drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Cross-Site Scripting in phpldapadmin
Name: |
Cross-Site Scripting in phpldapadmin |
|
ID: |
FEDORA-2017-05888dd4fe |
|
Distribution: |
Fedora |
|
Plattformen: |
Fedora 26 |
|
Datum: |
Mo, 24. Juli 2017, 23:34 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-11107 |
|
Applikationen: |
phpldapadmin |
|
Originalnachricht |
------------------------------------------------------------------------------- - Fedora Update Notification FEDORA-2017-05888dd4fe 2017-07-24 17:28:25.943122 ------------------------------------------------------------------------------- -
Name : phpldapadmin Product : Fedora 26 Version : 1.2.3 Release : 10.fc26 URL : http://phpldapadmin.sourceforge.net Summary : Web-based tool for managing LDAP servers Description : PhpLDAPadmin is a web-based LDAP client. It provides easy, anywhere-accessible, multi-language administration for your LDAP server. Its hierarchical tree-viewer and advanced search functionality make it intuitive to browse and administer your LDAP directory.
Since it is a web application, this LDAP browser works on many platforms, making your LDAP server easily manageable from any location.
PhpLDAPadmin is the perfect LDAP browser for the LDAP professional and novice alike. Its user base consists mostly of LDAP administration professionals.
Edit /etc/phpldapadmin/config.php to change default (localhost) LDAP server location and other things. Edit /etc/httpd/conf.d/phpldapadmin.conf to allow access by remote web-clients.
------------------------------------------------------------------------------- - Update Information:
Fix CVE-2017-11107 (#1471112) ------------------------------------------------------------------------------- - References:
[ 1 ] Bug #1471112 - CVE-2017-11107 phpldapadmin: XSS in htdocs/entry_chooser.php via form, element, rdn, or container parameter https://bugzilla.redhat.com/show_bug.cgi?id=1471112 ------------------------------------------------------------------------------- -
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade phpldapadmin' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label
All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys ------------------------------------------------------------------------------- - _______________________________________________ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
|
|
|
|