First published: Tue Apr 05 2022(Updated: )
Improper Access Control in Adminer versions 1.12.0 to 4.6.2 (fixed in version 4.6.3) allows an attacker to achieve Arbitrary File Read on the remote server by requesting the Adminer to connect to a remote MySQL database.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Adminer Adminer | >=1.12.0<=4.6.2 | |
Debian GNU/Linux | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-43008 has a medium severity rating due to its ability to allow unauthorized access to sensitive files.
To fix CVE-2021-43008, upgrade Adminer to version 4.6.3 or later.
Adminer versions 1.12.0 through 4.6.2 are affected by CVE-2021-43008.
CVE-2021-43008 is categorized as an Improper Access Control vulnerability.
Yes, CVE-2021-43008 can lead to Arbitrary File Read on the remote server, potentially exposing sensitive data.