CVE Vulnerabilities

CVE-2001-1060

Published: Jul 31, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in tbl_rename.php.

Affected Software

NameVendorStart VersionEnd Version
PhpmyadminPhpmyadmin2.0 (including)2.0 (including)
PhpmyadminPhpmyadmin2.0.1 (including)2.0.1 (including)
PhpmyadminPhpmyadmin2.0.2 (including)2.0.2 (including)
PhpmyadminPhpmyadmin2.0.3 (including)2.0.3 (including)
PhpmyadminPhpmyadmin2.0.4 (including)2.0.4 (including)
PhpmyadminPhpmyadmin2.0.5 (including)2.0.5 (including)
PhpmyadminPhpmyadmin2.1 (including)2.1 (including)
PhpmyadminPhpmyadmin2.1.1 (including)2.1.1 (including)
PhpmyadminPhpmyadmin2.1.2 (including)2.1.2 (including)
PhpmyadminPhpmyadmin2.2_pre1 (including)2.2_pre1 (including)
PhpmyadminPhpmyadmin2.2_rc1 (including)2.2_rc1 (including)
PhpmyadminPhpmyadmin2.2_rc2 (including)2.2_rc2 (including)
PhpmyadminPhpmyadmin2.2_rc3 (including)2.2_rc3 (including)

References