Vulnerabilities > Duxcms Project > Duxcms > High

DATE CVE VULNERABILITY TITLE RISK
2023-07-06 CVE-2020-21861 Unrestricted Upload of File with Dangerous Type vulnerability in Duxcms Project Duxcms 2.1
File upload vulnerability in DuxCMS 2.1 allows attackers to execute arbitrary php code via duxcms/AdminUpload/upload.
network
low complexity
duxcms-project CWE-434
8.8
2023-07-06 CVE-2020-21862 Path Traversal vulnerability in Duxcms Project Duxcms 2.1
Directory traversal vulnerability in DuxCMS 2.1 allows attackers to delete arbitrary files via /admin/AdminBackup/del.
network
low complexity
duxcms-project CWE-22
8.1
2022-12-08 CVE-2020-36610 Unspecified vulnerability in Duxcms Project Duxcms 2.1
A vulnerability was found in annyshow DuxCMS 2.1.
network
low complexity
duxcms-project
8.0