CVE-2022-1503

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
27/04/2022
Last modified:
05/05/2022

Description

A vulnerability, which was classified as problematic, has been found in GetSimple CMS. Affected by this issue is the file /admin/edit.php of the Content Module. The manipulation of the argument post-content with an input like alert(1) leads to cross site scripting. The attack may be launched remotely but requires authentication. Expoit details have been disclosed within the advisory.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:get-simple:getsimple_cms:-:*:*:*:*:*:*:*