Lucene search

K
redhatcveRedhat.comRH:CVE-2008-3197
HistoryOct 04, 2019 - 8:14 p.m.

CVE-2008-3197

2019-10-0420:14:04
redhat.com
access.redhat.com
7

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

7.1

Confidence

Low

EPSS

0.002

Percentile

61.4%

Cross-site request forgery (CSRF) vulnerability in phpMyAdmin before 2.11.7.1 allows remote attackers to perform unauthorized actions via a link or IMG tag to (1) the db parameter in the “Creating a Database” functionality (db_create.php), and (2) the convcharset and collation_connection parameters related to an unspecified program that modifies the connection character set.

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

7.1

Confidence

Low

EPSS

0.002

Percentile

61.4%