Description
CMS Made Simple version 2.2.19 is vulnerable to Server-Side Template Injection (SSTI). The vulnerability exists within the Design Manager, particularly when editing the Breadcrumbs.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 18 Dec 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 17 Dec 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-352 | CWE-1336 |
Fri, 28 Mar 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cmsmadesimple
Cmsmadesimple cms Made Simple |
|
| CPEs | cpe:2.3:a:cmsmadesimple:cms_made_simple:2.2.19:*:*:*:*:*:*:* | |
| Vendors & Products |
Cmsmadesimple
Cmsmadesimple cms Made Simple |
Mon, 19 Aug 2024 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-17T15:55:56.611Z
Reserved: 2024-02-26T00:00:00.000Z
Link: CVE-2024-27623
Updated: 2024-08-19T07:48:15.682Z
Status : Modified
Published: 2024-03-05T14:15:49.117
Modified: 2025-12-17T16:16:04.270
Link: CVE-2024-27623
No data.
OpenCVE Enrichment
No data.
Weaknesses