Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-3696
HistoryOct 16, 2009 - 12:00 a.m.

CVE-2009-3696

2009-10-1600:00:00
ubuntu.com
ubuntu.com
10

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

71.1%

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.11.x before
2.11.9.6 and 3.x before 3.2.2.1 allows remote attackers to inject arbitrary
web script or HTML via a crafted name for a MySQL table.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchphpmyadmin< 4:2.11.3-1ubuntu1.3UNKNOWN
ubuntu8.10noarchphpmyadmin< 4:2.11.8.1-1ubuntu0.2UNKNOWN
ubuntu9.04noarchphpmyadmin< 4:3.1.2-1ubuntu0.2UNKNOWN

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

71.1%