CVE-2009-1148
Publication date 26 March 2009
Last updated 24 July 2024
Ubuntu priority
Description
Directory traversal vulnerability in bs_disp_as_mime_type.php in the BLOB streaming feature in phpMyAdmin before 3.1.3.1 allows remote attackers to read arbitrary files via directory traversal sequences in the file_path parameter ($filename variable).
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| phpmyadmin | ||
Patch details
| Package | Patch details |
|---|---|
| phpmyadmin |