CVE-2017-11327: Tilde CMS Project Tilde CMS
Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.
An issue was discovered in Tilde CMS 1.0.1. It is possible to retrieve sensitive data by using direct references. A low-privileged user can load PHP resources such as admin/content.php and admin/content.php?method=ftp_upload.
Affected products
- Tilde CMS Project Tilde CMS: version 1.0.1 only
Published 2017-07-24. Last modified 2026-06-17.