CVE-2020-21649

Published
View on NVD ↗
CVSS v3
8.1
HIGH
CVSS v2
5.5
MEDIUM
Affected
1
PROJECT

Description

Myucms v2.2.1 contains a server-side request forgery (SSRF) in the component \controller\index.php, which can be exploited via the sql() method.