Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2009-1151
StatusCandidate
DescriptionStatic code injection vulnerability in setup.php in phpMyAdmin 2.11.x before 2.11.9.5 and 3.x before 3.1.3.1 allows remote attackers to inject arbitrary PHP code into a configuration file via the save action.
SeverityHigh
CVSS score7,5
CVSS vector(AV:N/AC:L/Au:N/C:P/I:P/A:P)
PhaseAssigned (15.07.2009)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-1151
ReferencesCONFIRM : http://phpmyadmin.svn.sourceforge.net/viewvc/phpmy...
 CONFIRM : http://www.phpmyadmin.net/home_page/security/PMASA...
 SECUNIA : 34430
SecurityVulns:Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server