PT-2025-51336 · Unknown · Ctcms Content Management System
Airrudder
·
Published
2025-12-15
·
Updated
2025-12-24
·
CVE-2025-14731
CVSS v3.1
7.2
High
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
CTCMS Content Management System versions up to 2.1.2
Description
A weakness exists in CTCMS Content Management System up to version 2.1.2. This issue affects an unknown function within the
/ctcms/apps/libraries/CT Parser.php library of the Frontend/Template Management Module. The issue is due to improper neutralization of special elements used in a template engine, and it can be exploited remotely. The exploit for this issue has been publicly released.Recommendations
Versions prior to 2.1.2 should be updated.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ctcms Content Management System