Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
dc20be97 by Salvatore Bonaccorso at 2023-09-12T10:31:24+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5,43 +5,43 @@ CVE-2023-4898 (Authentication Bypass by Primary Weakness in 
GitHub repository mi
 CVE-2023-4897 (Relative Path Traversal in GitHub repository 
mintplex-labs/anything-ll ...)
        TODO: check
 CVE-2023-4893 (The Crayon Syntax Highlighter plugin for WordPress is 
vulnerable to Se ...)
-       TODO: check
+       NOT-FOR-US: Crayon Syntax Highlighter plugin for WordPress
 CVE-2023-4890 (The JQuery Accordion Menu Widget for WordPress plugin for 
WordPress is ...)
-       TODO: check
+       NOT-FOR-US: JQuery Accordion Menu Widget for WordPress plugin for 
WordPress
 CVE-2023-4887 (The Google Maps Plugin by Intergeo for WordPress plugin for 
WordPress  ...)
-       TODO: check
+       NOT-FOR-US: Google Maps Plugin by Intergeo for WordPress plugin for 
WordPress
 CVE-2023-4840 (The MapPress Maps for WordPress plugin for WordPress is 
vulnerable to  ...)
-       TODO: check
+       NOT-FOR-US: MapPress Maps for WordPress plugin for WordPress
 CVE-2023-42472 (Due to insufficient file type validation, SAP 
BusinessObjectsBusiness  ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-41990 (The issue was addressed with improved handling of caches. This 
issue i ...)
        TODO: check
 CVE-2023-41879 (Magento LTS is the official OpenMage LTS codebase. Guest 
orders may be ...)
        TODO: check
 CVE-2023-41369 (The Create Single Payment application of SAP S/4HANA- versions 
100, 10 ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-41368 (The OData service of the S4 HANA (Manage checkbook apps) - 
versions 10 ...)
        TODO: check
 CVE-2023-41367 (Due to missing authentication check in webdynpro application, 
an unaut ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-40625 (S4CORE (Manage Purchase Contracts App) - versions 102, 103, 
104, 105,  ...)
        TODO: check
 CVE-2023-40624 (SAP NetWeaver AS ABAP (applications based on Unified 
Rendering)- versi ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-40623 (SAP BusinessObjects SuiteInstaller - version 420, 430, allows 
an attac ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-40622 (SAP BusinessObjects Business Intelligence Platform (Promotion 
Manageme ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-40621 (SAP PowerDesigner Client - version 16.7, allows an 
unauthenticated att ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-40442 (A privacy issue was addressed with improved private data 
redaction for ...)
        TODO: check
 CVE-2023-40440 (This issue was addressed with improved state management of 
S/MIME encr ...)
        TODO: check
 CVE-2023-40309 (SAP CommonCryptoLib does not perform necessary authentication 
checks,  ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-40308 (SAP CommonCryptoLiballows an unauthenticated attacker to craft 
a reque ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-3039 (SD ROM Utility, versions prior to 1.0.2.0 contain an Improper 
Access C ...)
        TODO: check
 CVE-2023-39069 (An issue in StrangeBee TheHive v.5.0.8, v.4.1.21 and Cortex 
v.3.1.6 al ...)
@@ -49,7 +49,7 @@ CVE-2023-39069 (An issue in StrangeBee TheHive v.5.0.8, 
v.4.1.21 and Cortex v.3.
 CVE-2023-38878 (A reflected cross-site scripting (XSS) vulnerability in 
DevCode OpenST ...)
        TODO: check
 CVE-2023-37489 (Due to the lack of validation, SAP BusinessObjects Business 
Intelligen ...)
-       TODO: check
+       NOT-FOR-US: SAP
 CVE-2023-35687 (In MtpPropertyValue of MtpProperty.h, there is a possible 
memory corru ...)
        TODO: check
 CVE-2023-35684 (In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of 
bounds wr ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc20be97f5da248781cf56a5cdf831cc1f2c4582

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc20be97f5da248781cf56a5cdf831cc1f2c4582
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to