← Back to browse · API

CVE-2023-27179

Severity
HIGH
CVSS
7.5
EPSS
0.60793
Risk score
51.28
CISA KEV
No
PoC
No
Published
2023-04-11
Modified
2025-02-11
First seen
2026-08-07
Aliases
EUVD-2023-30959, GHSA-XX9Q-X7HP-RWHJ
Products
n/a:n/a n/a
Sources
euvd EUVD-2023-30959

Description

GDidees CMS v3.9.1 and lower was discovered to contain an arbitrary file download vulenrability via the filename parameter at /_admin/imgdownload.php.

References