Nessus Plugin #15478

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

phpMyAdmin remote command execution

Family:
CGI abuses
Category:
infos
Copyright:
This script is Copyright (C) 2004 David Maciejak
Summary:
Checks the version of phpMyAdmin
Version:
$Revision: 1.5 $
Cve_id:
-
Bugtraq_id:
11391
Xrefs:
-
Description:

The remote host is running phpMyAdmin, an open-source software
written in PHP to handle the administration of MySQL over the Web.

The remote version of this software is vulnerable to arbitrary
command execution due to a lack of user-supplied data
sanitization.

Solution : Upgrade to version 2.6.0-pl2 or newer
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.