First published: Mon Oct 14 2019(Updated: )
idreamsoft iCMS 7.0.15 allows remote attackers to cause a denial of service (resource consumption) via a query for many comments, as demonstrated by the admincp.php?app=comment&perpage= substring followed by a large positive integer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
iCMS | =7.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-17583.
The severity of CVE-2019-17583 is rated as high (7.5).
CVE-2019-17583 allows remote attackers to cause a denial of service (resource consumption) in idreamsoft iCMS 7.0.15.
The denial of service caused by CVE-2019-17583 can be triggered by a query for many comments in the admincp.php?app=comment&perpage= substring, followed by a large positive integer.
Currently, there is no information available regarding a fix for CVE-2019-17583.