CVE-2020-11441
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 2.4%
exploitation probability
2.4%top 17% of all CVEs
observed exploitation
nono source reports it
phpMyAdmin 5.0.2 allows CRLF injection, as demonstrated by %0D%0Astring%0D%0A inputs to login form fields causing CRLF sequences to be reflected on an error page. NOTE: the vendor states "I don't see anything specifically exploitable.
Affected products
n/a · n/a