7.5
CVSSv3

CVE-2016-6616

Published: 11/12/2016 Updated: 08/07/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in phpMyAdmin. In the "User group" and "Designer" features, a user can execute an SQL injection attack against the account of the control user. All 4.6.x versions (before 4.6.4) and 4.4.x versions (before 4.4.15.8) are affected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phpmyadmin phpmyadmin 4.4.0

phpmyadmin phpmyadmin 4.4.1

phpmyadmin phpmyadmin 4.4.14.1

phpmyadmin phpmyadmin 4.4.15

phpmyadmin phpmyadmin 4.4.3

phpmyadmin phpmyadmin 4.4.4

phpmyadmin phpmyadmin 4.4.15.7

phpmyadmin phpmyadmin 4.4.13

phpmyadmin phpmyadmin 4.4.13.1

phpmyadmin phpmyadmin 4.4.15.5

phpmyadmin phpmyadmin 4.4.15.6

phpmyadmin phpmyadmin 4.4.2

phpmyadmin phpmyadmin 4.4.8

phpmyadmin phpmyadmin 4.4.9

phpmyadmin phpmyadmin 4.4.1.1

phpmyadmin phpmyadmin 4.4.10

phpmyadmin phpmyadmin 4.4.15.1

phpmyadmin phpmyadmin 4.4.15.2

phpmyadmin phpmyadmin 4.4.5

phpmyadmin phpmyadmin 4.4.6

phpmyadmin phpmyadmin 4.4.11

phpmyadmin phpmyadmin 4.4.12

phpmyadmin phpmyadmin 4.4.15.3

phpmyadmin phpmyadmin 4.4.15.4

phpmyadmin phpmyadmin 4.4.6.1

phpmyadmin phpmyadmin 4.4.7

phpmyadmin phpmyadmin 4.6.3

phpmyadmin phpmyadmin 4.6.1

phpmyadmin phpmyadmin 4.6.2

phpmyadmin phpmyadmin 4.6.0