CVE-2005-3299
EPSS 10.4%
Description
PHP file inclusion vulnerability in grab_globals.lib.php in phpMyAdmin 2.6.4 and 2.6.4-pl1 allows remote attackers to include local files via the $__redirect parameter, possibly involving the subform array.
How to fix CVE-2005-3299
To remediate CVE-2005-3299, upgrade the affected package to a fixed version below.
- Debian/phpmyadmin—upgrade to 4:2.6.4-pl2-1 or later
Is CVE-2005-3299 being exploited?
Moderate — EPSS is 10.4%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 4:2.6.4-pl2-1