Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-72214
HistoryApr 29, 2022 - 12:00 a.m.

GetSimple CMS Cross-Site Scripting Vulnerability

2022-04-2900:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
getsimple cms
cross-site scripting
vulnerability
data validation
php
user-supplied data
javascript

EPSS

0.001

Percentile

21.4%

GetSimple CMS is a content management system (CMS) written in PHP. GetSimple CMS suffers from a cross-site scripting vulnerability that originates from a lack of data validation filtering of user-supplied data and output in /admin/edit.php. An attacker could exploit this vulnerability to execute JavaScript code on the client side.

EPSS

0.001

Percentile

21.4%

Related for CNVD-2022-72214