CVE-2020-18439: Phpok

Critical severity, CVSS 9.1. EPSS: 1% chance of exploitation in the next 30 days.

An issue was discoverered in in function edit_save_f in framework/admin/tpl_control.php in qinggan phpok 5.1, allows attackers to write arbitrary files or get a shell.

Affected products

  • Phpok Phpok: version 5.1 only

Published 2021-11-02. Last modified 2026-06-17.