Skip to content

Commit ded2631

Browse files
author
cvelistV5 Github Action
committed
2 changes (1 new | 1 updated):
- 1 new CVEs: CVE-2024-53473 - 1 updated CVEs: CVE-2024-54749
1 parent 773ef5b commit ded2631

File tree

4 files changed

+106
-1117
lines changed

4 files changed

+106
-1117
lines changed

cves/2024/53xxx/CVE-2024-53473.json

Lines changed: 65 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,65 @@
1+
{
2+
"dataType": "CVE_RECORD",
3+
"cveMetadata": {
4+
"state": "PUBLISHED",
5+
"cveId": "CVE-2024-53473",
6+
"assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
7+
"assignerShortName": "mitre",
8+
"dateUpdated": "2024-12-07T22:02:59.934766",
9+
"dateReserved": "2024-11-20T00:00:00",
10+
"datePublished": "2024-12-07T00:00:00"
11+
},
12+
"containers": {
13+
"cna": {
14+
"providerMetadata": {
15+
"orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
16+
"shortName": "mitre",
17+
"dateUpdated": "2024-12-07T22:02:59.934766"
18+
},
19+
"descriptions": [
20+
{
21+
"lang": "en",
22+
"value": "WeGIA 3.2.0 before 3998672 does not verify permission to change a password."
23+
}
24+
],
25+
"affected": [
26+
{
27+
"vendor": "n/a",
28+
"product": "n/a",
29+
"versions": [
30+
{
31+
"version": "n/a",
32+
"status": "affected"
33+
}
34+
]
35+
}
36+
],
37+
"references": [
38+
{
39+
"url": "https://www.wegia.org"
40+
},
41+
{
42+
"url": "https://github.com/nmmorette/vulnerability-research/tree/main/CVE-2024-53473"
43+
},
44+
{
45+
"url": "https://github.com/nilsonLazarin/WeGIA/commit/3998672f1b86db58eab2808a640903d73b37bd2d"
46+
},
47+
{
48+
"url": "https://github.com/nilsonLazarin/WeGIA/issues/791"
49+
}
50+
],
51+
"problemTypes": [
52+
{
53+
"descriptions": [
54+
{
55+
"type": "text",
56+
"lang": "en",
57+
"description": "n/a"
58+
}
59+
]
60+
}
61+
]
62+
}
63+
},
64+
"dataVersion": "5.1"
65+
}

cves/2024/54xxx/CVE-2024-54749.json

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@
55
"cveId": "CVE-2024-54749",
66
"assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
77
"assignerShortName": "mitre",
8-
"dateUpdated": "2024-12-06T16:31:05.473410",
8+
"dateUpdated": "2024-12-07T22:08:11.961877Z",
99
"dateReserved": "2024-12-06T00:00:00",
1010
"datePublished": "2024-12-06T00:00:00"
1111
},
@@ -14,12 +14,12 @@
1414
"providerMetadata": {
1515
"orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
1616
"shortName": "mitre",
17-
"dateUpdated": "2024-12-06T16:31:05.473410"
17+
"dateUpdated": "2024-12-07T22:08:11.961877Z"
1818
},
1919
"descriptions": [
2020
{
2121
"lang": "en",
22-
"value": "Ubiquiti U7-Pro 7.0.35 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root."
22+
"value": "Ubiquiti U7-Pro 7.0.35 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root. NOTE: this is disputed by the Supplier because the observation only established that a password is present in a firmware image; however, the device cannot be deployed without setting a new password during installation."
2323
}
2424
],
2525
"affected": [
@@ -49,6 +49,9 @@
4949
}
5050
]
5151
}
52+
],
53+
"tags": [
54+
"disputed"
5255
]
5356
}
5457
},

cves/delta.json

Lines changed: 14 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,20 @@
11
{
2-
"fetchTime": "2024-12-07T21:06:22.344Z",
3-
"numberOfChanges": 1,
4-
"new": [],
2+
"fetchTime": "2024-12-07T22:11:11.116Z",
3+
"numberOfChanges": 2,
4+
"new": [
5+
{
6+
"cveId": "CVE-2024-53473",
7+
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-53473",
8+
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/53xxx/CVE-2024-53473.json",
9+
"dateUpdated": "2024-12-07T22:02:59.934766"
10+
}
11+
],
512
"updated": [
613
{
7-
"cveId": "CVE-2020-35357",
8-
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2020-35357",
9-
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2020/35xxx/CVE-2020-35357.json",
10-
"dateUpdated": "2024-12-07T21:02:36.751Z"
14+
"cveId": "CVE-2024-54749",
15+
"cveOrgLink": "https://www.cve.org/CVERecord?id=CVE-2024-54749",
16+
"githubLink": "https://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2024/54xxx/CVE-2024-54749.json",
17+
"dateUpdated": "2024-12-07T22:08:11.961877Z"
1118
}
1219
],
1320
"error": []

0 commit comments

Comments
 (0)