CVE-2008-2960
02.07.2008, 17:14
Cross-site scripting (XSS) vulnerability in phpMyAdmin before 2.11.7, when register_globals is enabled and .htaccess support is disabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving scripts in libraries/.
Vendor | Product | Version |
---|---|---|
phpmyadmin | phpmyadmin | 2.10.0 |
phpmyadmin | phpmyadmin | 2.10.0.1 |
phpmyadmin | phpmyadmin | 2.10.0.2 |
phpmyadmin | phpmyadmin | 2.10.1 |
phpmyadmin | phpmyadmin | 2.10.2 |
phpmyadmin | phpmyadmin | 2.10.3 |
phpmyadmin | phpmyadmin | 2.10.3rc1:rc1 |
phpmyadmin | phpmyadmin | 2.11.0 |
phpmyadmin | phpmyadmin | 2.11.0beta1:beta1 |
phpmyadmin | phpmyadmin | 2.11.0rc1:rc1 |
phpmyadmin | phpmyadmin | 2.11.1 |
phpmyadmin | phpmyadmin | 2.11.1.1 |
phpmyadmin | phpmyadmin | 2.11.1.2 |
phpmyadmin | phpmyadmin | 2.11.1rc1:rc1 |
phpmyadmin | phpmyadmin | 2.11.2 |
phpmyadmin | phpmyadmin | 2.11.2.1 |
phpmyadmin | phpmyadmin | 2.11.2.2 |
phpmyadmin | phpmyadmin | 2.11.3 |
phpmyadmin | phpmyadmin | 2.11.3rc1:rc1 |
phpmyadmin | phpmyadmin | 2.11.4 |
phpmyadmin | phpmyadmin | 2.11.4rc1:rc1 |
phpmyadmin | phpmyadmin | 2.11.5 |
phpmyadmin | phpmyadmin | 2.11.5.1 |
phpmyadmin | phpmyadmin | 2.11.5.2 |
phpmyadmin | phpmyadmin | 2.11.5rc1:rc1 |
phpmyadmin | phpmyadmin | 2.11.6 |
phpmyadmin | phpmyadmin | 2.11.6rc1:rc1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References