phpMyAdmin: guessable user credentials
Package(s): | phpMyAdmin |
CVE #(s): | CVE-2015-6830
|
Created: | September 14, 2015 |
Updated: | October 5, 2015 |
Description: |
From the Red Hat bugzilla:
A vulnerability allowing to complete reCaptcha test and subsequently perform a brute force attack to guess user credentials without having to complete further reCaptcha tests was found. This vulnerability only affects installations with reCaptcha test enabled. Affected versions are 4.3.x (prior to 4.3.13.2) and 4.4.x (prior to 4.4.14.1) |
Alerts: |
|