CVE-2020-25967: High severity fastadmin-tp6 vulnerability
Published Dec 10, 2020
·Updated
The member center function in fastadmin V1.0.0.20200506beta is vulnerable to a Server-Side Template Injection (SSTI) vulnerability.
Affected Software
2 affected components
fastadmin FastAdmin=1.0.0.20200506-beta
Microsoft Windows
Event History
Dec 10, 2020
CVE Published
via MITRE·09:07 PM
Data Sourced
via MITRE·09:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-25967?
CVE-2020-25967 is classified as a high severity vulnerability due to its potential for Server-Side Template Injection.
2
How do I fix CVE-2020-25967?
To fix CVE-2020-25967, upgrade Fastadmin to a version that addresses the Server-Side Template Injection vulnerability.
3
Who is affected by CVE-2020-25967?
Users of Fastadmin version 1.0.0.20200506_beta are affected by CVE-2020-25967.
4
What type of vulnerability is CVE-2020-25967?
CVE-2020-25967 is a Server-Side Template Injection (SSTI) vulnerability.
5
What is the impact of CVE-2020-25967?
The impact of CVE-2020-25967 includes potential unauthorized access to sensitive data and execution of arbitrary code on the server.