phpMyAdmin prior to 2.9.1-rc1 has a libraries directory under the web document root with insufficient access control, which allows remote malicious users to obtain sensitive information via direct requests for certain files.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phpmyadmin phpmyadmin 2.8.0.1 |
||
phpmyadmin phpmyadmin 2.8.0.2 |
||
phpmyadmin phpmyadmin 2.8.0.3 |
||
phpmyadmin phpmyadmin 2.8.1_dev |
||
phpmyadmin phpmyadmin 2.8.4 |
||
phpmyadmin phpmyadmin 2.9.0_dev |
||
phpmyadmin phpmyadmin 2.8.1 |
||
phpmyadmin phpmyadmin 2.8.3 |