CVE Vulnerabilities

CVE-2004-1147

Published: Jan 10, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters.

Affected Software

NameVendorStart VersionEnd Version
PhpmyadminPhpmyadmin2.4.0 (including)2.4.0 (including)
PhpmyadminPhpmyadmin2.5.0 (including)2.5.0 (including)
PhpmyadminPhpmyadmin2.5.1 (including)2.5.1 (including)
PhpmyadminPhpmyadmin2.5.2 (including)2.5.2 (including)
PhpmyadminPhpmyadmin2.5.4 (including)2.5.4 (including)
PhpmyadminPhpmyadmin2.5.5 (including)2.5.5 (including)
PhpmyadminPhpmyadmin2.5.5_pl1 (including)2.5.5_pl1 (including)
PhpmyadminPhpmyadmin2.5.5_rc1 (including)2.5.5_rc1 (including)
PhpmyadminPhpmyadmin2.5.5_rc2 (including)2.5.5_rc2 (including)
PhpmyadminPhpmyadmin2.5.6_rc1 (including)2.5.6_rc1 (including)
PhpmyadminPhpmyadmin2.5.7 (including)2.5.7 (including)
PhpmyadminPhpmyadmin2.5.7_pl1 (including)2.5.7_pl1 (including)
PhpmyadminPhpmyadmin2.6.0_pl1 (including)2.6.0_pl1 (including)
PhpmyadminPhpmyadmin2.6.0_pl2 (including)2.6.0_pl2 (including)
PhpmyadminPhpmyadmin2.6.0_pl3 (including)2.6.0_pl3 (including)

References