phpMyAdmin Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-19970 - Vulnerability Database
phpMyAdmin Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2018-19970
Medium
Reference:
CVE-2018-19970
Title:
phpMyAdmin Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
In phpMyAdmin before 4.8.4 an XSS vulnerability was found in the navigation tree where an attacker can deliver a payload to a user through a crafted database/table name.