[Secure-testing-commits] r11881 - data/CVE

Steffen Joeris white at alioth.debian.org
Tue May 12 11:14:04 UTC 2009


Author: white
Date: 2009-05-12 11:14:04 +0000 (Tue, 12 May 2009)
New Revision: 11881

Modified:
   data/CVE/list
Log:
Filed bugreport for libstruts1.2-java XSS

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-05-11 21:37:34 UTC (rev 11880)
+++ data/CVE/list	2009-05-12 11:14:04 UTC (rev 11881)
@@ -15173,7 +15173,7 @@
 CVE-2008-2026 (Cross-site scripting (XSS) vulnerability in WebID/IISWebAgentIF.dll in ...)
 	NOT-FOR-US:  RSA Authentication Agent
 CVE-2008-2025 (Cross-site scripting (XSS) vulnerability in Apache Struts before ...)
-	- libstruts1.2-java <unfixed>
+	- libstruts1.2-java <unfixed> (low; bug #528352)
 CVE-2008-2024 (Cross-site scripting (XSS) vulnerability in index.php in miniBB 2.2, ...)
 	NOT-FOR-US: miniBB
 CVE-2008-2023 (Multiple SQL injection vulnerabilities in PD9 Software MegaBBS 2.2 ...)




More information about the Secure-testing-commits mailing list