Local file inclusion In phpmyadmin
Description
Directory traversal vulnerability in sql.php in phpMyAdmin 3.4.x before 3.4.3.2, when configuration storage is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in a MIME-type transformation parameter.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
debian 12 | 4:3.4.3.2-1 | ||
debian 11 | 4:3.4.3.2-1 | ||
debian 13 | 4:3.4.3.2-1 | ||
debian 14 | 4:3.4.3.2-1 |
Aliases
1. 2. 3. 4. 5.