CVE-2020-22201: Phpcms

High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.

phpCMS 2008 sp4 allowas remote malicious users to execute arbitrary php commands via the pagesize parameter to yp/product.php.

Affected products

  • Phpcms Phpcms: version 2008 only

Published 2021-06-16. Last modified 2026-06-17.