AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-9860

MEDIUM · CVSS 5.9 EPSS 1.93%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-12-11 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.9. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.

CVE
CVE-2016-9860
Severity
MEDIUM
CVSS
5.9
EPSS
1.93%

Original NVD Description

An issue was discovered in phpMyAdmin. An unauthenticated user can execute a denial of service attack when phpMyAdmin is running with $cfg['AllowArbitraryServer']=true. All 4.6.x versions (prior to 4.6.5), 4.4.x versions (prior to 4.4.15.9), and 4.0.x versions (prior to 4.0.10.18) are affected.