SQL injection vulnerability in sql.php in phpMyAdmin 2.7.0-pl1 allows remote attackers to execute arbitrary SQL commands via the sql_query parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Phpmyadmin | Phpmyadmin | 2.7.0_pl1 (including) | 2.7.0_pl1 (including) |
| Phpmyadmin | Phpmyadmin | 2.8.0.3 (including) | 2.8.0.3 (including) |
| Phpmyadmin | Ubuntu | dapper | * |
| Phpmyadmin | Ubuntu | upstream | * |