Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-5159

Опубликовано: 25 сент. 2012
Источник: nvd
CVSS2: 7.5
EPSS Высокий

Описание

phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror during an unspecified time frame in 2012, contains an externally introduced modification (Trojan Horse) in server_sync.php, which allows remote attackers to execute arbitrary PHP code via an eval injection attack.

Комментарий

Although not found in all distributions of this software, the vulnerability was scored assuming that it was. End-users will need to identify whether their distribution does in fact contain the vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.2.2:*:*:*:*:*:*:*

EPSS

Процентиль: 99%
0.8794
Высокий

7.5 High

CVSS2

Дефекты

CWE-94

Связанные уязвимости

ubuntu
больше 12 лет назад

phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror during an unspecified time frame in 2012, contains an externally introduced modification (Trojan Horse) in server_sync.php, which allows remote attackers to execute arbitrary PHP code via an eval injection attack.

debian
больше 12 лет назад

phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror durin ...

github
около 3 лет назад

phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror during an unspecified time frame in 2012, contains an externally introduced modification (Trojan Horse) in server_sync.php, which allows remote attackers to execute arbitrary PHP code via an eval injection attack.

EPSS

Процентиль: 99%
0.8794
Высокий

7.5 High

CVSS2

Дефекты

CWE-94