CVE-2018-13021: Hongcms Project Hongcms

High severity, CVSS 7.2. EPSS: 2.2% chance of exploitation in the next 30 days.

An issue was discovered in HongCMS 3.0.0. There is an Arbitrary Script File Upload issue that can result in PHP code execution via the admin/index.php/template/upload URI.

Affected products

Published 2018-06-29. Last modified 2026-06-17.