Vulnerabilities (CVE)

Filtered by vendor Simploo Subscribe
Filtered by product Simploo Cms
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-0635 1 Simploo 1 Simploo Cms 2024-02-04 6.0 MEDIUM N/A
Static code injection vulnerability in Simploo CMS 1.7.1 and earlier allows remote authenticated users to inject arbitrary PHP code into config/custom/base.ini.php via the ftpserver parameter (FTP-Server field) to the sicore/updates/optionssav operation for index.php.