Description
libraries/sql-parser/autoload.php in the SQL parser in phpMyAdmin 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request, which reveals the full path in an error message.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Landing Pages Multiple Unspecified Vulnerabilities (1.7.8)
WordPress Plugin Konnichiwa! Membership Cross-Site Scripting (0.8.3)
PostgreSQL Other Vulnerability (CVE-1999-0862)
WordPress Plugin Widget Control Powered By Everyblock Cross-Site Scripting (1.0.1)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-1000504)