From d443fbfc38745eec29192d8230b7ea40a2354dcc Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Sat, 30 Nov 2024 05:14:18 +0000 Subject: [PATCH] Advisory Database Sync --- .../11/GHSA-5m39-wx2q-mxg3/GHSA-5m39-wx2q-mxg3.json | 12 +++--------- .../02/GHSA-gp6m-fq6h-cjcx/GHSA-gp6m-fq6h-cjcx.json | 4 +--- .../02/GHSA-vjqc-g788-f378/GHSA-vjqc-g788-f378.json | 4 +--- .../05/GHSA-34rf-p3r3-58x2/GHSA-34rf-p3r3-58x2.json | 4 +--- .../05/GHSA-224p-qx2h-m4rg/GHSA-224p-qx2h-m4rg.json | 8 ++------ .../05/GHSA-238g-gfrw-fgmc/GHSA-238g-gfrw-fgmc.json | 8 ++------ .../05/GHSA-238q-w3p2-vw4m/GHSA-238q-w3p2-vw4m.json | 12 +++--------- .../05/GHSA-23hq-37gx-cxwv/GHSA-23hq-37gx-cxwv.json | 12 +++--------- .../05/GHSA-23rr-vcw7-54r8/GHSA-23rr-vcw7-54r8.json | 8 ++------ .../05/GHSA-23w4-f563-4m2j/GHSA-23w4-f563-4m2j.json | 8 ++------ .../05/GHSA-2497-vx3h-24wc/GHSA-2497-vx3h-24wc.json | 8 ++------ .../05/GHSA-2559-m273-3qpf/GHSA-2559-m273-3qpf.json | 8 ++------ .../05/GHSA-258v-fg67-95wv/GHSA-258v-fg67-95wv.json | 12 +++--------- .../05/GHSA-25x9-fv8f-q329/GHSA-25x9-fv8f-q329.json | 12 +++--------- .../05/GHSA-26m2-3jc9-5rqh/GHSA-26m2-3jc9-5rqh.json | 8 ++------ .../05/GHSA-26pq-368c-c8f2/GHSA-26pq-368c-c8f2.json | 12 +++--------- .../05/GHSA-272r-gvjr-j5qh/GHSA-272r-gvjr-j5qh.json | 8 ++------ .../05/GHSA-276f-9fcq-7wmm/GHSA-276f-9fcq-7wmm.json | 8 ++------ .../05/GHSA-28gp-x78c-fqxr/GHSA-28gp-x78c-fqxr.json | 12 +++--------- .../05/GHSA-2994-xw3p-6772/GHSA-2994-xw3p-6772.json | 12 +++--------- .../05/GHSA-29c2-6v7h-58vc/GHSA-29c2-6v7h-58vc.json | 12 +++--------- .../05/GHSA-29fm-9qqr-x2gp/GHSA-29fm-9qqr-x2gp.json | 8 ++------ .../05/GHSA-29vp-w2x5-2cg4/GHSA-29vp-w2x5-2cg4.json | 12 +++--------- .../05/GHSA-2c75-m9vm-4fvh/GHSA-2c75-m9vm-4fvh.json | 12 +++--------- .../05/GHSA-2cf6-2r36-79q7/GHSA-2cf6-2r36-79q7.json | 8 ++------ .../05/GHSA-2cm4-w9vc-vwpc/GHSA-2cm4-w9vc-vwpc.json | 12 +++--------- .../05/GHSA-2cr6-rmv6-pcfm/GHSA-2cr6-rmv6-pcfm.json | 8 ++------ .../05/GHSA-2cvv-9494-ghp3/GHSA-2cvv-9494-ghp3.json | 12 +++--------- .../05/GHSA-2fj8-grv4-35fw/GHSA-2fj8-grv4-35fw.json | 8 ++------ .../05/GHSA-2g68-q4wg-9q24/GHSA-2g68-q4wg-9q24.json | 8 ++------ .../05/GHSA-2gfm-xchp-vj2m/GHSA-2gfm-xchp-vj2m.json | 12 +++--------- .../05/GHSA-2hg5-gxv6-8v58/GHSA-2hg5-gxv6-8v58.json | 8 ++------ .../05/GHSA-2j7c-c562-m564/GHSA-2j7c-c562-m564.json | 12 +++--------- .../05/GHSA-2jh9-g527-93f7/GHSA-2jh9-g527-93f7.json | 8 ++------ .../05/GHSA-2jpr-j4c2-5fwj/GHSA-2jpr-j4c2-5fwj.json | 12 +++--------- .../05/GHSA-2mwx-fmf7-pp2w/GHSA-2mwx-fmf7-pp2w.json | 12 +++--------- .../05/GHSA-2p8x-vw9x-9qgc/GHSA-2p8x-vw9x-9qgc.json | 12 +++--------- .../05/GHSA-2pq6-j348-rpc3/GHSA-2pq6-j348-rpc3.json | 12 +++--------- .../05/GHSA-2pvr-f889-xjvm/GHSA-2pvr-f889-xjvm.json | 12 +++--------- .../05/GHSA-2q2j-p926-8hw7/GHSA-2q2j-p926-8hw7.json | 12 +++--------- .../05/GHSA-2q9p-89g6-mqmh/GHSA-2q9p-89g6-mqmh.json | 12 +++--------- .../05/GHSA-2qfc-qgpf-xjw4/GHSA-2qfc-qgpf-xjw4.json | 12 +++--------- .../05/GHSA-2qx4-67q8-fwg5/GHSA-2qx4-67q8-fwg5.json | 8 ++------ .../05/GHSA-2qx6-333j-9r92/GHSA-2qx6-333j-9r92.json | 12 +++--------- .../05/GHSA-2r58-h4xx-4q96/GHSA-2r58-h4xx-4q96.json | 12 +++--------- .../05/GHSA-2r5f-h84q-vwr7/GHSA-2r5f-h84q-vwr7.json | 8 ++------ .../05/GHSA-2rf3-297f-9pr5/GHSA-2rf3-297f-9pr5.json | 12 +++--------- .../05/GHSA-2vg2-f293-3rc8/GHSA-2vg2-f293-3rc8.json | 8 ++------ .../05/GHSA-2vpg-h3vh-6g5m/GHSA-2vpg-h3vh-6g5m.json | 12 +++--------- .../05/GHSA-2w7x-w5p4-w2mw/GHSA-2w7x-w5p4-w2mw.json | 12 +++--------- .../05/GHSA-2wc8-2hmm-w3qm/GHSA-2wc8-2hmm-w3qm.json | 12 +++--------- .../05/GHSA-2xjc-mxx3-gg7g/GHSA-2xjc-mxx3-gg7g.json | 12 +++--------- .../05/GHSA-2xwg-9gx4-w8wf/GHSA-2xwg-9gx4-w8wf.json | 12 +++--------- .../05/GHSA-33r9-rrvf-c2gq/GHSA-33r9-rrvf-c2gq.json | 8 ++------ .../05/GHSA-34qx-mf2g-mjc4/GHSA-34qx-mf2g-mjc4.json | 12 +++--------- .../05/GHSA-356m-64j5-84f5/GHSA-356m-64j5-84f5.json | 8 ++------ .../05/GHSA-36wv-rwmv-5hf6/GHSA-36wv-rwmv-5hf6.json | 8 ++------ .../05/GHSA-36x9-48hm-r28q/GHSA-36x9-48hm-r28q.json | 8 ++------ .../05/GHSA-36xg-989x-49mx/GHSA-36xg-989x-49mx.json | 12 +++--------- .../05/GHSA-37p7-4jpq-5264/GHSA-37p7-4jpq-5264.json | 4 +--- .../05/GHSA-37rh-7pvh-rmrm/GHSA-37rh-7pvh-rmrm.json | 12 +++--------- .../05/GHSA-37v6-6287-c89m/GHSA-37v6-6287-c89m.json | 12 +++--------- .../05/GHSA-37xx-h4m8-x8wx/GHSA-37xx-h4m8-x8wx.json | 12 +++--------- .../05/GHSA-382h-7ph3-qx8r/GHSA-382h-7ph3-qx8r.json | 12 +++--------- .../05/GHSA-386w-c86g-88qj/GHSA-386w-c86g-88qj.json | 12 +++--------- .../05/GHSA-38h8-4x5x-cvpr/GHSA-38h8-4x5x-cvpr.json | 12 +++--------- .../05/GHSA-393g-7274-4jmv/GHSA-393g-7274-4jmv.json | 8 ++------ .../05/GHSA-398j-37xh-xw92/GHSA-398j-37xh-xw92.json | 12 +++--------- .../05/GHSA-39jg-wq6f-28mg/GHSA-39jg-wq6f-28mg.json | 8 ++------ .../05/GHSA-3f93-cwjr-ppr2/GHSA-3f93-cwjr-ppr2.json | 8 ++------ .../05/GHSA-3ff3-mxr5-9gvx/GHSA-3ff3-mxr5-9gvx.json | 12 +++--------- .../05/GHSA-3gpf-pr7r-gxcf/GHSA-3gpf-pr7r-gxcf.json | 12 +++--------- .../05/GHSA-3gpq-7w2g-px9w/GHSA-3gpq-7w2g-px9w.json | 12 +++--------- .../05/GHSA-3gpq-hwqc-v65w/GHSA-3gpq-hwqc-v65w.json | 12 +++--------- .../05/GHSA-3hc7-7vjp-8x77/GHSA-3hc7-7vjp-8x77.json | 8 ++------ .../05/GHSA-3hf7-p43g-vpv6/GHSA-3hf7-p43g-vpv6.json | 8 ++------ .../05/GHSA-3hm8-6x9w-r3fc/GHSA-3hm8-6x9w-r3fc.json | 8 ++------ .../05/GHSA-3hmp-fwjp-mm5f/GHSA-3hmp-fwjp-mm5f.json | 12 +++--------- .../05/GHSA-3hqh-68mp-xqv8/GHSA-3hqh-68mp-xqv8.json | 12 +++--------- .../05/GHSA-3hqj-hr8p-jqxw/GHSA-3hqj-hr8p-jqxw.json | 12 +++--------- .../05/GHSA-3hvp-8gh4-hrx5/GHSA-3hvp-8gh4-hrx5.json | 8 ++------ .../05/GHSA-3j9h-5r8r-rrxc/GHSA-3j9h-5r8r-rrxc.json | 8 ++------ .../05/GHSA-3j9v-3vrm-w8c9/GHSA-3j9v-3vrm-w8c9.json | 12 +++--------- .../05/GHSA-3jm6-h886-j4v6/GHSA-3jm6-h886-j4v6.json | 12 +++--------- .../05/GHSA-3p7x-m58j-fm72/GHSA-3p7x-m58j-fm72.json | 8 ++------ .../05/GHSA-3ppf-x2gr-8g6c/GHSA-3ppf-x2gr-8g6c.json | 8 ++------ .../05/GHSA-3q79-gjf7-rwwf/GHSA-3q79-gjf7-rwwf.json | 4 +--- .../05/GHSA-3qgv-5387-gfm7/GHSA-3qgv-5387-gfm7.json | 12 +++--------- .../05/GHSA-3qqc-m294-6m8c/GHSA-3qqc-m294-6m8c.json | 8 ++------ .../05/GHSA-3qrq-p37g-j4wm/GHSA-3qrq-p37g-j4wm.json | 8 ++------ .../05/GHSA-3r2f-rpgw-83gm/GHSA-3r2f-rpgw-83gm.json | 8 ++------ .../05/GHSA-3rgh-h4g7-m8pg/GHSA-3rgh-h4g7-m8pg.json | 12 +++--------- .../05/GHSA-3rx8-r3v3-xqwp/GHSA-3rx8-r3v3-xqwp.json | 12 +++--------- .../05/GHSA-3vgq-f5jq-7ccr/GHSA-3vgq-f5jq-7ccr.json | 12 +++--------- .../05/GHSA-3vqc-jwrr-3r9x/GHSA-3vqc-jwrr-3r9x.json | 12 +++--------- .../05/GHSA-3x4v-r279-87fr/GHSA-3x4v-r279-87fr.json | 8 ++------ .../05/GHSA-3x73-wm98-jh2g/GHSA-3x73-wm98-jh2g.json | 4 +--- .../05/GHSA-3xhm-m5h8-87g4/GHSA-3xhm-m5h8-87g4.json | 12 +++--------- .../05/GHSA-3xv9-qrjx-w927/GHSA-3xv9-qrjx-w927.json | 12 +++--------- .../05/GHSA-3xwg-7j63-2p52/GHSA-3xwg-7j63-2p52.json | 8 ++------ .../05/GHSA-427g-prh3-hw73/GHSA-427g-prh3-hw73.json | 8 ++------ .../05/GHSA-435m-r226-x7g6/GHSA-435m-r226-x7g6.json | 12 +++--------- .../05/GHSA-43hq-r694-jwc5/GHSA-43hq-r694-jwc5.json | 12 +++--------- .../05/GHSA-4447-hm8w-ggf7/GHSA-4447-hm8w-ggf7.json | 12 +++--------- .../05/GHSA-4484-7jwf-xv44/GHSA-4484-7jwf-xv44.json | 8 ++------ .../05/GHSA-44g5-fc7x-362r/GHSA-44g5-fc7x-362r.json | 12 +++--------- .../05/GHSA-44gc-6277-jwf7/GHSA-44gc-6277-jwf7.json | 8 ++------ .../05/GHSA-45g3-4pmp-w6x8/GHSA-45g3-4pmp-w6x8.json | 8 ++------ .../05/GHSA-45mp-7qc4-gj8v/GHSA-45mp-7qc4-gj8v.json | 8 ++------ .../05/GHSA-45rp-8p4h-8m88/GHSA-45rp-8p4h-8m88.json | 12 +++--------- .../05/GHSA-47pc-9x9m-98jf/GHSA-47pc-9x9m-98jf.json | 12 +++--------- .../05/GHSA-48fh-jxxv-q7v2/GHSA-48fh-jxxv-q7v2.json | 12 +++--------- .../05/GHSA-48jg-h3cv-mqvx/GHSA-48jg-h3cv-mqvx.json | 8 ++------ .../05/GHSA-49wh-cm7q-9w2h/GHSA-49wh-cm7q-9w2h.json | 8 ++------ .../05/GHSA-4c48-9rfv-8pr3/GHSA-4c48-9rfv-8pr3.json | 12 +++--------- .../05/GHSA-4f9m-6h5h-cg9v/GHSA-4f9m-6h5h-cg9v.json | 8 ++------ .../05/GHSA-4ffv-m79h-6hx2/GHSA-4ffv-m79h-6hx2.json | 4 +--- .../05/GHSA-4ggm-wg4m-3xh4/GHSA-4ggm-wg4m-3xh4.json | 8 ++------ .../05/GHSA-4hg8-r88x-mfhr/GHSA-4hg8-r88x-mfhr.json | 12 +++--------- .../05/GHSA-4hrh-vvjg-rgq7/GHSA-4hrh-vvjg-rgq7.json | 12 +++--------- .../05/GHSA-4jp9-m29w-rpw2/GHSA-4jp9-m29w-rpw2.json | 12 +++--------- .../05/GHSA-4pcr-226x-2w24/GHSA-4pcr-226x-2w24.json | 8 ++------ .../05/GHSA-4pgp-8g6g-73ph/GHSA-4pgp-8g6g-73ph.json | 12 +++--------- .../05/GHSA-4qj7-wcgp-pm8p/GHSA-4qj7-wcgp-pm8p.json | 8 ++------ .../05/GHSA-4r45-8xjg-jc76/GHSA-4r45-8xjg-jc76.json | 12 +++--------- .../05/GHSA-4r85-f826-5xjq/GHSA-4r85-f826-5xjq.json | 12 +++--------- .../05/GHSA-4v48-xr3m-vm7m/GHSA-4v48-xr3m-vm7m.json | 12 +++--------- .../05/GHSA-4w6g-h3j2-26jm/GHSA-4w6g-h3j2-26jm.json | 4 +--- .../05/GHSA-4w6j-4552-w9j5/GHSA-4w6j-4552-w9j5.json | 8 ++------ .../05/GHSA-4wgw-2p35-h26h/GHSA-4wgw-2p35-h26h.json | 8 ++------ .../05/GHSA-4xc9-f69v-j9v2/GHSA-4xc9-f69v-j9v2.json | 12 +++--------- .../05/GHSA-4xg5-8jmg-478h/GHSA-4xg5-8jmg-478h.json | 12 +++--------- .../05/GHSA-4xrv-58cf-xvp6/GHSA-4xrv-58cf-xvp6.json | 8 ++------ .../05/GHSA-525v-wrc2-rphr/GHSA-525v-wrc2-rphr.json | 8 ++------ .../05/GHSA-532f-v327-35gw/GHSA-532f-v327-35gw.json | 8 ++------ .../05/GHSA-53mq-wgq9-jfmr/GHSA-53mq-wgq9-jfmr.json | 12 +++--------- .../05/GHSA-53wc-rjf9-39m4/GHSA-53wc-rjf9-39m4.json | 12 +++--------- .../05/GHSA-558h-x2r7-g672/GHSA-558h-x2r7-g672.json | 12 +++--------- .../05/GHSA-559v-8mcf-64p4/GHSA-559v-8mcf-64p4.json | 8 ++------ .../05/GHSA-55c3-9jf6-5qj5/GHSA-55c3-9jf6-5qj5.json | 12 +++--------- .../05/GHSA-56w5-hc48-h3wh/GHSA-56w5-hc48-h3wh.json | 8 ++------ .../05/GHSA-57j6-qvj2-vmvh/GHSA-57j6-qvj2-vmvh.json | 8 ++------ .../05/GHSA-593c-jpx2-v8m8/GHSA-593c-jpx2-v8m8.json | 12 +++--------- .../05/GHSA-59gv-964c-3qmq/GHSA-59gv-964c-3qmq.json | 8 ++------ .../05/GHSA-5c3g-3pvm-q8fg/GHSA-5c3g-3pvm-q8fg.json | 12 +++--------- .../05/GHSA-5f33-7mw4-2v32/GHSA-5f33-7mw4-2v32.json | 8 ++------ .../05/GHSA-5f6w-rj6x-7j7v/GHSA-5f6w-rj6x-7j7v.json | 8 ++------ .../05/GHSA-5fhf-57v9-f9jw/GHSA-5fhf-57v9-f9jw.json | 12 +++--------- .../05/GHSA-5fwr-7h5m-9f6r/GHSA-5fwr-7h5m-9f6r.json | 12 +++--------- .../05/GHSA-5g4m-65cm-2rxf/GHSA-5g4m-65cm-2rxf.json | 12 +++--------- .../05/GHSA-5h28-cxmq-mh2v/GHSA-5h28-cxmq-mh2v.json | 12 +++--------- .../05/GHSA-5h5h-7rmg-7673/GHSA-5h5h-7rmg-7673.json | 8 ++------ .../05/GHSA-5h5m-pwcx-q38q/GHSA-5h5m-pwcx-q38q.json | 12 +++--------- .../05/GHSA-5hf2-99pm-7fmj/GHSA-5hf2-99pm-7fmj.json | 12 +++--------- .../05/GHSA-5hmc-p68x-m57g/GHSA-5hmc-p68x-m57g.json | 12 +++--------- .../05/GHSA-5pqg-5257-jmcm/GHSA-5pqg-5257-jmcm.json | 12 +++--------- .../05/GHSA-5prv-q7hh-r3fg/GHSA-5prv-q7hh-r3fg.json | 8 ++------ .../05/GHSA-5rh7-2q7c-5vfc/GHSA-5rh7-2q7c-5vfc.json | 12 +++--------- .../05/GHSA-5rw6-m95w-c453/GHSA-5rw6-m95w-c453.json | 12 +++--------- .../05/GHSA-5vxq-fv88-x9jq/GHSA-5vxq-fv88-x9jq.json | 4 +--- .../05/GHSA-5wc4-gq9m-293h/GHSA-5wc4-gq9m-293h.json | 8 ++------ .../05/GHSA-5x8r-x7fw-hf3f/GHSA-5x8r-x7fw-hf3f.json | 8 ++------ .../05/GHSA-5xpm-7p78-vq32/GHSA-5xpm-7p78-vq32.json | 12 +++--------- .../05/GHSA-62mx-73c7-569h/GHSA-62mx-73c7-569h.json | 12 +++--------- .../05/GHSA-6357-93rg-cf69/GHSA-6357-93rg-cf69.json | 8 ++------ .../05/GHSA-63g2-5r57-6pg5/GHSA-63g2-5r57-6pg5.json | 12 +++--------- .../05/GHSA-643c-phv3-fcvp/GHSA-643c-phv3-fcvp.json | 8 ++------ .../05/GHSA-6494-f9qh-94xm/GHSA-6494-f9qh-94xm.json | 12 +++--------- .../05/GHSA-64fh-7fr2-j79v/GHSA-64fh-7fr2-j79v.json | 8 ++------ .../05/GHSA-65qq-9m6q-q3fq/GHSA-65qq-9m6q-q3fq.json | 12 +++--------- .../05/GHSA-66vq-qwrh-g7rq/GHSA-66vq-qwrh-g7rq.json | 12 +++--------- .../05/GHSA-66wq-87xx-hhfp/GHSA-66wq-87xx-hhfp.json | 12 +++--------- .../05/GHSA-67pj-hwx8-33wx/GHSA-67pj-hwx8-33wx.json | 12 +++--------- .../05/GHSA-68f8-hhxj-3xpv/GHSA-68f8-hhxj-3xpv.json | 8 ++------ .../05/GHSA-696f-f5f3-q33x/GHSA-696f-f5f3-q33x.json | 12 +++--------- .../05/GHSA-69w3-h2gr-24wp/GHSA-69w3-h2gr-24wp.json | 12 +++--------- .../05/GHSA-6c37-r4j2-w535/GHSA-6c37-r4j2-w535.json | 12 +++--------- .../05/GHSA-6c5h-jqw8-74mm/GHSA-6c5h-jqw8-74mm.json | 8 ++------ .../05/GHSA-6f2h-j7xx-jhp4/GHSA-6f2h-j7xx-jhp4.json | 12 +++--------- .../05/GHSA-6ff7-4wcg-rwpj/GHSA-6ff7-4wcg-rwpj.json | 8 ++------ .../05/GHSA-6g46-qw9f-mgfx/GHSA-6g46-qw9f-mgfx.json | 12 +++--------- .../05/GHSA-6gcj-36mj-56q7/GHSA-6gcj-36mj-56q7.json | 12 +++--------- .../05/GHSA-6gx9-22p7-84wm/GHSA-6gx9-22p7-84wm.json | 12 +++--------- .../05/GHSA-6h4h-9xp4-x824/GHSA-6h4h-9xp4-x824.json | 8 ++------ .../05/GHSA-6h76-2q8f-58j3/GHSA-6h76-2q8f-58j3.json | 8 ++------ .../05/GHSA-6hgv-gw79-9vq8/GHSA-6hgv-gw79-9vq8.json | 12 +++--------- .../05/GHSA-6m3h-mqqv-9gfw/GHSA-6m3h-mqqv-9gfw.json | 12 +++--------- .../05/GHSA-6m53-44j7-5pr5/GHSA-6m53-44j7-5pr5.json | 12 +++--------- .../05/GHSA-6mvq-9mv3-ppcp/GHSA-6mvq-9mv3-ppcp.json | 12 +++--------- .../05/GHSA-6pgm-h8pf-fjp8/GHSA-6pgm-h8pf-fjp8.json | 12 +++--------- .../05/GHSA-6phc-wxq6-x6fq/GHSA-6phc-wxq6-x6fq.json | 12 +++--------- .../05/GHSA-6q4v-vwc9-rgq7/GHSA-6q4v-vwc9-rgq7.json | 8 ++------ .../05/GHSA-6q7m-895m-rg7r/GHSA-6q7m-895m-rg7r.json | 12 +++--------- .../05/GHSA-6rxj-p3gc-3ph9/GHSA-6rxj-p3gc-3ph9.json | 12 +++--------- .../05/GHSA-6vf6-5443-jww8/GHSA-6vf6-5443-jww8.json | 8 ++------ .../05/GHSA-6w2p-2q8v-8qwr/GHSA-6w2p-2q8v-8qwr.json | 12 +++--------- .../05/GHSA-6wr5-53rh-g7rp/GHSA-6wr5-53rh-g7rp.json | 12 +++--------- .../05/GHSA-6x5p-g335-gjh8/GHSA-6x5p-g335-gjh8.json | 12 +++--------- .../05/GHSA-6xw3-8926-pq6q/GHSA-6xw3-8926-pq6q.json | 8 ++------ .../05/GHSA-7274-38f2-76jh/GHSA-7274-38f2-76jh.json | 8 ++------ .../05/GHSA-728w-gxm6-g7c9/GHSA-728w-gxm6-g7c9.json | 8 ++------ .../05/GHSA-72jx-jp99-v43g/GHSA-72jx-jp99-v43g.json | 12 +++--------- .../05/GHSA-72m9-jj7r-733c/GHSA-72m9-jj7r-733c.json | 12 +++--------- .../05/GHSA-73g9-qv88-68pc/GHSA-73g9-qv88-68pc.json | 12 +++--------- .../05/GHSA-743v-wpcg-936m/GHSA-743v-wpcg-936m.json | 12 +++--------- .../05/GHSA-7457-3m24-88hm/GHSA-7457-3m24-88hm.json | 8 ++------ .../05/GHSA-748v-rhfv-4hm6/GHSA-748v-rhfv-4hm6.json | 8 ++------ .../05/GHSA-74hv-h455-w6jh/GHSA-74hv-h455-w6jh.json | 8 ++------ .../05/GHSA-74q8-53wm-xp5r/GHSA-74q8-53wm-xp5r.json | 12 +++--------- .../05/GHSA-753r-rggq-c233/GHSA-753r-rggq-c233.json | 4 +--- .../05/GHSA-7594-49mj-88xq/GHSA-7594-49mj-88xq.json | 12 +++--------- .../05/GHSA-75jh-p57m-93c3/GHSA-75jh-p57m-93c3.json | 8 ++------ .../05/GHSA-766j-mwxq-ccvg/GHSA-766j-mwxq-ccvg.json | 12 +++--------- .../05/GHSA-7749-gxmh-frwx/GHSA-7749-gxmh-frwx.json | 12 +++--------- .../05/GHSA-7783-6q32-p3qm/GHSA-7783-6q32-p3qm.json | 12 +++--------- .../05/GHSA-77g9-3552-f5x8/GHSA-77g9-3552-f5x8.json | 8 ++------ .../05/GHSA-77gg-j5r4-j69x/GHSA-77gg-j5r4-j69x.json | 12 +++--------- .../05/GHSA-78m6-w6r4-m4h9/GHSA-78m6-w6r4-m4h9.json | 8 ++------ .../05/GHSA-793w-7cp8-f4pv/GHSA-793w-7cp8-f4pv.json | 12 +++--------- .../05/GHSA-79x5-xjf7-4c3r/GHSA-79x5-xjf7-4c3r.json | 12 +++--------- .../05/GHSA-7chg-mxw7-5pfg/GHSA-7chg-mxw7-5pfg.json | 8 ++------ .../05/GHSA-7f69-xr47-93rv/GHSA-7f69-xr47-93rv.json | 12 +++--------- .../05/GHSA-7f86-m2vg-fqrm/GHSA-7f86-m2vg-fqrm.json | 12 +++--------- .../05/GHSA-7fw3-2wmp-j43f/GHSA-7fw3-2wmp-j43f.json | 8 ++------ .../05/GHSA-7hqj-44cw-26jp/GHSA-7hqj-44cw-26jp.json | 8 ++------ .../05/GHSA-7hxq-86wh-m635/GHSA-7hxq-86wh-m635.json | 12 +++--------- .../05/GHSA-7j43-94fh-rp62/GHSA-7j43-94fh-rp62.json | 12 +++--------- .../05/GHSA-7j6q-f3g4-6f5q/GHSA-7j6q-f3g4-6f5q.json | 12 +++--------- .../05/GHSA-7jpr-j96c-m9w5/GHSA-7jpr-j96c-m9w5.json | 12 +++--------- .../05/GHSA-7m39-hfcx-7qr8/GHSA-7m39-hfcx-7qr8.json | 8 ++------ .../05/GHSA-7m7x-m92r-43jp/GHSA-7m7x-m92r-43jp.json | 8 ++------ .../05/GHSA-7p54-g429-c636/GHSA-7p54-g429-c636.json | 8 ++------ .../05/GHSA-7p74-527p-2hvx/GHSA-7p74-527p-2hvx.json | 4 +--- .../05/GHSA-7p8m-54qp-xvw9/GHSA-7p8m-54qp-xvw9.json | 12 +++--------- .../05/GHSA-7pv5-vw9g-f4h3/GHSA-7pv5-vw9g-f4h3.json | 12 +++--------- .../05/GHSA-7q7g-mcjq-v4j2/GHSA-7q7g-mcjq-v4j2.json | 8 ++------ .../05/GHSA-7q9j-frg8-x6cj/GHSA-7q9j-frg8-x6cj.json | 12 +++--------- .../05/GHSA-7qfc-vhj9-xh7r/GHSA-7qfc-vhj9-xh7r.json | 12 +++--------- .../05/GHSA-7qhh-33jg-v65h/GHSA-7qhh-33jg-v65h.json | 12 +++--------- .../05/GHSA-7r23-jcc3-cfh9/GHSA-7r23-jcc3-cfh9.json | 12 +++--------- .../05/GHSA-7r69-2g79-crx9/GHSA-7r69-2g79-crx9.json | 4 +--- .../05/GHSA-7r6j-qg45-9hfg/GHSA-7r6j-qg45-9hfg.json | 8 ++------ .../05/GHSA-7rm9-99xc-rvx2/GHSA-7rm9-99xc-rvx2.json | 12 +++--------- .../05/GHSA-7rmh-fw46-g93m/GHSA-7rmh-fw46-g93m.json | 8 ++------ .../05/GHSA-7v97-mj9r-5295/GHSA-7v97-mj9r-5295.json | 12 +++--------- .../05/GHSA-7vjg-5rq8-r4h2/GHSA-7vjg-5rq8-r4h2.json | 12 +++--------- .../05/GHSA-7vxj-2hvq-f9vm/GHSA-7vxj-2hvq-f9vm.json | 8 ++------ .../05/GHSA-7w5p-v64v-c7f3/GHSA-7w5p-v64v-c7f3.json | 12 +++--------- .../05/GHSA-7wcm-whw7-vchw/GHSA-7wcm-whw7-vchw.json | 12 +++--------- .../05/GHSA-7wp5-ww4m-7xj4/GHSA-7wp5-ww4m-7xj4.json | 8 ++------ .../05/GHSA-7x2j-7gp6-7vr3/GHSA-7x2j-7gp6-7vr3.json | 12 +++--------- .../05/GHSA-7xmv-v7w4-r8jp/GHSA-7xmv-v7w4-r8jp.json | 12 +++--------- .../05/GHSA-7xwj-34vp-h4x6/GHSA-7xwj-34vp-h4x6.json | 8 ++------ .../05/GHSA-7xxr-7x99-jpj2/GHSA-7xxr-7x99-jpj2.json | 12 +++--------- .../05/GHSA-82c5-qhq8-v4g2/GHSA-82c5-qhq8-v4g2.json | 8 ++------ .../05/GHSA-82j7-7f93-vq2v/GHSA-82j7-7f93-vq2v.json | 8 ++------ .../05/GHSA-82qq-9xvx-p3p6/GHSA-82qq-9xvx-p3p6.json | 12 +++--------- .../05/GHSA-833x-wpp6-6wpv/GHSA-833x-wpp6-6wpv.json | 12 +++--------- .../05/GHSA-847p-f9h7-f5x2/GHSA-847p-f9h7-f5x2.json | 4 +--- .../05/GHSA-84fp-grpv-q4h6/GHSA-84fp-grpv-q4h6.json | 12 +++--------- .../05/GHSA-84j7-2334-6mf2/GHSA-84j7-2334-6mf2.json | 12 +++--------- .../05/GHSA-85p6-3vc2-6v3w/GHSA-85p6-3vc2-6v3w.json | 12 +++--------- .../05/GHSA-8662-6xfx-55gr/GHSA-8662-6xfx-55gr.json | 12 +++--------- .../05/GHSA-8699-hqh8-r4f6/GHSA-8699-hqh8-r4f6.json | 12 +++--------- .../05/GHSA-8729-gjh2-fh36/GHSA-8729-gjh2-fh36.json | 4 +--- .../05/GHSA-88pp-q949-9jc5/GHSA-88pp-q949-9jc5.json | 12 +++--------- .../05/GHSA-88r4-4c8p-j6xc/GHSA-88r4-4c8p-j6xc.json | 12 +++--------- .../05/GHSA-88vg-p93r-gj25/GHSA-88vg-p93r-gj25.json | 8 ++------ .../05/GHSA-896r-8722-x5fv/GHSA-896r-8722-x5fv.json | 8 ++------ .../05/GHSA-89rg-769g-xx78/GHSA-89rg-769g-xx78.json | 12 +++--------- .../05/GHSA-8c97-q6f3-r229/GHSA-8c97-q6f3-r229.json | 12 +++--------- .../05/GHSA-8cpp-46mq-hpm6/GHSA-8cpp-46mq-hpm6.json | 12 +++--------- .../05/GHSA-8crx-q2g6-rw8x/GHSA-8crx-q2g6-rw8x.json | 8 ++------ .../05/GHSA-8fp6-9gv8-pr92/GHSA-8fp6-9gv8-pr92.json | 12 +++--------- .../05/GHSA-8gwv-jfxv-7hwm/GHSA-8gwv-jfxv-7hwm.json | 12 +++--------- .../05/GHSA-8h68-wr7w-w8w5/GHSA-8h68-wr7w-w8w5.json | 8 ++------ .../05/GHSA-8h6w-5gpw-7wpv/GHSA-8h6w-5gpw-7wpv.json | 12 +++--------- .../05/GHSA-8h84-5994-37fp/GHSA-8h84-5994-37fp.json | 12 +++--------- .../05/GHSA-8hjw-x28q-9fwc/GHSA-8hjw-x28q-9fwc.json | 12 +++--------- .../05/GHSA-8j6p-p7q3-3j42/GHSA-8j6p-p7q3-3j42.json | 12 +++--------- .../05/GHSA-8jv5-qc9q-5qfw/GHSA-8jv5-qc9q-5qfw.json | 12 +++--------- .../05/GHSA-8jv9-7vm9-cfxp/GHSA-8jv9-7vm9-cfxp.json | 8 ++------ .../05/GHSA-8m7g-hpf2-794h/GHSA-8m7g-hpf2-794h.json | 12 +++--------- .../05/GHSA-8mx8-pf46-grr5/GHSA-8mx8-pf46-grr5.json | 12 +++--------- .../05/GHSA-8qxj-vfjg-82r9/GHSA-8qxj-vfjg-82r9.json | 12 +++--------- .../05/GHSA-8v3f-v4gp-j935/GHSA-8v3f-v4gp-j935.json | 12 +++--------- .../05/GHSA-8vg7-xp56-5rr9/GHSA-8vg7-xp56-5rr9.json | 12 +++--------- .../05/GHSA-8vqw-w4vr-w3mh/GHSA-8vqw-w4vr-w3mh.json | 8 ++------ .../05/GHSA-8whc-587x-j3fm/GHSA-8whc-587x-j3fm.json | 8 ++------ .../05/GHSA-8wj2-ghvj-7v5w/GHSA-8wj2-ghvj-7v5w.json | 8 ++------ .../05/GHSA-8wmr-2wmx-86gh/GHSA-8wmr-2wmx-86gh.json | 12 +++--------- .../05/GHSA-8wmw-62f4-gpg8/GHSA-8wmw-62f4-gpg8.json | 12 +++--------- .../05/GHSA-8x77-qfp7-p2c4/GHSA-8x77-qfp7-p2c4.json | 8 ++------ .../05/GHSA-8xvc-7hjc-8cjx/GHSA-8xvc-7hjc-8cjx.json | 12 +++--------- .../05/GHSA-92g8-wx97-r4qc/GHSA-92g8-wx97-r4qc.json | 12 +++--------- .../05/GHSA-92pr-mcw9-qp7f/GHSA-92pr-mcw9-qp7f.json | 12 +++--------- .../05/GHSA-92r2-5h8f-fq8v/GHSA-92r2-5h8f-fq8v.json | 8 ++------ .../05/GHSA-933j-4572-8942/GHSA-933j-4572-8942.json | 12 +++--------- .../05/GHSA-93cf-6ghg-2rqx/GHSA-93cf-6ghg-2rqx.json | 8 ++------ .../05/GHSA-9489-pvch-g6j2/GHSA-9489-pvch-g6j2.json | 12 +++--------- .../05/GHSA-94qp-2fqg-7mc4/GHSA-94qp-2fqg-7mc4.json | 12 +++--------- .../05/GHSA-95p2-vc5j-vqpr/GHSA-95p2-vc5j-vqpr.json | 12 +++--------- .../05/GHSA-95ww-2c3p-r7q9/GHSA-95ww-2c3p-r7q9.json | 12 +++--------- .../05/GHSA-966h-32p9-2vf9/GHSA-966h-32p9-2vf9.json | 12 +++--------- .../05/GHSA-9675-p6xc-j8m2/GHSA-9675-p6xc-j8m2.json | 8 ++------ .../05/GHSA-96f7-2fxq-m5hw/GHSA-96f7-2fxq-m5hw.json | 12 +++--------- .../05/GHSA-96fj-vjjr-c856/GHSA-96fj-vjjr-c856.json | 12 +++--------- .../05/GHSA-982p-c8jc-9m77/GHSA-982p-c8jc-9m77.json | 8 ++------ .../05/GHSA-98c2-ghx9-f255/GHSA-98c2-ghx9-f255.json | 12 +++--------- .../05/GHSA-98q3-vrjp-5w32/GHSA-98q3-vrjp-5w32.json | 12 +++--------- .../05/GHSA-9c26-qcv5-q5qj/GHSA-9c26-qcv5-q5qj.json | 4 +--- .../05/GHSA-9cg9-rjc6-6grx/GHSA-9cg9-rjc6-6grx.json | 12 +++--------- .../05/GHSA-9chx-6p2j-jc37/GHSA-9chx-6p2j-jc37.json | 12 +++--------- .../05/GHSA-9f4x-rfqp-3c2c/GHSA-9f4x-rfqp-3c2c.json | 12 +++--------- .../05/GHSA-9fch-jjp9-h24r/GHSA-9fch-jjp9-h24r.json | 12 +++--------- .../05/GHSA-9fcm-298r-cw5q/GHSA-9fcm-298r-cw5q.json | 8 ++------ .../05/GHSA-9fvv-9grc-57vf/GHSA-9fvv-9grc-57vf.json | 12 +++--------- .../05/GHSA-9fxf-v57m-8m42/GHSA-9fxf-v57m-8m42.json | 12 +++--------- .../05/GHSA-9g2q-qghv-228v/GHSA-9g2q-qghv-228v.json | 12 +++--------- .../05/GHSA-9gc7-f279-pcx9/GHSA-9gc7-f279-pcx9.json | 12 +++--------- .../05/GHSA-9gvg-4j2j-wggj/GHSA-9gvg-4j2j-wggj.json | 8 ++------ .../05/GHSA-9j69-wmhc-fw54/GHSA-9j69-wmhc-fw54.json | 12 +++--------- .../05/GHSA-9m2q-w2xh-85rg/GHSA-9m2q-w2xh-85rg.json | 8 ++------ .../05/GHSA-9m59-h736-2x4x/GHSA-9m59-h736-2x4x.json | 12 +++--------- .../05/GHSA-9mxr-mcvr-5xpm/GHSA-9mxr-mcvr-5xpm.json | 8 ++------ .../05/GHSA-9p68-6mvc-4wmq/GHSA-9p68-6mvc-4wmq.json | 12 +++--------- .../05/GHSA-9rc4-gv88-wc3p/GHSA-9rc4-gv88-wc3p.json | 12 +++--------- .../05/GHSA-9v5h-pjw2-wf2g/GHSA-9v5h-pjw2-wf2g.json | 12 +++--------- .../05/GHSA-9vq5-w755-p355/GHSA-9vq5-w755-p355.json | 12 +++--------- .../05/GHSA-9wm4-3c82-wjrj/GHSA-9wm4-3c82-wjrj.json | 12 +++--------- .../05/GHSA-9x3v-ffmx-px9p/GHSA-9x3v-ffmx-px9p.json | 12 +++--------- .../05/GHSA-9xx6-3c29-j6cq/GHSA-9xx6-3c29-j6cq.json | 8 ++------ .../05/GHSA-c299-g72j-qp3x/GHSA-c299-g72j-qp3x.json | 12 +++--------- .../05/GHSA-c29r-cv88-px4c/GHSA-c29r-cv88-px4c.json | 12 +++--------- .../05/GHSA-c32m-fr99-2m6g/GHSA-c32m-fr99-2m6g.json | 12 +++--------- .../05/GHSA-c34j-ggrv-8pmc/GHSA-c34j-ggrv-8pmc.json | 12 +++--------- .../05/GHSA-c35h-x7vf-692j/GHSA-c35h-x7vf-692j.json | 12 +++--------- .../05/GHSA-c3gc-583q-48mp/GHSA-c3gc-583q-48mp.json | 12 +++--------- .../05/GHSA-c3gm-x6qw-q5m2/GHSA-c3gm-x6qw-q5m2.json | 12 +++--------- .../05/GHSA-c3m9-hj59-xmqg/GHSA-c3m9-hj59-xmqg.json | 4 +--- .../05/GHSA-c3pw-ww68-wpx6/GHSA-c3pw-ww68-wpx6.json | 12 +++--------- .../05/GHSA-c489-5g62-xg74/GHSA-c489-5g62-xg74.json | 12 +++--------- .../05/GHSA-c562-9hpw-fvxf/GHSA-c562-9hpw-fvxf.json | 12 +++--------- .../05/GHSA-c58f-48r6-vx5g/GHSA-c58f-48r6-vx5g.json | 12 +++--------- .../05/GHSA-c5c4-6w52-p8qr/GHSA-c5c4-6w52-p8qr.json | 8 ++------ .../05/GHSA-c5px-3mxp-74qc/GHSA-c5px-3mxp-74qc.json | 8 ++------ .../05/GHSA-c6f6-vj36-33pw/GHSA-c6f6-vj36-33pw.json | 12 +++--------- .../05/GHSA-c87c-rr2w-6q25/GHSA-c87c-rr2w-6q25.json | 12 +++--------- .../05/GHSA-c9hr-c526-6qwv/GHSA-c9hr-c526-6qwv.json | 12 +++--------- .../05/GHSA-c9m3-j5h4-86f6/GHSA-c9m3-j5h4-86f6.json | 12 +++--------- .../05/GHSA-c9r3-gv8p-rgw3/GHSA-c9r3-gv8p-rgw3.json | 8 ++------ .../05/GHSA-cc88-8854-g7c9/GHSA-cc88-8854-g7c9.json | 8 ++------ .../05/GHSA-cc8x-chx9-c63q/GHSA-cc8x-chx9-c63q.json | 8 ++------ .../05/GHSA-cfgm-r5hj-fcvm/GHSA-cfgm-r5hj-fcvm.json | 12 +++--------- .../05/GHSA-cfv4-xm37-xr2x/GHSA-cfv4-xm37-xr2x.json | 12 +++--------- .../05/GHSA-cgf8-qhr6-x48v/GHSA-cgf8-qhr6-x48v.json | 12 +++--------- .../05/GHSA-cgh2-c9hv-93wq/GHSA-cgh2-c9hv-93wq.json | 12 +++--------- .../05/GHSA-ch37-cwrj-298v/GHSA-ch37-cwrj-298v.json | 12 +++--------- .../05/GHSA-chmh-442f-4pcf/GHSA-chmh-442f-4pcf.json | 12 +++--------- .../05/GHSA-chph-qcj7-xvv3/GHSA-chph-qcj7-xvv3.json | 12 +++--------- .../05/GHSA-chrc-r4w7-3466/GHSA-chrc-r4w7-3466.json | 12 +++--------- .../05/GHSA-chv3-wh4m-6472/GHSA-chv3-wh4m-6472.json | 12 +++--------- .../05/GHSA-chxv-69f7-52q5/GHSA-chxv-69f7-52q5.json | 8 ++------ .../05/GHSA-cj45-38rm-4m9v/GHSA-cj45-38rm-4m9v.json | 12 +++--------- .../05/GHSA-cm8v-9w86-5ghc/GHSA-cm8v-9w86-5ghc.json | 8 ++------ .../05/GHSA-cmqx-v5fp-4q84/GHSA-cmqx-v5fp-4q84.json | 12 +++--------- .../05/GHSA-cp96-2fvh-r4w7/GHSA-cp96-2fvh-r4w7.json | 12 +++--------- .../05/GHSA-cpc6-5qf8-hhvm/GHSA-cpc6-5qf8-hhvm.json | 12 +++--------- .../05/GHSA-cpcj-vfc4-275c/GHSA-cpcj-vfc4-275c.json | 8 ++------ .../05/GHSA-cq39-vcf9-rvc3/GHSA-cq39-vcf9-rvc3.json | 8 ++------ .../05/GHSA-cq63-8c2h-hr39/GHSA-cq63-8c2h-hr39.json | 12 +++--------- .../05/GHSA-cr2w-jqc8-qg2m/GHSA-cr2w-jqc8-qg2m.json | 12 +++--------- .../05/GHSA-cr9c-2963-c5q4/GHSA-cr9c-2963-c5q4.json | 12 +++--------- .../05/GHSA-cvh7-x6f9-3prf/GHSA-cvh7-x6f9-3prf.json | 12 +++--------- .../05/GHSA-cvmj-92cp-78jp/GHSA-cvmj-92cp-78jp.json | 8 ++------ .../05/GHSA-cvr7-qvh5-7mf4/GHSA-cvr7-qvh5-7mf4.json | 8 ++------ .../05/GHSA-cw6v-cw82-9w42/GHSA-cw6v-cw82-9w42.json | 12 +++--------- .../05/GHSA-cx9h-v29m-9v3m/GHSA-cx9h-v29m-9v3m.json | 4 +--- .../05/GHSA-f29q-j8gp-v5cf/GHSA-f29q-j8gp-v5cf.json | 12 +++--------- .../05/GHSA-f2hh-4vrx-q5cr/GHSA-f2hh-4vrx-q5cr.json | 12 +++--------- .../05/GHSA-f2vm-j44x-g834/GHSA-f2vm-j44x-g834.json | 12 +++--------- .../05/GHSA-f32p-m7r9-7673/GHSA-f32p-m7r9-7673.json | 12 +++--------- .../05/GHSA-f32v-jjp6-79r8/GHSA-f32v-jjp6-79r8.json | 12 +++--------- .../05/GHSA-f3f3-54vp-g75j/GHSA-f3f3-54vp-g75j.json | 8 ++------ .../05/GHSA-f3wx-hx63-wcc9/GHSA-f3wx-hx63-wcc9.json | 12 +++--------- .../05/GHSA-f47h-66wf-9744/GHSA-f47h-66wf-9744.json | 12 +++--------- .../05/GHSA-f58x-5qwh-88r6/GHSA-f58x-5qwh-88r6.json | 8 ++------ .../05/GHSA-f5gf-q56v-jm9v/GHSA-f5gf-q56v-jm9v.json | 8 ++------ .../05/GHSA-f5jm-hr9c-q24w/GHSA-f5jm-hr9c-q24w.json | 8 ++------ .../05/GHSA-f63g-rv4q-jww3/GHSA-f63g-rv4q-jww3.json | 12 +++--------- .../05/GHSA-f6g8-3g2c-jqjv/GHSA-f6g8-3g2c-jqjv.json | 12 +++--------- .../05/GHSA-f72g-c5hf-789v/GHSA-f72g-c5hf-789v.json | 8 ++------ .../05/GHSA-f7r5-86hh-m6m6/GHSA-f7r5-86hh-m6m6.json | 12 +++--------- .../05/GHSA-f8fq-6vcv-7jfx/GHSA-f8fq-6vcv-7jfx.json | 12 +++--------- .../05/GHSA-f8v4-f26h-67pp/GHSA-f8v4-f26h-67pp.json | 12 +++--------- .../05/GHSA-f93f-vw5j-6gp4/GHSA-f93f-vw5j-6gp4.json | 12 +++--------- .../05/GHSA-f94w-7g7j-rhxj/GHSA-f94w-7g7j-rhxj.json | 12 +++--------- .../05/GHSA-f9gj-6q75-8x26/GHSA-f9gj-6q75-8x26.json | 12 +++--------- .../05/GHSA-fc33-2q9r-qr2m/GHSA-fc33-2q9r-qr2m.json | 8 ++------ .../05/GHSA-fcqh-xr5w-6g5j/GHSA-fcqh-xr5w-6g5j.json | 12 +++--------- .../05/GHSA-ffhm-887w-w24q/GHSA-ffhm-887w-w24q.json | 8 ++------ .../05/GHSA-fgc7-wwgh-9cv6/GHSA-fgc7-wwgh-9cv6.json | 12 +++--------- .../05/GHSA-fgcr-gvff-j4cq/GHSA-fgcr-gvff-j4cq.json | 4 +--- .../05/GHSA-fgrq-3xv7-3vjp/GHSA-fgrq-3xv7-3vjp.json | 12 +++--------- .../05/GHSA-fh36-32fh-3hhg/GHSA-fh36-32fh-3hhg.json | 8 ++------ .../05/GHSA-fhrq-2vr4-f65r/GHSA-fhrq-2vr4-f65r.json | 8 ++------ .../05/GHSA-fj4q-8g6c-prxj/GHSA-fj4q-8g6c-prxj.json | 8 ++------ .../05/GHSA-fj58-h7cr-69rm/GHSA-fj58-h7cr-69rm.json | 12 +++--------- .../05/GHSA-fj83-g2vh-2826/GHSA-fj83-g2vh-2826.json | 4 +--- .../05/GHSA-fm7r-9672-rc6x/GHSA-fm7r-9672-rc6x.json | 8 ++------ .../05/GHSA-fmp4-xp37-w9p6/GHSA-fmp4-xp37-w9p6.json | 8 ++------ .../05/GHSA-fmr8-2426-xq92/GHSA-fmr8-2426-xq92.json | 12 +++--------- .../05/GHSA-fp3h-699v-c963/GHSA-fp3h-699v-c963.json | 12 +++--------- .../05/GHSA-fp3p-xjcp-hc73/GHSA-fp3p-xjcp-hc73.json | 12 +++--------- .../05/GHSA-fp57-mj5p-6j64/GHSA-fp57-mj5p-6j64.json | 12 +++--------- .../05/GHSA-fpp2-mvm7-cp63/GHSA-fpp2-mvm7-cp63.json | 12 +++--------- .../05/GHSA-fpv8-6f33-vx39/GHSA-fpv8-6f33-vx39.json | 12 +++--------- .../05/GHSA-fq6w-7gv6-46p6/GHSA-fq6w-7gv6-46p6.json | 12 +++--------- .../05/GHSA-fqqf-x789-rf7j/GHSA-fqqf-x789-rf7j.json | 12 +++--------- .../05/GHSA-fv8h-xv4v-pjw3/GHSA-fv8h-xv4v-pjw3.json | 12 +++--------- .../05/GHSA-fvxj-gh8q-cx84/GHSA-fvxj-gh8q-cx84.json | 12 +++--------- .../05/GHSA-fx93-fff9-chjp/GHSA-fx93-fff9-chjp.json | 8 ++------ .../05/GHSA-g286-4pqc-c6jr/GHSA-g286-4pqc-c6jr.json | 12 +++--------- .../05/GHSA-g2wr-78c7-xc4v/GHSA-g2wr-78c7-xc4v.json | 12 +++--------- .../05/GHSA-g3r7-6q5w-hfwj/GHSA-g3r7-6q5w-hfwj.json | 12 +++--------- .../05/GHSA-g4fj-xm76-cfp9/GHSA-g4fj-xm76-cfp9.json | 12 +++--------- .../05/GHSA-g4px-p74v-q4c7/GHSA-g4px-p74v-q4c7.json | 8 ++------ .../05/GHSA-g4xj-7rjq-34rj/GHSA-g4xj-7rjq-34rj.json | 12 +++--------- .../05/GHSA-g536-3jmm-mp33/GHSA-g536-3jmm-mp33.json | 8 ++------ .../05/GHSA-g5f6-mfmg-v8r6/GHSA-g5f6-mfmg-v8r6.json | 12 +++--------- .../05/GHSA-g6cr-75pq-47x7/GHSA-g6cr-75pq-47x7.json | 8 ++------ .../05/GHSA-g727-r42p-657v/GHSA-g727-r42p-657v.json | 12 +++--------- .../05/GHSA-g826-6j4x-jwr3/GHSA-g826-6j4x-jwr3.json | 12 +++--------- .../05/GHSA-g845-m523-3rph/GHSA-g845-m523-3rph.json | 8 ++------ .../05/GHSA-g867-cwq9-53xf/GHSA-g867-cwq9-53xf.json | 12 +++--------- .../05/GHSA-g8c8-8m7v-7v94/GHSA-g8c8-8m7v-7v94.json | 12 +++--------- .../05/GHSA-g9xr-g64h-jcj5/GHSA-g9xr-g64h-jcj5.json | 12 +++--------- .../05/GHSA-gc8p-79hx-4cwf/GHSA-gc8p-79hx-4cwf.json | 8 ++------ .../05/GHSA-gcj6-2qxj-538j/GHSA-gcj6-2qxj-538j.json | 12 +++--------- .../05/GHSA-gf72-98fx-66p4/GHSA-gf72-98fx-66p4.json | 12 +++--------- .../05/GHSA-gg55-qc78-2v7c/GHSA-gg55-qc78-2v7c.json | 12 +++--------- .../05/GHSA-gjcx-h4r7-9cxf/GHSA-gjcx-h4r7-9cxf.json | 12 +++--------- .../05/GHSA-gjgx-pwcf-xm7m/GHSA-gjgx-pwcf-xm7m.json | 12 +++--------- .../05/GHSA-gm74-c2f7-gq8m/GHSA-gm74-c2f7-gq8m.json | 12 +++--------- .../05/GHSA-gmpx-6g79-f8x6/GHSA-gmpx-6g79-f8x6.json | 12 +++--------- .../05/GHSA-gmv6-rwfw-xmv3/GHSA-gmv6-rwfw-xmv3.json | 12 +++--------- .../05/GHSA-gp5h-cmjc-5gj4/GHSA-gp5h-cmjc-5gj4.json | 12 +++--------- .../05/GHSA-gqh2-5g96-mr4j/GHSA-gqh2-5g96-mr4j.json | 12 +++--------- .../05/GHSA-gqmj-9q6x-4fvg/GHSA-gqmj-9q6x-4fvg.json | 12 +++--------- .../05/GHSA-gqwc-r34r-fh6w/GHSA-gqwc-r34r-fh6w.json | 8 ++------ .../05/GHSA-gr3q-wjwp-679q/GHSA-gr3q-wjwp-679q.json | 12 +++--------- .../05/GHSA-gr5f-8229-9p9f/GHSA-gr5f-8229-9p9f.json | 12 +++--------- .../05/GHSA-gr73-xmrv-34fc/GHSA-gr73-xmrv-34fc.json | 8 ++------ .../05/GHSA-gv68-f32v-3whx/GHSA-gv68-f32v-3whx.json | 8 ++------ .../05/GHSA-gw5r-9g34-hfm9/GHSA-gw5r-9g34-hfm9.json | 8 ++------ .../05/GHSA-gwgr-jhxj-6vjp/GHSA-gwgr-jhxj-6vjp.json | 12 +++--------- .../05/GHSA-gxxf-959m-c3mf/GHSA-gxxf-959m-c3mf.json | 8 ++------ .../05/GHSA-h26r-h9wp-xxc4/GHSA-h26r-h9wp-xxc4.json | 12 +++--------- .../05/GHSA-h2jg-46xv-c74w/GHSA-h2jg-46xv-c74w.json | 8 ++------ .../05/GHSA-h2xq-vr96-r9x8/GHSA-h2xq-vr96-r9x8.json | 12 +++--------- .../05/GHSA-h3p2-qcgx-wvv3/GHSA-h3p2-qcgx-wvv3.json | 12 +++--------- .../05/GHSA-h49f-v2qm-5q9g/GHSA-h49f-v2qm-5q9g.json | 8 ++------ .../05/GHSA-h4c5-jq2c-gq8v/GHSA-h4c5-jq2c-gq8v.json | 12 +++--------- .../05/GHSA-h52p-pmhh-x2jv/GHSA-h52p-pmhh-x2jv.json | 8 ++------ .../05/GHSA-h5gx-r98q-mqhf/GHSA-h5gx-r98q-mqhf.json | 8 ++------ .../05/GHSA-h5pj-v47c-6vc7/GHSA-h5pj-v47c-6vc7.json | 8 ++------ .../05/GHSA-h5wv-8vv5-468v/GHSA-h5wv-8vv5-468v.json | 12 +++--------- .../05/GHSA-h7m7-3x9g-qr83/GHSA-h7m7-3x9g-qr83.json | 12 +++--------- .../05/GHSA-h87v-rxg9-34vh/GHSA-h87v-rxg9-34vh.json | 12 +++--------- .../05/GHSA-h8p4-p3hv-mq9r/GHSA-h8p4-p3hv-mq9r.json | 12 +++--------- .../05/GHSA-h963-mpc3-j9g4/GHSA-h963-mpc3-j9g4.json | 8 ++------ .../05/GHSA-h9mr-6gjh-qmfh/GHSA-h9mr-6gjh-qmfh.json | 12 +++--------- .../05/GHSA-hcmv-92qc-p4qp/GHSA-hcmv-92qc-p4qp.json | 8 ++------ .../05/GHSA-hcvp-gmj3-5g5v/GHSA-hcvp-gmj3-5g5v.json | 8 ++------ .../05/GHSA-hf8h-gvq7-6gfr/GHSA-hf8h-gvq7-6gfr.json | 8 ++------ .../05/GHSA-hfmp-whcv-gcmx/GHSA-hfmp-whcv-gcmx.json | 8 ++------ .../05/GHSA-hfq5-xp8f-5693/GHSA-hfq5-xp8f-5693.json | 12 +++--------- .../05/GHSA-hfqx-6rp7-wpxp/GHSA-hfqx-6rp7-wpxp.json | 12 +++--------- .../05/GHSA-hfwm-r6mv-837g/GHSA-hfwm-r6mv-837g.json | 12 +++--------- .../05/GHSA-hfxc-fp88-8x2r/GHSA-hfxc-fp88-8x2r.json | 12 +++--------- .../05/GHSA-hgfp-jcxr-8j6r/GHSA-hgfp-jcxr-8j6r.json | 8 ++------ .../05/GHSA-hgp2-6w9f-4925/GHSA-hgp2-6w9f-4925.json | 12 +++--------- .../05/GHSA-hp98-cm3f-c276/GHSA-hp98-cm3f-c276.json | 12 +++--------- .../05/GHSA-hpqv-2vqw-945v/GHSA-hpqv-2vqw-945v.json | 8 ++------ .../05/GHSA-hq57-jxvf-4pgp/GHSA-hq57-jxvf-4pgp.json | 12 +++--------- .../05/GHSA-hr4j-hq54-95c2/GHSA-hr4j-hq54-95c2.json | 12 +++--------- .../05/GHSA-hr62-vrqf-6473/GHSA-hr62-vrqf-6473.json | 12 +++--------- .../05/GHSA-hvq8-4qq3-c3ww/GHSA-hvq8-4qq3-c3ww.json | 8 ++------ .../05/GHSA-hvqv-hfgv-59r8/GHSA-hvqv-hfgv-59r8.json | 12 +++--------- .../05/GHSA-hw2f-4q5v-cv5j/GHSA-hw2f-4q5v-cv5j.json | 8 ++------ .../05/GHSA-hwhr-mg66-h8cp/GHSA-hwhr-mg66-h8cp.json | 8 ++------ .../05/GHSA-hwhx-rgrv-3pxv/GHSA-hwhx-rgrv-3pxv.json | 12 +++--------- .../05/GHSA-hxcj-gvxh-8944/GHSA-hxcj-gvxh-8944.json | 8 ++------ .../05/GHSA-hxhj-hfxc-68w7/GHSA-hxhj-hfxc-68w7.json | 12 +++--------- .../05/GHSA-hxxh-v8c4-ch22/GHSA-hxxh-v8c4-ch22.json | 8 ++------ .../05/GHSA-j2vq-5p2g-v95w/GHSA-j2vq-5p2g-v95w.json | 12 +++--------- .../05/GHSA-j37f-5pgj-pj76/GHSA-j37f-5pgj-pj76.json | 8 ++------ .../05/GHSA-j398-8rpx-rmjh/GHSA-j398-8rpx-rmjh.json | 12 +++--------- .../05/GHSA-j39q-gqrr-xv8m/GHSA-j39q-gqrr-xv8m.json | 8 ++------ .../05/GHSA-j3j3-95qf-wg27/GHSA-j3j3-95qf-wg27.json | 12 +++--------- .../05/GHSA-j437-r3p6-wvg8/GHSA-j437-r3p6-wvg8.json | 4 +--- .../05/GHSA-j5rr-f36w-34g4/GHSA-j5rr-f36w-34g4.json | 12 +++--------- .../05/GHSA-j665-w9jf-c86m/GHSA-j665-w9jf-c86m.json | 8 ++------ .../05/GHSA-j6qw-vjcv-x9q7/GHSA-j6qw-vjcv-x9q7.json | 12 +++--------- .../05/GHSA-j942-52ch-wgc2/GHSA-j942-52ch-wgc2.json | 12 +++--------- .../05/GHSA-j97x-5g7g-g282/GHSA-j97x-5g7g-g282.json | 8 ++------ .../05/GHSA-j9cq-w939-7xw9/GHSA-j9cq-w939-7xw9.json | 12 +++--------- .../05/GHSA-j9g4-rrpx-x359/GHSA-j9g4-rrpx-x359.json | 8 ++------ .../05/GHSA-jc4f-m57j-73wq/GHSA-jc4f-m57j-73wq.json | 12 +++--------- .../05/GHSA-jc4h-hq48-8gj3/GHSA-jc4h-hq48-8gj3.json | 8 ++------ .../05/GHSA-jf67-5p7g-mgxr/GHSA-jf67-5p7g-mgxr.json | 12 +++--------- .../05/GHSA-jfp8-v3xr-q53j/GHSA-jfp8-v3xr-q53j.json | 12 +++--------- .../05/GHSA-jfw8-prg7-m323/GHSA-jfw8-prg7-m323.json | 8 ++------ .../05/GHSA-jg22-m43p-phrm/GHSA-jg22-m43p-phrm.json | 12 +++--------- .../05/GHSA-jggm-qmcw-j5f5/GHSA-jggm-qmcw-j5f5.json | 8 ++------ .../05/GHSA-jgx6-27qx-3g2x/GHSA-jgx6-27qx-3g2x.json | 8 ++------ .../05/GHSA-jh8h-hqfp-q5vr/GHSA-jh8h-hqfp-q5vr.json | 12 +++--------- .../05/GHSA-jhmw-xx49-7mmh/GHSA-jhmw-xx49-7mmh.json | 8 ++------ .../05/GHSA-jjm6-fj35-q837/GHSA-jjm6-fj35-q837.json | 12 +++--------- .../05/GHSA-jjpf-92m2-j39j/GHSA-jjpf-92m2-j39j.json | 12 +++--------- .../05/GHSA-jjrf-288g-676p/GHSA-jjrf-288g-676p.json | 12 +++--------- .../05/GHSA-jmr8-f36w-9vrj/GHSA-jmr8-f36w-9vrj.json | 12 +++--------- .../05/GHSA-jmxx-qxgh-6x9h/GHSA-jmxx-qxgh-6x9h.json | 8 ++------ .../05/GHSA-jp2p-2cxv-rx5x/GHSA-jp2p-2cxv-rx5x.json | 8 ++------ .../05/GHSA-jp3v-r37m-m9mr/GHSA-jp3v-r37m-m9mr.json | 12 +++--------- .../05/GHSA-jp97-72pv-p2w5/GHSA-jp97-72pv-p2w5.json | 12 +++--------- .../05/GHSA-jp97-993h-745q/GHSA-jp97-993h-745q.json | 8 ++------ .../05/GHSA-jpqm-4942-9wpm/GHSA-jpqm-4942-9wpm.json | 8 ++------ .../05/GHSA-jpv5-mgqh-93xq/GHSA-jpv5-mgqh-93xq.json | 8 ++------ .../05/GHSA-jq7v-mxv6-22q4/GHSA-jq7v-mxv6-22q4.json | 12 +++--------- .../05/GHSA-jqh5-hr97-w296/GHSA-jqh5-hr97-w296.json | 12 +++--------- .../05/GHSA-jrrv-jm33-8jrv/GHSA-jrrv-jm33-8jrv.json | 4 +--- .../05/GHSA-jv4m-p277-gxhh/GHSA-jv4m-p277-gxhh.json | 12 +++--------- .../05/GHSA-jv95-4ggp-rvrw/GHSA-jv95-4ggp-rvrw.json | 8 ++------ .../05/GHSA-jx5c-5jv3-g74m/GHSA-jx5c-5jv3-g74m.json | 8 ++------ .../05/GHSA-jxmx-pcj9-cjqp/GHSA-jxmx-pcj9-cjqp.json | 8 ++------ .../05/GHSA-jxpw-84jr-qwfq/GHSA-jxpw-84jr-qwfq.json | 12 +++--------- .../05/GHSA-m29r-x48f-4j3v/GHSA-m29r-x48f-4j3v.json | 12 +++--------- .../05/GHSA-m2fg-q836-9pmq/GHSA-m2fg-q836-9pmq.json | 12 +++--------- .../05/GHSA-m2q7-g4c8-3vv4/GHSA-m2q7-g4c8-3vv4.json | 8 ++------ .../05/GHSA-m2qf-227g-2gg9/GHSA-m2qf-227g-2gg9.json | 12 +++--------- .../05/GHSA-m653-3pmm-jx6r/GHSA-m653-3pmm-jx6r.json | 12 +++--------- .../05/GHSA-m664-mxmw-5947/GHSA-m664-mxmw-5947.json | 4 +--- .../05/GHSA-m67q-p7gj-2wg9/GHSA-m67q-p7gj-2wg9.json | 4 +--- .../05/GHSA-m6hh-w9c6-33hv/GHSA-m6hh-w9c6-33hv.json | 12 +++--------- .../05/GHSA-m836-fc54-fwh5/GHSA-m836-fc54-fwh5.json | 8 ++------ .../05/GHSA-m87c-vwp5-ww6f/GHSA-m87c-vwp5-ww6f.json | 12 +++--------- .../05/GHSA-m952-67ch-qff2/GHSA-m952-67ch-qff2.json | 8 ++------ .../05/GHSA-m952-g76m-q58h/GHSA-m952-g76m-q58h.json | 8 ++------ .../05/GHSA-m9rp-c48m-987p/GHSA-m9rp-c48m-987p.json | 8 ++------ .../05/GHSA-m9vv-m3gv-47x8/GHSA-m9vv-m3gv-47x8.json | 8 ++------ .../05/GHSA-mfcq-xjjj-qpvg/GHSA-mfcq-xjjj-qpvg.json | 8 ++------ .../05/GHSA-mfgj-x2j8-2v9f/GHSA-mfgj-x2j8-2v9f.json | 12 +++--------- .../05/GHSA-mh2j-cpx3-ww24/GHSA-mh2j-cpx3-ww24.json | 12 +++--------- .../05/GHSA-mh98-9c79-r68x/GHSA-mh98-9c79-r68x.json | 12 +++--------- .../05/GHSA-mhfv-56w6-6vgg/GHSA-mhfv-56w6-6vgg.json | 12 +++--------- .../05/GHSA-mhv7-255x-9335/GHSA-mhv7-255x-9335.json | 12 +++--------- .../05/GHSA-mj2p-mqjh-gc8g/GHSA-mj2p-mqjh-gc8g.json | 12 +++--------- .../05/GHSA-mq36-cw38-g8hv/GHSA-mq36-cw38-g8hv.json | 12 +++--------- .../05/GHSA-mqg5-xjp9-584v/GHSA-mqg5-xjp9-584v.json | 12 +++--------- .../05/GHSA-mr85-wvjc-ppxp/GHSA-mr85-wvjc-ppxp.json | 12 +++--------- .../05/GHSA-mrvp-fj37-hr7c/GHSA-mrvp-fj37-hr7c.json | 12 +++--------- .../05/GHSA-mv4v-62vf-3p9h/GHSA-mv4v-62vf-3p9h.json | 8 ++------ .../05/GHSA-mvc3-rm7h-27g3/GHSA-mvc3-rm7h-27g3.json | 12 +++--------- .../05/GHSA-mvcx-ggh9-mwc6/GHSA-mvcx-ggh9-mwc6.json | 8 ++------ .../05/GHSA-mvf8-9rfx-399r/GHSA-mvf8-9rfx-399r.json | 12 +++--------- .../05/GHSA-mvx7-rq9v-559v/GHSA-mvx7-rq9v-559v.json | 8 ++------ .../05/GHSA-mwrf-3p8f-jpjf/GHSA-mwrf-3p8f-jpjf.json | 12 +++--------- .../05/GHSA-mwxf-5jx9-94w6/GHSA-mwxf-5jx9-94w6.json | 12 +++--------- .../05/GHSA-p255-pqjq-g73g/GHSA-p255-pqjq-g73g.json | 8 ++------ .../05/GHSA-p2fh-pcwg-6jc4/GHSA-p2fh-pcwg-6jc4.json | 12 +++--------- .../05/GHSA-p364-qwq2-fh4v/GHSA-p364-qwq2-fh4v.json | 12 +++--------- .../05/GHSA-p3jh-342h-w8hj/GHSA-p3jh-342h-w8hj.json | 8 ++------ .../05/GHSA-p4jj-572p-9492/GHSA-p4jj-572p-9492.json | 12 +++--------- .../05/GHSA-p4qx-pmxg-37rx/GHSA-p4qx-pmxg-37rx.json | 12 +++--------- .../05/GHSA-p4vc-pf7r-2vq9/GHSA-p4vc-pf7r-2vq9.json | 12 +++--------- .../05/GHSA-p556-2vf8-wg6x/GHSA-p556-2vf8-wg6x.json | 12 +++--------- .../05/GHSA-p6jp-3ccj-rmhh/GHSA-p6jp-3ccj-rmhh.json | 8 ++------ .../05/GHSA-p6mp-fch9-588r/GHSA-p6mp-fch9-588r.json | 8 ++------ .../05/GHSA-p755-fv54-jvjv/GHSA-p755-fv54-jvjv.json | 12 +++--------- .../05/GHSA-p7w3-xcqr-pr4r/GHSA-p7w3-xcqr-pr4r.json | 8 ++------ .../05/GHSA-p843-36j6-32cg/GHSA-p843-36j6-32cg.json | 8 ++------ .../05/GHSA-p94j-988p-299p/GHSA-p94j-988p-299p.json | 12 +++--------- .../05/GHSA-p9gx-q4r9-mm37/GHSA-p9gx-q4r9-mm37.json | 12 +++--------- .../05/GHSA-pc75-c72f-q2qg/GHSA-pc75-c72f-q2qg.json | 8 ++------ .../05/GHSA-pf9j-q5x3-c4pq/GHSA-pf9j-q5x3-c4pq.json | 12 +++--------- .../05/GHSA-pfcm-j5pc-4mx7/GHSA-pfcm-j5pc-4mx7.json | 8 ++------ .../05/GHSA-ph8h-gv7g-5q82/GHSA-ph8h-gv7g-5q82.json | 12 +++--------- .../05/GHSA-phwp-cpcf-rpx4/GHSA-phwp-cpcf-rpx4.json | 8 ++------ .../05/GHSA-pj3p-g86x-695g/GHSA-pj3p-g86x-695g.json | 12 +++--------- .../05/GHSA-pj42-h5q2-22w3/GHSA-pj42-h5q2-22w3.json | 12 +++--------- .../05/GHSA-pjfm-h5v6-8h69/GHSA-pjfm-h5v6-8h69.json | 12 +++--------- .../05/GHSA-pmff-8657-qj6f/GHSA-pmff-8657-qj6f.json | 12 +++--------- .../05/GHSA-pmgf-6f22-vx8p/GHSA-pmgf-6f22-vx8p.json | 12 +++--------- .../05/GHSA-pmj4-q5f6-462c/GHSA-pmj4-q5f6-462c.json | 8 ++------ .../05/GHSA-pph2-4pg7-3c4v/GHSA-pph2-4pg7-3c4v.json | 12 +++--------- .../05/GHSA-ppmq-4xqj-3623/GHSA-ppmq-4xqj-3623.json | 12 +++--------- .../05/GHSA-ppw8-45pr-787p/GHSA-ppw8-45pr-787p.json | 12 +++--------- .../05/GHSA-pq94-73jh-jg9w/GHSA-pq94-73jh-jg9w.json | 8 ++------ .../05/GHSA-pq9v-7wpp-6h45/GHSA-pq9v-7wpp-6h45.json | 8 ++------ .../05/GHSA-pr2v-gvjp-qp66/GHSA-pr2v-gvjp-qp66.json | 12 +++--------- .../05/GHSA-pr7v-p4jw-8rhx/GHSA-pr7v-p4jw-8rhx.json | 12 +++--------- .../05/GHSA-pv46-7c32-rmg5/GHSA-pv46-7c32-rmg5.json | 8 ++------ .../05/GHSA-pv5g-gpjf-g9xg/GHSA-pv5g-gpjf-g9xg.json | 12 +++--------- .../05/GHSA-pv93-pr8m-hxxx/GHSA-pv93-pr8m-hxxx.json | 12 +++--------- .../05/GHSA-pw5c-m847-fmqf/GHSA-pw5c-m847-fmqf.json | 12 +++--------- .../05/GHSA-pw7p-x93h-v5qq/GHSA-pw7p-x93h-v5qq.json | 8 ++------ .../05/GHSA-pwpv-3p5r-mg69/GHSA-pwpv-3p5r-mg69.json | 8 ++------ .../05/GHSA-px57-xh6g-cqjm/GHSA-px57-xh6g-cqjm.json | 8 ++------ .../05/GHSA-pxhg-rgcf-qj38/GHSA-pxhg-rgcf-qj38.json | 8 ++------ .../05/GHSA-pxm9-3wx9-3q85/GHSA-pxm9-3wx9-3q85.json | 12 +++--------- .../05/GHSA-pxrc-rh5x-5557/GHSA-pxrc-rh5x-5557.json | 12 +++--------- .../05/GHSA-q297-5xx3-gw53/GHSA-q297-5xx3-gw53.json | 8 ++------ .../05/GHSA-q3hx-935w-hrg2/GHSA-q3hx-935w-hrg2.json | 12 +++--------- .../05/GHSA-q44m-7h33-96g3/GHSA-q44m-7h33-96g3.json | 12 +++--------- .../05/GHSA-q4mm-2rvg-w8ww/GHSA-q4mm-2rvg-w8ww.json | 8 ++------ .../05/GHSA-q52q-979x-2v5q/GHSA-q52q-979x-2v5q.json | 4 +--- .../05/GHSA-q5cq-rj2g-v72r/GHSA-q5cq-rj2g-v72r.json | 12 +++--------- .../05/GHSA-q649-mpgj-7h68/GHSA-q649-mpgj-7h68.json | 8 ++------ .../05/GHSA-q66q-9pr9-q26r/GHSA-q66q-9pr9-q26r.json | 12 +++--------- .../05/GHSA-q6c8-5hhp-w6rv/GHSA-q6c8-5hhp-w6rv.json | 12 +++--------- .../05/GHSA-q6hr-vm49-fvm5/GHSA-q6hr-vm49-fvm5.json | 8 ++------ .../05/GHSA-q6jf-84qm-cj59/GHSA-q6jf-84qm-cj59.json | 8 ++------ .../05/GHSA-q6r5-f6rr-8f92/GHSA-q6r5-f6rr-8f92.json | 8 ++------ .../05/GHSA-q6wr-23v7-wr4h/GHSA-q6wr-23v7-wr4h.json | 12 +++--------- .../05/GHSA-q7jc-qjq2-4cmx/GHSA-q7jc-qjq2-4cmx.json | 8 ++------ .../05/GHSA-q829-w9w5-9vhv/GHSA-q829-w9w5-9vhv.json | 12 +++--------- .../05/GHSA-q8qh-9x92-6p6c/GHSA-q8qh-9x92-6p6c.json | 8 ++------ .../05/GHSA-q963-v9w4-pqp9/GHSA-q963-v9w4-pqp9.json | 4 +--- .../05/GHSA-q9cp-34x4-jgw5/GHSA-q9cp-34x4-jgw5.json | 12 +++--------- .../05/GHSA-q9jr-59gg-37j9/GHSA-q9jr-59gg-37j9.json | 12 +++--------- .../05/GHSA-q9pv-467g-x2qc/GHSA-q9pv-467g-x2qc.json | 12 +++--------- .../05/GHSA-qc78-mvp8-p6f2/GHSA-qc78-mvp8-p6f2.json | 12 +++--------- .../05/GHSA-qcq8-mgfx-4pfj/GHSA-qcq8-mgfx-4pfj.json | 8 ++------ .../05/GHSA-qcvh-w68r-q938/GHSA-qcvh-w68r-q938.json | 12 +++--------- .../05/GHSA-qf3m-m239-72cq/GHSA-qf3m-m239-72cq.json | 12 +++--------- .../05/GHSA-qfgg-vhc6-gx89/GHSA-qfgg-vhc6-gx89.json | 8 ++------ .../05/GHSA-qg68-crpm-ch79/GHSA-qg68-crpm-ch79.json | 8 ++------ .../05/GHSA-qg83-8gfp-g253/GHSA-qg83-8gfp-g253.json | 12 +++--------- .../05/GHSA-qgqj-2r34-83jh/GHSA-qgqj-2r34-83jh.json | 8 ++------ .../05/GHSA-qgxx-w2vv-5q44/GHSA-qgxx-w2vv-5q44.json | 12 +++--------- .../05/GHSA-qh39-wj56-w8x2/GHSA-qh39-wj56-w8x2.json | 12 +++--------- .../05/GHSA-qh92-424h-5c76/GHSA-qh92-424h-5c76.json | 12 +++--------- .../05/GHSA-qhfc-c377-fpgq/GHSA-qhfc-c377-fpgq.json | 8 ++------ .../05/GHSA-qj5x-qgp9-7f57/GHSA-qj5x-qgp9-7f57.json | 8 ++------ .../05/GHSA-qmxc-jm57-x7h9/GHSA-qmxc-jm57-x7h9.json | 12 +++--------- .../05/GHSA-qpjc-9f2w-grp8/GHSA-qpjc-9f2w-grp8.json | 8 ++------ .../05/GHSA-qpm9-2wxr-fm2g/GHSA-qpm9-2wxr-fm2g.json | 12 +++--------- .../05/GHSA-qppx-r9fg-9357/GHSA-qppx-r9fg-9357.json | 12 +++--------- .../05/GHSA-qprf-rrp5-5r9j/GHSA-qprf-rrp5-5r9j.json | 8 ++------ .../05/GHSA-qq2g-cjgq-hwqr/GHSA-qq2g-cjgq-hwqr.json | 12 +++--------- .../05/GHSA-qq3q-x8cf-gqg9/GHSA-qq3q-x8cf-gqg9.json | 8 ++------ .../05/GHSA-qq6w-r4g7-hqp4/GHSA-qq6w-r4g7-hqp4.json | 12 +++--------- .../05/GHSA-qrrp-46f9-qr9m/GHSA-qrrp-46f9-qr9m.json | 12 +++--------- .../05/GHSA-qrw6-qjvm-cr2m/GHSA-qrw6-qjvm-cr2m.json | 12 +++--------- .../05/GHSA-qv6m-xp4r-mwq9/GHSA-qv6m-xp4r-mwq9.json | 8 ++------ .../05/GHSA-qvr9-gqvh-83cj/GHSA-qvr9-gqvh-83cj.json | 12 +++--------- .../05/GHSA-qvrm-xxvp-9fj9/GHSA-qvrm-xxvp-9fj9.json | 12 +++--------- .../05/GHSA-qwf7-6cgr-vhmq/GHSA-qwf7-6cgr-vhmq.json | 8 ++------ .../05/GHSA-qwhm-8574-3qr4/GHSA-qwhm-8574-3qr4.json | 12 +++--------- .../05/GHSA-qww4-844q-f6m5/GHSA-qww4-844q-f6m5.json | 12 +++--------- .../05/GHSA-qx7w-826r-8x29/GHSA-qx7w-826r-8x29.json | 12 +++--------- .../05/GHSA-r269-qx8f-58hh/GHSA-r269-qx8f-58hh.json | 12 +++--------- .../05/GHSA-r2v6-rqmq-hxq9/GHSA-r2v6-rqmq-hxq9.json | 12 +++--------- .../05/GHSA-r3m5-gw4v-ccv9/GHSA-r3m5-gw4v-ccv9.json | 12 +++--------- .../05/GHSA-r3p5-262x-676f/GHSA-r3p5-262x-676f.json | 12 +++--------- .../05/GHSA-r3q4-m47r-5mq7/GHSA-r3q4-m47r-5mq7.json | 12 +++--------- .../05/GHSA-r3vr-pwv6-v3mm/GHSA-r3vr-pwv6-v3mm.json | 8 ++------ .../05/GHSA-r43x-x6j8-3j86/GHSA-r43x-x6j8-3j86.json | 12 +++--------- .../05/GHSA-r4v2-qg7m-3xrh/GHSA-r4v2-qg7m-3xrh.json | 8 ++------ .../05/GHSA-r62p-gprp-gvww/GHSA-r62p-gprp-gvww.json | 4 +--- .../05/GHSA-r6jf-mc85-gm2g/GHSA-r6jf-mc85-gm2g.json | 12 +++--------- .../05/GHSA-r7p5-qh2g-cp2f/GHSA-r7p5-qh2g-cp2f.json | 12 +++--------- .../05/GHSA-r7p8-8gcf-v2q3/GHSA-r7p8-8gcf-v2q3.json | 8 ++------ .../05/GHSA-r859-f8rq-g2xr/GHSA-r859-f8rq-g2xr.json | 12 +++--------- .../05/GHSA-r8jw-28q2-2qc8/GHSA-r8jw-28q2-2qc8.json | 12 +++--------- .../05/GHSA-r8x3-vmcc-9q2g/GHSA-r8x3-vmcc-9q2g.json | 12 +++--------- .../05/GHSA-r9rh-gx95-qpqj/GHSA-r9rh-gx95-qpqj.json | 8 ++------ .../05/GHSA-rm4m-g4f7-4mmf/GHSA-rm4m-g4f7-4mmf.json | 12 +++--------- .../05/GHSA-rp8f-9mp7-v2fw/GHSA-rp8f-9mp7-v2fw.json | 12 +++--------- .../05/GHSA-rqq5-rg8q-m8pp/GHSA-rqq5-rg8q-m8pp.json | 8 ++------ .../05/GHSA-rqrp-x7pw-rfgm/GHSA-rqrp-x7pw-rfgm.json | 12 +++--------- .../05/GHSA-rv3m-9rv8-5g3p/GHSA-rv3m-9rv8-5g3p.json | 8 ++------ .../05/GHSA-rv45-fc47-3rhr/GHSA-rv45-fc47-3rhr.json | 12 +++--------- .../05/GHSA-rvqg-9x88-vgx5/GHSA-rvqg-9x88-vgx5.json | 12 +++--------- .../05/GHSA-rw9g-ghm8-vjf3/GHSA-rw9g-ghm8-vjf3.json | 12 +++--------- .../05/GHSA-rx7r-m66x-qh35/GHSA-rx7r-m66x-qh35.json | 8 ++------ .../05/GHSA-rxch-49p9-53hx/GHSA-rxch-49p9-53hx.json | 12 +++--------- .../05/GHSA-rxg4-8j52-gv4g/GHSA-rxg4-8j52-gv4g.json | 12 +++--------- .../05/GHSA-rxpx-7fp6-7726/GHSA-rxpx-7fp6-7726.json | 12 +++--------- .../05/GHSA-rxr5-mcjh-h5fp/GHSA-rxr5-mcjh-h5fp.json | 12 +++--------- .../05/GHSA-v2xc-8hw7-gm6x/GHSA-v2xc-8hw7-gm6x.json | 8 ++------ .../05/GHSA-v4c3-7gp9-x6mf/GHSA-v4c3-7gp9-x6mf.json | 8 ++------ .../05/GHSA-v4h8-h3cf-5v48/GHSA-v4h8-h3cf-5v48.json | 12 +++--------- .../05/GHSA-v4rc-mrvx-p99v/GHSA-v4rc-mrvx-p99v.json | 12 +++--------- .../05/GHSA-v69x-jjw5-qqpr/GHSA-v69x-jjw5-qqpr.json | 8 ++------ .../05/GHSA-v6p2-879w-fx47/GHSA-v6p2-879w-fx47.json | 4 +--- .../05/GHSA-v6rh-hjgc-cjxc/GHSA-v6rh-hjgc-cjxc.json | 12 +++--------- .../05/GHSA-v6v2-8q4w-pwmg/GHSA-v6v2-8q4w-pwmg.json | 8 ++------ .../05/GHSA-v738-3658-fhrx/GHSA-v738-3658-fhrx.json | 12 +++--------- .../05/GHSA-v766-f6mm-cqpp/GHSA-v766-f6mm-cqpp.json | 8 ++------ .../05/GHSA-v7q5-rjwv-j788/GHSA-v7q5-rjwv-j788.json | 8 ++------ .../05/GHSA-v8cr-qvjm-g7vh/GHSA-v8cr-qvjm-g7vh.json | 12 +++--------- .../05/GHSA-v8j2-wgq9-j3hp/GHSA-v8j2-wgq9-j3hp.json | 12 +++--------- .../05/GHSA-v8pg-v9x7-3572/GHSA-v8pg-v9x7-3572.json | 12 +++--------- .../05/GHSA-v8vj-969w-qv4m/GHSA-v8vj-969w-qv4m.json | 8 ++------ .../05/GHSA-v9rw-54r8-5m4q/GHSA-v9rw-54r8-5m4q.json | 8 ++------ .../05/GHSA-vf2g-c3r3-7xxc/GHSA-vf2g-c3r3-7xxc.json | 12 +++--------- .../05/GHSA-vfqh-jcv7-58vc/GHSA-vfqh-jcv7-58vc.json | 12 +++--------- .../05/GHSA-vfx7-5239-r253/GHSA-vfx7-5239-r253.json | 8 ++------ .../05/GHSA-vj43-qmpm-3qqp/GHSA-vj43-qmpm-3qqp.json | 8 ++------ .../05/GHSA-vjq5-3qc3-q3mx/GHSA-vjq5-3qc3-q3mx.json | 12 +++--------- .../05/GHSA-vmcg-wxwv-9jj9/GHSA-vmcg-wxwv-9jj9.json | 12 +++--------- .../05/GHSA-vp28-h326-q553/GHSA-vp28-h326-q553.json | 8 ++------ .../05/GHSA-vq3v-4f2j-rpqf/GHSA-vq3v-4f2j-rpqf.json | 4 +--- .../05/GHSA-vq56-x9hp-75c6/GHSA-vq56-x9hp-75c6.json | 12 +++--------- .../05/GHSA-vq83-w3vp-f24w/GHSA-vq83-w3vp-f24w.json | 12 +++--------- .../05/GHSA-vq97-27v2-x2p6/GHSA-vq97-27v2-x2p6.json | 12 +++--------- .../05/GHSA-vr2x-8cg9-mgf9/GHSA-vr2x-8cg9-mgf9.json | 12 +++--------- .../05/GHSA-vr8r-gqgj-mp62/GHSA-vr8r-gqgj-mp62.json | 12 +++--------- .../05/GHSA-vrvj-3hr4-h4rc/GHSA-vrvj-3hr4-h4rc.json | 8 ++------ .../05/GHSA-vw45-56r7-v7m2/GHSA-vw45-56r7-v7m2.json | 12 +++--------- .../05/GHSA-vw75-3c43-6g3p/GHSA-vw75-3c43-6g3p.json | 8 ++------ .../05/GHSA-vw7c-7p33-hjmq/GHSA-vw7c-7p33-hjmq.json | 8 ++------ .../05/GHSA-vwwr-rhr2-pwwr/GHSA-vwwr-rhr2-pwwr.json | 12 +++--------- .../05/GHSA-vx4r-7f3q-mjg8/GHSA-vx4r-7f3q-mjg8.json | 12 +++--------- .../05/GHSA-vxxr-cwrh-ff4m/GHSA-vxxr-cwrh-ff4m.json | 8 ++------ .../05/GHSA-w22h-xhrm-8cw5/GHSA-w22h-xhrm-8cw5.json | 8 ++------ .../05/GHSA-w299-36vw-9mfq/GHSA-w299-36vw-9mfq.json | 12 +++--------- .../05/GHSA-w2fr-4vgx-vq96/GHSA-w2fr-4vgx-vq96.json | 4 +--- .../05/GHSA-w37f-8cwf-64g5/GHSA-w37f-8cwf-64g5.json | 4 +--- .../05/GHSA-w3rm-h2m6-8xr6/GHSA-w3rm-h2m6-8xr6.json | 12 +++--------- .../05/GHSA-w47c-w3p7-w9q9/GHSA-w47c-w3p7-w9q9.json | 12 +++--------- .../05/GHSA-w4m7-5m6v-5hgf/GHSA-w4m7-5m6v-5hgf.json | 12 +++--------- .../05/GHSA-w4v9-jmhm-6jw4/GHSA-w4v9-jmhm-6jw4.json | 8 ++------ .../05/GHSA-w5f5-72qq-hgj6/GHSA-w5f5-72qq-hgj6.json | 8 ++------ .../05/GHSA-w5m3-5gh7-fq59/GHSA-w5m3-5gh7-fq59.json | 8 ++------ .../05/GHSA-w5p3-xgv8-w45f/GHSA-w5p3-xgv8-w45f.json | 8 ++------ .../05/GHSA-w75q-4cfj-fmmg/GHSA-w75q-4cfj-fmmg.json | 8 ++------ .../05/GHSA-w7h8-jx82-595q/GHSA-w7h8-jx82-595q.json | 12 +++--------- .../05/GHSA-w7m2-428f-vx82/GHSA-w7m2-428f-vx82.json | 12 +++--------- .../05/GHSA-w7p9-h59x-gp43/GHSA-w7p9-h59x-gp43.json | 12 +++--------- .../05/GHSA-w89p-368h-phrv/GHSA-w89p-368h-phrv.json | 8 ++------ .../05/GHSA-w8f8-xp64-gw98/GHSA-w8f8-xp64-gw98.json | 8 ++------ .../05/GHSA-w8fj-r9j2-qg46/GHSA-w8fj-r9j2-qg46.json | 8 ++------ .../05/GHSA-w8hw-jqc4-28rh/GHSA-w8hw-jqc4-28rh.json | 4 +--- .../05/GHSA-w9mq-c2pg-qc2x/GHSA-w9mq-c2pg-qc2x.json | 8 ++------ .../05/GHSA-w9wx-4fjg-83vq/GHSA-w9wx-4fjg-83vq.json | 8 ++------ .../05/GHSA-wcrv-7ccm-jh9r/GHSA-wcrv-7ccm-jh9r.json | 8 ++------ .../05/GHSA-wf3w-8qhg-ch8v/GHSA-wf3w-8qhg-ch8v.json | 12 +++--------- .../05/GHSA-wfp6-64v9-pqm2/GHSA-wfp6-64v9-pqm2.json | 12 +++--------- .../05/GHSA-wgh7-rqcp-g392/GHSA-wgh7-rqcp-g392.json | 8 ++------ .../05/GHSA-wgh8-88mj-mfhc/GHSA-wgh8-88mj-mfhc.json | 12 +++--------- .../05/GHSA-wgmq-2j65-4gv7/GHSA-wgmq-2j65-4gv7.json | 12 +++--------- .../05/GHSA-wgqp-qmfp-f6mf/GHSA-wgqp-qmfp-f6mf.json | 12 +++--------- .../05/GHSA-wh38-wfpg-r5vq/GHSA-wh38-wfpg-r5vq.json | 4 +--- .../05/GHSA-wh68-6pvj-84gm/GHSA-wh68-6pvj-84gm.json | 8 ++------ .../05/GHSA-wjhh-crv5-j3rq/GHSA-wjhh-crv5-j3rq.json | 12 +++--------- .../05/GHSA-wm3j-mrpm-rvgx/GHSA-wm3j-mrpm-rvgx.json | 12 +++--------- .../05/GHSA-wpc7-qhwq-ppp4/GHSA-wpc7-qhwq-ppp4.json | 12 +++--------- .../05/GHSA-wpr8-mw26-rgrv/GHSA-wpr8-mw26-rgrv.json | 12 +++--------- .../05/GHSA-wrrm-v4f3-7p8w/GHSA-wrrm-v4f3-7p8w.json | 12 +++--------- .../05/GHSA-wv7j-84hj-89vg/GHSA-wv7j-84hj-89vg.json | 8 ++------ .../05/GHSA-wv7p-2949-96jc/GHSA-wv7p-2949-96jc.json | 12 +++--------- .../05/GHSA-wvfq-5xp8-rhv7/GHSA-wvfq-5xp8-rhv7.json | 8 ++------ .../05/GHSA-wvgm-548x-hh75/GHSA-wvgm-548x-hh75.json | 8 ++------ .../05/GHSA-wvjr-27w9-ff2r/GHSA-wvjr-27w9-ff2r.json | 8 ++------ .../05/GHSA-wvx3-vqrv-6fcg/GHSA-wvx3-vqrv-6fcg.json | 8 ++------ .../05/GHSA-wvxg-xmpg-qcwx/GHSA-wvxg-xmpg-qcwx.json | 8 ++------ .../05/GHSA-wwc6-cvf7-4mc4/GHSA-wwc6-cvf7-4mc4.json | 8 ++------ .../05/GHSA-wxcf-p893-2c63/GHSA-wxcf-p893-2c63.json | 12 +++--------- .../05/GHSA-x22h-c7rx-g634/GHSA-x22h-c7rx-g634.json | 8 ++------ .../05/GHSA-x23j-f9cv-rr2j/GHSA-x23j-f9cv-rr2j.json | 12 +++--------- .../05/GHSA-x27f-prq2-qwh6/GHSA-x27f-prq2-qwh6.json | 8 ++------ .../05/GHSA-x29p-2g24-67vh/GHSA-x29p-2g24-67vh.json | 8 ++------ .../05/GHSA-x2r7-87jv-9mxm/GHSA-x2r7-87jv-9mxm.json | 8 ++------ .../05/GHSA-x32x-qjwj-x48p/GHSA-x32x-qjwj-x48p.json | 8 ++------ .../05/GHSA-x48c-86h8-7hvr/GHSA-x48c-86h8-7hvr.json | 12 +++--------- .../05/GHSA-x4g4-vqmr-6r7x/GHSA-x4g4-vqmr-6r7x.json | 8 ++------ .../05/GHSA-x4h7-rg57-2fqw/GHSA-x4h7-rg57-2fqw.json | 8 ++------ .../05/GHSA-x4vf-f5c7-55mj/GHSA-x4vf-f5c7-55mj.json | 12 +++--------- .../05/GHSA-x52f-pc67-39rq/GHSA-x52f-pc67-39rq.json | 12 +++--------- .../05/GHSA-x5fr-93xj-6pp3/GHSA-x5fr-93xj-6pp3.json | 8 ++------ .../05/GHSA-x5gc-8fv6-9xvv/GHSA-x5gc-8fv6-9xvv.json | 12 +++--------- .../05/GHSA-x75x-rr26-fwqf/GHSA-x75x-rr26-fwqf.json | 8 ++------ .../05/GHSA-x7xh-qj32-6gv8/GHSA-x7xh-qj32-6gv8.json | 12 +++--------- .../05/GHSA-x8cp-8xjm-x5rm/GHSA-x8cp-8xjm-x5rm.json | 12 +++--------- .../05/GHSA-x8j7-m33v-2rqw/GHSA-x8j7-m33v-2rqw.json | 8 ++------ .../05/GHSA-x9qq-h45j-7chv/GHSA-x9qq-h45j-7chv.json | 4 +--- .../05/GHSA-x9w7-f6x8-r9xh/GHSA-x9w7-f6x8-r9xh.json | 8 ++------ .../05/GHSA-xc89-vpfh-32xw/GHSA-xc89-vpfh-32xw.json | 12 +++--------- .../05/GHSA-xf4f-2rfr-r287/GHSA-xf4f-2rfr-r287.json | 12 +++--------- .../05/GHSA-xf9f-9v6p-v639/GHSA-xf9f-9v6p-v639.json | 12 +++--------- .../05/GHSA-xgc7-jmvj-5fph/GHSA-xgc7-jmvj-5fph.json | 12 +++--------- .../05/GHSA-xghf-rq5q-xgj7/GHSA-xghf-rq5q-xgj7.json | 12 +++--------- .../05/GHSA-xgjj-696c-x9g9/GHSA-xgjj-696c-x9g9.json | 12 +++--------- .../05/GHSA-xh24-4c7j-2rmj/GHSA-xh24-4c7j-2rmj.json | 8 ++------ .../05/GHSA-xhvj-h5pc-rgrw/GHSA-xhvj-h5pc-rgrw.json | 12 +++--------- .../05/GHSA-xj6g-7vq6-3mcm/GHSA-xj6g-7vq6-3mcm.json | 4 +--- .../05/GHSA-xj83-6v6g-v838/GHSA-xj83-6v6g-v838.json | 12 +++--------- .../05/GHSA-xm2g-rgpw-75v4/GHSA-xm2g-rgpw-75v4.json | 12 +++--------- .../05/GHSA-xm2v-m533-mq6r/GHSA-xm2v-m533-mq6r.json | 12 +++--------- .../05/GHSA-xm77-r4gq-gm87/GHSA-xm77-r4gq-gm87.json | 8 ++------ .../05/GHSA-xmhx-6rmw-grmj/GHSA-xmhx-6rmw-grmj.json | 12 +++--------- .../05/GHSA-xq6m-vcfr-h89q/GHSA-xq6m-vcfr-h89q.json | 12 +++--------- .../05/GHSA-xq8v-3x6g-9vpm/GHSA-xq8v-3x6g-9vpm.json | 12 +++--------- .../05/GHSA-xqvg-mhw9-7644/GHSA-xqvg-mhw9-7644.json | 8 ++------ .../05/GHSA-xqw6-9936-vppq/GHSA-xqw6-9936-vppq.json | 8 ++------ .../05/GHSA-xr25-82p4-842w/GHSA-xr25-82p4-842w.json | 8 ++------ .../05/GHSA-xr6f-cqvg-r32q/GHSA-xr6f-cqvg-r32q.json | 12 +++--------- .../05/GHSA-xr7f-qhp5-ffxc/GHSA-xr7f-qhp5-ffxc.json | 12 +++--------- .../05/GHSA-xr84-wvr6-x336/GHSA-xr84-wvr6-x336.json | 12 +++--------- .../05/GHSA-xrmq-h6xp-2vgc/GHSA-xrmq-h6xp-2vgc.json | 8 ++------ .../05/GHSA-xvvq-jr85-m2g9/GHSA-xvvq-jr85-m2g9.json | 12 +++--------- .../05/GHSA-xwp2-775j-9939/GHSA-xwp2-775j-9939.json | 8 ++------ .../05/GHSA-xxfv-4p77-f27m/GHSA-xxfv-4p77-f27m.json | 12 +++--------- .../05/GHSA-xxhw-3mwj-8m78/GHSA-xxhw-3mwj-8m78.json | 12 +++--------- .../05/GHSA-xxwf-mr27-9j8v/GHSA-xxwf-mr27-9j8v.json | 12 +++--------- .../09/GHSA-2h7r-p6c6-2v49/GHSA-2h7r-p6c6-2v49.json | 4 +--- .../09/GHSA-34vp-vpx3-9q2g/GHSA-34vp-vpx3-9q2g.json | 8 ++------ .../09/GHSA-36wc-4prf-gp6g/GHSA-36wc-4prf-gp6g.json | 4 +--- .../09/GHSA-484m-6228-v3ch/GHSA-484m-6228-v3ch.json | 4 +--- .../09/GHSA-6v73-77xc-78hg/GHSA-6v73-77xc-78hg.json | 8 ++------ .../09/GHSA-j77h-m5qv-6jf7/GHSA-j77h-m5qv-6jf7.json | 4 +--- .../09/GHSA-j93m-q6xh-qq49/GHSA-j93m-q6xh-qq49.json | 4 +--- .../09/GHSA-pg2f-924c-5qqx/GHSA-pg2f-924c-5qqx.json | 4 +--- .../09/GHSA-x7w8-47qc-qwvr/GHSA-x7w8-47qc-qwvr.json | 4 +--- .../10/GHSA-6gqv-x5rh-36m4/GHSA-6gqv-x5rh-36m4.json | 4 +--- .../10/GHSA-6rrc-75gq-rgrf/GHSA-6rrc-75gq-rgrf.json | 4 +--- .../10/GHSA-7g4h-mwg6-xgxc/GHSA-7g4h-mwg6-xgxc.json | 4 +--- .../10/GHSA-gj3h-47qp-ppc2/GHSA-gj3h-47qp-ppc2.json | 4 +--- .../10/GHSA-h3w5-5wfj-phcx/GHSA-h3w5-5wfj-phcx.json | 4 +--- .../10/GHSA-hq5f-3c8f-c5w8/GHSA-hq5f-3c8f-c5w8.json | 4 +--- .../10/GHSA-j7hr-8p79-vg24/GHSA-j7hr-8p79-vg24.json | 4 +--- .../10/GHSA-q6rf-w2h8-pjhf/GHSA-q6rf-w2h8-pjhf.json | 4 +--- .../10/GHSA-r8f5-rmh4-47v6/GHSA-r8f5-rmh4-47v6.json | 4 +--- .../10/GHSA-r96m-mpm2-p9xp/GHSA-r96m-mpm2-p9xp.json | 4 +--- .../10/GHSA-rmwg-v45v-3cj5/GHSA-rmwg-v45v-3cj5.json | 4 +--- .../10/GHSA-v8mc-cm8w-4h96/GHSA-v8mc-cm8w-4h96.json | 4 +--- .../10/GHSA-v99v-23wg-2hr6/GHSA-v99v-23wg-2hr6.json | 4 +--- .../11/GHSA-35wc-2959-rmx9/GHSA-35wc-2959-rmx9.json | 4 +--- .../11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json | 4 +--- .../11/GHSA-7jfg-qpxp-6grc/GHSA-7jfg-qpxp-6grc.json | 4 +--- .../11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json | 4 +--- .../11/GHSA-8r54-qrm3-cm32/GHSA-8r54-qrm3-cm32.json | 4 +--- .../11/GHSA-965x-72v5-49v5/GHSA-965x-72v5-49v5.json | 4 +--- .../11/GHSA-ffc5-94vf-24gj/GHSA-ffc5-94vf-24gj.json | 4 +--- .../11/GHSA-fj87-wrmx-mhhj/GHSA-fj87-wrmx-mhhj.json | 8 ++------ .../11/GHSA-g8jm-82h5-p38h/GHSA-g8jm-82h5-p38h.json | 4 +--- .../11/GHSA-grfg-6c65-69m4/GHSA-grfg-6c65-69m4.json | 4 +--- .../11/GHSA-h268-hqv8-wgw2/GHSA-h268-hqv8-wgw2.json | 4 +--- .../11/GHSA-h694-3rh8-j667/GHSA-h694-3rh8-j667.json | 4 +--- .../11/GHSA-hjmc-mw59-wqqp/GHSA-hjmc-mw59-wqqp.json | 4 +--- .../11/GHSA-hxhg-m762-rjxh/GHSA-hxhg-m762-rjxh.json | 4 +--- .../11/GHSA-jw7h-98j8-6r23/GHSA-jw7h-98j8-6r23.json | 4 +--- .../11/GHSA-mjxc-g8h2-2g9g/GHSA-mjxc-g8h2-2g9g.json | 4 +--- .../11/GHSA-mwcq-5rpw-7p42/GHSA-mwcq-5rpw-7p42.json | 4 +--- .../11/GHSA-pwpx-r9xc-fhg4/GHSA-pwpx-r9xc-fhg4.json | 4 +--- .../11/GHSA-qhqh-xp2p-xp7w/GHSA-qhqh-xp2p-xp7w.json | 4 +--- .../11/GHSA-qmq8-hpr3-m3x3/GHSA-qmq8-hpr3-m3x3.json | 4 +--- .../11/GHSA-r2cg-cw4r-gcx4/GHSA-r2cg-cw4r-gcx4.json | 4 +--- .../11/GHSA-r8h4-q53x-8w2p/GHSA-r8h4-q53x-8w2p.json | 4 +--- .../11/GHSA-v897-8cmv-r8gq/GHSA-v897-8cmv-r8gq.json | 4 +--- .../11/GHSA-vwc9-qw9m-64xj/GHSA-vwc9-qw9m-64xj.json | 4 +--- .../11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json | 4 +--- .../11/GHSA-x7p3-6m4c-64m2/GHSA-x7p3-6m4c-64m2.json | 4 +--- .../12/GHSA-6rj4-8w8r-xcj2/GHSA-6rj4-8w8r-xcj2.json | 4 +--- .../12/GHSA-m9xr-mrx5-456x/GHSA-m9xr-mrx5-456x.json | 4 +--- .../01/GHSA-3h25-7p54-f2f8/GHSA-3h25-7p54-f2f8.json | 4 +--- .../01/GHSA-42p3-xp7q-pwv6/GHSA-42p3-xp7q-pwv6.json | 4 +--- .../01/GHSA-4jxf-85hh-74pj/GHSA-4jxf-85hh-74pj.json | 4 +--- .../01/GHSA-4r7f-wp49-4mv2/GHSA-4r7f-wp49-4mv2.json | 4 +--- .../01/GHSA-5r47-3q95-vm4q/GHSA-5r47-3q95-vm4q.json | 4 +--- .../01/GHSA-7x7g-xq59-cqgh/GHSA-7x7g-xq59-cqgh.json | 4 +--- .../01/GHSA-9w36-mccq-ph2c/GHSA-9w36-mccq-ph2c.json | 4 +--- .../01/GHSA-c2gf-h728-j378/GHSA-c2gf-h728-j378.json | 4 +--- .../01/GHSA-chrg-5xr2-ppfm/GHSA-chrg-5xr2-ppfm.json | 4 +--- .../01/GHSA-cppm-xp38-fh2x/GHSA-cppm-xp38-fh2x.json | 4 +--- .../01/GHSA-cr4j-fv7c-759c/GHSA-cr4j-fv7c-759c.json | 4 +--- .../01/GHSA-fpfr-g8vf-4jhr/GHSA-fpfr-g8vf-4jhr.json | 4 +--- .../01/GHSA-g238-vgfm-q7mg/GHSA-g238-vgfm-q7mg.json | 4 +--- .../01/GHSA-qrp2-r4vv-rxvf/GHSA-qrp2-r4vv-rxvf.json | 4 +--- .../01/GHSA-r87w-g396-c68p/GHSA-r87w-g396-c68p.json | 4 +--- .../01/GHSA-rx6f-437m-82px/GHSA-rx6f-437m-82px.json | 4 +--- .../01/GHSA-vcgj-3gwq-4x48/GHSA-vcgj-3gwq-4x48.json | 4 +--- .../01/GHSA-w8m5-vmmq-x59w/GHSA-w8m5-vmmq-x59w.json | 8 ++------ .../01/GHSA-wg72-3rf2-wvp5/GHSA-wg72-3rf2-wvp5.json | 8 ++------ .../01/GHSA-wx4c-354q-hcvc/GHSA-wx4c-354q-hcvc.json | 4 +--- .../01/GHSA-xh7r-hcfv-6wpx/GHSA-xh7r-hcfv-6wpx.json | 4 +--- .../01/GHSA-xw4v-hwgc-348v/GHSA-xw4v-hwgc-348v.json | 4 +--- .../03/GHSA-5hm2-2whx-4749/GHSA-5hm2-2whx-4749.json | 4 +--- .../04/GHSA-972p-jcp3-q2cv/GHSA-972p-jcp3-q2cv.json | 4 +--- .../04/GHSA-w6h4-4gxw-xxg8/GHSA-w6h4-4gxw-xxg8.json | 4 +--- .../05/GHSA-78jh-p6rf-g59w/GHSA-78jh-p6rf-g59w.json | 4 +--- .../05/GHSA-fx73-x3p9-h2wf/GHSA-fx73-x3p9-h2wf.json | 4 +--- .../11/GHSA-rjv6-vf6v-rx85/GHSA-rjv6-vf6v-rx85.json | 4 +--- .../12/GHSA-3654-wj8m-9hfq/GHSA-3654-wj8m-9hfq.json | 4 +--- .../12/GHSA-46xp-96vg-h6x6/GHSA-46xp-96vg-h6x6.json | 4 +--- .../12/GHSA-59wc-6pc8-jcr3/GHSA-59wc-6pc8-jcr3.json | 4 +--- .../12/GHSA-7www-x428-rw8w/GHSA-7www-x428-rw8w.json | 4 +--- .../12/GHSA-8v43-6xfg-43pr/GHSA-8v43-6xfg-43pr.json | 4 +--- .../12/GHSA-ccvf-77q3-xjv9/GHSA-ccvf-77q3-xjv9.json | 4 +--- .../12/GHSA-h3gx-584x-jxw5/GHSA-h3gx-584x-jxw5.json | 4 +--- .../12/GHSA-jf62-v9fg-87mj/GHSA-jf62-v9fg-87mj.json | 4 +--- .../12/GHSA-p29h-x3w2-549g/GHSA-p29h-x3w2-549g.json | 4 +--- .../12/GHSA-qg4r-fj25-xf35/GHSA-qg4r-fj25-xf35.json | 4 +--- .../12/GHSA-qqjp-9v49-7wjf/GHSA-qqjp-9v49-7wjf.json | 4 +--- .../12/GHSA-rg4q-3xgq-2623/GHSA-rg4q-3xgq-2623.json | 4 +--- .../12/GHSA-rhwh-r9cc-v238/GHSA-rhwh-r9cc-v238.json | 4 +--- .../02/GHSA-2f5g-328g-96qh/GHSA-2f5g-328g-96qh.json | 4 +--- .../02/GHSA-3323-4cph-j8c7/GHSA-3323-4cph-j8c7.json | 4 +--- .../02/GHSA-3fmx-gx73-5jg7/GHSA-3fmx-gx73-5jg7.json | 12 +++--------- .../02/GHSA-5j67-qqcw-qpc2/GHSA-5j67-qqcw-qpc2.json | 4 +--- .../02/GHSA-5j6p-376x-h7gg/GHSA-5j6p-376x-h7gg.json | 4 +--- .../02/GHSA-65vg-43vj-r32c/GHSA-65vg-43vj-r32c.json | 8 ++------ .../02/GHSA-6648-296f-7jc7/GHSA-6648-296f-7jc7.json | 4 +--- .../02/GHSA-7pm7-xf47-j7c7/GHSA-7pm7-xf47-j7c7.json | 4 +--- .../02/GHSA-8rgq-fh56-7c3r/GHSA-8rgq-fh56-7c3r.json | 4 +--- .../02/GHSA-94q5-q5cp-xvh6/GHSA-94q5-q5cp-xvh6.json | 4 +--- .../02/GHSA-9rvx-gm3h-fh8c/GHSA-9rvx-gm3h-fh8c.json | 4 +--- .../02/GHSA-9xp2-5x23-fhj5/GHSA-9xp2-5x23-fhj5.json | 4 +--- .../02/GHSA-f48j-c6j3-jrxg/GHSA-f48j-c6j3-jrxg.json | 4 +--- .../02/GHSA-f7wr-8w9m-h29x/GHSA-f7wr-8w9m-h29x.json | 4 +--- .../02/GHSA-fc74-wgp6-2pv9/GHSA-fc74-wgp6-2pv9.json | 4 +--- .../02/GHSA-gx59-vpv8-598f/GHSA-gx59-vpv8-598f.json | 12 +++--------- .../02/GHSA-j6hx-p9qx-hf8r/GHSA-j6hx-p9qx-hf8r.json | 4 +--- .../02/GHSA-mmg2-vff3-5c3f/GHSA-mmg2-vff3-5c3f.json | 4 +--- .../02/GHSA-mp9p-399h-gx5m/GHSA-mp9p-399h-gx5m.json | 4 +--- .../02/GHSA-mxxq-mghg-9fmg/GHSA-mxxq-mghg-9fmg.json | 4 +--- .../02/GHSA-p868-fvgw-52x4/GHSA-p868-fvgw-52x4.json | 4 +--- .../02/GHSA-v7cx-w2mc-c39f/GHSA-v7cx-w2mc-c39f.json | 4 +--- .../03/GHSA-28jj-97w4-wxm3/GHSA-28jj-97w4-wxm3.json | 12 +++--------- .../03/GHSA-3c39-w687-672w/GHSA-3c39-w687-672w.json | 8 ++------ .../03/GHSA-3vxq-68fw-q4hj/GHSA-3vxq-68fw-q4hj.json | 4 +--- .../03/GHSA-469c-p6p8-wh33/GHSA-469c-p6p8-wh33.json | 12 +++--------- .../03/GHSA-48xv-cpgv-hr4q/GHSA-48xv-cpgv-hr4q.json | 4 +--- .../03/GHSA-5364-mpf2-q7g8/GHSA-5364-mpf2-q7g8.json | 4 +--- .../03/GHSA-5qp5-38xc-7482/GHSA-5qp5-38xc-7482.json | 4 +--- .../03/GHSA-6437-3rvf-gv9p/GHSA-6437-3rvf-gv9p.json | 4 +--- .../03/GHSA-6v7m-rgwp-qcr4/GHSA-6v7m-rgwp-qcr4.json | 4 +--- .../03/GHSA-75c8-h7q2-4h5c/GHSA-75c8-h7q2-4h5c.json | 4 +--- .../03/GHSA-7m4v-x6m3-9pq2/GHSA-7m4v-x6m3-9pq2.json | 4 +--- .../03/GHSA-7vmx-xjmr-5rwq/GHSA-7vmx-xjmr-5rwq.json | 4 +--- .../03/GHSA-88fx-4f8h-74f9/GHSA-88fx-4f8h-74f9.json | 8 ++------ .../03/GHSA-95ch-f6qf-fhcv/GHSA-95ch-f6qf-fhcv.json | 4 +--- .../03/GHSA-9rpw-6ghh-qx6q/GHSA-9rpw-6ghh-qx6q.json | 4 +--- .../03/GHSA-c7vq-m2w6-mh83/GHSA-c7vq-m2w6-mh83.json | 4 +--- .../03/GHSA-cq2x-934m-8p64/GHSA-cq2x-934m-8p64.json | 4 +--- .../03/GHSA-f6rh-p4h7-6q5w/GHSA-f6rh-p4h7-6q5w.json | 4 +--- .../03/GHSA-g662-fqhc-2vp3/GHSA-g662-fqhc-2vp3.json | 4 +--- .../03/GHSA-h3pc-p5gc-rxc4/GHSA-h3pc-p5gc-rxc4.json | 4 +--- .../03/GHSA-h7x2-5334-q66p/GHSA-h7x2-5334-q66p.json | 8 ++------ .../03/GHSA-hjxq-rqvr-4hp2/GHSA-hjxq-rqvr-4hp2.json | 4 +--- .../03/GHSA-mwq2-v3h2-q84r/GHSA-mwq2-v3h2-q84r.json | 4 +--- .../03/GHSA-q3mx-vc3g-474w/GHSA-q3mx-vc3g-474w.json | 8 ++------ .../03/GHSA-qh2q-v7cv-8g72/GHSA-qh2q-v7cv-8g72.json | 4 +--- .../03/GHSA-qp7v-9hpx-hcp3/GHSA-qp7v-9hpx-hcp3.json | 4 +--- .../03/GHSA-qvx7-6mf9-vg7p/GHSA-qvx7-6mf9-vg7p.json | 4 +--- .../03/GHSA-rm3v-mvrr-w747/GHSA-rm3v-mvrr-w747.json | 4 +--- .../03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json | 12 +++--------- .../03/GHSA-x6pc-98xx-mqg4/GHSA-x6pc-98xx-mqg4.json | 4 +--- .../05/GHSA-33r8-qvv9-4r9q/GHSA-33r8-qvv9-4r9q.json | 4 +--- .../05/GHSA-4vmc-32f5-wrhg/GHSA-4vmc-32f5-wrhg.json | 4 +--- .../05/GHSA-8rqf-8g2h-r7c2/GHSA-8rqf-8g2h-r7c2.json | 4 +--- .../05/GHSA-cg6c-44pq-gx4v/GHSA-cg6c-44pq-gx4v.json | 4 +--- .../05/GHSA-m7ww-c868-pgpq/GHSA-m7ww-c868-pgpq.json | 4 +--- .../05/GHSA-qqr5-9q23-995q/GHSA-qqr5-9q23-995q.json | 4 +--- .../05/GHSA-rmwv-m4j7-frqp/GHSA-rmwv-m4j7-frqp.json | 4 +--- .../05/GHSA-rphp-4xwp-5f63/GHSA-rphp-4xwp-5f63.json | 4 +--- .../05/GHSA-vhjm-ghx5-jwm3/GHSA-vhjm-ghx5-jwm3.json | 4 +--- .../05/GHSA-wfjf-pjxw-v8wf/GHSA-wfjf-pjxw-v8wf.json | 4 +--- .../05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json | 12 +++--------- .../05/GHSA-xfjx-rwvr-jq37/GHSA-xfjx-rwvr-jq37.json | 4 +--- .../05/GHSA-xwj3-m7ch-j848/GHSA-xwj3-m7ch-j848.json | 4 +--- 974 files changed, 2273 insertions(+), 6819 deletions(-) diff --git a/advisories/github-reviewed/2022/11/GHSA-5m39-wx2q-mxg3/GHSA-5m39-wx2q-mxg3.json b/advisories/github-reviewed/2022/11/GHSA-5m39-wx2q-mxg3/GHSA-5m39-wx2q-mxg3.json index 32d46ebb8fe..4489f7fcb81 100644 --- a/advisories/github-reviewed/2022/11/GHSA-5m39-wx2q-mxg3/GHSA-5m39-wx2q-mxg3.json +++ b/advisories/github-reviewed/2022/11/GHSA-5m39-wx2q-mxg3/GHSA-5m39-wx2q-mxg3.json @@ -3,14 +3,10 @@ "id": "GHSA-5m39-wx2q-mxg3", "modified": "2022-11-08T21:56:43Z", "published": "2022-11-08T21:42:06Z", - "aliases": [ - - ], + "aliases": [], "summary": "Invalid use of `mem::uninitialized` causes `use-of-uninitialized-value`", "details": "The compression and decompression function used `mem:uninitialized` to create an array of uninitialized values, to later write values into it. This later leads to reads from uninitialized memory.\n\nThe flaw was corrected in commit b633bf265e41c60dfce3be7eac4e4dd5e18d06cf by using a heap-allocated `Vec` and removing out use of `mem::uninitialized`. The fix was released in v0.3.2 and v1.0.0\n\nSubsequently, the crate was deprecated and its use is discouraged.\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -57,9 +53,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2022-11-08T21:42:06Z", diff --git a/advisories/github-reviewed/2024/02/GHSA-gp6m-fq6h-cjcx/GHSA-gp6m-fq6h-cjcx.json b/advisories/github-reviewed/2024/02/GHSA-gp6m-fq6h-cjcx/GHSA-gp6m-fq6h-cjcx.json index c3fea347935..af3de43262b 100644 --- a/advisories/github-reviewed/2024/02/GHSA-gp6m-fq6h-cjcx/GHSA-gp6m-fq6h-cjcx.json +++ b/advisories/github-reviewed/2024/02/GHSA-gp6m-fq6h-cjcx/GHSA-gp6m-fq6h-cjcx.json @@ -3,9 +3,7 @@ "id": "GHSA-gp6m-fq6h-cjcx", "modified": "2024-03-04T04:29:16Z", "published": "2024-02-27T21:47:58Z", - "aliases": [ - - ], + "aliases": [], "summary": "Magento LTS vulnerable to stored XSS in admin file form", "details": "### Summary\nOpenMage is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields.\n\n### Details\n`Mage_Adminhtml_Block_System_Config_Form_Field_File` does not escape filename value in certain situations.\nSame as: https://nvd.nist.gov/vuln/detail/CVE-2024-20717\n\n### PoC\n1. Create empty file with this filename: `.crt`\n2. Go to _System_ > _Configuration_ > _Sales | Payment Methonds_.\n3. Click **Configure** on _PayPal Express Checkout_.\n4. Choose **API Certificate** from dropdown _API Authentication Methods_.\n5. Choose the XSS-file and click **Save Config**.\n6. Profit, alerts \"1\" -> XSS.\n7. Reload, alerts \"1\" -> Stored XSS.\n\n### Impact\nAffects admins that have access to any fileupload field in admin in core or custom implementations.\nMalicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.\n", "severity": [ diff --git a/advisories/github-reviewed/2024/02/GHSA-vjqc-g788-f378/GHSA-vjqc-g788-f378.json b/advisories/github-reviewed/2024/02/GHSA-vjqc-g788-f378/GHSA-vjqc-g788-f378.json index 86705acbf0a..ba57ee4cd07 100644 --- a/advisories/github-reviewed/2024/02/GHSA-vjqc-g788-f378/GHSA-vjqc-g788-f378.json +++ b/advisories/github-reviewed/2024/02/GHSA-vjqc-g788-f378/GHSA-vjqc-g788-f378.json @@ -8,9 +8,7 @@ ], "summary": "Session Fixation Apache DolphinScheduler", "details": "Session Fixation Apache DolphinScheduler before version 3.2.1, which session is still valid after the password change.\n\nUsers are recommended to upgrade to version 3.2.1, which fixes this issue.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2024/05/GHSA-34rf-p3r3-58x2/GHSA-34rf-p3r3-58x2.json b/advisories/github-reviewed/2024/05/GHSA-34rf-p3r3-58x2/GHSA-34rf-p3r3-58x2.json index f1163ea547a..c56913d0549 100644 --- a/advisories/github-reviewed/2024/05/GHSA-34rf-p3r3-58x2/GHSA-34rf-p3r3-58x2.json +++ b/advisories/github-reviewed/2024/05/GHSA-34rf-p3r3-58x2/GHSA-34rf-p3r3-58x2.json @@ -54,9 +54,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2024-05-06T14:35:14Z", diff --git a/advisories/unreviewed/2022/05/GHSA-224p-qx2h-m4rg/GHSA-224p-qx2h-m4rg.json b/advisories/unreviewed/2022/05/GHSA-224p-qx2h-m4rg/GHSA-224p-qx2h-m4rg.json index c83de4d8f61..f8b4c2fb8df 100644 --- a/advisories/unreviewed/2022/05/GHSA-224p-qx2h-m4rg/GHSA-224p-qx2h-m4rg.json +++ b/advisories/unreviewed/2022/05/GHSA-224p-qx2h-m4rg/GHSA-224p-qx2h-m4rg.json @@ -7,12 +7,8 @@ "CVE-2020-22122" ], "details": "A SQL injection vulnerability in /oa.php?c=Staff&a=read of Find a Place LJCMS v 1.3 allows attackers to access sensitive database information via a crafted POST request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-238g-gfrw-fgmc/GHSA-238g-gfrw-fgmc.json b/advisories/unreviewed/2022/05/GHSA-238g-gfrw-fgmc/GHSA-238g-gfrw-fgmc.json index 500a7a0c5b0..6ad1576731b 100644 --- a/advisories/unreviewed/2022/05/GHSA-238g-gfrw-fgmc/GHSA-238g-gfrw-fgmc.json +++ b/advisories/unreviewed/2022/05/GHSA-238g-gfrw-fgmc/GHSA-238g-gfrw-fgmc.json @@ -7,12 +7,8 @@ "CVE-2020-28146" ], "details": "Cross Site Scripting (XSS) vulnerability exists in Eyoucms v1.4.7 and earlier via the addonfieldext parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-238q-w3p2-vw4m/GHSA-238q-w3p2-vw4m.json b/advisories/unreviewed/2022/05/GHSA-238q-w3p2-vw4m/GHSA-238q-w3p2-vw4m.json index 2d180a84ced..f6b3823e7fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-238q-w3p2-vw4m/GHSA-238q-w3p2-vw4m.json +++ b/advisories/unreviewed/2022/05/GHSA-238q-w3p2-vw4m/GHSA-238q-w3p2-vw4m.json @@ -7,12 +7,8 @@ "CVE-2005-3318" ], "details": "Buffer overflow in the _chm_decompress_block function in CHM lib (chmlib) before 0.37, as used in products such as KchmViewer, allows attackers to execute arbitrary code, a different vulnerability than CVE-2005-2930.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23hq-37gx-cxwv/GHSA-23hq-37gx-cxwv.json b/advisories/unreviewed/2022/05/GHSA-23hq-37gx-cxwv/GHSA-23hq-37gx-cxwv.json index 1f124b722df..9cbe442c9a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-23hq-37gx-cxwv/GHSA-23hq-37gx-cxwv.json +++ b/advisories/unreviewed/2022/05/GHSA-23hq-37gx-cxwv/GHSA-23hq-37gx-cxwv.json @@ -7,12 +7,8 @@ "CVE-2005-3179" ], "details": "drm.c in Linux kernel 2.6.10 to 2.6.13 creates a debug file in sysfs with world-readable and world-writable permissions, which allows local users to enable DRM debugging and obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23rr-vcw7-54r8/GHSA-23rr-vcw7-54r8.json b/advisories/unreviewed/2022/05/GHSA-23rr-vcw7-54r8/GHSA-23rr-vcw7-54r8.json index 04b830b94e5..8b9538cf9bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-23rr-vcw7-54r8/GHSA-23rr-vcw7-54r8.json +++ b/advisories/unreviewed/2022/05/GHSA-23rr-vcw7-54r8/GHSA-23rr-vcw7-54r8.json @@ -7,12 +7,8 @@ "CVE-2021-33884" ], "details": "An Unrestricted Upload of File with Dangerous Type vulnerability in B. Braun SpaceCom2 prior to 012U000062 allows remote attackers to upload any files to the /tmp directory of the device through the webpage API. This can result in critical files being overwritten.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23w4-f563-4m2j/GHSA-23w4-f563-4m2j.json b/advisories/unreviewed/2022/05/GHSA-23w4-f563-4m2j/GHSA-23w4-f563-4m2j.json index 6ecee12d030..359adde93a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-23w4-f563-4m2j/GHSA-23w4-f563-4m2j.json +++ b/advisories/unreviewed/2022/05/GHSA-23w4-f563-4m2j/GHSA-23w4-f563-4m2j.json @@ -7,12 +7,8 @@ "CVE-2020-18735" ], "details": "A heap buffer overflow in /src/dds_stream.c of Eclipse IOT Cyclone DDS Project v0.1.0 causes the DDS subscriber server to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2497-vx3h-24wc/GHSA-2497-vx3h-24wc.json b/advisories/unreviewed/2022/05/GHSA-2497-vx3h-24wc/GHSA-2497-vx3h-24wc.json index 62fb0c65972..ff6ba5087bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-2497-vx3h-24wc/GHSA-2497-vx3h-24wc.json +++ b/advisories/unreviewed/2022/05/GHSA-2497-vx3h-24wc/GHSA-2497-vx3h-24wc.json @@ -7,12 +7,8 @@ "CVE-2021-36748" ], "details": "A SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module before 1.7.8 for Prestashop allows a remote attacker to extract data from the database via the sb_category parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2559-m273-3qpf/GHSA-2559-m273-3qpf.json b/advisories/unreviewed/2022/05/GHSA-2559-m273-3qpf/GHSA-2559-m273-3qpf.json index 8a27f845b53..a26d399833f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2559-m273-3qpf/GHSA-2559-m273-3qpf.json +++ b/advisories/unreviewed/2022/05/GHSA-2559-m273-3qpf/GHSA-2559-m273-3qpf.json @@ -7,12 +7,8 @@ "CVE-2020-25351" ], "details": "An information disclosure vulnerability in rConfig 3.9.5 has been fixed for version 3.9.6. This vulnerability allowed remote authenticated attackers to read files on the system via a crafted request sent to to the /lib/crud/configcompare.crud.php script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-258v-fg67-95wv/GHSA-258v-fg67-95wv.json b/advisories/unreviewed/2022/05/GHSA-258v-fg67-95wv/GHSA-258v-fg67-95wv.json index 45456adf6ef..adca3116f30 100644 --- a/advisories/unreviewed/2022/05/GHSA-258v-fg67-95wv/GHSA-258v-fg67-95wv.json +++ b/advisories/unreviewed/2022/05/GHSA-258v-fg67-95wv/GHSA-258v-fg67-95wv.json @@ -7,12 +7,8 @@ "CVE-2005-3107" ], "details": "fs/exec.c in Linux 2.6, when one thread is tracing another thread that shares the same memory map, might allow local users to cause a denial of service (deadlock) by forcing a core dump when the traced thread is in the TASK_TRACED state.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-25x9-fv8f-q329/GHSA-25x9-fv8f-q329.json b/advisories/unreviewed/2022/05/GHSA-25x9-fv8f-q329/GHSA-25x9-fv8f-q329.json index 93eec87fe94..ff0324b517e 100644 --- a/advisories/unreviewed/2022/05/GHSA-25x9-fv8f-q329/GHSA-25x9-fv8f-q329.json +++ b/advisories/unreviewed/2022/05/GHSA-25x9-fv8f-q329/GHSA-25x9-fv8f-q329.json @@ -7,12 +7,8 @@ "CVE-2005-2899" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in details.php in CjTagBoard 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) date, (2) time, (3) name, (4) ip, (5) agent, or (6) msg parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-26m2-3jc9-5rqh/GHSA-26m2-3jc9-5rqh.json b/advisories/unreviewed/2022/05/GHSA-26m2-3jc9-5rqh/GHSA-26m2-3jc9-5rqh.json index 9927799f125..a69f9bd2119 100644 --- a/advisories/unreviewed/2022/05/GHSA-26m2-3jc9-5rqh/GHSA-26m2-3jc9-5rqh.json +++ b/advisories/unreviewed/2022/05/GHSA-26m2-3jc9-5rqh/GHSA-26m2-3jc9-5rqh.json @@ -7,12 +7,8 @@ "CVE-2020-4992" ], "details": "IBM DataPower Gateway 2018.4.1.0 through 2018.4.1.16 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 192737.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-26pq-368c-c8f2/GHSA-26pq-368c-c8f2.json b/advisories/unreviewed/2022/05/GHSA-26pq-368c-c8f2/GHSA-26pq-368c-c8f2.json index 912c3d35344..86352701777 100644 --- a/advisories/unreviewed/2022/05/GHSA-26pq-368c-c8f2/GHSA-26pq-368c-c8f2.json +++ b/advisories/unreviewed/2022/05/GHSA-26pq-368c-c8f2/GHSA-26pq-368c-c8f2.json @@ -7,12 +7,8 @@ "CVE-2005-3393" ], "details": "Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-272r-gvjr-j5qh/GHSA-272r-gvjr-j5qh.json b/advisories/unreviewed/2022/05/GHSA-272r-gvjr-j5qh/GHSA-272r-gvjr-j5qh.json index 8761fc26659..51b9d459e15 100644 --- a/advisories/unreviewed/2022/05/GHSA-272r-gvjr-j5qh/GHSA-272r-gvjr-j5qh.json +++ b/advisories/unreviewed/2022/05/GHSA-272r-gvjr-j5qh/GHSA-272r-gvjr-j5qh.json @@ -7,12 +7,8 @@ "CVE-2021-39268" ], "details": "Persistent cross-site scripting (XSS) in the web interface of SuiteCRM before 7.11.19 allows a remote attacker to introduce arbitrary JavaScript via malicious SVG files. This occurs because the clean_file_output protection mechanism can be bypassed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-276f-9fcq-7wmm/GHSA-276f-9fcq-7wmm.json b/advisories/unreviewed/2022/05/GHSA-276f-9fcq-7wmm/GHSA-276f-9fcq-7wmm.json index 9ac27f369c4..02a75ef0565 100644 --- a/advisories/unreviewed/2022/05/GHSA-276f-9fcq-7wmm/GHSA-276f-9fcq-7wmm.json +++ b/advisories/unreviewed/2022/05/GHSA-276f-9fcq-7wmm/GHSA-276f-9fcq-7wmm.json @@ -7,12 +7,8 @@ "CVE-2020-18734" ], "details": "A stack buffer overflow in /ddsi/q_bitset.h of Eclipse IOT Cyclone DDS Project v0.1.0 causes the DDS subscriber server to crash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-28gp-x78c-fqxr/GHSA-28gp-x78c-fqxr.json b/advisories/unreviewed/2022/05/GHSA-28gp-x78c-fqxr/GHSA-28gp-x78c-fqxr.json index 54af9b25f0f..678686c806c 100644 --- a/advisories/unreviewed/2022/05/GHSA-28gp-x78c-fqxr/GHSA-28gp-x78c-fqxr.json +++ b/advisories/unreviewed/2022/05/GHSA-28gp-x78c-fqxr/GHSA-28gp-x78c-fqxr.json @@ -7,12 +7,8 @@ "CVE-2005-3141" ], "details": "Cerulean Studios Trillian 3.0 allows remote attackers to cause a denial of service (crash) via a reverse direct connection from a different client, as demonstrated using LICQ.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2994-xw3p-6772/GHSA-2994-xw3p-6772.json b/advisories/unreviewed/2022/05/GHSA-2994-xw3p-6772/GHSA-2994-xw3p-6772.json index 234e48ef990..9896621409b 100644 --- a/advisories/unreviewed/2022/05/GHSA-2994-xw3p-6772/GHSA-2994-xw3p-6772.json +++ b/advisories/unreviewed/2022/05/GHSA-2994-xw3p-6772/GHSA-2994-xw3p-6772.json @@ -7,12 +7,8 @@ "CVE-2005-3150" ], "details": "Format string vulnerability in the Log_Flush function in Weex 2.6.1.5, 2.6.1, and possibly other versions allows remote FTP servers to execute arbitrary code via format strings in filenames.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-29c2-6v7h-58vc/GHSA-29c2-6v7h-58vc.json b/advisories/unreviewed/2022/05/GHSA-29c2-6v7h-58vc/GHSA-29c2-6v7h-58vc.json index ff096e87bf8..1566fe55373 100644 --- a/advisories/unreviewed/2022/05/GHSA-29c2-6v7h-58vc/GHSA-29c2-6v7h-58vc.json +++ b/advisories/unreviewed/2022/05/GHSA-29c2-6v7h-58vc/GHSA-29c2-6v7h-58vc.json @@ -7,12 +7,8 @@ "CVE-2005-3103" ], "details": "Cross-site scripting (XSS) vulnerability in Movable Type before 3.2 allows remote attackers to inject arbitrary web script or HTML via the (1) title, (2) category, (3) body, (4) extended body, and (5) excerpt form fields in new blog entries.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-29fm-9qqr-x2gp/GHSA-29fm-9qqr-x2gp.json b/advisories/unreviewed/2022/05/GHSA-29fm-9qqr-x2gp/GHSA-29fm-9qqr-x2gp.json index 83d1bd86499..c6658e2b371 100644 --- a/advisories/unreviewed/2022/05/GHSA-29fm-9qqr-x2gp/GHSA-29fm-9qqr-x2gp.json +++ b/advisories/unreviewed/2022/05/GHSA-29fm-9qqr-x2gp/GHSA-29fm-9qqr-x2gp.json @@ -7,12 +7,8 @@ "CVE-2021-31227" ], "details": "An issue was discovered in HCC embedded InterNiche 4.0.1. A potential heap buffer overflow exists in the code that parses the HTTP POST request, due to an incorrect signed integer comparison. This vulnerability requires the attacker to send a malformed HTTP packet with a negative Content-Length, which bypasses the size checks and results in a large heap overflow in the wbs_multidata buffer copy.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-29vp-w2x5-2cg4/GHSA-29vp-w2x5-2cg4.json b/advisories/unreviewed/2022/05/GHSA-29vp-w2x5-2cg4/GHSA-29vp-w2x5-2cg4.json index df077ad68d4..678edd3b790 100644 --- a/advisories/unreviewed/2022/05/GHSA-29vp-w2x5-2cg4/GHSA-29vp-w2x5-2cg4.json +++ b/advisories/unreviewed/2022/05/GHSA-29vp-w2x5-2cg4/GHSA-29vp-w2x5-2cg4.json @@ -7,12 +7,8 @@ "CVE-2005-3222" ], "details": "Multiple interpretation error in unspecified versions of VBA32 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2c75-m9vm-4fvh/GHSA-2c75-m9vm-4fvh.json b/advisories/unreviewed/2022/05/GHSA-2c75-m9vm-4fvh/GHSA-2c75-m9vm-4fvh.json index 76f2d819cad..cd4bf5bece3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c75-m9vm-4fvh/GHSA-2c75-m9vm-4fvh.json +++ b/advisories/unreviewed/2022/05/GHSA-2c75-m9vm-4fvh/GHSA-2c75-m9vm-4fvh.json @@ -7,12 +7,8 @@ "CVE-2005-3189" ], "details": "Directory traversal vulnerability in Qualcomm WorldMail IMAP Server allows remote attackers to read arbitrary email messages via \"..\" sequences in the SELECT command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2cf6-2r36-79q7/GHSA-2cf6-2r36-79q7.json b/advisories/unreviewed/2022/05/GHSA-2cf6-2r36-79q7/GHSA-2cf6-2r36-79q7.json index 4f0203834f7..977da1700e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cf6-2r36-79q7/GHSA-2cf6-2r36-79q7.json +++ b/advisories/unreviewed/2022/05/GHSA-2cf6-2r36-79q7/GHSA-2cf6-2r36-79q7.json @@ -7,12 +7,8 @@ "CVE-2021-28590" ], "details": "Adobe Media Encoder version 15.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cm4-w9vc-vwpc/GHSA-2cm4-w9vc-vwpc.json b/advisories/unreviewed/2022/05/GHSA-2cm4-w9vc-vwpc/GHSA-2cm4-w9vc-vwpc.json index 686771e0fb3..df645c7e361 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cm4-w9vc-vwpc/GHSA-2cm4-w9vc-vwpc.json +++ b/advisories/unreviewed/2022/05/GHSA-2cm4-w9vc-vwpc/GHSA-2cm4-w9vc-vwpc.json @@ -7,12 +7,8 @@ "CVE-2005-3301" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4-pl3 allow remote attackers to inject arbitrary web script or HTML via certain arguments to (1) left.php, (2) queryframe.php, or (3) server_databases.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2cr6-rmv6-pcfm/GHSA-2cr6-rmv6-pcfm.json b/advisories/unreviewed/2022/05/GHSA-2cr6-rmv6-pcfm/GHSA-2cr6-rmv6-pcfm.json index 89be1ae1b76..2cd6ad3c4e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cr6-rmv6-pcfm/GHSA-2cr6-rmv6-pcfm.json +++ b/advisories/unreviewed/2022/05/GHSA-2cr6-rmv6-pcfm/GHSA-2cr6-rmv6-pcfm.json @@ -7,12 +7,8 @@ "CVE-2021-28635" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by a use-after-free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cvv-9494-ghp3/GHSA-2cvv-9494-ghp3.json b/advisories/unreviewed/2022/05/GHSA-2cvv-9494-ghp3/GHSA-2cvv-9494-ghp3.json index eae5839cc8e..ace1887c0a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cvv-9494-ghp3/GHSA-2cvv-9494-ghp3.json +++ b/advisories/unreviewed/2022/05/GHSA-2cvv-9494-ghp3/GHSA-2cvv-9494-ghp3.json @@ -7,12 +7,8 @@ "CVE-2005-3180" ], "details": "The Orinoco driver (orinoco.c) in Linux kernel 2.6.13 and earlier does not properly clear memory from a previously used packet whose length is increased, which allows remote attackers to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -140,9 +136,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2fj8-grv4-35fw/GHSA-2fj8-grv4-35fw.json b/advisories/unreviewed/2022/05/GHSA-2fj8-grv4-35fw/GHSA-2fj8-grv4-35fw.json index 2875c67db92..ae916a3ebad 100644 --- a/advisories/unreviewed/2022/05/GHSA-2fj8-grv4-35fw/GHSA-2fj8-grv4-35fw.json +++ b/advisories/unreviewed/2022/05/GHSA-2fj8-grv4-35fw/GHSA-2fj8-grv4-35fw.json @@ -7,12 +7,8 @@ "CVE-2005-3065" ], "details": "MultiTheftAuto 0.5 patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted command 40 that causes a -1 length to be used and triggers an out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g68-q4wg-9q24/GHSA-2g68-q4wg-9q24.json b/advisories/unreviewed/2022/05/GHSA-2g68-q4wg-9q24/GHSA-2g68-q4wg-9q24.json index 084448d9f20..84b752b33e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g68-q4wg-9q24/GHSA-2g68-q4wg-9q24.json +++ b/advisories/unreviewed/2022/05/GHSA-2g68-q4wg-9q24/GHSA-2g68-q4wg-9q24.json @@ -7,12 +7,8 @@ "CVE-2021-20765" ], "details": "Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2gfm-xchp-vj2m/GHSA-2gfm-xchp-vj2m.json b/advisories/unreviewed/2022/05/GHSA-2gfm-xchp-vj2m/GHSA-2gfm-xchp-vj2m.json index e1f027a9482..9d6cdb5dac6 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gfm-xchp-vj2m/GHSA-2gfm-xchp-vj2m.json +++ b/advisories/unreviewed/2022/05/GHSA-2gfm-xchp-vj2m/GHSA-2gfm-xchp-vj2m.json @@ -7,12 +7,8 @@ "CVE-2005-3339" ], "details": "Mantis before 0.19.3 caches the User ID longer than necessary, which has unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2hg5-gxv6-8v58/GHSA-2hg5-gxv6-8v58.json b/advisories/unreviewed/2022/05/GHSA-2hg5-gxv6-8v58/GHSA-2hg5-gxv6-8v58.json index b21b06f1497..d26a8f32ad8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hg5-gxv6-8v58/GHSA-2hg5-gxv6-8v58.json +++ b/advisories/unreviewed/2022/05/GHSA-2hg5-gxv6-8v58/GHSA-2hg5-gxv6-8v58.json @@ -7,12 +7,8 @@ "CVE-2020-25767" ], "details": "An issue was discovered in HCC Embedded NicheStack IPv4 4.1. The dnc_copy_in routine for parsing DNS domain names does not check whether a domain name compression pointer is pointing within the bounds of the packet (e.g., forward compression pointer jumps are allowed), which leads to an Out-of-bounds Read, and a Denial-of-Service as a consequence.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2j7c-c562-m564/GHSA-2j7c-c562-m564.json b/advisories/unreviewed/2022/05/GHSA-2j7c-c562-m564/GHSA-2j7c-c562-m564.json index d0706be0987..1f35e5e9439 100644 --- a/advisories/unreviewed/2022/05/GHSA-2j7c-c562-m564/GHSA-2j7c-c562-m564.json +++ b/advisories/unreviewed/2022/05/GHSA-2j7c-c562-m564/GHSA-2j7c-c562-m564.json @@ -7,12 +7,8 @@ "CVE-2005-3010" ], "details": "Direct static code injection vulnerability in the flood protection feature in inc/shows.inc.php in CuteNews 1.4.0 and earlier allows remote attackers to execute arbitrary PHP code via the HTTP_CLIENT_IP header (Client-Ip), which is injected into data/flood.db.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2jh9-g527-93f7/GHSA-2jh9-g527-93f7.json b/advisories/unreviewed/2022/05/GHSA-2jh9-g527-93f7/GHSA-2jh9-g527-93f7.json index bd6a5b01e98..387d52477b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jh9-g527-93f7/GHSA-2jh9-g527-93f7.json +++ b/advisories/unreviewed/2022/05/GHSA-2jh9-g527-93f7/GHSA-2jh9-g527-93f7.json @@ -7,12 +7,8 @@ "CVE-2020-18470" ], "details": "Stored cross-site scripting (XSS) vulnerability in the Name of application field found in the General Configuration page in Rukovoditel 2.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted website name by doing an authenticated POST HTTP request to rukovoditel_2.4.1/install/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jpr-j4c2-5fwj/GHSA-2jpr-j4c2-5fwj.json b/advisories/unreviewed/2022/05/GHSA-2jpr-j4c2-5fwj/GHSA-2jpr-j4c2-5fwj.json index d9938082173..3321055d714 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jpr-j4c2-5fwj/GHSA-2jpr-j4c2-5fwj.json +++ b/advisories/unreviewed/2022/05/GHSA-2jpr-j4c2-5fwj/GHSA-2jpr-j4c2-5fwj.json @@ -7,12 +7,8 @@ "CVE-2005-3408" ], "details": "SQL injection vulnerability in news.php in gCards version 1.43 allows remote attackers to execute arbitrary SQL commands via the limit parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2mwx-fmf7-pp2w/GHSA-2mwx-fmf7-pp2w.json b/advisories/unreviewed/2022/05/GHSA-2mwx-fmf7-pp2w/GHSA-2mwx-fmf7-pp2w.json index aed9d259d4f..67e5f8cf7b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mwx-fmf7-pp2w/GHSA-2mwx-fmf7-pp2w.json +++ b/advisories/unreviewed/2022/05/GHSA-2mwx-fmf7-pp2w/GHSA-2mwx-fmf7-pp2w.json @@ -7,12 +7,8 @@ "CVE-2005-3311" ], "details": "BMC Software Control-M 6.1.03 for Solaris, and possibly other platforms, allows local users to overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2p8x-vw9x-9qgc/GHSA-2p8x-vw9x-9qgc.json b/advisories/unreviewed/2022/05/GHSA-2p8x-vw9x-9qgc/GHSA-2p8x-vw9x-9qgc.json index 32925e1f44e..cb887e42fbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-2p8x-vw9x-9qgc/GHSA-2p8x-vw9x-9qgc.json +++ b/advisories/unreviewed/2022/05/GHSA-2p8x-vw9x-9qgc/GHSA-2p8x-vw9x-9qgc.json @@ -7,12 +7,8 @@ "CVE-2005-3067" ], "details": "Cross-site scripting (XSS) vulnerability in perldiver.cgi in PerlDiver 2.x allows remote attackers to inject arbitrary web script or HTML via the module parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2pq6-j348-rpc3/GHSA-2pq6-j348-rpc3.json b/advisories/unreviewed/2022/05/GHSA-2pq6-j348-rpc3/GHSA-2pq6-j348-rpc3.json index 8a6d3f9a40f..181a6630f42 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pq6-j348-rpc3/GHSA-2pq6-j348-rpc3.json +++ b/advisories/unreviewed/2022/05/GHSA-2pq6-j348-rpc3/GHSA-2pq6-j348-rpc3.json @@ -7,12 +7,8 @@ "CVE-2005-3316" ], "details": "The installation of ON Symantec Discovery 4.5.x and Symantec Discovery 6.0 creates the (1) DiscoveryWeb and (2) DiscoveryRO database accounts with null passwords, which could allow attackers to gain privileges or prevent Discovery from running by setting another password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2pvr-f889-xjvm/GHSA-2pvr-f889-xjvm.json b/advisories/unreviewed/2022/05/GHSA-2pvr-f889-xjvm/GHSA-2pvr-f889-xjvm.json index d05adaba8f0..7fcd6de9243 100644 --- a/advisories/unreviewed/2022/05/GHSA-2pvr-f889-xjvm/GHSA-2pvr-f889-xjvm.json +++ b/advisories/unreviewed/2022/05/GHSA-2pvr-f889-xjvm/GHSA-2pvr-f889-xjvm.json @@ -7,12 +7,8 @@ "CVE-2005-3196" ], "details": "Planet Technology Corp FGSW2402RS switch with firmware 1.2 has a default password, which allows attackers with physical access to the device's serial port to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2q2j-p926-8hw7/GHSA-2q2j-p926-8hw7.json b/advisories/unreviewed/2022/05/GHSA-2q2j-p926-8hw7/GHSA-2q2j-p926-8hw7.json index 2deabce2374..b05fa97ce21 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q2j-p926-8hw7/GHSA-2q2j-p926-8hw7.json +++ b/advisories/unreviewed/2022/05/GHSA-2q2j-p926-8hw7/GHSA-2q2j-p926-8hw7.json @@ -7,12 +7,8 @@ "CVE-2005-3017" ], "details": "PHP file inclusion vulnerability in index.php in Content2Web 1.0.1 allows remote attackers to include arbitrary files via the show parameter, which can lead to resultant errors such as path disclosure, SQL error messages, and cross-site scripting (XSS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2q9p-89g6-mqmh/GHSA-2q9p-89g6-mqmh.json b/advisories/unreviewed/2022/05/GHSA-2q9p-89g6-mqmh/GHSA-2q9p-89g6-mqmh.json index e7f8c9a3593..2cba866181f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q9p-89g6-mqmh/GHSA-2q9p-89g6-mqmh.json +++ b/advisories/unreviewed/2022/05/GHSA-2q9p-89g6-mqmh/GHSA-2q9p-89g6-mqmh.json @@ -7,12 +7,8 @@ "CVE-2005-3303" ], "details": "The FSG unpacker (fsg.c) in Clam AntiVirus (ClamAV) 0.80 through 0.87 allows remote attackers to cause \"memory corruption\" and execute arbitrary code via a crafted FSG 1.33 file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qfc-qgpf-xjw4/GHSA-2qfc-qgpf-xjw4.json b/advisories/unreviewed/2022/05/GHSA-2qfc-qgpf-xjw4/GHSA-2qfc-qgpf-xjw4.json index c932f546ea4..5ee665289a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qfc-qgpf-xjw4/GHSA-2qfc-qgpf-xjw4.json +++ b/advisories/unreviewed/2022/05/GHSA-2qfc-qgpf-xjw4/GHSA-2qfc-qgpf-xjw4.json @@ -7,12 +7,8 @@ "CVE-2005-3199" ], "details": "Multiple SQL injection vulnerabilities in aradmin.asp for aspReady FAQ allow remote attackers to execute arbitrary SQL commands, possibly via the (1) txtLogin and (2) txtPassword parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qx4-67q8-fwg5/GHSA-2qx4-67q8-fwg5.json b/advisories/unreviewed/2022/05/GHSA-2qx4-67q8-fwg5/GHSA-2qx4-67q8-fwg5.json index 6da1c70c2de..51b098cf0e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qx4-67q8-fwg5/GHSA-2qx4-67q8-fwg5.json +++ b/advisories/unreviewed/2022/05/GHSA-2qx4-67q8-fwg5/GHSA-2qx4-67q8-fwg5.json @@ -7,12 +7,8 @@ "CVE-2021-24553" ], "details": "The Timeline Calendar WordPress plugin through 1.2 does not sanitise, validate or escape the edit GET parameter before using it in a SQL statement when editing events, leading to an authenticated SQL injection issue. Other SQL Injections are also present in the plugin", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2qx6-333j-9r92/GHSA-2qx6-333j-9r92.json b/advisories/unreviewed/2022/05/GHSA-2qx6-333j-9r92/GHSA-2qx6-333j-9r92.json index 0b4e1bedc21..7e0a5048e5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qx6-333j-9r92/GHSA-2qx6-333j-9r92.json +++ b/advisories/unreviewed/2022/05/GHSA-2qx6-333j-9r92/GHSA-2qx6-333j-9r92.json @@ -7,12 +7,8 @@ "CVE-2005-3281" ], "details": "Directory traversal vulnerability in NukeFixes 3.1 for PHP-Nuke 7.8 allows remote attackers to include arbitrary files via the file parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2r58-h4xx-4q96/GHSA-2r58-h4xx-4q96.json b/advisories/unreviewed/2022/05/GHSA-2r58-h4xx-4q96/GHSA-2r58-h4xx-4q96.json index 33257ae4b8e..0d60045153e 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r58-h4xx-4q96/GHSA-2r58-h4xx-4q96.json +++ b/advisories/unreviewed/2022/05/GHSA-2r58-h4xx-4q96/GHSA-2r58-h4xx-4q96.json @@ -7,12 +7,8 @@ "CVE-2005-3146" ], "details": "StoreBackup before 1.19 allows local users to perform unauthorized operations on arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2r5f-h84q-vwr7/GHSA-2r5f-h84q-vwr7.json b/advisories/unreviewed/2022/05/GHSA-2r5f-h84q-vwr7/GHSA-2r5f-h84q-vwr7.json index 65a394f2fe9..5c9382c51f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-2r5f-h84q-vwr7/GHSA-2r5f-h84q-vwr7.json +++ b/advisories/unreviewed/2022/05/GHSA-2r5f-h84q-vwr7/GHSA-2r5f-h84q-vwr7.json @@ -7,12 +7,8 @@ "CVE-2021-0593" ], "details": "In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receiver due to a confused deputy. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-179386068", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rf3-297f-9pr5/GHSA-2rf3-297f-9pr5.json b/advisories/unreviewed/2022/05/GHSA-2rf3-297f-9pr5/GHSA-2rf3-297f-9pr5.json index ca5168083f5..bc1355f86bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rf3-297f-9pr5/GHSA-2rf3-297f-9pr5.json +++ b/advisories/unreviewed/2022/05/GHSA-2rf3-297f-9pr5/GHSA-2rf3-297f-9pr5.json @@ -7,12 +7,8 @@ "CVE-2005-2962" ], "details": "The post-installation script for ntlmaps before 0.9.9 sets world-readable permissions for the configuration file, which allows local users to obtain the username and password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2vg2-f293-3rc8/GHSA-2vg2-f293-3rc8.json b/advisories/unreviewed/2022/05/GHSA-2vg2-f293-3rc8/GHSA-2vg2-f293-3rc8.json index 5de0fa3e952..ff75be283cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vg2-f293-3rc8/GHSA-2vg2-f293-3rc8.json +++ b/advisories/unreviewed/2022/05/GHSA-2vg2-f293-3rc8/GHSA-2vg2-f293-3rc8.json @@ -7,12 +7,8 @@ "CVE-2021-21592" ], "details": "Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x improperly handle an exceptional condition. A remote low privileged user could potentially exploit this vulnerability, leading to unauthorized information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2vpg-h3vh-6g5m/GHSA-2vpg-h3vh-6g5m.json b/advisories/unreviewed/2022/05/GHSA-2vpg-h3vh-6g5m/GHSA-2vpg-h3vh-6g5m.json index d80d29ac000..7d351e731de 100644 --- a/advisories/unreviewed/2022/05/GHSA-2vpg-h3vh-6g5m/GHSA-2vpg-h3vh-6g5m.json +++ b/advisories/unreviewed/2022/05/GHSA-2vpg-h3vh-6g5m/GHSA-2vpg-h3vh-6g5m.json @@ -7,12 +7,8 @@ "CVE-2005-3187" ], "details": "The listening daemon in Blue Coat Systems Inc. WinProxy before 6.1a allows remote attackers to cause a denial of service (crash) via a long HTTP request that causes an out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2w7x-w5p4-w2mw/GHSA-2w7x-w5p4-w2mw.json b/advisories/unreviewed/2022/05/GHSA-2w7x-w5p4-w2mw/GHSA-2w7x-w5p4-w2mw.json index cc895bf935a..43a9d8dad00 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w7x-w5p4-w2mw/GHSA-2w7x-w5p4-w2mw.json +++ b/advisories/unreviewed/2022/05/GHSA-2w7x-w5p4-w2mw/GHSA-2w7x-w5p4-w2mw.json @@ -7,12 +7,8 @@ "CVE-2005-2966" ], "details": "The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier allows user-assisted attackers to execute arbitrary commands via a crafted SVG file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wc8-2hmm-w3qm/GHSA-2wc8-2hmm-w3qm.json b/advisories/unreviewed/2022/05/GHSA-2wc8-2hmm-w3qm/GHSA-2wc8-2hmm-w3qm.json index 09827e56289..f7de960eec1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wc8-2hmm-w3qm/GHSA-2wc8-2hmm-w3qm.json +++ b/advisories/unreviewed/2022/05/GHSA-2wc8-2hmm-w3qm/GHSA-2wc8-2hmm-w3qm.json @@ -7,12 +7,8 @@ "CVE-2005-2894" ], "details": "Cross-site scripting (XSS) vulnerability in the user registration in PBLang 4.65, and possibly earlier versions, allows remote attackers to inject arbitrary web script or PHP via the location field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2xjc-mxx3-gg7g/GHSA-2xjc-mxx3-gg7g.json b/advisories/unreviewed/2022/05/GHSA-2xjc-mxx3-gg7g/GHSA-2xjc-mxx3-gg7g.json index c598d44840f..d871e9679a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xjc-mxx3-gg7g/GHSA-2xjc-mxx3-gg7g.json +++ b/advisories/unreviewed/2022/05/GHSA-2xjc-mxx3-gg7g/GHSA-2xjc-mxx3-gg7g.json @@ -7,12 +7,8 @@ "CVE-2005-3131" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MERAK Mail Server 8.2.4r with Icewarp Web Mail 5.5.1, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to blank.html, or the createdataCX parameter to (2) calendar_d.html, (3) calendar_m.html, or (4) calendar_w.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2xwg-9gx4-w8wf/GHSA-2xwg-9gx4-w8wf.json b/advisories/unreviewed/2022/05/GHSA-2xwg-9gx4-w8wf/GHSA-2xwg-9gx4-w8wf.json index a0c74877c8d..9684f098476 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xwg-9gx4-w8wf/GHSA-2xwg-9gx4-w8wf.json +++ b/advisories/unreviewed/2022/05/GHSA-2xwg-9gx4-w8wf/GHSA-2xwg-9gx4-w8wf.json @@ -7,12 +7,8 @@ "CVE-2005-3388" ], "details": "Cross-site scripting (XSS) vulnerability in the phpinfo function in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5 allows remote attackers to inject arbitrary web script or HTML via a crafted URL with a \"stacked array assignment.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -148,9 +144,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-33r9-rrvf-c2gq/GHSA-33r9-rrvf-c2gq.json b/advisories/unreviewed/2022/05/GHSA-33r9-rrvf-c2gq/GHSA-33r9-rrvf-c2gq.json index 399a817cb54..2202f12a4fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-33r9-rrvf-c2gq/GHSA-33r9-rrvf-c2gq.json +++ b/advisories/unreviewed/2022/05/GHSA-33r9-rrvf-c2gq/GHSA-33r9-rrvf-c2gq.json @@ -7,12 +7,8 @@ "CVE-2020-18065" ], "details": "Cross Site Scripting (XSS) vulnerability exists in PopojiCMS 2.0.1 in admin.php?mod=menumanager--------- edit menu.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-34qx-mf2g-mjc4/GHSA-34qx-mf2g-mjc4.json b/advisories/unreviewed/2022/05/GHSA-34qx-mf2g-mjc4/GHSA-34qx-mf2g-mjc4.json index c8d99c88223..667bf29b69b 100644 --- a/advisories/unreviewed/2022/05/GHSA-34qx-mf2g-mjc4/GHSA-34qx-mf2g-mjc4.json +++ b/advisories/unreviewed/2022/05/GHSA-34qx-mf2g-mjc4/GHSA-34qx-mf2g-mjc4.json @@ -7,12 +7,8 @@ "CVE-2005-3387" ], "details": "The startup script in packages/RedHat/ntop.init in ntop before 3.2, when ntop.conf is writable by users besides root, creates temporary files insecurely, which allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-356m-64j5-84f5/GHSA-356m-64j5-84f5.json b/advisories/unreviewed/2022/05/GHSA-356m-64j5-84f5/GHSA-356m-64j5-84f5.json index d9c23f4dc70..9f10b052891 100644 --- a/advisories/unreviewed/2022/05/GHSA-356m-64j5-84f5/GHSA-356m-64j5-84f5.json +++ b/advisories/unreviewed/2022/05/GHSA-356m-64j5-84f5/GHSA-356m-64j5-84f5.json @@ -7,12 +7,8 @@ "CVE-2021-24497" ], "details": "The Giveaway WordPress plugin through 1.2.2 is vulnerable to an SQL Injection issue which allows an administrative user to execute arbitrary SQL commands via the $post_id on the options.php page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36wv-rwmv-5hf6/GHSA-36wv-rwmv-5hf6.json b/advisories/unreviewed/2022/05/GHSA-36wv-rwmv-5hf6/GHSA-36wv-rwmv-5hf6.json index 46273e7739f..6ac4d78b087 100644 --- a/advisories/unreviewed/2022/05/GHSA-36wv-rwmv-5hf6/GHSA-36wv-rwmv-5hf6.json +++ b/advisories/unreviewed/2022/05/GHSA-36wv-rwmv-5hf6/GHSA-36wv-rwmv-5hf6.json @@ -7,12 +7,8 @@ "CVE-2021-24551" ], "details": "The Edit Comments WordPress plugin through 0.3 does not sanitise, validate or escape the jal_edit_comments GET parameter before using it in a SQL statement, leading to a SQL injection issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36x9-48hm-r28q/GHSA-36x9-48hm-r28q.json b/advisories/unreviewed/2022/05/GHSA-36x9-48hm-r28q/GHSA-36x9-48hm-r28q.json index 43a5d86443b..43ac59a150c 100644 --- a/advisories/unreviewed/2022/05/GHSA-36x9-48hm-r28q/GHSA-36x9-48hm-r28q.json +++ b/advisories/unreviewed/2022/05/GHSA-36x9-48hm-r28q/GHSA-36x9-48hm-r28q.json @@ -7,12 +7,8 @@ "CVE-2021-28001" ], "details": "A cross-site scripting vulnerability was discovered in the Comments parameter in Textpattern CMS 4.8.4 which allows remote attackers to execute arbitrary code via a crafted payload entered into the URL field. The vulnerability is triggered by users visiting https://site.com/articles/welcome-to-your-site#comments-head.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-36xg-989x-49mx/GHSA-36xg-989x-49mx.json b/advisories/unreviewed/2022/05/GHSA-36xg-989x-49mx/GHSA-36xg-989x-49mx.json index 1f75534094c..a22316f5e3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-36xg-989x-49mx/GHSA-36xg-989x-49mx.json +++ b/advisories/unreviewed/2022/05/GHSA-36xg-989x-49mx/GHSA-36xg-989x-49mx.json @@ -7,12 +7,8 @@ "CVE-2005-2938" ], "details": "Unquoted Windows search path vulnerability in iTunesHelper.exe in iTunes 4.7.1.30 and iTunes 5 for Windows might allow local users to gain privileges via a malicious C:\\program.exe file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-37p7-4jpq-5264/GHSA-37p7-4jpq-5264.json b/advisories/unreviewed/2022/05/GHSA-37p7-4jpq-5264/GHSA-37p7-4jpq-5264.json index f55ee8d490a..a8ec8380f62 100644 --- a/advisories/unreviewed/2022/05/GHSA-37p7-4jpq-5264/GHSA-37p7-4jpq-5264.json +++ b/advisories/unreviewed/2022/05/GHSA-37p7-4jpq-5264/GHSA-37p7-4jpq-5264.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-37rh-7pvh-rmrm/GHSA-37rh-7pvh-rmrm.json b/advisories/unreviewed/2022/05/GHSA-37rh-7pvh-rmrm/GHSA-37rh-7pvh-rmrm.json index 86406f9eca4..9ab22b823b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-37rh-7pvh-rmrm/GHSA-37rh-7pvh-rmrm.json +++ b/advisories/unreviewed/2022/05/GHSA-37rh-7pvh-rmrm/GHSA-37rh-7pvh-rmrm.json @@ -7,12 +7,8 @@ "CVE-2005-3465" ], "details": "Unspecified vulnerability in JDEdwards HTML Server in Oracle EnterpriseOne 8.94 OneWorld XE up to 8.95_B1, 8.94_Q1, and SP23_K1 has unknown impact and attack vectors, as identified by Oracle Vuln# JDE01.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-37v6-6287-c89m/GHSA-37v6-6287-c89m.json b/advisories/unreviewed/2022/05/GHSA-37v6-6287-c89m/GHSA-37v6-6287-c89m.json index 93e51eeeee9..1729d6fd053 100644 --- a/advisories/unreviewed/2022/05/GHSA-37v6-6287-c89m/GHSA-37v6-6287-c89m.json +++ b/advisories/unreviewed/2022/05/GHSA-37v6-6287-c89m/GHSA-37v6-6287-c89m.json @@ -7,12 +7,8 @@ "CVE-2005-2888" ], "details": "Multiple SQL injection vulnerabilities in MyBulletinBoard (MyBB) Preview Release 2 allow remote attackers to execute arbitrary SQL commands via the (1) fid parameter to misc.php or (2) Content-Disposition field in the HTTP header to newreply.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-37xx-h4m8-x8wx/GHSA-37xx-h4m8-x8wx.json b/advisories/unreviewed/2022/05/GHSA-37xx-h4m8-x8wx/GHSA-37xx-h4m8-x8wx.json index 91896c8efc8..1704435797d 100644 --- a/advisories/unreviewed/2022/05/GHSA-37xx-h4m8-x8wx/GHSA-37xx-h4m8-x8wx.json +++ b/advisories/unreviewed/2022/05/GHSA-37xx-h4m8-x8wx/GHSA-37xx-h4m8-x8wx.json @@ -7,12 +7,8 @@ "CVE-2005-2817" ], "details": "Simple Machines Forum (SMF) 1-0-5 and earlier supports the use of URLs for avatar images, which allows remote attackers to monitor sensitive information of forum visitors such as IP address and user agent, as demonstrated using a PHP script on a malicious server.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-382h-7ph3-qx8r/GHSA-382h-7ph3-qx8r.json b/advisories/unreviewed/2022/05/GHSA-382h-7ph3-qx8r/GHSA-382h-7ph3-qx8r.json index 0432474d978..818ee9d9ef8 100644 --- a/advisories/unreviewed/2022/05/GHSA-382h-7ph3-qx8r/GHSA-382h-7ph3-qx8r.json +++ b/advisories/unreviewed/2022/05/GHSA-382h-7ph3-qx8r/GHSA-382h-7ph3-qx8r.json @@ -7,12 +7,8 @@ "CVE-2005-3442" ], "details": "Multiple unspecified vulnerabilities in Oracle Database Server 8i up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB09 in Export, (2) DB11 in Materialized Views, and (3) DB16 in Security Service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-386w-c86g-88qj/GHSA-386w-c86g-88qj.json b/advisories/unreviewed/2022/05/GHSA-386w-c86g-88qj/GHSA-386w-c86g-88qj.json index f69d9ecab4d..1268b7e09dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-386w-c86g-88qj/GHSA-386w-c86g-88qj.json +++ b/advisories/unreviewed/2022/05/GHSA-386w-c86g-88qj/GHSA-386w-c86g-88qj.json @@ -7,12 +7,8 @@ "CVE-2005-3309" ], "details": "Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in detail.php and the catid parameter in (2) get.php and (3) index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-38h8-4x5x-cvpr/GHSA-38h8-4x5x-cvpr.json b/advisories/unreviewed/2022/05/GHSA-38h8-4x5x-cvpr/GHSA-38h8-4x5x-cvpr.json index 2d31a120ae2..3b2778424a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-38h8-4x5x-cvpr/GHSA-38h8-4x5x-cvpr.json +++ b/advisories/unreviewed/2022/05/GHSA-38h8-4x5x-cvpr/GHSA-38h8-4x5x-cvpr.json @@ -7,12 +7,8 @@ "CVE-2005-3052" ], "details": "SQL injection vulnerability in module/down.inc.php in jportal 2.3.1 allows remote attackers to execute arbitrary SQL commands via the search field to download.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-393g-7274-4jmv/GHSA-393g-7274-4jmv.json b/advisories/unreviewed/2022/05/GHSA-393g-7274-4jmv/GHSA-393g-7274-4jmv.json index 7160dce2f18..d27bbd69cbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-393g-7274-4jmv/GHSA-393g-7274-4jmv.json +++ b/advisories/unreviewed/2022/05/GHSA-393g-7274-4jmv/GHSA-393g-7274-4jmv.json @@ -7,12 +7,8 @@ "CVE-2021-39367" ], "details": "Canon Oce Print Exec Workgroup 1.3.2 allows Host header injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-398j-37xh-xw92/GHSA-398j-37xh-xw92.json b/advisories/unreviewed/2022/05/GHSA-398j-37xh-xw92/GHSA-398j-37xh-xw92.json index 9f652166cad..776b7fa5e4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-398j-37xh-xw92/GHSA-398j-37xh-xw92.json +++ b/advisories/unreviewed/2022/05/GHSA-398j-37xh-xw92/GHSA-398j-37xh-xw92.json @@ -7,12 +7,8 @@ "CVE-2005-3159" ], "details": "SQL injection vulnerability in messages.php in PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the msg_view parameter, a different vulnerability than CVE-2005-3157 and CVE-2005-3158.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-39jg-wq6f-28mg/GHSA-39jg-wq6f-28mg.json b/advisories/unreviewed/2022/05/GHSA-39jg-wq6f-28mg/GHSA-39jg-wq6f-28mg.json index 8b273673fb4..4b33c2b6f84 100644 --- a/advisories/unreviewed/2022/05/GHSA-39jg-wq6f-28mg/GHSA-39jg-wq6f-28mg.json +++ b/advisories/unreviewed/2022/05/GHSA-39jg-wq6f-28mg/GHSA-39jg-wq6f-28mg.json @@ -7,12 +7,8 @@ "CVE-2021-35981" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Use-after-free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3f93-cwjr-ppr2/GHSA-3f93-cwjr-ppr2.json b/advisories/unreviewed/2022/05/GHSA-3f93-cwjr-ppr2/GHSA-3f93-cwjr-ppr2.json index 92e2bb29abd..087dfe40c44 100644 --- a/advisories/unreviewed/2022/05/GHSA-3f93-cwjr-ppr2/GHSA-3f93-cwjr-ppr2.json +++ b/advisories/unreviewed/2022/05/GHSA-3f93-cwjr-ppr2/GHSA-3f93-cwjr-ppr2.json @@ -7,12 +7,8 @@ "CVE-2021-28600" ], "details": "Adobe After Effects version 18.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3ff3-mxr5-9gvx/GHSA-3ff3-mxr5-9gvx.json b/advisories/unreviewed/2022/05/GHSA-3ff3-mxr5-9gvx/GHSA-3ff3-mxr5-9gvx.json index a1e60ae5c2b..3b8060dcfcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-3ff3-mxr5-9gvx/GHSA-3ff3-mxr5-9gvx.json +++ b/advisories/unreviewed/2022/05/GHSA-3ff3-mxr5-9gvx/GHSA-3ff3-mxr5-9gvx.json @@ -7,12 +7,8 @@ "CVE-2005-2893" ], "details": "Direct static code injection vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via the username (u parameter), which is directly injected into a file that is later executed upon login.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3gpf-pr7r-gxcf/GHSA-3gpf-pr7r-gxcf.json b/advisories/unreviewed/2022/05/GHSA-3gpf-pr7r-gxcf/GHSA-3gpf-pr7r-gxcf.json index 1554626a0fe..75a28fccbe1 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gpf-pr7r-gxcf/GHSA-3gpf-pr7r-gxcf.json +++ b/advisories/unreviewed/2022/05/GHSA-3gpf-pr7r-gxcf/GHSA-3gpf-pr7r-gxcf.json @@ -7,12 +7,8 @@ "CVE-2005-2847" ], "details": "img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to execute arbitrary commands via shell metacharacters in the f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3gpq-7w2g-px9w/GHSA-3gpq-7w2g-px9w.json b/advisories/unreviewed/2022/05/GHSA-3gpq-7w2g-px9w/GHSA-3gpq-7w2g-px9w.json index 77e026ddacb..af245787332 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gpq-7w2g-px9w/GHSA-3gpq-7w2g-px9w.json +++ b/advisories/unreviewed/2022/05/GHSA-3gpq-7w2g-px9w/GHSA-3gpq-7w2g-px9w.json @@ -7,12 +7,8 @@ "CVE-2005-3391" ], "details": "Multiple vulnerabilities in PHP before 4.4.1 allow remote attackers to bypass safe_mode and open_basedir restrictions via unknown attack vectors in (1) ext/curl and (2) ext/gd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -116,9 +112,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3gpq-hwqc-v65w/GHSA-3gpq-hwqc-v65w.json b/advisories/unreviewed/2022/05/GHSA-3gpq-hwqc-v65w/GHSA-3gpq-hwqc-v65w.json index 385d0ad8f36..546cefd38b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3gpq-hwqc-v65w/GHSA-3gpq-hwqc-v65w.json +++ b/advisories/unreviewed/2022/05/GHSA-3gpq-hwqc-v65w/GHSA-3gpq-hwqc-v65w.json @@ -7,12 +7,8 @@ "CVE-2005-3397" ], "details": "Cross-site scripting (XSS) vulnerability in Comersus BackOffice allows remote attackers to inject arbitrary web script or HTML via the error parameter to comersus_backoffice_supportError.asp. NOTE: the comersus_backoffice_message.asp/message vector is already covered by CVE-2005-2191 item 2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hc7-7vjp-8x77/GHSA-3hc7-7vjp-8x77.json b/advisories/unreviewed/2022/05/GHSA-3hc7-7vjp-8x77/GHSA-3hc7-7vjp-8x77.json index ee8857ef77a..7556476ef6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hc7-7vjp-8x77/GHSA-3hc7-7vjp-8x77.json +++ b/advisories/unreviewed/2022/05/GHSA-3hc7-7vjp-8x77/GHSA-3hc7-7vjp-8x77.json @@ -7,12 +7,8 @@ "CVE-2021-24561" ], "details": "The WP SMS WordPress plugin before 5.4.13 does not sanitise the \"wp_group_name\" parameter before outputting it back in the \"Groups\" page, leading to an Authenticated Stored Cross-Site Scripting issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hf7-p43g-vpv6/GHSA-3hf7-p43g-vpv6.json b/advisories/unreviewed/2022/05/GHSA-3hf7-p43g-vpv6/GHSA-3hf7-p43g-vpv6.json index ec833199640..5911e3a869e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hf7-p43g-vpv6/GHSA-3hf7-p43g-vpv6.json +++ b/advisories/unreviewed/2022/05/GHSA-3hf7-p43g-vpv6/GHSA-3hf7-p43g-vpv6.json @@ -7,12 +7,8 @@ "CVE-2020-15955" ], "details": "In s/qmail through 4.0.07, an active MitM can inject arbitrary plaintext commands into a STARTTLS encrypted session between an SMTP client and s/qmail. This allows e-mail messages and user credentials to be sent to the MitM attacker.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hm8-6x9w-r3fc/GHSA-3hm8-6x9w-r3fc.json b/advisories/unreviewed/2022/05/GHSA-3hm8-6x9w-r3fc/GHSA-3hm8-6x9w-r3fc.json index a2414efe0f7..233bb426907 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hm8-6x9w-r3fc/GHSA-3hm8-6x9w-r3fc.json +++ b/advisories/unreviewed/2022/05/GHSA-3hm8-6x9w-r3fc/GHSA-3hm8-6x9w-r3fc.json @@ -7,12 +7,8 @@ "CVE-2021-36008" ], "details": "Adobe Illustrator version 25.2.3 (and earlier) is affected by an Use-after-free vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to read arbitrary file system information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3hmp-fwjp-mm5f/GHSA-3hmp-fwjp-mm5f.json b/advisories/unreviewed/2022/05/GHSA-3hmp-fwjp-mm5f/GHSA-3hmp-fwjp-mm5f.json index fb3791ae0ec..e2abcac613c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hmp-fwjp-mm5f/GHSA-3hmp-fwjp-mm5f.json +++ b/advisories/unreviewed/2022/05/GHSA-3hmp-fwjp-mm5f/GHSA-3hmp-fwjp-mm5f.json @@ -7,12 +7,8 @@ "CVE-2005-3033" ], "details": "Stack-based buffer overflow in vxWeb 1.1.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hqh-68mp-xqv8/GHSA-3hqh-68mp-xqv8.json b/advisories/unreviewed/2022/05/GHSA-3hqh-68mp-xqv8/GHSA-3hqh-68mp-xqv8.json index 4566b38126b..4e40184a50d 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hqh-68mp-xqv8/GHSA-3hqh-68mp-xqv8.json +++ b/advisories/unreviewed/2022/05/GHSA-3hqh-68mp-xqv8/GHSA-3hqh-68mp-xqv8.json @@ -7,12 +7,8 @@ "CVE-2005-3295" ], "details": "Unspecified vulnerability in HP-UX B.11.23 on Itanium platforms allows local users to cause a denial of service due to a \"specific stack size.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hqj-hr8p-jqxw/GHSA-3hqj-hr8p-jqxw.json b/advisories/unreviewed/2022/05/GHSA-3hqj-hr8p-jqxw/GHSA-3hqj-hr8p-jqxw.json index 5fdcb8a62ed..d74be595b67 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hqj-hr8p-jqxw/GHSA-3hqj-hr8p-jqxw.json +++ b/advisories/unreviewed/2022/05/GHSA-3hqj-hr8p-jqxw/GHSA-3hqj-hr8p-jqxw.json @@ -7,12 +7,8 @@ "CVE-2005-3135" ], "details": "Buffer overflow in Virtools Web Player 3.0.0.100 and earlier allows remote attackers to execute arbitrary code via a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hvp-8gh4-hrx5/GHSA-3hvp-8gh4-hrx5.json b/advisories/unreviewed/2022/05/GHSA-3hvp-8gh4-hrx5/GHSA-3hvp-8gh4-hrx5.json index 9fc9defa022..b2aea26d4bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hvp-8gh4-hrx5/GHSA-3hvp-8gh4-hrx5.json +++ b/advisories/unreviewed/2022/05/GHSA-3hvp-8gh4-hrx5/GHSA-3hvp-8gh4-hrx5.json @@ -7,12 +7,8 @@ "CVE-2020-25353" ], "details": "A server-side request forgery (SSRF) vulnerability in rConfig 3.9.5 has been fixed for 3.9.6. This vulnerability allowed remote authenticated attackers to open a connection to the machine via the deviceIpAddr and connPort parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j9h-5r8r-rrxc/GHSA-3j9h-5r8r-rrxc.json b/advisories/unreviewed/2022/05/GHSA-3j9h-5r8r-rrxc/GHSA-3j9h-5r8r-rrxc.json index a873d9329b1..3e594e5dad5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j9h-5r8r-rrxc/GHSA-3j9h-5r8r-rrxc.json +++ b/advisories/unreviewed/2022/05/GHSA-3j9h-5r8r-rrxc/GHSA-3j9h-5r8r-rrxc.json @@ -7,12 +7,8 @@ "CVE-2021-39360" ], "details": "In GNOME libzapojit through 0.0.3, zpj-skydrive.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3j9v-3vrm-w8c9/GHSA-3j9v-3vrm-w8c9.json b/advisories/unreviewed/2022/05/GHSA-3j9v-3vrm-w8c9/GHSA-3j9v-3vrm-w8c9.json index 1c666aed276..3a99094d982 100644 --- a/advisories/unreviewed/2022/05/GHSA-3j9v-3vrm-w8c9/GHSA-3j9v-3vrm-w8c9.json +++ b/advisories/unreviewed/2022/05/GHSA-3j9v-3vrm-w8c9/GHSA-3j9v-3vrm-w8c9.json @@ -7,12 +7,8 @@ "CVE-2005-2932" ], "details": "Multiple Check Point Zone Labs ZoneAlarm products before 7.0.362, including ZoneAlarm Security Suite 5.5.062.004 and 6.5.737, use insecure default permissions for critical files, which allows local users to gain privileges or bypass security controls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3jm6-h886-j4v6/GHSA-3jm6-h886-j4v6.json b/advisories/unreviewed/2022/05/GHSA-3jm6-h886-j4v6/GHSA-3jm6-h886-j4v6.json index 62d31ddf9d3..bc5ec1c8800 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jm6-h886-j4v6/GHSA-3jm6-h886-j4v6.json +++ b/advisories/unreviewed/2022/05/GHSA-3jm6-h886-j4v6/GHSA-3jm6-h886-j4v6.json @@ -7,12 +7,8 @@ "CVE-2005-3092" ], "details": "Heap-based buffer overflow in Image-Line Software FL Studio 5.0.1 allows remote attackers to execute arbitrary code via a .flp file that contains a long path to a (1) .mid or (2) .wav file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3p7x-m58j-fm72/GHSA-3p7x-m58j-fm72.json b/advisories/unreviewed/2022/05/GHSA-3p7x-m58j-fm72/GHSA-3p7x-m58j-fm72.json index 86a8910da00..b42ca2dddf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3p7x-m58j-fm72/GHSA-3p7x-m58j-fm72.json +++ b/advisories/unreviewed/2022/05/GHSA-3p7x-m58j-fm72/GHSA-3p7x-m58j-fm72.json @@ -7,12 +7,8 @@ "CVE-2021-39250" ], "details": "Invision Community (aka IPS Community Suite or IP-Board) before 4.6.5.1 allows stored XSS, with resultant code execution, because an uploaded file can be placed in an IFRAME element within user-generated content. For code execution, the attacker can rely on the ability of an admin to install widgets, disclosure of the admin session ID in a Referer header, and the ability of an admin to use the templating engine (e.g., Edit HTML).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3ppf-x2gr-8g6c/GHSA-3ppf-x2gr-8g6c.json b/advisories/unreviewed/2022/05/GHSA-3ppf-x2gr-8g6c/GHSA-3ppf-x2gr-8g6c.json index 1f2653ebc0d..2f7bc934336 100644 --- a/advisories/unreviewed/2022/05/GHSA-3ppf-x2gr-8g6c/GHSA-3ppf-x2gr-8g6c.json +++ b/advisories/unreviewed/2022/05/GHSA-3ppf-x2gr-8g6c/GHSA-3ppf-x2gr-8g6c.json @@ -7,12 +7,8 @@ "CVE-2020-18748" ], "details": "Cross Site Scripting (XSS) in Typora v0.9.65 allows attackers to execute arbitrary code via mathjax syntax due to a mathjax configuration error in the mathematical formula blocks. This is a different vulnerability from CVE-2020-18221.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3q79-gjf7-rwwf/GHSA-3q79-gjf7-rwwf.json b/advisories/unreviewed/2022/05/GHSA-3q79-gjf7-rwwf/GHSA-3q79-gjf7-rwwf.json index c7d99d3aff7..3b5d24ce545 100644 --- a/advisories/unreviewed/2022/05/GHSA-3q79-gjf7-rwwf/GHSA-3q79-gjf7-rwwf.json +++ b/advisories/unreviewed/2022/05/GHSA-3q79-gjf7-rwwf/GHSA-3q79-gjf7-rwwf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "WEB", diff --git a/advisories/unreviewed/2022/05/GHSA-3qgv-5387-gfm7/GHSA-3qgv-5387-gfm7.json b/advisories/unreviewed/2022/05/GHSA-3qgv-5387-gfm7/GHSA-3qgv-5387-gfm7.json index 15ac475a2a1..19619d99021 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qgv-5387-gfm7/GHSA-3qgv-5387-gfm7.json +++ b/advisories/unreviewed/2022/05/GHSA-3qgv-5387-gfm7/GHSA-3qgv-5387-gfm7.json @@ -7,12 +7,8 @@ "CVE-2005-3130" ], "details": "SQL injection vulnerability in lucidCMS 1.0.11 allows remote attackers to execute arbitrary SQL commands via the login field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3qqc-m294-6m8c/GHSA-3qqc-m294-6m8c.json b/advisories/unreviewed/2022/05/GHSA-3qqc-m294-6m8c/GHSA-3qqc-m294-6m8c.json index 74db9b5fbde..74a21c9a3e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qqc-m294-6m8c/GHSA-3qqc-m294-6m8c.json +++ b/advisories/unreviewed/2022/05/GHSA-3qqc-m294-6m8c/GHSA-3qqc-m294-6m8c.json @@ -7,12 +7,8 @@ "CVE-2005-3325" ], "details": "Multiple SQL injection vulnerabilities in (1) acid_qry_main.php in Analysis Console for Intrusion Databases (ACID) 0.9.6b20 and (2) base_qry_main.php in Basic Analysis and Security Engine (BASE) 1.2, and unspecified other console scripts in these products, allow remote attackers to execute arbitrary SQL commands via the sig[1] parameter and possibly other parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qrq-p37g-j4wm/GHSA-3qrq-p37g-j4wm.json b/advisories/unreviewed/2022/05/GHSA-3qrq-p37g-j4wm/GHSA-3qrq-p37g-j4wm.json index a917f39eef9..53f709b1826 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qrq-p37g-j4wm/GHSA-3qrq-p37g-j4wm.json +++ b/advisories/unreviewed/2022/05/GHSA-3qrq-p37g-j4wm/GHSA-3qrq-p37g-j4wm.json @@ -7,12 +7,8 @@ "CVE-2021-31226" ], "details": "An issue was discovered in HCC embedded InterNiche 4.0.1. A potential heap buffer overflow exists in the code that parses the HTTP POST request, due to lack of size validation. This vulnerability requires the attacker to send a crafted HTTP POST request with a URI longer than 50 bytes. This leads to a heap overflow in wbs_post() via an strcpy() call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3r2f-rpgw-83gm/GHSA-3r2f-rpgw-83gm.json b/advisories/unreviewed/2022/05/GHSA-3r2f-rpgw-83gm/GHSA-3r2f-rpgw-83gm.json index 43edff8cd48..3dd117efbd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3r2f-rpgw-83gm/GHSA-3r2f-rpgw-83gm.json +++ b/advisories/unreviewed/2022/05/GHSA-3r2f-rpgw-83gm/GHSA-3r2f-rpgw-83gm.json @@ -7,12 +7,8 @@ "CVE-2021-22242" ], "details": "Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rgh-h4g7-m8pg/GHSA-3rgh-h4g7-m8pg.json b/advisories/unreviewed/2022/05/GHSA-3rgh-h4g7-m8pg/GHSA-3rgh-h4g7-m8pg.json index 7c6861d524d..bcbe8a7cc6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rgh-h4g7-m8pg/GHSA-3rgh-h4g7-m8pg.json +++ b/advisories/unreviewed/2022/05/GHSA-3rgh-h4g7-m8pg/GHSA-3rgh-h4g7-m8pg.json @@ -7,12 +7,8 @@ "CVE-2005-3038" ], "details": "Unspecified vulnerability in Hosting Controller 6.1 before Hotfix 2.4 allows remote attackers to list and read contents of arbitrary drives, related to \"the PHP vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3rx8-r3v3-xqwp/GHSA-3rx8-r3v3-xqwp.json b/advisories/unreviewed/2022/05/GHSA-3rx8-r3v3-xqwp/GHSA-3rx8-r3v3-xqwp.json index de79bbd44b7..4109e7f8c11 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rx8-r3v3-xqwp/GHSA-3rx8-r3v3-xqwp.json +++ b/advisories/unreviewed/2022/05/GHSA-3rx8-r3v3-xqwp/GHSA-3rx8-r3v3-xqwp.json @@ -7,12 +7,8 @@ "CVE-2005-3050" ], "details": "PhpMyFaq 1.5.1 allows remote attackers to obtain sensitive information via a LANGCODE parameter that does not exist, which reveals the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3vgq-f5jq-7ccr/GHSA-3vgq-f5jq-7ccr.json b/advisories/unreviewed/2022/05/GHSA-3vgq-f5jq-7ccr/GHSA-3vgq-f5jq-7ccr.json index 1272cf7f4ae..b452d2eeaa2 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vgq-f5jq-7ccr/GHSA-3vgq-f5jq-7ccr.json +++ b/advisories/unreviewed/2022/05/GHSA-3vgq-f5jq-7ccr/GHSA-3vgq-f5jq-7ccr.json @@ -7,12 +7,8 @@ "CVE-2005-3469" ], "details": "SQL injection vulnerability in index.php in News2Net 3.0.0.0 allows remote attackers to execute arbitrary SQL commands via the category parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3vqc-jwrr-3r9x/GHSA-3vqc-jwrr-3r9x.json b/advisories/unreviewed/2022/05/GHSA-3vqc-jwrr-3r9x/GHSA-3vqc-jwrr-3r9x.json index 06c30433cdd..a4adb552def 100644 --- a/advisories/unreviewed/2022/05/GHSA-3vqc-jwrr-3r9x/GHSA-3vqc-jwrr-3r9x.json +++ b/advisories/unreviewed/2022/05/GHSA-3vqc-jwrr-3r9x/GHSA-3vqc-jwrr-3r9x.json @@ -7,12 +7,8 @@ "CVE-2005-2971" ], "details": "Heap-based buffer overflow in the KWord RTF importer for KOffice 1.2.0 through 1.4.1 allows remote attackers to execute arbitrary code via a crafted RTF file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3x4v-r279-87fr/GHSA-3x4v-r279-87fr.json b/advisories/unreviewed/2022/05/GHSA-3x4v-r279-87fr/GHSA-3x4v-r279-87fr.json index 837fefd8d66..d3ae27a1dbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x4v-r279-87fr/GHSA-3x4v-r279-87fr.json +++ b/advisories/unreviewed/2022/05/GHSA-3x4v-r279-87fr/GHSA-3x4v-r279-87fr.json @@ -7,12 +7,8 @@ "CVE-2021-0519" ], "details": "In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-176533109", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3x73-wm98-jh2g/GHSA-3x73-wm98-jh2g.json b/advisories/unreviewed/2022/05/GHSA-3x73-wm98-jh2g/GHSA-3x73-wm98-jh2g.json index cedb6d44a27..6571c236635 100644 --- a/advisories/unreviewed/2022/05/GHSA-3x73-wm98-jh2g/GHSA-3x73-wm98-jh2g.json +++ b/advisories/unreviewed/2022/05/GHSA-3x73-wm98-jh2g/GHSA-3x73-wm98-jh2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xhm-m5h8-87g4/GHSA-3xhm-m5h8-87g4.json b/advisories/unreviewed/2022/05/GHSA-3xhm-m5h8-87g4/GHSA-3xhm-m5h8-87g4.json index e08dab3e061..c287a71bd18 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xhm-m5h8-87g4/GHSA-3xhm-m5h8-87g4.json +++ b/advisories/unreviewed/2022/05/GHSA-3xhm-m5h8-87g4/GHSA-3xhm-m5h8-87g4.json @@ -7,12 +7,8 @@ "CVE-2005-3061" ], "details": "Multiple stack-based buffer overflows in PowerArchiver 8.10 through 9.5 Beta 4 and Beta 5 allow remote attackers to execute arbitrary code via a long filename in a (1) ACE or (2) ARJ archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xv9-qrjx-w927/GHSA-3xv9-qrjx-w927.json b/advisories/unreviewed/2022/05/GHSA-3xv9-qrjx-w927/GHSA-3xv9-qrjx-w927.json index 76e7d9e9ed4..7d47796f6d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xv9-qrjx-w927/GHSA-3xv9-qrjx-w927.json +++ b/advisories/unreviewed/2022/05/GHSA-3xv9-qrjx-w927/GHSA-3xv9-qrjx-w927.json @@ -7,12 +7,8 @@ "CVE-2005-3210" ], "details": "Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3xwg-7j63-2p52/GHSA-3xwg-7j63-2p52.json b/advisories/unreviewed/2022/05/GHSA-3xwg-7j63-2p52/GHSA-3xwg-7j63-2p52.json index acddee4d685..4258874d5b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xwg-7j63-2p52/GHSA-3xwg-7j63-2p52.json +++ b/advisories/unreviewed/2022/05/GHSA-3xwg-7j63-2p52/GHSA-3xwg-7j63-2p52.json @@ -7,12 +7,8 @@ "CVE-2021-28070" ], "details": "Cross Site Request Forgery (CSRF) vulnerability exist in PopojiCMS 2.0.1 in po-admin/route.php?mod=user&act=multidelete.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-427g-prh3-hw73/GHSA-427g-prh3-hw73.json b/advisories/unreviewed/2022/05/GHSA-427g-prh3-hw73/GHSA-427g-prh3-hw73.json index 5dcd479e0a4..3e3e78e3c2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-427g-prh3-hw73/GHSA-427g-prh3-hw73.json +++ b/advisories/unreviewed/2022/05/GHSA-427g-prh3-hw73/GHSA-427g-prh3-hw73.json @@ -7,12 +7,8 @@ "CVE-2021-1588" ], "details": "A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation when an affected device is processing an MPLS echo-request or echo-reply packet. An attacker could exploit this vulnerability by sending malicious MPLS echo-request or echo-reply packets to an interface that is enabled for MPLS forwarding on the affected device. A successful exploit could allow the attacker to cause the MPLS OAM process to crash and restart multiple times, causing the affected device to reload and resulting in a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-435m-r226-x7g6/GHSA-435m-r226-x7g6.json b/advisories/unreviewed/2022/05/GHSA-435m-r226-x7g6/GHSA-435m-r226-x7g6.json index 258e83d2e2e..677f46d9f2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-435m-r226-x7g6/GHSA-435m-r226-x7g6.json +++ b/advisories/unreviewed/2022/05/GHSA-435m-r226-x7g6/GHSA-435m-r226-x7g6.json @@ -7,12 +7,8 @@ "CVE-2005-3460" ], "details": "Unspecified vulnerability in Oracle Agent in Oracle Enterprise Manager 9.0.4.1 up to 10.1.0.4 has unknown impact and attack vectors, as identified by Oracle Vuln# EM01.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-43hq-r694-jwc5/GHSA-43hq-r694-jwc5.json b/advisories/unreviewed/2022/05/GHSA-43hq-r694-jwc5/GHSA-43hq-r694-jwc5.json index 13738fba6bd..887ea89be4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-43hq-r694-jwc5/GHSA-43hq-r694-jwc5.json +++ b/advisories/unreviewed/2022/05/GHSA-43hq-r694-jwc5/GHSA-43hq-r694-jwc5.json @@ -7,12 +7,8 @@ "CVE-2005-3043" ], "details": "SQL injection vulnerability in AddItem.asp in Mall23 eCommerce allows remote attackers to execute arbitrary SQL commands via the idOption_Dropdown_2 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4447-hm8w-ggf7/GHSA-4447-hm8w-ggf7.json b/advisories/unreviewed/2022/05/GHSA-4447-hm8w-ggf7/GHSA-4447-hm8w-ggf7.json index 8aac3f145cd..781f223f5bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-4447-hm8w-ggf7/GHSA-4447-hm8w-ggf7.json +++ b/advisories/unreviewed/2022/05/GHSA-4447-hm8w-ggf7/GHSA-4447-hm8w-ggf7.json @@ -7,12 +7,8 @@ "CVE-2005-3048" ], "details": "Directory traversal vulnerability in index.php in PhpMyFaq 1.5.1 allows remote attackers to read arbitrary files or include arbitrary PHP files via a .. (dot dot) in the LANGCODE parameter, which also allows direct code injection via the User Agent field in a request packet, which can be activated by using LANGCODE to reference the user tracking data file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4484-7jwf-xv44/GHSA-4484-7jwf-xv44.json b/advisories/unreviewed/2022/05/GHSA-4484-7jwf-xv44/GHSA-4484-7jwf-xv44.json index 23f06e26ed7..ad61bcffe9a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4484-7jwf-xv44/GHSA-4484-7jwf-xv44.json +++ b/advisories/unreviewed/2022/05/GHSA-4484-7jwf-xv44/GHSA-4484-7jwf-xv44.json @@ -7,12 +7,8 @@ "CVE-2021-34207" ], "details": "Cross-site scripting in ddns.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers to execute arbitrary JavaScript by modifying the \"Domain Name\" field, \"Server Address\" field, \"User Name/Email\", or \"Password/Key\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-44g5-fc7x-362r/GHSA-44g5-fc7x-362r.json b/advisories/unreviewed/2022/05/GHSA-44g5-fc7x-362r/GHSA-44g5-fc7x-362r.json index d77921d442d..9b64fb00b3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-44g5-fc7x-362r/GHSA-44g5-fc7x-362r.json +++ b/advisories/unreviewed/2022/05/GHSA-44g5-fc7x-362r/GHSA-44g5-fc7x-362r.json @@ -7,12 +7,8 @@ "CVE-2005-3286" ], "details": "The FWDRV driver in Kerio Personal Firewall 4.2 and Server Firewall 1.1.1 allows local users to cause a denial of service (crash) by setting the PAGE_NOACCESS or PAGE_GUARD protection on the Page Environment Block (PEB), which triggers an exception, aka the \"PEB lockout vulnerability.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-44gc-6277-jwf7/GHSA-44gc-6277-jwf7.json b/advisories/unreviewed/2022/05/GHSA-44gc-6277-jwf7/GHSA-44gc-6277-jwf7.json index fa27574c39b..42cd3be8169 100644 --- a/advisories/unreviewed/2022/05/GHSA-44gc-6277-jwf7/GHSA-44gc-6277-jwf7.json +++ b/advisories/unreviewed/2022/05/GHSA-44gc-6277-jwf7/GHSA-44gc-6277-jwf7.json @@ -7,12 +7,8 @@ "CVE-2021-20815" ], "details": "Cross-site scripting vulnerability in Edit Boilerplate screen of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series), Movable Type 6.8.0 and earlier (Movable Type 6 Series), Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series), Movable Type Premium 1.44 and earlier, and Movable Type Premium Advanced 1.44 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45g3-4pmp-w6x8/GHSA-45g3-4pmp-w6x8.json b/advisories/unreviewed/2022/05/GHSA-45g3-4pmp-w6x8/GHSA-45g3-4pmp-w6x8.json index d302f97f40e..2151b79e703 100644 --- a/advisories/unreviewed/2022/05/GHSA-45g3-4pmp-w6x8/GHSA-45g3-4pmp-w6x8.json +++ b/advisories/unreviewed/2022/05/GHSA-45g3-4pmp-w6x8/GHSA-45g3-4pmp-w6x8.json @@ -7,12 +7,8 @@ "CVE-2021-20754" ], "details": "Improper input validation vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to alter the data of Workflow without the appropriate privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45mp-7qc4-gj8v/GHSA-45mp-7qc4-gj8v.json b/advisories/unreviewed/2022/05/GHSA-45mp-7qc4-gj8v/GHSA-45mp-7qc4-gj8v.json index ed58cebe6d7..bd7b578353a 100644 --- a/advisories/unreviewed/2022/05/GHSA-45mp-7qc4-gj8v/GHSA-45mp-7qc4-gj8v.json +++ b/advisories/unreviewed/2022/05/GHSA-45mp-7qc4-gj8v/GHSA-45mp-7qc4-gj8v.json @@ -7,12 +7,8 @@ "CVE-2021-0639" ], "details": "In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to the way sensitive data is handled. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-190724551", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-45rp-8p4h-8m88/GHSA-45rp-8p4h-8m88.json b/advisories/unreviewed/2022/05/GHSA-45rp-8p4h-8m88/GHSA-45rp-8p4h-8m88.json index 1476ef270f8..8d701f0109f 100644 --- a/advisories/unreviewed/2022/05/GHSA-45rp-8p4h-8m88/GHSA-45rp-8p4h-8m88.json +++ b/advisories/unreviewed/2022/05/GHSA-45rp-8p4h-8m88/GHSA-45rp-8p4h-8m88.json @@ -7,12 +7,8 @@ "CVE-2005-2859" ], "details": "Savant Web Server stores user credentials in plaintext in the Savant\\Users registry key, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-47pc-9x9m-98jf/GHSA-47pc-9x9m-98jf.json b/advisories/unreviewed/2022/05/GHSA-47pc-9x9m-98jf/GHSA-47pc-9x9m-98jf.json index df1cc209f3b..396fe172e02 100644 --- a/advisories/unreviewed/2022/05/GHSA-47pc-9x9m-98jf/GHSA-47pc-9x9m-98jf.json +++ b/advisories/unreviewed/2022/05/GHSA-47pc-9x9m-98jf/GHSA-47pc-9x9m-98jf.json @@ -7,12 +7,8 @@ "CVE-2005-3372" ], "details": "Multiple interpretation error in eTrust CA 7.0.1.4 with the 11.9.1 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48fh-jxxv-q7v2/GHSA-48fh-jxxv-q7v2.json b/advisories/unreviewed/2022/05/GHSA-48fh-jxxv-q7v2/GHSA-48fh-jxxv-q7v2.json index 3e9a3072c8d..a5ec57a8ff6 100644 --- a/advisories/unreviewed/2022/05/GHSA-48fh-jxxv-q7v2/GHSA-48fh-jxxv-q7v2.json +++ b/advisories/unreviewed/2022/05/GHSA-48fh-jxxv-q7v2/GHSA-48fh-jxxv-q7v2.json @@ -7,12 +7,8 @@ "CVE-2005-2850" ], "details": "SlimFTPd 3.17 allows remote attackers to cause a denial of service (crash) via certain (1) USER and (2) PASS commands, possibly due to a buffer overflow or off-by-one error.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48jg-h3cv-mqvx/GHSA-48jg-h3cv-mqvx.json b/advisories/unreviewed/2022/05/GHSA-48jg-h3cv-mqvx/GHSA-48jg-h3cv-mqvx.json index 3990f63606f..4b571c3c2e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-48jg-h3cv-mqvx/GHSA-48jg-h3cv-mqvx.json +++ b/advisories/unreviewed/2022/05/GHSA-48jg-h3cv-mqvx/GHSA-48jg-h3cv-mqvx.json @@ -7,12 +7,8 @@ "CVE-2021-34433" ], "details": "In Eclipse Californium version 2.0.0 to 2.6.4 and 3.0.0-M1 to 3.0.0-M3, the certificate based (x509 and RPK) DTLS handshakes accidentally succeeds without verifying the server side's signature on the client side, if that signature is not included in the server's ServerKeyExchange.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49wh-cm7q-9w2h/GHSA-49wh-cm7q-9w2h.json b/advisories/unreviewed/2022/05/GHSA-49wh-cm7q-9w2h/GHSA-49wh-cm7q-9w2h.json index bb4627d0a15..55f4966a190 100644 --- a/advisories/unreviewed/2022/05/GHSA-49wh-cm7q-9w2h/GHSA-49wh-cm7q-9w2h.json +++ b/advisories/unreviewed/2022/05/GHSA-49wh-cm7q-9w2h/GHSA-49wh-cm7q-9w2h.json @@ -7,12 +7,8 @@ "CVE-2021-35984" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by a Null pointer dereference vulnerability. An authenticated attacker could leverage this vulnerability achieve an application denial-of-service in the context of the current user. Exploitation of this issue does not requires user interaction.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4c48-9rfv-8pr3/GHSA-4c48-9rfv-8pr3.json b/advisories/unreviewed/2022/05/GHSA-4c48-9rfv-8pr3/GHSA-4c48-9rfv-8pr3.json index 23d463b1243..5470731160c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4c48-9rfv-8pr3/GHSA-4c48-9rfv-8pr3.json +++ b/advisories/unreviewed/2022/05/GHSA-4c48-9rfv-8pr3/GHSA-4c48-9rfv-8pr3.json @@ -7,12 +7,8 @@ "CVE-2005-2949" ], "details": "pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4f9m-6h5h-cg9v/GHSA-4f9m-6h5h-cg9v.json b/advisories/unreviewed/2022/05/GHSA-4f9m-6h5h-cg9v/GHSA-4f9m-6h5h-cg9v.json index 6e874da663f..c4bbec7f47b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f9m-6h5h-cg9v/GHSA-4f9m-6h5h-cg9v.json +++ b/advisories/unreviewed/2022/05/GHSA-4f9m-6h5h-cg9v/GHSA-4f9m-6h5h-cg9v.json @@ -7,12 +7,8 @@ "CVE-2020-14160" ], "details": "An SSRF vulnerability in Gotenberg through 6.2.1 exists in the remote URL to PDF conversion, which results in a remote attacker being able to read local files or fetch intranet resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4ffv-m79h-6hx2/GHSA-4ffv-m79h-6hx2.json b/advisories/unreviewed/2022/05/GHSA-4ffv-m79h-6hx2/GHSA-4ffv-m79h-6hx2.json index f7791f21f91..5b26fb49fbe 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ffv-m79h-6hx2/GHSA-4ffv-m79h-6hx2.json +++ b/advisories/unreviewed/2022/05/GHSA-4ffv-m79h-6hx2/GHSA-4ffv-m79h-6hx2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4ggm-wg4m-3xh4/GHSA-4ggm-wg4m-3xh4.json b/advisories/unreviewed/2022/05/GHSA-4ggm-wg4m-3xh4/GHSA-4ggm-wg4m-3xh4.json index 0b151533a5d..15ef45b7e75 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ggm-wg4m-3xh4/GHSA-4ggm-wg4m-3xh4.json +++ b/advisories/unreviewed/2022/05/GHSA-4ggm-wg4m-3xh4/GHSA-4ggm-wg4m-3xh4.json @@ -7,12 +7,8 @@ "CVE-2021-20770" ], "details": "Cross-site scripting vulnerability in Message of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4hg8-r88x-mfhr/GHSA-4hg8-r88x-mfhr.json b/advisories/unreviewed/2022/05/GHSA-4hg8-r88x-mfhr/GHSA-4hg8-r88x-mfhr.json index caf54a0599e..bcab9afc16c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hg8-r88x-mfhr/GHSA-4hg8-r88x-mfhr.json +++ b/advisories/unreviewed/2022/05/GHSA-4hg8-r88x-mfhr/GHSA-4hg8-r88x-mfhr.json @@ -7,12 +7,8 @@ "CVE-2005-3094" ], "details": "Avi Alkalay man-cgi script allows remote attackers to execute arbitrary code via shell metacharacters in the topic parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hrh-vvjg-rgq7/GHSA-4hrh-vvjg-rgq7.json b/advisories/unreviewed/2022/05/GHSA-4hrh-vvjg-rgq7/GHSA-4hrh-vvjg-rgq7.json index c4cc9a4589b..b29fa0df461 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hrh-vvjg-rgq7/GHSA-4hrh-vvjg-rgq7.json +++ b/advisories/unreviewed/2022/05/GHSA-4hrh-vvjg-rgq7/GHSA-4hrh-vvjg-rgq7.json @@ -7,12 +7,8 @@ "CVE-2005-3020" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in vBulletin before 3.0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) group parameter to css.php, (2) redirect parameter to index.php, (3) email parameter to user.php, (4) goto parameter to language.php, (5) orderby parameter to modlog.php, and the (6) hex, (7) rgb, or (8) expandset parameter to template.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4jp9-m29w-rpw2/GHSA-4jp9-m29w-rpw2.json b/advisories/unreviewed/2022/05/GHSA-4jp9-m29w-rpw2/GHSA-4jp9-m29w-rpw2.json index 4fa84c88e0a..d4d7e3118ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jp9-m29w-rpw2/GHSA-4jp9-m29w-rpw2.json +++ b/advisories/unreviewed/2022/05/GHSA-4jp9-m29w-rpw2/GHSA-4jp9-m29w-rpw2.json @@ -7,12 +7,8 @@ "CVE-2005-3326" ], "details": "SQL injection vulnerability in usercp.php in MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the awayday parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4pcr-226x-2w24/GHSA-4pcr-226x-2w24.json b/advisories/unreviewed/2022/05/GHSA-4pcr-226x-2w24/GHSA-4pcr-226x-2w24.json index c025bca7b34..175a2e36ecb 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pcr-226x-2w24/GHSA-4pcr-226x-2w24.json +++ b/advisories/unreviewed/2022/05/GHSA-4pcr-226x-2w24/GHSA-4pcr-226x-2w24.json @@ -7,12 +7,8 @@ "CVE-2021-0416" ], "details": "In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05336700.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pgp-8g6g-73ph/GHSA-4pgp-8g6g-73ph.json b/advisories/unreviewed/2022/05/GHSA-4pgp-8g6g-73ph/GHSA-4pgp-8g6g-73ph.json index 8dd467f3cde..069064cba95 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pgp-8g6g-73ph/GHSA-4pgp-8g6g-73ph.json +++ b/advisories/unreviewed/2022/05/GHSA-4pgp-8g6g-73ph/GHSA-4pgp-8g6g-73ph.json @@ -7,12 +7,8 @@ "CVE-2005-3110" ], "details": "Race condition in ebtables netfilter module (ebtables.c) in Linux 2.6, when running on an SMP system that is operating under a heavy load, might allow remote attackers to cause a denial of service (crash) via a series of packets that cause a value to be modified after it has been read but before it has been locked.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4qj7-wcgp-pm8p/GHSA-4qj7-wcgp-pm8p.json b/advisories/unreviewed/2022/05/GHSA-4qj7-wcgp-pm8p/GHSA-4qj7-wcgp-pm8p.json index 822d26bd17a..19d9b82d549 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qj7-wcgp-pm8p/GHSA-4qj7-wcgp-pm8p.json +++ b/advisories/unreviewed/2022/05/GHSA-4qj7-wcgp-pm8p/GHSA-4qj7-wcgp-pm8p.json @@ -7,12 +7,8 @@ "CVE-2021-38710" ], "details": "Static (Persistent) XSS Vulnerability exists in version 4.3.0 of Yclas when using the install/view/form.php script. An attacker can store XSS in the database through the vulnerable SITE_NAME parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4r45-8xjg-jc76/GHSA-4r45-8xjg-jc76.json b/advisories/unreviewed/2022/05/GHSA-4r45-8xjg-jc76/GHSA-4r45-8xjg-jc76.json index 4e084410723..71e665d002c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r45-8xjg-jc76/GHSA-4r45-8xjg-jc76.json +++ b/advisories/unreviewed/2022/05/GHSA-4r45-8xjg-jc76/GHSA-4r45-8xjg-jc76.json @@ -7,12 +7,8 @@ "CVE-2005-2861" ], "details": "Cross-site scripting (XSS) vulnerability in N-Stealth Commercial Edition before 5.8.0.38 and Free Edition before 5.8.1.03 allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4r85-f826-5xjq/GHSA-4r85-f826-5xjq.json b/advisories/unreviewed/2022/05/GHSA-4r85-f826-5xjq/GHSA-4r85-f826-5xjq.json index d4af57d995a..0beee5485d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4r85-f826-5xjq/GHSA-4r85-f826-5xjq.json +++ b/advisories/unreviewed/2022/05/GHSA-4r85-f826-5xjq/GHSA-4r85-f826-5xjq.json @@ -7,12 +7,8 @@ "CVE-2005-2954" ], "details": "SQL injection vulnerability in password_reminder.php in ATutor before 1.5.1 pl1 allows remote attackers to execute arbitrary SQL commands via the email field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4v48-xr3m-vm7m/GHSA-4v48-xr3m-vm7m.json b/advisories/unreviewed/2022/05/GHSA-4v48-xr3m-vm7m/GHSA-4v48-xr3m-vm7m.json index caf912e7ac1..9fce6a304de 100644 --- a/advisories/unreviewed/2022/05/GHSA-4v48-xr3m-vm7m/GHSA-4v48-xr3m-vm7m.json +++ b/advisories/unreviewed/2022/05/GHSA-4v48-xr3m-vm7m/GHSA-4v48-xr3m-vm7m.json @@ -7,12 +7,8 @@ "CVE-2005-3449" ], "details": "Multiple unspecified vulnerabilities in Oracle Application Server 9.0 up to 10.1.2.0 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) AS02 in Containers for J2EE, (2) AS07 in Internet Directory, (3) AS09 in Report Server, and (4) AS11 in Web Cache.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4w6g-h3j2-26jm/GHSA-4w6g-h3j2-26jm.json b/advisories/unreviewed/2022/05/GHSA-4w6g-h3j2-26jm/GHSA-4w6g-h3j2-26jm.json index 64618ded887..e6ee34cad3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w6g-h3j2-26jm/GHSA-4w6g-h3j2-26jm.json +++ b/advisories/unreviewed/2022/05/GHSA-4w6g-h3j2-26jm/GHSA-4w6g-h3j2-26jm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4w6j-4552-w9j5/GHSA-4w6j-4552-w9j5.json b/advisories/unreviewed/2022/05/GHSA-4w6j-4552-w9j5/GHSA-4w6j-4552-w9j5.json index 0fc89f7622b..647ffeb8627 100644 --- a/advisories/unreviewed/2022/05/GHSA-4w6j-4552-w9j5/GHSA-4w6j-4552-w9j5.json +++ b/advisories/unreviewed/2022/05/GHSA-4w6j-4552-w9j5/GHSA-4w6j-4552-w9j5.json @@ -7,12 +7,8 @@ "CVE-2005-3317" ], "details": "Multiple stack-based buffer overflows in ZipGenius 5.5.1.468 and 6.0.2.1041, and other versions before 6.0.2.1050, allow remote attackers to execute arbitrary code via (1) a ZIP archive that contains a file with a long filename, which is not properly handled by (a) zipgenius.exe, (b) zg.exe, (c) zgtips.dll, and (d) contmenu.dll; (2) a long original name in a (a) UUE, (b) XXE, or (c) MIM file, which is not properly handled by zipgenius.exe; or (3) an ACE archive with a file with a long filename, which is not properly handled by unacev2.dll.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4wgw-2p35-h26h/GHSA-4wgw-2p35-h26h.json b/advisories/unreviewed/2022/05/GHSA-4wgw-2p35-h26h/GHSA-4wgw-2p35-h26h.json index 18942b0b937..104ac2571e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wgw-2p35-h26h/GHSA-4wgw-2p35-h26h.json +++ b/advisories/unreviewed/2022/05/GHSA-4wgw-2p35-h26h/GHSA-4wgw-2p35-h26h.json @@ -7,12 +7,8 @@ "CVE-2020-18974" ], "details": "Buffer Overflow in Netwide Assembler (NASM) v2.15.xx allows attackers to cause a denial of service via 'crc64i' in the component 'nasmlib/crc64'. This issue is different than CVE-2019-7147.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4xc9-f69v-j9v2/GHSA-4xc9-f69v-j9v2.json b/advisories/unreviewed/2022/05/GHSA-4xc9-f69v-j9v2/GHSA-4xc9-f69v-j9v2.json index ee03541cec9..f36518e124c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xc9-f69v-j9v2/GHSA-4xc9-f69v-j9v2.json +++ b/advisories/unreviewed/2022/05/GHSA-4xc9-f69v-j9v2/GHSA-4xc9-f69v-j9v2.json @@ -7,12 +7,8 @@ "CVE-2005-3104" ], "details": "mt-comments.cgi in Movable Type before 3.2 allows attackers to redirect users to other web sites via URLs in comments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xg5-8jmg-478h/GHSA-4xg5-8jmg-478h.json b/advisories/unreviewed/2022/05/GHSA-4xg5-8jmg-478h/GHSA-4xg5-8jmg-478h.json index 130f3a74041..977a532ad02 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xg5-8jmg-478h/GHSA-4xg5-8jmg-478h.json +++ b/advisories/unreviewed/2022/05/GHSA-4xg5-8jmg-478h/GHSA-4xg5-8jmg-478h.json @@ -7,12 +7,8 @@ "CVE-2005-3376" ], "details": "Multiple interpretation error in Kaspersky 5.0.372 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xrv-58cf-xvp6/GHSA-4xrv-58cf-xvp6.json b/advisories/unreviewed/2022/05/GHSA-4xrv-58cf-xvp6/GHSA-4xrv-58cf-xvp6.json index 343dcd2e833..96f094791fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xrv-58cf-xvp6/GHSA-4xrv-58cf-xvp6.json +++ b/advisories/unreviewed/2022/05/GHSA-4xrv-58cf-xvp6/GHSA-4xrv-58cf-xvp6.json @@ -7,12 +7,8 @@ "CVE-2021-28593" ], "details": "Adobe Illustrator version 25.2.3 (and earlier) is affected by a Use After Free vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose potential sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-525v-wrc2-rphr/GHSA-525v-wrc2-rphr.json b/advisories/unreviewed/2022/05/GHSA-525v-wrc2-rphr/GHSA-525v-wrc2-rphr.json index 7fa920bdf0b..f218320cb7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-525v-wrc2-rphr/GHSA-525v-wrc2-rphr.json +++ b/advisories/unreviewed/2022/05/GHSA-525v-wrc2-rphr/GHSA-525v-wrc2-rphr.json @@ -7,12 +7,8 @@ "CVE-2021-32602" ], "details": "An improper neutralization of input during web page generation vulnerability (CWE-79) in FortiPortal GUI 6.0.4 and below, 5.3.6 and below, 5.2.6 and below, 5.1.2 and below, 5.0.3 and below, 4.2.2 and below, 4.1.2 and below, 4.0.4 and below may allow a remote and unauthenticated attacker to perform an XSS attack via sending a crafted request with an invalid lang parameter or with an invalid org.springframework.web.servlet.i18n.CookieLocaleResolver.LOCALE value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-532f-v327-35gw/GHSA-532f-v327-35gw.json b/advisories/unreviewed/2022/05/GHSA-532f-v327-35gw/GHSA-532f-v327-35gw.json index c56463c0ee1..8d8bd8f6fd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-532f-v327-35gw/GHSA-532f-v327-35gw.json +++ b/advisories/unreviewed/2022/05/GHSA-532f-v327-35gw/GHSA-532f-v327-35gw.json @@ -7,12 +7,8 @@ "CVE-2020-18468" ], "details": "Cross Site Scripting (XSS) vulnerability exists in qdPM 9.1 in the Heading field found in the Login Page page under the General menu via a crafted website name by doing an authenticated POST HTTP request to /qdPM_9.1/index.php/configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53mq-wgq9-jfmr/GHSA-53mq-wgq9-jfmr.json b/advisories/unreviewed/2022/05/GHSA-53mq-wgq9-jfmr/GHSA-53mq-wgq9-jfmr.json index 3dc0a08f88f..4b32f05cc1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-53mq-wgq9-jfmr/GHSA-53mq-wgq9-jfmr.json +++ b/advisories/unreviewed/2022/05/GHSA-53mq-wgq9-jfmr/GHSA-53mq-wgq9-jfmr.json @@ -7,12 +7,8 @@ "CVE-2005-3176" ], "details": "Microsoft Windows 2000 before Update Rollup 1 for SP4 does not record the IP address of a Windows Terminal Services client in a security log event if the client connects successfully, which could make it easier for attackers to escape detection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-53wc-rjf9-39m4/GHSA-53wc-rjf9-39m4.json b/advisories/unreviewed/2022/05/GHSA-53wc-rjf9-39m4/GHSA-53wc-rjf9-39m4.json index c0aca744670..1ee181e9877 100644 --- a/advisories/unreviewed/2022/05/GHSA-53wc-rjf9-39m4/GHSA-53wc-rjf9-39m4.json +++ b/advisories/unreviewed/2022/05/GHSA-53wc-rjf9-39m4/GHSA-53wc-rjf9-39m4.json @@ -7,12 +7,8 @@ "CVE-2005-3042" ], "details": "miniserv.pl in Webmin before 1.230 and Usermin before 1.160, when \"full PAM conversations\" is enabled, allows remote attackers to bypass authentication by spoofing session IDs via certain metacharacters (line feed or carriage return).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-558h-x2r7-g672/GHSA-558h-x2r7-g672.json b/advisories/unreviewed/2022/05/GHSA-558h-x2r7-g672/GHSA-558h-x2r7-g672.json index 3f1e3d0e36c..d2229aa2dba 100644 --- a/advisories/unreviewed/2022/05/GHSA-558h-x2r7-g672/GHSA-558h-x2r7-g672.json +++ b/advisories/unreviewed/2022/05/GHSA-558h-x2r7-g672/GHSA-558h-x2r7-g672.json @@ -7,12 +7,8 @@ "CVE-2005-3101" ], "details": "The password reset feature in Movable Type before 3.2 generates different error messages depending on whether a user exists or not, which allows remote attackers to determine valid usernames.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-559v-8mcf-64p4/GHSA-559v-8mcf-64p4.json b/advisories/unreviewed/2022/05/GHSA-559v-8mcf-64p4/GHSA-559v-8mcf-64p4.json index 7f2b7ea4924..5d3116721c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-559v-8mcf-64p4/GHSA-559v-8mcf-64p4.json +++ b/advisories/unreviewed/2022/05/GHSA-559v-8mcf-64p4/GHSA-559v-8mcf-64p4.json @@ -7,12 +7,8 @@ "CVE-2021-24556" ], "details": "The kento_email_subscriber_ajax AJAX action of the Email Subscriber WordPress plugin through 1.1, does not properly sanitise, validate and escape the submitted subscribe_email and subscribe_name POST parameters, inserting them in the DB and then outputting them back in the Subscriber list (/wp-admin/edit.php?post_type=kes_campaign&page=kento_email_subscriber_list_settings), leading a Stored XSS issue.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-55c3-9jf6-5qj5/GHSA-55c3-9jf6-5qj5.json b/advisories/unreviewed/2022/05/GHSA-55c3-9jf6-5qj5/GHSA-55c3-9jf6-5qj5.json index 7a427a3c470..49032a7fc46 100644 --- a/advisories/unreviewed/2022/05/GHSA-55c3-9jf6-5qj5/GHSA-55c3-9jf6-5qj5.json +++ b/advisories/unreviewed/2022/05/GHSA-55c3-9jf6-5qj5/GHSA-55c3-9jf6-5qj5.json @@ -7,12 +7,8 @@ "CVE-2005-3272" ], "details": "Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-56w5-hc48-h3wh/GHSA-56w5-hc48-h3wh.json b/advisories/unreviewed/2022/05/GHSA-56w5-hc48-h3wh/GHSA-56w5-hc48-h3wh.json index a2da25fa0de..f8a72ad3801 100644 --- a/advisories/unreviewed/2022/05/GHSA-56w5-hc48-h3wh/GHSA-56w5-hc48-h3wh.json +++ b/advisories/unreviewed/2022/05/GHSA-56w5-hc48-h3wh/GHSA-56w5-hc48-h3wh.json @@ -7,12 +7,8 @@ "CVE-2005-2856" ], "details": "Stack-based buffer overflow in the WinACE UNACEV2.DLL third-party compression utility before 2.6.0.0, as used in multiple products including (1) ALZip 5.51 through 6.11, (2) Servant Salamander 2.0 and 2.5 Beta 1, (3) WinHKI 1.66 and 1.67, (4) ExtractNow 3.x, (5) Total Commander 6.53, (6) Anti-Trojan 5.5.421, (7) PowerArchiver before 9.61, (8) UltimateZip 2.7,1, 3.0.3, and 3.1b, (9) Where Is It (WhereIsIt) 3.73.501, (10) FilZip 3.04, (11) IZArc 3.5 beta3, (12) Eazel 1.0, (13) Rising Antivirus 18.27.21 and earlier, (14) AutoMate 6.1.0.0, (15) BitZipper 4.1 SR-1, (16) ZipTV, and other products, allows user-assisted attackers to execute arbitrary code via a long filename in an ACE archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-57j6-qvj2-vmvh/GHSA-57j6-qvj2-vmvh.json b/advisories/unreviewed/2022/05/GHSA-57j6-qvj2-vmvh/GHSA-57j6-qvj2-vmvh.json index 787e4017863..7999e7ffdab 100644 --- a/advisories/unreviewed/2022/05/GHSA-57j6-qvj2-vmvh/GHSA-57j6-qvj2-vmvh.json +++ b/advisories/unreviewed/2022/05/GHSA-57j6-qvj2-vmvh/GHSA-57j6-qvj2-vmvh.json @@ -7,12 +7,8 @@ "CVE-2020-18886" ], "details": "Unrestricted File Upload in PHPMyWind v5.6 allows remote attackers to execute arbitrary code via the component 'admin/upload_file_do.php'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-593c-jpx2-v8m8/GHSA-593c-jpx2-v8m8.json b/advisories/unreviewed/2022/05/GHSA-593c-jpx2-v8m8/GHSA-593c-jpx2-v8m8.json index 74f8f8b9f44..cf01a2b771a 100644 --- a/advisories/unreviewed/2022/05/GHSA-593c-jpx2-v8m8/GHSA-593c-jpx2-v8m8.json +++ b/advisories/unreviewed/2022/05/GHSA-593c-jpx2-v8m8/GHSA-593c-jpx2-v8m8.json @@ -7,12 +7,8 @@ "CVE-2005-2948" ], "details": "KillProcess 2.20 and earlier allows local users to bypass kill list restrictions by launching multiple processes at the same time, which are not all killed by KillProcess.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-59gv-964c-3qmq/GHSA-59gv-964c-3qmq.json b/advisories/unreviewed/2022/05/GHSA-59gv-964c-3qmq/GHSA-59gv-964c-3qmq.json index 3321f0c384b..57ec1922d91 100644 --- a/advisories/unreviewed/2022/05/GHSA-59gv-964c-3qmq/GHSA-59gv-964c-3qmq.json +++ b/advisories/unreviewed/2022/05/GHSA-59gv-964c-3qmq/GHSA-59gv-964c-3qmq.json @@ -7,12 +7,8 @@ "CVE-2020-23331" ], "details": "An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_DecoderConfigDescriptor::WriteFields component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c3g-3pvm-q8fg/GHSA-5c3g-3pvm-q8fg.json b/advisories/unreviewed/2022/05/GHSA-5c3g-3pvm-q8fg/GHSA-5c3g-3pvm-q8fg.json index 62734a0aa3f..557a556f8ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c3g-3pvm-q8fg/GHSA-5c3g-3pvm-q8fg.json +++ b/advisories/unreviewed/2022/05/GHSA-5c3g-3pvm-q8fg/GHSA-5c3g-3pvm-q8fg.json @@ -7,12 +7,8 @@ "CVE-2005-3315" ], "details": "Multiple SQL injection vulnerabilities in Novell ZENworks Patch Management 6.x before 6.2.2.181 allow remote attackers to execute arbitrary SQL commands via the (1) Direction parameter to computers/default.asp, and the (2) SearchText, (3) StatusFilter, and (4) computerFilter parameters to reports/default.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5f33-7mw4-2v32/GHSA-5f33-7mw4-2v32.json b/advisories/unreviewed/2022/05/GHSA-5f33-7mw4-2v32/GHSA-5f33-7mw4-2v32.json index b6b7b9888fc..14592e3934d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5f33-7mw4-2v32/GHSA-5f33-7mw4-2v32.json +++ b/advisories/unreviewed/2022/05/GHSA-5f33-7mw4-2v32/GHSA-5f33-7mw4-2v32.json @@ -7,12 +7,8 @@ "CVE-2021-35987" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5f6w-rj6x-7j7v/GHSA-5f6w-rj6x-7j7v.json b/advisories/unreviewed/2022/05/GHSA-5f6w-rj6x-7j7v/GHSA-5f6w-rj6x-7j7v.json index d3880e598b6..eb4eab63ba2 100644 --- a/advisories/unreviewed/2022/05/GHSA-5f6w-rj6x-7j7v/GHSA-5f6w-rj6x-7j7v.json +++ b/advisories/unreviewed/2022/05/GHSA-5f6w-rj6x-7j7v/GHSA-5f6w-rj6x-7j7v.json @@ -7,12 +7,8 @@ "CVE-2021-22251" ], "details": "Improper validation of invited users' email address in GitLab EE affecting all versions since 12.2 allowed projects to add members with email address domain that should be blocked by group settings", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fhf-57v9-f9jw/GHSA-5fhf-57v9-f9jw.json b/advisories/unreviewed/2022/05/GHSA-5fhf-57v9-f9jw/GHSA-5fhf-57v9-f9jw.json index 4043325ca7e..2406a54d525 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fhf-57v9-f9jw/GHSA-5fhf-57v9-f9jw.json +++ b/advisories/unreviewed/2022/05/GHSA-5fhf-57v9-f9jw/GHSA-5fhf-57v9-f9jw.json @@ -7,12 +7,8 @@ "CVE-2005-2860" ], "details": "Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5fwr-7h5m-9f6r/GHSA-5fwr-7h5m-9f6r.json b/advisories/unreviewed/2022/05/GHSA-5fwr-7h5m-9f6r/GHSA-5fwr-7h5m-9f6r.json index fc1facaf79d..49706fd764a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fwr-7h5m-9f6r/GHSA-5fwr-7h5m-9f6r.json +++ b/advisories/unreviewed/2022/05/GHSA-5fwr-7h5m-9f6r/GHSA-5fwr-7h5m-9f6r.json @@ -7,12 +7,8 @@ "CVE-2005-3138" ], "details": "Bugzilla 2.18rc1 through 2.18.3, 2.19 through 2.20rc2, and 2.21 allows remote attackers to obtain sensitive information such as the list of installed products via the config.cgi file, which is accessible even when the requirelogin parameter is set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5g4m-65cm-2rxf/GHSA-5g4m-65cm-2rxf.json b/advisories/unreviewed/2022/05/GHSA-5g4m-65cm-2rxf/GHSA-5g4m-65cm-2rxf.json index 995de5c0c16..e8f3becf48f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g4m-65cm-2rxf/GHSA-5g4m-65cm-2rxf.json +++ b/advisories/unreviewed/2022/05/GHSA-5g4m-65cm-2rxf/GHSA-5g4m-65cm-2rxf.json @@ -7,12 +7,8 @@ "CVE-2005-3228" ], "details": "Multiple interpretation error in unspecified versions of Ikarus AntiVirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5h28-cxmq-mh2v/GHSA-5h28-cxmq-mh2v.json b/advisories/unreviewed/2022/05/GHSA-5h28-cxmq-mh2v/GHSA-5h28-cxmq-mh2v.json index 6b6484619d0..1f572141fbc 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h28-cxmq-mh2v/GHSA-5h28-cxmq-mh2v.json +++ b/advisories/unreviewed/2022/05/GHSA-5h28-cxmq-mh2v/GHSA-5h28-cxmq-mh2v.json @@ -7,12 +7,8 @@ "CVE-2005-3070" ], "details": "HylaFax 4.2.1 and earlier does not create or verify ownership of the UNIX domain socket, which might allow local users to read faxes and cause a denial of service by creating the socket using the hyla.unix temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5h5h-7rmg-7673/GHSA-5h5h-7rmg-7673.json b/advisories/unreviewed/2022/05/GHSA-5h5h-7rmg-7673/GHSA-5h5h-7rmg-7673.json index 089ca246784..2ad4ece4970 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h5h-7rmg-7673/GHSA-5h5h-7rmg-7673.json +++ b/advisories/unreviewed/2022/05/GHSA-5h5h-7rmg-7673/GHSA-5h5h-7rmg-7673.json @@ -7,12 +7,8 @@ "CVE-2021-24506" ], "details": "The Slider Hero with Animation, Video Background & Intro Maker WordPress plugin before 8.2.7 does not sanitise or escape the id attribute of its hero-button shortcode before using it in a SQL statement, allowing users with a role as low as Contributor to perform SQL injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5h5m-pwcx-q38q/GHSA-5h5m-pwcx-q38q.json b/advisories/unreviewed/2022/05/GHSA-5h5m-pwcx-q38q/GHSA-5h5m-pwcx-q38q.json index 5003fb4e218..5dba8f72fae 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h5m-pwcx-q38q/GHSA-5h5m-pwcx-q38q.json +++ b/advisories/unreviewed/2022/05/GHSA-5h5m-pwcx-q38q/GHSA-5h5m-pwcx-q38q.json @@ -7,12 +7,8 @@ "CVE-2005-3036" ], "details": "File Transfer Anywhere 3.01 stores sensitive password information in plaintext in the PASS value in the \"File Transfer Anywhere\" registry key, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5hf2-99pm-7fmj/GHSA-5hf2-99pm-7fmj.json b/advisories/unreviewed/2022/05/GHSA-5hf2-99pm-7fmj/GHSA-5hf2-99pm-7fmj.json index 19e272b345c..821b0908e52 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hf2-99pm-7fmj/GHSA-5hf2-99pm-7fmj.json +++ b/advisories/unreviewed/2022/05/GHSA-5hf2-99pm-7fmj/GHSA-5hf2-99pm-7fmj.json @@ -7,12 +7,8 @@ "CVE-2005-2985" ], "details": "SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers to execute arbitrary SQL statements via the Country parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5hmc-p68x-m57g/GHSA-5hmc-p68x-m57g.json b/advisories/unreviewed/2022/05/GHSA-5hmc-p68x-m57g/GHSA-5hmc-p68x-m57g.json index 40b264edbfe..a83d37b81b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hmc-p68x-m57g/GHSA-5hmc-p68x-m57g.json +++ b/advisories/unreviewed/2022/05/GHSA-5hmc-p68x-m57g/GHSA-5hmc-p68x-m57g.json @@ -7,12 +7,8 @@ "CVE-2005-3461" ], "details": "Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.42 up to 8.45.17 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE01.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5pqg-5257-jmcm/GHSA-5pqg-5257-jmcm.json b/advisories/unreviewed/2022/05/GHSA-5pqg-5257-jmcm/GHSA-5pqg-5257-jmcm.json index 52c1789fe53..faf42108c8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pqg-5257-jmcm/GHSA-5pqg-5257-jmcm.json +++ b/advisories/unreviewed/2022/05/GHSA-5pqg-5257-jmcm/GHSA-5pqg-5257-jmcm.json @@ -7,12 +7,8 @@ "CVE-2005-3278" ], "details": "Integer overflow in the openpsfile function in gsinterf.c for Jan Kybic BitMap Viewer (BMV) 1.2 allows local users to execute arbitrary code via a PostScript (PS) file containing a large number of pages value, which leads to a resultant buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5prv-q7hh-r3fg/GHSA-5prv-q7hh-r3fg.json b/advisories/unreviewed/2022/05/GHSA-5prv-q7hh-r3fg/GHSA-5prv-q7hh-r3fg.json index bad23e03139..44392c191f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5prv-q7hh-r3fg/GHSA-5prv-q7hh-r3fg.json +++ b/advisories/unreviewed/2022/05/GHSA-5prv-q7hh-r3fg/GHSA-5prv-q7hh-r3fg.json @@ -7,12 +7,8 @@ "CVE-2021-33883" ], "details": "A Cleartext Transmission of Sensitive Information vulnerability in B. Braun SpaceCom2 prior to 012U000062 allows a remote attacker to obtain sensitive information by snooping on the network traffic. The exposed data includes critical values for a pump's internal configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rh7-2q7c-5vfc/GHSA-5rh7-2q7c-5vfc.json b/advisories/unreviewed/2022/05/GHSA-5rh7-2q7c-5vfc/GHSA-5rh7-2q7c-5vfc.json index 97f7cb6310f..487af5a5c79 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rh7-2q7c-5vfc/GHSA-5rh7-2q7c-5vfc.json +++ b/advisories/unreviewed/2022/05/GHSA-5rh7-2q7c-5vfc/GHSA-5rh7-2q7c-5vfc.json @@ -7,12 +7,8 @@ "CVE-2005-2887" ], "details": "MAXdev MD-Pro 1.0.73, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct request to (1) wiki.php, (2) AutoTheme directory, (3) Blocks directory, (4) admin.php, (5) pnadmin.php, or (6) Topics directory, which reveal the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5rw6-m95w-c453/GHSA-5rw6-m95w-c453.json b/advisories/unreviewed/2022/05/GHSA-5rw6-m95w-c453/GHSA-5rw6-m95w-c453.json index d7722b33d75..55cfe8b4e3e 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rw6-m95w-c453/GHSA-5rw6-m95w-c453.json +++ b/advisories/unreviewed/2022/05/GHSA-5rw6-m95w-c453/GHSA-5rw6-m95w-c453.json @@ -7,12 +7,8 @@ "CVE-2005-2904" ], "details": "Zebedee 2.4.1, when \"allowed redirection port\" is not set, allows remote attackers to cause a denial of service (application crash) via a zero in the port number of the protocol option header, which triggers an assert error in the makeConnection function in zebedee.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5vxq-fv88-x9jq/GHSA-5vxq-fv88-x9jq.json b/advisories/unreviewed/2022/05/GHSA-5vxq-fv88-x9jq/GHSA-5vxq-fv88-x9jq.json index f126cb24326..6dbe696a925 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vxq-fv88-x9jq/GHSA-5vxq-fv88-x9jq.json +++ b/advisories/unreviewed/2022/05/GHSA-5vxq-fv88-x9jq/GHSA-5vxq-fv88-x9jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wc4-gq9m-293h/GHSA-5wc4-gq9m-293h.json b/advisories/unreviewed/2022/05/GHSA-5wc4-gq9m-293h/GHSA-5wc4-gq9m-293h.json index a41892bb241..0e4edf29924 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wc4-gq9m-293h/GHSA-5wc4-gq9m-293h.json +++ b/advisories/unreviewed/2022/05/GHSA-5wc4-gq9m-293h/GHSA-5wc4-gq9m-293h.json @@ -7,12 +7,8 @@ "CVE-2021-3694" ], "details": "LedgerSMB does not sufficiently HTML-encode error messages sent to the browser. By sending a specially crafted URL to an authenticated user, this flaw can be abused for remote code execution and information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5x8r-x7fw-hf3f/GHSA-5x8r-x7fw-hf3f.json b/advisories/unreviewed/2022/05/GHSA-5x8r-x7fw-hf3f/GHSA-5x8r-x7fw-hf3f.json index f1268a35ed4..4652bdb2712 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x8r-x7fw-hf3f/GHSA-5x8r-x7fw-hf3f.json +++ b/advisories/unreviewed/2022/05/GHSA-5x8r-x7fw-hf3f/GHSA-5x8r-x7fw-hf3f.json @@ -7,12 +7,8 @@ "CVE-2020-18469" ], "details": "Stored cross-site scripting (XSS) vulnerability in the Copyright Text field found in the Application page under the Configuration menu in Rukovoditel 2.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted website name by doing an authenticated POST HTTP request to /rukovoditel_2.4.1/index.php?module=configuration/save&redirect_to=configuration/application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5xpm-7p78-vq32/GHSA-5xpm-7p78-vq32.json b/advisories/unreviewed/2022/05/GHSA-5xpm-7p78-vq32/GHSA-5xpm-7p78-vq32.json index 405bf437d79..b04fab86f88 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xpm-7p78-vq32/GHSA-5xpm-7p78-vq32.json +++ b/advisories/unreviewed/2022/05/GHSA-5xpm-7p78-vq32/GHSA-5xpm-7p78-vq32.json @@ -7,12 +7,8 @@ "CVE-2005-3308" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) comment parameter in detail.php, (3) the username parameter in get.php, and (4) the search parameter in index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62mx-73c7-569h/GHSA-62mx-73c7-569h.json b/advisories/unreviewed/2022/05/GHSA-62mx-73c7-569h/GHSA-62mx-73c7-569h.json index 9b1f968ce2f..0770aeed6eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-62mx-73c7-569h/GHSA-62mx-73c7-569h.json +++ b/advisories/unreviewed/2022/05/GHSA-62mx-73c7-569h/GHSA-62mx-73c7-569h.json @@ -7,12 +7,8 @@ "CVE-2005-2956" ], "details": "ATutor 1.5.1, and possibly earlier versions, stores temporary chat logs under the web document root with insufficient access control and predictable filenames, which allows remote attackers to obtain user chat conversations via direct requests to those files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6357-93rg-cf69/GHSA-6357-93rg-cf69.json b/advisories/unreviewed/2022/05/GHSA-6357-93rg-cf69/GHSA-6357-93rg-cf69.json index 1345215332a..872186267a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6357-93rg-cf69/GHSA-6357-93rg-cf69.json +++ b/advisories/unreviewed/2022/05/GHSA-6357-93rg-cf69/GHSA-6357-93rg-cf69.json @@ -7,12 +7,8 @@ "CVE-2021-29056" ], "details": "Cross Site Scripting (XSS) vulnerability exists in Pixelimity 1.0 via the HTTP POST parameter to admin/setting.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63g2-5r57-6pg5/GHSA-63g2-5r57-6pg5.json b/advisories/unreviewed/2022/05/GHSA-63g2-5r57-6pg5/GHSA-63g2-5r57-6pg5.json index 72d4145e024..ee08e050323 100644 --- a/advisories/unreviewed/2022/05/GHSA-63g2-5r57-6pg5/GHSA-63g2-5r57-6pg5.json +++ b/advisories/unreviewed/2022/05/GHSA-63g2-5r57-6pg5/GHSA-63g2-5r57-6pg5.json @@ -7,12 +7,8 @@ "CVE-2005-3369" ], "details": "Multiple SQL injection vulnerabilities in the Info-DB module (info_db.php) in Woltlab Burning Board 2.7 and earlier allow remote attackers to execute arbitrary SQL commands and possibly upload files via the (1) fileid and (2) subkatid parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-643c-phv3-fcvp/GHSA-643c-phv3-fcvp.json b/advisories/unreviewed/2022/05/GHSA-643c-phv3-fcvp/GHSA-643c-phv3-fcvp.json index 93e5ea452da..1d06fdc871c 100644 --- a/advisories/unreviewed/2022/05/GHSA-643c-phv3-fcvp/GHSA-643c-phv3-fcvp.json +++ b/advisories/unreviewed/2022/05/GHSA-643c-phv3-fcvp/GHSA-643c-phv3-fcvp.json @@ -7,12 +7,8 @@ "CVE-2021-36279" ], "details": "Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulnerability. This could allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to access privileged information about the cluster.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6494-f9qh-94xm/GHSA-6494-f9qh-94xm.json b/advisories/unreviewed/2022/05/GHSA-6494-f9qh-94xm/GHSA-6494-f9qh-94xm.json index 08e04f943d3..78667ee290c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6494-f9qh-94xm/GHSA-6494-f9qh-94xm.json +++ b/advisories/unreviewed/2022/05/GHSA-6494-f9qh-94xm/GHSA-6494-f9qh-94xm.json @@ -7,12 +7,8 @@ "CVE-2005-3291" ], "details": "Stani's Python Editor (SPE) 0.7.5 is installed with world-writable permissions, which allows local users to gain privileges by modifying executable files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-64fh-7fr2-j79v/GHSA-64fh-7fr2-j79v.json b/advisories/unreviewed/2022/05/GHSA-64fh-7fr2-j79v/GHSA-64fh-7fr2-j79v.json index fa9047aa1b6..ed5b3f10102 100644 --- a/advisories/unreviewed/2022/05/GHSA-64fh-7fr2-j79v/GHSA-64fh-7fr2-j79v.json +++ b/advisories/unreviewed/2022/05/GHSA-64fh-7fr2-j79v/GHSA-64fh-7fr2-j79v.json @@ -7,12 +7,8 @@ "CVE-2021-3459" ], "details": "A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privileged shell access and/or arbitrary privileged commands to be executed on the adapter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-65qq-9m6q-q3fq/GHSA-65qq-9m6q-q3fq.json b/advisories/unreviewed/2022/05/GHSA-65qq-9m6q-q3fq/GHSA-65qq-9m6q-q3fq.json index 1e8a4491380..87eda5a1b90 100644 --- a/advisories/unreviewed/2022/05/GHSA-65qq-9m6q-q3fq/GHSA-65qq-9m6q-q3fq.json +++ b/advisories/unreviewed/2022/05/GHSA-65qq-9m6q-q3fq/GHSA-65qq-9m6q-q3fq.json @@ -7,12 +7,8 @@ "CVE-2005-2967" ], "details": "Format string vulnerability in input_cdda.c in xine-lib 1-beta through 1-beta 3, 1-rc, 1.0 through 1.0.2, and 1.1.1 allows remote servers to execute arbitrary code via format string specifiers in metadata in CDDB server responses when the victim plays a CD.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66vq-qwrh-g7rq/GHSA-66vq-qwrh-g7rq.json b/advisories/unreviewed/2022/05/GHSA-66vq-qwrh-g7rq/GHSA-66vq-qwrh-g7rq.json index 14954e75c3e..1151807a727 100644 --- a/advisories/unreviewed/2022/05/GHSA-66vq-qwrh-g7rq/GHSA-66vq-qwrh-g7rq.json +++ b/advisories/unreviewed/2022/05/GHSA-66vq-qwrh-g7rq/GHSA-66vq-qwrh-g7rq.json @@ -7,12 +7,8 @@ "CVE-2005-3390" ], "details": "The RFC1867 file upload feature in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5, when register_globals is enabled, allows remote attackers to modify the GLOBALS array and bypass security protections of PHP applications via a multipart/form-data POST request with a \"GLOBALS\" fileupload field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-66wq-87xx-hhfp/GHSA-66wq-87xx-hhfp.json b/advisories/unreviewed/2022/05/GHSA-66wq-87xx-hhfp/GHSA-66wq-87xx-hhfp.json index 75c0df7d960..f414dae9eb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-66wq-87xx-hhfp/GHSA-66wq-87xx-hhfp.json +++ b/advisories/unreviewed/2022/05/GHSA-66wq-87xx-hhfp/GHSA-66wq-87xx-hhfp.json @@ -7,12 +7,8 @@ "CVE-2005-2867" ], "details": "SQL injection vulnerability in BlueWhaleCRM allows remote attackers to execute arbitrary SQL commands via the Account ID field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-67pj-hwx8-33wx/GHSA-67pj-hwx8-33wx.json b/advisories/unreviewed/2022/05/GHSA-67pj-hwx8-33wx/GHSA-67pj-hwx8-33wx.json index cb01d569cf1..64e0104cc1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-67pj-hwx8-33wx/GHSA-67pj-hwx8-33wx.json +++ b/advisories/unreviewed/2022/05/GHSA-67pj-hwx8-33wx/GHSA-67pj-hwx8-33wx.json @@ -7,12 +7,8 @@ "CVE-2005-2849" ], "details": "Argument injection vulnerability in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to (1) read portions of source code via the -f option to Dig (dig_device.cgi), (2) determine file existence via the -r argument to Tcpdump (tcpdump_device.cgi) or (3) modify files in the cgi-bin directory via the -w argument to Tcpdump.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68f8-hhxj-3xpv/GHSA-68f8-hhxj-3xpv.json b/advisories/unreviewed/2022/05/GHSA-68f8-hhxj-3xpv/GHSA-68f8-hhxj-3xpv.json index 2781367a7b8..fe2b334b0b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-68f8-hhxj-3xpv/GHSA-68f8-hhxj-3xpv.json +++ b/advisories/unreviewed/2022/05/GHSA-68f8-hhxj-3xpv/GHSA-68f8-hhxj-3xpv.json @@ -7,12 +7,8 @@ "CVE-2021-28638" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by a Heap-based Buffer overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-696f-f5f3-q33x/GHSA-696f-f5f3-q33x.json b/advisories/unreviewed/2022/05/GHSA-696f-f5f3-q33x/GHSA-696f-f5f3-q33x.json index 6540ea4520d..cddfe8c5853 100644 --- a/advisories/unreviewed/2022/05/GHSA-696f-f5f3-q33x/GHSA-696f-f5f3-q33x.json +++ b/advisories/unreviewed/2022/05/GHSA-696f-f5f3-q33x/GHSA-696f-f5f3-q33x.json @@ -7,12 +7,8 @@ "CVE-2005-2809" ], "details": "silc daemon (silcd.c) in Secure Internet Live Conferencing (SILC) 1.0 and earlier allows local users to overwrite arbitrary files via a symlink attack on the silcd.[PID].stats temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-69w3-h2gr-24wp/GHSA-69w3-h2gr-24wp.json b/advisories/unreviewed/2022/05/GHSA-69w3-h2gr-24wp/GHSA-69w3-h2gr-24wp.json index dcd831fefc8..f2ce5741df6 100644 --- a/advisories/unreviewed/2022/05/GHSA-69w3-h2gr-24wp/GHSA-69w3-h2gr-24wp.json +++ b/advisories/unreviewed/2022/05/GHSA-69w3-h2gr-24wp/GHSA-69w3-h2gr-24wp.json @@ -7,12 +7,8 @@ "CVE-2005-3039" ], "details": "SQL injection vulnerability in infopage.asp in Mall23 eCommerce allows remote attackers to execute arbitrary SQL commands via the idPage parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6c37-r4j2-w535/GHSA-6c37-r4j2-w535.json b/advisories/unreviewed/2022/05/GHSA-6c37-r4j2-w535/GHSA-6c37-r4j2-w535.json index a89dc132846..88e205d9a1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c37-r4j2-w535/GHSA-6c37-r4j2-w535.json +++ b/advisories/unreviewed/2022/05/GHSA-6c37-r4j2-w535/GHSA-6c37-r4j2-w535.json @@ -7,12 +7,8 @@ "CVE-2005-2890" ], "details": "SecureOL VE2 1.05.1008 does not properly restrict public access to physical memory, which allows local users to bypass intended restrictions and gain access to the secured environment via direct access to the PhysicalMemory device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6c5h-jqw8-74mm/GHSA-6c5h-jqw8-74mm.json b/advisories/unreviewed/2022/05/GHSA-6c5h-jqw8-74mm/GHSA-6c5h-jqw8-74mm.json index 1f7e343f5ef..6ddcce6956b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6c5h-jqw8-74mm/GHSA-6c5h-jqw8-74mm.json +++ b/advisories/unreviewed/2022/05/GHSA-6c5h-jqw8-74mm/GHSA-6c5h-jqw8-74mm.json @@ -7,12 +7,8 @@ "CVE-2021-20753" ], "details": "Cross-site scripting vulnerability in Scheduler of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f2h-j7xx-jhp4/GHSA-6f2h-j7xx-jhp4.json b/advisories/unreviewed/2022/05/GHSA-6f2h-j7xx-jhp4/GHSA-6f2h-j7xx-jhp4.json index 759279c334d..5a6bbdc724e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f2h-j7xx-jhp4/GHSA-6f2h-j7xx-jhp4.json +++ b/advisories/unreviewed/2022/05/GHSA-6f2h-j7xx-jhp4/GHSA-6f2h-j7xx-jhp4.json @@ -7,12 +7,8 @@ "CVE-2021-40147" ], "details": "EmTec ZOC before 8.02.2 allows \\e[201~ pastes, a different vulnerability than CVE-2021-32198.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6ff7-4wcg-rwpj/GHSA-6ff7-4wcg-rwpj.json b/advisories/unreviewed/2022/05/GHSA-6ff7-4wcg-rwpj/GHSA-6ff7-4wcg-rwpj.json index 617d073db92..e1401def735 100644 --- a/advisories/unreviewed/2022/05/GHSA-6ff7-4wcg-rwpj/GHSA-6ff7-4wcg-rwpj.json +++ b/advisories/unreviewed/2022/05/GHSA-6ff7-4wcg-rwpj/GHSA-6ff7-4wcg-rwpj.json @@ -7,12 +7,8 @@ "CVE-2021-0407" ], "details": "In clk driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05479659; Issue ID: ALPS05479659.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6g46-qw9f-mgfx/GHSA-6g46-qw9f-mgfx.json b/advisories/unreviewed/2022/05/GHSA-6g46-qw9f-mgfx/GHSA-6g46-qw9f-mgfx.json index dec6bffe06f..3dff7d7adb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g46-qw9f-mgfx/GHSA-6g46-qw9f-mgfx.json +++ b/advisories/unreviewed/2022/05/GHSA-6g46-qw9f-mgfx/GHSA-6g46-qw9f-mgfx.json @@ -7,12 +7,8 @@ "CVE-2005-3216" ], "details": "Multiple interpretation error in unspecified versions of Sophos Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6gcj-36mj-56q7/GHSA-6gcj-36mj-56q7.json b/advisories/unreviewed/2022/05/GHSA-6gcj-36mj-56q7/GHSA-6gcj-36mj-56q7.json index e282e0e5e1c..fa40b5ca727 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gcj-36mj-56q7/GHSA-6gcj-36mj-56q7.json +++ b/advisories/unreviewed/2022/05/GHSA-6gcj-36mj-56q7/GHSA-6gcj-36mj-56q7.json @@ -7,12 +7,8 @@ "CVE-2005-3173" ], "details": "Microsoft Windows 2000 before Update Rollup 1 for SP4 does not apply group policies if the user logs on using UPN credentials with a trailing dot, which prevents Windows 2000 from finding the correct domain controller and could allow the user to bypass intended restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6gx9-22p7-84wm/GHSA-6gx9-22p7-84wm.json b/advisories/unreviewed/2022/05/GHSA-6gx9-22p7-84wm/GHSA-6gx9-22p7-84wm.json index 244c4bb0ec2..dffc260a6f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gx9-22p7-84wm/GHSA-6gx9-22p7-84wm.json +++ b/advisories/unreviewed/2022/05/GHSA-6gx9-22p7-84wm/GHSA-6gx9-22p7-84wm.json @@ -7,12 +7,8 @@ "CVE-2005-3165" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki before 1.4.9 allow remote attackers to inject arbitrary web script or HTML via (1) tags or (2) Extension or sections that \"bypass HTML style attribute restrictions\" that are intended to protect against XSS vulnerabilities in Internet Explorer clients.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6h4h-9xp4-x824/GHSA-6h4h-9xp4-x824.json b/advisories/unreviewed/2022/05/GHSA-6h4h-9xp4-x824/GHSA-6h4h-9xp4-x824.json index 976b4445849..17956061f36 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h4h-9xp4-x824/GHSA-6h4h-9xp4-x824.json +++ b/advisories/unreviewed/2022/05/GHSA-6h4h-9xp4-x824/GHSA-6h4h-9xp4-x824.json @@ -7,12 +7,8 @@ "CVE-2021-39273" ], "details": "In XeroSecurity Sn1per 9.0 (free version), insecure permissions (0777) are set upon application execution, allowing an unprivileged user to modify the application, modules, and configuration files. This leads to arbitrary code execution with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6h76-2q8f-58j3/GHSA-6h76-2q8f-58j3.json b/advisories/unreviewed/2022/05/GHSA-6h76-2q8f-58j3/GHSA-6h76-2q8f-58j3.json index 31db5e78b8b..3df5e3beb87 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h76-2q8f-58j3/GHSA-6h76-2q8f-58j3.json +++ b/advisories/unreviewed/2022/05/GHSA-6h76-2q8f-58j3/GHSA-6h76-2q8f-58j3.json @@ -7,12 +7,8 @@ "CVE-2005-3240" ], "details": "Race condition in Microsoft Internet Explorer allows user-assisted attackers to overwrite arbitrary files and possibly execute code by tricking a user into performing a drag-and-drop action from certain objects, such as file objects within a folder view, then predicting the drag action, and re-focusing to a malicious window.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hgv-gw79-9vq8/GHSA-6hgv-gw79-9vq8.json b/advisories/unreviewed/2022/05/GHSA-6hgv-gw79-9vq8/GHSA-6hgv-gw79-9vq8.json index d13d6c6f7c0..2ce2c7a633a 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hgv-gw79-9vq8/GHSA-6hgv-gw79-9vq8.json +++ b/advisories/unreviewed/2022/05/GHSA-6hgv-gw79-9vq8/GHSA-6hgv-gw79-9vq8.json @@ -7,12 +7,8 @@ "CVE-2005-3040" ], "details": "Directory traversal vulnerability in the web interface (ISALogin.dll) for TAC Vista 4.0, and possibly other versions before 4.3, allows remote attackers to read arbitrary files via \"..\" sequences in the Template parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6m3h-mqqv-9gfw/GHSA-6m3h-mqqv-9gfw.json b/advisories/unreviewed/2022/05/GHSA-6m3h-mqqv-9gfw/GHSA-6m3h-mqqv-9gfw.json index cf207b1c878..2f72c690b0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m3h-mqqv-9gfw/GHSA-6m3h-mqqv-9gfw.json +++ b/advisories/unreviewed/2022/05/GHSA-6m3h-mqqv-9gfw/GHSA-6m3h-mqqv-9gfw.json @@ -7,12 +7,8 @@ "CVE-2005-3001" ], "details": "Unspecified vulnerability in the \"tl\" driver in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6m53-44j7-5pr5/GHSA-6m53-44j7-5pr5.json b/advisories/unreviewed/2022/05/GHSA-6m53-44j7-5pr5/GHSA-6m53-44j7-5pr5.json index 608db846802..b8d072f6595 100644 --- a/advisories/unreviewed/2022/05/GHSA-6m53-44j7-5pr5/GHSA-6m53-44j7-5pr5.json +++ b/advisories/unreviewed/2022/05/GHSA-6m53-44j7-5pr5/GHSA-6m53-44j7-5pr5.json @@ -7,12 +7,8 @@ "CVE-2005-3441" ], "details": "Unspecified vulnerability in Intelligent Agent in Oracle Database Server 9i up to 9.0.1.5 has unknown impact and attack vectors, aka Oracle Vuln# DB14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6mvq-9mv3-ppcp/GHSA-6mvq-9mv3-ppcp.json b/advisories/unreviewed/2022/05/GHSA-6mvq-9mv3-ppcp/GHSA-6mvq-9mv3-ppcp.json index 3ec6d127ad8..e52d4e8e955 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mvq-9mv3-ppcp/GHSA-6mvq-9mv3-ppcp.json +++ b/advisories/unreviewed/2022/05/GHSA-6mvq-9mv3-ppcp/GHSA-6mvq-9mv3-ppcp.json @@ -7,12 +7,8 @@ "CVE-2005-2878" ], "details": "Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6pgm-h8pf-fjp8/GHSA-6pgm-h8pf-fjp8.json b/advisories/unreviewed/2022/05/GHSA-6pgm-h8pf-fjp8/GHSA-6pgm-h8pf-fjp8.json index 81866b0c8ee..2f8e363090e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pgm-h8pf-fjp8/GHSA-6pgm-h8pf-fjp8.json +++ b/advisories/unreviewed/2022/05/GHSA-6pgm-h8pf-fjp8/GHSA-6pgm-h8pf-fjp8.json @@ -7,12 +7,8 @@ "CVE-2005-2868" ], "details": "ZipTorrent 1.3.7.3 stores sensitive information in plaintext in the pref.txt file, which allows local users to obtain sensitive information such as proxy server information and passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6phc-wxq6-x6fq/GHSA-6phc-wxq6-x6fq.json b/advisories/unreviewed/2022/05/GHSA-6phc-wxq6-x6fq/GHSA-6phc-wxq6-x6fq.json index 7822d2a111c..50d24ecc766 100644 --- a/advisories/unreviewed/2022/05/GHSA-6phc-wxq6-x6fq/GHSA-6phc-wxq6-x6fq.json +++ b/advisories/unreviewed/2022/05/GHSA-6phc-wxq6-x6fq/GHSA-6phc-wxq6-x6fq.json @@ -7,12 +7,8 @@ "CVE-2005-2880" ], "details": "Multiple SQL injection vulnerabilities in phpCommunityCalendar 4.0.3, and possibly earlier versions, allow remote attackers to execute arbitrary SQL commands via the (1) login field in login.php or (2) LocationID parameter to week.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6q4v-vwc9-rgq7/GHSA-6q4v-vwc9-rgq7.json b/advisories/unreviewed/2022/05/GHSA-6q4v-vwc9-rgq7/GHSA-6q4v-vwc9-rgq7.json index 26698cb1eaf..d5091b45746 100644 --- a/advisories/unreviewed/2022/05/GHSA-6q4v-vwc9-rgq7/GHSA-6q4v-vwc9-rgq7.json +++ b/advisories/unreviewed/2022/05/GHSA-6q4v-vwc9-rgq7/GHSA-6q4v-vwc9-rgq7.json @@ -7,12 +7,8 @@ "CVE-2021-0641" ], "details": "In getAvailableSubscriptionInfoList of SubscriptionController.java, there is a possible disclosure of unique identifiers due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11Android ID: A-185235454", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6q7m-895m-rg7r/GHSA-6q7m-895m-rg7r.json b/advisories/unreviewed/2022/05/GHSA-6q7m-895m-rg7r/GHSA-6q7m-895m-rg7r.json index 4adb51df946..f49f92be8cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6q7m-895m-rg7r/GHSA-6q7m-895m-rg7r.json +++ b/advisories/unreviewed/2022/05/GHSA-6q7m-895m-rg7r/GHSA-6q7m-895m-rg7r.json @@ -7,12 +7,8 @@ "CVE-2005-3209" ], "details": "Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database access to obtain those passwords and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6rxj-p3gc-3ph9/GHSA-6rxj-p3gc-3ph9.json b/advisories/unreviewed/2022/05/GHSA-6rxj-p3gc-3ph9/GHSA-6rxj-p3gc-3ph9.json index 123dd94352d..335400a2b2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rxj-p3gc-3ph9/GHSA-6rxj-p3gc-3ph9.json +++ b/advisories/unreviewed/2022/05/GHSA-6rxj-p3gc-3ph9/GHSA-6rxj-p3gc-3ph9.json @@ -7,12 +7,8 @@ "CVE-2005-3069" ], "details": "xferfaxstats in HylaFax 4.2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the xferfax$$ temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6vf6-5443-jww8/GHSA-6vf6-5443-jww8.json b/advisories/unreviewed/2022/05/GHSA-6vf6-5443-jww8/GHSA-6vf6-5443-jww8.json index 91a19fe54ce..f8b7f388c6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-6vf6-5443-jww8/GHSA-6vf6-5443-jww8.json +++ b/advisories/unreviewed/2022/05/GHSA-6vf6-5443-jww8/GHSA-6vf6-5443-jww8.json @@ -7,12 +7,8 @@ "CVE-2021-24558" ], "details": "The pspin_duplicate_post_save_as_new_post function of the Project Status WordPress plugin through 1.6 does not sanitise, validate or escape the post GET parameter passed to it before outputting it in an error message when the related post does not exist, leading to a reflected XSS issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6w2p-2q8v-8qwr/GHSA-6w2p-2q8v-8qwr.json b/advisories/unreviewed/2022/05/GHSA-6w2p-2q8v-8qwr/GHSA-6w2p-2q8v-8qwr.json index dd120984829..377fb445c6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w2p-2q8v-8qwr/GHSA-6w2p-2q8v-8qwr.json +++ b/advisories/unreviewed/2022/05/GHSA-6w2p-2q8v-8qwr/GHSA-6w2p-2q8v-8qwr.json @@ -7,12 +7,8 @@ "CVE-2005-3184" ], "details": "Buffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc.c) in Ethereal allows remote attackers to execute arbitrary code via a srvloc packet with a modified length value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6wr5-53rh-g7rp/GHSA-6wr5-53rh-g7rp.json b/advisories/unreviewed/2022/05/GHSA-6wr5-53rh-g7rp/GHSA-6wr5-53rh-g7rp.json index 31b714d0d81..38b6ed2904d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wr5-53rh-g7rp/GHSA-6wr5-53rh-g7rp.json +++ b/advisories/unreviewed/2022/05/GHSA-6wr5-53rh-g7rp/GHSA-6wr5-53rh-g7rp.json @@ -7,12 +7,8 @@ "CVE-2005-3082" ], "details": "SQL injection vulnerability in admin.php in SEO-Board 1.0.2 allows remote attackers to execute arbitrary SQL commands via the user_pass_sha1 value in a cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6x5p-g335-gjh8/GHSA-6x5p-g335-gjh8.json b/advisories/unreviewed/2022/05/GHSA-6x5p-g335-gjh8/GHSA-6x5p-g335-gjh8.json index e1987b0819b..deb3391f637 100644 --- a/advisories/unreviewed/2022/05/GHSA-6x5p-g335-gjh8/GHSA-6x5p-g335-gjh8.json +++ b/advisories/unreviewed/2022/05/GHSA-6x5p-g335-gjh8/GHSA-6x5p-g335-gjh8.json @@ -7,12 +7,8 @@ "CVE-2005-3392" ], "details": "Unspecified vulnerability in PHP before 4.4.1, when using the virtual function on Apache 2, allows remote attackers to bypass safe_mode and open_basedir directives.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -108,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6xw3-8926-pq6q/GHSA-6xw3-8926-pq6q.json b/advisories/unreviewed/2022/05/GHSA-6xw3-8926-pq6q/GHSA-6xw3-8926-pq6q.json index ee98aefa847..1c9e41364e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6xw3-8926-pq6q/GHSA-6xw3-8926-pq6q.json +++ b/advisories/unreviewed/2022/05/GHSA-6xw3-8926-pq6q/GHSA-6xw3-8926-pq6q.json @@ -7,12 +7,8 @@ "CVE-2021-22256" ], "details": "Improper authorization in GitLab CE/EE affecting all versions since 12.6 allowed guest users to create issues for Sentry errors and track their status", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7274-38f2-76jh/GHSA-7274-38f2-76jh.json b/advisories/unreviewed/2022/05/GHSA-7274-38f2-76jh/GHSA-7274-38f2-76jh.json index 5891cf97f56..695f48240ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-7274-38f2-76jh/GHSA-7274-38f2-76jh.json +++ b/advisories/unreviewed/2022/05/GHSA-7274-38f2-76jh/GHSA-7274-38f2-76jh.json @@ -7,12 +7,8 @@ "CVE-2020-19669" ], "details": "Cross Site Request Forgery (CSRF) vulnerability exists in Eyoucms 1.3.6 that can add an admin account via /login.php?m=admin&c=Admin&a=admin_add&lang=cn.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-728w-gxm6-g7c9/GHSA-728w-gxm6-g7c9.json b/advisories/unreviewed/2022/05/GHSA-728w-gxm6-g7c9/GHSA-728w-gxm6-g7c9.json index 6f64c91cb68..03a6c103f53 100644 --- a/advisories/unreviewed/2022/05/GHSA-728w-gxm6-g7c9/GHSA-728w-gxm6-g7c9.json +++ b/advisories/unreviewed/2022/05/GHSA-728w-gxm6-g7c9/GHSA-728w-gxm6-g7c9.json @@ -7,12 +7,8 @@ "CVE-2021-20775" ], "details": "Improper input validation vulnerability in Bulletin of Cybozu Garoon 4.10.0 to 5.5.0 allows a remote authenticated attacker to obtain the data of Comment and Space without the viewing privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72jx-jp99-v43g/GHSA-72jx-jp99-v43g.json b/advisories/unreviewed/2022/05/GHSA-72jx-jp99-v43g/GHSA-72jx-jp99-v43g.json index ac014036ab4..a909f9d11f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-72jx-jp99-v43g/GHSA-72jx-jp99-v43g.json +++ b/advisories/unreviewed/2022/05/GHSA-72jx-jp99-v43g/GHSA-72jx-jp99-v43g.json @@ -7,12 +7,8 @@ "CVE-2005-3227" ], "details": "Multiple interpretation error in unspecified versions of UNA Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72m9-jj7r-733c/GHSA-72m9-jj7r-733c.json b/advisories/unreviewed/2022/05/GHSA-72m9-jj7r-733c/GHSA-72m9-jj7r-733c.json index 4097b935ad4..bdc17dff9fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-72m9-jj7r-733c/GHSA-72m9-jj7r-733c.json +++ b/advisories/unreviewed/2022/05/GHSA-72m9-jj7r-733c/GHSA-72m9-jj7r-733c.json @@ -7,12 +7,8 @@ "CVE-2005-3253" ], "details": "Wireless Access Points (AP) for (1) Avaya AP-3 through AP-6 2.5 to 2.5.4, and AP-7/AP-8 2.5 and other versions before 3.1, and (2) Proxim AP-600 and AP-2000 before 2.5.5, and Proxim AP-700 and AP-4000 after 2.4.11 and before 3.1, use a static WEP key of \"12345\", which allows remote attackers to bypass authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-73g9-qv88-68pc/GHSA-73g9-qv88-68pc.json b/advisories/unreviewed/2022/05/GHSA-73g9-qv88-68pc/GHSA-73g9-qv88-68pc.json index a3ba5a9c8b7..db2d21d9b7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-73g9-qv88-68pc/GHSA-73g9-qv88-68pc.json +++ b/advisories/unreviewed/2022/05/GHSA-73g9-qv88-68pc/GHSA-73g9-qv88-68pc.json @@ -7,12 +7,8 @@ "CVE-2005-3083" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in CMS Made Simple 0.10 allows remote attackers to inject arbitrary web script or HTML via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-743v-wpcg-936m/GHSA-743v-wpcg-936m.json b/advisories/unreviewed/2022/05/GHSA-743v-wpcg-936m/GHSA-743v-wpcg-936m.json index 92546c4f033..da3543e0f69 100644 --- a/advisories/unreviewed/2022/05/GHSA-743v-wpcg-936m/GHSA-743v-wpcg-936m.json +++ b/advisories/unreviewed/2022/05/GHSA-743v-wpcg-936m/GHSA-743v-wpcg-936m.json @@ -7,12 +7,8 @@ "CVE-2005-3404" ], "details": "Multiple PHP file inclusion vulnerabilities in ATutor 1.4.1 through 1.5.1-pl1 allow remote attackers to include arbitrary files via the section parameter followed by a null byte (%00) in (1) body_header.inc.php and (2) print.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7457-3m24-88hm/GHSA-7457-3m24-88hm.json b/advisories/unreviewed/2022/05/GHSA-7457-3m24-88hm/GHSA-7457-3m24-88hm.json index 586d702cb1e..3c886b4098c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7457-3m24-88hm/GHSA-7457-3m24-88hm.json +++ b/advisories/unreviewed/2022/05/GHSA-7457-3m24-88hm/GHSA-7457-3m24-88hm.json @@ -7,12 +7,8 @@ "CVE-2020-24130" ], "details": "A cross site request forgery (CSRF) vulnerability in the configure.html component of Ponzu 0.11.0 allows attackers to change user and administrator credentials, and add or delete administrator accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-748v-rhfv-4hm6/GHSA-748v-rhfv-4hm6.json b/advisories/unreviewed/2022/05/GHSA-748v-rhfv-4hm6/GHSA-748v-rhfv-4hm6.json index fe95c92ddbf..0540b35f0c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-748v-rhfv-4hm6/GHSA-748v-rhfv-4hm6.json +++ b/advisories/unreviewed/2022/05/GHSA-748v-rhfv-4hm6/GHSA-748v-rhfv-4hm6.json @@ -7,12 +7,8 @@ "CVE-2020-35684" ], "details": "An issue was discovered in HCC Nichestack 3.0. The code that parses TCP packets relies on an unchecked value of the IP payload size (extracted from the IP header) to compute the length of the TCP payload within the TCP checksum computation function. When the IP payload size is set to be smaller than the size of the IP header, the TCP checksum computation function may read out of bounds (a low-impact write-out-of-bounds is also possible).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74hv-h455-w6jh/GHSA-74hv-h455-w6jh.json b/advisories/unreviewed/2022/05/GHSA-74hv-h455-w6jh/GHSA-74hv-h455-w6jh.json index 5e6db9897ca..bbc72f88207 100644 --- a/advisories/unreviewed/2022/05/GHSA-74hv-h455-w6jh/GHSA-74hv-h455-w6jh.json +++ b/advisories/unreviewed/2022/05/GHSA-74hv-h455-w6jh/GHSA-74hv-h455-w6jh.json @@ -7,12 +7,8 @@ "CVE-2005-3265" ], "details": "Buffer overflow in Skype for Windows 1.1.x.0 through 1.4.x.83 allows remote attackers to execute arbitrary code via (1) callto:// and (2) skype:// links, or (3) a non-standard VCARD, possibly due to an underlying error in the SysUtils.WideFmtStr Delphi routine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-74q8-53wm-xp5r/GHSA-74q8-53wm-xp5r.json b/advisories/unreviewed/2022/05/GHSA-74q8-53wm-xp5r/GHSA-74q8-53wm-xp5r.json index f7b7b0a58a6..e9684e9fc5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-74q8-53wm-xp5r/GHSA-74q8-53wm-xp5r.json +++ b/advisories/unreviewed/2022/05/GHSA-74q8-53wm-xp5r/GHSA-74q8-53wm-xp5r.json @@ -7,12 +7,8 @@ "CVE-2005-3068" ], "details": "Unspecified vulnerability in Eric Integrated Development Environment (eric3) before 3.7.2 has unknown impact and attack vectors related to a \"potential security exploit.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-753r-rggq-c233/GHSA-753r-rggq-c233.json b/advisories/unreviewed/2022/05/GHSA-753r-rggq-c233/GHSA-753r-rggq-c233.json index d639c963d81..99808e2c225 100644 --- a/advisories/unreviewed/2022/05/GHSA-753r-rggq-c233/GHSA-753r-rggq-c233.json +++ b/advisories/unreviewed/2022/05/GHSA-753r-rggq-c233/GHSA-753r-rggq-c233.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7594-49mj-88xq/GHSA-7594-49mj-88xq.json b/advisories/unreviewed/2022/05/GHSA-7594-49mj-88xq/GHSA-7594-49mj-88xq.json index a0f9464117a..f81478102fe 100644 --- a/advisories/unreviewed/2022/05/GHSA-7594-49mj-88xq/GHSA-7594-49mj-88xq.json +++ b/advisories/unreviewed/2022/05/GHSA-7594-49mj-88xq/GHSA-7594-49mj-88xq.json @@ -7,12 +7,8 @@ "CVE-2005-2879" ], "details": "Advansysperu Software USB Lock Auto-Protect (AP) 1.5 uses a weak encryption scheme to encrypt passwords, which allows local users to gain sensitive information and bypass USB interface protection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75jh-p57m-93c3/GHSA-75jh-p57m-93c3.json b/advisories/unreviewed/2022/05/GHSA-75jh-p57m-93c3/GHSA-75jh-p57m-93c3.json index 5e19056fb5a..294ce6d9a8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-75jh-p57m-93c3/GHSA-75jh-p57m-93c3.json +++ b/advisories/unreviewed/2022/05/GHSA-75jh-p57m-93c3/GHSA-75jh-p57m-93c3.json @@ -7,12 +7,8 @@ "CVE-2005-3349" ], "details": "GNU Gnump3d before 2.9.8 allows local users to modify or delete arbitrary files via a symlink attack on the index.lok temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-766j-mwxq-ccvg/GHSA-766j-mwxq-ccvg.json b/advisories/unreviewed/2022/05/GHSA-766j-mwxq-ccvg/GHSA-766j-mwxq-ccvg.json index fdb545bf563..82075907c3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-766j-mwxq-ccvg/GHSA-766j-mwxq-ccvg.json +++ b/advisories/unreviewed/2022/05/GHSA-766j-mwxq-ccvg/GHSA-766j-mwxq-ccvg.json @@ -7,12 +7,8 @@ "CVE-2005-3246" ], "details": "Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (null dereference) via unknown vectors in the (1) SCSI, (2) sFlow, or (3) RTnet dissectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7749-gxmh-frwx/GHSA-7749-gxmh-frwx.json b/advisories/unreviewed/2022/05/GHSA-7749-gxmh-frwx/GHSA-7749-gxmh-frwx.json index 485f283a91d..fc070d5154e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7749-gxmh-frwx/GHSA-7749-gxmh-frwx.json +++ b/advisories/unreviewed/2022/05/GHSA-7749-gxmh-frwx/GHSA-7749-gxmh-frwx.json @@ -7,12 +7,8 @@ "CVE-2005-3200" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Utopia News Pro (UNP) 1.1.3 and 1.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the sitetitle parameter in header.php and (2) the version and (3) query_count parameters in footer.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7783-6q32-p3qm/GHSA-7783-6q32-p3qm.json b/advisories/unreviewed/2022/05/GHSA-7783-6q32-p3qm/GHSA-7783-6q32-p3qm.json index fe389436188..d021d917e81 100644 --- a/advisories/unreviewed/2022/05/GHSA-7783-6q32-p3qm/GHSA-7783-6q32-p3qm.json +++ b/advisories/unreviewed/2022/05/GHSA-7783-6q32-p3qm/GHSA-7783-6q32-p3qm.json @@ -7,12 +7,8 @@ "CVE-2005-3384" ], "details": "SQL injection vulnerability in Techno Dreams Guest Book script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in admin/login.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-77g9-3552-f5x8/GHSA-77g9-3552-f5x8.json b/advisories/unreviewed/2022/05/GHSA-77g9-3552-f5x8/GHSA-77g9-3552-f5x8.json index a07a7d79074..4bd4d706e58 100644 --- a/advisories/unreviewed/2022/05/GHSA-77g9-3552-f5x8/GHSA-77g9-3552-f5x8.json +++ b/advisories/unreviewed/2022/05/GHSA-77g9-3552-f5x8/GHSA-77g9-3552-f5x8.json @@ -7,12 +7,8 @@ "CVE-2021-39274" ], "details": "In XeroSecurity Sn1per 9.0 (free version), insecure directory permissions (0777) are set during installation, allowing an unprivileged user to modify the main application and the application configuration file. This results in arbitrary code execution with root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77gg-j5r4-j69x/GHSA-77gg-j5r4-j69x.json b/advisories/unreviewed/2022/05/GHSA-77gg-j5r4-j69x/GHSA-77gg-j5r4-j69x.json index 8cca3b3c157..f9b5ff48162 100644 --- a/advisories/unreviewed/2022/05/GHSA-77gg-j5r4-j69x/GHSA-77gg-j5r4-j69x.json +++ b/advisories/unreviewed/2022/05/GHSA-77gg-j5r4-j69x/GHSA-77gg-j5r4-j69x.json @@ -7,12 +7,8 @@ "CVE-2005-3374" ], "details": "Multiple interpretation error in F-Prot 3.16c allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-78m6-w6r4-m4h9/GHSA-78m6-w6r4-m4h9.json b/advisories/unreviewed/2022/05/GHSA-78m6-w6r4-m4h9/GHSA-78m6-w6r4-m4h9.json index 505f5f661dd..88da25d4925 100644 --- a/advisories/unreviewed/2022/05/GHSA-78m6-w6r4-m4h9/GHSA-78m6-w6r4-m4h9.json +++ b/advisories/unreviewed/2022/05/GHSA-78m6-w6r4-m4h9/GHSA-78m6-w6r4-m4h9.json @@ -7,12 +7,8 @@ "CVE-2005-3088" ], "details": "fetchmailconf before 1.49 in fetchmail 6.2.0, 6.2.5 and 6.2.5.2 creates configuration files with insecure world-readable permissions, which allows local users to obtain sensitive information such as passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-793w-7cp8-f4pv/GHSA-793w-7cp8-f4pv.json b/advisories/unreviewed/2022/05/GHSA-793w-7cp8-f4pv/GHSA-793w-7cp8-f4pv.json index 63db3a08cf2..eb6abf265d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-793w-7cp8-f4pv/GHSA-793w-7cp8-f4pv.json +++ b/advisories/unreviewed/2022/05/GHSA-793w-7cp8-f4pv/GHSA-793w-7cp8-f4pv.json @@ -7,12 +7,8 @@ "CVE-2005-3464" ], "details": "Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE04.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-79x5-xjf7-4c3r/GHSA-79x5-xjf7-4c3r.json b/advisories/unreviewed/2022/05/GHSA-79x5-xjf7-4c3r/GHSA-79x5-xjf7-4c3r.json index 3136c59639d..fdb7179a6c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-79x5-xjf7-4c3r/GHSA-79x5-xjf7-4c3r.json +++ b/advisories/unreviewed/2022/05/GHSA-79x5-xjf7-4c3r/GHSA-79x5-xjf7-4c3r.json @@ -7,12 +7,8 @@ "CVE-2005-2862" ], "details": "ADSL Road Runner modem in the Annex A family has a service running on port 224, which allows remote attackers to login to the modem with a blank password and gain unauthorized access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7chg-mxw7-5pfg/GHSA-7chg-mxw7-5pfg.json b/advisories/unreviewed/2022/05/GHSA-7chg-mxw7-5pfg/GHSA-7chg-mxw7-5pfg.json index 9b4a7c15f56..f032ce27500 100644 --- a/advisories/unreviewed/2022/05/GHSA-7chg-mxw7-5pfg/GHSA-7chg-mxw7-5pfg.json +++ b/advisories/unreviewed/2022/05/GHSA-7chg-mxw7-5pfg/GHSA-7chg-mxw7-5pfg.json @@ -7,12 +7,8 @@ "CVE-2021-37715" ], "details": "A remote cross-site scripting (XSS) vulnerability was discovered in Aruba AirWave Management Platform version(s): Prior to 8.2.13.0. Aruba has released upgrades for the Aruba AirWave Management Platform that address this security vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7f69-xr47-93rv/GHSA-7f69-xr47-93rv.json b/advisories/unreviewed/2022/05/GHSA-7f69-xr47-93rv/GHSA-7f69-xr47-93rv.json index c25dea671e3..36be27fcf7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f69-xr47-93rv/GHSA-7f69-xr47-93rv.json +++ b/advisories/unreviewed/2022/05/GHSA-7f69-xr47-93rv/GHSA-7f69-xr47-93rv.json @@ -7,12 +7,8 @@ "CVE-2005-3099" ], "details": "Unspecified vulnerability in the (1) Xsun and (2) Xprt commands in Solaris 7, 8, 9, and 10 allows local users to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7f86-m2vg-fqrm/GHSA-7f86-m2vg-fqrm.json b/advisories/unreviewed/2022/05/GHSA-7f86-m2vg-fqrm/GHSA-7f86-m2vg-fqrm.json index 4463580ed21..4ce77456d8b 100644 --- a/advisories/unreviewed/2022/05/GHSA-7f86-m2vg-fqrm/GHSA-7f86-m2vg-fqrm.json +++ b/advisories/unreviewed/2022/05/GHSA-7f86-m2vg-fqrm/GHSA-7f86-m2vg-fqrm.json @@ -7,12 +7,8 @@ "CVE-2005-3220" ], "details": "Multiple interpretation error in unspecified versions of Norman Virus Control Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7fw3-2wmp-j43f/GHSA-7fw3-2wmp-j43f.json b/advisories/unreviewed/2022/05/GHSA-7fw3-2wmp-j43f/GHSA-7fw3-2wmp-j43f.json index 3137f3620e4..c17daa7d70d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7fw3-2wmp-j43f/GHSA-7fw3-2wmp-j43f.json +++ b/advisories/unreviewed/2022/05/GHSA-7fw3-2wmp-j43f/GHSA-7fw3-2wmp-j43f.json @@ -7,12 +7,8 @@ "CVE-2021-37598" ], "details": "WP Cerber before 8.9.3 allows bypass of /wp-json access control via a trailing ? character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hqj-44cw-26jp/GHSA-7hqj-44cw-26jp.json b/advisories/unreviewed/2022/05/GHSA-7hqj-44cw-26jp/GHSA-7hqj-44cw-26jp.json index 5f31c91c31a..863a234cedc 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hqj-44cw-26jp/GHSA-7hqj-44cw-26jp.json +++ b/advisories/unreviewed/2022/05/GHSA-7hqj-44cw-26jp/GHSA-7hqj-44cw-26jp.json @@ -7,12 +7,8 @@ "CVE-2021-24571" ], "details": "The HD Quiz WordPress plugin before 1.8.4 does not escape some of its Answers before outputting them in attribute when generating the Quiz, which could lead to Stored Cross-Site Scripting issues", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7hxq-86wh-m635/GHSA-7hxq-86wh-m635.json b/advisories/unreviewed/2022/05/GHSA-7hxq-86wh-m635/GHSA-7hxq-86wh-m635.json index b14d11e4890..46990d0ad69 100644 --- a/advisories/unreviewed/2022/05/GHSA-7hxq-86wh-m635/GHSA-7hxq-86wh-m635.json +++ b/advisories/unreviewed/2022/05/GHSA-7hxq-86wh-m635/GHSA-7hxq-86wh-m635.json @@ -7,12 +7,8 @@ "CVE-2005-3111" ], "details": "The handler code for backupninja 0.8 and earlier creates temporary files with predictable filenames, which allows local users to modify arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7j43-94fh-rp62/GHSA-7j43-94fh-rp62.json b/advisories/unreviewed/2022/05/GHSA-7j43-94fh-rp62/GHSA-7j43-94fh-rp62.json index 77ebfbddccb..4900e37d974 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j43-94fh-rp62/GHSA-7j43-94fh-rp62.json +++ b/advisories/unreviewed/2022/05/GHSA-7j43-94fh-rp62/GHSA-7j43-94fh-rp62.json @@ -7,12 +7,8 @@ "CVE-2005-3202" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 allow remote attackers to inject arbitrary web script or HTML, and subsequently execute SQL statements via the (1) p or (2) p_t02 parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7j6q-f3g4-6f5q/GHSA-7j6q-f3g4-6f5q.json b/advisories/unreviewed/2022/05/GHSA-7j6q-f3g4-6f5q/GHSA-7j6q-f3g4-6f5q.json index ab01424dab3..32983b75691 100644 --- a/advisories/unreviewed/2022/05/GHSA-7j6q-f3g4-6f5q/GHSA-7j6q-f3g4-6f5q.json +++ b/advisories/unreviewed/2022/05/GHSA-7j6q-f3g4-6f5q/GHSA-7j6q-f3g4-6f5q.json @@ -7,12 +7,8 @@ "CVE-2005-3034" ], "details": "Compuware DriverStudio Remote Control service (DSRsvc.exe) 2.7 and 3.0 beta 2 allows remote attackers to bypass authentication via a null session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7jpr-j96c-m9w5/GHSA-7jpr-j96c-m9w5.json b/advisories/unreviewed/2022/05/GHSA-7jpr-j96c-m9w5/GHSA-7jpr-j96c-m9w5.json index 31b635de520..367886eea7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jpr-j96c-m9w5/GHSA-7jpr-j96c-m9w5.json +++ b/advisories/unreviewed/2022/05/GHSA-7jpr-j96c-m9w5/GHSA-7jpr-j96c-m9w5.json @@ -7,12 +7,8 @@ "CVE-2005-3031" ], "details": "Buffer overflow in vxFtpSrv 0.9.7 allows remote attackers to execute arbitrary code via a long USER name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7m39-hfcx-7qr8/GHSA-7m39-hfcx-7qr8.json b/advisories/unreviewed/2022/05/GHSA-7m39-hfcx-7qr8/GHSA-7m39-hfcx-7qr8.json index 0b9f0fa84b6..2c4c420f7a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m39-hfcx-7qr8/GHSA-7m39-hfcx-7qr8.json +++ b/advisories/unreviewed/2022/05/GHSA-7m39-hfcx-7qr8/GHSA-7m39-hfcx-7qr8.json @@ -7,12 +7,8 @@ "CVE-2021-33882" ], "details": "A Missing Authentication for Critical Function vulnerability in B. Braun SpaceCom2 prior to 012U000062 allows a remote attacker to reconfigure the device from an unknown source because of lack of authentication on proprietary networking commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7m7x-m92r-43jp/GHSA-7m7x-m92r-43jp.json b/advisories/unreviewed/2022/05/GHSA-7m7x-m92r-43jp/GHSA-7m7x-m92r-43jp.json index e4bbc53c83d..8c6de4325f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-7m7x-m92r-43jp/GHSA-7m7x-m92r-43jp.json +++ b/advisories/unreviewed/2022/05/GHSA-7m7x-m92r-43jp/GHSA-7m7x-m92r-43jp.json @@ -7,12 +7,8 @@ "CVE-2005-3355" ], "details": "Directory traversal vulnerability in GNU Gnump3d before 2.9.8 has unknown impact via \"CGI parameters, and cookie values\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p54-g429-c636/GHSA-7p54-g429-c636.json b/advisories/unreviewed/2022/05/GHSA-7p54-g429-c636/GHSA-7p54-g429-c636.json index a439183616b..f1a238b3a8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p54-g429-c636/GHSA-7p54-g429-c636.json +++ b/advisories/unreviewed/2022/05/GHSA-7p54-g429-c636/GHSA-7p54-g429-c636.json @@ -7,12 +7,8 @@ "CVE-2020-23333" ], "details": "A heap-based buffer overflow exists in the AP4_CttsAtom::AP4_CttsAtom component located in /Core/Ap4Utils.h of Bento4 version 06c39d9. This can lead to a denial of service (DOS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p74-527p-2hvx/GHSA-7p74-527p-2hvx.json b/advisories/unreviewed/2022/05/GHSA-7p74-527p-2hvx/GHSA-7p74-527p-2hvx.json index 247f1417e17..34b62a310b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p74-527p-2hvx/GHSA-7p74-527p-2hvx.json +++ b/advisories/unreviewed/2022/05/GHSA-7p74-527p-2hvx/GHSA-7p74-527p-2hvx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7p8m-54qp-xvw9/GHSA-7p8m-54qp-xvw9.json b/advisories/unreviewed/2022/05/GHSA-7p8m-54qp-xvw9/GHSA-7p8m-54qp-xvw9.json index abbe3f11ebf..b2be133a876 100644 --- a/advisories/unreviewed/2022/05/GHSA-7p8m-54qp-xvw9/GHSA-7p8m-54qp-xvw9.json +++ b/advisories/unreviewed/2022/05/GHSA-7p8m-54qp-xvw9/GHSA-7p8m-54qp-xvw9.json @@ -7,12 +7,8 @@ "CVE-2005-3026" ], "details": "Directory traversal vulnerability in index.php in Alstrasoft Epay Pro 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the read parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7pv5-vw9g-f4h3/GHSA-7pv5-vw9g-f4h3.json b/advisories/unreviewed/2022/05/GHSA-7pv5-vw9g-f4h3/GHSA-7pv5-vw9g-f4h3.json index aea8c734fb2..39d071778ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-7pv5-vw9g-f4h3/GHSA-7pv5-vw9g-f4h3.json +++ b/advisories/unreviewed/2022/05/GHSA-7pv5-vw9g-f4h3/GHSA-7pv5-vw9g-f4h3.json @@ -7,12 +7,8 @@ "CVE-2005-3244" ], "details": "The BER dissector in Ethereal 0.10.3 to 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7q7g-mcjq-v4j2/GHSA-7q7g-mcjq-v4j2.json b/advisories/unreviewed/2022/05/GHSA-7q7g-mcjq-v4j2/GHSA-7q7g-mcjq-v4j2.json index f1071361624..6d5856989f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q7g-mcjq-v4j2/GHSA-7q7g-mcjq-v4j2.json +++ b/advisories/unreviewed/2022/05/GHSA-7q7g-mcjq-v4j2/GHSA-7q7g-mcjq-v4j2.json @@ -7,12 +7,8 @@ "CVE-2021-34223" ], "details": "Cross-site scripting in urlfilter.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers to execute arbitrary JavaScript by modifying the \"URL Address\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7q9j-frg8-x6cj/GHSA-7q9j-frg8-x6cj.json b/advisories/unreviewed/2022/05/GHSA-7q9j-frg8-x6cj/GHSA-7q9j-frg8-x6cj.json index 3959208d788..9c0bad1e38e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q9j-frg8-x6cj/GHSA-7q9j-frg8-x6cj.json +++ b/advisories/unreviewed/2022/05/GHSA-7q9j-frg8-x6cj/GHSA-7q9j-frg8-x6cj.json @@ -7,12 +7,8 @@ "CVE-2005-3225" ], "details": "Multiple interpretation error in unspecified versions of (1) eTrust-Iris and (2) eTrust-Vet Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7qfc-vhj9-xh7r/GHSA-7qfc-vhj9-xh7r.json b/advisories/unreviewed/2022/05/GHSA-7qfc-vhj9-xh7r/GHSA-7qfc-vhj9-xh7r.json index 566a60f2daf..b8e744bac66 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qfc-vhj9-xh7r/GHSA-7qfc-vhj9-xh7r.json +++ b/advisories/unreviewed/2022/05/GHSA-7qfc-vhj9-xh7r/GHSA-7qfc-vhj9-xh7r.json @@ -7,12 +7,8 @@ "CVE-2005-2918" ], "details": "The open_cmd_tube function in mount.c for gtkdiskfree 1.9.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the gtkdiskfree temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7qhh-33jg-v65h/GHSA-7qhh-33jg-v65h.json b/advisories/unreviewed/2022/05/GHSA-7qhh-33jg-v65h/GHSA-7qhh-33jg-v65h.json index a963fa4087d..9810f3d938c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qhh-33jg-v65h/GHSA-7qhh-33jg-v65h.json +++ b/advisories/unreviewed/2022/05/GHSA-7qhh-33jg-v65h/GHSA-7qhh-33jg-v65h.json @@ -7,12 +7,8 @@ "CVE-2005-2884" ], "details": "Cross-site scripting (XSS) vulnerability in events.php in Land Down Under (LDU) 801 and earlier allows remote attackers to inject arbitrary web script or HTML via the Description field in an event.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r23-jcc3-cfh9/GHSA-7r23-jcc3-cfh9.json b/advisories/unreviewed/2022/05/GHSA-7r23-jcc3-cfh9/GHSA-7r23-jcc3-cfh9.json index 145582f076b..096bbd497cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r23-jcc3-cfh9/GHSA-7r23-jcc3-cfh9.json +++ b/advisories/unreviewed/2022/05/GHSA-7r23-jcc3-cfh9/GHSA-7r23-jcc3-cfh9.json @@ -7,12 +7,8 @@ "CVE-2005-3041" ], "details": "Unspecified \"drag-and-drop vulnerability\" in Opera Web Browser before 8.50 on Windows allows \"unintentional file uploads.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7r69-2g79-crx9/GHSA-7r69-2g79-crx9.json b/advisories/unreviewed/2022/05/GHSA-7r69-2g79-crx9/GHSA-7r69-2g79-crx9.json index 68a3efce8f9..5d2fdba056a 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r69-2g79-crx9/GHSA-7r69-2g79-crx9.json +++ b/advisories/unreviewed/2022/05/GHSA-7r69-2g79-crx9/GHSA-7r69-2g79-crx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7r6j-qg45-9hfg/GHSA-7r6j-qg45-9hfg.json b/advisories/unreviewed/2022/05/GHSA-7r6j-qg45-9hfg/GHSA-7r6j-qg45-9hfg.json index ff81e20b6c3..c99ece40695 100644 --- a/advisories/unreviewed/2022/05/GHSA-7r6j-qg45-9hfg/GHSA-7r6j-qg45-9hfg.json +++ b/advisories/unreviewed/2022/05/GHSA-7r6j-qg45-9hfg/GHSA-7r6j-qg45-9hfg.json @@ -7,12 +7,8 @@ "CVE-2021-28637" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an out-of-bounds read vulnerability. An unauthenticated attacker could leverage this vulnerability achieve arbitrary read / write system information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7rm9-99xc-rvx2/GHSA-7rm9-99xc-rvx2.json b/advisories/unreviewed/2022/05/GHSA-7rm9-99xc-rvx2/GHSA-7rm9-99xc-rvx2.json index c9066d42603..04a41105d12 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rm9-99xc-rvx2/GHSA-7rm9-99xc-rvx2.json +++ b/advisories/unreviewed/2022/05/GHSA-7rm9-99xc-rvx2/GHSA-7rm9-99xc-rvx2.json @@ -7,12 +7,8 @@ "CVE-2005-2864" ], "details": "URBAN 1.5.3_1 allows local users to overwrite arbitrary files via a symlink attack on the (1) high score or (2) save game files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rmh-fw46-g93m/GHSA-7rmh-fw46-g93m.json b/advisories/unreviewed/2022/05/GHSA-7rmh-fw46-g93m/GHSA-7rmh-fw46-g93m.json index adc6b1d9bd2..3d5fad49b8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rmh-fw46-g93m/GHSA-7rmh-fw46-g93m.json +++ b/advisories/unreviewed/2022/05/GHSA-7rmh-fw46-g93m/GHSA-7rmh-fw46-g93m.json @@ -7,12 +7,8 @@ "CVE-2021-22245" ], "details": "Improper validation of commit author in GitLab CE/EE affecting all versions allowed an attacker to make several pages in a project impossible to view", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7v97-mj9r-5295/GHSA-7v97-mj9r-5295.json b/advisories/unreviewed/2022/05/GHSA-7v97-mj9r-5295/GHSA-7v97-mj9r-5295.json index 37768730500..585ed200c4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v97-mj9r-5295/GHSA-7v97-mj9r-5295.json +++ b/advisories/unreviewed/2022/05/GHSA-7v97-mj9r-5295/GHSA-7v97-mj9r-5295.json @@ -7,12 +7,8 @@ "CVE-2005-3212" ], "details": "Multiple interpretation error in unspecified versions of NOD32 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vjg-5rq8-r4h2/GHSA-7vjg-5rq8-r4h2.json b/advisories/unreviewed/2022/05/GHSA-7vjg-5rq8-r4h2/GHSA-7vjg-5rq8-r4h2.json index 0ccfe69c4e9..698d8e8a22d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vjg-5rq8-r4h2/GHSA-7vjg-5rq8-r4h2.json +++ b/advisories/unreviewed/2022/05/GHSA-7vjg-5rq8-r4h2/GHSA-7vjg-5rq8-r4h2.json @@ -7,12 +7,8 @@ "CVE-2005-3389" ], "details": "The parse_str function in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5, when called with only one parameter, allows remote attackers to enable the register_globals directive via inputs that cause a request to be terminated due to the memory_limit setting, which causes PHP to set an internal flag that enables register_globals and allows attackers to exploit vulnerabilities in PHP applications that would otherwise be protected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -152,9 +148,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7vxj-2hvq-f9vm/GHSA-7vxj-2hvq-f9vm.json b/advisories/unreviewed/2022/05/GHSA-7vxj-2hvq-f9vm/GHSA-7vxj-2hvq-f9vm.json index 24ffebbdab3..d240d3ea64e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7vxj-2hvq-f9vm/GHSA-7vxj-2hvq-f9vm.json +++ b/advisories/unreviewed/2022/05/GHSA-7vxj-2hvq-f9vm/GHSA-7vxj-2hvq-f9vm.json @@ -7,12 +7,8 @@ "CVE-2021-36016" ], "details": "Adobe Media Encoder version 15.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to read arbitrary file system information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7w5p-v64v-c7f3/GHSA-7w5p-v64v-c7f3.json b/advisories/unreviewed/2022/05/GHSA-7w5p-v64v-c7f3/GHSA-7w5p-v64v-c7f3.json index 873c6a8ea6e..75167aa4f02 100644 --- a/advisories/unreviewed/2022/05/GHSA-7w5p-v64v-c7f3/GHSA-7w5p-v64v-c7f3.json +++ b/advisories/unreviewed/2022/05/GHSA-7w5p-v64v-c7f3/GHSA-7w5p-v64v-c7f3.json @@ -7,12 +7,8 @@ "CVE-2005-3118" ], "details": "Mason before 1.0.0 does not install the init script after the user uses Mason to configure a firewall, which causes the system to run without a firewall after a reboot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7wcm-whw7-vchw/GHSA-7wcm-whw7-vchw.json b/advisories/unreviewed/2022/05/GHSA-7wcm-whw7-vchw/GHSA-7wcm-whw7-vchw.json index 0ede737c525..28d8fa40df2 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wcm-whw7-vchw/GHSA-7wcm-whw7-vchw.json +++ b/advisories/unreviewed/2022/05/GHSA-7wcm-whw7-vchw/GHSA-7wcm-whw7-vchw.json @@ -7,12 +7,8 @@ "CVE-2005-3085" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in rss.php in Riverdark Studios RSS Syndicator module 2.1.7 allow remote attackers to inject arbitrary web script or HTML via the (1) forum or (2) topic parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7wp5-ww4m-7xj4/GHSA-7wp5-ww4m-7xj4.json b/advisories/unreviewed/2022/05/GHSA-7wp5-ww4m-7xj4/GHSA-7wp5-ww4m-7xj4.json index 408af8e560c..b180f37cf7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-7wp5-ww4m-7xj4/GHSA-7wp5-ww4m-7xj4.json +++ b/advisories/unreviewed/2022/05/GHSA-7wp5-ww4m-7xj4/GHSA-7wp5-ww4m-7xj4.json @@ -7,12 +7,8 @@ "CVE-2005-3126" ], "details": "The (1) kantiword (kantiword.sh) and (2) gantiword (gantiword.sh) scripts in antiword 0.35 and earlier allow local users to overwrite arbitrary files via a symlink attack on temporary (a) output and (b) error files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7x2j-7gp6-7vr3/GHSA-7x2j-7gp6-7vr3.json b/advisories/unreviewed/2022/05/GHSA-7x2j-7gp6-7vr3/GHSA-7x2j-7gp6-7vr3.json index 75ac899ac8c..1d0dbba3b9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x2j-7gp6-7vr3/GHSA-7x2j-7gp6-7vr3.json +++ b/advisories/unreviewed/2022/05/GHSA-7x2j-7gp6-7vr3/GHSA-7x2j-7gp6-7vr3.json @@ -7,12 +7,8 @@ "CVE-2005-2989" ], "details": "Multiple SQL injection vulnerabilities in DeluxeBB 1.0 and 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) tid parameter to topic.php, the uid parameter to (2) misc.php or (3) pm.php, or the fid parameter to (3) forums.php or (4) newpost.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7xmv-v7w4-r8jp/GHSA-7xmv-v7w4-r8jp.json b/advisories/unreviewed/2022/05/GHSA-7xmv-v7w4-r8jp/GHSA-7xmv-v7w4-r8jp.json index 4845ad922e4..3f03da951cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xmv-v7w4-r8jp/GHSA-7xmv-v7w4-r8jp.json +++ b/advisories/unreviewed/2022/05/GHSA-7xmv-v7w4-r8jp/GHSA-7xmv-v7w4-r8jp.json @@ -7,12 +7,8 @@ "CVE-2005-3238" ], "details": "Multiple unspecified vulnerabilities in Solaris 10 SCTP Socket Option Processing allows local users to cause a denial of service (panic) via unspecified attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7xwj-34vp-h4x6/GHSA-7xwj-34vp-h4x6.json b/advisories/unreviewed/2022/05/GHSA-7xwj-34vp-h4x6/GHSA-7xwj-34vp-h4x6.json index be3c137d8b1..8eea85691ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xwj-34vp-h4x6/GHSA-7xwj-34vp-h4x6.json +++ b/advisories/unreviewed/2022/05/GHSA-7xwj-34vp-h4x6/GHSA-7xwj-34vp-h4x6.json @@ -7,12 +7,8 @@ "CVE-2021-29704" ], "details": "IBM Security SOAR uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7xxr-7x99-jpj2/GHSA-7xxr-7x99-jpj2.json b/advisories/unreviewed/2022/05/GHSA-7xxr-7x99-jpj2/GHSA-7xxr-7x99-jpj2.json index e04f2f33cfc..f6a46753cee 100644 --- a/advisories/unreviewed/2022/05/GHSA-7xxr-7x99-jpj2/GHSA-7xxr-7x99-jpj2.json +++ b/advisories/unreviewed/2022/05/GHSA-7xxr-7x99-jpj2/GHSA-7xxr-7x99-jpj2.json @@ -7,12 +7,8 @@ "CVE-2005-2881" ], "details": "phpCommunityCalendar 4.0.3 allows remote attackers to bypass authentication and gain unauthorized access via a direct request to the admin directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-82c5-qhq8-v4g2/GHSA-82c5-qhq8-v4g2.json b/advisories/unreviewed/2022/05/GHSA-82c5-qhq8-v4g2/GHSA-82c5-qhq8-v4g2.json index a73a6d647b2..fa48f83728c 100644 --- a/advisories/unreviewed/2022/05/GHSA-82c5-qhq8-v4g2/GHSA-82c5-qhq8-v4g2.json +++ b/advisories/unreviewed/2022/05/GHSA-82c5-qhq8-v4g2/GHSA-82c5-qhq8-v4g2.json @@ -7,12 +7,8 @@ "CVE-2020-23334" ], "details": "A WRITE memory access in the AP4_NullTerminatedStringAtom::AP4_NullTerminatedStringAtom component of Bento4 version 06c39d9 can lead to a segmentation fault.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82j7-7f93-vq2v/GHSA-82j7-7f93-vq2v.json b/advisories/unreviewed/2022/05/GHSA-82j7-7f93-vq2v/GHSA-82j7-7f93-vq2v.json index 0f088396370..d9236adb058 100644 --- a/advisories/unreviewed/2022/05/GHSA-82j7-7f93-vq2v/GHSA-82j7-7f93-vq2v.json +++ b/advisories/unreviewed/2022/05/GHSA-82j7-7f93-vq2v/GHSA-82j7-7f93-vq2v.json @@ -7,12 +7,8 @@ "CVE-2021-1584" ], "details": "A vulnerability in Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to elevate privileges on an affected device. This vulnerability is due to insufficient restrictions during the execution of a specific CLI command. An attacker with administrative privileges could exploit this vulnerability by performing a command injection attack on the vulnerable command. A successful exploit could allow the attacker to access the underlying operating system as root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82qq-9xvx-p3p6/GHSA-82qq-9xvx-p3p6.json b/advisories/unreviewed/2022/05/GHSA-82qq-9xvx-p3p6/GHSA-82qq-9xvx-p3p6.json index 90de2dd03fb..108ebe50eb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-82qq-9xvx-p3p6/GHSA-82qq-9xvx-p3p6.json +++ b/advisories/unreviewed/2022/05/GHSA-82qq-9xvx-p3p6/GHSA-82qq-9xvx-p3p6.json @@ -7,12 +7,8 @@ "CVE-2005-2857" ], "details": "Free SMTP Server 2.2 allows remote attackers to use the server as an open mail relay (spam proxy).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-833x-wpp6-6wpv/GHSA-833x-wpp6-6wpv.json b/advisories/unreviewed/2022/05/GHSA-833x-wpp6-6wpv/GHSA-833x-wpp6-6wpv.json index b833896fd32..8de7b86f71c 100644 --- a/advisories/unreviewed/2022/05/GHSA-833x-wpp6-6wpv/GHSA-833x-wpp6-6wpv.json +++ b/advisories/unreviewed/2022/05/GHSA-833x-wpp6-6wpv/GHSA-833x-wpp6-6wpv.json @@ -7,12 +7,8 @@ "CVE-2005-3236" ], "details": "Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick parameter of lostpwd.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-847p-f9h7-f5x2/GHSA-847p-f9h7-f5x2.json b/advisories/unreviewed/2022/05/GHSA-847p-f9h7-f5x2/GHSA-847p-f9h7-f5x2.json index c8f2ca00136..dade70842d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-847p-f9h7-f5x2/GHSA-847p-f9h7-f5x2.json +++ b/advisories/unreviewed/2022/05/GHSA-847p-f9h7-f5x2/GHSA-847p-f9h7-f5x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84fp-grpv-q4h6/GHSA-84fp-grpv-q4h6.json b/advisories/unreviewed/2022/05/GHSA-84fp-grpv-q4h6/GHSA-84fp-grpv-q4h6.json index fa911d2fbfc..31e7b424ef8 100644 --- a/advisories/unreviewed/2022/05/GHSA-84fp-grpv-q4h6/GHSA-84fp-grpv-q4h6.json +++ b/advisories/unreviewed/2022/05/GHSA-84fp-grpv-q4h6/GHSA-84fp-grpv-q4h6.json @@ -7,12 +7,8 @@ "CVE-2005-3156" ], "details": "Directory traversal vulnerability in printfaq.php in EasyGuppy (Guppy for Windows) 4.5.4 and 4.5.5 allows remote attackers to read arbitrary files via \"..\" sequences in the pg parameter, which is cleansed for XSS but not directory traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-84j7-2334-6mf2/GHSA-84j7-2334-6mf2.json b/advisories/unreviewed/2022/05/GHSA-84j7-2334-6mf2/GHSA-84j7-2334-6mf2.json index 0ab2ece9309..99dd9040960 100644 --- a/advisories/unreviewed/2022/05/GHSA-84j7-2334-6mf2/GHSA-84j7-2334-6mf2.json +++ b/advisories/unreviewed/2022/05/GHSA-84j7-2334-6mf2/GHSA-84j7-2334-6mf2.json @@ -7,12 +7,8 @@ "CVE-2005-2951" ], "details": "Directory traversal vulnerability in security.inc.php in AzDGDatingLite 2.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP commands via \"..\" sequences and \"%00\" (trailing null byte) characters in the l parameter, which is used in an include_once statement.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-85p6-3vc2-6v3w/GHSA-85p6-3vc2-6v3w.json b/advisories/unreviewed/2022/05/GHSA-85p6-3vc2-6v3w/GHSA-85p6-3vc2-6v3w.json index 635fc0332fe..6e9e6c84fc2 100644 --- a/advisories/unreviewed/2022/05/GHSA-85p6-3vc2-6v3w/GHSA-85p6-3vc2-6v3w.json +++ b/advisories/unreviewed/2022/05/GHSA-85p6-3vc2-6v3w/GHSA-85p6-3vc2-6v3w.json @@ -7,12 +7,8 @@ "CVE-2005-3086" ], "details": "Directory traversal vulnerability in admin/about.php in contentServ 3.1 allows remote attackers to read or include arbitrary files via \"..\" sequences in the ctsWebsite parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8662-6xfx-55gr/GHSA-8662-6xfx-55gr.json b/advisories/unreviewed/2022/05/GHSA-8662-6xfx-55gr/GHSA-8662-6xfx-55gr.json index 52ec7007c76..62aa5e367b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-8662-6xfx-55gr/GHSA-8662-6xfx-55gr.json +++ b/advisories/unreviewed/2022/05/GHSA-8662-6xfx-55gr/GHSA-8662-6xfx-55gr.json @@ -7,12 +7,8 @@ "CVE-2005-2931" ], "details": "Format string vulnerability in the SMTP service in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows remote attackers to execute arbitrary code via format string specifiers to the (1) EXPN, (2) MAIL, (3) MAIL FROM, and (4) RCPT TO commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8699-hqh8-r4f6/GHSA-8699-hqh8-r4f6.json b/advisories/unreviewed/2022/05/GHSA-8699-hqh8-r4f6/GHSA-8699-hqh8-r4f6.json index 2df16a30766..f48b5bf51ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-8699-hqh8-r4f6/GHSA-8699-hqh8-r4f6.json +++ b/advisories/unreviewed/2022/05/GHSA-8699-hqh8-r4f6/GHSA-8699-hqh8-r4f6.json @@ -7,12 +7,8 @@ "CVE-2005-2992" ], "details": "arc 5.21j and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different type of vulnerability than CVE-2005-2945.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8729-gjh2-fh36/GHSA-8729-gjh2-fh36.json b/advisories/unreviewed/2022/05/GHSA-8729-gjh2-fh36/GHSA-8729-gjh2-fh36.json index 1ca1271eaed..779e2468e48 100644 --- a/advisories/unreviewed/2022/05/GHSA-8729-gjh2-fh36/GHSA-8729-gjh2-fh36.json +++ b/advisories/unreviewed/2022/05/GHSA-8729-gjh2-fh36/GHSA-8729-gjh2-fh36.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88pp-q949-9jc5/GHSA-88pp-q949-9jc5.json b/advisories/unreviewed/2022/05/GHSA-88pp-q949-9jc5/GHSA-88pp-q949-9jc5.json index eaccba8397d..9ca58d2aacd 100644 --- a/advisories/unreviewed/2022/05/GHSA-88pp-q949-9jc5/GHSA-88pp-q949-9jc5.json +++ b/advisories/unreviewed/2022/05/GHSA-88pp-q949-9jc5/GHSA-88pp-q949-9jc5.json @@ -7,12 +7,8 @@ "CVE-2005-2994" ], "details": "Unspecified vulnerability in the web client for IBM Rational ClearQuest 2002.05.00 and 2002.05.20, and 2003.06.00 through 2003.06.15 before SR5, allows remote attackers to execute XML Style Sheets (XSS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88r4-4c8p-j6xc/GHSA-88r4-4c8p-j6xc.json b/advisories/unreviewed/2022/05/GHSA-88r4-4c8p-j6xc/GHSA-88r4-4c8p-j6xc.json index 748a10f2155..b81a314a048 100644 --- a/advisories/unreviewed/2022/05/GHSA-88r4-4c8p-j6xc/GHSA-88r4-4c8p-j6xc.json +++ b/advisories/unreviewed/2022/05/GHSA-88r4-4c8p-j6xc/GHSA-88r4-4c8p-j6xc.json @@ -7,12 +7,8 @@ "CVE-2005-3229" ], "details": "Multiple interpretation error in unspecified versions of ClamAV Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88vg-p93r-gj25/GHSA-88vg-p93r-gj25.json b/advisories/unreviewed/2022/05/GHSA-88vg-p93r-gj25/GHSA-88vg-p93r-gj25.json index 8c2827efbe0..7670e5b1063 100644 --- a/advisories/unreviewed/2022/05/GHSA-88vg-p93r-gj25/GHSA-88vg-p93r-gj25.json +++ b/advisories/unreviewed/2022/05/GHSA-88vg-p93r-gj25/GHSA-88vg-p93r-gj25.json @@ -7,12 +7,8 @@ "CVE-2021-3617" ], "details": "A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow command injection by setting a specially crafted network configuration. This vulnerability is the same as CNVD-2020-68652.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-896r-8722-x5fv/GHSA-896r-8722-x5fv.json b/advisories/unreviewed/2022/05/GHSA-896r-8722-x5fv/GHSA-896r-8722-x5fv.json index 5ff0336b84e..49f7ae9306f 100644 --- a/advisories/unreviewed/2022/05/GHSA-896r-8722-x5fv/GHSA-896r-8722-x5fv.json +++ b/advisories/unreviewed/2022/05/GHSA-896r-8722-x5fv/GHSA-896r-8722-x5fv.json @@ -7,12 +7,8 @@ "CVE-2021-36014" ], "details": "Adobe Media Encoder version 15.2 (and earlier) is affected by an uninitialized pointer vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to read arbitrary file system information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89rg-769g-xx78/GHSA-89rg-769g-xx78.json b/advisories/unreviewed/2022/05/GHSA-89rg-769g-xx78/GHSA-89rg-769g-xx78.json index 687a5c01786..dc2beff8737 100644 --- a/advisories/unreviewed/2022/05/GHSA-89rg-769g-xx78/GHSA-89rg-769g-xx78.json +++ b/advisories/unreviewed/2022/05/GHSA-89rg-769g-xx78/GHSA-89rg-769g-xx78.json @@ -7,12 +7,8 @@ "CVE-2005-3450" ], "details": "Unspecified vulnerability in the HTTP Server in Oracle Application Server 1.0 up to 9.0.2.3 has unknown impact and attack vectors, as identified by Oracle Vuln# AS04.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8c97-q6f3-r229/GHSA-8c97-q6f3-r229.json b/advisories/unreviewed/2022/05/GHSA-8c97-q6f3-r229/GHSA-8c97-q6f3-r229.json index 45ce0b27ac4..989b115b2cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c97-q6f3-r229/GHSA-8c97-q6f3-r229.json +++ b/advisories/unreviewed/2022/05/GHSA-8c97-q6f3-r229/GHSA-8c97-q6f3-r229.json @@ -7,12 +7,8 @@ "CVE-2005-3378" ], "details": "Multiple interpretation error in Norman 5.81 with the 5.83.02 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8cpp-46mq-hpm6/GHSA-8cpp-46mq-hpm6.json b/advisories/unreviewed/2022/05/GHSA-8cpp-46mq-hpm6/GHSA-8cpp-46mq-hpm6.json index 859baac4082..28eab751d63 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cpp-46mq-hpm6/GHSA-8cpp-46mq-hpm6.json +++ b/advisories/unreviewed/2022/05/GHSA-8cpp-46mq-hpm6/GHSA-8cpp-46mq-hpm6.json @@ -7,12 +7,8 @@ "CVE-2005-3136" ], "details": "Directory traversal vulnerability in Virtools Web Player 3.0.0.100 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8crx-q2g6-rw8x/GHSA-8crx-q2g6-rw8x.json b/advisories/unreviewed/2022/05/GHSA-8crx-q2g6-rw8x/GHSA-8crx-q2g6-rw8x.json index f32422a0679..94c36fa82ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-8crx-q2g6-rw8x/GHSA-8crx-q2g6-rw8x.json +++ b/advisories/unreviewed/2022/05/GHSA-8crx-q2g6-rw8x/GHSA-8crx-q2g6-rw8x.json @@ -7,12 +7,8 @@ "CVE-2021-21599" ], "details": "Dell EMC PowerScale OneFS versions 8.2.x - 9.2.1.x contain an OS command injection vulnerability. This may allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to escalate privileges and escape the compliance guarantees. This only impacts Smartlock WORM compliance mode clusters as a critical vulnerability and Dell recommends to update/upgrade at the earliest opportunity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8fp6-9gv8-pr92/GHSA-8fp6-9gv8-pr92.json b/advisories/unreviewed/2022/05/GHSA-8fp6-9gv8-pr92/GHSA-8fp6-9gv8-pr92.json index 990f2ac343b..12769456b4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8fp6-9gv8-pr92/GHSA-8fp6-9gv8-pr92.json +++ b/advisories/unreviewed/2022/05/GHSA-8fp6-9gv8-pr92/GHSA-8fp6-9gv8-pr92.json @@ -7,12 +7,8 @@ "CVE-2005-3386" ], "details": "SQL injection vulnerability in Techno Dreams Web Directory script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in admin/login.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8gwv-jfxv-7hwm/GHSA-8gwv-jfxv-7hwm.json b/advisories/unreviewed/2022/05/GHSA-8gwv-jfxv-7hwm/GHSA-8gwv-jfxv-7hwm.json index 68678e0f087..3ee7ed13f87 100644 --- a/advisories/unreviewed/2022/05/GHSA-8gwv-jfxv-7hwm/GHSA-8gwv-jfxv-7hwm.json +++ b/advisories/unreviewed/2022/05/GHSA-8gwv-jfxv-7hwm/GHSA-8gwv-jfxv-7hwm.json @@ -7,12 +7,8 @@ "CVE-2005-2995" ], "details": "bacula 1.36.3 and earlier allows local users to modify or read sensitive files via symlink attacks on (1) the temporary file used by autoconf/randpass when openssl is not available, or (2) the mtx.[PID] temporary file in mtx-changer.in.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8h68-wr7w-w8w5/GHSA-8h68-wr7w-w8w5.json b/advisories/unreviewed/2022/05/GHSA-8h68-wr7w-w8w5/GHSA-8h68-wr7w-w8w5.json index 7ea1d452972..fa7bcb7fafa 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h68-wr7w-w8w5/GHSA-8h68-wr7w-w8w5.json +++ b/advisories/unreviewed/2022/05/GHSA-8h68-wr7w-w8w5/GHSA-8h68-wr7w-w8w5.json @@ -7,12 +7,8 @@ "CVE-2021-30596" ], "details": "Incorrect security UI in Navigation in Google Chrome on Android prior to 92.0.4515.131 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8h6w-5gpw-7wpv/GHSA-8h6w-5gpw-7wpv.json b/advisories/unreviewed/2022/05/GHSA-8h6w-5gpw-7wpv/GHSA-8h6w-5gpw-7wpv.json index d9bafc3a122..43cad51852c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h6w-5gpw-7wpv/GHSA-8h6w-5gpw-7wpv.json +++ b/advisories/unreviewed/2022/05/GHSA-8h6w-5gpw-7wpv/GHSA-8h6w-5gpw-7wpv.json @@ -7,12 +7,8 @@ "CVE-2005-3470" ], "details": "SQL injection vulnerability in in the authenticate function in MailWatch for MailScanner 1.0.2 allows remote attackers to execute arbitrary SQL commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8h84-5994-37fp/GHSA-8h84-5994-37fp.json b/advisories/unreviewed/2022/05/GHSA-8h84-5994-37fp/GHSA-8h84-5994-37fp.json index 36f26e93ec0..3d090b3c140 100644 --- a/advisories/unreviewed/2022/05/GHSA-8h84-5994-37fp/GHSA-8h84-5994-37fp.json +++ b/advisories/unreviewed/2022/05/GHSA-8h84-5994-37fp/GHSA-8h84-5994-37fp.json @@ -7,12 +7,8 @@ "CVE-2005-3175" ], "details": "Microsoft Windows 2000 before Update Rollup 1 for SP4 allows a local administrator to unlock a computer even if it has been locked by a domain administrator, which allows the local administrator to access the session as the domain administrator.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8hjw-x28q-9fwc/GHSA-8hjw-x28q-9fwc.json b/advisories/unreviewed/2022/05/GHSA-8hjw-x28q-9fwc/GHSA-8hjw-x28q-9fwc.json index c39d75101c6..6e05e4b9963 100644 --- a/advisories/unreviewed/2022/05/GHSA-8hjw-x28q-9fwc/GHSA-8hjw-x28q-9fwc.json +++ b/advisories/unreviewed/2022/05/GHSA-8hjw-x28q-9fwc/GHSA-8hjw-x28q-9fwc.json @@ -7,12 +7,8 @@ "CVE-2005-3363" ], "details": "SQL injection vulnerability in Saphp Lesson, possibly saphp Lesson1.1 and saphpLesson2.0, allows remote attackers to execute arbitrary SQL commands via the forumid parameter in (1) showcat.php and (2) add.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j6p-p7q3-3j42/GHSA-8j6p-p7q3-3j42.json b/advisories/unreviewed/2022/05/GHSA-8j6p-p7q3-3j42/GHSA-8j6p-p7q3-3j42.json index a843e65c228..21fdd8c87c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j6p-p7q3-3j42/GHSA-8j6p-p7q3-3j42.json +++ b/advisories/unreviewed/2022/05/GHSA-8j6p-p7q3-3j42/GHSA-8j6p-p7q3-3j42.json @@ -7,12 +7,8 @@ "CVE-2005-3258" ], "details": "The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain \"odd\" responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jv5-qc9q-5qfw/GHSA-8jv5-qc9q-5qfw.json b/advisories/unreviewed/2022/05/GHSA-8jv5-qc9q-5qfw/GHSA-8jv5-qc9q-5qfw.json index 7890c6de084..315d31a0e9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jv5-qc9q-5qfw/GHSA-8jv5-qc9q-5qfw.json +++ b/advisories/unreviewed/2022/05/GHSA-8jv5-qc9q-5qfw/GHSA-8jv5-qc9q-5qfw.json @@ -7,12 +7,8 @@ "CVE-2005-3188" ], "details": "Buffer overflow in Nullsoft Winamp 5.094 allows remote attackers to execute arbitrary code via (1) an m3u file containing a long line ending in .wma or (2) a pls file containing a long File1 value ending in .wma, a different vulnerability than CVE-2006-0476.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8jv9-7vm9-cfxp/GHSA-8jv9-7vm9-cfxp.json b/advisories/unreviewed/2022/05/GHSA-8jv9-7vm9-cfxp/GHSA-8jv9-7vm9-cfxp.json index a0284e5e472..d421aba4655 100644 --- a/advisories/unreviewed/2022/05/GHSA-8jv9-7vm9-cfxp/GHSA-8jv9-7vm9-cfxp.json +++ b/advisories/unreviewed/2022/05/GHSA-8jv9-7vm9-cfxp/GHSA-8jv9-7vm9-cfxp.json @@ -7,12 +7,8 @@ "CVE-2021-28636" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Uncontrolled Search Path Element vulnerability. An attacker with access to the victim's C:/ folder could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8m7g-hpf2-794h/GHSA-8m7g-hpf2-794h.json b/advisories/unreviewed/2022/05/GHSA-8m7g-hpf2-794h/GHSA-8m7g-hpf2-794h.json index 8a7337d2edb..03a16ba3351 100644 --- a/advisories/unreviewed/2022/05/GHSA-8m7g-hpf2-794h/GHSA-8m7g-hpf2-794h.json +++ b/advisories/unreviewed/2022/05/GHSA-8m7g-hpf2-794h/GHSA-8m7g-hpf2-794h.json @@ -7,12 +7,8 @@ "CVE-2005-3219" ], "details": "Multiple interpretation error in unspecified versions of Avira Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8mx8-pf46-grr5/GHSA-8mx8-pf46-grr5.json b/advisories/unreviewed/2022/05/GHSA-8mx8-pf46-grr5/GHSA-8mx8-pf46-grr5.json index a5e20a6fa7b..94271b06c07 100644 --- a/advisories/unreviewed/2022/05/GHSA-8mx8-pf46-grr5/GHSA-8mx8-pf46-grr5.json +++ b/advisories/unreviewed/2022/05/GHSA-8mx8-pf46-grr5/GHSA-8mx8-pf46-grr5.json @@ -7,12 +7,8 @@ "CVE-2005-3345" ], "details": "rssh 2.0.0 through 2.2.3 allows local users to bypass access restrictions and gain root privileges by using the rssh_chroot_helper command to chroot to an external directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8qxj-vfjg-82r9/GHSA-8qxj-vfjg-82r9.json b/advisories/unreviewed/2022/05/GHSA-8qxj-vfjg-82r9/GHSA-8qxj-vfjg-82r9.json index adda6f81132..7837e48f317 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qxj-vfjg-82r9/GHSA-8qxj-vfjg-82r9.json +++ b/advisories/unreviewed/2022/05/GHSA-8qxj-vfjg-82r9/GHSA-8qxj-vfjg-82r9.json @@ -7,12 +7,8 @@ "CVE-2005-2953" ], "details": "Cross-site scripting (XSS) vulnerability in merchant.mvc in MIVA Merchant 5 allows remote attackers to inject arbitrary web script or HTML via the Customer_Login parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8v3f-v4gp-j935/GHSA-8v3f-v4gp-j935.json b/advisories/unreviewed/2022/05/GHSA-8v3f-v4gp-j935/GHSA-8v3f-v4gp-j935.json index 2ccd633812a..be8326dfe34 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v3f-v4gp-j935/GHSA-8v3f-v4gp-j935.json +++ b/advisories/unreviewed/2022/05/GHSA-8v3f-v4gp-j935/GHSA-8v3f-v4gp-j935.json @@ -7,12 +7,8 @@ "CVE-2005-2854" ], "details": "CRLF injection vulnerability in thesitewizard.com chfeedback.pl Feedback Form Perl Script 2.0.1 allows remote attackers to use the script as a mail relay (spam proxy) via CRLF sequences in the (1) name or (2) email fields, which are injected into mail headers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8vg7-xp56-5rr9/GHSA-8vg7-xp56-5rr9.json b/advisories/unreviewed/2022/05/GHSA-8vg7-xp56-5rr9/GHSA-8vg7-xp56-5rr9.json index cdabcdc2795..dde47fb8c8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vg7-xp56-5rr9/GHSA-8vg7-xp56-5rr9.json +++ b/advisories/unreviewed/2022/05/GHSA-8vg7-xp56-5rr9/GHSA-8vg7-xp56-5rr9.json @@ -7,12 +7,8 @@ "CVE-2005-3353" ], "details": "The exif_read_data function in the Exif module in PHP before 4.4.1 allows remote attackers to cause a denial of service (infinite loop) via a malformed JPEG image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -140,9 +136,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8vqw-w4vr-w3mh/GHSA-8vqw-w4vr-w3mh.json b/advisories/unreviewed/2022/05/GHSA-8vqw-w4vr-w3mh/GHSA-8vqw-w4vr-w3mh.json index 35bc89cf86d..f7efd2a2438 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vqw-w4vr-w3mh/GHSA-8vqw-w4vr-w3mh.json +++ b/advisories/unreviewed/2022/05/GHSA-8vqw-w4vr-w3mh/GHSA-8vqw-w4vr-w3mh.json @@ -7,12 +7,8 @@ "CVE-2020-18746" ], "details": "SQL Injection in AiteCMS v1.0 allows remote attackers to execute arbitrary code via the component \"aitecms/login/diy_list.php\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8whc-587x-j3fm/GHSA-8whc-587x-j3fm.json b/advisories/unreviewed/2022/05/GHSA-8whc-587x-j3fm/GHSA-8whc-587x-j3fm.json index 5f24e6c4034..9125f675694 100644 --- a/advisories/unreviewed/2022/05/GHSA-8whc-587x-j3fm/GHSA-8whc-587x-j3fm.json +++ b/advisories/unreviewed/2022/05/GHSA-8whc-587x-j3fm/GHSA-8whc-587x-j3fm.json @@ -7,12 +7,8 @@ "CVE-2020-18897" ], "details": "An use-after-free vulnerability in the libpff_item_tree_create_node function of libyal Libpff before 20180623 allows attackers to cause a denial of service (DOS) or execute arbitrary code via a crafted pff file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wj2-ghvj-7v5w/GHSA-8wj2-ghvj-7v5w.json b/advisories/unreviewed/2022/05/GHSA-8wj2-ghvj-7v5w/GHSA-8wj2-ghvj-7v5w.json index d3658bf49da..c781be5893e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wj2-ghvj-7v5w/GHSA-8wj2-ghvj-7v5w.json +++ b/advisories/unreviewed/2022/05/GHSA-8wj2-ghvj-7v5w/GHSA-8wj2-ghvj-7v5w.json @@ -7,12 +7,8 @@ "CVE-2021-28589" ], "details": "Adobe Media Encoder version 15.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8wmr-2wmx-86gh/GHSA-8wmr-2wmx-86gh.json b/advisories/unreviewed/2022/05/GHSA-8wmr-2wmx-86gh/GHSA-8wmr-2wmx-86gh.json index 3bb91dc79c5..f5aafe075a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wmr-2wmx-86gh/GHSA-8wmr-2wmx-86gh.json +++ b/advisories/unreviewed/2022/05/GHSA-8wmr-2wmx-86gh/GHSA-8wmr-2wmx-86gh.json @@ -7,12 +7,8 @@ "CVE-2005-3166" ], "details": "Unspecified vulnerability in \"edit submission handling\" for MediaWiki 1.4.x before 1.4.10 and 1.3.x before 1.3.16 allows remote attackers to cause a denial of service (corruption of the previous submission) via a crafted URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8wmw-62f4-gpg8/GHSA-8wmw-62f4-gpg8.json b/advisories/unreviewed/2022/05/GHSA-8wmw-62f4-gpg8/GHSA-8wmw-62f4-gpg8.json index 1de95e63202..c0b31cb3fdf 100644 --- a/advisories/unreviewed/2022/05/GHSA-8wmw-62f4-gpg8/GHSA-8wmw-62f4-gpg8.json +++ b/advisories/unreviewed/2022/05/GHSA-8wmw-62f4-gpg8/GHSA-8wmw-62f4-gpg8.json @@ -7,12 +7,8 @@ "CVE-2021-34218" ], "details": "Directory Indexing in Login Portal of Login Portal of TOTOLINK-A702R-V1.0.0-B20161227.1023 allows attacker to access /add/ , /img/, /js/, and /mobile directories via GET Parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8x77-qfp7-p2c4/GHSA-8x77-qfp7-p2c4.json b/advisories/unreviewed/2022/05/GHSA-8x77-qfp7-p2c4/GHSA-8x77-qfp7-p2c4.json index 303660939f4..44d7a1b684c 100644 --- a/advisories/unreviewed/2022/05/GHSA-8x77-qfp7-p2c4/GHSA-8x77-qfp7-p2c4.json +++ b/advisories/unreviewed/2022/05/GHSA-8x77-qfp7-p2c4/GHSA-8x77-qfp7-p2c4.json @@ -7,12 +7,8 @@ "CVE-2021-36281" ], "details": "Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment vulnerability. A low privileged authenticated user can potentially exploit this vulnerability to escalate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8xvc-7hjc-8cjx/GHSA-8xvc-7hjc-8cjx.json b/advisories/unreviewed/2022/05/GHSA-8xvc-7hjc-8cjx/GHSA-8xvc-7hjc-8cjx.json index 9be5f4e047b..7af62217674 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xvc-7hjc-8cjx/GHSA-8xvc-7hjc-8cjx.json +++ b/advisories/unreviewed/2022/05/GHSA-8xvc-7hjc-8cjx/GHSA-8xvc-7hjc-8cjx.json @@ -7,12 +7,8 @@ "CVE-2005-3018" ], "details": "Apple Safari allows remote attackers to cause a denial of service (application crash) via a crafted data:// URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-92g8-wx97-r4qc/GHSA-92g8-wx97-r4qc.json b/advisories/unreviewed/2022/05/GHSA-92g8-wx97-r4qc/GHSA-92g8-wx97-r4qc.json index ed534c7434d..90a1e6887d1 100644 --- a/advisories/unreviewed/2022/05/GHSA-92g8-wx97-r4qc/GHSA-92g8-wx97-r4qc.json +++ b/advisories/unreviewed/2022/05/GHSA-92g8-wx97-r4qc/GHSA-92g8-wx97-r4qc.json @@ -7,12 +7,8 @@ "CVE-2005-3329" ], "details": "Cross-site scripting (XSS) vulnerability in RSA Authentication Agent for Web 5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the image parameter in a GetPic operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-92pr-mcw9-qp7f/GHSA-92pr-mcw9-qp7f.json b/advisories/unreviewed/2022/05/GHSA-92pr-mcw9-qp7f/GHSA-92pr-mcw9-qp7f.json index 75a2c07af50..48df8878b26 100644 --- a/advisories/unreviewed/2022/05/GHSA-92pr-mcw9-qp7f/GHSA-92pr-mcw9-qp7f.json +++ b/advisories/unreviewed/2022/05/GHSA-92pr-mcw9-qp7f/GHSA-92pr-mcw9-qp7f.json @@ -7,12 +7,8 @@ "CVE-2005-2963" ], "details": "The mod_auth_shadow module 1.0 through 1.5 and 2.0 for Apache with AuthShadow enabled uses shadow authentication for all locations that use the require group directive, even when other authentication mechanisms are specified, which might allow remote authenticated users to bypass security restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-92r2-5h8f-fq8v/GHSA-92r2-5h8f-fq8v.json b/advisories/unreviewed/2022/05/GHSA-92r2-5h8f-fq8v/GHSA-92r2-5h8f-fq8v.json index d3f78f52ebd..3ebf4db11b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-92r2-5h8f-fq8v/GHSA-92r2-5h8f-fq8v.json +++ b/advisories/unreviewed/2022/05/GHSA-92r2-5h8f-fq8v/GHSA-92r2-5h8f-fq8v.json @@ -7,12 +7,8 @@ "CVE-2005-2981" ], "details": "Cross-site scripting (XSS) vulnerability in Orion 1.3.8 and 1.4.5 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly quoted in the resulting 404 error page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-933j-4572-8942/GHSA-933j-4572-8942.json b/advisories/unreviewed/2022/05/GHSA-933j-4572-8942/GHSA-933j-4572-8942.json index f71fe7157a3..6e445bcdfdb 100644 --- a/advisories/unreviewed/2022/05/GHSA-933j-4572-8942/GHSA-933j-4572-8942.json +++ b/advisories/unreviewed/2022/05/GHSA-933j-4572-8942/GHSA-933j-4572-8942.json @@ -7,12 +7,8 @@ "CVE-2005-3231" ], "details": "Multiple interpretation error in unspecified versions of CAT Quick Heal allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-93cf-6ghg-2rqx/GHSA-93cf-6ghg-2rqx.json b/advisories/unreviewed/2022/05/GHSA-93cf-6ghg-2rqx/GHSA-93cf-6ghg-2rqx.json index c5472685409..253047db700 100644 --- a/advisories/unreviewed/2022/05/GHSA-93cf-6ghg-2rqx/GHSA-93cf-6ghg-2rqx.json +++ b/advisories/unreviewed/2022/05/GHSA-93cf-6ghg-2rqx/GHSA-93cf-6ghg-2rqx.json @@ -7,12 +7,8 @@ "CVE-2021-28642" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Out-of-bounds write vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9489-pvch-g6j2/GHSA-9489-pvch-g6j2.json b/advisories/unreviewed/2022/05/GHSA-9489-pvch-g6j2/GHSA-9489-pvch-g6j2.json index 7f5b1f1da59..047f8494ce8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9489-pvch-g6j2/GHSA-9489-pvch-g6j2.json +++ b/advisories/unreviewed/2022/05/GHSA-9489-pvch-g6j2/GHSA-9489-pvch-g6j2.json @@ -7,12 +7,8 @@ "CVE-2005-3327" ], "details": "Network Appliance Data ONTAP 7.0 and earlier allows iSCSI Initiators to bypass iSCSI authentication via a modified client that skips the Security (Start) mode, as required by the Login Negotiation protocol, and uses Operational mode without proving identity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-94qp-2fqg-7mc4/GHSA-94qp-2fqg-7mc4.json b/advisories/unreviewed/2022/05/GHSA-94qp-2fqg-7mc4/GHSA-94qp-2fqg-7mc4.json index c6a8f6b09ff..0b8a688b66b 100644 --- a/advisories/unreviewed/2022/05/GHSA-94qp-2fqg-7mc4/GHSA-94qp-2fqg-7mc4.json +++ b/advisories/unreviewed/2022/05/GHSA-94qp-2fqg-7mc4/GHSA-94qp-2fqg-7mc4.json @@ -7,12 +7,8 @@ "CVE-2005-3310" ], "details": "Interpretation conflict in phpBB 2.0.17, with remote avatars and avatar uploading enabled, allows remote authenticated users to inject arbitrary web script or HTML via an HTML file with a GIF or JPEG file extension, which causes the HTML to be executed by a victim who views the file in Internet Explorer, which renders malformed image types as HTML, enabling cross-site scripting (XSS) attacks. NOTE: it could be argued that this vulnerability is due to a design flaw in Internet Explorer (CVE-2005-3312) and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in phpBB.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-95p2-vc5j-vqpr/GHSA-95p2-vc5j-vqpr.json b/advisories/unreviewed/2022/05/GHSA-95p2-vc5j-vqpr/GHSA-95p2-vc5j-vqpr.json index fc06b8c7d67..bfa9402e770 100644 --- a/advisories/unreviewed/2022/05/GHSA-95p2-vc5j-vqpr/GHSA-95p2-vc5j-vqpr.json +++ b/advisories/unreviewed/2022/05/GHSA-95p2-vc5j-vqpr/GHSA-95p2-vc5j-vqpr.json @@ -7,12 +7,8 @@ "CVE-2005-3237" ], "details": "Cross-site scripting (XSS) vulnerability in Cyphor 0.19 allows remote attackers to inject arbitrary web script or HTML via the t_login parameter of footer.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-95ww-2c3p-r7q9/GHSA-95ww-2c3p-r7q9.json b/advisories/unreviewed/2022/05/GHSA-95ww-2c3p-r7q9/GHSA-95ww-2c3p-r7q9.json index 130b7dbe16d..4d555b0e9b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-95ww-2c3p-r7q9/GHSA-95ww-2c3p-r7q9.json +++ b/advisories/unreviewed/2022/05/GHSA-95ww-2c3p-r7q9/GHSA-95ww-2c3p-r7q9.json @@ -7,12 +7,8 @@ "CVE-2005-2952" ], "details": "Directory traversal vulnerability in s.pl in Subscribe Me Pro 2.044.09P and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the l parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-966h-32p9-2vf9/GHSA-966h-32p9-2vf9.json b/advisories/unreviewed/2022/05/GHSA-966h-32p9-2vf9/GHSA-966h-32p9-2vf9.json index 0204b2d1f92..534e6bf2d28 100644 --- a/advisories/unreviewed/2022/05/GHSA-966h-32p9-2vf9/GHSA-966h-32p9-2vf9.json +++ b/advisories/unreviewed/2022/05/GHSA-966h-32p9-2vf9/GHSA-966h-32p9-2vf9.json @@ -7,12 +7,8 @@ "CVE-2005-3019" ], "details": "Multiple SQL injection vulnerabilities in vBulletin before 3.0.9 allow remote attackers to execute arbitrary SQL commands via the (1) request parameter to joinrequests.php, (2) limitnumber or (3) limitstart to user.php, (4) usertitle.php, or (5) usertools.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9675-p6xc-j8m2/GHSA-9675-p6xc-j8m2.json b/advisories/unreviewed/2022/05/GHSA-9675-p6xc-j8m2/GHSA-9675-p6xc-j8m2.json index 6975c43cdfa..9320e1fbfaf 100644 --- a/advisories/unreviewed/2022/05/GHSA-9675-p6xc-j8m2/GHSA-9675-p6xc-j8m2.json +++ b/advisories/unreviewed/2022/05/GHSA-9675-p6xc-j8m2/GHSA-9675-p6xc-j8m2.json @@ -7,12 +7,8 @@ "CVE-2021-35992" ], "details": "Adobe Bridge version 11.0.2 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-96f7-2fxq-m5hw/GHSA-96f7-2fxq-m5hw.json b/advisories/unreviewed/2022/05/GHSA-96f7-2fxq-m5hw/GHSA-96f7-2fxq-m5hw.json index b1ce29e44d3..0aa190e1e4f 100644 --- a/advisories/unreviewed/2022/05/GHSA-96f7-2fxq-m5hw/GHSA-96f7-2fxq-m5hw.json +++ b/advisories/unreviewed/2022/05/GHSA-96f7-2fxq-m5hw/GHSA-96f7-2fxq-m5hw.json @@ -7,12 +7,8 @@ "CVE-2005-3096" ], "details": "Avi Alkalay nslookup.cgi program, dated 16 June 2002, allows remote attackers to execute arbitrary commands via shell metacharacters in the query parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-96fj-vjjr-c856/GHSA-96fj-vjjr-c856.json b/advisories/unreviewed/2022/05/GHSA-96fj-vjjr-c856/GHSA-96fj-vjjr-c856.json index 119704b9afc..52d5a48698c 100644 --- a/advisories/unreviewed/2022/05/GHSA-96fj-vjjr-c856/GHSA-96fj-vjjr-c856.json +++ b/advisories/unreviewed/2022/05/GHSA-96fj-vjjr-c856/GHSA-96fj-vjjr-c856.json @@ -7,12 +7,8 @@ "CVE-2005-2876" ], "details": "umount in util-linux 2.8 to 2.12q, 2.13-pre1, and 2.13-pre2, and other packages such as loop-aes-utils, allows local users with unmount permissions to gain privileges via the -r (remount) option, which causes the file system to be remounted with just the read-only flag, which effectively clears the nosuid, nodev, and other flags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-982p-c8jc-9m77/GHSA-982p-c8jc-9m77.json b/advisories/unreviewed/2022/05/GHSA-982p-c8jc-9m77/GHSA-982p-c8jc-9m77.json index 329e2b239a2..1e0f1c3bf38 100644 --- a/advisories/unreviewed/2022/05/GHSA-982p-c8jc-9m77/GHSA-982p-c8jc-9m77.json +++ b/advisories/unreviewed/2022/05/GHSA-982p-c8jc-9m77/GHSA-982p-c8jc-9m77.json @@ -7,12 +7,8 @@ "CVE-2020-23341" ], "details": "A reflected cross site scripting (XSS) vulnerability in the /header.tmpl.php component of ATutor 2.2.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-98c2-ghx9-f255/GHSA-98c2-ghx9-f255.json b/advisories/unreviewed/2022/05/GHSA-98c2-ghx9-f255/GHSA-98c2-ghx9-f255.json index bd2bee8c7d2..0e9dc7a9c88 100644 --- a/advisories/unreviewed/2022/05/GHSA-98c2-ghx9-f255/GHSA-98c2-ghx9-f255.json +++ b/advisories/unreviewed/2022/05/GHSA-98c2-ghx9-f255/GHSA-98c2-ghx9-f255.json @@ -7,12 +7,8 @@ "CVE-2005-2815" ], "details": "print.php in FlatNuke 2.5.6 allows remote attackers to obtain sensitive information (path disclosure on error) or cause a denial of service (resource consumption) via an MS-DOS device name in the news parameter to print.php, such as (1) AUX, (2) CON, (3) PRN, (4) COM1, or (5) LPT1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-98q3-vrjp-5w32/GHSA-98q3-vrjp-5w32.json b/advisories/unreviewed/2022/05/GHSA-98q3-vrjp-5w32/GHSA-98q3-vrjp-5w32.json index 7bf087a09e9..3d25a48afa5 100644 --- a/advisories/unreviewed/2022/05/GHSA-98q3-vrjp-5w32/GHSA-98q3-vrjp-5w32.json +++ b/advisories/unreviewed/2022/05/GHSA-98q3-vrjp-5w32/GHSA-98q3-vrjp-5w32.json @@ -7,12 +7,8 @@ "CVE-2005-3234" ], "details": "Multiple interpretation error in unspecified versions of Grisoft AVG Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9c26-qcv5-q5qj/GHSA-9c26-qcv5-q5qj.json b/advisories/unreviewed/2022/05/GHSA-9c26-qcv5-q5qj/GHSA-9c26-qcv5-q5qj.json index e3f7841c7d2..a08ea780f70 100644 --- a/advisories/unreviewed/2022/05/GHSA-9c26-qcv5-q5qj/GHSA-9c26-qcv5-q5qj.json +++ b/advisories/unreviewed/2022/05/GHSA-9c26-qcv5-q5qj/GHSA-9c26-qcv5-q5qj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cg9-rjc6-6grx/GHSA-9cg9-rjc6-6grx.json b/advisories/unreviewed/2022/05/GHSA-9cg9-rjc6-6grx/GHSA-9cg9-rjc6-6grx.json index f6cb4969b2f..10d21068177 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cg9-rjc6-6grx/GHSA-9cg9-rjc6-6grx.json +++ b/advisories/unreviewed/2022/05/GHSA-9cg9-rjc6-6grx/GHSA-9cg9-rjc6-6grx.json @@ -7,12 +7,8 @@ "CVE-2005-3453" ], "details": "Multiple unspecified vulnerabilities in Web Cache in Oracle Application Server 1.0 up to 10.1.2.0 has unknown impact and attack vectors, as identified by Oracle Vuln# (1) AS12 and (2) AS14.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9chx-6p2j-jc37/GHSA-9chx-6p2j-jc37.json b/advisories/unreviewed/2022/05/GHSA-9chx-6p2j-jc37/GHSA-9chx-6p2j-jc37.json index 6925bbd6ac2..3ac01671c50 100644 --- a/advisories/unreviewed/2022/05/GHSA-9chx-6p2j-jc37/GHSA-9chx-6p2j-jc37.json +++ b/advisories/unreviewed/2022/05/GHSA-9chx-6p2j-jc37/GHSA-9chx-6p2j-jc37.json @@ -7,12 +7,8 @@ "CVE-2005-3364" ], "details": "Multiple SQL injection vulnerabilities in DboardGear allow remote attackers to execute arbitrary SQL commands via (1) the buddy parameter in buddy.php, (2) the u2uid parameter in u2u.php, and (3) an invalid theme file in the themes action to ctrtools.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9f4x-rfqp-3c2c/GHSA-9f4x-rfqp-3c2c.json b/advisories/unreviewed/2022/05/GHSA-9f4x-rfqp-3c2c/GHSA-9f4x-rfqp-3c2c.json index c906d1423dc..fa2a5b20974 100644 --- a/advisories/unreviewed/2022/05/GHSA-9f4x-rfqp-3c2c/GHSA-9f4x-rfqp-3c2c.json +++ b/advisories/unreviewed/2022/05/GHSA-9f4x-rfqp-3c2c/GHSA-9f4x-rfqp-3c2c.json @@ -7,12 +7,8 @@ "CVE-2005-3400" ], "details": "Multiple interpretation error in Fortinet 2.48.0.0 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9fch-jjp9-h24r/GHSA-9fch-jjp9-h24r.json b/advisories/unreviewed/2022/05/GHSA-9fch-jjp9-h24r/GHSA-9fch-jjp9-h24r.json index a95e4f50a2c..a9c34ada559 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fch-jjp9-h24r/GHSA-9fch-jjp9-h24r.json +++ b/advisories/unreviewed/2022/05/GHSA-9fch-jjp9-h24r/GHSA-9fch-jjp9-h24r.json @@ -7,12 +7,8 @@ "CVE-2005-2977" ], "details": "The SELinux version of PAM before 0.78 r3 allows local users to perform brute force password guessing attacks via unix_chkpwd, which does not log failed guesses or delay its responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9fcm-298r-cw5q/GHSA-9fcm-298r-cw5q.json b/advisories/unreviewed/2022/05/GHSA-9fcm-298r-cw5q/GHSA-9fcm-298r-cw5q.json index 25ee3322e50..150919b5d55 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fcm-298r-cw5q/GHSA-9fcm-298r-cw5q.json +++ b/advisories/unreviewed/2022/05/GHSA-9fcm-298r-cw5q/GHSA-9fcm-298r-cw5q.json @@ -7,12 +7,8 @@ "CVE-2021-1578" ], "details": "A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Controller (Cloud APIC) could allow an authenticated, remote attacker to elevate privileges to Administrator on an affected device. This vulnerability is due to an improper policy default setting. An attacker could exploit this vulnerability by using a non-privileged credential for Cisco ACI Multi-Site Orchestrator (MSO) to send a specific API request to a managed Cisco APIC or Cloud APIC device. A successful exploit could allow the attacker to obtain Administrator credentials on the affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9fvv-9grc-57vf/GHSA-9fvv-9grc-57vf.json b/advisories/unreviewed/2022/05/GHSA-9fvv-9grc-57vf/GHSA-9fvv-9grc-57vf.json index f3b91d473e9..d8983bcb8b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fvv-9grc-57vf/GHSA-9fvv-9grc-57vf.json +++ b/advisories/unreviewed/2022/05/GHSA-9fvv-9grc-57vf/GHSA-9fvv-9grc-57vf.json @@ -7,12 +7,8 @@ "CVE-2005-3109" ], "details": "The HFS and HFS+ (hfsplus) modules in Linux 2.6 allow attackers to cause a denial of service (oops) by using hfsplus to mount a filesystem that is not hfsplus.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9fxf-v57m-8m42/GHSA-9fxf-v57m-8m42.json b/advisories/unreviewed/2022/05/GHSA-9fxf-v57m-8m42/GHSA-9fxf-v57m-8m42.json index 72c9f16753e..4867e9ea54b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9fxf-v57m-8m42/GHSA-9fxf-v57m-8m42.json +++ b/advisories/unreviewed/2022/05/GHSA-9fxf-v57m-8m42/GHSA-9fxf-v57m-8m42.json @@ -7,12 +7,8 @@ "CVE-2005-3204" ], "details": "Cross-site scripting (XSS) vulnerability in Oracle XML DB 9iR2 allows remote attackers to inject arbitrary web script or HTML via the query string in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9g2q-qghv-228v/GHSA-9g2q-qghv-228v.json b/advisories/unreviewed/2022/05/GHSA-9g2q-qghv-228v/GHSA-9g2q-qghv-228v.json index 18c0ac0149b..2ddadb7435b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9g2q-qghv-228v/GHSA-9g2q-qghv-228v.json +++ b/advisories/unreviewed/2022/05/GHSA-9g2q-qghv-228v/GHSA-9g2q-qghv-228v.json @@ -7,12 +7,8 @@ "CVE-2005-2961" ], "details": "Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9gc7-f279-pcx9/GHSA-9gc7-f279-pcx9.json b/advisories/unreviewed/2022/05/GHSA-9gc7-f279-pcx9/GHSA-9gc7-f279-pcx9.json index c671df47651..a9dc7e1319d 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gc7-f279-pcx9/GHSA-9gc7-f279-pcx9.json +++ b/advisories/unreviewed/2022/05/GHSA-9gc7-f279-pcx9/GHSA-9gc7-f279-pcx9.json @@ -7,12 +7,8 @@ "CVE-2005-3405" ], "details": "ATutor 1.4.1 through 1.5.1-pl1 allows remote attackers to execute arbitrary PHP functions via a direct request to forum.inc.php with a modified addslashes parameter with either the (1) asc or (2) desc parameters set, possibly due to an eval injection vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9gvg-4j2j-wggj/GHSA-9gvg-4j2j-wggj.json b/advisories/unreviewed/2022/05/GHSA-9gvg-4j2j-wggj/GHSA-9gvg-4j2j-wggj.json index c44079b0846..d8180e3b421 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gvg-4j2j-wggj/GHSA-9gvg-4j2j-wggj.json +++ b/advisories/unreviewed/2022/05/GHSA-9gvg-4j2j-wggj/GHSA-9gvg-4j2j-wggj.json @@ -7,12 +7,8 @@ "CVE-2021-20767" ], "details": "Cross-site scripting vulnerability in Full Text Search of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9j69-wmhc-fw54/GHSA-9j69-wmhc-fw54.json b/advisories/unreviewed/2022/05/GHSA-9j69-wmhc-fw54/GHSA-9j69-wmhc-fw54.json index f089c3f432c..2b0cc6b0d85 100644 --- a/advisories/unreviewed/2022/05/GHSA-9j69-wmhc-fw54/GHSA-9j69-wmhc-fw54.json +++ b/advisories/unreviewed/2022/05/GHSA-9j69-wmhc-fw54/GHSA-9j69-wmhc-fw54.json @@ -7,12 +7,8 @@ "CVE-2005-3280" ], "details": "Paros 3.2.5 uses a default password for the \"sa\" account in the underlying HSQLDB database and does not restrict access to the local machine, which allows remote attackers to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9m2q-w2xh-85rg/GHSA-9m2q-w2xh-85rg.json b/advisories/unreviewed/2022/05/GHSA-9m2q-w2xh-85rg/GHSA-9m2q-w2xh-85rg.json index fd6f4bfdbc4..a272a07964a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9m2q-w2xh-85rg/GHSA-9m2q-w2xh-85rg.json +++ b/advisories/unreviewed/2022/05/GHSA-9m2q-w2xh-85rg/GHSA-9m2q-w2xh-85rg.json @@ -7,12 +7,8 @@ "CVE-2005-3051" ], "details": "Stack-based buffer overflow in the ARJ plugin (arj.dll) 3.9.2.0 for 7-Zip 3.13, 4.23, and 4.26 BETA, as used in products including Turbo Searcher, allows remote attackers to execute arbitrary code via a large ARJ block.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9m59-h736-2x4x/GHSA-9m59-h736-2x4x.json b/advisories/unreviewed/2022/05/GHSA-9m59-h736-2x4x/GHSA-9m59-h736-2x4x.json index 7df9418ef89..ea981cd24a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-9m59-h736-2x4x/GHSA-9m59-h736-2x4x.json +++ b/advisories/unreviewed/2022/05/GHSA-9m59-h736-2x4x/GHSA-9m59-h736-2x4x.json @@ -7,12 +7,8 @@ "CVE-2005-3214" ], "details": "Multiple interpretation error in unspecified versions of Avast Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mxr-mcvr-5xpm/GHSA-9mxr-mcvr-5xpm.json b/advisories/unreviewed/2022/05/GHSA-9mxr-mcvr-5xpm/GHSA-9mxr-mcvr-5xpm.json index 08019dda9bb..7501d6ecfe9 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mxr-mcvr-5xpm/GHSA-9mxr-mcvr-5xpm.json +++ b/advisories/unreviewed/2022/05/GHSA-9mxr-mcvr-5xpm/GHSA-9mxr-mcvr-5xpm.json @@ -7,12 +7,8 @@ "CVE-2021-34716" ], "details": "A vulnerability in the web-based management interface of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker to execute arbitrary code on the underlying operating system as the root user. This vulnerability is due to incorrect handling of certain crafted software images that are uploaded to the affected device. An attacker could exploit this vulnerability by authenticating to the system as an administrative user and then uploading specific crafted software images to the affected device. A successful exploit could allow the attacker to execute arbitrary code on the underlying operating system as the root user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9p68-6mvc-4wmq/GHSA-9p68-6mvc-4wmq.json b/advisories/unreviewed/2022/05/GHSA-9p68-6mvc-4wmq/GHSA-9p68-6mvc-4wmq.json index 3d052f9aa78..b72dd879e35 100644 --- a/advisories/unreviewed/2022/05/GHSA-9p68-6mvc-4wmq/GHSA-9p68-6mvc-4wmq.json +++ b/advisories/unreviewed/2022/05/GHSA-9p68-6mvc-4wmq/GHSA-9p68-6mvc-4wmq.json @@ -7,12 +7,8 @@ "CVE-2005-3203" ], "details": "The manual installation of Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 stores the SYS password in install.lst in plaintext, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9rc4-gv88-wc3p/GHSA-9rc4-gv88-wc3p.json b/advisories/unreviewed/2022/05/GHSA-9rc4-gv88-wc3p/GHSA-9rc4-gv88-wc3p.json index 146e6998b60..2462b140095 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rc4-gv88-wc3p/GHSA-9rc4-gv88-wc3p.json +++ b/advisories/unreviewed/2022/05/GHSA-9rc4-gv88-wc3p/GHSA-9rc4-gv88-wc3p.json @@ -7,12 +7,8 @@ "CVE-2005-3213" ], "details": "Multiple interpretation error in unspecified versions of F-Prot Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9v5h-pjw2-wf2g/GHSA-9v5h-pjw2-wf2g.json b/advisories/unreviewed/2022/05/GHSA-9v5h-pjw2-wf2g/GHSA-9v5h-pjw2-wf2g.json index 7756d2272b8..1d9b000ea43 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v5h-pjw2-wf2g/GHSA-9v5h-pjw2-wf2g.json +++ b/advisories/unreviewed/2022/05/GHSA-9v5h-pjw2-wf2g/GHSA-9v5h-pjw2-wf2g.json @@ -7,12 +7,8 @@ "CVE-2005-2891" ], "details": "WebArchiveX.dll 5.5.0.76 installed before September 6th, 2005 is marked safe for scripting by default, which allows remote attackers to read or write to arbitrary files via the (1) MakeArchive or (2) MakeArchiveStr methods.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9vq5-w755-p355/GHSA-9vq5-w755-p355.json b/advisories/unreviewed/2022/05/GHSA-9vq5-w755-p355/GHSA-9vq5-w755-p355.json index 5aefc8b5eb4..aca1da96fcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vq5-w755-p355/GHSA-9vq5-w755-p355.json +++ b/advisories/unreviewed/2022/05/GHSA-9vq5-w755-p355/GHSA-9vq5-w755-p355.json @@ -7,12 +7,8 @@ "CVE-2005-3113" ], "details": "The ActiveX control for NateOn Messenger (NateonDownloadManager.ocx) allows remote attackers to download and execute arbitrary programs by setting the arguments to the GotNate.Excute method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9wm4-3c82-wjrj/GHSA-9wm4-3c82-wjrj.json b/advisories/unreviewed/2022/05/GHSA-9wm4-3c82-wjrj/GHSA-9wm4-3c82-wjrj.json index 03158af785d..73615612018 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wm4-3c82-wjrj/GHSA-9wm4-3c82-wjrj.json +++ b/advisories/unreviewed/2022/05/GHSA-9wm4-3c82-wjrj/GHSA-9wm4-3c82-wjrj.json @@ -7,12 +7,8 @@ "CVE-2005-3079" ], "details": "PunBB before 1.2.8 allows remote attackers to perform \"code inclusion\" via the user language selection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9x3v-ffmx-px9p/GHSA-9x3v-ffmx-px9p.json b/advisories/unreviewed/2022/05/GHSA-9x3v-ffmx-px9p/GHSA-9x3v-ffmx-px9p.json index f99239072fa..9e46f33ede8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9x3v-ffmx-px9p/GHSA-9x3v-ffmx-px9p.json +++ b/advisories/unreviewed/2022/05/GHSA-9x3v-ffmx-px9p/GHSA-9x3v-ffmx-px9p.json @@ -7,12 +7,8 @@ "CVE-2005-3443" ], "details": "Unspecified vulnerability in the Spatial component in Oracle Database Server from 9i up to 10.1.0.3 has unknown impact and attack vectors, aka Oracle Vuln# DB17.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9xx6-3c29-j6cq/GHSA-9xx6-3c29-j6cq.json b/advisories/unreviewed/2022/05/GHSA-9xx6-3c29-j6cq/GHSA-9xx6-3c29-j6cq.json index 0d4275cd380..147b890c48c 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xx6-3c29-j6cq/GHSA-9xx6-3c29-j6cq.json +++ b/advisories/unreviewed/2022/05/GHSA-9xx6-3c29-j6cq/GHSA-9xx6-3c29-j6cq.json @@ -7,12 +7,8 @@ "CVE-2021-20811" ], "details": "Cross-site scripting vulnerability in List of Assets screen of Movable Type (Movable Type 7 r.4903 and earlier (Movable Type 7 Series), Movable Type 6.8.0 and earlier (Movable Type 6 Series), Movable Type Advanced 7 r.4903 and earlier (Movable Type Advanced 7 Series), Movable Type Premium 1.44 and earlier, and Movable Type Premium Advanced 1.44 and earlier) allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c299-g72j-qp3x/GHSA-c299-g72j-qp3x.json b/advisories/unreviewed/2022/05/GHSA-c299-g72j-qp3x/GHSA-c299-g72j-qp3x.json index c1b7623b28a..484937778b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c299-g72j-qp3x/GHSA-c299-g72j-qp3x.json +++ b/advisories/unreviewed/2022/05/GHSA-c299-g72j-qp3x/GHSA-c299-g72j-qp3x.json @@ -7,12 +7,8 @@ "CVE-2005-3335" ], "details": "PHP file inclusion vulnerability in bug_sponsorship_list_view_inc.php in Mantis 1.0.0RC2 and 0.19.2 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the t_core_path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c29r-cv88-px4c/GHSA-c29r-cv88-px4c.json b/advisories/unreviewed/2022/05/GHSA-c29r-cv88-px4c/GHSA-c29r-cv88-px4c.json index 4973b15f533..0f3618e280c 100644 --- a/advisories/unreviewed/2022/05/GHSA-c29r-cv88-px4c/GHSA-c29r-cv88-px4c.json +++ b/advisories/unreviewed/2022/05/GHSA-c29r-cv88-px4c/GHSA-c29r-cv88-px4c.json @@ -7,12 +7,8 @@ "CVE-2005-3091" ], "details": "Cross-site scripting (XSS) vulnerability in Mantis before 1.0.0rc1 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors, as identified by bug#0005751 \"thraxisp\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c32m-fr99-2m6g/GHSA-c32m-fr99-2m6g.json b/advisories/unreviewed/2022/05/GHSA-c32m-fr99-2m6g/GHSA-c32m-fr99-2m6g.json index fe60aa5930b..78163710d6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c32m-fr99-2m6g/GHSA-c32m-fr99-2m6g.json +++ b/advisories/unreviewed/2022/05/GHSA-c32m-fr99-2m6g/GHSA-c32m-fr99-2m6g.json @@ -7,12 +7,8 @@ "CVE-2005-3100" ], "details": "Unspecified \"PPTP Remote DoS Vulnerability\" in Astaro Security Linux 4.027 allows attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c34j-ggrv-8pmc/GHSA-c34j-ggrv-8pmc.json b/advisories/unreviewed/2022/05/GHSA-c34j-ggrv-8pmc/GHSA-c34j-ggrv-8pmc.json index 08df17e15c6..8870ea8bd4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-c34j-ggrv-8pmc/GHSA-c34j-ggrv-8pmc.json +++ b/advisories/unreviewed/2022/05/GHSA-c34j-ggrv-8pmc/GHSA-c34j-ggrv-8pmc.json @@ -7,12 +7,8 @@ "CVE-2005-2940" ], "details": "Unquoted Windows search path vulnerability in Microsoft Antispyware 1.0.509 (Beta 1) might allow local users to gain privileges via a malicious \"program.exe\" file in the C: folder, involving the programs (1) GIANTAntiSpywareMain.exe, (2) gcASNotice.exe, (3) gcasServ.exe, (4) gcasSWUpdater.exe, or (5) GIANTAntiSpywareUpdater.exe. NOTE: it is not clear whether this overlaps CVE-2005-2935.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c35h-x7vf-692j/GHSA-c35h-x7vf-692j.json b/advisories/unreviewed/2022/05/GHSA-c35h-x7vf-692j/GHSA-c35h-x7vf-692j.json index 8acf3ff07c5..ac064196fd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-c35h-x7vf-692j/GHSA-c35h-x7vf-692j.json +++ b/advisories/unreviewed/2022/05/GHSA-c35h-x7vf-692j/GHSA-c35h-x7vf-692j.json @@ -7,12 +7,8 @@ "CVE-2005-2996" ], "details": "Multiple heap-based and stack-based buffer overflows in certain DCOM server components in VERITAS Storage Exec Storage Exec 5.3 before Hotfix 9 and StorageCentral 5.2 before Hot Fix 2 allow remote attackers to execute arbitrary code via certain ActiveX controls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3gc-583q-48mp/GHSA-c3gc-583q-48mp.json b/advisories/unreviewed/2022/05/GHSA-c3gc-583q-48mp/GHSA-c3gc-583q-48mp.json index 37cb42cfd8e..ca5f2520ad3 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3gc-583q-48mp/GHSA-c3gc-583q-48mp.json +++ b/advisories/unreviewed/2022/05/GHSA-c3gc-583q-48mp/GHSA-c3gc-583q-48mp.json @@ -7,12 +7,8 @@ "CVE-2005-3292" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Xeobook 0.93 allow remote attackers to inject arbitrary web script or HTML via Javascript events in tages such as .", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3gm-x6qw-q5m2/GHSA-c3gm-x6qw-q5m2.json b/advisories/unreviewed/2022/05/GHSA-c3gm-x6qw-q5m2/GHSA-c3gm-x6qw-q5m2.json index 7584b950726..60eb1978e19 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3gm-x6qw-q5m2/GHSA-c3gm-x6qw-q5m2.json +++ b/advisories/unreviewed/2022/05/GHSA-c3gm-x6qw-q5m2/GHSA-c3gm-x6qw-q5m2.json @@ -7,12 +7,8 @@ "CVE-2005-3064" ], "details": "MultiTheftAuto 0.5 patch 1 and earlier does not properly verify client privileges when running command 40, which allows remote attackers to change or delete the message of the day (motd.txt).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c3m9-hj59-xmqg/GHSA-c3m9-hj59-xmqg.json b/advisories/unreviewed/2022/05/GHSA-c3m9-hj59-xmqg/GHSA-c3m9-hj59-xmqg.json index 94e7da22e4e..9e110abfadf 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3m9-hj59-xmqg/GHSA-c3m9-hj59-xmqg.json +++ b/advisories/unreviewed/2022/05/GHSA-c3m9-hj59-xmqg/GHSA-c3m9-hj59-xmqg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3pw-ww68-wpx6/GHSA-c3pw-ww68-wpx6.json b/advisories/unreviewed/2022/05/GHSA-c3pw-ww68-wpx6/GHSA-c3pw-ww68-wpx6.json index 7bf5612bcfc..55cd41ac6a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3pw-ww68-wpx6/GHSA-c3pw-ww68-wpx6.json +++ b/advisories/unreviewed/2022/05/GHSA-c3pw-ww68-wpx6/GHSA-c3pw-ww68-wpx6.json @@ -7,12 +7,8 @@ "CVE-2005-3445" ], "details": "Multiple unspecified vulnerabilities in HTTP Server in Oracle Database Server 8i up to 10.1.0.4.2 and Application Server 1.0.2.2 up to 10.1.2.0 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB30 and AS03 or (2) DB31 and AS05.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c489-5g62-xg74/GHSA-c489-5g62-xg74.json b/advisories/unreviewed/2022/05/GHSA-c489-5g62-xg74/GHSA-c489-5g62-xg74.json index 35dba0f3197..1e4237e3bf3 100644 --- a/advisories/unreviewed/2022/05/GHSA-c489-5g62-xg74/GHSA-c489-5g62-xg74.json +++ b/advisories/unreviewed/2022/05/GHSA-c489-5g62-xg74/GHSA-c489-5g62-xg74.json @@ -7,12 +7,8 @@ "CVE-2005-3273" ], "details": "The rose_rt_ioctl function in rose_route.c for Radionet Open Source Environment (ROSE) in Linux 2.6 kernels before 2.6.12, and 2.4 before 2.4.29, does not properly verify the ndigis argument for a new route, which allows attackers to trigger array out-of-bounds errors with a large number of digipeats.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c562-9hpw-fvxf/GHSA-c562-9hpw-fvxf.json b/advisories/unreviewed/2022/05/GHSA-c562-9hpw-fvxf/GHSA-c562-9hpw-fvxf.json index a789baf6377..8cf7af7e8c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-c562-9hpw-fvxf/GHSA-c562-9hpw-fvxf.json +++ b/advisories/unreviewed/2022/05/GHSA-c562-9hpw-fvxf/GHSA-c562-9hpw-fvxf.json @@ -7,12 +7,8 @@ "CVE-2005-3455" ], "details": "Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5 up to 11.5.10 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) APPS01 in Application Install; (2) APPS02 and (3) APPS03 in Application Object Library; (4) APPS05 and (5) APPS06 in Applications Technology Stack; (6) APPS07 in Applications Utilities; (7) APPS09, (8) APPS10, and (9) APPS11 in HRMS; (10) APPS12 in Mobile Application Foundation; (11) APPS13 in SDP Number Portability; (12) APPS14 in Oracle Service; (13) APPS15 in Service Fulfillment Manage, (14) APPS16 in Universal Work Queue; and (15) APPS20 in Workflow Cartridge.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c58f-48r6-vx5g/GHSA-c58f-48r6-vx5g.json b/advisories/unreviewed/2022/05/GHSA-c58f-48r6-vx5g/GHSA-c58f-48r6-vx5g.json index b993b1c1e8b..ff49ac0ed33 100644 --- a/advisories/unreviewed/2022/05/GHSA-c58f-48r6-vx5g/GHSA-c58f-48r6-vx5g.json +++ b/advisories/unreviewed/2022/05/GHSA-c58f-48r6-vx5g/GHSA-c58f-48r6-vx5g.json @@ -7,12 +7,8 @@ "CVE-2005-2865" ], "details": "Multiple PHP remote file inclusion vulnerabilities in aMember Pro 2.3.4 allow remote attackers to execute arbitrary PHP code via the config[root_dir] parameter to (1) mysql.inc.php, (2) efsnet.inc.php, (3) theinternetcommerce.inc.php, (4) cdg.inc.php, (5) compuworld.inc.php, (6) directone.inc.php, (7) authorize_aim.inc.php, (8) beanstream.inc.php, (9) config.inc.php, (10) eprocessingnetwork.inc.php, (11) eway.inc.php, (12) linkpoint.inc.php, (13) logiccommerce.inc.php, (14) netbilling.inc.php, (15) payflow_pro.inc.php, (16) paymentsgateway.inc.php, (17) payos.inc.php, (18) payready.inc.php, or (19) plugnplay.inc.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c5c4-6w52-p8qr/GHSA-c5c4-6w52-p8qr.json b/advisories/unreviewed/2022/05/GHSA-c5c4-6w52-p8qr/GHSA-c5c4-6w52-p8qr.json index be78dd0693b..d2a9ec18cc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5c4-6w52-p8qr/GHSA-c5c4-6w52-p8qr.json +++ b/advisories/unreviewed/2022/05/GHSA-c5c4-6w52-p8qr/GHSA-c5c4-6w52-p8qr.json @@ -7,12 +7,8 @@ "CVE-2021-28592" ], "details": "Adobe Illustrator version 25.2.3 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5px-3mxp-74qc/GHSA-c5px-3mxp-74qc.json b/advisories/unreviewed/2022/05/GHSA-c5px-3mxp-74qc/GHSA-c5px-3mxp-74qc.json index 4bfa20827e8..0d5bb207d9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5px-3mxp-74qc/GHSA-c5px-3mxp-74qc.json +++ b/advisories/unreviewed/2022/05/GHSA-c5px-3mxp-74qc/GHSA-c5px-3mxp-74qc.json @@ -7,12 +7,8 @@ "CVE-2021-31820" ], "details": "In Octopus Server after version 2018.8.2 if the Octopus Server Web Request Proxy is configured with authentication, the password is shown in plaintext in the UI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c6f6-vj36-33pw/GHSA-c6f6-vj36-33pw.json b/advisories/unreviewed/2022/05/GHSA-c6f6-vj36-33pw/GHSA-c6f6-vj36-33pw.json index 0cc310606e2..1c890ed8098 100644 --- a/advisories/unreviewed/2022/05/GHSA-c6f6-vj36-33pw/GHSA-c6f6-vj36-33pw.json +++ b/advisories/unreviewed/2022/05/GHSA-c6f6-vj36-33pw/GHSA-c6f6-vj36-33pw.json @@ -7,12 +7,8 @@ "CVE-2005-3121" ], "details": "A rule file in module-assistant before 0.9.10 causes a temporary file to be created insecurely, which allows local users to conduct unauthorized operations.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c87c-rr2w-6q25/GHSA-c87c-rr2w-6q25.json b/advisories/unreviewed/2022/05/GHSA-c87c-rr2w-6q25/GHSA-c87c-rr2w-6q25.json index e3d468f7b6b..71d316eacfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-c87c-rr2w-6q25/GHSA-c87c-rr2w-6q25.json +++ b/advisories/unreviewed/2022/05/GHSA-c87c-rr2w-6q25/GHSA-c87c-rr2w-6q25.json @@ -7,12 +7,8 @@ "CVE-2005-3080" ], "details": "contrib/example.php in GeSHi before 1.0.7.3 allows remote attackers to read arbitrary files via the language field without a source field set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9hr-c526-6qwv/GHSA-c9hr-c526-6qwv.json b/advisories/unreviewed/2022/05/GHSA-c9hr-c526-6qwv/GHSA-c9hr-c526-6qwv.json index 656b6b79bf1..6e3e08f0b37 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9hr-c526-6qwv/GHSA-c9hr-c526-6qwv.json +++ b/advisories/unreviewed/2022/05/GHSA-c9hr-c526-6qwv/GHSA-c9hr-c526-6qwv.json @@ -7,12 +7,8 @@ "CVE-2005-3444" ], "details": "Multiple unspecified vulnerabilities in the Programmatic Interface in Oracle Database Server from 8i up to 9.2.0.5 have unknown impact and attack vectors, aka Oracle Vuln# DB26.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9m3-j5h4-86f6/GHSA-c9m3-j5h4-86f6.json b/advisories/unreviewed/2022/05/GHSA-c9m3-j5h4-86f6/GHSA-c9m3-j5h4-86f6.json index 45fe9dfa63c..32c3b76d5ef 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9m3-j5h4-86f6/GHSA-c9m3-j5h4-86f6.json +++ b/advisories/unreviewed/2022/05/GHSA-c9m3-j5h4-86f6/GHSA-c9m3-j5h4-86f6.json @@ -7,12 +7,8 @@ "CVE-2005-2892" ], "details": "Directory traversal vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to read arbitrary files via \"..\" sequences and \"%00\" (trailing null byte) in the u parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c9r3-gv8p-rgw3/GHSA-c9r3-gv8p-rgw3.json b/advisories/unreviewed/2022/05/GHSA-c9r3-gv8p-rgw3/GHSA-c9r3-gv8p-rgw3.json index 1884d7617c1..e02df3e4aff 100644 --- a/advisories/unreviewed/2022/05/GHSA-c9r3-gv8p-rgw3/GHSA-c9r3-gv8p-rgw3.json +++ b/advisories/unreviewed/2022/05/GHSA-c9r3-gv8p-rgw3/GHSA-c9r3-gv8p-rgw3.json @@ -7,12 +7,8 @@ "CVE-2020-18877" ], "details": "SQL Injection in Wuzhi CMS v4.1.0 allows remote attackers to obtain sensitive information via the 'flag' parameter in the component '/coreframe/app/order/admin/index.php'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc88-8854-g7c9/GHSA-cc88-8854-g7c9.json b/advisories/unreviewed/2022/05/GHSA-cc88-8854-g7c9/GHSA-cc88-8854-g7c9.json index 104be01828c..e15357426df 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc88-8854-g7c9/GHSA-cc88-8854-g7c9.json +++ b/advisories/unreviewed/2022/05/GHSA-cc88-8854-g7c9/GHSA-cc88-8854-g7c9.json @@ -7,12 +7,8 @@ "CVE-2021-0578" ], "details": "In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187161772", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc8x-chx9-c63q/GHSA-cc8x-chx9-c63q.json b/advisories/unreviewed/2022/05/GHSA-cc8x-chx9-c63q/GHSA-cc8x-chx9-c63q.json index 7358f15b3e4..8025561c275 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc8x-chx9-c63q/GHSA-cc8x-chx9-c63q.json +++ b/advisories/unreviewed/2022/05/GHSA-cc8x-chx9-c63q/GHSA-cc8x-chx9-c63q.json @@ -7,12 +7,8 @@ "CVE-2021-25218" ], "details": "In BIND 9.16.19, 9.17.16. Also, version 9.16.19-S1 of BIND Supported Preview Edition When a vulnerable version of named receives a query under the circumstances described above, the named process will terminate due to a failed assertion check. The vulnerability affects only BIND 9 releases 9.16.19, 9.17.16, and release 9.16.19-S1 of the BIND Supported Preview Edition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfgm-r5hj-fcvm/GHSA-cfgm-r5hj-fcvm.json b/advisories/unreviewed/2022/05/GHSA-cfgm-r5hj-fcvm/GHSA-cfgm-r5hj-fcvm.json index e7da3b2e2ee..e41eb33c2cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfgm-r5hj-fcvm/GHSA-cfgm-r5hj-fcvm.json +++ b/advisories/unreviewed/2022/05/GHSA-cfgm-r5hj-fcvm/GHSA-cfgm-r5hj-fcvm.json @@ -7,12 +7,8 @@ "CVE-2005-3380" ], "details": "Multiple interpretation error in Panda Titanium 2005 4.02.01 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cfv4-xm37-xr2x/GHSA-cfv4-xm37-xr2x.json b/advisories/unreviewed/2022/05/GHSA-cfv4-xm37-xr2x/GHSA-cfv4-xm37-xr2x.json index f3b937fc01c..2cf4eb8fd0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfv4-xm37-xr2x/GHSA-cfv4-xm37-xr2x.json +++ b/advisories/unreviewed/2022/05/GHSA-cfv4-xm37-xr2x/GHSA-cfv4-xm37-xr2x.json @@ -7,12 +7,8 @@ "CVE-2005-3250" ], "details": "Unknown vulnerability in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors related to the \"/proc\" filesystem, which trigger a null dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cgf8-qhr6-x48v/GHSA-cgf8-qhr6-x48v.json b/advisories/unreviewed/2022/05/GHSA-cgf8-qhr6-x48v/GHSA-cgf8-qhr6-x48v.json index 6e32fe13c57..b6b12280335 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgf8-qhr6-x48v/GHSA-cgf8-qhr6-x48v.json +++ b/advisories/unreviewed/2022/05/GHSA-cgf8-qhr6-x48v/GHSA-cgf8-qhr6-x48v.json @@ -7,12 +7,8 @@ "CVE-2005-3081" ], "details": "wzdftpd 0.5.4 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the SITE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cgh2-c9hv-93wq/GHSA-cgh2-c9hv-93wq.json b/advisories/unreviewed/2022/05/GHSA-cgh2-c9hv-93wq/GHSA-cgh2-c9hv-93wq.json index ca50f972e65..e481c63ffa6 100644 --- a/advisories/unreviewed/2022/05/GHSA-cgh2-c9hv-93wq/GHSA-cgh2-c9hv-93wq.json +++ b/advisories/unreviewed/2022/05/GHSA-cgh2-c9hv-93wq/GHSA-cgh2-c9hv-93wq.json @@ -7,12 +7,8 @@ "CVE-2005-3248" ], "details": "Unspecified vulnerability in the X11 dissector in Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (divide-by-zero) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ch37-cwrj-298v/GHSA-ch37-cwrj-298v.json b/advisories/unreviewed/2022/05/GHSA-ch37-cwrj-298v/GHSA-ch37-cwrj-298v.json index a32da751269..4212c8df76e 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch37-cwrj-298v/GHSA-ch37-cwrj-298v.json +++ b/advisories/unreviewed/2022/05/GHSA-ch37-cwrj-298v/GHSA-ch37-cwrj-298v.json @@ -7,12 +7,8 @@ "CVE-2005-3198" ], "details": "Webroot Desktop Firewall before 1.3.0build52 allows local users to disable the firewall, even when password protection is enabled, via certain DeviceIoControl commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chmh-442f-4pcf/GHSA-chmh-442f-4pcf.json b/advisories/unreviewed/2022/05/GHSA-chmh-442f-4pcf/GHSA-chmh-442f-4pcf.json index c29127db057..ef588e3d6c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-chmh-442f-4pcf/GHSA-chmh-442f-4pcf.json +++ b/advisories/unreviewed/2022/05/GHSA-chmh-442f-4pcf/GHSA-chmh-442f-4pcf.json @@ -7,12 +7,8 @@ "CVE-2005-3290" ], "details": "SQL injection vulnerability in Accelerated Mortgage Manager allows remote attackers to execute arbitrary SQL commands via the password field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chph-qcj7-xvv3/GHSA-chph-qcj7-xvv3.json b/advisories/unreviewed/2022/05/GHSA-chph-qcj7-xvv3/GHSA-chph-qcj7-xvv3.json index b19914a9a56..b4d0dfe4fe7 100644 --- a/advisories/unreviewed/2022/05/GHSA-chph-qcj7-xvv3/GHSA-chph-qcj7-xvv3.json +++ b/advisories/unreviewed/2022/05/GHSA-chph-qcj7-xvv3/GHSA-chph-qcj7-xvv3.json @@ -7,12 +7,8 @@ "CVE-2005-3438" ], "details": "Multiple unspecified vulnerabilities in Oracle Database Server 9i up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB04 in Change Data Capture; (2) DB06 in Data Guard Logical Standby; (3) DB10 in Locale; (4) DB12 in Materialized Views; (5) DB13 in Objects Extension; (6) DB15 in Oracle Label Security; (7) DB27 in Security, possibly due to a buffer overflow in sys.pbsde.init; and (8) DB28 and (9) DB29 in Workspace Manager.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chrc-r4w7-3466/GHSA-chrc-r4w7-3466.json b/advisories/unreviewed/2022/05/GHSA-chrc-r4w7-3466/GHSA-chrc-r4w7-3466.json index c3a20544b09..f988961f58b 100644 --- a/advisories/unreviewed/2022/05/GHSA-chrc-r4w7-3466/GHSA-chrc-r4w7-3466.json +++ b/advisories/unreviewed/2022/05/GHSA-chrc-r4w7-3466/GHSA-chrc-r4w7-3466.json @@ -7,12 +7,8 @@ "CVE-2005-3016" ], "details": "Multiple unspecified vulnerabilities in the WYSIWYG editor in PHP-Nuke before 7.9 Final have unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chv3-wh4m-6472/GHSA-chv3-wh4m-6472.json b/advisories/unreviewed/2022/05/GHSA-chv3-wh4m-6472/GHSA-chv3-wh4m-6472.json index ff7fdcd42d8..ddefa4dd154 100644 --- a/advisories/unreviewed/2022/05/GHSA-chv3-wh4m-6472/GHSA-chv3-wh4m-6472.json +++ b/advisories/unreviewed/2022/05/GHSA-chv3-wh4m-6472/GHSA-chv3-wh4m-6472.json @@ -7,12 +7,8 @@ "CVE-2005-3206" ], "details": "iSQL*Plus (isqlplus) for Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to cause a denial of service (TNS listener stop) via an HTTP request with an sid parameter that contains a STOP command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chxv-69f7-52q5/GHSA-chxv-69f7-52q5.json b/advisories/unreviewed/2022/05/GHSA-chxv-69f7-52q5/GHSA-chxv-69f7-52q5.json index f64f6387a1c..d1e278086c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-chxv-69f7-52q5/GHSA-chxv-69f7-52q5.json +++ b/advisories/unreviewed/2022/05/GHSA-chxv-69f7-52q5/GHSA-chxv-69f7-52q5.json @@ -7,12 +7,8 @@ "CVE-2021-24557" ], "details": "The update functionality in the rslider_page uses an rs_id POST parameter which is not validated, sanitised or escaped before being inserted in sql query, therefore leading to SQL injection for users having Administrator role.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cj45-38rm-4m9v/GHSA-cj45-38rm-4m9v.json b/advisories/unreviewed/2022/05/GHSA-cj45-38rm-4m9v/GHSA-cj45-38rm-4m9v.json index 91a2f5e3c10..e45c4a8d0c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cj45-38rm-4m9v/GHSA-cj45-38rm-4m9v.json +++ b/advisories/unreviewed/2022/05/GHSA-cj45-38rm-4m9v/GHSA-cj45-38rm-4m9v.json @@ -7,12 +7,8 @@ "CVE-2005-3452" ], "details": "Unspecified vulnerability in Web Cache in Oracle Application Server 1.0 up to 9.0.4.2 has unknown impact and attack vectors, as identified by Oracle Vuln# AS13.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cm8v-9w86-5ghc/GHSA-cm8v-9w86-5ghc.json b/advisories/unreviewed/2022/05/GHSA-cm8v-9w86-5ghc/GHSA-cm8v-9w86-5ghc.json index b3255bea391..64cf7dc4301 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm8v-9w86-5ghc/GHSA-cm8v-9w86-5ghc.json +++ b/advisories/unreviewed/2022/05/GHSA-cm8v-9w86-5ghc/GHSA-cm8v-9w86-5ghc.json @@ -7,12 +7,8 @@ "CVE-2020-19705" ], "details": "thinkphp-zcms as of 20190715 allows SQL injection via index.php?m=home&c=message&a=add.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmqx-v5fp-4q84/GHSA-cmqx-v5fp-4q84.json b/advisories/unreviewed/2022/05/GHSA-cmqx-v5fp-4q84/GHSA-cmqx-v5fp-4q84.json index ea0bf1f94a0..c2b72cbbe22 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmqx-v5fp-4q84/GHSA-cmqx-v5fp-4q84.json +++ b/advisories/unreviewed/2022/05/GHSA-cmqx-v5fp-4q84/GHSA-cmqx-v5fp-4q84.json @@ -7,12 +7,8 @@ "CVE-2005-3249" ], "details": "Unspecified vulnerability in the WSP dissector in Ethereal 0.10.1 to 0.10.12 allows remote attackers to cause a denial of service or corrupt memory via unknown vectors that cause Ethereal to free an invalid pointer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cp96-2fvh-r4w7/GHSA-cp96-2fvh-r4w7.json b/advisories/unreviewed/2022/05/GHSA-cp96-2fvh-r4w7/GHSA-cp96-2fvh-r4w7.json index a10a24921cb..95696e92ba1 100644 --- a/advisories/unreviewed/2022/05/GHSA-cp96-2fvh-r4w7/GHSA-cp96-2fvh-r4w7.json +++ b/advisories/unreviewed/2022/05/GHSA-cp96-2fvh-r4w7/GHSA-cp96-2fvh-r4w7.json @@ -7,12 +7,8 @@ "CVE-2005-2936" ], "details": "Unquoted Windows search path vulnerability in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, and RealPlayer 8 before 20060322 might allow local users to gain privileges via a malicious C:\\program.exe file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cpc6-5qf8-hhvm/GHSA-cpc6-5qf8-hhvm.json b/advisories/unreviewed/2022/05/GHSA-cpc6-5qf8-hhvm/GHSA-cpc6-5qf8-hhvm.json index 1b1c3b69804..f274f9dc71e 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpc6-5qf8-hhvm/GHSA-cpc6-5qf8-hhvm.json +++ b/advisories/unreviewed/2022/05/GHSA-cpc6-5qf8-hhvm/GHSA-cpc6-5qf8-hhvm.json @@ -7,12 +7,8 @@ "CVE-2005-3332" ], "details": "PHP remote file include vulnerability in admin/define.inc.php in Belchior Foundry vCard 2.9 allows remote attackers to execute arbitrary PHP code via the match parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cpcj-vfc4-275c/GHSA-cpcj-vfc4-275c.json b/advisories/unreviewed/2022/05/GHSA-cpcj-vfc4-275c/GHSA-cpcj-vfc4-275c.json index 440d83bab8b..72a1d168103 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpcj-vfc4-275c/GHSA-cpcj-vfc4-275c.json +++ b/advisories/unreviewed/2022/05/GHSA-cpcj-vfc4-275c/GHSA-cpcj-vfc4-275c.json @@ -7,12 +7,8 @@ "CVE-2021-0418" ], "details": "In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05336706.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cq39-vcf9-rvc3/GHSA-cq39-vcf9-rvc3.json b/advisories/unreviewed/2022/05/GHSA-cq39-vcf9-rvc3/GHSA-cq39-vcf9-rvc3.json index 22e1f3e1069..d62f3777f64 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq39-vcf9-rvc3/GHSA-cq39-vcf9-rvc3.json +++ b/advisories/unreviewed/2022/05/GHSA-cq39-vcf9-rvc3/GHSA-cq39-vcf9-rvc3.json @@ -7,12 +7,8 @@ "CVE-2021-30591" ], "details": "Use after free in File System API in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cq63-8c2h-hr39/GHSA-cq63-8c2h-hr39.json b/advisories/unreviewed/2022/05/GHSA-cq63-8c2h-hr39/GHSA-cq63-8c2h-hr39.json index 23f9498f4ff..a47e7e171a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq63-8c2h-hr39/GHSA-cq63-8c2h-hr39.json +++ b/advisories/unreviewed/2022/05/GHSA-cq63-8c2h-hr39/GHSA-cq63-8c2h-hr39.json @@ -7,12 +7,8 @@ "CVE-2005-3342" ], "details": "noweb 2.10c and earlier allows local users to overwrite arbitrary files via symlink attacks on temporary files in (1) lib/toascii.nw and (2) shell/roff.mm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cr2w-jqc8-qg2m/GHSA-cr2w-jqc8-qg2m.json b/advisories/unreviewed/2022/05/GHSA-cr2w-jqc8-qg2m/GHSA-cr2w-jqc8-qg2m.json index 83116f125ea..f28302444b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr2w-jqc8-qg2m/GHSA-cr2w-jqc8-qg2m.json +++ b/advisories/unreviewed/2022/05/GHSA-cr2w-jqc8-qg2m/GHSA-cr2w-jqc8-qg2m.json @@ -7,12 +7,8 @@ "CVE-2005-3321" ], "details": "chkstat in SuSE Linux 9.0 through 10.0 allows local users to modify permissions of files by creating a hardlink to a file from a world-writable directory, which can cause the link count to drop to 1 when the file is deleted or replaced, which is then modified by chkstat to use weaker permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cr9c-2963-c5q4/GHSA-cr9c-2963-c5q4.json b/advisories/unreviewed/2022/05/GHSA-cr9c-2963-c5q4/GHSA-cr9c-2963-c5q4.json index 4f6b26c8e18..f71534ee379 100644 --- a/advisories/unreviewed/2022/05/GHSA-cr9c-2963-c5q4/GHSA-cr9c-2963-c5q4.json +++ b/advisories/unreviewed/2022/05/GHSA-cr9c-2963-c5q4/GHSA-cr9c-2963-c5q4.json @@ -7,12 +7,8 @@ "CVE-2005-3344" ], "details": "The default installation of Horde 3.0.4 contains an administrative account with a blank password, which allows remote attackers to gain access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvh7-x6f9-3prf/GHSA-cvh7-x6f9-3prf.json b/advisories/unreviewed/2022/05/GHSA-cvh7-x6f9-3prf/GHSA-cvh7-x6f9-3prf.json index 11c9d86cf92..413b28b9042 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvh7-x6f9-3prf/GHSA-cvh7-x6f9-3prf.json +++ b/advisories/unreviewed/2022/05/GHSA-cvh7-x6f9-3prf/GHSA-cvh7-x6f9-3prf.json @@ -7,12 +7,8 @@ "CVE-2005-3252" ], "details": "Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cvmj-92cp-78jp/GHSA-cvmj-92cp-78jp.json b/advisories/unreviewed/2022/05/GHSA-cvmj-92cp-78jp/GHSA-cvmj-92cp-78jp.json index 33150a44641..c345bfa88b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvmj-92cp-78jp/GHSA-cvmj-92cp-78jp.json +++ b/advisories/unreviewed/2022/05/GHSA-cvmj-92cp-78jp/GHSA-cvmj-92cp-78jp.json @@ -7,12 +7,8 @@ "CVE-2021-1586" ], "details": "A vulnerability in the Multi-Pod or Multi-Site network configurations for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an unauthenticated, remote attacker to unexpectedly restart the device, resulting in a denial of service (DoS) condition. This vulnerability exists because TCP traffic sent to a specific port on an affected device is not properly sanitized. An attacker could exploit this vulnerability by sending crafted TCP data to a specific port that is listening on a public-facing IP address for the Multi-Pod or Multi-Site configuration. A successful exploit could allow the attacker to cause the device to restart unexpectedly, resulting in a DoS condition.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cvr7-qvh5-7mf4/GHSA-cvr7-qvh5-7mf4.json b/advisories/unreviewed/2022/05/GHSA-cvr7-qvh5-7mf4/GHSA-cvr7-qvh5-7mf4.json index 231338383aa..dbb53657ae3 100644 --- a/advisories/unreviewed/2022/05/GHSA-cvr7-qvh5-7mf4/GHSA-cvr7-qvh5-7mf4.json +++ b/advisories/unreviewed/2022/05/GHSA-cvr7-qvh5-7mf4/GHSA-cvr7-qvh5-7mf4.json @@ -7,12 +7,8 @@ "CVE-2021-28641" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Use-after-free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cw6v-cw82-9w42/GHSA-cw6v-cw82-9w42.json b/advisories/unreviewed/2022/05/GHSA-cw6v-cw82-9w42/GHSA-cw6v-cw82-9w42.json index edcc1c4a5e4..65cec9ea807 100644 --- a/advisories/unreviewed/2022/05/GHSA-cw6v-cw82-9w42/GHSA-cw6v-cw82-9w42.json +++ b/advisories/unreviewed/2022/05/GHSA-cw6v-cw82-9w42/GHSA-cw6v-cw82-9w42.json @@ -7,12 +7,8 @@ "CVE-2005-3322" ], "details": "Unspecified vulnerability in Squid on SUSE Linux 9.0 allows remote attackers to cause a denial of service (crash) via HTTPs (SSL).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx9h-v29m-9v3m/GHSA-cx9h-v29m-9v3m.json b/advisories/unreviewed/2022/05/GHSA-cx9h-v29m-9v3m/GHSA-cx9h-v29m-9v3m.json index 9b6e822c417..85abd3446c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx9h-v29m-9v3m/GHSA-cx9h-v29m-9v3m.json +++ b/advisories/unreviewed/2022/05/GHSA-cx9h-v29m-9v3m/GHSA-cx9h-v29m-9v3m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f29q-j8gp-v5cf/GHSA-f29q-j8gp-v5cf.json b/advisories/unreviewed/2022/05/GHSA-f29q-j8gp-v5cf/GHSA-f29q-j8gp-v5cf.json index 0e458c850ed..b1c937c7da2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f29q-j8gp-v5cf/GHSA-f29q-j8gp-v5cf.json +++ b/advisories/unreviewed/2022/05/GHSA-f29q-j8gp-v5cf/GHSA-f29q-j8gp-v5cf.json @@ -7,12 +7,8 @@ "CVE-2005-3207" ], "details": "The forms servlet (f90servlet) in Oracle Forms 4.5.10.22 allows remote attackers to cause a denial of service (TNS listener stop) via a userid parameter that contains a STOP command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f2hh-4vrx-q5cr/GHSA-f2hh-4vrx-q5cr.json b/advisories/unreviewed/2022/05/GHSA-f2hh-4vrx-q5cr/GHSA-f2hh-4vrx-q5cr.json index 73137fea266..1b8fd64badd 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2hh-4vrx-q5cr/GHSA-f2hh-4vrx-q5cr.json +++ b/advisories/unreviewed/2022/05/GHSA-f2hh-4vrx-q5cr/GHSA-f2hh-4vrx-q5cr.json @@ -7,12 +7,8 @@ "CVE-2005-3341" ], "details": "DHIS tools DNS package (dhis-tools-dns) before 5.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files created by (1) register-q.sh and (2) register-p.sh.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f2vm-j44x-g834/GHSA-f2vm-j44x-g834.json b/advisories/unreviewed/2022/05/GHSA-f2vm-j44x-g834/GHSA-f2vm-j44x-g834.json index 430ebbb292e..14953282dca 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2vm-j44x-g834/GHSA-f2vm-j44x-g834.json +++ b/advisories/unreviewed/2022/05/GHSA-f2vm-j44x-g834/GHSA-f2vm-j44x-g834.json @@ -7,12 +7,8 @@ "CVE-2005-3367" ], "details": "Cross-site scripting (XSS) vulnerability in journal.php in SparkleBlog 2.1 allows remote attackers to inject arbitrary web script or HTML via the name field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f32p-m7r9-7673/GHSA-f32p-m7r9-7673.json b/advisories/unreviewed/2022/05/GHSA-f32p-m7r9-7673/GHSA-f32p-m7r9-7673.json index 264f3580479..d165419d663 100644 --- a/advisories/unreviewed/2022/05/GHSA-f32p-m7r9-7673/GHSA-f32p-m7r9-7673.json +++ b/advisories/unreviewed/2022/05/GHSA-f32p-m7r9-7673/GHSA-f32p-m7r9-7673.json @@ -7,12 +7,8 @@ "CVE-2005-3217" ], "details": "Multiple interpretation error in unspecified versions of Symantec Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f32v-jjp6-79r8/GHSA-f32v-jjp6-79r8.json b/advisories/unreviewed/2022/05/GHSA-f32v-jjp6-79r8/GHSA-f32v-jjp6-79r8.json index 185874c86f9..df04e80c5e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-f32v-jjp6-79r8/GHSA-f32v-jjp6-79r8.json +++ b/advisories/unreviewed/2022/05/GHSA-f32v-jjp6-79r8/GHSA-f32v-jjp6-79r8.json @@ -7,12 +7,8 @@ "CVE-2021-29862" ], "details": "IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 206086.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f3f3-54vp-g75j/GHSA-f3f3-54vp-g75j.json b/advisories/unreviewed/2022/05/GHSA-f3f3-54vp-g75j/GHSA-f3f3-54vp-g75j.json index 991104e5f77..edd2fc0fd08 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3f3-54vp-g75j/GHSA-f3f3-54vp-g75j.json +++ b/advisories/unreviewed/2022/05/GHSA-f3f3-54vp-g75j/GHSA-f3f3-54vp-g75j.json @@ -7,12 +7,8 @@ "CVE-2021-0574" ], "details": "In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187234876", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3wx-hx63-wcc9/GHSA-f3wx-hx63-wcc9.json b/advisories/unreviewed/2022/05/GHSA-f3wx-hx63-wcc9/GHSA-f3wx-hx63-wcc9.json index 8ce42a07889..5ef70a8aaf2 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3wx-hx63-wcc9/GHSA-f3wx-hx63-wcc9.json +++ b/advisories/unreviewed/2022/05/GHSA-f3wx-hx63-wcc9/GHSA-f3wx-hx63-wcc9.json @@ -7,12 +7,8 @@ "CVE-2005-3284" ], "details": "Multiple buffer overflows in AhnLab V3 AntiVirus V3Pro 2004 before 6.0.0.488, V3Net for Windows Server 6.0 before 6.0.0.488, and MyV3, with compressed file scanning enabled, allow remote attackers to execute arbitrary code via crafted (1) ALZ, (2) UUE, or (3) XXE archives.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f47h-66wf-9744/GHSA-f47h-66wf-9744.json b/advisories/unreviewed/2022/05/GHSA-f47h-66wf-9744/GHSA-f47h-66wf-9744.json index 95af3cdc8fd..c93ca863909 100644 --- a/advisories/unreviewed/2022/05/GHSA-f47h-66wf-9744/GHSA-f47h-66wf-9744.json +++ b/advisories/unreviewed/2022/05/GHSA-f47h-66wf-9744/GHSA-f47h-66wf-9744.json @@ -7,12 +7,8 @@ "CVE-2005-2869" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the Username to libraries/auth/cookie.auth.lib.php or (2) the error parameter to error.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f58x-5qwh-88r6/GHSA-f58x-5qwh-88r6.json b/advisories/unreviewed/2022/05/GHSA-f58x-5qwh-88r6/GHSA-f58x-5qwh-88r6.json index c9654f563eb..23de3df73e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-f58x-5qwh-88r6/GHSA-f58x-5qwh-88r6.json +++ b/advisories/unreviewed/2022/05/GHSA-f58x-5qwh-88r6/GHSA-f58x-5qwh-88r6.json @@ -7,12 +7,8 @@ "CVE-2021-1523" ], "details": "A vulnerability in Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) Mode could allow an unauthenticated, remote attacker to cause a queue wedge on a leaf switch, which could result in critical control plane traffic to the device being dropped. This could result in one or more leaf switches being removed from the fabric. This vulnerability is due to mishandling of ingress TCP traffic to a specific port. An attacker could exploit this vulnerability by sending a stream of TCP packets to a specific port on a Switched Virtual Interface (SVI) configured on the device. A successful exploit could allow the attacker to cause a specific packet queue to queue network buffers but never process them, leading to an eventual queue wedge. This could cause control plane traffic to be dropped, resulting in a denial of service (DoS) condition where the leaf switches are unavailable. Note: This vulnerability requires a manual intervention to power-cycle the device to recover.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5gf-q56v-jm9v/GHSA-f5gf-q56v-jm9v.json b/advisories/unreviewed/2022/05/GHSA-f5gf-q56v-jm9v/GHSA-f5gf-q56v-jm9v.json index a69015f42e5..691b6e0162b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5gf-q56v-jm9v/GHSA-f5gf-q56v-jm9v.json +++ b/advisories/unreviewed/2022/05/GHSA-f5gf-q56v-jm9v/GHSA-f5gf-q56v-jm9v.json @@ -7,12 +7,8 @@ "CVE-2021-0626" ], "details": "In ged, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05687510; Issue ID: ALPS05687510.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f5jm-hr9c-q24w/GHSA-f5jm-hr9c-q24w.json b/advisories/unreviewed/2022/05/GHSA-f5jm-hr9c-q24w/GHSA-f5jm-hr9c-q24w.json index 94e34385f3d..99237313449 100644 --- a/advisories/unreviewed/2022/05/GHSA-f5jm-hr9c-q24w/GHSA-f5jm-hr9c-q24w.json +++ b/advisories/unreviewed/2022/05/GHSA-f5jm-hr9c-q24w/GHSA-f5jm-hr9c-q24w.json @@ -7,12 +7,8 @@ "CVE-2021-20766" ], "details": "Cross-site scripting vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f63g-rv4q-jww3/GHSA-f63g-rv4q-jww3.json b/advisories/unreviewed/2022/05/GHSA-f63g-rv4q-jww3/GHSA-f63g-rv4q-jww3.json index 3d51b533d3f..c918cf5e9db 100644 --- a/advisories/unreviewed/2022/05/GHSA-f63g-rv4q-jww3/GHSA-f63g-rv4q-jww3.json +++ b/advisories/unreviewed/2022/05/GHSA-f63g-rv4q-jww3/GHSA-f63g-rv4q-jww3.json @@ -7,12 +7,8 @@ "CVE-2005-3287" ], "details": "Incomplete blacklist vulnerability in Mailsite Express allows remote attackers to upload and possibly execute files via attachments with executable extensions such as ASPX, which are not converted to .TXT like other dangerous extensions, and which can be directly requested from the cache directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f6g8-3g2c-jqjv/GHSA-f6g8-3g2c-jqjv.json b/advisories/unreviewed/2022/05/GHSA-f6g8-3g2c-jqjv/GHSA-f6g8-3g2c-jqjv.json index 4b27f19930e..038e95ecf23 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6g8-3g2c-jqjv/GHSA-f6g8-3g2c-jqjv.json +++ b/advisories/unreviewed/2022/05/GHSA-f6g8-3g2c-jqjv/GHSA-f6g8-3g2c-jqjv.json @@ -7,12 +7,8 @@ "CVE-2005-3298" ], "details": "Multiple buffer overflows in OpenWBEM on SuSE Linux 9 allow remote attackers to execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f72g-c5hf-789v/GHSA-f72g-c5hf-789v.json b/advisories/unreviewed/2022/05/GHSA-f72g-c5hf-789v/GHSA-f72g-c5hf-789v.json index afab80e7ce3..4aec52bf38b 100644 --- a/advisories/unreviewed/2022/05/GHSA-f72g-c5hf-789v/GHSA-f72g-c5hf-789v.json +++ b/advisories/unreviewed/2022/05/GHSA-f72g-c5hf-789v/GHSA-f72g-c5hf-789v.json @@ -7,12 +7,8 @@ "CVE-2021-21778" ], "details": "A denial of service vulnerability exists in the ASDU message processing functionality of MZ Automation GmbH lib60870.NET 2.2.0. A specially crafted network request can lead to loss of communications. An attacker can send an unauthenticated message to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f7r5-86hh-m6m6/GHSA-f7r5-86hh-m6m6.json b/advisories/unreviewed/2022/05/GHSA-f7r5-86hh-m6m6/GHSA-f7r5-86hh-m6m6.json index 6b5031de090..ba2aa87b2be 100644 --- a/advisories/unreviewed/2022/05/GHSA-f7r5-86hh-m6m6/GHSA-f7r5-86hh-m6m6.json +++ b/advisories/unreviewed/2022/05/GHSA-f7r5-86hh-m6m6/GHSA-f7r5-86hh-m6m6.json @@ -7,12 +7,8 @@ "CVE-2005-3448" ], "details": "Unspecified vulnerability in the OC4J Module in Oracle Application Server 9.0 up to 10.1.2.0.2 has unknown impact and attack vectors, as identified by Oracle Vuln# AS01.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f8fq-6vcv-7jfx/GHSA-f8fq-6vcv-7jfx.json b/advisories/unreviewed/2022/05/GHSA-f8fq-6vcv-7jfx/GHSA-f8fq-6vcv-7jfx.json index 73e8a79e05f..44f39135682 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8fq-6vcv-7jfx/GHSA-f8fq-6vcv-7jfx.json +++ b/advisories/unreviewed/2022/05/GHSA-f8fq-6vcv-7jfx/GHSA-f8fq-6vcv-7jfx.json @@ -7,12 +7,8 @@ "CVE-2005-3004" ], "details": "SQL injection vulnerability in Interakt MX Shop 3.2.0 allows remote attackers to execute arbitrary SQL commands via the (1) idp, (2) id_ctg, or (3) id_prd parameters to the pages module in index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f8v4-f26h-67pp/GHSA-f8v4-f26h-67pp.json b/advisories/unreviewed/2022/05/GHSA-f8v4-f26h-67pp/GHSA-f8v4-f26h-67pp.json index 7ec59f4dc0c..de59da74bd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8v4-f26h-67pp/GHSA-f8v4-f26h-67pp.json +++ b/advisories/unreviewed/2022/05/GHSA-f8v4-f26h-67pp/GHSA-f8v4-f26h-67pp.json @@ -7,12 +7,8 @@ "CVE-2005-3153" ], "details": "login.php in myBloggie 2.1.3 beta and earlier allows remote attackers to bypass a whitelist regular expression and conduct SQL injection attacks via a username parameter with SQL after a null character, which causes the whitelist check to succeed but injects the SQL into a query string, a different vulnerability than CVE-2005-2838. NOTE: it is possible that this is actually a bug in PHP code, in which case this should not be treated as a myBloggie vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f93f-vw5j-6gp4/GHSA-f93f-vw5j-6gp4.json b/advisories/unreviewed/2022/05/GHSA-f93f-vw5j-6gp4/GHSA-f93f-vw5j-6gp4.json index d88115d8b37..898728286d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f93f-vw5j-6gp4/GHSA-f93f-vw5j-6gp4.json +++ b/advisories/unreviewed/2022/05/GHSA-f93f-vw5j-6gp4/GHSA-f93f-vw5j-6gp4.json @@ -7,12 +7,8 @@ "CVE-2005-3260" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in versatileBulletinBoard (vBB) 1.0.0 RC2 allow remote attackers to inject arbitrary web script or HTML via (1) the url parameter in dereferrer.php and (2) the file parameter in imagewin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f94w-7g7j-rhxj/GHSA-f94w-7g7j-rhxj.json b/advisories/unreviewed/2022/05/GHSA-f94w-7g7j-rhxj/GHSA-f94w-7g7j-rhxj.json index cca128cf6d1..04af858bfa7 100644 --- a/advisories/unreviewed/2022/05/GHSA-f94w-7g7j-rhxj/GHSA-f94w-7g7j-rhxj.json +++ b/advisories/unreviewed/2022/05/GHSA-f94w-7g7j-rhxj/GHSA-f94w-7g7j-rhxj.json @@ -7,12 +7,8 @@ "CVE-2005-3194" ], "details": "Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code via a long filename in a compressed (1) ALZ, (2) ARJ, (3) ZIP, (4) UUE, or (5) XXE archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f9gj-6q75-8x26/GHSA-f9gj-6q75-8x26.json b/advisories/unreviewed/2022/05/GHSA-f9gj-6q75-8x26/GHSA-f9gj-6q75-8x26.json index 3da809f077a..53aed4f5f6f 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9gj-6q75-8x26/GHSA-f9gj-6q75-8x26.json +++ b/advisories/unreviewed/2022/05/GHSA-f9gj-6q75-8x26/GHSA-f9gj-6q75-8x26.json @@ -7,12 +7,8 @@ "CVE-2005-3370" ], "details": "Multiple interpretation error in ArcaVir 2005 package 2005-06-21 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fc33-2q9r-qr2m/GHSA-fc33-2q9r-qr2m.json b/advisories/unreviewed/2022/05/GHSA-fc33-2q9r-qr2m/GHSA-fc33-2q9r-qr2m.json index ddd033e4be1..23700e3fe45 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc33-2q9r-qr2m/GHSA-fc33-2q9r-qr2m.json +++ b/advisories/unreviewed/2022/05/GHSA-fc33-2q9r-qr2m/GHSA-fc33-2q9r-qr2m.json @@ -7,12 +7,8 @@ "CVE-2021-22238" ], "details": "An issue has been discovered in GitLab affecting all versions starting with 13.3. GitLab was vulnerable to a stored XSS by using the design feature in issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fcqh-xr5w-6g5j/GHSA-fcqh-xr5w-6g5j.json b/advisories/unreviewed/2022/05/GHSA-fcqh-xr5w-6g5j/GHSA-fcqh-xr5w-6g5j.json index 4afb3bae35c..8af2d81fd12 100644 --- a/advisories/unreviewed/2022/05/GHSA-fcqh-xr5w-6g5j/GHSA-fcqh-xr5w-6g5j.json +++ b/advisories/unreviewed/2022/05/GHSA-fcqh-xr5w-6g5j/GHSA-fcqh-xr5w-6g5j.json @@ -7,12 +7,8 @@ "CVE-2005-2895" ], "details": "setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to obtain sensitive information via a %00 (a null byte) in the u parameter, which reveals the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ffhm-887w-w24q/GHSA-ffhm-887w-w24q.json b/advisories/unreviewed/2022/05/GHSA-ffhm-887w-w24q/GHSA-ffhm-887w-w24q.json index 1f4934e6ef1..fc14ba41eab 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffhm-887w-w24q/GHSA-ffhm-887w-w24q.json +++ b/advisories/unreviewed/2022/05/GHSA-ffhm-887w-w24q/GHSA-ffhm-887w-w24q.json @@ -7,12 +7,8 @@ "CVE-2021-0579" ], "details": "In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187231636", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgc7-wwgh-9cv6/GHSA-fgc7-wwgh-9cv6.json b/advisories/unreviewed/2022/05/GHSA-fgc7-wwgh-9cv6/GHSA-fgc7-wwgh-9cv6.json index 88ba223bd08..ea7a02ff5ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgc7-wwgh-9cv6/GHSA-fgc7-wwgh-9cv6.json +++ b/advisories/unreviewed/2022/05/GHSA-fgc7-wwgh-9cv6/GHSA-fgc7-wwgh-9cv6.json @@ -7,12 +7,8 @@ "CVE-2005-3169" ], "details": "Microsoft Windows 2000 before Update Rollup 1 for SP4, when the \"audit directory service access\" policy is enabled, does not record a 565 event message for File Delete Child operations on an Active Directory object in the security event log, which could allow attackers to conduct unauthorized activities without detection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fgcr-gvff-j4cq/GHSA-fgcr-gvff-j4cq.json b/advisories/unreviewed/2022/05/GHSA-fgcr-gvff-j4cq/GHSA-fgcr-gvff-j4cq.json index a020b046c22..d1be60468bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgcr-gvff-j4cq/GHSA-fgcr-gvff-j4cq.json +++ b/advisories/unreviewed/2022/05/GHSA-fgcr-gvff-j4cq/GHSA-fgcr-gvff-j4cq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgrq-3xv7-3vjp/GHSA-fgrq-3xv7-3vjp.json b/advisories/unreviewed/2022/05/GHSA-fgrq-3xv7-3vjp/GHSA-fgrq-3xv7-3vjp.json index 3ffeabc5854..14387255c87 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgrq-3xv7-3vjp/GHSA-fgrq-3xv7-3vjp.json +++ b/advisories/unreviewed/2022/05/GHSA-fgrq-3xv7-3vjp/GHSA-fgrq-3xv7-3vjp.json @@ -7,12 +7,8 @@ "CVE-2005-3226" ], "details": "Multiple interpretation error in unspecified versions of ArcaVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fh36-32fh-3hhg/GHSA-fh36-32fh-3hhg.json b/advisories/unreviewed/2022/05/GHSA-fh36-32fh-3hhg/GHSA-fh36-32fh-3hhg.json index fee98552627..56b4fd1ebf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-fh36-32fh-3hhg/GHSA-fh36-32fh-3hhg.json +++ b/advisories/unreviewed/2022/05/GHSA-fh36-32fh-3hhg/GHSA-fh36-32fh-3hhg.json @@ -7,12 +7,8 @@ "CVE-2020-18476" ], "details": "SQL Injection vulnerability in Hucart CMS 5.7.4 via the basic information field found in the avatar usd_image field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fhrq-2vr4-f65r/GHSA-fhrq-2vr4-f65r.json b/advisories/unreviewed/2022/05/GHSA-fhrq-2vr4-f65r/GHSA-fhrq-2vr4-f65r.json index c2b229f8485..523a2eb17a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhrq-2vr4-f65r/GHSA-fhrq-2vr4-f65r.json +++ b/advisories/unreviewed/2022/05/GHSA-fhrq-2vr4-f65r/GHSA-fhrq-2vr4-f65r.json @@ -7,12 +7,8 @@ "CVE-2021-22247" ], "details": "Improper authorization in GitLab CE/EE affecting all versions since 13.0 allows guests in private projects to view CI/CD analytics", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fj4q-8g6c-prxj/GHSA-fj4q-8g6c-prxj.json b/advisories/unreviewed/2022/05/GHSA-fj4q-8g6c-prxj/GHSA-fj4q-8g6c-prxj.json index e898f3a4f94..c372caf69f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj4q-8g6c-prxj/GHSA-fj4q-8g6c-prxj.json +++ b/advisories/unreviewed/2022/05/GHSA-fj4q-8g6c-prxj/GHSA-fj4q-8g6c-prxj.json @@ -7,12 +7,8 @@ "CVE-2021-20762" ], "details": "Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated to alter the data of E-mail without the appropriate privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fj58-h7cr-69rm/GHSA-fj58-h7cr-69rm.json b/advisories/unreviewed/2022/05/GHSA-fj58-h7cr-69rm/GHSA-fj58-h7cr-69rm.json index a5e26384c9a..c4bd6ce9c9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj58-h7cr-69rm/GHSA-fj58-h7cr-69rm.json +++ b/advisories/unreviewed/2022/05/GHSA-fj58-h7cr-69rm/GHSA-fj58-h7cr-69rm.json @@ -7,12 +7,8 @@ "CVE-2005-3375" ], "details": "Multiple interpretation error in Ikarus demo version allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fj83-g2vh-2826/GHSA-fj83-g2vh-2826.json b/advisories/unreviewed/2022/05/GHSA-fj83-g2vh-2826/GHSA-fj83-g2vh-2826.json index 1609eef750e..0316618b007 100644 --- a/advisories/unreviewed/2022/05/GHSA-fj83-g2vh-2826/GHSA-fj83-g2vh-2826.json +++ b/advisories/unreviewed/2022/05/GHSA-fj83-g2vh-2826/GHSA-fj83-g2vh-2826.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fm7r-9672-rc6x/GHSA-fm7r-9672-rc6x.json b/advisories/unreviewed/2022/05/GHSA-fm7r-9672-rc6x/GHSA-fm7r-9672-rc6x.json index d220fcfe60c..f88156b92d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-fm7r-9672-rc6x/GHSA-fm7r-9672-rc6x.json +++ b/advisories/unreviewed/2022/05/GHSA-fm7r-9672-rc6x/GHSA-fm7r-9672-rc6x.json @@ -7,12 +7,8 @@ "CVE-2021-39608" ], "details": "Remote Code Execution (RCE) vulnerabilty exists in FlatCore-CMS 2.0.7 via the upload addon plugin, which could let a remote malicious user exeuct arbitrary php code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fmp4-xp37-w9p6/GHSA-fmp4-xp37-w9p6.json b/advisories/unreviewed/2022/05/GHSA-fmp4-xp37-w9p6/GHSA-fmp4-xp37-w9p6.json index b4adf7861d3..d44a48d007e 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmp4-xp37-w9p6/GHSA-fmp4-xp37-w9p6.json +++ b/advisories/unreviewed/2022/05/GHSA-fmp4-xp37-w9p6/GHSA-fmp4-xp37-w9p6.json @@ -7,12 +7,8 @@ "CVE-2021-39302" ], "details": "MISP 2.4.148, in certain configurations, allows SQL injection via the app/Model/Log.php $conditions['org'] value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fmr8-2426-xq92/GHSA-fmr8-2426-xq92.json b/advisories/unreviewed/2022/05/GHSA-fmr8-2426-xq92/GHSA-fmr8-2426-xq92.json index 37dc3a15611..0566c7d134b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fmr8-2426-xq92/GHSA-fmr8-2426-xq92.json +++ b/advisories/unreviewed/2022/05/GHSA-fmr8-2426-xq92/GHSA-fmr8-2426-xq92.json @@ -7,12 +7,8 @@ "CVE-2005-2947" ], "details": "Buffer overflow in KillProcess 2.20 and earlier allows user-assisted attackers to execute arbitrary code via an exe file with a long FileDescription in the version resource.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fp3h-699v-c963/GHSA-fp3h-699v-c963.json b/advisories/unreviewed/2022/05/GHSA-fp3h-699v-c963/GHSA-fp3h-699v-c963.json index 850c8cd9373..4e67a9fd8da 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp3h-699v-c963/GHSA-fp3h-699v-c963.json +++ b/advisories/unreviewed/2022/05/GHSA-fp3h-699v-c963/GHSA-fp3h-699v-c963.json @@ -7,12 +7,8 @@ "CVE-2005-2982" ], "details": "Cross-site scripting (XSS) vulnerability in CompaqHTTPServer 2.1 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly quoted in the resulting 404 error page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fp3p-xjcp-hc73/GHSA-fp3p-xjcp-hc73.json b/advisories/unreviewed/2022/05/GHSA-fp3p-xjcp-hc73/GHSA-fp3p-xjcp-hc73.json index 70df087a669..5e9b5d70632 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp3p-xjcp-hc73/GHSA-fp3p-xjcp-hc73.json +++ b/advisories/unreviewed/2022/05/GHSA-fp3p-xjcp-hc73/GHSA-fp3p-xjcp-hc73.json @@ -7,12 +7,8 @@ "CVE-2005-3338" ], "details": "Unspecified vulnerability in Mantis before 0.19.3, when using reminders, causes Mantis to display the real email addresses of users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fp57-mj5p-6j64/GHSA-fp57-mj5p-6j64.json b/advisories/unreviewed/2022/05/GHSA-fp57-mj5p-6j64/GHSA-fp57-mj5p-6j64.json index da7a16310c7..22c6c616e79 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp57-mj5p-6j64/GHSA-fp57-mj5p-6j64.json +++ b/advisories/unreviewed/2022/05/GHSA-fp57-mj5p-6j64/GHSA-fp57-mj5p-6j64.json @@ -7,12 +7,8 @@ "CVE-2005-3074" ], "details": "SQL injection vulnerability in rsyslogd in RSyslog before 1.0.1 and before 1.10.1 allows remote attackers to execute arbitrary SQL commands via crafted syslog messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fpp2-mvm7-cp63/GHSA-fpp2-mvm7-cp63.json b/advisories/unreviewed/2022/05/GHSA-fpp2-mvm7-cp63/GHSA-fpp2-mvm7-cp63.json index 5b1aafe8663..c1e87c0094f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpp2-mvm7-cp63/GHSA-fpp2-mvm7-cp63.json +++ b/advisories/unreviewed/2022/05/GHSA-fpp2-mvm7-cp63/GHSA-fpp2-mvm7-cp63.json @@ -7,12 +7,8 @@ "CVE-2005-3245" ], "details": "Unspecified vulnerability in the ONC RPC dissector in Ethereal 0.10.3 to 0.10.12, when the \"Dissect unknown RPC program numbers\" option is enabled, allows remote attackers to cause a denial of service (memory consumption).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fpv8-6f33-vx39/GHSA-fpv8-6f33-vx39.json b/advisories/unreviewed/2022/05/GHSA-fpv8-6f33-vx39/GHSA-fpv8-6f33-vx39.json index 07d094f3971..ebd22082b12 100644 --- a/advisories/unreviewed/2022/05/GHSA-fpv8-6f33-vx39/GHSA-fpv8-6f33-vx39.json +++ b/advisories/unreviewed/2022/05/GHSA-fpv8-6f33-vx39/GHSA-fpv8-6f33-vx39.json @@ -7,12 +7,8 @@ "CVE-2005-2980" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in phpoutsourcing Noah's classifieds 1.3 allows remote attackers to inject arbitrary web script or HTML via the rollid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fq6w-7gv6-46p6/GHSA-fq6w-7gv6-46p6.json b/advisories/unreviewed/2022/05/GHSA-fq6w-7gv6-46p6/GHSA-fq6w-7gv6-46p6.json index 29d910a1870..8f22dd89dcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-fq6w-7gv6-46p6/GHSA-fq6w-7gv6-46p6.json +++ b/advisories/unreviewed/2022/05/GHSA-fq6w-7gv6-46p6/GHSA-fq6w-7gv6-46p6.json @@ -7,12 +7,8 @@ "CVE-2005-2858" ], "details": "The Fetch.FetchContact.1 ActiveX control (Fetch.dll) for Rediff Bol 7.0 allows remote attackers to read the Windows Address Book via the FullAddressBook method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fqqf-x789-rf7j/GHSA-fqqf-x789-rf7j.json b/advisories/unreviewed/2022/05/GHSA-fqqf-x789-rf7j/GHSA-fqqf-x789-rf7j.json index 7954956be40..54b482976f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqqf-x789-rf7j/GHSA-fqqf-x789-rf7j.json +++ b/advisories/unreviewed/2022/05/GHSA-fqqf-x789-rf7j/GHSA-fqqf-x789-rf7j.json @@ -7,12 +7,8 @@ "CVE-2005-3129" ], "details": "Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged in user via a link or IMG tag to serendipity_admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fv8h-xv4v-pjw3/GHSA-fv8h-xv4v-pjw3.json b/advisories/unreviewed/2022/05/GHSA-fv8h-xv4v-pjw3/GHSA-fv8h-xv4v-pjw3.json index 7ab0095ce33..399899783f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-fv8h-xv4v-pjw3/GHSA-fv8h-xv4v-pjw3.json +++ b/advisories/unreviewed/2022/05/GHSA-fv8h-xv4v-pjw3/GHSA-fv8h-xv4v-pjw3.json @@ -7,12 +7,8 @@ "CVE-2005-3133" ], "details": "Multiple directory traversal vulnerabilities in MERAK Mail Server 8.2.4r with Icewarp Web Mail 5.5.1, and possibly earlier versions, allows remote attackers to (1) delete arbitrary files or directories via a relative path to the id parameter to logout.html or (2) include arbitrary PHP files or other files via the helpid parameter to help.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fvxj-gh8q-cx84/GHSA-fvxj-gh8q-cx84.json b/advisories/unreviewed/2022/05/GHSA-fvxj-gh8q-cx84/GHSA-fvxj-gh8q-cx84.json index 6524ea8b3d5..d5b3b1988c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvxj-gh8q-cx84/GHSA-fvxj-gh8q-cx84.json +++ b/advisories/unreviewed/2022/05/GHSA-fvxj-gh8q-cx84/GHSA-fvxj-gh8q-cx84.json @@ -7,12 +7,8 @@ "CVE-2005-3336" ], "details": "SQL injection vulnerability in Mantis 1.0.0RC2 and 0.19.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fx93-fff9-chjp/GHSA-fx93-fff9-chjp.json b/advisories/unreviewed/2022/05/GHSA-fx93-fff9-chjp/GHSA-fx93-fff9-chjp.json index de5e775931b..2edd8c014ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-fx93-fff9-chjp/GHSA-fx93-fff9-chjp.json +++ b/advisories/unreviewed/2022/05/GHSA-fx93-fff9-chjp/GHSA-fx93-fff9-chjp.json @@ -7,12 +7,8 @@ "CVE-2021-27999" ], "details": "A SQL injection vulnerability was discovered in the editid parameter in Local Services Search Engine Management System Project 1.0. This vulnerability gives admin users the ability to dump all data from the database.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g286-4pqc-c6jr/GHSA-g286-4pqc-c6jr.json b/advisories/unreviewed/2022/05/GHSA-g286-4pqc-c6jr/GHSA-g286-4pqc-c6jr.json index e354f11b42e..89f20b9f4ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-g286-4pqc-c6jr/GHSA-g286-4pqc-c6jr.json +++ b/advisories/unreviewed/2022/05/GHSA-g286-4pqc-c6jr/GHSA-g286-4pqc-c6jr.json @@ -7,12 +7,8 @@ "CVE-2005-2912" ], "details": "Linksys WRT54G router allows remote attackers to cause a denial of service (CPU consumption and server hang) via an HTTP POST request with a negative Content-Length value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g2wr-78c7-xc4v/GHSA-g2wr-78c7-xc4v.json b/advisories/unreviewed/2022/05/GHSA-g2wr-78c7-xc4v/GHSA-g2wr-78c7-xc4v.json index fdf3899a9ab..b1274bf1004 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2wr-78c7-xc4v/GHSA-g2wr-78c7-xc4v.json +++ b/advisories/unreviewed/2022/05/GHSA-g2wr-78c7-xc4v/GHSA-g2wr-78c7-xc4v.json @@ -7,12 +7,8 @@ "CVE-2021-1590" ], "details": "A vulnerability in the implementation of the system login block-for command for Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a login process to unexpectedly restart, causing a denial of service (DoS) condition. This vulnerability is due to a logic error in the implementation of the system login block-for command when an attack is detected and acted upon. An attacker could exploit this vulnerability by performing a brute-force login attack on an affected device. A successful exploit could allow the attacker to cause a login process to reload, which could result in a delay during authentication to the affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g3r7-6q5w-hfwj/GHSA-g3r7-6q5w-hfwj.json b/advisories/unreviewed/2022/05/GHSA-g3r7-6q5w-hfwj/GHSA-g3r7-6q5w-hfwj.json index d6521a5e695..63bad9e96e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3r7-6q5w-hfwj/GHSA-g3r7-6q5w-hfwj.json +++ b/advisories/unreviewed/2022/05/GHSA-g3r7-6q5w-hfwj/GHSA-g3r7-6q5w-hfwj.json @@ -7,12 +7,8 @@ "CVE-2005-3132" ], "details": "MERAK Mail Server 8.2.4r with Icewarp Web Mail 5.5.1, and possibly earlier versions, allows remote attackers to obtain sensitive information via a direct request to bwlist_inc.html, which reveals the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4fj-xm76-cfp9/GHSA-g4fj-xm76-cfp9.json b/advisories/unreviewed/2022/05/GHSA-g4fj-xm76-cfp9/GHSA-g4fj-xm76-cfp9.json index 48442036bce..07821e811a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4fj-xm76-cfp9/GHSA-g4fj-xm76-cfp9.json +++ b/advisories/unreviewed/2022/05/GHSA-g4fj-xm76-cfp9/GHSA-g4fj-xm76-cfp9.json @@ -7,12 +7,8 @@ "CVE-2005-3396" ], "details": "Buffer overflow in the chcons (chcon) command in IBM AIX 5.2 and 5.3, when DEBUG MALLOC is enabled, might allow attackers to execute arbitrary code via a long command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4px-p74v-q4c7/GHSA-g4px-p74v-q4c7.json b/advisories/unreviewed/2022/05/GHSA-g4px-p74v-q4c7/GHSA-g4px-p74v-q4c7.json index 5e9c424939f..ec9ae187aa6 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4px-p74v-q4c7/GHSA-g4px-p74v-q4c7.json +++ b/advisories/unreviewed/2022/05/GHSA-g4px-p74v-q4c7/GHSA-g4px-p74v-q4c7.json @@ -7,12 +7,8 @@ "CVE-2021-22254" ], "details": "Under very specific conditions a user could be impersonated using Gitlab shell. This vulnerability affects GitLab CE/EE 13.1 and later through 14.1.2, 14.0.7 and 13.12.9.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g4xj-7rjq-34rj/GHSA-g4xj-7rjq-34rj.json b/advisories/unreviewed/2022/05/GHSA-g4xj-7rjq-34rj/GHSA-g4xj-7rjq-34rj.json index c7abc60f167..c8cac493dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4xj-7rjq-34rj/GHSA-g4xj-7rjq-34rj.json +++ b/advisories/unreviewed/2022/05/GHSA-g4xj-7rjq-34rj/GHSA-g4xj-7rjq-34rj.json @@ -7,12 +7,8 @@ "CVE-2005-2984" ], "details": "Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g536-3jmm-mp33/GHSA-g536-3jmm-mp33.json b/advisories/unreviewed/2022/05/GHSA-g536-3jmm-mp33/GHSA-g536-3jmm-mp33.json index bab2e949a8f..b4bb4afa158 100644 --- a/advisories/unreviewed/2022/05/GHSA-g536-3jmm-mp33/GHSA-g536-3jmm-mp33.json +++ b/advisories/unreviewed/2022/05/GHSA-g536-3jmm-mp33/GHSA-g536-3jmm-mp33.json @@ -7,12 +7,8 @@ "CVE-2021-1592" ], "details": "A vulnerability in the way Cisco UCS Manager software handles SSH sessions could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper resource management for established SSH sessions. An attacker could exploit this vulnerability by opening a significant number of SSH sessions on an affected device. A successful exploit could allow the attacker to cause a crash and restart of internal Cisco UCS Manager software processes and a temporary loss of access to the Cisco UCS Manager CLI and web UI. Note: The attacker must have valid user credentials to authenticate to the affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5f6-mfmg-v8r6/GHSA-g5f6-mfmg-v8r6.json b/advisories/unreviewed/2022/05/GHSA-g5f6-mfmg-v8r6/GHSA-g5f6-mfmg-v8r6.json index 827b0ac6178..1dfb945a72a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5f6-mfmg-v8r6/GHSA-g5f6-mfmg-v8r6.json +++ b/advisories/unreviewed/2022/05/GHSA-g5f6-mfmg-v8r6/GHSA-g5f6-mfmg-v8r6.json @@ -7,12 +7,8 @@ "CVE-2005-3112" ], "details": "The \"reset password\" feature in Macromedia Breeze 5.0 stores passwords in plaintext in the database instead of the hash, which allows attackers with access to the database to obtain the passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g6cr-75pq-47x7/GHSA-g6cr-75pq-47x7.json b/advisories/unreviewed/2022/05/GHSA-g6cr-75pq-47x7/GHSA-g6cr-75pq-47x7.json index f14732dbb04..27873b68f78 100644 --- a/advisories/unreviewed/2022/05/GHSA-g6cr-75pq-47x7/GHSA-g6cr-75pq-47x7.json +++ b/advisories/unreviewed/2022/05/GHSA-g6cr-75pq-47x7/GHSA-g6cr-75pq-47x7.json @@ -7,12 +7,8 @@ "CVE-2021-21595" ], "details": "Dell EMC PowerScale OneFS versions 8.2.x - 9.1.1.x contain an improper neutralization of special elements used in an OS command. This vulnerability could allow the compadmin user to elevate privileges. This only impacts Smartlock WORM compliance mode clusters as a critical vulnerability and Dell recommends to update/upgrade at the earliest opportunity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g727-r42p-657v/GHSA-g727-r42p-657v.json b/advisories/unreviewed/2022/05/GHSA-g727-r42p-657v/GHSA-g727-r42p-657v.json index 4c368de37dd..84d6bc76413 100644 --- a/advisories/unreviewed/2022/05/GHSA-g727-r42p-657v/GHSA-g727-r42p-657v.json +++ b/advisories/unreviewed/2022/05/GHSA-g727-r42p-657v/GHSA-g727-r42p-657v.json @@ -7,12 +7,8 @@ "CVE-2005-3221" ], "details": "Multiple interpretation error in unspecified versions of Fortinet Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g826-6j4x-jwr3/GHSA-g826-6j4x-jwr3.json b/advisories/unreviewed/2022/05/GHSA-g826-6j4x-jwr3/GHSA-g826-6j4x-jwr3.json index 28b99b16841..7aba2ba25dc 100644 --- a/advisories/unreviewed/2022/05/GHSA-g826-6j4x-jwr3/GHSA-g826-6j4x-jwr3.json +++ b/advisories/unreviewed/2022/05/GHSA-g826-6j4x-jwr3/GHSA-g826-6j4x-jwr3.json @@ -7,12 +7,8 @@ "CVE-2005-3247" ], "details": "The SigComp UDVM in Ethereal 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g845-m523-3rph/GHSA-g845-m523-3rph.json b/advisories/unreviewed/2022/05/GHSA-g845-m523-3rph/GHSA-g845-m523-3rph.json index af4df5dda2a..c9ed8822d84 100644 --- a/advisories/unreviewed/2022/05/GHSA-g845-m523-3rph/GHSA-g845-m523-3rph.json +++ b/advisories/unreviewed/2022/05/GHSA-g845-m523-3rph/GHSA-g845-m523-3rph.json @@ -7,12 +7,8 @@ "CVE-2005-2983" ], "details": "SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary SQL commands via the values in the parameter form that appears when the paramform parameter is set to yes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g867-cwq9-53xf/GHSA-g867-cwq9-53xf.json b/advisories/unreviewed/2022/05/GHSA-g867-cwq9-53xf/GHSA-g867-cwq9-53xf.json index 74019631f16..1ffe16d57ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-g867-cwq9-53xf/GHSA-g867-cwq9-53xf.json +++ b/advisories/unreviewed/2022/05/GHSA-g867-cwq9-53xf/GHSA-g867-cwq9-53xf.json @@ -7,12 +7,8 @@ "CVE-2005-3035" ], "details": "Compuware DriverStudio Remote Control service (DSRsvc.exe) 2.7 and 3.0 beta 2 allows remote attackers to cause a denial of service (reboot) via a UDP packet sent directly to port 9110.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8c8-8m7v-7v94/GHSA-g8c8-8m7v-7v94.json b/advisories/unreviewed/2022/05/GHSA-g8c8-8m7v-7v94/GHSA-g8c8-8m7v-7v94.json index 21740672ac9..a85cec9ffc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8c8-8m7v-7v94/GHSA-g8c8-8m7v-7v94.json +++ b/advisories/unreviewed/2022/05/GHSA-g8c8-8m7v-7v94/GHSA-g8c8-8m7v-7v94.json @@ -7,12 +7,8 @@ "CVE-2005-3366" ], "details": "PHP file inclusion vulnerability in index.php in PHP iCalendar 2.0a2 through 2.0.1 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the phpicalendar cookie. NOTE: this is not a cross-site scripting (XSS) issue as claimed by the original researcher.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g9xr-g64h-jcj5/GHSA-g9xr-g64h-jcj5.json b/advisories/unreviewed/2022/05/GHSA-g9xr-g64h-jcj5/GHSA-g9xr-g64h-jcj5.json index 093b063374d..9ef8679edf5 100644 --- a/advisories/unreviewed/2022/05/GHSA-g9xr-g64h-jcj5/GHSA-g9xr-g64h-jcj5.json +++ b/advisories/unreviewed/2022/05/GHSA-g9xr-g64h-jcj5/GHSA-g9xr-g64h-jcj5.json @@ -7,12 +7,8 @@ "CVE-2005-3102" ], "details": "The administrative interface in Movable Type allows attackers to upload files with arbitrary extensions under the web root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gc8p-79hx-4cwf/GHSA-gc8p-79hx-4cwf.json b/advisories/unreviewed/2022/05/GHSA-gc8p-79hx-4cwf/GHSA-gc8p-79hx-4cwf.json index 55c6df3fc12..db2fba8e5cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-gc8p-79hx-4cwf/GHSA-gc8p-79hx-4cwf.json +++ b/advisories/unreviewed/2022/05/GHSA-gc8p-79hx-4cwf/GHSA-gc8p-79hx-4cwf.json @@ -7,12 +7,8 @@ "CVE-2021-30597" ], "details": "Use after free in Browser UI in Google Chrome on Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via physical access to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gcj6-2qxj-538j/GHSA-gcj6-2qxj-538j.json b/advisories/unreviewed/2022/05/GHSA-gcj6-2qxj-538j/GHSA-gcj6-2qxj-538j.json index 505a6294915..43d0eba57f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-gcj6-2qxj-538j/GHSA-gcj6-2qxj-538j.json +++ b/advisories/unreviewed/2022/05/GHSA-gcj6-2qxj-538j/GHSA-gcj6-2qxj-538j.json @@ -7,12 +7,8 @@ "CVE-2005-3259" ], "details": "Multiple SQL injection vulnerabilities in versatileBulletinBoard (vBB) 1.0.0 RC2 allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) login field, (2) \"search this thread\" feature, (3) \"search for posts\" feature, (4) \"forgot password\" feature, (5) list parameter in userlistpre.php, and the (6) select, (7) categ, and (8) to parameters in index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gf72-98fx-66p4/GHSA-gf72-98fx-66p4.json b/advisories/unreviewed/2022/05/GHSA-gf72-98fx-66p4/GHSA-gf72-98fx-66p4.json index f9e8cd4e50e..d5d607d74e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-gf72-98fx-66p4/GHSA-gf72-98fx-66p4.json +++ b/advisories/unreviewed/2022/05/GHSA-gf72-98fx-66p4/GHSA-gf72-98fx-66p4.json @@ -7,12 +7,8 @@ "CVE-2005-3254" ], "details": "The CGIwrap program before 3.9 on Debian GNU/Linux uses an incorrect minimum value of 100 for a UID to determine whether it can perform a seteuid operation, which could allow attackers to execute code as other system UIDs that are greater than the minimum value, which should be 1000 on Debian systems.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gg55-qc78-2v7c/GHSA-gg55-qc78-2v7c.json b/advisories/unreviewed/2022/05/GHSA-gg55-qc78-2v7c/GHSA-gg55-qc78-2v7c.json index c3bc8c258d3..c6026505297 100644 --- a/advisories/unreviewed/2022/05/GHSA-gg55-qc78-2v7c/GHSA-gg55-qc78-2v7c.json +++ b/advisories/unreviewed/2022/05/GHSA-gg55-qc78-2v7c/GHSA-gg55-qc78-2v7c.json @@ -7,12 +7,8 @@ "CVE-2005-2914" ], "details": "ezconfig.asp in Linksys WRT54G router 3.01.03, 3.03.6, non-default configurations of 2.04.4, and possibly other versions, does not use an authentication initialization function, which allows remote attackers to obtain encrypted configuration information and, if the key is known, modify the configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gjcx-h4r7-9cxf/GHSA-gjcx-h4r7-9cxf.json b/advisories/unreviewed/2022/05/GHSA-gjcx-h4r7-9cxf/GHSA-gjcx-h4r7-9cxf.json index f5e2a831ba0..79317a13ef7 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjcx-h4r7-9cxf/GHSA-gjcx-h4r7-9cxf.json +++ b/advisories/unreviewed/2022/05/GHSA-gjcx-h4r7-9cxf/GHSA-gjcx-h4r7-9cxf.json @@ -7,12 +7,8 @@ "CVE-2005-2944" ], "details": "The perform_file_save function in GNOME Workstation Command Center (gwcc) 0.9.6 and earlier allows local users to create and overwrite arbitrary files via a symlink attack on the gwcc_out.txt temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gjgx-pwcf-xm7m/GHSA-gjgx-pwcf-xm7m.json b/advisories/unreviewed/2022/05/GHSA-gjgx-pwcf-xm7m/GHSA-gjgx-pwcf-xm7m.json index b9e654bd7c7..786cbdc9241 100644 --- a/advisories/unreviewed/2022/05/GHSA-gjgx-pwcf-xm7m/GHSA-gjgx-pwcf-xm7m.json +++ b/advisories/unreviewed/2022/05/GHSA-gjgx-pwcf-xm7m/GHSA-gjgx-pwcf-xm7m.json @@ -7,12 +7,8 @@ "CVE-2005-3382" ], "details": "Multiple interpretation error in Sophos 3.91 with the 2.28.4 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gm74-c2f7-gq8m/GHSA-gm74-c2f7-gq8m.json b/advisories/unreviewed/2022/05/GHSA-gm74-c2f7-gq8m/GHSA-gm74-c2f7-gq8m.json index 90edf48a620..58ac4333e22 100644 --- a/advisories/unreviewed/2022/05/GHSA-gm74-c2f7-gq8m/GHSA-gm74-c2f7-gq8m.json +++ b/advisories/unreviewed/2022/05/GHSA-gm74-c2f7-gq8m/GHSA-gm74-c2f7-gq8m.json @@ -7,12 +7,8 @@ "CVE-2005-3071" ], "details": "Unspecified vulnerability in Unix File System (UFS) on Solaris 8 and 9, when logging is enabled, allows local users to cause a denial of service (\"soft hang\") via certain write operations to UFS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmpx-6g79-f8x6/GHSA-gmpx-6g79-f8x6.json b/advisories/unreviewed/2022/05/GHSA-gmpx-6g79-f8x6/GHSA-gmpx-6g79-f8x6.json index 0edb4bb9f21..8da083f209e 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmpx-6g79-f8x6/GHSA-gmpx-6g79-f8x6.json +++ b/advisories/unreviewed/2022/05/GHSA-gmpx-6g79-f8x6/GHSA-gmpx-6g79-f8x6.json @@ -7,12 +7,8 @@ "CVE-2005-3059" ], "details": "Multiple unspecified vulnerabilities in Opera 8.50 on Linux and Windows have unknown impact and attack vectors, related to (1) \" handling of must-revalidate cache directive for HTTPS pages\" or (2) a \"display issue with cookie comment encoding.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gmv6-rwfw-xmv3/GHSA-gmv6-rwfw-xmv3.json b/advisories/unreviewed/2022/05/GHSA-gmv6-rwfw-xmv3/GHSA-gmv6-rwfw-xmv3.json index ce102ab39ea..1bcc2689e2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gmv6-rwfw-xmv3/GHSA-gmv6-rwfw-xmv3.json +++ b/advisories/unreviewed/2022/05/GHSA-gmv6-rwfw-xmv3/GHSA-gmv6-rwfw-xmv3.json @@ -7,12 +7,8 @@ "CVE-2005-2816" ], "details": "Cross-site scripting (XSS) vulnerability in Greymatter allows remote attackers to inject arbitrary web script or HTML via a post comment, which is recorded in a log file but not properly handled when the administrator uses \"View Control Panel Log\" to read the log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gp5h-cmjc-5gj4/GHSA-gp5h-cmjc-5gj4.json b/advisories/unreviewed/2022/05/GHSA-gp5h-cmjc-5gj4/GHSA-gp5h-cmjc-5gj4.json index e39cd55d27e..ee6cc009c31 100644 --- a/advisories/unreviewed/2022/05/GHSA-gp5h-cmjc-5gj4/GHSA-gp5h-cmjc-5gj4.json +++ b/advisories/unreviewed/2022/05/GHSA-gp5h-cmjc-5gj4/GHSA-gp5h-cmjc-5gj4.json @@ -7,12 +7,8 @@ "CVE-2005-3172" ], "details": "The WideCharToMultiByte function in Microsoft Windows 2000 before Update Rollup 1 for SP4 does not properly convert strings with Japanese composite characters in the last character, which could prevent the string from being null terminated and lead to data corruption or enable buffer overflow attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqh2-5g96-mr4j/GHSA-gqh2-5g96-mr4j.json b/advisories/unreviewed/2022/05/GHSA-gqh2-5g96-mr4j/GHSA-gqh2-5g96-mr4j.json index e763381856e..ab36b019ec7 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqh2-5g96-mr4j/GHSA-gqh2-5g96-mr4j.json +++ b/advisories/unreviewed/2022/05/GHSA-gqh2-5g96-mr4j/GHSA-gqh2-5g96-mr4j.json @@ -7,12 +7,8 @@ "CVE-2005-2920" ], "details": "Buffer overflow in libclamav/upx.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to execute arbitrary code via a crafted UPX packed executable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqmj-9q6x-4fvg/GHSA-gqmj-9q6x-4fvg.json b/advisories/unreviewed/2022/05/GHSA-gqmj-9q6x-4fvg/GHSA-gqmj-9q6x-4fvg.json index 5429c3eef96..2250bb3b7e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqmj-9q6x-4fvg/GHSA-gqmj-9q6x-4fvg.json +++ b/advisories/unreviewed/2022/05/GHSA-gqmj-9q6x-4fvg/GHSA-gqmj-9q6x-4fvg.json @@ -7,12 +7,8 @@ "CVE-2005-3060" ], "details": "Buffer overflow in getconf in IBM AIX 5.2 to 5.3 allows local users to execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gqwc-r34r-fh6w/GHSA-gqwc-r34r-fh6w.json b/advisories/unreviewed/2022/05/GHSA-gqwc-r34r-fh6w/GHSA-gqwc-r34r-fh6w.json index de54bd97034..c4c16b78105 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqwc-r34r-fh6w/GHSA-gqwc-r34r-fh6w.json +++ b/advisories/unreviewed/2022/05/GHSA-gqwc-r34r-fh6w/GHSA-gqwc-r34r-fh6w.json @@ -7,12 +7,8 @@ "CVE-2021-36011" ], "details": "Adobe Illustrator version 25.2.3 (and earlier) is affected by a potential Command injection vulnerability when chained with a development and debugging tool for JavaScript scripts. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gr3q-wjwp-679q/GHSA-gr3q-wjwp-679q.json b/advisories/unreviewed/2022/05/GHSA-gr3q-wjwp-679q/GHSA-gr3q-wjwp-679q.json index bc08a5c6b9d..86e58014c72 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr3q-wjwp-679q/GHSA-gr3q-wjwp-679q.json +++ b/advisories/unreviewed/2022/05/GHSA-gr3q-wjwp-679q/GHSA-gr3q-wjwp-679q.json @@ -7,12 +7,8 @@ "CVE-2005-3294" ], "details": "Typsoft FTP Server 1.11, with \"Sub Directory Include\" enabled, allows remote attackers to cause a denial of service (crash) by sending multiple RETR commands. NOTE: it was later reported that 1.10 is also affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gr5f-8229-9p9f/GHSA-gr5f-8229-9p9f.json b/advisories/unreviewed/2022/05/GHSA-gr5f-8229-9p9f/GHSA-gr5f-8229-9p9f.json index 3f7891acac5..72aadad63ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr5f-8229-9p9f/GHSA-gr5f-8229-9p9f.json +++ b/advisories/unreviewed/2022/05/GHSA-gr5f-8229-9p9f/GHSA-gr5f-8229-9p9f.json @@ -7,12 +7,8 @@ "CVE-2021-29727" ], "details": "IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 201106.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gr73-xmrv-34fc/GHSA-gr73-xmrv-34fc.json b/advisories/unreviewed/2022/05/GHSA-gr73-xmrv-34fc/GHSA-gr73-xmrv-34fc.json index e5534879f36..3cea1d85663 100644 --- a/advisories/unreviewed/2022/05/GHSA-gr73-xmrv-34fc/GHSA-gr73-xmrv-34fc.json +++ b/advisories/unreviewed/2022/05/GHSA-gr73-xmrv-34fc/GHSA-gr73-xmrv-34fc.json @@ -7,12 +7,8 @@ "CVE-2021-24038" ], "details": "Due to a bug with management of handles in OVRServiceLauncher.exe, an attacker could expose a privileged process handle to an unprivileged process, leading to local privilege escalation. This issue affects Oculus Desktop versions after 1.39 and prior to 31.1.0.67.507.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gv68-f32v-3whx/GHSA-gv68-f32v-3whx.json b/advisories/unreviewed/2022/05/GHSA-gv68-f32v-3whx/GHSA-gv68-f32v-3whx.json index 905f4af7ec4..18d7614e5ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv68-f32v-3whx/GHSA-gv68-f32v-3whx.json +++ b/advisories/unreviewed/2022/05/GHSA-gv68-f32v-3whx/GHSA-gv68-f32v-3whx.json @@ -7,12 +7,8 @@ "CVE-2005-2923" ], "details": "The IMAP server in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows remote attackers to cause a denial of service (crash) via a long argument to the LIST command, which causes IMail Server to reference invalid memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gw5r-9g34-hfm9/GHSA-gw5r-9g34-hfm9.json b/advisories/unreviewed/2022/05/GHSA-gw5r-9g34-hfm9/GHSA-gw5r-9g34-hfm9.json index 83741f1f60c..6e783c332a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw5r-9g34-hfm9/GHSA-gw5r-9g34-hfm9.json +++ b/advisories/unreviewed/2022/05/GHSA-gw5r-9g34-hfm9/GHSA-gw5r-9g34-hfm9.json @@ -7,12 +7,8 @@ "CVE-2021-36005" ], "details": "Adobe Photoshop versions 21.2.9 (and earlier) and 22.4.2 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted PSD file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted PSD file in Photoshop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwgr-jhxj-6vjp/GHSA-gwgr-jhxj-6vjp.json b/advisories/unreviewed/2022/05/GHSA-gwgr-jhxj-6vjp/GHSA-gwgr-jhxj-6vjp.json index 0e0294e7656..5917839db77 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwgr-jhxj-6vjp/GHSA-gwgr-jhxj-6vjp.json +++ b/advisories/unreviewed/2022/05/GHSA-gwgr-jhxj-6vjp/GHSA-gwgr-jhxj-6vjp.json @@ -7,12 +7,8 @@ "CVE-2005-2877" ], "details": "The history (revision control) function in TWiki 02-Sep-2004 and earlier allows remote attackers to execute arbitrary code via shell metacharacters, as demonstrated via the rev parameter to TWikiUsers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gxxf-959m-c3mf/GHSA-gxxf-959m-c3mf.json b/advisories/unreviewed/2022/05/GHSA-gxxf-959m-c3mf/GHSA-gxxf-959m-c3mf.json index 7790e80aba2..f591ffeec1a 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxxf-959m-c3mf/GHSA-gxxf-959m-c3mf.json +++ b/advisories/unreviewed/2022/05/GHSA-gxxf-959m-c3mf/GHSA-gxxf-959m-c3mf.json @@ -7,12 +7,8 @@ "CVE-2021-35985" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by a Null pointer dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h26r-h9wp-xxc4/GHSA-h26r-h9wp-xxc4.json b/advisories/unreviewed/2022/05/GHSA-h26r-h9wp-xxc4/GHSA-h26r-h9wp-xxc4.json index 83e229e193d..75d5c64a5f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-h26r-h9wp-xxc4/GHSA-h26r-h9wp-xxc4.json +++ b/advisories/unreviewed/2022/05/GHSA-h26r-h9wp-xxc4/GHSA-h26r-h9wp-xxc4.json @@ -7,12 +7,8 @@ "CVE-2005-3087" ], "details": "The SecureW2 3.0 TLS implementation uses weak random number generators (rand and srand from system time) during generation of the pre-master secret (PMS), which makes it easier for attackers to guess the secret and decrypt sensitive data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h2jg-46xv-c74w/GHSA-h2jg-46xv-c74w.json b/advisories/unreviewed/2022/05/GHSA-h2jg-46xv-c74w/GHSA-h2jg-46xv-c74w.json index d9b1364e983..a952dd276c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2jg-46xv-c74w/GHSA-h2jg-46xv-c74w.json +++ b/advisories/unreviewed/2022/05/GHSA-h2jg-46xv-c74w/GHSA-h2jg-46xv-c74w.json @@ -7,12 +7,8 @@ "CVE-2021-22255" ], "details": "SSRF in URL file upload in Baserow <1.1.0 allows remote authenticated users to retrieve files from the internal server network exposed over HTTP by inserting an internal address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h2xq-vr96-r9x8/GHSA-h2xq-vr96-r9x8.json b/advisories/unreviewed/2022/05/GHSA-h2xq-vr96-r9x8/GHSA-h2xq-vr96-r9x8.json index 27e51a025b7..e48dbe00f3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-h2xq-vr96-r9x8/GHSA-h2xq-vr96-r9x8.json +++ b/advisories/unreviewed/2022/05/GHSA-h2xq-vr96-r9x8/GHSA-h2xq-vr96-r9x8.json @@ -7,12 +7,8 @@ "CVE-2005-3030" ], "details": "Directory traversal vulnerability in the archive decompression library in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows remote attackers to write arbitrary files via a .. (dot dot) in the filename in a compressed archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h3p2-qcgx-wvv3/GHSA-h3p2-qcgx-wvv3.json b/advisories/unreviewed/2022/05/GHSA-h3p2-qcgx-wvv3/GHSA-h3p2-qcgx-wvv3.json index 19011c4dafc..36710ae60e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3p2-qcgx-wvv3/GHSA-h3p2-qcgx-wvv3.json +++ b/advisories/unreviewed/2022/05/GHSA-h3p2-qcgx-wvv3/GHSA-h3p2-qcgx-wvv3.json @@ -7,12 +7,8 @@ "CVE-2005-3108" ], "details": "mm/ioremap.c in Linux 2.6 on 64-bit x86 systems allows local users to cause a denial of service or an information leak via an ioremap on a certain memory map that causes the iounmap to perform a lookup of a page that does not exist.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h49f-v2qm-5q9g/GHSA-h49f-v2qm-5q9g.json b/advisories/unreviewed/2022/05/GHSA-h49f-v2qm-5q9g/GHSA-h49f-v2qm-5q9g.json index e2aea6dd5b6..1dfa5461e1d 100644 --- a/advisories/unreviewed/2022/05/GHSA-h49f-v2qm-5q9g/GHSA-h49f-v2qm-5q9g.json +++ b/advisories/unreviewed/2022/05/GHSA-h49f-v2qm-5q9g/GHSA-h49f-v2qm-5q9g.json @@ -7,12 +7,8 @@ "CVE-2021-1582" ], "details": "A vulnerability in the web UI of Cisco Application Policy Infrastructure Controller (APIC) or Cisco Cloud APIC could allow an authenticated, remote attacker to perform a stored cross-site scripting attack on an affected system. This vulnerability is due to improper input validation in the web UI. An authenticated attacker could exploit this vulnerability by sending malicious input to the web UI. A successful exploit could allow the attacker to execute arbitrary script code in the context of the web-based interface or access sensitive, browser-based information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h4c5-jq2c-gq8v/GHSA-h4c5-jq2c-gq8v.json b/advisories/unreviewed/2022/05/GHSA-h4c5-jq2c-gq8v/GHSA-h4c5-jq2c-gq8v.json index dfd2602e8a2..f98ee0643d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4c5-jq2c-gq8v/GHSA-h4c5-jq2c-gq8v.json +++ b/advisories/unreviewed/2022/05/GHSA-h4c5-jq2c-gq8v/GHSA-h4c5-jq2c-gq8v.json @@ -7,12 +7,8 @@ "CVE-2005-2871" ], "details": "Buffer overflow in the International Domain Name (IDN) support in Mozilla Firefox 1.0.6 and earlier, and Netscape 8.0.3.3 and 7.2, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a hostname with all \"soft\" hyphens (character 0xAD), which is not properly handled by the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -168,9 +164,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h52p-pmhh-x2jv/GHSA-h52p-pmhh-x2jv.json b/advisories/unreviewed/2022/05/GHSA-h52p-pmhh-x2jv/GHSA-h52p-pmhh-x2jv.json index df1048e9314..b7e11be2f8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-h52p-pmhh-x2jv/GHSA-h52p-pmhh-x2jv.json +++ b/advisories/unreviewed/2022/05/GHSA-h52p-pmhh-x2jv/GHSA-h52p-pmhh-x2jv.json @@ -7,12 +7,8 @@ "CVE-2021-31400" ], "details": "An issue was discovered in tcp_pulloutofband() in tcp_in.c in HCC embedded InterNiche 4.0.1. The TCP out-of-band urgent-data processing function invokes a panic function if the pointer to the end of the out-of-band data points outside of the TCP segment's data. If the panic function hadn't a trap invocation removed, it will enter an infinite loop and therefore cause DoS (continuous loop or a device reset).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5gx-r98q-mqhf/GHSA-h5gx-r98q-mqhf.json b/advisories/unreviewed/2022/05/GHSA-h5gx-r98q-mqhf/GHSA-h5gx-r98q-mqhf.json index a67c71f8108..73c95ca5160 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5gx-r98q-mqhf/GHSA-h5gx-r98q-mqhf.json +++ b/advisories/unreviewed/2022/05/GHSA-h5gx-r98q-mqhf/GHSA-h5gx-r98q-mqhf.json @@ -7,12 +7,8 @@ "CVE-2021-28372" ], "details": "ThroughTek's Kalay Platform 2.0 network allows an attacker to impersonate an arbitrary ThroughTek (TUTK) device given a valid 20-byte uniquely assigned identifier (UID). This could result in an attacker hijacking a victim's connection and forcing them into supplying credentials needed to access the victim TUTK device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5pj-v47c-6vc7/GHSA-h5pj-v47c-6vc7.json b/advisories/unreviewed/2022/05/GHSA-h5pj-v47c-6vc7/GHSA-h5pj-v47c-6vc7.json index 5b4de9fd0c5..21c578d4581 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5pj-v47c-6vc7/GHSA-h5pj-v47c-6vc7.json +++ b/advisories/unreviewed/2022/05/GHSA-h5pj-v47c-6vc7/GHSA-h5pj-v47c-6vc7.json @@ -7,12 +7,8 @@ "CVE-2021-30598" ], "details": "Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h5wv-8vv5-468v/GHSA-h5wv-8vv5-468v.json b/advisories/unreviewed/2022/05/GHSA-h5wv-8vv5-468v/GHSA-h5wv-8vv5-468v.json index e9997ba9716..8184f0e7635 100644 --- a/advisories/unreviewed/2022/05/GHSA-h5wv-8vv5-468v/GHSA-h5wv-8vv5-468v.json +++ b/advisories/unreviewed/2022/05/GHSA-h5wv-8vv5-468v/GHSA-h5wv-8vv5-468v.json @@ -7,12 +7,8 @@ "CVE-2005-3066" ], "details": "Cross-site scripting (XSS) vulnerability in perldiver.pl in PerlDiver 1.x allows remote attackers to inject arbitrary web script or HTML via the query string. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7m7-3x9g-qr83/GHSA-h7m7-3x9g-qr83.json b/advisories/unreviewed/2022/05/GHSA-h7m7-3x9g-qr83/GHSA-h7m7-3x9g-qr83.json index 95a38489107..6ab40d97485 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7m7-3x9g-qr83/GHSA-h7m7-3x9g-qr83.json +++ b/advisories/unreviewed/2022/05/GHSA-h7m7-3x9g-qr83/GHSA-h7m7-3x9g-qr83.json @@ -7,12 +7,8 @@ "CVE-2005-3459" ], "details": "Unspecified vulnerability in Oracle E-Business Suite and Applications 4.5 up to 4.5.1 has unknown impact and attack vectors, as identified by Oracle Vuln# APPS22 in Oracle Clinical.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h87v-rxg9-34vh/GHSA-h87v-rxg9-34vh.json b/advisories/unreviewed/2022/05/GHSA-h87v-rxg9-34vh/GHSA-h87v-rxg9-34vh.json index 626d82c9556..ee33929c0ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-h87v-rxg9-34vh/GHSA-h87v-rxg9-34vh.json +++ b/advisories/unreviewed/2022/05/GHSA-h87v-rxg9-34vh/GHSA-h87v-rxg9-34vh.json @@ -7,12 +7,8 @@ "CVE-2005-2979" ], "details": "SQL injection vulnerability in index.php in phpoutsourcing Noah's classifieds allows remote attackers to execute arbitrary SQL commands via the rollid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h8p4-p3hv-mq9r/GHSA-h8p4-p3hv-mq9r.json b/advisories/unreviewed/2022/05/GHSA-h8p4-p3hv-mq9r/GHSA-h8p4-p3hv-mq9r.json index 60217b11bd4..1b7e7e529b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8p4-p3hv-mq9r/GHSA-h8p4-p3hv-mq9r.json +++ b/advisories/unreviewed/2022/05/GHSA-h8p4-p3hv-mq9r/GHSA-h8p4-p3hv-mq9r.json @@ -7,12 +7,8 @@ "CVE-2005-3008" ], "details": "Tofu 0.2 allows remote attackers to execute arbitrary Python code via crafted pickled objects, which Tofu unpickles and executes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h963-mpc3-j9g4/GHSA-h963-mpc3-j9g4.json b/advisories/unreviewed/2022/05/GHSA-h963-mpc3-j9g4/GHSA-h963-mpc3-j9g4.json index bb4452b0108..cd0f8677079 100644 --- a/advisories/unreviewed/2022/05/GHSA-h963-mpc3-j9g4/GHSA-h963-mpc3-j9g4.json +++ b/advisories/unreviewed/2022/05/GHSA-h963-mpc3-j9g4/GHSA-h963-mpc3-j9g4.json @@ -7,12 +7,8 @@ "CVE-2021-22236" ], "details": "Due to improper handling of OAuth client IDs, new subscriptions generated OAuth tokens on an incorrect OAuth client application. This vulnerability is present in GitLab CE/EE since version 14.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h9mr-6gjh-qmfh/GHSA-h9mr-6gjh-qmfh.json b/advisories/unreviewed/2022/05/GHSA-h9mr-6gjh-qmfh/GHSA-h9mr-6gjh-qmfh.json index 67d0db2f425..a5db4174fca 100644 --- a/advisories/unreviewed/2022/05/GHSA-h9mr-6gjh-qmfh/GHSA-h9mr-6gjh-qmfh.json +++ b/advisories/unreviewed/2022/05/GHSA-h9mr-6gjh-qmfh/GHSA-h9mr-6gjh-qmfh.json @@ -7,12 +7,8 @@ "CVE-2005-3058" ], "details": "Interpretation conflict in Fortinet FortiGate 2.8, running FortiOS 2.8MR10 and v3beta, allows remote attackers to bypass the URL blocker via an (1) HTTP request terminated with a line feed (LF) and not carriage return line feed (CRLF) or (2) HTTP request with no Host field, which is still processed by most web servers without violating RFC2616.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hcmv-92qc-p4qp/GHSA-hcmv-92qc-p4qp.json b/advisories/unreviewed/2022/05/GHSA-hcmv-92qc-p4qp/GHSA-hcmv-92qc-p4qp.json index 732e362af9d..9d9fc622164 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcmv-92qc-p4qp/GHSA-hcmv-92qc-p4qp.json +++ b/advisories/unreviewed/2022/05/GHSA-hcmv-92qc-p4qp/GHSA-hcmv-92qc-p4qp.json @@ -7,12 +7,8 @@ "CVE-2021-24658" ], "details": "The Erident Custom Login and Dashboard WordPress plugin before 3.5.9 did not properly sanitise its settings, allowing high privilege users to use XSS payloads in them (even when the unfileted_html is disabled)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hcvp-gmj3-5g5v/GHSA-hcvp-gmj3-5g5v.json b/advisories/unreviewed/2022/05/GHSA-hcvp-gmj3-5g5v/GHSA-hcvp-gmj3-5g5v.json index 052c04fcd37..4a16b3173a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hcvp-gmj3-5g5v/GHSA-hcvp-gmj3-5g5v.json +++ b/advisories/unreviewed/2022/05/GHSA-hcvp-gmj3-5g5v/GHSA-hcvp-gmj3-5g5v.json @@ -7,12 +7,8 @@ "CVE-2021-39361" ], "details": "In GNOME evolution-rss through 0.3.96, network-soup.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hf8h-gvq7-6gfr/GHSA-hf8h-gvq7-6gfr.json b/advisories/unreviewed/2022/05/GHSA-hf8h-gvq7-6gfr/GHSA-hf8h-gvq7-6gfr.json index 13deec782dc..6bf51fb1262 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf8h-gvq7-6gfr/GHSA-hf8h-gvq7-6gfr.json +++ b/advisories/unreviewed/2022/05/GHSA-hf8h-gvq7-6gfr/GHSA-hf8h-gvq7-6gfr.json @@ -7,12 +7,8 @@ "CVE-2020-35685" ], "details": "An issue was discovered in HCC Nichestack 3.0. The code that generates Initial Sequence Numbers (ISNs) for TCP connections derives the ISN from an insufficiently random source. As a result, an attacker may be able to determine the ISN of current and future TCP connections and either hijack existing ones or spoof future ones. (Proper ISN generation should aim to follow at least the specifications outlined in RFC 6528.)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfmp-whcv-gcmx/GHSA-hfmp-whcv-gcmx.json b/advisories/unreviewed/2022/05/GHSA-hfmp-whcv-gcmx/GHSA-hfmp-whcv-gcmx.json index 66c0f144e4e..c901c022e52 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfmp-whcv-gcmx/GHSA-hfmp-whcv-gcmx.json +++ b/advisories/unreviewed/2022/05/GHSA-hfmp-whcv-gcmx/GHSA-hfmp-whcv-gcmx.json @@ -7,12 +7,8 @@ "CVE-2021-34228" ], "details": "Cross-site scripting in parent_control.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers to execute arbitrary JavaScript by modifying the \"Description\" field and \"Service Name\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfq5-xp8f-5693/GHSA-hfq5-xp8f-5693.json b/advisories/unreviewed/2022/05/GHSA-hfq5-xp8f-5693/GHSA-hfq5-xp8f-5693.json index 04a9385ce7b..5954c5d6ec3 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfq5-xp8f-5693/GHSA-hfq5-xp8f-5693.json +++ b/advisories/unreviewed/2022/05/GHSA-hfq5-xp8f-5693/GHSA-hfq5-xp8f-5693.json @@ -7,12 +7,8 @@ "CVE-2005-3137" ], "details": "The (1) cfmailfilter and (2) cfcron.in files for cfengine 1.6.5 allow local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2005-2960.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfqx-6rp7-wpxp/GHSA-hfqx-6rp7-wpxp.json b/advisories/unreviewed/2022/05/GHSA-hfqx-6rp7-wpxp/GHSA-hfqx-6rp7-wpxp.json index 4f34b570768..065739e5646 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfqx-6rp7-wpxp/GHSA-hfqx-6rp7-wpxp.json +++ b/advisories/unreviewed/2022/05/GHSA-hfqx-6rp7-wpxp/GHSA-hfqx-6rp7-wpxp.json @@ -7,12 +7,8 @@ "CVE-2005-3000" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in viewers/txt.php in PHP Advanced Transfer Manager 1.30 allow remote attackers to inject arbitrary web script or HTML via the (1) font, (2) normalfontcolor, or (3) mess[31] parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfwm-r6mv-837g/GHSA-hfwm-r6mv-837g.json b/advisories/unreviewed/2022/05/GHSA-hfwm-r6mv-837g/GHSA-hfwm-r6mv-837g.json index 99d13fb3b5b..b6c1dc229bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfwm-r6mv-837g/GHSA-hfwm-r6mv-837g.json +++ b/advisories/unreviewed/2022/05/GHSA-hfwm-r6mv-837g/GHSA-hfwm-r6mv-837g.json @@ -7,12 +7,8 @@ "CVE-2005-3267" ], "details": "Integer overflow in Skype client before 1.4.x.84 on Windows, before 1.3.x.17 on Mac OS, before 1.2.x.18 on Linux, and 1.1.x.6 and earlier allows remote attackers to cause a denial of service (crash) via crafted network data with a large Object Counter value, which leads to a resultant heap-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hfxc-fp88-8x2r/GHSA-hfxc-fp88-8x2r.json b/advisories/unreviewed/2022/05/GHSA-hfxc-fp88-8x2r/GHSA-hfxc-fp88-8x2r.json index 2d8de67fe40..23bf1a750c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfxc-fp88-8x2r/GHSA-hfxc-fp88-8x2r.json +++ b/advisories/unreviewed/2022/05/GHSA-hfxc-fp88-8x2r/GHSA-hfxc-fp88-8x2r.json @@ -7,12 +7,8 @@ "CVE-2005-2916" ], "details": "Linksys WRT54G 3.01.03, 3.03.6, 4.00.7, and possibly other versions before 4.20.7, does not verify user authentication until after an HTTP POST request has been processed, which allows remote attackers to (1) modify configuration using restore.cgi or (2) upload new firmware using upgrade.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hgfp-jcxr-8j6r/GHSA-hgfp-jcxr-8j6r.json b/advisories/unreviewed/2022/05/GHSA-hgfp-jcxr-8j6r/GHSA-hgfp-jcxr-8j6r.json index 0d914d87f5b..9669321585d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgfp-jcxr-8j6r/GHSA-hgfp-jcxr-8j6r.json +++ b/advisories/unreviewed/2022/05/GHSA-hgfp-jcxr-8j6r/GHSA-hgfp-jcxr-8j6r.json @@ -7,12 +7,8 @@ "CVE-2020-18475" ], "details": "Cross Site Scripting (XSS) vulnerabilty exists in Hucart CMS 5.7.4 is via the mes_title field. The first user inserts a malicious script into the header field of the outbox and sends it to other users. When other users open the email, the malicious code will be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hgp2-6w9f-4925/GHSA-hgp2-6w9f-4925.json b/advisories/unreviewed/2022/05/GHSA-hgp2-6w9f-4925/GHSA-hgp2-6w9f-4925.json index 356355d9d56..7632d3e2946 100644 --- a/advisories/unreviewed/2022/05/GHSA-hgp2-6w9f-4925/GHSA-hgp2-6w9f-4925.json +++ b/advisories/unreviewed/2022/05/GHSA-hgp2-6w9f-4925/GHSA-hgp2-6w9f-4925.json @@ -7,12 +7,8 @@ "CVE-2005-3255" ], "details": "The (1) cgiwrap and (2) php-cgiwrap packages before 3.9 in Debian GNU/Linux provide access to debugging CGIs under the web document root, which allows remote attackers to obtain sensitive information via direct requests to those CGIs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hp98-cm3f-c276/GHSA-hp98-cm3f-c276.json b/advisories/unreviewed/2022/05/GHSA-hp98-cm3f-c276/GHSA-hp98-cm3f-c276.json index 6c1ee903284..2fa1a0a9593 100644 --- a/advisories/unreviewed/2022/05/GHSA-hp98-cm3f-c276/GHSA-hp98-cm3f-c276.json +++ b/advisories/unreviewed/2022/05/GHSA-hp98-cm3f-c276/GHSA-hp98-cm3f-c276.json @@ -7,12 +7,8 @@ "CVE-2005-3002" ], "details": "Multi-Computer Control System (MCCS) 1.0 allows remote attackers to cause a denial of service via a malformed UDP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hpqv-2vqw-945v/GHSA-hpqv-2vqw-945v.json b/advisories/unreviewed/2022/05/GHSA-hpqv-2vqw-945v/GHSA-hpqv-2vqw-945v.json index e137ed10ac4..c0b9b758f90 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpqv-2vqw-945v/GHSA-hpqv-2vqw-945v.json +++ b/advisories/unreviewed/2022/05/GHSA-hpqv-2vqw-945v/GHSA-hpqv-2vqw-945v.json @@ -7,12 +7,8 @@ "CVE-2021-31868" ], "details": "Rapid7 Nexpose version 6.6.95 and earlier allows authenticated users of the Security Console to view and edit any ticket in the legacy ticketing feature, regardless of the assignment of the ticket. This issue was resolved in version 6.6.96, released on August 4, 2021.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hq57-jxvf-4pgp/GHSA-hq57-jxvf-4pgp.json b/advisories/unreviewed/2022/05/GHSA-hq57-jxvf-4pgp/GHSA-hq57-jxvf-4pgp.json index 0de15a065de..03e69d91595 100644 --- a/advisories/unreviewed/2022/05/GHSA-hq57-jxvf-4pgp/GHSA-hq57-jxvf-4pgp.json +++ b/advisories/unreviewed/2022/05/GHSA-hq57-jxvf-4pgp/GHSA-hq57-jxvf-4pgp.json @@ -7,12 +7,8 @@ "CVE-2005-3045" ], "details": "SQL injection vulnerability in search.php in My Little Forum 1.5 and 1.6 beta allows remote attackers to execute arbitrary SQL commands via the phrase field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hr4j-hq54-95c2/GHSA-hr4j-hq54-95c2.json b/advisories/unreviewed/2022/05/GHSA-hr4j-hq54-95c2/GHSA-hr4j-hq54-95c2.json index d989beb58a5..47514a14133 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr4j-hq54-95c2/GHSA-hr4j-hq54-95c2.json +++ b/advisories/unreviewed/2022/05/GHSA-hr4j-hq54-95c2/GHSA-hr4j-hq54-95c2.json @@ -7,12 +7,8 @@ "CVE-2005-3241" ], "details": "Multiple vulnerabilities in Ethereal 0.10.12 and earlier allow remote attackers to cause a denial of service (memory consumption) via unspecified vectors in the (1) ISAKMP, (2) FC-FCS, (3) RSVP, and (4) ISIS LSP dissector.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -100,9 +96,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hr62-vrqf-6473/GHSA-hr62-vrqf-6473.json b/advisories/unreviewed/2022/05/GHSA-hr62-vrqf-6473/GHSA-hr62-vrqf-6473.json index 24e67a6979c..41bf7157345 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr62-vrqf-6473/GHSA-hr62-vrqf-6473.json +++ b/advisories/unreviewed/2022/05/GHSA-hr62-vrqf-6473/GHSA-hr62-vrqf-6473.json @@ -7,12 +7,8 @@ "CVE-2005-3003" ], "details": "SQL injection vulnerability in index.php in NooTopList 1.0.0 release 17 allows remote attackers to execute arbitrary SQL commands via the (1) o or (2) sort parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hvq8-4qq3-c3ww/GHSA-hvq8-4qq3-c3ww.json b/advisories/unreviewed/2022/05/GHSA-hvq8-4qq3-c3ww/GHSA-hvq8-4qq3-c3ww.json index aa9a00c6994..353654897b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvq8-4qq3-c3ww/GHSA-hvq8-4qq3-c3ww.json +++ b/advisories/unreviewed/2022/05/GHSA-hvq8-4qq3-c3ww/GHSA-hvq8-4qq3-c3ww.json @@ -7,12 +7,8 @@ "CVE-2005-3205" ], "details": "Cross-site scripting (XSS) vulnerability in iSQL*Plus (iSQLPlus) in Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to inject arbitrary web script or HTML via script in the \"set markup HTML TABLE\" command, which is executed when the user selects a table.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hvqv-hfgv-59r8/GHSA-hvqv-hfgv-59r8.json b/advisories/unreviewed/2022/05/GHSA-hvqv-hfgv-59r8/GHSA-hvqv-hfgv-59r8.json index ca76f654acc..32663df09ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-hvqv-hfgv-59r8/GHSA-hvqv-hfgv-59r8.json +++ b/advisories/unreviewed/2022/05/GHSA-hvqv-hfgv-59r8/GHSA-hvqv-hfgv-59r8.json @@ -7,12 +7,8 @@ "CVE-2005-3462" ], "details": "Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46.02 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE02.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hw2f-4q5v-cv5j/GHSA-hw2f-4q5v-cv5j.json b/advisories/unreviewed/2022/05/GHSA-hw2f-4q5v-cv5j/GHSA-hw2f-4q5v-cv5j.json index 72c91126790..6f1d926434c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hw2f-4q5v-cv5j/GHSA-hw2f-4q5v-cv5j.json +++ b/advisories/unreviewed/2022/05/GHSA-hw2f-4q5v-cv5j/GHSA-hw2f-4q5v-cv5j.json @@ -7,12 +7,8 @@ "CVE-2005-2972" ], "details": "Multiple stack-based buffer overflows in the RTF import feature in AbiWord before 2.2.11 allow user-assisted attackers to execute arbitrary code via an RTF file with long identifiers, which are not properly handled in the (1) ParseLevelText, (2) getCharsInsideBrace, (3) HandleLists, (4) or (5) HandleAbiLists functions in ie_imp_RTF.cpp, a different vulnerability than CVE-2005-2964.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwhr-mg66-h8cp/GHSA-hwhr-mg66-h8cp.json b/advisories/unreviewed/2022/05/GHSA-hwhr-mg66-h8cp/GHSA-hwhr-mg66-h8cp.json index b668f09651f..7df6de74897 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwhr-mg66-h8cp/GHSA-hwhr-mg66-h8cp.json +++ b/advisories/unreviewed/2022/05/GHSA-hwhr-mg66-h8cp/GHSA-hwhr-mg66-h8cp.json @@ -7,12 +7,8 @@ "CVE-2021-37597" ], "details": "WP Cerber before 8.9.3 allows MFA bypass via wordpress_logged_in_[hash] manipulation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwhx-rgrv-3pxv/GHSA-hwhx-rgrv-3pxv.json b/advisories/unreviewed/2022/05/GHSA-hwhx-rgrv-3pxv/GHSA-hwhx-rgrv-3pxv.json index bcc1571cd1c..6ad42508579 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwhx-rgrv-3pxv/GHSA-hwhx-rgrv-3pxv.json +++ b/advisories/unreviewed/2022/05/GHSA-hwhx-rgrv-3pxv/GHSA-hwhx-rgrv-3pxv.json @@ -7,12 +7,8 @@ "CVE-2005-2915" ], "details": "ezconfig.asp in Linksys WRT54G router 3.01.03, 3.03.6, non-default configurations of 2.04.4, and possibly other versions, uses weak encryption (XOR encoding with a fixed byte mask) for configuration information, which could allow attackers to decrypt the information and possibly re-encrypt it in conjunction with CVE-2005-2914.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxcj-gvxh-8944/GHSA-hxcj-gvxh-8944.json b/advisories/unreviewed/2022/05/GHSA-hxcj-gvxh-8944/GHSA-hxcj-gvxh-8944.json index 9ffd01b692c..588e5945a63 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxcj-gvxh-8944/GHSA-hxcj-gvxh-8944.json +++ b/advisories/unreviewed/2022/05/GHSA-hxcj-gvxh-8944/GHSA-hxcj-gvxh-8944.json @@ -7,12 +7,8 @@ "CVE-2021-39358" ], "details": "In GNOME libgfbgraph through 0.2.4, gfbgraph-photo.c does not enable TLS certificate verification on the SoupSessionSync objects it creates, leaving users vulnerable to network MITM attacks. NOTE: this is similar to CVE-2016-20011.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxhj-hfxc-68w7/GHSA-hxhj-hfxc-68w7.json b/advisories/unreviewed/2022/05/GHSA-hxhj-hfxc-68w7/GHSA-hxhj-hfxc-68w7.json index 57ca77d5a6a..eb1e3a89932 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxhj-hfxc-68w7/GHSA-hxhj-hfxc-68w7.json +++ b/advisories/unreviewed/2022/05/GHSA-hxhj-hfxc-68w7/GHSA-hxhj-hfxc-68w7.json @@ -7,12 +7,8 @@ "CVE-2005-2863" ], "details": "Cross-site scripting (XSS) vulnerability in openwebmail-main.pl in OpenWebMail 2.41 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hxxh-v8c4-ch22/GHSA-hxxh-v8c4-ch22.json b/advisories/unreviewed/2022/05/GHSA-hxxh-v8c4-ch22/GHSA-hxxh-v8c4-ch22.json index a071b38b49a..d5290160107 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxxh-v8c4-ch22/GHSA-hxxh-v8c4-ch22.json +++ b/advisories/unreviewed/2022/05/GHSA-hxxh-v8c4-ch22/GHSA-hxxh-v8c4-ch22.json @@ -7,12 +7,8 @@ "CVE-2021-37358" ], "details": "SQL Injection in SEACMS v210530 (2021-05-30) allows remote attackers to execute arbitrary code via the component \"admin_ajax.php?action=checkrepeat&v_name=\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j2vq-5p2g-v95w/GHSA-j2vq-5p2g-v95w.json b/advisories/unreviewed/2022/05/GHSA-j2vq-5p2g-v95w/GHSA-j2vq-5p2g-v95w.json index 90fc852be78..0e5efc09321 100644 --- a/advisories/unreviewed/2022/05/GHSA-j2vq-5p2g-v95w/GHSA-j2vq-5p2g-v95w.json +++ b/advisories/unreviewed/2022/05/GHSA-j2vq-5p2g-v95w/GHSA-j2vq-5p2g-v95w.json @@ -7,12 +7,8 @@ "CVE-2005-3282" ], "details": "Splatt Forum 3.0 to 3.2 allows remote attackers to bypass authentication via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j37f-5pgj-pj76/GHSA-j37f-5pgj-pj76.json b/advisories/unreviewed/2022/05/GHSA-j37f-5pgj-pj76/GHSA-j37f-5pgj-pj76.json index 98b1b052483..e3ef2c9bd11 100644 --- a/advisories/unreviewed/2022/05/GHSA-j37f-5pgj-pj76/GHSA-j37f-5pgj-pj76.json +++ b/advisories/unreviewed/2022/05/GHSA-j37f-5pgj-pj76/GHSA-j37f-5pgj-pj76.json @@ -7,12 +7,8 @@ "CVE-2021-28000" ], "details": "A persistent cross-site scripting vulnerability was discovered in Local Services Search Engine Management System Project 1.0 which allows remote attackers to execute arbitrary code via crafted payloads entered into the Name and Address fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j398-8rpx-rmjh/GHSA-j398-8rpx-rmjh.json b/advisories/unreviewed/2022/05/GHSA-j398-8rpx-rmjh/GHSA-j398-8rpx-rmjh.json index c8666b94569..948651d7ef9 100644 --- a/advisories/unreviewed/2022/05/GHSA-j398-8rpx-rmjh/GHSA-j398-8rpx-rmjh.json +++ b/advisories/unreviewed/2022/05/GHSA-j398-8rpx-rmjh/GHSA-j398-8rpx-rmjh.json @@ -7,12 +7,8 @@ "CVE-2005-3177" ], "details": "CHKDSK in Microsoft Windows 2000 before Update Rollup 1 for SP4, Windows XP, and Windows Server 2003, when running in fix mode, does not properly handle security descriptors if the master file table contains a large number of files or if the descriptors do not satisfy certain NTFS conventions, which could cause ACLs for some files to be reverted to less secure defaults, or cause security descriptors to be removed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j39q-gqrr-xv8m/GHSA-j39q-gqrr-xv8m.json b/advisories/unreviewed/2022/05/GHSA-j39q-gqrr-xv8m/GHSA-j39q-gqrr-xv8m.json index 35d097b6749..16c5c1f66f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-j39q-gqrr-xv8m/GHSA-j39q-gqrr-xv8m.json +++ b/advisories/unreviewed/2022/05/GHSA-j39q-gqrr-xv8m/GHSA-j39q-gqrr-xv8m.json @@ -7,12 +7,8 @@ "CVE-2021-39362" ], "details": "An XSS issue was discovered in ReCaptcha Solver 5.7. A response from Anti-Captcha.com, RuCaptcha.com, 2captcha.com, DEATHbyCAPTCHA.com, ImageTyperz.com, or BestCaptchaSolver.com in setCaptchaCode() is inserted into the DOM as HTML, resulting in full control over the user's browser by these servers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j3j3-95qf-wg27/GHSA-j3j3-95qf-wg27.json b/advisories/unreviewed/2022/05/GHSA-j3j3-95qf-wg27/GHSA-j3j3-95qf-wg27.json index 2cfd79c7cb1..e350ec87a2c 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3j3-95qf-wg27/GHSA-j3j3-95qf-wg27.json +++ b/advisories/unreviewed/2022/05/GHSA-j3j3-95qf-wg27/GHSA-j3j3-95qf-wg27.json @@ -7,12 +7,8 @@ "CVE-2005-3098" ], "details": "poppassd in Qualcomm qpopper 4.0.8 allows local users to modify arbitrary files and gain privileges via the -t (trace file) command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j437-r3p6-wvg8/GHSA-j437-r3p6-wvg8.json b/advisories/unreviewed/2022/05/GHSA-j437-r3p6-wvg8/GHSA-j437-r3p6-wvg8.json index 9130eb0294a..29756d74a7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j437-r3p6-wvg8/GHSA-j437-r3p6-wvg8.json +++ b/advisories/unreviewed/2022/05/GHSA-j437-r3p6-wvg8/GHSA-j437-r3p6-wvg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5rr-f36w-34g4/GHSA-j5rr-f36w-34g4.json b/advisories/unreviewed/2022/05/GHSA-j5rr-f36w-34g4/GHSA-j5rr-f36w-34g4.json index fbbb90db91f..13464d20c2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5rr-f36w-34g4/GHSA-j5rr-f36w-34g4.json +++ b/advisories/unreviewed/2022/05/GHSA-j5rr-f36w-34g4/GHSA-j5rr-f36w-34g4.json @@ -7,12 +7,8 @@ "CVE-2005-3171" ], "details": "Microsoft Windows 2000 before Update Rollup 1 for SP4 records Event ID 1704 to indicate that Group Policy security settings were successfully updated, even when the processing fails such as when Ntuser.pol cannot be accessed, which could cause system administrators to believe that the system is compliant with the specified settings.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j665-w9jf-c86m/GHSA-j665-w9jf-c86m.json b/advisories/unreviewed/2022/05/GHSA-j665-w9jf-c86m/GHSA-j665-w9jf-c86m.json index fa38b3e0367..e9ddff08fd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-j665-w9jf-c86m/GHSA-j665-w9jf-c86m.json +++ b/advisories/unreviewed/2022/05/GHSA-j665-w9jf-c86m/GHSA-j665-w9jf-c86m.json @@ -7,12 +7,8 @@ "CVE-2021-30600" ], "details": "Use after free in Printing in Google Chrome prior to 92.0.4515.159 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j6qw-vjcv-x9q7/GHSA-j6qw-vjcv-x9q7.json b/advisories/unreviewed/2022/05/GHSA-j6qw-vjcv-x9q7/GHSA-j6qw-vjcv-x9q7.json index 0eb455cf86b..3d00c2cf9a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6qw-vjcv-x9q7/GHSA-j6qw-vjcv-x9q7.json +++ b/advisories/unreviewed/2022/05/GHSA-j6qw-vjcv-x9q7/GHSA-j6qw-vjcv-x9q7.json @@ -7,12 +7,8 @@ "CVE-2005-3257" ], "details": "The VT implementation (vt_ioctl.c) in Linux kernel 2.6.12, and possibly other versions including 2.6.14.4, allows local users to use the KDSKBSENT ioctl on terminals of other users and gain privileges, as demonstrated by modifying key bindings using loadkeys.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j942-52ch-wgc2/GHSA-j942-52ch-wgc2.json b/advisories/unreviewed/2022/05/GHSA-j942-52ch-wgc2/GHSA-j942-52ch-wgc2.json index 54a8fd5d0a3..5466c96a4ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-j942-52ch-wgc2/GHSA-j942-52ch-wgc2.json +++ b/advisories/unreviewed/2022/05/GHSA-j942-52ch-wgc2/GHSA-j942-52ch-wgc2.json @@ -7,12 +7,8 @@ "CVE-2005-3264" ], "details": "Cross-site scripting (XSS) vulnerability in thread.php for Zeroblog 1.1f and 1.2a allows remote attackers to inject arbitrary web script or HTML via the threadID parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j97x-5g7g-g282/GHSA-j97x-5g7g-g282.json b/advisories/unreviewed/2022/05/GHSA-j97x-5g7g-g282/GHSA-j97x-5g7g-g282.json index ae6fad3be28..1d5ada70e5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-j97x-5g7g-g282/GHSA-j97x-5g7g-g282.json +++ b/advisories/unreviewed/2022/05/GHSA-j97x-5g7g-g282/GHSA-j97x-5g7g-g282.json @@ -7,12 +7,8 @@ "CVE-2020-20645" ], "details": "Cross Site Scripting (XSS) vulnerability exists in EyouCMS1.3.6 in the basic_information area.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9cq-w939-7xw9/GHSA-j9cq-w939-7xw9.json b/advisories/unreviewed/2022/05/GHSA-j9cq-w939-7xw9/GHSA-j9cq-w939-7xw9.json index 81c839fa2e3..e84c72abec4 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9cq-w939-7xw9/GHSA-j9cq-w939-7xw9.json +++ b/advisories/unreviewed/2022/05/GHSA-j9cq-w939-7xw9/GHSA-j9cq-w939-7xw9.json @@ -7,12 +7,8 @@ "CVE-2005-3230" ], "details": "Multiple interpretation error in unspecified versions of Panda Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j9g4-rrpx-x359/GHSA-j9g4-rrpx-x359.json b/advisories/unreviewed/2022/05/GHSA-j9g4-rrpx-x359/GHSA-j9g4-rrpx-x359.json index 520ef70a5d3..ea8a11d93fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9g4-rrpx-x359/GHSA-j9g4-rrpx-x359.json +++ b/advisories/unreviewed/2022/05/GHSA-j9g4-rrpx-x359/GHSA-j9g4-rrpx-x359.json @@ -7,12 +7,8 @@ "CVE-2021-32975" ], "details": "Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This could lead to an out-of-bounds read. An attacker could leverage this vulnerability to execute code in the context of the current process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jc4f-m57j-73wq/GHSA-jc4f-m57j-73wq.json b/advisories/unreviewed/2022/05/GHSA-jc4f-m57j-73wq/GHSA-jc4f-m57j-73wq.json index 79f04be2bda..fa32786e34c 100644 --- a/advisories/unreviewed/2022/05/GHSA-jc4f-m57j-73wq/GHSA-jc4f-m57j-73wq.json +++ b/advisories/unreviewed/2022/05/GHSA-jc4f-m57j-73wq/GHSA-jc4f-m57j-73wq.json @@ -7,12 +7,8 @@ "CVE-2005-3340" ], "details": "The tuxpaint-import.sh script in Tux Paint (tuxpaint) 0.9.14 and earlier creates temporary files insecurely, with unknown impact and attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jc4h-hq48-8gj3/GHSA-jc4h-hq48-8gj3.json b/advisories/unreviewed/2022/05/GHSA-jc4h-hq48-8gj3/GHSA-jc4h-hq48-8gj3.json index 8e5b3caa64a..08299a67062 100644 --- a/advisories/unreviewed/2022/05/GHSA-jc4h-hq48-8gj3/GHSA-jc4h-hq48-8gj3.json +++ b/advisories/unreviewed/2022/05/GHSA-jc4h-hq48-8gj3/GHSA-jc4h-hq48-8gj3.json @@ -7,12 +7,8 @@ "CVE-2021-0419" ], "details": "In memory management driver, there is a possible system crash due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05403499; Issue ID: ALPS05336713.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jf67-5p7g-mgxr/GHSA-jf67-5p7g-mgxr.json b/advisories/unreviewed/2022/05/GHSA-jf67-5p7g-mgxr/GHSA-jf67-5p7g-mgxr.json index 39c9d5f3d5f..40a17651d75 100644 --- a/advisories/unreviewed/2022/05/GHSA-jf67-5p7g-mgxr/GHSA-jf67-5p7g-mgxr.json +++ b/advisories/unreviewed/2022/05/GHSA-jf67-5p7g-mgxr/GHSA-jf67-5p7g-mgxr.json @@ -7,12 +7,8 @@ "CVE-2005-3306" ], "details": "Cross-site scripting (XSS) vulnerability in index.php for FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the user parameter in a profile operation, a different vulnerability than CVE-2005-2814. NOTE: it is possible that this XSS is a resultant vulnerability of CVE-2005-3307.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jfp8-v3xr-q53j/GHSA-jfp8-v3xr-q53j.json b/advisories/unreviewed/2022/05/GHSA-jfp8-v3xr-q53j/GHSA-jfp8-v3xr-q53j.json index 93a799f56de..b83f43bdb97 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfp8-v3xr-q53j/GHSA-jfp8-v3xr-q53j.json +++ b/advisories/unreviewed/2022/05/GHSA-jfp8-v3xr-q53j/GHSA-jfp8-v3xr-q53j.json @@ -7,12 +7,8 @@ "CVE-2021-40089" ], "details": "An issue was discovered in PrimeKey EJBCA before 7.6.0. The General Purpose Custom Publisher, which is normally run to invoke a local script upon a publishing operation, was still able to run if the System Configuration setting Enable External Script Access was disabled. With this setting disabled it's not possible to create new such publishers, but existing publishers would continue to run.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jfw8-prg7-m323/GHSA-jfw8-prg7-m323.json b/advisories/unreviewed/2022/05/GHSA-jfw8-prg7-m323/GHSA-jfw8-prg7-m323.json index b0537501f68..329451c3a90 100644 --- a/advisories/unreviewed/2022/05/GHSA-jfw8-prg7-m323/GHSA-jfw8-prg7-m323.json +++ b/advisories/unreviewed/2022/05/GHSA-jfw8-prg7-m323/GHSA-jfw8-prg7-m323.json @@ -7,12 +7,8 @@ "CVE-2021-0584" ], "details": "In verifyBufferObject of Parcel.cpp, there is a possible out of bounds read due to an improper input validation. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-8.1 Android-9 Android-10Android ID: A-179289794", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jg22-m43p-phrm/GHSA-jg22-m43p-phrm.json b/advisories/unreviewed/2022/05/GHSA-jg22-m43p-phrm/GHSA-jg22-m43p-phrm.json index e9f6d3fb9ec..a2163922a8d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg22-m43p-phrm/GHSA-jg22-m43p-phrm.json +++ b/advisories/unreviewed/2022/05/GHSA-jg22-m43p-phrm/GHSA-jg22-m43p-phrm.json @@ -7,12 +7,8 @@ "CVE-2005-3014" ], "details": "Cross-site scripting (XSS) vulnerability in Ensim webplliance allows remote attackers to inject arbitrary web script or HTML via the Login (OCW_login_username) field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jggm-qmcw-j5f5/GHSA-jggm-qmcw-j5f5.json b/advisories/unreviewed/2022/05/GHSA-jggm-qmcw-j5f5/GHSA-jggm-qmcw-j5f5.json index e200d023b20..157442d55ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-jggm-qmcw-j5f5/GHSA-jggm-qmcw-j5f5.json +++ b/advisories/unreviewed/2022/05/GHSA-jggm-qmcw-j5f5/GHSA-jggm-qmcw-j5f5.json @@ -7,12 +7,8 @@ "CVE-2021-31401" ], "details": "An issue was discovered in tcp_rcv() in nptcp.c in HCC embedded InterNiche 4.0.1. The TCP header processing code doesn't sanitize the value of the IP total length field (header length + data length). With a crafted IP packet, an integer overflow occurs whenever the value of the IP data length is calculated by subtracting the length of the header from the total length of the IP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jgx6-27qx-3g2x/GHSA-jgx6-27qx-3g2x.json b/advisories/unreviewed/2022/05/GHSA-jgx6-27qx-3g2x/GHSA-jgx6-27qx-3g2x.json index 65d3dac207f..4c77736b97b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jgx6-27qx-3g2x/GHSA-jgx6-27qx-3g2x.json +++ b/advisories/unreviewed/2022/05/GHSA-jgx6-27qx-3g2x/GHSA-jgx6-27qx-3g2x.json @@ -7,12 +7,8 @@ "CVE-2020-27466" ], "details": "An arbitrary file write vulnerability in lib/AjaxHandlers/ajaxEditTemplate.php of rConfig 3.9.6 allows attackers to execute arbitrary code via a crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh8h-hqfp-q5vr/GHSA-jh8h-hqfp-q5vr.json b/advisories/unreviewed/2022/05/GHSA-jh8h-hqfp-q5vr/GHSA-jh8h-hqfp-q5vr.json index 0fc8bffbb4d..a6d3089903e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh8h-hqfp-q5vr/GHSA-jh8h-hqfp-q5vr.json +++ b/advisories/unreviewed/2022/05/GHSA-jh8h-hqfp-q5vr/GHSA-jh8h-hqfp-q5vr.json @@ -7,12 +7,8 @@ "CVE-2005-3151" ], "details": "Buffer overflow in blenderplay in Blender Player 2.37a allows attackers to execute arbitrary code via a long command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jhmw-xx49-7mmh/GHSA-jhmw-xx49-7mmh.json b/advisories/unreviewed/2022/05/GHSA-jhmw-xx49-7mmh/GHSA-jhmw-xx49-7mmh.json index c4d9d2c27a5..1668e36822d 100644 --- a/advisories/unreviewed/2022/05/GHSA-jhmw-xx49-7mmh/GHSA-jhmw-xx49-7mmh.json +++ b/advisories/unreviewed/2022/05/GHSA-jhmw-xx49-7mmh/GHSA-jhmw-xx49-7mmh.json @@ -7,12 +7,8 @@ "CVE-2021-0582" ], "details": "In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187149601", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jjm6-fj35-q837/GHSA-jjm6-fj35-q837.json b/advisories/unreviewed/2022/05/GHSA-jjm6-fj35-q837/GHSA-jjm6-fj35-q837.json index 662e796e20a..48c87dd2b24 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjm6-fj35-q837/GHSA-jjm6-fj35-q837.json +++ b/advisories/unreviewed/2022/05/GHSA-jjm6-fj35-q837/GHSA-jjm6-fj35-q837.json @@ -7,12 +7,8 @@ "CVE-2005-3402" ], "details": "The SMTP client in Mozilla Thunderbird 1.0.5 BETA, 1.0.7, and possibly other versions, does not notify users when it cannot establish a secure channel with the server, which allows remote attackers to obtain authentication information without detection via a man-in-the-middle (MITM) attack that bypasses TLS authentication or downgrades CRAM-MD5 authentication to plain authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjpf-92m2-j39j/GHSA-jjpf-92m2-j39j.json b/advisories/unreviewed/2022/05/GHSA-jjpf-92m2-j39j/GHSA-jjpf-92m2-j39j.json index c5f24e40d95..fb09e93104e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjpf-92m2-j39j/GHSA-jjpf-92m2-j39j.json +++ b/advisories/unreviewed/2022/05/GHSA-jjpf-92m2-j39j/GHSA-jjpf-92m2-j39j.json @@ -7,12 +7,8 @@ "CVE-2005-2958" ], "details": "Multiple format string vulnerabilities in the GNOME Data Access library for GNOME2 (libgda2) 1.2.1 and earlier allow attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jjrf-288g-676p/GHSA-jjrf-288g-676p.json b/advisories/unreviewed/2022/05/GHSA-jjrf-288g-676p/GHSA-jjrf-288g-676p.json index 6feaff2666c..54ac85a29db 100644 --- a/advisories/unreviewed/2022/05/GHSA-jjrf-288g-676p/GHSA-jjrf-288g-676p.json +++ b/advisories/unreviewed/2022/05/GHSA-jjrf-288g-676p/GHSA-jjrf-288g-676p.json @@ -7,12 +7,8 @@ "CVE-2005-2935" ], "details": "Unquoted Windows search path vulnerability in Microsoft AntiSpyware might allow local users to execute code via a malicious c:\\program.exe file, which is run by AntiSpywareMain.exe when it attempts to execute gsasDtServ.exe. NOTE: it is not clear whether this overlaps CVE-2005-2940.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmr8-f36w-9vrj/GHSA-jmr8-f36w-9vrj.json b/advisories/unreviewed/2022/05/GHSA-jmr8-f36w-9vrj/GHSA-jmr8-f36w-9vrj.json index 8d7017ff3fc..9890bad80ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmr8-f36w-9vrj/GHSA-jmr8-f36w-9vrj.json +++ b/advisories/unreviewed/2022/05/GHSA-jmr8-f36w-9vrj/GHSA-jmr8-f36w-9vrj.json @@ -7,12 +7,8 @@ "CVE-2005-3149" ], "details": "Uim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the LIBUIM_VANILLA environment variable when a suid or sgid application is linked to libuim, such as immodule for Qt, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jmxx-qxgh-6x9h/GHSA-jmxx-qxgh-6x9h.json b/advisories/unreviewed/2022/05/GHSA-jmxx-qxgh-6x9h/GHSA-jmxx-qxgh-6x9h.json index 8a4afd4b633..3ad520295de 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmxx-qxgh-6x9h/GHSA-jmxx-qxgh-6x9h.json +++ b/advisories/unreviewed/2022/05/GHSA-jmxx-qxgh-6x9h/GHSA-jmxx-qxgh-6x9h.json @@ -7,12 +7,8 @@ "CVE-2005-3467" ], "details": "Serv-U FTP Server before 6.1.0.4 allows attackers to cause a denial of service (crash) via (1) malformed packets and possibly other unspecified issues with unknown impact and attack vectors including (2) use of \"~\" in a pathname, and (3) memory consumption of the daemon. NOTE: it is not clear whether items (2) and above are vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jp2p-2cxv-rx5x/GHSA-jp2p-2cxv-rx5x.json b/advisories/unreviewed/2022/05/GHSA-jp2p-2cxv-rx5x/GHSA-jp2p-2cxv-rx5x.json index 1c6c7a86c5c..64231604853 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp2p-2cxv-rx5x/GHSA-jp2p-2cxv-rx5x.json +++ b/advisories/unreviewed/2022/05/GHSA-jp2p-2cxv-rx5x/GHSA-jp2p-2cxv-rx5x.json @@ -7,12 +7,8 @@ "CVE-2005-3055" ], "details": "Linux kernel 2.6.8 to 2.6.14-rc2 allows local users to cause a denial of service (kernel OOPS) via a userspace process that issues a USB Request Block (URB) to a USB device and terminates before the URB is finished, which leads to a stale pointer reference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jp3v-r37m-m9mr/GHSA-jp3v-r37m-m9mr.json b/advisories/unreviewed/2022/05/GHSA-jp3v-r37m-m9mr/GHSA-jp3v-r37m-m9mr.json index 24e18353cfb..8788a69bdc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp3v-r37m-m9mr/GHSA-jp3v-r37m-m9mr.json +++ b/advisories/unreviewed/2022/05/GHSA-jp3v-r37m-m9mr/GHSA-jp3v-r37m-m9mr.json @@ -7,12 +7,8 @@ "CVE-2005-3152" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in CubeCart 3.0.3 allow remote attackers to inject arbitrary web script or HTML via the redir parameter to (1) cart.php or (2) index.php, or (3) the searchStr parameter in a viewCat action to index.php. Note: vectors (1) and (2) were later reported to affect 3.0.7-pl1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jp97-72pv-p2w5/GHSA-jp97-72pv-p2w5.json b/advisories/unreviewed/2022/05/GHSA-jp97-72pv-p2w5/GHSA-jp97-72pv-p2w5.json index a2dc143539b..cd952fc1023 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp97-72pv-p2w5/GHSA-jp97-72pv-p2w5.json +++ b/advisories/unreviewed/2022/05/GHSA-jp97-72pv-p2w5/GHSA-jp97-72pv-p2w5.json @@ -7,12 +7,8 @@ "CVE-2005-3163" ], "details": "Unspecified vulnerability in Polipo 0.9.8 and earlier allows attackers to read files outside of the web root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jp97-993h-745q/GHSA-jp97-993h-745q.json b/advisories/unreviewed/2022/05/GHSA-jp97-993h-745q/GHSA-jp97-993h-745q.json index ccbb8c3e4f5..27d1a993f57 100644 --- a/advisories/unreviewed/2022/05/GHSA-jp97-993h-745q/GHSA-jp97-993h-745q.json +++ b/advisories/unreviewed/2022/05/GHSA-jp97-993h-745q/GHSA-jp97-993h-745q.json @@ -7,12 +7,8 @@ "CVE-2021-33015" ], "details": "Cscape (All Versions prior to 9.90 SP5) lacks proper validation of user-supplied data when parsing project files. This could lead to an out-of-bounds write via an uninitialized pointer. An attacker could leverage this vulnerability to execute code in the context of the current process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpqm-4942-9wpm/GHSA-jpqm-4942-9wpm.json b/advisories/unreviewed/2022/05/GHSA-jpqm-4942-9wpm/GHSA-jpqm-4942-9wpm.json index ea5cbda605d..b2defe68488 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpqm-4942-9wpm/GHSA-jpqm-4942-9wpm.json +++ b/advisories/unreviewed/2022/05/GHSA-jpqm-4942-9wpm/GHSA-jpqm-4942-9wpm.json @@ -7,12 +7,8 @@ "CVE-2020-18878" ], "details": "Directory Traversal in Skycaiji v1.3 allows remote attackers to obtain sensitive information via the component 'index.php?m=admin&c=Tool&a=log&file=D%3A%5CphpStudy%5CWWW%5Cindex.php'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpv5-mgqh-93xq/GHSA-jpv5-mgqh-93xq.json b/advisories/unreviewed/2022/05/GHSA-jpv5-mgqh-93xq/GHSA-jpv5-mgqh-93xq.json index 1b68ce0f99b..ac508970fc3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpv5-mgqh-93xq/GHSA-jpv5-mgqh-93xq.json +++ b/advisories/unreviewed/2022/05/GHSA-jpv5-mgqh-93xq/GHSA-jpv5-mgqh-93xq.json @@ -7,12 +7,8 @@ "CVE-2021-39267" ], "details": "Persistent cross-site scripting (XSS) in the web interface of SuiteCRM before 7.11.19 allows a remote attacker to introduce arbitrary JavaScript via a Content-Type Filter bypass to upload malicious files. This occurs because text/html is blocked, but other types that allow JavaScript execution (such as text/xml) are not blocked.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jq7v-mxv6-22q4/GHSA-jq7v-mxv6-22q4.json b/advisories/unreviewed/2022/05/GHSA-jq7v-mxv6-22q4/GHSA-jq7v-mxv6-22q4.json index 0077d44fbb5..e373a472534 100644 --- a/advisories/unreviewed/2022/05/GHSA-jq7v-mxv6-22q4/GHSA-jq7v-mxv6-22q4.json +++ b/advisories/unreviewed/2022/05/GHSA-jq7v-mxv6-22q4/GHSA-jq7v-mxv6-22q4.json @@ -7,12 +7,8 @@ "CVE-2005-3006" ], "details": "The mail client in Opera before 8.50 opens attached files from the user's cache directory without warning the user, which might allow remote attackers to inject arbitrary web script and spoof attachment filenames.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jqh5-hr97-w296/GHSA-jqh5-hr97-w296.json b/advisories/unreviewed/2022/05/GHSA-jqh5-hr97-w296/GHSA-jqh5-hr97-w296.json index 8c487cd6b87..52da11e79fd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jqh5-hr97-w296/GHSA-jqh5-hr97-w296.json +++ b/advisories/unreviewed/2022/05/GHSA-jqh5-hr97-w296/GHSA-jqh5-hr97-w296.json @@ -7,12 +7,8 @@ "CVE-2005-3379" ], "details": "Multiple interpretation error in Trend Micro (1) PC-Cillin 2005 12.0.1244 with the 7.510.1002 engine and (2) OfficeScan 7.0 with the 7.510.1002 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jrrv-jm33-8jrv/GHSA-jrrv-jm33-8jrv.json b/advisories/unreviewed/2022/05/GHSA-jrrv-jm33-8jrv/GHSA-jrrv-jm33-8jrv.json index fca9363cd50..bab05383bd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-jrrv-jm33-8jrv/GHSA-jrrv-jm33-8jrv.json +++ b/advisories/unreviewed/2022/05/GHSA-jrrv-jm33-8jrv/GHSA-jrrv-jm33-8jrv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jv4m-p277-gxhh/GHSA-jv4m-p277-gxhh.json b/advisories/unreviewed/2022/05/GHSA-jv4m-p277-gxhh/GHSA-jv4m-p277-gxhh.json index c01cc76ca0c..77e8e4f7b16 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv4m-p277-gxhh/GHSA-jv4m-p277-gxhh.json +++ b/advisories/unreviewed/2022/05/GHSA-jv4m-p277-gxhh/GHSA-jv4m-p277-gxhh.json @@ -7,12 +7,8 @@ "CVE-2005-3243" ], "details": "Multiple buffer overflows in Ethereal 0.10.12 and earlier might allow remote attackers to execute arbitrary code via unknown vectors in the (1) SLIMP3 and (2) AgentX dissector.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jv95-4ggp-rvrw/GHSA-jv95-4ggp-rvrw.json b/advisories/unreviewed/2022/05/GHSA-jv95-4ggp-rvrw/GHSA-jv95-4ggp-rvrw.json index ab4db80bb67..33c0ebd61ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-jv95-4ggp-rvrw/GHSA-jv95-4ggp-rvrw.json +++ b/advisories/unreviewed/2022/05/GHSA-jv95-4ggp-rvrw/GHSA-jv95-4ggp-rvrw.json @@ -7,12 +7,8 @@ "CVE-2021-34645" ], "details": "The Shopping Cart & eCommerce Store WordPress plugin is vulnerable to Cross-Site Request Forgery via the save_currency_settings function found in the ~/admin/inc/wp_easycart_admin_initial_setup.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 5.1.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx5c-5jv3-g74m/GHSA-jx5c-5jv3-g74m.json b/advisories/unreviewed/2022/05/GHSA-jx5c-5jv3-g74m/GHSA-jx5c-5jv3-g74m.json index f0dc089b5dd..592f35d0511 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx5c-5jv3-g74m/GHSA-jx5c-5jv3-g74m.json +++ b/advisories/unreviewed/2022/05/GHSA-jx5c-5jv3-g74m/GHSA-jx5c-5jv3-g74m.json @@ -7,12 +7,8 @@ "CVE-2021-24574" ], "details": "The Simple Banner WordPress plugin before 2.10.4 does not sanitise and escape one of its settings, allowing high privilege users such as admin to use Cross-Site Scripting payload even when the unfiltered_html capability is disallowed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jxmx-pcj9-cjqp/GHSA-jxmx-pcj9-cjqp.json b/advisories/unreviewed/2022/05/GHSA-jxmx-pcj9-cjqp/GHSA-jxmx-pcj9-cjqp.json index 358f47f98b1..bac63df32bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxmx-pcj9-cjqp/GHSA-jxmx-pcj9-cjqp.json +++ b/advisories/unreviewed/2022/05/GHSA-jxmx-pcj9-cjqp/GHSA-jxmx-pcj9-cjqp.json @@ -7,12 +7,8 @@ "CVE-2020-23069" ], "details": "Path Traversal vulneraility exists in webTareas 2.0 via the extpath parameter in general_serv.php, which could let a malicious user read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jxpw-84jr-qwfq/GHSA-jxpw-84jr-qwfq.json b/advisories/unreviewed/2022/05/GHSA-jxpw-84jr-qwfq/GHSA-jxpw-84jr-qwfq.json index c1dfacc91a0..424e78a0596 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxpw-84jr-qwfq/GHSA-jxpw-84jr-qwfq.json +++ b/advisories/unreviewed/2022/05/GHSA-jxpw-84jr-qwfq/GHSA-jxpw-84jr-qwfq.json @@ -7,12 +7,8 @@ "CVE-2005-3256" ], "details": "The key selection dialogue in Enigmail before 0.92.1 can incorrectly select a key with a user ID that does not have additional information, which allows parties with that key to decrypt the message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m29r-x48f-4j3v/GHSA-m29r-x48f-4j3v.json b/advisories/unreviewed/2022/05/GHSA-m29r-x48f-4j3v/GHSA-m29r-x48f-4j3v.json index 2d396ac7c9b..fae68ea8ab5 100644 --- a/advisories/unreviewed/2022/05/GHSA-m29r-x48f-4j3v/GHSA-m29r-x48f-4j3v.json +++ b/advisories/unreviewed/2022/05/GHSA-m29r-x48f-4j3v/GHSA-m29r-x48f-4j3v.json @@ -7,12 +7,8 @@ "CVE-2005-2851" ], "details": "smb4k 0.4 and other versions before 0.6.3 allows local users to read sensitive files via a symlink attack on the (1) smb4k.tmp or (2) sudoers temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m2fg-q836-9pmq/GHSA-m2fg-q836-9pmq.json b/advisories/unreviewed/2022/05/GHSA-m2fg-q836-9pmq/GHSA-m2fg-q836-9pmq.json index 2128dd481ba..36767ac504a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2fg-q836-9pmq/GHSA-m2fg-q836-9pmq.json +++ b/advisories/unreviewed/2022/05/GHSA-m2fg-q836-9pmq/GHSA-m2fg-q836-9pmq.json @@ -7,12 +7,8 @@ "CVE-2005-3351" ], "details": "SpamAssassin 3.0.4 allows attackers to bypass spam detection via an e-mail with a large number of recipients (\"To\" addresses), which triggers a bus error in Perl.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m2q7-g4c8-3vv4/GHSA-m2q7-g4c8-3vv4.json b/advisories/unreviewed/2022/05/GHSA-m2q7-g4c8-3vv4/GHSA-m2q7-g4c8-3vv4.json index 798a1a70009..822695f83f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2q7-g4c8-3vv4/GHSA-m2q7-g4c8-3vv4.json +++ b/advisories/unreviewed/2022/05/GHSA-m2q7-g4c8-3vv4/GHSA-m2q7-g4c8-3vv4.json @@ -7,12 +7,8 @@ "CVE-2005-3347" ], "details": "Multiple directory traversal vulnerabilities in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egrouwpware before 1.0.0.009, allow remote attackers to include arbitrary files via .. (dot dot) sequences in the (1) sensor_program parameter or the (2) _SERVER[HTTP_ACCEPT_LANGUAGE] parameter, which overwrites an internal variable, a variant of CVE-2003-0536. NOTE: due to a typo in an advisory, an issue in osh was inadvertently linked to this identifier; the proper identifier for the osh issue is CVE-2005-3346.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2qf-227g-2gg9/GHSA-m2qf-227g-2gg9.json b/advisories/unreviewed/2022/05/GHSA-m2qf-227g-2gg9/GHSA-m2qf-227g-2gg9.json index cfaa1f3409f..b9cd0cc8a36 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2qf-227g-2gg9/GHSA-m2qf-227g-2gg9.json +++ b/advisories/unreviewed/2022/05/GHSA-m2qf-227g-2gg9/GHSA-m2qf-227g-2gg9.json @@ -7,12 +7,8 @@ "CVE-2005-3458" ], "details": "Unspecified vulnerability in Oracle E-Business Suite and Applications 11.0 up to 11.5.9 has unknown impact and attack vectors, as identified by Oracle Vuln# APPS19 in Workflow Cartridge.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m653-3pmm-jx6r/GHSA-m653-3pmm-jx6r.json b/advisories/unreviewed/2022/05/GHSA-m653-3pmm-jx6r/GHSA-m653-3pmm-jx6r.json index 6131f0c64ec..a25aa7ba6b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-m653-3pmm-jx6r/GHSA-m653-3pmm-jx6r.json +++ b/advisories/unreviewed/2022/05/GHSA-m653-3pmm-jx6r/GHSA-m653-3pmm-jx6r.json @@ -7,12 +7,8 @@ "CVE-2005-3263" ], "details": "Stack-based buffer overflow in UNACEV2.DLL for RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via an ACE archive containing a file with a long name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m664-mxmw-5947/GHSA-m664-mxmw-5947.json b/advisories/unreviewed/2022/05/GHSA-m664-mxmw-5947/GHSA-m664-mxmw-5947.json index c54113181c9..f68fdf0d1a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m664-mxmw-5947/GHSA-m664-mxmw-5947.json +++ b/advisories/unreviewed/2022/05/GHSA-m664-mxmw-5947/GHSA-m664-mxmw-5947.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m67q-p7gj-2wg9/GHSA-m67q-p7gj-2wg9.json b/advisories/unreviewed/2022/05/GHSA-m67q-p7gj-2wg9/GHSA-m67q-p7gj-2wg9.json index a8a1ab65eeb..b16931423f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m67q-p7gj-2wg9/GHSA-m67q-p7gj-2wg9.json +++ b/advisories/unreviewed/2022/05/GHSA-m67q-p7gj-2wg9/GHSA-m67q-p7gj-2wg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m6hh-w9c6-33hv/GHSA-m6hh-w9c6-33hv.json b/advisories/unreviewed/2022/05/GHSA-m6hh-w9c6-33hv/GHSA-m6hh-w9c6-33hv.json index 49062ee9527..04830a05dd0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m6hh-w9c6-33hv/GHSA-m6hh-w9c6-33hv.json +++ b/advisories/unreviewed/2022/05/GHSA-m6hh-w9c6-33hv/GHSA-m6hh-w9c6-33hv.json @@ -7,12 +7,8 @@ "CVE-2005-3208" ], "details": "Multiple SQL injection vulnerabilities in (1) aeNovo, (2) aeNovoShop and (3) aeNovoWYSI allow remote attackers to execute arbitrary SQL code via (a) the password parameter in control.asp, and (b) the strSQL parameter in search.asp, which can enable XSS attacks in resulting error messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m836-fc54-fwh5/GHSA-m836-fc54-fwh5.json b/advisories/unreviewed/2022/05/GHSA-m836-fc54-fwh5/GHSA-m836-fc54-fwh5.json index f996657484d..ba12c3f4bcd 100644 --- a/advisories/unreviewed/2022/05/GHSA-m836-fc54-fwh5/GHSA-m836-fc54-fwh5.json +++ b/advisories/unreviewed/2022/05/GHSA-m836-fc54-fwh5/GHSA-m836-fc54-fwh5.json @@ -7,12 +7,8 @@ "CVE-2021-35989" ], "details": "Adobe Bridge version 11.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m87c-vwp5-ww6f/GHSA-m87c-vwp5-ww6f.json b/advisories/unreviewed/2022/05/GHSA-m87c-vwp5-ww6f/GHSA-m87c-vwp5-ww6f.json index 187f0fd2d64..842231d595c 100644 --- a/advisories/unreviewed/2022/05/GHSA-m87c-vwp5-ww6f/GHSA-m87c-vwp5-ww6f.json +++ b/advisories/unreviewed/2022/05/GHSA-m87c-vwp5-ww6f/GHSA-m87c-vwp5-ww6f.json @@ -7,12 +7,8 @@ "CVE-2005-3021" ], "details": "image.php in vBulletin 3.0.9 and earlier allows remote attackers with access to the administrator panel to upload arbitrary files via the upload action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m952-67ch-qff2/GHSA-m952-67ch-qff2.json b/advisories/unreviewed/2022/05/GHSA-m952-67ch-qff2/GHSA-m952-67ch-qff2.json index f57f7369a75..21ba7f75909 100644 --- a/advisories/unreviewed/2022/05/GHSA-m952-67ch-qff2/GHSA-m952-67ch-qff2.json +++ b/advisories/unreviewed/2022/05/GHSA-m952-67ch-qff2/GHSA-m952-67ch-qff2.json @@ -7,12 +7,8 @@ "CVE-2005-3348" ], "details": "HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web content and poison web caches via CRLF sequences in the charset parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m952-g76m-q58h/GHSA-m952-g76m-q58h.json b/advisories/unreviewed/2022/05/GHSA-m952-g76m-q58h/GHSA-m952-g76m-q58h.json index 622e29dd734..defcae2270a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m952-g76m-q58h/GHSA-m952-g76m-q58h.json +++ b/advisories/unreviewed/2022/05/GHSA-m952-g76m-q58h/GHSA-m952-g76m-q58h.json @@ -7,12 +7,8 @@ "CVE-2021-30603" ], "details": "Data race in WebAudio in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m9rp-c48m-987p/GHSA-m9rp-c48m-987p.json b/advisories/unreviewed/2022/05/GHSA-m9rp-c48m-987p/GHSA-m9rp-c48m-987p.json index d01f1eace8e..317503d6782 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9rp-c48m-987p/GHSA-m9rp-c48m-987p.json +++ b/advisories/unreviewed/2022/05/GHSA-m9rp-c48m-987p/GHSA-m9rp-c48m-987p.json @@ -7,12 +7,8 @@ "CVE-2021-28630" ], "details": "Adobe Animate version 21.0.6 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose potential sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m9vv-m3gv-47x8/GHSA-m9vv-m3gv-47x8.json b/advisories/unreviewed/2022/05/GHSA-m9vv-m3gv-47x8/GHSA-m9vv-m3gv-47x8.json index 34a5610b061..831157bea41 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9vv-m3gv-47x8/GHSA-m9vv-m3gv-47x8.json +++ b/advisories/unreviewed/2022/05/GHSA-m9vv-m3gv-47x8/GHSA-m9vv-m3gv-47x8.json @@ -7,12 +7,8 @@ "CVE-2021-30602" ], "details": "Use after free in WebRTC in Google Chrome prior to 92.0.4515.159 allowed an attacker who convinced a user to visit a malicious website to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mfcq-xjjj-qpvg/GHSA-mfcq-xjjj-qpvg.json b/advisories/unreviewed/2022/05/GHSA-mfcq-xjjj-qpvg/GHSA-mfcq-xjjj-qpvg.json index 71c97e7f9a9..21ce0454001 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfcq-xjjj-qpvg/GHSA-mfcq-xjjj-qpvg.json +++ b/advisories/unreviewed/2022/05/GHSA-mfcq-xjjj-qpvg/GHSA-mfcq-xjjj-qpvg.json @@ -7,12 +7,8 @@ "CVE-2021-3458" ], "details": "The Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settings to be modified.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mfgj-x2j8-2v9f/GHSA-mfgj-x2j8-2v9f.json b/advisories/unreviewed/2022/05/GHSA-mfgj-x2j8-2v9f/GHSA-mfgj-x2j8-2v9f.json index 0620970b3a3..f64e1cd4c38 100644 --- a/advisories/unreviewed/2022/05/GHSA-mfgj-x2j8-2v9f/GHSA-mfgj-x2j8-2v9f.json +++ b/advisories/unreviewed/2022/05/GHSA-mfgj-x2j8-2v9f/GHSA-mfgj-x2j8-2v9f.json @@ -7,12 +7,8 @@ "CVE-2005-3293" ], "details": "Xerver 4.17 allows remote attackers to (1) obtain source code of scripts via a request with a trailing \".\" (dot) or (2) list directory contents via a trailing null character.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mh2j-cpx3-ww24/GHSA-mh2j-cpx3-ww24.json b/advisories/unreviewed/2022/05/GHSA-mh2j-cpx3-ww24/GHSA-mh2j-cpx3-ww24.json index fee4a3223af..a0d3ecd0561 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh2j-cpx3-ww24/GHSA-mh2j-cpx3-ww24.json +++ b/advisories/unreviewed/2022/05/GHSA-mh2j-cpx3-ww24/GHSA-mh2j-cpx3-ww24.json @@ -7,12 +7,8 @@ "CVE-2005-3350" ], "details": "libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -136,9 +132,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mh98-9c79-r68x/GHSA-mh98-9c79-r68x.json b/advisories/unreviewed/2022/05/GHSA-mh98-9c79-r68x/GHSA-mh98-9c79-r68x.json index e2402b1f68f..13cb19ed6f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh98-9c79-r68x/GHSA-mh98-9c79-r68x.json +++ b/advisories/unreviewed/2022/05/GHSA-mh98-9c79-r68x/GHSA-mh98-9c79-r68x.json @@ -7,12 +7,8 @@ "CVE-2005-3201" ], "details": "SQL injection vulnerability in news.php for Utopia News Pro (UNP) 1.1.3, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to execute arbitrary SQL via the newsid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mhfv-56w6-6vgg/GHSA-mhfv-56w6-6vgg.json b/advisories/unreviewed/2022/05/GHSA-mhfv-56w6-6vgg/GHSA-mhfv-56w6-6vgg.json index 10a62308af6..db91f61e6e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhfv-56w6-6vgg/GHSA-mhfv-56w6-6vgg.json +++ b/advisories/unreviewed/2022/05/GHSA-mhfv-56w6-6vgg/GHSA-mhfv-56w6-6vgg.json @@ -7,12 +7,8 @@ "CVE-2005-3116" ], "details": "Stack-based buffer overflow in a shared library as used by the Volume Manager daemon (vmd) in VERITAS NetBackup Enterprise Server 5.0 MP1 to MP5 and 5.1 up to MP3A allows remote attackers to execute arbitrary code via a crafted packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mhv7-255x-9335/GHSA-mhv7-255x-9335.json b/advisories/unreviewed/2022/05/GHSA-mhv7-255x-9335/GHSA-mhv7-255x-9335.json index d2dde041e76..b53d742f4ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhv7-255x-9335/GHSA-mhv7-255x-9335.json +++ b/advisories/unreviewed/2022/05/GHSA-mhv7-255x-9335/GHSA-mhv7-255x-9335.json @@ -7,12 +7,8 @@ "CVE-2005-3005" ], "details": "Helpdesk Software Hesk allows remote attackers to bypass authentication for (1) admin.php and (2) admin_main.php by modifying the PHPSESSID session ID parameter or cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mj2p-mqjh-gc8g/GHSA-mj2p-mqjh-gc8g.json b/advisories/unreviewed/2022/05/GHSA-mj2p-mqjh-gc8g/GHSA-mj2p-mqjh-gc8g.json index 494800f4455..03820fcf568 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj2p-mqjh-gc8g/GHSA-mj2p-mqjh-gc8g.json +++ b/advisories/unreviewed/2022/05/GHSA-mj2p-mqjh-gc8g/GHSA-mj2p-mqjh-gc8g.json @@ -7,12 +7,8 @@ "CVE-2005-2852" ], "details": "Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the \"worm.rbot.ccc\" worm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mq36-cw38-g8hv/GHSA-mq36-cw38-g8hv.json b/advisories/unreviewed/2022/05/GHSA-mq36-cw38-g8hv/GHSA-mq36-cw38-g8hv.json index 6391b4c7a95..1f77a9b3c5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq36-cw38-g8hv/GHSA-mq36-cw38-g8hv.json +++ b/advisories/unreviewed/2022/05/GHSA-mq36-cw38-g8hv/GHSA-mq36-cw38-g8hv.json @@ -7,12 +7,8 @@ "CVE-2005-3128" ], "details": "Cross-site scripting (XSS) vulnerability in add.php in Address Add Plugin 1.9 and 2.0 for Squirrelmail allows remote attackers to inject arbitrary web script or HTML via the IMG tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mqg5-xjp9-584v/GHSA-mqg5-xjp9-584v.json b/advisories/unreviewed/2022/05/GHSA-mqg5-xjp9-584v/GHSA-mqg5-xjp9-584v.json index 7f93d1d8934..61d7a29c1e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqg5-xjp9-584v/GHSA-mqg5-xjp9-584v.json +++ b/advisories/unreviewed/2022/05/GHSA-mqg5-xjp9-584v/GHSA-mqg5-xjp9-584v.json @@ -7,12 +7,8 @@ "CVE-2005-3262" ], "details": "Format string vulnerability in RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via format string specifiers in a UUE/XXE file, which are not properly handled when WinRAR displays diagnostic errors related to an invalid filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr85-wvjc-ppxp/GHSA-mr85-wvjc-ppxp.json b/advisories/unreviewed/2022/05/GHSA-mr85-wvjc-ppxp/GHSA-mr85-wvjc-ppxp.json index 0169b0a45ea..1c85f6a3bb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr85-wvjc-ppxp/GHSA-mr85-wvjc-ppxp.json +++ b/advisories/unreviewed/2022/05/GHSA-mr85-wvjc-ppxp/GHSA-mr85-wvjc-ppxp.json @@ -7,12 +7,8 @@ "CVE-2005-2870" ], "details": "Unknown vulnerability in the net-svc script on Solaris 10 allows remote authenticated users to execute arbitrary code on a DHCP client via certain DHCP responses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mrvp-fj37-hr7c/GHSA-mrvp-fj37-hr7c.json b/advisories/unreviewed/2022/05/GHSA-mrvp-fj37-hr7c/GHSA-mrvp-fj37-hr7c.json index c26aab1a1f9..19d8758e6db 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrvp-fj37-hr7c/GHSA-mrvp-fj37-hr7c.json +++ b/advisories/unreviewed/2022/05/GHSA-mrvp-fj37-hr7c/GHSA-mrvp-fj37-hr7c.json @@ -7,12 +7,8 @@ "CVE-2005-2866" ], "details": "Mercora IMRadio 4.0.0.0 stores usernames and passwords in plaintext in the MercoraClient\\Profiles registry key, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mv4v-62vf-3p9h/GHSA-mv4v-62vf-3p9h.json b/advisories/unreviewed/2022/05/GHSA-mv4v-62vf-3p9h/GHSA-mv4v-62vf-3p9h.json index a0ea3ea0be7..f1d458e1658 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv4v-62vf-3p9h/GHSA-mv4v-62vf-3p9h.json +++ b/advisories/unreviewed/2022/05/GHSA-mv4v-62vf-3p9h/GHSA-mv4v-62vf-3p9h.json @@ -7,12 +7,8 @@ "CVE-2021-20758" ], "details": "Cross-site request forgery (CSRF) vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to hijack the authentication of administrators and perform an arbitrary operation via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mvc3-rm7h-27g3/GHSA-mvc3-rm7h-27g3.json b/advisories/unreviewed/2022/05/GHSA-mvc3-rm7h-27g3/GHSA-mvc3-rm7h-27g3.json index f43ca7c1449..8d1bc063da2 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvc3-rm7h-27g3/GHSA-mvc3-rm7h-27g3.json +++ b/advisories/unreviewed/2022/05/GHSA-mvc3-rm7h-27g3/GHSA-mvc3-rm7h-27g3.json @@ -7,12 +7,8 @@ "CVE-2005-3383" ], "details": "SQL injection vulnerability in Techno Dreams Announcement script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in admin/login.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mvcx-ggh9-mwc6/GHSA-mvcx-ggh9-mwc6.json b/advisories/unreviewed/2022/05/GHSA-mvcx-ggh9-mwc6/GHSA-mvcx-ggh9-mwc6.json index a445e19d82e..550f1a150fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvcx-ggh9-mwc6/GHSA-mvcx-ggh9-mwc6.json +++ b/advisories/unreviewed/2022/05/GHSA-mvcx-ggh9-mwc6/GHSA-mvcx-ggh9-mwc6.json @@ -7,12 +7,8 @@ "CVE-2021-28002" ], "details": "A persistent cross-site scripting vulnerability was discovered in the Excerpt parameter in Textpattern CMS 4.9.0 which allows remote attackers to execute arbitrary code via a crafted payload entered into the URL field. The vulnerability is triggered by users visiting the 'Articles' page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mvf8-9rfx-399r/GHSA-mvf8-9rfx-399r.json b/advisories/unreviewed/2022/05/GHSA-mvf8-9rfx-399r/GHSA-mvf8-9rfx-399r.json index 338a634f34b..770ce8fdf97 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvf8-9rfx-399r/GHSA-mvf8-9rfx-399r.json +++ b/advisories/unreviewed/2022/05/GHSA-mvf8-9rfx-399r/GHSA-mvf8-9rfx-399r.json @@ -7,12 +7,8 @@ "CVE-2005-2855" ], "details": "Cross-site scripting (XSS) vulnerability in Unclassified NewsBoard 1.5.3 allows remote attackers to inject arbitrary web script or HTML via the description field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mvx7-rq9v-559v/GHSA-mvx7-rq9v-559v.json b/advisories/unreviewed/2022/05/GHSA-mvx7-rq9v-559v/GHSA-mvx7-rq9v-559v.json index 7c2ac862b00..9cd23d14f01 100644 --- a/advisories/unreviewed/2022/05/GHSA-mvx7-rq9v-559v/GHSA-mvx7-rq9v-559v.json +++ b/advisories/unreviewed/2022/05/GHSA-mvx7-rq9v-559v/GHSA-mvx7-rq9v-559v.json @@ -7,12 +7,8 @@ "CVE-2021-0591" ], "details": "In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast receivers due to a confused deputy. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.1Android ID: A-179386960", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwrf-3p8f-jpjf/GHSA-mwrf-3p8f-jpjf.json b/advisories/unreviewed/2022/05/GHSA-mwrf-3p8f-jpjf/GHSA-mwrf-3p8f-jpjf.json index 962f3632bb5..074c6fe0101 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwrf-3p8f-jpjf/GHSA-mwrf-3p8f-jpjf.json +++ b/advisories/unreviewed/2022/05/GHSA-mwrf-3p8f-jpjf/GHSA-mwrf-3p8f-jpjf.json @@ -7,12 +7,8 @@ "CVE-2005-3285" ], "details": "Cross-site scripting (XSS) vulnerability in comersus_backoffice_searchItemForm.asp in Comersus BackOffice Plus allows remote attackers to inject arbitrary web script or HTML via the (1) forwardTo1, (2) forwardTo2, (3) nameFT1, or (4) nameFT2 parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mwxf-5jx9-94w6/GHSA-mwxf-5jx9-94w6.json b/advisories/unreviewed/2022/05/GHSA-mwxf-5jx9-94w6/GHSA-mwxf-5jx9-94w6.json index abcbf2197d2..70ebbaeae46 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwxf-5jx9-94w6/GHSA-mwxf-5jx9-94w6.json +++ b/advisories/unreviewed/2022/05/GHSA-mwxf-5jx9-94w6/GHSA-mwxf-5jx9-94w6.json @@ -7,12 +7,8 @@ "CVE-2005-3361" ], "details": "Cross-site scripting (XSS) vulnerability in forum/index.php in FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the nome parameter in a login operation, a variant of CVE-2005-3306.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p255-pqjq-g73g/GHSA-p255-pqjq-g73g.json b/advisories/unreviewed/2022/05/GHSA-p255-pqjq-g73g/GHSA-p255-pqjq-g73g.json index f619030e326..805516f64e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-p255-pqjq-g73g/GHSA-p255-pqjq-g73g.json +++ b/advisories/unreviewed/2022/05/GHSA-p255-pqjq-g73g/GHSA-p255-pqjq-g73g.json @@ -7,12 +7,8 @@ "CVE-2005-3046" ], "details": "SQL injection vulnerability in password.php in PhpMyFaq 1.5.1 allows remote attackers to modify SQL queries and gain administrator privileges via the user field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p2fh-pcwg-6jc4/GHSA-p2fh-pcwg-6jc4.json b/advisories/unreviewed/2022/05/GHSA-p2fh-pcwg-6jc4/GHSA-p2fh-pcwg-6jc4.json index 50513e36be0..4e7fb75d453 100644 --- a/advisories/unreviewed/2022/05/GHSA-p2fh-pcwg-6jc4/GHSA-p2fh-pcwg-6jc4.json +++ b/advisories/unreviewed/2022/05/GHSA-p2fh-pcwg-6jc4/GHSA-p2fh-pcwg-6jc4.json @@ -7,12 +7,8 @@ "CVE-2005-3371" ], "details": "Multiple interpretation error in AVG 7 7.0.323 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p364-qwq2-fh4v/GHSA-p364-qwq2-fh4v.json b/advisories/unreviewed/2022/05/GHSA-p364-qwq2-fh4v/GHSA-p364-qwq2-fh4v.json index 4ed14646a39..ec54f7b96bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-p364-qwq2-fh4v/GHSA-p364-qwq2-fh4v.json +++ b/advisories/unreviewed/2022/05/GHSA-p364-qwq2-fh4v/GHSA-p364-qwq2-fh4v.json @@ -7,12 +7,8 @@ "CVE-2005-3089" ], "details": "Firefox 1.0.6 allows attackers to cause a denial of service (crash) via a Proxy Auto-Config (PAC) script that uses an eval statement. NOTE: it is not clear whether an untrusted party has any role in triggering this issue, so it might not be a vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3jh-342h-w8hj/GHSA-p3jh-342h-w8hj.json b/advisories/unreviewed/2022/05/GHSA-p3jh-342h-w8hj/GHSA-p3jh-342h-w8hj.json index a277e0e9a85..ac7ca8ec9ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3jh-342h-w8hj/GHSA-p3jh-342h-w8hj.json +++ b/advisories/unreviewed/2022/05/GHSA-p3jh-342h-w8hj/GHSA-p3jh-342h-w8hj.json @@ -7,12 +7,8 @@ "CVE-2021-22237" ], "details": "Under specialized conditions, GitLab may allow a user with an impersonation token to perform Git actions even if impersonation is disabled. This vulnerability is present in GitLab CE/EE versions before 13.12.9, 14.0.7, 14.1.2", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4jj-572p-9492/GHSA-p4jj-572p-9492.json b/advisories/unreviewed/2022/05/GHSA-p4jj-572p-9492/GHSA-p4jj-572p-9492.json index 644808036b5..55ed3171739 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4jj-572p-9492/GHSA-p4jj-572p-9492.json +++ b/advisories/unreviewed/2022/05/GHSA-p4jj-572p-9492/GHSA-p4jj-572p-9492.json @@ -7,12 +7,8 @@ "CVE-2005-3037" ], "details": "Cross-site scripting (XSS) vulnerability in Handy Address Book Server 1.1 allows remote attackers to inject arbitrary web script or HTML via the SEARCHTEXT parameter in a demos URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p4qx-pmxg-37rx/GHSA-p4qx-pmxg-37rx.json b/advisories/unreviewed/2022/05/GHSA-p4qx-pmxg-37rx/GHSA-p4qx-pmxg-37rx.json index 19246b4168b..f7b8b64523a 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4qx-pmxg-37rx/GHSA-p4qx-pmxg-37rx.json +++ b/advisories/unreviewed/2022/05/GHSA-p4qx-pmxg-37rx/GHSA-p4qx-pmxg-37rx.json @@ -7,12 +7,8 @@ "CVE-2005-3304" ], "details": "Multiple SQL injection vulnerabilities in PHP-Nuke 7.8 allow remote attackers to modify SQL queries and execute arbitrary PHP code via (1) the username parameter in the Your Account page, (2) the url parameter in the Downloads module, and (3) the description parameter in the Web_Links module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p4vc-pf7r-2vq9/GHSA-p4vc-pf7r-2vq9.json b/advisories/unreviewed/2022/05/GHSA-p4vc-pf7r-2vq9/GHSA-p4vc-pf7r-2vq9.json index 09e2394a9df..601bb2ee64b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4vc-pf7r-2vq9/GHSA-p4vc-pf7r-2vq9.json +++ b/advisories/unreviewed/2022/05/GHSA-p4vc-pf7r-2vq9/GHSA-p4vc-pf7r-2vq9.json @@ -7,12 +7,8 @@ "CVE-2005-2889" ], "details": "Check Point NGX R60 does not properly verify packets against the predefined service group \"CIFS\" rule, which allows remote attackers to bypass intended restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p556-2vf8-wg6x/GHSA-p556-2vf8-wg6x.json b/advisories/unreviewed/2022/05/GHSA-p556-2vf8-wg6x/GHSA-p556-2vf8-wg6x.json index ec18d9932a5..5f2b26d50d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-p556-2vf8-wg6x/GHSA-p556-2vf8-wg6x.json +++ b/advisories/unreviewed/2022/05/GHSA-p556-2vf8-wg6x/GHSA-p556-2vf8-wg6x.json @@ -7,12 +7,8 @@ "CVE-2005-2999" ], "details": "PHP Advanced Transfer Manager 1.30 allows remote attackers to obtain sensitive PHP configuration information via a direct request to test.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p6jp-3ccj-rmhh/GHSA-p6jp-3ccj-rmhh.json b/advisories/unreviewed/2022/05/GHSA-p6jp-3ccj-rmhh/GHSA-p6jp-3ccj-rmhh.json index 005dbbe780e..eb566c286bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6jp-3ccj-rmhh/GHSA-p6jp-3ccj-rmhh.json +++ b/advisories/unreviewed/2022/05/GHSA-p6jp-3ccj-rmhh/GHSA-p6jp-3ccj-rmhh.json @@ -7,12 +7,8 @@ "CVE-2021-35986" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Type Confusion vulnerability. An unauthenticated attacker could leverage this vulnerability to read arbitrary system information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p6mp-fch9-588r/GHSA-p6mp-fch9-588r.json b/advisories/unreviewed/2022/05/GHSA-p6mp-fch9-588r/GHSA-p6mp-fch9-588r.json index ac4edd04aa2..e2add454bd7 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6mp-fch9-588r/GHSA-p6mp-fch9-588r.json +++ b/advisories/unreviewed/2022/05/GHSA-p6mp-fch9-588r/GHSA-p6mp-fch9-588r.json @@ -7,12 +7,8 @@ "CVE-2021-30604" ], "details": "Use after free in ANGLE in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p755-fv54-jvjv/GHSA-p755-fv54-jvjv.json b/advisories/unreviewed/2022/05/GHSA-p755-fv54-jvjv/GHSA-p755-fv54-jvjv.json index 9be01612b2b..da9e31ceeef 100644 --- a/advisories/unreviewed/2022/05/GHSA-p755-fv54-jvjv/GHSA-p755-fv54-jvjv.json +++ b/advisories/unreviewed/2022/05/GHSA-p755-fv54-jvjv/GHSA-p755-fv54-jvjv.json @@ -7,12 +7,8 @@ "CVE-2005-3139" ], "details": "Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p7w3-xcqr-pr4r/GHSA-p7w3-xcqr-pr4r.json b/advisories/unreviewed/2022/05/GHSA-p7w3-xcqr-pr4r/GHSA-p7w3-xcqr-pr4r.json index 20f0eed623c..8d5375938a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-p7w3-xcqr-pr4r/GHSA-p7w3-xcqr-pr4r.json +++ b/advisories/unreviewed/2022/05/GHSA-p7w3-xcqr-pr4r/GHSA-p7w3-xcqr-pr4r.json @@ -7,12 +7,8 @@ "CVE-2021-34715" ], "details": "A vulnerability in the image verification function of Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow an authenticated, remote attacker to execute code with internal user privileges on the underlying operating system. The vulnerability is due to insufficient validation of the content of upgrade packages. An attacker could exploit this vulnerability by uploading a malicious archive to the Upgrade page of the administrative web interface. A successful exploit could allow the attacker to execute code with user-level privileges (the _nobody account) on the underlying operating system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p843-36j6-32cg/GHSA-p843-36j6-32cg.json b/advisories/unreviewed/2022/05/GHSA-p843-36j6-32cg/GHSA-p843-36j6-32cg.json index aa390973fd3..f4a4ce315e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-p843-36j6-32cg/GHSA-p843-36j6-32cg.json +++ b/advisories/unreviewed/2022/05/GHSA-p843-36j6-32cg/GHSA-p843-36j6-32cg.json @@ -7,12 +7,8 @@ "CVE-2021-20760" ], "details": "Improper input validation vulnerability in User Profile of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to alter the data of User Profile without the appropriate privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p94j-988p-299p/GHSA-p94j-988p-299p.json b/advisories/unreviewed/2022/05/GHSA-p94j-988p-299p/GHSA-p94j-988p-299p.json index 1205bcfbfd8..bd60edc3ff3 100644 --- a/advisories/unreviewed/2022/05/GHSA-p94j-988p-299p/GHSA-p94j-988p-299p.json +++ b/advisories/unreviewed/2022/05/GHSA-p94j-988p-299p/GHSA-p94j-988p-299p.json @@ -7,12 +7,8 @@ "CVE-2005-3090" ], "details": "Cross-site scripting (XSS) vulnerability in bug_actiongroup_page.php in Mantis 0.19.0a1 through 1.0.0a3 allows remote attackers to inject arbitrary web script or HTML via the summary of the bug, which is not quoted when view_all_bug_page.php is used to delete the bug, as identified by bug#0006002, a different vulnerability than CVE-2005-2557.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p9gx-q4r9-mm37/GHSA-p9gx-q4r9-mm37.json b/advisories/unreviewed/2022/05/GHSA-p9gx-q4r9-mm37/GHSA-p9gx-q4r9-mm37.json index e524208b70e..c27d0dbe7ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9gx-q4r9-mm37/GHSA-p9gx-q4r9-mm37.json +++ b/advisories/unreviewed/2022/05/GHSA-p9gx-q4r9-mm37/GHSA-p9gx-q4r9-mm37.json @@ -7,12 +7,8 @@ "CVE-2005-3211" ], "details": "Multiple interpretation error in unspecified versions of BitDefender Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pc75-c72f-q2qg/GHSA-pc75-c72f-q2qg.json b/advisories/unreviewed/2022/05/GHSA-pc75-c72f-q2qg/GHSA-pc75-c72f-q2qg.json index 18b53371a50..961cb003393 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc75-c72f-q2qg/GHSA-pc75-c72f-q2qg.json +++ b/advisories/unreviewed/2022/05/GHSA-pc75-c72f-q2qg/GHSA-pc75-c72f-q2qg.json @@ -7,12 +7,8 @@ "CVE-2021-35983" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Use-after-free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pf9j-q5x3-c4pq/GHSA-pf9j-q5x3-c4pq.json b/advisories/unreviewed/2022/05/GHSA-pf9j-q5x3-c4pq/GHSA-pf9j-q5x3-c4pq.json index cef2871a01b..116663746b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf9j-q5x3-c4pq/GHSA-pf9j-q5x3-c4pq.json +++ b/advisories/unreviewed/2022/05/GHSA-pf9j-q5x3-c4pq/GHSA-pf9j-q5x3-c4pq.json @@ -7,12 +7,8 @@ "CVE-2005-3343" ], "details": "tkdiff before 4.1.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pfcm-j5pc-4mx7/GHSA-pfcm-j5pc-4mx7.json b/advisories/unreviewed/2022/05/GHSA-pfcm-j5pc-4mx7/GHSA-pfcm-j5pc-4mx7.json index c6c3395f3ca..9e25dc21d3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfcm-j5pc-4mx7/GHSA-pfcm-j5pc-4mx7.json +++ b/advisories/unreviewed/2022/05/GHSA-pfcm-j5pc-4mx7/GHSA-pfcm-j5pc-4mx7.json @@ -7,12 +7,8 @@ "CVE-2020-25927" ], "details": "The DNS feature in InterNiche NicheStack TCP/IP 4.0.1 is affected by: Out-of-bounds Read. The impact is: a denial of service (remote). The component is: DNS response processing in function: dns_upcall(). The attack vector is: a specific DNS response packet. The code does not check whether the number of queries/responses specified in the DNS packet header corresponds to the query/response data available in the DNS packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ph8h-gv7g-5q82/GHSA-ph8h-gv7g-5q82.json b/advisories/unreviewed/2022/05/GHSA-ph8h-gv7g-5q82/GHSA-ph8h-gv7g-5q82.json index 135bb7af2bf..f91902515e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-ph8h-gv7g-5q82/GHSA-ph8h-gv7g-5q82.json +++ b/advisories/unreviewed/2022/05/GHSA-ph8h-gv7g-5q82/GHSA-ph8h-gv7g-5q82.json @@ -7,12 +7,8 @@ "CVE-2005-2853" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in GuppY 4.5.3a and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the pg parameter to printfaq.php, or the (2) Referer or (3) User-Agent HTTP headers, which are not properly handled by error.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-phwp-cpcf-rpx4/GHSA-phwp-cpcf-rpx4.json b/advisories/unreviewed/2022/05/GHSA-phwp-cpcf-rpx4/GHSA-phwp-cpcf-rpx4.json index f428dfb3e9b..26bc6a82eb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-phwp-cpcf-rpx4/GHSA-phwp-cpcf-rpx4.json +++ b/advisories/unreviewed/2022/05/GHSA-phwp-cpcf-rpx4/GHSA-phwp-cpcf-rpx4.json @@ -7,12 +7,8 @@ "CVE-2020-18879" ], "details": "Unrestricted File Upload in Bludit v3.8.1 allows remote attackers to execute arbitrary code by uploading malicious files via the component 'bl-kereln/ajax/upload-logo.php'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj3p-g86x-695g/GHSA-pj3p-g86x-695g.json b/advisories/unreviewed/2022/05/GHSA-pj3p-g86x-695g/GHSA-pj3p-g86x-695g.json index 38b994c7c03..ba083e3bb13 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj3p-g86x-695g/GHSA-pj3p-g86x-695g.json +++ b/advisories/unreviewed/2022/05/GHSA-pj3p-g86x-695g/GHSA-pj3p-g86x-695g.json @@ -7,12 +7,8 @@ "CVE-2005-3160" ], "details": "Multiple SQL injection vulnerabilities in photogallery.php in PHP-Fusion allow remote attackers to execute arbitrary SQL commands via the (1) album and (2) photo parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pj42-h5q2-22w3/GHSA-pj42-h5q2-22w3.json b/advisories/unreviewed/2022/05/GHSA-pj42-h5q2-22w3/GHSA-pj42-h5q2-22w3.json index f477d6b6ff6..ef02a9c6641 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj42-h5q2-22w3/GHSA-pj42-h5q2-22w3.json +++ b/advisories/unreviewed/2022/05/GHSA-pj42-h5q2-22w3/GHSA-pj42-h5q2-22w3.json @@ -7,12 +7,8 @@ "CVE-2005-2950" ], "details": "Cross-site scripting (XSS) vulnerability in Sawmill 7.0.0 through 7.1.13 allows remote attackers to inject arbitrary web script or HTML via the query string in an HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pjfm-h5v6-8h69/GHSA-pjfm-h5v6-8h69.json b/advisories/unreviewed/2022/05/GHSA-pjfm-h5v6-8h69/GHSA-pjfm-h5v6-8h69.json index 82ad5258c35..99441f2e836 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjfm-h5v6-8h69/GHSA-pjfm-h5v6-8h69.json +++ b/advisories/unreviewed/2022/05/GHSA-pjfm-h5v6-8h69/GHSA-pjfm-h5v6-8h69.json @@ -7,12 +7,8 @@ "CVE-2005-3077" ], "details": "Microsoft Internet Explorer 5.2.3 for Mac OS allows remote attackers to cause a denial of service (crash) via a web page with malformed attributes in a BGSOUND tag, possibly involving double-quotes in an about: URI.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmff-8657-qj6f/GHSA-pmff-8657-qj6f.json b/advisories/unreviewed/2022/05/GHSA-pmff-8657-qj6f/GHSA-pmff-8657-qj6f.json index d83d4aa2413..3e7a0871a1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmff-8657-qj6f/GHSA-pmff-8657-qj6f.json +++ b/advisories/unreviewed/2022/05/GHSA-pmff-8657-qj6f/GHSA-pmff-8657-qj6f.json @@ -7,12 +7,8 @@ "CVE-2005-3114" ], "details": "Buffer overflow in the ActiveX control for NateOn Messenger (NateonDownloadManager.ocx) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long third argument to the GotNate.Excute method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmgf-6f22-vx8p/GHSA-pmgf-6f22-vx8p.json b/advisories/unreviewed/2022/05/GHSA-pmgf-6f22-vx8p/GHSA-pmgf-6f22-vx8p.json index 729407027be..e2078dfe7e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmgf-6f22-vx8p/GHSA-pmgf-6f22-vx8p.json +++ b/advisories/unreviewed/2022/05/GHSA-pmgf-6f22-vx8p/GHSA-pmgf-6f22-vx8p.json @@ -7,12 +7,8 @@ "CVE-2005-3134" ], "details": "Citrix Metaframe Presentation Server 3.0 and 4.0 allows remote attackers to bypass policy restrictions by downloading the launch.ica file and changing the client device name (ClientName).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmj4-q5f6-462c/GHSA-pmj4-q5f6-462c.json b/advisories/unreviewed/2022/05/GHSA-pmj4-q5f6-462c/GHSA-pmj4-q5f6-462c.json index 4ff4d2e3696..03f7906687f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmj4-q5f6-462c/GHSA-pmj4-q5f6-462c.json +++ b/advisories/unreviewed/2022/05/GHSA-pmj4-q5f6-462c/GHSA-pmj4-q5f6-462c.json @@ -7,12 +7,8 @@ "CVE-2021-0573" ], "details": "In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187231635", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pph2-4pg7-3c4v/GHSA-pph2-4pg7-3c4v.json b/advisories/unreviewed/2022/05/GHSA-pph2-4pg7-3c4v/GHSA-pph2-4pg7-3c4v.json index b317ba12196..7ea9a494a79 100644 --- a/advisories/unreviewed/2022/05/GHSA-pph2-4pg7-3c4v/GHSA-pph2-4pg7-3c4v.json +++ b/advisories/unreviewed/2022/05/GHSA-pph2-4pg7-3c4v/GHSA-pph2-4pg7-3c4v.json @@ -7,12 +7,8 @@ "CVE-2005-3224" ], "details": "Multiple interpretation error in unspecified versions of AntiVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ppmq-4xqj-3623/GHSA-ppmq-4xqj-3623.json b/advisories/unreviewed/2022/05/GHSA-ppmq-4xqj-3623/GHSA-ppmq-4xqj-3623.json index 24682589efa..cb44a7cf878 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppmq-4xqj-3623/GHSA-ppmq-4xqj-3623.json +++ b/advisories/unreviewed/2022/05/GHSA-ppmq-4xqj-3623/GHSA-ppmq-4xqj-3623.json @@ -7,12 +7,8 @@ "CVE-2005-2993" ], "details": "Unspecified vulnerability in the FTP Daemon (ftpd) for HP Tru64 UNIX 4.0F PK8 and other versions up to HP Tru64 UNIX 5.1B-3, and HP-UX B.11.00, B.11.04, B.11.11, and B.11.23, allows remote authenticated users to cause a denial of service (hang).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ppw8-45pr-787p/GHSA-ppw8-45pr-787p.json b/advisories/unreviewed/2022/05/GHSA-ppw8-45pr-787p/GHSA-ppw8-45pr-787p.json index d7daad40bb4..24b22c62189 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppw8-45pr-787p/GHSA-ppw8-45pr-787p.json +++ b/advisories/unreviewed/2022/05/GHSA-ppw8-45pr-787p/GHSA-ppw8-45pr-787p.json @@ -7,12 +7,8 @@ "CVE-2005-3022" ], "details": "Multiple SQL injection vulnerabilities in vBulletin 3.0.9 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) announcement parameter to announcement.php, (2) userid parameter to user.php, (3) calendar parameter to admincalendar.php, (4) cronid parameter to cronlog.php, (5) usergroupid parameter to email.php, (6) help parameter to help.php, (7) rvt parameter to language.php, (8) keep parameter to phrase.php, or (9) updateprofilepic parameter to usertools.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pq94-73jh-jg9w/GHSA-pq94-73jh-jg9w.json b/advisories/unreviewed/2022/05/GHSA-pq94-73jh-jg9w/GHSA-pq94-73jh-jg9w.json index 08eb4d414f3..6adcaebc172 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq94-73jh-jg9w/GHSA-pq94-73jh-jg9w.json +++ b/advisories/unreviewed/2022/05/GHSA-pq94-73jh-jg9w/GHSA-pq94-73jh-jg9w.json @@ -7,12 +7,8 @@ "CVE-2020-25352" ], "details": "A stored cross-site scripting (XSS) vulnerability in the /devices.php function inrConfig 3.9.5 has been fixed for version 3.9.6. This vulnerability allowed remote attackers to perform arbitrary Javascript execution through entering a crafted payload into the 'Model' field then saving.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pq9v-7wpp-6h45/GHSA-pq9v-7wpp-6h45.json b/advisories/unreviewed/2022/05/GHSA-pq9v-7wpp-6h45/GHSA-pq9v-7wpp-6h45.json index b6656b56a9e..66d6b71d113 100644 --- a/advisories/unreviewed/2022/05/GHSA-pq9v-7wpp-6h45/GHSA-pq9v-7wpp-6h45.json +++ b/advisories/unreviewed/2022/05/GHSA-pq9v-7wpp-6h45/GHSA-pq9v-7wpp-6h45.json @@ -7,12 +7,8 @@ "CVE-2021-39270" ], "details": "In Ping Identity RSA SecurID Integration Kit before 3.2, user impersonation can occur.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pr2v-gvjp-qp66/GHSA-pr2v-gvjp-qp66.json b/advisories/unreviewed/2022/05/GHSA-pr2v-gvjp-qp66/GHSA-pr2v-gvjp-qp66.json index 0441573d002..a359440fb21 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr2v-gvjp-qp66/GHSA-pr2v-gvjp-qp66.json +++ b/advisories/unreviewed/2022/05/GHSA-pr2v-gvjp-qp66/GHSA-pr2v-gvjp-qp66.json @@ -7,12 +7,8 @@ "CVE-2005-3279" ], "details": "Stack-based buffer overflow in the vgasco_printf function in Jan Kybic BitMap Viewer (BMV) 1.2, when compiled with the M_UNIX flag and running setuid, allows local users to gain privileges via a long filename in the -b command line option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pr7v-p4jw-8rhx/GHSA-pr7v-p4jw-8rhx.json b/advisories/unreviewed/2022/05/GHSA-pr7v-p4jw-8rhx/GHSA-pr7v-p4jw-8rhx.json index 79cd066b794..0cf9b2cc2a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr7v-p4jw-8rhx/GHSA-pr7v-p4jw-8rhx.json +++ b/advisories/unreviewed/2022/05/GHSA-pr7v-p4jw-8rhx/GHSA-pr7v-p4jw-8rhx.json @@ -7,12 +7,8 @@ "CVE-2005-3276" ], "details": "The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pv46-7c32-rmg5/GHSA-pv46-7c32-rmg5.json b/advisories/unreviewed/2022/05/GHSA-pv46-7c32-rmg5/GHSA-pv46-7c32-rmg5.json index 888ba5f313d..c8a9859c350 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv46-7c32-rmg5/GHSA-pv46-7c32-rmg5.json +++ b/advisories/unreviewed/2022/05/GHSA-pv46-7c32-rmg5/GHSA-pv46-7c32-rmg5.json @@ -7,12 +7,8 @@ "CVE-2021-20792" ], "details": "Cross-site scripting vulnerability in Quiz And Survey Master versions prior to 7.1.14 allows a remote attacker to inject arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pv5g-gpjf-g9xg/GHSA-pv5g-gpjf-g9xg.json b/advisories/unreviewed/2022/05/GHSA-pv5g-gpjf-g9xg/GHSA-pv5g-gpjf-g9xg.json index 300c3712b08..e7c61207584 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv5g-gpjf-g9xg/GHSA-pv5g-gpjf-g9xg.json +++ b/advisories/unreviewed/2022/05/GHSA-pv5g-gpjf-g9xg/GHSA-pv5g-gpjf-g9xg.json @@ -7,12 +7,8 @@ "CVE-2005-3289" ], "details": "LSCFG in IBM AIX 5.2 and 5.3 does not create temporary files securely, which allows local users to corrupt /etc/passwd and possibly other system files via the trace file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pv93-pr8m-hxxx/GHSA-pv93-pr8m-hxxx.json b/advisories/unreviewed/2022/05/GHSA-pv93-pr8m-hxxx/GHSA-pv93-pr8m-hxxx.json index ed11e012a58..d19778e5e30 100644 --- a/advisories/unreviewed/2022/05/GHSA-pv93-pr8m-hxxx/GHSA-pv93-pr8m-hxxx.json +++ b/advisories/unreviewed/2022/05/GHSA-pv93-pr8m-hxxx/GHSA-pv93-pr8m-hxxx.json @@ -7,12 +7,8 @@ "CVE-2005-2997" ], "details": "Multiple directory traversal vulnerabilities in PHP Advanced Transfer Manager 1.30 allow remote attackers to read arbitrary files via \"..\" sequences in (1) the currentdir parameter to txt.php, or the current_dir parameter to (2) htm.php or (3) html.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pw5c-m847-fmqf/GHSA-pw5c-m847-fmqf.json b/advisories/unreviewed/2022/05/GHSA-pw5c-m847-fmqf/GHSA-pw5c-m847-fmqf.json index 8ca4cea73ad..c1a884ccd9c 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw5c-m847-fmqf/GHSA-pw5c-m847-fmqf.json +++ b/advisories/unreviewed/2022/05/GHSA-pw5c-m847-fmqf/GHSA-pw5c-m847-fmqf.json @@ -7,12 +7,8 @@ "CVE-2005-2897" ], "details": "WEB//NEWS 1.4 allows remote attackers to obtain sensitive information via a direct request to files in the actions directory, which reveal the path in an error message, as demonstrated using cat.add.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pw7p-x93h-v5qq/GHSA-pw7p-x93h-v5qq.json b/advisories/unreviewed/2022/05/GHSA-pw7p-x93h-v5qq/GHSA-pw7p-x93h-v5qq.json index 9b7a094ec0e..06cce9fd5bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-pw7p-x93h-v5qq/GHSA-pw7p-x93h-v5qq.json +++ b/advisories/unreviewed/2022/05/GHSA-pw7p-x93h-v5qq/GHSA-pw7p-x93h-v5qq.json @@ -7,12 +7,8 @@ "CVE-2021-35990" ], "details": "Adobe Bridge version 11.0.2 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pwpv-3p5r-mg69/GHSA-pwpv-3p5r-mg69.json b/advisories/unreviewed/2022/05/GHSA-pwpv-3p5r-mg69/GHSA-pwpv-3p5r-mg69.json index 3e042f63448..960660fa256 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwpv-3p5r-mg69/GHSA-pwpv-3p5r-mg69.json +++ b/advisories/unreviewed/2022/05/GHSA-pwpv-3p5r-mg69/GHSA-pwpv-3p5r-mg69.json @@ -7,12 +7,8 @@ "CVE-2018-10790" ], "details": "The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (application crash), related to a memory allocation failure, as demonstrated by mp2aac.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-px57-xh6g-cqjm/GHSA-px57-xh6g-cqjm.json b/advisories/unreviewed/2022/05/GHSA-px57-xh6g-cqjm/GHSA-px57-xh6g-cqjm.json index 3d01d96c247..834792e50c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-px57-xh6g-cqjm/GHSA-px57-xh6g-cqjm.json +++ b/advisories/unreviewed/2022/05/GHSA-px57-xh6g-cqjm/GHSA-px57-xh6g-cqjm.json @@ -7,12 +7,8 @@ "CVE-2021-36001" ], "details": "Adobe Character Animator version 4.2 (and earlier) is affected by an out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxhg-rgcf-qj38/GHSA-pxhg-rgcf-qj38.json b/advisories/unreviewed/2022/05/GHSA-pxhg-rgcf-qj38/GHSA-pxhg-rgcf-qj38.json index 2c1d6271ceb..b031a24073f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxhg-rgcf-qj38/GHSA-pxhg-rgcf-qj38.json +++ b/advisories/unreviewed/2022/05/GHSA-pxhg-rgcf-qj38/GHSA-pxhg-rgcf-qj38.json @@ -7,12 +7,8 @@ "CVE-2021-28640" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Use-after-free vulnerability. An authenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxm9-3wx9-3q85/GHSA-pxm9-3wx9-3q85.json b/advisories/unreviewed/2022/05/GHSA-pxm9-3wx9-3q85/GHSA-pxm9-3wx9-3q85.json index 9ad6f137678..0338aa536b9 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxm9-3wx9-3q85/GHSA-pxm9-3wx9-3q85.json +++ b/advisories/unreviewed/2022/05/GHSA-pxm9-3wx9-3q85/GHSA-pxm9-3wx9-3q85.json @@ -7,12 +7,8 @@ "CVE-2005-3167" ], "details": "Incomplete blacklist vulnerability in MediaWiki before 1.4.11 does not properly remove certain CSS inputs (HTML inline style attributes) that are processed as active content by Internet Explorer, which allows remote attackers to conduct cross-site scripting (XSS) attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pxrc-rh5x-5557/GHSA-pxrc-rh5x-5557.json b/advisories/unreviewed/2022/05/GHSA-pxrc-rh5x-5557/GHSA-pxrc-rh5x-5557.json index bc7574f57b7..e9fbf0c4c95 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxrc-rh5x-5557/GHSA-pxrc-rh5x-5557.json +++ b/advisories/unreviewed/2022/05/GHSA-pxrc-rh5x-5557/GHSA-pxrc-rh5x-5557.json @@ -7,12 +7,8 @@ "CVE-2005-3401" ], "details": "Multiple interpretation error in TheHacker 5.8.4.128 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q297-5xx3-gw53/GHSA-q297-5xx3-gw53.json b/advisories/unreviewed/2022/05/GHSA-q297-5xx3-gw53/GHSA-q297-5xx3-gw53.json index b884a789618..09fe2380d54 100644 --- a/advisories/unreviewed/2022/05/GHSA-q297-5xx3-gw53/GHSA-q297-5xx3-gw53.json +++ b/advisories/unreviewed/2022/05/GHSA-q297-5xx3-gw53/GHSA-q297-5xx3-gw53.json @@ -7,12 +7,8 @@ "CVE-2021-22253" ], "details": "Improper authorization in GitLab EE affecting all versions since 13.4 allowed a user who previously had the necessary access to trigger deployments to protected environments under specific conditions after the access has been removed", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q3hx-935w-hrg2/GHSA-q3hx-935w-hrg2.json b/advisories/unreviewed/2022/05/GHSA-q3hx-935w-hrg2/GHSA-q3hx-935w-hrg2.json index a094611b322..4462ec5e618 100644 --- a/advisories/unreviewed/2022/05/GHSA-q3hx-935w-hrg2/GHSA-q3hx-935w-hrg2.json +++ b/advisories/unreviewed/2022/05/GHSA-q3hx-935w-hrg2/GHSA-q3hx-935w-hrg2.json @@ -7,12 +7,8 @@ "CVE-2005-3127" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in lucidCMS 1.0.11 allows remote attackers to inject arbitrary web script or HTML via the query string.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q44m-7h33-96g3/GHSA-q44m-7h33-96g3.json b/advisories/unreviewed/2022/05/GHSA-q44m-7h33-96g3/GHSA-q44m-7h33-96g3.json index 202bdca791a..3be867c7c31 100644 --- a/advisories/unreviewed/2022/05/GHSA-q44m-7h33-96g3/GHSA-q44m-7h33-96g3.json +++ b/advisories/unreviewed/2022/05/GHSA-q44m-7h33-96g3/GHSA-q44m-7h33-96g3.json @@ -7,12 +7,8 @@ "CVE-2005-3161" ], "details": "Multiple SQL injection vulnerabilities in PHP-Fusion before 6.00.110 allow remote attackers to execute arbitrary SQL commands via (1) the activate parameter in register.php and (2) the cat_id parameter in faq.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4mm-2rvg-w8ww/GHSA-q4mm-2rvg-w8ww.json b/advisories/unreviewed/2022/05/GHSA-q4mm-2rvg-w8ww/GHSA-q4mm-2rvg-w8ww.json index c16cdc67737..302aef8bd32 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4mm-2rvg-w8ww/GHSA-q4mm-2rvg-w8ww.json +++ b/advisories/unreviewed/2022/05/GHSA-q4mm-2rvg-w8ww/GHSA-q4mm-2rvg-w8ww.json @@ -7,12 +7,8 @@ "CVE-2021-21594" ], "details": "Dell PowerScale OneFS versions 8.2.2 - 9.1.0.x contain a use of get request method with sensitive query strings vulnerability. It can lead to potential disclosure of sensitive data. Dell recommends upgrading at your earliest opportunity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q52q-979x-2v5q/GHSA-q52q-979x-2v5q.json b/advisories/unreviewed/2022/05/GHSA-q52q-979x-2v5q/GHSA-q52q-979x-2v5q.json index e4e3995a584..91d711c0a6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q52q-979x-2v5q/GHSA-q52q-979x-2v5q.json +++ b/advisories/unreviewed/2022/05/GHSA-q52q-979x-2v5q/GHSA-q52q-979x-2v5q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5cq-rj2g-v72r/GHSA-q5cq-rj2g-v72r.json b/advisories/unreviewed/2022/05/GHSA-q5cq-rj2g-v72r/GHSA-q5cq-rj2g-v72r.json index 69c4392587e..c56932e2967 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5cq-rj2g-v72r/GHSA-q5cq-rj2g-v72r.json +++ b/advisories/unreviewed/2022/05/GHSA-q5cq-rj2g-v72r/GHSA-q5cq-rj2g-v72r.json @@ -7,12 +7,8 @@ "CVE-2005-3197" ], "details": "Stack-based buffer overflow in PWIWrapper.dll for Webroot Desktop Firewall before 1.3.0build52 allows local users to execute arbitrary code as SYSTEM by sending a crafted DeviceIoControl command, then removing an allowed program from the firewall list.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q649-mpgj-7h68/GHSA-q649-mpgj-7h68.json b/advisories/unreviewed/2022/05/GHSA-q649-mpgj-7h68/GHSA-q649-mpgj-7h68.json index 88104b163a3..1f90cfbc99a 100644 --- a/advisories/unreviewed/2022/05/GHSA-q649-mpgj-7h68/GHSA-q649-mpgj-7h68.json +++ b/advisories/unreviewed/2022/05/GHSA-q649-mpgj-7h68/GHSA-q649-mpgj-7h68.json @@ -7,12 +7,8 @@ "CVE-2005-2930" ], "details": "Stack-based buffer overflow in the _chm_find_in_PMGL function in chm_lib.c for chmlib before 0.36, as used in products such as KchmViewer, allows user-assisted attackers to execute arbitrary code via a CHM file containing a long element, a different vulnerability than CVE-2005-3318.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q66q-9pr9-q26r/GHSA-q66q-9pr9-q26r.json b/advisories/unreviewed/2022/05/GHSA-q66q-9pr9-q26r/GHSA-q66q-9pr9-q26r.json index 444cc9a7581..482c933cc9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-q66q-9pr9-q26r/GHSA-q66q-9pr9-q26r.json +++ b/advisories/unreviewed/2022/05/GHSA-q66q-9pr9-q26r/GHSA-q66q-9pr9-q26r.json @@ -7,12 +7,8 @@ "CVE-2005-2886" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in MAXdev MD-Pro 1.0.73, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via (1) the print parameter to the print module, the sitename parameter to (2) bb_smilies or (3) bbcode_ref module, or (4) the hlpfile parameter to openwindow.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6c8-5hhp-w6rv/GHSA-q6c8-5hhp-w6rv.json b/advisories/unreviewed/2022/05/GHSA-q6c8-5hhp-w6rv/GHSA-q6c8-5hhp-w6rv.json index 6e602e583df..7806d266856 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6c8-5hhp-w6rv/GHSA-q6c8-5hhp-w6rv.json +++ b/advisories/unreviewed/2022/05/GHSA-q6c8-5hhp-w6rv/GHSA-q6c8-5hhp-w6rv.json @@ -7,12 +7,8 @@ "CVE-2005-3360" ], "details": "The installation of Trend Micro PC-Cillin Internet Security 2005 12.00 build 1244, and probably previous versions, uses insecure default ACLs, which allows local users to cause a denial of service (disabled service) and gain system privileges by modifying or moving critical program files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q6hr-vm49-fvm5/GHSA-q6hr-vm49-fvm5.json b/advisories/unreviewed/2022/05/GHSA-q6hr-vm49-fvm5/GHSA-q6hr-vm49-fvm5.json index 06883fe6983..17d979afcd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6hr-vm49-fvm5/GHSA-q6hr-vm49-fvm5.json +++ b/advisories/unreviewed/2022/05/GHSA-q6hr-vm49-fvm5/GHSA-q6hr-vm49-fvm5.json @@ -7,12 +7,8 @@ "CVE-2021-1587" ], "details": "A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of specific packets with a Transparent Interconnection of Lots of Links (TRILL) OAM EtherType. An attacker could exploit this vulnerability by sending crafted packets, including the TRILL OAM EtherType of 0x8902, to a device that is part of a VXLAN Ethernet VPN (EVPN) fabric. A successful exploit could allow the attacker to cause an affected device to experience high CPU usage and consume excessive system resources, which may result in overall control plane instability and cause the affected device to reload. Note: The NGOAM feature is disabled by default.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q6jf-84qm-cj59/GHSA-q6jf-84qm-cj59.json b/advisories/unreviewed/2022/05/GHSA-q6jf-84qm-cj59/GHSA-q6jf-84qm-cj59.json index 2d95f52aa6b..0171b787cd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6jf-84qm-cj59/GHSA-q6jf-84qm-cj59.json +++ b/advisories/unreviewed/2022/05/GHSA-q6jf-84qm-cj59/GHSA-q6jf-84qm-cj59.json @@ -7,12 +7,8 @@ "CVE-2021-22246" ], "details": "A vulnerability was discovered in GitLab versions before 14.0.2, 13.12.6, 13.11.6. GitLab Webhook feature could be abused to perform denial of service attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q6r5-f6rr-8f92/GHSA-q6r5-f6rr-8f92.json b/advisories/unreviewed/2022/05/GHSA-q6r5-f6rr-8f92/GHSA-q6r5-f6rr-8f92.json index a1223437bbe..0661e45ce2f 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6r5-f6rr-8f92/GHSA-q6r5-f6rr-8f92.json +++ b/advisories/unreviewed/2022/05/GHSA-q6r5-f6rr-8f92/GHSA-q6r5-f6rr-8f92.json @@ -7,12 +7,8 @@ "CVE-2021-0576" ], "details": "In flv extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187236084", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q6wr-23v7-wr4h/GHSA-q6wr-23v7-wr4h.json b/advisories/unreviewed/2022/05/GHSA-q6wr-23v7-wr4h/GHSA-q6wr-23v7-wr4h.json index 4219c3d28a7..1a844439610 100644 --- a/advisories/unreviewed/2022/05/GHSA-q6wr-23v7-wr4h/GHSA-q6wr-23v7-wr4h.json +++ b/advisories/unreviewed/2022/05/GHSA-q6wr-23v7-wr4h/GHSA-q6wr-23v7-wr4h.json @@ -7,12 +7,8 @@ "CVE-2005-3454" ], "details": "Multiple unspecified vulnerabilities in Oracle Collaboration Suite 10g Release 1 version 10.1.1 and 9i Release 2 9.0.4.2 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) OCS01, (2) OCS02, (3) OCS03, and (4) OCS04 for Calendar; (5) OCS05, (6) OCS06, (7) OCS07, (8) OCS08, (9) OCS09, and (10) OCS10 for Email Server; and (11) OCS11, (12) OCS12, and (13) OCS13 for Oracle Files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q7jc-qjq2-4cmx/GHSA-q7jc-qjq2-4cmx.json b/advisories/unreviewed/2022/05/GHSA-q7jc-qjq2-4cmx/GHSA-q7jc-qjq2-4cmx.json index 90932d90582..cefafda0bc7 100644 --- a/advisories/unreviewed/2022/05/GHSA-q7jc-qjq2-4cmx/GHSA-q7jc-qjq2-4cmx.json +++ b/advisories/unreviewed/2022/05/GHSA-q7jc-qjq2-4cmx/GHSA-q7jc-qjq2-4cmx.json @@ -7,12 +7,8 @@ "CVE-2021-22243" ], "details": "Under specialized conditions, GitLab CE/EE versions starting 7.10 may allow existing GitLab users to use an invite URL meant for another email address to gain access into a group.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q829-w9w5-9vhv/GHSA-q829-w9w5-9vhv.json b/advisories/unreviewed/2022/05/GHSA-q829-w9w5-9vhv/GHSA-q829-w9w5-9vhv.json index 2ab5548bacb..55c744bf71d 100644 --- a/advisories/unreviewed/2022/05/GHSA-q829-w9w5-9vhv/GHSA-q829-w9w5-9vhv.json +++ b/advisories/unreviewed/2022/05/GHSA-q829-w9w5-9vhv/GHSA-q829-w9w5-9vhv.json @@ -7,12 +7,8 @@ "CVE-2005-3233" ], "details": "Multiple interpretation error in unspecified versions of Trustix Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q8qh-9x92-6p6c/GHSA-q8qh-9x92-6p6c.json b/advisories/unreviewed/2022/05/GHSA-q8qh-9x92-6p6c/GHSA-q8qh-9x92-6p6c.json index 69aea50850c..299f00c9f26 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8qh-9x92-6p6c/GHSA-q8qh-9x92-6p6c.json +++ b/advisories/unreviewed/2022/05/GHSA-q8qh-9x92-6p6c/GHSA-q8qh-9x92-6p6c.json @@ -7,12 +7,8 @@ "CVE-2021-28643" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by a Type Confusion vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q963-v9w4-pqp9/GHSA-q963-v9w4-pqp9.json b/advisories/unreviewed/2022/05/GHSA-q963-v9w4-pqp9/GHSA-q963-v9w4-pqp9.json index d97034dc3ed..7d48640e37f 100644 --- a/advisories/unreviewed/2022/05/GHSA-q963-v9w4-pqp9/GHSA-q963-v9w4-pqp9.json +++ b/advisories/unreviewed/2022/05/GHSA-q963-v9w4-pqp9/GHSA-q963-v9w4-pqp9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q9cp-34x4-jgw5/GHSA-q9cp-34x4-jgw5.json b/advisories/unreviewed/2022/05/GHSA-q9cp-34x4-jgw5/GHSA-q9cp-34x4-jgw5.json index bdab3019f5b..98c07a333bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9cp-34x4-jgw5/GHSA-q9cp-34x4-jgw5.json +++ b/advisories/unreviewed/2022/05/GHSA-q9cp-34x4-jgw5/GHSA-q9cp-34x4-jgw5.json @@ -7,12 +7,8 @@ "CVE-2005-3142" ], "details": "Heap-based buffer overflow in Kaspersky Antivirus (KAV) 5.0 and Kaspersky Personal Security Suite 1.1 allows remote attackers to execute arbitrary code via a CAB file with large records after the header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q9jr-59gg-37j9/GHSA-q9jr-59gg-37j9.json b/advisories/unreviewed/2022/05/GHSA-q9jr-59gg-37j9/GHSA-q9jr-59gg-37j9.json index bdb31f2c077..d1c114f7d87 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9jr-59gg-37j9/GHSA-q9jr-59gg-37j9.json +++ b/advisories/unreviewed/2022/05/GHSA-q9jr-59gg-37j9/GHSA-q9jr-59gg-37j9.json @@ -7,12 +7,8 @@ "CVE-2005-2885" ], "details": "The Downloads page in MAXdev MD-Pro 1.0.73, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which could allow remote attackers to bypass file extension checks and execute arbitrary commands by uploading a file with a different extension, as demonstrated using .inc files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q9pv-467g-x2qc/GHSA-q9pv-467g-x2qc.json b/advisories/unreviewed/2022/05/GHSA-q9pv-467g-x2qc/GHSA-q9pv-467g-x2qc.json index a88707751d9..dade6a52a72 100644 --- a/advisories/unreviewed/2022/05/GHSA-q9pv-467g-x2qc/GHSA-q9pv-467g-x2qc.json +++ b/advisories/unreviewed/2022/05/GHSA-q9pv-467g-x2qc/GHSA-q9pv-467g-x2qc.json @@ -7,12 +7,8 @@ "CVE-2005-3174" ], "details": "Microsoft Windows 2000 before Update Rollup 1 for SP4 allows users to log on to the domain, even when their password has expired, if the fully qualified domain name (FQDN) is 8 characters long.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qc78-mvp8-p6f2/GHSA-qc78-mvp8-p6f2.json b/advisories/unreviewed/2022/05/GHSA-qc78-mvp8-p6f2/GHSA-qc78-mvp8-p6f2.json index 8f1116f7946..76ebc822742 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc78-mvp8-p6f2/GHSA-qc78-mvp8-p6f2.json +++ b/advisories/unreviewed/2022/05/GHSA-qc78-mvp8-p6f2/GHSA-qc78-mvp8-p6f2.json @@ -7,12 +7,8 @@ "CVE-2005-3451" ], "details": "Unspecified vulnerability in SQL*ReportWriter in Oracle Application Server 9.0 up to 9.0.2.1 has unknown impact and attack vectors, as identified by Oracle Vuln# AS10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qcq8-mgfx-4pfj/GHSA-qcq8-mgfx-4pfj.json b/advisories/unreviewed/2022/05/GHSA-qcq8-mgfx-4pfj/GHSA-qcq8-mgfx-4pfj.json index 9b9e35370ba..abdfc2a336c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcq8-mgfx-4pfj/GHSA-qcq8-mgfx-4pfj.json +++ b/advisories/unreviewed/2022/05/GHSA-qcq8-mgfx-4pfj/GHSA-qcq8-mgfx-4pfj.json @@ -7,12 +7,8 @@ "CVE-2021-29280" ], "details": "In TP-Link Wireless N Router WR840N an ARP poisoning attack can cause buffer overflow", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qcvh-w68r-q938/GHSA-qcvh-w68r-q938.json b/advisories/unreviewed/2022/05/GHSA-qcvh-w68r-q938/GHSA-qcvh-w68r-q938.json index 8b104a5b4e6..8902beac26e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qcvh-w68r-q938/GHSA-qcvh-w68r-q938.json +++ b/advisories/unreviewed/2022/05/GHSA-qcvh-w68r-q938/GHSA-qcvh-w68r-q938.json @@ -7,12 +7,8 @@ "CVE-2021-31338" ], "details": "A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.0 SP1). Affected devices allow to modify configuration settings over an unauthenticated channel. This could allow a local attacker to escalate privileges and execute own code on the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qf3m-m239-72cq/GHSA-qf3m-m239-72cq.json b/advisories/unreviewed/2022/05/GHSA-qf3m-m239-72cq/GHSA-qf3m-m239-72cq.json index e1aeacf239e..f82117edd83 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf3m-m239-72cq/GHSA-qf3m-m239-72cq.json +++ b/advisories/unreviewed/2022/05/GHSA-qf3m-m239-72cq/GHSA-qf3m-m239-72cq.json @@ -7,12 +7,8 @@ "CVE-2005-3368" ], "details": "Cross-site scripting (XSS) vulnerability in the Search_Enhanced module in PHP-Nuke 7.9 allows remote attackers to inject arbitrary web script or HTML via the query parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qfgg-vhc6-gx89/GHSA-qfgg-vhc6-gx89.json b/advisories/unreviewed/2022/05/GHSA-qfgg-vhc6-gx89/GHSA-qfgg-vhc6-gx89.json index fbf4369d3ad..a1b35f42206 100644 --- a/advisories/unreviewed/2022/05/GHSA-qfgg-vhc6-gx89/GHSA-qfgg-vhc6-gx89.json +++ b/advisories/unreviewed/2022/05/GHSA-qfgg-vhc6-gx89/GHSA-qfgg-vhc6-gx89.json @@ -7,12 +7,8 @@ "CVE-2005-3354" ], "details": "Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed before 2.1.6 allows user-assisted attackers to execute arbitrary code by having local users import LDIF files with long lines.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qg68-crpm-ch79/GHSA-qg68-crpm-ch79.json b/advisories/unreviewed/2022/05/GHSA-qg68-crpm-ch79/GHSA-qg68-crpm-ch79.json index d377a675419..dcf13e0c47b 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg68-crpm-ch79/GHSA-qg68-crpm-ch79.json +++ b/advisories/unreviewed/2022/05/GHSA-qg68-crpm-ch79/GHSA-qg68-crpm-ch79.json @@ -7,12 +7,8 @@ "CVE-2021-29772" ], "details": "IBM API Connect 5.0.0.0 through 5.0.8.11 could allow a user to potentially inject code due to unsanitized user input. IBM X-Force ID: 202774.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qg83-8gfp-g253/GHSA-qg83-8gfp-g253.json b/advisories/unreviewed/2022/05/GHSA-qg83-8gfp-g253/GHSA-qg83-8gfp-g253.json index 4005796b803..a9c2e70e27d 100644 --- a/advisories/unreviewed/2022/05/GHSA-qg83-8gfp-g253/GHSA-qg83-8gfp-g253.json +++ b/advisories/unreviewed/2022/05/GHSA-qg83-8gfp-g253/GHSA-qg83-8gfp-g253.json @@ -7,12 +7,8 @@ "CVE-2005-3373" ], "details": "Multiple interpretation error in Dr.Web 4.32b allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qgqj-2r34-83jh/GHSA-qgqj-2r34-83jh.json b/advisories/unreviewed/2022/05/GHSA-qgqj-2r34-83jh/GHSA-qgqj-2r34-83jh.json index 1bc529ce016..d45d31be247 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgqj-2r34-83jh/GHSA-qgqj-2r34-83jh.json +++ b/advisories/unreviewed/2022/05/GHSA-qgqj-2r34-83jh/GHSA-qgqj-2r34-83jh.json @@ -7,12 +7,8 @@ "CVE-2021-34745" ], "details": "A vulnerability in the AppDynamics .NET Agent for Windows could allow an attacker to leverage an authenticated, local user account to gain SYSTEM privileges. This vulnerability is due to the .NET Agent Coordinator Service executing code with SYSTEM privileges. An attacker with local access to a device that is running the vulnerable agent could create a custom process that would be launched with those SYSTEM privileges. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system. This vulnerability is fixed in AppDynamics .NET Agent Release 21.7.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qgxx-w2vv-5q44/GHSA-qgxx-w2vv-5q44.json b/advisories/unreviewed/2022/05/GHSA-qgxx-w2vv-5q44/GHSA-qgxx-w2vv-5q44.json index 760ba9020fb..b8783645dad 100644 --- a/advisories/unreviewed/2022/05/GHSA-qgxx-w2vv-5q44/GHSA-qgxx-w2vv-5q44.json +++ b/advisories/unreviewed/2022/05/GHSA-qgxx-w2vv-5q44/GHSA-qgxx-w2vv-5q44.json @@ -7,12 +7,8 @@ "CVE-2005-3063" ], "details": "SQL injection vulnerability in MailGust 1.9 allows remote attackers to execute arbitrary SQL commands via the email field on the password reminder page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qh39-wj56-w8x2/GHSA-qh39-wj56-w8x2.json b/advisories/unreviewed/2022/05/GHSA-qh39-wj56-w8x2/GHSA-qh39-wj56-w8x2.json index a3f6f06d51e..263592438b3 100644 --- a/advisories/unreviewed/2022/05/GHSA-qh39-wj56-w8x2/GHSA-qh39-wj56-w8x2.json +++ b/advisories/unreviewed/2022/05/GHSA-qh39-wj56-w8x2/GHSA-qh39-wj56-w8x2.json @@ -7,12 +7,8 @@ "CVE-2005-3268" ], "details": "yiff server (yiff-server) 2.14.2 on Debian GNU/Linux runs as root and does not properly verify ownership of files that it opens, which allows local users to read arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qh92-424h-5c76/GHSA-qh92-424h-5c76.json b/advisories/unreviewed/2022/05/GHSA-qh92-424h-5c76/GHSA-qh92-424h-5c76.json index c0f4df0d78e..ac64db8b40a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qh92-424h-5c76/GHSA-qh92-424h-5c76.json +++ b/advisories/unreviewed/2022/05/GHSA-qh92-424h-5c76/GHSA-qh92-424h-5c76.json @@ -7,12 +7,8 @@ "CVE-2005-3232" ], "details": "Multiple interpretation error in unspecified versions of TheHacker allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qhfc-c377-fpgq/GHSA-qhfc-c377-fpgq.json b/advisories/unreviewed/2022/05/GHSA-qhfc-c377-fpgq/GHSA-qhfc-c377-fpgq.json index 5e3084d0ec5..91916893604 100644 --- a/advisories/unreviewed/2022/05/GHSA-qhfc-c377-fpgq/GHSA-qhfc-c377-fpgq.json +++ b/advisories/unreviewed/2022/05/GHSA-qhfc-c377-fpgq/GHSA-qhfc-c377-fpgq.json @@ -7,12 +7,8 @@ "CVE-2020-18467" ], "details": "Cross Site Scripting (XSS) vulnerabilty exists in BigTree-CMS 4.4.3 in the tag name field found in the Tags page under the General menu via a crafted website name by doing an authenticated POST HTTP request to admin/tags/create.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qj5x-qgp9-7f57/GHSA-qj5x-qgp9-7f57.json b/advisories/unreviewed/2022/05/GHSA-qj5x-qgp9-7f57/GHSA-qj5x-qgp9-7f57.json index 37b280517c9..8a4e8ec6f41 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj5x-qgp9-7f57/GHSA-qj5x-qgp9-7f57.json +++ b/advisories/unreviewed/2022/05/GHSA-qj5x-qgp9-7f57/GHSA-qj5x-qgp9-7f57.json @@ -7,12 +7,8 @@ "CVE-2021-34215" ], "details": "Cross-site scripting in tcpipwan.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers to execute arbitrary JavaScript by modifying the \"Service Name\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qmxc-jm57-x7h9/GHSA-qmxc-jm57-x7h9.json b/advisories/unreviewed/2022/05/GHSA-qmxc-jm57-x7h9/GHSA-qmxc-jm57-x7h9.json index b49712bf739..1d308705f7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qmxc-jm57-x7h9/GHSA-qmxc-jm57-x7h9.json +++ b/advisories/unreviewed/2022/05/GHSA-qmxc-jm57-x7h9/GHSA-qmxc-jm57-x7h9.json @@ -7,12 +7,8 @@ "CVE-2005-3075" ], "details": "SQL injection vulnerability in Zengaia before 0.2 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qpjc-9f2w-grp8/GHSA-qpjc-9f2w-grp8.json b/advisories/unreviewed/2022/05/GHSA-qpjc-9f2w-grp8/GHSA-qpjc-9f2w-grp8.json index 451f35da60b..4f0b4641fe0 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpjc-9f2w-grp8/GHSA-qpjc-9f2w-grp8.json +++ b/advisories/unreviewed/2022/05/GHSA-qpjc-9f2w-grp8/GHSA-qpjc-9f2w-grp8.json @@ -7,12 +7,8 @@ "CVE-2021-34220" ], "details": "Cross-site scripting in tr069config.htm in TOTOLINK A3002R version V1.1.1-B20200824 (Important Update, new UI) allows attackers to execute arbitrary JavaScript by modifying the \"User Name\" field or \"Password\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qpm9-2wxr-fm2g/GHSA-qpm9-2wxr-fm2g.json b/advisories/unreviewed/2022/05/GHSA-qpm9-2wxr-fm2g/GHSA-qpm9-2wxr-fm2g.json index 6ca2a065a2a..b8c516edfb4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qpm9-2wxr-fm2g/GHSA-qpm9-2wxr-fm2g.json +++ b/advisories/unreviewed/2022/05/GHSA-qpm9-2wxr-fm2g/GHSA-qpm9-2wxr-fm2g.json @@ -7,12 +7,8 @@ "CVE-2005-3320" ], "details": "Cross-site scripting (XSS) vulnerability in SiteTurn Domain Manager Pro allows remote attackers to inject arbitrary web script or HTML via the err parameter in the panel script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qppx-r9fg-9357/GHSA-qppx-r9fg-9357.json b/advisories/unreviewed/2022/05/GHSA-qppx-r9fg-9357/GHSA-qppx-r9fg-9357.json index d79022f63f5..6f9600c45f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-qppx-r9fg-9357/GHSA-qppx-r9fg-9357.json +++ b/advisories/unreviewed/2022/05/GHSA-qppx-r9fg-9357/GHSA-qppx-r9fg-9357.json @@ -7,12 +7,8 @@ "CVE-2005-3115" ], "details": "mpeg-tools before 1.5b-r2 creates multiple temporary files insecurely, which allows local users to overwrite arbitrary files via (1) ts.stat, (2) ts.mpg, (3) foobar, (4) blockbar, or (5) foobar[NNN].", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qprf-rrp5-5r9j/GHSA-qprf-rrp5-5r9j.json b/advisories/unreviewed/2022/05/GHSA-qprf-rrp5-5r9j/GHSA-qprf-rrp5-5r9j.json index 24acb865c88..5657d91a3b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qprf-rrp5-5r9j/GHSA-qprf-rrp5-5r9j.json +++ b/advisories/unreviewed/2022/05/GHSA-qprf-rrp5-5r9j/GHSA-qprf-rrp5-5r9j.json @@ -7,12 +7,8 @@ "CVE-2020-20642" ], "details": "Cross Site Request Forgery (CSRF) vulnerability exists in EyouCMS 1.3.6 that can add an htm page to execute the js code via login.php?m=admin&c=Filemanager&a=newfile&lang=cn.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq2g-cjgq-hwqr/GHSA-qq2g-cjgq-hwqr.json b/advisories/unreviewed/2022/05/GHSA-qq2g-cjgq-hwqr/GHSA-qq2g-cjgq-hwqr.json index 6606b257468..c494dc5b10e 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq2g-cjgq-hwqr/GHSA-qq2g-cjgq-hwqr.json +++ b/advisories/unreviewed/2022/05/GHSA-qq2g-cjgq-hwqr/GHSA-qq2g-cjgq-hwqr.json @@ -7,12 +7,8 @@ "CVE-2005-3032" ], "details": "Buffer overflow in vxTftpSrv 1.7.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a TFTP request with a long filename argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq3q-x8cf-gqg9/GHSA-qq3q-x8cf-gqg9.json b/advisories/unreviewed/2022/05/GHSA-qq3q-x8cf-gqg9/GHSA-qq3q-x8cf-gqg9.json index 57140f592c6..3ab8572afff 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq3q-x8cf-gqg9/GHSA-qq3q-x8cf-gqg9.json +++ b/advisories/unreviewed/2022/05/GHSA-qq3q-x8cf-gqg9/GHSA-qq3q-x8cf-gqg9.json @@ -7,12 +7,8 @@ "CVE-2020-18477" ], "details": "SQL Injection vulnerability in Hucart CMS 5.7.4 via the purchase enquiry field found in the Message con_content field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq6w-r4g7-hqp4/GHSA-qq6w-r4g7-hqp4.json b/advisories/unreviewed/2022/05/GHSA-qq6w-r4g7-hqp4/GHSA-qq6w-r4g7-hqp4.json index 2c7b0c92c66..90ba085a1aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq6w-r4g7-hqp4/GHSA-qq6w-r4g7-hqp4.json +++ b/advisories/unreviewed/2022/05/GHSA-qq6w-r4g7-hqp4/GHSA-qq6w-r4g7-hqp4.json @@ -7,12 +7,8 @@ "CVE-2005-3385" ], "details": "SQL injection vulnerability in Techno Dreams Mailing List script allows remote attackers to execute arbitrary SQL commands and bypass authentication via the userid parameter in admin/login.asp.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qrrp-46f9-qr9m/GHSA-qrrp-46f9-qr9m.json b/advisories/unreviewed/2022/05/GHSA-qrrp-46f9-qr9m/GHSA-qrrp-46f9-qr9m.json index cdbf52cc63d..dff5a4abf5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrrp-46f9-qr9m/GHSA-qrrp-46f9-qr9m.json +++ b/advisories/unreviewed/2022/05/GHSA-qrrp-46f9-qr9m/GHSA-qrrp-46f9-qr9m.json @@ -7,12 +7,8 @@ "CVE-2005-3054" ], "details": "fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not properly restrict access to other directories when the open_basedir directive includes a trailing slash, which allows PHP scripts in one directory to access files in other directories whose names are substrings of the original directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qrw6-qjvm-cr2m/GHSA-qrw6-qjvm-cr2m.json b/advisories/unreviewed/2022/05/GHSA-qrw6-qjvm-cr2m/GHSA-qrw6-qjvm-cr2m.json index a1aae74789d..a7ca9c714da 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrw6-qjvm-cr2m/GHSA-qrw6-qjvm-cr2m.json +++ b/advisories/unreviewed/2022/05/GHSA-qrw6-qjvm-cr2m/GHSA-qrw6-qjvm-cr2m.json @@ -7,12 +7,8 @@ "CVE-2021-3616" ], "details": "A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow an unauthorized user to view device information, alter firmware content and device configuration. This vulnerability is the same as CNVD-2020-68651.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qv6m-xp4r-mwq9/GHSA-qv6m-xp4r-mwq9.json b/advisories/unreviewed/2022/05/GHSA-qv6m-xp4r-mwq9/GHSA-qv6m-xp4r-mwq9.json index 6f78229115a..f0de3f01bed 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv6m-xp4r-mwq9/GHSA-qv6m-xp4r-mwq9.json +++ b/advisories/unreviewed/2022/05/GHSA-qv6m-xp4r-mwq9/GHSA-qv6m-xp4r-mwq9.json @@ -7,12 +7,8 @@ "CVE-2005-3283" ], "details": "Cross-site scripting (XSS) vulnerability in TikiWiki before 1.9.1.1 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qvr9-gqvh-83cj/GHSA-qvr9-gqvh-83cj.json b/advisories/unreviewed/2022/05/GHSA-qvr9-gqvh-83cj/GHSA-qvr9-gqvh-83cj.json index 23c00a4c2fe..50343c3a913 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvr9-gqvh-83cj/GHSA-qvr9-gqvh-83cj.json +++ b/advisories/unreviewed/2022/05/GHSA-qvr9-gqvh-83cj/GHSA-qvr9-gqvh-83cj.json @@ -7,12 +7,8 @@ "CVE-2005-3158" ], "details": "SQL injection vulnerability in messages.php in PHP-Fusion 6.00.106 and 6.00.107 allows remote attackers to execute arbitrary SQL commands via the (1) pm_email_notify and (2) pm_save_sent parameters, a different vulnerability than CVE-2005-3157 and CVE-2005-3159.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qvrm-xxvp-9fj9/GHSA-qvrm-xxvp-9fj9.json b/advisories/unreviewed/2022/05/GHSA-qvrm-xxvp-9fj9/GHSA-qvrm-xxvp-9fj9.json index 07a6fe9a645..fe320d85d5a 100644 --- a/advisories/unreviewed/2022/05/GHSA-qvrm-xxvp-9fj9/GHSA-qvrm-xxvp-9fj9.json +++ b/advisories/unreviewed/2022/05/GHSA-qvrm-xxvp-9fj9/GHSA-qvrm-xxvp-9fj9.json @@ -7,12 +7,8 @@ "CVE-2005-3223" ], "details": "Multiple interpretation error in unspecified versions of Rising Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qwf7-6cgr-vhmq/GHSA-qwf7-6cgr-vhmq.json b/advisories/unreviewed/2022/05/GHSA-qwf7-6cgr-vhmq/GHSA-qwf7-6cgr-vhmq.json index e74bc3cd719..43759b33be5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwf7-6cgr-vhmq/GHSA-qwf7-6cgr-vhmq.json +++ b/advisories/unreviewed/2022/05/GHSA-qwf7-6cgr-vhmq/GHSA-qwf7-6cgr-vhmq.json @@ -7,12 +7,8 @@ "CVE-2021-30592" ], "details": "Out of bounds write in Tab Groups in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory write via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwhm-8574-3qr4/GHSA-qwhm-8574-3qr4.json b/advisories/unreviewed/2022/05/GHSA-qwhm-8574-3qr4/GHSA-qwhm-8574-3qr4.json index ac0d2854c18..9bc4b336995 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwhm-8574-3qr4/GHSA-qwhm-8574-3qr4.json +++ b/advisories/unreviewed/2022/05/GHSA-qwhm-8574-3qr4/GHSA-qwhm-8574-3qr4.json @@ -7,12 +7,8 @@ "CVE-2005-2872" ], "details": "The ipt_recent kernel module (ipt_recent.c) in Linux kernel before 2.6.12, when running on 64-bit processors such as AMD64, allows remote attackers to cause a denial of service (kernel panic) via certain attacks such as SSH brute force, which leads to memset calls using a length based on the u_int32_t type, acting on an array of unsigned long elements, a different vulnerability than CVE-2005-2873.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qww4-844q-f6m5/GHSA-qww4-844q-f6m5.json b/advisories/unreviewed/2022/05/GHSA-qww4-844q-f6m5/GHSA-qww4-844q-f6m5.json index d40547f26b4..1666b2498b4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qww4-844q-f6m5/GHSA-qww4-844q-f6m5.json +++ b/advisories/unreviewed/2022/05/GHSA-qww4-844q-f6m5/GHSA-qww4-844q-f6m5.json @@ -7,12 +7,8 @@ "CVE-2005-3312" ], "details": "The HTML rendering engine in Microsoft Internet Explorer 6.0 allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML in corrupted images and other files such as .GIF, JPG, and WAV, which is rendered as HTML when the user clicks on the link, even though the web server response and file extension indicate that it should be treated as a different file type.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qx7w-826r-8x29/GHSA-qx7w-826r-8x29.json b/advisories/unreviewed/2022/05/GHSA-qx7w-826r-8x29/GHSA-qx7w-826r-8x29.json index bfbcf28fc1f..3e87e657109 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx7w-826r-8x29/GHSA-qx7w-826r-8x29.json +++ b/advisories/unreviewed/2022/05/GHSA-qx7w-826r-8x29/GHSA-qx7w-826r-8x29.json @@ -7,12 +7,8 @@ "CVE-2005-3319" ], "details": "The apache2handler SAPI (sapi_apache2.c) in the Apache module (mod_php) for PHP 5.x before 5.1.0 final and 4.4 before 4.4.1 final allows attackers to cause a denial of service (segmentation fault) via the session.save_path option in a .htaccess file or VirtualHost.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -108,9 +104,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r269-qx8f-58hh/GHSA-r269-qx8f-58hh.json b/advisories/unreviewed/2022/05/GHSA-r269-qx8f-58hh/GHSA-r269-qx8f-58hh.json index edbce1a4dad..7cc90952604 100644 --- a/advisories/unreviewed/2022/05/GHSA-r269-qx8f-58hh/GHSA-r269-qx8f-58hh.json +++ b/advisories/unreviewed/2022/05/GHSA-r269-qx8f-58hh/GHSA-r269-qx8f-58hh.json @@ -7,12 +7,8 @@ "CVE-2005-3123" ], "details": "Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as \"/.//..//////././\", which is collapsed into \"/.././\" after \"..\" and \"//\" sequences are removed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2v6-rqmq-hxq9/GHSA-r2v6-rqmq-hxq9.json b/advisories/unreviewed/2022/05/GHSA-r2v6-rqmq-hxq9/GHSA-r2v6-rqmq-hxq9.json index 5dd807d797c..1aa97e37a3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2v6-rqmq-hxq9/GHSA-r2v6-rqmq-hxq9.json +++ b/advisories/unreviewed/2022/05/GHSA-r2v6-rqmq-hxq9/GHSA-r2v6-rqmq-hxq9.json @@ -7,12 +7,8 @@ "CVE-2005-3239" ], "details": "The OLE2 unpacker in clamd in Clam AntiVirus (ClamAV) 0.87-1 allows remote attackers to cause a denial of service (segmentation fault) via a DOC file with an invalid property tree, which triggers an infinite recursion in the ole2_walk_property_tree function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3m5-gw4v-ccv9/GHSA-r3m5-gw4v-ccv9.json b/advisories/unreviewed/2022/05/GHSA-r3m5-gw4v-ccv9/GHSA-r3m5-gw4v-ccv9.json index 933a43a0620..4a305d8bed8 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3m5-gw4v-ccv9/GHSA-r3m5-gw4v-ccv9.json +++ b/advisories/unreviewed/2022/05/GHSA-r3m5-gw4v-ccv9/GHSA-r3m5-gw4v-ccv9.json @@ -7,12 +7,8 @@ "CVE-2005-3029" ], "details": "Stack-based buffer overflow in AhnLab V3Pro 2004 build 6.0.0.383, V3 VirusBlock 2005 build 6.0.0.383, and V3Net for Windows Server 6.0 build 6.0.0.383 allows remote attackers to execute arbitrary code via a long filname in an ACE archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3p5-262x-676f/GHSA-r3p5-262x-676f.json b/advisories/unreviewed/2022/05/GHSA-r3p5-262x-676f/GHSA-r3p5-262x-676f.json index 57e8d1ec0c1..f32f3cf5109 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3p5-262x-676f/GHSA-r3p5-262x-676f.json +++ b/advisories/unreviewed/2022/05/GHSA-r3p5-262x-676f/GHSA-r3p5-262x-676f.json @@ -7,12 +7,8 @@ "CVE-2005-3157" ], "details": "SQL injection vulnerability in messages.php in PHP-Fusion 6.00.109 allows remote attackers to execute arbitrary SQL commands via the msg_send parameter, a different vulnerability than CVE-2005-3158 and CVE-2005-3159.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3q4-m47r-5mq7/GHSA-r3q4-m47r-5mq7.json b/advisories/unreviewed/2022/05/GHSA-r3q4-m47r-5mq7/GHSA-r3q4-m47r-5mq7.json index fc262a95dc4..91b9bf223c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3q4-m47r-5mq7/GHSA-r3q4-m47r-5mq7.json +++ b/advisories/unreviewed/2022/05/GHSA-r3q4-m47r-5mq7/GHSA-r3q4-m47r-5mq7.json @@ -7,12 +7,8 @@ "CVE-2005-3456" ], "details": "Multiple unspecified vulnerabilities in Oracle E-Business Suite and Applications 11.5 up to 11.5.9 have unknown impact and attack vectors, as identified by Oracle Vuln# (1) APPS04 in Application Object Library, and (2) APPS17, (3) APPS18, and (4) APPS21 in Workflow Cartridge.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r3vr-pwv6-v3mm/GHSA-r3vr-pwv6-v3mm.json b/advisories/unreviewed/2022/05/GHSA-r3vr-pwv6-v3mm/GHSA-r3vr-pwv6-v3mm.json index 215852fe4c7..5be3aea67ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3vr-pwv6-v3mm/GHSA-r3vr-pwv6-v3mm.json +++ b/advisories/unreviewed/2022/05/GHSA-r3vr-pwv6-v3mm/GHSA-r3vr-pwv6-v3mm.json @@ -7,12 +7,8 @@ "CVE-2005-3314" ], "details": "Stack-based buffer overflow in the IMAP daemon in Novell Netmail 3.5.2 allows remote attackers to execute arbitrary code via \"long verb arguments.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r43x-x6j8-3j86/GHSA-r43x-x6j8-3j86.json b/advisories/unreviewed/2022/05/GHSA-r43x-x6j8-3j86/GHSA-r43x-x6j8-3j86.json index 7635b58ef6f..42e7f8d339b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r43x-x6j8-3j86/GHSA-r43x-x6j8-3j86.json +++ b/advisories/unreviewed/2022/05/GHSA-r43x-x6j8-3j86/GHSA-r43x-x6j8-3j86.json @@ -7,12 +7,8 @@ "CVE-2005-3463" ], "details": "Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46.03 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE03.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r4v2-qg7m-3xrh/GHSA-r4v2-qg7m-3xrh.json b/advisories/unreviewed/2022/05/GHSA-r4v2-qg7m-3xrh/GHSA-r4v2-qg7m-3xrh.json index 530376c7592..a49a055593f 100644 --- a/advisories/unreviewed/2022/05/GHSA-r4v2-qg7m-3xrh/GHSA-r4v2-qg7m-3xrh.json +++ b/advisories/unreviewed/2022/05/GHSA-r4v2-qg7m-3xrh/GHSA-r4v2-qg7m-3xrh.json @@ -7,12 +7,8 @@ "CVE-2021-27565" ], "details": "The web server in InterNiche NicheStack through 4.0.1 allows remote attackers to cause a denial of service (infinite loop and networking outage) via an unexpected valid HTTP request such as OPTIONS. This occurs because the HTTP request handler enters a miscoded wbs_loop() debugger hook.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r62p-gprp-gvww/GHSA-r62p-gprp-gvww.json b/advisories/unreviewed/2022/05/GHSA-r62p-gprp-gvww/GHSA-r62p-gprp-gvww.json index 4ef27e21d53..af4f601a5b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-r62p-gprp-gvww/GHSA-r62p-gprp-gvww.json +++ b/advisories/unreviewed/2022/05/GHSA-r62p-gprp-gvww/GHSA-r62p-gprp-gvww.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r6jf-mc85-gm2g/GHSA-r6jf-mc85-gm2g.json b/advisories/unreviewed/2022/05/GHSA-r6jf-mc85-gm2g/GHSA-r6jf-mc85-gm2g.json index 9532f64b526..69d7c4d8464 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6jf-mc85-gm2g/GHSA-r6jf-mc85-gm2g.json +++ b/advisories/unreviewed/2022/05/GHSA-r6jf-mc85-gm2g/GHSA-r6jf-mc85-gm2g.json @@ -7,12 +7,8 @@ "CVE-2005-3024" ], "details": "Multiple SQL injection vulnerabilities in vBulletin 3.0.7 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) announcement parameter to announcement.php, the (2) thread[forumid] or (3) criteria parameters to thread.php, (4) userid parameter to user.php, the (5) calendarcustomfieldid, (6) calendarid, (7) moderatorid, (8) holidayid, (9) calendarmoderatorid, or (10) calendar[0] parameters to admincalendar.php, (11) the cronid parameter to cronlog.php, (12) user[usergroupid][0] parameter to email.php, (13) help[0] parameter to help.php, the (14) limitnumber or (15) limitstart parameter to user.php, the (16) usertitleid or (17) ids parameters to usertitle.php, (18) rvt[0] parameter to language.php, (19) keep[0] parameter to phrase.php, (20) dostyleid parameter to template.php, (21) thread[forumid] parameter to thread.php, or (22) usertools.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7p5-qh2g-cp2f/GHSA-r7p5-qh2g-cp2f.json b/advisories/unreviewed/2022/05/GHSA-r7p5-qh2g-cp2f/GHSA-r7p5-qh2g-cp2f.json index ffd7946746e..92aff96f7d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7p5-qh2g-cp2f/GHSA-r7p5-qh2g-cp2f.json +++ b/advisories/unreviewed/2022/05/GHSA-r7p5-qh2g-cp2f/GHSA-r7p5-qh2g-cp2f.json @@ -7,12 +7,8 @@ "CVE-2005-3105" ], "details": "The mprotect code (mprotect.c) in Linux 2.6 on Itanium IA64 Montecito processors does not properly maintain cache coherency as required by the architecture, which allows local users to cause a denial of service and possibly corrupt data by modifying PTE protections.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r7p8-8gcf-v2q3/GHSA-r7p8-8gcf-v2q3.json b/advisories/unreviewed/2022/05/GHSA-r7p8-8gcf-v2q3/GHSA-r7p8-8gcf-v2q3.json index b7d90cdd1c0..48ea65d58cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7p8-8gcf-v2q3/GHSA-r7p8-8gcf-v2q3.json +++ b/advisories/unreviewed/2022/05/GHSA-r7p8-8gcf-v2q3/GHSA-r7p8-8gcf-v2q3.json @@ -7,12 +7,8 @@ "CVE-2020-27464" ], "details": "An insecure update feature in the /updater.php component of rConfig 3.9.6 and below allows attackers to execute arbitrary code via a crafted ZIP file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r859-f8rq-g2xr/GHSA-r859-f8rq-g2xr.json b/advisories/unreviewed/2022/05/GHSA-r859-f8rq-g2xr/GHSA-r859-f8rq-g2xr.json index 8685953f026..afd2ac40a15 100644 --- a/advisories/unreviewed/2022/05/GHSA-r859-f8rq-g2xr/GHSA-r859-f8rq-g2xr.json +++ b/advisories/unreviewed/2022/05/GHSA-r859-f8rq-g2xr/GHSA-r859-f8rq-g2xr.json @@ -7,12 +7,8 @@ "CVE-2005-3251" ], "details": "Directory traversal vulnerability in the gallery script in Gallery 2.0 (G2) allows remote attackers to read or include arbitrary files via \"..\" sequences in the g2_itemId parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8jw-28q2-2qc8/GHSA-r8jw-28q2-2qc8.json b/advisories/unreviewed/2022/05/GHSA-r8jw-28q2-2qc8/GHSA-r8jw-28q2-2qc8.json index 6dfb2130d11..ab4727eefe5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8jw-28q2-2qc8/GHSA-r8jw-28q2-2qc8.json +++ b/advisories/unreviewed/2022/05/GHSA-r8jw-28q2-2qc8/GHSA-r8jw-28q2-2qc8.json @@ -7,12 +7,8 @@ "CVE-2005-2943" ], "details": "Stack-based buffer overflow in sendmail in XMail before 1.22 allows remote attackers to execute arbitrary code via a long -t command line option.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r8x3-vmcc-9q2g/GHSA-r8x3-vmcc-9q2g.json b/advisories/unreviewed/2022/05/GHSA-r8x3-vmcc-9q2g/GHSA-r8x3-vmcc-9q2g.json index 0b8f464bc02..c8d418b7825 100644 --- a/advisories/unreviewed/2022/05/GHSA-r8x3-vmcc-9q2g/GHSA-r8x3-vmcc-9q2g.json +++ b/advisories/unreviewed/2022/05/GHSA-r8x3-vmcc-9q2g/GHSA-r8x3-vmcc-9q2g.json @@ -7,12 +7,8 @@ "CVE-2005-2874" ], "details": "The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a denial of service (CPU consumption by tight loop) via a \"..\\..\" URL in an HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r9rh-gx95-qpqj/GHSA-r9rh-gx95-qpqj.json b/advisories/unreviewed/2022/05/GHSA-r9rh-gx95-qpqj/GHSA-r9rh-gx95-qpqj.json index a7d6b238b55..d710017ddf7 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9rh-gx95-qpqj/GHSA-r9rh-gx95-qpqj.json +++ b/advisories/unreviewed/2022/05/GHSA-r9rh-gx95-qpqj/GHSA-r9rh-gx95-qpqj.json @@ -7,12 +7,8 @@ "CVE-2021-0408" ], "details": "In asf extractor, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05489195; Issue ID: ALPS05489220.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rm4m-g4f7-4mmf/GHSA-rm4m-g4f7-4mmf.json b/advisories/unreviewed/2022/05/GHSA-rm4m-g4f7-4mmf/GHSA-rm4m-g4f7-4mmf.json index 313dacf9d33..f1aa8bef633 100644 --- a/advisories/unreviewed/2022/05/GHSA-rm4m-g4f7-4mmf/GHSA-rm4m-g4f7-4mmf.json +++ b/advisories/unreviewed/2022/05/GHSA-rm4m-g4f7-4mmf/GHSA-rm4m-g4f7-4mmf.json @@ -7,12 +7,8 @@ "CVE-2005-3334" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in Flyspray 0.9.7 through 0.9.8 (devel) allows remote attackers to inject arbitrary web script or HTML via the (1) PHPSESSID, (2) task, (3) string, (4) type, (5) serv, (6) due, (7) dev, and (8) sort2 parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rp8f-9mp7-v2fw/GHSA-rp8f-9mp7-v2fw.json b/advisories/unreviewed/2022/05/GHSA-rp8f-9mp7-v2fw/GHSA-rp8f-9mp7-v2fw.json index 565efb5592a..bc4dc4969ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-rp8f-9mp7-v2fw/GHSA-rp8f-9mp7-v2fw.json +++ b/advisories/unreviewed/2022/05/GHSA-rp8f-9mp7-v2fw/GHSA-rp8f-9mp7-v2fw.json @@ -7,12 +7,8 @@ "CVE-2005-3097" ], "details": "Directory traversal vulnerability in Avi Alkalay contribute.cgi (aka contribute.pl), dated 16 Jun 2002, allows remote attackers to overwrite arbitrary files via \"..\" sequences in the contribdir variable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqq5-rg8q-m8pp/GHSA-rqq5-rg8q-m8pp.json b/advisories/unreviewed/2022/05/GHSA-rqq5-rg8q-m8pp/GHSA-rqq5-rg8q-m8pp.json index fad48441998..5248e0109e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqq5-rg8q-m8pp/GHSA-rqq5-rg8q-m8pp.json +++ b/advisories/unreviewed/2022/05/GHSA-rqq5-rg8q-m8pp/GHSA-rqq5-rg8q-m8pp.json @@ -7,12 +7,8 @@ "CVE-2020-29548" ], "details": "An issue was discovered in SmarterTools SmarterMail through 100.0.7537. Meddler-in-the-middle attackers can pipeline commands after a POP3 STLS command, injecting plaintext commands into an encrypted user session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rqrp-x7pw-rfgm/GHSA-rqrp-x7pw-rfgm.json b/advisories/unreviewed/2022/05/GHSA-rqrp-x7pw-rfgm/GHSA-rqrp-x7pw-rfgm.json index e9183124ce5..ecfabb731bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqrp-x7pw-rfgm/GHSA-rqrp-x7pw-rfgm.json +++ b/advisories/unreviewed/2022/05/GHSA-rqrp-x7pw-rfgm/GHSA-rqrp-x7pw-rfgm.json @@ -7,12 +7,8 @@ "CVE-2005-3261" ], "details": "getversions.php in versatileBulletinBoard (vBB) 1.0.0 RC2 lists the versions of all installed scripts, which allows remote attackers to obtain sensitive information via a direct request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rv3m-9rv8-5g3p/GHSA-rv3m-9rv8-5g3p.json b/advisories/unreviewed/2022/05/GHSA-rv3m-9rv8-5g3p/GHSA-rv3m-9rv8-5g3p.json index c1a820a7985..2b861ca9bfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv3m-9rv8-5g3p/GHSA-rv3m-9rv8-5g3p.json +++ b/advisories/unreviewed/2022/05/GHSA-rv3m-9rv8-5g3p/GHSA-rv3m-9rv8-5g3p.json @@ -7,12 +7,8 @@ "CVE-2020-27461" ], "details": "A remote code execution vulnerability in SEOPanel 4.6.0 has been fixed for 4.7.0. This vulnerability allowed for remote code execution through an authenticated file upload via the Settings Panel>Import website function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv45-fc47-3rhr/GHSA-rv45-fc47-3rhr.json b/advisories/unreviewed/2022/05/GHSA-rv45-fc47-3rhr/GHSA-rv45-fc47-3rhr.json index 931e28f90fb..e8473c46ace 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv45-fc47-3rhr/GHSA-rv45-fc47-3rhr.json +++ b/advisories/unreviewed/2022/05/GHSA-rv45-fc47-3rhr/GHSA-rv45-fc47-3rhr.json @@ -7,12 +7,8 @@ "CVE-2005-3346" ], "details": "Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the form \"$VAR/EVAR=arg\", which cause the EVAR portion to be appended to a buffer returned by a getenv function call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rvqg-9x88-vgx5/GHSA-rvqg-9x88-vgx5.json b/advisories/unreviewed/2022/05/GHSA-rvqg-9x88-vgx5/GHSA-rvqg-9x88-vgx5.json index d6217f7102a..2cc4310b3c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvqg-9x88-vgx5/GHSA-rvqg-9x88-vgx5.json +++ b/advisories/unreviewed/2022/05/GHSA-rvqg-9x88-vgx5/GHSA-rvqg-9x88-vgx5.json @@ -7,12 +7,8 @@ "CVE-2005-3182" ], "details": "Buffer overflow in the HTTP management interface for GFI MailSecurity 8.1 allows remote attackers to execute arbitrary code via long headers such as (1) Host and (2) Accept in HTTP requests. NOTE: the vendor suggests that this issues is \"in an underlying Microsoft technology\" which, if true, could mean that the overflow affects other products as well.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rw9g-ghm8-vjf3/GHSA-rw9g-ghm8-vjf3.json b/advisories/unreviewed/2022/05/GHSA-rw9g-ghm8-vjf3/GHSA-rw9g-ghm8-vjf3.json index 2a4c44eb697..2862adbc14f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rw9g-ghm8-vjf3/GHSA-rw9g-ghm8-vjf3.json +++ b/advisories/unreviewed/2022/05/GHSA-rw9g-ghm8-vjf3/GHSA-rw9g-ghm8-vjf3.json @@ -7,12 +7,8 @@ "CVE-2005-3144" ], "details": "httpAdapter.c in sblim-sfcb before 0.9.2 allows remote attackers to cause a denial of service via long HTTP headers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rx7r-m66x-qh35/GHSA-rx7r-m66x-qh35.json b/advisories/unreviewed/2022/05/GHSA-rx7r-m66x-qh35/GHSA-rx7r-m66x-qh35.json index d8867eef63a..533c80d7e2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rx7r-m66x-qh35/GHSA-rx7r-m66x-qh35.json +++ b/advisories/unreviewed/2022/05/GHSA-rx7r-m66x-qh35/GHSA-rx7r-m66x-qh35.json @@ -7,12 +7,8 @@ "CVE-2005-3047" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in PhpMyFaq 1.5.1 allow remote attackers to inject arbitrary web script or HTML via the (1) PMF_CONF[version] parameter to footer.php or (2) PMF_LANG[metaLanguage] to header.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rxch-49p9-53hx/GHSA-rxch-49p9-53hx.json b/advisories/unreviewed/2022/05/GHSA-rxch-49p9-53hx/GHSA-rxch-49p9-53hx.json index 9f4c75ba73d..63bd793789f 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxch-49p9-53hx/GHSA-rxch-49p9-53hx.json +++ b/advisories/unreviewed/2022/05/GHSA-rxch-49p9-53hx/GHSA-rxch-49p9-53hx.json @@ -7,12 +7,8 @@ "CVE-2005-3049" ], "details": "PhpMyFaq 1.5.1 stores data files under the web document root with insufficient access control and predictable filenames, which allows remote attackers to obtain sensitive information via a direct request to the data/tracking[DATE] file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxg4-8j52-gv4g/GHSA-rxg4-8j52-gv4g.json b/advisories/unreviewed/2022/05/GHSA-rxg4-8j52-gv4g/GHSA-rxg4-8j52-gv4g.json index 361e94cda49..83513a336ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxg4-8j52-gv4g/GHSA-rxg4-8j52-gv4g.json +++ b/advisories/unreviewed/2022/05/GHSA-rxg4-8j52-gv4g/GHSA-rxg4-8j52-gv4g.json @@ -7,12 +7,8 @@ "CVE-2005-3271" ], "details": "Exec in Linux kernel 2.6 does not properly clear posix-timers in multi-threaded environments, which results in a resource leak and could allow a large number of multiple local users to cause a denial of service by using more posix-timers than specified by the quota for a single user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxpx-7fp6-7726/GHSA-rxpx-7fp6-7726.json b/advisories/unreviewed/2022/05/GHSA-rxpx-7fp6-7726/GHSA-rxpx-7fp6-7726.json index 918faf8621b..6755b4180ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxpx-7fp6-7726/GHSA-rxpx-7fp6-7726.json +++ b/advisories/unreviewed/2022/05/GHSA-rxpx-7fp6-7726/GHSA-rxpx-7fp6-7726.json @@ -7,12 +7,8 @@ "CVE-2005-2810" ], "details": "Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environment variable to (1) config.cc, (2) game.cc, (3) highscor.cc, or (4) meny.cc.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rxr5-mcjh-h5fp/GHSA-rxr5-mcjh-h5fp.json b/advisories/unreviewed/2022/05/GHSA-rxr5-mcjh-h5fp/GHSA-rxr5-mcjh-h5fp.json index 8c0968c65ec..c0093158659 100644 --- a/advisories/unreviewed/2022/05/GHSA-rxr5-mcjh-h5fp/GHSA-rxr5-mcjh-h5fp.json +++ b/advisories/unreviewed/2022/05/GHSA-rxr5-mcjh-h5fp/GHSA-rxr5-mcjh-h5fp.json @@ -7,12 +7,8 @@ "CVE-2005-3095" ], "details": "Avi Alkalay notify program, dated 19 Aug 2001, allows remote attackers to execute arbitrary commands via shell metacharacters in the from parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v2xc-8hw7-gm6x/GHSA-v2xc-8hw7-gm6x.json b/advisories/unreviewed/2022/05/GHSA-v2xc-8hw7-gm6x/GHSA-v2xc-8hw7-gm6x.json index 7940eca18c9..4ae11e33df4 100644 --- a/advisories/unreviewed/2022/05/GHSA-v2xc-8hw7-gm6x/GHSA-v2xc-8hw7-gm6x.json +++ b/advisories/unreviewed/2022/05/GHSA-v2xc-8hw7-gm6x/GHSA-v2xc-8hw7-gm6x.json @@ -7,12 +7,8 @@ "CVE-2021-30593" ], "details": "Out of bounds read in Tab Strip in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory read via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4c3-7gp9-x6mf/GHSA-v4c3-7gp9-x6mf.json b/advisories/unreviewed/2022/05/GHSA-v4c3-7gp9-x6mf/GHSA-v4c3-7gp9-x6mf.json index 6ba6bf82e72..a07c2e88579 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4c3-7gp9-x6mf/GHSA-v4c3-7gp9-x6mf.json +++ b/advisories/unreviewed/2022/05/GHSA-v4c3-7gp9-x6mf/GHSA-v4c3-7gp9-x6mf.json @@ -7,12 +7,8 @@ "CVE-2005-3007" ], "details": "Opera before 8.50 allows remote attackers to spoof the content type of files via a filename with a trailing \".\" (dot), which might allow remote attackers to trick users into processing dangerous content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4h8-h3cf-5v48/GHSA-v4h8-h3cf-5v48.json b/advisories/unreviewed/2022/05/GHSA-v4h8-h3cf-5v48/GHSA-v4h8-h3cf-5v48.json index 32e2a2ef51f..1cce768f678 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4h8-h3cf-5v48/GHSA-v4h8-h3cf-5v48.json +++ b/advisories/unreviewed/2022/05/GHSA-v4h8-h3cf-5v48/GHSA-v4h8-h3cf-5v48.json @@ -7,12 +7,8 @@ "CVE-2005-2901" ], "details": "Multiple Cross-site scripting (XSS) vulnerabilities in CjWeb2Mail 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) message, or (3) ip parameter to thankyou.php or (4) emsg parameter to web2mail.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4rc-mrvx-p99v/GHSA-v4rc-mrvx-p99v.json b/advisories/unreviewed/2022/05/GHSA-v4rc-mrvx-p99v/GHSA-v4rc-mrvx-p99v.json index d9267b81e15..7596c16d89f 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4rc-mrvx-p99v/GHSA-v4rc-mrvx-p99v.json +++ b/advisories/unreviewed/2022/05/GHSA-v4rc-mrvx-p99v/GHSA-v4rc-mrvx-p99v.json @@ -7,12 +7,8 @@ "CVE-2005-3013" ], "details": "Buffer overflow in liby2util in Yet another Setup Tool (YaST) for SuSE Linux 9.3 allows local users to execute arbitrary code via a long Loc entry.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v69x-jjw5-qqpr/GHSA-v69x-jjw5-qqpr.json b/advisories/unreviewed/2022/05/GHSA-v69x-jjw5-qqpr/GHSA-v69x-jjw5-qqpr.json index 55babc4cba4..06599a4c03c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v69x-jjw5-qqpr/GHSA-v69x-jjw5-qqpr.json +++ b/advisories/unreviewed/2022/05/GHSA-v69x-jjw5-qqpr/GHSA-v69x-jjw5-qqpr.json @@ -7,12 +7,8 @@ "CVE-2021-36280" ], "details": "Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulnerability. This could allow a user with ISI_PRIV_LOGIN_SSH or ISI_PRIV_LOGIN_CONSOLE to access privileged information about the cluster.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6p2-879w-fx47/GHSA-v6p2-879w-fx47.json b/advisories/unreviewed/2022/05/GHSA-v6p2-879w-fx47/GHSA-v6p2-879w-fx47.json index 305309140d8..d829032fff9 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6p2-879w-fx47/GHSA-v6p2-879w-fx47.json +++ b/advisories/unreviewed/2022/05/GHSA-v6p2-879w-fx47/GHSA-v6p2-879w-fx47.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v6rh-hjgc-cjxc/GHSA-v6rh-hjgc-cjxc.json b/advisories/unreviewed/2022/05/GHSA-v6rh-hjgc-cjxc/GHSA-v6rh-hjgc-cjxc.json index cec08726cff..17d5001a847 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6rh-hjgc-cjxc/GHSA-v6rh-hjgc-cjxc.json +++ b/advisories/unreviewed/2022/05/GHSA-v6rh-hjgc-cjxc/GHSA-v6rh-hjgc-cjxc.json @@ -7,12 +7,8 @@ "CVE-2005-3399" ], "details": "Multiple interpretation error in CAT-QuickHeal 8.0 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v6v2-8q4w-pwmg/GHSA-v6v2-8q4w-pwmg.json b/advisories/unreviewed/2022/05/GHSA-v6v2-8q4w-pwmg/GHSA-v6v2-8q4w-pwmg.json index 258c20bfcb2..1ed6cf2cce2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v6v2-8q4w-pwmg/GHSA-v6v2-8q4w-pwmg.json +++ b/advisories/unreviewed/2022/05/GHSA-v6v2-8q4w-pwmg/GHSA-v6v2-8q4w-pwmg.json @@ -7,12 +7,8 @@ "CVE-2020-22124" ], "details": "A vulnerability in the \\inc\\config.php component of joyplus-cms v1.6 allows attackers to access sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v738-3658-fhrx/GHSA-v738-3658-fhrx.json b/advisories/unreviewed/2022/05/GHSA-v738-3658-fhrx/GHSA-v738-3658-fhrx.json index 64c4ca243b3..bdd75f259b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-v738-3658-fhrx/GHSA-v738-3658-fhrx.json +++ b/advisories/unreviewed/2022/05/GHSA-v738-3658-fhrx/GHSA-v738-3658-fhrx.json @@ -7,12 +7,8 @@ "CVE-2005-3270" ], "details": "Untrusted search path vulnerability in DiskMountNotify for Symantec Norton AntiVirus 9.0.3 allows local users to gain privileges by modifying the PATH to reference a malicious (1) ps or (2) grep file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v766-f6mm-cqpp/GHSA-v766-f6mm-cqpp.json b/advisories/unreviewed/2022/05/GHSA-v766-f6mm-cqpp/GHSA-v766-f6mm-cqpp.json index 95502106bfd..e1d49cb7b19 100644 --- a/advisories/unreviewed/2022/05/GHSA-v766-f6mm-cqpp/GHSA-v766-f6mm-cqpp.json +++ b/advisories/unreviewed/2022/05/GHSA-v766-f6mm-cqpp/GHSA-v766-f6mm-cqpp.json @@ -7,12 +7,8 @@ "CVE-2021-40087" ], "details": "An issue was discovered in PrimeKey EJBCA before 7.6.0. When audit logging changes to the alias configurations of various protocols that use an enrollment secret, any modifications to the secret were logged in cleartext in the audit log (that can only be viewed by an administrator). This affects use of any of the following protocols: SCEP, CMP, or EST.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7q5-rjwv-j788/GHSA-v7q5-rjwv-j788.json b/advisories/unreviewed/2022/05/GHSA-v7q5-rjwv-j788/GHSA-v7q5-rjwv-j788.json index 66f241ee007..eb8e57d5f36 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7q5-rjwv-j788/GHSA-v7q5-rjwv-j788.json +++ b/advisories/unreviewed/2022/05/GHSA-v7q5-rjwv-j788/GHSA-v7q5-rjwv-j788.json @@ -7,12 +7,8 @@ "CVE-2021-20774" ], "details": "Cross-site scripting vulnerability in some functions of E-mail of Cybozu Garoon 4.0.0 to 5.5.0 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v8cr-qvjm-g7vh/GHSA-v8cr-qvjm-g7vh.json b/advisories/unreviewed/2022/05/GHSA-v8cr-qvjm-g7vh/GHSA-v8cr-qvjm-g7vh.json index b88a46eabdf..c36cde6cd80 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8cr-qvjm-g7vh/GHSA-v8cr-qvjm-g7vh.json +++ b/advisories/unreviewed/2022/05/GHSA-v8cr-qvjm-g7vh/GHSA-v8cr-qvjm-g7vh.json @@ -7,12 +7,8 @@ "CVE-2005-3025" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.0.7 and earlier allow remote attackers to inject arbitrary web script or HTML via the loc parameter to (1) modcp/index.php or (2) admincp/index.php, or the ip parameter to (3) modcp/user.php or (4) admincp/usertitle.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8j2-wgq9-j3hp/GHSA-v8j2-wgq9-j3hp.json b/advisories/unreviewed/2022/05/GHSA-v8j2-wgq9-j3hp/GHSA-v8j2-wgq9-j3hp.json index ca38b29cf49..af8b208cd7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8j2-wgq9-j3hp/GHSA-v8j2-wgq9-j3hp.json +++ b/advisories/unreviewed/2022/05/GHSA-v8j2-wgq9-j3hp/GHSA-v8j2-wgq9-j3hp.json @@ -7,12 +7,8 @@ "CVE-2005-3084" ], "details": "Buffer overflow in the TIFF library in the Photo Viewer for Sony PSP 2.0 firmware allows remote attackers to cause a denial of service via a crafted TIFF image.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8pg-v9x7-3572/GHSA-v8pg-v9x7-3572.json b/advisories/unreviewed/2022/05/GHSA-v8pg-v9x7-3572/GHSA-v8pg-v9x7-3572.json index 17d641bd6f4..16d165075c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8pg-v9x7-3572/GHSA-v8pg-v9x7-3572.json +++ b/advisories/unreviewed/2022/05/GHSA-v8pg-v9x7-3572/GHSA-v8pg-v9x7-3572.json @@ -7,12 +7,8 @@ "CVE-2005-3062" ], "details": "PHP remote file inclusion vulnerability in index.php in AlstraSoft E-Friends 4.0 allows remote attackers to execute arbitrary PHP code via the mode parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v8vj-969w-qv4m/GHSA-v8vj-969w-qv4m.json b/advisories/unreviewed/2022/05/GHSA-v8vj-969w-qv4m/GHSA-v8vj-969w-qv4m.json index bfb98e297ef..1ea56ec2dea 100644 --- a/advisories/unreviewed/2022/05/GHSA-v8vj-969w-qv4m/GHSA-v8vj-969w-qv4m.json +++ b/advisories/unreviewed/2022/05/GHSA-v8vj-969w-qv4m/GHSA-v8vj-969w-qv4m.json @@ -7,12 +7,8 @@ "CVE-2021-28634" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Improper Neutralization of Special Elements used in an OS Command. An authenticated attacker could leverage this vulnerability to achieve arbitrary code execution on the host machine in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v9rw-54r8-5m4q/GHSA-v9rw-54r8-5m4q.json b/advisories/unreviewed/2022/05/GHSA-v9rw-54r8-5m4q/GHSA-v9rw-54r8-5m4q.json index c9cdfd5a9c4..a50389d09c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9rw-54r8-5m4q/GHSA-v9rw-54r8-5m4q.json +++ b/advisories/unreviewed/2022/05/GHSA-v9rw-54r8-5m4q/GHSA-v9rw-54r8-5m4q.json @@ -7,12 +7,8 @@ "CVE-2021-34734" ], "details": "A vulnerability in the Link Layer Discovery Protocol (LLDP) implementation for the Cisco Video Surveillance 7000 Series IP Cameras firmware could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper management of memory resources, referred to as a double free. An attacker could exploit this vulnerability by sending crafted LLDP packets to an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Note: LLDP is a Layer 2 protocol. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vf2g-c3r3-7xxc/GHSA-vf2g-c3r3-7xxc.json b/advisories/unreviewed/2022/05/GHSA-vf2g-c3r3-7xxc/GHSA-vf2g-c3r3-7xxc.json index e0282498928..7baaf0ca921 100644 --- a/advisories/unreviewed/2022/05/GHSA-vf2g-c3r3-7xxc/GHSA-vf2g-c3r3-7xxc.json +++ b/advisories/unreviewed/2022/05/GHSA-vf2g-c3r3-7xxc/GHSA-vf2g-c3r3-7xxc.json @@ -7,12 +7,8 @@ "CVE-2005-3457" ], "details": "Unspecified vulnerability in Oracle E-Business Suite and Applications 11.0 up to 11.5.10 has unknown impact and attack vectors, as identified by Oracle Vuln# APPS08 in HRMS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vfqh-jcv7-58vc/GHSA-vfqh-jcv7-58vc.json b/advisories/unreviewed/2022/05/GHSA-vfqh-jcv7-58vc/GHSA-vfqh-jcv7-58vc.json index 06ad1ccbe95..7ff3f7432bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfqh-jcv7-58vc/GHSA-vfqh-jcv7-58vc.json +++ b/advisories/unreviewed/2022/05/GHSA-vfqh-jcv7-58vc/GHSA-vfqh-jcv7-58vc.json @@ -7,12 +7,8 @@ "CVE-2005-2808" ], "details": "frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restrictions and access blocked hosts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vfx7-5239-r253/GHSA-vfx7-5239-r253.json b/advisories/unreviewed/2022/05/GHSA-vfx7-5239-r253/GHSA-vfx7-5239-r253.json index de80cce78df..ca67f11da42 100644 --- a/advisories/unreviewed/2022/05/GHSA-vfx7-5239-r253/GHSA-vfx7-5239-r253.json +++ b/advisories/unreviewed/2022/05/GHSA-vfx7-5239-r253/GHSA-vfx7-5239-r253.json @@ -7,12 +7,8 @@ "CVE-2005-3154" ], "details": "Format string vulnerability in the logging functionality in BitDefender AntiVirus 7.2 through 9 allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in file or directory name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vj43-qmpm-3qqp/GHSA-vj43-qmpm-3qqp.json b/advisories/unreviewed/2022/05/GHSA-vj43-qmpm-3qqp/GHSA-vj43-qmpm-3qqp.json index 62663a30116..61befbe9d39 100644 --- a/advisories/unreviewed/2022/05/GHSA-vj43-qmpm-3qqp/GHSA-vj43-qmpm-3qqp.json +++ b/advisories/unreviewed/2022/05/GHSA-vj43-qmpm-3qqp/GHSA-vj43-qmpm-3qqp.json @@ -7,12 +7,8 @@ "CVE-2021-3731" ], "details": "LedgerSMB does not sufficiently guard against being wrapped by other sites, making it vulnerable to 'clickjacking'. This allows an attacker to trick a targetted user to execute unintended actions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjq5-3qc3-q3mx/GHSA-vjq5-3qc3-q3mx.json b/advisories/unreviewed/2022/05/GHSA-vjq5-3qc3-q3mx/GHSA-vjq5-3qc3-q3mx.json index 6d6177c88ed..1e04b4190af 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjq5-3qc3-q3mx/GHSA-vjq5-3qc3-q3mx.json +++ b/advisories/unreviewed/2022/05/GHSA-vjq5-3qc3-q3mx/GHSA-vjq5-3qc3-q3mx.json @@ -7,12 +7,8 @@ "CVE-2005-2939" ], "details": "Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local users to gain privileges via a malicious \"program.exe\" file in the C: folder.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmcg-wxwv-9jj9/GHSA-vmcg-wxwv-9jj9.json b/advisories/unreviewed/2022/05/GHSA-vmcg-wxwv-9jj9/GHSA-vmcg-wxwv-9jj9.json index 30421ce2647..7796004f42e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmcg-wxwv-9jj9/GHSA-vmcg-wxwv-9jj9.json +++ b/advisories/unreviewed/2022/05/GHSA-vmcg-wxwv-9jj9/GHSA-vmcg-wxwv-9jj9.json @@ -7,12 +7,8 @@ "CVE-2005-3015" ], "details": "Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 6.5.2 allows remote attackers to inject arbitrary web script or HTML via the (1) BaseTarget or (2) Src parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vp28-h326-q553/GHSA-vp28-h326-q553.json b/advisories/unreviewed/2022/05/GHSA-vp28-h326-q553/GHSA-vp28-h326-q553.json index c69ce67a829..0838c17ffe8 100644 --- a/advisories/unreviewed/2022/05/GHSA-vp28-h326-q553/GHSA-vp28-h326-q553.json +++ b/advisories/unreviewed/2022/05/GHSA-vp28-h326-q553/GHSA-vp28-h326-q553.json @@ -7,12 +7,8 @@ "CVE-2021-36352" ], "details": "Stored cross-site scripting (XSS) vulnerability in Care2x Hospital Information Management 2.7 Alpha. The vulnerability has found POST requests in /modules/registration_admission/patient_register.php page with \"name_middle\", \"addr_str\", \"station\", \"name_maiden\", \"name_2\", \"name_3\" parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vq3v-4f2j-rpqf/GHSA-vq3v-4f2j-rpqf.json b/advisories/unreviewed/2022/05/GHSA-vq3v-4f2j-rpqf/GHSA-vq3v-4f2j-rpqf.json index 434898e7596..f7c43e36921 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq3v-4f2j-rpqf/GHSA-vq3v-4f2j-rpqf.json +++ b/advisories/unreviewed/2022/05/GHSA-vq3v-4f2j-rpqf/GHSA-vq3v-4f2j-rpqf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vq56-x9hp-75c6/GHSA-vq56-x9hp-75c6.json b/advisories/unreviewed/2022/05/GHSA-vq56-x9hp-75c6/GHSA-vq56-x9hp-75c6.json index f0cc3f4c56b..6ce3c9ac195 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq56-x9hp-75c6/GHSA-vq56-x9hp-75c6.json +++ b/advisories/unreviewed/2022/05/GHSA-vq56-x9hp-75c6/GHSA-vq56-x9hp-75c6.json @@ -7,12 +7,8 @@ "CVE-2005-2902" ], "details": "SQL injection vulnerability in class-1 Forum Software 0.24.4 allows remote attackers to execute arbitrary SQL commands and bypass the file extension check via SQL code in the file extension of an uploaded file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq83-w3vp-f24w/GHSA-vq83-w3vp-f24w.json b/advisories/unreviewed/2022/05/GHSA-vq83-w3vp-f24w/GHSA-vq83-w3vp-f24w.json index c5947bea2b4..8ff28384035 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq83-w3vp-f24w/GHSA-vq83-w3vp-f24w.json +++ b/advisories/unreviewed/2022/05/GHSA-vq83-w3vp-f24w/GHSA-vq83-w3vp-f24w.json @@ -7,12 +7,8 @@ "CVE-2005-3078" ], "details": "Cross-site scripting (XSS) vulnerability in PunBB before 1.2.8 allows remote attackers to inject arbitrary web script or HTML via the \"forgotten e-mail\" feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vq97-27v2-x2p6/GHSA-vq97-27v2-x2p6.json b/advisories/unreviewed/2022/05/GHSA-vq97-27v2-x2p6/GHSA-vq97-27v2-x2p6.json index b266c192165..aa086442a31 100644 --- a/advisories/unreviewed/2022/05/GHSA-vq97-27v2-x2p6/GHSA-vq97-27v2-x2p6.json +++ b/advisories/unreviewed/2022/05/GHSA-vq97-27v2-x2p6/GHSA-vq97-27v2-x2p6.json @@ -7,12 +7,8 @@ "CVE-2005-3027" ], "details": "Sybari Antigen 8.0 SR2 does not properly filter SMTP messages, which allows remote attackers to bypass custom filter rules and send file attachments of arbitrary file types via a message with a subject of \"Antigen forwarded attachment\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vr2x-8cg9-mgf9/GHSA-vr2x-8cg9-mgf9.json b/advisories/unreviewed/2022/05/GHSA-vr2x-8cg9-mgf9/GHSA-vr2x-8cg9-mgf9.json index ef7d11bda57..48ccc4a602d 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr2x-8cg9-mgf9/GHSA-vr2x-8cg9-mgf9.json +++ b/advisories/unreviewed/2022/05/GHSA-vr2x-8cg9-mgf9/GHSA-vr2x-8cg9-mgf9.json @@ -7,12 +7,8 @@ "CVE-2005-3242" ], "details": "Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -92,9 +88,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vr8r-gqgj-mp62/GHSA-vr8r-gqgj-mp62.json b/advisories/unreviewed/2022/05/GHSA-vr8r-gqgj-mp62/GHSA-vr8r-gqgj-mp62.json index 6f5c9234f80..f966b90dad9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr8r-gqgj-mp62/GHSA-vr8r-gqgj-mp62.json +++ b/advisories/unreviewed/2022/05/GHSA-vr8r-gqgj-mp62/GHSA-vr8r-gqgj-mp62.json @@ -7,12 +7,8 @@ "CVE-2005-3466" ], "details": "Unspecified vulnerability in Enterprise CRM Sales in Oracle 8.81 up to 8.9 has unknown impact and attack vectors, as identified by Oracle Vuln# CRM01.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vrvj-3hr4-h4rc/GHSA-vrvj-3hr4-h4rc.json b/advisories/unreviewed/2022/05/GHSA-vrvj-3hr4-h4rc/GHSA-vrvj-3hr4-h4rc.json index aaf4156e5cd..5d641c4fe90 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrvj-3hr4-h4rc/GHSA-vrvj-3hr4-h4rc.json +++ b/advisories/unreviewed/2022/05/GHSA-vrvj-3hr4-h4rc/GHSA-vrvj-3hr4-h4rc.json @@ -7,12 +7,8 @@ "CVE-2021-35988" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw45-56r7-v7m2/GHSA-vw45-56r7-v7m2.json b/advisories/unreviewed/2022/05/GHSA-vw45-56r7-v7m2/GHSA-vw45-56r7-v7m2.json index 27ec5d9f05e..764f9241bbf 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw45-56r7-v7m2/GHSA-vw45-56r7-v7m2.json +++ b/advisories/unreviewed/2022/05/GHSA-vw45-56r7-v7m2/GHSA-vw45-56r7-v7m2.json @@ -7,12 +7,8 @@ "CVE-2005-2903" ], "details": "Heap-based buffer overflow in NOD32 2.5 with nod32.002 1.033 build 1127, with active scanning enabled, allows remote attackers to execute arbitrary code via an ARJ archive containing a file with a long filename.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vw75-3c43-6g3p/GHSA-vw75-3c43-6g3p.json b/advisories/unreviewed/2022/05/GHSA-vw75-3c43-6g3p/GHSA-vw75-3c43-6g3p.json index e3be83dd835..a027a6e34af 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw75-3c43-6g3p/GHSA-vw75-3c43-6g3p.json +++ b/advisories/unreviewed/2022/05/GHSA-vw75-3c43-6g3p/GHSA-vw75-3c43-6g3p.json @@ -7,12 +7,8 @@ "CVE-2021-40088" ], "details": "An issue was discovered in PrimeKey EJBCA before 7.6.0. CMP RA Mode can be configured to use a known client certificate to authenticate enrolling clients. The same RA client certificate is used for revocation requests as well. While enrollment enforces multi tenancy constraints (by verifying that the client certificate has access to the CA and Profiles being enrolled against), this check was not performed when authenticating revocation operations, allowing a known tenant to revoke a certificate belonging to another tenant.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw7c-7p33-hjmq/GHSA-vw7c-7p33-hjmq.json b/advisories/unreviewed/2022/05/GHSA-vw7c-7p33-hjmq/GHSA-vw7c-7p33-hjmq.json index f4943d07dc2..2d22611a8d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw7c-7p33-hjmq/GHSA-vw7c-7p33-hjmq.json +++ b/advisories/unreviewed/2022/05/GHSA-vw7c-7p33-hjmq/GHSA-vw7c-7p33-hjmq.json @@ -7,12 +7,8 @@ "CVE-2020-23330" ], "details": "An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_Stz2Atom::GetSampleSize component located in /Core/Ap4Stz2Atom.cpp. It allows an attacker to cause a denial of service (DOS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwwr-rhr2-pwwr/GHSA-vwwr-rhr2-pwwr.json b/advisories/unreviewed/2022/05/GHSA-vwwr-rhr2-pwwr/GHSA-vwwr-rhr2-pwwr.json index e8d58d705de..17386a1761a 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwwr-rhr2-pwwr/GHSA-vwwr-rhr2-pwwr.json +++ b/advisories/unreviewed/2022/05/GHSA-vwwr-rhr2-pwwr/GHSA-vwwr-rhr2-pwwr.json @@ -7,12 +7,8 @@ "CVE-2005-3331" ], "details": "viewpatch in mgdiff 1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vx4r-7f3q-mjg8/GHSA-vx4r-7f3q-mjg8.json b/advisories/unreviewed/2022/05/GHSA-vx4r-7f3q-mjg8/GHSA-vx4r-7f3q-mjg8.json index 9f1490669b8..c205b2e046f 100644 --- a/advisories/unreviewed/2022/05/GHSA-vx4r-7f3q-mjg8/GHSA-vx4r-7f3q-mjg8.json +++ b/advisories/unreviewed/2022/05/GHSA-vx4r-7f3q-mjg8/GHSA-vx4r-7f3q-mjg8.json @@ -7,12 +7,8 @@ "CVE-2005-3145" ], "details": "httpAdapter.c in sblim-sfcb before 0.9.2 allows remote attackers to cause a denial of service (resource consumption) by connecting to sblim-sfcb but not sending any data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vxxr-cwrh-ff4m/GHSA-vxxr-cwrh-ff4m.json b/advisories/unreviewed/2022/05/GHSA-vxxr-cwrh-ff4m/GHSA-vxxr-cwrh-ff4m.json index 5fef448b4d4..3c7a7181690 100644 --- a/advisories/unreviewed/2022/05/GHSA-vxxr-cwrh-ff4m/GHSA-vxxr-cwrh-ff4m.json +++ b/advisories/unreviewed/2022/05/GHSA-vxxr-cwrh-ff4m/GHSA-vxxr-cwrh-ff4m.json @@ -7,12 +7,8 @@ "CVE-2021-38711" ], "details": "In gitit before 0.15.0.0, the Export feature can be exploited to leak information from files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w22h-xhrm-8cw5/GHSA-w22h-xhrm-8cw5.json b/advisories/unreviewed/2022/05/GHSA-w22h-xhrm-8cw5/GHSA-w22h-xhrm-8cw5.json index ed5169160ab..0a968aeb23c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w22h-xhrm-8cw5/GHSA-w22h-xhrm-8cw5.json +++ b/advisories/unreviewed/2022/05/GHSA-w22h-xhrm-8cw5/GHSA-w22h-xhrm-8cw5.json @@ -7,12 +7,8 @@ "CVE-2005-3365" ], "details": "Multiple SQL injection vulnerabilities in DCP-Portal 6 and earlier allow remote attackers to execute arbitrary SQL commands, possibly requiring encoded characters, via (1) the name parameter in register.php, (2) the email parameter in lostpassword.php, (3) the year parameter in calendar.php, and the (4) cid parameter to index.php. NOTE: the mid parameter for forums.php is already associated with CVE-2005-0454. NOTE: the index.php/cid vector was later reported to affect 6.11.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w299-36vw-9mfq/GHSA-w299-36vw-9mfq.json b/advisories/unreviewed/2022/05/GHSA-w299-36vw-9mfq/GHSA-w299-36vw-9mfq.json index d768b552b41..994dadc9619 100644 --- a/advisories/unreviewed/2022/05/GHSA-w299-36vw-9mfq/GHSA-w299-36vw-9mfq.json +++ b/advisories/unreviewed/2022/05/GHSA-w299-36vw-9mfq/GHSA-w299-36vw-9mfq.json @@ -7,12 +7,8 @@ "CVE-2005-3190" ], "details": "Buffer overflow in Computer Associates (CA) iGateway 3.0 and 4.0 before 4.0.050623, when running in debug mode, allows remote attackers to execute arbitrary code via HTTP GET requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w2fr-4vgx-vq96/GHSA-w2fr-4vgx-vq96.json b/advisories/unreviewed/2022/05/GHSA-w2fr-4vgx-vq96/GHSA-w2fr-4vgx-vq96.json index d7e7bd8d2c7..cc9d4de35df 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2fr-4vgx-vq96/GHSA-w2fr-4vgx-vq96.json +++ b/advisories/unreviewed/2022/05/GHSA-w2fr-4vgx-vq96/GHSA-w2fr-4vgx-vq96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w37f-8cwf-64g5/GHSA-w37f-8cwf-64g5.json b/advisories/unreviewed/2022/05/GHSA-w37f-8cwf-64g5/GHSA-w37f-8cwf-64g5.json index b2db7a6e47b..974271f61ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-w37f-8cwf-64g5/GHSA-w37f-8cwf-64g5.json +++ b/advisories/unreviewed/2022/05/GHSA-w37f-8cwf-64g5/GHSA-w37f-8cwf-64g5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w3rm-h2m6-8xr6/GHSA-w3rm-h2m6-8xr6.json b/advisories/unreviewed/2022/05/GHSA-w3rm-h2m6-8xr6/GHSA-w3rm-h2m6-8xr6.json index f8865e5035e..f066d063a50 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3rm-h2m6-8xr6/GHSA-w3rm-h2m6-8xr6.json +++ b/advisories/unreviewed/2022/05/GHSA-w3rm-h2m6-8xr6/GHSA-w3rm-h2m6-8xr6.json @@ -7,12 +7,8 @@ "CVE-2005-2882" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in phpCommunityCalendar 4.0.3, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the LocationID parameter to (1) thankyou.php or (2) day.php, font parameter to (3) calDaily.php, (4) calMonthly.php, (5) calMonthlyP.php, (6) calWeekly.php, (7) calWeeklyP.php, (8) calYearly.php, (9) calYearlyP.php, (10) day.php, or (11) week.php, or (12) CeTi, (13) Contact, (14) Description, (15) ShowAddress parameter to event.php, and other attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w47c-w3p7-w9q9/GHSA-w47c-w3p7-w9q9.json b/advisories/unreviewed/2022/05/GHSA-w47c-w3p7-w9q9/GHSA-w47c-w3p7-w9q9.json index 037091d6cf7..62b88acfad5 100644 --- a/advisories/unreviewed/2022/05/GHSA-w47c-w3p7-w9q9/GHSA-w47c-w3p7-w9q9.json +++ b/advisories/unreviewed/2022/05/GHSA-w47c-w3p7-w9q9/GHSA-w47c-w3p7-w9q9.json @@ -7,12 +7,8 @@ "CVE-2005-3447" ], "details": "Unspecified vulnerability in Single Sign-On in Oracle Database Server 10g up to 10.1.0.4.2 and Application Server 9.0.2.3 up to 9.0.4.2 has unknown impact and attack vectors, aka Oracle Vuln# DB33 and AS08.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4m7-5m6v-5hgf/GHSA-w4m7-5m6v-5hgf.json b/advisories/unreviewed/2022/05/GHSA-w4m7-5m6v-5hgf/GHSA-w4m7-5m6v-5hgf.json index 3904345a922..d6fe0b52282 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4m7-5m6v-5hgf/GHSA-w4m7-5m6v-5hgf.json +++ b/advisories/unreviewed/2022/05/GHSA-w4m7-5m6v-5hgf/GHSA-w4m7-5m6v-5hgf.json @@ -7,12 +7,8 @@ "CVE-2005-3305" ], "details": "Multiple SQL injection vulnerabilities in Nuked Klan 1.7 allow remote attackers to execute arbitrary SQL commands via the (1) forum_id or (2) thread_id parameter in the Forum file, (3) the link_id in the Links file, (4) the artid parameter in the Sections file, and (5) the dl_id parameter in the Download file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4v9-jmhm-6jw4/GHSA-w4v9-jmhm-6jw4.json b/advisories/unreviewed/2022/05/GHSA-w4v9-jmhm-6jw4/GHSA-w4v9-jmhm-6jw4.json index 903d08808cb..71139971054 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4v9-jmhm-6jw4/GHSA-w4v9-jmhm-6jw4.json +++ b/advisories/unreviewed/2022/05/GHSA-w4v9-jmhm-6jw4/GHSA-w4v9-jmhm-6jw4.json @@ -7,12 +7,8 @@ "CVE-2021-24533" ], "details": "The Maintenance WordPress plugin before 4.03 does not sanitise or escape some of its settings, allowing high privilege users such as admin to se Cross-Site Scripting payload in them (even when the unfiltered_html capability is disallowed), which will be triggered in the frontend", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w5f5-72qq-hgj6/GHSA-w5f5-72qq-hgj6.json b/advisories/unreviewed/2022/05/GHSA-w5f5-72qq-hgj6/GHSA-w5f5-72qq-hgj6.json index 48b8f92028e..c01dee63c81 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5f5-72qq-hgj6/GHSA-w5f5-72qq-hgj6.json +++ b/advisories/unreviewed/2022/05/GHSA-w5f5-72qq-hgj6/GHSA-w5f5-72qq-hgj6.json @@ -7,12 +7,8 @@ "CVE-2021-36007" ], "details": "Adobe Prelude version 10.0 (and earlier) are affected by an uninitialized variable vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w5m3-5gh7-fq59/GHSA-w5m3-5gh7-fq59.json b/advisories/unreviewed/2022/05/GHSA-w5m3-5gh7-fq59/GHSA-w5m3-5gh7-fq59.json index 13bd2b6bb2d..ac417b7d005 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5m3-5gh7-fq59/GHSA-w5m3-5gh7-fq59.json +++ b/advisories/unreviewed/2022/05/GHSA-w5m3-5gh7-fq59/GHSA-w5m3-5gh7-fq59.json @@ -7,12 +7,8 @@ "CVE-2021-24549" ], "details": "The AceIDE WordPress plugin through 2.6.2 does not sanitise or validate the user input which is appended to system paths before using it in various actions, such as to read arbitrary files from the server. This allows high privilege users such as administrator to access any file on the web server outside of the blog directory via a path traversal attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w5p3-xgv8-w45f/GHSA-w5p3-xgv8-w45f.json b/advisories/unreviewed/2022/05/GHSA-w5p3-xgv8-w45f/GHSA-w5p3-xgv8-w45f.json index 71172c94526..ed3320db7f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5p3-xgv8-w45f/GHSA-w5p3-xgv8-w45f.json +++ b/advisories/unreviewed/2022/05/GHSA-w5p3-xgv8-w45f/GHSA-w5p3-xgv8-w45f.json @@ -7,12 +7,8 @@ "CVE-2021-20769" ], "details": "Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w75q-4cfj-fmmg/GHSA-w75q-4cfj-fmmg.json b/advisories/unreviewed/2022/05/GHSA-w75q-4cfj-fmmg/GHSA-w75q-4cfj-fmmg.json index 821be1aef9c..5a7a70d7d7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-w75q-4cfj-fmmg/GHSA-w75q-4cfj-fmmg.json +++ b/advisories/unreviewed/2022/05/GHSA-w75q-4cfj-fmmg/GHSA-w75q-4cfj-fmmg.json @@ -7,12 +7,8 @@ "CVE-2021-20764" ], "details": "Improper input validation vulnerability in Attaching Files of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to alter the data of Attaching Files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w7h8-jx82-595q/GHSA-w7h8-jx82-595q.json b/advisories/unreviewed/2022/05/GHSA-w7h8-jx82-595q/GHSA-w7h8-jx82-595q.json index 4e3d8e8bf04..09431b97320 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7h8-jx82-595q/GHSA-w7h8-jx82-595q.json +++ b/advisories/unreviewed/2022/05/GHSA-w7h8-jx82-595q/GHSA-w7h8-jx82-595q.json @@ -7,12 +7,8 @@ "CVE-2005-3012" ], "details": "The MasterDataCD::createImage function in masterdatacd.cpp for SimpleCDR-X 1.3.3 creates the .temp temporary directory with insecure permissions, which allows local users to read sensitive ISO images.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7m2-428f-vx82/GHSA-w7m2-428f-vx82.json b/advisories/unreviewed/2022/05/GHSA-w7m2-428f-vx82/GHSA-w7m2-428f-vx82.json index dbadea7eedf..3d00cb28b38 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7m2-428f-vx82/GHSA-w7m2-428f-vx82.json +++ b/advisories/unreviewed/2022/05/GHSA-w7m2-428f-vx82/GHSA-w7m2-428f-vx82.json @@ -7,12 +7,8 @@ "CVE-2005-3155" ], "details": "Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7p9-h59x-gp43/GHSA-w7p9-h59x-gp43.json b/advisories/unreviewed/2022/05/GHSA-w7p9-h59x-gp43/GHSA-w7p9-h59x-gp43.json index cad4daa4149..62185e78844 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7p9-h59x-gp43/GHSA-w7p9-h59x-gp43.json +++ b/advisories/unreviewed/2022/05/GHSA-w7p9-h59x-gp43/GHSA-w7p9-h59x-gp43.json @@ -7,12 +7,8 @@ "CVE-2005-2811" ], "details": "Untrusted search path vulnerability in Net-SNMP 5.2.1.2 and earlier, on Gentoo Linux, installs certain Perl modules with an insecure DT_RPATH, which could allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w89p-368h-phrv/GHSA-w89p-368h-phrv.json b/advisories/unreviewed/2022/05/GHSA-w89p-368h-phrv/GHSA-w89p-368h-phrv.json index 9dd09e9e9b8..1fdfc586557 100644 --- a/advisories/unreviewed/2022/05/GHSA-w89p-368h-phrv/GHSA-w89p-368h-phrv.json +++ b/advisories/unreviewed/2022/05/GHSA-w89p-368h-phrv/GHSA-w89p-368h-phrv.json @@ -7,12 +7,8 @@ "CVE-2021-30594" ], "details": "Use after free in Page Info UI in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via physical access to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8f8-xp64-gw98/GHSA-w8f8-xp64-gw98.json b/advisories/unreviewed/2022/05/GHSA-w8f8-xp64-gw98/GHSA-w8f8-xp64-gw98.json index dddda8f4322..0b221c2e210 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8f8-xp64-gw98/GHSA-w8f8-xp64-gw98.json +++ b/advisories/unreviewed/2022/05/GHSA-w8f8-xp64-gw98/GHSA-w8f8-xp64-gw98.json @@ -7,12 +7,8 @@ "CVE-2021-0581" ], "details": "In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187231638", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8fj-r9j2-qg46/GHSA-w8fj-r9j2-qg46.json b/advisories/unreviewed/2022/05/GHSA-w8fj-r9j2-qg46/GHSA-w8fj-r9j2-qg46.json index 807c42e1379..43179374cea 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8fj-r9j2-qg46/GHSA-w8fj-r9j2-qg46.json +++ b/advisories/unreviewed/2022/05/GHSA-w8fj-r9j2-qg46/GHSA-w8fj-r9j2-qg46.json @@ -7,12 +7,8 @@ "CVE-2005-2922" ], "details": "Heap-based buffer overflow in the embedded player in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, and Helix Player allows remote malicious servers to cause a denial of service (crash) and possibly execute arbitrary code via a chunked Transfer-Encoding HTTP response in which either (1) the chunk header length is specified as -1, (2) the chunk header with a length that is less than the actual amount of sent data, or (3) a missing chunk header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8hw-jqc4-28rh/GHSA-w8hw-jqc4-28rh.json b/advisories/unreviewed/2022/05/GHSA-w8hw-jqc4-28rh/GHSA-w8hw-jqc4-28rh.json index 19dc450d969..3abcde05da0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8hw-jqc4-28rh/GHSA-w8hw-jqc4-28rh.json +++ b/advisories/unreviewed/2022/05/GHSA-w8hw-jqc4-28rh/GHSA-w8hw-jqc4-28rh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9mq-c2pg-qc2x/GHSA-w9mq-c2pg-qc2x.json b/advisories/unreviewed/2022/05/GHSA-w9mq-c2pg-qc2x/GHSA-w9mq-c2pg-qc2x.json index b3ff0e35bcc..f23d8a65d88 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9mq-c2pg-qc2x/GHSA-w9mq-c2pg-qc2x.json +++ b/advisories/unreviewed/2022/05/GHSA-w9mq-c2pg-qc2x/GHSA-w9mq-c2pg-qc2x.json @@ -7,12 +7,8 @@ "CVE-2021-22357" ], "details": "There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages due to validating inputs insufficiently. Attackers can exploit this vulnerability by sending specific messages to affected module. This can cause denial of service. Affected product versions include: S12700 V200R013C00SPC500, V200R019C00SPC500; S5700 V200R013C00SPC500, V200R019C00SPC500; S6700 V200R013C00SPC500, V200R019C00SPC500; S7700 V200R013C00SPC500, V200R019C00SPC500.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9wx-4fjg-83vq/GHSA-w9wx-4fjg-83vq.json b/advisories/unreviewed/2022/05/GHSA-w9wx-4fjg-83vq/GHSA-w9wx-4fjg-83vq.json index 9c02ee0cc50..8e47425a65c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9wx-4fjg-83vq/GHSA-w9wx-4fjg-83vq.json +++ b/advisories/unreviewed/2022/05/GHSA-w9wx-4fjg-83vq/GHSA-w9wx-4fjg-83vq.json @@ -7,12 +7,8 @@ "CVE-2021-39283" ], "details": "liveMedia/FramedSource.cpp in Live555 through 1.08 allows an assertion failure and application exit via multiple SETUP and PLAY commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcrv-7ccm-jh9r/GHSA-wcrv-7ccm-jh9r.json b/advisories/unreviewed/2022/05/GHSA-wcrv-7ccm-jh9r/GHSA-wcrv-7ccm-jh9r.json index 23a167c39f3..2267ad7f6c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcrv-7ccm-jh9r/GHSA-wcrv-7ccm-jh9r.json +++ b/advisories/unreviewed/2022/05/GHSA-wcrv-7ccm-jh9r/GHSA-wcrv-7ccm-jh9r.json @@ -7,12 +7,8 @@ "CVE-2005-3269" ], "details": "Stack-based buffer overflow in help.cgi in the HTTP administrative interface for (1) Sun Java System Directory Server 5.2 2003Q4, 2004Q2, and 2005Q1, (2) Red Hat Directory Server and (3) Certificate Server before 7.1 SP1, (4) Sun ONE Directory Server 5.1 SP4 and earlier, and (5) Sun ONE Administration Server 5.2 allows remote attackers to cause a denial of service (admin server crash), or local users to gain root privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wf3w-8qhg-ch8v/GHSA-wf3w-8qhg-ch8v.json b/advisories/unreviewed/2022/05/GHSA-wf3w-8qhg-ch8v/GHSA-wf3w-8qhg-ch8v.json index f493079d480..6822bfc2c24 100644 --- a/advisories/unreviewed/2022/05/GHSA-wf3w-8qhg-ch8v/GHSA-wf3w-8qhg-ch8v.json +++ b/advisories/unreviewed/2022/05/GHSA-wf3w-8qhg-ch8v/GHSA-wf3w-8qhg-ch8v.json @@ -7,12 +7,8 @@ "CVE-2005-2945" ], "details": "arc 5.21j and earlier create temporary files with world-readable permissions, which allows local users to read sensitive information from files created by (1) arc (arc.c) or (2) marc (marc.c).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wfp6-64v9-pqm2/GHSA-wfp6-64v9-pqm2.json b/advisories/unreviewed/2022/05/GHSA-wfp6-64v9-pqm2/GHSA-wfp6-64v9-pqm2.json index e265334ee35..dc938df5638 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfp6-64v9-pqm2/GHSA-wfp6-64v9-pqm2.json +++ b/advisories/unreviewed/2022/05/GHSA-wfp6-64v9-pqm2/GHSA-wfp6-64v9-pqm2.json @@ -7,12 +7,8 @@ "CVE-2005-3277" ], "details": "The LPD service in HP-UX 10.20 11.11 (11i) and earlier allows remote attackers to execute arbitrary code via shell metacharacters (\"`\" or single backquote) in a request that is not properly handled when an error occurs, as demonstrated by killing the connection, a different vulnerability than CVE-2002-1473.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wgh7-rqcp-g392/GHSA-wgh7-rqcp-g392.json b/advisories/unreviewed/2022/05/GHSA-wgh7-rqcp-g392/GHSA-wgh7-rqcp-g392.json index af4b4f2ff6e..6e8d7afddd4 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgh7-rqcp-g392/GHSA-wgh7-rqcp-g392.json +++ b/advisories/unreviewed/2022/05/GHSA-wgh7-rqcp-g392/GHSA-wgh7-rqcp-g392.json @@ -7,12 +7,8 @@ "CVE-2005-3398" ], "details": "The default configuration of the web server for the Solaris Management Console (SMC) in Solaris 8, 9, and 10 enables the HTTP TRACE method, which could allow remote attackers to obtain sensitive information such as cookies and authentication data from HTTP headers.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wgh8-88mj-mfhc/GHSA-wgh8-88mj-mfhc.json b/advisories/unreviewed/2022/05/GHSA-wgh8-88mj-mfhc/GHSA-wgh8-88mj-mfhc.json index 38a6024d4a1..55f20147827 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgh8-88mj-mfhc/GHSA-wgh8-88mj-mfhc.json +++ b/advisories/unreviewed/2022/05/GHSA-wgh8-88mj-mfhc/GHSA-wgh8-88mj-mfhc.json @@ -7,12 +7,8 @@ "CVE-2005-3147" ], "details": "StoreBackup before 1.19 creates the backup root with world-readable permissions, which allows local users to obtain sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wgmq-2j65-4gv7/GHSA-wgmq-2j65-4gv7.json b/advisories/unreviewed/2022/05/GHSA-wgmq-2j65-4gv7/GHSA-wgmq-2j65-4gv7.json index c0dd644b371..15625092880 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgmq-2j65-4gv7/GHSA-wgmq-2j65-4gv7.json +++ b/advisories/unreviewed/2022/05/GHSA-wgmq-2j65-4gv7/GHSA-wgmq-2j65-4gv7.json @@ -7,12 +7,8 @@ "CVE-2005-3218" ], "details": "Multiple interpretation error in unspecified versions of Dr.Web Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wgqp-qmfp-f6mf/GHSA-wgqp-qmfp-f6mf.json b/advisories/unreviewed/2022/05/GHSA-wgqp-qmfp-f6mf/GHSA-wgqp-qmfp-f6mf.json index da0b6c7353d..0e565f29951 100644 --- a/advisories/unreviewed/2022/05/GHSA-wgqp-qmfp-f6mf/GHSA-wgqp-qmfp-f6mf.json +++ b/advisories/unreviewed/2022/05/GHSA-wgqp-qmfp-f6mf/GHSA-wgqp-qmfp-f6mf.json @@ -7,12 +7,8 @@ "CVE-2005-2960" ], "details": "cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh38-wfpg-r5vq/GHSA-wh38-wfpg-r5vq.json b/advisories/unreviewed/2022/05/GHSA-wh38-wfpg-r5vq/GHSA-wh38-wfpg-r5vq.json index e8d0faa54aa..a963d3b19ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh38-wfpg-r5vq/GHSA-wh38-wfpg-r5vq.json +++ b/advisories/unreviewed/2022/05/GHSA-wh38-wfpg-r5vq/GHSA-wh38-wfpg-r5vq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wh68-6pvj-84gm/GHSA-wh68-6pvj-84gm.json b/advisories/unreviewed/2022/05/GHSA-wh68-6pvj-84gm/GHSA-wh68-6pvj-84gm.json index 115a4a62379..8a50f37bdca 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh68-6pvj-84gm/GHSA-wh68-6pvj-84gm.json +++ b/advisories/unreviewed/2022/05/GHSA-wh68-6pvj-84gm/GHSA-wh68-6pvj-84gm.json @@ -7,12 +7,8 @@ "CVE-2021-24550" ], "details": "The Broken Link Manager WordPress plugin through 0.6.5 does not sanitise, validate or escape the url GET parameter before using it in a SQL statement when retrieving an URL to edit, leading to an authenticated SQL injection issue", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wjhh-crv5-j3rq/GHSA-wjhh-crv5-j3rq.json b/advisories/unreviewed/2022/05/GHSA-wjhh-crv5-j3rq/GHSA-wjhh-crv5-j3rq.json index ae589d901d0..a6713b70ec1 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjhh-crv5-j3rq/GHSA-wjhh-crv5-j3rq.json +++ b/advisories/unreviewed/2022/05/GHSA-wjhh-crv5-j3rq/GHSA-wjhh-crv5-j3rq.json @@ -7,12 +7,8 @@ "CVE-2005-3009" ], "details": "Cross-site scripting (XSS) vulnerability in CuteNews allows remote attackers to inject arbitrary web script or HTML via the mod parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wm3j-mrpm-rvgx/GHSA-wm3j-mrpm-rvgx.json b/advisories/unreviewed/2022/05/GHSA-wm3j-mrpm-rvgx/GHSA-wm3j-mrpm-rvgx.json index 42cf398b241..bbdfecf33bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-wm3j-mrpm-rvgx/GHSA-wm3j-mrpm-rvgx.json +++ b/advisories/unreviewed/2022/05/GHSA-wm3j-mrpm-rvgx/GHSA-wm3j-mrpm-rvgx.json @@ -7,12 +7,8 @@ "CVE-2005-2873" ], "details": "The ipt_recent kernel module (ipt_recent.c) in Linux kernel 2.6.12 and earlier does not properly perform certain time tests when the jiffies value is greater than LONG_MAX, which can cause ipt_recent netfilter rules to block too early, a different vulnerability than CVE-2005-2872.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wpc7-qhwq-ppp4/GHSA-wpc7-qhwq-ppp4.json b/advisories/unreviewed/2022/05/GHSA-wpc7-qhwq-ppp4/GHSA-wpc7-qhwq-ppp4.json index 4ee471d96e4..137f3507fd8 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpc7-qhwq-ppp4/GHSA-wpc7-qhwq-ppp4.json +++ b/advisories/unreviewed/2022/05/GHSA-wpc7-qhwq-ppp4/GHSA-wpc7-qhwq-ppp4.json @@ -7,12 +7,8 @@ "CVE-2005-3023" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via certain arguments to (1) announcement.php, (2) admincalendar.php, (3) bbcode.php, (4) cronadmin.php, (5) email.php, (6) faq.php, (7) forum.php, (8) image.php, (9) language.php, (10) ranks.php, (11) replacement.php, (12) replacement.php, (13) template.php, (14) template.php, (15) usergroup.php, or (16) usertitle.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wpr8-mw26-rgrv/GHSA-wpr8-mw26-rgrv.json b/advisories/unreviewed/2022/05/GHSA-wpr8-mw26-rgrv/GHSA-wpr8-mw26-rgrv.json index 21b77031bdd..4c3a90ca2f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpr8-mw26-rgrv/GHSA-wpr8-mw26-rgrv.json +++ b/advisories/unreviewed/2022/05/GHSA-wpr8-mw26-rgrv/GHSA-wpr8-mw26-rgrv.json @@ -7,12 +7,8 @@ "CVE-2005-2957" ], "details": "Stack-based buffer overflow in AVIRA Desktop for Windows 1.00.00.68 with AVPACK32.DLL 6.31.0.3, when archive scanning is enabled, allows remote attackers to execute arbitrary code via a long filename in an ACE archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrrm-v4f3-7p8w/GHSA-wrrm-v4f3-7p8w.json b/advisories/unreviewed/2022/05/GHSA-wrrm-v4f3-7p8w/GHSA-wrrm-v4f3-7p8w.json index 77b92a74b83..0d95efc3ae3 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrrm-v4f3-7p8w/GHSA-wrrm-v4f3-7p8w.json +++ b/advisories/unreviewed/2022/05/GHSA-wrrm-v4f3-7p8w/GHSA-wrrm-v4f3-7p8w.json @@ -7,12 +7,8 @@ "CVE-2005-3307" ], "details": "Directory traversal vulnerability in index.php for FlatNuke 2.5.6 allows remote attackers to read arbitrary files via \"..\" sequences in the (1) user parameter in a profile operation or (2) quale parameter in a newtopic operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wv7j-84hj-89vg/GHSA-wv7j-84hj-89vg.json b/advisories/unreviewed/2022/05/GHSA-wv7j-84hj-89vg/GHSA-wv7j-84hj-89vg.json index 666d76f6b68..cca9b745397 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv7j-84hj-89vg/GHSA-wv7j-84hj-89vg.json +++ b/advisories/unreviewed/2022/05/GHSA-wv7j-84hj-89vg/GHSA-wv7j-84hj-89vg.json @@ -7,12 +7,8 @@ "CVE-2021-28639" ], "details": "Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Use-after-free vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wv7p-2949-96jc/GHSA-wv7p-2949-96jc.json b/advisories/unreviewed/2022/05/GHSA-wv7p-2949-96jc/GHSA-wv7p-2949-96jc.json index da3842402f3..07f0cabc8fc 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv7p-2949-96jc/GHSA-wv7p-2949-96jc.json +++ b/advisories/unreviewed/2022/05/GHSA-wv7p-2949-96jc/GHSA-wv7p-2949-96jc.json @@ -7,12 +7,8 @@ "CVE-2005-3297" ], "details": "Multiple integer overflows in OpenWBEM on SuSE Linux 9 allow remote attackers to execute arbitrary code via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wvfq-5xp8-rhv7/GHSA-wvfq-5xp8-rhv7.json b/advisories/unreviewed/2022/05/GHSA-wvfq-5xp8-rhv7/GHSA-wvfq-5xp8-rhv7.json index ba88d3431ea..bc434e68b87 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvfq-5xp8-rhv7/GHSA-wvfq-5xp8-rhv7.json +++ b/advisories/unreviewed/2022/05/GHSA-wvfq-5xp8-rhv7/GHSA-wvfq-5xp8-rhv7.json @@ -7,12 +7,8 @@ "CVE-2021-29802" ], "details": "IBM Security SOAR performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvgm-548x-hh75/GHSA-wvgm-548x-hh75.json b/advisories/unreviewed/2022/05/GHSA-wvgm-548x-hh75/GHSA-wvgm-548x-hh75.json index 80d4baf17f6..5c5b52f3d7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvgm-548x-hh75/GHSA-wvgm-548x-hh75.json +++ b/advisories/unreviewed/2022/05/GHSA-wvgm-548x-hh75/GHSA-wvgm-548x-hh75.json @@ -7,12 +7,8 @@ "CVE-2021-28624" ], "details": "Adobe Bridge version 11.0.2 (and earlier) are affected by a Heap-based Buffer overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvjr-27w9-ff2r/GHSA-wvjr-27w9-ff2r.json b/advisories/unreviewed/2022/05/GHSA-wvjr-27w9-ff2r/GHSA-wvjr-27w9-ff2r.json index 540fb0f8d2e..759e7ec6909 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvjr-27w9-ff2r/GHSA-wvjr-27w9-ff2r.json +++ b/advisories/unreviewed/2022/05/GHSA-wvjr-27w9-ff2r/GHSA-wvjr-27w9-ff2r.json @@ -7,12 +7,8 @@ "CVE-2021-40083" ], "details": "Knot Resolver before 5.3.2 is prone to an assertion failure, triggerable by a remote attacker in an edge case (NSEC3 with too many iterations used for a positive wildcard proof).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvx3-vqrv-6fcg/GHSA-wvx3-vqrv-6fcg.json b/advisories/unreviewed/2022/05/GHSA-wvx3-vqrv-6fcg/GHSA-wvx3-vqrv-6fcg.json index dd41432af5d..cad5112d36d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvx3-vqrv-6fcg/GHSA-wvx3-vqrv-6fcg.json +++ b/advisories/unreviewed/2022/05/GHSA-wvx3-vqrv-6fcg/GHSA-wvx3-vqrv-6fcg.json @@ -7,12 +7,8 @@ "CVE-2021-30601" ], "details": "Use after free in Extensions API in Google Chrome prior to 92.0.4515.159 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wvxg-xmpg-qcwx/GHSA-wvxg-xmpg-qcwx.json b/advisories/unreviewed/2022/05/GHSA-wvxg-xmpg-qcwx/GHSA-wvxg-xmpg-qcwx.json index 5974b4fe7c7..ef6b90f624d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wvxg-xmpg-qcwx/GHSA-wvxg-xmpg-qcwx.json +++ b/advisories/unreviewed/2022/05/GHSA-wvxg-xmpg-qcwx/GHSA-wvxg-xmpg-qcwx.json @@ -7,12 +7,8 @@ "CVE-2020-25926" ], "details": "The DNS client in InterNiche NicheStack TCP/IP 4.0.1 is affected by: Insufficient entropy in the DNS transaction id. The impact is: DNS cache poisoning (remote). The component is: dns_query_type(). The attack vector is: a specific DNS response packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wwc6-cvf7-4mc4/GHSA-wwc6-cvf7-4mc4.json b/advisories/unreviewed/2022/05/GHSA-wwc6-cvf7-4mc4/GHSA-wwc6-cvf7-4mc4.json index abf87b08d86..8db9bd01abd 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwc6-cvf7-4mc4/GHSA-wwc6-cvf7-4mc4.json +++ b/advisories/unreviewed/2022/05/GHSA-wwc6-cvf7-4mc4/GHSA-wwc6-cvf7-4mc4.json @@ -7,12 +7,8 @@ "CVE-2021-32588" ], "details": "A use of hard-coded credentials (CWE-798) vulnerability in FortiPortal versions 5.2.5 and below, 5.3.5 and below, 6.0.4 and below, versions 5.1.x and 5.0.x may allow a remote and unauthenticated attacker to execute unauthorized commands as root by uploading and deploying malicious web application archive files using the default hard-coded Tomcat Manager username and password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wxcf-p893-2c63/GHSA-wxcf-p893-2c63.json b/advisories/unreviewed/2022/05/GHSA-wxcf-p893-2c63/GHSA-wxcf-p893-2c63.json index 50e848a1ed6..6e98945947a 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxcf-p893-2c63/GHSA-wxcf-p893-2c63.json +++ b/advisories/unreviewed/2022/05/GHSA-wxcf-p893-2c63/GHSA-wxcf-p893-2c63.json @@ -7,12 +7,8 @@ "CVE-2005-3124" ], "details": "syslogtocern in Acme thttpd before 2.23 allows local users to write arbitrary files via a symlink attack on a temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x22h-c7rx-g634/GHSA-x22h-c7rx-g634.json b/advisories/unreviewed/2022/05/GHSA-x22h-c7rx-g634/GHSA-x22h-c7rx-g634.json index 901c656dfe4..07550eab87b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x22h-c7rx-g634/GHSA-x22h-c7rx-g634.json +++ b/advisories/unreviewed/2022/05/GHSA-x22h-c7rx-g634/GHSA-x22h-c7rx-g634.json @@ -7,12 +7,8 @@ "CVE-2021-28591" ], "details": "Adobe Illustrator version 25.2.3 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x23j-f9cv-rr2j/GHSA-x23j-f9cv-rr2j.json b/advisories/unreviewed/2022/05/GHSA-x23j-f9cv-rr2j/GHSA-x23j-f9cv-rr2j.json index bb12aa61f30..fe5dbd1bc4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-x23j-f9cv-rr2j/GHSA-x23j-f9cv-rr2j.json +++ b/advisories/unreviewed/2022/05/GHSA-x23j-f9cv-rr2j/GHSA-x23j-f9cv-rr2j.json @@ -7,12 +7,8 @@ "CVE-2005-2812" ], "details": "man2web allows remote attackers to execute arbitrary commands via -P arguments.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x27f-prq2-qwh6/GHSA-x27f-prq2-qwh6.json b/advisories/unreviewed/2022/05/GHSA-x27f-prq2-qwh6/GHSA-x27f-prq2-qwh6.json index 7a8e1376623..87d4e834d90 100644 --- a/advisories/unreviewed/2022/05/GHSA-x27f-prq2-qwh6/GHSA-x27f-prq2-qwh6.json +++ b/advisories/unreviewed/2022/05/GHSA-x27f-prq2-qwh6/GHSA-x27f-prq2-qwh6.json @@ -7,12 +7,8 @@ "CVE-2021-3693" ], "details": "LedgerSMB does not check the origin of HTML fragments merged into the browser's DOM. By sending a specially crafted URL to an authenticated user, this flaw can be abused for remote code execution and information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x29p-2g24-67vh/GHSA-x29p-2g24-67vh.json b/advisories/unreviewed/2022/05/GHSA-x29p-2g24-67vh/GHSA-x29p-2g24-67vh.json index 9c5ff2b66f3..ce59b50a287 100644 --- a/advisories/unreviewed/2022/05/GHSA-x29p-2g24-67vh/GHSA-x29p-2g24-67vh.json +++ b/advisories/unreviewed/2022/05/GHSA-x29p-2g24-67vh/GHSA-x29p-2g24-67vh.json @@ -7,12 +7,8 @@ "CVE-2021-0580" ], "details": "In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure to a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android SoCAndroid ID: A-187231637", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x2r7-87jv-9mxm/GHSA-x2r7-87jv-9mxm.json b/advisories/unreviewed/2022/05/GHSA-x2r7-87jv-9mxm/GHSA-x2r7-87jv-9mxm.json index eeae5e8a654..bab1fea9b1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2r7-87jv-9mxm/GHSA-x2r7-87jv-9mxm.json +++ b/advisories/unreviewed/2022/05/GHSA-x2r7-87jv-9mxm/GHSA-x2r7-87jv-9mxm.json @@ -7,12 +7,8 @@ "CVE-2021-36010" ], "details": "Adobe Illustrator version 25.2.3 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to disclosure of memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x32x-qjwj-x48p/GHSA-x32x-qjwj-x48p.json b/advisories/unreviewed/2022/05/GHSA-x32x-qjwj-x48p/GHSA-x32x-qjwj-x48p.json index bab66524572..ea1abfa9b3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-x32x-qjwj-x48p/GHSA-x32x-qjwj-x48p.json +++ b/advisories/unreviewed/2022/05/GHSA-x32x-qjwj-x48p/GHSA-x32x-qjwj-x48p.json @@ -7,12 +7,8 @@ "CVE-2021-30599" ], "details": "Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x48c-86h8-7hvr/GHSA-x48c-86h8-7hvr.json b/advisories/unreviewed/2022/05/GHSA-x48c-86h8-7hvr/GHSA-x48c-86h8-7hvr.json index aaeff79f8f4..fbe5ea9b211 100644 --- a/advisories/unreviewed/2022/05/GHSA-x48c-86h8-7hvr/GHSA-x48c-86h8-7hvr.json +++ b/advisories/unreviewed/2022/05/GHSA-x48c-86h8-7hvr/GHSA-x48c-86h8-7hvr.json @@ -7,12 +7,8 @@ "CVE-2005-3235" ], "details": "Multiple interpretation error in unspecified versions of Proland Protector Plus 2000 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x4g4-vqmr-6r7x/GHSA-x4g4-vqmr-6r7x.json b/advisories/unreviewed/2022/05/GHSA-x4g4-vqmr-6r7x/GHSA-x4g4-vqmr-6r7x.json index c2356adda78..ce9fc6cdec4 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4g4-vqmr-6r7x/GHSA-x4g4-vqmr-6r7x.json +++ b/advisories/unreviewed/2022/05/GHSA-x4g4-vqmr-6r7x/GHSA-x4g4-vqmr-6r7x.json @@ -7,12 +7,8 @@ "CVE-2020-28846" ], "details": "Cross Site Request Forgery (CSRF) vulnerability exists in SeaCMS 10.7 in admin_manager.php, which could let a malicious user add an admin account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4h7-rg57-2fqw/GHSA-x4h7-rg57-2fqw.json b/advisories/unreviewed/2022/05/GHSA-x4h7-rg57-2fqw/GHSA-x4h7-rg57-2fqw.json index 072b49855c9..40b62499396 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4h7-rg57-2fqw/GHSA-x4h7-rg57-2fqw.json +++ b/advisories/unreviewed/2022/05/GHSA-x4h7-rg57-2fqw/GHSA-x4h7-rg57-2fqw.json @@ -7,12 +7,8 @@ "CVE-2020-18972" ], "details": "Exposure of Sensitive Information to an Unauthorized Actor in PoDoFo v0.9.6 allows attackers to obtain sensitive information via 'IsNextToken' in the component 'src/base/PdfToenizer.cpp'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4vf-f5c7-55mj/GHSA-x4vf-f5c7-55mj.json b/advisories/unreviewed/2022/05/GHSA-x4vf-f5c7-55mj/GHSA-x4vf-f5c7-55mj.json index 5487705cfdb..33f979419b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4vf-f5c7-55mj/GHSA-x4vf-f5c7-55mj.json +++ b/advisories/unreviewed/2022/05/GHSA-x4vf-f5c7-55mj/GHSA-x4vf-f5c7-55mj.json @@ -7,12 +7,8 @@ "CVE-2005-3044" ], "details": "Multiple vulnerabilities in Linux kernel before 2.6.13.2 allow local users to cause a denial of service (kernel OOPS from null dereference) via (1) fput in a 32-bit ioctl on 64-bit x86 systems or (2) sockfd_put in the 32-bit routing_ioctl function on 64-bit systems.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -120,9 +116,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x52f-pc67-39rq/GHSA-x52f-pc67-39rq.json b/advisories/unreviewed/2022/05/GHSA-x52f-pc67-39rq/GHSA-x52f-pc67-39rq.json index d97cd63ad34..83d49509909 100644 --- a/advisories/unreviewed/2022/05/GHSA-x52f-pc67-39rq/GHSA-x52f-pc67-39rq.json +++ b/advisories/unreviewed/2022/05/GHSA-x52f-pc67-39rq/GHSA-x52f-pc67-39rq.json @@ -7,12 +7,8 @@ "CVE-2005-2919" ], "details": "libclamav/fsg.c in Clam AntiVirus (ClamAV) before 0.87 allows remote attackers to cause a denial of service (infinite loop) via a crafted FSG packed executable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x5fr-93xj-6pp3/GHSA-x5fr-93xj-6pp3.json b/advisories/unreviewed/2022/05/GHSA-x5fr-93xj-6pp3/GHSA-x5fr-93xj-6pp3.json index dbdff148dd6..c41687161be 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5fr-93xj-6pp3/GHSA-x5fr-93xj-6pp3.json +++ b/advisories/unreviewed/2022/05/GHSA-x5fr-93xj-6pp3/GHSA-x5fr-93xj-6pp3.json @@ -7,12 +7,8 @@ "CVE-2021-0627" ], "details": "In OMA DRM, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS05722434; Issue ID: ALPS05722434.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x5gc-8fv6-9xvv/GHSA-x5gc-8fv6-9xvv.json b/advisories/unreviewed/2022/05/GHSA-x5gc-8fv6-9xvv/GHSA-x5gc-8fv6-9xvv.json index d3cc046ce20..aa05e68f568 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5gc-8fv6-9xvv/GHSA-x5gc-8fv6-9xvv.json +++ b/advisories/unreviewed/2022/05/GHSA-x5gc-8fv6-9xvv/GHSA-x5gc-8fv6-9xvv.json @@ -7,12 +7,8 @@ "CVE-2005-3215" ], "details": "Multiple interpretation error in unspecified versions of McAfee Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x75x-rr26-fwqf/GHSA-x75x-rr26-fwqf.json b/advisories/unreviewed/2022/05/GHSA-x75x-rr26-fwqf/GHSA-x75x-rr26-fwqf.json index 54f03e9b169..789be2b6f88 100644 --- a/advisories/unreviewed/2022/05/GHSA-x75x-rr26-fwqf/GHSA-x75x-rr26-fwqf.json +++ b/advisories/unreviewed/2022/05/GHSA-x75x-rr26-fwqf/GHSA-x75x-rr26-fwqf.json @@ -7,12 +7,8 @@ "CVE-2021-0640" ], "details": "In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-9Android ID: A-187957589", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x7xh-qj32-6gv8/GHSA-x7xh-qj32-6gv8.json b/advisories/unreviewed/2022/05/GHSA-x7xh-qj32-6gv8/GHSA-x7xh-qj32-6gv8.json index c200d8abe6c..5db22eb5502 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7xh-qj32-6gv8/GHSA-x7xh-qj32-6gv8.json +++ b/advisories/unreviewed/2022/05/GHSA-x7xh-qj32-6gv8/GHSA-x7xh-qj32-6gv8.json @@ -7,12 +7,8 @@ "CVE-2005-3300" ], "details": "The register_globals emulation layer in grab_globals.php for phpMyAdmin before 2.6.4-pl3 does not perform safety checks on values in the _FILES array for uploaded files, which allows remote attackers to include arbitrary files by using direct requests to library scripts that do not use grab_globals.php, then modifying certain configuration values for the theme.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8cp-8xjm-x5rm/GHSA-x8cp-8xjm-x5rm.json b/advisories/unreviewed/2022/05/GHSA-x8cp-8xjm-x5rm/GHSA-x8cp-8xjm-x5rm.json index cb7349d8e90..175c6cb37b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8cp-8xjm-x5rm/GHSA-x8cp-8xjm-x5rm.json +++ b/advisories/unreviewed/2022/05/GHSA-x8cp-8xjm-x5rm/GHSA-x8cp-8xjm-x5rm.json @@ -7,12 +7,8 @@ "CVE-2005-3072" ], "details": "SQL injection vulnerability in pages/forum/submit.html in Interchange 4.9.3 up to 5.2.0 allows remote attackers to execute arbitrary SQL commands via unknown vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x8j7-m33v-2rqw/GHSA-x8j7-m33v-2rqw.json b/advisories/unreviewed/2022/05/GHSA-x8j7-m33v-2rqw/GHSA-x8j7-m33v-2rqw.json index b63aabaf3e2..e4df87aeb7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8j7-m33v-2rqw/GHSA-x8j7-m33v-2rqw.json +++ b/advisories/unreviewed/2022/05/GHSA-x8j7-m33v-2rqw/GHSA-x8j7-m33v-2rqw.json @@ -7,12 +7,8 @@ "CVE-2021-28595" ], "details": "Adobe Dimension version 3.4 (and earlier) is affected by an Uncontrolled Search Path Element element. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x9qq-h45j-7chv/GHSA-x9qq-h45j-7chv.json b/advisories/unreviewed/2022/05/GHSA-x9qq-h45j-7chv/GHSA-x9qq-h45j-7chv.json index 6b99959f225..03495811480 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9qq-h45j-7chv/GHSA-x9qq-h45j-7chv.json +++ b/advisories/unreviewed/2022/05/GHSA-x9qq-h45j-7chv/GHSA-x9qq-h45j-7chv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x9w7-f6x8-r9xh/GHSA-x9w7-f6x8-r9xh.json b/advisories/unreviewed/2022/05/GHSA-x9w7-f6x8-r9xh/GHSA-x9w7-f6x8-r9xh.json index 67e0e5184ed..93e9e5b9b19 100644 --- a/advisories/unreviewed/2022/05/GHSA-x9w7-f6x8-r9xh/GHSA-x9w7-f6x8-r9xh.json +++ b/advisories/unreviewed/2022/05/GHSA-x9w7-f6x8-r9xh/GHSA-x9w7-f6x8-r9xh.json @@ -7,12 +7,8 @@ "CVE-2021-33580" ], "details": "User controlled `request.getHeader(\"Referer\")`, `request.getRequestURL()` and `request.getQueryString()` are used to build and run a regex expression. The attacker doesn't have to use a browser and may send a specially crafted Referer header programmatically. Since the attacker controls the string and the regex pattern he may cause a ReDoS by regex catastrophic backtracking on the server side. This problem has been fixed in Roller 6.0.2.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xc89-vpfh-32xw/GHSA-xc89-vpfh-32xw.json b/advisories/unreviewed/2022/05/GHSA-xc89-vpfh-32xw/GHSA-xc89-vpfh-32xw.json index 0936e5bb8b5..00e5b50ae3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xc89-vpfh-32xw/GHSA-xc89-vpfh-32xw.json +++ b/advisories/unreviewed/2022/05/GHSA-xc89-vpfh-32xw/GHSA-xc89-vpfh-32xw.json @@ -7,12 +7,8 @@ "CVE-2005-2964" ], "details": "Stack-based buffer overflow in AbiWord before 2.2.10 allows attackers to execute arbitrary code via the RTF import mechanism.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf4f-2rfr-r287/GHSA-xf4f-2rfr-r287.json b/advisories/unreviewed/2022/05/GHSA-xf4f-2rfr-r287/GHSA-xf4f-2rfr-r287.json index d210b67495f..25648e83d54 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf4f-2rfr-r287/GHSA-xf4f-2rfr-r287.json +++ b/advisories/unreviewed/2022/05/GHSA-xf4f-2rfr-r287/GHSA-xf4f-2rfr-r287.json @@ -7,12 +7,8 @@ "CVE-2005-2978" ], "details": "pnmtopng in netpbm before 10.25, when using the -trans option, uses uninitialized size and index variables when converting Portable Anymap (PNM) images to Portable Network Graphics (PNG), which might allow attackers to execute arbitrary code by modifying the stack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xf9f-9v6p-v639/GHSA-xf9f-9v6p-v639.json b/advisories/unreviewed/2022/05/GHSA-xf9f-9v6p-v639/GHSA-xf9f-9v6p-v639.json index 1e29f724f8d..ada70c8aca7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xf9f-9v6p-v639/GHSA-xf9f-9v6p-v639.json +++ b/advisories/unreviewed/2022/05/GHSA-xf9f-9v6p-v639/GHSA-xf9f-9v6p-v639.json @@ -7,12 +7,8 @@ "CVE-2005-3057" ], "details": "The FTP component in FortiGate 2.8 running FortiOS 2.8MR10 and v3beta, and other versions before 3.0 MR1, allows remote attackers to bypass the Fortinet FTP anti-virus engine by sending a STOR command and uploading a file before the FTP server response has been sent, as demonstrated using LFTP.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xgc7-jmvj-5fph/GHSA-xgc7-jmvj-5fph.json b/advisories/unreviewed/2022/05/GHSA-xgc7-jmvj-5fph/GHSA-xgc7-jmvj-5fph.json index f69093340be..e6969a7a06c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgc7-jmvj-5fph/GHSA-xgc7-jmvj-5fph.json +++ b/advisories/unreviewed/2022/05/GHSA-xgc7-jmvj-5fph/GHSA-xgc7-jmvj-5fph.json @@ -7,12 +7,8 @@ "CVE-2005-3073" ], "details": "Unspecified vulnerability in Interchange 5.0.1 allows attackers 4.9.3, 5.0 before 5.0.2, and 5.2, when a catalog has been created using the (1) \"mike\", (2) \"standard\", or (3) \"foundation\" demo, allows attackers to inject Interchange Tag Language (ITL) elements into the forum/submit.html page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xghf-rq5q-xgj7/GHSA-xghf-rq5q-xgj7.json b/advisories/unreviewed/2022/05/GHSA-xghf-rq5q-xgj7/GHSA-xghf-rq5q-xgj7.json index 884408a94b8..fc7d9575227 100644 --- a/advisories/unreviewed/2022/05/GHSA-xghf-rq5q-xgj7/GHSA-xghf-rq5q-xgj7.json +++ b/advisories/unreviewed/2022/05/GHSA-xghf-rq5q-xgj7/GHSA-xghf-rq5q-xgj7.json @@ -7,12 +7,8 @@ "CVE-2005-3381" ], "details": "Multiple interpretation error in Ukrainian National Antivirus (UNA) 1.83.2.16 with kernel 265 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xgjj-696c-x9g9/GHSA-xgjj-696c-x9g9.json b/advisories/unreviewed/2022/05/GHSA-xgjj-696c-x9g9/GHSA-xgjj-696c-x9g9.json index 2df2428cf2c..0154b7f189c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgjj-696c-x9g9/GHSA-xgjj-696c-x9g9.json +++ b/advisories/unreviewed/2022/05/GHSA-xgjj-696c-x9g9/GHSA-xgjj-696c-x9g9.json @@ -7,12 +7,8 @@ "CVE-2005-3148" ], "details": "StoreBackup before 1.19 does not properly set the uid and guid for symbolic links (1) that are backed up by storeBackup.pl, or (2) recovered by storeBackupRecover.pl, which could cause files to be restored with incorrect ownership.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xh24-4c7j-2rmj/GHSA-xh24-4c7j-2rmj.json b/advisories/unreviewed/2022/05/GHSA-xh24-4c7j-2rmj/GHSA-xh24-4c7j-2rmj.json index 30a25adfc45..0c74ef2e72f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xh24-4c7j-2rmj/GHSA-xh24-4c7j-2rmj.json +++ b/advisories/unreviewed/2022/05/GHSA-xh24-4c7j-2rmj/GHSA-xh24-4c7j-2rmj.json @@ -7,12 +7,8 @@ "CVE-2021-30590" ], "details": "Heap buffer overflow in Bookmarks in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhvj-h5pc-rgrw/GHSA-xhvj-h5pc-rgrw.json b/advisories/unreviewed/2022/05/GHSA-xhvj-h5pc-rgrw/GHSA-xhvj-h5pc-rgrw.json index ac808b2bcab..af748efd217 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhvj-h5pc-rgrw/GHSA-xhvj-h5pc-rgrw.json +++ b/advisories/unreviewed/2022/05/GHSA-xhvj-h5pc-rgrw/GHSA-xhvj-h5pc-rgrw.json @@ -7,12 +7,8 @@ "CVE-2005-3093" ], "details": "Nokia 7610 and 3210 phones allows attackers to cause a denial of service via certain characters in the filename of a Bluetooth OBEX transfer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xj6g-7vq6-3mcm/GHSA-xj6g-7vq6-3mcm.json b/advisories/unreviewed/2022/05/GHSA-xj6g-7vq6-3mcm/GHSA-xj6g-7vq6-3mcm.json index 4bd2309fef4..0b2311fa943 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj6g-7vq6-3mcm/GHSA-xj6g-7vq6-3mcm.json +++ b/advisories/unreviewed/2022/05/GHSA-xj6g-7vq6-3mcm/GHSA-xj6g-7vq6-3mcm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj83-6v6g-v838/GHSA-xj83-6v6g-v838.json b/advisories/unreviewed/2022/05/GHSA-xj83-6v6g-v838/GHSA-xj83-6v6g-v838.json index 7dc7c6ca9df..c3a1a6f57a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj83-6v6g-v838/GHSA-xj83-6v6g-v838.json +++ b/advisories/unreviewed/2022/05/GHSA-xj83-6v6g-v838/GHSA-xj83-6v6g-v838.json @@ -7,12 +7,8 @@ "CVE-2005-2900" ], "details": "Cross-site scripting (XSS) vulnerability in top.php in CjLinkOut 1.0 allows remote attackers to inject arbitrary web script or HTML via the 123 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xm2g-rgpw-75v4/GHSA-xm2g-rgpw-75v4.json b/advisories/unreviewed/2022/05/GHSA-xm2g-rgpw-75v4/GHSA-xm2g-rgpw-75v4.json index 921601cd45f..becbe1ba382 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm2g-rgpw-75v4/GHSA-xm2g-rgpw-75v4.json +++ b/advisories/unreviewed/2022/05/GHSA-xm2g-rgpw-75v4/GHSA-xm2g-rgpw-75v4.json @@ -7,12 +7,8 @@ "CVE-2005-2896" ], "details": "SQL injection vulnerability in WEB//NEWS 1.4 allows remote attackers to execute arbitrary SQL commands via the (1) wn_userpw parameter to startup.php, (2) cat, (3) id, or (4) stof parameter to news.php, or (5) id parameter to print.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xm2v-m533-mq6r/GHSA-xm2v-m533-mq6r.json b/advisories/unreviewed/2022/05/GHSA-xm2v-m533-mq6r/GHSA-xm2v-m533-mq6r.json index dc41649275d..74df0bd65df 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm2v-m533-mq6r/GHSA-xm2v-m533-mq6r.json +++ b/advisories/unreviewed/2022/05/GHSA-xm2v-m533-mq6r/GHSA-xm2v-m533-mq6r.json @@ -7,12 +7,8 @@ "CVE-2005-3076" ], "details": "Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid, (3) cid, or (4) m parameters to archive.php, or the (5) blogid parameter to blogadmin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xm77-r4gq-gm87/GHSA-xm77-r4gq-gm87.json b/advisories/unreviewed/2022/05/GHSA-xm77-r4gq-gm87/GHSA-xm77-r4gq-gm87.json index b2757f1e1f5..f80014edc68 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm77-r4gq-gm87/GHSA-xm77-r4gq-gm87.json +++ b/advisories/unreviewed/2022/05/GHSA-xm77-r4gq-gm87/GHSA-xm77-r4gq-gm87.json @@ -7,12 +7,8 @@ "CVE-2020-19547" ], "details": "Directory Traversal vulnerability exists in PopojiCMS 2.0.1 via the id parameter in admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xmhx-6rmw-grmj/GHSA-xmhx-6rmw-grmj.json b/advisories/unreviewed/2022/05/GHSA-xmhx-6rmw-grmj/GHSA-xmhx-6rmw-grmj.json index 10d890016ee..f2b40fd35e8 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmhx-6rmw-grmj/GHSA-xmhx-6rmw-grmj.json +++ b/advisories/unreviewed/2022/05/GHSA-xmhx-6rmw-grmj/GHSA-xmhx-6rmw-grmj.json @@ -7,12 +7,8 @@ "CVE-2021-29801" ], "details": "IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the kernel to gain root privileges. IBM X-Force ID: 203977.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xq6m-vcfr-h89q/GHSA-xq6m-vcfr-h89q.json b/advisories/unreviewed/2022/05/GHSA-xq6m-vcfr-h89q/GHSA-xq6m-vcfr-h89q.json index f9cdb6a785e..bab66535dc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq6m-vcfr-h89q/GHSA-xq6m-vcfr-h89q.json +++ b/advisories/unreviewed/2022/05/GHSA-xq6m-vcfr-h89q/GHSA-xq6m-vcfr-h89q.json @@ -7,12 +7,8 @@ "CVE-2005-2959" ], "details": "Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xq8v-3x6g-9vpm/GHSA-xq8v-3x6g-9vpm.json b/advisories/unreviewed/2022/05/GHSA-xq8v-3x6g-9vpm/GHSA-xq8v-3x6g-9vpm.json index 7847d1c42a1..4f316e93d4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq8v-3x6g-9vpm/GHSA-xq8v-3x6g-9vpm.json +++ b/advisories/unreviewed/2022/05/GHSA-xq8v-3x6g-9vpm/GHSA-xq8v-3x6g-9vpm.json @@ -7,12 +7,8 @@ "CVE-2005-3299" ], "details": "PHP file inclusion vulnerability in grab_globals.lib.php in phpMyAdmin 2.6.4 and 2.6.4-pl1 allows remote attackers to include local files via the $__redirect parameter, possibly involving the subform array.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xqvg-mhw9-7644/GHSA-xqvg-mhw9-7644.json b/advisories/unreviewed/2022/05/GHSA-xqvg-mhw9-7644/GHSA-xqvg-mhw9-7644.json index d6b6a91bae7..e43772210f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqvg-mhw9-7644/GHSA-xqvg-mhw9-7644.json +++ b/advisories/unreviewed/2022/05/GHSA-xqvg-mhw9-7644/GHSA-xqvg-mhw9-7644.json @@ -7,12 +7,8 @@ "CVE-2021-37154" ], "details": "In ForgeRock Access Management (AM) before 7.0.2, the SAML2 implementation allows XML injection, potentially enabling a fraudulent SAML 2.0 assertion.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xqw6-9936-vppq/GHSA-xqw6-9936-vppq.json b/advisories/unreviewed/2022/05/GHSA-xqw6-9936-vppq/GHSA-xqw6-9936-vppq.json index e975d471c6f..c6e38f2590d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqw6-9936-vppq/GHSA-xqw6-9936-vppq.json +++ b/advisories/unreviewed/2022/05/GHSA-xqw6-9936-vppq/GHSA-xqw6-9936-vppq.json @@ -7,12 +7,8 @@ "CVE-2021-20761" ], "details": "Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker with an administrative privilege to alter the data of E-mail without the appropriate privilege.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xr25-82p4-842w/GHSA-xr25-82p4-842w.json b/advisories/unreviewed/2022/05/GHSA-xr25-82p4-842w/GHSA-xr25-82p4-842w.json index b9014a3be54..33faf5245f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr25-82p4-842w/GHSA-xr25-82p4-842w.json +++ b/advisories/unreviewed/2022/05/GHSA-xr25-82p4-842w/GHSA-xr25-82p4-842w.json @@ -7,12 +7,8 @@ "CVE-2020-14161" ], "details": "It is possible to inject HTML and/or JavaScript in the HTML to PDF conversion in Gotenberg through 6.2.1 via the /convert/html endpoint.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xr6f-cqvg-r32q/GHSA-xr6f-cqvg-r32q.json b/advisories/unreviewed/2022/05/GHSA-xr6f-cqvg-r32q/GHSA-xr6f-cqvg-r32q.json index e835fb67028..db6ee3972ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr6f-cqvg-r32q/GHSA-xr6f-cqvg-r32q.json +++ b/advisories/unreviewed/2022/05/GHSA-xr6f-cqvg-r32q/GHSA-xr6f-cqvg-r32q.json @@ -7,12 +7,8 @@ "CVE-2005-3296" ], "details": "The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xr7f-qhp5-ffxc/GHSA-xr7f-qhp5-ffxc.json b/advisories/unreviewed/2022/05/GHSA-xr7f-qhp5-ffxc/GHSA-xr7f-qhp5-ffxc.json index 4cdfb83135c..05b023b7c06 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr7f-qhp5-ffxc/GHSA-xr7f-qhp5-ffxc.json +++ b/advisories/unreviewed/2022/05/GHSA-xr7f-qhp5-ffxc/GHSA-xr7f-qhp5-ffxc.json @@ -7,12 +7,8 @@ "CVE-2005-3168" ], "details": "The SECEDIT command on Microsoft Windows 2000 before Update Rollup 1 for SP4, when using a security template to set Access Control Lists (ACLs) on folders, does not apply ACLs on folders that are listed after a long folder entry, which could result in less secure permissions than specified by the template.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xr84-wvr6-x336/GHSA-xr84-wvr6-x336.json b/advisories/unreviewed/2022/05/GHSA-xr84-wvr6-x336/GHSA-xr84-wvr6-x336.json index 71e555dca58..0572ec68fb9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr84-wvr6-x336/GHSA-xr84-wvr6-x336.json +++ b/advisories/unreviewed/2022/05/GHSA-xr84-wvr6-x336/GHSA-xr84-wvr6-x336.json @@ -7,12 +7,8 @@ "CVE-2005-3377" ], "details": "Multiple interpretation error in (1) McAfee Internet Security Suite 7.1.5 version 9.1.08 with the 4.4.00 engine and (2) McAfee Corporate 8.0.0 patch 10 with the 4400 engine allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an \"MZ\" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a \"triple headed\" program that contains EXE, EML, and HTML content, aka the \"magic byte bug.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xrmq-h6xp-2vgc/GHSA-xrmq-h6xp-2vgc.json b/advisories/unreviewed/2022/05/GHSA-xrmq-h6xp-2vgc/GHSA-xrmq-h6xp-2vgc.json index ada835c6387..23d699e3aa8 100644 --- a/advisories/unreviewed/2022/05/GHSA-xrmq-h6xp-2vgc/GHSA-xrmq-h6xp-2vgc.json +++ b/advisories/unreviewed/2022/05/GHSA-xrmq-h6xp-2vgc/GHSA-xrmq-h6xp-2vgc.json @@ -7,12 +7,8 @@ "CVE-2020-18971" ], "details": "Stack-based Buffer Overflow in PoDoFo v0.9.6 allows attackers to cause a denial of service via the component 'src/base/PdfDictionary.cpp:65'.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xvvq-jr85-m2g9/GHSA-xvvq-jr85-m2g9.json b/advisories/unreviewed/2022/05/GHSA-xvvq-jr85-m2g9/GHSA-xvvq-jr85-m2g9.json index ab2c2d011ee..16ca6a3671e 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvvq-jr85-m2g9/GHSA-xvvq-jr85-m2g9.json +++ b/advisories/unreviewed/2022/05/GHSA-xvvq-jr85-m2g9/GHSA-xvvq-jr85-m2g9.json @@ -7,12 +7,8 @@ "CVE-2005-3446" ], "details": "Unspecified vulnerability in Internet Directory in Oracle Database Server 9i up to 9.2.0.6 and Application Server 9.0.2.3 up to 10.1.2.0 has unknown impact and attack vectors, aka Oracle Vuln# DB32 and AS06.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xwp2-775j-9939/GHSA-xwp2-775j-9939.json b/advisories/unreviewed/2022/05/GHSA-xwp2-775j-9939/GHSA-xwp2-775j-9939.json index 558bac30e67..b4ae4650231 100644 --- a/advisories/unreviewed/2022/05/GHSA-xwp2-775j-9939/GHSA-xwp2-775j-9939.json +++ b/advisories/unreviewed/2022/05/GHSA-xwp2-775j-9939/GHSA-xwp2-775j-9939.json @@ -7,12 +7,8 @@ "CVE-2021-24564" ], "details": "The WPFront Scroll Top WordPress plugin before 2.0.6.07225 does not sanitise or escape its Image ALT setting before outputting it attributes, leading to an Authenticated Stored Cross-Site Scripting issues even when the unfiltered_html capability is disallowed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xxfv-4p77-f27m/GHSA-xxfv-4p77-f27m.json b/advisories/unreviewed/2022/05/GHSA-xxfv-4p77-f27m/GHSA-xxfv-4p77-f27m.json index 5c67d9fe7be..7c3df93532c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxfv-4p77-f27m/GHSA-xxfv-4p77-f27m.json +++ b/advisories/unreviewed/2022/05/GHSA-xxfv-4p77-f27m/GHSA-xxfv-4p77-f27m.json @@ -7,12 +7,8 @@ "CVE-2021-33598" ], "details": "A Denial-of-Service (DoS) vulnerability was discovered in all versions of F-Secure Atlant whereby the SAVAPI component used in certain F-Secure products can crash while scanning fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxhw-3mwj-8m78/GHSA-xxhw-3mwj-8m78.json b/advisories/unreviewed/2022/05/GHSA-xxhw-3mwj-8m78/GHSA-xxhw-3mwj-8m78.json index 71f763d3bd4..172729fc45f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxhw-3mwj-8m78/GHSA-xxhw-3mwj-8m78.json +++ b/advisories/unreviewed/2022/05/GHSA-xxhw-3mwj-8m78/GHSA-xxhw-3mwj-8m78.json @@ -7,12 +7,8 @@ "CVE-2005-2848" ], "details": "Directory traversal vulnerability in img.pl in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xxwf-mr27-9j8v/GHSA-xxwf-mr27-9j8v.json b/advisories/unreviewed/2022/05/GHSA-xxwf-mr27-9j8v/GHSA-xxwf-mr27-9j8v.json index e3297262cba..f6259f9649b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xxwf-mr27-9j8v/GHSA-xxwf-mr27-9j8v.json +++ b/advisories/unreviewed/2022/05/GHSA-xxwf-mr27-9j8v/GHSA-xxwf-mr27-9j8v.json @@ -7,12 +7,8 @@ "CVE-2005-2955" ], "details": "config.inc.php in ATutor 1.5.1, and possibly earlier versions, uses an incomplete blacklist to check for dangerous file extensions, which allows authenticated administrators or educators to execute arbitrary code by uploading files with other executable extensions such as .inc, .php4, or others.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-2h7r-p6c6-2v49/GHSA-2h7r-p6c6-2v49.json b/advisories/unreviewed/2022/09/GHSA-2h7r-p6c6-2v49/GHSA-2h7r-p6c6-2v49.json index 2ba9f56d445..db793d80562 100644 --- a/advisories/unreviewed/2022/09/GHSA-2h7r-p6c6-2v49/GHSA-2h7r-p6c6-2v49.json +++ b/advisories/unreviewed/2022/09/GHSA-2h7r-p6c6-2v49/GHSA-2h7r-p6c6-2v49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-34vp-vpx3-9q2g/GHSA-34vp-vpx3-9q2g.json b/advisories/unreviewed/2022/09/GHSA-34vp-vpx3-9q2g/GHSA-34vp-vpx3-9q2g.json index 7573a3563f7..67ed3b7f36d 100644 --- a/advisories/unreviewed/2022/09/GHSA-34vp-vpx3-9q2g/GHSA-34vp-vpx3-9q2g.json +++ b/advisories/unreviewed/2022/09/GHSA-34vp-vpx3-9q2g/GHSA-34vp-vpx3-9q2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-36wc-4prf-gp6g/GHSA-36wc-4prf-gp6g.json b/advisories/unreviewed/2022/09/GHSA-36wc-4prf-gp6g/GHSA-36wc-4prf-gp6g.json index 98f2c4aac84..5e49858f836 100644 --- a/advisories/unreviewed/2022/09/GHSA-36wc-4prf-gp6g/GHSA-36wc-4prf-gp6g.json +++ b/advisories/unreviewed/2022/09/GHSA-36wc-4prf-gp6g/GHSA-36wc-4prf-gp6g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-484m-6228-v3ch/GHSA-484m-6228-v3ch.json b/advisories/unreviewed/2022/09/GHSA-484m-6228-v3ch/GHSA-484m-6228-v3ch.json index 50d95301827..e44fa0682d5 100644 --- a/advisories/unreviewed/2022/09/GHSA-484m-6228-v3ch/GHSA-484m-6228-v3ch.json +++ b/advisories/unreviewed/2022/09/GHSA-484m-6228-v3ch/GHSA-484m-6228-v3ch.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-6v73-77xc-78hg/GHSA-6v73-77xc-78hg.json b/advisories/unreviewed/2022/09/GHSA-6v73-77xc-78hg/GHSA-6v73-77xc-78hg.json index b28b5cea37e..a8e7648f4c6 100644 --- a/advisories/unreviewed/2022/09/GHSA-6v73-77xc-78hg/GHSA-6v73-77xc-78hg.json +++ b/advisories/unreviewed/2022/09/GHSA-6v73-77xc-78hg/GHSA-6v73-77xc-78hg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-j77h-m5qv-6jf7/GHSA-j77h-m5qv-6jf7.json b/advisories/unreviewed/2022/09/GHSA-j77h-m5qv-6jf7/GHSA-j77h-m5qv-6jf7.json index aa7bfd3bc51..2af5330fb8d 100644 --- a/advisories/unreviewed/2022/09/GHSA-j77h-m5qv-6jf7/GHSA-j77h-m5qv-6jf7.json +++ b/advisories/unreviewed/2022/09/GHSA-j77h-m5qv-6jf7/GHSA-j77h-m5qv-6jf7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-j93m-q6xh-qq49/GHSA-j93m-q6xh-qq49.json b/advisories/unreviewed/2022/09/GHSA-j93m-q6xh-qq49/GHSA-j93m-q6xh-qq49.json index f5140b2bda6..19d48705b5e 100644 --- a/advisories/unreviewed/2022/09/GHSA-j93m-q6xh-qq49/GHSA-j93m-q6xh-qq49.json +++ b/advisories/unreviewed/2022/09/GHSA-j93m-q6xh-qq49/GHSA-j93m-q6xh-qq49.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-pg2f-924c-5qqx/GHSA-pg2f-924c-5qqx.json b/advisories/unreviewed/2022/09/GHSA-pg2f-924c-5qqx/GHSA-pg2f-924c-5qqx.json index d59e13d9b50..67fec49f488 100644 --- a/advisories/unreviewed/2022/09/GHSA-pg2f-924c-5qqx/GHSA-pg2f-924c-5qqx.json +++ b/advisories/unreviewed/2022/09/GHSA-pg2f-924c-5qqx/GHSA-pg2f-924c-5qqx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-x7w8-47qc-qwvr/GHSA-x7w8-47qc-qwvr.json b/advisories/unreviewed/2022/09/GHSA-x7w8-47qc-qwvr/GHSA-x7w8-47qc-qwvr.json index f6460f94144..c919bc9a093 100644 --- a/advisories/unreviewed/2022/09/GHSA-x7w8-47qc-qwvr/GHSA-x7w8-47qc-qwvr.json +++ b/advisories/unreviewed/2022/09/GHSA-x7w8-47qc-qwvr/GHSA-x7w8-47qc-qwvr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-6gqv-x5rh-36m4/GHSA-6gqv-x5rh-36m4.json b/advisories/unreviewed/2022/10/GHSA-6gqv-x5rh-36m4/GHSA-6gqv-x5rh-36m4.json index fe1ad58e7b2..e6d475aeb56 100644 --- a/advisories/unreviewed/2022/10/GHSA-6gqv-x5rh-36m4/GHSA-6gqv-x5rh-36m4.json +++ b/advisories/unreviewed/2022/10/GHSA-6gqv-x5rh-36m4/GHSA-6gqv-x5rh-36m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-6rrc-75gq-rgrf/GHSA-6rrc-75gq-rgrf.json b/advisories/unreviewed/2022/10/GHSA-6rrc-75gq-rgrf/GHSA-6rrc-75gq-rgrf.json index a52b7ab3026..b7c1b4f9b78 100644 --- a/advisories/unreviewed/2022/10/GHSA-6rrc-75gq-rgrf/GHSA-6rrc-75gq-rgrf.json +++ b/advisories/unreviewed/2022/10/GHSA-6rrc-75gq-rgrf/GHSA-6rrc-75gq-rgrf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-7g4h-mwg6-xgxc/GHSA-7g4h-mwg6-xgxc.json b/advisories/unreviewed/2022/10/GHSA-7g4h-mwg6-xgxc/GHSA-7g4h-mwg6-xgxc.json index e0fc91fc2c9..e97dd1ddd9c 100644 --- a/advisories/unreviewed/2022/10/GHSA-7g4h-mwg6-xgxc/GHSA-7g4h-mwg6-xgxc.json +++ b/advisories/unreviewed/2022/10/GHSA-7g4h-mwg6-xgxc/GHSA-7g4h-mwg6-xgxc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-gj3h-47qp-ppc2/GHSA-gj3h-47qp-ppc2.json b/advisories/unreviewed/2022/10/GHSA-gj3h-47qp-ppc2/GHSA-gj3h-47qp-ppc2.json index c1a824fcac6..2e719cc79e0 100644 --- a/advisories/unreviewed/2022/10/GHSA-gj3h-47qp-ppc2/GHSA-gj3h-47qp-ppc2.json +++ b/advisories/unreviewed/2022/10/GHSA-gj3h-47qp-ppc2/GHSA-gj3h-47qp-ppc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-h3w5-5wfj-phcx/GHSA-h3w5-5wfj-phcx.json b/advisories/unreviewed/2022/10/GHSA-h3w5-5wfj-phcx/GHSA-h3w5-5wfj-phcx.json index 102ed066412..1910d6f26ef 100644 --- a/advisories/unreviewed/2022/10/GHSA-h3w5-5wfj-phcx/GHSA-h3w5-5wfj-phcx.json +++ b/advisories/unreviewed/2022/10/GHSA-h3w5-5wfj-phcx/GHSA-h3w5-5wfj-phcx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-hq5f-3c8f-c5w8/GHSA-hq5f-3c8f-c5w8.json b/advisories/unreviewed/2022/10/GHSA-hq5f-3c8f-c5w8/GHSA-hq5f-3c8f-c5w8.json index dbe0e05a255..c938daa9c7e 100644 --- a/advisories/unreviewed/2022/10/GHSA-hq5f-3c8f-c5w8/GHSA-hq5f-3c8f-c5w8.json +++ b/advisories/unreviewed/2022/10/GHSA-hq5f-3c8f-c5w8/GHSA-hq5f-3c8f-c5w8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-j7hr-8p79-vg24/GHSA-j7hr-8p79-vg24.json b/advisories/unreviewed/2022/10/GHSA-j7hr-8p79-vg24/GHSA-j7hr-8p79-vg24.json index cd691d43e11..0b8b6988218 100644 --- a/advisories/unreviewed/2022/10/GHSA-j7hr-8p79-vg24/GHSA-j7hr-8p79-vg24.json +++ b/advisories/unreviewed/2022/10/GHSA-j7hr-8p79-vg24/GHSA-j7hr-8p79-vg24.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-q6rf-w2h8-pjhf/GHSA-q6rf-w2h8-pjhf.json b/advisories/unreviewed/2022/10/GHSA-q6rf-w2h8-pjhf/GHSA-q6rf-w2h8-pjhf.json index 540efb01da9..d64242d8e29 100644 --- a/advisories/unreviewed/2022/10/GHSA-q6rf-w2h8-pjhf/GHSA-q6rf-w2h8-pjhf.json +++ b/advisories/unreviewed/2022/10/GHSA-q6rf-w2h8-pjhf/GHSA-q6rf-w2h8-pjhf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-r8f5-rmh4-47v6/GHSA-r8f5-rmh4-47v6.json b/advisories/unreviewed/2022/10/GHSA-r8f5-rmh4-47v6/GHSA-r8f5-rmh4-47v6.json index 48dd65be32e..da200e9b960 100644 --- a/advisories/unreviewed/2022/10/GHSA-r8f5-rmh4-47v6/GHSA-r8f5-rmh4-47v6.json +++ b/advisories/unreviewed/2022/10/GHSA-r8f5-rmh4-47v6/GHSA-r8f5-rmh4-47v6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-r96m-mpm2-p9xp/GHSA-r96m-mpm2-p9xp.json b/advisories/unreviewed/2022/10/GHSA-r96m-mpm2-p9xp/GHSA-r96m-mpm2-p9xp.json index 561fd20a2eb..f9d7f435d4d 100644 --- a/advisories/unreviewed/2022/10/GHSA-r96m-mpm2-p9xp/GHSA-r96m-mpm2-p9xp.json +++ b/advisories/unreviewed/2022/10/GHSA-r96m-mpm2-p9xp/GHSA-r96m-mpm2-p9xp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-rmwg-v45v-3cj5/GHSA-rmwg-v45v-3cj5.json b/advisories/unreviewed/2022/10/GHSA-rmwg-v45v-3cj5/GHSA-rmwg-v45v-3cj5.json index f9a821325e8..1225c6f8138 100644 --- a/advisories/unreviewed/2022/10/GHSA-rmwg-v45v-3cj5/GHSA-rmwg-v45v-3cj5.json +++ b/advisories/unreviewed/2022/10/GHSA-rmwg-v45v-3cj5/GHSA-rmwg-v45v-3cj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-v8mc-cm8w-4h96/GHSA-v8mc-cm8w-4h96.json b/advisories/unreviewed/2022/10/GHSA-v8mc-cm8w-4h96/GHSA-v8mc-cm8w-4h96.json index 3c7ab0940f2..7a7e9f14ecf 100644 --- a/advisories/unreviewed/2022/10/GHSA-v8mc-cm8w-4h96/GHSA-v8mc-cm8w-4h96.json +++ b/advisories/unreviewed/2022/10/GHSA-v8mc-cm8w-4h96/GHSA-v8mc-cm8w-4h96.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-v99v-23wg-2hr6/GHSA-v99v-23wg-2hr6.json b/advisories/unreviewed/2022/10/GHSA-v99v-23wg-2hr6/GHSA-v99v-23wg-2hr6.json index f30e2f75a09..63dea5c84e7 100644 --- a/advisories/unreviewed/2022/10/GHSA-v99v-23wg-2hr6/GHSA-v99v-23wg-2hr6.json +++ b/advisories/unreviewed/2022/10/GHSA-v99v-23wg-2hr6/GHSA-v99v-23wg-2hr6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-35wc-2959-rmx9/GHSA-35wc-2959-rmx9.json b/advisories/unreviewed/2022/11/GHSA-35wc-2959-rmx9/GHSA-35wc-2959-rmx9.json index c7e9c32e8c5..0f07e44a24f 100644 --- a/advisories/unreviewed/2022/11/GHSA-35wc-2959-rmx9/GHSA-35wc-2959-rmx9.json +++ b/advisories/unreviewed/2022/11/GHSA-35wc-2959-rmx9/GHSA-35wc-2959-rmx9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json b/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json index 97e5d2ba738..ce923e2d72c 100644 --- a/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json +++ b/advisories/unreviewed/2022/11/GHSA-68xp-cphm-cph8/GHSA-68xp-cphm-cph8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-7jfg-qpxp-6grc/GHSA-7jfg-qpxp-6grc.json b/advisories/unreviewed/2022/11/GHSA-7jfg-qpxp-6grc/GHSA-7jfg-qpxp-6grc.json index b80a12139a9..8e99787011a 100644 --- a/advisories/unreviewed/2022/11/GHSA-7jfg-qpxp-6grc/GHSA-7jfg-qpxp-6grc.json +++ b/advisories/unreviewed/2022/11/GHSA-7jfg-qpxp-6grc/GHSA-7jfg-qpxp-6grc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json b/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json index 91126777a8b..f73b701964d 100644 --- a/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json +++ b/advisories/unreviewed/2022/11/GHSA-899r-qc24-g3c5/GHSA-899r-qc24-g3c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-8r54-qrm3-cm32/GHSA-8r54-qrm3-cm32.json b/advisories/unreviewed/2022/11/GHSA-8r54-qrm3-cm32/GHSA-8r54-qrm3-cm32.json index d3d4d423266..dda7e54fa7f 100644 --- a/advisories/unreviewed/2022/11/GHSA-8r54-qrm3-cm32/GHSA-8r54-qrm3-cm32.json +++ b/advisories/unreviewed/2022/11/GHSA-8r54-qrm3-cm32/GHSA-8r54-qrm3-cm32.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-965x-72v5-49v5/GHSA-965x-72v5-49v5.json b/advisories/unreviewed/2022/11/GHSA-965x-72v5-49v5/GHSA-965x-72v5-49v5.json index d8704060a8e..7b695c2c67e 100644 --- a/advisories/unreviewed/2022/11/GHSA-965x-72v5-49v5/GHSA-965x-72v5-49v5.json +++ b/advisories/unreviewed/2022/11/GHSA-965x-72v5-49v5/GHSA-965x-72v5-49v5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-ffc5-94vf-24gj/GHSA-ffc5-94vf-24gj.json b/advisories/unreviewed/2022/11/GHSA-ffc5-94vf-24gj/GHSA-ffc5-94vf-24gj.json index d4f6e94aa08..45c7539c195 100644 --- a/advisories/unreviewed/2022/11/GHSA-ffc5-94vf-24gj/GHSA-ffc5-94vf-24gj.json +++ b/advisories/unreviewed/2022/11/GHSA-ffc5-94vf-24gj/GHSA-ffc5-94vf-24gj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fj87-wrmx-mhhj/GHSA-fj87-wrmx-mhhj.json b/advisories/unreviewed/2022/11/GHSA-fj87-wrmx-mhhj/GHSA-fj87-wrmx-mhhj.json index 958e93501b5..dcc3231bfec 100644 --- a/advisories/unreviewed/2022/11/GHSA-fj87-wrmx-mhhj/GHSA-fj87-wrmx-mhhj.json +++ b/advisories/unreviewed/2022/11/GHSA-fj87-wrmx-mhhj/GHSA-fj87-wrmx-mhhj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-g8jm-82h5-p38h/GHSA-g8jm-82h5-p38h.json b/advisories/unreviewed/2022/11/GHSA-g8jm-82h5-p38h/GHSA-g8jm-82h5-p38h.json index 8e62dd4ae37..392fda8bf6e 100644 --- a/advisories/unreviewed/2022/11/GHSA-g8jm-82h5-p38h/GHSA-g8jm-82h5-p38h.json +++ b/advisories/unreviewed/2022/11/GHSA-g8jm-82h5-p38h/GHSA-g8jm-82h5-p38h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-grfg-6c65-69m4/GHSA-grfg-6c65-69m4.json b/advisories/unreviewed/2022/11/GHSA-grfg-6c65-69m4/GHSA-grfg-6c65-69m4.json index 045627a4459..64924b4c4bc 100644 --- a/advisories/unreviewed/2022/11/GHSA-grfg-6c65-69m4/GHSA-grfg-6c65-69m4.json +++ b/advisories/unreviewed/2022/11/GHSA-grfg-6c65-69m4/GHSA-grfg-6c65-69m4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-h268-hqv8-wgw2/GHSA-h268-hqv8-wgw2.json b/advisories/unreviewed/2022/11/GHSA-h268-hqv8-wgw2/GHSA-h268-hqv8-wgw2.json index b2c4e571481..bf4bfcf4561 100644 --- a/advisories/unreviewed/2022/11/GHSA-h268-hqv8-wgw2/GHSA-h268-hqv8-wgw2.json +++ b/advisories/unreviewed/2022/11/GHSA-h268-hqv8-wgw2/GHSA-h268-hqv8-wgw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-h694-3rh8-j667/GHSA-h694-3rh8-j667.json b/advisories/unreviewed/2022/11/GHSA-h694-3rh8-j667/GHSA-h694-3rh8-j667.json index 986c490e8d6..a40a3bd11aa 100644 --- a/advisories/unreviewed/2022/11/GHSA-h694-3rh8-j667/GHSA-h694-3rh8-j667.json +++ b/advisories/unreviewed/2022/11/GHSA-h694-3rh8-j667/GHSA-h694-3rh8-j667.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-hjmc-mw59-wqqp/GHSA-hjmc-mw59-wqqp.json b/advisories/unreviewed/2022/11/GHSA-hjmc-mw59-wqqp/GHSA-hjmc-mw59-wqqp.json index a8e34db31d2..be307c12e60 100644 --- a/advisories/unreviewed/2022/11/GHSA-hjmc-mw59-wqqp/GHSA-hjmc-mw59-wqqp.json +++ b/advisories/unreviewed/2022/11/GHSA-hjmc-mw59-wqqp/GHSA-hjmc-mw59-wqqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-hxhg-m762-rjxh/GHSA-hxhg-m762-rjxh.json b/advisories/unreviewed/2022/11/GHSA-hxhg-m762-rjxh/GHSA-hxhg-m762-rjxh.json index c0842c3363d..07226552a12 100644 --- a/advisories/unreviewed/2022/11/GHSA-hxhg-m762-rjxh/GHSA-hxhg-m762-rjxh.json +++ b/advisories/unreviewed/2022/11/GHSA-hxhg-m762-rjxh/GHSA-hxhg-m762-rjxh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-jw7h-98j8-6r23/GHSA-jw7h-98j8-6r23.json b/advisories/unreviewed/2022/11/GHSA-jw7h-98j8-6r23/GHSA-jw7h-98j8-6r23.json index fd84178b7db..baa565aa7d4 100644 --- a/advisories/unreviewed/2022/11/GHSA-jw7h-98j8-6r23/GHSA-jw7h-98j8-6r23.json +++ b/advisories/unreviewed/2022/11/GHSA-jw7h-98j8-6r23/GHSA-jw7h-98j8-6r23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-mjxc-g8h2-2g9g/GHSA-mjxc-g8h2-2g9g.json b/advisories/unreviewed/2022/11/GHSA-mjxc-g8h2-2g9g/GHSA-mjxc-g8h2-2g9g.json index e0b2ef47c7b..f35decf959c 100644 --- a/advisories/unreviewed/2022/11/GHSA-mjxc-g8h2-2g9g/GHSA-mjxc-g8h2-2g9g.json +++ b/advisories/unreviewed/2022/11/GHSA-mjxc-g8h2-2g9g/GHSA-mjxc-g8h2-2g9g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-mwcq-5rpw-7p42/GHSA-mwcq-5rpw-7p42.json b/advisories/unreviewed/2022/11/GHSA-mwcq-5rpw-7p42/GHSA-mwcq-5rpw-7p42.json index 6ff255ad2e0..2dcf8b602b6 100644 --- a/advisories/unreviewed/2022/11/GHSA-mwcq-5rpw-7p42/GHSA-mwcq-5rpw-7p42.json +++ b/advisories/unreviewed/2022/11/GHSA-mwcq-5rpw-7p42/GHSA-mwcq-5rpw-7p42.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-pwpx-r9xc-fhg4/GHSA-pwpx-r9xc-fhg4.json b/advisories/unreviewed/2022/11/GHSA-pwpx-r9xc-fhg4/GHSA-pwpx-r9xc-fhg4.json index 7efba36b740..174b838f0fd 100644 --- a/advisories/unreviewed/2022/11/GHSA-pwpx-r9xc-fhg4/GHSA-pwpx-r9xc-fhg4.json +++ b/advisories/unreviewed/2022/11/GHSA-pwpx-r9xc-fhg4/GHSA-pwpx-r9xc-fhg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-qhqh-xp2p-xp7w/GHSA-qhqh-xp2p-xp7w.json b/advisories/unreviewed/2022/11/GHSA-qhqh-xp2p-xp7w/GHSA-qhqh-xp2p-xp7w.json index 4141996fa50..fff38d81223 100644 --- a/advisories/unreviewed/2022/11/GHSA-qhqh-xp2p-xp7w/GHSA-qhqh-xp2p-xp7w.json +++ b/advisories/unreviewed/2022/11/GHSA-qhqh-xp2p-xp7w/GHSA-qhqh-xp2p-xp7w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-qmq8-hpr3-m3x3/GHSA-qmq8-hpr3-m3x3.json b/advisories/unreviewed/2022/11/GHSA-qmq8-hpr3-m3x3/GHSA-qmq8-hpr3-m3x3.json index 69a99166e09..e20575abb61 100644 --- a/advisories/unreviewed/2022/11/GHSA-qmq8-hpr3-m3x3/GHSA-qmq8-hpr3-m3x3.json +++ b/advisories/unreviewed/2022/11/GHSA-qmq8-hpr3-m3x3/GHSA-qmq8-hpr3-m3x3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-r2cg-cw4r-gcx4/GHSA-r2cg-cw4r-gcx4.json b/advisories/unreviewed/2022/11/GHSA-r2cg-cw4r-gcx4/GHSA-r2cg-cw4r-gcx4.json index af99c4a5c98..84bc64aeea7 100644 --- a/advisories/unreviewed/2022/11/GHSA-r2cg-cw4r-gcx4/GHSA-r2cg-cw4r-gcx4.json +++ b/advisories/unreviewed/2022/11/GHSA-r2cg-cw4r-gcx4/GHSA-r2cg-cw4r-gcx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-r8h4-q53x-8w2p/GHSA-r8h4-q53x-8w2p.json b/advisories/unreviewed/2022/11/GHSA-r8h4-q53x-8w2p/GHSA-r8h4-q53x-8w2p.json index b4194b84647..091f96b6109 100644 --- a/advisories/unreviewed/2022/11/GHSA-r8h4-q53x-8w2p/GHSA-r8h4-q53x-8w2p.json +++ b/advisories/unreviewed/2022/11/GHSA-r8h4-q53x-8w2p/GHSA-r8h4-q53x-8w2p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-v897-8cmv-r8gq/GHSA-v897-8cmv-r8gq.json b/advisories/unreviewed/2022/11/GHSA-v897-8cmv-r8gq/GHSA-v897-8cmv-r8gq.json index f118a1dabc0..4eccf0e04df 100644 --- a/advisories/unreviewed/2022/11/GHSA-v897-8cmv-r8gq/GHSA-v897-8cmv-r8gq.json +++ b/advisories/unreviewed/2022/11/GHSA-v897-8cmv-r8gq/GHSA-v897-8cmv-r8gq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-vwc9-qw9m-64xj/GHSA-vwc9-qw9m-64xj.json b/advisories/unreviewed/2022/11/GHSA-vwc9-qw9m-64xj/GHSA-vwc9-qw9m-64xj.json index 813034b858d..07678ebe4f4 100644 --- a/advisories/unreviewed/2022/11/GHSA-vwc9-qw9m-64xj/GHSA-vwc9-qw9m-64xj.json +++ b/advisories/unreviewed/2022/11/GHSA-vwc9-qw9m-64xj/GHSA-vwc9-qw9m-64xj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json b/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json index 96ccdee3843..e7c2487253d 100644 --- a/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json +++ b/advisories/unreviewed/2022/11/GHSA-wwhc-m2jv-2rv2/GHSA-wwhc-m2jv-2rv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-x7p3-6m4c-64m2/GHSA-x7p3-6m4c-64m2.json b/advisories/unreviewed/2022/11/GHSA-x7p3-6m4c-64m2/GHSA-x7p3-6m4c-64m2.json index bc9fdfd960c..dd46305579b 100644 --- a/advisories/unreviewed/2022/11/GHSA-x7p3-6m4c-64m2/GHSA-x7p3-6m4c-64m2.json +++ b/advisories/unreviewed/2022/11/GHSA-x7p3-6m4c-64m2/GHSA-x7p3-6m4c-64m2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-6rj4-8w8r-xcj2/GHSA-6rj4-8w8r-xcj2.json b/advisories/unreviewed/2022/12/GHSA-6rj4-8w8r-xcj2/GHSA-6rj4-8w8r-xcj2.json index 6b1cc38b5ad..29d01e825c6 100644 --- a/advisories/unreviewed/2022/12/GHSA-6rj4-8w8r-xcj2/GHSA-6rj4-8w8r-xcj2.json +++ b/advisories/unreviewed/2022/12/GHSA-6rj4-8w8r-xcj2/GHSA-6rj4-8w8r-xcj2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-m9xr-mrx5-456x/GHSA-m9xr-mrx5-456x.json b/advisories/unreviewed/2022/12/GHSA-m9xr-mrx5-456x/GHSA-m9xr-mrx5-456x.json index 4a8656a3a76..98c2e75bcf1 100644 --- a/advisories/unreviewed/2022/12/GHSA-m9xr-mrx5-456x/GHSA-m9xr-mrx5-456x.json +++ b/advisories/unreviewed/2022/12/GHSA-m9xr-mrx5-456x/GHSA-m9xr-mrx5-456x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-3h25-7p54-f2f8/GHSA-3h25-7p54-f2f8.json b/advisories/unreviewed/2023/01/GHSA-3h25-7p54-f2f8/GHSA-3h25-7p54-f2f8.json index 101901615b1..66ccfb1ba58 100644 --- a/advisories/unreviewed/2023/01/GHSA-3h25-7p54-f2f8/GHSA-3h25-7p54-f2f8.json +++ b/advisories/unreviewed/2023/01/GHSA-3h25-7p54-f2f8/GHSA-3h25-7p54-f2f8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-42p3-xp7q-pwv6/GHSA-42p3-xp7q-pwv6.json b/advisories/unreviewed/2023/01/GHSA-42p3-xp7q-pwv6/GHSA-42p3-xp7q-pwv6.json index 38e8bd66419..892a79920e1 100644 --- a/advisories/unreviewed/2023/01/GHSA-42p3-xp7q-pwv6/GHSA-42p3-xp7q-pwv6.json +++ b/advisories/unreviewed/2023/01/GHSA-42p3-xp7q-pwv6/GHSA-42p3-xp7q-pwv6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-4jxf-85hh-74pj/GHSA-4jxf-85hh-74pj.json b/advisories/unreviewed/2023/01/GHSA-4jxf-85hh-74pj/GHSA-4jxf-85hh-74pj.json index 7885b621894..59ee44bdb63 100644 --- a/advisories/unreviewed/2023/01/GHSA-4jxf-85hh-74pj/GHSA-4jxf-85hh-74pj.json +++ b/advisories/unreviewed/2023/01/GHSA-4jxf-85hh-74pj/GHSA-4jxf-85hh-74pj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-4r7f-wp49-4mv2/GHSA-4r7f-wp49-4mv2.json b/advisories/unreviewed/2023/01/GHSA-4r7f-wp49-4mv2/GHSA-4r7f-wp49-4mv2.json index ff10ff795a7..f3fc7609b2f 100644 --- a/advisories/unreviewed/2023/01/GHSA-4r7f-wp49-4mv2/GHSA-4r7f-wp49-4mv2.json +++ b/advisories/unreviewed/2023/01/GHSA-4r7f-wp49-4mv2/GHSA-4r7f-wp49-4mv2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-5r47-3q95-vm4q/GHSA-5r47-3q95-vm4q.json b/advisories/unreviewed/2023/01/GHSA-5r47-3q95-vm4q/GHSA-5r47-3q95-vm4q.json index 54fd124b77e..876fee41fc5 100644 --- a/advisories/unreviewed/2023/01/GHSA-5r47-3q95-vm4q/GHSA-5r47-3q95-vm4q.json +++ b/advisories/unreviewed/2023/01/GHSA-5r47-3q95-vm4q/GHSA-5r47-3q95-vm4q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-7x7g-xq59-cqgh/GHSA-7x7g-xq59-cqgh.json b/advisories/unreviewed/2023/01/GHSA-7x7g-xq59-cqgh/GHSA-7x7g-xq59-cqgh.json index 2f308861750..8b0bad4aa9f 100644 --- a/advisories/unreviewed/2023/01/GHSA-7x7g-xq59-cqgh/GHSA-7x7g-xq59-cqgh.json +++ b/advisories/unreviewed/2023/01/GHSA-7x7g-xq59-cqgh/GHSA-7x7g-xq59-cqgh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-9w36-mccq-ph2c/GHSA-9w36-mccq-ph2c.json b/advisories/unreviewed/2023/01/GHSA-9w36-mccq-ph2c/GHSA-9w36-mccq-ph2c.json index 70cb02b751a..4f21760e686 100644 --- a/advisories/unreviewed/2023/01/GHSA-9w36-mccq-ph2c/GHSA-9w36-mccq-ph2c.json +++ b/advisories/unreviewed/2023/01/GHSA-9w36-mccq-ph2c/GHSA-9w36-mccq-ph2c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-c2gf-h728-j378/GHSA-c2gf-h728-j378.json b/advisories/unreviewed/2023/01/GHSA-c2gf-h728-j378/GHSA-c2gf-h728-j378.json index 87e621ad51e..2f5c4dbfdbd 100644 --- a/advisories/unreviewed/2023/01/GHSA-c2gf-h728-j378/GHSA-c2gf-h728-j378.json +++ b/advisories/unreviewed/2023/01/GHSA-c2gf-h728-j378/GHSA-c2gf-h728-j378.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-chrg-5xr2-ppfm/GHSA-chrg-5xr2-ppfm.json b/advisories/unreviewed/2023/01/GHSA-chrg-5xr2-ppfm/GHSA-chrg-5xr2-ppfm.json index 2e07e71b3e5..ba6c22c85fc 100644 --- a/advisories/unreviewed/2023/01/GHSA-chrg-5xr2-ppfm/GHSA-chrg-5xr2-ppfm.json +++ b/advisories/unreviewed/2023/01/GHSA-chrg-5xr2-ppfm/GHSA-chrg-5xr2-ppfm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cppm-xp38-fh2x/GHSA-cppm-xp38-fh2x.json b/advisories/unreviewed/2023/01/GHSA-cppm-xp38-fh2x/GHSA-cppm-xp38-fh2x.json index 4c4b2d4003c..52aaedff17a 100644 --- a/advisories/unreviewed/2023/01/GHSA-cppm-xp38-fh2x/GHSA-cppm-xp38-fh2x.json +++ b/advisories/unreviewed/2023/01/GHSA-cppm-xp38-fh2x/GHSA-cppm-xp38-fh2x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-cr4j-fv7c-759c/GHSA-cr4j-fv7c-759c.json b/advisories/unreviewed/2023/01/GHSA-cr4j-fv7c-759c/GHSA-cr4j-fv7c-759c.json index d8e25630c1d..4a4ef45d390 100644 --- a/advisories/unreviewed/2023/01/GHSA-cr4j-fv7c-759c/GHSA-cr4j-fv7c-759c.json +++ b/advisories/unreviewed/2023/01/GHSA-cr4j-fv7c-759c/GHSA-cr4j-fv7c-759c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-fpfr-g8vf-4jhr/GHSA-fpfr-g8vf-4jhr.json b/advisories/unreviewed/2023/01/GHSA-fpfr-g8vf-4jhr/GHSA-fpfr-g8vf-4jhr.json index 506eae2ab38..073036c0e02 100644 --- a/advisories/unreviewed/2023/01/GHSA-fpfr-g8vf-4jhr/GHSA-fpfr-g8vf-4jhr.json +++ b/advisories/unreviewed/2023/01/GHSA-fpfr-g8vf-4jhr/GHSA-fpfr-g8vf-4jhr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-g238-vgfm-q7mg/GHSA-g238-vgfm-q7mg.json b/advisories/unreviewed/2023/01/GHSA-g238-vgfm-q7mg/GHSA-g238-vgfm-q7mg.json index 49056eb1189..b2fe618df15 100644 --- a/advisories/unreviewed/2023/01/GHSA-g238-vgfm-q7mg/GHSA-g238-vgfm-q7mg.json +++ b/advisories/unreviewed/2023/01/GHSA-g238-vgfm-q7mg/GHSA-g238-vgfm-q7mg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-qrp2-r4vv-rxvf/GHSA-qrp2-r4vv-rxvf.json b/advisories/unreviewed/2023/01/GHSA-qrp2-r4vv-rxvf/GHSA-qrp2-r4vv-rxvf.json index d0eb88a1676..2f9d42f4dd0 100644 --- a/advisories/unreviewed/2023/01/GHSA-qrp2-r4vv-rxvf/GHSA-qrp2-r4vv-rxvf.json +++ b/advisories/unreviewed/2023/01/GHSA-qrp2-r4vv-rxvf/GHSA-qrp2-r4vv-rxvf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-r87w-g396-c68p/GHSA-r87w-g396-c68p.json b/advisories/unreviewed/2023/01/GHSA-r87w-g396-c68p/GHSA-r87w-g396-c68p.json index 27ac7b52713..fbc66f131bb 100644 --- a/advisories/unreviewed/2023/01/GHSA-r87w-g396-c68p/GHSA-r87w-g396-c68p.json +++ b/advisories/unreviewed/2023/01/GHSA-r87w-g396-c68p/GHSA-r87w-g396-c68p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-rx6f-437m-82px/GHSA-rx6f-437m-82px.json b/advisories/unreviewed/2023/01/GHSA-rx6f-437m-82px/GHSA-rx6f-437m-82px.json index 42855187e80..ee1f2f04e37 100644 --- a/advisories/unreviewed/2023/01/GHSA-rx6f-437m-82px/GHSA-rx6f-437m-82px.json +++ b/advisories/unreviewed/2023/01/GHSA-rx6f-437m-82px/GHSA-rx6f-437m-82px.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-vcgj-3gwq-4x48/GHSA-vcgj-3gwq-4x48.json b/advisories/unreviewed/2023/01/GHSA-vcgj-3gwq-4x48/GHSA-vcgj-3gwq-4x48.json index 30fb184d7b0..1a384219c44 100644 --- a/advisories/unreviewed/2023/01/GHSA-vcgj-3gwq-4x48/GHSA-vcgj-3gwq-4x48.json +++ b/advisories/unreviewed/2023/01/GHSA-vcgj-3gwq-4x48/GHSA-vcgj-3gwq-4x48.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-w8m5-vmmq-x59w/GHSA-w8m5-vmmq-x59w.json b/advisories/unreviewed/2023/01/GHSA-w8m5-vmmq-x59w/GHSA-w8m5-vmmq-x59w.json index 40544b7d030..8a6be403849 100644 --- a/advisories/unreviewed/2023/01/GHSA-w8m5-vmmq-x59w/GHSA-w8m5-vmmq-x59w.json +++ b/advisories/unreviewed/2023/01/GHSA-w8m5-vmmq-x59w/GHSA-w8m5-vmmq-x59w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-wg72-3rf2-wvp5/GHSA-wg72-3rf2-wvp5.json b/advisories/unreviewed/2023/01/GHSA-wg72-3rf2-wvp5/GHSA-wg72-3rf2-wvp5.json index 5bcffcdbd85..4c2cd025786 100644 --- a/advisories/unreviewed/2023/01/GHSA-wg72-3rf2-wvp5/GHSA-wg72-3rf2-wvp5.json +++ b/advisories/unreviewed/2023/01/GHSA-wg72-3rf2-wvp5/GHSA-wg72-3rf2-wvp5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-wx4c-354q-hcvc/GHSA-wx4c-354q-hcvc.json b/advisories/unreviewed/2023/01/GHSA-wx4c-354q-hcvc/GHSA-wx4c-354q-hcvc.json index 74bf01f80cc..ad44e8b8961 100644 --- a/advisories/unreviewed/2023/01/GHSA-wx4c-354q-hcvc/GHSA-wx4c-354q-hcvc.json +++ b/advisories/unreviewed/2023/01/GHSA-wx4c-354q-hcvc/GHSA-wx4c-354q-hcvc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-xh7r-hcfv-6wpx/GHSA-xh7r-hcfv-6wpx.json b/advisories/unreviewed/2023/01/GHSA-xh7r-hcfv-6wpx/GHSA-xh7r-hcfv-6wpx.json index f5b2f8a5993..7d1d3e36c87 100644 --- a/advisories/unreviewed/2023/01/GHSA-xh7r-hcfv-6wpx/GHSA-xh7r-hcfv-6wpx.json +++ b/advisories/unreviewed/2023/01/GHSA-xh7r-hcfv-6wpx/GHSA-xh7r-hcfv-6wpx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-xw4v-hwgc-348v/GHSA-xw4v-hwgc-348v.json b/advisories/unreviewed/2023/01/GHSA-xw4v-hwgc-348v/GHSA-xw4v-hwgc-348v.json index c474d319c47..3d648b0aea8 100644 --- a/advisories/unreviewed/2023/01/GHSA-xw4v-hwgc-348v/GHSA-xw4v-hwgc-348v.json +++ b/advisories/unreviewed/2023/01/GHSA-xw4v-hwgc-348v/GHSA-xw4v-hwgc-348v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-5hm2-2whx-4749/GHSA-5hm2-2whx-4749.json b/advisories/unreviewed/2023/03/GHSA-5hm2-2whx-4749/GHSA-5hm2-2whx-4749.json index 7d1bce275da..f5f7b46e608 100644 --- a/advisories/unreviewed/2023/03/GHSA-5hm2-2whx-4749/GHSA-5hm2-2whx-4749.json +++ b/advisories/unreviewed/2023/03/GHSA-5hm2-2whx-4749/GHSA-5hm2-2whx-4749.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-972p-jcp3-q2cv/GHSA-972p-jcp3-q2cv.json b/advisories/unreviewed/2023/04/GHSA-972p-jcp3-q2cv/GHSA-972p-jcp3-q2cv.json index 21c3cd276f3..cd3a200058d 100644 --- a/advisories/unreviewed/2023/04/GHSA-972p-jcp3-q2cv/GHSA-972p-jcp3-q2cv.json +++ b/advisories/unreviewed/2023/04/GHSA-972p-jcp3-q2cv/GHSA-972p-jcp3-q2cv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/04/GHSA-w6h4-4gxw-xxg8/GHSA-w6h4-4gxw-xxg8.json b/advisories/unreviewed/2023/04/GHSA-w6h4-4gxw-xxg8/GHSA-w6h4-4gxw-xxg8.json index f9b9aa24916..4a6a446d736 100644 --- a/advisories/unreviewed/2023/04/GHSA-w6h4-4gxw-xxg8/GHSA-w6h4-4gxw-xxg8.json +++ b/advisories/unreviewed/2023/04/GHSA-w6h4-4gxw-xxg8/GHSA-w6h4-4gxw-xxg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/05/GHSA-78jh-p6rf-g59w/GHSA-78jh-p6rf-g59w.json b/advisories/unreviewed/2023/05/GHSA-78jh-p6rf-g59w/GHSA-78jh-p6rf-g59w.json index 2ef4d60e5e1..02c881f7b9c 100644 --- a/advisories/unreviewed/2023/05/GHSA-78jh-p6rf-g59w/GHSA-78jh-p6rf-g59w.json +++ b/advisories/unreviewed/2023/05/GHSA-78jh-p6rf-g59w/GHSA-78jh-p6rf-g59w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/05/GHSA-fx73-x3p9-h2wf/GHSA-fx73-x3p9-h2wf.json b/advisories/unreviewed/2023/05/GHSA-fx73-x3p9-h2wf/GHSA-fx73-x3p9-h2wf.json index 28e7695a51f..a0ce4124323 100644 --- a/advisories/unreviewed/2023/05/GHSA-fx73-x3p9-h2wf/GHSA-fx73-x3p9-h2wf.json +++ b/advisories/unreviewed/2023/05/GHSA-fx73-x3p9-h2wf/GHSA-fx73-x3p9-h2wf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-rjv6-vf6v-rx85/GHSA-rjv6-vf6v-rx85.json b/advisories/unreviewed/2023/11/GHSA-rjv6-vf6v-rx85/GHSA-rjv6-vf6v-rx85.json index 5841e6b0a1b..b16686f2223 100644 --- a/advisories/unreviewed/2023/11/GHSA-rjv6-vf6v-rx85/GHSA-rjv6-vf6v-rx85.json +++ b/advisories/unreviewed/2023/11/GHSA-rjv6-vf6v-rx85/GHSA-rjv6-vf6v-rx85.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-3654-wj8m-9hfq/GHSA-3654-wj8m-9hfq.json b/advisories/unreviewed/2023/12/GHSA-3654-wj8m-9hfq/GHSA-3654-wj8m-9hfq.json index 5c0ffef2265..28f33f37fca 100644 --- a/advisories/unreviewed/2023/12/GHSA-3654-wj8m-9hfq/GHSA-3654-wj8m-9hfq.json +++ b/advisories/unreviewed/2023/12/GHSA-3654-wj8m-9hfq/GHSA-3654-wj8m-9hfq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-46xp-96vg-h6x6/GHSA-46xp-96vg-h6x6.json b/advisories/unreviewed/2023/12/GHSA-46xp-96vg-h6x6/GHSA-46xp-96vg-h6x6.json index 4883b36786c..6e2d40aa24f 100644 --- a/advisories/unreviewed/2023/12/GHSA-46xp-96vg-h6x6/GHSA-46xp-96vg-h6x6.json +++ b/advisories/unreviewed/2023/12/GHSA-46xp-96vg-h6x6/GHSA-46xp-96vg-h6x6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-59wc-6pc8-jcr3/GHSA-59wc-6pc8-jcr3.json b/advisories/unreviewed/2023/12/GHSA-59wc-6pc8-jcr3/GHSA-59wc-6pc8-jcr3.json index 97068efa2c4..2e37b14b397 100644 --- a/advisories/unreviewed/2023/12/GHSA-59wc-6pc8-jcr3/GHSA-59wc-6pc8-jcr3.json +++ b/advisories/unreviewed/2023/12/GHSA-59wc-6pc8-jcr3/GHSA-59wc-6pc8-jcr3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-7www-x428-rw8w/GHSA-7www-x428-rw8w.json b/advisories/unreviewed/2023/12/GHSA-7www-x428-rw8w/GHSA-7www-x428-rw8w.json index f551dfe4bf4..12f6b99441e 100644 --- a/advisories/unreviewed/2023/12/GHSA-7www-x428-rw8w/GHSA-7www-x428-rw8w.json +++ b/advisories/unreviewed/2023/12/GHSA-7www-x428-rw8w/GHSA-7www-x428-rw8w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-8v43-6xfg-43pr/GHSA-8v43-6xfg-43pr.json b/advisories/unreviewed/2023/12/GHSA-8v43-6xfg-43pr/GHSA-8v43-6xfg-43pr.json index 1a90ba73cc8..08e28490cb6 100644 --- a/advisories/unreviewed/2023/12/GHSA-8v43-6xfg-43pr/GHSA-8v43-6xfg-43pr.json +++ b/advisories/unreviewed/2023/12/GHSA-8v43-6xfg-43pr/GHSA-8v43-6xfg-43pr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-ccvf-77q3-xjv9/GHSA-ccvf-77q3-xjv9.json b/advisories/unreviewed/2023/12/GHSA-ccvf-77q3-xjv9/GHSA-ccvf-77q3-xjv9.json index a0030bcabfa..88d991d382c 100644 --- a/advisories/unreviewed/2023/12/GHSA-ccvf-77q3-xjv9/GHSA-ccvf-77q3-xjv9.json +++ b/advisories/unreviewed/2023/12/GHSA-ccvf-77q3-xjv9/GHSA-ccvf-77q3-xjv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-h3gx-584x-jxw5/GHSA-h3gx-584x-jxw5.json b/advisories/unreviewed/2023/12/GHSA-h3gx-584x-jxw5/GHSA-h3gx-584x-jxw5.json index 1895be7c4cf..7928bfd9b4f 100644 --- a/advisories/unreviewed/2023/12/GHSA-h3gx-584x-jxw5/GHSA-h3gx-584x-jxw5.json +++ b/advisories/unreviewed/2023/12/GHSA-h3gx-584x-jxw5/GHSA-h3gx-584x-jxw5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-jf62-v9fg-87mj/GHSA-jf62-v9fg-87mj.json b/advisories/unreviewed/2023/12/GHSA-jf62-v9fg-87mj/GHSA-jf62-v9fg-87mj.json index 48e10bc520c..bb21a8840bc 100644 --- a/advisories/unreviewed/2023/12/GHSA-jf62-v9fg-87mj/GHSA-jf62-v9fg-87mj.json +++ b/advisories/unreviewed/2023/12/GHSA-jf62-v9fg-87mj/GHSA-jf62-v9fg-87mj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-p29h-x3w2-549g/GHSA-p29h-x3w2-549g.json b/advisories/unreviewed/2023/12/GHSA-p29h-x3w2-549g/GHSA-p29h-x3w2-549g.json index ba24cb4fcb2..6b18b908eb4 100644 --- a/advisories/unreviewed/2023/12/GHSA-p29h-x3w2-549g/GHSA-p29h-x3w2-549g.json +++ b/advisories/unreviewed/2023/12/GHSA-p29h-x3w2-549g/GHSA-p29h-x3w2-549g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qg4r-fj25-xf35/GHSA-qg4r-fj25-xf35.json b/advisories/unreviewed/2023/12/GHSA-qg4r-fj25-xf35/GHSA-qg4r-fj25-xf35.json index bd1d928a557..a361432fd9c 100644 --- a/advisories/unreviewed/2023/12/GHSA-qg4r-fj25-xf35/GHSA-qg4r-fj25-xf35.json +++ b/advisories/unreviewed/2023/12/GHSA-qg4r-fj25-xf35/GHSA-qg4r-fj25-xf35.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-qqjp-9v49-7wjf/GHSA-qqjp-9v49-7wjf.json b/advisories/unreviewed/2023/12/GHSA-qqjp-9v49-7wjf/GHSA-qqjp-9v49-7wjf.json index 9ee4452fbf4..f3bccd5ce16 100644 --- a/advisories/unreviewed/2023/12/GHSA-qqjp-9v49-7wjf/GHSA-qqjp-9v49-7wjf.json +++ b/advisories/unreviewed/2023/12/GHSA-qqjp-9v49-7wjf/GHSA-qqjp-9v49-7wjf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rg4q-3xgq-2623/GHSA-rg4q-3xgq-2623.json b/advisories/unreviewed/2023/12/GHSA-rg4q-3xgq-2623/GHSA-rg4q-3xgq-2623.json index dbc0576f8d9..b39eae1a290 100644 --- a/advisories/unreviewed/2023/12/GHSA-rg4q-3xgq-2623/GHSA-rg4q-3xgq-2623.json +++ b/advisories/unreviewed/2023/12/GHSA-rg4q-3xgq-2623/GHSA-rg4q-3xgq-2623.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-rhwh-r9cc-v238/GHSA-rhwh-r9cc-v238.json b/advisories/unreviewed/2023/12/GHSA-rhwh-r9cc-v238/GHSA-rhwh-r9cc-v238.json index d1ed51295b3..7391818c1a7 100644 --- a/advisories/unreviewed/2023/12/GHSA-rhwh-r9cc-v238/GHSA-rhwh-r9cc-v238.json +++ b/advisories/unreviewed/2023/12/GHSA-rhwh-r9cc-v238/GHSA-rhwh-r9cc-v238.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-2f5g-328g-96qh/GHSA-2f5g-328g-96qh.json b/advisories/unreviewed/2024/02/GHSA-2f5g-328g-96qh/GHSA-2f5g-328g-96qh.json index c39dfb8e276..4d698334a78 100644 --- a/advisories/unreviewed/2024/02/GHSA-2f5g-328g-96qh/GHSA-2f5g-328g-96qh.json +++ b/advisories/unreviewed/2024/02/GHSA-2f5g-328g-96qh/GHSA-2f5g-328g-96qh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-3323-4cph-j8c7/GHSA-3323-4cph-j8c7.json b/advisories/unreviewed/2024/02/GHSA-3323-4cph-j8c7/GHSA-3323-4cph-j8c7.json index 2dc0a234564..586d708af7f 100644 --- a/advisories/unreviewed/2024/02/GHSA-3323-4cph-j8c7/GHSA-3323-4cph-j8c7.json +++ b/advisories/unreviewed/2024/02/GHSA-3323-4cph-j8c7/GHSA-3323-4cph-j8c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-3fmx-gx73-5jg7/GHSA-3fmx-gx73-5jg7.json b/advisories/unreviewed/2024/02/GHSA-3fmx-gx73-5jg7/GHSA-3fmx-gx73-5jg7.json index d4d0493d0f5..4615deaedff 100644 --- a/advisories/unreviewed/2024/02/GHSA-3fmx-gx73-5jg7/GHSA-3fmx-gx73-5jg7.json +++ b/advisories/unreviewed/2024/02/GHSA-3fmx-gx73-5jg7/GHSA-3fmx-gx73-5jg7.json @@ -7,12 +7,8 @@ "CVE-2023-52466" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nPCI: Avoid potential out-of-bounds read in pci_dev_for_each_resource()\n\nCoverity complains that pointer in the pci_dev_for_each_resource() may be\nwrong, i.e., might be used for the out-of-bounds read.\n\nThere is no actual issue right now because we have another check afterwards\nand the out-of-bounds read is not being performed. In any case it's better\ncode with this fixed, hence the proposed change.\n\nAs Jonas pointed out \"It probably makes the code slightly less performant\nas res will now be checked for being not NULL (which will always be true),\nbut I doubt it will be significant (or in any hot paths).\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-5j67-qqcw-qpc2/GHSA-5j67-qqcw-qpc2.json b/advisories/unreviewed/2024/02/GHSA-5j67-qqcw-qpc2/GHSA-5j67-qqcw-qpc2.json index 128bfa90774..52a063832bf 100644 --- a/advisories/unreviewed/2024/02/GHSA-5j67-qqcw-qpc2/GHSA-5j67-qqcw-qpc2.json +++ b/advisories/unreviewed/2024/02/GHSA-5j67-qqcw-qpc2/GHSA-5j67-qqcw-qpc2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-5j6p-376x-h7gg/GHSA-5j6p-376x-h7gg.json b/advisories/unreviewed/2024/02/GHSA-5j6p-376x-h7gg/GHSA-5j6p-376x-h7gg.json index db8f7318824..dee10e2da44 100644 --- a/advisories/unreviewed/2024/02/GHSA-5j6p-376x-h7gg/GHSA-5j6p-376x-h7gg.json +++ b/advisories/unreviewed/2024/02/GHSA-5j6p-376x-h7gg/GHSA-5j6p-376x-h7gg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-65vg-43vj-r32c/GHSA-65vg-43vj-r32c.json b/advisories/unreviewed/2024/02/GHSA-65vg-43vj-r32c/GHSA-65vg-43vj-r32c.json index 28f6755f2a4..0ed47e51c6e 100644 --- a/advisories/unreviewed/2024/02/GHSA-65vg-43vj-r32c/GHSA-65vg-43vj-r32c.json +++ b/advisories/unreviewed/2024/02/GHSA-65vg-43vj-r32c/GHSA-65vg-43vj-r32c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-6648-296f-7jc7/GHSA-6648-296f-7jc7.json b/advisories/unreviewed/2024/02/GHSA-6648-296f-7jc7/GHSA-6648-296f-7jc7.json index f5fbf3ea4f5..68314eaa2e0 100644 --- a/advisories/unreviewed/2024/02/GHSA-6648-296f-7jc7/GHSA-6648-296f-7jc7.json +++ b/advisories/unreviewed/2024/02/GHSA-6648-296f-7jc7/GHSA-6648-296f-7jc7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-7pm7-xf47-j7c7/GHSA-7pm7-xf47-j7c7.json b/advisories/unreviewed/2024/02/GHSA-7pm7-xf47-j7c7/GHSA-7pm7-xf47-j7c7.json index 778eb339004..8a256fff533 100644 --- a/advisories/unreviewed/2024/02/GHSA-7pm7-xf47-j7c7/GHSA-7pm7-xf47-j7c7.json +++ b/advisories/unreviewed/2024/02/GHSA-7pm7-xf47-j7c7/GHSA-7pm7-xf47-j7c7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-8rgq-fh56-7c3r/GHSA-8rgq-fh56-7c3r.json b/advisories/unreviewed/2024/02/GHSA-8rgq-fh56-7c3r/GHSA-8rgq-fh56-7c3r.json index d4aa8875a75..325c8b15d5b 100644 --- a/advisories/unreviewed/2024/02/GHSA-8rgq-fh56-7c3r/GHSA-8rgq-fh56-7c3r.json +++ b/advisories/unreviewed/2024/02/GHSA-8rgq-fh56-7c3r/GHSA-8rgq-fh56-7c3r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-94q5-q5cp-xvh6/GHSA-94q5-q5cp-xvh6.json b/advisories/unreviewed/2024/02/GHSA-94q5-q5cp-xvh6/GHSA-94q5-q5cp-xvh6.json index 200f77dba06..7a1a7d4e2bd 100644 --- a/advisories/unreviewed/2024/02/GHSA-94q5-q5cp-xvh6/GHSA-94q5-q5cp-xvh6.json +++ b/advisories/unreviewed/2024/02/GHSA-94q5-q5cp-xvh6/GHSA-94q5-q5cp-xvh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-9rvx-gm3h-fh8c/GHSA-9rvx-gm3h-fh8c.json b/advisories/unreviewed/2024/02/GHSA-9rvx-gm3h-fh8c/GHSA-9rvx-gm3h-fh8c.json index 75d00992ee8..159252517c6 100644 --- a/advisories/unreviewed/2024/02/GHSA-9rvx-gm3h-fh8c/GHSA-9rvx-gm3h-fh8c.json +++ b/advisories/unreviewed/2024/02/GHSA-9rvx-gm3h-fh8c/GHSA-9rvx-gm3h-fh8c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-9xp2-5x23-fhj5/GHSA-9xp2-5x23-fhj5.json b/advisories/unreviewed/2024/02/GHSA-9xp2-5x23-fhj5/GHSA-9xp2-5x23-fhj5.json index 1cc4cb4424e..8b9312563c2 100644 --- a/advisories/unreviewed/2024/02/GHSA-9xp2-5x23-fhj5/GHSA-9xp2-5x23-fhj5.json +++ b/advisories/unreviewed/2024/02/GHSA-9xp2-5x23-fhj5/GHSA-9xp2-5x23-fhj5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-f48j-c6j3-jrxg/GHSA-f48j-c6j3-jrxg.json b/advisories/unreviewed/2024/02/GHSA-f48j-c6j3-jrxg/GHSA-f48j-c6j3-jrxg.json index 0acccaaf770..da7ceb54caf 100644 --- a/advisories/unreviewed/2024/02/GHSA-f48j-c6j3-jrxg/GHSA-f48j-c6j3-jrxg.json +++ b/advisories/unreviewed/2024/02/GHSA-f48j-c6j3-jrxg/GHSA-f48j-c6j3-jrxg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-f7wr-8w9m-h29x/GHSA-f7wr-8w9m-h29x.json b/advisories/unreviewed/2024/02/GHSA-f7wr-8w9m-h29x/GHSA-f7wr-8w9m-h29x.json index a8fbdc79125..0fe1b226119 100644 --- a/advisories/unreviewed/2024/02/GHSA-f7wr-8w9m-h29x/GHSA-f7wr-8w9m-h29x.json +++ b/advisories/unreviewed/2024/02/GHSA-f7wr-8w9m-h29x/GHSA-f7wr-8w9m-h29x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-fc74-wgp6-2pv9/GHSA-fc74-wgp6-2pv9.json b/advisories/unreviewed/2024/02/GHSA-fc74-wgp6-2pv9/GHSA-fc74-wgp6-2pv9.json index b29c4a5fae5..10d0a3cb1a1 100644 --- a/advisories/unreviewed/2024/02/GHSA-fc74-wgp6-2pv9/GHSA-fc74-wgp6-2pv9.json +++ b/advisories/unreviewed/2024/02/GHSA-fc74-wgp6-2pv9/GHSA-fc74-wgp6-2pv9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-gx59-vpv8-598f/GHSA-gx59-vpv8-598f.json b/advisories/unreviewed/2024/02/GHSA-gx59-vpv8-598f/GHSA-gx59-vpv8-598f.json index 11c66881596..27e7d76826f 100644 --- a/advisories/unreviewed/2024/02/GHSA-gx59-vpv8-598f/GHSA-gx59-vpv8-598f.json +++ b/advisories/unreviewed/2024/02/GHSA-gx59-vpv8-598f/GHSA-gx59-vpv8-598f.json @@ -7,12 +7,8 @@ "CVE-2023-52453" ], "details": "In the Linux kernel, the following vulnerability has been resolved:\n\nhisi_acc_vfio_pci: Update migration data pointer correctly on saving/resume\n\nWhen the optional PRE_COPY support was added to speed up the device\ncompatibility check, it failed to update the saving/resuming data\npointers based on the fd offset. This results in migration data\ncorruption and when the device gets started on the destination the\nfollowing error is reported in some cases,\n\n[ 478.907684] arm-smmu-v3 arm-smmu-v3.2.auto: event 0x10 received:\n[ 478.913691] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000310200000010\n[ 478.919603] arm-smmu-v3 arm-smmu-v3.2.auto: 0x000002088000007f\n[ 478.925515] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000000000000000\n[ 478.931425] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000000000000000\n[ 478.947552] hisi_zip 0000:31:00.0: qm_axi_rresp [error status=0x1] found\n[ 478.955930] hisi_zip 0000:31:00.0: qm_db_timeout [error status=0x400] found\n[ 478.955944] hisi_zip 0000:31:00.0: qm sq doorbell timeout in function 2", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/02/GHSA-j6hx-p9qx-hf8r/GHSA-j6hx-p9qx-hf8r.json b/advisories/unreviewed/2024/02/GHSA-j6hx-p9qx-hf8r/GHSA-j6hx-p9qx-hf8r.json index 4d57ed19c9b..7689ef4320e 100644 --- a/advisories/unreviewed/2024/02/GHSA-j6hx-p9qx-hf8r/GHSA-j6hx-p9qx-hf8r.json +++ b/advisories/unreviewed/2024/02/GHSA-j6hx-p9qx-hf8r/GHSA-j6hx-p9qx-hf8r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-mmg2-vff3-5c3f/GHSA-mmg2-vff3-5c3f.json b/advisories/unreviewed/2024/02/GHSA-mmg2-vff3-5c3f/GHSA-mmg2-vff3-5c3f.json index c76c21550a4..de5f09797eb 100644 --- a/advisories/unreviewed/2024/02/GHSA-mmg2-vff3-5c3f/GHSA-mmg2-vff3-5c3f.json +++ b/advisories/unreviewed/2024/02/GHSA-mmg2-vff3-5c3f/GHSA-mmg2-vff3-5c3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-mp9p-399h-gx5m/GHSA-mp9p-399h-gx5m.json b/advisories/unreviewed/2024/02/GHSA-mp9p-399h-gx5m/GHSA-mp9p-399h-gx5m.json index d29441a1495..829dcc2f21a 100644 --- a/advisories/unreviewed/2024/02/GHSA-mp9p-399h-gx5m/GHSA-mp9p-399h-gx5m.json +++ b/advisories/unreviewed/2024/02/GHSA-mp9p-399h-gx5m/GHSA-mp9p-399h-gx5m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-mxxq-mghg-9fmg/GHSA-mxxq-mghg-9fmg.json b/advisories/unreviewed/2024/02/GHSA-mxxq-mghg-9fmg/GHSA-mxxq-mghg-9fmg.json index 16b6cd517ae..78aac0069d1 100644 --- a/advisories/unreviewed/2024/02/GHSA-mxxq-mghg-9fmg/GHSA-mxxq-mghg-9fmg.json +++ b/advisories/unreviewed/2024/02/GHSA-mxxq-mghg-9fmg/GHSA-mxxq-mghg-9fmg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-p868-fvgw-52x4/GHSA-p868-fvgw-52x4.json b/advisories/unreviewed/2024/02/GHSA-p868-fvgw-52x4/GHSA-p868-fvgw-52x4.json index 69ddc5df39b..7b101cae248 100644 --- a/advisories/unreviewed/2024/02/GHSA-p868-fvgw-52x4/GHSA-p868-fvgw-52x4.json +++ b/advisories/unreviewed/2024/02/GHSA-p868-fvgw-52x4/GHSA-p868-fvgw-52x4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/02/GHSA-v7cx-w2mc-c39f/GHSA-v7cx-w2mc-c39f.json b/advisories/unreviewed/2024/02/GHSA-v7cx-w2mc-c39f/GHSA-v7cx-w2mc-c39f.json index 16820328b6c..87de8c65565 100644 --- a/advisories/unreviewed/2024/02/GHSA-v7cx-w2mc-c39f/GHSA-v7cx-w2mc-c39f.json +++ b/advisories/unreviewed/2024/02/GHSA-v7cx-w2mc-c39f/GHSA-v7cx-w2mc-c39f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-28jj-97w4-wxm3/GHSA-28jj-97w4-wxm3.json b/advisories/unreviewed/2024/03/GHSA-28jj-97w4-wxm3/GHSA-28jj-97w4-wxm3.json index ddadb62d92a..b3f36730437 100644 --- a/advisories/unreviewed/2024/03/GHSA-28jj-97w4-wxm3/GHSA-28jj-97w4-wxm3.json +++ b/advisories/unreviewed/2024/03/GHSA-28jj-97w4-wxm3/GHSA-28jj-97w4-wxm3.json @@ -7,12 +7,8 @@ "CVE-2023-42307" ], "details": "Cross Site Scripting (XSS) vulnerability in Code-Projects Exam Form Submission 1.0 allows attackers to run arbitrary code via \"Subject Name\" and \"Subject Code\" section.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-3c39-w687-672w/GHSA-3c39-w687-672w.json b/advisories/unreviewed/2024/03/GHSA-3c39-w687-672w/GHSA-3c39-w687-672w.json index 00404f82935..e94da16f571 100644 --- a/advisories/unreviewed/2024/03/GHSA-3c39-w687-672w/GHSA-3c39-w687-672w.json +++ b/advisories/unreviewed/2024/03/GHSA-3c39-w687-672w/GHSA-3c39-w687-672w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-3vxq-68fw-q4hj/GHSA-3vxq-68fw-q4hj.json b/advisories/unreviewed/2024/03/GHSA-3vxq-68fw-q4hj/GHSA-3vxq-68fw-q4hj.json index bfa2bb0dc62..39fd4d0211a 100644 --- a/advisories/unreviewed/2024/03/GHSA-3vxq-68fw-q4hj/GHSA-3vxq-68fw-q4hj.json +++ b/advisories/unreviewed/2024/03/GHSA-3vxq-68fw-q4hj/GHSA-3vxq-68fw-q4hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-469c-p6p8-wh33/GHSA-469c-p6p8-wh33.json b/advisories/unreviewed/2024/03/GHSA-469c-p6p8-wh33/GHSA-469c-p6p8-wh33.json index 1627fd66dcd..0d1511cd6f2 100644 --- a/advisories/unreviewed/2024/03/GHSA-469c-p6p8-wh33/GHSA-469c-p6p8-wh33.json +++ b/advisories/unreviewed/2024/03/GHSA-469c-p6p8-wh33/GHSA-469c-p6p8-wh33.json @@ -7,12 +7,8 @@ "CVE-2024-26469" ], "details": "Server-Side Request Forgery (SSRF) vulnerability in Tunis Soft \"Product Designer\" (productdesigner) module for PrestaShop before version 1.178.36, allows remote attackers to cause a denial of service (DoS) and escalate privileges via the url parameter in the postProcess() method.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-48xv-cpgv-hr4q/GHSA-48xv-cpgv-hr4q.json b/advisories/unreviewed/2024/03/GHSA-48xv-cpgv-hr4q/GHSA-48xv-cpgv-hr4q.json index 690018c9648..af110c13cb5 100644 --- a/advisories/unreviewed/2024/03/GHSA-48xv-cpgv-hr4q/GHSA-48xv-cpgv-hr4q.json +++ b/advisories/unreviewed/2024/03/GHSA-48xv-cpgv-hr4q/GHSA-48xv-cpgv-hr4q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-5364-mpf2-q7g8/GHSA-5364-mpf2-q7g8.json b/advisories/unreviewed/2024/03/GHSA-5364-mpf2-q7g8/GHSA-5364-mpf2-q7g8.json index 6cf2f93fd13..30edc651109 100644 --- a/advisories/unreviewed/2024/03/GHSA-5364-mpf2-q7g8/GHSA-5364-mpf2-q7g8.json +++ b/advisories/unreviewed/2024/03/GHSA-5364-mpf2-q7g8/GHSA-5364-mpf2-q7g8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-5qp5-38xc-7482/GHSA-5qp5-38xc-7482.json b/advisories/unreviewed/2024/03/GHSA-5qp5-38xc-7482/GHSA-5qp5-38xc-7482.json index a8be8104a3c..39b6ca8fb67 100644 --- a/advisories/unreviewed/2024/03/GHSA-5qp5-38xc-7482/GHSA-5qp5-38xc-7482.json +++ b/advisories/unreviewed/2024/03/GHSA-5qp5-38xc-7482/GHSA-5qp5-38xc-7482.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-6437-3rvf-gv9p/GHSA-6437-3rvf-gv9p.json b/advisories/unreviewed/2024/03/GHSA-6437-3rvf-gv9p/GHSA-6437-3rvf-gv9p.json index 77c075f3910..f4b94371d9f 100644 --- a/advisories/unreviewed/2024/03/GHSA-6437-3rvf-gv9p/GHSA-6437-3rvf-gv9p.json +++ b/advisories/unreviewed/2024/03/GHSA-6437-3rvf-gv9p/GHSA-6437-3rvf-gv9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-6v7m-rgwp-qcr4/GHSA-6v7m-rgwp-qcr4.json b/advisories/unreviewed/2024/03/GHSA-6v7m-rgwp-qcr4/GHSA-6v7m-rgwp-qcr4.json index d225ace3974..70a05b44f0f 100644 --- a/advisories/unreviewed/2024/03/GHSA-6v7m-rgwp-qcr4/GHSA-6v7m-rgwp-qcr4.json +++ b/advisories/unreviewed/2024/03/GHSA-6v7m-rgwp-qcr4/GHSA-6v7m-rgwp-qcr4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-75c8-h7q2-4h5c/GHSA-75c8-h7q2-4h5c.json b/advisories/unreviewed/2024/03/GHSA-75c8-h7q2-4h5c/GHSA-75c8-h7q2-4h5c.json index 634470a8318..543f84ba476 100644 --- a/advisories/unreviewed/2024/03/GHSA-75c8-h7q2-4h5c/GHSA-75c8-h7q2-4h5c.json +++ b/advisories/unreviewed/2024/03/GHSA-75c8-h7q2-4h5c/GHSA-75c8-h7q2-4h5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-7m4v-x6m3-9pq2/GHSA-7m4v-x6m3-9pq2.json b/advisories/unreviewed/2024/03/GHSA-7m4v-x6m3-9pq2/GHSA-7m4v-x6m3-9pq2.json index 081a40b5520..87a97bfe84a 100644 --- a/advisories/unreviewed/2024/03/GHSA-7m4v-x6m3-9pq2/GHSA-7m4v-x6m3-9pq2.json +++ b/advisories/unreviewed/2024/03/GHSA-7m4v-x6m3-9pq2/GHSA-7m4v-x6m3-9pq2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-7vmx-xjmr-5rwq/GHSA-7vmx-xjmr-5rwq.json b/advisories/unreviewed/2024/03/GHSA-7vmx-xjmr-5rwq/GHSA-7vmx-xjmr-5rwq.json index 028f50600cd..90d254e6875 100644 --- a/advisories/unreviewed/2024/03/GHSA-7vmx-xjmr-5rwq/GHSA-7vmx-xjmr-5rwq.json +++ b/advisories/unreviewed/2024/03/GHSA-7vmx-xjmr-5rwq/GHSA-7vmx-xjmr-5rwq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-88fx-4f8h-74f9/GHSA-88fx-4f8h-74f9.json b/advisories/unreviewed/2024/03/GHSA-88fx-4f8h-74f9/GHSA-88fx-4f8h-74f9.json index 60c68cc5974..df9cc11fd60 100644 --- a/advisories/unreviewed/2024/03/GHSA-88fx-4f8h-74f9/GHSA-88fx-4f8h-74f9.json +++ b/advisories/unreviewed/2024/03/GHSA-88fx-4f8h-74f9/GHSA-88fx-4f8h-74f9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-95ch-f6qf-fhcv/GHSA-95ch-f6qf-fhcv.json b/advisories/unreviewed/2024/03/GHSA-95ch-f6qf-fhcv/GHSA-95ch-f6qf-fhcv.json index 3405a231bcf..ad8686fd567 100644 --- a/advisories/unreviewed/2024/03/GHSA-95ch-f6qf-fhcv/GHSA-95ch-f6qf-fhcv.json +++ b/advisories/unreviewed/2024/03/GHSA-95ch-f6qf-fhcv/GHSA-95ch-f6qf-fhcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-9rpw-6ghh-qx6q/GHSA-9rpw-6ghh-qx6q.json b/advisories/unreviewed/2024/03/GHSA-9rpw-6ghh-qx6q/GHSA-9rpw-6ghh-qx6q.json index 06c24c17517..8d03fedafe6 100644 --- a/advisories/unreviewed/2024/03/GHSA-9rpw-6ghh-qx6q/GHSA-9rpw-6ghh-qx6q.json +++ b/advisories/unreviewed/2024/03/GHSA-9rpw-6ghh-qx6q/GHSA-9rpw-6ghh-qx6q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-c7vq-m2w6-mh83/GHSA-c7vq-m2w6-mh83.json b/advisories/unreviewed/2024/03/GHSA-c7vq-m2w6-mh83/GHSA-c7vq-m2w6-mh83.json index b2723ec7ab3..18de03f63b5 100644 --- a/advisories/unreviewed/2024/03/GHSA-c7vq-m2w6-mh83/GHSA-c7vq-m2w6-mh83.json +++ b/advisories/unreviewed/2024/03/GHSA-c7vq-m2w6-mh83/GHSA-c7vq-m2w6-mh83.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-cq2x-934m-8p64/GHSA-cq2x-934m-8p64.json b/advisories/unreviewed/2024/03/GHSA-cq2x-934m-8p64/GHSA-cq2x-934m-8p64.json index eb219676ef4..7660df111c3 100644 --- a/advisories/unreviewed/2024/03/GHSA-cq2x-934m-8p64/GHSA-cq2x-934m-8p64.json +++ b/advisories/unreviewed/2024/03/GHSA-cq2x-934m-8p64/GHSA-cq2x-934m-8p64.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-f6rh-p4h7-6q5w/GHSA-f6rh-p4h7-6q5w.json b/advisories/unreviewed/2024/03/GHSA-f6rh-p4h7-6q5w/GHSA-f6rh-p4h7-6q5w.json index 775277e9bc2..8284655720b 100644 --- a/advisories/unreviewed/2024/03/GHSA-f6rh-p4h7-6q5w/GHSA-f6rh-p4h7-6q5w.json +++ b/advisories/unreviewed/2024/03/GHSA-f6rh-p4h7-6q5w/GHSA-f6rh-p4h7-6q5w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-g662-fqhc-2vp3/GHSA-g662-fqhc-2vp3.json b/advisories/unreviewed/2024/03/GHSA-g662-fqhc-2vp3/GHSA-g662-fqhc-2vp3.json index 1a0c8cf703a..e1e6f8115a8 100644 --- a/advisories/unreviewed/2024/03/GHSA-g662-fqhc-2vp3/GHSA-g662-fqhc-2vp3.json +++ b/advisories/unreviewed/2024/03/GHSA-g662-fqhc-2vp3/GHSA-g662-fqhc-2vp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-h3pc-p5gc-rxc4/GHSA-h3pc-p5gc-rxc4.json b/advisories/unreviewed/2024/03/GHSA-h3pc-p5gc-rxc4/GHSA-h3pc-p5gc-rxc4.json index 276a5e593e4..d6550c72084 100644 --- a/advisories/unreviewed/2024/03/GHSA-h3pc-p5gc-rxc4/GHSA-h3pc-p5gc-rxc4.json +++ b/advisories/unreviewed/2024/03/GHSA-h3pc-p5gc-rxc4/GHSA-h3pc-p5gc-rxc4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-h7x2-5334-q66p/GHSA-h7x2-5334-q66p.json b/advisories/unreviewed/2024/03/GHSA-h7x2-5334-q66p/GHSA-h7x2-5334-q66p.json index ac7f89b6fe6..2bad5360603 100644 --- a/advisories/unreviewed/2024/03/GHSA-h7x2-5334-q66p/GHSA-h7x2-5334-q66p.json +++ b/advisories/unreviewed/2024/03/GHSA-h7x2-5334-q66p/GHSA-h7x2-5334-q66p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-hjxq-rqvr-4hp2/GHSA-hjxq-rqvr-4hp2.json b/advisories/unreviewed/2024/03/GHSA-hjxq-rqvr-4hp2/GHSA-hjxq-rqvr-4hp2.json index 4e96411ef2d..cc9e43b3c18 100644 --- a/advisories/unreviewed/2024/03/GHSA-hjxq-rqvr-4hp2/GHSA-hjxq-rqvr-4hp2.json +++ b/advisories/unreviewed/2024/03/GHSA-hjxq-rqvr-4hp2/GHSA-hjxq-rqvr-4hp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-mwq2-v3h2-q84r/GHSA-mwq2-v3h2-q84r.json b/advisories/unreviewed/2024/03/GHSA-mwq2-v3h2-q84r/GHSA-mwq2-v3h2-q84r.json index 617d117bc13..be05e05dc46 100644 --- a/advisories/unreviewed/2024/03/GHSA-mwq2-v3h2-q84r/GHSA-mwq2-v3h2-q84r.json +++ b/advisories/unreviewed/2024/03/GHSA-mwq2-v3h2-q84r/GHSA-mwq2-v3h2-q84r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-q3mx-vc3g-474w/GHSA-q3mx-vc3g-474w.json b/advisories/unreviewed/2024/03/GHSA-q3mx-vc3g-474w/GHSA-q3mx-vc3g-474w.json index b392256a025..79414982331 100644 --- a/advisories/unreviewed/2024/03/GHSA-q3mx-vc3g-474w/GHSA-q3mx-vc3g-474w.json +++ b/advisories/unreviewed/2024/03/GHSA-q3mx-vc3g-474w/GHSA-q3mx-vc3g-474w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-qh2q-v7cv-8g72/GHSA-qh2q-v7cv-8g72.json b/advisories/unreviewed/2024/03/GHSA-qh2q-v7cv-8g72/GHSA-qh2q-v7cv-8g72.json index 93191709592..c66ccaffe1e 100644 --- a/advisories/unreviewed/2024/03/GHSA-qh2q-v7cv-8g72/GHSA-qh2q-v7cv-8g72.json +++ b/advisories/unreviewed/2024/03/GHSA-qh2q-v7cv-8g72/GHSA-qh2q-v7cv-8g72.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-qp7v-9hpx-hcp3/GHSA-qp7v-9hpx-hcp3.json b/advisories/unreviewed/2024/03/GHSA-qp7v-9hpx-hcp3/GHSA-qp7v-9hpx-hcp3.json index d2c4e1578c0..784201285b2 100644 --- a/advisories/unreviewed/2024/03/GHSA-qp7v-9hpx-hcp3/GHSA-qp7v-9hpx-hcp3.json +++ b/advisories/unreviewed/2024/03/GHSA-qp7v-9hpx-hcp3/GHSA-qp7v-9hpx-hcp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-qvx7-6mf9-vg7p/GHSA-qvx7-6mf9-vg7p.json b/advisories/unreviewed/2024/03/GHSA-qvx7-6mf9-vg7p/GHSA-qvx7-6mf9-vg7p.json index 6781c37a480..e7414cb9c36 100644 --- a/advisories/unreviewed/2024/03/GHSA-qvx7-6mf9-vg7p/GHSA-qvx7-6mf9-vg7p.json +++ b/advisories/unreviewed/2024/03/GHSA-qvx7-6mf9-vg7p/GHSA-qvx7-6mf9-vg7p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-rm3v-mvrr-w747/GHSA-rm3v-mvrr-w747.json b/advisories/unreviewed/2024/03/GHSA-rm3v-mvrr-w747/GHSA-rm3v-mvrr-w747.json index 88e0f64fcf4..6b103779c56 100644 --- a/advisories/unreviewed/2024/03/GHSA-rm3v-mvrr-w747/GHSA-rm3v-mvrr-w747.json +++ b/advisories/unreviewed/2024/03/GHSA-rm3v-mvrr-w747/GHSA-rm3v-mvrr-w747.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json b/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json index f9618e1976d..1746f6d9f6d 100644 --- a/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json +++ b/advisories/unreviewed/2024/03/GHSA-w6rw-5fh3-46gp/GHSA-w6rw-5fh3-46gp.json @@ -7,12 +7,8 @@ "CVE-2024-20022" ], "details": "In lk, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528255; Issue ID: ALPS08528255.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-x6pc-98xx-mqg4/GHSA-x6pc-98xx-mqg4.json b/advisories/unreviewed/2024/03/GHSA-x6pc-98xx-mqg4/GHSA-x6pc-98xx-mqg4.json index b34f2941509..07634685bfa 100644 --- a/advisories/unreviewed/2024/03/GHSA-x6pc-98xx-mqg4/GHSA-x6pc-98xx-mqg4.json +++ b/advisories/unreviewed/2024/03/GHSA-x6pc-98xx-mqg4/GHSA-x6pc-98xx-mqg4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-33r8-qvv9-4r9q/GHSA-33r8-qvv9-4r9q.json b/advisories/unreviewed/2024/05/GHSA-33r8-qvv9-4r9q/GHSA-33r8-qvv9-4r9q.json index 77e95708ccc..e08351b7791 100644 --- a/advisories/unreviewed/2024/05/GHSA-33r8-qvv9-4r9q/GHSA-33r8-qvv9-4r9q.json +++ b/advisories/unreviewed/2024/05/GHSA-33r8-qvv9-4r9q/GHSA-33r8-qvv9-4r9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-4vmc-32f5-wrhg/GHSA-4vmc-32f5-wrhg.json b/advisories/unreviewed/2024/05/GHSA-4vmc-32f5-wrhg/GHSA-4vmc-32f5-wrhg.json index 7cac2cb4255..cb3c664eb2c 100644 --- a/advisories/unreviewed/2024/05/GHSA-4vmc-32f5-wrhg/GHSA-4vmc-32f5-wrhg.json +++ b/advisories/unreviewed/2024/05/GHSA-4vmc-32f5-wrhg/GHSA-4vmc-32f5-wrhg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-8rqf-8g2h-r7c2/GHSA-8rqf-8g2h-r7c2.json b/advisories/unreviewed/2024/05/GHSA-8rqf-8g2h-r7c2/GHSA-8rqf-8g2h-r7c2.json index 75c6afcd5dc..13ec1b19cdc 100644 --- a/advisories/unreviewed/2024/05/GHSA-8rqf-8g2h-r7c2/GHSA-8rqf-8g2h-r7c2.json +++ b/advisories/unreviewed/2024/05/GHSA-8rqf-8g2h-r7c2/GHSA-8rqf-8g2h-r7c2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-cg6c-44pq-gx4v/GHSA-cg6c-44pq-gx4v.json b/advisories/unreviewed/2024/05/GHSA-cg6c-44pq-gx4v/GHSA-cg6c-44pq-gx4v.json index 50d6e19720d..2e6d0731c22 100644 --- a/advisories/unreviewed/2024/05/GHSA-cg6c-44pq-gx4v/GHSA-cg6c-44pq-gx4v.json +++ b/advisories/unreviewed/2024/05/GHSA-cg6c-44pq-gx4v/GHSA-cg6c-44pq-gx4v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-m7ww-c868-pgpq/GHSA-m7ww-c868-pgpq.json b/advisories/unreviewed/2024/05/GHSA-m7ww-c868-pgpq/GHSA-m7ww-c868-pgpq.json index d6defcdb60a..6670c72a8d1 100644 --- a/advisories/unreviewed/2024/05/GHSA-m7ww-c868-pgpq/GHSA-m7ww-c868-pgpq.json +++ b/advisories/unreviewed/2024/05/GHSA-m7ww-c868-pgpq/GHSA-m7ww-c868-pgpq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-qqr5-9q23-995q/GHSA-qqr5-9q23-995q.json b/advisories/unreviewed/2024/05/GHSA-qqr5-9q23-995q/GHSA-qqr5-9q23-995q.json index 3fca8f20131..540e2486985 100644 --- a/advisories/unreviewed/2024/05/GHSA-qqr5-9q23-995q/GHSA-qqr5-9q23-995q.json +++ b/advisories/unreviewed/2024/05/GHSA-qqr5-9q23-995q/GHSA-qqr5-9q23-995q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rmwv-m4j7-frqp/GHSA-rmwv-m4j7-frqp.json b/advisories/unreviewed/2024/05/GHSA-rmwv-m4j7-frqp/GHSA-rmwv-m4j7-frqp.json index c9eb6a51cef..390f0fce043 100644 --- a/advisories/unreviewed/2024/05/GHSA-rmwv-m4j7-frqp/GHSA-rmwv-m4j7-frqp.json +++ b/advisories/unreviewed/2024/05/GHSA-rmwv-m4j7-frqp/GHSA-rmwv-m4j7-frqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-rphp-4xwp-5f63/GHSA-rphp-4xwp-5f63.json b/advisories/unreviewed/2024/05/GHSA-rphp-4xwp-5f63/GHSA-rphp-4xwp-5f63.json index 447ebdcfa6b..a975abfe5e7 100644 --- a/advisories/unreviewed/2024/05/GHSA-rphp-4xwp-5f63/GHSA-rphp-4xwp-5f63.json +++ b/advisories/unreviewed/2024/05/GHSA-rphp-4xwp-5f63/GHSA-rphp-4xwp-5f63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-vhjm-ghx5-jwm3/GHSA-vhjm-ghx5-jwm3.json b/advisories/unreviewed/2024/05/GHSA-vhjm-ghx5-jwm3/GHSA-vhjm-ghx5-jwm3.json index 28ac4f69ee2..678e0861f67 100644 --- a/advisories/unreviewed/2024/05/GHSA-vhjm-ghx5-jwm3/GHSA-vhjm-ghx5-jwm3.json +++ b/advisories/unreviewed/2024/05/GHSA-vhjm-ghx5-jwm3/GHSA-vhjm-ghx5-jwm3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wfjf-pjxw-v8wf/GHSA-wfjf-pjxw-v8wf.json b/advisories/unreviewed/2024/05/GHSA-wfjf-pjxw-v8wf/GHSA-wfjf-pjxw-v8wf.json index 6eb1eb6b142..c5988ad4dec 100644 --- a/advisories/unreviewed/2024/05/GHSA-wfjf-pjxw-v8wf/GHSA-wfjf-pjxw-v8wf.json +++ b/advisories/unreviewed/2024/05/GHSA-wfjf-pjxw-v8wf/GHSA-wfjf-pjxw-v8wf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json b/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json index 8c0e8da601a..20a8acbb9c6 100644 --- a/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json +++ b/advisories/unreviewed/2024/05/GHSA-wx86-7jg2-9256/GHSA-wx86-7jg2-9256.json @@ -7,12 +7,8 @@ "CVE-2024-0904" ], "details": "The Fancy Product Designer WordPress plugin before 6.1.81 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/05/GHSA-xfjx-rwvr-jq37/GHSA-xfjx-rwvr-jq37.json b/advisories/unreviewed/2024/05/GHSA-xfjx-rwvr-jq37/GHSA-xfjx-rwvr-jq37.json index 6e7a4e49a6e..97b0103e123 100644 --- a/advisories/unreviewed/2024/05/GHSA-xfjx-rwvr-jq37/GHSA-xfjx-rwvr-jq37.json +++ b/advisories/unreviewed/2024/05/GHSA-xfjx-rwvr-jq37/GHSA-xfjx-rwvr-jq37.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/05/GHSA-xwj3-m7ch-j848/GHSA-xwj3-m7ch-j848.json b/advisories/unreviewed/2024/05/GHSA-xwj3-m7ch-j848/GHSA-xwj3-m7ch-j848.json index f38f12abaa2..31e6da1860d 100644 --- a/advisories/unreviewed/2024/05/GHSA-xwj3-m7ch-j848/GHSA-xwj3-m7ch-j848.json +++ b/advisories/unreviewed/2024/05/GHSA-xwj3-m7ch-j848/GHSA-xwj3-m7ch-j848.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",