From c33ec4745b97692b586bf7b61a496eee41153d14 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 4 May 2023 18:32:08 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-mxm3-g2j6-276p.json | 4 ++ .../GHSA-x4hp-q863-hc8m.json | 4 ++ .../GHSA-w3cv-3c36-h8j2.json | 4 ++ .../GHSA-5pgr-37hm-gqpw.json | 4 ++ .../GHSA-2h2j-55g7-g43c.json | 7 ++- .../GHSA-2rx2-wvh6-wg6m.json | 9 ++-- .../GHSA-333m-4m49-38wm.json | 2 +- .../GHSA-395r-3vpg-67gw.json | 9 ++-- .../GHSA-7946-5rp5-f5v2.json | 2 +- .../GHSA-7jv7-hr35-fwjr.json | 9 ++-- .../GHSA-9gqr-rx5g-cgrq.json | 7 ++- .../GHSA-g56r-phrf-6pc4.json | 4 ++ .../GHSA-m42j-4xh8-862v.json | 9 ++-- .../GHSA-pwx9-2gvj-242v.json | 9 ++-- .../GHSA-q945-mj3h-45f2.json | 10 ++-- .../GHSA-xch2-6rcx-h2mv.json | 9 ++-- .../GHSA-39xg-53hj-p9pw.json | 35 ++++++++++++++ .../GHSA-43x4-4r99-6r59.json | 42 +++++++++++++++++ .../GHSA-5mw6-x44r-m884.json | 46 +++++++++++++++++++ .../GHSA-6537-rwx6-xqvm.json | 42 +++++++++++++++++ .../GHSA-6h45-p2j6-r9ph.json | 35 ++++++++++++++ .../GHSA-f267-x8wv-jgfj.json | 35 ++++++++++++++ .../GHSA-m88v-c2r8-j4wf.json | 46 +++++++++++++++++++ .../GHSA-p6p7-rm34-8cgq.json | 35 ++++++++++++++ .../GHSA-w8g9-xrv8-vfw2.json | 46 +++++++++++++++++++ .../GHSA-wv4v-2jhr-66qm.json | 35 ++++++++++++++ 26 files changed, 472 insertions(+), 27 deletions(-) create mode 100644 advisories/unreviewed/2023/05/GHSA-39xg-53hj-p9pw/GHSA-39xg-53hj-p9pw.json create mode 100644 advisories/unreviewed/2023/05/GHSA-43x4-4r99-6r59/GHSA-43x4-4r99-6r59.json create mode 100644 advisories/unreviewed/2023/05/GHSA-5mw6-x44r-m884/GHSA-5mw6-x44r-m884.json create mode 100644 advisories/unreviewed/2023/05/GHSA-6537-rwx6-xqvm/GHSA-6537-rwx6-xqvm.json create mode 100644 advisories/unreviewed/2023/05/GHSA-6h45-p2j6-r9ph/GHSA-6h45-p2j6-r9ph.json create mode 100644 advisories/unreviewed/2023/05/GHSA-f267-x8wv-jgfj/GHSA-f267-x8wv-jgfj.json create mode 100644 advisories/unreviewed/2023/05/GHSA-m88v-c2r8-j4wf/GHSA-m88v-c2r8-j4wf.json create mode 100644 advisories/unreviewed/2023/05/GHSA-p6p7-rm34-8cgq/GHSA-p6p7-rm34-8cgq.json create mode 100644 advisories/unreviewed/2023/05/GHSA-w8g9-xrv8-vfw2/GHSA-w8g9-xrv8-vfw2.json create mode 100644 advisories/unreviewed/2023/05/GHSA-wv4v-2jhr-66qm/GHSA-wv4v-2jhr-66qm.json diff --git a/advisories/unreviewed/2022/03/GHSA-mxm3-g2j6-276p/GHSA-mxm3-g2j6-276p.json b/advisories/unreviewed/2022/03/GHSA-mxm3-g2j6-276p/GHSA-mxm3-g2j6-276p.json index 08eaa448720..3fcb8b25cde 100644 --- a/advisories/unreviewed/2022/03/GHSA-mxm3-g2j6-276p/GHSA-mxm3-g2j6-276p.json +++ b/advisories/unreviewed/2022/03/GHSA-mxm3-g2j6-276p/GHSA-mxm3-g2j6-276p.json @@ -48,6 +48,10 @@ { "type": "WEB", "url": "https://www.debian.org/security/2022/dsa-5100" + }, + { + "type": "WEB", + "url": "http://packetstormsecurity.com/files/172148/Shannon-Baseband-fmtp-SDP-Attribute-Memory-Corruption.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2022/04/GHSA-x4hp-q863-hc8m/GHSA-x4hp-q863-hc8m.json b/advisories/unreviewed/2022/04/GHSA-x4hp-q863-hc8m/GHSA-x4hp-q863-hc8m.json index c9508d540de..e817544a425 100644 --- a/advisories/unreviewed/2022/04/GHSA-x4hp-q863-hc8m/GHSA-x4hp-q863-hc8m.json +++ b/advisories/unreviewed/2022/04/GHSA-x4hp-q863-hc8m/GHSA-x4hp-q863-hc8m.json @@ -40,6 +40,10 @@ { "type": "WEB", "url": "http://packetstormsecurity.com/files/166744/Asterisk-Project-Security-Advisory-AST-2022-001.html" + }, + { + "type": "WEB", + "url": "http://packetstormsecurity.com/files/172139/Shannon-Baseband-chatroom-SDP-Attribute-Memory-Corruption.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2022/06/GHSA-w3cv-3c36-h8j2/GHSA-w3cv-3c36-h8j2.json b/advisories/unreviewed/2022/06/GHSA-w3cv-3c36-h8j2/GHSA-w3cv-3c36-h8j2.json index 426cdfe10b5..c4a3a053495 100644 --- a/advisories/unreviewed/2022/06/GHSA-w3cv-3c36-h8j2/GHSA-w3cv-3c36-h8j2.json +++ b/advisories/unreviewed/2022/06/GHSA-w3cv-3c36-h8j2/GHSA-w3cv-3c36-h8j2.json @@ -28,6 +28,10 @@ { "type": "WEB", "url": "https://www.mgm-sp.com/en/cve-2022-26497-bigbluebutton-greenlight-xss/" + }, + { + "type": "WEB", + "url": "http://packetstormsecurity.com/files/172143/Shannon-Baseband-acfg-pcfg-SDP-Attribute-Memory-Corruption.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2023/03/GHSA-5pgr-37hm-gqpw/GHSA-5pgr-37hm-gqpw.json b/advisories/unreviewed/2023/03/GHSA-5pgr-37hm-gqpw/GHSA-5pgr-37hm-gqpw.json index 13a0e7fca6b..9a61648b8cd 100644 --- a/advisories/unreviewed/2023/03/GHSA-5pgr-37hm-gqpw/GHSA-5pgr-37hm-gqpw.json +++ b/advisories/unreviewed/2023/03/GHSA-5pgr-37hm-gqpw/GHSA-5pgr-37hm-gqpw.json @@ -28,6 +28,10 @@ { "type": "WEB", "url": "https://semiconductor.samsung.com/support/quality-support/product-security-updates/" + }, + { + "type": "WEB", + "url": "http://packetstormsecurity.com/files/172137/Shannon-Baseband-accept-type-SDP-Attribute-Memory-Corruption.html" } ], "database_specific": { diff --git a/advisories/unreviewed/2023/04/GHSA-2h2j-55g7-g43c/GHSA-2h2j-55g7-g43c.json b/advisories/unreviewed/2023/04/GHSA-2h2j-55g7-g43c/GHSA-2h2j-55g7-g43c.json index 488f1f4cbdc..5a46aeb2ca7 100644 --- a/advisories/unreviewed/2023/04/GHSA-2h2j-55g7-g43c/GHSA-2h2j-55g7-g43c.json +++ b/advisories/unreviewed/2023/04/GHSA-2h2j-55g7-g43c/GHSA-2h2j-55g7-g43c.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2h2j-55g7-g43c", - "modified": "2023-04-24T21:30:30Z", + "modified": "2023-05-04T18:30:51Z", "published": "2023-04-24T21:30:30Z", "aliases": [ "CVE-2023-1624" ], "details": "The WPCode WordPress plugin before 2.0.9 has a flawed CSRF when deleting log, and does not ensure that the file to be deleted is inside the expected folder. This could allow attackers to make users with the wpcode_activate_snippets capability delete arbitrary log files on the server, including outside of the blog folders", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" + } ], "affected": [ diff --git a/advisories/unreviewed/2023/04/GHSA-2rx2-wvh6-wg6m/GHSA-2rx2-wvh6-wg6m.json b/advisories/unreviewed/2023/04/GHSA-2rx2-wvh6-wg6m/GHSA-2rx2-wvh6-wg6m.json index 906ee474683..b6f7aba0014 100644 --- a/advisories/unreviewed/2023/04/GHSA-2rx2-wvh6-wg6m/GHSA-2rx2-wvh6-wg6m.json +++ b/advisories/unreviewed/2023/04/GHSA-2rx2-wvh6-wg6m/GHSA-2rx2-wvh6-wg6m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-2rx2-wvh6-wg6m", - "modified": "2023-04-24T21:30:30Z", + "modified": "2023-05-04T18:30:51Z", "published": "2023-04-24T21:30:30Z", "aliases": [ "CVE-2023-2257" ], "details": "Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and earlier on Windows and macOS allows an attacker with access to the user interface to unlock a Hub \nBusiness space without being prompted to enter the password via an \nunimplemented \"Force Login\" security feature.\n\nThis vulnerability occurs only if \"Force Login\" feature is enabled on the Hub Business instance and that an attacker has access to a locked Workspace desktop application configured with a Hub Business space.\n", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-863" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-333m-4m49-38wm/GHSA-333m-4m49-38wm.json b/advisories/unreviewed/2023/04/GHSA-333m-4m49-38wm/GHSA-333m-4m49-38wm.json index 43c3ffda16a..7d4340d4cb0 100644 --- a/advisories/unreviewed/2023/04/GHSA-333m-4m49-38wm/GHSA-333m-4m49-38wm.json +++ b/advisories/unreviewed/2023/04/GHSA-333m-4m49-38wm/GHSA-333m-4m49-38wm.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-611" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-395r-3vpg-67gw/GHSA-395r-3vpg-67gw.json b/advisories/unreviewed/2023/04/GHSA-395r-3vpg-67gw/GHSA-395r-3vpg-67gw.json index f2db47d391a..a58dbf30e71 100644 --- a/advisories/unreviewed/2023/04/GHSA-395r-3vpg-67gw/GHSA-395r-3vpg-67gw.json +++ b/advisories/unreviewed/2023/04/GHSA-395r-3vpg-67gw/GHSA-395r-3vpg-67gw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-395r-3vpg-67gw", - "modified": "2023-04-24T21:30:30Z", + "modified": "2023-05-04T18:30:51Z", "published": "2023-04-24T21:30:30Z", "aliases": [ "CVE-2023-29780" ], "details": "Third Reality Smart Blind 1.00.54 contains a denial-of-service vulnerability, which allows a remote attacker to send malicious Zigbee messages to a vulnerable device and cause crashes.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -29,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-20" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-7946-5rp5-f5v2/GHSA-7946-5rp5-f5v2.json b/advisories/unreviewed/2023/04/GHSA-7946-5rp5-f5v2/GHSA-7946-5rp5-f5v2.json index df394ec1753..bc80a2681f2 100644 --- a/advisories/unreviewed/2023/04/GHSA-7946-5rp5-f5v2/GHSA-7946-5rp5-f5v2.json +++ b/advisories/unreviewed/2023/04/GHSA-7946-5rp5-f5v2/GHSA-7946-5rp5-f5v2.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-611" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-7jv7-hr35-fwjr/GHSA-7jv7-hr35-fwjr.json b/advisories/unreviewed/2023/04/GHSA-7jv7-hr35-fwjr/GHSA-7jv7-hr35-fwjr.json index 16b0ae34428..d6d2a257501 100644 --- a/advisories/unreviewed/2023/04/GHSA-7jv7-hr35-fwjr/GHSA-7jv7-hr35-fwjr.json +++ b/advisories/unreviewed/2023/04/GHSA-7jv7-hr35-fwjr/GHSA-7jv7-hr35-fwjr.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-7jv7-hr35-fwjr", - "modified": "2023-04-24T21:30:30Z", + "modified": "2023-05-04T18:30:51Z", "published": "2023-04-24T21:30:30Z", "aliases": [ "CVE-2023-29469" ], "details": "An issue was discovered in libxml2 before 2.10.4. When hashing empty dict strings in a crafted XML document, xmlDictComputeFastKey in dict.c can produce non-deterministic values, leading to various logic and memory errors, such as a double free. This behavior occurs because there is an attempt to use the first byte of an empty string, and any value is possible (not solely the '\\0' value).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" + } ], "affected": [ @@ -33,7 +36,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-415" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-9gqr-rx5g-cgrq/GHSA-9gqr-rx5g-cgrq.json b/advisories/unreviewed/2023/04/GHSA-9gqr-rx5g-cgrq/GHSA-9gqr-rx5g-cgrq.json index 45e8e3d94e9..8395a6d975b 100644 --- a/advisories/unreviewed/2023/04/GHSA-9gqr-rx5g-cgrq/GHSA-9gqr-rx5g-cgrq.json +++ b/advisories/unreviewed/2023/04/GHSA-9gqr-rx5g-cgrq/GHSA-9gqr-rx5g-cgrq.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9gqr-rx5g-cgrq", - "modified": "2023-04-25T15:30:29Z", + "modified": "2023-05-04T18:30:52Z", "published": "2023-04-25T15:30:29Z", "aliases": [ "CVE-2023-29779" ], "details": "Sengled Dimmer Switch V0.0.9 contains a denial of service (DOS) vulnerability, which allows a remote attacker to send malicious Zigbee messages to a vulnerable device and cause crashes. After receiving the malicious command, the device will keep reporting its status and finally drain its battery after receiving the 'Set_short_poll_interval' command.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } ], "affected": [ diff --git a/advisories/unreviewed/2023/04/GHSA-g56r-phrf-6pc4/GHSA-g56r-phrf-6pc4.json b/advisories/unreviewed/2023/04/GHSA-g56r-phrf-6pc4/GHSA-g56r-phrf-6pc4.json index f3ab70e68f1..52ec9b8c6fd 100644 --- a/advisories/unreviewed/2023/04/GHSA-g56r-phrf-6pc4/GHSA-g56r-phrf-6pc4.json +++ b/advisories/unreviewed/2023/04/GHSA-g56r-phrf-6pc4/GHSA-g56r-phrf-6pc4.json @@ -30,6 +30,10 @@ "type": "WEB", "url": "https://www.openwall.com/lists/oss-security/2023/04/18/14" }, + { + "type": "WEB", + "url": "https://www.openwall.com/lists/oss-security/2023/05/03/4" + }, { "type": "WEB", "url": "https://www.reddit.com/r/perl/comments/111tadi/psa_httptiny_disabled_ssl_verification_by_default/" diff --git a/advisories/unreviewed/2023/04/GHSA-m42j-4xh8-862v/GHSA-m42j-4xh8-862v.json b/advisories/unreviewed/2023/04/GHSA-m42j-4xh8-862v/GHSA-m42j-4xh8-862v.json index 25bc53e4693..ae12100d53d 100644 --- a/advisories/unreviewed/2023/04/GHSA-m42j-4xh8-862v/GHSA-m42j-4xh8-862v.json +++ b/advisories/unreviewed/2023/04/GHSA-m42j-4xh8-862v/GHSA-m42j-4xh8-862v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-m42j-4xh8-862v", - "modified": "2023-04-25T15:30:29Z", + "modified": "2023-05-04T18:30:52Z", "published": "2023-04-25T15:30:29Z", "aliases": [ "CVE-2023-30417" ], "details": "A cross-site scripting (XSS) vulnerability in Pear-Admin-Boot up to v2.0.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Title of a private message.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json b/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json index ecb7e994138..125ade9e00c 100644 --- a/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json +++ b/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-pwx9-2gvj-242v", - "modified": "2023-04-25T15:30:27Z", + "modified": "2023-05-04T18:30:51Z", "published": "2023-04-25T15:30:27Z", "aliases": [ "CVE-2022-42335" ], "details": "x86 shadow paging arbitrary pointer dereference In environments where host assisted address translation is necessary but Hardware Assisted Paging (HAP) is unavailable, Xen will run guests in so called shadow mode. Due to too lax a check in one of the hypervisor routines used for shadow page handling it is possible for a guest with a PCI device passed through to cause the hypervisor to access an arbitrary pointer partially under guest control.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -37,7 +40,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-476" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-q945-mj3h-45f2/GHSA-q945-mj3h-45f2.json b/advisories/unreviewed/2023/04/GHSA-q945-mj3h-45f2/GHSA-q945-mj3h-45f2.json index 8c4832d1a8f..227a1c79104 100644 --- a/advisories/unreviewed/2023/04/GHSA-q945-mj3h-45f2/GHSA-q945-mj3h-45f2.json +++ b/advisories/unreviewed/2023/04/GHSA-q945-mj3h-45f2/GHSA-q945-mj3h-45f2.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-q945-mj3h-45f2", - "modified": "2023-04-25T00:30:41Z", + "modified": "2023-05-04T18:30:51Z", "published": "2023-04-25T00:30:41Z", "aliases": [ "CVE-2023-2007" ], "details": "The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-367" + "CWE-367", + "CWE-667" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/04/GHSA-xch2-6rcx-h2mv/GHSA-xch2-6rcx-h2mv.json b/advisories/unreviewed/2023/04/GHSA-xch2-6rcx-h2mv/GHSA-xch2-6rcx-h2mv.json index 1373427eca1..22212327702 100644 --- a/advisories/unreviewed/2023/04/GHSA-xch2-6rcx-h2mv/GHSA-xch2-6rcx-h2mv.json +++ b/advisories/unreviewed/2023/04/GHSA-xch2-6rcx-h2mv/GHSA-xch2-6rcx-h2mv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xch2-6rcx-h2mv", - "modified": "2023-04-26T00:30:21Z", + "modified": "2023-05-04T18:30:52Z", "published": "2023-04-26T00:30:21Z", "aliases": [ "CVE-2023-30111" ], "details": "Medicine Tracker System in PHP 1.0.0 is vulnerable to Cross Site Scripting (XSS).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/05/GHSA-39xg-53hj-p9pw/GHSA-39xg-53hj-p9pw.json b/advisories/unreviewed/2023/05/GHSA-39xg-53hj-p9pw/GHSA-39xg-53hj-p9pw.json new file mode 100644 index 00000000000..7c5f831f548 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-39xg-53hj-p9pw/GHSA-39xg-53hj-p9pw.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-39xg-53hj-p9pw", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-29994" + ], + "details": "In NanoMQ v0.15.0-0, Heap overflow occurs in read_byte function of mqtt_code.c.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29994" + }, + { + "type": "WEB", + "url": "https://github.com/emqx/nanomq/issues/1042" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-43x4-4r99-6r59/GHSA-43x4-4r99-6r59.json b/advisories/unreviewed/2023/05/GHSA-43x4-4r99-6r59/GHSA-43x4-4r99-6r59.json new file mode 100644 index 00000000000..d08f42ff1e0 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-43x4-4r99-6r59/GHSA-43x4-4r99-6r59.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-43x4-4r99-6r59", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-2521" + ], + "details": "A vulnerability was found in NEXTU NEXT-7004N 3.0.1. It has been classified as problematic. Affected is an unknown function of the file /boafrm/formFilter of the component POST Request Handler. The manipulation of the argument url with the input leads to cross site scripting. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-228012. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-2521" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.228012" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.228012" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-5mw6-x44r-m884/GHSA-5mw6-x44r-m884.json b/advisories/unreviewed/2023/05/GHSA-5mw6-x44r-m884/GHSA-5mw6-x44r-m884.json new file mode 100644 index 00000000000..a4ccb811d3c --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-5mw6-x44r-m884/GHSA-5mw6-x44r-m884.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5mw6-x44r-m884", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-2522" + ], + "details": "A vulnerability was found in Chengdu VEC40G 3.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /send_order.cgi?parameter=access_detect of the component Network Detection. The manipulation of the argument COUNT with the input 3 | netstat -an leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-228013 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-2522" + }, + { + "type": "WEB", + "url": "https://github.com/eckert-lcc/cve/blob/main/Flying%20fish%20star.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.228013" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.228013" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-6537-rwx6-xqvm/GHSA-6537-rwx6-xqvm.json b/advisories/unreviewed/2023/05/GHSA-6537-rwx6-xqvm/GHSA-6537-rwx6-xqvm.json new file mode 100644 index 00000000000..3ad8a73c002 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-6537-rwx6-xqvm/GHSA-6537-rwx6-xqvm.json @@ -0,0 +1,42 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6537-rwx6-xqvm", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-2519" + ], + "details": "A vulnerability has been found in Caton CTP Relay Server 1.2.9 and classified as critical. This vulnerability affects unknown code of the file /server/api/v1/login of the component API. The manipulation of the argument username/password leads to sql injection. The attack can be initiated remotely. VDB-228010 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-2519" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.228010" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.228010" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-6h45-p2j6-r9ph/GHSA-6h45-p2j6-r9ph.json b/advisories/unreviewed/2023/05/GHSA-6h45-p2j6-r9ph/GHSA-6h45-p2j6-r9ph.json new file mode 100644 index 00000000000..50c125d0aeb --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-6h45-p2j6-r9ph/GHSA-6h45-p2j6-r9ph.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6h45-p2j6-r9ph", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-29995" + ], + "details": "In NanoMQ v0.15.0-0, a Heap overflow occurs in copyn_utf8_str function of mqtt_parser.c", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29995" + }, + { + "type": "WEB", + "url": "https://github.com/emqx/nanomq/issues/1043" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-f267-x8wv-jgfj/GHSA-f267-x8wv-jgfj.json b/advisories/unreviewed/2023/05/GHSA-f267-x8wv-jgfj/GHSA-f267-x8wv-jgfj.json new file mode 100644 index 00000000000..1e898ab4f85 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-f267-x8wv-jgfj/GHSA-f267-x8wv-jgfj.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f267-x8wv-jgfj", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-30203" + ], + "details": "Judging Management System v1.0 was discovered to contain a SQL injection vulnerability via the event_id parameter at /php-jms/result_sheet.php.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-30203" + }, + { + "type": "WEB", + "url": "https://github.com/debug601/bug_report/blob/main/vendors/oretnom23/judging-management-system/SQLi-2.md" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-m88v-c2r8-j4wf/GHSA-m88v-c2r8-j4wf.json b/advisories/unreviewed/2023/05/GHSA-m88v-c2r8-j4wf/GHSA-m88v-c2r8-j4wf.json new file mode 100644 index 00000000000..04deb999cc6 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-m88v-c2r8-j4wf/GHSA-m88v-c2r8-j4wf.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m88v-c2r8-j4wf", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-2520" + ], + "details": "A vulnerability was found in Caton Prime 2.1.2.51.e8d7225049(202303031001) and classified as critical. This issue affects some unknown processing of the file cgi-bin/tools_ping.cgi?action=Command of the component Ping Handler. The manipulation of the argument Destination leads to command injection. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-228011. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-2520" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.228011" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.228011" + }, + { + "type": "WEB", + "url": "https://www.youtube.com/watch?v=H1y7CXjJDmU" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-p6p7-rm34-8cgq/GHSA-p6p7-rm34-8cgq.json b/advisories/unreviewed/2023/05/GHSA-p6p7-rm34-8cgq/GHSA-p6p7-rm34-8cgq.json new file mode 100644 index 00000000000..ad4d180d1f7 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-p6p7-rm34-8cgq/GHSA-p6p7-rm34-8cgq.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p6p7-rm34-8cgq", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-29996" + ], + "details": "In NanoMQ v0.15.0-0, segment fault with Null Pointer Dereference occurs in the process of decoding subinfo_decode and unsubinfo_decode.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-29996" + }, + { + "type": "WEB", + "url": "https://github.com/emqx/nanomq/issues/1038" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-w8g9-xrv8-vfw2/GHSA-w8g9-xrv8-vfw2.json b/advisories/unreviewed/2023/05/GHSA-w8g9-xrv8-vfw2/GHSA-w8g9-xrv8-vfw2.json new file mode 100644 index 00000000000..60a3c3487f7 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-w8g9-xrv8-vfw2/GHSA-w8g9-xrv8-vfw2.json @@ -0,0 +1,46 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w8g9-xrv8-vfw2", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-2523" + ], + "details": "A vulnerability was found in Weaver E-Office 9.5. It has been rated as critical. Affected by this issue is some unknown functionality of the file App/Ajax/ajax.php?action=mobile_upload_save. The manipulation of the argument upload_quwan leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-228014 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-2523" + }, + { + "type": "WEB", + "url": "https://github.com/RCEraser/cve/blob/main/Weaver.md" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?ctiid.228014" + }, + { + "type": "WEB", + "url": "https://vuldb.com/?id.228014" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-434" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/05/GHSA-wv4v-2jhr-66qm/GHSA-wv4v-2jhr-66qm.json b/advisories/unreviewed/2023/05/GHSA-wv4v-2jhr-66qm/GHSA-wv4v-2jhr-66qm.json new file mode 100644 index 00000000000..030b14a2861 --- /dev/null +++ b/advisories/unreviewed/2023/05/GHSA-wv4v-2jhr-66qm/GHSA-wv4v-2jhr-66qm.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wv4v-2jhr-66qm", + "modified": "2023-05-04T18:30:53Z", + "published": "2023-05-04T18:30:53Z", + "aliases": [ + "CVE-2023-30184" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in Typecho v1.2.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the url parameter at /index.php/archives/1/comment.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-30184" + }, + { + "type": "WEB", + "url": "https://github.com/typecho/typecho/issues/1546" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file