Skip to content

Instantly share code, notes, and snippets.

@ChubbyZ
Last active August 10, 2023 01:41
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save ChubbyZ/27fa6f43699c9964ddfa701614fc4d5e to your computer and use it in GitHub Desktop.
Save ChubbyZ/27fa6f43699c9964ddfa701614fc4d5e to your computer and use it in GitHub Desktop.
CVE-2023-39806
[CVE-ID]
CVE-2023-39806
------------------------------------------
[Description]
iCMS v7.0.16 was discovered to contain a SQL injection vulnerability
via the bakupdata function.
------------------------------------------
[Vulnerability Type]
SQL Injection
------------------------------------------
[Vendor of Product]
icmsdev
------------------------------------------
[Affected Product Code Base]
icms V7.0.16 - V7.0.16
------------------------------------------
[Affected Component]
database.admincp.php--->bakupdata()
------------------------------------------
[Attack Type]
Remote
------------------------------------------
[Impact Code execution]
true
------------------------------------------
[Impact Information Disclosure]
true
------------------------------------------
[Reference]
http://icms.com
http://icmsdev.com
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment