VID |
210245 |
Severity |
30 |
Port |
80, ... |
Protocol |
TCP |
Class |
CGI |
Detailed Description |
The version of phpMyAdmin installed on the remote host has a series of weaknesses in the setup script, which can be abused to perform injection of Cross-Site Scripting (XSS) or HTML injection vulnerabilities.
* References: https://www.phpmyadmin.net/security/PMASA-2022-2/
* Platforms Affected: phpMyAdmin Prior to 5.1.2 Any operating system Any version |
Recommendation |
Upgrade to the latest version of phpMyAdmin (5.1.2 or later), available from the phpMyAdmin Download Web page at http://www.phpmyadmin.net/home_page/downloads.php |
Related URL |
CVE-2022-23808 (CVE) |
Related URL |
210245 (SecurityFocus) |
Related URL |
(ISS) |
|