Skip to main content

CVE-2021-43008

7.5
HIGHCVSS v3.1 Base Score
84.74%
HIGH RiskEPSS (99th percentile)
NVD-CWE-Other

Improper Access Control in Adminer versions 1.12.0 to 4.6.2 (fixed in version 4.6.3) allows an attacker to achieve Arbitrary File Read on the remote server by requesting the Adminer to connect to a remote MySQL database.

Published: 4/5/2022
Modified: 11/21/2024
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.5HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CVSS v2 Score

5

AV:N/AC:L/Au:N/C:P/I:N/A:N

EPSS Score (Exploitation Probability)

84.74%HIGH Exploitation Risk
99th percentile

This vulnerability has a 84.74% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.

CWE Classification

NVD-CWE-Other

Related Vulnerabilities