Known Vulnerabilities for products from Ctolog
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Ctolog".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-34833 json | An arbitrary file upload vulnerability in the component /api/upload.php of ThinkAdmin v6 allows attackers to execute arbitrar... | 6.1 - MEDIUM | 2023-06-15 | 2023-12-07 |
| CVE-2020-35296 json | ThinkAdmin v6 has default administrator credentials, which allows attackers to gain unrestricted administratior dashboard acc... | 7.5 - HIGH | 2021-03-03 | 2023-12-07 |
| CVE-2020-29315 json | ThinkAdmin version v1 v6 has a stored XSS vulnerability which allows remote attackers to inject an arbitrary web script or HT... | 5.4 - MEDIUM | 2020-12-01 | 2023-12-07 |
| CVE-2020-25540 json | ThinkAdmin v6 is affected by a directory traversal vulnerability. An unauthorized attacker can read arbitrarily file on a rem... | 7.5 - HIGH | 2020-09-14 | 2023-12-07 |
| CVE-2020-23653 json | An insecure unserialize vulnerability was discovered in ThinkAdmin versions 4.x through 6.x in app/admin/controller/api/Updat... | 9.8 - CRITICAL | 2021-01-13 | 2023-12-07 |
| CVE-2019-11018 json | application\admin\controller\User.php in ThinkAdmin V4.0 does not prevent continued use of an administrator's cookie-based cr... | 9.8 - CRITICAL | 2019-04-08 | 2023-12-07 |
Known software with vulnerabilities from Ctolog
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Ctolog | Thinkadmin | 1.0 |