Vulnerability Name: | CVE-2005-3622 (CCN-23201) | ||||||||
Assigned: | 2005-11-16 | ||||||||
Published: | 2005-11-16 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | phpMyAdmin 2.7.0-beta1 and earlier allows remote attackers to obtain the full path of the server via direct requests to multiple scripts in the libraries directory. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Tue Nov 15 2005 - 05:53:50 CST Multiple Vulnerabilities in phpMyAdmin Source: MITRE Type: CNA CVE-2005-3622 Source: BUGTRAQ Type: UNKNOWN 20051115 [FS-05-02] Multiple vulnerabilities in phpMyAdmin Source: SREASON Type: UNKNOWN 185 Source: CCN Type: SECTRACK ID: 1015213 phpMyAdmin `libraries/header_http.inc.php` Lets Remote Users Conduct HTTP Response Splitting Attacks Source: SECTRACK Type: UNKNOWN 1015213 Source: MISC Type: Vendor Advisory http://www.fitsec.com/advisories/FS-05-02.txt Source: OSVDB Type: UNKNOWN 20911 Source: OSVDB Type: UNKNOWN 20912 Source: OSVDB Type: UNKNOWN 20913 Source: OSVDB Type: UNKNOWN 20914 Source: CCN Type: OSVDB ID: 20911 phpMyAdmin /libraries/string.lib.php Direct Request Path Disclosure Source: CCN Type: OSVDB ID: 20912 phpMyAdmin /libraries/storage_engines.lib.php Direct Request Path Disclosure Source: CCN Type: OSVDB ID: 20913 phpMyAdmin /libraries/display_create_database.lib.php Direct Request Path Disclosure Source: CCN Type: OSVDB ID: 20914 phpMyAdmin /libraries/check_user_privileges.lib.php Direct Request Path Disclosure Source: CCN Type: phpMyAdmin Web site phpMyAdmin | MySQL Database Administration Tool | www.phpmyadmin.net Source: XF Type: UNKNOWN phpmyadmin-url-script-path-disclosure(23201) | ||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
BACK |