Multiple cross-site scripting (XSS) vulnerabilities in the PMA_unInlineEditRow function in js/sql.js in phpMyAdmin 3.4.x before 3.4.5 allow remote authenticated users to inject arbitrary web script or HTML via a (1) database name, (2) table name, or (3) column name that is not properly handled after an inline-editing operation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-12-26T02:00:00

Updated: 2024-08-06T23:37:48.491Z

Reserved: 2011-09-21T00:00:00

Link: CVE-2011-3592

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-12-26T02:59:06.003

Modified: 2024-11-21T01:30:48.710

Link: CVE-2011-3592

cve-icon Redhat

No data.