Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2021-43741
Disclosure Date: April 13, 2022 (last updated February 23, 2025)
CMSimple 5.4 is vulnerable to Directory Traversal. The vulnerability exists when a user changes the file name to malicious file on config.php leading to remote code execution.
0
Attacker Value
Unknown
CVE-2021-43742
Disclosure Date: April 13, 2022 (last updated February 23, 2025)
CMSimple 5.4 is vulnerable to Cross Site Scripting (XSS) via the file upload feature.
0