Known Vulnerabilities for Admidio by Admidio
Listed below are 10 of the newest known vulnerabilities associated with "Admidio" by "Admidio".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-34384 | Admidio is an open-source user management solution. Prior to version 5.0.8, the create_user, assign_member, and assign_user a... | Not Provided | 2026-03-31 | 2026-04-01 |
| CVE-2026-34383 | Admidio is an open-source user management solution. Prior to version 5.0.8, the inventory module's item_save endpoint accepts... | Not Provided | 2026-03-31 | 2026-03-31 |
| CVE-2026-34382 | Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, the delete mode handler in my... | Not Provided | 2026-03-31 | 2026-04-01 |
| CVE-2026-34381 | Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, Admidio relies on adm_my_file... | Not Provided | 2026-03-31 | 2026-04-01 |
| CVE-2022-23896 | Admidio 4.1.2 version is affected by stored cross-site scripting (XSS). | 5.4 - MEDIUM | 2022-06-28 | 2022-07-07 |
| CVE-2021-43810 | Admidio is a free open source user management system for websites of organizations and groups. A cross-site scripting vulnera... | 6.1 - MEDIUM | 2021-12-07 | 2021-12-09 |
| CVE-2021-32630 | Admidio is a free, open source user management system for websites of organizations and groups. In Admidio before version 4.0... | 8.8 - HIGH | 2021-05-20 | 2021-05-27 |
| CVE-2020-11004 | SQL Injection was discovered in Admidio before version 3.3.13. The main cookie parameter is concatenated into a SQL query wit... | 7.5 - HIGH | 2020-04-24 | 2020-05-01 |
| CVE-2017-8382 | admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts... | 4.5 - MEDIUM | 2017-05-16 | 2017-06-05 |
| CVE-2017-6492 | SQL Injection was discovered in adm_program/modules/dates/dates_function.php in Admidio 3.2.5. The POST parameter dat_cat_id ... | 7.2 - HIGH | 2017-03-05 | 2017-03-25 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Admidio | Admidio | 3.3.9 | All | All | All |
| Application | Admidio | Admidio | 3.3.8 | All | All | All |
| Application | Admidio | Admidio | 3.3.7 | All | All | All |
| Application | Admidio | Admidio | 3.3.6 | All | All | All |
| Application | Admidio | Admidio | 3.3.5 | All | All | All |
| Application | Admidio | Admidio | 3.3.4 | All | All | All |
| Application | Admidio | Admidio | 3.3.3 | All | All | All |
| Application | Admidio | Admidio | 3.3.2 | All | All | All |
| Application | Admidio | Admidio | 3.3.13 | All | All | All |
| Application | Admidio | Admidio | 3.3.12 | All | All | All |
| Application | Admidio | Admidio | 3.3.11 | All | All | All |
| Application | Admidio | Admidio | 3.3.10 | All | All | All |
| Application | Admidio | Admidio | 3.3.1 | All | All | All |
| Application | Admidio | Admidio | 3.3.0 | All | All | All |
| Application | Admidio | Admidio | 3.2.9 | All | All | All |
| Application | Admidio | Admidio | 3.2.8 | All | All | All |
| Application | Admidio | Admidio | 3.2.7 | All | All | All |
| Application | Admidio | Admidio | 3.2.6 | All | All | All |
| Application | Admidio | Admidio | 3.2.5 | All | All | All |
| Application | Admidio | Admidio | 3.2.4 | All | All | All |