Количество 5
Количество 5
CVE-2026-56703
Adminer before 5.4.3 contains a remote code execution vulnerability in SQLite query handling where VACUUM INTO is not blocked despite ATTACH restrictions. Authenticated attackers can execute VACUUM INTO to write PHP code to arbitrary file paths and execute commands on the server.
CVE-2026-56703
Adminer before 5.4.3 contains a remote code execution vulnerability in SQLite query handling where VACUUM INTO is not blocked despite ATTACH restrictions. Authenticated attackers can execute VACUUM INTO to write PHP code to arbitrary file paths and execute commands on the server.
CVE-2026-56703
Adminer before 5.4.3 contains a remote code execution vulnerability in ...
GHSA-j4fh-9p52-f987
Adminer before 5.4.3 contains a remote code execution vulnerability in SQLite query handling where VACUUM INTO is not blocked despite ATTACH restrictions. Authenticated attackers can execute VACUUM INTO to write PHP code to arbitrary file paths and execute commands on the server.
BDU:2026-12715
Уязвимость драйвера SQLite программного обеспечения для управления базами данных Adminer, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-56703 Adminer before 5.4.3 contains a remote code execution vulnerability in SQLite query handling where VACUUM INTO is not blocked despite ATTACH restrictions. Authenticated attackers can execute VACUUM INTO to write PHP code to arbitrary file paths and execute commands on the server. | CVSS3: 7.2 | 1% Низкий | 12 дней назад | |
CVE-2026-56703 Adminer before 5.4.3 contains a remote code execution vulnerability in SQLite query handling where VACUUM INTO is not blocked despite ATTACH restrictions. Authenticated attackers can execute VACUUM INTO to write PHP code to arbitrary file paths and execute commands on the server. | CVSS3: 7.2 | 1% Низкий | 12 дней назад | |
CVE-2026-56703 Adminer before 5.4.3 contains a remote code execution vulnerability in ... | CVSS3: 7.2 | 1% Низкий | 12 дней назад | |
GHSA-j4fh-9p52-f987 Adminer before 5.4.3 contains a remote code execution vulnerability in SQLite query handling where VACUUM INTO is not blocked despite ATTACH restrictions. Authenticated attackers can execute VACUUM INTO to write PHP code to arbitrary file paths and execute commands on the server. | CVSS3: 7.2 | 1% Низкий | 12 дней назад | |
BDU:2026-12715 Уязвимость драйвера SQLite программного обеспечения для управления базами данных Adminer, позволяющая нарушителю выполнить произвольный код | CVSS3: 7.2 | 1% Низкий | около 2 месяцев назад |
Уязвимостей на страницу