Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2023-6027

Disclosure Date: November 30, 2023 (last updated December 06, 2023)
A critical flaw has been identified in elijaa/phpmemcachedadmin affecting version 1.3.0, specifically related to a stored XSS vulnerability. This vulnerability allows malicious actors to insert a carefully crafted JavaScript payload. The issue arises from improper encoding of user-controlled entries in the "/pmcadmin/configure.php" parameter.
Attacker Value
Unknown

CVE-2023-6026

Disclosure Date: November 30, 2023 (last updated December 06, 2023)
A Path traversal vulnerability has been reported in elijaa/phpmemcachedadmin affecting version 1.3.0. This vulnerability allows an attacker to delete files stored on the server due to lack of proper verification of user-supplied input.
Attacker Value
Unknown

CVE-2014-8731

Disclosure Date: March 23, 2017 (last updated November 26, 2024)
PHPMemcachedAdmin 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via vectors related "serialized data and the last part of the concatenated filename," which creates a file in webroot.
0
Attacker Value
Unknown

CVE-2014-8732

Disclosure Date: November 17, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in phpMemcachedAdmin 1.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0