CVE-2007-0095
published 2007-01-05CVE-2007-0095: phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the…
PriorityP45medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.62%
73.3th percentile
phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the path in an error message.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | phpmyadmin | < phpmyadmin 4:2.9.1.1-1 (bookworm) | phpmyadmin 4:2.9.1.1-1 (bookworm) |
| phpmyadmin | phpmyadmin | — | — |
| phpmyadmin | phpmyadmin | >= 0 < 4:2.9.1.1-1 | 4:2.9.1.1-1 |
| phpmyadmin | phpmyadmin | >= 0 < 4:2.9.1.1-1 | 4:2.9.1.1-1 |
| phpmyadmin | phpmyadmin | >= 0 < 4:2.9.1.1-1 | 4:2.9.1.1-1 |
| phpmyadmin | phpmyadmin | >= 0 < 4:2.9.1.1-1 | 4:2.9.1.1-1 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM
vendor_debian5.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2007-0095: phpmyadmin - phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a...
vendor_debian·2007·CVSS 5.0
CVE-2007-0095 [MEDIUM] CVE-2007-0095: phpmyadmin - phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a...
phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the path in an error message.
Scope: local
bookworm: resolved (fixed in 4:2.9.1.1-1)
bullseye: resolved (fixed in 4:2.9.1.1-1)
forky: resolved (fixed in 4:2.9.1.1-1)
sid: resolved (fixed in 4:2.9.1.1-1)
trixie: resolved (fixed in 4:2.9.1.1-1)
GHSA
GHSA-72c5-c55w-559j: phpMyAdmin 2
ghsa_unreviewed·2022-05-01
CVE-2007-0095 [MEDIUM] GHSA-72c5-c55w-559j: phpMyAdmin 2
phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the path in an error message.
OSV
CVE-2007-0095: phpMyAdmin 2
osv·2007-01-05·CVSS 5.0
CVE-2007-0095 [MEDIUM] CVE-2007-0095: phpMyAdmin 2
phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via a direct request for themes/darkblue_orange/layout.inc.php, which reveals the path in an error message.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-0957 krb5_klog_syslog() stack buffer overflow
bugzilla·2007-03-08·CVSS 9.0
CVE-2007-0957 [CRITICAL] CVE-2007-0957 krb5_klog_syslog() stack buffer overflow
CVE-2007-0957 krb5_klog_syslog() stack buffer overflow
The MIT Kerberos Team has informed us of a stack based buffer overflow flaw in
krb5. An authenticated user could leverage this flaw to execute arbitrary code
with the permissions the kadmind process.
Discussion:
Created attachment 149633
Proposed upstream patch
---
This flaw should also affect RHEL2.1, 3, and 5
---
now public, removing embargo
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2007-0095.html
Bugzilla
CVE-2007-0095: phpMyAdmin <= 2.9.1.1 information disclosure
bugzilla·2007-01-06·CVSS 5.0
CVE-2007-0095 [MEDIUM] CVE-2007-0095: phpMyAdmin <= 2.9.1.1 information disclosure
CVE-2007-0095: phpMyAdmin <= 2.9.1.1 information disclosure
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-0095
"phpMyAdmin 2.9.1.1 allows remote attackers to obtain sensitive information via
a direct request for themes/darkblue_orange/layout.inc.php, which reveals the
path in an error message."
FC5+ apparently affected, even though I'm not sure if this is an issue at all.
Discussion:
For any Fedora installation, you know the path just from inspecting the RPM.
But this does disclose that the site is probably run on Fedora, which could
conceivably be an issue. Not that our Apache doesn't by default do the same
thing, but that's configurable.
So yes, this is an issue, although it's a terribly minor one.
---
I agree with Tibbs, I'm going to keep an eye on this to see if anything more
co
http://archives.neohapsis.com/archives/fulldisclosure/2007-01/0034.htmlhttp://lists.grok.org.uk/pipermail/full-disclosure/2007-January/051544.htmlhttp://osvdb.org/33257http://securityreason.com/securityalert/2104http://www.mandriva.com/security/advisories?name=MDKSA-2007:199https://exchange.xforce.ibmcloud.com/vulnerabilities/31223http://archives.neohapsis.com/archives/fulldisclosure/2007-01/0034.htmlhttp://lists.grok.org.uk/pipermail/full-disclosure/2007-January/051544.htmlhttp://osvdb.org/33257http://securityreason.com/securityalert/2104http://www.mandriva.com/security/advisories?name=MDKSA-2007:199https://exchange.xforce.ibmcloud.com/vulnerabilities/31223
2007-01-05
Published