CVE-2008-5587
16.12.2008, 19:07
Directory traversal vulnerability in libraries/lib.inc.php in phpPgAdmin 4.2.1 and earlier, when register_globals is enabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the _language parameter to index.php.
| Vendor | Product | Version |
|---|---|---|
| phppgadmin | phppgadmin | 𝑥 ≤ 4.2.1 |
| phppgadmin | phppgadmin | 2.2 |
| phppgadmin | phppgadmin | 2.2.1 |
| phppgadmin | phppgadmin | 3.1 |
| phppgadmin | phppgadmin | 3.4.1 |
| phppgadmin | phppgadmin | 3.5 |
| phppgadmin | phppgadmin | 3.5.2 |
| phppgadmin | phppgadmin | 3.5.3 |
| phppgadmin | phppgadmin | 4.1.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References