phpmyadmin

272 tracked vulnerabilities.

CVE-2009-1149
phpMyAdmin < 3.1.3.1 - HTTP Response Splitting via BLOB Streaming CRLF Injection
Mar 26, 2009
EPSS 0.01
CVE-2009-1148
phpMyAdmin < 3.1.3.1 - Path Traversal via BLOB Streaming File Path Parameter
Mar 26, 2009
EPSS 0.01
CVE-2008-7252
phpMyAdmin <2.11.10 - Info Disclosure
Jan 19, 2010
EPSS 0.03
CVE-2008-7251
phpMyAdmin <2.11.10 - Info Disclosure
Jan 19, 2010
EPSS 0.03
CVE-2008-5621
phpMyAdmin 2.11.x-2.11.9.3 and 3.x-3.1.0.9 - Cross-Site Request Forgery via tbl_structure.php
Dec 17, 2008
EPSS 0.01
CVE-2008-4775
phpMyAdmin 3.0.0 - Cross-Site Scripting via db Parameter
Oct 28, 2008
EPSS 0.08
CVE-2008-4326
phpMyAdmin < 2.11.9.2 - Cross-Site Scripting via NUL Byte Bypass
Sep 30, 2008
EPSS 0.00
CVE-2008-4096
phpMyAdmin < 2.11.9.1 - Authenticated Remote Code Execution via Sort Parameter
Sep 18, 2008
EPSS 0.17
CVE-2008-3456
phpMyAdmin < 2.11.8 - Cross-Site Framing
Aug 04, 2008
EPSS 0.02
CVE-2008-3457
phpMyAdmin < 2.11.8 - Cross-Site Scripting via Setup Arguments
Aug 04, 2008
EPSS 0.01
CVE-2008-3197
phpMyAdmin < 2.11.7.1 - Cross-Site Request Forgery via Database Creation and Charset Parameters
Jul 16, 2008
EPSS 0.00
CVE-2008-2960
phpMyAdmin - register_globals Cross-Site Scripting
Jul 02, 2008
EPSS 0.01
CVE-2008-1924
phpMyAdmin <2.11.5.2 - Info Disclosure
Apr 23, 2008
EPSS 0.00
CVE-2008-1567 MEDIUM
phpMyAdmin <2.11.5.1 - Info Disclosure
Mar 31, 2008
CVSS 5.5
EPSS 0.00
CVE-2008-1149
phpMyAdmin <2.11.5 - CSRF & SQL Injection
Mar 04, 2008
EPSS 0.01
CVE-2007-6100
phpMyAdmin < 2.11.2.2 - Cross-Site Scripting via convcharset Parameter
Nov 23, 2007
EPSS 0.01
CVE-2007-5976
phpMyAdmin <2.11.2.1 - SQL Injection
Nov 15, 2007
EPSS 0.01
CVE-2007-5977
phpMyAdmin < 2.11.2.1 - Authenticated Cross-Site Scripting via db Parameter
Nov 15, 2007
EPSS 0.01
CVE-2007-5589
phpMyAdmin < 2.11.1.2 - Cross-Site Scripting via PHP_SELF and PATH_INFO
Oct 19, 2007
EPSS 0.11
CVE-2007-5386
phpMyAdmin 2.11.1 - Cross-Site Scripting via Query String
Oct 12, 2007
EPSS 0.11
CVE-2007-4306
phpMyAdmin 2.10.3 - Cross-Site Scripting via Multiple Parameters
Aug 13, 2007
EPSS 0.00
CVE-2007-2245
phpMyAdmin - Cross-Site Scripting via Fieldkey Parameter or PMA_sanitize Function
Apr 25, 2007
EPSS 0.02
CVE-2007-2016
phpMyAdmin 2.6.1 - Cross-Site Scripting via lang[] Parameter
Apr 12, 2007
EPSS 0.00
CVE-2007-1395
phpMyAdmin 2.8.0-2.9.2 - Cross-Site Scripting via Uppercase Script Tag Bypass
Mar 10, 2007
EPSS 0.02
CVE-2007-1325
phpMyAdmin < 2.10.0.2 - Denial of Service via Recursive Array Processing
Mar 07, 2007
EPSS 0.01