CVE Vulnerabilities

CVE-2001-1060

Published: Jul 31, 2001 | Modified: Apr 03, 2009
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

phpMyAdmin 2.2.0rc3 and earlier allows remote attackers to execute arbitrary commands by inserting them into (1) the strCopyTableOK argument in tbl_copy.php, or (2) the strRenameTableOK argument in tbl_rename.php.

Affected Software

Name Vendor Start Version End Version
Phpmyadmin Phpmyadmin 2.0 2.0
Phpmyadmin Phpmyadmin 2.0.1 2.0.1
Phpmyadmin Phpmyadmin 2.0.2 2.0.2
Phpmyadmin Phpmyadmin 2.0.3 2.0.3
Phpmyadmin Phpmyadmin 2.0.4 2.0.4
Phpmyadmin Phpmyadmin 2.0.5 2.0.5
Phpmyadmin Phpmyadmin 2.1 2.1
Phpmyadmin Phpmyadmin 2.1.1 2.1.1
Phpmyadmin Phpmyadmin 2.1.2 2.1.2
Phpmyadmin Phpmyadmin 2.2_pre1 2.2_pre1
Phpmyadmin Phpmyadmin 2.2_rc1 2.2_rc1
Phpmyadmin Phpmyadmin 2.2_rc2 2.2_rc2
Phpmyadmin Phpmyadmin 2.2_rc3 2.2_rc3

References