Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-3697
HistoryOct 16, 2009 - 12:00 a.m.

CVE-2009-3697

2009-10-1600:00:00
ubuntu.com
ubuntu.com
9

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

77.1%

SQL injection vulnerability in the PDF schema generator functionality in
phpMyAdmin 2.11.x before 2.11.9.6 and 3.x before 3.2.2.1 allows remote
attackers to execute arbitrary SQL commands via unspecified interface
parameters.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchphpmyadmin< 4:2.11.3-1ubuntu1.3UNKNOWN
ubuntu8.10noarchphpmyadmin< 4:2.11.8.1-1ubuntu0.2UNKNOWN
ubuntu9.04noarchphpmyadmin< 4:3.1.2-1ubuntu0.2UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

77.1%