Skip to main content

PMASA-2017-9 - XSRF/CSRF vulnerability in phpMyAdmin

Comments

4 comments

  • quizknows
    Pretty scary URL for an XSRF bug :/
    0
  • cPanelMichael
    Hello, The instance of phpMyAdmin we provide isn't vulnerable to CSRF/XSRF attacks like the one in this vulnerability because we use security tokens:
    0
  • cPanelMichael
    Hello, To update, phpMyAdmin version 4.7.7 is included with cPanel version 70: Fixed case CPANEL-15496: Update cpanel-phpmyadmin to 4.7.7-1.cp1166. Thank you.
    0
  • cPanelMichael
    Hello, phpMyAdmin version 4.7.7 is now published to cPanel version 68.0.29: Fixed case CPANEL-15496: Update cpanel-phpmyadmin to 4.7.7-1.cp1166. Thank you.
    0

Please sign in to leave a comment.