Vulnerability Name:

CVE-2005-4349

Assigned:2005-12-19
Published:2005-12-19
Updated:2018-10-19
Summary:** DISPUTED ** SQL injection vulnerability in server_privileges.php in phpMyAdmin 2.7.0 allows remote authenticated users to execute arbitrary SQL commands via the (1) dbname and (2) checkprivs parameters.
Note: the vendor and a third party have disputed this issue, saying that the main task of the program is to support query execution by authenticated users, and no external attack scenario exists without an auto-login configuration. Thus it is likely that this issue will be REJECTED. However, a closely related CSRF issue has been assigned CVE-2005-4450.
CVSS v3 Severity:5.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.5 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-89
Vulnerability Consequences:ALLOWS_OTHER_ACCESS
References:Source: MITRE
Type: CNA
CVE-2005-4349

Source: BUGTRAQ
Type: UNKNOWN
20051217 phpMyAdmin server_privileges.php SQL Injection Vulnerabilities.

Source: SECUNIA
Type: Vendor Advisory
18113

Source: SREASON
Type: UNKNOWN
270

Source: BUGTRAQ
Type: UNKNOWN
20051219 Re: phpMyAdmin server_privileges.php SQL Injection Vulnerabilities.

Source: BUGTRAQ
Type: UNKNOWN
20051219 about phpMyAdmin's server_privileges.php announced vulnerability

Source: VUPEN
Type: Vendor Advisory
ADV-2005-2995

Vulnerable Configuration:Configuration 1:
  • cpe:/a:phpmyadmin:phpmyadmin:2.7.0:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    phpmyadmin phpmyadmin 2.7.0