CVE-2020-21590: Wuzhicms

Medium severity, CVSS 4.3. EPSS: 1.3% chance of exploitation in the next 30 days.

Directory traversal in coreframe/app/template/admin/index.php in WUZHI CMS 4.1.0 allows attackers to list files in arbitrary directories via the dir parameter.

Affected products

Published 2021-04-02. Last modified 2026-06-17.