[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1641 phpmyadmin -- several vulnerabilities

ID: oval:org.mitre.oval:def:8155Date: (C)2009-12-15   (M)2021-09-12
Class: PATCHFamily: unix




Several remote vulnerabilities have been discovered in phpMyAdmin, a tool to administrate MySQL databases over the web. The Common Vulnerabilities and Exposures project identifies the following problems: Remote authenticated users could execute arbitrary code on the host running phpMyAdmin through manipulation of a script parameter. Cross site scripting through the setup script was possible in rare circumstances. Protection has been added against remote websites loading phpMyAdmin into a frameset. Cross site request forgery allowed remote attackers to create a new database, but not perform any other action on it.

Platform:
Debian 4.0
Product:
phpmyadmin
Reference:
DSA-1641
CVE-2008-3197
CVE-2008-3456
CVE-2008-3457
CVE-2008-4096
CVE    4
CVE-2008-3456
CVE-2008-3457
CVE-2008-4096
CVE-2008-3197
...
CPE    1
cpe:/o:debian:debian_linux:4.0

© SecPod Technologies