Lucene search

K
cvelistMitreCVELIST:CVE-2016-2041
HistoryFeb 20, 2016 - 1:00 a.m.

CVE-2016-2041

2016-02-2001:00:00
mitre
www.cve.org
5

AI Score

7.4

Confidence

High

EPSS

0.004

Percentile

72.4%

libraries/common.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not use a constant-time algorithm for comparing CSRF tokens, which makes it easier for remote attackers to bypass intended access restrictions by measuring time differences.

AI Score

7.4

Confidence

High

EPSS

0.004

Percentile

72.4%