Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6hw4-fq3j-72w9

Опубликовано: 21 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.6

Описание

GetSimple CMS My SMTP Contact Plugin 1.1.2 contains a PHP code injection vulnerability. An authenticated administrator can inject arbitrary PHP code through plugin configuration parameters, leading to remote code execution on the server.

GetSimple CMS My SMTP Contact Plugin 1.1.2 contains a PHP code injection vulnerability. An authenticated administrator can inject arbitrary PHP code through plugin configuration parameters, leading to remote code execution on the server.

EPSS

Процентиль: 62%
0.00428
Низкий

8.6 High

CVSS4

Дефекты

CWE-94

Связанные уязвимости

nvd
18 дней назад

GetSimple CMS My SMTP Contact Plugin 1.1.2 contains a PHP code injection vulnerability. An authenticated administrator can inject arbitrary PHP code through plugin configuration parameters, leading to remote code execution on the server.

EPSS

Процентиль: 62%
0.00428
Низкий

8.6 High

CVSS4

Дефекты

CWE-94