Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-5386. PoCs published by Omer Singer.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in phpMyAdmin 2.11.1 by injecting arbitrary JavaScript code via the URL parameter in the setup.php script. The vulnerability arises due to insufficient input sanitization.
Description
Cross-site scripting (XSS) vulnerability in scripts/setup.php in phpMyAdmin 2.11.1, when accessed by a browser that does not URL-encode requests, allows remote attackers to inject arbitrary web script or HTML via the query string.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in phpMyAdmin 2.11.1 by injecting arbitrary JavaScript code via the URL parameter in the setup.php script. The vulnerability arises due to insufficient input sanitization.