Oval Definition:oval:com.ubuntu.xenial:def:2020108040000000
Revision Date:2020-03-22Version:1
Title:CVE-2020-10804 on Ubuntu 16.04 LTS (xenial) - medium.
Description:In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability was found in retrieval of the current username (in libraries/classes/Server/Privileges.php and libraries/classes/UserPassword.php). A malicious user with access to the server could create a crafted username, and then trick the victim into performing specific actions with that user account (such as editing its privileges).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2020-10804
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND phpmyadmin package in xenial is affected and may need fixing.
  • BACK