REDHAT-BUG-625877: XSS
Several cross-site scripting (XSS) vulnerabilities were found in phpMyAdmin versions prior to 2.11.10.1 and 3.3.5.1 [1]. A remote attacker was able to conduct an XSS attack using crafted URLs or POST parameters on several pages. This issue has been assigned the name CVE-2010-3056.
[1] http://www.phpmyadmin.net/homepage/security/PMASA-2010-5.php
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-625877?
The severity of REDHAT-BUG-625877 is considered high due to its potential for remote exploitation through cross-site scripting (XSS).
How do I fix REDHAT-BUG-625877?
To fix REDHAT-BUG-625877, upgrade your phpMyAdmin installation to versions 2.11.10.1 or 3.3.5.1 or later.
What types of attacks are associated with REDHAT-BUG-625877?
REDHAT-BUG-625877 is associated with cross-site scripting (XSS) attacks that can exploit crafted URLs or POST parameters.
Which versions of phpMyAdmin are affected by REDHAT-BUG-625877?
phpMyAdmin versions prior to 2.11.10.1 and 3.3.5.1 are affected by REDHAT-BUG-625877.
Who can be impacted by REDHAT-BUG-625877?
Any users or systems using the affected versions of phpMyAdmin are at risk of exposure to REDHAT-BUG-625877.