Description
Adminer and AdminerEvo are vulnerable to SSRF via database connection fields. This could allow an unauthenticated remote attacker to enumerate or access systems the attacker would not otherwise have access to. Adminer is no longer supported, but this issue was fixed in AdminerEvo version 4.8.4.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-49502 | Adminer and AdminerEvo are vulnerable to SSRF via database connection fields. This could allow an unauthenticated remote attacker to enumerate or access systems the attacker would not otherwise have access to. Adminer is no longer supported, but this issue was fixed in AdminerEvo version 4.8.4. |
References
History
Wed, 15 Oct 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:adminerevo:adminerevo:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: cisa-cg
Published:
Updated: 2024-08-02T20:14:19.950Z
Reserved: 2023-10-05T03:54:13.664Z
Link: CVE-2023-45195
Updated: 2024-08-02T20:14:19.950Z
Status : Analyzed
Published: 2024-06-24T22:15:10.060
Modified: 2025-10-15T15:32:13.457
Link: CVE-2023-45195
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD