Description

A Reflected Cross-Site Scripting (XSS) vulnerability exists in phpMsAdmin version 2.2 in the database_mode.php file. An attacker can execute arbitrary web script or HTML via the dbname parameter after a user is authenticated.

INFO

Published Date :

2025-12-18T00:00:00.000Z

Last Modified :

2026-01-06T20:28:47.343Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-63947 vulnerability.

Vendors Products
Craigtaub
  • Phpmsadmin
Phpmsadmin
  • Phpmsadmin

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact