VDB
DEBIAN-CVE-2022-23807
DEBIAN-CVE-2022-23807
PUBLISHED
CVSS 4.300000190734863 MEDIUM
An issue was discovered in phpMyAdmin 4.9 before 4.9.8 and 5.1 before 5.1.2. A valid user who is already authenticated to phpMyAdmin can manipulate their account to bypass two-factor authentication for future login instances.
Risk Scores
CVSS 3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:14 | phpmyadmin | 0 |
| Debian:12 | phpmyadmin | 0, 0, 0 |
| Debian:13 | phpmyadmin | 0, 0, 0 |
| Debian:11 | phpmyadmin | 5.1.1+dfsg1, 5.1.1+dfsg1, 5.1.1+dfsg1 |
Timeline
- Jan 22, 2022 CVE Published
- May 7, 2026 CVE Updated