diff --git a/advisories/github-reviewed/2023/07/GHSA-gm68-572p-q28r/GHSA-gm68-572p-q28r.json b/advisories/github-reviewed/2023/07/GHSA-gm68-572p-q28r/GHSA-gm68-572p-q28r.json new file mode 100644 index 00000000000..f8a6b24eb16 --- /dev/null +++ b/advisories/github-reviewed/2023/07/GHSA-gm68-572p-q28r/GHSA-gm68-572p-q28r.json @@ -0,0 +1,62 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gm68-572p-q28r", + "modified": "2023-07-06T15:30:51Z", + "published": "2023-07-06T15:30:51Z", + "aliases": [ + + ], + "summary": "@vendure/admin-ui-plugin authenticated Cross-site Scripting vulnerability", + "details": "### Impact\nVendure provides an authorization system with different levels of privileges. For example, an administrator cannot create another administrator.\n\nIn the admin UI, there are a couple of places with description inputs, such as inventory/collection catalog, shipping methods, promotions, and more.\n\nWhile the WYSIWYG editor allows limited customization, altering the request data (not in the ui) saves and returns arbitrary HTML with no sanitization. Causing an XSS when viewing the page.\n\nThe impact of this XSS is privilege escalation. A user that can write any type of description can trigger the attack. Then any other user that visits the vulnerable page is prone to arbitrary Javascript code execution, giving the attacker ability to execute actions on behalf of this user.\n\n### Patches\nin progress\n\n### Workarounds\n_Is there a way for users to fix or remediate the vulnerability without upgrading?_\n\n### References\n_Are there any links users can visit to find out more?_\n", + "severity": [ + + ], + "affected": [ + { + "package": { + "ecosystem": "npm", + "name": "@vendure/admin-ui-plugin" + }, + "ranges": [ + { + "type": "ECOSYSTEM", + "events": [ + { + "introduced": "0" + }, + { + "fixed": "2.0.3" + } + ] + } + ] + } + ], + "references": [ + { + "type": "WEB", + "url": "https://github.com/vendure-ecommerce/vendure/security/advisories/GHSA-gm68-572p-q28r" + }, + { + "type": "WEB", + "url": "https://github.com/vendure-ecommerce/vendure/commit/0cdc92b241e6fd4017ddfc9fbdca189fc7c1ada0" + }, + { + "type": "PACKAGE", + "url": "https://github.com/vendure-ecommerce/vendure" + }, + { + "type": "WEB", + "url": "https://github.com/vendure-ecommerce/vendure/blob/master/CHANGELOG.md#203-2023-07-04" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-79" + ], + "severity": "MODERATE", + "github_reviewed": true, + "github_reviewed_at": "2023-07-06T15:30:51Z", + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2022/01/GHSA-cf77-6c9v-56mf/GHSA-cf77-6c9v-56mf.json b/advisories/unreviewed/2022/01/GHSA-cf77-6c9v-56mf/GHSA-cf77-6c9v-56mf.json index fab4889f0e6..9c4dc17155a 100644 --- a/advisories/unreviewed/2022/01/GHSA-cf77-6c9v-56mf/GHSA-cf77-6c9v-56mf.json +++ b/advisories/unreviewed/2022/01/GHSA-cf77-6c9v-56mf/GHSA-cf77-6c9v-56mf.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-cf77-6c9v-56mf", - "modified": "2022-01-14T00:02:51Z", + "modified": "2023-07-06T15:30:29Z", "published": "2022-01-11T00:01:24Z", "aliases": [ "CVE-2021-40014" ], "details": "The bone voice ID trusted application (TA) has a heap overflow vulnerability. Successful exploitation of this vulnerability may affect data confidentiality.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -18,9 +21,17 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-40014" }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, { "type": "WEB", "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202201-0000001238736331" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" } ], "database_specific": { diff --git a/advisories/unreviewed/2022/01/GHSA-j5wx-jhwh-qm36/GHSA-j5wx-jhwh-qm36.json b/advisories/unreviewed/2022/01/GHSA-j5wx-jhwh-qm36/GHSA-j5wx-jhwh-qm36.json index 034e28e05b4..2d6d606be6b 100644 --- a/advisories/unreviewed/2022/01/GHSA-j5wx-jhwh-qm36/GHSA-j5wx-jhwh-qm36.json +++ b/advisories/unreviewed/2022/01/GHSA-j5wx-jhwh-qm36/GHSA-j5wx-jhwh-qm36.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-j5wx-jhwh-qm36", - "modified": "2022-01-14T00:02:48Z", + "modified": "2023-07-06T15:30:29Z", "published": "2022-01-11T00:01:21Z", "aliases": [ "CVE-2021-40027" ], "details": "The bone voice ID TA has a vulnerability in calculating the buffer length,Successful exploitation of this vulnerability may affect data confidentiality.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -18,14 +21,23 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-40027" }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, { "type": "WEB", "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202201-0000001238736331" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" } ], "database_specific": { "cwe_ids": [ - "CWE-119" + "CWE-119", + "CWE-476" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/01/GHSA-wvq2-357p-vcgg/GHSA-wvq2-357p-vcgg.json b/advisories/unreviewed/2022/01/GHSA-wvq2-357p-vcgg/GHSA-wvq2-357p-vcgg.json index d692f50a27c..c27d789c08c 100644 --- a/advisories/unreviewed/2022/01/GHSA-wvq2-357p-vcgg/GHSA-wvq2-357p-vcgg.json +++ b/advisories/unreviewed/2022/01/GHSA-wvq2-357p-vcgg/GHSA-wvq2-357p-vcgg.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-wvq2-357p-vcgg", - "modified": "2022-01-14T00:02:46Z", + "modified": "2023-07-06T15:30:29Z", "published": "2022-01-11T00:01:18Z", "aliases": [ "CVE-2021-40032" ], "details": "The bone voice ID TA has a vulnerability in information management,Successful exploitation of this vulnerability may affect data confidentiality.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -18,9 +21,17 @@ "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-40032" }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, { "type": "WEB", "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202201-0000001238736331" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" } ], "database_specific": { diff --git a/advisories/unreviewed/2022/10/GHSA-297f-r9w7-w492/GHSA-297f-r9w7-w492.json b/advisories/unreviewed/2022/10/GHSA-297f-r9w7-w492/GHSA-297f-r9w7-w492.json index af444a4ddeb..8f7bcdd30d4 100644 --- a/advisories/unreviewed/2022/10/GHSA-297f-r9w7-w492/GHSA-297f-r9w7-w492.json +++ b/advisories/unreviewed/2022/10/GHSA-297f-r9w7-w492/GHSA-297f-r9w7-w492.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-20" + "CWE-20", + "CWE-639" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-39xh-x2wj-8255/GHSA-39xh-x2wj-8255.json b/advisories/unreviewed/2022/11/GHSA-39xh-x2wj-8255/GHSA-39xh-x2wj-8255.json index b46a80e348b..8b265597d4e 100644 --- a/advisories/unreviewed/2022/11/GHSA-39xh-x2wj-8255/GHSA-39xh-x2wj-8255.json +++ b/advisories/unreviewed/2022/11/GHSA-39xh-x2wj-8255/GHSA-39xh-x2wj-8255.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-284" + "CWE-284", + "CWE-306" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-768c-qx9v-r6h3/GHSA-768c-qx9v-r6h3.json b/advisories/unreviewed/2022/11/GHSA-768c-qx9v-r6h3/GHSA-768c-qx9v-r6h3.json index a86fbaba0dd..cea196cb7e6 100644 --- a/advisories/unreviewed/2022/11/GHSA-768c-qx9v-r6h3/GHSA-768c-qx9v-r6h3.json +++ b/advisories/unreviewed/2022/11/GHSA-768c-qx9v-r6h3/GHSA-768c-qx9v-r6h3.json @@ -32,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-502" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-83xp-fg77-xfqq/GHSA-83xp-fg77-xfqq.json b/advisories/unreviewed/2022/11/GHSA-83xp-fg77-xfqq/GHSA-83xp-fg77-xfqq.json index 3aeb91b1d05..50b5d51d8d0 100644 --- a/advisories/unreviewed/2022/11/GHSA-83xp-fg77-xfqq/GHSA-83xp-fg77-xfqq.json +++ b/advisories/unreviewed/2022/11/GHSA-83xp-fg77-xfqq/GHSA-83xp-fg77-xfqq.json @@ -36,7 +36,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-200" + "CWE-200", + "CWE-306" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/11/GHSA-c538-4cm5-rh89/GHSA-c538-4cm5-rh89.json b/advisories/unreviewed/2022/11/GHSA-c538-4cm5-rh89/GHSA-c538-4cm5-rh89.json index e59553a2893..81a8a1455a6 100644 --- a/advisories/unreviewed/2022/11/GHSA-c538-4cm5-rh89/GHSA-c538-4cm5-rh89.json +++ b/advisories/unreviewed/2022/11/GHSA-c538-4cm5-rh89/GHSA-c538-4cm5-rh89.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-269" + "CWE-269", + "CWE-732" ], "severity": "HIGH", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/12/GHSA-6w7r-4v6h-jjq5/GHSA-6w7r-4v6h-jjq5.json b/advisories/unreviewed/2022/12/GHSA-6w7r-4v6h-jjq5/GHSA-6w7r-4v6h-jjq5.json index e486a3bfceb..ada5c671447 100644 --- a/advisories/unreviewed/2022/12/GHSA-6w7r-4v6h-jjq5/GHSA-6w7r-4v6h-jjq5.json +++ b/advisories/unreviewed/2022/12/GHSA-6w7r-4v6h-jjq5/GHSA-6w7r-4v6h-jjq5.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-312" + "CWE-312", + "CWE-522" ], "severity": "MODERATE", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/12/GHSA-qgm5-3gxj-29mw/GHSA-qgm5-3gxj-29mw.json b/advisories/unreviewed/2022/12/GHSA-qgm5-3gxj-29mw/GHSA-qgm5-3gxj-29mw.json index ef048633dc2..2f7f8168997 100644 --- a/advisories/unreviewed/2022/12/GHSA-qgm5-3gxj-29mw/GHSA-qgm5-3gxj-29mw.json +++ b/advisories/unreviewed/2022/12/GHSA-qgm5-3gxj-29mw/GHSA-qgm5-3gxj-29mw.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-20" + "CWE-20", + "CWE-89" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2022/12/GHSA-vv59-hfvc-2j7h/GHSA-vv59-hfvc-2j7h.json b/advisories/unreviewed/2022/12/GHSA-vv59-hfvc-2j7h/GHSA-vv59-hfvc-2j7h.json index 6b25e36f272..cd984cd7395 100644 --- a/advisories/unreviewed/2022/12/GHSA-vv59-hfvc-2j7h/GHSA-vv59-hfvc-2j7h.json +++ b/advisories/unreviewed/2022/12/GHSA-vv59-hfvc-2j7h/GHSA-vv59-hfvc-2j7h.json @@ -32,7 +32,9 @@ ], "database_specific": { "cwe_ids": [ - "CWE-77" + "CWE-707", + "CWE-77", + "CWE-78" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/01/GHSA-8jpc-xwjw-7jcx/GHSA-8jpc-xwjw-7jcx.json b/advisories/unreviewed/2023/01/GHSA-8jpc-xwjw-7jcx/GHSA-8jpc-xwjw-7jcx.json index af606f2b4a0..2b9d6ddecc4 100644 --- a/advisories/unreviewed/2023/01/GHSA-8jpc-xwjw-7jcx/GHSA-8jpc-xwjw-7jcx.json +++ b/advisories/unreviewed/2023/01/GHSA-8jpc-xwjw-7jcx/GHSA-8jpc-xwjw-7jcx.json @@ -28,7 +28,8 @@ ], "database_specific": { "cwe_ids": [ - "CWE-120" + "CWE-120", + "CWE-787" ], "severity": "CRITICAL", "github_reviewed": false, diff --git a/advisories/unreviewed/2023/03/GHSA-488p-w8x3-xh6m/GHSA-488p-w8x3-xh6m.json b/advisories/unreviewed/2023/03/GHSA-488p-w8x3-xh6m/GHSA-488p-w8x3-xh6m.json index f6ed4a7176f..db707928d22 100644 --- a/advisories/unreviewed/2023/03/GHSA-488p-w8x3-xh6m/GHSA-488p-w8x3-xh6m.json +++ b/advisories/unreviewed/2023/03/GHSA-488p-w8x3-xh6m/GHSA-488p-w8x3-xh6m.json @@ -29,6 +29,7 @@ "database_specific": { "cwe_ids": [ "CWE-195", + "CWE-681", "CWE-704" ], "severity": "CRITICAL", diff --git a/advisories/unreviewed/2023/03/GHSA-p8q2-j5x8-g597/GHSA-p8q2-j5x8-g597.json b/advisories/unreviewed/2023/03/GHSA-p8q2-j5x8-g597/GHSA-p8q2-j5x8-g597.json index 8fea04ab925..3d63f8102d6 100644 --- a/advisories/unreviewed/2023/03/GHSA-p8q2-j5x8-g597/GHSA-p8q2-j5x8-g597.json +++ b/advisories/unreviewed/2023/03/GHSA-p8q2-j5x8-g597/GHSA-p8q2-j5x8-g597.json @@ -28,6 +28,7 @@ ], "database_specific": { "cwe_ids": [ + "CWE-1188", "CWE-668" ], "severity": "HIGH", diff --git a/advisories/unreviewed/2023/06/GHSA-4497-w4wq-c9hv/GHSA-4497-w4wq-c9hv.json b/advisories/unreviewed/2023/06/GHSA-4497-w4wq-c9hv/GHSA-4497-w4wq-c9hv.json index 5383482f506..ddf80a5db94 100644 --- a/advisories/unreviewed/2023/06/GHSA-4497-w4wq-c9hv/GHSA-4497-w4wq-c9hv.json +++ b/advisories/unreviewed/2023/06/GHSA-4497-w4wq-c9hv/GHSA-4497-w4wq-c9hv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-4497-w4wq-c9hv", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21220" ], "details": "there is a possible use of unencrypted transport over cellular networks due to an insecure default value. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-264590585References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-319" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-66gg-5548-j9hx/GHSA-66gg-5548-j9hx.json b/advisories/unreviewed/2023/06/GHSA-66gg-5548-j9hx/GHSA-66gg-5548-j9hx.json index dbd46ae83e4..760cfff4df2 100644 --- a/advisories/unreviewed/2023/06/GHSA-66gg-5548-j9hx/GHSA-66gg-5548-j9hx.json +++ b/advisories/unreviewed/2023/06/GHSA-66gg-5548-j9hx/GHSA-66gg-5548-j9hx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-66gg-5548-j9hx", - "modified": "2023-06-28T18:30:27Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:27Z", "aliases": [ "CVE-2023-21224" ], "details": "In ss_ProcessReturnResultComponent of ss_MmConManagement.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-265276966References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-74m2-g8xq-p8cp/GHSA-74m2-g8xq-p8cp.json b/advisories/unreviewed/2023/06/GHSA-74m2-g8xq-p8cp/GHSA-74m2-g8xq-p8cp.json index f6085512320..8feb4697b8d 100644 --- a/advisories/unreviewed/2023/06/GHSA-74m2-g8xq-p8cp/GHSA-74m2-g8xq-p8cp.json +++ b/advisories/unreviewed/2023/06/GHSA-74m2-g8xq-p8cp/GHSA-74m2-g8xq-p8cp.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-74m2-g8xq-p8cp", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21219" ], "details": "there is a possible use of unencrypted transport over cellular networks due to an insecure default value. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-264698379References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-319" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-85v5-pp3q-c7gj/GHSA-85v5-pp3q-c7gj.json b/advisories/unreviewed/2023/06/GHSA-85v5-pp3q-c7gj/GHSA-85v5-pp3q-c7gj.json index 906662bb4b6..c45040bcd1f 100644 --- a/advisories/unreviewed/2023/06/GHSA-85v5-pp3q-c7gj/GHSA-85v5-pp3q-c7gj.json +++ b/advisories/unreviewed/2023/06/GHSA-85v5-pp3q-c7gj/GHSA-85v5-pp3q-c7gj.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-85v5-pp3q-c7gj", - "modified": "2023-06-28T21:30:30Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T21:30:30Z", "aliases": [ "CVE-2023-34652" ], "details": "PHPgurukl Hostel Management System v.1.0 is vulnerable to Cross Site Scripting (XSS) via Add New Course.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-9pjf-87x2-r68m/GHSA-9pjf-87x2-r68m.json b/advisories/unreviewed/2023/06/GHSA-9pjf-87x2-r68m/GHSA-9pjf-87x2-r68m.json index dc0c65fcf77..727ff0afbda 100644 --- a/advisories/unreviewed/2023/06/GHSA-9pjf-87x2-r68m/GHSA-9pjf-87x2-r68m.json +++ b/advisories/unreviewed/2023/06/GHSA-9pjf-87x2-r68m/GHSA-9pjf-87x2-r68m.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9pjf-87x2-r68m", - "modified": "2023-06-28T21:30:29Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T21:30:29Z", "aliases": [ "CVE-2021-25828" ], "details": "Emby Server versions < 4.6.0.50 is vulnerable to Cross Site Scripting (XSS) vulnerability via a crafted GET request to /web.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-9q56-96jc-v96w/GHSA-9q56-96jc-v96w.json b/advisories/unreviewed/2023/06/GHSA-9q56-96jc-v96w/GHSA-9q56-96jc-v96w.json index 33ae291076d..1b3b9bf27bc 100644 --- a/advisories/unreviewed/2023/06/GHSA-9q56-96jc-v96w/GHSA-9q56-96jc-v96w.json +++ b/advisories/unreviewed/2023/06/GHSA-9q56-96jc-v96w/GHSA-9q56-96jc-v96w.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-9q56-96jc-v96w", - "modified": "2023-06-27T21:30:50Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-27T21:30:50Z", "aliases": [ "CVE-2020-18409" ], "details": "Cross Site Request Forgery (CSRF) vulnerability was discovered in CatfishCMS 4.8.63 that would allow attackers to obtain administrator permissions via /index.php/admin/index/modifymanage.html.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-352" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-h5wf-5g96-9fxx/GHSA-h5wf-5g96-9fxx.json b/advisories/unreviewed/2023/06/GHSA-h5wf-5g96-9fxx/GHSA-h5wf-5g96-9fxx.json index 5c8346b1190..ed8c1128ca8 100644 --- a/advisories/unreviewed/2023/06/GHSA-h5wf-5g96-9fxx/GHSA-h5wf-5g96-9fxx.json +++ b/advisories/unreviewed/2023/06/GHSA-h5wf-5g96-9fxx/GHSA-h5wf-5g96-9fxx.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h5wf-5g96-9fxx", - "modified": "2023-06-28T18:30:27Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:27Z", "aliases": [ "CVE-2023-21236" ], "details": "In aoc_service_set_read_blocked of aoc.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-270148537References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-h7fv-hhvw-364h/GHSA-h7fv-hhvw-364h.json b/advisories/unreviewed/2023/06/GHSA-h7fv-hhvw-364h/GHSA-h7fv-hhvw-364h.json index 357d2e77ed5..a97cf36c737 100644 --- a/advisories/unreviewed/2023/06/GHSA-h7fv-hhvw-364h/GHSA-h7fv-hhvw-364h.json +++ b/advisories/unreviewed/2023/06/GHSA-h7fv-hhvw-364h/GHSA-h7fv-hhvw-364h.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-h7fv-hhvw-364h", - "modified": "2023-06-27T21:30:50Z", + "modified": "2023-07-06T15:30:31Z", "published": "2023-06-27T21:30:50Z", "aliases": [ "CVE-2020-19902" ], "details": "Directory Traversal vulnerability found in Cryptoprof WCMS v.0.3.2 allows a remote attacker to execute arbitrary code via the wex/cssjs.php parameter.", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-22" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-hp3r-4gxv-f647/GHSA-hp3r-4gxv-f647.json b/advisories/unreviewed/2023/06/GHSA-hp3r-4gxv-f647/GHSA-hp3r-4gxv-f647.json index 7445e2f0cfb..b219dd9ea63 100644 --- a/advisories/unreviewed/2023/06/GHSA-hp3r-4gxv-f647/GHSA-hp3r-4gxv-f647.json +++ b/advisories/unreviewed/2023/06/GHSA-hp3r-4gxv-f647/GHSA-hp3r-4gxv-f647.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-hp3r-4gxv-f647", - "modified": "2023-06-28T21:30:30Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T21:30:30Z", "aliases": [ "CVE-2023-34651" ], "details": "PHPgurukl Hospital Management System v.1.0 is vulnerable to Cross Site Scripting (XSS).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-jgp3-6m3x-66v7/GHSA-jgp3-6m3x-66v7.json b/advisories/unreviewed/2023/06/GHSA-jgp3-6m3x-66v7/GHSA-jgp3-6m3x-66v7.json index 134ef4a96bf..e9b47095e9c 100644 --- a/advisories/unreviewed/2023/06/GHSA-jgp3-6m3x-66v7/GHSA-jgp3-6m3x-66v7.json +++ b/advisories/unreviewed/2023/06/GHSA-jgp3-6m3x-66v7/GHSA-jgp3-6m3x-66v7.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-jgp3-6m3x-66v7", - "modified": "2023-06-28T18:30:27Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:27Z", "aliases": [ "CVE-2023-21225" ], "details": "there is a possible way to bypass the protected confirmation screen due to Failure to lock display power. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-270403821References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-863" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-mjx2-7pc8-3775/GHSA-mjx2-7pc8-3775.json b/advisories/unreviewed/2023/06/GHSA-mjx2-7pc8-3775/GHSA-mjx2-7pc8-3775.json index b10ff94b25a..5d49ac69d56 100644 --- a/advisories/unreviewed/2023/06/GHSA-mjx2-7pc8-3775/GHSA-mjx2-7pc8-3775.json +++ b/advisories/unreviewed/2023/06/GHSA-mjx2-7pc8-3775/GHSA-mjx2-7pc8-3775.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-mjx2-7pc8-3775", - "modified": "2023-06-28T21:30:30Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T21:30:30Z", "aliases": [ "CVE-2023-34650" ], "details": "PHPgurukl Small CRM v.1.0 is vulnerable to Cross Site Scripting (XSS).", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" + } ], "affected": [ @@ -29,7 +32,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-79" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-qhm9-gg74-g6m6/GHSA-qhm9-gg74-g6m6.json b/advisories/unreviewed/2023/06/GHSA-qhm9-gg74-g6m6/GHSA-qhm9-gg74-g6m6.json index 9e640eb3b5f..ca2f4b8a427 100644 --- a/advisories/unreviewed/2023/06/GHSA-qhm9-gg74-g6m6/GHSA-qhm9-gg74-g6m6.json +++ b/advisories/unreviewed/2023/06/GHSA-qhm9-gg74-g6m6/GHSA-qhm9-gg74-g6m6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qhm9-gg74-g6m6", - "modified": "2023-06-28T18:30:27Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:27Z", "aliases": [ "CVE-2023-21237" ], "details": "In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insufficient UI. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251586912", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ diff --git a/advisories/unreviewed/2023/06/GHSA-qq7q-j234-f3fw/GHSA-qq7q-j234-f3fw.json b/advisories/unreviewed/2023/06/GHSA-qq7q-j234-f3fw/GHSA-qq7q-j234-f3fw.json index 18492bc7dba..d6fb6fd8c2a 100644 --- a/advisories/unreviewed/2023/06/GHSA-qq7q-j234-f3fw/GHSA-qq7q-j234-f3fw.json +++ b/advisories/unreviewed/2023/06/GHSA-qq7q-j234-f3fw/GHSA-qq7q-j234-f3fw.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-qq7q-j234-f3fw", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21222" ], "details": "In load_dt_data of storage.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-266977723References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-787" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-r74r-xm66-v4j8/GHSA-r74r-xm66-v4j8.json b/advisories/unreviewed/2023/06/GHSA-r74r-xm66-v4j8/GHSA-r74r-xm66-v4j8.json index 13af01a651b..a13da987510 100644 --- a/advisories/unreviewed/2023/06/GHSA-r74r-xm66-v4j8/GHSA-r74r-xm66-v4j8.json +++ b/advisories/unreviewed/2023/06/GHSA-r74r-xm66-v4j8/GHSA-r74r-xm66-v4j8.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r74r-xm66-v4j8", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21212" ], "details": "In multiple files, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the wifi server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262236031", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-r92g-777m-vmf4/GHSA-r92g-777m-vmf4.json b/advisories/unreviewed/2023/06/GHSA-r92g-777m-vmf4/GHSA-r92g-777m-vmf4.json index 7cd1da3df66..a2f991ccd85 100644 --- a/advisories/unreviewed/2023/06/GHSA-r92g-777m-vmf4/GHSA-r92g-777m-vmf4.json +++ b/advisories/unreviewed/2023/06/GHSA-r92g-777m-vmf4/GHSA-r92g-777m-vmf4.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r92g-777m-vmf4", - "modified": "2023-06-28T18:30:27Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:27Z", "aliases": [ "CVE-2023-21226" ], "details": "In SAEMM_RetrieveTaiList of SAEMM_ContextManagement.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-240728187References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-r995-x46f-32pv/GHSA-r995-x46f-32pv.json b/advisories/unreviewed/2023/06/GHSA-r995-x46f-32pv/GHSA-r995-x46f-32pv.json index 9c8d8773d2e..b695702e4a8 100644 --- a/advisories/unreviewed/2023/06/GHSA-r995-x46f-32pv/GHSA-r995-x46f-32pv.json +++ b/advisories/unreviewed/2023/06/GHSA-r995-x46f-32pv/GHSA-r995-x46f-32pv.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-r995-x46f-32pv", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21214" ], "details": "In addGroupWithConfigInternal of p2p_iface.cpp, there is a possible out of bounds read due to unsafe deserialization. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262235736", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-x6wp-c294-gjx5/GHSA-x6wp-c294-gjx5.json b/advisories/unreviewed/2023/06/GHSA-x6wp-c294-gjx5/GHSA-x6wp-c294-gjx5.json index b53cdb2f807..de2fc0fb594 100644 --- a/advisories/unreviewed/2023/06/GHSA-x6wp-c294-gjx5/GHSA-x6wp-c294-gjx5.json +++ b/advisories/unreviewed/2023/06/GHSA-x6wp-c294-gjx5/GHSA-x6wp-c294-gjx5.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-x6wp-c294-gjx5", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21223" ], "details": "In LPP_ConvertGNSS_DataBitAssistance of LPP_CommonUtil.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-256047000References: N/A", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/06/GHSA-xx4p-cqfx-r6v6/GHSA-xx4p-cqfx-r6v6.json b/advisories/unreviewed/2023/06/GHSA-xx4p-cqfx-r6v6/GHSA-xx4p-cqfx-r6v6.json index 99d361eead2..d3b62104af9 100644 --- a/advisories/unreviewed/2023/06/GHSA-xx4p-cqfx-r6v6/GHSA-xx4p-cqfx-r6v6.json +++ b/advisories/unreviewed/2023/06/GHSA-xx4p-cqfx-r6v6/GHSA-xx4p-cqfx-r6v6.json @@ -1,14 +1,17 @@ { "schema_version": "1.4.0", "id": "GHSA-xx4p-cqfx-r6v6", - "modified": "2023-06-28T18:30:26Z", + "modified": "2023-07-06T15:30:32Z", "published": "2023-06-28T18:30:26Z", "aliases": [ "CVE-2023-21213" ], "details": "In initiateTdlsTeardownInternal of sta_iface.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the wifi server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-262235951", "severity": [ - + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" + } ], "affected": [ @@ -25,7 +28,7 @@ ], "database_specific": { "cwe_ids": [ - + "CWE-125" ], "severity": null, "github_reviewed": false, diff --git a/advisories/unreviewed/2023/07/GHSA-27mm-rpgf-cvhw/GHSA-27mm-rpgf-cvhw.json b/advisories/unreviewed/2023/07/GHSA-27mm-rpgf-cvhw/GHSA-27mm-rpgf-cvhw.json new file mode 100644 index 00000000000..eff748b640f --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-27mm-rpgf-cvhw/GHSA-27mm-rpgf-cvhw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-27mm-rpgf-cvhw", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22653" + ], + "details": "An OS command injection vulnerability exists in the vtysh_ubus tcpdump_start_cb functionality of Milesight UR32L v32.3.0.5. A specially crafted HTTP request can lead to command execution. An attacker can send an HTTP request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22653" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1714" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-2v2c-pqx4-qvqc/GHSA-2v2c-pqx4-qvqc.json b/advisories/unreviewed/2023/07/GHSA-2v2c-pqx4-qvqc/GHSA-2v2c-pqx4-qvqc.json new file mode 100644 index 00000000000..c6e54635596 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-2v2c-pqx4-qvqc/GHSA-2v2c-pqx4-qvqc.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2v2c-pqx4-qvqc", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-36995" + ], + "details": "TravianZ through 8.3.4 allows XSS via the Alliance tag/name, the statistics page, the link preferences, the Admin Logs, or the COOKUSR cookie.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36995" + }, + { + "type": "WEB", + "url": "https://bramdoessecurity.com/travianz-hacked/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-2x35-3575-64cp/GHSA-2x35-3575-64cp.json b/advisories/unreviewed/2023/07/GHSA-2x35-3575-64cp/GHSA-2x35-3575-64cp.json new file mode 100644 index 00000000000..8f3283e48f7 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-2x35-3575-64cp/GHSA-2x35-3575-64cp.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-2x35-3575-64cp", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2022-48518" + ], + "details": "Vulnerability of signature verification in the iaware system being initialized later than the time when the system broadcasts are sent. Successful exploitation of this vulnerability may cause malicious apps to start upon power-on by spoofing the package names of apps in the startup trustlist, which affects system performance.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48518" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-34rw-x2f7-cwp9/GHSA-34rw-x2f7-cwp9.json b/advisories/unreviewed/2023/07/GHSA-34rw-x2f7-cwp9/GHSA-34rw-x2f7-cwp9.json new file mode 100644 index 00000000000..3796ea22367 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-34rw-x2f7-cwp9/GHSA-34rw-x2f7-cwp9.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-34rw-x2f7-cwp9", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37136" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Basic Website Information module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37136" + }, + { + "type": "WEB", + "url": "https://github.com/weng-xianhu/eyoucms/issues/49" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-36hq-xx3q-26mm/GHSA-36hq-xx3q-26mm.json b/advisories/unreviewed/2023/07/GHSA-36hq-xx3q-26mm/GHSA-36hq-xx3q-26mm.json new file mode 100644 index 00000000000..60465801407 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-36hq-xx3q-26mm/GHSA-36hq-xx3q-26mm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-36hq-xx3q-26mm", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25103" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_dmvpn function with the gre_ip and the gre_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25103" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-3845-qw4h-6j57/GHSA-3845-qw4h-6j57.json b/advisories/unreviewed/2023/07/GHSA-3845-qw4h-6j57/GHSA-3845-qw4h-6j57.json new file mode 100644 index 00000000000..a4b426a5bf3 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-3845-qw4h-6j57/GHSA-3845-qw4h-6j57.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3845-qw4h-6j57", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25084" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the ip, mac and description variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25084" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-38hg-q2gf-cgvf/GHSA-38hg-q2gf-cgvf.json b/advisories/unreviewed/2023/07/GHSA-38hg-q2gf-cgvf/GHSA-38hg-q2gf-cgvf.json new file mode 100644 index 00000000000..d3324d4afea --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-38hg-q2gf-cgvf/GHSA-38hg-q2gf-cgvf.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-38hg-q2gf-cgvf", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-1695" + ], + "details": "Vulnerability of failures to capture exceptions in the communication framework. Successful exploitation of this vulnerability may cause features to perform abnormally.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-1695" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-755" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-38x6-g4vx-6g7w/GHSA-38x6-g4vx-6g7w.json b/advisories/unreviewed/2023/07/GHSA-38x6-g4vx-6g7w/GHSA-38x6-g4vx-6g7w.json new file mode 100644 index 00000000000..d1e50310995 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-38x6-g4vx-6g7w/GHSA-38x6-g4vx-6g7w.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-38x6-g4vx-6g7w", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48515" + ], + "details": "Vulnerability of inappropriate permission control in Nearby. Successful exploitation of this vulnerability may affect service confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48515" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-39cx-99pj-4mqg/GHSA-39cx-99pj-4mqg.json b/advisories/unreviewed/2023/07/GHSA-39cx-99pj-4mqg/GHSA-39cx-99pj-4mqg.json new file mode 100644 index 00000000000..98ce7fe9e62 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-39cx-99pj-4mqg/GHSA-39cx-99pj-4mqg.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-39cx-99pj-4mqg", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48509" + ], + "details": "Race condition vulnerability due to multi-thread access to mutually exclusive resources in Huawei Share. Successful exploitation of this vulnerability may cause the program to exit abnormally.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48509" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-476" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-3v63-8g3j-5m9m/GHSA-3v63-8g3j-5m9m.json b/advisories/unreviewed/2023/07/GHSA-3v63-8g3j-5m9m/GHSA-3v63-8g3j-5m9m.json new file mode 100644 index 00000000000..57eba0da253 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-3v63-8g3j-5m9m/GHSA-3v63-8g3j-5m9m.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-3v63-8g3j-5m9m", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25098" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the source variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25098" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-4vjc-x86x-w459/GHSA-4vjc-x86x-w459.json b/advisories/unreviewed/2023/07/GHSA-4vjc-x86x-w459/GHSA-4vjc-x86x-w459.json new file mode 100644 index 00000000000..29f8513879f --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-4vjc-x86x-w459/GHSA-4vjc-x86x-w459.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-4vjc-x86x-w459", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25096" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the rule_name variable with two possible format strings.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25096" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-524c-pf2g-5wfv/GHSA-524c-pf2g-5wfv.json b/advisories/unreviewed/2023/07/GHSA-524c-pf2g-5wfv/GHSA-524c-pf2g-5wfv.json new file mode 100644 index 00000000000..ae6e2d5fd96 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-524c-pf2g-5wfv/GHSA-524c-pf2g-5wfv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-524c-pf2g-5wfv", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25108" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_gre function with the remote_ip variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25108" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-5644-x8wc-2r86/GHSA-5644-x8wc-2r86.json b/advisories/unreviewed/2023/07/GHSA-5644-x8wc-2r86/GHSA-5644-x8wc-2r86.json new file mode 100644 index 00000000000..e59f2265471 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-5644-x8wc-2r86/GHSA-5644-x8wc-2r86.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5644-x8wc-2r86", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-23547" + ], + "details": "A directory traversal vulnerability exists in the luci2-io file-export mib functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to arbitrary file read. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23547" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1695" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-57fc-8q82-gfp3/GHSA-57fc-8q82-gfp3.json b/advisories/unreviewed/2023/07/GHSA-57fc-8q82-gfp3/GHSA-57fc-8q82-gfp3.json new file mode 100644 index 00000000000..cefe18f17de --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-57fc-8q82-gfp3/GHSA-57fc-8q82-gfp3.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-57fc-8q82-gfp3", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-36188" + ], + "details": "An issue in langchain v.0.0.64 allows a remote attacker to execute arbitrary code via the PALChain parameter in the Python exec method.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36188" + }, + { + "type": "WEB", + "url": "https://github.com/hwchase17/langchain/issues/5872" + }, + { + "type": "WEB", + "url": "https://github.com/hwchase17/langchain/pull/6003" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-5hwv-fvw4-ffpg/GHSA-5hwv-fvw4-ffpg.json b/advisories/unreviewed/2023/07/GHSA-5hwv-fvw4-ffpg/GHSA-5hwv-fvw4-ffpg.json new file mode 100644 index 00000000000..a4e22c0b80f --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-5hwv-fvw4-ffpg/GHSA-5hwv-fvw4-ffpg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-5hwv-fvw4-ffpg", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25110" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_gre function with the remote_virtual_ip variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25110" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-64f4-qr63-vg45/GHSA-64f4-qr63-vg45.json b/advisories/unreviewed/2023/07/GHSA-64f4-qr63-vg45/GHSA-64f4-qr63-vg45.json new file mode 100644 index 00000000000..31471093ffe --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-64f4-qr63-vg45/GHSA-64f4-qr63-vg45.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-64f4-qr63-vg45", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-1691" + ], + "details": "Vulnerability of failures to capture exceptions in the communication framework. Successful exploitation of this vulnerability may cause features to perform abnormally.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-1691" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-248" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-665x-m64w-7fjj/GHSA-665x-m64w-7fjj.json b/advisories/unreviewed/2023/07/GHSA-665x-m64w-7fjj/GHSA-665x-m64w-7fjj.json new file mode 100644 index 00000000000..9e13a05fa48 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-665x-m64w-7fjj/GHSA-665x-m64w-7fjj.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-665x-m64w-7fjj", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25083" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the ip and mac variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25083" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-689c-7h72-pfpf/GHSA-689c-7h72-pfpf.json b/advisories/unreviewed/2023/07/GHSA-689c-7h72-pfpf/GHSA-689c-7h72-pfpf.json new file mode 100644 index 00000000000..0f88fdad224 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-689c-7h72-pfpf/GHSA-689c-7h72-pfpf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-689c-7h72-pfpf", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25122" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the old_remote_subnet and the old_remote_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25122" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-6mpr-vvfh-r7h5/GHSA-6mpr-vvfh-r7h5.json b/advisories/unreviewed/2023/07/GHSA-6mpr-vvfh-r7h5/GHSA-6mpr-vvfh-r7h5.json new file mode 100644 index 00000000000..6a2734a6ce9 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-6mpr-vvfh-r7h5/GHSA-6mpr-vvfh-r7h5.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6mpr-vvfh-r7h5", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-3456" + ], + "details": "Vulnerability of kernel raw address leakage in the hang detector module. Successful exploitation of this vulnerability may affect service confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-3456" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-6mwj-4rvx-24xc/GHSA-6mwj-4rvx-24xc.json b/advisories/unreviewed/2023/07/GHSA-6mwj-4rvx-24xc/GHSA-6mwj-4rvx-24xc.json new file mode 100644 index 00000000000..3480680e74b --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-6mwj-4rvx-24xc/GHSA-6mwj-4rvx-24xc.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6mwj-4rvx-24xc", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37132" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the custom variables module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37132" + }, + { + "type": "WEB", + "url": "https://github.com/weng-xianhu/eyoucms/issues/45" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-6xrm-qmh2-p8gf/GHSA-6xrm-qmh2-p8gf.json b/advisories/unreviewed/2023/07/GHSA-6xrm-qmh2-p8gf/GHSA-6xrm-qmh2-p8gf.json new file mode 100644 index 00000000000..35e9ca26294 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-6xrm-qmh2-p8gf/GHSA-6xrm-qmh2-p8gf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-6xrm-qmh2-p8gf", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25124" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the remote_subnet and the remote_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25124" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-75cw-v3vj-qprp/GHSA-75cw-v3vj-qprp.json b/advisories/unreviewed/2023/07/GHSA-75cw-v3vj-qprp/GHSA-75cw-v3vj-qprp.json new file mode 100644 index 00000000000..be92bff24e4 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-75cw-v3vj-qprp/GHSA-75cw-v3vj-qprp.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-75cw-v3vj-qprp", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25107" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_gre function with the remote_subnet and the remote_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25107" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-769c-mxg2-6mp2/GHSA-769c-mxg2-6mp2.json b/advisories/unreviewed/2023/07/GHSA-769c-mxg2-6mp2/GHSA-769c-mxg2-6mp2.json new file mode 100644 index 00000000000..96850fc2f75 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-769c-mxg2-6mp2/GHSA-769c-mxg2-6mp2.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-769c-mxg2-6mp2", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48512" + ], + "details": "Use After Free (UAF) vulnerability in the Vdecoderservice service. Successful exploitation of this vulnerability may cause the image decoding feature to perform abnormally.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48512" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-122" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-76vc-44fw-qmpm/GHSA-76vc-44fw-qmpm.json b/advisories/unreviewed/2023/07/GHSA-76vc-44fw-qmpm/GHSA-76vc-44fw-qmpm.json new file mode 100644 index 00000000000..81565c45277 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-76vc-44fw-qmpm/GHSA-76vc-44fw-qmpm.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-76vc-44fw-qmpm", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48514" + ], + "details": "The Sepolicy module has inappropriate permission control on the use of Netlink.Successful exploitation of this vulnerability may affect confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48514" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-78gw-vjgg-gvx5/GHSA-78gw-vjgg-gvx5.json b/advisories/unreviewed/2023/07/GHSA-78gw-vjgg-gvx5/GHSA-78gw-vjgg-gvx5.json new file mode 100644 index 00000000000..1fa62a5ed52 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-78gw-vjgg-gvx5/GHSA-78gw-vjgg-gvx5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-78gw-vjgg-gvx5", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25123" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the remote_subnet and the remote_mask variables when action is 2.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25123" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-7c56-qmq7-fgrq/GHSA-7c56-qmq7-fgrq.json b/advisories/unreviewed/2023/07/GHSA-7c56-qmq7-fgrq/GHSA-7c56-qmq7-fgrq.json new file mode 100644 index 00000000000..c50091771dc --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-7c56-qmq7-fgrq/GHSA-7c56-qmq7-fgrq.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7c56-qmq7-fgrq", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25085" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the index and to_dst variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25085" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-7cxc-pg2f-mxgp/GHSA-7cxc-pg2f-mxgp.json b/advisories/unreviewed/2023/07/GHSA-7cxc-pg2f-mxgp/GHSA-7cxc-pg2f-mxgp.json new file mode 100644 index 00000000000..711439b69ee --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-7cxc-pg2f-mxgp/GHSA-7cxc-pg2f-mxgp.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7cxc-pg2f-mxgp", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37131" + ], + "details": "A Cross-Site Request Forgery (CSRF) in the component /public/admin/profile/update.html of YznCMS v1.1.0 allows attackers to arbitrarily change the Administrator password via a crafted POST request.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37131" + }, + { + "type": "WEB", + "url": "https://github.com/ken678/yzncms/issues/2" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-7f4j-hqcw-f2vm/GHSA-7f4j-hqcw-f2vm.json b/advisories/unreviewed/2023/07/GHSA-7f4j-hqcw-f2vm/GHSA-7f4j-hqcw-f2vm.json new file mode 100644 index 00000000000..afa478b92ca --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-7f4j-hqcw-f2vm/GHSA-7f4j-hqcw-f2vm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7f4j-hqcw-f2vm", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-24497" + ], + "details": "Cross-site scripting (xss) vulnerabilities exist in the requestHandlers.js detail_device functionality of Milesight VPN v2.0.2. A specially-crafted HTTP request can lead to arbitrary Javascript code injection. An attacker can send an HTTP request to trigger these vulnerabilities.This XSS is exploited through the remote_subnet field of the database", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24497" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1704" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-80" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-7q94-qpjr-xpgm/GHSA-7q94-qpjr-xpgm.json b/advisories/unreviewed/2023/07/GHSA-7q94-qpjr-xpgm/GHSA-7q94-qpjr-xpgm.json new file mode 100644 index 00000000000..4f73b974de3 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-7q94-qpjr-xpgm/GHSA-7q94-qpjr-xpgm.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-7q94-qpjr-xpgm", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-36189" + ], + "details": "SQL injection vulnerability in langchain v.0.0.64 allows a remote attacker to obtain sensitive information via the SQLDatabaseChain component.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36189" + }, + { + "type": "WEB", + "url": "https://github.com/hwchase17/langchain/issues/5923" + }, + { + "type": "WEB", + "url": "https://github.com/hwchase17/langchain/pull/6051" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-82h7-455m-f9mp/GHSA-82h7-455m-f9mp.json b/advisories/unreviewed/2023/07/GHSA-82h7-455m-f9mp/GHSA-82h7-455m-f9mp.json new file mode 100644 index 00000000000..1517743e975 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-82h7-455m-f9mp/GHSA-82h7-455m-f9mp.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-82h7-455m-f9mp", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2021-46896" + ], + "details": "Buffer Overflow vulnerability in PX4-Autopilot allows attackers to cause a denial of service via handler function handling msgid 332.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-46896" + }, + { + "type": "WEB", + "url": "https://github.com/PX4/PX4-Autopilot/issues/18369" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-84mg-w7r9-9c7x/GHSA-84mg-w7r9-9c7x.json b/advisories/unreviewed/2023/07/GHSA-84mg-w7r9-9c7x/GHSA-84mg-w7r9-9c7x.json new file mode 100644 index 00000000000..3d21a3a553b --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-84mg-w7r9-9c7x/GHSA-84mg-w7r9-9c7x.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-84mg-w7r9-9c7x", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25114" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the expert_options variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25114" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-87f3-8m29-xr36/GHSA-87f3-8m29-xr36.json b/advisories/unreviewed/2023/07/GHSA-87f3-8m29-xr36/GHSA-87f3-8m29-xr36.json new file mode 100644 index 00000000000..7b509f2be57 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-87f3-8m29-xr36/GHSA-87f3-8m29-xr36.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-87f3-8m29-xr36", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-37239" + ], + "details": "Format string vulnerability in the distributed file system. Attackers who bypass the selinux permission can exploit this vulnerability to crash the program.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37239" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-87r8-h45f-65q2/GHSA-87r8-h45f-65q2.json b/advisories/unreviewed/2023/07/GHSA-87r8-h45f-65q2/GHSA-87r8-h45f-65q2.json new file mode 100644 index 00000000000..5430d0d6250 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-87r8-h45f-65q2/GHSA-87r8-h45f-65q2.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-87r8-h45f-65q2", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-30322" + ], + "details": "Cross Site Scripting (XSS) vulnerability in username field in /src/chatbotapp/chatWindow.java in Payatu ChatEngine v.1.0, allows attackers to execute arbitrary code.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-30322" + }, + { + "type": "WEB", + "url": "https://github.com/wliang6/ChatEngine/blob/master/src/chatbotapp/chatWindow.java#L71:L81" + }, + { + "type": "WEB", + "url": "https://payatu.com/advisory/cross-site-scripting-xss-in-username-field-in-chatwindow-functionality-in-chatengine-1-0/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-8822-mhvg-p8mv/GHSA-8822-mhvg-p8mv.json b/advisories/unreviewed/2023/07/GHSA-8822-mhvg-p8mv/GHSA-8822-mhvg-p8mv.json new file mode 100644 index 00000000000..8e9a761a76c --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-8822-mhvg-p8mv/GHSA-8822-mhvg-p8mv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8822-mhvg-p8mv", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25118" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the username and the password variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25118" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-8f98-c4vq-hwx4/GHSA-8f98-c4vq-hwx4.json b/advisories/unreviewed/2023/07/GHSA-8f98-c4vq-hwx4/GHSA-8f98-c4vq-hwx4.json new file mode 100644 index 00000000000..6b059382790 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-8f98-c4vq-hwx4/GHSA-8f98-c4vq-hwx4.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8f98-c4vq-hwx4", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-24583" + ], + "details": "Two OS command injection vulnerabilities exist in the urvpn_client cmd_name_action functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This OS command injection is triggered through a UDP packet.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24583" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1710" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-8h2v-m9wg-645r/GHSA-8h2v-m9wg-645r.json b/advisories/unreviewed/2023/07/GHSA-8h2v-m9wg-645r/GHSA-8h2v-m9wg-645r.json new file mode 100644 index 00000000000..2bc2df01bd4 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-8h2v-m9wg-645r/GHSA-8h2v-m9wg-645r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-8h2v-m9wg-645r", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25582" + ], + "details": "Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the code branch that manages an already existing vlan configuration.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25582" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1723" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-93x3-v8x3-7g98/GHSA-93x3-v8x3-7g98.json b/advisories/unreviewed/2023/07/GHSA-93x3-v8x3-7g98/GHSA-93x3-v8x3-7g98.json new file mode 100644 index 00000000000..edc5eba7561 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-93x3-v8x3-7g98/GHSA-93x3-v8x3-7g98.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-93x3-v8x3-7g98", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37133" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Column management module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37133" + }, + { + "type": "WEB", + "url": "https://github.com/weng-xianhu/eyoucms/issues/46" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-94v2-xqrr-rhjc/GHSA-94v2-xqrr-rhjc.json b/advisories/unreviewed/2023/07/GHSA-94v2-xqrr-rhjc/GHSA-94v2-xqrr-rhjc.json new file mode 100644 index 00000000000..549b6db30fc --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-94v2-xqrr-rhjc/GHSA-94v2-xqrr-rhjc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-94v2-xqrr-rhjc", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25081" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the src and dmz variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25081" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-97fv-3j93-j8jm/GHSA-97fv-3j93-j8jm.json b/advisories/unreviewed/2023/07/GHSA-97fv-3j93-j8jm/GHSA-97fv-3j93-j8jm.json new file mode 100644 index 00000000000..a69fc345c47 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-97fv-3j93-j8jm/GHSA-97fv-3j93-j8jm.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-97fv-3j93-j8jm", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2020-22336" + ], + "details": "An issue was discovered in pdfcrack 0.17 thru 0.18, allows attackers to execute arbitrary code via a stack overflow in the MD5 function.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-22336" + }, + { + "type": "WEB", + "url": "https://sourceforge.net/p/pdfcrack/bugs/12/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-97hq-j574-6386/GHSA-97hq-j574-6386.json b/advisories/unreviewed/2023/07/GHSA-97hq-j574-6386/GHSA-97hq-j574-6386.json new file mode 100644 index 00000000000..59a0a5e8893 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-97hq-j574-6386/GHSA-97hq-j574-6386.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-97hq-j574-6386", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2022-48519" + ], + "details": "Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerability may affect confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48519" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-97wg-x9ff-p7gc/GHSA-97wg-x9ff-p7gc.json b/advisories/unreviewed/2023/07/GHSA-97wg-x9ff-p7gc/GHSA-97wg-x9ff-p7gc.json new file mode 100644 index 00000000000..e55ebb7bdd4 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-97wg-x9ff-p7gc/GHSA-97wg-x9ff-p7gc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-97wg-x9ff-p7gc", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25115" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the remote_ip and the port variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25115" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-9qmr-pjpg-2mrg/GHSA-9qmr-pjpg-2mrg.json b/advisories/unreviewed/2023/07/GHSA-9qmr-pjpg-2mrg/GHSA-9qmr-pjpg-2mrg.json new file mode 100644 index 00000000000..8840452931c --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-9qmr-pjpg-2mrg/GHSA-9qmr-pjpg-2mrg.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9qmr-pjpg-2mrg", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2022-48517" + ], + "details": "Unauthorized service access vulnerability in the DSoftBus module. Successful exploitation of this vulnerability will affect availability.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48517" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-9w7h-hrj6-7qc6/GHSA-9w7h-hrj6-7qc6.json b/advisories/unreviewed/2023/07/GHSA-9w7h-hrj6-7qc6/GHSA-9w7h-hrj6-7qc6.json new file mode 100644 index 00000000000..49e69098f05 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-9w7h-hrj6-7qc6/GHSA-9w7h-hrj6-7qc6.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9w7h-hrj6-7qc6", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25094" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the into_class_node function with either the class_name or old_class_name variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25094" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-9xj9-3gcj-4wjw/GHSA-9xj9-3gcj-4wjw.json b/advisories/unreviewed/2023/07/GHSA-9xj9-3gcj-4wjw/GHSA-9xj9-3gcj-4wjw.json new file mode 100644 index 00000000000..37bdb25616e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-9xj9-3gcj-4wjw/GHSA-9xj9-3gcj-4wjw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-9xj9-3gcj-4wjw", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22659" + ], + "details": "An os command injection vulnerability exists in the libzebra.so change_hostname functionality of Milesight UR32L v32.3.0.5. A specially-crafted network packets can lead to command execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22659" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1699" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-c2f3-qxr7-gj6h/GHSA-c2f3-qxr7-gj6h.json b/advisories/unreviewed/2023/07/GHSA-c2f3-qxr7-gj6h/GHSA-c2f3-qxr7-gj6h.json new file mode 100644 index 00000000000..3ba1e62770d --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-c2f3-qxr7-gj6h/GHSA-c2f3-qxr7-gj6h.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c2f3-qxr7-gj6h", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2022-48516" + ], + "details": "Vulnerability that a unique value can be obtained by a third-party app in the DSoftBus module. Successful exploitation of this vulnerability will affect confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48516" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-c4ww-v9wx-jcm4/GHSA-c4ww-v9wx-jcm4.json b/advisories/unreviewed/2023/07/GHSA-c4ww-v9wx-jcm4/GHSA-c4ww-v9wx-jcm4.json new file mode 100644 index 00000000000..0cbd56af6eb --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-c4ww-v9wx-jcm4/GHSA-c4ww-v9wx-jcm4.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c4ww-v9wx-jcm4", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25113" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_l2tp function with the key variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25113" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-c524-9cv5-wppq/GHSA-c524-9cv5-wppq.json b/advisories/unreviewed/2023/07/GHSA-c524-9cv5-wppq/GHSA-c524-9cv5-wppq.json new file mode 100644 index 00000000000..ae0a8a8d2f1 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-c524-9cv5-wppq/GHSA-c524-9cv5-wppq.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c524-9cv5-wppq", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22299" + ], + "details": "An OS command injection vulnerability exists in the vtysh_ubus _get_fw_logs functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to command execution. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22299" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1712" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-c7cf-6263-pxj2/GHSA-c7cf-6263-pxj2.json b/advisories/unreviewed/2023/07/GHSA-c7cf-6263-pxj2/GHSA-c7cf-6263-pxj2.json new file mode 100644 index 00000000000..04e9148ea4e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-c7cf-6263-pxj2/GHSA-c7cf-6263-pxj2.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c7cf-6263-pxj2", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37134" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Basic Information module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37134" + }, + { + "type": "WEB", + "url": "https://github.com/weng-xianhu/eyoucms/issues/47" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-c7qp-jwvg-73vr/GHSA-c7qp-jwvg-73vr.json b/advisories/unreviewed/2023/07/GHSA-c7qp-jwvg-73vr/GHSA-c7qp-jwvg-73vr.json new file mode 100644 index 00000000000..43fae37b3d0 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-c7qp-jwvg-73vr/GHSA-c7qp-jwvg-73vr.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-c7qp-jwvg-73vr", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25105" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_ike_profile function with the secrets_remote variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25105" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-ch64-w8w8-w7mw/GHSA-ch64-w8w8-w7mw.json b/advisories/unreviewed/2023/07/GHSA-ch64-w8w8-w7mw/GHSA-ch64-w8w8-w7mw.json new file mode 100644 index 00000000000..e649b04cdda --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-ch64-w8w8-w7mw/GHSA-ch64-w8w8-w7mw.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ch64-w8w8-w7mw", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25106" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_gre function with the local_virtual_ip and the local_virtual_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25106" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-chr8-p255-82q5/GHSA-chr8-p255-82q5.json b/advisories/unreviewed/2023/07/GHSA-chr8-p255-82q5/GHSA-chr8-p255-82q5.json new file mode 100644 index 00000000000..a1cc21b4f5c --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-chr8-p255-82q5/GHSA-chr8-p255-82q5.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-chr8-p255-82q5", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25092" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the handle_interface_acl function with the interface and out_acl variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25092" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-cpfr-66jx-f9fm/GHSA-cpfr-66jx-f9fm.json b/advisories/unreviewed/2023/07/GHSA-cpfr-66jx-f9fm/GHSA-cpfr-66jx-f9fm.json new file mode 100644 index 00000000000..dac6147ddf7 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-cpfr-66jx-f9fm/GHSA-cpfr-66jx-f9fm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cpfr-66jx-f9fm", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25097" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the attach_class variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25097" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-cq3m-35vg-m37m/GHSA-cq3m-35vg-m37m.json b/advisories/unreviewed/2023/07/GHSA-cq3m-35vg-m37m/GHSA-cq3m-35vg-m37m.json new file mode 100644 index 00000000000..6a029cf5042 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-cq3m-35vg-m37m/GHSA-cq3m-35vg-m37m.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cq3m-35vg-m37m", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-37242" + ], + "details": "Vulnerability of commands from the modem being intercepted in the atcmdserver module. Attackers may exploit this vulnerability to rewrite the non-volatile random-access memory (NVRAM), or facilitate the exploitation of other vulnerabilities.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37242" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-639" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-cw67-28xm-vv9x/GHSA-cw67-28xm-vv9x.json b/advisories/unreviewed/2023/07/GHSA-cw67-28xm-vv9x/GHSA-cw67-28xm-vv9x.json new file mode 100644 index 00000000000..31422948cde --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-cw67-28xm-vv9x/GHSA-cw67-28xm-vv9x.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cw67-28xm-vv9x", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-24520" + ], + "details": "Two OS command injection vulnerability exist in the vtysh_ubus toolsh_excute.constprop.1 functionality of Milesight UR32L v32.3.0.5. A specially-crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the trace tool utility.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24520" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1706" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-cwqm-92xw-xfv7/GHSA-cwqm-92xw-xfv7.json b/advisories/unreviewed/2023/07/GHSA-cwqm-92xw-xfv7/GHSA-cwqm-92xw-xfv7.json new file mode 100644 index 00000000000..e0356f98cf7 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-cwqm-92xw-xfv7/GHSA-cwqm-92xw-xfv7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cwqm-92xw-xfv7", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25100" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the default_class variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25100" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-cxvj-gmrx-gjv8/GHSA-cxvj-gmrx-gjv8.json b/advisories/unreviewed/2023/07/GHSA-cxvj-gmrx-gjv8/GHSA-cxvj-gmrx-gjv8.json new file mode 100644 index 00000000000..1f21ecdbf9d --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-cxvj-gmrx-gjv8/GHSA-cxvj-gmrx-gjv8.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-cxvj-gmrx-gjv8", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2020-21861" + ], + "details": "File upload vulnerability in DuxCMS 2.1 allows attackers to execute arbitrary php code via duxcms/AdminUpload/upload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-21861" + }, + { + "type": "WEB", + "url": "https://gitee.com/annyshow/DuxCMS2.1/issues/I182Y4" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-f274-chr9-w5r3/GHSA-f274-chr9-w5r3.json b/advisories/unreviewed/2023/07/GHSA-f274-chr9-w5r3/GHSA-f274-chr9-w5r3.json new file mode 100644 index 00000000000..daca4fd6805 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-f274-chr9-w5r3/GHSA-f274-chr9-w5r3.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-f274-chr9-w5r3", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25116" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the local_virtual_ip and the remote_virtual_ip variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25116" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-fv35-87gx-hxfr/GHSA-fv35-87gx-hxfr.json b/advisories/unreviewed/2023/07/GHSA-fv35-87gx-hxfr/GHSA-fv35-87gx-hxfr.json new file mode 100644 index 00000000000..2a0c168f4a6 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-fv35-87gx-hxfr/GHSA-fv35-87gx-hxfr.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fv35-87gx-hxfr", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25102" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_dmvpn function with the hub_ip and the hub_gre_ip variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25102" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-fw79-qw39-66mh/GHSA-fw79-qw39-66mh.json b/advisories/unreviewed/2023/07/GHSA-fw79-qw39-66mh/GHSA-fw79-qw39-66mh.json new file mode 100644 index 00000000000..893b59cffff --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-fw79-qw39-66mh/GHSA-fw79-qw39-66mh.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fw79-qw39-66mh", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48513" + ], + "details": "Vulnerability of identity verification being bypassed in the Gallery module. Successful exploitation of this vulnerability may cause out-of-bounds access.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48513" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-290" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-fx83-22h6-wqxv/GHSA-fx83-22h6-wqxv.json b/advisories/unreviewed/2023/07/GHSA-fx83-22h6-wqxv/GHSA-fx83-22h6-wqxv.json new file mode 100644 index 00000000000..2bd99a2a2d1 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-fx83-22h6-wqxv/GHSA-fx83-22h6-wqxv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-fx83-22h6-wqxv", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25120" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_dmvpn function with the cisco_secret variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25120" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-g94p-2vw3-82r8/GHSA-g94p-2vw3-82r8.json b/advisories/unreviewed/2023/07/GHSA-g94p-2vw3-82r8/GHSA-g94p-2vw3-82r8.json new file mode 100644 index 00000000000..362390bbf01 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-g94p-2vw3-82r8/GHSA-g94p-2vw3-82r8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-g94p-2vw3-82r8", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25090" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the handle_interface_acl function with the interface and in_acl variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25090" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-gff2-f32j-9q8v/GHSA-gff2-f32j-9q8v.json b/advisories/unreviewed/2023/07/GHSA-gff2-f32j-9q8v/GHSA-gff2-f32j-9q8v.json new file mode 100644 index 00000000000..7d7d8222fc8 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-gff2-f32j-9q8v/GHSA-gff2-f32j-9q8v.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gff2-f32j-9q8v", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-25583" + ], + "details": "Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the code branch that manages a new vlan configuration.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25583" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1723" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-gpg4-v82h-v2c7/GHSA-gpg4-v82h-v2c7.json b/advisories/unreviewed/2023/07/GHSA-gpg4-v82h-v2c7/GHSA-gpg4-v82h-v2c7.json new file mode 100644 index 00000000000..768212d3abb --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-gpg4-v82h-v2c7/GHSA-gpg4-v82h-v2c7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gpg4-v82h-v2c7", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22365" + ], + "details": "An OS command injection vulnerability exists in the ys_thirdparty check_system_user functionality of Milesight UR32L v32.3.0.5. A specially crafted set of network packets can lead to command execution. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22365" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1711" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-gphx-5ffw-cxgw/GHSA-gphx-5ffw-cxgw.json b/advisories/unreviewed/2023/07/GHSA-gphx-5ffw-cxgw/GHSA-gphx-5ffw-cxgw.json new file mode 100644 index 00000000000..c38babd4353 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-gphx-5ffw-cxgw/GHSA-gphx-5ffw-cxgw.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gphx-5ffw-cxgw", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-30323" + ], + "details": "SQL Injection vulnerability in username field in /src/chatbotapp/chatWindow.java in Payatu ChatEngine v.1.0, allows attackers to gain sensitive information.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-30323" + }, + { + "type": "WEB", + "url": "https://github.com/wliang6/ChatEngine/blob/fded8e710ad59f816867ad47d7fc4862f6502f3e/src/chatbotapp/chatWindow.java#L34:L60" + }, + { + "type": "WEB", + "url": "https://payatu.com/advisory/sql-injection-in-chatwindow-functionality-in-chatengine-1-0/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-grc8-v8w8-2h25/GHSA-grc8-v8w8-2h25.json b/advisories/unreviewed/2023/07/GHSA-grc8-v8w8-2h25/GHSA-grc8-v8w8-2h25.json new file mode 100644 index 00000000000..5c674d22117 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-grc8-v8w8-2h25/GHSA-grc8-v8w8-2h25.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-grc8-v8w8-2h25", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25093" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the class_name variable..", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25093" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-gvrp-6wh5-2672/GHSA-gvrp-6wh5-2672.json b/advisories/unreviewed/2023/07/GHSA-gvrp-6wh5-2672/GHSA-gvrp-6wh5-2672.json new file mode 100644 index 00000000000..7eeb7cbbc85 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-gvrp-6wh5-2672/GHSA-gvrp-6wh5-2672.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-gvrp-6wh5-2672", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25111" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_gre function with the key variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25111" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-h56r-m96p-q46q/GHSA-h56r-m96p-q46q.json b/advisories/unreviewed/2023/07/GHSA-h56r-m96p-q46q/GHSA-h56r-m96p-q46q.json new file mode 100644 index 00000000000..b15c1a2077c --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-h56r-m96p-q46q/GHSA-h56r-m96p-q46q.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h56r-m96p-q46q", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25095" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the rule_name variable with two possible format strings that represent negated commands.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25095" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-h73j-p2wc-4gwg/GHSA-h73j-p2wc-4gwg.json b/advisories/unreviewed/2023/07/GHSA-h73j-p2wc-4gwg/GHSA-h73j-p2wc-4gwg.json new file mode 100644 index 00000000000..3b30e3f2d9e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-h73j-p2wc-4gwg/GHSA-h73j-p2wc-4gwg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h73j-p2wc-4gwg", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-23550" + ], + "details": "An OS command injection vulnerability exists in the ys_thirdparty user_delete functionality of Milesight UR32L v32.3.0.5. A specially crafted network packet can lead to command execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23550" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1694" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-h837-8qhq-4jpq/GHSA-h837-8qhq-4jpq.json b/advisories/unreviewed/2023/07/GHSA-h837-8qhq-4jpq/GHSA-h837-8qhq-4jpq.json new file mode 100644 index 00000000000..afe6aec476a --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-h837-8qhq-4jpq/GHSA-h837-8qhq-4jpq.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h837-8qhq-4jpq", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25104" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_ike_profile function with the username and the password variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25104" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-h9vq-h8rj-m9rp/GHSA-h9vq-h8rj-m9rp.json b/advisories/unreviewed/2023/07/GHSA-h9vq-h8rj-m9rp/GHSA-h9vq-h8rj-m9rp.json new file mode 100644 index 00000000000..dc7137f5890 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-h9vq-h8rj-m9rp/GHSA-h9vq-h8rj-m9rp.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-h9vq-h8rj-m9rp", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-36969" + ], + "details": "CMS Made Simple v2.2.17 is vulnerable to Remote Command Execution via the File Upload Function.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36969" + }, + { + "type": "WEB", + "url": "https://okankurtulus.com.tr/2023/06/26/cms-made-simple-v2-2-17-file-upload-remote-code-execution-rce-authenticated/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-hcp4-644r-q8xr/GHSA-hcp4-644r-q8xr.json b/advisories/unreviewed/2023/07/GHSA-hcp4-644r-q8xr/GHSA-hcp4-644r-q8xr.json new file mode 100644 index 00000000000..1622b6229b5 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-hcp4-644r-q8xr/GHSA-hcp4-644r-q8xr.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hcp4-644r-q8xr", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-23571" + ], + "details": "An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to denial of service. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23571" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1696" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-126" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-hmww-m5wm-539p/GHSA-hmww-m5wm-539p.json b/advisories/unreviewed/2023/07/GHSA-hmww-m5wm-539p/GHSA-hmww-m5wm-539p.json new file mode 100644 index 00000000000..db5e963970e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-hmww-m5wm-539p/GHSA-hmww-m5wm-539p.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hmww-m5wm-539p", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48508" + ], + "details": " Inappropriate authorization vulnerability in the system apps. Successful exploitation of this vulnerability may affect service integrity.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48508" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-hpg3-9c25-rpw7/GHSA-hpg3-9c25-rpw7.json b/advisories/unreviewed/2023/07/GHSA-hpg3-9c25-rpw7/GHSA-hpg3-9c25-rpw7.json new file mode 100644 index 00000000000..752b79d581a --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-hpg3-9c25-rpw7/GHSA-hpg3-9c25-rpw7.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hpg3-9c25-rpw7", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25088" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the index and description variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25088" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-hwxq-q96q-4j44/GHSA-hwxq-q96q-4j44.json b/advisories/unreviewed/2023/07/GHSA-hwxq-q96q-4j44/GHSA-hwxq-q96q-4j44.json new file mode 100644 index 00000000000..795abb5e330 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-hwxq-q96q-4j44/GHSA-hwxq-q96q-4j44.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-hwxq-q96q-4j44", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37124" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Site Setup module of SEACMS v12.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37124" + }, + { + "type": "WEB", + "url": "https://github.com/seacms-com/seacms/issues/24" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-j6rf-pfmw-h88q/GHSA-j6rf-pfmw-h88q.json b/advisories/unreviewed/2023/07/GHSA-j6rf-pfmw-h88q/GHSA-j6rf-pfmw-h88q.json new file mode 100644 index 00000000000..75276e7d17e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-j6rf-pfmw-h88q/GHSA-j6rf-pfmw-h88q.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j6rf-pfmw-h88q", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-36968" + ], + "details": "A SQL Injection vulnerability detected in Food Ordering System v1.0 allows attackers to run commands on the database by sending crafted SQL queries to the ID parameter.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36968" + }, + { + "type": "WEB", + "url": "https://github.com/haxxorsid/food-ordering-system" + }, + { + "type": "WEB", + "url": "https://okankurtulus.com.tr/2023/06/21/food-ordering-system-v1-0-authenticated-sql-injection/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-j839-j793-gh47/GHSA-j839-j793-gh47.json b/advisories/unreviewed/2023/07/GHSA-j839-j793-gh47/GHSA-j839-j793-gh47.json new file mode 100644 index 00000000000..33c6f1adc30 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-j839-j793-gh47/GHSA-j839-j793-gh47.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-j839-j793-gh47", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-34164" + ], + "details": "Vulnerability of incomplete input parameter verification in the communication framework module. Successful exploitation of this vulnerability may affect availability.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-34164" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-476" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-jx73-2w5p-hxfh/GHSA-jx73-2w5p-hxfh.json b/advisories/unreviewed/2023/07/GHSA-jx73-2w5p-hxfh/GHSA-jx73-2w5p-hxfh.json new file mode 100644 index 00000000000..78da7a5ffdd --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-jx73-2w5p-hxfh/GHSA-jx73-2w5p-hxfh.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jx73-2w5p-hxfh", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2022-48520" + ], + "details": "Unauthorized access vulnerability in the SystemUI module. Successful exploitation of this vulnerability may affect confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48520" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-jxf3-65pg-9w52/GHSA-jxf3-65pg-9w52.json b/advisories/unreviewed/2023/07/GHSA-jxf3-65pg-9w52/GHSA-jxf3-65pg-9w52.json new file mode 100644 index 00000000000..4dbbb8f4b59 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-jxf3-65pg-9w52/GHSA-jxf3-65pg-9w52.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-jxf3-65pg-9w52", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-24519" + ], + "details": "Two OS command injection vulnerability exist in the vtysh_ubus toolsh_excute.constprop.1 functionality of Milesight UR32L v32.3.0.5. A specially-crafted network request can lead to command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is in the ping tool utility.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24519" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1706" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-m5cf-882p-58vh/GHSA-m5cf-882p-58vh.json b/advisories/unreviewed/2023/07/GHSA-m5cf-882p-58vh/GHSA-m5cf-882p-58vh.json new file mode 100644 index 00000000000..7ff22af1dd6 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-m5cf-882p-58vh/GHSA-m5cf-882p-58vh.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m5cf-882p-58vh", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22319" + ], + "details": "A sql injection vulnerability exists in the requestHandlers.js LoginAuth functionality of Milesight VPN v2.0.2. A specially-crafted network request can lead to authentication bypass. An attacker can send a malicious packet to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22319" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1701" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-89" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-m995-m86g-r6r8/GHSA-m995-m86g-r6r8.json b/advisories/unreviewed/2023/07/GHSA-m995-m86g-r6r8/GHSA-m995-m86g-r6r8.json new file mode 100644 index 00000000000..7f08ee8d3cc --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-m995-m86g-r6r8/GHSA-m995-m86g-r6r8.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-m995-m86g-r6r8", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22306" + ], + "details": "An OS command injection vulnerability exists in the libzebra.so bridge_group functionality of Milesight UR32L v32.3.0.5. A specially crafted network packet can lead to command execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22306" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1698" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-mfv3-pwqp-278q/GHSA-mfv3-pwqp-278q.json b/advisories/unreviewed/2023/07/GHSA-mfv3-pwqp-278q/GHSA-mfv3-pwqp-278q.json new file mode 100644 index 00000000000..bf921a5bb47 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-mfv3-pwqp-278q/GHSA-mfv3-pwqp-278q.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mfv3-pwqp-278q", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25099" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_qos function with the dest variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25099" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-mqv5-59xx-542r/GHSA-mqv5-59xx-542r.json b/advisories/unreviewed/2023/07/GHSA-mqv5-59xx-542r/GHSA-mqv5-59xx-542r.json new file mode 100644 index 00000000000..adba5d81c1c --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-mqv5-59xx-542r/GHSA-mqv5-59xx-542r.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-mqv5-59xx-542r", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-23907" + ], + "details": "A directory traversal vulnerability exists in the server.js start functionality of Milesight VPN v2.0.2. A specially-crafted network request can lead to arbitrary file read. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23907" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1702" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-22" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-p3hg-mfg5-9mv5/GHSA-p3hg-mfg5-9mv5.json b/advisories/unreviewed/2023/07/GHSA-p3hg-mfg5-9mv5/GHSA-p3hg-mfg5-9mv5.json new file mode 100644 index 00000000000..8bad2f78c8e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-p3hg-mfg5-9mv5/GHSA-p3hg-mfg5-9mv5.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p3hg-mfg5-9mv5", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-30325" + ], + "details": "SQL Injection vulnerability in textMessage parameter in /src/chatbotapp/chatWindow.java in wliang6 ChatEngine v.1.0, allows attackers to gain sensitive information.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-30325" + }, + { + "type": "WEB", + "url": "https://github.com/wliang6/ChatEngine/blob/fded8e710ad59f816867ad47d7fc4862f6502f3e/src/chatbotapp/chatWindow.java#L33:L60" + }, + { + "type": "WEB", + "url": "https://payatu.com/advisory/sql-injection-vulnerability-in-textmessage-field-in-chatengine-1-0/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-p4wp-m87q-2hxm/GHSA-p4wp-m87q-2hxm.json b/advisories/unreviewed/2023/07/GHSA-p4wp-m87q-2hxm/GHSA-p4wp-m87q-2hxm.json new file mode 100644 index 00000000000..0428db2d160 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-p4wp-m87q-2hxm/GHSA-p4wp-m87q-2hxm.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p4wp-m87q-2hxm", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25121" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_ike_profile function with the secrets_local variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25121" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-p7q3-fgq4-3c74/GHSA-p7q3-fgq4-3c74.json b/advisories/unreviewed/2023/07/GHSA-p7q3-fgq4-3c74/GHSA-p7q3-fgq4-3c74.json new file mode 100644 index 00000000000..a0e7b57434f --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-p7q3-fgq4-3c74/GHSA-p7q3-fgq4-3c74.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p7q3-fgq4-3c74", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2021-46892" + ], + "details": "Encryption bypass vulnerability in Maintenance mode. Successful exploitation of this vulnerability may affect service confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-46892" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-p9fq-w6v9-38h2/GHSA-p9fq-w6v9-38h2.json b/advisories/unreviewed/2023/07/GHSA-p9fq-w6v9-38h2/GHSA-p9fq-w6v9-38h2.json new file mode 100644 index 00000000000..28ad2971291 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-p9fq-w6v9-38h2/GHSA-p9fq-w6v9-38h2.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p9fq-w6v9-38h2", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25091" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the handle_interface_acl function with the interface variable when out_acl is -1.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25091" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-p9qh-xq59-2j2c/GHSA-p9qh-xq59-2j2c.json b/advisories/unreviewed/2023/07/GHSA-p9qh-xq59-2j2c/GHSA-p9qh-xq59-2j2c.json new file mode 100644 index 00000000000..4c327ad6457 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-p9qh-xq59-2j2c/GHSA-p9qh-xq59-2j2c.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-p9qh-xq59-2j2c", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-37240" + ], + "details": "\nVulnerability of missing input length verification in the distributed file system. Successful exploitation of this vulnerability may cause out-of-bounds read.\n\n", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37240" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-125" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-ppgf-vwr5-33qr/GHSA-ppgf-vwr5-33qr.json b/advisories/unreviewed/2023/07/GHSA-ppgf-vwr5-33qr/GHSA-ppgf-vwr5-33qr.json new file mode 100644 index 00000000000..f84d79f9721 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-ppgf-vwr5-33qr/GHSA-ppgf-vwr5-33qr.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-ppgf-vwr5-33qr", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48510" + ], + "details": "Input verification vulnerability in the AMS module. Successful exploitation of this vulnerability will cause unauthorized operations.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48510" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-200" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-pvgq-x354-j99g/GHSA-pvgq-x354-j99g.json b/advisories/unreviewed/2023/07/GHSA-pvgq-x354-j99g/GHSA-pvgq-x354-j99g.json new file mode 100644 index 00000000000..989eb145310 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-pvgq-x354-j99g/GHSA-pvgq-x354-j99g.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pvgq-x354-j99g", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37125" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Management Custom label module of SEACMS v12.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37125" + }, + { + "type": "WEB", + "url": "https://github.com/seacms-com/seacms/issues/25" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-px22-jgfm-6wr7/GHSA-px22-jgfm-6wr7.json b/advisories/unreviewed/2023/07/GHSA-px22-jgfm-6wr7/GHSA-px22-jgfm-6wr7.json new file mode 100644 index 00000000000..99f4982e63a --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-px22-jgfm-6wr7/GHSA-px22-jgfm-6wr7.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-px22-jgfm-6wr7", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37122" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in Bagecms v3.1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Custom Settings module.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37122" + }, + { + "type": "WEB", + "url": "https://github.com/bagesoft/bagecms/issues/6" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-px2h-rwqr-r48v/GHSA-px2h-rwqr-r48v.json b/advisories/unreviewed/2023/07/GHSA-px2h-rwqr-r48v/GHSA-px2h-rwqr-r48v.json new file mode 100644 index 00000000000..a39a9fc7d2c --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-px2h-rwqr-r48v/GHSA-px2h-rwqr-r48v.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-px2h-rwqr-r48v", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25109" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_gre function with the local_ip variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25109" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-pxr7-xfv3-mwhv/GHSA-pxr7-xfv3-mwhv.json b/advisories/unreviewed/2023/07/GHSA-pxr7-xfv3-mwhv/GHSA-pxr7-xfv3-mwhv.json new file mode 100644 index 00000000000..db27de776a7 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-pxr7-xfv3-mwhv/GHSA-pxr7-xfv3-mwhv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-pxr7-xfv3-mwhv", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22844" + ], + "details": "An authentication bypass vulnerability exists in the requestHandlers.js verifyToken functionality of Milesight VPN v2.0.2. A specially-crafted network request can lead to authentication bypass. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22844" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1700" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-321" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-q32q-w2jx-627c/GHSA-q32q-w2jx-627c.json b/advisories/unreviewed/2023/07/GHSA-q32q-w2jx-627c/GHSA-q32q-w2jx-627c.json new file mode 100644 index 00000000000..d28fd9136c6 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-q32q-w2jx-627c/GHSA-q32q-w2jx-627c.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-q32q-w2jx-627c", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-37135" + ], + "details": "A stored cross-site scripting (XSS) vulnerability in the Image Upload module of eyoucms v1.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37135" + }, + { + "type": "WEB", + "url": "https://github.com/weng-xianhu/eyoucms/issues/48" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-qcx5-pqvq-wp38/GHSA-qcx5-pqvq-wp38.json b/advisories/unreviewed/2023/07/GHSA-qcx5-pqvq-wp38/GHSA-qcx5-pqvq-wp38.json new file mode 100644 index 00000000000..f35f64ce68e --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-qcx5-pqvq-wp38/GHSA-qcx5-pqvq-wp38.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qcx5-pqvq-wp38", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-37241" + ], + "details": "Input verification vulnerability in the WMS API. Successful exploitation of this vulnerability may cause the device to restart.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37241" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-20" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-qhvg-wg5w-g2c6/GHSA-qhvg-wg5w-g2c6.json b/advisories/unreviewed/2023/07/GHSA-qhvg-wg5w-g2c6/GHSA-qhvg-wg5w-g2c6.json new file mode 100644 index 00000000000..cee37703f46 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-qhvg-wg5w-g2c6/GHSA-qhvg-wg5w-g2c6.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qhvg-wg5w-g2c6", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-37245" + ], + "details": "Buffer overflow vulnerability in the modem pinctrl module. Successful exploitation of this vulnerability may affect the integrity and availability of the modem.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37245" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-qjw4-q3qv-cc24/GHSA-qjw4-q3qv-cc24.json b/advisories/unreviewed/2023/07/GHSA-qjw4-q3qv-cc24/GHSA-qjw4-q3qv-cc24.json new file mode 100644 index 00000000000..67b9a458825 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-qjw4-q3qv-cc24/GHSA-qjw4-q3qv-cc24.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qjw4-q3qv-cc24", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25082" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the old_ip and old_mac variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25082" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-qpc6-5f38-pmpq/GHSA-qpc6-5f38-pmpq.json b/advisories/unreviewed/2023/07/GHSA-qpc6-5f38-pmpq/GHSA-qpc6-5f38-pmpq.json new file mode 100644 index 00000000000..26b5ef9afda --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-qpc6-5f38-pmpq/GHSA-qpc6-5f38-pmpq.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qpc6-5f38-pmpq", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-23902" + ], + "details": "A buffer overflow vulnerability exists in the uhttpd login functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to remote code execution. An attacker can send a network request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23902" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1697" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-qr5q-3jp2-g99h/GHSA-qr5q-3jp2-g99h.json b/advisories/unreviewed/2023/07/GHSA-qr5q-3jp2-g99h/GHSA-qr5q-3jp2-g99h.json new file mode 100644 index 00000000000..8ee594e93c2 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-qr5q-3jp2-g99h/GHSA-qr5q-3jp2-g99h.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qr5q-3jp2-g99h", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-36970" + ], + "details": "A Cross-site scripting (XSS) vulnerability in CMS Made Simple v2.2.17 allows remote attackers to inject arbitrary web script or HTML via the File Upload function.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-36970" + }, + { + "type": "WEB", + "url": "https://okankurtulus.com.tr/2023/06/27/cms-made-simple-v2-2-17-stored-cross-site-scripting-xss-authenticated/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-qr6r-mxm9-5279/GHSA-qr6r-mxm9-5279.json b/advisories/unreviewed/2023/07/GHSA-qr6r-mxm9-5279/GHSA-qr6r-mxm9-5279.json new file mode 100644 index 00000000000..975105e735f --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-qr6r-mxm9-5279/GHSA-qr6r-mxm9-5279.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-qr6r-mxm9-5279", + "modified": "2023-07-06T15:30:35Z", + "published": "2023-07-06T15:30:35Z", + "aliases": [ + "CVE-2023-30326" + ], + "details": "Cross Site Scripting (XSS) vulnerability in username field in /WebContent/WEB-INF/lib/chatbox.jsp in wliang6 ChatEngine commit fded8e710ad59f816867ad47d7fc4862f6502f3e, allows attackers to execute arbitrary code.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-30326" + }, + { + "type": "WEB", + "url": "https://github.com/wliang6/ChatEngine/blob/master/WebContent/WEB-INF/lib/chatbox.jsp#L12" + }, + { + "type": "WEB", + "url": "https://payatu.com/advisory/cross-site-scripting-vulnerability-in-username-field-in-chatbox-functionality-in-chatengine-1-0/" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-rj65-9vh3-496v/GHSA-rj65-9vh3-496v.json b/advisories/unreviewed/2023/07/GHSA-rj65-9vh3-496v/GHSA-rj65-9vh3-496v.json new file mode 100644 index 00000000000..1818bf2ae71 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-rj65-9vh3-496v/GHSA-rj65-9vh3-496v.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-rj65-9vh3-496v", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25119" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_pptp function with the remote_subnet and the remote_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25119" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-vhjr-xhj8-wrqr/GHSA-vhjr-xhj8-wrqr.json b/advisories/unreviewed/2023/07/GHSA-vhjr-xhj8-wrqr/GHSA-vhjr-xhj8-wrqr.json new file mode 100644 index 00000000000..331fff21138 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-vhjr-xhj8-wrqr/GHSA-vhjr-xhj8-wrqr.json @@ -0,0 +1,35 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vhjr-xhj8-wrqr", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2020-21862" + ], + "details": "Directory traversal vulnerability in DuxCMS 2.1 allows attackers to delete arbitrary files via /admin/AdminBackup/del.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-21862" + }, + { + "type": "WEB", + "url": "https://gitee.com/annyshow/DuxCMS2.1/issues/I182Z5" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-vqjw-hph4-9r56/GHSA-vqjw-hph4-9r56.json b/advisories/unreviewed/2023/07/GHSA-vqjw-hph4-9r56/GHSA-vqjw-hph4-9r56.json new file mode 100644 index 00000000000..b860655c4f9 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-vqjw-hph4-9r56/GHSA-vqjw-hph4-9r56.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vqjw-hph4-9r56", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25112" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_l2tp function with the remote_subnet and the remote_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25112" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-vwx3-wp3j-h8gh/GHSA-vwx3-wp3j-h8gh.json b/advisories/unreviewed/2023/07/GHSA-vwx3-wp3j-h8gh/GHSA-vwx3-wp3j-h8gh.json new file mode 100644 index 00000000000..5239dfd10d7 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-vwx3-wp3j-h8gh/GHSA-vwx3-wp3j-h8gh.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-vwx3-wp3j-h8gh", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48511" + ], + "details": "Use After Free (UAF) vulnerability in the audio PCM driver module under special conditions. Successful exploitation of this vulnerability may cause audio features to perform abnormally.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48511" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-843" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-w232-x2q6-cvwm/GHSA-w232-x2q6-cvwm.json b/advisories/unreviewed/2023/07/GHSA-w232-x2q6-cvwm/GHSA-w232-x2q6-cvwm.json new file mode 100644 index 00000000000..baca1a2511b --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-w232-x2q6-cvwm/GHSA-w232-x2q6-cvwm.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w232-x2q6-cvwm", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2021-46894" + ], + "details": "Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel privilege escalation.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-46894" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-269" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-w3gc-whgg-2cmr/GHSA-w3gc-whgg-2cmr.json b/advisories/unreviewed/2023/07/GHSA-w3gc-whgg-2cmr/GHSA-w3gc-whgg-2cmr.json new file mode 100644 index 00000000000..7577a33555d --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-w3gc-whgg-2cmr/GHSA-w3gc-whgg-2cmr.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w3gc-whgg-2cmr", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-24018" + ], + "details": "A stack-based buffer overflow vulnerability exists in the libzebra.so.0.0.0 security_decrypt_password functionality of Milesight UR32L v32.3.0.5. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send an HTTP request to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24018" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1715" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-w7hv-vwx2-mqmg/GHSA-w7hv-vwx2-mqmg.json b/advisories/unreviewed/2023/07/GHSA-w7hv-vwx2-mqmg/GHSA-w7hv-vwx2-mqmg.json new file mode 100644 index 00000000000..bc74701c9b8 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-w7hv-vwx2-mqmg/GHSA-w7hv-vwx2-mqmg.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-w7hv-vwx2-mqmg", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-24019" + ], + "details": "A stack-based buffer overflow vulnerability exists in the urvpn_client http_connection_readcb functionality of Milesight UR32L v32.3.0.5. A specially crafted network packet can lead to a buffer overflow. An attacker can send a malicious packet to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24019" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1718" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-120" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-wgr2-97vr-j8x2/GHSA-wgr2-97vr-j8x2.json b/advisories/unreviewed/2023/07/GHSA-wgr2-97vr-j8x2/GHSA-wgr2-97vr-j8x2.json new file mode 100644 index 00000000000..35db21a7fea --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-wgr2-97vr-j8x2/GHSA-wgr2-97vr-j8x2.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wgr2-97vr-j8x2", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-23546" + ], + "details": "A misconfiguration vulnerability exists in the urvpn_client functionality of Milesight UR32L v32.3.0.5. A specially-crafted man-in-the-middle attack can lead to increased privileges. An attacker can perform a man-in-the-middle attack to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-23546" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1705" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-295" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-wwpp-g88x-4mq6/GHSA-wwpp-g88x-4mq6.json b/advisories/unreviewed/2023/07/GHSA-wwpp-g88x-4mq6/GHSA-wwpp-g88x-4mq6.json new file mode 100644 index 00000000000..483a39e000d --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-wwpp-g88x-4mq6/GHSA-wwpp-g88x-4mq6.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wwpp-g88x-4mq6", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25101" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_dmvpn function with the gre_key variable.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25101" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-wxhc-x55g-5fxf/GHSA-wxhc-x55g-5fxf.json b/advisories/unreviewed/2023/07/GHSA-wxhc-x55g-5fxf/GHSA-wxhc-x55g-5fxf.json new file mode 100644 index 00000000000..68c2de931f3 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-wxhc-x55g-5fxf/GHSA-wxhc-x55g-5fxf.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-wxhc-x55g-5fxf", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25117" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the set_openvpn_client function with the local_virtual_ip and the local_virtual_mask variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25117" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-x324-xw57-wj8x/GHSA-x324-xw57-wj8x.json b/advisories/unreviewed/2023/07/GHSA-x324-xw57-wj8x/GHSA-x324-xw57-wj8x.json new file mode 100644 index 00000000000..c278fad7a0b --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-x324-xw57-wj8x/GHSA-x324-xw57-wj8x.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x324-xw57-wj8x", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-37238" + ], + "details": "Vulnerability of apps' permission to access a certain API being incompletely verified in the wireless projection module. Successful exploitation of this vulnerability may affect some wireless projection features.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37238" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-x4wh-ccmq-r3hv/GHSA-x4wh-ccmq-r3hv.json b/advisories/unreviewed/2023/07/GHSA-x4wh-ccmq-r3hv/GHSA-x4wh-ccmq-r3hv.json new file mode 100644 index 00000000000..3c5a2380248 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-x4wh-ccmq-r3hv/GHSA-x4wh-ccmq-r3hv.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x4wh-ccmq-r3hv", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-22371" + ], + "details": "An os command injection vulnerability exists in the liburvpn.so create_private_key functionality of Milesight VPN v2.0.2. A specially-crafted network request can lead to command execution. An attacker can send a malicious packet to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-22371" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1703" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-x58f-rjp3-rh75/GHSA-x58f-rjp3-rh75.json b/advisories/unreviewed/2023/07/GHSA-x58f-rjp3-rh75/GHSA-x58f-rjp3-rh75.json new file mode 100644 index 00000000000..70a6a38f80b --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-x58f-rjp3-rh75/GHSA-x58f-rjp3-rh75.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x58f-rjp3-rh75", + "modified": "2023-07-06T15:30:33Z", + "published": "2023-07-06T15:30:33Z", + "aliases": [ + "CVE-2023-24496" + ], + "details": "Cross-site scripting (xss) vulnerabilities exist in the requestHandlers.js detail_device functionality of Milesight VPN v2.0.2. A specially-crafted HTTP request can lead to arbitrary Javascript code injection. An attacker can send an HTTP request to trigger these vulnerabilities.This XSS is exploited through the name field of the database.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24496" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1704" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-80" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-x792-97vq-2c7g/GHSA-x792-97vq-2c7g.json b/advisories/unreviewed/2023/07/GHSA-x792-97vq-2c7g/GHSA-x792-97vq-2c7g.json new file mode 100644 index 00000000000..ffd9ce841f6 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-x792-97vq-2c7g/GHSA-x792-97vq-2c7g.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x792-97vq-2c7g", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25087" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the index and to_dport variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25087" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-x7p7-m6xg-rh5f/GHSA-x7p7-m6xg-rh5f.json b/advisories/unreviewed/2023/07/GHSA-x7p7-m6xg-rh5f/GHSA-x7p7-m6xg-rh5f.json new file mode 100644 index 00000000000..cb43a97e059 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-x7p7-m6xg-rh5f/GHSA-x7p7-m6xg-rh5f.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x7p7-m6xg-rh5f", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25089" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the handle_interface_acl function with the interface variable when in_acl is -1.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25089" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-x8r2-vv6h-f3g5/GHSA-x8r2-vv6h-f3g5.json b/advisories/unreviewed/2023/07/GHSA-x8r2-vv6h-f3g5/GHSA-x8r2-vv6h-f3g5.json new file mode 100644 index 00000000000..a7df29d1355 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-x8r2-vv6h-f3g5/GHSA-x8r2-vv6h-f3g5.json @@ -0,0 +1,39 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-x8r2-vv6h-f3g5", + "modified": "2023-07-06T15:30:32Z", + "published": "2023-07-06T15:30:32Z", + "aliases": [ + "CVE-2022-48507" + ], + "details": "Vulnerability of identity verification being bypassed in the storage module. Successful exploitation of this vulnerability may affect service confidentiality.", + "severity": [ + + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-48507" + }, + { + "type": "WEB", + "url": "https://consumer.huawei.com/en/support/bulletin/2023/7/" + }, + { + "type": "WEB", + "url": "https://device.harmonyos.com/en/docs/security/update/security-bulletins-202307-0000001587168858" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-294" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-xjqr-wxf9-h6mr/GHSA-xjqr-wxf9-h6mr.json b/advisories/unreviewed/2023/07/GHSA-xjqr-wxf9-h6mr/GHSA-xjqr-wxf9-h6mr.json new file mode 100644 index 00000000000..2f3b9793bb3 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-xjqr-wxf9-h6mr/GHSA-xjqr-wxf9-h6mr.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xjqr-wxf9-h6mr", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-24595" + ], + "details": "An OS command injection vulnerability exists in the ys_thirdparty system_user_script functionality of Milesight UR32L v32.3.0.5. A specially crafted series of network requests can lead to command execution. An attacker can send a sequence of requests to trigger this vulnerability.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24595" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1713" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-78" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-xp49-3vmq-g28h/GHSA-xp49-3vmq-g28h.json b/advisories/unreviewed/2023/07/GHSA-xp49-3vmq-g28h/GHSA-xp49-3vmq-g28h.json new file mode 100644 index 00000000000..6f1909909c8 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-xp49-3vmq-g28h/GHSA-xp49-3vmq-g28h.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xp49-3vmq-g28h", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-25086" + ], + "details": "Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A specially crafted HTTP request can lead to a buffer overflow. An attacker can send HTTP requests to trigger these vulnerabilities.This buffer overflow occurs in the firewall_handler_set function with the index and dport variables.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-25086" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1716" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-121" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file diff --git a/advisories/unreviewed/2023/07/GHSA-xwcm-x564-9rvc/GHSA-xwcm-x564-9rvc.json b/advisories/unreviewed/2023/07/GHSA-xwcm-x564-9rvc/GHSA-xwcm-x564-9rvc.json new file mode 100644 index 00000000000..0b393cd5892 --- /dev/null +++ b/advisories/unreviewed/2023/07/GHSA-xwcm-x564-9rvc/GHSA-xwcm-x564-9rvc.json @@ -0,0 +1,38 @@ +{ + "schema_version": "1.4.0", + "id": "GHSA-xwcm-x564-9rvc", + "modified": "2023-07-06T15:30:34Z", + "published": "2023-07-06T15:30:34Z", + "aliases": [ + "CVE-2023-24582" + ], + "details": "Two OS command injection vulnerabilities exist in the urvpn_client cmd_name_action functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This OS command injection is triggered through a TCP packet.", + "severity": [ + { + "type": "CVSS_V3", + "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" + } + ], + "affected": [ + + ], + "references": [ + { + "type": "ADVISORY", + "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-24582" + }, + { + "type": "WEB", + "url": "https://talosintelligence.com/vulnerability_reports/TALOS-2023-1710" + } + ], + "database_specific": { + "cwe_ids": [ + "CWE-77" + ], + "severity": null, + "github_reviewed": false, + "github_reviewed_at": null, + "nvd_published_at": null + } +} \ No newline at end of file