SCA: security update for admidio/admidio (GHSA-q6w3-hpfv-rg36)

medium Tenable Cloud Security Plugin ID 442520

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- Admidio is an open-source user management solution. Prior to version 5.0.10, `modules/documents-files.php`
mode `file_rename_save` shares the same root-cause shape as the cross-folder move bug (`05-documents-
cross-folder-move-idor.md`): the top-level rights check at lines 79-89 validates `hasUploadRight()` on the
URL parameter `folder_uuid`, but the rename operation acts on `file_uuid` — a separate URL parameter —
without re-checking the folder that actually contains the file. `DocumentsService::renameFile()` resolves
the target file via `getFileForDownload()` (which permits view-readable files) but does not require upload
right on the file's source folder. Result: a user with upload right on any folder A can rename a file in
folder B as long as they can view it. They can also overwrite the file's description. Version 5.0.10
contains a fix. (CVE-2026-47230)

Solution

Update the admidio/admidio library and its related packages to version 5.0.10 or later.

See Also

https://github.com/advisories/GHSA-q6w3-hpfv-rg36

Plugin Details

Severity: Medium

ID: 442520

Version: Revision 1.4

Type: Local

Family: SCA Checks

Published: 5/30/2026

Updated: 8/14/2026

Supported Sensors: Tenable Cloud Security, Tenable Self-Hosted Container Security

Risk Information

VPR

Risk Factor: Low

Score: 3

Percentile: 23.71

Vendor

Vendor Severity: Medium

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5

Vector: CVSS2#AV:N/AC:L/Au:S/C:N/I:C/A:N

CVSS Score Source: CVE-2026-47230

CVSS v3

Risk Factor: Medium

Base Score: 6.5

Temporal Score: 5.7

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 5/29/2026

Vulnerability Publication Date: 5/29/2026

Reference Information

CVE: CVE-2026-47230