ALT-PU-2017-1242-1
Package phpMyAdmin updated to version 4.6.6-alt1 for branch sisyphus in task 179151.
Closed vulnerabilities
Published: 2017-07-17
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2017-1000016
A weakness was discovered where an attacker can inject arbitrary values in to the browser cookies. This is a re-issue of an incomplete fix from PMASA-2016-18.
Severity: HIGH (7.5)
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
References:
Published: 2017-07-17
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2017-1000018
phpMyAdmin 4.0, 4.4., and 4.6 are vulnerable to a DOS attack in the replication status by using a specially crafted table name
Severity: HIGH (7.5)
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
References: