Vulnerabilities > Cltphp

DATE CVE VULNERABILITY TITLE RISK
2023-05-04 CVE-2023-30264 Unrestricted Upload of File with Dangerous Type vulnerability in Cltphp 6.0
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via application/admin/controller/Template.php:update.
network
low complexity
cltphp CWE-434
critical
9.8
2023-05-04 CVE-2023-30268 Path Traversal vulnerability in Cltphp 6.0
CLTPHP <=6.0 is vulnerable to Improper Input Validation.
network
low complexity
cltphp CWE-22
critical
9.8
2023-04-26 CVE-2023-30265 Path Traversal vulnerability in Cltphp 6.0
CLTPHP <=6.0 is vulnerable to Directory Traversal.
network
low complexity
cltphp CWE-22
6.5
2023-04-26 CVE-2023-30266 Unrestricted Upload of File with Dangerous Type vulnerability in Cltphp 6.0
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type.
network
low complexity
cltphp CWE-434
8.8
2023-04-26 CVE-2023-30267 Cross-site Scripting vulnerability in Cltphp 6.0
CLTPHP <=6.0 is vulnerable to Cross Site Scripting (XSS) via application/home/controller/Changyan.php.
network
low complexity
cltphp CWE-79
6.1
2023-04-26 CVE-2023-30269 Improper Input Validation vulnerability in Cltphp 6.0
CLTPHP <=6.0 is vulnerable to Improper Input Validation via application/admin/controller/Template.php.
network
low complexity
cltphp CWE-20
8.1
2022-03-29 CVE-2022-1085 Cross-site Scripting vulnerability in Cltphp
A vulnerability was found in CLTPHP up to 6.0.
network
cltphp CWE-79
4.3