PT-2017-10726 · Phpmyadmin+3 · Phpmyadmin+3

E3Amn2L

·

Published

2014-05-05

·

Updated

2024-06-15

·

CVE-2017-1000015

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions phpMyAdmin versions 4.0 through 4.6
Description The issue concerns a CSS injection attack that can be executed through crafted cookie parameters.
Recommendations For phpMyAdmin versions 4.0 through 4.6, consider restricting access to the cookie parameters to minimize the risk of exploitation until a patch is available.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2014-1591
ALT-PU-2016-2421
CVE-2017-1000015
GHSA-3FGQ-CMR4-97RR
OPENSUSE-SU-2024:11171-1
USN-4843-1

Affected Products

Alt Linux
Linuxmint
Ubuntu
Phpmyadmin