From 666b7dfc17d5abb2c959e122fa49658f5b66ba17 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Mon, 21 Feb 2022 21:25:36 +0100 Subject: Process NFUs --- data/CVE/list.2021 | 12 ++++++------ data/CVE/list.2022 | 8 ++++---- 2 files changed, 10 insertions(+), 10 deletions(-) diff --git a/data/CVE/list.2021 b/data/CVE/list.2021 index 68c959dda6..98f2a707c6 100644 --- a/data/CVE/list.2021 +++ b/data/CVE/list.2021 @@ -4435,7 +4435,7 @@ CVE-2021-45010 CVE-2021-45009 RESERVED CVE-2021-45008 (Plesk CMS 18.0.37 is affected by an insecure permissions vulnerability ...) - TODO: check + NOT-FOR-US: Plesk CMS CVE-2021-45007 (Plesk 18.0.37 is affected by a Cross Site Request Forgery (CSRF) vulne ...) NOT-FOR-US: Plesk CVE-2021-45006 @@ -47054,9 +47054,9 @@ CVE-2021-27799 (ean_leading_zeroes in backend/upcean.c in Zint Barcode Generator CVE-2021-27798 RESERVED CVE-2021-27797 (Brocade Fabric OS before Brocade Fabric OS v8.2.1c, v8.1.2h, and all v ...) - TODO: check + NOT-FOR-US: Brocade CVE-2021-27796 (A vulnerability in Brocade Fabric OS versions before Brocade Fabric OS ...) - TODO: check + NOT-FOR-US: Brocade CVE-2021-27795 RESERVED CVE-2021-27794 (A vulnerability in the authentication mechanism of Brocade Fabric OS v ...) @@ -47138,11 +47138,11 @@ CVE-2021-27757 CVE-2021-27756 RESERVED CVE-2021-27755 ("Sametime Android potential path traversal vulnerability when using Fi ...) - TODO: check + NOT-FOR-US: HCL CVE-2021-27754 RESERVED CVE-2021-27753 ("Sametime Android PathTraversal Vulnerability" ...) - TODO: check + NOT-FOR-US: HCL CVE-2021-27752 RESERVED CVE-2021-27751 @@ -53739,7 +53739,7 @@ CVE-2021-25057 (The Translation Exchange WordPress plugin through 1.0.14 was vul CVE-2021-25056 RESERVED CVE-2021-25055 (The FeedWordPress plugin before 2022.0123 is affected by a Reflected C ...) - TODO: check + NOT-FOR-US: WordPress plugin CVE-2021-25054 (The WPcalc WordPress plugin through 2.1 does not sanitize user input i ...) NOT-FOR-US: WordPress plugin CVE-2021-25053 (The WP Coder WordPress plugin before 2.5.2 within the wow-company admi ...) diff --git a/data/CVE/list.2022 b/data/CVE/list.2022 index dc6334e3e9..9340ecc4c9 100644 --- a/data/CVE/list.2022 +++ b/data/CVE/list.2022 @@ -549,7 +549,7 @@ CVE-2022-0694 CVE-2022-0693 RESERVED CVE-2022-0692 (Open Redirect on Rudloff/alltube in Packagist rudloff/alltube prior to ...) - TODO: check + NOT-FOR-US: alltube CVE-2022-0691 (Authorization Bypass Through User-Controlled Key in NPM url-parse prio ...) TODO: check CVE-2022-25369 @@ -1859,7 +1859,7 @@ CVE-2022-24917 CVE-2022-24911 RESERVED CVE-2022-0564 (A vulnerability in Qlik Sense Enterprise on Windows could allow an rem ...) - TODO: check + NOT-FOR-US: Qlik Sense Enterprise CVE-2022-24916 (Optimism before @eth-optimism/l2geth@0.5.11 allows economic griefing b ...) NOT-FOR-US: Optimism CVE-2022-24908 @@ -2740,7 +2740,7 @@ CVE-2022-24555 CVE-2022-24554 RESERVED CVE-2022-24553 (An issue was found in Zfaka <= 1.4.5. The verification of the backg ...) - TODO: check + NOT-FOR-US: Zfaka CVE-2022-24552 (StarWind SAN and NAS before 0.2 build 1685 allows remote code executio ...) NOT-FOR-US: StarWind CVE-2022-24551 (StarWind SAN and NAS before 0.2 build 1685 allows users to reset other ...) @@ -3378,7 +3378,7 @@ CVE-2022-24302 CVE-2022-24296 RESERVED CVE-2022-24295 (Okta Advanced Server Access Client for Windows prior to version 1.57.0 ...) - TODO: check + NOT-FOR-US: Okta Advanced Server Access Client CVE-2022-22986 RESERVED CVE-2022-0472 (Unrestricted Upload of File with Dangerous Type in Packagist jsdecena/ ...) -- cgit v1.2.3