Doyocms ProjectCVEs & Vulnerabilities
4 CVEs affecting Doyocms Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
4 CVEs→ All vendors
Most Affected Products
doyocms 4
CVE-2020-19803HIGH
Cross Site Request Forgery vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary code via the background system settings.
11 Apr 2023
8.8
CVSS
CVE-2020-19802CRITICAL
File Upload vulnerability found in Milken DoyoCMS v.2.3 allows a remote attacker to execute arbitrary code via the upload file type parameter.
11 Apr 2023
9.8
CVSS
CVE-2021-26740CRITICAL
Arbitrary file upload vulnerability sysupload.php in millken doyocms 2.3 allows attackers to execute arbitrary code.
1 Nov 2021
9.8
CVSS
CVE-2021-26739CRITICAL
SQL Injection vulnerability in pay.php in millken doyocms 2.3, allows attackers to execute arbitrary code, via the attribute parameter.
1 Nov 2021
9.8
CVSS
← PrevPage 1 / 1Next →