[Secure-testing-commits] r5147 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Tue Dec 19 20:50:49 CET 2006


Author: stef-guest
Date: 2006-12-19 20:50:46 +0100 (Tue, 19 Dec 2006)
New Revision: 5147

Modified:
   data/CVE/list
Log:
CVE-2006-6421: new phpbb2 issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-12-19 19:45:28 UTC (rev 5146)
+++ data/CVE/list	2006-12-19 19:50:46 UTC (rev 5147)
@@ -323,7 +323,8 @@
 CVE-2006-6422 (Agileco AgileBill 1.4.x and AgileVoice 1.4.x do not properly handle ...)
 	NOT-FOR-US: AgileBill AgileVoice
 CVE-2006-6421 (Cross-site scripting (XSS) vulnerability in the private message box ...)
-	TODO: check
+	- phpbb2 <unfixed> (low)
+	[sarge] - phpbb2 <not-affected>
 CVE-2006-6420 (Multiple cross-site scripting (XSS) vulnerabilities in jce.php in the ...)
 	NOT-FOR-US: Joomla Content Editor (JCE)
 CVE-2006-6419 (jce.php in the JCE Admin Component in Ryan Demmer Joomla Content ...)




More information about the Secure-testing-commits mailing list