thijs at alioth.debian.org
2007-Nov-17 20:19 UTC
[Secure-testing-commits] r7346 - data/CVE
Author: thijs Date: 2007-11-17 20:19:37 +0000 (Sat, 17 Nov 2007) New Revision: 7346 Modified: data/CVE/list Log: phpmyadmin issues already fixed, and unimportant (having create database already implies a lot of trust) Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-11-17 18:35:36 UTC (rev 7345) +++ data/CVE/list 2007-11-17 20:19:37 UTC (rev 7346) @@ -78,9 +78,9 @@ CVE-2007-5978 (SQL injection vulnerability in brokenlink.php in the mylinks module ...) NOT-FOR-US: XOOPS CVE-2007-5977 (Cross-site scripting (XSS) vulnerability in db_create.php in ...) - - phpmyadmin <unfixed> (low; bug #451465) + - phpmyadmin 4:2.11.2.1-1 (unimportant; bug #451465) CVE-2007-5976 (SQL injection vulnerability in db_create.php in phpMyAdmin before ...) - - phpmyadmin <unfixed> (medium; bug #451465) + - phpmyadmin 4:2.11.2.1-1 (unimportant; bug #451465) CVE-2007-5975 (SQL injection vulnerability in index.php in TBSource, as used in (1) ...) NOT-FOR-US: TBSource CVE-2007-5974 (SQL injection vulnerability in mailer.php in JPortal 2 allows remote ...)