vendor:
CMS Made Simple
by:
John Leitch
7.5
CVSS
HIGH
Local File Inclusion
22
CWE
Product Name: CMS Made Simple
Affected Version From: 1.8
Affected Version To: 1.8
Patch Exists: YES
Related CWE:
CPE: a:cms_made_simple:cms_made_simple:1.8
Platforms Tested: Windows Vista + XAMPP
2010
CMS Made Simple Local File Inclusion Vulnerability
A local file inclusion vulnerability in CMS Made Simple 1.8 can be exploited to include arbitrary files.
Mitigation:
Ensure proper sanitization of user-supplied input to prevent file inclusion vulnerabilities.