Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-6629

Опубликовано: 11 дек. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 10
CVSS3: 9.8

Описание

An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker could reuse certain cookie values in a way of bypassing the servers defined by ArbitraryServerRegexp. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

РелизСтатусПримечание
artful

not-affected

4:4.6.4+dfsg1-1
bionic

not-affected

4:4.6.4+dfsg1-1
cosmic

not-affected

4:4.6.4+dfsg1-1
devel

not-affected

4:4.6.4+dfsg1-1
disco

not-affected

4:4.6.4+dfsg1-1
eoan

DNE

esm-apps/bionic

not-affected

4:4.6.4+dfsg1-1
esm-apps/focal

not-affected

4:4.6.4+dfsg1-1
esm-apps/jammy

not-affected

4:4.6.4+dfsg1-1
esm-apps/noble

not-affected

4:4.6.4+dfsg1-1

Показывать по

EPSS

Процентиль: 62%
0.00435
Низкий

10 Critical

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
больше 8 лет назад

An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker could reuse certain cookie values in a way of bypassing the servers defined by ArbitraryServerRegexp. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

CVSS3: 9.8
debian
больше 8 лет назад

An issue was discovered in phpMyAdmin involving the $cfg['ArbitrarySer ...

CVSS3: 9.8
github
около 3 лет назад

phpMyAdmin Authentication Bypass

suse-cvrf
почти 9 лет назад

Security update for phpMyAdmin

EPSS

Процентиль: 62%
0.00435
Низкий

10 Critical

CVSS2

9.8 Critical

CVSS3