📦 Camaleon Cms

by Tuzitio

🔍 What is Camaleon Cms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-46986

CRITICAL CVSS 9.9 Sep 18, 2024

CVE-2024-46986 is an arbitrary file write vulnerability in Camaleon CMS that allows authenticated users to write files to any location on the web server. This can lead to remote code execution if atta...

CVE-2023-30145

CRITICAL CVSS 9.8 May 26, 2023

Camaleon CMS v2.7.0 contains a Server-Side Template Injection vulnerability in the formats parameter that allows attackers to execute arbitrary code on the server. This affects all installations using...

CVE-2021-25970

HIGH CVSS 8.8 Oct 20, 2021

Camaleon CMS versions 0.1.7 through 2.6.0 have an authentication flaw where user sessions remain active even after password changes. This allows previously logged-in users to maintain access to the ap...

CVE-2023-53936

MEDIUM CVSS 4.8 Dec 18, 2025

Cameleon CMS 2.7.4 contains a persistent cross-site scripting vulnerability where authenticated administrators can inject malicious scripts into post titles. When other users mouse over these titles, ...

CVE-2024-48652

MEDIUM CVSS 4.8 Oct 22, 2024

A Cross-Site Scripting (XSS) vulnerability in Camaleon CMS v2.7.5 allows remote attackers to inject malicious scripts via the content group name field. This could enable attackers to steal session coo...