Lucene search

K
nvd[email protected]NVD:CVE-2005-0459
HistoryMay 02, 2005 - 4:00 a.m.

CVE-2005-0459

2005-05-0204:00:00
web.nvd.nist.gov
4

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.003

Percentile

69.6%

phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.

Affected configurations

Nvd
Node
phpmyadminphpmyadminMatch2.0
OR
phpmyadminphpmyadminMatch2.0.1
OR
phpmyadminphpmyadminMatch2.0.2
OR
phpmyadminphpmyadminMatch2.0.3
OR
phpmyadminphpmyadminMatch2.0.4
OR
phpmyadminphpmyadminMatch2.0.5
OR
phpmyadminphpmyadminMatch2.1
OR
phpmyadminphpmyadminMatch2.1.1
OR
phpmyadminphpmyadminMatch2.1.2
OR
phpmyadminphpmyadminMatch2.2.2
OR
phpmyadminphpmyadminMatch2.2.3
OR
phpmyadminphpmyadminMatch2.2.4
OR
phpmyadminphpmyadminMatch2.2.5
OR
phpmyadminphpmyadminMatch2.2.6
OR
phpmyadminphpmyadminMatch2.2_pre1
OR
phpmyadminphpmyadminMatch2.2_rc1
OR
phpmyadminphpmyadminMatch2.2_rc2
OR
phpmyadminphpmyadminMatch2.2_rc3
OR
phpmyadminphpmyadminMatch2.3.1
OR
phpmyadminphpmyadminMatch2.3.2
OR
phpmyadminphpmyadminMatch2.4.0
OR
phpmyadminphpmyadminMatch2.5.0
OR
phpmyadminphpmyadminMatch2.5.1
OR
phpmyadminphpmyadminMatch2.5.2
OR
phpmyadminphpmyadminMatch2.5.4
OR
phpmyadminphpmyadminMatch2.5.5
OR
phpmyadminphpmyadminMatch2.5.5_pl1
OR
phpmyadminphpmyadminMatch2.5.5_rc1
OR
phpmyadminphpmyadminMatch2.5.5_rc2
OR
phpmyadminphpmyadminMatch2.5.6_rc1
OR
phpmyadminphpmyadminMatch2.5.7
OR
phpmyadminphpmyadminMatch2.5.7_pl1
OR
phpmyadminphpmyadminMatch2.6.0_pl1
OR
phpmyadminphpmyadminMatch2.6.0_pl2
OR
phpmyadminphpmyadminMatch2.6.0_pl3
OR
phpmyadminphpmyadminMatch2.6.2_dev
VendorProductVersionCPE
phpmyadminphpmyadmin2.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.0:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.0.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.0.1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.0.2cpe:2.3:a:phpmyadmin:phpmyadmin:2.0.2:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.0.3cpe:2.3:a:phpmyadmin:phpmyadmin:2.0.3:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.0.4cpe:2.3:a:phpmyadmin:phpmyadmin:2.0.4:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.0.5cpe:2.3:a:phpmyadmin:phpmyadmin:2.0.5:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.1.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.1.1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.1.2cpe:2.3:a:phpmyadmin:phpmyadmin:2.1.2:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.2.2cpe:2.3:a:phpmyadmin:phpmyadmin:2.2.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 361

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.003

Percentile

69.6%

Related for NVD:CVE-2005-0459