CVE-2019-10708: S-CMS

Critical severity, CVSS 9.8. EPSS: 2.6% chance of exploitation in the next 30 days.

S-CMS PHP v1.0 has SQL injection via the 4/js/scms.php?action=unlike id parameter.

Affected products

  • S-CMS S-CMS: version 1.0 only

Published 2019-04-02. Last modified 2026-06-17.