PT-2025-51336 · Unknown · Ctcms Content Management System

Airrudder

·

Published

2025-12-15

·

Updated

2025-12-24

·

CVE-2025-14731

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CTCMS Content Management System versions up to 2.1.2
Description A weakness exists in CTCMS Content Management System up to version 2.1.2. This issue affects an unknown function within the /ctcms/apps/libraries/CT Parser.php library of the Frontend/Template Management Module. The issue is due to improper neutralization of special elements used in a template engine, and it can be exploited remotely. The exploit for this issue has been publicly released.
Recommendations Versions prior to 2.1.2 should be updated.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-14731

Affected Products

Ctcms Content Management System