mirror of
https://github.com/netbirdio/advisory-database.git
synced 2026-05-22 18:04:22 -07:00
Advisory Database Sync
This commit is contained in:
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2hwq-fmxr-9p5h",
|
||||
"modified": "2021-12-31T00:00:46Z",
|
||||
"modified": "2025-05-05T18:30:47Z",
|
||||
"published": "2021-12-22T00:00:38Z",
|
||||
"aliases": [
|
||||
"CVE-2020-19770"
|
||||
],
|
||||
"details": "A cross-site scripting (XSS) vulnerability in the system bulletin component of WUZHI CMS v4.1.0 allows attackers to steal the admin's cookie.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -25,7 +25,9 @@
|
||||
}
|
||||
],
|
||||
"database_specific": {
|
||||
"cwe_ids": [],
|
||||
"cwe_ids": [
|
||||
"CWE-787"
|
||||
],
|
||||
"severity": "HIGH",
|
||||
"github_reviewed": false,
|
||||
"github_reviewed_at": null,
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-22v8-m2j9-v5f6",
|
||||
"modified": "2022-02-16T00:02:20Z",
|
||||
"modified": "2025-05-05T18:31:33Z",
|
||||
"published": "2022-02-11T00:00:56Z",
|
||||
"aliases": [
|
||||
"CVE-2021-33115"
|
||||
],
|
||||
"details": "Improper input validation for some Intel(R) PROSet/Wireless WiFi in UEFI may allow an unauthenticated user to potentially enable escalation of privilege via adjacent access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-23wr-h929-wh3j",
|
||||
"modified": "2022-02-16T00:02:23Z",
|
||||
"modified": "2025-05-05T18:31:32Z",
|
||||
"published": "2022-02-11T00:00:57Z",
|
||||
"aliases": [
|
||||
"CVE-2021-33105"
|
||||
],
|
||||
"details": "Out-of-bounds read in some Intel(R) Core(TM) processors with Radeon(TM) RX Vega M GL integrated graphics before version 21.10 may allow an authenticated user to potentially enable information disclosure via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-27qg-f2r7-8953",
|
||||
"modified": "2022-02-16T00:02:22Z",
|
||||
"modified": "2025-05-05T18:31:33Z",
|
||||
"published": "2022-02-11T00:00:56Z",
|
||||
"aliases": [
|
||||
"CVE-2021-33114"
|
||||
],
|
||||
"details": "Improper input validation for some Intel(R) PROSet/Wireless WiFi in multiple operating systems and Killer(TM) WiFi in Windows 10 and 11 may allow an authenticated user to potentially enable denial of service via adjacent access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2g9r-9mj3-xx54",
|
||||
"modified": "2022-02-26T00:01:35Z",
|
||||
"modified": "2025-05-05T18:30:58Z",
|
||||
"published": "2022-02-11T00:01:01Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0093"
|
||||
],
|
||||
"details": "Incorrect default permissions in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable a denial of service via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2rq5-mvp2-q8g4",
|
||||
"modified": "2022-02-16T00:02:12Z",
|
||||
"modified": "2025-05-05T18:31:34Z",
|
||||
"published": "2022-02-11T00:00:51Z",
|
||||
"aliases": [
|
||||
"CVE-2022-21133"
|
||||
],
|
||||
"details": "Out-of-bounds read in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to potentially enable denial of service via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-2xj6-v24g-49p9",
|
||||
"modified": "2022-02-26T00:01:31Z",
|
||||
"modified": "2025-05-05T18:31:12Z",
|
||||
"published": "2022-02-11T00:01:01Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0118"
|
||||
],
|
||||
"details": "Out-of-bounds read in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable an escalation of privilege via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3c6c-gjpg-qq92",
|
||||
"modified": "2022-03-17T00:05:34Z",
|
||||
"modified": "2025-05-05T18:31:37Z",
|
||||
"published": "2022-02-17T00:00:35Z",
|
||||
"aliases": [
|
||||
"CVE-2022-25236"
|
||||
@@ -31,6 +31,14 @@
|
||||
"type": "WEB",
|
||||
"url": "https://lists.debian.org/debian-lts-announce/2022/03/msg00007.html"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU"
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3qc2-95g6-46cj",
|
||||
"modified": "2022-04-13T00:01:07Z",
|
||||
"modified": "2025-05-05T18:31:37Z",
|
||||
"published": "2022-02-19T00:01:38Z",
|
||||
"aliases": [
|
||||
"CVE-2022-25314"
|
||||
@@ -27,6 +27,14 @@
|
||||
"type": "WEB",
|
||||
"url": "https://cert-portal.siemens.com/productcert/pdf/ssa-484086.pdf"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y27XO3JMKAOMQZVPS3B4MJGEAHCZF5OM"
|
||||
},
|
||||
{
|
||||
"type": "WEB",
|
||||
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/3UFRBA3UQVIQKXTBUQXDWQOVWNBKLERU"
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-3wc2-cmwj-m278",
|
||||
"modified": "2022-02-16T00:02:09Z",
|
||||
"modified": "2025-05-05T18:31:36Z",
|
||||
"published": "2022-02-11T00:00:50Z",
|
||||
"aliases": [
|
||||
"CVE-2022-21218"
|
||||
],
|
||||
"details": "Uncaught exception in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to potentially enable information disclosure via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-43wc-84x4-9vfc",
|
||||
"modified": "2022-02-16T00:02:20Z",
|
||||
"modified": "2025-05-05T18:31:33Z",
|
||||
"published": "2022-02-11T00:00:56Z",
|
||||
"aliases": [
|
||||
"CVE-2021-33120"
|
||||
],
|
||||
"details": "Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4m2x-44w4-9qg9",
|
||||
"modified": "2022-02-16T00:02:36Z",
|
||||
"modified": "2025-05-05T18:31:29Z",
|
||||
"published": "2022-02-11T00:00:58Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0176"
|
||||
],
|
||||
"details": "Improper input validation in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow a privileged user to potentially enable denial of service via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4m4w-p55h-jwjh",
|
||||
"modified": "2022-02-17T00:01:14Z",
|
||||
"modified": "2025-05-05T18:31:20Z",
|
||||
"published": "2022-02-11T00:01:00Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0119"
|
||||
],
|
||||
"details": "Improper initialization in the firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via physical access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-4vqr-g4p9-8pvr",
|
||||
"modified": "2022-02-16T00:02:09Z",
|
||||
"modified": "2025-05-05T18:31:36Z",
|
||||
"published": "2022-02-11T00:00:51Z",
|
||||
"aliases": [
|
||||
"CVE-2022-21205"
|
||||
],
|
||||
"details": "Improper restriction of XML external entity reference in DSP Builder Pro for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an unauthenticated user to potentially enable information disclosure via network access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-54vj-27c5-jchw",
|
||||
"modified": "2022-02-16T00:02:36Z",
|
||||
"modified": "2025-05-05T18:31:28Z",
|
||||
"published": "2022-02-11T00:00:59Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0175"
|
||||
],
|
||||
"details": "Improper Validation of Specified Index, Position, or Offset in Input in firmware for some Intel(R) PROSet/Wireless Wi-Fi in multiple operating systems and some Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-58mg-4q88-9644",
|
||||
"modified": "2022-02-16T00:02:08Z",
|
||||
"modified": "2025-05-05T18:31:36Z",
|
||||
"published": "2022-02-11T00:00:50Z",
|
||||
"aliases": [
|
||||
"CVE-2022-21226"
|
||||
],
|
||||
"details": "Out-of-bounds read in the Intel(R) Trace Analyzer and Collector before version 2021.5 may allow an authenticated user to potentially enable information disclosure via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-5vrx-rpgj-wc4j",
|
||||
"modified": "2022-07-13T00:00:53Z",
|
||||
"modified": "2025-05-05T18:31:00Z",
|
||||
"published": "2022-02-11T00:01:01Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0099"
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-5xhx-vcx5-c6qf",
|
||||
"modified": "2022-02-16T00:02:34Z",
|
||||
"modified": "2025-05-05T18:31:29Z",
|
||||
"published": "2022-02-11T00:00:58Z",
|
||||
"aliases": [
|
||||
"CVE-2021-0177"
|
||||
],
|
||||
"details": "Improper Validation of Consistency within input in software for Intel(R) PROSet/Wireless Wi-Fi and Killer(TM) Wi-Fi in Windows 10 and 11 may allow an unauthenticated user to potentially enable denial of service via adjacent access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
@@ -1,13 +1,18 @@
|
||||
{
|
||||
"schema_version": "1.4.0",
|
||||
"id": "GHSA-6cwq-q3w8-w3rx",
|
||||
"modified": "2022-02-17T00:00:46Z",
|
||||
"modified": "2025-05-05T18:31:34Z",
|
||||
"published": "2022-02-11T00:00:54Z",
|
||||
"aliases": [
|
||||
"CVE-2021-44454"
|
||||
],
|
||||
"details": "Improper input validation in a third-party component for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to potentially enable escalation of privilege via local access.",
|
||||
"severity": [],
|
||||
"severity": [
|
||||
{
|
||||
"type": "CVSS_V3",
|
||||
"score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"
|
||||
}
|
||||
],
|
||||
"affected": [],
|
||||
"references": [
|
||||
{
|
||||
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user