Tp5cms Project
Tp5cms Project Tp5cms: vulnerabilities and CVEs
Tp5cms Project Tp5cms has 5 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.
CVEs5
Last 12 months0
Critical1
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31280 | Medium (6.1) | 0.41% | — | Jun 14, 2023 | An issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the keywords parameter. |
| CVE-2018-19693 | Medium (6.1) | 0.71% | — | Nov 29, 2018 | An issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the title parameter. |
| CVE-2018-19692 | Critical (9.8) | 1.5% | — | Nov 29, 2018 | An issue was discovered in tp5cms through 2017-05-25. admin.php/upload/picture.html allows remote attackers to execute arbitrary PHP code by uploading a .php file with the image/jpeg content type. |
| CVE-2018-15568 | High (8.8) | 0.48% | — | Aug 20, 2018 | tp5cms through 2017-05-25 has CSRF via admin.php/category/delete.html. |
| CVE-2018-15566 | Medium (6.1) | 0.68% | — | Aug 20, 2018 | tp5cms through 2017-05-25 has XSS via the admin.php/article/index.html q parameter. |