CVE-2020-18081: Sem-CMS Semcms

High severity, CVSS 7.5. EPSS: 1.2% chance of exploitation in the next 30 days.

The checkuser function of SEMCMS 3.8 was discovered to contain a vulnerability which allows attackers to obtain the password in plaintext through a SQL query.

Affected products

Published 2021-12-17. Last modified 2026-06-17.