Логотип exploitDog
product: "phpmyadmin"
Консоль
Логотип exploitDog

exploitDog

product: "phpmyadmin"
phpMyAdmin

phpMyAdminвеб-приложение с открытым кодом, написанное на языке PHP и представляющее собой веб-интерфейс для администрирования СУБД MySQL.

Релизный цикл, информация об уязвимостях

Продукт: phpMyAdmin
Вендор: phpmyadmin

График релизов

4.74.84.95.05.15.220172018201920202021202220232024202520262027

Недавние уязвимости phpMyAdmin

Количество 1 095

ubuntu логотип

CVE-2009-3697

больше 16 лет назад

SQL injection vulnerability in the PDF schema generator functionality in phpMyAdmin 2.11.x before 2.11.9.6 and 3.x before 3.2.2.1 allows remote attackers to execute arbitrary SQL commands via unspecified interface parameters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2009-2284

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted SQL bookmark.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2009-2284

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1 ...

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2009-2284

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted SQL bookmark.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2009-1285

почти 17 лет назад

Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x before 3.1.3.2 allows remote attackers to inject arbitrary PHP code into configuration files.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2009-1285

почти 17 лет назад

Static code injection vulnerability in the getConfigFile function in s ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2009-1285

почти 17 лет назад

Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x before 3.1.3.2 allows remote attackers to inject arbitrary PHP code into configuration files.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2009-1151

почти 17 лет назад

Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remote attackers to inject arbitrary PHP code into a configuration file via the save action.

CVSS3: 9.8
EPSS: Критический
debian логотип

CVE-2009-1151

почти 17 лет назад

Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x ...

CVSS3: 9.8
EPSS: Критический
nvd логотип

CVE-2009-1150

почти 17 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the export page (display_export.lib.php) in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allow remote attackers to inject arbitrary web script or HTML via the pma_db_filename_template cookie.

CVSS2: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2009-3697

SQL injection vulnerability in the PDF schema generator functionality in phpMyAdmin 2.11.x before 2.11.9.6 and 3.x before 3.2.2.1 allows remote attackers to execute arbitrary SQL commands via unspecified interface parameters.

CVSS2: 7.5
3%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-2284

Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted SQL bookmark.

CVSS2: 4.3
1%
Низкий
больше 16 лет назад
debian логотип
CVE-2009-2284

Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1 ...

CVSS2: 4.3
1%
Низкий
больше 16 лет назад
ubuntu логотип
CVE-2009-2284

Cross-site scripting (XSS) vulnerability in phpMyAdmin before 3.2.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted SQL bookmark.

CVSS2: 4.3
1%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-1285

Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x before 3.1.3.2 allows remote attackers to inject arbitrary PHP code into configuration files.

CVSS2: 7.5
1%
Низкий
почти 17 лет назад
debian логотип
CVE-2009-1285

Static code injection vulnerability in the getConfigFile function in s ...

CVSS2: 7.5
1%
Низкий
почти 17 лет назад
ubuntu логотип
CVE-2009-1285

Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x before 3.1.3.2 allows remote attackers to inject arbitrary PHP code into configuration files.

CVSS2: 7.5
1%
Низкий
почти 17 лет назад
nvd логотип
CVE-2009-1151

Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remote attackers to inject arbitrary PHP code into a configuration file via the save action.

CVSS3: 9.8
93%
Критический
почти 17 лет назад
debian логотип
CVE-2009-1151

Static code injection vulnerability in setup.php in phpMyAdmin 2.11.x ...

CVSS3: 9.8
93%
Критический
почти 17 лет назад
nvd логотип
CVE-2009-1150

Multiple cross-site scripting (XSS) vulnerabilities in the export page (display_export.lib.php) in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allow remote attackers to inject arbitrary web script or HTML via the pma_db_filename_template cookie.

CVSS2: 4.3
1%
Низкий
почти 17 лет назад

Уязвимостей на страницу


Поделиться