Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.5.x before 3.5.2.2 allow remote authenticated users to inject arbitrary web script or HTML via a Table Operations (1) TRUNCATE or (2) DROP link for a crafted table name, (3) the Add Trigger popup within a Triggers page that references crafted table names, (4) an invalid trigger-creation attempt for a crafted table name, (5) crafted data in a table, or (6) a crafted tooltip label name during GIS data visualization, a different issue than CVE-2012-4345.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
phpMyAdmin 多个跨站脚本漏洞
Vulnerability Description
phpMyAdmin 3.5.2.2之前的3.5.x版本中存在多个跨站脚本(XSS)漏洞。远程认证用户可利用这些漏洞通过表操作(1)TRUNCATE或(2)DROP连接特制的表名(3)添加触发弹出特制表名的触发页面(4)尝试特制的表名中无效触发创建(5)表中特制的数据或(6)GIS数据可视化期间特制的工具提示标签,注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A