Oval Definition:oval:org.opensuse.security:def:20162039
Revision Date:2022-06-30Version:1
Title:CVE-2016-2039
Description:

libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass intended access restrictions by predicting a value.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-2039
Mitre CVE-2016-2039
SUSE CVE-2016-2039
openSUSE-SU-2016:0357-1
openSUSE-SU-2016:0378-1
Platform(s):openSUSE 13.1
openSUSE 13.2
openSUSE Leap 42.1
openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND phpMyAdmin-4.4.15.4-46.1 is installed
  • Definition Synopsis
  • openSUSE 13.2 is installed
  • AND phpMyAdmin-4.4.15.4-27.1 is installed
  • Definition Synopsis
  • openSUSE Leap 42.1 is installed
  • AND Package Information
  • phpMyAdmin-4.4.15.4-13.1 is installed
  • AND phpMyAdmin is signed with openSUSE key
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND phpMyAdmin-4.6.5.2-1.1 is installed
  • BACK