{
  "modified": "2025-08-09T19:01:28Z",
  "published": "2007-11-15T00:46:00Z",
  "id": "CVE-2007-5976",
  "details": "SQL injection vulnerability in db_create.php in phpMyAdmin before 2.11.2.1 allows remote authenticated users with CREATE DATABASE privileges to execute arbitrary SQL commands via the db parameter.",
  "references": [
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/27630"
    },
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/27753"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.digitrustgroup.com/advisories/tdg-advisory071108a.html"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.mandriva.com/security/advisories?name=MDKSA-2007:229"
    },
    {
      "type": "ADVISORY",
      "url": "http://www.vupen.com/english/advisories/2007/3824"
    },
    {
      "type": "FIX",
      "url": "http://secunia.com/advisories/27630"
    },
    {
      "type": "FIX",
      "url": "http://sourceforge.net/project/shownotes.php?release_id=553333"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/bid/26512"
    },
    {
      "type": "WEB",
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/38403"
    },
    {
      "type": "WEB",
      "url": "https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00777.html"
    }
  ]
}
