This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:phpmyadmin:phpmyadmin:2.10.1.0
Detail
VendorPhpmyadminFirst view 2007-04-25
ProductPhpmyadminLast view 2009-07-01
Version2.10.1.0TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:phpmyadmin:phpmyadmin

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
4.32009-07-01CVE-2009-2284NetworkMediumNone Requ...
4.32008-09-30CVE-2008-4326NetworkMediumNone Requ...
8.52008-09-18CVE-2008-4096NetworkMediumRequires ...
2.62008-08-04CVE-2008-3457NetworkHighNone Requ...
6.42008-08-04CVE-2008-3456NetworkLowNone Requ...
Hide | Show 4 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
3.52008-07-16CVE-2008-3197NetworkMediumRequires ...
2.12008-03-31CVE-2008-1567LocalLowNone Requ...
2.62007-11-23CVE-2007-6100NetworkHighNone Requ...
6.82007-04-25CVE-2007-2245NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
50% (4)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
12% (1)CWE-352Cross-Site Request Forgery (CSRF)
12% (1)CWE-200Information Exposure
12% (1)CWE-59Improper Link Resolution Before File Access ('Link Following')
12% (1)CWE-20Improper Input Validation

CAPEC : Common Attack Pattern Enumeration & Classificatio

idName
CAPEC-31Accessing/Intercepting/Modifying HTTP Cookies
CAPEC-37Lifting Data Embedded in Client Distributions
CAPEC-65Passively Sniff and Capture Application Code Bound for Authorized Client
CAPEC-117Data Interception Attacks
CAPEC-155Screen Temporary Files for Sensitive Information
Hide | Show 7 More...
idName
CAPEC-157Sniffing Attacks
CAPEC-167Lifting Sensitive Data from the Client
CAPEC-204Lifting cached, sensitive data embedded in client distributions (thick or thin)
CAPEC-205Lifting credential(s)/key material embedded in client distributions (thick or...
CAPEC-258Passively Sniffing and Capturing Application Code Bound for an Authorized Cli...
CAPEC-259Passively Sniffing and Capturing Application Code Bound for an Authorized Cli...
CAPEC-260Passively Sniffing and Capturing Application Code Bound for an Authorized Cli...

Open Source Vulnerability Database (OSVDB)

idDescription
55514phpMyAdmin Crafted SQL Bookmark XSS
48480phpMyAdmin libraries/js_escape.lib.php PMA_escapeJsString() Function MSIE Nul...
48154phpMyAdmin server_databases.php sort_by Variable Arbitrary PHP Code Execution
47487phpMyAdmin setup.php Configuration Manipulation Based XSS
47486phpMyAdmin setup.php Cross-Frame Scripting
Hide | Show 5 More...
idDescription
47322phpMyAdmin index.php Multiple Parameter CSRF
47321phpMyAdmin db_create.php db Parameter CSRF
43908phpMyAdmin Session Data Credential / Secret Key Disclosure
38835phpMyAdmin index.php convcharset Parameter XSS
35050phpMyAdmin browse_foreigners.php fieldkey Parameter XSS