CMS Made Simple Version 2.2.19 is vulnerable to Cross Site Scripting (XSS). This vulnerability resides in the File Manager module of the admin panel. Specifically, the issue arises due to inadequate sanitization of user input in the "New directory" field.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 28 Mar 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cmsmadesimple
Cmsmadesimple cms Made Simple |
|
| CPEs | cpe:2.3:a:cmsmadesimple:cms_made_simple:2.2.19:*:*:*:*:*:*:* | |
| Vendors & Products |
Cmsmadesimple
Cmsmadesimple cms Made Simple |
Tue, 12 Nov 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-03-05T00:00:00
Updated: 2024-11-12T17:16:30.868Z
Reserved: 2024-02-26T00:00:00
Link: CVE-2024-27625
Updated: 2024-08-02T00:34:52.591Z
Status : Analyzed
Published: 2024-03-05T14:15:49.160
Modified: 2025-03-28T16:07:53.420
Link: CVE-2024-27625
No data.