CVE-2016-6629
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker could reuse certain cookie values in a way of bypassing the servers defined by ArbitraryServerRegexp. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.
Se descubrió un problema en phpMyAdmin que implica la directiva de configuración $cfg['ArbitraryServerRegexp']. Un atacante podría reutilizar ciertos valores de cookie en una forma de eludir los servidores definidos por ArbitraryServerRegexp. Todas las versiones 4.6.x (anteriores a 4.6.4), versiones 4.4.x (anteriores a 4.4.15.8) y versiones 4.0.x (anteriores a 4.0.10.17) están afectadas.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-08-06 CVE Reserved
- 2016-12-11 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-254: 7PK - Security Features
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/92493 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.phpmyadmin.net/security/PMASA-2016-52 | 2017-07-01 |
URL | Date | SRC |
---|---|---|
https://security.gentoo.org/glsa/201701-32 | 2017-07-01 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.6.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.6.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.6.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.6.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.6.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.6.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.6.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.6.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.4" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.4.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.4.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.4.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.4.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.5" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.6 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.6" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.7 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.7" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.8 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.8" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.9 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.9" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.4" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.5" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.6 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.6" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.7 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.7" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.8 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.8" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.9 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.9" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.10 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.10" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.11 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.11" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.12 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.12" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.13 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.13" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.14 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.14" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.15 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.15" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.0.10.16 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.0.10.16" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.1.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.1.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.4" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.5" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.6 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.6" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.6.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.6.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.7 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.7" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.8 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.8" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.9 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.9" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.10 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.10" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.11 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.11" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.12 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.12" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.13 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.13" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.13.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.13.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.14 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.14" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.14.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.14.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.4" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.5" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.6 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.6" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 4.4.15.7 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "4.4.15.7" | - |
Affected
|