Auto-Update: 2023-05-18 06:00:29.661921+00:00

This commit is contained in:
cad-safe-bot 2023-05-18 06:00:33 +00:00
parent e15ea13031
commit 92c54af3fa
11 changed files with 52 additions and 45 deletions

View File

@ -2,12 +2,12 @@
"id": "CVE-2023-20024",
"sourceIdentifier": "ykramarz@cisco.com",
"published": "2023-05-18T03:15:09.590",
"lastModified": "2023-05-18T03:15:09.590",
"lastModified": "2023-05-18T04:15:09.827",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privileges on an affected device. These vulnerabilities are due to improper validation of requests that are sent to the web interface.\r For more information about these vulnerabilities, see the Details section of this advisory.\r "
"value": "Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code with root privileges on an affected device. These vulnerabilities are due to improper validation of requests that are sent to the web interface. For more information about these vulnerabilities, see the Details section of this advisory."
}
],
"metrics": {

View File

@ -2,12 +2,12 @@
"id": "CVE-2023-20077",
"sourceIdentifier": "ykramarz@cisco.com",
"published": "2023-05-18T03:15:09.667",
"lastModified": "2023-05-18T03:15:09.667",
"lastModified": "2023-05-18T04:15:09.917",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to download arbitrary files from the filesystem of an affected device.\r These vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to download arbitrary files from the underlying filesystem of the affected device.\r "
"value": "Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to download arbitrary files from the filesystem of an affected device. These vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to download arbitrary files from the underlying filesystem of the affected device."
}
],
"metrics": {

View File

@ -2,12 +2,12 @@
"id": "CVE-2023-20087",
"sourceIdentifier": "ykramarz@cisco.com",
"published": "2023-05-18T03:15:09.750",
"lastModified": "2023-05-18T03:15:09.750",
"lastModified": "2023-05-18T04:15:10.007",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to download arbitrary files from the filesystem of an affected device.\r These vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to download arbitrary files from the underlying filesystem of the affected device.\r "
"value": "Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to download arbitrary files from the filesystem of an affected device. These vulnerabilities are due to insufficient input validation. An attacker could exploit these vulnerabilities by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to download arbitrary files from the underlying filesystem of the affected device."
}
],
"metrics": {

View File

@ -2,12 +2,12 @@
"id": "CVE-2023-20106",
"sourceIdentifier": "ykramarz@cisco.com",
"published": "2023-05-18T03:15:09.820",
"lastModified": "2023-05-18T03:15:09.820",
"lastModified": "2023-05-18T04:15:10.090",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system. To exploit these vulnerabilities, an attacker must have valid credentials on an affected device.\r For more information about these vulnerabilities, see the Details section of this advisory.\r "
"value": "Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system. To exploit these vulnerabilities, an attacker must have valid credentials on an affected device. For more information about these vulnerabilities, see the Details section of this advisory."
}
],
"metrics": {

View File

@ -2,7 +2,7 @@
"id": "CVE-2023-2721",
"sourceIdentifier": "chrome-cve-admin@google.com",
"published": "2023-05-16T19:15:09.160",
"lastModified": "2023-05-16T20:04:03.627",
"lastModified": "2023-05-18T04:15:10.187",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
@ -19,6 +19,10 @@
{
"url": "https://crbug.com/1444360",
"source": "chrome-cve-admin@google.com"
},
{
"url": "https://www.debian.org/security/2023/dsa-5404",
"source": "chrome-cve-admin@google.com"
}
]
}

View File

@ -2,7 +2,7 @@
"id": "CVE-2023-2722",
"sourceIdentifier": "chrome-cve-admin@google.com",
"published": "2023-05-16T19:15:09.217",
"lastModified": "2023-05-16T20:04:03.627",
"lastModified": "2023-05-18T04:15:10.263",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
@ -19,6 +19,10 @@
{
"url": "https://crbug.com/1400905",
"source": "chrome-cve-admin@google.com"
},
{
"url": "https://www.debian.org/security/2023/dsa-5404",
"source": "chrome-cve-admin@google.com"
}
]
}

View File

@ -2,7 +2,7 @@
"id": "CVE-2023-2723",
"sourceIdentifier": "chrome-cve-admin@google.com",
"published": "2023-05-16T19:15:09.277",
"lastModified": "2023-05-16T20:04:03.627",
"lastModified": "2023-05-18T04:15:10.330",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
@ -19,6 +19,10 @@
{
"url": "https://crbug.com/1435166",
"source": "chrome-cve-admin@google.com"
},
{
"url": "https://www.debian.org/security/2023/dsa-5404",
"source": "chrome-cve-admin@google.com"
}
]
}

View File

@ -2,7 +2,7 @@
"id": "CVE-2023-2724",
"sourceIdentifier": "chrome-cve-admin@google.com",
"published": "2023-05-16T19:15:09.327",
"lastModified": "2023-05-16T20:04:03.627",
"lastModified": "2023-05-18T04:15:10.400",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
@ -19,6 +19,10 @@
{
"url": "https://crbug.com/1433211",
"source": "chrome-cve-admin@google.com"
},
{
"url": "https://www.debian.org/security/2023/dsa-5404",
"source": "chrome-cve-admin@google.com"
}
]
}

View File

@ -2,7 +2,7 @@
"id": "CVE-2023-2725",
"sourceIdentifier": "chrome-cve-admin@google.com",
"published": "2023-05-16T19:15:09.383",
"lastModified": "2023-05-16T20:04:03.627",
"lastModified": "2023-05-18T04:15:10.463",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
@ -19,6 +19,10 @@
{
"url": "https://crbug.com/1442516",
"source": "chrome-cve-admin@google.com"
},
{
"url": "https://www.debian.org/security/2023/dsa-5404",
"source": "chrome-cve-admin@google.com"
}
]
}

View File

@ -2,7 +2,7 @@
"id": "CVE-2023-2726",
"sourceIdentifier": "chrome-cve-admin@google.com",
"published": "2023-05-16T19:15:09.433",
"lastModified": "2023-05-16T20:04:03.627",
"lastModified": "2023-05-18T04:15:10.530",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
@ -19,6 +19,10 @@
{
"url": "https://crbug.com/1442018",
"source": "chrome-cve-admin@google.com"
},
{
"url": "https://www.debian.org/security/2023/dsa-5404",
"source": "chrome-cve-admin@google.com"
}
]
}

View File

@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2023-05-18T04:00:35.008453+00:00
2023-05-18T06:00:29.661921+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2023-05-18T03:15:11.513000+00:00
2023-05-18T04:15:10.530000+00:00
```
### Last Data Feed Release
@ -34,41 +34,24 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### CVEs added in the last Commit
Recently added CVEs: `29`
Recently added CVEs: `0`
* [CVE-2023-20077](CVE-2023/CVE-2023-200xx/CVE-2023-20077.json) (`2023-05-18T03:15:09.667`)
* [CVE-2023-20087](CVE-2023/CVE-2023-200xx/CVE-2023-20087.json) (`2023-05-18T03:15:09.750`)
* [CVE-2023-20106](CVE-2023/CVE-2023-201xx/CVE-2023-20106.json) (`2023-05-18T03:15:09.820`)
* [CVE-2023-20110](CVE-2023/CVE-2023-201xx/CVE-2023-20110.json) (`2023-05-18T03:15:09.900`)
* [CVE-2023-20156](CVE-2023/CVE-2023-201xx/CVE-2023-20156.json) (`2023-05-18T03:15:09.973`)
* [CVE-2023-20157](CVE-2023/CVE-2023-201xx/CVE-2023-20157.json) (`2023-05-18T03:15:10.047`)
* [CVE-2023-20158](CVE-2023/CVE-2023-201xx/CVE-2023-20158.json) (`2023-05-18T03:15:10.123`)
* [CVE-2023-20159](CVE-2023/CVE-2023-201xx/CVE-2023-20159.json) (`2023-05-18T03:15:10.190`)
* [CVE-2023-20160](CVE-2023/CVE-2023-201xx/CVE-2023-20160.json) (`2023-05-18T03:15:10.267`)
* [CVE-2023-20161](CVE-2023/CVE-2023-201xx/CVE-2023-20161.json) (`2023-05-18T03:15:10.337`)
* [CVE-2023-20162](CVE-2023/CVE-2023-201xx/CVE-2023-20162.json) (`2023-05-18T03:15:10.413`)
* [CVE-2023-20163](CVE-2023/CVE-2023-201xx/CVE-2023-20163.json) (`2023-05-18T03:15:10.480`)
* [CVE-2023-20164](CVE-2023/CVE-2023-201xx/CVE-2023-20164.json) (`2023-05-18T03:15:10.547`)
* [CVE-2023-20166](CVE-2023/CVE-2023-201xx/CVE-2023-20166.json) (`2023-05-18T03:15:10.617`)
* [CVE-2023-20167](CVE-2023/CVE-2023-201xx/CVE-2023-20167.json) (`2023-05-18T03:15:10.690`)
* [CVE-2023-20171](CVE-2023/CVE-2023-201xx/CVE-2023-20171.json) (`2023-05-18T03:15:10.763`)
* [CVE-2023-20172](CVE-2023/CVE-2023-201xx/CVE-2023-20172.json) (`2023-05-18T03:15:10.830`)
* [CVE-2023-20173](CVE-2023/CVE-2023-201xx/CVE-2023-20173.json) (`2023-05-18T03:15:10.893`)
* [CVE-2023-20174](CVE-2023/CVE-2023-201xx/CVE-2023-20174.json) (`2023-05-18T03:15:10.957`)
* [CVE-2023-20182](CVE-2023/CVE-2023-201xx/CVE-2023-20182.json) (`2023-05-18T03:15:11.023`)
* [CVE-2023-20183](CVE-2023/CVE-2023-201xx/CVE-2023-20183.json) (`2023-05-18T03:15:11.090`)
* [CVE-2023-20184](CVE-2023/CVE-2023-201xx/CVE-2023-20184.json) (`2023-05-18T03:15:11.150`)
* [CVE-2023-20189](CVE-2023/CVE-2023-201xx/CVE-2023-20189.json) (`2023-05-18T03:15:11.207`)
* [CVE-2023-27217](CVE-2023/CVE-2023-272xx/CVE-2023-27217.json) (`2023-05-18T03:15:11.453`)
* [CVE-2023-2757](CVE-2023/CVE-2023-27xx/CVE-2023-2757.json) (`2023-05-18T03:15:11.513`)
### CVEs modified in the last Commit
Recently modified CVEs: `2`
Recently modified CVEs: `10`
* [CVE-2023-2509](CVE-2023/CVE-2023-25xx/CVE-2023-2509.json) (`2023-05-18T02:15:12.117`)
* [CVE-2023-26964](CVE-2023/CVE-2023-269xx/CVE-2023-26964.json) (`2023-05-18T03:15:11.277`)
* [CVE-2023-20024](CVE-2023/CVE-2023-200xx/CVE-2023-20024.json) (`2023-05-18T04:15:09.827`)
* [CVE-2023-20077](CVE-2023/CVE-2023-200xx/CVE-2023-20077.json) (`2023-05-18T04:15:09.917`)
* [CVE-2023-20087](CVE-2023/CVE-2023-200xx/CVE-2023-20087.json) (`2023-05-18T04:15:10.007`)
* [CVE-2023-20106](CVE-2023/CVE-2023-201xx/CVE-2023-20106.json) (`2023-05-18T04:15:10.090`)
* [CVE-2023-2721](CVE-2023/CVE-2023-27xx/CVE-2023-2721.json) (`2023-05-18T04:15:10.187`)
* [CVE-2023-2722](CVE-2023/CVE-2023-27xx/CVE-2023-2722.json) (`2023-05-18T04:15:10.263`)
* [CVE-2023-2723](CVE-2023/CVE-2023-27xx/CVE-2023-2723.json) (`2023-05-18T04:15:10.330`)
* [CVE-2023-2724](CVE-2023/CVE-2023-27xx/CVE-2023-2724.json) (`2023-05-18T04:15:10.400`)
* [CVE-2023-2725](CVE-2023/CVE-2023-27xx/CVE-2023-2725.json) (`2023-05-18T04:15:10.463`)
* [CVE-2023-2726](CVE-2023/CVE-2023-27xx/CVE-2023-2726.json) (`2023-05-18T04:15:10.530`)
## Download and Usage