Security Advisory

CVE-2016-4412

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-12-11 02:00:00
Last updated 2024-08-06 00:25:14
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

An issue was discovered in phpMyAdmin. A user can be tricked into following a link leading to phpMyAdmin, which after authentication redirects to another malicious site. The attacker must sniff the user's valid phpMyAdmin token. All 4.0.x versions (prior to 4.0.10.16) are affected.