From d951dd60fbe8bfe09b94dd36c99ef09dcac1a9dc Mon Sep 17 00:00:00 2001 From: GitHub Action Date: Thu, 8 Dec 2022 13:58:02 +0000 Subject: [PATCH] Auto Generated CVE annotations [Thu Dec 8 13:58:02 UTC 2022] :robot: --- cves/2021/CVE-2021-24827.yaml | 8 ++++++-- cves/2022/CVE-2022-0826.yaml | 2 +- cves/2022/CVE-2022-0948.yaml | 8 ++++++-- exposed-panels/r-webserver-login.yaml | 2 +- 4 files changed, 14 insertions(+), 6 deletions(-) diff --git a/cves/2021/CVE-2021-24827.yaml b/cves/2021/CVE-2021-24827.yaml index 378aa52ec4..25d3ebf385 100644 --- a/cves/2021/CVE-2021-24827.yaml +++ b/cves/2021/CVE-2021-24827.yaml @@ -10,11 +10,15 @@ info: - https://wpscan.com/vulnerability/36cc5151-1d5e-4874-bcec-3b6326235db1 - https://wordpress.org/plugins/asgaros-forum/ - https://nvd.nist.gov/vuln/detail/CVE-2021-24827 + - https://plugins.trac.wordpress.org/changeset/2611560/asgaros-forum classification: + cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H + cvss-score: 9.8 cve-id: CVE-2021-24827 + cwe-id: CWE-89 metadata: - verified: true - tags: cve,cve2022,wordpress,wp-plugin,wp,sqli,asgaros-forum,unauth + verified: "true" + tags: cve2022,wp-plugin,asgaros-forum,unauth,wpscan,cve,wordpress,wp,sqli requests: - raw: diff --git a/cves/2022/CVE-2022-0826.yaml b/cves/2022/CVE-2022-0826.yaml index 5a0f8b52c0..e3519085a0 100644 --- a/cves/2022/CVE-2022-0826.yaml +++ b/cves/2022/CVE-2022-0826.yaml @@ -17,7 +17,7 @@ info: cwe-id: CWE-89 metadata: verified: true - tags: cve,cve2022,wordpress,wp-plugin,wp,sqli,wp-video-gallery-free,unauth + tags: cve2022,wp-plugin,wpscan,cve,wordpress,wp,sqli,wp-video-gallery-free,unauth requests: - raw: diff --git a/cves/2022/CVE-2022-0948.yaml b/cves/2022/CVE-2022-0948.yaml index cbc5707004..02e54bfaec 100644 --- a/cves/2022/CVE-2022-0948.yaml +++ b/cves/2022/CVE-2022-0948.yaml @@ -10,11 +10,15 @@ info: - https://wpscan.com/vulnerability/daad48df-6a25-493f-9d1d-17b897462576 - https://wordpress.org/plugins/woc-order-alert/ - https://nvd.nist.gov/vuln/detail/CVE-2022-0948 + - https://plugins.trac.wordpress.org/changeset/2707223 classification: + cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H + cvss-score: 9.8 cve-id: CVE-2022-0948 + cwe-id: CWE-89 metadata: - verified: true - tags: cve,cve2022,wordpress,wp-plugin,wp,sqli,woc-order-alert,unauth + verified: "true" + tags: cve,wp,unauth,sqli,woc-order-alert,wpscan,cve2022,wordpress,wp-plugin requests: - raw: diff --git a/exposed-panels/r-webserver-login.yaml b/exposed-panels/r-webserver-login.yaml index 6d4f78e68f..ebf13b29ae 100644 --- a/exposed-panels/r-webserver-login.yaml +++ b/exposed-panels/r-webserver-login.yaml @@ -11,7 +11,7 @@ info: cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cvss-score: 0.0 cwe-id: CWE-200 - tags: panel,rwebserver + tags: edb,panel,rwebserver requests: - method: GET