An issue was discovered in phpMyAdmin. A user can be tricked into following a link leading to phpMyAdmin, which after authentication redirects to another malicious site. The attacker must sniff the user's valid phpMyAdmin token. All 4.0.x versions (prior to 4.0.10.16) are affected.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2016-12-11T02:00:00
Updated: 2024-08-06T00:25:14.478Z
Reserved: 2016-04-30T00:00:00
Link: CVE-2016-4412
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-12-11T02:59:09.030
Modified: 2024-11-21T02:52:04.430
Link: CVE-2016-4412
Redhat
No data.