phpMyAdmin CVE-2018-19970 Cross Site Scripting Vulnerability
BID:106181
CVE-2018-19970 |Info
phpMyAdmin CVE-2018-19970 Cross Site Scripting Vulnerability
| Bugtraq ID: | 106181 |
| Class: | Input Validation Error |
| CVE: |
CVE-2018-19970 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 07 2018 12:00AM |
| Updated: | Dec 07 2018 12:00AM |
| Credit: | YU-HSIANG HUANG, YUNG-HAO TSENG, and Eddie TC CHANG |
| Vulnerable: |
phpMyAdmin phpMyAdmin 4.8.3 phpMyAdmin phpMyAdmin 4.8.2 phpMyAdmin phpMyAdmin 4.8.1 phpMyAdmin phpMyAdmin 4.8 phpMyAdmin phpMyAdmin 4.7.8 phpMyAdmin phpMyAdmin 4.7.7 phpMyAdmin phpMyAdmin 4.7.6 phpMyAdmin phpMyAdmin 4.7.5 phpMyAdmin phpMyAdmin 4.7.4 phpMyAdmin phpMyAdmin 4.7.3 phpMyAdmin phpMyAdmin 4.7.2 phpMyAdmin phpMyAdmin 4.7.1 phpMyAdmin phpMyAdmin 4.7 phpMyAdmin phpMyAdmin 4.6.6 phpMyAdmin phpMyAdmin 4.6.5 phpMyAdmin phpMyAdmin 4.6.4 phpMyAdmin phpMyAdmin 4.6.2 phpMyAdmin phpMyAdmin 4.6.1 phpMyAdmin phpMyAdmin 4.6 phpMyAdmin phpMyAdmin 4.5.4 phpMyAdmin phpMyAdmin 4.5.2 phpMyAdmin phpMyAdmin 4.4.15 phpMyAdmin phpMyAdmin 4.4.13 phpMyAdmin phpMyAdmin 4.4.12 phpMyAdmin phpMyAdmin 4.4.11 phpMyAdmin phpMyAdmin 4.4.10 phpMyAdmin phpMyAdmin 4.4.9 phpMyAdmin phpMyAdmin 4.4.8 phpMyAdmin phpMyAdmin 4.4.7 phpMyAdmin phpMyAdmin 4.4.6 phpMyAdmin phpMyAdmin 4.4.5 phpMyAdmin phpMyAdmin 4.4.3 phpMyAdmin phpMyAdmin 4.4.2 phpMyAdmin phpMyAdmin 4.4.1 phpMyAdmin phpMyAdmin 4.4 phpMyAdmin phpMyAdmin 4.3.10 phpMyAdmin phpMyAdmin 4.2.11 phpMyAdmin phpMyAdmin 4.2.8 phpMyAdmin phpMyAdmin 4.2.6 phpMyAdmin phpMyAdmin 4.2.5 phpMyAdmin phpMyAdmin 4.2.4 phpMyAdmin phpMyAdmin 4.2.3 phpMyAdmin phpMyAdmin 4.2.2 phpMyAdmin phpMyAdmin 4.2.1 phpMyAdmin phpMyAdmin 4.2 phpMyAdmin phpMyAdmin 4.1.14 phpMyAdmin phpMyAdmin 4.1.13 phpMyAdmin phpMyAdmin 4.1.10 phpMyAdmin phpMyAdmin 4.1.9 phpMyAdmin phpMyAdmin 4.1.7 phpMyAdmin phpMyAdmin 4.1.6 phpMyAdmin phpMyAdmin 4.1.1 phpMyAdmin phpMyAdmin 4.1 phpMyAdmin phpMyAdmin 4.0.5 phpMyAdmin phpMyAdmin 4.0.4 phpMyAdmin phpMyAdmin 4.0.3 phpMyAdmin phpMyAdmin 4.0.2 phpMyAdmin phpMyAdmin 4.0.1 phpMyAdmin phpMyAdmin 4.0 phpMyAdmin phpMyAdmin 4.6.3 phpMyAdmin phpMyAdmin 4.5.5.1 phpMyAdmin phpMyAdmin 4.5.5.0 phpMyAdmin phpMyAdmin 4.5.3.1 phpMyAdmin phpMyAdmin 4.5.3.0 phpMyAdmin phpMyAdmin 4.5.1 phpMyAdmin phpMyAdmin 4.5.0.2 phpMyAdmin phpMyAdmin 4.5.0.1 phpMyAdmin phpMyAdmin 4.5.0 phpMyAdmin phpMyAdmin 4.5 phpMyAdmin phpMyAdmin 4.4.6.1 phpMyAdmin phpMyAdmin 4.4.6.0 phpMyAdmin phpMyAdmin 4.4.15.9 phpMyAdmin phpMyAdmin 4.4.15.8 phpMyAdmin phpMyAdmin 4.4.15.7 phpMyAdmin phpMyAdmin 4.4.15.6 phpMyAdmin phpMyAdmin 4.4.15.5 phpMyAdmin phpMyAdmin 4.4.15.4 phpMyAdmin phpMyAdmin 4.4.15.3 phpMyAdmin phpMyAdmin 4.4.15.2 phpMyAdmin phpMyAdmin 4.4.15.10 phpMyAdmin phpMyAdmin 4.4.15.1 phpMyAdmin phpMyAdmin 4.4.14.1 phpMyAdmin phpMyAdmin 4.4.14 phpMyAdmin phpMyAdmin 4.4.13.1 phpMyAdmin phpMyAdmin 4.4.1.1 phpMyAdmin phpMyAdmin 4.3.9 phpMyAdmin phpMyAdmin 4.3.8 phpMyAdmin phpMyAdmin 4.3.7 phpMyAdmin phpMyAdmin 4.3.6 phpMyAdmin phpMyAdmin 4.3.5 phpMyAdmin phpMyAdmin 4.3.13.2 phpMyAdmin phpMyAdmin 4.3.13.1 phpMyAdmin phpMyAdmin 4.3.11.1 phpMyAdmin phpMyAdmin 4.3.11 phpMyAdmin phpMyAdmin 4.3.1 phpMyAdmin phpMyAdmin 4.3.0 phpMyAdmin phpMyAdmin 4.2.9.1 phpMyAdmin phpMyAdmin 4.2.8.1 phpMyAdmin phpMyAdmin 4.2.7.1 phpMyAdmin phpMyAdmin 4.2.13.3 phpMyAdmin phpMyAdmin 4.2.13.2 phpMyAdmin phpMyAdmin 4.2.13.1 phpMyAdmin phpMyAdmin 4.2.12 phpMyAdmin phpMyAdmin 4.2.10.1 phpMyAdmin phpMyAdmin 4.1.8 phpMyAdmin phpMyAdmin 4.1.5 phpMyAdmin phpMyAdmin 4.1.3 phpMyAdmin phpMyAdmin 4.1.2 phpMyAdmin phpMyAdmin 4.1.14.8 phpMyAdmin phpMyAdmin 4.1.14.7 phpMyAdmin phpMyAdmin 4.1.14.6 phpMyAdmin phpMyAdmin 4.1.14.5 phpMyAdmin phpMyAdmin 4.1.14.4 phpMyAdmin phpMyAdmin 4.1.14.3 phpMyAdmin phpMyAdmin 4.1.14.2 phpMyAdmin phpMyAdmin 4.1.14.1 phpMyAdmin phpMyAdmin 4.1.12 phpMyAdmin phpMyAdmin 4.1.11 phpMyAdmin phpMyAdmin 4.0.9 phpMyAdmin phpMyAdmin 4.0.8 phpMyAdmin phpMyAdmin 4.0.7 phpMyAdmin phpMyAdmin 4.0.6 phpMyAdmin phpMyAdmin 4.0.4.2 phpMyAdmin phpMyAdmin 4.0.4.1 phpMyAdmin phpMyAdmin 4.0.10.9 phpMyAdmin phpMyAdmin 4.0.10.8 phpMyAdmin phpMyAdmin 4.0.10.7 phpMyAdmin phpMyAdmin 4.0.10.6 phpMyAdmin phpMyAdmin 4.0.10.5 phpMyAdmin phpMyAdmin 4.0.10.4 phpMyAdmin phpMyAdmin 4.0.10.3 phpMyAdmin phpMyAdmin 4.0.10.20 phpMyAdmin phpMyAdmin 4.0.10.2 phpMyAdmin phpMyAdmin 4.0.10.19 phpMyAdmin phpMyAdmin 4.0.10.18 phpMyAdmin phpMyAdmin 4.0.10.17 phpMyAdmin phpMyAdmin 4.0.10.16 phpMyAdmin phpMyAdmin 4.0.10.15 phpMyAdmin phpMyAdmin 4.0.10.14 phpMyAdmin phpMyAdmin 4.0.10.13 phpMyAdmin phpMyAdmin 4.0.10.12 phpMyAdmin phpMyAdmin 4.0.10.11 phpMyAdmin phpMyAdmin 4.0.10.10 phpMyAdmin phpMyAdmin 4.0.10.1 phpMyAdmin phpMyAdmin 4.0.10 |
| Not Vulnerable: |
phpMyAdmin phpMyAdmin 4.8.4 |
Exploit / POC
phpMyAdmin CVE-2018-19970 Cross Site Scripting Vulnerability
Attackers can exploit this issue by enticing an unsuspecting victim to follow a malicious URI.
Attackers can exploit this issue by enticing an unsuspecting victim to follow a malicious URI.
References
phpMyAdmin CVE-2018-19970 Cross Site Scripting Vulnerability
References:
References:
- phpMyAdmin Homepage (phpMyAdmin)
- PMASA-2018-8 (phpMyAdmin)