Loading
Generated remediation guidance and an executive summary. No account required.
phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror during an unspecified time frame in 2012, contains an externally introduced modification (Trojan Horse) in server_sync.php, which allows remote attackers to execute arbitrary PHP code via an eval injection attack.
Use CWE-94, Phpmyadmin vendor hub and Phpmyadmin product page to widen CVE-2012-5159 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-22452, CVE-2020-26935 and CVE-2020-22278 for nearby disclosures in the same product family.