This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:cmsmadesimple:cms_made_simple:1.2
Detail
VendorCmsmadesimpleFirst view 2005-07-27
ProductCms Made SimpleLast view 2012-12-03
Version1.2TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:cmsmadesimple:cms_made_simple

Activity : Overall

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentication
3.52012-12-03CVE-2012-6064NetworkMediumRequires ...
6.82012-12-03CVE-2012-5450NetworkMediumNone Requ...
4.32012-04-11CVE-2012-1992NetworkMediumNone Requ...
102011-06-08CVE-2010-4663NetworkLowNone Requ...
6.82010-10-08CVE-2010-3884NetworkMediumNone Requ...
Hide | Show 5 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
6.82010-10-08CVE-2010-3883NetworkMediumNone Requ...
4.32010-10-08CVE-2010-3882NetworkMediumNone Requ...
7.52010-10-08CVE-2010-2797NetworkLowNone Requ...
4.32010-05-12CVE-2010-1482NetworkMediumNone Requ...
4.32005-07-27CVE-2005-2392NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
37% (3)CWE-352Cross-Site Request Forgery (CSRF)
37% (3)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
25% (2)CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path ...

Open Source Vulnerability Database (OSVDB)

idDescription
73150News Module for CMS Made Simple Unspecified Issue
68617CMS Made Simple lib/translation.functions.php default_cms_lang Parameter Trav...
65369CMS Made Simple Add Global Content Module URI XSS
65368CMS Made Simple Edit Global Content Module URI XSS
65367CMS Made Simple Add Article Module URI XSS
Hide | Show 8 More...
idDescription
65366CMS Made Simple Add Category Module URI XSS
65365CMS Made Simple Add Field Definition Module URI XSS
65364CMS Made Simple Add Shortcut Module URI XSS
65363CMS Made Simple Changes Group Permission Module CSRF
65362CMS Made Simple Add Pages Module URI XSS
65081CMS Made Simple Admin Password Manipulation CSRF
64606CMS Made Simple admin/editprefs.php date_format_string Parameter XSS
18128CMSimple search Function XSS

OpenVAS Exploits

idDescription
2010-07-14Name : CMS Made Simple 'default_cms_lang' Parameter Local File Include Vulnerability
File : nvt/gb_cms_made_simple_41565.nasl
2010-05-10Name : CMS Made Simple 'admin/editprefs.php' Cross-Site Scripting Vulnerability
File : nvt/gb_cms_made_simple_39997.nasl
2006-03-26Name : CMSimple index.php search XSS
File : nvt/cmsimple_search_xss.nasl

Nessus® Vulnerability Scanner

idDescription
2005-09-14Name : The remote web server is hosting a PHP application that is affected by a cros...
File : cmsimple_search_xss.nasl - Type : ACT_ATTACK