Wind River Support Network

HomeDefectsLIN6-10933
Fixed

LIN6-10933 : Security Advisory - phpMyAdmin - CVE-2016-2039

Created: Feb 24, 2016    Updated: Dec 3, 2018
Resolved Date: Mar 25, 2016
Found In Version: 6.0.0.28
Fix Version: 6.0.0.29
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass intended access restrictions by predicting a value.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-2039

Other Downloads


Live chat
Online