First published: Wed Jul 31 2013(Updated: )
phpMyAdmin 3.5.x before 3.5.8.2 and 4.0.x before 4.0.4.2 allows remote attackers to obtain sensitive information via an invalid request, which reveals the installation path in an error message, related to pmd_common.php and other files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
phpMyAdmin phpMyAdmin | =3.5.0.0 | |
phpMyAdmin phpMyAdmin | =3.5.1.0 | |
phpMyAdmin phpMyAdmin | =3.5.2.0 | |
phpMyAdmin phpMyAdmin | =3.5.2.1 | |
phpMyAdmin phpMyAdmin | =3.5.2.2 | |
phpMyAdmin phpMyAdmin | =3.5.3.0 | |
phpMyAdmin phpMyAdmin | =3.5.4 | |
phpMyAdmin phpMyAdmin | =3.5.5 | |
phpMyAdmin phpMyAdmin | =3.5.6 | |
phpMyAdmin phpMyAdmin | =3.5.7 | |
phpMyAdmin phpMyAdmin | =3.5.7-rc1 | |
phpMyAdmin phpMyAdmin | =3.5.8 | |
phpMyAdmin phpMyAdmin | =3.5.8-rc1 | |
phpMyAdmin phpMyAdmin | =3.5.8.1 | |
phpMyAdmin phpMyAdmin | =4.0.0 | |
phpMyAdmin phpMyAdmin | =4.0.0-rc2 | |
phpMyAdmin phpMyAdmin | =4.0.0-rc3 | |
phpMyAdmin phpMyAdmin | =4.0.1 | |
phpMyAdmin phpMyAdmin | =4.0.2 | |
phpMyAdmin phpMyAdmin | =4.0.3 | |
phpMyAdmin phpMyAdmin | =4.0.4 | |
phpMyAdmin phpMyAdmin | =4.0.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.