Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2023-50038

Disclosure Date: December 28, 2023 (last updated January 05, 2024)
There is an arbitrary file upload vulnerability in the background of textpattern cms v4.8.8, which leads to the loss of server permissions.
Attacker Value
Unknown

CVE-2023-36220

Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Directory Traversal vulnerability in Textpattern CMS v4.8.8 allows a remote authenticated attacker to execute arbitrary code and gain access to sensitive information via the plugin Upload function.
Attacker Value
Unknown

CVE-2023-24269

Disclosure Date: April 28, 2023 (last updated October 08, 2023)
An arbitrary file upload vulnerability in the plugin upload function of Textpattern v4.8.8 allows attackers to execute arbitrary code via a crafted Zip file.