Products
AdminerEvo
- 4.8.4
Source
9119a7d8-5eab-497f-8521-727c672e3725
Tags
CVE-2023-45196 details
Published : June 24, 2024, 9:15 p.m.
Last Modified : June 24, 2024, 9:15 p.m.
Last Modified : June 24, 2024, 9:15 p.m.
Description
Adminer and AdminerEvo allow an unauthenticated remote attacker to cause a denial of service by connecting to an attacker-controlled service that responds with HTTP redirects. The denial of service is subject to PHP configuration limits. Adminer is no longer supported, but this issue was fixed in AdminerEvo version 4.8.4.
CVSS Score
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 |
---|
Weakness
Weakness | Name | Description |
---|---|---|
CWE-400 | Uncontrolled Resource Consumption | The product does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources. |
References
URL | Source |
---|---|
https://github.com/adminerevo/adminerevo/pull/102/commits/23e7cdc0a32b3739e13d19ae504be0fe215142b6 | 9119a7d8-5eab-497f-8521-727c672e3725 |
This website uses the NVD API, but is not approved or certified by it.