On Mon, February 6, 2012 7:59 pm, martin f krafft wrote: > Yes there can be. But PHP-based web administration of Linux systems, > inherently requiring root access, remain a nightmare. The risks are IMHO > huge and a distro like Debian might want to ask itself whether protecting > its users might not be more worth than offering a larger choice. > > Has adminer been audited?
Audited as in where? I spent some time on reading about it and it's website gives a comparison matrix of phpMyAdmin and adminer. There were some issues stated in phpMyAdmin which refer to Clickjacking and referer leakage. It also showed that there were 10 security related bugs in phpMyAdmin and only one in an year. I went through this thread as well. http://old.nabble.com/Compare-phpMyAdmin-with-Adminer-td30778808.html#a30782858 My intention is not to point or show some kind of flame war but to tell that this is all my audit includes. As I am a beginner packager I am learning things now. Thanks for your patience in explaining things to me. Sincerely, -- Medhamsh Hacktivist | http://medhamsh.org P.S: On the whole i understood how important it is before considering to upload a package :-) -- To UNSUBSCRIBE, email to debian-wnpp-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/14566.122.169.166.198.1328541299.squir...@mail.medhamsh.org