VDB

DEBIAN-CVE-2013-5003

DEBIAN-CVE-2013-5003 PUBLISHED CVSS 8.600000381469727 HIGH

Multiple SQL injection vulnerabilities in phpMyAdmin 3.5.x before 3.5.8.2 and 4.0.x before 4.0.4.2 allow remote authenticated users to execute arbitrary SQL commands via (1) the scale parameter to pmd_pdf.php or (2) the pdf_page_number parameter to schema_export.php.

Risk Scores

CVSS 4.0
8.600000381469727
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Debian:14phpmyadmin0
Debian:11phpmyadmin0, 0, 0
Debian:13phpmyadmin0, 0, 0
Debian:12phpmyadmin0, 0, 0

Timeline

  • Jul 31, 2013 CVE Published
  • May 7, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›