PT-2017-10716 · Php · Phpminiadmin

Published

2017-07-13

·

Updated

2017-07-21

·

CVE-2017-1000005

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHPMiniAdmin version 1.9.160630
Description The issue allows for stored XSS in the name of databases, tables, and columns, which can result in potential account takeover and data theft.
Recommendations For PHPMiniAdmin version 1.9.160630, update to a version that fixes the stored XSS issue to prevent potential account takeover and data theft. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-1000005

Affected Products

Phpminiadmin