From the security advisory PMASA-2005-9 (http://www.phpmyadmin.net/home_page/security.php?issue=PMASA-2005-9): Announcement-ID: PMASA-2005-9 Date: 2005-12-07 Summary: Cross-Site Scripting, local and remote code execution vulnerabilities Description: Two days after the release of version 2.7.0, we received a security advisory from Stefan Esser (sesser@hardened-php.net) and we wish to thank him for his work. It is possible to overwrite the global import_blacklist variable to open phpMyAdmin 2.7.0 to those vulnerabilities. Severity: We consider these vulnerabilities to be serious. Affected versions: Only the unpatched 2.7.0 version. Solution: Upgrade to phpMyAdmin 2.7.0-pl1 or newer. References: http://www.hardened-php.net/advisory_252005.110.html For further information and in case of questions, please contact the phpMyAdmin team. Our website is http://www.phpmyadmin.net/.
Responsible Changed From-To: freebsd-ports-bugs->mnag I'll take it.
State Changed From-To: open->closed Committed. Thanks!