Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
phpmyadmin phpmyadmin 4.2.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2014-4348
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.2.x prior to 4.2.4 allow remote authenticated users to inject arbitrary web script or HTML via a crafted (1) database name or (2) table name that is improperly handled after presence in (a) the favorite list or (...
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.2.0
Phpmyadmin Phpmyadmin 4.2.3
NA
CVE-2014-4954
Cross-site scripting (XSS) vulnerability in the PMA_getHtmlForActionLinks function in libraries/structure.lib.php in phpMyAdmin 4.2.x prior to 4.2.6 allows remote authenticated users to inject arbitrary web script or HTML via a crafted table comment that is improperly handled dur...
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.5
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.2.0
NA
CVE-2014-9219
Cross-site scripting (XSS) vulnerability in the redirection feature in url.php in phpMyAdmin 4.2.x prior to 4.2.13.1 allows remote malicious users to inject arbitrary web script or HTML via the url parameter.
Phpmyadmin Phpmyadmin 4.2.13
Phpmyadmin Phpmyadmin 4.2.10
Phpmyadmin Phpmyadmin 4.2.7
Phpmyadmin Phpmyadmin 4.2.7.1
Phpmyadmin Phpmyadmin 4.2.0
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.9
Phpmyadmin Phpmyadmin 4.2.9.1
Phpmyadmin Phpmyadmin 4.2.10.1
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.8
Phpmyadmin Phpmyadmin 4.2.8.1
Phpmyadmin Phpmyadmin 4.2.11
Phpmyadmin Phpmyadmin 4.2.12
Phpmyadmin Phpmyadmin 4.2.5
Phpmyadmin Phpmyadmin 4.2.6
NA
CVE-2014-4349
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.1.x prior to 4.1.14.1 and 4.2.x prior to 4.2.4 allow remote authenticated users to inject arbitrary web script or HTML via a crafted table name that is improperly handled after a (1) hide or (2) unhide action.
Phpmyadmin Phpmyadmin 4.2.0
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.1.10
Phpmyadmin Phpmyadmin 4.1.3
Phpmyadmin Phpmyadmin 4.1.4
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.6
Phpmyadmin Phpmyadmin 4.1.12
Phpmyadmin Phpmyadmin 4.1.14
Phpmyadmin Phpmyadmin 4.1.8
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.13
Phpmyadmin Phpmyadmin 4.1.2
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.9
NA
CVE-2014-4987
server_user_groups.php in phpMyAdmin 4.1.x prior to 4.1.14.2 and 4.2.x prior to 4.2.6 allows remote authenticated users to bypass intended access restrictions and read the MySQL user list via a viewUsers request.
Opensuse Opensuse 12.3
Opensuse Opensuse 13.1
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.1.3
Phpmyadmin Phpmyadmin 4.1.2
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.2.0
Phpmyadmin Phpmyadmin 4.1.9
Phpmyadmin Phpmyadmin 4.1.14.1
Phpmyadmin Phpmyadmin 4.1.14
Phpmyadmin Phpmyadmin 4.2.5
Phpmyadmin Phpmyadmin 4.1.8
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.6
Phpmyadmin Phpmyadmin 4.1.13
Phpmyadmin Phpmyadmin 4.1.12
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.4
NA
CVE-2014-5274
Cross-site scripting (XSS) vulnerability in the view operations page in phpMyAdmin 4.1.x prior to 4.1.14.3 and 4.2.x prior to 4.2.7.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted view name, related to js/functions.js.
Phpmyadmin Phpmyadmin 4.1.14
Phpmyadmin Phpmyadmin 4.1.2
Phpmyadmin Phpmyadmin 4.1.9
Phpmyadmin Phpmyadmin 4.1.4
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.6
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.1.10
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.12
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.1.13
Phpmyadmin Phpmyadmin 4.1.14.1
Phpmyadmin Phpmyadmin 4.1.3
Phpmyadmin Phpmyadmin 4.1.8
Phpmyadmin Phpmyadmin 4.1.14.2
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.6
Phpmyadmin Phpmyadmin 4.2.0
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.2.2
NA
CVE-2014-4955
Cross-site scripting (XSS) vulnerability in the PMA_TRI_getRowForList function in libraries/rte/rte_list.lib.php in phpMyAdmin 4.0.x prior to 4.0.10.1, 4.1.x prior to 4.1.14.2, and 4.2.x prior to 4.2.6 allows remote authenticated users to inject arbitrary web script or HTML via a...
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.4
Phpmyadmin Phpmyadmin 4.1.3
Phpmyadmin Phpmyadmin 4.1.2
Phpmyadmin Phpmyadmin 4.0.5
Phpmyadmin Phpmyadmin 4.0.4.2
Phpmyadmin Phpmyadmin 4.0.4.1
Phpmyadmin Phpmyadmin 4.0.4
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.10
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.0.0
Phpmyadmin Phpmyadmin 4.2.5
Phpmyadmin Phpmyadmin 4.0.10.0
Phpmyadmin Phpmyadmin 4.1.9
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.14
NA
CVE-2014-4986
Multiple cross-site scripting (XSS) vulnerabilities in js/functions.js in phpMyAdmin 4.0.x prior to 4.0.10.1, 4.1.x prior to 4.1.14.2, and 4.2.x prior to 4.2.6 allow remote authenticated users to inject arbitrary web script or HTML via a crafted (1) table name or (2) column name ...
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.4
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.10
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.0.4.2
Phpmyadmin Phpmyadmin 4.0.4.1
Phpmyadmin Phpmyadmin 4.0.0
Phpmyadmin Phpmyadmin 4.1.9
Phpmyadmin Phpmyadmin 4.1.8
Phpmyadmin Phpmyadmin 4.1.14.1
Phpmyadmin Phpmyadmin 4.1.14
Phpmyadmin Phpmyadmin 4.0.8
Phpmyadmin Phpmyadmin 4.0.7
Phpmyadmin Phpmyadmin 4.0.2
Phpmyadmin Phpmyadmin 4.0.10
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.6
Phpmyadmin Phpmyadmin 4.1.13
NA
CVE-2014-8960
Cross-site scripting (XSS) vulnerability in libraries/error_report.lib.php in the error-reporting feature in phpMyAdmin 4.1.x prior to 4.1.14.7 and 4.2.x prior to 4.2.12 allows remote authenticated users to inject arbitrary web script or HTML via a crafted filename.
Phpmyadmin Phpmyadmin 4.1.10
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.14.4
Phpmyadmin Phpmyadmin 4.1.14.5
Phpmyadmin Phpmyadmin 4.1.7
Phpmyadmin Phpmyadmin 4.1.8
Phpmyadmin Phpmyadmin 4.1.9
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.5
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.1.14.2
Phpmyadmin Phpmyadmin 4.1.14.3
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.6
Phpmyadmin Phpmyadmin 4.2.2
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.2.8.1
Phpmyadmin Phpmyadmin 4.2.9
Phpmyadmin Phpmyadmin 4.1.14
Phpmyadmin Phpmyadmin 4.1.14.1
Phpmyadmin Phpmyadmin 4.1.3
NA
CVE-2014-5273
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x prior to 4.0.10.2, 4.1.x prior to 4.1.14.3, and 4.2.x prior to 4.2.7.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) browse table page, related to js/sql.js; (2) ENUM edi...
Phpmyadmin Phpmyadmin 4.0.0
Phpmyadmin Phpmyadmin 4.0.1
Phpmyadmin Phpmyadmin 4.0.6
Phpmyadmin Phpmyadmin 4.0.7
Phpmyadmin Phpmyadmin 4.0.4.1
Phpmyadmin Phpmyadmin 4.0.4.2
Phpmyadmin Phpmyadmin 4.0.5
Phpmyadmin Phpmyadmin 4.0.10
Phpmyadmin Phpmyadmin 4.0.2
Phpmyadmin Phpmyadmin 4.0.8
Phpmyadmin Phpmyadmin 4.0.9
Phpmyadmin Phpmyadmin 4.0.3
Phpmyadmin Phpmyadmin 4.0.4
Phpmyadmin Phpmyadmin 4.0.10.1
Phpmyadmin Phpmyadmin 4.1.10
Phpmyadmin Phpmyadmin 4.1.11
Phpmyadmin Phpmyadmin 4.1.4
Phpmyadmin Phpmyadmin 4.1.5
Phpmyadmin Phpmyadmin 4.1.0
Phpmyadmin Phpmyadmin 4.1.1
Phpmyadmin Phpmyadmin 4.1.2
Phpmyadmin Phpmyadmin 4.1.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »