CVE-2019-17552: Idreamsoft Icms
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
An issue was discovered in idreamsoft iCMS v7.0.14. There is a spider_project.admincp.php SQL injection vulnerability in the 'upload spider project scheme' feature via a two-dimensional payload.
Affected products
- Idreamsoft Icms: version 7.0.14 only
Published 2019-10-14. Last modified 2026-06-17.