Логотип exploitDog
product: "phpmyadmin"
Консоль
Логотип exploitDog

exploitDog

product: "phpmyadmin"
phpMyAdmin

phpMyAdminвеб-приложение с открытым кодом, написанное на языке PHP и представляющее собой веб-интерфейс для администрирования СУБД MySQL.

Релизный цикл, информация об уязвимостях

Продукт: phpMyAdmin
Вендор: phpmyadmin

График релизов

4.74.84.95.05.15.220172018201920202021202220232024202520262027

Недавние уязвимости phpMyAdmin

Количество 1 095

github логотип

GHSA-6442-8w69-mgwm

почти 4 года назад

The configuration setup script (aka scripts/setup.php) in phpMyAdmin 2.11.x before 2.11.10.1 does not properly restrict key names in its output file, which allows remote attackers to execute arbitrary PHP code via a crafted POST request.

EPSS: Низкий
github логотип

GHSA-vqv2-j98p-2cvh

почти 4 года назад

phpmyadmin.css.php in phpMyAdmin 3.4.x before 3.4.6 allows remote attackers to obtain sensitive information via an array-typed js_frame parameter to phpmyadmin.css.php, which reveals the installation path in an error message.

EPSS: Низкий
github логотип

GHSA-52wv-2qwp-5w9x

почти 4 года назад

Cross-site scripting (XSS) vulnerability in the setup interface in phpMyAdmin 3.4.x before 3.4.6 allows remote attackers to inject arbitrary web script or HTML via a crafted value.

EPSS: Низкий
github логотип

GHSA-v6fw-xf2c-8q43

почти 4 года назад

phpMyAdmin Open Redirect in redirector

EPSS: Низкий
github логотип

GHSA-q7v2-w38r-pv7v

почти 4 года назад

phpMyAdmin Multiple XSS Vulnerabilities

EPSS: Низкий
github логотип

GHSA-8vv2-p6c9-46c2

почти 4 года назад

show_config_errors.php in phpMyAdmin 3.5.x before 3.5.2.1 allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message, related to lack of inclusion of the common.inc.php library file.

EPSS: Низкий
github логотип

GHSA-4q58-5x28-53wv

почти 4 года назад

phpMyAdmin Vulnerable to Cross-Site Scripting

EPSS: Низкий
github логотип

GHSA-q64c-8ph3-645m

почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in the Tracking feature in phpMyAdmin 3.3.x before 3.3.10.4 and 3.4.x before 3.4.4 allow remote attackers to inject arbitrary web script or HTML via a (1) table name, (2) column name, or (3) index name.

EPSS: Низкий
github логотип

GHSA-9j9h-cpgc-8356

почти 4 года назад

phpMyAdmin vulnerable to Cross-site Scripting

EPSS: Низкий
github логотип

GHSA-c5vr-rrqf-4hf2

почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in libraries/display_export.lib.php in phpMyAdmin 3.4.x before 3.4.9 allow remote attackers to inject arbitrary web script or HTML via crafted URL parameters, related to the export panels in the (1) server, (2) database, and (3) table sections.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-6442-8w69-mgwm

The configuration setup script (aka scripts/setup.php) in phpMyAdmin 2.11.x before 2.11.10.1 does not properly restrict key names in its output file, which allows remote attackers to execute arbitrary PHP code via a crafted POST request.

2%
Низкий
почти 4 года назад
github логотип
GHSA-vqv2-j98p-2cvh

phpmyadmin.css.php in phpMyAdmin 3.4.x before 3.4.6 allows remote attackers to obtain sensitive information via an array-typed js_frame parameter to phpmyadmin.css.php, which reveals the installation path in an error message.

1%
Низкий
почти 4 года назад
github логотип
GHSA-52wv-2qwp-5w9x

Cross-site scripting (XSS) vulnerability in the setup interface in phpMyAdmin 3.4.x before 3.4.6 allows remote attackers to inject arbitrary web script or HTML via a crafted value.

1%
Низкий
почти 4 года назад
github логотип
GHSA-v6fw-xf2c-8q43

phpMyAdmin Open Redirect in redirector

0%
Низкий
почти 4 года назад
github логотип
GHSA-q7v2-w38r-pv7v

phpMyAdmin Multiple XSS Vulnerabilities

0%
Низкий
почти 4 года назад
github логотип
GHSA-8vv2-p6c9-46c2

show_config_errors.php in phpMyAdmin 3.5.x before 3.5.2.1 allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message, related to lack of inclusion of the common.inc.php library file.

0%
Низкий
почти 4 года назад
github логотип
GHSA-4q58-5x28-53wv

phpMyAdmin Vulnerable to Cross-Site Scripting

0%
Низкий
почти 4 года назад
github логотип
GHSA-q64c-8ph3-645m

Multiple cross-site scripting (XSS) vulnerabilities in the Tracking feature in phpMyAdmin 3.3.x before 3.3.10.4 and 3.4.x before 3.4.4 allow remote attackers to inject arbitrary web script or HTML via a (1) table name, (2) column name, or (3) index name.

1%
Низкий
почти 4 года назад
github логотип
GHSA-9j9h-cpgc-8356

phpMyAdmin vulnerable to Cross-site Scripting

0%
Низкий
почти 4 года назад
github логотип
GHSA-c5vr-rrqf-4hf2

Multiple cross-site scripting (XSS) vulnerabilities in libraries/display_export.lib.php in phpMyAdmin 3.4.x before 3.4.9 allow remote attackers to inject arbitrary web script or HTML via crafted URL parameters, related to the export panels in the (1) server, (2) database, and (3) table sections.

0%
Низкий
почти 4 года назад

Уязвимостей на страницу


Поделиться