Description
phpMyAdmin 4.6.x before 4.6.3, when the environment lacks a PHP_SELF value, allows remote attackers to conduct cookie-attribute injection attacks via a crafted URI.
Remediation
References
Related Vulnerabilities
WordPress Plugin Contact Form 7 International Sms Integration Cross-Site Scripting (1.2)
WebLogic CVE-2018-2893 Vulnerability (CVE-2018-2893)
WordPress Plugin Accept Stripe Donation-AidWP Cross-Site Request Forgery (3.1.5)
PHP Other Vulnerability (CVE-2007-1717)
WordPress Plugin Brizy-Page Builder Multiple Vulnerabilities (2.4.43)