Oval Definition:oval:com.ubuntu.precise:def:20112506000
Revision Date:2011-07-14Version:1
Title:CVE-2011-2506 on Ubuntu 12.04 LTS (precise) - medium.
Description:setup/lib/ConfigGenerator.class.php in phpMyAdmin 3.x before 3.3.10.2 and 3.4.x before 3.4.3.1 does not properly restrict the presence of comment closing delimiters, which allows remote attackers to conduct static code injection attacks by leveraging the ability to modify the SESSION superglobal array.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2011-2506
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The 'phpmyadmin' package in precise was vulnerable but has been fixed (note: '4:3.4.3.1-1').
  • BACK