Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
343cfa65 by Salvatore Bonaccorso at 2022-09-14T11:00:32+02:00
Process some NFUs

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -147,11 +147,11 @@ CVE-2022-40625
 CVE-2022-40624
        RESERVED
 CVE-2022-40623 (The WAVLINK Quantum D4G (WN531G3) running firmware version 
M31G3.V5030 ...)
-       TODO: check
+       NOT-FOR-US: WAVLINK
 CVE-2022-40622 (The WAVLINK Quantum D4G (WN531G3) running firmware version 
M31G3.V5030 ...)
-       TODO: check
+       NOT-FOR-US: WAVLINK
 CVE-2022-40621 (Because the WAVLINK Quantum D4G (WN531G3) running firmware 
version M31 ...)
-       TODO: check
+       NOT-FOR-US: WAVLINK
 CVE-2022-40620
        RESERVED
 CVE-2022-40619
@@ -203,7 +203,7 @@ CVE-2022-3184
 CVE-2022-3183
        RESERVED
 CVE-2022-3182 (Improper Access Control vulnerability in the Duo SMS two-factor 
of Dev ...)
-       TODO: check
+       NOT-FOR-US: Devolutions Remote Desktop Manager
 CVE-2022-40606
        RESERVED
 CVE-2022-40605
@@ -1928,21 +1928,21 @@ CVE-2022-39823
 CVE-2022-39822
        RESERVED
 CVE-2022-39821 (In NOKIA 1350 OMS R14.2, an Insertion of Sensitive Information 
into an ...)
-       TODO: check
+       NOT-FOR-US: NOKIA
 CVE-2022-39820
        RESERVED
 CVE-2022-39819 (In NOKIA 1350 OMS R14.2, multiple OS Command Injection 
vulnerabilities ...)
-       TODO: check
+       NOT-FOR-US: NOKIA
 CVE-2022-39818
        RESERVED
 CVE-2022-39817 (In NOKIA 1350 OMS R14.2, multiple SQL Injection 
vulnerabilities occur  ...)
-       TODO: check
+       NOT-FOR-US: NOKIA
 CVE-2022-39816 (In NOKIA 1350 OMS R14.2, Insufficiently Protected Credentials 
(clearte ...)
-       TODO: check
+       NOT-FOR-US: NOKIA
 CVE-2022-39815 (In NOKIA 1350 OMS R14.2, multiple OS Command Injection 
vulnerabilities ...)
-       TODO: check
+       NOT-FOR-US: NOKIA
 CVE-2022-39814 (In NOKIA 1350 OMS R14.2, an Open Redirect vulnerability occurs 
is the  ...)
-       TODO: check
+       NOT-FOR-US: NOKIA
 CVE-2022-39813
        RESERVED
 CVE-2022-39812
@@ -4305,7 +4305,7 @@ CVE-2022-3028 (A race condition was found in the Linux 
kernel's IP framework for
        NOTE: 
https://lore.kernel.org/all/ytowqekkzvimz...@gondor.apana.org.au/T/
        NOTE: 
https://git.kernel.org/linus/ba953a9d89a00c078b85f4b190bc1dde66fe16b5 (6.0-rc3)
 CVE-2022-3027 (The CMS8000 device does not properly control or sanitize the 
SSID name ...)
-       TODO: check
+       NOT-FOR-US: CMS8000 device
 CVE-2022-3026 (The WP Users Exporter plugin for WordPress is vulnerable to CSV 
Inject ...)
        NOT-FOR-US: WP Users Exporter plugin for WordPress
 CVE-2022-3025
@@ -4433,13 +4433,13 @@ CVE-2022-3000
 CVE-2022-38772 (Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, 
Network Co ...)
        NOT-FOR-US: Zoho ManageEngine
 CVE-2022-38771 (The mobile application in Transtek Mojodat FAM (Fixed Asset 
Management ...)
-       TODO: check
+       NOT-FOR-US: Transtek
 CVE-2022-38770 (The mobile application in Transtek Mojodat FAM (Fixed Asset 
Management ...)
-       TODO: check
+       NOT-FOR-US: Transtek
 CVE-2022-38769 (The mobile application in Transtek Mojodat FAM (Fixed Asset 
Management ...)
-       TODO: check
+       NOT-FOR-US: Transtek
 CVE-2022-38768 (The mobile application in Transtek Mojodat FAM (Fixed Asset 
Management ...)
-       TODO: check
+       NOT-FOR-US: Transtek
 CVE-2022-38767
        RESERVED
 CVE-2022-38766
@@ -4914,7 +4914,7 @@ CVE-2022-38639 (A cross-site scripting (XSS) 
vulnerability in Markdown-Nice v1.8
 CVE-2022-38638 (Casdoor v1.97.3 was discovered to contain an arbitrary file 
write vuln ...)
        NOT-FOR-US: Casdoor
 CVE-2022-38637 (Hospital Management System v1.0 was discovered to contain 
multiple SQL ...)
-       TODO: check
+       NOT-FOR-US: Hospital Management System
 CVE-2022-38636
        RESERVED
 CVE-2022-38635
@@ -4956,7 +4956,7 @@ CVE-2022-38618
 CVE-2022-38617
        RESERVED
 CVE-2022-38616 (SmartVista SVFE2 v2.2.22 was discovered to contain a SQL 
injection vul ...)
-       TODO: check
+       NOT-FOR-US: SmartVista
 CVE-2022-38615 (SmartVista SVFE2 v2.2.22 was discovered to contain multiple 
SQL inject ...)
        NOT-FOR-US: SmartVista
 CVE-2022-38614 (An issue in the IGB Files and OutfileService features of 
SmartVista Ca ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/343cfa65daf417bf7428b98c0f3a961a8a6c28fa

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/343cfa65daf417bf7428b98c0f3a961a8a6c28fa
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
debian-security-tracker-commits@alioth-lists.debian.net
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to