12
Critical: Backdoor in PhpMyAdmin download
by admin ·
A download mirror of SourceForge network has in recent days distributes software PhpMyAdmin in a version equipped with a backdoor.
This is the archive “phpMyAdmin-3.5.2.2-all-languages.zip”, the 22nd probably around 400 users since Have downloaded September. The affected server is located in Korea and has the hostname “CDNetworks-kr-1″, Sourceforge removed him from the mirror network.
The compromised version of the software contains the file “server_sync.php” additional PHP code that evaluates HTTP post data and an installation so vulnerable from the outside. Additional Javascript code is possibly the attacker to detect vulnerable installations, such as the developer Michal Čihař writes in a blog entry.
(more…)
