CVE-2004-2631 | phpMyAdmin up to 2.5.7 left.php eval cfg[LeftFrameLight denial of service (EDB-309 / Nessus ID 14555)
A vulnerability was found in phpMyAdmin up to 2.5.7. It has been rated as critical. This issue affects the function eval in the library config.lib.php of the file left.php. The manipulation of the argument cfg[LeftFrameLight leads to…
A vulnerability was found in phpMyAdmin up to 2.5.7. It has been rated as critical. This issue affects the function eval in the library config.lib.php of the file left.php. The manipulation of the argument cfg[LeftFrameLight leads to denial of service.
The identification of this vulnerability is CVE-2004-2631. The attack may be initiated remotely. Furthermore, there is an exploit available.
Analyse für CVE-2004-2631 auf Basis von Live-CTI (ENISA EUVD): CVSS 0.0 · EPSS 0.0% · CISA KEV: nein. Handlungsableitung aus den verlinkten Hersteller-Quellen.
🛡️ Angriffsfläche & Exposure
Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.
⚡ Empfohlene Sofortmaßnahmen
1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
Synthetische RAG-Antwort
EDB-ID 309
CVE-2004-2631
ℹ️Kein gespiegelter Payload (tsecurity.de): Exploit-Code wird nicht reproduziert — Analyse nur über die Original-Quelle.