Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2009-1150
StatusCandidate
DescriptionMultiple cross-site scripting (XSS) vulnerabilities in the export page (display_export.lib.php) in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allow remote attackers to inject arbitrary web script or HTML via the pma_db_filename_template cookie.
SeverityMedium
CVSS score4,3
CVSS vector(AV:N/AC:M/Au:N/C:N/I:P/A:N)
PhaseAssigned (15.07.2009)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-1150
ReferencesCONFIRM : http://phpmyadmin.svn.sourceforge.net/viewvc/phpmy...
 CONFIRM : http://www.phpmyadmin.net/home_page/security/PMASA...
 SECUNIA : 34430
SecurityVulns:Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server