Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2505

Опубликовано: 14 июл. 2011
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 6.4

Описание

libraries/auth/swekey/swekey.auth.lib.php in the Swekey authentication feature in phpMyAdmin 3.x before 3.3.10.2 and 3.4.x before 3.4.3.1 assigns values to arbitrary parameters referenced in the query string, which allows remote attackers to modify the SESSION superglobal array via a crafted request, related to a "remote variable manipulation vulnerability."

РелизСтатусПримечание
devel

released

4:3.4.3.1-1
hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

released

4:3.4.3.1-1
precise

released

4:3.4.3.1-1
quantal

released

4:3.4.3.1-1
raring

released

4:3.4.3.1-1
saucy

released

4:3.4.3.1-1

Показывать по

Ссылки на источники

EPSS

Процентиль: 96%
0.2458
Средний

6.4 Medium

CVSS2

Связанные уязвимости

nvd
почти 14 лет назад

libraries/auth/swekey/swekey.auth.lib.php in the Swekey authentication feature in phpMyAdmin 3.x before 3.3.10.2 and 3.4.x before 3.4.3.1 assigns values to arbitrary parameters referenced in the query string, which allows remote attackers to modify the SESSION superglobal array via a crafted request, related to a "remote variable manipulation vulnerability."

debian
почти 14 лет назад

libraries/auth/swekey/swekey.auth.lib.php in the Swekey authentication ...

github
около 3 лет назад

phpMyAdmin remote variable manipulation

EPSS

Процентиль: 96%
0.2458
Средний

6.4 Medium

CVSS2