phpMyAdmin Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2016-5701 - Vulnerability Database

phpMyAdmin Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2016-5701

Medium
Reference: CVE-2016-5701
Title: phpMyAdmin Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability
Overview:

setup/frames/index.inc.php in phpMyAdmin 4.0.10.x before 4.0.10.16 4.4.15.x before 4.4.15.7 and 4.6.x before 4.6.3 allows remote attackers to conduct BBCode injection attacks against HTTP sessions via a crafted URI.