10
CVSSv2

CVE-2008-7252

Published: 19/01/2010 Updated: 28/01/2011
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

libraries/File.class.php in phpMyAdmin 2.11.x prior to 2.11.10 uses predictable filenames for temporary files, which has unknown impact and attack vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

phpmyadmin phpmyadmin 2.11.3rc1

phpmyadmin phpmyadmin 2.11.3

phpmyadmin phpmyadmin 2.11.9

phpmyadmin phpmyadmin 2.11.0beta1

phpmyadmin phpmyadmin 2.11.9.0

phpmyadmin phpmyadmin 2.11.6.0

phpmyadmin phpmyadmin 2.11.9.1

phpmyadmin phpmyadmin 2.11.2

phpmyadmin phpmyadmin 2.11.2.2

phpmyadmin phpmyadmin 2.11.4

phpmyadmin phpmyadmin 2.11.0.0

phpmyadmin phpmyadmin 2.11.9.5

phpmyadmin phpmyadmin 2.11.7

phpmyadmin phpmyadmin 2.11.1rc1

phpmyadmin phpmyadmin 2.11.0rc1

phpmyadmin phpmyadmin 2.11.7.0

phpmyadmin phpmyadmin 2.11.6

phpmyadmin phpmyadmin 2.11.9.3

phpmyadmin phpmyadmin 2.11.1.2

phpmyadmin phpmyadmin 2.11.5.0

phpmyadmin phpmyadmin 2.11.1

phpmyadmin phpmyadmin 2.11.9.4

phpmyadmin phpmyadmin 2.11.5

phpmyadmin phpmyadmin 2.11.5rc1

phpmyadmin phpmyadmin 2.11.4rc1

phpmyadmin phpmyadmin 2.11.2.1

phpmyadmin phpmyadmin 2.11.5.1

phpmyadmin phpmyadmin 2.11.4.0

phpmyadmin phpmyadmin 2.11.3.0

phpmyadmin phpmyadmin 2.11.9.2

phpmyadmin phpmyadmin 2.11.8

phpmyadmin phpmyadmin 2.11.0

phpmyadmin phpmyadmin 2.11.5.2

phpmyadmin phpmyadmin 2.11.6rc1

phpmyadmin phpmyadmin 2.11.1.1

phpmyadmin phpmyadmin 2.11.2.0

phpmyadmin phpmyadmin 2.11.1.0

phpmyadmin phpmyadmin 2.11.9.6

Vendor Advisories

Several vulnerabilities have been discovered in phpMyAdmin, a tool to administer MySQL over the web The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2008-7251 phpMyAdmin may create a temporary directory, if the configured directory does not exist yet, with insecure filesystem permissions CVE-2008-72 ...