Description
Multiple cross-site scripting (XSS) vulnerabilities in the partition-range implementation in templates/table/structure/display_partitions.phtml in the table-structure page in phpMyAdmin 4.6.x before 4.6.3 allow remote attackers to inject arbitrary web script or HTML via crafted table parameters.
Remediation
References
Related Vulnerabilities
MySQL CVE-2016-3452 Vulnerability (CVE-2016-3452)
WordPress Plugin AIT Themes-CSV Import/Export Arbitrary File Upload (3.0.3)
WordPress Plugin WP Plugin Info Card Unspecified Vulnerability (2.3.6)
Lighttpd Resource Management Errors Vulnerability (CVE-2010-0295)
WordPress Plugin All Post Contact Form Arbitrary File Upload (1.1.4)