Back to search
CVE-2023-45195
Published: Jun 24, 2024
Modified: Aug 2, 2024
PUBLISHED
Description
Adminer and AdminerEvo are vulnerable to SSRF via database connection fields. This could allow an unauthenticated remote attacker to enumerate or access systems the attacker would not otherwise have access to. Adminer is no longer supported, but this issue was fixed in AdminerEvo version 4.8.4.
| Vendor | Product | Versions |
|---|---|---|
Adminer | Adminer | affected 0 - <= *affected cpe:2.3:a:adminer:adminer:0:*:*:*:*:*:*:* - <= cpe:2.3:a:adminer:adminer:*:*:*:*:*:*:*:* |
AdminerEvo | AdminerEvo | affected 4.8.2 - < 4.8.4affected cpe:2.3:a:adminerevo:adminerevo:0:*:*:*:*:*:*:* - < cpe:2.3:a:adminerevo:adminerevo:4.8.4:*:*:*:*:*:*:* |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now