Improper authorization control for web services In phpmyadmin/phpmyadmin

Description

phpMyAdmin allows remote attackers to bypass authentication and obtain sensitive information phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions