Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a session cookie or CSRF nonce.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cagintranet Networks GetSimple CMS 安全漏洞
Vulnerability Description
Cagintranet Networks GetSimple CMS是美国Cagintranet Networks公司的一套基于XML的内容管理系统(CMS)。该系统包含主题选择器和编辑器、组件编辑器、图像和文件管理器等。 Cagintranet Networks GetSimple CMS 3.3.13版本中的admin/inc/template_functions.php脚本存在安全漏洞。攻击者可利用该漏洞提升权限,实施跨站请求伪造攻击。
CVSS Information
N/A
Vulnerability Type
N/A