CVE-2022-41496

Severity CVSS v4.0:
Pending analysis
Type:
CWE-918 Server-Side Request Forgery (SSRF)
Publication date:
13/10/2022
Last modified:
15/05/2025

Description

iCMS v7.0.16 was discovered to contain a Server-Side Request Forgery (SSRF) via the url parameter at admincp.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:idreamsoft:icms:7.0.16:*:*:*:*:*:*:*