|
|
| |
|
| |
phpmyadmin: multiple vulnerabilities
| Package(s): | phpmyadmin |
CVE #(s): | CVE-2010-4480
CVE-2010-4481
|
| Created: | December 31, 2010 |
Updated: | March 30, 2011 |
| Description: |
From the Debian advisory:
Cross site scripting was possible in errors, that allowed a remote attacker to inject arbitrary web script or HTML. (CVE-2010-4480)
Display of PHP's phpinfo() function was available to world, but only if this functionality had been enabled (defaults to off). This may leak some information about the host system. (CVE-2010-4481)
|
| Alerts: |
|
( Log in to post comments)
|
|
|