CVE-2020-20642: Eyoucms
High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Cross Site Request Forgery (CSRF) vulnerability exists in EyouCMS 1.3.6 that can add an htm page to execute the js code via login.php?m=admin&c=Filemanager&a=newfile&lang=cn.
Affected products
- Eyoucms Eyoucms: version 1.3.6 only
Published 2021-08-19. Last modified 2026-06-17.