"-Synchronized-Data."

This commit is contained in:
CVE Team 2020-02-13 19:01:11 +00:00
parent c329248e7a
commit 9a007cdc43
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8
22 changed files with 575 additions and 9 deletions

View File

@ -1,8 +1,31 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ASSIGNER": "secalert@redhat.com",
"ID": "CVE-2012-5623",
"STATE": "RESERVED"
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "Squirrelmail",
"product": {
"product_data": [
{
"product_name": "Squirrelmail",
"version": {
"version_data": [
{
"version_value": "4.0"
}
]
}
}
]
}
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
@ -11,7 +34,28 @@
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "Squirrelmail 4.0 uses the outdated MD5 hash algorithm for passwords."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "use of deprecated algorithm"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MLIST",
"name": "[oss-security] 20121203 Re: Strange CVE situation (at least one ID should come of this)",
"url": "http://www.openwall.com/lists/oss-security/2012/12/04/6"
}
]
}

View File

@ -2,7 +2,30 @@
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2014-3919",
"STATE": "RESERVED"
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
@ -11,7 +34,28 @@
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A vulnerability exists in Netgear CG3100 devices before 3.9.2421.13.mp3 V0027 via an embed malicious script in an unspecified page, which could let a malicious user obtain sensitive information."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "http://softage.be/netgear/",
"refsource": "MISC",
"name": "http://softage.be/netgear/"
}
]
}

View File

@ -2,7 +2,30 @@
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2014-4170",
"STATE": "RESERVED"
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
@ -11,7 +34,43 @@
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A Privilege Escalation Vulnerability exists in Free Reprintables ArticleFR 11.06.2014 due to insufficient access restrictions in the data.php script, which could let a remote malicious user obtain access or modify or delete database information."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "http://packetstormsecurity.com/files/127701/Free-Reprintables-ArticleFR-11.06.2014-Improper-Access-Control.html",
"refsource": "MISC",
"name": "http://packetstormsecurity.com/files/127701/Free-Reprintables-ArticleFR-11.06.2014-Improper-Access-Control.html"
},
{
"url": "http://www.exploit-db.com/exploits/34245",
"refsource": "MISC",
"name": "http://www.exploit-db.com/exploits/34245"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/95051",
"refsource": "MISC",
"name": "https://exchange.xforce.ibmcloud.com/vulnerabilities/95051"
},
{
"refsource": "MISC",
"name": "https://www.securityfocus.com/bid/68980",
"url": "https://www.securityfocus.com/bid/68980"
}
]
}

View File

@ -2,7 +2,30 @@
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2014-4198",
"STATE": "RESERVED"
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
@ -11,7 +34,28 @@
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "A Two-Factor Authentication Bypass Vulnerability exists in BS-Client Private Client 2.4 and 2.5 via an XML request that neglects the use of ADPswID and AD parameters, which could let a malicious user access privileged function."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://www3.trustwave.com/spiderlabs/advisories/TWSL2014-009.txt",
"refsource": "MISC",
"name": "https://www3.trustwave.com/spiderlabs/advisories/TWSL2014-009.txt"
}
]
}

View File

@ -82,6 +82,11 @@
"name": "https://github.com/zldww2011/CVE-2018-0802_POC",
"refsource": "MISC",
"url": "https://github.com/zldww2011/CVE-2018-0802_POC"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/another-office-equation-rce-vulnerability/",
"url": "https://research.checkpoint.com/another-office-equation-rce-vulnerability/"
}
]
}

View File

@ -66,6 +66,11 @@
"name": "104175",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/104175"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/",
"url": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/"
}
]
}

View File

@ -66,6 +66,11 @@
"name": "1041250",
"refsource": "SECTRACK",
"url": "http://www.securitytracker.com/id/1041250"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/",
"url": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/"
}
]
}

View File

@ -66,6 +66,11 @@
"name": "104701",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/104701"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/",
"url": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/"
}
]
}

View File

@ -66,6 +66,11 @@
"name": "104701",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/104701"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/",
"url": "https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/"
}
]
}

View File

@ -144,6 +144,11 @@
"name": "105774",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/105774"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2019/pxe-dust-finding-a-vulnerability-in-windows-servers-deployment-services/",
"url": "https://research.checkpoint.com/2019/pxe-dust-finding-a-vulnerability-in-windows-servers-deployment-services/"
}
]
}

View File

@ -0,0 +1,62 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2019-14598",
"ASSIGNER": "secure@intel.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Intel(R) CSME",
"version": {
"version_data": [
{
"version_value": "versions 12.0 through 12.0.48 (IOT only: 12.0.56), versions 13.0 through 13.0.20, versions 14.0 through 14.0.10"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Escalation of Privilege, Denial of Service, Information Disclosure"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00307.html",
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00307.html"
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "Improper Authentication in subsystem in Intel(R) CSME versions 12.0 through 12.0.48 (IOT only: 12.0.56), versions 13.0 through 13.0.20, versions 14.0 through 14.0.10 may allow a privileged user to potentially enable escalation of privilege, denial of service or information disclosure via local access."
}
]
}
}

View File

@ -176,6 +176,11 @@
"refsource": "MISC",
"name": "https://lists.apache.org/thread.html/r4c675b2d0cc2a5e506b11ee10d60a378859ee340aca052e4c7ef4749@%3Cnotifications.zookeeper.apache.org%3E",
"url": "https://lists.apache.org/thread.html/r4c675b2d0cc2a5e506b11ee10d60a378859ee340aca052e4c7ef4749@%3Cnotifications.zookeeper.apache.org%3E"
},
{
"refsource": "REDHAT",
"name": "RHSA-2020:0497",
"url": "https://access.redhat.com/errata/RHSA-2020:0497"
}
]
}

View File

@ -151,6 +151,11 @@
"refsource": "MLIST",
"name": "[zookeeper-issues] 20200209 [jira] [Commented] (ZOOKEEPER-3716) upgrade netty 4.1.42 to address CVE-2019-20444 CVE-2019-20445",
"url": "https://lists.apache.org/thread.html/r6945f3c346b7af89bbd3526a7c9b705b1e3569070ebcd0964bcedd7d@%3Cissues.zookeeper.apache.org%3E"
},
{
"refsource": "REDHAT",
"name": "RHSA-2020:0497",
"url": "https://access.redhat.com/errata/RHSA-2020:0497"
}
]
}

View File

@ -134,6 +134,11 @@
"url": "https://support.apple.com/HT210122",
"refsource": "MISC",
"name": "https://support.apple.com/HT210122"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/",
"url": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/"
}
]
},

View File

@ -134,6 +134,11 @@
"url": "https://support.apple.com/HT210122",
"refsource": "MISC",
"name": "https://support.apple.com/HT210122"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/",
"url": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/"
}
]
},

View File

@ -134,6 +134,11 @@
"url": "https://support.apple.com/HT210122",
"refsource": "MISC",
"name": "https://support.apple.com/HT210122"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/",
"url": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/"
}
]
},

View File

@ -134,6 +134,11 @@
"url": "https://support.apple.com/HT210122",
"refsource": "MISC",
"name": "https://support.apple.com/HT210122"
},
{
"refsource": "MISC",
"name": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/",
"url": "https://research.checkpoint.com/2019/select-code_execution-from-using-sqlite/"
}
]
},

View File

@ -0,0 +1,62 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-0561",
"ASSIGNER": "secure@intel.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Intel(R) SGX SDK",
"version": {
"version_data": [
{
"version_value": "before v2.6.100.1"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Escalation of Privilege"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00336.html",
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00336.html"
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "Improper initialization in the Intel(R) SGX SDK before v2.6.100.1 may allow an authenticated user to potentially enable escalation of privilege via local access."
}
]
}
}

View File

@ -0,0 +1,62 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-0562",
"ASSIGNER": "secure@intel.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Intel(R) RWC2",
"version": {
"version_data": [
{
"version_value": "all versions"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Escalation of Privilege"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00339.html",
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00339.html"
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "Improper permissions in the installer for Intel(R) RWC2, all versions, may allow an authenticated user to potentially enable escalation of privilege via local access."
}
]
}
}

View File

@ -0,0 +1,62 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-0563",
"ASSIGNER": "secure@intel.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Intel(R) MPSS",
"version": {
"version_data": [
{
"version_value": "before version 3.8.6"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Escalation of Privilege"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00340.html",
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00340.html"
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "Improper permissions in the installer for Intel(R) MPSS before version 3.8.6 may allow an authenticated user to potentially enable escalation of privilege via local access."
}
]
}
}

View File

@ -0,0 +1,62 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-0564",
"ASSIGNER": "secure@intel.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "n/a",
"product": {
"product_data": [
{
"product_name": "Intel\u00ae RAID Web Console 3 (RWC3) for Windows",
"version": {
"version_data": [
{
"version_value": "before version 7.010.009.000"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Escalation of Privilege"
}
]
}
]
},
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00341.html",
"url": "https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00341.html"
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "Improper permissions in the installer for Intel(R) RWC3 for Windows before version 7.010.009.000 may allow an authenticated user to potentially enable escalation of privilege via local access."
}
]
}
}

View File

@ -61,6 +61,11 @@
"refsource": "MISC",
"name": "https://github.com/jdordonezn/CVE-2020-72381/issues/1",
"url": "https://github.com/jdordonezn/CVE-2020-72381/issues/1"
},
{
"refsource": "REDHAT",
"name": "RHSA-2020:0497",
"url": "https://access.redhat.com/errata/RHSA-2020:0497"
}
]
}