Author: carnil
Date: 2017-06-30 12:02:35 +0000 (Fri, 30 Jun 2017)
New Revision: 53037
Modified:
data/CVE/list
Log:
Process NFUs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-06-30 12:02:13 UTC (rev 53036)
+++ data/CVE/list 2017-06-30 12:02:35 UTC (rev 53037)
@@ -13028,47 +13028,47 @@
CVE-2017-6047
RESERVED
CVE-2017-6046 (An Insufficiently Protected Credentials issue was discovered in
Sierra ...)
- TODO: check
+ NOT-FOR-US: Sierra Wireless AirLink Raven
CVE-2017-6045 (An Information Exposure issue was discovered in Trihedral
VTScada ...)
NOT-FOR-US: Trihedral VTScada
CVE-2017-6044 (An Improper Authorization issue was discovered in Sierra
Wireless ...)
- TODO: check
+ NOT-FOR-US: Sierra Wireless AirLink Raven
CVE-2017-6043 (A Resource Consumption issue was discovered in Trihedral
VTScada ...)
NOT-FOR-US: Trihedral VTScada
CVE-2017-6042 (A Cross-Site Request Forgery issue was discovered in Sierra
Wireless ...)
- TODO: check
+ NOT-FOR-US: Sierra Wireless AirLink Raven
CVE-2017-6041 (An Unrestricted Upload issue was discovered in Marel Food
Processing ...)
TODO: check
CVE-2017-6040 (An Information Exposure issue was discovered in Belden
Hirschmann GECKO ...)
- TODO: check
+ NOT-FOR-US: Belden Hirschmann GECKO Lite Managed switch
CVE-2017-6039 (A Use of Hard-Coded Password issue was discovered in Phoenix
Broadband ...)
NOT-FOR-US: Phoenix
CVE-2017-6038 (A Cross-Site Request Forgery issue was discovered in Belden
Hirschmann ...)
- TODO: check
+ NOT-FOR-US: Belden Hirschmann GECKO Lite Managed switch
CVE-2017-6037 (A Heap-Based Buffer Overflow issue was discovered in Wecon
Technologies ...)
NOT-FOR-US: Wecon
CVE-2017-6036 (A Server-Side Request Forgery issue was discovered in Belden
Hirschmann ...)
- TODO: check
+ NOT-FOR-US: Belden Hirschmann GECKO Lite Managed switch
CVE-2017-6035 (A Stack-Based Buffer Overflow issue was discovered in Wecon ...)
NOT-FOR-US: Wecon
CVE-2017-6034 (An Authentication Bypass by Capture-Replay issue was discovered
in ...)
- TODO: check
+ NOT-FOR-US: Schneider Electric
CVE-2017-6033 (A DLL Hijacking issue was discovered in Schneider Electric
Interactive ...)
NOT-FOR-US: Schneider Electric
CVE-2017-6032 (A Violation of Secure Design Principles issue was discovered in
...)
- TODO: check
+ NOT-FOR-US: Schneider Electric
CVE-2017-6031 (A Header Injection issue was discovered in Certec EDV GmbH
atvise scada ...)
NOT-FOR-US: Certec EDV GmbH atvise scada
CVE-2017-6030 (A Predictable Value Range from Previous Values issue was
discovered in ...)
- TODO: check
+ NOT-FOR-US: Schneider Electric
CVE-2017-6029 (A Cross-Site Scripting issue was discovered in Certec EDV GmbH
atvise ...)
NOT-FOR-US: Certec EDV GmbH atvise scada
CVE-2017-6028 (An Insufficiently Protected Credentials issue was discovered in
...)
- TODO: check
+ NOT-FOR-US: Schneider Electric
CVE-2017-6027 (An Arbitrary File Upload issue was discovered in 3S-Smart
Software ...)
NOT-FOR-US: 3S-Smart Software Solutions GmbH CODESYS Web Server
CVE-2017-6026 (A Use of Insufficiently Random Values issue was discovered in
Schneider ...)
- TODO: check
+ NOT-FOR-US: Schneider Electric
CVE-2017-6025 (A Stack Buffer Overflow issue was discovered in 3S-Smart
Software ...)
NOT-FOR-US: 3S-Smart Software Solutions GmbH CODESYS Web Server
CVE-2017-6024 (A Resource Exhaustion issue was discovered in Rockwell
Automation ...)
@@ -13086,7 +13086,7 @@
CVE-2017-6018 (An open redirect issue was discovered in B. Braun Medical
SpaceCom ...)
TODO: check
CVE-2017-6017 (A Resource Exhaustion issue was discovered in Schneider
Electric ...)
- TODO: check
+ NOT-FOR-US: Schneider Electric
CVE-2017-6016 (An Improper Access Control issue was discovered in LCDS - Leao
...)
NOT-FOR-US: LCDS (Leao Consultoria e Desenvolvimento de Sistemas LTDA
ME LAquis SCADA)
CVE-2017-6015
_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits