If you’re running FreePBX Distro then I recommend you do not install the version of phpmyadmin included, especially if the system is accessible over the Internet.
This current version of phpmyadmin included (as of 15/8/11) is 188.8.131.52 –
and this is vulnerable to at least the following exploits –
It looks like the version of phpmyadmin included with the FreePBX Distro was pulled from rpmforge a while back, but is now out of date. If you want/need to install phpmyadmin I suggest getting it from there (or install from source, but make sure you keep it up to date!) –
The default advice remains the same though – take every effort to restrict who can get access to the web interface of any servers.
This information only affects FreePBX Distro (not FreePBX itself) and no SysAdminMan VPS customers are affected.