Lucene search

K
freebsdFreeBSD2ECD02E2-E864-11DA-B9F4-00123FFE8333
HistoryMay 20, 2006 - 12:00 a.m.

phpmyadmin -- XSRF vulnerabilities

2006-05-2000:00:00
vuxml.freebsd.org
12

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.013

Percentile

86.1%

phpMyAdmin security team reports:

It was possible to inject arbitrary SQL commands by forcing an
authenticated user to follow a crafted link.
Such issue is quite common in many PHP applications and users
should take care what links they follow. We consider these
vulnerabilities to be quite dangerous.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchphpmyadmin< 2.8.1UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.013

Percentile

86.1%

Related for 2ECD02E2-E864-11DA-B9F4-00123FFE8333