EyouCMS Code Injection Vulnerability in Template File Handler

Vulnerability

A code injection vulnerability has been identified in EyouCMS versions through 1.7.9. The issue arises in the Template File Handler, specifically within the editFile function of application/admin/logic/FilemanagerLogic.php. This vulnerability can be exploited remotely, allowing for unauthorized code execution on the server.

Impact

Exploitation of this vulnerability allows for remote code execution on the server where EyouCMS is installed.

Added: Apr 29, 2026, 4:21 PM
Updated: Apr 29, 2026, 4:21 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
2.5
exploitability
6.3
remediation
0.0
relevance
6.8
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.