PublicDateAtUSN: 2020-03-22 04:15:00 UTC Candidate: CVE-2020-10804 PublicDate: 2020-03-22 04:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10804 https://www.phpmyadmin.net/security/PMASA-2020-2/ https://github.com/phpmyadmin/phpmyadmin/commit/89fbcd7c39e6b3979cdb2f64aa4cd5f4db27eaad https://github.com/phpmyadmin/phpmyadmin/commit/3258978c38bee8cb4b99f249dffac9c8aaea2d80 https://ubuntu.com/security/notices/USN-4639-1 Description: In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability was found in retrieval of the current username (in libraries/classes/Server/Privileges.php and libraries/classes/UserPassword.php). A malicious user with access to the server could create a crafted username, and then trick the victim into performing specific actions with that user account (such as editing its privileges). Ubuntu-Description: It was discovered that phpMyAdmin failed to sanitize certain input. An attacker could use this vulnerability to execute an SQL injection attack via a specially crafted username. Notes: Mitigation: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=954667 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H [8.0 HIGH] Patches_phpmyadmin: upstream_phpmyadmin: released (4:4.9.5+dfsg1-1) precise/esm_phpmyadmin: DNE trusty_phpmyadmin: ignored (out of standard support) trusty/esm_phpmyadmin: needed xenial_phpmyadmin: ignored (end of standard support, was needed) bionic_phpmyadmin: released (4:4.6.6-5ubuntu0.5) eoan_phpmyadmin: DNE focal_phpmyadmin: not-affected (4:4.9.5+dfsg1-1ubuntu1) groovy_phpmyadmin: not-affected (4:4.9.5+dfsg1-1ubuntu1) hirsute_phpmyadmin: not-affected (4:4.9.5+dfsg1-1ubuntu1) impish_phpmyadmin: not-affected (4:4.9.5+dfsg1-1ubuntu1) jammy_phpmyadmin: not-affected (4:4.9.5+dfsg1-1ubuntu1) devel_phpmyadmin: not-affected (4:4.9.5+dfsg1-1ubuntu1)