Lucene search

K
nvd[email protected]NVD:CVE-2008-7251
HistoryJan 19, 2010 - 4:30 p.m.

CVE-2008-7251

2010-01-1916:30:00
CWE-264
web.nvd.nist.gov
7

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.3

Confidence

Low

EPSS

0.01

Percentile

83.7%

libraries/File.class.php in phpMyAdmin 2.11.x before 2.11.10 creates a temporary directory with 0777 permissions, which has unknown impact and attack vectors.

Affected configurations

Nvd
Node
phpmyadminphpmyadminMatch2.11.0
OR
phpmyadminphpmyadminMatch2.11.0beta1
OR
phpmyadminphpmyadminMatch2.11.0rc1
OR
phpmyadminphpmyadminMatch2.11.0.0
OR
phpmyadminphpmyadminMatch2.11.0beta1
OR
phpmyadminphpmyadminMatch2.11.0rc1
OR
phpmyadminphpmyadminMatch2.11.1
OR
phpmyadminphpmyadminMatch2.11.1rc1
OR
phpmyadminphpmyadminMatch2.11.1.0
OR
phpmyadminphpmyadminMatch2.11.1.1
OR
phpmyadminphpmyadminMatch2.11.1.2
OR
phpmyadminphpmyadminMatch2.11.1rc1
OR
phpmyadminphpmyadminMatch2.11.2
OR
phpmyadminphpmyadminMatch2.11.2.0
OR
phpmyadminphpmyadminMatch2.11.2.1
OR
phpmyadminphpmyadminMatch2.11.2.2
OR
phpmyadminphpmyadminMatch2.11.3
OR
phpmyadminphpmyadminMatch2.11.3rc1
OR
phpmyadminphpmyadminMatch2.11.3.0
OR
phpmyadminphpmyadminMatch2.11.3rc1
OR
phpmyadminphpmyadminMatch2.11.4
OR
phpmyadminphpmyadminMatch2.11.4rc1
OR
phpmyadminphpmyadminMatch2.11.4.0
OR
phpmyadminphpmyadminMatch2.11.4rc1
OR
phpmyadminphpmyadminMatch2.11.5
OR
phpmyadminphpmyadminMatch2.11.5rc1
OR
phpmyadminphpmyadminMatch2.11.5.0
OR
phpmyadminphpmyadminMatch2.11.5.1
OR
phpmyadminphpmyadminMatch2.11.5.2
OR
phpmyadminphpmyadminMatch2.11.5rc1
OR
phpmyadminphpmyadminMatch2.11.6
OR
phpmyadminphpmyadminMatch2.11.6rc1
OR
phpmyadminphpmyadminMatch2.11.6.0
OR
phpmyadminphpmyadminMatch2.11.6rc1
OR
phpmyadminphpmyadminMatch2.11.7
OR
phpmyadminphpmyadminMatch2.11.7.0
OR
phpmyadminphpmyadminMatch2.11.8
OR
phpmyadminphpmyadminMatch2.11.9
OR
phpmyadminphpmyadminMatch2.11.9.0
OR
phpmyadminphpmyadminMatch2.11.9.1
OR
phpmyadminphpmyadminMatch2.11.9.2
OR
phpmyadminphpmyadminMatch2.11.9.3
OR
phpmyadminphpmyadminMatch2.11.9.4
OR
phpmyadminphpmyadminMatch2.11.9.5
OR
phpmyadminphpmyadminMatch2.11.9.6
VendorProductVersionCPE
phpmyadminphpmyadmin2.11.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.0:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.0:beta1:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.0:rc1:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.0.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.0.0:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.0beta1cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.0beta1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.0rc1cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.0rc1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.1:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.1:rc1:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.1.0cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.1.0:*:*:*:*:*:*:*
phpmyadminphpmyadmin2.11.1.1cpe:2.3:a:phpmyadmin:phpmyadmin:2.11.1.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 451

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.3

Confidence

Low

EPSS

0.01

Percentile

83.7%