Critical severity9.8NVD Advisory· Published Dec 22, 2021· Updated Jun 17, 2026
CVE-2020-20601
CVE-2020-20601
Description
An issue in ThinkCMF X2.2.2 and below allows attackers to execute arbitrary code via a crafted packet.
Affected products
7cpe:2.3:a:thinkcmf:thinkcmf:x1.6.0:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:thinkcmf:thinkcmf:x1.6.0:*:*:*:*:*:*:*
- cpe:2.3:a:thinkcmf:thinkcmf:x2.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:thinkcmf:thinkcmf:x2.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:thinkcmf:thinkcmf:x2.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:thinkcmf:thinkcmf:x2.2.2:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: <=X2.2.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.