Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
4cba37bb by Salvatore Bonaccorso at 2018-07-19T22:15:54+02:00
Process NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -3,21 +3,21 @@ CVE-2018-14424
CVE-2018-14423 (Division-by-zero vulnerabilities in the functions
pi_next_pcrl, ...)
TODO: check
CVE-2018-14422 (blog/index.php in SansCMS 0.7 has XSS via the q parameter. ...)
- TODO: check
+ NOT-FOR-US: SansCMS
CVE-2018-14421 (SeaCMS v6.61 allows Remote Code execution by placing PHP code
in a ...)
- TODO: check
+ NOT-FOR-US: SeaCMS
CVE-2018-14420 (MetInfo 6.0.0 allows a CSRF attack to add a user account via a
...)
- TODO: check
+ NOT-FOR-US: MetInfo
CVE-2018-14419 (MetInfo 6.0.0 allows XSS via a modified name of the navigation
bar on ...)
- TODO: check
+ NOT-FOR-US: MetInfo
CVE-2018-14418 (In Msvod Cms v10, SQL Injection exists via an
images/lists?cid= URI. ...)
- TODO: check
+ NOT-FOR-US: Msvod Cms
CVE-2018-14417
RESERVED
CVE-2018-14416
RESERVED
CVE-2018-14415 (An issue was discovered in idreamsoft iCMS before 7.0.10. XSS
exists ...)
- TODO: check
+ NOT-FOR-US: idreamsoft iCMS
CVE-2018-14414
RESERVED
CVE-2018-14413
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/4cba37bbce1e96fe2e8148057ce910242c26f73f
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/4cba37bbce1e96fe2e8148057ce910242c26f73f
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits