CVE-2020-29280: Victor CMS Project Victor CMS

Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.

The Victor CMS v1.0 application is vulnerable to SQL injection via the 'search' parameter on the search.php page.

Affected products

Published 2020-12-02. Last modified 2026-06-17.