CVE-2013-4999: phpMyAdmin
Medium severity, CVSS 5.0. EPSS: 1.8% chance of exploitation in the next 30 days.
phpMyAdmin 4.0.x before 4.0.4.2 allows remote attackers to obtain sensitive information via an invalid request, which reveals the installation path in an error message, related to Error.class.php and Error_Handler.class.php.
Affected products
- phpMyAdmin phpMyAdmin: version 4.0.0 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only; version 4.0.4 only; version 4.0.4.1 only
Published 2013-07-31. Last modified 2026-06-16.