CVE-2020-25537: Ucms Project Ucms
Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.
File upload vulnerability exists in UCMS 1.5.0, and the attacker can take advantage of this vulnerability to obtain server management permission.
Affected products
- Ucms Project Ucms: version 1.5.0 only
Published 2020-11-30. Last modified 2026-06-17.