PhpMyAdmin man-in-the-middle attack Vulnerability (CVE-2016-2562)
PhpMyAdmin man-in-the-middle attack Vulnerability (CVE-2016-2562)
Release date:
Updated on:
Affected Systems:
PhpMyAdmin <4.5.5.1
Description:
CVE (CAN) ID: CVE-2016-2562
Phpmyadmin is an online management tool for MySQL databases.
In versions earlier than phpmyadmin 4.5.5.1, the man-in-the-middle attack vulnerability exists in the implementation of API call GitHub. Attackers can exploit this vulnerability to perform man-in-the-middle attacks.
<* Source: Emanuel Bronshtein @ e3amn2l
*>
Suggestion:
Vendor patch:
PhpMyAdmin
----------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://www.phpmyadmin.net/security/PMASA-2016-13/
Example of LAMP architecture collaborative application-phpMyAdmin
PhpMyAdmin and Wordpress for LAMP applications
PhpMyAdmin logon timeout Solution
Install phpMyAdmin and Adminer in Ubuntu
Implement SSL functions based on LAMP and install phpMyAdmin
Configure the LAMP + phpMyAdmin PHP (5.5.9) development environment in Ubuntu 14.04
PhpMyAdmin details: click here
PhpMyAdmin: click here
This article permanently updates the link address: