Vulnerability Details CVE-2013-4998
phpMyAdmin 3.5.x before 3.5.8.2 and 4.0.x before 4.0.4.2 allows remote attackers to obtain sensitive information via an invalid request, which reveals the installation path in an error message, related to pmd_common.php and other files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 75.6%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2013-4998
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.0.0
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.1.0
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.2.0
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.2.1
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.2.2
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.3.0
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.4
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.5
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.6
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.7
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.8
-
cpe:2.3:a:phpmyadmin:phpmyadmin:3.5.8.1
-
cpe:2.3:a:phpmyadmin:phpmyadmin:4.0.0
-
cpe:2.3:a:phpmyadmin:phpmyadmin:4.0.1
-
cpe:2.3:a:phpmyadmin:phpmyadmin:4.0.2
-
cpe:2.3:a:phpmyadmin:phpmyadmin:4.0.3
-
cpe:2.3:a:phpmyadmin:phpmyadmin:4.0.4
-
cpe:2.3:a:phpmyadmin:phpmyadmin:4.0.4.1