[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2011-4074
Cross-site scripting (XSS) vulnerability in cmd.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via an _debug command.

CVE-2011-4075
The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orderby parameter (aka sortby variable) in a query_engine action to cmd.php, as exploited in the wild in October 2011.

*OVAL
oval:org.secpod.oval:def:600665
CPE    11
cpe:/a:deon_george:phpldapadmin:1.2.1
cpe:/a:deon_george:phpldapadmin
cpe:/a:deon_george:phpldapadmin:1.2.0.1
cpe:/a:deon_george:phpldapadmin:1.2.0.2
...

© SecPod Technologies