CVE-2019-1000004
04.02.2019, 21:29
yugandhargangu JspMyAdmin2 version 1.0.6 and earlier contains a Cross Site Scripting (XSS) vulnerability in sidebar and table data that can result in Database fields aren't properly sanitized and allow code injection (Cross-Site Scripting). This attack appears to be exploitable via the payload needs to be stored in the database and the victim must see the db value in question.
Vendor | Product | Version |
---|---|---|
jspmyadmin | jspmyadmin2 | 𝑥 ≤ 1.0.6 |
𝑥
= Vulnerable software versions