CVE-2025-2133
- EPSS 0.1%
- Veröffentlicht 09.03.2025 23:31:04
- Zuletzt bearbeitet 11.03.2025 20:22:13
A vulnerability classified as problematic was found in ftcms 2.1. Affected by this vulnerability is an unknown functionality of the file /admin/index.php/news/edit. The manipulation of the argument title leads to cross site scripting. The attack can ...
CVE-2025-2132
- EPSS 0.13%
- Veröffentlicht 09.03.2025 23:00:06
- Zuletzt bearbeitet 11.03.2025 20:25:40
A vulnerability classified as critical has been found in ftcms 2.1. Affected is an unknown function of the file /admin/index.php/web/ajax_all_lists of the component Search. The manipulation of the argument name leads to sql injection. It is possible ...
CVE-2022-37730
- EPSS 0.11%
- Veröffentlicht 07.09.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 07:15:06
In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to forge a link to trick him to click on a malicious link or visit a page containing attack code, and send a request to the server (co...
CVE-2022-37731
- EPSS 0.36%
- Veröffentlicht 07.09.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 07:15:06
ftcms 2.1 poster.PHP has a XSS vulnerability. The attacker inserts malicious JavaScript code into the web page, causing the user / administrator to trigger malicious code when accessing.
CVE-2022-30063
- EPSS 1.39%
- Veröffentlicht 11.05.2022 19:15:07
- Zuletzt bearbeitet 21.11.2024 07:02:09
ftcms <=2.1 was discovered to be vulnerable to code execution attacks .
CVE-2022-30060
- EPSS 0.42%
- Veröffentlicht 11.05.2022 18:15:29
- Zuletzt bearbeitet 21.11.2024 07:02:08
ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Write via admin/controllers/tp.php
CVE-2022-30061
- EPSS 0.39%
- Veröffentlicht 11.05.2022 18:15:29
- Zuletzt bearbeitet 21.11.2024 07:02:08
ftcms <=2.1 was discovered to be vulnerable to directory traversal attacks via the parameter tp.
CVE-2022-30062
- EPSS 0.38%
- Veröffentlicht 11.05.2022 18:15:29
- Zuletzt bearbeitet 21.11.2024 07:02:09
ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Read via tp.php