CMS Made Simple Version 2.2.19 is vulnerable to Cross Site Scripting (XSS). This vulnerability resides in the File Manager module of the admin panel. Specifically, the issue arises due to inadequate sanitization of user input in the "New directory" field.
Metrics
Affected Vendors & Products
References
History
Fri, 28 Mar 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Cmsmadesimple
Cmsmadesimple cms Made Simple |
|
CPEs | cpe:2.3:a:cmsmadesimple:cms_made_simple:2.2.19:*:*:*:*:*:*:* | |
Vendors & Products |
Cmsmadesimple
Cmsmadesimple cms Made Simple |
Tue, 12 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-12T17:16:30.868Z
Reserved: 2024-02-26T00:00:00
Link: CVE-2024-27625

Updated: 2024-08-02T00:34:52.591Z

Status : Analyzed
Published: 2024-03-05T14:15:49.160
Modified: 2025-03-28T16:07:53.420
Link: CVE-2024-27625

No data.