« Back to list

Tp5cms Project

Tp5cms Project Tp5cms: vulnerabilities and CVEs

Tp5cms Project Tp5cms has 5 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs5
Last 12 months0
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2021-31280Medium (6.1)0.41%—Jun 14, 2023
An issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the keywords parameter.
CVE-2018-19693Medium (6.1)0.71%—Nov 29, 2018
An issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the title parameter.
CVE-2018-19692Critical (9.8)1.5%—Nov 29, 2018
An issue was discovered in tp5cms through 2017-05-25. admin.php/upload/picture.html allows remote attackers to execute arbitrary PHP code by uploading a .php file with the image/jpeg content type.
CVE-2018-15568High (8.8)0.48%—Aug 20, 2018
tp5cms through 2017-05-25 has CSRF via admin.php/category/delete.html.
CVE-2018-15566Medium (6.1)0.68%—Aug 20, 2018
tp5cms through 2017-05-25 has XSS via the admin.php/article/index.html q parameter.