Description

A SQL Injection vulnerability exists in phpMsAdmin version 2.2 in the database_mode.php file. An attacker can execute arbitrary SQL commands via the dbname parameter, potentially leading to information disclosure or database manipulation.

INFO

Published Date :

2025-12-18T00:00:00.000Z

Last Modified :

2025-12-18T20:43:59.468Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2025-63948 vulnerability.

Vendors Products
Phpmsadmin
  • Phpmsadmin

CVSS Vulnerability Scoring System