Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.55734
Categoría:Gentoo Local Security Checks
Título:Gentoo Security Advisory GLSA 200510-21 (phpmyadmin)
Resumen:The remote host is missing updates announced in;advisory GLSA 200510-21.
Descripción:Summary:
The remote host is missing updates announced in
advisory GLSA 200510-21.

Vulnerability Insight:
phpMyAdmin contains a local file inclusion vulnerability that may lead to
the execution of arbitrary code, along with several cross-site scripting
issues.

Solution:
All phpMyAdmin users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=dev-db/phpmyadmin-2.6.4_p3'

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:P/A:N

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2005-3300
BugTraq ID: 15169
http://www.securityfocus.com/bid/15169
Bugtraq: 20051022 Advisory 16/2005: phpMyAdmin Local File Inclusion Vulnerability (Google Search)
http://marc.info/?l=bugtraq&m=113017591414699&w=2
Debian Security Information: DSA-880 (Google Search)
http://www.debian.org/security/2005/dsa-880
http://archives.neohapsis.com/archives/fulldisclosure/2005-10/0478.
http://www.gentoo.org/security/en/glsa/glsa-200510-21.xml
http://www.hardened-php.net/advisory_162005.73.html
http://securitytracker.com/id?1015091
http://secunia.com/advisories/17289/
http://secunia.com/advisories/17337
http://secunia.com/advisories/17559
http://secunia.com/advisories/17607
SuSE Security Announcement: SUSE-SA:2005:066 (Google Search)
http://www.novell.com/linux/security/advisories/2005_66_phpmyadmin.html
SuSE Security Announcement: SUSE-SR:2005:026 (Google Search)
SuSE Security Announcement: SUSE-SR:2005:028 (Google Search)
http://www.novell.com/linux/security/advisories/2005_28_sr.html
XForce ISS Database: phpmyadmin-multiple-scripts-file-include(22835)
https://exchange.xforce.ibmcloud.com/vulnerabilities/22835
Common Vulnerability Exposure (CVE) ID: CVE-2005-3301
BugTraq ID: 15196
http://www.securityfocus.com/bid/15196
http://www.vupen.com/english/advisories/2005/2179
CopyrightCopyright (C) 2008 E-Soft Inc.

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.