Логотип exploitDog
product: "phpmyadmin"
Консоль
Логотип exploitDog

exploitDog

product: "phpmyadmin"
phpMyAdmin

phpMyAdminвеб-приложение с открытым кодом, написанное на языке PHP и представляющее собой веб-интерфейс для администрирования СУБД MySQL.

Релизный цикл, информация об уязвимостях

Продукт: phpMyAdmin
Вендор: phpmyadmin

График релизов

4.74.84.95.05.15.220172018201920202021202220232024202520262027

Недавние уязвимости phpMyAdmin

Количество 1 095

debian логотип

CVE-2016-9865

больше 9 лет назад

An issue was discovered in phpMyAdmin. Due to a bug in serialized stri ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2016-9864

больше 9 лет назад

An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements in the tracking functionality that would run with the privileges of the control user. This gives read and write access to the tables of the configuration storage database, and if the control user has the necessary privileges, read access to some tables of the MySQL database. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-9864

больше 9 лет назад

An issue was discovered in phpMyAdmin. With a crafted username or a ta ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-9863

больше 9 лет назад

An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invoke a Denial of Service (DoS) attack. All 4.6.x versions (prior to 4.6.5) are affected.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-9863

больше 9 лет назад

An issue was discovered in phpMyAdmin. With a very large request to ta ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-9862

больше 9 лет назад

An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. All 4.6.x versions (prior to 4.6.5) are affected.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-9862

больше 9 лет назад

An issue was discovered in phpMyAdmin. With a crafted login request it ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-9861

больше 9 лет назад

An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-list protection. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-9861

больше 9 лет назад

An issue was discovered in phpMyAdmin. Due to the limitation in URL ma ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-9860

больше 9 лет назад

An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is running with $cfg['AllowArbitraryServer']=true. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2016-9865

An issue was discovered in phpMyAdmin. Due to a bug in serialized stri ...

CVSS3: 9.8
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9864

An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements in the tracking functionality that would run with the privileges of the control user. This gives read and write access to the tables of the configuration storage database, and if the control user has the necessary privileges, read access to some tables of the MySQL database. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 7.5
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-9864

An issue was discovered in phpMyAdmin. With a crafted username or a ta ...

CVSS3: 7.5
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9863

An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invoke a Denial of Service (DoS) attack. All 4.6.x versions (prior to 4.6.5) are affected.

CVSS3: 7.5
1%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-9863

An issue was discovered in phpMyAdmin. With a very large request to ta ...

CVSS3: 7.5
1%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9862

An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. All 4.6.x versions (prior to 4.6.5) are affected.

CVSS3: 7.5
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-9862

An issue was discovered in phpMyAdmin. With a crafted login request it ...

CVSS3: 7.5
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9861

An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-list protection. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 7.5
0%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-9861

An issue was discovered in phpMyAdmin. Due to the limitation in URL ma ...

CVSS3: 7.5
0%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-9860

An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is running with $cfg['AllowArbitraryServer']=true. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 5.9
1%
Низкий
больше 9 лет назад

Уязвимостей на страницу


Поделиться