An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/
table name can be used to trigger a SQL injection attack through the
designer feature (CVE-2019-18622).
- https://bugs.mageia.org/show_bug.cgi?id=25725
- https://www.cve.org/CVERecord?id=CVE-2019-18622
- 7/core/phpmyadmin-4.9.2-1.mga7
Get the latest Linux and open source security news straight to your inbox.