Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.5.x before 3.5.3 allow remote authenticated users to inject arbitrary web script or HTML via a crafted name of (1) an event, (2) a procedure, or (3) a trigger.
{
"cwe_ids": [
"CWE-79"
],
"github_reviewed_at": "2023-08-29T21:40:33Z",
"nvd_published_at": "2012-10-25T10:51:00Z",
"github_reviewed": true,
"severity": "LOW"
}