This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
| Summuary | |
|---|---|
| CPE Name | cpe:/a:phpmyadmin:phpmyadmin:2.10.3 |
| Detail | |||
|---|---|---|---|
| Vendor | Phpmyadmin | First view | 2007-08-13 |
| Product | Phpmyadmin | Last view | 2009-07-01 |
| Version | 2.10.3 | Type | Application |
| Edition | |||
| Language | |||
| Update | |||
| CPE Product | cpe:/a:phpmyadmin:phpmyadmin | ||
Activity : Yearly
Related : CVE
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 4.3 | 2009-07-01 | CVE-2009-2284 | Network | Medium | None Requ... | |
| 4.3 | 2008-09-30 | CVE-2008-4326 | Network | Medium | None Requ... | |
| 8.5 | 2008-09-18 | CVE-2008-4096 | Network | Medium | Requires ... | |
| 2.6 | 2008-08-04 | CVE-2008-3457 | Network | High | None Requ... | |
| 6.4 | 2008-08-04 | CVE-2008-3456 | Network | Low | None Requ... | |
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 3.5 | 2008-07-16 | CVE-2008-3197 | Network | Medium | Requires ... | |
| 2.6 | 2008-07-02 | CVE-2008-2960 | Network | High | None Requ... | |
| 3.5 | 2008-04-23 | CVE-2008-1924 | Network | Medium | Requires ... | |
| 2.6 | 2007-11-23 | CVE-2007-6100 | Network | High | None Requ... | |
| 4.3 | 2007-08-13 | CVE-2007-4306 | Network | Medium | None Requ... |
CWE : Common Weakness Enumeration
| % | id | Name |
|---|---|---|
| 55% (5) | CWE-79 | Failure to Preserve Web Page Structure ('Cross-site Scripting') |
| 11% (1) | CWE-352 | Cross-Site Request Forgery (CSRF) |
| 11% (1) | CWE-200 | Information Exposure |
| 11% (1) | CWE-59 | Improper Link Resolution Before File Access ('Link Following') |
| 11% (1) | CWE-20 | Improper Input Validation |
Open Source Vulnerability Database (OSVDB)
| id | Description |
|---|---|
| 55514 | phpMyAdmin Crafted SQL Bookmark XSS |
| 48480 | phpMyAdmin libraries/js_escape.lib.php PMA_escapeJsString() Function MSIE Nul... |
| 48154 | phpMyAdmin server_databases.php sort_by Variable Arbitrary PHP Code Execution |
| 47487 | phpMyAdmin setup.php Configuration Manipulation Based XSS |
| 47486 | phpMyAdmin setup.php Cross-Frame Scripting |
| id | Description |
|---|---|
| 47322 | phpMyAdmin index.php Multiple Parameter CSRF |
| 47321 | phpMyAdmin db_create.php db Parameter CSRF |
| 46511 | phpMyAdmin /libraries Multiple Scripts Unspecified XSS |
| 44577 | phpMyAdmin Crafted HTTP Request UploadDir Parameter Arbitrary File Access |
| 38835 | phpMyAdmin index.php convcharset Parameter XSS |
| 38720 | phpMyAdmin Multiple Parameter XSS |







