The SQL install script in phpMyAdmin 2.6.2 is created with world-readable permissions, which allows local users to obtain the initial database password by reading the script.
References
Configurations
Information
Published : 2005-05-02 21:00
Updated : 2011-03-07 18:21
NVD link : CVE-2005-1392
Mitre link : CVE-2005-1392
JSON object : View
CWE
Products Affected
phpmyadmin
- phpmyadmin