ZeroHour

CVE-2021-26739

PoC
CVSS 3.1
9.8 critical
EPSS
2%p76
Published
()
Modified
Description

SQL Injection vulnerability in pay.php in millken doyocms 2.3, allows attackers to execute arbitrary code, via the attribute parameter.

Vendors
doyocms project
Products
doyocms
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.