Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 61688 - www-apps/phpwebsite XSS and SQL injection issues
Summary: www-apps/phpwebsite XSS and SQL injection issues
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All All
: High normal (vote)
Assignee: Gentoo Security
URL: http://phpwebsite.appstate.edu/index....
Whiteboard: B3 [glsa] jaervosz
Keywords:
: 62628 (view as bug list)
Depends on:
Blocks:
 
Reported: 2004-08-25 13:38 UTC by Sune Kloppenborg Jeppesen (RETIRED)
Modified: 2011-10-30 22:40 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2004-08-25 13:38:01 UTC
Some possible cross site scripting and SQL insertion issues were brought to our attention by James Bercegay of the GulfTech Security Research Team.
Comment 1 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2004-08-25 13:39:48 UTC
[22:04:38] <rizzo> I have security issue to report in www-apps/phpwebsite
[22:04:45] <rizzo> I'm committing new revision with patch now
[22:06:02] <rizzo> committed: www-apps/phpwebsite-0.9.3_p4-r1
[22:06:25] <rizzo> notice is already posted on their website
Comment 2 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2004-08-27 12:14:56 UTC
Security do we need a GLSA for this ~ package?
Comment 3 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2004-08-27 12:25:44 UTC
Note 0.9.3_p2-r1 is stable on alpha all other arches are ~ or not keyworded.
Comment 4 Sune Kloppenborg Jeppesen (RETIRED) gentoo-dev 2004-08-27 12:33:55 UTC
woops closed a bit too soon, but closed anyway:

[21:31:09] <@jaervosz> klieber: stable but unsupported -> no-glsa?
[21:31:15] <@klieber> correct
Comment 5 Thierry Carrez (RETIRED) gentoo-dev 2004-09-02 08:31:51 UTC
*** Bug 62628 has been marked as a duplicate of this bug. ***