CVE Vulnerabilities

CVE-2016-6618

Published: Dec 11, 2016 | Modified: Apr 12, 2025
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
NEGLIGIBLE
root.io logo minimus.io logo echo.ai logo

An issue was discovered in phpMyAdmin. The transformation feature allows a user to trigger a denial-of-service (DoS) attack against the server. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

Affected Software

NameVendorStart VersionEnd Version
PhpmyadminPhpmyadmin4.6.0 (including)4.6.0 (including)
PhpmyadminPhpmyadmin4.6.1 (including)4.6.1 (including)
PhpmyadminPhpmyadmin4.6.2 (including)4.6.2 (including)
PhpmyadminPhpmyadmin4.6.3 (including)4.6.3 (including)
PhpmyadminUbuntuesm-apps/xenial*
PhpmyadminUbuntuesm-infra-legacy/trusty*
PhpmyadminUbuntuprecise*
PhpmyadminUbuntutrusty*
PhpmyadminUbuntutrusty/esm*
PhpmyadminUbuntuupstream*
PhpmyadminUbuntuxenial*

References