Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-1902

Опубликовано: 06 апр. 2012
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

show_config_errors.php in phpMyAdmin 3.4.x before 3.4.10.2, when a configuration file does not exist, allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message about this missing file.

РелизСтатусПримечание
devel

not-affected

esm-apps/xenial

not-affected

esm-infra-legacy/trusty

not-affected

hardy

not-affected

lucid

not-affected

maverick

not-affected

natty

not-affected

4:3.3.10-1
oneiric

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed

Показывать по

EPSS

Процентиль: 64%
0.00468
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
почти 14 лет назад

show_config_errors.php in phpMyAdmin 3.4.x before 3.4.10.2, when a configuration file does not exist, allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message about this missing file.

debian
почти 14 лет назад

show_config_errors.php in phpMyAdmin 3.4.x before 3.4.10.2, when a con ...

github
больше 3 лет назад

show_config_errors.php in phpMyAdmin 3.4.x before 3.4.10.2, when a configuration file does not exist, allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message about this missing file.

EPSS

Процентиль: 64%
0.00468
Низкий

4.3 Medium

CVSS2