Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

September 25th, 2012, 14:25 GMT · By

BLOG

Backdoor in phpMyAdmin Allows Hackers to Execute PHP Code

SHARE:

Adjust text size:


phpMyAdmin distribution found to contain backdoor Enlarge picture - phpMyAdmin distribution found to contain backdoor
phpMyAdmin is warning customers that a kit hosted on the SourceForge.net mirror system has been found to contain a backdoor that allows remote attackers to execute arbitrary PHP code.

The developers have been notified by the Tencent Security Response Center that the distribution contains a malicious file.

The affected mirror is called cdnetworks-kr-1, the backdoor being located in the server_sync.php file.

Apparently, this isn’t the only corrupt file. The phpMyAdmin development team claims that a second file - js/cross_framing_protection.js – has also been modified. The vulnerability has been cataloged as being a critical one.

Users who downloaded phpMyAdmin-3.5.2.2-all-languages.zip from the aforementioned mirror are advised to check if the download contains the server_sync.php file.

If the file is present, the entire distribution should be downloaded once again from a trusted mirror.

TELL US WHAT YOU THINK:

3,556 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Expert: USSD Codes Can Be Used to Remotely Reset Samsung Galaxy S3 Phones

One Billion Users Affected by Java Security Sandbox Bypass Vulnerability, Experts Say

Security Brief: Mohammed Protests, Cyberlaws and Internet Explorer

RevolutionTT Administrators: Site Was Not Hacked, Your Account Is Secure

Hackers Leak User Details from American Chamber of Commerce in France

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM