Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.56820
Categoría:CGI abuses
Título:phpMyAdmin Multiple Vulnerabilities(2)
Resumen:NOSUMMARY
Descripción:Description:

The remote version of phpMyAdmin, according to its version
number, is vulnerable to multiple vulnerabilities,
including arbitrary file disclosure and cross site
scripting attacks as a result of insufficient sanitization
of user supplied input.

Versions prior to 2.6.4-pl3 are vulnerable.

Solution: Upgrade to 2.6.4-pl3 or later.

Risk factor : Medium

CVSS Score:
5.0

Referencia Cruzada: BugTraq ID: 15169
BugTraq ID: 15196
Common Vulnerability Exposure (CVE) ID: CVE-2005-3300
http://www.securityfocus.com/bid/15169
Bugtraq: 20051022 Advisory 16/2005: phpMyAdmin Local File Inclusion Vulnerability (Google Search)
http://marc.info/?l=bugtraq&m=113017591414699&w=2
Debian Security Information: DSA-880 (Google Search)
http://www.debian.org/security/2005/dsa-880
http://archives.neohapsis.com/archives/fulldisclosure/2005-10/0478.
http://www.gentoo.org/security/en/glsa/glsa-200510-21.xml
http://www.hardened-php.net/advisory_162005.73.html
http://securitytracker.com/id?1015091
http://secunia.com/advisories/17289/
http://secunia.com/advisories/17337
http://secunia.com/advisories/17559
http://secunia.com/advisories/17607
SuSE Security Announcement: SUSE-SA:2005:066 (Google Search)
http://www.novell.com/linux/security/advisories/2005_66_phpmyadmin.html
SuSE Security Announcement: SUSE-SR:2005:026 (Google Search)
SuSE Security Announcement: SUSE-SR:2005:028 (Google Search)
http://www.novell.com/linux/security/advisories/2005_28_sr.html
XForce ISS Database: phpmyadmin-multiple-scripts-file-include(22835)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22835
Common Vulnerability Exposure (CVE) ID: CVE-2005-3301
http://www.securityfocus.com/bid/15196
http://www.vupen.com/english/advisories/2005/2179
CopyrightCopyright (c) 2006 E-Soft Inc. http://www.securityspace.com

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.