CVE-2011-4782
Phpmyadmin < 3.4.9 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in libraries/config/ConfigFile.class.php in the setup interface in phpMyAdmin 3.4.x before 3.4.9 allows remote attackers to inject arbitrary web script or HTML via the host parameter.
References (6)
Scores
EPSS
0.0047
EPSS Percentile
64.6%
Classification
CWE
CWE-79
Status
published
Affected Products (13)
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
phpmyadmin/phpmyadmin
< 3.4.9Packagist
n/a/n/a
Timeline
Published
Dec 22, 2011
Tracked Since
Feb 18, 2026