📦 Duxcms

by Duxcms Project

🔍 What is Duxcms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-3242

CRITICAL CVSS 9.8 Feb 16, 2022

CVE-2021-3242 is a SQL injection vulnerability in DuxCMS v3.1.3 that allows attackers to execute arbitrary SQL commands via the s/tools/SendTpl/index?keyword= parameter. This affects all users running...

CVE-2020-21861

HIGH CVSS 8.8 Jul 6, 2023

CVE-2020-21861 is an unrestricted file upload vulnerability in DuxCMS 2.1 that allows attackers to upload arbitrary PHP files through the admin upload interface. This enables remote code execution on ...