Yesterday phpMyAdmin 3.3.5.1 and 2.11.10.1 were released to fix a XSS vulnerability exposed here:

http://packetstormsecurity.org/1008-...min335-xss.txt

6. IMPACT

Attackers can compromise currently logged-in user session and inject
arbitrary SQL statements (CREATE,INSERT,UPDATE,DELETE)
via crafted XSS payloads.

Download update here:
http://www.phpmyadmin.net/home_page/downloads.php


Regards,
NewEraCrakcer
NewEraCracker Reviewed by NewEraCracker on . phpMyAdmin 3.3.5 / 2.11.10 <= Cross Site Scripting (XSS) Vulnerability Yesterday phpMyAdmin 3.3.5.1 and 2.11.10.1 were released to fix a XSS vulnerability exposed here: http://packetstormsecurity.org/1008-exploits/phpmyadmin335-xss.txt Download update here: http://www.phpmyadmin.net/home_page/downloads.php Rating: 5