CORE IMPACT v8 - Exploits Update (Wed Feb 25 2009)
PHPMyAdmin Server_databases Remote Code Execution Exploit
Exploits/Remote [Linux]
Wed Feb 25 2009
This module exploits a vulnerability in PHPMyAdmin. server_databases.php fails when it attemps to sanitize the sort_by parameter. It allows an attacker to inject code, and execute it on the web server with www-data privileges.
Exploits Vulnerabiltiy: CVE-2008-4096











