5.3
CVE-2016-5730
- EPSS 1.32%
- Veröffentlicht 03.07.2016 01:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
phpMyAdmin 4.0.x before 4.0.10.16, 4.4.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to obtain sensitive information via vectors involving (1) an array value to FormDisplay.php, (2) incorrect data to validate.php, (3) unexpected data to Validator.php, (4) a missing config directory during setup, or (5) an incorrect OpenID identifier data type, which reveals the full path in an error message.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Phpmyadmin ≫ Phpmyadmin Version4.0.0
Phpmyadmin ≫ Phpmyadmin Version4.0.1
Phpmyadmin ≫ Phpmyadmin Version4.0.2
Phpmyadmin ≫ Phpmyadmin Version4.0.3
Phpmyadmin ≫ Phpmyadmin Version4.0.4
Phpmyadmin ≫ Phpmyadmin Version4.0.4.1
Phpmyadmin ≫ Phpmyadmin Version4.0.4.2
Phpmyadmin ≫ Phpmyadmin Version4.0.5
Phpmyadmin ≫ Phpmyadmin Version4.0.6
Phpmyadmin ≫ Phpmyadmin Version4.0.7
Phpmyadmin ≫ Phpmyadmin Version4.0.8
Phpmyadmin ≫ Phpmyadmin Version4.0.9
Phpmyadmin ≫ Phpmyadmin Version4.0.10
Phpmyadmin ≫ Phpmyadmin Version4.0.10.1
Phpmyadmin ≫ Phpmyadmin Version4.0.10.2
Phpmyadmin ≫ Phpmyadmin Version4.0.10.3
Phpmyadmin ≫ Phpmyadmin Version4.0.10.4
Phpmyadmin ≫ Phpmyadmin Version4.0.10.5
Phpmyadmin ≫ Phpmyadmin Version4.0.10.6
Phpmyadmin ≫ Phpmyadmin Version4.0.10.7
Phpmyadmin ≫ Phpmyadmin Version4.0.10.8
Phpmyadmin ≫ Phpmyadmin Version4.0.10.9
Phpmyadmin ≫ Phpmyadmin Version4.0.10.10
Phpmyadmin ≫ Phpmyadmin Version4.0.10.11
Phpmyadmin ≫ Phpmyadmin Version4.0.10.12
Phpmyadmin ≫ Phpmyadmin Version4.0.10.13
Phpmyadmin ≫ Phpmyadmin Version4.0.10.14
Phpmyadmin ≫ Phpmyadmin Version4.0.10.15
Phpmyadmin ≫ Phpmyadmin Version4.6.0
Phpmyadmin ≫ Phpmyadmin Version4.6.0 Updatealpha1
Phpmyadmin ≫ Phpmyadmin Version4.6.0 Updaterc1
Phpmyadmin ≫ Phpmyadmin Version4.6.0 Updaterc2
Phpmyadmin ≫ Phpmyadmin Version4.6.1
Phpmyadmin ≫ Phpmyadmin Version4.6.2
Phpmyadmin ≫ Phpmyadmin Version4.4.0
Phpmyadmin ≫ Phpmyadmin Version4.4.1
Phpmyadmin ≫ Phpmyadmin Version4.4.1.1
Phpmyadmin ≫ Phpmyadmin Version4.4.2
Phpmyadmin ≫ Phpmyadmin Version4.4.3
Phpmyadmin ≫ Phpmyadmin Version4.4.4
Phpmyadmin ≫ Phpmyadmin Version4.4.5
Phpmyadmin ≫ Phpmyadmin Version4.4.6
Phpmyadmin ≫ Phpmyadmin Version4.4.6.1
Phpmyadmin ≫ Phpmyadmin Version4.4.7
Phpmyadmin ≫ Phpmyadmin Version4.4.8
Phpmyadmin ≫ Phpmyadmin Version4.4.9
Phpmyadmin ≫ Phpmyadmin Version4.4.10
Phpmyadmin ≫ Phpmyadmin Version4.4.11
Phpmyadmin ≫ Phpmyadmin Version4.4.12
Phpmyadmin ≫ Phpmyadmin Version4.4.13
Phpmyadmin ≫ Phpmyadmin Version4.4.13.1
Phpmyadmin ≫ Phpmyadmin Version4.4.14.1
Phpmyadmin ≫ Phpmyadmin Version4.4.15
Phpmyadmin ≫ Phpmyadmin Version4.4.15.1
Phpmyadmin ≫ Phpmyadmin Version4.4.15.2
Phpmyadmin ≫ Phpmyadmin Version4.4.15.3
Phpmyadmin ≫ Phpmyadmin Version4.4.15.4
Phpmyadmin ≫ Phpmyadmin Version4.4.15.5
Phpmyadmin ≫ Phpmyadmin Version4.4.15.6
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.32% | 0.792 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 5.3 | 3.9 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.