CVE-2024-55086: SSRF
Published Dec 18, 2024
·Updated
In the GetSimple CMS CE 3.3.19 management page, Server-Side Request Forgery (SSRF) can be achieved in the plug-in download address in the backend management system.
Affected Software
2 affected components
GetSimple CMS
Getsimple-ce Getsimple Cms=3.3.19
Event History
Dec 18, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-55086?
CVE-2024-55086 has a high severity rating due to its potential for Server-Side Request Forgery in the backend management system.
2
How do I fix CVE-2024-55086?
To mitigate CVE-2024-55086, update to the latest version of GetSimple CMS that addresses this vulnerability.
3
What systems are affected by CVE-2024-55086?
CVE-2024-55086 affects GetSimple CMS CE version 3.3.19.
4
What type of vulnerability is CVE-2024-55086?
CVE-2024-55086 is classified as a Server-Side Request Forgery (SSRF) vulnerability.
5
Is there a public exploit for CVE-2024-55086?
Currently, detailed public exploits for CVE-2024-55086 have not been widely disclosed.