Vulnerabilities > Idccms Project

DATE CVE VULNERABILITY TITLE RISK
2024-07-09 CVE-2024-40034 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userLevel_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-07-09 CVE-2024-40037 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userScore_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-07-09 CVE-2024-40039 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-06-05 CVE-2024-36667 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/idcProType_deal.php?mudi=add&nohrefStr=close
network
low complexity
idccms-project CWE-352
8.8
2024-06-05 CVE-2024-36668 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/type_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-06-05 CVE-2024-36669 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/type_deal.php?mudi=add.
network
low complexity
idccms-project CWE-352
8.8
2022-03-21 CVE-2022-27333 Unspecified vulnerability in Idccms Project Idccms 1.10
idcCMS v1.10 was discovered to contain an issue which allows attackers to arbitrarily delete the install.lock file, resulting in a reset of the CMS settings and data.
network
low complexity
idccms-project
7.5