Vulnerabilities > Admidio > Admidio > 1.4.8

DATE CVE VULNERABILITY TITLE RISK
2020-04-24 CVE-2020-11004 SQL Injection vulnerability in Admidio
SQL Injection was discovered in Admidio before version 3.3.13.
network
low complexity
admidio CWE-89
5.0
2008-11-24 CVE-2008-5209 Path Traversal vulnerability in Admidio 1.4.8
Directory traversal vulnerability in modules/download/get_file.php in Admidio 1.4.8 allows remote attackers to read arbitrary files via a ..
network
low complexity
admidio CWE-22
5.0