Remote Code Injection in CMS Made Simple News Module
CVE-2011-4310

7.5HIGH

Key Information:

Status
Vendor
CVE Published:
26 November 2019

What is CVE-2011-4310?

The news module in CMS Made Simple prior to version 1.9.4.3 contains a vulnerability that allows remote attackers to exploit the system by corrupting new articles. This weakness can lead to unauthorized modifications of content, which may jeopardize the integrity and credibility of the information presented on websites using this CMS.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

CMSMS before 1.9.4.3

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.