CVE-2001-0478: High severity phpmyadmin phpmyadmin vulnerability
Published May 24, 2001
·Updated
Directory traversal vulnerability in phpMyAdmin 2.2.0 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script.
Affected Software
1 affected component
phpMyAdmin phpMyAdmin<=2.2.0
Remediation
Patch Available
Event History
May 24, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0478?
CVE-2001-0478 is considered a critical severity vulnerability due to its ability to allow arbitrary code execution.
2
How do I fix CVE-2001-0478?
To fix CVE-2001-0478, upgrade phpMyAdmin to version 2.2.1 or later, which includes patches for this vulnerability.
3
What versions of phpMyAdmin are affected by CVE-2001-0478?
CVE-2001-0478 affects phpMyAdmin versions 2.2.0 and earlier.
4
What type of attack does CVE-2001-0478 allow?
CVE-2001-0478 allows remote attackers to perform a directory traversal attack and execute arbitrary code on the server.
5
Where can I find more information about CVE-2001-0478?
For more information on CVE-2001-0478, you can refer to security mailing lists and vulnerability databases.