"-Synchronized-Data."

This commit is contained in:
CVE Team 2024-04-22 17:00:33 +00:00
parent e40c93ad1b
commit a6b08ac491
No known key found for this signature in database
GPG Key ID: BC5FD8F2443B23B7
13 changed files with 105 additions and 11 deletions

View File

@ -58,6 +58,11 @@
"refsource": "GENTOO",
"name": "GLSA-202012-24",
"url": "https://security.gentoo.org/glsa/202012-24"
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20240422 [SECURITY] [DLA 3792-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -88,6 +88,11 @@
"refsource": "GENTOO",
"name": "GLSA-202012-24",
"url": "https://security.gentoo.org/glsa/202012-24"
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20240422 [SECURITY] [DLA 3792-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -58,6 +58,11 @@
"refsource": "GENTOO",
"name": "GLSA-202012-24",
"url": "https://security.gentoo.org/glsa/202012-24"
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20240422 [SECURITY] [DLA 3792-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -328,6 +328,11 @@
"url": "https://www.samba.org/samba/security/CVE-2022-2127.html",
"refsource": "MISC",
"name": "https://www.samba.org/samba/security/CVE-2022-2127.html"
},
{
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html",
"refsource": "MISC",
"name": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -53,6 +53,11 @@
"refsource": "GENTOO",
"name": "GLSA-202309-06",
"url": "https://security.gentoo.org/glsa/202309-06"
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20240422 [SECURITY] [DLA 3792-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -78,6 +78,11 @@
"refsource": "GENTOO",
"name": "GLSA-202310-06",
"url": "https://security.gentoo.org/glsa/202310-06"
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20240422 [SECURITY] [DLA 3792-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "Server or Console Station DoS due to heap overflow occurring during the handling of a specially crafted message for a specific configuration operation."
"value": "Server or Console Station DoS due to heap overflow occurring during the handling of a specially crafted message for a specific configuration operation.\u00a0\n\nSee Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"
}
]
},

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "Controller may be loaded with malicious firmware which could enable remote code execution\n\n"
"value": "Controller may be loaded with malicious firmware which could enable remote code execution.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"
}
]
},

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "Controller DoS may occur due to buffer overflow when an error is generated in response to a specially crafted message."
"value": "Controller DoS may occur due to buffer overflow when an error is generated in response to a specially crafted message.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"
}
]
},

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "Server information leak of configuration data when an error is generated in response to a specially crafted message."
"value": "Server information leak of configuration data when an error is generated in response to a specially crafted message.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"
}
]
},

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"
"value": "Controller DoS due to buffer overflow in the handling of a specially crafted message received by the controller.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning.\u00a0See Honeywell Security Notification for recommendations on upgrading and versioning. \n\n"
}
]
},

View File

@ -375,6 +375,11 @@
"url": "https://security.netapp.com/advisory/ntap-20231124-0002/",
"refsource": "MISC",
"name": "https://security.netapp.com/advisory/ntap-20231124-0002/"
},
{
"url": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html",
"refsource": "MISC",
"name": "https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html"
}
]
},

View File

@ -1,17 +1,76 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2024-28436",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ID": "CVE-2024-28436",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "Cross Site Scripting vulnerability in D-Link DAP products DAP-2230, DAP-2310, DAP-2330, DAP-2360, DAP-2553, DAP-2590, DAP-2690, DAP-2695, DAP-3520, DAP-3662 allows a remote attacker to execute arbitrary code via the reload parameter in the session_login.php component."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://www.dlink.com/en/security-bulletin/",
"refsource": "MISC",
"name": "https://www.dlink.com/en/security-bulletin/"
},
{
"url": "https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10380",
"refsource": "MISC",
"name": "https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10380"
},
{
"url": "https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10382",
"refsource": "MISC",
"name": "https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10382"
},
{
"refsource": "CONFIRM",
"name": "https://djallalakira.medium.com/cve-2024-28436-cross-site-scripting-vulnerability-in-d-link-dap-products-3596976cc99f",
"url": "https://djallalakira.medium.com/cve-2024-28436-cross-site-scripting-vulnerability-in-d-link-dap-products-3596976cc99f"
}
]
}