First published: Mon Oct 14 2019(Updated: )
An issue was discovered in idreamsoft iCMS v7.0.14. There is a spider_project.admincp.php SQL injection vulnerability in the 'upload spider project scheme' feature via a two-dimensional payload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
idreamsoft iCMS | =7.0.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-17552 is critical with a score of 9.8.
CVE-2019-17552 is a SQL injection vulnerability in the 'upload spider project scheme' feature in idreamsoft iCMS v7.0.14.
The affected software version of CVE-2019-17552 is idreamsoft iCMS v7.0.14.
Yes, you can find a reference for CVE-2019-17552 at https://github.com/idreamsoft/iCMS/issues/77.
The CWE ID for CVE-2019-17552 is 89.