Логотип exploitDog
product: "phpmyadmin"
Консоль
Логотип exploitDog

exploitDog

product: "phpmyadmin"
phpMyAdmin

phpMyAdminвеб-приложение с открытым кодом, написанное на языке PHP и представляющее собой веб-интерфейс для администрирования СУБД MySQL.

Релизный цикл, информация об уязвимостях

Продукт: phpMyAdmin
Вендор: phpmyadmin

График релизов

4.74.84.95.05.15.220172018201920202021202220232024202520262027

Недавние уязвимости phpMyAdmin

Количество 1 095

nvd логотип

CVE-2016-9853

около 9 лет назад

An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is possible to trigger phpMyAdmin to display a PHP error message which contains the full path of the directory where phpMyAdmin is installed. During an execution timeout in the export functionality, the errors containing the full path of the directory of phpMyAdmin are written to the export file. All 4.6.x versions (prior to 4.6.5), and 4.4.x versions (prior to 4.4.15.9) are affected. This CVE is for the fopen wrapper issue.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-9853

около 9 лет назад

An issue was discovered in phpMyAdmin. By calling some scripts that ar ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-9852

около 9 лет назад

An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is possible to trigger phpMyAdmin to display a PHP error message which contains the full path of the directory where phpMyAdmin is installed. During an execution timeout in the export functionality, the errors containing the full path of the directory of phpMyAdmin are written to the export file. All 4.6.x versions (prior to 4.6.5), and 4.4.x versions (prior to 4.4.15.9) are affected. This CVE is for the curl wrapper issue.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-9852

около 9 лет назад

An issue was discovered in phpMyAdmin. By calling some scripts that ar ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-9851

около 9 лет назад

An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to bypass the logout timeout. All 4.6.x versions (prior to 4.6.5), and 4.4.x versions (prior to 4.4.15.9) are affected.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-9851

около 9 лет назад

An issue was discovered in phpMyAdmin. With a crafted request paramete ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-9850

около 9 лет назад

An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detection of the username in the rule due to non-constant execution time. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-9850

около 9 лет назад

An issue was discovered in phpMyAdmin. Username matching for the allow ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-9849

около 9 лет назад

An issue was discovered in phpMyAdmin. It is possible to bypass AllowRoot restriction ($cfg['Servers'][$i]['AllowRoot']) and deny rules for username by using Null Byte in the username. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2016-9849

около 9 лет назад

An issue was discovered in phpMyAdmin. It is possible to bypass AllowR ...

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2016-9853

An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is possible to trigger phpMyAdmin to display a PHP error message which contains the full path of the directory where phpMyAdmin is installed. During an execution timeout in the export functionality, the errors containing the full path of the directory of phpMyAdmin are written to the export file. All 4.6.x versions (prior to 4.6.5), and 4.4.x versions (prior to 4.4.15.9) are affected. This CVE is for the fopen wrapper issue.

CVSS3: 5.3
1%
Низкий
около 9 лет назад
debian логотип
CVE-2016-9853

An issue was discovered in phpMyAdmin. By calling some scripts that ar ...

CVSS3: 5.3
1%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-9852

An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is possible to trigger phpMyAdmin to display a PHP error message which contains the full path of the directory where phpMyAdmin is installed. During an execution timeout in the export functionality, the errors containing the full path of the directory of phpMyAdmin are written to the export file. All 4.6.x versions (prior to 4.6.5), and 4.4.x versions (prior to 4.4.15.9) are affected. This CVE is for the curl wrapper issue.

CVSS3: 5.3
1%
Низкий
около 9 лет назад
debian логотип
CVE-2016-9852

An issue was discovered in phpMyAdmin. By calling some scripts that ar ...

CVSS3: 5.3
1%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-9851

An issue was discovered in phpMyAdmin. With a crafted request parameter value it is possible to bypass the logout timeout. All 4.6.x versions (prior to 4.6.5), and 4.4.x versions (prior to 4.4.15.9) are affected.

CVSS3: 5.3
0%
Низкий
около 9 лет назад
debian логотип
CVE-2016-9851

An issue was discovered in phpMyAdmin. With a crafted request paramete ...

CVSS3: 5.3
0%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-9850

An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detection of the username in the rule due to non-constant execution time. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 5.3
1%
Низкий
около 9 лет назад
debian логотип
CVE-2016-9850

An issue was discovered in phpMyAdmin. Username matching for the allow ...

CVSS3: 5.3
1%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-9849

An issue was discovered in phpMyAdmin. It is possible to bypass AllowRoot restriction ($cfg['Servers'][$i]['AllowRoot']) and deny rules for username by using Null Byte in the username. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.

CVSS3: 9.8
0%
Низкий
около 9 лет назад
debian логотип
CVE-2016-9849

An issue was discovered in phpMyAdmin. It is possible to bypass AllowR ...

CVSS3: 9.8
0%
Низкий
около 9 лет назад

Уязвимостей на страницу


Поделиться