Description
phpMyAdmin 4.6.x before 4.6.3, when the environment lacks a PHP_SELF value, allows remote attackers to conduct cookie-attribute injection attacks via a crafted URI.
Remediation
References
Related Vulnerabilities
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0119)
WordPress Plugin WP DSGVO Tools (GDPR) Cross-Site Scripting (3.1.23)
Oracle Database Server CVE-2006-0285 Vulnerability (CVE-2006-0285)
WordPress Plugin Elementor Website Builder Security Bypass (3.0.13)
WordPress Plugin EZ Portfolio Multiple Cross-Site Scripting Vulnerabilities (1.0.1)