Description
WordPress Plugin Portable phpMyAdmin is prone to an authentication bypass vulnerability. Attackers may exploit this issue to gain unauthorized access or to bypass intended security restrictions; other attacks may also be possible. WordPress Plugin Portable phpMyAdmin version 1.3.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.3.1 or latest
References
Related Vulnerabilities
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-5297)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-0123)
IBM WebSEAL Inadequate Encryption Strength Vulnerability (CVE-2019-4151)
Apache HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-39275)