Author: joeyh Date: 2006-10-24 21:14:27 +0000 (Tue, 24 Oct 2006) New Revision: 4881 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-10-24 20:54:10 UTC (rev 4880) +++ data/CVE/list 2006-10-24 21:14:27 UTC (rev 4881) @@ -1975,6 +1975,7 @@ CVE-2006-4543 (Cross-site scripting (XSS) vulnerability in index.php in HLStats 1.34 ...) NOT-FOR-US: HLStats CVE-2006-4542 (Webmin before 1.296 and Usermin before 1.226 do not properly handle a ...) + {DSA-1199-1} - webmin <removed> (bug #391284) - usermin <removed> CVE-2006-4541 (RapDrv.sys in BlackICE PC Protection 3.6.cpn, cpj, cpiE, and possibly ...) @@ -4607,6 +4608,7 @@ CVE-2006-3393 (Papyrus NASCAR Racing 4 4.1.3.1.6 and earlier, 2002 Season 1.1.0.2 and ...) NOT-FOR-US: Papyrus NASCAR Racing CVE-2006-3392 (Webmin before 1.290 and Usermin before 1.220 calls the simplify_path ...) + {DSA-1199-1} - webmin <removed> (medium; bug #381537) CVE-2006-3391 (The Execute function in iMBCContents ActiveX Control before 2.0.0.59 ...) NOT-FOR-US: iMBCContents @@ -14455,6 +14457,7 @@ CVE-2005-3913 (Unspecified vulnerability in the domain alias management in Virtual ...) NOT-FOR-US: Virtual Hosting Control System CVE-2005-3912 (Format string vulnerability in miniserv.pl Perl web server in Webmin ...) + {DSA-1199-1} - webmin <not-affected> (Fixed through corrected Perl) NOTE: No longer exploitable with Perl 5.8.7-9, thus no dedicated Webmin updated CVE-2005-3911 (Multiple SQL injection vulnerabilities in calendar.php in BosDates 4.0 ...)