AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-10802

HIGH · CVSS 8 EPSS 1.82%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2020-03-22 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-10802
Severity
HIGH
CVSS
8
EPSS
1.82%

Original NVD Description

In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability has been discovered where certain parameters are not properly escaped when generating certain queries for search actions in libraries/classes/Controllers/Table/TableSearchController.php. An attacker can generate a crafted database or table name. The attack can be performed if a user attempts certain search operations on the malicious database or table.