diff --git a/CVE-2022/CVE-2022-363xx/CVE-2022-36330.json b/CVE-2022/CVE-2022-363xx/CVE-2022-36330.json new file mode 100644 index 00000000000..372ff66d40d --- /dev/null +++ b/CVE-2022/CVE-2022-363xx/CVE-2022-36330.json @@ -0,0 +1,55 @@ +{ + "id": "CVE-2022-36330", + "sourceIdentifier": "psirt@wdc.com", + "published": "2023-05-10T00:15:09.467", + "lastModified": "2023-05-10T00:15:09.467", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "A buffer overflow vulnerability was discovered on firmware version validation that could lead to an unauthenticated remote code execution\u00a0in Western Digital My Cloud Home, My Cloud Home Duo and SanDisk ibi devices. An attacker would require exploitation of another vulnerability to raise their privileges in order to exploit this buffer overflow vulnerability.\n\nThis issue affects My Cloud Home and My Cloud Home Duo: through 9.4.0-191; ibi: through 9.4.0-191.\u00a0\n\n\n\n" + } + ], + "metrics": { + "cvssMetricV31": [ + { + "source": "psirt@wdc.com", + "type": "Secondary", + "cvssData": { + "version": "3.1", + "vectorString": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N", + "attackVector": "LOCAL", + "attackComplexity": "HIGH", + "privilegesRequired": "HIGH", + "userInteraction": "NONE", + "scope": "UNCHANGED", + "confidentialityImpact": "LOW", + "integrityImpact": "NONE", + "availabilityImpact": "NONE", + "baseScore": 1.9, + "baseSeverity": "LOW" + }, + "exploitabilityScore": 0.5, + "impactScore": 1.4 + } + ] + }, + "weaknesses": [ + { + "source": "psirt@wdc.com", + "type": "Secondary", + "description": [ + { + "lang": "en", + "value": "CWE-120" + } + ] + } + ], + "references": [ + { + "url": "https://www.westerndigital.com/support/product-security/wdc-23003-western-digital-my-cloud-home-my-cloud-home-duo-and-sandisk-ibi-firmware-version-9-4-0-191", + "source": "psirt@wdc.com" + } + ] +} \ No newline at end of file diff --git a/CVE-2022/CVE-2022-483xx/CVE-2022-48337.json b/CVE-2022/CVE-2022-483xx/CVE-2022-48337.json index 11737b7688c..aa258984fb5 100644 --- a/CVE-2022/CVE-2022-483xx/CVE-2022-48337.json +++ b/CVE-2022/CVE-2022-483xx/CVE-2022-48337.json @@ -2,8 +2,8 @@ "id": "CVE-2022-48337", "sourceIdentifier": "cve@mitre.org", "published": "2023-02-20T23:15:12.243", - "lastModified": "2023-03-02T16:08:45.700", - "vulnStatus": "Analyzed", + "lastModified": "2023-05-10T01:15:08.917", + "vulnStatus": "Modified", "descriptions": [ { "lang": "en", @@ -87,6 +87,10 @@ "Patch" ] }, + { + "url": "https://lists.debian.org/debian-lts-announce/2023/05/msg00008.html", + "source": "cve@mitre.org" + }, { "url": "https://www.debian.org/security/2023/dsa-5360", "source": "cve@mitre.org", diff --git a/CVE-2022/CVE-2022-483xx/CVE-2022-48339.json b/CVE-2022/CVE-2022-483xx/CVE-2022-48339.json index a87748f6d63..215083fd319 100644 --- a/CVE-2022/CVE-2022-483xx/CVE-2022-48339.json +++ b/CVE-2022/CVE-2022-483xx/CVE-2022-48339.json @@ -2,8 +2,8 @@ "id": "CVE-2022-48339", "sourceIdentifier": "cve@mitre.org", "published": "2023-02-20T23:15:12.350", - "lastModified": "2023-03-03T18:26:37.857", - "vulnStatus": "Analyzed", + "lastModified": "2023-05-10T01:15:09.007", + "vulnStatus": "Modified", "descriptions": [ { "lang": "en", @@ -72,6 +72,10 @@ "Patch" ] }, + { + "url": "https://lists.debian.org/debian-lts-announce/2023/05/msg00008.html", + "source": "cve@mitre.org" + }, { "url": "https://www.debian.org/security/2023/dsa-5360", "source": "cve@mitre.org", diff --git a/CVE-2023/CVE-2023-286xx/CVE-2023-28617.json b/CVE-2023/CVE-2023-286xx/CVE-2023-28617.json index cfbeb46bbe9..801813a9a39 100644 --- a/CVE-2023/CVE-2023-286xx/CVE-2023-28617.json +++ b/CVE-2023/CVE-2023-286xx/CVE-2023-28617.json @@ -2,8 +2,8 @@ "id": "CVE-2023-28617", "sourceIdentifier": "cve@mitre.org", "published": "2023-03-19T03:15:11.747", - "lastModified": "2023-03-27T18:37:31.890", - "vulnStatus": "Analyzed", + "lastModified": "2023-05-10T01:15:09.083", + "vulnStatus": "Modified", "descriptions": [ { "lang": "en", @@ -89,6 +89,10 @@ "Patch", "Vendor Advisory" ] + }, + { + "url": "https://lists.debian.org/debian-lts-announce/2023/05/msg00008.html", + "source": "cve@mitre.org" } ] } \ No newline at end of file diff --git a/README.md b/README.md index e5876a258a4..5a837a64a49 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2023-05-10T00:00:24.404890+00:00 +2023-05-10T02:00:23.686891+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2023-05-09T23:15:10.027000+00:00 +2023-05-10T01:15:09.083000+00:00 ``` ### Last Data Feed Release @@ -23,36 +23,29 @@ Repository synchronizes with the NVD every 2 hours. Download and Changelog: [Click](releases/latest) ```plain -2023-05-09T00:00:20.976844+00:00 +2023-05-10T00:00:20.968296+00:00 ``` ### Total Number of included CVEs ```plain -214660 +214661 ``` ### CVEs added in the last Commit -Recently added CVEs: `10` +Recently added CVEs: `1` -* [CVE-2023-2156](CVE-2023/CVE-2023-21xx/CVE-2023-2156.json) (`2023-05-09T22:15:10.133`) -* [CVE-2023-2610](CVE-2023/CVE-2023-26xx/CVE-2023-2610.json) (`2023-05-09T22:15:10.197`) -* [CVE-2023-28125](CVE-2023/CVE-2023-281xx/CVE-2023-28125.json) (`2023-05-09T22:15:09.720`) -* [CVE-2023-28126](CVE-2023/CVE-2023-281xx/CVE-2023-28126.json) (`2023-05-09T22:15:09.813`) -* [CVE-2023-28127](CVE-2023/CVE-2023-281xx/CVE-2023-28127.json) (`2023-05-09T22:15:09.870`) -* [CVE-2023-28128](CVE-2023/CVE-2023-281xx/CVE-2023-28128.json) (`2023-05-09T22:15:09.920`) -* [CVE-2023-28316](CVE-2023/CVE-2023-283xx/CVE-2023-28316.json) (`2023-05-09T22:15:09.980`) -* [CVE-2023-28317](CVE-2023/CVE-2023-283xx/CVE-2023-28317.json) (`2023-05-09T22:15:10.027`) -* [CVE-2023-28318](CVE-2023/CVE-2023-283xx/CVE-2023-28318.json) (`2023-05-09T22:15:10.083`) -* [CVE-2023-31478](CVE-2023/CVE-2023-314xx/CVE-2023-31478.json) (`2023-05-09T23:15:09.940`) +* [CVE-2022-36330](CVE-2022/CVE-2022-363xx/CVE-2022-36330.json) (`2023-05-10T00:15:09.467`) ### CVEs modified in the last Commit -Recently modified CVEs: `1` +Recently modified CVEs: `3` -* [CVE-2023-32233](CVE-2023/CVE-2023-322xx/CVE-2023-32233.json) (`2023-05-09T23:15:10.027`) +* [CVE-2022-48337](CVE-2022/CVE-2022-483xx/CVE-2022-48337.json) (`2023-05-10T01:15:08.917`) +* [CVE-2022-48339](CVE-2022/CVE-2022-483xx/CVE-2022-48339.json) (`2023-05-10T01:15:09.007`) +* [CVE-2023-28617](CVE-2023/CVE-2023-286xx/CVE-2023-28617.json) (`2023-05-10T01:15:09.083`) ## Download and Usage