Description
SQL Injection vulnerability in function getTableCreationQuery in CreateAddField.php in phpMyAdmin 5.x before 5.2.0 via the tbl_storage_engine or tbl_collation parameters to tbl_create.php.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2015-0373 Vulnerability (CVE-2015-0373)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-4962)
Oracle Database Server CVE-2006-5337 Vulnerability (CVE-2006-5337)
Oracle JRE CVE-2012-5069 Vulnerability (CVE-2012-5069)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6625)