Adminer through 4.3.1 has SSRF via the server parameter.
References
Link | Resource |
---|---|
http://hyp3rlinx.altervista.org/advisories/ADMINER-UNAUTHENTICATED-SERVER-SIDE-REQUEST-FORGERY.txt | Exploit Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2018/03/msg00014.html | Third Party Advisory |
Configurations
Information
Published : 2018-03-04 23:29
Updated : 2018-03-27 06:32
NVD link : CVE-2018-7667
Mitre link : CVE-2018-7667
JSON object : View
CWE
CWE-918
Server-Side Request Forgery (SSRF)
Products Affected
adminer
- adminer