Lucene search

K
osvGoogleOSV:GHSA-F9HX-5JQ4-FGJM
HistoryMay 14, 2022 - 1:05 a.m.

phpMyAdmin CSRF Vulnerability

2022-05-1401:05:59
Google
osv.dev
7
phpmyadmin
csrf
vulnerability
versions
4.7.x
prior
4.7.6.1
4.7.7
weakness
crafted url
harmful
database operations
deleting records
dropping
truncating tables
software

EPSS

0.744

Percentile

98.2%

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.