Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-21311

Опубликовано: 11 фев. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4
CVSS3: 7.2

Описание

Adminer is an open-source database management in a single PHP file. In adminer from version 4.0.0 and before 4.7.9 there is a server-side request forgery vulnerability. Users of Adminer versions bundling all drivers (e.g. adminer.php) are affected. This is fixed in version 4.7.9.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

4.8.1-1
esm-apps/bionic

released

4.6.2-1ubuntu0.1~esm1
esm-apps/focal

released

4.7.6-1ubuntu0.1~esm1
esm-apps/jammy

not-affected

4.8.1-1
esm-apps/noble

not-affected

4.8.1-1
esm-apps/xenial

released

4.2.1-1ubuntu1+esm1
esm-infra-legacy/trusty

DNE

focal

ignored

end of standard support, was needed
groovy

ignored

end of life

Показывать по

6.4 Medium

CVSS2

7.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.2
nvd
почти 5 лет назад

Adminer is an open-source database management in a single PHP file. In adminer from version 4.0.0 and before 4.7.9 there is a server-side request forgery vulnerability. Users of Adminer versions bundling all drivers (e.g. `adminer.php`) are affected. This is fixed in version 4.7.9.

CVSS3: 7.2
debian
почти 5 лет назад

Adminer is an open-source database management in a single PHP file. In ...

CVSS3: 7.2
github
почти 5 лет назад

SSRF in adminer

CVSS3: 7.2
fstec
почти 5 лет назад

Уязвимость программного обеспечения для управления базами данных Adminer, связанная с недостаточной проверкой запросов на стороне сервера, позволяющая нарушителю осуществить SSRF-атаку

6.4 Medium

CVSS2

7.2 High

CVSS3