First published: Sun Dec 11 2016(Updated: )
XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functionality. Specially crafted database names can trigger the XSS attack. All 4.6.x versions (prior to 4.6.4) are affected.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
phpMyAdmin phpMyAdmin | =4.6.0 | |
phpMyAdmin phpMyAdmin | =4.6.0-alpha1 | |
phpMyAdmin phpMyAdmin | =4.6.0-rc1 | |
phpMyAdmin phpMyAdmin | =4.6.0-rc2 | |
phpMyAdmin phpMyAdmin | =4.6.1 | |
phpMyAdmin phpMyAdmin | =4.6.2 | |
phpMyAdmin phpMyAdmin | =4.6.3 | |
composer/phpmyadmin/phpmyadmin | >=4.6<4.6.4 | 4.6.4 |
=4.6.0 | ||
=4.6.0-alpha1 | ||
=4.6.0-rc1 | ||
=4.6.0-rc2 | ||
=4.6.1 | ||
=4.6.2 | ||
=4.6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.