diff --git a/CVE-2024/CVE-2024-33xx/CVE-2024-3320.json b/CVE-2024/CVE-2024-33xx/CVE-2024-3320.json new file mode 100644 index 00000000000..25c40941bed --- /dev/null +++ b/CVE-2024/CVE-2024-33xx/CVE-2024-3320.json @@ -0,0 +1,92 @@ +{ + "id": "CVE-2024-3320", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-04-05T00:15:08.147", + "lastModified": "2024-04-05T00:15:08.147", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability was found in SourceCodester eLearning System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument page leads to cross site scripting. The attack may be launched remotely. The identifier of this vulnerability is VDB-259388." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "REQUIRED", + "scope": "UNCHANGED", + "confidentialityImpact": "NONE", + "integrityImpact": "LOW", + "availabilityImpact": "NONE", + "baseScore": 3.5, + "baseSeverity": "LOW" + }, + "exploitabilityScore": 2.1, + "impactScore": 1.4 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:S/C:N/I:P/A:N", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "SINGLE", + "confidentialityImpact": "NONE", + "integrityImpact": "PARTIAL", + "availabilityImpact": "NONE", + "baseScore": 4.0 + }, + "baseSeverity": "MEDIUM", + "exploitabilityScore": 8.0, + "impactScore": 2.9, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-79" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/qqqyc/vuln/blob/main/eLearning%20System-XSS-01.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.259388", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.259388", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?submit.310103", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-33xx/CVE-2024-3321.json b/CVE-2024/CVE-2024-33xx/CVE-2024-3321.json new file mode 100644 index 00000000000..fe595bfd8ea --- /dev/null +++ b/CVE-2024/CVE-2024-33xx/CVE-2024-3321.json @@ -0,0 +1,92 @@ +{ + "id": "CVE-2024-3321", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-04-05T01:15:51.747", + "lastModified": "2024-04-05T01:15:51.747", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability classified as problematic has been found in SourceCodester eLearning System 1.0. This affects an unknown part of the component Maintenance Module. The manipulation of the argument Subject Code/Description leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-259389 was assigned to this vulnerability." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "REQUIRED", + "scope": "UNCHANGED", + "confidentialityImpact": "NONE", + "integrityImpact": "LOW", + "availabilityImpact": "NONE", + "baseScore": 3.5, + "baseSeverity": "LOW" + }, + "exploitabilityScore": 2.1, + "impactScore": 1.4 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:S/C:N/I:P/A:N", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "SINGLE", + "confidentialityImpact": "NONE", + "integrityImpact": "PARTIAL", + "availabilityImpact": "NONE", + "baseScore": 4.0 + }, + "baseSeverity": "MEDIUM", + "exploitabilityScore": 8.0, + "impactScore": 2.9, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-79" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/qqqyc/vuln/blob/main/eLearning%20System-XSS-04.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.259389", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.259389", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?submit.310122", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index d6ed2ba3fc0..6c064fb2a5d 100644 --- a/README.md +++ b/README.md @@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-04-04T23:55:30.297991+00:00 +2024-04-05T02:00:32.496794+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-04-04T23:15:16.743000+00:00 +2024-04-05T01:15:51.747000+00:00 ``` ### Last Data Feed Release @@ -27,37 +27,27 @@ Repository synchronizes with the NVD every 2 hours. Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/releases/latest) ```plain -2024-04-04T00:00:20.244742+00:00 +2024-04-05T00:00:20.261672+00:00 ``` ### Total Number of included CVEs ```plain -244164 +244166 ``` ### CVEs added in the last Commit -Recently added CVEs: `10` +Recently added CVEs: `2` -- [CVE-2024-21894](CVE-2024/CVE-2024-218xx/CVE-2024-21894.json) (`2024-04-04T23:15:15.640`) -- [CVE-2024-27981](CVE-2024/CVE-2024-279xx/CVE-2024-27981.json) (`2024-04-04T23:15:15.837`) -- [CVE-2024-29049](CVE-2024/CVE-2024-290xx/CVE-2024-29049.json) (`2024-04-04T22:15:08.827`) -- [CVE-2024-29981](CVE-2024/CVE-2024-299xx/CVE-2024-29981.json) (`2024-04-04T22:15:09.153`) -- [CVE-2024-31206](CVE-2024/CVE-2024-312xx/CVE-2024-31206.json) (`2024-04-04T23:15:15.897`) -- [CVE-2024-31210](CVE-2024/CVE-2024-312xx/CVE-2024-31210.json) (`2024-04-04T23:15:16.127`) -- [CVE-2024-31211](CVE-2024/CVE-2024-312xx/CVE-2024-31211.json) (`2024-04-04T23:15:16.333`) -- [CVE-2024-31212](CVE-2024/CVE-2024-312xx/CVE-2024-31212.json) (`2024-04-04T23:15:16.540`) -- [CVE-2024-31498](CVE-2024/CVE-2024-314xx/CVE-2024-31498.json) (`2024-04-04T23:15:16.743`) -- [CVE-2024-3316](CVE-2024/CVE-2024-33xx/CVE-2024-3316.json) (`2024-04-04T22:15:09.420`) +- [CVE-2024-3320](CVE-2024/CVE-2024-33xx/CVE-2024-3320.json) (`2024-04-05T00:15:08.147`) +- [CVE-2024-3321](CVE-2024/CVE-2024-33xx/CVE-2024-3321.json) (`2024-04-05T01:15:51.747`) ### CVEs modified in the last Commit -Recently modified CVEs: `2` +Recently modified CVEs: `0` -- [CVE-2024-29059](CVE-2024/CVE-2024-290xx/CVE-2024-29059.json) (`2024-04-04T22:15:09.033`) -- [CVE-2024-3250](CVE-2024/CVE-2024-32xx/CVE-2024-3250.json) (`2024-04-04T22:15:09.350`) ## Download and Usage diff --git a/_state.csv b/_state.csv index 0d5ab9143e0..aa2e5b83719 100644 --- a/_state.csv +++ b/_state.csv @@ -240218,7 +240218,7 @@ CVE-2024-21890,0,0,d0d6d1a152080740d6ba84ad392a919d70445665b25a7f6969e602652f189 CVE-2024-21891,0,0,e424ef0f7a416dd53e40d650cdce75de43c958a1f5dba4ec358496f75617d5f2,2024-03-15T11:15:08.753000 CVE-2024-21892,0,0,20e5acefe40d87bdcf0ddd06c773a67f885e875636f69c9336b01748da654b1a,2024-03-22T19:15:08.477000 CVE-2024-21893,0,0,8e30826f2f638f6b28dccfb70150ad8a33cc616c290d8b76095e5ee871803b64,2024-02-01T02:00:01.187000 -CVE-2024-21894,1,1,2c2a0cfb64a28c521a5d401dd83f4046f41809ef6e3c15336e7ccdba4ed23297,2024-04-04T23:15:15.640000 +CVE-2024-21894,0,0,2c2a0cfb64a28c521a5d401dd83f4046f41809ef6e3c15336e7ccdba4ed23297,2024-04-04T23:15:15.640000 CVE-2024-21896,0,0,19b337275b4c80290e30856ac5f19a33170bf79b2972a381de5433010e95582d,2024-03-29T13:15:14 CVE-2024-21899,0,0,688bbc85b9f5d15251f75737cd336d68aa458da265ba78cb33907c6eacd4fe61,2024-03-13T14:25:02.043000 CVE-2024-21900,0,0,e9e3bacd169a2499fbcf9944a7d36b5aa443f74334f0445e246d0d286dadb841,2024-03-13T14:24:02.157000 @@ -242961,7 +242961,7 @@ CVE-2024-27965,0,0,f61123ce4029323df5e9d7b3d5861b1b78032137365817fb982ed2ce3f089 CVE-2024-27968,0,0,81cf818ff4c52a717cdd4ac78ff685291ab11ee5a0785fe2aaaed4be1173d92c,2024-03-21T19:47:03.943000 CVE-2024-27972,0,0,5f2a44ef4455f2392170f0062af4e1f33c4163a5c961cda58ad08221f3c689b8,2024-04-03T12:38:04.840000 CVE-2024-27974,0,0,c5d12161a6a294fb4d33a068888d07d2dec693f9073d8d47f06182bf4fe2779a,2024-03-18T12:38:25.490000 -CVE-2024-27981,1,1,9b5a12843bd42fcdebdcb67b05505c9c782e5c81b48b126959ed335e973891c2,2024-04-04T23:15:15.837000 +CVE-2024-27981,0,0,9b5a12843bd42fcdebdcb67b05505c9c782e5c81b48b126959ed335e973891c2,2024-04-04T23:15:15.837000 CVE-2024-27986,0,0,221ac31a72264e8303bc0dc716d0bcad27f92aa2e3b64824247f9d02601983b8,2024-03-14T12:52:09.877000 CVE-2024-27987,0,0,457341cfe208a4dd4f1ca3a12fe23df96b337000dbd585aed58689be29e5bec4,2024-03-15T12:53:06.423000 CVE-2024-27993,0,0,4178545ce3cee5131bcc85417ac208f6615c9c5305016cf5248ec96a71c28f2b,2024-03-21T15:24:35.093000 @@ -243350,9 +243350,9 @@ CVE-2024-29037,0,0,d14590394517ae3abb6cee2c5008c5f9a159ea7cb5e3f1665632e06ebb11a CVE-2024-2904,0,0,ad94cde058aa186716aa9a9e0abda85712b8f6121542c812afe32aed48147ca1,2024-03-26T12:55:05.010000 CVE-2024-29041,0,0,062cd423858e5d93d3fcaca6dd38a28eee29d2cae2776de71c0c9845b66bbfc2,2024-03-26T12:55:05.010000 CVE-2024-29042,0,0,1acd40f3f2614341c5d235ab7d1243ecc16ed46461e3f61d34bea944cf83e729,2024-03-22T19:02:10.300000 -CVE-2024-29049,1,1,e78e1e35594f3663bd8ea8d75f4f522d6e9d8a0da7f1b20a9db995d28eba4f15,2024-04-04T22:15:08.827000 +CVE-2024-29049,0,0,e78e1e35594f3663bd8ea8d75f4f522d6e9d8a0da7f1b20a9db995d28eba4f15,2024-04-04T22:15:08.827000 CVE-2024-29057,0,0,1a7d236424310c38bf79fff65250ee548fa2fb68d692d6ba086f9244a484a161,2024-03-26T03:18:48.760000 -CVE-2024-29059,0,1,d93ec606be992e55fa01c28ef1ad5d3cf38a06f675d6b6e016fe3fa040aeab38,2024-04-04T22:15:09.033000 +CVE-2024-29059,0,0,d93ec606be992e55fa01c28ef1ad5d3cf38a06f675d6b6e016fe3fa040aeab38,2024-04-04T22:15:09.033000 CVE-2024-2906,0,0,7907d5a5cd3460f6f133374b708901f61c1d81fd1b49c6a2c33ea92916afc2fe,2024-03-26T17:09:53.043000 CVE-2024-29071,0,0,5ff903755374c23b025a98d3cc2b0f06ea188aa4151e3658c02fd385bc8b4fa8,2024-03-25T13:47:14.087000 CVE-2024-29074,0,0,9e8f322269475ed9cf88d107d6401cb08d7756267afe6b14bb883cfb51c03588,2024-04-02T12:50:42.233000 @@ -243689,7 +243689,7 @@ CVE-2024-2995,0,0,ba31d4fdf46a8e9145ed5495217455e3d9072a2ebb94ae2fda6621c0845110 CVE-2024-2996,0,0,0b0c96cd4401e8e1fb8060c81f23c89572ad9b0c24303b77f9fc9c7260b30593,2024-03-28T02:01:13.303000 CVE-2024-2997,0,0,c25a0bbfb8b81ba4a7609ce1db6b052bf0c441b86ae99d5b115f9aed54aacfaa,2024-03-28T02:01:13.303000 CVE-2024-2998,0,0,5681a062ccdd5a830be0384ff482de7d54d630b9f9b97e51bbdaf99053da129c,2024-03-28T02:01:13.303000 -CVE-2024-29981,1,1,888b77e83dcf240e93a379474f69e048d7dea25488489d8826c8450b166b5347,2024-04-04T22:15:09.153000 +CVE-2024-29981,0,0,888b77e83dcf240e93a379474f69e048d7dea25488489d8826c8450b166b5347,2024-04-04T22:15:09.153000 CVE-2024-2999,0,0,80ecdff89fed5b636507b4867b9a819cb9159e93542975d19d9e3f967fe6eba6,2024-03-28T02:01:13.303000 CVE-2024-3000,0,0,f99d838672e9d5c2290539736a593838bb67e89cbadb925e87e0aba821826952,2024-03-28T02:01:13.303000 CVE-2024-3001,0,0,d9a538358fb1081709849ee14267762e99c97d14b00ed634db4923647ee7e3e9,2024-03-28T02:01:13.303000 @@ -244083,12 +244083,12 @@ CVE-2024-3116,0,0,07e1280cec0acc3241084e2928dc995b883b3c79a61f023bec5928b4f884c1 CVE-2024-3117,0,0,136fb5551ef6dfa1bf4e08424db43ed91a6bb8dd83f3d6ce39a5378e07bb201b,2024-04-01T01:12:59.077000 CVE-2024-3118,0,0,f6c34b2c6946d5fdb10aa55aa3b524d7a78d6b6fed9a90242c451ed5ef8e29f1,2024-04-01T01:12:59.077000 CVE-2024-31204,0,0,778ee2e514ae8409a34251ec0718428b19b33226c54155d49c58197316f49800,2024-04-04T21:15:16.773000 -CVE-2024-31206,1,1,70d97487a50457fdcab2c2764b35210d26c9f34a06e50a16c35d54a406291451,2024-04-04T23:15:15.897000 +CVE-2024-31206,0,0,70d97487a50457fdcab2c2764b35210d26c9f34a06e50a16c35d54a406291451,2024-04-04T23:15:15.897000 CVE-2024-31207,0,0,d3876c49ae6a717d1d96886a61c00def756b07d67a7072af0e0c707139e9cb22,2024-04-04T16:33:06.610000 CVE-2024-31209,0,0,05d38da92090c630ce652bea70fb74ebd0e72d4aebc34edd452f84719c7d745a,2024-04-04T16:33:06.610000 -CVE-2024-31210,1,1,6a68e2b347e546ed314c6dab4e2650330525d917ed609ef801f21d7d99ab70b2,2024-04-04T23:15:16.127000 -CVE-2024-31211,1,1,0b15058289053aebd70a2cd0ee0261afe0048a2d30cb11e09f1019511cc1fed1,2024-04-04T23:15:16.333000 -CVE-2024-31212,1,1,715d3b2218b5b0fe7089cfd9e66ac01fb8eb421d8519c3bc381247d44fbb7a36,2024-04-04T23:15:16.540000 +CVE-2024-31210,0,0,6a68e2b347e546ed314c6dab4e2650330525d917ed609ef801f21d7d99ab70b2,2024-04-04T23:15:16.127000 +CVE-2024-31211,0,0,0b15058289053aebd70a2cd0ee0261afe0048a2d30cb11e09f1019511cc1fed1,2024-04-04T23:15:16.333000 +CVE-2024-31212,0,0,715d3b2218b5b0fe7089cfd9e66ac01fb8eb421d8519c3bc381247d44fbb7a36,2024-04-04T23:15:16.540000 CVE-2024-31215,0,0,07f7af48d0999954ee8c150eeba531641360a8fad1af070d9e9675df4d3ed6e9,2024-04-04T16:33:06.610000 CVE-2024-3124,0,0,0636ee928c0356d73e2effbc159ce59d850c83e7a22c6ba92b3f50b98c28bb80,2024-04-01T15:53:18.060000 CVE-2024-3125,0,0,7c2049f0f2088c1a2b8c1e4ee00a5f848a0ae8a9d91f54f3eb97b0a3f7d4e8d6,2024-04-01T15:53:18.060000 @@ -244115,7 +244115,7 @@ CVE-2024-3145,0,0,910eeb7fc8d864d7945418c0e4535b894388c19da07aa9b0f359cad540d768 CVE-2024-3146,0,0,c53d63ca526f35fd2250cfdb239f061e8b52186457f5fd4f6bc18a291d69a364,2024-04-02T12:50:42.233000 CVE-2024-3147,0,0,02625b405a9656dc1928c253c58a24946e5b9cb50ef47acb30b3a3a470e8efd5,2024-04-02T12:50:42.233000 CVE-2024-3148,0,0,da83dea91bd5fed523ca15df13db4100d62650319dcc492fed6d52171a819a8a,2024-04-02T12:50:42.233000 -CVE-2024-31498,1,1,76b23ac689905bc2a9281513cf35e67dae5a9eba3661ce4f444119b6c633f27b,2024-04-04T23:15:16.743000 +CVE-2024-31498,0,0,76b23ac689905bc2a9281513cf35e67dae5a9eba3661ce4f444119b6c633f27b,2024-04-04T23:15:16.743000 CVE-2024-3151,0,0,dbc1fd34b22356e776c12a200bc45c40de5eea60ac1974d151d7c1d279b32bb4,2024-04-02T18:12:16.283000 CVE-2024-3160,0,0,f3860e2f9070e5e070adb0fe8ff153c3f84611a0ac253de8db1847a3b6990614,2024-04-02T12:50:42.233000 CVE-2024-3162,0,0,7209bf9b1b4a4f41543ae01bfd19e9aec1dd355164cd1434a8cb5548ea161c65,2024-04-03T12:38:04.840000 @@ -244141,7 +244141,7 @@ CVE-2024-3226,0,0,0d9ebebedadf244922f8385228c3d640f57a5f4e2e40a7b8124aa06fa756c4 CVE-2024-3227,0,0,5e86de506c0356caace938eb3ddc76daf74ee07964bebbed2f3824e6fdb4ef31,2024-04-03T12:38:04.840000 CVE-2024-3247,0,0,095afc187e8f976bc1a2eaa79a4c0328aa3c3e2487a10203585d8616775f8a4d,2024-04-03T12:38:04.840000 CVE-2024-3248,0,0,65f6d4ddfc43ae235edf2e59fc9daa1f1d020439a4fa197a41a6ddd58e106004,2024-04-03T12:38:04.840000 -CVE-2024-3250,0,1,2d6e4fa76cca7b8e01352ea4b54b7151a6b9e9608e9608dee225853dfeeb2f71,2024-04-04T22:15:09.350000 +CVE-2024-3250,0,0,2d6e4fa76cca7b8e01352ea4b54b7151a6b9e9608e9608dee225853dfeeb2f71,2024-04-04T22:15:09.350000 CVE-2024-3251,0,0,612fa2cbd1b7aa381067b911d8824859d86a26753bd39d3ebfa059bfd1d20eac,2024-04-03T12:38:04.840000 CVE-2024-3252,0,0,aa2e5a3beeb53d70ad7f51b4bbc1915ec41533b4a644198bc020755253bede7e,2024-04-03T12:38:04.840000 CVE-2024-3253,0,0,0972236c1835b9f5b2c1ab54b3987e593351bdd4ff986c80c53132587f0059fc,2024-04-03T12:38:04.840000 @@ -244162,4 +244162,6 @@ CVE-2024-3299,0,0,e27ead5ec50888cbdeacdd9f017ce3d5215207dea15a19473541db1dd6d943 CVE-2024-3311,0,0,aa7fc1deae3f232a19fb15f73746be3e8b5bdfb16344ac194a9778a38a36d502,2024-04-04T21:15:16.957000 CVE-2024-3314,0,0,92d4bf971d9d793b8beffddc0437396a7128d83d27097a782b33fe476e5a79c0,2024-04-04T21:15:17.203000 CVE-2024-3315,0,0,17d09e074eb10ede9f7c310480abb639bee1cdd7c753516a84c89a3dd7d1dc28,2024-04-04T21:15:17.430000 -CVE-2024-3316,1,1,496578d334aeef18643bc7c87251f0adbce19e341ca837c7de563b8b7302373a,2024-04-04T22:15:09.420000 +CVE-2024-3316,0,0,496578d334aeef18643bc7c87251f0adbce19e341ca837c7de563b8b7302373a,2024-04-04T22:15:09.420000 +CVE-2024-3320,1,1,61949eb200cfcf307cf3670b344aa4460c284a0d1eb9c45cc5c9d9521bae735a,2024-04-05T00:15:08.147000 +CVE-2024-3321,1,1,99daf7bab74755b93d5229da76327f6e1862554d58dff72b09f28543f99e3f0c,2024-04-05T01:15:51.747000