Author: joeyh Date: 2006-03-17 21:14:25 +0000 (Fri, 17 Mar 2006) New Revision: 3641 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-03-17 18:34:01 UTC (rev 3640) +++ data/CVE/list 2006-03-17 21:14:25 UTC (rev 3641) @@ -41,12 +41,16 @@ CVE-2006-1229 (SQL injection vulnerability in search.asp in Hosting Controller 6.1 ...) NOT-FOR-US: Hosting Controller CVE-2006-1228 (Session fixation vulnerability in Drupal 4.5.x before 4.5.8 and 4.6.x ...) + {DSA-1007-1} - drupal 4.5.8-1 CVE-2006-1227 (Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8, when menu.module is ...) + {DSA-1007-1} - drupal 4.5.8-1 CVE-2006-1226 (Cross-site scripting (XSS) vulnerability in Drupal 4.5.x before 4.5.8 ...) + {DSA-1007-1} - drupal 4.5.8-1 CVE-2006-1225 (CRLF injection vulnerability in Drupal 4.5.x before 4.5.8 and 4.6.x ...) + {DSA-1007-1} - drupal 4.5.8-1 CVE-2006-1224 (Directory traversal vulnerability in dwnld.php in GuppY 4.5.11 allows ...) NOT-FOR-US: GuppY