Security updates

SA-2008-047 - Drupal core - Multiple vulnerabilities

Drupal security feed - Wed, 08/13/2008 - 18:27
  • Advisory ID: DRUPAL-SA-2008-047
  • Project: Drupal core
  • Version: 5.x, 6.x
  • Date: 2008-August-13
  • Security risk: Highly critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

read more

phpPgAdmin: 4.2.1 released

phppgadmin - Mon, 08/11/2008 - 15:09
phpPgAdmin is a fully functional web-based administration utility for a PostgreSQL database server. It handles all the basic functionality as well as some advanced features such as triggers, views and functions (stored procs)


A new point release of phpPgAdmin is now available that includes bugfixes for problems reported since the release of 4.2; all users of phpPgAdmin are encouraged to upgrade. (0 comments)
Categories: Security updates

phpMyAdmin 3.0.0-alpha is released

phpMyAdmin - Sun, 08/10/2008 - 06:20
Welcome to the alpha release of phpMyAdmin 3.0.0. This version supports various features of MySQL 5.1,
the Maria and PBXT storage engines and SweKey hardware authentication.
The 3.0 series requires PHP 5.2+ and MySQL 5.0+. (0 comments)
Categories: Security updates

phpMyAdmin: 2.11.8.1 is released

phpMyAdmin - Mon, 07/28/2008 - 15:35
phpMyAdmin is a tool written in PHP intended to handle the administration of MySQL over the Web. Currently it can create and drop databases, create/drop/alter tables, delete/edit/add fields, execute any SQL statement, manage keys on fields. (0 comments)
Categories: Security updates

phpMyAdmin 2.11.8 is released

phpMyAdmin - Mon, 07/28/2008 - 11:55
Welcome to phpMyAdmin 2.11.8, a bugfix-only release with security fixes. A security advisory will follow on phpmyadmin.net. (0 comments)
Categories: Security updates

phpMyAdmin 2.11.8-rc1 is released

phpMyAdmin - Thu, 07/24/2008 - 13:17
This is the first release candidate for 2.11.8, which contains normal bug fixes and two security fixes. (0 comments)
Categories: Security updates

SA-2008-046 - Drupal core - Session fixation

Drupal security feed - Wed, 07/23/2008 - 14:58
  • Advisory ID: DRUPAL-SA-2008-046
  • Project: Drupal core
  • Version: 5.x
  • Date: 2008-July-23
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Session fixation

read more

phpMyAdmin 2.11.7.1 is released

phpMyAdmin - Tue, 07/15/2008 - 12:40
This is a security fix for phpMyAdmin 2.11.7. An advisory will follow on phpmyadmin.net. (0 comments)
Categories: Security updates

SA-2008-045 - OpenID - Multiple vulnerabilities

Drupal security feed - Wed, 07/09/2008 - 17:08
  • Advisory ID: DRUPAL-SA-2008-045
  • Project: OpenID (third-party module)
  • Version: 5.x
  • Date: 2008-July-9
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting, Cross site request forgeries

read more

SA-2008-044 - Drupal core - Multiple vulnerabilities

Drupal security feed - Wed, 07/09/2008 - 16:24
  • Advisory ID: DRUPAL-SA-2008-044
  • Project: Drupal core
  • Version: 5x, 6.x
  • Date: 2008-July-9
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

read more

SA-2008-043 - Outline designer - Privilege escalation

Drupal security feed - Wed, 07/02/2008 - 15:56
  • Advisory ID: DRUPAL-SA-2008-043
  • Project: Outline designer (third-party module)
  • Version: 5.x
  • Date: 2008-July-2
  • Security risk: Highly critical
  • Exploitable from: Remote
  • Vulnerability: Privilege escalation

read more

SA-2008-042 - Tinytax - Cross site scripting

Drupal security feed - Wed, 07/02/2008 - 15:51
  • Advisory ID: DRUPAL-SA-2008-042
  • Project: Tinytax taxonomy block (third-party module)
  • Version: 5.x
  • Date: 2008-July-2
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

SA-2008-041 - Taxonomy autotagger - Multiple vulnerabilities

Drupal security feed - Wed, 07/02/2008 - 15:48
  • Advisory ID: DRUPAL-SA-2008-041
  • Project: Taxonomy autotagger (third-party module)
  • Version: 5.x
  • Date: 2008-July-2
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting and SQL injection

read more

SA-2008-040 - Organic Groups - Cross site scripting and information disclosure

Drupal security feed - Wed, 07/02/2008 - 15:42
  • Advisory ID: DRUPAL-SA-2008-040
  • Project: Organic Groups (third-party module)
  • Versions: 5.x and 6.x
  • Date: 2008-July-02
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting and information disclosure

read more

phpMyAdmin Finalist in 3 Categories

phpMyAdmin - Tue, 07/01/2008 - 07:16
Dear phpMyAdmin community,

It is an honor to see phpMyAdmin finalist in three categories: (0 comments)
Categories: Security updates

SA-2008-039 - Suggested terms - Cross site scripting

Drupal security feed - Wed, 06/25/2008 - 13:53
  • Advisory ID: SA-2008-039
  • Project: Suggested terms (third-party module)
  • Versions: 5.x
  • Date: 2008-June-25
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting

read more

phpMyAdmin 2.11.7 is released

phpMyAdmin - Mon, 06/23/2008 - 12:09
Welcome to phpMyAdmin 2.11.7, a bugfix-only release containing a security fix. (0 comments)
Categories: Security updates

phpMyAdmin 2.11.7-rc2 is released

phpMyAdmin - Fri, 06/20/2008 - 13:19
Welcome to the second release candidate for phpMyAdmin 2.11.7, a bugfix-only release. This rc contains a security fix; (0 comments)
Categories: Security updates

SA-2008-038 - Services - Arbitrary code execution

Drupal security feed - Wed, 06/18/2008 - 16:50
  • Advisory ID: DRUPAL-SA-2008-038
  • Project: Services (third-party module)
  • Versions: 5.x and 6.x
  • Date: 2008-June-18
  • Security risk: Highly critical
  • Exploitable from: Remote
  • Vulnerability: Arbitrary code execution

read more

SA-2008-037 - TrailScout - XSS and SQL injection

Drupal security feed - Wed, 06/18/2008 - 16:07
  • Advisory ID: DRUPAL-SA-2008-037
  • Project: TrailScout (third-party module)
  • Version: 5.x
  • Date: 2008-June-18
  • Security risk: Higly critical
  • Exploitable from: Remote
  • Vulnerability: Cross site scripting and SQL injection

read more

Syndicate content