Products: 1
    Vulnerabilities: 19
    Known Exploited: 0
    6
    Critical Level Threats
    7
    High Level Threats
    6
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-15394

    iCMS POST Parameter ConfigAdmincp.php save code injection

    Last Modified: Jan 13, 2026
    Published: Dec 31, 2025

    CVE-2023-42321

    Cross Site Request Forgery (CSRF) vulnerability in icmsdev iCMSv.7.0.16 allows a remote attacker to execute arbitrary code via the user.admincp.php, members.admincp.php, and group.admincp.php files.

    Last Modified: Nov 21, 2024
    Published: Sep 20, 2023

    CVE-2023-42322

    Insecure Permissions vulnerability in icmsdev iCMS v.7.0.16 allows a remote attacker to obtain sensitive information.

    Last Modified: Nov 21, 2024
    Published: Sep 20, 2023

    CVE-2019-14976

    iCMS 7.0.15 allows admincp.php?app=apps XSS via the keywords parameter.

    Last Modified: Nov 21, 2024
    Published: Aug 12, 2019

    CVE-2019-6259

    An issue was discovered in idreamsoft iCMS V7.0.13. There is SQL Injection via the app/article/article.admincp.php _data_id parameter.

    Last Modified: Nov 21, 2024
    Published: Jan 14, 2019
    Items Per Page
    Icmsdev Vulnerabilities & Security CVEs | CVE-DB