CVE-2011-2643

Publication date

2011-08-01 19:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in sql.php in phpMyAdmin 3.4.x before 3.4.3.2, when configuration storage is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in a MIME-type transformation parameter.