6.8
CVSSv2

CVE-2004-1055

Published: 01/03/2005 Updated: 11/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 2.6.0-pl2 and previous versions allow remote malicious users to inject arbitrary web script or HTML via (1) the PmaAbsoluteUri parameter, (2) the zero_rows parameter in read_dump.php, (3) the confirm form, or (4) an error message generated by the internal phpMyAdmin parser.

Vulnerable Product Search on Vulmon Subscribe to Product

phpmyadmin phpmyadmin 2.5.0

phpmyadmin phpmyadmin 2.5.5 rc1

phpmyadmin phpmyadmin 2.5.7 pl1

phpmyadmin phpmyadmin 2.5.5

phpmyadmin phpmyadmin 2.5.7

phpmyadmin phpmyadmin 2.5.6 rc1

phpmyadmin phpmyadmin 2.6.0 pl1

phpmyadmin phpmyadmin 2.5.2

phpmyadmin phpmyadmin 2.5.1

phpmyadmin phpmyadmin 2.6.0 pl2

phpmyadmin phpmyadmin 2.5.4

phpmyadmin phpmyadmin 2.5.5 rc2

phpmyadmin phpmyadmin 2.5.5 pl1

gentoo linux 1.4