Authentication Bypass and Information Disclosure in phpMyAdmin

Authentication Bypass and Information Disclosure in phpMyAdmin

CVE-2010-4481 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.

Learn more about our Web Application Penetration Testing UK.