From d41ecc95bbd34e9a3039108325fd8a38ad210986 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Wed, 8 Jan 2020 22:57:43 +0100 Subject: Revert "Update old CVEs for phpmyadmin" The vulnerablities are not just not affected because they are not present in any supported suites. The fixing version needs either to be pin-pointed or the entries otherwise keept as they are now. This reverts commit 7b2a44081ee909fbc5d69a7aa8257a7ab1b5de27. --- data/CVE/2006.list | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'data/CVE/2006.list') diff --git a/data/CVE/2006.list b/data/CVE/2006.list index ca4a78088e..fc416f094f 100644 --- a/data/CVE/2006.list +++ b/data/CVE/2006.list @@ -2011,7 +2011,7 @@ CVE-2006-6374 (Multiple CRLF injection vulnerabilities in PhpMyAdmin 2.7.0-pl2 a [etch] - phpmyadmin (not exploitable with Etch's php versions) NOTE: not exploitable with PHP 5.1.2+ and 4.4.2+ CVE-2006-6373 (PhpMyAdmin 2.7.0-pl2 allows remote attackers to obtain sensitive infor ...) - - phpmyadmin (vulnerable code is not present) + - phpmyadmin (unimportant) NOTE: path is known in Debian anyway CVE-2006-6372 (Multiple cross-site scripting (XSS) vulnerabilities in pbguestbook.php ...) NOT-FOR-US: JAB Guest Book -- cgit v1.2.3