| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.63633 |
| Category: | FreeBSD Local Security Checks |
| Title: | FreeBSD Ports: phppgadmin |
| Summary: | FreeBSD Ports: phppgadmin |
| Description: | The remote host is missing an update to the system as announced in the referenced advisory. The following package is affected: phppgadmin CVE-2008-5587 Directory traversal vulnerability in libraries/lib.inc.php in phpPgAdmin 4.2.1 and earlier, when register_globals is enabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the _language parameter to index.php. Solution: Update your system with the appropriate patches or software upgrades. http://secunia.com/advisories/33014 http://www.vuxml.org/freebsd/4ce3c20b-124b-11de-a964-0030843d3802.html |
| Cross-Ref: |
BugTraq ID: 32670 Common Vulnerability Exposure (CVE) ID: CVE-2008-5587 http://www.milw0rm.com/exploits/7363 Debian Security Information: DSA-1693 (Google Search) http://www.debian.org/security/2008/dsa-1693 SuSE Security Announcement: SUSE-SR:2009:004 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.html http://www.securityfocus.com/bid/32670 http://secunia.com/advisories/33014 http://secunia.com/advisories/33263 http://securityreason.com/securityalert/4737 XForce ISS Database: phppgadmin-index-file-include(47140) http://xforce.iss.net/xforce/xfdb/47140 |
| Copyright | Copyright (c) 2009 E-Soft Inc. http://www.securityspace.com |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|