Adminer and AdminerEvo are vulnerable to SSRF via database connection fields. This could allow an unauthenticated remote attacker to enumerate or access systems the attacker would not otherwise have access to. Adminer is no longer supported, but this issue was fixed in AdminerEvo version 4.8.4.
Metrics
Affected Vendors & Products
References
History
Wed, 15 Oct 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:adminerevo:adminerevo:*:*:*:*:*:*:*:* | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: cisa-cg
Published: 2024-06-24T21:06:09.735Z
Updated: 2024-08-02T20:14:19.950Z
Reserved: 2023-10-05T03:54:13.664Z
Link: CVE-2023-45195
Updated: 2024-08-02T20:14:19.950Z
Status : Analyzed
Published: 2024-06-24T22:15:10.060
Modified: 2025-10-15T15:32:13.457
Link: CVE-2023-45195
No data.