Re: [PHP] Vulnerability Announced in phpMyAdmin
[email protected] (tamouse mailing lists)
| Newsgroups | php.db,php.general,php.mirrors |
|---|---|
| Message-ID | <CAHUC_t-7-RczV8v=q6LuXmJC0ypJDOJLoKqKXcGX4Q--z=jgSg@mail.gmail.com> |
On Tue, Sep 25, 2012 at 3:20 PM, Daniel Brown <[email protected]> wrote: > Just a three-list cross-post to bring it to everyone's attention > at once, in case you weren't already aware. It was announced today > that a compromised SourceForge mirror was distributing a malicious > file with the phpMyAdmin package that allows an attacker to > arbitrarily execute code on a server hosting the exploitable package. > Obligatory (not intentionally self-serving) social media link here: > > https://twitter.com/oidk/status/250688002005811200 > Signal boosting...