Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-5977

Опубликовано: 15 нояб. 2007
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 3.5

Описание

Cross-site scripting (XSS) vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to inject arbitrary web script or HTML via a hex-encoded IMG element in the db parameter in a POST request, a different vulnerability than CVE-2006-6942.

РелизСтатусПримечание
dapper

not-affected

devel

not-affected

edgy

not-affected

feisty

not-affected

gutsy

released

4:2.10.3-1ubuntu0.1
upstream

released

Показывать по

Ссылки на источники

EPSS

Процентиль: 64%
0.00477
Низкий

3.5 Low

CVSS2

Связанные уязвимости

nvd
больше 17 лет назад

Cross-site scripting (XSS) vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to inject arbitrary web script or HTML via a hex-encoded IMG element in the db parameter in a POST request, a different vulnerability than CVE-2006-6942.

debian
больше 17 лет назад

Cross-site scripting (XSS) vulnerability in db_create.php in phpMyAdmi ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to inject arbitrary web script or HTML via a hex-encoded IMG element in the db parameter in a POST request, a different vulnerability than CVE-2006-6942.

EPSS

Процентиль: 64%
0.00477
Низкий

3.5 Low

CVSS2