Auto-Update: 2024-08-27T06:00:16.737611+00:00

This commit is contained in:
cad-safe-bot 2024-08-27 06:03:13 +00:00
parent f483f5543f
commit 2dd0da7f96
5 changed files with 158 additions and 9 deletions

View File

@ -0,0 +1,29 @@
{
"id": "CVE-2024-45321",
"sourceIdentifier": "cve@mitre.org",
"published": "2024-08-27T04:15:09.010",
"lastModified": "2024-08-27T04:15:09.010",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network attackers."
}
],
"metrics": {},
"references": [
{
"url": "https://github.com/miyagawa/cpanminus/issues/611",
"source": "cve@mitre.org"
},
{
"url": "https://github.com/miyagawa/cpanminus/pull/674",
"source": "cve@mitre.org"
},
{
"url": "https://security.metacpan.org/2024/08/26/cpanminus-downloads-code-using-insecure-http.html",
"source": "cve@mitre.org"
}
]
}

View File

@ -0,0 +1,60 @@
{
"id": "CVE-2024-6688",
"sourceIdentifier": "security@wordfence.com",
"published": "2024-08-27T05:15:12.993",
"lastModified": "2024-08-27T05:15:12.993",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Oxygen Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the oxy_save_css_from_admin AJAX action in all versions up to, and including, 4.8.3. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update stylesheets."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "security@wordfence.com",
"type": "Primary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "NONE",
"integrityImpact": "LOW",
"availabilityImpact": "NONE",
"baseScore": 4.3,
"baseSeverity": "MEDIUM"
},
"exploitabilityScore": 2.8,
"impactScore": 1.4
}
]
},
"weaknesses": [
{
"source": "security@wordfence.com",
"type": "Secondary",
"description": [
{
"lang": "en",
"value": "CWE-862"
}
]
}
],
"references": [
{
"url": "https://oxygenbuilder.com/oxygen-4-9-now-available/",
"source": "security@wordfence.com"
},
{
"url": "https://www.wordfence.com/threat-intel/vulnerabilities/id/78c88402-52ca-44ff-8767-1f843fcb66fd?source=cve",
"source": "security@wordfence.com"
}
]
}

View File

@ -0,0 +1,56 @@
{
"id": "CVE-2024-7125",
"sourceIdentifier": "hirt@hitachi.co.jp",
"published": "2024-08-27T05:15:13.307",
"lastModified": "2024-08-27T05:15:13.307",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Authentication Bypass vulnerability in Hitachi Ops Center Common Services.This issue affects Hitachi Ops Center Common Services: from 10.9.3-00 before 11.0.2-01."
}
],
"metrics": {
"cvssMetricV31": [
{
"source": "hirt@hitachi.co.jp",
"type": "Secondary",
"cvssData": {
"version": "3.1",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
"attackVector": "LOCAL",
"attackComplexity": "LOW",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"scope": "UNCHANGED",
"confidentialityImpact": "HIGH",
"integrityImpact": "HIGH",
"availabilityImpact": "HIGH",
"baseScore": 7.8,
"baseSeverity": "HIGH"
},
"exploitabilityScore": 1.8,
"impactScore": 5.9
}
]
},
"weaknesses": [
{
"source": "hirt@hitachi.co.jp",
"type": "Secondary",
"description": [
{
"lang": "en",
"value": "CWE-288"
}
]
}
],
"references": [
{
"url": "https://www.hitachi.com/products/it/software/security/info/vuls/hitachi-sec-2024-143/index.html",
"source": "hirt@hitachi.co.jp"
}
]
}

View File

@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2024-08-27T04:00:16.834297+00:00
2024-08-27T06:00:16.737611+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2024-08-27T03:18:45.253000+00:00
2024-08-27T05:15:13.307000+00:00
```
### Last Data Feed Release
@ -33,21 +33,22 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### Total Number of included CVEs
```plain
261269
261272
```
### CVEs added in the last Commit
Recently added CVEs: `0`
Recently added CVEs: `3`
- [CVE-2024-45321](CVE-2024/CVE-2024-453xx/CVE-2024-45321.json) (`2024-08-27T04:15:09.010`)
- [CVE-2024-6688](CVE-2024/CVE-2024-66xx/CVE-2024-6688.json) (`2024-08-27T05:15:12.993`)
- [CVE-2024-7125](CVE-2024/CVE-2024-71xx/CVE-2024-7125.json) (`2024-08-27T05:15:13.307`)
### CVEs modified in the last Commit
Recently modified CVEs: `2`
Recently modified CVEs: `0`
- [CVE-2021-47578](CVE-2021/CVE-2021-475xx/CVE-2021-47578.json) (`2024-08-27T03:18:45.253`)
- [CVE-2021-47589](CVE-2021/CVE-2021-475xx/CVE-2021-47589.json) (`2024-08-27T03:16:19.000`)
## Download and Usage

View File

@ -187427,7 +187427,7 @@ CVE-2021-47574,0,0,fb510e0de5c16540c28aafbb11dc6447df4650a07171ce8b06dc3ecc0ad86
CVE-2021-47575,0,0,1190580e8b98f1fb3213b57001e63f689d55d9f65670cdf88262d5324141308a,2024-06-20T09:15:10.953000
CVE-2021-47576,0,0,4735162112e291ecd71c3dbd8bb1c99e1303f7754936ce63cc7351326be49a3e,2024-06-20T12:43:25.663000
CVE-2021-47577,0,0,d0face38e2762beb7e28363ee5ff98795dd4f46c8e6afb2c345789d3f1fe5542,2024-06-20T12:43:25.663000
CVE-2021-47578,0,1,2b81563df18159ccacdf1d60c9b3e336ea801dd9f67b5d514205223d8fb7aa4e,2024-08-27T03:18:45.253000
CVE-2021-47578,0,0,2b81563df18159ccacdf1d60c9b3e336ea801dd9f67b5d514205223d8fb7aa4e,2024-08-27T03:18:45.253000
CVE-2021-47579,0,0,214fa59c33ed22b9398868c401e997995a9f0f8c8cbab8497c48f31736b1004e,2024-06-20T12:43:25.663000
CVE-2021-47580,0,0,e0ba4a70a306169a72b59c906d22256e1e9ec63a836b279525125573202bd886,2024-06-20T12:43:25.663000
CVE-2021-47581,0,0,8787010fa1b837c9433128d0d20bbbc5cc367d055ada39f1bbe864fed14da829,2024-06-20T09:15:11.057000
@ -187438,7 +187438,7 @@ CVE-2021-47585,0,0,ce01987df681397de7d54893e5efcb2392f1d920c4c52cb4fe8e15c2b35f8
CVE-2021-47586,0,0,43a350738cd92215883dae2d0f75b2537927b72a55c6c8b78e203743018315a0,2024-07-03T01:38:11.913000
CVE-2021-47587,0,0,b30550a10bae30fdaddfdf1118241fdecdb0aac764064035e93107f946fad012,2024-06-20T12:43:25.663000
CVE-2021-47588,0,0,0f7c2ddebf5230cc4da6aa5555c1f5261002923073136fff5e4910d65af55ae8,2024-06-20T12:43:25.663000
CVE-2021-47589,0,1,90b76d41b40e586a29ff9e2db3957fc07fd2120cba5363d84fdec4e79fc74d37,2024-08-27T03:16:19
CVE-2021-47589,0,0,90b76d41b40e586a29ff9e2db3957fc07fd2120cba5363d84fdec4e79fc74d37,2024-08-27T03:16:19
CVE-2021-47590,0,0,726cea40316793171537866d837fe3d747c8cb3266d32af4450bad9f997fcfaa,2024-06-20T12:43:25.663000
CVE-2021-47591,0,0,075ff96a49ab3870794068c07184348561582a3968bb161ed2673754442a5134,2024-06-20T12:43:25.663000
CVE-2021-47592,0,0,3e6a900f856612ffa91a686567e21f4c94ed7d6a279efc65d48294ed49768d05,2024-06-20T12:43:25.663000
@ -258644,6 +258644,7 @@ CVE-2024-4529,0,0,5fbb4c14219ef7d51954458b7780a68dbee769876e9489db6e9ba34bd68834
CVE-2024-4530,0,0,6b78f15ba2a60e96a20ff176cd49d228ee37f0e30a4b3e696092a717f8a23e27,2024-05-28T12:39:28.377000
CVE-2024-4531,0,0,5dc1dd0922f3418ce95c33a9fc334c76453bfc98ac8636a0eebb27c9c952bb3f,2024-07-03T02:07:42.610000
CVE-2024-4532,0,0,4fd2f02f0358f1c611846b77f1b0e80bcb1985e07f23fa6a21a71cc25593500a,2024-05-28T12:39:28.377000
CVE-2024-45321,1,1,854f9779fab77fcd514dde87764ccd978a14401b8fba445b54dcb7dede6a23f9,2024-08-27T04:15:09.010000
CVE-2024-4533,0,0,aca3a412ead1ce1343d6f498450801be5e059db6302d74881039b5fe75fb6c09,2024-05-28T12:39:28.377000
CVE-2024-4534,0,0,527a3127a7586bdf18d80cd2b5b17fe74ac5ed6a2aa4ee562148173cc1d9d3e9,2024-08-09T19:35:09.923000
CVE-2024-4535,0,0,87b4b5e0787ea182ddd9c6fa8e26c59b6c616e4e57e592ee0d6f169678ff9b64,2024-05-28T12:39:28.377000
@ -260402,6 +260403,7 @@ CVE-2024-6680,0,0,131299d0989a76f846afb0c8ae15f4692f1a0fdd9931fad30c165660cd1232
CVE-2024-6681,0,0,fd87484dafd740c0f788720b14149eb40f6b6d8ce371416d0e039ce9acf82071,2024-07-11T18:09:58.777000
CVE-2024-6684,0,0,5077927f346cf8d394fd9a76287141cc3d9bbdc383e5155cbda2006a142ade04,2024-08-13T21:15:16.377000
CVE-2024-6687,0,0,ff47b1397711b8cc3d93cfe454be390cc9012eec28a4b5d25b3eacdb0bcb37ed,2024-08-01T12:42:36.933000
CVE-2024-6688,1,1,311de695eb3b5b23040fc1bd91717901f4d99820e3af047aa18980d8b9170905,2024-08-27T05:15:12.993000
CVE-2024-6689,0,0,d40d4a6e022419e83ed34bb3a74eb0d24556e6d76f7b0a592f90775a9d52873c,2024-07-16T13:43:58.773000
CVE-2024-6691,0,0,6f4b5fdff9d8a72f980f94d56213c288fa4b5b617985852e29dbbcc9099ac853,2024-08-12T13:41:36.517000
CVE-2024-6692,0,0,e73c083ff98791fbf8d27289c6bf10e57a3b04cffd44cadb1a6c218a8e23e9aa,2024-08-12T13:41:36.517000
@ -260655,6 +260657,7 @@ CVE-2024-7119,0,0,6b773d2ee0198b8c2555adc9c1a3fd196ed4373805abfd3c2f3d4a0da9be44
CVE-2024-7120,0,0,dd88c4d4f5099fe6bbb2fa59d0942931f85db230d235608307fdbb069312e6ec,2024-08-13T14:06:57.033000
CVE-2024-7121,0,0,fdae6687b65374b6aec5500198958517002acfa86b757e82c1fe85c4c568e879,2024-08-08T17:15:19.820000
CVE-2024-7123,0,0,9cd56c5d21be01850838f11a2df252558cd6c9b176bc2485ad2b1b549f072ade,2024-08-08T17:15:19.970000
CVE-2024-7125,1,1,09f3cbec55eaf5c0db23f08b5983abf140bd91a7b79e517cae14ca7d6267bac3,2024-08-27T05:15:13.307000
CVE-2024-7127,0,0,2842be40cd41bba2687b1d2d238a3a521369bfe05553f868496bd1f3f7f4951f,2024-08-23T14:00:59.740000
CVE-2024-7128,0,0,22b40e3236f05da8de2b73f629340b5796a3b45429dedc50864bf862ccb583f9,2024-07-29T14:12:08.783000
CVE-2024-7134,0,0,c5170ada8be1ea583d3dc92d1c0c20ff0ddcfa0f860d82c947cda0aff2380786,2024-08-21T12:30:33.697000

Can't render this file because it is too large.