CVE-2017-1000016

HIGH7.5EPSS 0.49%

phpMyAdmin Cookie attribute injection attack

Published: 5/17/2022Modified: 5/7/2026

Description

A weakness was discovered where an attacker can inject arbitrary values in to the browser cookies. This is a re-issue of an incomplete fix from PMASA-2016-18.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

References (4)