VendorsiDreamSofticms7.0.15
Vulnerabilities

iDreamSoft iCMS 7.0.15

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2020-21141
iCMS v7.0.15 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admincp.php?app=members&do=add.
Published 2021-11-12 · Modified
8.8EPSS 0.006
CVE-2019-17583
idreamsoft iCMS 7.0.15 allows remote attackers to cause a denial of service (resource consumption) via a query for many comments, as demonstrated by the admincp.php?app=comment&perpage= substring followed by a large positive integer.
Published 2019-10-14 · Modified
7.5EPSS 0.013