Vulnerabilities > Icmsdev > Icms > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-08-12 CVE-2019-14976 Cross-site Scripting vulnerability in Icmsdev Icms 7.0.15
iCMS 7.0.15 allows admincp.php?app=apps XSS via the keywords parameter.
network
low complexity
icmsdev CWE-79
6.1
2018-07-20 CVE-2018-14415 Cross-site Scripting vulnerability in Icmsdev Icms
An issue was discovered in idreamsoft iCMS before 7.0.10.
network
low complexity
icmsdev CWE-79
6.1
2018-04-20 CVE-2018-10250 Cross-site Scripting vulnerability in Icmsdev Icms 7.0.8
iCMS V7.0.8 has XSS via the admincp.php keywords parameter in a weixin_category action, aka a WeChat Classified Management keyword search.
network
low complexity
icmsdev CWE-79
5.4
2018-04-10 CVE-2018-9925 Cross-site Scripting vulnerability in Icmsdev Icms
An issue was discovered in idreamsoft iCMS through 7.0.7.
network
low complexity
icmsdev CWE-79
5.4
2018-04-10 CVE-2018-9922 Information Exposure vulnerability in Icmsdev Icms
An issue was discovered in idreamsoft iCMS through 7.0.7.
network
low complexity
icmsdev CWE-200
5.3