CVE-2016-5701: Opensuse Leap

Medium severity, CVSS 6.1. EPSS: 1.5% chance of exploitation in the next 30 days.

setup/frames/index.inc.php in phpMyAdmin 4.0.10.x before 4.0.10.16, 4.4.15.x before 4.4.15.7, and 4.6.x before 4.6.3 allows remote attackers to conduct BBCode injection attacks against HTTP sessions via a crafted URI.

Affected products

  • Opensuse Leap: version 42.1 only
  • Opensuse Opensuse: version 13.1 only; version 13.2 only
  • phpMyAdmin phpMyAdmin: version 4.0.0 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only; version 4.0.4 only; version 4.0.4.1 only; …

Published 2016-07-03. Last modified 2026-06-17.