7.5
CVSSv3

CVE-2023-27179

Published: 11/04/2023 Updated: 17/04/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

GDidees CMS v3.9.1 and lower exists to contain an arbitrary file download vulenrability via the filename parameter at /_admin/imgdownload.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gdidees gdidees cms

Vendor Advisories

Check Point Reference: CPAI-2023-1494 Date Published: 5 Feb 2024 Severity: High ...

Exploits

GDidees CMS version 391 suffers from file disclosure and directory traversal vulnerabilities ...