CVE-2013-3241

Publication date 26 April 2013

Last updated 24 July 2024


Ubuntu priority

export.php (aka the export script) in phpMyAdmin 4.x before 4.0.0-rc3 overwrites global variables on the basis of the contents of the POST superglobal array, which allows remote authenticated users to inject values via a crafted request.

Read the notes from the security team

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
phpmyadmin 13.04 raring
Not affected
12.10 quantal
Not affected
12.04 LTS precise
Not affected
11.10 oneiric
Not affected
10.04 LTS lucid
Not affected
8.04 LTS hardy
Not affected

Notes


jdstrand

4.x only