Bug#318284: CAN-2005-2256 directory traveral vulnerability

2005-07-15 Thread Isaac Clerencia
On Thursday, 14 July 2005 16:15, Joey Hess wrote: Package: phppgadmin Severity: serious Tags: security Encoded directory traversal vulnerability in phpPgAdmin 3.1 to 3.5.3 allows remote attackers to access arbitrary files via %2e%2e%2f (encoded dot dot) sequences in the formLanguage

Bug#318284: CAN-2005-2256 directory traveral vulnerability

2005-07-14 Thread Joey Hess
Package: phppgadmin Severity: serious Tags: security Encoded directory traversal vulnerability in phpPgAdmin 3.1 to 3.5.3 allows remote attackers to access arbitrary files via %2e%2e%2f (encoded dot dot) sequences in the formLanguage parameter. --