Myucms v2.2.1 contains a remote code execution (RCE) vulnerability in the component \controller\point.php, which can be exploited via the add() method.
No PoCs from references.
- https://github.com/Live-Hack-CVE/CVE-2020-21651