Lucene search

K
osvGoogleOSV:GHSA-C958-4J9X-Q7W4
HistoryMay 14, 2022 - 2:18 a.m.

phpMyAdmin Cross-site Scripting (XSS) in the import dialog

2022-05-1402:18:52
Google
osv.dev
7
cross-site scripting
phpmyadmin
vulnerability
import feature

AI Score

5.9

Confidence

High

EPSS

0.002

Percentile

59.7%

An issue was discovered in phpMyAdmin before 4.8.3. A Cross-Site Scripting vulnerability has been found where an attacker can use a crafted file to manipulate an authenticated user who loads that file through the import feature.

AI Score

5.9

Confidence

High

EPSS

0.002

Percentile

59.7%