GHSA-fcgm-62p3-f7cm
Dashboard / Vulnerabilities / GHSA-fcgm-62p3-f7cm
Summary: phpMyAdmin Local file exposure
Details: An issue was discovered in phpMyAdmin. A user can exploit the LOAD LOCAL INFILE functionality to expose files on the server to the database system. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.
References: https://nvd.nist.gov/vuln/detail/CVE-2016-6612, https://github.com/phpmyadmin/composer, https://lists.debian.org/debian-lts-announce/2019/06/msg00009.html, https://security.gentoo.org/glsa/201701-32, https://www.phpmyadmin.net/security/PMASA-2016-35, http://www.securityfocus.com/bid/94113
Affected packages
Package
Name: phpmyadmin/phpmyadmin
Purl: pkg:composer/phpmyadmin/phpmyadmin
Affected ranges
Type: ECOSYSTEM
Events:
