This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:cmsmadesimple:cms_made_simple:1.2
Detail
VendorCmsmadesimpleFirst view 2005-07-27
ProductCms Made SimpleLast view 2012-12-03
Version1.2TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:cmsmadesimple:cms_made_simple

Activity : Overall

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentication
3.5 2012-12-03 CVE-2012-6064 Network Medium Requires ...
6.8 2012-12-03 CVE-2012-5450 Network Medium None Requ...
4.3 2012-04-11 CVE-2012-1992 Network Medium None Requ...
10 2011-06-08 CVE-2010-4663 Network Low None Requ...
6.8 2010-10-08 CVE-2010-3884 Network Medium None Requ...
Hide | Show 5 More...
 DateAlertAccess VectorAccess ComplexityAuthentication
6.8 2010-10-08 CVE-2010-3883 Network Medium None Requ...
4.3 2010-10-08 CVE-2010-3882 Network Medium None Requ...
7.5 2010-10-08 CVE-2010-2797 Network Low None Requ...
4.3 2010-05-12 CVE-2010-1482 Network Medium None Requ...
4.3 2005-07-27 CVE-2005-2392 Network Medium None Requ...

CWE : Common Weakness Enumeration

%idName
37% (3)CWE-352Cross-Site Request Forgery (CSRF)
37% (3)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
25% (2)CWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path ...

Open Source Vulnerability Database (OSVDB)

idDescription
73150News Module for CMS Made Simple Unspecified Issue
68617CMS Made Simple lib/translation.functions.php default_cms_lang Parameter Trav...
65369CMS Made Simple Add Global Content Module URI XSS
65368CMS Made Simple Edit Global Content Module URI XSS
65367CMS Made Simple Add Article Module URI XSS
Hide | Show 8 More...
idDescription
65366CMS Made Simple Add Category Module URI XSS
65365CMS Made Simple Add Field Definition Module URI XSS
65364CMS Made Simple Add Shortcut Module URI XSS
65363CMS Made Simple Changes Group Permission Module CSRF
65362CMS Made Simple Add Pages Module URI XSS
65081CMS Made Simple Admin Password Manipulation CSRF
64606CMS Made Simple admin/editprefs.php date_format_string Parameter XSS
18128CMSimple search Function XSS

OpenVAS Exploits

idDescription
2010-07-14Name : CMS Made Simple 'default_cms_lang' Parameter Local File Include Vulnerability
File : nvt/gb_cms_made_simple_41565.nasl
2010-05-10Name : CMS Made Simple 'admin/editprefs.php' Cross-Site Scripting Vulnerability
File : nvt/gb_cms_made_simple_39997.nasl
2006-03-26Name : CMSimple index.php search XSS
File : nvt/cmsimple_search_xss.nasl

Nessus® Vulnerability Scanner

idDescription
2005-09-14Name : The remote web server is hosting a PHP application that is affected by a cros...
File : cmsimple_search_xss.nasl - Type : ACT_ATTACK