First published: Sat Aug 25 2018(Updated: )
GetSimple CMS 3.3.14 has XSS via the admin/edit.php "Add New Page" field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Get-simple Getsimple Cms | =3.3.14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-15843 is a vulnerability in GetSimple CMS 3.3.14 that allows for XSS attacks via the admin/edit.php "Add New Page" field.
CVE-2018-15843 has a severity rating of 4.8 out of 10, which is considered medium.
CVE-2018-15843 affects GetSimple CMS version 3.3.14.
XSS (Cross-Site Scripting) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
A fix for CVE-2018-15843 is not yet available, but it is recommended to update to the latest version of GetSimple CMS when it becomes available.