CVE-2018-15843: XSS
Published Aug 25, 2018
·Updated
GetSimple CMS 3.3.14 has XSS via the admin/edit.php "Add New Page" field.
Affected Software
1 affected component
Get-simple Getsimple Cms=3.3.14
Event History
Aug 25, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-15843?
CVE-2018-15843 is a vulnerability in GetSimple CMS 3.3.14 that allows for XSS attacks via the admin/edit.php "Add New Page" field.
2
How severe is CVE-2018-15843?
CVE-2018-15843 has a severity rating of 4.8 out of 10, which is considered medium.
3
How does CVE-2018-15843 affect GetSimple CMS?
CVE-2018-15843 affects GetSimple CMS version 3.3.14.
4
What is XSS?
XSS (Cross-Site Scripting) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
5
Is there a fix for CVE-2018-15843?
A fix for CVE-2018-15843 is not yet available, but it is recommended to update to the latest version of GetSimple CMS when it becomes available.