GetSimple CMS 是一款内容管理系统(CMS),而 GetSimple CMS CE 是该系统的社区版。在 1.5 版本之前,UpdateCE 更新表单中未包含任何防 CSRF(跨站请求伪造)令牌,且其 POST 处理程序也未执行任何令牌或请求来源验证。远程攻击者可以托管一个页面,该页面会自动向更新端点提交伪造的 POST 请求;当已认证的管理员访问该页面时,服务器将在管理员会话中执行由攻击者指定的下载并部署操作——无需进一步交互。由于所部署的内容会被执行(参见相关的 ZIP 解压安全公告),这将导致远程
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GetSimpleCMS-CE | GetSimpleCMS-CE | < 1.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-53953 | 9.1 CRITICAL | GetSimple CMS: Predictable Password Reset Password Allows Administrator Account Takeover |
| CVE-2026-56660 | 9.1 CRITICAL | GetSimple CMS: CSRF, SSRF, and Unrestricted Zip Extraction |
| CVE-2026-70650 | 8.8 HIGH | GetSimple CMS: Authenticated Stored XSS in backup viewer (backup-edit.php) via output deco |
| CVE-2026-71542 | 8.7 HIGH | GetSimple CMS: Stored Cross-Site Scripting (XSS) via the "title" parameter in admin/compon |
| CVE-2026-56661 | 7.5 HIGH | GetSimple CMS: Server-Side Request Forgery in the UpdateCE update endpoint |
| CVE-2026-71426 | 7.1 HIGH | GetSimple CMS: Authenticated Stored Local File Inclusion (LFI) via page "template" field |
No comments yet