CagintranetworksCVEs & Vulnerabilities
2 CVEs affecting Cagintranetworks products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
getsimple cms 3
CVE-2017-8081HIGH
Poor cryptographic salt initialization in admin/inc/template_functions.php in GetSimple CMS 3.3.13 allows a network attacker to escalate privileges to an arbitrary user or conduct CSRF attacks via calculation of a session cookie or CSRF nonce.
30 Apr 2017
8.8
CVSS
CVE-2014-8790MEDIUM
XML external entity (XXE) vulnerability in admin/api.php in GetSimple CMS 3.1.1 through 3.3.x before 3.3.5 Beta 1, when in certain configurations, allows remote attackers to read arbitrary files via the data parameter.
20 Jan 2015
5.0
CVSS
← PrevPage 1 / 1Next →