CVE-2026-102247
- EPSS 0.39%
- Veröffentlicht 29.09.2026 04:17:54
- Zuletzt bearbeitet 29.09.2026 18:57:24
A vulnerability was detected in FastAdmin 1.6.1.20250430/1.6.5.20260602. This affects an unknown function of the file application/database.php of the component Database Management. The manipulation results in execution with unnecessary privileges. Th...
- EPSS 0.27%
- Veröffentlicht 07.09.2026 01:30:13
- Zuletzt bearbeitet 28.09.2026 23:10:00
A security vulnerability has been detected in FastAdmin up to 1.2.0.20210401_beta. Affected is the function register/login of the file application/index/controller/User.php of the component User Controller. Such manipulation of the argument url leads...
CVE-2026-51775
- EPSS 0.26%
- Veröffentlicht 03.08.2026 21:16:40
- Zuletzt bearbeitet 09.09.2026 16:04:24
SQL injection vulnerability in Fastadmin v.1.6.1.20250430 allows an attacker to exectue arbitrary code via the application/common/controller/Backend.php component
CVE-2025-14966
- EPSS 0.36%
- Veröffentlicht 19.12.2025 19:32:08
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability was determined in FastAdmin up to 1.7.0.20250506. Affected is the function selectpage of the file application/common/controller/Backend.php of the component Backend Controller. Executing a manipulation of the argument custom/searchFie...
CVE-2024-7928
- EPSS 16.88%
- Veröffentlicht 19.08.2024 22:15:06
- Zuletzt bearbeitet 13.09.2024 21:33:27
A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121. Affected by this issue is some unknown functionality of the file /index/ajax/lang. The manipulation of the argument lang leads to path traversal. ...
CVE-2024-7453
- EPSS 0.45%
- Veröffentlicht 04.08.2024 05:16:09
- Zuletzt bearbeitet 20.08.2024 15:50:32
A vulnerability was found in FastAdmin 1.5.0.20240328. It has been declared as problematic. This vulnerability affects unknown code of the file /[admins_url].php/general/attachment/edit/ids/4?dialog=1 of the component Attachment Management Section. T...
- EPSS 2.1%
- Veröffentlicht 13.12.2021 12:15:07
- Zuletzt bearbeitet 21.11.2024 06:28:42
fastadmin v1.2.1 is affected by a file upload vulnerability which allows arbitrary code execution through shell access.
CVE-2020-26609
- EPSS 0.91%
- Veröffentlicht 23.02.2021 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:20:09
fastadmin V1.0.0.20200506_beta contains a cross-site scripting (XSS) vulnerability which may allow an attacker to obtain administrator credentials to log in to the background.
CVE-2020-25967
- EPSS 1.27%
- Veröffentlicht 10.12.2020 23:15:12
- Zuletzt bearbeitet 21.11.2024 05:19:01
The member center function in fastadmin V1.0.0.20200506_beta is vulnerable to a Server-Side Template Injection (SSTI) vulnerability.
CVE-2020-21665
- EPSS 0.96%
- Veröffentlicht 17.11.2020 15:15:11
- Zuletzt bearbeitet 21.11.2024 05:12:46
In fastadmin V1.0.0.20191212_beta, when a user with administrator rights has logged in, a malicious parameter can be passed for SQL injection in URL /admin/ajax/weigh.