CVE-2024-55085

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
16/12/2024
Last modified:
17/04/2025

Description

GetSimple CMS CE 3.3.19 suffers from arbitrary code execution in the template editing function in the background management system, which can be used by an attacker to implement RCE.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:getsimple-ce:getsimple_cms:3.3.19:*:*:*:community:*:*:*