed/2024/05/GHSA-f5wq-9rwv-wqh8/GHSA-f5wq-9rwv-wqh8.json +++ b/advisories/unreviewed/2024/05/GHSA-f5wq-9rwv-wqh8/GHSA-f5wq-9rwv-wqh8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f5wq-9rwv-wqh8", - "modified": "2024-05-01T21:30:38Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-05-01T21:30:38Z", "aliases": [ "CVE-2023-46294" ], "details": "An issue was discovered in Teledyne FLIR M300 2.00-19. User account passwords are encrypted locally, and can be decrypted to cleartext passwords using the utility umSetup. This utility requires root permissions to execute.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-312" ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T20:15:12Z" diff --git a/advisories/unreviewed/2024/05/GHSA-mqwf-3v63-p67r/GHSA-mqwf-3v63-p67r.json b/advisories/unreviewed/2024/05/GHSA-mqwf-3v63-p67r/GHSA-mqwf-3v63-p67r.json index 8164f8f18cf..4c6d6d1933e 100644 --- a/advisories/unreviewed/2024/05/GHSA-mqwf-3v63-p67r/GHSA-mqwf-3v63-p67r.json +++ b/advisories/unreviewed/2024/05/GHSA-mqwf-3v63-p67r/GHSA-mqwf-3v63-p67r.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mqwf-3v63-p67r", - "modified": "2024-06-27T15:30:39Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-05-19T12:30:39Z", "aliases": [ "CVE-2024-35947" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\ndyndbg: fix old BUG_ON in >control parser\n\nFix a BUG_ON from 2009. Even if it looks \"unreachable\" (I didn't\nreally look), lets make sure by removing it, doing pr_err and return\n-EINVAL instead.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -67,7 +70,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-19T12:15:08Z" diff --git a/advisories/unreviewed/2024/05/GHSA-qwvj-5fwc-qxf7/GHSA-qwvj-5fwc-qxf7.json b/advisories/unreviewed/2024/05/GHSA-qwvj-5fwc-qxf7/GHSA-qwvj-5fwc-qxf7.json index 121b3606cdc..eff37841cab 100644 --- a/advisories/unreviewed/2024/05/GHSA-qwvj-5fwc-qxf7/GHSA-qwvj-5fwc-qxf7.json +++ b/advisories/unreviewed/2024/05/GHSA-qwvj-5fwc-qxf7/GHSA-qwvj-5fwc-qxf7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qwvj-5fwc-qxf7", - "modified": "2024-06-27T15:30:38Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-05-01T06:31:42Z", "aliases": [ "CVE-2024-26956" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnilfs2: fix failure to detect DAT corruption in btree and direct mappings\n\nPatch series \"nilfs2: fix kernel bug at submit_bh_wbc()\".\n\nThis resolves a kernel BUG reported by syzbot. Since there are two\nflaws involved, I've made each one a separate patch.\n\nThe first patch alone resolves the syzbot-reported bug, but I think\nboth fixes should be sent to stable, so I've tagged them as such.\n\n\nThis patch (of 2):\n\nSyzbot has reported a kernel bug in submit_bh_wbc() when writing file data\nto a nilfs2 file system whose metadata is corrupted.\n\nThere are two flaws involved in this issue.\n\nThe first flaw is that when nilfs_get_block() locates a data block using\nbtree or direct mapping, if the disk address translation routine\nnilfs_dat_translate() fails with internal code -ENOENT due to DAT metadata\ncorruption, it can be passed back to nilfs_get_block(). This causes\nnilfs_get_block() to misidentify an existing block as non-existent,\ncausing both data block lookup and insertion to fail inconsistently.\n\nThe second flaw is that nilfs_get_block() returns a successful status in\nthis inconsistent state. This causes the caller __block_write_begin_int()\nor others to request a read even though the buffer is not mapped,\nresulting in a BUG_ON check for the BH_Mapped flag in submit_bh_wbc()\nfailing.\n\nThis fixes the first issue by changing the return value to code -EINVAL\nwhen a conversion using DAT fails with code -ENOENT, avoiding the\nconflicting condition that leads to the kernel bug described above. Here,\ncode -EINVAL indicates that metadata corruption was detected during the\nblock lookup, which will be properly handled as a file system error and\nconverted to -EIO when passing through the nilfs2 bmap layer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -67,7 +70,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:11Z" diff --git a/advisories/unreviewed/2024/05/GHSA-x4vx-jp8h-mrcx/GHSA-x4vx-jp8h-mrcx.json b/advisories/unreviewed/2024/05/GHSA-x4vx-jp8h-mrcx/GHSA-x4vx-jp8h-mrcx.json index fd1de9b6575..2f5bebbd9db 100644 --- a/advisories/unreviewed/2024/05/GHSA-x4vx-jp8h-mrcx/GHSA-x4vx-jp8h-mrcx.json +++ b/advisories/unreviewed/2024/05/GHSA-x4vx-jp8h-mrcx/GHSA-x4vx-jp8h-mrcx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x4vx-jp8h-mrcx", - "modified": "2024-05-14T18:31:05Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-05-14T18:31:05Z", "aliases": [ "CVE-2024-4766" ], "details": "Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have lead to potential user confusion and spoofing attacks.\n*This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 126.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-14T18:15:13Z" diff --git a/advisories/unreviewed/2024/05/GHSA-x632-g56x-qcm8/GHSA-x632-g56x-qcm8.json b/advisories/unreviewed/2024/05/GHSA-x632-g56x-qcm8/GHSA-x632-g56x-qcm8.json index 091e664b5d6..013062476f4 100644 --- a/advisories/unreviewed/2024/05/GHSA-x632-g56x-qcm8/GHSA-x632-g56x-qcm8.json +++ b/advisories/unreviewed/2024/05/GHSA-x632-g56x-qcm8/GHSA-x632-g56x-qcm8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x632-g56x-qcm8", - "modified": "2024-06-27T12:30:45Z", + "modified": "2024-11-04T18:31:17Z", "published": "2024-05-01T06:31:43Z", "aliases": [ "CVE-2024-26994" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nspeakup: Avoid crash on very long word\n\nIn case a console is set up really large and contains a really long word\n(> 256 characters), we have to stop before the length of the word buffer.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -75,7 +78,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-05-01T06:15:17Z" diff --git a/advisories/unreviewed/2024/06/GHSA-f67x-xvfp-8cjm/GHSA-f67x-xvfp-8cjm.json b/advisories/unreviewed/2024/06/GHSA-f67x-xvfp-8cjm/GHSA-f67x-xvfp-8cjm.json index 80701507494..a5696636704 100644 --- a/advisories/unreviewed/2024/06/GHSA-f67x-xvfp-8cjm/GHSA-f67x-xvfp-8cjm.json +++ b/advisories/unreviewed/2024/06/GHSA-f67x-xvfp-8cjm/GHSA-f67x-xvfp-8cjm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f67x-xvfp-8cjm", - "modified": "2024-06-03T03:31:04Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-06-03T03:31:04Z", "aliases": [ "CVE-2024-20065" ], "details": "In telephony, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08698617; Issue ID: MSV-1394.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ "CWE-284" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-03T02:15:08Z" diff --git a/advisories/unreviewed/2024/06/GHSA-hjp4-5jqf-9vgq/GHSA-hjp4-5jqf-9vgq.json b/advisories/unreviewed/2024/06/GHSA-hjp4-5jqf-9vgq/GHSA-hjp4-5jqf-9vgq.json index 321ca03e4dd..199bffb83f3 100644 --- a/advisories/unreviewed/2024/06/GHSA-hjp4-5jqf-9vgq/GHSA-hjp4-5jqf-9vgq.json +++ b/advisories/unreviewed/2024/06/GHSA-hjp4-5jqf-9vgq/GHSA-hjp4-5jqf-9vgq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hjp4-5jqf-9vgq", - "modified": "2024-07-04T06:35:04Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-06-26T06:30:29Z", "aliases": [ "CVE-2024-27867" ], "details": "An authentication issue was addressed with improved state management. This issue is fixed in AirPods Firmware Update 6A326, AirPods Firmware Update 6F8, and Beats Firmware Update 6F8. When your headphones are seeking a connection request to one of your previously paired devices, an attacker in Bluetooth range might be able to spoof the intended source device and gain access to your headphones.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L" + } ], "affected": [ @@ -35,7 +38,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-26T04:15:11Z" diff --git a/advisories/unreviewed/2024/06/GHSA-j27x-m3vr-xwcf/GHSA-j27x-m3vr-xwcf.json b/advisories/unreviewed/2024/06/GHSA-j27x-m3vr-xwcf/GHSA-j27x-m3vr-xwcf.json index 9a8a4053e9b..fdf06963cc1 100644 --- a/advisories/unreviewed/2024/06/GHSA-j27x-m3vr-xwcf/GHSA-j27x-m3vr-xwcf.json +++ b/advisories/unreviewed/2024/06/GHSA-j27x-m3vr-xwcf/GHSA-j27x-m3vr-xwcf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j27x-m3vr-xwcf", - "modified": "2024-06-03T09:30:47Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-06-03T09:30:47Z", "aliases": [ "CVE-2024-36962" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nnet: ks8851: Queue RX packets in IRQ handler instead of disabling BHs\n\nCurrently the driver uses local_bh_disable()/local_bh_enable() in its\nIRQ handler to avoid triggering net_rx_action() softirq on exit from\nnetif_rx(). The net_rx_action() could trigger this driver .start_xmit\ncallback, which is protected by the same lock as the IRQ handler, so\ncalling the .start_xmit from netif_rx() from the IRQ handler critical\nsection protected by the lock could lead to an attempt to claim the\nalready claimed lock, and a hang.\n\nThe local_bh_disable()/local_bh_enable() approach works only in case\nthe IRQ handler is protected by a spinlock, but does not work if the\nIRQ handler is protected by mutex, i.e. this works for KS8851 with\nParallel bus interface, but not for KS8851 with SPI bus interface.\n\nRemove the BH manipulation and instead of calling netif_rx() inside\nthe IRQ handler code protected by the lock, queue all the received\nSKBs in the IRQ handler into a queue first, and once the IRQ handler\nexits the critical section protected by the lock, dequeue all the\nqueued SKBs and push them all into netif_rx(). At this point, it is\nsafe to trigger the net_rx_action() softirq, since the netif_rx()\ncall is outside of the lock that protects the IRQ handler.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-03T08:15:09Z" diff --git a/advisories/unreviewed/2024/06/GHSA-jj7q-23xp-h55w/GHSA-jj7q-23xp-h55w.json b/advisories/unreviewed/2024/06/GHSA-jj7q-23xp-h55w/GHSA-jj7q-23xp-h55w.json index 96e4305f7ce..ffb7d760a73 100644 --- a/advisories/unreviewed/2024/06/GHSA-jj7q-23xp-h55w/GHSA-jj7q-23xp-h55w.json +++ b/advisories/unreviewed/2024/06/GHSA-jj7q-23xp-h55w/GHSA-jj7q-23xp-h55w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jj7q-23xp-h55w", - "modified": "2024-06-13T21:30:55Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-06-13T21:30:55Z", "aliases": [ "CVE-2024-32916" ], "details": "In fvp_freq_histogram_init of fvp.c, there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-13T21:15:55Z" diff --git a/advisories/unreviewed/2024/06/GHSA-r96m-mwvr-946h/GHSA-r96m-mwvr-946h.json b/advisories/unreviewed/2024/06/GHSA-r96m-mwvr-946h/GHSA-r96m-mwvr-946h.json index 9e27d5e24b1..26bb7816d59 100644 --- a/advisories/unreviewed/2024/06/GHSA-r96m-mwvr-946h/GHSA-r96m-mwvr-946h.json +++ b/advisories/unreviewed/2024/06/GHSA-r96m-mwvr-946h/GHSA-r96m-mwvr-946h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r96m-mwvr-946h", - "modified": "2024-06-17T15:30:42Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-06-07T06:30:29Z", "aliases": [ "CVE-2024-37384" ], "details": "Roundcube Webmail before 1.5.7 and 1.6.x before 1.6.7 allows XSS via list columns from user preferences.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -39,7 +42,7 @@ "cwe_ids": [ "CWE-79" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-06-07T04:15:30Z" diff --git a/advisories/unreviewed/2024/07/GHSA-f25c-wxgv-xhrw/GHSA-f25c-wxgv-xhrw.json b/advisories/unreviewed/2024/07/GHSA-f25c-wxgv-xhrw/GHSA-f25c-wxgv-xhrw.json index 2307018307a..a50e687b05c 100644 --- a/advisories/unreviewed/2024/07/GHSA-f25c-wxgv-xhrw/GHSA-f25c-wxgv-xhrw.json +++ b/advisories/unreviewed/2024/07/GHSA-f25c-wxgv-xhrw/GHSA-f25c-wxgv-xhrw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f25c-wxgv-xhrw", - "modified": "2024-07-30T06:30:37Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-07-30T06:30:37Z", "aliases": [ "CVE-2024-6536" ], "details": "The Zephyr Project Manager WordPress plugin before 3.3.99 does not sanitise and escape some of its settings, which could allow high privilege users such as editors and admins to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -27,7 +30,7 @@ "cwe_ids": [ ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-07-30T06:15:04Z" diff --git a/advisories/unreviewed/2024/08/GHSA-pp7w-98jh-p48w/GHSA-pp7w-98jh-p48w.json b/advisories/unreviewed/2024/08/GHSA-pp7w-98jh-p48w/GHSA-pp7w-98jh-p48w.json index 249a97dde41..0dfa26f2f81 100644 --- a/advisories/unreviewed/2024/08/GHSA-pp7w-98jh-p48w/GHSA-pp7w-98jh-p48w.json +++ b/advisories/unreviewed/2024/08/GHSA-pp7w-98jh-p48w/GHSA-pp7w-98jh-p48w.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-pp7w-98jh-p48w", - "modified": "2024-08-13T18:31:15Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-08-13T18:31:15Z", "aliases": [ "CVE-2023-31304" @@ -28,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-1284" ], "severity": "LOW", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/09/GHSA-mgrp-q987-h8p8/GHSA-mgrp-q987-h8p8.json b/advisories/unreviewed/2024/09/GHSA-mgrp-q987-h8p8/GHSA-mgrp-q987-h8p8.json index 0e01caa0779..c6ffcb465b8 100644 --- a/advisories/unreviewed/2024/09/GHSA-mgrp-q987-h8p8/GHSA-mgrp-q987-h8p8.json +++ b/advisories/unreviewed/2024/09/GHSA-mgrp-q987-h8p8/GHSA-mgrp-q987-h8p8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mgrp-q987-h8p8", - "modified": "2024-09-11T00:30:51Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-09-11T00:30:51Z", "aliases": [ "CVE-2024-40656" ], "details": "In handleCreateConferenceComplete of ConnectionServiceWrapper.java, there is a possible way to reveal images across users due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-11T00:15:11Z" diff --git a/advisories/unreviewed/2024/09/GHSA-vm34-2mcq-j9q8/GHSA-vm34-2mcq-j9q8.json b/advisories/unreviewed/2024/09/GHSA-vm34-2mcq-j9q8/GHSA-vm34-2mcq-j9q8.json index 8e3fdb15886..517ab90b998 100644 --- a/advisories/unreviewed/2024/09/GHSA-vm34-2mcq-j9q8/GHSA-vm34-2mcq-j9q8.json +++ b/advisories/unreviewed/2024/09/GHSA-vm34-2mcq-j9q8/GHSA-vm34-2mcq-j9q8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vm34-2mcq-j9q8", - "modified": "2024-09-23T18:30:34Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-09-23T18:30:34Z", "aliases": [ "CVE-2024-39341" ], "details": "Entrust Instant Financial Issuance (On Premise) Software (formerly known as Cardwizard) 6.10.0, 6.9.0, 6.9.1, 6.9.2, and 6.8.x and earlier leaves behind a configuration file (i.e. WebAPI.cfg.xml) after the installation process. This file can be accessed without authentication on HTTP port 80 by guessing the correct IIS webroot path. It includes system configuration parameter names and values with sensitive configuration values encrypted.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } ], "affected": [ @@ -33,9 +36,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-290" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-09-23T18:15:05Z" diff --git a/advisories/unreviewed/2024/10/GHSA-7gm5-m2xc-vh2j/GHSA-7gm5-m2xc-vh2j.json b/advisories/unreviewed/2024/10/GHSA-7gm5-m2xc-vh2j/GHSA-7gm5-m2xc-vh2j.json index 68fe27bc799..1116a0f775f 100644 --- a/advisories/unreviewed/2024/10/GHSA-7gm5-m2xc-vh2j/GHSA-7gm5-m2xc-vh2j.json +++ b/advisories/unreviewed/2024/10/GHSA-7gm5-m2xc-vh2j/GHSA-7gm5-m2xc-vh2j.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-922" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json b/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json index 27665ae1411..db6253285c5 100644 --- a/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json +++ b/advisories/unreviewed/2024/10/GHSA-grqq-hcc7-crmr/GHSA-grqq-hcc7-crmr.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-grqq-hcc7-crmr", - "modified": "2024-10-30T18:30:46Z", + "modified": "2024-11-04T18:31:18Z", "published": "2024-10-22T18:32:12Z", "aliases": [ "CVE-2024-9287" @@ -29,6 +29,22 @@ "type": "WEB", "url": "https://github.com/python/cpython/pull/124712" }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/633555735a023d3e4d92ba31da35b1205f9ecbd7" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/8450b2482586857d689b6658f08de9c8179af7db" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/9286ab3a107ea41bd3f3c3682ce2512692bdded8" + }, + { + "type": "WEB", + "url": "https://github.com/python/cpython/commit/ae961ae94bf19c8f8c7fbea3d1c25cc55ce8ae97" + }, { "type": "WEB", "url": "https://github.com/python/cpython/commit/e52095a0c1005a87eed2276af7a1f2f66e2b6483" diff --git a/advisories/unreviewed/2024/11/GHSA-27r6-xq24-p9x8/GHSA-27r6-xq24-p9x8.json b/advisories/unreviewed/2024/11/GHSA-27r6-xq24-p9x8/GHSA-27r6-xq24-p9x8.json new file mode 100644 index 00000000000..72ad3012360 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-27r6-xq24-p9x8/GHSA-27r6-xq24-p9x8.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-27r6-xq24-p9x8", + "modified": "2024-11-04T18:31:23Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-34887" + ], + "details": "Insufficiently protected credentials in AD/LDAP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send AD/LDAP administrators account passwords to an arbitrary server via HTTP POST request.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34887" + }, + { + "type": "WEB", + "url": "https://github.com/DrieVlad/BitrixVulns" + }, + { + "type": "WEB", + "url": "http://bitrix24.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-287m-m4rw-v572/GHSA-287m-m4rw-v572.json b/advisories/unreviewed/2024/11/GHSA-287m-m4rw-v572/GHSA-287m-m4rw-v572.json index f1c88c5ab9c..69e78ce3c10 100644 --- a/advisories/unreviewed/2024/11/GHSA-287m-m4rw-v572/GHSA-287m-m4rw-v572.json +++ b/advisories/unreviewed/2024/11/GHSA-287m-m4rw-v572/GHSA-287m-m4rw-v572.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-287m-m4rw-v572", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:20Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-51246" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doPPTP function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T14:15:16Z" diff --git a/advisories/unreviewed/2024/11/GHSA-2qxr-7mvv-54x4/GHSA-2qxr-7mvv-54x4.json b/advisories/unreviewed/2024/11/GHSA-2qxr-7mvv-54x4/GHSA-2qxr-7mvv-54x4.json index aaa99a4ff17..766cbc36838 100644 --- a/advisories/unreviewed/2024/11/GHSA-2qxr-7mvv-54x4/GHSA-2qxr-7mvv-54x4.json +++ b/advisories/unreviewed/2024/11/GHSA-2qxr-7mvv-54x4/GHSA-2qxr-7mvv-54x4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2qxr-7mvv-54x4", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:20Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-51251" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the backup function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T14:15:16Z" diff --git a/advisories/unreviewed/2024/11/GHSA-38w9-w6h5-wfxm/GHSA-38w9-w6h5-wfxm.json b/advisories/unreviewed/2024/11/GHSA-38w9-w6h5-wfxm/GHSA-38w9-w6h5-wfxm.json new file mode 100644 index 00000000000..1ff0ca6225e --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-38w9-w6h5-wfxm/GHSA-38w9-w6h5-wfxm.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-38w9-w6h5-wfxm", + "modified": "2024-11-04T18:31:24Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-51328" + ], + "details": "Cross Site Scripting vulnerability in addcategory.php in projectworld's Travel Management System v1.0 allows remote attacker to inject arbitrary code via the t2 parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51328" + }, + { + "type": "WEB", + "url": "https://github.com/redtrib3/CVEs/tree/main/CVE-2024-51328%20-%20Stored%20XSS%20" + }, + { + "type": "WEB", + "url": "https://projectworlds.in" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-43xj-7j8x-m26r/GHSA-43xj-7j8x-m26r.json b/advisories/unreviewed/2024/11/GHSA-43xj-7j8x-m26r/GHSA-43xj-7j8x-m26r.json new file mode 100644 index 00000000000..bba55c87d16 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-43xj-7j8x-m26r/GHSA-43xj-7j8x-m26r.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-43xj-7j8x-m26r", + "modified": "2024-11-04T18:31:22Z", + "published": "2024-11-04T18:31:22Z", + "aliases": [ + "CVE-2024-10766" + ], + "details": "A vulnerability, which was classified as critical, has been found in Codezips Free Exam Hall Seating Management System 1.0. This issue affects some unknown processing of the file /pages/save_user.php. The manipulation of the argument image leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The initial researcher disclosure contains confusing vulnerability classes and file names.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10766" + }, + { + "type": "WEB", + "url": "https://github.com/Charlotte008/cve/issues/3" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.282953" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.282953" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436478" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-4fhq-xw64-436p/GHSA-4fhq-xw64-436p.json b/advisories/unreviewed/2024/11/GHSA-4fhq-xw64-436p/GHSA-4fhq-xw64-436p.json index 2ef470e2360..8a7fdbb67b7 100644 --- a/advisories/unreviewed/2024/11/GHSA-4fhq-xw64-436p/GHSA-4fhq-xw64-436p.json +++ b/advisories/unreviewed/2024/11/GHSA-4fhq-xw64-436p/GHSA-4fhq-xw64-436p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4fhq-xw64-436p", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-04T18:31:19Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-51244" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doIPSec function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T17:15:18Z" diff --git a/advisories/unreviewed/2024/11/GHSA-4j38-c7m4-7f9g/GHSA-4j38-c7m4-7f9g.json b/advisories/unreviewed/2024/11/GHSA-4j38-c7m4-7f9g/GHSA-4j38-c7m4-7f9g.json index d5fb8d1f760..957edf5aca7 100644 --- a/advisories/unreviewed/2024/11/GHSA-4j38-c7m4-7f9g/GHSA-4j38-c7m4-7f9g.json +++ b/advisories/unreviewed/2024/11/GHSA-4j38-c7m4-7f9g/GHSA-4j38-c7m4-7f9g.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4j38-c7m4-7f9g", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-45882" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `delete_map_profile.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:21Z" diff --git a/advisories/unreviewed/2024/11/GHSA-4r9c-ghcc-8xqw/GHSA-4r9c-ghcc-8xqw.json b/advisories/unreviewed/2024/11/GHSA-4r9c-ghcc-8xqw/GHSA-4r9c-ghcc-8xqw.json new file mode 100644 index 00000000000..a3ac8c09759 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-4r9c-ghcc-8xqw/GHSA-4r9c-ghcc-8xqw.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4r9c-ghcc-8xqw", + "modified": "2024-11-04T18:31:22Z", + "published": "2024-11-04T18:31:22Z", + "aliases": [ + "CVE-2024-10765" + ], + "details": "A vulnerability classified as critical was found in Codezips Online Institute Management System up to 1.0. This vulnerability affects unknown code of the file /profile.php. The manipulation of the argument old_image leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10765" + }, + { + "type": "WEB", + "url": "https://github.com/hbuzs/CVE/issues/1" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.282952" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.282952" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436520" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T16:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-4vm6-5rvv-5jfp/GHSA-4vm6-5rvv-5jfp.json b/advisories/unreviewed/2024/11/GHSA-4vm6-5rvv-5jfp/GHSA-4vm6-5rvv-5jfp.json new file mode 100644 index 00000000000..3db3cf33d54 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-4vm6-5rvv-5jfp/GHSA-4vm6-5rvv-5jfp.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4vm6-5rvv-5jfp", + "modified": "2024-11-04T18:31:22Z", + "published": "2024-11-04T18:31:22Z", + "aliases": [ + "CVE-2024-34882" + ], + "details": "Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send SMTP account passwords to an arbitrary server via HTTP POST request.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34882" + }, + { + "type": "WEB", + "url": "https://github.com/DrieVlad/BitrixVulns" + }, + { + "type": "WEB", + "url": "http://bitrix24.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-5m99-8v6r-q8c5/GHSA-5m99-8v6r-q8c5.json b/advisories/unreviewed/2024/11/GHSA-5m99-8v6r-q8c5/GHSA-5m99-8v6r-q8c5.json index 287cefe9ba5..77339a3369b 100644 --- a/advisories/unreviewed/2024/11/GHSA-5m99-8v6r-q8c5/GHSA-5m99-8v6r-q8c5.json +++ b/advisories/unreviewed/2024/11/GHSA-5m99-8v6r-q8c5/GHSA-5m99-8v6r-q8c5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-5m99-8v6r-q8c5", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:20Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-51249" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the reboot function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T14:15:16Z" diff --git a/advisories/unreviewed/2024/11/GHSA-6prm-2vx7-8xwr/GHSA-6prm-2vx7-8xwr.json b/advisories/unreviewed/2024/11/GHSA-6prm-2vx7-8xwr/GHSA-6prm-2vx7-8xwr.json new file mode 100644 index 00000000000..0d85d50f568 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-6prm-2vx7-8xwr/GHSA-6prm-2vx7-8xwr.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6prm-2vx7-8xwr", + "modified": "2024-11-04T18:31:22Z", + "published": "2024-11-04T18:31:22Z", + "aliases": [ + "CVE-2024-48809" + ], + "details": "An issue in Open Networking Foundations sdran-in-a-box v.1.4.3 and onos-a1t v.0.2.3 allows a remote attacker to cause a denial of service via the onos-a1t component of the sdran-in-a-box, specifically the DeleteWatcher function.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48809" + }, + { + "type": "WEB", + "url": "https://github.com/onosproject/sdran-in-a-box/issues/206" + }, + { + "type": "WEB", + "url": "https://gist.github.com/bergen876/5a21f78e266c12aa2586beb2178443b0" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T17:15:07Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-6pw7-57q6-83j4/GHSA-6pw7-57q6-83j4.json b/advisories/unreviewed/2024/11/GHSA-6pw7-57q6-83j4/GHSA-6pw7-57q6-83j4.json index 5b603f1c274..c0f80284ee8 100644 --- a/advisories/unreviewed/2024/11/GHSA-6pw7-57q6-83j4/GHSA-6pw7-57q6-83j4.json +++ b/advisories/unreviewed/2024/11/GHSA-6pw7-57q6-83j4/GHSA-6pw7-57q6-83j4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-6pw7-57q6-83j4", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-45889" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `commandTable.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-6w7r-f23m-5rvh/GHSA-6w7r-f23m-5rvh.json b/advisories/unreviewed/2024/11/GHSA-6w7r-f23m-5rvh/GHSA-6w7r-f23m-5rvh.json new file mode 100644 index 00000000000..c6a2b673c30 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-6w7r-f23m-5rvh/GHSA-6w7r-f23m-5rvh.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6w7r-f23m-5rvh", + "modified": "2024-11-04T18:31:24Z", + "published": "2024-11-04T18:31:24Z", + "aliases": [ + "CVE-2024-51329" + ], + "details": "A Host header injection vulnerability in Agile-Board 1.0 allows attackers to obtain the password reset token via user interaction with a crafted password reset link.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51329" + }, + { + "type": "WEB", + "url": "https://github.com/idrsdev/agile-board/tree/main" + }, + { + "type": "WEB", + "url": "https://github.com/redtrib3/CVEs/tree/main/CVE-2024-51329%20-%20Host%20Header%20Injection" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-798f-vv9g-f5gg/GHSA-798f-vv9g-f5gg.json b/advisories/unreviewed/2024/11/GHSA-798f-vv9g-f5gg/GHSA-798f-vv9g-f5gg.json index 2e74f5736df..d0186b5a0c2 100644 --- a/advisories/unreviewed/2024/11/GHSA-798f-vv9g-f5gg/GHSA-798f-vv9g-f5gg.json +++ b/advisories/unreviewed/2024/11/GHSA-798f-vv9g-f5gg/GHSA-798f-vv9g-f5gg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-798f-vv9g-f5gg", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-04T18:31:20Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-51248" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the modifyrow function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T17:15:18Z" diff --git a/advisories/unreviewed/2024/11/GHSA-9jcp-9vh9-r3w5/GHSA-9jcp-9vh9-r3w5.json b/advisories/unreviewed/2024/11/GHSA-9jcp-9vh9-r3w5/GHSA-9jcp-9vh9-r3w5.json new file mode 100644 index 00000000000..bd8c21f8109 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9jcp-9vh9-r3w5/GHSA-9jcp-9vh9-r3w5.json @@ -0,0 +1,43 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9jcp-9vh9-r3w5", + "modified": "2024-11-04T18:31:22Z", + "published": "2024-11-04T18:31:22Z", + "aliases": [ + "CVE-2024-51136" + ], + "details": "An XML External Entity (XXE) vulnerability in Dmoz2CSV in openimaj v1.3.10 allows attackers to access sensitive information or execute arbitrary code via supplying a crafted XML file.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51136" + }, + { + "type": "WEB", + "url": "https://github.com/openimaj/openimaj/issues/382" + }, + { + "type": "WEB", + "url": "https://github.com/openimaj/openimaj" + }, + { + "type": "WEB", + "url": "https://mvnrepository.com/artifact/org.openimaj.tools/WebTools" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T17:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-9xg5-55cm-9gxr/GHSA-9xg5-55cm-9gxr.json b/advisories/unreviewed/2024/11/GHSA-9xg5-55cm-9gxr/GHSA-9xg5-55cm-9gxr.json new file mode 100644 index 00000000000..6c719ad319c --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-9xg5-55cm-9gxr/GHSA-9xg5-55cm-9gxr.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9xg5-55cm-9gxr", + "modified": "2024-11-04T18:31:23Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-48336" + ], + "details": "The install() function of ProviderInstaller.java in Magisk App before canary version 27007 does not verify the GMS app before loading it, which allows a local untrusted app with no additional privileges to silently execute arbitrary code in the Magisk app and escalate privileges to root via a crafted package, aka Bug #8279. User interaction is not needed for exploitation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-48336" + }, + { + "type": "WEB", + "url": "https://github.com/topjohnwu/Magisk/commit/c2eb6039579b8a2fb1e11a753cea7662c07bec02" + }, + { + "type": "WEB", + "url": "https://github.com/canyie/MagiskEoP" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-f63j-xmq2-hrpg/GHSA-f63j-xmq2-hrpg.json b/advisories/unreviewed/2024/11/GHSA-f63j-xmq2-hrpg/GHSA-f63j-xmq2-hrpg.json new file mode 100644 index 00000000000..9b7d66e92a2 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-f63j-xmq2-hrpg/GHSA-f63j-xmq2-hrpg.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f63j-xmq2-hrpg", + "modified": "2024-11-04T18:31:23Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-51326" + ], + "details": "SQL Injection vulnerability in projectworlds Travel management System v.1.0 allows a remote attacker to execute arbitrary code via the 't2' parameter in deletesubcategory.php.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51326" + }, + { + "type": "WEB", + "url": "https://github.com/redtrib3/CVEs/tree/main/CVE-2024-51326%20-%20Union%20SQLi" + }, + { + "type": "WEB", + "url": "https://projectworlds.in" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-f96w-x82r-jx85/GHSA-f96w-x82r-jx85.json b/advisories/unreviewed/2024/11/GHSA-f96w-x82r-jx85/GHSA-f96w-x82r-jx85.json index 16c08d12e51..8c15abbb07b 100644 --- a/advisories/unreviewed/2024/11/GHSA-f96w-x82r-jx85/GHSA-f96w-x82r-jx85.json +++ b/advisories/unreviewed/2024/11/GHSA-f96w-x82r-jx85/GHSA-f96w-x82r-jx85.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-f96w-x82r-jx85", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-04T18:31:19Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-51247" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doPPPo function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T17:15:18Z" diff --git a/advisories/unreviewed/2024/11/GHSA-g6pp-x9v7-qxm2/GHSA-g6pp-x9v7-qxm2.json b/advisories/unreviewed/2024/11/GHSA-g6pp-x9v7-qxm2/GHSA-g6pp-x9v7-qxm2.json index a749783b274..26a0abb4299 100644 --- a/advisories/unreviewed/2024/11/GHSA-g6pp-x9v7-qxm2/GHSA-g6pp-x9v7-qxm2.json +++ b/advisories/unreviewed/2024/11/GHSA-g6pp-x9v7-qxm2/GHSA-g6pp-x9v7-qxm2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-g6pp-x9v7-qxm2", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-51253" ], "details": "In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doL2TP function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T14:15:16Z" diff --git a/advisories/unreviewed/2024/11/GHSA-hm22-mpqr-wp46/GHSA-hm22-mpqr-wp46.json b/advisories/unreviewed/2024/11/GHSA-hm22-mpqr-wp46/GHSA-hm22-mpqr-wp46.json new file mode 100644 index 00000000000..c3198f0c6bb --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-hm22-mpqr-wp46/GHSA-hm22-mpqr-wp46.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hm22-mpqr-wp46", + "modified": "2024-11-04T18:31:23Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-51327" + ], + "details": "SQL Injection in loginform.php in ProjectWorld's Travel Management System v1.0 allows remote attackers to bypass authentication via SQL Injection in the 'username' and 'password' fields.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51327" + }, + { + "type": "WEB", + "url": "https://github.com/redtrib3/CVEs/tree/main/CVE-2024-51327%20-%20SQLi%20Auth%20Bypass" + }, + { + "type": "WEB", + "url": "https://projectworlds.in" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-hmq5-8v4p-mm6q/GHSA-hmq5-8v4p-mm6q.json b/advisories/unreviewed/2024/11/GHSA-hmq5-8v4p-mm6q/GHSA-hmq5-8v4p-mm6q.json new file mode 100644 index 00000000000..62adeaac629 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-hmq5-8v4p-mm6q/GHSA-hmq5-8v4p-mm6q.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hmq5-8v4p-mm6q", + "modified": "2024-11-04T18:31:23Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-34883" + ], + "details": "Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allow remote administrators to read proxy-server accounts passwords via HTTP GET request.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-34883" + }, + { + "type": "WEB", + "url": "https://github.com/DrieVlad/BitrixVulns" + }, + { + "type": "WEB", + "url": "http://bitrix24.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-hvcg-cjrj-269v/GHSA-hvcg-cjrj-269v.json b/advisories/unreviewed/2024/11/GHSA-hvcg-cjrj-269v/GHSA-hvcg-cjrj-269v.json index 2e01f0672ff..a943a068a21 100644 --- a/advisories/unreviewed/2024/11/GHSA-hvcg-cjrj-269v/GHSA-hvcg-cjrj-269v.json +++ b/advisories/unreviewed/2024/11/GHSA-hvcg-cjrj-269v/GHSA-hvcg-cjrj-269v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hvcg-cjrj-269v", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-45885" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `autodiscovery_clear.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-jv8v-q52f-pxq9/GHSA-jv8v-q52f-pxq9.json b/advisories/unreviewed/2024/11/GHSA-jv8v-q52f-pxq9/GHSA-jv8v-q52f-pxq9.json index 1ddaf317471..a7a553a57c3 100644 --- a/advisories/unreviewed/2024/11/GHSA-jv8v-q52f-pxq9/GHSA-jv8v-q52f-pxq9.json +++ b/advisories/unreviewed/2024/11/GHSA-jv8v-q52f-pxq9/GHSA-jv8v-q52f-pxq9.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jv8v-q52f-pxq9", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-45888" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `set_ap_map_config.'", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-jx6x-3r9m-87fm/GHSA-jx6x-3r9m-87fm.json b/advisories/unreviewed/2024/11/GHSA-jx6x-3r9m-87fm/GHSA-jx6x-3r9m-87fm.json index f0f3756fabe..4d66b80dd61 100644 --- a/advisories/unreviewed/2024/11/GHSA-jx6x-3r9m-87fm/GHSA-jx6x-3r9m-87fm.json +++ b/advisories/unreviewed/2024/11/GHSA-jx6x-3r9m-87fm/GHSA-jx6x-3r9m-87fm.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jx6x-3r9m-87fm", - "modified": "2024-11-04T15:31:59Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:59Z", "aliases": [ "CVE-2024-45890" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `download_ovpn.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-qcw6-77mc-69mj/GHSA-qcw6-77mc-69mj.json b/advisories/unreviewed/2024/11/GHSA-qcw6-77mc-69mj/GHSA-qcw6-77mc-69mj.json index ae5ee149670..91bd40e4eae 100644 --- a/advisories/unreviewed/2024/11/GHSA-qcw6-77mc-69mj/GHSA-qcw6-77mc-69mj.json +++ b/advisories/unreviewed/2024/11/GHSA-qcw6-77mc-69mj/GHSA-qcw6-77mc-69mj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qcw6-77mc-69mj", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-45884" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `setSWMGroup.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:21Z" diff --git a/advisories/unreviewed/2024/11/GHSA-r7mv-mv7m-pjw3/GHSA-r7mv-mv7m-pjw3.json b/advisories/unreviewed/2024/11/GHSA-r7mv-mv7m-pjw3/GHSA-r7mv-mv7m-pjw3.json new file mode 100644 index 00000000000..019dbc74dcb --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-r7mv-mv7m-pjw3/GHSA-r7mv-mv7m-pjw3.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r7mv-mv7m-pjw3", + "modified": "2024-11-04T18:31:23Z", + "published": "2024-11-04T18:31:23Z", + "aliases": [ + "CVE-2024-51127" + ], + "details": "An issue in the createTempFile method of hornetq v2.4.9 allows attackers to arbitrarily overwrite files or access sensitive information.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-51127" + }, + { + "type": "WEB", + "url": "https://github.com/JAckLosingHeart/CWE-378/blob/main/CVE-2024-51127.md" + }, + { + "type": "WEB", + "url": "http://hornetq.com" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T18:15:05Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-vj3j-52q7-fqvp/GHSA-vj3j-52q7-fqvp.json b/advisories/unreviewed/2024/11/GHSA-vj3j-52q7-fqvp/GHSA-vj3j-52q7-fqvp.json index dca80e0aa16..a7da67cba70 100644 --- a/advisories/unreviewed/2024/11/GHSA-vj3j-52q7-fqvp/GHSA-vj3j-52q7-fqvp.json +++ b/advisories/unreviewed/2024/11/GHSA-vj3j-52q7-fqvp/GHSA-vj3j-52q7-fqvp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vj3j-52q7-fqvp", - "modified": "2024-11-04T15:31:59Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:59Z", "aliases": [ "CVE-2024-45893" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `setSWMOption.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-vxf5-mpg2-599p/GHSA-vxf5-mpg2-599p.json b/advisories/unreviewed/2024/11/GHSA-vxf5-mpg2-599p/GHSA-vxf5-mpg2-599p.json index 11b22d825c8..95e4e551362 100644 --- a/advisories/unreviewed/2024/11/GHSA-vxf5-mpg2-599p/GHSA-vxf5-mpg2-599p.json +++ b/advisories/unreviewed/2024/11/GHSA-vxf5-mpg2-599p/GHSA-vxf5-mpg2-599p.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-vxf5-mpg2-599p", - "modified": "2024-11-04T15:31:59Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:59Z", "aliases": [ "CVE-2024-45891" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `delete_wlan_profile.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-w47v-2qj7-9m4m/GHSA-w47v-2qj7-9m4m.json b/advisories/unreviewed/2024/11/GHSA-w47v-2qj7-9m4m/GHSA-w47v-2qj7-9m4m.json new file mode 100644 index 00000000000..fc72efea1f4 --- /dev/null +++ b/advisories/unreviewed/2024/11/GHSA-w47v-2qj7-9m4m/GHSA-w47v-2qj7-9m4m.json @@ -0,0 +1,54 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w47v-2qj7-9m4m", + "modified": "2024-11-04T18:31:22Z", + "published": "2024-11-04T18:31:22Z", + "aliases": [ + "CVE-2024-10764" + ], + "details": "A vulnerability classified as critical has been found in Codezips Online Institute Management System 1.0. This affects an unknown part of the file /pages/save_user.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10764" + }, + { + "type": "WEB", + "url": "https://github.com/xiaobsss/CVE/issues/1" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.282951" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.282951" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?submit.436477" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-266" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2024-11-04T16:15:04Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2024/11/GHSA-w7hw-mc66-fgp3/GHSA-w7hw-mc66-fgp3.json b/advisories/unreviewed/2024/11/GHSA-w7hw-mc66-fgp3/GHSA-w7hw-mc66-fgp3.json index 4dbacaf0d4a..9cc8226bd31 100644 --- a/advisories/unreviewed/2024/11/GHSA-w7hw-mc66-fgp3/GHSA-w7hw-mc66-fgp3.json +++ b/advisories/unreviewed/2024/11/GHSA-w7hw-mc66-fgp3/GHSA-w7hw-mc66-fgp3.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-w7hw-mc66-fgp3", - "modified": "2024-11-04T15:31:58Z", + "modified": "2024-11-04T18:31:21Z", "published": "2024-11-04T15:31:58Z", "aliases": [ "CVE-2024-45887" ], "details": "DrayTek Vigor3900 1.5.1.3 contains a post-authentication command injection vulnerability. This vulnerability occurs when the `action` parameter in `cgi-bin/mainfunction.cgi` is set to `doOpenVPN.`", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -29,9 +32,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-04T15:15:22Z" diff --git a/advisories/unreviewed/2024/11/GHSA-xfcf-4825-2xx2/GHSA-xfcf-4825-2xx2.json b/advisories/unreviewed/2024/11/GHSA-xfcf-4825-2xx2/GHSA-xfcf-4825-2xx2.json index 8c7383c3d0e..36fd0199dd7 100644 --- a/advisories/unreviewed/2024/11/GHSA-xfcf-4825-2xx2/GHSA-xfcf-4825-2xx2.json +++ b/advisories/unreviewed/2024/11/GHSA-xfcf-4825-2xx2/GHSA-xfcf-4825-2xx2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xfcf-4825-2xx2", - "modified": "2024-11-01T18:31:33Z", + "modified": "2024-11-04T18:31:19Z", "published": "2024-11-01T18:31:33Z", "aliases": [ "CVE-2024-51245" ], "details": "In DrayTek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the rename_table function.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,9 +28,9 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-78" ], - "severity": null, + "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2024-11-01T17:15:18Z"