Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-6607

Опубликовано: 11 дек. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.1

Описание

XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trigger an XSS attack); GIS editor (certain fields in the graphical GIS editor are not properly escaped and can be used to trigger an XSS attack); Relation view; the following Transformations: Formatted, Imagelink, JPEG: Upload, RegexValidation, JPEG inline, PNG inline, and transformation wrapper; XML export; MediaWiki export; Designer; When the MySQL server is running with a specially-crafted log_bin directive; Database tab; Replication feature; and Database search. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

РелизСтатусПримечание
artful

not-affected

4:4.6.4+dfsg1-1
bionic

not-affected

4:4.6.4+dfsg1-1
cosmic

not-affected

4:4.6.4+dfsg1-1
devel

not-affected

4:4.6.4+dfsg1-1
disco

not-affected

4:4.6.4+dfsg1-1
eoan

DNE

esm-apps/bionic

not-affected

4:4.6.4+dfsg1-1
esm-apps/focal

not-affected

4:4.6.4+dfsg1-1
esm-apps/jammy

not-affected

4:4.6.4+dfsg1-1
esm-apps/noble

not-affected

4:4.6.4+dfsg1-1

Показывать по

EPSS

Процентиль: 68%
0.00577
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
nvd
больше 8 лет назад

XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trigger an XSS attack); GIS editor (certain fields in the graphical GIS editor are not properly escaped and can be used to trigger an XSS attack); Relation view; the following Transformations: Formatted, Imagelink, JPEG: Upload, RegexValidation, JPEG inline, PNG inline, and transformation wrapper; XML export; MediaWiki export; Designer; When the MySQL server is running with a specially-crafted log_bin directive; Database tab; Replication feature; and Database search. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

CVSS3: 6.1
debian
больше 8 лет назад

XSS issues were discovered in phpMyAdmin. This affects Zoom search (sp ...

CVSS3: 6.1
github
около 3 лет назад

XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trigger an XSS attack); GIS editor (certain fields in the graphical GIS editor are not properly escaped and can be used to trigger an XSS attack); Relation view; the following Transformations: Formatted, Imagelink, JPEG: Upload, RegexValidation, JPEG inline, PNG inline, and transformation wrapper; XML export; MediaWiki export; Designer; When the MySQL server is running with a specially-crafted log_bin directive; Database tab; Replication feature; and Database search. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

suse-cvrf
почти 9 лет назад

Security update for phpMyAdmin

EPSS

Процентиль: 68%
0.00577
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3