Wind River Support Network

HomeDefectsLIN7-5692
Fixed

LIN7-5692 : Security Advisory - phpMyAdmin - CVE-2016-2039

Created: Feb 24, 2016    Updated: Sep 8, 2018
Resolved Date: Mar 25, 2016
Found In Version: 7.0.0.13
Fix Version: 7.0.0.14
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass intended access restrictions by predicting a value.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-2039

Other Downloads


CVEs


Live chat
Online