Details
Directory traversal vulnerability in bs_disp_as_mime_type.php in the BLOB streaming feature in phpMyAdmin before 3.1.3.1 allows remote attackers to read arbitrary files via directory traversal sequences in the file_path parameter ($filename variable).Novell Bugzilla entry: 490596 SUSE Security Advisories:
- SUSE-SR:2009:008 , published Mon, 06 Apr 2009 15:00:00 +0000
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| openSUSE 10.3 openSUSE 11.0 |
| ZYPP Patch Nr: 6133 SAT Patch Nr: 711 |