Critical severity9.8NVD Advisory· Published Jun 20, 2023· Updated Jun 17, 2026
CVE-2020-21174
CVE-2020-21174
Description
File Upload vulenrability in liufee CMS v.2.0.7.1 allows a remote attacker to execute arbitrary code via the image suffix function.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
feehi/cmsPackagist | < 2.0.8.1 | 2.0.8.1 |
Affected products
3Patches
Vulnerability mechanics
References
4- github.com/liufee/cms/issues/44nvdExploitIssue TrackingPatchWEB
- github.com/advisories/GHSA-q3q5-qvh5-cmw5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2020-21174ghsaADVISORY
- github.com/liufee/cms/commit/ecbfb0ca77874ead5b6e79b96a5e1f94e67475a9ghsaWEB
News mentions
0No linked articles in our index yet.