Portable phpMyAdmin Security Key

Prior to version 1.4, Portable phpMyAdmin plugin used to be a zero-footprint plugin. Due to recent events involving its vulnerability, I have decided to add a security key.

This security key is generated when the plugin is first activated, and then stored inside WordPress’ options table. The key is unique to each blog, and once generated, it cannot be changed or deleted. As the phpMyAdmin utility is loaded inside an iframe, it is required to verify if the user has an administrator role and the key parameter is the same as the stored one. This process completely eliminates external access to /pma/ folder, or any other subfolder.

Along with this security enhancement, I have continued my theme quest and tweaked the user interface a bit, moved some boxes, added some styles and removed some unused functions.

Please upgrade to version 1.4 (or higher).

Read More on the Same Subject

Read our comment policy before commenting!

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>