CVE-2021-21311
Adminer is an open-source database management in a single PHP file. In adminer from version 4.0.0 and before 4.7.9 there is a server-side request forgery vulnerability. Users of Adminer versions bundling all drivers (e.g. `adminer.php`) are affected. This is fixed in version 4.7.9.
- Adminer
- < 4.7.9
- Fix
- Available
- CVSS 3.1
- 7.2 HIGH
- EPSS
- 90.5% (100th percentile)
- Weakness
- CWE-918
- NVD status
- Analyzed
- Published
- 2021-02-11
CVE-2021-21311 at NVD
5 known exploits for CVE-2021-21311
Proof-of-concept code and exploit modules indexed by Sploitus