Lucene search

K
osvGoogleOSV:GHSA-V6FP-H79X-9RQC
HistoryMay 14, 2022 - 3:22 a.m.

phpMyAdmin CSRF vulnerability allowing arbitrary SQL execution

2022-05-1403:22:27
Google
osv.dev
6
phpmyadmin
csrf
sql
js
libraries
execution

AI Score

7.8

Confidence

Low

EPSS

0.006

Percentile

79.1%

phpMyAdmin 4.8.0 before 4.8.0-1 has CSRF, allowing an attacker to execute arbitrary SQL statements, related to js/db_operations.js, js/tbl_operations.js, libraries/classes/Operations.php, and sql.php.