PT-2013-4245 · Phpmyadmin+1 · Phpmyadmin+1

Janek Vind

·

Published

2013-04-26

·

Updated

2024-06-15

·

CVE-2013-3239

CVSS v3.1

8.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions phpMyAdmin versions 3.5.x through 3.5.7 phpMyAdmin versions 4.x through 4.0.0-rc2
Description The issue allows remote authenticated users to execute arbitrary code by using a double extension in the filename of an export file. This can lead to the interpretation of the file as an executable file by the Apache HTTP Server, as demonstrated by a .php.sql filename.
Recommendations For phpMyAdmin versions 3.5.x through 3.5.7, update to version 3.5.8 or later. For phpMyAdmin versions 4.x through 4.0.0-rc2, update to version 4.0.0-rc3 or later. As a temporary workaround, consider restricting the use of the SaveDir directory to minimize the risk of exploitation.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-3239
DLA-0014-1
GHSA-GG36-9346-9QX9
OPENSUSE-SU-2024:10054-1

Affected Products

Apache Http Server
Phpmyadmin