From feb98f7c86948e355138cdb7b0167f9d90478ca7 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Fri, 15 Oct 2021 10:02:25 +0200 Subject: Process some NFUs --- data/CVE/list.2020 | 14 +++++++------- data/CVE/list.2021 | 4 ++-- 2 files changed, 9 insertions(+), 9 deletions(-) diff --git a/data/CVE/list.2020 b/data/CVE/list.2020 index b9edcf3a59..cd49d05767 100644 --- a/data/CVE/list.2020 +++ b/data/CVE/list.2020 @@ -25561,27 +25561,27 @@ CVE-2020-19966 CVE-2020-19965 RESERVED CVE-2020-19964 (A Cross Site Request Forgery (CSRF) vulnerability was discovered in PH ...) - TODO: check + NOT-FOR-US: PHPMyWind CVE-2020-19963 RESERVED CVE-2020-19962 (A stored cross-site scripting (XSS) vulnerability in the getClientIp f ...) - TODO: check + NOT-FOR-US: Chaoji CMS CVE-2020-19961 (A SQL injection vulnerability has been discovered in zz cms version 20 ...) - TODO: check + NOT-FOR-US: zz cms CVE-2020-19960 (A SQL injection vulnerability has been discovered in zz cms version 20 ...) - TODO: check + NOT-FOR-US: zz cms CVE-2020-19959 (A SQL injection vulnerability has been discovered in zz cms version 20 ...) - TODO: check + NOT-FOR-US: zz cms CVE-2020-19958 RESERVED CVE-2020-19957 (A SQL injection vulnerability has been discovered in zz cms version 20 ...) - TODO: check + NOT-FOR-US: zz cms CVE-2020-19956 RESERVED CVE-2020-19955 RESERVED CVE-2020-19954 (An XML External Entity (XXE) vulnerability was discovered in /api/noti ...) - TODO: check + NOT-FOR-US: S-CMS CVE-2020-19953 RESERVED CVE-2020-19952 diff --git a/data/CVE/list.2021 b/data/CVE/list.2021 index 502c3a82f8..2fdb284142 100644 --- a/data/CVE/list.2021 +++ b/data/CVE/list.2021 @@ -51043,7 +51043,7 @@ CVE-2021-20833 (The SNKRDUNK Market Place App for iOS versions prior to 2.2.0 do CVE-2021-20832 (InBody App for iOS versions prior to 2.3.30 and InBody App for Android ...) NOT-FOR-US: InBody App CVE-2021-20831 (Cross-site request forgery (CSRF) vulnerability in OG Tags versions pr ...) - TODO: check + NOT-FOR-US: OG Tags (WordPress plugin) CVE-2021-20830 RESERVED CVE-2021-20829 (Cross-site scripting vulnerability due to the inadequate tag sanitizat ...) @@ -51510,7 +51510,7 @@ CVE-2021-20601 CVE-2021-20600 (Uncontrolled resource consumption in MELSEC iQ-R series C Controller M ...) NOT-FOR-US: Mitsubishi CVE-2021-20599 (Authorization bypass through user-controlled key vulnerability in MELS ...) - TODO: check + NOT-FOR-US: Mitsubishi CVE-2021-20598 (Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubis ...) NOT-FOR-US: Mitsubishi CVE-2021-20597 (Insufficiently Protected Credentials vulnerability in Mitsubishi Elect ...) -- cgit v1.2.3