Описание
Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin 3.0.0, and possibly other versions including 2.11.9.2 and 3.0.1, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the db parameter, a different vector than CVE-2006-6942 and CVE-2007-5977.
Релиз | Статус | Примечание |
---|---|---|
dapper | not-affected | code not present |
devel | not-affected | 4:3.2.0.1-1 |
gutsy | ignored | end of life, was needed |
hardy | released | 4:2.11.3-1ubuntu1.2 |
intrepid | released | 4:2.11.8.1-1ubuntu0.1 |
jaunty | not-affected | 4:3.1.2-1 |
upstream | needed |
Показывать по
Ссылки на источники
2.6 Low
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin 3.0.0, and possibly other versions including 2.11.9.2 and 3.0.1, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the db parameter, a different vector than CVE-2006-6942 and CVE-2007-5977.
Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin 3.0.0, and possibly other versions including 2.11.9.2 and 3.0.1, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the db parameter, a different vector than CVE-2006-6942 and CVE-2007-5977.
Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin ...
Cross-site scripting (XSS) vulnerability in pmd_pdf.php in phpMyAdmin 3.0.0, and possibly other versions including 2.11.9.2 and 3.0.1, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the db parameter, a different vector than CVE-2006-6942 and CVE-2007-5977.
2.6 Low
CVSS2