CVE-2019-17552

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
14/10/2019
Last modified:
16/10/2019

Description

An issue was discovered in idreamsoft iCMS v7.0.14. There is a spider_project.admincp.php SQL injection vulnerability in the 'upload spider project scheme' feature via a two-dimensional payload.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:idreamsoft:icms:7.0.14:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools