mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-qmqc-m76c-pmrm",
|
||||
"modified": "2023-09-12T18:30:22Z",
|
||||
"modified": "2024-01-05T18:30:20Z",
|
||||
"published": "2023-09-12T18:30:22Z",
|
||||
"aliases": [
|
||||
"CVE-2023-38146"
|
||||
@@ -24,13 +24,17 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38146"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "http://packetstormsecurity.com/files/176391/Themebleed-Windows-11-Themes-Arbitrary-Code-Execution.html"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2023-09-12T17:15:17Z"
|
||||
|
||||
@@ -28,7 +28,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-269"
|
||||
],
|
||||
"severity": "LOW",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-25jp-v3h8-rhhg",
|
||||
"modified": "2023-12-29T15:30:36Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T15:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51378"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2cfj-r94q-xgfj",
|
||||
"modified": "2023-12-29T12:30:42Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T12:30:42Z",
|
||||
"aliases": [
|
||||
"CVE-2023-50881"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2gh4-q9qq-fc54",
|
||||
"modified": "2023-12-29T12:30:41Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T12:30:41Z",
|
||||
"aliases": [
|
||||
"CVE-2023-50901"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-398r-735q-g9wg",
|
||||
"modified": "2023-12-28T12:30:19Z",
|
||||
"modified": "2024-01-05T18:30:24Z",
|
||||
"published": "2023-12-28T12:30:19Z",
|
||||
"aliases": [
|
||||
"CVE-2023-50853"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3rp7-3qfg-r7f3",
|
||||
"modified": "2023-12-29T15:30:36Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T15:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51470"
|
||||
|
||||
@@ -25,6 +25,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://github.com/openssh/openssh-portable/commit/881d9c6af9da4257c69c327c4e2f1508b2fa754b"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240105-0005/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.debian.org/security/2023/dsa-5586"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-456m-rhjg-6cq3",
|
||||
"modified": "2023-12-28T12:30:19Z",
|
||||
"modified": "2024-01-05T18:30:24Z",
|
||||
"published": "2023-12-28T12:30:19Z",
|
||||
"aliases": [
|
||||
"CVE-2023-50849"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-5gfw-4p9h-vh8j",
|
||||
"modified": "2023-12-29T15:30:36Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T15:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51545"
|
||||
|
||||
@@ -33,6 +33,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://security.gentoo.org/glsa/202312-17"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240105-0005/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://vin01.github.io/piptagole/ssh/security/openssh/libssh/remote-code-execution/2023/12/20/openssh-proxycommand-libssh-rce.html"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-5rcq-25vc-g8qr",
|
||||
"modified": "2023-12-24T06:30:32Z",
|
||||
"modified": "2024-01-05T18:30:23Z",
|
||||
"published": "2023-12-24T06:30:32Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51765"
|
||||
],
|
||||
"details": "sendmail through at least 8.14.7 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitation technique to inject e-mail messages that appear to originate from the sendmail server, allowing bypass of an SPF protection mechanism. This occurs because sendmail supports <LF>.<CR><LF> but some other popular e-mail servers do not.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -81,9 +84,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-345"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2023-12-24T06:15:07Z"
|
||||
|
||||
@@ -25,6 +25,10 @@
|
||||
"type": "WEB",
|
||||
"url": "https://binarly.io/posts/finding_logofail_the_dangers_of_image_parsing_during_system_boot/index.html"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240105-0002/"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://www.insyde.com/security-pledge"
|
||||
|
||||
@@ -28,7 +28,7 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-843"
|
||||
],
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6hxc-6hfm-wgvq",
|
||||
"modified": "2023-12-29T15:30:37Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T15:30:37Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51468"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6p7c-wj96-hf8h",
|
||||
"modified": "2023-12-29T15:30:36Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T15:30:36Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51414"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6pvf-3c4h-qg2h",
|
||||
"modified": "2023-12-28T06:30:24Z",
|
||||
"modified": "2024-01-05T18:30:24Z",
|
||||
"published": "2023-12-28T06:30:24Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51006"
|
||||
],
|
||||
"details": "An issue in the openFile method of Chinese Perpetual Calendar v9.0.0 allows attackers to read any file via unspecified vectors.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -27,7 +30,7 @@
|
||||
"cwe_ids": [
|
||||
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2023-12-28T04:15:08Z"
|
||||
|
||||
@@ -1,14 +1,17 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6w7f-vrx5-q78q",
|
||||
"modified": "2023-12-28T15:30:19Z",
|
||||
"modified": "2024-01-05T18:30:24Z",
|
||||
"published": "2023-12-28T15:30:19Z",
|
||||
"aliases": [
|
||||
"CVE-2023-50470"
|
||||
],
|
||||
"details": "A cross-site scripting (XSS) vulnerability in the component admin_ Video.php of SeaCMS v12.8 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.",
|
||||
"severity": [
|
||||
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [
|
||||
|
||||
@@ -33,9 +36,9 @@
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [
|
||||
|
||||
"CWE-79"
|
||||
],
|
||||
"severity": null,
|
||||
"severity": "MODERATE",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
"nvd_published_at": "2023-12-28T15:15:07Z"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-87fm-wcxm-mcmx",
|
||||
"modified": "2023-12-12T18:31:31Z",
|
||||
"modified": "2024-01-05T18:30:21Z",
|
||||
"published": "2023-12-06T18:31:05Z",
|
||||
"aliases": [
|
||||
"CVE-2023-39538"
|
||||
@@ -24,6 +24,10 @@
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://9443417.fs1.hubspotusercontent-na1.net/hubfs/9443417/Security%20Advisories/AMI-SA-2023009.pdf"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://security.netapp.com/advisory/ntap-20240105-0003/"
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-8cp4-ffj7-48q5",
|
||||
"modified": "2023-12-29T15:30:37Z",
|
||||
"modified": "2024-01-05T18:30:25Z",
|
||||
"published": "2023-12-29T15:30:37Z",
|
||||
"aliases": [
|
||||
"CVE-2023-51527"
|
||||
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user