Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v8 - Exploits Update (Wed Feb 25 2009)

PHPMyAdmin Server_databases Remote Code Execution Exploit

Exploits/Remote  [Linux]




• Wed Feb 25 2009
This module exploits a vulnerability in PHPMyAdmin. server_databases.php fails when it attemps to sanitize the sort_by parameter. It allows an attacker to inject code, and execute it on the web server with www-data privileges.

Exploits Vulnerabiltiy: CVE-2008-4096



< Back to Product Updates