Vulnerabilities > Funadmin > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-25 CVE-2024-48224 Path Traversal vulnerability in Funadmin 5.0.2
Funadmin v5.0.2 has an arbitrary file read vulnerability in /curd/index/editfile.
network
low complexity
funadmin CWE-22
4.9
2024-10-25 CVE-2024-48225 Unspecified vulnerability in Funadmin 5.0.2
Funadmin v5.0.2 has an arbitrary file deletion vulnerability in /curd/index/delfile.
network
low complexity
funadmin
6.5
2024-10-25 CVE-2024-48227 Unspecified vulnerability in Funadmin 5.0.2
Funadmin 5.0.2 has a logical flaw in the Curd one click command deletion function, which can result in a Denial of Service (DOS).
network
low complexity
funadmin
4.9
2023-05-02 CVE-2023-2477 Cross-site Scripting vulnerability in Funadmin
A vulnerability was found in Funadmin up to 3.2.3.
network
low complexity
funadmin CWE-79
6.1