Tpmecms is a content management system with a focused product footprint; its vulnerability profile centers on cross-site scripting weaknesses arising from improper input neutralization during web-page generation. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tpmecms over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-44684MEDIUM TpMeCMS 1.3.3.2 is vulnerable to Cross Site Scripting (XSS) in /h.php/page?ref=addtabs via the "Title," "Images," and "Content" fields. | Aug 30, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-7900MEDIUM A vulnerability, which was classified as problematic, was found in xiaohe4966 TpMeCMS 1.3.3.2. Affected is an unknown function of the file /h.php/general/config?ref=addtabs of the | Aug 17, 2024 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tpmecms.
Media articles that mention a CVE ID that affects a product developed by Tpmecms — matched by CVE ID, not by vendor name.