First published: Wed Jun 23 2021(Updated: )
Remote Code Execution vulnerability in GetSimpleCMS before 3.3.16 in admin/upload.php via phar filess.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Get-simple Getsimplecms | <3.3.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28976 is a remote code execution vulnerability in GetSimpleCMS before version 3.3.16 in the admin/upload.php file via phar files.
CVE-2021-28976 has a severity rating of 7.2, which is considered high.
CVE-2021-28976 affects GetSimpleCMS versions up to and excluding 3.3.16.
To fix CVE-2021-28976, you need to update GetSimpleCMS to version 3.3.16 or later.
More information about CVE-2021-28976 can be found at the following link: [CVE-2021-28976](https://github.com/GetSimpleCMS/GetSimpleCMS/issues/1335)