CVE-2006-1803: XSS
Published Apr 18, 2006
·Updated
Cross-site scripting (XSS) vulnerability in sql.php in phpMyAdmin 2.7.0-pl1 allows remote attackers to inject arbitrary web script or HTML via the sqlquery parameter.
Affected Software
2 affected componentsFixes available
debian/phpmyadmin
4:5.0.4+dfsg2-2+deb11u14:5.2.1+dfsg-1
phpMyAdmin phpMyAdmin<=2.8.0.3
Event History
Apr 18, 2006
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1803?
CVE-2006-1803 is classified as a medium severity vulnerability due to its potential for allowing cross-site scripting attacks.
2
How do I fix CVE-2006-1803?
To address CVE-2006-1803, it is recommended to upgrade phpMyAdmin to a version later than 2.8.0.3.
3
What type of vulnerability is CVE-2006-1803?
CVE-2006-1803 is a cross-site scripting (XSS) vulnerability that enables attackers to inject malicious scripts into web pages.
4
Which software versions are affected by CVE-2006-1803?
CVE-2006-1803 affects phpMyAdmin versions up to and including 2.8.0.3.
5
Can CVE-2006-1803 be exploited remotely?
Yes, CVE-2006-1803 can be exploited remotely, allowing attackers to inject arbitrary web scripts or HTML.