From 26b9309c0b2dd23453551428efab03c7b0598f26 Mon Sep 17 00:00:00 2001 From: CVE Team Date: Thu, 7 Nov 2024 15:00:30 +0000 Subject: [PATCH] "-Synchronized-Data." --- 2024/10xxx/CVE-2024-10971.json | 18 ++++++++++++++++++ 2024/50xxx/CVE-2024-50637.json | 2 +- 2 files changed, 19 insertions(+), 1 deletion(-) create mode 100644 2024/10xxx/CVE-2024-10971.json diff --git a/2024/10xxx/CVE-2024-10971.json b/2024/10xxx/CVE-2024-10971.json new file mode 100644 index 00000000000..239dc2efb48 --- /dev/null +++ b/2024/10xxx/CVE-2024-10971.json @@ -0,0 +1,18 @@ +{ + "data_type": "CVE", + "data_format": "MITRE", + "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2024-10971", + "ASSIGNER": "cve@mitre.org", + "STATE": "RESERVED" + }, + "description": { + "description_data": [ + { + "lang": "eng", + "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." + } + ] + } +} \ No newline at end of file diff --git a/2024/50xxx/CVE-2024-50637.json b/2024/50xxx/CVE-2024-50637.json index dc00035de94..3591f76a318 100644 --- a/2024/50xxx/CVE-2024-50637.json +++ b/2024/50xxx/CVE-2024-50637.json @@ -34,7 +34,7 @@ "description_data": [ { "lang": "eng", - "value": "UnoPim 0.1.3 and below is vulnerable to Cross Site Scripting (XSS) in the Create User function. \u00b6\u00b6 The vulnerability allows attackers to perform XSS in SVG file extension, which can be used to stealing cookies." + "value": "UnoPim 0.1.3 and below is vulnerable to Cross Site Scripting (XSS) in the Create User function. This allows attackers to perform XSS via an SVG document, which can be used to steal cookies." } ] },