php.net |  support |  documentation |  report a bug |  advanced search |  search howto |  statistics |  random bug |  login
Bug #74204 bruteforce phpmyadmin
Submitted: 2017-03-04 11:28 UTC Modified: 2017-03-04 11:38 UTC
From: sreenathr10 at gmail dot com Assigned:
Status: Not a bug Package: *General Issues
PHP Version: 7.1.3RC1 OS: windows 10
Private report: No CVE-ID: None
Welcome back! If you're the original bug submitter, here's where you can edit the bug or add additional notes.
If you forgot your password, you can retrieve your password here.
Password:
Status:
Package:
Bug Type:
Summary:
From: sreenathr10 at gmail dot com
New email:
PHP Version: OS:

 

 [2017-03-04 11:28 UTC] sreenathr10 at gmail dot com
Description:
------------
Using brute force method i have accessed to phpmyadmin because there is no limitation in typing username and password.

Test script:
---------------
Using bruteforce i got username and password so please add limitations in phpmyadmin

Expected result:
----------------
login successful

Actual result:
--------------
any body can login using bruteforce and upload shell into the server

Patches

Pull Requests

History

AllCommentsChangesGit/SVN commitsRelated reports
 [2017-03-04 11:38 UTC] requinix@php.net
-Status: Open +Status: Not a bug
 [2017-03-04 11:38 UTC] requinix@php.net
We are not phpMyAdmin.
 
PHP Copyright © 2001-2026 The PHP Group
All rights reserved.
Last updated: Wed Oct 07 20:00:02 2026 UTC