88 <name >setuptools</name >
99 <version >50.3.2</version >
1010 <purl >pkg:pypi/setuptools@50.3.2?extension=tar.gz</purl >
11+ <v : vulnerabilities >
12+ <v : vulnerability ref =" pkg:pypi/setuptools@50.3.2?extension=tar.gz" >
13+ <v : id >CVE-2018-7489</v : id >
14+ <v : source name =" NVD" >
15+ <v : url >https://nvd.nist.gov/vuln/detail/CVE-2018-7489</v : url >
16+ </v : source >
17+ <v : ratings >
18+ <v : rating >
19+ <v : score >
20+ <v : base >9.8</v : base >
21+ <v : impact >5.9</v : impact >
22+ <v : exploitability >3.0</v : exploitability >
23+ </v : score >
24+ <v : severity >Critical</v : severity >
25+ <v : method >CVSSv3</v : method >
26+ <v : vector >AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</v : vector >
27+ </v : rating >
28+ <v : rating >
29+ <v : severity >Low</v : severity >
30+ <v : method >OWASP Risk</v : method >
31+ <v : vector >OWASP/K9:M1:O0:Z2/D1:X1:W1:L3/C2:I1:A1:T1/F1:R1:S2:P3/50</v : vector >
32+ </v : rating >
33+ </v : ratings >
34+ <v : cwes >
35+ <v : cwe >123</v : cwe >
36+ <v : cwe >456</v : cwe >
37+ </v : cwes >
38+ <v : description >A description here</v : description >
39+ <v : recommendations >
40+ <v : recommendation >Upgrade</v : recommendation >
41+ </v : recommendations >
42+ <v : advisories >
43+ <v : advisory >http://www.securityfocus.com/bid/103203</v : advisory >
44+ <v : advisory >http://www.securitytracker.com/id/1040693</v : advisory >
45+ </v : advisories >
46+ </v : vulnerability >
47+ </v : vulnerabilities >
1148 </component >
1249 </components >
13- <v : vulnerabilities >
14- <v : vulnerability ref =" pkg:pypi/setuptools@50.3.2?extension=tar.gz" >
15- <v : id >CVE-2018-7489</v : id >
16- <v : source name =" NVD" >
17- <v : url >https://nvd.nist.gov/vuln/detail/CVE-2018-7489</v : url >
18- </v : source >
19- <v : ratings >
20- <v : rating >
21- <v : score >
22- <v : base >9.8</v : base >
23- <v : impact >5.9</v : impact >
24- <v : exploitability >3.0</v : exploitability >
25- </v : score >
26- <v : severity >Critical</v : severity >
27- <v : method >CVSSv3</v : method >
28- <v : vector >AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H</v : vector >
29- </v : rating >
30- <v : rating >
31- <v : severity >Low</v : severity >
32- <v : method >OWASP Risk</v : method >
33- <v : vector >OWASP/K9:M1:O0:Z2/D1:X1:W1:L3/C2:I1:A1:T1/F1:R1:S2:P3/50</v : vector >
34- </v : rating >
35- </v : ratings >
36- <v : cwes >
37- <v : cwe >123</v : cwe >
38- <v : cwe >456</v : cwe >
39- </v : cwes >
40- <v : description >A description here</v : description >
41- <v : recommendations >
42- <v : recommendation >Upgrade</v : recommendation >
43- </v : recommendations >
44- <v : advisories >
45- <v : advisory >http://www.securityfocus.com/bid/103203</v : advisory >
46- <v : advisory >http://www.securitytracker.com/id/1040693</v : advisory >
47- </v : advisories >
48- </v : vulnerability >
49- </v : vulnerabilities >
5050</bom >
0 commit comments