Skip to content

Home Publications phpMyAdmin Releases Version 4.8.5 to Fix SQL Injection and Arbitrary File Read Vulnerabilities
phpMyAdmin Releases Version 4.8.5 to Fix SQL Injection and Arbitrary File Read Vulnerabilities
Tuesday, 29 January 2019 11:00

Two vulnerabilities were reported in phpMyAdmin version prior to 4.8.5. A specially crafted username can be used to trigger an SQL injection attack. An attacker may be able to read any file or exploit the vulnerability to delete arbitrary files on the server. Users are advised to upgrade phpMyAdmin to version 4.8.5 or apply available patches.

 
[YOUR IP: 3.95.63.218: 34658] ...   [YOUR BROWSER: CCBot/2.0 (https://commoncrawl.org/faq/)] ...