CVE-2016-5705 -- phpmyadminID: oval:org.secpod.oval:def:1900959 | Date: (C)2019-03-05 (M)2023-12-20 |
Class: VULNERABILITY | Family: unix |
Multiple cross-site scripting vulnerabilities in phpMyAdmin 4.4.x before 4.4.15.7 and 4.6.x before 4.6.3 allow remote attackers to inject arbitrary web script or HTML via vectors involving server-privileges certificate data fields on the user privileges page, an "invalid JSON" error message in the error console, a database name in the central columns implementation, a group name, or a search name in the bookmarks implementation.
Platform: |
Ubuntu 16.04 |
Ubuntu 14.04 |