"-Synchronized-Data."

This commit is contained in:
CVE Team 2019-06-27 21:01:03 +00:00
parent 89e7a4482b
commit ad188a20c3
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8
10 changed files with 33 additions and 7 deletions

View File

@ -68,6 +68,11 @@
"refsource": "CONFIRM",
"name": "https://security.netapp.com/advisory/ntap-20190404-0003/",
"url": "https://security.netapp.com/advisory/ntap-20190404-0003/"
},
{
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/7"
}
]
}

View File

@ -136,6 +136,11 @@
"name": "RHSA-2017:2869",
"refsource": "REDHAT",
"url": "https://access.redhat.com/errata/RHSA-2017:2869"
},
{
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/7"
}
]
}

View File

@ -61,6 +61,11 @@
"name": "[oss-security] 20180814 CVE-2018-14722: btrfsmaintenance: Code execution",
"refsource": "MLIST",
"url": "http://www.openwall.com/lists/oss-security/2018/08/14/7"
},
{
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/7"
}
]
}

View File

@ -4,7 +4,8 @@
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2019-10177",
"ASSIGNER": "mrehak@redhat.com"
"ASSIGNER": "secalert@redhat.com",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
@ -54,7 +55,7 @@
"description_data": [
{
"lang": "eng",
"value": "A store cross-site scripting (XSS) vulnerability was found in the PDF export component of CloudForms, versions 5.9 and 5.10, due to user input is not properly sanitized. An attacker with least privilege to edit compute is able to execute a XSS attack against other users, which could be leading to malicious code execution and extraction of the anti-CSRF token of higher privileged users."
"value": "A stored cross-site scripting (XSS) vulnerability was found in the PDF export component of CloudForms, versions 5.9 and 5.10, due to user input is not properly sanitized. An attacker with least privilege to edit compute is able to execute a XSS attack against other users, which could lead to malicious code execution and extraction of the anti-CSRF token of higher privileged users."
}
]
},
@ -68,4 +69,4 @@
]
]
}
}
}

View File

@ -96,6 +96,11 @@
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/2"
},
{
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/7"
}
]
},

View File

@ -91,6 +91,11 @@
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/2"
},
{
"refsource": "MLIST",
"name": "[oss-security] 20190627 Re: linux-distros membership application - Microsoft",
"url": "http://www.openwall.com/lists/oss-security/2019/06/27/7"
}
]
},

View File

@ -89,4 +89,4 @@
"source": {
"discovery": "INTERNAL"
}
}
}

View File

@ -89,4 +89,4 @@
"source": {
"discovery": "INTERNAL"
}
}
}

View File

@ -89,4 +89,4 @@
"source": {
"discovery": "INTERNAL"
}
}
}

View File

@ -89,4 +89,4 @@
"source": {
"discovery": "INTERNAL"
}
}
}