|
phpMyAdmin contains a flaw that will allow a remote attacker to inject arbitrary PHP code. If $cfg['LeftFrameLight'] in the 'config.lib.php' script is set to false, a remote attacker could supply a specially-crafted HTTP request containing malicious PHP code in the eval function of the 'left.php' script resulting in a loss of integrity.
|