CVE-2009-1150
EPSS 0.75%phpmyadmin - several vulnerabilities
Published: 3/26/2009Modified: 5/7/2026
Description
Multiple cross-site scripting (XSS) vulnerabilities in the export page (display_export.lib.php) in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allow remote attackers to inject arbitrary web script or HTML via the pma_db_filename_template cookie.
Affected packages (2)
- Debian/phpmyadminfrom 0, < 4:3.1.3.1-1
- Debian/phpmyadminfrom 0, < 4:2.9.1.1-11