CVE-2005-2256

Encoded directory traversal vulnerability in phpPgAdmin 3.1 to 3.5.3 allows remote attackers to access arbitrary files via "%2e%2e%2f" (encoded dot dot) sequences in the formLanguage parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:phppgadmin:phppgadmin:3.1:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.2:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.3:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.4:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.4.1:*:*:*:*:*:*:*
cpe:2.3:a:phppgadmin:phppgadmin:3.5.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-07-13 04:00

Updated : 2024-02-04 16:52


NVD link : CVE-2005-2256

Mitre link : CVE-2005-2256

CVE.ORG link : CVE-2005-2256


JSON object : View

Products Affected

phppgadmin

  • phppgadmin