CMS Made Simple Foundation File Manager
cpe:2.3:a:cmsmadesimple:cms_made_simple:*:*:*:*:*:*:*
- 2.2.22
A vulnerability allowing authenticated users with Administrator privileges to upload arbitrary files has been identified in the CMS Made Simple Foundation File Manager version 2.2.22. This vulnerability exists in the '/uploads/' endpoint and could be exploited by uploading a specially crafted PHP file, which would then be executed on the server.
Exploitation of this vulnerability allows for arbitrary code execution on the server where CMS Made Simple Foundation File Manager is installed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.