CVE Database
/

CVE-2023-45195

Back to search

CVE-2023-45195

Published: Jun 24, 2024

Modified: Aug 2, 2024

PUBLISHED

Description

Adminer and AdminerEvo are vulnerable to SSRF via database connection fields. This could allow an unauthenticated remote attacker to enumerate or access systems the attacker would not otherwise have access to. Adminer is no longer supported, but this issue was fixed in AdminerEvo version 4.8.4.

VendorProductVersions

Adminer

Adminer

affected
0 - <= *
affected
cpe:2.3:a:adminer:adminer:0:*:*:*:*:*:*:* - <= cpe:2.3:a:adminer:adminer:*:*:*:*:*:*:*:*

AdminerEvo

AdminerEvo

affected
4.8.2 - < 4.8.4
affected
cpe:2.3:a:adminerevo:adminerevo:0:*:*:*:*:*:*:* - < cpe:2.3:a:adminerevo:adminerevo:4.8.4:*:*:*:*:*:*:*

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now