Fastadmin

Fastadmin

14 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.39%
  • Veröffentlicht 29.09.2026 04:17:54
  • Zuletzt bearbeitet 29.09.2026 18:57:24

A vulnerability was detected in FastAdmin 1.6.1.20250430/1.6.5.20260602. This affects an unknown function of the file application/database.php of the component Database Management. The manipulation results in execution with unnecessary privileges. Th...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 07.09.2026 01:30:13
  • Zuletzt bearbeitet 28.09.2026 23:10:00

A security vulnerability has been detected in FastAdmin up to 1.2.0.20210401_beta. Affected is the function register/login of the file application/index/controller/User.php of the component User Controller. Such manipulation of the argument url leads...

  • EPSS 0.26%
  • Veröffentlicht 03.08.2026 21:16:40
  • Zuletzt bearbeitet 09.09.2026 16:04:24

SQL injection vulnerability in Fastadmin v.1.6.1.20250430 allows an attacker to exectue arbitrary code via the application/common/controller/Backend.php component

Exploit
  • EPSS 0.36%
  • Veröffentlicht 19.12.2025 19:32:08
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A vulnerability was determined in FastAdmin up to 1.7.0.20250506. Affected is the function selectpage of the file application/common/controller/Backend.php of the component Backend Controller. Executing a manipulation of the argument custom/searchFie...

Exploit
  • EPSS 16.88%
  • Veröffentlicht 19.08.2024 22:15:06
  • Zuletzt bearbeitet 13.09.2024 21:33:27

A vulnerability, which was classified as problematic, has been found in FastAdmin up to 1.3.3.20220121. Affected by this issue is some unknown functionality of the file /index/ajax/lang. The manipulation of the argument lang leads to path traversal. ...

Exploit
  • EPSS 0.45%
  • Veröffentlicht 04.08.2024 05:16:09
  • Zuletzt bearbeitet 20.08.2024 15:50:32

A vulnerability was found in FastAdmin 1.5.0.20240328. It has been declared as problematic. This vulnerability affects unknown code of the file /[admins_url].php/general/attachment/edit/ids/4?dialog=1 of the component Attachment Management Section. T...

Exploit
  • EPSS 2.1%
  • Veröffentlicht 13.12.2021 12:15:07
  • Zuletzt bearbeitet 21.11.2024 06:28:42

fastadmin v1.2.1 is affected by a file upload vulnerability which allows arbitrary code execution through shell access.

Exploit
  • EPSS 0.91%
  • Veröffentlicht 23.02.2021 17:15:13
  • Zuletzt bearbeitet 21.11.2024 05:20:09

fastadmin V1.0.0.20200506_beta contains a cross-site scripting (XSS) vulnerability which may allow an attacker to obtain administrator credentials to log in to the background.

Exploit
  • EPSS 1.27%
  • Veröffentlicht 10.12.2020 23:15:12
  • Zuletzt bearbeitet 21.11.2024 05:19:01

The member center function in fastadmin V1.0.0.20200506_beta is vulnerable to a Server-Side Template Injection (SSTI) vulnerability.

  • EPSS 0.96%
  • Veröffentlicht 17.11.2020 15:15:11
  • Zuletzt bearbeitet 21.11.2024 05:12:46

In fastadmin V1.0.0.20191212_beta, when a user with administrator rights has logged in, a malicious parameter can be passed for SQL injection in URL /admin/ajax/weigh.