VendorsDOYO CMS Projectdoyocms2.3
Vulnerabilities

DOYO CMS Project DOYO CMS 2.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2021-26739
SQL Injection vulnerability in pay.php in millken doyocms 2.3, allows attackers to execute arbitrary code, via the attribute parameter.
Published 2021-11-01 · Modified
9.8EPSS 0.017
CVE-2021-26740
Arbitrary file upload vulnerability sysupload.php in millken doyocms 2.3 allows attackers to execute arbitrary code.
Published 2021-11-01 · Modified
9.8EPSS 0.016
CVE-2020-19802
File Upload vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary code via the upload file type parameter.
Published 2023-04-11 · Modified
9.8EPSS 0.011
CVE-2020-19803
Cross Site Request Forgery vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary code via the background system settings.
Published 2023-04-11 · Modified
8.8EPSS 0.004