Vulnerabilities > Admidio > Admidio > 3.2.8

DATE CVE VULNERABILITY TITLE RISK
2020-04-24 CVE-2020-11004 SQL Injection vulnerability in Admidio
SQL Injection was discovered in Admidio before version 3.3.13.
network
low complexity
admidio CWE-89
5.0
2017-05-16 CVE-2017-8382 Cross-Site Request Forgery (CSRF) vulnerability in Admidio 3.2.8
admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts.
network
admidio CWE-352
3.5