Wind River Support Network

HomeDefectsLIN8-2850
Fixed

LIN8-2850 : Security Advisory - phpMyAdmin - CVE-2016-2039

Created: Feb 24, 2016    Updated: Dec 3, 2018
Resolved Date: Mar 25, 2016
Found In Version: 8.0
Fix Version: 8.0.0.4
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Userspace

Description

libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass intended access restrictions by predicting a value.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-2039

Other Downloads


CVEs


Live chat
Online