From 48e35e113466d036c3b1b3ef7c58794c73bf8fde Mon Sep 17 00:00:00 2001 From: cad-safe-bot Date: Fri, 22 Mar 2024 09:03:28 +0000 Subject: [PATCH] Auto-Update: 2024-03-22T09:00:38.174083+00:00 --- CVE-2023/CVE-2023-34xx/CVE-2023-3418.json | 60 ++-------------- CVE-2024/CVE-2024-28xx/CVE-2024-2812.json | 88 +++++++++++++++++++++++ CVE-2024/CVE-2024-28xx/CVE-2024-2813.json | 88 +++++++++++++++++++++++ CVE-2024/CVE-2024-28xx/CVE-2024-2814.json | 88 +++++++++++++++++++++++ CVE-2024/CVE-2024-28xx/CVE-2024-2815.json | 88 +++++++++++++++++++++++ CVE-2024/CVE-2024-28xx/CVE-2024-2816.json | 88 +++++++++++++++++++++++ CVE-2024/CVE-2024-28xx/CVE-2024-2817.json | 88 +++++++++++++++++++++++ README.md | 24 +++---- _state.csv | 22 +++--- 9 files changed, 559 insertions(+), 75 deletions(-) create mode 100644 CVE-2024/CVE-2024-28xx/CVE-2024-2812.json create mode 100644 CVE-2024/CVE-2024-28xx/CVE-2024-2813.json create mode 100644 CVE-2024/CVE-2024-28xx/CVE-2024-2814.json create mode 100644 CVE-2024/CVE-2024-28xx/CVE-2024-2815.json create mode 100644 CVE-2024/CVE-2024-28xx/CVE-2024-2816.json create mode 100644 CVE-2024/CVE-2024-28xx/CVE-2024-2817.json diff --git a/CVE-2023/CVE-2023-34xx/CVE-2023-3418.json b/CVE-2023/CVE-2023-34xx/CVE-2023-3418.json index 46a905f783b..32c13f77c62 100644 --- a/CVE-2023/CVE-2023-34xx/CVE-2023-3418.json +++ b/CVE-2023/CVE-2023-34xx/CVE-2023-3418.json @@ -2,64 +2,14 @@ "id": "CVE-2023-3418", "sourceIdentifier": "contact@wpscan.com", "published": "2023-07-17T14:15:11.153", - "lastModified": "2023-11-07T04:18:43.013", - "vulnStatus": "Modified", + "lastModified": "2024-03-22T08:15:09.497", + "vulnStatus": "Rejected", "descriptions": [ { "lang": "en", - "value": "The Querlo Chatbot WordPress plugin through 1.2.4 does not escape or sanitize chat messages, leading to a stored Cross-Site Scripting vulnerability." + "value": "Rejected reason: The issue is not in the plugin itself but the underlying chat service" } ], - "metrics": { - "cvssMetricV31": [ - { - "source": "nvd@nist.gov", - "type": "Primary", - "cvssData": { - "version": "3.1", - "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N", - "attackVector": "NETWORK", - "attackComplexity": "LOW", - "privilegesRequired": "LOW", - "userInteraction": "REQUIRED", - "scope": "CHANGED", - "confidentialityImpact": "LOW", - "integrityImpact": "LOW", - "availabilityImpact": "NONE", - "baseScore": 5.4, - "baseSeverity": "MEDIUM" - }, - "exploitabilityScore": 2.3, - "impactScore": 2.7 - } - ] - }, - "configurations": [ - { - "nodes": [ - { - "operator": "OR", - "negate": false, - "cpeMatch": [ - { - "vulnerable": true, - "criteria": "cpe:2.3:a:querlo:chatbot:*:*:*:*:*:wordpress:*:*", - "versionEndIncluding": "1.2.4", - "matchCriteriaId": "16D0E557-3504-43F4-8DE0-CF4A6ECC171C" - } - ] - } - ] - } - ], - "references": [ - { - "url": "https://wpscan.com/vulnerability/407edb21-8fcb-484a-babb-fce96a6aede7", - "source": "contact@wpscan.com", - "tags": [ - "Exploit", - "Third Party Advisory" - ] - } - ] + "metrics": {}, + "references": [] } \ No newline at end of file diff --git a/CVE-2024/CVE-2024-28xx/CVE-2024-2812.json b/CVE-2024/CVE-2024-28xx/CVE-2024-2812.json new file mode 100644 index 00000000000..f295dbb4f6f --- /dev/null +++ b/CVE-2024/CVE-2024-28xx/CVE-2024-2812.json @@ -0,0 +1,88 @@ +{ + "id": "CVE-2024-2812", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-03-22T07:15:46.283", + "lastModified": "2024-03-22T07:15:46.283", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability was found in Tenda AC15 15.03.05.18/15.03.20_multi. It has been classified as critical. This affects the function formWriteFacMac of the file /goform/WriteFacMac. The manipulation of the argument mac leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257667. NOTE: The vendor was contacted early about this disclosure but did not respond in any way." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "NONE", + "scope": "UNCHANGED", + "confidentialityImpact": "LOW", + "integrityImpact": "LOW", + "availabilityImpact": "LOW", + "baseScore": 6.3, + "baseSeverity": "MEDIUM" + }, + "exploitabilityScore": 2.8, + "impactScore": 3.4 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "SINGLE", + "confidentialityImpact": "PARTIAL", + "integrityImpact": "PARTIAL", + "availabilityImpact": "PARTIAL", + "baseScore": 6.5 + }, + "baseSeverity": "MEDIUM", + "exploitabilityScore": 8.0, + "impactScore": 6.4, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-78" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC15/V1.0%20V15.03.20_multi/formWriteFacMac.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.257667", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.257667", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-28xx/CVE-2024-2813.json b/CVE-2024/CVE-2024-28xx/CVE-2024-2813.json new file mode 100644 index 00000000000..d43f6d5f1fa --- /dev/null +++ b/CVE-2024/CVE-2024-28xx/CVE-2024-2813.json @@ -0,0 +1,88 @@ +{ + "id": "CVE-2024-2813", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-03-22T07:15:47.110", + "lastModified": "2024-03-22T07:15:47.110", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability was found in Tenda AC15 15.03.20_multi. It has been declared as critical. This vulnerability affects the function form_fast_setting_wifi_set of the file /goform/fast_setting_wifi_set. The manipulation of the argument ssid leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-257668. NOTE: The vendor was contacted early about this disclosure but did not respond in any way." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "NONE", + "scope": "UNCHANGED", + "confidentialityImpact": "HIGH", + "integrityImpact": "HIGH", + "availabilityImpact": "HIGH", + "baseScore": 8.8, + "baseSeverity": "HIGH" + }, + "exploitabilityScore": 2.8, + "impactScore": 5.9 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:S/C:C/I:C/A:C", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "SINGLE", + "confidentialityImpact": "COMPLETE", + "integrityImpact": "COMPLETE", + "availabilityImpact": "COMPLETE", + "baseScore": 9.0 + }, + "baseSeverity": "HIGH", + "exploitabilityScore": 8.0, + "impactScore": 10.0, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-121" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC15/V1.0%20V15.03.20_multi/form_fast_setting_wifi_set.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.257668", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.257668", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-28xx/CVE-2024-2814.json b/CVE-2024/CVE-2024-28xx/CVE-2024-2814.json new file mode 100644 index 00000000000..1325dd623e1 --- /dev/null +++ b/CVE-2024/CVE-2024-28xx/CVE-2024-2814.json @@ -0,0 +1,88 @@ +{ + "id": "CVE-2024-2814", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-03-22T07:15:47.447", + "lastModified": "2024-03-22T07:15:47.447", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability was found in Tenda AC15 15.03.20_multi. It has been rated as critical. This issue affects the function fromDhcpListClient of the file /goform/DhcpListClient. The manipulation of the argument page leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-257669 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "NONE", + "scope": "UNCHANGED", + "confidentialityImpact": "HIGH", + "integrityImpact": "HIGH", + "availabilityImpact": "HIGH", + "baseScore": 8.8, + "baseSeverity": "HIGH" + }, + "exploitabilityScore": 2.8, + "impactScore": 5.9 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:S/C:C/I:C/A:C", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "SINGLE", + "confidentialityImpact": "COMPLETE", + "integrityImpact": "COMPLETE", + "availabilityImpact": "COMPLETE", + "baseScore": 9.0 + }, + "baseSeverity": "HIGH", + "exploitabilityScore": 8.0, + "impactScore": 10.0, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-121" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC15/V1.0%20V15.03.20_multi/fromDhcpListClient_page.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.257669", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.257669", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-28xx/CVE-2024-2815.json b/CVE-2024/CVE-2024-28xx/CVE-2024-2815.json new file mode 100644 index 00000000000..a2f5734a5f0 --- /dev/null +++ b/CVE-2024/CVE-2024-28xx/CVE-2024-2815.json @@ -0,0 +1,88 @@ +{ + "id": "CVE-2024-2815", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-03-22T08:15:09.750", + "lastModified": "2024-03-22T08:15:09.750", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability classified as critical has been found in Tenda AC15 15.03.20_multi. Affected is the function R7WebsSecurityHandler of the file /goform/execCommand of the component Cookie Handler. The manipulation of the argument password leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-257670 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "LOW", + "userInteraction": "NONE", + "scope": "UNCHANGED", + "confidentialityImpact": "HIGH", + "integrityImpact": "HIGH", + "availabilityImpact": "HIGH", + "baseScore": 8.8, + "baseSeverity": "HIGH" + }, + "exploitabilityScore": 2.8, + "impactScore": 5.9 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:S/C:C/I:C/A:C", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "SINGLE", + "confidentialityImpact": "COMPLETE", + "integrityImpact": "COMPLETE", + "availabilityImpact": "COMPLETE", + "baseScore": 9.0 + }, + "baseSeverity": "HIGH", + "exploitabilityScore": 8.0, + "impactScore": 10.0, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-121" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC15/V15.03.05.18/R7WebsSecurityHandler.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.257670", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.257670", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-28xx/CVE-2024-2816.json b/CVE-2024/CVE-2024-28xx/CVE-2024-2816.json new file mode 100644 index 00000000000..6cf07cf7c92 --- /dev/null +++ b/CVE-2024/CVE-2024-28xx/CVE-2024-2816.json @@ -0,0 +1,88 @@ +{ + "id": "CVE-2024-2816", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-03-22T08:15:10.010", + "lastModified": "2024-03-22T08:15:10.010", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability classified as problematic was found in Tenda AC15 15.03.05.18. Affected by this vulnerability is the function fromSysToolReboot of the file /goform/SysToolReboot. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257671. NOTE: The vendor was contacted early about this disclosure but did not respond in any way." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "NONE", + "userInteraction": "REQUIRED", + "scope": "UNCHANGED", + "confidentialityImpact": "NONE", + "integrityImpact": "LOW", + "availabilityImpact": "NONE", + "baseScore": 4.3, + "baseSeverity": "MEDIUM" + }, + "exploitabilityScore": 2.8, + "impactScore": 1.4 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "NONE", + "confidentialityImpact": "NONE", + "integrityImpact": "PARTIAL", + "availabilityImpact": "NONE", + "baseScore": 5.0 + }, + "baseSeverity": "MEDIUM", + "exploitabilityScore": 10.0, + "impactScore": 2.9, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-352" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC15/V15.03.05.18/fromSysToolReboot.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.257671", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.257671", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-28xx/CVE-2024-2817.json b/CVE-2024/CVE-2024-28xx/CVE-2024-2817.json new file mode 100644 index 00000000000..5afb0c957c2 --- /dev/null +++ b/CVE-2024/CVE-2024-28xx/CVE-2024-2817.json @@ -0,0 +1,88 @@ +{ + "id": "CVE-2024-2817", + "sourceIdentifier": "cna@vuldb.com", + "published": "2024-03-22T08:15:10.257", + "lastModified": "2024-03-22T08:15:10.257", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A vulnerability, which was classified as problematic, has been found in Tenda AC15 15.03.05.18. Affected by this issue is the function fromSysToolRestoreSet of the file /goform/SysToolRestoreSet. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-257672. NOTE: The vendor was contacted early about this disclosure but did not respond in any way." + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N", + "attackVector": "NETWORK", + "attackComplexity": "LOW", + "privilegesRequired": "NONE", + "userInteraction": "REQUIRED", + "scope": "UNCHANGED", + "confidentialityImpact": "NONE", + "integrityImpact": "LOW", + "availabilityImpact": "NONE", + "baseScore": 4.3, + "baseSeverity": "MEDIUM" + }, + "exploitabilityScore": 2.8, + "impactScore": 1.4 + } + ], + "cvssMetricV2": [ + { + "source": "cna@vuldb.com", + "type": "Secondary", + "cvssData": { + "version": "2.0", + "vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N", + "accessVector": "NETWORK", + "accessComplexity": "LOW", + "authentication": "NONE", + "confidentialityImpact": "NONE", + "integrityImpact": "PARTIAL", + "availabilityImpact": "NONE", + "baseScore": 5.0 + }, + "baseSeverity": "MEDIUM", + "exploitabilityScore": 10.0, + "impactScore": 2.9, + "acInsufInfo": false, + "obtainAllPrivilege": false, + "obtainUserPrivilege": false, + "obtainOtherPrivilege": false, + "userInteractionRequired": false + } + ] + }, + "weaknesses": [ + { + "source": "cna@vuldb.com", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-352" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/abcdefg-png/IoT-vulnerable/blob/main/Tenda/AC15/V15.03.05.18/fromSysToolRestoreSet.md", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?ctiid.257672", + "source": "cna@vuldb.com" + }, + { + "url": "https://vuldb.com/?id.257672", + "source": "cna@vuldb.com" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index a84211df905..9a5ba13dcbb 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-03-22T07:00:41.796339+00:00 +2024-03-22T09:00:38.174083+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-03-22T06:15:11.803000+00:00 +2024-03-22T08:15:10.257000+00:00 ``` ### Last Data Feed Release @@ -29,26 +29,26 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -242419 +242425 ``` ### CVEs added in the last Commit -Recently added CVEs: `7` +Recently added CVEs: `6` -* [CVE-2024-2806](CVE-2024/CVE-2024-28xx/CVE-2024-2806.json) (`2024-03-22T05:15:48.480`) -* [CVE-2024-2807](CVE-2024/CVE-2024-28xx/CVE-2024-2807.json) (`2024-03-22T05:15:48.807`) -* [CVE-2024-2808](CVE-2024/CVE-2024-28xx/CVE-2024-2808.json) (`2024-03-22T05:15:49.017`) -* [CVE-2024-2809](CVE-2024/CVE-2024-28xx/CVE-2024-2809.json) (`2024-03-22T06:15:08.747`) -* [CVE-2024-2810](CVE-2024/CVE-2024-28xx/CVE-2024-2810.json) (`2024-03-22T06:15:10.800`) -* [CVE-2024-2811](CVE-2024/CVE-2024-28xx/CVE-2024-2811.json) (`2024-03-22T06:15:11.803`) -* [CVE-2024-29275](CVE-2024/CVE-2024-292xx/CVE-2024-29275.json) (`2024-03-22T05:15:47.583`) +* [CVE-2024-2812](CVE-2024/CVE-2024-28xx/CVE-2024-2812.json) (`2024-03-22T07:15:46.283`) +* [CVE-2024-2813](CVE-2024/CVE-2024-28xx/CVE-2024-2813.json) (`2024-03-22T07:15:47.110`) +* [CVE-2024-2814](CVE-2024/CVE-2024-28xx/CVE-2024-2814.json) (`2024-03-22T07:15:47.447`) +* [CVE-2024-2815](CVE-2024/CVE-2024-28xx/CVE-2024-2815.json) (`2024-03-22T08:15:09.750`) +* [CVE-2024-2816](CVE-2024/CVE-2024-28xx/CVE-2024-2816.json) (`2024-03-22T08:15:10.010`) +* [CVE-2024-2817](CVE-2024/CVE-2024-28xx/CVE-2024-2817.json) (`2024-03-22T08:15:10.257`) ### CVEs modified in the last Commit -Recently modified CVEs: `0` +Recently modified CVEs: `1` +* [CVE-2023-3418](CVE-2023/CVE-2023-34xx/CVE-2023-3418.json) (`2024-03-22T08:15:09.497`) ## Download and Usage diff --git a/_state.csv b/_state.csv index fd5821bb32f..b81538e723d 100644 --- a/_state.csv +++ b/_state.csv @@ -224426,7 +224426,7 @@ CVE-2023-34176,0,0,48a4f19d88daea8a2e6c6c53a8c6828f7881a0981de68541e0e27ec6c6420 CVE-2023-34177,0,0,ac0fd54c66fd5b07af169d65876a6a865efb6d936072b74a6e6c2bc4f0139657,2023-11-15T02:25:03.337000 CVE-2023-34178,0,0,a15a23006117ae96e3fb984a71521f280e91f7f12837ce784c5e23e9c51e6405,2023-11-15T02:26:12.223000 CVE-2023-34179,0,0,0c813ed6b2e032704bc428328adc15af9a712f29a05d0f5d4a8b18072dbda20e,2023-11-13T19:51:47.503000 -CVE-2023-3418,0,0,0425ff1b09aa206cc70c8ad4cfa2779f28aebce882771f27b6ba4be2a9c4c56f,2023-11-07T04:18:43.013000 +CVE-2023-3418,0,1,a41bf933641abf4c79cf054d3d437d6ebf65348f744e1f48e24c2eb2b7fe0b81,2024-03-22T08:15:09.497000 CVE-2023-34180,0,0,2a5bafe8f9d250e7fd4c3ba721a22c38cafff01fc2bbab9175400b10c4a6c64f,2023-09-01T19:22:34.537000 CVE-2023-34181,0,0,f09cfeccb96da2c297c5b12d3137960a79b0dd82ce83a039e946d81811558ce5,2023-11-15T02:26:04.073000 CVE-2023-34182,0,0,0ecbfea08cfc2de2e9cdbc454dd08611bc1a0fb9eba4ee4f5c3d9918c4143135,2023-11-15T02:25:57.013000 @@ -242114,25 +242114,25 @@ CVE-2024-28045,0,0,6792565e45071cf20a10fab80a7ba7b229853f3cfe3132fa4d97b62afe40e CVE-2024-2805,0,0,c1663a5680443d2b4a3923fd2fef5475c632f7bc73f63d8c15ce5ffd55d89828,2024-03-22T03:15:08.130000 CVE-2024-28053,0,0,e281ed045d826247c32c0ccef204d2c431b80f755e75c928bfd444d7e8497772,2024-03-15T12:53:06.423000 CVE-2024-28054,0,0,fd5e34ddafff629285a62ddb2d3b6251633211261857e076506fc9aaf016b6b2,2024-03-18T19:40:00.173000 -CVE-2024-2806,1,1,56b2d554ca397a7f98b95597823883fe293fb830f3c5c465bb255f69f294d583,2024-03-22T05:15:48.480000 +CVE-2024-2806,0,0,56b2d554ca397a7f98b95597823883fe293fb830f3c5c465bb255f69f294d583,2024-03-22T05:15:48.480000 CVE-2024-28069,0,0,bc55065fc354d40d7b16dc028d30e9ac9c120daebe64d1e74cc55e5aec96ab01,2024-03-17T22:38:29.433000 -CVE-2024-2807,1,1,61e2187fa5a2ba1a43313042e40c262f681f059db45d28e95c31839aae932ca8,2024-03-22T05:15:48.807000 +CVE-2024-2807,0,0,61e2187fa5a2ba1a43313042e40c262f681f059db45d28e95c31839aae932ca8,2024-03-22T05:15:48.807000 CVE-2024-28070,0,0,d9b3309fdc4db05937449ae85d6df93a299898f40c2c79f5bb7988f4ebb25838,2024-03-17T22:38:29.433000 -CVE-2024-2808,1,1,2291c74755d14464570db6ed94722cb6d7c1f14bb4f2a6865a9b551657a4ff55,2024-03-22T05:15:49.017000 +CVE-2024-2808,0,0,2291c74755d14464570db6ed94722cb6d7c1f14bb4f2a6865a9b551657a4ff55,2024-03-22T05:15:49.017000 CVE-2024-28084,0,0,82d4f9747e3f13eb0c41724a23d451f171722689bff23fc05fa8397eb3709338,2024-03-16T02:15:09.157000 CVE-2024-28088,0,0,d2f20b1069b24ba10d21e8bf3b61c2c6a1c6b345ff59786676752b80abbde7a4,2024-03-13T21:16:00.380000 CVE-2024-28089,0,0,830991c1dd5898b6a817a3f8bb8784922af3636f20b8b62ba1c918d5d83f6f10,2024-03-11T01:32:29.610000 -CVE-2024-2809,1,1,d51c1cadaa372964aa25c478d7da8595c3faeaa216103db1ea38d8e91303309d,2024-03-22T06:15:08.747000 +CVE-2024-2809,0,0,d51c1cadaa372964aa25c478d7da8595c3faeaa216103db1ea38d8e91303309d,2024-03-22T06:15:08.747000 CVE-2024-28092,0,0,67823fb0fbf08abafb7c7a38f47eac7c626c2d2412f357d855f86b0f67fb9779,2024-03-20T13:00:16.367000 CVE-2024-28094,0,0,45821c38270b8552e50f50b73436d99164a20d22d9b4b8876276d92b2a0a88d9,2024-03-07T13:52:27.110000 CVE-2024-28095,0,0,cc359d20cf58cf4c4e6a4bc345ac1d1135a557dfb7920f405bfe639456bcfe46,2024-03-07T13:52:27.110000 CVE-2024-28096,0,0,bd233bb77c2105c8f9ae41f3196895f407f421cf037a91cc0eb753e3f00e4372,2024-03-07T13:52:27.110000 CVE-2024-28097,0,0,ad0a3d7a6b96970687d28d32c41921c3200422c4265f25f269de512c4cb8079e,2024-03-07T13:52:27.110000 CVE-2024-28098,0,0,e6bafc5c1852b134e115137ad3427dd38b064af4ce40b8aa45bfc1cdd7573337,2024-03-13T12:33:51.697000 -CVE-2024-2810,1,1,87ceb22a094d1fdca9175871006b8c1490b53fe12a1729683d2ae76fc2bccdac,2024-03-22T06:15:10.800000 +CVE-2024-2810,0,0,87ceb22a094d1fdca9175871006b8c1490b53fe12a1729683d2ae76fc2bccdac,2024-03-22T06:15:10.800000 CVE-2024-28101,0,0,e11a50d18e90b930590d2818b294820a502a44e40046d3b082407cc261fb1fa1,2024-03-21T12:58:51.093000 CVE-2024-28102,0,0,5173038e442300ac4f9841553f79acc51f599800474c7e2979929429acf935f8,2024-03-21T12:58:51.093000 -CVE-2024-2811,1,1,c6a56c4335428b7bee83a7278f7da8368a2606c3c085082dd0debf7f14d724d1,2024-03-22T06:15:11.803000 +CVE-2024-2811,0,0,c6a56c4335428b7bee83a7278f7da8368a2606c3c085082dd0debf7f14d724d1,2024-03-22T06:15:11.803000 CVE-2024-28110,0,0,0aa63c709bee34101fee09332c67840fa8b7d5aea01ed58b7f238cd7f26f2f87,2024-03-07T13:52:27.110000 CVE-2024-28111,0,0,ef109000cb681b8950a504435d888106cd334990070bd9ca1f33bba165c1974a,2024-03-07T13:52:27.110000 CVE-2024-28112,0,0,13394bf321439a7b80b31ae63012fb69faf271f01573bdf4d69e6f1d90267eaa,2024-03-13T12:33:51.697000 @@ -242143,13 +242143,17 @@ CVE-2024-28116,0,0,85286e6845f2beac119052857d56d51860d6038aa133c3b458a86cdf99248 CVE-2024-28117,0,0,50af41bcf40f5c97cffed5e4d7915b2e6e4dbf663e644e7a567040eb1c3709c8,2024-03-21T22:15:11.820000 CVE-2024-28118,0,0,e61cb89fdfd67653460541c5789b2ee8ade691ef725d261698f974fd285a2753,2024-03-21T22:15:12.037000 CVE-2024-28119,0,0,ba119101a2f9a5bd2f2f9133840523bad66cb58d06fb55e6c9c926ee00725610,2024-03-21T22:15:12.233000 +CVE-2024-2812,1,1,e6dabe13f46a0103cc807524394ae006628a368f08527ff8f87600effa54f149,2024-03-22T07:15:46.283000 CVE-2024-28120,0,0,1945ab744b479cd2a55b16e82913f94d84bcc236918a39e22cfe06aca7010c4c,2024-03-12T12:40:13.500000 CVE-2024-28121,0,0,6ad3b99e4c8dd1459c44e51d2edc62f08f0aa4d5ffd25ea4a2fe7aa5af2916e8,2024-03-13T21:16:00.460000 CVE-2024-28122,0,0,3209f9a611aea4804720e8e5b4eeb3a02772982f302e787ac8040299af464092,2024-03-11T01:32:39.697000 CVE-2024-28123,0,0,dfd9df3abc549b63a4493e5b0d3ca5d363816f355d7deaee3d34da1ecc59baf6,2024-03-21T12:58:51.093000 CVE-2024-28125,0,0,48170c214569f7f7bd3fe8e6fc82db281b481f061afde6074b351e6aca43c615,2024-03-18T12:38:25.490000 CVE-2024-28128,0,0,ef4664596358b3dc6747b9cba3aab3612190b1b010cfc8ac1373f0312ebe3b50,2024-03-18T12:38:25.490000 +CVE-2024-2813,1,1,7c1a01f10889c2b00d53fad80dbf11fafc7af3d6efbb14ebe9b0a25f3404c276,2024-03-22T07:15:47.110000 +CVE-2024-2814,1,1,4b7a18ac0b7efdea66746e56ad2d1911e7caca6e9b6bae27ed0bdcef0b2d4207,2024-03-22T07:15:47.447000 CVE-2024-28149,0,0,bb1327eb2ceb44ae2cc8e952fde2f54b109f1740591e1ece1b912c644025402b,2024-03-06T21:42:54.697000 +CVE-2024-2815,1,1,7fea4b200199b07bfc701ce82ea380c0bf5a078971269ca90d782f1d901a2321,2024-03-22T08:15:09.750000 CVE-2024-28150,0,0,bd9c785686979f74fc956d3a9d80b65ba208ec849a10e17a7f0c9226761980a2,2024-03-06T21:42:54.697000 CVE-2024-28151,0,0,473d59d35d2166d8f0877541c6be6e5f16e5683e6e89c2ed65e060f312f6c9a8,2024-03-06T21:42:54.697000 CVE-2024-28152,0,0,a7b9fa0093cb4672504036fe1d6553f752def5272f8858d8d1fc301b9a327c4d,2024-03-06T21:42:54.697000 @@ -242160,10 +242164,12 @@ CVE-2024-28156,0,0,1a4b3b2ef5e0daf541e96843c1c989bc4abe70122fe584c4af87150c4b6d1 CVE-2024-28157,0,0,ed8ebbe5fee0f55a8a4fde9d919001d31436455287216eb740cac4690bdc29f2,2024-03-06T21:42:54.697000 CVE-2024-28158,0,0,26b253f18727ee3caf630e107a7a89e61a580a0db3fe2a0ced2ad90bc360e7a9,2024-03-06T21:42:54.697000 CVE-2024-28159,0,0,03ab5419913406dda33ba2555a6f6cb8daff27a74103bcc7559c9bf5674b1cce,2024-03-06T21:42:54.697000 +CVE-2024-2816,1,1,285d12f31b2b9dcdfa33f1ccb59edbdd2e48d28e5254fe2372ff762fdc708a4b,2024-03-22T08:15:10.010000 CVE-2024-28160,0,0,56d3ee6a5af0d0e09e6c9aa1c04c5e7191044a0b97474702c1a3af2bea0d6256,2024-03-06T21:42:54.697000 CVE-2024-28161,0,0,a8b5439e973c7cdb8f91b0ae68db3c77b6c3c773d21694d3bca0cd7aa286762f,2024-03-06T21:42:54.697000 CVE-2024-28162,0,0,9f95dea899a301f3d7e776202ce6567032bc57cf37ea2c387cd5d210ccf05a4b,2024-03-06T21:42:54.697000 CVE-2024-28163,0,0,e6f158d88c83d394762ccab484b2ad85c85d5028e78ed16fd0744829e8f59484,2024-03-12T12:40:13.500000 +CVE-2024-2817,1,1,9c4313522c599aa4fcc000a242c8332e0c7579dfa3053421c6223948cf9db4de,2024-03-22T08:15:10.257000 CVE-2024-28171,0,0,199b87f5897d0a3027e5953e48161b82ede2d9032f367eb905e60b6b80d08cf2,2024-03-21T23:15:10.693000 CVE-2024-28173,0,0,e0fed71b03fa1080cdfc47a71a0b80da5e87b19e624557c11c0e172f4b2c098a,2024-03-06T21:42:54.697000 CVE-2024-28174,0,0,fa1674b985861bddf4d0ff5ab075ec0e4328a9665c668bfe339f9f0de580d6b1,2024-03-06T21:42:54.697000 @@ -242391,7 +242397,7 @@ CVE-2024-29244,0,0,ab4dadc4ff7b45a2c285edb922de956bae0828f007627c62339f15145e95a CVE-2024-29271,0,0,8f3f4c2f095342ce5006c5dd915025eb52c99aac668772b964c6ccc6ea7b6f54,2024-03-22T04:15:11.573000 CVE-2024-29272,0,0,286d057b92faa2c0f98e79bf55ed6de88858aea974d2cff95dcf053fb5e59b85,2024-03-22T04:15:11.663000 CVE-2024-29273,0,0,fe87872c57210783e357d837999b1453ec44efdd22c90150313e35d8399de8c6,2024-03-22T04:15:11.857000 -CVE-2024-29275,1,1,7485e8e2cdbf7b9794a165ec8d3b30a10093f40cdcf5e44c74bca400aa7984c5,2024-03-22T05:15:47.583000 +CVE-2024-29275,0,0,7485e8e2cdbf7b9794a165ec8d3b30a10093f40cdcf5e44c74bca400aa7984c5,2024-03-22T05:15:47.583000 CVE-2024-29374,0,0,f8a146770d52182e0c10b15b21ebc5da7e22091690385e976078b28de6736be7,2024-03-21T19:47:03.943000 CVE-2024-29419,0,0,1f113c646466febbefbd1317ecc5036f9bdf6e219db156971cfdda70e05f32f0,2024-03-20T17:18:21.343000 CVE-2024-29469,0,0,acf93e04574e9669a29498319a75720c9b5a03ff4de2c06070b1f52ac9f365b7,2024-03-21T12:58:51.093000