diff --git a/advisories/github-reviewed/2023/03/GHSA-hm7p-r324-hhf3/GHSA-hm7p-r324-hhf3.json b/advisories/github-reviewed/2023/03/GHSA-hm7p-r324-hhf3/GHSA-hm7p-r324-hhf3.json index 5677fcc3e79..fb9db9748fb 100644 --- a/advisories/github-reviewed/2023/03/GHSA-hm7p-r324-hhf3/GHSA-hm7p-r324-hhf3.json +++ b/advisories/github-reviewed/2023/03/GHSA-hm7p-r324-hhf3/GHSA-hm7p-r324-hhf3.json @@ -8,9 +8,7 @@ ], "summary": "phpseclib Infinite Loop vulnerability", "details": "Math/PrimeField.php in phpseclib has an infinite loop with composite primefields. This vulnerability was introduced in version 3.0.0, and has been patched in 3.0.19. The CVE for this issue originally identified the the vulnerable version as 2.x, however, the vulnerable functionality was not introduced until version 3.", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { diff --git a/advisories/github-reviewed/2023/06/GHSA-cgmm-c2m9-ff7r/GHSA-cgmm-c2m9-ff7r.json b/advisories/github-reviewed/2023/06/GHSA-cgmm-c2m9-ff7r/GHSA-cgmm-c2m9-ff7r.json index c4440c84fd0..7c2f5e136f8 100644 --- a/advisories/github-reviewed/2023/06/GHSA-cgmm-c2m9-ff7r/GHSA-cgmm-c2m9-ff7r.json +++ b/advisories/github-reviewed/2023/06/GHSA-cgmm-c2m9-ff7r/GHSA-cgmm-c2m9-ff7r.json @@ -50,9 +50,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2023-06-29T15:02:49Z", diff --git a/advisories/github-reviewed/2023/09/GHSA-279f-qwgh-h5mp/GHSA-279f-qwgh-h5mp.json b/advisories/github-reviewed/2023/09/GHSA-279f-qwgh-h5mp/GHSA-279f-qwgh-h5mp.json index ca3fb7eee17..1dc33fdd917 100644 --- a/advisories/github-reviewed/2023/09/GHSA-279f-qwgh-h5mp/GHSA-279f-qwgh-h5mp.json +++ b/advisories/github-reviewed/2023/09/GHSA-279f-qwgh-h5mp/GHSA-279f-qwgh-h5mp.json @@ -77,9 +77,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": true, "github_reviewed_at": "2023-09-21T16:55:44Z", diff --git a/advisories/github-reviewed/2023/10/GHSA-4c29-gfrp-g6x9/GHSA-4c29-gfrp-g6x9.json b/advisories/github-reviewed/2023/10/GHSA-4c29-gfrp-g6x9/GHSA-4c29-gfrp-g6x9.json index 52b9523571b..6f5ec0e944e 100644 --- a/advisories/github-reviewed/2023/10/GHSA-4c29-gfrp-g6x9/GHSA-4c29-gfrp-g6x9.json +++ b/advisories/github-reviewed/2023/10/GHSA-4c29-gfrp-g6x9/GHSA-4c29-gfrp-g6x9.json @@ -3,14 +3,10 @@ "id": "GHSA-4c29-gfrp-g6x9", "modified": "2023-10-05T13:22:50Z", "published": "2023-10-05T13:22:50Z", - "aliases": [ - - ], + "aliases": [], "summary": "CefSharp affected by libvpx's heap buffer overflow in vp8 encoding", "details": "Google is aware that an exploit for CVE-2023-5217 exists in the wild.\n\nDescription\nHeap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)\n\nReferences\n- https://www.cve.org/CVERecord?id=CVE-2023-5217\n- https://nvd.nist.gov/vuln/detail/CVE-2023-5217\n", - "severity": [ - - ], + "severity": [], "affected": [ { "package": { @@ -66,9 +62,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-10-05T13:22:50Z", diff --git a/advisories/github-reviewed/2024/01/GHSA-23rx-79r7-6cpx/GHSA-23rx-79r7-6cpx.json b/advisories/github-reviewed/2024/01/GHSA-23rx-79r7-6cpx/GHSA-23rx-79r7-6cpx.json index 0f8be700b9a..23366830db9 100644 --- a/advisories/github-reviewed/2024/01/GHSA-23rx-79r7-6cpx/GHSA-23rx-79r7-6cpx.json +++ b/advisories/github-reviewed/2024/01/GHSA-23rx-79r7-6cpx/GHSA-23rx-79r7-6cpx.json @@ -70,9 +70,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2024-01-23T14:34:38Z", diff --git a/advisories/unreviewed/2022/02/GHSA-p6hc-w7h4-q55x/GHSA-p6hc-w7h4-q55x.json b/advisories/unreviewed/2022/02/GHSA-p6hc-w7h4-q55x/GHSA-p6hc-w7h4-q55x.json index ea5302027f5..6ece62a7bf9 100644 --- a/advisories/unreviewed/2022/02/GHSA-p6hc-w7h4-q55x/GHSA-p6hc-w7h4-q55x.json +++ b/advisories/unreviewed/2022/02/GHSA-p6hc-w7h4-q55x/GHSA-p6hc-w7h4-q55x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/03/GHSA-v37p-j5qh-w8c9/GHSA-v37p-j5qh-w8c9.json b/advisories/unreviewed/2022/03/GHSA-v37p-j5qh-w8c9/GHSA-v37p-j5qh-w8c9.json index a34e6f010a9..704fed4d634 100644 --- a/advisories/unreviewed/2022/03/GHSA-v37p-j5qh-w8c9/GHSA-v37p-j5qh-w8c9.json +++ b/advisories/unreviewed/2022/03/GHSA-v37p-j5qh-w8c9/GHSA-v37p-j5qh-w8c9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/04/GHSA-w69m-w3gr-72pp/GHSA-w69m-w3gr-72pp.json b/advisories/unreviewed/2022/04/GHSA-w69m-w3gr-72pp/GHSA-w69m-w3gr-72pp.json index 8ec4d82ca8c..07ef0219879 100644 --- a/advisories/unreviewed/2022/04/GHSA-w69m-w3gr-72pp/GHSA-w69m-w3gr-72pp.json +++ b/advisories/unreviewed/2022/04/GHSA-w69m-w3gr-72pp/GHSA-w69m-w3gr-72pp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-234q-pcfw-fgcp/GHSA-234q-pcfw-fgcp.json b/advisories/unreviewed/2022/05/GHSA-234q-pcfw-fgcp/GHSA-234q-pcfw-fgcp.json index da70077dcab..e52748262fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-234q-pcfw-fgcp/GHSA-234q-pcfw-fgcp.json +++ b/advisories/unreviewed/2022/05/GHSA-234q-pcfw-fgcp/GHSA-234q-pcfw-fgcp.json @@ -7,12 +7,8 @@ "CVE-2005-0295" ], "details": "npptnt2.sys in nProtect Gameguard provides unrestricted I/O to any process that calls it, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-23j5-p74r-rvqm/GHSA-23j5-p74r-rvqm.json b/advisories/unreviewed/2022/05/GHSA-23j5-p74r-rvqm/GHSA-23j5-p74r-rvqm.json index ae6c97442ea..dfe31aafe59 100644 --- a/advisories/unreviewed/2022/05/GHSA-23j5-p74r-rvqm/GHSA-23j5-p74r-rvqm.json +++ b/advisories/unreviewed/2022/05/GHSA-23j5-p74r-rvqm/GHSA-23j5-p74r-rvqm.json @@ -7,12 +7,8 @@ "CVE-2021-28692" ], "details": "inappropriate x86 IOMMU timeout detection / handling IOMMUs process commands issued to them in parallel with the operation of the CPU(s) issuing such commands. In the current implementation in Xen, asynchronous notification of the completion of such commands is not used. Instead, the issuing CPU spin-waits for the completion of the most recently issued command(s). Some of these waiting loops try to apply a timeout to fail overly-slow commands. The course of action upon a perceived timeout actually being detected is inappropriate: - on Intel hardware guests which did not originally cause the timeout may be marked as crashed, - on AMD hardware higher layer callers would not be notified of the issue, making them continue as if the IOMMU operation succeeded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-23p9-49c6-fm5w/GHSA-23p9-49c6-fm5w.json b/advisories/unreviewed/2022/05/GHSA-23p9-49c6-fm5w/GHSA-23p9-49c6-fm5w.json index 305bbc155c2..9833b10c66b 100644 --- a/advisories/unreviewed/2022/05/GHSA-23p9-49c6-fm5w/GHSA-23p9-49c6-fm5w.json +++ b/advisories/unreviewed/2022/05/GHSA-23p9-49c6-fm5w/GHSA-23p9-49c6-fm5w.json @@ -7,12 +7,8 @@ "CVE-2021-30648" ], "details": "The Symantec Advanced Secure Gateway (ASG) and ProxySG web management consoles are susceptible to an authentication bypass vulnerability. An unauthenticated attacker can execute arbitrary CLI commands, view/modify the appliance configuration and policy, and shutdown/restart the appliance.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2546-2pf8-h3fr/GHSA-2546-2pf8-h3fr.json b/advisories/unreviewed/2022/05/GHSA-2546-2pf8-h3fr/GHSA-2546-2pf8-h3fr.json index 4fbadf10414..7728a8b9536 100644 --- a/advisories/unreviewed/2022/05/GHSA-2546-2pf8-h3fr/GHSA-2546-2pf8-h3fr.json +++ b/advisories/unreviewed/2022/05/GHSA-2546-2pf8-h3fr/GHSA-2546-2pf8-h3fr.json @@ -7,12 +7,8 @@ "CVE-2020-24144" ], "details": "Directory traversal in the Media File Organizer (aka media-file-organizer) plugin 1.0.1 for WordPress lets an attacker get access to files that are stored outside the web root folder via the items[] parameter in a move operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-25pv-m7gv-3gwr/GHSA-25pv-m7gv-3gwr.json b/advisories/unreviewed/2022/05/GHSA-25pv-m7gv-3gwr/GHSA-25pv-m7gv-3gwr.json index 85be9ddbf1f..c232c052ac6 100644 --- a/advisories/unreviewed/2022/05/GHSA-25pv-m7gv-3gwr/GHSA-25pv-m7gv-3gwr.json +++ b/advisories/unreviewed/2022/05/GHSA-25pv-m7gv-3gwr/GHSA-25pv-m7gv-3gwr.json @@ -7,12 +7,8 @@ "CVE-2005-0434" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Php-Nuke 7.5 allow remote attackers to inject arbitrary HTML or web script via (1) the newdownloadshowdays parameter in a NewDownloads operation or (2) the newlinkshowdays parameter in a NewLinks operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-26cr-h49j-77ch/GHSA-26cr-h49j-77ch.json b/advisories/unreviewed/2022/05/GHSA-26cr-h49j-77ch/GHSA-26cr-h49j-77ch.json index 4ab3ffb6fe1..bb97258bac9 100644 --- a/advisories/unreviewed/2022/05/GHSA-26cr-h49j-77ch/GHSA-26cr-h49j-77ch.json +++ b/advisories/unreviewed/2022/05/GHSA-26cr-h49j-77ch/GHSA-26cr-h49j-77ch.json @@ -7,12 +7,8 @@ "CVE-2020-23192" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload in the \"admin\" parameter under the \"Manage administrators\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-26xh-wmc4-35qp/GHSA-26xh-wmc4-35qp.json b/advisories/unreviewed/2022/05/GHSA-26xh-wmc4-35qp/GHSA-26xh-wmc4-35qp.json index 2a3b48ed68e..aedfffe9557 100644 --- a/advisories/unreviewed/2022/05/GHSA-26xh-wmc4-35qp/GHSA-26xh-wmc4-35qp.json +++ b/advisories/unreviewed/2022/05/GHSA-26xh-wmc4-35qp/GHSA-26xh-wmc4-35qp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-273j-j8fx-2wqf/GHSA-273j-j8fx-2wqf.json b/advisories/unreviewed/2022/05/GHSA-273j-j8fx-2wqf/GHSA-273j-j8fx-2wqf.json index 0ed6eb95a92..f716f97d2d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-273j-j8fx-2wqf/GHSA-273j-j8fx-2wqf.json +++ b/advisories/unreviewed/2022/05/GHSA-273j-j8fx-2wqf/GHSA-273j-j8fx-2wqf.json @@ -7,12 +7,8 @@ "CVE-2021-36145" ], "details": "The Device Model in ACRN through 2.5 has a devicemodel/core/mem.c use-after-free for a freed rb_entry.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2762-7h78-r5qq/GHSA-2762-7h78-r5qq.json b/advisories/unreviewed/2022/05/GHSA-2762-7h78-r5qq/GHSA-2762-7h78-r5qq.json index df46cefa941..895d0e75ab8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2762-7h78-r5qq/GHSA-2762-7h78-r5qq.json +++ b/advisories/unreviewed/2022/05/GHSA-2762-7h78-r5qq/GHSA-2762-7h78-r5qq.json @@ -7,12 +7,8 @@ "CVE-2021-0536" ], "details": "In dropFile of WiFiInstaller, there is a way to delete files accessible to CertInstaller due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-176756691", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27r4-rp49-685c/GHSA-27r4-rp49-685c.json b/advisories/unreviewed/2022/05/GHSA-27r4-rp49-685c/GHSA-27r4-rp49-685c.json index 76057a9a527..ed34ed5ca92 100644 --- a/advisories/unreviewed/2022/05/GHSA-27r4-rp49-685c/GHSA-27r4-rp49-685c.json +++ b/advisories/unreviewed/2022/05/GHSA-27r4-rp49-685c/GHSA-27r4-rp49-685c.json @@ -7,12 +7,8 @@ "CVE-2021-24378" ], "details": "The Autoptimize WordPress plugin before 2.7.8 does not check for malicious files such as .html in the archive uploaded via the 'Import Settings' feature. As a result, it is possible for a high privilege user to upload a malicious file containing JavaScript code inside an archive which will execute when a victim visits index.html inside the plugin directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-27xw-w55h-qcr4/GHSA-27xw-w55h-qcr4.json b/advisories/unreviewed/2022/05/GHSA-27xw-w55h-qcr4/GHSA-27xw-w55h-qcr4.json index 98ee93bb792..ba85082a0d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-27xw-w55h-qcr4/GHSA-27xw-w55h-qcr4.json +++ b/advisories/unreviewed/2022/05/GHSA-27xw-w55h-qcr4/GHSA-27xw-w55h-qcr4.json @@ -7,12 +7,8 @@ "CVE-2021-0563" ], "details": "In ih264e_fmt_conv_422i_to_420sp of ih264e_fmt_conv.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-172908358", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2894-2ggj-v24h/GHSA-2894-2ggj-v24h.json b/advisories/unreviewed/2022/05/GHSA-2894-2ggj-v24h/GHSA-2894-2ggj-v24h.json index 1df54e7779e..7a150c08699 100644 --- a/advisories/unreviewed/2022/05/GHSA-2894-2ggj-v24h/GHSA-2894-2ggj-v24h.json +++ b/advisories/unreviewed/2022/05/GHSA-2894-2ggj-v24h/GHSA-2894-2ggj-v24h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-289w-ff4x-wjx9/GHSA-289w-ff4x-wjx9.json b/advisories/unreviewed/2022/05/GHSA-289w-ff4x-wjx9/GHSA-289w-ff4x-wjx9.json index ade49fcac35..8fb33d961f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-289w-ff4x-wjx9/GHSA-289w-ff4x-wjx9.json +++ b/advisories/unreviewed/2022/05/GHSA-289w-ff4x-wjx9/GHSA-289w-ff4x-wjx9.json @@ -7,12 +7,8 @@ "CVE-2005-0304" ], "details": "Directory traversal vulnerability in DivX Player 2.6 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a filename in a ZIP file for a skin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-28mm-f6x9-rjqf/GHSA-28mm-f6x9-rjqf.json b/advisories/unreviewed/2022/05/GHSA-28mm-f6x9-rjqf/GHSA-28mm-f6x9-rjqf.json index 3a91e39c6c3..6f2720d89a2 100644 --- a/advisories/unreviewed/2022/05/GHSA-28mm-f6x9-rjqf/GHSA-28mm-f6x9-rjqf.json +++ b/advisories/unreviewed/2022/05/GHSA-28mm-f6x9-rjqf/GHSA-28mm-f6x9-rjqf.json @@ -7,12 +7,8 @@ "CVE-2005-0616" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in the Download module for PostNuke 0.750 and 0.760-RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) Program name, (2) File link, (3) Author name (4) Author e-mail address, (5) File size, (6) Version, or (7) Home page variables.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-28mq-w7hj-99g5/GHSA-28mq-w7hj-99g5.json b/advisories/unreviewed/2022/05/GHSA-28mq-w7hj-99g5/GHSA-28mq-w7hj-99g5.json index 2750393d4c7..505e72f9703 100644 --- a/advisories/unreviewed/2022/05/GHSA-28mq-w7hj-99g5/GHSA-28mq-w7hj-99g5.json +++ b/advisories/unreviewed/2022/05/GHSA-28mq-w7hj-99g5/GHSA-28mq-w7hj-99g5.json @@ -7,12 +7,8 @@ "CVE-2021-34550" ], "details": "An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-006. The v3 onion service descriptor parsing allows out-of-bounds memory access, and a client crash, via a crafted onion service descriptor", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2c4q-25x9-p644/GHSA-2c4q-25x9-p644.json b/advisories/unreviewed/2022/05/GHSA-2c4q-25x9-p644/GHSA-2c4q-25x9-p644.json index 2feb763352a..627003be8b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c4q-25x9-p644/GHSA-2c4q-25x9-p644.json +++ b/advisories/unreviewed/2022/05/GHSA-2c4q-25x9-p644/GHSA-2c4q-25x9-p644.json @@ -7,12 +7,8 @@ "CVE-2021-31160" ], "details": "Zoho ManageEngine ServiceDesk Plus MSP before 10521 allows an attacker to access internal data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2c67-m4vp-q6p7/GHSA-2c67-m4vp-q6p7.json b/advisories/unreviewed/2022/05/GHSA-2c67-m4vp-q6p7/GHSA-2c67-m4vp-q6p7.json index 12afed0f490..e1951309ad8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2c67-m4vp-q6p7/GHSA-2c67-m4vp-q6p7.json +++ b/advisories/unreviewed/2022/05/GHSA-2c67-m4vp-q6p7/GHSA-2c67-m4vp-q6p7.json @@ -7,12 +7,8 @@ "CVE-2005-0422" ], "details": "DelphiTurk CodeBank (aka KodBank) 3.1 and earlier stores usernames and passwords in the Codebank registry key, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2cfq-h45g-8h84/GHSA-2cfq-h45g-8h84.json b/advisories/unreviewed/2022/05/GHSA-2cfq-h45g-8h84/GHSA-2cfq-h45g-8h84.json index 7cee93c4e78..4e66c4e540f 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cfq-h45g-8h84/GHSA-2cfq-h45g-8h84.json +++ b/advisories/unreviewed/2022/05/GHSA-2cfq-h45g-8h84/GHSA-2cfq-h45g-8h84.json @@ -7,12 +7,8 @@ "CVE-2021-27660" ], "details": "An insecure client auto update feature in C-CURE 9000 can allow remote execution of lower privileged Windows programs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2cgp-5g8f-36f9/GHSA-2cgp-5g8f-36f9.json b/advisories/unreviewed/2022/05/GHSA-2cgp-5g8f-36f9/GHSA-2cgp-5g8f-36f9.json index 6ddf86f4c4f..21bfedfa902 100644 --- a/advisories/unreviewed/2022/05/GHSA-2cgp-5g8f-36f9/GHSA-2cgp-5g8f-36f9.json +++ b/advisories/unreviewed/2022/05/GHSA-2cgp-5g8f-36f9/GHSA-2cgp-5g8f-36f9.json @@ -7,12 +7,8 @@ "CVE-2005-0598" ], "details": "The RealServer RealSubscriber on Cisco devices running Application and Content Networking System (ACNS) 5.1 allow remote attackers to cause a denial of service (CPU consumption) via malformed packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2f3h-8w98-3h3c/GHSA-2f3h-8w98-3h3c.json b/advisories/unreviewed/2022/05/GHSA-2f3h-8w98-3h3c/GHSA-2f3h-8w98-3h3c.json index 6a39f9b768c..cfd4f466b15 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f3h-8w98-3h3c/GHSA-2f3h-8w98-3h3c.json +++ b/advisories/unreviewed/2022/05/GHSA-2f3h-8w98-3h3c/GHSA-2f3h-8w98-3h3c.json @@ -7,12 +7,8 @@ "CVE-2005-0461" ], "details": "Unknown vulnerability in NewsBruiser 2.x before 2.6.1 allows remote attackers to \"take actions on comments.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2f87-jcwj-5f4g/GHSA-2f87-jcwj-5f4g.json b/advisories/unreviewed/2022/05/GHSA-2f87-jcwj-5f4g/GHSA-2f87-jcwj-5f4g.json index f7a18e062b6..49f5d939ef9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f87-jcwj-5f4g/GHSA-2f87-jcwj-5f4g.json +++ b/advisories/unreviewed/2022/05/GHSA-2f87-jcwj-5f4g/GHSA-2f87-jcwj-5f4g.json @@ -7,12 +7,8 @@ "CVE-2005-0446" ], "details": "Squid 2.5.STABLE8 and earlier allows remote attackers to cause a denial of service (crash) via certain DNS responses regarding (1) Fully Qualified Domain Names (FQDN) in fqdncache.c or (2) IP addresses in ipcache.c, which trigger an assertion failure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2f8j-q25r-f5qx/GHSA-2f8j-q25r-f5qx.json b/advisories/unreviewed/2022/05/GHSA-2f8j-q25r-f5qx/GHSA-2f8j-q25r-f5qx.json index 191a85463d5..4516bfbbec8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2f8j-q25r-f5qx/GHSA-2f8j-q25r-f5qx.json +++ b/advisories/unreviewed/2022/05/GHSA-2f8j-q25r-f5qx/GHSA-2f8j-q25r-f5qx.json @@ -7,12 +7,8 @@ "CVE-2021-24494" ], "details": "The WP Offload SES Lite WordPress plugin before 1.4.5 did not escape some of the fields in the Activity page of the admin dashboard, such as the email's id, subject and recipient, which could lead to Stored Cross-Site Scripting issues when an attacker can control any of these fields, like the subject when filling a contact form for example. The XSS will be executed in the context of a logged in admin viewing the Activity tab of the plugin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2g98-3278-2w66/GHSA-2g98-3278-2w66.json b/advisories/unreviewed/2022/05/GHSA-2g98-3278-2w66/GHSA-2g98-3278-2w66.json index 3cdda416ade..48cecdcc9a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2g98-3278-2w66/GHSA-2g98-3278-2w66.json +++ b/advisories/unreviewed/2022/05/GHSA-2g98-3278-2w66/GHSA-2g98-3278-2w66.json @@ -7,12 +7,8 @@ "CVE-2005-0440" ], "details": "ELOG before 2.5.7 allows remote attackers to bypass authentication and download a configuration file that contains a sensitive write password via a modified URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2gq4-6723-j8cq/GHSA-2gq4-6723-j8cq.json b/advisories/unreviewed/2022/05/GHSA-2gq4-6723-j8cq/GHSA-2gq4-6723-j8cq.json index 3e6f3bcc22d..ea886503349 100644 --- a/advisories/unreviewed/2022/05/GHSA-2gq4-6723-j8cq/GHSA-2gq4-6723-j8cq.json +++ b/advisories/unreviewed/2022/05/GHSA-2gq4-6723-j8cq/GHSA-2gq4-6723-j8cq.json @@ -7,12 +7,8 @@ "CVE-2021-20104" ], "details": "Machform prior to version 16 is vulnerable to unauthenticated remote code execution due to insufficient sanitization of file attachments uploaded with forms through upload.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2h44-x2fr-537p/GHSA-2h44-x2fr-537p.json b/advisories/unreviewed/2022/05/GHSA-2h44-x2fr-537p/GHSA-2h44-x2fr-537p.json index c5430600937..899e57752ff 100644 --- a/advisories/unreviewed/2022/05/GHSA-2h44-x2fr-537p/GHSA-2h44-x2fr-537p.json +++ b/advisories/unreviewed/2022/05/GHSA-2h44-x2fr-537p/GHSA-2h44-x2fr-537p.json @@ -7,12 +7,8 @@ "CVE-2021-35029" ], "details": "An authentication bypasss vulnerability in the web-based management interface of Zyxel USG/Zywall series firmware versions 4.35 through 4.64 and USG Flex, ATP, and VPN series firmware versions 4.35 through 5.01, which could allow a remote attacker to execute arbitrary commands on an affected device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2hh3-6mr4-7gqq/GHSA-2hh3-6mr4-7gqq.json b/advisories/unreviewed/2022/05/GHSA-2hh3-6mr4-7gqq/GHSA-2hh3-6mr4-7gqq.json index 86651c92882..395adcc1eb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hh3-6mr4-7gqq/GHSA-2hh3-6mr4-7gqq.json +++ b/advisories/unreviewed/2022/05/GHSA-2hh3-6mr4-7gqq/GHSA-2hh3-6mr4-7gqq.json @@ -7,12 +7,8 @@ "CVE-2021-33218" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Hard-coded System Passwords that provide shell access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2hjw-hf33-2w8v/GHSA-2hjw-hf33-2w8v.json b/advisories/unreviewed/2022/05/GHSA-2hjw-hf33-2w8v/GHSA-2hjw-hf33-2w8v.json index 7d7580acaec..6068705fd88 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hjw-hf33-2w8v/GHSA-2hjw-hf33-2w8v.json +++ b/advisories/unreviewed/2022/05/GHSA-2hjw-hf33-2w8v/GHSA-2hjw-hf33-2w8v.json @@ -7,12 +7,8 @@ "CVE-2005-0268" ], "details": "Direct code injection vulnerability in FlatNuke 2.5.1 allows remote attackers to execute arbitrary PHP code by placing the code into the url_avatar field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2hrq-f7cq-4p3c/GHSA-2hrq-f7cq-4p3c.json b/advisories/unreviewed/2022/05/GHSA-2hrq-f7cq-4p3c/GHSA-2hrq-f7cq-4p3c.json index 41e37548c2c..f1d19ccabc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-2hrq-f7cq-4p3c/GHSA-2hrq-f7cq-4p3c.json +++ b/advisories/unreviewed/2022/05/GHSA-2hrq-f7cq-4p3c/GHSA-2hrq-f7cq-4p3c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jh2-4x98-cv5j/GHSA-2jh2-4x98-cv5j.json b/advisories/unreviewed/2022/05/GHSA-2jh2-4x98-cv5j/GHSA-2jh2-4x98-cv5j.json index db377a91b49..a7f77188596 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jh2-4x98-cv5j/GHSA-2jh2-4x98-cv5j.json +++ b/advisories/unreviewed/2022/05/GHSA-2jh2-4x98-cv5j/GHSA-2jh2-4x98-cv5j.json @@ -7,12 +7,8 @@ "CVE-2019-25047" ], "details": "Greenbone Security Assistant (GSA) before 8.0.2 and Greenbone OS (GOS) before 5.0.10 allow XSS during 404 URL handling in gsad.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2jvf-qvqx-mrwj/GHSA-2jvf-qvqx-mrwj.json b/advisories/unreviewed/2022/05/GHSA-2jvf-qvqx-mrwj/GHSA-2jvf-qvqx-mrwj.json index 95efb810468..7cc45ab01d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2jvf-qvqx-mrwj/GHSA-2jvf-qvqx-mrwj.json +++ b/advisories/unreviewed/2022/05/GHSA-2jvf-qvqx-mrwj/GHSA-2jvf-qvqx-mrwj.json @@ -7,12 +7,8 @@ "CVE-2005-0383" ], "details": "Trend Micro Control Manager 3.0 Enterprise Edition allows remote attackers to gain privileges via a replay attack of the encrypted username and password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2m7w-mxjw-2c3q/GHSA-2m7w-mxjw-2c3q.json b/advisories/unreviewed/2022/05/GHSA-2m7w-mxjw-2c3q/GHSA-2m7w-mxjw-2c3q.json index 7857b377e5a..d297337e325 100644 --- a/advisories/unreviewed/2022/05/GHSA-2m7w-mxjw-2c3q/GHSA-2m7w-mxjw-2c3q.json +++ b/advisories/unreviewed/2022/05/GHSA-2m7w-mxjw-2c3q/GHSA-2m7w-mxjw-2c3q.json @@ -7,12 +7,8 @@ "CVE-2005-0266" ], "details": "Cross-site scripting (XSS) vulnerability in index.php in SugarCRM 1.X allows remote attackers to inject arbitrary web script or HTML via the (1) return_module, (2) return_action, (3) name, (4) module, or (5) record parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2mh8-69x2-q9m6/GHSA-2mh8-69x2-q9m6.json b/advisories/unreviewed/2022/05/GHSA-2mh8-69x2-q9m6/GHSA-2mh8-69x2-q9m6.json index 2027c91144b..fc3e8000738 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mh8-69x2-q9m6/GHSA-2mh8-69x2-q9m6.json +++ b/advisories/unreviewed/2022/05/GHSA-2mh8-69x2-q9m6/GHSA-2mh8-69x2-q9m6.json @@ -7,12 +7,8 @@ "CVE-2021-24384" ], "details": "The joomsport_md_load AJAX action of the JoomSport WordPress plugin before 5.1.8, registered for both unauthenticated and unauthenticated users, unserialised user input from the shattr POST parameter, leading to a PHP Object Injection issue. Even though the plugin does not have a suitable gadget chain to exploit this, other installed plugins could, which might lead to more severe issues such as RCE", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2mqr-75c4-43q9/GHSA-2mqr-75c4-43q9.json b/advisories/unreviewed/2022/05/GHSA-2mqr-75c4-43q9/GHSA-2mqr-75c4-43q9.json index e05b5ab20fe..574b21d8ce8 100644 --- a/advisories/unreviewed/2022/05/GHSA-2mqr-75c4-43q9/GHSA-2mqr-75c4-43q9.json +++ b/advisories/unreviewed/2022/05/GHSA-2mqr-75c4-43q9/GHSA-2mqr-75c4-43q9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2q3w-m82w-3h55/GHSA-2q3w-m82w-3h55.json b/advisories/unreviewed/2022/05/GHSA-2q3w-m82w-3h55/GHSA-2q3w-m82w-3h55.json index 341bb5dd98c..cb493436702 100644 --- a/advisories/unreviewed/2022/05/GHSA-2q3w-m82w-3h55/GHSA-2q3w-m82w-3h55.json +++ b/advisories/unreviewed/2022/05/GHSA-2q3w-m82w-3h55/GHSA-2q3w-m82w-3h55.json @@ -7,12 +7,8 @@ "CVE-2005-0208" ], "details": "The HTML parsing functions in Gaim before 1.1.4 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes \"an invalid memory access,\" a different vulnerability than CVE-2005-0473.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2qqr-7rg8-6qmh/GHSA-2qqr-7rg8-6qmh.json b/advisories/unreviewed/2022/05/GHSA-2qqr-7rg8-6qmh/GHSA-2qqr-7rg8-6qmh.json index 4259e268f51..3253c38286d 100644 --- a/advisories/unreviewed/2022/05/GHSA-2qqr-7rg8-6qmh/GHSA-2qqr-7rg8-6qmh.json +++ b/advisories/unreviewed/2022/05/GHSA-2qqr-7rg8-6qmh/GHSA-2qqr-7rg8-6qmh.json @@ -7,12 +7,8 @@ "CVE-2021-33220" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. Hard-coded API Keys exist.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-2rp7-66x7-f332/GHSA-2rp7-66x7-f332.json b/advisories/unreviewed/2022/05/GHSA-2rp7-66x7-f332/GHSA-2rp7-66x7-f332.json index 71ab87dc453..887f7f367da 100644 --- a/advisories/unreviewed/2022/05/GHSA-2rp7-66x7-f332/GHSA-2rp7-66x7-f332.json +++ b/advisories/unreviewed/2022/05/GHSA-2rp7-66x7-f332/GHSA-2rp7-66x7-f332.json @@ -7,12 +7,8 @@ "CVE-2005-0610" ], "details": "Multiple symlink vulnerabilities in portupgrade before 20041226_2 in FreeBSD allow local users to (1) overwrite arbitrary files and possibly replace packages to execute arbitrary code via pkg_fetch, (2) overwrite arbitrary files via temporary files when portupgrade upgrades a port or package, or (3) create arbitrary zero-byte files via the pkgdb.fixme temporary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2w9q-2gq5-vqqj/GHSA-2w9q-2gq5-vqqj.json b/advisories/unreviewed/2022/05/GHSA-2w9q-2gq5-vqqj/GHSA-2w9q-2gq5-vqqj.json index f6d643e2762..3bdc29594a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-2w9q-2gq5-vqqj/GHSA-2w9q-2gq5-vqqj.json +++ b/advisories/unreviewed/2022/05/GHSA-2w9q-2gq5-vqqj/GHSA-2w9q-2gq5-vqqj.json @@ -7,12 +7,8 @@ "CVE-2005-0494" ], "details": "The RgSecurity form in the HTTP server for the Thomson TCW690 cable modem running firmware 2.1 and software ST42.03.0a does not properly validate the password before performing changes, which allows remote attackers on the LAN to gain access via a direct POST request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2wrc-xqr6-94x6/GHSA-2wrc-xqr6-94x6.json b/advisories/unreviewed/2022/05/GHSA-2wrc-xqr6-94x6/GHSA-2wrc-xqr6-94x6.json index 8fa725acfb2..fc7c4bc68c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-2wrc-xqr6-94x6/GHSA-2wrc-xqr6-94x6.json +++ b/advisories/unreviewed/2022/05/GHSA-2wrc-xqr6-94x6/GHSA-2wrc-xqr6-94x6.json @@ -7,12 +7,8 @@ "CVE-2005-0347" ], "details": "Integer overflow in RealArcade 1.2.0.994 and earlier allows remote attackers to execute arbitrary code via an RGS file with an invalid size string for the GUID and game name, which leads to a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2x2g-qj89-46xx/GHSA-2x2g-qj89-46xx.json b/advisories/unreviewed/2022/05/GHSA-2x2g-qj89-46xx/GHSA-2x2g-qj89-46xx.json index 2f90bcbdafa..8347e6426c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x2g-qj89-46xx/GHSA-2x2g-qj89-46xx.json +++ b/advisories/unreviewed/2022/05/GHSA-2x2g-qj89-46xx/GHSA-2x2g-qj89-46xx.json @@ -7,12 +7,8 @@ "CVE-2005-0600" ], "details": "Cisco devices running Application and Content Networking System (ACNS) 5.0, 5.1 before 5.1.13.7, or 5.2 before 5.2.3.9 allow remote attackers to cause a denial of service (bandwidth consumption) via \"crafted IP packets\" that are continuously forwarded.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2x7q-3vg9-qwxr/GHSA-2x7q-3vg9-qwxr.json b/advisories/unreviewed/2022/05/GHSA-2x7q-3vg9-qwxr/GHSA-2x7q-3vg9-qwxr.json index e194fc05967..6ae9707f6f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-2x7q-3vg9-qwxr/GHSA-2x7q-3vg9-qwxr.json +++ b/advisories/unreviewed/2022/05/GHSA-2x7q-3vg9-qwxr/GHSA-2x7q-3vg9-qwxr.json @@ -7,12 +7,8 @@ "CVE-2005-0470" ], "details": "Buffer overflow in wpa_supplicant before 0.2.7 allows remote attackers to cause a denial of service (segmentation fault) via invalid EAPOL-Key packet data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-2xw3-pxr3-cr4c/GHSA-2xw3-pxr3-cr4c.json b/advisories/unreviewed/2022/05/GHSA-2xw3-pxr3-cr4c/GHSA-2xw3-pxr3-cr4c.json index 02a79370def..f8cb7615233 100644 --- a/advisories/unreviewed/2022/05/GHSA-2xw3-pxr3-cr4c/GHSA-2xw3-pxr3-cr4c.json +++ b/advisories/unreviewed/2022/05/GHSA-2xw3-pxr3-cr4c/GHSA-2xw3-pxr3-cr4c.json @@ -7,12 +7,8 @@ "CVE-2021-20749" ], "details": "Cross-site scripting vulnerability in Fudousan plugin ver5.7.0 and earlier, Fudousan Plugin Pro Single-User Type ver5.7.0 and earlier, and Fudousan Plugin Pro Multi-User Type ver5.7.0 and earlier allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-326v-cmcv-pqjf/GHSA-326v-cmcv-pqjf.json b/advisories/unreviewed/2022/05/GHSA-326v-cmcv-pqjf/GHSA-326v-cmcv-pqjf.json index fbdafea6969..d331c70c564 100644 --- a/advisories/unreviewed/2022/05/GHSA-326v-cmcv-pqjf/GHSA-326v-cmcv-pqjf.json +++ b/advisories/unreviewed/2022/05/GHSA-326v-cmcv-pqjf/GHSA-326v-cmcv-pqjf.json @@ -7,12 +7,8 @@ "CVE-2005-0417" ], "details": "Unknown \"high risk\" vulnerability in DB2 Universal Database 8.1 and earlier has unknown impact and attack vectors. NOTE: due to the delayed disclosure of details for this issue, this candidate may be SPLIT in the future. In addition, this may be a duplicate of other issues as reported by the vendor.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-32rv-qwgj-73fj/GHSA-32rv-qwgj-73fj.json b/advisories/unreviewed/2022/05/GHSA-32rv-qwgj-73fj/GHSA-32rv-qwgj-73fj.json index 028c0499509..d870fc31a8f 100644 --- a/advisories/unreviewed/2022/05/GHSA-32rv-qwgj-73fj/GHSA-32rv-qwgj-73fj.json +++ b/advisories/unreviewed/2022/05/GHSA-32rv-qwgj-73fj/GHSA-32rv-qwgj-73fj.json @@ -7,12 +7,8 @@ "CVE-2020-36411" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Path for the {page_image} tag:\" or \"Path for thumbnail field:\" parameters under the \"Content Editing Settings\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-32vx-68rr-3qv3/GHSA-32vx-68rr-3qv3.json b/advisories/unreviewed/2022/05/GHSA-32vx-68rr-3qv3/GHSA-32vx-68rr-3qv3.json index cab013719c3..63061840bda 100644 --- a/advisories/unreviewed/2022/05/GHSA-32vx-68rr-3qv3/GHSA-32vx-68rr-3qv3.json +++ b/advisories/unreviewed/2022/05/GHSA-32vx-68rr-3qv3/GHSA-32vx-68rr-3qv3.json @@ -7,12 +7,8 @@ "CVE-2021-33536" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable denial-of-service vulnerability exists in ServiceAgent functionality. A specially crafted packet can cause an integer underflow, triggering a large memcpy that will access unmapped or out-of-bounds memory. An attacker can send this packet while unauthenticated to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-33gg-2298-wmfp/GHSA-33gg-2298-wmfp.json b/advisories/unreviewed/2022/05/GHSA-33gg-2298-wmfp/GHSA-33gg-2298-wmfp.json index 018fcb72124..632e4edbe9b 100644 --- a/advisories/unreviewed/2022/05/GHSA-33gg-2298-wmfp/GHSA-33gg-2298-wmfp.json +++ b/advisories/unreviewed/2022/05/GHSA-33gg-2298-wmfp/GHSA-33gg-2298-wmfp.json @@ -7,12 +7,8 @@ "CVE-2021-21099" ], "details": "Adobe InDesign version 16.0 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-34r4-p9qh-fh37/GHSA-34r4-p9qh-fh37.json b/advisories/unreviewed/2022/05/GHSA-34r4-p9qh-fh37/GHSA-34r4-p9qh-fh37.json index e3a931f6bd4..bfbc4a9703d 100644 --- a/advisories/unreviewed/2022/05/GHSA-34r4-p9qh-fh37/GHSA-34r4-p9qh-fh37.json +++ b/advisories/unreviewed/2022/05/GHSA-34r4-p9qh-fh37/GHSA-34r4-p9qh-fh37.json @@ -7,12 +7,8 @@ "CVE-2021-33219" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Hard-coded Web Application Administrator Passwords for the admin and nplus1user accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-34wh-mx6f-wwpc/GHSA-34wh-mx6f-wwpc.json b/advisories/unreviewed/2022/05/GHSA-34wh-mx6f-wwpc/GHSA-34wh-mx6f-wwpc.json index 3fa395355d7..d46651aa06f 100644 --- a/advisories/unreviewed/2022/05/GHSA-34wh-mx6f-wwpc/GHSA-34wh-mx6f-wwpc.json +++ b/advisories/unreviewed/2022/05/GHSA-34wh-mx6f-wwpc/GHSA-34wh-mx6f-wwpc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35fw-8rmc-f2j5/GHSA-35fw-8rmc-f2j5.json b/advisories/unreviewed/2022/05/GHSA-35fw-8rmc-f2j5/GHSA-35fw-8rmc-f2j5.json index 5aefd998477..1caf5239460 100644 --- a/advisories/unreviewed/2022/05/GHSA-35fw-8rmc-f2j5/GHSA-35fw-8rmc-f2j5.json +++ b/advisories/unreviewed/2022/05/GHSA-35fw-8rmc-f2j5/GHSA-35fw-8rmc-f2j5.json @@ -7,12 +7,8 @@ "CVE-2021-22366" ], "details": "There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a function that handles an internal message contains an out-of-bounds read vulnerability. An attacker could crafted messages between system process, successful exploit could cause Denial of Service (DoS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-35w9-fxvj-73cq/GHSA-35w9-fxvj-73cq.json b/advisories/unreviewed/2022/05/GHSA-35w9-fxvj-73cq/GHSA-35w9-fxvj-73cq.json index 9e045221547..bca0cfb2ae9 100644 --- a/advisories/unreviewed/2022/05/GHSA-35w9-fxvj-73cq/GHSA-35w9-fxvj-73cq.json +++ b/advisories/unreviewed/2022/05/GHSA-35w9-fxvj-73cq/GHSA-35w9-fxvj-73cq.json @@ -7,12 +7,8 @@ "CVE-2005-0392" ], "details": "ppxp does not drop root privileges before opening log files, which allows local users to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36qf-rhcc-gx9q/GHSA-36qf-rhcc-gx9q.json b/advisories/unreviewed/2022/05/GHSA-36qf-rhcc-gx9q/GHSA-36qf-rhcc-gx9q.json index 2ce65ad10ff..7227b74c564 100644 --- a/advisories/unreviewed/2022/05/GHSA-36qf-rhcc-gx9q/GHSA-36qf-rhcc-gx9q.json +++ b/advisories/unreviewed/2022/05/GHSA-36qf-rhcc-gx9q/GHSA-36qf-rhcc-gx9q.json @@ -7,12 +7,8 @@ "CVE-2005-0427" ], "details": "The ebuild of Webmin before 1.170-r3 on Gentoo Linux includes the encrypted root password in the miniserv.users file when building a tbz2 of the webmin package, which allows remote attackers to obtain and possibly crack the encrypted password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-36r3-g8xj-hmh4/GHSA-36r3-g8xj-hmh4.json b/advisories/unreviewed/2022/05/GHSA-36r3-g8xj-hmh4/GHSA-36r3-g8xj-hmh4.json index ce09dc13877..918c16eaf48 100644 --- a/advisories/unreviewed/2022/05/GHSA-36r3-g8xj-hmh4/GHSA-36r3-g8xj-hmh4.json +++ b/advisories/unreviewed/2022/05/GHSA-36r3-g8xj-hmh4/GHSA-36r3-g8xj-hmh4.json @@ -7,12 +7,8 @@ "CVE-2021-33214" ], "details": "In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could lead to sensitive information disclosure, modification of configuration files, or disruption of normal system operation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-37w8-w2xc-r5mg/GHSA-37w8-w2xc-r5mg.json b/advisories/unreviewed/2022/05/GHSA-37w8-w2xc-r5mg/GHSA-37w8-w2xc-r5mg.json index a75c6b59286..66a6f944b46 100644 --- a/advisories/unreviewed/2022/05/GHSA-37w8-w2xc-r5mg/GHSA-37w8-w2xc-r5mg.json +++ b/advisories/unreviewed/2022/05/GHSA-37w8-w2xc-r5mg/GHSA-37w8-w2xc-r5mg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-387w-v9hj-ph2g/GHSA-387w-v9hj-ph2g.json b/advisories/unreviewed/2022/05/GHSA-387w-v9hj-ph2g/GHSA-387w-v9hj-ph2g.json index 9270c209a9c..4be1c0e57fa 100644 --- a/advisories/unreviewed/2022/05/GHSA-387w-v9hj-ph2g/GHSA-387w-v9hj-ph2g.json +++ b/advisories/unreviewed/2022/05/GHSA-387w-v9hj-ph2g/GHSA-387w-v9hj-ph2g.json @@ -7,12 +7,8 @@ "CVE-2021-20105" ], "details": "Machform prior to version 16 is vulnerable to an open redirect in Safari_init.php due to an improperly sanitized 'ref' parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-396f-8jhp-q236/GHSA-396f-8jhp-q236.json b/advisories/unreviewed/2022/05/GHSA-396f-8jhp-q236/GHSA-396f-8jhp-q236.json index 38e0a719989..f68064d018d 100644 --- a/advisories/unreviewed/2022/05/GHSA-396f-8jhp-q236/GHSA-396f-8jhp-q236.json +++ b/advisories/unreviewed/2022/05/GHSA-396f-8jhp-q236/GHSA-396f-8jhp-q236.json @@ -7,12 +7,8 @@ "CVE-2021-33572" ], "details": "A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the FSAVD component used in certain F-Secure products can crash while scanning larger packages/fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-397g-22v6-9m75/GHSA-397g-22v6-9m75.json b/advisories/unreviewed/2022/05/GHSA-397g-22v6-9m75/GHSA-397g-22v6-9m75.json index 95a4ce8c041..948bfcd44a5 100644 --- a/advisories/unreviewed/2022/05/GHSA-397g-22v6-9m75/GHSA-397g-22v6-9m75.json +++ b/advisories/unreviewed/2022/05/GHSA-397g-22v6-9m75/GHSA-397g-22v6-9m75.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3c2r-pvhv-53p8/GHSA-3c2r-pvhv-53p8.json b/advisories/unreviewed/2022/05/GHSA-3c2r-pvhv-53p8/GHSA-3c2r-pvhv-53p8.json index 2436ffaa7b5..98fa266e124 100644 --- a/advisories/unreviewed/2022/05/GHSA-3c2r-pvhv-53p8/GHSA-3c2r-pvhv-53p8.json +++ b/advisories/unreviewed/2022/05/GHSA-3c2r-pvhv-53p8/GHSA-3c2r-pvhv-53p8.json @@ -7,12 +7,8 @@ "CVE-2021-3606" ], "details": "OpenVPN before version 2.5.3 on Windows allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (openvpn.exe).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3fw6-69v4-2cp8/GHSA-3fw6-69v4-2cp8.json b/advisories/unreviewed/2022/05/GHSA-3fw6-69v4-2cp8/GHSA-3fw6-69v4-2cp8.json index 6e7e38b8820..628f0f55519 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fw6-69v4-2cp8/GHSA-3fw6-69v4-2cp8.json +++ b/advisories/unreviewed/2022/05/GHSA-3fw6-69v4-2cp8/GHSA-3fw6-69v4-2cp8.json @@ -7,12 +7,8 @@ "CVE-2005-0221" ], "details": "Cross-site scripting (XSS) vulnerability in login.php in Gallery 2.0 Alpha allows remote attackers to inject arbitrary web script or HTML via the g2_form[subject] field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3fwv-8g5j-79jx/GHSA-3fwv-8g5j-79jx.json b/advisories/unreviewed/2022/05/GHSA-3fwv-8g5j-79jx/GHSA-3fwv-8g5j-79jx.json index 7e507573b8b..46d6e36e9fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-3fwv-8g5j-79jx/GHSA-3fwv-8g5j-79jx.json +++ b/advisories/unreviewed/2022/05/GHSA-3fwv-8g5j-79jx/GHSA-3fwv-8g5j-79jx.json @@ -7,12 +7,8 @@ "CVE-2005-0592" ], "details": "Heap-based buffer overflow in the UTF8ToNewUnicode function for Firefox before 1.0.1 and Mozilla before 1.7.6 might allow remote attackers to cause a denial of service (crash) or execute arbitrary code via invalid sequences in a UTF8 encoded string that result in a zero length value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3hqp-jv6p-9752/GHSA-3hqp-jv6p-9752.json b/advisories/unreviewed/2022/05/GHSA-3hqp-jv6p-9752/GHSA-3hqp-jv6p-9752.json index a5486fcb320..7de92ea641c 100644 --- a/advisories/unreviewed/2022/05/GHSA-3hqp-jv6p-9752/GHSA-3hqp-jv6p-9752.json +++ b/advisories/unreviewed/2022/05/GHSA-3hqp-jv6p-9752/GHSA-3hqp-jv6p-9752.json @@ -7,12 +7,8 @@ "CVE-2005-0368" ], "details": "Multiple SQL injection vulnerabilities in CMScore allow remote attackers to execute arbitrary SQL commands via the (1) EntryID or (2) searchterm parameter to index.php, or (3) username parameter to authenticate.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3jm2-5rf3-c2fc/GHSA-3jm2-5rf3-c2fc.json b/advisories/unreviewed/2022/05/GHSA-3jm2-5rf3-c2fc/GHSA-3jm2-5rf3-c2fc.json index b6ce596fc58..fedcbd7a0ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jm2-5rf3-c2fc/GHSA-3jm2-5rf3-c2fc.json +++ b/advisories/unreviewed/2022/05/GHSA-3jm2-5rf3-c2fc/GHSA-3jm2-5rf3-c2fc.json @@ -7,12 +7,8 @@ "CVE-2005-0237" ], "details": "The International Domain Name (IDN) support in Konqueror 3.2.1 on KDE 3.2.1 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3jm8-2j72-jrhj/GHSA-3jm8-2j72-jrhj.json b/advisories/unreviewed/2022/05/GHSA-3jm8-2j72-jrhj/GHSA-3jm8-2j72-jrhj.json index 7181135d300..2c7398d017e 100644 --- a/advisories/unreviewed/2022/05/GHSA-3jm8-2j72-jrhj/GHSA-3jm8-2j72-jrhj.json +++ b/advisories/unreviewed/2022/05/GHSA-3jm8-2j72-jrhj/GHSA-3jm8-2j72-jrhj.json @@ -7,12 +7,8 @@ "CVE-2021-20477" ], "details": "IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 196949.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mgf-v89w-rwvm/GHSA-3mgf-v89w-rwvm.json b/advisories/unreviewed/2022/05/GHSA-3mgf-v89w-rwvm/GHSA-3mgf-v89w-rwvm.json index 856fb73ec2a..12e2fb318ed 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mgf-v89w-rwvm/GHSA-3mgf-v89w-rwvm.json +++ b/advisories/unreviewed/2022/05/GHSA-3mgf-v89w-rwvm/GHSA-3mgf-v89w-rwvm.json @@ -7,12 +7,8 @@ "CVE-2020-36416" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Create a new Design\" parameter under the \"Designs\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mj8-v2cx-7x5g/GHSA-3mj8-v2cx-7x5g.json b/advisories/unreviewed/2022/05/GHSA-3mj8-v2cx-7x5g/GHSA-3mj8-v2cx-7x5g.json index 6a5a193b716..d6cb0b07f47 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mj8-v2cx-7x5g/GHSA-3mj8-v2cx-7x5g.json +++ b/advisories/unreviewed/2022/05/GHSA-3mj8-v2cx-7x5g/GHSA-3mj8-v2cx-7x5g.json @@ -7,12 +7,8 @@ "CVE-2021-33216" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. An Undocumented Backdoor exists, allowing shell access via a developer account.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3mjc-8px4-f596/GHSA-3mjc-8px4-f596.json b/advisories/unreviewed/2022/05/GHSA-3mjc-8px4-f596/GHSA-3mjc-8px4-f596.json index d806194c757..7a127c73772 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mjc-8px4-f596/GHSA-3mjc-8px4-f596.json +++ b/advisories/unreviewed/2022/05/GHSA-3mjc-8px4-f596/GHSA-3mjc-8px4-f596.json @@ -7,12 +7,8 @@ "CVE-2005-0413" ], "details": "Multiple SQL injection vulnerabilities in MyPHP Forum 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the fid in forum.php, (2) the member parameter in member.php, (3) the email parameter in forgot.php, or (4) the nbuser or nbpass parameters in include.php. NOTE: it was later reported that vector 2 exists in 3.0 and earlier.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3mpq-55rm-gc7g/GHSA-3mpq-55rm-gc7g.json b/advisories/unreviewed/2022/05/GHSA-3mpq-55rm-gc7g/GHSA-3mpq-55rm-gc7g.json index 52617520bc4..556ae78b0aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-3mpq-55rm-gc7g/GHSA-3mpq-55rm-gc7g.json +++ b/advisories/unreviewed/2022/05/GHSA-3mpq-55rm-gc7g/GHSA-3mpq-55rm-gc7g.json @@ -7,12 +7,8 @@ "CVE-2005-0414" ], "details": "SQL injection vulnerability in post.php for MercuryBoard 1.1.1 allows remote attackers to execute arbitrary SQL commands via a reply post action for index.php with (1) the t parameter or (2) the qu parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3pjq-2qm6-rh2c/GHSA-3pjq-2qm6-rh2c.json b/advisories/unreviewed/2022/05/GHSA-3pjq-2qm6-rh2c/GHSA-3pjq-2qm6-rh2c.json index bc03edd10a4..f92e56e2cbb 100644 --- a/advisories/unreviewed/2022/05/GHSA-3pjq-2qm6-rh2c/GHSA-3pjq-2qm6-rh2c.json +++ b/advisories/unreviewed/2022/05/GHSA-3pjq-2qm6-rh2c/GHSA-3pjq-2qm6-rh2c.json @@ -7,12 +7,8 @@ "CVE-2021-0540" ], "details": "In halWrapperDataCallback of hal_wrapper.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169328517", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3qch-fgcw-x72h/GHSA-3qch-fgcw-x72h.json b/advisories/unreviewed/2022/05/GHSA-3qch-fgcw-x72h/GHSA-3qch-fgcw-x72h.json index 31e528616d8..50a65dd6918 100644 --- a/advisories/unreviewed/2022/05/GHSA-3qch-fgcw-x72h/GHSA-3qch-fgcw-x72h.json +++ b/advisories/unreviewed/2022/05/GHSA-3qch-fgcw-x72h/GHSA-3qch-fgcw-x72h.json @@ -7,12 +7,8 @@ "CVE-2021-0541" ], "details": "In phNxpNciHal_ext_process_nfc_init_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure in the NFC server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169258455", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3rm5-w47c-292r/GHSA-3rm5-w47c-292r.json b/advisories/unreviewed/2022/05/GHSA-3rm5-w47c-292r/GHSA-3rm5-w47c-292r.json index 239bd263b41..1f1f18511dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-3rm5-w47c-292r/GHSA-3rm5-w47c-292r.json +++ b/advisories/unreviewed/2022/05/GHSA-3rm5-w47c-292r/GHSA-3rm5-w47c-292r.json @@ -7,12 +7,8 @@ "CVE-2021-0605" ], "details": "In pfkey_dump of af_key.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-110373476", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3v94-cf5v-6c3j/GHSA-3v94-cf5v-6c3j.json b/advisories/unreviewed/2022/05/GHSA-3v94-cf5v-6c3j/GHSA-3v94-cf5v-6c3j.json index c5602272355..ba5e32df259 100644 --- a/advisories/unreviewed/2022/05/GHSA-3v94-cf5v-6c3j/GHSA-3v94-cf5v-6c3j.json +++ b/advisories/unreviewed/2022/05/GHSA-3v94-cf5v-6c3j/GHSA-3v94-cf5v-6c3j.json @@ -7,12 +7,8 @@ "CVE-2005-0614" ], "details": "sessions.php in phpBB 2.0.12 and earlier allows remote attackers to gain administrator privileges via the autologinid value in a cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3w4m-48x7-p9gx/GHSA-3w4m-48x7-p9gx.json b/advisories/unreviewed/2022/05/GHSA-3w4m-48x7-p9gx/GHSA-3w4m-48x7-p9gx.json index 82dc75e2cf1..0eb665261aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-3w4m-48x7-p9gx/GHSA-3w4m-48x7-p9gx.json +++ b/advisories/unreviewed/2022/05/GHSA-3w4m-48x7-p9gx/GHSA-3w4m-48x7-p9gx.json @@ -7,12 +7,8 @@ "CVE-2005-0418" ], "details": "Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06, on Mac OS X, allows untrusted applications to gain privileges via the value parameter of a property tag in a JNLP file. NOTE: it is highly likely that this item will be MERGED with CVE-2005-0836.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-3wxv-m6v8-9vx3/GHSA-3wxv-m6v8-9vx3.json b/advisories/unreviewed/2022/05/GHSA-3wxv-m6v8-9vx3/GHSA-3wxv-m6v8-9vx3.json index 842b325623c..fcbce6917ee 100644 --- a/advisories/unreviewed/2022/05/GHSA-3wxv-m6v8-9vx3/GHSA-3wxv-m6v8-9vx3.json +++ b/advisories/unreviewed/2022/05/GHSA-3wxv-m6v8-9vx3/GHSA-3wxv-m6v8-9vx3.json @@ -7,12 +7,8 @@ "CVE-2021-24364" ], "details": "The Jannah WordPress theme before 5.4.4 did not properly sanitize the options JSON parameter in its tie_get_user_weather AJAX action before outputting it back in the page, leading to a Reflected Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xc9-48fm-mxwr/GHSA-3xc9-48fm-mxwr.json b/advisories/unreviewed/2022/05/GHSA-3xc9-48fm-mxwr/GHSA-3xc9-48fm-mxwr.json index 6a6b18ccbb5..82a7bda2704 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xc9-48fm-mxwr/GHSA-3xc9-48fm-mxwr.json +++ b/advisories/unreviewed/2022/05/GHSA-3xc9-48fm-mxwr/GHSA-3xc9-48fm-mxwr.json @@ -7,12 +7,8 @@ "CVE-2020-36415" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Create a new Stylesheet\" parameter under the \"Stylesheets\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-3xrj-54xh-6qf3/GHSA-3xrj-54xh-6qf3.json b/advisories/unreviewed/2022/05/GHSA-3xrj-54xh-6qf3/GHSA-3xrj-54xh-6qf3.json index 6d475d7ed44..e051d35e9d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-3xrj-54xh-6qf3/GHSA-3xrj-54xh-6qf3.json +++ b/advisories/unreviewed/2022/05/GHSA-3xrj-54xh-6qf3/GHSA-3xrj-54xh-6qf3.json @@ -7,12 +7,8 @@ "CVE-2005-0402" ], "details": "Firefox before 1.0.2 allows remote attackers to execute arbitrary code by tricking a user into saving a page as a Firefox sidebar panel, then using the sidebar panel to inject Javascript into a privileged page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-42hf-hp85-6r5f/GHSA-42hf-hp85-6r5f.json b/advisories/unreviewed/2022/05/GHSA-42hf-hp85-6r5f/GHSA-42hf-hp85-6r5f.json index 0e9ea34a373..fcc83df3370 100644 --- a/advisories/unreviewed/2022/05/GHSA-42hf-hp85-6r5f/GHSA-42hf-hp85-6r5f.json +++ b/advisories/unreviewed/2022/05/GHSA-42hf-hp85-6r5f/GHSA-42hf-hp85-6r5f.json @@ -7,12 +7,8 @@ "CVE-2020-24149" ], "details": "Server-side request forgery (SSRF) in the Podcast Importer SecondLine (podcast-importer-secondline) plugin 1.1.4 for WordPress via the podcast_feed parameter in a secondline_import_initialize action to the secondlinepodcastimport page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-42wg-wpqj-99fc/GHSA-42wg-wpqj-99fc.json b/advisories/unreviewed/2022/05/GHSA-42wg-wpqj-99fc/GHSA-42wg-wpqj-99fc.json index 80086576af3..a90f67b5978 100644 --- a/advisories/unreviewed/2022/05/GHSA-42wg-wpqj-99fc/GHSA-42wg-wpqj-99fc.json +++ b/advisories/unreviewed/2022/05/GHSA-42wg-wpqj-99fc/GHSA-42wg-wpqj-99fc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4324-m828-225f/GHSA-4324-m828-225f.json b/advisories/unreviewed/2022/05/GHSA-4324-m828-225f/GHSA-4324-m828-225f.json index 15f8ca8b025..e3a41c1e57e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4324-m828-225f/GHSA-4324-m828-225f.json +++ b/advisories/unreviewed/2022/05/GHSA-4324-m828-225f/GHSA-4324-m828-225f.json @@ -7,12 +7,8 @@ "CVE-2005-0390" ], "details": "Buffer overflow in the HTTP redirection capability in conn.c for Axel before 1.0b may allow remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4466-79c6-7gv2/GHSA-4466-79c6-7gv2.json b/advisories/unreviewed/2022/05/GHSA-4466-79c6-7gv2/GHSA-4466-79c6-7gv2.json index 56658ea8895..9b24d6d0c02 100644 --- a/advisories/unreviewed/2022/05/GHSA-4466-79c6-7gv2/GHSA-4466-79c6-7gv2.json +++ b/advisories/unreviewed/2022/05/GHSA-4466-79c6-7gv2/GHSA-4466-79c6-7gv2.json @@ -7,12 +7,8 @@ "CVE-2021-22129" ], "details": "Multiple instances of incorrect calculation of buffer size in the Webmail and Administrative interface of FortiMail before 6.4.5 may allow an authenticated attacker with regular webmail access to trigger a buffer overflow and to possibly execute unauthorized code or commands via specifically crafted HTTP requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4567-7fw8-972r/GHSA-4567-7fw8-972r.json b/advisories/unreviewed/2022/05/GHSA-4567-7fw8-972r/GHSA-4567-7fw8-972r.json index 9164f9dc3c8..af01624df38 100644 --- a/advisories/unreviewed/2022/05/GHSA-4567-7fw8-972r/GHSA-4567-7fw8-972r.json +++ b/advisories/unreviewed/2022/05/GHSA-4567-7fw8-972r/GHSA-4567-7fw8-972r.json @@ -7,12 +7,8 @@ "CVE-2021-21003" ], "details": "In Phoenix Contact FL SWITCH SMCS series products in multiple versions fragmented TCP-Packets may cause a Denial of Service of Web-, SNMP- and ICMP-Echo services. The switching functionality of the device is not affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4639-xx39-q537/GHSA-4639-xx39-q537.json b/advisories/unreviewed/2022/05/GHSA-4639-xx39-q537/GHSA-4639-xx39-q537.json index 001ee150e9d..1689c7d8c3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4639-xx39-q537/GHSA-4639-xx39-q537.json +++ b/advisories/unreviewed/2022/05/GHSA-4639-xx39-q537/GHSA-4639-xx39-q537.json @@ -7,12 +7,8 @@ "CVE-2021-24377" ], "details": "The Autoptimize WordPress plugin before 2.7.8 attempts to remove potential malicious files from the extracted archive uploaded via the 'Import Settings' feature, however this is not sufficient to protect against RCE as a race condition can be achieved in between the moment the file is extracted on the disk but not yet removed. It is a bypass of CVE-2020-24948.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-46gv-fchp-9624/GHSA-46gv-fchp-9624.json b/advisories/unreviewed/2022/05/GHSA-46gv-fchp-9624/GHSA-46gv-fchp-9624.json index 1fb515bdbdc..ff481ddeb63 100644 --- a/advisories/unreviewed/2022/05/GHSA-46gv-fchp-9624/GHSA-46gv-fchp-9624.json +++ b/advisories/unreviewed/2022/05/GHSA-46gv-fchp-9624/GHSA-46gv-fchp-9624.json @@ -7,12 +7,8 @@ "CVE-2021-36143" ], "details": "ACRN before 2.5 has a hw/pci/virtio/virtio.c vq_endchains NULL Pointer Dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-48q4-vrg4-8rx4/GHSA-48q4-vrg4-8rx4.json b/advisories/unreviewed/2022/05/GHSA-48q4-vrg4-8rx4/GHSA-48q4-vrg4-8rx4.json index f5702835704..2f82c6491a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-48q4-vrg4-8rx4/GHSA-48q4-vrg4-8rx4.json +++ b/advisories/unreviewed/2022/05/GHSA-48q4-vrg4-8rx4/GHSA-48q4-vrg4-8rx4.json @@ -7,12 +7,8 @@ "CVE-2005-0373" ], "details": "Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-48rx-hqvx-wfcw/GHSA-48rx-hqvx-wfcw.json b/advisories/unreviewed/2022/05/GHSA-48rx-hqvx-wfcw/GHSA-48rx-hqvx-wfcw.json index ec0bf76497b..9e37364914f 100644 --- a/advisories/unreviewed/2022/05/GHSA-48rx-hqvx-wfcw/GHSA-48rx-hqvx-wfcw.json +++ b/advisories/unreviewed/2022/05/GHSA-48rx-hqvx-wfcw/GHSA-48rx-hqvx-wfcw.json @@ -7,12 +7,8 @@ "CVE-2021-0548" ], "details": "In rw_i93_send_to_lower of rw_i93.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-157650357", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-49rv-vwhv-6vcw/GHSA-49rv-vwhv-6vcw.json b/advisories/unreviewed/2022/05/GHSA-49rv-vwhv-6vcw/GHSA-49rv-vwhv-6vcw.json index 7e9b27ec0e2..d2f5fb33204 100644 --- a/advisories/unreviewed/2022/05/GHSA-49rv-vwhv-6vcw/GHSA-49rv-vwhv-6vcw.json +++ b/advisories/unreviewed/2022/05/GHSA-49rv-vwhv-6vcw/GHSA-49rv-vwhv-6vcw.json @@ -7,12 +7,8 @@ "CVE-2021-31505" ], "details": "This vulnerability allows attackers with physical access to escalate privileges on affected installations of Arlo Q Plus 1.9.0.3_278. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SSH service. The device can be booted into a special operation mode where hard-coded credentials are accepted for SSH authentication. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root. Was ZDI-CAN-12890.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4cm6-j283-3qfv/GHSA-4cm6-j283-3qfv.json b/advisories/unreviewed/2022/05/GHSA-4cm6-j283-3qfv/GHSA-4cm6-j283-3qfv.json index ce9236a325f..fc05780c7d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cm6-j283-3qfv/GHSA-4cm6-j283-3qfv.json +++ b/advisories/unreviewed/2022/05/GHSA-4cm6-j283-3qfv/GHSA-4cm6-j283-3qfv.json @@ -7,12 +7,8 @@ "CVE-2005-0224" ], "details": "Unknown vulnerability in HP-UX B.11.04 running Virtualvault 4.5 through 4.7, when running the TGA daemon, allows remote attackers to cause a denial of service via certain network traffic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4cq8-hq5v-c3hx/GHSA-4cq8-hq5v-c3hx.json b/advisories/unreviewed/2022/05/GHSA-4cq8-hq5v-c3hx/GHSA-4cq8-hq5v-c3hx.json index 75f536fc3db..320fc0fc3f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cq8-hq5v-c3hx/GHSA-4cq8-hq5v-c3hx.json +++ b/advisories/unreviewed/2022/05/GHSA-4cq8-hq5v-c3hx/GHSA-4cq8-hq5v-c3hx.json @@ -7,12 +7,8 @@ "CVE-2005-0438" ], "details": "awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to obtain sensitive information by setting the debug parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4cx9-4v6r-cvxp/GHSA-4cx9-4v6r-cvxp.json b/advisories/unreviewed/2022/05/GHSA-4cx9-4v6r-cvxp/GHSA-4cx9-4v6r-cvxp.json index e80c0f81d80..d2468536a15 100644 --- a/advisories/unreviewed/2022/05/GHSA-4cx9-4v6r-cvxp/GHSA-4cx9-4v6r-cvxp.json +++ b/advisories/unreviewed/2022/05/GHSA-4cx9-4v6r-cvxp/GHSA-4cx9-4v6r-cvxp.json @@ -7,12 +7,8 @@ "CVE-2020-27361" ], "details": "An issue exists within Akkadian Provisioning Manager 4.50.02 which allows attackers to view sensitive information within the /pme subdirectories.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4f3f-rp88-2fqp/GHSA-4f3f-rp88-2fqp.json b/advisories/unreviewed/2022/05/GHSA-4f3f-rp88-2fqp/GHSA-4f3f-rp88-2fqp.json index bef75a14aad..16bdccbb3e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-4f3f-rp88-2fqp/GHSA-4f3f-rp88-2fqp.json +++ b/advisories/unreviewed/2022/05/GHSA-4f3f-rp88-2fqp/GHSA-4f3f-rp88-2fqp.json @@ -7,12 +7,8 @@ "CVE-2021-35475" ], "details": "SAS Environment Manager 2.5 allows XSS through the Name field when creating/editing a server. The XSS will prompt when editing the Configuration Properties.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4fhw-qjg6-gcq8/GHSA-4fhw-qjg6-gcq8.json b/advisories/unreviewed/2022/05/GHSA-4fhw-qjg6-gcq8/GHSA-4fhw-qjg6-gcq8.json index c057bc7640e..5bdf6803d3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4fhw-qjg6-gcq8/GHSA-4fhw-qjg6-gcq8.json +++ b/advisories/unreviewed/2022/05/GHSA-4fhw-qjg6-gcq8/GHSA-4fhw-qjg6-gcq8.json @@ -7,12 +7,8 @@ "CVE-2021-22365" ], "details": "There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A local attacker can exploit this vulnerability by sending specific message to the target device. Due to insufficient validation of internal message, successful exploit may cause the process and the service abnormal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4ghf-pq62-2jfh/GHSA-4ghf-pq62-2jfh.json b/advisories/unreviewed/2022/05/GHSA-4ghf-pq62-2jfh/GHSA-4ghf-pq62-2jfh.json index 2364ca4d627..142de433375 100644 --- a/advisories/unreviewed/2022/05/GHSA-4ghf-pq62-2jfh/GHSA-4ghf-pq62-2jfh.json +++ b/advisories/unreviewed/2022/05/GHSA-4ghf-pq62-2jfh/GHSA-4ghf-pq62-2jfh.json @@ -7,12 +7,8 @@ "CVE-2021-29950" ], "details": "Thunderbird unprotects a secret OpenPGP key prior to using it for a decryption, signing or key import task. If the task runs into a failure, the secret key may remain in memory in its unprotected state. This vulnerability affects Thunderbird < 78.8.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h2p-c2mf-fq35/GHSA-4h2p-c2mf-fq35.json b/advisories/unreviewed/2022/05/GHSA-4h2p-c2mf-fq35/GHSA-4h2p-c2mf-fq35.json index 0412efba268..e1925986274 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h2p-c2mf-fq35/GHSA-4h2p-c2mf-fq35.json +++ b/advisories/unreviewed/2022/05/GHSA-4h2p-c2mf-fq35/GHSA-4h2p-c2mf-fq35.json @@ -7,12 +7,8 @@ "CVE-2021-32511" ], "details": "QSAN Storage Manager through directory listing vulnerability in ViewBroserList allows remote authenticated attackers to list arbitrary directories via the file path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h39-xvcp-vmwq/GHSA-4h39-xvcp-vmwq.json b/advisories/unreviewed/2022/05/GHSA-4h39-xvcp-vmwq/GHSA-4h39-xvcp-vmwq.json index 6a3f43775b5..d67190b0e42 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h39-xvcp-vmwq/GHSA-4h39-xvcp-vmwq.json +++ b/advisories/unreviewed/2022/05/GHSA-4h39-xvcp-vmwq/GHSA-4h39-xvcp-vmwq.json @@ -7,12 +7,8 @@ "CVE-2021-22349" ], "details": "There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of insufficient input verification may cause the system to restart.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4h89-7jw5-x39f/GHSA-4h89-7jw5-x39f.json b/advisories/unreviewed/2022/05/GHSA-4h89-7jw5-x39f/GHSA-4h89-7jw5-x39f.json index 3e47027202e..9bdc32c584f 100644 --- a/advisories/unreviewed/2022/05/GHSA-4h89-7jw5-x39f/GHSA-4h89-7jw5-x39f.json +++ b/advisories/unreviewed/2022/05/GHSA-4h89-7jw5-x39f/GHSA-4h89-7jw5-x39f.json @@ -7,12 +7,8 @@ "CVE-2005-0404" ], "details": "KMail 1.7.1 in KDE 3.3.2 allows remote attackers to spoof email information, such as whether the email has been digitally signed or encrypted, via HTML formatted email.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hcm-j3j9-cf5f/GHSA-4hcm-j3j9-cf5f.json b/advisories/unreviewed/2022/05/GHSA-4hcm-j3j9-cf5f/GHSA-4hcm-j3j9-cf5f.json index 8575202e2f0..62d57a7f538 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hcm-j3j9-cf5f/GHSA-4hcm-j3j9-cf5f.json +++ b/advisories/unreviewed/2022/05/GHSA-4hcm-j3j9-cf5f/GHSA-4hcm-j3j9-cf5f.json @@ -7,12 +7,8 @@ "CVE-2005-0261" ], "details": "lspath in AIX 5.2, 5.3, and possibly earlier versions, does not drop privileges before processing the -f option, which allows local users to read one line of arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4hqq-j7p9-x52j/GHSA-4hqq-j7p9-x52j.json b/advisories/unreviewed/2022/05/GHSA-4hqq-j7p9-x52j/GHSA-4hqq-j7p9-x52j.json index 986b5c2cdab..005bfd63ebf 100644 --- a/advisories/unreviewed/2022/05/GHSA-4hqq-j7p9-x52j/GHSA-4hqq-j7p9-x52j.json +++ b/advisories/unreviewed/2022/05/GHSA-4hqq-j7p9-x52j/GHSA-4hqq-j7p9-x52j.json @@ -7,12 +7,8 @@ "CVE-2021-24387" ], "details": "The WP Pro Real Estate 7 WordPress theme before 3.1.1 did not properly sanitise the ct_community parameter in its search listing page before outputting it back in it, leading to a reflected Cross-Site Scripting which can be triggered in both unauthenticated or authenticated user context", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4j9j-rqg3-q59r/GHSA-4j9j-rqg3-q59r.json b/advisories/unreviewed/2022/05/GHSA-4j9j-rqg3-q59r/GHSA-4j9j-rqg3-q59r.json index b2a78ae54d4..1bcfaec6465 100644 --- a/advisories/unreviewed/2022/05/GHSA-4j9j-rqg3-q59r/GHSA-4j9j-rqg3-q59r.json +++ b/advisories/unreviewed/2022/05/GHSA-4j9j-rqg3-q59r/GHSA-4j9j-rqg3-q59r.json @@ -7,12 +7,8 @@ "CVE-2005-0619" ], "details": "Einstein 1.0.1 stores sensitive information such as usernames and passwords in plaintext in the registry, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4jq2-84j8-gxjv/GHSA-4jq2-84j8-gxjv.json b/advisories/unreviewed/2022/05/GHSA-4jq2-84j8-gxjv/GHSA-4jq2-84j8-gxjv.json index 461942d359e..ce23e294f6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-4jq2-84j8-gxjv/GHSA-4jq2-84j8-gxjv.json +++ b/advisories/unreviewed/2022/05/GHSA-4jq2-84j8-gxjv/GHSA-4jq2-84j8-gxjv.json @@ -7,12 +7,8 @@ "CVE-2005-0248" ], "details": "The Solaris Management Console (SMC) GUI for Solaris 8 and 9, when creating user accounts that are configured for password aging, creates the accounts with a blank password, which allows remote or local attackers to break into those accounts.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4m78-5jcj-9hxx/GHSA-4m78-5jcj-9hxx.json b/advisories/unreviewed/2022/05/GHSA-4m78-5jcj-9hxx/GHSA-4m78-5jcj-9hxx.json index f67dc907ef6..9d4e50c1a26 100644 --- a/advisories/unreviewed/2022/05/GHSA-4m78-5jcj-9hxx/GHSA-4m78-5jcj-9hxx.json +++ b/advisories/unreviewed/2022/05/GHSA-4m78-5jcj-9hxx/GHSA-4m78-5jcj-9hxx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4mmm-jj36-wmc5/GHSA-4mmm-jj36-wmc5.json b/advisories/unreviewed/2022/05/GHSA-4mmm-jj36-wmc5/GHSA-4mmm-jj36-wmc5.json index d7f41fbf471..c099f11a639 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mmm-jj36-wmc5/GHSA-4mmm-jj36-wmc5.json +++ b/advisories/unreviewed/2022/05/GHSA-4mmm-jj36-wmc5/GHSA-4mmm-jj36-wmc5.json @@ -7,12 +7,8 @@ "CVE-2005-0474" ], "details": "SQL injection vulnerability in the user_valid_crypt function in user.php in WebCalendar 0.9.45 allows remote attackers to execute arbitrary SQL commands via an encoded webcalendar_session cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4mmx-cf65-h8q2/GHSA-4mmx-cf65-h8q2.json b/advisories/unreviewed/2022/05/GHSA-4mmx-cf65-h8q2/GHSA-4mmx-cf65-h8q2.json index 7db1fbd75e3..8ab0aa07ac3 100644 --- a/advisories/unreviewed/2022/05/GHSA-4mmx-cf65-h8q2/GHSA-4mmx-cf65-h8q2.json +++ b/advisories/unreviewed/2022/05/GHSA-4mmx-cf65-h8q2/GHSA-4mmx-cf65-h8q2.json @@ -7,12 +7,8 @@ "CVE-2021-33221" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Unauthenticated API Endpoints.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4pm9-37wq-m3h9/GHSA-4pm9-37wq-m3h9.json b/advisories/unreviewed/2022/05/GHSA-4pm9-37wq-m3h9/GHSA-4pm9-37wq-m3h9.json index 8d46028541e..0e2704a8bfa 100644 --- a/advisories/unreviewed/2022/05/GHSA-4pm9-37wq-m3h9/GHSA-4pm9-37wq-m3h9.json +++ b/advisories/unreviewed/2022/05/GHSA-4pm9-37wq-m3h9/GHSA-4pm9-37wq-m3h9.json @@ -7,12 +7,8 @@ "CVE-2021-34185" ], "details": "Miniaudio 0.10.35 has an integer-based buffer overflow caused by an out-of-bounds left shift in drwav_bytes_to_u32 in miniaudio.h", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4prx-qrq5-wg56/GHSA-4prx-qrq5-wg56.json b/advisories/unreviewed/2022/05/GHSA-4prx-qrq5-wg56/GHSA-4prx-qrq5-wg56.json index 7ef181ab490..650b49f005a 100644 --- a/advisories/unreviewed/2022/05/GHSA-4prx-qrq5-wg56/GHSA-4prx-qrq5-wg56.json +++ b/advisories/unreviewed/2022/05/GHSA-4prx-qrq5-wg56/GHSA-4prx-qrq5-wg56.json @@ -7,12 +7,8 @@ "CVE-2005-0630" ], "details": "sendpm.php in PBLang 4.63 allows remote authenticated users to read arbitrary files via a full pathname in the orig parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4q3p-mjvg-jp72/GHSA-4q3p-mjvg-jp72.json b/advisories/unreviewed/2022/05/GHSA-4q3p-mjvg-jp72/GHSA-4q3p-mjvg-jp72.json index 87a6ed32456..593647166c0 100644 --- a/advisories/unreviewed/2022/05/GHSA-4q3p-mjvg-jp72/GHSA-4q3p-mjvg-jp72.json +++ b/advisories/unreviewed/2022/05/GHSA-4q3p-mjvg-jp72/GHSA-4q3p-mjvg-jp72.json @@ -7,12 +7,8 @@ "CVE-2021-22377" ], "details": "There is a command injection vulnerability in S12700 V200R019C00SPC500, S2700 V200R019C00SPC500, S5700 V200R019C00SPC500, S6700 V200R019C00SPC500 and S7700 V200R019C00SPC500. A module does not verify specific input sufficiently. Attackers can exploit this vulnerability by sending malicious parameters to inject command. This can compromise normal service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4qgq-3ppm-rwc7/GHSA-4qgq-3ppm-rwc7.json b/advisories/unreviewed/2022/05/GHSA-4qgq-3ppm-rwc7/GHSA-4qgq-3ppm-rwc7.json index 80254196589..e7bc9a20ed1 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qgq-3ppm-rwc7/GHSA-4qgq-3ppm-rwc7.json +++ b/advisories/unreviewed/2022/05/GHSA-4qgq-3ppm-rwc7/GHSA-4qgq-3ppm-rwc7.json @@ -7,12 +7,8 @@ "CVE-2005-0424" ], "details": "Unknown vulnerability in the delete.asp program in certain versions of ASPjar Guestbook allows remote attackers to delete messages. NOTE: there is insufficient information to know if this is the same issue as CVE-2002-1730.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4qqf-xjmf-3h2v/GHSA-4qqf-xjmf-3h2v.json b/advisories/unreviewed/2022/05/GHSA-4qqf-xjmf-3h2v/GHSA-4qqf-xjmf-3h2v.json index db338b61ee9..ac4ca0cef58 100644 --- a/advisories/unreviewed/2022/05/GHSA-4qqf-xjmf-3h2v/GHSA-4qqf-xjmf-3h2v.json +++ b/advisories/unreviewed/2022/05/GHSA-4qqf-xjmf-3h2v/GHSA-4qqf-xjmf-3h2v.json @@ -7,12 +7,8 @@ "CVE-2021-32519" ], "details": "Use of password hash with insufficient computational effort vulnerability in QSAN Storage Manager, XEVO, SANOS allows remote attackers to recover the plain-text password by brute-forcing the MD5 hash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rcx-jwpr-7mp7/GHSA-4rcx-jwpr-7mp7.json b/advisories/unreviewed/2022/05/GHSA-4rcx-jwpr-7mp7/GHSA-4rcx-jwpr-7mp7.json index 549b81c93df..2f8418e212e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rcx-jwpr-7mp7/GHSA-4rcx-jwpr-7mp7.json +++ b/advisories/unreviewed/2022/05/GHSA-4rcx-jwpr-7mp7/GHSA-4rcx-jwpr-7mp7.json @@ -7,12 +7,8 @@ "CVE-2005-0411" ], "details": "Directory traversal vulnerability in index.php for CitrusDB 0.3.6 and earlier allows remote attackers and local users to include arbitrary PHP files via .. (dot dot) sequences in the load parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4rp5-rc8p-7x4x/GHSA-4rp5-rc8p-7x4x.json b/advisories/unreviewed/2022/05/GHSA-4rp5-rc8p-7x4x/GHSA-4rp5-rc8p-7x4x.json index a50bba79a8d..2b5f8a695bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rp5-rc8p-7x4x/GHSA-4rp5-rc8p-7x4x.json +++ b/advisories/unreviewed/2022/05/GHSA-4rp5-rc8p-7x4x/GHSA-4rp5-rc8p-7x4x.json @@ -7,12 +7,8 @@ "CVE-2020-20472" ], "details": "White Shark System (WSS) 1.3.2 has a sensitive information disclosure vulnerability. The if_get_addbook.php file does not have an authentication operation. Remote attackers can obtain username information for all users of the current site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4rwq-m5m5-h79g/GHSA-4rwq-m5m5-h79g.json b/advisories/unreviewed/2022/05/GHSA-4rwq-m5m5-h79g/GHSA-4rwq-m5m5-h79g.json index f9cf3fa266a..0b815277d13 100644 --- a/advisories/unreviewed/2022/05/GHSA-4rwq-m5m5-h79g/GHSA-4rwq-m5m5-h79g.json +++ b/advisories/unreviewed/2022/05/GHSA-4rwq-m5m5-h79g/GHSA-4rwq-m5m5-h79g.json @@ -7,12 +7,8 @@ "CVE-2005-0259" ], "details": "phpBB 2.0.11, and possibly other versions, with remote avatars and avatar uploading enabled, allows local users to read arbitrary files by providing both a local and remote location for an avatar, then modifying the \"Upload Avatar from a URL:\" field to reference the target file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4wqw-j3vx-3hwj/GHSA-4wqw-j3vx-3hwj.json b/advisories/unreviewed/2022/05/GHSA-4wqw-j3vx-3hwj/GHSA-4wqw-j3vx-3hwj.json index be6e08bdf4f..1e70c4e522e 100644 --- a/advisories/unreviewed/2022/05/GHSA-4wqw-j3vx-3hwj/GHSA-4wqw-j3vx-3hwj.json +++ b/advisories/unreviewed/2022/05/GHSA-4wqw-j3vx-3hwj/GHSA-4wqw-j3vx-3hwj.json @@ -7,12 +7,8 @@ "CVE-2021-22340" ], "details": "There is a multiple threads race condition vulnerability in Huawei product. A race condition exists for concurrent I/O read by multiple threads. An attacker with the root permission can exploit this vulnerability by performing some operations. Successful exploitation of this vulnerability may cause the system to crash. Affected product versions include: ManageOne 6.5.1.SPC200, 8.0.0,8.0.0-LCND81, 8.0.0.SPC100, 8.0.1,8.0.RC2, 8.0.RC3, 8.0.RC3.SPC100;SMC2.0 V600R019C10SPC700,V600R019C10SPC702, V600R019C10SPC703,V600R019C10SPC800, V600R019C10SPC900, V600R019C10SPC910, V600R019C10SPC920, V600R019C10SPC921, V600R019C10SPC922, V600R019C10SPC930, V600R019C10SPC931", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-4x6j-g8gj-v4fg/GHSA-4x6j-g8gj-v4fg.json b/advisories/unreviewed/2022/05/GHSA-4x6j-g8gj-v4fg/GHSA-4x6j-g8gj-v4fg.json index d5685c85c87..4c5fc8dd237 100644 --- a/advisories/unreviewed/2022/05/GHSA-4x6j-g8gj-v4fg/GHSA-4x6j-g8gj-v4fg.json +++ b/advisories/unreviewed/2022/05/GHSA-4x6j-g8gj-v4fg/GHSA-4x6j-g8gj-v4fg.json @@ -7,12 +7,8 @@ "CVE-2005-0350" ], "details": "Heap-based buffer overflow in multiple F-Secure Anti-Virus and Internet Security products allows remote attackers to execute arbitrary code via a crafted ARJ archive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-4xqg-rgj7-cf6v/GHSA-4xqg-rgj7-cf6v.json b/advisories/unreviewed/2022/05/GHSA-4xqg-rgj7-cf6v/GHSA-4xqg-rgj7-cf6v.json index 9bba7d052c6..56851935a3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-4xqg-rgj7-cf6v/GHSA-4xqg-rgj7-cf6v.json +++ b/advisories/unreviewed/2022/05/GHSA-4xqg-rgj7-cf6v/GHSA-4xqg-rgj7-cf6v.json @@ -7,12 +7,8 @@ "CVE-2005-0249" ], "details": "Heap-based buffer overflow in the DEC2EXE module for Symantec AntiVirus Library allows remote attackers to execute arbitrary code via a UPX compressed file containing a negative virtual offset to a crafted PE header.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-523f-pwgc-24f9/GHSA-523f-pwgc-24f9.json b/advisories/unreviewed/2022/05/GHSA-523f-pwgc-24f9/GHSA-523f-pwgc-24f9.json index 3f2c4f4dea8..697a51245fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-523f-pwgc-24f9/GHSA-523f-pwgc-24f9.json +++ b/advisories/unreviewed/2022/05/GHSA-523f-pwgc-24f9/GHSA-523f-pwgc-24f9.json @@ -7,12 +7,8 @@ "CVE-2021-33531" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable use of hard-coded credentials vulnerability exists in multiple iw_* utilities. The device operating system contains an undocumented encryption password, allowing for the creation of custom diagnostic scripts. An attacker can send diagnostic scripts while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-52vr-v6fr-rfg8/GHSA-52vr-v6fr-rfg8.json b/advisories/unreviewed/2022/05/GHSA-52vr-v6fr-rfg8/GHSA-52vr-v6fr-rfg8.json index 6d22171afed..52bdaec4558 100644 --- a/advisories/unreviewed/2022/05/GHSA-52vr-v6fr-rfg8/GHSA-52vr-v6fr-rfg8.json +++ b/advisories/unreviewed/2022/05/GHSA-52vr-v6fr-rfg8/GHSA-52vr-v6fr-rfg8.json @@ -7,12 +7,8 @@ "CVE-2021-36125" ], "details": "An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalRenameRequest page is vulnerable to infinite loops and denial of service attacks when a user's current username is beyond an arbitrary maximum configuration value (MaxNameChars).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-53qv-629p-53cf/GHSA-53qv-629p-53cf.json b/advisories/unreviewed/2022/05/GHSA-53qv-629p-53cf/GHSA-53qv-629p-53cf.json index 41d1341a50e..1e7856e7666 100644 --- a/advisories/unreviewed/2022/05/GHSA-53qv-629p-53cf/GHSA-53qv-629p-53cf.json +++ b/advisories/unreviewed/2022/05/GHSA-53qv-629p-53cf/GHSA-53qv-629p-53cf.json @@ -7,12 +7,8 @@ "CVE-2005-0483" ], "details": "Multiple directory traversal vulnerabilities in sitenfo.sh, sitezipchk.sh, and siteziplist.sh in Glftpd 1.26 to 2.00 allow remote authenticated users to (1) determine the existence of arbitrary files, (2) list files in restricted directories, or (3) read arbitrary files from within ZIP or gzip files, via .. (dot dot) sequences and globbing (\"*\") characters in a SITE NFO command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-55ww-f6rg-mqhm/GHSA-55ww-f6rg-mqhm.json b/advisories/unreviewed/2022/05/GHSA-55ww-f6rg-mqhm/GHSA-55ww-f6rg-mqhm.json index 9a753306f81..781571999d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-55ww-f6rg-mqhm/GHSA-55ww-f6rg-mqhm.json +++ b/advisories/unreviewed/2022/05/GHSA-55ww-f6rg-mqhm/GHSA-55ww-f6rg-mqhm.json @@ -7,12 +7,8 @@ "CVE-2005-0359" ], "details": "The Legato PortMapper in EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 does not restrict access to the pmap_set and pmap_unset commands, which allows remote attackers to (1) cause a denial of service by using pmap_unset to un-register a NetWorker service, or (2) obtain sensitive information from NetWorker services by using pmap_set to register a new service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-562r-pp42-gqc3/GHSA-562r-pp42-gqc3.json b/advisories/unreviewed/2022/05/GHSA-562r-pp42-gqc3/GHSA-562r-pp42-gqc3.json index 14b8ac7150e..1cd82a50d46 100644 --- a/advisories/unreviewed/2022/05/GHSA-562r-pp42-gqc3/GHSA-562r-pp42-gqc3.json +++ b/advisories/unreviewed/2022/05/GHSA-562r-pp42-gqc3/GHSA-562r-pp42-gqc3.json @@ -7,12 +7,8 @@ "CVE-2021-36147" ], "details": "An issue was discovered in ACRN before 2.5. It allows a devicemodel/hw/pci/virtio/virtio_net.c virtio_net_ping_rxq NULL pointer dereference for vq->used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-565p-wmq6-hx4g/GHSA-565p-wmq6-hx4g.json b/advisories/unreviewed/2022/05/GHSA-565p-wmq6-hx4g/GHSA-565p-wmq6-hx4g.json index 8c731e23131..474437925dd 100644 --- a/advisories/unreviewed/2022/05/GHSA-565p-wmq6-hx4g/GHSA-565p-wmq6-hx4g.json +++ b/advisories/unreviewed/2022/05/GHSA-565p-wmq6-hx4g/GHSA-565p-wmq6-hx4g.json @@ -7,12 +7,8 @@ "CVE-2021-28574" ], "details": "Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-56vh-3jjj-vm67/GHSA-56vh-3jjj-vm67.json b/advisories/unreviewed/2022/05/GHSA-56vh-3jjj-vm67/GHSA-56vh-3jjj-vm67.json index a5decff48ea..9f9024f2449 100644 --- a/advisories/unreviewed/2022/05/GHSA-56vh-3jjj-vm67/GHSA-56vh-3jjj-vm67.json +++ b/advisories/unreviewed/2022/05/GHSA-56vh-3jjj-vm67/GHSA-56vh-3jjj-vm67.json @@ -7,12 +7,8 @@ "CVE-2021-34376" ], "details": "Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 5 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to denial of service, escalation of privileges, and information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-573f-863h-pr75/GHSA-573f-863h-pr75.json b/advisories/unreviewed/2022/05/GHSA-573f-863h-pr75/GHSA-573f-863h-pr75.json index 69b77e56661..92c9aea3eef 100644 --- a/advisories/unreviewed/2022/05/GHSA-573f-863h-pr75/GHSA-573f-863h-pr75.json +++ b/advisories/unreviewed/2022/05/GHSA-573f-863h-pr75/GHSA-573f-863h-pr75.json @@ -7,12 +7,8 @@ "CVE-2020-20471" ], "details": "White Shark System (WSS) 1.3.2 has an unauthorized access vulnerability in default_user_edit.php, remote attackers can exploit this vulnerability to escalate to admin privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-574f-8c2v-j6gg/GHSA-574f-8c2v-j6gg.json b/advisories/unreviewed/2022/05/GHSA-574f-8c2v-j6gg/GHSA-574f-8c2v-j6gg.json index 531299a4479..783230838d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-574f-8c2v-j6gg/GHSA-574f-8c2v-j6gg.json +++ b/advisories/unreviewed/2022/05/GHSA-574f-8c2v-j6gg/GHSA-574f-8c2v-j6gg.json @@ -7,12 +7,8 @@ "CVE-2005-0453" ], "details": "The buffer_urldecode function in Lighttpd 1.3.7 and earlier does not properly handle control characters, which allows remote attackers to obtain the source code for CGI and FastCGI scripts via a URL with a %00 (null) character after the file extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-58g2-fffr-4mcc/GHSA-58g2-fffr-4mcc.json b/advisories/unreviewed/2022/05/GHSA-58g2-fffr-4mcc/GHSA-58g2-fffr-4mcc.json index 22af0cd049c..58391186488 100644 --- a/advisories/unreviewed/2022/05/GHSA-58g2-fffr-4mcc/GHSA-58g2-fffr-4mcc.json +++ b/advisories/unreviewed/2022/05/GHSA-58g2-fffr-4mcc/GHSA-58g2-fffr-4mcc.json @@ -7,12 +7,8 @@ "CVE-2021-35047" ], "details": "Vulnerability in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker with user level access to the CLI to inject root level commands into the component and neighboring Fidelis components. The vulnerability is present in Fidelis Network and Deception versions prior to 9.3.7 and in version 9.4. Patches and updates are available to address this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5962-j3pj-rf64/GHSA-5962-j3pj-rf64.json b/advisories/unreviewed/2022/05/GHSA-5962-j3pj-rf64/GHSA-5962-j3pj-rf64.json index 0b583807c6e..584de89f6bf 100644 --- a/advisories/unreviewed/2022/05/GHSA-5962-j3pj-rf64/GHSA-5962-j3pj-rf64.json +++ b/advisories/unreviewed/2022/05/GHSA-5962-j3pj-rf64/GHSA-5962-j3pj-rf64.json @@ -7,12 +7,8 @@ "CVE-2005-0371" ], "details": "Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 and earlier allow remote attackers to cause a denial of service (freeze) via a large number of player connections that do not send any data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-59pm-73xx-3pvc/GHSA-59pm-73xx-3pvc.json b/advisories/unreviewed/2022/05/GHSA-59pm-73xx-3pvc/GHSA-59pm-73xx-3pvc.json index 643897552ab..e57c001e2c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-59pm-73xx-3pvc/GHSA-59pm-73xx-3pvc.json +++ b/advisories/unreviewed/2022/05/GHSA-59pm-73xx-3pvc/GHSA-59pm-73xx-3pvc.json @@ -7,12 +7,8 @@ "CVE-2021-27649" ], "details": "Use after free vulnerability in file transfer protocol component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c3m-99wv-xc22/GHSA-5c3m-99wv-xc22.json b/advisories/unreviewed/2022/05/GHSA-5c3m-99wv-xc22/GHSA-5c3m-99wv-xc22.json index 3b71174ac62..40b3c7a34eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c3m-99wv-xc22/GHSA-5c3m-99wv-xc22.json +++ b/advisories/unreviewed/2022/05/GHSA-5c3m-99wv-xc22/GHSA-5c3m-99wv-xc22.json @@ -7,12 +7,8 @@ "CVE-2021-34375" ], "details": "Trusty contains a vulnerability in all trusted applications (TAs) where the stack cookie was not randomized, which might result in stack-based buffer overflow, leading to denial of service, escalation of privileges, and information disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5c56-hjgm-2mxx/GHSA-5c56-hjgm-2mxx.json b/advisories/unreviewed/2022/05/GHSA-5c56-hjgm-2mxx/GHSA-5c56-hjgm-2mxx.json index 7dc812a94a9..27de17a6aee 100644 --- a/advisories/unreviewed/2022/05/GHSA-5c56-hjgm-2mxx/GHSA-5c56-hjgm-2mxx.json +++ b/advisories/unreviewed/2022/05/GHSA-5c56-hjgm-2mxx/GHSA-5c56-hjgm-2mxx.json @@ -7,12 +7,8 @@ "CVE-2005-0265" ], "details": "Multiple SQL injection vulnerabilities in browse.php in OWL 0.7 and 0.8 allow remote attackers to execute arbitrary SQL commands via the (1) parent or (2) sortposted parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5cjm-prp9-j369/GHSA-5cjm-prp9-j369.json b/advisories/unreviewed/2022/05/GHSA-5cjm-prp9-j369/GHSA-5cjm-prp9-j369.json index 2df8ce8ce33..531ad8811d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5cjm-prp9-j369/GHSA-5cjm-prp9-j369.json +++ b/advisories/unreviewed/2022/05/GHSA-5cjm-prp9-j369/GHSA-5cjm-prp9-j369.json @@ -7,12 +7,8 @@ "CVE-2020-36408" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Add Shortcut\" parameter under the \"Manage Shortcuts\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fcv-4gx2-vp6j/GHSA-5fcv-4gx2-vp6j.json b/advisories/unreviewed/2022/05/GHSA-5fcv-4gx2-vp6j/GHSA-5fcv-4gx2-vp6j.json index 87bd49fea83..b3cc9b7cff8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fcv-4gx2-vp6j/GHSA-5fcv-4gx2-vp6j.json +++ b/advisories/unreviewed/2022/05/GHSA-5fcv-4gx2-vp6j/GHSA-5fcv-4gx2-vp6j.json @@ -7,12 +7,8 @@ "CVE-2005-0460" ], "details": "index.php in MercuryBoard 1.0.x and 1.1.x allows remote attackers to obtain sensitive information by setting the debug parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5fjh-995h-9rh5/GHSA-5fjh-995h-9rh5.json b/advisories/unreviewed/2022/05/GHSA-5fjh-995h-9rh5/GHSA-5fjh-995h-9rh5.json index 42a7423b610..f53c91c526c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fjh-995h-9rh5/GHSA-5fjh-995h-9rh5.json +++ b/advisories/unreviewed/2022/05/GHSA-5fjh-995h-9rh5/GHSA-5fjh-995h-9rh5.json @@ -7,12 +7,8 @@ "CVE-2020-21130" ], "details": "Cross Site Scripting (XSS) vulnerability in HisiPHP 2.0.8 via the group name in addgroup.html.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5fvj-fm55-q8qx/GHSA-5fvj-fm55-q8qx.json b/advisories/unreviewed/2022/05/GHSA-5fvj-fm55-q8qx/GHSA-5fvj-fm55-q8qx.json index 022c84ebaf4..3ec67dd6630 100644 --- a/advisories/unreviewed/2022/05/GHSA-5fvj-fm55-q8qx/GHSA-5fvj-fm55-q8qx.json +++ b/advisories/unreviewed/2022/05/GHSA-5fvj-fm55-q8qx/GHSA-5fvj-fm55-q8qx.json @@ -7,12 +7,8 @@ "CVE-2020-36407" ], "details": "libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5g7h-5qvh-cr9r/GHSA-5g7h-5qvh-cr9r.json b/advisories/unreviewed/2022/05/GHSA-5g7h-5qvh-cr9r/GHSA-5g7h-5qvh-cr9r.json index 49915559579..fb9c134f2f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5g7h-5qvh-cr9r/GHSA-5g7h-5qvh-cr9r.json +++ b/advisories/unreviewed/2022/05/GHSA-5g7h-5qvh-cr9r/GHSA-5g7h-5qvh-cr9r.json @@ -7,12 +7,8 @@ "CVE-2021-28803" ], "details": "This issue affects: QNAP Systems Inc. Q'center versions prior to 1.11.1004.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5gmf-qpg2-cw88/GHSA-5gmf-qpg2-cw88.json b/advisories/unreviewed/2022/05/GHSA-5gmf-qpg2-cw88/GHSA-5gmf-qpg2-cw88.json index 8a8257c5683..06e440cfe11 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gmf-qpg2-cw88/GHSA-5gmf-qpg2-cw88.json +++ b/advisories/unreviewed/2022/05/GHSA-5gmf-qpg2-cw88/GHSA-5gmf-qpg2-cw88.json @@ -7,12 +7,8 @@ "CVE-2005-0330" ], "details": "Buffer overflow in Painkiller 1.35 and earlier, and possibly other versions before 1.61, allows remote authenticated users to cause a denial of service and possibly execute arbitrary code via a long cd-key hash.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5gvc-4qph-j93r/GHSA-5gvc-4qph-j93r.json b/advisories/unreviewed/2022/05/GHSA-5gvc-4qph-j93r/GHSA-5gvc-4qph-j93r.json index a3c14826859..8ea449f8a3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5gvc-4qph-j93r/GHSA-5gvc-4qph-j93r.json +++ b/advisories/unreviewed/2022/05/GHSA-5gvc-4qph-j93r/GHSA-5gvc-4qph-j93r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5h68-fmrq-j5r6/GHSA-5h68-fmrq-j5r6.json b/advisories/unreviewed/2022/05/GHSA-5h68-fmrq-j5r6/GHSA-5h68-fmrq-j5r6.json index 72238db885c..1d392bee70d 100644 --- a/advisories/unreviewed/2022/05/GHSA-5h68-fmrq-j5r6/GHSA-5h68-fmrq-j5r6.json +++ b/advisories/unreviewed/2022/05/GHSA-5h68-fmrq-j5r6/GHSA-5h68-fmrq-j5r6.json @@ -7,12 +7,8 @@ "CVE-2021-36083" ], "details": "KDE KImageFormats 5.70.0 through 5.81.0 has a stack-based buffer overflow in XCFImageFormat::loadTileRLE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hfr-xvmr-9cjw/GHSA-5hfr-xvmr-9cjw.json b/advisories/unreviewed/2022/05/GHSA-5hfr-xvmr-9cjw/GHSA-5hfr-xvmr-9cjw.json index a9ad813d36e..d3059953c01 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hfr-xvmr-9cjw/GHSA-5hfr-xvmr-9cjw.json +++ b/advisories/unreviewed/2022/05/GHSA-5hfr-xvmr-9cjw/GHSA-5hfr-xvmr-9cjw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hh3-3gxg-jq86/GHSA-5hh3-3gxg-jq86.json b/advisories/unreviewed/2022/05/GHSA-5hh3-3gxg-jq86/GHSA-5hh3-3gxg-jq86.json index 32df6fd3376..dfa0788f204 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hh3-3gxg-jq86/GHSA-5hh3-3gxg-jq86.json +++ b/advisories/unreviewed/2022/05/GHSA-5hh3-3gxg-jq86/GHSA-5hh3-3gxg-jq86.json @@ -7,12 +7,8 @@ "CVE-2021-29676" ], "details": "IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) is vulnerable to link injection. By persuading a victim to click on a specially-crafted URL link, a remote attacker could exploit this vulnerability to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5hm9-x5vh-9wp6/GHSA-5hm9-x5vh-9wp6.json b/advisories/unreviewed/2022/05/GHSA-5hm9-x5vh-9wp6/GHSA-5hm9-x5vh-9wp6.json index 2a023cadecb..61c7394d124 100644 --- a/advisories/unreviewed/2022/05/GHSA-5hm9-x5vh-9wp6/GHSA-5hm9-x5vh-9wp6.json +++ b/advisories/unreviewed/2022/05/GHSA-5hm9-x5vh-9wp6/GHSA-5hm9-x5vh-9wp6.json @@ -7,12 +7,8 @@ "CVE-2005-0214" ], "details": "Directory traversal vulnerability in Simple PHP Blog (SPHPBlog) 0.3.7c allows remote attackers to read or create arbitrary files via a .. (dot dot) in the entry parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5j5j-gh4v-9q6c/GHSA-5j5j-gh4v-9q6c.json b/advisories/unreviewed/2022/05/GHSA-5j5j-gh4v-9q6c/GHSA-5j5j-gh4v-9q6c.json index e3516e168eb..370f9edf9b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5j5j-gh4v-9q6c/GHSA-5j5j-gh4v-9q6c.json +++ b/advisories/unreviewed/2022/05/GHSA-5j5j-gh4v-9q6c/GHSA-5j5j-gh4v-9q6c.json @@ -7,12 +7,8 @@ "CVE-2021-22382" ], "details": "Huawei LTE USB Dongle products have an improper permission assignment vulnerability. An attacker can locally access and log in to a PC to induce a user to install a specially crafted application. After successfully exploiting this vulnerability, the attacker can perform unauthenticated operations. Affected product versions include:E3372 E3372h-153TCPU-V200R002B333D01SP00C00.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jm7-j5m8-gw23/GHSA-5jm7-j5m8-gw23.json b/advisories/unreviewed/2022/05/GHSA-5jm7-j5m8-gw23/GHSA-5jm7-j5m8-gw23.json index 137574dc881..ce0091e0af0 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jm7-j5m8-gw23/GHSA-5jm7-j5m8-gw23.json +++ b/advisories/unreviewed/2022/05/GHSA-5jm7-j5m8-gw23/GHSA-5jm7-j5m8-gw23.json @@ -7,12 +7,8 @@ "CVE-2021-22368" ], "details": "There is a Permission Control Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect normal use of the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5jw6-5695-7hfj/GHSA-5jw6-5695-7hfj.json b/advisories/unreviewed/2022/05/GHSA-5jw6-5695-7hfj/GHSA-5jw6-5695-7hfj.json index df0e13d26f5..1d06eebcc42 100644 --- a/advisories/unreviewed/2022/05/GHSA-5jw6-5695-7hfj/GHSA-5jw6-5695-7hfj.json +++ b/advisories/unreviewed/2022/05/GHSA-5jw6-5695-7hfj/GHSA-5jw6-5695-7hfj.json @@ -7,12 +7,8 @@ "CVE-2005-0288" ], "details": "The change password functionality in Bottomline Webseries Payment Application does not require the old password when users enter a new password, which could allow remote authenticated users to change other users' passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5mhc-fpvf-fjp2/GHSA-5mhc-fpvf-fjp2.json b/advisories/unreviewed/2022/05/GHSA-5mhc-fpvf-fjp2/GHSA-5mhc-fpvf-fjp2.json index 5112c59391e..9d217702162 100644 --- a/advisories/unreviewed/2022/05/GHSA-5mhc-fpvf-fjp2/GHSA-5mhc-fpvf-fjp2.json +++ b/advisories/unreviewed/2022/05/GHSA-5mhc-fpvf-fjp2/GHSA-5mhc-fpvf-fjp2.json @@ -7,12 +7,8 @@ "CVE-2021-29677" ], "details": "IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5pvv-9846-fqj9/GHSA-5pvv-9846-fqj9.json b/advisories/unreviewed/2022/05/GHSA-5pvv-9846-fqj9/GHSA-5pvv-9846-fqj9.json index a0e9e754be6..15f2b50a647 100644 --- a/advisories/unreviewed/2022/05/GHSA-5pvv-9846-fqj9/GHSA-5pvv-9846-fqj9.json +++ b/advisories/unreviewed/2022/05/GHSA-5pvv-9846-fqj9/GHSA-5pvv-9846-fqj9.json @@ -7,12 +7,8 @@ "CVE-2021-32233" ], "details": "SmarterTools SmarterMail before Build 7776 allows XSS.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5qcc-6qwh-vj53/GHSA-5qcc-6qwh-vj53.json b/advisories/unreviewed/2022/05/GHSA-5qcc-6qwh-vj53/GHSA-5qcc-6qwh-vj53.json index 0a6ce0f7b77..d5a08047b3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-5qcc-6qwh-vj53/GHSA-5qcc-6qwh-vj53.json +++ b/advisories/unreviewed/2022/05/GHSA-5qcc-6qwh-vj53/GHSA-5qcc-6qwh-vj53.json @@ -7,12 +7,8 @@ "CVE-2021-32527" ], "details": "Path traversal vulnerability in QSAN Storage Manager allows remote unauthenticated attackers to download arbitrary files thru injecting file path in download function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rjh-29pm-3mx4/GHSA-5rjh-29pm-3mx4.json b/advisories/unreviewed/2022/05/GHSA-5rjh-29pm-3mx4/GHSA-5rjh-29pm-3mx4.json index 0278404d772..f14111042b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rjh-29pm-3mx4/GHSA-5rjh-29pm-3mx4.json +++ b/advisories/unreviewed/2022/05/GHSA-5rjh-29pm-3mx4/GHSA-5rjh-29pm-3mx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rjh-phx5-w966/GHSA-5rjh-phx5-w966.json b/advisories/unreviewed/2022/05/GHSA-5rjh-phx5-w966/GHSA-5rjh-phx5-w966.json index 1ef543d386c..ebe7183865f 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rjh-phx5-w966/GHSA-5rjh-phx5-w966.json +++ b/advisories/unreviewed/2022/05/GHSA-5rjh-phx5-w966/GHSA-5rjh-phx5-w966.json @@ -7,12 +7,8 @@ "CVE-2020-22249" ], "details": "Remote Code Execution vulnerability in phplist 3.5.1. The application does not check any file extensions stored in the plugin zip file, Uploading a malicious plugin which contains the php files with extensions like PHP,phtml,php7 will be copied to the plugins directory which would lead to the remote code execution", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5rxq-6r3q-5xj6/GHSA-5rxq-6r3q-5xj6.json b/advisories/unreviewed/2022/05/GHSA-5rxq-6r3q-5xj6/GHSA-5rxq-6r3q-5xj6.json index ae6921b97df..f3de1ecf9f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-5rxq-6r3q-5xj6/GHSA-5rxq-6r3q-5xj6.json +++ b/advisories/unreviewed/2022/05/GHSA-5rxq-6r3q-5xj6/GHSA-5rxq-6r3q-5xj6.json @@ -7,12 +7,8 @@ "CVE-2005-0337" ], "details": "Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5vrm-649w-qm9w/GHSA-5vrm-649w-qm9w.json b/advisories/unreviewed/2022/05/GHSA-5vrm-649w-qm9w/GHSA-5vrm-649w-qm9w.json index 809fdb97c43..7a2ad37ddb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-5vrm-649w-qm9w/GHSA-5vrm-649w-qm9w.json +++ b/advisories/unreviewed/2022/05/GHSA-5vrm-649w-qm9w/GHSA-5vrm-649w-qm9w.json @@ -7,12 +7,8 @@ "CVE-2005-0441" ], "details": "Multiple stack-based buffer overflows in Sybase Adaptive Server Enterprise (ASE) 12.x before 12.5.3 ESD#1 allow remote authenticated users to execute arbitrary code via the (1) attrib_valid function, (2) covert function, (3) declare statement, or (4) a crafted query plan, or remote authenticated users with database owner or \"sa\" role privileges to execute arbitrary code via (5) a crafted install java statement.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-5wg2-97mv-rhr7/GHSA-5wg2-97mv-rhr7.json b/advisories/unreviewed/2022/05/GHSA-5wg2-97mv-rhr7/GHSA-5wg2-97mv-rhr7.json index 64d01ef1551..4e0f58d3b89 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wg2-97mv-rhr7/GHSA-5wg2-97mv-rhr7.json +++ b/advisories/unreviewed/2022/05/GHSA-5wg2-97mv-rhr7/GHSA-5wg2-97mv-rhr7.json @@ -7,12 +7,8 @@ "CVE-2021-35046" ], "details": "A session fixation vulnerability was discovered in Ice Hrm 29.0.0 OS which allows an attacker to hijack a valid user session via a crafted session cookie.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5wm3-rmmc-5m63/GHSA-5wm3-rmmc-5m63.json b/advisories/unreviewed/2022/05/GHSA-5wm3-rmmc-5m63/GHSA-5wm3-rmmc-5m63.json index 2442ab3c3f4..b10a588506a 100644 --- a/advisories/unreviewed/2022/05/GHSA-5wm3-rmmc-5m63/GHSA-5wm3-rmmc-5m63.json +++ b/advisories/unreviewed/2022/05/GHSA-5wm3-rmmc-5m63/GHSA-5wm3-rmmc-5m63.json @@ -7,12 +7,8 @@ "CVE-2021-33532" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in the iw_webs functionality. A specially crafted diagnostic script file name can cause user input to be reflected in a subsequent iw_system call, resulting in remote control over the device. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5x29-fwcc-jm29/GHSA-5x29-fwcc-jm29.json b/advisories/unreviewed/2022/05/GHSA-5x29-fwcc-jm29/GHSA-5x29-fwcc-jm29.json index 70459454290..219389e94d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-5x29-fwcc-jm29/GHSA-5x29-fwcc-jm29.json +++ b/advisories/unreviewed/2022/05/GHSA-5x29-fwcc-jm29/GHSA-5x29-fwcc-jm29.json @@ -7,12 +7,8 @@ "CVE-2021-36081" ], "details": "Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-5xxc-5648-x3p2/GHSA-5xxc-5648-x3p2.json b/advisories/unreviewed/2022/05/GHSA-5xxc-5648-x3p2/GHSA-5xxc-5648-x3p2.json index 4f658ec0b47..67fbb0e5b0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-5xxc-5648-x3p2/GHSA-5xxc-5648-x3p2.json +++ b/advisories/unreviewed/2022/05/GHSA-5xxc-5648-x3p2/GHSA-5xxc-5648-x3p2.json @@ -7,12 +7,8 @@ "CVE-2005-0378" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Horde 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) group parameter to prefs.php or (2) url parameter to index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6269-grv3-jc94/GHSA-6269-grv3-jc94.json b/advisories/unreviewed/2022/05/GHSA-6269-grv3-jc94/GHSA-6269-grv3-jc94.json index 8cf96ffacf5..12adecadf09 100644 --- a/advisories/unreviewed/2022/05/GHSA-6269-grv3-jc94/GHSA-6269-grv3-jc94.json +++ b/advisories/unreviewed/2022/05/GHSA-6269-grv3-jc94/GHSA-6269-grv3-jc94.json @@ -7,12 +7,8 @@ "CVE-2020-27511" ], "details": "An issue was discovered in the stripTags and unescapeHTML components in Prototype 1.7.3 version 1.6 and below where an attacker can cause a Regular Expression Denial of Service (ReDOS) through stripping crafted HTML tags.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62c4-74jp-grjc/GHSA-62c4-74jp-grjc.json b/advisories/unreviewed/2022/05/GHSA-62c4-74jp-grjc/GHSA-62c4-74jp-grjc.json index d28816c6e19..7e9a92f1564 100644 --- a/advisories/unreviewed/2022/05/GHSA-62c4-74jp-grjc/GHSA-62c4-74jp-grjc.json +++ b/advisories/unreviewed/2022/05/GHSA-62c4-74jp-grjc/GHSA-62c4-74jp-grjc.json @@ -7,12 +7,8 @@ "CVE-2005-0421" ], "details": "DelphiTurk FTP 1.0 stores usernames and passwords in the profile.dat file, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-62f6-qcp7-pw2w/GHSA-62f6-qcp7-pw2w.json b/advisories/unreviewed/2022/05/GHSA-62f6-qcp7-pw2w/GHSA-62f6-qcp7-pw2w.json index 6c430ffe6fd..24cdff401c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-62f6-qcp7-pw2w/GHSA-62f6-qcp7-pw2w.json +++ b/advisories/unreviewed/2022/05/GHSA-62f6-qcp7-pw2w/GHSA-62f6-qcp7-pw2w.json @@ -7,12 +7,8 @@ "CVE-2021-21090" ], "details": "Adobe InCopy version 16.0 (and earlier) is affected by an path traversal vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62mr-22qr-vwm9/GHSA-62mr-22qr-vwm9.json b/advisories/unreviewed/2022/05/GHSA-62mr-22qr-vwm9/GHSA-62mr-22qr-vwm9.json index 8e5893ec87f..b4228754711 100644 --- a/advisories/unreviewed/2022/05/GHSA-62mr-22qr-vwm9/GHSA-62mr-22qr-vwm9.json +++ b/advisories/unreviewed/2022/05/GHSA-62mr-22qr-vwm9/GHSA-62mr-22qr-vwm9.json @@ -7,12 +7,8 @@ "CVE-2020-23205" ], "details": "A stored cross site scripting (XSS) vulnerability in Monstra CMS version 3.0.4 allows attackers to execute arbitrary web scripts or HTML via crafted a payload entered into the \"Site Name\" field under the \"Site Settings\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-62mv-972j-7qm3/GHSA-62mv-972j-7qm3.json b/advisories/unreviewed/2022/05/GHSA-62mv-972j-7qm3/GHSA-62mv-972j-7qm3.json index 4e8984bcf73..ee453db14c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-62mv-972j-7qm3/GHSA-62mv-972j-7qm3.json +++ b/advisories/unreviewed/2022/05/GHSA-62mv-972j-7qm3/GHSA-62mv-972j-7qm3.json @@ -7,12 +7,8 @@ "CVE-2005-0270" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in ReviewPost PHP Pro before 2.84 allow remote attackers to inject arbitrary web script or HTML via the (1) si parameter to showcat.php, (2) cat or (3) page parameter to showproduct.php, or (4) report parameter to reportproduct.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-634j-p4v9-j6fm/GHSA-634j-p4v9-j6fm.json b/advisories/unreviewed/2022/05/GHSA-634j-p4v9-j6fm/GHSA-634j-p4v9-j6fm.json index 748b7970134..e9b130001d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-634j-p4v9-j6fm/GHSA-634j-p4v9-j6fm.json +++ b/advisories/unreviewed/2022/05/GHSA-634j-p4v9-j6fm/GHSA-634j-p4v9-j6fm.json @@ -7,12 +7,8 @@ "CVE-2005-0492" ], "details": "Adobe Acrobat Reader 6.0.3 and 7.0.0 allows remote attackers to cause a denial of service (application crash) via a PDF file that contains a negative Count value in the root page node.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-63w7-p994-chh8/GHSA-63w7-p994-chh8.json b/advisories/unreviewed/2022/05/GHSA-63w7-p994-chh8/GHSA-63w7-p994-chh8.json index c4fe60390c7..111cdba2c42 100644 --- a/advisories/unreviewed/2022/05/GHSA-63w7-p994-chh8/GHSA-63w7-p994-chh8.json +++ b/advisories/unreviewed/2022/05/GHSA-63w7-p994-chh8/GHSA-63w7-p994-chh8.json @@ -7,12 +7,8 @@ "CVE-2021-34381" ], "details": "Trusty TLK contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow on the size parameter of the tz_map_shared_mem function, which might lead to denial of service, information disclosure, or data tampering.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64hf-v92v-mrg5/GHSA-64hf-v92v-mrg5.json b/advisories/unreviewed/2022/05/GHSA-64hf-v92v-mrg5/GHSA-64hf-v92v-mrg5.json index 5991176f9a8..002f92608c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-64hf-v92v-mrg5/GHSA-64hf-v92v-mrg5.json +++ b/advisories/unreviewed/2022/05/GHSA-64hf-v92v-mrg5/GHSA-64hf-v92v-mrg5.json @@ -7,12 +7,8 @@ "CVE-2018-25018" ], "details": "UnRAR 5.6.1.7 through 5.7.4 and 6.0.3 has an out-of-bounds write during a memcpy in QuickOpen::ReadRaw when called from QuickOpen::ReadNext.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-64vc-fw9f-73q8/GHSA-64vc-fw9f-73q8.json b/advisories/unreviewed/2022/05/GHSA-64vc-fw9f-73q8/GHSA-64vc-fw9f-73q8.json index 138d6a6615f..6eb5712cb56 100644 --- a/advisories/unreviewed/2022/05/GHSA-64vc-fw9f-73q8/GHSA-64vc-fw9f-73q8.json +++ b/advisories/unreviewed/2022/05/GHSA-64vc-fw9f-73q8/GHSA-64vc-fw9f-73q8.json @@ -7,12 +7,8 @@ "CVE-2005-0629" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in profile.php in 427BB 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) user or (2) Avatar parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6735-8fq5-5cf8/GHSA-6735-8fq5-5cf8.json b/advisories/unreviewed/2022/05/GHSA-6735-8fq5-5cf8/GHSA-6735-8fq5-5cf8.json index 4800597b917..4e2daa4b9f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6735-8fq5-5cf8/GHSA-6735-8fq5-5cf8.json +++ b/advisories/unreviewed/2022/05/GHSA-6735-8fq5-5cf8/GHSA-6735-8fq5-5cf8.json @@ -7,12 +7,8 @@ "CVE-2021-28586" ], "details": "After Effects version 18.0 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-683r-jh49-fpr4/GHSA-683r-jh49-fpr4.json b/advisories/unreviewed/2022/05/GHSA-683r-jh49-fpr4/GHSA-683r-jh49-fpr4.json index 74a030794fa..c6dfea4aeeb 100644 --- a/advisories/unreviewed/2022/05/GHSA-683r-jh49-fpr4/GHSA-683r-jh49-fpr4.json +++ b/advisories/unreviewed/2022/05/GHSA-683r-jh49-fpr4/GHSA-683r-jh49-fpr4.json @@ -7,12 +7,8 @@ "CVE-2021-32526" ], "details": "Incorrect permission assignment for critical resource vulnerability in QSAN Storage Manager allows authenticated remote attackers to access arbitrary password files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-68cv-c3w6-xwxm/GHSA-68cv-c3w6-xwxm.json b/advisories/unreviewed/2022/05/GHSA-68cv-c3w6-xwxm/GHSA-68cv-c3w6-xwxm.json index 66f04d62bdd..4d5ff8f4e03 100644 --- a/advisories/unreviewed/2022/05/GHSA-68cv-c3w6-xwxm/GHSA-68cv-c3w6-xwxm.json +++ b/advisories/unreviewed/2022/05/GHSA-68cv-c3w6-xwxm/GHSA-68cv-c3w6-xwxm.json @@ -7,12 +7,8 @@ "CVE-2005-0353" ], "details": "Buffer overflow in the Sentinel LM (Lservnt) service in the Sentinel License Manager 7.2.0.2 allows remote attackers to execute arbitrary code by sending a large amount of data to UDP port 5093.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-68vc-4hwj-mqq6/GHSA-68vc-4hwj-mqq6.json b/advisories/unreviewed/2022/05/GHSA-68vc-4hwj-mqq6/GHSA-68vc-4hwj-mqq6.json index db6ecc0257c..5dc293cfb74 100644 --- a/advisories/unreviewed/2022/05/GHSA-68vc-4hwj-mqq6/GHSA-68vc-4hwj-mqq6.json +++ b/advisories/unreviewed/2022/05/GHSA-68vc-4hwj-mqq6/GHSA-68vc-4hwj-mqq6.json @@ -7,12 +7,8 @@ "CVE-2005-0218" ], "details": "ClamAV 0.80 and earlier allows remote attackers to bypass virus scanning via a base64 encoded image in a data: (RFC 2397) URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6977-rpvh-7fhp/GHSA-6977-rpvh-7fhp.json b/advisories/unreviewed/2022/05/GHSA-6977-rpvh-7fhp/GHSA-6977-rpvh-7fhp.json index b447293c9be..919e39dbed8 100644 --- a/advisories/unreviewed/2022/05/GHSA-6977-rpvh-7fhp/GHSA-6977-rpvh-7fhp.json +++ b/advisories/unreviewed/2022/05/GHSA-6977-rpvh-7fhp/GHSA-6977-rpvh-7fhp.json @@ -7,12 +7,8 @@ "CVE-2005-0628" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Forumwa 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the keyword parameter in search.php or the (2) body or (3) subject of a forum message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6cg3-cj5x-gw9f/GHSA-6cg3-cj5x-gw9f.json b/advisories/unreviewed/2022/05/GHSA-6cg3-cj5x-gw9f/GHSA-6cg3-cj5x-gw9f.json index 903b0840da5..e6475e9c125 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cg3-cj5x-gw9f/GHSA-6cg3-cj5x-gw9f.json +++ b/advisories/unreviewed/2022/05/GHSA-6cg3-cj5x-gw9f/GHSA-6cg3-cj5x-gw9f.json @@ -7,12 +7,8 @@ "CVE-2021-26273" ], "details": "The Agent in NinjaRMM 5.0.909 has Incorrect Access Control.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6cwc-pxwm-p422/GHSA-6cwc-pxwm-p422.json b/advisories/unreviewed/2022/05/GHSA-6cwc-pxwm-p422/GHSA-6cwc-pxwm-p422.json index 74e0e82d795..c583847626e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6cwc-pxwm-p422/GHSA-6cwc-pxwm-p422.json +++ b/advisories/unreviewed/2022/05/GHSA-6cwc-pxwm-p422/GHSA-6cwc-pxwm-p422.json @@ -7,12 +7,8 @@ "CVE-2021-22383" ], "details": "There is an out-of-bounds read vulnerability in eCNS280_TD V100R005C10 and eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. The vulnerability is due to a message-handling function that contains an out-of-bounds read vulnerability. An attacker can exploit this vulnerability by sending a specific message to the target device, which could cause a Denial of Service (DoS).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6f2m-vhfx-gqwf/GHSA-6f2m-vhfx-gqwf.json b/advisories/unreviewed/2022/05/GHSA-6f2m-vhfx-gqwf/GHSA-6f2m-vhfx-gqwf.json index 8d967140cbf..51755c4c892 100644 --- a/advisories/unreviewed/2022/05/GHSA-6f2m-vhfx-gqwf/GHSA-6f2m-vhfx-gqwf.json +++ b/advisories/unreviewed/2022/05/GHSA-6f2m-vhfx-gqwf/GHSA-6f2m-vhfx-gqwf.json @@ -7,12 +7,8 @@ "CVE-2020-23185" ], "details": "A stored cross site scripting (XSS) vulnerability in /administration/setting_security.php of PHP-Fusion 9.03.60 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6fw2-8jqq-27x2/GHSA-6fw2-8jqq-27x2.json b/advisories/unreviewed/2022/05/GHSA-6fw2-8jqq-27x2/GHSA-6fw2-8jqq-27x2.json index 3f61984fd5d..ce80d8a1ce6 100644 --- a/advisories/unreviewed/2022/05/GHSA-6fw2-8jqq-27x2/GHSA-6fw2-8jqq-27x2.json +++ b/advisories/unreviewed/2022/05/GHSA-6fw2-8jqq-27x2/GHSA-6fw2-8jqq-27x2.json @@ -7,12 +7,8 @@ "CVE-2005-0280" ], "details": "Format string vulnerability in Soldner Secret Wars 30830 and earlier allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via format string specifiers in a message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6g5w-7qx6-q4pr/GHSA-6g5w-7qx6-q4pr.json b/advisories/unreviewed/2022/05/GHSA-6g5w-7qx6-q4pr/GHSA-6g5w-7qx6-q4pr.json index db5be82bb01..f832c58c461 100644 --- a/advisories/unreviewed/2022/05/GHSA-6g5w-7qx6-q4pr/GHSA-6g5w-7qx6-q4pr.json +++ b/advisories/unreviewed/2022/05/GHSA-6g5w-7qx6-q4pr/GHSA-6g5w-7qx6-q4pr.json @@ -7,12 +7,8 @@ "CVE-2021-33533" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in the iw_webs functionality. A specially crafted iw_serverip parameter can cause user input to be reflected in a subsequent iw_system call, resulting in remote control over the device. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6gm5-wxhh-prp8/GHSA-6gm5-wxhh-prp8.json b/advisories/unreviewed/2022/05/GHSA-6gm5-wxhh-prp8/GHSA-6gm5-wxhh-prp8.json index 7a31ded73c9..b558ee3ebcf 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gm5-wxhh-prp8/GHSA-6gm5-wxhh-prp8.json +++ b/advisories/unreviewed/2022/05/GHSA-6gm5-wxhh-prp8/GHSA-6gm5-wxhh-prp8.json @@ -7,12 +7,8 @@ "CVE-2005-0352" ], "details": "Servers Alive 4.1 and 5.0, when running as a service, does not drop SYSTEM privileges before loading local manual under the help menu, which allows local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6gw3-9jpp-7crr/GHSA-6gw3-9jpp-7crr.json b/advisories/unreviewed/2022/05/GHSA-6gw3-9jpp-7crr/GHSA-6gw3-9jpp-7crr.json index 8f6ce18be03..21240b1dbe0 100644 --- a/advisories/unreviewed/2022/05/GHSA-6gw3-9jpp-7crr/GHSA-6gw3-9jpp-7crr.json +++ b/advisories/unreviewed/2022/05/GHSA-6gw3-9jpp-7crr/GHSA-6gw3-9jpp-7crr.json @@ -7,12 +7,8 @@ "CVE-2005-0409" ], "details": "CitrusDB 0.3.6 and earlier does not verify authorization for the (1) importcc.php and (2) uploadcc.php, which allows remote attackers to upload credit card data and obtain sensitive information such as the pathnames for temporary files that store credit card data, and facilitates the exploitation of other vulnerabilities.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6h74-32fr-fmfm/GHSA-6h74-32fr-fmfm.json b/advisories/unreviewed/2022/05/GHSA-6h74-32fr-fmfm/GHSA-6h74-32fr-fmfm.json index 4f15232c1f8..804651f1086 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h74-32fr-fmfm/GHSA-6h74-32fr-fmfm.json +++ b/advisories/unreviewed/2022/05/GHSA-6h74-32fr-fmfm/GHSA-6h74-32fr-fmfm.json @@ -7,12 +7,8 @@ "CVE-2021-31769" ], "details": "MyQ Server in MyQ X Smart before 8.2 allows remote code execution by unprivileged users because administrative session data can be read in the %PROGRAMFILES%\\MyQ\\PHP\\Sessions directory. The \"Select server file\" feature is only intended for administrators but actually does not require authorization. An attacker can inject arbitrary OS commands (such as commands to create new .php files) via the Task Scheduler component.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6h7g-f9wv-5jq5/GHSA-6h7g-f9wv-5jq5.json b/advisories/unreviewed/2022/05/GHSA-6h7g-f9wv-5jq5/GHSA-6h7g-f9wv-5jq5.json index bf86207fbb6..91417cf080e 100644 --- a/advisories/unreviewed/2022/05/GHSA-6h7g-f9wv-5jq5/GHSA-6h7g-f9wv-5jq5.json +++ b/advisories/unreviewed/2022/05/GHSA-6h7g-f9wv-5jq5/GHSA-6h7g-f9wv-5jq5.json @@ -7,12 +7,8 @@ "CVE-2021-32506" ], "details": "Absolute Path Traversal vulnerability in GetImage in QSAN Storage Manager allows remote authenticated attackers download arbitrary files via the Url path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hf2-h4c4-m3pw/GHSA-6hf2-h4c4-m3pw.json b/advisories/unreviewed/2022/05/GHSA-6hf2-h4c4-m3pw/GHSA-6hf2-h4c4-m3pw.json index 7201c1730e6..aa2a92800d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hf2-h4c4-m3pw/GHSA-6hf2-h4c4-m3pw.json +++ b/advisories/unreviewed/2022/05/GHSA-6hf2-h4c4-m3pw/GHSA-6hf2-h4c4-m3pw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hqh-63cg-wv9p/GHSA-6hqh-63cg-wv9p.json b/advisories/unreviewed/2022/05/GHSA-6hqh-63cg-wv9p/GHSA-6hqh-63cg-wv9p.json index 38b4b3b51ad..085354bac74 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hqh-63cg-wv9p/GHSA-6hqh-63cg-wv9p.json +++ b/advisories/unreviewed/2022/05/GHSA-6hqh-63cg-wv9p/GHSA-6hqh-63cg-wv9p.json @@ -7,12 +7,8 @@ "CVE-2021-34374" ], "details": "Trusty contains a vulnerability in command handlers where the length of input buffers is not verified. This vulnerability can cause memory corruption, which may lead to information disclosure, escalation of privileges, and denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6hvw-98vf-gff4/GHSA-6hvw-98vf-gff4.json b/advisories/unreviewed/2022/05/GHSA-6hvw-98vf-gff4/GHSA-6hvw-98vf-gff4.json index 30948407723..1950d65ecb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6hvw-98vf-gff4/GHSA-6hvw-98vf-gff4.json +++ b/advisories/unreviewed/2022/05/GHSA-6hvw-98vf-gff4/GHSA-6hvw-98vf-gff4.json @@ -7,12 +7,8 @@ "CVE-2005-0282" ], "details": "SQL injection vulnerability in member.php in MyBulletinBoard (MyBB) allows remote attackers to execute arbitrary SQL commands via the uid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6j7h-rpp4-9j8x/GHSA-6j7h-rpp4-9j8x.json b/advisories/unreviewed/2022/05/GHSA-6j7h-rpp4-9j8x/GHSA-6j7h-rpp4-9j8x.json index 14765d985d4..d2949a02263 100644 --- a/advisories/unreviewed/2022/05/GHSA-6j7h-rpp4-9j8x/GHSA-6j7h-rpp4-9j8x.json +++ b/advisories/unreviewed/2022/05/GHSA-6j7h-rpp4-9j8x/GHSA-6j7h-rpp4-9j8x.json @@ -7,12 +7,8 @@ "CVE-2021-35474" ], "details": "Stack-based Buffer Overflow vulnerability in cachekey plugin of Apache Traffic Server. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6jrh-f26m-pv7v/GHSA-6jrh-f26m-pv7v.json b/advisories/unreviewed/2022/05/GHSA-6jrh-f26m-pv7v/GHSA-6jrh-f26m-pv7v.json index 3e994bca75f..27e3e3d6442 100644 --- a/advisories/unreviewed/2022/05/GHSA-6jrh-f26m-pv7v/GHSA-6jrh-f26m-pv7v.json +++ b/advisories/unreviewed/2022/05/GHSA-6jrh-f26m-pv7v/GHSA-6jrh-f26m-pv7v.json @@ -7,12 +7,8 @@ "CVE-2021-33529" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the service agent binary allows for the decryption of captured traffic across the network from or to the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mj8-ggv6-xhhj/GHSA-6mj8-ggv6-xhhj.json b/advisories/unreviewed/2022/05/GHSA-6mj8-ggv6-xhhj/GHSA-6mj8-ggv6-xhhj.json index 8582c1137ee..a031696af2d 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mj8-ggv6-xhhj/GHSA-6mj8-ggv6-xhhj.json +++ b/advisories/unreviewed/2022/05/GHSA-6mj8-ggv6-xhhj/GHSA-6mj8-ggv6-xhhj.json @@ -7,12 +7,8 @@ "CVE-2021-32534" ], "details": "QSAN SANOS factory reset function does not filter special parameters. Remote attackers can use this vulnerability to inject and execute arbitrary commands without permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6mpc-5vj6-8wr8/GHSA-6mpc-5vj6-8wr8.json b/advisories/unreviewed/2022/05/GHSA-6mpc-5vj6-8wr8/GHSA-6mpc-5vj6-8wr8.json index 4db182f6065..ba6ec23d337 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mpc-5vj6-8wr8/GHSA-6mpc-5vj6-8wr8.json +++ b/advisories/unreviewed/2022/05/GHSA-6mpc-5vj6-8wr8/GHSA-6mpc-5vj6-8wr8.json @@ -7,12 +7,8 @@ "CVE-2005-0342" ], "details": "The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6mrf-9c3p-wq48/GHSA-6mrf-9c3p-wq48.json b/advisories/unreviewed/2022/05/GHSA-6mrf-9c3p-wq48/GHSA-6mrf-9c3p-wq48.json index f1f0d9339ae..348c11a81b1 100644 --- a/advisories/unreviewed/2022/05/GHSA-6mrf-9c3p-wq48/GHSA-6mrf-9c3p-wq48.json +++ b/advisories/unreviewed/2022/05/GHSA-6mrf-9c3p-wq48/GHSA-6mrf-9c3p-wq48.json @@ -7,12 +7,8 @@ "CVE-2020-23214" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Configure categories\" field under the \"Categorise Lists\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6p84-q2x8-cmx7/GHSA-6p84-q2x8-cmx7.json b/advisories/unreviewed/2022/05/GHSA-6p84-q2x8-cmx7/GHSA-6p84-q2x8-cmx7.json index 8d281a9e320..a7e8273fd1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-6p84-q2x8-cmx7/GHSA-6p84-q2x8-cmx7.json +++ b/advisories/unreviewed/2022/05/GHSA-6p84-q2x8-cmx7/GHSA-6p84-q2x8-cmx7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6pfq-pjhj-7hvv/GHSA-6pfq-pjhj-7hvv.json b/advisories/unreviewed/2022/05/GHSA-6pfq-pjhj-7hvv/GHSA-6pfq-pjhj-7hvv.json index 89fb29fc8d9..203d31211a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-6pfq-pjhj-7hvv/GHSA-6pfq-pjhj-7hvv.json +++ b/advisories/unreviewed/2022/05/GHSA-6pfq-pjhj-7hvv/GHSA-6pfq-pjhj-7hvv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6r7v-c5hw-v8qh/GHSA-6r7v-c5hw-v8qh.json b/advisories/unreviewed/2022/05/GHSA-6r7v-c5hw-v8qh/GHSA-6r7v-c5hw-v8qh.json index d553d8f7a28..a07de1a1412 100644 --- a/advisories/unreviewed/2022/05/GHSA-6r7v-c5hw-v8qh/GHSA-6r7v-c5hw-v8qh.json +++ b/advisories/unreviewed/2022/05/GHSA-6r7v-c5hw-v8qh/GHSA-6r7v-c5hw-v8qh.json @@ -7,12 +7,8 @@ "CVE-2021-32992" ], "details": "FATEK Automation WinProladder Versions 3.30 and prior do not properly restrict operations within the bounds of a memory buffer, which may allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6rjg-fx3r-69qh/GHSA-6rjg-fx3r-69qh.json b/advisories/unreviewed/2022/05/GHSA-6rjg-fx3r-69qh/GHSA-6rjg-fx3r-69qh.json index e3aec226b9f..dea235c99f3 100644 --- a/advisories/unreviewed/2022/05/GHSA-6rjg-fx3r-69qh/GHSA-6rjg-fx3r-69qh.json +++ b/advisories/unreviewed/2022/05/GHSA-6rjg-fx3r-69qh/GHSA-6rjg-fx3r-69qh.json @@ -7,12 +7,8 @@ "CVE-2005-0459" ], "details": "phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6w5q-rc2w-677v/GHSA-6w5q-rc2w-677v.json b/advisories/unreviewed/2022/05/GHSA-6w5q-rc2w-677v/GHSA-6w5q-rc2w-677v.json index 2299f8f820e..747cb84cefb 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w5q-rc2w-677v/GHSA-6w5q-rc2w-677v.json +++ b/advisories/unreviewed/2022/05/GHSA-6w5q-rc2w-677v/GHSA-6w5q-rc2w-677v.json @@ -7,12 +7,8 @@ "CVE-2021-22343" ], "details": "There is a Configuration Defect vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service integrity and availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-6w6q-9gcr-2fhf/GHSA-6w6q-9gcr-2fhf.json b/advisories/unreviewed/2022/05/GHSA-6w6q-9gcr-2fhf/GHSA-6w6q-9gcr-2fhf.json index d8e7db0635c..b72e55a0662 100644 --- a/advisories/unreviewed/2022/05/GHSA-6w6q-9gcr-2fhf/GHSA-6w6q-9gcr-2fhf.json +++ b/advisories/unreviewed/2022/05/GHSA-6w6q-9gcr-2fhf/GHSA-6w6q-9gcr-2fhf.json @@ -7,12 +7,8 @@ "CVE-2020-23194" ], "details": "A stored cross site scripting (XSS) vulnerability in the \"Import Subscribers\" feature in phplist 3.5.4 and below allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-6wwm-622g-84wc/GHSA-6wwm-622g-84wc.json b/advisories/unreviewed/2022/05/GHSA-6wwm-622g-84wc/GHSA-6wwm-622g-84wc.json index d3cf055e7ca..9dae8df74d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-6wwm-622g-84wc/GHSA-6wwm-622g-84wc.json +++ b/advisories/unreviewed/2022/05/GHSA-6wwm-622g-84wc/GHSA-6wwm-622g-84wc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72cx-4fqp-fx62/GHSA-72cx-4fqp-fx62.json b/advisories/unreviewed/2022/05/GHSA-72cx-4fqp-fx62/GHSA-72cx-4fqp-fx62.json index 2cb190f8dd8..652ffbfb824 100644 --- a/advisories/unreviewed/2022/05/GHSA-72cx-4fqp-fx62/GHSA-72cx-4fqp-fx62.json +++ b/advisories/unreviewed/2022/05/GHSA-72cx-4fqp-fx62/GHSA-72cx-4fqp-fx62.json @@ -7,12 +7,8 @@ "CVE-2021-35298" ], "details": "Cross Site Scripting (XSS) in Zammad 1.0.x up to 4.0.0 allows remote attackers to execute arbitrary web script or HTML via multiple models that contain a 'note' field to store additional information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-72g6-99jj-5h8h/GHSA-72g6-99jj-5h8h.json b/advisories/unreviewed/2022/05/GHSA-72g6-99jj-5h8h/GHSA-72g6-99jj-5h8h.json index e59c3e19061..c9065a72d71 100644 --- a/advisories/unreviewed/2022/05/GHSA-72g6-99jj-5h8h/GHSA-72g6-99jj-5h8h.json +++ b/advisories/unreviewed/2022/05/GHSA-72g6-99jj-5h8h/GHSA-72g6-99jj-5h8h.json @@ -7,12 +7,8 @@ "CVE-2005-0382" ], "details": "Breed patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via an empty UDP packet, which triggers a null dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72m5-c9q8-6736/GHSA-72m5-c9q8-6736.json b/advisories/unreviewed/2022/05/GHSA-72m5-c9q8-6736/GHSA-72m5-c9q8-6736.json index 126390a8445..891a57282cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-72m5-c9q8-6736/GHSA-72m5-c9q8-6736.json +++ b/advisories/unreviewed/2022/05/GHSA-72m5-c9q8-6736/GHSA-72m5-c9q8-6736.json @@ -7,12 +7,8 @@ "CVE-2005-0332" ], "details": "Directory traversal vulnerability in DeskNow Mail and Collaboration Server 2.5.12 allows remote attackers to (1) upload and possibly execute files outside the directory via the AttachmentsKey parameter to attachment.do, as demonstrated using JSP pages, or (2) delete arbitrary files via the select_file parameter to file.do.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-72xg-298x-gj6w/GHSA-72xg-298x-gj6w.json b/advisories/unreviewed/2022/05/GHSA-72xg-298x-gj6w/GHSA-72xg-298x-gj6w.json index 8b85d2c67be..6ca7a0f31ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-72xg-298x-gj6w/GHSA-72xg-298x-gj6w.json +++ b/advisories/unreviewed/2022/05/GHSA-72xg-298x-gj6w/GHSA-72xg-298x-gj6w.json @@ -7,12 +7,8 @@ "CVE-2021-35048" ], "details": "Vulnerability in Fidelis Network and Deception CommandPost enables unauthenticated SQL injection through the web interface. The vulnerability could lead to exposure of authentication tokens in some versions of Fidelis software. The vulnerability is present in Fidelis Network and Deception versions prior to 9.3.7 and in version 9.4. Patches and updates are available to address this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7352-x97x-grpg/GHSA-7352-x97x-grpg.json b/advisories/unreviewed/2022/05/GHSA-7352-x97x-grpg/GHSA-7352-x97x-grpg.json index 08502401b32..cddaf75ea60 100644 --- a/advisories/unreviewed/2022/05/GHSA-7352-x97x-grpg/GHSA-7352-x97x-grpg.json +++ b/advisories/unreviewed/2022/05/GHSA-7352-x97x-grpg/GHSA-7352-x97x-grpg.json @@ -7,12 +7,8 @@ "CVE-2005-0578" ], "details": "Firefox before 1.0.1 and Mozilla Suite before 1.7.6 use a predictable filename for the plugin temporary directory, which allows local users to delete arbitrary files of other users via a symlink attack on the plugtmp directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74gq-552w-p8jp/GHSA-74gq-552w-p8jp.json b/advisories/unreviewed/2022/05/GHSA-74gq-552w-p8jp/GHSA-74gq-552w-p8jp.json index aec425be1c4..6a7c8750db0 100644 --- a/advisories/unreviewed/2022/05/GHSA-74gq-552w-p8jp/GHSA-74gq-552w-p8jp.json +++ b/advisories/unreviewed/2022/05/GHSA-74gq-552w-p8jp/GHSA-74gq-552w-p8jp.json @@ -7,12 +7,8 @@ "CVE-2005-0278" ], "details": "The FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to gain sensitive information via a cd command that contains an MS-DOS device name, which reveals the installation path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-74mv-jc74-mg2v/GHSA-74mv-jc74-mg2v.json b/advisories/unreviewed/2022/05/GHSA-74mv-jc74-mg2v/GHSA-74mv-jc74-mg2v.json index c84c0822cdc..3434aff00e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-74mv-jc74-mg2v/GHSA-74mv-jc74-mg2v.json +++ b/advisories/unreviewed/2022/05/GHSA-74mv-jc74-mg2v/GHSA-74mv-jc74-mg2v.json @@ -7,12 +7,8 @@ "CVE-2005-0593" ], "details": "Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote attackers to spoof the SSL \"secure site\" lock icon via (1) a web site that does not finish loading, which shows the lock of the previous site, (2) a non-HTTP server that uses SSL, which causes the lock to be displayed when the SSL handshake is completed, or (3) a URL that generates an HTTP 204 error, which updates the icon and location information but does not change the display of the original site.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-75jr-ff4h-qp4g/GHSA-75jr-ff4h-qp4g.json b/advisories/unreviewed/2022/05/GHSA-75jr-ff4h-qp4g/GHSA-75jr-ff4h-qp4g.json index 482817471fa..5defaa1b17e 100644 --- a/advisories/unreviewed/2022/05/GHSA-75jr-ff4h-qp4g/GHSA-75jr-ff4h-qp4g.json +++ b/advisories/unreviewed/2022/05/GHSA-75jr-ff4h-qp4g/GHSA-75jr-ff4h-qp4g.json @@ -7,12 +7,8 @@ "CVE-2005-0423" ], "details": "SQL injection vulnerability in login.asp in ASPjar Guestbook allows remote attackers to execute arbitrary SQL commands via the password field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-76f3-8fqm-qfgf/GHSA-76f3-8fqm-qfgf.json b/advisories/unreviewed/2022/05/GHSA-76f3-8fqm-qfgf/GHSA-76f3-8fqm-qfgf.json index 45867406471..9ccf734fce6 100644 --- a/advisories/unreviewed/2022/05/GHSA-76f3-8fqm-qfgf/GHSA-76f3-8fqm-qfgf.json +++ b/advisories/unreviewed/2022/05/GHSA-76f3-8fqm-qfgf/GHSA-76f3-8fqm-qfgf.json @@ -7,12 +7,8 @@ "CVE-2005-0273" ], "details": "Multiple SQL injection vulnerabilities in showgallery.php in PhotoPost before 4.86 allow remote attackers to execute arbitrary SQL commands via the (1) cat or (2) ppuser parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-76q3-cm73-486f/GHSA-76q3-cm73-486f.json b/advisories/unreviewed/2022/05/GHSA-76q3-cm73-486f/GHSA-76q3-cm73-486f.json index c4047bec86c..d97b8ec7559 100644 --- a/advisories/unreviewed/2022/05/GHSA-76q3-cm73-486f/GHSA-76q3-cm73-486f.json +++ b/advisories/unreviewed/2022/05/GHSA-76q3-cm73-486f/GHSA-76q3-cm73-486f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-76x5-m9p8-42mc/GHSA-76x5-m9p8-42mc.json b/advisories/unreviewed/2022/05/GHSA-76x5-m9p8-42mc/GHSA-76x5-m9p8-42mc.json index 6535c1a93d3..c15aa3ecfe9 100644 --- a/advisories/unreviewed/2022/05/GHSA-76x5-m9p8-42mc/GHSA-76x5-m9p8-42mc.json +++ b/advisories/unreviewed/2022/05/GHSA-76x5-m9p8-42mc/GHSA-76x5-m9p8-42mc.json @@ -7,12 +7,8 @@ "CVE-2005-0575" ], "details": "Buffer overflow in Stormy Studios Knet 1.04c and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long HTTP GET request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-777p-2jpw-g9gh/GHSA-777p-2jpw-g9gh.json b/advisories/unreviewed/2022/05/GHSA-777p-2jpw-g9gh/GHSA-777p-2jpw-g9gh.json index 6dfcfb6b2e2..60966cd4c38 100644 --- a/advisories/unreviewed/2022/05/GHSA-777p-2jpw-g9gh/GHSA-777p-2jpw-g9gh.json +++ b/advisories/unreviewed/2022/05/GHSA-777p-2jpw-g9gh/GHSA-777p-2jpw-g9gh.json @@ -7,12 +7,8 @@ "CVE-2021-28802" ], "details": "A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary commands in a compromised application. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.1.1540 build 20210107. QNAP Systems Inc. QuTS hero versions prior to h4.5.1.1582 build 20210217.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-77jg-j8g5-fq7w/GHSA-77jg-j8g5-fq7w.json b/advisories/unreviewed/2022/05/GHSA-77jg-j8g5-fq7w/GHSA-77jg-j8g5-fq7w.json index 57f4a0865c5..805d6e798d0 100644 --- a/advisories/unreviewed/2022/05/GHSA-77jg-j8g5-fq7w/GHSA-77jg-j8g5-fq7w.json +++ b/advisories/unreviewed/2022/05/GHSA-77jg-j8g5-fq7w/GHSA-77jg-j8g5-fq7w.json @@ -7,12 +7,8 @@ "CVE-2005-0445" ], "details": "Cross-site scripting (XSS) vulnerability in Open WebMail 2.x allows remote attackers to inject arbitrary HTML or web script via the domain name parameter (logindomain) in the login page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-789f-wh34-526r/GHSA-789f-wh34-526r.json b/advisories/unreviewed/2022/05/GHSA-789f-wh34-526r/GHSA-789f-wh34-526r.json index ff1e3089685..029e671fb4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-789f-wh34-526r/GHSA-789f-wh34-526r.json +++ b/advisories/unreviewed/2022/05/GHSA-789f-wh34-526r/GHSA-789f-wh34-526r.json @@ -7,12 +7,8 @@ "CVE-2005-0487" ], "details": "Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows remote attackers to inject arbitrary HTML and web script via the nav parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-78mg-v5p2-3xjr/GHSA-78mg-v5p2-3xjr.json b/advisories/unreviewed/2022/05/GHSA-78mg-v5p2-3xjr/GHSA-78mg-v5p2-3xjr.json index e8278ce6458..aed7f8a41a0 100644 --- a/advisories/unreviewed/2022/05/GHSA-78mg-v5p2-3xjr/GHSA-78mg-v5p2-3xjr.json +++ b/advisories/unreviewed/2022/05/GHSA-78mg-v5p2-3xjr/GHSA-78mg-v5p2-3xjr.json @@ -7,12 +7,8 @@ "CVE-2021-31586" ], "details": "Accellion Kiteworks before 7.4.0 allows an authenticated user to perform SQL Injection via LDAPGroup Search.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-79cg-jg39-89hq/GHSA-79cg-jg39-89hq.json b/advisories/unreviewed/2022/05/GHSA-79cg-jg39-89hq/GHSA-79cg-jg39-89hq.json index 3f79a23379b..d6e84c2c1f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-79cg-jg39-89hq/GHSA-79cg-jg39-89hq.json +++ b/advisories/unreviewed/2022/05/GHSA-79cg-jg39-89hq/GHSA-79cg-jg39-89hq.json @@ -7,12 +7,8 @@ "CVE-2021-29945" ], "details": "The WebAssembly JIT could miscalculate the size of a return type, which could lead to a null read and result in a crash. *Note: This issue only affected x86-32 platforms. Other platforms are unaffected.*. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-79h3-q6m5-2593/GHSA-79h3-q6m5-2593.json b/advisories/unreviewed/2022/05/GHSA-79h3-q6m5-2593/GHSA-79h3-q6m5-2593.json index 61e2c8d171d..493d63da9d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-79h3-q6m5-2593/GHSA-79h3-q6m5-2593.json +++ b/advisories/unreviewed/2022/05/GHSA-79h3-q6m5-2593/GHSA-79h3-q6m5-2593.json @@ -7,12 +7,8 @@ "CVE-2021-33535" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable format string vulnerability exists in the iw_console conio_writestr functionality. A specially crafted time server entry can cause an overflow of the time server buffer, resulting in remote code execution. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7c54-4j4m-8rvm/GHSA-7c54-4j4m-8rvm.json b/advisories/unreviewed/2022/05/GHSA-7c54-4j4m-8rvm/GHSA-7c54-4j4m-8rvm.json index f6f4146ca57..2c2b6a73f28 100644 --- a/advisories/unreviewed/2022/05/GHSA-7c54-4j4m-8rvm/GHSA-7c54-4j4m-8rvm.json +++ b/advisories/unreviewed/2022/05/GHSA-7c54-4j4m-8rvm/GHSA-7c54-4j4m-8rvm.json @@ -7,12 +7,8 @@ "CVE-2021-34383" ], "details": "Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow might lead to denial of service or escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7cf4-gh7v-g4w2/GHSA-7cf4-gh7v-g4w2.json b/advisories/unreviewed/2022/05/GHSA-7cf4-gh7v-g4w2/GHSA-7cf4-gh7v-g4w2.json index 19a6c53c7c4..7b985201ed9 100644 --- a/advisories/unreviewed/2022/05/GHSA-7cf4-gh7v-g4w2/GHSA-7cf4-gh7v-g4w2.json +++ b/advisories/unreviewed/2022/05/GHSA-7cf4-gh7v-g4w2/GHSA-7cf4-gh7v-g4w2.json @@ -7,12 +7,8 @@ "CVE-2005-0216" ], "details": "Cross-site scripting (XSS) vulnerability in formmail.php in Woltlab Burning Board Lite 1.0.0, 1.0.1e, and possibly other versions, allows remote attackers to inject arbitrary web script and HTML via the userid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7g68-2g58-wx86/GHSA-7g68-2g58-wx86.json b/advisories/unreviewed/2022/05/GHSA-7g68-2g58-wx86/GHSA-7g68-2g58-wx86.json index b067485f8c1..13cdf78819e 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g68-2g58-wx86/GHSA-7g68-2g58-wx86.json +++ b/advisories/unreviewed/2022/05/GHSA-7g68-2g58-wx86/GHSA-7g68-2g58-wx86.json @@ -7,12 +7,8 @@ "CVE-2020-36409" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Add Category\" parameter under the \"Categories\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7g8c-3jgm-qr65/GHSA-7g8c-3jgm-qr65.json b/advisories/unreviewed/2022/05/GHSA-7g8c-3jgm-qr65/GHSA-7g8c-3jgm-qr65.json index d69ee1b89a6..da1f759e476 100644 --- a/advisories/unreviewed/2022/05/GHSA-7g8c-3jgm-qr65/GHSA-7g8c-3jgm-qr65.json +++ b/advisories/unreviewed/2022/05/GHSA-7g8c-3jgm-qr65/GHSA-7g8c-3jgm-qr65.json @@ -7,12 +7,8 @@ "CVE-2005-0213" ], "details": "Directory traversal vulnerability in WinHKI 1.4d allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a zip file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7gvg-4r5g-p3v8/GHSA-7gvg-4r5g-p3v8.json b/advisories/unreviewed/2022/05/GHSA-7gvg-4r5g-p3v8/GHSA-7gvg-4r5g-p3v8.json index 4cec167cf87..7bfc054f005 100644 --- a/advisories/unreviewed/2022/05/GHSA-7gvg-4r5g-p3v8/GHSA-7gvg-4r5g-p3v8.json +++ b/advisories/unreviewed/2022/05/GHSA-7gvg-4r5g-p3v8/GHSA-7gvg-4r5g-p3v8.json @@ -7,12 +7,8 @@ "CVE-2005-0294" ], "details": "minis.php in Minis 0.2.1 allows remote attackers to cause a denial of service (infinite loop) via an HTTP request for a file that the web server does not have permission to read, as demonstrated using the month parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7h9q-985f-8xvm/GHSA-7h9q-985f-8xvm.json b/advisories/unreviewed/2022/05/GHSA-7h9q-985f-8xvm/GHSA-7h9q-985f-8xvm.json index a5335cb7038..82bd5c0a810 100644 --- a/advisories/unreviewed/2022/05/GHSA-7h9q-985f-8xvm/GHSA-7h9q-985f-8xvm.json +++ b/advisories/unreviewed/2022/05/GHSA-7h9q-985f-8xvm/GHSA-7h9q-985f-8xvm.json @@ -7,12 +7,8 @@ "CVE-2021-29948" ], "details": "Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jpc-wcv3-h3mc/GHSA-7jpc-wcv3-h3mc.json b/advisories/unreviewed/2022/05/GHSA-7jpc-wcv3-h3mc/GHSA-7jpc-wcv3-h3mc.json index 67ca5cdcd22..0ecaec1a047 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jpc-wcv3-h3mc/GHSA-7jpc-wcv3-h3mc.json +++ b/advisories/unreviewed/2022/05/GHSA-7jpc-wcv3-h3mc/GHSA-7jpc-wcv3-h3mc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7jqg-3j54-cpcr/GHSA-7jqg-3j54-cpcr.json b/advisories/unreviewed/2022/05/GHSA-7jqg-3j54-cpcr/GHSA-7jqg-3j54-cpcr.json index d7fef568a70..cf67aeecd54 100644 --- a/advisories/unreviewed/2022/05/GHSA-7jqg-3j54-cpcr/GHSA-7jqg-3j54-cpcr.json +++ b/advisories/unreviewed/2022/05/GHSA-7jqg-3j54-cpcr/GHSA-7jqg-3j54-cpcr.json @@ -7,12 +7,8 @@ "CVE-2021-30557" ], "details": "Use after free in TabGroups in Google Chrome prior to 91.0.4472.114 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7mfh-mcrc-hgxh/GHSA-7mfh-mcrc-hgxh.json b/advisories/unreviewed/2022/05/GHSA-7mfh-mcrc-hgxh/GHSA-7mfh-mcrc-hgxh.json index 44e75be474d..a3b38e19053 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mfh-mcrc-hgxh/GHSA-7mfh-mcrc-hgxh.json +++ b/advisories/unreviewed/2022/05/GHSA-7mfh-mcrc-hgxh/GHSA-7mfh-mcrc-hgxh.json @@ -7,12 +7,8 @@ "CVE-2005-0473" ], "details": "The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes \"an invalid memory access,\" a different vulnerability than CVE-2005-0208.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7mrw-f6g3-g543/GHSA-7mrw-f6g3-g543.json b/advisories/unreviewed/2022/05/GHSA-7mrw-f6g3-g543/GHSA-7mrw-f6g3-g543.json index 1d8ccdc0427..c156b406ed1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7mrw-f6g3-g543/GHSA-7mrw-f6g3-g543.json +++ b/advisories/unreviewed/2022/05/GHSA-7mrw-f6g3-g543/GHSA-7mrw-f6g3-g543.json @@ -7,12 +7,8 @@ "CVE-2021-20378" ], "details": "IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 195709.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7q73-vrf9-vhjw/GHSA-7q73-vrf9-vhjw.json b/advisories/unreviewed/2022/05/GHSA-7q73-vrf9-vhjw/GHSA-7q73-vrf9-vhjw.json index 12c0892a1fa..8efd2516887 100644 --- a/advisories/unreviewed/2022/05/GHSA-7q73-vrf9-vhjw/GHSA-7q73-vrf9-vhjw.json +++ b/advisories/unreviewed/2022/05/GHSA-7q73-vrf9-vhjw/GHSA-7q73-vrf9-vhjw.json @@ -7,12 +7,8 @@ "CVE-2005-0241" ], "details": "The httpProcessReplyHeader function in http.c for Squid 2.5-STABLE7 and earlier does not properly set the debug context when it is handling \"oversized\" HTTP reply headers, which might allow remote attackers to poison the cache or bypass access controls based on header size.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7qg9-9x35-j2qf/GHSA-7qg9-9x35-j2qf.json b/advisories/unreviewed/2022/05/GHSA-7qg9-9x35-j2qf/GHSA-7qg9-9x35-j2qf.json index 66ad762bb39..9c279d989fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qg9-9x35-j2qf/GHSA-7qg9-9x35-j2qf.json +++ b/advisories/unreviewed/2022/05/GHSA-7qg9-9x35-j2qf/GHSA-7qg9-9x35-j2qf.json @@ -7,12 +7,8 @@ "CVE-2021-36086" ], "details": "The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set and cil_reset_classperms_list).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7qwx-5h4j-5c9w/GHSA-7qwx-5h4j-5c9w.json b/advisories/unreviewed/2022/05/GHSA-7qwx-5h4j-5c9w/GHSA-7qwx-5h4j-5c9w.json index 535be5a9e00..9da111bd6e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-7qwx-5h4j-5c9w/GHSA-7qwx-5h4j-5c9w.json +++ b/advisories/unreviewed/2022/05/GHSA-7qwx-5h4j-5c9w/GHSA-7qwx-5h4j-5c9w.json @@ -7,12 +7,8 @@ "CVE-2021-28690" ], "details": "x86: TSX Async Abort protections not restored after S3 This issue relates to the TSX Async Abort speculative security vulnerability. Please see https://xenbits.xen.org/xsa/advisory-305.html for details. Mitigating TAA by disabling TSX (the default and preferred option) requires selecting a non-default setting in MSR_TSX_CTRL. This setting isn't restored after S3 suspend.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rrw-63mm-qw38/GHSA-7rrw-63mm-qw38.json b/advisories/unreviewed/2022/05/GHSA-7rrw-63mm-qw38/GHSA-7rrw-63mm-qw38.json index 5bd875807b5..b2537bfe2c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rrw-63mm-qw38/GHSA-7rrw-63mm-qw38.json +++ b/advisories/unreviewed/2022/05/GHSA-7rrw-63mm-qw38/GHSA-7rrw-63mm-qw38.json @@ -7,12 +7,8 @@ "CVE-2005-0336" ], "details": "Cross-site scripting (XSS) vulnerability in EMotion MediaPartner Web Server 5.0 allows remote attackers to inject arbitrary HTML or web script, as demonstrated using a URL containing .. sequences and HTML, which results in a directory browsing page that does not properly filter the HTML.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7rvp-74p4-3x8h/GHSA-7rvp-74p4-3x8h.json b/advisories/unreviewed/2022/05/GHSA-7rvp-74p4-3x8h/GHSA-7rvp-74p4-3x8h.json index 2ab4291d642..7e4f9fa1075 100644 --- a/advisories/unreviewed/2022/05/GHSA-7rvp-74p4-3x8h/GHSA-7rvp-74p4-3x8h.json +++ b/advisories/unreviewed/2022/05/GHSA-7rvp-74p4-3x8h/GHSA-7rvp-74p4-3x8h.json @@ -7,12 +7,8 @@ "CVE-2005-0570" ], "details": "profile.php in PunBB 1.2.1 allows remote attackers to cause a denial of service (account lockout) by setting the user's password to NULL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-7v24-w9vj-26gf/GHSA-7v24-w9vj-26gf.json b/advisories/unreviewed/2022/05/GHSA-7v24-w9vj-26gf/GHSA-7v24-w9vj-26gf.json index 60f089663c0..de554f236c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v24-w9vj-26gf/GHSA-7v24-w9vj-26gf.json +++ b/advisories/unreviewed/2022/05/GHSA-7v24-w9vj-26gf/GHSA-7v24-w9vj-26gf.json @@ -7,12 +7,8 @@ "CVE-2020-36413" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Exclude these IP addresses from the \"Site Down\" status\" parameter under the \"Maintenance Mode\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7v73-wqmq-pqv5/GHSA-7v73-wqmq-pqv5.json b/advisories/unreviewed/2022/05/GHSA-7v73-wqmq-pqv5/GHSA-7v73-wqmq-pqv5.json index 5d35ac58e3a..b12f514cd4d 100644 --- a/advisories/unreviewed/2022/05/GHSA-7v73-wqmq-pqv5/GHSA-7v73-wqmq-pqv5.json +++ b/advisories/unreviewed/2022/05/GHSA-7v73-wqmq-pqv5/GHSA-7v73-wqmq-pqv5.json @@ -7,12 +7,8 @@ "CVE-2021-34074" ], "details": "PandoraFMS <=7.54 allows arbitrary file upload, it leading to remote command execution via the File Manager. To bypass the built-in protection, a relative path is used in the requests.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7ww7-rp6j-6vrg/GHSA-7ww7-rp6j-6vrg.json b/advisories/unreviewed/2022/05/GHSA-7ww7-rp6j-6vrg/GHSA-7ww7-rp6j-6vrg.json index 8c233c898e7..586c1b44e07 100644 --- a/advisories/unreviewed/2022/05/GHSA-7ww7-rp6j-6vrg/GHSA-7ww7-rp6j-6vrg.json +++ b/advisories/unreviewed/2022/05/GHSA-7ww7-rp6j-6vrg/GHSA-7ww7-rp6j-6vrg.json @@ -7,12 +7,8 @@ "CVE-2021-24375" ], "details": "Lack of authentication or validation in motor_load_more, motor_gallery_load_more, motor_quick_view and motor_project_quick_view AJAX handlers of the Motor WordPress theme before 3.1.0 allows an unauthenticated attacker access to arbitrary files in the server file system, and to execute arbitrary php scripts found on the server file system. We found no vulnerability for uploading files with this theme, so any scripts to be executed must already be on the server file system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-7x6r-gj6g-8x5m/GHSA-7x6r-gj6g-8x5m.json b/advisories/unreviewed/2022/05/GHSA-7x6r-gj6g-8x5m/GHSA-7x6r-gj6g-8x5m.json index adf53984540..fe1f60a9cf1 100644 --- a/advisories/unreviewed/2022/05/GHSA-7x6r-gj6g-8x5m/GHSA-7x6r-gj6g-8x5m.json +++ b/advisories/unreviewed/2022/05/GHSA-7x6r-gj6g-8x5m/GHSA-7x6r-gj6g-8x5m.json @@ -7,12 +7,8 @@ "CVE-2021-31515" ], "details": "This vulnerability allows remote attackers to execute arbitrary code on affected installations of Vector 35 Binary Ninja 2.3.2660 (Build ID 88f343c3). User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of BNDB files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated data structure. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-13668.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-823f-9rm4-pfxx/GHSA-823f-9rm4-pfxx.json b/advisories/unreviewed/2022/05/GHSA-823f-9rm4-pfxx/GHSA-823f-9rm4-pfxx.json index 82bef11b565..c6f77920aa6 100644 --- a/advisories/unreviewed/2022/05/GHSA-823f-9rm4-pfxx/GHSA-823f-9rm4-pfxx.json +++ b/advisories/unreviewed/2022/05/GHSA-823f-9rm4-pfxx/GHSA-823f-9rm4-pfxx.json @@ -7,12 +7,8 @@ "CVE-2005-0385" ], "details": "Buffer overflow in luxman before 0.41, if used with certain insecure svgalib libraries, allows local users to execute arbitrary code via a long -f command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-827p-6rx6-4wp2/GHSA-827p-6rx6-4wp2.json b/advisories/unreviewed/2022/05/GHSA-827p-6rx6-4wp2/GHSA-827p-6rx6-4wp2.json index 650081acecd..040bd68005e 100644 --- a/advisories/unreviewed/2022/05/GHSA-827p-6rx6-4wp2/GHSA-827p-6rx6-4wp2.json +++ b/advisories/unreviewed/2022/05/GHSA-827p-6rx6-4wp2/GHSA-827p-6rx6-4wp2.json @@ -7,12 +7,8 @@ "CVE-2021-31516" ], "details": "This vulnerability allows remote attackers to execute arbitrary code on affected installations of Vector 35 Binary Ninja 2.3.2660 (Build ID 88f343c3). User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of BNDB files. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-13670.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8282-v8xm-6qqp/GHSA-8282-v8xm-6qqp.json b/advisories/unreviewed/2022/05/GHSA-8282-v8xm-6qqp/GHSA-8282-v8xm-6qqp.json index 2b9c473d004..83ac9959988 100644 --- a/advisories/unreviewed/2022/05/GHSA-8282-v8xm-6qqp/GHSA-8282-v8xm-6qqp.json +++ b/advisories/unreviewed/2022/05/GHSA-8282-v8xm-6qqp/GHSA-8282-v8xm-6qqp.json @@ -7,12 +7,8 @@ "CVE-2021-20740" ], "details": "Hitachi Virtual File Platform Versions prior to 5.5.3-09 and Versions prior to 6.4.3-09, and NEC Storage M Series NAS Gateway Nh4a/Nh8a versions prior to FOS 5.5.3-08(NEC2.5.4a) and Nh4b/Nh8b, Nh4c/Nh8c versions prior to FOS 6.4.3-08(NEC3.4.2) allow remote authenticated attackers to execute arbitrary OS commands with root privileges via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-82jw-hqm6-39vf/GHSA-82jw-hqm6-39vf.json b/advisories/unreviewed/2022/05/GHSA-82jw-hqm6-39vf/GHSA-82jw-hqm6-39vf.json index da18cdcc04f..d4d2fdfb1d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-82jw-hqm6-39vf/GHSA-82jw-hqm6-39vf.json +++ b/advisories/unreviewed/2022/05/GHSA-82jw-hqm6-39vf/GHSA-82jw-hqm6-39vf.json @@ -7,12 +7,8 @@ "CVE-2021-0568" ], "details": "In onReceive of DevicePolicyManagerService.java, there is a possible enabling of disabled profiles due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-170121238", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-834h-ppvj-m6qg/GHSA-834h-ppvj-m6qg.json b/advisories/unreviewed/2022/05/GHSA-834h-ppvj-m6qg/GHSA-834h-ppvj-m6qg.json index 86e1c65752e..c2fdc6d3b8a 100644 --- a/advisories/unreviewed/2022/05/GHSA-834h-ppvj-m6qg/GHSA-834h-ppvj-m6qg.json +++ b/advisories/unreviewed/2022/05/GHSA-834h-ppvj-m6qg/GHSA-834h-ppvj-m6qg.json @@ -7,12 +7,8 @@ "CVE-2005-0292" ], "details": "Multiple SQL injection vulnerabilities in index.php in PHP Gift Registry (phpGiftReg) 1.4.0, and possibly other versions before 1.5.0b1, allow remote attackers to execute arbitrary SQL commands via the (1) messageid, (2) shopper, (3) shopfor, or (4) itemid parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-83pg-f5q7-v37g/GHSA-83pg-f5q7-v37g.json b/advisories/unreviewed/2022/05/GHSA-83pg-f5q7-v37g/GHSA-83pg-f5q7-v37g.json index fa68b7fa6d8..c6b3aa60e59 100644 --- a/advisories/unreviewed/2022/05/GHSA-83pg-f5q7-v37g/GHSA-83pg-f5q7-v37g.json +++ b/advisories/unreviewed/2022/05/GHSA-83pg-f5q7-v37g/GHSA-83pg-f5q7-v37g.json @@ -7,12 +7,8 @@ "CVE-2021-24369" ], "details": "In the GetPaid WordPress plugin before 2.3.4, users with the contributor role and above can create a new Payment Form, however the Label and Help Text input fields were not getting sanitized properly. So it was possible to inject malicious content such as img tags, leading to a Stored Cross-Site Scripting issue which is triggered when the form will be edited, for example when an admin reviews it and could lead to privilege escalation.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-83r5-mv86-2rcp/GHSA-83r5-mv86-2rcp.json b/advisories/unreviewed/2022/05/GHSA-83r5-mv86-2rcp/GHSA-83r5-mv86-2rcp.json index 0ac5d376709..a922ccb85ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-83r5-mv86-2rcp/GHSA-83r5-mv86-2rcp.json +++ b/advisories/unreviewed/2022/05/GHSA-83r5-mv86-2rcp/GHSA-83r5-mv86-2rcp.json @@ -7,12 +7,8 @@ "CVE-2021-20101" ], "details": "Machform prior to version 16 is vulnerable to HTTP host header injection due to improperly validated host headers. This could cause a victim to receive malformed content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-84pc-fxqw-h78m/GHSA-84pc-fxqw-h78m.json b/advisories/unreviewed/2022/05/GHSA-84pc-fxqw-h78m/GHSA-84pc-fxqw-h78m.json index d0b5eb165cf..bfde33e5614 100644 --- a/advisories/unreviewed/2022/05/GHSA-84pc-fxqw-h78m/GHSA-84pc-fxqw-h78m.json +++ b/advisories/unreviewed/2022/05/GHSA-84pc-fxqw-h78m/GHSA-84pc-fxqw-h78m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-862x-hrm8-ch77/GHSA-862x-hrm8-ch77.json b/advisories/unreviewed/2022/05/GHSA-862x-hrm8-ch77/GHSA-862x-hrm8-ch77.json index dcf260ffd12..b7c5e733713 100644 --- a/advisories/unreviewed/2022/05/GHSA-862x-hrm8-ch77/GHSA-862x-hrm8-ch77.json +++ b/advisories/unreviewed/2022/05/GHSA-862x-hrm8-ch77/GHSA-862x-hrm8-ch77.json @@ -7,12 +7,8 @@ "CVE-2021-34254" ], "details": "Umbraco CMS before 7.15.7 is vulnerable to Open Redirection due to insufficient url sanitization on booting.aspx.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8637-ph22-g43w/GHSA-8637-ph22-g43w.json b/advisories/unreviewed/2022/05/GHSA-8637-ph22-g43w/GHSA-8637-ph22-g43w.json index 9ee6161db9d..49399457aaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-8637-ph22-g43w/GHSA-8637-ph22-g43w.json +++ b/advisories/unreviewed/2022/05/GHSA-8637-ph22-g43w/GHSA-8637-ph22-g43w.json @@ -7,12 +7,8 @@ "CVE-2021-24376" ], "details": "The Autoptimize WordPress plugin before 2.7.8 attempts to delete malicious files (such as .php) form the uploaded archive via the \"Import Settings\" feature, after its extraction. However, the extracted folders are not checked and it is possible to upload a zip which contained a directory with PHP file in it and then it is not removed from the disk. It is a bypass of CVE-2020-24948 which allows sending a PHP file via the \"Import Settings\" functionality to achieve Remote Code Execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86q3-5fx8-mg6m/GHSA-86q3-5fx8-mg6m.json b/advisories/unreviewed/2022/05/GHSA-86q3-5fx8-mg6m/GHSA-86q3-5fx8-mg6m.json index fc623adac24..5fdaa77ee90 100644 --- a/advisories/unreviewed/2022/05/GHSA-86q3-5fx8-mg6m/GHSA-86q3-5fx8-mg6m.json +++ b/advisories/unreviewed/2022/05/GHSA-86q3-5fx8-mg6m/GHSA-86q3-5fx8-mg6m.json @@ -7,12 +7,8 @@ "CVE-2005-0485" ], "details": "Cross-site scripting (XSS) vulnerability in comment.php for paNews 2.0b4 for PHP Arena allows remote attackers to inject arbitrary HTML and web script via the showpost parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-86x3-973x-2r5r/GHSA-86x3-973x-2r5r.json b/advisories/unreviewed/2022/05/GHSA-86x3-973x-2r5r/GHSA-86x3-973x-2r5r.json index cd13845073b..f1d0e9d0aa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-86x3-973x-2r5r/GHSA-86x3-973x-2r5r.json +++ b/advisories/unreviewed/2022/05/GHSA-86x3-973x-2r5r/GHSA-86x3-973x-2r5r.json @@ -7,12 +7,8 @@ "CVE-2021-34380" ], "details": "Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metadata, which might lead to arbitrary code execution, denial of service, and information disclosure during secure boot.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-872m-5w27-hc4r/GHSA-872m-5w27-hc4r.json b/advisories/unreviewed/2022/05/GHSA-872m-5w27-hc4r/GHSA-872m-5w27-hc4r.json index 9b9d4a898b1..66f788e93c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-872m-5w27-hc4r/GHSA-872m-5w27-hc4r.json +++ b/advisories/unreviewed/2022/05/GHSA-872m-5w27-hc4r/GHSA-872m-5w27-hc4r.json @@ -7,12 +7,8 @@ "CVE-2005-0239" ], "details": "viewcert.php in the S/MIME plugin 0.4 and 0.5 for Squirrelmail allows remote attackers to execute arbitrary commands via shell metacharacters in the cert parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-87m8-3r2v-923x/GHSA-87m8-3r2v-923x.json b/advisories/unreviewed/2022/05/GHSA-87m8-3r2v-923x/GHSA-87m8-3r2v-923x.json index 8a8c49eff81..724a96db0ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-87m8-3r2v-923x/GHSA-87m8-3r2v-923x.json +++ b/advisories/unreviewed/2022/05/GHSA-87m8-3r2v-923x/GHSA-87m8-3r2v-923x.json @@ -7,12 +7,8 @@ "CVE-2005-0481" ], "details": "TrackerCam 5.12 and earlier allows remote attackers to read log files via the fn parameter in a direct request to the ComGetLogFile.php3 script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-87q5-cpgj-vj92/GHSA-87q5-cpgj-vj92.json b/advisories/unreviewed/2022/05/GHSA-87q5-cpgj-vj92/GHSA-87q5-cpgj-vj92.json index 13a9e5a48a1..4fe80054fc0 100644 --- a/advisories/unreviewed/2022/05/GHSA-87q5-cpgj-vj92/GHSA-87q5-cpgj-vj92.json +++ b/advisories/unreviewed/2022/05/GHSA-87q5-cpgj-vj92/GHSA-87q5-cpgj-vj92.json @@ -7,12 +7,8 @@ "CVE-2005-0398" ], "details": "The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-87w2-479r-m8m6/GHSA-87w2-479r-m8m6.json b/advisories/unreviewed/2022/05/GHSA-87w2-479r-m8m6/GHSA-87w2-479r-m8m6.json index b11837970cd..eae531efef3 100644 --- a/advisories/unreviewed/2022/05/GHSA-87w2-479r-m8m6/GHSA-87w2-479r-m8m6.json +++ b/advisories/unreviewed/2022/05/GHSA-87w2-479r-m8m6/GHSA-87w2-479r-m8m6.json @@ -7,12 +7,8 @@ "CVE-2005-0625" ], "details": "reportbug 3.2 includes settings from .reportbugrc in bug reports, which exposes sensitive information such as smtpuser and smtppasswd.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-884h-9vv2-g8xv/GHSA-884h-9vv2-g8xv.json b/advisories/unreviewed/2022/05/GHSA-884h-9vv2-g8xv/GHSA-884h-9vv2-g8xv.json index f5eaf1664a2..ef04555bf40 100644 --- a/advisories/unreviewed/2022/05/GHSA-884h-9vv2-g8xv/GHSA-884h-9vv2-g8xv.json +++ b/advisories/unreviewed/2022/05/GHSA-884h-9vv2-g8xv/GHSA-884h-9vv2-g8xv.json @@ -7,12 +7,8 @@ "CVE-2021-0549" ], "details": "In sspRequestCallback of BondStateMachine.java, there is a possible leak of Bluetooth MAC addresses due to log information disclosure. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-183961896", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88cf-f2fw-h93q/GHSA-88cf-f2fw-h93q.json b/advisories/unreviewed/2022/05/GHSA-88cf-f2fw-h93q/GHSA-88cf-f2fw-h93q.json index f22e59a55d4..399ef52fcfc 100644 --- a/advisories/unreviewed/2022/05/GHSA-88cf-f2fw-h93q/GHSA-88cf-f2fw-h93q.json +++ b/advisories/unreviewed/2022/05/GHSA-88cf-f2fw-h93q/GHSA-88cf-f2fw-h93q.json @@ -7,12 +7,8 @@ "CVE-2005-0244" ], "details": "PostgreSQL 8.0.0 and earlier allows local users to bypass the EXECUTE permission check for functions by using the CREATE AGGREGATE command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-88r6-jjq4-269q/GHSA-88r6-jjq4-269q.json b/advisories/unreviewed/2022/05/GHSA-88r6-jjq4-269q/GHSA-88r6-jjq4-269q.json index 112edfcb9d4..3e554611b1f 100644 --- a/advisories/unreviewed/2022/05/GHSA-88r6-jjq4-269q/GHSA-88r6-jjq4-269q.json +++ b/advisories/unreviewed/2022/05/GHSA-88r6-jjq4-269q/GHSA-88r6-jjq4-269q.json @@ -7,12 +7,8 @@ "CVE-2021-33542" ], "details": "Phoenix Contact Classic Automation Worx Software Suite in Version 1.87 and below is affected by a remote code execution vulnerability. Manipulated PC Worx or Config+ projects could lead to a remote code execution when unallocated memory is freed because of incompletely initialized data. The attacker needs to get access to an original bus configuration file (*.bcp) to be able to manipulate data inside. After manipulation the attacker needs to exchange the original file by the manipulated one on the application programming workstation. Availability, integrity, or confidentiality of an application programming workstation might be compromised by attacks using these vulnerabilities. Automated systems in operation which were programmed with one of the above-mentioned products are not affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-88vm-fqjr-j38w/GHSA-88vm-fqjr-j38w.json b/advisories/unreviewed/2022/05/GHSA-88vm-fqjr-j38w/GHSA-88vm-fqjr-j38w.json index 4221cfbbb6d..c15dfecbe3c 100644 --- a/advisories/unreviewed/2022/05/GHSA-88vm-fqjr-j38w/GHSA-88vm-fqjr-j38w.json +++ b/advisories/unreviewed/2022/05/GHSA-88vm-fqjr-j38w/GHSA-88vm-fqjr-j38w.json @@ -7,12 +7,8 @@ "CVE-2005-0370" ], "details": "Armagetron 0.2.6.0 and earlier and Armagetron Advanced 0.2.7.0 and earlier allow remote attackers to cause a denial of service (network disconnection) via an empty UDP packet, which is not properly distinguished from the \"no new packets\" state of the associated socket.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-896g-qc8p-7wrp/GHSA-896g-qc8p-7wrp.json b/advisories/unreviewed/2022/05/GHSA-896g-qc8p-7wrp/GHSA-896g-qc8p-7wrp.json index 368fa65869c..bbf8806b182 100644 --- a/advisories/unreviewed/2022/05/GHSA-896g-qc8p-7wrp/GHSA-896g-qc8p-7wrp.json +++ b/advisories/unreviewed/2022/05/GHSA-896g-qc8p-7wrp/GHSA-896g-qc8p-7wrp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89g9-v7q6-px25/GHSA-89g9-v7q6-px25.json b/advisories/unreviewed/2022/05/GHSA-89g9-v7q6-px25/GHSA-89g9-v7q6-px25.json index f24b5aff0d6..ded4f5aa4d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-89g9-v7q6-px25/GHSA-89g9-v7q6-px25.json +++ b/advisories/unreviewed/2022/05/GHSA-89g9-v7q6-px25/GHSA-89g9-v7q6-px25.json @@ -7,12 +7,8 @@ "CVE-2021-29157" ], "details": "Dovecot before 2.3.15 allows ../ Path Traversal. An attacker with access to the local filesystem can trick OAuth2 authentication into using an HS256 validation key from an attacker-controlled location. This occurs during use of local JWT validation with the posix fs driver.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89p7-qxqf-9q7p/GHSA-89p7-qxqf-9q7p.json b/advisories/unreviewed/2022/05/GHSA-89p7-qxqf-9q7p/GHSA-89p7-qxqf-9q7p.json index 43b2dab21db..cf9deb7176d 100644 --- a/advisories/unreviewed/2022/05/GHSA-89p7-qxqf-9q7p/GHSA-89p7-qxqf-9q7p.json +++ b/advisories/unreviewed/2022/05/GHSA-89p7-qxqf-9q7p/GHSA-89p7-qxqf-9q7p.json @@ -7,12 +7,8 @@ "CVE-2021-20103" ], "details": "Machform prior to version 16 is vulnerable to stored cross-site scripting due to insufficient sanitization of file attachments uploaded with forms through upload.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-89r2-xh49-6xxj/GHSA-89r2-xh49-6xxj.json b/advisories/unreviewed/2022/05/GHSA-89r2-xh49-6xxj/GHSA-89r2-xh49-6xxj.json index 6753cd57b5f..fa63edf4b3d 100644 --- a/advisories/unreviewed/2022/05/GHSA-89r2-xh49-6xxj/GHSA-89r2-xh49-6xxj.json +++ b/advisories/unreviewed/2022/05/GHSA-89r2-xh49-6xxj/GHSA-89r2-xh49-6xxj.json @@ -7,12 +7,8 @@ "CVE-2021-22373" ], "details": "There is a Defects Introduced in the Design Process Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service integrity and availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8c7q-25p6-v622/GHSA-8c7q-25p6-v622.json b/advisories/unreviewed/2022/05/GHSA-8c7q-25p6-v622/GHSA-8c7q-25p6-v622.json index cba5d3733b1..502ca67aef1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8c7q-25p6-v622/GHSA-8c7q-25p6-v622.json +++ b/advisories/unreviewed/2022/05/GHSA-8c7q-25p6-v622/GHSA-8c7q-25p6-v622.json @@ -7,12 +7,8 @@ "CVE-2020-7871" ], "details": "A vulnerability of Helpcom could allow an unauthenticated attacker to execute arbitrary command. This vulnerability exists due to insufficient validation of the parameter. This issue affects: Cnesty Helpcom 10.0 versions prior to.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cc7-wj33-wwmw/GHSA-8cc7-wj33-wwmw.json b/advisories/unreviewed/2022/05/GHSA-8cc7-wj33-wwmw/GHSA-8cc7-wj33-wwmw.json index 1513c935cd1..cc069578011 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cc7-wj33-wwmw/GHSA-8cc7-wj33-wwmw.json +++ b/advisories/unreviewed/2022/05/GHSA-8cc7-wj33-wwmw/GHSA-8cc7-wj33-wwmw.json @@ -7,12 +7,8 @@ "CVE-2005-0311" ], "details": "Ingate Firewall 4.1.3 and earlier does not terminate the PPTP session for an active user when the administrator disables that user from a resource, which could allow remote authenticated users to retain unauthorized access to resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8ch7-9mp4-rh74/GHSA-8ch7-9mp4-rh74.json b/advisories/unreviewed/2022/05/GHSA-8ch7-9mp4-rh74/GHSA-8ch7-9mp4-rh74.json index 4b53c85dd4d..e4a4021b0d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-8ch7-9mp4-rh74/GHSA-8ch7-9mp4-rh74.json +++ b/advisories/unreviewed/2022/05/GHSA-8ch7-9mp4-rh74/GHSA-8ch7-9mp4-rh74.json @@ -7,12 +7,8 @@ "CVE-2021-24361" ], "details": "In the Location Manager WordPress plugin before 2.1.0.10, the AJAX action gd_popular_location_list did not properly sanitise or validate some of its POST parameters, which are then used in a SQL statement, leading to unauthenticated SQL Injection issues.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8cqh-mhwj-8g3v/GHSA-8cqh-mhwj-8g3v.json b/advisories/unreviewed/2022/05/GHSA-8cqh-mhwj-8g3v/GHSA-8cqh-mhwj-8g3v.json index 438650233af..7a6a1b76ed1 100644 --- a/advisories/unreviewed/2022/05/GHSA-8cqh-mhwj-8g3v/GHSA-8cqh-mhwj-8g3v.json +++ b/advisories/unreviewed/2022/05/GHSA-8cqh-mhwj-8g3v/GHSA-8cqh-mhwj-8g3v.json @@ -7,12 +7,8 @@ "CVE-2021-32566" ], "details": "Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8g3f-jvcf-f2w7/GHSA-8g3f-jvcf-f2w7.json b/advisories/unreviewed/2022/05/GHSA-8g3f-jvcf-f2w7/GHSA-8g3f-jvcf-f2w7.json index 138cd7bda15..bba830aa13d 100644 --- a/advisories/unreviewed/2022/05/GHSA-8g3f-jvcf-f2w7/GHSA-8g3f-jvcf-f2w7.json +++ b/advisories/unreviewed/2022/05/GHSA-8g3f-jvcf-f2w7/GHSA-8g3f-jvcf-f2w7.json @@ -7,12 +7,8 @@ "CVE-2005-0291" ], "details": "Cross-site scripting (XSS) vulnerability in the log viewer in NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via a blocked URL phrase.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8j53-m3j2-jcrr/GHSA-8j53-m3j2-jcrr.json b/advisories/unreviewed/2022/05/GHSA-8j53-m3j2-jcrr/GHSA-8j53-m3j2-jcrr.json index a7f6bcc3782..1fe11513c43 100644 --- a/advisories/unreviewed/2022/05/GHSA-8j53-m3j2-jcrr/GHSA-8j53-m3j2-jcrr.json +++ b/advisories/unreviewed/2022/05/GHSA-8j53-m3j2-jcrr/GHSA-8j53-m3j2-jcrr.json @@ -7,12 +7,8 @@ "CVE-2005-0223" ], "details": "The Software Development Kit (SDK) and Run Time Environment (RTE) 1.4.1 and 1.4.2 for Tru64 UNIX allows remote attackers to cause a denial of service (Java Virtual Machine hang) via object deserialization.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8p34-xr7p-88q2/GHSA-8p34-xr7p-88q2.json b/advisories/unreviewed/2022/05/GHSA-8p34-xr7p-88q2/GHSA-8p34-xr7p-88q2.json index 5f816ebee58..3389cedd887 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p34-xr7p-88q2/GHSA-8p34-xr7p-88q2.json +++ b/advisories/unreviewed/2022/05/GHSA-8p34-xr7p-88q2/GHSA-8p34-xr7p-88q2.json @@ -7,12 +7,8 @@ "CVE-2021-28804" ], "details": "A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability allows attackers to execute arbitrary commands in a compromised application. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.1.1540 build 20210107. QNAP Systems Inc. QuTS hero versions prior to h4.5.1.1582 build 20210217.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p4w-28p8-3x8g/GHSA-8p4w-28p8-3x8g.json b/advisories/unreviewed/2022/05/GHSA-8p4w-28p8-3x8g/GHSA-8p4w-28p8-3x8g.json index 50c074d0295..adbce98f34e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p4w-28p8-3x8g/GHSA-8p4w-28p8-3x8g.json +++ b/advisories/unreviewed/2022/05/GHSA-8p4w-28p8-3x8g/GHSA-8p4w-28p8-3x8g.json @@ -7,12 +7,8 @@ "CVE-2021-25427" ], "details": "SQL injection vulnerability in Bluetooth prior to SMR July-2021 Release 1 allows unauthorized access to paired device information", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p87-gj5p-jx33/GHSA-8p87-gj5p-jx33.json b/advisories/unreviewed/2022/05/GHSA-8p87-gj5p-jx33/GHSA-8p87-gj5p-jx33.json index 0d3373a51a8..83321daa2aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p87-gj5p-jx33/GHSA-8p87-gj5p-jx33.json +++ b/advisories/unreviewed/2022/05/GHSA-8p87-gj5p-jx33/GHSA-8p87-gj5p-jx33.json @@ -7,12 +7,8 @@ "CVE-2021-34190" ], "details": "A stored cross site scripting (XSS) vulnerability in index.php?menu=billing_rates of Issabel PBX version 4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Name\" or \"Prefix\" fields under the \"Create New Rate\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8p9r-xrm6-68wq/GHSA-8p9r-xrm6-68wq.json b/advisories/unreviewed/2022/05/GHSA-8p9r-xrm6-68wq/GHSA-8p9r-xrm6-68wq.json index 08f472b810e..ae682a06981 100644 --- a/advisories/unreviewed/2022/05/GHSA-8p9r-xrm6-68wq/GHSA-8p9r-xrm6-68wq.json +++ b/advisories/unreviewed/2022/05/GHSA-8p9r-xrm6-68wq/GHSA-8p9r-xrm6-68wq.json @@ -7,12 +7,8 @@ "CVE-2021-36084" ], "details": "The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermission and __cil_pre_verify_helper).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8pfc-887g-g2x4/GHSA-8pfc-887g-g2x4.json b/advisories/unreviewed/2022/05/GHSA-8pfc-887g-g2x4/GHSA-8pfc-887g-g2x4.json index 8b91cb476ae..0f5eb63ffb2 100644 --- a/advisories/unreviewed/2022/05/GHSA-8pfc-887g-g2x4/GHSA-8pfc-887g-g2x4.json +++ b/advisories/unreviewed/2022/05/GHSA-8pfc-887g-g2x4/GHSA-8pfc-887g-g2x4.json @@ -7,12 +7,8 @@ "CVE-2005-0450" ], "details": "Directory traversal vulnerability in Sami HTTP Server 1.0.5 allows remote attackers to read arbitrary files via an HTTP request containing (1) .. (dot dot) or (2) \"%2e%2e\" (encoded dot dot) sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8q5v-c5jp-qp9p/GHSA-8q5v-c5jp-qp9p.json b/advisories/unreviewed/2022/05/GHSA-8q5v-c5jp-qp9p/GHSA-8q5v-c5jp-qp9p.json index c3193ecffd4..b971b18d5e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8q5v-c5jp-qp9p/GHSA-8q5v-c5jp-qp9p.json +++ b/advisories/unreviewed/2022/05/GHSA-8q5v-c5jp-qp9p/GHSA-8q5v-c5jp-qp9p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qf3-hc2j-g9wq/GHSA-8qf3-hc2j-g9wq.json b/advisories/unreviewed/2022/05/GHSA-8qf3-hc2j-g9wq/GHSA-8qf3-hc2j-g9wq.json index 92f28ff15e8..65b7967c114 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qf3-hc2j-g9wq/GHSA-8qf3-hc2j-g9wq.json +++ b/advisories/unreviewed/2022/05/GHSA-8qf3-hc2j-g9wq/GHSA-8qf3-hc2j-g9wq.json @@ -7,12 +7,8 @@ "CVE-2020-36405" ], "details": "Keystone Engine 0.9.2 has a use-after-free in llvm_ks::X86Operand::getToken.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qpp-9h5v-3cfj/GHSA-8qpp-9h5v-3cfj.json b/advisories/unreviewed/2022/05/GHSA-8qpp-9h5v-3cfj/GHSA-8qpp-9h5v-3cfj.json index 7a193b5bb8e..96b4a325fc5 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qpp-9h5v-3cfj/GHSA-8qpp-9h5v-3cfj.json +++ b/advisories/unreviewed/2022/05/GHSA-8qpp-9h5v-3cfj/GHSA-8qpp-9h5v-3cfj.json @@ -7,12 +7,8 @@ "CVE-2021-32532" ], "details": "Path traversal vulnerability in back-end analysis function in QSAN XEVO allows remote attackers to download arbitrary files without permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8qq4-926c-97wh/GHSA-8qq4-926c-97wh.json b/advisories/unreviewed/2022/05/GHSA-8qq4-926c-97wh/GHSA-8qq4-926c-97wh.json index 2c1d887a702..861060f039e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8qq4-926c-97wh/GHSA-8qq4-926c-97wh.json +++ b/advisories/unreviewed/2022/05/GHSA-8qq4-926c-97wh/GHSA-8qq4-926c-97wh.json @@ -7,12 +7,8 @@ "CVE-2020-36414" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"URL (slug)\" or \"Extra\" fields under the \"Add Article\" feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8r34-wff9-3x69/GHSA-8r34-wff9-3x69.json b/advisories/unreviewed/2022/05/GHSA-8r34-wff9-3x69/GHSA-8r34-wff9-3x69.json index b0b3bf5532e..d3d2f93cf26 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r34-wff9-3x69/GHSA-8r34-wff9-3x69.json +++ b/advisories/unreviewed/2022/05/GHSA-8r34-wff9-3x69/GHSA-8r34-wff9-3x69.json @@ -7,12 +7,8 @@ "CVE-2005-0245" ], "details": "Buffer overflow in gram.y for PostgreSQL 8.0.0 and earlier may allow attackers to execute arbitrary code via a large number of arguments to a refcursor function (gram.y), which leads to a heap-based buffer overflow, a different vulnerability than CVE-2005-0247.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8r7f-pjwj-ww9c/GHSA-8r7f-pjwj-ww9c.json b/advisories/unreviewed/2022/05/GHSA-8r7f-pjwj-ww9c/GHSA-8r7f-pjwj-ww9c.json index 9a4ab0c5ee0..8cf006297d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-8r7f-pjwj-ww9c/GHSA-8r7f-pjwj-ww9c.json +++ b/advisories/unreviewed/2022/05/GHSA-8r7f-pjwj-ww9c/GHSA-8r7f-pjwj-ww9c.json @@ -7,12 +7,8 @@ "CVE-2021-34390" ], "details": "Trusty TLK contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of an integer overflow on the size parameter of the tz_map_shared_mem function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8v9f-vv9v-mqqv/GHSA-8v9f-vv9v-mqqv.json b/advisories/unreviewed/2022/05/GHSA-8v9f-vv9v-mqqv/GHSA-8v9f-vv9v-mqqv.json index fc2a7dc6036..d8c134868d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-8v9f-vv9v-mqqv/GHSA-8v9f-vv9v-mqqv.json +++ b/advisories/unreviewed/2022/05/GHSA-8v9f-vv9v-mqqv/GHSA-8v9f-vv9v-mqqv.json @@ -7,12 +7,8 @@ "CVE-2021-32462" ], "details": "Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Exposed Hazardous Function Remote Code Execution vulnerability which could allow an unprivileged client to manipulate the registry and escalate privileges to SYSTEM on affected installations. Authentication is required to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-8vmw-c4hx-3j5r/GHSA-8vmw-c4hx-3j5r.json b/advisories/unreviewed/2022/05/GHSA-8vmw-c4hx-3j5r/GHSA-8vmw-c4hx-3j5r.json index b36675f803d..c7b5ca9ad4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-8vmw-c4hx-3j5r/GHSA-8vmw-c4hx-3j5r.json +++ b/advisories/unreviewed/2022/05/GHSA-8vmw-c4hx-3j5r/GHSA-8vmw-c4hx-3j5r.json @@ -7,12 +7,8 @@ "CVE-2020-36196" ], "details": "A stored XSS vulnerability has been reported to affect QNAP NAS running QuLog Center. If exploited, this vulnerability allows attackers to inject malicious code. This issue affects: QNAP Systems Inc. QuLog Center versions prior to 1.2.0.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8w8j-8c2x-fmpj/GHSA-8w8j-8c2x-fmpj.json b/advisories/unreviewed/2022/05/GHSA-8w8j-8c2x-fmpj/GHSA-8w8j-8c2x-fmpj.json index bd10ac58807..198498225a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-8w8j-8c2x-fmpj/GHSA-8w8j-8c2x-fmpj.json +++ b/advisories/unreviewed/2022/05/GHSA-8w8j-8c2x-fmpj/GHSA-8w8j-8c2x-fmpj.json @@ -7,12 +7,8 @@ "CVE-2020-24145" ], "details": "Cross Site Scripting (XSS) vulnerability in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via a crafted deletescreenshot action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-8xfp-qc8v-424g/GHSA-8xfp-qc8v-424g.json b/advisories/unreviewed/2022/05/GHSA-8xfp-qc8v-424g/GHSA-8xfp-qc8v-424g.json index f1a14acfdb9..4436bfdf336 100644 --- a/advisories/unreviewed/2022/05/GHSA-8xfp-qc8v-424g/GHSA-8xfp-qc8v-424g.json +++ b/advisories/unreviewed/2022/05/GHSA-8xfp-qc8v-424g/GHSA-8xfp-qc8v-424g.json @@ -7,12 +7,8 @@ "CVE-2005-0329" ], "details": "Directory traversal vulnerability in ZipGenius 5.5 and earlier allows remote attackers to create and possibly modify arbitrary files via a ZIP file with a file whose name includes .. (dot dot) sequences.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9245-rjx8-r879/GHSA-9245-rjx8-r879.json b/advisories/unreviewed/2022/05/GHSA-9245-rjx8-r879/GHSA-9245-rjx8-r879.json index 5dd7a84c227..6cbfd2856f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9245-rjx8-r879/GHSA-9245-rjx8-r879.json +++ b/advisories/unreviewed/2022/05/GHSA-9245-rjx8-r879/GHSA-9245-rjx8-r879.json @@ -7,12 +7,8 @@ "CVE-2021-36158" ], "details": "In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-925w-g298-9j86/GHSA-925w-g298-9j86.json b/advisories/unreviewed/2022/05/GHSA-925w-g298-9j86/GHSA-925w-g298-9j86.json index e8b6034792d..e83dc8bcea6 100644 --- a/advisories/unreviewed/2022/05/GHSA-925w-g298-9j86/GHSA-925w-g298-9j86.json +++ b/advisories/unreviewed/2022/05/GHSA-925w-g298-9j86/GHSA-925w-g298-9j86.json @@ -7,12 +7,8 @@ "CVE-2020-36399" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the \"rule1\" parameter under the \"Bounce Rules\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-92rj-7fw7-8v5r/GHSA-92rj-7fw7-8v5r.json b/advisories/unreviewed/2022/05/GHSA-92rj-7fw7-8v5r/GHSA-92rj-7fw7-8v5r.json index 9a937816c66..239315a09d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-92rj-7fw7-8v5r/GHSA-92rj-7fw7-8v5r.json +++ b/advisories/unreviewed/2022/05/GHSA-92rj-7fw7-8v5r/GHSA-92rj-7fw7-8v5r.json @@ -7,12 +7,8 @@ "CVE-2021-34385" ], "details": "Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the calculation of a length could lead to a heap overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-938p-949p-98pc/GHSA-938p-949p-98pc.json b/advisories/unreviewed/2022/05/GHSA-938p-949p-98pc/GHSA-938p-949p-98pc.json index 6c86ffead51..c0952724201 100644 --- a/advisories/unreviewed/2022/05/GHSA-938p-949p-98pc/GHSA-938p-949p-98pc.json +++ b/advisories/unreviewed/2022/05/GHSA-938p-949p-98pc/GHSA-938p-949p-98pc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9474-rv7j-9j64/GHSA-9474-rv7j-9j64.json b/advisories/unreviewed/2022/05/GHSA-9474-rv7j-9j64/GHSA-9474-rv7j-9j64.json index 653a2f41077..a1559478cce 100644 --- a/advisories/unreviewed/2022/05/GHSA-9474-rv7j-9j64/GHSA-9474-rv7j-9j64.json +++ b/advisories/unreviewed/2022/05/GHSA-9474-rv7j-9j64/GHSA-9474-rv7j-9j64.json @@ -7,12 +7,8 @@ "CVE-2005-0604" ], "details": "lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9572-vgq7-c3wr/GHSA-9572-vgq7-c3wr.json b/advisories/unreviewed/2022/05/GHSA-9572-vgq7-c3wr/GHSA-9572-vgq7-c3wr.json index 41c57e2766b..c0ee3998722 100644 --- a/advisories/unreviewed/2022/05/GHSA-9572-vgq7-c3wr/GHSA-9572-vgq7-c3wr.json +++ b/advisories/unreviewed/2022/05/GHSA-9572-vgq7-c3wr/GHSA-9572-vgq7-c3wr.json @@ -7,12 +7,8 @@ "CVE-2005-0264" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in browse.php in OWL 0.7 and 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) expand or (2) order parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9585-ghrc-cx9g/GHSA-9585-ghrc-cx9g.json b/advisories/unreviewed/2022/05/GHSA-9585-ghrc-cx9g/GHSA-9585-ghrc-cx9g.json index 3556933fc4a..49c85324cd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9585-ghrc-cx9g/GHSA-9585-ghrc-cx9g.json +++ b/advisories/unreviewed/2022/05/GHSA-9585-ghrc-cx9g/GHSA-9585-ghrc-cx9g.json @@ -7,12 +7,8 @@ "CVE-2005-0263" ], "details": "Buffer overflow in netpmon on AIX 5.1, 5.2, and 5.3 allows local users to execute arbitrary code via a long -O argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-958m-4rv5-24cm/GHSA-958m-4rv5-24cm.json b/advisories/unreviewed/2022/05/GHSA-958m-4rv5-24cm/GHSA-958m-4rv5-24cm.json index 6cdb74f361e..0199ecdea3a 100644 --- a/advisories/unreviewed/2022/05/GHSA-958m-4rv5-24cm/GHSA-958m-4rv5-24cm.json +++ b/advisories/unreviewed/2022/05/GHSA-958m-4rv5-24cm/GHSA-958m-4rv5-24cm.json @@ -7,12 +7,8 @@ "CVE-2021-22545" ], "details": "An attacker can craft a specific IdaPro *.i64 file that will cause the BinDiff plugin to load an invalid memory offset. This can allow the attacker to control the instruction pointer and execute arbitrary code. It is recommended to upgrade BinDiff 7", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-95gq-qwv9-98cm/GHSA-95gq-qwv9-98cm.json b/advisories/unreviewed/2022/05/GHSA-95gq-qwv9-98cm/GHSA-95gq-qwv9-98cm.json index eba671be7e8..7196808236a 100644 --- a/advisories/unreviewed/2022/05/GHSA-95gq-qwv9-98cm/GHSA-95gq-qwv9-98cm.json +++ b/advisories/unreviewed/2022/05/GHSA-95gq-qwv9-98cm/GHSA-95gq-qwv9-98cm.json @@ -7,12 +7,8 @@ "CVE-2005-0436" ], "details": "Direct code injection vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to execute portions of Perl code via the PluginMode parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-96wm-636q-6fgg/GHSA-96wm-636q-6fgg.json b/advisories/unreviewed/2022/05/GHSA-96wm-636q-6fgg/GHSA-96wm-636q-6fgg.json index 91ea079be4a..9bc941d3bb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-96wm-636q-6fgg/GHSA-96wm-636q-6fgg.json +++ b/advisories/unreviewed/2022/05/GHSA-96wm-636q-6fgg/GHSA-96wm-636q-6fgg.json @@ -7,12 +7,8 @@ "CVE-2021-33215" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The API allows Directory Traversal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-97mc-96f3-2vqp/GHSA-97mc-96f3-2vqp.json b/advisories/unreviewed/2022/05/GHSA-97mc-96f3-2vqp/GHSA-97mc-96f3-2vqp.json index 0bb4a28132d..242049015a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-97mc-96f3-2vqp/GHSA-97mc-96f3-2vqp.json +++ b/advisories/unreviewed/2022/05/GHSA-97mc-96f3-2vqp/GHSA-97mc-96f3-2vqp.json @@ -7,12 +7,8 @@ "CVE-2005-0303" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_supportError.asp or (2) comersus_backofficelite_supportError.asp in BackOffice Lite 6.0 and 6.01 allow remote attackers to inject arbitrary web script or HTML via the error parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-98fv-xh65-5whf/GHSA-98fv-xh65-5whf.json b/advisories/unreviewed/2022/05/GHSA-98fv-xh65-5whf/GHSA-98fv-xh65-5whf.json index 9913a44cbe9..9b69066be45 100644 --- a/advisories/unreviewed/2022/05/GHSA-98fv-xh65-5whf/GHSA-98fv-xh65-5whf.json +++ b/advisories/unreviewed/2022/05/GHSA-98fv-xh65-5whf/GHSA-98fv-xh65-5whf.json @@ -7,12 +7,8 @@ "CVE-2005-0225" ], "details": "firehol.sh in FireHOL before 1.224 creates temporary files with predictable file names, which could allow local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-996h-628f-g37q/GHSA-996h-628f-g37q.json b/advisories/unreviewed/2022/05/GHSA-996h-628f-g37q/GHSA-996h-628f-g37q.json index e3537533174..5ce8bb0ac9e 100644 --- a/advisories/unreviewed/2022/05/GHSA-996h-628f-g37q/GHSA-996h-628f-g37q.json +++ b/advisories/unreviewed/2022/05/GHSA-996h-628f-g37q/GHSA-996h-628f-g37q.json @@ -7,12 +7,8 @@ "CVE-2018-25017" ], "details": "RawSpeed (aka librawspeed) 3.1 has a heap-based buffer overflow in TableLookUp::setTable.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-99m4-8jhm-v4fp/GHSA-99m4-8jhm-v4fp.json b/advisories/unreviewed/2022/05/GHSA-99m4-8jhm-v4fp/GHSA-99m4-8jhm-v4fp.json index ebc3cc1f435..3067ad106b5 100644 --- a/advisories/unreviewed/2022/05/GHSA-99m4-8jhm-v4fp/GHSA-99m4-8jhm-v4fp.json +++ b/advisories/unreviewed/2022/05/GHSA-99m4-8jhm-v4fp/GHSA-99m4-8jhm-v4fp.json @@ -7,12 +7,8 @@ "CVE-2021-21102" ], "details": "Adobe Illustrator version 25.2 (and earlier) is affected by a Path Traversal vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9c7g-wvc7-p6vc/GHSA-9c7g-wvc7-p6vc.json b/advisories/unreviewed/2022/05/GHSA-9c7g-wvc7-p6vc/GHSA-9c7g-wvc7-p6vc.json index 99aae114633..df27740030a 100644 --- a/advisories/unreviewed/2022/05/GHSA-9c7g-wvc7-p6vc/GHSA-9c7g-wvc7-p6vc.json +++ b/advisories/unreviewed/2022/05/GHSA-9c7g-wvc7-p6vc/GHSA-9c7g-wvc7-p6vc.json @@ -7,12 +7,8 @@ "CVE-2020-22609" ], "details": "Cross Site Scripting (XSS) vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter in include/class.queue.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9cgw-95x9-vqxx/GHSA-9cgw-95x9-vqxx.json b/advisories/unreviewed/2022/05/GHSA-9cgw-95x9-vqxx/GHSA-9cgw-95x9-vqxx.json index c6d38cedfd6..c6d86d4fcf5 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cgw-95x9-vqxx/GHSA-9cgw-95x9-vqxx.json +++ b/advisories/unreviewed/2022/05/GHSA-9cgw-95x9-vqxx/GHSA-9cgw-95x9-vqxx.json @@ -7,12 +7,8 @@ "CVE-2005-0345" ], "details": "viewthread.php in php-fusion 4.x does not check the (1) forum_id or (2) forum_cat parameters, which allows remote attackers to view protected forums via the thread_id parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9cp7-63h5-6gxp/GHSA-9cp7-63h5-6gxp.json b/advisories/unreviewed/2022/05/GHSA-9cp7-63h5-6gxp/GHSA-9cp7-63h5-6gxp.json index 9380e2fa343..b08921b2012 100644 --- a/advisories/unreviewed/2022/05/GHSA-9cp7-63h5-6gxp/GHSA-9cp7-63h5-6gxp.json +++ b/advisories/unreviewed/2022/05/GHSA-9cp7-63h5-6gxp/GHSA-9cp7-63h5-6gxp.json @@ -7,12 +7,8 @@ "CVE-2020-21333" ], "details": "Cross Site Scripting (XSS) vulnerability in PublicCMS 4.0 to get an admin cookie when the Administrator reviews submit case.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9gjq-vmr7-6qgx/GHSA-9gjq-vmr7-6qgx.json b/advisories/unreviewed/2022/05/GHSA-9gjq-vmr7-6qgx/GHSA-9gjq-vmr7-6qgx.json index 767a4767de5..209a925a1d4 100644 --- a/advisories/unreviewed/2022/05/GHSA-9gjq-vmr7-6qgx/GHSA-9gjq-vmr7-6qgx.json +++ b/advisories/unreviewed/2022/05/GHSA-9gjq-vmr7-6qgx/GHSA-9gjq-vmr7-6qgx.json @@ -7,12 +7,8 @@ "CVE-2021-21101" ], "details": "Adobe Illustrator version 25.2 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9hfx-rww8-3j37/GHSA-9hfx-rww8-3j37.json b/advisories/unreviewed/2022/05/GHSA-9hfx-rww8-3j37/GHSA-9hfx-rww8-3j37.json index dd73caa6511..422b258b2ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hfx-rww8-3j37/GHSA-9hfx-rww8-3j37.json +++ b/advisories/unreviewed/2022/05/GHSA-9hfx-rww8-3j37/GHSA-9hfx-rww8-3j37.json @@ -7,12 +7,8 @@ "CVE-2021-0544" ], "details": "In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169257710", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9hp9-487w-ffqm/GHSA-9hp9-487w-ffqm.json b/advisories/unreviewed/2022/05/GHSA-9hp9-487w-ffqm/GHSA-9hp9-487w-ffqm.json index f1764facc26..ac1877b27c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9hp9-487w-ffqm/GHSA-9hp9-487w-ffqm.json +++ b/advisories/unreviewed/2022/05/GHSA-9hp9-487w-ffqm/GHSA-9hp9-487w-ffqm.json @@ -7,12 +7,8 @@ "CVE-2021-31531" ], "details": "Zoho ManageEngine ServiceDesk Plus MSP before 10521 is vulnerable to Server-Side Request Forgery (SSRF).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jh6-pjcx-gh47/GHSA-9jh6-pjcx-gh47.json b/advisories/unreviewed/2022/05/GHSA-9jh6-pjcx-gh47/GHSA-9jh6-pjcx-gh47.json index 4cfa016a3cf..f1a6a5b5725 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jh6-pjcx-gh47/GHSA-9jh6-pjcx-gh47.json +++ b/advisories/unreviewed/2022/05/GHSA-9jh6-pjcx-gh47/GHSA-9jh6-pjcx-gh47.json @@ -7,12 +7,8 @@ "CVE-2021-24451" ], "details": "The Export Users With Meta WordPress plugin before 0.6.5 did not escape the list of roles to export before using them in a SQL statement in the export functionality, available to admins, leading to an authenticated SQL Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jj6-v3c8-c5q6/GHSA-9jj6-v3c8-c5q6.json b/advisories/unreviewed/2022/05/GHSA-9jj6-v3c8-c5q6/GHSA-9jj6-v3c8-c5q6.json index e20664ebf07..0f6ec2df944 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jj6-v3c8-c5q6/GHSA-9jj6-v3c8-c5q6.json +++ b/advisories/unreviewed/2022/05/GHSA-9jj6-v3c8-c5q6/GHSA-9jj6-v3c8-c5q6.json @@ -7,12 +7,8 @@ "CVE-2021-0606" ], "details": "In drm_syncobj_handle_to_fd of drm_syncobj.c, there is a possible use after free due to incorrect refcounting. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-168034487", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9jq3-ffjp-whj9/GHSA-9jq3-ffjp-whj9.json b/advisories/unreviewed/2022/05/GHSA-9jq3-ffjp-whj9/GHSA-9jq3-ffjp-whj9.json index 0f24a6a3e8c..8b24e868aa0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jq3-ffjp-whj9/GHSA-9jq3-ffjp-whj9.json +++ b/advisories/unreviewed/2022/05/GHSA-9jq3-ffjp-whj9/GHSA-9jq3-ffjp-whj9.json @@ -7,12 +7,8 @@ "CVE-2005-0415" ], "details": "Multiple memory leaks in the MQL parser in Emdros before 1.1.22 allow remote attackers to cause a denial of service (memory consumption) via malformed MQL statements.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9jrp-g945-8329/GHSA-9jrp-g945-8329.json b/advisories/unreviewed/2022/05/GHSA-9jrp-g945-8329/GHSA-9jrp-g945-8329.json index f9c73eac3dc..0c4cd9bd591 100644 --- a/advisories/unreviewed/2022/05/GHSA-9jrp-g945-8329/GHSA-9jrp-g945-8329.json +++ b/advisories/unreviewed/2022/05/GHSA-9jrp-g945-8329/GHSA-9jrp-g945-8329.json @@ -7,12 +7,8 @@ "CVE-2005-0233" ], "details": "The International Domain Name (IDN) support in Firefox 1.0, Camino .8.5, and Mozilla before 1.7.6 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mfw-g95f-p5wh/GHSA-9mfw-g95f-p5wh.json b/advisories/unreviewed/2022/05/GHSA-9mfw-g95f-p5wh/GHSA-9mfw-g95f-p5wh.json index 25ab395e24c..3fb899b9306 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mfw-g95f-p5wh/GHSA-9mfw-g95f-p5wh.json +++ b/advisories/unreviewed/2022/05/GHSA-9mfw-g95f-p5wh/GHSA-9mfw-g95f-p5wh.json @@ -7,12 +7,8 @@ "CVE-2005-0328" ], "details": "Zyxel P310, P314, P324 and Netgear RT311, RT314 running the latest firmware, allows remote attackers on the WAN to obtain the IP address of the LAN side interface by pinging a valid LAN IP address, which generates an ARP reply from the WAN address side that maps the LAN IP address to the WAN's MAC address.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9mvm-qj8p-rrmj/GHSA-9mvm-qj8p-rrmj.json b/advisories/unreviewed/2022/05/GHSA-9mvm-qj8p-rrmj/GHSA-9mvm-qj8p-rrmj.json index 6d73e79214a..4b70a7f25b7 100644 --- a/advisories/unreviewed/2022/05/GHSA-9mvm-qj8p-rrmj/GHSA-9mvm-qj8p-rrmj.json +++ b/advisories/unreviewed/2022/05/GHSA-9mvm-qj8p-rrmj/GHSA-9mvm-qj8p-rrmj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9pf5-9p7c-mwgf/GHSA-9pf5-9p7c-mwgf.json b/advisories/unreviewed/2022/05/GHSA-9pf5-9p7c-mwgf/GHSA-9pf5-9p7c-mwgf.json index c933aa4a1cd..dd97be7af69 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pf5-9p7c-mwgf/GHSA-9pf5-9p7c-mwgf.json +++ b/advisories/unreviewed/2022/05/GHSA-9pf5-9p7c-mwgf/GHSA-9pf5-9p7c-mwgf.json @@ -7,12 +7,8 @@ "CVE-2005-0611" ], "details": "Heap-based buffer overflow in RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1, allows remote attackers to execute arbitrary code via .WAV files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9ph9-qc4h-6c7p/GHSA-9ph9-qc4h-6c7p.json b/advisories/unreviewed/2022/05/GHSA-9ph9-qc4h-6c7p/GHSA-9ph9-qc4h-6c7p.json index 66329b521aa..a6b0b0e981b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ph9-qc4h-6c7p/GHSA-9ph9-qc4h-6c7p.json +++ b/advisories/unreviewed/2022/05/GHSA-9ph9-qc4h-6c7p/GHSA-9ph9-qc4h-6c7p.json @@ -7,12 +7,8 @@ "CVE-2021-22338" ], "details": "There is an XXE injection vulnerability in eCNS280 V100R005C00 and V100R005C10. A module does not perform the strict operation to the input XML message. Attacker can send specific message to exploit this vulnerability, leading to the module denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9ppm-vmxx-m22x/GHSA-9ppm-vmxx-m22x.json b/advisories/unreviewed/2022/05/GHSA-9ppm-vmxx-m22x/GHSA-9ppm-vmxx-m22x.json index 60d23f38849..2755628e5b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-9ppm-vmxx-m22x/GHSA-9ppm-vmxx-m22x.json +++ b/advisories/unreviewed/2022/05/GHSA-9ppm-vmxx-m22x/GHSA-9ppm-vmxx-m22x.json @@ -7,12 +7,8 @@ "CVE-2020-18646" ], "details": "Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component \"/public/index.php\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9pqx-47j4-9jr5/GHSA-9pqx-47j4-9jr5.json b/advisories/unreviewed/2022/05/GHSA-9pqx-47j4-9jr5/GHSA-9pqx-47j4-9jr5.json index f1ce005c0e9..2247024d3d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-9pqx-47j4-9jr5/GHSA-9pqx-47j4-9jr5.json +++ b/advisories/unreviewed/2022/05/GHSA-9pqx-47j4-9jr5/GHSA-9pqx-47j4-9jr5.json @@ -7,12 +7,8 @@ "CVE-2005-0250" ], "details": "Format string vulnerability in auditselect on IBM AIX 5.1, 5.2, and 5.3 allows local users to execute arbitrary code via format string specifiers in a command line argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9qg9-x23p-hpwx/GHSA-9qg9-x23p-hpwx.json b/advisories/unreviewed/2022/05/GHSA-9qg9-x23p-hpwx/GHSA-9qg9-x23p-hpwx.json index 6122ba9d570..1a4e1c55843 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qg9-x23p-hpwx/GHSA-9qg9-x23p-hpwx.json +++ b/advisories/unreviewed/2022/05/GHSA-9qg9-x23p-hpwx/GHSA-9qg9-x23p-hpwx.json @@ -7,12 +7,8 @@ "CVE-2005-0462" ], "details": "Cross-site scripting (XSS) vulnerability in MercuryBoard 1.0.x and 1.1.x allows remote attackers to inject arbitrary HTML and web script via the f parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9qvq-vg28-xrq7/GHSA-9qvq-vg28-xrq7.json b/advisories/unreviewed/2022/05/GHSA-9qvq-vg28-xrq7/GHSA-9qvq-vg28-xrq7.json index 24fe5b740e2..33e191762c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qvq-vg28-xrq7/GHSA-9qvq-vg28-xrq7.json +++ b/advisories/unreviewed/2022/05/GHSA-9qvq-vg28-xrq7/GHSA-9qvq-vg28-xrq7.json @@ -7,12 +7,8 @@ "CVE-2021-24386" ], "details": "The WP SVG images WordPress plugin before 3.4 did not sanitise the SVG files uploaded, which could allow low privilege users such as author+ to upload a malicious SVG and then perform XSS attacks by inducing another user to access the file directly. In v3.4, the plugin restricted such upload to editors and admin, with an option to also allow author to do so. The description of the plugin has also been updated with a security warning as upload of such content is intended.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9qw2-jqcg-348f/GHSA-9qw2-jqcg-348f.json b/advisories/unreviewed/2022/05/GHSA-9qw2-jqcg-348f/GHSA-9qw2-jqcg-348f.json index 19b49de1dda..a970b55970e 100644 --- a/advisories/unreviewed/2022/05/GHSA-9qw2-jqcg-348f/GHSA-9qw2-jqcg-348f.json +++ b/advisories/unreviewed/2022/05/GHSA-9qw2-jqcg-348f/GHSA-9qw2-jqcg-348f.json @@ -7,12 +7,8 @@ "CVE-2005-0397" ], "details": "Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a filename argument to convert, which may be called by other web applications.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9r6c-7f3j-3grq/GHSA-9r6c-7f3j-3grq.json b/advisories/unreviewed/2022/05/GHSA-9r6c-7f3j-3grq/GHSA-9r6c-7f3j-3grq.json index c65714bb680..58636b8d8f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-9r6c-7f3j-3grq/GHSA-9r6c-7f3j-3grq.json +++ b/advisories/unreviewed/2022/05/GHSA-9r6c-7f3j-3grq/GHSA-9r6c-7f3j-3grq.json @@ -7,12 +7,8 @@ "CVE-2020-23697" ], "details": "Cross Site Scripting vulnerabilty in Monstra CMS 3.0.4 via the page feature in admin/index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9rc8-69hf-prxh/GHSA-9rc8-69hf-prxh.json b/advisories/unreviewed/2022/05/GHSA-9rc8-69hf-prxh/GHSA-9rc8-69hf-prxh.json index ba9d89702af..c26bee91812 100644 --- a/advisories/unreviewed/2022/05/GHSA-9rc8-69hf-prxh/GHSA-9rc8-69hf-prxh.json +++ b/advisories/unreviewed/2022/05/GHSA-9rc8-69hf-prxh/GHSA-9rc8-69hf-prxh.json @@ -7,12 +7,8 @@ "CVE-2020-25868" ], "details": "Pexip Infinity 22.x through 24.x before 24.2 has Improper Input Validation for call setup. An unauthenticated remote attacker can trigger a software abort (temporary loss of service).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9v3x-qcrj-vcrc/GHSA-9v3x-qcrj-vcrc.json b/advisories/unreviewed/2022/05/GHSA-9v3x-qcrj-vcrc/GHSA-9v3x-qcrj-vcrc.json index 3a53131f379..2ea3ffd510b 100644 --- a/advisories/unreviewed/2022/05/GHSA-9v3x-qcrj-vcrc/GHSA-9v3x-qcrj-vcrc.json +++ b/advisories/unreviewed/2022/05/GHSA-9v3x-qcrj-vcrc/GHSA-9v3x-qcrj-vcrc.json @@ -7,12 +7,8 @@ "CVE-2005-0340" ], "details": "Integer signedness error in Apple File Service (AFP Server) allows remote attackers to cause a denial of service (application crash) via a negative UAM string length in a FPLoginExt packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-9vf9-hcg2-9f94/GHSA-9vf9-hcg2-9f94.json b/advisories/unreviewed/2022/05/GHSA-9vf9-hcg2-9f94/GHSA-9vf9-hcg2-9f94.json index ec759fd6130..9cde10116ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vf9-hcg2-9f94/GHSA-9vf9-hcg2-9f94.json +++ b/advisories/unreviewed/2022/05/GHSA-9vf9-hcg2-9f94/GHSA-9vf9-hcg2-9f94.json @@ -7,12 +7,8 @@ "CVE-2021-22371" ], "details": "There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9vqf-5jhj-hm4w/GHSA-9vqf-5jhj-hm4w.json b/advisories/unreviewed/2022/05/GHSA-9vqf-5jhj-hm4w/GHSA-9vqf-5jhj-hm4w.json index 35a67021a88..3272e6fff48 100644 --- a/advisories/unreviewed/2022/05/GHSA-9vqf-5jhj-hm4w/GHSA-9vqf-5jhj-hm4w.json +++ b/advisories/unreviewed/2022/05/GHSA-9vqf-5jhj-hm4w/GHSA-9vqf-5jhj-hm4w.json @@ -7,12 +7,8 @@ "CVE-2021-33539" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable authentication bypass vulnerability exists in the hostname processing. A specially configured device hostname can cause the device to interpret selected remote traffic as local traffic, resulting in a bypass of web authentication. An attacker can send authenticated SNMP requests to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9wg4-hwfp-qf2w/GHSA-9wg4-hwfp-qf2w.json b/advisories/unreviewed/2022/05/GHSA-9wg4-hwfp-qf2w/GHSA-9wg4-hwfp-qf2w.json index b0a1abf347a..a17245988cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-9wg4-hwfp-qf2w/GHSA-9wg4-hwfp-qf2w.json +++ b/advisories/unreviewed/2022/05/GHSA-9wg4-hwfp-qf2w/GHSA-9wg4-hwfp-qf2w.json @@ -7,12 +7,8 @@ "CVE-2020-26801" ], "details": "A stored cross-site scripting (XSS) vulnerability was discovered in /Forms/device_vars_1 on TrippLite SU2200RTXL2Ua with firmware version 12.04.0055. This vulnerability allows authenticated attackers to obtain other users' information via a crafted POST request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-9xhc-jrfx-j7h5/GHSA-9xhc-jrfx-j7h5.json b/advisories/unreviewed/2022/05/GHSA-9xhc-jrfx-j7h5/GHSA-9xhc-jrfx-j7h5.json index 28bb52d3897..cb9d62203de 100644 --- a/advisories/unreviewed/2022/05/GHSA-9xhc-jrfx-j7h5/GHSA-9xhc-jrfx-j7h5.json +++ b/advisories/unreviewed/2022/05/GHSA-9xhc-jrfx-j7h5/GHSA-9xhc-jrfx-j7h5.json @@ -7,12 +7,8 @@ "CVE-2021-32529" ], "details": "Command injection vulnerability in QSAN XEVO, SANOS allows remote unauthenticated attackers to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c2cx-322m-jmv2/GHSA-c2cx-322m-jmv2.json b/advisories/unreviewed/2022/05/GHSA-c2cx-322m-jmv2/GHSA-c2cx-322m-jmv2.json index a79fa09deb3..333ae65ad54 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2cx-322m-jmv2/GHSA-c2cx-322m-jmv2.json +++ b/advisories/unreviewed/2022/05/GHSA-c2cx-322m-jmv2/GHSA-c2cx-322m-jmv2.json @@ -7,12 +7,8 @@ "CVE-2021-0537" ], "details": "In onCreate of WiFiInstaller.java, there is a possible way to install a malicious Hotspot 2.0 configuration due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-176756141", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c2pf-5922-6c68/GHSA-c2pf-5922-6c68.json b/advisories/unreviewed/2022/05/GHSA-c2pf-5922-6c68/GHSA-c2pf-5922-6c68.json index 0b1d4b444fd..9537e11b9bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-c2pf-5922-6c68/GHSA-c2pf-5922-6c68.json +++ b/advisories/unreviewed/2022/05/GHSA-c2pf-5922-6c68/GHSA-c2pf-5922-6c68.json @@ -7,12 +7,8 @@ "CVE-2021-22326" ], "details": "There is an Incorrect Privilege Assignment Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3hj-j6pp-p2f3/GHSA-c3hj-j6pp-p2f3.json b/advisories/unreviewed/2022/05/GHSA-c3hj-j6pp-p2f3/GHSA-c3hj-j6pp-p2f3.json index ee6b0928a42..27f60392c23 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3hj-j6pp-p2f3/GHSA-c3hj-j6pp-p2f3.json +++ b/advisories/unreviewed/2022/05/GHSA-c3hj-j6pp-p2f3/GHSA-c3hj-j6pp-p2f3.json @@ -7,12 +7,8 @@ "CVE-2021-36085" ], "details": "The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __verify_map_perm_classperms and hashtab_map).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c3q2-c2vr-j74v/GHSA-c3q2-c2vr-j74v.json b/advisories/unreviewed/2022/05/GHSA-c3q2-c2vr-j74v/GHSA-c3q2-c2vr-j74v.json index 46fb872368c..4079e34a37f 100644 --- a/advisories/unreviewed/2022/05/GHSA-c3q2-c2vr-j74v/GHSA-c3q2-c2vr-j74v.json +++ b/advisories/unreviewed/2022/05/GHSA-c3q2-c2vr-j74v/GHSA-c3q2-c2vr-j74v.json @@ -7,12 +7,8 @@ "CVE-2020-19511" ], "details": "Cross Site Scriptiong vulnerability in Typesetter 5.1 via the !1) className and !2) Description fields in index.php/Admin/Classes,", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c46x-8q9c-r3vx/GHSA-c46x-8q9c-r3vx.json b/advisories/unreviewed/2022/05/GHSA-c46x-8q9c-r3vx/GHSA-c46x-8q9c-r3vx.json index b99547fa585..13a8f91a8cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-c46x-8q9c-r3vx/GHSA-c46x-8q9c-r3vx.json +++ b/advisories/unreviewed/2022/05/GHSA-c46x-8q9c-r3vx/GHSA-c46x-8q9c-r3vx.json @@ -7,12 +7,8 @@ "CVE-2021-1134" ], "details": "A vulnerability in the Cisco Identity Services Engine (ISE) integration feature of the Cisco DNA Center Software could allow an unauthenticated, remote attacker to gain unauthorized access to sensitive data. The vulnerability is due to an incomplete validation of the X.509 certificate used when establishing a connection between DNA Center and an ISE server. An attacker could exploit this vulnerability by supplying a crafted certificate and could then intercept communications between the ISE and DNA Center. A successful exploit could allow the attacker to view and alter sensitive information that the ISE maintains about clients that are connected to the network.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c4p3-qhm5-3h73/GHSA-c4p3-qhm5-3h73.json b/advisories/unreviewed/2022/05/GHSA-c4p3-qhm5-3h73/GHSA-c4p3-qhm5-3h73.json index 9685796b441..b9807783f4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-c4p3-qhm5-3h73/GHSA-c4p3-qhm5-3h73.json +++ b/advisories/unreviewed/2022/05/GHSA-c4p3-qhm5-3h73/GHSA-c4p3-qhm5-3h73.json @@ -7,12 +7,8 @@ "CVE-2021-22380" ], "details": "There is a Cleartext Transmission of Sensitive Information Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality and availability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c5rf-fp6p-83r9/GHSA-c5rf-fp6p-83r9.json b/advisories/unreviewed/2022/05/GHSA-c5rf-fp6p-83r9/GHSA-c5rf-fp6p-83r9.json index bb5629442cd..73ad8d3ffc8 100644 --- a/advisories/unreviewed/2022/05/GHSA-c5rf-fp6p-83r9/GHSA-c5rf-fp6p-83r9.json +++ b/advisories/unreviewed/2022/05/GHSA-c5rf-fp6p-83r9/GHSA-c5rf-fp6p-83r9.json @@ -7,12 +7,8 @@ "CVE-2021-22352" ], "details": "There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may allow attackers to hijack the device and forge UIs to induce users to execute malicious commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c84v-5vhm-rxh7/GHSA-c84v-5vhm-rxh7.json b/advisories/unreviewed/2022/05/GHSA-c84v-5vhm-rxh7/GHSA-c84v-5vhm-rxh7.json index 6c12ea4f621..6db65123a53 100644 --- a/advisories/unreviewed/2022/05/GHSA-c84v-5vhm-rxh7/GHSA-c84v-5vhm-rxh7.json +++ b/advisories/unreviewed/2022/05/GHSA-c84v-5vhm-rxh7/GHSA-c84v-5vhm-rxh7.json @@ -7,12 +7,8 @@ "CVE-2005-0274" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in showgallery.php in PhotoPost before 4.86 allow remote attackers to inject arbitrary web script or HTML via the (1) cat, (2) si, (3) page, or (4) ppuser parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c86x-vfvf-3hm7/GHSA-c86x-vfvf-3hm7.json b/advisories/unreviewed/2022/05/GHSA-c86x-vfvf-3hm7/GHSA-c86x-vfvf-3hm7.json index fbe7b8f3c67..2824b28c821 100644 --- a/advisories/unreviewed/2022/05/GHSA-c86x-vfvf-3hm7/GHSA-c86x-vfvf-3hm7.json +++ b/advisories/unreviewed/2022/05/GHSA-c86x-vfvf-3hm7/GHSA-c86x-vfvf-3hm7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-c8fh-m2xm-pp2v/GHSA-c8fh-m2xm-pp2v.json b/advisories/unreviewed/2022/05/GHSA-c8fh-m2xm-pp2v/GHSA-c8fh-m2xm-pp2v.json index 850c8ccf373..19b7557a214 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8fh-m2xm-pp2v/GHSA-c8fh-m2xm-pp2v.json +++ b/advisories/unreviewed/2022/05/GHSA-c8fh-m2xm-pp2v/GHSA-c8fh-m2xm-pp2v.json @@ -7,12 +7,8 @@ "CVE-2005-0363" ], "details": "awstats.pl in AWStats 4.0 and 6.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the config parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c8xw-3hq7-wm33/GHSA-c8xw-3hq7-wm33.json b/advisories/unreviewed/2022/05/GHSA-c8xw-3hq7-wm33/GHSA-c8xw-3hq7-wm33.json index 013863d542b..74cc822ed0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-c8xw-3hq7-wm33/GHSA-c8xw-3hq7-wm33.json +++ b/advisories/unreviewed/2022/05/GHSA-c8xw-3hq7-wm33/GHSA-c8xw-3hq7-wm33.json @@ -7,12 +7,8 @@ "CVE-2005-0314" ], "details": "Cross-site scripting (XSS) vulnerability in user.php in Magic Winmail Server 4.0 Build 1112 allows remote attackers to inject arbitrary web script or HTML via the personal information fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-c924-xxqf-59v3/GHSA-c924-xxqf-59v3.json b/advisories/unreviewed/2022/05/GHSA-c924-xxqf-59v3/GHSA-c924-xxqf-59v3.json index b32d87b6f3f..7039da4fb24 100644 --- a/advisories/unreviewed/2022/05/GHSA-c924-xxqf-59v3/GHSA-c924-xxqf-59v3.json +++ b/advisories/unreviewed/2022/05/GHSA-c924-xxqf-59v3/GHSA-c924-xxqf-59v3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cc5c-g4xf-q5cw/GHSA-cc5c-g4xf-q5cw.json b/advisories/unreviewed/2022/05/GHSA-cc5c-g4xf-q5cw/GHSA-cc5c-g4xf-q5cw.json index 8b25db6a8ba..715ec4ac3c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cc5c-g4xf-q5cw/GHSA-cc5c-g4xf-q5cw.json +++ b/advisories/unreviewed/2022/05/GHSA-cc5c-g4xf-q5cw/GHSA-cc5c-g4xf-q5cw.json @@ -7,12 +7,8 @@ "CVE-2005-0458" ], "details": "Cross-site scripting (XSS) vulnerability in contact_us.php in osCommerce 2.2-MS2 allows remote attackers to inject arbitrary web script or HTML via the enquiry parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ccqw-9m3x-3gq7/GHSA-ccqw-9m3x-3gq7.json b/advisories/unreviewed/2022/05/GHSA-ccqw-9m3x-3gq7/GHSA-ccqw-9m3x-3gq7.json index e2f9dfa2aca..c45d49902a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-ccqw-9m3x-3gq7/GHSA-ccqw-9m3x-3gq7.json +++ b/advisories/unreviewed/2022/05/GHSA-ccqw-9m3x-3gq7/GHSA-ccqw-9m3x-3gq7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfc6-869j-gcrx/GHSA-cfc6-869j-gcrx.json b/advisories/unreviewed/2022/05/GHSA-cfc6-869j-gcrx/GHSA-cfc6-869j-gcrx.json index c9ea25fb499..6087e1f3006 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfc6-869j-gcrx/GHSA-cfc6-869j-gcrx.json +++ b/advisories/unreviewed/2022/05/GHSA-cfc6-869j-gcrx/GHSA-cfc6-869j-gcrx.json @@ -7,12 +7,8 @@ "CVE-2020-18066" ], "details": "Cross Site Scripting vulnerability in ZrLog 2.1.0 via the (1) userName and (2) email parameters in post/addComment.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cfgg-m2mw-qh5g/GHSA-cfgg-m2mw-qh5g.json b/advisories/unreviewed/2022/05/GHSA-cfgg-m2mw-qh5g/GHSA-cfgg-m2mw-qh5g.json index 5c7bf87aa0f..9eb0a89e76a 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfgg-m2mw-qh5g/GHSA-cfgg-m2mw-qh5g.json +++ b/advisories/unreviewed/2022/05/GHSA-cfgg-m2mw-qh5g/GHSA-cfgg-m2mw-qh5g.json @@ -7,12 +7,8 @@ "CVE-2005-0410" ], "details": "SQL injection vulnerability in importcc.php for CitrusDB 0.3.6 and earlier allows remote attackers to inject data via the fields of a CSV file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cfmr-fmrw-cc2v/GHSA-cfmr-fmrw-cc2v.json b/advisories/unreviewed/2022/05/GHSA-cfmr-fmrw-cc2v/GHSA-cfmr-fmrw-cc2v.json index da549efb5d3..123790482bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-cfmr-fmrw-cc2v/GHSA-cfmr-fmrw-cc2v.json +++ b/advisories/unreviewed/2022/05/GHSA-cfmr-fmrw-cc2v/GHSA-cfmr-fmrw-cc2v.json @@ -7,12 +7,8 @@ "CVE-2020-23702" ], "details": "Cross Site Scripting (XSS) vulnerability in PHP-Fusion 9.03.60 via 'New Shout' in /infusions/shoutbox_panel/shoutbox_admin.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ch8c-5g73-v38h/GHSA-ch8c-5g73-v38h.json b/advisories/unreviewed/2022/05/GHSA-ch8c-5g73-v38h/GHSA-ch8c-5g73-v38h.json index 3e67ed8ef7b..a9b7f6d7b7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-ch8c-5g73-v38h/GHSA-ch8c-5g73-v38h.json +++ b/advisories/unreviewed/2022/05/GHSA-ch8c-5g73-v38h/GHSA-ch8c-5g73-v38h.json @@ -7,12 +7,8 @@ "CVE-2005-0482" ], "details": "TrackerCam 5.12 and earlier allows remote attackers to cause a denial of service (crash) via (1) a large number of connections with a negative Content-Length header, possibly triggering an integer signedness error, or (2) a large amount of data.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-chcf-c8w2-7x53/GHSA-chcf-c8w2-7x53.json b/advisories/unreviewed/2022/05/GHSA-chcf-c8w2-7x53/GHSA-chcf-c8w2-7x53.json index 25e0a705413..e4b93be9133 100644 --- a/advisories/unreviewed/2022/05/GHSA-chcf-c8w2-7x53/GHSA-chcf-c8w2-7x53.json +++ b/advisories/unreviewed/2022/05/GHSA-chcf-c8w2-7x53/GHSA-chcf-c8w2-7x53.json @@ -7,12 +7,8 @@ "CVE-2021-34394" ], "details": "Trusty contains a vulnerability in all TAs whose deserializer does not reject messages with multiple occurrences of the same parameter. The deserialization of untrusted data might allow an attacker to exploit the deserializer to impact code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-chh7-246w-c444/GHSA-chh7-246w-c444.json b/advisories/unreviewed/2022/05/GHSA-chh7-246w-c444/GHSA-chh7-246w-c444.json index 2aa36076dbf..25c892202eb 100644 --- a/advisories/unreviewed/2022/05/GHSA-chh7-246w-c444/GHSA-chh7-246w-c444.json +++ b/advisories/unreviewed/2022/05/GHSA-chh7-246w-c444/GHSA-chh7-246w-c444.json @@ -7,12 +7,8 @@ "CVE-2005-0267" ], "details": "index.php in FlatNuke 2.5.1 allows remote attackers to create an administrator account via carriage returns and #10 in the url_avatar field, which is interpreted as a sensitive directive.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cjhq-3474-22qf/GHSA-cjhq-3474-22qf.json b/advisories/unreviewed/2022/05/GHSA-cjhq-3474-22qf/GHSA-cjhq-3474-22qf.json index 9809ff837a2..1870457ef7f 100644 --- a/advisories/unreviewed/2022/05/GHSA-cjhq-3474-22qf/GHSA-cjhq-3474-22qf.json +++ b/advisories/unreviewed/2022/05/GHSA-cjhq-3474-22qf/GHSA-cjhq-3474-22qf.json @@ -7,12 +7,8 @@ "CVE-2021-27950" ], "details": "A SQL injection vulnerability in azurWebEngine in Sita AzurCMS through 1.2.3.12 allows an authenticated attacker to execute arbitrary SQL commands via the id parameter to mesdocs.ajax.php in azurWebEngine/eShop. By default, the query is executed as DBA.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm22-pwh9-x3r2/GHSA-cm22-pwh9-x3r2.json b/advisories/unreviewed/2022/05/GHSA-cm22-pwh9-x3r2/GHSA-cm22-pwh9-x3r2.json index fba678b85b1..98f9aed16cf 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm22-pwh9-x3r2/GHSA-cm22-pwh9-x3r2.json +++ b/advisories/unreviewed/2022/05/GHSA-cm22-pwh9-x3r2/GHSA-cm22-pwh9-x3r2.json @@ -7,12 +7,8 @@ "CVE-2021-20417" ], "details": "IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196219", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm7w-gcpr-j3p3/GHSA-cm7w-gcpr-j3p3.json b/advisories/unreviewed/2022/05/GHSA-cm7w-gcpr-j3p3/GHSA-cm7w-gcpr-j3p3.json index bd724d42639..b0dfaa903c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm7w-gcpr-j3p3/GHSA-cm7w-gcpr-j3p3.json +++ b/advisories/unreviewed/2022/05/GHSA-cm7w-gcpr-j3p3/GHSA-cm7w-gcpr-j3p3.json @@ -7,12 +7,8 @@ "CVE-2021-34377" ], "details": "Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 9 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to escalation of privileges, information disclosure, and denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cm82-c58j-hhv5/GHSA-cm82-c58j-hhv5.json b/advisories/unreviewed/2022/05/GHSA-cm82-c58j-hhv5/GHSA-cm82-c58j-hhv5.json index 00e7a3f642e..8a2f922a1cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-cm82-c58j-hhv5/GHSA-cm82-c58j-hhv5.json +++ b/advisories/unreviewed/2022/05/GHSA-cm82-c58j-hhv5/GHSA-cm82-c58j-hhv5.json @@ -7,12 +7,8 @@ "CVE-2021-35207" ], "details": "An issue was discovered in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.0 before 9.0.0 Patch 16. An XSS vulnerability exists in the login component of Zimbra Web Client, in which an attacker can execute arbitrary JavaScript by adding executable JavaScript to the loginErrorCode parameter of the login url.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmpg-x4w3-3m25/GHSA-cmpg-x4w3-3m25.json b/advisories/unreviewed/2022/05/GHSA-cmpg-x4w3-3m25/GHSA-cmpg-x4w3-3m25.json index 347b7a7e791..a9e2b130e50 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmpg-x4w3-3m25/GHSA-cmpg-x4w3-3m25.json +++ b/advisories/unreviewed/2022/05/GHSA-cmpg-x4w3-3m25/GHSA-cmpg-x4w3-3m25.json @@ -7,12 +7,8 @@ "CVE-2020-4935" ], "details": "IBM Datacap Fastdoc Capture (IBM Datacap Navigator 9.1.7 ) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 191753.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cmv8-452f-24ph/GHSA-cmv8-452f-24ph.json b/advisories/unreviewed/2022/05/GHSA-cmv8-452f-24ph/GHSA-cmv8-452f-24ph.json index 8a073279b97..d71147ef1e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmv8-452f-24ph/GHSA-cmv8-452f-24ph.json +++ b/advisories/unreviewed/2022/05/GHSA-cmv8-452f-24ph/GHSA-cmv8-452f-24ph.json @@ -7,12 +7,8 @@ "CVE-2005-0467" ], "details": "Multiple integer overflows in the (1) sftp_pkt_getstring and (2) fxp_readdir_recv functions in the PSFTP and PSCP clients for PuTTY 0.56, and possibly earlier versions, allow remote malicious web sites to execute arbitrary code via SFTP responses that corrupt the heap after insufficient memory has been allocated.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cmvh-8j78-w9jq/GHSA-cmvh-8j78-w9jq.json b/advisories/unreviewed/2022/05/GHSA-cmvh-8j78-w9jq/GHSA-cmvh-8j78-w9jq.json index a55163715da..123326890f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-cmvh-8j78-w9jq/GHSA-cmvh-8j78-w9jq.json +++ b/advisories/unreviewed/2022/05/GHSA-cmvh-8j78-w9jq/GHSA-cmvh-8j78-w9jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cpmx-pqmx-cfmg/GHSA-cpmx-pqmx-cfmg.json b/advisories/unreviewed/2022/05/GHSA-cpmx-pqmx-cfmg/GHSA-cpmx-pqmx-cfmg.json index 426050ad250..5060f787582 100644 --- a/advisories/unreviewed/2022/05/GHSA-cpmx-pqmx-cfmg/GHSA-cpmx-pqmx-cfmg.json +++ b/advisories/unreviewed/2022/05/GHSA-cpmx-pqmx-cfmg/GHSA-cpmx-pqmx-cfmg.json @@ -7,12 +7,8 @@ "CVE-2005-0479" ], "details": "Directory traversal vulnerability in ComGetLogFile.php3 for TrackerCam 5.12 and earlier allows remote attackers to read arbitrary files via \"..\" sequences and (1) \"/\" slash), (2) \"\\\" (backslash), or (3) hex-encoded characters in the fn parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cq38-x9xq-qw4m/GHSA-cq38-x9xq-qw4m.json b/advisories/unreviewed/2022/05/GHSA-cq38-x9xq-qw4m/GHSA-cq38-x9xq-qw4m.json index 0487867bc79..e2cff43f925 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq38-x9xq-qw4m/GHSA-cq38-x9xq-qw4m.json +++ b/advisories/unreviewed/2022/05/GHSA-cq38-x9xq-qw4m/GHSA-cq38-x9xq-qw4m.json @@ -7,12 +7,8 @@ "CVE-2005-0375" ], "details": "imageview.php in SGallery 1.01 allows remote attackers to obtain sensitive information via an HTTP request with (1) idalbum and (2) idimage unset, which reveals the installation path in an error message for the sql_fetch_row function.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cq8h-xq69-w93x/GHSA-cq8h-xq69-w93x.json b/advisories/unreviewed/2022/05/GHSA-cq8h-xq69-w93x/GHSA-cq8h-xq69-w93x.json index c29581f3afb..44857e84195 100644 --- a/advisories/unreviewed/2022/05/GHSA-cq8h-xq69-w93x/GHSA-cq8h-xq69-w93x.json +++ b/advisories/unreviewed/2022/05/GHSA-cq8h-xq69-w93x/GHSA-cq8h-xq69-w93x.json @@ -7,12 +7,8 @@ "CVE-2020-20474" ], "details": "White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser.php files failing to filter the csa_to_user parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-cqgc-44vw-w3h7/GHSA-cqgc-44vw-w3h7.json b/advisories/unreviewed/2022/05/GHSA-cqgc-44vw-w3h7/GHSA-cqgc-44vw-w3h7.json index f7afea245b5..9a81cada359 100644 --- a/advisories/unreviewed/2022/05/GHSA-cqgc-44vw-w3h7/GHSA-cqgc-44vw-w3h7.json +++ b/advisories/unreviewed/2022/05/GHSA-cqgc-44vw-w3h7/GHSA-cqgc-44vw-w3h7.json @@ -7,12 +7,8 @@ "CVE-2021-36144" ], "details": "The polling timer handler in ACRN before 2.5 has a use-after-free for a freed virtio device, related to devicemodel/hw/pci/virtio/*.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-crv6-r2rx-hphg/GHSA-crv6-r2rx-hphg.json b/advisories/unreviewed/2022/05/GHSA-crv6-r2rx-hphg/GHSA-crv6-r2rx-hphg.json index 5c17f7fca7d..61cd855bae9 100644 --- a/advisories/unreviewed/2022/05/GHSA-crv6-r2rx-hphg/GHSA-crv6-r2rx-hphg.json +++ b/advisories/unreviewed/2022/05/GHSA-crv6-r2rx-hphg/GHSA-crv6-r2rx-hphg.json @@ -7,12 +7,8 @@ "CVE-2005-0428" ], "details": "The DNSPacket::expand method in dnspacket.cc in PowerDNS before 2.9.17 allows remote attackers to cause a denial of service by sending a random stream of bytes.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cv25-vvrw-9p8p/GHSA-cv25-vvrw-9p8p.json b/advisories/unreviewed/2022/05/GHSA-cv25-vvrw-9p8p/GHSA-cv25-vvrw-9p8p.json index ff6ae6e25ea..86baeac3d39 100644 --- a/advisories/unreviewed/2022/05/GHSA-cv25-vvrw-9p8p/GHSA-cv25-vvrw-9p8p.json +++ b/advisories/unreviewed/2022/05/GHSA-cv25-vvrw-9p8p/GHSA-cv25-vvrw-9p8p.json @@ -7,12 +7,8 @@ "CVE-2005-0471" ], "details": "Sun Java JRE 1.1.x through 1.4.x writes temporary files with long filenames that become predictable on a file system that uses 8.3 style short names, which allows remote attackers to write arbitrary files to known locations and facilitates the exploitation of vulnerabilities in applications that rely on unpredictable file names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cx4r-fwxf-f6m5/GHSA-cx4r-fwxf-f6m5.json b/advisories/unreviewed/2022/05/GHSA-cx4r-fwxf-f6m5/GHSA-cx4r-fwxf-f6m5.json index 5735421505b..b7bdf9d8fd9 100644 --- a/advisories/unreviewed/2022/05/GHSA-cx4r-fwxf-f6m5/GHSA-cx4r-fwxf-f6m5.json +++ b/advisories/unreviewed/2022/05/GHSA-cx4r-fwxf-f6m5/GHSA-cx4r-fwxf-f6m5.json @@ -7,12 +7,8 @@ "CVE-2005-0621" ], "details": "Scrapland 1.0 and earlier allows remote attackers to cause a denial of service (server termination) by triggering an error, which is treated as a fatal error by the server, as demonstrated using (1) signed integers for size values, (2) an invalid model, (3) a \"newpos\" value that is less than or equal to a size value, or (4) partial packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-cxhx-r8q3-rf4p/GHSA-cxhx-r8q3-rf4p.json b/advisories/unreviewed/2022/05/GHSA-cxhx-r8q3-rf4p/GHSA-cxhx-r8q3-rf4p.json index 46744098dd1..9b5d659d3d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-cxhx-r8q3-rf4p/GHSA-cxhx-r8q3-rf4p.json +++ b/advisories/unreviewed/2022/05/GHSA-cxhx-r8q3-rf4p/GHSA-cxhx-r8q3-rf4p.json @@ -7,12 +7,8 @@ "CVE-2005-0585" ], "details": "Firefox before 1.0.1 and Mozilla before 1.7.6 truncates long sub-domains or paths for display, which may allow remote malicious web sites to spoof legitimate sites and facilitate phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f235-r39g-2m8r/GHSA-f235-r39g-2m8r.json b/advisories/unreviewed/2022/05/GHSA-f235-r39g-2m8r/GHSA-f235-r39g-2m8r.json index c75482a1659..66338a13bdc 100644 --- a/advisories/unreviewed/2022/05/GHSA-f235-r39g-2m8r/GHSA-f235-r39g-2m8r.json +++ b/advisories/unreviewed/2022/05/GHSA-f235-r39g-2m8r/GHSA-f235-r39g-2m8r.json @@ -7,12 +7,8 @@ "CVE-2005-0230" ], "details": "Firefox 1.0 does not prevent the user from dragging an executable file to the desktop when it has an image/gif content type but has a dangerous extension such as .bat or .exe, which allows remote attackers to bypass the intended restriction and execute arbitrary commands via malformed GIF files that can still be parsed by the Windows batch file parser, aka \"firedragging.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -60,9 +56,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f243-hqpc-893w/GHSA-f243-hqpc-893w.json b/advisories/unreviewed/2022/05/GHSA-f243-hqpc-893w/GHSA-f243-hqpc-893w.json index 93fbed889e0..d9e40cef5d8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f243-hqpc-893w/GHSA-f243-hqpc-893w.json +++ b/advisories/unreviewed/2022/05/GHSA-f243-hqpc-893w/GHSA-f243-hqpc-893w.json @@ -7,12 +7,8 @@ "CVE-2021-28684" ], "details": "The XML parser used in ConeXware PowerArchiver before 20.10.02 allows processing of external entities, which might lead to exfiltration of local files over the network (via an XXE attack).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f2vj-m3mq-wc4p/GHSA-f2vj-m3mq-wc4p.json b/advisories/unreviewed/2022/05/GHSA-f2vj-m3mq-wc4p/GHSA-f2vj-m3mq-wc4p.json index ec941e107f3..d4bd12839c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-f2vj-m3mq-wc4p/GHSA-f2vj-m3mq-wc4p.json +++ b/advisories/unreviewed/2022/05/GHSA-f2vj-m3mq-wc4p/GHSA-f2vj-m3mq-wc4p.json @@ -7,12 +7,8 @@ "CVE-2019-25048" ], "details": "LibreSSL 2.9.1 through 3.2.1 has a heap-based buffer over-read in do_print_ex (called from asn1_item_print_ctx and ASN1_item_print).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f394-4w7g-992w/GHSA-f394-4w7g-992w.json b/advisories/unreviewed/2022/05/GHSA-f394-4w7g-992w/GHSA-f394-4w7g-992w.json index 8068c0b74fb..b2f4ef6d4ca 100644 --- a/advisories/unreviewed/2022/05/GHSA-f394-4w7g-992w/GHSA-f394-4w7g-992w.json +++ b/advisories/unreviewed/2022/05/GHSA-f394-4w7g-992w/GHSA-f394-4w7g-992w.json @@ -7,12 +7,8 @@ "CVE-2020-23711" ], "details": "SQL Injection vulnerability in NavigateCMS 2.9 via the URL encoded GET input category in navigate.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f3w5-7qjv-q377/GHSA-f3w5-7qjv-q377.json b/advisories/unreviewed/2022/05/GHSA-f3w5-7qjv-q377/GHSA-f3w5-7qjv-q377.json index 1a465116e06..9d3a2c0ca48 100644 --- a/advisories/unreviewed/2022/05/GHSA-f3w5-7qjv-q377/GHSA-f3w5-7qjv-q377.json +++ b/advisories/unreviewed/2022/05/GHSA-f3w5-7qjv-q377/GHSA-f3w5-7qjv-q377.json @@ -7,12 +7,8 @@ "CVE-2021-22376" ], "details": "There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality, availability and integrity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4c3-q9xv-27gg/GHSA-f4c3-q9xv-27gg.json b/advisories/unreviewed/2022/05/GHSA-f4c3-q9xv-27gg/GHSA-f4c3-q9xv-27gg.json index 7afc40528e2..62a4bd1f434 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4c3-q9xv-27gg/GHSA-f4c3-q9xv-27gg.json +++ b/advisories/unreviewed/2022/05/GHSA-f4c3-q9xv-27gg/GHSA-f4c3-q9xv-27gg.json @@ -7,12 +7,8 @@ "CVE-2021-32513" ], "details": "QsanTorture in QSAN Storage Manager does not filter special parameters properly that allows remote unauthenticated attackers to inject and execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4fp-w82v-76w6/GHSA-f4fp-w82v-76w6.json b/advisories/unreviewed/2022/05/GHSA-f4fp-w82v-76w6/GHSA-f4fp-w82v-76w6.json index ced144c40e9..fdfe836289e 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4fp-w82v-76w6/GHSA-f4fp-w82v-76w6.json +++ b/advisories/unreviewed/2022/05/GHSA-f4fp-w82v-76w6/GHSA-f4fp-w82v-76w6.json @@ -7,12 +7,8 @@ "CVE-2021-24407" ], "details": "The Jannah WordPress theme before 5.4.5 did not properly sanitize the 'query' POST parameter in its tie_ajax_search AJAX action, leading to a Reflected Cross-site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4g8-8c83-rp83/GHSA-f4g8-8c83-rp83.json b/advisories/unreviewed/2022/05/GHSA-f4g8-8c83-rp83/GHSA-f4g8-8c83-rp83.json index 0b47dbe82fb..3a9be1aab86 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4g8-8c83-rp83/GHSA-f4g8-8c83-rp83.json +++ b/advisories/unreviewed/2022/05/GHSA-f4g8-8c83-rp83/GHSA-f4g8-8c83-rp83.json @@ -7,12 +7,8 @@ "CVE-2020-9158" ], "details": "There is a Missing Cryptographic Step vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause DoS of Samgr.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-f4gf-xh2w-prrv/GHSA-f4gf-xh2w-prrv.json b/advisories/unreviewed/2022/05/GHSA-f4gf-xh2w-prrv/GHSA-f4gf-xh2w-prrv.json index 8ea151d9c37..ddde969c874 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4gf-xh2w-prrv/GHSA-f4gf-xh2w-prrv.json +++ b/advisories/unreviewed/2022/05/GHSA-f4gf-xh2w-prrv/GHSA-f4gf-xh2w-prrv.json @@ -7,12 +7,8 @@ "CVE-2020-21394" ], "details": "SQL Injection vulnerability in Zhong Bang Technology Co., Ltd CRMEB mall system V2.60 and V3.1 via the tablename parameter in SystemDatabackup.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4h5-fx46-qjxf/GHSA-f4h5-fx46-qjxf.json b/advisories/unreviewed/2022/05/GHSA-f4h5-fx46-qjxf/GHSA-f4h5-fx46-qjxf.json index a936765e3dd..b6783ea2a86 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4h5-fx46-qjxf/GHSA-f4h5-fx46-qjxf.json +++ b/advisories/unreviewed/2022/05/GHSA-f4h5-fx46-qjxf/GHSA-f4h5-fx46-qjxf.json @@ -7,12 +7,8 @@ "CVE-2021-22363" ], "details": "There is a resource management error vulnerability in eCNS280_TD V100R005C10SPC650. An attacker needs to perform specific operations to exploit the vulnerability on the affected device. Due to improper resource management of the function, the vulnerability can be exploited to cause service abnormal on affected devices.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4hx-f2xg-27cv/GHSA-f4hx-f2xg-27cv.json b/advisories/unreviewed/2022/05/GHSA-f4hx-f2xg-27cv/GHSA-f4hx-f2xg-27cv.json index 8465c2bee24..32388db3047 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4hx-f2xg-27cv/GHSA-f4hx-f2xg-27cv.json +++ b/advisories/unreviewed/2022/05/GHSA-f4hx-f2xg-27cv/GHSA-f4hx-f2xg-27cv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f4w6-wh8p-6rgp/GHSA-f4w6-wh8p-6rgp.json b/advisories/unreviewed/2022/05/GHSA-f4w6-wh8p-6rgp/GHSA-f4w6-wh8p-6rgp.json index e42cc1806aa..18075c907c3 100644 --- a/advisories/unreviewed/2022/05/GHSA-f4w6-wh8p-6rgp/GHSA-f4w6-wh8p-6rgp.json +++ b/advisories/unreviewed/2022/05/GHSA-f4w6-wh8p-6rgp/GHSA-f4w6-wh8p-6rgp.json @@ -7,12 +7,8 @@ "CVE-2020-23715" ], "details": "Directory Traversal vulnerability in Webport CMS 1.19.10.17121 via the file parameter to file/download.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f6jc-wwhw-gpq7/GHSA-f6jc-wwhw-gpq7.json b/advisories/unreviewed/2022/05/GHSA-f6jc-wwhw-gpq7/GHSA-f6jc-wwhw-gpq7.json index 50a27446e6e..047379bea86 100644 --- a/advisories/unreviewed/2022/05/GHSA-f6jc-wwhw-gpq7/GHSA-f6jc-wwhw-gpq7.json +++ b/advisories/unreviewed/2022/05/GHSA-f6jc-wwhw-gpq7/GHSA-f6jc-wwhw-gpq7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f8rv-xrp3-ccgp/GHSA-f8rv-xrp3-ccgp.json b/advisories/unreviewed/2022/05/GHSA-f8rv-xrp3-ccgp/GHSA-f8rv-xrp3-ccgp.json index 8b0c77c05ae..3d2aa0f9879 100644 --- a/advisories/unreviewed/2022/05/GHSA-f8rv-xrp3-ccgp/GHSA-f8rv-xrp3-ccgp.json +++ b/advisories/unreviewed/2022/05/GHSA-f8rv-xrp3-ccgp/GHSA-f8rv-xrp3-ccgp.json @@ -7,12 +7,8 @@ "CVE-2021-34384" ], "details": "Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which might lead to denial of service or code execution.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-f9wp-3r92-4ghh/GHSA-f9wp-3r92-4ghh.json b/advisories/unreviewed/2022/05/GHSA-f9wp-3r92-4ghh/GHSA-f9wp-3r92-4ghh.json index 0398aebd57e..2dec6c3becd 100644 --- a/advisories/unreviewed/2022/05/GHSA-f9wp-3r92-4ghh/GHSA-f9wp-3r92-4ghh.json +++ b/advisories/unreviewed/2022/05/GHSA-f9wp-3r92-4ghh/GHSA-f9wp-3r92-4ghh.json @@ -7,12 +7,8 @@ "CVE-2021-34372" ], "details": "Trusty (the trusted OS produced by NVIDIA for Jetson devices) driver contains a vulnerability in the NVIDIA OTE protocol message parsing code where an integer overflow in a malloc() size calculation leads to a buffer overflow on the heap, which might result in information disclosure, escalation of privileges, and denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fc8m-h727-g339/GHSA-fc8m-h727-g339.json b/advisories/unreviewed/2022/05/GHSA-fc8m-h727-g339/GHSA-fc8m-h727-g339.json index 97d55ceff8d..ea143e3bc4b 100644 --- a/advisories/unreviewed/2022/05/GHSA-fc8m-h727-g339/GHSA-fc8m-h727-g339.json +++ b/advisories/unreviewed/2022/05/GHSA-fc8m-h727-g339/GHSA-fc8m-h727-g339.json @@ -7,12 +7,8 @@ "CVE-2005-0262" ], "details": "Buffer overflow in ipl_varyon on AIX 5.1, 5.2, and 5.3 allows local users to execute arbitrary code via a long -d argument.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ffg3-3xwj-f92r/GHSA-ffg3-3xwj-f92r.json b/advisories/unreviewed/2022/05/GHSA-ffg3-3xwj-f92r/GHSA-ffg3-3xwj-f92r.json index c44a29bfb72..19589440cc6 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffg3-3xwj-f92r/GHSA-ffg3-3xwj-f92r.json +++ b/advisories/unreviewed/2022/05/GHSA-ffg3-3xwj-f92r/GHSA-ffg3-3xwj-f92r.json @@ -7,12 +7,8 @@ "CVE-2021-34430" ], "details": "Eclipse TinyDTLS through 0.9-rc1 relies on the rand function in the C library, which makes it easier for remote attackers to compute the master key and then decrypt DTLS traffic.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ffw3-9pwp-wmfg/GHSA-ffw3-9pwp-wmfg.json b/advisories/unreviewed/2022/05/GHSA-ffw3-9pwp-wmfg/GHSA-ffw3-9pwp-wmfg.json index 1a33d26f655..cab293092c7 100644 --- a/advisories/unreviewed/2022/05/GHSA-ffw3-9pwp-wmfg/GHSA-ffw3-9pwp-wmfg.json +++ b/advisories/unreviewed/2022/05/GHSA-ffw3-9pwp-wmfg/GHSA-ffw3-9pwp-wmfg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fg54-5c2g-3j95/GHSA-fg54-5c2g-3j95.json b/advisories/unreviewed/2022/05/GHSA-fg54-5c2g-3j95/GHSA-fg54-5c2g-3j95.json index ae752b69763..ec9005e7363 100644 --- a/advisories/unreviewed/2022/05/GHSA-fg54-5c2g-3j95/GHSA-fg54-5c2g-3j95.json +++ b/advisories/unreviewed/2022/05/GHSA-fg54-5c2g-3j95/GHSA-fg54-5c2g-3j95.json @@ -7,12 +7,8 @@ "CVE-2021-28993" ], "details": "Plixer Scrutinizer 19.0.2 is affected by: SQL Injection. The impact is: obtain sensitive information (remote).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fgff-c9rr-m5xx/GHSA-fgff-c9rr-m5xx.json b/advisories/unreviewed/2022/05/GHSA-fgff-c9rr-m5xx/GHSA-fgff-c9rr-m5xx.json index 91011b43283..6b2a55a0949 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgff-c9rr-m5xx/GHSA-fgff-c9rr-m5xx.json +++ b/advisories/unreviewed/2022/05/GHSA-fgff-c9rr-m5xx/GHSA-fgff-c9rr-m5xx.json @@ -7,12 +7,8 @@ "CVE-2005-0234" ], "details": "The International Domain Name (IDN) support in Safari 1.2.5 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fgmm-f4rh-2m84/GHSA-fgmm-f4rh-2m84.json b/advisories/unreviewed/2022/05/GHSA-fgmm-f4rh-2m84/GHSA-fgmm-f4rh-2m84.json index b69cb0c98bf..a7c5b899f24 100644 --- a/advisories/unreviewed/2022/05/GHSA-fgmm-f4rh-2m84/GHSA-fgmm-f4rh-2m84.json +++ b/advisories/unreviewed/2022/05/GHSA-fgmm-f4rh-2m84/GHSA-fgmm-f4rh-2m84.json @@ -7,12 +7,8 @@ "CVE-2021-20745" ], "details": "Inkdrop versions prior to v5.3.1 allows an attacker to execute arbitrary OS commands on the system where it runs by loading a file or code snippet containing an invalid iframe into Inkdrop.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fhg7-96g9-chvp/GHSA-fhg7-96g9-chvp.json b/advisories/unreviewed/2022/05/GHSA-fhg7-96g9-chvp/GHSA-fhg7-96g9-chvp.json index 2da85150de8..b580cfca43d 100644 --- a/advisories/unreviewed/2022/05/GHSA-fhg7-96g9-chvp/GHSA-fhg7-96g9-chvp.json +++ b/advisories/unreviewed/2022/05/GHSA-fhg7-96g9-chvp/GHSA-fhg7-96g9-chvp.json @@ -7,12 +7,8 @@ "CVE-2005-0381" ], "details": "Cross-site scripting (XSS) vulnerability in f.aspx in forumKIT 1.0 allows remote attackers to inject arbitrary web script or HTML via the members parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fjmj-xrfv-2582/GHSA-fjmj-xrfv-2582.json b/advisories/unreviewed/2022/05/GHSA-fjmj-xrfv-2582/GHSA-fjmj-xrfv-2582.json index 2b8266bdc36..050d03f6e7c 100644 --- a/advisories/unreviewed/2022/05/GHSA-fjmj-xrfv-2582/GHSA-fjmj-xrfv-2582.json +++ b/advisories/unreviewed/2022/05/GHSA-fjmj-xrfv-2582/GHSA-fjmj-xrfv-2582.json @@ -7,12 +7,8 @@ "CVE-2005-0344" ], "details": "Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute arbitrary files via a .. (dot dot) in the filename parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fm6q-cgwp-2gj4/GHSA-fm6q-cgwp-2gj4.json b/advisories/unreviewed/2022/05/GHSA-fm6q-cgwp-2gj4/GHSA-fm6q-cgwp-2gj4.json index ea74edab82d..aff1a72bd0c 100644 --- a/advisories/unreviewed/2022/05/GHSA-fm6q-cgwp-2gj4/GHSA-fm6q-cgwp-2gj4.json +++ b/advisories/unreviewed/2022/05/GHSA-fm6q-cgwp-2gj4/GHSA-fm6q-cgwp-2gj4.json @@ -7,12 +7,8 @@ "CVE-2021-34395" ], "details": "Trusty TLK contains a vulnerability in its access permission settings where it does not properly restrict access to a resource from a user with local privileges, which might lead to limited information disclosure and limited denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fp4h-9r79-c6m8/GHSA-fp4h-9r79-c6m8.json b/advisories/unreviewed/2022/05/GHSA-fp4h-9r79-c6m8/GHSA-fp4h-9r79-c6m8.json index a5d9e7c3380..78f7bea2b85 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp4h-9r79-c6m8/GHSA-fp4h-9r79-c6m8.json +++ b/advisories/unreviewed/2022/05/GHSA-fp4h-9r79-c6m8/GHSA-fp4h-9r79-c6m8.json @@ -7,12 +7,8 @@ "CVE-2005-0272" ], "details": "ReviewPost PHP Pro before 2.84 allows remote attackers to upload and execute arbitrary PHP files by posting a review file with multiple extensions, which bypasses the intended restrictions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fp4q-hrv9-r6f5/GHSA-fp4q-hrv9-r6f5.json b/advisories/unreviewed/2022/05/GHSA-fp4q-hrv9-r6f5/GHSA-fp4q-hrv9-r6f5.json index 672d6957f21..796e6973e3f 100644 --- a/advisories/unreviewed/2022/05/GHSA-fp4q-hrv9-r6f5/GHSA-fp4q-hrv9-r6f5.json +++ b/advisories/unreviewed/2022/05/GHSA-fp4q-hrv9-r6f5/GHSA-fp4q-hrv9-r6f5.json @@ -7,12 +7,8 @@ "CVE-2021-21998" ], "details": "VMware Carbon Black App Control 8.0, 8.1, 8.5 prior to 8.5.8, and 8.6 prior to 8.6.2 has an authentication bypass. A malicious actor with network access to the VMware Carbon Black App Control management server might be able to obtain administrative access to the product without the need to authenticate.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqfc-h72w-f6wm/GHSA-fqfc-h72w-f6wm.json b/advisories/unreviewed/2022/05/GHSA-fqfc-h72w-f6wm/GHSA-fqfc-h72w-f6wm.json index 10a2ca7e6dd..e02aa794a16 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqfc-h72w-f6wm/GHSA-fqfc-h72w-f6wm.json +++ b/advisories/unreviewed/2022/05/GHSA-fqfc-h72w-f6wm/GHSA-fqfc-h72w-f6wm.json @@ -7,12 +7,8 @@ "CVE-2021-35956" ], "details": "Stored cross-site scripting (XSS) in the embedded webserver of AKCP sensorProbe before SP480-20210624 enables remote authenticated attackers to introduce arbitrary JavaScript via the Sensor Description, Email (from/to/cc), System Name, and System Location fields.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqjh-4555-fwq2/GHSA-fqjh-4555-fwq2.json b/advisories/unreviewed/2022/05/GHSA-fqjh-4555-fwq2/GHSA-fqjh-4555-fwq2.json index 88c3152a0f0..a6073ce34cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqjh-4555-fwq2/GHSA-fqjh-4555-fwq2.json +++ b/advisories/unreviewed/2022/05/GHSA-fqjh-4555-fwq2/GHSA-fqjh-4555-fwq2.json @@ -7,12 +7,8 @@ "CVE-2021-24005" ], "details": "Usage of hard-coded cryptographic keys to encrypt configuration files and debug logs in FortiAuthenticator versions before 6.3.0 may allow an attacker with access to the files or the CLI configuration to decrypt the sensitive data, via knowledge of the hard-coded key.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fqph-hqc3-qf26/GHSA-fqph-hqc3-qf26.json b/advisories/unreviewed/2022/05/GHSA-fqph-hqc3-qf26/GHSA-fqph-hqc3-qf26.json index 797279f94d5..3579fd964ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-fqph-hqc3-qf26/GHSA-fqph-hqc3-qf26.json +++ b/advisories/unreviewed/2022/05/GHSA-fqph-hqc3-qf26/GHSA-fqph-hqc3-qf26.json @@ -7,12 +7,8 @@ "CVE-2021-34807" ], "details": "An open redirect vulnerability exists in the /preauth Servlet in Zimbra Collaboration Suite through 9.0. To exploit the vulnerability, an attacker would need to have obtained a valid zimbra auth token or a valid preauth token. Once the token is obtained, an attacker could redirect a user to any URL via isredirect=1&redirectURL= in conjunction with the token data (e.g., a valid authtoken= value).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fr5x-fgxr-jh2p/GHSA-fr5x-fgxr-jh2p.json b/advisories/unreviewed/2022/05/GHSA-fr5x-fgxr-jh2p/GHSA-fr5x-fgxr-jh2p.json index 5cf254cd7d9..264148d73ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-fr5x-fgxr-jh2p/GHSA-fr5x-fgxr-jh2p.json +++ b/advisories/unreviewed/2022/05/GHSA-fr5x-fgxr-jh2p/GHSA-fr5x-fgxr-jh2p.json @@ -7,12 +7,8 @@ "CVE-2005-0569" ], "details": "Multiple SQL injection vulnerabilities in PunBB 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) language parameter to register.php, (2) change email feature in profile.php, (3) posts or (4) topics parameter to moderate.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fvfw-wwvf-2x7q/GHSA-fvfw-wwvf-2x7q.json b/advisories/unreviewed/2022/05/GHSA-fvfw-wwvf-2x7q/GHSA-fvfw-wwvf-2x7q.json index 68efe776860..9f5cff31cbd 100644 --- a/advisories/unreviewed/2022/05/GHSA-fvfw-wwvf-2x7q/GHSA-fvfw-wwvf-2x7q.json +++ b/advisories/unreviewed/2022/05/GHSA-fvfw-wwvf-2x7q/GHSA-fvfw-wwvf-2x7q.json @@ -7,12 +7,8 @@ "CVE-2005-0235" ], "details": "The International Domain Name (IDN) support in Opera 7.54 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fw28-qj4f-2jpx/GHSA-fw28-qj4f-2jpx.json b/advisories/unreviewed/2022/05/GHSA-fw28-qj4f-2jpx/GHSA-fw28-qj4f-2jpx.json index b64319fc70f..b68bf971395 100644 --- a/advisories/unreviewed/2022/05/GHSA-fw28-qj4f-2jpx/GHSA-fw28-qj4f-2jpx.json +++ b/advisories/unreviewed/2022/05/GHSA-fw28-qj4f-2jpx/GHSA-fw28-qj4f-2jpx.json @@ -7,12 +7,8 @@ "CVE-2020-36400" ], "details": "ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, a different vulnerability than CVE-2021-20235.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwh6-r54g-hjjq/GHSA-fwh6-r54g-hjjq.json b/advisories/unreviewed/2022/05/GHSA-fwh6-r54g-hjjq/GHSA-fwh6-r54g-hjjq.json index 4de8ea7e446..f16691778fb 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwh6-r54g-hjjq/GHSA-fwh6-r54g-hjjq.json +++ b/advisories/unreviewed/2022/05/GHSA-fwh6-r54g-hjjq/GHSA-fwh6-r54g-hjjq.json @@ -7,12 +7,8 @@ "CVE-2020-23208" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Send test\" field under the \"Start or continue campaign\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwj8-cr9q-hcv6/GHSA-fwj8-cr9q-hcv6.json b/advisories/unreviewed/2022/05/GHSA-fwj8-cr9q-hcv6/GHSA-fwj8-cr9q-hcv6.json index be82804888e..3400874ee4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwj8-cr9q-hcv6/GHSA-fwj8-cr9q-hcv6.json +++ b/advisories/unreviewed/2022/05/GHSA-fwj8-cr9q-hcv6/GHSA-fwj8-cr9q-hcv6.json @@ -7,12 +7,8 @@ "CVE-2005-0576" ], "details": "Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd) in Solaris 9 allows local users to modify or delete arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-fwp2-vqg8-gvfh/GHSA-fwp2-vqg8-gvfh.json b/advisories/unreviewed/2022/05/GHSA-fwp2-vqg8-gvfh/GHSA-fwp2-vqg8-gvfh.json index bbb45b907e5..a7d9e236a67 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwp2-vqg8-gvfh/GHSA-fwp2-vqg8-gvfh.json +++ b/advisories/unreviewed/2022/05/GHSA-fwp2-vqg8-gvfh/GHSA-fwp2-vqg8-gvfh.json @@ -7,12 +7,8 @@ "CVE-2021-36148" ], "details": "An issue was discovered in ACRN before 2.5. dmar_free_irte in hypervisor/arch/x86/vtd.c allows an irte_alloc_bitmap buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-fwrf-r5r4-wh5w/GHSA-fwrf-r5r4-wh5w.json b/advisories/unreviewed/2022/05/GHSA-fwrf-r5r4-wh5w/GHSA-fwrf-r5r4-wh5w.json index 6ffb6f71388..258ac5d9143 100644 --- a/advisories/unreviewed/2022/05/GHSA-fwrf-r5r4-wh5w/GHSA-fwrf-r5r4-wh5w.json +++ b/advisories/unreviewed/2022/05/GHSA-fwrf-r5r4-wh5w/GHSA-fwrf-r5r4-wh5w.json @@ -7,12 +7,8 @@ "CVE-2021-36129" ], "details": "An issue was discovered in the Translate extension in MediaWiki through 1.36. The Aggregategroups Action API module does not validate the parameter for aggregategroup when action=remove is set, thus allowing users with the translate-manage right to silently delete various groups' metadata.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g264-g9rg-6gh6/GHSA-g264-g9rg-6gh6.json b/advisories/unreviewed/2022/05/GHSA-g264-g9rg-6gh6/GHSA-g264-g9rg-6gh6.json index 162cf2df185..a063c3ff9ea 100644 --- a/advisories/unreviewed/2022/05/GHSA-g264-g9rg-6gh6/GHSA-g264-g9rg-6gh6.json +++ b/advisories/unreviewed/2022/05/GHSA-g264-g9rg-6gh6/GHSA-g264-g9rg-6gh6.json @@ -7,12 +7,8 @@ "CVE-2005-0374" ], "details": "Cross-site scripting (XSS) vulnerability in Bitboard 2.5 and earlier allows remote attackers to inject arbitrary web script or HTML via an [img] bbcode image tag with an event such as mouseover.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g28c-477m-v5p9/GHSA-g28c-477m-v5p9.json b/advisories/unreviewed/2022/05/GHSA-g28c-477m-v5p9/GHSA-g28c-477m-v5p9.json index fc530973536..b68de3d36c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g28c-477m-v5p9/GHSA-g28c-477m-v5p9.json +++ b/advisories/unreviewed/2022/05/GHSA-g28c-477m-v5p9/GHSA-g28c-477m-v5p9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g2wx-83fr-2mf4/GHSA-g2wx-83fr-2mf4.json b/advisories/unreviewed/2022/05/GHSA-g2wx-83fr-2mf4/GHSA-g2wx-83fr-2mf4.json index d29d372ee2b..cc628108c4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-g2wx-83fr-2mf4/GHSA-g2wx-83fr-2mf4.json +++ b/advisories/unreviewed/2022/05/GHSA-g2wx-83fr-2mf4/GHSA-g2wx-83fr-2mf4.json @@ -7,12 +7,8 @@ "CVE-2021-28976" ], "details": "Remote Code Execution vulnerability in GetSimpleCMS before 3.3.16 in admin/upload.php via phar filess.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g3c2-8gv5-q8jq/GHSA-g3c2-8gv5-q8jq.json b/advisories/unreviewed/2022/05/GHSA-g3c2-8gv5-q8jq/GHSA-g3c2-8gv5-q8jq.json index 3671cd175d4..8fb903e698c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g3c2-8gv5-q8jq/GHSA-g3c2-8gv5-q8jq.json +++ b/advisories/unreviewed/2022/05/GHSA-g3c2-8gv5-q8jq/GHSA-g3c2-8gv5-q8jq.json @@ -7,12 +7,8 @@ "CVE-2005-0599" ], "details": "Cisco devices running Application and Content Networking System (ACNS) 4.x, 5.0, or 5.1 before 5.1.11.6 allow remote attackers to cause a denial of service (CPU consumption) via malformed IP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4f8-m87g-59mw/GHSA-g4f8-m87g-59mw.json b/advisories/unreviewed/2022/05/GHSA-g4f8-m87g-59mw/GHSA-g4f8-m87g-59mw.json index c8da30325d6..af3a8dd11d7 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4f8-m87g-59mw/GHSA-g4f8-m87g-59mw.json +++ b/advisories/unreviewed/2022/05/GHSA-g4f8-m87g-59mw/GHSA-g4f8-m87g-59mw.json @@ -7,12 +7,8 @@ "CVE-2005-0589" ], "details": "The Form Fill feature in Firefox before 1.0.1 allows remote attackers to steal potentially sensitive information via an input control that monitors the values that are generated by the autocomplete capability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g4h3-3v97-vpwx/GHSA-g4h3-3v97-vpwx.json b/advisories/unreviewed/2022/05/GHSA-g4h3-3v97-vpwx/GHSA-g4h3-3v97-vpwx.json index 4f9519a75f6..0014f3dcbda 100644 --- a/advisories/unreviewed/2022/05/GHSA-g4h3-3v97-vpwx/GHSA-g4h3-3v97-vpwx.json +++ b/advisories/unreviewed/2022/05/GHSA-g4h3-3v97-vpwx/GHSA-g4h3-3v97-vpwx.json @@ -7,12 +7,8 @@ "CVE-2021-33217" ], "details": "An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. The Web Application allows Arbitrary Read/Write actions by authenticated users. The API allows an HTTP POST of arbitrary content into any file on the filesystem as root.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g568-w769-v94j/GHSA-g568-w769-v94j.json b/advisories/unreviewed/2022/05/GHSA-g568-w769-v94j/GHSA-g568-w769-v94j.json index 0f51ef6be12..663f3af6ab3 100644 --- a/advisories/unreviewed/2022/05/GHSA-g568-w769-v94j/GHSA-g568-w769-v94j.json +++ b/advisories/unreviewed/2022/05/GHSA-g568-w769-v94j/GHSA-g568-w769-v94j.json @@ -7,12 +7,8 @@ "CVE-2005-0341" ], "details": "Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g58r-q9m8-h26x/GHSA-g58r-q9m8-h26x.json b/advisories/unreviewed/2022/05/GHSA-g58r-q9m8-h26x/GHSA-g58r-q9m8-h26x.json index 9c6ab252733..a574786169c 100644 --- a/advisories/unreviewed/2022/05/GHSA-g58r-q9m8-h26x/GHSA-g58r-q9m8-h26x.json +++ b/advisories/unreviewed/2022/05/GHSA-g58r-q9m8-h26x/GHSA-g58r-q9m8-h26x.json @@ -7,12 +7,8 @@ "CVE-2020-4610" ], "details": "IBM Security Sevret Server (IBM Security Verify Privilege Manager 10.8.2 ) could allow a local user to execute code due to improper integrity checks. IBM X-Force ID: 184919.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g5x8-4p3x-gcfv/GHSA-g5x8-4p3x-gcfv.json b/advisories/unreviewed/2022/05/GHSA-g5x8-4p3x-gcfv/GHSA-g5x8-4p3x-gcfv.json index 6079b9c5852..881a234a4e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-g5x8-4p3x-gcfv/GHSA-g5x8-4p3x-gcfv.json +++ b/advisories/unreviewed/2022/05/GHSA-g5x8-4p3x-gcfv/GHSA-g5x8-4p3x-gcfv.json @@ -7,12 +7,8 @@ "CVE-2021-20379" ], "details": "IBM Guardium Data Encryption (GDE) 3.0.0.3 and 4.0.0.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 195711.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g63h-wr5c-mmgm/GHSA-g63h-wr5c-mmgm.json b/advisories/unreviewed/2022/05/GHSA-g63h-wr5c-mmgm/GHSA-g63h-wr5c-mmgm.json index 4f4a3143f64..0526b30c095 100644 --- a/advisories/unreviewed/2022/05/GHSA-g63h-wr5c-mmgm/GHSA-g63h-wr5c-mmgm.json +++ b/advisories/unreviewed/2022/05/GHSA-g63h-wr5c-mmgm/GHSA-g63h-wr5c-mmgm.json @@ -7,12 +7,8 @@ "CVE-2005-0588" ], "details": "Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7mx-mf56-5w73/GHSA-g7mx-mf56-5w73.json b/advisories/unreviewed/2022/05/GHSA-g7mx-mf56-5w73/GHSA-g7mx-mf56-5w73.json index 1e620ed8b96..9ffdbf89b0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7mx-mf56-5w73/GHSA-g7mx-mf56-5w73.json +++ b/advisories/unreviewed/2022/05/GHSA-g7mx-mf56-5w73/GHSA-g7mx-mf56-5w73.json @@ -7,12 +7,8 @@ "CVE-2005-0388" ], "details": "Unknown vulnerability in the remoteping service in remstats 1.0.13 and earlier allows remote attackers to execute arbitrary commands \"due to missing input sanitising.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g7v6-5f22-xv8f/GHSA-g7v6-5f22-xv8f.json b/advisories/unreviewed/2022/05/GHSA-g7v6-5f22-xv8f/GHSA-g7v6-5f22-xv8f.json index 0dd0233b8b3..179be65026a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g7v6-5f22-xv8f/GHSA-g7v6-5f22-xv8f.json +++ b/advisories/unreviewed/2022/05/GHSA-g7v6-5f22-xv8f/GHSA-g7v6-5f22-xv8f.json @@ -7,12 +7,8 @@ "CVE-2005-0243" ], "details": "Yahoo! Messenger 6.0.0.1750, and possibly other versions before 6.0.0.1921, does not properly display long filenames in file dialog boxes, which could allow remote attackers to trick users into downloading and executing programs via file names containing a large number of spaces and multiple file extensions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g8f8-qpg6-9hq5/GHSA-g8f8-qpg6-9hq5.json b/advisories/unreviewed/2022/05/GHSA-g8f8-qpg6-9hq5/GHSA-g8f8-qpg6-9hq5.json index 4eb0560161b..fff924226e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-g8f8-qpg6-9hq5/GHSA-g8f8-qpg6-9hq5.json +++ b/advisories/unreviewed/2022/05/GHSA-g8f8-qpg6-9hq5/GHSA-g8f8-qpg6-9hq5.json @@ -7,12 +7,8 @@ "CVE-2020-23217" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Add a list\" field under the \"Import Emails\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g945-vp2p-287m/GHSA-g945-vp2p-287m.json b/advisories/unreviewed/2022/05/GHSA-g945-vp2p-287m/GHSA-g945-vp2p-287m.json index 96d16d34d83..662627452e1 100644 --- a/advisories/unreviewed/2022/05/GHSA-g945-vp2p-287m/GHSA-g945-vp2p-287m.json +++ b/advisories/unreviewed/2022/05/GHSA-g945-vp2p-287m/GHSA-g945-vp2p-287m.json @@ -7,12 +7,8 @@ "CVE-2005-0357" ], "details": "EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-g952-g7wg-r8wq/GHSA-g952-g7wg-r8wq.json b/advisories/unreviewed/2022/05/GHSA-g952-g7wg-r8wq/GHSA-g952-g7wg-r8wq.json index b2b69a64d5e..b520062ebd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-g952-g7wg-r8wq/GHSA-g952-g7wg-r8wq.json +++ b/advisories/unreviewed/2022/05/GHSA-g952-g7wg-r8wq/GHSA-g952-g7wg-r8wq.json @@ -7,12 +7,8 @@ "CVE-2021-24367" ], "details": "The WP Config File Editor WordPress plugin through 1.7.1 was affected by an Authenticated Stored Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g96g-xvcf-qfmw/GHSA-g96g-xvcf-qfmw.json b/advisories/unreviewed/2022/05/GHSA-g96g-xvcf-qfmw/GHSA-g96g-xvcf-qfmw.json index 91cb36b5fe6..5851b6e57ba 100644 --- a/advisories/unreviewed/2022/05/GHSA-g96g-xvcf-qfmw/GHSA-g96g-xvcf-qfmw.json +++ b/advisories/unreviewed/2022/05/GHSA-g96g-xvcf-qfmw/GHSA-g96g-xvcf-qfmw.json @@ -7,12 +7,8 @@ "CVE-2020-36398" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the \"Campaign\" field under the \"Send a campaign\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-g99v-788w-9m7q/GHSA-g99v-788w-9m7q.json b/advisories/unreviewed/2022/05/GHSA-g99v-788w-9m7q/GHSA-g99v-788w-9m7q.json index 1c0b1f4052f..7b9972be93a 100644 --- a/advisories/unreviewed/2022/05/GHSA-g99v-788w-9m7q/GHSA-g99v-788w-9m7q.json +++ b/advisories/unreviewed/2022/05/GHSA-g99v-788w-9m7q/GHSA-g99v-788w-9m7q.json @@ -7,12 +7,8 @@ "CVE-2005-0574" ], "details": "Directory traversal vulnerability in CIS WebServer 3.5.13 allows remote attackers to read arbitrary files via .. (dot dot) sequences in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gfjp-9255-98gh/GHSA-gfjp-9255-98gh.json b/advisories/unreviewed/2022/05/GHSA-gfjp-9255-98gh/GHSA-gfjp-9255-98gh.json index 08087e1a4b0..3c4e5ccb279 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfjp-9255-98gh/GHSA-gfjp-9255-98gh.json +++ b/advisories/unreviewed/2022/05/GHSA-gfjp-9255-98gh/GHSA-gfjp-9255-98gh.json @@ -7,12 +7,8 @@ "CVE-2021-32521" ], "details": "Use of MAC address as an authenticated password in QSAN Storage Manager, XEVO, SANOS allows local attackers to escalate privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfwr-35rp-qv77/GHSA-gfwr-35rp-qv77.json b/advisories/unreviewed/2022/05/GHSA-gfwr-35rp-qv77/GHSA-gfwr-35rp-qv77.json index 50f37d225aa..ebb415ad3ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfwr-35rp-qv77/GHSA-gfwr-35rp-qv77.json +++ b/advisories/unreviewed/2022/05/GHSA-gfwr-35rp-qv77/GHSA-gfwr-35rp-qv77.json @@ -7,12 +7,8 @@ "CVE-2021-35456" ], "details": "Online Pet Shop We App 1.0 is vulnerable to remote SQL injection and shell upload", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gfxg-882h-6vf5/GHSA-gfxg-882h-6vf5.json b/advisories/unreviewed/2022/05/GHSA-gfxg-882h-6vf5/GHSA-gfxg-882h-6vf5.json index 8c429bbc1fe..d53983cf048 100644 --- a/advisories/unreviewed/2022/05/GHSA-gfxg-882h-6vf5/GHSA-gfxg-882h-6vf5.json +++ b/advisories/unreviewed/2022/05/GHSA-gfxg-882h-6vf5/GHSA-gfxg-882h-6vf5.json @@ -7,12 +7,8 @@ "CVE-2005-0366" ], "details": "The integrity check feature in OpenPGP, when handling a message that was encrypted using cipher feedback (CFB) mode, allows remote attackers to recover part of the plaintext via a chosen-ciphertext attack when the first 2 bytes of a message block are known, and an oracle or other mechanism is available to determine whether an integrity check failed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ggh8-6p3g-2rw7/GHSA-ggh8-6p3g-2rw7.json b/advisories/unreviewed/2022/05/GHSA-ggh8-6p3g-2rw7/GHSA-ggh8-6p3g-2rw7.json index f6f1bf6213a..f145ce1b80c 100644 --- a/advisories/unreviewed/2022/05/GHSA-ggh8-6p3g-2rw7/GHSA-ggh8-6p3g-2rw7.json +++ b/advisories/unreviewed/2022/05/GHSA-ggh8-6p3g-2rw7/GHSA-ggh8-6p3g-2rw7.json @@ -7,12 +7,8 @@ "CVE-2005-0247" ], "details": "Multiple buffer overflows in gram.y for PostgreSQL 8.0.1 and earlier may allow attackers to execute arbitrary code via (1) a large number of variables in a SQL statement being handled by the read_sql_construct function, (2) a large number of INTO variables in a SELECT statement being handled by the make_select_stmt function, (3) a large number of arbitrary variables in a SELECT statement being handled by the make_select_stmt function, and (4) a large number of INTO variables in a FETCH statement being handled by the make_fetch_stmt function, a different set of vulnerabilities than CVE-2005-0245.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gh89-4wjp-mf9f/GHSA-gh89-4wjp-mf9f.json b/advisories/unreviewed/2022/05/GHSA-gh89-4wjp-mf9f/GHSA-gh89-4wjp-mf9f.json index bed877f6ac2..3531437c7f8 100644 --- a/advisories/unreviewed/2022/05/GHSA-gh89-4wjp-mf9f/GHSA-gh89-4wjp-mf9f.json +++ b/advisories/unreviewed/2022/05/GHSA-gh89-4wjp-mf9f/GHSA-gh89-4wjp-mf9f.json @@ -7,12 +7,8 @@ "CVE-2005-0637" ], "details": "The copy functions in locore.s such as copyout in OpenBSD 3.5 and 3.6, and possibly other BSD based operating systems, may allow attackers to exceed certain address boundaries and modify kernel memory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ghcm-xhwj-hh9q/GHSA-ghcm-xhwj-hh9q.json b/advisories/unreviewed/2022/05/GHSA-ghcm-xhwj-hh9q/GHSA-ghcm-xhwj-hh9q.json index a939bc7e61e..b5ad1169ec1 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghcm-xhwj-hh9q/GHSA-ghcm-xhwj-hh9q.json +++ b/advisories/unreviewed/2022/05/GHSA-ghcm-xhwj-hh9q/GHSA-ghcm-xhwj-hh9q.json @@ -7,12 +7,8 @@ "CVE-2005-0420" ], "details": "Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a link to the owalogon.asp application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghh6-x87m-6qjh/GHSA-ghh6-x87m-6qjh.json b/advisories/unreviewed/2022/05/GHSA-ghh6-x87m-6qjh/GHSA-ghh6-x87m-6qjh.json index b77c06000a1..6a91f3b3e11 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghh6-x87m-6qjh/GHSA-ghh6-x87m-6qjh.json +++ b/advisories/unreviewed/2022/05/GHSA-ghh6-x87m-6qjh/GHSA-ghh6-x87m-6qjh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghqh-hjhp-p556/GHSA-ghqh-hjhp-p556.json b/advisories/unreviewed/2022/05/GHSA-ghqh-hjhp-p556/GHSA-ghqh-hjhp-p556.json index 0495b47ca8c..0e68ad3dc66 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghqh-hjhp-p556/GHSA-ghqh-hjhp-p556.json +++ b/advisories/unreviewed/2022/05/GHSA-ghqh-hjhp-p556/GHSA-ghqh-hjhp-p556.json @@ -7,12 +7,8 @@ "CVE-2021-28588" ], "details": "Adobe RoboHelp Server version 2019.0.9 (and earlier) is affected by a Path Traversal vulnerability when parsing a crafted HTTP POST request. An authenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ghvc-9vm2-6g2c/GHSA-ghvc-9vm2-6g2c.json b/advisories/unreviewed/2022/05/GHSA-ghvc-9vm2-6g2c/GHSA-ghvc-9vm2-6g2c.json index 12ea0432b47..91e1be827cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-ghvc-9vm2-6g2c/GHSA-ghvc-9vm2-6g2c.json +++ b/advisories/unreviewed/2022/05/GHSA-ghvc-9vm2-6g2c/GHSA-ghvc-9vm2-6g2c.json @@ -7,12 +7,8 @@ "CVE-2005-0287" ], "details": "Bottomline Webseries Payment Application allows remote attackers to read arbitrary files on the network via a report template with modified ReportPath or ReportName values.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gj74-48rr-85f7/GHSA-gj74-48rr-85f7.json b/advisories/unreviewed/2022/05/GHSA-gj74-48rr-85f7/GHSA-gj74-48rr-85f7.json index e5b23c531cc..7099d4b58a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj74-48rr-85f7/GHSA-gj74-48rr-85f7.json +++ b/advisories/unreviewed/2022/05/GHSA-gj74-48rr-85f7/GHSA-gj74-48rr-85f7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gj7w-f5x4-3v62/GHSA-gj7w-f5x4-3v62.json b/advisories/unreviewed/2022/05/GHSA-gj7w-f5x4-3v62/GHSA-gj7w-f5x4-3v62.json index 9e7ad134d3d..1c6cea8d7f9 100644 --- a/advisories/unreviewed/2022/05/GHSA-gj7w-f5x4-3v62/GHSA-gj7w-f5x4-3v62.json +++ b/advisories/unreviewed/2022/05/GHSA-gj7w-f5x4-3v62/GHSA-gj7w-f5x4-3v62.json @@ -7,12 +7,8 @@ "CVE-2005-0583" ], "details": "Directory traversal vulnerability in Computer Associates (CA) License Client 0.1.0.15 allows remote attackers to create arbitrary files via .. (dot dot) sequences in a PUTOLF request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gm3w-m9x6-x5vq/GHSA-gm3w-m9x6-x5vq.json b/advisories/unreviewed/2022/05/GHSA-gm3w-m9x6-x5vq/GHSA-gm3w-m9x6-x5vq.json index d0746149afa..8d22b6d9802 100644 --- a/advisories/unreviewed/2022/05/GHSA-gm3w-m9x6-x5vq/GHSA-gm3w-m9x6-x5vq.json +++ b/advisories/unreviewed/2022/05/GHSA-gm3w-m9x6-x5vq/GHSA-gm3w-m9x6-x5vq.json @@ -7,12 +7,8 @@ "CVE-2020-15732" ], "details": "Improper Certificate Validation vulnerability in the Online Threat Prevention module as used in Bitdefender Total Security allows an attacker to potentially bypass HTTP Strict Transport Security (HSTS) checks. This issue affects: Bitdefender Total Security versions prior to 25.0.7.29. Bitdefender Internet Security versions prior to 25.0.7.29. Bitdefender Antivirus Plus versions prior to 25.0.7.29.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpc2-pw66-cfhj/GHSA-gpc2-pw66-cfhj.json b/advisories/unreviewed/2022/05/GHSA-gpc2-pw66-cfhj/GHSA-gpc2-pw66-cfhj.json index 89d1e509bc5..d29580f5b12 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpc2-pw66-cfhj/GHSA-gpc2-pw66-cfhj.json +++ b/advisories/unreviewed/2022/05/GHSA-gpc2-pw66-cfhj/GHSA-gpc2-pw66-cfhj.json @@ -7,12 +7,8 @@ "CVE-2021-35066" ], "details": "An XXE vulnerability exists in ConnectWise Automate before 2021.0.6.132.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gpxf-fg24-c2r3/GHSA-gpxf-fg24-c2r3.json b/advisories/unreviewed/2022/05/GHSA-gpxf-fg24-c2r3/GHSA-gpxf-fg24-c2r3.json index b3e49cc2c7e..15867be635b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gpxf-fg24-c2r3/GHSA-gpxf-fg24-c2r3.json +++ b/advisories/unreviewed/2022/05/GHSA-gpxf-fg24-c2r3/GHSA-gpxf-fg24-c2r3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gqgp-p5w7-3298/GHSA-gqgp-p5w7-3298.json b/advisories/unreviewed/2022/05/GHSA-gqgp-p5w7-3298/GHSA-gqgp-p5w7-3298.json index cb79db3b1c0..7917c6b0c90 100644 --- a/advisories/unreviewed/2022/05/GHSA-gqgp-p5w7-3298/GHSA-gqgp-p5w7-3298.json +++ b/advisories/unreviewed/2022/05/GHSA-gqgp-p5w7-3298/GHSA-gqgp-p5w7-3298.json @@ -7,12 +7,8 @@ "CVE-2005-0232" ], "details": "Firefox 1.0 allows remote attackers to modify Boolean configuration parameters for the about:config site by using a plugin such as Flash, and the -moz-opacity filter, to display the about:config site then cause the user to double-click at a certain screen position, aka \"Fireflashing.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gv6r-4hf3-qrp4/GHSA-gv6r-4hf3-qrp4.json b/advisories/unreviewed/2022/05/GHSA-gv6r-4hf3-qrp4/GHSA-gv6r-4hf3-qrp4.json index 242cfbb1fc4..fe67c0eb191 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv6r-4hf3-qrp4/GHSA-gv6r-4hf3-qrp4.json +++ b/advisories/unreviewed/2022/05/GHSA-gv6r-4hf3-qrp4/GHSA-gv6r-4hf3-qrp4.json @@ -7,12 +7,8 @@ "CVE-2020-19510" ], "details": "Textpattern 4.7.3 contains an aribtrary file load via the file_insert function in include/txp_file.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gv84-p8h5-wpv4/GHSA-gv84-p8h5-wpv4.json b/advisories/unreviewed/2022/05/GHSA-gv84-p8h5-wpv4/GHSA-gv84-p8h5-wpv4.json index 1c38eeea8ee..d13ee144174 100644 --- a/advisories/unreviewed/2022/05/GHSA-gv84-p8h5-wpv4/GHSA-gv84-p8h5-wpv4.json +++ b/advisories/unreviewed/2022/05/GHSA-gv84-p8h5-wpv4/GHSA-gv84-p8h5-wpv4.json @@ -7,12 +7,8 @@ "CVE-2005-0379" ], "details": "Multiple directory traversal vulnerabilities in ZeroBoard 4.1pl5 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the _zb_path parameter to (1) _head.php or (2) outlogin.php, or the dir parameter to (3) write.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gvv2-64q9-7r34/GHSA-gvv2-64q9-7r34.json b/advisories/unreviewed/2022/05/GHSA-gvv2-64q9-7r34/GHSA-gvv2-64q9-7r34.json index f1e8eb8e459..2a145c66647 100644 --- a/advisories/unreviewed/2022/05/GHSA-gvv2-64q9-7r34/GHSA-gvv2-64q9-7r34.json +++ b/advisories/unreviewed/2022/05/GHSA-gvv2-64q9-7r34/GHSA-gvv2-64q9-7r34.json @@ -7,12 +7,8 @@ "CVE-2021-28575" ], "details": "Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gw37-g74p-jfg6/GHSA-gw37-g74p-jfg6.json b/advisories/unreviewed/2022/05/GHSA-gw37-g74p-jfg6/GHSA-gw37-g74p-jfg6.json index 48ee38e6747..39b86cdf21b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gw37-g74p-jfg6/GHSA-gw37-g74p-jfg6.json +++ b/advisories/unreviewed/2022/05/GHSA-gw37-g74p-jfg6/GHSA-gw37-g74p-jfg6.json @@ -7,12 +7,8 @@ "CVE-2020-20473" ], "details": "White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the control_task.php, control_project.php, default_user.php files failing to filter the sort parameter. Remote attackers can exploit the vulnerability to obtain database sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwjh-r2ww-fpmp/GHSA-gwjh-r2ww-fpmp.json b/advisories/unreviewed/2022/05/GHSA-gwjh-r2ww-fpmp/GHSA-gwjh-r2ww-fpmp.json index 3a3d3ae7319..01ff771aa84 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwjh-r2ww-fpmp/GHSA-gwjh-r2ww-fpmp.json +++ b/advisories/unreviewed/2022/05/GHSA-gwjh-r2ww-fpmp/GHSA-gwjh-r2ww-fpmp.json @@ -7,12 +7,8 @@ "CVE-2021-20494" ], "details": "IBM Security Identity Manager Adapters 6.0 and 7.0 are vulnerable to a heap based buffer overflow, caused by improper bounds. An authenticared user could overflow the buffer and cause the service to crash. IBM X-Force ID: 197882.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-gwvr-jr6v-cmfp/GHSA-gwvr-jr6v-cmfp.json b/advisories/unreviewed/2022/05/GHSA-gwvr-jr6v-cmfp/GHSA-gwvr-jr6v-cmfp.json index f1ee6fa0e8a..aee92b9e61b 100644 --- a/advisories/unreviewed/2022/05/GHSA-gwvr-jr6v-cmfp/GHSA-gwvr-jr6v-cmfp.json +++ b/advisories/unreviewed/2022/05/GHSA-gwvr-jr6v-cmfp/GHSA-gwvr-jr6v-cmfp.json @@ -7,12 +7,8 @@ "CVE-2005-0327" ], "details": "pafiledb.php in Pafiledb 3.1 may allow remote attackers to execute arbitrary PHP code via a modified action parameter that is used in an include statement for login.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gx2m-v947-m68g/GHSA-gx2m-v947-m68g.json b/advisories/unreviewed/2022/05/GHSA-gx2m-v947-m68g/GHSA-gx2m-v947-m68g.json index 411ecf0aa8b..d8d8dcb7423 100644 --- a/advisories/unreviewed/2022/05/GHSA-gx2m-v947-m68g/GHSA-gx2m-v947-m68g.json +++ b/advisories/unreviewed/2022/05/GHSA-gx2m-v947-m68g/GHSA-gx2m-v947-m68g.json @@ -7,12 +7,8 @@ "CVE-2005-0293" ], "details": "Directory traversal vulnerability in minis.php in Minis 0.2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the month parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gxfj-hj3g-hcm2/GHSA-gxfj-hj3g-hcm2.json b/advisories/unreviewed/2022/05/GHSA-gxfj-hj3g-hcm2/GHSA-gxfj-hj3g-hcm2.json index 42c3e958873..e6c8638ee82 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxfj-hj3g-hcm2/GHSA-gxfj-hj3g-hcm2.json +++ b/advisories/unreviewed/2022/05/GHSA-gxfj-hj3g-hcm2/GHSA-gxfj-hj3g-hcm2.json @@ -7,12 +7,8 @@ "CVE-2005-0362" ], "details": "awstats.pl in AWStats 6.2 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) \"pluginmode\", (2) \"loadplugin\", or (3) \"noloadplugin\" parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-gxv8-vjmg-j2hg/GHSA-gxv8-vjmg-j2hg.json b/advisories/unreviewed/2022/05/GHSA-gxv8-vjmg-j2hg/GHSA-gxv8-vjmg-j2hg.json index f72b2d16b42..afb7930f28d 100644 --- a/advisories/unreviewed/2022/05/GHSA-gxv8-vjmg-j2hg/GHSA-gxv8-vjmg-j2hg.json +++ b/advisories/unreviewed/2022/05/GHSA-gxv8-vjmg-j2hg/GHSA-gxv8-vjmg-j2hg.json @@ -7,12 +7,8 @@ "CVE-2005-0433" ], "details": "Php-Nuke 7.5 allows remote attackers to determine the full path of the web server via invalid or missing arguments to (1) db.php, (2) mainfile.php, (3) Downloads/index.php, or (4) Web_Links/index.php, which lists the path in a PHP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h227-9q47-3327/GHSA-h227-9q47-3327.json b/advisories/unreviewed/2022/05/GHSA-h227-9q47-3327/GHSA-h227-9q47-3327.json index 6d94d6e863f..d0263a101e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-h227-9q47-3327/GHSA-h227-9q47-3327.json +++ b/advisories/unreviewed/2022/05/GHSA-h227-9q47-3327/GHSA-h227-9q47-3327.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h26f-qpmr-2r4r/GHSA-h26f-qpmr-2r4r.json b/advisories/unreviewed/2022/05/GHSA-h26f-qpmr-2r4r/GHSA-h26f-qpmr-2r4r.json index 13ca744b1e3..d6baff0a9e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-h26f-qpmr-2r4r/GHSA-h26f-qpmr-2r4r.json +++ b/advisories/unreviewed/2022/05/GHSA-h26f-qpmr-2r4r/GHSA-h26f-qpmr-2r4r.json @@ -7,12 +7,8 @@ "CVE-2021-0543" ], "details": "In phNxpNciHal_process_ext_rsp of phNxpNciHal_ext.cc, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169258743", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h33f-v99x-qpg2/GHSA-h33f-v99x-qpg2.json b/advisories/unreviewed/2022/05/GHSA-h33f-v99x-qpg2/GHSA-h33f-v99x-qpg2.json index 520b1d9b825..36bf21f62d5 100644 --- a/advisories/unreviewed/2022/05/GHSA-h33f-v99x-qpg2/GHSA-h33f-v99x-qpg2.json +++ b/advisories/unreviewed/2022/05/GHSA-h33f-v99x-qpg2/GHSA-h33f-v99x-qpg2.json @@ -7,12 +7,8 @@ "CVE-2021-27412" ], "details": "Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h3wh-qww4-vpf6/GHSA-h3wh-qww4-vpf6.json b/advisories/unreviewed/2022/05/GHSA-h3wh-qww4-vpf6/GHSA-h3wh-qww4-vpf6.json index 46332e2f517..b70456bb0d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-h3wh-qww4-vpf6/GHSA-h3wh-qww4-vpf6.json +++ b/advisories/unreviewed/2022/05/GHSA-h3wh-qww4-vpf6/GHSA-h3wh-qww4-vpf6.json @@ -7,12 +7,8 @@ "CVE-2021-35451" ], "details": "In Teradici PCoIP Management Console-Enterprise 20.07.0, an unauthenticated user can inject arbitrary text into user browser via the Web application.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h482-hqx2-rh53/GHSA-h482-hqx2-rh53.json b/advisories/unreviewed/2022/05/GHSA-h482-hqx2-rh53/GHSA-h482-hqx2-rh53.json index 2426b31a264..bf221aa7fb8 100644 --- a/advisories/unreviewed/2022/05/GHSA-h482-hqx2-rh53/GHSA-h482-hqx2-rh53.json +++ b/advisories/unreviewed/2022/05/GHSA-h482-hqx2-rh53/GHSA-h482-hqx2-rh53.json @@ -7,12 +7,8 @@ "CVE-2020-22251" ], "details": "Cross Site Scripting (XSS) vulnerability in phpList 3.5.3 via the login name field in Manage Administrators when adding a new admin.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h49j-p65c-g4qj/GHSA-h49j-p65c-g4qj.json b/advisories/unreviewed/2022/05/GHSA-h49j-p65c-g4qj/GHSA-h49j-p65c-g4qj.json index 266847d6860..3f52e656a42 100644 --- a/advisories/unreviewed/2022/05/GHSA-h49j-p65c-g4qj/GHSA-h49j-p65c-g4qj.json +++ b/advisories/unreviewed/2022/05/GHSA-h49j-p65c-g4qj/GHSA-h49j-p65c-g4qj.json @@ -7,12 +7,8 @@ "CVE-2005-0626" ], "details": "Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cookies in caches, may cause Set-Cookie headers to be sent to other users, which allows attackers to steal the related cookies.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h4f9-mmrc-885h/GHSA-h4f9-mmrc-885h.json b/advisories/unreviewed/2022/05/GHSA-h4f9-mmrc-885h/GHSA-h4f9-mmrc-885h.json index 02b66153c43..952908307f5 100644 --- a/advisories/unreviewed/2022/05/GHSA-h4f9-mmrc-885h/GHSA-h4f9-mmrc-885h.json +++ b/advisories/unreviewed/2022/05/GHSA-h4f9-mmrc-885h/GHSA-h4f9-mmrc-885h.json @@ -7,12 +7,8 @@ "CVE-2020-23710" ], "details": "Cross Site Scripting (XSS) vulneraiblity in LimeSurvey 4.2.5 on textbox via the Notifications & data feature.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h672-vwjq-p787/GHSA-h672-vwjq-p787.json b/advisories/unreviewed/2022/05/GHSA-h672-vwjq-p787/GHSA-h672-vwjq-p787.json index e7eb047b5fd..b4506ba0a6c 100644 --- a/advisories/unreviewed/2022/05/GHSA-h672-vwjq-p787/GHSA-h672-vwjq-p787.json +++ b/advisories/unreviewed/2022/05/GHSA-h672-vwjq-p787/GHSA-h672-vwjq-p787.json @@ -7,12 +7,8 @@ "CVE-2021-0550" ], "details": "In onLoadFailed of AnnotateActivity.java, there is a possible way to gain WRITE_EXTERNAL_STORAGE permissions without user consent due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179688673", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h78h-jj63-v974/GHSA-h78h-jj63-v974.json b/advisories/unreviewed/2022/05/GHSA-h78h-jj63-v974/GHSA-h78h-jj63-v974.json index 87ff7c6e1f1..d47ea411a5d 100644 --- a/advisories/unreviewed/2022/05/GHSA-h78h-jj63-v974/GHSA-h78h-jj63-v974.json +++ b/advisories/unreviewed/2022/05/GHSA-h78h-jj63-v974/GHSA-h78h-jj63-v974.json @@ -7,12 +7,8 @@ "CVE-2005-0602" ], "details": "Unzip 5.51 and earlier does not properly warn the user when extracting setuid or setgid files, which may allow local users to gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7cp-q5mh-2ggf/GHSA-h7cp-q5mh-2ggf.json b/advisories/unreviewed/2022/05/GHSA-h7cp-q5mh-2ggf/GHSA-h7cp-q5mh-2ggf.json index b2cd6ed8a2d..2ed21d4fe72 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7cp-q5mh-2ggf/GHSA-h7cp-q5mh-2ggf.json +++ b/advisories/unreviewed/2022/05/GHSA-h7cp-q5mh-2ggf/GHSA-h7cp-q5mh-2ggf.json @@ -7,12 +7,8 @@ "CVE-2005-0581" ], "details": "Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h7vc-j37g-7534/GHSA-h7vc-j37g-7534.json b/advisories/unreviewed/2022/05/GHSA-h7vc-j37g-7534/GHSA-h7vc-j37g-7534.json index f8676a05064..35112317b13 100644 --- a/advisories/unreviewed/2022/05/GHSA-h7vc-j37g-7534/GHSA-h7vc-j37g-7534.json +++ b/advisories/unreviewed/2022/05/GHSA-h7vc-j37g-7534/GHSA-h7vc-j37g-7534.json @@ -7,12 +7,8 @@ "CVE-2005-0289" ], "details": "Apple AirPort Express prior to 6.1.1 and Extreme prior to 5.5.1, configured as a Wireless Data Service (WDS), allows remote attackers to cause a denial of service (device freeze) by connecting to UDP port 161 and before link-state change occurs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h877-2mwm-jwf4/GHSA-h877-2mwm-jwf4.json b/advisories/unreviewed/2022/05/GHSA-h877-2mwm-jwf4/GHSA-h877-2mwm-jwf4.json index 1c9b123d682..9844fa76071 100644 --- a/advisories/unreviewed/2022/05/GHSA-h877-2mwm-jwf4/GHSA-h877-2mwm-jwf4.json +++ b/advisories/unreviewed/2022/05/GHSA-h877-2mwm-jwf4/GHSA-h877-2mwm-jwf4.json @@ -7,12 +7,8 @@ "CVE-2005-0403" ], "details": "init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h89h-g3v3-jc6q/GHSA-h89h-g3v3-jc6q.json b/advisories/unreviewed/2022/05/GHSA-h89h-g3v3-jc6q/GHSA-h89h-g3v3-jc6q.json index 1e3d24ac24a..46b0c2414bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-h89h-g3v3-jc6q/GHSA-h89h-g3v3-jc6q.json +++ b/advisories/unreviewed/2022/05/GHSA-h89h-g3v3-jc6q/GHSA-h89h-g3v3-jc6q.json @@ -7,12 +7,8 @@ "CVE-2021-29775" ], "details": "IBM Business Automation Workflow 19.0.03 and 20.0 and IBM Cloud Pak for Automation 20.0.3-IF002 and 21.0.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 203029.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-h8mr-497v-gmmm/GHSA-h8mr-497v-gmmm.json b/advisories/unreviewed/2022/05/GHSA-h8mr-497v-gmmm/GHSA-h8mr-497v-gmmm.json index 6cb4d849916..7ec21bbb3c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-h8mr-497v-gmmm/GHSA-h8mr-497v-gmmm.json +++ b/advisories/unreviewed/2022/05/GHSA-h8mr-497v-gmmm/GHSA-h8mr-497v-gmmm.json @@ -7,12 +7,8 @@ "CVE-2021-23996" ], "details": "By utilizing 3D CSS in conjunction with Javascript, content could have been rendered outside the webpage's viewport, resulting in a spoofing attack that could have been used for phishing or other attacks on a user. This vulnerability affects Firefox < 88.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-h95c-vg5w-xg77/GHSA-h95c-vg5w-xg77.json b/advisories/unreviewed/2022/05/GHSA-h95c-vg5w-xg77/GHSA-h95c-vg5w-xg77.json index 888f6019b46..6edcb6f1288 100644 --- a/advisories/unreviewed/2022/05/GHSA-h95c-vg5w-xg77/GHSA-h95c-vg5w-xg77.json +++ b/advisories/unreviewed/2022/05/GHSA-h95c-vg5w-xg77/GHSA-h95c-vg5w-xg77.json @@ -7,12 +7,8 @@ "CVE-2005-0454" ], "details": "Multiple SQL injection vulnerabilities in DCP-Portal 6.1.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the lcat, doc, or uid parameters to index.php, or (2) the mid or bid parameters to forums.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hf26-m66j-9r32/GHSA-hf26-m66j-9r32.json b/advisories/unreviewed/2022/05/GHSA-hf26-m66j-9r32/GHSA-hf26-m66j-9r32.json index 9623adc322d..adb4bdd421c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hf26-m66j-9r32/GHSA-hf26-m66j-9r32.json +++ b/advisories/unreviewed/2022/05/GHSA-hf26-m66j-9r32/GHSA-hf26-m66j-9r32.json @@ -7,12 +7,8 @@ "CVE-2020-23182" ], "details": "The component /php-fusion/infusions/shoutbox_panel/shoutbox_archive.php in PHP-Fusion 9.03.60 allows attackers to redirect victim users to malicious websites via a crafted payload entered into the Shoutbox message panel.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfw5-56xr-j99r/GHSA-hfw5-56xr-j99r.json b/advisories/unreviewed/2022/05/GHSA-hfw5-56xr-j99r/GHSA-hfw5-56xr-j99r.json index 0ac678e82a1..946897966a7 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfw5-56xr-j99r/GHSA-hfw5-56xr-j99r.json +++ b/advisories/unreviewed/2022/05/GHSA-hfw5-56xr-j99r/GHSA-hfw5-56xr-j99r.json @@ -7,12 +7,8 @@ "CVE-2020-23207" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Edit Values\" field under the \"Configure Attributes\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hfx5-55x6-5xfr/GHSA-hfx5-55x6-5xfr.json b/advisories/unreviewed/2022/05/GHSA-hfx5-55x6-5xfr/GHSA-hfx5-55x6-5xfr.json index 71b5a71d5fd..49ff07a726b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hfx5-55x6-5xfr/GHSA-hfx5-55x6-5xfr.json +++ b/advisories/unreviewed/2022/05/GHSA-hfx5-55x6-5xfr/GHSA-hfx5-55x6-5xfr.json @@ -7,12 +7,8 @@ "CVE-2021-31530" ], "details": "Zoho ManageEngine ServiceDesk Plus MSP before 10522 is vulnerable to Information Disclosure.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hg3h-m7hf-v654/GHSA-hg3h-m7hf-v654.json b/advisories/unreviewed/2022/05/GHSA-hg3h-m7hf-v654/GHSA-hg3h-m7hf-v654.json index 645126e0f32..9b83e015ddf 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg3h-m7hf-v654/GHSA-hg3h-m7hf-v654.json +++ b/advisories/unreviewed/2022/05/GHSA-hg3h-m7hf-v654/GHSA-hg3h-m7hf-v654.json @@ -7,12 +7,8 @@ "CVE-2005-0376" ], "details": "PHP remote file inclusion vulnerability in SGallery 1.01 allows local and possibly remote attackers to execute arbitrary PHP code by modifying the DOCUMENT_ROOT parameter to reference a URL on a remote web server that contains (1) config.php or (2) sql_layer.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hg4j-hgh6-fp6f/GHSA-hg4j-hgh6-fp6f.json b/advisories/unreviewed/2022/05/GHSA-hg4j-hgh6-fp6f/GHSA-hg4j-hgh6-fp6f.json index 618831610e6..5ffb974289a 100644 --- a/advisories/unreviewed/2022/05/GHSA-hg4j-hgh6-fp6f/GHSA-hg4j-hgh6-fp6f.json +++ b/advisories/unreviewed/2022/05/GHSA-hg4j-hgh6-fp6f/GHSA-hg4j-hgh6-fp6f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hhp7-p9cg-9wm2/GHSA-hhp7-p9cg-9wm2.json b/advisories/unreviewed/2022/05/GHSA-hhp7-p9cg-9wm2/GHSA-hhp7-p9cg-9wm2.json index cca98b9d870..01ffd73ed0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhp7-p9cg-9wm2/GHSA-hhp7-p9cg-9wm2.json +++ b/advisories/unreviewed/2022/05/GHSA-hhp7-p9cg-9wm2/GHSA-hhp7-p9cg-9wm2.json @@ -7,12 +7,8 @@ "CVE-2020-23190" ], "details": "A stored cross site scripting (XSS) vulnerability in the \"Import emails\" module in phplist 3.5.4 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hhvh-8925-wvqg/GHSA-hhvh-8925-wvqg.json b/advisories/unreviewed/2022/05/GHSA-hhvh-8925-wvqg/GHSA-hhvh-8925-wvqg.json index cae467f5d3f..d74e920064e 100644 --- a/advisories/unreviewed/2022/05/GHSA-hhvh-8925-wvqg/GHSA-hhvh-8925-wvqg.json +++ b/advisories/unreviewed/2022/05/GHSA-hhvh-8925-wvqg/GHSA-hhvh-8925-wvqg.json @@ -7,12 +7,8 @@ "CVE-2021-28562" ], "details": "Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Use After Free vulnerability when executing search queries through Javascript. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hjf8-42pm-336r/GHSA-hjf8-42pm-336r.json b/advisories/unreviewed/2022/05/GHSA-hjf8-42pm-336r/GHSA-hjf8-42pm-336r.json index 947a4b8ddc5..2aaeaefda30 100644 --- a/advisories/unreviewed/2022/05/GHSA-hjf8-42pm-336r/GHSA-hjf8-42pm-336r.json +++ b/advisories/unreviewed/2022/05/GHSA-hjf8-42pm-336r/GHSA-hjf8-42pm-336r.json @@ -7,12 +7,8 @@ "CVE-2005-0279" ], "details": "Soldner Secret Wars 30830 and earlier does not properly handle the \"message too long\" socket error, which allows remote attackers to cause a denial of service (socket termination) via a long UDP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hm46-4hjh-p78w/GHSA-hm46-4hjh-p78w.json b/advisories/unreviewed/2022/05/GHSA-hm46-4hjh-p78w/GHSA-hm46-4hjh-p78w.json index 4a05575d9b8..bd850fe9278 100644 --- a/advisories/unreviewed/2022/05/GHSA-hm46-4hjh-p78w/GHSA-hm46-4hjh-p78w.json +++ b/advisories/unreviewed/2022/05/GHSA-hm46-4hjh-p78w/GHSA-hm46-4hjh-p78w.json @@ -7,12 +7,8 @@ "CVE-2005-0331" ], "details": "Directory traversal vulnerability in WinRAR 3.42 and earlier, when the user clicks on the ZIP file to extract it, allows remote attackers to create arbitrary files via a ... (triple dot) in the filename of the ZIP file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hmgj-fqgw-p337/GHSA-hmgj-fqgw-p337.json b/advisories/unreviewed/2022/05/GHSA-hmgj-fqgw-p337/GHSA-hmgj-fqgw-p337.json index 936bc105815..9af989f8a01 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmgj-fqgw-p337/GHSA-hmgj-fqgw-p337.json +++ b/advisories/unreviewed/2022/05/GHSA-hmgj-fqgw-p337/GHSA-hmgj-fqgw-p337.json @@ -7,12 +7,8 @@ "CVE-2005-0615" ], "details": "Multiple SQL injection vulnerabilities in (1) index.php, (2) modules.php, or (3) admin.php in PostNuke 0.760-RC2 allow remote attackers to execute arbitrary SQL code via the catid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hmrq-pv99-355p/GHSA-hmrq-pv99-355p.json b/advisories/unreviewed/2022/05/GHSA-hmrq-pv99-355p/GHSA-hmrq-pv99-355p.json index 8f4a41c7b0b..e7bfe0a173d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hmrq-pv99-355p/GHSA-hmrq-pv99-355p.json +++ b/advisories/unreviewed/2022/05/GHSA-hmrq-pv99-355p/GHSA-hmrq-pv99-355p.json @@ -7,12 +7,8 @@ "CVE-2005-0560" ], "details": "Heap-based buffer overflow in the SvrAppendReceivedChunk function in xlsasink.dll in the SMTP service of Exchange Server 2000 and 2003 allows remote attackers to execute arbitrary code via a crafted X-LINK2STATE extended verb request to the SMTP port.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hpv5-w2gm-c9r5/GHSA-hpv5-w2gm-c9r5.json b/advisories/unreviewed/2022/05/GHSA-hpv5-w2gm-c9r5/GHSA-hpv5-w2gm-c9r5.json index ca70c67be39..7d505db864c 100644 --- a/advisories/unreviewed/2022/05/GHSA-hpv5-w2gm-c9r5/GHSA-hpv5-w2gm-c9r5.json +++ b/advisories/unreviewed/2022/05/GHSA-hpv5-w2gm-c9r5/GHSA-hpv5-w2gm-c9r5.json @@ -7,12 +7,8 @@ "CVE-2021-0566" ], "details": "In accessAudioHalPidscpp of TimeCheck.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-175894436", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hr9w-xmr5-649g/GHSA-hr9w-xmr5-649g.json b/advisories/unreviewed/2022/05/GHSA-hr9w-xmr5-649g/GHSA-hr9w-xmr5-649g.json index ce639bd5f97..bb77299e27d 100644 --- a/advisories/unreviewed/2022/05/GHSA-hr9w-xmr5-649g/GHSA-hr9w-xmr5-649g.json +++ b/advisories/unreviewed/2022/05/GHSA-hr9w-xmr5-649g/GHSA-hr9w-xmr5-649g.json @@ -7,12 +7,8 @@ "CVE-2021-0538" ], "details": "In onCreate of EmergencyCallbackModeExitDialog.java, there is a possible exit of emergency callback mode due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-178821491", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrfw-7pg5-g3x6/GHSA-hrfw-7pg5-g3x6.json b/advisories/unreviewed/2022/05/GHSA-hrfw-7pg5-g3x6/GHSA-hrfw-7pg5-g3x6.json index 1b26640796c..a848c61ac24 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrfw-7pg5-g3x6/GHSA-hrfw-7pg5-g3x6.json +++ b/advisories/unreviewed/2022/05/GHSA-hrfw-7pg5-g3x6/GHSA-hrfw-7pg5-g3x6.json @@ -7,12 +7,8 @@ "CVE-2021-24366" ], "details": "The Admin Columns Free WordPress plugin before 4.3 and Admin Columns Pro WordPress plugin before 5.5.1, rendered input on the posted pages with improper input validation on the value passed into the field 'Label' parameter, by taking this as an advantage an authenticated attacker can supply a crafted arbitrary script and execute it.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hrxc-v3q2-vwqh/GHSA-hrxc-v3q2-vwqh.json b/advisories/unreviewed/2022/05/GHSA-hrxc-v3q2-vwqh/GHSA-hrxc-v3q2-vwqh.json index 5b65f93623d..bf681f30b0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-hrxc-v3q2-vwqh/GHSA-hrxc-v3q2-vwqh.json +++ b/advisories/unreviewed/2022/05/GHSA-hrxc-v3q2-vwqh/GHSA-hrxc-v3q2-vwqh.json @@ -7,12 +7,8 @@ "CVE-2021-36146" ], "details": "ACRN before 2.5 has a devicemodel/hw/pci/xhci.c NULL Pointer Dereference for a trb pointer.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hv4j-fjqh-gvf5/GHSA-hv4j-fjqh-gvf5.json b/advisories/unreviewed/2022/05/GHSA-hv4j-fjqh-gvf5/GHSA-hv4j-fjqh-gvf5.json index 66e527265b2..7379a2c3d69 100644 --- a/advisories/unreviewed/2022/05/GHSA-hv4j-fjqh-gvf5/GHSA-hv4j-fjqh-gvf5.json +++ b/advisories/unreviewed/2022/05/GHSA-hv4j-fjqh-gvf5/GHSA-hv4j-fjqh-gvf5.json @@ -7,12 +7,8 @@ "CVE-2005-0594" ], "details": "Buffer overflow in the Netinfo Setup Tool (NeST) allows local users to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-hw5p-4jgw-wr5w/GHSA-hw5p-4jgw-wr5w.json b/advisories/unreviewed/2022/05/GHSA-hw5p-4jgw-wr5w/GHSA-hw5p-4jgw-wr5w.json index 26cf7de5581..2a0372f1441 100644 --- a/advisories/unreviewed/2022/05/GHSA-hw5p-4jgw-wr5w/GHSA-hw5p-4jgw-wr5w.json +++ b/advisories/unreviewed/2022/05/GHSA-hw5p-4jgw-wr5w/GHSA-hw5p-4jgw-wr5w.json @@ -7,12 +7,8 @@ "CVE-2021-36132" ], "details": "An issue was discovered in the FileImporter extension in MediaWiki through 1.36. For certain relaxed configurations of the $wgFileImporterRequiredRight variable, it might not validate all appropriate user rights, thus allowing a user with insufficient rights to perform operations (specifically file uploads) that they should not be allowed to perform.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwqv-mgvv-f7g4/GHSA-hwqv-mgvv-f7g4.json b/advisories/unreviewed/2022/05/GHSA-hwqv-mgvv-f7g4/GHSA-hwqv-mgvv-f7g4.json index 799e3929b9a..1e643cb1bd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwqv-mgvv-f7g4/GHSA-hwqv-mgvv-f7g4.json +++ b/advisories/unreviewed/2022/05/GHSA-hwqv-mgvv-f7g4/GHSA-hwqv-mgvv-f7g4.json @@ -7,12 +7,8 @@ "CVE-2021-20102" ], "details": "Machform prior to version 16 is vulnerable to cross-site request forgery due to a lack of CSRF tokens in place.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwv7-wjc3-wjwc/GHSA-hwv7-wjc3-wjwc.json b/advisories/unreviewed/2022/05/GHSA-hwv7-wjc3-wjwc/GHSA-hwv7-wjc3-wjwc.json index 039443e7b16..231bfab3537 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwv7-wjc3-wjwc/GHSA-hwv7-wjc3-wjwc.json +++ b/advisories/unreviewed/2022/05/GHSA-hwv7-wjc3-wjwc/GHSA-hwv7-wjc3-wjwc.json @@ -7,12 +7,8 @@ "CVE-2021-35303" ], "details": "Cross Site Scripting (XSS) in Zammad 1.0.x up to 4.0.0 allows remote attackers to execute arbitrary web script or HTML via the User Avatar attribute.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hwxw-fmr7-f2c3/GHSA-hwxw-fmr7-f2c3.json b/advisories/unreviewed/2022/05/GHSA-hwxw-fmr7-f2c3/GHSA-hwxw-fmr7-f2c3.json index 29e73bd03eb..604794a24e2 100644 --- a/advisories/unreviewed/2022/05/GHSA-hwxw-fmr7-f2c3/GHSA-hwxw-fmr7-f2c3.json +++ b/advisories/unreviewed/2022/05/GHSA-hwxw-fmr7-f2c3/GHSA-hwxw-fmr7-f2c3.json @@ -7,12 +7,8 @@ "CVE-2021-31337" ], "details": "The Telnet service of the SIMATIC HMI Comfort Panels system component in affected products does not require authentication, which may allow a remote attacker to gain access to the device if the service is enabled. Telnet is disabled by default on the SINAMICS Medium Voltage Products (SINAMICS SL150: All versions, SINAMICS SM150: All versions, SINAMICS SM150i: All versions).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-hxxg-433j-m5fg/GHSA-hxxg-433j-m5fg.json b/advisories/unreviewed/2022/05/GHSA-hxxg-433j-m5fg/GHSA-hxxg-433j-m5fg.json index 24f32724d7a..6b134ca37b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-hxxg-433j-m5fg/GHSA-hxxg-433j-m5fg.json +++ b/advisories/unreviewed/2022/05/GHSA-hxxg-433j-m5fg/GHSA-hxxg-433j-m5fg.json @@ -7,12 +7,8 @@ "CVE-2005-0425" ], "details": "Unknown vulnerability in IBM Websphere Application Server 5.0, 5.1, and 6.0 when running on Windows, allows remote attackers to obtain the source code for Java Server Pages (.jsp) via a crafted URL that causes the page to be processed by the file serving servlet instead of the JSP engine.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j3f3-xgcv-vhcf/GHSA-j3f3-xgcv-vhcf.json b/advisories/unreviewed/2022/05/GHSA-j3f3-xgcv-vhcf/GHSA-j3f3-xgcv-vhcf.json index ea2ae5b9b3c..ffc8979f68e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3f3-xgcv-vhcf/GHSA-j3f3-xgcv-vhcf.json +++ b/advisories/unreviewed/2022/05/GHSA-j3f3-xgcv-vhcf/GHSA-j3f3-xgcv-vhcf.json @@ -7,12 +7,8 @@ "CVE-2005-0365" ], "details": "The dcopidlng script in KDE 3.2.x and 3.3.x creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j3pv-p2fh-pqhr/GHSA-j3pv-p2fh-pqhr.json b/advisories/unreviewed/2022/05/GHSA-j3pv-p2fh-pqhr/GHSA-j3pv-p2fh-pqhr.json index 0c6712af6db..b0adc796619 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3pv-p2fh-pqhr/GHSA-j3pv-p2fh-pqhr.json +++ b/advisories/unreviewed/2022/05/GHSA-j3pv-p2fh-pqhr/GHSA-j3pv-p2fh-pqhr.json @@ -7,12 +7,8 @@ "CVE-2005-0477" ], "details": "Cross-site scripting (XSS) vulnerability in the SML code for Invision Power Board 1.3.1 FINAL allows remote attackers to inject arbitrary web script via (1) a signature file or (2) a message post containing an IMG tag within a COLOR tag whose style is set to background:url.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j3vp-x446-7989/GHSA-j3vp-x446-7989.json b/advisories/unreviewed/2022/05/GHSA-j3vp-x446-7989/GHSA-j3vp-x446-7989.json index d0f7e5fab25..7406f0c262b 100644 --- a/advisories/unreviewed/2022/05/GHSA-j3vp-x446-7989/GHSA-j3vp-x446-7989.json +++ b/advisories/unreviewed/2022/05/GHSA-j3vp-x446-7989/GHSA-j3vp-x446-7989.json @@ -7,12 +7,8 @@ "CVE-2021-22369" ], "details": "There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Huawei Smartphone. Successful exploitation of these vulnerabilities may escalate the permission to that of the root user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5fq-j57r-mrmw/GHSA-j5fq-j57r-mrmw.json b/advisories/unreviewed/2022/05/GHSA-j5fq-j57r-mrmw/GHSA-j5fq-j57r-mrmw.json index 9001a71befa..36fd6f56fec 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5fq-j57r-mrmw/GHSA-j5fq-j57r-mrmw.json +++ b/advisories/unreviewed/2022/05/GHSA-j5fq-j57r-mrmw/GHSA-j5fq-j57r-mrmw.json @@ -7,12 +7,8 @@ "CVE-2021-35501" ], "details": "PandoraFMS <=7.54 allows Stored XSS by placing a payload in the name field of a visual console. When a user or an administrator visits the console, the XSS payload will be executed.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j5hg-h836-v7fp/GHSA-j5hg-h836-v7fp.json b/advisories/unreviewed/2022/05/GHSA-j5hg-h836-v7fp/GHSA-j5hg-h836-v7fp.json index 6c2ba3b7cc7..5727b7dcda3 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5hg-h836-v7fp/GHSA-j5hg-h836-v7fp.json +++ b/advisories/unreviewed/2022/05/GHSA-j5hg-h836-v7fp/GHSA-j5hg-h836-v7fp.json @@ -7,12 +7,8 @@ "CVE-2005-0318" ], "details": "useredit_account.wdm in Alt-N WebAdmin 3.0.4 does not properly validate account edits by the logged in user, which allows remote authenticated users to edit other users' account information via a modified user parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j5r6-wf58-2j94/GHSA-j5r6-wf58-2j94.json b/advisories/unreviewed/2022/05/GHSA-j5r6-wf58-2j94/GHSA-j5r6-wf58-2j94.json index fee18d4f7b1..b4864155148 100644 --- a/advisories/unreviewed/2022/05/GHSA-j5r6-wf58-2j94/GHSA-j5r6-wf58-2j94.json +++ b/advisories/unreviewed/2022/05/GHSA-j5r6-wf58-2j94/GHSA-j5r6-wf58-2j94.json @@ -7,12 +7,8 @@ "CVE-2021-33537" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable remote code execution vulnerability exists in the iw_webs configuration parsing functionality. A specially crafted user name entry can cause an overflow of an error message buffer, resulting in remote code execution. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j6x3-x857-7j5x/GHSA-j6x3-x857-7j5x.json b/advisories/unreviewed/2022/05/GHSA-j6x3-x857-7j5x/GHSA-j6x3-x857-7j5x.json index 35aae36a42c..cb90f318d87 100644 --- a/advisories/unreviewed/2022/05/GHSA-j6x3-x857-7j5x/GHSA-j6x3-x857-7j5x.json +++ b/advisories/unreviewed/2022/05/GHSA-j6x3-x857-7j5x/GHSA-j6x3-x857-7j5x.json @@ -7,12 +7,8 @@ "CVE-2021-36089" ], "details": "Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from grk::FileFormatDecompress::applyColour).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j84w-6qp7-hqpw/GHSA-j84w-6qp7-hqpw.json b/advisories/unreviewed/2022/05/GHSA-j84w-6qp7-hqpw/GHSA-j84w-6qp7-hqpw.json index 9ef048e6fb2..8927b0c2f7e 100644 --- a/advisories/unreviewed/2022/05/GHSA-j84w-6qp7-hqpw/GHSA-j84w-6qp7-hqpw.json +++ b/advisories/unreviewed/2022/05/GHSA-j84w-6qp7-hqpw/GHSA-j84w-6qp7-hqpw.json @@ -7,12 +7,8 @@ "CVE-2005-0407" ], "details": "Cross-site scripting (XSS) vulnerability in Openconf 1.04, and possibly other versions before 1.10, allows remote attackers to inject arbitrary HTML and web script via the paper title.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-j8f6-3q8f-r8ch/GHSA-j8f6-3q8f-r8ch.json b/advisories/unreviewed/2022/05/GHSA-j8f6-3q8f-r8ch/GHSA-j8f6-3q8f-r8ch.json index fe373de0914..d1e01e4c6e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-j8f6-3q8f-r8ch/GHSA-j8f6-3q8f-r8ch.json +++ b/advisories/unreviewed/2022/05/GHSA-j8f6-3q8f-r8ch/GHSA-j8f6-3q8f-r8ch.json @@ -7,12 +7,8 @@ "CVE-2005-0211" ], "details": "Buffer overflow in wccp.c in Squid 2.5 before 2.5.STABLE7 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long WCCP packet, which is processed by a recvfrom function call that uses an incorrect length parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-j9mj-3442-mm95/GHSA-j9mj-3442-mm95.json b/advisories/unreviewed/2022/05/GHSA-j9mj-3442-mm95/GHSA-j9mj-3442-mm95.json index b2ecc2dbc0a..cfbff62bded 100644 --- a/advisories/unreviewed/2022/05/GHSA-j9mj-3442-mm95/GHSA-j9mj-3442-mm95.json +++ b/advisories/unreviewed/2022/05/GHSA-j9mj-3442-mm95/GHSA-j9mj-3442-mm95.json @@ -7,12 +7,8 @@ "CVE-2021-20490" ], "details": "IBM Spectrum Protect Plus 10.1.0 through 10.1.8 could allow a local user to cause a denial of service due to insecure file permission settings. IBM X-Force ID: 197791.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcgr-hfp9-8v97/GHSA-jcgr-hfp9-8v97.json b/advisories/unreviewed/2022/05/GHSA-jcgr-hfp9-8v97/GHSA-jcgr-hfp9-8v97.json index 82bfefcd73b..634b0c79f82 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcgr-hfp9-8v97/GHSA-jcgr-hfp9-8v97.json +++ b/advisories/unreviewed/2022/05/GHSA-jcgr-hfp9-8v97/GHSA-jcgr-hfp9-8v97.json @@ -7,12 +7,8 @@ "CVE-2021-22354" ], "details": "There is an Information Disclosure Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause out-of-bounds read.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jcr9-hcrf-g3rg/GHSA-jcr9-hcrf-g3rg.json b/advisories/unreviewed/2022/05/GHSA-jcr9-hcrf-g3rg/GHSA-jcr9-hcrf-g3rg.json index 400f43437f3..72b88770aa8 100644 --- a/advisories/unreviewed/2022/05/GHSA-jcr9-hcrf-g3rg/GHSA-jcr9-hcrf-g3rg.json +++ b/advisories/unreviewed/2022/05/GHSA-jcr9-hcrf-g3rg/GHSA-jcr9-hcrf-g3rg.json @@ -7,12 +7,8 @@ "CVE-2005-0429" ], "details": "Direct code injection vulnerability in forumdisplay.php in vBulletin 3.0 through 3.0.4, when showforumusers is enabled, allows remote attackers to execute inject arbitrary PHP commands via the comma parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jffp-3vhr-wjmq/GHSA-jffp-3vhr-wjmq.json b/advisories/unreviewed/2022/05/GHSA-jffp-3vhr-wjmq/GHSA-jffp-3vhr-wjmq.json index 6b31fabc4b1..f5f9c67b3a6 100644 --- a/advisories/unreviewed/2022/05/GHSA-jffp-3vhr-wjmq/GHSA-jffp-3vhr-wjmq.json +++ b/advisories/unreviewed/2022/05/GHSA-jffp-3vhr-wjmq/GHSA-jffp-3vhr-wjmq.json @@ -7,12 +7,8 @@ "CVE-2021-26274" ], "details": "The Agent in NinjaRMM 5.0.909 has Insecure Permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jg4q-mprj-p635/GHSA-jg4q-mprj-p635.json b/advisories/unreviewed/2022/05/GHSA-jg4q-mprj-p635/GHSA-jg4q-mprj-p635.json index 4d92b5891c9..b5ce2db90a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg4q-mprj-p635/GHSA-jg4q-mprj-p635.json +++ b/advisories/unreviewed/2022/05/GHSA-jg4q-mprj-p635/GHSA-jg4q-mprj-p635.json @@ -7,12 +7,8 @@ "CVE-2020-22390" ], "details": "Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file is opened.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jg59-5w24-mmc9/GHSA-jg59-5w24-mmc9.json b/advisories/unreviewed/2022/05/GHSA-jg59-5w24-mmc9/GHSA-jg59-5w24-mmc9.json index 394c05790c1..fd2c7605f6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-jg59-5w24-mmc9/GHSA-jg59-5w24-mmc9.json +++ b/advisories/unreviewed/2022/05/GHSA-jg59-5w24-mmc9/GHSA-jg59-5w24-mmc9.json @@ -7,12 +7,8 @@ "CVE-2021-32567" ], "details": "Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jh33-f93m-qfp3/GHSA-jh33-f93m-qfp3.json b/advisories/unreviewed/2022/05/GHSA-jh33-f93m-qfp3/GHSA-jh33-f93m-qfp3.json index 79c3dff12ee..9e8db4a2b7b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jh33-f93m-qfp3/GHSA-jh33-f93m-qfp3.json +++ b/advisories/unreviewed/2022/05/GHSA-jh33-f93m-qfp3/GHSA-jh33-f93m-qfp3.json @@ -7,12 +7,8 @@ "CVE-2020-23181" ], "details": "A reflected cross site scripting (XSS) vulnerability in /administration/theme.php of PHP-Fusion 9.03.60 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Manage Theme\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jm8f-5w8q-gh6q/GHSA-jm8f-5w8q-gh6q.json b/advisories/unreviewed/2022/05/GHSA-jm8f-5w8q-gh6q/GHSA-jm8f-5w8q-gh6q.json index f2720a51358..c4e45dcded2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jm8f-5w8q-gh6q/GHSA-jm8f-5w8q-gh6q.json +++ b/advisories/unreviewed/2022/05/GHSA-jm8f-5w8q-gh6q/GHSA-jm8f-5w8q-gh6q.json @@ -7,12 +7,8 @@ "CVE-2021-20583" ], "details": "IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) could disclose sensitive information through an HTTP GET request by a privileged user due to improper input validation.. IBM X-Force ID: 199396.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jmcx-w32h-8qj4/GHSA-jmcx-w32h-8qj4.json b/advisories/unreviewed/2022/05/GHSA-jmcx-w32h-8qj4/GHSA-jmcx-w32h-8qj4.json index c2c33a093e3..d95c4809082 100644 --- a/advisories/unreviewed/2022/05/GHSA-jmcx-w32h-8qj4/GHSA-jmcx-w32h-8qj4.json +++ b/advisories/unreviewed/2022/05/GHSA-jmcx-w32h-8qj4/GHSA-jmcx-w32h-8qj4.json @@ -7,12 +7,8 @@ "CVE-2021-21005" ], "details": "In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet with the Urgent-Flag set and the Urgent-Pointer set to 0, the network stack will crash. The device needs to be rebooted afterwards.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jpfw-vm34-2p3p/GHSA-jpfw-vm34-2p3p.json b/advisories/unreviewed/2022/05/GHSA-jpfw-vm34-2p3p/GHSA-jpfw-vm34-2p3p.json index 5f3ce094643..ca54cc93fe3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpfw-vm34-2p3p/GHSA-jpfw-vm34-2p3p.json +++ b/advisories/unreviewed/2022/05/GHSA-jpfw-vm34-2p3p/GHSA-jpfw-vm34-2p3p.json @@ -7,12 +7,8 @@ "CVE-2021-28693" ], "details": "xen/arm: Boot modules are not scrubbed The bootloader will load boot modules (e.g. kernel, initramfs...) in a temporary area before they are copied by Xen to each domain memory. To ensure sensitive data is not leaked from the modules, Xen must \"scrub\" them before handing the page over to the allocator. Unfortunately, it was discovered that modules will not be scrubbed on Arm.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jpjf-qc9h-8jgp/GHSA-jpjf-qc9h-8jgp.json b/advisories/unreviewed/2022/05/GHSA-jpjf-qc9h-8jgp/GHSA-jpjf-qc9h-8jgp.json index 064e6660609..8cb2e1108bd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jpjf-qc9h-8jgp/GHSA-jpjf-qc9h-8jgp.json +++ b/advisories/unreviewed/2022/05/GHSA-jpjf-qc9h-8jgp/GHSA-jpjf-qc9h-8jgp.json @@ -7,12 +7,8 @@ "CVE-2021-32700" ], "details": "Ballerina is an open source programming language and platform for cloud application programmers. Ballerina versions 1.2.x and SL releases up to alpha 3 have a potential for a supply chain attack via MiTM against users. Http connections did not make use of TLS and certificate checking was ignored. The vulnerability allows an attacker to substitute or modify packages retrieved from BC thus allowing to inject malicious code into ballerina executables. This has been patched in Ballerina 1.2.14 and Ballerina SwanLake alpha4.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "WEB", diff --git a/advisories/unreviewed/2022/05/GHSA-jr6g-mp22-2pf7/GHSA-jr6g-mp22-2pf7.json b/advisories/unreviewed/2022/05/GHSA-jr6g-mp22-2pf7/GHSA-jr6g-mp22-2pf7.json index 0ea99158ee9..eef2315d9b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-jr6g-mp22-2pf7/GHSA-jr6g-mp22-2pf7.json +++ b/advisories/unreviewed/2022/05/GHSA-jr6g-mp22-2pf7/GHSA-jr6g-mp22-2pf7.json @@ -7,12 +7,8 @@ "CVE-2021-20474" ], "details": "IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jw48-cfqw-3fqv/GHSA-jw48-cfqw-3fqv.json b/advisories/unreviewed/2022/05/GHSA-jw48-cfqw-3fqv/GHSA-jw48-cfqw-3fqv.json index da5084ee807..4aecf59a4d3 100644 --- a/advisories/unreviewed/2022/05/GHSA-jw48-cfqw-3fqv/GHSA-jw48-cfqw-3fqv.json +++ b/advisories/unreviewed/2022/05/GHSA-jw48-cfqw-3fqv/GHSA-jw48-cfqw-3fqv.json @@ -7,12 +7,8 @@ "CVE-2020-36402" ], "details": "Solidity 0.7.5 has a stack-use-after-return issue in smtutil::CHCSmtLib2Interface::querySolver. NOTE: c39a5e2b7a3fabbf687f53a2823fc087be6c1a7e is cited in the OSV \"fixed\" field but does not have a code change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jwcp-w4cr-qpx4/GHSA-jwcp-w4cr-qpx4.json b/advisories/unreviewed/2022/05/GHSA-jwcp-w4cr-qpx4/GHSA-jwcp-w4cr-qpx4.json index cd8bde337c8..6f0eb4f63b8 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwcp-w4cr-qpx4/GHSA-jwcp-w4cr-qpx4.json +++ b/advisories/unreviewed/2022/05/GHSA-jwcp-w4cr-qpx4/GHSA-jwcp-w4cr-qpx4.json @@ -7,12 +7,8 @@ "CVE-2021-34243" ], "details": "A stored cross site scripting (XSS) vulnerability was discovered in Ice Hrm 29.0.0.OS which allows attackers to execute arbitrary web scripts or HTML via a crafted file uploaded into the Document Management tab. The exploit is triggered when a user visits the upload location of the crafted file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jwj9-vx74-vv26/GHSA-jwj9-vx74-vv26.json b/advisories/unreviewed/2022/05/GHSA-jwj9-vx74-vv26/GHSA-jwj9-vx74-vv26.json index bdaeeeae1a7..8178bf70ccc 100644 --- a/advisories/unreviewed/2022/05/GHSA-jwj9-vx74-vv26/GHSA-jwj9-vx74-vv26.json +++ b/advisories/unreviewed/2022/05/GHSA-jwj9-vx74-vv26/GHSA-jwj9-vx74-vv26.json @@ -7,12 +7,8 @@ "CVE-2021-33541" ], "details": "Phoenix Contact Classic Line Controllers ILC1x0 and ILC1x1 in all versions/variants are affected by a Denial-of-Service vulnerability. The communication protocols and device access do not feature authentication measures. Remote attackers can use specially crafted IP packets to cause a denial of service on the PLC's network communication module. A successful attack stops all network communication. To restore the network connectivity the device needs to be restarted. The automation task is not affected.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx6r-7m2w-776g/GHSA-jx6r-7m2w-776g.json b/advisories/unreviewed/2022/05/GHSA-jx6r-7m2w-776g/GHSA-jx6r-7m2w-776g.json index 425ec25b92c..a15289e250b 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx6r-7m2w-776g/GHSA-jx6r-7m2w-776g.json +++ b/advisories/unreviewed/2022/05/GHSA-jx6r-7m2w-776g/GHSA-jx6r-7m2w-776g.json @@ -7,12 +7,8 @@ "CVE-2020-25925" ], "details": "Cross Site Scripting (XSS) in Webmail Calender in IceWarp WebClient 10.3.5 allows remote attackers to inject arbitrary web script or HTML via the \"p4\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jx94-gfjg-w2gp/GHSA-jx94-gfjg-w2gp.json b/advisories/unreviewed/2022/05/GHSA-jx94-gfjg-w2gp/GHSA-jx94-gfjg-w2gp.json index 9192f446f05..f15d8071d49 100644 --- a/advisories/unreviewed/2022/05/GHSA-jx94-gfjg-w2gp/GHSA-jx94-gfjg-w2gp.json +++ b/advisories/unreviewed/2022/05/GHSA-jx94-gfjg-w2gp/GHSA-jx94-gfjg-w2gp.json @@ -7,12 +7,8 @@ "CVE-2005-0207" ], "details": "Unknown vulnerability in Linux kernel 2.4.x, 2.5.x, and 2.6.x allows NFS clients to cause a denial of service via O_DIRECT.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-jxpj-gqq9-qj73/GHSA-jxpj-gqq9-qj73.json b/advisories/unreviewed/2022/05/GHSA-jxpj-gqq9-qj73/GHSA-jxpj-gqq9-qj73.json index 124ac7b232c..a9416f8ccb0 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxpj-gqq9-qj73/GHSA-jxpj-gqq9-qj73.json +++ b/advisories/unreviewed/2022/05/GHSA-jxpj-gqq9-qj73/GHSA-jxpj-gqq9-qj73.json @@ -7,12 +7,8 @@ "CVE-2021-31721" ], "details": "Chevereto before 3.17.1 allows Cross Site Scripting (XSS) via an image title at the image upload stage.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-jxwj-m7fc-8h8q/GHSA-jxwj-m7fc-8h8q.json b/advisories/unreviewed/2022/05/GHSA-jxwj-m7fc-8h8q/GHSA-jxwj-m7fc-8h8q.json index 58e52dd7798..57b084497cd 100644 --- a/advisories/unreviewed/2022/05/GHSA-jxwj-m7fc-8h8q/GHSA-jxwj-m7fc-8h8q.json +++ b/advisories/unreviewed/2022/05/GHSA-jxwj-m7fc-8h8q/GHSA-jxwj-m7fc-8h8q.json @@ -7,12 +7,8 @@ "CVE-2005-0215" ], "details": "Mozilla 1.6 and possibly other versions allows remote attackers to cause a denial of service (application crash) via a XBM (X BitMap) file with a large (1) height or (2) width value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m2g4-6qvq-g686/GHSA-m2g4-6qvq-g686.json b/advisories/unreviewed/2022/05/GHSA-m2g4-6qvq-g686/GHSA-m2g4-6qvq-g686.json index 6e3e726f2eb..bfb4f738c1e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2g4-6qvq-g686/GHSA-m2g4-6qvq-g686.json +++ b/advisories/unreviewed/2022/05/GHSA-m2g4-6qvq-g686/GHSA-m2g4-6qvq-g686.json @@ -7,12 +7,8 @@ "CVE-2020-24143" ], "details": "Directory traversal in the Video Downloader for TikTok (aka downloader-tiktok) plugin 1.3 for WordPress lets an attacker get access to files that are stored outside the web root folder via the njt-tk-download-video parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m2wv-whm5-7rwm/GHSA-m2wv-whm5-7rwm.json b/advisories/unreviewed/2022/05/GHSA-m2wv-whm5-7rwm/GHSA-m2wv-whm5-7rwm.json index 89494f7d0a7..c97a3a6381e 100644 --- a/advisories/unreviewed/2022/05/GHSA-m2wv-whm5-7rwm/GHSA-m2wv-whm5-7rwm.json +++ b/advisories/unreviewed/2022/05/GHSA-m2wv-whm5-7rwm/GHSA-m2wv-whm5-7rwm.json @@ -7,12 +7,8 @@ "CVE-2005-0580" ], "details": "cmd5checkpw, when running setuid, does not properly drop privileges before calling the execvp function, which allows local users to read the poppasswd file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m38j-wvgx-7vpr/GHSA-m38j-wvgx-7vpr.json b/advisories/unreviewed/2022/05/GHSA-m38j-wvgx-7vpr/GHSA-m38j-wvgx-7vpr.json index 9eae50c9511..bb5bbf4a8ae 100644 --- a/advisories/unreviewed/2022/05/GHSA-m38j-wvgx-7vpr/GHSA-m38j-wvgx-7vpr.json +++ b/advisories/unreviewed/2022/05/GHSA-m38j-wvgx-7vpr/GHSA-m38j-wvgx-7vpr.json @@ -7,12 +7,8 @@ "CVE-2005-0568" ], "details": "Soldier of Fortune II 1.03 gold allows remote attackers to cause a denial of service (application crash) via a large cl_guid value, which results in an invalid pointer dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m3h7-84mr-jh3r/GHSA-m3h7-84mr-jh3r.json b/advisories/unreviewed/2022/05/GHSA-m3h7-84mr-jh3r/GHSA-m3h7-84mr-jh3r.json index ebb0beb5f24..0e2c8c0334f 100644 --- a/advisories/unreviewed/2022/05/GHSA-m3h7-84mr-jh3r/GHSA-m3h7-84mr-jh3r.json +++ b/advisories/unreviewed/2022/05/GHSA-m3h7-84mr-jh3r/GHSA-m3h7-84mr-jh3r.json @@ -7,12 +7,8 @@ "CVE-2021-36131" ], "details": "An XSS issue was discovered in the SportsTeams extension in MediaWiki through 1.36. Within several special pages, a privileged user could inject arbitrary HTML and JavaScript within various data fields. The attack could easily propagate across many pages for many users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m474-8gfh-hw6q/GHSA-m474-8gfh-hw6q.json b/advisories/unreviewed/2022/05/GHSA-m474-8gfh-hw6q/GHSA-m474-8gfh-hw6q.json index d291b0e00bc..ddbc4d253d6 100644 --- a/advisories/unreviewed/2022/05/GHSA-m474-8gfh-hw6q/GHSA-m474-8gfh-hw6q.json +++ b/advisories/unreviewed/2022/05/GHSA-m474-8gfh-hw6q/GHSA-m474-8gfh-hw6q.json @@ -7,12 +7,8 @@ "CVE-2005-0416" ], "details": "The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allows remote attackers to execute arbitrary code via the AnimationHeaderBlock length field, which leads to a stack-based buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m59w-q74p-9vg2/GHSA-m59w-q74p-9vg2.json b/advisories/unreviewed/2022/05/GHSA-m59w-q74p-9vg2/GHSA-m59w-q74p-9vg2.json index bbc7530be44..3ffa0a3b89a 100644 --- a/advisories/unreviewed/2022/05/GHSA-m59w-q74p-9vg2/GHSA-m59w-q74p-9vg2.json +++ b/advisories/unreviewed/2022/05/GHSA-m59w-q74p-9vg2/GHSA-m59w-q74p-9vg2.json @@ -7,12 +7,8 @@ "CVE-2021-20734" ], "details": "Cross-site scripting vulnerability in Welcart e-Commerce versions prior to 2.2.4 allows remote attackers to inject arbitrary script or HTML via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m5fq-q49w-wc2j/GHSA-m5fq-q49w-wc2j.json b/advisories/unreviewed/2022/05/GHSA-m5fq-q49w-wc2j/GHSA-m5fq-q49w-wc2j.json index 6ad9c487fbf..ad3f2a2945c 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5fq-q49w-wc2j/GHSA-m5fq-q49w-wc2j.json +++ b/advisories/unreviewed/2022/05/GHSA-m5fq-q49w-wc2j/GHSA-m5fq-q49w-wc2j.json @@ -7,12 +7,8 @@ "CVE-2021-33012" ], "details": "Rockwell Automation MicroLogix 1100, all versions, allows a remote, unauthenticated attacker sending specially crafted commands to cause the PLC to fault when the controller is switched to RUN mode, which results in a denial-of-service condition. If successfully exploited, this vulnerability will cause the controller to fault whenever the controller is switched to RUN mode.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m5q3-rr63-cf6f/GHSA-m5q3-rr63-cf6f.json b/advisories/unreviewed/2022/05/GHSA-m5q3-rr63-cf6f/GHSA-m5q3-rr63-cf6f.json index 6c75546d0f1..73cbce7a041 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5q3-rr63-cf6f/GHSA-m5q3-rr63-cf6f.json +++ b/advisories/unreviewed/2022/05/GHSA-m5q3-rr63-cf6f/GHSA-m5q3-rr63-cf6f.json @@ -7,12 +7,8 @@ "CVE-2020-36394" ], "details": "pam_setquota.c in the pam_setquota module before 2020-05-29 for Linux-PAM allows local attackers to set their quota on an arbitrary filesystem, in certain situations where the attacker's home directory is a FUSE filesystem mounted under /home.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m5rq-w3gw-5h6x/GHSA-m5rq-w3gw-5h6x.json b/advisories/unreviewed/2022/05/GHSA-m5rq-w3gw-5h6x/GHSA-m5rq-w3gw-5h6x.json index d36ff6179de..73aea641364 100644 --- a/advisories/unreviewed/2022/05/GHSA-m5rq-w3gw-5h6x/GHSA-m5rq-w3gw-5h6x.json +++ b/advisories/unreviewed/2022/05/GHSA-m5rq-w3gw-5h6x/GHSA-m5rq-w3gw-5h6x.json @@ -7,12 +7,8 @@ "CVE-2020-4609" ], "details": "IBM Security Sevret Server (IBM Security Verify Privilege Manager 10.8.2) is vulnerable to a buffer overflow, caused by improper bounds checking. A local attacker could overflow a buffer and execute arbitrary code on the system or cause the system to crash. IBM X-Force ID: 184917.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m67h-2w3r-chxc/GHSA-m67h-2w3r-chxc.json b/advisories/unreviewed/2022/05/GHSA-m67h-2w3r-chxc/GHSA-m67h-2w3r-chxc.json index ede6384173e..411e3a2976d 100644 --- a/advisories/unreviewed/2022/05/GHSA-m67h-2w3r-chxc/GHSA-m67h-2w3r-chxc.json +++ b/advisories/unreviewed/2022/05/GHSA-m67h-2w3r-chxc/GHSA-m67h-2w3r-chxc.json @@ -7,12 +7,8 @@ "CVE-2005-0444" ], "details": "VMware before 4.5.2.8848-r5 searches for gdk-pixbuf shared libraries using a path that includes the rrdharan world-writable temporary directory, which allows local users to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-m6m2-j477-jfg8/GHSA-m6m2-j477-jfg8.json b/advisories/unreviewed/2022/05/GHSA-m6m2-j477-jfg8/GHSA-m6m2-j477-jfg8.json index 976e7ed3344..98ee962f8e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-m6m2-j477-jfg8/GHSA-m6m2-j477-jfg8.json +++ b/advisories/unreviewed/2022/05/GHSA-m6m2-j477-jfg8/GHSA-m6m2-j477-jfg8.json @@ -7,12 +7,8 @@ "CVE-2021-27577" ], "details": "Incorrect handling of url fragment vulnerability of Apache Traffic Server allows an attacker to poison the cache. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m753-vccv-qprm/GHSA-m753-vccv-qprm.json b/advisories/unreviewed/2022/05/GHSA-m753-vccv-qprm/GHSA-m753-vccv-qprm.json index a4e4ccdd224..e85e243c6f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-m753-vccv-qprm/GHSA-m753-vccv-qprm.json +++ b/advisories/unreviewed/2022/05/GHSA-m753-vccv-qprm/GHSA-m753-vccv-qprm.json @@ -7,12 +7,8 @@ "CVE-2020-36410" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Email address to receive notification of news submission\" parameter under the \"Options\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m94w-7cmq-758f/GHSA-m94w-7cmq-758f.json b/advisories/unreviewed/2022/05/GHSA-m94w-7cmq-758f/GHSA-m94w-7cmq-758f.json index 76828632614..f3b992a3862 100644 --- a/advisories/unreviewed/2022/05/GHSA-m94w-7cmq-758f/GHSA-m94w-7cmq-758f.json +++ b/advisories/unreviewed/2022/05/GHSA-m94w-7cmq-758f/GHSA-m94w-7cmq-758f.json @@ -7,12 +7,8 @@ "CVE-2021-36082" ], "details": "ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m96x-gm92-9w38/GHSA-m96x-gm92-9w38.json b/advisories/unreviewed/2022/05/GHSA-m96x-gm92-9w38/GHSA-m96x-gm92-9w38.json index e1099c217d2..417ddee600f 100644 --- a/advisories/unreviewed/2022/05/GHSA-m96x-gm92-9w38/GHSA-m96x-gm92-9w38.json +++ b/advisories/unreviewed/2022/05/GHSA-m96x-gm92-9w38/GHSA-m96x-gm92-9w38.json @@ -7,12 +7,8 @@ "CVE-2020-36412" ], "details": "A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Search Text\" field under the \"Admin Search\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-m9m4-w6qg-qgcp/GHSA-m9m4-w6qg-qgcp.json b/advisories/unreviewed/2022/05/GHSA-m9m4-w6qg-qgcp/GHSA-m9m4-w6qg-qgcp.json index 07bc268f967..58d289cfef1 100644 --- a/advisories/unreviewed/2022/05/GHSA-m9m4-w6qg-qgcp/GHSA-m9m4-w6qg-qgcp.json +++ b/advisories/unreviewed/2022/05/GHSA-m9m4-w6qg-qgcp/GHSA-m9m4-w6qg-qgcp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mch6-c5jx-fv9f/GHSA-mch6-c5jx-fv9f.json b/advisories/unreviewed/2022/05/GHSA-mch6-c5jx-fv9f/GHSA-mch6-c5jx-fv9f.json index 5c7eb9c39db..fbb1ebf70a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mch6-c5jx-fv9f/GHSA-mch6-c5jx-fv9f.json +++ b/advisories/unreviewed/2022/05/GHSA-mch6-c5jx-fv9f/GHSA-mch6-c5jx-fv9f.json @@ -7,12 +7,8 @@ "CVE-2005-0613" ], "details": "Unknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote attackers to upload arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mg8x-vg6r-cj96/GHSA-mg8x-vg6r-cj96.json b/advisories/unreviewed/2022/05/GHSA-mg8x-vg6r-cj96/GHSA-mg8x-vg6r-cj96.json index 854b1a270b3..6d60a0a4f0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mg8x-vg6r-cj96/GHSA-mg8x-vg6r-cj96.json +++ b/advisories/unreviewed/2022/05/GHSA-mg8x-vg6r-cj96/GHSA-mg8x-vg6r-cj96.json @@ -7,12 +7,8 @@ "CVE-2005-0596" ], "details": "PHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile function on a file whose size is a multiple of the page size.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mh32-w5r7-jx6m/GHSA-mh32-w5r7-jx6m.json b/advisories/unreviewed/2022/05/GHSA-mh32-w5r7-jx6m/GHSA-mh32-w5r7-jx6m.json index ad9f4bfff68..aadb8c747e6 100644 --- a/advisories/unreviewed/2022/05/GHSA-mh32-w5r7-jx6m/GHSA-mh32-w5r7-jx6m.json +++ b/advisories/unreviewed/2022/05/GHSA-mh32-w5r7-jx6m/GHSA-mh32-w5r7-jx6m.json @@ -7,12 +7,8 @@ "CVE-2021-34373" ], "details": "Trusty trusted Linux kernel (TLK) contains a vulnerability in the NVIDIA TLK kernel where a lack of heap hardening could cause heap overflows, which might lead to information disclosure and denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhf4-98x7-2cw4/GHSA-mhf4-98x7-2cw4.json b/advisories/unreviewed/2022/05/GHSA-mhf4-98x7-2cw4/GHSA-mhf4-98x7-2cw4.json index 1bdc257c030..a58540cb27b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhf4-98x7-2cw4/GHSA-mhf4-98x7-2cw4.json +++ b/advisories/unreviewed/2022/05/GHSA-mhf4-98x7-2cw4/GHSA-mhf4-98x7-2cw4.json @@ -7,12 +7,8 @@ "CVE-2021-29949" ], "details": "When loading the shared library that provides the OTR protocol implementation, Thunderbird will initially attempt to open it using a filename that isn't distributed by Thunderbird. If a computer has already been infected with a malicious library of the alternative filename, and the malicious library has been copied to a directory that is contained in the search path for executable libraries, then Thunderbird will load the incorrect library. This vulnerability affects Thunderbird < 78.9.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mhq2-mq3h-45cg/GHSA-mhq2-mq3h-45cg.json b/advisories/unreviewed/2022/05/GHSA-mhq2-mq3h-45cg/GHSA-mhq2-mq3h-45cg.json index dbb5412b50d..67da3e474c8 100644 --- a/advisories/unreviewed/2022/05/GHSA-mhq2-mq3h-45cg/GHSA-mhq2-mq3h-45cg.json +++ b/advisories/unreviewed/2022/05/GHSA-mhq2-mq3h-45cg/GHSA-mhq2-mq3h-45cg.json @@ -7,12 +7,8 @@ "CVE-2021-22229" ], "details": "An issue has been discovered in GitLab CE/EE affecting all versions starting with 12.8. Under a special condition it was possible to access data of an internal repository through project fork done by a project member.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mj23-7m3m-wqph/GHSA-mj23-7m3m-wqph.json b/advisories/unreviewed/2022/05/GHSA-mj23-7m3m-wqph/GHSA-mj23-7m3m-wqph.json index 525c1bb1a38..75960febe2e 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj23-7m3m-wqph/GHSA-mj23-7m3m-wqph.json +++ b/advisories/unreviewed/2022/05/GHSA-mj23-7m3m-wqph/GHSA-mj23-7m3m-wqph.json @@ -7,12 +7,8 @@ "CVE-2020-22607" ], "details": "Cross Site Scripting vulnerabilty in LimeSurvey 4.1.11+200316 via the (1) name and (2) description parameters in application/controllers/admin/PermissiontemplatesController.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mj6m-vx49-4m89/GHSA-mj6m-vx49-4m89.json b/advisories/unreviewed/2022/05/GHSA-mj6m-vx49-4m89/GHSA-mj6m-vx49-4m89.json index 4dd90cfdbb5..4fb53834e70 100644 --- a/advisories/unreviewed/2022/05/GHSA-mj6m-vx49-4m89/GHSA-mj6m-vx49-4m89.json +++ b/advisories/unreviewed/2022/05/GHSA-mj6m-vx49-4m89/GHSA-mj6m-vx49-4m89.json @@ -7,12 +7,8 @@ "CVE-2021-20573" ], "details": "IBM Security Identity Manager Adapters 6.0 and 7.0 are vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote authenticated attacker could overflow the and cause the server to crash. IBM X-Force ID: 199249.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mjp7-fvxw-f332/GHSA-mjp7-fvxw-f332.json b/advisories/unreviewed/2022/05/GHSA-mjp7-fvxw-f332/GHSA-mjp7-fvxw-f332.json index 35c3cb37b48..81c03fd1663 100644 --- a/advisories/unreviewed/2022/05/GHSA-mjp7-fvxw-f332/GHSA-mjp7-fvxw-f332.json +++ b/advisories/unreviewed/2022/05/GHSA-mjp7-fvxw-f332/GHSA-mjp7-fvxw-f332.json @@ -7,12 +7,8 @@ "CVE-2020-24146" ], "details": "Directory traversal in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress allows authorized users to delete arbitrary files and possibly cause a denial of service via the fileName parameter in a deletescreenshot action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mm47-94wr-2g3f/GHSA-mm47-94wr-2g3f.json b/advisories/unreviewed/2022/05/GHSA-mm47-94wr-2g3f/GHSA-mm47-94wr-2g3f.json index 4e5cbfd02ff..04e905b4424 100644 --- a/advisories/unreviewed/2022/05/GHSA-mm47-94wr-2g3f/GHSA-mm47-94wr-2g3f.json +++ b/advisories/unreviewed/2022/05/GHSA-mm47-94wr-2g3f/GHSA-mm47-94wr-2g3f.json @@ -7,12 +7,8 @@ "CVE-2005-0391" ], "details": "geneweb 4.10 and earlier does not properly check file permissions and content during conversion, which allows attackers to modify arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mpc3-cw77-gc2f/GHSA-mpc3-cw77-gc2f.json b/advisories/unreviewed/2022/05/GHSA-mpc3-cw77-gc2f/GHSA-mpc3-cw77-gc2f.json index 2875a1dcce2..20160e3e3ac 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpc3-cw77-gc2f/GHSA-mpc3-cw77-gc2f.json +++ b/advisories/unreviewed/2022/05/GHSA-mpc3-cw77-gc2f/GHSA-mpc3-cw77-gc2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mpgf-5wcr-9hgg/GHSA-mpgf-5wcr-9hgg.json b/advisories/unreviewed/2022/05/GHSA-mpgf-5wcr-9hgg/GHSA-mpgf-5wcr-9hgg.json index 9dd115fa10c..db663f8de4a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpgf-5wcr-9hgg/GHSA-mpgf-5wcr-9hgg.json +++ b/advisories/unreviewed/2022/05/GHSA-mpgf-5wcr-9hgg/GHSA-mpgf-5wcr-9hgg.json @@ -7,12 +7,8 @@ "CVE-2021-32565" ], "details": "Invalid values in the Content-Length header sent to Apache Traffic Server allows an attacker to smuggle requests. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mpw5-hg26-mxq5/GHSA-mpw5-hg26-mxq5.json b/advisories/unreviewed/2022/05/GHSA-mpw5-hg26-mxq5/GHSA-mpw5-hg26-mxq5.json index 60240a069f1..b81faf07365 100644 --- a/advisories/unreviewed/2022/05/GHSA-mpw5-hg26-mxq5/GHSA-mpw5-hg26-mxq5.json +++ b/advisories/unreviewed/2022/05/GHSA-mpw5-hg26-mxq5/GHSA-mpw5-hg26-mxq5.json @@ -7,12 +7,8 @@ "CVE-2005-0622" ], "details": "RaidenHTTPD 1.1.32, and possibly other versions before 1.1.34, allows remote attackers to view the PHP source code via an HTTP GET request for a filename with a trailing (1) . (dot) or (2) space.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mq4v-fvj7-qhmj/GHSA-mq4v-fvj7-qhmj.json b/advisories/unreviewed/2022/05/GHSA-mq4v-fvj7-qhmj/GHSA-mq4v-fvj7-qhmj.json index 93c3bc85246..b1b36fa075a 100644 --- a/advisories/unreviewed/2022/05/GHSA-mq4v-fvj7-qhmj/GHSA-mq4v-fvj7-qhmj.json +++ b/advisories/unreviewed/2022/05/GHSA-mq4v-fvj7-qhmj/GHSA-mq4v-fvj7-qhmj.json @@ -7,12 +7,8 @@ "CVE-2005-0590" ], "details": "The installation confirmation dialog in Firefox before 1.0.1, Thunderbird before 1.0.1, and Mozilla before 1.7.6 allows remote attackers to use InstallTrigger to spoof the hostname of the host performing the installation via a long \"user:pass\" sequence in the URL, which appears before the real hostname.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -64,9 +60,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mqh2-67f9-5wg9/GHSA-mqh2-67f9-5wg9.json b/advisories/unreviewed/2022/05/GHSA-mqh2-67f9-5wg9/GHSA-mqh2-67f9-5wg9.json index e811fafcd67..2883860afc9 100644 --- a/advisories/unreviewed/2022/05/GHSA-mqh2-67f9-5wg9/GHSA-mqh2-67f9-5wg9.json +++ b/advisories/unreviewed/2022/05/GHSA-mqh2-67f9-5wg9/GHSA-mqh2-67f9-5wg9.json @@ -7,12 +7,8 @@ "CVE-2005-0603" ], "details": "viewtopic.php in phpBB 2.0.12 and earlier allows remote attackers to obtain sensitive information via a highlight parameter containing invalid regular expression syntax, which reveals the path in a PHP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr6w-w9jp-wj4q/GHSA-mr6w-w9jp-wj4q.json b/advisories/unreviewed/2022/05/GHSA-mr6w-w9jp-wj4q/GHSA-mr6w-w9jp-wj4q.json index d9dc2ccc73c..2b0886eb6c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr6w-w9jp-wj4q/GHSA-mr6w-w9jp-wj4q.json +++ b/advisories/unreviewed/2022/05/GHSA-mr6w-w9jp-wj4q/GHSA-mr6w-w9jp-wj4q.json @@ -7,12 +7,8 @@ "CVE-2005-0451" ], "details": "Sami HTTP Server 1.0.5 allows remote attackers to cause a denial of service via an HTTP request containing two CRLF sequences, which triggers a NULL dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mr9v-396x-gwc8/GHSA-mr9v-396x-gwc8.json b/advisories/unreviewed/2022/05/GHSA-mr9v-396x-gwc8/GHSA-mr9v-396x-gwc8.json index 028300370ca..a5a106e2819 100644 --- a/advisories/unreviewed/2022/05/GHSA-mr9v-396x-gwc8/GHSA-mr9v-396x-gwc8.json +++ b/advisories/unreviewed/2022/05/GHSA-mr9v-396x-gwc8/GHSA-mr9v-396x-gwc8.json @@ -7,12 +7,8 @@ "CVE-2021-0478" ], "details": "In updateDrawable of StatusBarIconView.java, there is a possible permission bypass due to an uncaught exception. This could lead to local escalation of privilege by running foreground services without notifying the user, with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-169255797", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mrv2-9m48-589p/GHSA-mrv2-9m48-589p.json b/advisories/unreviewed/2022/05/GHSA-mrv2-9m48-589p/GHSA-mrv2-9m48-589p.json index 7e316fa68c4..cbb225d4c2b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mrv2-9m48-589p/GHSA-mrv2-9m48-589p.json +++ b/advisories/unreviewed/2022/05/GHSA-mrv2-9m48-589p/GHSA-mrv2-9m48-589p.json @@ -7,12 +7,8 @@ "CVE-2021-20572" ], "details": "IBM Security Identity Manager Adapters 6.0 and 7.0 are vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A remote authenticated attacker could overflow the and cause the server to crash. IBM X-Force ID: 199247.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv3h-rm7m-83qx/GHSA-mv3h-rm7m-83qx.json b/advisories/unreviewed/2022/05/GHSA-mv3h-rm7m-83qx/GHSA-mv3h-rm7m-83qx.json index 1795c3db384..e867de66e04 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv3h-rm7m-83qx/GHSA-mv3h-rm7m-83qx.json +++ b/advisories/unreviewed/2022/05/GHSA-mv3h-rm7m-83qx/GHSA-mv3h-rm7m-83qx.json @@ -7,12 +7,8 @@ "CVE-2021-22439" ], "details": "There is a deserialization vulnerability in Huawei AnyOffice V200R006C10. An attacker can construct a specific request to exploit this vulnerability. Successfully exploiting this vulnerability, the attacker can execute remote malicious code injection and to control the device.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mv7p-c3fc-fvrx/GHSA-mv7p-c3fc-fvrx.json b/advisories/unreviewed/2022/05/GHSA-mv7p-c3fc-fvrx/GHSA-mv7p-c3fc-fvrx.json index 4baafeac634..d1dccdd1385 100644 --- a/advisories/unreviewed/2022/05/GHSA-mv7p-c3fc-fvrx/GHSA-mv7p-c3fc-fvrx.json +++ b/advisories/unreviewed/2022/05/GHSA-mv7p-c3fc-fvrx/GHSA-mv7p-c3fc-fvrx.json @@ -7,12 +7,8 @@ "CVE-2020-21517" ], "details": "Cross Site Scripting (XSS) vulnerability in MetInfo 7.0.0 via the gourl parameter in login.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwf8-8q3h-4wp8/GHSA-mwf8-8q3h-4wp8.json b/advisories/unreviewed/2022/05/GHSA-mwf8-8q3h-4wp8/GHSA-mwf8-8q3h-4wp8.json index e3e6643e0a0..6e08c6dac44 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwf8-8q3h-4wp8/GHSA-mwf8-8q3h-4wp8.json +++ b/advisories/unreviewed/2022/05/GHSA-mwf8-8q3h-4wp8/GHSA-mwf8-8q3h-4wp8.json @@ -7,12 +7,8 @@ "CVE-2021-28587" ], "details": "After Effects versions 18.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mwhg-752h-93pm/GHSA-mwhg-752h-93pm.json b/advisories/unreviewed/2022/05/GHSA-mwhg-752h-93pm/GHSA-mwhg-752h-93pm.json index 3268a071cb6..08950eeb97b 100644 --- a/advisories/unreviewed/2022/05/GHSA-mwhg-752h-93pm/GHSA-mwhg-752h-93pm.json +++ b/advisories/unreviewed/2022/05/GHSA-mwhg-752h-93pm/GHSA-mwhg-752h-93pm.json @@ -7,12 +7,8 @@ "CVE-2021-32524" ], "details": "Command injection vulnerability in QSAN Storage Manager allows remote privileged users to execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx5c-mv9q-p9xm/GHSA-mx5c-mv9q-p9xm.json b/advisories/unreviewed/2022/05/GHSA-mx5c-mv9q-p9xm/GHSA-mx5c-mv9q-p9xm.json index b2fb5da2e99..85b77b95dde 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx5c-mv9q-p9xm/GHSA-mx5c-mv9q-p9xm.json +++ b/advisories/unreviewed/2022/05/GHSA-mx5c-mv9q-p9xm/GHSA-mx5c-mv9q-p9xm.json @@ -7,12 +7,8 @@ "CVE-2021-0504" ], "details": "In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179162665", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-mx6q-c5pf-x697/GHSA-mx6q-c5pf-x697.json b/advisories/unreviewed/2022/05/GHSA-mx6q-c5pf-x697/GHSA-mx6q-c5pf-x697.json index 706c4171da1..ed1be4e5fcb 100644 --- a/advisories/unreviewed/2022/05/GHSA-mx6q-c5pf-x697/GHSA-mx6q-c5pf-x697.json +++ b/advisories/unreviewed/2022/05/GHSA-mx6q-c5pf-x697/GHSA-mx6q-c5pf-x697.json @@ -7,12 +7,8 @@ "CVE-2005-0338" ], "details": "Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mxfw-955c-c6f5/GHSA-mxfw-955c-c6f5.json b/advisories/unreviewed/2022/05/GHSA-mxfw-955c-c6f5/GHSA-mxfw-955c-c6f5.json index 80fd20dc486..98919adc5e3 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxfw-955c-c6f5/GHSA-mxfw-955c-c6f5.json +++ b/advisories/unreviewed/2022/05/GHSA-mxfw-955c-c6f5/GHSA-mxfw-955c-c6f5.json @@ -7,12 +7,8 @@ "CVE-2005-0231" ], "details": "Firefox 1.0 does not invoke the Javascript Security Manager when a user drags a javascript: or data: URL to a tab, which allows remote attackers to bypass the security model, aka \"firetabbing.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-mxq7-q7x8-w86q/GHSA-mxq7-q7x8-w86q.json b/advisories/unreviewed/2022/05/GHSA-mxq7-q7x8-w86q/GHSA-mxq7-q7x8-w86q.json index ba8a47fb19c..eee7ac17b20 100644 --- a/advisories/unreviewed/2022/05/GHSA-mxq7-q7x8-w86q/GHSA-mxq7-q7x8-w86q.json +++ b/advisories/unreviewed/2022/05/GHSA-mxq7-q7x8-w86q/GHSA-mxq7-q7x8-w86q.json @@ -7,12 +7,8 @@ "CVE-2005-0607" ], "details": "CubeCart 2.0.0 through 2.0.5 allows remote attackers to determine the full path of the server via direct calls without parameters to (1) information.php, (2) language.php, (3) list_docs.php, (4) popular_prod.php, (5) sale.php, (6) subfooter.inc.php, (7) subheader.inc.php, (8) cat_navi.php, or (9) check_sum.php, which reveals the path in a PHP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p393-fh7c-vh28/GHSA-p393-fh7c-vh28.json b/advisories/unreviewed/2022/05/GHSA-p393-fh7c-vh28/GHSA-p393-fh7c-vh28.json index d7298b566ab..845b14c55aa 100644 --- a/advisories/unreviewed/2022/05/GHSA-p393-fh7c-vh28/GHSA-p393-fh7c-vh28.json +++ b/advisories/unreviewed/2022/05/GHSA-p393-fh7c-vh28/GHSA-p393-fh7c-vh28.json @@ -7,12 +7,8 @@ "CVE-2021-20735" ], "details": "Cross-site scripting vulnerability in ETUNA EC-CUBE plugins (Delivery slip number plugin (3.0 series) 1.0.10 and earlier, Delivery slip number csv bulk registration plugin (3.0 series) 1.0.8 and earlier, and Delivery slip number mail plugin (3.0 series) 1.0.8 and earlier) allows remote attackers to inject an arbitrary script by executing a specific operation on the management page of EC-CUBE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p3h3-3w6r-rjx8/GHSA-p3h3-3w6r-rjx8.json b/advisories/unreviewed/2022/05/GHSA-p3h3-3w6r-rjx8/GHSA-p3h3-3w6r-rjx8.json index 2f0514cc5d3..a4bb928ac42 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3h3-3w6r-rjx8/GHSA-p3h3-3w6r-rjx8.json +++ b/advisories/unreviewed/2022/05/GHSA-p3h3-3w6r-rjx8/GHSA-p3h3-3w6r-rjx8.json @@ -7,12 +7,8 @@ "CVE-2005-0275" ], "details": "TFTP in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service (application crash) via a GET request containing an MS-DOS device name.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3px-77xm-92cq/GHSA-p3px-77xm-92cq.json b/advisories/unreviewed/2022/05/GHSA-p3px-77xm-92cq/GHSA-p3px-77xm-92cq.json index 9d5128544f9..eb5a27bb095 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3px-77xm-92cq/GHSA-p3px-77xm-92cq.json +++ b/advisories/unreviewed/2022/05/GHSA-p3px-77xm-92cq/GHSA-p3px-77xm-92cq.json @@ -7,12 +7,8 @@ "CVE-2005-0377" ], "details": "SQL injection vulnerability in imageview.php for SGallery 1.01 allows remote attackers to execute arbitrary SQL commands via the (1) idalbum or (2) idimage parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p3v5-qwwv-25vf/GHSA-p3v5-qwwv-25vf.json b/advisories/unreviewed/2022/05/GHSA-p3v5-qwwv-25vf/GHSA-p3v5-qwwv-25vf.json index c4d019b07ff..be7d6321cfb 100644 --- a/advisories/unreviewed/2022/05/GHSA-p3v5-qwwv-25vf/GHSA-p3v5-qwwv-25vf.json +++ b/advisories/unreviewed/2022/05/GHSA-p3v5-qwwv-25vf/GHSA-p3v5-qwwv-25vf.json @@ -7,12 +7,8 @@ "CVE-2005-0478" ], "details": "Multiple buffer overflows in TrackerCam 5.12 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) an HTTP request with a long User-Agent header or (2) a long argument to an arbitrary PHP script.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p4cx-wfpq-6ffp/GHSA-p4cx-wfpq-6ffp.json b/advisories/unreviewed/2022/05/GHSA-p4cx-wfpq-6ffp/GHSA-p4cx-wfpq-6ffp.json index ce365720606..97ea67bb011 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4cx-wfpq-6ffp/GHSA-p4cx-wfpq-6ffp.json +++ b/advisories/unreviewed/2022/05/GHSA-p4cx-wfpq-6ffp/GHSA-p4cx-wfpq-6ffp.json @@ -7,12 +7,8 @@ "CVE-2021-32510" ], "details": "QSAN Storage Manager through directory listing vulnerability in antivirus function allows remote authenticated attackers to list arbitrary directories by injecting file path parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p4xc-fq3x-cx45/GHSA-p4xc-fq3x-cx45.json b/advisories/unreviewed/2022/05/GHSA-p4xc-fq3x-cx45/GHSA-p4xc-fq3x-cx45.json index 245242f2250..52c6d52d4c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-p4xc-fq3x-cx45/GHSA-p4xc-fq3x-cx45.json +++ b/advisories/unreviewed/2022/05/GHSA-p4xc-fq3x-cx45/GHSA-p4xc-fq3x-cx45.json @@ -7,12 +7,8 @@ "CVE-2005-0401" ], "details": "FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijacking drag and drop events, which allows remote attackers to execute arbitrary XUL code by tricking a user into dragging a scrollbar, a variant of CVE-2005-0527, aka \"Firescrolling 2.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p563-p765-777j/GHSA-p563-p765-777j.json b/advisories/unreviewed/2022/05/GHSA-p563-p765-777j/GHSA-p563-p765-777j.json index 36b0211d640..1ac6e5e2e6d 100644 --- a/advisories/unreviewed/2022/05/GHSA-p563-p765-777j/GHSA-p563-p765-777j.json +++ b/advisories/unreviewed/2022/05/GHSA-p563-p765-777j/GHSA-p563-p765-777j.json @@ -7,12 +7,8 @@ "CVE-2021-30555" ], "details": "Use after free in Sharing in Google Chrome prior to 91.0.4472.114 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page and user gesture.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p5x3-mg6w-jg4c/GHSA-p5x3-mg6w-jg4c.json b/advisories/unreviewed/2022/05/GHSA-p5x3-mg6w-jg4c/GHSA-p5x3-mg6w-jg4c.json index 23194cadab3..226efaf943d 100644 --- a/advisories/unreviewed/2022/05/GHSA-p5x3-mg6w-jg4c/GHSA-p5x3-mg6w-jg4c.json +++ b/advisories/unreviewed/2022/05/GHSA-p5x3-mg6w-jg4c/GHSA-p5x3-mg6w-jg4c.json @@ -7,12 +7,8 @@ "CVE-2021-34184" ], "details": "Miniaudio 0.10.35 has a Double free vulnerability that could cause a buffer overflow in ma_default_vfs_close__stdio in miniaudio.h.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p6gq-gpv8-rq69/GHSA-p6gq-gpv8-rq69.json b/advisories/unreviewed/2022/05/GHSA-p6gq-gpv8-rq69/GHSA-p6gq-gpv8-rq69.json index 5fe91dd4dd0..86ab5ef4c0b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6gq-gpv8-rq69/GHSA-p6gq-gpv8-rq69.json +++ b/advisories/unreviewed/2022/05/GHSA-p6gq-gpv8-rq69/GHSA-p6gq-gpv8-rq69.json @@ -7,12 +7,8 @@ "CVE-2005-0463" ], "details": "Unknown \"major security flaws\" in Ulog-php before 1.0, related to input validation, have unknown impact and attack vectors, probably related to SQL injection vulnerabilities in (1) host.php, (2) port.php, and (3) index.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p6qc-222j-jjw5/GHSA-p6qc-222j-jjw5.json b/advisories/unreviewed/2022/05/GHSA-p6qc-222j-jjw5/GHSA-p6qc-222j-jjw5.json index df1de1f20fc..b34d568e802 100644 --- a/advisories/unreviewed/2022/05/GHSA-p6qc-222j-jjw5/GHSA-p6qc-222j-jjw5.json +++ b/advisories/unreviewed/2022/05/GHSA-p6qc-222j-jjw5/GHSA-p6qc-222j-jjw5.json @@ -7,12 +7,8 @@ "CVE-2005-0430" ], "details": "The Quake 3 engine, as used in multiple game packages, allows remote attackers to cause a denial of service (shutdown game server) and possibly crash the server via a long infostring, possibly triggering a buffer overflow.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-p78j-ww2m-9483/GHSA-p78j-ww2m-9483.json b/advisories/unreviewed/2022/05/GHSA-p78j-ww2m-9483/GHSA-p78j-ww2m-9483.json index 56f97832b21..fa67f18eb09 100644 --- a/advisories/unreviewed/2022/05/GHSA-p78j-ww2m-9483/GHSA-p78j-ww2m-9483.json +++ b/advisories/unreviewed/2022/05/GHSA-p78j-ww2m-9483/GHSA-p78j-ww2m-9483.json @@ -7,12 +7,8 @@ "CVE-2021-32515" ], "details": "Directory listing vulnerability in share_link in QSAN Storage Manager allows attackers to list arbitrary directories and further access credential information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p849-w58p-826g/GHSA-p849-w58p-826g.json b/advisories/unreviewed/2022/05/GHSA-p849-w58p-826g/GHSA-p849-w58p-826g.json index d0e6c256e00..643cc1990f0 100644 --- a/advisories/unreviewed/2022/05/GHSA-p849-w58p-826g/GHSA-p849-w58p-826g.json +++ b/advisories/unreviewed/2022/05/GHSA-p849-w58p-826g/GHSA-p849-w58p-826g.json @@ -7,12 +7,8 @@ "CVE-2021-20574" ], "details": "IBM Security Identity Manager Adapters 6.0 and 7.0 could allow a remote authenticated attacker to conduct an LDAP injection. By using a specially crafted request, an attacker could exploit this vulnerability and takeover other accounts. IBM X-Force ID: 199252.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p92q-6vw3-958m/GHSA-p92q-6vw3-958m.json b/advisories/unreviewed/2022/05/GHSA-p92q-6vw3-958m/GHSA-p92q-6vw3-958m.json index 290dd5be40c..508d7474abf 100644 --- a/advisories/unreviewed/2022/05/GHSA-p92q-6vw3-958m/GHSA-p92q-6vw3-958m.json +++ b/advisories/unreviewed/2022/05/GHSA-p92q-6vw3-958m/GHSA-p92q-6vw3-958m.json @@ -7,12 +7,8 @@ "CVE-2021-21004" ], "details": "In Phoenix Contact FL SWITCH SMCS series products in multiple versions an attacker may insert malicious code via LLDP frames into the web-based management which could then be executed by the client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-p9hm-fgj4-cw8w/GHSA-p9hm-fgj4-cw8w.json b/advisories/unreviewed/2022/05/GHSA-p9hm-fgj4-cw8w/GHSA-p9hm-fgj4-cw8w.json index 4298e1d2516..7b171ce9e1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-p9hm-fgj4-cw8w/GHSA-p9hm-fgj4-cw8w.json +++ b/advisories/unreviewed/2022/05/GHSA-p9hm-fgj4-cw8w/GHSA-p9hm-fgj4-cw8w.json @@ -7,12 +7,8 @@ "CVE-2020-15303" ], "details": "Infoblox NIOS before 8.5.2 allows entity expansion during an XML upload operation, a related issue to CVE-2003-1564.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pc83-5vfx-xhg2/GHSA-pc83-5vfx-xhg2.json b/advisories/unreviewed/2022/05/GHSA-pc83-5vfx-xhg2/GHSA-pc83-5vfx-xhg2.json index a120a25c029..86c972fee73 100644 --- a/advisories/unreviewed/2022/05/GHSA-pc83-5vfx-xhg2/GHSA-pc83-5vfx-xhg2.json +++ b/advisories/unreviewed/2022/05/GHSA-pc83-5vfx-xhg2/GHSA-pc83-5vfx-xhg2.json @@ -7,12 +7,8 @@ "CVE-2005-0412" ], "details": "Cross-site scripting (XSS) vulnerability in Spidean PostWrap allows remote attackers to inject arbitrary HTML and web script via the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pf6g-rp8x-w43x/GHSA-pf6g-rp8x-w43x.json b/advisories/unreviewed/2022/05/GHSA-pf6g-rp8x-w43x/GHSA-pf6g-rp8x-w43x.json index 58885980eb4..751ca42badf 100644 --- a/advisories/unreviewed/2022/05/GHSA-pf6g-rp8x-w43x/GHSA-pf6g-rp8x-w43x.json +++ b/advisories/unreviewed/2022/05/GHSA-pf6g-rp8x-w43x/GHSA-pf6g-rp8x-w43x.json @@ -7,12 +7,8 @@ "CVE-2005-0572" ], "details": "index.php in phpWebSite 0.10.0 and earlier allows remote attackers to obtain sensitive information via an invalid SEA_search_module parameter, which reveals the path in a PHP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pfv5-84g7-p359/GHSA-pfv5-84g7-p359.json b/advisories/unreviewed/2022/05/GHSA-pfv5-84g7-p359/GHSA-pfv5-84g7-p359.json index 7e8957d0e21..8441815f6ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-pfv5-84g7-p359/GHSA-pfv5-84g7-p359.json +++ b/advisories/unreviewed/2022/05/GHSA-pfv5-84g7-p359/GHSA-pfv5-84g7-p359.json @@ -7,12 +7,8 @@ "CVE-2020-26763" ], "details": "The Rocket.Chat desktop application 2.17.11 opens external links without user interaction.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pg79-p2xm-4hpc/GHSA-pg79-p2xm-4hpc.json b/advisories/unreviewed/2022/05/GHSA-pg79-p2xm-4hpc/GHSA-pg79-p2xm-4hpc.json index 7b1bacd0750..e3c6383b9e9 100644 --- a/advisories/unreviewed/2022/05/GHSA-pg79-p2xm-4hpc/GHSA-pg79-p2xm-4hpc.json +++ b/advisories/unreviewed/2022/05/GHSA-pg79-p2xm-4hpc/GHSA-pg79-p2xm-4hpc.json @@ -7,12 +7,8 @@ "CVE-2020-18668" ], "details": "Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pgg5-qq33-fx32/GHSA-pgg5-qq33-fx32.json b/advisories/unreviewed/2022/05/GHSA-pgg5-qq33-fx32/GHSA-pgg5-qq33-fx32.json index e7aae7f138d..1a59d174237 100644 --- a/advisories/unreviewed/2022/05/GHSA-pgg5-qq33-fx32/GHSA-pgg5-qq33-fx32.json +++ b/advisories/unreviewed/2022/05/GHSA-pgg5-qq33-fx32/GHSA-pgg5-qq33-fx32.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-phhj-fv76-r984/GHSA-phhj-fv76-r984.json b/advisories/unreviewed/2022/05/GHSA-phhj-fv76-r984/GHSA-phhj-fv76-r984.json index 8213b23533f..1eba6da83d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-phhj-fv76-r984/GHSA-phhj-fv76-r984.json +++ b/advisories/unreviewed/2022/05/GHSA-phhj-fv76-r984/GHSA-phhj-fv76-r984.json @@ -7,12 +7,8 @@ "CVE-2020-18654" ], "details": "Cross Site Scripting (XSS) in Wuzhi CMS v4.1.0 allows remote attackers to execute arbitrary code via the \"Title\" parameter in the component \"/coreframe/app/guestbook/myissue.php\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pj39-w2qw-4qpw/GHSA-pj39-w2qw-4qpw.json b/advisories/unreviewed/2022/05/GHSA-pj39-w2qw-4qpw/GHSA-pj39-w2qw-4qpw.json index a564c023c5e..f6339d8e51f 100644 --- a/advisories/unreviewed/2022/05/GHSA-pj39-w2qw-4qpw/GHSA-pj39-w2qw-4qpw.json +++ b/advisories/unreviewed/2022/05/GHSA-pj39-w2qw-4qpw/GHSA-pj39-w2qw-4qpw.json @@ -7,12 +7,8 @@ "CVE-2020-23179" ], "details": "A stored cross site scripting (XSS) vulnerability in administration/settings_main.php of PHP-Fusion 9.03.50 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Site footer\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjj6-f92r-2c8w/GHSA-pjj6-f92r-2c8w.json b/advisories/unreviewed/2022/05/GHSA-pjj6-f92r-2c8w/GHSA-pjj6-f92r-2c8w.json index 55a8b98e77b..384a8b29ab7 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjj6-f92r-2c8w/GHSA-pjj6-f92r-2c8w.json +++ b/advisories/unreviewed/2022/05/GHSA-pjj6-f92r-2c8w/GHSA-pjj6-f92r-2c8w.json @@ -7,12 +7,8 @@ "CVE-2021-21098" ], "details": "Adobe InDesign version 16.0 (and earlier) is affected by an Out-of-bounds Write vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pjrg-f3w2-rfw3/GHSA-pjrg-f3w2-rfw3.json b/advisories/unreviewed/2022/05/GHSA-pjrg-f3w2-rfw3/GHSA-pjrg-f3w2-rfw3.json index e1a18cd3234..e765bbf4620 100644 --- a/advisories/unreviewed/2022/05/GHSA-pjrg-f3w2-rfw3/GHSA-pjrg-f3w2-rfw3.json +++ b/advisories/unreviewed/2022/05/GHSA-pjrg-f3w2-rfw3/GHSA-pjrg-f3w2-rfw3.json @@ -7,12 +7,8 @@ "CVE-2021-32516" ], "details": "Path traversal vulnerability in share_link in QSAN Storage Manager allows remote attackers to download arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pm9m-mcr8-3v4h/GHSA-pm9m-mcr8-3v4h.json b/advisories/unreviewed/2022/05/GHSA-pm9m-mcr8-3v4h/GHSA-pm9m-mcr8-3v4h.json index af05590c6e1..fdd52b7716d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pm9m-mcr8-3v4h/GHSA-pm9m-mcr8-3v4h.json +++ b/advisories/unreviewed/2022/05/GHSA-pm9m-mcr8-3v4h/GHSA-pm9m-mcr8-3v4h.json @@ -7,12 +7,8 @@ "CVE-2021-36126" ], "details": "An issue was discovered in the AbuseFilter extension in MediaWiki through 1.36. If the MediaWiki:Abusefilter-blocker message is invalid within the content language, the filter user falls back to the English version, but that English version could also be invalid on a wiki. This would result in a fatal error, and potentially fail to block or restrict a potentially nefarious user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pmfx-m292-fc24/GHSA-pmfx-m292-fc24.json b/advisories/unreviewed/2022/05/GHSA-pmfx-m292-fc24/GHSA-pmfx-m292-fc24.json index f9d53ac0aba..e5d2eb34466 100644 --- a/advisories/unreviewed/2022/05/GHSA-pmfx-m292-fc24/GHSA-pmfx-m292-fc24.json +++ b/advisories/unreviewed/2022/05/GHSA-pmfx-m292-fc24/GHSA-pmfx-m292-fc24.json @@ -7,12 +7,8 @@ "CVE-2021-20746" ], "details": "Cross-site scripting vulnerability in WordPress Popular Posts 5.3.2 and earlier allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ppx4-5mpf-6m5m/GHSA-ppx4-5mpf-6m5m.json b/advisories/unreviewed/2022/05/GHSA-ppx4-5mpf-6m5m/GHSA-ppx4-5mpf-6m5m.json index c3741828829..19df80c5def 100644 --- a/advisories/unreviewed/2022/05/GHSA-ppx4-5mpf-6m5m/GHSA-ppx4-5mpf-6m5m.json +++ b/advisories/unreviewed/2022/05/GHSA-ppx4-5mpf-6m5m/GHSA-ppx4-5mpf-6m5m.json @@ -7,12 +7,8 @@ "CVE-2005-0606" ], "details": "Cross-site scripting (XSS) vulnerability in settings.inc.php for CubeCart 2.0.0 through 2.0.5, as used in multiple PHP files, allows remote attackers to inject arbitrary HTML or web script via the (1) cat_id, (2) PHPSESSID, (3) view_doc, (4) product, (5) session, (6) catname, (7) search, or (8) page parameters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pr6m-vppw-f487/GHSA-pr6m-vppw-f487.json b/advisories/unreviewed/2022/05/GHSA-pr6m-vppw-f487/GHSA-pr6m-vppw-f487.json index 1f805b458cd..afea253eaa2 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr6m-vppw-f487/GHSA-pr6m-vppw-f487.json +++ b/advisories/unreviewed/2022/05/GHSA-pr6m-vppw-f487/GHSA-pr6m-vppw-f487.json @@ -7,12 +7,8 @@ "CVE-2005-0281" ], "details": "Cross-site scripting (XSS) vulnerability in the web interface in Soldner Secret Wars 30830 allows remote attackers to inject arbitrary web script or HTML via a user message, which is not filtered or quoted when the administrator views the server logs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-pr8j-rpfh-vf74/GHSA-pr8j-rpfh-vf74.json b/advisories/unreviewed/2022/05/GHSA-pr8j-rpfh-vf74/GHSA-pr8j-rpfh-vf74.json index 761bd02b6df..46337d1c9b6 100644 --- a/advisories/unreviewed/2022/05/GHSA-pr8j-rpfh-vf74/GHSA-pr8j-rpfh-vf74.json +++ b/advisories/unreviewed/2022/05/GHSA-pr8j-rpfh-vf74/GHSA-pr8j-rpfh-vf74.json @@ -7,12 +7,8 @@ "CVE-2005-0447" ], "details": "Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (hang) via a flood of certain ARP packets.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-prmx-2cpr-rrhx/GHSA-prmx-2cpr-rrhx.json b/advisories/unreviewed/2022/05/GHSA-prmx-2cpr-rrhx/GHSA-prmx-2cpr-rrhx.json index 5506464afbf..2c8358618f1 100644 --- a/advisories/unreviewed/2022/05/GHSA-prmx-2cpr-rrhx/GHSA-prmx-2cpr-rrhx.json +++ b/advisories/unreviewed/2022/05/GHSA-prmx-2cpr-rrhx/GHSA-prmx-2cpr-rrhx.json @@ -7,12 +7,8 @@ "CVE-2021-22374" ], "details": "There is an Improper Validation of Array Index Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause stability risks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-prpf-qf47-cv73/GHSA-prpf-qf47-cv73.json b/advisories/unreviewed/2022/05/GHSA-prpf-qf47-cv73/GHSA-prpf-qf47-cv73.json index 78070689d9e..79cfe354f9f 100644 --- a/advisories/unreviewed/2022/05/GHSA-prpf-qf47-cv73/GHSA-prpf-qf47-cv73.json +++ b/advisories/unreviewed/2022/05/GHSA-prpf-qf47-cv73/GHSA-prpf-qf47-cv73.json @@ -7,12 +7,8 @@ "CVE-2021-22346" ], "details": "There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may lead to the disclosure of user habits.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pvwf-fqcf-wm8q/GHSA-pvwf-fqcf-wm8q.json b/advisories/unreviewed/2022/05/GHSA-pvwf-fqcf-wm8q/GHSA-pvwf-fqcf-wm8q.json index 724292f2669..58badf6fd94 100644 --- a/advisories/unreviewed/2022/05/GHSA-pvwf-fqcf-wm8q/GHSA-pvwf-fqcf-wm8q.json +++ b/advisories/unreviewed/2022/05/GHSA-pvwf-fqcf-wm8q/GHSA-pvwf-fqcf-wm8q.json @@ -7,12 +7,8 @@ "CVE-2021-24406" ], "details": "The wpForo Forum WordPress plugin before 1.9.7 did not validate the redirect_to parameter in the login form of the forum, leading to an open redirect issue after a successful login. Such issue could allow an attacker to induce a user to use a login URL redirecting to a website under their control and being a replica of the legitimate one, asking them to re-enter their credentials (which will then in the attacker hands)", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pwpf-mf84-2wmh/GHSA-pwpf-mf84-2wmh.json b/advisories/unreviewed/2022/05/GHSA-pwpf-mf84-2wmh/GHSA-pwpf-mf84-2wmh.json index bc8cca651ae..74dae10b1ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-pwpf-mf84-2wmh/GHSA-pwpf-mf84-2wmh.json +++ b/advisories/unreviewed/2022/05/GHSA-pwpf-mf84-2wmh/GHSA-pwpf-mf84-2wmh.json @@ -7,12 +7,8 @@ "CVE-2017-20006" ], "details": "UnRAR 5.6.1.2 and 5.6.1.3 has a heap-based buffer overflow in Unpack::CopyString (called from Unpack::Unpack5 and CmdExtract::ExtractCurrentFile).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pww6-pfx4-8p5c/GHSA-pww6-pfx4-8p5c.json b/advisories/unreviewed/2022/05/GHSA-pww6-pfx4-8p5c/GHSA-pww6-pfx4-8p5c.json index f7dde06fbab..d363be1821b 100644 --- a/advisories/unreviewed/2022/05/GHSA-pww6-pfx4-8p5c/GHSA-pww6-pfx4-8p5c.json +++ b/advisories/unreviewed/2022/05/GHSA-pww6-pfx4-8p5c/GHSA-pww6-pfx4-8p5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-pxmm-4q5f-xgc4/GHSA-pxmm-4q5f-xgc4.json b/advisories/unreviewed/2022/05/GHSA-pxmm-4q5f-xgc4/GHSA-pxmm-4q5f-xgc4.json index 6fb0846889e..a555909be0d 100644 --- a/advisories/unreviewed/2022/05/GHSA-pxmm-4q5f-xgc4/GHSA-pxmm-4q5f-xgc4.json +++ b/advisories/unreviewed/2022/05/GHSA-pxmm-4q5f-xgc4/GHSA-pxmm-4q5f-xgc4.json @@ -7,12 +7,8 @@ "CVE-2005-0360" ], "details": "The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as \"safe for scripting\" for Internet Explorer, which allows remote attackers to create or append to arbitrary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2h2-m58v-58r8/GHSA-q2h2-m58v-58r8.json b/advisories/unreviewed/2022/05/GHSA-q2h2-m58v-58r8/GHSA-q2h2-m58v-58r8.json index 39608874e08..66668f4dc4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2h2-m58v-58r8/GHSA-q2h2-m58v-58r8.json +++ b/advisories/unreviewed/2022/05/GHSA-q2h2-m58v-58r8/GHSA-q2h2-m58v-58r8.json @@ -7,12 +7,8 @@ "CVE-2005-0339" ], "details": "Buffer overflow in Foxmail 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long MAIL FROM command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q2m9-2qvc-3c89/GHSA-q2m9-2qvc-3c89.json b/advisories/unreviewed/2022/05/GHSA-q2m9-2qvc-3c89/GHSA-q2m9-2qvc-3c89.json index 69ca20dc412..8de14548c97 100644 --- a/advisories/unreviewed/2022/05/GHSA-q2m9-2qvc-3c89/GHSA-q2m9-2qvc-3c89.json +++ b/advisories/unreviewed/2022/05/GHSA-q2m9-2qvc-3c89/GHSA-q2m9-2qvc-3c89.json @@ -7,12 +7,8 @@ "CVE-2005-0348" ], "details": "Directory traversal vulnerability in RealArcade 1.2.0.994 allows remote attackers to delete arbitrary files via an RGP file with a .. (dot dot) in the FILENAME tag.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q4fg-7wg4-vhpf/GHSA-q4fg-7wg4-vhpf.json b/advisories/unreviewed/2022/05/GHSA-q4fg-7wg4-vhpf/GHSA-q4fg-7wg4-vhpf.json index fada01cff94..b5bba9e2131 100644 --- a/advisories/unreviewed/2022/05/GHSA-q4fg-7wg4-vhpf/GHSA-q4fg-7wg4-vhpf.json +++ b/advisories/unreviewed/2022/05/GHSA-q4fg-7wg4-vhpf/GHSA-q4fg-7wg4-vhpf.json @@ -7,12 +7,8 @@ "CVE-2005-0285" ], "details": "Webseries Payment Application does not properly restrict privileged operations, which allows remote authenticated users to gain privileges by directly accessing certain URLs.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-q573-wgw4-2h26/GHSA-q573-wgw4-2h26.json b/advisories/unreviewed/2022/05/GHSA-q573-wgw4-2h26/GHSA-q573-wgw4-2h26.json index f8d9556fe8f..afc0b5af6a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-q573-wgw4-2h26/GHSA-q573-wgw4-2h26.json +++ b/advisories/unreviewed/2022/05/GHSA-q573-wgw4-2h26/GHSA-q573-wgw4-2h26.json @@ -7,12 +7,8 @@ "CVE-2021-33528" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable privilege escalation vulnerability exists in the iw_console functionality. A specially crafted menu selection string can cause an escape from the restricted console, resulting in system access as the root user. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q5w6-p37j-cwr4/GHSA-q5w6-p37j-cwr4.json b/advisories/unreviewed/2022/05/GHSA-q5w6-p37j-cwr4/GHSA-q5w6-p37j-cwr4.json index 68cd7663571..6781b28aaa0 100644 --- a/advisories/unreviewed/2022/05/GHSA-q5w6-p37j-cwr4/GHSA-q5w6-p37j-cwr4.json +++ b/advisories/unreviewed/2022/05/GHSA-q5w6-p37j-cwr4/GHSA-q5w6-p37j-cwr4.json @@ -7,12 +7,8 @@ "CVE-2021-22232" ], "details": "HTML injection was possible via the full name field before versions 13.11.6, 13.12.6, and 14.0.2 in GitLab CE", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q8m7-wvp9-24h5/GHSA-q8m7-wvp9-24h5.json b/advisories/unreviewed/2022/05/GHSA-q8m7-wvp9-24h5/GHSA-q8m7-wvp9-24h5.json index fae6b662bca..072fd6f64f2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q8m7-wvp9-24h5/GHSA-q8m7-wvp9-24h5.json +++ b/advisories/unreviewed/2022/05/GHSA-q8m7-wvp9-24h5/GHSA-q8m7-wvp9-24h5.json @@ -7,12 +7,8 @@ "CVE-2020-21142" ], "details": "Cross Site Scripting (XSS) vulnerabilty in IPFire 2.23 via the IPfire web UI in the mail.cgi.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q93v-chpc-2r2m/GHSA-q93v-chpc-2r2m.json b/advisories/unreviewed/2022/05/GHSA-q93v-chpc-2r2m/GHSA-q93v-chpc-2r2m.json index 6a9d601becd..a5839680126 100644 --- a/advisories/unreviewed/2022/05/GHSA-q93v-chpc-2r2m/GHSA-q93v-chpc-2r2m.json +++ b/advisories/unreviewed/2022/05/GHSA-q93v-chpc-2r2m/GHSA-q93v-chpc-2r2m.json @@ -7,12 +7,8 @@ "CVE-2021-22378" ], "details": "There is a race condition vulnerability in eCNS280_TD V100R005C00 and V100R005C10. There is a timing window exists in which the database can be operated by another thread that is operating concurrently. Successful exploit may cause the affected device abnormal.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-q97v-7gvv-9rqh/GHSA-q97v-7gvv-9rqh.json b/advisories/unreviewed/2022/05/GHSA-q97v-7gvv-9rqh/GHSA-q97v-7gvv-9rqh.json index e6fef2cf712..b7bf55353b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-q97v-7gvv-9rqh/GHSA-q97v-7gvv-9rqh.json +++ b/advisories/unreviewed/2022/05/GHSA-q97v-7gvv-9rqh/GHSA-q97v-7gvv-9rqh.json @@ -7,12 +7,8 @@ "CVE-2005-0367" ], "details": "Multiple directory traversal vulnerabilities in ArGoSoft Mail Server 1.8.7.3 allow remote authenticated users to read, delete, or upload arbitrary files via a .. (dot dot) in (1) the filename of an e-mail attachment, (2) the _msgatt.rec file, (3) and the /msg, /delete, /folderadd, and /folderdelete operations for the Folder parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qc7v-9xrw-j497/GHSA-qc7v-9xrw-j497.json b/advisories/unreviewed/2022/05/GHSA-qc7v-9xrw-j497/GHSA-qc7v-9xrw-j497.json index b02be18fee8..dc5e8466959 100644 --- a/advisories/unreviewed/2022/05/GHSA-qc7v-9xrw-j497/GHSA-qc7v-9xrw-j497.json +++ b/advisories/unreviewed/2022/05/GHSA-qc7v-9xrw-j497/GHSA-qc7v-9xrw-j497.json @@ -7,12 +7,8 @@ "CVE-2005-0333" ], "details": "LANChat Pro Revival 1.666c allows remote attackers to cause a denial of service (application crash) via a malformed UDP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qf6q-gmhw-w5qq/GHSA-qf6q-gmhw-w5qq.json b/advisories/unreviewed/2022/05/GHSA-qf6q-gmhw-w5qq/GHSA-qf6q-gmhw-w5qq.json index 41a2eb1e5bd..44769b0fdb5 100644 --- a/advisories/unreviewed/2022/05/GHSA-qf6q-gmhw-w5qq/GHSA-qf6q-gmhw-w5qq.json +++ b/advisories/unreviewed/2022/05/GHSA-qf6q-gmhw-w5qq/GHSA-qf6q-gmhw-w5qq.json @@ -7,12 +7,8 @@ "CVE-2005-0346" ], "details": "SafeNet SoftRemote VPN Client stores the VPN password (pre-shared key) in cleartext in memory of the IreIKE.exe process, which allows local users to gain sensitive information if they have access to that process.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qh6q-255g-fpg8/GHSA-qh6q-255g-fpg8.json b/advisories/unreviewed/2022/05/GHSA-qh6q-255g-fpg8/GHSA-qh6q-255g-fpg8.json index d7534c7de3b..224f25e6c38 100644 --- a/advisories/unreviewed/2022/05/GHSA-qh6q-255g-fpg8/GHSA-qh6q-255g-fpg8.json +++ b/advisories/unreviewed/2022/05/GHSA-qh6q-255g-fpg8/GHSA-qh6q-255g-fpg8.json @@ -7,12 +7,8 @@ "CVE-2005-0597" ], "details": "Cisco devices running Application and Content Networking System (ACNS) 5.0 before 5.0.17.6 and 5.1 before 5.1.11.6 allow remote attackers to cause a denial of service (process restart) via a \"crafted TCP connection.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qj5h-583m-qh6v/GHSA-qj5h-583m-qh6v.json b/advisories/unreviewed/2022/05/GHSA-qj5h-583m-qh6v/GHSA-qj5h-583m-qh6v.json index 2bef4c9d9e9..e6067efedde 100644 --- a/advisories/unreviewed/2022/05/GHSA-qj5h-583m-qh6v/GHSA-qj5h-583m-qh6v.json +++ b/advisories/unreviewed/2022/05/GHSA-qj5h-583m-qh6v/GHSA-qj5h-583m-qh6v.json @@ -7,12 +7,8 @@ "CVE-2021-36080" ], "details": "GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bit_chain_free (called from dwg_encode_MTEXT and dwg_encode_add_object).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qjq5-4c8q-x94f/GHSA-qjq5-4c8q-x94f.json b/advisories/unreviewed/2022/05/GHSA-qjq5-4c8q-x94f/GHSA-qjq5-4c8q-x94f.json index f31847ff0ee..0cf17d0e82c 100644 --- a/advisories/unreviewed/2022/05/GHSA-qjq5-4c8q-x94f/GHSA-qjq5-4c8q-x94f.json +++ b/advisories/unreviewed/2022/05/GHSA-qjq5-4c8q-x94f/GHSA-qjq5-4c8q-x94f.json @@ -7,12 +7,8 @@ "CVE-2021-29759" ], "details": "IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files. IBM X-Force ID: 202212.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qm45-ph68-vwcc/GHSA-qm45-ph68-vwcc.json b/advisories/unreviewed/2022/05/GHSA-qm45-ph68-vwcc/GHSA-qm45-ph68-vwcc.json index 35f968d8651..f92e926670f 100644 --- a/advisories/unreviewed/2022/05/GHSA-qm45-ph68-vwcc/GHSA-qm45-ph68-vwcc.json +++ b/advisories/unreviewed/2022/05/GHSA-qm45-ph68-vwcc/GHSA-qm45-ph68-vwcc.json @@ -7,12 +7,8 @@ "CVE-2021-34183" ], "details": "ImageMagick 7.0.11-14 has a memory leak in AcquireSemaphoreMemory in semaphore.c and AcquireMagickMemory in memory.c.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qp62-jp68-8rx4/GHSA-qp62-jp68-8rx4.json b/advisories/unreviewed/2022/05/GHSA-qp62-jp68-8rx4/GHSA-qp62-jp68-8rx4.json index f3df51770c2..07d91ff44a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-qp62-jp68-8rx4/GHSA-qp62-jp68-8rx4.json +++ b/advisories/unreviewed/2022/05/GHSA-qp62-jp68-8rx4/GHSA-qp62-jp68-8rx4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq49-j728-jmpv/GHSA-qq49-j728-jmpv.json b/advisories/unreviewed/2022/05/GHSA-qq49-j728-jmpv/GHSA-qq49-j728-jmpv.json index 9577dbd271c..1b93141c364 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq49-j728-jmpv/GHSA-qq49-j728-jmpv.json +++ b/advisories/unreviewed/2022/05/GHSA-qq49-j728-jmpv/GHSA-qq49-j728-jmpv.json @@ -7,12 +7,8 @@ "CVE-2005-0456" ], "details": "Opera 7.54 and earlier does not properly validate base64 encoded binary data in a data: (RFC 2397) URL, which causes the URL to be obscured in a download dialog, which may allow remote attackers to trick users into executing arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qq64-7fh7-7hmw/GHSA-qq64-7fh7-7hmw.json b/advisories/unreviewed/2022/05/GHSA-qq64-7fh7-7hmw/GHSA-qq64-7fh7-7hmw.json index 5520b5c6a01..ab13c4bf7a4 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq64-7fh7-7hmw/GHSA-qq64-7fh7-7hmw.json +++ b/advisories/unreviewed/2022/05/GHSA-qq64-7fh7-7hmw/GHSA-qq64-7fh7-7hmw.json @@ -7,12 +7,8 @@ "CVE-2020-36401" ], "details": "mruby 2.1.2 has a double free in mrb_default_allocf (called from mrb_free and obj_free).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qq9r-rm95-hmrx/GHSA-qq9r-rm95-hmrx.json b/advisories/unreviewed/2022/05/GHSA-qq9r-rm95-hmrx/GHSA-qq9r-rm95-hmrx.json index 4e26ccaf534..97891087e95 100644 --- a/advisories/unreviewed/2022/05/GHSA-qq9r-rm95-hmrx/GHSA-qq9r-rm95-hmrx.json +++ b/advisories/unreviewed/2022/05/GHSA-qq9r-rm95-hmrx/GHSA-qq9r-rm95-hmrx.json @@ -7,12 +7,8 @@ "CVE-2005-0297" ], "details": "SQL injection vulnerability in Oracle Database 9i and 10g allows remote attackers to execute arbitrary SQL commands and gain privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qqg5-mc63-w7ch/GHSA-qqg5-mc63-w7ch.json b/advisories/unreviewed/2022/05/GHSA-qqg5-mc63-w7ch/GHSA-qqg5-mc63-w7ch.json index 9955a1f58bb..9ec5fdf4d88 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqg5-mc63-w7ch/GHSA-qqg5-mc63-w7ch.json +++ b/advisories/unreviewed/2022/05/GHSA-qqg5-mc63-w7ch/GHSA-qqg5-mc63-w7ch.json @@ -7,12 +7,8 @@ "CVE-2021-32990" ], "details": "FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qqqx-9628-h6gr/GHSA-qqqx-9628-h6gr.json b/advisories/unreviewed/2022/05/GHSA-qqqx-9628-h6gr/GHSA-qqqx-9628-h6gr.json index 49cc49c98b4..6afd60b0888 100644 --- a/advisories/unreviewed/2022/05/GHSA-qqqx-9628-h6gr/GHSA-qqqx-9628-h6gr.json +++ b/advisories/unreviewed/2022/05/GHSA-qqqx-9628-h6gr/GHSA-qqqx-9628-h6gr.json @@ -7,12 +7,8 @@ "CVE-2005-0443" ], "details": "index.php in CubeCart 2.0.4 allows remote attackers to (1) obtain the full path for the web server or (2) conduct cross-site scripting (XSS) attacks via an invalid language parameter, which echoes the parameter in a PHP error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qr79-4qwm-2cwc/GHSA-qr79-4qwm-2cwc.json b/advisories/unreviewed/2022/05/GHSA-qr79-4qwm-2cwc/GHSA-qr79-4qwm-2cwc.json index 8f7ec5b2da7..d40bd0baf94 100644 --- a/advisories/unreviewed/2022/05/GHSA-qr79-4qwm-2cwc/GHSA-qr79-4qwm-2cwc.json +++ b/advisories/unreviewed/2022/05/GHSA-qr79-4qwm-2cwc/GHSA-qr79-4qwm-2cwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrmg-m8r6-9cvr/GHSA-qrmg-m8r6-9cvr.json b/advisories/unreviewed/2022/05/GHSA-qrmg-m8r6-9cvr/GHSA-qrmg-m8r6-9cvr.json index ea66426a0b5..c5881b49b96 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrmg-m8r6-9cvr/GHSA-qrmg-m8r6-9cvr.json +++ b/advisories/unreviewed/2022/05/GHSA-qrmg-m8r6-9cvr/GHSA-qrmg-m8r6-9cvr.json @@ -7,12 +7,8 @@ "CVE-2021-32531" ], "details": "OS command injection vulnerability in Init function in QSAN XEVO allows remote attackers to execute arbitrary commands without permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qrq7-v39p-w48v/GHSA-qrq7-v39p-w48v.json b/advisories/unreviewed/2022/05/GHSA-qrq7-v39p-w48v/GHSA-qrq7-v39p-w48v.json index 2704866bd3d..6e2d69da018 100644 --- a/advisories/unreviewed/2022/05/GHSA-qrq7-v39p-w48v/GHSA-qrq7-v39p-w48v.json +++ b/advisories/unreviewed/2022/05/GHSA-qrq7-v39p-w48v/GHSA-qrq7-v39p-w48v.json @@ -7,12 +7,8 @@ "CVE-2005-0577" ], "details": "Format string vulnerability in DNA MKBold-MKItalic 0.06_1 and earlier allows remote attackers to execute arbitrary code via crafted BDF font files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qv37-4qq5-wj6c/GHSA-qv37-4qq5-wj6c.json b/advisories/unreviewed/2022/05/GHSA-qv37-4qq5-wj6c/GHSA-qv37-4qq5-wj6c.json index 0f5dbf9056c..153d9e97443 100644 --- a/advisories/unreviewed/2022/05/GHSA-qv37-4qq5-wj6c/GHSA-qv37-4qq5-wj6c.json +++ b/advisories/unreviewed/2022/05/GHSA-qv37-4qq5-wj6c/GHSA-qv37-4qq5-wj6c.json @@ -7,12 +7,8 @@ "CVE-2021-35045" ], "details": "Cross site scripting (XSS) vulnerability in Ice Hrm 29.0.0.OS, allows attackers to execute arbitrary code via the parameters to the /app/ endpoint.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwc4-6769-3rhp/GHSA-qwc4-6769-3rhp.json b/advisories/unreviewed/2022/05/GHSA-qwc4-6769-3rhp/GHSA-qwc4-6769-3rhp.json index 12749dc6a49..9679607ea05 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwc4-6769-3rhp/GHSA-qwc4-6769-3rhp.json +++ b/advisories/unreviewed/2022/05/GHSA-qwc4-6769-3rhp/GHSA-qwc4-6769-3rhp.json @@ -7,12 +7,8 @@ "CVE-2021-33889" ], "details": "OpenThread wpantund through 2021-07-02 has a stack-based Buffer Overflow because of an inconsistency in the integer data type for metric_len.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qwm9-2pwv-w9mw/GHSA-qwm9-2pwv-w9mw.json b/advisories/unreviewed/2022/05/GHSA-qwm9-2pwv-w9mw/GHSA-qwm9-2pwv-w9mw.json index 1d9a1e45978..ff236b85fb1 100644 --- a/advisories/unreviewed/2022/05/GHSA-qwm9-2pwv-w9mw/GHSA-qwm9-2pwv-w9mw.json +++ b/advisories/unreviewed/2022/05/GHSA-qwm9-2pwv-w9mw/GHSA-qwm9-2pwv-w9mw.json @@ -7,12 +7,8 @@ "CVE-2020-20585" ], "details": "A blind SQL injection in /admin/?n=logs&c=index&a=dode of Metinfo 7.0 beta allows attackers to access sensitive database information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-qx6r-cp2c-5gr3/GHSA-qx6r-cp2c-5gr3.json b/advisories/unreviewed/2022/05/GHSA-qx6r-cp2c-5gr3/GHSA-qx6r-cp2c-5gr3.json index 45b98109b1c..cae74f9629b 100644 --- a/advisories/unreviewed/2022/05/GHSA-qx6r-cp2c-5gr3/GHSA-qx6r-cp2c-5gr3.json +++ b/advisories/unreviewed/2022/05/GHSA-qx6r-cp2c-5gr3/GHSA-qx6r-cp2c-5gr3.json @@ -7,12 +7,8 @@ "CVE-2005-0579" ], "details": "nxagent in FreeNX before 0.2.8 does not properly handle when the XAUTHORITY environment variable is not set, which allows local users to access the X server without X authentication.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-qxw7-h89m-x9wf/GHSA-qxw7-h89m-x9wf.json b/advisories/unreviewed/2022/05/GHSA-qxw7-h89m-x9wf/GHSA-qxw7-h89m-x9wf.json index 4ba64b0649c..429c79cf0ad 100644 --- a/advisories/unreviewed/2022/05/GHSA-qxw7-h89m-x9wf/GHSA-qxw7-h89m-x9wf.json +++ b/advisories/unreviewed/2022/05/GHSA-qxw7-h89m-x9wf/GHSA-qxw7-h89m-x9wf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r2c3-vwq2-cqcg/GHSA-r2c3-vwq2-cqcg.json b/advisories/unreviewed/2022/05/GHSA-r2c3-vwq2-cqcg/GHSA-r2c3-vwq2-cqcg.json index ccddcf1cbfb..9a4d14f3f40 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2c3-vwq2-cqcg/GHSA-r2c3-vwq2-cqcg.json +++ b/advisories/unreviewed/2022/05/GHSA-r2c3-vwq2-cqcg/GHSA-r2c3-vwq2-cqcg.json @@ -7,12 +7,8 @@ "CVE-2005-0475" ], "details": "SQL injection vulnerability in paFAQ Beta4, and possibly other versions, allows remote attackers to execute arbitrary SQL code via the (1) offset, (2) limit, (3) order, or (4) orderby parameter to question.php, (5) offset parameter to answer.php, (6) search_item parameter to search.php, (7) cat_id, (8) cid, or (9) id parameter to comment.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r2cr-p267-3cp7/GHSA-r2cr-p267-3cp7.json b/advisories/unreviewed/2022/05/GHSA-r2cr-p267-3cp7/GHSA-r2cr-p267-3cp7.json index d12773e047a..6fe11658e3b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r2cr-p267-3cp7/GHSA-r2cr-p267-3cp7.json +++ b/advisories/unreviewed/2022/05/GHSA-r2cr-p267-3cp7/GHSA-r2cr-p267-3cp7.json @@ -7,12 +7,8 @@ "CVE-2021-35300" ], "details": "Text injection/Content Spoofing in 404 page in Zammad 1.0.x up to 4.0.0 could allow remote attackers to manipulate users into visiting the attackers' page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r34r-8rcg-frg4/GHSA-r34r-8rcg-frg4.json b/advisories/unreviewed/2022/05/GHSA-r34r-8rcg-frg4/GHSA-r34r-8rcg-frg4.json index d538f6c95e9..bbfc922d57d 100644 --- a/advisories/unreviewed/2022/05/GHSA-r34r-8rcg-frg4/GHSA-r34r-8rcg-frg4.json +++ b/advisories/unreviewed/2022/05/GHSA-r34r-8rcg-frg4/GHSA-r34r-8rcg-frg4.json @@ -7,12 +7,8 @@ "CVE-2021-36130" ], "details": "An XSS issue was discovered in the SocialProfile extension in MediaWiki through 1.36. Within several gift-related special pages, a privileged user with the awardmanage right could inject arbitrary HTML and JavaScript within various gift-related data fields. The attack could easily propagate across many pages for many users.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r36w-qc6c-g892/GHSA-r36w-qc6c-g892.json b/advisories/unreviewed/2022/05/GHSA-r36w-qc6c-g892/GHSA-r36w-qc6c-g892.json index 9b0000e5395..d469c565b74 100644 --- a/advisories/unreviewed/2022/05/GHSA-r36w-qc6c-g892/GHSA-r36w-qc6c-g892.json +++ b/advisories/unreviewed/2022/05/GHSA-r36w-qc6c-g892/GHSA-r36w-qc6c-g892.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3cp-34p4-q2x9/GHSA-r3cp-34p4-q2x9.json b/advisories/unreviewed/2022/05/GHSA-r3cp-34p4-q2x9/GHSA-r3cp-34p4-q2x9.json index e0bbe5b51b1..976d3f1a0e5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3cp-34p4-q2x9/GHSA-r3cp-34p4-q2x9.json +++ b/advisories/unreviewed/2022/05/GHSA-r3cp-34p4-q2x9/GHSA-r3cp-34p4-q2x9.json @@ -7,12 +7,8 @@ "CVE-2021-32496" ], "details": "SICK Visionary-S CX up version 5.21.2.29154R are vulnerable to an Inadequate Encryption Strength vulnerability concerning the internal SSH interface solely used by SICK for recovering returned devices. The use of weak ciphers make it easier for an attacker to break the security that protects information transmitted from the client to the SSH server, assuming the attacker has access to the network on which the device is connected. This can increase the risk that encryption will be compromised, leading to the exposure of sensitive user information and man-in-the-middle attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r3x9-j2v8-w6hj/GHSA-r3x9-j2v8-w6hj.json b/advisories/unreviewed/2022/05/GHSA-r3x9-j2v8-w6hj/GHSA-r3x9-j2v8-w6hj.json index 248844fd448..1f0ea6b73ab 100644 --- a/advisories/unreviewed/2022/05/GHSA-r3x9-j2v8-w6hj/GHSA-r3x9-j2v8-w6hj.json +++ b/advisories/unreviewed/2022/05/GHSA-r3x9-j2v8-w6hj/GHSA-r3x9-j2v8-w6hj.json @@ -7,12 +7,8 @@ "CVE-2005-0439" ], "details": "Buffer overflow in the decode_post function in ELOG before 2.5.7 allows remote attackers to execute arbitrary code via attachments with long file names.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r459-g36p-564m/GHSA-r459-g36p-564m.json b/advisories/unreviewed/2022/05/GHSA-r459-g36p-564m/GHSA-r459-g36p-564m.json index e60c8d91256..a85272854b0 100644 --- a/advisories/unreviewed/2022/05/GHSA-r459-g36p-564m/GHSA-r459-g36p-564m.json +++ b/advisories/unreviewed/2022/05/GHSA-r459-g36p-564m/GHSA-r459-g36p-564m.json @@ -7,12 +7,8 @@ "CVE-2005-0364" ], "details": "Unknown vulnerability in BIND 9.2.0 in HP-UX B.11.00, B.11.11, and B.11.23 allows remote attackers to cause a denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r496-ccr2-pqhh/GHSA-r496-ccr2-pqhh.json b/advisories/unreviewed/2022/05/GHSA-r496-ccr2-pqhh/GHSA-r496-ccr2-pqhh.json index cc0bfb7277f..8204463758b 100644 --- a/advisories/unreviewed/2022/05/GHSA-r496-ccr2-pqhh/GHSA-r496-ccr2-pqhh.json +++ b/advisories/unreviewed/2022/05/GHSA-r496-ccr2-pqhh/GHSA-r496-ccr2-pqhh.json @@ -7,12 +7,8 @@ "CVE-2021-33530" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in encrypted diagnostic script functionality of the devices. A specially crafted diagnostic script file can cause arbitrary busybox commands to be executed, resulting in remote control over the device. An attacker can send diagnostic while authenticated as a low privilege user to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r4w9-9whg-94xw/GHSA-r4w9-9whg-94xw.json b/advisories/unreviewed/2022/05/GHSA-r4w9-9whg-94xw/GHSA-r4w9-9whg-94xw.json index 241de7072cb..8b0f61ee533 100644 --- a/advisories/unreviewed/2022/05/GHSA-r4w9-9whg-94xw/GHSA-r4w9-9whg-94xw.json +++ b/advisories/unreviewed/2022/05/GHSA-r4w9-9whg-94xw/GHSA-r4w9-9whg-94xw.json @@ -7,12 +7,8 @@ "CVE-2005-0488" ], "details": "Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -96,9 +92,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5j8-gm2h-qwr9/GHSA-r5j8-gm2h-qwr9.json b/advisories/unreviewed/2022/05/GHSA-r5j8-gm2h-qwr9/GHSA-r5j8-gm2h-qwr9.json index 324cb2c769f..0d4c31c778c 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5j8-gm2h-qwr9/GHSA-r5j8-gm2h-qwr9.json +++ b/advisories/unreviewed/2022/05/GHSA-r5j8-gm2h-qwr9/GHSA-r5j8-gm2h-qwr9.json @@ -7,12 +7,8 @@ "CVE-2005-0608" ], "details": "Heap-based buffer overflow in server.cpp for WebMod 0.47 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a POST request with a Content-Length that is less than the amount of data that is actually sent.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r5p5-33c4-chrw/GHSA-r5p5-33c4-chrw.json b/advisories/unreviewed/2022/05/GHSA-r5p5-33c4-chrw/GHSA-r5p5-33c4-chrw.json index 4ec58345b25..7d08702c0cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5p5-33c4-chrw/GHSA-r5p5-33c4-chrw.json +++ b/advisories/unreviewed/2022/05/GHSA-r5p5-33c4-chrw/GHSA-r5p5-33c4-chrw.json @@ -7,12 +7,8 @@ "CVE-2021-30556" ], "details": "Use after free in WebAudio in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r5rj-47p6-wxcm/GHSA-r5rj-47p6-wxcm.json b/advisories/unreviewed/2022/05/GHSA-r5rj-47p6-wxcm/GHSA-r5rj-47p6-wxcm.json index 72aee678c7c..f67473dd7c5 100644 --- a/advisories/unreviewed/2022/05/GHSA-r5rj-47p6-wxcm/GHSA-r5rj-47p6-wxcm.json +++ b/advisories/unreviewed/2022/05/GHSA-r5rj-47p6-wxcm/GHSA-r5rj-47p6-wxcm.json @@ -7,12 +7,8 @@ "CVE-2005-0277" ], "details": "Buffer overflow in the FTP service in 3Com 3CDaemon 2.0 revision 10 allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via (1) a long username in the USER command or (2) an FTP command that contains a long argument, such as cd, send, or ls.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r6rp-434q-669c/GHSA-r6rp-434q-669c.json b/advisories/unreviewed/2022/05/GHSA-r6rp-434q-669c/GHSA-r6rp-434q-669c.json index 732c3418710..ccbf32ca9e4 100644 --- a/advisories/unreviewed/2022/05/GHSA-r6rp-434q-669c/GHSA-r6rp-434q-669c.json +++ b/advisories/unreviewed/2022/05/GHSA-r6rp-434q-669c/GHSA-r6rp-434q-669c.json @@ -7,12 +7,8 @@ "CVE-2021-32988" ], "details": "FATEK Automation WinProladder Versions 3.30 and prior are vulnerable to an out-of-bounds write, which may allow an attacker to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r7gg-qqgh-p46p/GHSA-r7gg-qqgh-p46p.json b/advisories/unreviewed/2022/05/GHSA-r7gg-qqgh-p46p/GHSA-r7gg-qqgh-p46p.json index a87f44bd9ec..da2cbbc7160 100644 --- a/advisories/unreviewed/2022/05/GHSA-r7gg-qqgh-p46p/GHSA-r7gg-qqgh-p46p.json +++ b/advisories/unreviewed/2022/05/GHSA-r7gg-qqgh-p46p/GHSA-r7gg-qqgh-p46p.json @@ -7,12 +7,8 @@ "CVE-2021-22329" ], "details": "There has a license management vulnerability in some Huawei products. An attacker with high privilege needs to perform specific operations to exploit the vulnerability on the affected device. Due to improper license management of the device, as a result, the license file can be applied and affect integrity of the device. Affected product versions include:S12700 V200R007C01,V200R007C01B102,V200R008C00,V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10;S1700 V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10;S2700 V200R008C00,V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10;S5700 V200R008C00,V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10,V200R011C10SPC100;S6700 V200R008C00,V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10,V200R011C10SPC100;S7700 V200R008C00,V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10;S9700 V200R007C01,V200R007C01B102,V200R008C00,V200R010C00SPC300,V200R011C00,V200R011C00SPC100,V200R011C10.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-r99v-5qp5-2g28/GHSA-r99v-5qp5-2g28.json b/advisories/unreviewed/2022/05/GHSA-r99v-5qp5-2g28/GHSA-r99v-5qp5-2g28.json index 56defe29af6..e20fabd46ec 100644 --- a/advisories/unreviewed/2022/05/GHSA-r99v-5qp5-2g28/GHSA-r99v-5qp5-2g28.json +++ b/advisories/unreviewed/2022/05/GHSA-r99v-5qp5-2g28/GHSA-r99v-5qp5-2g28.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9m5-c4jj-q22x/GHSA-r9m5-c4jj-q22x.json b/advisories/unreviewed/2022/05/GHSA-r9m5-c4jj-q22x/GHSA-r9m5-c4jj-q22x.json index 6b5c716f583..65e2414c1c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9m5-c4jj-q22x/GHSA-r9m5-c4jj-q22x.json +++ b/advisories/unreviewed/2022/05/GHSA-r9m5-c4jj-q22x/GHSA-r9m5-c4jj-q22x.json @@ -7,12 +7,8 @@ "CVE-2021-32512" ], "details": "QuickInstall in QSAN Storage Manager does not filter special parameters properly that allows remote unauthenticated attackers to inject and execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9vw-9gvx-7g72/GHSA-r9vw-9gvx-7g72.json b/advisories/unreviewed/2022/05/GHSA-r9vw-9gvx-7g72/GHSA-r9vw-9gvx-7g72.json index 517374465af..d428c78a473 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9vw-9gvx-7g72/GHSA-r9vw-9gvx-7g72.json +++ b/advisories/unreviewed/2022/05/GHSA-r9vw-9gvx-7g72/GHSA-r9vw-9gvx-7g72.json @@ -7,12 +7,8 @@ "CVE-2021-36217" ], "details": "Avahi 0.8 allows a local denial of service (NULL pointer dereference and daemon crash) against avahi-daemon via the D-Bus interface or a \"ping .local\" command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-r9xq-p2gq-5g25/GHSA-r9xq-p2gq-5g25.json b/advisories/unreviewed/2022/05/GHSA-r9xq-p2gq-5g25/GHSA-r9xq-p2gq-5g25.json index 81832076d67..a1be9089870 100644 --- a/advisories/unreviewed/2022/05/GHSA-r9xq-p2gq-5g25/GHSA-r9xq-p2gq-5g25.json +++ b/advisories/unreviewed/2022/05/GHSA-r9xq-p2gq-5g25/GHSA-r9xq-p2gq-5g25.json @@ -7,12 +7,8 @@ "CVE-2005-0283" ], "details": "Directory traversal vulnerability in index.php in QwikiWiki allows remote attackers to read arbitrary files via a .. (dot dot) and a %00 at the end of the filename in the page parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rc4q-m5wr-fhqh/GHSA-rc4q-m5wr-fhqh.json b/advisories/unreviewed/2022/05/GHSA-rc4q-m5wr-fhqh/GHSA-rc4q-m5wr-fhqh.json index f761d3c8c92..0d0299f2308 100644 --- a/advisories/unreviewed/2022/05/GHSA-rc4q-m5wr-fhqh/GHSA-rc4q-m5wr-fhqh.json +++ b/advisories/unreviewed/2022/05/GHSA-rc4q-m5wr-fhqh/GHSA-rc4q-m5wr-fhqh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rcqf-v3j3-px64/GHSA-rcqf-v3j3-px64.json b/advisories/unreviewed/2022/05/GHSA-rcqf-v3j3-px64/GHSA-rcqf-v3j3-px64.json index 906a317f4ab..48097c50126 100644 --- a/advisories/unreviewed/2022/05/GHSA-rcqf-v3j3-px64/GHSA-rcqf-v3j3-px64.json +++ b/advisories/unreviewed/2022/05/GHSA-rcqf-v3j3-px64/GHSA-rcqf-v3j3-px64.json @@ -7,12 +7,8 @@ "CVE-2005-0324" ], "details": "Infinite Mobile Delivery Webmail 2.6 allows remote attackers to gain sensitive information via an HTTP request that contains invalid characters for a Windows foldername, which reveals the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rf4q-xm5x-52f5/GHSA-rf4q-xm5x-52f5.json b/advisories/unreviewed/2022/05/GHSA-rf4q-xm5x-52f5/GHSA-rf4q-xm5x-52f5.json index f23cec1a3ab..43de0391fde 100644 --- a/advisories/unreviewed/2022/05/GHSA-rf4q-xm5x-52f5/GHSA-rf4q-xm5x-52f5.json +++ b/advisories/unreviewed/2022/05/GHSA-rf4q-xm5x-52f5/GHSA-rf4q-xm5x-52f5.json @@ -7,12 +7,8 @@ "CVE-2020-24148" ], "details": "Server-side request forgery (SSRF) in the Import XML and RSS Feeds (import-xml-feed) plugin 2.0.1 for WordPress via the data parameter in a moove_read_xml action.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rgr9-m4j3-v8c4/GHSA-rgr9-m4j3-v8c4.json b/advisories/unreviewed/2022/05/GHSA-rgr9-m4j3-v8c4/GHSA-rgr9-m4j3-v8c4.json index 70e3b9007d7..616380afabf 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgr9-m4j3-v8c4/GHSA-rgr9-m4j3-v8c4.json +++ b/advisories/unreviewed/2022/05/GHSA-rgr9-m4j3-v8c4/GHSA-rgr9-m4j3-v8c4.json @@ -7,12 +7,8 @@ "CVE-2021-0506" ], "details": "In ActivityPicker.java, there is a possible bypass of user interaction in intent resolution due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-8.1 Android-9Android ID: A-181962311", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rgxh-w89p-mj37/GHSA-rgxh-w89p-mj37.json b/advisories/unreviewed/2022/05/GHSA-rgxh-w89p-mj37/GHSA-rgxh-w89p-mj37.json index f775b9c6711..f44f51db45a 100644 --- a/advisories/unreviewed/2022/05/GHSA-rgxh-w89p-mj37/GHSA-rgxh-w89p-mj37.json +++ b/advisories/unreviewed/2022/05/GHSA-rgxh-w89p-mj37/GHSA-rgxh-w89p-mj37.json @@ -7,12 +7,8 @@ "CVE-2005-0624" ], "details": "reportbug before 2.62 creates the .reportbugrc configuration file with world-readable permissions, which allows local users to obtain email smarthost passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rhmx-v42v-c5fh/GHSA-rhmx-v42v-c5fh.json b/advisories/unreviewed/2022/05/GHSA-rhmx-v42v-c5fh/GHSA-rhmx-v42v-c5fh.json index dfa887cc460..2474bcbaa44 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhmx-v42v-c5fh/GHSA-rhmx-v42v-c5fh.json +++ b/advisories/unreviewed/2022/05/GHSA-rhmx-v42v-c5fh/GHSA-rhmx-v42v-c5fh.json @@ -7,12 +7,8 @@ "CVE-2021-32533" ], "details": "The QSAN SANOS setting page does not filter special parameters. Remote attackers can use this vulnerability to inject and execute arbitrary commands without permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhwc-rrw6-52mq/GHSA-rhwc-rrw6-52mq.json b/advisories/unreviewed/2022/05/GHSA-rhwc-rrw6-52mq/GHSA-rhwc-rrw6-52mq.json index 25474f61c57..b560c27d887 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhwc-rrw6-52mq/GHSA-rhwc-rrw6-52mq.json +++ b/advisories/unreviewed/2022/05/GHSA-rhwc-rrw6-52mq/GHSA-rhwc-rrw6-52mq.json @@ -7,12 +7,8 @@ "CVE-2020-20466" ], "details": "White Shark System (WSS) 1.3.2 is vulnerable to unauthorized access via user_edit_password.php, remote attackers can modify the password of any user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rhx6-42v7-6767/GHSA-rhx6-42v7-6767.json b/advisories/unreviewed/2022/05/GHSA-rhx6-42v7-6767/GHSA-rhx6-42v7-6767.json index b1b03d6a2e5..e6eba375cf0 100644 --- a/advisories/unreviewed/2022/05/GHSA-rhx6-42v7-6767/GHSA-rhx6-42v7-6767.json +++ b/advisories/unreviewed/2022/05/GHSA-rhx6-42v7-6767/GHSA-rhx6-42v7-6767.json @@ -7,12 +7,8 @@ "CVE-2005-0472" ], "details": "Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -80,9 +76,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjq7-97rj-x352/GHSA-rjq7-97rj-x352.json b/advisories/unreviewed/2022/05/GHSA-rjq7-97rj-x352/GHSA-rjq7-97rj-x352.json index 344afe1d292..def03835839 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjq7-97rj-x352/GHSA-rjq7-97rj-x352.json +++ b/advisories/unreviewed/2022/05/GHSA-rjq7-97rj-x352/GHSA-rjq7-97rj-x352.json @@ -7,12 +7,8 @@ "CVE-2005-0400" ], "details": "The ext2_make_empty function call in the Linux kernel before 2.6.11.6 does not properly initialize memory when creating a block for a new directory entry, which allows local users to obtain potentially sensitive information by reading the block.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -84,9 +80,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rjx8-72h6-p6px/GHSA-rjx8-72h6-p6px.json b/advisories/unreviewed/2022/05/GHSA-rjx8-72h6-p6px/GHSA-rjx8-72h6-p6px.json index 550a16cf5ab..3b90c2e3b45 100644 --- a/advisories/unreviewed/2022/05/GHSA-rjx8-72h6-p6px/GHSA-rjx8-72h6-p6px.json +++ b/advisories/unreviewed/2022/05/GHSA-rjx8-72h6-p6px/GHSA-rjx8-72h6-p6px.json @@ -7,12 +7,8 @@ "CVE-2021-35502" ], "details": "app/View/Elements/genericElements/IndexTable/Fields/generic_field.ctp in MISP 2.4.144 does not sanitize certain data related to generic-template:index.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rmxg-rxm9-f8vx/GHSA-rmxg-rxm9-f8vx.json b/advisories/unreviewed/2022/05/GHSA-rmxg-rxm9-f8vx/GHSA-rmxg-rxm9-f8vx.json index 612d9e55459..fd7f1c4f50e 100644 --- a/advisories/unreviewed/2022/05/GHSA-rmxg-rxm9-f8vx/GHSA-rmxg-rxm9-f8vx.json +++ b/advisories/unreviewed/2022/05/GHSA-rmxg-rxm9-f8vx/GHSA-rmxg-rxm9-f8vx.json @@ -7,12 +7,8 @@ "CVE-2021-32461" ], "details": "Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Integer Truncation Privilege Escalation vulnerability which could allow a local attacker to trigger a buffer overflow and escalate privileges on affected installations. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rpr6-8769-j952/GHSA-rpr6-8769-j952.json b/advisories/unreviewed/2022/05/GHSA-rpr6-8769-j952/GHSA-rpr6-8769-j952.json index 5dedfb1b06c..6779ed85737 100644 --- a/advisories/unreviewed/2022/05/GHSA-rpr6-8769-j952/GHSA-rpr6-8769-j952.json +++ b/advisories/unreviewed/2022/05/GHSA-rpr6-8769-j952/GHSA-rpr6-8769-j952.json @@ -7,12 +7,8 @@ "CVE-2005-0442" ], "details": "Directory traversal vulnerability in index.php for CubeCart 2.0.4 allows remote attackers to read arbitrary files via the language parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rqcc-mmff-6m92/GHSA-rqcc-mmff-6m92.json b/advisories/unreviewed/2022/05/GHSA-rqcc-mmff-6m92/GHSA-rqcc-mmff-6m92.json index 65f5bea207d..630f2d7d471 100644 --- a/advisories/unreviewed/2022/05/GHSA-rqcc-mmff-6m92/GHSA-rqcc-mmff-6m92.json +++ b/advisories/unreviewed/2022/05/GHSA-rqcc-mmff-6m92/GHSA-rqcc-mmff-6m92.json @@ -7,12 +7,8 @@ "CVE-2021-34187" ], "details": "main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchField, filters, or filters2 parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rr36-7792-5gg4/GHSA-rr36-7792-5gg4.json b/advisories/unreviewed/2022/05/GHSA-rr36-7792-5gg4/GHSA-rr36-7792-5gg4.json index b0cdb48fcf6..20b7229beb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-rr36-7792-5gg4/GHSA-rr36-7792-5gg4.json +++ b/advisories/unreviewed/2022/05/GHSA-rr36-7792-5gg4/GHSA-rr36-7792-5gg4.json @@ -7,12 +7,8 @@ "CVE-2005-0286" ], "details": "eMotion MediaPartner Web Server 5.0 and 5.1 allows remote attackers to obtain sensitive information via an HTTP request for a .bhtml file that contains a (1) . (dot) or (2) + (plus sign) at the end, which returns the source code for that file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rrr2-5hqc-jh43/GHSA-rrr2-5hqc-jh43.json b/advisories/unreviewed/2022/05/GHSA-rrr2-5hqc-jh43/GHSA-rrr2-5hqc-jh43.json index 7f516815a72..27017d30934 100644 --- a/advisories/unreviewed/2022/05/GHSA-rrr2-5hqc-jh43/GHSA-rrr2-5hqc-jh43.json +++ b/advisories/unreviewed/2022/05/GHSA-rrr2-5hqc-jh43/GHSA-rrr2-5hqc-jh43.json @@ -7,12 +7,8 @@ "CVE-2021-3613" ], "details": "OpenVPN Connect 3.2.0 through 3.3.0 allows local users to load arbitrary dynamic loadable libraries via an OpenSSL configuration file if present, which allows the user to run arbitrary code with the same privilege level as the main OpenVPN process (OpenVPNConnect.exe).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-rv6h-qw72-4r4w/GHSA-rv6h-qw72-4r4w.json b/advisories/unreviewed/2022/05/GHSA-rv6h-qw72-4r4w/GHSA-rv6h-qw72-4r4w.json index 772bfb0e129..cb28a3356ce 100644 --- a/advisories/unreviewed/2022/05/GHSA-rv6h-qw72-4r4w/GHSA-rv6h-qw72-4r4w.json +++ b/advisories/unreviewed/2022/05/GHSA-rv6h-qw72-4r4w/GHSA-rv6h-qw72-4r4w.json @@ -7,12 +7,8 @@ "CVE-2005-0571" ], "details": "admin_loader.php in PunBB 1.2.1 allows remote attackers to read arbitrary files via the plugin parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rvgf-h7p5-vc4h/GHSA-rvgf-h7p5-vc4h.json b/advisories/unreviewed/2022/05/GHSA-rvgf-h7p5-vc4h/GHSA-rvgf-h7p5-vc4h.json index 6e5f40452ac..1876bc8cba7 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvgf-h7p5-vc4h/GHSA-rvgf-h7p5-vc4h.json +++ b/advisories/unreviewed/2022/05/GHSA-rvgf-h7p5-vc4h/GHSA-rvgf-h7p5-vc4h.json @@ -7,12 +7,8 @@ "CVE-2005-0491" ], "details": "Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows remote attackers to execute arbitrary code via a long type 77 request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-rvr3-6ww6-h9m5/GHSA-rvr3-6ww6-h9m5.json b/advisories/unreviewed/2022/05/GHSA-rvr3-6ww6-h9m5/GHSA-rvr3-6ww6-h9m5.json index 238377958e4..fbdc91ec37b 100644 --- a/advisories/unreviewed/2022/05/GHSA-rvr3-6ww6-h9m5/GHSA-rvr3-6ww6-h9m5.json +++ b/advisories/unreviewed/2022/05/GHSA-rvr3-6ww6-h9m5/GHSA-rvr3-6ww6-h9m5.json @@ -7,12 +7,8 @@ "CVE-2021-31771" ], "details": "Splinterware System Scheduler Professional version 5.30 is subject to insecure folders permissions issue impacting where the service 'WindowsScheduler' calls its executable. This allow a non-privileged user to execute arbitrary code with elevated privileges (system level privileges as \"nt authority\\system\") since the service runs as Local System.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v4pj-pfq5-2mmv/GHSA-v4pj-pfq5-2mmv.json b/advisories/unreviewed/2022/05/GHSA-v4pj-pfq5-2mmv/GHSA-v4pj-pfq5-2mmv.json index 87731270347..167ffc1b039 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4pj-pfq5-2mmv/GHSA-v4pj-pfq5-2mmv.json +++ b/advisories/unreviewed/2022/05/GHSA-v4pj-pfq5-2mmv/GHSA-v4pj-pfq5-2mmv.json @@ -7,12 +7,8 @@ "CVE-2005-0437" ], "details": "Directory traversal vulnerability in awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to include arbitrary Perl modules via .. (dot dot) sequences in the loadplugin parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v4rq-vfm4-xj6c/GHSA-v4rq-vfm4-xj6c.json b/advisories/unreviewed/2022/05/GHSA-v4rq-vfm4-xj6c/GHSA-v4rq-vfm4-xj6c.json index 4aeecae4d99..515a3119a7a 100644 --- a/advisories/unreviewed/2022/05/GHSA-v4rq-vfm4-xj6c/GHSA-v4rq-vfm4-xj6c.json +++ b/advisories/unreviewed/2022/05/GHSA-v4rq-vfm4-xj6c/GHSA-v4rq-vfm4-xj6c.json @@ -7,12 +7,8 @@ "CVE-2021-22372" ], "details": "There is a Security Features Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v65p-mxx5-r553/GHSA-v65p-mxx5-r553.json b/advisories/unreviewed/2022/05/GHSA-v65p-mxx5-r553/GHSA-v65p-mxx5-r553.json index 5965dd490b1..8419b7d844c 100644 --- a/advisories/unreviewed/2022/05/GHSA-v65p-mxx5-r553/GHSA-v65p-mxx5-r553.json +++ b/advisories/unreviewed/2022/05/GHSA-v65p-mxx5-r553/GHSA-v65p-mxx5-r553.json @@ -7,12 +7,8 @@ "CVE-2020-23178" ], "details": "An issue exists in PHP-Fusion 9.03.50 where session cookies are not deleted once a user logs out, allowing for an attacker to perform a session replay attack and impersonate the victim user.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v67f-866f-jrfg/GHSA-v67f-866f-jrfg.json b/advisories/unreviewed/2022/05/GHSA-v67f-866f-jrfg/GHSA-v67f-866f-jrfg.json index 775482fff10..57ee701ef6e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v67f-866f-jrfg/GHSA-v67f-866f-jrfg.json +++ b/advisories/unreviewed/2022/05/GHSA-v67f-866f-jrfg/GHSA-v67f-866f-jrfg.json @@ -7,12 +7,8 @@ "CVE-2005-0271" ], "details": "Multiple SQL injection vulnerabilities in ReviewPost PHP Pro before 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showcat.php or (2) product parameter to addfav.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v739-645c-vfcr/GHSA-v739-645c-vfcr.json b/advisories/unreviewed/2022/05/GHSA-v739-645c-vfcr/GHSA-v739-645c-vfcr.json index 6a8a20ac6f2..c326c3eb652 100644 --- a/advisories/unreviewed/2022/05/GHSA-v739-645c-vfcr/GHSA-v739-645c-vfcr.json +++ b/advisories/unreviewed/2022/05/GHSA-v739-645c-vfcr/GHSA-v739-645c-vfcr.json @@ -7,12 +7,8 @@ "CVE-2020-20640" ], "details": "Cross Site Scripting (XSS) vulnerability in ECShop 4.0 due to security filtering issues, in the user.php file, we can use the html entity encoding to bypass the security policy of the safety.php file, triggering the xss vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v75r-jm5p-c6qw/GHSA-v75r-jm5p-c6qw.json b/advisories/unreviewed/2022/05/GHSA-v75r-jm5p-c6qw/GHSA-v75r-jm5p-c6qw.json index a4abc6002c6..cdf3a2817a8 100644 --- a/advisories/unreviewed/2022/05/GHSA-v75r-jm5p-c6qw/GHSA-v75r-jm5p-c6qw.json +++ b/advisories/unreviewed/2022/05/GHSA-v75r-jm5p-c6qw/GHSA-v75r-jm5p-c6qw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-v7m7-cfww-c2wg/GHSA-v7m7-cfww-c2wg.json b/advisories/unreviewed/2022/05/GHSA-v7m7-cfww-c2wg/GHSA-v7m7-cfww-c2wg.json index 92471d1a000..796428e4c4e 100644 --- a/advisories/unreviewed/2022/05/GHSA-v7m7-cfww-c2wg/GHSA-v7m7-cfww-c2wg.json +++ b/advisories/unreviewed/2022/05/GHSA-v7m7-cfww-c2wg/GHSA-v7m7-cfww-c2wg.json @@ -7,12 +7,8 @@ "CVE-2005-0220" ], "details": "Cross-site scripting vulnerability in login.php in Gallery 1.4.4-pl2 allows remote attackers to inject arbitrary web script or HTML via the username field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v96w-528f-phj8/GHSA-v96w-528f-phj8.json b/advisories/unreviewed/2022/05/GHSA-v96w-528f-phj8/GHSA-v96w-528f-phj8.json index c8b39e6de95..60cfd6920a1 100644 --- a/advisories/unreviewed/2022/05/GHSA-v96w-528f-phj8/GHSA-v96w-528f-phj8.json +++ b/advisories/unreviewed/2022/05/GHSA-v96w-528f-phj8/GHSA-v96w-528f-phj8.json @@ -7,12 +7,8 @@ "CVE-2005-0217" ], "details": "SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-v9x2-68hw-cwxx/GHSA-v9x2-68hw-cwxx.json b/advisories/unreviewed/2022/05/GHSA-v9x2-68hw-cwxx/GHSA-v9x2-68hw-cwxx.json index e2c472de2a0..0fcc202ec58 100644 --- a/advisories/unreviewed/2022/05/GHSA-v9x2-68hw-cwxx/GHSA-v9x2-68hw-cwxx.json +++ b/advisories/unreviewed/2022/05/GHSA-v9x2-68hw-cwxx/GHSA-v9x2-68hw-cwxx.json @@ -7,12 +7,8 @@ "CVE-2005-0584" ], "details": "Firefox before 1.0.1 and Mozilla before 1.7.6, when displaying the HTTP Authentication dialog, do not change the focus to the tab that generated the prompt, which could facilitate spoofing and phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vc4g-frxx-p9q9/GHSA-vc4g-frxx-p9q9.json b/advisories/unreviewed/2022/05/GHSA-vc4g-frxx-p9q9/GHSA-vc4g-frxx-p9q9.json index d2431c7c5d7..cdc5ab3d85b 100644 --- a/advisories/unreviewed/2022/05/GHSA-vc4g-frxx-p9q9/GHSA-vc4g-frxx-p9q9.json +++ b/advisories/unreviewed/2022/05/GHSA-vc4g-frxx-p9q9/GHSA-vc4g-frxx-p9q9.json @@ -7,12 +7,8 @@ "CVE-2005-0384" ], "details": "Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd client.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -88,9 +84,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vcfw-5xfq-9pf2/GHSA-vcfw-5xfq-9pf2.json b/advisories/unreviewed/2022/05/GHSA-vcfw-5xfq-9pf2/GHSA-vcfw-5xfq-9pf2.json index d69b0dc581c..520597cae42 100644 --- a/advisories/unreviewed/2022/05/GHSA-vcfw-5xfq-9pf2/GHSA-vcfw-5xfq-9pf2.json +++ b/advisories/unreviewed/2022/05/GHSA-vcfw-5xfq-9pf2/GHSA-vcfw-5xfq-9pf2.json @@ -7,12 +7,8 @@ "CVE-2020-23184" ], "details": "A stored cross site scripting (XSS) vulnerability in /administration/settings_registration.php of PHP-Fusion 9.03.60 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"Registration\" field.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vg2v-6xj4-m324/GHSA-vg2v-6xj4-m324.json b/advisories/unreviewed/2022/05/GHSA-vg2v-6xj4-m324/GHSA-vg2v-6xj4-m324.json index b172321d49e..d9b9ad810b2 100644 --- a/advisories/unreviewed/2022/05/GHSA-vg2v-6xj4-m324/GHSA-vg2v-6xj4-m324.json +++ b/advisories/unreviewed/2022/05/GHSA-vg2v-6xj4-m324/GHSA-vg2v-6xj4-m324.json @@ -7,12 +7,8 @@ "CVE-2021-0567" ], "details": "In isRestricted of RemoteViews.java, there is a possible way to inject font files due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179461812", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vghg-wg87-m285/GHSA-vghg-wg87-m285.json b/advisories/unreviewed/2022/05/GHSA-vghg-wg87-m285/GHSA-vghg-wg87-m285.json index 12442b06151..008dc03372e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vghg-wg87-m285/GHSA-vghg-wg87-m285.json +++ b/advisories/unreviewed/2022/05/GHSA-vghg-wg87-m285/GHSA-vghg-wg87-m285.json @@ -7,12 +7,8 @@ "CVE-2005-0240" ], "details": "Format string vulnerability in chdev on IBM AIX 5.2 allows local users to execute arbitrary code via format string specifiers in a command line argument, which is not properly handled when printing an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vh49-hg45-89gx/GHSA-vh49-hg45-89gx.json b/advisories/unreviewed/2022/05/GHSA-vh49-hg45-89gx/GHSA-vh49-hg45-89gx.json index 4738798a964..9ad76bdc776 100644 --- a/advisories/unreviewed/2022/05/GHSA-vh49-hg45-89gx/GHSA-vh49-hg45-89gx.json +++ b/advisories/unreviewed/2022/05/GHSA-vh49-hg45-89gx/GHSA-vh49-hg45-89gx.json @@ -7,12 +7,8 @@ "CVE-2021-20580" ], "details": "IBM Planning Analytics 2.0 could be vulnerable to cross-site request forgery (CSRF) which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 198241.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vjcc-r8cc-jqj4/GHSA-vjcc-r8cc-jqj4.json b/advisories/unreviewed/2022/05/GHSA-vjcc-r8cc-jqj4/GHSA-vjcc-r8cc-jqj4.json index bdf50d2a338..3ac584fb4c4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vjcc-r8cc-jqj4/GHSA-vjcc-r8cc-jqj4.json +++ b/advisories/unreviewed/2022/05/GHSA-vjcc-r8cc-jqj4/GHSA-vjcc-r8cc-jqj4.json @@ -7,12 +7,8 @@ "CVE-2021-33534" ], "details": "In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in the hostname functionality. A specially crafted entry to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send various authenticated requests to trigger this vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vm2c-v328-xcwc/GHSA-vm2c-v328-xcwc.json b/advisories/unreviewed/2022/05/GHSA-vm2c-v328-xcwc/GHSA-vm2c-v328-xcwc.json index 0310d0a28af..8b045c09ab4 100644 --- a/advisories/unreviewed/2022/05/GHSA-vm2c-v328-xcwc/GHSA-vm2c-v328-xcwc.json +++ b/advisories/unreviewed/2022/05/GHSA-vm2c-v328-xcwc/GHSA-vm2c-v328-xcwc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vmrr-c9qh-8cxw/GHSA-vmrr-c9qh-8cxw.json b/advisories/unreviewed/2022/05/GHSA-vmrr-c9qh-8cxw/GHSA-vmrr-c9qh-8cxw.json index 53bf4573672..fd2adf0c7c1 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmrr-c9qh-8cxw/GHSA-vmrr-c9qh-8cxw.json +++ b/advisories/unreviewed/2022/05/GHSA-vmrr-c9qh-8cxw/GHSA-vmrr-c9qh-8cxw.json @@ -7,12 +7,8 @@ "CVE-2005-0426" ], "details": "Unknown vulnerability in Solaris 8 and 9 allows remote attackers to cause a denial of service (panic) via \"Heavy UDP Usage\" that triggers a NULL dereference.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vmw6-j58p-9p55/GHSA-vmw6-j58p-9p55.json b/advisories/unreviewed/2022/05/GHSA-vmw6-j58p-9p55/GHSA-vmw6-j58p-9p55.json index 83cdeb3c4d3..77354739ebb 100644 --- a/advisories/unreviewed/2022/05/GHSA-vmw6-j58p-9p55/GHSA-vmw6-j58p-9p55.json +++ b/advisories/unreviewed/2022/05/GHSA-vmw6-j58p-9p55/GHSA-vmw6-j58p-9p55.json @@ -7,12 +7,8 @@ "CVE-2021-35971" ], "details": "Veeam Backup and Replication 10 before 10.0.1.4854 P20210609 and 11 before 11.0.0.837 P20210507 mishandles deserialization during Microsoft .NET remoting.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vqhj-fq88-rfmv/GHSA-vqhj-fq88-rfmv.json b/advisories/unreviewed/2022/05/GHSA-vqhj-fq88-rfmv/GHSA-vqhj-fq88-rfmv.json index b508a9eb6d4..6644bf41404 100644 --- a/advisories/unreviewed/2022/05/GHSA-vqhj-fq88-rfmv/GHSA-vqhj-fq88-rfmv.json +++ b/advisories/unreviewed/2022/05/GHSA-vqhj-fq88-rfmv/GHSA-vqhj-fq88-rfmv.json @@ -7,12 +7,8 @@ "CVE-2021-28576" ], "details": "Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vr4v-h7xq-hwc6/GHSA-vr4v-h7xq-hwc6.json b/advisories/unreviewed/2022/05/GHSA-vr4v-h7xq-hwc6/GHSA-vr4v-h7xq-hwc6.json index 2d4f78b055a..2ae6b7cd3a9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vr4v-h7xq-hwc6/GHSA-vr4v-h7xq-hwc6.json +++ b/advisories/unreviewed/2022/05/GHSA-vr4v-h7xq-hwc6/GHSA-vr4v-h7xq-hwc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vrvm-7gw5-cw9h/GHSA-vrvm-7gw5-cw9h.json b/advisories/unreviewed/2022/05/GHSA-vrvm-7gw5-cw9h/GHSA-vrvm-7gw5-cw9h.json index f39a135af00..273489bf393 100644 --- a/advisories/unreviewed/2022/05/GHSA-vrvm-7gw5-cw9h/GHSA-vrvm-7gw5-cw9h.json +++ b/advisories/unreviewed/2022/05/GHSA-vrvm-7gw5-cw9h/GHSA-vrvm-7gw5-cw9h.json @@ -7,12 +7,8 @@ "CVE-2005-0435" ], "details": "awstats.pl in AWStats 6.3 and 6.4 allows remote attackers to read server web logs by setting the loadplugin and pluginmode parameters to rawlog.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vv2x-8p3m-39x2/GHSA-vv2x-8p3m-39x2.json b/advisories/unreviewed/2022/05/GHSA-vv2x-8p3m-39x2/GHSA-vv2x-8p3m-39x2.json index 8a42dd23e0c..38e561f0a5f 100644 --- a/advisories/unreviewed/2022/05/GHSA-vv2x-8p3m-39x2/GHSA-vv2x-8p3m-39x2.json +++ b/advisories/unreviewed/2022/05/GHSA-vv2x-8p3m-39x2/GHSA-vv2x-8p3m-39x2.json @@ -7,12 +7,8 @@ "CVE-2021-20413" ], "details": "IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 196212.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvqg-2hw5-x5xp/GHSA-vvqg-2hw5-x5xp.json b/advisories/unreviewed/2022/05/GHSA-vvqg-2hw5-x5xp/GHSA-vvqg-2hw5-x5xp.json index 675492ebd2a..24cc597c443 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvqg-2hw5-x5xp/GHSA-vvqg-2hw5-x5xp.json +++ b/advisories/unreviewed/2022/05/GHSA-vvqg-2hw5-x5xp/GHSA-vvqg-2hw5-x5xp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vvvw-vw2w-v699/GHSA-vvvw-vw2w-v699.json b/advisories/unreviewed/2022/05/GHSA-vvvw-vw2w-v699/GHSA-vvvw-vw2w-v699.json index 2855607a629..365657d8335 100644 --- a/advisories/unreviewed/2022/05/GHSA-vvvw-vw2w-v699/GHSA-vvvw-vw2w-v699.json +++ b/advisories/unreviewed/2022/05/GHSA-vvvw-vw2w-v699/GHSA-vvvw-vw2w-v699.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vw67-jhpq-87pm/GHSA-vw67-jhpq-87pm.json b/advisories/unreviewed/2022/05/GHSA-vw67-jhpq-87pm/GHSA-vw67-jhpq-87pm.json index 92633d1ddeb..a78a9c7c906 100644 --- a/advisories/unreviewed/2022/05/GHSA-vw67-jhpq-87pm/GHSA-vw67-jhpq-87pm.json +++ b/advisories/unreviewed/2022/05/GHSA-vw67-jhpq-87pm/GHSA-vw67-jhpq-87pm.json @@ -7,12 +7,8 @@ "CVE-2021-22341" ], "details": "There is a memory leak vulnerability in Huawei products. A resource management weakness exists in a module. Attackers with high privilege can exploit this vulnerability by performing some operations. This can lead to memory leak. Affected product versions include:IPS Module V500R005C00SPC100,V500R005C00SPC200;NGFW Module V500R005C00SPC100,V500R005C00SPC200;NIP6300 V500R005C00SPC100,V500R005C10SPC200;NIP6600 V500R005C00SPC100,V500R005C00SPC200;Secospace USG6300 V500R005C00SPC100,V500R005C00SPC200;Secospace USG6500 V500R005C00SPC100,V500R005C10SPC200;Secospace USG6600 V500R005C00SPC100,V500R005C00SPC200.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwj4-3qjj-3gp9/GHSA-vwj4-3qjj-3gp9.json b/advisories/unreviewed/2022/05/GHSA-vwj4-3qjj-3gp9/GHSA-vwj4-3qjj-3gp9.json index 3e4b1595554..f722f27ae8e 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwj4-3qjj-3gp9/GHSA-vwj4-3qjj-3gp9.json +++ b/advisories/unreviewed/2022/05/GHSA-vwj4-3qjj-3gp9/GHSA-vwj4-3qjj-3gp9.json @@ -7,12 +7,8 @@ "CVE-2021-27455" ], "details": "Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read while processing project files, which may allow an attacker to disclose information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwmw-mc3r-9mpx/GHSA-vwmw-mc3r-9mpx.json b/advisories/unreviewed/2022/05/GHSA-vwmw-mc3r-9mpx/GHSA-vwmw-mc3r-9mpx.json index 9d5dc2d3677..1a494a3f540 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwmw-mc3r-9mpx/GHSA-vwmw-mc3r-9mpx.json +++ b/advisories/unreviewed/2022/05/GHSA-vwmw-mc3r-9mpx/GHSA-vwmw-mc3r-9mpx.json @@ -7,12 +7,8 @@ "CVE-2020-7868" ], "details": "A remote code execution vulnerability exists in helpUS(remote administration tool) due to improper validation of parameter of ShellExecutionExA function used for login.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-vwq4-8mj9-pfmh/GHSA-vwq4-8mj9-pfmh.json b/advisories/unreviewed/2022/05/GHSA-vwq4-8mj9-pfmh/GHSA-vwq4-8mj9-pfmh.json index 0cd2b2dea81..c507348e9d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwq4-8mj9-pfmh/GHSA-vwq4-8mj9-pfmh.json +++ b/advisories/unreviewed/2022/05/GHSA-vwq4-8mj9-pfmh/GHSA-vwq4-8mj9-pfmh.json @@ -7,12 +7,8 @@ "CVE-2021-34378" ], "details": "Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 11 is missing. Improper restriction of operations within the bounds of a memory buffer might lead to information disclosure, denial of service, or escalation of privileges.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vww6-xqpq-4v62/GHSA-vww6-xqpq-4v62.json b/advisories/unreviewed/2022/05/GHSA-vww6-xqpq-4v62/GHSA-vww6-xqpq-4v62.json index ddd4c44f8ac..5ddd51463d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-vww6-xqpq-4v62/GHSA-vww6-xqpq-4v62.json +++ b/advisories/unreviewed/2022/05/GHSA-vww6-xqpq-4v62/GHSA-vww6-xqpq-4v62.json @@ -7,12 +7,8 @@ "CVE-2021-24379" ], "details": "The Comments Like Dislike WordPress plugin before 1.1.4 allows users to like/dislike posted comments, however does not prevent them from replaying the AJAX request to add a like. This allows any user (even unauthenticated) to add unlimited like/dislike to any comment. The plugin appears to have some Restriction modes, such as Cookie Restriction, IP Restrictions, Logged In User Restriction, however, they do not prevent such attack as they only check client side", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-vwxh-hr5c-v523/GHSA-vwxh-hr5c-v523.json b/advisories/unreviewed/2022/05/GHSA-vwxh-hr5c-v523/GHSA-vwxh-hr5c-v523.json index 093461cf450..8c4f4f5b760 100644 --- a/advisories/unreviewed/2022/05/GHSA-vwxh-hr5c-v523/GHSA-vwxh-hr5c-v523.json +++ b/advisories/unreviewed/2022/05/GHSA-vwxh-hr5c-v523/GHSA-vwxh-hr5c-v523.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w24p-x5ww-2qf7/GHSA-w24p-x5ww-2qf7.json b/advisories/unreviewed/2022/05/GHSA-w24p-x5ww-2qf7/GHSA-w24p-x5ww-2qf7.json index 3d590085d26..89e33702602 100644 --- a/advisories/unreviewed/2022/05/GHSA-w24p-x5ww-2qf7/GHSA-w24p-x5ww-2qf7.json +++ b/advisories/unreviewed/2022/05/GHSA-w24p-x5ww-2qf7/GHSA-w24p-x5ww-2qf7.json @@ -7,12 +7,8 @@ "CVE-2005-0573" ], "details": "Gaim 1.1.3 on Windows systems allows remote attackers to cause a denial of service (client crash) via a file transfer in which the filename contains \"(\" or \")\" (parenthesis) characters.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w282-r3c9-792f/GHSA-w282-r3c9-792f.json b/advisories/unreviewed/2022/05/GHSA-w282-r3c9-792f/GHSA-w282-r3c9-792f.json index acc4e624718..2cde49ecdaa 100644 --- a/advisories/unreviewed/2022/05/GHSA-w282-r3c9-792f/GHSA-w282-r3c9-792f.json +++ b/advisories/unreviewed/2022/05/GHSA-w282-r3c9-792f/GHSA-w282-r3c9-792f.json @@ -7,12 +7,8 @@ "CVE-2021-36127" ], "details": "An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalUserRights page provided search results which, for a suppressed MediaWiki user, were different than for any other user, thus easily disclosing suppressed accounts (which are supposed to be completely hidden).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w2c4-v4g5-g733/GHSA-w2c4-v4g5-g733.json b/advisories/unreviewed/2022/05/GHSA-w2c4-v4g5-g733/GHSA-w2c4-v4g5-g733.json index 3038e582fcb..db8516f1627 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2c4-v4g5-g733/GHSA-w2c4-v4g5-g733.json +++ b/advisories/unreviewed/2022/05/GHSA-w2c4-v4g5-g733/GHSA-w2c4-v4g5-g733.json @@ -7,12 +7,8 @@ "CVE-2005-0595" ], "details": "Buffer overflow in ext.dll in BadBlue 2.55 allows remote attackers to execute arbitrary code via a long mfcisapicommand parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w2c8-qc3j-3xr5/GHSA-w2c8-qc3j-3xr5.json b/advisories/unreviewed/2022/05/GHSA-w2c8-qc3j-3xr5/GHSA-w2c8-qc3j-3xr5.json index 352522cf644..93c7fa305bc 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2c8-qc3j-3xr5/GHSA-w2c8-qc3j-3xr5.json +++ b/advisories/unreviewed/2022/05/GHSA-w2c8-qc3j-3xr5/GHSA-w2c8-qc3j-3xr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w2v3-vfjm-vr65/GHSA-w2v3-vfjm-vr65.json b/advisories/unreviewed/2022/05/GHSA-w2v3-vfjm-vr65/GHSA-w2v3-vfjm-vr65.json index d595ba95246..f6a4e0154bb 100644 --- a/advisories/unreviewed/2022/05/GHSA-w2v3-vfjm-vr65/GHSA-w2v3-vfjm-vr65.json +++ b/advisories/unreviewed/2022/05/GHSA-w2v3-vfjm-vr65/GHSA-w2v3-vfjm-vr65.json @@ -7,12 +7,8 @@ "CVE-2005-0219" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Gallery 1.3.4-pl1 allow remote attackers to inject arbitrary web script or HTML via (1) the index field in add_comment.php, (2) set_albumName, (3) slide_index, (4) slide_full, (5) slide_loop, (6) slide_pause, (7) slide_dir fields in slideshow_low.php, or (8) username field in search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w3wm-r2qc-cxqf/GHSA-w3wm-r2qc-cxqf.json b/advisories/unreviewed/2022/05/GHSA-w3wm-r2qc-cxqf/GHSA-w3wm-r2qc-cxqf.json index 589860b03e0..342f8a973d9 100644 --- a/advisories/unreviewed/2022/05/GHSA-w3wm-r2qc-cxqf/GHSA-w3wm-r2qc-cxqf.json +++ b/advisories/unreviewed/2022/05/GHSA-w3wm-r2qc-cxqf/GHSA-w3wm-r2qc-cxqf.json @@ -7,12 +7,8 @@ "CVE-2005-0476" ], "details": "Cross-site scripting (XSS) vulnerability in hpm_guestbook.cgi allows remote attackers to inject arbitrary web script or HTML by posting a message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w44j-7c2c-9hf8/GHSA-w44j-7c2c-9hf8.json b/advisories/unreviewed/2022/05/GHSA-w44j-7c2c-9hf8/GHSA-w44j-7c2c-9hf8.json index 0f602072944..1ef47e67e98 100644 --- a/advisories/unreviewed/2022/05/GHSA-w44j-7c2c-9hf8/GHSA-w44j-7c2c-9hf8.json +++ b/advisories/unreviewed/2022/05/GHSA-w44j-7c2c-9hf8/GHSA-w44j-7c2c-9hf8.json @@ -7,12 +7,8 @@ "CVE-2021-31813" ], "details": "Zoho ManageEngine Applications Manager before 15130 is vulnerable to Stored XSS while importing malicious user details (e.g., a crafted user name) from AD.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4f8-qx2r-j8wr/GHSA-w4f8-qx2r-j8wr.json b/advisories/unreviewed/2022/05/GHSA-w4f8-qx2r-j8wr/GHSA-w4f8-qx2r-j8wr.json index 12cf96931a8..4177e9216c6 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4f8-qx2r-j8wr/GHSA-w4f8-qx2r-j8wr.json +++ b/advisories/unreviewed/2022/05/GHSA-w4f8-qx2r-j8wr/GHSA-w4f8-qx2r-j8wr.json @@ -7,12 +7,8 @@ "CVE-2005-0486" ], "details": "Tarantella Secure Global Desktop Enterprise Edition 4.00 and 3.42, and Tarantella Enterprise 3 3.40 and 3.30, when using RSA SecurID and multiple users have the same username, reveals sensitive information during authentication, which allows remote attackers to identify valid usernames and the authentication scheme.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w4fr-hcc6-hpqf/GHSA-w4fr-hcc6-hpqf.json b/advisories/unreviewed/2022/05/GHSA-w4fr-hcc6-hpqf/GHSA-w4fr-hcc6-hpqf.json index 435596bb455..09b333f0aa3 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4fr-hcc6-hpqf/GHSA-w4fr-hcc6-hpqf.json +++ b/advisories/unreviewed/2022/05/GHSA-w4fr-hcc6-hpqf/GHSA-w4fr-hcc6-hpqf.json @@ -7,12 +7,8 @@ "CVE-2021-28573" ], "details": "Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially crafted file. An unauthenticated attacker could leverage this vulnerability to disclose sensitive information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w4h7-3hcx-qgv6/GHSA-w4h7-3hcx-qgv6.json b/advisories/unreviewed/2022/05/GHSA-w4h7-3hcx-qgv6/GHSA-w4h7-3hcx-qgv6.json index adde8595f53..841dd2e9105 100644 --- a/advisories/unreviewed/2022/05/GHSA-w4h7-3hcx-qgv6/GHSA-w4h7-3hcx-qgv6.json +++ b/advisories/unreviewed/2022/05/GHSA-w4h7-3hcx-qgv6/GHSA-w4h7-3hcx-qgv6.json @@ -7,12 +7,8 @@ "CVE-2020-36404" ], "details": "Keystone Engine 0.9.2 has an invalid free in llvm_ks::SmallVectorImpl::~SmallVectorImpl.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w584-6c76-8736/GHSA-w584-6c76-8736.json b/advisories/unreviewed/2022/05/GHSA-w584-6c76-8736/GHSA-w584-6c76-8736.json index 360c62dca85..e3decfb8e13 100644 --- a/advisories/unreviewed/2022/05/GHSA-w584-6c76-8736/GHSA-w584-6c76-8736.json +++ b/advisories/unreviewed/2022/05/GHSA-w584-6c76-8736/GHSA-w584-6c76-8736.json @@ -7,12 +7,8 @@ "CVE-2005-0222" ], "details": "main.php in Gallery 2.0 Alpha allows remote attackers to gain sensitive information by changing the value of g2_subView parameter, which reveals the path in an error message.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w5g2-9x75-q8j4/GHSA-w5g2-9x75-q8j4.json b/advisories/unreviewed/2022/05/GHSA-w5g2-9x75-q8j4/GHSA-w5g2-9x75-q8j4.json index b861e48a6aa..654d975abc4 100644 --- a/advisories/unreviewed/2022/05/GHSA-w5g2-9x75-q8j4/GHSA-w5g2-9x75-q8j4.json +++ b/advisories/unreviewed/2022/05/GHSA-w5g2-9x75-q8j4/GHSA-w5g2-9x75-q8j4.json @@ -7,12 +7,8 @@ "CVE-2020-18647" ], "details": "Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component \"/nonecms/vendor\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w673-w4h7-244x/GHSA-w673-w4h7-244x.json b/advisories/unreviewed/2022/05/GHSA-w673-w4h7-244x/GHSA-w673-w4h7-244x.json index 9bcc67152a7..09d636f5d44 100644 --- a/advisories/unreviewed/2022/05/GHSA-w673-w4h7-244x/GHSA-w673-w4h7-244x.json +++ b/advisories/unreviewed/2022/05/GHSA-w673-w4h7-244x/GHSA-w673-w4h7-244x.json @@ -7,12 +7,8 @@ "CVE-2021-22226" ], "details": "Under certain conditions, some users were able to push to protected branches that were restricted to deploy keys in GitLab CE/EE since version 13.9", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w67q-3g72-54x7/GHSA-w67q-3g72-54x7.json b/advisories/unreviewed/2022/05/GHSA-w67q-3g72-54x7/GHSA-w67q-3g72-54x7.json index c5b0ed9d239..19f390ec933 100644 --- a/advisories/unreviewed/2022/05/GHSA-w67q-3g72-54x7/GHSA-w67q-3g72-54x7.json +++ b/advisories/unreviewed/2022/05/GHSA-w67q-3g72-54x7/GHSA-w67q-3g72-54x7.json @@ -7,12 +7,8 @@ "CVE-2005-0323" ], "details": "Cross-site scripting (XSS) vulnerability in Infinite Mobile Delivery Webmail 2.6 allows remote attackers to inject arbitrary web script or HTML via the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w799-rf9r-4rqc/GHSA-w799-rf9r-4rqc.json b/advisories/unreviewed/2022/05/GHSA-w799-rf9r-4rqc/GHSA-w799-rf9r-4rqc.json index 5a51e67c046..b36bb3f3544 100644 --- a/advisories/unreviewed/2022/05/GHSA-w799-rf9r-4rqc/GHSA-w799-rf9r-4rqc.json +++ b/advisories/unreviewed/2022/05/GHSA-w799-rf9r-4rqc/GHSA-w799-rf9r-4rqc.json @@ -7,12 +7,8 @@ "CVE-2021-35525" ], "details": "PostSRSd before 1.11 allows a denial of service (subprocess hang) if Postfix sends certain long data fields such as multiple concatenated email addresses. NOTE: the PostSRSd maintainer acknowledges \"theoretically, this error should never occur ... I'm not sure if there's a reliable way to trigger this condition by an external attacker, but it is a security bug in PostSRSd nevertheless.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w7r9-gc37-g6x5/GHSA-w7r9-gc37-g6x5.json b/advisories/unreviewed/2022/05/GHSA-w7r9-gc37-g6x5/GHSA-w7r9-gc37-g6x5.json index f5c73e4bf23..6e247aae59e 100644 --- a/advisories/unreviewed/2022/05/GHSA-w7r9-gc37-g6x5/GHSA-w7r9-gc37-g6x5.json +++ b/advisories/unreviewed/2022/05/GHSA-w7r9-gc37-g6x5/GHSA-w7r9-gc37-g6x5.json @@ -7,12 +7,8 @@ "CVE-2005-0229" ], "details": "CitrusDB 0.3.5 and earlier stores the newfile.txt temporary data file under the web root, which allows remote attackers to steal credit card information via a direct request to newfile.txt.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-w86x-3qw6-99cm/GHSA-w86x-3qw6-99cm.json b/advisories/unreviewed/2022/05/GHSA-w86x-3qw6-99cm/GHSA-w86x-3qw6-99cm.json index 83246100e6c..f7db6e93469 100644 --- a/advisories/unreviewed/2022/05/GHSA-w86x-3qw6-99cm/GHSA-w86x-3qw6-99cm.json +++ b/advisories/unreviewed/2022/05/GHSA-w86x-3qw6-99cm/GHSA-w86x-3qw6-99cm.json @@ -7,12 +7,8 @@ "CVE-2020-20469" ], "details": "White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the log_edit.php files failing to filter the csa_to_user parameter, remote attackers can exploit the vulnerability to obtain database sensitive information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w88c-8753-jmrg/GHSA-w88c-8753-jmrg.json b/advisories/unreviewed/2022/05/GHSA-w88c-8753-jmrg/GHSA-w88c-8753-jmrg.json index 09e552fabb2..200f49515e0 100644 --- a/advisories/unreviewed/2022/05/GHSA-w88c-8753-jmrg/GHSA-w88c-8753-jmrg.json +++ b/advisories/unreviewed/2022/05/GHSA-w88c-8753-jmrg/GHSA-w88c-8753-jmrg.json @@ -7,12 +7,8 @@ "CVE-2021-24389" ], "details": "The WP Foodbakery WordPress plugin before 2.2, used in the FoodBakery WordPress theme before 2.2 did not properly sanitize the foodbakery_radius parameter before outputting it back in the response, leading to an unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8jh-wm6j-74gc/GHSA-w8jh-wm6j-74gc.json b/advisories/unreviewed/2022/05/GHSA-w8jh-wm6j-74gc/GHSA-w8jh-wm6j-74gc.json index 3dcf50354b5..e4f1969500b 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8jh-wm6j-74gc/GHSA-w8jh-wm6j-74gc.json +++ b/advisories/unreviewed/2022/05/GHSA-w8jh-wm6j-74gc/GHSA-w8jh-wm6j-74gc.json @@ -7,12 +7,8 @@ "CVE-2018-25016" ], "details": "Greenbone Security Assistant (GSA) before 7.0.3 and Greenbone OS (GOS) before 5.0.0 allow Host Header Injection.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8v6-2g2j-phcp/GHSA-w8v6-2g2j-phcp.json b/advisories/unreviewed/2022/05/GHSA-w8v6-2g2j-phcp/GHSA-w8v6-2g2j-phcp.json index 8890fc07cb0..592178a464c 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8v6-2g2j-phcp/GHSA-w8v6-2g2j-phcp.json +++ b/advisories/unreviewed/2022/05/GHSA-w8v6-2g2j-phcp/GHSA-w8v6-2g2j-phcp.json @@ -7,12 +7,8 @@ "CVE-2020-4902" ], "details": "IBM Datacap Taskmaster Capture (IBM Datacap Navigator 9.1.7) is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 191045.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w8vj-9447-mvg7/GHSA-w8vj-9447-mvg7.json b/advisories/unreviewed/2022/05/GHSA-w8vj-9447-mvg7/GHSA-w8vj-9447-mvg7.json index 52e67379dce..94839396298 100644 --- a/advisories/unreviewed/2022/05/GHSA-w8vj-9447-mvg7/GHSA-w8vj-9447-mvg7.json +++ b/advisories/unreviewed/2022/05/GHSA-w8vj-9447-mvg7/GHSA-w8vj-9447-mvg7.json @@ -7,12 +7,8 @@ "CVE-2005-0457" ], "details": "Opera 7.54 and earlier on Gentoo Linux uses an insecure path for plugins, which could allow local users to gain privileges by inserting malicious libraries into the PORTAGE_TMPDIR (portage) temporary directory.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-w9qj-p795-8xwq/GHSA-w9qj-p795-8xwq.json b/advisories/unreviewed/2022/05/GHSA-w9qj-p795-8xwq/GHSA-w9qj-p795-8xwq.json index 4fac540f66f..62c18029227 100644 --- a/advisories/unreviewed/2022/05/GHSA-w9qj-p795-8xwq/GHSA-w9qj-p795-8xwq.json +++ b/advisories/unreviewed/2022/05/GHSA-w9qj-p795-8xwq/GHSA-w9qj-p795-8xwq.json @@ -7,12 +7,8 @@ "CVE-2021-32538" ], "details": "ARTWARE CMS parameter of image upload function does not filter the type of upload files which allows remote attackers can upload arbitrary files without logging in, and further execute code unrestrictedly.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wc2q-3wrr-4r4f/GHSA-wc2q-3wrr-4r4f.json b/advisories/unreviewed/2022/05/GHSA-wc2q-3wrr-4r4f/GHSA-wc2q-3wrr-4r4f.json index 02daa5212a5..22b93ad227c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc2q-3wrr-4r4f/GHSA-wc2q-3wrr-4r4f.json +++ b/advisories/unreviewed/2022/05/GHSA-wc2q-3wrr-4r4f/GHSA-wc2q-3wrr-4r4f.json @@ -7,12 +7,8 @@ "CVE-2005-0380" ], "details": "Multiple PHP remote file inclusion vulnerabilities in (1) print_category.php, (2) login.php, (3) setup.php, (4) ask_password.php, or (5) error.php in ZeroBoard 4.1pl5 and earlier allow remote attackers to execute arbitrary PHP code by modifying the dir parameter to reference a URL on a remote web server that contains the code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -68,9 +64,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wc86-7c83-q7g5/GHSA-wc86-7c83-q7g5.json b/advisories/unreviewed/2022/05/GHSA-wc86-7c83-q7g5/GHSA-wc86-7c83-q7g5.json index 31350d614c9..32397a4f6da 100644 --- a/advisories/unreviewed/2022/05/GHSA-wc86-7c83-q7g5/GHSA-wc86-7c83-q7g5.json +++ b/advisories/unreviewed/2022/05/GHSA-wc86-7c83-q7g5/GHSA-wc86-7c83-q7g5.json @@ -7,12 +7,8 @@ "CVE-2021-21002" ], "details": "In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denial of service.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wcfh-34hc-3p4p/GHSA-wcfh-34hc-3p4p.json b/advisories/unreviewed/2022/05/GHSA-wcfh-34hc-3p4p/GHSA-wcfh-34hc-3p4p.json index 2e3ac922fb7..b14c8af4d82 100644 --- a/advisories/unreviewed/2022/05/GHSA-wcfh-34hc-3p4p/GHSA-wcfh-34hc-3p4p.json +++ b/advisories/unreviewed/2022/05/GHSA-wcfh-34hc-3p4p/GHSA-wcfh-34hc-3p4p.json @@ -7,12 +7,8 @@ "CVE-2005-0620" ], "details": "Einstein 1.0 stores credit card information in plaintext in the world-readable wallets.dat file, which allows local users to steal the information.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wch3-4jqx-8639/GHSA-wch3-4jqx-8639.json b/advisories/unreviewed/2022/05/GHSA-wch3-4jqx-8639/GHSA-wch3-4jqx-8639.json index da33187560d..7c91aa90cd6 100644 --- a/advisories/unreviewed/2022/05/GHSA-wch3-4jqx-8639/GHSA-wch3-4jqx-8639.json +++ b/advisories/unreviewed/2022/05/GHSA-wch3-4jqx-8639/GHSA-wch3-4jqx-8639.json @@ -7,12 +7,8 @@ "CVE-2005-0393" ], "details": "The helper scripts for crip 3.5 do not properly use temporary files, which allows local users to have an unknown impact with unknown attack vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wchg-mr54-w68q/GHSA-wchg-mr54-w68q.json b/advisories/unreviewed/2022/05/GHSA-wchg-mr54-w68q/GHSA-wchg-mr54-w68q.json index 2966574bc22..3686a041461 100644 --- a/advisories/unreviewed/2022/05/GHSA-wchg-mr54-w68q/GHSA-wchg-mr54-w68q.json +++ b/advisories/unreviewed/2022/05/GHSA-wchg-mr54-w68q/GHSA-wchg-mr54-w68q.json @@ -7,12 +7,8 @@ "CVE-2005-0480" ], "details": "Cross-site scripting (XSS) vulnerability in TrackerCam 5.12 and earlier allows remote attackers to inject arbitrary HTML or web script via the login request, which is recorded in a log file but not properly handled when the administrator views the log file.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wfqm-9h5p-mcv3/GHSA-wfqm-9h5p-mcv3.json b/advisories/unreviewed/2022/05/GHSA-wfqm-9h5p-mcv3/GHSA-wfqm-9h5p-mcv3.json index 2975b34b9d1..71a6611c006 100644 --- a/advisories/unreviewed/2022/05/GHSA-wfqm-9h5p-mcv3/GHSA-wfqm-9h5p-mcv3.json +++ b/advisories/unreviewed/2022/05/GHSA-wfqm-9h5p-mcv3/GHSA-wfqm-9h5p-mcv3.json @@ -7,12 +7,8 @@ "CVE-2005-0387" ], "details": "remstats 1.0.13 and earlier, when processing uptime data, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wg24-w7m2-vvwp/GHSA-wg24-w7m2-vvwp.json b/advisories/unreviewed/2022/05/GHSA-wg24-w7m2-vvwp/GHSA-wg24-w7m2-vvwp.json index 8a58caf0014..44727ef990c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wg24-w7m2-vvwp/GHSA-wg24-w7m2-vvwp.json +++ b/advisories/unreviewed/2022/05/GHSA-wg24-w7m2-vvwp/GHSA-wg24-w7m2-vvwp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh43-6hh6-7wc9/GHSA-wh43-6hh6-7wc9.json b/advisories/unreviewed/2022/05/GHSA-wh43-6hh6-7wc9/GHSA-wh43-6hh6-7wc9.json index 547aa2c7719..c1851893a1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh43-6hh6-7wc9/GHSA-wh43-6hh6-7wc9.json +++ b/advisories/unreviewed/2022/05/GHSA-wh43-6hh6-7wc9/GHSA-wh43-6hh6-7wc9.json @@ -7,12 +7,8 @@ "CVE-2005-0343" ], "details": "SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wh5r-mpc5-5v6c/GHSA-wh5r-mpc5-5v6c.json b/advisories/unreviewed/2022/05/GHSA-wh5r-mpc5-5v6c/GHSA-wh5r-mpc5-5v6c.json index ece0e64fb9e..cd36adcb521 100644 --- a/advisories/unreviewed/2022/05/GHSA-wh5r-mpc5-5v6c/GHSA-wh5r-mpc5-5v6c.json +++ b/advisories/unreviewed/2022/05/GHSA-wh5r-mpc5-5v6c/GHSA-wh5r-mpc5-5v6c.json @@ -7,12 +7,8 @@ "CVE-2005-0386" ], "details": "Cross-site scripting (XSS) vulnerability in network.cgi in mailreader before 2.3.29 earlier allows remote attackers to inject arbitrary web script or HTML via MIME text/enriched or text/richtext messages.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-whm9-h873-f559/GHSA-whm9-h873-f559.json b/advisories/unreviewed/2022/05/GHSA-whm9-h873-f559/GHSA-whm9-h873-f559.json index bfaa75cca0e..923b85946f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-whm9-h873-f559/GHSA-whm9-h873-f559.json +++ b/advisories/unreviewed/2022/05/GHSA-whm9-h873-f559/GHSA-whm9-h873-f559.json @@ -7,12 +7,8 @@ "CVE-2021-32530" ], "details": "OS command injection vulnerability in Array function in QSAN XEVO allows remote unauthenticated attackers to execute arbitrary commands via status parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wj8x-pc5w-r6fm/GHSA-wj8x-pc5w-r6fm.json b/advisories/unreviewed/2022/05/GHSA-wj8x-pc5w-r6fm/GHSA-wj8x-pc5w-r6fm.json index ecbc9065204..c0bf52b328c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wj8x-pc5w-r6fm/GHSA-wj8x-pc5w-r6fm.json +++ b/advisories/unreviewed/2022/05/GHSA-wj8x-pc5w-r6fm/GHSA-wj8x-pc5w-r6fm.json @@ -7,12 +7,8 @@ "CVE-2005-0258" ], "details": "Directory traversal vulnerability in (1) usercp_register.php and (2) usercp_avatar.php for phpBB 2.0.11, and possibly other versions, with gallery avatars enabled, allows remote attackers to delete (unlink) arbitrary files via \"/../\" sequences in the avatarselect parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wjfh-82xx-qrx6/GHSA-wjfh-82xx-qrx6.json b/advisories/unreviewed/2022/05/GHSA-wjfh-82xx-qrx6/GHSA-wjfh-82xx-qrx6.json index f77dcd4f105..32fa1289a05 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjfh-82xx-qrx6/GHSA-wjfh-82xx-qrx6.json +++ b/advisories/unreviewed/2022/05/GHSA-wjfh-82xx-qrx6/GHSA-wjfh-82xx-qrx6.json @@ -7,12 +7,8 @@ "CVE-2021-20736" ], "details": "NoSQL injection vulnerability in GROWI versions prior to v4.2.20 allows a remote attacker to obtain and/or alter the information stored in the database via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wjh5-hg9w-r7qm/GHSA-wjh5-hg9w-r7qm.json b/advisories/unreviewed/2022/05/GHSA-wjh5-hg9w-r7qm/GHSA-wjh5-hg9w-r7qm.json index a3f8223bb9f..5ed079e72c2 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjh5-hg9w-r7qm/GHSA-wjh5-hg9w-r7qm.json +++ b/advisories/unreviewed/2022/05/GHSA-wjh5-hg9w-r7qm/GHSA-wjh5-hg9w-r7qm.json @@ -7,12 +7,8 @@ "CVE-2019-25049" ], "details": "LibreSSL 2.9.1 through 3.2.1 has an out-of-bounds read in asn1_item_print_ctx (called from asn1_template_print_ctx).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wjxh-hxxv-h4vm/GHSA-wjxh-hxxv-h4vm.json b/advisories/unreviewed/2022/05/GHSA-wjxh-hxxv-h4vm/GHSA-wjxh-hxxv-h4vm.json index 12ac4d6e260..a2e9d1fa08f 100644 --- a/advisories/unreviewed/2022/05/GHSA-wjxh-hxxv-h4vm/GHSA-wjxh-hxxv-h4vm.json +++ b/advisories/unreviewed/2022/05/GHSA-wjxh-hxxv-h4vm/GHSA-wjxh-hxxv-h4vm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wpg9-3vqf-hrr6/GHSA-wpg9-3vqf-hrr6.json b/advisories/unreviewed/2022/05/GHSA-wpg9-3vqf-hrr6/GHSA-wpg9-3vqf-hrr6.json index f7ea2ba0a04..88cca9a3e61 100644 --- a/advisories/unreviewed/2022/05/GHSA-wpg9-3vqf-hrr6/GHSA-wpg9-3vqf-hrr6.json +++ b/advisories/unreviewed/2022/05/GHSA-wpg9-3vqf-hrr6/GHSA-wpg9-3vqf-hrr6.json @@ -7,12 +7,8 @@ "CVE-2005-0601" ], "details": "Cisco devices running Application and Content Networking System (ACNS) 4.x, 5.0, 5.1, or 5.2 use a default password when the setup dialog has not been run, which allows remote attackers to gain access.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wqpm-3q37-8x6w/GHSA-wqpm-3q37-8x6w.json b/advisories/unreviewed/2022/05/GHSA-wqpm-3q37-8x6w/GHSA-wqpm-3q37-8x6w.json index 9a555ded4f6..69b08596a1c 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqpm-3q37-8x6w/GHSA-wqpm-3q37-8x6w.json +++ b/advisories/unreviewed/2022/05/GHSA-wqpm-3q37-8x6w/GHSA-wqpm-3q37-8x6w.json @@ -7,12 +7,8 @@ "CVE-2020-7869" ], "details": "An improper input validation vulnerability of ZOOK software (remote administration tool) could allow a remote attacker to create arbitrary file. The ZOOK viewer has the \"Tight file CMD\" function to create file. An attacker could create and execute arbitrary file in the ZOOK agent program using \"Tight file CMD\" without authority.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wqrh-97mf-pxr3/GHSA-wqrh-97mf-pxr3.json b/advisories/unreviewed/2022/05/GHSA-wqrh-97mf-pxr3/GHSA-wqrh-97mf-pxr3.json index c80c07771ff..73ecde2afca 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqrh-97mf-pxr3/GHSA-wqrh-97mf-pxr3.json +++ b/advisories/unreviewed/2022/05/GHSA-wqrh-97mf-pxr3/GHSA-wqrh-97mf-pxr3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wqw3-8gp3-w5x9/GHSA-wqw3-8gp3-w5x9.json b/advisories/unreviewed/2022/05/GHSA-wqw3-8gp3-w5x9/GHSA-wqw3-8gp3-w5x9.json index 6284d975571..d3c1ed1923d 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqw3-8gp3-w5x9/GHSA-wqw3-8gp3-w5x9.json +++ b/advisories/unreviewed/2022/05/GHSA-wqw3-8gp3-w5x9/GHSA-wqw3-8gp3-w5x9.json @@ -7,12 +7,8 @@ "CVE-2005-0290" ], "details": "NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to bypass the filters using hex encoded URLs, as demonstrated using a hex encoded file extension.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wqw6-c23g-q6h2/GHSA-wqw6-c23g-q6h2.json b/advisories/unreviewed/2022/05/GHSA-wqw6-c23g-q6h2/GHSA-wqw6-c23g-q6h2.json index 6b99c6b990c..5315fe79df6 100644 --- a/advisories/unreviewed/2022/05/GHSA-wqw6-c23g-q6h2/GHSA-wqw6-c23g-q6h2.json +++ b/advisories/unreviewed/2022/05/GHSA-wqw6-c23g-q6h2/GHSA-wqw6-c23g-q6h2.json @@ -7,12 +7,8 @@ "CVE-2021-20752" ], "details": "Cross-site scripting vulnerability in IkaIka RSS Reader all versions allows a remote attacker to inject an arbitrary script via unspecified vectors.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-wrw4-477q-3qjh/GHSA-wrw4-477q-3qjh.json b/advisories/unreviewed/2022/05/GHSA-wrw4-477q-3qjh/GHSA-wrw4-477q-3qjh.json index 407afc4bbe5..bae2a168357 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrw4-477q-3qjh/GHSA-wrw4-477q-3qjh.json +++ b/advisories/unreviewed/2022/05/GHSA-wrw4-477q-3qjh/GHSA-wrw4-477q-3qjh.json @@ -7,12 +7,8 @@ "CVE-2005-0586" ], "details": "Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to spoof the extensions of files to download via the Content-Disposition header, which could be used to trick users into downloading dangerous content.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -52,9 +48,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wrx5-4m94-5mpw/GHSA-wrx5-4m94-5mpw.json b/advisories/unreviewed/2022/05/GHSA-wrx5-4m94-5mpw/GHSA-wrx5-4m94-5mpw.json index e51f4397f41..6b24c258daa 100644 --- a/advisories/unreviewed/2022/05/GHSA-wrx5-4m94-5mpw/GHSA-wrx5-4m94-5mpw.json +++ b/advisories/unreviewed/2022/05/GHSA-wrx5-4m94-5mpw/GHSA-wrx5-4m94-5mpw.json @@ -7,12 +7,8 @@ "CVE-2005-0432" ], "details": "BEA WebLogic Server 7.0 Service Pack 5 and earlier, and 8.1 Service Pack 3 and earlier, generates different login exceptions that suggest why an authentication attempt fails, which makes it easier for remote attackers to guess passwords via brute force attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wv5j-j74p-fv28/GHSA-wv5j-j74p-fv28.json b/advisories/unreviewed/2022/05/GHSA-wv5j-j74p-fv28/GHSA-wv5j-j74p-fv28.json index b9b0bb3b6cf..c3a3911fdb6 100644 --- a/advisories/unreviewed/2022/05/GHSA-wv5j-j74p-fv28/GHSA-wv5j-j74p-fv28.json +++ b/advisories/unreviewed/2022/05/GHSA-wv5j-j74p-fv28/GHSA-wv5j-j74p-fv28.json @@ -7,12 +7,8 @@ "CVE-2021-35209" ], "details": "An issue was discovered in ProxyServlet.java in the /proxy servlet in Zimbra Collaboration Suite 8.8 before 8.8.15 Patch 23 and 9.x before 9.0.0 Patch 16. The value of the X-Host header overwrites the value of the Host header in proxied requests. The value of X-Host header is not checked against the whitelist of hosts Zimbra is allowed to proxy to (the zimbraProxyAllowedDomains setting).", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-ww2j-hc3f-jj6m/GHSA-ww2j-hc3f-jj6m.json b/advisories/unreviewed/2022/05/GHSA-ww2j-hc3f-jj6m/GHSA-ww2j-hc3f-jj6m.json index af6f464829e..7fd89754e22 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww2j-hc3f-jj6m/GHSA-ww2j-hc3f-jj6m.json +++ b/advisories/unreviewed/2022/05/GHSA-ww2j-hc3f-jj6m/GHSA-ww2j-hc3f-jj6m.json @@ -7,12 +7,8 @@ "CVE-2005-0358" ], "details": "EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-ww46-53gr-39pj/GHSA-ww46-53gr-39pj.json b/advisories/unreviewed/2022/05/GHSA-ww46-53gr-39pj/GHSA-ww46-53gr-39pj.json index ce418fdd1c3..b85200294d2 100644 --- a/advisories/unreviewed/2022/05/GHSA-ww46-53gr-39pj/GHSA-ww46-53gr-39pj.json +++ b/advisories/unreviewed/2022/05/GHSA-ww46-53gr-39pj/GHSA-ww46-53gr-39pj.json @@ -7,12 +7,8 @@ "CVE-2005-0617" ], "details": "SQL injection vulnerability in dl-search.php in PostNuke 0.750 and 0.760-RC2 allows remote attackers to execute arbitrary SQL commands via the show parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wwcf-wg7h-mgxf/GHSA-wwcf-wg7h-mgxf.json b/advisories/unreviewed/2022/05/GHSA-wwcf-wg7h-mgxf/GHSA-wwcf-wg7h-mgxf.json index aba5d87a1c8..67dafb048e7 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwcf-wg7h-mgxf/GHSA-wwcf-wg7h-mgxf.json +++ b/advisories/unreviewed/2022/05/GHSA-wwcf-wg7h-mgxf/GHSA-wwcf-wg7h-mgxf.json @@ -7,12 +7,8 @@ "CVE-2021-22375" ], "details": "There is a Key Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality,availability and integrity.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -24,9 +20,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wwjc-39x7-jv6j/GHSA-wwjc-39x7-jv6j.json b/advisories/unreviewed/2022/05/GHSA-wwjc-39x7-jv6j/GHSA-wwjc-39x7-jv6j.json index 7825dd29952..5407c1fa3c9 100644 --- a/advisories/unreviewed/2022/05/GHSA-wwjc-39x7-jv6j/GHSA-wwjc-39x7-jv6j.json +++ b/advisories/unreviewed/2022/05/GHSA-wwjc-39x7-jv6j/GHSA-wwjc-39x7-jv6j.json @@ -7,12 +7,8 @@ "CVE-2005-0396" ], "details": "Desktop Communication Protocol (DCOP) daemon, aka dcopserver, in KDE before 3.4 allows local users to cause a denial of service (dcopserver consumption) by \"stalling the DCOP authentication process.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -56,9 +52,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wx2j-r584-v9qv/GHSA-wx2j-r584-v9qv.json b/advisories/unreviewed/2022/05/GHSA-wx2j-r584-v9qv/GHSA-wx2j-r584-v9qv.json index 202f53099aa..8e40fed25cb 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx2j-r584-v9qv/GHSA-wx2j-r584-v9qv.json +++ b/advisories/unreviewed/2022/05/GHSA-wx2j-r584-v9qv/GHSA-wx2j-r584-v9qv.json @@ -7,12 +7,8 @@ "CVE-2005-0284" ], "details": "SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the user-agent parameter.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wx9v-xq78-r94h/GHSA-wx9v-xq78-r94h.json b/advisories/unreviewed/2022/05/GHSA-wx9v-xq78-r94h/GHSA-wx9v-xq78-r94h.json index 00246fdba01..37779a3dd61 100644 --- a/advisories/unreviewed/2022/05/GHSA-wx9v-xq78-r94h/GHSA-wx9v-xq78-r94h.json +++ b/advisories/unreviewed/2022/05/GHSA-wx9v-xq78-r94h/GHSA-wx9v-xq78-r94h.json @@ -7,12 +7,8 @@ "CVE-2005-0210" ], "details": "Netfilter in the Linux kernel 2.6.8.1 allows local users to cause a denial of service (memory consumption) via certain packet fragments that are reassembled twice, which causes a data structure to be allocated twice.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-wxwv-8g5r-xcfv/GHSA-wxwv-8g5r-xcfv.json b/advisories/unreviewed/2022/05/GHSA-wxwv-8g5r-xcfv/GHSA-wxwv-8g5r-xcfv.json index 640e72adf31..bb672887a5e 100644 --- a/advisories/unreviewed/2022/05/GHSA-wxwv-8g5r-xcfv/GHSA-wxwv-8g5r-xcfv.json +++ b/advisories/unreviewed/2022/05/GHSA-wxwv-8g5r-xcfv/GHSA-wxwv-8g5r-xcfv.json @@ -7,12 +7,8 @@ "CVE-2021-0546" ], "details": "In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169258733", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x29p-6jfw-8wmx/GHSA-x29p-6jfw-8wmx.json b/advisories/unreviewed/2022/05/GHSA-x29p-6jfw-8wmx/GHSA-x29p-6jfw-8wmx.json index 5b555d160f8..fffb4d35e24 100644 --- a/advisories/unreviewed/2022/05/GHSA-x29p-6jfw-8wmx/GHSA-x29p-6jfw-8wmx.json +++ b/advisories/unreviewed/2022/05/GHSA-x29p-6jfw-8wmx/GHSA-x29p-6jfw-8wmx.json @@ -7,12 +7,8 @@ "CVE-2005-0334" ], "details": "Linksys PSUS4 running firmware 6032 allows remote attackers to cause a denial of service (device crash) via an HTTP POST request containing an unknown parameter without a value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x2v5-56r3-vrw9/GHSA-x2v5-56r3-vrw9.json b/advisories/unreviewed/2022/05/GHSA-x2v5-56r3-vrw9/GHSA-x2v5-56r3-vrw9.json index 2687b83375e..43854820241 100644 --- a/advisories/unreviewed/2022/05/GHSA-x2v5-56r3-vrw9/GHSA-x2v5-56r3-vrw9.json +++ b/advisories/unreviewed/2022/05/GHSA-x2v5-56r3-vrw9/GHSA-x2v5-56r3-vrw9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x364-8p7g-xrp4/GHSA-x364-8p7g-xrp4.json b/advisories/unreviewed/2022/05/GHSA-x364-8p7g-xrp4/GHSA-x364-8p7g-xrp4.json index 4b1a3d59fd5..1e57a54a56c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x364-8p7g-xrp4/GHSA-x364-8p7g-xrp4.json +++ b/advisories/unreviewed/2022/05/GHSA-x364-8p7g-xrp4/GHSA-x364-8p7g-xrp4.json @@ -7,12 +7,8 @@ "CVE-2021-0545" ], "details": "In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the NFC server with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-169258884", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x396-vjqg-vg94/GHSA-x396-vjqg-vg94.json b/advisories/unreviewed/2022/05/GHSA-x396-vjqg-vg94/GHSA-x396-vjqg-vg94.json index be3a31f89e1..cd190d90d45 100644 --- a/advisories/unreviewed/2022/05/GHSA-x396-vjqg-vg94/GHSA-x396-vjqg-vg94.json +++ b/advisories/unreviewed/2022/05/GHSA-x396-vjqg-vg94/GHSA-x396-vjqg-vg94.json @@ -7,12 +7,8 @@ "CVE-2005-0349" ], "details": "The production release of the UniversalAgent for UNIX in BrightStor ARCserve Backup 11.1 contains hard-coded credentials, which allows remote attackers to access the file system and possibly execute arbitrary commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -48,9 +44,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x3q8-x67w-r85c/GHSA-x3q8-x67w-r85c.json b/advisories/unreviewed/2022/05/GHSA-x3q8-x67w-r85c/GHSA-x3q8-x67w-r85c.json index e5c972231e6..3f469e4292c 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3q8-x67w-r85c/GHSA-x3q8-x67w-r85c.json +++ b/advisories/unreviewed/2022/05/GHSA-x3q8-x67w-r85c/GHSA-x3q8-x67w-r85c.json @@ -7,12 +7,8 @@ "CVE-2021-28570" ], "details": "Adobe After Effects version 18.1 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An unauthenticated attacker could exploit this to to plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x3xw-gpqw-j8j2/GHSA-x3xw-gpqw-j8j2.json b/advisories/unreviewed/2022/05/GHSA-x3xw-gpqw-j8j2/GHSA-x3xw-gpqw-j8j2.json index da364ec9e30..60163a50536 100644 --- a/advisories/unreviewed/2022/05/GHSA-x3xw-gpqw-j8j2/GHSA-x3xw-gpqw-j8j2.json +++ b/advisories/unreviewed/2022/05/GHSA-x3xw-gpqw-j8j2/GHSA-x3xw-gpqw-j8j2.json @@ -7,12 +7,8 @@ "CVE-2005-0591" ], "details": "Firefox before 1.0.1 allows remote attackers to spoof the (1) security and (2) download modal dialog boxes, which could be used to trick users into executing script or downloading and executing a file, aka \"Firespoofing.\"", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -76,9 +72,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x4cr-2586-v8hv/GHSA-x4cr-2586-v8hv.json b/advisories/unreviewed/2022/05/GHSA-x4cr-2586-v8hv/GHSA-x4cr-2586-v8hv.json index 80ae27ebd18..d4a4339a917 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4cr-2586-v8hv/GHSA-x4cr-2586-v8hv.json +++ b/advisories/unreviewed/2022/05/GHSA-x4cr-2586-v8hv/GHSA-x4cr-2586-v8hv.json @@ -7,12 +7,8 @@ "CVE-2020-20468" ], "details": "White Shark System (WSS) 1.3.2 is vulnerable to CSRF. Attackers can use the user_edit_password.php file to modify the user password.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4ff-r9rc-hrwg/GHSA-x4ff-r9rc-hrwg.json b/advisories/unreviewed/2022/05/GHSA-x4ff-r9rc-hrwg/GHSA-x4ff-r9rc-hrwg.json index ecfe1550f7a..d70035a44f6 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4ff-r9rc-hrwg/GHSA-x4ff-r9rc-hrwg.json +++ b/advisories/unreviewed/2022/05/GHSA-x4ff-r9rc-hrwg/GHSA-x4ff-r9rc-hrwg.json @@ -7,12 +7,8 @@ "CVE-2020-36194" ], "details": "An XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability allows attackers to inject malicious code. This issue affects: QNAP Systems Inc. QTS versions prior to 4.5.2.1566 Build 20210202. QNAP Systems Inc. QuTS hero versions prior to h4.5.2.1638 build 20210414. This issue does not affect: QNAP Systems Inc. QTS 4.5.3.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x4hj-3vrq-3rjr/GHSA-x4hj-3vrq-3rjr.json b/advisories/unreviewed/2022/05/GHSA-x4hj-3vrq-3rjr/GHSA-x4hj-3vrq-3rjr.json index 2d343cadd70..46142715cd5 100644 --- a/advisories/unreviewed/2022/05/GHSA-x4hj-3vrq-3rjr/GHSA-x4hj-3vrq-3rjr.json +++ b/advisories/unreviewed/2022/05/GHSA-x4hj-3vrq-3rjr/GHSA-x4hj-3vrq-3rjr.json @@ -7,12 +7,8 @@ "CVE-2005-0612" ], "details": "Cisco IP/VC Videoconferencing System 3510, 3520, 3525 and 3530 contain hard-coded default SNMP community strings, which allows remote attackers to gain access, cause a denial of service, and modify configuration.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x55p-4jrv-hw7c/GHSA-x55p-4jrv-hw7c.json b/advisories/unreviewed/2022/05/GHSA-x55p-4jrv-hw7c/GHSA-x55p-4jrv-hw7c.json index c64b47747c2..bb8511ab307 100644 --- a/advisories/unreviewed/2022/05/GHSA-x55p-4jrv-hw7c/GHSA-x55p-4jrv-hw7c.json +++ b/advisories/unreviewed/2022/05/GHSA-x55p-4jrv-hw7c/GHSA-x55p-4jrv-hw7c.json @@ -7,12 +7,8 @@ "CVE-2005-0236" ], "details": "The International Domain Name (IDN) support in Omniweb 5 allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x5xg-pc53-g48q/GHSA-x5xg-pc53-g48q.json b/advisories/unreviewed/2022/05/GHSA-x5xg-pc53-g48q/GHSA-x5xg-pc53-g48q.json index 3e6108ecc2b..d5404646aff 100644 --- a/advisories/unreviewed/2022/05/GHSA-x5xg-pc53-g48q/GHSA-x5xg-pc53-g48q.json +++ b/advisories/unreviewed/2022/05/GHSA-x5xg-pc53-g48q/GHSA-x5xg-pc53-g48q.json @@ -7,12 +7,8 @@ "CVE-2005-0431" ], "details": "Barracuda Spam Firewall 3.1.10 and earlier does not restrict the domains that white-listed domains can send mail to, which allows members of white-listed domains to use Barracuda as an open mail relay for spam.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x737-2374-jhj3/GHSA-x737-2374-jhj3.json b/advisories/unreviewed/2022/05/GHSA-x737-2374-jhj3/GHSA-x737-2374-jhj3.json index 830a9061326..bbc5aeb7ceb 100644 --- a/advisories/unreviewed/2022/05/GHSA-x737-2374-jhj3/GHSA-x737-2374-jhj3.json +++ b/advisories/unreviewed/2022/05/GHSA-x737-2374-jhj3/GHSA-x737-2374-jhj3.json @@ -7,12 +7,8 @@ "CVE-2005-0238" ], "details": "The International Domain Name (IDN) support in Epiphany allows remote attackers to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates phishing attacks.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -44,9 +40,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x7gg-fmqw-9h9x/GHSA-x7gg-fmqw-9h9x.json b/advisories/unreviewed/2022/05/GHSA-x7gg-fmqw-9h9x/GHSA-x7gg-fmqw-9h9x.json index 77ce06413b7..4c25c148664 100644 --- a/advisories/unreviewed/2022/05/GHSA-x7gg-fmqw-9h9x/GHSA-x7gg-fmqw-9h9x.json +++ b/advisories/unreviewed/2022/05/GHSA-x7gg-fmqw-9h9x/GHSA-x7gg-fmqw-9h9x.json @@ -7,12 +7,8 @@ "CVE-2005-0226" ], "details": "Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute arbitrary code.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x884-m2m8-f8p2/GHSA-x884-m2m8-f8p2.json b/advisories/unreviewed/2022/05/GHSA-x884-m2m8-f8p2/GHSA-x884-m2m8-f8p2.json index 076de5ae865..761f6eb6262 100644 --- a/advisories/unreviewed/2022/05/GHSA-x884-m2m8-f8p2/GHSA-x884-m2m8-f8p2.json +++ b/advisories/unreviewed/2022/05/GHSA-x884-m2m8-f8p2/GHSA-x884-m2m8-f8p2.json @@ -7,12 +7,8 @@ "CVE-2005-0452" ], "details": "Multiple cross-site scripting (XSS) vulnerabilities in Microsoft ASP.NET (.Net) 1.0 and 1.1 to SP1 allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to normal ASCII characters, including \">\" and \"<\".", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-x89c-76jf-xx4h/GHSA-x89c-76jf-xx4h.json b/advisories/unreviewed/2022/05/GHSA-x89c-76jf-xx4h/GHSA-x89c-76jf-xx4h.json index def4d316c23..ddc6d4d9cf6 100644 --- a/advisories/unreviewed/2022/05/GHSA-x89c-76jf-xx4h/GHSA-x89c-76jf-xx4h.json +++ b/advisories/unreviewed/2022/05/GHSA-x89c-76jf-xx4h/GHSA-x89c-76jf-xx4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-x8m6-fw59-xcw9/GHSA-x8m6-fw59-xcw9.json b/advisories/unreviewed/2022/05/GHSA-x8m6-fw59-xcw9/GHSA-x8m6-fw59-xcw9.json index 80d3681be4d..d49f3577082 100644 --- a/advisories/unreviewed/2022/05/GHSA-x8m6-fw59-xcw9/GHSA-x8m6-fw59-xcw9.json +++ b/advisories/unreviewed/2022/05/GHSA-x8m6-fw59-xcw9/GHSA-x8m6-fw59-xcw9.json @@ -7,12 +7,8 @@ "CVE-2005-0260" ], "details": "Stack-based buffer overflow in the Discovery Service for BrightStor ARCserve Backup 11.1 and earlier allows remote attackers to execute arbitrary code via a long packet to UDP port 41524, which is not properly handled in a recvfrom call.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xc64-3j7c-vcc7/GHSA-xc64-3j7c-vcc7.json b/advisories/unreviewed/2022/05/GHSA-xc64-3j7c-vcc7/GHSA-xc64-3j7c-vcc7.json index 75689c41d48..437e4255a19 100644 --- a/advisories/unreviewed/2022/05/GHSA-xc64-3j7c-vcc7/GHSA-xc64-3j7c-vcc7.json +++ b/advisories/unreviewed/2022/05/GHSA-xc64-3j7c-vcc7/GHSA-xc64-3j7c-vcc7.json @@ -7,12 +7,8 @@ "CVE-2005-0455" ], "details": "Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xfhp-qrxm-8j68/GHSA-xfhp-qrxm-8j68.json b/advisories/unreviewed/2022/05/GHSA-xfhp-qrxm-8j68/GHSA-xfhp-qrxm-8j68.json index 5fc3e2eb6d7..1fcbcce5c68 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfhp-qrxm-8j68/GHSA-xfhp-qrxm-8j68.json +++ b/advisories/unreviewed/2022/05/GHSA-xfhp-qrxm-8j68/GHSA-xfhp-qrxm-8j68.json @@ -7,12 +7,8 @@ "CVE-2005-0212" ], "details": "The Amp II engine as used by Gore: Ultimate Soldier 1.50 and earlier allows remote attackers to cause a denial of service (infinite loop) via a zero byte UDP packet.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xfxw-g6rw-mr3w/GHSA-xfxw-g6rw-mr3w.json b/advisories/unreviewed/2022/05/GHSA-xfxw-g6rw-mr3w/GHSA-xfxw-g6rw-mr3w.json index 766ccbdae3f..ec4108fbb4c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xfxw-g6rw-mr3w/GHSA-xfxw-g6rw-mr3w.json +++ b/advisories/unreviewed/2022/05/GHSA-xfxw-g6rw-mr3w/GHSA-xfxw-g6rw-mr3w.json @@ -7,12 +7,8 @@ "CVE-2021-31925" ], "details": "Pexip Infinity 25.x before 25.4 has Improper Input Validation, and thus an unauthenticated remote attacker can cause a denial of service via the administrative web interface.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg5r-fw9v-6664/GHSA-xg5r-fw9v-6664.json b/advisories/unreviewed/2022/05/GHSA-xg5r-fw9v-6664/GHSA-xg5r-fw9v-6664.json index 1531f5737d4..9ecc035e9cc 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg5r-fw9v-6664/GHSA-xg5r-fw9v-6664.json +++ b/advisories/unreviewed/2022/05/GHSA-xg5r-fw9v-6664/GHSA-xg5r-fw9v-6664.json @@ -7,12 +7,8 @@ "CVE-2021-0608" ], "details": "In handleAppLaunch of AppLaunchActivity.java, there is a possible arbitrary activity launch due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-174870704", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xg8v-4hxj-rcfg/GHSA-xg8v-4hxj-rcfg.json b/advisories/unreviewed/2022/05/GHSA-xg8v-4hxj-rcfg/GHSA-xg8v-4hxj-rcfg.json index 24b40506005..092a3703a46 100644 --- a/advisories/unreviewed/2022/05/GHSA-xg8v-4hxj-rcfg/GHSA-xg8v-4hxj-rcfg.json +++ b/advisories/unreviewed/2022/05/GHSA-xg8v-4hxj-rcfg/GHSA-xg8v-4hxj-rcfg.json @@ -7,12 +7,8 @@ "CVE-2005-0255" ], "details": "String handling functions in Mozilla 1.7.3, Firefox 1.0, and Thunderbird before 1.0.2, such as the nsTSubstring_CharT::Replace function, do not properly check the return values of other functions that resize the string, which allows remote attackers to cause a denial of service and possibly execute arbitrary code by forcing an out-of-memory state that causes a reallocation to fail and return a pointer to a fixed address, which leads to heap corruption.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -72,9 +68,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xgxp-cc5r-jfjq/GHSA-xgxp-cc5r-jfjq.json b/advisories/unreviewed/2022/05/GHSA-xgxp-cc5r-jfjq/GHSA-xgxp-cc5r-jfjq.json index 20a4d4674cb..02cee371030 100644 --- a/advisories/unreviewed/2022/05/GHSA-xgxp-cc5r-jfjq/GHSA-xgxp-cc5r-jfjq.json +++ b/advisories/unreviewed/2022/05/GHSA-xgxp-cc5r-jfjq/GHSA-xgxp-cc5r-jfjq.json @@ -7,12 +7,8 @@ "CVE-2021-28127" ], "details": "An issue was discovered in Stormshield SNS through 4.2.1. A brute-force attack can occur.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xhmm-rp2q-vm34/GHSA-xhmm-rp2q-vm34.json b/advisories/unreviewed/2022/05/GHSA-xhmm-rp2q-vm34/GHSA-xhmm-rp2q-vm34.json index 7bea1364128..c677f02820c 100644 --- a/advisories/unreviewed/2022/05/GHSA-xhmm-rp2q-vm34/GHSA-xhmm-rp2q-vm34.json +++ b/advisories/unreviewed/2022/05/GHSA-xhmm-rp2q-vm34/GHSA-xhmm-rp2q-vm34.json @@ -7,12 +7,8 @@ "CVE-2021-0565" ], "details": "In wrapUserThread of AudioStream.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-174801970", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xj4x-pg94-f3mf/GHSA-xj4x-pg94-f3mf.json b/advisories/unreviewed/2022/05/GHSA-xj4x-pg94-f3mf/GHSA-xj4x-pg94-f3mf.json index 275dcad30fd..a3c5a7553a3 100644 --- a/advisories/unreviewed/2022/05/GHSA-xj4x-pg94-f3mf/GHSA-xj4x-pg94-f3mf.json +++ b/advisories/unreviewed/2022/05/GHSA-xj4x-pg94-f3mf/GHSA-xj4x-pg94-f3mf.json @@ -7,12 +7,8 @@ "CVE-2020-22608" ], "details": "Cross Site Scripting vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter to include/ajax.search.php.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xjc2-37xp-26m5/GHSA-xjc2-37xp-26m5.json b/advisories/unreviewed/2022/05/GHSA-xjc2-37xp-26m5/GHSA-xjc2-37xp-26m5.json index b1b2081b49e..0bbef7f3c1b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xjc2-37xp-26m5/GHSA-xjc2-37xp-26m5.json +++ b/advisories/unreviewed/2022/05/GHSA-xjc2-37xp-26m5/GHSA-xjc2-37xp-26m5.json @@ -7,12 +7,8 @@ "CVE-2021-36087" ], "details": "The CIL compiler in SELinux 3.2 has a heap-based buffer over-read in ebitmap_match_any (called indirectly from cil_check_neverallow). NOTE: bad0a746e9f4cf260dedba5828d9645d50176aac is cited in the OSV \"fixed\" field but does not have a code change.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xm47-42m3-whpm/GHSA-xm47-42m3-whpm.json b/advisories/unreviewed/2022/05/GHSA-xm47-42m3-whpm/GHSA-xm47-42m3-whpm.json index 0fab3ec2898..7f008fe740a 100644 --- a/advisories/unreviewed/2022/05/GHSA-xm47-42m3-whpm/GHSA-xm47-42m3-whpm.json +++ b/advisories/unreviewed/2022/05/GHSA-xm47-42m3-whpm/GHSA-xm47-42m3-whpm.json @@ -7,12 +7,8 @@ "CVE-2005-0582" ], "details": "Buffer overflow in Computer Associates (CA) License Client 0.1.0.15 allows remote attackers to execute arbitrary code via a long filename in a PUTOLF request.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xmwq-8922-3p5x/GHSA-xmwq-8922-3p5x.json b/advisories/unreviewed/2022/05/GHSA-xmwq-8922-3p5x/GHSA-xmwq-8922-3p5x.json index 25a5c1af3a9..81799c3f53b 100644 --- a/advisories/unreviewed/2022/05/GHSA-xmwq-8922-3p5x/GHSA-xmwq-8922-3p5x.json +++ b/advisories/unreviewed/2022/05/GHSA-xmwq-8922-3p5x/GHSA-xmwq-8922-3p5x.json @@ -7,12 +7,8 @@ "CVE-2021-34244" ], "details": "A cross site request forgery (CSRF) vulnerability was discovered in Ice Hrm 29.0.0.OS which allows attackers to create new admin accounts or change users' passwords.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xp7p-jgvx-rgm4/GHSA-xp7p-jgvx-rgm4.json b/advisories/unreviewed/2022/05/GHSA-xp7p-jgvx-rgm4/GHSA-xp7p-jgvx-rgm4.json index 8822daa8891..395a7623bd2 100644 --- a/advisories/unreviewed/2022/05/GHSA-xp7p-jgvx-rgm4/GHSA-xp7p-jgvx-rgm4.json +++ b/advisories/unreviewed/2022/05/GHSA-xp7p-jgvx-rgm4/GHSA-xp7p-jgvx-rgm4.json @@ -7,12 +7,8 @@ "CVE-2005-0242" ], "details": "The Audio Setup Wizard (asw.dll) in Yahoo! Messenger 6.0.0.1750, and possibly other versions, allows attackers to arbitrary code by placing a malicious ping.exe program into the Messenger program directory, which is installed with weak default permissions.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xq25-vjqp-23mx/GHSA-xq25-vjqp-23mx.json b/advisories/unreviewed/2022/05/GHSA-xq25-vjqp-23mx/GHSA-xq25-vjqp-23mx.json index ae539493811..bf1dd9b709f 100644 --- a/advisories/unreviewed/2022/05/GHSA-xq25-vjqp-23mx/GHSA-xq25-vjqp-23mx.json +++ b/advisories/unreviewed/2022/05/GHSA-xq25-vjqp-23mx/GHSA-xq25-vjqp-23mx.json @@ -7,12 +7,8 @@ "CVE-2005-0276" ], "details": "Multiple format string vulnerabilities in the FTP service in 3Com 3CDaemon 2.0 revision 10 allow remote attackers to cause a denial of service (application crash) via format string specifiers in (1) the username, (2) cd, (3) delete, (4) rename, (5) rmdir, (6) literal, (7) stat, or (8) CWD commands.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -32,9 +28,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xqmc-vc6c-2wmv/GHSA-xqmc-vc6c-2wmv.json b/advisories/unreviewed/2022/05/GHSA-xqmc-vc6c-2wmv/GHSA-xqmc-vc6c-2wmv.json index 62e4c951592..fb799411c16 100644 --- a/advisories/unreviewed/2022/05/GHSA-xqmc-vc6c-2wmv/GHSA-xqmc-vc6c-2wmv.json +++ b/advisories/unreviewed/2022/05/GHSA-xqmc-vc6c-2wmv/GHSA-xqmc-vc6c-2wmv.json @@ -7,12 +7,8 @@ "CVE-2021-29712" ], "details": "IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 200966.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xr7m-jcj6-p39r/GHSA-xr7m-jcj6-p39r.json b/advisories/unreviewed/2022/05/GHSA-xr7m-jcj6-p39r/GHSA-xr7m-jcj6-p39r.json index 8ea29f32b5a..8f3686c9fa9 100644 --- a/advisories/unreviewed/2022/05/GHSA-xr7m-jcj6-p39r/GHSA-xr7m-jcj6-p39r.json +++ b/advisories/unreviewed/2022/05/GHSA-xr7m-jcj6-p39r/GHSA-xr7m-jcj6-p39r.json @@ -7,12 +7,8 @@ "CVE-2005-0484" ], "details": "Format string vulnerability in gprostats for GProFTPD before 8.1.9 may allow remote attackers to execute arbitrary code via an FTP transfer with a crafted filename that causes format string specifiers to be inserted into the ProFTPD transfer log.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xv3x-x36v-w2jp/GHSA-xv3x-x36v-w2jp.json b/advisories/unreviewed/2022/05/GHSA-xv3x-x36v-w2jp/GHSA-xv3x-x36v-w2jp.json index 967206b2346..1e9e4dc768d 100644 --- a/advisories/unreviewed/2022/05/GHSA-xv3x-x36v-w2jp/GHSA-xv3x-x36v-w2jp.json +++ b/advisories/unreviewed/2022/05/GHSA-xv3x-x36v-w2jp/GHSA-xv3x-x36v-w2jp.json @@ -7,12 +7,8 @@ "CVE-2005-0335" ], "details": "Directory traversal vulnerability in EMotion MediaPartner Web Server 5.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -40,9 +36,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/05/GHSA-xvjm-5f8w-rrvc/GHSA-xvjm-5f8w-rrvc.json b/advisories/unreviewed/2022/05/GHSA-xvjm-5f8w-rrvc/GHSA-xvjm-5f8w-rrvc.json index c9627723a99..eb20f2afa27 100644 --- a/advisories/unreviewed/2022/05/GHSA-xvjm-5f8w-rrvc/GHSA-xvjm-5f8w-rrvc.json +++ b/advisories/unreviewed/2022/05/GHSA-xvjm-5f8w-rrvc/GHSA-xvjm-5f8w-rrvc.json @@ -7,12 +7,8 @@ "CVE-2020-23209" ], "details": "A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the \"List Description\" field under the \"Edit A List\" module.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xw24-w9w2-xw4q/GHSA-xw24-w9w2-xw4q.json b/advisories/unreviewed/2022/05/GHSA-xw24-w9w2-xw4q/GHSA-xw24-w9w2-xw4q.json index a2d9b34a896..58ab4000d81 100644 --- a/advisories/unreviewed/2022/05/GHSA-xw24-w9w2-xw4q/GHSA-xw24-w9w2-xw4q.json +++ b/advisories/unreviewed/2022/05/GHSA-xw24-w9w2-xw4q/GHSA-xw24-w9w2-xw4q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xx9h-mj95-m3jg/GHSA-xx9h-mj95-m3jg.json b/advisories/unreviewed/2022/05/GHSA-xx9h-mj95-m3jg/GHSA-xx9h-mj95-m3jg.json index 6cd986d0fd3..13d4dea85f7 100644 --- a/advisories/unreviewed/2022/05/GHSA-xx9h-mj95-m3jg/GHSA-xx9h-mj95-m3jg.json +++ b/advisories/unreviewed/2022/05/GHSA-xx9h-mj95-m3jg/GHSA-xx9h-mj95-m3jg.json @@ -7,12 +7,8 @@ "CVE-2021-0547" ], "details": "In onReceive of NetInitiatedActivity.java, there is a possible way to supply an attacker-controlled value to a GPS HAL handler due to a missing permission check. This could lead to local escalation of privilege that may result in undefined behavior in some HAL implementations with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-174151048", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/05/GHSA-xx9m-mmw4-chgv/GHSA-xx9m-mmw4-chgv.json b/advisories/unreviewed/2022/05/GHSA-xx9m-mmw4-chgv/GHSA-xx9m-mmw4-chgv.json index c6fa723e254..5165b818275 100644 --- a/advisories/unreviewed/2022/05/GHSA-xx9m-mmw4-chgv/GHSA-xx9m-mmw4-chgv.json +++ b/advisories/unreviewed/2022/05/GHSA-xx9m-mmw4-chgv/GHSA-xx9m-mmw4-chgv.json @@ -7,12 +7,8 @@ "CVE-2005-0419" ], "details": "Multiple heap-based buffer overflows in 3Com 3CServer allow remote authenticated users to execute arbitrary code via long FTP commands, as demonstrated using the STAT command.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -28,9 +24,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/07/GHSA-55c8-6r36-9g85/GHSA-55c8-6r36-9g85.json b/advisories/unreviewed/2022/07/GHSA-55c8-6r36-9g85/GHSA-55c8-6r36-9g85.json index b3b6320a324..70185d984b8 100644 --- a/advisories/unreviewed/2022/07/GHSA-55c8-6r36-9g85/GHSA-55c8-6r36-9g85.json +++ b/advisories/unreviewed/2022/07/GHSA-55c8-6r36-9g85/GHSA-55c8-6r36-9g85.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-f3p5-98fc-2gxr/GHSA-f3p5-98fc-2gxr.json b/advisories/unreviewed/2022/07/GHSA-f3p5-98fc-2gxr/GHSA-f3p5-98fc-2gxr.json index 752680020b4..cba4bbc645e 100644 --- a/advisories/unreviewed/2022/07/GHSA-f3p5-98fc-2gxr/GHSA-f3p5-98fc-2gxr.json +++ b/advisories/unreviewed/2022/07/GHSA-f3p5-98fc-2gxr/GHSA-f3p5-98fc-2gxr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-gcw5-wf74-74mf/GHSA-gcw5-wf74-74mf.json b/advisories/unreviewed/2022/07/GHSA-gcw5-wf74-74mf/GHSA-gcw5-wf74-74mf.json index 84cc8689f22..af06919b649 100644 --- a/advisories/unreviewed/2022/07/GHSA-gcw5-wf74-74mf/GHSA-gcw5-wf74-74mf.json +++ b/advisories/unreviewed/2022/07/GHSA-gcw5-wf74-74mf/GHSA-gcw5-wf74-74mf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/07/GHSA-w7j2-r4x6-6frw/GHSA-w7j2-r4x6-6frw.json b/advisories/unreviewed/2022/07/GHSA-w7j2-r4x6-6frw/GHSA-w7j2-r4x6-6frw.json index 848d695fea6..570c2380c16 100644 --- a/advisories/unreviewed/2022/07/GHSA-w7j2-r4x6-6frw/GHSA-w7j2-r4x6-6frw.json +++ b/advisories/unreviewed/2022/07/GHSA-w7j2-r4x6-6frw/GHSA-w7j2-r4x6-6frw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-cmfv-8pfm-mx7m/GHSA-cmfv-8pfm-mx7m.json b/advisories/unreviewed/2022/08/GHSA-cmfv-8pfm-mx7m/GHSA-cmfv-8pfm-mx7m.json index b7553c644f1..625c127e3ce 100644 --- a/advisories/unreviewed/2022/08/GHSA-cmfv-8pfm-mx7m/GHSA-cmfv-8pfm-mx7m.json +++ b/advisories/unreviewed/2022/08/GHSA-cmfv-8pfm-mx7m/GHSA-cmfv-8pfm-mx7m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-cwmf-5x7w-g67f/GHSA-cwmf-5x7w-g67f.json b/advisories/unreviewed/2022/08/GHSA-cwmf-5x7w-g67f/GHSA-cwmf-5x7w-g67f.json index ddf640cd77d..52a71416915 100644 --- a/advisories/unreviewed/2022/08/GHSA-cwmf-5x7w-g67f/GHSA-cwmf-5x7w-g67f.json +++ b/advisories/unreviewed/2022/08/GHSA-cwmf-5x7w-g67f/GHSA-cwmf-5x7w-g67f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-fxg7-4q6m-p84h/GHSA-fxg7-4q6m-p84h.json b/advisories/unreviewed/2022/08/GHSA-fxg7-4q6m-p84h/GHSA-fxg7-4q6m-p84h.json index a9973b31214..259989e3696 100644 --- a/advisories/unreviewed/2022/08/GHSA-fxg7-4q6m-p84h/GHSA-fxg7-4q6m-p84h.json +++ b/advisories/unreviewed/2022/08/GHSA-fxg7-4q6m-p84h/GHSA-fxg7-4q6m-p84h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-g6v2-w49j-5xwp/GHSA-g6v2-w49j-5xwp.json b/advisories/unreviewed/2022/08/GHSA-g6v2-w49j-5xwp/GHSA-g6v2-w49j-5xwp.json index 2ff6efb4a85..f210d8ad01e 100644 --- a/advisories/unreviewed/2022/08/GHSA-g6v2-w49j-5xwp/GHSA-g6v2-w49j-5xwp.json +++ b/advisories/unreviewed/2022/08/GHSA-g6v2-w49j-5xwp/GHSA-g6v2-w49j-5xwp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-gc35-wq89-2gc6/GHSA-gc35-wq89-2gc6.json b/advisories/unreviewed/2022/08/GHSA-gc35-wq89-2gc6/GHSA-gc35-wq89-2gc6.json index b58acc43b9c..257b9af8cbd 100644 --- a/advisories/unreviewed/2022/08/GHSA-gc35-wq89-2gc6/GHSA-gc35-wq89-2gc6.json +++ b/advisories/unreviewed/2022/08/GHSA-gc35-wq89-2gc6/GHSA-gc35-wq89-2gc6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-h3wx-94rw-9228/GHSA-h3wx-94rw-9228.json b/advisories/unreviewed/2022/08/GHSA-h3wx-94rw-9228/GHSA-h3wx-94rw-9228.json index c8b3490a70d..f7a99d029fe 100644 --- a/advisories/unreviewed/2022/08/GHSA-h3wx-94rw-9228/GHSA-h3wx-94rw-9228.json +++ b/advisories/unreviewed/2022/08/GHSA-h3wx-94rw-9228/GHSA-h3wx-94rw-9228.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-h5j7-7wgr-m2hf/GHSA-h5j7-7wgr-m2hf.json b/advisories/unreviewed/2022/08/GHSA-h5j7-7wgr-m2hf/GHSA-h5j7-7wgr-m2hf.json index d0bc09aa5f7..fc887dd55dd 100644 --- a/advisories/unreviewed/2022/08/GHSA-h5j7-7wgr-m2hf/GHSA-h5j7-7wgr-m2hf.json +++ b/advisories/unreviewed/2022/08/GHSA-h5j7-7wgr-m2hf/GHSA-h5j7-7wgr-m2hf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-q48j-mj2h-72qw/GHSA-q48j-mj2h-72qw.json b/advisories/unreviewed/2022/08/GHSA-q48j-mj2h-72qw/GHSA-q48j-mj2h-72qw.json index 02a8a4630ca..3cd10e392f4 100644 --- a/advisories/unreviewed/2022/08/GHSA-q48j-mj2h-72qw/GHSA-q48j-mj2h-72qw.json +++ b/advisories/unreviewed/2022/08/GHSA-q48j-mj2h-72qw/GHSA-q48j-mj2h-72qw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rjwx-467q-qhmr/GHSA-rjwx-467q-qhmr.json b/advisories/unreviewed/2022/08/GHSA-rjwx-467q-qhmr/GHSA-rjwx-467q-qhmr.json index 1f2d7e28e33..ea5666551f2 100644 --- a/advisories/unreviewed/2022/08/GHSA-rjwx-467q-qhmr/GHSA-rjwx-467q-qhmr.json +++ b/advisories/unreviewed/2022/08/GHSA-rjwx-467q-qhmr/GHSA-rjwx-467q-qhmr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/08/GHSA-rpfp-2347-5q8p/GHSA-rpfp-2347-5q8p.json b/advisories/unreviewed/2022/08/GHSA-rpfp-2347-5q8p/GHSA-rpfp-2347-5q8p.json index c1834985c58..6c0f4ed7c40 100644 --- a/advisories/unreviewed/2022/08/GHSA-rpfp-2347-5q8p/GHSA-rpfp-2347-5q8p.json +++ b/advisories/unreviewed/2022/08/GHSA-rpfp-2347-5q8p/GHSA-rpfp-2347-5q8p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-4hw3-29f2-2c2f/GHSA-4hw3-29f2-2c2f.json b/advisories/unreviewed/2022/09/GHSA-4hw3-29f2-2c2f/GHSA-4hw3-29f2-2c2f.json index f92b2590c04..4c2fbf93ac9 100644 --- a/advisories/unreviewed/2022/09/GHSA-4hw3-29f2-2c2f/GHSA-4hw3-29f2-2c2f.json +++ b/advisories/unreviewed/2022/09/GHSA-4hw3-29f2-2c2f/GHSA-4hw3-29f2-2c2f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/09/GHSA-7ch3-c534-49jq/GHSA-7ch3-c534-49jq.json b/advisories/unreviewed/2022/09/GHSA-7ch3-c534-49jq/GHSA-7ch3-c534-49jq.json index 2e2f7cc0c95..f252670aabe 100644 --- a/advisories/unreviewed/2022/09/GHSA-7ch3-c534-49jq/GHSA-7ch3-c534-49jq.json +++ b/advisories/unreviewed/2022/09/GHSA-7ch3-c534-49jq/GHSA-7ch3-c534-49jq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/09/GHSA-9pxq-3hvv-rrf5/GHSA-9pxq-3hvv-rrf5.json b/advisories/unreviewed/2022/09/GHSA-9pxq-3hvv-rrf5/GHSA-9pxq-3hvv-rrf5.json index 440a267271a..80ebb2cbe04 100644 --- a/advisories/unreviewed/2022/09/GHSA-9pxq-3hvv-rrf5/GHSA-9pxq-3hvv-rrf5.json +++ b/advisories/unreviewed/2022/09/GHSA-9pxq-3hvv-rrf5/GHSA-9pxq-3hvv-rrf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/10/GHSA-fqrh-w8r3-22q6/GHSA-fqrh-w8r3-22q6.json b/advisories/unreviewed/2022/10/GHSA-fqrh-w8r3-22q6/GHSA-fqrh-w8r3-22q6.json index 1ecbe871b3f..3102888cee8 100644 --- a/advisories/unreviewed/2022/10/GHSA-fqrh-w8r3-22q6/GHSA-fqrh-w8r3-22q6.json +++ b/advisories/unreviewed/2022/10/GHSA-fqrh-w8r3-22q6/GHSA-fqrh-w8r3-22q6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-r55p-5rm2-vqg9/GHSA-r55p-5rm2-vqg9.json b/advisories/unreviewed/2022/10/GHSA-r55p-5rm2-vqg9/GHSA-r55p-5rm2-vqg9.json index b768390d9fc..ee681dea8c6 100644 --- a/advisories/unreviewed/2022/10/GHSA-r55p-5rm2-vqg9/GHSA-r55p-5rm2-vqg9.json +++ b/advisories/unreviewed/2022/10/GHSA-r55p-5rm2-vqg9/GHSA-r55p-5rm2-vqg9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-v88g-q782-jgp2/GHSA-v88g-q782-jgp2.json b/advisories/unreviewed/2022/10/GHSA-v88g-q782-jgp2/GHSA-v88g-q782-jgp2.json index 5db8dd75237..7c3dadd5036 100644 --- a/advisories/unreviewed/2022/10/GHSA-v88g-q782-jgp2/GHSA-v88g-q782-jgp2.json +++ b/advisories/unreviewed/2022/10/GHSA-v88g-q782-jgp2/GHSA-v88g-q782-jgp2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/10/GHSA-wp5g-757j-v342/GHSA-wp5g-757j-v342.json b/advisories/unreviewed/2022/10/GHSA-wp5g-757j-v342/GHSA-wp5g-757j-v342.json index 6f6d9c72796..01d4ade9434 100644 --- a/advisories/unreviewed/2022/10/GHSA-wp5g-757j-v342/GHSA-wp5g-757j-v342.json +++ b/advisories/unreviewed/2022/10/GHSA-wp5g-757j-v342/GHSA-wp5g-757j-v342.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-42x7-fjc5-38vr/GHSA-42x7-fjc5-38vr.json b/advisories/unreviewed/2022/11/GHSA-42x7-fjc5-38vr/GHSA-42x7-fjc5-38vr.json index b02c586dbec..dfd4062caeb 100644 --- a/advisories/unreviewed/2022/11/GHSA-42x7-fjc5-38vr/GHSA-42x7-fjc5-38vr.json +++ b/advisories/unreviewed/2022/11/GHSA-42x7-fjc5-38vr/GHSA-42x7-fjc5-38vr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-cq56-j359-2484/GHSA-cq56-j359-2484.json b/advisories/unreviewed/2022/11/GHSA-cq56-j359-2484/GHSA-cq56-j359-2484.json index 57d0a91d191..c0888421e33 100644 --- a/advisories/unreviewed/2022/11/GHSA-cq56-j359-2484/GHSA-cq56-j359-2484.json +++ b/advisories/unreviewed/2022/11/GHSA-cq56-j359-2484/GHSA-cq56-j359-2484.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-f5v3-qm6r-5p3w/GHSA-f5v3-qm6r-5p3w.json b/advisories/unreviewed/2022/11/GHSA-f5v3-qm6r-5p3w/GHSA-f5v3-qm6r-5p3w.json index 82380037755..c8b8a6138e8 100644 --- a/advisories/unreviewed/2022/11/GHSA-f5v3-qm6r-5p3w/GHSA-f5v3-qm6r-5p3w.json +++ b/advisories/unreviewed/2022/11/GHSA-f5v3-qm6r-5p3w/GHSA-f5v3-qm6r-5p3w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-fwfg-5hqv-4r78/GHSA-fwfg-5hqv-4r78.json b/advisories/unreviewed/2022/11/GHSA-fwfg-5hqv-4r78/GHSA-fwfg-5hqv-4r78.json index 560cd346552..7818eac51f1 100644 --- a/advisories/unreviewed/2022/11/GHSA-fwfg-5hqv-4r78/GHSA-fwfg-5hqv-4r78.json +++ b/advisories/unreviewed/2022/11/GHSA-fwfg-5hqv-4r78/GHSA-fwfg-5hqv-4r78.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-gvg6-g9vq-r6gw/GHSA-gvg6-g9vq-r6gw.json b/advisories/unreviewed/2022/11/GHSA-gvg6-g9vq-r6gw/GHSA-gvg6-g9vq-r6gw.json index 7e502a5aff2..cc40c87a577 100644 --- a/advisories/unreviewed/2022/11/GHSA-gvg6-g9vq-r6gw/GHSA-gvg6-g9vq-r6gw.json +++ b/advisories/unreviewed/2022/11/GHSA-gvg6-g9vq-r6gw/GHSA-gvg6-g9vq-r6gw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-gw3c-jrpr-59hg/GHSA-gw3c-jrpr-59hg.json b/advisories/unreviewed/2022/11/GHSA-gw3c-jrpr-59hg/GHSA-gw3c-jrpr-59hg.json index ea2cf4e7641..b87a0e6f6e5 100644 --- a/advisories/unreviewed/2022/11/GHSA-gw3c-jrpr-59hg/GHSA-gw3c-jrpr-59hg.json +++ b/advisories/unreviewed/2022/11/GHSA-gw3c-jrpr-59hg/GHSA-gw3c-jrpr-59hg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-hhhj-6x4j-w995/GHSA-hhhj-6x4j-w995.json b/advisories/unreviewed/2022/11/GHSA-hhhj-6x4j-w995/GHSA-hhhj-6x4j-w995.json index 52a4b720c52..320f69b92a9 100644 --- a/advisories/unreviewed/2022/11/GHSA-hhhj-6x4j-w995/GHSA-hhhj-6x4j-w995.json +++ b/advisories/unreviewed/2022/11/GHSA-hhhj-6x4j-w995/GHSA-hhhj-6x4j-w995.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -55,9 +53,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-jxpc-fxw3-65cc/GHSA-jxpc-fxw3-65cc.json b/advisories/unreviewed/2022/11/GHSA-jxpc-fxw3-65cc/GHSA-jxpc-fxw3-65cc.json index 4b5d0401b3d..b5a988ee8ac 100644 --- a/advisories/unreviewed/2022/11/GHSA-jxpc-fxw3-65cc/GHSA-jxpc-fxw3-65cc.json +++ b/advisories/unreviewed/2022/11/GHSA-jxpc-fxw3-65cc/GHSA-jxpc-fxw3-65cc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-p263-3p34-m82m/GHSA-p263-3p34-m82m.json b/advisories/unreviewed/2022/11/GHSA-p263-3p34-m82m/GHSA-p263-3p34-m82m.json index 61fe9548296..33912b1b5e5 100644 --- a/advisories/unreviewed/2022/11/GHSA-p263-3p34-m82m/GHSA-p263-3p34-m82m.json +++ b/advisories/unreviewed/2022/11/GHSA-p263-3p34-m82m/GHSA-p263-3p34-m82m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-qghj-pfv2-q8gw/GHSA-qghj-pfv2-q8gw.json b/advisories/unreviewed/2022/11/GHSA-qghj-pfv2-q8gw/GHSA-qghj-pfv2-q8gw.json index 9bba6678be7..c7ffbf4235b 100644 --- a/advisories/unreviewed/2022/11/GHSA-qghj-pfv2-q8gw/GHSA-qghj-pfv2-q8gw.json +++ b/advisories/unreviewed/2022/11/GHSA-qghj-pfv2-q8gw/GHSA-qghj-pfv2-q8gw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/11/GHSA-rgfj-62rr-5vf5/GHSA-rgfj-62rr-5vf5.json b/advisories/unreviewed/2022/11/GHSA-rgfj-62rr-5vf5/GHSA-rgfj-62rr-5vf5.json index e69de437fe0..396c7d71538 100644 --- a/advisories/unreviewed/2022/11/GHSA-rgfj-62rr-5vf5/GHSA-rgfj-62rr-5vf5.json +++ b/advisories/unreviewed/2022/11/GHSA-rgfj-62rr-5vf5/GHSA-rgfj-62rr-5vf5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -55,9 +53,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/11/GHSA-x7vp-fr4m-26vq/GHSA-x7vp-fr4m-26vq.json b/advisories/unreviewed/2022/11/GHSA-x7vp-fr4m-26vq/GHSA-x7vp-fr4m-26vq.json index 75a079a6493..ad05651fd02 100644 --- a/advisories/unreviewed/2022/11/GHSA-x7vp-fr4m-26vq/GHSA-x7vp-fr4m-26vq.json +++ b/advisories/unreviewed/2022/11/GHSA-x7vp-fr4m-26vq/GHSA-x7vp-fr4m-26vq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-2fxh-3j4p-q796/GHSA-2fxh-3j4p-q796.json b/advisories/unreviewed/2022/12/GHSA-2fxh-3j4p-q796/GHSA-2fxh-3j4p-q796.json index d46360136c9..178145e96e6 100644 --- a/advisories/unreviewed/2022/12/GHSA-2fxh-3j4p-q796/GHSA-2fxh-3j4p-q796.json +++ b/advisories/unreviewed/2022/12/GHSA-2fxh-3j4p-q796/GHSA-2fxh-3j4p-q796.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-33cw-rfhq-85q4/GHSA-33cw-rfhq-85q4.json b/advisories/unreviewed/2022/12/GHSA-33cw-rfhq-85q4/GHSA-33cw-rfhq-85q4.json index 3adb17d6eb1..7f5b737468c 100644 --- a/advisories/unreviewed/2022/12/GHSA-33cw-rfhq-85q4/GHSA-33cw-rfhq-85q4.json +++ b/advisories/unreviewed/2022/12/GHSA-33cw-rfhq-85q4/GHSA-33cw-rfhq-85q4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-39v5-33fm-98f2/GHSA-39v5-33fm-98f2.json b/advisories/unreviewed/2022/12/GHSA-39v5-33fm-98f2/GHSA-39v5-33fm-98f2.json index 74e15c08a10..fae162f6d07 100644 --- a/advisories/unreviewed/2022/12/GHSA-39v5-33fm-98f2/GHSA-39v5-33fm-98f2.json +++ b/advisories/unreviewed/2022/12/GHSA-39v5-33fm-98f2/GHSA-39v5-33fm-98f2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-42v8-4p4g-32vh/GHSA-42v8-4p4g-32vh.json b/advisories/unreviewed/2022/12/GHSA-42v8-4p4g-32vh/GHSA-42v8-4p4g-32vh.json index c284042c6e4..939a03afdfd 100644 --- a/advisories/unreviewed/2022/12/GHSA-42v8-4p4g-32vh/GHSA-42v8-4p4g-32vh.json +++ b/advisories/unreviewed/2022/12/GHSA-42v8-4p4g-32vh/GHSA-42v8-4p4g-32vh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-4fvm-c367-wg98/GHSA-4fvm-c367-wg98.json b/advisories/unreviewed/2022/12/GHSA-4fvm-c367-wg98/GHSA-4fvm-c367-wg98.json index 0b13ffa36c3..f1bf7b1402f 100644 --- a/advisories/unreviewed/2022/12/GHSA-4fvm-c367-wg98/GHSA-4fvm-c367-wg98.json +++ b/advisories/unreviewed/2022/12/GHSA-4fvm-c367-wg98/GHSA-4fvm-c367-wg98.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-66j6-p8c8-v9h3/GHSA-66j6-p8c8-v9h3.json b/advisories/unreviewed/2022/12/GHSA-66j6-p8c8-v9h3/GHSA-66j6-p8c8-v9h3.json index a2c5c5752e4..d4ba275ab1e 100644 --- a/advisories/unreviewed/2022/12/GHSA-66j6-p8c8-v9h3/GHSA-66j6-p8c8-v9h3.json +++ b/advisories/unreviewed/2022/12/GHSA-66j6-p8c8-v9h3/GHSA-66j6-p8c8-v9h3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-7v7h-rvvw-w7c6/GHSA-7v7h-rvvw-w7c6.json b/advisories/unreviewed/2022/12/GHSA-7v7h-rvvw-w7c6/GHSA-7v7h-rvvw-w7c6.json index 73663200974..735f50411c4 100644 --- a/advisories/unreviewed/2022/12/GHSA-7v7h-rvvw-w7c6/GHSA-7v7h-rvvw-w7c6.json +++ b/advisories/unreviewed/2022/12/GHSA-7v7h-rvvw-w7c6/GHSA-7v7h-rvvw-w7c6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-88fr-777m-ghwv/GHSA-88fr-777m-ghwv.json b/advisories/unreviewed/2022/12/GHSA-88fr-777m-ghwv/GHSA-88fr-777m-ghwv.json index 1ed4a0f9a2c..deab873dd8b 100644 --- a/advisories/unreviewed/2022/12/GHSA-88fr-777m-ghwv/GHSA-88fr-777m-ghwv.json +++ b/advisories/unreviewed/2022/12/GHSA-88fr-777m-ghwv/GHSA-88fr-777m-ghwv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-8f89-97jx-p2mr/GHSA-8f89-97jx-p2mr.json b/advisories/unreviewed/2022/12/GHSA-8f89-97jx-p2mr/GHSA-8f89-97jx-p2mr.json index 0e46e4b574f..bda37c7d591 100644 --- a/advisories/unreviewed/2022/12/GHSA-8f89-97jx-p2mr/GHSA-8f89-97jx-p2mr.json +++ b/advisories/unreviewed/2022/12/GHSA-8f89-97jx-p2mr/GHSA-8f89-97jx-p2mr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-99q8-vx6j-mp2j/GHSA-99q8-vx6j-mp2j.json b/advisories/unreviewed/2022/12/GHSA-99q8-vx6j-mp2j/GHSA-99q8-vx6j-mp2j.json index 88311c27c78..c149881f9e1 100644 --- a/advisories/unreviewed/2022/12/GHSA-99q8-vx6j-mp2j/GHSA-99q8-vx6j-mp2j.json +++ b/advisories/unreviewed/2022/12/GHSA-99q8-vx6j-mp2j/GHSA-99q8-vx6j-mp2j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-f4xh-rq7m-p6vw/GHSA-f4xh-rq7m-p6vw.json b/advisories/unreviewed/2022/12/GHSA-f4xh-rq7m-p6vw/GHSA-f4xh-rq7m-p6vw.json index dd8bd483cb0..800c24451b2 100644 --- a/advisories/unreviewed/2022/12/GHSA-f4xh-rq7m-p6vw/GHSA-f4xh-rq7m-p6vw.json +++ b/advisories/unreviewed/2022/12/GHSA-f4xh-rq7m-p6vw/GHSA-f4xh-rq7m-p6vw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-f9hc-99c8-4w8v/GHSA-f9hc-99c8-4w8v.json b/advisories/unreviewed/2022/12/GHSA-f9hc-99c8-4w8v/GHSA-f9hc-99c8-4w8v.json index e1c29b6a903..8c526933f28 100644 --- a/advisories/unreviewed/2022/12/GHSA-f9hc-99c8-4w8v/GHSA-f9hc-99c8-4w8v.json +++ b/advisories/unreviewed/2022/12/GHSA-f9hc-99c8-4w8v/GHSA-f9hc-99c8-4w8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-fgq6-pccx-g2c5/GHSA-fgq6-pccx-g2c5.json b/advisories/unreviewed/2022/12/GHSA-fgq6-pccx-g2c5/GHSA-fgq6-pccx-g2c5.json index 2dd33cb52cb..f12604e13e0 100644 --- a/advisories/unreviewed/2022/12/GHSA-fgq6-pccx-g2c5/GHSA-fgq6-pccx-g2c5.json +++ b/advisories/unreviewed/2022/12/GHSA-fgq6-pccx-g2c5/GHSA-fgq6-pccx-g2c5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-gpvj-w4qp-hf4h/GHSA-gpvj-w4qp-hf4h.json b/advisories/unreviewed/2022/12/GHSA-gpvj-w4qp-hf4h/GHSA-gpvj-w4qp-hf4h.json index 116637e7736..861b731398e 100644 --- a/advisories/unreviewed/2022/12/GHSA-gpvj-w4qp-hf4h/GHSA-gpvj-w4qp-hf4h.json +++ b/advisories/unreviewed/2022/12/GHSA-gpvj-w4qp-hf4h/GHSA-gpvj-w4qp-hf4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-h6q2-mr65-7f6r/GHSA-h6q2-mr65-7f6r.json b/advisories/unreviewed/2022/12/GHSA-h6q2-mr65-7f6r/GHSA-h6q2-mr65-7f6r.json index 886587f4358..28d0b96933a 100644 --- a/advisories/unreviewed/2022/12/GHSA-h6q2-mr65-7f6r/GHSA-h6q2-mr65-7f6r.json +++ b/advisories/unreviewed/2022/12/GHSA-h6q2-mr65-7f6r/GHSA-h6q2-mr65-7f6r.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-j78g-f5h3-2mxj/GHSA-j78g-f5h3-2mxj.json b/advisories/unreviewed/2022/12/GHSA-j78g-f5h3-2mxj/GHSA-j78g-f5h3-2mxj.json index 05f93e21def..38c7c8d8521 100644 --- a/advisories/unreviewed/2022/12/GHSA-j78g-f5h3-2mxj/GHSA-j78g-f5h3-2mxj.json +++ b/advisories/unreviewed/2022/12/GHSA-j78g-f5h3-2mxj/GHSA-j78g-f5h3-2mxj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-m23v-hgg6-w9r5/GHSA-m23v-hgg6-w9r5.json b/advisories/unreviewed/2022/12/GHSA-m23v-hgg6-w9r5/GHSA-m23v-hgg6-w9r5.json index fed57ee4d88..10f0d5eaa08 100644 --- a/advisories/unreviewed/2022/12/GHSA-m23v-hgg6-w9r5/GHSA-m23v-hgg6-w9r5.json +++ b/advisories/unreviewed/2022/12/GHSA-m23v-hgg6-w9r5/GHSA-m23v-hgg6-w9r5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-m346-ch57-hx46/GHSA-m346-ch57-hx46.json b/advisories/unreviewed/2022/12/GHSA-m346-ch57-hx46/GHSA-m346-ch57-hx46.json index 356937d5ce5..8dd562654dc 100644 --- a/advisories/unreviewed/2022/12/GHSA-m346-ch57-hx46/GHSA-m346-ch57-hx46.json +++ b/advisories/unreviewed/2022/12/GHSA-m346-ch57-hx46/GHSA-m346-ch57-hx46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-m5qp-6w9p-wxvm/GHSA-m5qp-6w9p-wxvm.json b/advisories/unreviewed/2022/12/GHSA-m5qp-6w9p-wxvm/GHSA-m5qp-6w9p-wxvm.json index 5dd41d7fe7a..5d3f23f0152 100644 --- a/advisories/unreviewed/2022/12/GHSA-m5qp-6w9p-wxvm/GHSA-m5qp-6w9p-wxvm.json +++ b/advisories/unreviewed/2022/12/GHSA-m5qp-6w9p-wxvm/GHSA-m5qp-6w9p-wxvm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-m8hw-pv72-59w3/GHSA-m8hw-pv72-59w3.json b/advisories/unreviewed/2022/12/GHSA-m8hw-pv72-59w3/GHSA-m8hw-pv72-59w3.json index 92300aea174..450cdcdda33 100644 --- a/advisories/unreviewed/2022/12/GHSA-m8hw-pv72-59w3/GHSA-m8hw-pv72-59w3.json +++ b/advisories/unreviewed/2022/12/GHSA-m8hw-pv72-59w3/GHSA-m8hw-pv72-59w3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-mj8c-5prm-5hh6/GHSA-mj8c-5prm-5hh6.json b/advisories/unreviewed/2022/12/GHSA-mj8c-5prm-5hh6/GHSA-mj8c-5prm-5hh6.json index 3e51a981334..6de034c3cfe 100644 --- a/advisories/unreviewed/2022/12/GHSA-mj8c-5prm-5hh6/GHSA-mj8c-5prm-5hh6.json +++ b/advisories/unreviewed/2022/12/GHSA-mj8c-5prm-5hh6/GHSA-mj8c-5prm-5hh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-p56p-4vc2-3g3x/GHSA-p56p-4vc2-3g3x.json b/advisories/unreviewed/2022/12/GHSA-p56p-4vc2-3g3x/GHSA-p56p-4vc2-3g3x.json index 7bb2e188a43..b44623c2594 100644 --- a/advisories/unreviewed/2022/12/GHSA-p56p-4vc2-3g3x/GHSA-p56p-4vc2-3g3x.json +++ b/advisories/unreviewed/2022/12/GHSA-p56p-4vc2-3g3x/GHSA-p56p-4vc2-3g3x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-pw6c-r6x2-3p8v/GHSA-pw6c-r6x2-3p8v.json b/advisories/unreviewed/2022/12/GHSA-pw6c-r6x2-3p8v/GHSA-pw6c-r6x2-3p8v.json index 8857a2147aa..f7780fc1fe3 100644 --- a/advisories/unreviewed/2022/12/GHSA-pw6c-r6x2-3p8v/GHSA-pw6c-r6x2-3p8v.json +++ b/advisories/unreviewed/2022/12/GHSA-pw6c-r6x2-3p8v/GHSA-pw6c-r6x2-3p8v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-qqf9-6fgx-x2hm/GHSA-qqf9-6fgx-x2hm.json b/advisories/unreviewed/2022/12/GHSA-qqf9-6fgx-x2hm/GHSA-qqf9-6fgx-x2hm.json index a95e55e1ba2..0f26174578e 100644 --- a/advisories/unreviewed/2022/12/GHSA-qqf9-6fgx-x2hm/GHSA-qqf9-6fgx-x2hm.json +++ b/advisories/unreviewed/2022/12/GHSA-qqf9-6fgx-x2hm/GHSA-qqf9-6fgx-x2hm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-qqjv-33vr-vjwh/GHSA-qqjv-33vr-vjwh.json b/advisories/unreviewed/2022/12/GHSA-qqjv-33vr-vjwh/GHSA-qqjv-33vr-vjwh.json index bedddbb8f9a..c274ae7e35e 100644 --- a/advisories/unreviewed/2022/12/GHSA-qqjv-33vr-vjwh/GHSA-qqjv-33vr-vjwh.json +++ b/advisories/unreviewed/2022/12/GHSA-qqjv-33vr-vjwh/GHSA-qqjv-33vr-vjwh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-rg3m-gff2-84gm/GHSA-rg3m-gff2-84gm.json b/advisories/unreviewed/2022/12/GHSA-rg3m-gff2-84gm/GHSA-rg3m-gff2-84gm.json index 7467ceca391..ade332d36a6 100644 --- a/advisories/unreviewed/2022/12/GHSA-rg3m-gff2-84gm/GHSA-rg3m-gff2-84gm.json +++ b/advisories/unreviewed/2022/12/GHSA-rg3m-gff2-84gm/GHSA-rg3m-gff2-84gm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-x54c-wvwr-mxp3/GHSA-x54c-wvwr-mxp3.json b/advisories/unreviewed/2022/12/GHSA-x54c-wvwr-mxp3/GHSA-x54c-wvwr-mxp3.json index e15525e6eb1..19d7e67dbeb 100644 --- a/advisories/unreviewed/2022/12/GHSA-x54c-wvwr-mxp3/GHSA-x54c-wvwr-mxp3.json +++ b/advisories/unreviewed/2022/12/GHSA-x54c-wvwr-mxp3/GHSA-x54c-wvwr-mxp3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-xc7c-c2g3-58v4/GHSA-xc7c-c2g3-58v4.json b/advisories/unreviewed/2022/12/GHSA-xc7c-c2g3-58v4/GHSA-xc7c-c2g3-58v4.json index 50dd83b2253..919b7229257 100644 --- a/advisories/unreviewed/2022/12/GHSA-xc7c-c2g3-58v4/GHSA-xc7c-c2g3-58v4.json +++ b/advisories/unreviewed/2022/12/GHSA-xc7c-c2g3-58v4/GHSA-xc7c-c2g3-58v4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-xfp3-4xff-2988/GHSA-xfp3-4xff-2988.json b/advisories/unreviewed/2022/12/GHSA-xfp3-4xff-2988/GHSA-xfp3-4xff-2988.json index 9ade0be7e51..a37505a70c3 100644 --- a/advisories/unreviewed/2022/12/GHSA-xfp3-4xff-2988/GHSA-xfp3-4xff-2988.json +++ b/advisories/unreviewed/2022/12/GHSA-xfp3-4xff-2988/GHSA-xfp3-4xff-2988.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-xqr7-fvpx-w934/GHSA-xqr7-fvpx-w934.json b/advisories/unreviewed/2022/12/GHSA-xqr7-fvpx-w934/GHSA-xqr7-fvpx-w934.json index 2f5b0f1b9d5..04aec61a9d3 100644 --- a/advisories/unreviewed/2022/12/GHSA-xqr7-fvpx-w934/GHSA-xqr7-fvpx-w934.json +++ b/advisories/unreviewed/2022/12/GHSA-xqr7-fvpx-w934/GHSA-xqr7-fvpx-w934.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2022/12/GHSA-xw87-v2j3-vcw2/GHSA-xw87-v2j3-vcw2.json b/advisories/unreviewed/2022/12/GHSA-xw87-v2j3-vcw2/GHSA-xw87-v2j3-vcw2.json index f6c3efe955d..407341655aa 100644 --- a/advisories/unreviewed/2022/12/GHSA-xw87-v2j3-vcw2/GHSA-xw87-v2j3-vcw2.json +++ b/advisories/unreviewed/2022/12/GHSA-xw87-v2j3-vcw2/GHSA-xw87-v2j3-vcw2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2022/12/GHSA-xwwv-5grh-2769/GHSA-xwwv-5grh-2769.json b/advisories/unreviewed/2022/12/GHSA-xwwv-5grh-2769/GHSA-xwwv-5grh-2769.json index 769232da8f3..c6f2e579d1d 100644 --- a/advisories/unreviewed/2022/12/GHSA-xwwv-5grh-2769/GHSA-xwwv-5grh-2769.json +++ b/advisories/unreviewed/2022/12/GHSA-xwwv-5grh-2769/GHSA-xwwv-5grh-2769.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-2hw9-m765-6g54/GHSA-2hw9-m765-6g54.json b/advisories/unreviewed/2023/01/GHSA-2hw9-m765-6g54/GHSA-2hw9-m765-6g54.json index db253d5a3c1..b1c397d3d33 100644 --- a/advisories/unreviewed/2023/01/GHSA-2hw9-m765-6g54/GHSA-2hw9-m765-6g54.json +++ b/advisories/unreviewed/2023/01/GHSA-2hw9-m765-6g54/GHSA-2hw9-m765-6g54.json @@ -7,12 +7,8 @@ "CVE-2022-44541" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-3hx3-6qpf-m689/GHSA-3hx3-6qpf-m689.json b/advisories/unreviewed/2023/01/GHSA-3hx3-6qpf-m689/GHSA-3hx3-6qpf-m689.json index 26f85462c7c..b74e7d8c91f 100644 --- a/advisories/unreviewed/2023/01/GHSA-3hx3-6qpf-m689/GHSA-3hx3-6qpf-m689.json +++ b/advisories/unreviewed/2023/01/GHSA-3hx3-6qpf-m689/GHSA-3hx3-6qpf-m689.json @@ -7,12 +7,8 @@ "CVE-2022-44536" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-3wgv-24f6-hqhj/GHSA-3wgv-24f6-hqhj.json b/advisories/unreviewed/2023/01/GHSA-3wgv-24f6-hqhj/GHSA-3wgv-24f6-hqhj.json index d009f15897f..d9b24d25537 100644 --- a/advisories/unreviewed/2023/01/GHSA-3wgv-24f6-hqhj/GHSA-3wgv-24f6-hqhj.json +++ b/advisories/unreviewed/2023/01/GHSA-3wgv-24f6-hqhj/GHSA-3wgv-24f6-hqhj.json @@ -7,12 +7,8 @@ "CVE-2021-41008" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-482j-mvp7-j286/GHSA-482j-mvp7-j286.json b/advisories/unreviewed/2023/01/GHSA-482j-mvp7-j286/GHSA-482j-mvp7-j286.json index 415fd909260..77c917bafa1 100644 --- a/advisories/unreviewed/2023/01/GHSA-482j-mvp7-j286/GHSA-482j-mvp7-j286.json +++ b/advisories/unreviewed/2023/01/GHSA-482j-mvp7-j286/GHSA-482j-mvp7-j286.json @@ -7,12 +7,8 @@ "CVE-2022-44539" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-6pv3-4wf2-xvrf/GHSA-6pv3-4wf2-xvrf.json b/advisories/unreviewed/2023/01/GHSA-6pv3-4wf2-xvrf/GHSA-6pv3-4wf2-xvrf.json index 280ad9f54ec..2a13f872906 100644 --- a/advisories/unreviewed/2023/01/GHSA-6pv3-4wf2-xvrf/GHSA-6pv3-4wf2-xvrf.json +++ b/advisories/unreviewed/2023/01/GHSA-6pv3-4wf2-xvrf/GHSA-6pv3-4wf2-xvrf.json @@ -7,12 +7,8 @@ "CVE-2021-41009" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-796v-r7jq-x526/GHSA-796v-r7jq-x526.json b/advisories/unreviewed/2023/01/GHSA-796v-r7jq-x526/GHSA-796v-r7jq-x526.json index c11190dba0e..473fd244390 100644 --- a/advisories/unreviewed/2023/01/GHSA-796v-r7jq-x526/GHSA-796v-r7jq-x526.json +++ b/advisories/unreviewed/2023/01/GHSA-796v-r7jq-x526/GHSA-796v-r7jq-x526.json @@ -7,12 +7,8 @@ "CVE-2021-41010" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-fwww-25fm-p27m/GHSA-fwww-25fm-p27m.json b/advisories/unreviewed/2023/01/GHSA-fwww-25fm-p27m/GHSA-fwww-25fm-p27m.json index 8408f45329e..56a301c5277 100644 --- a/advisories/unreviewed/2023/01/GHSA-fwww-25fm-p27m/GHSA-fwww-25fm-p27m.json +++ b/advisories/unreviewed/2023/01/GHSA-fwww-25fm-p27m/GHSA-fwww-25fm-p27m.json @@ -7,12 +7,8 @@ "CVE-2022-44538" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-m3v9-92vc-xc79/GHSA-m3v9-92vc-xc79.json b/advisories/unreviewed/2023/01/GHSA-m3v9-92vc-xc79/GHSA-m3v9-92vc-xc79.json index aef23920292..223533fdc33 100644 --- a/advisories/unreviewed/2023/01/GHSA-m3v9-92vc-xc79/GHSA-m3v9-92vc-xc79.json +++ b/advisories/unreviewed/2023/01/GHSA-m3v9-92vc-xc79/GHSA-m3v9-92vc-xc79.json @@ -7,12 +7,8 @@ "CVE-2022-44540" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-r34j-975m-g8f3/GHSA-r34j-975m-g8f3.json b/advisories/unreviewed/2023/01/GHSA-r34j-975m-g8f3/GHSA-r34j-975m-g8f3.json index 846fd85fcb2..2fcfd8073f3 100644 --- a/advisories/unreviewed/2023/01/GHSA-r34j-975m-g8f3/GHSA-r34j-975m-g8f3.json +++ b/advisories/unreviewed/2023/01/GHSA-r34j-975m-g8f3/GHSA-r34j-975m-g8f3.json @@ -7,12 +7,8 @@ "CVE-2021-41007" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-v2c8-m646-2q5c/GHSA-v2c8-m646-2q5c.json b/advisories/unreviewed/2023/01/GHSA-v2c8-m646-2q5c/GHSA-v2c8-m646-2q5c.json index 3310f503ad6..73ae4b17aec 100644 --- a/advisories/unreviewed/2023/01/GHSA-v2c8-m646-2q5c/GHSA-v2c8-m646-2q5c.json +++ b/advisories/unreviewed/2023/01/GHSA-v2c8-m646-2q5c/GHSA-v2c8-m646-2q5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/01/GHSA-w642-wq92-8jp9/GHSA-w642-wq92-8jp9.json b/advisories/unreviewed/2023/01/GHSA-w642-wq92-8jp9/GHSA-w642-wq92-8jp9.json index be1f1afad8f..90c4a158522 100644 --- a/advisories/unreviewed/2023/01/GHSA-w642-wq92-8jp9/GHSA-w642-wq92-8jp9.json +++ b/advisories/unreviewed/2023/01/GHSA-w642-wq92-8jp9/GHSA-w642-wq92-8jp9.json @@ -7,12 +7,8 @@ "CVE-2022-44537" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-www5-w37x-2fph/GHSA-www5-w37x-2fph.json b/advisories/unreviewed/2023/01/GHSA-www5-w37x-2fph/GHSA-www5-w37x-2fph.json index 1346ff2a1cd..ed5dedecae0 100644 --- a/advisories/unreviewed/2023/01/GHSA-www5-w37x-2fph/GHSA-www5-w37x-2fph.json +++ b/advisories/unreviewed/2023/01/GHSA-www5-w37x-2fph/GHSA-www5-w37x-2fph.json @@ -7,12 +7,8 @@ "CVE-2021-41006" ], "details": "CVE was unused by HPE.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -20,9 +16,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/01/GHSA-xvg3-q6r5-8fhf/GHSA-xvg3-q6r5-8fhf.json b/advisories/unreviewed/2023/01/GHSA-xvg3-q6r5-8fhf/GHSA-xvg3-q6r5-8fhf.json index 2cde851d666..efd25538c53 100644 --- a/advisories/unreviewed/2023/01/GHSA-xvg3-q6r5-8fhf/GHSA-xvg3-q6r5-8fhf.json +++ b/advisories/unreviewed/2023/01/GHSA-xvg3-q6r5-8fhf/GHSA-xvg3-q6r5-8fhf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-28m7-9rvj-93mc/GHSA-28m7-9rvj-93mc.json b/advisories/unreviewed/2023/02/GHSA-28m7-9rvj-93mc/GHSA-28m7-9rvj-93mc.json index 4f3f990b5e9..98dc007d68b 100644 --- a/advisories/unreviewed/2023/02/GHSA-28m7-9rvj-93mc/GHSA-28m7-9rvj-93mc.json +++ b/advisories/unreviewed/2023/02/GHSA-28m7-9rvj-93mc/GHSA-28m7-9rvj-93mc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-2h2r-cg5q-pf39/GHSA-2h2r-cg5q-pf39.json b/advisories/unreviewed/2023/02/GHSA-2h2r-cg5q-pf39/GHSA-2h2r-cg5q-pf39.json index e6059ef86b3..4dc6e710a48 100644 --- a/advisories/unreviewed/2023/02/GHSA-2h2r-cg5q-pf39/GHSA-2h2r-cg5q-pf39.json +++ b/advisories/unreviewed/2023/02/GHSA-2h2r-cg5q-pf39/GHSA-2h2r-cg5q-pf39.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-53j7-jmxr-99h7/GHSA-53j7-jmxr-99h7.json b/advisories/unreviewed/2023/02/GHSA-53j7-jmxr-99h7/GHSA-53j7-jmxr-99h7.json index 85d96ea1407..22b149ffe31 100644 --- a/advisories/unreviewed/2023/02/GHSA-53j7-jmxr-99h7/GHSA-53j7-jmxr-99h7.json +++ b/advisories/unreviewed/2023/02/GHSA-53j7-jmxr-99h7/GHSA-53j7-jmxr-99h7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-5xp3-fjrr-vv46/GHSA-5xp3-fjrr-vv46.json b/advisories/unreviewed/2023/02/GHSA-5xp3-fjrr-vv46/GHSA-5xp3-fjrr-vv46.json index 5c268562456..176a1e20c8d 100644 --- a/advisories/unreviewed/2023/02/GHSA-5xp3-fjrr-vv46/GHSA-5xp3-fjrr-vv46.json +++ b/advisories/unreviewed/2023/02/GHSA-5xp3-fjrr-vv46/GHSA-5xp3-fjrr-vv46.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-936c-g8cx-9648/GHSA-936c-g8cx-9648.json b/advisories/unreviewed/2023/02/GHSA-936c-g8cx-9648/GHSA-936c-g8cx-9648.json index 38c2f481b6d..897e49fb12a 100644 --- a/advisories/unreviewed/2023/02/GHSA-936c-g8cx-9648/GHSA-936c-g8cx-9648.json +++ b/advisories/unreviewed/2023/02/GHSA-936c-g8cx-9648/GHSA-936c-g8cx-9648.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-9wj6-jwh4-mxcv/GHSA-9wj6-jwh4-mxcv.json b/advisories/unreviewed/2023/02/GHSA-9wj6-jwh4-mxcv/GHSA-9wj6-jwh4-mxcv.json index 2526fa206bf..f1968b763bc 100644 --- a/advisories/unreviewed/2023/02/GHSA-9wj6-jwh4-mxcv/GHSA-9wj6-jwh4-mxcv.json +++ b/advisories/unreviewed/2023/02/GHSA-9wj6-jwh4-mxcv/GHSA-9wj6-jwh4-mxcv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-j8m5-chrv-m4wv/GHSA-j8m5-chrv-m4wv.json b/advisories/unreviewed/2023/02/GHSA-j8m5-chrv-m4wv/GHSA-j8m5-chrv-m4wv.json index 59da3349df3..9821a63ca13 100644 --- a/advisories/unreviewed/2023/02/GHSA-j8m5-chrv-m4wv/GHSA-j8m5-chrv-m4wv.json +++ b/advisories/unreviewed/2023/02/GHSA-j8m5-chrv-m4wv/GHSA-j8m5-chrv-m4wv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-mq4p-gw24-jjjr/GHSA-mq4p-gw24-jjjr.json b/advisories/unreviewed/2023/02/GHSA-mq4p-gw24-jjjr/GHSA-mq4p-gw24-jjjr.json index 1466a0e0f0d..ff17f1cab8e 100644 --- a/advisories/unreviewed/2023/02/GHSA-mq4p-gw24-jjjr/GHSA-mq4p-gw24-jjjr.json +++ b/advisories/unreviewed/2023/02/GHSA-mq4p-gw24-jjjr/GHSA-mq4p-gw24-jjjr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-qvrq-rvh5-v2x2/GHSA-qvrq-rvh5-v2x2.json b/advisories/unreviewed/2023/02/GHSA-qvrq-rvh5-v2x2/GHSA-qvrq-rvh5-v2x2.json index 94dd76c848f..8b57b29a7e1 100644 --- a/advisories/unreviewed/2023/02/GHSA-qvrq-rvh5-v2x2/GHSA-qvrq-rvh5-v2x2.json +++ b/advisories/unreviewed/2023/02/GHSA-qvrq-rvh5-v2x2/GHSA-qvrq-rvh5-v2x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-rhm4-pxh6-wp23/GHSA-rhm4-pxh6-wp23.json b/advisories/unreviewed/2023/02/GHSA-rhm4-pxh6-wp23/GHSA-rhm4-pxh6-wp23.json index 423fa5e98a9..a755b9b6287 100644 --- a/advisories/unreviewed/2023/02/GHSA-rhm4-pxh6-wp23/GHSA-rhm4-pxh6-wp23.json +++ b/advisories/unreviewed/2023/02/GHSA-rhm4-pxh6-wp23/GHSA-rhm4-pxh6-wp23.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/02/GHSA-x34g-7f63-j8qp/GHSA-x34g-7f63-j8qp.json b/advisories/unreviewed/2023/02/GHSA-x34g-7f63-j8qp/GHSA-x34g-7f63-j8qp.json index 8058fbb914e..f647848ab7a 100644 --- a/advisories/unreviewed/2023/02/GHSA-x34g-7f63-j8qp/GHSA-x34g-7f63-j8qp.json +++ b/advisories/unreviewed/2023/02/GHSA-x34g-7f63-j8qp/GHSA-x34g-7f63-j8qp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-x6gx-2wvr-2vpf/GHSA-x6gx-2wvr-2vpf.json b/advisories/unreviewed/2023/02/GHSA-x6gx-2wvr-2vpf/GHSA-x6gx-2wvr-2vpf.json index 5930015bbe3..776967869e2 100644 --- a/advisories/unreviewed/2023/02/GHSA-x6gx-2wvr-2vpf/GHSA-x6gx-2wvr-2vpf.json +++ b/advisories/unreviewed/2023/02/GHSA-x6gx-2wvr-2vpf/GHSA-x6gx-2wvr-2vpf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/02/GHSA-xm7w-3679-c8gp/GHSA-xm7w-3679-c8gp.json b/advisories/unreviewed/2023/02/GHSA-xm7w-3679-c8gp/GHSA-xm7w-3679-c8gp.json index 33cc8661be4..916a7dbdcfe 100644 --- a/advisories/unreviewed/2023/02/GHSA-xm7w-3679-c8gp/GHSA-xm7w-3679-c8gp.json +++ b/advisories/unreviewed/2023/02/GHSA-xm7w-3679-c8gp/GHSA-xm7w-3679-c8gp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-297g-672r-7mgh/GHSA-297g-672r-7mgh.json b/advisories/unreviewed/2023/03/GHSA-297g-672r-7mgh/GHSA-297g-672r-7mgh.json index 26124ef282d..bf5cd3f6491 100644 --- a/advisories/unreviewed/2023/03/GHSA-297g-672r-7mgh/GHSA-297g-672r-7mgh.json +++ b/advisories/unreviewed/2023/03/GHSA-297g-672r-7mgh/GHSA-297g-672r-7mgh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-4f5c-477m-3p63/GHSA-4f5c-477m-3p63.json b/advisories/unreviewed/2023/03/GHSA-4f5c-477m-3p63/GHSA-4f5c-477m-3p63.json index 8094db01e4f..3317d4bcd43 100644 --- a/advisories/unreviewed/2023/03/GHSA-4f5c-477m-3p63/GHSA-4f5c-477m-3p63.json +++ b/advisories/unreviewed/2023/03/GHSA-4f5c-477m-3p63/GHSA-4f5c-477m-3p63.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-5wj8-xj8m-vm2p/GHSA-5wj8-xj8m-vm2p.json b/advisories/unreviewed/2023/03/GHSA-5wj8-xj8m-vm2p/GHSA-5wj8-xj8m-vm2p.json index 25fb8d59f34..c7433439ac2 100644 --- a/advisories/unreviewed/2023/03/GHSA-5wj8-xj8m-vm2p/GHSA-5wj8-xj8m-vm2p.json +++ b/advisories/unreviewed/2023/03/GHSA-5wj8-xj8m-vm2p/GHSA-5wj8-xj8m-vm2p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-94cc-rhf9-48mv/GHSA-94cc-rhf9-48mv.json b/advisories/unreviewed/2023/03/GHSA-94cc-rhf9-48mv/GHSA-94cc-rhf9-48mv.json index afe03480c34..e0182dd9886 100644 --- a/advisories/unreviewed/2023/03/GHSA-94cc-rhf9-48mv/GHSA-94cc-rhf9-48mv.json +++ b/advisories/unreviewed/2023/03/GHSA-94cc-rhf9-48mv/GHSA-94cc-rhf9-48mv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-c676-fgpq-52cf/GHSA-c676-fgpq-52cf.json b/advisories/unreviewed/2023/03/GHSA-c676-fgpq-52cf/GHSA-c676-fgpq-52cf.json index d92438a0c05..1e3e695007e 100644 --- a/advisories/unreviewed/2023/03/GHSA-c676-fgpq-52cf/GHSA-c676-fgpq-52cf.json +++ b/advisories/unreviewed/2023/03/GHSA-c676-fgpq-52cf/GHSA-c676-fgpq-52cf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-cq42-2gfv-949c/GHSA-cq42-2gfv-949c.json b/advisories/unreviewed/2023/03/GHSA-cq42-2gfv-949c/GHSA-cq42-2gfv-949c.json index 703804fd2a8..317837a93c3 100644 --- a/advisories/unreviewed/2023/03/GHSA-cq42-2gfv-949c/GHSA-cq42-2gfv-949c.json +++ b/advisories/unreviewed/2023/03/GHSA-cq42-2gfv-949c/GHSA-cq42-2gfv-949c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-cr28-mcq5-hjmg/GHSA-cr28-mcq5-hjmg.json b/advisories/unreviewed/2023/03/GHSA-cr28-mcq5-hjmg/GHSA-cr28-mcq5-hjmg.json index b13f63a7ae2..c61f88c9d64 100644 --- a/advisories/unreviewed/2023/03/GHSA-cr28-mcq5-hjmg/GHSA-cr28-mcq5-hjmg.json +++ b/advisories/unreviewed/2023/03/GHSA-cr28-mcq5-hjmg/GHSA-cr28-mcq5-hjmg.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-ffx9-rf8p-2px9/GHSA-ffx9-rf8p-2px9.json b/advisories/unreviewed/2023/03/GHSA-ffx9-rf8p-2px9/GHSA-ffx9-rf8p-2px9.json index 9aba03aab57..8aa86205967 100644 --- a/advisories/unreviewed/2023/03/GHSA-ffx9-rf8p-2px9/GHSA-ffx9-rf8p-2px9.json +++ b/advisories/unreviewed/2023/03/GHSA-ffx9-rf8p-2px9/GHSA-ffx9-rf8p-2px9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-gjmx-fc7p-8h6w/GHSA-gjmx-fc7p-8h6w.json b/advisories/unreviewed/2023/03/GHSA-gjmx-fc7p-8h6w/GHSA-gjmx-fc7p-8h6w.json index 89db7838693..c7680cfc1f8 100644 --- a/advisories/unreviewed/2023/03/GHSA-gjmx-fc7p-8h6w/GHSA-gjmx-fc7p-8h6w.json +++ b/advisories/unreviewed/2023/03/GHSA-gjmx-fc7p-8h6w/GHSA-gjmx-fc7p-8h6w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-j678-qc3p-928v/GHSA-j678-qc3p-928v.json b/advisories/unreviewed/2023/03/GHSA-j678-qc3p-928v/GHSA-j678-qc3p-928v.json index 08004979e52..edb67d7b646 100644 --- a/advisories/unreviewed/2023/03/GHSA-j678-qc3p-928v/GHSA-j678-qc3p-928v.json +++ b/advisories/unreviewed/2023/03/GHSA-j678-qc3p-928v/GHSA-j678-qc3p-928v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-jmc8-jw39-cq2w/GHSA-jmc8-jw39-cq2w.json b/advisories/unreviewed/2023/03/GHSA-jmc8-jw39-cq2w/GHSA-jmc8-jw39-cq2w.json index 5d1efa22319..e4f29f221c8 100644 --- a/advisories/unreviewed/2023/03/GHSA-jmc8-jw39-cq2w/GHSA-jmc8-jw39-cq2w.json +++ b/advisories/unreviewed/2023/03/GHSA-jmc8-jw39-cq2w/GHSA-jmc8-jw39-cq2w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-prwq-63mh-jrg8/GHSA-prwq-63mh-jrg8.json b/advisories/unreviewed/2023/03/GHSA-prwq-63mh-jrg8/GHSA-prwq-63mh-jrg8.json index 59b5966653d..3343f5ffbb1 100644 --- a/advisories/unreviewed/2023/03/GHSA-prwq-63mh-jrg8/GHSA-prwq-63mh-jrg8.json +++ b/advisories/unreviewed/2023/03/GHSA-prwq-63mh-jrg8/GHSA-prwq-63mh-jrg8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-v6rp-x972-g5w7/GHSA-v6rp-x972-g5w7.json b/advisories/unreviewed/2023/03/GHSA-v6rp-x972-g5w7/GHSA-v6rp-x972-g5w7.json index e0e7f524189..ed610abcc31 100644 --- a/advisories/unreviewed/2023/03/GHSA-v6rp-x972-g5w7/GHSA-v6rp-x972-g5w7.json +++ b/advisories/unreviewed/2023/03/GHSA-v6rp-x972-g5w7/GHSA-v6rp-x972-g5w7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-vxpc-466w-pjjv/GHSA-vxpc-466w-pjjv.json b/advisories/unreviewed/2023/03/GHSA-vxpc-466w-pjjv/GHSA-vxpc-466w-pjjv.json index 3bfffdc63e6..5166dd43aa5 100644 --- a/advisories/unreviewed/2023/03/GHSA-vxpc-466w-pjjv/GHSA-vxpc-466w-pjjv.json +++ b/advisories/unreviewed/2023/03/GHSA-vxpc-466w-pjjv/GHSA-vxpc-466w-pjjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/03/GHSA-wqm8-3q2f-cr4h/GHSA-wqm8-3q2f-cr4h.json b/advisories/unreviewed/2023/03/GHSA-wqm8-3q2f-cr4h/GHSA-wqm8-3q2f-cr4h.json index 00dc4f1f7ce..41c91e0717e 100644 --- a/advisories/unreviewed/2023/03/GHSA-wqm8-3q2f-cr4h/GHSA-wqm8-3q2f-cr4h.json +++ b/advisories/unreviewed/2023/03/GHSA-wqm8-3q2f-cr4h/GHSA-wqm8-3q2f-cr4h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-wvpm-ghgg-c733/GHSA-wvpm-ghgg-c733.json b/advisories/unreviewed/2023/03/GHSA-wvpm-ghgg-c733/GHSA-wvpm-ghgg-c733.json index f9d5f1c5d10..81aa37c336e 100644 --- a/advisories/unreviewed/2023/03/GHSA-wvpm-ghgg-c733/GHSA-wvpm-ghgg-c733.json +++ b/advisories/unreviewed/2023/03/GHSA-wvpm-ghgg-c733/GHSA-wvpm-ghgg-c733.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/03/GHSA-x2w5-7wp4-5qff/GHSA-x2w5-7wp4-5qff.json b/advisories/unreviewed/2023/03/GHSA-x2w5-7wp4-5qff/GHSA-x2w5-7wp4-5qff.json index 9aae792e972..0544fafc296 100644 --- a/advisories/unreviewed/2023/03/GHSA-x2w5-7wp4-5qff/GHSA-x2w5-7wp4-5qff.json +++ b/advisories/unreviewed/2023/03/GHSA-x2w5-7wp4-5qff/GHSA-x2w5-7wp4-5qff.json @@ -7,12 +7,8 @@ "CVE-2023-24532" ], "details": "The ScalarMult and ScalarBaseMult methods of the P256 Curve may return an incorrect result if called with some specific unreduced scalars (a scalar larger than the order of the curve). This does not impact usages of crypto/ecdsa or crypto/ecdh.", - "severity": [ - - ], - "affected": [ - - ], + "severity": [], + "affected": [], "references": [ { "type": "ADVISORY", @@ -36,9 +32,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": null, "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json b/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json index d6a960b9123..547a869fca9 100644 --- a/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json +++ b/advisories/unreviewed/2023/04/GHSA-pwx9-2gvj-242v/GHSA-pwx9-2gvj-242v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/05/GHSA-36r6-mm7x-rqmm/GHSA-36r6-mm7x-rqmm.json b/advisories/unreviewed/2023/05/GHSA-36r6-mm7x-rqmm/GHSA-36r6-mm7x-rqmm.json index b1015c61e72..a136b855cf2 100644 --- a/advisories/unreviewed/2023/05/GHSA-36r6-mm7x-rqmm/GHSA-36r6-mm7x-rqmm.json +++ b/advisories/unreviewed/2023/05/GHSA-36r6-mm7x-rqmm/GHSA-36r6-mm7x-rqmm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/05/GHSA-p863-pfvf-chpw/GHSA-p863-pfvf-chpw.json b/advisories/unreviewed/2023/05/GHSA-p863-pfvf-chpw/GHSA-p863-pfvf-chpw.json index 7a03ed3878b..bc2d936228b 100644 --- a/advisories/unreviewed/2023/05/GHSA-p863-pfvf-chpw/GHSA-p863-pfvf-chpw.json +++ b/advisories/unreviewed/2023/05/GHSA-p863-pfvf-chpw/GHSA-p863-pfvf-chpw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/05/GHSA-ppf9-f28m-8wvh/GHSA-ppf9-f28m-8wvh.json b/advisories/unreviewed/2023/05/GHSA-ppf9-f28m-8wvh/GHSA-ppf9-f28m-8wvh.json index c2b549a51f9..beec1f85277 100644 --- a/advisories/unreviewed/2023/05/GHSA-ppf9-f28m-8wvh/GHSA-ppf9-f28m-8wvh.json +++ b/advisories/unreviewed/2023/05/GHSA-ppf9-f28m-8wvh/GHSA-ppf9-f28m-8wvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-6474-3m8h-q35j/GHSA-6474-3m8h-q35j.json b/advisories/unreviewed/2023/06/GHSA-6474-3m8h-q35j/GHSA-6474-3m8h-q35j.json index f047c6fcd86..13d716b0263 100644 --- a/advisories/unreviewed/2023/06/GHSA-6474-3m8h-q35j/GHSA-6474-3m8h-q35j.json +++ b/advisories/unreviewed/2023/06/GHSA-6474-3m8h-q35j/GHSA-6474-3m8h-q35j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-rf67-fgh6-8jjv/GHSA-rf67-fgh6-8jjv.json b/advisories/unreviewed/2023/06/GHSA-rf67-fgh6-8jjv/GHSA-rf67-fgh6-8jjv.json index 223bd43aec2..df688c44d82 100644 --- a/advisories/unreviewed/2023/06/GHSA-rf67-fgh6-8jjv/GHSA-rf67-fgh6-8jjv.json +++ b/advisories/unreviewed/2023/06/GHSA-rf67-fgh6-8jjv/GHSA-rf67-fgh6-8jjv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/06/GHSA-v5wr-22jp-335p/GHSA-v5wr-22jp-335p.json b/advisories/unreviewed/2023/06/GHSA-v5wr-22jp-335p/GHSA-v5wr-22jp-335p.json index f4aeee196dd..464fb271663 100644 --- a/advisories/unreviewed/2023/06/GHSA-v5wr-22jp-335p/GHSA-v5wr-22jp-335p.json +++ b/advisories/unreviewed/2023/06/GHSA-v5wr-22jp-335p/GHSA-v5wr-22jp-335p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/07/GHSA-9hpj-m9v9-5wvw/GHSA-9hpj-m9v9-5wvw.json b/advisories/unreviewed/2023/07/GHSA-9hpj-m9v9-5wvw/GHSA-9hpj-m9v9-5wvw.json index a55f29896b5..47487b7de2a 100644 --- a/advisories/unreviewed/2023/07/GHSA-9hpj-m9v9-5wvw/GHSA-9hpj-m9v9-5wvw.json +++ b/advisories/unreviewed/2023/07/GHSA-9hpj-m9v9-5wvw/GHSA-9hpj-m9v9-5wvw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -47,9 +45,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/07/GHSA-c36p-x44h-8wcq/GHSA-c36p-x44h-8wcq.json b/advisories/unreviewed/2023/07/GHSA-c36p-x44h-8wcq/GHSA-c36p-x44h-8wcq.json index 63f9ef9621c..29da033e5a3 100644 --- a/advisories/unreviewed/2023/07/GHSA-c36p-x44h-8wcq/GHSA-c36p-x44h-8wcq.json +++ b/advisories/unreviewed/2023/07/GHSA-c36p-x44h-8wcq/GHSA-c36p-x44h-8wcq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/07/GHSA-mw33-48wm-m4r2/GHSA-mw33-48wm-m4r2.json b/advisories/unreviewed/2023/07/GHSA-mw33-48wm-m4r2/GHSA-mw33-48wm-m4r2.json index c628319a60a..de7bbf4d9f1 100644 --- a/advisories/unreviewed/2023/07/GHSA-mw33-48wm-m4r2/GHSA-mw33-48wm-m4r2.json +++ b/advisories/unreviewed/2023/07/GHSA-mw33-48wm-m4r2/GHSA-mw33-48wm-m4r2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/07/GHSA-p276-58r4-6c33/GHSA-p276-58r4-6c33.json b/advisories/unreviewed/2023/07/GHSA-p276-58r4-6c33/GHSA-p276-58r4-6c33.json index b1abab2faeb..20e3c6f6128 100644 --- a/advisories/unreviewed/2023/07/GHSA-p276-58r4-6c33/GHSA-p276-58r4-6c33.json +++ b/advisories/unreviewed/2023/07/GHSA-p276-58r4-6c33/GHSA-p276-58r4-6c33.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "LOW", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/07/GHSA-rgxf-494f-377c/GHSA-rgxf-494f-377c.json b/advisories/unreviewed/2023/07/GHSA-rgxf-494f-377c/GHSA-rgxf-494f-377c.json index 3800a5c76aa..deb585ecd67 100644 --- a/advisories/unreviewed/2023/07/GHSA-rgxf-494f-377c/GHSA-rgxf-494f-377c.json +++ b/advisories/unreviewed/2023/07/GHSA-rgxf-494f-377c/GHSA-rgxf-494f-377c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -43,9 +41,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2023/08/GHSA-m39h-xjmq-4vgf/GHSA-m39h-xjmq-4vgf.json b/advisories/unreviewed/2023/08/GHSA-m39h-xjmq-4vgf/GHSA-m39h-xjmq-4vgf.json index 08d81c10a2c..8ecab3e3f55 100644 --- a/advisories/unreviewed/2023/08/GHSA-m39h-xjmq-4vgf/GHSA-m39h-xjmq-4vgf.json +++ b/advisories/unreviewed/2023/08/GHSA-m39h-xjmq-4vgf/GHSA-m39h-xjmq-4vgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-658q-9r9r-h96x/GHSA-658q-9r9r-h96x.json b/advisories/unreviewed/2023/09/GHSA-658q-9r9r-h96x/GHSA-658q-9r9r-h96x.json index 6adec6c885d..2f13bc779d6 100644 --- a/advisories/unreviewed/2023/09/GHSA-658q-9r9r-h96x/GHSA-658q-9r9r-h96x.json +++ b/advisories/unreviewed/2023/09/GHSA-658q-9r9r-h96x/GHSA-658q-9r9r-h96x.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/09/GHSA-w3hc-fc6c-v6hj/GHSA-w3hc-fc6c-v6hj.json b/advisories/unreviewed/2023/09/GHSA-w3hc-fc6c-v6hj/GHSA-w3hc-fc6c-v6hj.json index 3fd8bca6ee8..6733cdb6255 100644 --- a/advisories/unreviewed/2023/09/GHSA-w3hc-fc6c-v6hj/GHSA-w3hc-fc6c-v6hj.json +++ b/advisories/unreviewed/2023/09/GHSA-w3hc-fc6c-v6hj/GHSA-w3hc-fc6c-v6hj.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-62f9-v4fv-rw5h/GHSA-62f9-v4fv-rw5h.json b/advisories/unreviewed/2023/10/GHSA-62f9-v4fv-rw5h/GHSA-62f9-v4fv-rw5h.json index 2d7cf34a78e..373f67bcd6a 100644 --- a/advisories/unreviewed/2023/10/GHSA-62f9-v4fv-rw5h/GHSA-62f9-v4fv-rw5h.json +++ b/advisories/unreviewed/2023/10/GHSA-62f9-v4fv-rw5h/GHSA-62f9-v4fv-rw5h.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-g5q7-xv5f-9xr9/GHSA-g5q7-xv5f-9xr9.json b/advisories/unreviewed/2023/10/GHSA-g5q7-xv5f-9xr9/GHSA-g5q7-xv5f-9xr9.json index ef3ca851a52..c33c1deeea3 100644 --- a/advisories/unreviewed/2023/10/GHSA-g5q7-xv5f-9xr9/GHSA-g5q7-xv5f-9xr9.json +++ b/advisories/unreviewed/2023/10/GHSA-g5q7-xv5f-9xr9/GHSA-g5q7-xv5f-9xr9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/10/GHSA-pg6h-8jmj-9wx8/GHSA-pg6h-8jmj-9wx8.json b/advisories/unreviewed/2023/10/GHSA-pg6h-8jmj-9wx8/GHSA-pg6h-8jmj-9wx8.json index 793cade72b9..489e2db6b84 100644 --- a/advisories/unreviewed/2023/10/GHSA-pg6h-8jmj-9wx8/GHSA-pg6h-8jmj-9wx8.json +++ b/advisories/unreviewed/2023/10/GHSA-pg6h-8jmj-9wx8/GHSA-pg6h-8jmj-9wx8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/11/GHSA-p8hj-rw4c-xgr5/GHSA-p8hj-rw4c-xgr5.json b/advisories/unreviewed/2023/11/GHSA-p8hj-rw4c-xgr5/GHSA-p8hj-rw4c-xgr5.json index 1234072484a..8e7f11e8dd4 100644 --- a/advisories/unreviewed/2023/11/GHSA-p8hj-rw4c-xgr5/GHSA-p8hj-rw4c-xgr5.json +++ b/advisories/unreviewed/2023/11/GHSA-p8hj-rw4c-xgr5/GHSA-p8hj-rw4c-xgr5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-52pm-cqv2-ffrx/GHSA-52pm-cqv2-ffrx.json b/advisories/unreviewed/2023/12/GHSA-52pm-cqv2-ffrx/GHSA-52pm-cqv2-ffrx.json index 7f78ff2b92d..6c87903a596 100644 --- a/advisories/unreviewed/2023/12/GHSA-52pm-cqv2-ffrx/GHSA-52pm-cqv2-ffrx.json +++ b/advisories/unreviewed/2023/12/GHSA-52pm-cqv2-ffrx/GHSA-52pm-cqv2-ffrx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2023/12/GHSA-fvq3-8fqq-2cvh/GHSA-fvq3-8fqq-2cvh.json b/advisories/unreviewed/2023/12/GHSA-fvq3-8fqq-2cvh/GHSA-fvq3-8fqq-2cvh.json index 630a3982bf0..a4ac62dd7ab 100644 --- a/advisories/unreviewed/2023/12/GHSA-fvq3-8fqq-2cvh/GHSA-fvq3-8fqq-2cvh.json +++ b/advisories/unreviewed/2023/12/GHSA-fvq3-8fqq-2cvh/GHSA-fvq3-8fqq-2cvh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-2vfj-ww29-h4x2/GHSA-2vfj-ww29-h4x2.json b/advisories/unreviewed/2024/01/GHSA-2vfj-ww29-h4x2/GHSA-2vfj-ww29-h4x2.json index e45194889fe..8a01dd3c02e 100644 --- a/advisories/unreviewed/2024/01/GHSA-2vfj-ww29-h4x2/GHSA-2vfj-ww29-h4x2.json +++ b/advisories/unreviewed/2024/01/GHSA-2vfj-ww29-h4x2/GHSA-2vfj-ww29-h4x2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -71,9 +69,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-36mq-j57w-rh2g/GHSA-36mq-j57w-rh2g.json b/advisories/unreviewed/2024/01/GHSA-36mq-j57w-rh2g/GHSA-36mq-j57w-rh2g.json index 1d1dcb372a0..169e4b0eb72 100644 --- a/advisories/unreviewed/2024/01/GHSA-36mq-j57w-rh2g/GHSA-36mq-j57w-rh2g.json +++ b/advisories/unreviewed/2024/01/GHSA-36mq-j57w-rh2g/GHSA-36mq-j57w-rh2g.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-3fg7-rwvx-xrf8/GHSA-3fg7-rwvx-xrf8.json b/advisories/unreviewed/2024/01/GHSA-3fg7-rwvx-xrf8/GHSA-3fg7-rwvx-xrf8.json index 63b43d009aa..dabb018bcbe 100644 --- a/advisories/unreviewed/2024/01/GHSA-3fg7-rwvx-xrf8/GHSA-3fg7-rwvx-xrf8.json +++ b/advisories/unreviewed/2024/01/GHSA-3fg7-rwvx-xrf8/GHSA-3fg7-rwvx-xrf8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4494-4fpf-rg2v/GHSA-4494-4fpf-rg2v.json b/advisories/unreviewed/2024/01/GHSA-4494-4fpf-rg2v/GHSA-4494-4fpf-rg2v.json index c39a5349a9b..183049bc7d6 100644 --- a/advisories/unreviewed/2024/01/GHSA-4494-4fpf-rg2v/GHSA-4494-4fpf-rg2v.json +++ b/advisories/unreviewed/2024/01/GHSA-4494-4fpf-rg2v/GHSA-4494-4fpf-rg2v.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-45x8-rqf3-8w66/GHSA-45x8-rqf3-8w66.json b/advisories/unreviewed/2024/01/GHSA-45x8-rqf3-8w66/GHSA-45x8-rqf3-8w66.json index 1e57513b2bb..2cbd3114268 100644 --- a/advisories/unreviewed/2024/01/GHSA-45x8-rqf3-8w66/GHSA-45x8-rqf3-8w66.json +++ b/advisories/unreviewed/2024/01/GHSA-45x8-rqf3-8w66/GHSA-45x8-rqf3-8w66.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-4g25-v4mv-2xm5/GHSA-4g25-v4mv-2xm5.json b/advisories/unreviewed/2024/01/GHSA-4g25-v4mv-2xm5/GHSA-4g25-v4mv-2xm5.json index 613baa049e5..137c03eadf8 100644 --- a/advisories/unreviewed/2024/01/GHSA-4g25-v4mv-2xm5/GHSA-4g25-v4mv-2xm5.json +++ b/advisories/unreviewed/2024/01/GHSA-4g25-v4mv-2xm5/GHSA-4g25-v4mv-2xm5.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-5494-grj3-c4f4/GHSA-5494-grj3-c4f4.json b/advisories/unreviewed/2024/01/GHSA-5494-grj3-c4f4/GHSA-5494-grj3-c4f4.json index 7fc44980c92..9a779890797 100644 --- a/advisories/unreviewed/2024/01/GHSA-5494-grj3-c4f4/GHSA-5494-grj3-c4f4.json +++ b/advisories/unreviewed/2024/01/GHSA-5494-grj3-c4f4/GHSA-5494-grj3-c4f4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-559p-m25r-rqhm/GHSA-559p-m25r-rqhm.json b/advisories/unreviewed/2024/01/GHSA-559p-m25r-rqhm/GHSA-559p-m25r-rqhm.json index 44b26e640be..c615741e178 100644 --- a/advisories/unreviewed/2024/01/GHSA-559p-m25r-rqhm/GHSA-559p-m25r-rqhm.json +++ b/advisories/unreviewed/2024/01/GHSA-559p-m25r-rqhm/GHSA-559p-m25r-rqhm.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-55gh-8j94-w3hp/GHSA-55gh-8j94-w3hp.json b/advisories/unreviewed/2024/01/GHSA-55gh-8j94-w3hp/GHSA-55gh-8j94-w3hp.json index 4736c7e362f..fc7f0ecd125 100644 --- a/advisories/unreviewed/2024/01/GHSA-55gh-8j94-w3hp/GHSA-55gh-8j94-w3hp.json +++ b/advisories/unreviewed/2024/01/GHSA-55gh-8j94-w3hp/GHSA-55gh-8j94-w3hp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-8crr-j42r-277p/GHSA-8crr-j42r-277p.json b/advisories/unreviewed/2024/01/GHSA-8crr-j42r-277p/GHSA-8crr-j42r-277p.json index 96f69317c31..4b18d8fa34b 100644 --- a/advisories/unreviewed/2024/01/GHSA-8crr-j42r-277p/GHSA-8crr-j42r-277p.json +++ b/advisories/unreviewed/2024/01/GHSA-8crr-j42r-277p/GHSA-8crr-j42r-277p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-8cwm-wr6q-x76p/GHSA-8cwm-wr6q-x76p.json b/advisories/unreviewed/2024/01/GHSA-8cwm-wr6q-x76p/GHSA-8cwm-wr6q-x76p.json index d0dd946240d..99f97dd8089 100644 --- a/advisories/unreviewed/2024/01/GHSA-8cwm-wr6q-x76p/GHSA-8cwm-wr6q-x76p.json +++ b/advisories/unreviewed/2024/01/GHSA-8cwm-wr6q-x76p/GHSA-8cwm-wr6q-x76p.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-8pxq-68qw-492f/GHSA-8pxq-68qw-492f.json b/advisories/unreviewed/2024/01/GHSA-8pxq-68qw-492f/GHSA-8pxq-68qw-492f.json index d190d19a91e..db9c21fd01c 100644 --- a/advisories/unreviewed/2024/01/GHSA-8pxq-68qw-492f/GHSA-8pxq-68qw-492f.json +++ b/advisories/unreviewed/2024/01/GHSA-8pxq-68qw-492f/GHSA-8pxq-68qw-492f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-8xgp-4xq9-6x65/GHSA-8xgp-4xq9-6x65.json b/advisories/unreviewed/2024/01/GHSA-8xgp-4xq9-6x65/GHSA-8xgp-4xq9-6x65.json index 69f8bf84330..b94b416a137 100644 --- a/advisories/unreviewed/2024/01/GHSA-8xgp-4xq9-6x65/GHSA-8xgp-4xq9-6x65.json +++ b/advisories/unreviewed/2024/01/GHSA-8xgp-4xq9-6x65/GHSA-8xgp-4xq9-6x65.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-9hx3-jmww-j882/GHSA-9hx3-jmww-j882.json b/advisories/unreviewed/2024/01/GHSA-9hx3-jmww-j882/GHSA-9hx3-jmww-j882.json index 03d21bed9c4..89409c227ad 100644 --- a/advisories/unreviewed/2024/01/GHSA-9hx3-jmww-j882/GHSA-9hx3-jmww-j882.json +++ b/advisories/unreviewed/2024/01/GHSA-9hx3-jmww-j882/GHSA-9hx3-jmww-j882.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-9j2m-4pqq-wmh6/GHSA-9j2m-4pqq-wmh6.json b/advisories/unreviewed/2024/01/GHSA-9j2m-4pqq-wmh6/GHSA-9j2m-4pqq-wmh6.json index fb68c206ad8..9169c1a8f92 100644 --- a/advisories/unreviewed/2024/01/GHSA-9j2m-4pqq-wmh6/GHSA-9j2m-4pqq-wmh6.json +++ b/advisories/unreviewed/2024/01/GHSA-9j2m-4pqq-wmh6/GHSA-9j2m-4pqq-wmh6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-f298-wxvq-j87c/GHSA-f298-wxvq-j87c.json b/advisories/unreviewed/2024/01/GHSA-f298-wxvq-j87c/GHSA-f298-wxvq-j87c.json index 894989015af..0e2670c36fb 100644 --- a/advisories/unreviewed/2024/01/GHSA-f298-wxvq-j87c/GHSA-f298-wxvq-j87c.json +++ b/advisories/unreviewed/2024/01/GHSA-f298-wxvq-j87c/GHSA-f298-wxvq-j87c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-f3jq-6wmx-vhvw/GHSA-f3jq-6wmx-vhvw.json b/advisories/unreviewed/2024/01/GHSA-f3jq-6wmx-vhvw/GHSA-f3jq-6wmx-vhvw.json index 15b270cd2f4..d9f74a6be8a 100644 --- a/advisories/unreviewed/2024/01/GHSA-f3jq-6wmx-vhvw/GHSA-f3jq-6wmx-vhvw.json +++ b/advisories/unreviewed/2024/01/GHSA-f3jq-6wmx-vhvw/GHSA-f3jq-6wmx-vhvw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-f6g4-cmvx-58hf/GHSA-f6g4-cmvx-58hf.json b/advisories/unreviewed/2024/01/GHSA-f6g4-cmvx-58hf/GHSA-f6g4-cmvx-58hf.json index d5b84337f8c..837ffa63583 100644 --- a/advisories/unreviewed/2024/01/GHSA-f6g4-cmvx-58hf/GHSA-f6g4-cmvx-58hf.json +++ b/advisories/unreviewed/2024/01/GHSA-f6g4-cmvx-58hf/GHSA-f6g4-cmvx-58hf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-fwm9-7w87-mfmp/GHSA-fwm9-7w87-mfmp.json b/advisories/unreviewed/2024/01/GHSA-fwm9-7w87-mfmp/GHSA-fwm9-7w87-mfmp.json index 863e3a2ad2e..7a6211c8bf6 100644 --- a/advisories/unreviewed/2024/01/GHSA-fwm9-7w87-mfmp/GHSA-fwm9-7w87-mfmp.json +++ b/advisories/unreviewed/2024/01/GHSA-fwm9-7w87-mfmp/GHSA-fwm9-7w87-mfmp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-g3v6-24cg-vw6m/GHSA-g3v6-24cg-vw6m.json b/advisories/unreviewed/2024/01/GHSA-g3v6-24cg-vw6m/GHSA-g3v6-24cg-vw6m.json index b9d4ab45825..a1d734d6078 100644 --- a/advisories/unreviewed/2024/01/GHSA-g3v6-24cg-vw6m/GHSA-g3v6-24cg-vw6m.json +++ b/advisories/unreviewed/2024/01/GHSA-g3v6-24cg-vw6m/GHSA-g3v6-24cg-vw6m.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-h7fx-h2xw-6jjc/GHSA-h7fx-h2xw-6jjc.json b/advisories/unreviewed/2024/01/GHSA-h7fx-h2xw-6jjc/GHSA-h7fx-h2xw-6jjc.json index d772f0832a5..324eff3a856 100644 --- a/advisories/unreviewed/2024/01/GHSA-h7fx-h2xw-6jjc/GHSA-h7fx-h2xw-6jjc.json +++ b/advisories/unreviewed/2024/01/GHSA-h7fx-h2xw-6jjc/GHSA-h7fx-h2xw-6jjc.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hh23-hp8m-rwv7/GHSA-hh23-hp8m-rwv7.json b/advisories/unreviewed/2024/01/GHSA-hh23-hp8m-rwv7/GHSA-hh23-hp8m-rwv7.json index 8214e1c2b50..b6cf139d3e3 100644 --- a/advisories/unreviewed/2024/01/GHSA-hh23-hp8m-rwv7/GHSA-hh23-hp8m-rwv7.json +++ b/advisories/unreviewed/2024/01/GHSA-hh23-hp8m-rwv7/GHSA-hh23-hp8m-rwv7.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hjcg-5cvw-69qv/GHSA-hjcg-5cvw-69qv.json b/advisories/unreviewed/2024/01/GHSA-hjcg-5cvw-69qv/GHSA-hjcg-5cvw-69qv.json index 89d20e4213d..c6f313cbb7d 100644 --- a/advisories/unreviewed/2024/01/GHSA-hjcg-5cvw-69qv/GHSA-hjcg-5cvw-69qv.json +++ b/advisories/unreviewed/2024/01/GHSA-hjcg-5cvw-69qv/GHSA-hjcg-5cvw-69qv.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-hq74-5cxf-phqw/GHSA-hq74-5cxf-phqw.json b/advisories/unreviewed/2024/01/GHSA-hq74-5cxf-phqw/GHSA-hq74-5cxf-phqw.json index 69d166bccb9..7823a4de5a9 100644 --- a/advisories/unreviewed/2024/01/GHSA-hq74-5cxf-phqw/GHSA-hq74-5cxf-phqw.json +++ b/advisories/unreviewed/2024/01/GHSA-hq74-5cxf-phqw/GHSA-hq74-5cxf-phqw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-jc3c-72g2-mm2j/GHSA-jc3c-72g2-mm2j.json b/advisories/unreviewed/2024/01/GHSA-jc3c-72g2-mm2j/GHSA-jc3c-72g2-mm2j.json index f8fa8ebfa1e..1130a5bf526 100644 --- a/advisories/unreviewed/2024/01/GHSA-jc3c-72g2-mm2j/GHSA-jc3c-72g2-mm2j.json +++ b/advisories/unreviewed/2024/01/GHSA-jc3c-72g2-mm2j/GHSA-jc3c-72g2-mm2j.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-jprp-4mm7-2m88/GHSA-jprp-4mm7-2m88.json b/advisories/unreviewed/2024/01/GHSA-jprp-4mm7-2m88/GHSA-jprp-4mm7-2m88.json index 12f8e5e14c0..2dc5c7c5849 100644 --- a/advisories/unreviewed/2024/01/GHSA-jprp-4mm7-2m88/GHSA-jprp-4mm7-2m88.json +++ b/advisories/unreviewed/2024/01/GHSA-jprp-4mm7-2m88/GHSA-jprp-4mm7-2m88.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-m23q-gpmv-x839/GHSA-m23q-gpmv-x839.json b/advisories/unreviewed/2024/01/GHSA-m23q-gpmv-x839/GHSA-m23q-gpmv-x839.json index 68861ce3eb7..57f5327b7bb 100644 --- a/advisories/unreviewed/2024/01/GHSA-m23q-gpmv-x839/GHSA-m23q-gpmv-x839.json +++ b/advisories/unreviewed/2024/01/GHSA-m23q-gpmv-x839/GHSA-m23q-gpmv-x839.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-m39r-rqrq-xm5c/GHSA-m39r-rqrq-xm5c.json b/advisories/unreviewed/2024/01/GHSA-m39r-rqrq-xm5c/GHSA-m39r-rqrq-xm5c.json index 8ecf24458f6..45b95f5b45a 100644 --- a/advisories/unreviewed/2024/01/GHSA-m39r-rqrq-xm5c/GHSA-m39r-rqrq-xm5c.json +++ b/advisories/unreviewed/2024/01/GHSA-m39r-rqrq-xm5c/GHSA-m39r-rqrq-xm5c.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-m9p3-73xg-xgfx/GHSA-m9p3-73xg-xgfx.json b/advisories/unreviewed/2024/01/GHSA-m9p3-73xg-xgfx/GHSA-m9p3-73xg-xgfx.json index 4524903d84e..0beca28ac3c 100644 --- a/advisories/unreviewed/2024/01/GHSA-m9p3-73xg-xgfx/GHSA-m9p3-73xg-xgfx.json +++ b/advisories/unreviewed/2024/01/GHSA-m9p3-73xg-xgfx/GHSA-m9p3-73xg-xgfx.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -39,9 +37,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-pfm6-94m2-vphw/GHSA-pfm6-94m2-vphw.json b/advisories/unreviewed/2024/01/GHSA-pfm6-94m2-vphw/GHSA-pfm6-94m2-vphw.json index 1df95c34df5..8d81789e290 100644 --- a/advisories/unreviewed/2024/01/GHSA-pfm6-94m2-vphw/GHSA-pfm6-94m2-vphw.json +++ b/advisories/unreviewed/2024/01/GHSA-pfm6-94m2-vphw/GHSA-pfm6-94m2-vphw.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-qh8g-m973-jpmq/GHSA-qh8g-m973-jpmq.json b/advisories/unreviewed/2024/01/GHSA-qh8g-m973-jpmq/GHSA-qh8g-m973-jpmq.json index 2a3cdb5ec5f..93e559ee1e5 100644 --- a/advisories/unreviewed/2024/01/GHSA-qh8g-m973-jpmq/GHSA-qh8g-m973-jpmq.json +++ b/advisories/unreviewed/2024/01/GHSA-qh8g-m973-jpmq/GHSA-qh8g-m973-jpmq.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -27,9 +25,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/01/GHSA-v43w-3xpv-548q/GHSA-v43w-3xpv-548q.json b/advisories/unreviewed/2024/01/GHSA-v43w-3xpv-548q/GHSA-v43w-3xpv-548q.json index 4c4b5889a39..4c63d5359bf 100644 --- a/advisories/unreviewed/2024/01/GHSA-v43w-3xpv-548q/GHSA-v43w-3xpv-548q.json +++ b/advisories/unreviewed/2024/01/GHSA-v43w-3xpv-548q/GHSA-v43w-3xpv-548q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-v78v-g6p5-pp8w/GHSA-v78v-g6p5-pp8w.json b/advisories/unreviewed/2024/01/GHSA-v78v-g6p5-pp8w/GHSA-v78v-g6p5-pp8w.json index 1432973e0cb..876a870be8f 100644 --- a/advisories/unreviewed/2024/01/GHSA-v78v-g6p5-pp8w/GHSA-v78v-g6p5-pp8w.json +++ b/advisories/unreviewed/2024/01/GHSA-v78v-g6p5-pp8w/GHSA-v78v-g6p5-pp8w.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-vf8q-f3vp-ccgf/GHSA-vf8q-f3vp-ccgf.json b/advisories/unreviewed/2024/01/GHSA-vf8q-f3vp-ccgf/GHSA-vf8q-f3vp-ccgf.json index 18bf02a9e36..03d8f0ee915 100644 --- a/advisories/unreviewed/2024/01/GHSA-vf8q-f3vp-ccgf/GHSA-vf8q-f3vp-ccgf.json +++ b/advisories/unreviewed/2024/01/GHSA-vf8q-f3vp-ccgf/GHSA-vf8q-f3vp-ccgf.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-wp4m-7hpj-8qp8/GHSA-wp4m-7hpj-8qp8.json b/advisories/unreviewed/2024/01/GHSA-wp4m-7hpj-8qp8/GHSA-wp4m-7hpj-8qp8.json index 4170173510e..34ef596f111 100644 --- a/advisories/unreviewed/2024/01/GHSA-wp4m-7hpj-8qp8/GHSA-wp4m-7hpj-8qp8.json +++ b/advisories/unreviewed/2024/01/GHSA-wp4m-7hpj-8qp8/GHSA-wp4m-7hpj-8qp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "WEB", diff --git a/advisories/unreviewed/2024/01/GHSA-wprf-rgqf-h7j4/GHSA-wprf-rgqf-h7j4.json b/advisories/unreviewed/2024/01/GHSA-wprf-rgqf-h7j4/GHSA-wprf-rgqf-h7j4.json index feebd140f0a..720e77bb1e7 100644 --- a/advisories/unreviewed/2024/01/GHSA-wprf-rgqf-h7j4/GHSA-wprf-rgqf-h7j4.json +++ b/advisories/unreviewed/2024/01/GHSA-wprf-rgqf-h7j4/GHSA-wprf-rgqf-h7j4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-x3fc-2j7c-7xqp/GHSA-x3fc-2j7c-7xqp.json b/advisories/unreviewed/2024/01/GHSA-x3fc-2j7c-7xqp/GHSA-x3fc-2j7c-7xqp.json index 72ab63aa886..a042f38b53e 100644 --- a/advisories/unreviewed/2024/01/GHSA-x3fc-2j7c-7xqp/GHSA-x3fc-2j7c-7xqp.json +++ b/advisories/unreviewed/2024/01/GHSA-x3fc-2j7c-7xqp/GHSA-x3fc-2j7c-7xqp.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-x8pr-7x9v-2vm2/GHSA-x8pr-7x9v-2vm2.json b/advisories/unreviewed/2024/01/GHSA-x8pr-7x9v-2vm2/GHSA-x8pr-7x9v-2vm2.json index f7677603563..b6839521584 100644 --- a/advisories/unreviewed/2024/01/GHSA-x8pr-7x9v-2vm2/GHSA-x8pr-7x9v-2vm2.json +++ b/advisories/unreviewed/2024/01/GHSA-x8pr-7x9v-2vm2/GHSA-x8pr-7x9v-2vm2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/01/GHSA-xhgx-qvgm-xg3q/GHSA-xhgx-qvgm-xg3q.json b/advisories/unreviewed/2024/01/GHSA-xhgx-qvgm-xg3q/GHSA-xhgx-qvgm-xg3q.json index 5aba5e562f9..228edb180c9 100644 --- a/advisories/unreviewed/2024/01/GHSA-xhgx-qvgm-xg3q/GHSA-xhgx-qvgm-xg3q.json +++ b/advisories/unreviewed/2024/01/GHSA-xhgx-qvgm-xg3q/GHSA-xhgx-qvgm-xg3q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json b/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json index 43fc2ee6bec..5bd1e532b24 100644 --- a/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json +++ b/advisories/unreviewed/2024/03/GHSA-38m5-hfpr-wjwh/GHSA-38m5-hfpr-wjwh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json b/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json index 56e92c025a4..04facc1de70 100644 --- a/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json +++ b/advisories/unreviewed/2024/03/GHSA-3fw4-qprq-cph8/GHSA-3fw4-qprq-cph8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json b/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json index beae6d7749d..c942f8d84ec 100644 --- a/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json +++ b/advisories/unreviewed/2024/03/GHSA-6x48-9p44-q5h2/GHSA-6x48-9p44-q5h2.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json b/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json index 41bca719b8e..3a39e27a645 100644 --- a/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json +++ b/advisories/unreviewed/2024/03/GHSA-82q9-rjj3-2747/GHSA-82q9-rjj3-2747.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-8mpg-4crp-pq56/GHSA-8mpg-4crp-pq56.json b/advisories/unreviewed/2024/03/GHSA-8mpg-4crp-pq56/GHSA-8mpg-4crp-pq56.json index daf300d8f36..5823140811c 100644 --- a/advisories/unreviewed/2024/03/GHSA-8mpg-4crp-pq56/GHSA-8mpg-4crp-pq56.json +++ b/advisories/unreviewed/2024/03/GHSA-8mpg-4crp-pq56/GHSA-8mpg-4crp-pq56.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json b/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json index 09c6a03ad2c..969220ca4ed 100644 --- a/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json +++ b/advisories/unreviewed/2024/03/GHSA-gw3m-hx6j-h3r6/GHSA-gw3m-hx6j-h3r6.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -35,9 +33,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-qchm-6c5g-8h3f/GHSA-qchm-6c5g-8h3f.json b/advisories/unreviewed/2024/03/GHSA-qchm-6c5g-8h3f/GHSA-qchm-6c5g-8h3f.json index 74ff1fd1577..9b632c4a19e 100644 --- a/advisories/unreviewed/2024/03/GHSA-qchm-6c5g-8h3f/GHSA-qchm-6c5g-8h3f.json +++ b/advisories/unreviewed/2024/03/GHSA-qchm-6c5g-8h3f/GHSA-qchm-6c5g-8h3f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json b/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json index 4729d4877e2..01c91ab92cb 100644 --- a/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json +++ b/advisories/unreviewed/2024/03/GHSA-rf68-6hvm-45gh/GHSA-rf68-6hvm-45gh.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json b/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json index 40893eb3920..a3f0caaf27c 100644 --- a/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json +++ b/advisories/unreviewed/2024/03/GHSA-vj7r-f7rj-7598/GHSA-vj7r-f7rj-7598.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json b/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json index c558bd76880..b85faa4242a 100644 --- a/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json +++ b/advisories/unreviewed/2024/03/GHSA-xxr2-6rqw-cjfr/GHSA-xxr2-6rqw-cjfr.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", @@ -31,9 +29,7 @@ } ], "database_specific": { - "cwe_ids": [ - - ], + "cwe_ids": [], "severity": "MODERATE", "github_reviewed": false, "github_reviewed_at": null, diff --git a/advisories/unreviewed/2024/07/GHSA-f5xx-949w-7ch3/GHSA-f5xx-949w-7ch3.json b/advisories/unreviewed/2024/07/GHSA-f5xx-949w-7ch3/GHSA-f5xx-949w-7ch3.json index dddda049696..853b458070a 100644 --- a/advisories/unreviewed/2024/07/GHSA-f5xx-949w-7ch3/GHSA-f5xx-949w-7ch3.json +++ b/advisories/unreviewed/2024/07/GHSA-f5xx-949w-7ch3/GHSA-f5xx-949w-7ch3.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-c7jf-2h36-h69f/GHSA-c7jf-2h36-h69f.json b/advisories/unreviewed/2024/08/GHSA-c7jf-2h36-h69f/GHSA-c7jf-2h36-h69f.json index dbcd937c343..d6e185c1e10 100644 --- a/advisories/unreviewed/2024/08/GHSA-c7jf-2h36-h69f/GHSA-c7jf-2h36-h69f.json +++ b/advisories/unreviewed/2024/08/GHSA-c7jf-2h36-h69f/GHSA-c7jf-2h36-h69f.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/08/GHSA-xw4r-xjqg-mh9q/GHSA-xw4r-xjqg-mh9q.json b/advisories/unreviewed/2024/08/GHSA-xw4r-xjqg-mh9q/GHSA-xw4r-xjqg-mh9q.json index a1105363f52..1df2603fca7 100644 --- a/advisories/unreviewed/2024/08/GHSA-xw4r-xjqg-mh9q/GHSA-xw4r-xjqg-mh9q.json +++ b/advisories/unreviewed/2024/08/GHSA-xw4r-xjqg-mh9q/GHSA-xw4r-xjqg-mh9q.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-28wh-2mp5-4gp8/GHSA-28wh-2mp5-4gp8.json b/advisories/unreviewed/2024/09/GHSA-28wh-2mp5-4gp8/GHSA-28wh-2mp5-4gp8.json index efe9bd0128c..68be3f76a72 100644 --- a/advisories/unreviewed/2024/09/GHSA-28wh-2mp5-4gp8/GHSA-28wh-2mp5-4gp8.json +++ b/advisories/unreviewed/2024/09/GHSA-28wh-2mp5-4gp8/GHSA-28wh-2mp5-4gp8.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-3wrj-w44v-8q9w/GHSA-3wrj-w44v-8q9w.json b/advisories/unreviewed/2024/09/GHSA-3wrj-w44v-8q9w/GHSA-3wrj-w44v-8q9w.json index 654b3f436b0..65a8df0f51f 100644 --- a/advisories/unreviewed/2024/09/GHSA-3wrj-w44v-8q9w/GHSA-3wrj-w44v-8q9w.json +++ b/advisories/unreviewed/2024/09/GHSA-3wrj-w44v-8q9w/GHSA-3wrj-w44v-8q9w.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-49cf-mffg-jj22/GHSA-49cf-mffg-jj22.json b/advisories/unreviewed/2024/09/GHSA-49cf-mffg-jj22/GHSA-49cf-mffg-jj22.json index ee36ccc1066..7bb5ddc456c 100644 --- a/advisories/unreviewed/2024/09/GHSA-49cf-mffg-jj22/GHSA-49cf-mffg-jj22.json +++ b/advisories/unreviewed/2024/09/GHSA-49cf-mffg-jj22/GHSA-49cf-mffg-jj22.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-4hc2-5ghh-f4c4/GHSA-4hc2-5ghh-f4c4.json b/advisories/unreviewed/2024/09/GHSA-4hc2-5ghh-f4c4/GHSA-4hc2-5ghh-f4c4.json index 245d781dc21..5acc0054264 100644 --- a/advisories/unreviewed/2024/09/GHSA-4hc2-5ghh-f4c4/GHSA-4hc2-5ghh-f4c4.json +++ b/advisories/unreviewed/2024/09/GHSA-4hc2-5ghh-f4c4/GHSA-4hc2-5ghh-f4c4.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-gm84-fcw4-4gm9/GHSA-gm84-fcw4-4gm9.json b/advisories/unreviewed/2024/09/GHSA-gm84-fcw4-4gm9/GHSA-gm84-fcw4-4gm9.json index 47ad09dbd0c..ae8f53dc2f5 100644 --- a/advisories/unreviewed/2024/09/GHSA-gm84-fcw4-4gm9/GHSA-gm84-fcw4-4gm9.json +++ b/advisories/unreviewed/2024/09/GHSA-gm84-fcw4-4gm9/GHSA-gm84-fcw4-4gm9.json @@ -13,9 +13,7 @@ "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-jxfw-446m-gj9g/GHSA-jxfw-446m-gj9g.json b/advisories/unreviewed/2024/09/GHSA-jxfw-446m-gj9g/GHSA-jxfw-446m-gj9g.json index 01ec0db23f3..c110b1fe73a 100644 --- a/advisories/unreviewed/2024/09/GHSA-jxfw-446m-gj9g/GHSA-jxfw-446m-gj9g.json +++ b/advisories/unreviewed/2024/09/GHSA-jxfw-446m-gj9g/GHSA-jxfw-446m-gj9g.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-pcq9-xwqw-8822/GHSA-pcq9-xwqw-8822.json b/advisories/unreviewed/2024/09/GHSA-pcq9-xwqw-8822/GHSA-pcq9-xwqw-8822.json index 08566140b96..b4987eec91e 100644 --- a/advisories/unreviewed/2024/09/GHSA-pcq9-xwqw-8822/GHSA-pcq9-xwqw-8822.json +++ b/advisories/unreviewed/2024/09/GHSA-pcq9-xwqw-8822/GHSA-pcq9-xwqw-8822.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-q5wp-qj6q-q9jm/GHSA-q5wp-qj6q-q9jm.json b/advisories/unreviewed/2024/09/GHSA-q5wp-qj6q-q9jm/GHSA-q5wp-qj6q-q9jm.json index 7c2a601a9cb..5c60d9b56a2 100644 --- a/advisories/unreviewed/2024/09/GHSA-q5wp-qj6q-q9jm/GHSA-q5wp-qj6q-q9jm.json +++ b/advisories/unreviewed/2024/09/GHSA-q5wp-qj6q-q9jm/GHSA-q5wp-qj6q-q9jm.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY", diff --git a/advisories/unreviewed/2024/09/GHSA-wv89-8x46-8266/GHSA-wv89-8x46-8266.json b/advisories/unreviewed/2024/09/GHSA-wv89-8x46-8266/GHSA-wv89-8x46-8266.json index c8764abc37e..1ceab1c9486 100644 --- a/advisories/unreviewed/2024/09/GHSA-wv89-8x46-8266/GHSA-wv89-8x46-8266.json +++ b/advisories/unreviewed/2024/09/GHSA-wv89-8x46-8266/GHSA-wv89-8x46-8266.json @@ -17,9 +17,7 @@ "score": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" } ], - "affected": [ - - ], + "affected": [], "references": [ { "type": "ADVISORY",