CVE-2008-1567
31.03.2008, 22:44
phpMyAdmin before 2.11.5.1 stores the MySQL (1) username and (2) password, and the (3) Blowfish secret key, in cleartext in a Session file under /tmp, which allows local users to obtain sensitive information.Enginsight
| Vendor | Product | Version |
|---|---|---|
| phpmyadmin | phpmyadmin | 𝑥 < 2.11.5.1 |
| debian | debian_linux | 4.0 |
| opensuse | opensuse | 10.2 |
| opensuse | opensuse | 10.3 |
| opensuse | opensuse | 11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References