Korean
<< Back
VID 21687
Severity 30
Port 80, ...
Protocol TCP
Class CGI
Detailed Description A version of phpMyAdmin which is older than version 2.6.4-rc1 is detected as installed on the host. phpMyAdmin is a tool written in PHP intended to handle the administration of MySQL over the WWW. Currently it can create and drop databases, create/drop/alter tables, delete/edit/add fields, execute any SQL statement, manage keys on fields. phpMyAdmin versions prior to 2.6.4-rc1 are vulnerable to cross-site scripting, caused by improper validation of user-supplied input passed to the 'error' parameter of the 'error.php' script and to the 'libraries/auth/cookie.auth.lib.php' script. This vulnerability could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials or other attacks.

* Note: This check solely relied on the version number of phpMyAdmin on the remote Web server to assess this vulnerability, so this might be a false positive.

* References:
http://sourceforge.net/tracker/index.php?func=detail&aid=1240880&group_id=23067&atid=377408
http://sourceforge.net/tracker/index.php?func=detail&aid=1265740&group_id=23067&atid=377408

* Platforms Affected:
Tobias Ratschiller, phpMyAdmin prior to 2.6.4-rc1
Any Operating system Any version
Recommendation Upgrade to the latest version of phpMyAdmin (2.6.4-rc1 or later), available from the phpMyAdmin Download Web page at http://www.phpmyadmin.net/home_page/downloads.php
Related URL CVE-2005-2869 (CVE)
Related URL 14674,14675 (SecurityFocus)
Related URL (ISS)