CVE-2005-2869: XSS
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the Username to libraries/auth/cookie.auth.lib.php or (2) the error parameter to error.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2869?
CVE-2005-2869 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2005-2869?
To fix CVE-2005-2869, upgrade phpMyAdmin to version 2.6.4 or later, which contains the necessary security patches.
What are the consequences of exploiting CVE-2005-2869?
Exploiting CVE-2005-2869 allows an attacker to inject arbitrary JavaScript or HTML, potentially leading to session hijacking or data theft.
Which versions of phpMyAdmin are affected by CVE-2005-2869?
CVE-2005-2869 affects phpMyAdmin versions prior to 2.6.4, including several older versions such as 2.1.1, 2.2.4, and 2.5.0.
What is the nature of the vulnerabilities in CVE-2005-2869?
CVE-2005-2869 includes multiple cross-site scripting (XSS) vulnerabilities that can be exploited through manipulated input fields.