Directory traversal vulnerability in phpPgAdmin 2.2.1 and earlier versions allows remote attackers to execute arbitrary code via a .. (dot dot) in an argument to the sql.php script.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-04/0396.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/2640 | Patch Vendor Advisory |
http://www.greatbridge.org/project/phppgadmin/cvs/checkout.php/phpPgAdmin/ChangeLog?r=1.13 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2001-06-26 21:00
Updated : 2008-09-05 13:24
NVD link : CVE-2001-0479
Mitre link : CVE-2001-0479
JSON object : View
CWE
Products Affected
phppgadmin
- phppgadmin