← Back

CVE-2016-5701

nvd nist
Published: Jul 3, 2016Modified: May 6, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

setup/frames/index.inc.php in phpMyAdmin 4.0.10.x before 4.0.10.16, 4.4.15.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to conduct BBCode injection attacks against HTTP sessions via a crafted URI.

Affected (62)

1 product
Phpmyadmin
2 products
Leap
Opensuse
Configuration A
28 vulnerable
Vulnerable SoftwareAffected Versions
Phpmyadmin
Version 4.0.0
Version 4.0.10.10
Version 4.0.10.11
Version 4.0.10.12
Version 4.0.10.13
Version 4.0.10.14
Version 4.0.10.15
Version 4.0.10.1
Version 4.0.10.2
Version 4.0.10.3
Version 4.0.10.4
Version 4.0.10.5
Version 4.0.10.6
Version 4.0.10.7
Version 4.0.10.8
Version 4.0.10.9
Version 4.0.10
Version 4.0.1
Version 4.0.2
Version 4.0.3
Version 4.0.4.1
Version 4.0.4.2
Version 4.0.4
Version 4.0.5
Version 4.0.6
Version 4.0.7
Version 4.0.8
Version 4.0.9
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 42.1
Opensuse
Version 13.1
Version 13.2
Configuration C
6 vulnerable
Vulnerable SoftwareAffected Versions
Phpmyadmin
Version 4.6.0
Version 4.6.0 alpha1
Version 4.6.0 rc1
Version 4.6.0 rc2
Version 4.6.1
Version 4.6.2
Configuration D
25 vulnerable
Vulnerable SoftwareAffected Versions
Phpmyadmin
Version 4.4.0
Version 4.4.1.1
Version 4.4.10
Version 4.4.11
Version 4.4.12
Version 4.4.13.1
Version 4.4.13
Version 4.4.14.1
Version 4.4.15.1
Version 4.4.15.2
Version 4.4.15.3
Version 4.4.15.4
Version 4.4.15.5
Version 4.4.15.6
Version 4.4.15
Version 4.4.1
Version 4.4.2
Version 4.4.3
Version 4.4.4
Version 4.4.5
Version 4.4.6.1
Version 4.4.6
Version 4.4.7
Version 4.4.8
Version 4.4.9

References (14)

Timeline

No history available yet.