white at alioth.debian.org
2007-Nov-16 04:29 UTC
[Secure-testing-commits] r7317 - data/CVE
Author: white Date: 2007-11-16 04:29:44 +0000 (Fri, 16 Nov 2007) New Revision: 7317 Modified: data/CVE/list Log: SQL injection and XSS in phpmyadmin, upstream patch reported to BTS Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-11-16 04:05:57 UTC (rev 7316) +++ data/CVE/list 2007-11-16 04:29:44 UTC (rev 7317) @@ -23,9 +23,9 @@ CVE-2007-5978 (SQL injection vulnerability in brokenlink.php in the mylinks module ...) NOT-FOR-US: XOOPS CVE-2007-5977 (Cross-site scripting (XSS) vulnerability in db_create.php in ...) - TODO: check + - phpmyadmin <unfixed> (bug #451465) CVE-2007-5976 (SQL injection vulnerability in db_create.php in phpMyAdmin before ...) - TODO: check + - phpmyadmin <unfixed> (bug #451465) CVE-2007-5975 (SQL injection vulnerability in index.php in TBSource, as used in (1) ...) NOT-FOR-US: TBSource CVE-2007-5974 (SQL injection vulnerability in mailer.php in JPortal 2 allows remote ...)