CVE-2013-3240: Path Traversal
Published Apr 26, 2013
·Updated
Directory traversal vulnerability in the Export feature in phpMyAdmin 4.x before 4.0.0-rc3 allows remote authenticated users to read arbitrary files or possibly have unspecified other impact via a parameter that specifies a crafted export type.
Affected Software
1 affected component
phpMyAdmin phpMyAdmin=4.0.0-rc2
Event History
Apr 26, 2013
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3240?
CVE-2013-3240 is considered a medium severity vulnerability due to its potential for unauthorized file access.
2
How do I fix CVE-2013-3240?
To mitigate CVE-2013-3240, upgrade phpMyAdmin to version 4.0.0-rc3 or later.
3
Who is affected by CVE-2013-3240?
CVE-2013-3240 affects remote authenticated users of phpMyAdmin versions before 4.0.0-rc3.
4
What kind of impact can CVE-2013-3240 have?
CVE-2013-3240 allows attackers to read arbitrary files and potentially cause other unspecified impacts.
5
What feature is vulnerable in CVE-2013-3240?
The directory traversal vulnerability in CVE-2013-3240 is present in the Export feature of phpMyAdmin.