CVE-2005-0653: Medium severity phpmyadmin phpmyadmin vulnerability
Published Mar 7, 2005
·Updated
phpMyAdmin 2.6.1 does not properly grant permissions on tables with an underscore in the name, which grants remote authenticated users more privileges than intended.
Affected Software
1 affected component
phpMyAdmin phpMyAdmin=2.6.1
Remediation
Patch Available
Patch Available
Event History
Mar 7, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0653?
CVE-2005-0653 is considered a medium severity vulnerability due to improper permissions management in phpMyAdmin 2.6.1.
2
How do I fix CVE-2005-0653?
To fix CVE-2005-0653, it is recommended to upgrade phpMyAdmin to a version that addresses this permissions issue.
3
Who is affected by CVE-2005-0653?
Users of phpMyAdmin version 2.6.1 are affected by CVE-2005-0653, particularly those using tables with underscores in their names.
4
What type of attack does CVE-2005-0653 enable?
CVE-2005-0653 can allow remote authenticated users to gain unauthorized privileges on certain database tables.
5
Can CVE-2005-0653 be exploited without authentication?
No, CVE-2005-0653 requires an authenticated user to exploit the vulnerability.