A vulnerability classified as problematic was found in phpMiniAdmin up to 1.8.120510. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting. The attack can be launched remotely. Upgrading to version 1.9.140405 is able to address this issue. It is recommended to upgrade the affected component. The identifier VDB-225001 was assigned to this vulnerability.
References
Link | Resource |
---|---|
https://github.com/osalabs/phpminiadmin/blob/master/changelog.md | Release Notes |
https://vuldb.com/?ctiid.225001 | Permissions Required VDB Entry |
https://vuldb.com/?id.225001 | Third Party Advisory VDB Entry |
https://github.com/osalabs/phpminiadmin/blob/master/changelog.md | Release Notes |
https://vuldb.com/?ctiid.225001 | Permissions Required VDB Entry |
https://vuldb.com/?id.225001 | Third Party Advisory VDB Entry |
Configurations
History
21 Nov 2024, 02:03
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/osalabs/phpminiadmin/blob/master/changelog.md - Release Notes | |
References | () https://vuldb.com/?ctiid.225001 - Permissions Required, VDB Entry | |
References | () https://vuldb.com/?id.225001 - Third Party Advisory, VDB Entry | |
CVSS |
v2 : v3 : |
v2 : 4.0
v3 : 3.5 |
13 Apr 2023, 17:40
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://vuldb.com/?id.225001 - Third Party Advisory, VDB Entry | |
References | (MISC) https://vuldb.com/?ctiid.225001 - Permissions Required, VDB Entry | |
References | (MISC) https://github.com/osalabs/phpminiadmin/blob/master/changelog.md - Release Notes | |
CPE | cpe:2.3:a:phpminiadmin_project:phpminiadmin:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
First Time |
Phpminiadmin Project
Phpminiadmin Project phpminiadmin |
06 Apr 2023, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-04-06 21:15
Updated : 2024-11-21 02:03
NVD link : CVE-2014-125094
Mitre link : CVE-2014-125094
CVE.ORG link : CVE-2014-125094
JSON object : View
Products Affected
phpminiadmin_project
- phpminiadmin
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')