All 6 CVE vulnerabilities found in funadmin, with AI-generated Chinese analysis, references, and POCs.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-2898 | funadmin Backend Endpoint AuthCloudService.php getMember deserialization CWE-502 | 5.5 | Medium | 2026-02-22 |
| CVE-2026-2897 | funadmin Backend index.html cross site scripting CWE-79 | 2.4 | Low | 2026-02-22 |
| CVE-2026-2896 | funadmin Configuration Ajax.php setConfig improper authorization CWE-285 | 7.3 | High | 2026-02-21 |
| CVE-2026-2895 | funadmin Member.php repass password recovery CWE-640 | 3.7 | Low | 2026-02-21 |
| CVE-2026-2894 | funadmin forget.html getMember information disclosure CWE-200 | 5.3 | Medium | 2026-02-21 |
| CVE-2023-2477 | Funadmin Cx.php tagLoad cross site scripting CWE-79 | 3.5 | Low | 2023-05-02 |
All 6 known CVE vulnerabilities affecting funadmin with full Chinese analysis, references, and POCs where available.