VendorsCMS Made Simplecms_made_simple2.2.17
Vulnerabilities

CMS Made Simple CMS Made Simple 2.2.17

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2023-36969
CMS Made Simple v2.2.17 is vulnerable to Remote Command Execution via the File Upload Function.
Published 2023-07-06 · Modified
8.8EPSS 0.493
CVE-2023-36970
A Cross-site scripting (XSS) vulnerability in CMS Made Simple v2.2.17 allows remote attackers to inject arbitrary web script or HTML via the File Upload function.
Published 2023-07-06 · Modified
5.4EPSS 0.006