Skip to content

Commit

Permalink
3 changes (0 new | 3 updated):
Browse files Browse the repository at this point in the history
      - 0 new CVEs:
      - 3 updated CVEs: CVE-2024-10473, CVE-2024-10493, CVE-2024-11918
  • Loading branch information
cvelistV5 Github Action committed Nov 29, 2024
1 parent c8c6b62 commit f5d80fa
Show file tree
Hide file tree
Showing 5 changed files with 239 additions and 106 deletions.
84 changes: 82 additions & 2 deletions cves/2024/10xxx/CVE-2024-10473.json
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@
"assignerShortName": "WPScan",
"dateReserved": "2024-10-28T18:30:03.575Z",
"datePublished": "2024-11-28T06:00:05.185Z",
"dateUpdated": "2024-11-28T06:00:05.185Z"
"dateUpdated": "2024-11-29T15:50:32.875Z"
},
"containers": {
"cna": {
Expand Down Expand Up @@ -78,6 +78,86 @@
"x_generator": {
"engine": "WPScan CVE Generator"
}
}
},
"adp": [
{
"problemTypes": [
{
"descriptions": [
{
"type": "CWE",
"cweId": "CWE-79",
"lang": "en",
"description": "CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')"
}
]
}
],
"affected": [
{
"vendor": "logo_slider_wordpress",
"product": "logo_slider_wordpress",
"cpes": [
"cpe:2.3:a:logo_slider_wordpress:logo_slider_wordpress:*:*:*:*:*:*:*:*"
],
"defaultStatus": "unknown",
"versions": [
{
"version": "0",
"status": "affected",
"lessThan": "4.5.0",
"versionType": "semver"
}
]
}
],
"metrics": [
{
"cvssV3_1": {
"scope": "CHANGED",
"version": "3.1",
"baseScore": 5.4,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N",
"integrityImpact": "LOW",
"userInteraction": "REQUIRED",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "LOW",
"confidentialityImpact": "LOW"
}
},
{
"other": {
"type": "ssvc",
"content": {
"timestamp": "2024-11-29T15:48:25.042365Z",
"id": "CVE-2024-10473",
"options": [
{
"Exploitation": "poc"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"version": "2.0.3"
}
}
}
],
"title": "CISA ADP Vulnrichment",
"providerMetadata": {
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP",
"dateUpdated": "2024-11-29T15:50:32.875Z"
}
}
]
}
}
84 changes: 82 additions & 2 deletions cves/2024/10xxx/CVE-2024-10493.json
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@
"assignerShortName": "WPScan",
"dateReserved": "2024-10-29T14:04:37.956Z",
"datePublished": "2024-11-28T06:00:07.715Z",
"dateUpdated": "2024-11-28T06:00:07.715Z"
"dateUpdated": "2024-11-29T15:46:42.137Z"
},
"containers": {
"cna": {
Expand Down Expand Up @@ -78,6 +78,86 @@
"x_generator": {
"engine": "WPScan CVE Generator"
}
}
},
"adp": [
{
"problemTypes": [
{
"descriptions": [
{
"type": "CWE",
"cweId": "CWE-79",
"lang": "en",
"description": "CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')"
}
]
}
],
"affected": [
{
"vendor": "element_pack_elementor_addons_wordpress",
"product": "element_pack_elementor_addons_wordpress",
"cpes": [
"cpe:2.3:a:element_pack_elementor_addons_wordpress:element_pack_elementor_addons_wordpress:*:*:*:*:*:*:*:*"
],
"defaultStatus": "unknown",
"versions": [
{
"version": "0",
"status": "affected",
"lessThan": "5.10.3",
"versionType": "semver"
}
]
}
],
"metrics": [
{
"cvssV3_1": {
"scope": "CHANGED",
"version": "3.1",
"baseScore": 5.4,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N",
"integrityImpact": "LOW",
"userInteraction": "REQUIRED",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "LOW",
"confidentialityImpact": "LOW"
}
},
{
"other": {
"type": "ssvc",
"content": {
"timestamp": "2024-11-29T15:44:48.916869Z",
"id": "CVE-2024-10493",
"options": [
{
"Exploitation": "poc"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"version": "2.0.3"
}
}
}
],
"title": "CISA ADP Vulnrichment",
"providerMetadata": {
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP",
"dateUpdated": "2024-11-29T15:46:42.137Z"
}
}
]
}
}
38 changes: 36 additions & 2 deletions cves/2024/11xxx/CVE-2024-11918.json
Original file line number Diff line number Diff line change
Expand Up @@ -8,7 +8,7 @@
"assignerShortName": "Wordfence",
"dateReserved": "2024-11-27T17:50:20.671Z",
"datePublished": "2024-11-28T05:57:59.453Z",
"dateUpdated": "2024-11-28T05:57:59.453Z"
"dateUpdated": "2024-11-29T15:51:39.414Z"
},
"containers": {
"cna": {
Expand Down Expand Up @@ -88,6 +88,40 @@
"value": "Disclosed"
}
]
}
},
"adp": [
{
"metrics": [
{
"other": {
"type": "ssvc",
"content": {
"timestamp": "2024-11-29T15:51:25.424685Z",
"id": "CVE-2024-11918",
"options": [
{
"Exploitation": "none"
},
{
"Automatable": "no"
},
{
"Technical Impact": "partial"
}
],
"role": "CISA Coordinator",
"version": "2.0.3"
}
}
}
],
"title": "CISA ADP Vulnrichment",
"providerMetadata": {
"orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"shortName": "CISA-ADP",
"dateUpdated": "2024-11-29T15:51:39.414Z"
}
}
]
}
}
26 changes: 13 additions & 13 deletions cves/delta.json
Original file line number Diff line number Diff line change
@@ -1,25 +1,25 @@
{
"fetchTime": "2024-11-29T15:45:52.344Z",
"fetchTime": "2024-11-29T15:53:35.803Z",
"numberOfChanges": 3,
"new": [],
"updated": [
{
"cveId": "CVE-2024-10510",
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-10510",
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/10xxx/CVE-2024-10510.json",
"dateUpdated": "2024-11-29T15:43:46.794Z"
"cveId": "CVE-2024-10473",
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-10473",
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/10xxx/CVE-2024-10473.json",
"dateUpdated": "2024-11-29T15:50:32.875Z"
},
{
"cveId": "CVE-2024-10896",
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-10896",
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/10xxx/CVE-2024-10896.json",
"dateUpdated": "2024-11-29T15:39:39.900Z"
"cveId": "CVE-2024-10493",
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-10493",
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/10xxx/CVE-2024-10493.json",
"dateUpdated": "2024-11-29T15:46:42.137Z"
},
{
"cveId": "CVE-2024-3703",
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-3703",
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/3xxx/CVE-2024-3703.json",
"dateUpdated": "2024-11-29T15:40:28.767Z"
"cveId": "CVE-2024-11918",
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-11918",
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/11xxx/CVE-2024-11918.json",
"dateUpdated": "2024-11-29T15:51:39.414Z"
}
],
"error": []
Expand Down
Loading

0 comments on commit f5d80fa

Please sign in to comment.