CVE Vulnerabilities

CVE-2005-3622

Published: Nov 16, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

phpMyAdmin 2.7.0-beta1 and earlier allows remote attackers to obtain the full path of the server via direct requests to multiple scripts in the libraries directory.

Affected Software

NameVendorStart VersionEnd Version
PhpmyadminPhpmyadmin2.2.0 (including)2.2.0 (including)
PhpmyadminPhpmyadmin2.2.7_pl1 (including)2.2.7_pl1 (including)
PhpmyadminPhpmyadmin2.5.2_pl1 (including)2.5.2_pl1 (including)
PhpmyadminPhpmyadmin2.5.3 (including)2.5.3 (including)
PhpmyadminPhpmyadmin2.5.4 (including)2.5.4 (including)
PhpmyadminPhpmyadmin2.5.5_pl1 (including)2.5.5_pl1 (including)
PhpmyadminPhpmyadmin2.5.6_rc2 (including)2.5.6_rc2 (including)
PhpmyadminPhpmyadmin2.5.7_pl1 (including)2.5.7_pl1 (including)
PhpmyadminPhpmyadmin2.6.0_pl3 (including)2.6.0_pl3 (including)
PhpmyadminPhpmyadmin2.6.1_pl3 (including)2.6.1_pl3 (including)
PhpmyadminPhpmyadmin2.6.2_pl1 (including)2.6.2_pl1 (including)
PhpmyadminPhpmyadmin2.6.3_pl1 (including)2.6.3_pl1 (including)
PhpmyadminPhpmyadmin2.6.4_pl3 (including)2.6.4_pl3 (including)
PhpmyadminPhpmyadmin2.6.4_pl4 (including)2.6.4_pl4 (including)
PhpmyadminPhpmyadmin2.7.0_beta1 (including)2.7.0_beta1 (including)
PhpmyadminUbuntuupstream*

References