First published: Sun May 11 2025(Updated: )
A vulnerability was found in CTCMS Content Management System 2.1.2. It has been classified as critical. Affected is the function del of the file ctcms\apps\controllers\admin\Tpl.php of the component File Handler. The manipulation of the argument File leads to path traversal. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
CTCMS Content Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-4545 has been classified as critical due to its potential to allow path traversal attacks.
To fix CVE-2025-4545, update your CTCMS Content Management System to the latest version that addresses this vulnerability.
CVE-2025-4545 affects the File Handler component within the CTCMS Content Management System.
CVE-2025-4545 is a path traversal vulnerability, allowing unauthorized file access.
CVE-2025-4545 impacts CTCMS Content Management System version 2.1.2 specifically.