Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v6fh-vg22-r6cm

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью

Описание

phpMyAdmin ReCaptcha bypass

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

Пакеты

Наименование

phpmyadmin/phpmyadmin

composer
Затронутые версииВерсия исправления

>= 4.3.0, < 4.3.13.2

4.3.13.2

Наименование

phpmyadmin/phpmyadmin

composer
Затронутые версииВерсия исправления

>= 4.4.0, < 4.4.14.1

4.4.14.1

EPSS

Процентиль: 67%
0.00544
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
почти 10 лет назад

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

nvd
почти 10 лет назад

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

debian
почти 10 лет назад

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4. ...

EPSS

Процентиль: 67%
0.00544
Низкий

Дефекты

CWE-200