VendorsIcmsdevicms7.0.8
Vulnerabilities

Icmsdev Icms 7.0.8

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-12498
spider.admincp.php in iCMS v7.0.8 has SQL Injection via the id parameter in an app=spider&do=batch request to admincp.php.
Published 2018-06-15 · Modified
9.8EPSS 0.015
CVE-2018-10250
iCMS V7.0.8 has XSS via the admincp.php keywords parameter in a weixin_category action, aka a WeChat Classified Management keyword search.
Published 2018-04-20 · Modified
5.4EPSS 0.006