CVE-2022-23807 PUBLISHED

An issue was discovered in phpMyAdmin 4.9 before 4.9.8 and 5.1 before 5.1.2. A valid user who is already authenticated to phpMyAdmin can manipulate their account to bypass two-factor authentication for future login instances.

EPSS 0.15% · 34.9th percentile

Risk Scores

EPSS Score
0.15%
34.9th percentile

Affected Products

VendorProductVersions
Bitnamiphpmyadmin4.9.0, 5.1.0
Bitnamiphpmyadmin4.9.0, 5.1.0

Timeline

References

Open in Interactive Console →