Логотип exploitDog
product: "phpmyadmin"
Консоль
Логотип exploitDog

exploitDog

product: "phpmyadmin"
phpMyAdmin

phpMyAdminвеб-приложение с открытым кодом, написанное на языке PHP и представляющее собой веб-интерфейс для администрирования СУБД MySQL.

Релизный цикл, информация об уязвимостях

Продукт: phpMyAdmin
Вендор: phpmyadmin

График релизов

4.74.84.95.05.15.22017201820192020202120222023202420252026

Недавние уязвимости phpMyAdmin

Количество 1 092

nvd логотип

CVE-2015-7873

больше 9 лет назад

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2015-7873

больше 9 лет назад

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2015-7873

больше 9 лет назад

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2015-6830

почти 10 лет назад

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2015-6830

почти 10 лет назад

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4. ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2015-6830

почти 10 лет назад

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2015-3903

около 10 лет назад

libraries/Config.class.php in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x before 4.4.6.1 disables X.509 certificate verification for GitHub API calls over SSL, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2015-3903

около 10 лет назад

libraries/Config.class.php in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x ...

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-3902

около 10 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in the setup process in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x before 4.4.6.1 allow remote attackers to hijack the authentication of administrators for requests that modify the configuration file.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2015-3902

около 10 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in the setu ...

CVSS2: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2015-7873

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.

CVSS2: 5
1%
Низкий
больше 9 лет назад
debian логотип
CVE-2015-7873

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 ...

CVSS2: 5
1%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2015-7873

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.

CVSS2: 5
1%
Низкий
больше 9 лет назад
nvd логотип
CVE-2015-6830

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

CVSS2: 5
1%
Низкий
почти 10 лет назад
debian логотип
CVE-2015-6830

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4. ...

CVSS2: 5
1%
Низкий
почти 10 лет назад
ubuntu логотип
CVE-2015-6830

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

CVSS2: 5
1%
Низкий
почти 10 лет назад
nvd логотип
CVE-2015-3903

libraries/Config.class.php in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x before 4.4.6.1 disables X.509 certificate verification for GitHub API calls over SSL, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS2: 4.3
1%
Низкий
около 10 лет назад
debian логотип
CVE-2015-3903

libraries/Config.class.php in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x ...

CVSS2: 4.3
1%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-3902

Multiple cross-site request forgery (CSRF) vulnerabilities in the setup process in phpMyAdmin 4.0.x before 4.0.10.10, 4.2.x before 4.2.13.3, 4.3.x before 4.3.13.1, and 4.4.x before 4.4.6.1 allow remote attackers to hijack the authentication of administrators for requests that modify the configuration file.

CVSS2: 6.8
0%
Низкий
около 10 лет назад
debian логотип
CVE-2015-3902

Multiple cross-site request forgery (CSRF) vulnerabilities in the setu ...

CVSS2: 6.8
0%
Низкий
около 10 лет назад

Уязвимостей на страницу


Поделиться