Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 1 095

Количество 1 095

debian логотип

CVE-2005-0992

около 21 года назад

Cross-site scripting (XSS) vulnerability in index.php in phpMyAdmin be ...

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2005-0653

около 21 года назад

phpMyAdmin 2.6.1 does not properly grant permissions on tables with an underscore in the name, which grants remote authenticated users more privileges than intended.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2005-0653

около 21 года назад

phpMyAdmin 2.6.1 does not properly grant permissions on tables with an underscore in the name, which grants remote authenticated users more privileges than intended.

CVSS2: 4.6
EPSS: Низкий
debian логотип

CVE-2005-0653

около 21 года назад

phpMyAdmin 2.6.1 does not properly grant permissions on tables with an ...

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2005-0567

около 21 года назад

Multiple PHP remote file inclusion vulnerabilities in phpMyAdmin 2.6.1 allow remote attackers to execute arbitrary PHP code by modifying the (1) theme parameter to phpmyadmin.css.php or (2) cfg[Server][extension] parameter to database_interface.lib.php to reference a URL on a remote web server that contains the code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2005-0567

около 21 года назад

Multiple PHP remote file inclusion vulnerabilities in phpMyAdmin 2.6.1 allow remote attackers to execute arbitrary PHP code by modifying the (1) theme parameter to phpmyadmin.css.php or (2) cfg[Server][extension] parameter to database_interface.lib.php to reference a URL on a remote web server that contains the code.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-0567

около 21 года назад

Multiple PHP remote file inclusion vulnerabilities in phpMyAdmin 2.6.1 ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-0544

около 21 года назад

phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of the server via direct requests to (1) sqlvalidator.lib.php, (2) sqlparser.lib.php, (3) select_theme.lib.php, (4) select_lang.lib.php, (5) relation_cleanup.lib.php, (6) header_meta_style.inc.php, (7) get_foreign.lib.php, (8) display_tbl_links.lib.php, (9) display_export.lib.php, (10) db_table_exists.lib.php, (11) charset_conversion.lib.php, (12) ufpdf.php, (13) mysqli.dbi.lib.php, (14) setup.php, or (15) cookie.auth.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-0544

около 21 года назад

phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of the server via direct requests to (1) sqlvalidator.lib.php, (2) sqlparser.lib.php, (3) select_theme.lib.php, (4) select_lang.lib.php, (5) relation_cleanup.lib.php, (6) header_meta_style.inc.php, (7) get_foreign.lib.php, (8) display_tbl_links.lib.php, (9) display_export.lib.php, (10) db_table_exists.lib.php, (11) charset_conversion.lib.php, (12) ufpdf.php, (13) mysqli.dbi.lib.php, (14) setup.php, or (15) cookie.auth.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2005-0544

около 21 года назад

phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of th ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0543

больше 21 года назад

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web script via (1) the strServer, cfg[BgcolorOne], or strServerChoice parameters in select_server.lib.php, (2) the bg_color or row_no parameters in display_tbl_links.lib.php, the left_font_family parameter in theme_left.css.php, or the right_font_family parameter in theme_right.css.php.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2005-0543

больше 21 года назад

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web script via (1) the strServer, cfg[BgcolorOne], or strServerChoice parameters in select_server.lib.php, (2) the bg_color or row_no parameters in display_tbl_links.lib.php, the left_font_family parameter in theme_left.css.php, or the right_font_family parameter in theme_right.css.php.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2005-0543

больше 21 года назад

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows re ...

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2005-0459

около 21 года назад

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-0459

около 21 года назад

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2005-0459

около 21 года назад

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote att ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2004-2632

больше 21 года назад

phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg['Servers'] variables.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2004-2632

больше 21 года назад

phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configu ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2004-2631

больше 21 года назад

Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5.7, when LeftFrameLight is FALSE, allows remote attackers to execute arbitrary PHP code via a crafted table name.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2004-2631

больше 21 года назад

Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5 ...

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2005-0992

Cross-site scripting (XSS) vulnerability in index.php in phpMyAdmin be ...

CVSS2: 4.3
5%
Низкий
около 21 года назад
ubuntu логотип
CVE-2005-0653

phpMyAdmin 2.6.1 does not properly grant permissions on tables with an underscore in the name, which grants remote authenticated users more privileges than intended.

CVSS2: 4.6
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-0653

phpMyAdmin 2.6.1 does not properly grant permissions on tables with an underscore in the name, which grants remote authenticated users more privileges than intended.

CVSS2: 4.6
1%
Низкий
около 21 года назад
debian логотип
CVE-2005-0653

phpMyAdmin 2.6.1 does not properly grant permissions on tables with an ...

CVSS2: 4.6
1%
Низкий
около 21 года назад
ubuntu логотип
CVE-2005-0567

Multiple PHP remote file inclusion vulnerabilities in phpMyAdmin 2.6.1 allow remote attackers to execute arbitrary PHP code by modifying the (1) theme parameter to phpmyadmin.css.php or (2) cfg[Server][extension] parameter to database_interface.lib.php to reference a URL on a remote web server that contains the code.

CVSS2: 7.5
3%
Низкий
около 21 года назад
nvd логотип
CVE-2005-0567

Multiple PHP remote file inclusion vulnerabilities in phpMyAdmin 2.6.1 allow remote attackers to execute arbitrary PHP code by modifying the (1) theme parameter to phpmyadmin.css.php or (2) cfg[Server][extension] parameter to database_interface.lib.php to reference a URL on a remote web server that contains the code.

CVSS2: 7.5
3%
Низкий
около 21 года назад
debian логотип
CVE-2005-0567

Multiple PHP remote file inclusion vulnerabilities in phpMyAdmin 2.6.1 ...

CVSS2: 7.5
3%
Низкий
около 21 года назад
ubuntu логотип
CVE-2005-0544

phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of the server via direct requests to (1) sqlvalidator.lib.php, (2) sqlparser.lib.php, (3) select_theme.lib.php, (4) select_lang.lib.php, (5) relation_cleanup.lib.php, (6) header_meta_style.inc.php, (7) get_foreign.lib.php, (8) display_tbl_links.lib.php, (9) display_export.lib.php, (10) db_table_exists.lib.php, (11) charset_conversion.lib.php, (12) ufpdf.php, (13) mysqli.dbi.lib.php, (14) setup.php, or (15) cookie.auth.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-0544

phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of the server via direct requests to (1) sqlvalidator.lib.php, (2) sqlparser.lib.php, (3) select_theme.lib.php, (4) select_lang.lib.php, (5) relation_cleanup.lib.php, (6) header_meta_style.inc.php, (7) get_foreign.lib.php, (8) display_tbl_links.lib.php, (9) display_export.lib.php, (10) db_table_exists.lib.php, (11) charset_conversion.lib.php, (12) ufpdf.php, (13) mysqli.dbi.lib.php, (14) setup.php, or (15) cookie.auth.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
1%
Низкий
около 21 года назад
debian логотип
CVE-2005-0544

phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of th ...

CVSS2: 5
1%
Низкий
около 21 года назад
ubuntu логотип
CVE-2005-0543

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web script via (1) the strServer, cfg[BgcolorOne], or strServerChoice parameters in select_server.lib.php, (2) the bg_color or row_no parameters in display_tbl_links.lib.php, the left_font_family parameter in theme_left.css.php, or the right_font_family parameter in theme_right.css.php.

CVSS2: 4.3
4%
Низкий
больше 21 года назад
nvd логотип
CVE-2005-0543

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web script via (1) the strServer, cfg[BgcolorOne], or strServerChoice parameters in select_server.lib.php, (2) the bg_color or row_no parameters in display_tbl_links.lib.php, the left_font_family parameter in theme_left.css.php, or the right_font_family parameter in theme_right.css.php.

CVSS2: 4.3
4%
Низкий
больше 21 года назад
debian логотип
CVE-2005-0543

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows re ...

CVSS2: 4.3
4%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0459

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-0459

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.

CVSS2: 5
1%
Низкий
около 21 года назад
debian логотип
CVE-2005-0459

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote att ...

CVSS2: 5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-2632

phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg['Servers'] variables.

CVSS2: 7.5
4%
Низкий
больше 21 года назад
debian логотип
CVE-2004-2632

phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configu ...

CVSS2: 7.5
4%
Низкий
больше 21 года назад
nvd логотип
CVE-2004-2631

Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5.7, when LeftFrameLight is FALSE, allows remote attackers to execute arbitrary PHP code via a crafted table name.

CVSS2: 7.5
9%
Низкий
больше 21 года назад
debian логотип
CVE-2004-2631

Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5 ...

CVSS2: 7.5
9%
Низкий
больше 21 года назад

Уязвимостей на страницу