Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown
CVE-2004-1148
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
phpMyAdmin before 2.6.1, when configured with UploadDir functionality, allows remote attackers to read arbitrary files via the sql_localfile parameter.
0
Attacker Value
Unknown
CVE-2004-1147
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters.
0
Attacker Value
Unknown
CVE-2004-2631
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5.7, when LeftFrameLight is FALSE, allows remote attackers to execute arbitrary PHP code via a crafted table name.
0
Attacker Value
Unknown
CVE-2004-2632
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg['Servers'] variables.
0
Attacker Value
Unknown
CVE-2004-2630
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
The MIME transformation system (transformations/text_plain__external.inc.php) in phpMyAdmin 2.5.0 up to 2.6.0-pl1 allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors.
0