CVE

Id
96670  
CVE No.
CVE-2016-9850  
Status
Candidate  
Description
An issue was discovered in phpMyAdmin. Username matching for the allow/deny rules may result in wrong matches and detection of the username in the rule due to non-constant execution time. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.  
Phase
Assigned (20161206)  
Votes
None (candidate not yet proposed)  
Comments