Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:8025
HistoryDec 12, 2018 - 9:45 a.m.

Cross Site Request Forgery (CSRF)

2018-12-1209:45:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.003 Low

EPSS

Percentile

69.1%

phpmyadmin is vulnerable to cross site request forgery (CSRF). When an authenticated user is tricked into visiting a malicious web page, an attacker is able to perform unwanted actions on behalf of the victim such as rename databases, create new tables/routines, delete designer pages, add/delete users, update user passwords, kill SQL processes, etc.

CPENameOperatorVersion
phpmyadmin/phpmyadminle4.8.3