"-Synchronized-Data."

This commit is contained in:
CVE Team 2024-09-09 07:00:35 +00:00
parent 682e76c238
commit c402171b20
No known key found for this signature in database
GPG Key ID: BC5FD8F2443B23B7
11 changed files with 253 additions and 36 deletions

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "OS command injection vulnerability in ELECOM network devices allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request. Affected products and versions are as follows: WAB-S600-PS all versions, WAB-S300 all versions, WAB-M1775-PS v1.1.21 and earlier, WAB-S1775 v1.1.9 and earlier, WAB-S1167 v1.0.7 and earlier, and WAB-M2133 v1.3.22 and earlier."
"value": "OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticated user to execute an arbitrary OS command by sending a specially crafted request."
}
]
},
@ -56,17 +56,6 @@
]
}
},
{
"product_name": "WAB-M1775-PS",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.1.21 and earlier"
}
]
}
},
{
"product_name": "WAB-S1775",
"version": {
@ -78,6 +67,17 @@
]
}
},
{
"product_name": "WAB-M1775-PS",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.1.21 and earlier"
}
]
}
},
{
"product_name": "WAB-S1167",
"version": {
@ -99,6 +99,28 @@
}
]
}
},
{
"product_name": "WAB-I1750-PS",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.5.10 and earlier"
}
]
}
},
{
"product_name": "WAB-S1167-PS",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.5.6 and earlier"
}
]
}
}
]
}

View File

@ -579,7 +579,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.25.3-5.2.rhaos4.12.git44a2cb2.el9",
"version": "0:1.25.5-13.1.rhaos4.12.git76343da.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -593,7 +593,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.25.0-2.2.el8",
"version": "0:1.25.0-2.2.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -635,7 +635,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "3:4.2.0-7.2.rhaos4.12.el9",
"version": "3:4.4.1-2.1.rhaos4.12.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -663,7 +663,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "2:1.9.4-3.2.rhaos4.12.el8",
"version": "2:1.9.4-3.2.rhaos4.12.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -684,7 +684,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "1:1.29.1-2.2.rhaos4.13.el9",
"version": "1:1.29.1-2.2.rhaos4.13.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -712,7 +712,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.26.5-11.1.rhaos4.13.git919cc6e.el8",
"version": "0:1.26.5-11.1.rhaos4.13.git919cc6e.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -768,7 +768,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "3:4.4.1-5.2.rhaos4.13.el8",
"version": "3:4.4.1-6.2.rhaos4.13.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -782,7 +782,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "4:1.1.12-1.1.rhaos4.13.el8",
"version": "4:1.1.12-1.1.rhaos4.13.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -796,7 +796,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "2:1.11.2-2.2.rhaos4.13.el8",
"version": "2:1.11.2-2.2.rhaos4.13.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -845,7 +845,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.27.4-6.1.rhaos4.14.gitd09e4c0.el8",
"version": "0:1.27.4-6.1.rhaos4.14.gitd09e4c0.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -859,7 +859,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.27.0-3.1.el9",
"version": "0:1.27.0-3.1.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -915,7 +915,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "3:4.4.1-11.3.rhaos4.14.el8",
"version": "3:4.4.1-11.3.rhaos4.14.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -929,7 +929,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "2:1.11.2-10.3.rhaos4.14.el9",
"version": "2:1.11.2-10.3.rhaos4.14.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -971,7 +971,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "3:2.1.7-3.4.rhaos4.14.el9",
"version": "3:2.1.7-3.4.rhaos4.14.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -1083,7 +1083,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:4.14.0-202404151639.p0.gf7b14a9.assembly.stream.el9",
"version": "0:4.14.0-202404151639.p0.gf7b14a9.assembly.stream.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -1111,7 +1111,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:4.14.0-202404151639.p0.g607e2dd.assembly.stream.el9",
"version": "0:4.14.0-202404151639.p0.g607e2dd.assembly.stream.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -1244,7 +1244,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.28.4-8.rhaos4.15.git24f50b9.el8",
"version": "0:1.28.4-8.rhaos4.15.git24f50b9.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -1258,7 +1258,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "0:1.28.0-3.1.el9",
"version": "0:1.28.0-3.1.el8",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"
@ -1314,7 +1314,7 @@
"x_cve_json_5_version_data": {
"versions": [
{
"version": "3:4.4.1-21.1.rhaos4.15.el8",
"version": "3:4.4.1-21.1.rhaos4.15.el9",
"lessThan": "*",
"versionType": "rpm",
"status": "unaffected"

View File

@ -89,6 +89,17 @@
]
}
},
{
"product_name": "WRC-2533GST2",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.30 and earlier"
}
]
}
},
{
"product_name": "WRC-X3200GST3-B",
"version": {

View File

@ -110,6 +110,39 @@
}
]
}
},
{
"product_name": "WRC-X3000GS2-B",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.08 and earlier"
}
]
}
},
{
"product_name": "WRC-X3000GS2-W",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.08 and earlier"
}
]
}
},
{
"product_name": "WRC-X3000GS2A-B",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.08 and earlier"
}
]
}
}
]
}

View File

@ -89,6 +89,17 @@
]
}
},
{
"product_name": "WRC-2533GST2",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.30 and earlier"
}
]
}
},
{
"product_name": "WRC-X3200GST3-B",
"version": {

View File

@ -89,6 +89,17 @@
]
}
},
{
"product_name": "WRC-2533GST2",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.30 and earlier"
}
]
}
},
{
"product_name": "WRC-X3200GST3-B",
"version": {

View File

@ -11,7 +11,7 @@
"description_data": [
{
"lang": "eng",
"value": "OS command injection vulnerability in WRC-X3200GST3-B v1.25 and earlier, and WRC-G01-W v1.24 and earlier allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product."
"value": "OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent attacker with credentials to execute arbitrary OS commands by sending a specially crafted request to the product."
}
]
},
@ -55,6 +55,17 @@
}
]
}
},
{
"product_name": "WRC-2533GST2",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.30 and earlier"
}
]
}
}
]
}

View File

@ -66,6 +66,17 @@
}
]
}
},
{
"product_name": "WRC-2533GST2",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.30 and earlier"
}
]
}
}
]
}

View File

@ -66,6 +66,39 @@
}
]
}
},
{
"product_name": "WRC-X3000GS2-B",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.08 and earlier"
}
]
}
},
{
"product_name": "WRC-X3000GS2-W",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.08 and earlier"
}
]
}
},
{
"product_name": "WRC-X3000GS2A-B",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "v1.08 and earlier"
}
]
}
}
]
}

View File

@ -1,17 +1,73 @@
{
"data_version": "4.0",
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2024-45203",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
"ASSIGNER": "vultures@jpcert.or.jp",
"STATE": "PUBLIC"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
"value": "Improper authorization in handler for custom URL scheme issue in \"@cosme\" App for Android versions prior 5.69.0 and \"@cosme\" App for iOS versions prior to 6.74.0 allows an attacker to lead a user to access an arbitrary website via the vulnerable App. As a result, the user may become a victim of a phishing attack."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Improper authorization in handler for custom URL scheme"
}
]
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "istyle Inc.",
"product": {
"product_data": [
{
"product_name": "\"@cosme\" App for Android",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "versions prior to 5.69.0"
}
]
}
},
{
"product_name": "\"@cosme\" App for iOS",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "versions prior to 6.74.0"
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
{
"url": "https://jvn.jp/en/jp/JVN81570776/",
"refsource": "MISC",
"name": "https://jvn.jp/en/jp/JVN81570776/"
}
]
}

View File

@ -0,0 +1,18 @@
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2024-45785",
"ASSIGNER": "cve@mitre.org",
"STATE": "RESERVED"
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
}
]
}
}