Security Advisory

CVE-2016-6610

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-12-11 02:00:00
Last updated 2024-08-06 01:36:28
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A full path disclosure vulnerability was discovered in phpMyAdmin where a user can trigger a particular error in the export mechanism to discover the full path of phpMyAdmin on the disk. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.