CVE-2020-26935
10.10.2020, 19:15
An issue was discovered in SearchController in phpMyAdmin before 4.9.6 and 5.x before 5.0.3. A SQL injection vulnerability was discovered in how phpMyAdmin processes SQL statements in the search feature. An attacker could use this flaw to inject malicious SQL in to a query.
| Vendor | Product | Version |
|---|---|---|
| phpmyadmin | phpmyadmin | 4.9.0 ≤ 𝑥 < 4.9.6 |
| phpmyadmin | phpmyadmin | 5.0.0 ≤ 𝑥 < 5.0.3 |
| opensuse | backports_sle | 15.0 |
| opensuse | backports_sle | 15.0:sp1 |
| opensuse | backports_sle | 15.0:sp2 |
| opensuse | leap | 15.1 |
| opensuse | leap | 15.2 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References