Sploitus

CVE-2018-17835

No indexed exploits for CVE-2018-17835 yet

An issue was discovered in GetSimple CMS 3.3.15. An administrator can insert stored XSS via the admin/settings.php Custom Permalink Structure parameter, which injects the XSS payload into any page created at the admin/pages.php URI.

Affected products
Getsimple Cms
Get-simple Getsimple Cms
= 3.3.15
CVSS 3.0
4.8 MEDIUM
EPSS
0.7% (50th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2018-10-01
CVE-2018-17835 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2018-17835 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2018-17835 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.