Awesome-POC/Web应用漏洞/宝塔 phpmyadmin未授权访问漏洞.md
2024-11-06 14:10:36 +08:00

21 lines
636 B
Markdown
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

# 宝塔 phpmyadmin未授权访问漏洞
## 漏洞描述
【宝塔面板】紧急安全更新通知Linux面板7.4.2版本/Windows面板6.8版本存在安全隐患,其他版本无此风险。已发布紧急更新,请所有使用此版本的用户务必升级到最新版,更新方法,登录面板直接升级更新即可,如更新出现问题,请登录宝塔论坛反馈或者联系客服反馈
## 漏洞影响
```
Linux正式版7.4.2
Linux测试版7.5.13
Windows正式版6.8
```
## 漏洞复现
访问 [**http://xxx.xxx.xxx.xxx:888/pma**](http://xxx.xxx.xxx.xxx:888/pma) 即可
![img](images/202202091838946.png)