Yunye · Yunyecms · CVE-2020-21377
**Name of the Vulnerable Software and Affected Versions**
yunyecms version 2.0.1
**Description**
The issue is related to a SQL injection vulnerability. It can be exploited via the `selcart` parameter.
**Recommendations**
For yunyecms version 2.0.1, consider restricting access to the `selcart` parameter to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.