CVE-2009-1285

phpMyAdmin < 3.1.3.2 - Remote Code Injection via ConfigFile.class.php

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2009-1285. PoCs published by Greg Ose, pagvac, egypt, Tenable, g0tmi1k, including Metasploit module exploits/unix/webapp/phpmyadmin_config.

AI-analyzed exploit summary This Metasploit module exploits a code injection vulnerability in phpMyAdmin's setup feature, allowing arbitrary PHP code execution by writing to the configuration file. It supports versions 2.11.x <= 2.11.9.4 and 3.x <= 3.1.3.1, with automatic detection of setup paths and CSRF token handling.

Description

Static code injection vulnerability in the getConfigFile function in setup/lib/ConfigFile.class.php in phpMyAdmin 3.x before 3.1.3.2 allows remote attackers to inject arbitrary PHP code into configuration files.

Exploits (1)

metasploit WORKING POC EXCELLENT
by Greg Ose, pagvac, egypt, Tenable, g0tmi1k · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/unix/webapp/phpmyadmin_config.rb

This Metasploit module exploits a code injection vulnerability in phpMyAdmin's setup feature, allowing arbitrary PHP code execution by writing to the configuration file. It supports versions 2.11.x <= 2.11.9.4 and 3.x <= 3.1.3.1, with automatic detection of setup paths and CSRF token handling.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: phpMyAdmin 2.11.x <= 2.11.9.4 and 3.x <= 3.1.3.1
No auth needed
Prerequisites: Access to the phpMyAdmin setup directory · Write permissions on the config directory
devstral-2 · analyzed Apr 21, 2026 Full analysis →

References (8)

Core 8
Core References
Patch, Vendor Advisory x_refsource_confirm
http://www.phpmyadmin.net/home_page/security/PMASA-2009-4.php
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/1045
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/34741
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/34727
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34526

Scores

EPSS 0.3606
EPSS Percentile 97.2%

Details

CWE
CWE-94
Status published
Products (8)
phpmyadmin/phpmyadmin 3.0.0
phpmyadmin/phpmyadmin 3.0.1
phpmyadmin/phpmyadmin 3.1.0
phpmyadmin/phpmyadmin 3.1.0.0
phpmyadmin/phpmyadmin 3.1.1 (2 CPE variants)
phpmyadmin/phpmyadmin 3.1.2 (2 CPE variants)
phpmyadmin/phpmyadmin 3.1.3 (3 CPE variants)
phpmyadmin/phpmyadmin 3.1.3.1
Published Apr 16, 2009
Tracked Since Feb 18, 2026