Summary
The remote host is running phpMyAdmin, an open-source software written in PHP to handle the administration of MySQL over the Web.
This version is vulnerable to cross-site scripting attacks through read_dump.php script.
With a specially crafted URL, an attacker can cause arbitrary code execution resulting in a loss of integrity.
Solution
Upgrade to version 2.6.0-pl3 or newer
Severity
Classification
-
CVE CVE-2004-1055 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities