From b2038e48c3958a941d8b9c5991a218a0ec22e82c Mon Sep 17 00:00:00 2001 From: cad-safe-bot Date: Sat, 14 Dec 2024 03:03:42 +0000 Subject: [PATCH] Auto-Update: 2024-12-14T03:00:19.797168+00:00 --- CVE-2023/CVE-2023-294xx/CVE-2023-29476.json | 21 +++++++++++++++++++++ CVE-2024/CVE-2024-506xx/CVE-2024-50623.json | 6 +++++- README.md | 14 +++++++------- _state.csv | 7 ++++--- 4 files changed, 37 insertions(+), 11 deletions(-) create mode 100644 CVE-2023/CVE-2023-294xx/CVE-2023-29476.json diff --git a/CVE-2023/CVE-2023-294xx/CVE-2023-29476.json b/CVE-2023/CVE-2023-294xx/CVE-2023-29476.json new file mode 100644 index 00000000000..ec4d5f71dc1 --- /dev/null +++ b/CVE-2023/CVE-2023-294xx/CVE-2023-29476.json @@ -0,0 +1,21 @@ +{ + "id": "CVE-2023-29476", + "sourceIdentifier": "cve@mitre.org", + "published": "2024-12-14T02:15:05.010", + "lastModified": "2024-12-14T02:15:05.010", + "vulnStatus": "Received", + "cveTags": [], + "descriptions": [ + { + "lang": "en", + "value": "In Menlo On-Premise Appliance before 2.88, web policy may not be consistently applied properly to intentionally malformed client requests. This is fixed in 2.88.2+, 2.89.1+, and 2.90.1+." + } + ], + "metrics": {}, + "references": [ + { + "url": "https://www.menlosecurity.com/published-security-vulnerabilities", + "source": "cve@mitre.org" + } + ] +} \ No newline at end of file diff --git a/CVE-2024/CVE-2024-506xx/CVE-2024-50623.json b/CVE-2024/CVE-2024-506xx/CVE-2024-50623.json index fcb916bd7c6..021a6acb6b7 100644 --- a/CVE-2024/CVE-2024-506xx/CVE-2024-50623.json +++ b/CVE-2024/CVE-2024-506xx/CVE-2024-50623.json @@ -2,7 +2,7 @@ "id": "CVE-2024-50623", "sourceIdentifier": "cve@mitre.org", "published": "2024-10-28T00:15:03.657", - "lastModified": "2024-12-10T20:15:20.257", + "lastModified": "2024-12-14T02:00:02.073", "vulnStatus": "Awaiting Analysis", "cveTags": [], "descriptions": [ @@ -39,6 +39,10 @@ } ] }, + "cisaExploitAdd": "2024-12-13", + "cisaActionDue": "2025-01-03", + "cisaRequiredAction": "Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.", + "cisaVulnerabilityName": "Cleo Multiple Products Unrestricted File Upload Vulnerability", "weaknesses": [ { "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0", diff --git a/README.md b/README.md index 7d377a2053e..d16d6a78441 100644 --- a/README.md +++ b/README.md @@ -13,13 +13,13 @@ Repository synchronizes with the NVD every 2 hours. ### Last Repository Update ```plain -2024-12-14T00:55:36.863051+00:00 +2024-12-14T03:00:19.797168+00:00 ``` ### Most recent CVE Modification Timestamp synchronized with NVD ```plain -2024-12-13T23:15:06.310000+00:00 +2024-12-14T02:15:05.010000+00:00 ``` ### Last Data Feed Release @@ -33,21 +33,21 @@ Download and Changelog: [Click](https://github.com/fkie-cad/nvd-json-data-feeds/ ### Total Number of included CVEs ```plain -273828 +273829 ``` ### CVEs added in the last Commit -Recently added CVEs: `2` +Recently added CVEs: `1` -- [CVE-2024-12552](CVE-2024/CVE-2024-125xx/CVE-2024-12552.json) (`2024-12-13T23:15:05.553`) -- [CVE-2024-12553](CVE-2024/CVE-2024-125xx/CVE-2024-12553.json) (`2024-12-13T23:15:06.310`) +- [CVE-2023-29476](CVE-2023/CVE-2023-294xx/CVE-2023-29476.json) (`2024-12-14T02:15:05.010`) ### CVEs modified in the last Commit -Recently modified CVEs: `0` +Recently modified CVEs: `1` +- [CVE-2024-50623](CVE-2024/CVE-2024-506xx/CVE-2024-50623.json) (`2024-12-14T02:00:02.073`) ## Download and Usage diff --git a/_state.csv b/_state.csv index ed2ed367791..adfd6ce0f79 100644 --- a/_state.csv +++ b/_state.csv @@ -222938,6 +222938,7 @@ CVE-2023-29471,0,0,72b13cb96b5651ca7898f495eb65cda22ef4f5f9064813e6aa6721de200f1 CVE-2023-29473,0,0,962b25368971eecc0256cc5b0b5fd386654955c54f9062b5d68c4eba7d43005e,2024-11-21T07:57:08.040000 CVE-2023-29474,0,0,4d49bb7998baa32821ffa2bda0888222ce3e7ecfecd2a3e20e56cc265682b2cc,2024-11-21T07:57:08.170000 CVE-2023-29475,0,0,33c83edd70229d4c831ae9bdd415364683573ea08af12a4ddc98823fa2c19e92,2024-11-21T07:57:08.320000 +CVE-2023-29476,1,1,c552ab9c8deba3b35895b2328a155a527925be4b99b0449fd5edf1a549a3beec,2024-12-14T02:15:05.010000 CVE-2023-29478,0,0,26a52af1e5d65e98c54e4beb2236d3bd1d72cbaf6c697669c6c21aef239832ad,2024-11-21T07:57:08.477000 CVE-2023-29479,0,0,75350b83cbe774edaed33a6f0ed3e2780cfb5405492749d3c46a0119080823c2,2024-11-21T07:57:08.613000 CVE-2023-2948,0,0,55ff93f2536f57f582b4c866dbe6ee94baa3d857520bccfc83121a8e8d3e0770,2024-11-21T07:59:37.673000 @@ -244719,8 +244720,8 @@ CVE-2024-1253,0,0,9fbe74a1c11be637e33880cb418c7b8ba8d1c852d6613e52fe041fc1300d8e CVE-2024-12536,0,0,a925f1a48eff74b537962fd623796390384e9d276d37e7a9cb0d9ba10f9464b0,2024-12-13T17:14:44.007000 CVE-2024-1254,0,0,44df8e919ae544d26fc82110d33f6e7af1fff88011a3bcb100ca7209bc278c91,2024-11-21T08:50:09.993000 CVE-2024-1255,0,0,d4be5ae93b9e5092a7e5ab21334a6f9f4c81c0431c6141ca4ea56d5a3455190b,2024-11-21T08:50:10.150000 -CVE-2024-12552,1,1,fb797bda6a7925c8d7543e5704f2ad51014fa3335d6fe6df263bb53aa2925a54,2024-12-13T23:15:05.553000 -CVE-2024-12553,1,1,a2255cbe7c81f26e6254fdbc6535a51f1e6a86b8a15e67572b76456e109cd8f4,2024-12-13T23:15:06.310000 +CVE-2024-12552,0,0,fb797bda6a7925c8d7543e5704f2ad51014fa3335d6fe6df263bb53aa2925a54,2024-12-13T23:15:05.553000 +CVE-2024-12553,0,0,a2255cbe7c81f26e6254fdbc6535a51f1e6a86b8a15e67572b76456e109cd8f4,2024-12-13T23:15:06.310000 CVE-2024-1256,0,0,ea8829298a5ced036094d7fead955f33827bc36bbc0a7f87a81ee1f95b95b282,2024-11-21T08:50:10.293000 CVE-2024-12564,0,0,0abcb221861e5fc99f1edf43c59fea9ce50a3b4bd68b4b9a5961d76741772172,2024-12-12T15:15:12.097000 CVE-2024-1257,0,0,7cc030c8f0ebfb33a80da788a5513945114551aaaa2999db4fa614a5f6b08a9b,2024-11-21T08:50:10.443000 @@ -267783,7 +267784,7 @@ CVE-2024-50614,0,0,29f22ac93163ff1303a42a1fec38fde0552d285d63129bbab00c726fede4a CVE-2024-50615,0,0,4d2a2e353be570a02fcdfff0b42fb37b106e2c1e8ab4e77f1c580e4daa183aa0,2024-10-30T20:35:37.310000 CVE-2024-50616,0,0,f16f40ce12577bc20e6d17ff8fa15bd5a1f69a543581dc34546ce7e8ac77217c,2024-10-30T20:35:38.380000 CVE-2024-5062,0,0,9128f70d0672705b0b285f525f62637be138c9786cd6adfa5de361b1c4e33225,2024-11-21T09:46:53.077000 -CVE-2024-50623,0,0,6fcd66e2e3cba1cd1f30ebab630bce12ee40ef64a6546c3f39f7c8deba3898a7,2024-12-10T20:15:20.257000 +CVE-2024-50623,0,1,ad8f07a26b24d1b2e14fd5c9afdee83dc8d3b5da971fda4bcc93b7953fe02d4a,2024-12-14T02:00:02.073000 CVE-2024-50624,0,0,425b4912ca74d0f19519cece63451f565c900b6a769644536a74ca4edcfab020,2024-10-30T21:35:12.223000 CVE-2024-50625,0,0,0615c3ce00402c7fcf7bd9b67896f95a07c8c57e2adb669aeb487631cfaa7e03,2024-12-12T02:06:32.647000 CVE-2024-50626,0,0,b58a9e7329930925a1ddf93a83d5b99f5db2eb97bc485eb0cfbf434a0322b898,2024-12-12T02:06:32.817000