CVE-2024-1527

Publication date

2024-03-12 15:19:52

Family

INCIBE

State

PUBLISHED

Description

Unrestricted file upload vulnerability in CMS Made Simple, affecting version 2.2.14. This vulnerability allows an authenticated user to bypass the security measures of the upload functionality and potentially create a remote execution of commands via webshell.