CVE-2013-3239

phpMyAdmin <3.5.8 and <4.0.0-rc3 - Authenticated RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2013-3239.

AI-analyzed exploit summary This is a detailed technical analysis of multiple vulnerabilities in phpMyAdmin, including remote code execution via preg_replace() and file extension manipulation. It provides root cause analysis, affected code snippets, and step-by-step exploitation details.

Description

phpMyAdmin 3.5.x before 3.5.8 and 4.x before 4.0.0-rc3, when a SaveDir directory is configured, allows remote authenticated users to execute arbitrary code by using a double extension in the filename of an export file, leading to interpretation of this file as an executable file by the Apache HTTP Server, as demonstrated by a .php.sql filename.

Exploits (1)

exploitdb WRITEUP
webappsphp
https://www.exploit-db.com/exploits/25003

This is a detailed technical analysis of multiple vulnerabilities in phpMyAdmin, including remote code execution via preg_replace() and file extension manipulation. It provides root cause analysis, affected code snippets, and step-by-step exploitation details.

Classification
Writeup 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: phpMyAdmin 3.5.8 and 4.0.0-RC2
Auth required
Prerequisites: Valid phpMyAdmin user credentials · PHP version < 5.4.7 for preg_replace() exploit · Apache webserver with unknown MIME for 'sql' extension for file extension exploit
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory x_refsource_confirm
https://wiki.mageia.org/en/Support/Advisories/MGASA-2013-0133
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2013:160
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-04/0217.html
Mailing List, Third Party Advisory vendor-advisory x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/104936.html
Mailing List vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2013-06/msg00181.html
Mailing List, Third Party Advisory vendor-advisory x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/104770.html
Mailing List, Third Party Advisory vendor-advisory x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2013-May/104725.html

Scores

EPSS 0.1233
EPSS Percentile 94.1%

Details

CWE
CWE-94
Status published
Products (13)
phpmyadmin/phpmyadmin 3.5.0.0
phpmyadmin/phpmyadmin 3.5.1.0
phpmyadmin/phpmyadmin 3.5.2.0
phpmyadmin/phpmyadmin 3.5.2.1
phpmyadmin/phpmyadmin 3.5.2.2
phpmyadmin/phpmyadmin 3.5.3.0
phpmyadmin/phpmyadmin 3.5.4
phpmyadmin/phpmyadmin 3.5.5
phpmyadmin/phpmyadmin 3.5.6
phpmyadmin/phpmyadmin 3.5.7 (2 CPE variants)
... and 3 more
Published Apr 26, 2013
Tracked Since Feb 18, 2026