Lucene search

K
cveMitreCVE-2004-1147
HistoryJan 10, 2005 - 5:00 a.m.

CVE-2004-1147

2005-01-1005:00:00
mitre
web.nvd.nist.gov
38
cve-2004-1147
phpmyadmin
remote execution
shell metacharacters
security vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.018

Percentile

88.1%

phpMyAdmin 2.6.0-pl2, and other versions before 2.6.1, with external transformations enabled, allows remote attackers to execute arbitrary commands via shell metacharacters.

Affected configurations

Nvd
Node
phpmyadminphpmyadminMatch2.4.0
OR
phpmyadminphpmyadminMatch2.5.0
OR
phpmyadminphpmyadminMatch2.5.1
OR
phpmyadminphpmyadminMatch2.5.2
OR
phpmyadminphpmyadminMatch2.5.4
OR
phpmyadminphpmyadminMatch2.5.5
OR
phpmyadminphpmyadminMatch2.5.5_pl1
OR
phpmyadminphpmyadminMatch2.5.5_rc1
OR
phpmyadminphpmyadminMatch2.5.5_rc2
OR
phpmyadminphpmyadminMatch2.5.6_rc1
OR
phpmyadminphpmyadminMatch2.5.7
OR
phpmyadminphpmyadminMatch2.5.7_pl1
OR
phpmyadminphpmyadminMatch2.6.0_pl1
OR
phpmyadminphpmyadminMatch2.6.0_pl2
OR
phpmyadminphpmyadminMatch2.6.0_pl3
VendorProductVersionCPE
phpmyadminphpmyadmin2.4.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.4.0:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.0:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.2cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.2:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.4cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.4:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.5cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.5:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.5_pl1cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.5_pl1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.5_rc1cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.5_rc1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.5_rc2cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.5_rc2:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.5.6_rc1cpe:2.3:a:phpmyadmin:phpmyadmin:2.5.6_rc1:*:*:*:*:*:*:*
Rows per page:
1-10 of 151

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.018

Percentile

88.1%