diff --git a/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json b/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json index 6c853150892..7606e78fdd5 100644 --- a/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json +++ b/advisories/github-reviewed/2020/08/GHSA-gr4j-r575-g665/GHSA-gr4j-r575-g665.json @@ -3,9 +3,7 @@ "id": "GHSA-gr4j-r575-g665", "modified": "2023-11-10T18:07:18Z", "published": "2020-08-25T14:04:47Z", - "aliases": [ - - ], + "aliases": [], "summary": "Cross-Site Scripting in highcharts", "details": "Versions of `highcharts` prior to 7.2.2 or 8.1.1 are vulnerable to Cross-Site Scripting (XSS). The package fails to sanitize `href` values and does not restrict URL schemes, allowing attackers to execute arbitrary JavaScript in a victim's browser if they click the link.", "severity": [ diff --git a/advisories/github-reviewed/2022/05/GHSA-76q7-r3g4-wvm4/GHSA-76q7-r3g4-wvm4.json b/advisories/github-reviewed/2022/05/GHSA-76q7-r3g4-wvm4/GHSA-76q7-r3g4-wvm4.json index 8416acbf20d..7a9f473698a 100644 --- a/advisories/github-reviewed/2022/05/GHSA-76q7-r3g4-wvm4/GHSA-76q7-r3g4-wvm4.json +++ b/advisories/github-reviewed/2022/05/GHSA-76q7-r3g4-wvm4/GHSA-76q7-r3g4-wvm4.json @@ -61,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-12-14T15:54:57Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-9fp8-64xf-w957/GHSA-9fp8-64xf-w957.json b/advisories/github-reviewed/2022/05/GHSA-9fp8-64xf-w957/GHSA-9fp8-64xf-w957.json index a04e19f7b60..dc95113e07d 100644 --- a/advisories/github-reviewed/2022/05/GHSA-9fp8-64xf-w957/GHSA-9fp8-64xf-w957.json +++ b/advisories/github-reviewed/2022/05/GHSA-9fp8-64xf-w957/GHSA-9fp8-64xf-w957.json @@ -61,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-12-14T15:50:06Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-hvmx-5hv4-f235/GHSA-hvmx-5hv4-f235.json b/advisories/github-reviewed/2022/05/GHSA-hvmx-5hv4-f235/GHSA-hvmx-5hv4-f235.json index 67d0b731528..a5fc10857fa 100644 --- a/advisories/github-reviewed/2022/05/GHSA-hvmx-5hv4-f235/GHSA-hvmx-5hv4-f235.json +++ b/advisories/github-reviewed/2022/05/GHSA-hvmx-5hv4-f235/GHSA-hvmx-5hv4-f235.json @@ -61,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-12-14T15:51:31Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-m26f-w3h5-62fj/GHSA-m26f-w3h5-62fj.json b/advisories/github-reviewed/2022/05/GHSA-m26f-w3h5-62fj/GHSA-m26f-w3h5-62fj.json index a329b84f6df..e31004045b9 100644 --- a/advisories/github-reviewed/2022/05/GHSA-m26f-w3h5-62fj/GHSA-m26f-w3h5-62fj.json +++ b/advisories/github-reviewed/2022/05/GHSA-m26f-w3h5-62fj/GHSA-m26f-w3h5-62fj.json @@ -61,9 +61,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-12-14T15:52:43Z", diff --git a/advisories/github-reviewed/2022/05/GHSA-wp3j-rvfp-624h/GHSA-wp3j-rvfp-624h.json b/advisories/github-reviewed/2022/05/GHSA-wp3j-rvfp-624h/GHSA-wp3j-rvfp-624h.json index f8022767985..d3f5a4e50cf 100644 --- a/advisories/github-reviewed/2022/05/GHSA-wp3j-rvfp-624h/GHSA-wp3j-rvfp-624h.json +++ b/advisories/github-reviewed/2022/05/GHSA-wp3j-rvfp-624h/GHSA-wp3j-rvfp-624h.json @@ -8,9 +8,7 @@ ], "summary": "RubyGems vulnerable to DNS hijack attack", "details": "RubyGems 2.0.x before 2.0.16, 2.2.x before 2.2.4, and 2.4.x before 2.4.7 does not validate the hostname when fetching gems or making API requests, which allows remote attackers to redirect requests to arbitrary domains via a crafted DNS SRV record, aka a \"DNS hijack attack.\"", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/08/GHSA-q4pp-j36h-3gqg/GHSA-q4pp-j36h-3gqg.json b/advisories/github-reviewed/2023/08/GHSA-q4pp-j36h-3gqg/GHSA-q4pp-j36h-3gqg.json index 4df83c661c6..312b9b7fd9d 100644 --- a/advisories/github-reviewed/2023/08/GHSA-q4pp-j36h-3gqg/GHSA-q4pp-j36h-3gqg.json +++ b/advisories/github-reviewed/2023/08/GHSA-q4pp-j36h-3gqg/GHSA-q4pp-j36h-3gqg.json @@ -3,14 +3,10 @@ "id": "GHSA-q4pp-j36h-3gqg", "modified": "2023-08-24T12:53:06Z", "published": "2023-08-24T12:53:06Z", - "aliases": [ - - ], + "aliases": [], "summary": "Minimal `basti` IAM Policy Allows Shell Access", "details": "### Summary\n\nThe provided Minimal IAM Policy for `bastic connect` does not include `ssm:SessionDocumentAccessCheck`. This results in the ability to get a shell session on the bastion, not just the intended access for Port Forwarding.\n\n### Details\n\n`basti connect` is designed to \"securely connect to your RDS/Aurora/Elasticache/EC2 instances\", using a bastion instance \"with [AWS Session Manager](https://docs.aws.amazon.com/systems-manager/latest/userguide/session-manager.html) port forwarding capability to make the target available on your localhost.\"\n\nThe [Minimal IAM Policy](https://github.com/BohdanPetryshyn/basti#minimal-iam-permissions) allows port forwarding via the following statement:\n\n``` \n {\n \"Effect\": \"Allow\",\n \"Action\": \"ssm:StartSession\",\n \"Resource\": [\n \"arn:aws:ssm:*:*:document/AWS-StartPortForwardingSessionToRemoteHost\",\n \"arn:aws:ec2:::instance/\"\n ]\n }\n```\n\nThis statement does not include the following condition:\n\n```\n\"Condition\": {\n \"BoolIfExists\": {\n \"ssm:SessionDocumentAccessCheck\": \"true\"\n }\n}\n```\n\nAs a result, the `basti connect` minimal policy is logically identical to:\n\n```\n {\n \"Effect\": \"Allow\",\n \"Action\": \"ssm:StartSession\",\n \"Resource\": [\n \"arn:aws:ssm:*:*:document/AWS-StartPortForwardingSessionToRemoteHost\",\n \"arn:aws:ssm:*:*:document/SSM-SessionManagerRunShell\",\n \"arn:aws:ec2:::instance/\"\n ]\n }\n```\n\nA `basti` admin would expect users under the minimal policy to be able to port forward. However, they could also get a shell on the bastion.\n\nFor more details on this footgun, see: https://ramimac.me/ssm-iam\n\n### PoC\n_Complete instructions, including specific configuration details, to reproduce the vulnerability._\n\n### Impact\n\nImpact would depend on configuration/hardening of the bastion. I've seen examples where bastions have credentials to downstream systems in configuration or memory that would be exposed. ", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -47,9 +43,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": true, "github_reviewed_at": "2023-08-24T12:53:06Z", diff --git a/advisories/github-reviewed/2023/08/GHSA-rcx8-48pc-v9q8/GHSA-rcx8-48pc-v9q8.json b/advisories/github-reviewed/2023/08/GHSA-rcx8-48pc-v9q8/GHSA-rcx8-48pc-v9q8.json index 026d9881fd5..0664d941c55 100644 --- a/advisories/github-reviewed/2023/08/GHSA-rcx8-48pc-v9q8/GHSA-rcx8-48pc-v9q8.json +++ b/advisories/github-reviewed/2023/08/GHSA-rcx8-48pc-v9q8/GHSA-rcx8-48pc-v9q8.json @@ -3,14 +3,10 @@ "id": "GHSA-rcx8-48pc-v9q8", "modified": "2023-08-24T22:20:47Z", "published": "2023-08-24T22:20:47Z", - "aliases": [ - - ], + "aliases": [], "summary": "mail-internals use-after-free vulnerability in `vec_insert_bytes`", "details": "Incorrect reallocation logic in the function [`vec_insert_bytes`](https://docs.rs/mail-internals/0.2.3/mail_internals/utils/fn.vec_insert_bytes.html) causes a use-after-free.\n\nThis function does not have to be called directly to trigger the vulnerability because many methods on [`EncodingWriter`](https://docs.rs/mail-internals/0.2.3/mail_internals/encoder/struct.EncodingWriter.html) call this function internally.\n\nThe mail-\\* suite is unmaintained and the upstream sources have been actively vandalised.\nA fixed `mail-internals-ng` (and `mail-headers-ng` and `mail-core-ng`) crate has been published which fixes this, and a dependency on another unsound crate.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-08-24T22:20:47Z", diff --git a/advisories/github-reviewed/2023/08/GHSA-wrrj-h57r-vx9p/GHSA-wrrj-h57r-vx9p.json b/advisories/github-reviewed/2023/08/GHSA-wrrj-h57r-vx9p/GHSA-wrrj-h57r-vx9p.json index 81a5a6a7a59..7d6ef586a4c 100644 --- a/advisories/github-reviewed/2023/08/GHSA-wrrj-h57r-vx9p/GHSA-wrrj-h57r-vx9p.json +++ b/advisories/github-reviewed/2023/08/GHSA-wrrj-h57r-vx9p/GHSA-wrrj-h57r-vx9p.json @@ -8,9 +8,7 @@ ], "summary": "Malicious dependencies can inject arbitrary JavaScript into cargo-generated timing reports", "details": "The Rust Security Response WG was notified that Cargo did not escape Cargo feature names when including them in the report generated by `cargo build --timings`. A malicious package included as a dependency may inject nearly arbitrary HTML here, potentially leading to XSS if the report is subsequently uploaded somewhere.\n\nThe severity of this vulnerability is \"low\" for users relying on dependencies from git, local paths, or alternative registries. Users who solely depend on crates.io are unaffected.\n\n\nNote that **by design** Cargo allows code execution at build time, due to build scripts and procedural macros. The vulnerability in this advisory allows performing a subset of the possible damage in a harder to track down way. Your dependencies must still be trusted if you want to be protected from attacks, as it's possible to perform the same attacks with build scripts and procedural macros.\n\n# Overview\n\nRust 1.60.0 [introduced](https://blog.rust-lang.org/2022/04/07/Rust-1.60.0.html#cargo---timings) `cargo build --timings`, which produces a report of how long the different steps of the build process took. It includes lists of Cargo features for each crate.\n\nPrior to Rust 1.72, Cargo feature names were allowed to contain almost any characters (with some exceptions as used by the feature syntax), but it would produce a future incompatibility warning about them [since Rust 1.49](https://github.com/rust-lang/cargo/pull/8814). crates.io is far more stringent about what it considers a valid feature name and has not allowed such feature names.\n\nAs the feature names were included unescaped in the timings report, they could be used to inject Javascript into the page, for example with a feature name like `features = [\" tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-45jp-c6ff-rg7j/GHSA-45jp-c6ff-rg7j.json b/advisories/unreviewed/2022/05/GHSA-45jp-c6ff-rg7j/GHSA-45jp-c6ff-rg7j.json index 71b543cb4f8..efa3fc15e8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-45jp-c6ff-rg7j/GHSA-45jp-c6ff-rg7j.json +++ b/advisories/unreviewed/2022/05/GHSA-45jp-c6ff-rg7j/GHSA-45jp-c6ff-rg7j.json @@ -7,12 +7,8 @@ "CVE-2021-28594" ], "details": "Adobe Creative Cloud Desktop Application (installer) version 2.4 (and earlier) is affected by an Uncontrolled Search Path Element vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-463c-c5cm-386c/GHSA-463c-c5cm-386c.json b/advisories/unreviewed/2022/05/GHSA-463c-c5cm-386c/GHSA-463c-c5cm-386c.json index 9524cb3f1f2..c55846e57e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-463c-c5cm-386c/GHSA-463c-c5cm-386c.json +++ b/advisories/unreviewed/2022/05/GHSA-463c-c5cm-386c/GHSA-463c-c5cm-386c.json @@ -7,12 +7,8 @@ "CVE-2005-3432" ], "details": "MiniGal 2 (MG2) 0.5.1 allows remote attackers to list password protected images via a request to index.php with the list parameter set to * (wildcard) and the page parameter set to all.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46f8-5fq9-8hmq/GHSA-46f8-5fq9-8hmq.json b/advisories/unreviewed/2022/05/GHSA-46f8-5fq9-8hmq/GHSA-46f8-5fq9-8hmq.json index 236b5ca6d7b..ddd6a1b0d1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-46f8-5fq9-8hmq/GHSA-46f8-5fq9-8hmq.json +++ b/advisories/unreviewed/2022/05/GHSA-46f8-5fq9-8hmq/GHSA-46f8-5fq9-8hmq.json @@ -7,12 +7,8 @@ "CVE-2005-3859" ], "details": "PHP remote file inclusion vulnerability in q-news.php in Q-News 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46m3-fhvv-97rx/GHSA-46m3-fhvv-97rx.json b/advisories/unreviewed/2022/05/GHSA-46m3-fhvv-97rx/GHSA-46m3-fhvv-97rx.json index df811fe814c..3f6021b9d3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-46m3-fhvv-97rx/GHSA-46m3-fhvv-97rx.json +++ b/advisories/unreviewed/2022/05/GHSA-46m3-fhvv-97rx/GHSA-46m3-fhvv-97rx.json @@ -7,12 +7,8 @@ "CVE-2005-3522" ], "details": "Cross-site scripting (XSS) vulnerability in index.jsp in ManageEngine Netflow Analyzer 4.0.2 allows remote attackers to inject arbitrary web script or HTML via the grDisp parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-46r6-jr5x-j746/GHSA-46r6-jr5x-j746.json b/advisories/unreviewed/2022/05/GHSA-46r6-jr5x-j746/GHSA-46r6-jr5x-j746.json index a48e823f5cd..746f87445f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-46r6-jr5x-j746/GHSA-46r6-jr5x-j746.json +++ b/advisories/unreviewed/2022/05/GHSA-46r6-jr5x-j746/GHSA-46r6-jr5x-j746.json @@ -7,12 +7,8 @@ "CVE-2005-3774" ], "details": "Cisco PIX 6.3 and 7.0 allows remote attackers to cause a denial of service (blocked new connections) via spoofed TCP packets that cause the PIX to create embryonic connections that that would not produce a valid connection with the end system, including (1) SYN packets with invalid checksums, which do not result in a RST; or, from an external interface, (2) one byte of \"meaningless data,\" or (3) a TTL that is one less than needed to reach the internal destination.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-473r-hxfx-gc5m/GHSA-473r-hxfx-gc5m.json b/advisories/unreviewed/2022/05/GHSA-473r-hxfx-gc5m/GHSA-473r-hxfx-gc5m.json index db4fd2e8a17..a071f667c0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-473r-hxfx-gc5m/GHSA-473r-hxfx-gc5m.json +++ b/advisories/unreviewed/2022/05/GHSA-473r-hxfx-gc5m/GHSA-473r-hxfx-gc5m.json @@ -7,12 +7,8 @@ "CVE-2005-3825" ], "details": "SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a result action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4764-gxx4-jwh8/GHSA-4764-gxx4-jwh8.json b/advisories/unreviewed/2022/05/GHSA-4764-gxx4-jwh8/GHSA-4764-gxx4-jwh8.json index ff0a26bee8e..54f2b7be9ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-4764-gxx4-jwh8/GHSA-4764-gxx4-jwh8.json +++ b/advisories/unreviewed/2022/05/GHSA-4764-gxx4-jwh8/GHSA-4764-gxx4-jwh8.json @@ -7,12 +7,8 @@ "CVE-2005-3639" ], "details": "PHP file inclusion vulnerability in the osTicket module in Help Center Live before 2.0.3 allows remote attackers to access or include arbitrary files via the file parameter, possibly due to a directory traversal vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-47v6-2w6h-h9r5/GHSA-47v6-2w6h-h9r5.json b/advisories/unreviewed/2022/05/GHSA-47v6-2w6h-h9r5/GHSA-47v6-2w6h-h9r5.json index b94eb2f24d4..a9d9fe8a0c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-47v6-2w6h-h9r5/GHSA-47v6-2w6h-h9r5.json +++ b/advisories/unreviewed/2022/05/GHSA-47v6-2w6h-h9r5/GHSA-47v6-2w6h-h9r5.json @@ -7,12 +7,8 @@ "CVE-2005-4041" ], "details": "Cross-site scripting (XSS) vulnerability in search.cgi in MR CGI Guy Hot Links SQL 3.1.x and Hot Links Pro 3.1.x allows remote attackers to inject arbitrary web script or HTML via the query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4835-9c7q-3m6p/GHSA-4835-9c7q-3m6p.json b/advisories/unreviewed/2022/05/GHSA-4835-9c7q-3m6p/GHSA-4835-9c7q-3m6p.json index 2a82a4abe63..e268cc682a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-4835-9c7q-3m6p/GHSA-4835-9c7q-3m6p.json +++ b/advisories/unreviewed/2022/05/GHSA-4835-9c7q-3m6p/GHSA-4835-9c7q-3m6p.json @@ -7,12 +7,8 @@ "CVE-2005-3689" ], "details": "post.php in XMB 1.9.2 allows remote attackers to obtain the installation path via an invalid fid parameter in a newthread action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48gw-crqw-m5r2/GHSA-48gw-crqw-m5r2.json b/advisories/unreviewed/2022/05/GHSA-48gw-crqw-m5r2/GHSA-48gw-crqw-m5r2.json index 6045faf1a50..a70f03a46fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-48gw-crqw-m5r2/GHSA-48gw-crqw-m5r2.json +++ b/advisories/unreviewed/2022/05/GHSA-48gw-crqw-m5r2/GHSA-48gw-crqw-m5r2.json @@ -7,12 +7,8 @@ "CVE-2005-4066" ], "details": "Total Commander 6.53 uses weak encryption to store FTP usernames and passwords in WCX_FTP.INI, which allows local users to decrypt the passwords and gain access to FTP servers, as possibly demonstrated by the W32.Gudeb worm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48x7-3977-wh2q/GHSA-48x7-3977-wh2q.json b/advisories/unreviewed/2022/05/GHSA-48x7-3977-wh2q/GHSA-48x7-3977-wh2q.json index 14bc5a9f04a..2fa95bc6231 100644 --- a/advisories/unreviewed/2022/05/GHSA-48x7-3977-wh2q/GHSA-48x7-3977-wh2q.json +++ b/advisories/unreviewed/2022/05/GHSA-48x7-3977-wh2q/GHSA-48x7-3977-wh2q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-494v-c9x8-6xcw/GHSA-494v-c9x8-6xcw.json b/advisories/unreviewed/2022/05/GHSA-494v-c9x8-6xcw/GHSA-494v-c9x8-6xcw.json index d719bce417c..8e019521753 100644 --- a/advisories/unreviewed/2022/05/GHSA-494v-c9x8-6xcw/GHSA-494v-c9x8-6xcw.json +++ b/advisories/unreviewed/2022/05/GHSA-494v-c9x8-6xcw/GHSA-494v-c9x8-6xcw.json @@ -7,12 +7,8 @@ "CVE-2005-3554" ], "details": "Multiple eval injection vulnerabilities in the help function in PHPKIT 1.6.1 R2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary code on the server via unknown attack vectors involving uninitialized variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49mw-fp5c-cxm2/GHSA-49mw-fp5c-cxm2.json b/advisories/unreviewed/2022/05/GHSA-49mw-fp5c-cxm2/GHSA-49mw-fp5c-cxm2.json index 7e3711dce5a..982716a8926 100644 --- a/advisories/unreviewed/2022/05/GHSA-49mw-fp5c-cxm2/GHSA-49mw-fp5c-cxm2.json +++ b/advisories/unreviewed/2022/05/GHSA-49mw-fp5c-cxm2/GHSA-49mw-fp5c-cxm2.json @@ -7,12 +7,8 @@ "CVE-2005-3476" ], "details": "Unspecified vulnerability in HP OpenVMS Integrity 8.2-1 and 8.2, and OpenVMS Alpha 7.3-2 and 8.2, allows local users to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4chg-642f-qr6p/GHSA-4chg-642f-qr6p.json b/advisories/unreviewed/2022/05/GHSA-4chg-642f-qr6p/GHSA-4chg-642f-qr6p.json index dacb33c9689..21173adf136 100644 --- a/advisories/unreviewed/2022/05/GHSA-4chg-642f-qr6p/GHSA-4chg-642f-qr6p.json +++ b/advisories/unreviewed/2022/05/GHSA-4chg-642f-qr6p/GHSA-4chg-642f-qr6p.json @@ -7,12 +7,8 @@ "CVE-2021-22027" ], "details": "The vRealize Operations Manager API (8.x prior to 8.5) contains a Server Side Request Forgery in an end point. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack leading to information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4cw2-7p75-w3g2/GHSA-4cw2-7p75-w3g2.json b/advisories/unreviewed/2022/05/GHSA-4cw2-7p75-w3g2/GHSA-4cw2-7p75-w3g2.json index 0cf9f56605d..fe5b47476e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cw2-7p75-w3g2/GHSA-4cw2-7p75-w3g2.json +++ b/advisories/unreviewed/2022/05/GHSA-4cw2-7p75-w3g2/GHSA-4cw2-7p75-w3g2.json @@ -7,12 +7,8 @@ "CVE-2005-3439" ], "details": "Multiple unspecified vulnerabilities in Oracle Database Server 10g up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB02, (2) DB03, and (3) DB05 in Change Data Capture; (4) DB07 in Data Pump Export; and (5) DB18, (6) DB19, (7) DB20, (8) DB21, (9) DB22, (10) DB23, (11) DB24, and (12) DB25 in the Spatial component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4cwm-fmh5-v7xw/GHSA-4cwm-fmh5-v7xw.json b/advisories/unreviewed/2022/05/GHSA-4cwm-fmh5-v7xw/GHSA-4cwm-fmh5-v7xw.json index 09c3f85d528..77edfb43e40 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cwm-fmh5-v7xw/GHSA-4cwm-fmh5-v7xw.json +++ b/advisories/unreviewed/2022/05/GHSA-4cwm-fmh5-v7xw/GHSA-4cwm-fmh5-v7xw.json @@ -7,12 +7,8 @@ "CVE-2021-22684" ], "details": "Tizen RT RTOS version 3.0.GBB is vulnerable to integer wrap-around in functions_calloc and mm_zalloc. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4f2m-gmgg-662p/GHSA-4f2m-gmgg-662p.json b/advisories/unreviewed/2022/05/GHSA-4f2m-gmgg-662p/GHSA-4f2m-gmgg-662p.json index c0805ece2b1..aebc23f96f4 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f2m-gmgg-662p/GHSA-4f2m-gmgg-662p.json +++ b/advisories/unreviewed/2022/05/GHSA-4f2m-gmgg-662p/GHSA-4f2m-gmgg-662p.json @@ -7,12 +7,8 @@ "CVE-2005-3837" ], "details": "Cross-site scripting (XSS) vulnerability in the search module in sCssBoard 1.2 and 1.12, and earlier versions, allows remote attackers to inject arbitrary web script or HTML via the search_term parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4f85-wphf-9gf3/GHSA-4f85-wphf-9gf3.json b/advisories/unreviewed/2022/05/GHSA-4f85-wphf-9gf3/GHSA-4f85-wphf-9gf3.json index 334a9c9abcc..94801e48035 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f85-wphf-9gf3/GHSA-4f85-wphf-9gf3.json +++ b/advisories/unreviewed/2022/05/GHSA-4f85-wphf-9gf3/GHSA-4f85-wphf-9gf3.json @@ -7,12 +7,8 @@ "CVE-2005-3654" ], "details": "Blue Coat Systems Inc. WinProxy before 6.1a allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of packets with 0xFF characters to the Telnet port (TCP 23), which corrupts the heap.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4h7j-mfj8-48jj/GHSA-4h7j-mfj8-48jj.json b/advisories/unreviewed/2022/05/GHSA-4h7j-mfj8-48jj/GHSA-4h7j-mfj8-48jj.json index e3eba67f5c0..e9cfcd064ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h7j-mfj8-48jj/GHSA-4h7j-mfj8-48jj.json +++ b/advisories/unreviewed/2022/05/GHSA-4h7j-mfj8-48jj/GHSA-4h7j-mfj8-48jj.json @@ -7,12 +7,8 @@ "CVE-2005-3574" ], "details": "PHP file inclusion vulnerability in index.php of iCMS allows remote attackers to include arbitrary files via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hpw-h5hg-pjg7/GHSA-4hpw-h5hg-pjg7.json b/advisories/unreviewed/2022/05/GHSA-4hpw-h5hg-pjg7/GHSA-4hpw-h5hg-pjg7.json index 1304fbc48be..61c9aa5e90e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hpw-h5hg-pjg7/GHSA-4hpw-h5hg-pjg7.json +++ b/advisories/unreviewed/2022/05/GHSA-4hpw-h5hg-pjg7/GHSA-4hpw-h5hg-pjg7.json @@ -7,12 +7,8 @@ "CVE-2005-3433" ], "details": "Buffer overflow in Mirabilis ICQ 2003a allows user-assisted attackers to execute arbitrary code by convincing a user to enter long strings into the First Name and Last Name fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hwf-32rg-xw56/GHSA-4hwf-32rg-xw56.json b/advisories/unreviewed/2022/05/GHSA-4hwf-32rg-xw56/GHSA-4hwf-32rg-xw56.json index e8d8b09734b..053e0b59063 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hwf-32rg-xw56/GHSA-4hwf-32rg-xw56.json +++ b/advisories/unreviewed/2022/05/GHSA-4hwf-32rg-xw56/GHSA-4hwf-32rg-xw56.json @@ -7,12 +7,8 @@ "CVE-2005-3814" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in SmartPPC Pro allow remote attackers to inject arbitrary web script or HTML via the username parameter in (1) directory.php, (2) frames.php, and (3) search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4mhm-g758-5p6c/GHSA-4mhm-g758-5p6c.json b/advisories/unreviewed/2022/05/GHSA-4mhm-g758-5p6c/GHSA-4mhm-g758-5p6c.json index 04af8afae70..b0f8d8e874b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mhm-g758-5p6c/GHSA-4mhm-g758-5p6c.json +++ b/advisories/unreviewed/2022/05/GHSA-4mhm-g758-5p6c/GHSA-4mhm-g758-5p6c.json @@ -7,12 +7,8 @@ "CVE-2005-3853" ], "details": "SQL injection vulnerability in snews.php in sNews 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category parameters to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4mmr-48v9-3hxw/GHSA-4mmr-48v9-3hxw.json b/advisories/unreviewed/2022/05/GHSA-4mmr-48v9-3hxw/GHSA-4mmr-48v9-3hxw.json index 1f1ee5220ce..00059ab3224 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mmr-48v9-3hxw/GHSA-4mmr-48v9-3hxw.json +++ b/advisories/unreviewed/2022/05/GHSA-4mmr-48v9-3hxw/GHSA-4mmr-48v9-3hxw.json @@ -7,12 +7,8 @@ "CVE-2005-4071" ], "details": "Multiple SQL injection vulnerabilities in CFMagic Magic Forum Personal 2.5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ForumID parameter in view_forum.cfm, and (2) ForumID, (3) Thread, and (4) ThreadID parameters in view_thread.cfm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4mqr-m9jc-xm98/GHSA-4mqr-m9jc-xm98.json b/advisories/unreviewed/2022/05/GHSA-4mqr-m9jc-xm98/GHSA-4mqr-m9jc-xm98.json index ee8c0ef3ada..a9f00c226b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mqr-m9jc-xm98/GHSA-4mqr-m9jc-xm98.json +++ b/advisories/unreviewed/2022/05/GHSA-4mqr-m9jc-xm98/GHSA-4mqr-m9jc-xm98.json @@ -7,12 +7,8 @@ "CVE-2005-3696" ], "details": "SQL injection vulnerability in Arki-DB 1.0 and 2.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter in a view action (view.php) to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4p2p-7qjx-7r5g/GHSA-4p2p-7qjx-7r5g.json b/advisories/unreviewed/2022/05/GHSA-4p2p-7qjx-7r5g/GHSA-4p2p-7qjx-7r5g.json index 26c3ae42d61..ff249ef91d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p2p-7qjx-7r5g/GHSA-4p2p-7qjx-7r5g.json +++ b/advisories/unreviewed/2022/05/GHSA-4p2p-7qjx-7r5g/GHSA-4p2p-7qjx-7r5g.json @@ -7,12 +7,8 @@ "CVE-2021-39322" ], "details": "The Easy Social Icons plugin <= 3.0.8 for WordPress echoes out the raw value of `$_SERVER['PHP_SELF']` in its main file. On certain configurations including Apache+modPHP this makes it possible to use it to perform a reflected Cross-Site Scripting attack by injecting malicious code in the request path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4p62-89gc-qx2w/GHSA-4p62-89gc-qx2w.json b/advisories/unreviewed/2022/05/GHSA-4p62-89gc-qx2w/GHSA-4p62-89gc-qx2w.json index db3458713cc..66f007cba7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p62-89gc-qx2w/GHSA-4p62-89gc-qx2w.json +++ b/advisories/unreviewed/2022/05/GHSA-4p62-89gc-qx2w/GHSA-4p62-89gc-qx2w.json @@ -7,12 +7,8 @@ "CVE-2021-36013" ], "details": "Adobe Media Encoder version 15.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4p76-vp9g-hmxc/GHSA-4p76-vp9g-hmxc.json b/advisories/unreviewed/2022/05/GHSA-4p76-vp9g-hmxc/GHSA-4p76-vp9g-hmxc.json index fa8c39dea57..f22d292d71f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4p76-vp9g-hmxc/GHSA-4p76-vp9g-hmxc.json +++ b/advisories/unreviewed/2022/05/GHSA-4p76-vp9g-hmxc/GHSA-4p76-vp9g-hmxc.json @@ -7,12 +7,8 @@ "CVE-2020-20495" ], "details": "bludit v3.13.0 contains an arbitrary file deletion vulnerability in the backup plugin via the `deleteBackup' parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4pmf-qqvh-jvqv/GHSA-4pmf-qqvh-jvqv.json b/advisories/unreviewed/2022/05/GHSA-4pmf-qqvh-jvqv/GHSA-4pmf-qqvh-jvqv.json index 41da3057347..dd110de1652 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pmf-qqvh-jvqv/GHSA-4pmf-qqvh-jvqv.json +++ b/advisories/unreviewed/2022/05/GHSA-4pmf-qqvh-jvqv/GHSA-4pmf-qqvh-jvqv.json @@ -7,12 +7,8 @@ "CVE-2020-20341" ], "details": "YzmCMS v5.5 contains a server-side request forgery (SSRF) in the grab_image() function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4prh-gp9w-7r2w/GHSA-4prh-gp9w-7r2w.json b/advisories/unreviewed/2022/05/GHSA-4prh-gp9w-7r2w/GHSA-4prh-gp9w-7r2w.json index 8388fc4fb77..1ba8a536db6 100644 --- a/advisories/unreviewed/2022/05/GHSA-4prh-gp9w-7r2w/GHSA-4prh-gp9w-7r2w.json +++ b/advisories/unreviewed/2022/05/GHSA-4prh-gp9w-7r2w/GHSA-4prh-gp9w-7r2w.json @@ -7,12 +7,8 @@ "CVE-2005-3518" ], "details": "SQL injection vulnerability in search.php in PunBB 1.2.7 and 1.2.8 allows remote attackers to execute arbitrary SQL commands via the old_searches parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4q7m-xhfm-m8w5/GHSA-4q7m-xhfm-m8w5.json b/advisories/unreviewed/2022/05/GHSA-4q7m-xhfm-m8w5/GHSA-4q7m-xhfm-m8w5.json index d26200a4139..8fc5bfe9106 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q7m-xhfm-m8w5/GHSA-4q7m-xhfm-m8w5.json +++ b/advisories/unreviewed/2022/05/GHSA-4q7m-xhfm-m8w5/GHSA-4q7m-xhfm-m8w5.json @@ -7,12 +7,8 @@ "CVE-2005-4045" ], "details": "Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (TLA) default password via unknown vectors, possibly involving configure_toplevel_admin.ldif.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rm2-h745-5rf8/GHSA-4rm2-h745-5rf8.json b/advisories/unreviewed/2022/05/GHSA-4rm2-h745-5rf8/GHSA-4rm2-h745-5rf8.json index a9c2068bada..fa9b84500e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rm2-h745-5rf8/GHSA-4rm2-h745-5rf8.json +++ b/advisories/unreviewed/2022/05/GHSA-4rm2-h745-5rf8/GHSA-4rm2-h745-5rf8.json @@ -7,12 +7,8 @@ "CVE-2005-3670" ], "details": "Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in HP HP-UX B.11.00, B.11.11, and B.11.23 running IPSec, HP Jetdirect 635n IPv6/IPsec Print Server, and HP Tru64 UNIX 5.1B-3 and 5.1B-2/PK4, allow remote attackers to cause a denial of service via certain IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the HP advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v4m-xjj9-g6j7/GHSA-4v4m-xjj9-g6j7.json b/advisories/unreviewed/2022/05/GHSA-4v4m-xjj9-g6j7/GHSA-4v4m-xjj9-g6j7.json index 426e509c864..3152df8c468 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v4m-xjj9-g6j7/GHSA-4v4m-xjj9-g6j7.json +++ b/advisories/unreviewed/2022/05/GHSA-4v4m-xjj9-g6j7/GHSA-4v4m-xjj9-g6j7.json @@ -7,12 +7,8 @@ "CVE-2005-3846" ], "details": "SQL injection vulnerability in news.php in Fantastic News 2.1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v82-mf94-m3qq/GHSA-4v82-mf94-m3qq.json b/advisories/unreviewed/2022/05/GHSA-4v82-mf94-m3qq/GHSA-4v82-mf94-m3qq.json index 87b4d0314dd..9ea66039148 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v82-mf94-m3qq/GHSA-4v82-mf94-m3qq.json +++ b/advisories/unreviewed/2022/05/GHSA-4v82-mf94-m3qq/GHSA-4v82-mf94-m3qq.json @@ -7,12 +7,8 @@ "CVE-2005-4059" ], "details": "SQL injection vulnerability in searchdb.asp in LocazoList 1.03c and earlier allows remote attackers to execute arbitrary SQL commands via the q parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4wxr-8w46-674r/GHSA-4wxr-8w46-674r.json b/advisories/unreviewed/2022/05/GHSA-4wxr-8w46-674r/GHSA-4wxr-8w46-674r.json index ee290e04037..8baac23e2be 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wxr-8w46-674r/GHSA-4wxr-8w46-674r.json +++ b/advisories/unreviewed/2022/05/GHSA-4wxr-8w46-674r/GHSA-4wxr-8w46-674r.json @@ -7,12 +7,8 @@ "CVE-2021-30655" ], "details": "An application may be able to execute arbitrary code with system privileges. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. The issue was addressed with improved permissions logic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xf8-hjpp-wq7x/GHSA-4xf8-hjpp-wq7x.json b/advisories/unreviewed/2022/05/GHSA-4xf8-hjpp-wq7x/GHSA-4xf8-hjpp-wq7x.json index b09f4806fd5..ca6f89aea39 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xf8-hjpp-wq7x/GHSA-4xf8-hjpp-wq7x.json +++ b/advisories/unreviewed/2022/05/GHSA-4xf8-hjpp-wq7x/GHSA-4xf8-hjpp-wq7x.json @@ -7,12 +7,8 @@ "CVE-2005-3642" ], "details": "IBM Informix Dynamic Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the guest account by supplying an invalid username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xjx-qw73-2v8v/GHSA-4xjx-qw73-2v8v.json b/advisories/unreviewed/2022/05/GHSA-4xjx-qw73-2v8v/GHSA-4xjx-qw73-2v8v.json index 898e5f2cc12..9149c41c7c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xjx-qw73-2v8v/GHSA-4xjx-qw73-2v8v.json +++ b/advisories/unreviewed/2022/05/GHSA-4xjx-qw73-2v8v/GHSA-4xjx-qw73-2v8v.json @@ -7,12 +7,8 @@ "CVE-2021-25958" ], "details": "In Apache Ofbiz, versions v17.12.01 to v17.12.07 implement a try catch exception to handle errors at multiple locations but leaks out sensitive table info which may aid the attacker for further recon. A user can register with a very long password, but when he tries to login with it an exception occurs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4xx5-phjh-xr95/GHSA-4xx5-phjh-xr95.json b/advisories/unreviewed/2022/05/GHSA-4xx5-phjh-xr95/GHSA-4xx5-phjh-xr95.json index f146d618372..8f261fdec15 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xx5-phjh-xr95/GHSA-4xx5-phjh-xr95.json +++ b/advisories/unreviewed/2022/05/GHSA-4xx5-phjh-xr95/GHSA-4xx5-phjh-xr95.json @@ -7,12 +7,8 @@ "CVE-2005-3596" ], "details": "SQL injection vulnerability in ASPKnowledgebase allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username and (2) password fields in adminlogin.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5237-ggqp-g522/GHSA-5237-ggqp-g522.json b/advisories/unreviewed/2022/05/GHSA-5237-ggqp-g522/GHSA-5237-ggqp-g522.json index c5f1c736e26..1103c43ff2a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5237-ggqp-g522/GHSA-5237-ggqp-g522.json +++ b/advisories/unreviewed/2022/05/GHSA-5237-ggqp-g522/GHSA-5237-ggqp-g522.json @@ -7,12 +7,8 @@ "CVE-2005-4065" ], "details": "SQL injection vulnerability in the search module in Edgewall Trac before 0.9.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5322-9p3h-7h5m/GHSA-5322-9p3h-7h5m.json b/advisories/unreviewed/2022/05/GHSA-5322-9p3h-7h5m/GHSA-5322-9p3h-7h5m.json index f302fbadcb4..d596d122e35 100644 --- a/advisories/unreviewed/2022/05/GHSA-5322-9p3h-7h5m/GHSA-5322-9p3h-7h5m.json +++ b/advisories/unreviewed/2022/05/GHSA-5322-9p3h-7h5m/GHSA-5322-9p3h-7h5m.json @@ -7,12 +7,8 @@ "CVE-2005-3416" ], "details": "phpBB 2.0.17 and earlier, when register_globals is enabled and the session_start function has not been called to handle a session, allows remote attackers to bypass security checks by setting the $_SESSION and $HTTP_SESSION_VARS variables to strings instead of arrays, which causes an array_merge function call to fail.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5349-pqgh-vm4f/GHSA-5349-pqgh-vm4f.json b/advisories/unreviewed/2022/05/GHSA-5349-pqgh-vm4f/GHSA-5349-pqgh-vm4f.json index 457273fd825..f8b43a96cd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-5349-pqgh-vm4f/GHSA-5349-pqgh-vm4f.json +++ b/advisories/unreviewed/2022/05/GHSA-5349-pqgh-vm4f/GHSA-5349-pqgh-vm4f.json @@ -7,12 +7,8 @@ "CVE-2005-3751" ], "details": "HTTP request smuggling vulnerability in Pound before 1.9.4 allows remote attackers to poison web caches, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with conflicting Content-length and Transfer-encoding headers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53cw-v2f6-28h4/GHSA-53cw-v2f6-28h4.json b/advisories/unreviewed/2022/05/GHSA-53cw-v2f6-28h4/GHSA-53cw-v2f6-28h4.json index 6a8363b242a..719fcd36716 100644 --- a/advisories/unreviewed/2022/05/GHSA-53cw-v2f6-28h4/GHSA-53cw-v2f6-28h4.json +++ b/advisories/unreviewed/2022/05/GHSA-53cw-v2f6-28h4/GHSA-53cw-v2f6-28h4.json @@ -7,12 +7,8 @@ "CVE-2021-20809" ], "details": "Cross-site scripting vulnerability in Create screens of Entry, Page, and Content Type of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series), Movable Type 6.8.0 and earlier (Movable Type 6 Series), Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series), Movable Type Premium 1.44 and earlier, and Movable Type Premium Advanced 1.44 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53fm-fvpg-f4cc/GHSA-53fm-fvpg-f4cc.json b/advisories/unreviewed/2022/05/GHSA-53fm-fvpg-f4cc/GHSA-53fm-fvpg-f4cc.json index 66a1cce359d..8771a295451 100644 --- a/advisories/unreviewed/2022/05/GHSA-53fm-fvpg-f4cc/GHSA-53fm-fvpg-f4cc.json +++ b/advisories/unreviewed/2022/05/GHSA-53fm-fvpg-f4cc/GHSA-53fm-fvpg-f4cc.json @@ -7,12 +7,8 @@ "CVE-2021-38154" ], "details": "Certain Canon devices manufactured in 2012 through 2020 (such as imageRUNNER ADVANCE iR-ADV C5250), when Catwalk Server is enabled for HTTP access, allow remote attackers to modify an e-mail address setting, and thus cause the device to send sensitive information through e-mail to the attacker. For example, an incoming FAX may be sent through e-mail to the attacker. This occurs when a PIN is not required for General User Mode, as exploited in the wild in August 2021.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5524-cf37-2p8f/GHSA-5524-cf37-2p8f.json b/advisories/unreviewed/2022/05/GHSA-5524-cf37-2p8f/GHSA-5524-cf37-2p8f.json index 9ce694d3ffd..0de843c3f11 100644 --- a/advisories/unreviewed/2022/05/GHSA-5524-cf37-2p8f/GHSA-5524-cf37-2p8f.json +++ b/advisories/unreviewed/2022/05/GHSA-5524-cf37-2p8f/GHSA-5524-cf37-2p8f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55cr-974r-ghwg/GHSA-55cr-974r-ghwg.json b/advisories/unreviewed/2022/05/GHSA-55cr-974r-ghwg/GHSA-55cr-974r-ghwg.json index 9bb8a96ebcd..4544ad56bb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-55cr-974r-ghwg/GHSA-55cr-974r-ghwg.json +++ b/advisories/unreviewed/2022/05/GHSA-55cr-974r-ghwg/GHSA-55cr-974r-ghwg.json @@ -7,12 +7,8 @@ "CVE-2005-4058" ], "details": "SQL injection vulnerability in saralblog 1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter to viewprofile.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55vp-gmh3-7chh/GHSA-55vp-gmh3-7chh.json b/advisories/unreviewed/2022/05/GHSA-55vp-gmh3-7chh/GHSA-55vp-gmh3-7chh.json index 458b7c3d887..458b77cd4dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-55vp-gmh3-7chh/GHSA-55vp-gmh3-7chh.json +++ b/advisories/unreviewed/2022/05/GHSA-55vp-gmh3-7chh/GHSA-55vp-gmh3-7chh.json @@ -7,12 +7,8 @@ "CVE-2021-32983" ], "details": "A Blind SQL injection vulnerability exists in the /DataHandler/Handler_CFG.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter keyword before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\\MSSQLSERVER.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56cm-gqqx-cjww/GHSA-56cm-gqqx-cjww.json b/advisories/unreviewed/2022/05/GHSA-56cm-gqqx-cjww/GHSA-56cm-gqqx-cjww.json index 86b06bec3b1..60afefbc3a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-56cm-gqqx-cjww/GHSA-56cm-gqqx-cjww.json +++ b/advisories/unreviewed/2022/05/GHSA-56cm-gqqx-cjww/GHSA-56cm-gqqx-cjww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56cw-43rc-7m3g/GHSA-56cw-43rc-7m3g.json b/advisories/unreviewed/2022/05/GHSA-56cw-43rc-7m3g/GHSA-56cw-43rc-7m3g.json index 58b28414302..c7968cd3e97 100644 --- a/advisories/unreviewed/2022/05/GHSA-56cw-43rc-7m3g/GHSA-56cw-43rc-7m3g.json +++ b/advisories/unreviewed/2022/05/GHSA-56cw-43rc-7m3g/GHSA-56cw-43rc-7m3g.json @@ -7,12 +7,8 @@ "CVE-2005-3693" ], "details": "The AxWebRemoveCtrl ActiveX control for uninstalling the SunnComm MediaMax DRM allows remote attackers to download and execute arbitrary code, a similar vulnerability to CVE-2005-3650.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-57g3-6qp4-2rm4/GHSA-57g3-6qp4-2rm4.json b/advisories/unreviewed/2022/05/GHSA-57g3-6qp4-2rm4/GHSA-57g3-6qp4-2rm4.json index 59702a56ecc..5cf2020e623 100644 --- a/advisories/unreviewed/2022/05/GHSA-57g3-6qp4-2rm4/GHSA-57g3-6qp4-2rm4.json +++ b/advisories/unreviewed/2022/05/GHSA-57g3-6qp4-2rm4/GHSA-57g3-6qp4-2rm4.json @@ -7,12 +7,8 @@ "CVE-2005-3862" ], "details": "Buffer overflow in unalz before 0.53 allows remote attackers to execute arbitrary code via long file names in ALZ archives.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cc7-3r85-874q/GHSA-5cc7-3r85-874q.json b/advisories/unreviewed/2022/05/GHSA-5cc7-3r85-874q/GHSA-5cc7-3r85-874q.json index 1239f734bbe..02bb6b8769b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cc7-3r85-874q/GHSA-5cc7-3r85-874q.json +++ b/advisories/unreviewed/2022/05/GHSA-5cc7-3r85-874q/GHSA-5cc7-3r85-874q.json @@ -7,12 +7,8 @@ "CVE-2005-3409" ], "details": "OpenVPN 2.x before 2.0.4, when running in TCP mode, allows remote attackers to cause a denial of service (segmentation fault) by forcing the accept function call to return an error status, which leads to a null dereference in an exception handler.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5chv-473p-fqcv/GHSA-5chv-473p-fqcv.json b/advisories/unreviewed/2022/05/GHSA-5chv-473p-fqcv/GHSA-5chv-473p-fqcv.json index 8c803e1d6bd..d9525de88f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5chv-473p-fqcv/GHSA-5chv-473p-fqcv.json +++ b/advisories/unreviewed/2022/05/GHSA-5chv-473p-fqcv/GHSA-5chv-473p-fqcv.json @@ -7,12 +7,8 @@ "CVE-2005-3478" ], "details": "SQL injection vulnerability in index.php in PHPCafe.net Tutorials Manager 1.0 Beta 2 allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5hgp-4qjx-wghq/GHSA-5hgp-4qjx-wghq.json b/advisories/unreviewed/2022/05/GHSA-5hgp-4qjx-wghq/GHSA-5hgp-4qjx-wghq.json index b3d9a1f7d4d..58c066143ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hgp-4qjx-wghq/GHSA-5hgp-4qjx-wghq.json +++ b/advisories/unreviewed/2022/05/GHSA-5hgp-4qjx-wghq/GHSA-5hgp-4qjx-wghq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hpm-j5wf-6662/GHSA-5hpm-j5wf-6662.json b/advisories/unreviewed/2022/05/GHSA-5hpm-j5wf-6662/GHSA-5hpm-j5wf-6662.json index 05321e8c868..3df28b48690 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hpm-j5wf-6662/GHSA-5hpm-j5wf-6662.json +++ b/advisories/unreviewed/2022/05/GHSA-5hpm-j5wf-6662/GHSA-5hpm-j5wf-6662.json @@ -7,12 +7,8 @@ "CVE-2005-3813" ], "details": "IMAP service (meimaps.exe) of MailEnable Professional 1.7 and Enterprise 1.1 allows remote authenticated attackers to cause a denial of service (application crash) by using RENAME with a non-existent mailbox, a different vulnerability than CVE-2005-3690.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5hwg-j3g9-gq7f/GHSA-5hwg-j3g9-gq7f.json b/advisories/unreviewed/2022/05/GHSA-5hwg-j3g9-gq7f/GHSA-5hwg-j3g9-gq7f.json index 40855ef6f07..6beb0f051d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hwg-j3g9-gq7f/GHSA-5hwg-j3g9-gq7f.json +++ b/advisories/unreviewed/2022/05/GHSA-5hwg-j3g9-gq7f/GHSA-5hwg-j3g9-gq7f.json @@ -7,12 +7,8 @@ "CVE-2021-28617" ], "details": "Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5m4x-qg45-cfv6/GHSA-5m4x-qg45-cfv6.json b/advisories/unreviewed/2022/05/GHSA-5m4x-qg45-cfv6/GHSA-5m4x-qg45-cfv6.json index 1db9c758099..6b0aceaf053 100644 --- a/advisories/unreviewed/2022/05/GHSA-5m4x-qg45-cfv6/GHSA-5m4x-qg45-cfv6.json +++ b/advisories/unreviewed/2022/05/GHSA-5m4x-qg45-cfv6/GHSA-5m4x-qg45-cfv6.json @@ -7,12 +7,8 @@ "CVE-2005-4057" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in PluggedOut Nexus 0.1 allows remote attackers to inject arbitrary web script or HTML via the (1) Location, (2) Last Name, and (3) First Name parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mm2-786g-8qwh/GHSA-5mm2-786g-8qwh.json b/advisories/unreviewed/2022/05/GHSA-5mm2-786g-8qwh/GHSA-5mm2-786g-8qwh.json index 0dec030f3a9..c327c75f649 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mm2-786g-8qwh/GHSA-5mm2-786g-8qwh.json +++ b/advisories/unreviewed/2022/05/GHSA-5mm2-786g-8qwh/GHSA-5mm2-786g-8qwh.json @@ -7,12 +7,8 @@ "CVE-2021-22249" ], "details": "A verbose error message in GitLab EE affecting all versions since 12.2 could disclose the private email address of a user invited to a group", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5p3j-xxv6-8526/GHSA-5p3j-xxv6-8526.json b/advisories/unreviewed/2022/05/GHSA-5p3j-xxv6-8526/GHSA-5p3j-xxv6-8526.json index 32e58703210..12a3dcd5720 100644 --- a/advisories/unreviewed/2022/05/GHSA-5p3j-xxv6-8526/GHSA-5p3j-xxv6-8526.json +++ b/advisories/unreviewed/2022/05/GHSA-5p3j-xxv6-8526/GHSA-5p3j-xxv6-8526.json @@ -7,12 +7,8 @@ "CVE-2021-28632" ], "details": "Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pjj-7fq8-9gpf/GHSA-5pjj-7fq8-9gpf.json b/advisories/unreviewed/2022/05/GHSA-5pjj-7fq8-9gpf/GHSA-5pjj-7fq8-9gpf.json index bd6ee0ec45e..a74d37c5670 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pjj-7fq8-9gpf/GHSA-5pjj-7fq8-9gpf.json +++ b/advisories/unreviewed/2022/05/GHSA-5pjj-7fq8-9gpf/GHSA-5pjj-7fq8-9gpf.json @@ -7,12 +7,8 @@ "CVE-2021-36028" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an XML Injection vulnerability when saving a configurable product. An attacker with admin privileges can trigger a specially crafted script to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pm5-4gmv-q7c9/GHSA-5pm5-4gmv-q7c9.json b/advisories/unreviewed/2022/05/GHSA-5pm5-4gmv-q7c9/GHSA-5pm5-4gmv-q7c9.json index 5a3211a337f..beddd98052b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pm5-4gmv-q7c9/GHSA-5pm5-4gmv-q7c9.json +++ b/advisories/unreviewed/2022/05/GHSA-5pm5-4gmv-q7c9/GHSA-5pm5-4gmv-q7c9.json @@ -7,12 +7,8 @@ "CVE-2005-3587" ], "details": "Improper boundary checks in petite.c in Clam AntiVirus (ClamAV) before 0.87.1 allows attackers to perform unknown attacks via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5q24-6jhj-mv45/GHSA-5q24-6jhj-mv45.json b/advisories/unreviewed/2022/05/GHSA-5q24-6jhj-mv45/GHSA-5q24-6jhj-mv45.json index a5e3a1b6417..e5be8f6360c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5q24-6jhj-mv45/GHSA-5q24-6jhj-mv45.json +++ b/advisories/unreviewed/2022/05/GHSA-5q24-6jhj-mv45/GHSA-5q24-6jhj-mv45.json @@ -7,12 +7,8 @@ "CVE-2005-3630" ], "details": "Fedora Directory Server before 10 allows remote attackers to obtain sensitive information, such as the password from adm.conf via an IFRAME element, probably involving an Apache httpd.conf configuration that orders \"allow\" directives before \"deny\" directives.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5q3r-mgh3-g7w4/GHSA-5q3r-mgh3-g7w4.json b/advisories/unreviewed/2022/05/GHSA-5q3r-mgh3-g7w4/GHSA-5q3r-mgh3-g7w4.json index 3f5e5dd0a88..d3c8d08116b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5q3r-mgh3-g7w4/GHSA-5q3r-mgh3-g7w4.json +++ b/advisories/unreviewed/2022/05/GHSA-5q3r-mgh3-g7w4/GHSA-5q3r-mgh3-g7w4.json @@ -7,12 +7,8 @@ "CVE-2005-3793" ], "details": "Multiple SQL injection vulnerabilities in AlstraSoft Affiliate Network Pro 7.2 allow remote attackers to bypass authentication and execute arbitrary SQL commands via the (1) username or (2) password to admin/admin_validate_login, or the (3) login, (4) password, and (5) flag parameters to login_validate.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5qp5-hvx5-h4jm/GHSA-5qp5-hvx5-h4jm.json b/advisories/unreviewed/2022/05/GHSA-5qp5-hvx5-h4jm/GHSA-5qp5-hvx5-h4jm.json index 76a16e6d8a4..3162b607fc3 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qp5-hvx5-h4jm/GHSA-5qp5-hvx5-h4jm.json +++ b/advisories/unreviewed/2022/05/GHSA-5qp5-hvx5-h4jm/GHSA-5qp5-hvx5-h4jm.json @@ -7,12 +7,8 @@ "CVE-2005-3535" ], "details": "Buffer overflow in KETM 0.0.6 allows local users to execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5rf3-f924-cp2x/GHSA-5rf3-f924-cp2x.json b/advisories/unreviewed/2022/05/GHSA-5rf3-f924-cp2x/GHSA-5rf3-f924-cp2x.json index f3e3012dee6..54a93fe0e6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rf3-f924-cp2x/GHSA-5rf3-f924-cp2x.json +++ b/advisories/unreviewed/2022/05/GHSA-5rf3-f924-cp2x/GHSA-5rf3-f924-cp2x.json @@ -7,12 +7,8 @@ "CVE-2005-3821" ], "details": "Cross-site scripting (XSS) vulnerability in vTiger CRM 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via multiple vectors, including the account name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5vw8-85c9-rwpj/GHSA-5vw8-85c9-rwpj.json b/advisories/unreviewed/2022/05/GHSA-5vw8-85c9-rwpj/GHSA-5vw8-85c9-rwpj.json index c33f0c11221..46e24cfc19f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vw8-85c9-rwpj/GHSA-5vw8-85c9-rwpj.json +++ b/advisories/unreviewed/2022/05/GHSA-5vw8-85c9-rwpj/GHSA-5vw8-85c9-rwpj.json @@ -7,12 +7,8 @@ "CVE-2020-18126" ], "details": "Multiple stored cross-site scripting (XSS) vulnerabilities in the Sections module of Indexhibit 2.1.5 allows attackers to execute arbitrary web scripts or HTML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wvg-5fxw-mw47/GHSA-5wvg-5fxw-mw47.json b/advisories/unreviewed/2022/05/GHSA-5wvg-5fxw-mw47/GHSA-5wvg-5fxw-mw47.json index 5f8b6958de0..399395d0b7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wvg-5fxw-mw47/GHSA-5wvg-5fxw-mw47.json +++ b/advisories/unreviewed/2022/05/GHSA-5wvg-5fxw-mw47/GHSA-5wvg-5fxw-mw47.json @@ -7,12 +7,8 @@ "CVE-2005-3646" ], "details": "Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the sessionID parameter in (1) logout.php and (2) index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62hf-q4w4-g2fh/GHSA-62hf-q4w4-g2fh.json b/advisories/unreviewed/2022/05/GHSA-62hf-q4w4-g2fh/GHSA-62hf-q4w4-g2fh.json index 8ab294a8785..990f87a4fe4 100644 --- a/advisories/unreviewed/2022/05/GHSA-62hf-q4w4-g2fh/GHSA-62hf-q4w4-g2fh.json +++ b/advisories/unreviewed/2022/05/GHSA-62hf-q4w4-g2fh/GHSA-62hf-q4w4-g2fh.json @@ -7,12 +7,8 @@ "CVE-2005-3471" ], "details": "Directory traversal vulnerability in the ruleset view for MailWatch for MailScanner 1.0.2 allows remote attackers to access arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62jp-4qc2-x9xx/GHSA-62jp-4qc2-x9xx.json b/advisories/unreviewed/2022/05/GHSA-62jp-4qc2-x9xx/GHSA-62jp-4qc2-x9xx.json index 50cca143265..bbbf48d5bab 100644 --- a/advisories/unreviewed/2022/05/GHSA-62jp-4qc2-x9xx/GHSA-62jp-4qc2-x9xx.json +++ b/advisories/unreviewed/2022/05/GHSA-62jp-4qc2-x9xx/GHSA-62jp-4qc2-x9xx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62pg-x942-m53f/GHSA-62pg-x942-m53f.json b/advisories/unreviewed/2022/05/GHSA-62pg-x942-m53f/GHSA-62pg-x942-m53f.json index 7358267db11..aca3581abbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-62pg-x942-m53f/GHSA-62pg-x942-m53f.json +++ b/advisories/unreviewed/2022/05/GHSA-62pg-x942-m53f/GHSA-62pg-x942-m53f.json @@ -7,12 +7,8 @@ "CVE-2021-29853" ], "details": "IBM Planning Analytics 2.0 could expose information that could be used to to create attacks by not validating the return values from some methods or functions. IBM X-Force ID: 205529.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62x7-9wc2-qhpc/GHSA-62x7-9wc2-qhpc.json b/advisories/unreviewed/2022/05/GHSA-62x7-9wc2-qhpc/GHSA-62x7-9wc2-qhpc.json index 37cf0645744..2610455a9b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-62x7-9wc2-qhpc/GHSA-62x7-9wc2-qhpc.json +++ b/advisories/unreviewed/2022/05/GHSA-62x7-9wc2-qhpc/GHSA-62x7-9wc2-qhpc.json @@ -7,12 +7,8 @@ "CVE-2005-3828" ], "details": "SQL injection vulnerability in index.php in ActiveCampaign KnowledgeBuilder 2.4 and earlier allows remote attackers to execute arbitrary SQL commands via the article parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-633f-95wc-h4mw/GHSA-633f-95wc-h4mw.json b/advisories/unreviewed/2022/05/GHSA-633f-95wc-h4mw/GHSA-633f-95wc-h4mw.json index c1a69b0e1f4..16ab328e527 100644 --- a/advisories/unreviewed/2022/05/GHSA-633f-95wc-h4mw/GHSA-633f-95wc-h4mw.json +++ b/advisories/unreviewed/2022/05/GHSA-633f-95wc-h4mw/GHSA-633f-95wc-h4mw.json @@ -7,12 +7,8 @@ "CVE-2005-3569" ], "details": "INSO service in IBM DB2 Content Manager before 8.2 Fix Pack 10 on AIX allows attackers to cause a denial of service (application crash) via unknown attack vectors involving LZH files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-63pq-5rx5-8rwj/GHSA-63pq-5rx5-8rwj.json b/advisories/unreviewed/2022/05/GHSA-63pq-5rx5-8rwj/GHSA-63pq-5rx5-8rwj.json index b68470bcf97..171ad1b10b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-63pq-5rx5-8rwj/GHSA-63pq-5rx5-8rwj.json +++ b/advisories/unreviewed/2022/05/GHSA-63pq-5rx5-8rwj/GHSA-63pq-5rx5-8rwj.json @@ -7,12 +7,8 @@ "CVE-2005-3633" ], "details": "HTTP response splitting vulnerability in frameset.htm in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to inject arbitrary HTML headers via the sap-exiturl parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6454-hgc7-888r/GHSA-6454-hgc7-888r.json b/advisories/unreviewed/2022/05/GHSA-6454-hgc7-888r/GHSA-6454-hgc7-888r.json index 56b34aa58dc..ceb6e6cd977 100644 --- a/advisories/unreviewed/2022/05/GHSA-6454-hgc7-888r/GHSA-6454-hgc7-888r.json +++ b/advisories/unreviewed/2022/05/GHSA-6454-hgc7-888r/GHSA-6454-hgc7-888r.json @@ -7,12 +7,8 @@ "CVE-2021-36035" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability. An attacker with admin privileges could make a crafted request to the Adobe Stock API to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6495-2rv9-mpgm/GHSA-6495-2rv9-mpgm.json b/advisories/unreviewed/2022/05/GHSA-6495-2rv9-mpgm/GHSA-6495-2rv9-mpgm.json index ad38459e511..b45cc2e4637 100644 --- a/advisories/unreviewed/2022/05/GHSA-6495-2rv9-mpgm/GHSA-6495-2rv9-mpgm.json +++ b/advisories/unreviewed/2022/05/GHSA-6495-2rv9-mpgm/GHSA-6495-2rv9-mpgm.json @@ -7,12 +7,8 @@ "CVE-2005-3886" ], "details": "Unspecified vulnerability in Cisco Security Agent (CSA) 4.5.0 and 4.5.1 agents, when running on Windows systems, allows local users to bypass protections and gain system privileges by executing certain local software.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-65fm-xp7m-qw2x/GHSA-65fm-xp7m-qw2x.json b/advisories/unreviewed/2022/05/GHSA-65fm-xp7m-qw2x/GHSA-65fm-xp7m-qw2x.json index ee61eec6b06..72d0685a2b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-65fm-xp7m-qw2x/GHSA-65fm-xp7m-qw2x.json +++ b/advisories/unreviewed/2022/05/GHSA-65fm-xp7m-qw2x/GHSA-65fm-xp7m-qw2x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-663v-cjm7-6hwq/GHSA-663v-cjm7-6hwq.json b/advisories/unreviewed/2022/05/GHSA-663v-cjm7-6hwq/GHSA-663v-cjm7-6hwq.json index 7516c6b7e22..27b792697fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-663v-cjm7-6hwq/GHSA-663v-cjm7-6hwq.json +++ b/advisories/unreviewed/2022/05/GHSA-663v-cjm7-6hwq/GHSA-663v-cjm7-6hwq.json @@ -7,12 +7,8 @@ "CVE-2005-3571" ], "details": "PHP file inclusion vulnerability in protection.php in CodeGrrl (a) PHPCalendar 1.0, (b) PHPClique 1.0, (c) PHPCurrently 2.0, (d) PHPFanBase 2.1, and (e) PHPQuotes 1.0 allows remote attackers to include arbitrary local files via the siteurl parameter when register_globals is enabled. NOTE: It was later reported that PHPFanBase 2.2 is also affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-667r-625w-c745/GHSA-667r-625w-c745.json b/advisories/unreviewed/2022/05/GHSA-667r-625w-c745/GHSA-667r-625w-c745.json index 7b781b7722b..77219458ae7 100644 --- a/advisories/unreviewed/2022/05/GHSA-667r-625w-c745/GHSA-667r-625w-c745.json +++ b/advisories/unreviewed/2022/05/GHSA-667r-625w-c745/GHSA-667r-625w-c745.json @@ -7,12 +7,8 @@ "CVE-2005-3708" ], "details": "Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66c4-8x32-4mx8/GHSA-66c4-8x32-4mx8.json b/advisories/unreviewed/2022/05/GHSA-66c4-8x32-4mx8/GHSA-66c4-8x32-4mx8.json index f6f6d0164a9..4b8f6ebf043 100644 --- a/advisories/unreviewed/2022/05/GHSA-66c4-8x32-4mx8/GHSA-66c4-8x32-4mx8.json +++ b/advisories/unreviewed/2022/05/GHSA-66c4-8x32-4mx8/GHSA-66c4-8x32-4mx8.json @@ -7,12 +7,8 @@ "CVE-2021-30354" ], "details": "Amazon Kindle e-reader prior to and including version 5.13.4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function CJBig2Image::expand() and results in a memory corruption that leads to code execution when parsing a crafted PDF book.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6758-fpvv-3g4h/GHSA-6758-fpvv-3g4h.json b/advisories/unreviewed/2022/05/GHSA-6758-fpvv-3g4h/GHSA-6758-fpvv-3g4h.json index 99420c7dd9f..625bf6ec997 100644 --- a/advisories/unreviewed/2022/05/GHSA-6758-fpvv-3g4h/GHSA-6758-fpvv-3g4h.json +++ b/advisories/unreviewed/2022/05/GHSA-6758-fpvv-3g4h/GHSA-6758-fpvv-3g4h.json @@ -7,12 +7,8 @@ "CVE-2021-36069" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-692p-7x7m-5hxg/GHSA-692p-7x7m-5hxg.json b/advisories/unreviewed/2022/05/GHSA-692p-7x7m-5hxg/GHSA-692p-7x7m-5hxg.json index f508c8225b6..1a3b95dd93c 100644 --- a/advisories/unreviewed/2022/05/GHSA-692p-7x7m-5hxg/GHSA-692p-7x7m-5hxg.json +++ b/advisories/unreviewed/2022/05/GHSA-692p-7x7m-5hxg/GHSA-692p-7x7m-5hxg.json @@ -7,12 +7,8 @@ "CVE-2020-19046" ], "details": "Cross Site Scripting (XSS) in S-CMS v1.0 allows remote attackers to execute arbitrary code via the component '/admin/tpl.php?page='.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6cwv-wj7v-73xp/GHSA-6cwv-wj7v-73xp.json b/advisories/unreviewed/2022/05/GHSA-6cwv-wj7v-73xp/GHSA-6cwv-wj7v-73xp.json index a49483e4007..a0f8d72c235 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cwv-wj7v-73xp/GHSA-6cwv-wj7v-73xp.json +++ b/advisories/unreviewed/2022/05/GHSA-6cwv-wj7v-73xp/GHSA-6cwv-wj7v-73xp.json @@ -7,12 +7,8 @@ "CVE-2021-36042" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability in the API File Option Upload Extension. An attacker with Admin privileges can achieve unrestricted file upload which can result in remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f2x-w369-fm8r/GHSA-6f2x-w369-fm8r.json b/advisories/unreviewed/2022/05/GHSA-6f2x-w369-fm8r/GHSA-6f2x-w369-fm8r.json index 569fdbe04d0..6b121e808d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f2x-w369-fm8r/GHSA-6f2x-w369-fm8r.json +++ b/advisories/unreviewed/2022/05/GHSA-6f2x-w369-fm8r/GHSA-6f2x-w369-fm8r.json @@ -7,12 +7,8 @@ "CVE-2005-3565" ], "details": "Unknown vulnerability in remshd daemon in HP-UX B.11.00, B.11.11, and B.11.23 while running in \"Trusted Mode\" allows remote attackers to gain unauthorized system access via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6gq4-5228-83pp/GHSA-6gq4-5228-83pp.json b/advisories/unreviewed/2022/05/GHSA-6gq4-5228-83pp/GHSA-6gq4-5228-83pp.json index 93be9cf5eeb..5277f0200a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gq4-5228-83pp/GHSA-6gq4-5228-83pp.json +++ b/advisories/unreviewed/2022/05/GHSA-6gq4-5228-83pp/GHSA-6gq4-5228-83pp.json @@ -7,12 +7,8 @@ "CVE-2005-3855" ], "details": "SQL injection vulnerability in process.php in 1-2-3 music store allows remote attackers to execute arbitrary SQL commands via the AlbumID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6h39-w5fw-p693/GHSA-6h39-w5fw-p693.json b/advisories/unreviewed/2022/05/GHSA-6h39-w5fw-p693/GHSA-6h39-w5fw-p693.json index 441c4e9872e..6d4ca3dacb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h39-w5fw-p693/GHSA-6h39-w5fw-p693.json +++ b/advisories/unreviewed/2022/05/GHSA-6h39-w5fw-p693/GHSA-6h39-w5fw-p693.json @@ -7,12 +7,8 @@ "CVE-2005-3437" ], "details": "Unspecified vulnerability in the PL/SQL component in Oracle Database Server 9i up to 10.1.0.4 has unknown impact and attack vectors, aka Oracle Vuln# DB01.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6hvv-x2xw-p422/GHSA-6hvv-x2xw-p422.json b/advisories/unreviewed/2022/05/GHSA-6hvv-x2xw-p422/GHSA-6hvv-x2xw-p422.json index 5646f5d778f..e887b0d6121 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hvv-x2xw-p422/GHSA-6hvv-x2xw-p422.json +++ b/advisories/unreviewed/2022/05/GHSA-6hvv-x2xw-p422/GHSA-6hvv-x2xw-p422.json @@ -7,12 +7,8 @@ "CVE-2021-22025" ], "details": "The vRealize Operations Manager API (8.x prior to 8.5) contains a broken access control vulnerability leading to unauthenticated API access. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can add new nodes to existing vROps cluster.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6j3c-gfqc-gpj8/GHSA-6j3c-gfqc-gpj8.json b/advisories/unreviewed/2022/05/GHSA-6j3c-gfqc-gpj8/GHSA-6j3c-gfqc-gpj8.json index 449a4a999aa..42d3e76e234 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j3c-gfqc-gpj8/GHSA-6j3c-gfqc-gpj8.json +++ b/advisories/unreviewed/2022/05/GHSA-6j3c-gfqc-gpj8/GHSA-6j3c-gfqc-gpj8.json @@ -7,12 +7,8 @@ "CVE-2021-28621" ], "details": "Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6jv7-7wp7-jqf4/GHSA-6jv7-7wp7-jqf4.json b/advisories/unreviewed/2022/05/GHSA-6jv7-7wp7-jqf4/GHSA-6jv7-7wp7-jqf4.json index 767a09b9ad5..fb31cfca2a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jv7-7wp7-jqf4/GHSA-6jv7-7wp7-jqf4.json +++ b/advisories/unreviewed/2022/05/GHSA-6jv7-7wp7-jqf4/GHSA-6jv7-7wp7-jqf4.json @@ -7,12 +7,8 @@ "CVE-2005-3681" ], "details": "SQL injection vulnerability in viewcat.php in XOOPS WF-Downloads module 2.05 allows remote attackers to execute arbitrary SQL commands via the list parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6m9p-h3pq-4r35/GHSA-6m9p-h3pq-4r35.json b/advisories/unreviewed/2022/05/GHSA-6m9p-h3pq-4r35/GHSA-6m9p-h3pq-4r35.json index 9fe63a14bce..f2ffea9c3a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m9p-h3pq-4r35/GHSA-6m9p-h3pq-4r35.json +++ b/advisories/unreviewed/2022/05/GHSA-6m9p-h3pq-4r35/GHSA-6m9p-h3pq-4r35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mhv-c8jv-xqx4/GHSA-6mhv-c8jv-xqx4.json b/advisories/unreviewed/2022/05/GHSA-6mhv-c8jv-xqx4/GHSA-6mhv-c8jv-xqx4.json index b3da3c72a64..82d7a29c18d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mhv-c8jv-xqx4/GHSA-6mhv-c8jv-xqx4.json +++ b/advisories/unreviewed/2022/05/GHSA-6mhv-c8jv-xqx4/GHSA-6mhv-c8jv-xqx4.json @@ -7,12 +7,8 @@ "CVE-2021-38390" ], "details": "A Blind SQL injection vulnerability exists in the /DataHandler/HandlerEnergyType.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter egyid before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\\MSSQLSERVER.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6p6f-fgwm-2pr9/GHSA-6p6f-fgwm-2pr9.json b/advisories/unreviewed/2022/05/GHSA-6p6f-fgwm-2pr9/GHSA-6p6f-fgwm-2pr9.json index 6f063628e95..eaf4c476d72 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p6f-fgwm-2pr9/GHSA-6p6f-fgwm-2pr9.json +++ b/advisories/unreviewed/2022/05/GHSA-6p6f-fgwm-2pr9/GHSA-6p6f-fgwm-2pr9.json @@ -7,12 +7,8 @@ "CVE-2021-24665" ], "details": "The WP Video Lightbox WordPress plugin before 1.9.3 does not escape the attributes of its shortcodes, allowing users with a role as low as contributor to perform Cross-Site Scripting attacks", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6p7q-wq2w-35w3/GHSA-6p7q-wq2w-35w3.json b/advisories/unreviewed/2022/05/GHSA-6p7q-wq2w-35w3/GHSA-6p7q-wq2w-35w3.json index 439ef752a50..0a16fc0d892 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p7q-wq2w-35w3/GHSA-6p7q-wq2w-35w3.json +++ b/advisories/unreviewed/2022/05/GHSA-6p7q-wq2w-35w3/GHSA-6p7q-wq2w-35w3.json @@ -7,12 +7,8 @@ "CVE-2005-3635" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in SAP Web Application Server (WAS) 6.10 through 7.00 allow remote attackers to inject arbitrary web script or HTML via (1) the sap-syscmd in sap-syscmd and (2) the BspApplication field in the SYSTEM PUBLIC test application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6p9x-h6pm-f2jh/GHSA-6p9x-h6pm-f2jh.json b/advisories/unreviewed/2022/05/GHSA-6p9x-h6pm-f2jh/GHSA-6p9x-h6pm-f2jh.json index 9fb55326df6..4391b1bec57 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p9x-h6pm-f2jh/GHSA-6p9x-h6pm-f2jh.json +++ b/advisories/unreviewed/2022/05/GHSA-6p9x-h6pm-f2jh/GHSA-6p9x-h6pm-f2jh.json @@ -7,12 +7,8 @@ "CVE-2005-3517" ], "details": "Chipmunk Scripts Guestbook allows remote attackers to obtain the installation path of the script via a URL that causes an error message to be displayed, such as a URL that contains a single quote (') in the start parameter of index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pcm-x8v9-rgxq/GHSA-6pcm-x8v9-rgxq.json b/advisories/unreviewed/2022/05/GHSA-6pcm-x8v9-rgxq/GHSA-6pcm-x8v9-rgxq.json index 5a708580712..f91badb8cba 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pcm-x8v9-rgxq/GHSA-6pcm-x8v9-rgxq.json +++ b/advisories/unreviewed/2022/05/GHSA-6pcm-x8v9-rgxq/GHSA-6pcm-x8v9-rgxq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6pr3-25f5-mgjj/GHSA-6pr3-25f5-mgjj.json b/advisories/unreviewed/2022/05/GHSA-6pr3-25f5-mgjj/GHSA-6pr3-25f5-mgjj.json index d693da225b5..b52ccf179f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pr3-25f5-mgjj/GHSA-6pr3-25f5-mgjj.json +++ b/advisories/unreviewed/2022/05/GHSA-6pr3-25f5-mgjj/GHSA-6pr3-25f5-mgjj.json @@ -7,12 +7,8 @@ "CVE-2005-3428" ], "details": "Cross-site scripting (XSS) vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to inject arbitrary web script or HTML via a message body.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pvj-2c9w-wwrp/GHSA-6pvj-2c9w-wwrp.json b/advisories/unreviewed/2022/05/GHSA-6pvj-2c9w-wwrp/GHSA-6pvj-2c9w-wwrp.json index 11e0c22067a..b313ef92d3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pvj-2c9w-wwrp/GHSA-6pvj-2c9w-wwrp.json +++ b/advisories/unreviewed/2022/05/GHSA-6pvj-2c9w-wwrp/GHSA-6pvj-2c9w-wwrp.json @@ -7,12 +7,8 @@ "CVE-2005-3744" ], "details": "SQL injection vulnerability in index.php in phpComasy 0.7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: an examination of the 0.7.5 source code suggests that there is no id parameter being handled directly by index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6qfg-9c4g-p7cq/GHSA-6qfg-9c4g-p7cq.json b/advisories/unreviewed/2022/05/GHSA-6qfg-9c4g-p7cq/GHSA-6qfg-9c4g-p7cq.json index e6d69a38085..811a8053dae 100644 --- a/advisories/unreviewed/2022/05/GHSA-6qfg-9c4g-p7cq/GHSA-6qfg-9c4g-p7cq.json +++ b/advisories/unreviewed/2022/05/GHSA-6qfg-9c4g-p7cq/GHSA-6qfg-9c4g-p7cq.json @@ -7,12 +7,8 @@ "CVE-2005-3673" ], "details": "The Internet Key Exchange version 1 (IKEv1) implementation in Check Point products allows remote attackers to cause a denial of service via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6r4v-c2fc-3c83/GHSA-6r4v-c2fc-3c83.json b/advisories/unreviewed/2022/05/GHSA-6r4v-c2fc-3c83/GHSA-6r4v-c2fc-3c83.json index db550f499f8..419e78437cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r4v-c2fc-3c83/GHSA-6r4v-c2fc-3c83.json +++ b/advisories/unreviewed/2022/05/GHSA-6r4v-c2fc-3c83/GHSA-6r4v-c2fc-3c83.json @@ -7,12 +7,8 @@ "CVE-2005-4055" ], "details": "SQL injection vulnerability in index.php in Cars Portal 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) page and (2) car parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6r8p-cw9m-43r8/GHSA-6r8p-cw9m-43r8.json b/advisories/unreviewed/2022/05/GHSA-6r8p-cw9m-43r8/GHSA-6r8p-cw9m-43r8.json index 13dd539eb86..0ee7294a6b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r8p-cw9m-43r8/GHSA-6r8p-cw9m-43r8.json +++ b/advisories/unreviewed/2022/05/GHSA-6r8p-cw9m-43r8/GHSA-6r8p-cw9m-43r8.json @@ -7,12 +7,8 @@ "CVE-2005-3764" ], "details": "The image gallery (imagegallery) component in Exponent CMS 0.96.3 and later versions does not properly check the MIME type of uploaded files, with unknown impact from the preview icon, possibly involving injection of HTML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vgq-769v-jf4q/GHSA-6vgq-769v-jf4q.json b/advisories/unreviewed/2022/05/GHSA-6vgq-769v-jf4q/GHSA-6vgq-769v-jf4q.json index dde68abe988..dc60be6b623 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vgq-769v-jf4q/GHSA-6vgq-769v-jf4q.json +++ b/advisories/unreviewed/2022/05/GHSA-6vgq-769v-jf4q/GHSA-6vgq-769v-jf4q.json @@ -7,12 +7,8 @@ "CVE-2020-19821" ], "details": "A SQL injection vulnerability in admin.php of DOYOCMS 2.3 allows attackers to execute arbitrary SQL commands via the orders[] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w94-3r46-x632/GHSA-6w94-3r46-x632.json b/advisories/unreviewed/2022/05/GHSA-6w94-3r46-x632/GHSA-6w94-3r46-x632.json index 8f34a89f76f..7a11845f963 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w94-3r46-x632/GHSA-6w94-3r46-x632.json +++ b/advisories/unreviewed/2022/05/GHSA-6w94-3r46-x632/GHSA-6w94-3r46-x632.json @@ -7,12 +7,8 @@ "CVE-2021-39316" ], "details": "The Zoomsounds plugin <= 6.45 for WordPress allows arbitrary files, including sensitive configuration files such as wp-config.php, to be downloaded via the `dzsap_download` action using directory traversal in the `link` parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wp4-v78f-625g/GHSA-6wp4-v78f-625g.json b/advisories/unreviewed/2022/05/GHSA-6wp4-v78f-625g/GHSA-6wp4-v78f-625g.json index b267707eae2..20f6917c027 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wp4-v78f-625g/GHSA-6wp4-v78f-625g.json +++ b/advisories/unreviewed/2022/05/GHSA-6wp4-v78f-625g/GHSA-6wp4-v78f-625g.json @@ -7,12 +7,8 @@ "CVE-2005-3804" ], "details": "Cisco IP Phone (VoIP) 7920 1.0(8) listens to UDP port 17185 to support a VxWorks debugger, which allows remote attackers to obtain sensitive information and cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6x8c-5x8p-83f7/GHSA-6x8c-5x8p-83f7.json b/advisories/unreviewed/2022/05/GHSA-6x8c-5x8p-83f7/GHSA-6x8c-5x8p-83f7.json index d849626a174..aa8b333d899 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x8c-5x8p-83f7/GHSA-6x8c-5x8p-83f7.json +++ b/advisories/unreviewed/2022/05/GHSA-6x8c-5x8p-83f7/GHSA-6x8c-5x8p-83f7.json @@ -7,12 +7,8 @@ "CVE-2005-3509" ], "details": "Multiple SQL injection vulnerabilities in JPortal allow remote attackers to execute arbitrary SQL commands via (1) banner.php or the id parameter to (2) print.php, (3) comment.php, and (4) news.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6xq5-f853-99f3/GHSA-6xq5-f853-99f3.json b/advisories/unreviewed/2022/05/GHSA-6xq5-f853-99f3/GHSA-6xq5-f853-99f3.json index 999f2fa2685..2709972c703 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xq5-f853-99f3/GHSA-6xq5-f853-99f3.json +++ b/advisories/unreviewed/2022/05/GHSA-6xq5-f853-99f3/GHSA-6xq5-f853-99f3.json @@ -7,12 +7,8 @@ "CVE-2021-37416" ], "details": "Zoho ManageEngine ADSelfService Plus version 6103 and prior is vulnerable to reflected XSS on the loadframe page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7228-q7cr-4533/GHSA-7228-q7cr-4533.json b/advisories/unreviewed/2022/05/GHSA-7228-q7cr-4533/GHSA-7228-q7cr-4533.json index 9352059074b..553532bcc0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7228-q7cr-4533/GHSA-7228-q7cr-4533.json +++ b/advisories/unreviewed/2022/05/GHSA-7228-q7cr-4533/GHSA-7228-q7cr-4533.json @@ -7,12 +7,8 @@ "CVE-2005-3801" ], "details": "CounterPane PasswordSafe 1.x and 2.x allows local users to test possible encryption keys against a subset of the stored key data without performing the more expensive key derivation function (KDF) function, which reduces the search time in brute force attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-729v-6c75-4j38/GHSA-729v-6c75-4j38.json b/advisories/unreviewed/2022/05/GHSA-729v-6c75-4j38/GHSA-729v-6c75-4j38.json index ccedbbe71e7..a2359665fa3 100644 --- a/advisories/unreviewed/2022/05/GHSA-729v-6c75-4j38/GHSA-729v-6c75-4j38.json +++ b/advisories/unreviewed/2022/05/GHSA-729v-6c75-4j38/GHSA-729v-6c75-4j38.json @@ -7,12 +7,8 @@ "CVE-2005-3513" ], "details": "index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f parameter set to a single quote (').", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72qv-cq28-6xv8/GHSA-72qv-cq28-6xv8.json b/advisories/unreviewed/2022/05/GHSA-72qv-cq28-6xv8/GHSA-72qv-cq28-6xv8.json index 64d2c4ae0a0..b51f25bfbcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-72qv-cq28-6xv8/GHSA-72qv-cq28-6xv8.json +++ b/advisories/unreviewed/2022/05/GHSA-72qv-cq28-6xv8/GHSA-72qv-cq28-6xv8.json @@ -7,12 +7,8 @@ "CVE-2021-39368" ], "details": "Canon Oce Print Exec Workgroup 1.3.2 allows XSS via the lang parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-736j-w2q3-gf83/GHSA-736j-w2q3-gf83.json b/advisories/unreviewed/2022/05/GHSA-736j-w2q3-gf83/GHSA-736j-w2q3-gf83.json index ca1d12f87e6..83125e8752f 100644 --- a/advisories/unreviewed/2022/05/GHSA-736j-w2q3-gf83/GHSA-736j-w2q3-gf83.json +++ b/advisories/unreviewed/2022/05/GHSA-736j-w2q3-gf83/GHSA-736j-w2q3-gf83.json @@ -7,12 +7,8 @@ "CVE-2021-30690" ], "details": "Multiple issues in apache were addressed by updating apache to version 2.4.46. This issue is fixed in Security Update 2021-004 Mojave. Multiple issues in apache.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-736q-c62w-j8xj/GHSA-736q-c62w-j8xj.json b/advisories/unreviewed/2022/05/GHSA-736q-c62w-j8xj/GHSA-736q-c62w-j8xj.json index ac0b8af6ec8..b0119cc2eb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-736q-c62w-j8xj/GHSA-736q-c62w-j8xj.json +++ b/advisories/unreviewed/2022/05/GHSA-736q-c62w-j8xj/GHSA-736q-c62w-j8xj.json @@ -7,12 +7,8 @@ "CVE-2021-30660" ], "details": "An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. A malicious application may be able to disclose kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-759j-wf5g-3hcr/GHSA-759j-wf5g-3hcr.json b/advisories/unreviewed/2022/05/GHSA-759j-wf5g-3hcr/GHSA-759j-wf5g-3hcr.json index b90ee205c5a..6325bd9a1ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-759j-wf5g-3hcr/GHSA-759j-wf5g-3hcr.json +++ b/advisories/unreviewed/2022/05/GHSA-759j-wf5g-3hcr/GHSA-759j-wf5g-3hcr.json @@ -7,12 +7,8 @@ "CVE-2005-3582" ], "details": "ImageMagick before 6.2.4.2-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75cq-7gx4-gwpc/GHSA-75cq-7gx4-gwpc.json b/advisories/unreviewed/2022/05/GHSA-75cq-7gx4-gwpc/GHSA-75cq-7gx4-gwpc.json index 7b0b22c173d..24a134d4cde 100644 --- a/advisories/unreviewed/2022/05/GHSA-75cq-7gx4-gwpc/GHSA-75cq-7gx4-gwpc.json +++ b/advisories/unreviewed/2022/05/GHSA-75cq-7gx4-gwpc/GHSA-75cq-7gx4-gwpc.json @@ -7,12 +7,8 @@ "CVE-2021-36068" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7622-w7gp-x7c6/GHSA-7622-w7gp-x7c6.json b/advisories/unreviewed/2022/05/GHSA-7622-w7gp-x7c6/GHSA-7622-w7gp-x7c6.json index d9f0ea4e0ca..388bd91ae83 100644 --- a/advisories/unreviewed/2022/05/GHSA-7622-w7gp-x7c6/GHSA-7622-w7gp-x7c6.json +++ b/advisories/unreviewed/2022/05/GHSA-7622-w7gp-x7c6/GHSA-7622-w7gp-x7c6.json @@ -7,12 +7,8 @@ "CVE-2005-3403" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.4.1 through 1.5.1-pl1 allow remote attackers to inject arbitrary web script or HTML via (1) the _base_href parameter in translate.php, (2) the _base_path parameter in news.inc.php, and (3) the p parameter in add_note.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-764c-m5hf-9527/GHSA-764c-m5hf-9527.json b/advisories/unreviewed/2022/05/GHSA-764c-m5hf-9527/GHSA-764c-m5hf-9527.json index b981182a0ff..0ba68ad2149 100644 --- a/advisories/unreviewed/2022/05/GHSA-764c-m5hf-9527/GHSA-764c-m5hf-9527.json +++ b/advisories/unreviewed/2022/05/GHSA-764c-m5hf-9527/GHSA-764c-m5hf-9527.json @@ -7,12 +7,8 @@ "CVE-2021-39599" ], "details": "Multiple Cross Site Scripting (XSS) vulnerabilities exists in CXUUCMS 3.1 in the search and c parameters in (1) public/search.php and in the (2) c parameter in admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-764h-r5xf-7cf5/GHSA-764h-r5xf-7cf5.json b/advisories/unreviewed/2022/05/GHSA-764h-r5xf-7cf5/GHSA-764h-r5xf-7cf5.json index 65373308483..d11d246d642 100644 --- a/advisories/unreviewed/2022/05/GHSA-764h-r5xf-7cf5/GHSA-764h-r5xf-7cf5.json +++ b/advisories/unreviewed/2022/05/GHSA-764h-r5xf-7cf5/GHSA-764h-r5xf-7cf5.json @@ -7,12 +7,8 @@ "CVE-2021-36359" ], "details": "OrbiTeam BSCW Classic before 7.4.3 allows exportpdf authenticated remote code execution (RCE) via XML tag injection because reportlab\\platypus\\paraparser.py (reached via bscw.cgi op=_editfolder.EditFolder) calls eval on attacker-supplied Python code. This is fixed in 5.0.12, 5.1.10, 5.2.4, 7.3.3, and 7.4.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-76cf-2jrp-mj4m/GHSA-76cf-2jrp-mj4m.json b/advisories/unreviewed/2022/05/GHSA-76cf-2jrp-mj4m/GHSA-76cf-2jrp-mj4m.json index c813becb3b6..152ff622cc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-76cf-2jrp-mj4m/GHSA-76cf-2jrp-mj4m.json +++ b/advisories/unreviewed/2022/05/GHSA-76cf-2jrp-mj4m/GHSA-76cf-2jrp-mj4m.json @@ -7,12 +7,8 @@ "CVE-2021-30679" ], "details": "This issue was addressed by removing the vulnerable code. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave. An application may be able to gain elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-772h-p97p-f48g/GHSA-772h-p97p-f48g.json b/advisories/unreviewed/2022/05/GHSA-772h-p97p-f48g/GHSA-772h-p97p-f48g.json index be1d71e9088..837610cdfad 100644 --- a/advisories/unreviewed/2022/05/GHSA-772h-p97p-f48g/GHSA-772h-p97p-f48g.json +++ b/advisories/unreviewed/2022/05/GHSA-772h-p97p-f48g/GHSA-772h-p97p-f48g.json @@ -7,12 +7,8 @@ "CVE-2005-3871" ], "details": "Multiple SQL injection vulnerabilities in Joels Bulletin board (JBB) 0.9.9rc3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) nr parameter in topiczeigen.php, (2) forum and (3) zeigeseite parameters in showforum.php, (4) forum parameter in newtopic.php, and (5) tidnr parameter in neuerbeitrag.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-774c-xc8q-c8cj/GHSA-774c-xc8q-c8cj.json b/advisories/unreviewed/2022/05/GHSA-774c-xc8q-c8cj/GHSA-774c-xc8q-c8cj.json index 7af0ae8f136..35311ffa2de 100644 --- a/advisories/unreviewed/2022/05/GHSA-774c-xc8q-c8cj/GHSA-774c-xc8q-c8cj.json +++ b/advisories/unreviewed/2022/05/GHSA-774c-xc8q-c8cj/GHSA-774c-xc8q-c8cj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77gw-qmcx-8rpp/GHSA-77gw-qmcx-8rpp.json b/advisories/unreviewed/2022/05/GHSA-77gw-qmcx-8rpp/GHSA-77gw-qmcx-8rpp.json index c2e311afa33..fb678718acf 100644 --- a/advisories/unreviewed/2022/05/GHSA-77gw-qmcx-8rpp/GHSA-77gw-qmcx-8rpp.json +++ b/advisories/unreviewed/2022/05/GHSA-77gw-qmcx-8rpp/GHSA-77gw-qmcx-8rpp.json @@ -7,12 +7,8 @@ "CVE-2021-29744" ], "details": "IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 201694.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7853-h8rx-55w8/GHSA-7853-h8rx-55w8.json b/advisories/unreviewed/2022/05/GHSA-7853-h8rx-55w8/GHSA-7853-h8rx-55w8.json index 40b70bdf49a..542c5cc03a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-7853-h8rx-55w8/GHSA-7853-h8rx-55w8.json +++ b/advisories/unreviewed/2022/05/GHSA-7853-h8rx-55w8/GHSA-7853-h8rx-55w8.json @@ -7,12 +7,8 @@ "CVE-2005-3705" ], "details": "Heap-based buffer overflow in WebKit in Mac OS X and OS X Server 10.3.9 and 10.4.3, as used in applications such as Safari, allows remote attackers to execute arbitrary code via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7886-j39v-ch7f/GHSA-7886-j39v-ch7f.json b/advisories/unreviewed/2022/05/GHSA-7886-j39v-ch7f/GHSA-7886-j39v-ch7f.json index da161b971af..abd0f8e7967 100644 --- a/advisories/unreviewed/2022/05/GHSA-7886-j39v-ch7f/GHSA-7886-j39v-ch7f.json +++ b/advisories/unreviewed/2022/05/GHSA-7886-j39v-ch7f/GHSA-7886-j39v-ch7f.json @@ -7,12 +7,8 @@ "CVE-2005-3840" ], "details": "SQL injection vulnerability in kb.php in Omnistar Live 5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category_id parameter. NOTE: due to a typo, an Internet Explorer issue was incorrectly assigned this identifier, but the correct identifier is CVE-2005-3240.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-78qw-m224-h56g/GHSA-78qw-m224-h56g.json b/advisories/unreviewed/2022/05/GHSA-78qw-m224-h56g/GHSA-78qw-m224-h56g.json index a6fcb8e9f21..3ee4bd863db 100644 --- a/advisories/unreviewed/2022/05/GHSA-78qw-m224-h56g/GHSA-78qw-m224-h56g.json +++ b/advisories/unreviewed/2022/05/GHSA-78qw-m224-h56g/GHSA-78qw-m224-h56g.json @@ -7,12 +7,8 @@ "CVE-2021-27558" ], "details": "A cross site scripting (XSS) issue in EasyCorp ZenTao 12.5.3 allows remote attackers to execute arbitrary web script via various areas such as data-link-creator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-794r-h374-p262/GHSA-794r-h374-p262.json b/advisories/unreviewed/2022/05/GHSA-794r-h374-p262/GHSA-794r-h374-p262.json index d816ff0dc99..93dd3c96e64 100644 --- a/advisories/unreviewed/2022/05/GHSA-794r-h374-p262/GHSA-794r-h374-p262.json +++ b/advisories/unreviewed/2022/05/GHSA-794r-h374-p262/GHSA-794r-h374-p262.json @@ -7,12 +7,8 @@ "CVE-2005-3757" ], "details": "The Saxon XSLT parser in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to obtain sensitive information and execute arbitrary code via dangerous Java class methods in select attribute of xsl:value-of tags in XSLT style sheets, such as (1) system-property, (2) sys:getProperty, and (3) run:exec.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-79cx-xh5h-4vrc/GHSA-79cx-xh5h-4vrc.json b/advisories/unreviewed/2022/05/GHSA-79cx-xh5h-4vrc/GHSA-79cx-xh5h-4vrc.json index 98e5529d804..22e5cee2579 100644 --- a/advisories/unreviewed/2022/05/GHSA-79cx-xh5h-4vrc/GHSA-79cx-xh5h-4vrc.json +++ b/advisories/unreviewed/2022/05/GHSA-79cx-xh5h-4vrc/GHSA-79cx-xh5h-4vrc.json @@ -7,12 +7,8 @@ "CVE-2005-3668" ], "details": "Multiple buffer overflows in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts related to denial of service, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of information in the original sources, it is likely that this candidate will be REJECTed once it is known which implementations are actually vulnerable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7c6q-7j7v-99c4/GHSA-7c6q-7j7v-99c4.json b/advisories/unreviewed/2022/05/GHSA-7c6q-7j7v-99c4/GHSA-7c6q-7j7v-99c4.json index 12fab625672..2c8a3cd363e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c6q-7j7v-99c4/GHSA-7c6q-7j7v-99c4.json +++ b/advisories/unreviewed/2022/05/GHSA-7c6q-7j7v-99c4/GHSA-7c6q-7j7v-99c4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cgh-wxqr-fvg7/GHSA-7cgh-wxqr-fvg7.json b/advisories/unreviewed/2022/05/GHSA-7cgh-wxqr-fvg7/GHSA-7cgh-wxqr-fvg7.json index eee007581b9..61e6fac2eed 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cgh-wxqr-fvg7/GHSA-7cgh-wxqr-fvg7.json +++ b/advisories/unreviewed/2022/05/GHSA-7cgh-wxqr-fvg7/GHSA-7cgh-wxqr-fvg7.json @@ -7,12 +7,8 @@ "CVE-2005-3482" ], "details": "Cisco 1200, 1131, and 1240 series Access Points, when operating in Lightweight Access Point Protocol (LWAPP) mode and controlled by 2000 and 4400 series Airespace WLAN controllers running 3.1.59.24, allow remote attackers to send unencrypted traffic to a secure network using frames with the MAC address of an authenticated end host.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7cj2-ppjq-7f33/GHSA-7cj2-ppjq-7f33.json b/advisories/unreviewed/2022/05/GHSA-7cj2-ppjq-7f33/GHSA-7cj2-ppjq-7f33.json index b142cb61578..6c2903e8260 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cj2-ppjq-7f33/GHSA-7cj2-ppjq-7f33.json +++ b/advisories/unreviewed/2022/05/GHSA-7cj2-ppjq-7f33/GHSA-7cj2-ppjq-7f33.json @@ -7,12 +7,8 @@ "CVE-2005-3566" ], "details": "Buffer overflow in various ha commands of VERITAS Cluster Server for UNIX before 4.0MP2 allows local users to execute arbitrary code via a long VCSI18N_LANG environment variable to (1) haagent, (2) haalert, (3) haattr, (4) hacli, (5) hacli_runcmd, (6) haclus, (7) haconf, (8) hadebug, (9) hagrp, (10) hahb, (11) halog, (12) hareg, (13) hares, (14) hastatus, (15) hasys, (16) hatype, (17) hauser, and (18) tststew.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7cpr-q2xm-pm67/GHSA-7cpr-q2xm-pm67.json b/advisories/unreviewed/2022/05/GHSA-7cpr-q2xm-pm67/GHSA-7cpr-q2xm-pm67.json index ed74e208161..d9eb04dd583 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cpr-q2xm-pm67/GHSA-7cpr-q2xm-pm67.json +++ b/advisories/unreviewed/2022/05/GHSA-7cpr-q2xm-pm67/GHSA-7cpr-q2xm-pm67.json @@ -7,12 +7,8 @@ "CVE-2021-33055" ], "details": "Zoho ManageEngine ADSelfService Plus through 6102 allows unauthenticated remote code execution in non-English editions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7fw2-7hrx-9w5m/GHSA-7fw2-7hrx-9w5m.json b/advisories/unreviewed/2022/05/GHSA-7fw2-7hrx-9w5m/GHSA-7fw2-7hrx-9w5m.json index 6f0bd4294b5..555999add1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fw2-7hrx-9w5m/GHSA-7fw2-7hrx-9w5m.json +++ b/advisories/unreviewed/2022/05/GHSA-7fw2-7hrx-9w5m/GHSA-7fw2-7hrx-9w5m.json @@ -7,12 +7,8 @@ "CVE-2021-35220" ], "details": "Command Injection vulnerability in EmailWebPage API which can lead to a Remote Code Execution (RCE) from the Alerts Settings page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g74-pwc6-8323/GHSA-7g74-pwc6-8323.json b/advisories/unreviewed/2022/05/GHSA-7g74-pwc6-8323/GHSA-7g74-pwc6-8323.json index cf503dce62b..1ddc0a7e629 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g74-pwc6-8323/GHSA-7g74-pwc6-8323.json +++ b/advisories/unreviewed/2022/05/GHSA-7g74-pwc6-8323/GHSA-7g74-pwc6-8323.json @@ -7,12 +7,8 @@ "CVE-2021-36078" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7h5c-jffx-gp3w/GHSA-7h5c-jffx-gp3w.json b/advisories/unreviewed/2022/05/GHSA-7h5c-jffx-gp3w/GHSA-7h5c-jffx-gp3w.json index 2e7ee11ce99..be6d7ceeba1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h5c-jffx-gp3w/GHSA-7h5c-jffx-gp3w.json +++ b/advisories/unreviewed/2022/05/GHSA-7h5c-jffx-gp3w/GHSA-7h5c-jffx-gp3w.json @@ -7,12 +7,8 @@ "CVE-2005-4060" ], "details": "Cross-site scripting (XSS) vulnerability in search.asp in rwAuction Pro 4.0 and 5.0 allows remote attackers to inject arbitrary web script or HTML via the searchtxt parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hc7-vjj6-4p36/GHSA-7hc7-vjj6-4p36.json b/advisories/unreviewed/2022/05/GHSA-7hc7-vjj6-4p36/GHSA-7hc7-vjj6-4p36.json index e61cbf5ab6b..1cf8401cd35 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hc7-vjj6-4p36/GHSA-7hc7-vjj6-4p36.json +++ b/advisories/unreviewed/2022/05/GHSA-7hc7-vjj6-4p36/GHSA-7hc7-vjj6-4p36.json @@ -7,12 +7,8 @@ "CVE-2021-29631" ], "details": "In FreeBSD 13.0-STABLE before n246941-20f96f215562, 12.2-STABLE before r370400, 11.4-STABLE before r370399, 13.0-RELEASE before p4, 12.2-RELEASE before p10, and 11.4-RELEASE before p13, certain VirtIO-based device models in bhyve failed to handle errors when fetching I/O descriptors. A malicious guest may cause the device model to operate on uninitialized I/O vectors leading to memory corruption, crashing of the bhyve process, and possibly arbitrary code execution in the bhyve process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hm8-q778-7h2c/GHSA-7hm8-q778-7h2c.json b/advisories/unreviewed/2022/05/GHSA-7hm8-q778-7h2c/GHSA-7hm8-q778-7h2c.json index ac349f50fc4..f4a83a29497 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hm8-q778-7h2c/GHSA-7hm8-q778-7h2c.json +++ b/advisories/unreviewed/2022/05/GHSA-7hm8-q778-7h2c/GHSA-7hm8-q778-7h2c.json @@ -7,12 +7,8 @@ "CVE-2005-3564" ], "details": "envd daemon in HP-UX B.11.00 through B.11.11 allows local users to obtain privileges via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7hr8-25m7-6v3w/GHSA-7hr8-25m7-6v3w.json b/advisories/unreviewed/2022/05/GHSA-7hr8-25m7-6v3w/GHSA-7hr8-25m7-6v3w.json index dd6639cfe3a..79ebed377b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hr8-25m7-6v3w/GHSA-7hr8-25m7-6v3w.json +++ b/advisories/unreviewed/2022/05/GHSA-7hr8-25m7-6v3w/GHSA-7hr8-25m7-6v3w.json @@ -7,12 +7,8 @@ "CVE-2005-3529" ], "details": "tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to obtain the installation path via an invalid topics_sort_mode parameter, possibly related to an SQL injection vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7j9q-9jrq-65rh/GHSA-7j9q-9jrq-65rh.json b/advisories/unreviewed/2022/05/GHSA-7j9q-9jrq-65rh/GHSA-7j9q-9jrq-65rh.json index 96e66d2a3d9..33471cf251e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j9q-9jrq-65rh/GHSA-7j9q-9jrq-65rh.json +++ b/advisories/unreviewed/2022/05/GHSA-7j9q-9jrq-65rh/GHSA-7j9q-9jrq-65rh.json @@ -7,12 +7,8 @@ "CVE-2021-34668" ], "details": "The WordPress Real Media Library WordPress plugin is vulnerable to Stored Cross-Site Scripting via the name parameter in the ~/inc/overrides/lite/rest/Folder.php file which allows author-level attackers to inject arbitrary web scripts in folder names, in versions up to and including 4.14.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jgx-q4jq-pp55/GHSA-7jgx-q4jq-pp55.json b/advisories/unreviewed/2022/05/GHSA-7jgx-q4jq-pp55/GHSA-7jgx-q4jq-pp55.json index 9355878826a..e7b1359eb77 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jgx-q4jq-pp55/GHSA-7jgx-q4jq-pp55.json +++ b/advisories/unreviewed/2022/05/GHSA-7jgx-q4jq-pp55/GHSA-7jgx-q4jq-pp55.json @@ -7,12 +7,8 @@ "CVE-2021-27019" ], "details": "PuppetDB logging included potentially sensitive system information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jr4-xg2j-23mp/GHSA-7jr4-xg2j-23mp.json b/advisories/unreviewed/2022/05/GHSA-7jr4-xg2j-23mp/GHSA-7jr4-xg2j-23mp.json index 6751122c1ac..1dba87a1e97 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jr4-xg2j-23mp/GHSA-7jr4-xg2j-23mp.json +++ b/advisories/unreviewed/2022/05/GHSA-7jr4-xg2j-23mp/GHSA-7jr4-xg2j-23mp.json @@ -7,12 +7,8 @@ "CVE-2021-38143" ], "details": "An issue was discovered in Form Tools through 3.0.20. When an administrator creates a customer account, it is possible for the customer to log in and proceed with a change of name and last name. However, these fields are vulnerable to XSS payload insertion, being triggered in the admin panel when the admin tries to see the client list. This type of XSS (stored) can lead to the extraction of the PHPSESSID cookie belonging to the admin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7m4f-494f-vxhx/GHSA-7m4f-494f-vxhx.json b/advisories/unreviewed/2022/05/GHSA-7m4f-494f-vxhx/GHSA-7m4f-494f-vxhx.json index 4272cb4853a..f2b6b951f11 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m4f-494f-vxhx/GHSA-7m4f-494f-vxhx.json +++ b/advisories/unreviewed/2022/05/GHSA-7m4f-494f-vxhx/GHSA-7m4f-494f-vxhx.json @@ -7,12 +7,8 @@ "CVE-2021-24579" ], "details": "The bt_bb_get_grid AJAX action of the Bold Page Builder WordPress plugin before 3.1.6 passes user input into the unserialize() function without any validation or sanitisation, which could lead to a PHP Object Injection. Even though the plugin did not contain a suitable gadget to fully exploit the issue, other installed plugins on the blog could allow such issue to be exploited and lead to RCE in some cases.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7m6h-c4p3-h22g/GHSA-7m6h-c4p3-h22g.json b/advisories/unreviewed/2022/05/GHSA-7m6h-c4p3-h22g/GHSA-7m6h-c4p3-h22g.json index 97f276a5e1f..1f8897526ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m6h-c4p3-h22g/GHSA-7m6h-c4p3-h22g.json +++ b/advisories/unreviewed/2022/05/GHSA-7m6h-c4p3-h22g/GHSA-7m6h-c4p3-h22g.json @@ -7,12 +7,8 @@ "CVE-2005-3895" ], "details": "Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3, when AttachmentDownloadType is set to inline, renders text/html e-mail attachments as HTML in the browser when the queue moderator attempts to download the attachment, which allows remote attackers to execute arbitrary web script or HTML. NOTE: this particular issue is referred to as XSS by some sources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7q22-c3mp-5f6r/GHSA-7q22-c3mp-5f6r.json b/advisories/unreviewed/2022/05/GHSA-7q22-c3mp-5f6r/GHSA-7q22-c3mp-5f6r.json index 86410074065..d2c33ec3500 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q22-c3mp-5f6r/GHSA-7q22-c3mp-5f6r.json +++ b/advisories/unreviewed/2022/05/GHSA-7q22-c3mp-5f6r/GHSA-7q22-c3mp-5f6r.json @@ -7,12 +7,8 @@ "CVE-2005-3552" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in PHPKIT 1.6.1 R2 and earlier allow remote attackers to inject arbitrary web script or HTML via multiple vectors in (1) login/profile.php, (2) login/userinfo.php, (3) admin/admin.php, (4) imcenter.php, and the (5) referer statistics, the (6) HTML title element and (7) logo alt attributes in forum postings, and the (8) Homepage field in the Guestbook.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qw4-23c9-cgp6/GHSA-7qw4-23c9-cgp6.json b/advisories/unreviewed/2022/05/GHSA-7qw4-23c9-cgp6/GHSA-7qw4-23c9-cgp6.json index 9c2475a38ba..fbd57b5fae7 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qw4-23c9-cgp6/GHSA-7qw4-23c9-cgp6.json +++ b/advisories/unreviewed/2022/05/GHSA-7qw4-23c9-cgp6/GHSA-7qw4-23c9-cgp6.json @@ -7,12 +7,8 @@ "CVE-2005-3892" ], "details": "Gadu-Gadu 7.20 allows remote attackers to eavesdrop on a user via a web page that accesses the EasycallLite.oce ActiveX control, which can initiate an outgoing phone call and listen to the microphone.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r72-8gvf-prgp/GHSA-7r72-8gvf-prgp.json b/advisories/unreviewed/2022/05/GHSA-7r72-8gvf-prgp/GHSA-7r72-8gvf-prgp.json index dba7a1ca55b..309c15e7273 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r72-8gvf-prgp/GHSA-7r72-8gvf-prgp.json +++ b/advisories/unreviewed/2022/05/GHSA-7r72-8gvf-prgp/GHSA-7r72-8gvf-prgp.json @@ -7,12 +7,8 @@ "CVE-2005-3799" ], "details": "phpBB 2.0.18 allows remote attackers to obtain sensitive information via a large SQL query, which generates an error message that reveals SQL syntax or the full installation path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r8m-7fc4-jh8r/GHSA-7r8m-7fc4-jh8r.json b/advisories/unreviewed/2022/05/GHSA-7r8m-7fc4-jh8r/GHSA-7r8m-7fc4-jh8r.json index b1465652340..6277da384bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r8m-7fc4-jh8r/GHSA-7r8m-7fc4-jh8r.json +++ b/advisories/unreviewed/2022/05/GHSA-7r8m-7fc4-jh8r/GHSA-7r8m-7fc4-jh8r.json @@ -7,12 +7,8 @@ "CVE-2020-18106" ], "details": "The GET parameter \"id\" in WMS v1.0 is passed without filtering, which allows attackers to perform SQL injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7rr2-mfr6-x27q/GHSA-7rr2-mfr6-x27q.json b/advisories/unreviewed/2022/05/GHSA-7rr2-mfr6-x27q/GHSA-7rr2-mfr6-x27q.json index 1bf66ff1b8d..6a68d788660 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rr2-mfr6-x27q/GHSA-7rr2-mfr6-x27q.json +++ b/advisories/unreviewed/2022/05/GHSA-7rr2-mfr6-x27q/GHSA-7rr2-mfr6-x27q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7v8f-p668-mq6v/GHSA-7v8f-p668-mq6v.json b/advisories/unreviewed/2022/05/GHSA-7v8f-p668-mq6v/GHSA-7v8f-p668-mq6v.json index 8be33d5254c..3f09f39b724 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v8f-p668-mq6v/GHSA-7v8f-p668-mq6v.json +++ b/advisories/unreviewed/2022/05/GHSA-7v8f-p668-mq6v/GHSA-7v8f-p668-mq6v.json @@ -7,12 +7,8 @@ "CVE-2005-3755" ], "details": "Directory traversal vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to determine the existence of arbitrary files via a relative path from a style sheet directory, then comparing the resulting error messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vq8-v2jw-h2c7/GHSA-7vq8-v2jw-h2c7.json b/advisories/unreviewed/2022/05/GHSA-7vq8-v2jw-h2c7/GHSA-7vq8-v2jw-h2c7.json index 89387fbb6fc..59a88d17e5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vq8-v2jw-h2c7/GHSA-7vq8-v2jw-h2c7.json +++ b/advisories/unreviewed/2022/05/GHSA-7vq8-v2jw-h2c7/GHSA-7vq8-v2jw-h2c7.json @@ -7,12 +7,8 @@ "CVE-2005-4063" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in NetAuctionHelp 3.0 and earlier allow remote attackers to inject arbitrary HTML and web script via the (1) L, (2) sort, (3) category, (4) categoryname parameters to search.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vq9-qv5h-q335/GHSA-7vq9-qv5h-q335.json b/advisories/unreviewed/2022/05/GHSA-7vq9-qv5h-q335/GHSA-7vq9-qv5h-q335.json index 89d7b4ae8c9..94957c02fe1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vq9-qv5h-q335/GHSA-7vq9-qv5h-q335.json +++ b/advisories/unreviewed/2022/05/GHSA-7vq9-qv5h-q335/GHSA-7vq9-qv5h-q335.json @@ -7,12 +7,8 @@ "CVE-2021-36231" ], "details": "Deserialization of untrusted data in multiple functions in MIK.starlight 7.9.5.24363 allows authenticated remote attackers to execute operating system commands by crafting serialized objects.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w94-337p-g84p/GHSA-7w94-337p-g84p.json b/advisories/unreviewed/2022/05/GHSA-7w94-337p-g84p/GHSA-7w94-337p-g84p.json index 705a168744e..ab2cbb93b1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w94-337p-g84p/GHSA-7w94-337p-g84p.json +++ b/advisories/unreviewed/2022/05/GHSA-7w94-337p-g84p/GHSA-7w94-337p-g84p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w95-qwhh-q9p3/GHSA-7w95-qwhh-q9p3.json b/advisories/unreviewed/2022/05/GHSA-7w95-qwhh-q9p3/GHSA-7w95-qwhh-q9p3.json index da3738945cd..92035fdb584 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w95-qwhh-q9p3/GHSA-7w95-qwhh-q9p3.json +++ b/advisories/unreviewed/2022/05/GHSA-7w95-qwhh-q9p3/GHSA-7w95-qwhh-q9p3.json @@ -7,12 +7,8 @@ "CVE-2021-36031" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a Path Traversal vulnerability via the `theme[preview_image]` parameter. An attacker with admin privileges could leverage this vulnerability to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wg6-2rch-h34h/GHSA-7wg6-2rch-h34h.json b/advisories/unreviewed/2022/05/GHSA-7wg6-2rch-h34h/GHSA-7wg6-2rch-h34h.json index 32cc6d2e103..6b8a4c9eb39 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wg6-2rch-h34h/GHSA-7wg6-2rch-h34h.json +++ b/advisories/unreviewed/2022/05/GHSA-7wg6-2rch-h34h/GHSA-7wg6-2rch-h34h.json @@ -7,12 +7,8 @@ "CVE-2005-3572" ], "details": "SQL injection vulnerability in index.php in Peel 2.6 through 2.7 allows remote attackers to execute arbitrary SQL commands via the rubid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7wjw-4qmp-w6r9/GHSA-7wjw-4qmp-w6r9.json b/advisories/unreviewed/2022/05/GHSA-7wjw-4qmp-w6r9/GHSA-7wjw-4qmp-w6r9.json index 5ebf7cf4827..2cb28512698 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wjw-4qmp-w6r9/GHSA-7wjw-4qmp-w6r9.json +++ b/advisories/unreviewed/2022/05/GHSA-7wjw-4qmp-w6r9/GHSA-7wjw-4qmp-w6r9.json @@ -7,12 +7,8 @@ "CVE-2021-38391" ], "details": "A Blind SQL injection vulnerability exists in the /DataHandler/AM/AM_Handler.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter type before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\\MSSQLSERVER.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7wv2-qgpm-45rq/GHSA-7wv2-qgpm-45rq.json b/advisories/unreviewed/2022/05/GHSA-7wv2-qgpm-45rq/GHSA-7wv2-qgpm-45rq.json index 7066738a969..44034a3588a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wv2-qgpm-45rq/GHSA-7wv2-qgpm-45rq.json +++ b/advisories/unreviewed/2022/05/GHSA-7wv2-qgpm-45rq/GHSA-7wv2-qgpm-45rq.json @@ -7,12 +7,8 @@ "CVE-2005-3890" ], "details": "Gadu-Gadu 7.20 allows remote attackers to cause a denial of service (crash and configuration loss) via a page with a large number of gg: URIs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7x26-7948-j59q/GHSA-7x26-7948-j59q.json b/advisories/unreviewed/2022/05/GHSA-7x26-7948-j59q/GHSA-7x26-7948-j59q.json index 9e759bcab04..2e0a41a14bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x26-7948-j59q/GHSA-7x26-7948-j59q.json +++ b/advisories/unreviewed/2022/05/GHSA-7x26-7948-j59q/GHSA-7x26-7948-j59q.json @@ -7,12 +7,8 @@ "CVE-2005-3474" ], "details": "The aries.sys driver in Sony First4Internet XCP DRM software hides any file, registry key, or process with a name that starts with \"$sys$\", which allows attackers to hide activities on a system that uses XCP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7x8x-wqp5-8qwr/GHSA-7x8x-wqp5-8qwr.json b/advisories/unreviewed/2022/05/GHSA-7x8x-wqp5-8qwr/GHSA-7x8x-wqp5-8qwr.json index 8073a45b8f6..e89242cf42f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x8x-wqp5-8qwr/GHSA-7x8x-wqp5-8qwr.json +++ b/advisories/unreviewed/2022/05/GHSA-7x8x-wqp5-8qwr/GHSA-7x8x-wqp5-8qwr.json @@ -7,12 +7,8 @@ "CVE-2005-3577" ], "details": "Cross-site scripting vulnerability (XSS) in ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the sug parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7xfc-rffr-4vx2/GHSA-7xfc-rffr-4vx2.json b/advisories/unreviewed/2022/05/GHSA-7xfc-rffr-4vx2/GHSA-7xfc-rffr-4vx2.json index d989fc07fbd..47174c18884 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xfc-rffr-4vx2/GHSA-7xfc-rffr-4vx2.json +++ b/advisories/unreviewed/2022/05/GHSA-7xfc-rffr-4vx2/GHSA-7xfc-rffr-4vx2.json @@ -7,12 +7,8 @@ "CVE-2021-40353" ], "details": "A SQL injection vulnerability exists in version 8.0 of openSIS when MySQL or MariaDB is used as the application database. An attacker can then issue the SQL command through the index.php USERNAME parameter. NOTE: this issue may exist because of an incomplete fix for CVE-2020-6637.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7xjp-fxfc-prmh/GHSA-7xjp-fxfc-prmh.json b/advisories/unreviewed/2022/05/GHSA-7xjp-fxfc-prmh/GHSA-7xjp-fxfc-prmh.json index 94485a51f4c..2c2ccbb2c70 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xjp-fxfc-prmh/GHSA-7xjp-fxfc-prmh.json +++ b/advisories/unreviewed/2022/05/GHSA-7xjp-fxfc-prmh/GHSA-7xjp-fxfc-prmh.json @@ -7,12 +7,8 @@ "CVE-2005-3817" ], "details": "Multiple SQL injection vulnerabilities in Softbiz Web Host Directory Script 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter in search_result.php, (2) sbres_id parameter in review.php, (3) cid parameter in browsecats.php, (4) h_id parameter in email.php, and (5) an unspecified parameter to the search module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8377-57pq-xrhp/GHSA-8377-57pq-xrhp.json b/advisories/unreviewed/2022/05/GHSA-8377-57pq-xrhp/GHSA-8377-57pq-xrhp.json index 84e377b400a..b7a7e847a71 100644 --- a/advisories/unreviewed/2022/05/GHSA-8377-57pq-xrhp/GHSA-8377-57pq-xrhp.json +++ b/advisories/unreviewed/2022/05/GHSA-8377-57pq-xrhp/GHSA-8377-57pq-xrhp.json @@ -7,12 +7,8 @@ "CVE-2021-39378" ], "details": "A SQL Injection vulnerability exists in openSIS 8.0 when MySQL (MariaDB) is being used as the application database. A malicious attacker can issue SQL commands to the MySQL (MariaDB) database through the NamesList.php str parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-845f-qg27-4gv6/GHSA-845f-qg27-4gv6.json b/advisories/unreviewed/2022/05/GHSA-845f-qg27-4gv6/GHSA-845f-qg27-4gv6.json index 25f40619520..48f6cc7d61e 100644 --- a/advisories/unreviewed/2022/05/GHSA-845f-qg27-4gv6/GHSA-845f-qg27-4gv6.json +++ b/advisories/unreviewed/2022/05/GHSA-845f-qg27-4gv6/GHSA-845f-qg27-4gv6.json @@ -7,12 +7,8 @@ "CVE-2005-3499" ], "details": "Frisk F-Prot Antivirus allows remote attackers to bypass protection via a ZIP file with a version header greater than 15, which prevents F-Prot from decompressing and analyzing the file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8475-rfgr-qm88/GHSA-8475-rfgr-qm88.json b/advisories/unreviewed/2022/05/GHSA-8475-rfgr-qm88/GHSA-8475-rfgr-qm88.json index a1b851cb636..44b7f8c0005 100644 --- a/advisories/unreviewed/2022/05/GHSA-8475-rfgr-qm88/GHSA-8475-rfgr-qm88.json +++ b/advisories/unreviewed/2022/05/GHSA-8475-rfgr-qm88/GHSA-8475-rfgr-qm88.json @@ -7,12 +7,8 @@ "CVE-2021-35216" ], "details": "Insecure Deserialization of untrusted data remote code execution vulnerability was discovered in Patch Manager Orion Platform Integration module. An Authenticated Attacker with network access via HTTP can compromise this vulnerability can result in Remote Code Execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-848f-7p2j-whwm/GHSA-848f-7p2j-whwm.json b/advisories/unreviewed/2022/05/GHSA-848f-7p2j-whwm/GHSA-848f-7p2j-whwm.json index 176aa43fc7d..550f52bba10 100644 --- a/advisories/unreviewed/2022/05/GHSA-848f-7p2j-whwm/GHSA-848f-7p2j-whwm.json +++ b/advisories/unreviewed/2022/05/GHSA-848f-7p2j-whwm/GHSA-848f-7p2j-whwm.json @@ -7,12 +7,8 @@ "CVE-2005-3538" ], "details": "hfaxd in HylaFAX 4.2.3, when PAM support is disabled, accepts arbitrary passwords, which allows remote attackers to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8495-5w8h-83c5/GHSA-8495-5w8h-83c5.json b/advisories/unreviewed/2022/05/GHSA-8495-5w8h-83c5/GHSA-8495-5w8h-83c5.json index a6fe151d1fc..960d57e8ad1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8495-5w8h-83c5/GHSA-8495-5w8h-83c5.json +++ b/advisories/unreviewed/2022/05/GHSA-8495-5w8h-83c5/GHSA-8495-5w8h-83c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84wf-fhj3-88jw/GHSA-84wf-fhj3-88jw.json b/advisories/unreviewed/2022/05/GHSA-84wf-fhj3-88jw/GHSA-84wf-fhj3-88jw.json index 816387e67b9..48e1b948212 100644 --- a/advisories/unreviewed/2022/05/GHSA-84wf-fhj3-88jw/GHSA-84wf-fhj3-88jw.json +++ b/advisories/unreviewed/2022/05/GHSA-84wf-fhj3-88jw/GHSA-84wf-fhj3-88jw.json @@ -7,12 +7,8 @@ "CVE-2021-28616" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Our-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information and cause a denial of service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8593-h9pq-2qm4/GHSA-8593-h9pq-2qm4.json b/advisories/unreviewed/2022/05/GHSA-8593-h9pq-2qm4/GHSA-8593-h9pq-2qm4.json index f82a0ca5e14..6b98c36f9c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-8593-h9pq-2qm4/GHSA-8593-h9pq-2qm4.json +++ b/advisories/unreviewed/2022/05/GHSA-8593-h9pq-2qm4/GHSA-8593-h9pq-2qm4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8648-qmcx-pvc2/GHSA-8648-qmcx-pvc2.json b/advisories/unreviewed/2022/05/GHSA-8648-qmcx-pvc2/GHSA-8648-qmcx-pvc2.json index d13a71bd51c..62ab092f32c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8648-qmcx-pvc2/GHSA-8648-qmcx-pvc2.json +++ b/advisories/unreviewed/2022/05/GHSA-8648-qmcx-pvc2/GHSA-8648-qmcx-pvc2.json @@ -7,12 +7,8 @@ "CVE-2005-3634" ], "details": "frameset.htm in the BSP runtime in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to log users out and redirect them to arbitrary web sites via a close command in the sap-sessioncmd parameter and a URL in the sap-exiturl parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-86jr-j4g9-rv52/GHSA-86jr-j4g9-rv52.json b/advisories/unreviewed/2022/05/GHSA-86jr-j4g9-rv52/GHSA-86jr-j4g9-rv52.json index 57ba49d550b..d96abe0b97b 100644 --- a/advisories/unreviewed/2022/05/GHSA-86jr-j4g9-rv52/GHSA-86jr-j4g9-rv52.json +++ b/advisories/unreviewed/2022/05/GHSA-86jr-j4g9-rv52/GHSA-86jr-j4g9-rv52.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86vg-jc44-375p/GHSA-86vg-jc44-375p.json b/advisories/unreviewed/2022/05/GHSA-86vg-jc44-375p/GHSA-86vg-jc44-375p.json index e81773e7587..782011bab27 100644 --- a/advisories/unreviewed/2022/05/GHSA-86vg-jc44-375p/GHSA-86vg-jc44-375p.json +++ b/advisories/unreviewed/2022/05/GHSA-86vg-jc44-375p/GHSA-86vg-jc44-375p.json @@ -7,12 +7,8 @@ "CVE-2005-3512" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via the t parameter in a newreply action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-873p-mr49-f6wf/GHSA-873p-mr49-f6wf.json b/advisories/unreviewed/2022/05/GHSA-873p-mr49-f6wf/GHSA-873p-mr49-f6wf.json index 6113cf5cf6d..cbbeeda1c41 100644 --- a/advisories/unreviewed/2022/05/GHSA-873p-mr49-f6wf/GHSA-873p-mr49-f6wf.json +++ b/advisories/unreviewed/2022/05/GHSA-873p-mr49-f6wf/GHSA-873p-mr49-f6wf.json @@ -7,12 +7,8 @@ "CVE-2005-3771" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.4 allow remote attackers to inject arbitrary web script or HTML via (1) \"GET and other variables\" and (2) \"SEF\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88c9-rr9p-5764/GHSA-88c9-rr9p-5764.json b/advisories/unreviewed/2022/05/GHSA-88c9-rr9p-5764/GHSA-88c9-rr9p-5764.json index cc5e02b7f48..29bd80493b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-88c9-rr9p-5764/GHSA-88c9-rr9p-5764.json +++ b/advisories/unreviewed/2022/05/GHSA-88c9-rr9p-5764/GHSA-88c9-rr9p-5764.json @@ -7,12 +7,8 @@ "CVE-2020-19047" ], "details": "Cross Site Request Forgey (CSRF) in iWebShop v5.3 allows remote atatckers to execute arbitrary code via malicious POST request to the component '/index.php?controller=system&action=admin_edit_act'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-892q-vvcr-v6j5/GHSA-892q-vvcr-v6j5.json b/advisories/unreviewed/2022/05/GHSA-892q-vvcr-v6j5/GHSA-892q-vvcr-v6j5.json index 8fe3a65fb9e..a8deb87afef 100644 --- a/advisories/unreviewed/2022/05/GHSA-892q-vvcr-v6j5/GHSA-892q-vvcr-v6j5.json +++ b/advisories/unreviewed/2022/05/GHSA-892q-vvcr-v6j5/GHSA-892q-vvcr-v6j5.json @@ -7,12 +7,8 @@ "CVE-2015-3183" ], "details": "The chunked transfer coding implementation in the Apache HTTP Server before 2.4.14 does not properly parse chunk headers, which allows remote attackers to conduct HTTP request smuggling attacks via a crafted request, related to mishandling of large chunk-size values and invalid chunk-extension characters in modules/http/http_filters.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8936-69h8-q4jw/GHSA-8936-69h8-q4jw.json b/advisories/unreviewed/2022/05/GHSA-8936-69h8-q4jw/GHSA-8936-69h8-q4jw.json index 2b8d58e24fa..7009257a60d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8936-69h8-q4jw/GHSA-8936-69h8-q4jw.json +++ b/advisories/unreviewed/2022/05/GHSA-8936-69h8-q4jw/GHSA-8936-69h8-q4jw.json @@ -7,12 +7,8 @@ "CVE-2005-3849" ], "details": "Cross-site scripting (XSS) vulnerability in the Search module in PmWiki up to 2.0.12 allows remote attackers to inject arbitrary web script or HTML via the q parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-89j5-hc8f-rvw2/GHSA-89j5-hc8f-rvw2.json b/advisories/unreviewed/2022/05/GHSA-89j5-hc8f-rvw2/GHSA-89j5-hc8f-rvw2.json index 0382826f681..ebf8701e3b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-89j5-hc8f-rvw2/GHSA-89j5-hc8f-rvw2.json +++ b/advisories/unreviewed/2022/05/GHSA-89j5-hc8f-rvw2/GHSA-89j5-hc8f-rvw2.json @@ -7,12 +7,8 @@ "CVE-2005-3477" ], "details": "Multiple interpretation error in the image upload handling code in Invision Gallery 2.0.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML or script in an image whose type does not match its extension, which is rendered by Internet Explorer due to CVE-2005-3312. NOTE: it could be argued that this vulnerability is due to a design flaw in Internet Explorer and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in Invision Gallery.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8cgr-39f9-6pm2/GHSA-8cgr-39f9-6pm2.json b/advisories/unreviewed/2022/05/GHSA-8cgr-39f9-6pm2/GHSA-8cgr-39f9-6pm2.json index 185eda00a16..8aacee9d540 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cgr-39f9-6pm2/GHSA-8cgr-39f9-6pm2.json +++ b/advisories/unreviewed/2022/05/GHSA-8cgr-39f9-6pm2/GHSA-8cgr-39f9-6pm2.json @@ -7,12 +7,8 @@ "CVE-2005-3536" ], "details": "SQL injection vulnerability in phpBB 2 before 2.0.18 allows remote attackers to execute arbitrary SQL commands via the topic type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8cj5-hxpv-xwgg/GHSA-8cj5-hxpv-xwgg.json b/advisories/unreviewed/2022/05/GHSA-8cj5-hxpv-xwgg/GHSA-8cj5-hxpv-xwgg.json index 56b00407120..d23e8d12004 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cj5-hxpv-xwgg/GHSA-8cj5-hxpv-xwgg.json +++ b/advisories/unreviewed/2022/05/GHSA-8cj5-hxpv-xwgg/GHSA-8cj5-hxpv-xwgg.json @@ -7,12 +7,8 @@ "CVE-2005-3650" ], "details": "The CodeSupport.ocx ActiveX control, as used by Sony to uninstall the First4Internet XCP DRM, has \"safe for scripting\" enabled, which allows remote attackers to execute arbitrary code by calling vulnerable functions such as RebootMachine, IsAdministrator, and ExecuteCode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f2j-wjr7-4h5q/GHSA-8f2j-wjr7-4h5q.json b/advisories/unreviewed/2022/05/GHSA-8f2j-wjr7-4h5q/GHSA-8f2j-wjr7-4h5q.json index 4a16c91f9f1..5627e408042 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f2j-wjr7-4h5q/GHSA-8f2j-wjr7-4h5q.json +++ b/advisories/unreviewed/2022/05/GHSA-8f2j-wjr7-4h5q/GHSA-8f2j-wjr7-4h5q.json @@ -7,12 +7,8 @@ "CVE-2021-40172" ], "details": "Zoho ManageEngine Log360 before Build 5219 allows a CSRF attack on proxy settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8f4w-jwqv-5cxc/GHSA-8f4w-jwqv-5cxc.json b/advisories/unreviewed/2022/05/GHSA-8f4w-jwqv-5cxc/GHSA-8f4w-jwqv-5cxc.json index 1be909dbf5c..d8692a7d167 100644 --- a/advisories/unreviewed/2022/05/GHSA-8f4w-jwqv-5cxc/GHSA-8f4w-jwqv-5cxc.json +++ b/advisories/unreviewed/2022/05/GHSA-8f4w-jwqv-5cxc/GHSA-8f4w-jwqv-5cxc.json @@ -7,12 +7,8 @@ "CVE-2005-3510" ], "details": "Apache Tomcat 5.5.0 to 5.5.11 allows remote attackers to cause a denial of service (CPU consumption) via a large number of simultaneous requests to list a web directory that has a large number of files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -108,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8g48-5w7p-5hg3/GHSA-8g48-5w7p-5hg3.json b/advisories/unreviewed/2022/05/GHSA-8g48-5w7p-5hg3/GHSA-8g48-5w7p-5hg3.json index 93728a298ca..d6eea809e92 100644 --- a/advisories/unreviewed/2022/05/GHSA-8g48-5w7p-5hg3/GHSA-8g48-5w7p-5hg3.json +++ b/advisories/unreviewed/2022/05/GHSA-8g48-5w7p-5hg3/GHSA-8g48-5w7p-5hg3.json @@ -7,12 +7,8 @@ "CVE-2005-3724" ], "details": "Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a direct connection to UDP port 9090, which is undocumented and does not require authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8g6v-v3p8-6wx3/GHSA-8g6v-v3p8-6wx3.json b/advisories/unreviewed/2022/05/GHSA-8g6v-v3p8-6wx3/GHSA-8g6v-v3p8-6wx3.json index 1beed02cddc..3c340b4bc6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8g6v-v3p8-6wx3/GHSA-8g6v-v3p8-6wx3.json +++ b/advisories/unreviewed/2022/05/GHSA-8g6v-v3p8-6wx3/GHSA-8g6v-v3p8-6wx3.json @@ -7,12 +7,8 @@ "CVE-2005-3811" ], "details": "Directory traversal vulnerability in admin/main.php in AMAX Magic Winmail Server 4.2 (build 0824) and earlier allows remote attackers to overwrite arbitrary files with session information via the sid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8ggf-rh55-625w/GHSA-8ggf-rh55-625w.json b/advisories/unreviewed/2022/05/GHSA-8ggf-rh55-625w/GHSA-8ggf-rh55-625w.json index 73359fe6988..1d90b4e115f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ggf-rh55-625w/GHSA-8ggf-rh55-625w.json +++ b/advisories/unreviewed/2022/05/GHSA-8ggf-rh55-625w/GHSA-8ggf-rh55-625w.json @@ -7,12 +7,8 @@ "CVE-2005-3429" ], "details": "Rockliffe MailSite Express before 6.1.22, with the option to save login information enabled, saves user passwords in plaintext in cookies, which allows local users to obtain passwords by reading the cookie file, or remote attackers to obtain the cookies via cross-site scripting (XSS) vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8h4j-5rm7-8xxj/GHSA-8h4j-5rm7-8xxj.json b/advisories/unreviewed/2022/05/GHSA-8h4j-5rm7-8xxj/GHSA-8h4j-5rm7-8xxj.json index 052628e072a..96fcce20ecd 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h4j-5rm7-8xxj/GHSA-8h4j-5rm7-8xxj.json +++ b/advisories/unreviewed/2022/05/GHSA-8h4j-5rm7-8xxj/GHSA-8h4j-5rm7-8xxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8hwp-q63f-j7h2/GHSA-8hwp-q63f-j7h2.json b/advisories/unreviewed/2022/05/GHSA-8hwp-q63f-j7h2/GHSA-8hwp-q63f-j7h2.json index 388d1d639fa..5b32de852cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hwp-q63f-j7h2/GHSA-8hwp-q63f-j7h2.json +++ b/advisories/unreviewed/2022/05/GHSA-8hwp-q63f-j7h2/GHSA-8hwp-q63f-j7h2.json @@ -7,12 +7,8 @@ "CVE-2005-3508" ], "details": "SQL injection vulnerability in showGallery.php in Gallery (Galerie) 2.4 allows remote attackers to execute arbitrary SQL commands via the galid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j35-hhmj-p55m/GHSA-8j35-hhmj-p55m.json b/advisories/unreviewed/2022/05/GHSA-8j35-hhmj-p55m/GHSA-8j35-hhmj-p55m.json index e802cea608e..9a9a238bece 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j35-hhmj-p55m/GHSA-8j35-hhmj-p55m.json +++ b/advisories/unreviewed/2022/05/GHSA-8j35-hhmj-p55m/GHSA-8j35-hhmj-p55m.json @@ -7,12 +7,8 @@ "CVE-2005-4052" ], "details": "e107 0.6174 allows remote attackers to redirect users to other web sites via the download parameter in rate.php, which is used after a user submits a file download rating. NOTE: in the default installation, the e_BASE variable restricts the redirection to the same web site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j3p-xj5v-7gpf/GHSA-8j3p-xj5v-7gpf.json b/advisories/unreviewed/2022/05/GHSA-8j3p-xj5v-7gpf/GHSA-8j3p-xj5v-7gpf.json index b2f8e6b958e..25f3a98b73f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j3p-xj5v-7gpf/GHSA-8j3p-xj5v-7gpf.json +++ b/advisories/unreviewed/2022/05/GHSA-8j3p-xj5v-7gpf/GHSA-8j3p-xj5v-7gpf.json @@ -7,12 +7,8 @@ "CVE-2021-35218" ], "details": "Deserialization of Untrusted Data in the Web Console Chart Endpoint can lead to remote code execution. An unauthorized attacker who has network access to the Orion Patch Manager Web Console could potentially exploit this and compromise the server", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m4h-93rx-x9x3/GHSA-8m4h-93rx-x9x3.json b/advisories/unreviewed/2022/05/GHSA-8m4h-93rx-x9x3/GHSA-8m4h-93rx-x9x3.json index 79f6058f0fd..57d97f81589 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m4h-93rx-x9x3/GHSA-8m4h-93rx-x9x3.json +++ b/advisories/unreviewed/2022/05/GHSA-8m4h-93rx-x9x3/GHSA-8m4h-93rx-x9x3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8mj2-f4v5-8x6g/GHSA-8mj2-f4v5-8x6g.json b/advisories/unreviewed/2022/05/GHSA-8mj2-f4v5-8x6g/GHSA-8mj2-f4v5-8x6g.json index ccc8bea38a9..24905216101 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mj2-f4v5-8x6g/GHSA-8mj2-f4v5-8x6g.json +++ b/advisories/unreviewed/2022/05/GHSA-8mj2-f4v5-8x6g/GHSA-8mj2-f4v5-8x6g.json @@ -7,12 +7,8 @@ "CVE-2005-4049" ], "details": "Multiple SQL injection vulnerabilities in Blog System 1.2 allow remote attackers to execute arbitrary SQL commands via (1) the cat parameter in index.php and (2) the note parameter in blog.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8mwr-p576-fpf9/GHSA-8mwr-p576-fpf9.json b/advisories/unreviewed/2022/05/GHSA-8mwr-p576-fpf9/GHSA-8mwr-p576-fpf9.json index d41ac9522a9..6b1629f193f 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mwr-p576-fpf9/GHSA-8mwr-p576-fpf9.json +++ b/advisories/unreviewed/2022/05/GHSA-8mwr-p576-fpf9/GHSA-8mwr-p576-fpf9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p38-cjxc-8fxx/GHSA-8p38-cjxc-8fxx.json b/advisories/unreviewed/2022/05/GHSA-8p38-cjxc-8fxx/GHSA-8p38-cjxc-8fxx.json index 7c347f2d9ce..03ccfaa9d01 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p38-cjxc-8fxx/GHSA-8p38-cjxc-8fxx.json +++ b/advisories/unreviewed/2022/05/GHSA-8p38-cjxc-8fxx/GHSA-8p38-cjxc-8fxx.json @@ -7,12 +7,8 @@ "CVE-2021-20813" ], "details": "Cross-site scripting vulnerability in Edit screen of Content Data of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series) and Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series)) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p5q-2chq-6ppj/GHSA-8p5q-2chq-6ppj.json b/advisories/unreviewed/2022/05/GHSA-8p5q-2chq-6ppj/GHSA-8p5q-2chq-6ppj.json index d1a9ba22b70..cd0ab1a17ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p5q-2chq-6ppj/GHSA-8p5q-2chq-6ppj.json +++ b/advisories/unreviewed/2022/05/GHSA-8p5q-2chq-6ppj/GHSA-8p5q-2chq-6ppj.json @@ -7,12 +7,8 @@ "CVE-2005-3770" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in PHP-Post (PHPp) 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the subject in a post, or the user parameter to (2) profile.php and (3) mail.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p62-j3vc-5p25/GHSA-8p62-j3vc-5p25.json b/advisories/unreviewed/2022/05/GHSA-8p62-j3vc-5p25/GHSA-8p62-j3vc-5p25.json index b1b0ffc4a40..89fc6f68ace 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p62-j3vc-5p25/GHSA-8p62-j3vc-5p25.json +++ b/advisories/unreviewed/2022/05/GHSA-8p62-j3vc-5p25/GHSA-8p62-j3vc-5p25.json @@ -7,12 +7,8 @@ "CVE-2021-28596" ], "details": "Adobe Framemaker version 2020.0.1 (and earlier) and 2019.0.8 (and earlier) are affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qgg-v38q-2m7f/GHSA-8qgg-v38q-2m7f.json b/advisories/unreviewed/2022/05/GHSA-8qgg-v38q-2m7f/GHSA-8qgg-v38q-2m7f.json index 6814a3bcdd6..651d8bcebe7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qgg-v38q-2m7f/GHSA-8qgg-v38q-2m7f.json +++ b/advisories/unreviewed/2022/05/GHSA-8qgg-v38q-2m7f/GHSA-8qgg-v38q-2m7f.json @@ -7,12 +7,8 @@ "CVE-2005-3790" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in act_newsletter.php in phpwcms 1.2.5 allow remote attackers to inject arbitrary web script or HTML via the (1) i and (2) text parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qv6-hpmq-2qqm/GHSA-8qv6-hpmq-2qqm.json b/advisories/unreviewed/2022/05/GHSA-8qv6-hpmq-2qqm/GHSA-8qv6-hpmq-2qqm.json index 665c610b4f2..98594e0dfc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qv6-hpmq-2qqm/GHSA-8qv6-hpmq-2qqm.json +++ b/advisories/unreviewed/2022/05/GHSA-8qv6-hpmq-2qqm/GHSA-8qv6-hpmq-2qqm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v33-669h-pjw8/GHSA-8v33-669h-pjw8.json b/advisories/unreviewed/2022/05/GHSA-8v33-669h-pjw8/GHSA-8v33-669h-pjw8.json index 57f4135f112..b616a71e1b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v33-669h-pjw8/GHSA-8v33-669h-pjw8.json +++ b/advisories/unreviewed/2022/05/GHSA-8v33-669h-pjw8/GHSA-8v33-669h-pjw8.json @@ -7,12 +7,8 @@ "CVE-2005-3585" ], "details": "SQL injection vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to execute arbitrary SQL commands via the forum parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8v9p-7c45-26j2/GHSA-8v9p-7c45-26j2.json b/advisories/unreviewed/2022/05/GHSA-8v9p-7c45-26j2/GHSA-8v9p-7c45-26j2.json index ff7e1e91c0a..0cbb22d9f27 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v9p-7c45-26j2/GHSA-8v9p-7c45-26j2.json +++ b/advisories/unreviewed/2022/05/GHSA-8v9p-7c45-26j2/GHSA-8v9p-7c45-26j2.json @@ -7,12 +7,8 @@ "CVE-2021-37538" ], "details": "Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to execute arbitrary SQL commands via the day, month, or year parameter to the controllers/front/archive.php archive controller, or the id_category parameter to the controllers/front/category.php category controller.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8vxj-2f8q-fqx4/GHSA-8vxj-2f8q-fqx4.json b/advisories/unreviewed/2022/05/GHSA-8vxj-2f8q-fqx4/GHSA-8vxj-2f8q-fqx4.json index 67ca21561f8..d25ec4f435d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vxj-2f8q-fqx4/GHSA-8vxj-2f8q-fqx4.json +++ b/advisories/unreviewed/2022/05/GHSA-8vxj-2f8q-fqx4/GHSA-8vxj-2f8q-fqx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8x8r-2c8p-gpp5/GHSA-8x8r-2c8p-gpp5.json b/advisories/unreviewed/2022/05/GHSA-8x8r-2c8p-gpp5/GHSA-8x8r-2c8p-gpp5.json index cdaf2a5abbb..9192ce6bc39 100644 --- a/advisories/unreviewed/2022/05/GHSA-8x8r-2c8p-gpp5/GHSA-8x8r-2c8p-gpp5.json +++ b/advisories/unreviewed/2022/05/GHSA-8x8r-2c8p-gpp5/GHSA-8x8r-2c8p-gpp5.json @@ -7,12 +7,8 @@ "CVE-2005-4042" ], "details": "Cross-site scripting (XSS) vulnerability in Warm Links 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via a parameter to search.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94j7-qfrq-rx57/GHSA-94j7-qfrq-rx57.json b/advisories/unreviewed/2022/05/GHSA-94j7-qfrq-rx57/GHSA-94j7-qfrq-rx57.json index a083e793e22..06ef249767d 100644 --- a/advisories/unreviewed/2022/05/GHSA-94j7-qfrq-rx57/GHSA-94j7-qfrq-rx57.json +++ b/advisories/unreviewed/2022/05/GHSA-94j7-qfrq-rx57/GHSA-94j7-qfrq-rx57.json @@ -7,12 +7,8 @@ "CVE-2021-39117" ], "details": "The AssociateFieldToScreens page in Atlassian Jira Server and Data Center before version 8.18.0 allows remote attackers to inject arbitrary HTML or JavaScript via a Cross-Site Scripting (XSS) vulnerability via the name of a custom field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9542-vv62-xm6j/GHSA-9542-vv62-xm6j.json b/advisories/unreviewed/2022/05/GHSA-9542-vv62-xm6j/GHSA-9542-vv62-xm6j.json index a42c9a15c9a..77105c091f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9542-vv62-xm6j/GHSA-9542-vv62-xm6j.json +++ b/advisories/unreviewed/2022/05/GHSA-9542-vv62-xm6j/GHSA-9542-vv62-xm6j.json @@ -7,12 +7,8 @@ "CVE-2021-28609" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-956q-7m23-phjx/GHSA-956q-7m23-phjx.json b/advisories/unreviewed/2022/05/GHSA-956q-7m23-phjx/GHSA-956q-7m23-phjx.json index 9fc7929f6b9..dacfc5fc013 100644 --- a/advisories/unreviewed/2022/05/GHSA-956q-7m23-phjx/GHSA-956q-7m23-phjx.json +++ b/advisories/unreviewed/2022/05/GHSA-956q-7m23-phjx/GHSA-956q-7m23-phjx.json @@ -7,12 +7,8 @@ "CVE-2021-30719" ], "details": "A local user may be able to cause unexpected system termination or read kernel memory. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina. An out-of-bounds read issue was addressed by removing the vulnerable code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96w8-f5p6-mqmw/GHSA-96w8-f5p6-mqmw.json b/advisories/unreviewed/2022/05/GHSA-96w8-f5p6-mqmw/GHSA-96w8-f5p6-mqmw.json index d70b7cd65e9..14b8010b53b 100644 --- a/advisories/unreviewed/2022/05/GHSA-96w8-f5p6-mqmw/GHSA-96w8-f5p6-mqmw.json +++ b/advisories/unreviewed/2022/05/GHSA-96w8-f5p6-mqmw/GHSA-96w8-f5p6-mqmw.json @@ -7,12 +7,8 @@ "CVE-2005-3534" ], "details": "Buffer overflow in the Network Block Device (nbd) server 2.7.5 and earlier, and 2.8.0 through 2.8.2, allows remote attackers to execute arbitrary code via a large request, which is written past the end of the buffer because nbd does not account for memory taken by the reply header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97j6-6mvm-p2r4/GHSA-97j6-6mvm-p2r4.json b/advisories/unreviewed/2022/05/GHSA-97j6-6mvm-p2r4/GHSA-97j6-6mvm-p2r4.json index a26b0adaccf..09e6d714b64 100644 --- a/advisories/unreviewed/2022/05/GHSA-97j6-6mvm-p2r4/GHSA-97j6-6mvm-p2r4.json +++ b/advisories/unreviewed/2022/05/GHSA-97j6-6mvm-p2r4/GHSA-97j6-6mvm-p2r4.json @@ -7,12 +7,8 @@ "CVE-2005-3591" ], "details": "Macromedia Flash plugin (1) Flash.ocx 7.0.19.0 (Windows) and earlier and (2) libflashplayer.so before 7.0.25.0 (Unix) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via parameters to the ActionDefineFunction ActionScript call in a SWF file, which causes an improper memory access condition, a different vulnerability than CVE-2005-2628.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97m2-pg4j-9jcw/GHSA-97m2-pg4j-9jcw.json b/advisories/unreviewed/2022/05/GHSA-97m2-pg4j-9jcw/GHSA-97m2-pg4j-9jcw.json index 77a863fb496..a3c862590a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-97m2-pg4j-9jcw/GHSA-97m2-pg4j-9jcw.json +++ b/advisories/unreviewed/2022/05/GHSA-97m2-pg4j-9jcw/GHSA-97m2-pg4j-9jcw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9832-r85j-3vjc/GHSA-9832-r85j-3vjc.json b/advisories/unreviewed/2022/05/GHSA-9832-r85j-3vjc/GHSA-9832-r85j-3vjc.json index b37a0f277a2..25d5e685359 100644 --- a/advisories/unreviewed/2022/05/GHSA-9832-r85j-3vjc/GHSA-9832-r85j-3vjc.json +++ b/advisories/unreviewed/2022/05/GHSA-9832-r85j-3vjc/GHSA-9832-r85j-3vjc.json @@ -7,12 +7,8 @@ "CVE-2005-4051" ], "details": "e107 0.6174 allows remote attackers to vote multiple times for a download via repeated requests to rate.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-98v4-f37j-gm4q/GHSA-98v4-f37j-gm4q.json b/advisories/unreviewed/2022/05/GHSA-98v4-f37j-gm4q/GHSA-98v4-f37j-gm4q.json index 4ccd93de279..6a23c2fc673 100644 --- a/advisories/unreviewed/2022/05/GHSA-98v4-f37j-gm4q/GHSA-98v4-f37j-gm4q.json +++ b/advisories/unreviewed/2022/05/GHSA-98v4-f37j-gm4q/GHSA-98v4-f37j-gm4q.json @@ -7,12 +7,8 @@ "CVE-2021-38613" ], "details": "The assets/index.php Image Upload feature of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to upload any code to the target system and achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99q2-hw6h-hxgm/GHSA-99q2-hw6h-hxgm.json b/advisories/unreviewed/2022/05/GHSA-99q2-hw6h-hxgm/GHSA-99q2-hw6h-hxgm.json index 064deebd51c..70bf8f98214 100644 --- a/advisories/unreviewed/2022/05/GHSA-99q2-hw6h-hxgm/GHSA-99q2-hw6h-hxgm.json +++ b/advisories/unreviewed/2022/05/GHSA-99q2-hw6h-hxgm/GHSA-99q2-hw6h-hxgm.json @@ -7,12 +7,8 @@ "CVE-2005-3505" ], "details": "Cross-site scripting (XSS) vulnerability in the Entropy Chat script in cPanel 10.2.0-R82 and 10.6.0-R137 allows remote attackers to inject arbitrary web script or HTML via a chat message containing Javascript in style attributes in tags such as , which are processed by Internet Explorer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cm5-927x-hwm7/GHSA-9cm5-927x-hwm7.json b/advisories/unreviewed/2022/05/GHSA-9cm5-927x-hwm7/GHSA-9cm5-927x-hwm7.json index cf99d7dcf4d..2dbb66897dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cm5-927x-hwm7/GHSA-9cm5-927x-hwm7.json +++ b/advisories/unreviewed/2022/05/GHSA-9cm5-927x-hwm7/GHSA-9cm5-927x-hwm7.json @@ -7,12 +7,8 @@ "CVE-2021-24552" ], "details": "The Simple Events Calendar WordPress plugin through 1.4.0 does not sanitise, validate or escape the event_id POST parameter before using it in a SQL statement when deleting events, leading to an authenticated SQL injection issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9f5r-px2p-h5g8/GHSA-9f5r-px2p-h5g8.json b/advisories/unreviewed/2022/05/GHSA-9f5r-px2p-h5g8/GHSA-9f5r-px2p-h5g8.json index c99a55ab812..1c323a9b281 100644 --- a/advisories/unreviewed/2022/05/GHSA-9f5r-px2p-h5g8/GHSA-9f5r-px2p-h5g8.json +++ b/advisories/unreviewed/2022/05/GHSA-9f5r-px2p-h5g8/GHSA-9f5r-px2p-h5g8.json @@ -7,12 +7,8 @@ "CVE-2005-3850" ], "details": "Cross-site scripting (XSS) vulnerability in search.asp in Online Knowledge Base System (OKBSYS) Lite Edition 1.0 allows remote attackers to inject arbitrary web script or HTML via hex-encoded values in the q parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9fg7-x9rx-2vx3/GHSA-9fg7-x9rx-2vx3.json b/advisories/unreviewed/2022/05/GHSA-9fg7-x9rx-2vx3/GHSA-9fg7-x9rx-2vx3.json index 76cc19563c7..e497958701b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fg7-x9rx-2vx3/GHSA-9fg7-x9rx-2vx3.json +++ b/advisories/unreviewed/2022/05/GHSA-9fg7-x9rx-2vx3/GHSA-9fg7-x9rx-2vx3.json @@ -7,12 +7,8 @@ "CVE-2005-3713" ], "details": "Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a GIF image file with a crafted Netscape Navigator Application Extension Block that modifies the heap in the Picture Modifier block.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fj9-5r8v-mh44/GHSA-9fj9-5r8v-mh44.json b/advisories/unreviewed/2022/05/GHSA-9fj9-5r8v-mh44/GHSA-9fj9-5r8v-mh44.json index 6c4057080fa..4fa2a8fd891 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fj9-5r8v-mh44/GHSA-9fj9-5r8v-mh44.json +++ b/advisories/unreviewed/2022/05/GHSA-9fj9-5r8v-mh44/GHSA-9fj9-5r8v-mh44.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fpp-3wjr-pgj6/GHSA-9fpp-3wjr-pgj6.json b/advisories/unreviewed/2022/05/GHSA-9fpp-3wjr-pgj6/GHSA-9fpp-3wjr-pgj6.json index 1f9ffd8a692..78240a14e40 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fpp-3wjr-pgj6/GHSA-9fpp-3wjr-pgj6.json +++ b/advisories/unreviewed/2022/05/GHSA-9fpp-3wjr-pgj6/GHSA-9fpp-3wjr-pgj6.json @@ -7,12 +7,8 @@ "CVE-2005-3869" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Google API Search 1.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via hex-encoded values in the REQ parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9gx7-cg6p-cg9g/GHSA-9gx7-cg6p-cg9g.json b/advisories/unreviewed/2022/05/GHSA-9gx7-cg6p-cg9g/GHSA-9gx7-cg6p-cg9g.json index 02ed8e75528..98e9098f72b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gx7-cg6p-cg9g/GHSA-9gx7-cg6p-cg9g.json +++ b/advisories/unreviewed/2022/05/GHSA-9gx7-cg6p-cg9g/GHSA-9gx7-cg6p-cg9g.json @@ -7,12 +7,8 @@ "CVE-2005-3493" ], "details": "Battle Carry .005 and earlier allows remote attackers to cause a denial of service (inaccessible port) via a large packet, which triggers a socket error and terminates the socket that is listening on the server's UDP port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9h6p-6922-53m7/GHSA-9h6p-6922-53m7.json b/advisories/unreviewed/2022/05/GHSA-9h6p-6922-53m7/GHSA-9h6p-6922-53m7.json index 77ce46037ec..6f197b4a3a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h6p-6922-53m7/GHSA-9h6p-6922-53m7.json +++ b/advisories/unreviewed/2022/05/GHSA-9h6p-6922-53m7/GHSA-9h6p-6922-53m7.json @@ -7,12 +7,8 @@ "CVE-2005-3431" ], "details": "Absolute path traversal vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to read arbitrary files via a full pathname in the AttachPath field of a mail message under composition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9h76-33f7-m953/GHSA-9h76-33f7-m953.json b/advisories/unreviewed/2022/05/GHSA-9h76-33f7-m953/GHSA-9h76-33f7-m953.json index 86c0a0e5579..59571ab1d5c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9h76-33f7-m953/GHSA-9h76-33f7-m953.json +++ b/advisories/unreviewed/2022/05/GHSA-9h76-33f7-m953/GHSA-9h76-33f7-m953.json @@ -7,12 +7,8 @@ "CVE-2005-4061" ], "details": "Cross-site scripting (XSS) vulnerability in PASearch.asp in XcPhotoAlbum 1.x allows remote attackers to inject arbitrary web script or HTML via the search parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mm8-jmrr-729x/GHSA-9mm8-jmrr-729x.json b/advisories/unreviewed/2022/05/GHSA-9mm8-jmrr-729x/GHSA-9mm8-jmrr-729x.json index 5a1527f6f9b..2e461a9e052 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mm8-jmrr-729x/GHSA-9mm8-jmrr-729x.json +++ b/advisories/unreviewed/2022/05/GHSA-9mm8-jmrr-729x/GHSA-9mm8-jmrr-729x.json @@ -7,12 +7,8 @@ "CVE-2021-39602" ], "details": "A Buffer Overflow vulnerabilty exists in Miniftpd 1.0 in the do_mkd function in the ftpproto.c file, which could let a remote malicious user cause a Denial of Service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9mv8-62q2-x7p7/GHSA-9mv8-62q2-x7p7.json b/advisories/unreviewed/2022/05/GHSA-9mv8-62q2-x7p7/GHSA-9mv8-62q2-x7p7.json index 3ad265aa8f0..08084d9fbd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mv8-62q2-x7p7/GHSA-9mv8-62q2-x7p7.json +++ b/advisories/unreviewed/2022/05/GHSA-9mv8-62q2-x7p7/GHSA-9mv8-62q2-x7p7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9r34-9mhm-m59q/GHSA-9r34-9mhm-m59q.json b/advisories/unreviewed/2022/05/GHSA-9r34-9mhm-m59q/GHSA-9r34-9mhm-m59q.json index 179eca45f35..548a48d1541 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r34-9mhm-m59q/GHSA-9r34-9mhm-m59q.json +++ b/advisories/unreviewed/2022/05/GHSA-9r34-9mhm-m59q/GHSA-9r34-9mhm-m59q.json @@ -7,12 +7,8 @@ "CVE-2005-3823" ], "details": "The Users module in vTiger CRM 4.2 and earlier allows remote attackers to execute arbitrary PHP code via an arbitrary file in the templatename parameter, which is passed to the eval function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9r66-96vh-wrjv/GHSA-9r66-96vh-wrjv.json b/advisories/unreviewed/2022/05/GHSA-9r66-96vh-wrjv/GHSA-9r66-96vh-wrjv.json index bb37d794f8d..a25da42c901 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r66-96vh-wrjv/GHSA-9r66-96vh-wrjv.json +++ b/advisories/unreviewed/2022/05/GHSA-9r66-96vh-wrjv/GHSA-9r66-96vh-wrjv.json @@ -7,12 +7,8 @@ "CVE-2005-4026" ], "details": "search.php in Geeklog 1.4.x before 1.4.0rc1, and 1.3.x before 1.3.11sr3, allows remote attackers to obtain sensitive information via invalid (1) datestart and (2) dateend parameters, which leaks the web server path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9vpw-9rcg-jppq/GHSA-9vpw-9rcg-jppq.json b/advisories/unreviewed/2022/05/GHSA-9vpw-9rcg-jppq/GHSA-9vpw-9rcg-jppq.json index 77a600eb416..562f8741bc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vpw-9rcg-jppq/GHSA-9vpw-9rcg-jppq.json +++ b/advisories/unreviewed/2022/05/GHSA-9vpw-9rcg-jppq/GHSA-9vpw-9rcg-jppq.json @@ -7,12 +7,8 @@ "CVE-2021-3628" ], "details": "OpenKM Community Edition in its 6.3.10 version is vulnerable to authenticated Cross-site scripting (XSS). A remote attacker could exploit this vulnerability by injecting arbitrary code via de uuid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vxp-27jj-ffpm/GHSA-9vxp-27jj-ffpm.json b/advisories/unreviewed/2022/05/GHSA-9vxp-27jj-ffpm/GHSA-9vxp-27jj-ffpm.json index 8346d60a706..d8ff565b028 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vxp-27jj-ffpm/GHSA-9vxp-27jj-ffpm.json +++ b/advisories/unreviewed/2022/05/GHSA-9vxp-27jj-ffpm/GHSA-9vxp-27jj-ffpm.json @@ -7,12 +7,8 @@ "CVE-2005-3584" ], "details": "Cross-site scripting (XSS) vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to inject arbitrary web script or HTML via the forum parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9w6f-v487-cp89/GHSA-9w6f-v487-cp89.json b/advisories/unreviewed/2022/05/GHSA-9w6f-v487-cp89/GHSA-9w6f-v487-cp89.json index dc9b4d14be3..de0d3b790f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w6f-v487-cp89/GHSA-9w6f-v487-cp89.json +++ b/advisories/unreviewed/2022/05/GHSA-9w6f-v487-cp89/GHSA-9w6f-v487-cp89.json @@ -7,12 +7,8 @@ "CVE-2005-3523" ], "details": "Format string vulnerability in friendsd2 in GpsDrive allows remote attackers to execute arbitrary code via the dir (direction) field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9w8h-hgv6-rv9c/GHSA-9w8h-hgv6-rv9c.json b/advisories/unreviewed/2022/05/GHSA-9w8h-hgv6-rv9c/GHSA-9w8h-hgv6-rv9c.json index a2eaefcdf04..10ae458c423 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w8h-hgv6-rv9c/GHSA-9w8h-hgv6-rv9c.json +++ b/advisories/unreviewed/2022/05/GHSA-9w8h-hgv6-rv9c/GHSA-9w8h-hgv6-rv9c.json @@ -7,12 +7,8 @@ "CVE-2021-36067" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9w98-qfmg-3h82/GHSA-9w98-qfmg-3h82.json b/advisories/unreviewed/2022/05/GHSA-9w98-qfmg-3h82/GHSA-9w98-qfmg-3h82.json index c269e9e2c7f..ffa08f6aa9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9w98-qfmg-3h82/GHSA-9w98-qfmg-3h82.json +++ b/advisories/unreviewed/2022/05/GHSA-9w98-qfmg-3h82/GHSA-9w98-qfmg-3h82.json @@ -7,12 +7,8 @@ "CVE-2005-3880" ], "details": "Multiple SQL injection vulnerabilities in Omnistar KBase 4.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter in users/comments.php, (2) category_id and (3) id parameters in users/kb.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9xc7-hc9q-hfgg/GHSA-9xc7-hc9q-hfgg.json b/advisories/unreviewed/2022/05/GHSA-9xc7-hc9q-hfgg/GHSA-9xc7-hc9q-hfgg.json index e7a4c8e25b4..81e5d822ac9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xc7-hc9q-hfgg/GHSA-9xc7-hc9q-hfgg.json +++ b/advisories/unreviewed/2022/05/GHSA-9xc7-hc9q-hfgg/GHSA-9xc7-hc9q-hfgg.json @@ -7,12 +7,8 @@ "CVE-2005-3712" ], "details": "Heap-based buffer overflow in rsync in Mac OS X 10.4 through 10.4.5 allows remote authenticated users to execute arbitrary code via long extended attributes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xqf-qwq5-7qrm/GHSA-9xqf-qwq5-7qrm.json b/advisories/unreviewed/2022/05/GHSA-9xqf-qwq5-7qrm/GHSA-9xqf-qwq5-7qrm.json index 71612f73bf4..b8430914a6a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xqf-qwq5-7qrm/GHSA-9xqf-qwq5-7qrm.json +++ b/advisories/unreviewed/2022/05/GHSA-9xqf-qwq5-7qrm/GHSA-9xqf-qwq5-7qrm.json @@ -7,12 +7,8 @@ "CVE-2021-30687" ], "details": "An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 14.6, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted image may lead to disclosure of user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c27c-hxx9-xgvg/GHSA-c27c-hxx9-xgvg.json b/advisories/unreviewed/2022/05/GHSA-c27c-hxx9-xgvg/GHSA-c27c-hxx9-xgvg.json index 8ed40d9e84b..26f5e92ef0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-c27c-hxx9-xgvg/GHSA-c27c-hxx9-xgvg.json +++ b/advisories/unreviewed/2022/05/GHSA-c27c-hxx9-xgvg/GHSA-c27c-hxx9-xgvg.json @@ -7,12 +7,8 @@ "CVE-2005-3594" ], "details": "game_score.php in e107 allows remote attackers to insert high scores via HTTP POST methods utilizing the $player_name, $player_score, and $game_name variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c349-3w9g-4cr7/GHSA-c349-3w9g-4cr7.json b/advisories/unreviewed/2022/05/GHSA-c349-3w9g-4cr7/GHSA-c349-3w9g-4cr7.json index 9bd974e1b17..cb4dab13eb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-c349-3w9g-4cr7/GHSA-c349-3w9g-4cr7.json +++ b/advisories/unreviewed/2022/05/GHSA-c349-3w9g-4cr7/GHSA-c349-3w9g-4cr7.json @@ -7,12 +7,8 @@ "CVE-2005-3734" ], "details": "Cross-site scripting (XSS) vulnerability in the \"add content\" page in phpMyFAQ 1.5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) thema, (2) username, and (3) usermail parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c387-pvvx-p3vq/GHSA-c387-pvvx-p3vq.json b/advisories/unreviewed/2022/05/GHSA-c387-pvvx-p3vq/GHSA-c387-pvvx-p3vq.json index af815ba85c7..fa04c7381d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c387-pvvx-p3vq/GHSA-c387-pvvx-p3vq.json +++ b/advisories/unreviewed/2022/05/GHSA-c387-pvvx-p3vq/GHSA-c387-pvvx-p3vq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3mq-55v5-ggj5/GHSA-c3mq-55v5-ggj5.json b/advisories/unreviewed/2022/05/GHSA-c3mq-55v5-ggj5/GHSA-c3mq-55v5-ggj5.json index 165fcf3aeb9..7d7c3d46e04 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3mq-55v5-ggj5/GHSA-c3mq-55v5-ggj5.json +++ b/advisories/unreviewed/2022/05/GHSA-c3mq-55v5-ggj5/GHSA-c3mq-55v5-ggj5.json @@ -7,12 +7,8 @@ "CVE-2005-3581" ], "details": "GDAL before 1.3.0-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3w5-7jrg-f3jp/GHSA-c3w5-7jrg-f3jp.json b/advisories/unreviewed/2022/05/GHSA-c3w5-7jrg-f3jp/GHSA-c3w5-7jrg-f3jp.json index 38009729881..e6555522282 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3w5-7jrg-f3jp/GHSA-c3w5-7jrg-f3jp.json +++ b/advisories/unreviewed/2022/05/GHSA-c3w5-7jrg-f3jp/GHSA-c3w5-7jrg-f3jp.json @@ -7,12 +7,8 @@ "CVE-2020-22848" ], "details": "A remote code execution (RCE) vulnerability in the \\Playsong.php component of cscms v4.1 allows attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c47f-8j9g-cgjf/GHSA-c47f-8j9g-cgjf.json b/advisories/unreviewed/2022/05/GHSA-c47f-8j9g-cgjf/GHSA-c47f-8j9g-cgjf.json index cea15f6c4eb..50b6a69d62d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c47f-8j9g-cgjf/GHSA-c47f-8j9g-cgjf.json +++ b/advisories/unreviewed/2022/05/GHSA-c47f-8j9g-cgjf/GHSA-c47f-8j9g-cgjf.json @@ -7,12 +7,8 @@ "CVE-2021-29743" ], "details": "IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 201693.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c48v-j765-qgcm/GHSA-c48v-j765-qgcm.json b/advisories/unreviewed/2022/05/GHSA-c48v-j765-qgcm/GHSA-c48v-j765-qgcm.json index 59793e606ef..a8a30eceb15 100644 --- a/advisories/unreviewed/2022/05/GHSA-c48v-j765-qgcm/GHSA-c48v-j765-qgcm.json +++ b/advisories/unreviewed/2022/05/GHSA-c48v-j765-qgcm/GHSA-c48v-j765-qgcm.json @@ -7,12 +7,8 @@ "CVE-2021-36079" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted .SGI file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4v2-jmhg-vhq8/GHSA-c4v2-jmhg-vhq8.json b/advisories/unreviewed/2022/05/GHSA-c4v2-jmhg-vhq8/GHSA-c4v2-jmhg-vhq8.json index b9df9dd0e1b..7e09e638470 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4v2-jmhg-vhq8/GHSA-c4v2-jmhg-vhq8.json +++ b/advisories/unreviewed/2022/05/GHSA-c4v2-jmhg-vhq8/GHSA-c4v2-jmhg-vhq8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4v3-x7jj-4j77/GHSA-c4v3-x7jj-4j77.json b/advisories/unreviewed/2022/05/GHSA-c4v3-x7jj-4j77/GHSA-c4v3-x7jj-4j77.json index 8a1b2740309..4714ac9010e 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4v3-x7jj-4j77/GHSA-c4v3-x7jj-4j77.json +++ b/advisories/unreviewed/2022/05/GHSA-c4v3-x7jj-4j77/GHSA-c4v3-x7jj-4j77.json @@ -7,12 +7,8 @@ "CVE-2021-28603" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c52c-58rq-pmph/GHSA-c52c-58rq-pmph.json b/advisories/unreviewed/2022/05/GHSA-c52c-58rq-pmph/GHSA-c52c-58rq-pmph.json index 988fa087352..f92c304f872 100644 --- a/advisories/unreviewed/2022/05/GHSA-c52c-58rq-pmph/GHSA-c52c-58rq-pmph.json +++ b/advisories/unreviewed/2022/05/GHSA-c52c-58rq-pmph/GHSA-c52c-58rq-pmph.json @@ -7,12 +7,8 @@ "CVE-2020-20340" ], "details": "A SQL injection vulnerability in the 4.edu.php\\conn\\function.php component of S-CMS v1.0 allows attackers to access sensitive database information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5h9-7q32-rwf6/GHSA-c5h9-7q32-rwf6.json b/advisories/unreviewed/2022/05/GHSA-c5h9-7q32-rwf6/GHSA-c5h9-7q32-rwf6.json index a11e5354d89..30b9ef285e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5h9-7q32-rwf6/GHSA-c5h9-7q32-rwf6.json +++ b/advisories/unreviewed/2022/05/GHSA-c5h9-7q32-rwf6/GHSA-c5h9-7q32-rwf6.json @@ -7,12 +7,8 @@ "CVE-2005-4043" ], "details": "SQL injection vulnerability in view.php in Hobosworld HobSR 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) arrange and (2) p parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c7fq-r67j-w9rc/GHSA-c7fq-r67j-w9rc.json b/advisories/unreviewed/2022/05/GHSA-c7fq-r67j-w9rc/GHSA-c7fq-r67j-w9rc.json index 2213c929621..e851e863b47 100644 --- a/advisories/unreviewed/2022/05/GHSA-c7fq-r67j-w9rc/GHSA-c7fq-r67j-w9rc.json +++ b/advisories/unreviewed/2022/05/GHSA-c7fq-r67j-w9rc/GHSA-c7fq-r67j-w9rc.json @@ -7,12 +7,8 @@ "CVE-2005-3845" ], "details": "SQL injection vulnerability in invoices.php in EZ Invoice Inc 2.0 allows remote attackers to execute arbitrary SQL commands via the i parameter. NOTE: the vendor has stated \"EZ Invoice, Inc has a patah available. Please email support@ezinvoiceinc.com and EZI will email you the patch to fix this small issue.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8wx-w8rj-chvm/GHSA-c8wx-w8rj-chvm.json b/advisories/unreviewed/2022/05/GHSA-c8wx-w8rj-chvm/GHSA-c8wx-w8rj-chvm.json index 5dac5dc3190..332fb8a1c7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8wx-w8rj-chvm/GHSA-c8wx-w8rj-chvm.json +++ b/advisories/unreviewed/2022/05/GHSA-c8wx-w8rj-chvm/GHSA-c8wx-w8rj-chvm.json @@ -7,12 +7,8 @@ "CVE-2005-3721" ], "details": "The default configuration of the HTTP server in Hitachi IP5000 VOIP WIFI Phone 1.5.6 does not require authentication for sensitive configuration pages, which allows remote attackers to modify configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c924-vw78-h587/GHSA-c924-vw78-h587.json b/advisories/unreviewed/2022/05/GHSA-c924-vw78-h587/GHSA-c924-vw78-h587.json index 779cb0d3627..916b927dcd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-c924-vw78-h587/GHSA-c924-vw78-h587.json +++ b/advisories/unreviewed/2022/05/GHSA-c924-vw78-h587/GHSA-c924-vw78-h587.json @@ -7,12 +7,8 @@ "CVE-2005-3560" ], "details": "Zone Labs (1) ZoneAlarm Pro 6.0, (2) ZoneAlarm Internet Security Suite 6.0, (3) ZoneAlarm Anti-Virus 6.0, (4) ZoneAlarm Anti-Spyware 6.0 through 6.1, and (5) ZoneAlarm 6.0 allow remote attackers to bypass the \"Advanced Program Control and OS Firewall filters\" setting via URLs in \"HTML Modal Dialogs\" (window.location.href) contained within JavaScript tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9v4-rxrm-vmc5/GHSA-c9v4-rxrm-vmc5.json b/advisories/unreviewed/2022/05/GHSA-c9v4-rxrm-vmc5/GHSA-c9v4-rxrm-vmc5.json index 04223b281bb..1f5502b6745 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9v4-rxrm-vmc5/GHSA-c9v4-rxrm-vmc5.json +++ b/advisories/unreviewed/2022/05/GHSA-c9v4-rxrm-vmc5/GHSA-c9v4-rxrm-vmc5.json @@ -7,12 +7,8 @@ "CVE-2021-30355" ], "details": "Amazon Kindle e-reader prior to and including version 5.13.4 improperly manages privileges, allowing the framework user to elevate privileges to root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfgq-vvcx-vpv4/GHSA-cfgq-vvcx-vpv4.json b/advisories/unreviewed/2022/05/GHSA-cfgq-vvcx-vpv4/GHSA-cfgq-vvcx-vpv4.json index 33af5adfc1b..73378454b2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfgq-vvcx-vpv4/GHSA-cfgq-vvcx-vpv4.json +++ b/advisories/unreviewed/2022/05/GHSA-cfgq-vvcx-vpv4/GHSA-cfgq-vvcx-vpv4.json @@ -7,12 +7,8 @@ "CVE-2005-3888" ], "details": "Memory leak in Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code other than 2 and a large size field, which allocates memory for the packet but does not free it after the packet has been dropped.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cfm7-3295-jjpq/GHSA-cfm7-3295-jjpq.json b/advisories/unreviewed/2022/05/GHSA-cfm7-3295-jjpq/GHSA-cfm7-3295-jjpq.json index e9018247b17..3058a15c450 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfm7-3295-jjpq/GHSA-cfm7-3295-jjpq.json +++ b/advisories/unreviewed/2022/05/GHSA-cfm7-3295-jjpq/GHSA-cfm7-3295-jjpq.json @@ -7,12 +7,8 @@ "CVE-2005-3414" ], "details": "eyeOS 0.8.4 stores usrinfo.xml under the web document root with insufficient access control, which allows remote attackers to obtain user credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cfmw-h4v8-r524/GHSA-cfmw-h4v8-r524.json b/advisories/unreviewed/2022/05/GHSA-cfmw-h4v8-r524/GHSA-cfmw-h4v8-r524.json index ab06de71dd7..92018f5d49e 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfmw-h4v8-r524/GHSA-cfmw-h4v8-r524.json +++ b/advisories/unreviewed/2022/05/GHSA-cfmw-h4v8-r524/GHSA-cfmw-h4v8-r524.json @@ -7,12 +7,8 @@ "CVE-2021-28612" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Our-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information and cause a denial of service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cg28-7vxh-vpfc/GHSA-cg28-7vxh-vpfc.json b/advisories/unreviewed/2022/05/GHSA-cg28-7vxh-vpfc/GHSA-cg28-7vxh-vpfc.json index 4608cb2254b..838f25c0ab6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg28-7vxh-vpfc/GHSA-cg28-7vxh-vpfc.json +++ b/advisories/unreviewed/2022/05/GHSA-cg28-7vxh-vpfc/GHSA-cg28-7vxh-vpfc.json @@ -7,12 +7,8 @@ "CVE-2005-3480" ], "details": "login.asp in Ringtail CaseBook 6.1.0 displays different error messages depending on whether a user exists or not, which allows remote attackers to determine valid usernames.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cg58-vw2q-jv22/GHSA-cg58-vw2q-jv22.json b/advisories/unreviewed/2022/05/GHSA-cg58-vw2q-jv22/GHSA-cg58-vw2q-jv22.json index 201358a08c0..e20af73c565 100644 --- a/advisories/unreviewed/2022/05/GHSA-cg58-vw2q-jv22/GHSA-cg58-vw2q-jv22.json +++ b/advisories/unreviewed/2022/05/GHSA-cg58-vw2q-jv22/GHSA-cg58-vw2q-jv22.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cgpg-hrp4-rwpx/GHSA-cgpg-hrp4-rwpx.json b/advisories/unreviewed/2022/05/GHSA-cgpg-hrp4-rwpx/GHSA-cgpg-hrp4-rwpx.json index b7763365844..ef14118b492 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgpg-hrp4-rwpx/GHSA-cgpg-hrp4-rwpx.json +++ b/advisories/unreviewed/2022/05/GHSA-cgpg-hrp4-rwpx/GHSA-cgpg-hrp4-rwpx.json @@ -7,12 +7,8 @@ "CVE-2021-40175" ], "details": "Zoho ManageEngine Log360 before Build 5219 allows unrestricted file upload with resultant remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ch35-564j-h4p4/GHSA-ch35-564j-h4p4.json b/advisories/unreviewed/2022/05/GHSA-ch35-564j-h4p4/GHSA-ch35-564j-h4p4.json index 64689c8f491..75c1a5634be 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch35-564j-h4p4/GHSA-ch35-564j-h4p4.json +++ b/advisories/unreviewed/2022/05/GHSA-ch35-564j-h4p4/GHSA-ch35-564j-h4p4.json @@ -7,12 +7,8 @@ "CVE-2005-3865" ], "details": "SQL injection vulnerability in index.php in AllWeb search 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ch69-82p3-hfw4/GHSA-ch69-82p3-hfw4.json b/advisories/unreviewed/2022/05/GHSA-ch69-82p3-hfw4/GHSA-ch69-82p3-hfw4.json index f3e18b33f9e..1c30da4667b 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch69-82p3-hfw4/GHSA-ch69-82p3-hfw4.json +++ b/advisories/unreviewed/2022/05/GHSA-ch69-82p3-hfw4/GHSA-ch69-82p3-hfw4.json @@ -7,12 +7,8 @@ "CVE-2021-35240" ], "details": "A security researcher stored XSS via a Help Server setting. This affects customers using Internet Explorer, because they do not support 'rel=noopener'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cj3f-j86c-9p3v/GHSA-cj3f-j86c-9p3v.json b/advisories/unreviewed/2022/05/GHSA-cj3f-j86c-9p3v/GHSA-cj3f-j86c-9p3v.json index 01b1da65a02..7c1ea95cd4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj3f-j86c-9p3v/GHSA-cj3f-j86c-9p3v.json +++ b/advisories/unreviewed/2022/05/GHSA-cj3f-j86c-9p3v/GHSA-cj3f-j86c-9p3v.json @@ -7,12 +7,8 @@ "CVE-2005-3851" ], "details": "Cross-site scripting (XSS) vulnerability in search.asp in Online Attendance System (OASYS) Lite 1.0 allows remote attackers to inject arbitrary web script or HTML via certain search parameters, possibly the keyword parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cj6m-wr3w-29w8/GHSA-cj6m-wr3w-29w8.json b/advisories/unreviewed/2022/05/GHSA-cj6m-wr3w-29w8/GHSA-cj6m-wr3w-29w8.json index 7854fe87efd..a0e6409e6e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj6m-wr3w-29w8/GHSA-cj6m-wr3w-29w8.json +++ b/advisories/unreviewed/2022/05/GHSA-cj6m-wr3w-29w8/GHSA-cj6m-wr3w-29w8.json @@ -7,12 +7,8 @@ "CVE-2021-36075" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a Buffer Overflow vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cj86-fx72-rxqx/GHSA-cj86-fx72-rxqx.json b/advisories/unreviewed/2022/05/GHSA-cj86-fx72-rxqx/GHSA-cj86-fx72-rxqx.json index aa3f35191c7..f54d1e0aed8 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj86-fx72-rxqx/GHSA-cj86-fx72-rxqx.json +++ b/advisories/unreviewed/2022/05/GHSA-cj86-fx72-rxqx/GHSA-cj86-fx72-rxqx.json @@ -7,12 +7,8 @@ "CVE-2021-30680" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4. A local user may be able to load unsigned kernel extensions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjf9-3694-w7gj/GHSA-cjf9-3694-w7gj.json b/advisories/unreviewed/2022/05/GHSA-cjf9-3694-w7gj/GHSA-cjf9-3694-w7gj.json index ed5d58a696a..45b09fd1f2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjf9-3694-w7gj/GHSA-cjf9-3694-w7gj.json +++ b/advisories/unreviewed/2022/05/GHSA-cjf9-3694-w7gj/GHSA-cjf9-3694-w7gj.json @@ -7,12 +7,8 @@ "CVE-2005-3872" ], "details": "Multiple SQL injection vulnerabilities in Ugroup 2.6.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) FORUM_ID parameter in forum.php, and the (2) TOPIC_ID, (3) FORUM_ID, and (4) CAT_ID parameters in topic.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjp5-p4x3-x7jg/GHSA-cjp5-p4x3-x7jg.json b/advisories/unreviewed/2022/05/GHSA-cjp5-p4x3-x7jg/GHSA-cjp5-p4x3-x7jg.json index 2ac6153a871..0d9976e2b95 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjp5-p4x3-x7jg/GHSA-cjp5-p4x3-x7jg.json +++ b/advisories/unreviewed/2022/05/GHSA-cjp5-p4x3-x7jg/GHSA-cjp5-p4x3-x7jg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm52-c72r-9vmv/GHSA-cm52-c72r-9vmv.json b/advisories/unreviewed/2022/05/GHSA-cm52-c72r-9vmv/GHSA-cm52-c72r-9vmv.json index ad4760beb25..5fc0df955ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm52-c72r-9vmv/GHSA-cm52-c72r-9vmv.json +++ b/advisories/unreviewed/2022/05/GHSA-cm52-c72r-9vmv/GHSA-cm52-c72r-9vmv.json @@ -7,12 +7,8 @@ "CVE-2005-3558" ], "details": "PHP file inclusion vulnerability in index.php in OSTE 1.0 allows remote attackers to execute arbitrary code via the (1) page and (2) site parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmp6-2c27-3682/GHSA-cmp6-2c27-3682.json b/advisories/unreviewed/2022/05/GHSA-cmp6-2c27-3682/GHSA-cmp6-2c27-3682.json index 6bff671da59..84e2308f16f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmp6-2c27-3682/GHSA-cmp6-2c27-3682.json +++ b/advisories/unreviewed/2022/05/GHSA-cmp6-2c27-3682/GHSA-cmp6-2c27-3682.json @@ -7,12 +7,8 @@ "CVE-2005-3539" ], "details": "Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in HylaFAX 4.2.0 to 4.2.3 and (2) crafted CallID parameters to the faxrcvd script in HylaFAX 4.2.2 and 4.2.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cp6j-hp5r-7hwv/GHSA-cp6j-hp5r-7hwv.json b/advisories/unreviewed/2022/05/GHSA-cp6j-hp5r-7hwv/GHSA-cp6j-hp5r-7hwv.json index aec131618e3..f0baed4ecc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp6j-hp5r-7hwv/GHSA-cp6j-hp5r-7hwv.json +++ b/advisories/unreviewed/2022/05/GHSA-cp6j-hp5r-7hwv/GHSA-cp6j-hp5r-7hwv.json @@ -7,12 +7,8 @@ "CVE-2020-18998" ], "details": "Cross Site Scripting (XSS) in Blog_mini v1.0 allows remote attackers to execute arbitrary code via the component '/admin/custom/blog-plugin/add'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cp75-c7h5-j538/GHSA-cp75-c7h5-j538.json b/advisories/unreviewed/2022/05/GHSA-cp75-c7h5-j538/GHSA-cp75-c7h5-j538.json index 776c91495dc..08e9fafb73a 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp75-c7h5-j538/GHSA-cp75-c7h5-j538.json +++ b/advisories/unreviewed/2022/05/GHSA-cp75-c7h5-j538/GHSA-cp75-c7h5-j538.json @@ -7,12 +7,8 @@ "CVE-2005-3641" ], "details": "Oracle Databases running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication by supplying a valid username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cpg4-43jp-j7rh/GHSA-cpg4-43jp-j7rh.json b/advisories/unreviewed/2022/05/GHSA-cpg4-43jp-j7rh/GHSA-cpg4-43jp-j7rh.json index 148ab68476d..ce2cc0c0330 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpg4-43jp-j7rh/GHSA-cpg4-43jp-j7rh.json +++ b/advisories/unreviewed/2022/05/GHSA-cpg4-43jp-j7rh/GHSA-cpg4-43jp-j7rh.json @@ -7,12 +7,8 @@ "CVE-2021-36077" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious SVG file, potentially resulting in local application denial of service in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqx5-p2pr-988q/GHSA-cqx5-p2pr-988q.json b/advisories/unreviewed/2022/05/GHSA-cqx5-p2pr-988q/GHSA-cqx5-p2pr-988q.json index 882126580f2..9f64278b187 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqx5-p2pr-988q/GHSA-cqx5-p2pr-988q.json +++ b/advisories/unreviewed/2022/05/GHSA-cqx5-p2pr-988q/GHSA-cqx5-p2pr-988q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cr48-c784-cmxh/GHSA-cr48-c784-cmxh.json b/advisories/unreviewed/2022/05/GHSA-cr48-c784-cmxh/GHSA-cr48-c784-cmxh.json index 3fe0b7a114a..d0fdc0081e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr48-c784-cmxh/GHSA-cr48-c784-cmxh.json +++ b/advisories/unreviewed/2022/05/GHSA-cr48-c784-cmxh/GHSA-cr48-c784-cmxh.json @@ -7,12 +7,8 @@ "CVE-2005-3532" ], "details": "authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pam_tally, does not call the pam_acct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-crqv-c72j-wp5v/GHSA-crqv-c72j-wp5v.json b/advisories/unreviewed/2022/05/GHSA-crqv-c72j-wp5v/GHSA-crqv-c72j-wp5v.json index c32ffb02682..eabf87b5cc3 100644 --- a/advisories/unreviewed/2022/05/GHSA-crqv-c72j-wp5v/GHSA-crqv-c72j-wp5v.json +++ b/advisories/unreviewed/2022/05/GHSA-crqv-c72j-wp5v/GHSA-crqv-c72j-wp5v.json @@ -7,12 +7,8 @@ "CVE-2005-3881" ], "details": "SQL injection vulnerability in search.php in AtlantisFAQ Knowledge Base Software 2.03 and earlier allows remote attackers to execute arbitrary SQL commands via the searchStr parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cv4j-grvc-2x58/GHSA-cv4j-grvc-2x58.json b/advisories/unreviewed/2022/05/GHSA-cv4j-grvc-2x58/GHSA-cv4j-grvc-2x58.json index 1196966c776..68e8f7defd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv4j-grvc-2x58/GHSA-cv4j-grvc-2x58.json +++ b/advisories/unreviewed/2022/05/GHSA-cv4j-grvc-2x58/GHSA-cv4j-grvc-2x58.json @@ -7,12 +7,8 @@ "CVE-2005-3733" ], "details": "The Internet Key Exchange version 1 (IKEv1) implementation in Juniper JUNOS and JUNOSe software for M, T, and J-series routers before release 6.4, and E-series routers before 7-1-0, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvfx-7rq4-r2px/GHSA-cvfx-7rq4-r2px.json b/advisories/unreviewed/2022/05/GHSA-cvfx-7rq4-r2px/GHSA-cvfx-7rq4-r2px.json index 4daf9e147d6..eb7e7ad12d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvfx-7rq4-r2px/GHSA-cvfx-7rq4-r2px.json +++ b/advisories/unreviewed/2022/05/GHSA-cvfx-7rq4-r2px/GHSA-cvfx-7rq4-r2px.json @@ -7,12 +7,8 @@ "CVE-2005-3786" ], "details": "Novell ZENworks for Desktops 4.0.1, ZENworks for Servers 3.0.2, and ZENworks 6.5 Desktop Management does not restrict access to Remote Diagnostics, which allows local users to bypass security policies by using Console One.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvrh-m78c-fvfx/GHSA-cvrh-m78c-fvfx.json b/advisories/unreviewed/2022/05/GHSA-cvrh-m78c-fvfx/GHSA-cvrh-m78c-fvfx.json index 315f2b1af1f..bf7db9a46cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvrh-m78c-fvfx/GHSA-cvrh-m78c-fvfx.json +++ b/advisories/unreviewed/2022/05/GHSA-cvrh-m78c-fvfx/GHSA-cvrh-m78c-fvfx.json @@ -7,12 +7,8 @@ "CVE-2005-3815" ], "details": "SQL injection vulnerability in forum.php in Orca Forum 4.3b and earlier allows remote attackers to execute arbitrary SQL commands via the msg parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cw69-2q7p-cmfx/GHSA-cw69-2q7p-cmfx.json b/advisories/unreviewed/2022/05/GHSA-cw69-2q7p-cmfx/GHSA-cw69-2q7p-cmfx.json index ea3b827b0a9..b5cab3f6768 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw69-2q7p-cmfx/GHSA-cw69-2q7p-cmfx.json +++ b/advisories/unreviewed/2022/05/GHSA-cw69-2q7p-cmfx/GHSA-cw69-2q7p-cmfx.json @@ -7,12 +7,8 @@ "CVE-2021-24437" ], "details": "The Favicon by RealFaviconGenerator WordPress plugin through 1.3.20 does not sanitise or escape one of its parameter before outputting it back in the response, leading to a Reflected Cross-Site Scripting (XSS) which is executed in the context of a logged administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cwjf-5m74-rjvw/GHSA-cwjf-5m74-rjvw.json b/advisories/unreviewed/2022/05/GHSA-cwjf-5m74-rjvw/GHSA-cwjf-5m74-rjvw.json index 751c68be437..78eb8fbc106 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwjf-5m74-rjvw/GHSA-cwjf-5m74-rjvw.json +++ b/advisories/unreviewed/2022/05/GHSA-cwjf-5m74-rjvw/GHSA-cwjf-5m74-rjvw.json @@ -7,12 +7,8 @@ "CVE-2005-3778" ], "details": "Unspecified vulnerability in MyBulletinBoard (MyBB) before 1.0 PR2 Rev 686 allows attackers to cause a denial of service via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cwm2-mgm4-98xx/GHSA-cwm2-mgm4-98xx.json b/advisories/unreviewed/2022/05/GHSA-cwm2-mgm4-98xx/GHSA-cwm2-mgm4-98xx.json index 1616bfd3f7b..09acd5808c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cwm2-mgm4-98xx/GHSA-cwm2-mgm4-98xx.json +++ b/advisories/unreviewed/2022/05/GHSA-cwm2-mgm4-98xx/GHSA-cwm2-mgm4-98xx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f22p-xx2m-5g9m/GHSA-f22p-xx2m-5g9m.json b/advisories/unreviewed/2022/05/GHSA-f22p-xx2m-5g9m/GHSA-f22p-xx2m-5g9m.json index 1e07829fdf8..bab9fa44755 100644 --- a/advisories/unreviewed/2022/05/GHSA-f22p-xx2m-5g9m/GHSA-f22p-xx2m-5g9m.json +++ b/advisories/unreviewed/2022/05/GHSA-f22p-xx2m-5g9m/GHSA-f22p-xx2m-5g9m.json @@ -7,12 +7,8 @@ "CVE-2020-13639" ], "details": "A stored XSS vulnerability was discovered in the ECT Provider in OutSystems before 2020-09-04, affecting generated applications. It could allow an unauthenticated remote attacker to craft and store malicious Feedback content into /ECT_Provider/, such that when the content is viewed (it can only be viewed by Administrators), attacker-controlled JavaScript will execute in the security context of an administrator's browser. This is fixed in Outsystems 10.0.1005.2, Outsystems 11.9.0 Platform Server, and Outsystems 11.7.0 LifeTime Management Console.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2j9-9pqc-53qf/GHSA-f2j9-9pqc-53qf.json b/advisories/unreviewed/2022/05/GHSA-f2j9-9pqc-53qf/GHSA-f2j9-9pqc-53qf.json index f4de3e373a5..c4460ad1ec9 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2j9-9pqc-53qf/GHSA-f2j9-9pqc-53qf.json +++ b/advisories/unreviewed/2022/05/GHSA-f2j9-9pqc-53qf/GHSA-f2j9-9pqc-53qf.json @@ -7,12 +7,8 @@ "CVE-2005-3791" ], "details": "HTTP response splitting vulnerability in phpAdsNew and phpPgAds 2.0.6 and earlier allows remote attackers to inject arbitrary HTML headers via adclick.php and possibly other unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f37w-3rf5-92hr/GHSA-f37w-3rf5-92hr.json b/advisories/unreviewed/2022/05/GHSA-f37w-3rf5-92hr/GHSA-f37w-3rf5-92hr.json index 2da3ab270f6..aadc05f6600 100644 --- a/advisories/unreviewed/2022/05/GHSA-f37w-3rf5-92hr/GHSA-f37w-3rf5-92hr.json +++ b/advisories/unreviewed/2022/05/GHSA-f37w-3rf5-92hr/GHSA-f37w-3rf5-92hr.json @@ -7,12 +7,8 @@ "CVE-2005-3761" ], "details": "Cross-site scripting (XSS) vulnerability in Exponent CMS 0.96.3 and later versions allows remote attackers to inject arbitrary web script or HTML via (1) Javascript in forms produced by the form generator or (2) the parameters to the installer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f389-88pf-8hp7/GHSA-f389-88pf-8hp7.json b/advisories/unreviewed/2022/05/GHSA-f389-88pf-8hp7/GHSA-f389-88pf-8hp7.json index 57c4265bfe5..2197d5e4bf5 100644 --- a/advisories/unreviewed/2022/05/GHSA-f389-88pf-8hp7/GHSA-f389-88pf-8hp7.json +++ b/advisories/unreviewed/2022/05/GHSA-f389-88pf-8hp7/GHSA-f389-88pf-8hp7.json @@ -7,12 +7,8 @@ "CVE-2005-3896" ], "details": "Mozilla allows remote attackers to cause a denial of service (CPU consumption) via a Javascript BODY onload event that calls the window function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f47f-7prx-x9jv/GHSA-f47f-7prx-x9jv.json b/advisories/unreviewed/2022/05/GHSA-f47f-7prx-x9jv/GHSA-f47f-7prx-x9jv.json index 8a531910a59..213e0aea8d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f47f-7prx-x9jv/GHSA-f47f-7prx-x9jv.json +++ b/advisories/unreviewed/2022/05/GHSA-f47f-7prx-x9jv/GHSA-f47f-7prx-x9jv.json @@ -7,12 +7,8 @@ "CVE-2005-3809" ], "details": "The nfattr_to_tcp function in ip_conntrack_proto_tcp.c in ctnetlink in Linux kernel 2.6.14 up to 2.6.14.3 allows attackers to cause a denial of service (kernel oops) via an update message without private protocol information, which triggers a null dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f4pp-gppp-2xw5/GHSA-f4pp-gppp-2xw5.json b/advisories/unreviewed/2022/05/GHSA-f4pp-gppp-2xw5/GHSA-f4pp-gppp-2xw5.json index 33cc16c2c93..d8168f722ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4pp-gppp-2xw5/GHSA-f4pp-gppp-2xw5.json +++ b/advisories/unreviewed/2022/05/GHSA-f4pp-gppp-2xw5/GHSA-f4pp-gppp-2xw5.json @@ -7,12 +7,8 @@ "CVE-2005-3725" ], "details": "Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 uses hardcoded IP addresses for its DNS servers, which could allow remote attackers to cause a denial of service or hijack Zyxel phones by attacking or spoofing the hardcoded DNS servers. NOTE: it could be argued that this issue reflects an inherent limitation of DNS itself, so perhaps it should not be included in CVE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7f4-77fw-4x5j/GHSA-f7f4-77fw-4x5j.json b/advisories/unreviewed/2022/05/GHSA-f7f4-77fw-4x5j/GHSA-f7f4-77fw-4x5j.json index 00b46d2627b..3413119d5d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7f4-77fw-4x5j/GHSA-f7f4-77fw-4x5j.json +++ b/advisories/unreviewed/2022/05/GHSA-f7f4-77fw-4x5j/GHSA-f7f4-77fw-4x5j.json @@ -7,12 +7,8 @@ "CVE-2005-3421" ], "details": "estcmd in Hyper Estraier 1.0.1 on Windows systems allows remote attackers to read unauthorized files via a crafted search request for a filename that contains Unicode characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f7pg-m34f-mphj/GHSA-f7pg-m34f-mphj.json b/advisories/unreviewed/2022/05/GHSA-f7pg-m34f-mphj/GHSA-f7pg-m34f-mphj.json index b2e10370731..145fb737ad0 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7pg-m34f-mphj/GHSA-f7pg-m34f-mphj.json +++ b/advisories/unreviewed/2022/05/GHSA-f7pg-m34f-mphj/GHSA-f7pg-m34f-mphj.json @@ -7,12 +7,8 @@ "CVE-2005-4048" ], "details": "Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7vw-x862-7chj/GHSA-f7vw-x862-7chj.json b/advisories/unreviewed/2022/05/GHSA-f7vw-x862-7chj/GHSA-f7vw-x862-7chj.json index 7a2a1ac01e9..d36cf2c2778 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7vw-x862-7chj/GHSA-f7vw-x862-7chj.json +++ b/advisories/unreviewed/2022/05/GHSA-f7vw-x862-7chj/GHSA-f7vw-x862-7chj.json @@ -7,12 +7,8 @@ "CVE-2005-3844" ], "details": "SQL injection vulnerability in phpWordPress PHP News and Article Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the (1) poll and (2) category parameters to index.php, and (3) the ctg parameter in an archive action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f846-jq5c-qg5j/GHSA-f846-jq5c-qg5j.json b/advisories/unreviewed/2022/05/GHSA-f846-jq5c-qg5j/GHSA-f846-jq5c-qg5j.json index 345a8a8d748..cb8d89dcd13 100644 --- a/advisories/unreviewed/2022/05/GHSA-f846-jq5c-qg5j/GHSA-f846-jq5c-qg5j.json +++ b/advisories/unreviewed/2022/05/GHSA-f846-jq5c-qg5j/GHSA-f846-jq5c-qg5j.json @@ -7,12 +7,8 @@ "CVE-2005-3422" ], "details": "Cross-site scripting (XSS) vulnerability in error.asp in ASP Fast Forum allows remote attackers to inject arbitrary web script or HTML via the error parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f86m-4hjx-mgqr/GHSA-f86m-4hjx-mgqr.json b/advisories/unreviewed/2022/05/GHSA-f86m-4hjx-mgqr/GHSA-f86m-4hjx-mgqr.json index be1911aa31b..557a253cc8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f86m-4hjx-mgqr/GHSA-f86m-4hjx-mgqr.json +++ b/advisories/unreviewed/2022/05/GHSA-f86m-4hjx-mgqr/GHSA-f86m-4hjx-mgqr.json @@ -7,12 +7,8 @@ "CVE-2005-3418" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in phpBB 2.0.17 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) error_msg parameter to usercp_register.php, (2) forward_page parameter to login.php, and (3) list_cat parameter to search.php, which are not initialized as variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f88m-xc68-c424/GHSA-f88m-xc68-c424.json b/advisories/unreviewed/2022/05/GHSA-f88m-xc68-c424/GHSA-f88m-xc68-c424.json index 24facaeb1a5..29e96f95ea0 100644 --- a/advisories/unreviewed/2022/05/GHSA-f88m-xc68-c424/GHSA-f88m-xc68-c424.json +++ b/advisories/unreviewed/2022/05/GHSA-f88m-xc68-c424/GHSA-f88m-xc68-c424.json @@ -7,12 +7,8 @@ "CVE-2005-3643" ], "details": "IBM DB2 Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the guest account without supplying a password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f9rf-h9fg-69cm/GHSA-f9rf-h9fg-69cm.json b/advisories/unreviewed/2022/05/GHSA-f9rf-h9fg-69cm/GHSA-f9rf-h9fg-69cm.json index 92d823ad4df..7cbe11c43d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9rf-h9fg-69cm/GHSA-f9rf-h9fg-69cm.json +++ b/advisories/unreviewed/2022/05/GHSA-f9rf-h9fg-69cm/GHSA-f9rf-h9fg-69cm.json @@ -7,12 +7,8 @@ "CVE-2005-4023" ], "details": "Unspecified vulnerability in the zipcart module in Gallery 2.0 before 2.0.2 allows remote attackers to read arbitrary files via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fc3c-3w7h-jhhv/GHSA-fc3c-3w7h-jhhv.json b/advisories/unreviewed/2022/05/GHSA-fc3c-3w7h-jhhv/GHSA-fc3c-3w7h-jhhv.json index cd38fb46aec..4b63b110a08 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc3c-3w7h-jhhv/GHSA-fc3c-3w7h-jhhv.json +++ b/advisories/unreviewed/2022/05/GHSA-fc3c-3w7h-jhhv/GHSA-fc3c-3w7h-jhhv.json @@ -7,12 +7,8 @@ "CVE-2005-3496" ], "details": "Cross-site scripting (XSS) vulnerability in PHP Handicapper allows remote attackers to inject arbitrary web script or HTML via the msg parameter to msg.php. NOTE: some sources identify a second vector in the login parameter to process_signup.php, but the original source says that it is for CRLF injection (CVE-2005-4712). Also note: the vendor has disputed CVE-2005-3497, and it is possible that the dispute was intended to include this issue as well. If so, followup investigation strongly suggests that the original report is correct.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc6g-6wpj-pwr9/GHSA-fc6g-6wpj-pwr9.json b/advisories/unreviewed/2022/05/GHSA-fc6g-6wpj-pwr9/GHSA-fc6g-6wpj-pwr9.json index 56c496a7460..04b559cd2ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc6g-6wpj-pwr9/GHSA-fc6g-6wpj-pwr9.json +++ b/advisories/unreviewed/2022/05/GHSA-fc6g-6wpj-pwr9/GHSA-fc6g-6wpj-pwr9.json @@ -7,12 +7,8 @@ "CVE-2020-18116" ], "details": "A lack of filtering for searched keywords in the search bar of YouDianCMS 8.0 allows attackers to perform SQL injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ff49-7jqv-g3f9/GHSA-ff49-7jqv-g3f9.json b/advisories/unreviewed/2022/05/GHSA-ff49-7jqv-g3f9/GHSA-ff49-7jqv-g3f9.json index 26277119559..c095db591c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-ff49-7jqv-g3f9/GHSA-ff49-7jqv-g3f9.json +++ b/advisories/unreviewed/2022/05/GHSA-ff49-7jqv-g3f9/GHSA-ff49-7jqv-g3f9.json @@ -7,12 +7,8 @@ "CVE-2021-28611" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Our-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information and cause a denial of service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffr4-5c39-jm79/GHSA-ffr4-5c39-jm79.json b/advisories/unreviewed/2022/05/GHSA-ffr4-5c39-jm79/GHSA-ffr4-5c39-jm79.json index 98bbe6daba9..5cede832a89 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffr4-5c39-jm79/GHSA-ffr4-5c39-jm79.json +++ b/advisories/unreviewed/2022/05/GHSA-ffr4-5c39-jm79/GHSA-ffr4-5c39-jm79.json @@ -7,12 +7,8 @@ "CVE-2005-3568" ], "details": "db2fmp process in IBM DB2 Content Manager before 8.2 Fix Pack 10 allows local users to cause a denial of service (CPU consumption) by importing a corrupted Microsoft Excel file, aka \"CORRUPTED EXEL FILE WILL CAUSE TEXT SEARCH PROCESS LOOPING.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fg28-g5cr-jq66/GHSA-fg28-g5cr-jq66.json b/advisories/unreviewed/2022/05/GHSA-fg28-g5cr-jq66/GHSA-fg28-g5cr-jq66.json index fbe99e7e44e..299ab64956b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg28-g5cr-jq66/GHSA-fg28-g5cr-jq66.json +++ b/advisories/unreviewed/2022/05/GHSA-fg28-g5cr-jq66/GHSA-fg28-g5cr-jq66.json @@ -7,12 +7,8 @@ "CVE-2005-3527" ], "details": "Race condition in do_coredump in signal.c in Linux kernel 2.6 allows local users to cause a denial of service by triggering a core dump in one thread while another thread has a pending SIGSTOP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fg2p-g438-rjr4/GHSA-fg2p-g438-rjr4.json b/advisories/unreviewed/2022/05/GHSA-fg2p-g438-rjr4/GHSA-fg2p-g438-rjr4.json index 6074239f51f..d3663374529 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg2p-g438-rjr4/GHSA-fg2p-g438-rjr4.json +++ b/advisories/unreviewed/2022/05/GHSA-fg2p-g438-rjr4/GHSA-fg2p-g438-rjr4.json @@ -7,12 +7,8 @@ "CVE-2021-36691" ], "details": "libjxl v0.5.0 is affected by a Assertion failed issue in lib/jxl/image.cc jxl::PlaneBase::PlaneBase(). When encoding a malicous GIF file using cjxl, an attacker can trigger a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg3q-64v7-cv63/GHSA-fg3q-64v7-cv63.json b/advisories/unreviewed/2022/05/GHSA-fg3q-64v7-cv63/GHSA-fg3q-64v7-cv63.json index 4c26d91547d..90785b53dcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg3q-64v7-cv63/GHSA-fg3q-64v7-cv63.json +++ b/advisories/unreviewed/2022/05/GHSA-fg3q-64v7-cv63/GHSA-fg3q-64v7-cv63.json @@ -7,12 +7,8 @@ "CVE-2005-3863" ], "details": "Stack-based buffer overflow in kkstrtext.h in ktools library 0.3 and earlier, as used in products such as (1) centericq, (2) orpheus, (3) motor, and (4) groan, allows local users or remote attackers to execute arbitrary code via a long parameter to the VGETSTRING macro.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg3v-hf2h-29r9/GHSA-fg3v-hf2h-29r9.json b/advisories/unreviewed/2022/05/GHSA-fg3v-hf2h-29r9/GHSA-fg3v-hf2h-29r9.json index bf1b0993358..3502d2e54d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg3v-hf2h-29r9/GHSA-fg3v-hf2h-29r9.json +++ b/advisories/unreviewed/2022/05/GHSA-fg3v-hf2h-29r9/GHSA-fg3v-hf2h-29r9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg8j-ghvw-wp69/GHSA-fg8j-ghvw-wp69.json b/advisories/unreviewed/2022/05/GHSA-fg8j-ghvw-wp69/GHSA-fg8j-ghvw-wp69.json index 54a1927cbd7..c9fbdc322d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg8j-ghvw-wp69/GHSA-fg8j-ghvw-wp69.json +++ b/advisories/unreviewed/2022/05/GHSA-fg8j-ghvw-wp69/GHSA-fg8j-ghvw-wp69.json @@ -7,12 +7,8 @@ "CVE-2005-3406" ], "details": "Cross-site scripting (XSS) vulnerability in phpESP 1.7.5 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fh6q-g7pw-7m6r/GHSA-fh6q-g7pw-7m6r.json b/advisories/unreviewed/2022/05/GHSA-fh6q-g7pw-7m6r/GHSA-fh6q-g7pw-7m6r.json index 05c58cdddfc..eee14357661 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh6q-g7pw-7m6r/GHSA-fh6q-g7pw-7m6r.json +++ b/advisories/unreviewed/2022/05/GHSA-fh6q-g7pw-7m6r/GHSA-fh6q-g7pw-7m6r.json @@ -7,12 +7,8 @@ "CVE-2005-3417" ], "details": "phpBB 2.0.17 and earlier, when the register_long_arrays directive is disabled, allows remote attackers to modify global variables and bypass security mechanisms because PHP does not define the associated HTTP_* variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fhq5-gp33-hgg4/GHSA-fhq5-gp33-hgg4.json b/advisories/unreviewed/2022/05/GHSA-fhq5-gp33-hgg4/GHSA-fhq5-gp33-hgg4.json index 11b6f8261fd..43564100645 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhq5-gp33-hgg4/GHSA-fhq5-gp33-hgg4.json +++ b/advisories/unreviewed/2022/05/GHSA-fhq5-gp33-hgg4/GHSA-fhq5-gp33-hgg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fjp8-599f-3qpx/GHSA-fjp8-599f-3qpx.json b/advisories/unreviewed/2022/05/GHSA-fjp8-599f-3qpx/GHSA-fjp8-599f-3qpx.json index 9c9ed7ae286..48c31708311 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjp8-599f-3qpx/GHSA-fjp8-599f-3qpx.json +++ b/advisories/unreviewed/2022/05/GHSA-fjp8-599f-3qpx/GHSA-fjp8-599f-3qpx.json @@ -7,12 +7,8 @@ "CVE-2020-15744" ], "details": "Stack-based Buffer Overflow vulnerability in the ONVIF server component of Victure PC420 smart camera allows an attacker to execute remote code on the target device. This issue affects: Victure PC420 firmware version 1.2.2 and prior versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fp3m-w4r4-j69f/GHSA-fp3m-w4r4-j69f.json b/advisories/unreviewed/2022/05/GHSA-fp3m-w4r4-j69f/GHSA-fp3m-w4r4-j69f.json index ed151ad925e..3801fa32e59 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp3m-w4r4-j69f/GHSA-fp3m-w4r4-j69f.json +++ b/advisories/unreviewed/2022/05/GHSA-fp3m-w4r4-j69f/GHSA-fp3m-w4r4-j69f.json @@ -7,12 +7,8 @@ "CVE-2005-3829" ], "details": "index.php in ActiveCampaign KnowledgeBuilder 2.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via an invalid category parameter, which causes a large number of SQL queries to be processed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fqvq-xrph-72gh/GHSA-fqvq-xrph-72gh.json b/advisories/unreviewed/2022/05/GHSA-fqvq-xrph-72gh/GHSA-fqvq-xrph-72gh.json index 22c584b53c3..dee91ddb6be 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqvq-xrph-72gh/GHSA-fqvq-xrph-72gh.json +++ b/advisories/unreviewed/2022/05/GHSA-fqvq-xrph-72gh/GHSA-fqvq-xrph-72gh.json @@ -7,12 +7,8 @@ "CVE-2005-3704" ], "details": "System log server in Mac OS X and OS X Server 10.4 through 10.4.3 allows remote attackers to spoof syslog messages in log files by injecting various control characters such as newline (NL).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fr4r-3v2c-wv3m/GHSA-fr4r-3v2c-wv3m.json b/advisories/unreviewed/2022/05/GHSA-fr4r-3v2c-wv3m/GHSA-fr4r-3v2c-wv3m.json index f4c84a19f5f..39889a91784 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr4r-3v2c-wv3m/GHSA-fr4r-3v2c-wv3m.json +++ b/advisories/unreviewed/2022/05/GHSA-fr4r-3v2c-wv3m/GHSA-fr4r-3v2c-wv3m.json @@ -7,12 +7,8 @@ "CVE-2021-22943" ], "details": "A vulnerability found in UniFi Protect application V1.18.1 and earlier permits a malicious actor who has already gained access to a network to subsequently control the Protect camera(s) assigned to said network. This vulnerability is fixed in UniFi Protect application V1.19.0 and later.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-frcq-2xc3-4qgx/GHSA-frcq-2xc3-4qgx.json b/advisories/unreviewed/2022/05/GHSA-frcq-2xc3-4qgx/GHSA-frcq-2xc3-4qgx.json index c92c006e924..c4b27d9b970 100644 --- a/advisories/unreviewed/2022/05/GHSA-frcq-2xc3-4qgx/GHSA-frcq-2xc3-4qgx.json +++ b/advisories/unreviewed/2022/05/GHSA-frcq-2xc3-4qgx/GHSA-frcq-2xc3-4qgx.json @@ -7,12 +7,8 @@ "CVE-2005-3419" ], "details": "SQL injection vulnerability in usercp_register.php in phpBB 2.0.17 allows remote attackers to execute arbitrary SQL commands via the signature_bbcode_uid parameter, which is not properly initialized.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-frw8-q26x-vv93/GHSA-frw8-q26x-vv93.json b/advisories/unreviewed/2022/05/GHSA-frw8-q26x-vv93/GHSA-frw8-q26x-vv93.json index fe87860e2d1..86ce0f2c86d 100644 --- a/advisories/unreviewed/2022/05/GHSA-frw8-q26x-vv93/GHSA-frw8-q26x-vv93.json +++ b/advisories/unreviewed/2022/05/GHSA-frw8-q26x-vv93/GHSA-frw8-q26x-vv93.json @@ -7,12 +7,8 @@ "CVE-2021-36061" ], "details": "Adobe Connect version 11.2.2 (and earlier) is affected by a secure design principles violation vulnerability via the 'pbMode' parameter. An unauthenticated attacker could leverage this vulnerability to edit or delete recordings on the Connect environment. Exploitation of this issue requires user interaction in that a victim must publish a link of a Connect recording.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fvfx-j89j-56cf/GHSA-fvfx-j89j-56cf.json b/advisories/unreviewed/2022/05/GHSA-fvfx-j89j-56cf/GHSA-fvfx-j89j-56cf.json index 40e7fdf193e..7f8713e9e51 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvfx-j89j-56cf/GHSA-fvfx-j89j-56cf.json +++ b/advisories/unreviewed/2022/05/GHSA-fvfx-j89j-56cf/GHSA-fvfx-j89j-56cf.json @@ -7,12 +7,8 @@ "CVE-2021-33019" ], "details": "A stack-based buffer overflow vulnerability in Delta Electronics DOPSoft Version 4.00.11 and prior may be exploited by processing a specially crafted project file, which may allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fvm2-26q2-hxhh/GHSA-fvm2-26q2-hxhh.json b/advisories/unreviewed/2022/05/GHSA-fvm2-26q2-hxhh/GHSA-fvm2-26q2-hxhh.json index 5336b408e28..2715c5cf437 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvm2-26q2-hxhh/GHSA-fvm2-26q2-hxhh.json +++ b/advisories/unreviewed/2022/05/GHSA-fvm2-26q2-hxhh/GHSA-fvm2-26q2-hxhh.json @@ -7,12 +7,8 @@ "CVE-2005-3468" ], "details": "Directory traversal vulnerability in F-Secure Anti-Virus for Microsoft Exchange 6.40 and Internet Gatekeeper 6.40 to 6.42 allows limited remote attackers to bypass Web Console authentication and read files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fw24-832r-x4vh/GHSA-fw24-832r-x4vh.json b/advisories/unreviewed/2022/05/GHSA-fw24-832r-x4vh/GHSA-fw24-832r-x4vh.json index 4f7c5b8aa7c..01402ca21e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw24-832r-x4vh/GHSA-fw24-832r-x4vh.json +++ b/advisories/unreviewed/2022/05/GHSA-fw24-832r-x4vh/GHSA-fw24-832r-x4vh.json @@ -7,12 +7,8 @@ "CVE-2021-40387" ], "details": "An issue was discovered in the server software in Kaseya Unitrends Backup Software before 10.5.5-2. There is authenticated remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fw32-wp52-fv39/GHSA-fw32-wp52-fv39.json b/advisories/unreviewed/2022/05/GHSA-fw32-wp52-fv39/GHSA-fw32-wp52-fv39.json index 3c8e407ffc5..b68c0d10a21 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw32-wp52-fv39/GHSA-fw32-wp52-fv39.json +++ b/advisories/unreviewed/2022/05/GHSA-fw32-wp52-fv39/GHSA-fw32-wp52-fv39.json @@ -7,12 +7,8 @@ "CVE-2021-36530" ], "details": "ngiflib 0.4 has a heap overflow in GetByteStr() at ngiflib.c:108 in NGIFLIB_NO_FILE mode, GetByteStr() copy memory buffer without checking the boundary.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwg6-66g7-28f5/GHSA-fwg6-66g7-28f5.json b/advisories/unreviewed/2022/05/GHSA-fwg6-66g7-28f5/GHSA-fwg6-66g7-28f5.json index 08656c853e0..20d74211959 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwg6-66g7-28f5/GHSA-fwg6-66g7-28f5.json +++ b/advisories/unreviewed/2022/05/GHSA-fwg6-66g7-28f5/GHSA-fwg6-66g7-28f5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwrq-r3hj-6cw4/GHSA-fwrq-r3hj-6cw4.json b/advisories/unreviewed/2022/05/GHSA-fwrq-r3hj-6cw4/GHSA-fwrq-r3hj-6cw4.json index 8bbc635e265..1737b865fa6 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwrq-r3hj-6cw4/GHSA-fwrq-r3hj-6cw4.json +++ b/advisories/unreviewed/2022/05/GHSA-fwrq-r3hj-6cw4/GHSA-fwrq-r3hj-6cw4.json @@ -7,12 +7,8 @@ "CVE-2005-3796" ], "details": "Direct static code injection vulnerability in admin_options_manage.php in AlstraSoft Affiliate Network Pro 7.2 allows attackers to execute arbitrary PHP code via the number parameter. NOTE: it is not clear from the original report whether administrator privileges are required. If not, then this does not cross privilege boundaries and is not a vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g2qp-jch9-4f53/GHSA-g2qp-jch9-4f53.json b/advisories/unreviewed/2022/05/GHSA-g2qp-jch9-4f53/GHSA-g2qp-jch9-4f53.json index aece3b20774..657b1d75921 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2qp-jch9-4f53/GHSA-g2qp-jch9-4f53.json +++ b/advisories/unreviewed/2022/05/GHSA-g2qp-jch9-4f53/GHSA-g2qp-jch9-4f53.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2r7-m24c-r8p9/GHSA-g2r7-m24c-r8p9.json b/advisories/unreviewed/2022/05/GHSA-g2r7-m24c-r8p9/GHSA-g2r7-m24c-r8p9.json index 95b76027549..d092e2bd22d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2r7-m24c-r8p9/GHSA-g2r7-m24c-r8p9.json +++ b/advisories/unreviewed/2022/05/GHSA-g2r7-m24c-r8p9/GHSA-g2r7-m24c-r8p9.json @@ -7,12 +7,8 @@ "CVE-2021-28604" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g329-m66c-j346/GHSA-g329-m66c-j346.json b/advisories/unreviewed/2022/05/GHSA-g329-m66c-j346/GHSA-g329-m66c-j346.json index 7d23ef4700d..94ec81962c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-g329-m66c-j346/GHSA-g329-m66c-j346.json +++ b/advisories/unreviewed/2022/05/GHSA-g329-m66c-j346/GHSA-g329-m66c-j346.json @@ -7,12 +7,8 @@ "CVE-2021-36076" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g35h-r364-qwcm/GHSA-g35h-r364-qwcm.json b/advisories/unreviewed/2022/05/GHSA-g35h-r364-qwcm/GHSA-g35h-r364-qwcm.json index 2f6f69fde4c..065c2526d39 100644 --- a/advisories/unreviewed/2022/05/GHSA-g35h-r364-qwcm/GHSA-g35h-r364-qwcm.json +++ b/advisories/unreviewed/2022/05/GHSA-g35h-r364-qwcm/GHSA-g35h-r364-qwcm.json @@ -7,12 +7,8 @@ "CVE-2005-3631" ], "details": "udev does not properly set permissions on certain files in /dev/input, which allows local users to obtain sensitive data that is entered at the console, such as user passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g3j9-qhmg-85jp/GHSA-g3j9-qhmg-85jp.json b/advisories/unreviewed/2022/05/GHSA-g3j9-qhmg-85jp/GHSA-g3j9-qhmg-85jp.json index 0cd485a6cb1..06b4cfd6456 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3j9-qhmg-85jp/GHSA-g3j9-qhmg-85jp.json +++ b/advisories/unreviewed/2022/05/GHSA-g3j9-qhmg-85jp/GHSA-g3j9-qhmg-85jp.json @@ -7,12 +7,8 @@ "CVE-2021-33007" ], "details": "A heap-based buffer overflow in Delta Electronics TPEditor: v1.98.06 and prior may be exploited by processing a specially crafted project file. Successful exploitation of this vulnerability may allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3r4-vfx7-4frf/GHSA-g3r4-vfx7-4frf.json b/advisories/unreviewed/2022/05/GHSA-g3r4-vfx7-4frf/GHSA-g3r4-vfx7-4frf.json index 295c9c05e9b..ccfecdda954 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3r4-vfx7-4frf/GHSA-g3r4-vfx7-4frf.json +++ b/advisories/unreviewed/2022/05/GHSA-g3r4-vfx7-4frf/GHSA-g3r4-vfx7-4frf.json @@ -7,12 +7,8 @@ "CVE-2005-3754" ], "details": "Cross-site scripting (XSS) vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to inject arbitrary Javascript, and possibly other web script or HTML, via the proxystylesheet variable, which will be executed in the resulting error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g3r6-454q-qjw9/GHSA-g3r6-454q-qjw9.json b/advisories/unreviewed/2022/05/GHSA-g3r6-454q-qjw9/GHSA-g3r6-454q-qjw9.json index a17ecba0dd2..47b470b2b55 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3r6-454q-qjw9/GHSA-g3r6-454q-qjw9.json +++ b/advisories/unreviewed/2022/05/GHSA-g3r6-454q-qjw9/GHSA-g3r6-454q-qjw9.json @@ -7,12 +7,8 @@ "CVE-2021-28618" ], "details": "Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g48p-m79m-7vjw/GHSA-g48p-m79m-7vjw.json b/advisories/unreviewed/2022/05/GHSA-g48p-m79m-7vjw/GHSA-g48p-m79m-7vjw.json index c39d7531c52..bdb3bfe2c83 100644 --- a/advisories/unreviewed/2022/05/GHSA-g48p-m79m-7vjw/GHSA-g48p-m79m-7vjw.json +++ b/advisories/unreviewed/2022/05/GHSA-g48p-m79m-7vjw/GHSA-g48p-m79m-7vjw.json @@ -7,12 +7,8 @@ "CVE-2005-3555" ], "details": "Multiple SQL injection vulnerabilities in PHPlist 2.10.1 and earlier allow authenticated remote attackers with administrator privileges to execute arbitrary SQL commands via the id parameter in the (1) editattributes or (2) admin page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g49c-8jvm-vh4f/GHSA-g49c-8jvm-vh4f.json b/advisories/unreviewed/2022/05/GHSA-g49c-8jvm-vh4f/GHSA-g49c-8jvm-vh4f.json index da9281a4782..4944e11f444 100644 --- a/advisories/unreviewed/2022/05/GHSA-g49c-8jvm-vh4f/GHSA-g49c-8jvm-vh4f.json +++ b/advisories/unreviewed/2022/05/GHSA-g49c-8jvm-vh4f/GHSA-g49c-8jvm-vh4f.json @@ -7,12 +7,8 @@ "CVE-2005-3487" ], "details": "Multiple buffer overflows in Scorched 3D 39.1 (bf) and earlier allow remote attackers to execute arbitrary code via various (1) GLConsole::addLine, (2) ServerCommon::sendString, (3) ServerCommon::serverLog functions, (4) a long command that is not properly handled in ComsMessageHandler.cpp when generating an error message, (5) a long UniqueID value in Logger.cpp, and possibly other unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g49q-2fp8-w2mg/GHSA-g49q-2fp8-w2mg.json b/advisories/unreviewed/2022/05/GHSA-g49q-2fp8-w2mg/GHSA-g49q-2fp8-w2mg.json index ffa34882dbd..2229fd34310 100644 --- a/advisories/unreviewed/2022/05/GHSA-g49q-2fp8-w2mg/GHSA-g49q-2fp8-w2mg.json +++ b/advisories/unreviewed/2022/05/GHSA-g49q-2fp8-w2mg/GHSA-g49q-2fp8-w2mg.json @@ -7,12 +7,8 @@ "CVE-2021-37794" ], "details": "A stored cross-site scripting (XSS) vulnerability exists in FileBrowser < v2.16.0 that allows an authenticated user authorized to upload a malicious .svg file which acts as a stored XSS payload. If this stored XSS payload is triggered by an administrator it will trigger malicious OS commands on the server running the FileBrowser instance.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4p6-3j4g-p8c7/GHSA-g4p6-3j4g-p8c7.json b/advisories/unreviewed/2022/05/GHSA-g4p6-3j4g-p8c7/GHSA-g4p6-3j4g-p8c7.json index 39031fd0889..0df738db04f 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4p6-3j4g-p8c7/GHSA-g4p6-3j4g-p8c7.json +++ b/advisories/unreviewed/2022/05/GHSA-g4p6-3j4g-p8c7/GHSA-g4p6-3j4g-p8c7.json @@ -7,12 +7,8 @@ "CVE-2005-3729" ], "details": "Idetix Software Systems Revize CMS allows remote attackers to obtain sensitive information via direct requests to files in the revize/debug directory, such as (1) apptables.html and (2) main.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g53j-j47f-88h7/GHSA-g53j-j47f-88h7.json b/advisories/unreviewed/2022/05/GHSA-g53j-j47f-88h7/GHSA-g53j-j47f-88h7.json index 9401259956d..780c62f4fa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-g53j-j47f-88h7/GHSA-g53j-j47f-88h7.json +++ b/advisories/unreviewed/2022/05/GHSA-g53j-j47f-88h7/GHSA-g53j-j47f-88h7.json @@ -7,12 +7,8 @@ "CVE-2005-3665" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP_HOST variable and (2) various scripts in the libraries directory that handle header generation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g6rg-9wpx-6xvm/GHSA-g6rg-9wpx-6xvm.json b/advisories/unreviewed/2022/05/GHSA-g6rg-9wpx-6xvm/GHSA-g6rg-9wpx-6xvm.json index c14f588ed1e..07c3512a5fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6rg-9wpx-6xvm/GHSA-g6rg-9wpx-6xvm.json +++ b/advisories/unreviewed/2022/05/GHSA-g6rg-9wpx-6xvm/GHSA-g6rg-9wpx-6xvm.json @@ -7,12 +7,8 @@ "CVE-2020-20490" ], "details": "A heap buffer-overflow in the client_example1.c component of libiec_iccp_mod v1.5 leads to a denial of service (DOS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g7qh-xf59-6jc7/GHSA-g7qh-xf59-6jc7.json b/advisories/unreviewed/2022/05/GHSA-g7qh-xf59-6jc7/GHSA-g7qh-xf59-6jc7.json index 46cd283a6eb..250c2e2ae82 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7qh-xf59-6jc7/GHSA-g7qh-xf59-6jc7.json +++ b/advisories/unreviewed/2022/05/GHSA-g7qh-xf59-6jc7/GHSA-g7qh-xf59-6jc7.json @@ -7,12 +7,8 @@ "CVE-2021-36692" ], "details": "libjxl v0.3.7 is affected by a Divide By Zero in issue in lib/extras/codec_apng.cc jxl::DecodeImageAPNG(). When encoding a malicous APNG file using cjxl, an attacker can trigger a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g833-8mx8-2ffm/GHSA-g833-8mx8-2ffm.json b/advisories/unreviewed/2022/05/GHSA-g833-8mx8-2ffm/GHSA-g833-8mx8-2ffm.json index 49cf0f49866..60cb0b8f724 100644 --- a/advisories/unreviewed/2022/05/GHSA-g833-8mx8-2ffm/GHSA-g833-8mx8-2ffm.json +++ b/advisories/unreviewed/2022/05/GHSA-g833-8mx8-2ffm/GHSA-g833-8mx8-2ffm.json @@ -7,12 +7,8 @@ "CVE-2005-3722" ], "details": "The SNMP v1/v2c daemon in Hitachi IP5000 VOIP WIFI Phone 1.5.6 allows remote attackers to gain read or write access to system configuration using arbitrary SNMP credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g9mc-4fcm-jrr6/GHSA-g9mc-4fcm-jrr6.json b/advisories/unreviewed/2022/05/GHSA-g9mc-4fcm-jrr6/GHSA-g9mc-4fcm-jrr6.json index d91d7fdaf71..5407529945e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9mc-4fcm-jrr6/GHSA-g9mc-4fcm-jrr6.json +++ b/advisories/unreviewed/2022/05/GHSA-g9mc-4fcm-jrr6/GHSA-g9mc-4fcm-jrr6.json @@ -7,12 +7,8 @@ "CVE-2021-34564" ], "details": "Any cookie-stealing vulnerabilities within the application or browser would enable an attacker to steal the user's credentials to the PEPPERL+FUCHS WirelessHART-Gateway 3.0.9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g9qf-23cc-mpq5/GHSA-g9qf-23cc-mpq5.json b/advisories/unreviewed/2022/05/GHSA-g9qf-23cc-mpq5/GHSA-g9qf-23cc-mpq5.json index b8bf4eaa2f2..666a9510f3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9qf-23cc-mpq5/GHSA-g9qf-23cc-mpq5.json +++ b/advisories/unreviewed/2022/05/GHSA-g9qf-23cc-mpq5/GHSA-g9qf-23cc-mpq5.json @@ -7,12 +7,8 @@ "CVE-2005-3694" ], "details": "centericq 4.20.0-r3 with \"Enable peer-to-peer communications\" set allows remote attackers to cause a denial of service (segmentation fault and crash) via short zero-length packets, and possibly packets of length 1 or 2, as demonstrated using Nessus.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gf59-j48p-85vg/GHSA-gf59-j48p-85vg.json b/advisories/unreviewed/2022/05/GHSA-gf59-j48p-85vg/GHSA-gf59-j48p-85vg.json index 3ac63365151..973201348f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf59-j48p-85vg/GHSA-gf59-j48p-85vg.json +++ b/advisories/unreviewed/2022/05/GHSA-gf59-j48p-85vg/GHSA-gf59-j48p-85vg.json @@ -7,12 +7,8 @@ "CVE-2005-3592" ], "details": "index.php CuteNews 1.4.0 and earlier allows remote attackers to obtain the path of the installation path of the application by triggering an error message, such as by entering multiple ../ (dot dot slash) in the archive parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gf86-frf5-frmh/GHSA-gf86-frf5-frmh.json b/advisories/unreviewed/2022/05/GHSA-gf86-frf5-frmh/GHSA-gf86-frf5-frmh.json index bc6419fcad9..8a41cf17c31 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf86-frf5-frmh/GHSA-gf86-frf5-frmh.json +++ b/advisories/unreviewed/2022/05/GHSA-gf86-frf5-frmh/GHSA-gf86-frf5-frmh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfjf-95mx-j4gr/GHSA-gfjf-95mx-j4gr.json b/advisories/unreviewed/2022/05/GHSA-gfjf-95mx-j4gr/GHSA-gfjf-95mx-j4gr.json index 8abf289f7b3..14dbda11cc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfjf-95mx-j4gr/GHSA-gfjf-95mx-j4gr.json +++ b/advisories/unreviewed/2022/05/GHSA-gfjf-95mx-j4gr/GHSA-gfjf-95mx-j4gr.json @@ -7,12 +7,8 @@ "CVE-2005-3887" ], "details": "Gadu-Gadu 7.20 does not properly handle MS-DOS device names in filenames, which allows remote attackers to (1) cause a denial of service (hang) via an image filename of AUX: sent twice (hang), or (2) write to the LPT1 port via a filename of \"LPT1:\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ggmg-hmvc-33cf/GHSA-ggmg-hmvc-33cf.json b/advisories/unreviewed/2022/05/GHSA-ggmg-hmvc-33cf/GHSA-ggmg-hmvc-33cf.json index 986d4185c1d..3452fd3c7a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggmg-hmvc-33cf/GHSA-ggmg-hmvc-33cf.json +++ b/advisories/unreviewed/2022/05/GHSA-ggmg-hmvc-33cf/GHSA-ggmg-hmvc-33cf.json @@ -7,12 +7,8 @@ "CVE-2021-28620" ], "details": "Adobe Animate version 21.0.6 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ggrf-7m8q-4wh6/GHSA-ggrf-7m8q-4wh6.json b/advisories/unreviewed/2022/05/GHSA-ggrf-7m8q-4wh6/GHSA-ggrf-7m8q-4wh6.json index b475bf8b5d3..2aee738810f 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggrf-7m8q-4wh6/GHSA-ggrf-7m8q-4wh6.json +++ b/advisories/unreviewed/2022/05/GHSA-ggrf-7m8q-4wh6/GHSA-ggrf-7m8q-4wh6.json @@ -7,12 +7,8 @@ "CVE-2021-28565" ], "details": "Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by an Out-of-bounds Read vulnerability in the PDFLibTool component. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghq7-5gx4-268j/GHSA-ghq7-5gx4-268j.json b/advisories/unreviewed/2022/05/GHSA-ghq7-5gx4-268j/GHSA-ghq7-5gx4-268j.json index 87e0e0c5480..364bba4b298 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghq7-5gx4-268j/GHSA-ghq7-5gx4-268j.json +++ b/advisories/unreviewed/2022/05/GHSA-ghq7-5gx4-268j/GHSA-ghq7-5gx4-268j.json @@ -7,12 +7,8 @@ "CVE-2005-3595" ], "details": "By default Microsoft Windows XP Home Edition installs with a blank password for the Administrator account, which allows remote attackers to gain control of the computer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghv2-73wj-p8mv/GHSA-ghv2-73wj-p8mv.json b/advisories/unreviewed/2022/05/GHSA-ghv2-73wj-p8mv/GHSA-ghv2-73wj-p8mv.json index c67943b47ed..c0113cbe5dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghv2-73wj-p8mv/GHSA-ghv2-73wj-p8mv.json +++ b/advisories/unreviewed/2022/05/GHSA-ghv2-73wj-p8mv/GHSA-ghv2-73wj-p8mv.json @@ -7,12 +7,8 @@ "CVE-2005-3676" ], "details": "SQL injection vulnerability in download.php in PhpWebThings 1.4.4 allows remote attackers to execute arbitrary SQL commands via the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gm55-q6p8-q8ff/GHSA-gm55-q6p8-q8ff.json b/advisories/unreviewed/2022/05/GHSA-gm55-q6p8-q8ff/GHSA-gm55-q6p8-q8ff.json index 92842ac1014..6d36d970ba9 100644 --- a/advisories/unreviewed/2022/05/GHSA-gm55-q6p8-q8ff/GHSA-gm55-q6p8-q8ff.json +++ b/advisories/unreviewed/2022/05/GHSA-gm55-q6p8-q8ff/GHSA-gm55-q6p8-q8ff.json @@ -7,12 +7,8 @@ "CVE-2005-3833" ], "details": "SQL injection vulnerability in songinfo.php in Tunez 1.21 and earlier allows remote attackers to execute arbitrary SQL commands via the song_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmj5-536v-pf37/GHSA-gmj5-536v-pf37.json b/advisories/unreviewed/2022/05/GHSA-gmj5-536v-pf37/GHSA-gmj5-536v-pf37.json index ea29965329a..c6dd5dc63b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmj5-536v-pf37/GHSA-gmj5-536v-pf37.json +++ b/advisories/unreviewed/2022/05/GHSA-gmj5-536v-pf37/GHSA-gmj5-536v-pf37.json @@ -7,12 +7,8 @@ "CVE-2005-3870" ], "details": "Multiple SQL injection vulnerabilities in edmobbs9r.php in edmoBBS 0.9 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) table and (2) messageID parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gp4w-5hgv-rrqx/GHSA-gp4w-5hgv-rrqx.json b/advisories/unreviewed/2022/05/GHSA-gp4w-5hgv-rrqx/GHSA-gp4w-5hgv-rrqx.json index a6bd180ec3a..6805ebb13cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp4w-5hgv-rrqx/GHSA-gp4w-5hgv-rrqx.json +++ b/advisories/unreviewed/2022/05/GHSA-gp4w-5hgv-rrqx/GHSA-gp4w-5hgv-rrqx.json @@ -7,12 +7,8 @@ "CVE-2005-4064" ], "details": "Multiple SQL injection vulnerabilities in A-FAQ 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) faqid parameter to faqDspItem.asp and (2) catcode parameter to faqDsp.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gp9r-8xcc-jcx5/GHSA-gp9r-8xcc-jcx5.json b/advisories/unreviewed/2022/05/GHSA-gp9r-8xcc-jcx5/GHSA-gp9r-8xcc-jcx5.json index 25109e4c3d4..8f06d9eeaaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp9r-8xcc-jcx5/GHSA-gp9r-8xcc-jcx5.json +++ b/advisories/unreviewed/2022/05/GHSA-gp9r-8xcc-jcx5/GHSA-gp9r-8xcc-jcx5.json @@ -7,12 +7,8 @@ "CVE-2005-3765" ], "details": "Exponent CMS 0.96.3 and later versions performs a chmod on uploaded files to give them execute permissions, which allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqq2-mrcr-m6rq/GHSA-gqq2-mrcr-m6rq.json b/advisories/unreviewed/2022/05/GHSA-gqq2-mrcr-m6rq/GHSA-gqq2-mrcr-m6rq.json index 53ff8ffa2a8..4844acf9185 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqq2-mrcr-m6rq/GHSA-gqq2-mrcr-m6rq.json +++ b/advisories/unreviewed/2022/05/GHSA-gqq2-mrcr-m6rq/GHSA-gqq2-mrcr-m6rq.json @@ -7,12 +7,8 @@ "CVE-2005-3426" ], "details": "Cisco CSS 11500 Content Services Switch (CSS) with SSL termination services allows remote attackers to cause a denial of service (memory corruption and device reload) via a malformed client certificate during SSL session negotiation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-grc5-g2g9-cc7h/GHSA-grc5-g2g9-cc7h.json b/advisories/unreviewed/2022/05/GHSA-grc5-g2g9-cc7h/GHSA-grc5-g2g9-cc7h.json index 1f986f5beb8..43f9d3029c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-grc5-g2g9-cc7h/GHSA-grc5-g2g9-cc7h.json +++ b/advisories/unreviewed/2022/05/GHSA-grc5-g2g9-cc7h/GHSA-grc5-g2g9-cc7h.json @@ -7,12 +7,8 @@ "CVE-2021-39243" ], "details": "Cross-Site Request Forgery (CSRF) exists on Altus Nexto, Nexto Xpress, and Hadron Xtorm devices via any CGI endpoint. This affects Nexto NX3003 1.8.11.0, Nexto NX3004 1.8.11.0, Nexto NX3005 1.8.11.0, Nexto NX3010 1.8.3.0, Nexto NX3020 1.8.3.0, Nexto NX3030 1.8.3.0, Nexto NX5100 1.8.11.0, Nexto NX5101 1.8.11.0, Nexto NX5110 1.1.2.8, Nexto NX5210 1.1.2.8, Nexto Xpress XP300 1.8.11.0, Nexto Xpress XP315 1.8.11.0, Nexto Xpress XP325 1.8.11.0, Nexto Xpress XP340 1.8.11.0, and Hadron Xtorm HX3040 1.7.58.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gvfx-9m9v-h839/GHSA-gvfx-9m9v-h839.json b/advisories/unreviewed/2022/05/GHSA-gvfx-9m9v-h839/GHSA-gvfx-9m9v-h839.json index 568d935ffa6..7b3da8566b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvfx-9m9v-h839/GHSA-gvfx-9m9v-h839.json +++ b/advisories/unreviewed/2022/05/GHSA-gvfx-9m9v-h839/GHSA-gvfx-9m9v-h839.json @@ -7,12 +7,8 @@ "CVE-2021-36025" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability while saving a customer's details with a specially crafted file. An authenticated attacker with admin privileges can leverage this vulnerability to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gvwc-32h3-8jq6/GHSA-gvwc-32h3-8jq6.json b/advisories/unreviewed/2022/05/GHSA-gvwc-32h3-8jq6/GHSA-gvwc-32h3-8jq6.json index 63d11aadbc9..c171c1f5ae4 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvwc-32h3-8jq6/GHSA-gvwc-32h3-8jq6.json +++ b/advisories/unreviewed/2022/05/GHSA-gvwc-32h3-8jq6/GHSA-gvwc-32h3-8jq6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gxq2-v4pr-j3v6/GHSA-gxq2-v4pr-j3v6.json b/advisories/unreviewed/2022/05/GHSA-gxq2-v4pr-j3v6/GHSA-gxq2-v4pr-j3v6.json index f78bd163acb..f46c7c457bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxq2-v4pr-j3v6/GHSA-gxq2-v4pr-j3v6.json +++ b/advisories/unreviewed/2022/05/GHSA-gxq2-v4pr-j3v6/GHSA-gxq2-v4pr-j3v6.json @@ -7,12 +7,8 @@ "CVE-2021-35222" ], "details": "This vulnerability allows attackers to impersonate users and perform arbitrary actions leading to a Remote Code Execution (RCE) from the Alerts Settings page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h369-p7fr-4qgj/GHSA-h369-p7fr-4qgj.json b/advisories/unreviewed/2022/05/GHSA-h369-p7fr-4qgj/GHSA-h369-p7fr-4qgj.json index 1abb76993c1..498a8490074 100644 --- a/advisories/unreviewed/2022/05/GHSA-h369-p7fr-4qgj/GHSA-h369-p7fr-4qgj.json +++ b/advisories/unreviewed/2022/05/GHSA-h369-p7fr-4qgj/GHSA-h369-p7fr-4qgj.json @@ -7,12 +7,8 @@ "CVE-2021-32955" ], "details": "Delta Electronics DIAEnergie Version 1.7.5 and prior allows unrestricted file uploads, which may allow an attacker to remotely execute code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h3rx-xhvf-jfqc/GHSA-h3rx-xhvf-jfqc.json b/advisories/unreviewed/2022/05/GHSA-h3rx-xhvf-jfqc/GHSA-h3rx-xhvf-jfqc.json index 809b684acbe..3ec0ea69d06 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3rx-xhvf-jfqc/GHSA-h3rx-xhvf-jfqc.json +++ b/advisories/unreviewed/2022/05/GHSA-h3rx-xhvf-jfqc/GHSA-h3rx-xhvf-jfqc.json @@ -7,12 +7,8 @@ "CVE-2005-3644" ], "details": "PNP_GetDeviceList (upnp_getdevicelist) in UPnP for Microsoft Windows 2000 SP4 and earlier, and possibly Windows XP SP1 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a DCE RPC request that specifies a large output buffer size, a variant of CVE-2006-6296, and a different vulnerability than CVE-2005-2120.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h4cp-xwqq-m567/GHSA-h4cp-xwqq-m567.json b/advisories/unreviewed/2022/05/GHSA-h4cp-xwqq-m567/GHSA-h4cp-xwqq-m567.json index d989c0af3f7..bc764f78969 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4cp-xwqq-m567/GHSA-h4cp-xwqq-m567.json +++ b/advisories/unreviewed/2022/05/GHSA-h4cp-xwqq-m567/GHSA-h4cp-xwqq-m567.json @@ -7,12 +7,8 @@ "CVE-2021-28627" ], "details": "Adobe Experience Manager Cloud Service offering, as well as versions 6.5.8.0 (and below) is affected by a Server-side Request Forgery. An authenticated attacker could leverage this vulnerability to contact systems blocked by the dispatcher. Exploitation of this issue does not require user interaction.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h59q-pcqf-7vwp/GHSA-h59q-pcqf-7vwp.json b/advisories/unreviewed/2022/05/GHSA-h59q-pcqf-7vwp/GHSA-h59q-pcqf-7vwp.json index 70f7a940aa0..474a0f02d7d 100644 --- a/advisories/unreviewed/2022/05/GHSA-h59q-pcqf-7vwp/GHSA-h59q-pcqf-7vwp.json +++ b/advisories/unreviewed/2022/05/GHSA-h59q-pcqf-7vwp/GHSA-h59q-pcqf-7vwp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5f6-7m57-f2rg/GHSA-h5f6-7m57-f2rg.json b/advisories/unreviewed/2022/05/GHSA-h5f6-7m57-f2rg/GHSA-h5f6-7m57-f2rg.json index 9651cff10b6..4941d8ce53c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5f6-7m57-f2rg/GHSA-h5f6-7m57-f2rg.json +++ b/advisories/unreviewed/2022/05/GHSA-h5f6-7m57-f2rg/GHSA-h5f6-7m57-f2rg.json @@ -7,12 +7,8 @@ "CVE-2021-33191" ], "details": "From Apache NiFi MiNiFi C++ version 0.5.0 the c2 protocol implements an \"agent-update\" command which was designed to patch the application binary. This \"patching\" command defaults to calling a trusted binary, but might be modified to an arbitrary value through a \"c2-update\" command. Said command is then executed using the same privileges as the application binary. This was addressed in version 0.10.0", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5rh-7qwh-8hfq/GHSA-h5rh-7qwh-8hfq.json b/advisories/unreviewed/2022/05/GHSA-h5rh-7qwh-8hfq/GHSA-h5rh-7qwh-8hfq.json index 3033caf5271..a714c468c40 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5rh-7qwh-8hfq/GHSA-h5rh-7qwh-8hfq.json +++ b/advisories/unreviewed/2022/05/GHSA-h5rh-7qwh-8hfq/GHSA-h5rh-7qwh-8hfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h63m-mgpj-78c4/GHSA-h63m-mgpj-78c4.json b/advisories/unreviewed/2022/05/GHSA-h63m-mgpj-78c4/GHSA-h63m-mgpj-78c4.json index c11ea2db468..cb91a92586f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h63m-mgpj-78c4/GHSA-h63m-mgpj-78c4.json +++ b/advisories/unreviewed/2022/05/GHSA-h63m-mgpj-78c4/GHSA-h63m-mgpj-78c4.json @@ -7,12 +7,8 @@ "CVE-2005-3843" ], "details": "SQL injection vulnerability in faq.php in Nicecoder iDesk 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h67w-cq63-4c2j/GHSA-h67w-cq63-4c2j.json b/advisories/unreviewed/2022/05/GHSA-h67w-cq63-4c2j/GHSA-h67w-cq63-4c2j.json index 68f4a421f64..16e828d515b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h67w-cq63-4c2j/GHSA-h67w-cq63-4c2j.json +++ b/advisories/unreviewed/2022/05/GHSA-h67w-cq63-4c2j/GHSA-h67w-cq63-4c2j.json @@ -7,12 +7,8 @@ "CVE-2005-3528" ], "details": "Cross-site scripting (XSS) vulnerability in tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to inject arbitrary web script or HTML via the topics_offset parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h6c2-g6q9-7g8w/GHSA-h6c2-g6q9-7g8w.json b/advisories/unreviewed/2022/05/GHSA-h6c2-g6q9-7g8w/GHSA-h6c2-g6q9-7g8w.json index 9eb6bce03c2..79be251c2a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-h6c2-g6q9-7g8w/GHSA-h6c2-g6q9-7g8w.json +++ b/advisories/unreviewed/2022/05/GHSA-h6c2-g6q9-7g8w/GHSA-h6c2-g6q9-7g8w.json @@ -7,12 +7,8 @@ "CVE-2005-3618" ], "details": "Cross-site request forgery (CSRF) vulnerability in the management interface for VMware ESX Server 2.0.x before 2.0.2 patch 1, 2.1.x before 2.1.3 patch 1, and 2.x before 2.5.3 patch 2 allows allows remote attackers to perform unauthorized actions as the administrator via URLs, as demonstrated using the setUsr operation to change a password. NOTE: this issue can be leveraged with CVE-2005-3619 to automatically perform the attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h78g-pf2r-r9cc/GHSA-h78g-pf2r-r9cc.json b/advisories/unreviewed/2022/05/GHSA-h78g-pf2r-r9cc/GHSA-h78g-pf2r-r9cc.json index d3addc95c72..81866c8a3ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-h78g-pf2r-r9cc/GHSA-h78g-pf2r-r9cc.json +++ b/advisories/unreviewed/2022/05/GHSA-h78g-pf2r-r9cc/GHSA-h78g-pf2r-r9cc.json @@ -7,12 +7,8 @@ "CVE-2021-37749" ], "details": "MapService.svc in Hexagon GeoMedia WebMap 2020 before Update 2 (aka 16.6.2.66) allows blind SQL Injection via the Id (within sourceItems) parameter to the GetMap method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h87p-2564-rmc9/GHSA-h87p-2564-rmc9.json b/advisories/unreviewed/2022/05/GHSA-h87p-2564-rmc9/GHSA-h87p-2564-rmc9.json index e7d2ddd5880..a9fcc910c63 100644 --- a/advisories/unreviewed/2022/05/GHSA-h87p-2564-rmc9/GHSA-h87p-2564-rmc9.json +++ b/advisories/unreviewed/2022/05/GHSA-h87p-2564-rmc9/GHSA-h87p-2564-rmc9.json @@ -7,12 +7,8 @@ "CVE-2021-36018" ], "details": "Adobe After Effects version 18.2.1 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8hp-6jrg-95r7/GHSA-h8hp-6jrg-95r7.json b/advisories/unreviewed/2022/05/GHSA-h8hp-6jrg-95r7/GHSA-h8hp-6jrg-95r7.json index dda9402b682..3e22b1ab980 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8hp-6jrg-95r7/GHSA-h8hp-6jrg-95r7.json +++ b/advisories/unreviewed/2022/05/GHSA-h8hp-6jrg-95r7/GHSA-h8hp-6jrg-95r7.json @@ -7,12 +7,8 @@ "CVE-2005-4047" ], "details": "Cross-site scripting (XSS) vulnerability in kb.asp in IISWorks ASPKnowledgeBase 2.0 allows remote attackers to inject arbitrary web script or HTML via the a parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9fx-3cjj-85gc/GHSA-h9fx-3cjj-85gc.json b/advisories/unreviewed/2022/05/GHSA-h9fx-3cjj-85gc/GHSA-h9fx-3cjj-85gc.json index 4e1296f9b74..c7fca47891b 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9fx-3cjj-85gc/GHSA-h9fx-3cjj-85gc.json +++ b/advisories/unreviewed/2022/05/GHSA-h9fx-3cjj-85gc/GHSA-h9fx-3cjj-85gc.json @@ -7,12 +7,8 @@ "CVE-2021-30691" ], "details": "An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted USD file may disclose memory contents.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9jc-v73g-356r/GHSA-h9jc-v73g-356r.json b/advisories/unreviewed/2022/05/GHSA-h9jc-v73g-356r/GHSA-h9jc-v73g-356r.json index 92b296e80f1..b176346a83f 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9jc-v73g-356r/GHSA-h9jc-v73g-356r.json +++ b/advisories/unreviewed/2022/05/GHSA-h9jc-v73g-356r/GHSA-h9jc-v73g-356r.json @@ -7,12 +7,8 @@ "CVE-2005-3519" ], "details": "Multiple PHP file inclusion vulnerabilities in MySource 2.14.0 allow remote attackers to execute arbitrary PHP code and include arbitrary local files via the (1) INCLUDE_PATH and (2) SQUIZLIB_PATH parameters in new_upgrade_functions.php, (3) the INCLUDE_PATH parameter in init_mysource.php, and the PEAR_PATH parameter in (4) Socket.php, (5) Request.php, (6) Mail.php, (7) Date.php, (8) Span.php, (9) mimeDecode.php, and (10) mime.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h9x2-93cg-wfh5/GHSA-h9x2-93cg-wfh5.json b/advisories/unreviewed/2022/05/GHSA-h9x2-93cg-wfh5/GHSA-h9x2-93cg-wfh5.json index 01388e2d6c6..0c5c43003f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9x2-93cg-wfh5/GHSA-h9x2-93cg-wfh5.json +++ b/advisories/unreviewed/2022/05/GHSA-h9x2-93cg-wfh5/GHSA-h9x2-93cg-wfh5.json @@ -7,12 +7,8 @@ "CVE-2005-3884" ], "details": "Multiple SQL injection vulnerabilities in the search action in Zainu 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) term and (2) start parameters to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hc72-hpp4-jrpg/GHSA-hc72-hpp4-jrpg.json b/advisories/unreviewed/2022/05/GHSA-hc72-hpp4-jrpg/GHSA-hc72-hpp4-jrpg.json index 2a90b318591..04caa6eb467 100644 --- a/advisories/unreviewed/2022/05/GHSA-hc72-hpp4-jrpg/GHSA-hc72-hpp4-jrpg.json +++ b/advisories/unreviewed/2022/05/GHSA-hc72-hpp4-jrpg/GHSA-hc72-hpp4-jrpg.json @@ -7,12 +7,8 @@ "CVE-2005-3579" ], "details": "ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to access arbitrary local files via the querystring.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hf3f-2785-5v5g/GHSA-hf3f-2785-5v5g.json b/advisories/unreviewed/2022/05/GHSA-hf3f-2785-5v5g/GHSA-hf3f-2785-5v5g.json index 1376cbbf010..7b94986dc2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf3f-2785-5v5g/GHSA-hf3f-2785-5v5g.json +++ b/advisories/unreviewed/2022/05/GHSA-hf3f-2785-5v5g/GHSA-hf3f-2785-5v5g.json @@ -7,12 +7,8 @@ "CVE-2005-3330" ], "details": "The _httpsrequest function in Snoopy 1.2, as used in products such as (1) MagpieRSS, (2) WordPress, (3) Ampache, and (4) Jinzora, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTPS URL to an SSL protected web page, which is not properly handled by the fetch function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf69-rp3w-rxrx/GHSA-hf69-rp3w-rxrx.json b/advisories/unreviewed/2022/05/GHSA-hf69-rp3w-rxrx/GHSA-hf69-rp3w-rxrx.json index f6908ca40e1..ba8b6b59378 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf69-rp3w-rxrx/GHSA-hf69-rp3w-rxrx.json +++ b/advisories/unreviewed/2022/05/GHSA-hf69-rp3w-rxrx/GHSA-hf69-rp3w-rxrx.json @@ -7,12 +7,8 @@ "CVE-2021-29630" ], "details": "In FreeBSD 13.0-STABLE before n246938-0729ba2f49c9, 12.2-STABLE before r370383, 11.4-STABLE before r370381, 13.0-RELEASE before p4, 12.2-RELEASE before p10, and 11.4-RELEASE before p13, the ggatec daemon does not validate the size of a response before writing it to a fixed-sized buffer allowing a malicious attacker in a privileged network position to overwrite the stack of ggatec and potentially execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hg8m-5gg6-3vv9/GHSA-hg8m-5gg6-3vv9.json b/advisories/unreviewed/2022/05/GHSA-hg8m-5gg6-3vv9/GHSA-hg8m-5gg6-3vv9.json index 3479a1d2dde..43c2859f4d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg8m-5gg6-3vv9/GHSA-hg8m-5gg6-3vv9.json +++ b/advisories/unreviewed/2022/05/GHSA-hg8m-5gg6-3vv9/GHSA-hg8m-5gg6-3vv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hh95-3g32-2682/GHSA-hh95-3g32-2682.json b/advisories/unreviewed/2022/05/GHSA-hh95-3g32-2682/GHSA-hh95-3g32-2682.json index b9c3748619a..d79b74b19d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hh95-3g32-2682/GHSA-hh95-3g32-2682.json +++ b/advisories/unreviewed/2022/05/GHSA-hh95-3g32-2682/GHSA-hh95-3g32-2682.json @@ -7,12 +7,8 @@ "CVE-2005-3407" ], "details": "SQL injection vulnerability in phpESP 1.7.5 and earlier allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hjhx-fhj9-6g3j/GHSA-hjhx-fhj9-6g3j.json b/advisories/unreviewed/2022/05/GHSA-hjhx-fhj9-6g3j/GHSA-hjhx-fhj9-6g3j.json index badfabc087d..667731aac56 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjhx-fhj9-6g3j/GHSA-hjhx-fhj9-6g3j.json +++ b/advisories/unreviewed/2022/05/GHSA-hjhx-fhj9-6g3j/GHSA-hjhx-fhj9-6g3j.json @@ -7,12 +7,8 @@ "CVE-2021-38612" ], "details": "In NASCENT RemKon Device Manager 4.0.0.0, a Directory Traversal vulnerability in a log-reading function in maintenance/readLog.php allows an attacker to read any file via a specialized URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hm3x-hgjq-8752/GHSA-hm3x-hgjq-8752.json b/advisories/unreviewed/2022/05/GHSA-hm3x-hgjq-8752/GHSA-hm3x-hgjq-8752.json index 09730fd9ed8..44caa62becc 100644 --- a/advisories/unreviewed/2022/05/GHSA-hm3x-hgjq-8752/GHSA-hm3x-hgjq-8752.json +++ b/advisories/unreviewed/2022/05/GHSA-hm3x-hgjq-8752/GHSA-hm3x-hgjq-8752.json @@ -7,12 +7,8 @@ "CVE-2005-3423" ], "details": "Multiple SQL injection vulnerabilities in Subdreamer 2.2.1 allow remote attackers to execute arbitrary SQL commands via (1) the loginusername parameter or (2) cookies to (a) subdreamer.php, (b) ipb2.php, (c) phpbb2.php, (d) vbulletin2.php, and (e) vbulletin3.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hmfg-9r4f-mgph/GHSA-hmfg-9r4f-mgph.json b/advisories/unreviewed/2022/05/GHSA-hmfg-9r4f-mgph/GHSA-hmfg-9r4f-mgph.json index f3512aa851e..cfb1cefb870 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmfg-9r4f-mgph/GHSA-hmfg-9r4f-mgph.json +++ b/advisories/unreviewed/2022/05/GHSA-hmfg-9r4f-mgph/GHSA-hmfg-9r4f-mgph.json @@ -7,12 +7,8 @@ "CVE-2005-3551" ], "details": "toendaCMS before 0.6.2 stores user account and session data in the web root directory, which allows remote attackers to obtain sensitive information via a direct request to the appropriate XML file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hmr8-7xqm-cw28/GHSA-hmr8-7xqm-cw28.json b/advisories/unreviewed/2022/05/GHSA-hmr8-7xqm-cw28/GHSA-hmr8-7xqm-cw28.json index 11327798000..ab88ba35957 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmr8-7xqm-cw28/GHSA-hmr8-7xqm-cw28.json +++ b/advisories/unreviewed/2022/05/GHSA-hmr8-7xqm-cw28/GHSA-hmr8-7xqm-cw28.json @@ -7,12 +7,8 @@ "CVE-2005-3504" ], "details": "Buffer overflow in swcons in IBM AIX 5.2, when debug malloc is enabled, allows remote attackers to cause a core dump and possibly execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hp67-m836-6fg4/GHSA-hp67-m836-6fg4.json b/advisories/unreviewed/2022/05/GHSA-hp67-m836-6fg4/GHSA-hp67-m836-6fg4.json index d24d490a46d..200c198d265 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp67-m836-6fg4/GHSA-hp67-m836-6fg4.json +++ b/advisories/unreviewed/2022/05/GHSA-hp67-m836-6fg4/GHSA-hp67-m836-6fg4.json @@ -7,12 +7,8 @@ "CVE-2021-36235" ], "details": "An issue was discovered in Ivanti Workspace Control before 10.6.30.0. A locally authenticated user with low privileges can bypass File and Folder Security by leveraging an unspecified attack vector. As a result, the attacker can start applications with elevated privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hpcm-8c4f-v6x2/GHSA-hpcm-8c4f-v6x2.json b/advisories/unreviewed/2022/05/GHSA-hpcm-8c4f-v6x2/GHSA-hpcm-8c4f-v6x2.json index 5a16d2b74e0..e1cb6d9c7fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpcm-8c4f-v6x2/GHSA-hpcm-8c4f-v6x2.json +++ b/advisories/unreviewed/2022/05/GHSA-hpcm-8c4f-v6x2/GHSA-hpcm-8c4f-v6x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hprw-5fj5-p822/GHSA-hprw-5fj5-p822.json b/advisories/unreviewed/2022/05/GHSA-hprw-5fj5-p822/GHSA-hprw-5fj5-p822.json index b19f4ce5b39..922dbc841c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-hprw-5fj5-p822/GHSA-hprw-5fj5-p822.json +++ b/advisories/unreviewed/2022/05/GHSA-hprw-5fj5-p822/GHSA-hprw-5fj5-p822.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hq4j-6h2x-588w/GHSA-hq4j-6h2x-588w.json b/advisories/unreviewed/2022/05/GHSA-hq4j-6h2x-588w/GHSA-hq4j-6h2x-588w.json index f0390fa8088..13b6348f5f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq4j-6h2x-588w/GHSA-hq4j-6h2x-588w.json +++ b/advisories/unreviewed/2022/05/GHSA-hq4j-6h2x-588w/GHSA-hq4j-6h2x-588w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hq7v-p46h-m9v4/GHSA-hq7v-p46h-m9v4.json b/advisories/unreviewed/2022/05/GHSA-hq7v-p46h-m9v4/GHSA-hq7v-p46h-m9v4.json index 14352f3cf3d..5e228fbf4b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq7v-p46h-m9v4/GHSA-hq7v-p46h-m9v4.json +++ b/advisories/unreviewed/2022/05/GHSA-hq7v-p46h-m9v4/GHSA-hq7v-p46h-m9v4.json @@ -7,12 +7,8 @@ "CVE-2021-36074" ], "details": "Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hqj8-wx98-xwwp/GHSA-hqj8-wx98-xwwp.json b/advisories/unreviewed/2022/05/GHSA-hqj8-wx98-xwwp/GHSA-hqj8-wx98-xwwp.json index f433630e072..471ae782054 100644 --- a/advisories/unreviewed/2022/05/GHSA-hqj8-wx98-xwwp/GHSA-hqj8-wx98-xwwp.json +++ b/advisories/unreviewed/2022/05/GHSA-hqj8-wx98-xwwp/GHSA-hqj8-wx98-xwwp.json @@ -7,12 +7,8 @@ "CVE-2005-3473" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog 0.4.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) entry, (2) blog_subject, and (3) blog_text parameters (involving the temp_subject variable) in (a) preview_cgi.php and (b) preview_static_cgi.php, or (4) scheme_name parameter and (5) bg_color parameters (involving the preset_name and result variables) in (c) colors.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrg5-42vf-ff29/GHSA-hrg5-42vf-ff29.json b/advisories/unreviewed/2022/05/GHSA-hrg5-42vf-ff29/GHSA-hrg5-42vf-ff29.json index 480b2741f1c..a49e089f5d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrg5-42vf-ff29/GHSA-hrg5-42vf-ff29.json +++ b/advisories/unreviewed/2022/05/GHSA-hrg5-42vf-ff29/GHSA-hrg5-42vf-ff29.json @@ -7,12 +7,8 @@ "CVE-2005-3735" ], "details": "Multiple SQL injection vulnerabilities in e-Quick Cart allow remote attackers to execute arbitrary SQL commands via the (1) productid parameter in shopaddtocart.asp, (2) strpemail parameter in shopprojectlogin.asp, and (3) id parameter in shoptellafriend.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hrg9-gjmr-3p7w/GHSA-hrg9-gjmr-3p7w.json b/advisories/unreviewed/2022/05/GHSA-hrg9-gjmr-3p7w/GHSA-hrg9-gjmr-3p7w.json index 80e19f92fab..7c1aa02a45e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrg9-gjmr-3p7w/GHSA-hrg9-gjmr-3p7w.json +++ b/advisories/unreviewed/2022/05/GHSA-hrg9-gjmr-3p7w/GHSA-hrg9-gjmr-3p7w.json @@ -7,12 +7,8 @@ "CVE-2020-19048" ], "details": "Cross Site Scripting (XSS) in MyBB v1.8.20 allows remote attackers to inject arbitrary web script or HTML via the \"Title\" field found in the \"Add New Forum\" page by doing an authenticated POST HTTP request to '/Upload/admin/index.php?module=forum-management&action=add'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwvf-qhh6-j4mp/GHSA-hwvf-qhh6-j4mp.json b/advisories/unreviewed/2022/05/GHSA-hwvf-qhh6-j4mp/GHSA-hwvf-qhh6-j4mp.json index 70f789c5bae..4e0093cd23b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwvf-qhh6-j4mp/GHSA-hwvf-qhh6-j4mp.json +++ b/advisories/unreviewed/2022/05/GHSA-hwvf-qhh6-j4mp/GHSA-hwvf-qhh6-j4mp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hx46-mvw3-hqhx/GHSA-hx46-mvw3-hqhx.json b/advisories/unreviewed/2022/05/GHSA-hx46-mvw3-hqhx/GHSA-hx46-mvw3-hqhx.json index a55e8568dc5..7a1920c36bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx46-mvw3-hqhx/GHSA-hx46-mvw3-hqhx.json +++ b/advisories/unreviewed/2022/05/GHSA-hx46-mvw3-hqhx/GHSA-hx46-mvw3-hqhx.json @@ -7,12 +7,8 @@ "CVE-2005-3746" ], "details": "SQL injection vulnerability in thread.php in APBoard allows remote attackers to execute arbitrary SQL commands via the start parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hx4r-m26r-5j7p/GHSA-hx4r-m26r-5j7p.json b/advisories/unreviewed/2022/05/GHSA-hx4r-m26r-5j7p/GHSA-hx4r-m26r-5j7p.json index 6608e4fefc4..5543bc3ae0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hx4r-m26r-5j7p/GHSA-hx4r-m26r-5j7p.json +++ b/advisories/unreviewed/2022/05/GHSA-hx4r-m26r-5j7p/GHSA-hx4r-m26r-5j7p.json @@ -7,12 +7,8 @@ "CVE-2005-3899" ], "details": "The automatic update feature in Google Talk allows remote attackers to cause a denial of service (CPU and memory consumption) by poisoning a target's DNS cache and causing a large update file to be sent, which consumes large amounts of CPU and memory during the signature verification, aka BenjiBug.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j2cp-gw4q-c3gq/GHSA-j2cp-gw4q-c3gq.json b/advisories/unreviewed/2022/05/GHSA-j2cp-gw4q-c3gq/GHSA-j2cp-gw4q-c3gq.json index 5a349f08c57..a78e9313209 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2cp-gw4q-c3gq/GHSA-j2cp-gw4q-c3gq.json +++ b/advisories/unreviewed/2022/05/GHSA-j2cp-gw4q-c3gq/GHSA-j2cp-gw4q-c3gq.json @@ -7,12 +7,8 @@ "CVE-2021-20808" ], "details": "Cross-site scripting vulnerability in Search screen of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series), Movable Type 6.8.0 and earlier (Movable Type 6 Series), Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series), Movable Type Premium 1.44 and earlier, and Movable Type Premium Advanced 1.44 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j353-ch9g-8fq5/GHSA-j353-ch9g-8fq5.json b/advisories/unreviewed/2022/05/GHSA-j353-ch9g-8fq5/GHSA-j353-ch9g-8fq5.json index 4cb5cbea7c0..049d4f2264a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j353-ch9g-8fq5/GHSA-j353-ch9g-8fq5.json +++ b/advisories/unreviewed/2022/05/GHSA-j353-ch9g-8fq5/GHSA-j353-ch9g-8fq5.json @@ -7,12 +7,8 @@ "CVE-2005-3440" ], "details": "Unspecified vulnerability in Database Scheduler in Oracle Database Server 10g up to 10.1.0.3 has unknown impact and attack vectors, aka Oracle Vuln# DB08.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j46h-qjjv-cxfj/GHSA-j46h-qjjv-cxfj.json b/advisories/unreviewed/2022/05/GHSA-j46h-qjjv-cxfj/GHSA-j46h-qjjv-cxfj.json index e1d8662da72..87a25f8876e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j46h-qjjv-cxfj/GHSA-j46h-qjjv-cxfj.json +++ b/advisories/unreviewed/2022/05/GHSA-j46h-qjjv-cxfj/GHSA-j46h-qjjv-cxfj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j4rh-674v-8884/GHSA-j4rh-674v-8884.json b/advisories/unreviewed/2022/05/GHSA-j4rh-674v-8884/GHSA-j4rh-674v-8884.json index 2a216f6bb84..ddfdc59be12 100644 --- a/advisories/unreviewed/2022/05/GHSA-j4rh-674v-8884/GHSA-j4rh-674v-8884.json +++ b/advisories/unreviewed/2022/05/GHSA-j4rh-674v-8884/GHSA-j4rh-674v-8884.json @@ -7,12 +7,8 @@ "CVE-2005-3831" ], "details": "Stack-based buffer overflow in (1) CxZIP60.dll and (2) CxZIP60u.dll, as used in SpeedProject products including (a) ZipStar 5.0 Build 4285, (b) Squeez 5.0 Build 4285, and (c) SpeedCommander 11.0 Build 4430 and 10.51 Build 4430, allows user-assisted attackers to execute arbitrary code via a ZIP archive containing a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5hv-g58x-hjwf/GHSA-j5hv-g58x-hjwf.json b/advisories/unreviewed/2022/05/GHSA-j5hv-g58x-hjwf/GHSA-j5hv-g58x-hjwf.json index 5633664d0f4..e2e9bc15b54 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5hv-g58x-hjwf/GHSA-j5hv-g58x-hjwf.json +++ b/advisories/unreviewed/2022/05/GHSA-j5hv-g58x-hjwf/GHSA-j5hv-g58x-hjwf.json @@ -7,12 +7,8 @@ "CVE-2021-39376" ], "details": "Philips Healthcare Tasy Electronic Medical Record (EMR) 3.06 allows SQL injection via the CorCad_F2/executaConsultaEspecifico IE_CORPO_ASSIST or CD_USUARIO_CONVENIO parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5qc-vrmj-gjwv/GHSA-j5qc-vrmj-gjwv.json b/advisories/unreviewed/2022/05/GHSA-j5qc-vrmj-gjwv/GHSA-j5qc-vrmj-gjwv.json index 8c4be6d1cb8..bcf00659e50 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5qc-vrmj-gjwv/GHSA-j5qc-vrmj-gjwv.json +++ b/advisories/unreviewed/2022/05/GHSA-j5qc-vrmj-gjwv/GHSA-j5qc-vrmj-gjwv.json @@ -7,12 +7,8 @@ "CVE-2005-3773" ], "details": "Unspecified vulnerability in Joomla! before 1.0.4 has unknown impact and attack vectors, related to \"Potential misuse of Media component file management functions.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j64g-vj7w-8vpm/GHSA-j64g-vj7w-8vpm.json b/advisories/unreviewed/2022/05/GHSA-j64g-vj7w-8vpm/GHSA-j64g-vj7w-8vpm.json index 63f1e2b4278..b9f586f6094 100644 --- a/advisories/unreviewed/2022/05/GHSA-j64g-vj7w-8vpm/GHSA-j64g-vj7w-8vpm.json +++ b/advisories/unreviewed/2022/05/GHSA-j64g-vj7w-8vpm/GHSA-j64g-vj7w-8vpm.json @@ -7,12 +7,8 @@ "CVE-2005-3879" ], "details": "Multiple SQL injection vulnerabilities in Softbiz Resource Repository Script 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) sbres_id parameter in (a) details_res.php, (b) refer_friend.php, and (c) report_link.php, and (2) the sbcat_id parameter in (d) showcats.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j684-3j4v-3j2p/GHSA-j684-3j4v-3j2p.json b/advisories/unreviewed/2022/05/GHSA-j684-3j4v-3j2p/GHSA-j684-3j4v-3j2p.json index 7268b102957..71185a5027c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j684-3j4v-3j2p/GHSA-j684-3j4v-3j2p.json +++ b/advisories/unreviewed/2022/05/GHSA-j684-3j4v-3j2p/GHSA-j684-3j4v-3j2p.json @@ -7,12 +7,8 @@ "CVE-2005-3889" ], "details": "Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code of 6 or 7, which triggers a large number of popup windows to the user and creates a large number of threads.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6cm-xq5x-cjv3/GHSA-j6cm-xq5x-cjv3.json b/advisories/unreviewed/2022/05/GHSA-j6cm-xq5x-cjv3/GHSA-j6cm-xq5x-cjv3.json index 232148f00b6..c55c02bc31b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6cm-xq5x-cjv3/GHSA-j6cm-xq5x-cjv3.json +++ b/advisories/unreviewed/2022/05/GHSA-j6cm-xq5x-cjv3/GHSA-j6cm-xq5x-cjv3.json @@ -7,12 +7,8 @@ "CVE-2005-3781" ], "details": "Unspecified vulnerability in in.named in Solaris 9 allows attackers to cause a denial of service via unknown manipulations that cause in.named to \"make unnecessary queries.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j6gj-p9mw-9wgg/GHSA-j6gj-p9mw-9wgg.json b/advisories/unreviewed/2022/05/GHSA-j6gj-p9mw-9wgg/GHSA-j6gj-p9mw-9wgg.json index cdd824ae8ce..f6192f14a49 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6gj-p9mw-9wgg/GHSA-j6gj-p9mw-9wgg.json +++ b/advisories/unreviewed/2022/05/GHSA-j6gj-p9mw-9wgg/GHSA-j6gj-p9mw-9wgg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j78q-39hg-fjq9/GHSA-j78q-39hg-fjq9.json b/advisories/unreviewed/2022/05/GHSA-j78q-39hg-fjq9/GHSA-j78q-39hg-fjq9.json index 1ab5780c1f3..b034d87bc9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j78q-39hg-fjq9/GHSA-j78q-39hg-fjq9.json +++ b/advisories/unreviewed/2022/05/GHSA-j78q-39hg-fjq9/GHSA-j78q-39hg-fjq9.json @@ -7,12 +7,8 @@ "CVE-2005-3726" ], "details": "SQL injection vulnerability in Interspire ArticleLive NX 0.3 allows remote attackers to execute arbitrary SQL commands via the Query parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j795-f6h7-fcw8/GHSA-j795-f6h7-fcw8.json b/advisories/unreviewed/2022/05/GHSA-j795-f6h7-fcw8/GHSA-j795-f6h7-fcw8.json index f32d54f680f..43a1cba27ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-j795-f6h7-fcw8/GHSA-j795-f6h7-fcw8.json +++ b/advisories/unreviewed/2022/05/GHSA-j795-f6h7-fcw8/GHSA-j795-f6h7-fcw8.json @@ -7,12 +7,8 @@ "CVE-2005-3492" ], "details": "FlatFrag 0.3 and earlier allows remote attackers to cause a denial of service (crash) by sending an NT_CONN_OK command from a client that is not connected, which triggers a null dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j79c-q5mh-cfrh/GHSA-j79c-q5mh-cfrh.json b/advisories/unreviewed/2022/05/GHSA-j79c-q5mh-cfrh/GHSA-j79c-q5mh-cfrh.json index 80b7fd308a2..564f2d9496c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j79c-q5mh-cfrh/GHSA-j79c-q5mh-cfrh.json +++ b/advisories/unreviewed/2022/05/GHSA-j79c-q5mh-cfrh/GHSA-j79c-q5mh-cfrh.json @@ -7,12 +7,8 @@ "CVE-2021-35342" ], "details": "The useradm service 1.14.0 (in Northern.tech Mender Enterprise 2.7.x before 2.7.1) and 1.13.0 (in Northern.tech Mender Enterprise 2.6.x before 2.6.1) allows users to access the system with their JWT token after logout, because of missing invalidation (if the JWT verification cache is enabled).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j7rr-8pg2-rg92/GHSA-j7rr-8pg2-rg92.json b/advisories/unreviewed/2022/05/GHSA-j7rr-8pg2-rg92/GHSA-j7rr-8pg2-rg92.json index 774151a2d38..ac3952fcfa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-j7rr-8pg2-rg92/GHSA-j7rr-8pg2-rg92.json +++ b/advisories/unreviewed/2022/05/GHSA-j7rr-8pg2-rg92/GHSA-j7rr-8pg2-rg92.json @@ -7,12 +7,8 @@ "CVE-2005-3674" ], "details": "The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Sun Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked crash) via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j82q-mm7f-vxwx/GHSA-j82q-mm7f-vxwx.json b/advisories/unreviewed/2022/05/GHSA-j82q-mm7f-vxwx/GHSA-j82q-mm7f-vxwx.json index 794a9fae78c..9c0e831c67a 100644 --- a/advisories/unreviewed/2022/05/GHSA-j82q-mm7f-vxwx/GHSA-j82q-mm7f-vxwx.json +++ b/advisories/unreviewed/2022/05/GHSA-j82q-mm7f-vxwx/GHSA-j82q-mm7f-vxwx.json @@ -7,12 +7,8 @@ "CVE-2005-3427" ], "details": "The Cisco Management Center (MC) for IPS Sensors (IPS MC) 2.1 can omit port field values while generating the Cisco IOS IPS configuration file, wich can cause some signatures to be disabled and makes it easier for attackers to escape detection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8px-qjm3-fx72/GHSA-j8px-qjm3-fx72.json b/advisories/unreviewed/2022/05/GHSA-j8px-qjm3-fx72/GHSA-j8px-qjm3-fx72.json index c5f73a04c7e..026a654c822 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8px-qjm3-fx72/GHSA-j8px-qjm3-fx72.json +++ b/advisories/unreviewed/2022/05/GHSA-j8px-qjm3-fx72/GHSA-j8px-qjm3-fx72.json @@ -7,12 +7,8 @@ "CVE-2021-36370" ], "details": "An issue was discovered in Midnight Commander through 4.8.26. When establishing an SFTP connection, the fingerprint of the server is neither checked nor displayed. As a result, a user connects to the server without the ability to verify its authenticity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j934-v699-c5q8/GHSA-j934-v699-c5q8.json b/advisories/unreviewed/2022/05/GHSA-j934-v699-c5q8/GHSA-j934-v699-c5q8.json index 6f28a4f0629..1d04ea5aba0 100644 --- a/advisories/unreviewed/2022/05/GHSA-j934-v699-c5q8/GHSA-j934-v699-c5q8.json +++ b/advisories/unreviewed/2022/05/GHSA-j934-v699-c5q8/GHSA-j934-v699-c5q8.json @@ -7,12 +7,8 @@ "CVE-2021-30683" ], "details": "A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave. A malicious application could execute arbitrary code leading to compromise of user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j93r-f7jq-5793/GHSA-j93r-f7jq-5793.json b/advisories/unreviewed/2022/05/GHSA-j93r-f7jq-5793/GHSA-j93r-f7jq-5793.json index 237f45f7044..162e3b17f08 100644 --- a/advisories/unreviewed/2022/05/GHSA-j93r-f7jq-5793/GHSA-j93r-f7jq-5793.json +++ b/advisories/unreviewed/2022/05/GHSA-j93r-f7jq-5793/GHSA-j93r-f7jq-5793.json @@ -7,12 +7,8 @@ "CVE-2021-28606" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j986-v7h3-7q9r/GHSA-j986-v7h3-7q9r.json b/advisories/unreviewed/2022/05/GHSA-j986-v7h3-7q9r/GHSA-j986-v7h3-7q9r.json index 4ff0def79b8..4d14c43dcc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-j986-v7h3-7q9r/GHSA-j986-v7h3-7q9r.json +++ b/advisories/unreviewed/2022/05/GHSA-j986-v7h3-7q9r/GHSA-j986-v7h3-7q9r.json @@ -7,12 +7,8 @@ "CVE-2005-3425" ], "details": "Cross-site scripting (XSS) vulnerability in GNUMP3D before 2.9.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2005-3424.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9hg-mq8j-8cvg/GHSA-j9hg-mq8j-8cvg.json b/advisories/unreviewed/2022/05/GHSA-j9hg-mq8j-8cvg/GHSA-j9hg-mq8j-8cvg.json index 773059080ff..0646347326d 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9hg-mq8j-8cvg/GHSA-j9hg-mq8j-8cvg.json +++ b/advisories/unreviewed/2022/05/GHSA-j9hg-mq8j-8cvg/GHSA-j9hg-mq8j-8cvg.json @@ -7,12 +7,8 @@ "CVE-2021-20810" ], "details": "Cross-site scripting vulnerability in Website Management screen of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series), Movable Type 6.8.0 and earlier (Movable Type 6 Series), Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series), Movable Type Premium 1.44 and earlier, and Movable Type Premium Advanced 1.44 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jc86-5gcp-4hv4/GHSA-jc86-5gcp-4hv4.json b/advisories/unreviewed/2022/05/GHSA-jc86-5gcp-4hv4/GHSA-jc86-5gcp-4hv4.json index 8a8b619fbf8..a4683c3497c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jc86-5gcp-4hv4/GHSA-jc86-5gcp-4hv4.json +++ b/advisories/unreviewed/2022/05/GHSA-jc86-5gcp-4hv4/GHSA-jc86-5gcp-4hv4.json @@ -7,12 +7,8 @@ "CVE-2005-3762" ], "details": "SQL injection vulnerability in the navigation module (navigationmodule) in Exponent CMS 0.96.3 and later versions allows remote attackers to execute arbitrary SQL commands via the parent parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jfjq-8hph-jc4g/GHSA-jfjq-8hph-jc4g.json b/advisories/unreviewed/2022/05/GHSA-jfjq-8hph-jc4g/GHSA-jfjq-8hph-jc4g.json index 068ebd62584..43595a75943 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfjq-8hph-jc4g/GHSA-jfjq-8hph-jc4g.json +++ b/advisories/unreviewed/2022/05/GHSA-jfjq-8hph-jc4g/GHSA-jfjq-8hph-jc4g.json @@ -7,12 +7,8 @@ "CVE-2005-3580" ], "details": "QDBM before 1.8.33-r2 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jh73-c7v7-m9wf/GHSA-jh73-c7v7-m9wf.json b/advisories/unreviewed/2022/05/GHSA-jh73-c7v7-m9wf/GHSA-jh73-c7v7-m9wf.json index 0b339903275..b2954ec6973 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh73-c7v7-m9wf/GHSA-jh73-c7v7-m9wf.json +++ b/advisories/unreviewed/2022/05/GHSA-jh73-c7v7-m9wf/GHSA-jh73-c7v7-m9wf.json @@ -7,12 +7,8 @@ "CVE-2021-20793" ], "details": "Untrusted search path vulnerability in the installer of Sony Audio USB Driver V1.10 and prior and the installer of HAP Music Transfer Ver.1.3.0 and prior allows an attacker to gain privileges and execute arbitrary code via a Trojan horse DLL in an unspecified directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh9r-c248-cvw6/GHSA-jh9r-c248-cvw6.json b/advisories/unreviewed/2022/05/GHSA-jh9r-c248-cvw6/GHSA-jh9r-c248-cvw6.json index 83d35586706..97e659cc67b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh9r-c248-cvw6/GHSA-jh9r-c248-cvw6.json +++ b/advisories/unreviewed/2022/05/GHSA-jh9r-c248-cvw6/GHSA-jh9r-c248-cvw6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jhj4-7hpf-cgpg/GHSA-jhj4-7hpf-cgpg.json b/advisories/unreviewed/2022/05/GHSA-jhj4-7hpf-cgpg/GHSA-jhj4-7hpf-cgpg.json index 8d3f4854142..de4dfeec3f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhj4-7hpf-cgpg/GHSA-jhj4-7hpf-cgpg.json +++ b/advisories/unreviewed/2022/05/GHSA-jhj4-7hpf-cgpg/GHSA-jhj4-7hpf-cgpg.json @@ -7,12 +7,8 @@ "CVE-2005-3758" ], "details": "Cross-site scripting (XSS) vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote attackers to inject arbitrary Javascript, and possibly other web script or HTML, via a proxystylesheet variable that contains a malicious XSLT style sheet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jhwq-8hmr-8f6m/GHSA-jhwq-8hmr-8f6m.json b/advisories/unreviewed/2022/05/GHSA-jhwq-8hmr-8f6m/GHSA-jhwq-8hmr-8f6m.json index cec8e35714e..1e5331a574d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhwq-8hmr-8f6m/GHSA-jhwq-8hmr-8f6m.json +++ b/advisories/unreviewed/2022/05/GHSA-jhwq-8hmr-8f6m/GHSA-jhwq-8hmr-8f6m.json @@ -7,12 +7,8 @@ "CVE-2005-3537" ], "details": "A \"missing request validation\" error in phpBB 2 before 2.0.18 allows remote attackers to edit private messages of other users, probably by modifying certain parameters or other inputs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjm9-57rf-q43p/GHSA-jjm9-57rf-q43p.json b/advisories/unreviewed/2022/05/GHSA-jjm9-57rf-q43p/GHSA-jjm9-57rf-q43p.json index 00fd79263a3..0e702b80b83 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjm9-57rf-q43p/GHSA-jjm9-57rf-q43p.json +++ b/advisories/unreviewed/2022/05/GHSA-jjm9-57rf-q43p/GHSA-jjm9-57rf-q43p.json @@ -7,12 +7,8 @@ "CVE-2005-4046" ], "details": "Unspecified vulnerability in Reverse SSL Proxy Plug-in for Sun Java System Application Server Standard Edition 7 2004Q2, Application Server Enterprise Edition 8.1 2005Q1, and Sun ONE Application Server 7 Standard Edition, as used in multiple web servers, allows remote attackers to conduct man-in-the-middle (MITM) attacks and \"compromise data privacy.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmfv-56fc-p5v2/GHSA-jmfv-56fc-p5v2.json b/advisories/unreviewed/2022/05/GHSA-jmfv-56fc-p5v2/GHSA-jmfv-56fc-p5v2.json index 78eb7c69eeb..61eb53e83a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmfv-56fc-p5v2/GHSA-jmfv-56fc-p5v2.json +++ b/advisories/unreviewed/2022/05/GHSA-jmfv-56fc-p5v2/GHSA-jmfv-56fc-p5v2.json @@ -7,12 +7,8 @@ "CVE-2005-3710" ], "details": "Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified image height and width (ImageWidth) tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jppx-j8c9-3cxq/GHSA-jppx-j8c9-3cxq.json b/advisories/unreviewed/2022/05/GHSA-jppx-j8c9-3cxq/GHSA-jppx-j8c9-3cxq.json index 06a5b759378..c7a67f65906 100644 --- a/advisories/unreviewed/2022/05/GHSA-jppx-j8c9-3cxq/GHSA-jppx-j8c9-3cxq.json +++ b/advisories/unreviewed/2022/05/GHSA-jppx-j8c9-3cxq/GHSA-jppx-j8c9-3cxq.json @@ -7,12 +7,8 @@ "CVE-2005-3619" ], "details": "Cross-site scripting (XSS) vulnerability in the management interface for VMware ESX 2.5.x before 2.5.2 upgrade patch 2, 2.1.x before 2.1.2 upgrade patch 6, and 2.0.x before 2.0.1 upgrade patch 6 allows remote attackers to inject arbitrary web script or HTML via messages that are not sanitized when viewing syslog log files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpx8-ff9r-rjvw/GHSA-jpx8-ff9r-rjvw.json b/advisories/unreviewed/2022/05/GHSA-jpx8-ff9r-rjvw/GHSA-jpx8-ff9r-rjvw.json index 42cafa143e9..e8aa62fccf6 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpx8-ff9r-rjvw/GHSA-jpx8-ff9r-rjvw.json +++ b/advisories/unreviewed/2022/05/GHSA-jpx8-ff9r-rjvw/GHSA-jpx8-ff9r-rjvw.json @@ -7,12 +7,8 @@ "CVE-2005-3877" ], "details": "Multiple SQL injection vulnerabilities in Simple Document Management System (SDMS) 2.0-CVS and earlier allow remote attackers to execute arbitrary SQL commands via the (1) folder_id parameter in list.php and (2) mid parameter in a view action to messages.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jrp4-976m-3h5f/GHSA-jrp4-976m-3h5f.json b/advisories/unreviewed/2022/05/GHSA-jrp4-976m-3h5f/GHSA-jrp4-976m-3h5f.json index 48a5597ee0e..f530d71c2a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrp4-976m-3h5f/GHSA-jrp4-976m-3h5f.json +++ b/advisories/unreviewed/2022/05/GHSA-jrp4-976m-3h5f/GHSA-jrp4-976m-3h5f.json @@ -7,12 +7,8 @@ "CVE-2005-3489" ], "details": "Buffer overflow in Asus Video Security 3.5.0.0 and earlier, when using authorization, allows remote attackers to execute arbitrary code via a long username/password string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jrx7-xjrv-c46c/GHSA-jrx7-xjrv-c46c.json b/advisories/unreviewed/2022/05/GHSA-jrx7-xjrv-c46c/GHSA-jrx7-xjrv-c46c.json index 367ba345a40..12bf60887a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrx7-xjrv-c46c/GHSA-jrx7-xjrv-c46c.json +++ b/advisories/unreviewed/2022/05/GHSA-jrx7-xjrv-c46c/GHSA-jrx7-xjrv-c46c.json @@ -7,12 +7,8 @@ "CVE-2005-3750" ], "details": "Opera before 8.51 on Linux and Unix systems allows remote attackers to execute arbitrary code via shell metacharacters (backticks) in a URL that another product provides in a command line argument when launching Opera.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jvhq-rf2r-p93j/GHSA-jvhq-rf2r-p93j.json b/advisories/unreviewed/2022/05/GHSA-jvhq-rf2r-p93j/GHSA-jvhq-rf2r-p93j.json index 4058ced6797..15352d215ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvhq-rf2r-p93j/GHSA-jvhq-rf2r-p93j.json +++ b/advisories/unreviewed/2022/05/GHSA-jvhq-rf2r-p93j/GHSA-jvhq-rf2r-p93j.json @@ -7,12 +7,8 @@ "CVE-2005-3891" ], "details": "Stack-based buffer overflow in Gadu-Gadu 7.20 allows remote attackers to cause a denial of service (crash) via an image filename between exactly 192 to 200 characters, which does not account for the \"imgcache\\\" string that is added to the end of the buffer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jvwp-xr6v-4m4f/GHSA-jvwp-xr6v-4m4f.json b/advisories/unreviewed/2022/05/GHSA-jvwp-xr6v-4m4f/GHSA-jvwp-xr6v-4m4f.json index a1ec01c0d49..d3ca6a552cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-jvwp-xr6v-4m4f/GHSA-jvwp-xr6v-4m4f.json +++ b/advisories/unreviewed/2022/05/GHSA-jvwp-xr6v-4m4f/GHSA-jvwp-xr6v-4m4f.json @@ -7,12 +7,8 @@ "CVE-2021-39365" ], "details": "In GNOME grilo though 0.3.13, grl-net-wc.c does not enable TLS certificate verification on the SoupSessionAsync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jw2v-g6g3-9568/GHSA-jw2v-g6g3-9568.json b/advisories/unreviewed/2022/05/GHSA-jw2v-g6g3-9568/GHSA-jw2v-g6g3-9568.json index c2fd654e449..8de9d2cf7da 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw2v-g6g3-9568/GHSA-jw2v-g6g3-9568.json +++ b/advisories/unreviewed/2022/05/GHSA-jw2v-g6g3-9568/GHSA-jw2v-g6g3-9568.json @@ -7,12 +7,8 @@ "CVE-2020-20486" ], "details": "IEC104 v1.0 contains a stack-buffer overflow in the parameter Iec10x_Sta_Addr.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx7c-2pr4-p3x3/GHSA-jx7c-2pr4-p3x3.json b/advisories/unreviewed/2022/05/GHSA-jx7c-2pr4-p3x3/GHSA-jx7c-2pr4-p3x3.json index 1c3941186f9..8e300db2289 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx7c-2pr4-p3x3/GHSA-jx7c-2pr4-p3x3.json +++ b/advisories/unreviewed/2022/05/GHSA-jx7c-2pr4-p3x3/GHSA-jx7c-2pr4-p3x3.json @@ -7,12 +7,8 @@ "CVE-2005-3874" ], "details": "SQL injection vulnerability in netzbr.php in Netzbrett 1.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the p_entry parameter in an entry command to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jxpr-mg7c-r8rr/GHSA-jxpr-mg7c-r8rr.json b/advisories/unreviewed/2022/05/GHSA-jxpr-mg7c-r8rr/GHSA-jxpr-mg7c-r8rr.json index 0a188c106a6..3040cc70e4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxpr-mg7c-r8rr/GHSA-jxpr-mg7c-r8rr.json +++ b/advisories/unreviewed/2022/05/GHSA-jxpr-mg7c-r8rr/GHSA-jxpr-mg7c-r8rr.json @@ -7,12 +7,8 @@ "CVE-2021-40176" ], "details": "Zoho ManageEngine Log360 before Build 5225 allows stored XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2vr-m45f-9w5x/GHSA-m2vr-m45f-9w5x.json b/advisories/unreviewed/2022/05/GHSA-m2vr-m45f-9w5x/GHSA-m2vr-m45f-9w5x.json index c8af420b635..dfdbbec47cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2vr-m45f-9w5x/GHSA-m2vr-m45f-9w5x.json +++ b/advisories/unreviewed/2022/05/GHSA-m2vr-m45f-9w5x/GHSA-m2vr-m45f-9w5x.json @@ -7,12 +7,8 @@ "CVE-2005-3488" ], "details": "Scorched 3D 39.1 (bf) and earlier allows remote attackers to cause a denial of service (long loop and server hang) via a negative numplayers value that bypasses a signed check in ServerConnectHandler.cpp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3h4-j2jx-f9xf/GHSA-m3h4-j2jx-f9xf.json b/advisories/unreviewed/2022/05/GHSA-m3h4-j2jx-f9xf/GHSA-m3h4-j2jx-f9xf.json index d86aa579cd1..f09306a4f28 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3h4-j2jx-f9xf/GHSA-m3h4-j2jx-f9xf.json +++ b/advisories/unreviewed/2022/05/GHSA-m3h4-j2jx-f9xf/GHSA-m3h4-j2jx-f9xf.json @@ -7,12 +7,8 @@ "CVE-2005-3484" ], "details": "Directory traversal vulnerability in NeroNET 1.2.0.2 and earlier allows remote attackers to read arbitrary files with certain file extensions (such as ZIP, AVI, JPG, TXT, and HTML) via \"..\" and hex-encoded (1) slash \"/\" (\"%2f\") or (2) backslash \"\\\" (\"%5c\") sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3q4-2h86-cx2h/GHSA-m3q4-2h86-cx2h.json b/advisories/unreviewed/2022/05/GHSA-m3q4-2h86-cx2h/GHSA-m3q4-2h86-cx2h.json index 6f2c0770356..5e035405141 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3q4-2h86-cx2h/GHSA-m3q4-2h86-cx2h.json +++ b/advisories/unreviewed/2022/05/GHSA-m3q4-2h86-cx2h/GHSA-m3q4-2h86-cx2h.json @@ -7,12 +7,8 @@ "CVE-2021-40174" ], "details": "Zoho ManageEngine Log360 before Build 5224 allows a CSRF attack for disabling the logon security settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m495-gvh6-rqc9/GHSA-m495-gvh6-rqc9.json b/advisories/unreviewed/2022/05/GHSA-m495-gvh6-rqc9/GHSA-m495-gvh6-rqc9.json index f6a53adef67..bb13530df35 100644 --- a/advisories/unreviewed/2022/05/GHSA-m495-gvh6-rqc9/GHSA-m495-gvh6-rqc9.json +++ b/advisories/unreviewed/2022/05/GHSA-m495-gvh6-rqc9/GHSA-m495-gvh6-rqc9.json @@ -7,12 +7,8 @@ "CVE-2005-3748" ], "details": "SQL injection vulnerability in the Search module in Tru-Zone Nuke ET 3.2, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the query parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m4p8-5q7j-p73v/GHSA-m4p8-5q7j-p73v.json b/advisories/unreviewed/2022/05/GHSA-m4p8-5q7j-p73v/GHSA-m4p8-5q7j-p73v.json index 41942eb10f8..cfb7c8ef75f 100644 --- a/advisories/unreviewed/2022/05/GHSA-m4p8-5q7j-p73v/GHSA-m4p8-5q7j-p73v.json +++ b/advisories/unreviewed/2022/05/GHSA-m4p8-5q7j-p73v/GHSA-m4p8-5q7j-p73v.json @@ -7,12 +7,8 @@ "CVE-2005-3695" ], "details": "Cross-site scripting (XSS) vulnerability in admin/config/confMgr.php in LiteSpeed Web Server 2.1.5 allows remote attackers to inject arbitrary web script or HTML via the m parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m685-cgj3-vw9m/GHSA-m685-cgj3-vw9m.json b/advisories/unreviewed/2022/05/GHSA-m685-cgj3-vw9m/GHSA-m685-cgj3-vw9m.json index 0598d4c63a1..e9fc154e8fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-m685-cgj3-vw9m/GHSA-m685-cgj3-vw9m.json +++ b/advisories/unreviewed/2022/05/GHSA-m685-cgj3-vw9m/GHSA-m685-cgj3-vw9m.json @@ -7,12 +7,8 @@ "CVE-2005-3680" ], "details": "Directory traversal vulnerability in editor_registry.php in XOOPS 2.2.3 allows remote attackers to read or include arbitrary local files via a .. (dot dot) in the xoopsConfig[language] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m68m-r5xj-h4vj/GHSA-m68m-r5xj-h4vj.json b/advisories/unreviewed/2022/05/GHSA-m68m-r5xj-h4vj/GHSA-m68m-r5xj-h4vj.json index 03876d13306..a46be100a1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m68m-r5xj-h4vj/GHSA-m68m-r5xj-h4vj.json +++ b/advisories/unreviewed/2022/05/GHSA-m68m-r5xj-h4vj/GHSA-m68m-r5xj-h4vj.json @@ -7,12 +7,8 @@ "CVE-2021-34578" ], "details": "This vulnerability allows an attacker who has access to the WBM to read and write settings-parameters of the device by sending specifically constructed requests without authentication on multiple WAGO PLCs in firmware versions up to FW07.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m6xm-phgv-vpfc/GHSA-m6xm-phgv-vpfc.json b/advisories/unreviewed/2022/05/GHSA-m6xm-phgv-vpfc/GHSA-m6xm-phgv-vpfc.json index 62ec942e081..84898aa0995 100644 --- a/advisories/unreviewed/2022/05/GHSA-m6xm-phgv-vpfc/GHSA-m6xm-phgv-vpfc.json +++ b/advisories/unreviewed/2022/05/GHSA-m6xm-phgv-vpfc/GHSA-m6xm-phgv-vpfc.json @@ -7,12 +7,8 @@ "CVE-2021-36071" ], "details": "Adobe Bridge versions 11.1 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m8ff-4vvh-r9f2/GHSA-m8ff-4vvh-r9f2.json b/advisories/unreviewed/2022/05/GHSA-m8ff-4vvh-r9f2/GHSA-m8ff-4vvh-r9f2.json index 83a3b1a9a8e..e9a7716c610 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8ff-4vvh-r9f2/GHSA-m8ff-4vvh-r9f2.json +++ b/advisories/unreviewed/2022/05/GHSA-m8ff-4vvh-r9f2/GHSA-m8ff-4vvh-r9f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m8hc-gpvf-58px/GHSA-m8hc-gpvf-58px.json b/advisories/unreviewed/2022/05/GHSA-m8hc-gpvf-58px/GHSA-m8hc-gpvf-58px.json index 9bc8710eb1c..b593f32e069 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8hc-gpvf-58px/GHSA-m8hc-gpvf-58px.json +++ b/advisories/unreviewed/2022/05/GHSA-m8hc-gpvf-58px/GHSA-m8hc-gpvf-58px.json @@ -7,12 +7,8 @@ "CVE-2021-24593" ], "details": "The Business Hours Indicator WordPress plugin before 2.3.5 does not sanitise or escape its 'Now closed message\" setting when outputting it in the backend and frontend, leading to an Authenticated Stored Cross-Site Scripting issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m8wx-whpp-q283/GHSA-m8wx-whpp-q283.json b/advisories/unreviewed/2022/05/GHSA-m8wx-whpp-q283/GHSA-m8wx-whpp-q283.json index 57632ed756d..2487c48822a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m8wx-whpp-q283/GHSA-m8wx-whpp-q283.json +++ b/advisories/unreviewed/2022/05/GHSA-m8wx-whpp-q283/GHSA-m8wx-whpp-q283.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m999-ph9r-423w/GHSA-m999-ph9r-423w.json b/advisories/unreviewed/2022/05/GHSA-m999-ph9r-423w/GHSA-m999-ph9r-423w.json index 23e569dc24f..1b7bc10119e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m999-ph9r-423w/GHSA-m999-ph9r-423w.json +++ b/advisories/unreviewed/2022/05/GHSA-m999-ph9r-423w/GHSA-m999-ph9r-423w.json @@ -7,12 +7,8 @@ "CVE-2021-29851" ], "details": "IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information when a stack trace is returned in the browser. IBM X-Force ID: 205527.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m9h7-wxh8-h355/GHSA-m9h7-wxh8-h355.json b/advisories/unreviewed/2022/05/GHSA-m9h7-wxh8-h355/GHSA-m9h7-wxh8-h355.json index ce250b02f28..cbc49a9e771 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9h7-wxh8-h355/GHSA-m9h7-wxh8-h355.json +++ b/advisories/unreviewed/2022/05/GHSA-m9h7-wxh8-h355/GHSA-m9h7-wxh8-h355.json @@ -7,12 +7,8 @@ "CVE-2005-3683" ], "details": "Stack-based buffer overflow in freeFTPd before 1.0.9 with Logging enabled, allows remote attackers to cause a denial of service (application crash), and possibly execute arbitrary code, via a long USER command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mc28-wfh9-r7p4/GHSA-mc28-wfh9-r7p4.json b/advisories/unreviewed/2022/05/GHSA-mc28-wfh9-r7p4/GHSA-mc28-wfh9-r7p4.json index b8c3894c2bf..a90010e7cb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-mc28-wfh9-r7p4/GHSA-mc28-wfh9-r7p4.json +++ b/advisories/unreviewed/2022/05/GHSA-mc28-wfh9-r7p4/GHSA-mc28-wfh9-r7p4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mf2r-wg4p-c263/GHSA-mf2r-wg4p-c263.json b/advisories/unreviewed/2022/05/GHSA-mf2r-wg4p-c263/GHSA-mf2r-wg4p-c263.json index 9a28e9d0732..2d157da4ecc 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf2r-wg4p-c263/GHSA-mf2r-wg4p-c263.json +++ b/advisories/unreviewed/2022/05/GHSA-mf2r-wg4p-c263/GHSA-mf2r-wg4p-c263.json @@ -7,12 +7,8 @@ "CVE-2005-3337" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Mantis before 0.19.3 allow remote attackers to inject arbitrary web script or HTML via (1) unknown vectors involving Javascript and (2) mantis/view_all_set.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf3c-7cwx-2vv8/GHSA-mf3c-7cwx-2vv8.json b/advisories/unreviewed/2022/05/GHSA-mf3c-7cwx-2vv8/GHSA-mf3c-7cwx-2vv8.json index 613712ecb2a..45c517cc8a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf3c-7cwx-2vv8/GHSA-mf3c-7cwx-2vv8.json +++ b/advisories/unreviewed/2022/05/GHSA-mf3c-7cwx-2vv8/GHSA-mf3c-7cwx-2vv8.json @@ -7,12 +7,8 @@ "CVE-2005-3854" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in EasyPageCMS allows remote attackers to inject arbitrary web script or HTML via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mf83-9r63-76w5/GHSA-mf83-9r63-76w5.json b/advisories/unreviewed/2022/05/GHSA-mf83-9r63-76w5/GHSA-mf83-9r63-76w5.json index bec780ca00d..e50adb965da 100644 --- a/advisories/unreviewed/2022/05/GHSA-mf83-9r63-76w5/GHSA-mf83-9r63-76w5.json +++ b/advisories/unreviewed/2022/05/GHSA-mf83-9r63-76w5/GHSA-mf83-9r63-76w5.json @@ -7,12 +7,8 @@ "CVE-2005-3730" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in HTTPTranslatorServlet in Idetix Software Systems Revize CMS allow remote attackers to inject arbitrary web script or HTML via the (1) resourcetype, (2) objectmap, and (3) redirect parameters, possibly involving setWebSpace.jsp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mhvf-jqgw-6fwq/GHSA-mhvf-jqgw-6fwq.json b/advisories/unreviewed/2022/05/GHSA-mhvf-jqgw-6fwq/GHSA-mhvf-jqgw-6fwq.json index ff89b5193dc..be0446c194d 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhvf-jqgw-6fwq/GHSA-mhvf-jqgw-6fwq.json +++ b/advisories/unreviewed/2022/05/GHSA-mhvf-jqgw-6fwq/GHSA-mhvf-jqgw-6fwq.json @@ -7,12 +7,8 @@ "CVE-2005-3684" ], "details": "Multiple buffer overflows in freeFTPd 1.0.8, without logging enabled, allow remote authenticated attackers to cause a denial of service (application crash), and possibly execute arbitrary code, via long (1) MKD and (2) DELE commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mj2p-jqh8-c5vw/GHSA-mj2p-jqh8-c5vw.json b/advisories/unreviewed/2022/05/GHSA-mj2p-jqh8-c5vw/GHSA-mj2p-jqh8-c5vw.json index 3720ccf46e8..83e5cc40727 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj2p-jqh8-c5vw/GHSA-mj2p-jqh8-c5vw.json +++ b/advisories/unreviewed/2022/05/GHSA-mj2p-jqh8-c5vw/GHSA-mj2p-jqh8-c5vw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mj8v-f3vj-hc7p/GHSA-mj8v-f3vj-hc7p.json b/advisories/unreviewed/2022/05/GHSA-mj8v-f3vj-hc7p/GHSA-mj8v-f3vj-hc7p.json index b45e75516db..cc4c89fb38b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj8v-f3vj-hc7p/GHSA-mj8v-f3vj-hc7p.json +++ b/advisories/unreviewed/2022/05/GHSA-mj8v-f3vj-hc7p/GHSA-mj8v-f3vj-hc7p.json @@ -7,12 +7,8 @@ "CVE-2005-3731" ], "details": "Unspecified vulnerability in yaSSL before 1.0.6 has unknown impact and attack vectors, related to \"certificate chain processing.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mj99-v9jj-r5v6/GHSA-mj99-v9jj-r5v6.json b/advisories/unreviewed/2022/05/GHSA-mj99-v9jj-r5v6/GHSA-mj99-v9jj-r5v6.json index ddd2408b7fc..f5da26f7175 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj99-v9jj-r5v6/GHSA-mj99-v9jj-r5v6.json +++ b/advisories/unreviewed/2022/05/GHSA-mj99-v9jj-r5v6/GHSA-mj99-v9jj-r5v6.json @@ -7,12 +7,8 @@ "CVE-2005-3475" ], "details": "Hasbani Web Server (WindWeb) 2.0 allows remote attackers to cause a denial of service (infinite loop) via HTTP crafted GET requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mpvm-6q83-9rhg/GHSA-mpvm-6q83-9rhg.json b/advisories/unreviewed/2022/05/GHSA-mpvm-6q83-9rhg/GHSA-mpvm-6q83-9rhg.json index 34e53fd4454..75441d96b86 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpvm-6q83-9rhg/GHSA-mpvm-6q83-9rhg.json +++ b/advisories/unreviewed/2022/05/GHSA-mpvm-6q83-9rhg/GHSA-mpvm-6q83-9rhg.json @@ -7,12 +7,8 @@ "CVE-2005-3622" ], "details": "phpMyAdmin 2.7.0-beta1 and earlier allows remote attackers to obtain the full path of the server via direct requests to multiple scripts in the libraries directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mqf6-rpjp-v4fc/GHSA-mqf6-rpjp-v4fc.json b/advisories/unreviewed/2022/05/GHSA-mqf6-rpjp-v4fc/GHSA-mqf6-rpjp-v4fc.json index e94a360c22a..e24b735bb45 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqf6-rpjp-v4fc/GHSA-mqf6-rpjp-v4fc.json +++ b/advisories/unreviewed/2022/05/GHSA-mqf6-rpjp-v4fc/GHSA-mqf6-rpjp-v4fc.json @@ -7,12 +7,8 @@ "CVE-2021-28631" ], "details": "Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mqjf-r4vg-v9ff/GHSA-mqjf-r4vg-v9ff.json b/advisories/unreviewed/2022/05/GHSA-mqjf-r4vg-v9ff/GHSA-mqjf-r4vg-v9ff.json index f6999ac9aee..2b72536d825 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqjf-r4vg-v9ff/GHSA-mqjf-r4vg-v9ff.json +++ b/advisories/unreviewed/2022/05/GHSA-mqjf-r4vg-v9ff/GHSA-mqjf-r4vg-v9ff.json @@ -7,12 +7,8 @@ "CVE-2005-3687" ], "details": "cancel_account.php in WHM AutoPilot 2.5.30 and earlier allows remote attackers to cancel requests for arbitrary accounts via a modified c parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr5j-g9m9-gqmw/GHSA-mr5j-g9m9-gqmw.json b/advisories/unreviewed/2022/05/GHSA-mr5j-g9m9-gqmw/GHSA-mr5j-g9m9-gqmw.json index f75422d8b1f..b721ddfcd8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr5j-g9m9-gqmw/GHSA-mr5j-g9m9-gqmw.json +++ b/advisories/unreviewed/2022/05/GHSA-mr5j-g9m9-gqmw/GHSA-mr5j-g9m9-gqmw.json @@ -7,12 +7,8 @@ "CVE-2005-3769" ], "details": "SQL injection vulnerability in files.php in PHP Download Manager 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mrwj-9369-24rw/GHSA-mrwj-9369-24rw.json b/advisories/unreviewed/2022/05/GHSA-mrwj-9369-24rw/GHSA-mrwj-9369-24rw.json index 8229ede8419..3113918ad20 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrwj-9369-24rw/GHSA-mrwj-9369-24rw.json +++ b/advisories/unreviewed/2022/05/GHSA-mrwj-9369-24rw/GHSA-mrwj-9369-24rw.json @@ -7,12 +7,8 @@ "CVE-2021-28614" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Our-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information and cause a denial of service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mw4g-p3x5-fwh9/GHSA-mw4g-p3x5-fwh9.json b/advisories/unreviewed/2022/05/GHSA-mw4g-p3x5-fwh9/GHSA-mw4g-p3x5-fwh9.json index 5cb2726fca5..b5968aa565a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mw4g-p3x5-fwh9/GHSA-mw4g-p3x5-fwh9.json +++ b/advisories/unreviewed/2022/05/GHSA-mw4g-p3x5-fwh9/GHSA-mw4g-p3x5-fwh9.json @@ -7,12 +7,8 @@ "CVE-2021-22021" ], "details": "VMware vRealize Log Insight (8.x prior to 8.4) contains a Cross Site Scripting (XSS) vulnerability due to improper user input validation. An attacker with user privileges may be able to inject a malicious payload via the Log Insight UI which would be executed when the victim accesses the shared dashboard link.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwh6-v5j8-7jqq/GHSA-mwh6-v5j8-7jqq.json b/advisories/unreviewed/2022/05/GHSA-mwh6-v5j8-7jqq/GHSA-mwh6-v5j8-7jqq.json index f1d554cea8f..8629a946095 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwh6-v5j8-7jqq/GHSA-mwh6-v5j8-7jqq.json +++ b/advisories/unreviewed/2022/05/GHSA-mwh6-v5j8-7jqq/GHSA-mwh6-v5j8-7jqq.json @@ -7,12 +7,8 @@ "CVE-2005-3706" ], "details": "Heap-based buffer overflow in LibSystem in Mac OS X 10.4 through 10.4.5 allows context-dependent attackers to execute arbitrary code by causing an application that uses LibSystem to request a large amount of memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mx24-fhg2-2xq8/GHSA-mx24-fhg2-2xq8.json b/advisories/unreviewed/2022/05/GHSA-mx24-fhg2-2xq8/GHSA-mx24-fhg2-2xq8.json index 2d8ca98cc59..9079129e175 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx24-fhg2-2xq8/GHSA-mx24-fhg2-2xq8.json +++ b/advisories/unreviewed/2022/05/GHSA-mx24-fhg2-2xq8/GHSA-mx24-fhg2-2xq8.json @@ -7,12 +7,8 @@ "CVE-2021-39503" ], "details": "PHPMyWind 5.6 is vulnerable to Remote Code Execution. Becase input is filtered without \"<, >, ?, =, `,....\" In WriteConfig() function, an attacker can inject php code to /include/config.cache.php file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx5m-j5xr-jg8c/GHSA-mx5m-j5xr-jg8c.json b/advisories/unreviewed/2022/05/GHSA-mx5m-j5xr-jg8c/GHSA-mx5m-j5xr-jg8c.json index 69918c8c726..539f9d7746e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx5m-j5xr-jg8c/GHSA-mx5m-j5xr-jg8c.json +++ b/advisories/unreviewed/2022/05/GHSA-mx5m-j5xr-jg8c/GHSA-mx5m-j5xr-jg8c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx9q-rpw2-387c/GHSA-mx9q-rpw2-387c.json b/advisories/unreviewed/2022/05/GHSA-mx9q-rpw2-387c/GHSA-mx9q-rpw2-387c.json index eff71601c9f..8dccb93617e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx9q-rpw2-387c/GHSA-mx9q-rpw2-387c.json +++ b/advisories/unreviewed/2022/05/GHSA-mx9q-rpw2-387c/GHSA-mx9q-rpw2-387c.json @@ -7,12 +7,8 @@ "CVE-2005-3842" ], "details": "SQL injection vulnerability in index.php in pdjk-support suite 1.1a and earlier allows remote attackers to execute arbitrary SQL commands via the (1) rowstart, (2) news_id, and (3) faq_id parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mxfw-86mc-qf94/GHSA-mxfw-86mc-qf94.json b/advisories/unreviewed/2022/05/GHSA-mxfw-86mc-qf94/GHSA-mxfw-86mc-qf94.json index 455ce98bd2b..22343d92dd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxfw-86mc-qf94/GHSA-mxfw-86mc-qf94.json +++ b/advisories/unreviewed/2022/05/GHSA-mxfw-86mc-qf94/GHSA-mxfw-86mc-qf94.json @@ -7,12 +7,8 @@ "CVE-2005-3822" ], "details": "Multiple SQL injection vulnerabilities in vTiger CRM 4.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username in the login form or (2) record parameter, as demonstrated in the EditView action for the Contacts module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p23q-pp8g-838p/GHSA-p23q-pp8g-838p.json b/advisories/unreviewed/2022/05/GHSA-p23q-pp8g-838p/GHSA-p23q-pp8g-838p.json index 2a39e9a95fa..5cc0412fe67 100644 --- a/advisories/unreviewed/2022/05/GHSA-p23q-pp8g-838p/GHSA-p23q-pp8g-838p.json +++ b/advisories/unreviewed/2022/05/GHSA-p23q-pp8g-838p/GHSA-p23q-pp8g-838p.json @@ -7,12 +7,8 @@ "CVE-2021-38306" ], "details": "Network Attached Storage on LG N1T1*** 10124 devices allows an unauthenticated attacker to gain root access via OS command injection in the en/ajp/plugins/access.ssh/checkInstall.php destServer parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p24c-23vx-r2wm/GHSA-p24c-23vx-r2wm.json b/advisories/unreviewed/2022/05/GHSA-p24c-23vx-r2wm/GHSA-p24c-23vx-r2wm.json index 31541052344..6e6c1899c68 100644 --- a/advisories/unreviewed/2022/05/GHSA-p24c-23vx-r2wm/GHSA-p24c-23vx-r2wm.json +++ b/advisories/unreviewed/2022/05/GHSA-p24c-23vx-r2wm/GHSA-p24c-23vx-r2wm.json @@ -7,12 +7,8 @@ "CVE-2005-3333" ], "details": "SQL injection vulnerability in eBASEweb 3.0 allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p2rv-c467-4vgq/GHSA-p2rv-c467-4vgq.json b/advisories/unreviewed/2022/05/GHSA-p2rv-c467-4vgq/GHSA-p2rv-c467-4vgq.json index d8af02a2c22..21cd1a8365f 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2rv-c467-4vgq/GHSA-p2rv-c467-4vgq.json +++ b/advisories/unreviewed/2022/05/GHSA-p2rv-c467-4vgq/GHSA-p2rv-c467-4vgq.json @@ -7,12 +7,8 @@ "CVE-2005-3494" ], "details": "Cross-site scripting (XSS) vulnerability in Ar-blog 5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a blog comment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3f2-rw84-q562/GHSA-p3f2-rw84-q562.json b/advisories/unreviewed/2022/05/GHSA-p3f2-rw84-q562/GHSA-p3f2-rw84-q562.json index 413005640ed..f2c3b7c2a60 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3f2-rw84-q562/GHSA-p3f2-rw84-q562.json +++ b/advisories/unreviewed/2022/05/GHSA-p3f2-rw84-q562/GHSA-p3f2-rw84-q562.json @@ -7,12 +7,8 @@ "CVE-2005-3661" ], "details": "Dell TrueMobile 2300 Wireless Broadband Router running firmware 3.0.0.8 and 5.1.1.6, and possibly other versions, allows remote attackers to reset authentication credentials, then change configuration or firmware, via a direct request to apply.cgi with the Page parameter set to adv_password.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3r4-j4rg-cqvw/GHSA-p3r4-j4rg-cqvw.json b/advisories/unreviewed/2022/05/GHSA-p3r4-j4rg-cqvw/GHSA-p3r4-j4rg-cqvw.json index dedf0f626d1..0efb720b491 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3r4-j4rg-cqvw/GHSA-p3r4-j4rg-cqvw.json +++ b/advisories/unreviewed/2022/05/GHSA-p3r4-j4rg-cqvw/GHSA-p3r4-j4rg-cqvw.json @@ -7,12 +7,8 @@ "CVE-2005-3782" ], "details": "Mac OS X 10.4.3 up to 10.4.6, when loginwindow uses the \"Name and password\" setting, and the \"Show the Restart, Sleep, and Shut Down buttons\" option is disabled, allows users with physical access to bypass login and reboot the system by entering \">restart\", \">power\", or \">shutdown\" sequences after the username.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p46c-qg3j-fgr9/GHSA-p46c-qg3j-fgr9.json b/advisories/unreviewed/2022/05/GHSA-p46c-qg3j-fgr9/GHSA-p46c-qg3j-fgr9.json index e36a373d5c0..ccc99ea608d 100644 --- a/advisories/unreviewed/2022/05/GHSA-p46c-qg3j-fgr9/GHSA-p46c-qg3j-fgr9.json +++ b/advisories/unreviewed/2022/05/GHSA-p46c-qg3j-fgr9/GHSA-p46c-qg3j-fgr9.json @@ -7,12 +7,8 @@ "CVE-2005-3620" ], "details": "The management interface for VMware ESX Server 2.0.x before 2.0.2 patch 1, 2.1.x before 2.1.3 patch 1, and 2.x before 2.5.3 patch 2 records passwords in cleartext in URLs that are stored in world-readable web server log files, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p4gx-hqcf-w8m9/GHSA-p4gx-hqcf-w8m9.json b/advisories/unreviewed/2022/05/GHSA-p4gx-hqcf-w8m9/GHSA-p4gx-hqcf-w8m9.json index 7663c9df254..99762c3a75b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4gx-hqcf-w8m9/GHSA-p4gx-hqcf-w8m9.json +++ b/advisories/unreviewed/2022/05/GHSA-p4gx-hqcf-w8m9/GHSA-p4gx-hqcf-w8m9.json @@ -7,12 +7,8 @@ "CVE-2021-28233" ], "details": "Heap-based Buffer Overflow vulnerability exists in ok-file-formats 1 via the ok_jpg_generate_huffman_table function in ok_jpg.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4pq-252w-q8gg/GHSA-p4pq-252w-q8gg.json b/advisories/unreviewed/2022/05/GHSA-p4pq-252w-q8gg/GHSA-p4pq-252w-q8gg.json index e8b894e32ff..2cfef8ba65d 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4pq-252w-q8gg/GHSA-p4pq-252w-q8gg.json +++ b/advisories/unreviewed/2022/05/GHSA-p4pq-252w-q8gg/GHSA-p4pq-252w-q8gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4xg-pq3g-jw4c/GHSA-p4xg-pq3g-jw4c.json b/advisories/unreviewed/2022/05/GHSA-p4xg-pq3g-jw4c/GHSA-p4xg-pq3g-jw4c.json index 3822b11fcaa..eae834abea9 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4xg-pq3g-jw4c/GHSA-p4xg-pq3g-jw4c.json +++ b/advisories/unreviewed/2022/05/GHSA-p4xg-pq3g-jw4c/GHSA-p4xg-pq3g-jw4c.json @@ -7,12 +7,8 @@ "CVE-2021-34066" ], "details": "An issue was discovered in EdgeGallery/developer before v1.0. There is a \"Deserialization of yaml file\" vulnerability that can allow attackers to execute system command through uploading the malicious constructed YAML file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p522-q7r6-w9c7/GHSA-p522-q7r6-w9c7.json b/advisories/unreviewed/2022/05/GHSA-p522-q7r6-w9c7/GHSA-p522-q7r6-w9c7.json index e4350e48416..dadce260ef5 100644 --- a/advisories/unreviewed/2022/05/GHSA-p522-q7r6-w9c7/GHSA-p522-q7r6-w9c7.json +++ b/advisories/unreviewed/2022/05/GHSA-p522-q7r6-w9c7/GHSA-p522-q7r6-w9c7.json @@ -7,12 +7,8 @@ "CVE-2005-3780" ], "details": "Multiple buffer overflows in IPUpdate 1.1 might allow attackers to execute arbitrary code via (1) memmcat in the memm module or (2) certain TSIG format records.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p546-hw2g-2622/GHSA-p546-hw2g-2622.json b/advisories/unreviewed/2022/05/GHSA-p546-hw2g-2622/GHSA-p546-hw2g-2622.json index 246edef9ef2..2a2fc2185ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-p546-hw2g-2622/GHSA-p546-hw2g-2622.json +++ b/advisories/unreviewed/2022/05/GHSA-p546-hw2g-2622/GHSA-p546-hw2g-2622.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p54h-2c35-jmwj/GHSA-p54h-2c35-jmwj.json b/advisories/unreviewed/2022/05/GHSA-p54h-2c35-jmwj/GHSA-p54h-2c35-jmwj.json index c9623e38b30..3493eeac00b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p54h-2c35-jmwj/GHSA-p54h-2c35-jmwj.json +++ b/advisories/unreviewed/2022/05/GHSA-p54h-2c35-jmwj/GHSA-p54h-2c35-jmwj.json @@ -7,12 +7,8 @@ "CVE-2005-3868" ], "details": "Multiple SQL injection vulnerabilities in K-Search 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) term, (2) id, (3) stat, and (4) source parameters to index.php, and (5) through the image parameters with an add request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p555-p2q2-7ccm/GHSA-p555-p2q2-7ccm.json b/advisories/unreviewed/2022/05/GHSA-p555-p2q2-7ccm/GHSA-p555-p2q2-7ccm.json index 0700b213e11..9a5d0f08d0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-p555-p2q2-7ccm/GHSA-p555-p2q2-7ccm.json +++ b/advisories/unreviewed/2022/05/GHSA-p555-p2q2-7ccm/GHSA-p555-p2q2-7ccm.json @@ -7,12 +7,8 @@ "CVE-2005-3395" ], "details": "SQL injection vulnerability in Invision Gallery 2.0.3 allows remote attackers to execute arbitrary SQL commands via the st parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p596-7x35-x59h/GHSA-p596-7x35-x59h.json b/advisories/unreviewed/2022/05/GHSA-p596-7x35-x59h/GHSA-p596-7x35-x59h.json index 4caa1754853..59cb303c991 100644 --- a/advisories/unreviewed/2022/05/GHSA-p596-7x35-x59h/GHSA-p596-7x35-x59h.json +++ b/advisories/unreviewed/2022/05/GHSA-p596-7x35-x59h/GHSA-p596-7x35-x59h.json @@ -7,12 +7,8 @@ "CVE-2005-3720" ], "details": "The default index page in the HTTP server in Hitachi IP5000 VOIP WIFI Phone 1.5.6 lists sensitive information such as software versions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p729-59m3-2m8r/GHSA-p729-59m3-2m8r.json b/advisories/unreviewed/2022/05/GHSA-p729-59m3-2m8r/GHSA-p729-59m3-2m8r.json index 2494da150cd..bd95ed4b496 100644 --- a/advisories/unreviewed/2022/05/GHSA-p729-59m3-2m8r/GHSA-p729-59m3-2m8r.json +++ b/advisories/unreviewed/2022/05/GHSA-p729-59m3-2m8r/GHSA-p729-59m3-2m8r.json @@ -7,12 +7,8 @@ "CVE-2021-36234" ], "details": "Use of a hard-coded cryptographic key in MIK.starlight 7.9.5.24363 allows local users to decrypt credentials via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p734-hj82-4cvx/GHSA-p734-hj82-4cvx.json b/advisories/unreviewed/2022/05/GHSA-p734-hj82-4cvx/GHSA-p734-hj82-4cvx.json index 2fc2aafcb2d..670291bd7c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-p734-hj82-4cvx/GHSA-p734-hj82-4cvx.json +++ b/advisories/unreviewed/2022/05/GHSA-p734-hj82-4cvx/GHSA-p734-hj82-4cvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p746-qw73-qmmx/GHSA-p746-qw73-qmmx.json b/advisories/unreviewed/2022/05/GHSA-p746-qw73-qmmx/GHSA-p746-qw73-qmmx.json index 7401f70ce76..73e4e88eca7 100644 --- a/advisories/unreviewed/2022/05/GHSA-p746-qw73-qmmx/GHSA-p746-qw73-qmmx.json +++ b/advisories/unreviewed/2022/05/GHSA-p746-qw73-qmmx/GHSA-p746-qw73-qmmx.json @@ -7,12 +7,8 @@ "CVE-2021-36033" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an XML Injection vulnerability in the Widgets Module. An attacker with admin privileges can trigger a specially crafted script to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p78f-ff59-jj59/GHSA-p78f-ff59-jj59.json b/advisories/unreviewed/2022/05/GHSA-p78f-ff59-jj59/GHSA-p78f-ff59-jj59.json index 13543a585c2..90b664ca087 100644 --- a/advisories/unreviewed/2022/05/GHSA-p78f-ff59-jj59/GHSA-p78f-ff59-jj59.json +++ b/advisories/unreviewed/2022/05/GHSA-p78f-ff59-jj59/GHSA-p78f-ff59-jj59.json @@ -7,12 +7,8 @@ "CVE-2005-3856" ], "details": "The Popular URL capability (popularurls.cpp) in Krusader 1.60.0 and 1.70.0-beta1 saves passwords in cleartext in the krusaderrc file when the user enters URLs containing passwords in the panel URL field, which might allow attackers to access other sites.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p78h-8xq8-x7pq/GHSA-p78h-8xq8-x7pq.json b/advisories/unreviewed/2022/05/GHSA-p78h-8xq8-x7pq/GHSA-p78h-8xq8-x7pq.json index c1e23ca4928..57434352657 100644 --- a/advisories/unreviewed/2022/05/GHSA-p78h-8xq8-x7pq/GHSA-p78h-8xq8-x7pq.json +++ b/advisories/unreviewed/2022/05/GHSA-p78h-8xq8-x7pq/GHSA-p78h-8xq8-x7pq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p7v3-6rr8-2vmj/GHSA-p7v3-6rr8-2vmj.json b/advisories/unreviewed/2022/05/GHSA-p7v3-6rr8-2vmj/GHSA-p7v3-6rr8-2vmj.json index 17088e6db61..e1194447576 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7v3-6rr8-2vmj/GHSA-p7v3-6rr8-2vmj.json +++ b/advisories/unreviewed/2022/05/GHSA-p7v3-6rr8-2vmj/GHSA-p7v3-6rr8-2vmj.json @@ -7,12 +7,8 @@ "CVE-2005-3785" ], "details": "Second-order symlink vulnerability in eix-sync.in in Ebuild IndeX (eix) before 0.5.0_pre2 allows local users to overwrite arbitrary files via a symlink attack on the exi.X.sync temporary file, which is processed by the diff-eix program.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p83h-qp2w-3vv5/GHSA-p83h-qp2w-3vv5.json b/advisories/unreviewed/2022/05/GHSA-p83h-qp2w-3vv5/GHSA-p83h-qp2w-3vv5.json index be3d71ab3d8..061a5e32c35 100644 --- a/advisories/unreviewed/2022/05/GHSA-p83h-qp2w-3vv5/GHSA-p83h-qp2w-3vv5.json +++ b/advisories/unreviewed/2022/05/GHSA-p83h-qp2w-3vv5/GHSA-p83h-qp2w-3vv5.json @@ -7,12 +7,8 @@ "CVE-2021-39320" ], "details": "The underConstruction plugin <= 1.18 for WordPress echoes out the raw value of `$GLOBALS['PHP_SELF']` in the ucOptions.php file. On certain configurations including Apache+modPHP, this makes it possible to use it to perform a reflected Cross-Site Scripting attack by injecting malicious code in the request path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p89h-86gx-x9fw/GHSA-p89h-86gx-x9fw.json b/advisories/unreviewed/2022/05/GHSA-p89h-86gx-x9fw/GHSA-p89h-86gx-x9fw.json index 03e517fa5a8..f7baedaae94 100644 --- a/advisories/unreviewed/2022/05/GHSA-p89h-86gx-x9fw/GHSA-p89h-86gx-x9fw.json +++ b/advisories/unreviewed/2022/05/GHSA-p89h-86gx-x9fw/GHSA-p89h-86gx-x9fw.json @@ -7,12 +7,8 @@ "CVE-2021-30694" ], "details": "An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted USD file may disclose memory contents.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p94g-5v88-v8wc/GHSA-p94g-5v88-v8wc.json b/advisories/unreviewed/2022/05/GHSA-p94g-5v88-v8wc/GHSA-p94g-5v88-v8wc.json index 1cc06ae4349..e0d115dbe32 100644 --- a/advisories/unreviewed/2022/05/GHSA-p94g-5v88-v8wc/GHSA-p94g-5v88-v8wc.json +++ b/advisories/unreviewed/2022/05/GHSA-p94g-5v88-v8wc/GHSA-p94g-5v88-v8wc.json @@ -7,12 +7,8 @@ "CVE-2021-35238" ], "details": "User with Orion Platform Admin Rights could store XSS through URL POST parameter in CreateExternalWebsite website.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pc88-mg34-2qrc/GHSA-pc88-mg34-2qrc.json b/advisories/unreviewed/2022/05/GHSA-pc88-mg34-2qrc/GHSA-pc88-mg34-2qrc.json index 72ea1cfbe83..4bdd70cec74 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc88-mg34-2qrc/GHSA-pc88-mg34-2qrc.json +++ b/advisories/unreviewed/2022/05/GHSA-pc88-mg34-2qrc/GHSA-pc88-mg34-2qrc.json @@ -7,12 +7,8 @@ "CVE-2005-3525" ], "details": "Stack-based buffer overflow in an ActiveX control for the installer for Adobe Macromedia Shockwave Player 10.1.0.11 and earlier allows remote attackers to execute arbitrary code via crafted large values for unspecified parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pfmw-hj52-wcrc/GHSA-pfmw-hj52-wcrc.json b/advisories/unreviewed/2022/05/GHSA-pfmw-hj52-wcrc/GHSA-pfmw-hj52-wcrc.json index da72ea13987..b114da0da4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfmw-hj52-wcrc/GHSA-pfmw-hj52-wcrc.json +++ b/advisories/unreviewed/2022/05/GHSA-pfmw-hj52-wcrc/GHSA-pfmw-hj52-wcrc.json @@ -7,12 +7,8 @@ "CVE-2005-3763" ], "details": "Exponent CMS 0.96.3 and later versions includes the full installation path in the base parameter to thumb.php, which allows remote attackers to obtain sensitive information. NOTE: this might be resultant from an absolute path traversal vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pgj4-m7wx-hrhh/GHSA-pgj4-m7wx-hrhh.json b/advisories/unreviewed/2022/05/GHSA-pgj4-m7wx-hrhh/GHSA-pgj4-m7wx-hrhh.json index bd8e89cb5e1..d5146d11d42 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgj4-m7wx-hrhh/GHSA-pgj4-m7wx-hrhh.json +++ b/advisories/unreviewed/2022/05/GHSA-pgj4-m7wx-hrhh/GHSA-pgj4-m7wx-hrhh.json @@ -7,12 +7,8 @@ "CVE-2005-3567" ], "details": "slapd daemon in IBM Tivoli Directory Server (ITDS) 5.2.0 and 6.0.0 binds using SASL EXTERNAL, which allows attackers to bypass authentication and modify and delete directory data via unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pgx3-96qh-rj6x/GHSA-pgx3-96qh-rj6x.json b/advisories/unreviewed/2022/05/GHSA-pgx3-96qh-rj6x/GHSA-pgx3-96qh-rj6x.json index 10c884effbb..1ce80985b0f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgx3-96qh-rj6x/GHSA-pgx3-96qh-rj6x.json +++ b/advisories/unreviewed/2022/05/GHSA-pgx3-96qh-rj6x/GHSA-pgx3-96qh-rj6x.json @@ -7,12 +7,8 @@ "CVE-2021-40173" ], "details": "Zoho ManageEngine Cloud Security Plus before Build 4117 allows a CSRF attack on the server proxy settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjfg-gh9q-fxqc/GHSA-pjfg-gh9q-fxqc.json b/advisories/unreviewed/2022/05/GHSA-pjfg-gh9q-fxqc/GHSA-pjfg-gh9q-fxqc.json index 4e65f250c38..6cf2b407345 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjfg-gh9q-fxqc/GHSA-pjfg-gh9q-fxqc.json +++ b/advisories/unreviewed/2022/05/GHSA-pjfg-gh9q-fxqc/GHSA-pjfg-gh9q-fxqc.json @@ -7,12 +7,8 @@ "CVE-2005-3832" ], "details": "Stack-based buffer overflow in (1) CxUux60.dll and (2) CxUux60u.dll, as used in SpeedProject products including (a) Squeez 5.0 Build 4285, and (b) SpeedCommander 11.0 Build 4430 and 10.51 Build 4430, allows user-assisted attackers to execute arbitrary code via a ZIP archive containing a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pmmj-9c47-7652/GHSA-pmmj-9c47-7652.json b/advisories/unreviewed/2022/05/GHSA-pmmj-9c47-7652/GHSA-pmmj-9c47-7652.json index f631d9e5628..042b9d04939 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmmj-9c47-7652/GHSA-pmmj-9c47-7652.json +++ b/advisories/unreviewed/2022/05/GHSA-pmmj-9c47-7652/GHSA-pmmj-9c47-7652.json @@ -7,12 +7,8 @@ "CVE-2005-3718" ], "details": "UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 does not allow users to disable access to (1) SNMP or (2) the rlogin port TCP 513, which allows remote attackers to exploit other vulnerabilities such as CVE-2005-3716, or execute arbitrary shell commands via rlogin, which does not require authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmrj-pcgh-qggg/GHSA-pmrj-pcgh-qggg.json b/advisories/unreviewed/2022/05/GHSA-pmrj-pcgh-qggg/GHSA-pmrj-pcgh-qggg.json index 0dea3af75a2..d95ca403534 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmrj-pcgh-qggg/GHSA-pmrj-pcgh-qggg.json +++ b/advisories/unreviewed/2022/05/GHSA-pmrj-pcgh-qggg/GHSA-pmrj-pcgh-qggg.json @@ -7,12 +7,8 @@ "CVE-2005-4069" ], "details": "SunnComm MediaMax DRM 5.0.21.0, as used by Sony BMG, assigns insecure Everyone/Full Control permissions to the \"SunnComm Shared\" directory, which allows local users to gain privileges by modifying programs installed in that directory, such as MMX.exe.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq95-hwwm-f9gw/GHSA-pq95-hwwm-f9gw.json b/advisories/unreviewed/2022/05/GHSA-pq95-hwwm-f9gw/GHSA-pq95-hwwm-f9gw.json index 2f4da65dd14..4b7954786f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq95-hwwm-f9gw/GHSA-pq95-hwwm-f9gw.json +++ b/advisories/unreviewed/2022/05/GHSA-pq95-hwwm-f9gw/GHSA-pq95-hwwm-f9gw.json @@ -7,12 +7,8 @@ "CVE-2005-3878" ], "details": "Directory traversal vulnerability in index.php in PHP Doc System 1.5.1 and earlier allows remote attackers to access or include arbitrary files via a .. (dot dot) in the show parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pqfm-p88j-xq9g/GHSA-pqfm-p88j-xq9g.json b/advisories/unreviewed/2022/05/GHSA-pqfm-p88j-xq9g/GHSA-pqfm-p88j-xq9g.json index 3f1c532dffc..fe32f40cd52 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqfm-p88j-xq9g/GHSA-pqfm-p88j-xq9g.json +++ b/advisories/unreviewed/2022/05/GHSA-pqfm-p88j-xq9g/GHSA-pqfm-p88j-xq9g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqfp-wg76-h7wc/GHSA-pqfp-wg76-h7wc.json b/advisories/unreviewed/2022/05/GHSA-pqfp-wg76-h7wc/GHSA-pqfp-wg76-h7wc.json index a78601e9582..598ee1bce0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqfp-wg76-h7wc/GHSA-pqfp-wg76-h7wc.json +++ b/advisories/unreviewed/2022/05/GHSA-pqfp-wg76-h7wc/GHSA-pqfp-wg76-h7wc.json @@ -7,12 +7,8 @@ "CVE-2005-4074" ], "details": "Directory traversal vulnerability in index.cfm in CF_Nuke 4.6 and earlier, when Sandbox Security is disabled, allows remote attackers to include arbitrary local .cfm files via a .. (dot dot) in the (1) sector or (2) page parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pqwm-v5fq-x4gm/GHSA-pqwm-v5fq-x4gm.json b/advisories/unreviewed/2022/05/GHSA-pqwm-v5fq-x4gm/GHSA-pqwm-v5fq-x4gm.json index 9e89d7bf2f6..ead0554a106 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqwm-v5fq-x4gm/GHSA-pqwm-v5fq-x4gm.json +++ b/advisories/unreviewed/2022/05/GHSA-pqwm-v5fq-x4gm/GHSA-pqwm-v5fq-x4gm.json @@ -7,12 +7,8 @@ "CVE-2005-3653" ], "details": "Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.051230, allows remote attackers to execute arbitrary code via an HTTP request with a negative Content-Length field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pqxx-c8rf-4j52/GHSA-pqxx-c8rf-4j52.json b/advisories/unreviewed/2022/05/GHSA-pqxx-c8rf-4j52/GHSA-pqxx-c8rf-4j52.json index 7f8d83502ad..3a1dc74c256 100644 --- a/advisories/unreviewed/2022/05/GHSA-pqxx-c8rf-4j52/GHSA-pqxx-c8rf-4j52.json +++ b/advisories/unreviewed/2022/05/GHSA-pqxx-c8rf-4j52/GHSA-pqxx-c8rf-4j52.json @@ -7,12 +7,8 @@ "CVE-2005-3583" ], "details": "(1) Java Runtime Environment (JRE) and (2) Software Development Kit (SDK) 1.4.2_08, 1.4.2_09, and 1.5.0_05 and possibly other versions allow remote attackers to cause a denial of service (JVM unresponsive) via a crafted serialized object, such as a font object as demonstrated on JBoss.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-prjr-mrmf-vjr8/GHSA-prjr-mrmf-vjr8.json b/advisories/unreviewed/2022/05/GHSA-prjr-mrmf-vjr8/GHSA-prjr-mrmf-vjr8.json index a1c58da811e..fc229623b3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-prjr-mrmf-vjr8/GHSA-prjr-mrmf-vjr8.json +++ b/advisories/unreviewed/2022/05/GHSA-prjr-mrmf-vjr8/GHSA-prjr-mrmf-vjr8.json @@ -7,12 +7,8 @@ "CVE-2021-40177" ], "details": "Zoho ManageEngine Log360 before Build 5225 allows remote code execution via BCP file overwrite.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-prxx-4m38-9m83/GHSA-prxx-4m38-9m83.json b/advisories/unreviewed/2022/05/GHSA-prxx-4m38-9m83/GHSA-prxx-4m38-9m83.json index f1f1b400ec0..5aaad95e5b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-prxx-4m38-9m83/GHSA-prxx-4m38-9m83.json +++ b/advisories/unreviewed/2022/05/GHSA-prxx-4m38-9m83/GHSA-prxx-4m38-9m83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pv44-wmq6-v4h5/GHSA-pv44-wmq6-v4h5.json b/advisories/unreviewed/2022/05/GHSA-pv44-wmq6-v4h5/GHSA-pv44-wmq6-v4h5.json index ef30ddf7ae4..2b11958fe3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv44-wmq6-v4h5/GHSA-pv44-wmq6-v4h5.json +++ b/advisories/unreviewed/2022/05/GHSA-pv44-wmq6-v4h5/GHSA-pv44-wmq6-v4h5.json @@ -7,12 +7,8 @@ "CVE-2005-3545" ], "details": "SQL injection vulnerability in index.php of the report module in ibProArcade 2.5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pw42-594r-f3xh/GHSA-pw42-594r-f3xh.json b/advisories/unreviewed/2022/05/GHSA-pw42-594r-f3xh/GHSA-pw42-594r-f3xh.json index 25c36a295be..42653f8c7ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw42-594r-f3xh/GHSA-pw42-594r-f3xh.json +++ b/advisories/unreviewed/2022/05/GHSA-pw42-594r-f3xh/GHSA-pw42-594r-f3xh.json @@ -7,12 +7,8 @@ "CVE-2021-30684" ], "details": "A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina. A remote attacker may cause an unexpected application termination or arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pw5w-wgvf-ggq9/GHSA-pw5w-wgvf-ggq9.json b/advisories/unreviewed/2022/05/GHSA-pw5w-wgvf-ggq9/GHSA-pw5w-wgvf-ggq9.json index 3a7ddf85914..c98c9a70000 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw5w-wgvf-ggq9/GHSA-pw5w-wgvf-ggq9.json +++ b/advisories/unreviewed/2022/05/GHSA-pw5w-wgvf-ggq9/GHSA-pw5w-wgvf-ggq9.json @@ -7,12 +7,8 @@ "CVE-2021-38393" ], "details": "A Blind SQL injection vulnerability exists in the /DataHandler/HandlerAlarmGroup.ashx endpoint of Delta Electronics DIAEnergie Version 1.7.5 and prior. The application does not properly validate the user-controlled value supplied through the parameter agid before using it as part of an SQL query. A remote, unauthenticated attacker can exploit this issue to execute arbitrary code in the context of NT SERVICE\\MSSQLSERVER.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pwc2-hr86-5482/GHSA-pwc2-hr86-5482.json b/advisories/unreviewed/2022/05/GHSA-pwc2-hr86-5482/GHSA-pwc2-hr86-5482.json index 0d2889f4888..50d8cb1e9b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwc2-hr86-5482/GHSA-pwc2-hr86-5482.json +++ b/advisories/unreviewed/2022/05/GHSA-pwc2-hr86-5482/GHSA-pwc2-hr86-5482.json @@ -7,12 +7,8 @@ "CVE-2021-35212" ], "details": "An SQL injection Privilege Escalation Vulnerability was discovered in the Orion Platform reported by the ZDI Team. A blind Boolean SQL injection which could lead to full read/write over the Orion database content including the Orion certificate for any authenticated user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pwm8-7wmq-v7qm/GHSA-pwm8-7wmq-v7qm.json b/advisories/unreviewed/2022/05/GHSA-pwm8-7wmq-v7qm/GHSA-pwm8-7wmq-v7qm.json index f1122e5168a..218b7f83ddb 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwm8-7wmq-v7qm/GHSA-pwm8-7wmq-v7qm.json +++ b/advisories/unreviewed/2022/05/GHSA-pwm8-7wmq-v7qm/GHSA-pwm8-7wmq-v7qm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-px9r-xq3x-jf4f/GHSA-px9r-xq3x-jf4f.json b/advisories/unreviewed/2022/05/GHSA-px9r-xq3x-jf4f/GHSA-px9r-xq3x-jf4f.json index 7b6cd993bcf..83d036983e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-px9r-xq3x-jf4f/GHSA-px9r-xq3x-jf4f.json +++ b/advisories/unreviewed/2022/05/GHSA-px9r-xq3x-jf4f/GHSA-px9r-xq3x-jf4f.json @@ -7,12 +7,8 @@ "CVE-2021-22024" ], "details": "The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary log-file read vulnerability. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can read any log file resulting in sensitive information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q347-hg43-3wqc/GHSA-q347-hg43-3wqc.json b/advisories/unreviewed/2022/05/GHSA-q347-hg43-3wqc/GHSA-q347-hg43-3wqc.json index 64289865c65..4cde309262a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q347-hg43-3wqc/GHSA-q347-hg43-3wqc.json +++ b/advisories/unreviewed/2022/05/GHSA-q347-hg43-3wqc/GHSA-q347-hg43-3wqc.json @@ -7,12 +7,8 @@ "CVE-2021-27557" ], "details": "A cross-site request forgery (CSRF) vulnerability in the Cron job tab in EasyCorp ZenTao 12.5.3 allows attackers to update the fields of a Cron job.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q34x-r5ph-rx3r/GHSA-q34x-r5ph-rx3r.json b/advisories/unreviewed/2022/05/GHSA-q34x-r5ph-rx3r/GHSA-q34x-r5ph-rx3r.json index 66e5b9ba5e5..700249d9edc 100644 --- a/advisories/unreviewed/2022/05/GHSA-q34x-r5ph-rx3r/GHSA-q34x-r5ph-rx3r.json +++ b/advisories/unreviewed/2022/05/GHSA-q34x-r5ph-rx3r/GHSA-q34x-r5ph-rx3r.json @@ -7,12 +7,8 @@ "CVE-2020-18125" ], "details": "A reflected cross-site scripting (XSS) vulnerability in the /plugin/ajax.php component of Indexhibit 2.1.5 allows attackers to execute arbitrary web scripts or HTML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3hc-hp7c-g8cc/GHSA-q3hc-hp7c-g8cc.json b/advisories/unreviewed/2022/05/GHSA-q3hc-hp7c-g8cc/GHSA-q3hc-hp7c-g8cc.json index e770caf37be..6bf5856bbd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3hc-hp7c-g8cc/GHSA-q3hc-hp7c-g8cc.json +++ b/advisories/unreviewed/2022/05/GHSA-q3hc-hp7c-g8cc/GHSA-q3hc-hp7c-g8cc.json @@ -7,12 +7,8 @@ "CVE-2005-3816" ], "details": "Multiple SQL injection vulnerabilities in forum.php in freeForum 1.1 and earlier and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter or (2) thread parameter in thread mode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q52p-wrc3-9p77/GHSA-q52p-wrc3-9p77.json b/advisories/unreviewed/2022/05/GHSA-q52p-wrc3-9p77/GHSA-q52p-wrc3-9p77.json index e8c65fcf0ad..9c5b9d72b8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-q52p-wrc3-9p77/GHSA-q52p-wrc3-9p77.json +++ b/advisories/unreviewed/2022/05/GHSA-q52p-wrc3-9p77/GHSA-q52p-wrc3-9p77.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5r2-29vq-xvw2/GHSA-q5r2-29vq-xvw2.json b/advisories/unreviewed/2022/05/GHSA-q5r2-29vq-xvw2/GHSA-q5r2-29vq-xvw2.json index 03b0de03b0c..454843eea0e 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5r2-29vq-xvw2/GHSA-q5r2-29vq-xvw2.json +++ b/advisories/unreviewed/2022/05/GHSA-q5r2-29vq-xvw2/GHSA-q5r2-29vq-xvw2.json @@ -7,12 +7,8 @@ "CVE-2005-3411" ], "details": "Cross-site scripting (XSS) vulnerability in post.asp in Snitz Forums 2000 3.4.05 allows remote attackers to inject arbitrary web script or HTML via the type parameter in a Topic method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q644-f63m-q633/GHSA-q644-f63m-q633.json b/advisories/unreviewed/2022/05/GHSA-q644-f63m-q633/GHSA-q644-f63m-q633.json index 9180c886ffb..255716111d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-q644-f63m-q633/GHSA-q644-f63m-q633.json +++ b/advisories/unreviewed/2022/05/GHSA-q644-f63m-q633/GHSA-q644-f63m-q633.json @@ -7,12 +7,8 @@ "CVE-2005-3575" ], "details": "SQL injection vulnerability in show.php in Cyphor 0.19 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q69w-f877-cj83/GHSA-q69w-f877-cj83.json b/advisories/unreviewed/2022/05/GHSA-q69w-f877-cj83/GHSA-q69w-f877-cj83.json index 888872370ca..795baf95aa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-q69w-f877-cj83/GHSA-q69w-f877-cj83.json +++ b/advisories/unreviewed/2022/05/GHSA-q69w-f877-cj83/GHSA-q69w-f877-cj83.json @@ -7,12 +7,8 @@ "CVE-2005-3481" ], "details": "Cisco IOS 12.0 to 12.4 might allow remote attackers to execute arbitrary code via a heap-based buffer overflow in system timers. NOTE: this issue does not correspond to a specific vulnerability, rather a general weakness that only increases the feasibility of exploitation of any vulnerabilities that might exist. Such design-level weaknesses normally are not included in CVE, so perhaps this issue should be REJECTed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6cx-6fv6-x8gx/GHSA-q6cx-6fv6-x8gx.json b/advisories/unreviewed/2022/05/GHSA-q6cx-6fv6-x8gx/GHSA-q6cx-6fv6-x8gx.json index e9987c33ce5..263302379af 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6cx-6fv6-x8gx/GHSA-q6cx-6fv6-x8gx.json +++ b/advisories/unreviewed/2022/05/GHSA-q6cx-6fv6-x8gx/GHSA-q6cx-6fv6-x8gx.json @@ -7,12 +7,8 @@ "CVE-2005-3819" ], "details": "Multiple SQL injection vulnerabilities in vTiger CRM 4.2 and earlier allow remote attackers to inject arbitrary SQL commands and bypass authentication via the (1) user_name and (2) date parameter in the HelpDesk module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q76h-8wrg-27q2/GHSA-q76h-8wrg-27q2.json b/advisories/unreviewed/2022/05/GHSA-q76h-8wrg-27q2/GHSA-q76h-8wrg-27q2.json index 46a5a4e1a39..2e7de530383 100644 --- a/advisories/unreviewed/2022/05/GHSA-q76h-8wrg-27q2/GHSA-q76h-8wrg-27q2.json +++ b/advisories/unreviewed/2022/05/GHSA-q76h-8wrg-27q2/GHSA-q76h-8wrg-27q2.json @@ -7,12 +7,8 @@ "CVE-2021-35994" ], "details": "Adobe After Effects version 18.2.1 (and earlier) is affected by an out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q7cm-hp8h-fqvw/GHSA-q7cm-hp8h-fqvw.json b/advisories/unreviewed/2022/05/GHSA-q7cm-hp8h-fqvw/GHSA-q7cm-hp8h-fqvw.json index 5a6b1bb43fd..b6b5908241a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7cm-hp8h-fqvw/GHSA-q7cm-hp8h-fqvw.json +++ b/advisories/unreviewed/2022/05/GHSA-q7cm-hp8h-fqvw/GHSA-q7cm-hp8h-fqvw.json @@ -7,12 +7,8 @@ "CVE-2005-3741" ], "details": "Almond Classifieds does not properly verify the password, which allows attackers to bypass access restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8cw-f2cj-49gc/GHSA-q8cw-f2cj-49gc.json b/advisories/unreviewed/2022/05/GHSA-q8cw-f2cj-49gc/GHSA-q8cw-f2cj-49gc.json index 24991426142..ffcd41364ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8cw-f2cj-49gc/GHSA-q8cw-f2cj-49gc.json +++ b/advisories/unreviewed/2022/05/GHSA-q8cw-f2cj-49gc/GHSA-q8cw-f2cj-49gc.json @@ -7,12 +7,8 @@ "CVE-2005-3657" ], "details": "The ActiveX control in MCINSCTL.DLL for McAfee VirusScan Security Center does not use the IObjectSafetySiteLock API to restrict access to required domains, which allows remote attackers to create or append to arbitrary files via the StartLog and AddLog methods in the MCINSTALL.McLog object.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8x6-pfjx-mfjg/GHSA-q8x6-pfjx-mfjg.json b/advisories/unreviewed/2022/05/GHSA-q8x6-pfjx-mfjg/GHSA-q8x6-pfjx-mfjg.json index 345ac0de335..d73694a8976 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8x6-pfjx-mfjg/GHSA-q8x6-pfjx-mfjg.json +++ b/advisories/unreviewed/2022/05/GHSA-q8x6-pfjx-mfjg/GHSA-q8x6-pfjx-mfjg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q98v-8mff-57hg/GHSA-q98v-8mff-57hg.json b/advisories/unreviewed/2022/05/GHSA-q98v-8mff-57hg/GHSA-q98v-8mff-57hg.json index 6e1e5e9918a..2b5fc236131 100644 --- a/advisories/unreviewed/2022/05/GHSA-q98v-8mff-57hg/GHSA-q98v-8mff-57hg.json +++ b/advisories/unreviewed/2022/05/GHSA-q98v-8mff-57hg/GHSA-q98v-8mff-57hg.json @@ -7,12 +7,8 @@ "CVE-2005-3807" ], "details": "Memory leak in the VFS file lease handling in locks.c in Linux kernels 2.6.10 to 2.6.15 allows local users to cause a denial of service (memory exhaustion) via certain Samba activities that cause an fasync entry to be re-allocated by the fcntl_setlease function after the fasync queue has already been cleaned by the locks_delete_lock function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qc42-vwhq-67xp/GHSA-qc42-vwhq-67xp.json b/advisories/unreviewed/2022/05/GHSA-qc42-vwhq-67xp/GHSA-qc42-vwhq-67xp.json index 2f834c686a2..37d9326dd87 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc42-vwhq-67xp/GHSA-qc42-vwhq-67xp.json +++ b/advisories/unreviewed/2022/05/GHSA-qc42-vwhq-67xp/GHSA-qc42-vwhq-67xp.json @@ -7,12 +7,8 @@ "CVE-2005-3835" ], "details": "PHP remote file inclusion vulnerability in support/index.php in DeskLance 2.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the main parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qc77-j45h-72gr/GHSA-qc77-j45h-72gr.json b/advisories/unreviewed/2022/05/GHSA-qc77-j45h-72gr/GHSA-qc77-j45h-72gr.json index 7e953d48055..b4ed3f6f00c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc77-j45h-72gr/GHSA-qc77-j45h-72gr.json +++ b/advisories/unreviewed/2022/05/GHSA-qc77-j45h-72gr/GHSA-qc77-j45h-72gr.json @@ -7,12 +7,8 @@ "CVE-2005-3589" ], "details": "Buffer overflow in FileZilla Server Terminal 0.9.4d may allow remote attackers to cause a denial of service (terminal crash) via a long USER ftp command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qf9p-x7hr-4hw3/GHSA-qf9p-x7hr-4hw3.json b/advisories/unreviewed/2022/05/GHSA-qf9p-x7hr-4hw3/GHSA-qf9p-x7hr-4hw3.json index 79e2ad5be18..180a4bcfca8 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf9p-x7hr-4hw3/GHSA-qf9p-x7hr-4hw3.json +++ b/advisories/unreviewed/2022/05/GHSA-qf9p-x7hr-4hw3/GHSA-qf9p-x7hr-4hw3.json @@ -7,12 +7,8 @@ "CVE-2021-30693" ], "details": "A validation issue was addressed with improved logic. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted image may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfcq-56m3-q78v/GHSA-qfcq-56m3-q78v.json b/advisories/unreviewed/2022/05/GHSA-qfcq-56m3-q78v/GHSA-qfcq-56m3-q78v.json index 7430ad1537e..97ea87c4346 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfcq-56m3-q78v/GHSA-qfcq-56m3-q78v.json +++ b/advisories/unreviewed/2022/05/GHSA-qfcq-56m3-q78v/GHSA-qfcq-56m3-q78v.json @@ -7,12 +7,8 @@ "CVE-2021-39614" ], "details": "D-Link DVX-2000MS contains hard-coded credentials for undocumented user accounts in the '/etc/passwd' file. As weak passwords have been used, the plaintext passwords can be recovered from the hash values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfqj-98r2-wxwf/GHSA-qfqj-98r2-wxwf.json b/advisories/unreviewed/2022/05/GHSA-qfqj-98r2-wxwf/GHSA-qfqj-98r2-wxwf.json index 4441bb0d932..0508bfc6a62 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfqj-98r2-wxwf/GHSA-qfqj-98r2-wxwf.json +++ b/advisories/unreviewed/2022/05/GHSA-qfqj-98r2-wxwf/GHSA-qfqj-98r2-wxwf.json @@ -7,12 +7,8 @@ "CVE-2021-28554" ], "details": "Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qfrh-p934-938f/GHSA-qfrh-p934-938f.json b/advisories/unreviewed/2022/05/GHSA-qfrh-p934-938f/GHSA-qfrh-p934-938f.json index 8ce3495c839..e971eb4f7d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfrh-p934-938f/GHSA-qfrh-p934-938f.json +++ b/advisories/unreviewed/2022/05/GHSA-qfrh-p934-938f/GHSA-qfrh-p934-938f.json @@ -7,12 +7,8 @@ "CVE-2021-26040" ], "details": "An issue was discovered in Joomla! 4.0.0. The media manager does not correctly check the user's permissions before executing a file deletion command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qg6h-2v97-496v/GHSA-qg6h-2v97-496v.json b/advisories/unreviewed/2022/05/GHSA-qg6h-2v97-496v/GHSA-qg6h-2v97-496v.json index b0760c9ff7a..caa73e604ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg6h-2v97-496v/GHSA-qg6h-2v97-496v.json +++ b/advisories/unreviewed/2022/05/GHSA-qg6h-2v97-496v/GHSA-qg6h-2v97-496v.json @@ -7,12 +7,8 @@ "CVE-2005-3738" ], "details": "globals.php in Mambo Site Server 4.0.14 and earlier, when register_globals is disabled, allows remote attackers to overwrite variables in the GLOBALS array and conduct various attacks, as demonstrated using the mosConfig_absolute_path parameter to content.html.php for remote PHP file inclusion.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qgcj-4jfj-j79m/GHSA-qgcj-4jfj-j79m.json b/advisories/unreviewed/2022/05/GHSA-qgcj-4jfj-j79m/GHSA-qgcj-4jfj-j79m.json index 33b31306655..28415ab6225 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgcj-4jfj-j79m/GHSA-qgcj-4jfj-j79m.json +++ b/advisories/unreviewed/2022/05/GHSA-qgcj-4jfj-j79m/GHSA-qgcj-4jfj-j79m.json @@ -7,12 +7,8 @@ "CVE-2020-20675" ], "details": "Nuishop v2.3 contains a SQL injection vulnerability in /goods/getGoodsListByConditions/.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qgr8-fx9m-6qf5/GHSA-qgr8-fx9m-6qf5.json b/advisories/unreviewed/2022/05/GHSA-qgr8-fx9m-6qf5/GHSA-qgr8-fx9m-6qf5.json index 1013bda73bc..ac06938363f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgr8-fx9m-6qf5/GHSA-qgr8-fx9m-6qf5.json +++ b/advisories/unreviewed/2022/05/GHSA-qgr8-fx9m-6qf5/GHSA-qgr8-fx9m-6qf5.json @@ -7,12 +7,8 @@ "CVE-2005-3841" ], "details": "Cross-site scripting (XSS) vulnerability in kPlaylist 1.6 (build 400), and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the searchfor search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qgvw-v9xq-rjp9/GHSA-qgvw-v9xq-rjp9.json b/advisories/unreviewed/2022/05/GHSA-qgvw-v9xq-rjp9/GHSA-qgvw-v9xq-rjp9.json index f7c92d1ff49..383cddecce2 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgvw-v9xq-rjp9/GHSA-qgvw-v9xq-rjp9.json +++ b/advisories/unreviewed/2022/05/GHSA-qgvw-v9xq-rjp9/GHSA-qgvw-v9xq-rjp9.json @@ -7,12 +7,8 @@ "CVE-2021-35215" ], "details": "Insecure deserialization leading to Remote Code Execution was detected in the Orion Platform version 2020.2.5. Authentication is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qgxp-9f76-rc2q/GHSA-qgxp-9f76-rc2q.json b/advisories/unreviewed/2022/05/GHSA-qgxp-9f76-rc2q/GHSA-qgxp-9f76-rc2q.json index f6af56cdf32..d28aac02deb 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgxp-9f76-rc2q/GHSA-qgxp-9f76-rc2q.json +++ b/advisories/unreviewed/2022/05/GHSA-qgxp-9f76-rc2q/GHSA-qgxp-9f76-rc2q.json @@ -7,12 +7,8 @@ "CVE-2020-18114" ], "details": "An arbitrary file upload vulnerability in the /uploads/dede component of DedeCMS V5.7SP2 allows attackers to upload a webshell in HTM format.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qh32-g7xq-vjj8/GHSA-qh32-g7xq-vjj8.json b/advisories/unreviewed/2022/05/GHSA-qh32-g7xq-vjj8/GHSA-qh32-g7xq-vjj8.json index 4d5dcfcf3d8..5b7b6db97d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-qh32-g7xq-vjj8/GHSA-qh32-g7xq-vjj8.json +++ b/advisories/unreviewed/2022/05/GHSA-qh32-g7xq-vjj8/GHSA-qh32-g7xq-vjj8.json @@ -7,12 +7,8 @@ "CVE-2021-22023" ], "details": "The vRealize Operations Manager API (8.x prior to 8.5) has insecure object reference vulnerability. A malicious actor with administrative access to vRealize Operations Manager API may be able to modify other users information leading to an account takeover.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qhwv-r6rm-h49r/GHSA-qhwv-r6rm-h49r.json b/advisories/unreviewed/2022/05/GHSA-qhwv-r6rm-h49r/GHSA-qhwv-r6rm-h49r.json index 30ca10bffa2..40e81bd564b 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhwv-r6rm-h49r/GHSA-qhwv-r6rm-h49r.json +++ b/advisories/unreviewed/2022/05/GHSA-qhwv-r6rm-h49r/GHSA-qhwv-r6rm-h49r.json @@ -7,12 +7,8 @@ "CVE-2020-18123" ], "details": "A cross-site request forgery (CSRF) vulnerability in Indexhibit 2.1.5 allows attackers to arbitrarily delete admin accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj4r-rvgq-xf74/GHSA-qj4r-rvgq-xf74.json b/advisories/unreviewed/2022/05/GHSA-qj4r-rvgq-xf74/GHSA-qj4r-rvgq-xf74.json index 79ac67908e2..faa2449b8b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj4r-rvgq-xf74/GHSA-qj4r-rvgq-xf74.json +++ b/advisories/unreviewed/2022/05/GHSA-qj4r-rvgq-xf74/GHSA-qj4r-rvgq-xf74.json @@ -7,12 +7,8 @@ "CVE-2005-4044" ], "details": "Cross-site scripting (XSS) vulnerability in search.cgi in Amazon Search Directory 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly the search parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qjjc-j7xm-pf48/GHSA-qjjc-j7xm-pf48.json b/advisories/unreviewed/2022/05/GHSA-qjjc-j7xm-pf48/GHSA-qjjc-j7xm-pf48.json index 3eabd9f22a2..cd409a9690d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjjc-j7xm-pf48/GHSA-qjjc-j7xm-pf48.json +++ b/advisories/unreviewed/2022/05/GHSA-qjjc-j7xm-pf48/GHSA-qjjc-j7xm-pf48.json @@ -7,12 +7,8 @@ "CVE-2021-20814" ], "details": "Cross-site scripting vulnerability in Setting screen of ContentType Information Widget Plugin of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series), Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series), and Movable Type Premium 1.44 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjp8-q2c4-mpmm/GHSA-qjp8-q2c4-mpmm.json b/advisories/unreviewed/2022/05/GHSA-qjp8-q2c4-mpmm/GHSA-qjp8-q2c4-mpmm.json index c3f67057d2e..e926650b1bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjp8-q2c4-mpmm/GHSA-qjp8-q2c4-mpmm.json +++ b/advisories/unreviewed/2022/05/GHSA-qjp8-q2c4-mpmm/GHSA-qjp8-q2c4-mpmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qmq6-jpvg-j547/GHSA-qmq6-jpvg-j547.json b/advisories/unreviewed/2022/05/GHSA-qmq6-jpvg-j547/GHSA-qmq6-jpvg-j547.json index 59149574fec..f5371b29c52 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmq6-jpvg-j547/GHSA-qmq6-jpvg-j547.json +++ b/advisories/unreviewed/2022/05/GHSA-qmq6-jpvg-j547/GHSA-qmq6-jpvg-j547.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qmx9-ff2x-f55h/GHSA-qmx9-ff2x-f55h.json b/advisories/unreviewed/2022/05/GHSA-qmx9-ff2x-f55h/GHSA-qmx9-ff2x-f55h.json index fbb32256030..4b421696824 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmx9-ff2x-f55h/GHSA-qmx9-ff2x-f55h.json +++ b/advisories/unreviewed/2022/05/GHSA-qmx9-ff2x-f55h/GHSA-qmx9-ff2x-f55h.json @@ -7,12 +7,8 @@ "CVE-2005-3864" ], "details": "SQL injection vulnerability in index.php in SourceWell 1.1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the cnt parameter. NOTE: various reports indicate that the affected version is 1.1.3, but as of 2005-11-29, the most recent version appears to be 1.1.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qp2v-hcwf-cp45/GHSA-qp2v-hcwf-cp45.json b/advisories/unreviewed/2022/05/GHSA-qp2v-hcwf-cp45/GHSA-qp2v-hcwf-cp45.json index 37762fbfde8..9e0a24daa0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp2v-hcwf-cp45/GHSA-qp2v-hcwf-cp45.json +++ b/advisories/unreviewed/2022/05/GHSA-qp2v-hcwf-cp45/GHSA-qp2v-hcwf-cp45.json @@ -7,12 +7,8 @@ "CVE-2005-3663" ], "details": "Unquoted Windows search path vulnerability in Kaspersky Anti-Virus 5.0 might allow local users to gain privileges via a malicious \"program.exe\" file in the C: folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qp9m-g55q-823w/GHSA-qp9m-g55q-823w.json b/advisories/unreviewed/2022/05/GHSA-qp9m-g55q-823w/GHSA-qp9m-g55q-823w.json index 3546c63a74c..d37df9f1915 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp9m-g55q-823w/GHSA-qp9m-g55q-823w.json +++ b/advisories/unreviewed/2022/05/GHSA-qp9m-g55q-823w/GHSA-qp9m-g55q-823w.json @@ -7,12 +7,8 @@ "CVE-2021-22022" ], "details": "The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary file read vulnerability. A malicious actor with administrative access to vRealize Operations Manager API can read any arbitrary file on server leading to information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpjc-r4c8-485x/GHSA-qpjc-r4c8-485x.json b/advisories/unreviewed/2022/05/GHSA-qpjc-r4c8-485x/GHSA-qpjc-r4c8-485x.json index 85608729c6a..7bf2ec039a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpjc-r4c8-485x/GHSA-qpjc-r4c8-485x.json +++ b/advisories/unreviewed/2022/05/GHSA-qpjc-r4c8-485x/GHSA-qpjc-r4c8-485x.json @@ -7,12 +7,8 @@ "CVE-2021-36531" ], "details": "ngiflib 0.4 has a heap overflow in GetByte() at ngiflib.c:70 in NGIFLIB_NO_FILE mode, GetByte() reads memory buffer without checking the boundary.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpmg-vjr8-h687/GHSA-qpmg-vjr8-h687.json b/advisories/unreviewed/2022/05/GHSA-qpmg-vjr8-h687/GHSA-qpmg-vjr8-h687.json index 1b05757f7c2..51e65ce4598 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpmg-vjr8-h687/GHSA-qpmg-vjr8-h687.json +++ b/advisories/unreviewed/2022/05/GHSA-qpmg-vjr8-h687/GHSA-qpmg-vjr8-h687.json @@ -7,12 +7,8 @@ "CVE-2005-3818" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in vTiger CRM 4.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) various input fields, including the contact, lead, and first or last name fields, (2) the record parameter in a DetailView action in the Leads module for index.php, (3) the $_SERVER['PHP_SELF'] variable, which is used in multiple locations such as index.php, and (4) aggregated RSS feeds in the RSS aggregation module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq8w-fhxq-rfwv/GHSA-qq8w-fhxq-rfwv.json b/advisories/unreviewed/2022/05/GHSA-qq8w-fhxq-rfwv/GHSA-qq8w-fhxq-rfwv.json index 5725155fbe1..49e00ec2793 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq8w-fhxq-rfwv/GHSA-qq8w-fhxq-rfwv.json +++ b/advisories/unreviewed/2022/05/GHSA-qq8w-fhxq-rfwv/GHSA-qq8w-fhxq-rfwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qqwr-fprh-7x5m/GHSA-qqwr-fprh-7x5m.json b/advisories/unreviewed/2022/05/GHSA-qqwr-fprh-7x5m/GHSA-qqwr-fprh-7x5m.json index 6775b5a9cd9..a55210bac83 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqwr-fprh-7x5m/GHSA-qqwr-fprh-7x5m.json +++ b/advisories/unreviewed/2022/05/GHSA-qqwr-fprh-7x5m/GHSA-qqwr-fprh-7x5m.json @@ -7,12 +7,8 @@ "CVE-2005-3866" ], "details": "Cross-site scripting (XSS) vulnerability in SearchFeed Search Engine 1.3.2 and earlier allows remote attackers to inject arbitrary HTML and web script, possibly via the REQ parameter, which is used when performing a search.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qr7c-hh68-587x/GHSA-qr7c-hh68-587x.json b/advisories/unreviewed/2022/05/GHSA-qr7c-hh68-587x/GHSA-qr7c-hh68-587x.json index 7bcf063315b..82ab619f104 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr7c-hh68-587x/GHSA-qr7c-hh68-587x.json +++ b/advisories/unreviewed/2022/05/GHSA-qr7c-hh68-587x/GHSA-qr7c-hh68-587x.json @@ -7,12 +7,8 @@ "CVE-2005-3638" ], "details": "Cross-site scripting (XSS) vulnerabilities in Ekinboard 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in profile.php and (2) titles of posts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qr83-834m-693r/GHSA-qr83-834m-693r.json b/advisories/unreviewed/2022/05/GHSA-qr83-834m-693r/GHSA-qr83-834m-693r.json index bb0d63d6748..a570389fbba 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr83-834m-693r/GHSA-qr83-834m-693r.json +++ b/advisories/unreviewed/2022/05/GHSA-qr83-834m-693r/GHSA-qr83-834m-693r.json @@ -7,12 +7,8 @@ "CVE-2005-3548" ], "details": "Directory traversal vulnerability in Task Manager in Invision Power Board (IP.Board) 2.0.1 allows limited remote attackers to include files via a .. (dot dot) in the \"Task PHP File To Run\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrm6-3rqm-rg68/GHSA-qrm6-3rqm-rg68.json b/advisories/unreviewed/2022/05/GHSA-qrm6-3rqm-rg68/GHSA-qrm6-3rqm-rg68.json index 2d22b15a53f..d310a3c1050 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrm6-3rqm-rg68/GHSA-qrm6-3rqm-rg68.json +++ b/advisories/unreviewed/2022/05/GHSA-qrm6-3rqm-rg68/GHSA-qrm6-3rqm-rg68.json @@ -7,12 +7,8 @@ "CVE-2005-3873" ], "details": "SQL injection vulnerability in topic.php in ShockBoard 3.0 and 4.0 allows remote attackers to execute arbitrary SQL commands via the offset parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qvv9-ff76-h7r8/GHSA-qvv9-ff76-h7r8.json b/advisories/unreviewed/2022/05/GHSA-qvv9-ff76-h7r8/GHSA-qvv9-ff76-h7r8.json index e2903d7ccf9..46117c5a185 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvv9-ff76-h7r8/GHSA-qvv9-ff76-h7r8.json +++ b/advisories/unreviewed/2022/05/GHSA-qvv9-ff76-h7r8/GHSA-qvv9-ff76-h7r8.json @@ -7,12 +7,8 @@ "CVE-2005-3715" ], "details": "Senao SI-680H Wireless VoIP Phone Firmware 0.03.0839 leaves the VxWorks debugger UDP port 17185 available without authentication, which allows attackers to access the phone OS, obtain sensitive information, and cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qw3g-m4r4-j93h/GHSA-qw3g-m4r4-j93h.json b/advisories/unreviewed/2022/05/GHSA-qw3g-m4r4-j93h/GHSA-qw3g-m4r4-j93h.json index d4265525ab4..57fd37d9f0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qw3g-m4r4-j93h/GHSA-qw3g-m4r4-j93h.json +++ b/advisories/unreviewed/2022/05/GHSA-qw3g-m4r4-j93h/GHSA-qw3g-m4r4-j93h.json @@ -7,12 +7,8 @@ "CVE-2005-3697" ], "details": "Unspecified vulnerability in the administration interface in Uresk Links 2.0 Lite allows remote attackers to bypass authentication via unspecified vectors in index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qwf2-wg38-rvpm/GHSA-qwf2-wg38-rvpm.json b/advisories/unreviewed/2022/05/GHSA-qwf2-wg38-rvpm/GHSA-qwf2-wg38-rvpm.json index 70f33099c87..6614135c848 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwf2-wg38-rvpm/GHSA-qwf2-wg38-rvpm.json +++ b/advisories/unreviewed/2022/05/GHSA-qwf2-wg38-rvpm/GHSA-qwf2-wg38-rvpm.json @@ -7,12 +7,8 @@ "CVE-2005-3640" ], "details": "Multiple buffer overflows in the IMAP Groupware Mail server of Floosietek FTGate (FTGate4) 4.1 allow remote attackers to execute arbitrary code via long arguments to various IMAP commands, as demonstrated with the EXAMINE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwfr-mvx9-hhjf/GHSA-qwfr-mvx9-hhjf.json b/advisories/unreviewed/2022/05/GHSA-qwfr-mvx9-hhjf/GHSA-qwfr-mvx9-hhjf.json index 0adb1a060ca..0a1a31258f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwfr-mvx9-hhjf/GHSA-qwfr-mvx9-hhjf.json +++ b/advisories/unreviewed/2022/05/GHSA-qwfr-mvx9-hhjf/GHSA-qwfr-mvx9-hhjf.json @@ -7,12 +7,8 @@ "CVE-2005-3413" ], "details": "Cross-site scripting (XSS) vulnerability in desktop.php in eyeOS 0.8.4 allows remote attackers to inject arbitrary web script or HTML via the motd parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qx4w-pmj5-w2pm/GHSA-qx4w-pmj5-w2pm.json b/advisories/unreviewed/2022/05/GHSA-qx4w-pmj5-w2pm/GHSA-qx4w-pmj5-w2pm.json index b8766da9d52..0e06b7bc5db 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx4w-pmj5-w2pm/GHSA-qx4w-pmj5-w2pm.json +++ b/advisories/unreviewed/2022/05/GHSA-qx4w-pmj5-w2pm/GHSA-qx4w-pmj5-w2pm.json @@ -7,12 +7,8 @@ "CVE-2005-3686" ], "details": "SQL injection vulnerability in search.inc.php in Unclassified NewsBoard before 1.5.3 Patch 4 allows remote attackers to execute arbitrary SQL commands via the (1) DateFrom or (2) DateUntil parameter to forum.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r2xv-687j-x7wf/GHSA-r2xv-687j-x7wf.json b/advisories/unreviewed/2022/05/GHSA-r2xv-687j-x7wf/GHSA-r2xv-687j-x7wf.json index e0f8eb0496d..27114febf9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2xv-687j-x7wf/GHSA-r2xv-687j-x7wf.json +++ b/advisories/unreviewed/2022/05/GHSA-r2xv-687j-x7wf/GHSA-r2xv-687j-x7wf.json @@ -7,12 +7,8 @@ "CVE-2005-3812" ], "details": "freeFTPd 1.0.10 allows remote authenticated users to cause a denial of service (null dereference and crash) via a PORT command with missing arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3fq-7p2f-f5f3/GHSA-r3fq-7p2f-f5f3.json b/advisories/unreviewed/2022/05/GHSA-r3fq-7p2f-f5f3/GHSA-r3fq-7p2f-f5f3.json index 8cb3f0c38ef..2fb8aff7865 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3fq-7p2f-f5f3/GHSA-r3fq-7p2f-f5f3.json +++ b/advisories/unreviewed/2022/05/GHSA-r3fq-7p2f-f5f3/GHSA-r3fq-7p2f-f5f3.json @@ -7,12 +7,8 @@ "CVE-2005-3500" ], "details": "The tnef_attachment function in tnef.c for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via a crafted value in a CAB file that causes ClamAV to repeatedly scan the same block.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3jr-r687-ggmc/GHSA-r3jr-r687-ggmc.json b/advisories/unreviewed/2022/05/GHSA-r3jr-r687-ggmc/GHSA-r3jr-r687-ggmc.json index 4c3ec27c4ac..a495a9a8e8c 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3jr-r687-ggmc/GHSA-r3jr-r687-ggmc.json +++ b/advisories/unreviewed/2022/05/GHSA-r3jr-r687-ggmc/GHSA-r3jr-r687-ggmc.json @@ -7,12 +7,8 @@ "CVE-2021-28615" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Our-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3m8-2w46-p3rf/GHSA-r3m8-2w46-p3rf.json b/advisories/unreviewed/2022/05/GHSA-r3m8-2w46-p3rf/GHSA-r3m8-2w46-p3rf.json index f12cf3e4782..742f4f6c199 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3m8-2w46-p3rf/GHSA-r3m8-2w46-p3rf.json +++ b/advisories/unreviewed/2022/05/GHSA-r3m8-2w46-p3rf/GHSA-r3m8-2w46-p3rf.json @@ -7,12 +7,8 @@ "CVE-2021-37334" ], "details": "A security issue in Umbraco Forms 4.0.0 to and including 8.7.5 could lead to a remote code execution attack and/or arbitrary file deletion.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r426-fgvw-5w9p/GHSA-r426-fgvw-5w9p.json b/advisories/unreviewed/2022/05/GHSA-r426-fgvw-5w9p/GHSA-r426-fgvw-5w9p.json index 11505c7eaee..374b3c4750e 100644 --- a/advisories/unreviewed/2022/05/GHSA-r426-fgvw-5w9p/GHSA-r426-fgvw-5w9p.json +++ b/advisories/unreviewed/2022/05/GHSA-r426-fgvw-5w9p/GHSA-r426-fgvw-5w9p.json @@ -7,12 +7,8 @@ "CVE-2005-3767" ], "details": "Exponent CMS 0.96.3 and later versions does not properly restrict the types of uploaded files, which allows remote attackers to upload and execute PHP files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5w9-hv7v-5mpj/GHSA-r5w9-hv7v-5mpj.json b/advisories/unreviewed/2022/05/GHSA-r5w9-hv7v-5mpj/GHSA-r5w9-hv7v-5mpj.json index 6df83450539..d2fe6d96e10 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5w9-hv7v-5mpj/GHSA-r5w9-hv7v-5mpj.json +++ b/advisories/unreviewed/2022/05/GHSA-r5w9-hv7v-5mpj/GHSA-r5w9-hv7v-5mpj.json @@ -7,12 +7,8 @@ "CVE-2005-3323" ], "details": "docutils in Zope 2.6, 2.7 before 2.7.8, and 2.8 before 2.8.2 allows remote attackers to include arbitrary files via include directives in RestructuredText functionality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r62g-mfv7-j6q7/GHSA-r62g-mfv7-j6q7.json b/advisories/unreviewed/2022/05/GHSA-r62g-mfv7-j6q7/GHSA-r62g-mfv7-j6q7.json index 213a4447a34..1ae3096e586 100644 --- a/advisories/unreviewed/2022/05/GHSA-r62g-mfv7-j6q7/GHSA-r62g-mfv7-j6q7.json +++ b/advisories/unreviewed/2022/05/GHSA-r62g-mfv7-j6q7/GHSA-r62g-mfv7-j6q7.json @@ -7,12 +7,8 @@ "CVE-2005-3526" ], "details": "Buffer overflow in the IMAP daemon in Ipswitch Collaboration Suite 2006.02 and earlier allows remote authenticated users to execute arbitrary code via a long FETCH command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r66v-p5p6-gp3p/GHSA-r66v-p5p6-gp3p.json b/advisories/unreviewed/2022/05/GHSA-r66v-p5p6-gp3p/GHSA-r66v-p5p6-gp3p.json index af8fa340543..2f8002272e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-r66v-p5p6-gp3p/GHSA-r66v-p5p6-gp3p.json +++ b/advisories/unreviewed/2022/05/GHSA-r66v-p5p6-gp3p/GHSA-r66v-p5p6-gp3p.json @@ -7,12 +7,8 @@ "CVE-2005-3742" ], "details": "Cross-site scripting (XSS) vulnerability in popup.php in Advanced Poll 2.0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the poll_ident parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r6j9-mc43-m5jw/GHSA-r6j9-mc43-m5jw.json b/advisories/unreviewed/2022/05/GHSA-r6j9-mc43-m5jw/GHSA-r6j9-mc43-m5jw.json index 7ef4015ed20..af0a8513896 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6j9-mc43-m5jw/GHSA-r6j9-mc43-m5jw.json +++ b/advisories/unreviewed/2022/05/GHSA-r6j9-mc43-m5jw/GHSA-r6j9-mc43-m5jw.json @@ -7,12 +7,8 @@ "CVE-2005-3664" ], "details": "Heap-based buffer overflow in Kaspersky Anti-Virus Engine, as used in Kaspersky Personal 5.0.227, Anti-Virus On-Demand Scanner for Linux 5.0.5, and F-Secure Anti-Virus for Linux 4.50 allows remote attackers to execute arbitrary code via a crafted CHM file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r73v-c4r5-xmf5/GHSA-r73v-c4r5-xmf5.json b/advisories/unreviewed/2022/05/GHSA-r73v-c4r5-xmf5/GHSA-r73v-c4r5-xmf5.json index ff30691457e..1b01b7821f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-r73v-c4r5-xmf5/GHSA-r73v-c4r5-xmf5.json +++ b/advisories/unreviewed/2022/05/GHSA-r73v-c4r5-xmf5/GHSA-r73v-c4r5-xmf5.json @@ -7,12 +7,8 @@ "CVE-2005-3516" ], "details": "Cross-site scripting (XSS) vulnerability in recommend.php in Chipmunk Directory script allows remote attackers to inject arbitrary web script or HTML via the entryID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7cj-2ghq-wj88/GHSA-r7cj-2ghq-wj88.json b/advisories/unreviewed/2022/05/GHSA-r7cj-2ghq-wj88/GHSA-r7cj-2ghq-wj88.json index 389cdb3b0c3..e827abaf16a 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7cj-2ghq-wj88/GHSA-r7cj-2ghq-wj88.json +++ b/advisories/unreviewed/2022/05/GHSA-r7cj-2ghq-wj88/GHSA-r7cj-2ghq-wj88.json @@ -7,12 +7,8 @@ "CVE-2005-3649" ], "details": "jumpto.php in Moodle 1.5.2 allows remote attackers to redirect users to other sites via the jump parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7gw-9vvq-w4x5/GHSA-r7gw-9vvq-w4x5.json b/advisories/unreviewed/2022/05/GHSA-r7gw-9vvq-w4x5/GHSA-r7gw-9vvq-w4x5.json index 99d0e42435c..bd4f192e746 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7gw-9vvq-w4x5/GHSA-r7gw-9vvq-w4x5.json +++ b/advisories/unreviewed/2022/05/GHSA-r7gw-9vvq-w4x5/GHSA-r7gw-9vvq-w4x5.json @@ -7,12 +7,8 @@ "CVE-2005-3495" ], "details": "Ar-blog 5.2 and earlier allows remote attackers to bypass authentication by modifying cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7vm-j3v5-crmv/GHSA-r7vm-j3v5-crmv.json b/advisories/unreviewed/2022/05/GHSA-r7vm-j3v5-crmv/GHSA-r7vm-j3v5-crmv.json index ec839fa484c..f556e8878c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7vm-j3v5-crmv/GHSA-r7vm-j3v5-crmv.json +++ b/advisories/unreviewed/2022/05/GHSA-r7vm-j3v5-crmv/GHSA-r7vm-j3v5-crmv.json @@ -7,12 +7,8 @@ "CVE-2005-3838" ], "details": "Multiple SQL injection vulnerabilities in search.php in IsolSoft Support Center 2.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) lorder, (2) Priority, (3) Status, (4) Category, (5) searchvalue, and (6) field parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r886-qxxf-vc94/GHSA-r886-qxxf-vc94.json b/advisories/unreviewed/2022/05/GHSA-r886-qxxf-vc94/GHSA-r886-qxxf-vc94.json index 73e9c32c4ec..5aeeb8d0845 100644 --- a/advisories/unreviewed/2022/05/GHSA-r886-qxxf-vc94/GHSA-r886-qxxf-vc94.json +++ b/advisories/unreviewed/2022/05/GHSA-r886-qxxf-vc94/GHSA-r886-qxxf-vc94.json @@ -7,12 +7,8 @@ "CVE-2005-3543" ], "details": "SQL injection vulnerability in search.php in Phorum 5.0.0alpha through 5.0.20, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the forum_ids parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9wg-mj78-x3hm/GHSA-r9wg-mj78-x3hm.json b/advisories/unreviewed/2022/05/GHSA-r9wg-mj78-x3hm/GHSA-r9wg-mj78-x3hm.json index 5faf18aa3ab..a912d829113 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9wg-mj78-x3hm/GHSA-r9wg-mj78-x3hm.json +++ b/advisories/unreviewed/2022/05/GHSA-r9wg-mj78-x3hm/GHSA-r9wg-mj78-x3hm.json @@ -7,12 +7,8 @@ "CVE-2021-38559" ], "details": "DigitalDruid HotelDruid 3.0.2 has an XSS vulnerability in prenota.php affecting the fineperiodo1 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc33-jmrq-r7gp/GHSA-rc33-jmrq-r7gp.json b/advisories/unreviewed/2022/05/GHSA-rc33-jmrq-r7gp/GHSA-rc33-jmrq-r7gp.json index 19f6af267ae..9c58031eab1 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc33-jmrq-r7gp/GHSA-rc33-jmrq-r7gp.json +++ b/advisories/unreviewed/2022/05/GHSA-rc33-jmrq-r7gp/GHSA-rc33-jmrq-r7gp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rc3g-f2jq-vw8x/GHSA-rc3g-f2jq-vw8x.json b/advisories/unreviewed/2022/05/GHSA-rc3g-f2jq-vw8x/GHSA-rc3g-f2jq-vw8x.json index 5e29fe6dadb..efa31642949 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc3g-f2jq-vw8x/GHSA-rc3g-f2jq-vw8x.json +++ b/advisories/unreviewed/2022/05/GHSA-rc3g-f2jq-vw8x/GHSA-rc3g-f2jq-vw8x.json @@ -7,12 +7,8 @@ "CVE-2005-3789" ], "details": "Multiple directory traversal vulnerabilities in phpwcms 1.2.5 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) form_lang parameter in login.php and (2) the imgdir parameter in random_image.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf88-cqw8-w4p4/GHSA-rf88-cqw8-w4p4.json b/advisories/unreviewed/2022/05/GHSA-rf88-cqw8-w4p4/GHSA-rf88-cqw8-w4p4.json index 2da644db480..63a1ec34dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf88-cqw8-w4p4/GHSA-rf88-cqw8-w4p4.json +++ b/advisories/unreviewed/2022/05/GHSA-rf88-cqw8-w4p4/GHSA-rf88-cqw8-w4p4.json @@ -7,12 +7,8 @@ "CVE-2021-28610" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rg7c-fwxq-w83r/GHSA-rg7c-fwxq-w83r.json b/advisories/unreviewed/2022/05/GHSA-rg7c-fwxq-w83r/GHSA-rg7c-fwxq-w83r.json index 4f32e70ab39..19f5a3947a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-rg7c-fwxq-w83r/GHSA-rg7c-fwxq-w83r.json +++ b/advisories/unreviewed/2022/05/GHSA-rg7c-fwxq-w83r/GHSA-rg7c-fwxq-w83r.json @@ -7,12 +7,8 @@ "CVE-2005-3655" ], "details": "Heap-based buffer overflow in Novell Open Enterprise Server Remote Manager (novell-nrm) in Novell SUSE Linux Enterprise Server 9 allows remote attackers to execute arbitrary code via an HTTP POST request with a negative Content-Length parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgjc-4jw4-4wgm/GHSA-rgjc-4jw4-4wgm.json b/advisories/unreviewed/2022/05/GHSA-rgjc-4jw4-4wgm/GHSA-rgjc-4jw4-4wgm.json index a605adb9823..9b2b6269442 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgjc-4jw4-4wgm/GHSA-rgjc-4jw4-4wgm.json +++ b/advisories/unreviewed/2022/05/GHSA-rgjc-4jw4-4wgm/GHSA-rgjc-4jw4-4wgm.json @@ -7,12 +7,8 @@ "CVE-2005-3777" ], "details": "MyBulletinBoard (MyBB) 1.0 PR2 Rev 686 allows remote attackers to delete or move private messages (PM) via modified fields in the inbox form.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rgq8-6qm3-352p/GHSA-rgq8-6qm3-352p.json b/advisories/unreviewed/2022/05/GHSA-rgq8-6qm3-352p/GHSA-rgq8-6qm3-352p.json index fd7d51fd97c..dcae323ac88 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgq8-6qm3-352p/GHSA-rgq8-6qm3-352p.json +++ b/advisories/unreviewed/2022/05/GHSA-rgq8-6qm3-352p/GHSA-rgq8-6qm3-352p.json @@ -7,12 +7,8 @@ "CVE-2021-29852" ], "details": "IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 205528.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rh3p-m63q-4v6v/GHSA-rh3p-m63q-4v6v.json b/advisories/unreviewed/2022/05/GHSA-rh3p-m63q-4v6v/GHSA-rh3p-m63q-4v6v.json index d8db1e1c9e1..f6bcede9643 100644 --- a/advisories/unreviewed/2022/05/GHSA-rh3p-m63q-4v6v/GHSA-rh3p-m63q-4v6v.json +++ b/advisories/unreviewed/2022/05/GHSA-rh3p-m63q-4v6v/GHSA-rh3p-m63q-4v6v.json @@ -7,12 +7,8 @@ "CVE-2005-3483" ], "details": "Buffer overflow in GO-Global for Windows 3.1.0.3270 and earlier allows remote attackers to execute arbitrary code via a data block that is longer than the specified data block size.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhff-65hp-55rw/GHSA-rhff-65hp-55rw.json b/advisories/unreviewed/2022/05/GHSA-rhff-65hp-55rw/GHSA-rhff-65hp-55rw.json index cd47af85ccb..71fb53886d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhff-65hp-55rw/GHSA-rhff-65hp-55rw.json +++ b/advisories/unreviewed/2022/05/GHSA-rhff-65hp-55rw/GHSA-rhff-65hp-55rw.json @@ -7,12 +7,8 @@ "CVE-2021-36030" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability during the checkout process. An unauthenticated attacker can leverage this vulnerability to alter the price of items.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhfr-97mp-g2gm/GHSA-rhfr-97mp-g2gm.json b/advisories/unreviewed/2022/05/GHSA-rhfr-97mp-g2gm/GHSA-rhfr-97mp-g2gm.json index 63f0d20428a..acc98333a86 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhfr-97mp-g2gm/GHSA-rhfr-97mp-g2gm.json +++ b/advisories/unreviewed/2022/05/GHSA-rhfr-97mp-g2gm/GHSA-rhfr-97mp-g2gm.json @@ -7,12 +7,8 @@ "CVE-2005-3839" ], "details": "Cross-site scripting (XSS) vulnerability in SupportPRO Supportdesk allows remote attackers to inject arbitrary web script or HTML via the (1) post tickers and (2) view tickets options.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rhv5-wwvq-gqxr/GHSA-rhv5-wwvq-gqxr.json b/advisories/unreviewed/2022/05/GHSA-rhv5-wwvq-gqxr/GHSA-rhv5-wwvq-gqxr.json index e971dddeace..5cc864fa185 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhv5-wwvq-gqxr/GHSA-rhv5-wwvq-gqxr.json +++ b/advisories/unreviewed/2022/05/GHSA-rhv5-wwvq-gqxr/GHSA-rhv5-wwvq-gqxr.json @@ -7,12 +7,8 @@ "CVE-2005-3430" ], "details": "Incomplete blacklist vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to upload and execute arbitrary script files by giving the files specific extensions, such as (1) .unk, (2) .asa, and possibly (3) .htr and (4) .aspx, which are not filtered like the .asp extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjc4-4vrj-53rj/GHSA-rjc4-4vrj-53rj.json b/advisories/unreviewed/2022/05/GHSA-rjc4-4vrj-53rj/GHSA-rjc4-4vrj-53rj.json index cf8af4a5c35..75d4723b939 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjc4-4vrj-53rj/GHSA-rjc4-4vrj-53rj.json +++ b/advisories/unreviewed/2022/05/GHSA-rjc4-4vrj-53rj/GHSA-rjc4-4vrj-53rj.json @@ -7,12 +7,8 @@ "CVE-2005-3491" ], "details": "Multiple buffer overflows in the receiver function in loop.c in FlatFrag 0.3 and earlier allow remote attackers to execute arbitrary code via the (1) version, (2) name, and (3) model fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjrv-5jq3-rqj2/GHSA-rjrv-5jq3-rqj2.json b/advisories/unreviewed/2022/05/GHSA-rjrv-5jq3-rqj2/GHSA-rjrv-5jq3-rqj2.json index 807f06e3d3e..0c4e6bd4716 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjrv-5jq3-rqj2/GHSA-rjrv-5jq3-rqj2.json +++ b/advisories/unreviewed/2022/05/GHSA-rjrv-5jq3-rqj2/GHSA-rjrv-5jq3-rqj2.json @@ -7,12 +7,8 @@ "CVE-2005-3547" ], "details": "Cross-site scripting (XSS) vulnerability in Invision Power Board 2.1 allows remote attackers to inject arbitrary web script or HTML via the (1) adsess, (2) name, and (3) description parameters in admin.php, and the (4) ACP Notes, (5) Member Name, (6) Password, (7) Email Address, (8) Components, and multiple other input fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rmp8-hcf7-f7mf/GHSA-rmp8-hcf7-f7mf.json b/advisories/unreviewed/2022/05/GHSA-rmp8-hcf7-f7mf/GHSA-rmp8-hcf7-f7mf.json index 3dc15295753..36daf1849f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmp8-hcf7-f7mf/GHSA-rmp8-hcf7-f7mf.json +++ b/advisories/unreviewed/2022/05/GHSA-rmp8-hcf7-f7mf/GHSA-rmp8-hcf7-f7mf.json @@ -7,12 +7,8 @@ "CVE-2020-18917" ], "details": "The plus/search.php component in DedeCMS 5.7 SP2 allows remote attackers to execute arbitrary PHP code via the typename parameter because the contents of typename.inc are under an attacker's control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rpfh-hvgr-7r92/GHSA-rpfh-hvgr-7r92.json b/advisories/unreviewed/2022/05/GHSA-rpfh-hvgr-7r92/GHSA-rpfh-hvgr-7r92.json index f0b10456dc0..886104a2c2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpfh-hvgr-7r92/GHSA-rpfh-hvgr-7r92.json +++ b/advisories/unreviewed/2022/05/GHSA-rpfh-hvgr-7r92/GHSA-rpfh-hvgr-7r92.json @@ -7,12 +7,8 @@ "CVE-2005-3834" ], "details": "Cross-site scripting (XSS) vulnerability in search.php in Tunez 1.21 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchFor parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rpq7-xp7g-qjmw/GHSA-rpq7-xp7g-qjmw.json b/advisories/unreviewed/2022/05/GHSA-rpq7-xp7g-qjmw/GHSA-rpq7-xp7g-qjmw.json index e0ad4217df0..f75fdd7f77d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpq7-xp7g-qjmw/GHSA-rpq7-xp7g-qjmw.json +++ b/advisories/unreviewed/2022/05/GHSA-rpq7-xp7g-qjmw/GHSA-rpq7-xp7g-qjmw.json @@ -7,12 +7,8 @@ "CVE-2005-3876" ], "details": "Multiple SQL injection vulnerabilities in adcbrowres.php in AD Center ADC2000 NG Pro 1.2 and NG Pro Lite allow remote attackers to execute arbitrary SQL commands via the (1) cat and (2) lang parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rq34-jj5j-22g3/GHSA-rq34-jj5j-22g3.json b/advisories/unreviewed/2022/05/GHSA-rq34-jj5j-22g3/GHSA-rq34-jj5j-22g3.json index 38f42b5d25c..4ab617a6d46 100644 --- a/advisories/unreviewed/2022/05/GHSA-rq34-jj5j-22g3/GHSA-rq34-jj5j-22g3.json +++ b/advisories/unreviewed/2022/05/GHSA-rq34-jj5j-22g3/GHSA-rq34-jj5j-22g3.json @@ -7,12 +7,8 @@ "CVE-2005-3692" ], "details": "Cross-site scripting (XSS) vulnerability in AMAX Magic Winmail Server 4.2 (build 0824) and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) retid parameter in badlogin.php, (2) Content-Type headers in HTML mails, and (3) HTML mail attachments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqmv-mx53-hc7g/GHSA-rqmv-mx53-hc7g.json b/advisories/unreviewed/2022/05/GHSA-rqmv-mx53-hc7g/GHSA-rqmv-mx53-hc7g.json index c318b3d18d7..c427acabaee 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqmv-mx53-hc7g/GHSA-rqmv-mx53-hc7g.json +++ b/advisories/unreviewed/2022/05/GHSA-rqmv-mx53-hc7g/GHSA-rqmv-mx53-hc7g.json @@ -7,12 +7,8 @@ "CVE-2005-3885" ], "details": "The ps2epsi extension shell script (ps2epsi.sh) in Inkscape before 0.41 allows local users to overwrite arbitrary files via a symlink attack on the tmpepsifile.epsi temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqpw-qgx7-wjhg/GHSA-rqpw-qgx7-wjhg.json b/advisories/unreviewed/2022/05/GHSA-rqpw-qgx7-wjhg/GHSA-rqpw-qgx7-wjhg.json index 05f8215e10b..827eb56a2d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqpw-qgx7-wjhg/GHSA-rqpw-qgx7-wjhg.json +++ b/advisories/unreviewed/2022/05/GHSA-rqpw-qgx7-wjhg/GHSA-rqpw-qgx7-wjhg.json @@ -7,12 +7,8 @@ "CVE-2005-4050" ], "details": "Buffer overflow in multiple Multi-Tech Systems MultiVOIP devices with firmware before x.08 allows remote attackers to execute arbitrary code via a long INVITE field in a Session Initiation Protocol (SIP) packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqvh-vg3g-hfj7/GHSA-rqvh-vg3g-hfj7.json b/advisories/unreviewed/2022/05/GHSA-rqvh-vg3g-hfj7/GHSA-rqvh-vg3g-hfj7.json index 4b30fee5e77..d620cbd4b5b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqvh-vg3g-hfj7/GHSA-rqvh-vg3g-hfj7.json +++ b/advisories/unreviewed/2022/05/GHSA-rqvh-vg3g-hfj7/GHSA-rqvh-vg3g-hfj7.json @@ -7,12 +7,8 @@ "CVE-2005-3798" ], "details": "SQL injection vulnerability in admin/index.php in AlstraSoft Template Seller Pro 3.25 allows remote attackers to execute arbitrary SQL commands via the username field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqx8-6cfx-pw7v/GHSA-rqx8-6cfx-pw7v.json b/advisories/unreviewed/2022/05/GHSA-rqx8-6cfx-pw7v/GHSA-rqx8-6cfx-pw7v.json index ec2aa8d773e..bdeb217b367 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqx8-6cfx-pw7v/GHSA-rqx8-6cfx-pw7v.json +++ b/advisories/unreviewed/2022/05/GHSA-rqx8-6cfx-pw7v/GHSA-rqx8-6cfx-pw7v.json @@ -7,12 +7,8 @@ "CVE-2005-4053" ], "details": "Cross-site scripting (XSS) vulnerability in coWiki 0.3.4 allows remote attackers to inject arbitrary web script or HTML via the q parameter, as demonstrated using 26.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rr23-7g46-v945/GHSA-rr23-7g46-v945.json b/advisories/unreviewed/2022/05/GHSA-rr23-7g46-v945/GHSA-rr23-7g46-v945.json index 92e1f458fbc..7fe5e64093d 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr23-7g46-v945/GHSA-rr23-7g46-v945.json +++ b/advisories/unreviewed/2022/05/GHSA-rr23-7g46-v945/GHSA-rr23-7g46-v945.json @@ -7,12 +7,8 @@ "CVE-2005-3636" ], "details": "Cross-site scripting (XSS) vulnerability in SAP Web Application Server (WAS) 6.10 allows remote attackers to inject arbitrary web script or HTML via Error Pages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rrm3-2q9w-fc44/GHSA-rrm3-2q9w-fc44.json b/advisories/unreviewed/2022/05/GHSA-rrm3-2q9w-fc44/GHSA-rrm3-2q9w-fc44.json index 4b1b952927b..60c86e2617e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrm3-2q9w-fc44/GHSA-rrm3-2q9w-fc44.json +++ b/advisories/unreviewed/2022/05/GHSA-rrm3-2q9w-fc44/GHSA-rrm3-2q9w-fc44.json @@ -7,12 +7,8 @@ "CVE-2021-35239" ], "details": "A security researcher found a user with Orion map manage rights could store XSS through via text box hyperlink.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv79-rv3w-mqqc/GHSA-rv79-rv3w-mqqc.json b/advisories/unreviewed/2022/05/GHSA-rv79-rv3w-mqqc/GHSA-rv79-rv3w-mqqc.json index fc101804924..28947ac3259 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv79-rv3w-mqqc/GHSA-rv79-rv3w-mqqc.json +++ b/advisories/unreviewed/2022/05/GHSA-rv79-rv3w-mqqc/GHSA-rv79-rv3w-mqqc.json @@ -7,12 +7,8 @@ "CVE-2005-3671" ], "details": "The Internet Key Exchange version 1 (IKEv1) implementation in Openswan 2 (openswan-2) before 2.4.4, and freeswan in SUSE LINUX 9.1 before 2.04_1.5.4-1.23, allow remote attackers to cause a denial of service via (1) a crafted packet using 3DES with an invalid key length, or (2) unspecified inputs when Aggressive Mode is enabled and the PSK is known, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rvr9-ppr4-mv4h/GHSA-rvr9-ppr4-mv4h.json b/advisories/unreviewed/2022/05/GHSA-rvr9-ppr4-mv4h/GHSA-rvr9-ppr4-mv4h.json index 6da81ecf816..fd9720f2b70 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvr9-ppr4-mv4h/GHSA-rvr9-ppr4-mv4h.json +++ b/advisories/unreviewed/2022/05/GHSA-rvr9-ppr4-mv4h/GHSA-rvr9-ppr4-mv4h.json @@ -7,12 +7,8 @@ "CVE-2005-3805" ], "details": "A locking problem in POSIX timer cleanup handling on exit in Linux kernel 2.6.10 to 2.6.14, when running on SMP systems, allows local users to cause a denial of service (deadlock) involving process CPU timers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rvxj-mg82-9qp8/GHSA-rvxj-mg82-9qp8.json b/advisories/unreviewed/2022/05/GHSA-rvxj-mg82-9qp8/GHSA-rvxj-mg82-9qp8.json index 488af3b0940..4f8e35d2890 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvxj-mg82-9qp8/GHSA-rvxj-mg82-9qp8.json +++ b/advisories/unreviewed/2022/05/GHSA-rvxj-mg82-9qp8/GHSA-rvxj-mg82-9qp8.json @@ -7,12 +7,8 @@ "CVE-2005-3690" ], "details": "Stack-based buffer overflow in the IMAP service (meimaps.exe) of MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allows remote attackers to execute arbitrary code via a long mailbox name in the (1) select, (2) create, (3) delete, (4) rename, (5) subscribe, or (6) unsubscribe commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rx49-ffc3-rw37/GHSA-rx49-ffc3-rw37.json b/advisories/unreviewed/2022/05/GHSA-rx49-ffc3-rw37/GHSA-rx49-ffc3-rw37.json index 43ed3768df4..f2e02d480d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx49-ffc3-rw37/GHSA-rx49-ffc3-rw37.json +++ b/advisories/unreviewed/2022/05/GHSA-rx49-ffc3-rw37/GHSA-rx49-ffc3-rw37.json @@ -7,12 +7,8 @@ "CVE-2005-3550" ], "details": "Directory traversal vulnerability in admin.php in toendaCMS before 0.6.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the id_user parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxf6-6c5q-gj3r/GHSA-rxf6-6c5q-gj3r.json b/advisories/unreviewed/2022/05/GHSA-rxf6-6c5q-gj3r/GHSA-rxf6-6c5q-gj3r.json index 1ee53d1bc2f..a0e58da81b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxf6-6c5q-gj3r/GHSA-rxf6-6c5q-gj3r.json +++ b/advisories/unreviewed/2022/05/GHSA-rxf6-6c5q-gj3r/GHSA-rxf6-6c5q-gj3r.json @@ -7,12 +7,8 @@ "CVE-2005-3852" ], "details": "SQL injection vulnerability in search.asp in Online Work Order Suite (OWOS) Lite Edition for ASP 3.0 allows remote attackers to execute arbitrary SQL commands via the keyword parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxg8-m2v4-q4gf/GHSA-rxg8-m2v4-q4gf.json b/advisories/unreviewed/2022/05/GHSA-rxg8-m2v4-q4gf/GHSA-rxg8-m2v4-q4gf.json index 14e3a601475..22786770fc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxg8-m2v4-q4gf/GHSA-rxg8-m2v4-q4gf.json +++ b/advisories/unreviewed/2022/05/GHSA-rxg8-m2v4-q4gf/GHSA-rxg8-m2v4-q4gf.json @@ -7,12 +7,8 @@ "CVE-2005-3588" ], "details": "SQL injection vulnerability in admin.php in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL commands and gain privileges via the username field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxv3-9c28-c2h7/GHSA-rxv3-9c28-c2h7.json b/advisories/unreviewed/2022/05/GHSA-rxv3-9c28-c2h7/GHSA-rxv3-9c28-c2h7.json index e0c27b2ba9e..e293950ee3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxv3-9c28-c2h7/GHSA-rxv3-9c28-c2h7.json +++ b/advisories/unreviewed/2022/05/GHSA-rxv3-9c28-c2h7/GHSA-rxv3-9c28-c2h7.json @@ -7,12 +7,8 @@ "CVE-2005-3717" ], "details": "The telnet daemon in UTStarcom F1000 VOIP WIFI Phone s2.0 running VxWorks 5.5.1 with kernel WIND 2.6 has a default username \"target\" and password \"password\", which allows remote attackers to gain full access to the system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxwh-v3fg-c6vp/GHSA-rxwh-v3fg-c6vp.json b/advisories/unreviewed/2022/05/GHSA-rxwh-v3fg-c6vp/GHSA-rxwh-v3fg-c6vp.json index 60ce36d5183..1b03498f2d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxwh-v3fg-c6vp/GHSA-rxwh-v3fg-c6vp.json +++ b/advisories/unreviewed/2022/05/GHSA-rxwh-v3fg-c6vp/GHSA-rxwh-v3fg-c6vp.json @@ -7,12 +7,8 @@ "CVE-2005-3808" ], "details": "Integer overflow in the invalidate_inode_pages2_range function in mm/truncate.c in Linux kernel 2.6.11 to 2.6.14 allows local users to cause a denial of service (hang) via 64-bit mmap calls that are not properly handled on a 32-bit system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v24j-xvq7-5fj7/GHSA-v24j-xvq7-5fj7.json b/advisories/unreviewed/2022/05/GHSA-v24j-xvq7-5fj7/GHSA-v24j-xvq7-5fj7.json index 02448612fc1..400ad86565d 100644 --- a/advisories/unreviewed/2022/05/GHSA-v24j-xvq7-5fj7/GHSA-v24j-xvq7-5fj7.json +++ b/advisories/unreviewed/2022/05/GHSA-v24j-xvq7-5fj7/GHSA-v24j-xvq7-5fj7.json @@ -7,12 +7,8 @@ "CVE-2005-3557" ], "details": "Directory traversal vulnerability in admin/defaults.php in PHPlist 2.10.1 and earlier allows remote attackers to access arbitrary files via a .. (dot dot) in the selected%5B%5D parameter in an HTTP POST request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v2h7-7xfc-m82j/GHSA-v2h7-7xfc-m82j.json b/advisories/unreviewed/2022/05/GHSA-v2h7-7xfc-m82j/GHSA-v2h7-7xfc-m82j.json index 463bc84b592..b01f30ce3fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2h7-7xfc-m82j/GHSA-v2h7-7xfc-m82j.json +++ b/advisories/unreviewed/2022/05/GHSA-v2h7-7xfc-m82j/GHSA-v2h7-7xfc-m82j.json @@ -7,12 +7,8 @@ "CVE-2005-3707" ], "details": "Buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v3qf-cxvc-vxx9/GHSA-v3qf-cxvc-vxx9.json b/advisories/unreviewed/2022/05/GHSA-v3qf-cxvc-vxx9/GHSA-v3qf-cxvc-vxx9.json index 9916a431c33..2815ea313ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3qf-cxvc-vxx9/GHSA-v3qf-cxvc-vxx9.json +++ b/advisories/unreviewed/2022/05/GHSA-v3qf-cxvc-vxx9/GHSA-v3qf-cxvc-vxx9.json @@ -7,12 +7,8 @@ "CVE-2005-4056" ], "details": "SQL injection vulnerability in search.php in PluggedOut Nexus 0.1 allows remote attackers to execute arbitrary SQL commands via the (1) Location, (2) Last Name, and (3) First Name parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v3vq-qcf9-f8pv/GHSA-v3vq-qcf9-f8pv.json b/advisories/unreviewed/2022/05/GHSA-v3vq-qcf9-f8pv/GHSA-v3vq-qcf9-f8pv.json index da051370b90..3149e057f56 100644 --- a/advisories/unreviewed/2022/05/GHSA-v3vq-qcf9-f8pv/GHSA-v3vq-qcf9-f8pv.json +++ b/advisories/unreviewed/2022/05/GHSA-v3vq-qcf9-f8pv/GHSA-v3vq-qcf9-f8pv.json @@ -7,12 +7,8 @@ "CVE-2005-3553" ], "details": "Multiple SQL injection vulnerabilities in include.php in PHPKIT 1.6.1 R2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in conjunction with the login/userinfo.php path and (2) the session parameter (aka the PHPKITSID variable).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v448-m2g5-fm7c/GHSA-v448-m2g5-fm7c.json b/advisories/unreviewed/2022/05/GHSA-v448-m2g5-fm7c/GHSA-v448-m2g5-fm7c.json index 93ad92b7f20..11d4cb72dfa 100644 --- a/advisories/unreviewed/2022/05/GHSA-v448-m2g5-fm7c/GHSA-v448-m2g5-fm7c.json +++ b/advisories/unreviewed/2022/05/GHSA-v448-m2g5-fm7c/GHSA-v448-m2g5-fm7c.json @@ -7,12 +7,8 @@ "CVE-2021-34581" ], "details": "Missing Release of Resource after Effective Lifetime vulnerability in OpenSSL implementation of WAGO 750-831/xxx-xxx, 750-880/xxx-xxx, 750-881, 750-889 in versions FW4 up to FW15 allows an unauthenticated attacker to cause DoS on the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v46c-cm44-3gvq/GHSA-v46c-cm44-3gvq.json b/advisories/unreviewed/2022/05/GHSA-v46c-cm44-3gvq/GHSA-v46c-cm44-3gvq.json index d7b7f05bc01..0b191e1a193 100644 --- a/advisories/unreviewed/2022/05/GHSA-v46c-cm44-3gvq/GHSA-v46c-cm44-3gvq.json +++ b/advisories/unreviewed/2022/05/GHSA-v46c-cm44-3gvq/GHSA-v46c-cm44-3gvq.json @@ -7,12 +7,8 @@ "CVE-2005-3645" ], "details": "phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allows remote attackers to obtain the application installation path and other sensitive information via direct requests to (1) create.php, and if display_errors is enabled, (2) lib-updates.inc.php, (3) lib-targetstats.inc.php, (4) lib-size.inc.php, (5) lib-misc-stats.inc.php, (6) lib-hourly-hosts.inc.php, (7) lib-hourly.inc.php, (8) lib-history.inc.php, and (9) graph-daily.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4wr-6348-f328/GHSA-v4wr-6348-f328.json b/advisories/unreviewed/2022/05/GHSA-v4wr-6348-f328/GHSA-v4wr-6348-f328.json index 27f7bf54d84..1eb5fc0f326 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4wr-6348-f328/GHSA-v4wr-6348-f328.json +++ b/advisories/unreviewed/2022/05/GHSA-v4wr-6348-f328/GHSA-v4wr-6348-f328.json @@ -7,12 +7,8 @@ "CVE-2005-3776" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MyBulletinBoard (MyBB) 1.0 PR2 Rev 686 allow remote attackers to inject arbitrary web script or HTML via (1) the subject field when creating a new thread and (2) information passed to the Reputation system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v539-xc59-x573/GHSA-v539-xc59-x573.json b/advisories/unreviewed/2022/05/GHSA-v539-xc59-x573/GHSA-v539-xc59-x573.json index df2b2a885ac..28515716b69 100644 --- a/advisories/unreviewed/2022/05/GHSA-v539-xc59-x573/GHSA-v539-xc59-x573.json +++ b/advisories/unreviewed/2022/05/GHSA-v539-xc59-x573/GHSA-v539-xc59-x573.json @@ -7,12 +7,8 @@ "CVE-2021-30685" ], "details": "This issue was addressed with improved checks. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Parsing a maliciously crafted audio file may lead to disclosure of user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v54f-g745-vq54/GHSA-v54f-g745-vq54.json b/advisories/unreviewed/2022/05/GHSA-v54f-g745-vq54/GHSA-v54f-g745-vq54.json index c559b9c96a2..405dfd8d1ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-v54f-g745-vq54/GHSA-v54f-g745-vq54.json +++ b/advisories/unreviewed/2022/05/GHSA-v54f-g745-vq54/GHSA-v54f-g745-vq54.json @@ -7,12 +7,8 @@ "CVE-2005-3894" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote authenticated users to inject arbitrary web script or HTML via (1) hex-encoded values in the QueueID parameter and (2) Action parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v653-grv2-858x/GHSA-v653-grv2-858x.json b/advisories/unreviewed/2022/05/GHSA-v653-grv2-858x/GHSA-v653-grv2-858x.json index 28f6f8b2d3d..5854c7d3b4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v653-grv2-858x/GHSA-v653-grv2-858x.json +++ b/advisories/unreviewed/2022/05/GHSA-v653-grv2-858x/GHSA-v653-grv2-858x.json @@ -7,12 +7,8 @@ "CVE-2005-3760" ], "details": "Double free vulnerability in the BBOORB module in IBM WebSphere Application Server for z/OS 5.0 allows attackers to cause a denial of service (ABEND).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v65h-7qg2-v645/GHSA-v65h-7qg2-v645.json b/advisories/unreviewed/2022/05/GHSA-v65h-7qg2-v645/GHSA-v65h-7qg2-v645.json index 9c1a8dd5bf8..daa4503fb3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v65h-7qg2-v645/GHSA-v65h-7qg2-v645.json +++ b/advisories/unreviewed/2022/05/GHSA-v65h-7qg2-v645/GHSA-v65h-7qg2-v645.json @@ -7,12 +7,8 @@ "CVE-2005-3792" ], "details": "Multiple SQL injection vulnerabilities in the Search module in PHP-Nuke 7.8, and possibly other versions before 7.9 with patch 3.1, allows remote attackers to execute arbitrary SQL commands, as demonstrated via the query parameter in a stories type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v6m6-xmww-qh8j/GHSA-v6m6-xmww-qh8j.json b/advisories/unreviewed/2022/05/GHSA-v6m6-xmww-qh8j/GHSA-v6m6-xmww-qh8j.json index 5fa2ae5d0f8..05905c86ed3 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6m6-xmww-qh8j/GHSA-v6m6-xmww-qh8j.json +++ b/advisories/unreviewed/2022/05/GHSA-v6m6-xmww-qh8j/GHSA-v6m6-xmww-qh8j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6w5-67rj-72w9/GHSA-v6w5-67rj-72w9.json b/advisories/unreviewed/2022/05/GHSA-v6w5-67rj-72w9/GHSA-v6w5-67rj-72w9.json index 650d158b3f7..7a756ed0e46 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6w5-67rj-72w9/GHSA-v6w5-67rj-72w9.json +++ b/advisories/unreviewed/2022/05/GHSA-v6w5-67rj-72w9/GHSA-v6w5-67rj-72w9.json @@ -7,12 +7,8 @@ "CVE-2021-39271" ], "details": "OrbiTeam BSCW Classic before 7.4.3 allows authenticated remote code execution (RCE) during archive extraction via attacker-supplied Python code in the class attribute of a .bscw file. This is fixed in 5.0.12, 5.1.10, 5.2.4, 7.3.3, and 7.4.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v72x-28mp-7gx5/GHSA-v72x-28mp-7gx5.json b/advisories/unreviewed/2022/05/GHSA-v72x-28mp-7gx5/GHSA-v72x-28mp-7gx5.json index 740a4440967..898807bbc30 100644 --- a/advisories/unreviewed/2022/05/GHSA-v72x-28mp-7gx5/GHSA-v72x-28mp-7gx5.json +++ b/advisories/unreviewed/2022/05/GHSA-v72x-28mp-7gx5/GHSA-v72x-28mp-7gx5.json @@ -7,12 +7,8 @@ "CVE-2005-3490" ], "details": "Directory traversal vulnerability in the web server in Asus Video Security 3.5.0.0 and earlier allows remote attackers to read arbitrary files via \"../\" or \"..\\\" sequences in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v762-g4cx-pwq6/GHSA-v762-g4cx-pwq6.json b/advisories/unreviewed/2022/05/GHSA-v762-g4cx-pwq6/GHSA-v762-g4cx-pwq6.json index 21c633d7be5..1b85e05cb23 100644 --- a/advisories/unreviewed/2022/05/GHSA-v762-g4cx-pwq6/GHSA-v762-g4cx-pwq6.json +++ b/advisories/unreviewed/2022/05/GHSA-v762-g4cx-pwq6/GHSA-v762-g4cx-pwq6.json @@ -7,12 +7,8 @@ "CVE-2005-3826" ], "details": "Multiple SQL injection vulnerabilities in Ezyhelpdesk 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) edit_id, (2) faq_id, and (3) c_id parameters in a query string, and (4) the search engine, possibly involving the search_string parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v7m7-f9xp-5pxr/GHSA-v7m7-f9xp-5pxr.json b/advisories/unreviewed/2022/05/GHSA-v7m7-f9xp-5pxr/GHSA-v7m7-f9xp-5pxr.json index 73302778d60..d8e896d9406 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7m7-f9xp-5pxr/GHSA-v7m7-f9xp-5pxr.json +++ b/advisories/unreviewed/2022/05/GHSA-v7m7-f9xp-5pxr/GHSA-v7m7-f9xp-5pxr.json @@ -7,12 +7,8 @@ "CVE-2005-3502" ], "details": "attachment_send.php in Cerberus Helpdesk allows remote attackers to view attachments and tickets of other users via a modified file_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v7wp-cq2q-qw3r/GHSA-v7wp-cq2q-qw3r.json b/advisories/unreviewed/2022/05/GHSA-v7wp-cq2q-qw3r/GHSA-v7wp-cq2q-qw3r.json index b65699d4a22..d35a71deb7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7wp-cq2q-qw3r/GHSA-v7wp-cq2q-qw3r.json +++ b/advisories/unreviewed/2022/05/GHSA-v7wp-cq2q-qw3r/GHSA-v7wp-cq2q-qw3r.json @@ -7,12 +7,8 @@ "CVE-2005-4054" ], "details": "SQL injection vulnerability in index.php in PluggedOut Blog 1.9.5 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) categoryid, (2) entryid, (3) year, (4) month, and (5) day parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v87m-2q74-9xw3/GHSA-v87m-2q74-9xw3.json b/advisories/unreviewed/2022/05/GHSA-v87m-2q74-9xw3/GHSA-v87m-2q74-9xw3.json index eacdcd9c6b0..198f25fb8c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-v87m-2q74-9xw3/GHSA-v87m-2q74-9xw3.json +++ b/advisories/unreviewed/2022/05/GHSA-v87m-2q74-9xw3/GHSA-v87m-2q74-9xw3.json @@ -7,12 +7,8 @@ "CVE-2005-3766" ], "details": "Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8rm-r2cv-mvp7/GHSA-v8rm-r2cv-mvp7.json b/advisories/unreviewed/2022/05/GHSA-v8rm-r2cv-mvp7/GHSA-v8rm-r2cv-mvp7.json index 46f0ac2e674..8eebabf6e38 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8rm-r2cv-mvp7/GHSA-v8rm-r2cv-mvp7.json +++ b/advisories/unreviewed/2022/05/GHSA-v8rm-r2cv-mvp7/GHSA-v8rm-r2cv-mvp7.json @@ -7,12 +7,8 @@ "CVE-2005-3802" ], "details": "Belkin F5D7232-4 and F5D7230-4 wireless routers with firmware 4.03.03 and 4.05.03, when a legitimate administrator is logged into the web management interface, allow remote attackers to access the management interface without authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8rp-cx63-ff49/GHSA-v8rp-cx63-ff49.json b/advisories/unreviewed/2022/05/GHSA-v8rp-cx63-ff49/GHSA-v8rp-cx63-ff49.json index 89495a81d3f..37d5ed334bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8rp-cx63-ff49/GHSA-v8rp-cx63-ff49.json +++ b/advisories/unreviewed/2022/05/GHSA-v8rp-cx63-ff49/GHSA-v8rp-cx63-ff49.json @@ -7,12 +7,8 @@ "CVE-2005-3875" ], "details": "Multiple SQL injection vulnerabilities in Enterprise Connector 1.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the messageid parameter in (1) send.php or (2) a delete action in messages.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9hw-cwhg-vr8f/GHSA-v9hw-cwhg-vr8f.json b/advisories/unreviewed/2022/05/GHSA-v9hw-cwhg-vr8f/GHSA-v9hw-cwhg-vr8f.json index 536a105e80e..1cfa1cdff23 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9hw-cwhg-vr8f/GHSA-v9hw-cwhg-vr8f.json +++ b/advisories/unreviewed/2022/05/GHSA-v9hw-cwhg-vr8f/GHSA-v9hw-cwhg-vr8f.json @@ -7,12 +7,8 @@ "CVE-2005-3521" ], "details": "SQL injection vulnerability in resetcore.php in e107 0.617 through 0.6173 allows remote attackers to execute arbitrary SQL commands, bypass authentication, and inject HTML or script via the (1) a_name parameter or (2) user field of the login page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9wq-mhw7-6hg7/GHSA-v9wq-mhw7-6hg7.json b/advisories/unreviewed/2022/05/GHSA-v9wq-mhw7-6hg7/GHSA-v9wq-mhw7-6hg7.json index df0a6e3e151..07a368d7655 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9wq-mhw7-6hg7/GHSA-v9wq-mhw7-6hg7.json +++ b/advisories/unreviewed/2022/05/GHSA-v9wq-mhw7-6hg7/GHSA-v9wq-mhw7-6hg7.json @@ -7,12 +7,8 @@ "CVE-2005-3688" ], "details": "Cross-site scripting (XSS) vulnerability in members.php in XMB 1.9.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the \"Your Current Mood\" field in the registration page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vcqf-m4v7-mw45/GHSA-vcqf-m4v7-mw45.json b/advisories/unreviewed/2022/05/GHSA-vcqf-m4v7-mw45/GHSA-vcqf-m4v7-mw45.json index 310189eea2a..5ff3e2936eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcqf-m4v7-mw45/GHSA-vcqf-m4v7-mw45.json +++ b/advisories/unreviewed/2022/05/GHSA-vcqf-m4v7-mw45/GHSA-vcqf-m4v7-mw45.json @@ -7,12 +7,8 @@ "CVE-2005-3795" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft Affiliate Network Pro 7.2 allow remote attackers to inject arbitrary web script or HTML via (1) the Err parameter in admin/index.php and the (2) firstname and (3) lastname parameters in index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vcw9-mv32-wmgq/GHSA-vcw9-mv32-wmgq.json b/advisories/unreviewed/2022/05/GHSA-vcw9-mv32-wmgq/GHSA-vcw9-mv32-wmgq.json index 6ccfe4a8dae..d4b8d367b0a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcw9-mv32-wmgq/GHSA-vcw9-mv32-wmgq.json +++ b/advisories/unreviewed/2022/05/GHSA-vcw9-mv32-wmgq/GHSA-vcw9-mv32-wmgq.json @@ -7,12 +7,8 @@ "CVE-2021-24528" ], "details": "The FluentSMTP WordPress plugin before 2.0.1 does not sanitize parameters before storing the settings in the database, nor does the plugin escape the values before outputting them when viewing the SMTP settings set by this plugin, leading to a stored cross site scripting (XSS) vulnerability. Only users with roles capable of managing plugins can modify the plugin's settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vgq5-w284-7ccg/GHSA-vgq5-w284-7ccg.json b/advisories/unreviewed/2022/05/GHSA-vgq5-w284-7ccg/GHSA-vgq5-w284-7ccg.json index d396cfa0c20..322032b4a23 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgq5-w284-7ccg/GHSA-vgq5-w284-7ccg.json +++ b/advisories/unreviewed/2022/05/GHSA-vgq5-w284-7ccg/GHSA-vgq5-w284-7ccg.json @@ -7,12 +7,8 @@ "CVE-2005-3498" ], "details": "IBM WebSphere Application Server 5.0.x before 5.02.15, 5.1.x before 5.1.1.8, and 6.x before fixpack V6.0.2.5, when session trace is enabled, records a full URL including the queryString in the trace logs when an application encodes a URL, which could allow attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vgxh-h5p5-8wqg/GHSA-vgxh-h5p5-8wqg.json b/advisories/unreviewed/2022/05/GHSA-vgxh-h5p5-8wqg/GHSA-vgxh-h5p5-8wqg.json index 083999c395c..cd36c49cc60 100644 --- a/advisories/unreviewed/2022/05/GHSA-vgxh-h5p5-8wqg/GHSA-vgxh-h5p5-8wqg.json +++ b/advisories/unreviewed/2022/05/GHSA-vgxh-h5p5-8wqg/GHSA-vgxh-h5p5-8wqg.json @@ -7,12 +7,8 @@ "CVE-2005-3520" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MySource 2.14.0 allow remote attackers to inject arbitrary web script or HTML via (1) the target_url parameter in upgrade_in_progress_backend.php, (2) the stylesheet parameter in edit_table_cell_type_wysiwyg.php, and the bgcolor parameter in (3) insert_table.php, (4) edit_table_cell_props.php, (5) header.php, (6) edit_table_row_props.php, and (7) edit_table_props.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vh79-r8x6-2v8w/GHSA-vh79-r8x6-2v8w.json b/advisories/unreviewed/2022/05/GHSA-vh79-r8x6-2v8w/GHSA-vh79-r8x6-2v8w.json index 6f31fe82762..0743ba15cc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vh79-r8x6-2v8w/GHSA-vh79-r8x6-2v8w.json +++ b/advisories/unreviewed/2022/05/GHSA-vh79-r8x6-2v8w/GHSA-vh79-r8x6-2v8w.json @@ -7,12 +7,8 @@ "CVE-2020-18913" ], "details": "EARCLINK ESPCMS-P8 was discovered to contain a SQL injection vulnerability in the espcms_web/Search.php component via the attr_array parameter. This vulnerability allows attackers to access sensitive database information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vhg6-vmg3-qfwq/GHSA-vhg6-vmg3-qfwq.json b/advisories/unreviewed/2022/05/GHSA-vhg6-vmg3-qfwq/GHSA-vhg6-vmg3-qfwq.json index 2e2faaf57b6..26d4ab3cb90 100644 --- a/advisories/unreviewed/2022/05/GHSA-vhg6-vmg3-qfwq/GHSA-vhg6-vmg3-qfwq.json +++ b/advisories/unreviewed/2022/05/GHSA-vhg6-vmg3-qfwq/GHSA-vhg6-vmg3-qfwq.json @@ -7,12 +7,8 @@ "CVE-2005-3682" ], "details": "Multiple SQL injection vulnerabilities in Wizz Forum 1.20 allow remote attackers to execute arbitrary SQL commands via (1) the AuthID parameter in ForumAuthDetails.php, and the TopicID parameter in (2) ForumTopicDetails.php and (3) ForumReply.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vj66-5xxg-v6xv/GHSA-vj66-5xxg-v6xv.json b/advisories/unreviewed/2022/05/GHSA-vj66-5xxg-v6xv/GHSA-vj66-5xxg-v6xv.json index f8b5fb6a50b..fe43d101dfa 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj66-5xxg-v6xv/GHSA-vj66-5xxg-v6xv.json +++ b/advisories/unreviewed/2022/05/GHSA-vj66-5xxg-v6xv/GHSA-vj66-5xxg-v6xv.json @@ -7,12 +7,8 @@ "CVE-2021-30692" ], "details": "An information disclosure issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.4, Security Update 2021-003 Catalina, Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6. Processing a maliciously crafted USD file may disclose memory contents.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vjc4-8cmg-4xxh/GHSA-vjc4-8cmg-4xxh.json b/advisories/unreviewed/2022/05/GHSA-vjc4-8cmg-4xxh/GHSA-vjc4-8cmg-4xxh.json index 1f72f56a1e9..42d03e0984c 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjc4-8cmg-4xxh/GHSA-vjc4-8cmg-4xxh.json +++ b/advisories/unreviewed/2022/05/GHSA-vjc4-8cmg-4xxh/GHSA-vjc4-8cmg-4xxh.json @@ -7,12 +7,8 @@ "CVE-2020-18121" ], "details": "A configuration issue in Indexhibit 2.1.5 allows authenticated attackers to modify .php files, leading to getshell.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjpj-w59q-2pcv/GHSA-vjpj-w59q-2pcv.json b/advisories/unreviewed/2022/05/GHSA-vjpj-w59q-2pcv/GHSA-vjpj-w59q-2pcv.json index 07cb29d891f..9cae2d431fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjpj-w59q-2pcv/GHSA-vjpj-w59q-2pcv.json +++ b/advisories/unreviewed/2022/05/GHSA-vjpj-w59q-2pcv/GHSA-vjpj-w59q-2pcv.json @@ -7,12 +7,8 @@ "CVE-2005-3743" ], "details": "SQL injection vulnerability in results.php in SimplePoll allows remote attackers to execute arbitrary SQL commands via the pollid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmrj-8qgc-5x6c/GHSA-vmrj-8qgc-5x6c.json b/advisories/unreviewed/2022/05/GHSA-vmrj-8qgc-5x6c/GHSA-vmrj-8qgc-5x6c.json index ae52095f971..c64f43cad63 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmrj-8qgc-5x6c/GHSA-vmrj-8qgc-5x6c.json +++ b/advisories/unreviewed/2022/05/GHSA-vmrj-8qgc-5x6c/GHSA-vmrj-8qgc-5x6c.json @@ -7,12 +7,8 @@ "CVE-2014-1737" ], "details": "The raw_cmd_copyin function in drivers/block/floppy.c in the Linux kernel through 3.14.3 does not properly handle error conditions during processing of an FDRAWCMD ioctl call, which allows local users to trigger kfree operations and gain privileges by leveraging write access to a /dev/fd device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vp6f-h8p3-g9hj/GHSA-vp6f-h8p3-g9hj.json b/advisories/unreviewed/2022/05/GHSA-vp6f-h8p3-g9hj/GHSA-vp6f-h8p3-g9hj.json index db0e3eee536..274ac396749 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp6f-h8p3-g9hj/GHSA-vp6f-h8p3-g9hj.json +++ b/advisories/unreviewed/2022/05/GHSA-vp6f-h8p3-g9hj/GHSA-vp6f-h8p3-g9hj.json @@ -7,12 +7,8 @@ "CVE-2005-3324" ], "details": "SQL injection vulnerability in chat.php in MWChat 6.8 allows remote attackers to execute arbitrary SQL commands via the username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq3w-pc7f-2jwq/GHSA-vq3w-pc7f-2jwq.json b/advisories/unreviewed/2022/05/GHSA-vq3w-pc7f-2jwq/GHSA-vq3w-pc7f-2jwq.json index 48786a5965f..f9284752a26 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq3w-pc7f-2jwq/GHSA-vq3w-pc7f-2jwq.json +++ b/advisories/unreviewed/2022/05/GHSA-vq3w-pc7f-2jwq/GHSA-vq3w-pc7f-2jwq.json @@ -7,12 +7,8 @@ "CVE-2005-3800" ], "details": "Macromedia Contribute Publishing Server (CPS) before 1.11 uses a weak algorithm to encrypt user password in connection keys that use shared FTP login credentials, which allows attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq5q-8xqm-9mhp/GHSA-vq5q-8xqm-9mhp.json b/advisories/unreviewed/2022/05/GHSA-vq5q-8xqm-9mhp/GHSA-vq5q-8xqm-9mhp.json index 8ad4094fd3e..faf7676ed9f 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq5q-8xqm-9mhp/GHSA-vq5q-8xqm-9mhp.json +++ b/advisories/unreviewed/2022/05/GHSA-vq5q-8xqm-9mhp/GHSA-vq5q-8xqm-9mhp.json @@ -7,12 +7,8 @@ "CVE-2005-3434" ], "details": "Archilles Newsworld before 1.5.0-rc1 stores (1) account.nwd and (2) session.nwd under the web root with insufficient access control, which allows remote attackers to obtain sensitive information such as usernames, hashed passwords, and session IDs, and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq7r-vh3j-w5g9/GHSA-vq7r-vh3j-w5g9.json b/advisories/unreviewed/2022/05/GHSA-vq7r-vh3j-w5g9/GHSA-vq7r-vh3j-w5g9.json index 01b4a29d883..6835d7c573c 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq7r-vh3j-w5g9/GHSA-vq7r-vh3j-w5g9.json +++ b/advisories/unreviewed/2022/05/GHSA-vq7r-vh3j-w5g9/GHSA-vq7r-vh3j-w5g9.json @@ -7,12 +7,8 @@ "CVE-2021-30686" ], "details": "An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted audio file may disclose restricted memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vq98-cj35-p4q2/GHSA-vq98-cj35-p4q2.json b/advisories/unreviewed/2022/05/GHSA-vq98-cj35-p4q2/GHSA-vq98-cj35-p4q2.json index 58bfa7ea95b..95c49d79d28 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq98-cj35-p4q2/GHSA-vq98-cj35-p4q2.json +++ b/advisories/unreviewed/2022/05/GHSA-vq98-cj35-p4q2/GHSA-vq98-cj35-p4q2.json @@ -7,12 +7,8 @@ "CVE-2005-3719" ], "details": "Hitachi IP5000 VOIP WIFI Phone 1.5.6 has a hard-coded administrator password of \"0000\", which allows attackers with physical access to obtain sensitive information and modify the phone's configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vqr7-r45q-8887/GHSA-vqr7-r45q-8887.json b/advisories/unreviewed/2022/05/GHSA-vqr7-r45q-8887/GHSA-vqr7-r45q-8887.json index ad1e05660cd..09234325414 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqr7-r45q-8887/GHSA-vqr7-r45q-8887.json +++ b/advisories/unreviewed/2022/05/GHSA-vqr7-r45q-8887/GHSA-vqr7-r45q-8887.json @@ -7,12 +7,8 @@ "CVE-2005-3827" ], "details": "SQL injection vulnerability in product_cat in AgileBill 1.4.92 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrc9-4596-jcp9/GHSA-vrc9-4596-jcp9.json b/advisories/unreviewed/2022/05/GHSA-vrc9-4596-jcp9/GHSA-vrc9-4596-jcp9.json index ec4d0ecbc1e..2b807ffd63a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrc9-4596-jcp9/GHSA-vrc9-4596-jcp9.json +++ b/advisories/unreviewed/2022/05/GHSA-vrc9-4596-jcp9/GHSA-vrc9-4596-jcp9.json @@ -7,12 +7,8 @@ "CVE-2021-22029" ], "details": "VMware Workspace ONE UEM REST API contains a denial of service vulnerability. A malicious actor with access to /API/system/admins/session could cause an API denial of service due to improper rate limiting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrgf-94vf-3xxm/GHSA-vrgf-94vf-3xxm.json b/advisories/unreviewed/2022/05/GHSA-vrgf-94vf-3xxm/GHSA-vrgf-94vf-3xxm.json index 0329dd1c437..393947ca057 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrgf-94vf-3xxm/GHSA-vrgf-94vf-3xxm.json +++ b/advisories/unreviewed/2022/05/GHSA-vrgf-94vf-3xxm/GHSA-vrgf-94vf-3xxm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrpq-h3wp-3cp5/GHSA-vrpq-h3wp-3cp5.json b/advisories/unreviewed/2022/05/GHSA-vrpq-h3wp-3cp5/GHSA-vrpq-h3wp-3cp5.json index 1a70d0fd183..2a1200a660d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrpq-h3wp-3cp5/GHSA-vrpq-h3wp-3cp5.json +++ b/advisories/unreviewed/2022/05/GHSA-vrpq-h3wp-3cp5/GHSA-vrpq-h3wp-3cp5.json @@ -7,12 +7,8 @@ "CVE-2005-3737" ], "details": "Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a SVG file with long CSS style property values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrq2-w7r7-3fp2/GHSA-vrq2-w7r7-3fp2.json b/advisories/unreviewed/2022/05/GHSA-vrq2-w7r7-3fp2/GHSA-vrq2-w7r7-3fp2.json index 4f23ff3c149..24384361de7 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrq2-w7r7-3fp2/GHSA-vrq2-w7r7-3fp2.json +++ b/advisories/unreviewed/2022/05/GHSA-vrq2-w7r7-3fp2/GHSA-vrq2-w7r7-3fp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrxh-2fg8-68v6/GHSA-vrxh-2fg8-68v6.json b/advisories/unreviewed/2022/05/GHSA-vrxh-2fg8-68v6/GHSA-vrxh-2fg8-68v6.json index 402d7bd6491..36d6ecd0018 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrxh-2fg8-68v6/GHSA-vrxh-2fg8-68v6.json +++ b/advisories/unreviewed/2022/05/GHSA-vrxh-2fg8-68v6/GHSA-vrxh-2fg8-68v6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrxp-645r-35q9/GHSA-vrxp-645r-35q9.json b/advisories/unreviewed/2022/05/GHSA-vrxp-645r-35q9/GHSA-vrxp-645r-35q9.json index 3dcda3dcca7..cfba293d8f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrxp-645r-35q9/GHSA-vrxp-645r-35q9.json +++ b/advisories/unreviewed/2022/05/GHSA-vrxp-645r-35q9/GHSA-vrxp-645r-35q9.json @@ -7,12 +7,8 @@ "CVE-2005-3740" ], "details": "Multiple SQL injection vulnerabilities in PHP-Fusion 6.00.206 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the forum_id parameter to options.php or (2) lastvisited parameter to viewforum.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vv26-mcjh-pgrg/GHSA-vv26-mcjh-pgrg.json b/advisories/unreviewed/2022/05/GHSA-vv26-mcjh-pgrg/GHSA-vv26-mcjh-pgrg.json index 4ee68ba9268..12b46504281 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv26-mcjh-pgrg/GHSA-vv26-mcjh-pgrg.json +++ b/advisories/unreviewed/2022/05/GHSA-vv26-mcjh-pgrg/GHSA-vv26-mcjh-pgrg.json @@ -7,12 +7,8 @@ "CVE-2021-40178" ], "details": "Zoho ManageEngine Log360 before Build 5224 allows stored XSS via the LOGO_PATH key value in the logon settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvf5-mpj5-q4jf/GHSA-vvf5-mpj5-q4jf.json b/advisories/unreviewed/2022/05/GHSA-vvf5-mpj5-q4jf/GHSA-vvf5-mpj5-q4jf.json index 8c0631405dc..cfa55b3e9a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvf5-mpj5-q4jf/GHSA-vvf5-mpj5-q4jf.json +++ b/advisories/unreviewed/2022/05/GHSA-vvf5-mpj5-q4jf/GHSA-vvf5-mpj5-q4jf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvhp-c3v3-6wp9/GHSA-vvhp-c3v3-6wp9.json b/advisories/unreviewed/2022/05/GHSA-vvhp-c3v3-6wp9/GHSA-vvhp-c3v3-6wp9.json index ecec62978e3..da19cfea4e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvhp-c3v3-6wp9/GHSA-vvhp-c3v3-6wp9.json +++ b/advisories/unreviewed/2022/05/GHSA-vvhp-c3v3-6wp9/GHSA-vvhp-c3v3-6wp9.json @@ -7,12 +7,8 @@ "CVE-2021-35061" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in DRK Odenwaldkreis Testerfassung March-2021 allow remote attackers to inject arbitrary web script or HTML via all parameters to HTML form fields in all components.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwjc-xxv9-rhjg/GHSA-vwjc-xxv9-rhjg.json b/advisories/unreviewed/2022/05/GHSA-vwjc-xxv9-rhjg/GHSA-vwjc-xxv9-rhjg.json index 49c7107dc49..ccaee24c6b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwjc-xxv9-rhjg/GHSA-vwjc-xxv9-rhjg.json +++ b/advisories/unreviewed/2022/05/GHSA-vwjc-xxv9-rhjg/GHSA-vwjc-xxv9-rhjg.json @@ -7,12 +7,8 @@ "CVE-2005-3858" ], "details": "Memory leak in the ip6_input_finish function in ip6_input.c in Linux kernel 2.6.12 and earlier might allow attackers to cause a denial of service via malformed IPv6 packets with unspecified parameter problems, which prevents the SKB from being freed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w2fh-v26x-wx46/GHSA-w2fh-v26x-wx46.json b/advisories/unreviewed/2022/05/GHSA-w2fh-v26x-wx46/GHSA-w2fh-v26x-wx46.json index 90e2a2fe4ba..f8240c91c34 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2fh-v26x-wx46/GHSA-w2fh-v26x-wx46.json +++ b/advisories/unreviewed/2022/05/GHSA-w2fh-v26x-wx46/GHSA-w2fh-v26x-wx46.json @@ -7,12 +7,8 @@ "CVE-2021-36385" ], "details": "A SQL Injection vulnerability in Cerner Mobile Care 5.0.0 allows remote unauthenticated attackers to execute arbitrary SQL commands via a Fullwidth Apostrophe (aka U+FF07) in the default.aspx User ID field. Arbitrary system commands can be executed through the use of xp_cmdshell.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3qr-gg98-2428/GHSA-w3qr-gg98-2428.json b/advisories/unreviewed/2022/05/GHSA-w3qr-gg98-2428/GHSA-w3qr-gg98-2428.json index a811cc7b6a3..4dc3773b354 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3qr-gg98-2428/GHSA-w3qr-gg98-2428.json +++ b/advisories/unreviewed/2022/05/GHSA-w3qr-gg98-2428/GHSA-w3qr-gg98-2428.json @@ -7,12 +7,8 @@ "CVE-2005-3479" ], "details": "Cross-site scripting (XSS) vulnerability in login.asp in Ringtail CaseBook 6.1.0 allows remote attackers to inject arbitrary web script or HTML via the users parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3r7-6wg7-pp8f/GHSA-w3r7-6wg7-pp8f.json b/advisories/unreviewed/2022/05/GHSA-w3r7-6wg7-pp8f/GHSA-w3r7-6wg7-pp8f.json index 5c225dc56f1..82c200b6fcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3r7-6wg7-pp8f/GHSA-w3r7-6wg7-pp8f.json +++ b/advisories/unreviewed/2022/05/GHSA-w3r7-6wg7-pp8f/GHSA-w3r7-6wg7-pp8f.json @@ -7,12 +7,8 @@ "CVE-2021-39816" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a malicious Bridge file, potentially resulting in arbitrary code execution in the context of the current user. User interaction is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w58j-2532-6mv7/GHSA-w58j-2532-6mv7.json b/advisories/unreviewed/2022/05/GHSA-w58j-2532-6mv7/GHSA-w58j-2532-6mv7.json index 25fde777812..d48c26d5c72 100644 --- a/advisories/unreviewed/2022/05/GHSA-w58j-2532-6mv7/GHSA-w58j-2532-6mv7.json +++ b/advisories/unreviewed/2022/05/GHSA-w58j-2532-6mv7/GHSA-w58j-2532-6mv7.json @@ -7,12 +7,8 @@ "CVE-2005-3714" ], "details": "The network interface for Apple AirPort Express 6.x before Firmware Update 6.3, and AirPort Extreme 5.x before Firmware Update 5.7, allows remote attackers to cause a denial of service (unresponsive interface) via malformed packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w64m-6m7c-7r2p/GHSA-w64m-6m7c-7r2p.json b/advisories/unreviewed/2022/05/GHSA-w64m-6m7c-7r2p/GHSA-w64m-6m7c-7r2p.json index 3ebd9fe9671..562250c517d 100644 --- a/advisories/unreviewed/2022/05/GHSA-w64m-6m7c-7r2p/GHSA-w64m-6m7c-7r2p.json +++ b/advisories/unreviewed/2022/05/GHSA-w64m-6m7c-7r2p/GHSA-w64m-6m7c-7r2p.json @@ -7,12 +7,8 @@ "CVE-2021-36062" ], "details": "Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w64q-f6qr-2h2h/GHSA-w64q-f6qr-2h2h.json b/advisories/unreviewed/2022/05/GHSA-w64q-f6qr-2h2h/GHSA-w64q-f6qr-2h2h.json index fd0e6ecd32c..b16175a7bde 100644 --- a/advisories/unreviewed/2022/05/GHSA-w64q-f6qr-2h2h/GHSA-w64q-f6qr-2h2h.json +++ b/advisories/unreviewed/2022/05/GHSA-w64q-f6qr-2h2h/GHSA-w64q-f6qr-2h2h.json @@ -7,12 +7,8 @@ "CVE-2021-39377" ], "details": "A SQL Injection vulnerability exists in openSIS 8.0 when MySQL (MariaDB) is being used as the application database. A malicious attacker can issue SQL commands to the MySQL (MariaDB) database through the index.php username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w678-q7pr-w52j/GHSA-w678-q7pr-w52j.json b/advisories/unreviewed/2022/05/GHSA-w678-q7pr-w52j/GHSA-w678-q7pr-w52j.json index c2fbfd8201c..6b9cbf56a23 100644 --- a/advisories/unreviewed/2022/05/GHSA-w678-q7pr-w52j/GHSA-w678-q7pr-w52j.json +++ b/advisories/unreviewed/2022/05/GHSA-w678-q7pr-w52j/GHSA-w678-q7pr-w52j.json @@ -7,12 +7,8 @@ "CVE-2005-3507" ], "details": "Directory traversal vulnerability in CuteNews 1.4.1 allows remote attackers to include arbitrary files, execute code, and gain privileges via \"../\" sequences in the template parameter to (1) show_archives.php and (2) show_news.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w72j-vh4j-rfc3/GHSA-w72j-vh4j-rfc3.json b/advisories/unreviewed/2022/05/GHSA-w72j-vh4j-rfc3/GHSA-w72j-vh4j-rfc3.json index 02cb50eabc1..d60a49ddffa 100644 --- a/advisories/unreviewed/2022/05/GHSA-w72j-vh4j-rfc3/GHSA-w72j-vh4j-rfc3.json +++ b/advisories/unreviewed/2022/05/GHSA-w72j-vh4j-rfc3/GHSA-w72j-vh4j-rfc3.json @@ -7,12 +7,8 @@ "CVE-2021-27556" ], "details": "The Cron job tab in EasyCorp ZenTao 12.5.3 allows remote attackers (who have admin access) to execute arbitrary code by setting the type parameter to System.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7g5-2m2h-5x5f/GHSA-w7g5-2m2h-5x5f.json b/advisories/unreviewed/2022/05/GHSA-w7g5-2m2h-5x5f/GHSA-w7g5-2m2h-5x5f.json index 1dbc3adcd77..1e6960b0db8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7g5-2m2h-5x5f/GHSA-w7g5-2m2h-5x5f.json +++ b/advisories/unreviewed/2022/05/GHSA-w7g5-2m2h-5x5f/GHSA-w7g5-2m2h-5x5f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7m5-xx6m-65q8/GHSA-w7m5-xx6m-65q8.json b/advisories/unreviewed/2022/05/GHSA-w7m5-xx6m-65q8/GHSA-w7m5-xx6m-65q8.json index cfbad784e58..1e84c1e6288 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7m5-xx6m-65q8/GHSA-w7m5-xx6m-65q8.json +++ b/advisories/unreviewed/2022/05/GHSA-w7m5-xx6m-65q8/GHSA-w7m5-xx6m-65q8.json @@ -7,12 +7,8 @@ "CVE-2021-36066" ], "details": "Adobe Photoshop versions 21.2.10 (and earlier) and 22.4.3 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w85p-6q9m-866x/GHSA-w85p-6q9m-866x.json b/advisories/unreviewed/2022/05/GHSA-w85p-6q9m-866x/GHSA-w85p-6q9m-866x.json index 830506d8ee9..c5ff0ffc0d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-w85p-6q9m-866x/GHSA-w85p-6q9m-866x.json +++ b/advisories/unreviewed/2022/05/GHSA-w85p-6q9m-866x/GHSA-w85p-6q9m-866x.json @@ -7,12 +7,8 @@ "CVE-2021-30682" ], "details": "A logic issue was addressed with improved restrictions. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Safari 14.1.1, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to leak sensitive user information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8cq-r9p6-mc5f/GHSA-w8cq-r9p6-mc5f.json b/advisories/unreviewed/2022/05/GHSA-w8cq-r9p6-mc5f/GHSA-w8cq-r9p6-mc5f.json index d00efacd1f5..41350a03d25 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8cq-r9p6-mc5f/GHSA-w8cq-r9p6-mc5f.json +++ b/advisories/unreviewed/2022/05/GHSA-w8cq-r9p6-mc5f/GHSA-w8cq-r9p6-mc5f.json @@ -7,12 +7,8 @@ "CVE-2005-3772" ], "details": "Multiple SQL injection vulnerabilities in Joomla! before 1.0.4 allow remote attackers to execute arbitrary SQL commands via the (1) Itemid variable in the Polls modules and (2) multiple unspecified methods in the mosDBTable class.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8gf-vcmf-6ww6/GHSA-w8gf-vcmf-6ww6.json b/advisories/unreviewed/2022/05/GHSA-w8gf-vcmf-6ww6/GHSA-w8gf-vcmf-6ww6.json index e0d6adff65a..27ad7ad2b20 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8gf-vcmf-6ww6/GHSA-w8gf-vcmf-6ww6.json +++ b/advisories/unreviewed/2022/05/GHSA-w8gf-vcmf-6ww6/GHSA-w8gf-vcmf-6ww6.json @@ -7,12 +7,8 @@ "CVE-2005-3531" ], "details": "fusermount in FUSE before 2.4.1, if installed setuid root, allows local users to corrupt /etc/mtab and possibly modify mount options by performing a mount over a directory whose name contains certain special characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w8mm-7prp-fr25/GHSA-w8mm-7prp-fr25.json b/advisories/unreviewed/2022/05/GHSA-w8mm-7prp-fr25/GHSA-w8mm-7prp-fr25.json index 5867ae87df0..00edf263386 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8mm-7prp-fr25/GHSA-w8mm-7prp-fr25.json +++ b/advisories/unreviewed/2022/05/GHSA-w8mm-7prp-fr25/GHSA-w8mm-7prp-fr25.json @@ -7,12 +7,8 @@ "CVE-2021-24592" ], "details": "The Sitewide Notice WP WordPress plugin before 2.3 does not sanitise some of its settings before outputting them in frontend pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8p4-cq45-xh7m/GHSA-w8p4-cq45-xh7m.json b/advisories/unreviewed/2022/05/GHSA-w8p4-cq45-xh7m/GHSA-w8p4-cq45-xh7m.json index 5655623ed96..6fa70248abb 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8p4-cq45-xh7m/GHSA-w8p4-cq45-xh7m.json +++ b/advisories/unreviewed/2022/05/GHSA-w8p4-cq45-xh7m/GHSA-w8p4-cq45-xh7m.json @@ -7,12 +7,8 @@ "CVE-2021-28552" ], "details": "Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Use After Free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w924-f8cp-9m63/GHSA-w924-f8cp-9m63.json b/advisories/unreviewed/2022/05/GHSA-w924-f8cp-9m63/GHSA-w924-f8cp-9m63.json index e967ba481d1..6100bc5204f 100644 --- a/advisories/unreviewed/2022/05/GHSA-w924-f8cp-9m63/GHSA-w924-f8cp-9m63.json +++ b/advisories/unreviewed/2022/05/GHSA-w924-f8cp-9m63/GHSA-w924-f8cp-9m63.json @@ -7,12 +7,8 @@ "CVE-2005-3677" ], "details": "Buffer overflow in RealNetworks RealPlayer 10 and 10.5 allows remote attackers to execute arbitrary code via a crafted image in a RealPlayer Skin (RJS) file. NOTE: due to the lack of details, it is unclear how this is different than CVE-2005-2629 and CVE-2005-2630, but the vendor advisory implies that it is different.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w9mm-988w-25c6/GHSA-w9mm-988w-25c6.json b/advisories/unreviewed/2022/05/GHSA-w9mm-988w-25c6/GHSA-w9mm-988w-25c6.json index b7dbd1dc23d..9d0b77ef5d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9mm-988w-25c6/GHSA-w9mm-988w-25c6.json +++ b/advisories/unreviewed/2022/05/GHSA-w9mm-988w-25c6/GHSA-w9mm-988w-25c6.json @@ -7,12 +7,8 @@ "CVE-2005-3515" ], "details": "Cross-site scripting (XSS) vulnerability in recommend.php in Chipmunk Topsites script allows remote attackers to inject arbitrary web script or HTML via the ID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w9vr-rgwg-c56x/GHSA-w9vr-rgwg-c56x.json b/advisories/unreviewed/2022/05/GHSA-w9vr-rgwg-c56x/GHSA-w9vr-rgwg-c56x.json index 79d6b5a7802..d788c233ccb 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9vr-rgwg-c56x/GHSA-w9vr-rgwg-c56x.json +++ b/advisories/unreviewed/2022/05/GHSA-w9vr-rgwg-c56x/GHSA-w9vr-rgwg-c56x.json @@ -7,12 +7,8 @@ "CVE-2021-22026" ], "details": "The vRealize Operations Manager API (8.x prior to 8.5) contains a Server Side Request Forgery in an end point. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack leading to information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcq2-9ggc-f564/GHSA-wcq2-9ggc-f564.json b/advisories/unreviewed/2022/05/GHSA-wcq2-9ggc-f564/GHSA-wcq2-9ggc-f564.json index 6e2c567cf04..6d360df04ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcq2-9ggc-f564/GHSA-wcq2-9ggc-f564.json +++ b/advisories/unreviewed/2022/05/GHSA-wcq2-9ggc-f564/GHSA-wcq2-9ggc-f564.json @@ -7,12 +7,8 @@ "CVE-2005-3784" ], "details": "The auto-reap of child processes in Linux kernel 2.6 before 2.6.15 includes processes with ptrace attached, which leads to a dangling ptrace reference and allows local users to cause a denial of service (crash) and gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -104,9 +100,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wf4j-v485-5m9f/GHSA-wf4j-v485-5m9f.json b/advisories/unreviewed/2022/05/GHSA-wf4j-v485-5m9f/GHSA-wf4j-v485-5m9f.json index 4fc31317bd2..d5b71699ee9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wf4j-v485-5m9f/GHSA-wf4j-v485-5m9f.json +++ b/advisories/unreviewed/2022/05/GHSA-wf4j-v485-5m9f/GHSA-wf4j-v485-5m9f.json @@ -7,12 +7,8 @@ "CVE-2021-39510" ], "details": "An issue was discovered in D-Link DIR816_A1_FW101CNB04 750m11ac wireless router via the HTTP request parameter in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wfvr-5v36-c4rf/GHSA-wfvr-5v36-c4rf.json b/advisories/unreviewed/2022/05/GHSA-wfvr-5v36-c4rf/GHSA-wfvr-5v36-c4rf.json index 300251a269c..387ebdc79fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfvr-5v36-c4rf/GHSA-wfvr-5v36-c4rf.json +++ b/advisories/unreviewed/2022/05/GHSA-wfvr-5v36-c4rf/GHSA-wfvr-5v36-c4rf.json @@ -7,12 +7,8 @@ "CVE-2005-3797" ], "details": "PHP remote file inclusion vulnerability in payment_paypal.php in AlstraSoft Template Seller Pro 3.25 allows remote attackers to execute arbitrary PHP code via the config[basepath] parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wg6q-527f-jmrg/GHSA-wg6q-527f-jmrg.json b/advisories/unreviewed/2022/05/GHSA-wg6q-527f-jmrg/GHSA-wg6q-527f-jmrg.json index e2c4daf9dfe..dcbc48eacfd 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg6q-527f-jmrg/GHSA-wg6q-527f-jmrg.json +++ b/advisories/unreviewed/2022/05/GHSA-wg6q-527f-jmrg/GHSA-wg6q-527f-jmrg.json @@ -7,12 +7,8 @@ "CVE-2005-3667" ], "details": "Multiple unspecified vulnerabilities in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts related to denial of service, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of information in the original sources, it is likely that this candidate will be REJECTed once it is known which implementations are actually vulnerable. In addition, since \"denial of service\" is an impact and not a vulnerability, it is unknown which underlying vulnerabilities are actually covered by this particular candidate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wgh2-gf5f-hmxf/GHSA-wgh2-gf5f-hmxf.json b/advisories/unreviewed/2022/05/GHSA-wgh2-gf5f-hmxf/GHSA-wgh2-gf5f-hmxf.json index d51d0c9a133..91da339524c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgh2-gf5f-hmxf/GHSA-wgh2-gf5f-hmxf.json +++ b/advisories/unreviewed/2022/05/GHSA-wgh2-gf5f-hmxf/GHSA-wgh2-gf5f-hmxf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wgpr-9675-8r67/GHSA-wgpr-9675-8r67.json b/advisories/unreviewed/2022/05/GHSA-wgpr-9675-8r67/GHSA-wgpr-9675-8r67.json index bb1a9d95275..7a817ab701e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgpr-9675-8r67/GHSA-wgpr-9675-8r67.json +++ b/advisories/unreviewed/2022/05/GHSA-wgpr-9675-8r67/GHSA-wgpr-9675-8r67.json @@ -7,12 +7,8 @@ "CVE-2021-36038" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability in the Multishipping Module. An authenticated attacker could leverage this vulnerability to achieve sensitive information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wh25-5c83-qcx8/GHSA-wh25-5c83-qcx8.json b/advisories/unreviewed/2022/05/GHSA-wh25-5c83-qcx8/GHSA-wh25-5c83-qcx8.json index 91c07f3b8ad..32e87d9f8ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh25-5c83-qcx8/GHSA-wh25-5c83-qcx8.json +++ b/advisories/unreviewed/2022/05/GHSA-wh25-5c83-qcx8/GHSA-wh25-5c83-qcx8.json @@ -7,12 +7,8 @@ "CVE-2021-24547" ], "details": "The KN Fix Your Title WordPress plugin through 1.0.1 was vulnerable to Authenticated Stored XSS in the separator field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wmhm-qm44-p3j4/GHSA-wmhm-qm44-p3j4.json b/advisories/unreviewed/2022/05/GHSA-wmhm-qm44-p3j4/GHSA-wmhm-qm44-p3j4.json index d2850e92ca0..51818f8ba76 100644 --- a/advisories/unreviewed/2022/05/GHSA-wmhm-qm44-p3j4/GHSA-wmhm-qm44-p3j4.json +++ b/advisories/unreviewed/2022/05/GHSA-wmhm-qm44-p3j4/GHSA-wmhm-qm44-p3j4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wp4q-x764-7pm7/GHSA-wp4q-x764-7pm7.json b/advisories/unreviewed/2022/05/GHSA-wp4q-x764-7pm7/GHSA-wp4q-x764-7pm7.json index 7b8ca215941..7ab09165a93 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp4q-x764-7pm7/GHSA-wp4q-x764-7pm7.json +++ b/advisories/unreviewed/2022/05/GHSA-wp4q-x764-7pm7/GHSA-wp4q-x764-7pm7.json @@ -7,12 +7,8 @@ "CVE-2005-3736" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in e-Quick Cart allow remote attackers to inject arbitrary web script or HTML via the (1) strgifttoname parameter in shopgift.asp, (2) strfirstname parameter in shopmaillist.asp, (3) strpid parameter in shopprojectlogin.asp, and (4) Custname parameter in shoptellafriend.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wp6x-2jj2-vxhw/GHSA-wp6x-2jj2-vxhw.json b/advisories/unreviewed/2022/05/GHSA-wp6x-2jj2-vxhw/GHSA-wp6x-2jj2-vxhw.json index 17a8c648b57..8f459a306a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-wp6x-2jj2-vxhw/GHSA-wp6x-2jj2-vxhw.json +++ b/advisories/unreviewed/2022/05/GHSA-wp6x-2jj2-vxhw/GHSA-wp6x-2jj2-vxhw.json @@ -7,12 +7,8 @@ "CVE-2021-27020" ], "details": "Puppet Enterprise presented a security risk by not sanitizing user input when doing a CSV export.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpjv-j566-pfwc/GHSA-wpjv-j566-pfwc.json b/advisories/unreviewed/2022/05/GHSA-wpjv-j566-pfwc/GHSA-wpjv-j566-pfwc.json index 2ed285d7b3f..d72df8bc657 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpjv-j566-pfwc/GHSA-wpjv-j566-pfwc.json +++ b/advisories/unreviewed/2022/05/GHSA-wpjv-j566-pfwc/GHSA-wpjv-j566-pfwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpp8-mvvg-33rx/GHSA-wpp8-mvvg-33rx.json b/advisories/unreviewed/2022/05/GHSA-wpp8-mvvg-33rx/GHSA-wpp8-mvvg-33rx.json index 49e5b6aa0fa..cc10293c22b 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpp8-mvvg-33rx/GHSA-wpp8-mvvg-33rx.json +++ b/advisories/unreviewed/2022/05/GHSA-wpp8-mvvg-33rx/GHSA-wpp8-mvvg-33rx.json @@ -7,12 +7,8 @@ "CVE-2021-32832" ], "details": "Rocket.Chat is an open-source fully customizable communications platform developed in JavaScript. In Rocket.Chat before versions 3.11.3, 3.12.2, and 3.13 an issue with certain regular expressions could lead potentially to Denial of Service. This was fixed in versions 3.11.3, 3.12.2, and 3.13.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpxc-82q2-m458/GHSA-wpxc-82q2-m458.json b/advisories/unreviewed/2022/05/GHSA-wpxc-82q2-m458/GHSA-wpxc-82q2-m458.json index 330e8168d33..3edc0165548 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpxc-82q2-m458/GHSA-wpxc-82q2-m458.json +++ b/advisories/unreviewed/2022/05/GHSA-wpxc-82q2-m458/GHSA-wpxc-82q2-m458.json @@ -7,12 +7,8 @@ "CVE-2021-30662" ], "details": "This issue was addressed with improved checks. This issue is fixed in iOS 14.5 and iPadOS 14.5. Processing a maliciously crafted file may lead to arbitrary code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wqm9-qgxx-q859/GHSA-wqm9-qgxx-q859.json b/advisories/unreviewed/2022/05/GHSA-wqm9-qgxx-q859/GHSA-wqm9-qgxx-q859.json index e004458eb22..e3855c90830 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqm9-qgxx-q859/GHSA-wqm9-qgxx-q859.json +++ b/advisories/unreviewed/2022/05/GHSA-wqm9-qgxx-q859/GHSA-wqm9-qgxx-q859.json @@ -7,12 +7,8 @@ "CVE-2005-3702" ], "details": "Safari in Mac OS X and OS X Server 10.3.9 and 10.4.3 allows remote attackers to cause files to be downloaded to locations outside the download directory via a long file name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wr3g-x329-q53c/GHSA-wr3g-x329-q53c.json b/advisories/unreviewed/2022/05/GHSA-wr3g-x329-q53c/GHSA-wr3g-x329-q53c.json index f2d9c73bff1..e444bc4024a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr3g-x329-q53c/GHSA-wr3g-x329-q53c.json +++ b/advisories/unreviewed/2022/05/GHSA-wr3g-x329-q53c/GHSA-wr3g-x329-q53c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wr57-3h2f-3q95/GHSA-wr57-3h2f-3q95.json b/advisories/unreviewed/2022/05/GHSA-wr57-3h2f-3q95/GHSA-wr57-3h2f-3q95.json index a0b589cc446..4ec0a0eead1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wr57-3h2f-3q95/GHSA-wr57-3h2f-3q95.json +++ b/advisories/unreviewed/2022/05/GHSA-wr57-3h2f-3q95/GHSA-wr57-3h2f-3q95.json @@ -7,12 +7,8 @@ "CVE-2021-36044" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an improper input validation vulnerability. An unauthenticated attacker could abuse this vulnerability to cause a server-side denial-of-service using a GraphQL field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvr6-9968-cvwm/GHSA-wvr6-9968-cvwm.json b/advisories/unreviewed/2022/05/GHSA-wvr6-9968-cvwm/GHSA-wvr6-9968-cvwm.json index c87068fdd3a..00adb493dad 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvr6-9968-cvwm/GHSA-wvr6-9968-cvwm.json +++ b/advisories/unreviewed/2022/05/GHSA-wvr6-9968-cvwm/GHSA-wvr6-9968-cvwm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wwp3-5cw9-44wv/GHSA-wwp3-5cw9-44wv.json b/advisories/unreviewed/2022/05/GHSA-wwp3-5cw9-44wv/GHSA-wwp3-5cw9-44wv.json index 45ffc934c35..aed595abe48 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwp3-5cw9-44wv/GHSA-wwp3-5cw9-44wv.json +++ b/advisories/unreviewed/2022/05/GHSA-wwp3-5cw9-44wv/GHSA-wwp3-5cw9-44wv.json @@ -7,12 +7,8 @@ "CVE-2021-28551" ], "details": "Acrobat Reader DC versions versions 2021.001.20155 (and earlier), 2020.001.30025 (and earlier) and 2017.011.30196 (and earlier) are affected by an Out-of-bounds read vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wxch-2vvj-p58q/GHSA-wxch-2vvj-p58q.json b/advisories/unreviewed/2022/05/GHSA-wxch-2vvj-p58q/GHSA-wxch-2vvj-p58q.json index 5efd86f1761..2b4e305cf4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxch-2vvj-p58q/GHSA-wxch-2vvj-p58q.json +++ b/advisories/unreviewed/2022/05/GHSA-wxch-2vvj-p58q/GHSA-wxch-2vvj-p58q.json @@ -7,12 +7,8 @@ "CVE-2013-0150" ], "details": "Directory traversal vulnerability in an unspecified signed Java applet in the client-side components in F5 BIG-IP APM 10.1.0 through 10.2.4 and 11.0.0 through 11.3.0, FirePass 6.0.0 through 6.1.0 and 7.0.0, and other products \"when APM is provisioned,\" allows remote attackers to upload and execute arbitrary files via a .. (dot dot) in the filename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2p8-v5vc-p33g/GHSA-x2p8-v5vc-p33g.json b/advisories/unreviewed/2022/05/GHSA-x2p8-v5vc-p33g/GHSA-x2p8-v5vc-p33g.json index 5315d7509ec..ead172b2334 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2p8-v5vc-p33g/GHSA-x2p8-v5vc-p33g.json +++ b/advisories/unreviewed/2022/05/GHSA-x2p8-v5vc-p33g/GHSA-x2p8-v5vc-p33g.json @@ -7,12 +7,8 @@ "CVE-2021-36073" ], "details": "Adobe Bridge version 11.1 (and earlier) is affected by a heap-based buffer overflow vulnerability when parsing a crafted .SGI file. An attacker could leverage this vulnerability to execute code in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2vg-c4cj-x56w/GHSA-x2vg-c4cj-x56w.json b/advisories/unreviewed/2022/05/GHSA-x2vg-c4cj-x56w/GHSA-x2vg-c4cj-x56w.json index 29faf74cca9..45f5d0bc8f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2vg-c4cj-x56w/GHSA-x2vg-c4cj-x56w.json +++ b/advisories/unreviewed/2022/05/GHSA-x2vg-c4cj-x56w/GHSA-x2vg-c4cj-x56w.json @@ -7,12 +7,8 @@ "CVE-2021-38611" ], "details": "A command-injection vulnerability in the Image Upload function of the NASCENT RemKon Device Manager 4.0.0.0 allows attackers to execute arbitrary commands, as root, via shell metacharacters in the filename parameter to assets/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2vv-gpwf-9588/GHSA-x2vv-gpwf-9588.json b/advisories/unreviewed/2022/05/GHSA-x2vv-gpwf-9588/GHSA-x2vv-gpwf-9588.json index f92ff501b8a..33758b0bd40 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2vv-gpwf-9588/GHSA-x2vv-gpwf-9588.json +++ b/advisories/unreviewed/2022/05/GHSA-x2vv-gpwf-9588/GHSA-x2vv-gpwf-9588.json @@ -7,12 +7,8 @@ "CVE-2005-3739" ], "details": "Unspecified vulnerability in subheader.php in PHP-Fusion 6.00.206 and earlier allows remote attackers to obtain the full path via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x37p-34pw-gv66/GHSA-x37p-34pw-gv66.json b/advisories/unreviewed/2022/05/GHSA-x37p-34pw-gv66/GHSA-x37p-34pw-gv66.json index d179a3d4e55..377bda400e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-x37p-34pw-gv66/GHSA-x37p-34pw-gv66.json +++ b/advisories/unreviewed/2022/05/GHSA-x37p-34pw-gv66/GHSA-x37p-34pw-gv66.json @@ -7,12 +7,8 @@ "CVE-2005-3711" ], "details": "Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified (1) \"strips\" (StripByteCounts) or (2) \"bands\" (StripOffsets) values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x3c8-wqw8-h8mr/GHSA-x3c8-wqw8-h8mr.json b/advisories/unreviewed/2022/05/GHSA-x3c8-wqw8-h8mr/GHSA-x3c8-wqw8-h8mr.json index a5f3dcf6fbd..a97d3e1f46d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3c8-wqw8-h8mr/GHSA-x3c8-wqw8-h8mr.json +++ b/advisories/unreviewed/2022/05/GHSA-x3c8-wqw8-h8mr/GHSA-x3c8-wqw8-h8mr.json @@ -7,12 +7,8 @@ "CVE-2005-3632" ], "details": "Multiple buffer overflows in pnmtopng in netpbm 10.0 and earlier allow attackers to execute arbitrary code via a crafted PNM file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x3f9-4w7w-5mj9/GHSA-x3f9-4w7w-5mj9.json b/advisories/unreviewed/2022/05/GHSA-x3f9-4w7w-5mj9/GHSA-x3f9-4w7w-5mj9.json index 6fd6dd19023..6cadd9330fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3f9-4w7w-5mj9/GHSA-x3f9-4w7w-5mj9.json +++ b/advisories/unreviewed/2022/05/GHSA-x3f9-4w7w-5mj9/GHSA-x3f9-4w7w-5mj9.json @@ -7,12 +7,8 @@ "CVE-2021-28608" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x58v-xfqh-24p6/GHSA-x58v-xfqh-24p6.json b/advisories/unreviewed/2022/05/GHSA-x58v-xfqh-24p6/GHSA-x58v-xfqh-24p6.json index c372975f399..9c50b010451 100644 --- a/advisories/unreviewed/2022/05/GHSA-x58v-xfqh-24p6/GHSA-x58v-xfqh-24p6.json +++ b/advisories/unreviewed/2022/05/GHSA-x58v-xfqh-24p6/GHSA-x58v-xfqh-24p6.json @@ -7,12 +7,8 @@ "CVE-2021-22929" ], "details": "An information disclosure exists in Brave Browser Desktop prior to version 1.28.62, where logged warning messages that included timestamps of connections to V2 onion domains in tor.log.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x5c3-9c32-978j/GHSA-x5c3-9c32-978j.json b/advisories/unreviewed/2022/05/GHSA-x5c3-9c32-978j/GHSA-x5c3-9c32-978j.json index cf07092a2da..d639a02e164 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5c3-9c32-978j/GHSA-x5c3-9c32-978j.json +++ b/advisories/unreviewed/2022/05/GHSA-x5c3-9c32-978j/GHSA-x5c3-9c32-978j.json @@ -7,12 +7,8 @@ "CVE-2020-19049" ], "details": "Cross Site Scripting (XSS) in MyBB v1.8.20 allows remote attackers to inject arbitrary web script or HTML via the \"Description\" field found in the \"Add New Forum\" page by doing an authenticated POST HTTP request to '/Upload/admin/index.php?module=forum-management&action=add'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x6h9-x5h5-8pwq/GHSA-x6h9-x5h5-8pwq.json b/advisories/unreviewed/2022/05/GHSA-x6h9-x5h5-8pwq/GHSA-x6h9-x5h5-8pwq.json index ea6707f2e80..6dfdf5bfb64 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6h9-x5h5-8pwq/GHSA-x6h9-x5h5-8pwq.json +++ b/advisories/unreviewed/2022/05/GHSA-x6h9-x5h5-8pwq/GHSA-x6h9-x5h5-8pwq.json @@ -7,12 +7,8 @@ "CVE-2005-3882" ], "details": "SQL injection vulnerability in answer.php in FAQSystems FAQRing Knowledge Base Software 3.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x6vc-6hx9-wx4j/GHSA-x6vc-6hx9-wx4j.json b/advisories/unreviewed/2022/05/GHSA-x6vc-6hx9-wx4j/GHSA-x6vc-6hx9-wx4j.json index 03b962cd0f2..23fb55a2bf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6vc-6hx9-wx4j/GHSA-x6vc-6hx9-wx4j.json +++ b/advisories/unreviewed/2022/05/GHSA-x6vc-6hx9-wx4j/GHSA-x6vc-6hx9-wx4j.json @@ -7,12 +7,8 @@ "CVE-2021-30658" ], "details": "This issue was addressed with improved handling of file metadata. This issue is fixed in macOS Big Sur 11.3. A malicious application may bypass Gatekeeper checks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x6xc-g5hj-3prw/GHSA-x6xc-g5hj-3prw.json b/advisories/unreviewed/2022/05/GHSA-x6xc-g5hj-3prw/GHSA-x6xc-g5hj-3prw.json index 90e6f7ce8cd..0c1b2a2d0ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-x6xc-g5hj-3prw/GHSA-x6xc-g5hj-3prw.json +++ b/advisories/unreviewed/2022/05/GHSA-x6xc-g5hj-3prw/GHSA-x6xc-g5hj-3prw.json @@ -7,12 +7,8 @@ "CVE-2005-3752" ], "details": "Unspecified vulnerability in ldapdiff before 1.1.1 has unknown impact and attack vectors, related to \"ldapdiff.conf path construction\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x775-fgm4-rf66/GHSA-x775-fgm4-rf66.json b/advisories/unreviewed/2022/05/GHSA-x775-fgm4-rf66/GHSA-x775-fgm4-rf66.json index 215cbc8279e..0092060b4a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-x775-fgm4-rf66/GHSA-x775-fgm4-rf66.json +++ b/advisories/unreviewed/2022/05/GHSA-x775-fgm4-rf66/GHSA-x775-fgm4-rf66.json @@ -7,12 +7,8 @@ "CVE-2005-3424" ], "details": "Cross-site scripting (XSS) vulnerability in GNUMP3D before 2.9.5 allows remote attackers to inject arbitrary web script or HTML via 404 error pages, a different vulnerability than CVE-2005-3425.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x7w4-rm2c-m9gp/GHSA-x7w4-rm2c-m9gp.json b/advisories/unreviewed/2022/05/GHSA-x7w4-rm2c-m9gp/GHSA-x7w4-rm2c-m9gp.json index 882054d9a53..56c5284496d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7w4-rm2c-m9gp/GHSA-x7w4-rm2c-m9gp.json +++ b/advisories/unreviewed/2022/05/GHSA-x7w4-rm2c-m9gp/GHSA-x7w4-rm2c-m9gp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x84x-j5pw-3w52/GHSA-x84x-j5pw-3w52.json b/advisories/unreviewed/2022/05/GHSA-x84x-j5pw-3w52/GHSA-x84x-j5pw-3w52.json index 58f0d9974af..6c96eacc01a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x84x-j5pw-3w52/GHSA-x84x-j5pw-3w52.json +++ b/advisories/unreviewed/2022/05/GHSA-x84x-j5pw-3w52/GHSA-x84x-j5pw-3w52.json @@ -7,12 +7,8 @@ "CVE-2005-3514" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Chipmunk Forum script allow remote attackers to inject arbitrary web script or HTML via the forumID parameter to (1) newtopic.php, (2) quote.php, (3) index.php, and (4) reply.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x86f-pc76-mvvw/GHSA-x86f-pc76-mvvw.json b/advisories/unreviewed/2022/05/GHSA-x86f-pc76-mvvw/GHSA-x86f-pc76-mvvw.json index 7d71c4fcc89..4c7025247ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-x86f-pc76-mvvw/GHSA-x86f-pc76-mvvw.json +++ b/advisories/unreviewed/2022/05/GHSA-x86f-pc76-mvvw/GHSA-x86f-pc76-mvvw.json @@ -7,12 +7,8 @@ "CVE-2005-3775" ], "details": "PHP remote file inclusion vulnerability in pollvote.php in PollVote allows remote attackers to include arbitrary files via a URL in the pollname parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x96p-73v2-g6rg/GHSA-x96p-73v2-g6rg.json b/advisories/unreviewed/2022/05/GHSA-x96p-73v2-g6rg/GHSA-x96p-73v2-g6rg.json index 7719e241b88..f33d438436c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x96p-73v2-g6rg/GHSA-x96p-73v2-g6rg.json +++ b/advisories/unreviewed/2022/05/GHSA-x96p-73v2-g6rg/GHSA-x96p-73v2-g6rg.json @@ -7,12 +7,8 @@ "CVE-2005-3394" ], "details": "Multiple SQL injection vulnerabilities in forum.php in oaboard forum 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) channel parameter in the topics module and (2) topic parameter in the posting module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x9hm-v5pv-g264/GHSA-x9hm-v5pv-g264.json b/advisories/unreviewed/2022/05/GHSA-x9hm-v5pv-g264/GHSA-x9hm-v5pv-g264.json index 9b59fd80571..4659a66bc6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9hm-v5pv-g264/GHSA-x9hm-v5pv-g264.json +++ b/advisories/unreviewed/2022/05/GHSA-x9hm-v5pv-g264/GHSA-x9hm-v5pv-g264.json @@ -7,12 +7,8 @@ "CVE-2005-3728" ], "details": "Idetix Software Systems Revize CMS stores conf/revize.xml under the web document root with insufficient access control, which allows remote attackers to obtain sensitive configuration information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x9ww-8c93-r6mp/GHSA-x9ww-8c93-r6mp.json b/advisories/unreviewed/2022/05/GHSA-x9ww-8c93-r6mp/GHSA-x9ww-8c93-r6mp.json index dd417d5c9bc..d31e1d6fcba 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9ww-8c93-r6mp/GHSA-x9ww-8c93-r6mp.json +++ b/advisories/unreviewed/2022/05/GHSA-x9ww-8c93-r6mp/GHSA-x9ww-8c93-r6mp.json @@ -7,12 +7,8 @@ "CVE-2005-3647" ], "details": "Folder Guard allows local users to bypass protections by running from or installing to the temporary files directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xc2w-5wwx-wg78/GHSA-xc2w-5wwx-wg78.json b/advisories/unreviewed/2022/05/GHSA-xc2w-5wwx-wg78/GHSA-xc2w-5wwx-wg78.json index 98d67854cb9..b4263a85e1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xc2w-5wwx-wg78/GHSA-xc2w-5wwx-wg78.json +++ b/advisories/unreviewed/2022/05/GHSA-xc2w-5wwx-wg78/GHSA-xc2w-5wwx-wg78.json @@ -7,12 +7,8 @@ "CVE-2021-33555" ], "details": "In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.7 the filename parameter is vulnerable to unauthenticated path traversal attacks, enabling read access to arbitrary files on the server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xch2-x476-3qg9/GHSA-xch2-x476-3qg9.json b/advisories/unreviewed/2022/05/GHSA-xch2-x476-3qg9/GHSA-xch2-x476-3qg9.json index e0446c663d5..a4194a722a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xch2-x476-3qg9/GHSA-xch2-x476-3qg9.json +++ b/advisories/unreviewed/2022/05/GHSA-xch2-x476-3qg9/GHSA-xch2-x476-3qg9.json @@ -7,12 +7,8 @@ "CVE-2021-32991" ], "details": "Delta Electronics DIAEnergie Version 1.7.5 and prior is vulnerable to cross-site request forgery, which may allow an attacker to cause a user to carry out an action unintentionally.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xfxh-47fx-qrxv/GHSA-xfxh-47fx-qrxv.json b/advisories/unreviewed/2022/05/GHSA-xfxh-47fx-qrxv/GHSA-xfxh-47fx-qrxv.json index 1e57523720e..09270a68ba5 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfxh-47fx-qrxv/GHSA-xfxh-47fx-qrxv.json +++ b/advisories/unreviewed/2022/05/GHSA-xfxh-47fx-qrxv/GHSA-xfxh-47fx-qrxv.json @@ -7,12 +7,8 @@ "CVE-2005-3860" ], "details": "PHP remote file inclusion vulnerability in athena.php in Oliver May Athena PHP Website Administration 0.1a allows remote attackers to execute arbitrary PHP code via a URL in the athena_dir parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg5j-2463-7x9w/GHSA-xg5j-2463-7x9w.json b/advisories/unreviewed/2022/05/GHSA-xg5j-2463-7x9w/GHSA-xg5j-2463-7x9w.json index 9da2e761765..8b363803370 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg5j-2463-7x9w/GHSA-xg5j-2463-7x9w.json +++ b/advisories/unreviewed/2022/05/GHSA-xg5j-2463-7x9w/GHSA-xg5j-2463-7x9w.json @@ -7,12 +7,8 @@ "CVE-2005-3436" ], "details": "Cross-site scripting (XSS) vulnerability in Nuked-Klan 1.7 allows remote attackers to inject arbitrary web script or HTML via the (1) Search module, (2) certain edit fields in Guestbook, (3) the title in the Forum module, and (4) Textbox.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xg8h-2cqp-4x5f/GHSA-xg8h-2cqp-4x5f.json b/advisories/unreviewed/2022/05/GHSA-xg8h-2cqp-4x5f/GHSA-xg8h-2cqp-4x5f.json index 1a1f1d78f83..2ad4961ef28 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg8h-2cqp-4x5f/GHSA-xg8h-2cqp-4x5f.json +++ b/advisories/unreviewed/2022/05/GHSA-xg8h-2cqp-4x5f/GHSA-xg8h-2cqp-4x5f.json @@ -7,12 +7,8 @@ "CVE-2021-36233" ], "details": "The function AdminGetFirstFileContentByFilePath in MIK.starlight 7.9.5.24363 allows (by design) an authenticated attacker to read arbitrary files from the filesystem by specifying the file path.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xh7h-xfm8-vvhp/GHSA-xh7h-xfm8-vvhp.json b/advisories/unreviewed/2022/05/GHSA-xh7h-xfm8-vvhp/GHSA-xh7h-xfm8-vvhp.json index 83c95e1aadf..fda8c0a3b3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh7h-xfm8-vvhp/GHSA-xh7h-xfm8-vvhp.json +++ b/advisories/unreviewed/2022/05/GHSA-xh7h-xfm8-vvhp/GHSA-xh7h-xfm8-vvhp.json @@ -7,12 +7,8 @@ "CVE-2021-28619" ], "details": "Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhm3-9gcc-42h6/GHSA-xhm3-9gcc-42h6.json b/advisories/unreviewed/2022/05/GHSA-xhm3-9gcc-42h6/GHSA-xhm3-9gcc-42h6.json index 6d78c6c07ac..0e63d493ee9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhm3-9gcc-42h6/GHSA-xhm3-9gcc-42h6.json +++ b/advisories/unreviewed/2022/05/GHSA-xhm3-9gcc-42h6/GHSA-xhm3-9gcc-42h6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhvx-6vm7-468w/GHSA-xhvx-6vm7-468w.json b/advisories/unreviewed/2022/05/GHSA-xhvx-6vm7-468w/GHSA-xhvx-6vm7-468w.json index 3e329b41028..ec8fd0a15d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhvx-6vm7-468w/GHSA-xhvx-6vm7-468w.json +++ b/advisories/unreviewed/2022/05/GHSA-xhvx-6vm7-468w/GHSA-xhvx-6vm7-468w.json @@ -7,12 +7,8 @@ "CVE-2005-3544" ], "details": "Cross-site scripting (XSS) vulnerability in u2u.php in XMB 1.9.3 allows remote attackers to inject arbitrary web script or HTML via the username parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xj6q-3qm4-vg6w/GHSA-xj6q-3qm4-vg6w.json b/advisories/unreviewed/2022/05/GHSA-xj6q-3qm4-vg6w/GHSA-xj6q-3qm4-vg6w.json index 8717c363d94..59a752d56f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj6q-3qm4-vg6w/GHSA-xj6q-3qm4-vg6w.json +++ b/advisories/unreviewed/2022/05/GHSA-xj6q-3qm4-vg6w/GHSA-xj6q-3qm4-vg6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xjq2-x47m-hqr8/GHSA-xjq2-x47m-hqr8.json b/advisories/unreviewed/2022/05/GHSA-xjq2-x47m-hqr8/GHSA-xjq2-x47m-hqr8.json index 524ba9ca24c..25d0b148e36 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjq2-x47m-hqr8/GHSA-xjq2-x47m-hqr8.json +++ b/advisories/unreviewed/2022/05/GHSA-xjq2-x47m-hqr8/GHSA-xjq2-x47m-hqr8.json @@ -7,12 +7,8 @@ "CVE-2005-3824" ], "details": "The uploads module in vTiger CRM 4.2 and earlier allows remote attackers to upload arbitrary files, such as PHP files, via the add2db action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xmgr-93hm-xhpj/GHSA-xmgr-93hm-xhpj.json b/advisories/unreviewed/2022/05/GHSA-xmgr-93hm-xhpj/GHSA-xmgr-93hm-xhpj.json index 03afe33c8e2..0e9ea0c7f33 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmgr-93hm-xhpj/GHSA-xmgr-93hm-xhpj.json +++ b/advisories/unreviewed/2022/05/GHSA-xmgr-93hm-xhpj/GHSA-xmgr-93hm-xhpj.json @@ -7,12 +7,8 @@ "CVE-2005-3749" ], "details": "Unspecified \"absolute path vulnerabilities\" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xpg5-6226-vf59/GHSA-xpg5-6226-vf59.json b/advisories/unreviewed/2022/05/GHSA-xpg5-6226-vf59/GHSA-xpg5-6226-vf59.json index 4d476bd3ec8..efd2940a9db 100644 --- a/advisories/unreviewed/2022/05/GHSA-xpg5-6226-vf59/GHSA-xpg5-6226-vf59.json +++ b/advisories/unreviewed/2022/05/GHSA-xpg5-6226-vf59/GHSA-xpg5-6226-vf59.json @@ -7,12 +7,8 @@ "CVE-2020-9002" ], "details": "An issue was discovered in iPortalis iCS 7.1.13.0. An attacker can gain privileges by intercepting a request and changing UserRoleKey=COMPANY_ADMIN to UserRoleKey=DOMAIN_ADMIN (to achieve Domain Administrator access).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xq3m-82wp-9899/GHSA-xq3m-82wp-9899.json b/advisories/unreviewed/2022/05/GHSA-xq3m-82wp-9899/GHSA-xq3m-82wp-9899.json index 8c08d1dfb4f..81a3791deda 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq3m-82wp-9899/GHSA-xq3m-82wp-9899.json +++ b/advisories/unreviewed/2022/05/GHSA-xq3m-82wp-9899/GHSA-xq3m-82wp-9899.json @@ -7,12 +7,8 @@ "CVE-2021-39244" ], "details": "Authenticated Semi-Blind Command Injection (via Parameter Injection) exists on Altus Nexto, Nexto Xpress, and Hadron Xtorm devices via the getlogs.cgi tcpdump feature. This affects Nexto NX3003 1.8.11.0, Nexto NX3004 1.8.11.0, Nexto NX3005 1.8.11.0, Nexto NX3010 1.8.3.0, Nexto NX3020 1.8.3.0, Nexto NX3030 1.8.3.0, Nexto NX5100 1.8.11.0, Nexto NX5101 1.8.11.0, Nexto NX5110 1.1.2.8, Nexto NX5210 1.1.2.8, Nexto Xpress XP300 1.8.11.0, Nexto Xpress XP315 1.8.11.0, Nexto Xpress XP325 1.8.11.0, Nexto Xpress XP340 1.8.11.0, and Hadron Xtorm HX3040 1.7.58.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqvc-4f2x-pm8v/GHSA-xqvc-4f2x-pm8v.json b/advisories/unreviewed/2022/05/GHSA-xqvc-4f2x-pm8v/GHSA-xqvc-4f2x-pm8v.json index 5dea1a36a42..5f6c11e1297 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqvc-4f2x-pm8v/GHSA-xqvc-4f2x-pm8v.json +++ b/advisories/unreviewed/2022/05/GHSA-xqvc-4f2x-pm8v/GHSA-xqvc-4f2x-pm8v.json @@ -7,12 +7,8 @@ "CVE-2005-3672" ], "details": "The Internet Key Exchange version 1 (IKEv1) implementation in Stonesoft StoneGate Firewall before 2.6.1 allows remote attackers to cause a denial of service via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the Stonesoft advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrpv-9rfm-8rj3/GHSA-xrpv-9rfm-8rj3.json b/advisories/unreviewed/2022/05/GHSA-xrpv-9rfm-8rj3/GHSA-xrpv-9rfm-8rj3.json index 0c633bd5e26..d13a9ff65f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrpv-9rfm-8rj3/GHSA-xrpv-9rfm-8rj3.json +++ b/advisories/unreviewed/2022/05/GHSA-xrpv-9rfm-8rj3/GHSA-xrpv-9rfm-8rj3.json @@ -7,12 +7,8 @@ "CVE-2005-3893" ], "details": "Multiple SQL injection vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) user parameter in the Login action, and remote authenticated users via the (2) TicketID and (3) ArticleID parameters of the AgentTicketPlain action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrqj-vfc5-wr3x/GHSA-xrqj-vfc5-wr3x.json b/advisories/unreviewed/2022/05/GHSA-xrqj-vfc5-wr3x/GHSA-xrqj-vfc5-wr3x.json index 69470f79bef..6b25e3ecd4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrqj-vfc5-wr3x/GHSA-xrqj-vfc5-wr3x.json +++ b/advisories/unreviewed/2022/05/GHSA-xrqj-vfc5-wr3x/GHSA-xrqj-vfc5-wr3x.json @@ -7,12 +7,8 @@ "CVE-2005-3485" ], "details": "Buffer overflow in Glider Collect'n kill 1.0.0.0 allows remote attackers to execute arbitrary code via a gl_playerEnter command with a long player name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvjj-gv4g-2h8h/GHSA-xvjj-gv4g-2h8h.json b/advisories/unreviewed/2022/05/GHSA-xvjj-gv4g-2h8h/GHSA-xvjj-gv4g-2h8h.json index 553eb88ecbd..23f8c902159 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvjj-gv4g-2h8h/GHSA-xvjj-gv4g-2h8h.json +++ b/advisories/unreviewed/2022/05/GHSA-xvjj-gv4g-2h8h/GHSA-xvjj-gv4g-2h8h.json @@ -7,12 +7,8 @@ "CVE-2021-39509" ], "details": "An issue was discovered in D-Link DIR-816 DIR-816A2_FWv1.10CNB05_R1B011D88210 750m11ac wireless router via the HTTP request parameter in the handler function of /goform/form2userconfig.cgi route, which can construct the user name string to delete the user function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvpx-6hh8-7h72/GHSA-xvpx-6hh8-7h72.json b/advisories/unreviewed/2022/05/GHSA-xvpx-6hh8-7h72/GHSA-xvpx-6hh8-7h72.json index 42a228d712a..ff11e724316 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvpx-6hh8-7h72/GHSA-xvpx-6hh8-7h72.json +++ b/advisories/unreviewed/2022/05/GHSA-xvpx-6hh8-7h72/GHSA-xvpx-6hh8-7h72.json @@ -7,12 +7,8 @@ "CVE-2021-36020" ], "details": "Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an XML Injection vulnerability in the 'City' field. An unauthenticated attacker can trigger a specially crafted script to achieve remote code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw59-4mp5-9chf/GHSA-xw59-4mp5-9chf.json b/advisories/unreviewed/2022/05/GHSA-xw59-4mp5-9chf/GHSA-xw59-4mp5-9chf.json index 0dda7c80a21..9ecb4fbb3d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw59-4mp5-9chf/GHSA-xw59-4mp5-9chf.json +++ b/advisories/unreviewed/2022/05/GHSA-xw59-4mp5-9chf/GHSA-xw59-4mp5-9chf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xwgm-pjgv-gp77/GHSA-xwgm-pjgv-gp77.json b/advisories/unreviewed/2022/05/GHSA-xwgm-pjgv-gp77/GHSA-xwgm-pjgv-gp77.json index 677a6be63fe..ef3362fd790 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwgm-pjgv-gp77/GHSA-xwgm-pjgv-gp77.json +++ b/advisories/unreviewed/2022/05/GHSA-xwgm-pjgv-gp77/GHSA-xwgm-pjgv-gp77.json @@ -7,12 +7,8 @@ "CVE-2005-3830" ], "details": "index.php in ActiveCampaign SupportTrio 1.4 and earlier allows remote attackers to read or include arbitrary files via the page parameter, possibly due to a directory traversal vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xwpj-f6qv-5j98/GHSA-xwpj-f6qv-5j98.json b/advisories/unreviewed/2022/05/GHSA-xwpj-f6qv-5j98/GHSA-xwpj-f6qv-5j98.json index 18fb69e8677..e481b2bae79 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwpj-f6qv-5j98/GHSA-xwpj-f6qv-5j98.json +++ b/advisories/unreviewed/2022/05/GHSA-xwpj-f6qv-5j98/GHSA-xwpj-f6qv-5j98.json @@ -7,12 +7,8 @@ "CVE-2005-3501" ], "details": "The cabd_find function in cabd.c of the libmspack library (mspack) for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted CAB file that causes cabd_find to be called with a zero length.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxm5-g29j-f9vq/GHSA-xxm5-g29j-f9vq.json b/advisories/unreviewed/2022/05/GHSA-xxm5-g29j-f9vq/GHSA-xxm5-g29j-f9vq.json index e77d39af903..6fd65484e67 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxm5-g29j-f9vq/GHSA-xxm5-g29j-f9vq.json +++ b/advisories/unreviewed/2022/05/GHSA-xxm5-g29j-f9vq/GHSA-xxm5-g29j-f9vq.json @@ -7,12 +7,8 @@ "CVE-2005-4022" ], "details": "Cross-site scripting (XSS) vulnerability in the \"Add Image From Web\" feature in Gallery 2.0 before 2.0.2 allows remote attackers to inject arbitrary web script or HTML via Javascript in an IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxq8-555q-w627/GHSA-xxq8-555q-w627.json b/advisories/unreviewed/2022/05/GHSA-xxq8-555q-w627/GHSA-xxq8-555q-w627.json index 8bf941c65ed..8c6ee8c25a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxq8-555q-w627/GHSA-xxq8-555q-w627.json +++ b/advisories/unreviewed/2022/05/GHSA-xxq8-555q-w627/GHSA-xxq8-555q-w627.json @@ -7,12 +7,8 @@ "CVE-2005-4068" ], "details": "Unspecified \"absolute path vulnerability\" in umountall in IBM AIX 5.1 through 5.3 allows local users to cause unknown impact via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-7cc6-3w3g-h5c7/GHSA-7cc6-3w3g-h5c7.json b/advisories/unreviewed/2022/11/GHSA-7cc6-3w3g-h5c7/GHSA-7cc6-3w3g-h5c7.json index e4d5cf929f3..1a42ee7eca5 100644 --- a/advisories/unreviewed/2022/11/GHSA-7cc6-3w3g-h5c7/GHSA-7cc6-3w3g-h5c7.json +++ b/advisories/unreviewed/2022/11/GHSA-7cc6-3w3g-h5c7/GHSA-7cc6-3w3g-h5c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-cfc8-jccr-8ffw/GHSA-cfc8-jccr-8ffw.json b/advisories/unreviewed/2022/11/GHSA-cfc8-jccr-8ffw/GHSA-cfc8-jccr-8ffw.json index 77fd526f272..41c96c40dab 100644 --- a/advisories/unreviewed/2022/11/GHSA-cfc8-jccr-8ffw/GHSA-cfc8-jccr-8ffw.json +++ b/advisories/unreviewed/2022/11/GHSA-cfc8-jccr-8ffw/GHSA-cfc8-jccr-8ffw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-f2fx-79gr-hhjp/GHSA-f2fx-79gr-hhjp.json b/advisories/unreviewed/2022/11/GHSA-f2fx-79gr-hhjp/GHSA-f2fx-79gr-hhjp.json index 08650c7a2e7..03a3de11f56 100644 --- a/advisories/unreviewed/2022/11/GHSA-f2fx-79gr-hhjp/GHSA-f2fx-79gr-hhjp.json +++ b/advisories/unreviewed/2022/11/GHSA-f2fx-79gr-hhjp/GHSA-f2fx-79gr-hhjp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-jwfc-52x9-vj73/GHSA-jwfc-52x9-vj73.json b/advisories/unreviewed/2022/11/GHSA-jwfc-52x9-vj73/GHSA-jwfc-52x9-vj73.json index 9468cfc2a7c..aa32374d96c 100644 --- a/advisories/unreviewed/2022/11/GHSA-jwfc-52x9-vj73/GHSA-jwfc-52x9-vj73.json +++ b/advisories/unreviewed/2022/11/GHSA-jwfc-52x9-vj73/GHSA-jwfc-52x9-vj73.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-q2g9-rrr6-rp9g/GHSA-q2g9-rrr6-rp9g.json b/advisories/unreviewed/2022/11/GHSA-q2g9-rrr6-rp9g/GHSA-q2g9-rrr6-rp9g.json index 54a418b2fa3..7a7083c6f44 100644 --- a/advisories/unreviewed/2022/11/GHSA-q2g9-rrr6-rp9g/GHSA-q2g9-rrr6-rp9g.json +++ b/advisories/unreviewed/2022/11/GHSA-q2g9-rrr6-rp9g/GHSA-q2g9-rrr6-rp9g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-jcw4-9ccq-g3rh/GHSA-jcw4-9ccq-g3rh.json b/advisories/unreviewed/2022/12/GHSA-jcw4-9ccq-g3rh/GHSA-jcw4-9ccq-g3rh.json index e7611918b83..8b17dfce309 100644 --- a/advisories/unreviewed/2022/12/GHSA-jcw4-9ccq-g3rh/GHSA-jcw4-9ccq-g3rh.json +++ b/advisories/unreviewed/2022/12/GHSA-jcw4-9ccq-g3rh/GHSA-jcw4-9ccq-g3rh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-2w97-hhmp-jmj9/GHSA-2w97-hhmp-jmj9.json b/advisories/unreviewed/2023/01/GHSA-2w97-hhmp-jmj9/GHSA-2w97-hhmp-jmj9.json index e275902aab6..b8cebade628 100644 --- a/advisories/unreviewed/2023/01/GHSA-2w97-hhmp-jmj9/GHSA-2w97-hhmp-jmj9.json +++ b/advisories/unreviewed/2023/01/GHSA-2w97-hhmp-jmj9/GHSA-2w97-hhmp-jmj9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-f4c9-fwv7-5pmf/GHSA-f4c9-fwv7-5pmf.json b/advisories/unreviewed/2023/01/GHSA-f4c9-fwv7-5pmf/GHSA-f4c9-fwv7-5pmf.json index 5db56ad076a..c1ed30c2c5a 100644 --- a/advisories/unreviewed/2023/01/GHSA-f4c9-fwv7-5pmf/GHSA-f4c9-fwv7-5pmf.json +++ b/advisories/unreviewed/2023/01/GHSA-f4c9-fwv7-5pmf/GHSA-f4c9-fwv7-5pmf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-h48x-rm26-4rj7/GHSA-h48x-rm26-4rj7.json b/advisories/unreviewed/2023/01/GHSA-h48x-rm26-4rj7/GHSA-h48x-rm26-4rj7.json index 4a5caa2cde4..19b2445bd24 100644 --- a/advisories/unreviewed/2023/01/GHSA-h48x-rm26-4rj7/GHSA-h48x-rm26-4rj7.json +++ b/advisories/unreviewed/2023/01/GHSA-h48x-rm26-4rj7/GHSA-h48x-rm26-4rj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-mmc2-hxc5-9423/GHSA-mmc2-hxc5-9423.json b/advisories/unreviewed/2023/01/GHSA-mmc2-hxc5-9423/GHSA-mmc2-hxc5-9423.json index f1bdcaf09e7..a7d0c0ecb5c 100644 --- a/advisories/unreviewed/2023/01/GHSA-mmc2-hxc5-9423/GHSA-mmc2-hxc5-9423.json +++ b/advisories/unreviewed/2023/01/GHSA-mmc2-hxc5-9423/GHSA-mmc2-hxc5-9423.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-qvg8-rx3x-c43j/GHSA-qvg8-rx3x-c43j.json b/advisories/unreviewed/2023/01/GHSA-qvg8-rx3x-c43j/GHSA-qvg8-rx3x-c43j.json index e4c429809d3..98eb6804034 100644 --- a/advisories/unreviewed/2023/01/GHSA-qvg8-rx3x-c43j/GHSA-qvg8-rx3x-c43j.json +++ b/advisories/unreviewed/2023/01/GHSA-qvg8-rx3x-c43j/GHSA-qvg8-rx3x-c43j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/05/GHSA-v2pm-rv6h-9g9p/GHSA-v2pm-rv6h-9g9p.json b/advisories/unreviewed/2023/05/GHSA-v2pm-rv6h-9g9p/GHSA-v2pm-rv6h-9g9p.json index d16b660d8e0..49501bca99a 100644 --- a/advisories/unreviewed/2023/05/GHSA-v2pm-rv6h-9g9p/GHSA-v2pm-rv6h-9g9p.json +++ b/advisories/unreviewed/2023/05/GHSA-v2pm-rv6h-9g9p/GHSA-v2pm-rv6h-9g9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-2j83-r83x-cccw/GHSA-2j83-r83x-cccw.json b/advisories/unreviewed/2023/07/GHSA-2j83-r83x-cccw/GHSA-2j83-r83x-cccw.json index 13d7cc8cba9..2caf0334350 100644 --- a/advisories/unreviewed/2023/07/GHSA-2j83-r83x-cccw/GHSA-2j83-r83x-cccw.json +++ b/advisories/unreviewed/2023/07/GHSA-2j83-r83x-cccw/GHSA-2j83-r83x-cccw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-9vq4-862j-5vx8/GHSA-9vq4-862j-5vx8.json b/advisories/unreviewed/2023/07/GHSA-9vq4-862j-5vx8/GHSA-9vq4-862j-5vx8.json index 0f7c08f7acd..b39b9d8eb3c 100644 --- a/advisories/unreviewed/2023/07/GHSA-9vq4-862j-5vx8/GHSA-9vq4-862j-5vx8.json +++ b/advisories/unreviewed/2023/07/GHSA-9vq4-862j-5vx8/GHSA-9vq4-862j-5vx8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-cg75-5mp4-f52v/GHSA-cg75-5mp4-f52v.json b/advisories/unreviewed/2023/07/GHSA-cg75-5mp4-f52v/GHSA-cg75-5mp4-f52v.json index 17b3a14981c..fb032db6220 100644 --- a/advisories/unreviewed/2023/07/GHSA-cg75-5mp4-f52v/GHSA-cg75-5mp4-f52v.json +++ b/advisories/unreviewed/2023/07/GHSA-cg75-5mp4-f52v/GHSA-cg75-5mp4-f52v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-2583-hrvg-jq7f/GHSA-2583-hrvg-jq7f.json b/advisories/unreviewed/2023/08/GHSA-2583-hrvg-jq7f/GHSA-2583-hrvg-jq7f.json index 1526965b49c..dc80c55d5ae 100644 --- a/advisories/unreviewed/2023/08/GHSA-2583-hrvg-jq7f/GHSA-2583-hrvg-jq7f.json +++ b/advisories/unreviewed/2023/08/GHSA-2583-hrvg-jq7f/GHSA-2583-hrvg-jq7f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-4g3m-89jh-2mrf/GHSA-4g3m-89jh-2mrf.json b/advisories/unreviewed/2023/08/GHSA-4g3m-89jh-2mrf/GHSA-4g3m-89jh-2mrf.json index b338f868d63..02bef96acf4 100644 --- a/advisories/unreviewed/2023/08/GHSA-4g3m-89jh-2mrf/GHSA-4g3m-89jh-2mrf.json +++ b/advisories/unreviewed/2023/08/GHSA-4g3m-89jh-2mrf/GHSA-4g3m-89jh-2mrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/08/GHSA-hfwj-q2m5-23m2/GHSA-hfwj-q2m5-23m2.json b/advisories/unreviewed/2023/08/GHSA-hfwj-q2m5-23m2/GHSA-hfwj-q2m5-23m2.json index 8fcde3e113b..ff589aec953 100644 --- a/advisories/unreviewed/2023/08/GHSA-hfwj-q2m5-23m2/GHSA-hfwj-q2m5-23m2.json +++ b/advisories/unreviewed/2023/08/GHSA-hfwj-q2m5-23m2/GHSA-hfwj-q2m5-23m2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/08/GHSA-j8h5-8rrr-m6j9/GHSA-j8h5-8rrr-m6j9.json b/advisories/unreviewed/2023/08/GHSA-j8h5-8rrr-m6j9/GHSA-j8h5-8rrr-m6j9.json index 9957c8e96bf..9a0afdfe022 100644 --- a/advisories/unreviewed/2023/08/GHSA-j8h5-8rrr-m6j9/GHSA-j8h5-8rrr-m6j9.json +++ b/advisories/unreviewed/2023/08/GHSA-j8h5-8rrr-m6j9/GHSA-j8h5-8rrr-m6j9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-3729-fh52-2ph2/GHSA-3729-fh52-2ph2.json b/advisories/unreviewed/2023/09/GHSA-3729-fh52-2ph2/GHSA-3729-fh52-2ph2.json index ad7c6bdd190..cfc250e3d9e 100644 --- a/advisories/unreviewed/2023/09/GHSA-3729-fh52-2ph2/GHSA-3729-fh52-2ph2.json +++ b/advisories/unreviewed/2023/09/GHSA-3729-fh52-2ph2/GHSA-3729-fh52-2ph2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-3q9r-pq9x-wfp4/GHSA-3q9r-pq9x-wfp4.json b/advisories/unreviewed/2023/09/GHSA-3q9r-pq9x-wfp4/GHSA-3q9r-pq9x-wfp4.json index c60c2aaec7b..7840363b061 100644 --- a/advisories/unreviewed/2023/09/GHSA-3q9r-pq9x-wfp4/GHSA-3q9r-pq9x-wfp4.json +++ b/advisories/unreviewed/2023/09/GHSA-3q9r-pq9x-wfp4/GHSA-3q9r-pq9x-wfp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-56q7-7qfv-m92r/GHSA-56q7-7qfv-m92r.json b/advisories/unreviewed/2023/09/GHSA-56q7-7qfv-m92r/GHSA-56q7-7qfv-m92r.json index dfcd6e27473..f15363f6a7a 100644 --- a/advisories/unreviewed/2023/09/GHSA-56q7-7qfv-m92r/GHSA-56q7-7qfv-m92r.json +++ b/advisories/unreviewed/2023/09/GHSA-56q7-7qfv-m92r/GHSA-56q7-7qfv-m92r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-6q78-g84j-5xvg/GHSA-6q78-g84j-5xvg.json b/advisories/unreviewed/2023/09/GHSA-6q78-g84j-5xvg/GHSA-6q78-g84j-5xvg.json index a2bf8208220..25e10206919 100644 --- a/advisories/unreviewed/2023/09/GHSA-6q78-g84j-5xvg/GHSA-6q78-g84j-5xvg.json +++ b/advisories/unreviewed/2023/09/GHSA-6q78-g84j-5xvg/GHSA-6q78-g84j-5xvg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/09/GHSA-x7vr-7frv-2rrh/GHSA-x7vr-7frv-2rrh.json b/advisories/unreviewed/2023/09/GHSA-x7vr-7frv-2rrh/GHSA-x7vr-7frv-2rrh.json index 4a7a6589809..dc5d0b667e7 100644 --- a/advisories/unreviewed/2023/09/GHSA-x7vr-7frv-2rrh/GHSA-x7vr-7frv-2rrh.json +++ b/advisories/unreviewed/2023/09/GHSA-x7vr-7frv-2rrh/GHSA-x7vr-7frv-2rrh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-22mm-7j6p-x82x/GHSA-22mm-7j6p-x82x.json b/advisories/unreviewed/2023/10/GHSA-22mm-7j6p-x82x/GHSA-22mm-7j6p-x82x.json index 6241a29f607..06a5731fa1e 100644 --- a/advisories/unreviewed/2023/10/GHSA-22mm-7j6p-x82x/GHSA-22mm-7j6p-x82x.json +++ b/advisories/unreviewed/2023/10/GHSA-22mm-7j6p-x82x/GHSA-22mm-7j6p-x82x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-2h7v-x3pf-2wp3/GHSA-2h7v-x3pf-2wp3.json b/advisories/unreviewed/2023/10/GHSA-2h7v-x3pf-2wp3/GHSA-2h7v-x3pf-2wp3.json index f8acd62a1ae..55244c4b9ae 100644 --- a/advisories/unreviewed/2023/10/GHSA-2h7v-x3pf-2wp3/GHSA-2h7v-x3pf-2wp3.json +++ b/advisories/unreviewed/2023/10/GHSA-2h7v-x3pf-2wp3/GHSA-2h7v-x3pf-2wp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-3vxq-839x-9f98/GHSA-3vxq-839x-9f98.json b/advisories/unreviewed/2023/10/GHSA-3vxq-839x-9f98/GHSA-3vxq-839x-9f98.json index 55016b2931d..5ae4eb30066 100644 --- a/advisories/unreviewed/2023/10/GHSA-3vxq-839x-9f98/GHSA-3vxq-839x-9f98.json +++ b/advisories/unreviewed/2023/10/GHSA-3vxq-839x-9f98/GHSA-3vxq-839x-9f98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-468w-3r6j-mchw/GHSA-468w-3r6j-mchw.json b/advisories/unreviewed/2023/10/GHSA-468w-3r6j-mchw/GHSA-468w-3r6j-mchw.json index c889a50ef22..d00569274be 100644 --- a/advisories/unreviewed/2023/10/GHSA-468w-3r6j-mchw/GHSA-468w-3r6j-mchw.json +++ b/advisories/unreviewed/2023/10/GHSA-468w-3r6j-mchw/GHSA-468w-3r6j-mchw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-4g99-g84m-jr5m/GHSA-4g99-g84m-jr5m.json b/advisories/unreviewed/2023/10/GHSA-4g99-g84m-jr5m/GHSA-4g99-g84m-jr5m.json index e123c9bcf71..c220f7e2533 100644 --- a/advisories/unreviewed/2023/10/GHSA-4g99-g84m-jr5m/GHSA-4g99-g84m-jr5m.json +++ b/advisories/unreviewed/2023/10/GHSA-4g99-g84m-jr5m/GHSA-4g99-g84m-jr5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5cvv-cxch-6c5q/GHSA-5cvv-cxch-6c5q.json b/advisories/unreviewed/2023/10/GHSA-5cvv-cxch-6c5q/GHSA-5cvv-cxch-6c5q.json index dda054b134d..85762d5e109 100644 --- a/advisories/unreviewed/2023/10/GHSA-5cvv-cxch-6c5q/GHSA-5cvv-cxch-6c5q.json +++ b/advisories/unreviewed/2023/10/GHSA-5cvv-cxch-6c5q/GHSA-5cvv-cxch-6c5q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-5v2h-8g8q-mwmw/GHSA-5v2h-8g8q-mwmw.json b/advisories/unreviewed/2023/10/GHSA-5v2h-8g8q-mwmw/GHSA-5v2h-8g8q-mwmw.json index 708c525d0b5..2ebcfee399d 100644 --- a/advisories/unreviewed/2023/10/GHSA-5v2h-8g8q-mwmw/GHSA-5v2h-8g8q-mwmw.json +++ b/advisories/unreviewed/2023/10/GHSA-5v2h-8g8q-mwmw/GHSA-5v2h-8g8q-mwmw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-6pf2-f6hc-85m8/GHSA-6pf2-f6hc-85m8.json b/advisories/unreviewed/2023/10/GHSA-6pf2-f6hc-85m8/GHSA-6pf2-f6hc-85m8.json index 8ea20a5021f..7ad0e6d6bc9 100644 --- a/advisories/unreviewed/2023/10/GHSA-6pf2-f6hc-85m8/GHSA-6pf2-f6hc-85m8.json +++ b/advisories/unreviewed/2023/10/GHSA-6pf2-f6hc-85m8/GHSA-6pf2-f6hc-85m8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-ccw5-93gh-4q98/GHSA-ccw5-93gh-4q98.json b/advisories/unreviewed/2023/10/GHSA-ccw5-93gh-4q98/GHSA-ccw5-93gh-4q98.json index f1fefa2a1fb..d32ccded0e2 100644 --- a/advisories/unreviewed/2023/10/GHSA-ccw5-93gh-4q98/GHSA-ccw5-93gh-4q98.json +++ b/advisories/unreviewed/2023/10/GHSA-ccw5-93gh-4q98/GHSA-ccw5-93gh-4q98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-cgr2-322v-vgjm/GHSA-cgr2-322v-vgjm.json b/advisories/unreviewed/2023/10/GHSA-cgr2-322v-vgjm/GHSA-cgr2-322v-vgjm.json index bbf824b9fb7..068f1ff6126 100644 --- a/advisories/unreviewed/2023/10/GHSA-cgr2-322v-vgjm/GHSA-cgr2-322v-vgjm.json +++ b/advisories/unreviewed/2023/10/GHSA-cgr2-322v-vgjm/GHSA-cgr2-322v-vgjm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-fc29-v5hq-xxwc/GHSA-fc29-v5hq-xxwc.json b/advisories/unreviewed/2023/10/GHSA-fc29-v5hq-xxwc/GHSA-fc29-v5hq-xxwc.json index 869a26570ca..08391b765ce 100644 --- a/advisories/unreviewed/2023/10/GHSA-fc29-v5hq-xxwc/GHSA-fc29-v5hq-xxwc.json +++ b/advisories/unreviewed/2023/10/GHSA-fc29-v5hq-xxwc/GHSA-fc29-v5hq-xxwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-fw5x-h992-pwfq/GHSA-fw5x-h992-pwfq.json b/advisories/unreviewed/2023/10/GHSA-fw5x-h992-pwfq/GHSA-fw5x-h992-pwfq.json index 7fa0f08d5a9..d1d7a03300f 100644 --- a/advisories/unreviewed/2023/10/GHSA-fw5x-h992-pwfq/GHSA-fw5x-h992-pwfq.json +++ b/advisories/unreviewed/2023/10/GHSA-fw5x-h992-pwfq/GHSA-fw5x-h992-pwfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-gg5q-5hmp-6xjv/GHSA-gg5q-5hmp-6xjv.json b/advisories/unreviewed/2023/10/GHSA-gg5q-5hmp-6xjv/GHSA-gg5q-5hmp-6xjv.json index 18e7c026c5a..55e72cfa9e3 100644 --- a/advisories/unreviewed/2023/10/GHSA-gg5q-5hmp-6xjv/GHSA-gg5q-5hmp-6xjv.json +++ b/advisories/unreviewed/2023/10/GHSA-gg5q-5hmp-6xjv/GHSA-gg5q-5hmp-6xjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-grpq-fcc2-cq2h/GHSA-grpq-fcc2-cq2h.json b/advisories/unreviewed/2023/10/GHSA-grpq-fcc2-cq2h/GHSA-grpq-fcc2-cq2h.json index f2472c29963..d8871795577 100644 --- a/advisories/unreviewed/2023/10/GHSA-grpq-fcc2-cq2h/GHSA-grpq-fcc2-cq2h.json +++ b/advisories/unreviewed/2023/10/GHSA-grpq-fcc2-cq2h/GHSA-grpq-fcc2-cq2h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-j56f-8qj6-8hq6/GHSA-j56f-8qj6-8hq6.json b/advisories/unreviewed/2023/10/GHSA-j56f-8qj6-8hq6/GHSA-j56f-8qj6-8hq6.json index 58d1fbd4ad5..e303678cd23 100644 --- a/advisories/unreviewed/2023/10/GHSA-j56f-8qj6-8hq6/GHSA-j56f-8qj6-8hq6.json +++ b/advisories/unreviewed/2023/10/GHSA-j56f-8qj6-8hq6/GHSA-j56f-8qj6-8hq6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-m363-ppgq-j23v/GHSA-m363-ppgq-j23v.json b/advisories/unreviewed/2023/10/GHSA-m363-ppgq-j23v/GHSA-m363-ppgq-j23v.json index 62e9ec29614..0c02f71a0c8 100644 --- a/advisories/unreviewed/2023/10/GHSA-m363-ppgq-j23v/GHSA-m363-ppgq-j23v.json +++ b/advisories/unreviewed/2023/10/GHSA-m363-ppgq-j23v/GHSA-m363-ppgq-j23v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-ph7m-3pqq-4p7r/GHSA-ph7m-3pqq-4p7r.json b/advisories/unreviewed/2023/10/GHSA-ph7m-3pqq-4p7r/GHSA-ph7m-3pqq-4p7r.json index 4a5d5dbf811..ee76969fd7e 100644 --- a/advisories/unreviewed/2023/10/GHSA-ph7m-3pqq-4p7r/GHSA-ph7m-3pqq-4p7r.json +++ b/advisories/unreviewed/2023/10/GHSA-ph7m-3pqq-4p7r/GHSA-ph7m-3pqq-4p7r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-ppg6-248w-w8px/GHSA-ppg6-248w-w8px.json b/advisories/unreviewed/2023/10/GHSA-ppg6-248w-w8px/GHSA-ppg6-248w-w8px.json index 056ab664497..4a0ae9dd451 100644 --- a/advisories/unreviewed/2023/10/GHSA-ppg6-248w-w8px/GHSA-ppg6-248w-w8px.json +++ b/advisories/unreviewed/2023/10/GHSA-ppg6-248w-w8px/GHSA-ppg6-248w-w8px.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-r4gq-7562-4hj7/GHSA-r4gq-7562-4hj7.json b/advisories/unreviewed/2023/10/GHSA-r4gq-7562-4hj7/GHSA-r4gq-7562-4hj7.json index db75e3ae289..aa9b8487619 100644 --- a/advisories/unreviewed/2023/10/GHSA-r4gq-7562-4hj7/GHSA-r4gq-7562-4hj7.json +++ b/advisories/unreviewed/2023/10/GHSA-r4gq-7562-4hj7/GHSA-r4gq-7562-4hj7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-r7r4-3gwf-9jcv/GHSA-r7r4-3gwf-9jcv.json b/advisories/unreviewed/2023/10/GHSA-r7r4-3gwf-9jcv/GHSA-r7r4-3gwf-9jcv.json index bbe89baa611..0975dbc9f1d 100644 --- a/advisories/unreviewed/2023/10/GHSA-r7r4-3gwf-9jcv/GHSA-r7r4-3gwf-9jcv.json +++ b/advisories/unreviewed/2023/10/GHSA-r7r4-3gwf-9jcv/GHSA-r7r4-3gwf-9jcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-rxvf-574f-jxg9/GHSA-rxvf-574f-jxg9.json b/advisories/unreviewed/2023/10/GHSA-rxvf-574f-jxg9/GHSA-rxvf-574f-jxg9.json index 6234f3b5126..1fc1ac404e5 100644 --- a/advisories/unreviewed/2023/10/GHSA-rxvf-574f-jxg9/GHSA-rxvf-574f-jxg9.json +++ b/advisories/unreviewed/2023/10/GHSA-rxvf-574f-jxg9/GHSA-rxvf-574f-jxg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/10/GHSA-v28w-vh2w-263g/GHSA-v28w-vh2w-263g.json b/advisories/unreviewed/2023/10/GHSA-v28w-vh2w-263g/GHSA-v28w-vh2w-263g.json index f889075fdfd..2bf342cb50a 100644 --- a/advisories/unreviewed/2023/10/GHSA-v28w-vh2w-263g/GHSA-v28w-vh2w-263g.json +++ b/advisories/unreviewed/2023/10/GHSA-v28w-vh2w-263g/GHSA-v28w-vh2w-263g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-w499-gpr6-v77v/GHSA-w499-gpr6-v77v.json b/advisories/unreviewed/2023/10/GHSA-w499-gpr6-v77v/GHSA-w499-gpr6-v77v.json index 3455b0072e6..eabacfc1992 100644 --- a/advisories/unreviewed/2023/10/GHSA-w499-gpr6-v77v/GHSA-w499-gpr6-v77v.json +++ b/advisories/unreviewed/2023/10/GHSA-w499-gpr6-v77v/GHSA-w499-gpr6-v77v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/12/GHSA-25x6-5f6g-h9pv/GHSA-25x6-5f6g-h9pv.json b/advisories/unreviewed/2023/12/GHSA-25x6-5f6g-h9pv/GHSA-25x6-5f6g-h9pv.json index c1f654b8d3f..0f425e8fc3d 100644 --- a/advisories/unreviewed/2023/12/GHSA-25x6-5f6g-h9pv/GHSA-25x6-5f6g-h9pv.json +++ b/advisories/unreviewed/2023/12/GHSA-25x6-5f6g-h9pv/GHSA-25x6-5f6g-h9pv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-2h9m-7wj7-h654/GHSA-2h9m-7wj7-h654.json b/advisories/unreviewed/2023/12/GHSA-2h9m-7wj7-h654/GHSA-2h9m-7wj7-h654.json index 8a603ec7fc4..4e7643ecfc1 100644 --- a/advisories/unreviewed/2023/12/GHSA-2h9m-7wj7-h654/GHSA-2h9m-7wj7-h654.json +++ b/advisories/unreviewed/2023/12/GHSA-2h9m-7wj7-h654/GHSA-2h9m-7wj7-h654.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4c5v-86xf-p6j6/GHSA-4c5v-86xf-p6j6.json b/advisories/unreviewed/2023/12/GHSA-4c5v-86xf-p6j6/GHSA-4c5v-86xf-p6j6.json index 532b63f14d9..6501657c871 100644 --- a/advisories/unreviewed/2023/12/GHSA-4c5v-86xf-p6j6/GHSA-4c5v-86xf-p6j6.json +++ b/advisories/unreviewed/2023/12/GHSA-4c5v-86xf-p6j6/GHSA-4c5v-86xf-p6j6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-4h8q-hvrp-cmqh/GHSA-4h8q-hvrp-cmqh.json b/advisories/unreviewed/2023/12/GHSA-4h8q-hvrp-cmqh/GHSA-4h8q-hvrp-cmqh.json index 734dc7218a0..0900048e855 100644 --- a/advisories/unreviewed/2023/12/GHSA-4h8q-hvrp-cmqh/GHSA-4h8q-hvrp-cmqh.json +++ b/advisories/unreviewed/2023/12/GHSA-4h8q-hvrp-cmqh/GHSA-4h8q-hvrp-cmqh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-775f-36w2-wxm2/GHSA-775f-36w2-wxm2.json b/advisories/unreviewed/2023/12/GHSA-775f-36w2-wxm2/GHSA-775f-36w2-wxm2.json index f952a960a69..3bd804324d3 100644 --- a/advisories/unreviewed/2023/12/GHSA-775f-36w2-wxm2/GHSA-775f-36w2-wxm2.json +++ b/advisories/unreviewed/2023/12/GHSA-775f-36w2-wxm2/GHSA-775f-36w2-wxm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-c9rr-75hh-4hj4/GHSA-c9rr-75hh-4hj4.json b/advisories/unreviewed/2023/12/GHSA-c9rr-75hh-4hj4/GHSA-c9rr-75hh-4hj4.json index 0336c3c07d1..81d81bcdcca 100644 --- a/advisories/unreviewed/2023/12/GHSA-c9rr-75hh-4hj4/GHSA-c9rr-75hh-4hj4.json +++ b/advisories/unreviewed/2023/12/GHSA-c9rr-75hh-4hj4/GHSA-c9rr-75hh-4hj4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-f98r-82g6-vmwv/GHSA-f98r-82g6-vmwv.json b/advisories/unreviewed/2023/12/GHSA-f98r-82g6-vmwv/GHSA-f98r-82g6-vmwv.json index 799fee56919..8d8f245f90b 100644 --- a/advisories/unreviewed/2023/12/GHSA-f98r-82g6-vmwv/GHSA-f98r-82g6-vmwv.json +++ b/advisories/unreviewed/2023/12/GHSA-f98r-82g6-vmwv/GHSA-f98r-82g6-vmwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fg64-38r9-mp66/GHSA-fg64-38r9-mp66.json b/advisories/unreviewed/2023/12/GHSA-fg64-38r9-mp66/GHSA-fg64-38r9-mp66.json index 4a018b6a735..498de13cd96 100644 --- a/advisories/unreviewed/2023/12/GHSA-fg64-38r9-mp66/GHSA-fg64-38r9-mp66.json +++ b/advisories/unreviewed/2023/12/GHSA-fg64-38r9-mp66/GHSA-fg64-38r9-mp66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-gv4m-2wcc-p2m9/GHSA-gv4m-2wcc-p2m9.json b/advisories/unreviewed/2023/12/GHSA-gv4m-2wcc-p2m9/GHSA-gv4m-2wcc-p2m9.json index 438c46e020f..36760b28ae7 100644 --- a/advisories/unreviewed/2023/12/GHSA-gv4m-2wcc-p2m9/GHSA-gv4m-2wcc-p2m9.json +++ b/advisories/unreviewed/2023/12/GHSA-gv4m-2wcc-p2m9/GHSA-gv4m-2wcc-p2m9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-j8v2-m2f3-8jgf/GHSA-j8v2-m2f3-8jgf.json b/advisories/unreviewed/2023/12/GHSA-j8v2-m2f3-8jgf/GHSA-j8v2-m2f3-8jgf.json index 80525fed34f..b9051771889 100644 --- a/advisories/unreviewed/2023/12/GHSA-j8v2-m2f3-8jgf/GHSA-j8v2-m2f3-8jgf.json +++ b/advisories/unreviewed/2023/12/GHSA-j8v2-m2f3-8jgf/GHSA-j8v2-m2f3-8jgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-mcch-629j-3qrw/GHSA-mcch-629j-3qrw.json b/advisories/unreviewed/2023/12/GHSA-mcch-629j-3qrw/GHSA-mcch-629j-3qrw.json index 97af601711e..c8e1632d3a9 100644 --- a/advisories/unreviewed/2023/12/GHSA-mcch-629j-3qrw/GHSA-mcch-629j-3qrw.json +++ b/advisories/unreviewed/2023/12/GHSA-mcch-629j-3qrw/GHSA-mcch-629j-3qrw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-pg7h-hg83-hq9c/GHSA-pg7h-hg83-hq9c.json b/advisories/unreviewed/2023/12/GHSA-pg7h-hg83-hq9c/GHSA-pg7h-hg83-hq9c.json index 69e29c776ae..67cbbbb8c98 100644 --- a/advisories/unreviewed/2023/12/GHSA-pg7h-hg83-hq9c/GHSA-pg7h-hg83-hq9c.json +++ b/advisories/unreviewed/2023/12/GHSA-pg7h-hg83-hq9c/GHSA-pg7h-hg83-hq9c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rfh6-j3v9-hr67/GHSA-rfh6-j3v9-hr67.json b/advisories/unreviewed/2023/12/GHSA-rfh6-j3v9-hr67/GHSA-rfh6-j3v9-hr67.json index 3556484703e..670cbb3b07d 100644 --- a/advisories/unreviewed/2023/12/GHSA-rfh6-j3v9-hr67/GHSA-rfh6-j3v9-hr67.json +++ b/advisories/unreviewed/2023/12/GHSA-rfh6-j3v9-hr67/GHSA-rfh6-j3v9-hr67.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rwjv-2j4j-ch2j/GHSA-rwjv-2j4j-ch2j.json b/advisories/unreviewed/2023/12/GHSA-rwjv-2j4j-ch2j/GHSA-rwjv-2j4j-ch2j.json index 3ed4a3dcff2..ed4dac1780c 100644 --- a/advisories/unreviewed/2023/12/GHSA-rwjv-2j4j-ch2j/GHSA-rwjv-2j4j-ch2j.json +++ b/advisories/unreviewed/2023/12/GHSA-rwjv-2j4j-ch2j/GHSA-rwjv-2j4j-ch2j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-v5cv-j9qw-9f6c/GHSA-v5cv-j9qw-9f6c.json b/advisories/unreviewed/2023/12/GHSA-v5cv-j9qw-9f6c/GHSA-v5cv-j9qw-9f6c.json index af9014f53de..88eaf271e09 100644 --- a/advisories/unreviewed/2023/12/GHSA-v5cv-j9qw-9f6c/GHSA-v5cv-j9qw-9f6c.json +++ b/advisories/unreviewed/2023/12/GHSA-v5cv-j9qw-9f6c/GHSA-v5cv-j9qw-9f6c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vh8w-6548-fp72/GHSA-vh8w-6548-fp72.json b/advisories/unreviewed/2023/12/GHSA-vh8w-6548-fp72/GHSA-vh8w-6548-fp72.json index ef1ddf66f5b..6703a5f642b 100644 --- a/advisories/unreviewed/2023/12/GHSA-vh8w-6548-fp72/GHSA-vh8w-6548-fp72.json +++ b/advisories/unreviewed/2023/12/GHSA-vh8w-6548-fp72/GHSA-vh8w-6548-fp72.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-vpmf-fp9g-fw23/GHSA-vpmf-fp9g-fw23.json b/advisories/unreviewed/2023/12/GHSA-vpmf-fp9g-fw23/GHSA-vpmf-fp9g-fw23.json index fbf03264ad7..b259f28080f 100644 --- a/advisories/unreviewed/2023/12/GHSA-vpmf-fp9g-fw23/GHSA-vpmf-fp9g-fw23.json +++ b/advisories/unreviewed/2023/12/GHSA-vpmf-fp9g-fw23/GHSA-vpmf-fp9g-fw23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-whhc-qmvw-65jq/GHSA-whhc-qmvw-65jq.json b/advisories/unreviewed/2023/12/GHSA-whhc-qmvw-65jq/GHSA-whhc-qmvw-65jq.json index 5bfafcbb149..773f5cbd24d 100644 --- a/advisories/unreviewed/2023/12/GHSA-whhc-qmvw-65jq/GHSA-whhc-qmvw-65jq.json +++ b/advisories/unreviewed/2023/12/GHSA-whhc-qmvw-65jq/GHSA-whhc-qmvw-65jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xhvf-rc7c-rqr7/GHSA-xhvf-rc7c-rqr7.json b/advisories/unreviewed/2023/12/GHSA-xhvf-rc7c-rqr7/GHSA-xhvf-rc7c-rqr7.json index 8703856c676..58a414fdef8 100644 --- a/advisories/unreviewed/2023/12/GHSA-xhvf-rc7c-rqr7/GHSA-xhvf-rc7c-rqr7.json +++ b/advisories/unreviewed/2023/12/GHSA-xhvf-rc7c-rqr7/GHSA-xhvf-rc7c-rqr7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-xmw2-9fv2-vx29/GHSA-xmw2-9fv2-vx29.json b/advisories/unreviewed/2023/12/GHSA-xmw2-9fv2-vx29/GHSA-xmw2-9fv2-vx29.json index 9cd024c0a85..b571cab4efc 100644 --- a/advisories/unreviewed/2023/12/GHSA-xmw2-9fv2-vx29/GHSA-xmw2-9fv2-vx29.json +++ b/advisories/unreviewed/2023/12/GHSA-xmw2-9fv2-vx29/GHSA-xmw2-9fv2-vx29.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-47rx-9m4v-5f59/GHSA-47rx-9m4v-5f59.json b/advisories/unreviewed/2024/02/GHSA-47rx-9m4v-5f59/GHSA-47rx-9m4v-5f59.json index e912911f921..16a9233f6a9 100644 --- a/advisories/unreviewed/2024/02/GHSA-47rx-9m4v-5f59/GHSA-47rx-9m4v-5f59.json +++ b/advisories/unreviewed/2024/02/GHSA-47rx-9m4v-5f59/GHSA-47rx-9m4v-5f59.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-fp58-4rhj-2q23/GHSA-fp58-4rhj-2q23.json b/advisories/unreviewed/2024/02/GHSA-fp58-4rhj-2q23/GHSA-fp58-4rhj-2q23.json index 2fe33997783..09df4289f17 100644 --- a/advisories/unreviewed/2024/02/GHSA-fp58-4rhj-2q23/GHSA-fp58-4rhj-2q23.json +++ b/advisories/unreviewed/2024/02/GHSA-fp58-4rhj-2q23/GHSA-fp58-4rhj-2q23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-gjq6-76gc-q75p/GHSA-gjq6-76gc-q75p.json b/advisories/unreviewed/2024/02/GHSA-gjq6-76gc-q75p/GHSA-gjq6-76gc-q75p.json index e531ba6923b..25b8e5e27d1 100644 --- a/advisories/unreviewed/2024/02/GHSA-gjq6-76gc-q75p/GHSA-gjq6-76gc-q75p.json +++ b/advisories/unreviewed/2024/02/GHSA-gjq6-76gc-q75p/GHSA-gjq6-76gc-q75p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-h67p-q5m6-859h/GHSA-h67p-q5m6-859h.json b/advisories/unreviewed/2024/02/GHSA-h67p-q5m6-859h/GHSA-h67p-q5m6-859h.json index dd607a5beef..79ae07fce54 100644 --- a/advisories/unreviewed/2024/02/GHSA-h67p-q5m6-859h/GHSA-h67p-q5m6-859h.json +++ b/advisories/unreviewed/2024/02/GHSA-h67p-q5m6-859h/GHSA-h67p-q5m6-859h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-hfqr-7mcf-f22q/GHSA-hfqr-7mcf-f22q.json b/advisories/unreviewed/2024/02/GHSA-hfqr-7mcf-f22q/GHSA-hfqr-7mcf-f22q.json index dbf05681c59..b4217f19a80 100644 --- a/advisories/unreviewed/2024/02/GHSA-hfqr-7mcf-f22q/GHSA-hfqr-7mcf-f22q.json +++ b/advisories/unreviewed/2024/02/GHSA-hfqr-7mcf-f22q/GHSA-hfqr-7mcf-f22q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-mwvg-6hq9-26mf/GHSA-mwvg-6hq9-26mf.json b/advisories/unreviewed/2024/02/GHSA-mwvg-6hq9-26mf/GHSA-mwvg-6hq9-26mf.json index 46b6ba9f958..cb4f5385051 100644 --- a/advisories/unreviewed/2024/02/GHSA-mwvg-6hq9-26mf/GHSA-mwvg-6hq9-26mf.json +++ b/advisories/unreviewed/2024/02/GHSA-mwvg-6hq9-26mf/GHSA-mwvg-6hq9-26mf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-v79g-5622-28p2/GHSA-v79g-5622-28p2.json b/advisories/unreviewed/2024/02/GHSA-v79g-5622-28p2/GHSA-v79g-5622-28p2.json index 1311943d917..aaa4843cf5b 100644 --- a/advisories/unreviewed/2024/02/GHSA-v79g-5622-28p2/GHSA-v79g-5622-28p2.json +++ b/advisories/unreviewed/2024/02/GHSA-v79g-5622-28p2/GHSA-v79g-5622-28p2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json b/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json index fad60c7182b..f703f02b936 100644 --- a/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json +++ b/advisories/unreviewed/2024/03/GHSA-3jwv-cj2j-h5c7/GHSA-3jwv-cj2j-h5c7.json @@ -7,12 +7,8 @@ "CVE-2024-20020" ], "details": "In OPTEE, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08522504; Issue ID: ALPS08522504.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-4747-78h4-m342/GHSA-4747-78h4-m342.json b/advisories/unreviewed/2024/03/GHSA-4747-78h4-m342/GHSA-4747-78h4-m342.json index 8287f4c398e..0c685582986 100644 --- a/advisories/unreviewed/2024/03/GHSA-4747-78h4-m342/GHSA-4747-78h4-m342.json +++ b/advisories/unreviewed/2024/03/GHSA-4747-78h4-m342/GHSA-4747-78h4-m342.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-5fxg-7vxp-3w6q/GHSA-5fxg-7vxp-3w6q.json b/advisories/unreviewed/2024/03/GHSA-5fxg-7vxp-3w6q/GHSA-5fxg-7vxp-3w6q.json index 594e06b7bf8..21b2d7a04f2 100644 --- a/advisories/unreviewed/2024/03/GHSA-5fxg-7vxp-3w6q/GHSA-5fxg-7vxp-3w6q.json +++ b/advisories/unreviewed/2024/03/GHSA-5fxg-7vxp-3w6q/GHSA-5fxg-7vxp-3w6q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-78v4-fxc2-f7qh/GHSA-78v4-fxc2-f7qh.json b/advisories/unreviewed/2024/03/GHSA-78v4-fxc2-f7qh/GHSA-78v4-fxc2-f7qh.json index 45ce860bc40..88a736b78c3 100644 --- a/advisories/unreviewed/2024/03/GHSA-78v4-fxc2-f7qh/GHSA-78v4-fxc2-f7qh.json +++ b/advisories/unreviewed/2024/03/GHSA-78v4-fxc2-f7qh/GHSA-78v4-fxc2-f7qh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-7hm7-c3h2-h8f7/GHSA-7hm7-c3h2-h8f7.json b/advisories/unreviewed/2024/03/GHSA-7hm7-c3h2-h8f7/GHSA-7hm7-c3h2-h8f7.json index f1f542ca131..f7f993dd216 100644 --- a/advisories/unreviewed/2024/03/GHSA-7hm7-c3h2-h8f7/GHSA-7hm7-c3h2-h8f7.json +++ b/advisories/unreviewed/2024/03/GHSA-7hm7-c3h2-h8f7/GHSA-7hm7-c3h2-h8f7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-969w-4f3g-v986/GHSA-969w-4f3g-v986.json b/advisories/unreviewed/2024/03/GHSA-969w-4f3g-v986/GHSA-969w-4f3g-v986.json index 56b6cede49c..7df7f0ddf05 100644 --- a/advisories/unreviewed/2024/03/GHSA-969w-4f3g-v986/GHSA-969w-4f3g-v986.json +++ b/advisories/unreviewed/2024/03/GHSA-969w-4f3g-v986/GHSA-969w-4f3g-v986.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-cv92-qmv8-p8x9/GHSA-cv92-qmv8-p8x9.json b/advisories/unreviewed/2024/03/GHSA-cv92-qmv8-p8x9/GHSA-cv92-qmv8-p8x9.json index 970dd2001a2..63ec3fbc608 100644 --- a/advisories/unreviewed/2024/03/GHSA-cv92-qmv8-p8x9/GHSA-cv92-qmv8-p8x9.json +++ b/advisories/unreviewed/2024/03/GHSA-cv92-qmv8-p8x9/GHSA-cv92-qmv8-p8x9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-cvv7-q94p-v9wj/GHSA-cvv7-q94p-v9wj.json b/advisories/unreviewed/2024/03/GHSA-cvv7-q94p-v9wj/GHSA-cvv7-q94p-v9wj.json index 387c3a154e6..82e11708738 100644 --- a/advisories/unreviewed/2024/03/GHSA-cvv7-q94p-v9wj/GHSA-cvv7-q94p-v9wj.json +++ b/advisories/unreviewed/2024/03/GHSA-cvv7-q94p-v9wj/GHSA-cvv7-q94p-v9wj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-g24q-75c5-6r57/GHSA-g24q-75c5-6r57.json b/advisories/unreviewed/2024/03/GHSA-g24q-75c5-6r57/GHSA-g24q-75c5-6r57.json index 4b147226416..2e826a4f69d 100644 --- a/advisories/unreviewed/2024/03/GHSA-g24q-75c5-6r57/GHSA-g24q-75c5-6r57.json +++ b/advisories/unreviewed/2024/03/GHSA-g24q-75c5-6r57/GHSA-g24q-75c5-6r57.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-qc55-j3v4-chpj/GHSA-qc55-j3v4-chpj.json b/advisories/unreviewed/2024/03/GHSA-qc55-j3v4-chpj/GHSA-qc55-j3v4-chpj.json index f8adbce4f21..8de406192af 100644 --- a/advisories/unreviewed/2024/03/GHSA-qc55-j3v4-chpj/GHSA-qc55-j3v4-chpj.json +++ b/advisories/unreviewed/2024/03/GHSA-qc55-j3v4-chpj/GHSA-qc55-j3v4-chpj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-xh2g-m2wv-2336/GHSA-xh2g-m2wv-2336.json b/advisories/unreviewed/2024/03/GHSA-xh2g-m2wv-2336/GHSA-xh2g-m2wv-2336.json index 60748a5f217..99293f67a1f 100644 --- a/advisories/unreviewed/2024/03/GHSA-xh2g-m2wv-2336/GHSA-xh2g-m2wv-2336.json +++ b/advisories/unreviewed/2024/03/GHSA-xh2g-m2wv-2336/GHSA-xh2g-m2wv-2336.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-25q4-66ch-jm5r/GHSA-25q4-66ch-jm5r.json b/advisories/unreviewed/2024/06/GHSA-25q4-66ch-jm5r/GHSA-25q4-66ch-jm5r.json index c9183e38d06..ad5a5d2a599 100644 --- a/advisories/unreviewed/2024/06/GHSA-25q4-66ch-jm5r/GHSA-25q4-66ch-jm5r.json +++ b/advisories/unreviewed/2024/06/GHSA-25q4-66ch-jm5r/GHSA-25q4-66ch-jm5r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3299-8256-mgjc/GHSA-3299-8256-mgjc.json b/advisories/unreviewed/2024/06/GHSA-3299-8256-mgjc/GHSA-3299-8256-mgjc.json index 8bf8146d45d..f97c64c9d8f 100644 --- a/advisories/unreviewed/2024/06/GHSA-3299-8256-mgjc/GHSA-3299-8256-mgjc.json +++ b/advisories/unreviewed/2024/06/GHSA-3299-8256-mgjc/GHSA-3299-8256-mgjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-364v-prm5-23rw/GHSA-364v-prm5-23rw.json b/advisories/unreviewed/2024/06/GHSA-364v-prm5-23rw/GHSA-364v-prm5-23rw.json index 5d041a87b5e..27409e25a69 100644 --- a/advisories/unreviewed/2024/06/GHSA-364v-prm5-23rw/GHSA-364v-prm5-23rw.json +++ b/advisories/unreviewed/2024/06/GHSA-364v-prm5-23rw/GHSA-364v-prm5-23rw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-3754-wv73-4cjw/GHSA-3754-wv73-4cjw.json b/advisories/unreviewed/2024/06/GHSA-3754-wv73-4cjw/GHSA-3754-wv73-4cjw.json index 74829663fcb..a5f0fc901f4 100644 --- a/advisories/unreviewed/2024/06/GHSA-3754-wv73-4cjw/GHSA-3754-wv73-4cjw.json +++ b/advisories/unreviewed/2024/06/GHSA-3754-wv73-4cjw/GHSA-3754-wv73-4cjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-42p6-jgxv-p4v9/GHSA-42p6-jgxv-p4v9.json b/advisories/unreviewed/2024/06/GHSA-42p6-jgxv-p4v9/GHSA-42p6-jgxv-p4v9.json index a853cd23376..31569c7e9d8 100644 --- a/advisories/unreviewed/2024/06/GHSA-42p6-jgxv-p4v9/GHSA-42p6-jgxv-p4v9.json +++ b/advisories/unreviewed/2024/06/GHSA-42p6-jgxv-p4v9/GHSA-42p6-jgxv-p4v9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-438g-mj2j-8f54/GHSA-438g-mj2j-8f54.json b/advisories/unreviewed/2024/06/GHSA-438g-mj2j-8f54/GHSA-438g-mj2j-8f54.json index 94073363abf..d1cca1b5beb 100644 --- a/advisories/unreviewed/2024/06/GHSA-438g-mj2j-8f54/GHSA-438g-mj2j-8f54.json +++ b/advisories/unreviewed/2024/06/GHSA-438g-mj2j-8f54/GHSA-438g-mj2j-8f54.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-44m7-95qr-8rxg/GHSA-44m7-95qr-8rxg.json b/advisories/unreviewed/2024/06/GHSA-44m7-95qr-8rxg/GHSA-44m7-95qr-8rxg.json index b0e91650c33..377d3084dda 100644 --- a/advisories/unreviewed/2024/06/GHSA-44m7-95qr-8rxg/GHSA-44m7-95qr-8rxg.json +++ b/advisories/unreviewed/2024/06/GHSA-44m7-95qr-8rxg/GHSA-44m7-95qr-8rxg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-49wm-6v24-hgfm/GHSA-49wm-6v24-hgfm.json b/advisories/unreviewed/2024/06/GHSA-49wm-6v24-hgfm/GHSA-49wm-6v24-hgfm.json index 8be0a3f6683..0d0b6a312ec 100644 --- a/advisories/unreviewed/2024/06/GHSA-49wm-6v24-hgfm/GHSA-49wm-6v24-hgfm.json +++ b/advisories/unreviewed/2024/06/GHSA-49wm-6v24-hgfm/GHSA-49wm-6v24-hgfm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-4cp2-jqr4-hgp3/GHSA-4cp2-jqr4-hgp3.json b/advisories/unreviewed/2024/06/GHSA-4cp2-jqr4-hgp3/GHSA-4cp2-jqr4-hgp3.json index 9f7d48913a0..c9884b0b875 100644 --- a/advisories/unreviewed/2024/06/GHSA-4cp2-jqr4-hgp3/GHSA-4cp2-jqr4-hgp3.json +++ b/advisories/unreviewed/2024/06/GHSA-4cp2-jqr4-hgp3/GHSA-4cp2-jqr4-hgp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-5ch6-6g8r-j7w5/GHSA-5ch6-6g8r-j7w5.json b/advisories/unreviewed/2024/06/GHSA-5ch6-6g8r-j7w5/GHSA-5ch6-6g8r-j7w5.json index 541e6111a6b..2ba39efa261 100644 --- a/advisories/unreviewed/2024/06/GHSA-5ch6-6g8r-j7w5/GHSA-5ch6-6g8r-j7w5.json +++ b/advisories/unreviewed/2024/06/GHSA-5ch6-6g8r-j7w5/GHSA-5ch6-6g8r-j7w5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-5wh4-9c9x-m7r5/GHSA-5wh4-9c9x-m7r5.json b/advisories/unreviewed/2024/06/GHSA-5wh4-9c9x-m7r5/GHSA-5wh4-9c9x-m7r5.json index 2f09b335c47..e102f603bd4 100644 --- a/advisories/unreviewed/2024/06/GHSA-5wh4-9c9x-m7r5/GHSA-5wh4-9c9x-m7r5.json +++ b/advisories/unreviewed/2024/06/GHSA-5wh4-9c9x-m7r5/GHSA-5wh4-9c9x-m7r5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-6pgg-hwvg-c2qx/GHSA-6pgg-hwvg-c2qx.json b/advisories/unreviewed/2024/06/GHSA-6pgg-hwvg-c2qx/GHSA-6pgg-hwvg-c2qx.json index 83d80e75bb9..4301f33e28c 100644 --- a/advisories/unreviewed/2024/06/GHSA-6pgg-hwvg-c2qx/GHSA-6pgg-hwvg-c2qx.json +++ b/advisories/unreviewed/2024/06/GHSA-6pgg-hwvg-c2qx/GHSA-6pgg-hwvg-c2qx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-6qvm-pxwh-rf7q/GHSA-6qvm-pxwh-rf7q.json b/advisories/unreviewed/2024/06/GHSA-6qvm-pxwh-rf7q/GHSA-6qvm-pxwh-rf7q.json index 3751bb45e89..e1893fc142c 100644 --- a/advisories/unreviewed/2024/06/GHSA-6qvm-pxwh-rf7q/GHSA-6qvm-pxwh-rf7q.json +++ b/advisories/unreviewed/2024/06/GHSA-6qvm-pxwh-rf7q/GHSA-6qvm-pxwh-rf7q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-6rvr-w68p-86fc/GHSA-6rvr-w68p-86fc.json b/advisories/unreviewed/2024/06/GHSA-6rvr-w68p-86fc/GHSA-6rvr-w68p-86fc.json index c880c81cbb2..418675ec7c6 100644 --- a/advisories/unreviewed/2024/06/GHSA-6rvr-w68p-86fc/GHSA-6rvr-w68p-86fc.json +++ b/advisories/unreviewed/2024/06/GHSA-6rvr-w68p-86fc/GHSA-6rvr-w68p-86fc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-7v5x-w92m-cv3c/GHSA-7v5x-w92m-cv3c.json b/advisories/unreviewed/2024/06/GHSA-7v5x-w92m-cv3c/GHSA-7v5x-w92m-cv3c.json index 411e99c0bf6..a6c8949ddff 100644 --- a/advisories/unreviewed/2024/06/GHSA-7v5x-w92m-cv3c/GHSA-7v5x-w92m-cv3c.json +++ b/advisories/unreviewed/2024/06/GHSA-7v5x-w92m-cv3c/GHSA-7v5x-w92m-cv3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-7vj8-r43f-w757/GHSA-7vj8-r43f-w757.json b/advisories/unreviewed/2024/06/GHSA-7vj8-r43f-w757/GHSA-7vj8-r43f-w757.json index 2d842205592..b7b4179e98f 100644 --- a/advisories/unreviewed/2024/06/GHSA-7vj8-r43f-w757/GHSA-7vj8-r43f-w757.json +++ b/advisories/unreviewed/2024/06/GHSA-7vj8-r43f-w757/GHSA-7vj8-r43f-w757.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9582-wvwf-gcp4/GHSA-9582-wvwf-gcp4.json b/advisories/unreviewed/2024/06/GHSA-9582-wvwf-gcp4/GHSA-9582-wvwf-gcp4.json index a11b14ed3ba..f680bc3c4e6 100644 --- a/advisories/unreviewed/2024/06/GHSA-9582-wvwf-gcp4/GHSA-9582-wvwf-gcp4.json +++ b/advisories/unreviewed/2024/06/GHSA-9582-wvwf-gcp4/GHSA-9582-wvwf-gcp4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9c62-3j48-78x8/GHSA-9c62-3j48-78x8.json b/advisories/unreviewed/2024/06/GHSA-9c62-3j48-78x8/GHSA-9c62-3j48-78x8.json index c61e863239d..7aa01fbecc2 100644 --- a/advisories/unreviewed/2024/06/GHSA-9c62-3j48-78x8/GHSA-9c62-3j48-78x8.json +++ b/advisories/unreviewed/2024/06/GHSA-9c62-3j48-78x8/GHSA-9c62-3j48-78x8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9fc4-553g-65rr/GHSA-9fc4-553g-65rr.json b/advisories/unreviewed/2024/06/GHSA-9fc4-553g-65rr/GHSA-9fc4-553g-65rr.json index 07b58371268..b4d8be40fa6 100644 --- a/advisories/unreviewed/2024/06/GHSA-9fc4-553g-65rr/GHSA-9fc4-553g-65rr.json +++ b/advisories/unreviewed/2024/06/GHSA-9fc4-553g-65rr/GHSA-9fc4-553g-65rr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9qhx-px37-h2gv/GHSA-9qhx-px37-h2gv.json b/advisories/unreviewed/2024/06/GHSA-9qhx-px37-h2gv/GHSA-9qhx-px37-h2gv.json index 82cd04265bc..2a4475c34b7 100644 --- a/advisories/unreviewed/2024/06/GHSA-9qhx-px37-h2gv/GHSA-9qhx-px37-h2gv.json +++ b/advisories/unreviewed/2024/06/GHSA-9qhx-px37-h2gv/GHSA-9qhx-px37-h2gv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9qq5-4535-59jg/GHSA-9qq5-4535-59jg.json b/advisories/unreviewed/2024/06/GHSA-9qq5-4535-59jg/GHSA-9qq5-4535-59jg.json index 1470d305278..f0e323c83a3 100644 --- a/advisories/unreviewed/2024/06/GHSA-9qq5-4535-59jg/GHSA-9qq5-4535-59jg.json +++ b/advisories/unreviewed/2024/06/GHSA-9qq5-4535-59jg/GHSA-9qq5-4535-59jg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-9rq6-59m3-gmgx/GHSA-9rq6-59m3-gmgx.json b/advisories/unreviewed/2024/06/GHSA-9rq6-59m3-gmgx/GHSA-9rq6-59m3-gmgx.json index 9cb05c8aeed..4083d7f4562 100644 --- a/advisories/unreviewed/2024/06/GHSA-9rq6-59m3-gmgx/GHSA-9rq6-59m3-gmgx.json +++ b/advisories/unreviewed/2024/06/GHSA-9rq6-59m3-gmgx/GHSA-9rq6-59m3-gmgx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-cchr-fv35-r386/GHSA-cchr-fv35-r386.json b/advisories/unreviewed/2024/06/GHSA-cchr-fv35-r386/GHSA-cchr-fv35-r386.json index 5f8d5ad05dd..2e0abb62bd6 100644 --- a/advisories/unreviewed/2024/06/GHSA-cchr-fv35-r386/GHSA-cchr-fv35-r386.json +++ b/advisories/unreviewed/2024/06/GHSA-cchr-fv35-r386/GHSA-cchr-fv35-r386.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-cf2f-r438-cv77/GHSA-cf2f-r438-cv77.json b/advisories/unreviewed/2024/06/GHSA-cf2f-r438-cv77/GHSA-cf2f-r438-cv77.json index 2842e26d5d1..3ffef0daa82 100644 --- a/advisories/unreviewed/2024/06/GHSA-cf2f-r438-cv77/GHSA-cf2f-r438-cv77.json +++ b/advisories/unreviewed/2024/06/GHSA-cf2f-r438-cv77/GHSA-cf2f-r438-cv77.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-cjqp-64qv-jpr5/GHSA-cjqp-64qv-jpr5.json b/advisories/unreviewed/2024/06/GHSA-cjqp-64qv-jpr5/GHSA-cjqp-64qv-jpr5.json index 1d75e692967..b27dfd4b266 100644 --- a/advisories/unreviewed/2024/06/GHSA-cjqp-64qv-jpr5/GHSA-cjqp-64qv-jpr5.json +++ b/advisories/unreviewed/2024/06/GHSA-cjqp-64qv-jpr5/GHSA-cjqp-64qv-jpr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-cmjm-fhjv-r3w9/GHSA-cmjm-fhjv-r3w9.json b/advisories/unreviewed/2024/06/GHSA-cmjm-fhjv-r3w9/GHSA-cmjm-fhjv-r3w9.json index 0a126f2417a..d851a46a6b8 100644 --- a/advisories/unreviewed/2024/06/GHSA-cmjm-fhjv-r3w9/GHSA-cmjm-fhjv-r3w9.json +++ b/advisories/unreviewed/2024/06/GHSA-cmjm-fhjv-r3w9/GHSA-cmjm-fhjv-r3w9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-cq99-38j7-7fwr/GHSA-cq99-38j7-7fwr.json b/advisories/unreviewed/2024/06/GHSA-cq99-38j7-7fwr/GHSA-cq99-38j7-7fwr.json index 7a09c96bfa5..4ea069724ab 100644 --- a/advisories/unreviewed/2024/06/GHSA-cq99-38j7-7fwr/GHSA-cq99-38j7-7fwr.json +++ b/advisories/unreviewed/2024/06/GHSA-cq99-38j7-7fwr/GHSA-cq99-38j7-7fwr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-fp79-c9h8-9hhg/GHSA-fp79-c9h8-9hhg.json b/advisories/unreviewed/2024/06/GHSA-fp79-c9h8-9hhg/GHSA-fp79-c9h8-9hhg.json index f1e795546f5..1596670bab9 100644 --- a/advisories/unreviewed/2024/06/GHSA-fp79-c9h8-9hhg/GHSA-fp79-c9h8-9hhg.json +++ b/advisories/unreviewed/2024/06/GHSA-fp79-c9h8-9hhg/GHSA-fp79-c9h8-9hhg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-g3hh-9rch-46w6/GHSA-g3hh-9rch-46w6.json b/advisories/unreviewed/2024/06/GHSA-g3hh-9rch-46w6/GHSA-g3hh-9rch-46w6.json index 65bc9dc06e1..008502309be 100644 --- a/advisories/unreviewed/2024/06/GHSA-g3hh-9rch-46w6/GHSA-g3hh-9rch-46w6.json +++ b/advisories/unreviewed/2024/06/GHSA-g3hh-9rch-46w6/GHSA-g3hh-9rch-46w6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-g55m-jg35-wph4/GHSA-g55m-jg35-wph4.json b/advisories/unreviewed/2024/06/GHSA-g55m-jg35-wph4/GHSA-g55m-jg35-wph4.json index 7460afe0132..7dec35fc6b8 100644 --- a/advisories/unreviewed/2024/06/GHSA-g55m-jg35-wph4/GHSA-g55m-jg35-wph4.json +++ b/advisories/unreviewed/2024/06/GHSA-g55m-jg35-wph4/GHSA-g55m-jg35-wph4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-g9j3-gfvx-6m8g/GHSA-g9j3-gfvx-6m8g.json b/advisories/unreviewed/2024/06/GHSA-g9j3-gfvx-6m8g/GHSA-g9j3-gfvx-6m8g.json index ec5c0ce2838..77dcbf37ae5 100644 --- a/advisories/unreviewed/2024/06/GHSA-g9j3-gfvx-6m8g/GHSA-g9j3-gfvx-6m8g.json +++ b/advisories/unreviewed/2024/06/GHSA-g9j3-gfvx-6m8g/GHSA-g9j3-gfvx-6m8g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-gf49-5fh7-c2r5/GHSA-gf49-5fh7-c2r5.json b/advisories/unreviewed/2024/06/GHSA-gf49-5fh7-c2r5/GHSA-gf49-5fh7-c2r5.json index d2474c2ae3e..ca8fb9c0978 100644 --- a/advisories/unreviewed/2024/06/GHSA-gf49-5fh7-c2r5/GHSA-gf49-5fh7-c2r5.json +++ b/advisories/unreviewed/2024/06/GHSA-gf49-5fh7-c2r5/GHSA-gf49-5fh7-c2r5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-gfjw-4v86-jg4q/GHSA-gfjw-4v86-jg4q.json b/advisories/unreviewed/2024/06/GHSA-gfjw-4v86-jg4q/GHSA-gfjw-4v86-jg4q.json index 03bec076d8a..43bfb3425c5 100644 --- a/advisories/unreviewed/2024/06/GHSA-gfjw-4v86-jg4q/GHSA-gfjw-4v86-jg4q.json +++ b/advisories/unreviewed/2024/06/GHSA-gfjw-4v86-jg4q/GHSA-gfjw-4v86-jg4q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-gg7m-qxmp-4f4x/GHSA-gg7m-qxmp-4f4x.json b/advisories/unreviewed/2024/06/GHSA-gg7m-qxmp-4f4x/GHSA-gg7m-qxmp-4f4x.json index f2d3e2629a3..c924ca3684a 100644 --- a/advisories/unreviewed/2024/06/GHSA-gg7m-qxmp-4f4x/GHSA-gg7m-qxmp-4f4x.json +++ b/advisories/unreviewed/2024/06/GHSA-gg7m-qxmp-4f4x/GHSA-gg7m-qxmp-4f4x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-gr49-h65r-cw4c/GHSA-gr49-h65r-cw4c.json b/advisories/unreviewed/2024/06/GHSA-gr49-h65r-cw4c/GHSA-gr49-h65r-cw4c.json index 347a23c5d82..9ae6f3086f5 100644 --- a/advisories/unreviewed/2024/06/GHSA-gr49-h65r-cw4c/GHSA-gr49-h65r-cw4c.json +++ b/advisories/unreviewed/2024/06/GHSA-gr49-h65r-cw4c/GHSA-gr49-h65r-cw4c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-h5jj-3737-6qrc/GHSA-h5jj-3737-6qrc.json b/advisories/unreviewed/2024/06/GHSA-h5jj-3737-6qrc/GHSA-h5jj-3737-6qrc.json index a3945619756..289463752ba 100644 --- a/advisories/unreviewed/2024/06/GHSA-h5jj-3737-6qrc/GHSA-h5jj-3737-6qrc.json +++ b/advisories/unreviewed/2024/06/GHSA-h5jj-3737-6qrc/GHSA-h5jj-3737-6qrc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-h6m3-rhhw-mrg7/GHSA-h6m3-rhhw-mrg7.json b/advisories/unreviewed/2024/06/GHSA-h6m3-rhhw-mrg7/GHSA-h6m3-rhhw-mrg7.json index 121dd4163cb..9b75fc5c087 100644 --- a/advisories/unreviewed/2024/06/GHSA-h6m3-rhhw-mrg7/GHSA-h6m3-rhhw-mrg7.json +++ b/advisories/unreviewed/2024/06/GHSA-h6m3-rhhw-mrg7/GHSA-h6m3-rhhw-mrg7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hc3r-wf5h-p922/GHSA-hc3r-wf5h-p922.json b/advisories/unreviewed/2024/06/GHSA-hc3r-wf5h-p922/GHSA-hc3r-wf5h-p922.json index cf3defec987..f3dcc24a5b4 100644 --- a/advisories/unreviewed/2024/06/GHSA-hc3r-wf5h-p922/GHSA-hc3r-wf5h-p922.json +++ b/advisories/unreviewed/2024/06/GHSA-hc3r-wf5h-p922/GHSA-hc3r-wf5h-p922.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hc5h-xj6p-7cf3/GHSA-hc5h-xj6p-7cf3.json b/advisories/unreviewed/2024/06/GHSA-hc5h-xj6p-7cf3/GHSA-hc5h-xj6p-7cf3.json index 5b6c64164c1..bf03abb9cd2 100644 --- a/advisories/unreviewed/2024/06/GHSA-hc5h-xj6p-7cf3/GHSA-hc5h-xj6p-7cf3.json +++ b/advisories/unreviewed/2024/06/GHSA-hc5h-xj6p-7cf3/GHSA-hc5h-xj6p-7cf3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hgfm-9m6v-3w3m/GHSA-hgfm-9m6v-3w3m.json b/advisories/unreviewed/2024/06/GHSA-hgfm-9m6v-3w3m/GHSA-hgfm-9m6v-3w3m.json index 5d1cc9c55a0..1386a7ad7e6 100644 --- a/advisories/unreviewed/2024/06/GHSA-hgfm-9m6v-3w3m/GHSA-hgfm-9m6v-3w3m.json +++ b/advisories/unreviewed/2024/06/GHSA-hgfm-9m6v-3w3m/GHSA-hgfm-9m6v-3w3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-hhhv-67qj-2x5m/GHSA-hhhv-67qj-2x5m.json b/advisories/unreviewed/2024/06/GHSA-hhhv-67qj-2x5m/GHSA-hhhv-67qj-2x5m.json index 49968978511..79469324008 100644 --- a/advisories/unreviewed/2024/06/GHSA-hhhv-67qj-2x5m/GHSA-hhhv-67qj-2x5m.json +++ b/advisories/unreviewed/2024/06/GHSA-hhhv-67qj-2x5m/GHSA-hhhv-67qj-2x5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-jw9m-fxmf-v25m/GHSA-jw9m-fxmf-v25m.json b/advisories/unreviewed/2024/06/GHSA-jw9m-fxmf-v25m/GHSA-jw9m-fxmf-v25m.json index c94b65c3c3e..fcb3e6cb160 100644 --- a/advisories/unreviewed/2024/06/GHSA-jw9m-fxmf-v25m/GHSA-jw9m-fxmf-v25m.json +++ b/advisories/unreviewed/2024/06/GHSA-jw9m-fxmf-v25m/GHSA-jw9m-fxmf-v25m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-m8g6-3qqh-77pv/GHSA-m8g6-3qqh-77pv.json b/advisories/unreviewed/2024/06/GHSA-m8g6-3qqh-77pv/GHSA-m8g6-3qqh-77pv.json index 496a730c068..caad0dd7623 100644 --- a/advisories/unreviewed/2024/06/GHSA-m8g6-3qqh-77pv/GHSA-m8g6-3qqh-77pv.json +++ b/advisories/unreviewed/2024/06/GHSA-m8g6-3qqh-77pv/GHSA-m8g6-3qqh-77pv.json @@ -7,12 +7,8 @@ "CVE-2023-52890" ], "details": "NTFS-3G before 75dcdc2 has a use-after-free in ntfs_uppercase_mbs in libntfs-3g/unistr.c. NOTE: discussion suggests that exploitation would be challenging.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/06/GHSA-p2r3-x9fm-7jh2/GHSA-p2r3-x9fm-7jh2.json b/advisories/unreviewed/2024/06/GHSA-p2r3-x9fm-7jh2/GHSA-p2r3-x9fm-7jh2.json index 6600a65309f..fc0d5a3a155 100644 --- a/advisories/unreviewed/2024/06/GHSA-p2r3-x9fm-7jh2/GHSA-p2r3-x9fm-7jh2.json +++ b/advisories/unreviewed/2024/06/GHSA-p2r3-x9fm-7jh2/GHSA-p2r3-x9fm-7jh2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-p4c9-7gx7-pr8c/GHSA-p4c9-7gx7-pr8c.json b/advisories/unreviewed/2024/06/GHSA-p4c9-7gx7-pr8c/GHSA-p4c9-7gx7-pr8c.json index 38ce02c8139..0d192d0d719 100644 --- a/advisories/unreviewed/2024/06/GHSA-p4c9-7gx7-pr8c/GHSA-p4c9-7gx7-pr8c.json +++ b/advisories/unreviewed/2024/06/GHSA-p4c9-7gx7-pr8c/GHSA-p4c9-7gx7-pr8c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-q55g-866x-cpmf/GHSA-q55g-866x-cpmf.json b/advisories/unreviewed/2024/06/GHSA-q55g-866x-cpmf/GHSA-q55g-866x-cpmf.json index d2ce6d78f97..35039921ad5 100644 --- a/advisories/unreviewed/2024/06/GHSA-q55g-866x-cpmf/GHSA-q55g-866x-cpmf.json +++ b/advisories/unreviewed/2024/06/GHSA-q55g-866x-cpmf/GHSA-q55g-866x-cpmf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-qfq6-69fv-f2r8/GHSA-qfq6-69fv-f2r8.json b/advisories/unreviewed/2024/06/GHSA-qfq6-69fv-f2r8/GHSA-qfq6-69fv-f2r8.json index e8ea0f706f4..11a8f7e3ede 100644 --- a/advisories/unreviewed/2024/06/GHSA-qfq6-69fv-f2r8/GHSA-qfq6-69fv-f2r8.json +++ b/advisories/unreviewed/2024/06/GHSA-qfq6-69fv-f2r8/GHSA-qfq6-69fv-f2r8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r28x-j5cf-6vf6/GHSA-r28x-j5cf-6vf6.json b/advisories/unreviewed/2024/06/GHSA-r28x-j5cf-6vf6/GHSA-r28x-j5cf-6vf6.json index f122aecef09..72ad85ed5e6 100644 --- a/advisories/unreviewed/2024/06/GHSA-r28x-j5cf-6vf6/GHSA-r28x-j5cf-6vf6.json +++ b/advisories/unreviewed/2024/06/GHSA-r28x-j5cf-6vf6/GHSA-r28x-j5cf-6vf6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r37j-gcqw-x2qg/GHSA-r37j-gcqw-x2qg.json b/advisories/unreviewed/2024/06/GHSA-r37j-gcqw-x2qg/GHSA-r37j-gcqw-x2qg.json index f08ab3cecbf..d39ba7981c2 100644 --- a/advisories/unreviewed/2024/06/GHSA-r37j-gcqw-x2qg/GHSA-r37j-gcqw-x2qg.json +++ b/advisories/unreviewed/2024/06/GHSA-r37j-gcqw-x2qg/GHSA-r37j-gcqw-x2qg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-r64c-j6jf-m9jx/GHSA-r64c-j6jf-m9jx.json b/advisories/unreviewed/2024/06/GHSA-r64c-j6jf-m9jx/GHSA-r64c-j6jf-m9jx.json index 1f623124578..cb22e5304ea 100644 --- a/advisories/unreviewed/2024/06/GHSA-r64c-j6jf-m9jx/GHSA-r64c-j6jf-m9jx.json +++ b/advisories/unreviewed/2024/06/GHSA-r64c-j6jf-m9jx/GHSA-r64c-j6jf-m9jx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-rf7j-4xjc-gfjv/GHSA-rf7j-4xjc-gfjv.json b/advisories/unreviewed/2024/06/GHSA-rf7j-4xjc-gfjv/GHSA-rf7j-4xjc-gfjv.json index 33a59146a5f..e73100917be 100644 --- a/advisories/unreviewed/2024/06/GHSA-rf7j-4xjc-gfjv/GHSA-rf7j-4xjc-gfjv.json +++ b/advisories/unreviewed/2024/06/GHSA-rf7j-4xjc-gfjv/GHSA-rf7j-4xjc-gfjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-rwph-p4c7-v9vv/GHSA-rwph-p4c7-v9vv.json b/advisories/unreviewed/2024/06/GHSA-rwph-p4c7-v9vv/GHSA-rwph-p4c7-v9vv.json index ac7ca8c3f4b..3e31c1a4edb 100644 --- a/advisories/unreviewed/2024/06/GHSA-rwph-p4c7-v9vv/GHSA-rwph-p4c7-v9vv.json +++ b/advisories/unreviewed/2024/06/GHSA-rwph-p4c7-v9vv/GHSA-rwph-p4c7-v9vv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-v46h-f7hg-q9mh/GHSA-v46h-f7hg-q9mh.json b/advisories/unreviewed/2024/06/GHSA-v46h-f7hg-q9mh/GHSA-v46h-f7hg-q9mh.json index dd2da395c9f..3f5124029a9 100644 --- a/advisories/unreviewed/2024/06/GHSA-v46h-f7hg-q9mh/GHSA-v46h-f7hg-q9mh.json +++ b/advisories/unreviewed/2024/06/GHSA-v46h-f7hg-q9mh/GHSA-v46h-f7hg-q9mh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-v64j-572q-98px/GHSA-v64j-572q-98px.json b/advisories/unreviewed/2024/06/GHSA-v64j-572q-98px/GHSA-v64j-572q-98px.json index 534119a2567..d4a8b3d6c90 100644 --- a/advisories/unreviewed/2024/06/GHSA-v64j-572q-98px/GHSA-v64j-572q-98px.json +++ b/advisories/unreviewed/2024/06/GHSA-v64j-572q-98px/GHSA-v64j-572q-98px.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-vxwj-fq87-3x69/GHSA-vxwj-fq87-3x69.json b/advisories/unreviewed/2024/06/GHSA-vxwj-fq87-3x69/GHSA-vxwj-fq87-3x69.json index 600e4e8b418..2c0c88018bd 100644 --- a/advisories/unreviewed/2024/06/GHSA-vxwj-fq87-3x69/GHSA-vxwj-fq87-3x69.json +++ b/advisories/unreviewed/2024/06/GHSA-vxwj-fq87-3x69/GHSA-vxwj-fq87-3x69.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-w26v-m725-wjxm/GHSA-w26v-m725-wjxm.json b/advisories/unreviewed/2024/06/GHSA-w26v-m725-wjxm/GHSA-w26v-m725-wjxm.json index 655db568ea2..0a603ac7b14 100644 --- a/advisories/unreviewed/2024/06/GHSA-w26v-m725-wjxm/GHSA-w26v-m725-wjxm.json +++ b/advisories/unreviewed/2024/06/GHSA-w26v-m725-wjxm/GHSA-w26v-m725-wjxm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-w5p2-29g5-2x7m/GHSA-w5p2-29g5-2x7m.json b/advisories/unreviewed/2024/06/GHSA-w5p2-29g5-2x7m/GHSA-w5p2-29g5-2x7m.json index 10160974afb..7240378e6f2 100644 --- a/advisories/unreviewed/2024/06/GHSA-w5p2-29g5-2x7m/GHSA-w5p2-29g5-2x7m.json +++ b/advisories/unreviewed/2024/06/GHSA-w5p2-29g5-2x7m/GHSA-w5p2-29g5-2x7m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/06/GHSA-xcqw-r66w-wh59/GHSA-xcqw-r66w-wh59.json b/advisories/unreviewed/2024/06/GHSA-xcqw-r66w-wh59/GHSA-xcqw-r66w-wh59.json index 2e297e4ffc8..09655c99a0a 100644 --- a/advisories/unreviewed/2024/06/GHSA-xcqw-r66w-wh59/GHSA-xcqw-r66w-wh59.json +++ b/advisories/unreviewed/2024/06/GHSA-xcqw-r66w-wh59/GHSA-xcqw-r66w-wh59.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",