CVE-2016-5702
03.07.2016, 01:59
phpMyAdmin 4.6.x before 4.6.3, when the environment lacks a PHP_SELF value, allows remote attackers to conduct cookie-attribute injection attacks via a crafted URI.Enginsight
| Vendor | Product | Version |
|---|---|---|
| phpmyadmin | phpmyadmin | 4.6.0 |
| phpmyadmin | phpmyadmin | 4.6.0:alpha1 |
| phpmyadmin | phpmyadmin | 4.6.0:rc1 |
| phpmyadmin | phpmyadmin | 4.6.0:rc2 |
| phpmyadmin | phpmyadmin | 4.6.1 |
| phpmyadmin | phpmyadmin | 4.6.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| phpmyadmin |
|
Common Weakness Enumeration
References