Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <Pine.GSO.4.64.1003301739030.4709@faron.mitre.org>
Date: Tue, 30 Mar 2010 17:41:39 -0400 (EDT)
From: "Steven M. Christey" <coley@...us.mitre.org>
To: oss-security@...ts.openwall.com
cc: cert@...t.org, soc@...cert.gov
Subject: Re: phpmyvisites 2.3


On Wed, 10 Mar 2010, Henri Salo wrote:

> There is a security vulnerability in phpMyVisites 2.3. Is there a CVE
> assigned for that issue?
>
> http://www.phpmyvisites.us/phpmv2/CHANGELOG

Use CVE-2009-4763

Notes:

1) SourceForge has recently made it difficult/impossible to obtain 
changelogs for new releases, so I can't find any information on the 
December release of ClickHeat to get more details.

2) Consequently, it could be that phpMyVisites is fixing an old ClickHeat
    problem (CVE-2008-5793) but neither is it clear if that ClickHeat is
    even the same product.


- Steve

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.