. Updated Daily. Editions SDA India   SDA Indonesia
BUSINESS ENTERPRISE SOLUTIONS ARCHITECTURE INFORMATION SECURITY WIRELESS & MOBILITY DATA & STORAGE DEVELOPMENT HARDWARE













News

Wednesday, 25 April 2007

Beware of the phpMyAdmin Cross-Site Scripting Vulnerabilities

 

 

Secunia.com talks about a phpMyAdmin Cross-Site Scripting Vulnerabilities.

The post says, some vulnerabilities have been reported in phpMyAdmin, which can be exploited by malicious people to conduct cross-site scripting attacks.

Input passed to the ‘fieldkey’ parameter in browse_foreigners.php and input passed to the ‘PMA_sanitize()’ function is not properly sanitized before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site.

The vulnerabilities are reported in versions prior to 2.10.1.

The solution is to update to version 2.10.1.

 

More info

 
 
print save email comment

print

save

email

comment

 
 

Search SDA Asia

Free eNewsletter

SDA Asia Magazine Free Download
 
 
 
Copyright @ 2008 SDA Asia Magazine - All Right Reserved Privacy Policy | Terms of Use