Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4q58-5x28-53wv

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью
CVSS4: 1.3

Описание

phpMyAdmin Vulnerable to Cross-Site Scripting

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.3.x before 3.3.10.1 and 3.4.x before 3.4.1 allow remote attackers to inject arbitrary web script or HTML via a crafted table name that triggers improper HTML rendering on a Tracking page, related to (1) libraries/tbl_links.inc.php and (2) tbl_tracking.php.

Пакеты

Наименование

phpmyadmin/phpmyadmin

composer
Затронутые версииВерсия исправления

>= 3.3.0, < 3.3.10.1

3.3.10.1

Наименование

phpmyadmin/phpmyadmin

composer
Затронутые версииВерсия исправления

>= 3.4.0, < 3.4.1

3.4.1

EPSS

Процентиль: 52%
0.00285
Низкий

1.3 Low

CVSS4

Дефекты

CWE-79

Связанные уязвимости

ubuntu
больше 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.3.x before 3.3.10.1 and 3.4.x before 3.4.1 allow remote attackers to inject arbitrary web script or HTML via a crafted table name that triggers improper HTML rendering on a Tracking page, related to (1) libraries/tbl_links.inc.php and (2) tbl_tracking.php.

nvd
больше 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.3.x before 3.3.10.1 and 3.4.x before 3.4.1 allow remote attackers to inject arbitrary web script or HTML via a crafted table name that triggers improper HTML rendering on a Tracking page, related to (1) libraries/tbl_links.inc.php and (2) tbl_tracking.php.

debian
больше 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.3. ...

EPSS

Процентиль: 52%
0.00285
Низкий

1.3 Low

CVSS4

Дефекты

CWE-79