Synopsis
The remote host is missing a vendor-supplied security patch
Description
The remote host is missing the patch for the advisory SUSE-SA:2005:066 (phpMyAdmin).
The MySQL configuration frontend phpMyAdmin was updated to fix the following security problems which can be remotely exploited:
- Multiple cross-site scripting (XSS) bugs (CVE-2005-3301, CVE-2005-2869, PMASA-2005-5).
- Multiple file inclusion vulnerabilities that allowed an attacker to include arbitrary files (CVE-2005-3300, CVE-2005-3301, PMASA-2005-5).
Solution
http://www.suse.de/security/advisories/2005_66_phpmyadmin.html
Plugin Details
File Name: suse_SA_2005_066.nasl
Agent: unix
Supported Sensors: Continuous Assessment, Nessus Agent, Nessus
Vulnerability Information
Required KB Items: Host/SuSE/rpm-list