phpMyAdmin Info

phpMyAdmin was added to epel7 repo on 2014-07-21
Page updated: 2023-11-21 11:36
Repo Status - Overall Status

Source NVR: phpMyAdmin-4.4.15.10-6.el7 (2021-07-12)

Binary Packages

phpMyAdmin phpMyAdmin-4.4.15.10-6.el7

Bugs

1260798 NEW lack of php dependency for phpMyAdmin.noarch
1658992 NEW CVE-2018-19968 CVE-2018-19969 CVE-2018-19970 CVE-2018-12613 phpMyAdmin: Multiple security issues fixed in 4.8.4 [epel-all]
1671265 MODIFIED CVE-2019-6798 CVE-2019-6799 phpMyAdmin: Multiple issues fixed in 4.8.5 version [epel-all]
1717408 NEW CVE-2019-12616 phpMyAdmin: broken tag provided by attacker and pointing at the victim's phpMyAdmin database can cause CSRF through the victim [epel-all]
1717410 NEW CVE-2019-11768 phpMyAdmin: specially crafted database name in the designer feature can be used to trigger an SQL injection attack [epel-all]
1776256 NEW CVE-2019-18622 phpMyAdmin: a crafted database/table name can be used to trigger an SQL injection attack through the designer feature [epel-all]
1816101 NEW CVE-2020-10804 phpMyAdmin: SQL vulnerability was found in retrieval of the current username which could result privilege escalation [epel-all]
1816132 NEW CVE-2020-10803 phpMyAdmin: Inserting specially crafted code in database tables, retrieving and displaying resuts could result in XSS [epel-all]
1816145 NEW CVE-2020-10802 phpMyAdmin: SQL injection was found in generating certain queries for search actions which could result in malicious D M [epel-all]
1887252 NEW CVE-2020-26934 phpMyAdmin: XSS relating to the transformation feature [epel-all]
1887255 NEW CVE-2020-26935 phpMyAdmin: SQL injection vulnerability in SearchController [epel-all]
2045580 NEW CVE-2022-23807 phpMyAdmin: two-factor authentication bypass [epel-7]
2045584 NEW CVE-2022-23808 phpMyAdmin: multiple XSS and HTML injection attacks in setup script [epel-7]
2169542 NEW CVE-2023-25727 phpMyAdmin: XSS via crafted sql file [epel-7]

Install Failures