← Back

CVE-2012-5368

nvd nist
Published: Oct 25, 2012Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained through an HTTP session to phpmyadmin.net without SSL, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by modifying this code.

Affected (5)

1 product
Phpmyadmin
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Phpmyadmin
Version 3.5.0.0
Version 3.5.1.0
Version 3.5.2.0
Version 3.5.2.1
Version 3.5.2.2

Timeline

No history available yet.