A vulnerability classified as problematic was found in phpMiniAdmin up to 1.8.120510. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting. The attack can be launched remotely. Upgrading to version 1.9.140405 is able to address this issue. It is recommended to upgrade the affected component. The identifier VDB-225001 was assigned to this vulnerability.
References
| Link | Resource |
|---|---|
| https://vuldb.com/?id.225001 | Third Party Advisory VDB Entry |
| https://vuldb.com/?ctiid.225001 | Permissions Required VDB Entry |
| https://github.com/osalabs/phpminiadmin/blob/master/changelog.md | Release Notes |
Configurations
History
13 Apr 2023, 17:40
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
| CPE | cpe:2.3:a:phpminiadmin_project:phpminiadmin:*:*:*:*:*:*:*:* | |
| First Time |
Phpminiadmin Project phpminiadmin
Phpminiadmin Project |
|
| References | (MISC) https://vuldb.com/?id.225001 - Third Party Advisory, VDB Entry | |
| References | (MISC) https://vuldb.com/?ctiid.225001 - Permissions Required, VDB Entry | |
| References | (MISC) https://github.com/osalabs/phpminiadmin/blob/master/changelog.md - Release Notes |
06 Apr 2023, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-04-06 21:15
Updated : 2024-05-17 00:58
NVD link : CVE-2014-125094
Mitre link : CVE-2014-125094
JSON object : View
Products Affected
phpminiadmin_project
- phpminiadmin
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
