Unspecified vulnerability in phpMyAdmin before 2.11.5.2, when running on shared hosts, allows remote authenticated users with CREATE table permissions to read arbitrary files via a crafted HTTP POST request, related to use of an undefined UploadDir variable.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation30 reference(s) from NVD