Remote Code Execution in phpMyAdmin Affected by Crafted Database Names
CVE-2016-6609
8.8HIGH
What is CVE-2016-6609?
A vulnerability was identified in phpMyAdmin where an intentionally crafted database name could allow an attacker to execute arbitrary PHP commands via the array export feature. This issue affects multiple versions of phpMyAdmin including 4.6.x, 4.4.x, and 4.0.x, putting users at risk of unauthorized actions within their database management interface.