From c4d55ef1f0c544db377078705820cf8fc915c06c Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Fri, 14 Feb 2025 00:32:04 +0000 Subject: [PATCH] Advisory Database Sync --- .../GHSA-2x4h-9pj5-8p4x.json | 29 +++++++++++ .../GHSA-37rg-82p6-6g3x.json | 29 +++++++++++ .../GHSA-3cr7-mfmj-jrxj.json | 29 +++++++++++ .../GHSA-4f7j-px6v-m38x.json | 29 +++++++++++ .../GHSA-4h5r-r8cj-6rj3.json | 34 +++++++++++++ .../GHSA-5p75-8vmp-h6xw.json | 29 +++++++++++ .../GHSA-5p7x-h37p-q967.json | 29 +++++++++++ .../GHSA-5vm2-873v-mw7w.json | 48 +++++++++++++++++++ .../GHSA-72w4-wjvh-293c.json | 48 +++++++++++++++++++ .../GHSA-7c29-93mg-22jf.json | 29 +++++++++++ .../GHSA-7pxw-57qc-2vjm.json | 29 +++++++++++ .../GHSA-c442-c8m7-hp5v.json | 29 +++++++++++ .../GHSA-f5x3-46hh-69h6.json | 29 +++++++++++ .../GHSA-fc4h-jq3v-6rrg.json | 29 +++++++++++ .../GHSA-fp9p-7hx8-xfp3.json | 11 +++-- .../GHSA-gccq-88r2-w9m4.json | 44 +++++++++++++++++ .../GHSA-gf6v-v2m7-4pr4.json | 44 +++++++++++++++++ .../GHSA-gfp3-9j64-8w7j.json | 44 +++++++++++++++++ .../GHSA-gh3v-mv9p-hffw.json | 29 +++++++++++ .../GHSA-j98w-mw3j-r2fc.json | 34 +++++++++++++ .../GHSA-jggw-p92x-6h2m.json | 29 +++++++++++ .../GHSA-jrq6-48vf-qc9h.json | 29 +++++++++++ .../GHSA-mhw9-x46c-v6q4.json | 6 ++- .../GHSA-mxw5-pq7x-p39x.json | 44 +++++++++++++++++ .../GHSA-p8wr-gh54-63h2.json | 48 +++++++++++++++++++ .../GHSA-phh8-qcpx-2xhf.json | 29 +++++++++++ .../GHSA-pvvp-cjfg-4jv4.json | 44 +++++++++++++++++ .../GHSA-qg4v-q6r4-gqhg.json | 44 +++++++++++++++++ .../GHSA-qg5c-v9j4-c7gw.json | 44 +++++++++++++++++ .../GHSA-qvrx-p9gg-46f8.json | 29 +++++++++++ .../GHSA-r3fr-hgwv-7g68.json | 48 +++++++++++++++++++ .../GHSA-rcq4-h567-5923.json | 29 +++++++++++ .../GHSA-rjrq-626c-q262.json | 40 ++++++++++++++++ .../GHSA-vjxw-jj99-5xw3.json | 29 +++++++++++ .../GHSA-x855-4m6r-jwmr.json | 29 +++++++++++ .../GHSA-xjpw-qmp3-4x22.json | 29 +++++++++++ .../GHSA-xp8w-5r26-q5qh.json | 29 +++++++++++ 37 files changed, 1230 insertions(+), 4 deletions(-) create mode 100644 advisories/unreviewed/2025/02/GHSA-2x4h-9pj5-8p4x/GHSA-2x4h-9pj5-8p4x.json create mode 100644 advisories/unreviewed/2025/02/GHSA-37rg-82p6-6g3x/GHSA-37rg-82p6-6g3x.json create mode 100644 advisories/unreviewed/2025/02/GHSA-3cr7-mfmj-jrxj/GHSA-3cr7-mfmj-jrxj.json create mode 100644 advisories/unreviewed/2025/02/GHSA-4f7j-px6v-m38x/GHSA-4f7j-px6v-m38x.json create mode 100644 advisories/unreviewed/2025/02/GHSA-4h5r-r8cj-6rj3/GHSA-4h5r-r8cj-6rj3.json create mode 100644 advisories/unreviewed/2025/02/GHSA-5p75-8vmp-h6xw/GHSA-5p75-8vmp-h6xw.json create mode 100644 advisories/unreviewed/2025/02/GHSA-5p7x-h37p-q967/GHSA-5p7x-h37p-q967.json create mode 100644 advisories/unreviewed/2025/02/GHSA-5vm2-873v-mw7w/GHSA-5vm2-873v-mw7w.json create mode 100644 advisories/unreviewed/2025/02/GHSA-72w4-wjvh-293c/GHSA-72w4-wjvh-293c.json create mode 100644 advisories/unreviewed/2025/02/GHSA-7c29-93mg-22jf/GHSA-7c29-93mg-22jf.json create mode 100644 advisories/unreviewed/2025/02/GHSA-7pxw-57qc-2vjm/GHSA-7pxw-57qc-2vjm.json create mode 100644 advisories/unreviewed/2025/02/GHSA-c442-c8m7-hp5v/GHSA-c442-c8m7-hp5v.json create mode 100644 advisories/unreviewed/2025/02/GHSA-f5x3-46hh-69h6/GHSA-f5x3-46hh-69h6.json create mode 100644 advisories/unreviewed/2025/02/GHSA-fc4h-jq3v-6rrg/GHSA-fc4h-jq3v-6rrg.json create mode 100644 advisories/unreviewed/2025/02/GHSA-gccq-88r2-w9m4/GHSA-gccq-88r2-w9m4.json create mode 100644 advisories/unreviewed/2025/02/GHSA-gf6v-v2m7-4pr4/GHSA-gf6v-v2m7-4pr4.json create mode 100644 advisories/unreviewed/2025/02/GHSA-gfp3-9j64-8w7j/GHSA-gfp3-9j64-8w7j.json create mode 100644 advisories/unreviewed/2025/02/GHSA-gh3v-mv9p-hffw/GHSA-gh3v-mv9p-hffw.json create mode 100644 advisories/unreviewed/2025/02/GHSA-j98w-mw3j-r2fc/GHSA-j98w-mw3j-r2fc.json create mode 100644 advisories/unreviewed/2025/02/GHSA-jggw-p92x-6h2m/GHSA-jggw-p92x-6h2m.json create mode 100644 advisories/unreviewed/2025/02/GHSA-jrq6-48vf-qc9h/GHSA-jrq6-48vf-qc9h.json create mode 100644 advisories/unreviewed/2025/02/GHSA-mxw5-pq7x-p39x/GHSA-mxw5-pq7x-p39x.json create mode 100644 advisories/unreviewed/2025/02/GHSA-p8wr-gh54-63h2/GHSA-p8wr-gh54-63h2.json create mode 100644 advisories/unreviewed/2025/02/GHSA-phh8-qcpx-2xhf/GHSA-phh8-qcpx-2xhf.json create mode 100644 advisories/unreviewed/2025/02/GHSA-pvvp-cjfg-4jv4/GHSA-pvvp-cjfg-4jv4.json create mode 100644 advisories/unreviewed/2025/02/GHSA-qg4v-q6r4-gqhg/GHSA-qg4v-q6r4-gqhg.json create mode 100644 advisories/unreviewed/2025/02/GHSA-qg5c-v9j4-c7gw/GHSA-qg5c-v9j4-c7gw.json create mode 100644 advisories/unreviewed/2025/02/GHSA-qvrx-p9gg-46f8/GHSA-qvrx-p9gg-46f8.json create mode 100644 advisories/unreviewed/2025/02/GHSA-r3fr-hgwv-7g68/GHSA-r3fr-hgwv-7g68.json create mode 100644 advisories/unreviewed/2025/02/GHSA-rcq4-h567-5923/GHSA-rcq4-h567-5923.json create mode 100644 advisories/unreviewed/2025/02/GHSA-rjrq-626c-q262/GHSA-rjrq-626c-q262.json create mode 100644 advisories/unreviewed/2025/02/GHSA-vjxw-jj99-5xw3/GHSA-vjxw-jj99-5xw3.json create mode 100644 advisories/unreviewed/2025/02/GHSA-x855-4m6r-jwmr/GHSA-x855-4m6r-jwmr.json create mode 100644 advisories/unreviewed/2025/02/GHSA-xjpw-qmp3-4x22/GHSA-xjpw-qmp3-4x22.json create mode 100644 advisories/unreviewed/2025/02/GHSA-xp8w-5r26-q5qh/GHSA-xp8w-5r26-q5qh.json diff --git a/advisories/unreviewed/2025/02/GHSA-2x4h-9pj5-8p4x/GHSA-2x4h-9pj5-8p4x.json b/advisories/unreviewed/2025/02/GHSA-2x4h-9pj5-8p4x/GHSA-2x4h-9pj5-8p4x.json new file mode 100644 index 00000000000..c74e6bcdcaa --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-2x4h-9pj5-8p4x/GHSA-2x4h-9pj5-8p4x.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2x4h-9pj5-8p4x", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34403" + ], + "details": "Mercedes-Benz head-unit NTG6 has Ethernet pins on Base Board to connect module CSB. Attacker can connect to this pins and get access to internal network. A race condition can be acquired and attacker can spoof “UserData” with desirable file path and access it though backup on USB.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34403" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-37rg-82p6-6g3x/GHSA-37rg-82p6-6g3x.json b/advisories/unreviewed/2025/02/GHSA-37rg-82p6-6g3x/GHSA-37rg-82p6-6g3x.json new file mode 100644 index 00000000000..24042db85a1 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-37rg-82p6-6g3x/GHSA-37rg-82p6-6g3x.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-37rg-82p6-6g3x", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-37603" + ], + "details": "An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user data import/export function of NTG 6 head units. To perform this attack, local access to the USB interface of the car is needed. With prepared data, an attacker can cause the User-Data service to fail. The failed service instance will restart automatically.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37603" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-3cr7-mfmj-jrxj/GHSA-3cr7-mfmj-jrxj.json b/advisories/unreviewed/2025/02/GHSA-3cr7-mfmj-jrxj/GHSA-3cr7-mfmj-jrxj.json new file mode 100644 index 00000000000..4c5d57d2763 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-3cr7-mfmj-jrxj/GHSA-3cr7-mfmj-jrxj.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3cr7-mfmj-jrxj", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-54951" + ], + "details": "Monica 4.1.2 is vulnerable to Cross Site Scripting (XSS). A malicious user can create a malformed contact and use that contact in the \"HOW YOU MET\" customization options to trigger the XSS.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-54951" + }, + { + "type": "WEB", + "url": "https://github.com/Allevon412/Monica-Stored-XSS-Vulnerability" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-4f7j-px6v-m38x/GHSA-4f7j-px6v-m38x.json b/advisories/unreviewed/2025/02/GHSA-4f7j-px6v-m38x/GHSA-4f7j-px6v-m38x.json new file mode 100644 index 00000000000..9c1b9fcadd2 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-4f7j-px6v-m38x/GHSA-4f7j-px6v-m38x.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4f7j-px6v-m38x", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-57378" + ], + "details": "Wazuh SIEM version 4.8.2 is affected by a broken access control vulnerability. This issue allows the unauthorized creation of internal users without assigning any existing user role, potentially leading to privilege escalation or unauthorized access to sensitive resources.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57378" + }, + { + "type": "WEB", + "url": "https://github.com/bappe-sarker/Vulnerability-Research/tree/main/CVE-2024-57378" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-4h5r-r8cj-6rj3/GHSA-4h5r-r8cj-6rj3.json b/advisories/unreviewed/2025/02/GHSA-4h5r-r8cj-6rj3/GHSA-4h5r-r8cj-6rj3.json new file mode 100644 index 00000000000..59a1984c149 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-4h5r-r8cj-6rj3/GHSA-4h5r-r8cj-6rj3.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4h5r-r8cj-6rj3", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-37600" + ], + "details": "An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible stack buffer overflow in the Service Broker service affects NTG 6 head units. To perform this attack, physical access to Ethernet pins of the head unit base board is needed. With a static IP address, an attacker can connect via the internal network to the Service Broker service. With prepared HTTP requests, an attacker can cause the Service-Broker service to fail.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37600" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-5p75-8vmp-h6xw/GHSA-5p75-8vmp-h6xw.json b/advisories/unreviewed/2025/02/GHSA-5p75-8vmp-h6xw/GHSA-5p75-8vmp-h6xw.json new file mode 100644 index 00000000000..3bd8d970909 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-5p75-8vmp-h6xw/GHSA-5p75-8vmp-h6xw.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5p75-8vmp-h6xw", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:45Z", + "aliases": [ + "CVE-2024-57782" + ], + "details": "An issue in Docker-proxy v18.09.0 allows attackers to cause a denial of service.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-57782" + }, + { + "type": "WEB", + "url": "https://github.com/tzzhang123456/test123/issues/2" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-5p7x-h37p-q967/GHSA-5p7x-h37p-q967.json b/advisories/unreviewed/2025/02/GHSA-5p7x-h37p-q967/GHSA-5p7x-h37p-q967.json new file mode 100644 index 00000000000..801062c9fff --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-5p7x-h37p-q967/GHSA-5p7x-h37p-q967.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5p7x-h37p-q967", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34399" + ], + "details": "Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Some values of this table are serialized archive according boost library. The version of boost library contains vulnerability integer overflow.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34399" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-5vm2-873v-mw7w/GHSA-5vm2-873v-mw7w.json b/advisories/unreviewed/2025/02/GHSA-5vm2-873v-mw7w/GHSA-5vm2-873v-mw7w.json new file mode 100644 index 00000000000..8802e558e2f --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-5vm2-873v-mw7w/GHSA-5vm2-873v-mw7w.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5vm2-873v-mw7w", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-24865" + ], + "details": "The administrative web interface of \nmySCADA myPRO Manager\n\ncan be accessed without authentication \nwhich could allow an unauthorized attacker to retrieve sensitive \ninformation and upload files without the associated password.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24865" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-16" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/contacts" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/downloads/mySCADAPROManager" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-306" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-72w4-wjvh-293c/GHSA-72w4-wjvh-293c.json b/advisories/unreviewed/2025/02/GHSA-72w4-wjvh-293c/GHSA-72w4-wjvh-293c.json new file mode 100644 index 00000000000..4567b5e8e35 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-72w4-wjvh-293c/GHSA-72w4-wjvh-293c.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-72w4-wjvh-293c", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-22896" + ], + "details": "mySCADA myPRO Manager\n\n\nstores credentials in cleartext, which could allow an attacker to obtain sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-22896" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-16" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/contacts" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/downloads/mySCADAPROManager" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-312" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-7c29-93mg-22jf/GHSA-7c29-93mg-22jf.json b/advisories/unreviewed/2025/02/GHSA-7c29-93mg-22jf/GHSA-7c29-93mg-22jf.json new file mode 100644 index 00000000000..3d10e67f076 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-7c29-93mg-22jf/GHSA-7c29-93mg-22jf.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7c29-93mg-22jf", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-53310" + ], + "details": "A Structured Exception Handler based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when a specially crafted file is passed to the -ff parameter. The vulnerability occurs due to improper handling of file input with overly long characters, leading to memory corruption. This can result in arbitrary code execution or denial of service.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53310" + }, + { + "type": "WEB", + "url": "https://github.com/ufist/vulnerability-research/blob/main/CVE-2024-53310/CVE-2024-53310.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-7pxw-57qc-2vjm/GHSA-7pxw-57qc-2vjm.json b/advisories/unreviewed/2025/02/GHSA-7pxw-57qc-2vjm/GHSA-7pxw-57qc-2vjm.json new file mode 100644 index 00000000000..418ebdd640c --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-7pxw-57qc-2vjm/GHSA-7pxw-57qc-2vjm.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7pxw-57qc-2vjm", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:45Z", + "aliases": [ + "CVE-2025-22960" + ], + "details": "A session hijacking vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters. Unauthenticated attackers can access exposed log files (/logs/debug/xteLog*), potentially revealing sensitive session-related information such as session IDs (sess_id) and authentication success tokens (user_check_password OK). Exploiting this flaw could allow attackers to hijack active sessions, gain unauthorized access, and escalate privileges on affected devices.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-22960" + }, + { + "type": "WEB", + "url": "https://github.com/shiky8/my--cve-vulnerability-research/tree/main/CVE-2025-22960" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-c442-c8m7-hp5v/GHSA-c442-c8m7-hp5v.json b/advisories/unreviewed/2025/02/GHSA-c442-c8m7-hp5v/GHSA-c442-c8m7-hp5v.json new file mode 100644 index 00000000000..c7be905871e --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-c442-c8m7-hp5v/GHSA-c442-c8m7-hp5v.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c442-c8m7-hp5v", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-53309" + ], + "details": "A stack-based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when an overly long string is passed to the \"-f\" parameter. This can lead to memory corruption, potentially allowing arbitrary code execution or causing a denial of service via specially crafted input.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53309" + }, + { + "type": "WEB", + "url": "https://github.com/ufist/vulnerability-research/blob/main/CVE-2024-53309/CVE-2024-53309.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-f5x3-46hh-69h6/GHSA-f5x3-46hh-69h6.json b/advisories/unreviewed/2025/02/GHSA-f5x3-46hh-69h6/GHSA-f5x3-46hh-69h6.json new file mode 100644 index 00000000000..d70ac740d21 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-f5x3-46hh-69h6/GHSA-f5x3-46hh-69h6.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f5x3-46hh-69h6", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34400" + ], + "details": "Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. In case of parsing file, service try to define header inside the file and convert it to null-terminated string. If character is missed, will return null pointer.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34400" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-fc4h-jq3v-6rrg/GHSA-fc4h-jq3v-6rrg.json b/advisories/unreviewed/2025/02/GHSA-fc4h-jq3v-6rrg/GHSA-fc4h-jq3v-6rrg.json new file mode 100644 index 00000000000..35dd3f64f6a --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-fc4h-jq3v-6rrg/GHSA-fc4h-jq3v-6rrg.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fc4h-jq3v-6rrg", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34406" + ], + "details": "An issue was discovered on Mercedes Benz NTG 6. A possible integer overflow exists in the user data import/export function of NTG (New Telematics Generation) 6 head units. To perform this attack, local access to USB interface of the car is needed. With prepared data, an attacker can cause the User-Data service to fail. The failed service instance will restart automatically.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34406" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-fp9p-7hx8-xfp3/GHSA-fp9p-7hx8-xfp3.json b/advisories/unreviewed/2025/02/GHSA-fp9p-7hx8-xfp3/GHSA-fp9p-7hx8-xfp3.json index 5d76bdd71a7..eba94d9541b 100644 --- a/advisories/unreviewed/2025/02/GHSA-fp9p-7hx8-xfp3/GHSA-fp9p-7hx8-xfp3.json +++ b/advisories/unreviewed/2025/02/GHSA-fp9p-7hx8-xfp3/GHSA-fp9p-7hx8-xfp3.json @@ -1,13 +1,18 @@ { "schema_version": "1.4.0", "id": "GHSA-fp9p-7hx8-xfp3", - "modified": "2025-02-07T15:32:38Z", + "modified": "2025-02-14T00:30:44Z", "published": "2025-02-07T15:32:38Z", "aliases": [ "CVE-2025-25069" ], "details": "A Cross-Protocol Scripting vulnerability is found in Apache Kvrocks.\n\nSince Kvrocks didn't detect if \"Host:\" or \"POST\" appears in RESP requests,\na valid HTTP request can also be sent to Kvrocks as a valid RESP request \nand trigger some database operations, which can be dangerous when \nit is chained with SSRF.\n\nIt is similiar to CVE-2016-10517 in Redis.\n\nThis issue affects Apache Kvrocks: from the initial version to the latest version 2.11.0.\n\nUsers are recommended to upgrade to version 2.11.1, which fixes the issue.", - "severity": [], + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" + } + ], "affected": [], "references": [ { @@ -27,7 +32,7 @@ "cwe_ids": [ "CWE-115" ], - "severity": null, + "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2025-02-07T13:15:32Z" diff --git a/advisories/unreviewed/2025/02/GHSA-gccq-88r2-w9m4/GHSA-gccq-88r2-w9m4.json b/advisories/unreviewed/2025/02/GHSA-gccq-88r2-w9m4/GHSA-gccq-88r2-w9m4.json new file mode 100644 index 00000000000..63ec8989885 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-gccq-88r2-w9m4/GHSA-gccq-88r2-w9m4.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gccq-88r2-w9m4", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-1283" + ], + "details": "The Dingtian DT-R0 Series is vulnerable to an exploit that allows \nattackers to bypass login requirements by directly navigating to the \nmain page.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1283" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-18" + }, + { + "type": "WEB", + "url": "https://www.dingtian-tech.com/en_us/aboutus.html?tab=contact_us" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-288" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-gf6v-v2m7-4pr4/GHSA-gf6v-v2m7-4pr4.json b/advisories/unreviewed/2025/02/GHSA-gf6v-v2m7-4pr4/GHSA-gf6v-v2m7-4pr4.json new file mode 100644 index 00000000000..bf95853cdd5 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-gf6v-v2m7-4pr4/GHSA-gf6v-v2m7-4pr4.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gf6v-v2m7-4pr4", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-23421" + ], + "details": "An attacker could obtain firmware files and reverse engineer their \nintended use leading to loss of confidentiality and integrity of the \nhardware devices enabled by the Qardio iOS and Android applications.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23421" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-medical-advisories/icsma-25-044-01" + }, + { + "type": "WEB", + "url": "https://www.qardio.com/about-us/#contact" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-552" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-gfp3-9j64-8w7j/GHSA-gfp3-9j64-8w7j.json b/advisories/unreviewed/2025/02/GHSA-gfp3-9j64-8w7j/GHSA-gfp3-9j64-8w7j.json new file mode 100644 index 00000000000..c2317cefbd4 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-gfp3-9j64-8w7j/GHSA-gfp3-9j64-8w7j.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gfp3-9j64-8w7j", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-12054" + ], + "details": "ZF Roll Stability Support Plus (RSSPlus) \nis vulnerable to an authentication bypass vulnerability targeting \ndeterministic RSSPlus SecurityAccess service seeds, which may allow an \nattacker to remotely (proximal/adjacent with RF equipment or via pivot \nfrom J2497 telematics devices) call diagnostic functions intended for \nworkshop or repair scenarios. This can impact system availability, \npotentially degrading performance or erasing software, however the \nvehicle remains in a safe vehicle state.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:H/AT:P/PR:N/UI:P/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-12054" + }, + { + "type": "WEB", + "url": "https://nmfta.org/wp-content/media/2022/11/Actionable_Mitigations_Options_v9_DIST.pdf" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-021-03" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-305" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-gh3v-mv9p-hffw/GHSA-gh3v-mv9p-hffw.json b/advisories/unreviewed/2025/02/GHSA-gh3v-mv9p-hffw/GHSA-gh3v-mv9p-hffw.json new file mode 100644 index 00000000000..9c8630947da --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-gh3v-mv9p-hffw/GHSA-gh3v-mv9p-hffw.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gh3v-mv9p-hffw", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34401" + ], + "details": "Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside profile folder there is a file, which is encoded with proprietary UD2 codec. Due to missed size checks in the enapsulate file, attacker can achieve Out-of-Bound Read in heap memory.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34401" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:08Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-j98w-mw3j-r2fc/GHSA-j98w-mw3j-r2fc.json b/advisories/unreviewed/2025/02/GHSA-j98w-mw3j-r2fc/GHSA-j98w-mw3j-r2fc.json new file mode 100644 index 00000000000..abfd433c70a --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-j98w-mw3j-r2fc/GHSA-j98w-mw3j-r2fc.json @@ -0,0 +1,34 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j98w-mw3j-r2fc", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-37602" + ], + "details": "An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible NULL pointer dereference in the Apple Car Play function affects NTG 6 head units. To perform this attack, physical access to Ethernet pins of the head unit base board is needed. With a static IP address, an attacker can connect via the internal network to the AirTunes / AirPlay service. With prepared HTTP requests, an attacker can cause the Car Play service to fail.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37602" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-jggw-p92x-6h2m/GHSA-jggw-p92x-6h2m.json b/advisories/unreviewed/2025/02/GHSA-jggw-p92x-6h2m/GHSA-jggw-p92x-6h2m.json new file mode 100644 index 00000000000..05997ab1208 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-jggw-p92x-6h2m/GHSA-jggw-p92x-6h2m.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jggw-p92x-6h2m", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34397" + ], + "details": "Mercedes Benz head-unit NTG 6 contains functions to import or export profile settings over USB. During parsing you can trigger that the service will be crashed.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34397" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-jrq6-48vf-qc9h/GHSA-jrq6-48vf-qc9h.json b/advisories/unreviewed/2025/02/GHSA-jrq6-48vf-qc9h/GHSA-jrq6-48vf-qc9h.json new file mode 100644 index 00000000000..62507436c39 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-jrq6-48vf-qc9h/GHSA-jrq6-48vf-qc9h.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jrq6-48vf-qc9h", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:45Z", + "aliases": [ + "CVE-2025-22961" + ], + "details": "A critical information disclosure vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters due to Incorrect Access Control (CWE-284). Unauthenticated attackers can directly access sensitive database backup files (snapshot_users.db) via publicly exposed URLs (/logs/devcfg/snapshot/ and /logs/devcfg/user/). Exploiting this vulnerability allows retrieval of sensitive user data, including login credentials, potentially leading to full system compromise.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-22961" + }, + { + "type": "WEB", + "url": "https://github.com/shiky8/my--cve-vulnerability-research/tree/main/CVE-2025-22961" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json b/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json index 68fef06c739..8b8378b1459 100644 --- a/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json +++ b/advisories/unreviewed/2025/02/GHSA-mhw9-x46c-v6q4/GHSA-mhw9-x46c-v6q4.json @@ -1,7 +1,7 @@ { "schema_version": "1.4.0", "id": "GHSA-mhw9-x46c-v6q4", - "modified": "2025-02-13T15:31:25Z", + "modified": "2025-02-14T00:30:44Z", "published": "2025-02-13T15:31:25Z", "aliases": [ "CVE-2025-1094" @@ -19,6 +19,10 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-1094" }, + { + "type": "WEB", + "url": "https://lists.debian.org/debian-lts-announce/2025/02/msg00015.html" + }, { "type": "WEB", "url": "https://www.postgresql.org/support/security/CVE-2025-1094" diff --git a/advisories/unreviewed/2025/02/GHSA-mxw5-pq7x-p39x/GHSA-mxw5-pq7x-p39x.json b/advisories/unreviewed/2025/02/GHSA-mxw5-pq7x-p39x/GHSA-mxw5-pq7x-p39x.json new file mode 100644 index 00000000000..88c6af0fa7d --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-mxw5-pq7x-p39x/GHSA-mxw5-pq7x-p39x.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mxw5-pq7x-p39x", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-26473" + ], + "details": "The Mojave Inverter uses the GET method for sensitive information.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-26473" + }, + { + "type": "WEB", + "url": "https://old.outbackpower.com/about-outback/contact/contact-us" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-17" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-598" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-p8wr-gh54-63h2/GHSA-p8wr-gh54-63h2.json b/advisories/unreviewed/2025/02/GHSA-p8wr-gh54-63h2/GHSA-p8wr-gh54-63h2.json new file mode 100644 index 00000000000..094354893c5 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-p8wr-gh54-63h2/GHSA-p8wr-gh54-63h2.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p8wr-gh54-63h2", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-23411" + ], + "details": "mySCADA myPRO Manager\n is vulnerable to cross-site request forgery (CSRF), which could allow \nan attacker to obtain sensitive information. An attacker would need to \ntrick the victim in to visiting an attacker-controlled website.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-23411" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-16" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/contacts" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/downloads/mySCADAPROManager" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-352" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-phh8-qcpx-2xhf/GHSA-phh8-qcpx-2xhf.json b/advisories/unreviewed/2025/02/GHSA-phh8-qcpx-2xhf/GHSA-phh8-qcpx-2xhf.json new file mode 100644 index 00000000000..e09cc1bfd5d --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-phh8-qcpx-2xhf/GHSA-phh8-qcpx-2xhf.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-phh8-qcpx-2xhf", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34398" + ], + "details": "Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Some values of this table are serialized archive according boost library. The boost library contains a vulnerability/null pointer dereference.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34398" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-pvvp-cjfg-4jv4/GHSA-pvvp-cjfg-4jv4.json b/advisories/unreviewed/2025/02/GHSA-pvvp-cjfg-4jv4/GHSA-pvvp-cjfg-4jv4.json new file mode 100644 index 00000000000..d7d6d958794 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-pvvp-cjfg-4jv4/GHSA-pvvp-cjfg-4jv4.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pvvp-cjfg-4jv4", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-24836" + ], + "details": "With a specially crafted Python script, an attacker could send \ncontinuous startMeasurement commands over an unencrypted Bluetooth \nconnection to the affected device. This would prevent the device from \nconnecting to a clinician's app to take patient readings and ostensibly \nflood it with requests, resulting in a denial-of-service condition.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24836" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-medical-advisories/icsma-25-044-01" + }, + { + "type": "WEB", + "url": "https://www.qardio.com/about-us/#contact" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-248" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-qg4v-q6r4-gqhg/GHSA-qg4v-q6r4-gqhg.json b/advisories/unreviewed/2025/02/GHSA-qg4v-q6r4-gqhg/GHSA-qg4v-q6r4-gqhg.json new file mode 100644 index 00000000000..9d726ee1e34 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-qg4v-q6r4-gqhg/GHSA-qg4v-q6r4-gqhg.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qg4v-q6r4-gqhg", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-24861" + ], + "details": "An attacker may inject commands via specially-crafted post requests.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24861" + }, + { + "type": "WEB", + "url": "https://old.outbackpower.com/about-outback/contact/contact-us" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-17" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-qg5c-v9j4-c7gw/GHSA-qg5c-v9j4-c7gw.json b/advisories/unreviewed/2025/02/GHSA-qg5c-v9j4-c7gw/GHSA-qg5c-v9j4-c7gw.json new file mode 100644 index 00000000000..d9efa48c858 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-qg5c-v9j4-c7gw/GHSA-qg5c-v9j4-c7gw.json @@ -0,0 +1,44 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qg5c-v9j4-c7gw", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-25281" + ], + "details": "An attacker may modify the URL to discover sensitive information about the target network.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25281" + }, + { + "type": "WEB", + "url": "https://old.outbackpower.com/about-outback/contact/contact-us" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-17" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": "HIGH", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:13Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-qvrx-p9gg-46f8/GHSA-qvrx-p9gg-46f8.json b/advisories/unreviewed/2025/02/GHSA-qvrx-p9gg-46f8/GHSA-qvrx-p9gg-46f8.json new file mode 100644 index 00000000000..dab9a52f155 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-qvrx-p9gg-46f8/GHSA-qvrx-p9gg-46f8.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qvrx-p9gg-46f8", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:45Z", + "aliases": [ + "CVE-2024-56908" + ], + "details": "In Perfex Crm < 3.2.1, an authenticated attacker can send a crafted HTTP POST request to the affected upload_sales_file endpoint. By providing malicious input in the rel_id parameter, combined with improper input validation, the attacker can bypass restrictions and upload arbitrary files to directories of their choice, potentially leading to remote code execution or server compromise.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-56908" + }, + { + "type": "WEB", + "url": "https://gist.github.com/JuyLang/7406077e3e5e6b2ff35c80f1853e298f" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-r3fr-hgwv-7g68/GHSA-r3fr-hgwv-7g68.json b/advisories/unreviewed/2025/02/GHSA-r3fr-hgwv-7g68/GHSA-r3fr-hgwv-7g68.json new file mode 100644 index 00000000000..6f897f38016 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-r3fr-hgwv-7g68/GHSA-r3fr-hgwv-7g68.json @@ -0,0 +1,48 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-r3fr-hgwv-7g68", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-25067" + ], + "details": "mySCADA myPRO Manager\n \nis vulnerable to an OS command injection which could allow a remote attacker to execute arbitrary OS commands.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + }, + { + "type": "CVSS_V4", + "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-25067" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-25-044-16" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/contacts" + }, + { + "type": "WEB", + "url": "https://www.myscada.org/downloads/mySCADAPROManager" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": "CRITICAL", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:12Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-rcq4-h567-5923/GHSA-rcq4-h567-5923.json b/advisories/unreviewed/2025/02/GHSA-rcq4-h567-5923/GHSA-rcq4-h567-5923.json new file mode 100644 index 00000000000..7e572e5cdd4 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-rcq4-h567-5923/GHSA-rcq4-h567-5923.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rcq4-h567-5923", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34402" + ], + "details": "Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Inside file is encapsulate another file, which service will drop during processing. Due to missed checks, attacker can achieve Arbitrary File Write with service speech rights.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34402" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:09Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-rjrq-626c-q262/GHSA-rjrq-626c-q262.json b/advisories/unreviewed/2025/02/GHSA-rjrq-626c-q262/GHSA-rjrq-626c-q262.json new file mode 100644 index 00000000000..5b3ec3b155f --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-rjrq-626c-q262/GHSA-rjrq-626c-q262.json @@ -0,0 +1,40 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rjrq-626c-q262", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2025-20615" + ], + "details": "The Qardio Arm iOS application exposes sensitive data such as usernames \nand passwords in a plist file. This allows an attacker to log in to \nproduction-level development accounts and access an engineering backdoor\n in the application. The engineering backdoor allows the attacker to \nsend hex-based commands over a UI-based terminal.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L" + } + ], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-20615" + }, + { + "type": "WEB", + "url": "https://www.cisa.gov/news-events/ics-medical-advisories/icsma-25-044-01" + }, + { + "type": "WEB", + "url": "https://www.qardio.com/about-us/#contact" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-359" + ], + "severity": "MODERATE", + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T22:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-vjxw-jj99-5xw3/GHSA-vjxw-jj99-5xw3.json b/advisories/unreviewed/2025/02/GHSA-vjxw-jj99-5xw3/GHSA-vjxw-jj99-5xw3.json new file mode 100644 index 00000000000..5fc9410fb2d --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-vjxw-jj99-5xw3/GHSA-vjxw-jj99-5xw3.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vjxw-jj99-5xw3", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-37601" + ], + "details": "An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible heap buffer overflow exists in the user data import/export function of NTG 6 head units. To perform this attack, local access to the USB interface of the car is needed. With prepared data, an attacker can cause the User-Data service to fail. The failed service instance will restart automatically.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-37601" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-x855-4m6r-jwmr/GHSA-x855-4m6r-jwmr.json b/advisories/unreviewed/2025/02/GHSA-x855-4m6r-jwmr/GHSA-x855-4m6r-jwmr.json new file mode 100644 index 00000000000..01347b47125 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-x855-4m6r-jwmr/GHSA-x855-4m6r-jwmr.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x855-4m6r-jwmr", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:45Z", + "aliases": [ + "CVE-2025-22962" + ], + "details": "A critical remote code execution (RCE) vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters when debugging mode is enabled. An attacker with a valid session ID (sess_id) can send specially crafted POST requests to the /json endpoint, enabling arbitrary command execution on the underlying system. This vulnerability can lead to full system compromise, including unauthorized access, privilege escalation, and potentially full device takeover.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-22962" + }, + { + "type": "WEB", + "url": "https://github.com/shiky8/my--cve-vulnerability-research/tree/main/CVE-2025-22962" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:11Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-xjpw-qmp3-4x22/GHSA-xjpw-qmp3-4x22.json b/advisories/unreviewed/2025/02/GHSA-xjpw-qmp3-4x22/GHSA-xjpw-qmp3-4x22.json new file mode 100644 index 00000000000..e1993963752 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-xjpw-qmp3-4x22/GHSA-xjpw-qmp3-4x22.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xjpw-qmp3-4x22", + "modified": "2025-02-14T00:30:45Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2024-53311" + ], + "details": "A Stack buffer overflow in the arguments parameter in Immunity Inc. Immunity Debugger v1.85 allows attackers to execute arbitrary code via a crafted input that exceeds the buffer size.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-53311" + }, + { + "type": "WEB", + "url": "https://github.com/ufist/vulnerability-research/blob/main/CVE-2024-53311/CVE-2024-53311.md" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:10Z" + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2025/02/GHSA-xp8w-5r26-q5qh/GHSA-xp8w-5r26-q5qh.json b/advisories/unreviewed/2025/02/GHSA-xp8w-5r26-q5qh/GHSA-xp8w-5r26-q5qh.json new file mode 100644 index 00000000000..f20c1a59694 --- /dev/null +++ b/advisories/unreviewed/2025/02/GHSA-xp8w-5r26-q5qh/GHSA-xp8w-5r26-q5qh.json @@ -0,0 +1,29 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xp8w-5r26-q5qh", + "modified": "2025-02-14T00:30:44Z", + "published": "2025-02-14T00:30:44Z", + "aliases": [ + "CVE-2023-34404" + ], + "details": "Mercedes-Benz head-unit NTG6 has Ethernet pins on Base Board to connect module CSB. Attacker can connect to these pins and get access to internal network. As a result, by accessing a specific port an attacker can send call request to all registered services in router and achieve command injection vulnerability.", + "severity": [], + "affected": [], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34404" + }, + { + "type": "WEB", + "url": "https://securelist.com/mercedes-benz-head-unit-security-research/115218" + } + ], + "database_specific": { + "cwe_ids": [], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": "2025-02-13T23:15:09Z" + } +} \ No newline at end of file