Vulnerabilities > Admidio

DATE CVE VULNERABILITY TITLE RISK
2022-06-28 CVE-2022-23896 Cross-site Scripting vulnerability in Admidio
Admidio 4.1.2 version is affected by stored cross-site scripting (XSS).
network
low complexity
admidio CWE-79
5.4
2022-03-19 CVE-2022-0991 Insufficient Session Expiration vulnerability in Admidio
Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.1.9.
network
low complexity
admidio CWE-613
7.1
2021-12-07 CVE-2021-43810 Unspecified vulnerability in Admidio
Admidio is a free open source user management system for websites of organizations and groups.
network
low complexity
admidio
6.1
2021-05-20 CVE-2021-32630 Unspecified vulnerability in Admidio
Admidio is a free, open source user management system for websites of organizations and groups.
network
low complexity
admidio
8.8
2020-04-24 CVE-2020-11004 SQL Injection vulnerability in Admidio
SQL Injection was discovered in Admidio before version 3.3.13.
network
low complexity
admidio CWE-89
7.5
2017-05-16 CVE-2017-8382 Cross-Site Request Forgery (CSRF) vulnerability in Admidio 3.2.8
admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts.
network
low complexity
admidio CWE-352
4.5
2017-03-05 CVE-2017-6492 SQL Injection vulnerability in Admidio 3.2.5
SQL Injection was discovered in adm_program/modules/dates/dates_function.php in Admidio 3.2.5.
network
low complexity
admidio CWE-89
7.2