VendorsUCMS Projectucms1.4.8
Vulnerabilities

UCMS Project Ucms 1.4.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2020-25483
An arbitrary command execution vulnerability exists in the fopen() function of file writes of UCMS v1.4.8, where an attacker can gain access to the server.
Published 2020-10-23 · Modified
9.8EPSS 0.087
CVE-2020-24981
An Incorrect Access Control vulnerability exists in /ucms/chk.php in UCMS 1.4.8. This results in information leak via an error message caused by directly accessing the website built by UCMS.
Published 2020-09-04 · Modified
5.3EPSS 0.010