CVE-2017-6070

CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to execute PHP code via the cntnt01fbrp_forma_form_template parameter in admin_store_form.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:cmsmadesimple:form_builder:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:cmsmadesimple:cms_made_simple:*:*:*:*:*:*:*:*

Information

Published : 2017-02-20 23:59

Updated : 2017-02-23 06:55


NVD link : CVE-2017-6070

Mitre link : CVE-2017-6070


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

cmsmadesimple

  • cms_made_simple
  • form_builder