CVE-2004-2631
EPSS 14.2%
Description
Eval injection vulnerability in left.php in phpMyAdmin 2.5.1 up to 2.5.7, when LeftFrameLight is FALSE, allows remote attackers to execute arbitrary PHP code via a crafted table name.
How to fix CVE-2004-2631
To remediate CVE-2004-2631, upgrade the affected package to a fixed version below.
- Debian/phpmyadmin—upgrade to 1:2.5.7-pl1-1 or later
Is CVE-2004-2631 being exploited?
Moderate — EPSS is 14.2%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 1:2.5.7-pl1-1