CVE-2020-18261: ED01-CMS Project ED01-CMS

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

An arbitrary file upload vulnerability in the image upload function of ED01-CMS v1.0 allows attackers to execute arbitrary commands.

Affected products

Published 2021-11-03. Last modified 2026-06-17.