Wind River Support Network

HomeDefectsLIN8-8552
Acknowledged

LIN8-8552 : Security Advisory - phpmyadmin - CVE-2017-1000499

Created: Jan 14, 2018    Updated: May 29, 2018
Found In Version: 8.0.0.24
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Userspace

Description

phpMyAdmin versions 4.7.x (prior to 4.7.6.1/4.7.7) are vulnerable to a CSRF weakness. By deceiving a user to click on a crafted URL, it is possible to perform harmful database operations such as deleting records, dropping/truncating tables etc.

https://nvd.nist.gov/vuln/detail/CVE-2017-1000499

CVEs


Live chat
Online