Upstream information
Description
The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.SUSE information
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
National Vulnerability Database | |
---|---|
Base Score | 5 |
Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Access Vector | Network |
Access Complexity | Low |
Authentication | None |
Confidentiality Impact | None |
Integrity Impact | Partial |
Availability Impact | None |
SUSE Security Advisories:
- openSUSE-SU-2015:1929-1, published Fri, 6 Nov 2015 18:13:04 +0100 (CET)
- openSUSE-SU-2015:1930-1, published Fri, 6 Nov 2015 18:13:20 +0100 (CET)
List of released packages
Product(s) | Fixed package version(s) | References |
---|---|---|
openSUSE Tumbleweed |
| Patchnames: openSUSE Tumbleweed GA phpMyAdmin-4.6.5.2-1.1 |
SUSE Timeline for this CVE
CVE page created: Mon Oct 26 00:19:00 2015CVE page last modified: Fri Oct 7 12:47:19 2022