Auto-Update: 2024-05-26T08:00:37.665503+00:00

This commit is contained in:
cad-safe-bot 2024-05-26 08:03:31 +00:00
parent a839babab1
commit 16e4c18f5e
3 changed files with 100 additions and 8 deletions

View File

@ -0,0 +1,92 @@
{
"id": "CVE-2024-5355",
"sourceIdentifier": "cna@vuldb.com",
"published": "2024-05-26T06:15:08.883",
"lastModified": "2024-05-26T06:15:08.883",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "A vulnerability, which was classified as critical, has been found in anji-plus AJ-Report up to 1.4.1. This issue affects the function IGroovyHandler. The manipulation leads to command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-266267."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "cna@vuldb.com",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "LOW",
"integrityImpact": "LOW",
"availabilityImpact": "LOW",
"baseScore": 6.3,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 2.8,
"impactScore": 3.4
}
],
"cvssMetricV2": [
{
"source": "cna@vuldb.com",
"type": "Secondary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 6.5
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "cna@vuldb.com",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-77"
}
]
}
],
"references": [
{
"url": "https://github.com/anji-plus/report/files/15363269/aj-report.pdf",
"source": "cna@vuldb.com"
},
{
"url": "https://github.com/anji-plus/report/issues/34",
"source": "cna@vuldb.com"
},
{
"url": "https://vuldb.com/?ctiid.266267",
"source": "cna@vuldb.com"
},
{
"url": "https://vuldb.com/?id.266267",
"source": "cna@vuldb.com"
}
]
}

View File

@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2024-05-26T06:00:29.500441+00:00
2024-05-26T08:00:37.665503+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2024-05-26T05:15:08.297000+00:00
2024-05-26T06:15:08.883000+00:00
```
### Last Data Feed Release
@ -33,15 +33,14 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### Total Number of included CVEs
```plain
251784
251785
```
### CVEs added in the last Commit
Recently added CVEs: `2`
Recently added CVEs: `1`
- [CVE-2024-5353](CVE-2024/CVE-2024-53xx/CVE-2024-5353.json) (`2024-05-26T04:15:08.350`)
- [CVE-2024-5354](CVE-2024/CVE-2024-53xx/CVE-2024-5354.json) (`2024-05-26T05:15:08.297`)
- [CVE-2024-5355](CVE-2024/CVE-2024-53xx/CVE-2024-5355.json) (`2024-05-26T06:15:08.883`)
### CVEs modified in the last Commit

View File

@ -251781,5 +251781,6 @@ CVE-2024-5340,0,0,cd6a4584a699b57ca6cfe6dd086d293eb0eda8d447e404069c45b9cb2a4daa
CVE-2024-5350,0,0,d9d5199af09903f5d6fa7ce1c3f629a14a0b73872399e216e2f1a73623ab5486,2024-05-25T23:15:09.123000
CVE-2024-5351,0,0,aebf51a65ba25588eae77758e0fe296b408b26f5a4445e748cfec0a55388edb4,2024-05-26T00:15:09.890000
CVE-2024-5352,0,0,b33f097a66fd042a49a320f828305fde8c5c33d790a288de9e9da431e5f99772,2024-05-26T01:15:08.647000
CVE-2024-5353,1,1,25809abc2977c48829c375685b12d71009a9e041894dcdfc3ca61287e30319e8,2024-05-26T04:15:08.350000
CVE-2024-5354,1,1,49d0efcde572d8eda782fbe89d5eff8fe01c27ac52c871b3a205dd313602ce1d,2024-05-26T05:15:08.297000
CVE-2024-5353,0,0,25809abc2977c48829c375685b12d71009a9e041894dcdfc3ca61287e30319e8,2024-05-26T04:15:08.350000
CVE-2024-5354,0,0,49d0efcde572d8eda782fbe89d5eff8fe01c27ac52c871b3a205dd313602ce1d,2024-05-26T05:15:08.297000
CVE-2024-5355,1,1,65ae2b1873eb97b202664f655fcc59894c785d60507962a268bf3d380f7f9095,2024-05-26T06:15:08.883000

Can't render this file because it is too large.