← Back to CVE List
CVE-2020-18184
In PluxXml V5.7,the theme edit function /PluXml/core/admin/parametres_edittpl.php allows remote attackers to execute arbitrary PHP code by placing this code into a template.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt