Description
setup/frames/index.inc.php in phpMyAdmin 4.0.10.x before 4.0.10.16, 4.4.15.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to conduct BBCode injection attacks against HTTP sessions via a crafted URI.
Remediation
References
Related Vulnerabilities
Drupal Core 9.0.x Multiple Cross-Site Scripting Vulnerabilities (9.0.0 - 9.0.5)
MySQL CVE-2016-0649 Vulnerability (CVE-2016-0649)
Oracle Database Server Other Vulnerability (CVE-2002-0857)
ASP.NET MVC Improper Input Validation Vulnerability (CVE-2017-0256)
WordPress Plugin WP Activity Log Premium SQL Injection (4.6.4)