NA

CVE-2020-20918

Published: 20/06/2023 Updated: 27/06/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

An issue discovered in Pluck CMS v.4.7.10-dev2 allows a remote malicious user to execute arbitrary php code via the hidden parameter to admin.php when editing a page.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pluck-cms pluck 4.7.10