CVE-2020-21665: Fastadmin

High severity, CVSS 7.2. EPSS: 1% chance of exploitation in the next 30 days.

In fastadmin V1.0.0.20191212_beta, when a user with administrator rights has logged in, a malicious parameter can be passed for SQL injection in URL /admin/ajax/weigh.

Affected products

  • Fastadmin Fastadmin: version 1.0.0.20191212 only

Published 2020-11-17. Last modified 2026-06-17.