- Synchronized data.

This commit is contained in:
CVE Team 2017-12-20 15:02:37 -05:00
parent 8761ce2ef3
commit 55e939a0df
No known key found for this signature in database
GPG Key ID: 3504EC0FB4B2FE56
20 changed files with 335 additions and 8 deletions

View File

@ -61,6 +61,9 @@
{
"url" : "http://modwsgi.readthedocs.org/en/latest/release-notes/version-3.5.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0789.html"
},
{
"url" : "http://www.securityfocus.com/bid/67532"
},

View File

@ -57,6 +57,18 @@
},
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
}
]
}

View File

@ -76,6 +76,12 @@
{
"url" : "http://www.debian.org/security/2014/dsa-2928"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0800.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0801.html"
},
{
"url" : "http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00007.html"
},

View File

@ -76,6 +76,12 @@
{
"url" : "http://www.debian.org/security/2014/dsa-2928"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0800.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0801.html"
},
{
"url" : "http://lists.opensuse.org/opensuse-security-announce/2014-05/msg00007.html"
},

View File

@ -79,6 +79,18 @@
{
"url" : "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00007.html"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2259-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2261-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2263-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2264-1"
},
{
"url" : "http://www.securityfocus.com/bid/68048"
},

View File

@ -61,6 +61,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66880"
}

View File

@ -61,6 +61,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66858"
}

View File

@ -61,6 +61,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66890"
}

View File

@ -61,6 +61,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66875"
}

View File

@ -61,6 +61,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66896"
}

View File

@ -58,6 +58,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66846"
}

View File

@ -61,6 +61,18 @@
{
"url" : "http://security.gentoo.org/glsa/glsa-201409-04.xml"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0522.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0536.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0537.html"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0702.html"
},
{
"url" : "http://www.securityfocus.com/bid/66850"
}

View File

@ -64,6 +64,21 @@
{
"url" : "http://linux.oracle.com/errata/ELSA-2014-3052.html"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2259-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2261-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2262-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2263-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2264-1"
},
{
"url" : "http://www.securityfocus.com/bid/67309"
},

View File

@ -67,6 +67,21 @@
{
"url" : "https://source.android.com/security/bulletin/2017-04-01"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2259-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2261-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2262-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2263-1"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2264-1"
},
{
"url" : "http://www.securityfocus.com/bid/67321"
},

View File

@ -94,6 +94,9 @@
{
"url" : "https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=b3eaa9fc5cd0a4d74b18f6b8dc617aeaf1873270"
},
{
"url" : "http://rhn.redhat.com/errata/RHSA-2014-0800.html"
},
{
"url" : "http://lists.opensuse.org/opensuse-security-announce/2014-07/msg00006.html"
},

View File

@ -73,6 +73,9 @@
{
"url" : "http://lists.opensuse.org/opensuse-updates/2014-07/msg00010.html"
},
{
"url" : "http://www.ubuntu.com/usn/USN-2258-1"
},
{
"url" : "http://secunia.com/advisories/59213"
},

View File

@ -2,7 +2,30 @@
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2017-17745",
"STATE" : "RESERVED"
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
@ -11,7 +34,26 @@
"description_data" : [
{
"lang" : "eng",
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value" : "Cross-site scripting (XSS) vulnerability in system_name_set.cgi in TP-Link TL-SG108E 1.0.0 allows authenticated remote attackers to submit arbitrary java script via the 'sysName' parameter."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"url" : "http://seclists.org/fulldisclosure/2017/Dec/67"
}
]
}

View File

@ -2,7 +2,30 @@
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2017-17746",
"STATE" : "RESERVED"
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
@ -11,7 +34,26 @@
"description_data" : [
{
"lang" : "eng",
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value" : "Weak access control methods on the TP-Link TL-SG108E 1.0.0 allow any user on a NAT network with an authenticated administrator to access the device without entering user credentials. The authentication record is stored on the device; thus if an administrator authenticates from a NAT network, the authentication applies to the IP address of the NAT gateway, and any user behind that NAT gateway is also treated as authenticated."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"url" : "http://seclists.org/fulldisclosure/2017/Dec/67"
}
]
}

View File

@ -2,7 +2,30 @@
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2017-17747",
"STATE" : "RESERVED"
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
@ -11,7 +34,26 @@
"description_data" : [
{
"lang" : "eng",
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value" : "Weak access controls in the Device Logout functionality on the TP-Link TL-SG108E v1.0.0 allow remote attackers to call the logout functionality, triggering a denial of service condition."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"url" : "http://seclists.org/fulldisclosure/2017/Dec/67"
}
]
}

View File

@ -2,7 +2,30 @@
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2017-6094",
"STATE" : "RESERVED"
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
@ -11,7 +34,26 @@
"description_data" : [
{
"lang" : "eng",
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value" : "CPEs used by subscribers on the access network receive their individual configuration settings from a central GAPS instance. A CPE identifies itself by the MAC address of its WAN interface and a certain \"chk\" value (48bit) derived from the MAC. The algorithm used to compute the \"chk\" was disclosed by reverse engineering the CPE's firmware. As a result, it is possible to forge valid \"chk\" values for any given MAC address and therefore receive the configuration settings of other subscribers' CPEs. The configuration settings often contain sensitive values, for example credentials (username/password) for VoIP services. This issue affects Genexis B.V. GAPS up to 7.2."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"url" : "http://seclists.org/fulldisclosure/2017/Dec/62"
}
]
}