Auto-Update: 2025-02-21T09:00:51.176393+00:00

This commit is contained in:
cad-safe-bot 2025-02-21 09:04:20 +00:00
parent d75683db64
commit c6292c052d
3 changed files with 94 additions and 15 deletions

View File

@ -0,0 +1,82 @@
{
"id": "CVE-2025-0726",
"sourceIdentifier": "emo@eclipse.org",
"published": "2025-02-21T08:15:28.417",
"lastModified": "2025-02-21T08:15:28.417",
"vulnStatus": "Received",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "In NetX HTTP server functionality of Eclipse ThreadX NetX Duo before \nversion 6.4.2, an attacker can cause a denial of service by specially \ncrafted packets. The core issue is missing closing of a file in case of \nan error condition, resulting in the 404 error for each further file \nrequest. Users can work-around the issue by disabling the PUT request \nsupport."
}
],
"metrics": {
"cvssMetricV40": [
{
"source": "emo@eclipse.org",
"type": "Secondary",
"cvssData": {
"version": "4.0",
"vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X",
"baseScore": 7.1,
"baseSeverity": "HIGH",
"attackVector": "NETWORK",
"attackComplexity": "LOW",
"attackRequirements": "NONE",
"privilegesRequired": "LOW",
"userInteraction": "NONE",
"vulnerableSystemConfidentiality": "NONE",
"vulnerableSystemIntegrity": "NONE",
"vulnerableSystemAvailability": "HIGH",
"subsequentSystemConfidentiality": "NONE",
"subsequentSystemIntegrity": "NONE",
"subsequentSystemAvailability": "NONE",
"exploitMaturity": "NOT_DEFINED",
"confidentialityRequirements": "NOT_DEFINED",
"integrityRequirements": "NOT_DEFINED",
"availabilityRequirements": "NOT_DEFINED",
"modifiedAttackVector": "NOT_DEFINED",
"modifiedAttackComplexity": "NOT_DEFINED",
"modifiedAttackRequirements": "NOT_DEFINED",
"modifiedPrivilegesRequired": "NOT_DEFINED",
"modifiedUserInteraction": "NOT_DEFINED",
"modifiedVulnerableSystemConfidentiality": "NOT_DEFINED",
"modifiedVulnerableSystemIntegrity": "NOT_DEFINED",
"modifiedVulnerableSystemAvailability": "NOT_DEFINED",
"modifiedSubsequentSystemConfidentiality": "NOT_DEFINED",
"modifiedSubsequentSystemIntegrity": "NOT_DEFINED",
"modifiedSubsequentSystemAvailability": "NOT_DEFINED",
"safety": "NOT_DEFINED",
"automatable": "NOT_DEFINED",
"recovery": "NOT_DEFINED",
"valueDensity": "NOT_DEFINED",
"vulnerabilityResponseEffort": "NOT_DEFINED",
"providerUrgency": "NOT_DEFINED"
}
}
]
},
"weaknesses": [
{
"source": "emo@eclipse.org",
"type": "Secondary",
"description": [
{
"lang": "en",
"value": "CWE-459"
}
]
}
],
"references": [
{
"url": "https://github.com/eclipse-threadx/netxduo/commit/c78d650be7377aae1a8704bc0ce5cc6f9f189014",
"source": "emo@eclipse.org"
},
{
"url": "https://github.com/eclipse-threadx/netxduo/security/advisories/GHSA-pwf8-5q9w-m763",
"source": "emo@eclipse.org"
}
]
}

View File

@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours.
### Last Repository Update
```plain
2025-02-21T07:00:21.453620+00:00
2025-02-21T09:00:51.176393+00:00
```
### Most recent CVE Modification Timestamp synchronized with NVD
```plain
2025-02-21T06:15:20.670000+00:00
2025-02-21T08:15:28.417000+00:00
```
### Last Data Feed Release
@ -33,24 +33,20 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/
### Total Number of included CVEs
```plain
281988
281989
```
### CVEs added in the last Commit
Recently added CVEs: `3`
Recently added CVEs: `1`
- [CVE-2024-11260](CVE-2024/CVE-2024-112xx/CVE-2024-11260.json) (`2025-02-21T06:15:20.073`)
- [CVE-2024-13314](CVE-2024/CVE-2024-133xx/CVE-2024-13314.json) (`2025-02-21T06:15:20.440`)
- [CVE-2024-13585](CVE-2024/CVE-2024-135xx/CVE-2024-13585.json) (`2025-02-21T06:15:20.557`)
- [CVE-2025-0726](CVE-2025/CVE-2025-07xx/CVE-2025-0726.json) (`2025-02-21T08:15:28.417`)
### CVEs modified in the last Commit
Recently modified CVEs: `2`
Recently modified CVEs: `0`
- [CVE-2024-48080](CVE-2024/CVE-2024-480xx/CVE-2024-48080.json) (`2025-02-21T06:15:20.670`)
- [CVE-2025-23001](CVE-2025/CVE-2025-230xx/CVE-2025-23001.json) (`2025-02-21T05:15:13.173`)
## Download and Usage

View File

@ -244632,7 +244632,7 @@ CVE-2024-11257,0,0,b96233e0d3ce67cf21f4e9f7807a6a1ab2c5647b6c783486e6d663acf9a8b
CVE-2024-11258,0,0,b92dad8d1bb6f081dbd92f3c42d86d75296924d80ba167376d7d843bce1f48d5,2024-11-19T21:24:27.473000
CVE-2024-11259,0,0,9646b1c84e05b201fbae9644480c07a1fd89adc65f5074aa5e44f275cf69f9d3,2024-11-19T21:47:38.857000
CVE-2024-1126,0,0,2088ba320b0f3d864b4dacf7a42dde73f3534cbb6abd237206f08e3f6b49579d,2025-01-15T18:21:17.073000
CVE-2024-11260,1,1,bfdb54997da839356b18390e72ce6e5a5eae68a8215c45cfb8ed8f98d24b2f53,2025-02-21T06:15:20.073000
CVE-2024-11260,0,0,bfdb54997da839356b18390e72ce6e5a5eae68a8215c45cfb8ed8f98d24b2f53,2025-02-21T06:15:20.073000
CVE-2024-11261,0,0,ebd0147e6a6ab1ab0e631a63b82775c203c78389943f8839aa447a17b71fca13,2024-11-21T23:21:32.573000
CVE-2024-11262,0,0,2fc2d8fe2ec6c0e4d2457bea194bb9fd27c0134f7b30d56376be41870a4428a7,2024-11-21T20:52:29.160000
CVE-2024-11263,0,0,6da3dcf090856c1ff8ddbcb851ae4f60d559550f7e58a797a86bc019886b27d7,2025-02-03T20:09:54.800000
@ -246504,7 +246504,7 @@ CVE-2024-1331,0,0,b8018aa4d406613d3ec27aefa47c4e3b21af15db4ddfb753850f1de6f3ba1f
CVE-2024-13310,0,0,c7d7f61ed943995654d2d7f670a6eebe7c0fd61f9032347d9fa323e6d73361eb,2025-01-31T16:15:33.080000
CVE-2024-13311,0,0,8f1f9a5d171f95a7ba0f9eaa7d2951798d439c8a220f4f2f7df62ba50bf29d83,2025-01-31T16:15:33.280000
CVE-2024-13312,0,0,816e38c6c7477b967986b1dc1563e84c09b9a93286b16913543c3869e5b6d36c,2025-01-31T16:15:33.413000
CVE-2024-13314,1,1,6e27553951fcfe12183af99f1b9adec8ab74697304da1058375528c9fe26f24c,2025-02-21T06:15:20.440000
CVE-2024-13314,0,0,6e27553951fcfe12183af99f1b9adec8ab74697304da1058375528c9fe26f24c,2025-02-21T06:15:20.440000
CVE-2024-13315,0,0,7d561707348c1d83e16868d78f576052a99fa3248701028b7d3303356e834cd1,2025-02-18T06:15:11.540000
CVE-2024-13316,0,0,3d92ed81deae1a12b4342aeceed386487bce0bdc9f736cdafb58d2444db86e9c,2025-02-18T09:15:09.400000
CVE-2024-13317,0,0,bf6e98353834aadd569c32731a32e07929f7d2ec68ca0c813c445806410cf741,2025-01-18T07:15:08.290000
@ -246737,7 +246737,7 @@ CVE-2024-13581,0,0,c6817592c92440ad44a8fa228f7b53b9ed51e9e0cca7d9b47bb33079647af
CVE-2024-13582,0,0,7aa6cafae2a67f9f655defd9ac99bed39ce0c4c8c5f69a27d738b628034d125b,2025-02-18T05:15:15.897000
CVE-2024-13583,0,0,74ad7b83b093ee530d03665dfed8aeb7981ef34d0b7fd0bb7def11fe8ca86354,2025-02-05T01:38:33.527000
CVE-2024-13584,0,0,ee87f1c36c9c93255b87e8f2b16900d4e175847a31f3c291ef2046e604a7f364,2025-01-24T18:20:40.760000
CVE-2024-13585,1,1,ce9b902de9cd5c692bfabc19d03451112a70a2e40f445056b2c75ced2f282088,2025-02-21T06:15:20.557000
CVE-2024-13585,0,0,ce9b902de9cd5c692bfabc19d03451112a70a2e40f445056b2c75ced2f282088,2025-02-21T06:15:20.557000
CVE-2024-13586,0,0,031371a39e86dab11794d85bebc5761cfd2812bcdc21ab474a79e1589e56730a,2025-02-04T18:14:20.930000
CVE-2024-13587,0,0,720c8e9f332be08c97824f7294ce236301b592a585cd761de003bc321877436a,2025-02-18T05:15:16.267000
CVE-2024-13588,0,0,ff7590ea531a386de3592f06b0d190afe6e1a5e182fc0c9290b6473914c2c325,2025-02-18T05:15:16.417000
@ -268994,7 +268994,7 @@ CVE-2024-48073,0,0,a0dd449974b738c26beb3021e27527834bf42533c9d1d0657f51f4262cbea
CVE-2024-48074,0,0,a9d347909eb857e96af017afeb35579129b604834557658407d72951d58bd8bf,2024-11-08T22:15:20.877000
CVE-2024-48075,0,0,c750cfc63f2eb9e37fb6c605b4fffcddd3176068f4b6ccea67410855bd98fc08,2024-11-21T21:15:22.113000
CVE-2024-4808,0,0,5b86642368366b6191d981112f5ed07c26a5252bae16c28238118354653ee5e5,2025-02-11T18:35:06.960000
CVE-2024-48080,0,1,b04413c84146627c983a8df352dd2273338d1085bc7d334012023d883bae7922,2025-02-21T06:15:20.670000
CVE-2024-48080,0,0,b04413c84146627c983a8df352dd2273338d1085bc7d334012023d883bae7922,2025-02-21T06:15:20.670000
CVE-2024-4809,0,0,d32cec06d3a1285b2919824b5678e22149fd6eb4acf80605ad5ac14ea1e6e44f,2025-02-11T15:29:21.893000
CVE-2024-48091,0,0,f11cffbd3be09ef09f61433586fcca7a0cd8e4d256b3d2e4d6e7fcf55010741e,2025-02-10T17:15:17.513000
CVE-2024-48093,0,0,5d2687b42ea5091a471e0a05e1b5da269e599c88de65d10bf1edcc9d58bd7eb7,2024-11-01T12:57:03.417000
@ -279272,6 +279272,7 @@ CVE-2025-0720,0,0,602262593ab5841efad088d2b78c277a4b7966a622beefaf31478d2cb38267
CVE-2025-0721,0,0,9b15b019b479c4479137e55c74f2da2652b1f56c2d67e45558507ea73a96e795,2025-01-27T00:15:26.317000
CVE-2025-0722,0,0,d286657780f2322cec5dfe4e8af4674bbdc5e8a8b778a753270cdbdd213a2c1d,2025-01-27T00:15:26.517000
CVE-2025-0725,0,0,933a9ff65143c6df56b3e49502ce5d61c7538865f62de87a7e6b7da33078c72d,2025-02-06T19:15:19.733000
CVE-2025-0726,1,1,212658285d0dca65eb38afbe2d0cc022419c14eff42b3a61d47e964a9493cddf,2025-02-21T08:15:28.417000
CVE-2025-0729,0,0,47f7aa1143af5ff386851185d07322b33da91a6c70254019e675c66f6b698c27,2025-01-27T17:15:16.917000
CVE-2025-0730,0,0,2af04aa386ac678a6fc944dd8f7ba46d52548cae0bde338f3a493a49b6512319,2025-01-27T17:15:17.133000
CVE-2025-0732,0,0,1ce675ab3efd6ec96092631e523be68cbc1c9a729d4a9ad32dfbaf47ed4ee068,2025-01-27T18:15:40.550000
@ -280615,7 +280616,7 @@ CVE-2025-22992,0,0,9c2224e338558ccc5fdf942d723bafbe861c5e19d73a3269c58858cc57989
CVE-2025-22994,0,0,82a19f803fc092043edd0b748f001df679276a70393f74dc553062174651b1db,2025-02-18T19:15:27.050000
CVE-2025-22996,0,0,c50cf62284cf751584047e7a98111e31ae9d7e05423e0e28a6dfeca6772a6ab9,2025-01-15T17:15:21.837000
CVE-2025-22997,0,0,cbf89797792d4ad66a4f37050995306b66d6d3563ae5ce9db2b5b27779f4d42b,2025-01-15T17:15:22.193000
CVE-2025-23001,0,1,e67bba795a0e7662c0de688d2cbb0a560d07c101a7dbbf29a35b6188802b9bfe,2025-02-21T05:15:13.173000
CVE-2025-23001,0,0,e67bba795a0e7662c0de688d2cbb0a560d07c101a7dbbf29a35b6188802b9bfe,2025-02-21T05:15:13.173000
CVE-2025-23006,0,0,6a102100f33be5cd88a3ed9a70e7948fb90e89028ab000876d344a5774cdca9c,2025-02-18T20:15:27.493000
CVE-2025-23007,0,0,8755d54df92e87b37e4145f55351bcaff32866353888bcdbfad8a65ec70ebf2c,2025-02-18T19:15:27.263000
CVE-2025-23011,0,0,0ac026798cd262001be0206676fdedf031be9d5d65106916b11a08692a6fcc17,2025-02-03T20:15:36.823000

Can't render this file because it is too large.