Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-24739

A CSRF vulnerability was found in iCMS v7.0.0 in the background deletion administrator account. When missing the CSRF_TOKEN and can still request normally, all administrators except the initial administrator will be deleted.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.2%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2020-24739
  • Idreamsoft » Icms » Version: 7.0.0
    cpe:2.3:a:idreamsoft:icms:7.0.0


Contact Us

Shodan ® - All rights reserved