| MDVSA-2011:026: phpmyadmin |
|
|
|
| Écrit par Administrator |
| Lundi, 14 Février 2011 12:00 |
|
Multiple vulnerabilities were discovered and corrected in phpmyadmin:
When the files README, ChangeLog or LICENSE have been removed from their original place (possibly by the distributor), the scripts used to display these files can show their full path, leading to possible further attacks (CVE-2011-0986). It was possible to create a bookmark which would be executed unintentionally by other users (CVE-2011-0987). The updated packages have been upgraded to the latest versions to mitigate these issues. |




























































