CVE Vulnerabilities

CVE-2015-7873

Published: Oct 28, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The redirection feature in url.php in phpMyAdmin 4.4.x before 4.4.15.1 and 4.5.x before 4.5.1 allows remote attackers to spoof content via the url parameter.

Affected Software

NameVendorStart VersionEnd Version
PhpmyadminPhpmyadmin4.4.0 (including)4.4.0 (including)
PhpmyadminPhpmyadmin4.4.1 (including)4.4.1 (including)
PhpmyadminPhpmyadmin4.4.1.1 (including)4.4.1.1 (including)
PhpmyadminPhpmyadmin4.4.2 (including)4.4.2 (including)
PhpmyadminPhpmyadmin4.4.3 (including)4.4.3 (including)
PhpmyadminPhpmyadmin4.4.4 (including)4.4.4 (including)
PhpmyadminPhpmyadmin4.4.5 (including)4.4.5 (including)
PhpmyadminPhpmyadmin4.4.6 (including)4.4.6 (including)
PhpmyadminPhpmyadmin4.4.6.1 (including)4.4.6.1 (including)
PhpmyadminPhpmyadmin4.4.7 (including)4.4.7 (including)
PhpmyadminPhpmyadmin4.4.8 (including)4.4.8 (including)
PhpmyadminPhpmyadmin4.4.9 (including)4.4.9 (including)
PhpmyadminPhpmyadmin4.4.10 (including)4.4.10 (including)
PhpmyadminPhpmyadmin4.4.11 (including)4.4.11 (including)
PhpmyadminPhpmyadmin4.4.12 (including)4.4.12 (including)
PhpmyadminPhpmyadmin4.4.13 (including)4.4.13 (including)
PhpmyadminPhpmyadmin4.4.13.1 (including)4.4.13.1 (including)
PhpmyadminPhpmyadmin4.4.14 (including)4.4.14 (including)
PhpmyadminPhpmyadmin4.4.14.1 (including)4.4.14.1 (including)
PhpmyadminPhpmyadmin4.4.15 (including)4.4.15 (including)
PhpmyadminPhpmyadmin4.5.0 (including)4.5.0 (including)
PhpmyadminPhpmyadmin4.5.0.1 (including)4.5.0.1 (including)
PhpmyadminPhpmyadmin4.5.0.2 (including)4.5.0.2 (including)
PhpmyadminUbuntuprecise*
PhpmyadminUbuntuupstream*
PhpmyadminUbuntuvivid*
PhpmyadminUbuntuwily*

References