CVE-2025-10993

MEDIUM

MuYuCMS <2.7 - Code Injection

Title source: llm

Description

A security flaw has been discovered in MuYuCMS up to 2.7. Affected by this issue is some unknown functionality of the file /admin.php of the component Template Management. The manipulation results in code injection. It is possible to launch the attack remotely.

Exploits (1)

Scores

CVSS v3 4.7
EPSS 0.0004
EPSS Percentile 13.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-74 CWE-94
Status published
Products (1)
muyucms/muyucms < 2.7
Published Sep 26, 2025
Tracked Since Feb 18, 2026