← back
CVE-2022-23808

CVE-2022-23808

CVSS 6.1 MEDIUMEPSS 7.9%CWE-79
Vexday Risk Score
28Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS 6.1EPSS 7.9%KEV nãoPoC Nuclei simMetasploit Patch referenciado
Lifecycle
22 Jan 2022Published on NVD
Recommendation: Plan a near-term fix — a public PoC already exists.
An issue was discovered in phpMyAdmin 5.1 before 5.1.2. An attacker can inject malicious code into aspects of the setup script, which can allow XSS or HTML injection.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →