Description
Cross-site scripting (XSS) vulnerability in phpMyAdmin before 2.11.7, when register_globals is enabled and .htaccess support is disabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving scripts in libraries/.
Remediation
References
Related Vulnerabilities
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-0057)
WebLogic Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-10152)
WordPress Plugin Simple Behance Portfolio Cross-Site Scripting (0.2)
Oracle HTTP Server Out-of-bounds Read Vulnerability (CVE-2020-5360)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3546)