Bug#382228: PHPMyAdmin: Set_Theme Cross-Site Scripting Vulnerability

2006-08-09 Thread Thijs Kinkhorst
close 382228 4:2.8.0.2-1 thanks Hello, Thanks for your report. > http://www.securityfocus.com/bid/17142/references This is CVE-2006-1258. Sid contains a version > 2.8.0.2 so can considered to be fixed. Recently I judged sarge not to be vulnerable, and can't reproduce the issue on sarge with th

Bug#382228: PHPMyAdmin: Set_Theme Cross-Site Scripting Vulnerability

2006-08-09 Thread Stephen Gran
Package: phpmyadmin Severity: critical Tags: security http://www.securityfocus.com/bid/17142/references -- System Information: Debian Release: 3.1 Architecture: i386 (i686) Kernel: Linux 2.6.8-3-686-smp Locale: LANG=en_US.ISO-8859-1, LC_CTYPE=en_US.ISO-8859-1 (charmap=ISO-8859-1) (ignored: LC_AL