Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
f52b1ab0 by Salvatore Bonaccorso at 2024-04-02T06:49:43+02:00
Process some NFUs
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,47 +1,47 @@
CVE-2024-3135 (The web server lacked CSRF tokens allowing an attacker to host
malicio ...)
TODO: check
CVE-2024-3131 (A vulnerability was found in SourceCodester Computer Laboratory
Manage ...)
- TODO: check
+ NOT-FOR-US: SourceCodester Computer Laboratory Management System
CVE-2024-3130 (Hard-coded Credentialsin CoolKit eWeLlink app are before 5.4.x
on Andr ...)
- TODO: check
+ NOT-FOR-US: CoolKit eWeLlink app
CVE-2024-3129 (A vulnerability was found in SourceCodester Image Accordion
Gallery Ap ...)
- TODO: check
+ NOT-FOR-US: SourceCodester Image Accordion Gallery App
CVE-2024-3128 (** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was
classified ...)
- TODO: check
+ NOT-FOR-US: Replify-Messenger
CVE-2024-3125 (A vulnerability classified as problematic was found in Zebra
ZTC GK420 ...)
- TODO: check
+ NOT-FOR-US: Zebra ZTC GK420d
CVE-2024-3124 (A vulnerability classified as problematic has been found in
fridgecow ...)
- TODO: check
+ NOT-FOR-US: fridgecow smartalarm
CVE-2024-31099 (Missing Authorization vulnerability in Averta Shortcodes and
extra fea ...)
- TODO: check
+ NOT-FOR-US: WordPress plugin
CVE-2024-30872 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/include/authr ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30871 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/WebPages/appl ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30870 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/address ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30868 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/add_get ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30867 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/edit_vi ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30866 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/3g/menu.php.)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30865 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/edit_us ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30864 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/config_ ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30863 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/WebPages/hist ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30862 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/3g/index.php.)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30861 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/configg ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30860 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/export_ ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30859 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/config_ ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-30858 (netentsec NS-ASG 6.3 is vulnerable to SQL Injection via
/admin/edit_fi ...)
- TODO: check
+ NOT-FOR-US: netentsec NS-ASG
CVE-2024-29435 (An issue discovered in Alldata v0.4.6 allows attacker to run
arbitrary ...)
TODO: check
CVE-2024-29433 (A deserialization vulnerability in the FASTJSON component of
Alldata v ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f52b1ab0a14d62f90922391d7bc513e31fb6ec58
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f52b1ab0a14d62f90922391d7bc513e31fb6ec58
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits