VYPR
High severity8.8NVD Advisory· Published Mar 4, 2021· Updated Jul 9, 2026

CVE-2020-24036

CVE-2020-24036

Description

PHP object injection in the Ajax endpoint of the backend in ForkCMS below version 5.8.3 allows an authenticated remote user to execute malicious code.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • ForkCMS/ForkCMSllm-fuzzy2 versions
    <5.8.3+ 1 more
    • (no CPE)range: <5.8.3
    • (no CPE)
  • cpe:2.3:a:fork-cms:fork_cms:*:*:*:*:*:*:*:*
    Range: <5.8.3

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.