|
|
Info |
Last Modified |
| 2 months ago |
|
|
|
|
|
Description |
phpMyAdmin contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered because export.php fails to validate user input to the "what" variable, which will disclose server file information resulting in a loss of confidentiality.
|
|
Classification |
Location:
Remote/Network Access Required
OSVDB:
Web Related
|
|
Solution |
Upgrade to version 2.5.6-rc1 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
|
|
Products |
|
phpMyAdmin
 |
2.2.7-pl1 |
2.5.3 |
2.5.4 |
2.5.5-pl1 |
|
|
|
|
|
|
|
Credit |
- Cedric Cochin - cco
netvigilance.com - netVigilance Inc
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|