Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-7235

An issue was discovered in idreamsoft iCMS 7.0.13. admincp.php?app=apps&do=save allows directory traversal via _app=/../ to designate an arbitrary directory because of an apps.admincp.php error. This directory can then be deleted via an admincp.php?app=apps&do=uninstall request.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.1%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 6.4
Products affected by CVE-2019-7235
  • Idreamsoft » Icms » Version: 7.0.13
    cpe:2.3:a:idreamsoft:icms:7.0.13


Contact Us

Shodan ® - All rights reserved