CVE-2020-21141: Idreamsoft Icms

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

iCMS v7.0.15 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admincp.php?app=members&do=add.

Affected products

Published 2021-11-12. Last modified 2026-06-17.