Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-1000499

Опубликовано: 03 янв. 2018
Источник: nvd
CVSS3: 8.8
CVSS2: 6.8
EPSS Низкий

Описание

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpmyadmin:phpmyadmin:*:*:*:*:*:*:*:*
Версия от 4.7.0 (включая) до 4.7.7 (исключая)

EPSS

Процентиль: 92%
0.08815
Низкий

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 7 лет назад

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.

CVSS3: 8.8
debian
больше 7 лет назад

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a ...

CVSS3: 8.8
github
около 3 лет назад

phpMyAdmin CSRF Vulnerability

EPSS

Процентиль: 92%
0.08815
Низкий

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-352