Security Advisory

CVE-2021-47778

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-01-21 17:29:48
Last updated 2026-07-15 01:24:35
Assigner VulnCheck
CVSS score 8.6
State PUBLISHED

Description

GetSimple CMS My SMTP Contact Plugin 1.1.2 contains a PHP code injection vulnerability. An authenticated administrator can inject arbitrary PHP code through plugin configuration parameters, leading to remote code execution on the server.