[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-3382-1 phpmyadmin -- phpmyadmin

ID: oval:org.secpod.oval:def:602256Date: (C)2015-11-02   (M)2022-09-21
Class: PATCHFamily: unix




Several issues have been fixed in phpMyAdmin, the web administration tool for MySQL. CVE-2014-8958 Multiple cross-site scripting vulnerabilities. CVE-2014-9218 Denial of service via a long password. CVE-2015-2206 Risk of BREACH attack due to reflected parameter. CVE-2015-3902 XSRF/CSRF vulnerability in phpMyAdmin setup. CVE-2015-3903 Vulnerability allowing man-in-the-middle attack on API call to GitHub. CVE-2015-6830 Vulnerability that allows bypassing the reCaptcha test. CVE-2015-7873 Content spoofing vulnerability when redirecting user to an external site.

Platform:
Debian 8.x
Debian 7.x
Product:
phpmyadmin
Reference:
DSA-3382-1
CVE-2014-8958
CVE-2014-9218
CVE-2015-2206
CVE-2015-3902
CVE-2015-3903
CVE-2015-6830
CVE-2015-7873
CVE    7
CVE-2014-8958
CVE-2014-9218
CVE-2015-2206
CVE-2015-3903
...
CPE    88
cpe:/a:phpmyadmin:phpmyadmin:4.3.1
cpe:/a:phpmyadmin:phpmyadmin:4.3.2
cpe:/a:phpmyadmin:phpmyadmin:4.3.0
cpe:/a:phpmyadmin:phpmyadmin:4.3.5
...

© SecPod Technologies