Vulnerabilities
5 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2021-31280 | An issue was discovered in tp5cms through 2017-05-25. An issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the keywords parameter. NVD description · AI analysis pending | 6.1 | <1% | PoC |
| — | |
| CVE-2018-19692 +1 in the same advisory: …19693 | An issue was discovered in tp5cms through 2017-05-25. An issue was discovered in tp5cms through 2017-05-25. admin.php/upload/picture.html allows remote attackers to execute arbitrary PHP code by uploading a .php file with the image/jpeg content type. NVD description · AI analysis pending | 9.8 group max | 2% | PoC |
| — | |
| CVE-2018-15568 +1 in the same advisory: …15566 | tp5cms through 2017-05-25 has CSRF via admin.php/category/delete.html. tp5cms through 2017-05-25 has CSRF via admin.php/category/delete.html. NVD description · AI analysis pending | 8.8 group max | <1% |
| — |