CVE-2013-3241
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 4.2%
from disclosure to weapon0 days
Published on NVDApr 26
1st PoCApr 25
exploitation probability
4.2%top 10% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
export.php (aka the export script) in phpMyAdmin 4.x before 4.0.0-rc3 overwrites global variables on the basis of the contents of the POST superglobal array, which allows remote authenticated users to inject values via a crafted request.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/25003⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.