FAIL › dossier
phpmyadmin
VENDORDossier not yet built — the RAG curator builds one for players with ≥2 failure events. The failure history and sentiment below are live.
FAILURE HISTORY · 4
| DATE | EVENT | SEV | SUMMARY |
|---|---|---|---|
| 2022-03-25 | CVE-2009-1151 | high | A crafted POST request to phpMyAdmin's setup script can inject arbitrary PHP code into the generated configuration file, enabling remote code execution. |
| 2022-03-25 | CVE-2009-1151 | high | A crafted POST request to phpMyAdmin's setup script can inject arbitrary PHP code into the generated configuration file, enabling remote code execution. |
| 2023-01-26 | CVE-2020-22452 | critical | SQL Injection vulnerability in function getTableCreationQuery in CreateAddField.php in phpMyAdmin 5.x before 5.2.0 via the tbl_storage_engine or tbl_collation parameters to tbl_create.php. |
| 2023-01-26 | CVE-2020-22452 | critical | SQL Injection vulnerability in function getTableCreationQuery in CreateAddField.php in phpMyAdmin 5.x before 5.2.0 via the tbl_storage_engine or tbl_collation parameters to tbl_create.php. |