An issue was discovered in phpMyAdmin 5.1 before 5.1.2. An attacker can inject malicious code into aspects of the setup script, which can allow XSS or HTML injection.
References
Link | Resource |
---|---|
https://www.phpmyadmin.net/security/PMASA-2022-2/ | Patch Vendor Advisory |
Configurations
Information
Published : 2022-01-21 18:15
Updated : 2022-01-31 06:18
NVD link : CVE-2022-23808
Mitre link : CVE-2022-23808
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
phpmyadmin
- phpmyadmin