« Back to list

Ftcms

Ftcms: vulnerabilities and CVEs

Ftcms has 8 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs8
Last 12 months0
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-2133Medium (4.8)0.31%—Mar 10, 2025
A vulnerability classified as problematic was found in ftcms 2.1. Affected by this vulnerability is an unknown functionality of the file /admin/index.php/news/edit. The manipulation of the argument title leads to cross…
CVE-2025-2132Medium (5.1)0.44%—Mar 9, 2025
A vulnerability classified as critical has been found in ftcms 2.1. Affected is an unknown function of the file /admin/index.php/web/ajax_all_lists of the component Search. The manipulation of the argument name leads to…
CVE-2022-37731Medium (6.1)0.58%—Sep 7, 2022
ftcms 2.1 poster.PHP has a XSS vulnerability. The attacker inserts malicious JavaScript code into the web page, causing the user / administrator to trigger malicious code when accessing.
CVE-2022-37730High (8.8)0.40%—Sep 7, 2022
In ftcms 2.1, there is a Cross Site Request Forgery (CSRF) vulnerability in the PHP page, which causes the attacker to forge a link to trick him to click on a malicious link or visit a page containing attack code, and…
CVE-2022-30063Critical (9.8)18%—May 11, 2022
ftcms <=2.1 was discovered to be vulnerable to code execution attacks .
CVE-2022-30062Medium (6.5)1.1%—May 11, 2022
ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Read via tp.php
CVE-2022-30061Medium (6.5)1.3%—May 11, 2022
ftcms <=2.1 was discovered to be vulnerable to directory traversal attacks via the parameter tp.
CVE-2022-30060High (8.8)1.2%—May 11, 2022
ftcms <=2.1 was discovered to be vulnerable to Arbitrary File Write via admin/controllers/tp.php