CVE Database
/

CVE-2005-0543

Back to search

CVE-2005-0543

Published: Feb 24, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web script via (1) the strServer, cfg[BgcolorOne], or strServerChoice parameters in select_server.lib.php, (2) the bg_color or row_no parameters in display_tbl_links.lib.php, the left_font_family parameter in theme_left.css.php, or the right_font_family parameter in theme_right.css.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

14382
third-party-advisory
x_refsource_SECUNIA
phpmyadmin-multiple-php-xss(19462)
vdb-entry
x_refsource_XF
12644
vdb-entry
x_refsource_BID
GLSA-200503-07
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now