CVE-2020-18658: XSS
Published Jun 23, 2021
·Updated
Cross Site Scriptiong (XSS) vulnerability in GetSimpleCMS <=3.3.15 via the timezone parameter to settings.php.
Affected Software
1 affected component
Get-simple Getsimplecms<=3.3.15
Event History
Jun 23, 2021
CVE Published
via MITRE·06:54 PM
Data Sourced
via MITRE·06:54 PM
Description
Frequently Asked Questions
1
What is CVE-2020-18658?
CVE-2020-18658 is a Cross Site Scripting (XSS) vulnerability in GetSimpleCMS version 3.3.15 and below.
2
How severe is CVE-2020-18658?
CVE-2020-18658 has a severity rating of 6.1, which is considered medium.
3
How does CVE-2020-18658 affect GetSimpleCMS?
CVE-2020-18658 affects GetSimpleCMS version 3.3.15 and below through the timezone parameter in settings.php.
4
How can I fix CVE-2020-18658?
To fix CVE-2020-18658, users of GetSimpleCMS should upgrade to a version higher than 3.3.15.
5
Where can I find more information about CVE-2020-18658?
More information about CVE-2020-18658 can be found at the following references: [link1], [link2], [link3].