Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in GetSimple CMS v3.3.13. There is a CSRF vulnerability that can change the administrator's password via admin/settings.php. NOTE: The vendor reported that the PoC was sending a value for the nonce parameter
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cagintranet GetSimple CMS 跨站请求伪造漏洞
Vulnerability Description
Cagintranet GetSimple CMS是美国Cagintranet Networks公司的一套基于XML的内容管理系统(CMS)。该系统包含主题选择器和编辑器、组件编辑器、图像和文件管理器等。 Cagintranet GetSimple CMS 3.3.13版本中存在跨站请求伪造漏洞。远程攻击者可借助admin/settings.php文件利用该漏洞更改管理员密码。
CVSS Information
N/A
Vulnerability Type
N/A