CVE-2015-5644: Icz Matchasns

Medium severity, CVSS 6.8. EPSS: 1.3% chance of exploitation in the next 30 days.

The installer in ICZ MATCHA SNS before 1.3.7 does not properly configure the database, which allows remote attackers to execute arbitrary PHP code via unspecified vectors.

Affected products

  • Icz Matchasns: up to and including 1.3.6

Published 2015-10-06. Last modified 2026-06-17.