Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4-pl4 allow remote attackers to inject arbitrary web script or HTML via (1) the cookie-based login panel, (2) the title parameter and (3) the table creation dialog.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:02
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/17578 - | |
References | () http://secunia.com/advisories/18618 - | |
References | () http://www.phpmyadmin.net/home_page/security.php?issue=PMASA-2005-7 - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/archive/1/423142/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/16389 - |
Information
Published : 2005-11-24 01:03
Updated : 2024-11-21 00:02
NVD link : CVE-2005-3787
Mitre link : CVE-2005-3787
CVE.ORG link : CVE-2005-3787
JSON object : View
Products Affected
phpmyadmin
- phpmyadmin
CWE