Lucene search

K
osvGoogleOSV:GHSA-P849-VF5F-F3X7
HistoryMay 17, 2022 - 2:37 a.m.

phpMyAdmin Remote code execution vulnerability when PHP is running with dbase extension

2022-05-1702:37:10
Google
osv.dev
5
phpmyadmin
remote code execution
vulnerability
php installations
dbase extension
4.6.x
4.4.x
4.0.x

AI Score

8.1

Confidence

Low

EPSS

0.051

Percentile

93.0%

An issue was discovered in phpMyAdmin. phpMyAdmin can be used to trigger a remote code execution attack against certain PHP installations that are running with the dbase extension. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.

AI Score

8.1

Confidence

Low

EPSS

0.051

Percentile

93.0%