CVE-2010-4480
EPSS 5.8%
描述
error.php in PhpMyAdmin 3.3.8.1, and other versions before 3.4.0-beta1, allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted BBcode tag containing "@" characters, as demonstrated using "[a@url@page]".
如何修補 CVE-2010-4480
要修補 CVE-2010-4480,請將受影響套件升級到下列已修補版本。
- Debian/phpmyadmin—升級至 4:3.3.7-3 或更新版本
CVE-2010-4480 正在被利用嗎?
中等 — EPSS 為 5.8%,可持續追蹤但非最高優先。
受影響套件(1)
- from 0, < 4:3.3.7-3