Description
An issue was discovered in phpMyAdmin. With a crafted login request it is possible to inject BBCode in the login page. All 4.6.x versions (prior to 4.6.5) are affected.
Remediation
References
Related Vulnerabilities
WordPress Plugin Gallery-Flagallery Photo Portfolio 'facebook.php' Cross-Site Scripting (1.56)
WordPress Plugin Email Before Download SQL Injection (6.7)
WordPress Plugin UpdraftPlus WordPress Backup Privilege Escalation (1.23.2)
WordPress Plugin Nooz Cross-Site Scripting (1.6.0)
WordPress Plugin FormCraft-Contact Form Builder SQL Injection (1.0.5)