Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fastadmin HIGH 7.2
CVE-2025-14966

A vulnerability was determined in FastAdmin up to 1.7.0.20250506. Affected is the function selectpage of the file application/common/controller/Backe…

Fix: after 1.6.1.20250430
Fix from $1,950 2025-12-19
Fastadmin HIGH 7.5
CVE-2024-7928EPSS 17%

A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121. Affected by this issue is some unknown functi…

Fix: 1.3.4.20220530+
Fix from $1,950 2024-08-19
Fastadmin CRITICAL 9.8
CVE-2021-43117

fastadmin v1.2.1 is affected by a file upload vulnerability which allows arbitrary code execution through shell access.

No fix yet
Fix from $2,300 2021-12-13
Fastadmin MEDIUM 5.4
CVE-2020-26609

fastadmin V1.0.0.20200506_beta contains a cross-site scripting (XSS) vulnerability which may allow an attacker to obtain administrator credentials to…

No fix yet
Fix from $1,600 2021-02-23
Fastadmin HIGH 8.8
CVE-2020-25967

The member center function in fastadmin V1.0.0.20200506_beta is vulnerable to a Server-Side Template Injection (SSTI) vulnerability.

No fix yet
Fix from $1,950 2020-12-10
Fastadmin HIGH 7.2
CVE-2020-21665

In fastadmin V1.0.0.20191212_beta, when a user with administrator rights has logged in, a malicious parameter can be passed for SQL injection in URL …

Patch available
Fix from $1,950 2020-11-17
Fastadmin HIGH 8.8
CVE-2019-17431

An issue was discovered in fastadmin 1.0.0.20190705_beta. There is a public/index.php/admin/auth/admin/add CSRF vulnerability.

No fix yet
Fix from $1,950 2019-10-10
Fastadmin MEDIUM 6.5
CVE-2019-17432

An issue was discovered in fastadmin 1.0.0.20190705_beta. There is a public/admin/general.config/edit CSRF vulnerability, as demonstrated by resultan…

No fix yet
Fix from $1,600 2019-10-10
Fastadmin HIGH 8.8
CVE-2019-11077

FastAdmin V1.0.0.20190111_beta has a CSRF vulnerability to add a new admin user via the admin/auth/admin/add?dialog=1 URI.

No fix yet
Fix from $1,950 2019-04-11
Fastadmin MEDIUM 5.4
CVE-2018-10268

An issue was discovered in FastAdmin V1.0.0.20180417_beta. There is XSS via the application\api\controller\User.php avatar parameter.

No fix yet
Fix from $1,600 2018-04-22