Description
An issue was discovered in js/designer/move.js in phpMyAdmin before 4.8.2. A Cross-Site Scripting vulnerability has been found where an attacker can use a crafted database name to trigger an XSS attack when that database is referenced from the Designer feature.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5456 | An issue was discovered in js/designer/move.js in phpMyAdmin before 4.8.2. A Cross-Site Scripting vulnerability has been found where an attacker can use a crafted database name to trigger an XSS attack when that database is referenced from the Designer feature. |
Github GHSA |
GHSA-vxj6-pm6r-23hq | phpMyAdmin XSS Vulnerability |
Ubuntu USN |
USN-4843-1 | phpMyAdmin vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T08:38:06.323Z
Reserved: 2018-06-19T00:00:00.000Z
Link: CVE-2018-12581
No data.
Status : Modified
Published: 2018-06-21T20:29:00.263
Modified: 2024-11-21T03:45:28.650
Link: CVE-2018-12581
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN