Описание
error.php in PhpMyAdmin 3.3.8.1, and other versions before 3.4.0-beta1, allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted BBcode tag containing "@" characters, as demonstrated using "[a@url@page]".
Релиз | Статус | Примечание |
---|---|---|
dapper | ignored | end of life |
devel | not-affected | |
hardy | ignored | end of life |
karmic | ignored | end of life |
lucid | released | 4:3.3.2-1ubuntu1 |
maverick | released | 4:3.3.7-3build0.10.10.1 |
natty | not-affected | 4:3.3.10-1 |
oneiric | not-affected | |
upstream | released | 4:3.3.7-3, 4:3.3.9-1 |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
error.php in PhpMyAdmin 3.3.8.1, and other versions before 3.4.0-beta1, allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted BBcode tag containing "@" characters, as demonstrated using "[a@url@page]".
error.php in PhpMyAdmin 3.3.8.1, and other versions before 3.4.0-beta1 ...
error.php in PhpMyAdmin 3.3.8.1, and other versions before 3.4.0-beta1, allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted BBcode tag containing "@" characters, as demonstrated using "[a@url@page]".
EPSS
4.3 Medium
CVSS2