Описание
phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
phpmyadmin | fixed | 4:3.3.7-3 | package |
Примечания
enables phpinfo output; this is disabled by default and phpinfo on Debian
systems is by and large full of otherwise predictable information.
EPSS
Связанные уязвимости
phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.
phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.
phpMyAdmin allows remote attackers to bypass authentication and obtain sensitive information
EPSS