Filtered by vendor Cltphp Subscriptions
Total 7 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-30268 2 Cltphp, Microsoft 2 Cltphp, Windows 2023-05-10 9.8 Critical
CLTPHP <=6.0 is vulnerable to Improper Input Validation.
CVE-2023-30264 1 Cltphp 1 Cltphp 2023-05-10 9.8 Critical
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type via application/admin/controller/Template.php:update.
CVE-2023-30267 1 Cltphp 1 Cltphp 2023-05-10 6.1 Medium
CLTPHP <=6.0 is vulnerable to Cross Site Scripting (XSS) via application/home/controller/Changyan.php.
CVE-2023-30269 1 Cltphp 1 Cltphp 2023-05-09 8.1 High
CLTPHP <=6.0 is vulnerable to Improper Input Validation via application/admin/controller/Template.php.
CVE-2023-30265 1 Cltphp 1 Cltphp 2023-05-09 6.5 Medium
CLTPHP <=6.0 is vulnerable to Directory Traversal.
CVE-2023-30266 1 Cltphp 1 Cltphp 2023-05-08 8.8 High
CLTPHP <=6.0 is vulnerable to Unrestricted Upload of File with Dangerous Type.
CVE-2022-1085 1 Cltphp 1 Cltphp 2022-04-05 6.1 Medium
A vulnerability was found in CLTPHP up to 6.0. It has been declared as problematic. Affected by this vulnerability is the POST Parameter Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.