CVE-2015-6518

NameCVE-2015-6518
DescriptionMultiple cross-site scripting (XSS) vulnerabilities in phpLiteAdmin 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) droptable parameter, or (3) table parameter to phpliteadmin.php.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
phpliteadmin (PTS)buster1.9.7.1-2+deb10u1fixed
bullseye1.9.8.2-1+deb11u1fixed
sid, trixie, bookworm1.9.8.2-2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
phpliteadminsource(unstable)(not affected)

Notes

- phpliteadmin <not-affected> (Fixed before initial upload)

Search for package or bug name: Reporting problems