From c4f5a9885c2958db1c0aa4ecbcec2a130e24a647 Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Thu, 6 Jul 2023 18:15:58 +0000 Subject: [PATCH] Publish Advisories GHSA-g39q-f4rm-85x4 GHSA-fmrf-p77g-vv5c --- .../06/GHSA-g39q-f4rm-85x4/GHSA-g39q-f4rm-85x4.json | 12 ++---------- .../06/GHSA-fmrf-p77g-vv5c/GHSA-fmrf-p77g-vv5c.json | 4 ++-- 2 files changed, 4 insertions(+), 12 deletions(-) diff --git a/advisories/github-reviewed/2021/06/GHSA-g39q-f4rm-85x4/GHSA-g39q-f4rm-85x4.json b/advisories/github-reviewed/2021/06/GHSA-g39q-f4rm-85x4/GHSA-g39q-f4rm-85x4.json index cab767f0258..a89a84bcd1e 100644 --- a/advisories/github-reviewed/2021/06/GHSA-g39q-f4rm-85x4/GHSA-g39q-f4rm-85x4.json +++ b/advisories/github-reviewed/2021/06/GHSA-g39q-f4rm-85x4/GHSA-g39q-f4rm-85x4.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-g39q-f4rm-85x4", - "modified": "2021-03-29T22:37:23Z", + "modified": "2023-07-06T18:14:13Z", "published": "2021-06-08T20:10:37Z", "aliases": [ "CVE-2021-20682" ], "summary": "OS Command Injection in baserCMS", - "details": "baserCMS versions prior to 4.4.5 allows a remote attacker with an administrative privilege to execute arbitrary OS commands via unspecified vectors.", + "details": "baserCMS versions prior to 4.4.5 allows a remote attacker with an administrative privilege to execute arbitrary OS commands via upload of malicious plugins.", "severity": [ { "type": "CVSS_V3", @@ -44,17 +44,9 @@ "type": "WEB", "url": "https://basercms.net/security/JVN64869876" }, - { - "type": "WEB", - "url": "https://github.com/baserproject/basercms" - }, { "type": "WEB", "url": "https://jvn.jp/en/jp/JVN64869876/index.html" - }, - { - "type": "WEB", - "url": "https://packagist.org/packages/baserproject/basercms" } ], "database_specific": { diff --git a/advisories/github-reviewed/2023/06/GHSA-fmrf-p77g-vv5c/GHSA-fmrf-p77g-vv5c.json b/advisories/github-reviewed/2023/06/GHSA-fmrf-p77g-vv5c/GHSA-fmrf-p77g-vv5c.json index a4632fd2027..755b6520ac3 100644 --- a/advisories/github-reviewed/2023/06/GHSA-fmrf-p77g-vv5c/GHSA-fmrf-p77g-vv5c.json +++ b/advisories/github-reviewed/2023/06/GHSA-fmrf-p77g-vv5c/GHSA-fmrf-p77g-vv5c.json @@ -15,7 +15,7 @@ { "package": { "ecosystem": "Packagist", - "name": "mediawiki/core" + "name": "wikibase/wikibase" }, "ranges": [ { @@ -56,7 +56,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": "MODERATE", "github_reviewed": true,