Get a Pentest and security assessment of your IT network.

News

phpMyAdmin Plugs SQL Injection, XSS Flaws

A new version of phpMyAdmin has been released to plug two security holes that could lead to cross-site scripting attacks. One of the vulnerabilities allow remote hackers to inject arbitrary web script or HTML via a crafted table name. The second issue is a vulnerability that allows remote attackers to inject SQL via various interface parameters of the PDF Scheming tool. The most-rewarded flaw is XSS, which is among those that are relatively cheap for attackers to identify. The group urged all users to upgrade to PHP 3.2.1 or 2.11.6 immediately.

Source: https://threatpost.com/phpmyadmin-plugs-sql-injection-xss-flaws-101609/72336/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Tracking wearable devices could be very easy via Bluetooth Low Energy

News

Social Networks Part 1 Who exactly are you disclosing your life story to?