VendorsMyucms Projectmyucms2.2
Vulnerabilities

Myucms Project Myucms 2.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2020-21651
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\point.php, which can be exploited via the add() method.
Published 2021-10-06 · Modified
9.8EPSS 0.033
CVE-2020-21652
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\Config.php, which can be exploited via the addqq() method.
Published 2021-10-06 · Modified
9.8EPSS 0.028
CVE-2020-21653
Myucms v2.2.1 contains a server-side request forgery (SSRF) in the component \controller\index.php, which can be exploited via the sj() method.
Published 2021-10-06 · Modified
9.1EPSS 0.012
CVE-2020-21650
Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\Config.php, which can be exploited via the add() method.
Published 2021-10-06 · Modified
8.8EPSS 0.032
CVE-2020-21649
Myucms v2.2.1 contains a server-side request forgery (SSRF) in the component \controller\index.php, which can be exploited via the sql() method.
Published 2021-10-06 · Modified
8.1EPSS 0.008