Looking for the vulnerability index of Invicti's legacy products?
Adminer Server Side Request Forgery (SSRF) - Vulnerability Database

Adminer Server Side Request Forgery (SSRF)

Description

Adminer (formerly phpMinAdmin) is a full-featured database management tool written in PHP. Users of Adminer versions bundling all drivers (e.g. adminer.php) are vulnerable to a Server Side Request Forgery (SSRF) vulnerability that affects the Elasticsearch login module.

Remediation

Upgrade to the latest version of adminer. This issue was fixed in version <strong>4.7.9</strong>.