phpmyadmin

272 tracked vulnerabilities.

CVE-2007-0341
phpMyAdmin 2.8.1 - Cross-Site Scripting via CSS Style in convcharset Parameter
Jan 18, 2007
EPSS 0.01
CVE-2007-0203
phpMyAdmin <2.9.2-rc1 - Info Disclosure
Jan 11, 2007
EPSS 0.01
CVE-2007-0204
phpMyAdmin < 2.9.1.1 - Cross-Site Scripting
Jan 11, 2007
EPSS 0.02
CVE-2007-0095
phpMyAdmin 2.9.1.1 - Info Disclosure
Jan 05, 2007
EPSS 0.01
CVE-2006-6942
phpMyAdmin < 2.9.1 - Cross-Site Scripting via Multiple Parameters
Jan 19, 2007
EPSS 0.02
CVE-2006-6943
phpMyAdmin < 2.9.1 - Path Disclosure via Multiple Scripts and Parameters
Jan 19, 2007
EPSS 0.12
CVE-2006-6944
phpMyAdmin < 2.9.1.1 - Remote Access Control Bypass via False Headers
Jan 19, 2007
EPSS 0.00
CVE-2006-6373
PhpMyAdmin 2.7.0-pl2 - Info Disclosure
Dec 07, 2006
EPSS 0.00
CVE-2006-6374
PhpMyAdmin 2.7.0-pl2 - CRLF Injection
Dec 07, 2006
EPSS 0.01
CVE-2006-5718
phpMyAdmin 2.6.4-2.9.0.2 - Cross-Site Scripting via UTF-7 or US-ASCII Encoded Characters
Nov 04, 2006
EPSS 0.01
CVE-2006-5116
phpMyAdmin - Cross-Site Request Forgery via Dynamic Variable Evaluation
Oct 03, 2006
EPSS 0.04
CVE-2006-5117
phpMyAdmin <2.9.1-rc1 - Info Disclosure
Oct 03, 2006
EPSS 0.00
CVE-2006-3388
phpMyAdmin < 2.8.2 - Cross-Site Scripting via Table Parameter
Jul 06, 2006
EPSS 0.01
CVE-2006-2417
phpMyAdmin 2.8.0.x < 2.8.0.4 - Cross-Site Scripting via Theme Parameter
May 16, 2006
EPSS 0.01
CVE-2006-2418
phpMyAdmin - Cross-Site Scripting via DB Parameter
May 16, 2006
EPSS 0.04
CVE-2006-2031
phpMyAdmin 2.8.0.2-2.8.0.3 - Cross-Site Scripting via Lang Parameter
Apr 26, 2006
EPSS 0.00
CVE-2006-1803
phpMyAdmin < 2.8.0.3 - Cross-Site Scripting via sql_query Parameter
Apr 18, 2006
EPSS 0.09
CVE-2006-1804
phpMyAdmin 2.7.0-pl1 - SQL Injection
Apr 18, 2006
EPSS 0.01
CVE-2006-1678
phpMyAdmin < 2.8.0.3 - Cross-Site Scripting via Themes Directory
Apr 11, 2006
EPSS 0.01
CVE-2006-1258
phpMyAdmin 2.8.0.1 - Cross-Site Scripting via set_theme Parameter
Mar 19, 2006
EPSS 0.08
CVE-2005-4450
phpMyAdmin 2.7.0 - Cross-Site Request Forgery via server_privileges.php
Dec 21, 2005
EPSS 0.00
CVE-2005-4349 MEDIUM
phpMyAdmin 2.7.0 - Authenticated SQL Injection via dbname or checkprivs Parameters
Dec 19, 2005
CVSS 6.3
EPSS 0.02
CVE-2005-3665
phpMyAdmin < 2.7.0 - Cross-Site Scripting via HTTP_HOST Variable and Header Generation Scripts
Dec 08, 2005
EPSS 0.01
CVE-2005-4079
phpMyAdmin 2.7.0 rc1 - Remote Variable Overwrite via import_blacklist Manipulation
Dec 08, 2005
EPSS 0.02
CVE-2005-3787
phpMyAdmin < 2.6.4-pl4 - Cross-Site Scripting via Cookie-Based Login Panel and Table Creation Dialog
Nov 24, 2005
EPSS 0.00