Vulnerabilities > GET Simple > Getsimplecms > 3.4.0

DATE CVE VULNERABILITY TITLE RISK
2023-10-31 CVE-2023-46040 Cross-site Scripting vulnerability in Get-Simple Getsimplecms 3.4.0
Cross Site Scripting vulnerability in GetSimpleCMS v.3.4.0a allows a remote attacker to execute arbitrary code via the a crafted payload to the components.php function.
network
low complexity
get-simple CWE-79
5.4
2021-06-23 CVE-2020-20389 Cross-site Scripting vulnerability in Get-Simple Getsimplecms 3.4.0
Cross Site Scripting (XSS) vulnerability in GetSimpleCMS 3.4.0a in admin/edit.php.
network
get-simple CWE-79
3.5
2021-06-23 CVE-2020-20391 Cross-site Scripting vulnerability in Get-Simple Getsimplecms 3.4.0
Cross Site Scripting vulnerability in GetSimpleCMS 3.4.0a in admin/snippets.php via (1) Add Snippet and (2) Save snippets.
network
get-simple CWE-79
3.5