Логотип exploitDog
bind:CVE-2016-5739
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-5739

Количество 5

Количество 5

ubuntu логотип

CVE-2016-5739

около 9 лет назад

The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not use the no-referrer Content Security Policy (CSP) protection mechanism, which makes it easier for remote attackers to conduct CSRF attacks by reading an authentication token in a Referer header, related to libraries/Header.php.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-5739

около 9 лет назад

The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not use the no-referrer Content Security Policy (CSP) protection mechanism, which makes it easier for remote attackers to conduct CSRF attacks by reading an authentication token in a Referer header, related to libraries/Header.php.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-5739

около 9 лет назад

The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16 ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2p7v-jm8m-g3qq

около 3 лет назад

phpMyAdmin vulnerable to Cross-Site Request Forgery

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:1699-1

около 9 лет назад

Security update for phpMyAdmin

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-5739

The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not use the no-referrer Content Security Policy (CSP) protection mechanism, which makes it easier for remote attackers to conduct CSRF attacks by reading an authentication token in a Referer header, related to libraries/Header.php.

CVSS3: 7.5
1%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-5739

The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 does not use the no-referrer Content Security Policy (CSP) protection mechanism, which makes it easier for remote attackers to conduct CSRF attacks by reading an authentication token in a Referer header, related to libraries/Header.php.

CVSS3: 7.5
1%
Низкий
около 9 лет назад
debian логотип
CVE-2016-5739

The Transformation implementation in phpMyAdmin 4.0.x before 4.0.10.16 ...

CVSS3: 7.5
1%
Низкий
около 9 лет назад
github логотип
GHSA-2p7v-jm8m-g3qq

phpMyAdmin vulnerable to Cross-Site Request Forgery

CVSS3: 7.5
1%
Низкий
около 3 лет назад
suse-cvrf логотип
openSUSE-SU-2016:1699-1

Security update for phpMyAdmin

около 9 лет назад

Уязвимостей на страницу