Filtered by vendor Cltphp Subscriptions
Total 7 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-1085 1 Cltphp 1 Cltphp 2024-08-02 3.5 Low
A vulnerability was found in CLTPHP up to 6.0. It has been declared as problematic. Affected by this vulnerability is the POST Parameter Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
CVE-2023-30267 1 Cltphp 1 Cltphp 2024-08-02 6.1 Medium
CLTPHP <=6.0 is vulnerable to Cross Site Scripting (XSS) via application/home/controller/Changyan.php.
CVE-2023-30269 1 Cltphp 1 Cltphp 2024-08-02 8.1 High
CLTPHP <=6.0 is vulnerable to Improper Input Validation via application/admin/controller/Template.php.
CVE-2023-30264 1 Cltphp 1 Cltphp 2024-08-02 9.8 Critical
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via application/admin/controller/Template.php:update.
CVE-2023-30266 1 Cltphp 1 Cltphp 2024-08-02 8.8 High
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type.
CVE-2023-30268 2 Cltphp, Microsoft 2 Cltphp, Windows 2024-08-02 9.8 Critical
CLTPHP <=6.0 is vulnerable to Improper Input Validation.
CVE-2023-30265 1 Cltphp 1 Cltphp 2024-08-02 6.5 Medium
CLTPHP <=6.0 is vulnerable to Directory Traversal.