CVE Vulnerabilities

CVE-2010-4481

Improper Authentication

Published: Dec 17, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

NameVendorStart VersionEnd Version
PhpmyadminPhpmyadmin*3.3.9.0 (including)
PhpmyadminPhpmyadmin2.11.0 (including)2.11.0 (including)
PhpmyadminPhpmyadmin2.11.1.0 (including)2.11.1.0 (including)
PhpmyadminPhpmyadmin2.11.1.1 (including)2.11.1.1 (including)
PhpmyadminPhpmyadmin2.11.1.2 (including)2.11.1.2 (including)
PhpmyadminPhpmyadmin2.11.2.0 (including)2.11.2.0 (including)
PhpmyadminPhpmyadmin2.11.2.1 (including)2.11.2.1 (including)
PhpmyadminPhpmyadmin2.11.2.2 (including)2.11.2.2 (including)
PhpmyadminPhpmyadmin2.11.3.0 (including)2.11.3.0 (including)
PhpmyadminPhpmyadmin2.11.4.0 (including)2.11.4.0 (including)
PhpmyadminPhpmyadmin2.11.5.0 (including)2.11.5.0 (including)
PhpmyadminPhpmyadmin2.11.5.1 (including)2.11.5.1 (including)
PhpmyadminPhpmyadmin2.11.5.2 (including)2.11.5.2 (including)
PhpmyadminPhpmyadmin2.11.6.0 (including)2.11.6.0 (including)
PhpmyadminPhpmyadmin2.11.7.0 (including)2.11.7.0 (including)
PhpmyadminPhpmyadmin2.11.7.1 (including)2.11.7.1 (including)
PhpmyadminPhpmyadmin2.11.8.0 (including)2.11.8.0 (including)
PhpmyadminPhpmyadmin2.11.9.0 (including)2.11.9.0 (including)
PhpmyadminPhpmyadmin2.11.9.1 (including)2.11.9.1 (including)
PhpmyadminPhpmyadmin2.11.9.2 (including)2.11.9.2 (including)
PhpmyadminPhpmyadmin2.11.9.3 (including)2.11.9.3 (including)
PhpmyadminPhpmyadmin2.11.9.4 (including)2.11.9.4 (including)
PhpmyadminPhpmyadmin2.11.9.5 (including)2.11.9.5 (including)
PhpmyadminPhpmyadmin2.11.9.6 (including)2.11.9.6 (including)
PhpmyadminPhpmyadmin2.11.10.0 (including)2.11.10.0 (including)
PhpmyadminPhpmyadmin2.11.10.1 (including)2.11.10.1 (including)
PhpmyadminPhpmyadmin3.0.0 (including)3.0.0 (including)
PhpmyadminPhpmyadmin3.0.0-alpha (including)3.0.0-alpha (including)
PhpmyadminPhpmyadmin3.0.0-beta (including)3.0.0-beta (including)
PhpmyadminPhpmyadmin3.0.0-rc1 (including)3.0.0-rc1 (including)
PhpmyadminPhpmyadmin3.0.1 (including)3.0.1 (including)
PhpmyadminPhpmyadmin3.0.1-rc1 (including)3.0.1-rc1 (including)
PhpmyadminPhpmyadmin3.0.1.1 (including)3.0.1.1 (including)
PhpmyadminPhpmyadmin3.1.0 (including)3.1.0 (including)
PhpmyadminPhpmyadmin3.1.0-beta1 (including)3.1.0-beta1 (including)
PhpmyadminPhpmyadmin3.1.1 (including)3.1.1 (including)
PhpmyadminPhpmyadmin3.1.1-rc1 (including)3.1.1-rc1 (including)
PhpmyadminPhpmyadmin3.1.2 (including)3.1.2 (including)
PhpmyadminPhpmyadmin3.1.2-rc1 (including)3.1.2-rc1 (including)
PhpmyadminPhpmyadmin3.1.3 (including)3.1.3 (including)
PhpmyadminPhpmyadmin3.1.3-rc1 (including)3.1.3-rc1 (including)
PhpmyadminPhpmyadmin3.1.3.1 (including)3.1.3.1 (including)
PhpmyadminPhpmyadmin3.1.3.2 (including)3.1.3.2 (including)
PhpmyadminPhpmyadmin3.1.4 (including)3.1.4 (including)
PhpmyadminPhpmyadmin3.1.4-rc2 (including)3.1.4-rc2 (including)
PhpmyadminPhpmyadmin3.1.5 (including)3.1.5 (including)
PhpmyadminPhpmyadmin3.1.5-rc1 (including)3.1.5-rc1 (including)
PhpmyadminPhpmyadmin3.2.0 (including)3.2.0 (including)
PhpmyadminPhpmyadmin3.2.0-beta1 (including)3.2.0-beta1 (including)
PhpmyadminPhpmyadmin3.2.0-rc1 (including)3.2.0-rc1 (including)
PhpmyadminPhpmyadmin3.2.1 (including)3.2.1 (including)
PhpmyadminPhpmyadmin3.2.1-rc1 (including)3.2.1-rc1 (including)
PhpmyadminPhpmyadmin3.2.2 (including)3.2.2 (including)
PhpmyadminPhpmyadmin3.2.2-rc1 (including)3.2.2-rc1 (including)
PhpmyadminPhpmyadmin3.3.0.0 (including)3.3.0.0 (including)
PhpmyadminPhpmyadmin3.3.1.0 (including)3.3.1.0 (including)
PhpmyadminPhpmyadmin3.3.2.0 (including)3.3.2.0 (including)
PhpmyadminPhpmyadmin3.3.3.0 (including)3.3.3.0 (including)
PhpmyadminPhpmyadmin3.3.4.0 (including)3.3.4.0 (including)
PhpmyadminPhpmyadmin3.3.5.0 (including)3.3.5.0 (including)
PhpmyadminPhpmyadmin3.3.5.1 (including)3.3.5.1 (including)
PhpmyadminPhpmyadmin3.3.6 (including)3.3.6 (including)
PhpmyadminPhpmyadmin3.3.7 (including)3.3.7 (including)
PhpmyadminPhpmyadmin3.3.8 (including)3.3.8 (including)
PhpmyadminPhpmyadmin3.3.8.1 (including)3.3.8.1 (including)
PhpmyadminUbuntudapper*
PhpmyadminUbuntuhardy*
PhpmyadminUbuntukarmic*
PhpmyadminUbuntulucid*
PhpmyadminUbuntumaverick*
PhpmyadminUbuntuupstream*

Potential Mitigations

References