All 5 CVE vulnerabilities found in camaleon-cms, with AI-generated Chinese analysis, references, and POCs.
Vendor: owen2345
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-67616 | Camaleon CMS 2.9.2 Missing Authorization via /admin/post_type drafts endpoint CWE-862 | 4.3 | Medium | 2026-08-03 |
| CVE-2026-66748 | Camaleon CMS 2.1.1 - 2.9.1 Authenticated RCE via select_eval Custom Field CWE-94 | 8.8 | High | 2026-07-28 |
| CVE-2025-2304 | Camaleon CMS Privilege Escalation CWE-915 | 8.8 | - | 2025-03-14 |
| CVE-2024-46987 | Arbitrary path traversal in Camaleon CMS CWE-200 | 7.7 | High | 2024-09-18 |
| CVE-2024-46986 | Arbitrary file write leading to RCE in Camaleon CMS CWE-74 | 10.0 | Critical | 2024-09-18 |
All 5 known CVE vulnerabilities affecting camaleon-cms with full Chinese analysis, references, and POCs where available.