Skip to main content

phpMyAdmin Remote Code Execution Vulnerability

Last Update Date: 25 Nov 2019 10:31 Release Date: 25 Nov 2019 4053 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

A vulnerability was identified in phpMyAdmin, a remote attacker could exploit this vulnerability to trigger remote code execution and disclose sensitive information on the targeted system.


Impact

  • Remote Code Execution
  • Information Disclosure

System / Technologies affected

  • Version 4.7.7 - 4.9.1

Solutions

Before installation of the software, please visit the vendor web-site for more details.

 

  • Apply fixes issued by the vendor:
    phpMyadmin 4.9.2 or later

 


Vulnerability Identifier


Source


Related Link