Skip to content
COOEY

EXPOSURES › CVE-2021-21311

CVE-2021-21311

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2025-09-29 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2021-21311 ↗
⌖ EXPLOITED IN THE WILD SHAME 72/100 exploited-in-wildunpatched

Adminer server-side request forgery allowed remote attackers to access sensitive data.

Adminer, a web administration tool, had a server-side request forgery vulnerability that enabled remote attackers to access sensitive data. This was actively exploited in the wild.

Shame score — Actively exploited in the wild, leading to unauthorized data access.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Adminer contains a server-side request forgery vulnerability that, when exploited, allows a remote attacker to obtain potentially sensitive information.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.