"-Synchronized-Data."

This commit is contained in:
CVE Team 2023-12-14 21:00:34 +00:00
parent e27c4a8f48
commit 74cf975fde
No known key found for this signature in database
GPG Key ID: E3252B3D49582C98
52 changed files with 238 additions and 460 deletions

View File

@ -1,17 +1,121 @@
{
"data_version": "4.0",
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2023-0248",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ASSIGNER": "productsecurity@jci.com",
"STATE": "PUBLIC"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "An attacker with physical access to the Kantech Gen1 ioSmart card reader with firmware version prior to 1.7.2 in certain circumstances can recover the reader's communication memory between the card and reader.\n\n"
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "CWE-200 Exposure of Sensitive Information to an Unauthorized Actor",
"cweId": "CWE-200"
}
]
},
{
"description": [
{
"lang": "eng",
"value": "CWE-401 Missing Release of Memory after Effective Lifetime",
"cweId": "CWE-401"
}
]
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "Sensormatic Electronics, a subsidiary of Johnson Controls, Inc.",
"product": {
"product_data": [
{
"product_name": "ioSmart Gen1",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "0",
"version_value": "1.7.2"
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
{
"url": "https://www.johnsoncontrols.com/cyber-solutions/security-advisories",
"refsource": "MISC",
"name": "https://www.johnsoncontrols.com/cyber-solutions/security-advisories"
},
{
"url": "https://www.cisa.gov/news-events/ics-advisories/icsa-23-348-02",
"refsource": "MISC",
"name": "https://www.cisa.gov/news-events/ics-advisories/icsa-23-348-02"
}
]
},
"generator": {
"engine": "Vulnogram 0.1.0-dev"
},
"source": {
"discovery": "EXTERNAL"
},
"solution": [
{
"lang": "en",
"supportingMedia": [
{
"base64": false,
"type": "text/html",
"value": "Update ioSmart Gen1 card reader to firmware version 1.7.2 or higher.<br>Download the update here:&nbsp;<a target=\"_blank\" rel=\"nofollow\" href=\"https://www.kantech.com/Resources/GetDoc.aspx?p=1&amp;id=58679\">https://www.kantech.com/Resources/GetDoc.aspx?p=1&amp;id=58679</a><br>Contact technical support for additional information.<br><br>ioSmart Gen2 readers are not affected by this behavior.<br>Contact your local sales representative for ordering information.<br>"
}
],
"value": "Update ioSmart Gen1 card reader to firmware version 1.7.2 or higher.\nDownload the update here:\u00a0 https://www.kantech.com/Resources/GetDoc.aspx?p=1&id=58679 https://www.kantech.com/Resources/GetDoc.aspx \nContact technical support for additional information.\n\nioSmart Gen2 readers are not affected by this behavior.\nContact your local sales representative for ordering information.\n"
}
],
"credits": [
{
"lang": "en",
"value": "Colin O\u2019Flynn at NewAE Technology Inc."
}
],
"impact": {
"cvss": [
{
"attackComplexity": "HIGH",
"attackVector": "ADJACENT_NETWORK",
"availabilityImpact": "LOW",
"baseScore": 7.5,
"baseSeverity": "HIGH",
"confidentialityImpact": "LOW",
"integrityImpact": "HIGH",
"privilegesRequired": "NONE",
"scope": "CHANGED",
"userInteraction": "NONE",
"vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L",
"version": "3.1"
}
]
}

View File

@ -59,7 +59,7 @@
}
},
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -35,7 +35,7 @@
"product": {
"product_data": [
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -45,18 +45,6 @@
}
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
}
]
}

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -35,7 +35,7 @@
"product": {
"product_data": [
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -59,7 +59,7 @@
}
},
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -35,7 +35,7 @@
"product": {
"product_data": [
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -47,7 +47,7 @@
}
},
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -59,7 +59,7 @@
}
},
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -59,7 +59,7 @@
}
},
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -197,7 +197,7 @@
{
"version_affected": "<",
"version_name": "4.7.0",
"version_value": "4.7.04063.01"
"version_value": "4.7.04063.02"
}
]
}

View File

@ -142,18 +142,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -190,18 +190,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -45,18 +45,6 @@
}
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
}
]
}

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -190,18 +190,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -190,18 +190,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -190,18 +190,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -142,18 +142,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26713"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -59,7 +59,7 @@
}
},
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -35,7 +35,7 @@
"product": {
"product_data": [
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -35,7 +35,7 @@
"product": {
"product_data": [
{
"product_name": "Microsoft Exchange Server",
"product_name": "Microsoft Exchange Server 2019 Cumulative Update 13",
"version": {
"version_data": [
{

View File

@ -226,18 +226,6 @@
]
}
},
{
"product_name": "Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
"version": {
"version_data": [
{
"version_affected": "<",
"version_name": "6.0.0",
"version_value": "6.1.7601.26664"
}
]
}
},
{
"product_name": "Windows Server 2012",
"version": {

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2023-50471",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2023-50471",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/DaveGamble/cJSON/issues/802",
"refsource": "MISC",
"name": "https://github.com/DaveGamble/cJSON/issues/802"
}
]
}

View File

@ -1,17 +1,61 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2023-50472",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2023-50472",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/DaveGamble/cJSON/issues/803",
"refsource": "MISC",
"name": "https://github.com/DaveGamble/cJSON/issues/803"
}
]
}

View File

@ -0,0 +1,18 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2023-50868",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
}
]
}
}