Directory traversal vulnerability in export.php in phpMyAdmin 2.5.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in the what parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phpmyadmin | Phpmyadmin | 2.1.1 | 2.1.1 |
Phpmyadmin | Phpmyadmin | 2.2.4 | 2.2.4 |
Phpmyadmin | Phpmyadmin | 2.1.2 | 2.1.2 |
Phpmyadmin | Phpmyadmin | 2.2_pre1 | 2.2_pre1 |
Phpmyadmin | Phpmyadmin | 2.5.0 | 2.5.0 |
Phpmyadmin | Phpmyadmin | 2.0.4 | 2.0.4 |
Phpmyadmin | Phpmyadmin | 2.3.1 | 2.3.1 |
Phpmyadmin | Phpmyadmin | 2.0.2 | 2.0.2 |
Phpmyadmin | Phpmyadmin | 2.5.5_rc1 | 2.5.5_rc1 |
Phpmyadmin | Phpmyadmin | 2.4.0 | 2.4.0 |
Phpmyadmin | Phpmyadmin | 2.5.5 | 2.5.5 |
Phpmyadmin | Phpmyadmin | 2.0.3 | 2.0.3 |
Phpmyadmin | Phpmyadmin | 2.2.6 | 2.2.6 |
Phpmyadmin | Phpmyadmin | 2.5.2 | 2.5.2 |
Phpmyadmin | Phpmyadmin | 2.1 | 2.1 |
Phpmyadmin | Phpmyadmin | 2.0.1 | 2.0.1 |
Phpmyadmin | Phpmyadmin | 2.5.1 | 2.5.1 |
Phpmyadmin | Phpmyadmin | 2.2_rc2 | 2.2_rc2 |
Phpmyadmin | Phpmyadmin | 2.3.2 | 2.3.2 |
Phpmyadmin | Phpmyadmin | 2.5.4 | 2.5.4 |
Phpmyadmin | Phpmyadmin | 2.2.5 | 2.2.5 |
Phpmyadmin | Phpmyadmin | 2.2_rc3 | 2.2_rc3 |
Phpmyadmin | Phpmyadmin | 2.2.2 | 2.2.2 |
Phpmyadmin | Phpmyadmin | 2.2.3 | 2.2.3 |
Phpmyadmin | Phpmyadmin | 2.5.5_rc2 | 2.5.5_rc2 |
Phpmyadmin | Phpmyadmin | 2.2_rc1 | 2.2_rc1 |
Phpmyadmin | Phpmyadmin | 2.0 | 2.0 |
Phpmyadmin | Phpmyadmin | 2.5.5_pl1 | 2.5.5_pl1 |
Phpmyadmin | Phpmyadmin | 2.0.5 | 2.0.5 |