Your submission was sent successfully! Close

CVE-2021-46709

Published: 13 March 2022

phpLiteAdmin through 1.9.8.2 allows XSS via the index.php newRows parameter (aka num or number).

Notes

AuthorNote
eslerm
waiting for testing on lp #1964710
Priority

Medium

CVSS 3 base score: 6.1

Status

Package Release Status
phpliteadmin
Launchpad, Ubuntu, Debian
bionic
Released (1.9.7.1-1ubuntu0.3)
focal
Released (1.9.8.2-1ubuntu0.20.04.1)
impish Ignored
(reached end-of-life)
jammy Not vulnerable
(1.9.8.2-2)
trusty Ignored
(out of standard support)
upstream
Released (1.9.8.2-2)
xenial Ignored
(out of standard support)
Patches:
upstream: https://bitbucket.org/mymedia2/phpliteadmin/commits/70d4a6895e1e22e85db92f491d219cf7ddf01584