Lucene search

K
ubuntucveUbuntu.comUB:CVE-2005-1392
HistoryMay 03, 2005 - 12:00 a.m.

CVE-2005-1392

2005-05-0300:00:00
ubuntu.com
ubuntu.com
11

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

EPSS

0

Percentile

5.1%

The SQL install script in phpMyAdmin 2.6.2 is created with world-readable
permissions, which allows local users to obtain the initial database
password by reading the script.

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

EPSS

0

Percentile

5.1%