CVE-2024-11587
- EPSS 0.81%
- Veröffentlicht 21.11.2024 13:15:03
- Zuletzt bearbeitet 22.11.2024 21:15:27
A vulnerability was found in idcCMS 1.60. It has been classified as problematic. This affects the function GetCityOptionJs of the file /inc/classProvCity.php. The manipulation of the argument idName leads to cross site scripting. It is possible to in...
CVE-2024-40336
- EPSS 0.1%
- Veröffentlicht 10.07.2024 14:15:12
- Zuletzt bearbeitet 15.04.2025 17:00:47
idccms v1.35 is vulnerable to Cross Site Scripting (XSS) within the 'Image Advertising Management.'
CVE-2024-40332
- EPSS 0.07%
- Veröffentlicht 10.07.2024 14:15:12
- Zuletzt bearbeitet 21.11.2024 09:31:00
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/moneyRecord_deal.php?mudi=delRecord
CVE-2024-40331
- EPSS 0.13%
- Veröffentlicht 10.07.2024 14:15:12
- Zuletzt bearbeitet 15.04.2025 17:01:00
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/dbBakMySQL_deal.php?mudi=backup
CVE-2024-40334
- EPSS 0.32%
- Veröffentlicht 10.07.2024 13:15:10
- Zuletzt bearbeitet 21.11.2024 09:31:01
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/serverFile_deal.php?mudi=upFileDel&dataID=3
CVE-2024-40333
- EPSS 0.44%
- Veröffentlicht 10.07.2024 13:15:10
- Zuletzt bearbeitet 15.04.2025 17:00:55
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/softBak_deal.php?mudi=del&dataID=2
CVE-2024-40329
- EPSS 0.32%
- Veröffentlicht 10.07.2024 13:15:10
- Zuletzt bearbeitet 15.04.2025 17:01:06
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/softBak_deal.php?mudi=backup
CVE-2024-40328
- EPSS 0.2%
- Veröffentlicht 10.07.2024 13:15:10
- Zuletzt bearbeitet 15.04.2025 17:01:14
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/memberOnline_deal.php?mudi=del&dataType=&dataID=6
CVE-2024-40038
- EPSS 0.1%
- Veröffentlicht 09.07.2024 19:15:13
- Zuletzt bearbeitet 15.04.2025 17:01:21
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userScore_deal.php?mudi=rev
CVE-2024-40036
- EPSS 0.44%
- Veröffentlicht 09.07.2024 19:15:13
- Zuletzt bearbeitet 15.04.2025 17:01:28
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?mudi=add&nohrefStr=close