phpMyAdmin -- multiple vulnerabilities

Affected packages
phpMyAdmin <
phpMyAdmin211 <


VuXML ID cd68ff50-362b-11e0-ad36-00215c6a37bb
Discovery 2011-02-08
Entry 2011-02-11

phpMyAdmin team reports:

It was possible to create a bookmark which would be executed unintentionally by other users.

When the files README, ChangeLog or LICENSE have been removed from their original place (possibly by the distributor), the scripts used to display these files can show their full path, leading to possible further attacks.