CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96681  CVE-2016-9861  Candidate  An issue was discovered in phpMyAdmin. Due to the limitation in URL matching, it was possible to bypass the URL white-list protection. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.  Assigned (20161206)  None (candidate not yet proposed)    View
96682  CVE-2016-9862  Candidate  An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. All 4.6.x versions (prior to 4.6.5) are affected.  Assigned (20161206)  None (candidate not yet proposed)    View
96683  CVE-2016-9863  Candidate  An issue was discovered in phpMyAdmin. With a very large request to table partitioning function, it is possible to invoke a Denial of Service (DoS) attack. All 4.6.x versions (prior to 4.6.5) are affected.  Assigned (20161206)  None (candidate not yet proposed)    View
96684  CVE-2016-9864  Candidate  An issue was discovered in phpMyAdmin. With a crafted username or a table name, it was possible to inject SQL statements in the tracking functionality that would run with the privileges of the control user. This gives read and write access to the tables of the configuration storage database, and if the control user has the necessary privileges, read access to some tables of the MySQL database. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.  Assigned (20161206)  None (candidate not yet proposed)    View
96685  CVE-2016-9865  Candidate  An issue was discovered in phpMyAdmin. Due to a bug in serialized string parsing, it was possible to bypass the protection offered by PMA_safeUnserialize() function. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.  Assigned (20161206)  None (candidate not yet proposed)    View

Page 19337 of 20943, showing 5 records out of 104715 total, starting on record 96681, ending on 96685

Actions