Skip to content

Commit d8c249c

Browse files
committed
- Synchronized data.
1 parent 120a823 commit d8c249c

File tree

3 files changed

+97
-79
lines changed

3 files changed

+97
-79
lines changed

2019/5xxx/CVE-2019-5616.json

Lines changed: 47 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,11 +1,34 @@
11
{
22
"CVE_data_meta" : {
3-
"ASSIGNER" : "cve@mitre.org",
3+
"ASSIGNER" : "cve@rapid7.com",
44
"DATE_PUBLIC" : "2019-03-12T15:00:00.000Z",
55
"ID" : "CVE-2019-5616",
6-
"STATE" : "RESERVED",
6+
"STATE" : "PUBLIC",
77
"TITLE" : "CircuitWerkes Sicon-8 Client-Side Authentication Read-Only Bypass"
88
},
9+
"affects" : {
10+
"vendor" : {
11+
"vendor_data" : [
12+
{
13+
"product" : {
14+
"product_data" : [
15+
{
16+
"product_name" : "n/a",
17+
"version" : {
18+
"version_data" : [
19+
{
20+
"version_value" : "n/a"
21+
}
22+
]
23+
}
24+
}
25+
]
26+
},
27+
"vendor_name" : "n/a"
28+
}
29+
]
30+
}
31+
},
932
"credit" : [
1033
{
1134
"lang" : "eng",
@@ -19,7 +42,7 @@
1942
"description_data" : [
2043
{
2144
"lang" : "eng",
22-
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
45+
"value" : "CircuitWerkes Sicon-8, a hardware device used for managing electrical devices, ships with a web-based front-end controller and implements an authentication mechanism in JavaScript that is run in the context of a user's web browser."
2346
}
2447
]
2548
},
@@ -45,6 +68,27 @@
4568
"version" : "3.0"
4669
}
4770
},
71+
"problemtype" : {
72+
"problemtype_data" : [
73+
{
74+
"description" : [
75+
{
76+
"lang" : "eng",
77+
"value" : "n/a"
78+
}
79+
]
80+
}
81+
]
82+
},
83+
"references" : {
84+
"reference_data" : [
85+
{
86+
"name" : "https://blog.rapid7.com/2019/03/12/r7-2019-01-circuitwerkes-sicon-8-client-side-authentication-read-only-bypass-cve-2019-5616/",
87+
"refsource" : "MISC",
88+
"url" : "https://blog.rapid7.com/2019/03/12/r7-2019-01-circuitwerkes-sicon-8-client-side-authentication-read-only-bypass-cve-2019-5616/"
89+
}
90+
]
91+
},
4892
"source" : {
4993
"defect" : [
5094
"R7-2019-01"

2019/6xxx/CVE-2019-6149.json

Lines changed: 32 additions & 76 deletions
Original file line numberDiff line numberDiff line change
@@ -1,89 +1,45 @@
11
{
2-
"CVE_data_meta": {
3-
"ASSIGNER": "[email protected]",
4-
"DATE_PUBLIC": "2019-03-14T16:00:00.000Z",
5-
"ID": "CVE-2019-6149",
6-
"STATE": "PUBLIC"
2+
"CVE_data_meta" : {
3+
"ASSIGNER" : "[email protected]",
4+
"DATE_PUBLIC" : "2019-03-14T16:00:00.000Z",
5+
"ID" : "CVE-2019-6149",
6+
"STATE" : "RESERVED"
77
},
8-
"affects": {
9-
"vendor": {
10-
"vendor_data": [
11-
{
12-
"product": {
13-
"product_data": [
14-
{
15-
"product_name": "Dynamic Power Reduction Utility",
16-
"version": {
17-
"version_data": [
18-
{
19-
"affected": "<",
20-
"version_value": "2.2.2.0"
21-
}
22-
]
23-
}
24-
}
25-
]
26-
},
27-
"vendor_name": "Lenovo"
28-
}
29-
]
30-
}
31-
},
32-
"data_format": "MITRE",
33-
"data_type": "CVE",
34-
"data_version": "4.0",
35-
"description": {
36-
"description_data": [
8+
"data_format" : "MITRE",
9+
"data_type" : "CVE",
10+
"data_version" : "4.0",
11+
"description" : {
12+
"description_data" : [
3713
{
38-
"lang": "eng",
39-
"value": "An unquoted search path vulnerability was identified in Lenovo Dynamic Power Reduction Utility prior to version 2.2.2.0 that could allow a malicious user with local access to execute code with administrative privileges."
14+
"lang" : "eng",
15+
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
4016
}
4117
]
4218
},
43-
"impact": {
44-
"cvss": {
45-
"attackComplexity": "LOW",
46-
"attackVector": "LOCAL",
47-
"availabilityImpact": "HIGH",
48-
"baseScore": 6.7,
49-
"baseSeverity": "MEDIUM",
50-
"confidentialityImpact": "HIGH",
51-
"integrityImpact": "HIGH",
52-
"privilegesRequired": "HIGH",
53-
"scope": "UNCHANGED",
54-
"userInteraction": "NONE",
55-
"vectorString": "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
56-
"version": "3.0"
19+
"impact" : {
20+
"cvss" : {
21+
"attackComplexity" : "LOW",
22+
"attackVector" : "LOCAL",
23+
"availabilityImpact" : "HIGH",
24+
"baseScore" : 6.7,
25+
"baseSeverity" : "MEDIUM",
26+
"confidentialityImpact" : "HIGH",
27+
"integrityImpact" : "HIGH",
28+
"privilegesRequired" : "HIGH",
29+
"scope" : "UNCHANGED",
30+
"userInteraction" : "NONE",
31+
"vectorString" : "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
32+
"version" : "3.0"
5733
}
5834
},
59-
"problemtype": {
60-
"problemtype_data": [
61-
{
62-
"description": [
63-
{
64-
"lang": "eng",
65-
"value": "Privilege escalation"
66-
}
67-
]
68-
}
69-
]
70-
},
71-
"references": {
72-
"reference_data": [
73-
{
74-
"refsource": "CONFIRM",
75-
"url": "https://support.lenovo.com/solutions/LEN-25674"
76-
}
77-
]
78-
},
79-
"solution": [
35+
"solution" : [
8036
{
81-
"lang": "eng",
82-
"value": "Update Dynamic Power Reduction Utility to version 2.2.2.0."
37+
"lang" : "eng",
38+
"value" : "Update Dynamic Power Reduction Utility to version 2.2.2.0."
8339
}
8440
],
85-
"source": {
86-
"advisory": "LEN-25674",
87-
"discovery": "UNKNOWN"
41+
"source" : {
42+
"advisory" : "LEN-25674",
43+
"discovery" : "UNKNOWN"
8844
}
8945
}

2019/9xxx/CVE-2019-9841.json

Lines changed: 18 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,18 @@
1+
{
2+
"CVE_data_meta" : {
3+
"ASSIGNER" : "[email protected]",
4+
"ID" : "CVE-2019-9841",
5+
"STATE" : "RESERVED"
6+
},
7+
"data_format" : "MITRE",
8+
"data_type" : "CVE",
9+
"data_version" : "4.0",
10+
"description" : {
11+
"description_data" : [
12+
{
13+
"lang" : "eng",
14+
"value" : "** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided."
15+
}
16+
]
17+
}
18+
}

0 commit comments

Comments
 (0)