Ftcms
Ftcms: vulnerabilities and CVEs
Ftcms has 8 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.
CVEs8
Last 12 months0
Critical1
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-2133 | Medium (4.8) | 0.31% | — | Mar 10, 2025 | A vulnerability classified as problematic was found in ftcms 2.1. Affected by this vulnerability is an unknown functionality of the file /admin/index.php/news/edit. The manipulation of the argument title leads to cross… |
| CVE-2025-2132 | Medium (5.1) | 0.44% | — | Mar 9, 2025 | A vulnerability classified as critical has been found in ftcms 2.1. Affected is an unknown function of the file /admin/index.php/web/ajax_all_lists of the component Search. The manipulation of the argument name leads to… |
| CVE-2022-37731 | Medium (6.1) | 0.58% | — | Sep 7, 2022 | ftcms 2.1 poster.PHP has a XSS vulnerability. The attacker inserts malicious JavaScript code into the web page, causing the user / administrator to trigger malicious code when accessing. |
| CVE-2022-37730 | High (8.8) | 0.40% | — | Sep 7, 2022 | In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to forge a link to trick him to click on a malicious link or visit a page containing attack code, and… |
| CVE-2022-30063 | Critical (9.8) | 18% | — | May 11, 2022 | ftcms <=2.1 was discovered to be vulnerable to code execution attacks . |
| CVE-2022-30062 | Medium (6.5) | 1.1% | — | May 11, 2022 | ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Read via tp.php |
| CVE-2022-30061 | Medium (6.5) | 1.3% | — | May 11, 2022 | ftcms <=2.1 was discovered to be vulnerable to directory traversal attacks via the parameter tp. |
| CVE-2022-30060 | High (8.8) | 1.2% | — | May 11, 2022 | ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Write via admin/controllers/tp.php |