Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-1000499

Опубликовано: 03 янв. 2018
Источник: nvd
CVSS3: 8.8
CVSS2: 6.8
EPSS Средний

Описание

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpmyadmin:phpmyadmin:*:*:*:*:*:*:*:*
Версия от 4.7.0 (включая) до 4.7.7 (исключая)

EPSS

Процентиль: 93%
0.11439
Средний

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 8 лет назад

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.

CVSS3: 8.8
debian
около 8 лет назад

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a ...

CVSS3: 8.8
github
больше 3 лет назад

phpMyAdmin CSRF Vulnerability

EPSS

Процентиль: 93%
0.11439
Средний

8.8 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-352