Количество 1 093
Количество 1 093
GHSA-7ff4-cv53-4cjq
phpMyAdmin SQL injection vulnerability
GHSA-6349-53vr-7hcr
phpMyAdmin Cross-site Scripting (XSS)

CVE-2020-26935
An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query.

CVE-2020-26935
An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query.
CVE-2020-26935
An issue was discovered in SearchController in phpMyAdmin before 4.9.6 ...

CVE-2020-26934
phpMyAdmin before 4.9.6 and 5.x before 5.0.3 allows XSS through the transformation feature via a crafted link.

CVE-2020-26934
phpMyAdmin before 4.9.6 and 5.x before 5.0.3 allows XSS through the transformation feature via a crafted link.
CVE-2020-26934
phpMyAdmin before 4.9.6 and 5.x before 5.0.3 allows XSS through the tr ...

CVE-2019-18622
An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to trigger a SQL injection attack through the designer feature.

CVE-2019-18622
An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to trigger a SQL injection attack through the designer feature.
CVE-2019-18622
An issue was discovered in phpMyAdmin before 4.9.2. A crafted database ...

CVE-2012-5469
The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod.

CVE-2008-4326
The PMA_escapeJsString function in libraries/js_escape.lib.php in phpMyAdmin before 2.11.9.2, when Internet Explorer is used, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via a NUL byte inside a "</script" sequence.

CVE-2008-4326
The PMA_escapeJsString function in libraries/js_escape.lib.php in phpMyAdmin before 2.11.9.2, when Internet Explorer is used, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via a NUL byte inside a "</script" sequence.
CVE-2008-4326
The PMA_escapeJsString function in libraries/js_escape.lib.php in phpM ...

BDU:2023-07577
Уязвимость веб-приложения для администрирования cистем управления базами данных phpMyAdmin, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)

BDU:2022-01640
Уязвимость веб-интерфейса веб-приложения для администрирования cистем управления базами данных phpMyAdmin, позволяющая нарушителю получить доступ к конфиденциальной информации
GHSA-h65r-8fp8-w7cx
phpMyAdmin SQL Injection
GHSA-fcww-8wvc-38q9
phpMyAdmin SQL injection vulnerability
GHSA-f4cr-3xmc-2wpm
phpMyAdmin SQL injection vulnerability
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-7ff4-cv53-4cjq phpMyAdmin SQL injection vulnerability | CVSS3: 9.8 | 77% Высокий | около 3 лет назад | |
GHSA-6349-53vr-7hcr phpMyAdmin Cross-site Scripting (XSS) | CVSS3: 6.1 | 2% Низкий | около 3 лет назад | |
![]() | CVE-2020-26935 An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query. | CVSS3: 9.8 | 77% Высокий | почти 5 лет назад |
![]() | CVE-2020-26935 An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query. | CVSS3: 9.8 | 77% Высокий | почти 5 лет назад |
CVE-2020-26935 An issue was discovered in SearchController in phpMyAdmin before 4.9.6 ... | CVSS3: 9.8 | 77% Высокий | почти 5 лет назад | |
![]() | CVE-2020-26934 phpMyAdmin before 4.9.6 and 5.x before 5.0.3 allows XSS through the transformation feature via a crafted link. | CVSS3: 6.1 | 2% Низкий | почти 5 лет назад |
![]() | CVE-2020-26934 phpMyAdmin before 4.9.6 and 5.x before 5.0.3 allows XSS through the transformation feature via a crafted link. | CVSS3: 6.1 | 2% Низкий | почти 5 лет назад |
CVE-2020-26934 phpMyAdmin before 4.9.6 and 5.x before 5.0.3 allows XSS through the tr ... | CVSS3: 6.1 | 2% Низкий | почти 5 лет назад | |
![]() | CVE-2019-18622 An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to trigger a SQL injection attack through the designer feature. | CVSS3: 9.8 | 1% Низкий | больше 5 лет назад |
![]() | CVE-2019-18622 An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to trigger a SQL injection attack through the designer feature. | CVSS3: 9.8 | 1% Низкий | больше 5 лет назад |
CVE-2019-18622 An issue was discovered in phpMyAdmin before 4.9.2. A crafted database ... | CVSS3: 9.8 | 1% Низкий | больше 5 лет назад | |
![]() | CVE-2012-5469 The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod. | CVSS2: 7.5 | 3% Низкий | больше 12 лет назад |
![]() | CVE-2008-4326 The PMA_escapeJsString function in libraries/js_escape.lib.php in phpMyAdmin before 2.11.9.2, when Internet Explorer is used, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via a NUL byte inside a "</script" sequence. | CVSS2: 4.3 | 0% Низкий | почти 17 лет назад |
![]() | CVE-2008-4326 The PMA_escapeJsString function in libraries/js_escape.lib.php in phpMyAdmin before 2.11.9.2, when Internet Explorer is used, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via a NUL byte inside a "</script" sequence. | CVSS2: 4.3 | 0% Низкий | почти 17 лет назад |
CVE-2008-4326 The PMA_escapeJsString function in libraries/js_escape.lib.php in phpM ... | CVSS2: 4.3 | 0% Низкий | почти 17 лет назад | |
![]() | BDU:2023-07577 Уязвимость веб-приложения для администрирования cистем управления базами данных phpMyAdmin, существующая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS) | CVSS3: 5.4 | 8% Низкий | больше 2 лет назад |
![]() | BDU:2022-01640 Уязвимость веб-интерфейса веб-приложения для администрирования cистем управления базами данных phpMyAdmin, позволяющая нарушителю получить доступ к конфиденциальной информации | CVSS3: 5.3 | 0% Низкий | больше 3 лет назад |
GHSA-h65r-8fp8-w7cx phpMyAdmin SQL Injection | CVSS3: 8 | 1% Низкий | около 3 лет назад | |
GHSA-fcww-8wvc-38q9 phpMyAdmin SQL injection vulnerability | CVSS3: 5.4 | 2% Низкий | около 3 лет назад | |
GHSA-f4cr-3xmc-2wpm phpMyAdmin SQL injection vulnerability | CVSS3: 8 | 1% Низкий | около 3 лет назад |
Уязвимостей на страницу