PublicDate: 2007-10-30 21:46:00 UTC Candidate: CVE-2007-5728 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5728 Description: Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inject arbitrary web script or HTML via certain input available in PHP_SELF in (1) redirect.php, possibly related to (2) login.php, different vectors than CVE-2007-2865. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: dapper_phppgadmin: ignored (reached end-of-life) edgy_phppgadmin: needed (reached end-of-life) feisty_phppgadmin: needed (reached end-of-life) gutsy_phppgadmin: needed (reached end-of-life) hardy_phppgadmin: released (4.1.3-0.1) intrepid_phppgadmin: released (4.1.3-0.1) jaunty_phppgadmin: released (4.1.3-0.1) karmic_phppgadmin: released (4.1.3-0.1) devel_phppgadmin: released (4.1.3-0.1) upstream_phppgadmin: released (4.1.3)