CVE-2007-0095: Medium severity phpMyAdmin phpMyAdmin vulnerability
Published Jan 5, 2007
·Updated
phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblueorange/layout.inc.php, which reveals the path in an error message.
Affected Software
1 affected component
phpMyAdmin phpMyAdmin=2.9.1.1
Event History
Jan 5, 2007
CVE Published
06:28 PM
Data Sourced
via NVD·06:28 PM
DescriptionSeverityAffected Software
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0095?
CVE-2007-0095 is considered to be of moderate severity due to potential information disclosure.
2
How do I fix CVE-2007-0095?
To fix CVE-2007-0095, update PHPMyAdmin to a version higher than 2.9.1.1.
3
What type of vulnerability is CVE-2007-0095?
CVE-2007-0095 is an information disclosure vulnerability that exposes sensitive path details.
4
Who is affected by CVE-2007-0095?
CVE-2007-0095 affects users of PHPMyAdmin version 2.9.1.1.
5
What can attackers do with CVE-2007-0095?
Attackers exploiting CVE-2007-0095 can gain sensitive information about the server's file paths.