Vulnerabilities > Gdidees > High

DATE CVE VULNERABILITY TITLE RISK
2023-04-11 CVE-2023-27179 Unrestricted Upload of File with Dangerous Type vulnerability in Gdidees CMS 3.9.1
GDidees CMS v3.9.1 and lower was discovered to contain an arbitrary file download vulenrability via the filename parameter at /_admin/imgdownload.php.
network
low complexity
gdidees CWE-434
7.5
2023-04-07 CVE-2023-27180 Unspecified vulnerability in Gdidees CMS 3.9.1
GDidees CMS v3.9.1 was discovered to contain a source code disclosure vulnerability by the backup feature which is accessible via /_admin/backup.php.
network
low complexity
gdidees
7.5