ftcms ftcms CVE 漏洞(8)

CVE 数: 8 CPE versions: View versions table

摘要

本页列出影响 ftcms ftcms 的已公开 CVE 漏洞(通过 NVD CPE 关联)。每行包含严重程度评分、摘要与发布日期,便于识别与分析安全问题。

显示 188 CVE 数
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
CVE 摘要 来源 最高 CVSS EPSS % 公开时间 更新时间
CVE-2025-2133 A vulnerability classified as problematic was found in ftcms 2.1. Affected by this vulnerability is an unknown functionality of the file /admin/index.php/news/edit. The manipulation of the argument title leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. The vendor was contacted early about this disclosure but did not respond in any way. [email protected] 4.8 0.19% 2025-03-10 2025-03-11
CVE-2025-2132 A vulnerability classified as critical has been found in ftcms 2.1. Affected is an unknown function of the file /admin/index.php/web/ajax_all_lists of the component Search. The manipulation of the argument name leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. [email protected] 5.1 0.05% 2025-03-09 2025-03-11
CVE-2022-37731 ftcms 2.1 poster.PHP has a XSS vulnerability. The attacker inserts malicious JavaScript code into the web page, causing the user / administrator to trigger malicious code when accessing. [email protected] 6.1 0.36% 2022-09-07 2024-11-21
CVE-2022-37730 In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to forge a link to trick him to click on a malicious link or visit a page containing attack code, and send a request to the server (corresponding to the identity authentication information) as the victim without the victim's knowledge. [email protected] 8.8 0.07% 2022-09-07 2024-11-21
CVE-2022-30063 ftcms <=2.1 was discovered to be vulnerable to code execution attacks . [email protected] 9.8 1.39% 2022-05-11 2024-11-21
CVE-2022-30062 ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Read via tp.php [email protected] 6.5 0.40% 2022-05-11 2024-11-21
CVE-2022-30061 ftcms <=2.1 was discovered to be vulnerable to directory traversal attacks via the parameter tp. [email protected] 6.5 0.39% 2022-05-11 2024-11-21
CVE-2022-30060 ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Write via admin/controllers/tp.php [email protected] 8.8 0.41% 2022-05-11 2024-11-21
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
cvelogic Threat Intelligence