LWN.net Logo

phpmyadmin: information leak

Package(s):phpMyAdmin CVE #(s):CVE-2012-4219
Created:August 29, 2012 Updated:August 29, 2012
Description: From the CVE entry:

show_config_errors.php in phpMyAdmin 3.5.x before 3.5.2.1 allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message, related to lack of inclusion of the common.inc.php library file.

Alerts:
Fedora FEDORA-2012-12031 2012-08-28
Fedora FEDORA-2012-12060 2012-08-28
openSUSE openSUSE-SU-2012:1062-1 2012-08-30

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds