Описание
phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained through an HTTP session to phpmyadmin.net without SSL, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by modifying this code.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 4:3.5.8.1-1 |
| esm-apps-legacy/xenial | not-affected | 4:3.5.8.1-1 |
| esm-apps/xenial | not-affected | 4:3.5.8.1-1 |
| esm-infra-legacy/trusty | not-affected | 4:3.5.8.1-1 |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needs-triage |
Показывать по
10
Ссылки на источники
4.3 Medium
CVSS2
Связанные уязвимости
nvd
почти 14 лет назад
phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained through an HTTP session to phpmyadmin.net without SSL, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by modifying this code.
debian
почти 14 лет назад
phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained th ...
4.3 Medium
CVSS2