CVE-2009-3697
EPSS 2.6%
Description
SQL injection vulnerability in the PDF schema generator functionality in phpMyAdmin 2.11.x before 2.11.9.6 and 3.x before 3.2.2.1 allows remote attackers to execute arbitrary SQL commands via unspecified interface parameters.
How to fix CVE-2009-3697
To remediate CVE-2009-3697, upgrade the affected package to a fixed version below.
- Debian/phpmyadmin—upgrade to 4:3.2.2.1-1 or later
Is CVE-2009-3697 being exploited?
Low — EPSS is 2.6%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 4:3.2.2.1-1