[Secure-testing-commits] r4312 - data/CVE

Alec Berryman alec-guest at costa.debian.org
Wed Jun 28 01:30:34 UTC 2006


Author: alec-guest
Date: 2006-06-28 01:30:32 +0000 (Wed, 28 Jun 2006)
New Revision: 4312

Modified:
   data/CVE/list
Log:
* CVE-2006-3174 (squirrelmail): low XSS, only when register_globals is on


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-06-28 01:08:24 UTC (rev 4311)
+++ data/CVE/list	2006-06-28 01:30:32 UTC (rev 4312)
@@ -107,7 +107,7 @@
 CVE-2006-3175 (Multiple PHP remote file inclusion vulnerabilities in mcGuestbook 1.3 ...)
 	NOT-FOR-US: mcGuestbook
 CVE-2006-3174 (Cross-site scripting (XSS) vulnerability in search.php in SquirrelMail ...)
-	TODO: check
+	- squirrelmail <unfixed> (bug filed; low)
 CVE-2006-3173 (Multiple PHP remote file inclusion vulnerabilities in Content*Builder ...)
 	TODO: check
 CVE-2006-3172 (Multiple PHP remote file inclusion vulnerabilities in Content*Builder ...)




More information about the Secure-testing-commits mailing list