|
phpMyAdmin contains a flaw that may allow a remote attacker to access arbitrary Databases. By sending configuration parameters to the 'left.php' script, a remote attacker could modify current configuration settings and could gain access to the MySQL server that were not listed in the original configuration file, resulting in a loss of confidentiality.
|