8
8
<name >setuptools</name >
9
9
<version >50.3.2</version >
10
10
<
purl >pkg:pypi/
[email protected] ?extension=tar.gz</
purl >
11
+ <v : vulnerabilities >
12
+ <
v : vulnerability ref =
" pkg:pypi/[email protected] ?extension=tar.gz" >
13
+ <v : id >CVE-2018-7489</v : id >
14
+ <v : source name =" NVD" >
15
+ <v : url >https://nvd.nist.gov/vuln/detail/CVE-2018-7489</v : url >
16
+ </v : source >
17
+ <v : ratings >
18
+ <v : rating >
19
+ <v : score >
20
+ <v : base >9.8</v : base >
21
+ <v : impact >5.9</v : impact >
22
+ <v : exploitability >3.0</v : exploitability >
23
+ </v : score >
24
+ <v : severity >Critical</v : severity >
25
+ <v : method >CVSSv3</v : method >
26
+ <v : vector >AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</v : vector >
27
+ </v : rating >
28
+ <v : rating >
29
+ <v : severity >Low</v : severity >
30
+ <v : method >OWASP Risk</v : method >
31
+ <v : vector >OWASP/K9:M1:O0:Z2/D1:X1:W1:L3/C2:I1:A1:T1/F1:R1:S2:P3/50</v : vector >
32
+ </v : rating >
33
+ </v : ratings >
34
+ <v : cwes >
35
+ <v : cwe >123</v : cwe >
36
+ <v : cwe >456</v : cwe >
37
+ </v : cwes >
38
+ <v : description >A description here</v : description >
39
+ <v : recommendations >
40
+ <v : recommendation >Upgrade</v : recommendation >
41
+ </v : recommendations >
42
+ <v : advisories >
43
+ <v : advisory >http://www.securityfocus.com/bid/103203</v : advisory >
44
+ <v : advisory >http://www.securitytracker.com/id/1040693</v : advisory >
45
+ </v : advisories >
46
+ </v : vulnerability >
47
+ </v : vulnerabilities >
11
48
</component >
12
49
</components >
13
- <v : vulnerabilities >
14
- <
v : vulnerability ref =
" pkg:pypi/[email protected] ?extension=tar.gz" >
15
- <v : id >CVE-2018-7489</v : id >
16
- <v : source name =" NVD" >
17
- <v : url >https://nvd.nist.gov/vuln/detail/CVE-2018-7489</v : url >
18
- </v : source >
19
- <v : ratings >
20
- <v : rating >
21
- <v : score >
22
- <v : base >9.8</v : base >
23
- <v : impact >5.9</v : impact >
24
- <v : exploitability >3.0</v : exploitability >
25
- </v : score >
26
- <v : severity >Critical</v : severity >
27
- <v : method >CVSSv3</v : method >
28
- <v : vector >AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</v : vector >
29
- </v : rating >
30
- <v : rating >
31
- <v : severity >Low</v : severity >
32
- <v : method >OWASP Risk</v : method >
33
- <v : vector >OWASP/K9:M1:O0:Z2/D1:X1:W1:L3/C2:I1:A1:T1/F1:R1:S2:P3/50</v : vector >
34
- </v : rating >
35
- </v : ratings >
36
- <v : cwes >
37
- <v : cwe >123</v : cwe >
38
- <v : cwe >456</v : cwe >
39
- </v : cwes >
40
- <v : description >A description here</v : description >
41
- <v : recommendations >
42
- <v : recommendation >Upgrade</v : recommendation >
43
- </v : recommendations >
44
- <v : advisories >
45
- <v : advisory >http://www.securityfocus.com/bid/103203</v : advisory >
46
- <v : advisory >http://www.securitytracker.com/id/1040693</v : advisory >
47
- </v : advisories >
48
- </v : vulnerability >
49
- </v : vulnerabilities >
50
50
</bom >
0 commit comments