Korean
<< Back
VID 210245
Severity 30
Port 80, ...
Protocol TCP
Class CGI
Detailed Description The version of phpMyAdmin installed on the remote host has a series of weaknesses in the setup script, which can be abused to perform injection of Cross-Site Scripting (XSS) or HTML injection vulnerabilities.

* References:
https://www.phpmyadmin.net/security/PMASA-2022-2/

* Platforms Affected:
phpMyAdmin Prior to 5.1.2
Any operating system Any version
Recommendation Upgrade to the latest version of phpMyAdmin (5.1.2 or later), available from the phpMyAdmin Download Web page at http://www.phpmyadmin.net/home_page/downloads.php
Related URL CVE-2022-23808 (CVE)
Related URL 210245 (SecurityFocus)
Related URL (ISS)