CVE Vulnerabilities

CVE-2005-3622

Published: Nov 16, 2005 | Modified: Oct 18, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

phpMyAdmin 2.7.0-beta1 and earlier allows remote attackers to obtain the full path of the server via direct requests to multiple scripts in the libraries directory.

Affected Software

Name Vendor Start Version End Version
Phpmyadmin Phpmyadmin 2.2.0 (including) 2.2.0 (including)
Phpmyadmin Phpmyadmin 2.2.7_pl1 (including) 2.2.7_pl1 (including)
Phpmyadmin Phpmyadmin 2.5.2_pl1 (including) 2.5.2_pl1 (including)
Phpmyadmin Phpmyadmin 2.5.3 (including) 2.5.3 (including)
Phpmyadmin Phpmyadmin 2.5.4 (including) 2.5.4 (including)
Phpmyadmin Phpmyadmin 2.5.5_pl1 (including) 2.5.5_pl1 (including)
Phpmyadmin Phpmyadmin 2.5.6_rc2 (including) 2.5.6_rc2 (including)
Phpmyadmin Phpmyadmin 2.5.7_pl1 (including) 2.5.7_pl1 (including)
Phpmyadmin Phpmyadmin 2.6.0_pl3 (including) 2.6.0_pl3 (including)
Phpmyadmin Phpmyadmin 2.6.1_pl3 (including) 2.6.1_pl3 (including)
Phpmyadmin Phpmyadmin 2.6.2_pl1 (including) 2.6.2_pl1 (including)
Phpmyadmin Phpmyadmin 2.6.3_pl1 (including) 2.6.3_pl1 (including)
Phpmyadmin Phpmyadmin 2.6.4_pl3 (including) 2.6.4_pl3 (including)
Phpmyadmin Phpmyadmin 2.6.4_pl4 (including) 2.6.4_pl4 (including)
Phpmyadmin Phpmyadmin 2.7.0_beta1 (including) 2.7.0_beta1 (including)
Phpmyadmin Ubuntu upstream *

References