Количество 5
Количество 5
CVE-2025-60798
phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability in display.php at line 396. The application passes user-controlled input from $_REQUEST['query'] directly to the browseQuery function without proper sanitization. An authenticated attacker can exploit this vulnerability to execute arbitrary SQL commands through malicious query manipulation, potentially leading to complete database compromise.
CVE-2025-60798
phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability in display.php at line 396. The application passes user-controlled input from $_REQUEST['query'] directly to the browseQuery function without proper sanitization. An authenticated attacker can exploit this vulnerability to execute arbitrary SQL commands through malicious query manipulation, potentially leading to complete database compromise.
CVE-2025-60798
phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability i ...
GHSA-g6xh-wrpf-v6j6
phppgadmin contains a SQL injection vulnerability
BDU:2025-14887
Уязвимость сценария display.php веб-инструмента администрирования СУБД PostgreSQL phpPgAdmin, позволяющая нарушителю выполнить произвольные команды
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-60798 phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability in display.php at line 396. The application passes user-controlled input from $_REQUEST['query'] directly to the browseQuery function without proper sanitization. An authenticated attacker can exploit this vulnerability to execute arbitrary SQL commands through malicious query manipulation, potentially leading to complete database compromise. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2025-60798 phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability in display.php at line 396. The application passes user-controlled input from $_REQUEST['query'] directly to the browseQuery function without proper sanitization. An authenticated attacker can exploit this vulnerability to execute arbitrary SQL commands through malicious query manipulation, potentially leading to complete database compromise. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2025-60798 phpPgAdmin 7.13.0 and earlier contains a SQL injection vulnerability i ... | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
GHSA-g6xh-wrpf-v6j6 phppgadmin contains a SQL injection vulnerability | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
BDU:2025-14887 Уязвимость сценария display.php веб-инструмента администрирования СУБД PostgreSQL phpPgAdmin, позволяющая нарушителю выполнить произвольные команды | CVSS3: 6.5 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу