VendorsiDreamSofticms7.0.9
Vulnerabilities

iDreamSoft iCMS 7.0.9

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-16332
An issue was discovered in iCMS 7.0.9. There is an admincp.php?app=article&do=update CSRF vulnerability.
Published 2018-09-02 · Modified
8.8EPSS 0.006
CVE-2018-13865
An issue was discovered in idreamsoft iCMS 7.0.9. XSS exists via the callback parameter in a public/api.php uploadpic request, bypassing the iWAF protection mechanism.
Published 2018-07-10 · Modified
6.1EPSS 0.010