CVE-2015-6830: phpMyAdmin

Medium severity, CVSS 5.0. EPSS: 10.4% chance of exploitation in the next 30 days.

libraries/plugins/auth/AuthenticationCookie.class.php in phpMyAdmin 4.3.x before 4.3.13.2 and 4.4.x before 4.4.14.1 allows remote attackers to bypass a multiple-reCaptcha protection mechanism against brute-force credential guessing by providing a correct response to a single reCaptcha.

Affected products

  • phpMyAdmin phpMyAdmin: version 4.3.0 only; version 4.3.1 only; version 4.3.2 only; version 4.3.3 only; version 4.3.4 only; version 4.3.5 only; …

Published 2015-09-14. Last modified 2026-06-17.