tilde CVE Vulnerabilities & CVE List (4)

Products (CPE): — CVEs: 4

tilde vulnerability overview

Aggregates CVE and security vulnerability intelligence across all tilde-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk sql injection, vendor risk cross-site scripting, and vendor risk path handling; exposure may include vendor impact file overwrite in vendor surface production workloads contexts.

Vulnerability distribution trend (last 24 months)

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2007-6161 index.php in Tilde CMS 4.x and earlier allows remote attackers to obtain sensitive information via a certain search parameter value in a search action, which reveals the path. [email protected] 5.0 0.28% 2007-11-29 2026-04-23
CVE-2007-6160 Cross-site scripting (XSS) vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to inject arbitrary web script or HTML via the aarstal parameter in a yeardetail action. [email protected] 4.3 2.17% 2007-11-29 2026-04-23
CVE-2007-6159 SQL injection vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to execute arbitrary SQL commands via the aarstal parameter in a yeardetail action, a different vector than CVE-2006-1500. [email protected] 7.5 0.28% 2007-11-29 2026-04-23
CVE-2006-1500 SQL injection vulnerability in index.php in Tilde CMS 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. [email protected] 7.5 1.04% 2006-03-30 2026-04-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence