Multiple cross-site scripting (XSS) vulnerabilities in the PMA_unInlineEditRow function in js/sql.js in phpMyAdmin 3.4.x before 3.4.5 allow remote authenticated users to inject arbitrary web script or HTML via a (1) database name, (2) table name, or (3) column name that is not properly handled after an inline-editing operation.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-2624 Multiple cross-site scripting (XSS) vulnerabilities in the PMA_unInlineEditRow function in js/sql.js in phpMyAdmin 3.4.x before 3.4.5 allow remote authenticated users to inject arbitrary web script or HTML via a (1) database name, (2) table name, or (3) column name that is not properly handled after an inline-editing operation.
Github GHSA Github GHSA GHSA-5p69-rmx8-7gw7 phpMyAdmin Multiple XSS Vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T23:37:48.491Z

Reserved: 2011-09-21T00:00:00

Link: CVE-2011-3592

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-12-26T02:59:06.003

Modified: 2025-04-12T10:46:40.837

Link: CVE-2011-3592

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses