CVE-2010-4481
Debian Security Advisory 2139-1
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.
phpMyAdmin anteriores a v3.4.0-beta1, permite a atacantes remotos evitar la autenticación y obtener información sensible a través de una solicitud directa al phpinfo.php, que llama a la función phpinfo.
error.php in PhpMyAdmin 3.3.8.1 and earlier allows remote attackers to conduct cross-site scripting attacks via a crafted BBcode tag containing @ characters, as demonstrated using [a@url@page]. phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function. This upgrade provides the latest phpmyadmin version for MES5 and patches the version for CS4 to address these vulnerabilities.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2010-12-07 CVE Reserved
- 2010-12-17 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://phpmyadmin.git.sourceforge.net/git/gitweb.cgi?p=phpmyadmin/phpmyadmin%3Ba=commitdiff%3Bh=4d9fd005671b05c4d74615d5939ed45e4d019e4c | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.phpmyadmin.net/home_page/security/PMASA-2010-10.php | 2023-11-07 |
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/42485 | 2023-11-07 | |
http://secunia.com/advisories/42725 | 2023-11-07 | |
http://www.debian.org/security/2010/dsa-2139 | 2023-11-07 | |
http://www.mandriva.com/security/advisories?name=MDVSA-2011:000 | 2023-11-07 | |
http://www.vupen.com/english/advisories/2010/3238 | 2023-11-07 | |
http://www.vupen.com/english/advisories/2011/0001 | 2023-11-07 | |
http://www.vupen.com/english/advisories/2011/0027 | 2023-11-07 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | <= 3.3.9.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version " <= 3.3.9.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.1.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.1.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.1.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.1.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.1.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.1.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.2.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.2.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.2.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.2.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.2.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.2.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.3.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.3.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.4.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.4.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.5.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.5.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.5.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.5.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.5.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.5.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.6.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.6.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.7.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.7.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.7.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.7.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.8.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.8.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.4" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.5" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.9.6 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.9.6" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.10.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.10.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 2.11.10.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "2.11.10.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.0" | alpha |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.0" | beta |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.0" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.1" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.0.1.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.0.1.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.0" | beta1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.1" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.2" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.3" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.3 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.3" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.3.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.3.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.3.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.3.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.4" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.4 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.4" | rc2 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.5" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.1.5 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.1.5" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.0" | beta1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.0" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.1" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.2" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.2.2 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.2.2" | rc1 |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.0.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.0.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.1.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.1.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.2.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.2.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.3.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.3.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.4.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.4.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.5.0 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.5.0" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.5.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.5.1" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.6 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.6" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.7 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.7" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.8 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.8" | - |
Affected
| ||||||
Phpmyadmin Search vendor "Phpmyadmin" | Phpmyadmin Search vendor "Phpmyadmin" for product "Phpmyadmin" | 3.3.8.1 Search vendor "Phpmyadmin" for product "Phpmyadmin" and version "3.3.8.1" | - |
Affected
|