"-Synchronized-Data."

This commit is contained in:
CVE Team 2019-11-15 05:01:07 +00:00
parent 31be127bac
commit f1a9a02815
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8
13 changed files with 328 additions and 0 deletions

View File

@ -63,6 +63,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-57d43f3b58",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UMIYCYXCPRTVCVZ3TP6ZGPJ6RZS3IX4G/"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-703e299870",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OKPYHDFI7HRELVXBE5J4MTGSI35AKFBI/"
}
]
},

View File

@ -63,6 +63,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-57d43f3b58",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UMIYCYXCPRTVCVZ3TP6ZGPJ6RZS3IX4G/"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-703e299870",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OKPYHDFI7HRELVXBE5J4MTGSI35AKFBI/"
}
]
},

View File

@ -58,6 +58,11 @@
"refsource": "SUSE",
"name": "openSUSE-SU-2019:2458",
"url": "http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00015.html"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-703e299870",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OKPYHDFI7HRELVXBE5J4MTGSI35AKFBI/"
}
]
},

View File

@ -111,6 +111,11 @@
"refsource": "FEDORA",
"name": "FEDORA-2019-2265b5ae86",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PBJXUKV6XMSELWNXPS37CSUIH5EUHFXQ/"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-65509aac53",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/B7NCLOPTZNRRNYODH22BFIDH6YIQWLJD/"
}
]
}

View File

@ -0,0 +1,67 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2019-18981",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Pimcore before 6.2.2 lacks an Access Denied outcome for a certain scenario of an incorrect recipient ID of a notification."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/pimcore/pimcore/commit/0a5d80b2593b2ebe35d19756b730ba33aa049106",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/commit/0a5d80b2593b2ebe35d19756b730ba33aa049106"
},
{
"url": "https://github.com/pimcore/pimcore/compare/v6.2.1...v6.2.2",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/compare/v6.2.1...v6.2.2"
}
]
}
}

View File

@ -0,0 +1,67 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2019-18982",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "bundles/AdminBundle/Controller/Admin/EmailController.php in Pimcore before 6.3.0 allows script execution in the Email Log preview window because of the lack of a Content-Security-Policy header."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/pimcore/pimcore/commit/e0b48faf7d29ce43a98825a0b230e88350ebcf78",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/commit/e0b48faf7d29ce43a98825a0b230e88350ebcf78"
},
{
"url": "https://github.com/pimcore/pimcore/compare/v6.2.3...v6.3.0",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/compare/v6.2.3...v6.3.0"
}
]
}
}

View File

@ -0,0 +1,67 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2019-18985",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Pimcore before 6.2.2 lacks brute force protection for the 2FA token."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/pimcore/pimcore/compare/v6.2.1...v6.2.2",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/compare/v6.2.1...v6.2.2"
},
{
"url": "https://github.com/pimcore/pimcore/commit/9f2d075243a8392c114d9a8028858b9faf041e2d",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/commit/9f2d075243a8392c114d9a8028858b9faf041e2d"
}
]
}
}

View File

@ -0,0 +1,67 @@
{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2019-18986",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Pimcore before 6.2.2 allow attackers to brute-force (guess) valid usernames by using the 'forgot password' functionality as it returns distinct messages for invalid password and non-existing users."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"url": "https://github.com/pimcore/pimcore/compare/v6.2.1...v6.2.2",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/compare/v6.2.1...v6.2.2"
},
{
"url": "https://github.com/pimcore/pimcore/commit/4a7bba5c3f818852cbbd29fa124f7fb09a207185",
"refsource": "MISC",
"name": "https://github.com/pimcore/pimcore/commit/4a7bba5c3f818852cbbd29fa124f7fb09a207185"
}
]
}
}

View File

@ -68,6 +68,26 @@
"refsource": "MISC",
"name": "https://simplesamlphp.org/security/201911-01",
"url": "https://simplesamlphp.org/security/201911-01"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-9a960c8a98",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AB34ILMJ67CUROBOR6YPKB46VHXLOAJ4/"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-81f61cdceb",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MAWOVYLZKYDCQBLQEJCFAAD3KQTBPHXE/"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-be01267416",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ESKJTWLE7QZBQ3EKMYXKMBQG3JDEJWM6/"
},
{
"refsource": "FEDORA",
"name": "FEDORA-2019-73d0fe1d15",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/7KID7C4AZPYYIZQIPSLANP4R2RQR6YK3/"
}
]
},

View File

@ -47,6 +47,11 @@
"data_version": "4.0",
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.zerodayinitiative.com/advisories/ZDI-19-905/",
"url": "https://www.zerodayinitiative.com/advisories/ZDI-19-905/"
},
{
"url": "https://helpx.adobe.com/security/products/media-encoder/apsb19-52.html",
"refsource": "CONFIRM",

View File

@ -47,6 +47,11 @@
"data_version": "4.0",
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.zerodayinitiative.com/advisories/ZDI-19-904/",
"url": "https://www.zerodayinitiative.com/advisories/ZDI-19-904/"
},
{
"url": "https://helpx.adobe.com/security/products/media-encoder/apsb19-52.html",
"refsource": "CONFIRM",

View File

@ -47,6 +47,11 @@
"data_version": "4.0",
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.zerodayinitiative.com/advisories/ZDI-19-907/",
"url": "https://www.zerodayinitiative.com/advisories/ZDI-19-907/"
},
{
"url": "https://helpx.adobe.com/security/products/media-encoder/apsb19-52.html",
"refsource": "CONFIRM",

View File

@ -47,6 +47,11 @@
"data_version": "4.0",
"references": {
"reference_data": [
{
"refsource": "MISC",
"name": "https://www.zerodayinitiative.com/advisories/ZDI-19-906/",
"url": "https://www.zerodayinitiative.com/advisories/ZDI-19-906/"
},
{
"url": "https://helpx.adobe.com/security/products/media-encoder/apsb19-52.html",
"refsource": "CONFIRM",