diff --git a/CVE-2023/CVE-2023-514xx/CVE-2023-51441.json b/CVE-2023/CVE-2023-514xx/CVE-2023-51441.json new file mode 100644 index 00000000000..67699e06697 --- /dev/null +++ b/CVE-2023/CVE-2023-514xx/CVE-2023-51441.json @@ -0,0 +1,36 @@ +{ + "id": "CVE-2023-51441", + "sourceIdentifier": "security@apache.org", + "published": "2024-01-06T12:15:42.997", + "lastModified": "2024-01-06T12:15:42.997", + "vulnStatus": "Received", + "descriptions": [ + { + "lang": "en", + "value": "** UNSUPPORTED WHEN ASSIGNED ** Improper Input Validation vulnerability in Apache Axis allowed users with access to the admin service to perform possible SSRF\nThis issue affects Apache Axis: through 1.3.\n\nAs Axis 1 has been EOL we recommend you migrate to a different SOAP engine, such as Apache Axis 2/Java. Alternatively you could use a build of Axis with the patch from https://github.com/apache/axis-axis1-java/commit/685c309febc64aa393b2d64a05f90e7eb9f73e06 applied. The Apache Axis project does not expect to create an Axis 1.x release \nfixing this problem, though contributors that would like to work towards\n this are welcome.\n\n" + } + ], + "metrics": {}, + "weaknesses": [ + { + "source": "security@apache.org", + "type": "Primary", + "description": [ + { + "lang": "en", + "value": "CWE-20" + } + ] + } + ], + "references": [ + { + "url": "https://github.com/apache/axis-axis1-java/commit/685c309febc64aa393b2d64a05f90e7eb9f73e06", + "source": "security@apache.org" + }, + { + "url": "https://lists.apache.org/thread/8nrm5thop8f82pglx4o0jg8wmvy6d9yd", + "source": "security@apache.org" + } + ] +} \ No newline at end of file diff --git a/README.md b/README.md index e76522e6b32..c245155b67f 100644 --- a/README.md +++ b/README.md @@ -9,13 +9,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-01-06T11:00:24.333131+00:00 +2024-01-06T13:00:25.155116+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-01-06T10:15:46.133000+00:00 +2024-01-06T12:15:42.997000+00:00 ``` ### Last Data Feed Release @@ -29,22 +29,20 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -234968 +234969 ``` ### CVEs added in the last Commit -Recently added CVEs: `2` +Recently added CVEs: `1` -* [CVE-2023-6798](CVE-2023/CVE-2023-67xx/CVE-2023-6798.json) (`2024-01-06T10:15:45.840`) -* [CVE-2023-6801](CVE-2023/CVE-2023-68xx/CVE-2023-6801.json) (`2024-01-06T10:15:46.133`) +* [CVE-2023-51441](CVE-2023/CVE-2023-514xx/CVE-2023-51441.json) (`2024-01-06T12:15:42.997`) ### CVEs modified in the last Commit -Recently modified CVEs: `1` +Recently modified CVEs: `0` -* [CVE-2020-27637](CVE-2020/CVE-2020-276xx/CVE-2020-27637.json) (`2024-01-06T10:15:45.373`) ## Download and Usage