Oval Definition:oval:org.opensuse.security:def:20081149
Revision Date:2015-11-16Version:1
Title:CVE-2008-1149
Description:
phpMyAdmin before 2.11.5 accesses $_REQUEST to obtain some parameters instead of $_GET and $_POST, which allows attackers in the same domain to override certain variables and conduct SQL injection and Cross-Site Request Forgery (CSRF) attacks by using crafted cookies.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2008-1149
Platform(s):openSUSE 10.2
openSUSE 10.3
openSUSE 11.0
Product(s):
Definition Synopsis
  • suse110 is installed
  • AND phpMyAdmin less than 2.11.9.4-0.1
  • BACK