LWN.net Logo

phpMyAdmin: directory traversal

Package(s):phpMyAdmin CVE #(s):
Created:February 17, 2004 Updated:February 18, 2004
Description: A component of the phpMyAdmin software package (export.php) does not properly verify input that is passed to it from a remote user. Since the input is used to include other files, it is possible to launch a directory traversal attack.
Alerts:
Gentoo 200402-05 2004-02-17

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds