Showing articles from
http://www.phpmyadmin.net/home_page/security/index.xml
XSS and SQL injection vulnerabilities
Affected Versions
For 2.11.x: versions before 2.11.9.6 are affected.
For 3.x: versions before 3.2.2.1 are affected.
CVE ID
CVE-2009-3696
CVE-2009-3697
XSS vulnerability
CVE-2009-2284
Insufficient output sanitizing when generating configuration file.
CVE-2009-1285
Insufficient output sanitizing when generating configuration file.
CVE-2009-1151
Cross-site scripting on export page using cookies.
CVE-2009-1150
HTTP Response Splitting and file inclusion vulnerability.
CVE-2009-1148 CVE-2009-1149
SQL injection through XSRF on several pages
CVE-2008-5621 CVE-2008-5622
XSS on a Designer component
CVE-2008-4775
XSS for Microsoft Internet Explorer on several places
CVE-2008-4326
Code execution vulnerability
CVE-2008-4096