_______________________________________________________________________
Package : phpmyadmin
Date : August 5, 2009
Affected: Enterprise Server 5.0
_______________________________________________________________________
Problem Description:
A vulnerability has been identified and corrected in phpMyAdmin:
Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1
allows remote attackers to inject arbitrary web script or HTML via
a crafted SQL bookmark (CVE-2009-2284).
This update provides phpmyadmin 3.2.0.1, which is not vulnerable to
this issue.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2009-2284
http://www.phpmyadmin.net/home_page/sec ... 2009-5.php
_______________________________________________________________________