Known Vulnerabilities for products from Admidio

Listed below are 11 of the newest known vulnerabilities associated with the vendor "Admidio".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-34384 Admidio is an open-source user management solution. Prior to version 5.0.8, the create_user, assign_member, and assign_user a... Not Provided 2026-03-31 2026-04-01
CVE-2026-34383 Admidio is an open-source user management solution. Prior to version 5.0.8, the inventory module's item_save endpoint accepts... Not Provided 2026-03-31 2026-04-01
CVE-2026-34382 Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, the delete mode handler in my... Not Provided 2026-03-31 2026-04-01
CVE-2026-34381 Admidio is an open-source user management solution. From version 5.0.0 to before version 5.0.8, Admidio relies on adm_my_file... Not Provided 2026-03-31 2026-04-01
CVE-2022-23896 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 5.4 - MEDIUM 2022-06-28 2022-07-07
CVE-2021-43810 ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 6.1 - MEDIUM 2021-12-07 2021-12-09
CVE-2021-32630 Admidio is a free, open source user management system for websites of organizations and groups. In Admidio before version 4.0... 8.8 - HIGH 2021-05-20 2021-05-27
CVE-2020-11004 SQL Injection was discovered in Admidio before version 3.3.13. The main cookie parameter is concatenated into a SQL query wit... 7.5 - HIGH 2020-04-24 2020-05-01
CVE-2017-8382 admidio 3.2.8 has CSRF in adm_program/modules/members/members_function.php with an impact of deleting arbitrary user accounts... 4.5 - MEDIUM 2017-05-16 2017-06-05
CVE-2017-6492 SQL Injection was discovered in adm_program/modules/dates/dates_function.php in Admidio 3.2.5. The POST parameter dat_cat_id ... 7.2 - HIGH 2017-03-05 2017-03-25
CVE-2008-5209 Directory traversal vulnerability in modules/download/get_file.php in Admidio 1.4.8 allows remote attackers to read arbitrary... 5 - MEDIUM 2008-11-24 2017-09-29

Known software with vulnerabilities from Admidio

Type Vendor Product Version
ApplicationAdmidioAdmidio0.1