diff --git a/2021/38xxx/CVE-2021-38680.json b/2021/38xxx/CVE-2021-38680.json index 7c3a04ce864..585c054254e 100755 --- a/2021/38xxx/CVE-2021-38680.json +++ b/2021/38xxx/CVE-2021-38680.json @@ -43,7 +43,7 @@ "description_data": [ { "lang": "eng", - "value": "A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Kazoo Server. If exploited, this vulnerability allows remote attackers to inject malicious code.\nWe have already fixed this vulnerability in the following versions of Kazoo Server:\nKazoo Server 4.11.20 and later\n" + "value": "A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Kazoo Server. If exploited, this vulnerability allows remote attackers to inject malicious code. We have already fixed this vulnerability in the following versions of Kazoo Server: Kazoo Server 4.11.20 and later" } ] }, @@ -81,8 +81,9 @@ "references": { "reference_data": [ { - "refsource": "CONFIRM", - "url": "https://www.qnap.com/en/security-advisory/qsa-21-54" + "refsource": "MISC", + "url": "https://www.qnap.com/en/security-advisory/qsa-21-54", + "name": "https://www.qnap.com/en/security-advisory/qsa-21-54" } ] }, diff --git a/2021/38xxx/CVE-2021-38687.json b/2021/38xxx/CVE-2021-38687.json index 48a2dd922c7..1accff69c10 100755 --- a/2021/38xxx/CVE-2021-38687.json +++ b/2021/38xxx/CVE-2021-38687.json @@ -64,7 +64,7 @@ "description_data": [ { "lang": "eng", - "value": "A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Surveillance Station. If exploited, this vulnerability allows attackers to execute arbitrary code.\nWe have already fixed this vulnerability in the following versions of Surveillance Station:\nQTS 5.0.0 (64 bit): Surveillance Station 5.2.0.4.2 ( 2021/10/26 ) and later\nQTS 5.0.0 (32 bit): Surveillance Station 5.2.0.3.2 ( 2021/10/26 ) and later\nQTS 4.3.6 (64 bit): Surveillance Station 5.1.5.4.6 ( 2021/10/26 ) and later\nQTS 4.3.6 (32 bit): Surveillance Station 5.1.5.3.6 ( 2021/10/26 ) and later\nQTS 4.3.3: Surveillance Station 5.1.5.3.6 ( 2021/10/26 ) and later\n" + "value": "A stack buffer overflow vulnerability has been reported to affect QNAP NAS running Surveillance Station. If exploited, this vulnerability allows attackers to execute arbitrary code. We have already fixed this vulnerability in the following versions of Surveillance Station: QTS 5.0.0 (64 bit): Surveillance Station 5.2.0.4.2 ( 2021/10/26 ) and later QTS 5.0.0 (32 bit): Surveillance Station 5.2.0.3.2 ( 2021/10/26 ) and later QTS 4.3.6 (64 bit): Surveillance Station 5.1.5.4.6 ( 2021/10/26 ) and later QTS 4.3.6 (32 bit): Surveillance Station 5.1.5.3.6 ( 2021/10/26 ) and later QTS 4.3.3: Surveillance Station 5.1.5.3.6 ( 2021/10/26 ) and later" } ] }, @@ -102,8 +102,9 @@ "references": { "reference_data": [ { - "refsource": "CONFIRM", - "url": "https://www.qnap.com/en/security-advisory/qsa-21-46" + "refsource": "MISC", + "url": "https://www.qnap.com/en/security-advisory/qsa-21-46", + "name": "https://www.qnap.com/en/security-advisory/qsa-21-46" } ] }, diff --git a/2021/38xxx/CVE-2021-38688.json b/2021/38xxx/CVE-2021-38688.json index acf621ab75e..4ae7058b451 100755 --- a/2021/38xxx/CVE-2021-38688.json +++ b/2021/38xxx/CVE-2021-38688.json @@ -43,7 +43,7 @@ "description_data": [ { "lang": "eng", - "value": "An improper authentication vulnerability has been reported to affect Android App Qfile. If exploited, this vulnerability allows attackers to compromise app and access information\nWe have already fixed this vulnerability in the following versions of Qfile:\nQfile 3.0.0.1105 and later\n" + "value": "An improper authentication vulnerability has been reported to affect Android App Qfile. If exploited, this vulnerability allows attackers to compromise app and access information We have already fixed this vulnerability in the following versions of Qfile: Qfile 3.0.0.1105 and later" } ] }, @@ -81,8 +81,9 @@ "references": { "reference_data": [ { - "refsource": "CONFIRM", - "url": "https://www.qnap.com/en/security-advisory/qsa-21-55" + "refsource": "MISC", + "url": "https://www.qnap.com/en/security-advisory/qsa-21-55", + "name": "https://www.qnap.com/en/security-advisory/qsa-21-55" } ] }, diff --git a/2021/4xxx/CVE-2021-4189.json b/2021/4xxx/CVE-2021-4189.json new file mode 100644 index 00000000000..8b114f9cf43 --- /dev/null +++ b/2021/4xxx/CVE-2021-4189.json @@ -0,0 +1,18 @@ +{ + "data_type": "CVE", + "data_format": "MITRE", + "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2021-4189", + "ASSIGNER": "cve@mitre.org", + "STATE": "RESERVED" + }, + "description": { + "description_data": [ + { + "lang": "eng", + "value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided." + } + ] + } +} \ No newline at end of file