This script is Copyright (C) 2011 Tenable Network Security, Inc.
The remote web server contains a PHP application that is affected by
a cross-site scripting vulnerability.
The version of phpMyAdmin hosted on the remote server is 3.4.x prior
to 3.4.6 and is affected by a cross-site scripting vulnerability. The
'Servers-0-verbose' parameter is not properly sanitized by methods in
'libraries/config/ConfigFile.class.php' as called by the script
'setup/index.php'. Persistent cross-site scripting is possible if
improper filesystem permissions are in place.
See also :
Apply the vendor patches or upgrade to phpMyAdmin version 3.4.6 or
Risk factor :
Medium / CVSS Base Score : 4.3
CVSS Temporal Score : 3.6
Public Exploit Available : true